System Repair Engineer 2.7.12.1018
Smallfrogs (
http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件
进程特权扫描
启动项目
注册表
<soundman><C:\WINDOWS\services.exe> [File is missing]
<load><> [N/A]
<racer><C:\Program Files\racer-ccn-racerpc-sd\racer.exe> [Putian Runway]
<AppInit_DLLs><SysDaJcHv.dll,msosping00.dll,msosptfs00.dll,msosmnsf00.dll,msoscqet00.dll,msosfasq00.dll,msosjtfo00.dll,wipicdec.dll> [N/A]
<Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [File is missing]
<Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install> [File is missing]
<SCRNSAVE.EXE><C:\WINDOWS\system32\Coopen.scr> [File is missing]
==================================
启动文件夹
[腾讯QQ]
<C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\腾讯QQ.lnk --> C:\PROGRA~1\Tencent\QQ\QQ.exe [TENCENT]><N>
==================================
服务
<"C:\Program Files\Windows Live\installer\WLSetupSvc.exe"><(File is missing)>
==================================
驱动程序
[acpidisk / acpidisk][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\acpidisk.sys><N/A>
[Apaidi / Apaidi][Stopped/Auto Start]
<\??\C:\WINDOWS\system32\drivers\Apaidi.sys><N/A>
<system32\DRIVERS\Chip_usb.sys><>
<\??\C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player\obj\wmpobj.sys><N/A>
[apcdli / apcdli][Stopped/Auto Start]
<\??\C:\Program Files\Microsoft Office\SYSTEM\apcdli.sys><N/A>
==================================
浏览器加载项
[]
{05C1004E-2596-48E5-8E26-39362985EEB9} <, >
[]
{09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <, >
[]
{18226BF8-DC0B-4D81-80E9-A41AE37BB73A} <, >
[]
{1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} <, >
[网站排名工具条BHO]
{489873CE-F3E1-44A3-8E89-04BE26BE4446} <, >
[]
{BC207F7D-3E63-4ACA-99B5-FB5F8428200C} <, >
[]
{D18A0B52-D63C-4ED0-AFC6-C1E3DC1AF43A} <, >
[]
{FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[&使用BitComet下载]
<res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm, N/A>
[&使用BitComet下载全部链接]
<res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm, N/A>
[&使用BitComet下载本页视频]
<res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm, N/A>
[使用迅雷下载全部链接]
<C:\Program Files\Thunder Network\Thunder\Program\getallurl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ表情]
<C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
==================================
[C:\WINDOWS\system32\winlib .dll] [N/A, ]
[C:\WINDOWS\MayaBaby\MayaBabyDll.dat] [N/A, ]
[C:\Program Files\racer-ccn-racerpc-sd\plugins\NPSWF32.dll] [, ]
[PID: 3036 / Administrator][C:\Program Files\WinRAR\WinRAR.exe] [N/A, ]
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 512, C:\PROGRAM FILES\RACER-CCN-RACERPC-SD\RACER.EXE]
==================================
服务
[网络服务 / Network Services][Stopped/Auto Start]
<C:\WINDOWS\MayaBaby\MayaBabyMain.exe><N/A>
这个基本网络服务没有微软签名 可疑!