vasvchost.vae 是什么进程?
发布网友
发布时间:2022-05-01 10:27
我来回答
共2个回答
热心网友
时间:2023-10-09 02:57
我的诊断报告:
各位高手:
非常感谢您留心我这份系统诊断报告,小菜鸟十万火急等待您的帮助!
该诊断报告由360安全卫士提供 http://www.360safe.com
诊断时间: 2006-12-28 22:30:17
诊断平台: Microsoft Windows XP Service Pack 2
IE版本: Internet Explorer V6.0.2900.2180 Build:62900.2180
计算机物理内存:1023MB - 当前可用内存:675MB
O2 - 低危险 - BHO: (Vision) - [彩信通相关文件。] - {6671A431-5C3D-463d-A7CF-5587F9B7E191} - H:PROGRA~1visionvision.dll
100 - 未知 - Process: VASW.exe [] - H:Program FilesJoinCheerVAVASW.exe
100 - 未知 - Process: SysExplr.exe [] - F:yxfSysExplr.EXE
100 - 未知 - Process: rx.exe [] - H:DOCUME~1ADMINI~1LOCALS~1Temprx.exe
100 - 未知 - Process: VASvcHost.vae [] - H:Program FilesJoinCheerVAVASvcHost.vae
O2 - 未知 - BHO: (浏览器辅助对象(BHO)) - [] - {C155E2F4-EA4D-48AD-BEE2-C837C0DC137F} - H:WINDOWSsystem32ofprcedkjcncn.dll
O4 - 未知 - HKLM..Run: [rxzs] [] H:DOCUME~1ADMINI~1LOCALS~1Temprx.exe
O4 - 未知 - HKCU..Run: [kavshell] [] H:WINDOWSsystem32svch0st.exe
O9 - 未知 - Extra button: 启动迅雷5(HKLM) - H:Program FilesThunder NetworkThunderThunder.exe
O9 - 未知 - Extra button: 豪杰超级解霸9(HKLM) - F:yxfSTHSDVD.EXE
O9 - 未知 - Extra button: 彩E精灵设置(HKLM) - H:PROGRA~1visionvision.dll
O9 - 未知 - Extra button: 信息检索(HKLM) - H:PROGRA~1MICROS~3OFFICE11REFIEBAR.DLL
O11 - 未知 - Options Group: Java (Sun)
O16 - 未知 - DPF: {CAFEEFAC-0014-0002-0007-ABCDEFFEDCBA} (Java Plug-in 1.4.2_07) - http://java.sun.com/procts/plugin/autodl/jinstall-142-windows-i586.cab
O18 - 未知 - Protocol: 电子书编译工具Web Compiler相关 - {BBCA9F81-8F4F-11D2-90FF-0080C83D3571} - H:WINDOWSwc98pp.dll
O23 - 未知 - Service: MSSQLSERVER [MSSQLSERVER] - H:PROGRA~1MI6841~1MSSQLbinnsqlservr.exe - (not running)
O23 - 未知 - Service: SQLSERVERAGENT [SQLSERVERAGENT] - H:PROGRA~1MI6841~1MSSQLbinnsqlagent.exe - (not running)
O23 - 未知 - Service: VASvrWatcher [久其VA应用服务器] - "H:Program FilesJoinCheerVAVASW.exe" - (running)
O23 - 未知 - Service: VisionService [VisionService] - H:WINDOWSsystem32rundll32.exe H:PROGRA~1visionVISVER.DLL,Service - (not running)
O23 - 未知 - Service: WinDHCPsvc [为远程计算机注册并更新 IP 地址。] - H:WINDOWSsystem32rundll32.exe windhcp.ocx,start - (not running)
O23 - 未知 - Service: WinXPDHCPsvc [为远程计算机注册并更新 IP 地址。] - H:WINDOWSsystem32rundll32.exe xpdhcp.dll,start - (not running)
=======================================
100 - 安全 - Process: smss.exe - H:WINDOWSSystem32smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。] - H:WINDOWSsystem32csrss.exe ObjectDirectory=Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - H:WINDOWSsystem32winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] - H:WINDOWSsystem32services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] - H:WINDOWSsystem32lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - H:WINDOWSsystem32svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - H:WINDOWSsystem32svchost -k rpcss
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - H:WINDOWSSystem32svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - H:WINDOWSSystem32svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处理服务。] - H:WINDOWSSystem32svchost.exe -k LocalService
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] - H:WINDOWSsystem32spoolsv.exe
100 - 安全 - Process: AdskScSrv.exe [autodesk公司相关软件的认证许可服务程序。] - H:Program FilesCommon FilesAutodesk SharedServiceAdskScSrv.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: CDAC11BA.EXE [macrovision公司的版权保护软件,用于保护一些软件不被非法拷贝复制。] - H:WINDOWSsystem32driversCDAC11BA.EXE
100 - 安全 - Process: nvsvc32.exe [nvidia driver helper service在nvida显卡驱动中被安装。] - H:WINDOWSsystem32nvsvc32.exe
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] - H:WINDOWSExplorer.EXE
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] - H:WINDOWSSystem32alg.exe
100 - 安全 - Process: rundll32.exe [windows rundll32为了需要调用dlls的程序。] - H:WINDOWSsystem32RUNDLL32.EXE
100 - 安全 - Process: SOUNDMAN.EXE [一个软声卡控制台软件。] - H:WINDOWSSOUNDMAN.EXE
100 - 安全 - Process: daemon.exe [一款虚拟光驱软件。] - H:Program FilesD-Toolsdaemon.exe
100 - 安全 - Process: jusched.exe [用于检测sun的站点是否有更新的java版本的提醒软件。] - H:Program FilesJavaj2re1.4.2_07binjusched.exe
100 - 安全 - Process: avp.exe [卡巴斯基杀毒软件相关程序。] -
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - H:WINDOWSsystem32ctfmon.exe
100 - 安全 - Process: sqlmangr.exe [sql server服务管理器软件。] - H:Program FilesMicrosoft SQL Server80ToolsBinnsqlmangr.exe
100 - 安全 - Process: wuauclt.exe [windows操作系统后台程序,用于系统升级。] - H:WINDOWSsystem32wuauclt.exe
100 - 安全 - Process: conime.exe [console ime ime输入法控制台软件。] - H:WINDOWSsystem32conime.exe
100 - 安全 - Process: 360Safe.exe [360安全卫士] - F:Program Files360safe360Safe.exe
R1 - 安全 - HKLMSoftwareMicrosoftInternet ExplorerMain,Local Page=H:WINDOWSsystem32blank.htm
O2 - 安全 - BHO: (BitComet Helper) - [下载软件BitComet的相关程序。] - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - H:Program FilesBitComettoolsBitCometBHO.dll
O2 - 安全 - BHO: (Thunder Browser Helper) - [迅雷附带下载监视器相关文件。] - {889D2FEB-5411-4565-8998-1DD2C5261283} - H:Program FilesThunder NetworkThunderComDllsXunLeiBHO_006.dll
O4 - 安全 - HKLM..Run: [IMJPMIG8.1] [微软Microsoft输入法编辑器程序。] "H:WINDOWSIMEimjp8_1IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 安全 - HKLM..Run: [PHIME2002ASync] [输入法软件相关程序。] H:WINDOWSSystem32IMETINTLGNTTINTSETP.EXE /SYNC
O4 - 安全 - HKLM..Run: [PHIME2002A] [输入法软件相关程序。] H:WINDOWSSystem32IMETINTLGNTTINTSETP.EXE /IMEName
O4 - 安全 - HKLM..Run: [NvCplDaemon] [是NVIDIA显示卡相关动态链接库文件。] RUNDLL32.EXE H:WINDOWSsystem32NvCpl.dll,NvStartup
O4 - 安全 - HKLM..Run: [nwiz] [是NVidia的Nview特性相关程序。该程序用于用户对其特性进行配置,将桌面扩展到多台显示器上。 ] nwiz.exe /install
O4 - 安全 - HKLM..Run: [NvMediaCenter] [是NVidia显示卡相关文件。] RUNDLL32.EXE H:WINDOWSsystem32NvMcTray.dll,NvTaskbarInit
O4 - 安全 - HKLM..Run: [SoundMan] [Realtek声卡相关程序。] SOUNDMAN.EXE
O4 - 安全 - HKLM..Run: [DAEMON Tools-2052] [一款虚拟光驱工具。] "H:Program FilesD-Toolsdaemon.exe" -lang 2052
O4 - 安全 - HKLM..Run: [SunJavaUpdateSched] [java升级相关软件。] H:Program FilesJavaj2re1.4.2_07binjusched.exe
O4 - 安全 - HKLM..Run: [IMSCMig] [微软拼音输入法安装工具。 ] H:PROGRA~1COMMON~1MICROS~1IMEIMSC40AIMSCMIG.EXE /Preload
O4 - 安全 - HKLM..Run: [SysExplr] [超级解霸] F:yxfSysExplr.EXE
O4 - 安全 - HKLM..Run: [AVP] [卡巴斯基杀毒软件相关程序。] "H:Program FilesKaspersky LabKaspersky Anti-Virus 6.0avp.exe"
O4 - 安全 - HKCU..Run: [ctfmon.exe] [office xp输入法图标。] H:WINDOWSsystem32ctfmon.exe
O4 - 安全 - Startup folder: [服务管理器.lnk] [windows的服务管理器。] H:Documents and SettingsAll Users「开始」菜单程序启动服务管理器.lnk
O4 - 安全 - Startup folder: [AutoCAD 启动加速器.lnk] [autocad启动加速器。] H:Documents and SettingsAll Users「开始」菜单程序启动AutoCAD 启动加速器.lnk
O9 - 安全 - Extra button: Sun Java控制台(HKLM) - H:WINDOWSsystem32Msjava.dll
O9 - 安全 - Extra button: 卡巴斯基Web反病毒保护插件(HKLM) - H:Program FilesKaspersky LabKaspersky Anti-Virus 6.0scieplugin.dll
O9 - 安全 - Extra button: Windows Messenger(HKLM) - H:Program FilesMessengermsmsgs.exe
O16 - 安全 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in) - http://java.sun.com/procts/plugin/autodl/jinstall-142-windows-i586.cab
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} - H:Program FilesCommon FilesMicrosoft SharedOFFICE11MSOXMLMF.DLL
O18 - 安全 - Protocol: OFFICE 相关 - {32505114-5902-49B2-880A-1F7738E5A384} - H:PROGRA~1COMMON~1MICROS~1WEBCOM~111OWC11.DLL
O23 - 安全 - Service: Autodesk Licensing Service [Autodesk的服务程序。] - "H:Program FilesCommon FilesAutodesk SharedServiceAdskScSrv.exe" - (running)
O23 - 安全 - Service: AVP [卡巴斯基杀毒软件相关程序。] - "H:Program FilesKaspersky LabKaspersky Anti-Virus 6.0avp.exe" -r - (running)
O23 - 安全 - Service: C-DillaCdaC11BA [是MacroVision safeCast反复制保护软件。该进程是一些软件为了保护其产品不被盗版而安装的。] - H:WINDOWSsystem32driversCDAC11BA.EXE - (running)
O23 - 安全 - Service: MSSQLServerADHelper [Mssqlserveradhelper 服务。] - H:Program FilesMicrosoft SQL Server80ToolsBinnsqladhlp.exe - (not running)
O23 - 安全 - Service: NVSvc [是NVIDIA显示卡相关程序。] - H:WINDOWSsystem32nvsvc32.exe - (running)
=======================================
[color=sienna]O40 - winlogon.exe - Kaspersky Lab - H:WINDOWSsystem32klogon.dll - Logon Visualizer - 8df1a6e73c2bd9ef754c0bb69c6a60eb
O40 - Explorer.EXE - - H:WINDOWSsystem32bdscheca001.dll - - 92f3be372835e6760534b1a05c2825a7
O40 - Explorer.EXE - - H:WINDOWSsystem32rx.dll - - 996e4d7ebf5e9a1728871a8c7745542b
O40 - Explorer.EXE - Kaspersky Lab - H:Program FilesKaspersky LabKaspersky Anti-Virus 6.0scrchpg.dll - Script Checker - 4a8bc45c5aaee100a13fcc3ab694b396
O40 - Explorer.EXE - - H:WINDOWSsystem32xpdhcp.dll - - 600fb8ea5e7be0acc43f390a0b3a5924
O40 - Explorer.EXE - NVIDIA Corporation - H:WINDOWSsystem32nvshell.dll - NVIDIA Desktop Explorer, Version 56.55 - ae66c916a668e5d0680bb87278485752
O40 - Explorer.EXE - NVIDIA Corporation - H:WINDOWSsystem32NVWRSZHC.DLL - NVIDIA nView Desktop and Window Manager - 31f132aac263c38ca46444ac5f6f593b
O40 - RUNDLL32.EXE - - H:WINDOWSsystem32bdscheca001.dll - - 92f3be372835e6760534b1a05c2825a7
O40 - RUNDLL32.EXE - - H:WINDOWSsystem32rx.dll - - 996e4d7ebf5e9a1728871a8c7745542b
=======================================
O41 - 0000746a - 0000746a - H:WINDOWSsystem32drivers000746a.SYS - (running) - - - 591fbc430c774b3dc45897aae51a9d54
O41 - CdaC15BA - Macrovision SECURITY Driver - H:WINDOWSsystem32driversCDAC15BA.SYS - (running) - Macrovision SECURITY Driver - Macrovision Europe Ltd - f76cb7259aa575cc53f3996bc6b68c18
O41 - d347bus - PnP BIOS Extension - H:WINDOWSsystem32driversd347bus.sys - (running) - PnP BIOS Extension - - 5776322f93cdb91086111f5ffbfda2a0
O41 - d347prt - SCSI miniport - H:WINDOWSsystem32driversd347prt.sys - (running) - SCSI miniport - - b49f79ace459763f4e0380071be9cb45
O41 - klif - spuper-ptor - H:WINDOWSsystem32driversklif.sys - (running) - spuper-ptor - Kaspersky Lab - 213a16fe41d1413e319016b500d70ed5
O41 - lgrgqb - sys 应用程序 - H:WINDOWSsystem32driverslgrgqb.sys - (running) - sys 应用程序 - 北京三七二一科技有限公司 - c1b386f9eb5a00fdfc004ef394f73068
O41 - vulfnths - VIA USB Host Controller Lower Filter Driver - H:WINDOWSsystem32driversvulfnth.sys - (not running) - VIA USB Host Controller Lower Filter Driver - VIA Technologies, Inc. - 16409c468ceee99b6b129fcaa5c0f206
O41 - vulfntrs - VIA USB Roothub Lower Filter Driver - H:WINDOWSsystem32driversvulfntr.sys - (not running) - VIA USB Roothub Lower Filter Driver - VIA Technologies, Inc. - 9fcad546c6285d5073fb926709203049
O41 - wllxhwom - wllxhwom - H:WINDOWSsystem32driverswllxhwom.sys - (running) - - Yahoo! China Corporation - d1737784be4bbc6d7feddca802532b27
=======================================
360Safe.exe=2.2.0.1002
AntiAdwa.dll=2.2.0.1000
AntiEng.dll=2.2.0.1000
AntiActi.dll=2.0.0.3000
CleanHis.dll=2.0.0.1001
safelive.exe=
live.dll=1.0.0.1011
热心网友
时间:2023-10-09 02:57
肯定是不好的进程,赶快用杀毒软件查查吧