瑞星卡卡安全论坛
倩萍尹筠 - 2012-7-3 18:50:00
最近一段时间电脑打开后不久,速度非常慢,打开网页,总是无响应,播放音乐或视频,都卡住。。。大概过20-30分钟又恢复正常了。是Win7系统。日志扫描如下,希望高手指教,谢谢!【剩余日志补在下面了,请往下拉】
[CODE]
2012-07-03,18:36:03
System Repair Engineer 2.8.4.1331
Smallfrogs (
http://www.KZTechs.com)
Windows 7 Ultimate Edition Service Pack 1 (Build 7601) - 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件
进程特权扫描
计划任务
Windows 安全更新检查
API HOOK
隐藏进程
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<QQDownload><"f:\Program Files (x86)\Tencent\QQDownload\QQDownload.exe" autostart> [File is missing]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<BackupManagerTray><"C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k> [(Verified)NTI Corporation]
<StartCCC><"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun> [File is missing]
<Dolby Advanced Audio v2><"C:\Dolby PCEE4\pcee4.exe" -autostart> [(Verified)Dolby Laboratories, Inc.]
<LManager><C:\Program Files (x86)\Launch Manager\LManager.exe> [(Verified)Dritek System Inc.]
<ArcadeMovieService><"C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe"> [(Verified)CyberLink]
<RavTRAY><"F:\Program Files (x86)\Rising\RAV\RSTRAY.EXE" -system> [(Verified)Beijing Rising Information Technology Corporation Limited]
<RFWTRAY><"F:\Program Files (x86)\Rising\RFW\RSTRAY.EXE" -system> [(Verified)Beijing Rising Information Technology Corporation Limited]
<ArcSoft Connection Service><C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe> [(Verified)ArcSoft, Inc.]
<360Safetray><"C:\Program Files (x86)\360\360Safe\safemon\360Tray.exe" /start> [(Verified)360.cn]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><explorer.exe> [(Verified)Microsoft Windows]
<Userinit><userinit.exe> [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><C:\PROGRA~2\WI3C8A~1\Datamngr\datamngr.dll C:\PROGRA~2\WI3C8A~1\Datamngr\IEBHO.dll > [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{B5A7F190-DDA6-4420-B3BA-52453494E6CD}><F:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<WebCheck><> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
<Microsoft Windows Media Player><%SystemRoot%\system32\unregmp2.exe /ShowWMP> [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
<Internet Explorer><C:\Windows\SysWOW64\ie4uinit.exe -UserIconConfig> [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
<Browser Customizations><"C:\Windows\SysWOW64\rundll32.exe" "C:\Windows\SysWOW64\iedkcs32.dll",BrandIEActiveSetup SIGNUP> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
<Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
<Microsoft Windows><"%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
<Microsoft Windows Media Player><%SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI> [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
<Windows Desktop Update><regsvr32.exe /s /n /i:U shell32.dll> [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
<Web Platform Customizations><C:\Windows\SysWOW64\ie4uinit.exe -BaseSettings> [(Verified)Microsoft Windows]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
<N/A><C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install> [(Verified)Microsoft Corporation]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE><C:\Windows\WLXPGSS.SCR> [(Verified)Microsoft Corporation]
==================================
用户系统信息:Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)
networkedition - 2012-7-4 9:25:00
夲號ヱ被ジ盜 - 2012-7-4 12:24:00
内存多大
倩萍尹筠 - 2012-7-5 8:28:00
启动文件夹
[vpngui.exe]
<C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vpngui.exe.lnk --> C:\Windows\Installer\{5FDC06BF-3D3D-4367-8FFB-4FAFCB61972D}\Icon09DB8A851.exe [N/A]><N>
[vpngui.exe]
<C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vpngui.exe.lnk --> C:\Windows\Installer\{5FDC06BF-3D3D-4367-8FFB-4FAFCB61972D}\Icon09DB8A851.exe [N/A]><N>
==================================
服务
[ArcSoft Connect Daemon / ACDaemon][Running/Auto Start]
<C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe><ArcSoft Inc.>
[Adobe Acrobat Update Service / AdobeARMservice][Stopped/Manual Start]
<"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"><Adobe Systems Incorporated>
[Adobe Flash Player Update Service / AdobeFlashPlayerUpdateSvc][Stopped/Manual Start]
<C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe><Adobe Systems Incorporated>
[Application Experience / AeLookupSvc][Running/Manual Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\aelupsvc.dll><Microsoft Corporation>
[AMD External Events Utility / AMD External Events Utility][Running/Auto Start]
<C:\Windows\system32\atiesrxx.exe><AMD>
[Application Identity / AppIDSvc][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation-->%SystemRoot%\System32\appidsvc.dll><Microsoft Corporation>
[Application Information / Appinfo][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appinfo.dll><Microsoft Corporation>
[Windows Audio Endpoint Builder / AudioEndpointBuilder][Running/Auto Start]
<C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted-->%SystemRoot%\System32\Audiosrv.dll><Microsoft Corporation>
[Windows Audio / AudioSrv][Running/Auto Start]
<C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted-->%SystemRoot%\System32\Audiosrv.dll><Microsoft Corporation>
[ActiveX Installer (AxInstSV) / AxInstSV][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k AxInstSVGroup-->%SystemRoot%\System32\AxInstSV.dll><Microsoft Corporation>
[Baidu Updater / BaiduUpdater][Stopped/Manual Start]
<C:\Program Files (x86)\Baidu\BaiduUpdate\bdupdate.exe><Baidu.com, Inc.>
[BitLocker Drive Encryption Service / BDESVC][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\bdesvc.dll><Microsoft Corporation>
[Base Filtering Engine / BFE][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork-->%SystemRoot%\System32\bfe.dll><Microsoft Corporation>
[Background Intelligent Transfer Service / BITS][Running/Auto Start]
<C:\Windows\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\qmgr.dll><Microsoft Corporation>
[Computer Browser / Browser][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\browser.dll><Microsoft Corporation>
[Bluetooth Support Service / bthserv][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k bthsvcs-->%SystemRoot%\system32\bthserv.dll><Microsoft Corporation>
[Certificate Propagation / CertPropSvc][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\certprop.dll><Microsoft Corporation>
[Offline Files / CscService][Stopped/Disabled]
<C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted-->%SystemRoot%\System32\cscsvc.dll><Microsoft Corporation>
[Cisco Systems, Inc. VPN Service / CVPND][Running/Auto Start]
<"C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe"><Cisco Systems, Inc.>
[DCOM Server Process Launcher / DcomLaunch][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k DcomLaunch-->%SystemRoot%\system32\rpcss.dll><Microsoft Corporation>
[Disk Defragmenter / defragsvc][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k defragsvc-->%Systemroot%\System32\defragsvc.dll><Microsoft Corporation>
[DNS Client / Dnscache][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k NetworkService-->%SystemRoot%\System32\dnsrslvr.dll><Microsoft Corporation>
[Wired AutoConfig / dot3svc][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted-->%SystemRoot%\System32\dot3svc.dll><Microsoft Corporation>
[Diagnostic Policy Service / DPS][Running/Auto Start]
<C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork-->%SystemRoot%\system32\dps.dll><Microsoft Corporation>
[Dritek WMI Service / DsiWMIService][Running/Auto Start]
<C:\Program Files (x86)\Launch Manager\dsiwmis.exe><Dritek System Inc.>
[Extensible Authentication Protocol / EapHost][Running/Manual Start]
<C:\Windows\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\eapsvc.dll><Microsoft Corporation>
[Acer ePower Service / ePowerSvc][Running/Auto Start]
<C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe><Acer Incorporated>
[FLEXnet Licensing Service / FLEXnet Licensing Service][Stopped/Manual Start]
<"C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe"><Acresso Software Inc.>
[Windows Font Cache Service / FontCache][Running/Manual Start]
<C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation-->%SystemRoot%\system32\FntCache.dll><Microsoft Corporation>
[Group Policy Client / gpsvc][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\gpsvc.dll><Microsoft Corporation>
[GREGService / GREGService][Stopped/Manual Start]
<C:\Program Files (x86)\Acer\Registration\GREGsvc.exe><Acer Incorporated>
[Health Key and Certificate Management / hkmsvc][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k netsvcs-->%SystemRoot%\system32\kmsvc.dll><Microsoft Corporation>
[HomeGroup Listener / HomeGroupListener][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted-->%SystemRoot%\system32\ListSvc.dll><Microsoft Corporation>
[ICBC Daemon Service / ICBC Daemon Service][Running/Auto Start]
<F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\IcbcDaemon.exe><N/A>
[IKE and AuthIP IPsec Keying Modules / IKEEXT][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\ikeext.dll><Microsoft Corporation>
[PnP-X IP Bus Enumerator / IPBusEnum][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted-->%SystemRoot%\system32\ipbusenum.dll><Microsoft Corporation>
[IP Helper / iphlpsvc][Running/Auto Start]
<C:\Windows\System32\svchost.exe -k NetSvcs-->%SystemRoot%\System32\iphlpsvc.dll><Microsoft Corporation>
[KMService / KMService][Running/Auto Start]
<C:\Windows\system32\srvany.exe><(File is missing)>
[KtmRm for Distributed Transaction Coordinator / KtmRm][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k NetworkServiceAndNoImpersonation-->%systemroot%\system32\msdtckrm.dll><Microsoft Corporation>
[Server / LanmanServer][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%SystemRoot%\system32\srvsvc.dll><Microsoft Corporation>
[Workstation / LanmanWorkstation][Running/Auto Start]
<C:\Windows\System32\svchost.exe -k NetworkService-->%SystemRoot%\System32\wkssvc.dll><Microsoft Corporation>
[Live Updater Service / Live Updater Service][Running/Auto Start]
<C:\Program Files\Acer\Acer Updater\UpdaterService.exe><Acer Incorporated>
[Link-Layer Topology Discovery Mapper / lltdsvc][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k LocalService-->%SystemRoot%\System32\lltdsvc.dll><Microsoft Corporation>
[TCP/IP NetBIOS Helper / lmhosts][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k LocalServiceNetworkRestricted-->%SystemRoot%\System32\lmhsvc.dll><Microsoft Corporation>
[lxdpCATSCustConnectService / lxdpCATSCustConnectService][Stopped/Auto Start]
<C:\Windows\system32\spool\DRIVERS\x64\3\\lxdpserv.exe><Lexmark International, Inc.>
[lxdp_device / lxdp_device][Running/Auto Start]
<C:\Windows\system32\lxdpcoms.exe -service><>
[Media Center Extender Service / Mcx2Svc][Stopped/Disabled]
<C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation-->%SystemRoot%\system32\Mcx2Svc.dll><Microsoft Corporation>
[Multimedia Class Scheduler / MMCSS][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%SystemRoot%\system32\mmcss.dll><Microsoft Corporation>
[Mozilla Maintenance Service / MozillaMaintenance][Stopped/Manual Start]
<C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe><Mozilla Foundation>
[Windows Firewall / MpsSvc][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork-->%SystemRoot%\system32\mpssvc.dll><Microsoft Corporation>
[NTI IScheduleSvc / NTI IScheduleSvc][Running/Auto Start]
<C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe><NTI Corporation>
[Peer Networking Identity Manager / p2pimsvc][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k LocalServicePeerNet-->%SystemRoot%\system32\pnrpsvc.dll><Microsoft Corporation>
[Peer Networking Grouping / p2psvc][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k LocalServicePeerNet-->%SystemRoot%\system32\p2psvc.dll><Microsoft Corporation>
[Program Compatibility Assistant Service / PcaSvc][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted-->%SystemRoot%\System32\pcasvc.dll><Microsoft Corporation>
[BranchCache / PeerDistSvc][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k PeerDist-->%SystemRoot%\system32\peerdistsvc.dll><Microsoft Corporation>
[Plug and Play / PlugPlay][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k DcomLaunch-->%SystemRoot%\system32\umpnpmgr.dll><Microsoft Corporation>
[PNRP Machine Name Publication Service / PNRPAutoReg][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k LocalServicePeerNet-->%SystemRoot%\system32\pnrpauto.dll><Microsoft Corporation>
[Peer Name Resolution Protocol / PNRPsvc][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k LocalServicePeerNet-->%SystemRoot%\system32\pnrpsvc.dll><Microsoft Corporation>
[IPsec Policy Agent / PolicyAgent][Running/Manual Start]
<C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted-->%SystemRoot%\System32\ipsecsvc.dll><Microsoft Corporation>
[Power / Power][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k DcomLaunch-->%SystemRoot%\system32\umpo.dll><Microsoft Corporation>
[User Profile Service / ProfSvc][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%systemroot%\system32\profsvc.dll><Microsoft Corporation>
[QQBrowser Software Updater / QQBrowser Software Updater][Stopped/Manual Start]
<f:\Program Files (x86)\Tencent\QQBrowser\QQBrowserUpdateService.exe><N/A>
[Remote Access Auto Connection Manager / RasAuto][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\rasauto.dll><Microsoft Corporation>
[Remote Access Connection Manager / RasMan][Stopped/Manual Start]
<C:\Windows\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\rasmans.dll><Microsoft Corporation>
[Remote Registry / RemoteRegistry][Stopped/Manual Start]
<C:\Windows\system32\svchost.exe -k regsvc-->%SystemRoot%\system32\regsvc.dll><Microsoft Corporation>
[RPC Endpoint Mapper / RpcEptMapper][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k RPCSS-->%SystemRoot%\System32\RpcEpMap.dll><Microsoft Corporation>
[Rsd Service / RsMgrSvc][Running/Auto Start]
<"C:\Program Files (x86)\Rising\RSD\RsMgrSvc.exe"><Beijing Rising Information Technology Co., Ltd.>
[Rav Service / RsRavMon][Running/Auto Start]
<"F:\Program Files (x86)\Rising\RAV\RavMonD.exe"><Beijing Rising Information Technology Co., Ltd.>
[RFW Service / RsRFWMon][Running/Auto Start]
<"F:\Program Files (x86)\Rising\RFW\RavMonD.exe"><Beijing Rising Information Technology Co., Ltd.>
[Windows Defender / WinDefend][Running/Auto Start]
<C:\Windows\System32\svchost.exe -k secsvcs-->%ProgramFiles%\Windows Defender\mpsvc.dll><N/A>
[Windows Management Instrumentation / Winmgmt][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k netsvcs-->%SystemRoot%\system32\wbem\WMIsvc.dll><Microsoft Corporation>
[WLAN AutoConfig / Wlansvc][Running/Auto Start]
<C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted-->%SystemRoot%\System32\wlansvc.dll><Microsoft Corporation>
[主动防御 / ZhuDongFangYu][Running/Auto Start]
<"C:\Program Files (x86)\360\360Safe\deepscan\zhudongfangyu.exe"><360.cn>
==================================
倩萍尹筠 - 2012-7-5 8:29:00
驱动程序
[360Safe Anti Hacker Service / 360AntiHacker][Running/System Start]
<System32\Drivers\360AntiHacker64.sys><360.cn>
[360Box mini-filter driver / 360Box64][Running/System Start]
<system32\DRIVERS\360Box64.sys><360安全中心>
[360FsFlt mini-filter driver / 360FsFlt][Running/System Start]
<system32\DRIVERS\360FsFlt.sys><360.cn>
[360netmon / 360netmon][Running/System Start]
<system32\DRIVERS\360netmon.sys><360.cn>
[adp94xx / adp94xx][Stopped/Manual Start]
<\SystemRoot\system32\drivers\adp94xx.sys><Adaptec, Inc.>
[adpahci / adpahci][Stopped/Manual Start]
<\SystemRoot\system32\drivers\adpahci.sys><Adaptec, Inc.>
[adpu320 / adpu320][Stopped/Manual Start]
<\SystemRoot\system32\drivers\adpu320.sys><Adaptec, Inc.>
[aliide / aliide][Stopped/Manual Start]
<\SystemRoot\system32\drivers\aliide.sys><Acer Laboratories Inc.>
[amdkmdag / amdkmdag][Running/Manual Start]
<system32\DRIVERS\atikmdag.sys><ATI Technologies Inc.>
[amdkmdap / amdkmdap][Running/Manual Start]
<system32\DRIVERS\atikmpag.sys><Advanced Micro Devices, Inc.>
[amdsata / amdsata][Stopped/Manual Start]
<\SystemRoot\system32\drivers\amdsata.sys><Advanced Micro Devices>
[amdsbs / amdsbs][Stopped/Manual Start]
<\SystemRoot\system32\drivers\amdsbs.sys><AMD Technologies Inc.>
[amdxata / amdxata][Running/Boot Start]
<\SystemRoot\system32\drivers\amdxata.sys><Advanced Micro Devices>
[amd_sata / amd_sata][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\amd_sata.sys><Advanced Micro Devices>
[amd_xata / amd_xata][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\amd_xata.sys><Advanced Micro Devices>
[arc / arc][Stopped/Manual Start]
<\SystemRoot\system32\drivers\arc.sys><Adaptec, Inc.>
[arcsas / arcsas][Stopped/Manual Start]
<\SystemRoot\system32\drivers\arcsas.sys><Adaptec, Inc.>
[ATI Function Driver for HD Audio Service / AtiHDAudioService][Running/Manual Start]
<system32\drivers\AtihdW76.sys><Advanced Micro Devices>
[Broadcom NetXtreme II VBD / b06bdrv][Stopped/Manual Start]
<\SystemRoot\system32\drivers\bxvbda.sys><Broadcom Corporation>
[Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 / b57nd60a][Stopped/Manual Start]
<system32\DRIVERS\b57nd60a.sys><Broadcom Corporation>
[Broadcom xD Picture Bus Driver Service / b57xdbd][Running/Manual Start]
<system32\DRIVERS\b57xdbd.sys><Broadcom Corporation>
[Broadcom xD Picture vstorp client drv / b57xdmp][Running/Manual Start]
<system32\DRIVERS\b57xdmp.sys><Broadcom Corporation>
[BAPIDRV / BAPIDRV][Running/System Start]
<\SystemRoot\System32\Drivers\BAPIDRV64.SYS><360.cn>
[Broadcom 802.11 网络适配器驱动程序 / BCM43XX][Running/Manual Start]
<system32\DRIVERS\bcmwl664.sys><Broadcom Corporation>
[Brother USB Mass-Storage Lower Filter Driver / BrFiltLo][Stopped/Manual Start]
<\SystemRoot\system32\drivers\BrFiltLo.sys><Brother Industries, Ltd.>
[Brother USB Mass-Storage Upper Filter Driver / BrFiltUp][Stopped/Manual Start]
<\SystemRoot\system32\drivers\BrFiltUp.sys><Brother Industries, Ltd.>
[Brother MFC Serial Port Interface Driver (WDM) / Brserid][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\Brserid.sys><Brother Industries Ltd.>
[Brother WDM Serial driver / BrSerWdm][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\BrSerWdm.sys><Brother Industries Ltd.>
[Brother MFC USB Fax Only Modem / BrUsbMdm][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\BrUsbMdm.sys><Brother Industries Ltd.>
[Brother MFC USB Serial WDM Driver / BrUsbSer][Stopped/Manual Start]
<\SystemRoot\System32\Drivers\BrUsbSer.sys><Brother Industries Ltd.>
[bScsiMSa / bScsiMSa][Running/Manual Start]
<system32\DRIVERS\bScsiMSa.sys><Broadcom Corporation>
[bScsiSDa / bScsiSDa][Running/Manual Start]
<system32\DRIVERS\bScsiSDa.sys><Broadcom Corporation>
[cmdide / cmdide][Stopped/Manual Start]
<\SystemRoot\system32\drivers\cmdide.sys><CMD Technology, Inc.>
[Cisco Systems VPN Adapter for 64-bit Windows / CVirtA][Stopped/Manual Start]
<system32\DRIVERS\CVirtA64.sys><Cisco Systems, Inc.>
[Cisco Systems Inc. IPSec Driver / CVPNDRVA][Running/Manual Start]
<\??\C:\Windows\system32\Drivers\CVPNDRVA.sys><N/A>
[Deterministic Network Enhancer Miniport / DNE][Running/Manual Start]
<system32\DRIVERS\dne64x.sys><Deterministic Networks, Inc.>
[Broadcom NetXtreme II 10 GigE VBD / ebdrv][Stopped/Manual Start]
<\SystemRoot\system32\drivers\evbda.sys><Broadcom Corporation>
[elxstor / elxstor][Stopped/Manual Start]
<\SystemRoot\system32\drivers\elxstor.sys><Emulex>
[Hauppauge Consumer Infrared Receiver / hcw85cir][Stopped/Manual Start]
<\SystemRoot\system32\drivers\hcw85cir.sys><Hauppauge Computer Works, Inc.>
[hooksys / hooksys][Running/System Start]
<\??\C:\Windows\system32\drivers\Hooksys.sys><Beijing Rising Information Technology Co., Ltd.>
[HookTdi / HookTdi][Running/System Start]
<\??\C:\Windows\system32\drivers\HookTdi.sys><Beijing Rising Information Technology Co., Ltd.>
[HpSAMD / HpSAMD][Stopped/Manual Start]
<\SystemRoot\system32\drivers\HpSAMD.sys><Hewlett-Packard Company>
[HyperVM / HyperVM][Running/System Start]
<\??\C:\Windows\system32\drivers\hvm.sys><Beijing Rising Information Technology Co., Ltd.>
[Intel RAID Controller Windows 7 / iaStorV][Stopped/Manual Start]
<\SystemRoot\system32\drivers\iaStorV.sys><Intel Corporation>
[igfx / igfx][Stopped/Manual Start]
<system32\DRIVERS\igdkmd64.sys><Intel Corporation>
[iirsp / iirsp][Stopped/Manual Start]
<\SystemRoot\system32\drivers\iirsp.sys><Intel Corp./ICP vortex GmbH>
[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
<system32\drivers\RTKVHD64.sys><Realtek Semiconductor Corp.>
[Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0 / k57nd60a][Running/Manual Start]
<system32\DRIVERS\k57nd60a.sys><Broadcom Corporation>
[NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller(NDIS6.20) / L1E][Stopped/Manual Start]
<system32\DRIVERS\L1E62x64.sys><Atheros Communications, Inc.>
[LSI_FC / LSI_FC][Stopped/Manual Start]
<\SystemRoot\system32\drivers\lsi_fc.sys><LSI Corporation>
[LSI_SAS / LSI_SAS][Stopped/Manual Start]
<\SystemRoot\system32\drivers\lsi_sas.sys><LSI Corporation>
[LSI_SAS2 / LSI_SAS2][Stopped/Manual Start]
<\SystemRoot\system32\drivers\lsi_sas2.sys><LSI Corporation>
[LSI_SCSI / LSI_SCSI][Stopped/Manual Start]
<\SystemRoot\system32\drivers\lsi_scsi.sys><LSI Corporation>
[xxxsas / xxxsas][Stopped/Manual Start]
<\SystemRoot\system32\drivers\xxxsas.sys><LSI Corporation>
[xxxSR / xxxSR][Stopped/Manual Start]
<\SystemRoot\system32\drivers\xxxSR.sys><LSI Corporation, Inc.>
[nfrd960 / nfrd960][Stopped/Manual Start]
<\SystemRoot\system32\drivers\nfrd960.sys><IBM Corporation>
[NTIDrvr / NTIDrvr][Running/Manual Start]
<\??\C:\Windows\system32\drivers\NTIDrvr.sys><NTI Corporation>
[nvraid / nvraid][Stopped/Manual Start]
<\SystemRoot\system32\drivers\nvraid.sys><NVIDIA Corporation>
[nvstor / nvstor][Stopped/Manual Start]
<\SystemRoot\system32\drivers\nvstor.sys><NVIDIA Corporation>
[pwdrvio / pwdrvio][Stopped/Manual Start]
<\??\C:\Windows\system32\pwdrvio.sys><N/A>
[pwdspio / pwdspio][Stopped/Manual Start]
<\??\C:\Windows\system32\pwdspio.sys><N/A>
[ql2300 / ql2300][Stopped/Manual Start]
<\SystemRoot\system32\drivers\ql2300.sys><QLogic Corporation>
[ql40xx / ql40xx][Stopped/Manual Start]
<\SystemRoot\system32\drivers\ql40xx.sys><QLogic Corporation>
[rfwaf / rfwaf][Stopped/Auto Start]
<\??\F:\Program Files (x86)\Rising\RFW\rfwaf.sys><N/A>
[Rising RfwARP Driver / RFWARP][Running/Auto Start]
<system32\DRIVERS\rfwarp.sys><Beijing Rising Information Technology Co., Ltd.>
[Rising RfwNdis Driver / RFWNDIS][Running/System Start]
<system32\DRIVERS\rfwndis.sys><Beijing Rising Information Technology Co., Ltd.>
[rfwtdi / rfwtdi][Running/Auto Start]
<\??\F:\Program Files (x86)\Rising\RFW\rfwtdi.sys><Beijing Rising Information Technology Co., Ltd.>
[rsfwdrv / rsfwdrv][Running/Auto Start]
<\??\F:\Program Files (x86)\Rising\RFW\rsfwdrv.sys><Beijing Rising Information Technology Co., Ltd.>
[SiSRaid2 / SiSRaid2][Stopped/Manual Start]
<\SystemRoot\system32\drivers\SiSRaid2.sys><Silicon Integrated Systems Corp.>
[SiSRaid4 / SiSRaid4][Stopped/Manual Start]
<\SystemRoot\system32\drivers\sisraid4.sys><Silicon Integrated Systems>
[stexstor / stexstor][Stopped/Manual Start]
<\SystemRoot\system32\drivers\stexstor.sys><Promise Technology>
[Synth3dVsc / Synth3dVsc][Stopped/Manual Start]
<System32\drivers\synth3dvsc.sys><N/A>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
<system32\DRIVERS\SynTP.sys><Synaptics Incorporated>
[tsusbhub / tsusbhub][Stopped/Manual Start]
<system32\drivers\tsusbhub.sys><N/A>
[UBHelper / UBHelper][Running/Manual Start]
<\??\C:\Windows\system32\drivers\UBHelper.sys><NTI Corporation>
[AMD USB Filter Driver / usbfilter][Running/Manual Start]
<system32\DRIVERS\usbfilter.sys><Advanced Micro Devices>
[VGPU / VGPU][Stopped/Manual Start]
<System32\drivers\rdvgkmd.sys><N/A>
[viaide / viaide][Stopped/Manual Start]
<\SystemRoot\system32\drivers\viaide.sys><VIA Technologies, Inc.>
[vsmraid / vsmraid][Stopped/Manual Start]
<\SystemRoot\system32\drivers\vsmraid.sys><VIA Technologies Inc.,Ltd>
==================================
倩萍尹筠 - 2012-7-5 8:29:00
浏览器加载项
[QQCycloneHelper Class]
{00000000-12C9-4305-82F9-43058F20E8D2} <f:\PROGRA~1\Tencent\QQDOWN~1\QQIEHE~1.DLL, (Signed) Tencent Technology (Shenzhen) Company Limited>
[VideoUrlSniffer Class]
{00000ADA-7E0D-47C1-986C-F017D09C4304} <C:\Program Files (x86)\Common Files\Thunder Network\KanKan\VideoUrlSniffer.1.1.0.68.(753).dll, (Signed) 深圳市迅雷网络技术有限公司>
[迅雷FLV视频嗅探及下载支持]
{0EA37B17-6B8B-4085-8257-F3A4AA69C27A} <F:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.5.64.dll, (Signed) 深圳市迅雷网络技术有限公司>
[AC-Pro]
{0FB6A909-6086-458F-BD92-1F8EE10042A0} <C:\Users\Terry\AppData\Roaming\Complitly\AutocompletePro.dll, (Signed) SimplyGen>
[Adobe PDF Link Helper]
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} <C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll, (Signed) Adobe Systems Incorporated>
[CSohuDetector Object]
{452ADB5B-00BE-469D-A65F-3046146B2ED5} <f:\Program Files (x86)\搜狐影音\SoHuAutoDetector.dll, (Signed) Sohu>
[Groove GFS Browser Helper]
{72853161-30C5-4D22-B7F9-0BBC1D38A37E} <F:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL, (Signed) Microsoft Corporation>
[GCiBaBHO Class]
{76F8B2BF-4A1B-449E-AF7A-A50DD2F85EF9} <f:\Program Files (x86)\Kingsoft\PowerWord Lite\addins\ieaddin\CBIEAddin.dll, Copyright (c) Kingsoft Corporation Limited. All rights reserved.>
[迅雷下载支持]
{889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files (x86)\Thunder Network\Thunder\BHO\XunleiBHO7.2.3.3254.dll, (Signed) 深圳市迅雷网络技术有限公司>
[Windows Live ID 登录帮助程序]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, (Signed) Microsoft Corp.>
[Office Document Cache Handler]
{B4F3A835-0E21-4959-BA22-42B3008E02FF} <F:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL, (Signed) Microsoft Corporation>
[SafeMon Class]
{B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files (x86)\360\360Safe\safemon\safemon.dll, (Signed) 360.cn>
[ICBC Anti-Phishing class]
{BB4491A2-D11A-4c6b-91C0-B53246A3122B} <F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\Icbc_AntiPhishing.dll, (Signed) 中国工商银行>
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435b-BC74-9C25C1C588A9} <C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll, (Signed) Sun Microsystems, Inc.>
[]
{019c3416-8cb2-491a-a3c7-d9fcddc9d600} <, >
[迅雷看看播放器]
{119c3416-8cb2-491a-a3c7-d9fcddc9d600} <, >
[BlogThisToolbarButton Class]
{219C3416-8CB2-491a-A3C7-D9FCDDC9D600} <C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll, (Signed) Microsoft Corporation>
[Send to OneNote from Internet Explorer button]
{2670000A-7350-4f3c-8081-5663EE0C6C49} <F:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll, (Signed) Microsoft Corporation>
[迅雷看看]
{5D578929-E74E-46A2-A810-4F33D011DC52} <C:\Program Files (x86)\Common Files\Thunder Network\Kankan\XLStartKankan.exe, (Signed) N/A>
[Linked Notes button]
{789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} <F:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll, (Signed) Microsoft Corporation>
[信息检索(&R)]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <F:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL, (Signed) Microsoft Corporation>
[CBAddin Class]
{A22C622B-B304-472f-88EF-5933BB255F63} <f:\Program Files (x86)\Kingsoft\PowerWord Lite\addins\ieaddin\CBIEAddin.dll, Copyright (c) Kingsoft Corporation Limited. All rights reserved.>
[QuickTime Object]
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <C:\Program Files (x86)\QuickTime\QTPlugin.ocx, (Signed) Apple Inc.>
[Java Plug-in 1.6.0_26]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll, (Signed) >
[Java Plug-in 1.6.0_26]
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} <C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll, (Signed) >
[Java Plug-in 1.6.0_26]
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} <C:\Program Files (x86)\Java\jre6\bin\npjpi160_26.dll, (Signed) Sun Microsystems, Inc.>
[QQCycloneHelper Class]
{00000000-12C9-4305-82F9-43058F20E8D2} <f:\PROGRA~1\Tencent\QQDOWN~1\QQIEHE~1.DLL, (Signed) Tencent Technology (Shenzhen) Company Limited>
[VideoUrlSniffer Class]
{00000ADA-7E0D-47C1-986C-F017D09C4304} <C:\Program Files (x86)\Common Files\Thunder Network\KanKan\VideoUrlSniffer.1.1.0.68.(753).dll, (Signed) 深圳市迅雷网络技术有限公司>
[]
{002AE4F2-96AB-4dfa-AE2E-605217F8A84C} <, >
[]
{004B0726-A010-4ABF-8556-FCDB7F1FCA1E} <, >
[]
{0119CCC1-8EAC-43E9-AA7D-87F64B44AA4D} <, >
[QuickTime Object]
{02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} <C:\Program Files (x86)\QuickTime\QTPlugin.ocx, (Signed) Apple Inc.>
[PlayCtrl Class]
{02E2D748-67F8-48B4-8AB4-0A085374BB99} <C:\Program Files (x86)\Baidu\BaiduPlayer\1.14.0.69\Xbdyy.dll, N/A>
[PhotoDrawEx Class]
{05F5F404-7C24-4B39-B5CC-340CEDEB9C0D} <C:\Program Files (x86)\Tencent\Qzone\QQPhotoDrawEx.dll, (Signed) Tencent>
[]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <, >
[AliCertDOCtrl Class]
{08D512D2-7D97-4E22-B7DB-82791106C086} <C:\Users\Terry\AppData\Roaming\alipay\cf\alicdo.dll, (Signed) Alipay>
[0D46EB77-43BA-17E2-4814-97DF3B84F522 Class]
{0D46EB77-43BA-17E2-4814-97DF3B84F522} <f:\Program Files (x86)\Funshion Online\Funshion\FunshionAddr\funshionAddr.dll, N/A>
[迅雷FLV视频嗅探及下载支持]
{0EA37B17-6B8B-4085-8257-F3A4AA69C27A} <F:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.5.64.dll, (Signed) 深圳市迅雷网络技术有限公司>
[AC-Pro]
{0FB6A909-6086-458F-BD92-1F8EE10042A0} <C:\Users\Terry\AppData\Roaming\Complitly\AutocompletePro.dll, (Signed) SimplyGen>
[Player Class]
{11F2A418-94B2-4e16-9B0C-B00C0435F903} <f:\Program Files (x86)\Tencent\QQLive\LiveMedia.dll, (Signed) Tencent>
[Adobe PDF Link Helper]
{18DF081C-E8AD-4283-A596-FA578C2EBDC3} <C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll, (Signed) Adobe Systems Incorporated>
[WWPicUploadCtrl Class]
{1D63232D-4F15-4A42-890D-EE617AA1537D} <F:\Program Files (x86)\AliWangWang\7.00.07C\modules\1685\WWPictureUpload.dll, (Signed) Alibaba software (Shanghai) Corporation>
[InstallHelper Class]
{1DABF8D5-8430-4985-9B7F-A30E53D709B3} <C:\Windows\SysWOW64\MMInstaller.dll, (Signed) Tencent>
[iTrusPTA Class]
{1E0DFFCF-27FF-4574-849B-55007349FEDA} <C:\Windows\SysWow64\aliedit\pta.dll, (Signed) >
[Windows Media Player]
{22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\Windows\SysWOW64\wmpdxm.dll, (Signed) Microsoft Corporation>
[HTML Document]
{25336920-03F9-11CF-8FD0-00AA00686F13} <C:\Windows\SysWOW64\mshtml.dll, (Signed) Microsoft Corporation>
[SSOLoginCtrl Class]
{26C3F8B0-0217-46A1-AB2D-A1B494E71402} <F:\Program Files (x86)\AliWangWang\7.00.07C\AliIMSSOLogin.dll, N/A>
[XML DOM Document]
{2933BF90-7B36-11D2-B20E-00C04F983E60} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[XSL Template]
{2933BF94-7B36-11D2-B20E-00C04F983E60} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[HtmlDlgSafeHelper Class]
{3050F819-98B5-11CF-BB82-00AA00BDCE0B} <C:\Windows\SysWOW64\mshtmled.dll, (Signed) Microsoft Corporation>
[]
{312B9567-734D-4A21-A8AA-F319BD1AAA6F} <C:\Program Files (x86)\Windows Live\Messenger\msgsc.dll, (Signed) Microsoft Corporation>
[IETag Factory]
{38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~2\COMMON~1\MICROS~1\SMARTT~1\IETAG.DLL, (Signed) Microsoft Corporation>
[QuickTime Object]
{4063BE15-3B08-470D-A0D5-B37161CFFD69} <C:\Program Files (x86)\QuickTime\QTPlugin.ocx, (Signed) Apple Inc.>
[CSohuDetector Object]
{452ADB5B-00BE-469D-A65F-3046146B2ED5} <f:\Program Files (x86)\搜狐影音\SoHuAutoDetector.dll, (Signed) Sohu>
[XML Document]
{48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[Agent Class]
{485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <F:\Program Files (x86)\Thunder Network\Thunder\BHO\ThunderAgent7.2.3.3254.dll, (Signed) 深圳市迅雷网络技术有限公司>
[EditCtrl Class]
{488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\Windows\SysWow64\aliedit\aliedit.dll, (Signed) >
[QQPYChecker Class]
{5052B4D0-9DF7-45ef-88EF-F42C0EA33A43} <f:\Program Files (x86)\Tencent\QQPinyin\4.4.1116.400\QQImeChecker.dll, N/A>
[CSohuTool Object]
{5064DB2A-4181-4F64-A690-C6370A9F1B74} <f:\Program Files (x86)\搜狐影音\SoHuAutoDetector.dll, (Signed) Sohu>
[isInstalled Class]
{5852F5ED-8BF4-11D4-A245-0080C6F74284} <C:\Program Files (x86)\Java\jre6\bin\wsdetect.dll, (Signed) Sun Microsystems, Inc.>
[SetupCtrl Class]
{5C4500A9-0BE9-434E-B807-118E6E5EA3B6} <C:\Windows\Downloaded Program Files\655368\SetupAx.dll, (Signed) Baidu Inc.>
[WangWangX Class]
{5D09DD40-CDC4-4C56-B615-0D1E3B357C2B} <F:\Program Files (x86)\AliWangWang\7.00.07C\AliIMX.dll, N/A>
[QQLiveOcx Class]
{5EF7B131-C278-4034-BC88-2CE28B128681} <f:\Program Files (x86)\Tencent\QQLive\LiveOcx\LiveOcx.dll, (Signed) Tencent>
[迅雷发行IE支持]
{5FFF24BC-DC02-4808-B4E0-A8E2C93FE407} <F:\Program Files (x86)\Thunder Network\Thunder\BHO\xlfxctrl1.0.1.64.dll, (Signed) 深圳市迅雷网络技术有限公司>
[QQLiveFile Class]
{6B232760-90F1-41c3-9902-C8552C1D8A72} <f:\Program Files (x86)\Tencent\QQLive\LiveOcx\FileVersion.dll, (Signed) Tencent>
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <%SystemRoot%\system32\wmp.dll, (Signed) N/A>
[Access UserInfo by Script]
{6EE9CD3E-A386-4DAE-9737-A759DBF927AE} <F:\Program Files (x86)\Thunder Network\Thunder\BHO\UserAgent1.0.2.10.dll, (Signed) 深圳市迅雷网络技术有限公司>
[Groove GFS Browser Helper]
{72853161-30C5-4D22-B7F9-0BBC1D38A37E} <F:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL, (Signed) Microsoft Corporation>
[GCiBaBHO Class]
{76F8B2BF-4A1B-449E-AF7A-A50DD2F85EF9} <f:\Program Files (x86)\Kingsoft\PowerWord Lite\addins\ieaddin\CBIEAddin.dll, Copyright (c) Kingsoft Corporation Limited. All rights reserved.>
[CertEnroll Class]
{7978461C-CC22-48F2-BC69-02220D3E101D} <C:\Windows\SysWow64\itruscert\itrusenroll.dll, (Signed) iTruschina Co., Ltd.>
[ScriptCallable Class]
{7B001844-0E6A-429A-B014-3BCE8765C470} <F:\Program Files (x86)\56ican\IESuport.dll, 广州千钧网络>
[XunleiBHO Class]
{802F530B-A8F6-4631-AE49-6BACAAC6373E} <F:\Program Files (x86)\Thunder Network\Thunder\BHO\XunleiBHO7.2.3.3254.dll, (Signed) 深圳市迅雷网络技术有限公司>
[VdCom Control]
{82B2D190-415D-4590-AEF3-6BB4E810A5A0} <F:\PROGRA~1\ViDown\VdCom.ocx, ViDown>
[360SafeLive]
{87515F61-A66C-4319-A0E0-D416CB8059E3} <C:\Program Files (x86)\360\360Safe\Safelive.dll, (Signed) 360.cn>
[Microsoft Web Browser]
{8856F961-340A-11D0-A96B-00C04FD705A2} <C:\Windows\SysWOW64\ieframe.dll, (Signed) Microsoft Corporation>
[迅雷下载支持]
{889D2FEB-5411-4565-8998-1DD2C5261283} <F:\Program Files (x86)\Thunder Network\Thunder\BHO\XunleiBHO7.2.3.3254.dll, (Signed) 深圳市迅雷网络技术有限公司>
[XML HTTP 5.0]
{88D969EA-F192-11D4-A65F-0040963251E5} <C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE11\msxml5.dll, (Signed) Microsoft Corporation>
[XML DOM Document 6.0]
{88D96A05-F192-11D4-A65F-0040963251E5} <%SystemRoot%\System32\msxml6.dll, (Signed) N/A>
[XML HTTP 6.0]
{88D96A0A-F192-11D4-A65F-0040963251E5} <%SystemRoot%\System32\msxml6.dll, (Signed) N/A>
[Windows Live ID 登录帮助程序]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, (Signed) Microsoft Corp.>
[]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <, >
[VASensor Class]
{96CD6DA7-17F2-4576-82B0-BE4526FB7D6B} <C:\Program Files (x86)\Common Files\Thunder Network\KanKan\kkva.1.0.0.11.(443).dll, (Signed) 深圳市迅雷网络技术有限公司>
[OFrameObject Class]
{9701758C-4373-482E-B13C-776C048EC890} <C:\Program Files (x86)\Common Files\Thunder Network\KanKan\DapCtrl.2.3.7201.429.(443).dll, (Signed) ShenZhen Thunder Networking Technologies Ltd.>
[]
{9D717F81-9148-4F12-8568-69135F087DB0} <, >
[VersionDetector Class]
{9EFF1953-9694-47B1-AEF6-B2A3FE8BFE9B} <C:\Program Files (x86)\Common Files\Thunder Network\KanKan\vd.1.1.0.32.(909).dll, (Signed) ShenZhen Thunder Networking Technologies,Ltd.>
[VersionDetector Class]
{9EFF1953-9694-47B1-AEF6-B2A3FE8BFE9C} <C:\Program Files (x86)\Common Files\Thunder Network\KanKan\kkvd.1.0.0.2.(443).dll, (Signed) ShenZhen Thunder Networking Technologies,Ltd.>
[]
{A22C622B-B304-472F-88EF-5933BB255F63} <, >
[Submit Class]
{A3CD7F74-93C9-4BC4-B892-CCDF1514F714} <C:\Windows\SysWow64\safeInput4jh.dll, Beijing eChannels Century Technology Co.,Ltd>
[APlayer Control]
{A9322148-C691-4B9D-91FC-B9C461DBE9DD} <C:\Program Files (x86)\Common Files\Thunder Network\APlayer\APlayer_001.dll, (Signed) ShenZhen Thunder Networking Technologies, LTD>
[RMGetLicense Class]
{A9FC132B-096D-460B-B7D5-1DB0FAE0C062} <C:\Windows\SysWOW64\msnetobj.dll, (Signed) Microsoft Corporation>
[DapCtrl Class]
{ACACC6EB-1FBA-4E13-A729-53AEB2DF54F8} <C:\Program Files (x86)\Common Files\Thunder Network\KanKan\DapCtrl.2.3.7201.429.(443).dll, (Signed) ShenZhen Thunder Networking Technologies Ltd.>
[LiveDapCtrl Class]
{ACACC6EB-1FBA-4E13-A729-53AEB2DF54F9} <C:\Program Files (x86)\Common Files\Thunder Network\KanKan\LiveDapCtrl.1.0.0.10.(754).dll, (Signed) ShenZhen Thunder Networking Technologies Ltd.>
[迅雷下载助手]
{B0E2F470-0B07-48F0-B3B1-5749505FAE9B} <C:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.1.29.dll, (Signed) 深圳市迅雷网络技术有限公司>
[Office Document Cache Handler]
{B4F3A835-0E21-4959-BA22-42B3008E02FF} <F:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL, (Signed) Microsoft Corporation>
[SafeMon Class]
{B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files (x86)\360\360Safe\safemon\safemon.dll, (Signed) 360.cn>
[ICBC Anti-Phishing class]
{BB4491A2-D11A-4C6B-91C0-B53246A3122B} <F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\Icbc_AntiPhishing.dll, (Signed) 中国工商银行>
[FTNUpload Class]
{BDEACC50-F56D-4D60-860F-CF6ED1766D65} <C:\PROGRA~2\COMMON~1\Tencent\TXFTN\TXFTNA~1.DLL, Tencent>
[Adobe PDF Reader]
{CA8A9780-280D-11CF-A24D-444553540000} <C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll, (Signed) Adobe Systems, Inc.>
[Deployment Toolkit]
{CAFEEFAC-DEC7-0000-0001-ABCDEFFEDCBA} <C:\Windows\SysWow64\deployJava1.dll, (Signed) Sun Microsystems, Inc.>
[AUDIO__WAV Moniker Class]
{CD3AFA7B-B84F-48F0-9393-7EDC34128127} <%SystemRoot%\system32\wmp.dll, (Signed) N/A>
[VIDEO__X_MS_WMV Moniker Class]
{CD3AFA94-B84F-48F0-9393-7EDC34128127} <%SystemRoot%\system32\wmp.dll, (Signed) N/A>
[iTudouAgent.CompCls]
{CF223950-14DC-4A1D-AEDB-47C356A8B993} <f:\PROGRA~1\Tudou\iTudou\ITUDOU~1.DLL, (Signed) 土豆网>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\Windows\SysWOW64\Macromed\Flash\Flash32_11_3_300_257.ocx, (Signed) Adobe Systems, Inc.>
[KuAgent2 Class]
{D928E486-C465-4A64-976D-F3B24BBECC69} <f:\Program Files (x86)\YouKu\common\YoukuAgent.dll, (Signed) Youku.com>
[QQLive Class]
{D9EBCF5D-3F8F-4b6a-89BA-70577BE73C62} <f:\Program Files (x86)\Tencent\QQLive\LiveAPI.dll, (Signed) Tencent>
[Java(tm) Plug-In 2 SSV Helper]
{DBC80044-A445-435B-BC74-9C25C1C588A9} <C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll, (Signed) Sun Microsystems, Inc.>
[xoliimpl Class]
{DD5BF6D1-6663-47E0-9DFA-5C343CAF178E} <C:\Windows\xinstaller.dll, (Signed) 深圳市迅雷技术有限公司>
[QuickTimeCheck Class]
{DE4AF3B0-F4D4-11D3-B41A-0050DA2E6C21} <C:\Program Files (x86)\QuickTime\QTSystem\QuickTimeCheck.ocx, (Signed) Apple Inc.>
[Microsoft Silverlight]
{DFEAF541-F3E1-4C24-ACAC-99C30715084A} <C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll, (Signed) Microsoft Corporation>
[PlayerCtrl Class]
{E05BC2A3-9A46-4a32-80C9-023A473F5B23} <F:\Program Files (x86)\Tencent\QQMusic\QzoneMusic\QzoneMusic.dll, (Signed) Tencent>
[]
{E577393C-3468-4911-9DA0-484C3F4C47D7} <C:\Program Files (x86)\Common Files\Thunder Network\APlayer\Codecs\xlvsource.ax, >
[SSOForPTLogin2 Class]
{EAAED308-7322-4B9B-965E-171933ADD473} <C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.1.39\Bin\npSSOAxCtrlForPTLogin.dll, (Signed) Tencent>
[safeInput Class]
{ECCBA956-80E5-11D3-9285-0080ADB811C9} <C:\Windows\SysWow64\safeInput4jh.dll, Beijing eChannels Century Technology Co.,Ltd>
[XML HTTP Request]
{ED8C108E-4349-11D2-91A4-00C04F7969E8} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[]
{F3E70CEA-956E-49CC-B444-73AFE593AD7F} <, >
[XML DOM Document 3.0]
{F5078F32-C551-11D3-89B9-0000F81FE221} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[XML DOM Document]
{F6D90F11-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[Free Threaded XML DOM Document]
{F6D90F12-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[XML HTTP]
{F6D90F16-9C73-11D3-B32E-00C04F990BB4} <%SystemRoot%\System32\msxml3.dll, (Signed) N/A>
[QQLiveOcxShell Class]
{F7E55BDF-9528-46ba-B550-777859627591} <f:\Program Files (x86)\Tencent\QQLive\LiveOcx\LiveOcx.dll, (Signed) Tencent>
[webmod Class]
{FEE3C8C5-9BEA-4079-AB36-63ECABFC7392} <C:\Windows\SysWow64\aliedit\alidcp.dll, (Signed) Alipay.com Co.,Ltd>
[&使用&迅雷下载]
<F:\Program Files (x86)\Thunder Network\Thunder\BHO\geturl.htm, N/A>
[&使用&迅雷下载全部链接]
<F:\Program Files (x86)\Thunder Network\Thunder\BHO\GetAllUrl.htm, N/A>
[&使用&迅雷离线下载]
<F:\Program Files (x86)\Thunder Network\Thunder\BHO\OfflineDownload.htm, N/A>
[&使用115优蛋 3下载]
<C:\Program Files (x86)\115\UDown\getUrl.htm, N/A>
[&使用115优蛋 3下载全部链接]
<C:\Program Files (x86)\115\UDown\getAllUrl.htm, N/A>
[&使用QQ旋风下载]
<f:\Program Files (x86)\Tencent\QQDownload\geturl.htm, N/A>
[&使用QQ旋风下载全部链接]
<f:\Program Files (x86)\Tencent\QQDownload\getAllurl.htm, N/A>
[&使用QQ旋风离线下载]
<f:\Program Files (x86)\Tencent\QQDownload\xfofflinedown.htm, N/A>
[使用迅雷看看播放器播放]
<C:\Users\Public\Thunder Network\XMP4\Core\Program\XmpIEMenu.htm, N/A>
[发送至 OneNote(&N)]
<res://F:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105, N/A>
[导出到 Microsoft Excel(&X)]
<res://F:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000, N/A>
[用【维棠】下载全部链接]
<F:\PROGRA~1\ViDown\vd_linkall.htm, N/A>
[用【维棠】下载视频]
<F:\PROGRA~1\ViDown\vd_link.htm, N/A>
倩萍尹筠 - 2012-7-5 8:33:00
正在运行的进程
[PID: 836 / SYSTEM][C:\Program Files (x86)\Rising\RSD\RsMgrSvc.exe] [Beijing Rising Information Technology Co., Ltd., 1.0.0.38]
[C:\Program Files (x86)\Rising\RSD\comx3.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.4]
[C:\Program Files (x86)\Rising\RSD\Syslay.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[PID: 868 / SYSTEM][F:\Program Files (x86)\Rising\RAV\RavMonD.exe] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 9]
[F:\Program Files (x86)\Rising\RAV\combase.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 24]
[F:\Program Files (x86)\Rising\RAV\rsconf.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.8]
[F:\Program Files (x86)\Rising\RAV\scansrvp.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[F:\Program Files (x86)\Rising\RAV\cnt09.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[F:\Program Files (x86)\Rising\RAV\moncomm.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.3]
[F:\Program Files (x86)\Rising\RAV\MonBase.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[F:\Program Files (x86)\Rising\RAV\Rslog.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.26]
[F:\Program Files (x86)\Rising\RAV\RsStore.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[F:\Program Files (x86)\Rising\RAV\mondrvd.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 11]
[F:\Program Files (x86)\Rising\RAV\moncom08.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RAV\taskplug.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RAV\mondrvm.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 8]
[F:\Program Files (x86)\Rising\RAV\FileMon.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 34]
[F:\Program Files (x86)\Rising\RAV\MailMon.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 56]
[F:\Program Files (x86)\Rising\RAV\rsindent.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.1.0]
[F:\Program Files (x86)\Rising\RAV\cnt08.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[F:\Program Files (x86)\Rising\RAV\proccomm.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RAV\comx3.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.4]
[F:\Program Files (x86)\Rising\RAV\Syslay.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RAV\Hooksys.dll] [Beijing Rising Information Technology Co., Ltd., 25, 0, 0, 8]
[F:\Program Files (x86)\Rising\RAV\ProcCom.dll] [Beijing Rising Information Technology Co., Ltd., 20, 0, 0, 20]
[F:\Program Files (x86)\Rising\RAV\RsCommX2.dll] [Beijing Rising Information Technology Co., Ltd., 20, 0, 0, 20]
[F:\Program Files (x86)\Rising\RAV\rstask.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 8]
[F:\Program Files (x86)\Rising\RAV\rsstub.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RAV\rslang.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RAV\hookTdi.dll] [Beijing Rising Information Technology Co., Ltd., 25, 0, 0, 9]
[F:\Program Files (x86)\Rising\RAV\ScanAdd.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.31]
[F:\Program Files (x86)\Rising\RAV\Scanner.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 74]
[F:\Program Files (x86)\Rising\RAV\recomp.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 14]
[F:\Program Files (x86)\Rising\RAV\refs.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 3]
[F:\Program Files (x86)\Rising\RAV\viruslib.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 8]
[F:\Program Files (x86)\Rising\RAV\relibldr.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[F:\Program Files (x86)\Rising\RAV\ScanSrv.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 17]
[F:\Program Files (x86)\Rising\RAV\ffr.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 4]
[F:\Program Files (x86)\Rising\RAV\nvfile.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 7]
[F:\Program Files (x86)\Rising\RAV\pearc.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 8]
[F:\Program Files (x86)\Rising\RAV\scanpe.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 30]
[F:\Program Files (x86)\Rising\RAV\scantj.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 9]
[F:\Program Files (x86)\Rising\RAV\engext.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 38]
[F:\Program Files (x86)\Rising\RAV\vmicore.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 20]
[F:\Program Files (x86)\Rising\RAV\extsfx.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 9]
[F:\Program Files (x86)\Rising\RAV\scanexec.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 8]
[F:\Program Files (x86)\Rising\RAV\unexe.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 0]
[F:\Program Files (x86)\Rising\RAV\scanex.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 16]
[F:\Program Files (x86)\Rising\RAV\scansct.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[F:\Program Files (x86)\Rising\RAV\ur029.dat] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 2]
[F:\Program Files (x86)\Rising\RAV\extarch.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 17]
[F:\Program Files (x86)\Rising\RAV\extcomp.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 6]
[F:\Program Files (x86)\Rising\RAV\extole.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 2]
[PID: 892 / SYSTEM][F:\Program Files (x86)\Rising\RFW\RavMonD.exe] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 9]
[F:\Program Files (x86)\Rising\RFW\combase.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 24]
[F:\Program Files (x86)\Rising\RFW\cnt09.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[F:\Program Files (x86)\Rising\RFW\MonBase.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[F:\Program Files (x86)\Rising\RFW\MonComm.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.3]
[F:\Program Files (x86)\Rising\RFW\rsconf.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.8]
[F:\Program Files (x86)\Rising\RFW\rfwlog.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.7]
[F:\Program Files (x86)\Rising\RFW\rfwrule.dll] [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]
[C:\Windows\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[F:\Program Files (x86)\Rising\RFW\rfwsrv.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.1.3]
[F:\Program Files (x86)\Rising\RFW\Syslay.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RFW\mPorts.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.7]
[F:\Program Files (x86)\Rising\RFW\rfwdrvc.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.37]
[F:\Program Files (x86)\Rising\RFW\fishweb.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 29]
[F:\Program Files (x86)\Rising\RFW\rsindent.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.1.0]
[F:\Program Files (x86)\Rising\RFW\taskplug.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RFW\rfwPgDef.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.4]
[F:\Program Files (x86)\Rising\RFW\proccomm.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RFW\comx3.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.4]
[F:\Program Files (x86)\Rising\RFW\Rfwdrv.dll] [Beijing Rising Information Technology Co., Ltd., 25.0.0.8]
[F:\Program Files (x86)\Rising\RFW\RfwArp.dll] [Beijing Rising Information Technology Co., Ltd., 25.0.0.1]
[F:\Program Files (x86)\Rising\RFW\urlrule.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RFW\recomp.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 14]
[F:\Program Files (x86)\Rising\RFW\refs.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 3]
[F:\Program Files (x86)\Rising\RFW\viruslib.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 8]
[F:\Program Files (x86)\Rising\RFW\relibldr.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[F:\Program Files (x86)\Rising\RFW\rfwproxy.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 87]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[F:\Program Files (x86)\Rising\RFW\rslang.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RFW\fwfish.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 5]
[F:\Program Files (x86)\Rising\RFW\fwcomp.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 11]
[F:\Program Files (x86)\Rising\RFW\fwfs.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 5]
[F:\Program Files (x86)\Rising\RFW\fwvirlib.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 5]
[F:\Program Files (x86)\Rising\RFW\fwlibldr.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 3]
[F:\Program Files (x86)\Rising\RFW\rstask.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 7]
[F:\Program Files (x86)\Rising\RFW\rsstub.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RFW\urllib.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 1]
[PID: 1240 / SYSTEM][C:\Program Files (x86)\360\360Safe\deepscan\zhudongfangyu.exe] [360.cn, 3, 2, 2, 2015]
[C:\Program Files (x86)\360\360Safe\deepscan\cloudcom2.dll] [360.cn, 3, 3, 8, 2003]
[C:\Program Files (x86)\360\360Safe\360leakfixplugin.dll] [360.cn, 1, 0, 0, 1003]
[C:\Program Files (x86)\360\360Safe\SoftMgr\360SoftMgrS.dll] [360.cn, 2, 1, 6, 1195]
[C:\Program Files (x86)\360\360Safe\360base.dll] [360.cn, 1, 0, 0, 1003]
[C:\Program Files (x86)\360\360Safe\360conf.dll] [360.cn, 1, 0, 0, 1004]
[C:\Program Files (x86)\360\360Safe\360NetBase.dll] [360.cn, 7, 25, 0, 1]
[C:\Program Files (x86)\360\360Safe\deepscan\heavygate.dll] [360.cn, 3, 7, 9, 3]
[C:\Program Files (x86)\360\360Safe\deepscan\qutmload.dll] [360.cn, 7, 2, 1, 1001]
[PID: 1720 / SYSTEM][C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe] [ArcSoft Inc., 1.1.0.47]
[PID: 1756 / SYSTEM][C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe] [Cisco Systems, Inc., 5.0.07.0440]
[C:\Program Files (x86)\Cisco Systems\VPN Client\vpnapi.dll] [N/A, ]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 1768 / SYSTEM][C:\Program Files (x86)\Launch Manager\dsiwmis.exe] [Dritek System Inc., 3.5.0.1821]
[PID: 2200 / Terry][C:\Program Files (x86)\Launch Manager\LMworker.exe] [Dritek System Inc., 2.4.1.1821]
[C:\Program Files (x86)\Launch Manager\NTKCUtl.dll] [Dritek System Inc., 3.2.0.1767]
[PID: 2212 / SYSTEM][C:\Program Files (x86)\Launch Manager\LMutilps32.exe] [Dritek System Inc., 1.2.0.1821]
[C:\Program Files (x86)\Launch Manager\LmSmbKel.dll] [Dritek System Inc., 1, 14, 0, 1814]
[PID: 2280 / SYSTEM][F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\IcbcDaemon.exe] [N/A, ]
[PID: 2304 / SYSTEM][C:\Windows\SysWOW64\srvany.exe] [N/A, ]
[PID: 2324 / SYSTEM][C:\Windows\KMService.exe] [N/A, ]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 2332 / SYSTEM][C:\Program Files\Acer\Acer Updater\UpdaterService.exe] [Acer Incorporated, 1.02.3005]
[PID: 2464 / SYSTEM][C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\Pehook.DLL] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\ISchedule.DLL] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\SyncDll.DLL] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll] [N/A, ]
[C:\Program Files (x86)\NTI\Acer Backup Manager\agent_stub.dll] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll] [, 5.6.6]
[C:\Program Files (x86)\NTI\Acer Backup Manager\OutlookDispatch.dll] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\BookmarkDLL.dll] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\WinSetDLL.dll] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll] [N/A, ]
[C:\Program Files (x86)\NTI\Acer Backup Manager\VssAgent.dll] [NTI Corporation, 3.0.0.100]
[PID: 2816 / Terry][C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe] [CyberLink Corp., 4, 0, 7229, 0]
[C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80U.DLL] [Microsoft Corporation, 8.00.50727.6195]
[C:\Windows\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3\MFC80CHS.DLL] [Microsoft Corporation, 8.00.50727.6195]
[C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\Common\CLRCEngine3.dll] [CyberLink Corp., 5, 0, 0, 2909]
[C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80.DLL] [Microsoft Corporation, 8.00.50727.6195]
[PID: 2836 / Terry][C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe] [CyberLink, 1.1.3727 ]
[C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll] [, 1.1.3727 ]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetShow.dll] [CyberLink Corp., 1.1.7201 ]
[C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLHttpDownload.dll] [Cyberlink, 1, 0, 0, 4312]
[PID: 2252 / Terry][C:\Program Files (x86)\Lexmark Z2300 Series\lxdpmon.exe] [, 0.1.25.0]
[C:\Program Files (x86)\Lexmark Z2300 Series\lxdpcfg.dll] [Lexmark International, 1, 0, 0, 1]
[C:\Program Files (x86)\Lexmark Z2300 Series\lxdpmonr.dll] [, 0.1.25.0]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 2036 / Terry][F:\Program Files (x86)\Tencent\QQDownload\QQDownload.exe] [Tencent Technology (Shenzhen) Company Limited, 3, 9, 716, 404]
倩萍尹筠 - 2012-7-5 8:35:00
[C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80U.DLL] [Microsoft Corporation, 8.00.50727.6195]
[C:\Windows\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3\MFC80CHS.DLL] [Microsoft Corporation, 8.00.50727.6195]
[F:\Program Files (x86)\Tencent\QQDownload\xmain.dll] [Tencent Technology (Shenzhen) Company Limited, 1, 9, 293, 400]
[F:\Program Files (x86)\Tencent\QQDownload\QQDownloadSkin.dll] [Tencent Technology (Shenzhen) Company Limited, 1, 0, 701, 101]
[C:\Windows\WinSxS\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d1cb102c435421de\ATL80.DLL] [Microsoft Corporation, 8.00.50727.6195]
[F:\Program Files (x86)\Tencent\QQDownload\VBScript.dll] [Microsoft Corporation, 5.6.0.7426]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.1.39\Bin\SSOLUIControl.dll] [Tencent, 1.0.1.13]
[C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.1.39\Bin\SSOCommon.DLL] [Tencent, 1.2.1.11]
[C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.1.39\Bin\SSOPlatform.dll] [Tencent, 1.2.1.39]
[F:\Program Files (x86)\Tencent\QQDownload\xdownload.dll] [Tencent, 1, 9, 351, 404]
[F:\Program Files (x86)\Tencent\QQDownload\Win7Feature.dll] [, 2, 7, 625, 301]
[F:\Program Files (x86)\Tencent\QQDownload\xcore.dll] [Tencent Technology(Shenzhen) Company Limited, 2, 1, 101, 90]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[C:\Program Files (x86)\360\360Safe\safemon\iNetSafe.dll] [360.cn, 1, 0, 2, 1130]
[C:\Program Files (x86)\360\360Safe\safemon\urlproc.dll] [360.cn, 2, 8, 2, 1001]
[C:\Program Files (x86)\360\360Safe\deepscan\heavygate.dll] [360.cn, 3, 7, 9, 3]
[C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE14\Cultures\office.odf] [, ]
[PID: 3396 / Terry][C:\Program Files (x86)\Rising\RSD\popwndexe.exe] [Beijing Rising Information Technology Co., Ltd., 1.0.0.5]
[C:\Program Files (x86)\Rising\RSD\rsdk.dll] [Beijing Rising Information Technology Co., Ltd., 1.0.0.2]
[C:\Program Files (x86)\Rising\RSD\rsmginfo.dll] [Beijing Rising Information Technology Co., Ltd., 1.0.0.30]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 3404 / Terry][C:\Program Files (x86)\Rising\RAG\TRAY.EXE] [Beijing Rising Information Technology Co., Ltd., 1.0.0.9]
[C:\Program Files (x86)\Rising\RAG\rscom.dll] [Beijing Rising Information Technology Co., Ltd., 1.0.0.13]
[C:\Program Files (x86)\Rising\RAG\traywnd.dll] [Beijing Rising Information Technology Co., Ltd., 1.0.0.4]
[C:\Program Files (x86)\Rising\RAG\trayload.dll] [Beijing Rising Information Technology Co., Ltd., 1.0.0.17]
[C:\Program Files (x86)\Rising\RAG\RsPopWnd.dll] [Beijing Rising Information Technology Co., Ltd., 1.0.0.8]
[C:\Program Files (x86)\Rising\RAG\rsp2pclient.dll] [Beijing Rising Information Technology Co., Ltd., 1.1.0.31]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 4008 / Terry][C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\OutlookDispatch.dll] [NTI Corporation, 3.0.0.100]
[C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll] [N/A, ]
[C:\Program Files (x86)\NTI\Acer Backup Manager\LUInterface.dll] [NTI Corporation, 1.0.0.18]
[C:\Program Files (x86)\NTI\Acer Backup Manager\MUI\0804\lang.dll] [NTI Corporation, 3.0.0.100]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 3432 / Terry][C:\Program Files (x86)\Launch Manager\LManager.exe] [Dritek System Inc., 5.1.4.1821]
[C:\Program Files (x86)\Launch Manager\ComFnUtl.dll] [Dritek System Inc., 2, 1, 0, 807]
[C:\Program Files (x86)\Launch Manager\CDRomUtl.dll] [Dritek System Inc., 1, 0, 0, 120]
[C:\Program Files (x86)\Launch Manager\MixerUtl.dll] [Dritek System Inc., 1.0.0.2]
[C:\Program Files (x86)\Launch Manager\Wnd2File.dll] [Dritek System Inc., 2, 0, 0, 1]
[C:\Program Files (x86)\Launch Manager\PowerUtl.dll] [Dritek System Inc., 1, 0, 0, 227]
[C:\Program Files (x86)\Launch Manager\OSDUtl2.dll] [Dritek System Inc., 2, 0, 0, 17]
[C:\Program Files (x86)\Launch Manager\SzUPFUtl.dll] [Dritek System Inc., 2, 1, 0, 1]
[C:\Program Files (x86)\Launch Manager\RadioWndUtl.dll] [Dritek System Inc., 3, 4, 1, 13]
[C:\Program Files (x86)\Launch Manager\aipflib.dll] [Dritek System Inc., 2.6.0.1821]
[C:\Program Files (x86)\Launch Manager\LmSmbKel.dll] [Dritek System Inc., 1, 14, 0, 1814]
[C:\Program Files (x86)\Launch Manager\VistaVol.DLL] [Dritek System Inc., 1, 0, 1, 703]
[PID: 2964 / Terry][C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe] [CyberLink Corp., 9.00.7418 ]
[C:\Program Files (x86)\Acer\clear.fi\Movie\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files (x86)\Acer\clear.fi\Movie\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files (x86)\Acer\clear.fi\Movie\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Windows\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Windows\system32\atiu9pag.dll] [Advanced Micro Devices, Inc. , 8.14.01.6195]
[PID: 3660 / Terry][F:\Program Files (x86)\Rising\RAV\RsTray.exe] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[F:\Program Files (x86)\Rising\RAV\comserv.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.15]
[F:\Program Files (x86)\Rising\RAV\rslang.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RAV\comx3.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.4]
[F:\Program Files (x86)\Rising\RAV\Syslay.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RAV\ProcComm.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RAV\rsxml.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RAV\MonState.dll] [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]
[F:\Program Files (x86)\Rising\RAV\ScanEvnt.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.10]
[F:\Program Files (x86)\Rising\RAV\rsguilib.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[F:\Program Files (x86)\Rising\RAV\rsconf.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.8]
[F:\Program Files (x86)\Rising\RAV\rspalvd.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.7]
[F:\Program Files (x86)\Rising\RAV\MonTray.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.1.15]
[F:\Program Files (x86)\Rising\RAV\rsmginfo.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.14]
[F:\Program Files (x86)\Rising\RAV\UsbServ.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 3]
[F:\Program Files (x86)\Rising\RAV\ScanTray.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.56]
[F:\Program Files (x86)\Rising\RAV\PngDll.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 3]
[F:\Program Files (x86)\Rising\RAV\dfw.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.67]
[F:\Program Files (x86)\Rising\RAV\ScanPrxy.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.32]
[F:\Program Files (x86)\Rising\RAV\GCompt.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.55]
[F:\Program Files (x86)\Rising\RAV\Isol.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.14]
[F:\Program Files (x86)\Rising\RAV\rsstore.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 3760 / Terry][F:\Program Files (x86)\Rising\RFW\RsTray.exe] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[F:\Program Files (x86)\Rising\RFW\comserv.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.15]
[F:\Program Files (x86)\Rising\RFW\rslang.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RFW\comx3.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.4]
[F:\Program Files (x86)\Rising\RFW\Syslay.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RFW\ProcComm.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RFW\rsxml.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RFW\MonState.dll] [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]
[F:\Program Files (x86)\Rising\RFW\rfwrule.dll] [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]
[C:\Windows\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[F:\Program Files (x86)\Rising\RFW\rsconf.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.8]
[F:\Program Files (x86)\Rising\RFW\rspalvd.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.7]
[F:\Program Files (x86)\Rising\RFW\rsguilib.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[F:\Program Files (x86)\Rising\RFW\rsnetsvr.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[F:\Program Files (x86)\Rising\RFW\rsmginfo.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.14]
[F:\Program Files (x86)\Rising\RFW\rfwtray.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 78]
[F:\Program Files (x86)\Rising\RFW\rfwlog.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.7]
[F:\Program Files (x86)\Rising\RFW\PngDll.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 3]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 3772 / Terry][C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe] [ArcSoft Inc., 1.1.0.49]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\ArcCon.dll] [ArcSoft Inc., 1.1.0.49]
[PID: 3732 / Terry][C:\Program Files (x86)\360\360Safe\safemon\360tray.exe] [360.cn, 7, 7, 0, 1063]
[C:\Program Files (x86)\360\360Safe\safemon\360compro.dll] [360.cn, 7, 2, 1, 1047]
[C:\Program Files (x86)\360\360Safe\ipc\ipcservice.dll] [360.CN, 7, 1, 1, 1013]
[C:\Program Files (x86)\360\360Safe\ipc\x64for32lib.dll] [360.cn, 6, 8, 0, 1005]
[C:\Program Files (x86)\360\360Safe\ipc\fileMgr.dll] [360.cn, 7, 0, 0, 1031]
[C:\Program Files (x86)\360\360Safe\ipc\yhregd.dll] [360.cn, 7, 1, 0, 1017]
[C:\Program Files (x86)\360\360Safe\ipc\appd.dll] [360.cn, 7, 3, 2, 1056]
[C:\Program Files (x86)\360\360Safe\deepscan\BAPI.dll] [360.cn, 2.0.0.1032]
[C:\Program Files (x86)\360\360Safe\ipc\netdefender.dll] [360.cn, 1, 0, 0, 1012]
[C:\Program Files (x86)\360\360Safe\safemon\360traylive.dll] [360.cn, 8, 0, 0, 2011]
[C:\Program Files (x86)\360\360Safe\safemon\360procmon.dll] [360.CN, 7, 0, 0, 1007]
[C:\Program Files (x86)\360\360Safe\safemon\SelfProtectAPI2.dll] [360.CN, 7, 0, 0, 1001]
[C:\Program Files (x86)\360\360Safe\safemon\360MobileBase.tpi] [360.cn, 1, 6, 0, 1610]
[C:\Program Files (x86)\360\360Safe\safemon\360SafeCamera.tpi] [360.cn, 1, 0, 0, 1010]
[C:\Program Files (x86)\360\360Safe\safemon\360safemonpro.tpi] [360.cn, 2, 8, 0, 1110]
[C:\Program Files (x86)\360\360Safe\safemon\360TaskBar.tpi] [360.cn, 1, 0, 1, 1090]
[C:\Program Files (x86)\360\360Safe\safemon\DsTpi.tpi] [360.cn, 1, 0, 0, 2011]
[C:\Program Files (x86)\360\360Safe\safemon\Netm.tpi] [360.cn, 4, 3, 11, 1320]
[C:\Program Files (x86)\360\360Safe\safemon\netmon.tpi] [360.cn, 5, 1, 0, 1023]
[C:\Program Files (x86)\360\360Safe\safemon\obtracer.tpi] [360.cn, 6, 8, 0, 1115]
[C:\Program Files (x86)\360\360Safe\safemon\BootLeakFixer.tpi] [360.cn, 1, 0, 0, 1002]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[C:\Program Files (x86)\360\360Safe\deepscan\qutmload.dll] [360.cn, 7, 2, 1, 1001]
[C:\Program Files (x86)\360\360Safe\ipc\qutmipc.dll] [360.cn, 7, 3, 0, 1027]
[C:\Program Files (x86)\360\360Safe\ipc\sbmon.dll] [360安全中心, 2, 0, 0, 1021]
[C:\Program Files (x86)\360\360Safe\ipc\360box.dll] [360安全中心, 2, 0, 0, 1005]
[C:\Program Files (x86)\360\360Safe\netmon\Netgm.dll] [360.cn, 2, 1, 1, 1050]
[C:\Program Files (x86)\360\360Safe\ipc\360AntiHacker.dll] [360.cn, 1, 0, 0, 1003]
[C:\Program Files (x86)\360\360Safe\ipc\DrvUtility.dll] [360.cn, 1, 0, 0, 1003]
[C:\Program Files (x86)\360\360Safe\360base.dll] [360.cn, 1, 0, 0, 1003]
[C:\Program Files (x86)\360\360Safe\360conf.dll] [360.cn, 1, 0, 0, 1004]
[C:\Program Files (x86)\360\360Safe\MiniUI.dll] [360.cn, 7, 5, 3, 1011]
[C:\Program Files (x86)\360\360Safe\safemon\360UDiskGuard.dll] [360.cn, 2, 0, 0, 1019]
[C:\Program Files (x86)\360\360Safe\SafeLive.dll] [360.cn, 2, 0, 1, 2012]
[C:\Program Files (x86)\360\360Safe\pdown.dll] [360.cn, 1, 3, 0, 1088]
[C:\Program Files (x86)\360\360Safe\safemon\safemonhlp.dll] [360.cn, 1, 0, 0, 1050]
[C:\Program Files (x86)\360\360Safe\360Common.dll] [360.cn, 7, 3, 0, 1055]
[C:\Program Files (x86)\360\360Safe\safemon\urlproc.dll] [360.cn, 2, 8, 2, 1001]
[C:\Program Files (x86)\360\360Safe\deepscan\heavygate.dll] [360.cn, 3, 7, 9, 3]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[C:\Program Files (x86)\360\360Safe\netmon\3GIdentify.dll] [360.cn, 1, 0, 0, 1012]
[C:\Program Files (x86)\360\360Safe\360Verify.dll] [360安全中心, 1, 0, 0, 1004]
[C:\Program Files (x86)\360\360Safe\netmon\mobileflux.dll] [360.cn, 1, 1, 1, 1011]
[C:\Program Files (x86)\360\360Safe\netmon\360netctrl.dll] [360.cn, 3, 2, 12, 1152]
[C:\Program Files (x86)\360\360Safe\netmon\360gameidentify.dll] [360.cn, 1, 0, 0, 1001]
[C:\Program Files (x86)\360\360Safe\netmon\sysmon.dll] [360.cn, 1, 0, 2, 1131]
[C:\Program Files (x86)\360\360Safe\netmon\NetmonEP.dll] [360.cn, 2, 0, 1, 1001]
[C:\Program Files (x86)\360\360Safe\deepscan\Cloudcom2.dll] [360.cn, 3, 3, 8, 2003]
[C:\Program Files (x86)\360\360Safe\360NetBase.dll] [360.cn, 7, 25, 0, 1]
[C:\Program Files (x86)\360\360Safe\LiveUpd360.dll] [360.cn, 1, 3, 0, 1088]
[C:\Program Files (x86)\360\360Safe\360net.dll] [360.cn, 1, 2, 0, 1040]
[C:\Program Files (x86)\360\360Safe\360P2SP.dll] [360.cn, 1, 3, 0, 1050]
[C:\Program Files (x86)\360\360Safe\safemon\SomProxy.dll] [360.cn, 1, 0, 0, 1170]
[C:\Program Files (x86)\360\360Safe\deepscan\deepscan.dll] [360.cn, 3, 2, 8, 2060]
[C:\Program Files (x86)\360\360Safe\safemon\Adfilter.dll] [360.cn, 1, 0, 0, 2003]
[C:\Program Files (x86)\360\360Safe\safemon\BrowserFix.dll] [360.cn, 1, 0, 4, 1027]
[C:\Program Files (x86)\360\360Safe\AntiAdwa.dll] [360.cn, 6, 4, 0, 1004]
[C:\Program Files (x86)\360\360Safe\360Util.dll] [360.cn, 1, 0, 0, 1002]
[C:\Program Files (x86)\360\360Safe\dynlenv.dll] [360.cn, 1, 1, 0, 1010]
[C:\Program Files (x86)\360\360Safe\deepscan\qvm\360QVM.dll] [360.cn, 2, 2, 0, 1002]
[C:\Program Files (x86)\360\360Safe\deepscan\CQhCltHttpW.dll] [360.cn, 1, 0, 6, 1001]
[C:\Program Files (x86)\360\360Safe\deepscan\DsSysRepair.dll] [360.cn, 1, 0, 0, 1041]
[C:\Program Files (x86)\360\360Safe\dynlbase.dll] [360.cn, 1, 1, 0, 1025]
[C:\Program Files (x86)\360\360Safe\deepscan\DsExtend.dll] [360.cn, 1, 0, 0, 2001]
[C:\Program Files (x86)\360\360Safe\deepscan\ave\AVEI.dll] [360.cn, 1, 0, 0, 1011]
[C:\Program Files (x86)\360\360Safe\deepscan\ave\AVEngine.dll] [360.cn, 1, 0, 0, 1011]
[C:\Program Files (x86)\360\360Safe\safemon\wdui2.dll] [360.cn, 2, 0, 0, 1020]
[PID: 3832 / Terry][C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac] [ArcSoft Inc., 1.1.0.48]
倩萍尹筠 - 2012-7-5 8:35:00
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagCore.dll] [ArcSoft Inc., 1.0.0.184]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagPCMac.dll] [ArcSoft Inc., 1.0.0.184]
[C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\MSVCP60.dll] [Microsoft Corporation, 6.02.3104.0]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUICommon.dll] [ArcSoft Inc., 1.0.0.184]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIEngine.dll] [ArcSoft Inc., 1.0.0.184]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUICommonET.dll] [ArcSoft Inc., 1.0.0.184]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIInter.dll] [ArcSoft Inc., 1.0.0.184]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\MagUIImage.dll] [ArcSoft Inc., 1.0.0.184]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\magPltfm.dll] [ArcSoft Inc., 5.1.0.58]
[C:\Program Files (x86)\Common Files\ArcSoft\Bin\ArcCon.dll] [ArcSoft Inc., 1.1.0.49]
[C:\Windows\system32\icm32.dll] [Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
[PID: 5788 / Terry][C:\Program Files (x86)\Internet Explorer\iexplore.exe] [Microsoft Corporation, 9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[C:\Program Files (x86)\360\360Safe\safemon\iNetSafe.dll] [360.cn, 1, 0, 2, 1130]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 3876 / Terry][C:\Program Files (x86)\Internet Explorer\iexplore.exe] [Microsoft Corporation, 9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[C:\Windows\system32\aticfx32.dll] [ATI Technologies Inc. , 8.17.10.1071]
[C:\Windows\system32\atiuxpag.dll] [Advanced Micro Devices, Inc. , 8.14.01.6195]
[C:\Windows\system32\atidxx32.dll] [ATI Technologies Inc. , 8.17.10.0342]
[C:\Program Files (x86)\360\360Safe\safemon\Adfilter.dll] [360.cn, 1, 0, 0, 2003]
[C:\Program Files (x86)\360\360Safe\safemon\iNetSafe.dll] [360.cn, 1, 0, 2, 1130]
[C:\Program Files (x86)\360\360Safe\safemon\urlproc.dll] [360.cn, 2, 8, 2, 1001]
[C:\Program Files (x86)\360\360Safe\deepscan\heavygate.dll] [360.cn, 3, 7, 9, 3]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.5.64.dll] [深圳市迅雷网络技术有限公司, 1.0.5.64]
[C:\Windows\system32\ATL71.DLL] [Microsoft Corporation, 7.10.6101.0]
[f:\Program Files (x86)\搜狐影音\SoHuAutoDetector.dll] [Sohu, 1.0.0.11]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XunleiBHO7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 7,2,3,3254]
[C:\Windows\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\Icbc_AntiPhishing.dll] [中国工商银行, 1.0.6.29]
[C:\Program Files (x86)\360\360Safe\safemon\sepro.dll] [360.cn, 2, 3, 0, 1040]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddinKernel1.0.5.64.dll] [深圳市迅雷网络技术有限公司, 1.0.5.64]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\xldb.7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 1, 0, 1, 7]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\xldp.7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 1, 0, 2, 24]
[F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\KeyMonitor.dll] [N/A, ]
[C:\Windows\SysWOW64\Macromed\Flash\Flash32_11_3_300_257.ocx] [Adobe Systems, Inc., 11,3,300,257]
[C:\Program Files (x86)\360\360Safe\safemon\360qwww.dll] [360.cn, 1, 0, 0, 1002]
[C:\Windows\system32\icm32.dll] [Microsoft Corporation, 6.1.7600.16385 (win7_rtm.090713-1255)]
[PID: 3092 / Terry][C:\Program Files (x86)\Mozilla Firefox\firefox.exe] [Mozilla Corporation, 13.0.1]
[C:\Program Files (x86)\Mozilla Firefox\nspr4.dll] [Mozilla Foundation, 4.9]
[C:\Program Files (x86)\Mozilla Firefox\mozglue.dll] [Mozilla Foundation, 13.0.1]
[C:\Program Files (x86)\Mozilla Firefox\plc4.dll] [Mozilla Foundation, 4.9]
[C:\Program Files (x86)\Mozilla Firefox\plds4.dll] [Mozilla Foundation, 4.9]
[C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll] [Mozilla Foundation, 13.0.1]
[C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll] [sqlite.org, 3.7.10]
[C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll] [Mozilla Foundation, 3.13.4.0]
[C:\Program Files (x86)\Mozilla Firefox\softokn3.dll] [Mozilla Foundation, 3.13.4.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\nss3.dll] [Mozilla Foundation, 3.13.4.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\ssl3.dll] [Mozilla Foundation, 3.13.4.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\smime3.dll] [Mozilla Foundation, 3.13.4.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\mozjs.dll] [N/A, ]
[C:\Program Files (x86)\Mozilla Firefox\xul.dll] [Mozilla Foundation, 13.0.1]
[C:\Program Files (x86)\Mozilla Firefox\xpcom.dll] [Mozilla Foundation, 13.0.1]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll] [Mozilla Foundation, 13.0.1]
[C:\Program Files (x86)\Mozilla Firefox\gkmedias.dll] [Mozilla Foundation, 13.0.1]
[C:\Users\Terry\AppData\Roaming\Mozilla\Firefox\Profiles\x8sr18c4.default\extensions\{00000000-965C-475f-92C9-8D9EB7B27605}\components\XFFirefoxExtMid.dll] [N/A, ]
[C:\Windows\system32\atiuxpag.dll] [Advanced Micro Devices, Inc. , 8.14.01.6195]
[C:\Windows\system32\aticfx32.dll] [ATI Technologies Inc. , 8.17.10.1071]
[C:\Windows\system32\atidxx32.dll] [ATI Technologies Inc. , 8.17.10.0342]
[C:\Program Files (x86)\360\360Safe\safemon\iNetSafe.dll] [360.cn, 1, 0, 2, 1130]
[C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll] [Mozilla Foundation, 3.13.4.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\freebl3.dll] [Mozilla Foundation, 3.13.4.0 Basic ECC]
[C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll] [Mozilla Foundation, 1.90]
[PID: 5244 / Terry][F:\Program Files (x86)\Rising\RAV\rsmain.exe] [Beijing Rising Information Technology Co., Ltd., 23.0.0.37]
[C:\Windows\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[F:\Program Files (x86)\Rising\RAV\comx3.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.4]
[F:\Program Files (x86)\Rising\RAV\Syslay.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[F:\Program Files (x86)\Rising\RAV\combase.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 24]
[F:\Program Files (x86)\Rising\RAV\dfwMain.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.78]
[F:\Program Files (x86)\Rising\RAV\dfw.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.67]
[F:\Program Files (x86)\Rising\RAV\ScanPrxy.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.32]
[F:\Program Files (x86)\Rising\RAV\rstask.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 8]
[F:\Program Files (x86)\Rising\RAV\Security.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 8]
[F:\Program Files (x86)\Rising\RAV\MonState.dll] [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]
[F:\Program Files (x86)\Rising\RAV\MonMgr.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.27]
[F:\Program Files (x86)\Rising\RAV\Tools.dll] [Beijing Rising Information Technology Co., Ltd., 23, 0, 0, 10]
[F:\Program Files (x86)\Rising\RAV\Isol.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.14]
[F:\Program Files (x86)\Rising\RAV\Misc.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.39]
[F:\Program Files (x86)\Rising\RAV\RsStore.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.12]
[F:\Program Files (x86)\Rising\RAV\GCompt.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.55]
[F:\Program Files (x86)\Rising\RAV\rsuitool.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.23]
[F:\Program Files (x86)\Rising\RAV\rsconf.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.8]
[F:\Program Files (x86)\Rising\RAV\logstat.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.11]
[F:\Program Files (x86)\Rising\RAV\logquery.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.39]
[F:\Program Files (x86)\Rising\RAV\ProcComm.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[C:\Windows\system32\l3codecp.acm] [Fraunhofer Institut Integrierte Schaltungen IIS, 3, 4, 0, 0]
[PID: 764 / Terry][F:\Program Files (x86)\Rising\RAV\RsAgent.exe] [Beijing Rising Information Technology Co., Ltd., 23.0.0.30]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[C:\Windows\SysWOW64\Macromed\Flash\Flash32_11_3_300_257.ocx] [Adobe Systems, Inc., 11,3,300,257]
[F:\Program Files (x86)\Rising\RAV\ProcComm.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.2]
[F:\Program Files (x86)\Rising\RAV\ScanPrxy.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.32]
[F:\Program Files (x86)\Rising\RAV\comx3.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.4]
[F:\Program Files (x86)\Rising\RAV\Syslay.dll] [Beijing Rising Information Technology Co., Ltd., 23.0.0.1]
[PID: 3368 / Terry][C:\Program Files (x86)\Internet Explorer\iexplore.exe] [Microsoft Corporation, 9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[C:\Windows\system32\aticfx32.dll] [ATI Technologies Inc. , 8.17.10.1071]
[C:\Windows\system32\atiuxpag.dll] [Advanced Micro Devices, Inc. , 8.14.01.6195]
[C:\Windows\system32\atidxx32.dll] [ATI Technologies Inc. , 8.17.10.0342]
[C:\Program Files (x86)\360\360Safe\safemon\Adfilter.dll] [360.cn, 1, 0, 0, 2003]
[C:\Program Files (x86)\360\360Safe\safemon\iNetSafe.dll] [360.cn, 1, 0, 2, 1130]
[C:\Program Files (x86)\360\360Safe\safemon\urlproc.dll] [360.cn, 2, 8, 2, 1001]
[C:\Program Files (x86)\360\360Safe\deepscan\heavygate.dll] [360.cn, 3, 7, 9, 3]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.5.64.dll] [深圳市迅雷网络技术有限公司, 1.0.5.64]
[C:\Windows\system32\ATL71.DLL] [Microsoft Corporation, 7.10.6101.0]
[f:\Program Files (x86)\搜狐影音\SoHuAutoDetector.dll] [Sohu, 1.0.0.11]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XunleiBHO7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 7,2,3,3254]
[C:\Windows\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\Icbc_AntiPhishing.dll] [中国工商银行, 1.0.6.29]
[C:\Program Files (x86)\360\360Safe\safemon\sepro.dll] [360.cn, 2, 3, 0, 1040]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddinKernel1.0.5.64.dll] [深圳市迅雷网络技术有限公司, 1.0.5.64]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\xldb.7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 1, 0, 1, 7]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\xldp.7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 1, 0, 2, 24]
[F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\KeyMonitor.dll] [N/A, ]
[C:\Windows\system32\QQPINYIN.IME] [Tencent, 4.5.1206.400]
[C:\Windows\SysWOW64\Macromed\Flash\Flash32_11_3_300_257.ocx] [Adobe Systems, Inc., 11,3,300,257]
[C:\Windows\system32\atiu9pag.dll] [Advanced Micro Devices, Inc. , 8.14.01.6195]
[C:\Windows\system32\atiumdag.dll] [ATI Technologies Inc. , 7.14.10.0817]
[C:\Windows\system32\atiumdva.dll] [Advanced Micro Devices, Inc. , 8.14.10.0299]
[PID: 5204 / Terry][f:\Program Files (x86)\YouKu\common\ikucmc.exe] [Youku.com, 1.0.8.2221]
[f:\Program Files (x86)\YouKu\common\ikucrash.dll] [Youku.com, 2.1.6.2221]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 5296 / Terry][f:\Program Files (x86)\YouKu\common\ikuacc.exe] [Youku.com, 3.0.1.2221]
[f:\Program Files (x86)\YouKu\common\ikucrash.dll] [Youku.com, 2.1.6.2221]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[PID: 1132 / Terry][C:\Program Files (x86)\Internet Explorer\iexplore.exe] [Microsoft Corporation, 9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[C:\Windows\system32\aticfx32.dll] [ATI Technologies Inc. , 8.17.10.1071]
[C:\Windows\system32\atiuxpag.dll] [Advanced Micro Devices, Inc. , 8.14.01.6195]
[C:\Windows\system32\atidxx32.dll] [ATI Technologies Inc. , 8.17.10.0342]
[C:\Program Files (x86)\360\360Safe\safemon\Adfilter.dll] [360.cn, 1, 0, 0, 2003]
[C:\Program Files (x86)\360\360Safe\safemon\iNetSafe.dll] [360.cn, 1, 0, 2, 1130]
[C:\Program Files (x86)\360\360Safe\safemon\urlproc.dll] [360.cn, 2, 8, 2, 1001]
[C:\Program Files (x86)\360\360Safe\deepscan\heavygate.dll] [360.cn, 3, 7, 9, 3]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.5.64.dll] [深圳市迅雷网络技术有限公司, 1.0.5.64]
[C:\Windows\system32\ATL71.DLL] [Microsoft Corporation, 7.10.6101.0]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[f:\Program Files (x86)\搜狐影音\SoHuAutoDetector.dll] [Sohu, 1.0.0.11]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XunleiBHO7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 7,2,3,3254]
[C:\Windows\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\Icbc_AntiPhishing.dll] [中国工商银行, 1.0.6.29]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\XlBrowserAddinKernel1.0.5.64.dll] [深圳市迅雷网络技术有限公司, 1.0.5.64]
[C:\Program Files (x86)\360\360Safe\safemon\sepro.dll] [360.cn, 2, 3, 0, 1040]
[F:\Program Files (x86)\ICBCEbankTools\ICBCAntiPhishing\KeyMonitor.dll] [N/A, ]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\xldb.7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 1, 0, 1, 7]
[F:\Program Files (x86)\Thunder Network\Thunder\BHO\xldp.7.2.3.3254.dll] [深圳市迅雷网络技术有限公司, 1, 0, 2, 24]
[C:\Windows\SysWOW64\Macromed\Flash\Flash32_11_3_300_257.ocx] [Adobe Systems, Inc., 11,3,300,257]
[PID: 6068 / Terry][F:\software\sreng2\SREngLdr.EXE] [Smallfrogs Studio, 2.8.4.1331]
[PID: 6076 / Terry][F:\software\sreng2\SRE123f22c8.EXE] [Smallfrogs Studio, 2.8.4.1331]
[C:\Program Files (x86)\360\360Safe\safemon\safemon.dll] [360.cn, 8, 1, 1, 1040]
[f:\Program Files (x86)\YouKu\common\ikutm.dll] [youku.com, 3.1.0.6111]
[C:\Program Files (x86)\Microsoft Silverlight\xapauthenticodesip.dll] [ Microsoft Corporation, 5.1.10411.0]
倩萍尹筠 - 2012-7-5 8:36:00
文件关联
.TXT Error. [C:\Windows\notepad.exe %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["%SystemRoot%\hh.exe" %1]
.HLP OK. [%SystemRoot%\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS OK. ["%SystemRoot%\System32\WScript.exe" "%1" %*]
.JS Error. [C:\Windows\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
iKu Smart Network LSP over MSAFD Tcpip [TCP/IP]
f:\Program Files (x86)\YouKu\common\ikutm.dll(youku.com, iKu Smart Network Module)
iKu Smart Network LSP over MSAFD Tcpip [UDP/IP]
f:\Program Files (x86)\YouKu\common\ikutm.dll(youku.com, iKu Smart Network Module)
iKu Smart Network LSP
f:\Program Files (x86)\YouKu\common\ikutm.dll(youku.com, iKu Smart Network Module)
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
N/A
==================================
进程特权扫描
N/A
==================================
计划任务
[已禁用] \\Adobe Flash Player Updater
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[已禁用] \\AliUpdater{36D8FCFD-7582-41DC-A366-97B0761E3331}
F:\Program Files (x86)\AliWangWang\alitask.exe /update
[已启用] \\RunAsStdUser Task
"C:\Program Files (x86)\VooMuu\bin\1.0.36.0\VooMuuSA.exe" /update
[已禁用] \\Scheduled Update for Ask Toolbar
C:\Program Files (x86)\Ask.com\UpdateTask.exe /update
[已启用] \\SidebarExecute
C:\Program Files (x86)\Windows Sidebar\sidebar.exe -StartType:Install
[已禁用] \\SogouImeMgr
f:\PROGRA~1\SOGOUI~1\610~1.695\SGTool.exe --appid=pinyinrepair /S
[已禁用] \\{6620908A-85FD-42C5-8C9A-79A2B56B0FFB}
"C:\Program Files (x86)\Internet Explorer\iexplore.exe"
http://ui.skype.com/ui/0/5.0.0.152.367/cz/abandoninstall?page=tsMain&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled
[已禁用] \Apple\AppleSoftwareUpdate
C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe -task
[已禁用] \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated)
N/A
[已启用] \Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual)
N/A
[已禁用] \Microsoft\Windows\AppID\PolicyConverter
%windir%\system32\appidpolicyconverter.exe
[已禁用] \Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck
%windir%\system32\appidcertstorecheck.exe
[已启用] \Microsoft\Windows\Application Experience\AitAgent
aitagent
[已启用] \Microsoft\Windows\Application Experience\ProgramDataUpdater
%windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate
[已启用] \Microsoft\Windows\Autochk\Proxy
%windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations
[已启用] \Microsoft\Windows\Bluetooth\UninstallDeviceTask
BthUdTask.exe $(Arg0)
[已启用] \Microsoft\Windows\CertificateServicesClient\SystemTask
N/A
[已启用] \Microsoft\Windows\CertificateServicesClient\UserTask
N/A
[已禁用] \Microsoft\Windows\CertificateServicesClient\UserTask-Roam
N/A
[已启用] \Microsoft\Windows\Customer Experience Improvement Program\Consolidator
%SystemRoot%\System32\wsqmcons.exe
[已启用] \Microsoft\Windows\Defrag\ScheduledDefrag
%windir%\system32\defrag.exe -c
[已启用] \Microsoft\Windows\Location\Notifications
%windir%\System32\LocationNotifications.exe
[已启用] \Microsoft\Windows\Maintenance\WinSAT
N/A
[已禁用] \Microsoft\Windows\Media Center\ActivateWindowsSearch
%SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch
[已禁用] \Microsoft\Windows\Media Center\ConfigureInternetTimeService
%SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService
[已禁用] \Microsoft\Windows\Media Center\DispatchRecoveryTasks
%SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0)
[已禁用] \Microsoft\Windows\Media Center\ehDRMInit
%SystemRoot%\ehome\ehPrivJob.exe /DRMInit
[已禁用] \Microsoft\Windows\Media Center\InstallPlayReady
%SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0)
[已启用] \Microsoft\Windows\Media Center\mcupdate
%SystemRoot%\ehome\mcupdate $(Arg0)
[已禁用] \Microsoft\Windows\Media Center\MediaCenterRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
[已禁用] \Microsoft\Windows\Media Center\MediaCenterRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask
[已禁用] \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
[已禁用] \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask
[已禁用] \Microsoft\Windows\Media Center\OCURActivate
%SystemRoot%\ehome\ehPrivJob.exe /OCURActivate
[已禁用] \Microsoft\Windows\Media Center\OCURDiscovery
%SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0)
[已禁用] \Microsoft\Windows\Media Center\PBDADiscovery
%SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery
[已禁用] \Microsoft\Windows\Media Center\PBDADiscoveryW1
%SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery
[已禁用] \Microsoft\Windows\Media Center\PBDADiscoveryW2
%SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery
[已禁用] \Microsoft\Windows\Media Center\PeriodicScanRetry
%windir%\ehome\MCUpdate.exe -pscn 0
[已禁用] \Microsoft\Windows\Media Center\PvrRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
[已禁用] \Microsoft\Windows\Media Center\PvrRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask
[已禁用] \Microsoft\Windows\Media Center\PvrScheduleTask
%SystemRoot%\ehome\mcupdate.exe -PvrSchedule
[已禁用] \Microsoft\Windows\Media Center\PvrScheduleTask
%SystemRoot%\ehome\mcupdate.exe -PvrSchedule
[已禁用] \Microsoft\Windows\Media Center\RecordingRestart
%SystemRoot%\ehome\ehrec /RestartRecording
[已禁用] \Microsoft\Windows\Media Center\RegisterSearch
%SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0)
[已禁用] \Microsoft\Windows\Media Center\ReindexSearchRoot
%SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot
[已禁用] \Microsoft\Windows\Media Center\SqlLiteRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
[已禁用] \Microsoft\Windows\Media Center\SqlLiteRecoveryTask
%SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask
[已禁用] \Microsoft\Windows\Media Center\UpdateRecordPath
%SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0)
[已启用] \Microsoft\Windows\MobilePC\HotStart
N/A
[已启用] \Microsoft\Windows\MUI\LPRemove
%windir%\system32\lpremove.exe
[已启用] \Microsoft\Windows\Multimedia\SystemSoundsService
N/A
[已启用] \Microsoft\Windows\NetTrace\GatherNetworkInfo
%windir%\system32\gatherNetworkInfo.vbs
[已禁用] \Microsoft\Windows\Offline Files\Background Synchronization
N/A
[已禁用] \Microsoft\Windows\Offline Files\Logon Synchronization
N/A
[已启用] \Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem
%SystemRoot%\System32\powercfg.exe -energy -auto
[已启用] \Microsoft\Windows\Ras\MobilityManager
N/A
[已禁用] \Microsoft\Windows\SideShow\AutoWake
N/A
[已启用] \Microsoft\Windows\SideShow\GadgetManager
N/A
[已禁用] \Microsoft\Windows\SideShow\SessionAgent
N/A
[已禁用] \Microsoft\Windows\SideShow\SystemDataProviders
N/A
[已启用] \Microsoft\Windows\SystemRestore\SR
%windir%\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation
[已启用] \Microsoft\Windows\Tcpip\IpAddressConflict1
%windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem
[已启用] \Microsoft\Windows\Tcpip\IpAddressConflict2
%windir%\system32\rundll32.exe ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem
[已启用] \Microsoft\Windows\Time Synchronization\SynchronizeTime
%windir%\system32\sc.exe start w32time task_started
[已启用] \Microsoft\Windows\UPnP\UPnPHostConfig
sc.exe config upnphost start= auto
[已禁用] \Microsoft\Windows\User Profile Service\HiveUploadTask
N/A
[已启用] \Microsoft\Windows\Windows Error Reporting\QueueReporting
%windir%\system32\wermgr.exe -queuereporting
[已启用] \Microsoft\Windows\Windows Media Sharing\UpdateLibrary
"%ProgramFiles%\Windows Media Player\wmpnscfg.exe"
[已启用] \Microsoft\Windows\WindowsBackup\ConfigNotification
%systemroot%\System32\sdclt.exe /CONFIGNOTIFICATION
[已禁用] \Microsoft\Windows\WindowsColorSystem\Calibration Loader
N/A
[已启用] \Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
N/A
==================================
Windows 安全更新检查
KB2483139, 拉脱维亚语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 捷克语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 俄语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 英语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 丹麦语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 意大利语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 匈牙利语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 朝鲜语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 瑞典语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 波兰语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 克罗地亚语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 乌克兰语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 挪威语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 希腊语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 保加利亚语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 葡萄牙语(葡萄牙)语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 荷兰语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 葡萄牙语(巴西)语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 西班牙语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 斯洛文尼亚语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 繁体中文语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 日语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 泰国语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 德语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 爱沙尼亚语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 立陶宛语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 斯洛伐克语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 芬兰语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 阿拉伯语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 希伯来语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 塞尔维亚语(拉丁语)语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 罗马尼亚语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 法语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2483139, 土耳其语语言包 - 适用于 x64 系统的 Windows 7 Service Pack 1 (KB2483139)
KB2709981, 用于基于 x64 的系统的 Windows 7 更新程序 (KB2709981)
KB976002, 用于基于 x64 的系统的 Windows 7 的 EEA 用户的 Microsoft 浏览器选择屏幕更新程序 (KB976002)
KB915597, Definition Update for Windows Defender - KB915597 (Definition 1.129.902.0)
==================================
API HOOK
入口点错误:xxxFirstFileA (危险等级: 高, 被下面模块所HOOK: 0xB96BDDB6)
==================================
隐藏进程
N/A
==================================
[/CODE]
倩萍尹筠 - 2012-7-5 8:38:00
谢谢,截图还是好麻烦
倩萍尹筠 - 2012-7-5 8:39:00
4G内存, AMD四核 A6-3400M
networkedition - 2012-7-5 9:08:00
不是让发截图,是让参考发截图的方法,将日志以附件形式发来。:kaka6:
倩萍尹筠 - 2012-7-11 6:31:00
还没有解决办法吗?
networkedition - 2012-7-11 9:15:00
日志未见异常。
1
© 2000 - 2024 Rising Corp. Ltd.