瑞星卡卡安全论坛
juni - 2009-4-8 13:05:00
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (
http://www.KZTechs.com)
Windows XP Home Edition Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [Microsoft Corporation]
<PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [Microsoft Corporation]
<PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [Microsoft Corporation]
<IMEKRMIG6.1><C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE> [Microsoft Corporation]
<MSPY2002><C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC> []
<HP Software Update><C:\Program Files\HP\HP Software Update\HPWuSchd2.exe> [Hewlett-Packard]
<TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot> [RealNetworks, Inc.]
<ATIPTA><"C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"> [ATI Technologies, Inc.]
<PCSuiteTrayApplication><C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup> [Nokia]
<AppleSyncNotifier><C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe> [Apple Inc.]
<QuickTime Task><"C:\Program Files\QuickTime\QTTask.exe" -atboottime> [Apple Inc.]
<iTunesHelper><"C:\Program Files\iTunes\iTunesHelper.exe"> [Apple Inc.]
<runeip><"C:\Program Files\Rising\AntiSpyware\rstray.exe" /startup> [Beijing Rising Information Technology Co., Ltd.]
<wdcertm_ccb><C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDCertM_CCB.exe> [ Beijing WatchData System Co., Ltd.]
<RFWTray><"C:\Program Files\Rising\Rfw\RsTray.exe" -system> [Beijing Rising Information Technology Co., Ltd.]
<RavTray><"C:\Program Files\Rising\Rav\RsTray.exe" -system> [Beijing Rising Information Technology Co., Ltd.]
<Microsoft Pinyin IME Migration><C:\PROGRA~1\COMMON~1\MICROS~1\IME12\IMESC\IMSCMIG.EXE /INSTALL> [Microsoft Corporation]
<hpqSRMon><C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe> [Hewlett-Packard]
<SunJavaUpdateSched><"C:\Program Files\Java\jre6\bin\jusched.exe"> [Sun Microsystems, Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
<KKDelay><C:\Program Files\Rising\AntiSpyware\RunOnce.exe> [Beijing Rising Information Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [Microsoft Corporation]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><kmon.dll> [Beijing Rising Information Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{32CD708B-60A7-4C00-9377-D73EAA495F0F}><C:\WINDOWS\system32\RavExt.dll> [Beijing Rising Information Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
<WinlogonNotify: AtiExtEvent><Ati2evxx.dll> [ATI Technologies Inc.]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\WINDOWS\system32\BMWSAU~1.SCR> [ScreenTime Media]
用户系统信息:Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; SLCC1; .NET CLR 2.0.50727; .NET CLR 3.0.04506; InfoPath.2)
juni - 2009-4-8 13:06:00
==================================
启动文件夹
服务
[Adobe LM Service / Adobe LM Service]
<"C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe"><Adobe Systems>
[Apple Mobile Device / Apple Mobile Device]
<"C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"><Apple Inc.>
[Ati HotKey Poller / Ati HotKey Poller]
<C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[ATI Smart / ATI Smart]
<C:\WINDOWS\system32\ati2sgag.exe><>
[BlueSoleil Hid Service / BlueSoleil Hid Service]
<C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe><N/A>
[Bonjour 服务 / Bonjour Service]
<"C:\Program Files\Bonjour\mDNSResponder.exe"><Apple Inc.>
[C-DillaCdaC11BA / C-DillaCdaC11BA]
<C:\WINDOWS\system32\drivers\CDAC11BA.EXE><Macrovision>
[iPod 服务 / iPod Service]
<"C:\Program Files\iPod\bin\iPodService.exe"><Apple Inc.>
[Java Quick Starter / JavaQuickStarterService]
<"C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf"><N/A>
[Rav Process Communication Center / RavCCenter]
<C:\Program Files\Rising\Rav\CCENTER.EXE><Beijing Rising Information Technology Co., Ltd.>
[Rising RavTask Manager / RavTask]
<"C:\Program Files\Rising\Rav\RavTask.exe" RavTask><Beijing Rising Information Technology Co., Ltd.>
[Rfw Process Communication Center / RfwCCenter]
<C:\Program Files\Rising\Rfw\CCENTER.EXE><Beijing Rising Information Technology Co., Ltd.>
[Rising Personal Firewall Service / RfwService]
<C:\Program Files\Rising\Rfw\rfwsrv.exe><Beijing Rising Information Technology Co., Ltd.>
[Rising RfwTask Manager / RfwTask]
<"C:\Program Files\Rising\Rfw\RavTask.exe" RfwTask><Beijing Rising Information Technology Co., Ltd.>
[Rising RealTime Monitor / RsRavMon]
<C:\Program Files\Rising\Rav\RavMonD.exe><Beijing Rising Information Technology Co., Ltd.>
[Rising Scan Service / RsScanSrv]
<C:\Program Files\Rising\Rav\ScanFrm.exe><Beijing Rising Information Technology Co., Ltd.>
[ServiceLayer / ServiceLayer]
<"C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe"><Nokia.>
[WatchData ccb V3.2 / WDMonitorCCB]
<C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDKeyMonitorCCB.exe><Beijing WatchData System Co., Ltd.>
==================================
浏览器加载项
[ThunderAtOnce Class]
{01443AEC-0FD1-40fd-9C87-E93D1494C233} <F:\Program Files\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[HP Print Enhancer]
{0347C33E-8762-4905-BF09-768834316C61} <C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll, Hewlett-Packard Co.>
[RealPlayer Download and Record Plugin for Internet Explorer]
{3049C3E9-B461-4BC5-8870-4C09146192CA} <F:\guoyujin\realplayer\rpbrowserrecordplugin.dll, RealPlayer>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[Windows Live 登录帮助程序]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[卡卡上网安全助手]
{98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} <C:\WINDOWS\system32\UrlFilter.dll, Beijing Rising Information Technology Co., Ltd.>
[Windows Live Toolbar Helper]
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435b-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, Sun Microsystems, Inc.>
[JQSIEStartDetectorImpl Class]
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, Sun Microsystems, Inc.>
[HP Smart BHO Class]
{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} <C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll, Hewlett-Packard Co.>
[启动迅雷5]
{09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <F:\Program Files\Thunder.exe, Thunder Networking Technologies,LTD>
[BlogThisToolbarButton Class]
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} <C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll, Microsoft Corporation>
[信息检索(&R)]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL, Microsoft Corporation>
[ClipBookBtn Class]
{DDE87865-83C5-48c4-8357-2F5B1AA84522} <C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll, Hewlett-Packard Co.>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[&Google]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, N/A>
[Windows Live Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[瑞星卡卡工具条(&R)]
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\KakaTool.dll, Beijing Rising Information Technology Co., Ltd.>
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
[Snapfish Activia]
{406B5949-7190-4245-91A9-30A17DE16AD0} <C:\WINDOWS\Downloaded Program Files\SnapfishActivia1000.ocx, Snapfish>
[EditCtrl Class]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, >
[MSN Photo Upload Tool]
{4F1E5B1A-2A80-42CA-8532-2D05CB959537} <C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll, Microsoft? Corporation>
[UploadControl Control]
{52FF336D-A05D-4A14-A3A1-7B6B4B427F88} <C:\WINDOWS\system32\UPLOAD~1.OCX, 网易(杭州)网络有限公司>
[Windows Live Photo Upload Control]
{7FC1B346-83E6-4774-8D20-1A6B09B0E737} <C:\WINDOWS\Downloaded Program Files\CONFLICT.1\MsnPUpld.dll, Microsoft? Corporation>
[Java Plug-in 1.6.0_13]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, N/A>
[photo_uploader Control]
{A984ED9F-E8DA-44E5-BC18-C14B9ABEF79D} <C:\PROGRA~1\PHOTO_~1\PHOTO_~1.OCX, N/A>
[Java Plug-in 1.5.0_05]
{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, N/A>
[Java Plug-in 1.5.0_06]
{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, N/A>
[Java Plug-in 1.5.0_09]
{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, N/A>
[Java Plug-in 1.6.0_03]
{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, N/A>
[Java Plug-in 1.6.0_07]
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, N/A>
[Java Plug-in 1.6.0_13]
{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\jp2iexp.dll, N/A>
[Java Plug-in 1.6.0_13]
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files\Java\jre6\bin\npjpi160_13.dll, Sun Microsystems, Inc.>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10b.ocx, Adobe Systems, Inc.>
[PhotoUploadCtrlMini Control]
{D9306BD1-2325-4C28-8632-B02330C1BB02} <C:\WINDOWS\system32\PHOTOU~1.OCX, 广州网易互动娱乐有限公司>
[Google Script Object]
{00EF2092-6AC5-47C0-BD25-CF2D5D657FEB} <c:\program files\google\googletoolbar2.dll, N/A>
[ThunderAtOnce Class]
{01443AEC-0FD1-40FD-9C87-E93D1494C233} <F:\Program Files\ComDlls\TDAtOnce_Now.dll, Thunder Networking Technologies,LTD>
[QuickTime Object]
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <C:\Program Files\QuickTime\QTPlugin.ocx, Apple Inc.>
[HP Print Enhancer]
{0347C33E-8762-4905-BF09-768834316C61} <C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll, Hewlett-Packard Co.>
[ActiveMovieControl Object]
{05589FA1-C356-11CE-BF01-00AA0055595A} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[Office Genuine Advantage Validation Tool]
{05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} <C:\WINDOWS\system32\OGACheckControl.dll, N/A>
[Fade]
{16B280C5-EE70-11D1-9066-00C04FD9189D} <C:\WINDOWS\system32\Dxtmsft.dll, Microsoft Corporation>
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\LegitCheckControl.DLL, Microsoft Corporation>
[InformationCardSigninHelper Class]
{19916E01-B44E-4E31-94A4-4696DF46157B} <C:\WINDOWS\system32\icardie.dll, Microsoft Corporation>
[iTrusPTA Class]
{1E0DFFCF-27FF-4574-849B-55007349FEDA} <C:\WINDOWS\system32\aliedit\pta.dll, >
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\wmpdxm.dll, Microsoft Corporation>
[&Google]
{2318C2B1-4965-11D4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, N/A>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[XML DOM Document]
{2933BF90-7B36-11D2-B20E-00C04F983E60} <%SystemRoot%\system32\msxml3.dll, N/A>
[DHTML Edit Control Safe for Scripting for IE5]
{2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx, Microsoft Corporation>
[RealPlayer RAM Download Handler]
{2F542A2E-EDC9-4BF7-8CB1-87C9919F7F93} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[RealPlayer Download and Record Plugin for Internet Explorer]
{3049C3E9-B461-4BC5-8870-4C09146192CA} <F:\guoyujin\realplayer\rpbrowserrecordplugin.dll, RealPlayer>
[HtmlDlgSafeHelper Class]
{3050F819-98B5-11CF-BB82-00AA00BDCE0B} <C:\WINDOWS\system32\mshtmled.dll, Microsoft Corporation>
[MSNTB Server]
{320D9736-5661-4902-A90E-B55A9ADACBC3} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[IETag Factory]
{38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~1\COMMON~1\MICROS~1\SMARTT~1\IETAG.DLL, Microsoft Corporation>
[QuickTime Object]
{4063BE15-3B08-470D-A0D5-B37161CFFD69} <C:\Program Files\QuickTime\QTPlugin.ocx, Apple Inc.>
[Snapfish Activia]
{406B5949-7190-4245-91A9-30A17DE16AD0} <C:\WINDOWS\Downloaded Program Files\SnapfishActivia1000.ocx, Snapfish>
[Redirect Control]
{47F66446-563D-11D3-9733-906958C17458} <C:\HP\KBD\REDIRECT.OCX, Hewlett-Packard Company>
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\system32\msxml3.dll, N/A>
[Thunder Agent Class]
{485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <F:\Program Files\ComDlls\ThunderAgent_Now.dll, Thunder Networking Technologies,LTD>
[EditCtrl Class]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, >
[MSN Photo Upload Tool]
{4F1E5B1A-2A80-42CA-8532-2D05CB959537} <C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll, Microsoft? Corporation>
[HHCtrl Object]
{52A2AAAE-085D-4187-97EA-8C30DB990436} <C:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>
[UploadControl Control]
{52FF336D-A05D-4A14-A3A1-7B6B4B427F88} <C:\WINDOWS\system32\UPLOAD~1.OCX, 网易(杭州)网络有限公司>
juni - 2009-4-8 13:08:00
[Shell Name Space]
{55136805-B2DE-11D1-B9F2-00A0C98BC547} <C:\WINDOWS\system32\ieframe.dll, Microsoft Corporation>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[XMP Class]
{6483F145-A768-4C41-AACC-52D4D7845851} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xplayer.dll_1_work, Xunlei Networking Technologies,LTD>
[XDRM]
{693571CB-54A3-4E90-9D52-EEAE1334E2D3} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xdrm.dll_1_work, >
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[WangWangObj Class]
{6E213FC7-DD5A-4115-B7E6-D4C7838C361E} <F:\guoyujin\wangwang\WangWangX6.dll, 阿里巴巴软件(上海)有限公司>
[MUWebControl Class]
{6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <C:\WINDOWS\system32\muweb.dll, Microsoft Corporation>
[Active Desktop Mover]
{72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>
[Windows Script Host Shell Object]
{72C24DD5-D70A-438B-8A42-98424B88AFB8} <C:\WINDOWS\system32\wshom.ocx, Microsoft Corporation>
[WBEM Scripting Sink]
{75718C9A-F029-11D1-A1AC-00C04FB6C223} <C:\WINDOWS\system32\wbem\wbemdisp.dll, Microsoft Corporation>
[MediaComm Class]
{7670648D-461B-42AF-BDFE-46D26AF5EFF2} <F:\Program Files\Components\InMedia\MediaAddin18.dll, Thunder Networking Technologies,LTD>
[WBEM Scripting Locator]
{76A64158-CB41-11D1-8B02-00600806D9B6} <C:\WINDOWS\system32\wbem\wbemdisp.dll, Microsoft Corporation>
[Windows Live Photo Upload Control]
{7FC1B346-83E6-4774-8D20-1A6B09B0E737} <C:\WINDOWS\Downloaded Program Files\CONFLICT.1\MsnPUpld.dll, Microsoft? Corporation>
[Microsoft Web Browser]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\ieframe.dll, Microsoft Corporation>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files\ComDlls\xunleiBHO_Now.dll, Thunder Networking Technologies,LTD>
[XML DOM Document 4.0]
{88D969C0-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml4.dll, Microsoft Corporation>
[Free Threaded XML DOM Document 4.0]
{88D969C1-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml4.dll, Microsoft Corporation>
[XSL Template 4.0]
{88D969C3-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml4.dll, Microsoft Corporation>
[XML HTTP 4.0]
{88D969C5-F192-11D4-A65F-0040963251E5} <C:\WINDOWS\system32\msxml4.dll, Microsoft Corporation>
[XML DOM Document 5.0]
{88D969E5-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, Microsoft Corporation>
[Free Threaded XML DOM Document 5.0]
{88D969E6-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, Microsoft Corporation>
[XSL Template 5.0]
{88D969E8-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, Microsoft Corporation>
[XML HTTP 5.0]
{88D969EA-F192-11D4-A65F-0040963251E5} <C:\Program Files\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, Microsoft Corporation>
[Windows Live 登录帮助程序]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[卡卡上网安全助手]
{98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} <C:\WINDOWS\system32\UrlFilter.dll, Beijing Rising Information Technology Co., Ltd.>
[Keyroute Control]
{9D450881-607A-11D3-9733-208858C10000} <C:\HP\KBD\KEYROUTE.OCX, Hewlett-Packard Company>
[photo_uploader Control]
{A984ED9F-E8DA-44E5-BC18-C14B9ABEF79D} <C:\PROGRA~1\PHOTO_~1\PHOTO_~1.OCX, N/A>
[]
{A9930D97-9CF0-42A0-A10D-4F28836579D5} <C:\PROGRA~1\KuGoo3\KUGOO3~1.OCX, N/A>
[RMGetLicense Class]
{A9FC132B-096D-460B-B7D5-1DB0FAE0C062} <C:\WINDOWS\system32\msnetobj.dll, Microsoft Corporation>
[DapCtrl Class]
{ACACC6EB-1FBA-4E13-A729-53AEB2DF54F8} <C:\Program Files\Common Files\Thunder Network\KanKan\DapCtrl.2.1.5805.77.(372).dll, ShenZhen Thunder Networking Technologies Ltd.>
[Microsoft Scriptlet Component]
{AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[RDS.DataSpace]
{BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
[Windows Live Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[Windows Live Toolbar Helper]
{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} <C:\Program Files\Windows Live Toolbar\msntb.dll, Microsoft Corporation>
[QQPlayerSvr Proxy Control]
{CD108273-D434-43E6-AA90-1469F97EB398} <F:\guoyujin\QQPlayerProxy.dll, N/A>
[AUDIO__MP3 Moniker Class]
{CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[WDCCBCtrl Class]
{CE0460F5-48BD-4DC1-A046-0BDCB5A06CEB} <C:\WINDOWS\system32\wdccb.dll, >
[RealPlayer G2 Control]
{CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
[Windows Live 登录控制]
{D2517915-48CE-4286-970F-921E881B8C5C} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10b.ocx, Adobe Systems, Inc.>
[VodClient Control Class]
{D4003189-95B1-4A2F-9A87-F2B03665960D} <C:\WINDOWS\system32\Nagasoft\vjocx.dll, 赢在龙头证券资金分析系统 视频插件>
[iTunesDetector Class]
{D719897A-B07A-4C0C-AEA9-9B663A28DFCB} <C:\Program Files\iTunes\ITDetector.ocx, Apple Computer, Inc.>
[PhotoUploadCtrlMini Control]
{D9306BD1-2325-4C28-8632-B02330C1BB02} <C:\WINDOWS\system32\PHOTOU~1.OCX, 广州网易互动娱乐有限公司>
[瑞星卡卡工具条(&R)]
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\KakaTool.dll, Beijing Rising Information Technology Co., Ltd.>
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435B-BC74-9C25C1C588A9} <C:\Program Files\Java\jre6\bin\jp2ssv.dll, Sun Microsystems, Inc.>
[ClipBookBtn Class]
{DDE87865-83C5-48C4-8357-2F5B1AA84522} <C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll, Hewlett-Packard Co.>
[QuickTimeCheck Class]
{DE4AF3B0-F4D4-11D3-B41A-0050DA2E6C21} <C:\Program Files\QuickTime\QTSystem\QuickTimeCheck.ocx, Apple Inc.>
[Microsoft Silverlight]
{DFEAF541-F3E1-4C24-ACAC-99C30715084A} <C:\Program Files\Microsoft Silverlight\2.0.40115.0\npctrl.dll, Microsoft Corporation>
[]
{E1771B7F-98BE-407F-BA67-AA16ADA5D0C5} <C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGSC8~1.DLL, Microsoft Corporation>
[PasswordEditCtrl Class]
{E787FD25-8D7C-4693-AE67-9406BC6E22DF} <C:\WINDOWS\system32\qqedit\qqedit.dll, 腾讯科技(深圳)有限公司>
[JQSIEStartDetectorImpl Class]
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} <C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll, Sun Microsystems, Inc.>
[TimwpDll.TimwpCheck]
{ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4} <F:\guoyujin\QQ文件\Timwp.dll, TENCENT>
[XML HTTP Request]
{ED8C108E-4349-11D2-91A4-00C04F7969E8} <%SystemRoot%\system32\msxml3.dll, N/A>
[Thunder DapPlayer]
{EEDD6FF9-13DE-496B-9A1C-D78B3215E266} <F:\Program Files\Components\DownAndPlay\DapPlayer3.0.5712.71.53.dll, ShenZhen Thunder Networking Technologies Ltd.>
[]
{F06608C7-1874-4EEA-B3B2-DF99EBB144B8} <C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGSC8~1.DLL, Microsoft Corporation>
[XPPlayer Class]
{F3E70CEA-956E-49CC-B444-73AFE593AD7F} <C:\Program Files\Common Files\Thunder Network\KanKan\PPlayer.2.1.5853.212.(372).dll, Xunlei Networking Technologies,LTD>
[XML DOM Document 3.0]
{F5078F32-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\system32\msxml3.dll, N/A>
[Free Threaded XML DOM Document 3.0]
{F5078F33-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML HTTP 3.0]
{F5078F35-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\system32\msxml3.dll, N/A>
[XSL Template 3.0]
{F5078F36-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML DOM Document]
{F6D90F11-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\system32\msxml3.dll, N/A>
[XML HTTP]
{F6D90F16-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\system32\msxml3.dll, N/A>
[IERPCtl Class]
{FDC7A535-4070-4B92-A0EA-D9994BCC0DC5} <F:\guoyujin\realplayer\rpplugins\ierpplug.dll, RealNetworks, Inc.>
[HP Smart BHO Class]
{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} <C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll, Hewlett-Packard Co.>
[&Windows Live Search]
<res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm, N/A>
[使用迅雷下载]
<F:\Program Files\Program\geturl.htm, N/A>
[使用迅雷下载全部链接]
<F:\Program Files\Program\getallurl.htm, N/A>
[导出到 Microsoft Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ表情]
<F:\guoyujin\QQ文件\AddEmotion.htm, N/A>
juni - 2009-4-8 13:08:00
==================================
正在运行的进程
[PID: 840][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 944][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 972][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\Ati2evxx.dll] <ATI Technologies Inc.><6.14.10.4132>
[PID: 1020][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1032][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1188][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4132>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2500>
[PID: 1204][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1280][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 1408][C:\Program Files\Rising\Rav\CCENTER.EXE] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 2>
[C:\Program Files\Rising\Rav\combase.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\Program Files\Rising\Rav\cnt09.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 37>
[C:\Program Files\Rising\Rav\cnt08.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 7>
[PID: 1424][C:\Program Files\Rising\Rfw\CCENTER.EXE] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 2>
[C:\Program Files\Rising\Rfw\combase.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\Program Files\Rising\Rfw\cnt09.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 37>
[PID: 1432][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1504][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1708][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1820][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4132>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2500>
[PID: 1908][C:\Program Files\Rising\Rfw\rfwsrv.exe] <Beijing Rising Information Technology Co., Ltd.><21.0.0.1>
[C:\Program Files\Rising\Rfw\combase.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\Rising\Rfw\MonBase.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 6>
[C:\Program Files\Rising\Rfw\MonComm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 12>
[C:\Program Files\Rising\Rfw\rfwlog.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 9>
[C:\Program Files\Rising\Rfw\rfwrule.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.25>
[C:\Program Files\Rising\Rfw\rfwsrv.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.80>
[C:\Program Files\Rising\Rfw\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Rising\Rfw\mPorts.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.0>
[C:\Program Files\Rising\Rfw\rfwdrvc.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.3>
[C:\Program Files\Rising\Rfw\Rfwdrv.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.5>
[C:\Program Files\Rising\Rfw\rsnetsvr.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 14>
[C:\Program Files\Rising\Rfw\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\Rfw\urlrule.dll] <Beijing Rising Information Technology Co., Ltd.><1.0.0.18>
[C:\Program Files\Rising\Rfw\recomp.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rfw\refs.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rfw\viruslib.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rfw\relibldr.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 2>
[C:\Program Files\Rising\Rfw\rfwproxy.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.25>
[C:\Program Files\Rising\Rfw\RSAPPMGR.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.1>
[C:\Program Files\Rising\Rfw\CfgDll.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.18>
[C:\Program Files\Rising\Rfw\proccomm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Rising\Rfw\urllib.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 1>
[PID: 1928][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\WINDOWS\system32\AcSignIcon.dll] <Autodesk><16.0.0.86>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 12>
[C:\Program Files\iTunes\iTunesMiniPlayer.dll] <Apple Inc.><7.7.1.11>
[C:\Program Files\iTunes\iTunesMiniPlayer.Resources\zh_CN.lproj\iTunesMiniPlayerLocalized.dll] <Apple Inc.><7.7.1.3>
[C:\Program Files\iTunes\iTunesMiniPlayer.Resources\iTunesMiniPlayer.dll] <Apple Inc.><7.7.1.11>
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] <Autodesk><16.0.0.86>
[C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll] <Nokia><6, 81, 46, 1>
[C:\Program Files\Nokia\Nokia PC Suite 6\PCSCM.dll] <Nokia><6, 81, 68, 0>
[C:\WINDOWS\system32\ConnAPI.DLL] <Nokia.><6, 81, 62, 0>
[C:\Program Files\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_chi-sc.nlr] <Nokia><6, 81, 29, 0>
[C:\Program Files\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr] <Nokia><6, 81, 11, 0>
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] <Adobe Systems, Inc.><7.0.0.0>
[F:\Program Files\ComDlls\TDAtOnce_Now.dll] <Thunder Networking Technologies,LTD><1.0.5.29>
[F:\Program Files\ComDlls\xunleiBHO_Now.dll] <Thunder Networking Technologies,LTD><5, 0, 8, 96>
[F:\Program Files\Components\ResWorker\DsBho_01.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 20>
[F:\Program Files\Components\ResWorker\DataProcessor_01.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 16>
juni - 2009-4-8 13:09:00
[PID: 1936][C:\Program Files\Rising\Rav\RavMonD.exe] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 1>
[C:\Program Files\Rising\Rav\combase.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\Program Files\Rising\Rav\moncomm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 12>
[C:\Program Files\Rising\Rav\MonBase.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 6>
[C:\Program Files\Rising\Rav\Rslog.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.34>
[C:\Program Files\Rising\Rav\mondrv.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 9>
[C:\Program Files\Rising\Rav\defmon.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 31>
[C:\Program Files\Rising\Rav\moncom08.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 1>
[C:\Program Files\Rising\Rav\MonRule.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 9>
[C:\Program Files\Rising\Rav\FileMon.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 22>
[C:\Program Files\Rising\Rav\MailMon.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 24>
[C:\Program Files\Rising\Rav\HookWeb.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\Program Files\Rising\Rav\proccomm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Rising\Rav\RSAPPMGR.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.1>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.18>
[C:\Program Files\Rising\Rav\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\Rav\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Rising\Rav\Hooksys.dll] <Beijing Rising Information Technology Co., Ltd.><23, 0, 0, 18>
[C:\Program Files\Rising\Rav\ProcCom.dll] <Beijing Rising Information Technology Co., Ltd.><20, 0, 0, 20>
[C:\Program Files\Rising\Rav\RsCommX2.dll] <Beijing Rising Information Technology Co., Ltd.><20, 0, 0, 20>
[C:\Program Files\Rising\Rav\HookCont.dll] <Beijing Rising Information Technology Co., Ltd.><23, 0, 0, 12>
[C:\Program Files\Rising\Rav\rsnetsvr.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 14>
[C:\Program Files\Rising\Rav\BACore.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 22>
[C:\Program Files\Rising\Rav\recomp.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\refs.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\RSStore.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 9>
[C:\Program Files\Rising\Rav\ScanAdd.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.15>
[C:\Program Files\Rising\Rav\Scanner.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.33>
[C:\Program Files\Rising\Rav\viruslib.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\relibldr.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 2>
[C:\Program Files\Rising\Rav\ffr.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\nvfile.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\extfile.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 13>
[C:\Program Files\Rising\Rav\scanexec.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 5>
[C:\Program Files\Rising\Rav\unexe.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 1>
[C:\Program Files\Rising\Rav\scanex.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 25>
[C:\Program Files\Rising\Rav\pearc.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\scanpe.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 9>
[C:\Program Files\Rising\Rav\ur000.dat] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 10>
[C:\Program Files\Rising\Rav\urutils.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\scansct.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\revm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\ur023.dat] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\ur025.dat] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 1>
juni - 2009-4-8 13:09:00
[PID: 272][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
[C:\WINDOWS\system32\HpTcpMon.dll] <Hewlett Packard><5.01.00.011>
[C:\WINDOWS\system32\hpzjrd01.dll] <Hewlett Packard><2.01.00.003>
[C:\WINDOWS\system32\HPTcpMUI.dll] <Microsoft Corporation><5.01.00.011>
[C:\WINDOWS\system32\hptcpmib.dll] <Hewlett Packard><5.01.00.011>
[C:\WINDOWS\system32\hpz3l5mu.dll] <Hewlett-Packard Company><61.073.241.00>
[C:\WINDOWS\System32\spool\PRTPROCS\W32X86\hpzpp5mu.dll] <Hewlett-Packard Corporation><61.073.241.00>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 380][C:\Program Files\Rising\Rav\rsnetsvr.exe] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 15>
[C:\Program Files\Rising\Rav\NComm.dll] <Beijing Rising Information Technology Co., Ltd.><6.0.0.12>
[C:\Program Files\Rising\Rav\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Rising\Rav\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\Rav\ProcComm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 896][C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe] <Apple Inc.><2.1.29.0>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 936][C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe] <N/A><N/A>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 980][C:\Program Files\Bonjour\mDNSResponder.exe] <Apple Inc.><1,0,4,12>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 1036][C:\WINDOWS\system32\drivers\CDAC11BA.EXE] <Macrovision><4.20.020>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 1536][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[c:\program files\hp\digital imaging\bin\hpqddsvc.dll] <Hewlett-Packard Co.><110.0.180.000>
[c:\program files\hp\digital imaging\bin\hpqddcmn.dll] <Hewlett-Packard Co.><110.0.180.000>
[c:\program files\hp\digital imaging\bin\hpqcxs08.dll] <Hewlett-Packard Co.><110.0.180.000>
[PID: 1600][C:\Program Files\Java\jre6\bin\jqs.exe] <Sun Microsystems, Inc.><6.0.130.3>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 1680][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[c:\windows\system32\hpzinw12.dll] <Hewlett-Packard><12,1,2,53>
[PID: 2008][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[c:\windows\system32\hpzipm12.dll] <Hewlett-Packard><12,1,2,53>
[PID: 2128][C:\Program Files\Rising\Rav\RavTask.exe] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 23>
[C:\Program Files\Rising\Rav\rsconf.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\RSAPPMGR.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.1>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.18>
[C:\Program Files\Rising\Rav\proccomm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Rising\Rav\rsstub.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 12>
[C:\Program Files\Rising\Rav\rstask.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 36>
[PID: 2144][C:\Program Files\Rising\Rfw\RavTask.exe] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 23>
[C:\Program Files\Rising\Rfw\rsconf.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rfw\RSAPPMGR.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.1>
[C:\Program Files\Rising\Rfw\CfgDll.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.18>
[C:\Program Files\Rising\Rfw\proccomm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Rising\Rfw\rsstub.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 12>
[C:\Program Files\Rising\Rfw\rstask.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 36>
[PID: 2200][C:\Program Files\Rising\Rav\ScanFrm.exe] <Beijing Rising Information Technology Co., Ltd.><21.0.0.11>
[C:\Program Files\Rising\Rav\combase.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\Program Files\Rising\Rav\moncomm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 12>
[C:\Program Files\Rising\Rav\scansrvp.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.11>
[C:\Program Files\Rising\Rav\proccomm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Rising\Rav\ScanSrv.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.9>
[C:\Program Files\Rising\Rav\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\Rav\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Rising\Rav\ScanRavT.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.23>
[C:\Program Files\Rising\Rav\ScanBT.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.39>
[C:\Program Files\Rising\Rav\ScanStub.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.8>
[C:\Program Files\Rising\Rav\RsLog.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.34>
[C:\Program Files\Rising\Rav\ScanAdd.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.15>
[C:\Program Files\Rising\Rav\RSAPPMGR.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.1>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.18>
[C:\Program Files\Rising\Rav\Scanner.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.33>
[C:\Program Files\Rising\Rav\recomp.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\refs.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\viruslib.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\relibldr.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 2>
[C:\Program Files\Rising\Rav\mvengine.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\posttrt.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 2>
[C:\Program Files\Rising\Rav\ffr.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\nvfile.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 3>
[C:\Program Files\Rising\Rav\scanexec.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 5>
[C:\Program Files\Rising\Rav\unexe.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 1>
[C:\Program Files\Rising\Rav\scanex.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 25>
[C:\Program Files\Rising\Rav\pearc.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\scanpe.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 9>
[C:\Program Files\Rising\Rav\ur000.dat] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 10>
[C:\Program Files\Rising\Rav\urutils.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
juni - 2009-4-8 13:11:00
[PID: 2208][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 2364][C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDKeyMonitorCCB.exe] < Beijing WatchData System Co., Ltd.><3, 2, 0, 0>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\TokenMgr.dll] < Beijing WatchData System Co., Ltd.><3, 6, 3, 2>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDAlg.DLL] < Beijing WatchData System C0., Ltd.><3, 5, 12, 20>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\wdkmgr.dll] <Watchdata><1, 0, 0, 11>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDPKCS.dll] < Beijing WatchData System Co., Ltd.><3, 6, 2, 15>
[PID: 3088][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\System32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 3268][C:\Program Files\HP\HP Software Update\HPWuSchd2.exe] <Hewlett-Packard><100, 0, 1, 0>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 3368][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] <RealNetworks, Inc.><0.1.1.68>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 3388][C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe] <ATI Technologies, Inc.><6.14.10.5186>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll] <ATI Technologies, Inc.><6.14.10.5186>
[C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.CHS] <ATI Technologies, Inc.><6.14.10.5186>
[C:\Program Files\ATI Technologies\ATI Control Panel\atipdxxx.dll] <ATI Technologies, Inc.><6.14.10.5186>
[PID: 3672][C:\WINDOWS\system32\wuauclt.exe] <Microsoft Corporation><7.2.6001.788 (winmain_oob/wu_wsuswlc(wmbla).081016-1330)>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 4008][C:\Program Files\iTunes\iTunesHelper.exe] <Apple Inc.><7.7.1.11>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\iTunes\iTunesHelper.Resources\zh_CN.lproj\iTunesHelperLocalized.DLL] <Apple Inc.><7.7.1.3>
[C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.DLL] <Apple Inc.><7.7.1.11>
[C:\Program Files\QuickTime\QTSystem\QuickTime.qts] <Apple Inc.><7.5 (861)>
[C:\Program Files\Common Files\Apple\Mobile Device Support\bin\iTunesMobileDevice.dll] <Apple Inc.><7, 8, 176, 0>
[PID: 4020][C:\Program Files\Rising\AntiSpyware\rstray.exe] <Beijing Rising Information Technology Co., Ltd.><21.0.0.16>
[C:\Program Files\Rising\AntiSpyware\rsmginfo.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\Program Files\Rising\AntiSpyware\RsXML.dll] <Beijing Rising Information Technology Co., Ltd.><20, 0, 0, 2>
[C:\Program Files\Rising\AntiSpyware\ComServ.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.31>
[C:\Program Files\Rising\AntiSpyware\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Rising\AntiSpyware\rscommon.dll] <Beijing Rising Information Technology Co., Ltd.><20.0.1.1>
[C:\Program Files\Rising\AntiSpyware\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\AntiSpyware\pngdll.dll] <Beijing Rising Information Technology Co., Ltd.><20, 0, 0, 5>
[C:\Program Files\Rising\AntiSpyware\runiep.dll] <Beijing Rising Information Technology Co., Ltd.><6.0.0.42>
[C:\Program Files\Rising\AntiSpyware\NComm.dll] <Beijing Rising Information Technology Co., Ltd.><6.0.0.11>
[C:\Program Files\Rising\Rav\ProcCom.dll] <Beijing Rising Information Technology Co., Ltd.><20, 0, 0, 20>
[C:\Program Files\Rising\AntiSpyware\RsCommX2.dll] <Beijing Rising Information Technology Co., Ltd.><20, 0, 0, 20>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 4052][C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDCertM_CCB.exe] < Beijing WatchData System Co., Ltd.><3, 2, 0, 0>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\TokenMgr.dll] < Beijing WatchData System Co., Ltd.><3, 6, 3, 2>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDAlg.DLL] < Beijing WatchData System C0., Ltd.><3, 5, 12, 20>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\wdkmgr.dll] <Watchdata><1, 0, 0, 11>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDPKCS.dll] < Beijing WatchData System Co., Ltd.><3, 6, 2, 15>
[C:\WINDOWS\system32\WatchData\Watchdata CCB CSP v3.2\WDEvent.dll] < Beijing WatchData System Co., Ltd.><1, 0, 0, 1>
[PID: 4060][C:\Program Files\Rising\Rfw\RsTray.exe] <Beijing Rising Information Technology Co., Ltd.><21.0.0.22>
[C:\Program Files\Rising\Rfw\ComServ.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.49>
[C:\Program Files\Rising\Rfw\rslang.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 28>
[C:\Program Files\Rising\Rfw\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\Rfw\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Rising\Rfw\rsxml.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 2>
[C:\Program Files\Rising\Rfw\ProcComm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Rising\Rfw\MonState.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 7>
[C:\Program Files\Rising\Rfw\rfwrule.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.25>
[C:\Program Files\Rising\Rfw\rsconf.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rfw\RSAPPMGR.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.1>
[C:\Program Files\Rising\Rfw\CfgDll.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.18>
[C:\Program Files\Rising\Rfw\rspalvd.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.24>
[C:\Program Files\Rising\Rfw\rsguilib.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 71>
[C:\Program Files\Rising\Rfw\ravbintl.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 28>
[C:\Program Files\Rising\Rfw\rsnetsvr.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 14>
[C:\Program Files\Rising\Rfw\rsmginfo.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\Program Files\Rising\Rfw\rfwtray.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 1, 9>
[C:\Program Files\Rising\Rfw\PngDll.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rfw\rfwlog.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 9>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 4072][C:\Program Files\Rising\Rav\RsTray.exe] <Beijing Rising Information Technology Co., Ltd.><21.0.0.22>
[C:\Program Files\Rising\Rav\ComServ.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.49>
[C:\Program Files\Rising\Rav\rslang.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 28>
[C:\Program Files\Rising\Rav\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\Rav\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Rising\Rav\rsxml.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 2>
[C:\Program Files\Rising\Rav\ProcComm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Rising\Rav\MonState.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 7>
[C:\Program Files\Rising\Rav\ScanEvnt.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.12>
[C:\Program Files\Rising\Rav\rsguilib.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 71>
[C:\Program Files\Rising\Rav\rsconf.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\RSAPPMGR.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.1>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.18>
[C:\Program Files\Rising\Rav\rspalvd.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.24>
[C:\Program Files\Rising\Rav\ravbintl.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 28>
[C:\Program Files\Rising\Rav\mruleui.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 10>
[C:\Program Files\Rising\Rav\MonTray.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.93>
[C:\Program Files\Rising\Rav\PngDll.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 4>
[C:\Program Files\Rising\Rav\RavITray.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 23>
[C:\Program Files\Rising\Rav\ScanPrxy.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.15>
[C:\Program Files\Rising\Rav\rsmginfo.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 11>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 1924][C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe] <Hewlett-Packard><11.0.0.142>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 408][C:\Program Files\Java\jre6\bin\jusched.exe] <Sun Microsystems, Inc.><6.0.130.3>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 140][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[PID: 720][C:\Program Files\iPod\bin\iPodService.exe] <Apple Inc.><7.7.1.11>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\iPod\bin\iPodService.Resources\zh_CN.lproj\iPodServiceLocalized.DLL] <Apple Inc.><7.7.1.3>
[C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL] <Apple Inc.><7.7.1.11>
[PID: 2568][C:\Program Files\同花顺德恒\xiadan.exe] <核新软件技术有限公司><2007, 10, 11, 0>
juni - 2009-4-8 13:12:00
C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 3920][F:\dzh2\dzh2.exe] <上海大智慧网络技术有限公司><4, 1, 9, 302>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\Rising\AntiSpyware\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\AntiSpyware\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[F:\dzh2\zlib.dll] <N/A><N/A>
[F:\dzh2\fullpush.dll] <上海大智慧网络技术有限公司><1.0.0.1>
[F:\dzh2\hypdown.dll] <><1, 0, 0, 1>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[C:\Program Files\远东证券网上交易\HsHook.dll] <N/A><N/A>
[PID: 2540][C:\jcb_cjscint\cxiadan.exe] <核新软件技术有限公司><2006, 7, 1, 0>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\Rising\AntiSpyware\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\AntiSpyware\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\jcb_cjscint\VirusScan.dll] <上海核新软件技术有限公司><2006, 3, 8, 0>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 2776][C:\Program Files\远东证券网上交易\JYCLIENT.EXE] <杭州恒生信息技术有限公司><3.3.512.1>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\Rising\AntiSpyware\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\AntiSpyware\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\远东证券网上交易\HsHook.dll] <N/A><N/A>
[C:\Program Files\远东证券网上交易\HS_SSL.DLL] <杭州恒生信息技术有限公司><1, 1, 2, 2>
[PID: 2836][C:\Program Files\Rising\AntiSpyware\knownsvr.exe] <Beijing Rising Information Technology Co., Ltd.><6.0.0.14>
[C:\Program Files\Rising\AntiSpyware\NComm.dll] <Beijing Rising Information Technology Co., Ltd.><6.0.0.11>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\Rising\AntiSpyware\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\AntiSpyware\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 2724][C:\Program Files\Rising\Rav\RsAgent.exe] <Beijing Rising Information Technology Co., Ltd.><21.0.0.17>
[C:\Program Files\Rising\Rav\ProcComm.dll] <Beijing Rising Information Technology Co., Ltd.><21, 0, 0, 46>
[C:\Program Files\Rising\Rav\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\Rav\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Rising\Rav\ScanPrxy.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.15>
[PID: 1764][C:\WINDOWS\msagent\AgentSvr.exe] <Microsoft Corporation><2.00.0.3424>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\Rising\AntiSpyware\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\AntiSpyware\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[PID: 2856][C:\Program Files\Windows Live Toolbar\msn_sl.exe] <Microsoft Corporation><03.01.0000.0146>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\Rising\AntiSpyware\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\AntiSpyware\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
[PID: 344][F:\guoyujin\Music\others\sreng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\WINDOWS\system32\kmon.dll] <Beijing Rising Information Technology Co., Ltd.><1, 0, 0, 33>
[C:\Program Files\Rising\AntiSpyware\comx3.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.37>
[C:\Program Files\Rising\AntiSpyware\Syslay.dll] <Beijing Rising Information Technology Co., Ltd.><21.0.0.6>
[C:\Program Files\Bonjour\mdnsNSP.dll] <Apple Inc.><1,0,4,12>
==================================
文件关联
.TXT Error. [C:\WINDOWS\notepad.exe %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM Error. ["hh.exe" %1]
.HLP OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS Error. []
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================
帅哥阿福 - 2009-4-8 13:14:00
楼主你累不累呀!
将日志作为附件发上来,你好大家都好!
juni - 2009-4-8 13:28:00
把日志作为附件发上来了,请各位高手帮忙看看
谢谢大家了!!!!
附件:
SREngLOG.log
chuanshao - 2009-4-8 13:31:00
原来你的sreng是2.0的,我说咋不对呢
你的这个版本太低了,去下载最新的再重新扫描一个 发上来
http://www.kztechs.com/sreng/download.html
juni - 2009-4-8 13:49:00
请高手们帮忙看一看
非常感谢!!!
用户系统信息:Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; SLCC1; .NET CLR 2.0.50727; .NET CLR 3.0.04506; InfoPath.2)附件:
SREngLOG.log
帅哥阿福 - 2009-4-8 13:51:00
进程里面没有可疑文件。
看楼主的描述,怀疑是winsock损坏了,日志中也没有winsock这块。
建议使用卡卡助手-高级工具-lsp修复来恢复一下。
天云一剑 - 2009-4-8 13:56:00
进安全模式
运行SRENG,启动项目-服务-驱动程序,以下删除
[0000_sys.sys / 0000_sys][Stopped/Boot Start]
<\SystemRoot\system32\drivers\0000_sys.sys><>
启动项目-注册表,以下删除
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360safebox.exe]
<IFEO[360safebox.exe]><ntsd -d> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DrvAnti.exe]
<IFEO[DrvAnti.exe]><ntsd -d> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPPMain.exe]
<IFEO[KPPMain.exe]><ntsd -d> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safeboxTray.exe]
<IFEO[safeboxTray.exe]><ntsd -d> [N/A]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\WINDOWS\system32\BMWSAU~1.SCR> [ScreenTime Media]
使用Windows清理助手清理一次
http://www.arswp.com/download.htmlSRENG或WINDOWS清理助手中修复WINSOCK LSP
juni - 2009-4-8 16:20:00
试过了,网页还是不能打开....
请问还有别的什么方法吗?
453187998 - 2009-4-8 21:07:00
你机子里面怎么装这么多东西,要分析好你的日志可是需要老时间了,你的系统该减减肥了。
1
© 2000 - 2025 Rising Corp. Ltd.