瑞星卡卡安全论坛
Reita - 2007-6-15 17:22:00
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Publisher]
<MsnMsgr><; "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background> [(Verified)Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> [N/A]
<run><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<kis><"D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe"> [Kaspersky Lab]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\klogon]
<WinlogonNotify: klogon><C:\WINDOWS\system32\klogon.dll> [Kaspersky Lab]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<helper.dll><; C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32> [N/A]
<IMJPMIG8.1><; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [(Verified)Microsoft Windows Publisher]
<PHIME2002A><; > [N/A]
<PHIME2002ASync><; > [N/A]
<SoundMan><; SOUNDMAN.EXE> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<wallpaper><; c:\windows\system32\壁纸自动换.exe> []
<YLive.exe><; > [N/A]
==================================
启动文件夹
[Adobe Reader Speed Launch]
<C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Adobe Reader Speed Launch.lnk --> C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [Adobe Systems Incorporated]><N>
==================================
服务
[Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start]
<C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[卡巴斯基互联网安全套装 6.0 / AVP][Running/Auto Start]
<"D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\avp.exe" -r><Kaspersky Lab>
[C-DillaCdaC11BA / C-DillaCdaC11BA][Running/Auto Start]
<C:\WINDOWS\system32\drivers\CDAC11BA.EXE><Macrovision>
[FLEXlm server for PTC / FLEXlm server for PTC][Running/Auto Start]
<"f:\Program Files\flexnet\i486_nt\obj\lmgrd.exe"><Macrovision Corporation>
[Human Interface Device Access / HidServ][Stopped/Disabled]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[SolidWorks Licensing Service / SolidWorks Licensing Service][Stopped/Manual Start]
<"C:\Program Files\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe"><SolidWorks>
==================================
驱动程序
[Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Stopped/Manual Start]
<system32\drivers\ac97intc.sys><Intel Corporation>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
<system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[AMD K8 Processor Driver / AmdK8][Stopped/Manual Start]
<System32\DRIVERS\amdk8.sys><Advanced Micro Devices>
[ati2mtag / ati2mtag][Running/Manual Start]
<system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[CdaC15BA / CdaC15BA][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\CDAC15BA.SYS><Macrovision Europe Ltd>
[VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Stopped/Manual Start]
<system32\DRIVERS\fetnd5.sys><VIA Technologies, Inc.>
[Hardlock / Hardlock][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\hardlock.sys><Aladdin Knowledge Systems Ltd.>
[kl1 / kl1][Running/Boot Start]
<\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
[klif / klif][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
[npkcrypt / npkcrypt][Running/Auto Start]
<\??\C:\Program Files\QQ2006\npkcrypt.sys><INCA Internet Co., Ltd.>
[nv / nv][Stopped/Manual Start]
<system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Feitian ROCKEY4 Device Service / ROCKEYNT][Running/Manual Start]
<system32\DRIVERS\Rockey4.sys><Feitian Technologies Co., Ltd.>
[Realtek 10/100/1000 NIC Family all in one NDIS XP Driver / RTL8023xp][Running/Manual Start]
<system32\DRIVERS\Rtnicxp.sys><Realtek Semiconductor Corporation>
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys><N/A>
[Sense3 / Sense3][Running/Auto Start]
<System32\Drivers\sense3.sys><Beijing Senselock>
==================================
浏览器加载项
[Web反病毒保护]
{1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scieplugin.dll, Kaspersky Lab>
[信息检索(&R)]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
[MMCPlayer Class]
{05C1004E-2596-48E5-8E26-39362985EEB9} <D:\Program Files\Sogou PXP\MMCShell.dll, Sohu.com Inc.>
[Adobe PDF Reader Link Helper]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\mshtml.dll, N/A>
[DHTML Edit Control Safe for Scripting for IE5]
{2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx, Microsoft Corporation>
[Shell Name Space]
{55136805-B2DE-11D1-B9F2-00A0C98BC547} <%SystemRoot%\system32\shdocvw.dll, N/A>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Microsoft Web 浏览器]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_002.dll, Thunder Networking Technologies,LTD>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[RDS.DataSpace]
{BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\MSADC\msadco.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9c.ocx, Adobe Systems, Inc.>
[使用迅雷下载]
<C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
[使用迅雷下载全部链接]
<C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到雅虎收藏+]
<http://myweb.cn.yahoo.com/post.html?F=D2_A, N/A>
Reita - 2007-6-15 17:24:00
正在运行的进程
[PID: 504][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 576][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1548][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 16.0.0.86]
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] [Autodesk, 16.0.0.86]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[C:\Program Files\QQ2006\MFC42.DLL] [Microsoft Corporation, 6.00.8665.0]
[C:\WINDOWS\system32\UNISPIM6.IME] [北京紫光华宇软件股份有限公司, 6.0.0.6077]
[C:\Program Files\Common Files\SolidWorks Shared\sldwinshellextu.dll] [SolidWorks Corporation, 15.0.0.9022]
[C:\Program Files\Common Files\SolidWorks Shared\zlib.dll] [, 1.1.4.1]
[C:\Program Files\Common Files\SolidWorks Shared\lang\chinese-simplified\sldwinshellextresu.dll] [SolidWorks Corporation, 15.0.0.9022]
[PID: 1648][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3468][C:\Program Files\QQ2006\TIMPlatform.exe] [tencent, 0, 3, 1, 8]
[C:\Program Files\QQ2006\TIMProxy.dll] [tencent, 0, 3, 2, 4]
[PID: 3036][C:\WINDOWS\system32\cmd.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1428][C:\WINDOWS\system32\cmd.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3064][C:\WINDOWS\system32\conime.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 852][F:\Program Files\proeWildfire 3.0\i486_nt\obj\xtop.exe] [PTC, 24, 0, 2002, 490]
[F:\Program Files\proeWildfire 3.0\i486_nt\lib\RgiWrapIsoLib.dll] [N/A, ]
[F:\Program Files\proeWildfire 3.0\i486_nt\obj\MSVCP60.dll] [Microsoft Corporation, 6.00.8972.0]
[C:\WINDOWS\system32\atioglxx.dll] [ATI Technologies Inc., 6.14.10.5819]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scr_ch_pg.dll] [Kaspersky Lab, 1.0.6.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\klscav.dll] [Kaspersky Lab, 6.0.0.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\pr_remote.dll] [Kaspersky Lab, 6.0.0.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prloader.dll] [Kaspersky Lab, 6.0.0.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prkernel.ppl] [Kaspersky Lab, 6.0.0.304]
[d:\program files\kaspersky lab\kaspersky internet security 6.0\params.ppl] [Kaspersky Lab, 6.0.0.299]
[d:\program files\kaspersky lab\kaspersky internet security 6.0\pxstub.ppl] [Kaspersky Lab, 6.0.0.299]
[d:\program files\kaspersky lab\kaspersky internet security 6.0\tempfile.ppl] [Kaspersky Lab, 6.0.0.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.0.299]
[d:\program files\kaspersky lab\kaspersky internet security 6.0\nfio.ppl] [Kaspersky Lab, 6.0.0.299]
[d:\program files\kaspersky lab\kaspersky internet security 6.0\fsdrvplgn.ppl] [Kaspersky Lab, 6.0.0.299]
[F:\Program Files\proeWildfire 3.0\i486_nt\obj\pro_autoxllib.dll] [PTC, 24, 0, 2002, 490]
[F:\Program Files\proeWildfire 3.0\i486_nt\obj\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[F:\Program Files\proeWildfire 3.0\i486_nt\obj\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[PID: 2944][F:\Program Files\proeWildfire 3.0\i486_nt\nms\nmsd.exe] [PTC, 24, 0, 2002, 490]
[PID: 3616][F:\Program Files\proeWildfire 3.0\i486_nt\obj\pro_comm_msg.exe] [PTC, 24, 0, 2002, 490]
[PID: 2484][F:\Program Files\SolidWorks\sldworks.exe] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldappu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\SLDGRIDASU.dll] [Rogue Wave Software, 9.0.500]
[F:\Program Files\SolidWorks\RWUXThemeSU.dll] [Rogue Wave Software Inc, 1, 0, 7, 2]
[F:\Program Files\SolidWorks\SLDSFLASU.dll] [Rogue Wave Software, a QUOVADX? division, 2.0.402]
[F:\Program Files\SolidWorks\sldarchiveu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\SLDMFCU.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\zlib.dll] [, 1.1.4.1]
[F:\Program Files\SolidWorks\sldebu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldutu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\SWCCU.DLL] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldmgu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldgcu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\GSSLFRMfgView.dll] [N/A, ]
[F:\Program Files\SolidWorks\BodyDiffu.dll] [N/A, ]
[F:\Program Files\SolidWorks\sldgciParau.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldsvu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\dcu3d34.dll] [D-Cubed Ltd, 34.1.11.0]
[F:\Program Files\SolidWorks\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[F:\Program Files\SolidWorks\dcu2d49.dll] [D-Cubed Ltd, 49.102.9.0]
[F:\Program Files\SolidWorks\dcupgm49.dll] [D-Cubed Ltd, 49.102.9.0]
[F:\Program Files\SolidWorks\sldxtoolkitu.dll] [SolidWorks Corporation, 15.0.0.0119]
[F:\Program Files\SolidWorks\sldxtkitu.dll] [SolidWorks Corporation, 14.0.5.6000]
[F:\Program Files\SolidWorks\dbghelp.dll] [Microsoft Corporation, 6.1.0017.2 (DbgBuild.030121-2003)]
[C:\DOCUME~1\X\LOCALS~1\Temp\SolidWorksLicTemp.0001.dir.0000\~df394b.tmp] [N/A, ]
[C:\DOCUME~1\X\LOCALS~1\Temp\SolidWorksLicTemp.0001.dir.0000\~deb771.tmp] [, 2.70.000]
[F:\Program Files\SolidWorks\P4\pskernel.dll] [UGS Corp., 17.01.244]
[F:\Program Files\SolidWorks\lang\chinese-simplified\slddialogresu.dll] [Solidworks, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\slderrresu.dll] [Solidworks, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\sldres1u.dll] [Solidworks, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\sldresu.dll] [Solidworks, 15.0.0.9022]
[C:\WINDOWS\system32\atioglxx.dll] [ATI Technologies Inc., 6.14.10.5819]
[F:\PROGRA~1\SOLIDW~1\SWPOPU~1.DLL] [SolidWorks, 15.0.0.9022]
[C:\WINDOWS\system32\msxml4.dll] [Microsoft Corporation, 4.20.9818.0]
[C:\WINDOWS\system32\mscoree.dll] [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
[C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll] [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
[C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\a660ecf91d200742b1f29c3b476725fb\mscorlib.ni.dll] [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
Reita - 2007-6-15 17:25:00
[F:\Program Files\SolidWorks\GDTAnalysis.NET.dll] [N/A, ]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll] [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
[F:\Program Files\SolidWorks\GdtAnalysisSupport.dll] [PrizMetrik, 1.0.2313.27461]
[F:\Program Files\SolidWorks\GenerativeToleranceSchemes.dll] [PrizMetrik, 1.0.2313.27465]
[F:\Program Files\SolidWorks\ToleranceAnalysisMinMax.dll] [PrizMetrik, 1.0.2313.27466]
[F:\Program Files\SolidWorks\CircuitWorks\CWLite.dll] [Priware Limited, 1.0.2279.14876]
[C:\Program Files\Common Files\Microsoft Shared\VBA\VBA6\APC60.dll] [Microsoft Corporation, 6.00.8561]
[C:\PROGRA~1\COMMON~1\MICROS~1\VBA\VBA6\VBE6.DLL] [Microsoft Corporation, 6.04.9972]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\offguard.dll] [Kaspersky Lab, 6.0.0.299]
[C:\Program Files\Microsoft Office\Office\MSO9.DLL] [Microsoft Corporation, 9.0.2812]
[C:\PROGRA~1\COMMON~1\MICROS~1\VBA\VBA6\2052\VBE6INTL.DLL] [Microsoft Corporation, 6.03.9070]
[f:\Program Files\SolidWorks\drawcompare.dll] [SolidWorks, 15.00.9022]
[C:\WINDOWS\system32\VB6CHS.DLL] [Microsoft Corporation, 6.00.8988]
[F:\Program Files\SolidWorks\sldfuncfeat.dll] [Solidworks, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\sldFuncFeatRes.dll] [Solidworks, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldapiu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\slddtlu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldfgu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldgfxu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\SLDMODU.dll] [SolidWorks Corporation, 15.0.0.9023]
[F:\Program Files\SolidWorks\sldadoconverteru.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldsv3u.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\dcuaem34.dll] [D-Cubed Ltd, 34.1.11.0]
[F:\Program Files\SolidWorks\dcud3e34.dll] [D-Cubed Ltd, 34.1.11.0]
[F:\Program Files\SolidWorks\dcucdm34.dll] [D-Cubed Ltd, 34.1.11.0]
[F:\Program Files\SolidWorks\sldmswiftu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\slduiu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldsmmu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\slddataeditingu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldfuiu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldprtu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldedgemergeu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldmatu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldcontentu.dll] [SolidWorks Corporation, 15.0.0.9023]
[F:\Program Files\SolidWorks\sldSMUu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldrefgeomu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldrefpointdveu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldhwizuiu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldsketchuiu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldrtmou.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldautotraceskpictureu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldgraphicsuiu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\sldsmuresu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\mpaswex.DLL] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\libmfccpu.dll] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\libftpw.dll] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\vtkgraphics0.dll] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\vtkcommon.dll] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\vtkgraphics1.dll] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\vtkgraphics4.dll] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\vtkgraphics2.dll] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\vtkImaging.dll] [N/A, ]
[F:\Program Files\SolidWorks\MoldflowXpress\bin\chinese-simplified\mfpa_eng.dll] [Moldflow Inc., 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\sldpmru.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldrglu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldwelcomeu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldfileexploreru.dll] [SolidWorks Corporation, 15.0.0.9022]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.0.299]
[F:\Program Files\SolidWorks\slddrawtabu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\sldtodu.dll] [SolidWorks Corporation, 15.0.0.9022]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scr_ch_pg.dll] [Kaspersky Lab, 1.0.6.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\klscav.dll] [Kaspersky Lab, 6.0.0.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\pr_remote.dll] [Kaspersky Lab, 6.0.0.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prloader.dll] [Kaspersky Lab, 6.0.0.299]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\prkernel.ppl] [Kaspersky Lab, 6.0.0.304]
[d:\program files\kaspersky lab\kaspersky internet security 6.0\params.ppl] [Kaspersky Lab, 6.0.0.299]
[d:\program files\kaspersky lab\kaspersky internet security 6.0\pxstub.ppl] [Kaspersky Lab, 6.0.0.299]
[d:\program files\kaspersky lab\kaspersky internet security 6.0\tempfile.ppl] [Kaspersky Lab, 6.0.0.299]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 16.0.0.86]
[C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\9f3801612a071d4d99e1db3243f9acda\System.Web.ni.dll] [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\SolidWorks\sldasmu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldanimationengineu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldvisualstateu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldanimateu.dll] [SolidWorks Corporation, 15.0.0.9022]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[F:\Program Files\SolidWorks\lang\chinese-simplified\sldxlutresu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\sldstepresu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\sldxltrresu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldsmartcompu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\slddrwu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\sldopendwgu.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\slddxru.dll] [SolidWorks Corporation, 15.0.0.9022]
[F:\Program Files\SolidWorks\lang\chinese-simplified\slddwgresu.dll] [SolidWorks Corporation, 15.0.0.9022]
[C:\DOCUME~1\X\LOCALS~1\Temp\SolidWorksLicTemp.0001] [Macrovision Europe Ltd., 1, 0, 0, 1]
[PID: 3724][D:\Program Files\Kingsoft\PowerWord 2006\XDICT.EXE] [Kingsoft Co, Ltd., 9, 0, 0, 0]
[D:\Program Files\Kingsoft\PowerWord 2006\AccountActivate.dll] [N/A, ]
[D:\Program Files\Kingsoft\PowerWord 2006\DicMngr.dll] [Kingsoft, 2, 0, 0, 0]
[D:\Program Files\Kingsoft\PowerWord 2006\doshow.dll] [N/A, ]
[D:\Program Files\Kingsoft\PowerWord 2006\ITextOut.dll] [Kingsoft, 1, 1, 0, 0]
[D:\Program Files\Kingsoft\PowerWord 2006\KPic10.dll] [N/A, ]
[D:\Program Files\Kingsoft\PowerWord 2006\ijl11.dll] [Intel Corporation, 1.1.2]
Reita - 2007-6-15 17:26:00
[D:\Program Files\Kingsoft\PowerWord 2006\NormGrab.DLL] [Kingsoft Co, Ltd., 6, 0, 0, 0]
[D:\Program Files\Kingsoft\PowerWord 2006\toTTSEngine50.dll] [Kingsoft Corporation, 1, 0, 0, 1]
[D:\Program Files\Kingsoft\PowerWord 2006\xfile.dll] [N/A, ]
[D:\Program Files\Kingsoft\PowerWord 2006\DBCore10.dll] [Kingsoft Corp., 1, 0, 0, 0]
[D:\Program Files\Kingsoft\PowerWord 2006\XdictGrb.dll] [Kingsoft Co, Ltd., 9, 0, 0, 0]
[D:\Program Files\Kingsoft\PowerWord 2006\KAVPassport.DLL] [Kingsoft Corporation, 2005, 4, 7, 25]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.0.299]
[C:\WINDOWS\system32\UNISPIM6.IME] [北京紫光华宇软件股份有限公司, 6.0.0.6077]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 16.0.0.86]
[PID: 1620][F:\Program Files\AutoCAD 2004\acad.exe] [Autodesk, Inc., R16.00.086]
[C:\Program Files\Common Files\Autodesk Shared\ac1st16.dll] [Autodesk, Inc., 16.0.0.86]
[C:\Program Files\Common Files\Autodesk Shared\acdb16.dll] [Autodesk, Inc., 16.0.0.86]
[C:\Program Files\Common Files\Autodesk Shared\AcGe16.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\MFC70.DLL] [Microsoft Corporation, 7.00.9466.0]
[F:\Program Files\AutoCAD 2004\acui16.dll] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\ANav.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\adui16.dll] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\dswhip.dll] [Autodesk Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\heidi8.dll] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\dlint8.dll] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\SFTTABAC.dll] [Softel vdm, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\UserData.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\adlmdll.dll] [Autodesk, Inc., 4.0.0.2]
[F:\Program Files\AutoCAD 2004\adctrls.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\adui16res.dll] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AnavRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\acui16res.dll] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\DsWhipRes.dll] [Autodesk Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\sfttabacRes.dll] [Softel vdm, 16.0.0.86]
[C:\DOCUME~1\X\LOCALS~1\Temp\~ef88f2\~df394b.tmp] [N/A, ]
[C:\DOCUME~1\X\LOCALS~1\Temp\~ef88f2\~de8c3a.tmp] [, 2.20.020]
[F:\Program Files\AutoCAD 2004\ADCtrlsRes.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\acadbtn.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\acadres.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\adlmres.dll] [Autodesk, Inc., 4.0.0.2]
[F:\Program Files\AutoCAD 2004\PrxyInet.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\PrxyInetRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\oleaprot.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\colorRes.dll] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\drv\gdi8.hdi] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\drv\gdi8Res.dll] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\drv\szb8.hdi] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\drv\rblast8.hdi] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\drv\gdifont8.hdi] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\acgs.dll] [Autodesk Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\acgsRes.dll] [Autodesk Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\hcreg8.dll] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\hcreg8Res.dll] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\vl.arx] [Autodesk Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\VLMSG.DLL] [Autodesk Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\VLLIB.DLL] [Autodesk Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcApp.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcDblClkEdit.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcDblClkEditPE.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcDblClkEditRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\acdim.arx] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\ShareAC.dll] [Autodesk, Inc, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\ShareMFC.dll] [Autodesk, Inc, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcDimRes.dll] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\aceplotx.arx] [Autodesk, 16.0.0.86]
[c:\program files\common files\autodesk shared\achapi16.dbx] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcEplotXRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\achlnkui.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\achlnkuiRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcIDropMgr.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcIDropMgrRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcLayerP.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcLayerPRes.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcSign.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcSignRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcSpaceTrans.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcSpaceTransRes.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcStd.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcStStdRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcTp.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcTc.DLL] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcTcUi.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcTcRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcTcUiRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\whohas.arx] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\whohasRes.dll] [, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\acetlodr.arx] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\WSCommCntrAcCon.arx] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\WSCommCntrAcConRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\acismui.arx] [Autodesk, Inc., 16.0.0.86]
[c:\program files\common files\autodesk shared\acismobj16.dbx] [Autodesk, Inc., 16.0.0.86]
[c:\program files\common files\autodesk shared\IE80.dll] [, ]
Reita - 2007-6-15 17:27:00
[c:\program files\common files\autodesk shared\iebmprd80.dll] [, ]
[c:\program files\common files\autodesk shared\ietiffrd80.dll] [, ]
[c:\program files\common files\autodesk shared\iejfifrd80.dll] [, ]
[c:\program files\common files\autodesk shared\iecalsrd80.dll] [, ]
[c:\program files\common files\autodesk shared\iepngrd80.dll] [, ]
[c:\program files\common files\autodesk shared\iepcxrd80.dll] [, ]
[c:\program files\common files\autodesk shared\ieflicrd80.dll] [, ]
[c:\program files\common files\autodesk shared\ietgard80.dll] [, ]
[c:\program files\common files\autodesk shared\iepictrd80.dll] [, ]
[c:\program files\common files\autodesk shared\iebmpwr80.dll] [, ]
[c:\program files\common files\autodesk shared\iecalswr80.dll] [, ]
[c:\program files\common files\autodesk shared\ieflicwr80.dll] [, ]
[c:\program files\common files\autodesk shared\iejfifwr80.dll] [, ]
[c:\program files\common files\autodesk shared\iepcxwr80.dll] [, ]
[c:\program files\common files\autodesk shared\iepngwr80.dll] [, ]
[c:\program files\common files\autodesk shared\ietgawr80.dll] [, ]
[c:\program files\common files\autodesk shared\ietiffwr80.dll] [, ]
[F:\Program Files\AutoCAD 2004\acismuiRes.dll] [Autodesk, Inc., 16.0.0.86]
[c:\program files\common files\autodesk shared\iespotrd80.dll] [, ]
[c:\program files\common files\autodesk shared\ierlcrw80.dll] [, ]
[c:\program files\common files\autodesk shared\ieigsrd80.dll] [, ]
[c:\program files\common files\autodesk shared\ieig4rd80.dll] [, ]
[F:\Program Files\AutoCAD 2004\Ase.arx] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\SQLData.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\tmptbl.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\SQLEng.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\asiloc.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\drv\gdiplot8.hdi] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\drv\gdiplot8Res.dll] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\dwgaids.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\Dwgaidsres.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcSecOpt.arx] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcSecOptRes.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\color.dll] [, 16.0.0.86]
[c:\program files\common files\autodesk shared\acutxmldom16.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcMatch.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcMatchRes.dll] [Autodesk, 16.0.0.86]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\light8.dll] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\mtl8.dll] [Autodesk, Inc., 8.0.16.86]
[F:\Program Files\AutoCAD 2004\acgsimage.dll] [Autodesk Inc., 16.0.0.86]
[f:\program files\autocad 2004\drv\paint8.hdi] [Autodesk, Inc., 8.0.16.86]
[f:\program files\autocad 2004\drv\hlr8.hdi] [Autodesk, Inc., 8.0.16.86]
[c:\program files\common files\autodesk shared\acdb16CHSres.dll] [Autodesk, Inc., 16.0.0.86]
[F:\Program Files\AutoCAD 2004\Acopm.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\Acpi.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\ATL70.DLL] [Microsoft Corporation, 7.00.9466.0]
[F:\Program Files\AutoCAD 2004\axdb16.dll] [, ]
[F:\Program Files\AutoCAD 2004\AcPiRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcOpmRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcObjClassImp.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcOcSchemaUtil.arx] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcObjClassImpRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\ACOPMEXT.ARX] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcOpmExtRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcPEXCtlRes.dll] [Autodesk Inc,., 16.0.0.86]
[c:\program files\common files\autodesk shared\Ax16ENUres.dll] [Autodesk, Inc, 16.0.0.86]
[c:\program files\common files\autodesk shared\AcMPolygonObj16CHSRes.dll] [Autodesk, 16.0.0.86]
[F:\Program Files\AutoCAD 2004\AcPEXCtl.arx] [Autodesk Inc,., 16.0.0.86]
[c:\program files\common files\autodesk shared\Ax16CHSres.dll] [Autodesk, Inc, 16.0.0.86]
[C:\DOCUME~1\X\LOCALS~1\Temp\~e5d141.tmp] [Macrovision Europe Ltd., 1, 0, 0, 1]
[PID: 204][C:\Program Files\Common Files\Autodesk Shared\WSCommCntr1.exe] [Autodesk, Inc., 1.0.0.1]
[C:\Program Files\Common Files\Autodesk Shared\WebServices1.dll] [Autodesk, Inc., 1.0.0.1]
[PID: 3372][C:\Program Files\QQ2006\QQ.exe] [TENCENT, 0, 0, 0, 0]
[C:\Program Files\QQ2006\QQBaseClassInDll.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\QQHelperDll.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\BasicCtrlDll.dll] [Tencent, 5, 0, 200, 160]
[C:\Program Files\QQ2006\MFC42.DLL] [Microsoft Corporation, 6.00.8665.0]
[C:\Program Files\QQ2006\PYKer.dll] [飘云 http://www.pyqq.cn, 飘云]
[C:\Program Files\QQ2006\ipsearcher.dll] [, 1.0.0.3]
[C:\Program Files\QQ2006\RICHED32.DLL] [Microsoft Corporation, 5.00.2134.1]
[C:\Program Files\QQ2006\RICHED20.dll] [Microsoft Corporation, 5.31.23.1218]
[C:\Program Files\QQ2006\QQAPI.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\TIMProxy.dll] [tencent, 0, 3, 2, 4]
[C:\Program Files\QQ2006\LoginCtrl.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\npkcntc.dll] [INCA Internet Co., Ltd., 2006, 3, 2, 1]
[C:\Program Files\QQ2006\npkpdb.dll] [INCA Internet Co., Ltd., 2003, 10, 1, 1]
[C:\Program Files\QQ2006\QQRes.dll] [tencent, 1, 0, 0, 1]
[C:\Program Files\QQ2006\QQMainFrame.dll] [N/A, ]
[C:\Program Files\QQ2006\CQQApplication.dll] [N/A, ]
[C:\Program Files\QQ2006\NewSkin.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\HostingMgr.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\CameraDll.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\MailSummary.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\QQSpace.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\vbscript.dll] [Microsoft Corporation, 5.6.0.7426]
[C:\Program Files\QQ2006\QQAllInOne.dll] [N/A, ]
[C:\Program Files\QQ2006\GroupLive.dll] [N/A, ]
[C:\Program Files\QQ2006\SCCore.dll] [N/A, ]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.0.299]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[C:\Program Files\QQ2006\QQGroupMng.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\UserDefinedHead.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\QQPlugin.dll] [N/A, ]
[C:\Program Files\QQ2006\QQConfigPlugin.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\QQSysMsgMng.dll] [N/A, ]
[C:\Program Files\QQ2006\QQCustomFace.dll] [N/A, ]
[C:\Program Files\QQ2006\gdiplus.dll] [Microsoft Corporation, 5.1.3102.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\QQ2006\PersonalDesktop.dll] [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
[C:\Program Files\QQ2006\QQSettingCtrl.dll] [, 1, 0, 0, 1]
Reita - 2007-6-15 17:28:00
[C:\Program Files\QQ2006\QRingMng.dll] [N/A, ]
[C:\Program Files\QQ2006\PhoneAPI.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\DialerAllinOne.dll] [tencent, 1, 4, 0, 0]
[C:\Program Files\QQ2006\FlashAvatarDll.dll] [, 1, 4, 0, 1]
[C:\Program Files\QQ2006\QQAvatar.dll] [N/A, ]
[C:\WINDOWS\system32\Macromed\Flash\Flash9c.ocx] [Adobe Systems, Inc., 9,0,45,0]
[C:\Program Files\QQ2006\LongConnection.dll] [tencent, 5, 0, 200, 160]
[C:\Program Files\QQ2006\ShareFiles.dll] [N/A, ]
[C:\Program Files\QQ2006\QQZip.dll] [tencent, 0, 3, 2, 4]
[C:\Program Files\QQ2006\ImageOle.dll] [TODO: <Company name>, 1.0.0.1]
[C:\Program Files\QQ2006\QQSceneMng.dll] [N/A, ]
[C:\Program Files\QQ2006\BQQApplication.dll] [N/A, ]
[C:\WINDOWS\system32\UNISPIM6.IME] [北京紫光华宇软件股份有限公司, 6.0.0.6077]
[C:\Program Files\QQ2006\CommercesMng.dll] [, 1, 0, 0, 1]
[C:\Program Files\QQ2006\QQUdpGetFileLib.dll] [tencent, 0, 2, 2, 3]
[C:\Program Files\QQ2006\QQAddr.dll] [深圳市腾讯计算机系统有限公司, 5, 0, 101, 200]
[C:\Program Files\QQ2006\GroupConnection.dll] [Tencent, 5, 0, 202, 170]
[C:\Program Files\QQ2006\QQPhoneHelper.dll] [腾讯科技(深圳)有限公司, 2, 1, 9, 93]
[C:\Program Files\QQ2006\QQMagicFace.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\AcSignIcon.dll] [Autodesk, 16.0.0.86]
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] [Autodesk, 16.0.0.86]
[C:\Program Files\QQ2006\QQFileTransfer.dll] [Tencent, 5, 0, 202, 180]
[PID: 2924][C:\Program Files\Common Files\Autodesk Shared\AcHelp.exe] [Autodesk Inc., 16.0.0.86]
[D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.0.299]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR Error. [AutoCADScriptFile]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
==================================
API HOOK
RVA 错误: LoadLibraryA (危险等级: 一般, 被下面模块所HOOK: Dest Addr: 0xAA59DB25)
RVA 错误: LoadLibraryExA (危险等级: 一般, 被下面模块所HOOK: Dest Addr: 0xAA59DD67)
RVA 错误: LoadLibraryExW (危险等级: 一般, 被下面模块所HOOK: Dest Addr: 0xAA59DF0B)
RVA 错误: LoadLibraryW (危险等级: 一般, 被下面模块所HOOK: Dest Addr: 0xAA59DC49)
RVA 错误: GetProcAddress (危险等级: 高, 被下面模块所HOOK: Dest Addr: 0xAA59DE8F)
==================================
隐藏进程
N/A
==================================
[/CODE]
请各位达人尽快帮忙看一下好吗?偶要下班勒~~5555555~~拜谢啦~~
(*^_^*)
Reita - 2007-6-15 18:10:00
5555555555555~都米有给偶回复的~~
太伤心啦~~
HOSTのS - 2007-6-15 18:36:00
清空C:\DOCUME~1\X\LOCALS~1\Temp
修复文件关联
机器有什么症状请详细描述
扫日志的时候请尽量关闭软件再扫
Reita - 2007-6-16 9:55:00
谢谢7楼~~
1
© 2000 - 2026 Rising Corp. Ltd.