[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[PID: 584][C:\Program Files\Rising\Rav\RavTask.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[PID: 844][C:\WINDOWS\system32\conime.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[PID: 1160][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\WINDOWS\system32\0848\baisoa\dllhosta.dll] <N/A><N/A>
[PID: 1200][C:\WINDOWS\command\rundll32.exe] <N/A><N/A>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[PID: 1244][C:\Program Files\Internet Explorer\explorer.exe] <N/A><N/A>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\y.dll] <N/A><N/A>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[C:\WINDOWS\system32\msicn\msibm.dll] <广州傲讯信息科技有限公司><2, 0, 0, 1>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\WINDOWS\system32\msplus1.dll] <><1, 0, 0, 1>
[PID: 1316][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\y.dll] <N/A><N/A>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\WINDOWS\system32\msplus1.dll] <><1, 0, 0, 1>
[PID: 1324][C:\WINDOWS\realupdate.exe] <><1, 0, 0, 15>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\y.dll] <N/A><N/A>
[PID: 1240][C:\WINDOWS\winampa.exe] <><1, 0, 0, 15>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\y.dll] <N/A><N/A>
[PID: 1292][C:\Program Files\CNNIC\Cdn\cdnup.exe] <><2, 4, 0, 0>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\y.dll] <N/A><N/A>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] <CNNIC><2, 0, 0, 0>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[PID: 1772][C:\WINDOWS\system32\taskmgr.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\y.dll] <N/A><N/A>
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] <CNNIC><2, 0, 0, 0>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[PID: 720][C:\WINDOWS\system32\wuauclt.exe] <Microsoft Corporation><5.4.3790.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[PID: 416][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\Program Files\DeskAdTop\Run.dll] <><1, 0, 0, 1>
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] <CNNIC><2, 0, 0, 0>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[PID: 2572][C:\Documents and Settings\Administrator\桌面\sreng2\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\y.dll] <N/A><N/A>
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] <CNNIC><2, 0, 0, 0>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[PID: 2604][C:\WINDOWS\system32\0848\baisoa\novel.exe] <><1, 0, 0, 1>
[C:\WINDOWS\system32\KB896475.log] <N/A><N/A>
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\y.dll] <N/A><N/A>
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] <CNNIC><2, 0, 0, 0>
[C:\WINDOWS\system32\user.dll] <N/A><N/A>
[C:\WINDOWS\system32\SYNCOR11.DLL] <SoundMAX><1.2.3>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者