![]() |
|
論壇說明 | 標記討論區已讀 |
歡迎您來到『史萊姆論壇』 ^___^ 您目前正以訪客的身份瀏覽本論壇,訪客所擁有的權限將受到限制,您可以瀏覽本論壇大部份的版區與文章,但您將無法參與任何討論或是使用私人訊息與其他會員交流。若您希望擁有完整的使用權限,請註冊成為我們的一份子,註冊的程序十分簡單、快速,而且最重要的是--註冊是完全免費的! 請點擊這裡:『註冊成為我們的一份子!』 |
![]() ![]() |
|
主題工具 | 顯示模式 |
|
![]() |
#1 (permalink) |
榮譽會員
![]() |
![]() RegistryInfo.dll 被建立
軟體 - 一個假冒的 Nokia 台灣區網站可能讓拜訪者被植入鍵盤側錄程式,以竊取天堂遊戲的帳號密碼 ({3EA18648-FAF6-490D-9C92-8FD729028A58})(C:\WINDOWS\system32\RegistryInfo.dll) [] ({8E3526E3-F160-437B-9095-46A011877CBE})(C:\WINDOWS\system32\pKerme123.dll) [] http://www.slime2.com.tw/forums/show...26#post1538426 ==================================== Trojan]小心以楓之谷為目標的木馬:Infostealer.Maplosty! C:\WINDOWS\system32\fzgdll.dll] (N/A)(N/A) http://www.slime2.com.tw/forums/show...31#post1538431 ====================== 中病毒mprxpau.dll http://tw.knowledge.yahoo.com/questi...=1206052816208 殺時要關閉還原...進安全模式操作... ========================= 並到以下資料夾內刪除下列檔案(用搜尋) C:\WINDOWS\Config\svhost32.exe C:\WINDOWS\system32\Kerne0223.exe 完成後重新開機, 再次使用 防毒軟體 進行全系統掃瞄 及使用 線上掃瞄 進行偵測 查看是否有病毒殘留 ================= O4 - HKLM\..\Run: [fzg] C:\WINDOWS\Config\svhost32.exe [C:\WINDOWS\system32\fzgdll.dll] (N/A)(N/A) 此帖於 2006-06-15 12:27 AM 被 psac 編輯. |
__________________![]() |
|
![]() |
送花文章: 3,
![]() |
![]() |
#2 (permalink) |
長老會員
![]() |
![]() 請問 psac 大大
你上面所說的 3 點 所列的檔案 並沒有搜尋到任何一個 檔案 請問這樣就沒問題了嗎? 然後...如題目所說 無法關閉 掃描出的檔案 是否照你在 Yahoo 知識 + 所說的 "請先下載免安裝的winsockfix,來修復此問題喔:" 這樣就可以了嗎? 目前這台電腦是可以上網 只不過有上述問題以及 用注音打字時顯示 注音 選字的視窗 會delay 尤其是 打及時通訊時也會這樣 甚至更嚴重 請問是上網太久耗去太多空間嗎? 還是 記憶體不夠? 不好意思 又要麻煩您 費神 幫忙了 真是謝謝您 ![]() |
__________________ 勇氣鼓舞運氣 ![]() Just Do It !! ![]() You Are What You Think You Are ![]() 善念充滿^^ 惡念退散 !! ![]() 沒有能不能成功 只有願不願意付出代價 ![]() 趴下是真功夫 ![]() |
|
![]() |
送花文章: 40448,
![]() |
![]() |
#3 (permalink) | |
榮譽會員
![]() |
![]() 引用:
pKerme123.dll) mprxpau.dll fzgdll.dll 上面都是你自己掃出來的....已沒檔案存在可能,因為防毒給刪掉或移走 但注冊機碼還在..... ======================= ({3EA18648-FAF6-490D-9C92-8FD729028A58})(C:\WINDOWS\system32\RegistryInfo.dll) [] ({8E3526E3-F160-437B-9095-46A011877CBE})(C:\WINDOWS\system32\pKerme123.dll) [] __________________=============================================== 譬如每執行一些程式,行程////也run跑.....[C:\WINDOWS\system32\pKerme123.dll] (N/A)(N/A) PID: 3132][C:\Program Files\Internet Explorer\iexplore.exe] (Microsoft Corporation)(6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)) [C:\WINDOWS\system32\pKerme123.dll] (N/A)(N/A) [C:\Program Files\Norton AntiVirus\NavShExt.dll] (Symantec Corporation)(11.0.9.16) [C:\Program Files\Common Files\Symantec Shared\ccL30.dll] (Symantec Corporation)(103.0.6.5) ============= 所以還是要去刪除它,最簡單是注冊檔查找...與使用工具修,包括停止 autoruns項(其實還是在注冊文件檔) 如不會 最好使用,不用工具...查刪除注冊檔,偶又不到你家看得到,釣勾魚要自己補 ....你要解決是 掃出來看不再有那些檔,的注冊key& 值與連結檔路徑 ,才算乾淨 那夠簡單吧說明白..... -------------------------------- winsockfix Tcp/ip 標準 連線是修理病毒或插件,不良插件...等引起上網問題.... ms ie的問題....就是上網修復工具,你也可手工重整理ie.. http://www.slime2.com.tw/forums/showthread.php?t=177281 此帖於 2006-06-15 01:33 PM 被 psac 編輯. |
|
![]() |
送花文章: 3,
![]() |
![]() |
#4 (permalink) |
長老會員
![]() |
![]() 請問 psac 大大
我已經 用winsockfix 掃描過; 系統醫生掃描並修復過 Norton 也再掃一遍 Norton 還是掃出問題列 這支病毒 並且還是無法隔離 無法刪除 我在用您給的 System Repair Engineer 掃描 真的非常謝謝你 無私的指導 勞煩您費心了 掃描結果如下 2006-06-15,11:56:07 System Repair Engineer 2.0.21.505 (2.0 RC 2) Smallfrogs (http://www.KZTechs.com) Windows XP Professional Service Pack 2 (Build 2600) - Administrative User - Completed Functions Allowed Follow item(s) have been choosed: All Boot Items (Including Registry, Startup Folders, Services and so on) Browser Add-ons Runing Processes (Including process model information) File Associations Boot Items Registry [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [Microsoft Corporation] <Kerne0223><C:\WINDOWS\system32\Kerne0223.exe> [] [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows] <load><> [] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] <IMJPMIG8.1><; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [Microsoft Corporation] <ccApp><"C:\Program Files\Common Files\Symantec Shared\ccApp.exe"> [Symantec Corporation] <CJIMETIPSYNC><C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\CHANGJIE\CINTLCFG.EXE /CJIMETIPSync> [Microsoft Corp.] <PHIMETIPSYNC><C:\Program Files\Common Files\Microsoft Shared\IME\IMTC65\PHONETIC\TINTLCFG.EXE /PHIMETIPSync> [Microsoft Corp.] <Symantec NetDriver Monitor><C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer> [Symantec Corporation] <NeroFilterCheck><C:\WINDOWS\system32\NeroCheck.exe> [Ahead Software Gmbh] <WinampAgent><C:\Program Files\Winamp\winampa.exe> [] <fzg><C:\WINDOWS\Config\svhost32.exe> [] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] <shell><Explorer.exe> [Microsoft Corporation] <Userinit><C:\WINDOWS\system32\userinit.exe,> [Microsoft Corporation] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] <AppInit_DLLs><> [] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] <UIHost><logonui.exe> [Microsoft Corporation] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] <{3EA18648-FAF6-490D-9C92-8FD729028A58}><C:\WINDOWS\system32\RegistryInfo.dll> [] <{8E3526E3-F160-437B-9095-46A011877CBE}><C:\WINDOWS\system32\pKerme123.dll> [] 此帖於 2006-06-15 12:09 PM 被 放下是真功夫 編輯. |
![]() |
送花文章: 40448,
![]() |
![]() |
#5 (permalink) |
長老會員
![]() |
![]() Startup Folders
Services [Symantec Event Manager / ccEvtMgr] <"C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"><Symantec Corporation> [Symantec Password Validation / ccPwdSvc] <"C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"><Symantec Corporation> [Symantec Settings Manager / ccSetMgr] <"C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"><Symantec Corporation> [Norton AntiVirus Auto-Protect Service / navapsvc] <"C:\Program Files\Norton AntiVirus\navapsvc.exe"><Symantec Corporation> [Norton AntiVirus Firewall Monitor Service / NPFMntor] <"C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe"><Symantec Corporation> [SAVScan / SAVScan] <"C:\Program Files\Norton AntiVirus\SAVScan.exe"><Symantec Corporation> [ScriptBlocking Service / SBService] <C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe><Symantec Corporation> [Symantec Network Drivers Service / SNDSrvc] <"C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe"><Symantec Corporation> [Symantec SPBBCSvc / SPBBCSvc] <"C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe"><Symantec Corporation> [Symantec Core LC / Symantec Core LC] <C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe><Symantec Corporation> |
![]() |
送花文章: 40448,
![]() |
![]() |
#6 (permalink) |
長老會員
![]() |
![]() Browser Add-ons
[CNavExtBho Class] {BDF3E430-B101-42AD-A544-FADC6B084872} <C:\Program Files\Norton AntiVirus\NavShExt.dll, Symantec Corporation> [參考資料(&R)] {92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, Microsoft Corporation> [Yahoo! Messenger] {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} <C:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE, N/A> [Norton AntiVirus] {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} <C:\Program Files\Norton AntiVirus\NavShExt.dll, Symantec Corporation> [Symantec AntiVirus scanner] {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} <C:\WINDOWS\Downloaded Program Files\avsniff.dll, Symantec Corporation> [Symantec RuFSI Utility Class] {644E432F-49D3-41A1-8DD5-E099162EEEC5} <C:\WINDOWS\Downloaded Program Files\rufsi.dll, Symantec Corporation> [Housecall ActiveX 6.5] {6E5A37BF-FD42-463A-877C-4EB7002E68AE} <C:\WINDOWS\Downloaded Program Files\Housecall_ActiveX.dll, TrendMicro Deutschland GmbH> [McFreeScan Class] {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} <C:\WINDOWS\McAfee.com\FreeScan\mcfscan.dll, McAfee, Inc.> [Norton AntiVirus] {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} <C:\Program Files\Norton AntiVirus\NavShExt.dll, Symantec Corporation> [CNavExtBho Class] {BDF3E430-B101-42AD-A544-FADC6B084872} <C:\Program Files\Norton AntiVirus\NavShExt.dll, Symantec Corporation> [Shockwave Flash Object] {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.> [MessengerChecker Class] {DA4F543C-C8A9-4E88-9A79-548CBB46F18F} <C:\Program Files\Yahoo!\Messenger\YPagerChecker.dll, TODO: <Company name>> [Messenger Class] {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} <, N/A> [使用影音傳送帶下載] <, N/A> [使用影音傳送帶下載全部連結] <, N/A> [匯出至 Microsoft Office Excel(&X)] <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A> |
![]() |
送花文章: 40448,
![]() |
![]() |
#7 (permalink) |
長老會員
![]() |
![]() Running Processes
[PID: 368][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 428][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 452][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 496][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 508][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 664][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 712][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 824][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 876][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 936][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 1140][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [C:\WINDOWS\system32\Kerne0223.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\idle.dll] <Yahoo! Inc.><1, 0, 0, 2> [C:\Program Files\Norton AntiVirus\NavShExt.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.6.5> [PID: 1748][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 1952][C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE] <Microsoft Corporation><7.00.9466> [PID: 568][C:\WINDOWS\system32\wdfmgr.exe] <Microsoft Corporation><5.2.3790.1230 built by: dnsrv(bld4act)> [PID: 1012][C:\Program Files\Winamp\winampa.exe] <N/A><N/A> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [PID: 1800][C:\WINDOWS\Config\svhost32.exe] <N/A><N/A> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [PID: 1820][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [PID: 1828][C:\WINDOWS\system32\Kerne0223.exe] <N/A><N/A> [C:\WINDOWS\system32\Kerne0223.dll] <N/A><N/A> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [PID: 472][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [PID: 2676][C:\Program Files\Internet Explorer\iexplore.exe] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\Program Files\Norton AntiVirus\NavShExt.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.6.5> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] <Symantec Corporation><103.0.6.5> [C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0> [C:\WINDOWS\system32\Macromed\Common\SwSupport.dll] <Macromedia, Inc.><10.1r11> [C:\Program Files\Yahoo!\Messenger\idle.dll] <Yahoo! Inc.><1, 0, 0, 2> [PID: 2720][C:\Program Files\MSN Messenger\msnmsgr.exe] <Microsoft Corporation><7.5.0324> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\idle.dll] <Yahoo! Inc.><1, 0, 0, 2> [C:\WINDOWS\system32\msdmo.dll] <N/A><N/A> [C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.6.5> [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] <Symantec Corporation><103.0.6.5> [C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0> [C:\WINDOWS\system32\Macromed\Common\SwSupport.dll] <Macromedia, Inc.><10.1r11> [PID: 2740][C:\Program Files\Yahoo!\Messenger\YPager.exe] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\idle.dll] <Yahoo! Inc.><1, 0, 0, 2> [C:\Program Files\Yahoo!\Messenger\ygxa_2.dll] <Yahoo! Inc.><2004, 2, 19, 1> [C:\Program Files\Yahoo!\Messenger\pcre.dll] <Pcre><3.9> [C:\Program Files\Yahoo!\Messenger\YML.dll] <N/A><3, 0, 0, 2> [C:\Program Files\Yahoo!\Messenger\YImage.dll] <Yahoo! Inc.><1, 0, 0, 1> [C:\Program Files\Yahoo!\Messenger\xmlparse.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\xmltok.dll] <N/A><N/A> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\ft60.dll] <Yahoo! Inc.><1.0.0.4> [C:\Program Files\Yahoo!\Messenger\res_msgr.dll] <Yahoo! Inc.><6, 0, 0, 1610> [C:\Program Files\Yahoo!\Shared\YbSkin2.dll] <Yahoo! Inc.><2005, 6, 3, 1> [C:\Program Files\Yahoo!\Messenger\MyYahoo.dll] <Yahoo! Inc.><6, 0, 0, 600> [C:\Program Files\Yahoo!\Messenger\D32-FW.DLL] <Distinct Corporation><3.4.6> [C:\WINDOWS\system32\icm32.dll] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)> [C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0> [C:\WINDOWS\system32\Macromed\Common\SwSupport.dll] <Macromedia, Inc.><10.1r11> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\yvoicesm.dll] <N/A><1, 0, 201, 1> [C:\Program Files\Yahoo!\Messenger\yvoiceui.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\yaudiomgr.dll] <N/A><1, 0, 200, 1> [C:\Program Files\Yahoo!\Messenger\yxtldr.dll] <N/A><1, 0, 200, 1> [C:\Program Files\Yahoo!\Messenger\rvsip.dll] <RADVISION><3.1.1.30> [C:\Program Files\Yahoo!\Messenger\rvcommon.dll] <RADVISION><1.0.18> [C:\Program Files\Yahoo!\Messenger\rvads.dll] <RADVISION><3.1.1.30> [C:\Program Files\Yahoo!\Messenger\rvsdp.dll] <RADVISION><> [C:\Program Files\Yahoo!\Messenger\yv_res.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\eyeBeamAsDLL.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\AEC_PC_DLL.dll] <N/A><N/A> [C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.6.5> [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] <Symantec Corporation><103.0.6.5> [PID: 4048][C:\Program Files\Internet Explorer\iexplore.exe] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\Program Files\Norton AntiVirus\NavShExt.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.6.5> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\idle.dll] <Yahoo! Inc.><1, 0, 0, 2> [C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll] <Symantec Corporation><11.0.9.16> [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] <Symantec Corporation><103.0.6.5> [C:\Program Files\Yahoo!\Messenger\YPagerChecker.dll] <TODO: <Company name>><1.0.0.1> [C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0> [PID: 3248][C:\Program Files\WinRAR\WinRAR.exe] <N/A><N/A> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\idle.dll] <Yahoo! Inc.><1, 0, 0, 2> [PID: 316][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.381\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505> [C:\WINDOWS\system32\pKerme123.dll] <N/A><N/A> [C:\WINDOWS\system32\fzgdll.dll] <N/A><N/A> [C:\Program Files\Yahoo!\Messenger\idle.dll] <Yahoo! Inc.><1, 0, 0, 2> |
![]() |
送花文章: 40448,
![]() |