Logfile of Kaka v2. 0. 0. 9 Scan Module v2. 0. 0. 1
Scan saved at 18:59:37, on 2006-11-07
Platform: Microsoft Windows XP Professional Service Pack 2 (Build 2600)
MSIE: Internet Explorer v6.00 SP2; (6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))
Running processes:
[SMSS.EXE]
CommandLine =
[CSRSS.EXE]
CommandLine = C:\WINDOWS\system32\csrss.exe
ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
[WINLOGON.EXE]
CommandLine = winlogon.exe
[SERVICES.EXE]
CommandLine = C:\WINDOWS\system32\services.exe
[LSASS.EXE]
CommandLine = C:\WINDOWS\system32\lsass.exe
[SVCHOST.EXE]
CommandLine = C:\WINDOWS\system32\svchost -k DcomLaunch
[SVCHOST.EXE]
CommandLine = C:\WINDOWS\system32\svchost -k rpcss
[CCenter.exe]
CommandLine = "C:\Program Files\Rising\Rav\CCenter.exe"
[SVCHOST.EXE]
CommandLine = C:\WINDOWS\System32\svchost.exe -k netsvcs
[SVCHOST.EXE]
CommandLine = C:\WINDOWS\system32\svchost.exe -k NetworkService
[SVCHOST.EXE]
CommandLine = C:\WINDOWS\system32\svchost.exe -k LocalService
[RavMonD.exe]
CommandLine = "C:\Program Files\Rising\Rav\Ravmond.exe"
[RFWSRV.EXE]
CommandLine = "c:\program files\rising\rfw\rfwsrv.exe"
[SPOOLSV.EXE]
CommandLine = C:\WINDOWS\system32\spoolsv.exe
[RUNDLL32.EXE]
CommandLine = C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\MMSASS~1\MMSSVER.DLL,Service
[RUNDLL32.EXE]
CommandLine = C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\stdupnet.dll,Service -s
[RavStub.exe]
CommandLine = "C:\Program Files\Rising\Rav\RavStub.exe" /RAVMOND
[SVCHOST.EXE]
CommandLine = C:\WINDOWS\system32\svchost.exe -k imgsvc
[RFWMAIN.EXE]
CommandLine = -StartUp
[ALG.EXE]
CommandLine = C:\WINDOWS\System32\alg.exe
[LHOTKEY.EXE]
CommandLine = "C:\WINDOWS\LHotkey.exe"
[LCC.EXE]
CommandLine = "C:\Program Files\Lenovo\联想键盘驱动\LCC.exe"
[VTTimer.exe]
CommandLine = "C:\WINDOWS\system32\VTTimer.exe"
[RavTask.exe]
CommandLine = "C:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE" -SYSTEM
[RavMon.exe]
CommandLine = "C:\Program Files\Rising\Rav\Ravmon.exe" -SYSTEM
[CTFMON.EXE]
CommandLine = "C:\WINDOWS\system32\ctfmon.exe"
[voipstunt.exe]
CommandLine = "C:\Documents and Settings\Administrator\桌面\voipstunt.exe" -nosplash -minimized
[RsAgent.exe]
CommandLine = "C:\Program Files\Rising\Rav\RsAgent.exe"
[AGENTSVR.EXE]
CommandLine = C:\WINDOWS\msagent\AgentSvr.exe -Embedding
[VnetClient.exe]
CommandLine = "C:\Program Files\ChinaNet\VnetClient.exe"
[WangWang.exe]
CommandLine = "E:\Program Files\淘宝旺旺\WangWang.exe"
[QQ.exe]
CommandLine = E:\qq\QQ.exe
[TIMPlatform.exe]
CommandLine = E:\qq\TIMPlatform.exe -Embedding
[iexplore.exe]
CommandLine = "C:\Program Files\Internet Explorer\iexplore.exe" http://csc.rising.com.cn/?tag=STC&exp=0
[conime.exe]
CommandLine = C:\WINDOWS\system32\conime.exe
[EXPLORER.EXE]
CommandLine = C:\WINDOWS\explorer.exe
[Vikingkiller.scr]
CommandLine = "C:\Documents and Settings\Administrator\桌面\Vikingkiller.scr" /S
[taskmgr.exe]
CommandLine = taskmgr.exe