[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[D:\WINDOWS\DOWNLO~1\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[D:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[PID: 496][D:\WINDOWS\system32\Rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 420][D:\WINDOWS\System32\QCONSVC.EXE] <IBM Corp.><3, 7, 1, 0>
[PID: 692][D:\Program Files\Intel\Wireless\Bin\RegSrvc.exe] <Intel Corporation><9, 0, 1, 83>
[PID: 756][D:\Program Files\Analog Devices\SoundMAX\SMAgent.exe] <Analog Devices, Inc.><3, 2, 6, 0>
[PID: 1164][D:\WINDOWS\System32\TPHDEXLG.EXE] <IBM Corporation><1.0.0.1>
[PID: 2024][D:\WINDOWS\system32\TpKmpSVC.exe] <N/A><N/A>
[PID: 440][D:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 428][D:\WINDOWS\system32\wbem\wmiprvse.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 584][D:\WINDOWS\system32\wscntfy.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2160][D:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe] <Analog Devices, Inc.><5, 0, 2, 2>
[D:\Program Files\Analog Devices\SoundMAX\SMWDMIF.dll] <Analog Devices, Inc.><5, 0, 2, 008>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2176][D:\Program Files\Analog Devices\SoundMAX\Smax4.exe] <Analog Devices, Inc.><5, 0, 2, 4>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2200][D:\WINDOWS\system32\TpShocks.exe] <IBM Corp.><1, 3, 0, 0>
[D:\Program Files\ThinkPad\TpShocks\MUI\0804\TpShocks.dll] <IBM Corp.><1, 0, 0, 1>
[D:\WINDOWS\system32\Sensor.dll] <IBM Corporation><1.30.1.0>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2316][D:\Program Files\SkyNet\FireWall\PFW.exe] <crsky[BCG]><2.6.0.123>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2400][D:\Program Files\Rising\Rav\RavTask.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
[D:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[D:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[D:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[D:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2476][D:\Program Files\Rising\Rav\Ravmon.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 30>
[D:\Program Files\Rising\Rav\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 23>
[D:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[D:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[D:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[D:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[D:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[D:\Program Files\Rising\Rav\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2500][D:\Program Files\IBM\Messages By IBM\ibmmessages.exe] <IBM><2.101>
[D:\WINDOWS\system32\AIBMRUNL.dll] <N/A><N/A>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[D:\Program Files\IBM\Messages By IBM\AcpPollingEngine.dll] <><1, 0, 0, 4>
[D:\WINDOWS\Downloaded Program Files\IbmEgath.dll] <IBM Corporation><3, 0, 0, 9>
[PID: 2548][D:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2656][C:\Program Files\Digital Line Detect\DLG.exe] <BVRP Software><1, 0, 0, 1>
[C:\Program Files\Digital Line Detect\BVRPDIAG.dll] <BVRP Software><1.0>
[D:\WINDOWS\system32\MdmXSdk.dll] <Conexant><1.0.2.006>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 2968][E:\ChatAndMail\Tencent\TT\TTraveler.exe] <腾讯公司><3.0.0.250>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[D:\WINDOWS\DOWNLO~1\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[E:\ChatAndMail\Tencent\TT\PersonalDesktop.dll] <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 4>
[D:\WINDOWS\system32\Macromed\Flash\Flash9.ocx] <Adobe Systems, Inc.><9,0,16,0>
[PID: 3052][D:\WINDOWS\system32\wuauclt.exe] <Microsoft Corporation><5.4.3790.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3284][D:\WINDOWS\system32\wuauclt.exe] <Microsoft Corporation><5.4.3790.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
[PID: 3872][D:\DOCUME~1\jasson\LOCALS~1\Temp\sreng2.zip 的临时目录 2\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[D:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 3>
[D:\Program Files\Internet Explorer\Connection Wizard\xiaran.vxd] <N/A><N/A>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["D:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================