°Ô½ÃÆÇȨ / À©µµ¿ì / ÇÁ·Î±×·¥ ÀνºÅç½Ã ÄÄÇ»ÅÍ ¸®ºÎÆà [¼öÁ¤]»õ±Û¾²±â ´ä±Û¾²±â

ÀúÀÚ ÇÁ·Î±×·¥ ÀνºÅç½Ã ÄÄÇ»ÅÍ ¸®ºÎÆà [¼öÁ¤]
Anonymous (0)
ºñȸ¿ø
  °Ô½ÃÀÏ: 2006-01-21 07:47||
À©µµ¿ì 2000 sp4»ç¿ëÀÚ ÀÔ´Ï´Ù.

McAfee.VirusScan.Enterprise.v8.0i ÇÁ·Î±×·¥À» ¾ðÀνºÅç ÇÒ·Á´Âµ¥ ÇÁ·Î±×·¥ Ãß°¡/Á¦°Å¿¡¼­ Á¦°Å ´©¸£¸é
¹Ù·Î ÄÄÇ»ÅÍ°¡ ¸®ºÎÆà µÇ¹ö¸³´Ï´Ù. µ¤¾î±ò±âÇؼ­ Áö¿ö¾ß°Ú´ÙÇÏ°í McAfee.VirusScan.Enterprise.v8.0i ÀνºÅçÇϸé
ÀνºÅçÁß°£¿¡ ¸®ºÎÆõǹö¸³´Ï´Ù. Àú ÇÁ·Î±×·¥ ¶§¹®ÀÎÁö ¾Æ´Ï¸é ´Ù¸¥ ¹®Á¦°¡ À־ ±×·±Áö´Â Á¤È®Ä¡ ¾ÊÀ¸³ª
¸î°¡Áö ¹®Á¦°¡ ´õÀÖ½À´Ï´Ù (Àú ÇÁ·Î±×·¥ ¶§¹®ÀÌ ¾Æ´Ñ°¡¶ó°í ÃßÃø¸¸ ÇÒ»Ó)

¾Èö¼ö¿¬±¸¼Ò ½ÎÀÌÆ®¿¡¼­ ¿Â¶óÀΰ˻縦 ÇÏ¸é ¾÷µ¥ÀÌÆ®ÆÄÀÏÀ» ´Ù ´Ù¿î¹ÞÀºÈÄ
autoup.exe /ascr ÆÄÀÏÀ» ½ÇÇàÇÒ¼ö¾ø½À´Ï´Ù. ¶ó°í ³ª¿À³×¿ä
¸¶Âù°¡Áö·Î ¹ÙÀÌ·¯½ºÃ¼À̼­ ½ÎÀÌÆ®¿¡¼­ ¿Â¶óÀΰ˻縦Çصµ ¹ÙÀÌ·¯½ºÃ¼À̼­ ¿£Áø/ÆÐÅÏ ´Ù¿î·Îµå ÆäÀÏ À̶ó´Â ¸Þ¼¼Áö°¡ ¶ä´Ï´Ù.

±×¸®°í À¯¸í ±¹»ê ¿Ü»ê ¹ÙÀÌ·¯½º ÇÁ·Î±×·¥µéµµ °ÅÀÌ ´ëºÎºÐÀÌ ÀνºÅçÁß ¸®ºÎÆõǹö¸³´Ï´Ù.
Áö±ÝÇغ¸´Ï±î À§´×ÀÏ·¹ºì8 À̶ó´Â °ÔÀÓ¼ÒÇÁÆ®¿þ¾îµµ ÀνºÅçÁß ¸®ºÎÆà µÇ¹ö¸®´Â±º¿ä
¶ÇÇÑ°¡Áö ÇϿ츮 ¹ÙÀ̷κ¿À»±ò¸é ºÎÆýà À©µµ¿ì È­¸é ³ª¿À°í ¾öû³ª°Ô ÄÄÇ»ÅÍ°¡ ´À·ÁÁý´Ï´Ù.
Æ®·¹ÀÌ ¾ÆÀÌÄÜ ¶ß´Âµ¥¸¸ 10ºÐ°¡·® ¾ðÀνºÅçÇϸé Á¤»ó ¼Óµµ·Î µ¹¾Æ¿É´Ï´Ù.

±×¹Û¿¡ Á¦°¡ ¾²´Â Æ÷Åä¼¥,µ¥¸óµî ±âŸ ÇÁ·Î±×·¥¿¡¼­´Â ÀÌ»óÇÑÁ¡ÀÌ ¹ß°ßµÇÁö ¾Ê¾Ò½À´Ï´Ù.
ÇØ°á¹æ¹ý ¾Æ½Ã´ÂºÐ ´äº¯ ºÎŹµå¸³´Ï´Ù.
McAfee.VirusScan.Enterprise.v8.0i Á¦°Å ¹æ¹ý ¸¸À̶óµµ..

ps) ¾ÈÀü¸ðµå¿¡¼­´Â »èÁ¦°¡ µÇÁö ¾Ê½À´Ï´Ù.
Á˼ÛÇÕ´Ï´Ù Á¦°¡ Àß ¸ô¶ó¼­ ±×·¯´Âµ¥
hijackthis ·Î±×¸¦ ¸¸µé¾ú´Âµ¥ »ó´çÈ÷ ±äµ¥ ±×³É ¿Ã·Áµµ µÇ´ÂÁö ¸ð¸£°Ú³×¿ä


Logfile of HijackThis v1.99.1
Scan saved at ¿ÀÀü 9:18:02, on 2006-01-21
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WIN2005\System32\smss.exe
C:\WIN2005\system32\winlogon.exe
C:\WIN2005\system32\services.exe
C:\WIN2005\system32\lsass.exe
C:\WIN2005\system32\svchost.exe
C:\WIN2005\System32\svchost.exe
C:\WIN2005\system32\spoolsv.exe
C:\Program Files\AhnLab\Smart Update Utility\AhnSDsv.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Common Framework\FrameworkService.exe
C:\virus\Mcshield.exe
C:\virus\VsTskMgr.exe
C:\WIN2005\system32\nvsvc32.exe
C:\WIN2005\system32\MSTask.exe
C:\Program Files\AhnLab\AhnLab SpyZero 2.0\AszMon.exe
C:\WIN2005\system32\stisvc.exe
C:\WIN2005\System32\WBEM\WinMgmt.exe
C:\WIN2005\system32\mspmspsv.exe
C:\WIN2005\system32\svchost.exe
C:\WIN2005\Explorer.EXE
C:\WIN2005\system32\CTHELPER.EXE
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WIN2005\system32\locator.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\¼ÒÀå¼ö\¹ÙÅÁ È­¸é\hijackthis\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: VS_IEHlprObj Class - {829CAB51-A4EA-4a15-87B6-4B7D0747939C} - C:\virus\bho.dll
O2 - BHO: (no name) - {C8A2098A-2B10-4C48-B671-5F27A7D0488B} - C:\Program Files\ViOut\NsHelper.dll
O3 - Toolbar: @msdxmLC.dll,-1@1042,¶óµð¿À(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WIN2005\system32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WIN2005\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WIN2005\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [UpdReg] C:\WIN2005\UpdReg.EXE
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
O4 - HKLM\..\RunServices: [Startup Configuration] mvsp32.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O16 - DPF: {00001022-A15C-11D4-97A4-0050BF0FBE67} (NetmarbleStarter22 Class) - http://download.netmarble.com/web/nmstarter/NMStarter22.cab
O16 - DPF: {072039AB-2117-4ED5-A85F-9B9EB903E021} (NowStarter Control) - http://www.clubbox.co.kr/neo.fld/NowStarter.cab
O16 - DPF: {091CDD73-1401-4643-9B9C-65B091C88685} (MyLinker Control) - http://ljuro.contents.mylinker.co.kr/module/MyLinker.cab
O16 - DPF: {0C72835A-34C5-4273-A700-A2347E784B58} (NPPWebInstallV2 Control) - http://update.nprotect.net/sci/install_new/NPPWebInstallV2.cab
O16 - DPF: {0CBF7EDC-17EC-442C-8AE9-5E804707B6CA} (NeffyClient Class) - http://dist.cdnetworks.co.kr/cdndist/neffy/Neffy.cab
O16 - DPF: {0CD2EC08-3CF6-4BC4-BF48-824F4C1994F1} (SecureSession Class) - http://www.samsungfn.com/contents/trustnet/TNWebToolkitForIE.cab
O16 - DPF: {109E02F2-D292-456F-AF67-2680FF768829} (CleanActX Control) - http://www.clean-up.co.kr/in/CleanX.cab
O16 - DPF: {15471F83-E4B1-4586-9547-F8266BF17C3C} (tomato Class) - http://www.novags.com/linkprice/toamto_web.dll
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} (MeadCo ScriptX Basic) - http://www.epostbank.go.kr/js/scriptx/ScriptX.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=48835
O16 - DPF: {1A99AD04-C72C-484A-9EEE-1B29B1243263} (ADKiller Control) - http://down.ad-killer.net/adkiller/activex/ADKiller.cab
O16 - DPF: {1DE9BB01-B121-401D-8877-BCD5ED5B7EE5} (Tpwin Control) - http://www.crezio.com/test/leeyunho/AlwaysOn/AlwaysOn.CAB
O16 - DPF: {20C2C286-BDE8-441B-B73D-AFA22D914DA5} (PowerList Control) - http://www.ppstream.com/bin/powerplayer.cab
O16 - DPF: {217CA616-08DD-4783-9DE3-9AE02F4EB2D0} - http://dr-clean.co.kr/install/nochk/drclean.cab
O16 - DPF: {27E4B2A9-D554-40DE-B6CD-F11E9B44FBD0} (SimFileControl Control) - http://simfile.chol.com/down/SimFileControl.cab
O16 - DPF: {282F0FDF-BEE1-4977-A475-B3DA9DF81D55} (MegaMusicWeb Control) - http://megapop.megapass.net/MegaMusicWebProj1.cab
O16 - DPF: {2882C368-D508-11D4-A2AB-000102598CE4} (LProtect Control) - http://www.livecall.co.kr/pds/livecall.cab
O16 - DPF: {2931566C-B8A6-46C5-BF4D-E6AB9251E953} (Nexon Package Manager Control) - http://file.nx.com/activex/public_new/nxpm.cab
O16 - DPF: {29AD8C7D-9EA0-4CA1-A93D-F207E88EEDEE} (DrPcX Control) - http://www.drpcgo.com/pc/DrPcAct.cab
O16 - DPF: {2F3E29F0-830D-448D-B8E4-0A072129BB77} (StartPage Control) - http://yescounter.com/StartPage.cab
O16 - DPF: {32B1CE68-43D9-4D06-8BE9-418F0B94B46A} (Nowpds Control) - http://www.nownuri.net/component/pds/Nowpds.cab
O16 - DPF: {32D94A9F-9A18-4E12-863D-8AABA8CBDA78} (NateOnMMSAtx3 Class) - http://viewsms.nate.com/NateOnMMS_AX3.cab
O16 - DPF: {45091AA2-1574-4EC8-B520-4C27E29CF889} (GifFreezerCtrl Class) - http://www.gmarket.co.kr/challenge/neo_goods/dlls/gifFreezer.cab
O16 - DPF: {4BD1464F-27B9-4749-AA0E-5185187100E2} (TMIPC Control) - http://game.pullbbang.com/ngame/TMMame/Lib/TMIPC.ocx
O16 - DPF: {55218724-9E0F-4A9A-858C-B5E6F5A9C65F} (Idefense Control) - http://kings.cachenet.com/epost/idf5/idefense.cab
O16 - DPF: {5586077A-2041-4710-8F2E-0D5060D0378D} (Kdfense Control) - http://kings.cachenet.com/kdfx215/kdfense.cab
O16 - DPF: {5DAEF053-DEF0-4752-A963-CCE9B49B0B79} (Gogs Class) - http://app.ipop.co.kr/gogsweb/gogsweb.cab
O16 - DPF: {5E582BD1-6FAA-40F2-87A8-130AD325DABB} (Kdfense7 Control) - http://www.samsungfn.com/contents/kdefense/cab/04121519/kdfense7.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1132146243312
O16 - DPF: {68253470-5D4F-4CDF-8D9C-353C14A2F013} (SVPorsche Control) - http://img.yahoo.co.kr/multi/2005/tool/player/20051026/SVPorsche.cab
O16 - DPF: {6AD54F1E-D241-48B4-ACFF-37BA1B1BF7AD} (SMInstallCom Class) - http://ax.spymedic.co.kr/control/SpyMedicWebInstaller.cab
O16 - DPF: {741509F4-A5F2-478F-A84C-EBEF12041F45} (TvOnline Control) - http://www.everyzone.com/TvOnline/TvOnline.cab
O16 - DPF: {74D8AC1E-01C2-42B4-A0DE-E43568027FE4} (KoreanIA Control) - http://plugin.netpia.com/isp/goodday/KoreanIA.cab
O16 - DPF: {765A88D3-EB24-4A26-ACCF-1F754DB281FE} - http://www.pcbagsa.com/down/pcbaksaActiveFormProj1.cab
O16 - DPF: {7732E3A4-AB48-33A9-9AB8-443C710E09A3} (RewardNetwork Launcher Class) - http://codebase.rewardnetwork.net/codebase/axlgooddayi.cab?affiliate_id=gooddayi
O16 - DPF: {799BB2EC-572A-42A9-84AD-112806F4F551} (Imweb Control) - http://activexdown.paran.com/paranactivex/data/imweb.cab
O16 - DPF: {7FC751A9-492D-41B1-9F8D-D2C8809D8907} (EmoWebInstallerCtl Class) - http://pimg.hanmail.net/tv/cabs_20050909/MyTVInstaller.cab
O16 - DPF: {86C2FC1F-9D21-4BF1-A45F-BF11EFFB6046} (CCInst Control) - http://down.c-zero.co.kr/cab/CCInst.CAB
O16 - DPF: {8DA1E003-62EF-48DD-AC32-9D82F432B043} (QucikBar Control) - http://www.quickbar.co.kr/toolbar/toolbar/QuickBarProj.cab
O16 - DPF: {8ED577E0-25F4-4477-866B-3C572B7FB603} (ViOutDownloadX Control) - http://viout.com/downloader/ViOutActive.cab
O16 - DPF: {90355CDD-8C89-40E3-8B9B-1CC2D1D6AB84} (Daoki File Control3) - http://www.daoki.com/mmsv/Daoki.CAB
O16 - DPF: {92E82FBB-DA00-41E0-ABFE-95482E21A4F6} (NMTransX Module) - http://download.netmarble.com/NMChatX/NMTransX.cab
O16 - DPF: {932AFC62-9855-4889-81FA-426D20CEF06F} (DrPlusX Control) - http://www.dr-plus.net/pc/DrPlusAct.cab
O16 - DPF: {938527D1-CDB7-4147-998A-B20FCA5CC976} (Cdmcco Class) - http://cafeimg.hanmail.net/cab9_1/dmcc2.cab?Version=1,0,0,10
O16 - DPF: {93F79C47-F414-4EEE-95C5-A0F0ACE59A0E} (ALDx Class) - http://www.altools.co.kr/ALDX.cab
O16 - DPF: {9675ABBF-8D0B-4956-868C-934B5A7928D4} (Npv Control) - https://nprotect.ncsoft.co.kr/nProtect/netizen2004/ncsoft/npv.cab
O16 - DPF: {9AEBAA67-8B4D-4884-9EB7-8C6BEA20CE5C} (FileManager Control) - http://club.nate.com/NetEditor.cab
O16 - DPF: {9B6D0E46-3F96-11D9-A711-004F4E099F85} (Originality.WEBnewszine) - http://pdf.sportschosun.com/WEBnewszine/WEBnewszine.CAB
O16 - DPF: {9BDBC41E-C335-4263-83C0-ECE78EE28A33} (SysMonOCX Control) - http://ahnlabdownload.nefficient.co.kr/plugin/myfirewall/myfirewall20.cab
O16 - DPF: {9BF607E0-4CC1-4099-9A07-362C9E4FB090} (WStarter Control) - http://live.pdbox.co.kr:8057/WStarter.cab
O16 - DPF: {9EC4237F-9764-40EC-A6ED-7FF8A8F55643} - http://pcdiet.bomul.com/exe/060116_exe/pcdiet.cab
O16 - DPF: {9FC84F7D-D177-4A75-A7BB-429DA5BD0A3E} (SG_CAppAtx Control) -
O16 - DPF: {A49C807D-2D1B-40C9-86EE-2693EECF8217} (Sic Control) - http://www.lineage2.co.kr/common/ocx/Sic.cab
O16 - DPF: {A4EBE86D-6737-4076-AB7E-F5FBE337AE68} (IdiskLauncher Control) - http://idisk.megapass.net/web/IdiskLauncher.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B573A25F-27D5-4D22-9A51-C357A72F869C} - http://pcex.co.kr/down/pcexAProj2.cab
O16 - DPF: {B5E0A27D-236F-4C09-9B55-3A4DD68923DF} (TMInstaller Control) - http://game.pullbbang.com/ngame/TMMame/TMinstaller.ocx
O16 - DPF: {BBB0FC2D-1D95-45CA-BDCF-03B53F247FCC} (EwsLoader Class) -
O16 - DPF: {C2C16510-10F4-46FE-A82C-4846435EBDEB} (p3muzset Class) - http://player.muz.co.kr/package/p3muzset.cab
O16 - DPF: {C32F17F5-1702-4179-B6BF-99D0C4D340E1} (NetpiaPIOCX Control) - http://plugin1.netpia.com/oneclick/webmail/NetpiaPIIPOCX.ocx
O16 - DPF: {C6BA9924-476B-4A44-8AEC-81F13FB7A5E9} (AtlCtrl Class) - http://www.befast.co.kr/befast/befast10_weblaunch.cab
O16 - DPF: {CFCB7308-782F-11D4-BE27-000102598CE4} (NPX Control) - http://update.nprotect.net/nprotect/module/npx.cab
O16 - DPF: {D5FF205C-B5F8-459F-B64F-DF1584272E8F} (LaunchCtl Class) - http://diskpot.chol.com/disk/pcbrowser/DPLauncher.cab
O16 - DPF: {D662A14E-6017-11D5-B92C-0080AD7A7022} (Open3DPlayer Class) - http://www.openvr.co.kr/gallery/caps/Open3DPlayer/Open3DPlayer.cab
O16 - DPF: {D6FCA8ED-4715-43DE-9BD2-2789778A5B09} (NPKCX Control) - https://nprotect.ncsoft.co.kr/nProtect/keycrypt/npkcx.cab
O16 - DPF: {D7EBA5BF-69D0-40E4-B513-87078CA7DD87} (Woori Credit Card Class) - http://www.wooricard.com/include/wooricard.cab
O16 - DPF: {DF472C86-9DD8-46C4-86D3-4A861DE82650} (LiveUpdate Class) - http://hotchannel.goodday.co.kr/SeeVideo/SMLiveUpdater.cab
O16 - DPF: {E1CDC08F-F464-4682-AE6A-7689451387C0} (CAFE multiupload control) - http://cafeimg.hanmail.net/activex/dmcm.cab?Version=1,0,0,21
O16 - DPF: {E4F500BF-C1A3-11D6-9697-0090961B771E} (VCR.Scan) - http://www.viruschaser.com/Kor/vc4w_ocx/Vcrscan.CAB
O16 - DPF: {E78928A6-3D2A-4BF7-A100-F3FBAA351B49} (KvpIspCtlD Control) - https://www.vpay.co.kr/kvpfiles/KVPISPCTLD.cab
O16 - DPF: {EC5D5118-9FDE-4A3E-84F3-C2B711740E70} (SKCommAX Control) - http://www.samsungfn.com/skcab/SKCommAX.cab
O16 - DPF: {F7530E43-3359-42D0-B8DC-843A45028584} (Hitelontop Control) - http://manager.ongamenet.com/common/control/hitelontop.cab
O16 - DPF: {F976CFC6-496E-4BCB-BEDC-4DE672FE9C34} - http://218.38.56.30/~rubitoolbar/rubibank.cab
O16 - DPF: {F991A655-51C7-4843-8953-2023ABFEC1BE} (Guava Control) - http://asz.ahnlab.com/spyreport/newguava.cab
O16 - DPF: {FFBCF8E0-9C7E-4BC1-84B2-9E318F51635D} (axKwordControl Control) - http://download.kword.co.kr/down/milikeclick/KwordControl.cab
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WIN2005\system32\mshtml.dll
O18 - Protocol: cdl - {3DD53D40-7B8B-11D0-B013-00AA0059CE02} - C:\WIN2005\system32\urlmon.dll
O18 - Protocol: file - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\WIN2005\system32\urlmon.dll
O18 - Protocol: ftp - {79EAC9E3-BAF9-11CE-8C82-00AA004BA90B} - C:\WIN2005\system32\urlmon.dll
O18 - Protocol: gopher - {79EAC9E4-BAF9-11CE-8C82-00AA004BA90B} - C:\WIN2005\system32\urlmon.dll
O18 - Protocol: http - {79EAC9E2-BAF9-11CE-8C82-00AA004BA90B} - C:\WIN2005\system32\urlmon.dll
O18 - Protocol: https - {79EAC9E5-BAF9-11CE-8C82-00AA004BA90B} - C:\WIN2005\system32\urlmon.dll
O18 - Protocol: ipp - (no CLSID) - (no file)
O18 - Protocol: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WIN2005\system32\itss.dll
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WIN2005\system32\mshtml.dll
O18 - Protocol: local - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\WIN2005\system32\urlmon.dll
O18 - Protocol: mailto - {3050F3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WIN2005\system32\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11D0-85E3-00C04FD85AB4} - C:\WIN2005\system32\inetcomm.dll
O18 - Protocol: mk - {79EAC9E6-BAF9-11CE-8C82-00AA004BA90B} - C:\WIN2005\system32\urlmon.dll
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WIN2005\system32\itss.dll
O18 - Protocol: msdaipp - (no CLSID) - (no file)
O18 - Protocol: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WIN2005\system32\mshtml.dll
O18 - Protocol: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WIN2005\system32\mshtml.dll
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WIN2005\system32\mshtml.dll
O18 - Protocol: vnd.ms.radio - {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WIN2005\system32\msdxm.ocx
O23 - Service: AhnLab Task Scheduler - AhnLab, Inc. - C:\Program Files\AhnLab\Smart Update Utility\AhnSDsv.exe
O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WIN2005\System32\dmadmin.exe
O23 - Service: hp service (Hpsys) - Unknown owner - C:\WIN2005\system32\hpsys.exe (file missing)
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\virus\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\virus\VsTskMgr.exe
O23 - Service: npkcsvc - INCA Internet Co., Ltd. - C:\WIN2005\system32\npkcsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WIN2005\system32\nvsvc32.exe
O23 - Service: Virus Chaser Spider NT (spidernt) - Unknown owner - C:\Program Files\Virus Chaser\SpiderNT.exe (file missing)
O23 - Service: SpyZero_Monitor - AhnLab, Inc. - C:\Program Files\AhnLab\AhnLab SpyZero 2.0\AszMon.exe




[ ¸Þ½ÃÁö¼öÁ¤: momo1844 ÀϽÃ: 2006-01-21 09:41 ]
Anonymous (0)
ºñȸ¿ø
  °Ô½ÃÀÏ: 2006-01-21 08:08||
hijackthis ·Î±×¸¦ ¿Ã·ÁÁÖ¼¼¿ä. ¾È±×·¯¸é ¿î¿µÀÚ´ÔÀÌ ¹Ì¿öÇϽʴϴÙ. ^^

±× Àü¿¡ Å×½ºÆ® Çغ»´Ù¸é

1. ¾ÈÀü¸ðµå¿¡¼­ »èÁ¦½Ãµµ
2. msconfig, ·¹Áö½ºÆ®¸® run Á¤¸®, ÇØ´ç 3rd ¼­ºñ½º ÁßÁö, ÀÛ¾÷°ü¸®ÀÚ¿¡¼­
ºÒÇÊ¿äÇÑ ÇÁ·Î¼¼½º ÀüºÎ Á¾·áÈÄ ½Ãµµ
3. temp, prefetch\*.* »èÁ¦

´ÙÀ½±Û: À©µµ¿ì xpÀÇ ³»Àå °ÔÀÓ º¹±¸. (0)4116werty332006-02-10
ÀÌÀü±Û: ·¡Áö½ºÆ®¸®¿¡ ´ëÇØ ¿©Âã´Ï´Ù. (0)4114alligator2005-11-01

»õ±Û¾²±â ´ä±Û¾²±â
À̵¿:

¼¼»ó»ç´Â À̾߱â



RSS ±¸µ¶ (À͸í | ȸ¿ø | °­Á | Æ÷·³)
(C) 1996 ~ 2017 QAOS.com All rights reserved.