==================================
启动文件夹
[meibuddns43]
<C:\Documents and Settings\All Users\「开始」菜单\程序
\启动\meibuddns43.lnk -->
C:\PROGRA~1\MEIBUD~1\meibu\MEIBUD~1.EXE [N/A]><N>
==================================
服务
[Logical Disk Manager Administrative Service /
dmadmin][Stopped/Manual Start]
<C:\WINNT\System32\dmadmin.exe /com><VERITAS Software
Corp.>
[PeanuthullCore / PeanuthullCore][Stopped/Auto Start]
<C:\Program Files\PeanutHull3\PhCore.exe -service><广
东网域>
[Portable Media Serial Number Service /
WmdmPmSN][Stopped/Manual Start]
<C:\WINNT\System32\svchost.exe -k
netsvcs-->C:\WINNT\system32\mspmsnsv.dll><Microsoft
Corporation>
[Rising Process Communication Center /
RsCCenter][Running/Auto Start]
<"C:\Program Files\Rising\Rav\CCenter.exe"><Beijing
Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon][Running/Auto Start]
<"C:\Program Files\Rising\Rav\Ravmond.exe"><Beijing
Rising Technology Co., Ltd.>
==================================
驱动程序
[Service for Avance AC97 Audio (WDM) /
ALCXWDM][Running/Manual Start]
<system32\drivers\ALCXWDM.SYS><Avance Logic, Inc.>
[dmboot / dmboot][Stopped/Disabled]
<System32\drivers\dmboot.sys><VERITAS Software Corp.>
[Logical Disk Manager Driver / dmio][Running/Boot Start]
<\SystemRoot\System32\drivers\dmio.sys><VERITAS
Software Corp.>
[dmload / dmload][Running/Boot Start]
<\SystemRoot\System32\drivers\dmload.sys><VERITAS
Software Corp.>
[Intel PRO Adapter Driver / E100B][Running/Manual Start]
<system32\DRIVERS\e100bnt5.sys><Intel Corporation>
[ialm / ialm][Running/Manual Start]
<system32\DRIVERS\ialmnt5.sys><Intel Corporation>
[IdeBusDr / IdeBusDr][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\IdeBusDr.sys><Intel
Corporation>
[Intel(R) Ultra ATA Controller / IdeChnDr][Running/Boot
Start]
<\SystemRoot\system32\DRIVERS\IdeChnDr.sys><Intel
Corporation>
[Direct Parallel Link Driver / Ptilink][Running/Manual
Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies,
Inc.>
[World Standard Teletext Codec /
WSTCODEC][Stopped/Manual Start]
<system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
[RSPPSYS / RSPPSYS][Running/Auto Start]
<\??\C:\Program Files\Rising\Rav\RSPPSYS.sys><Rising>
[ExpScaner / ExpScaner][Running/Auto Start]
<\??\C:\Program Files\Rising\Rav\ExpScan.sys><>
[HookCont / HookCont][Running/Auto Start]
<\??\C:\Program Files\Rising\Rav\HOOKCONT.sys><Rising>
[HookSys / HookSys][Running/Auto Start]
<\??\C:\Program Files\Rising\Rav\HookSys.sys><Rising>
[HookReg / HookReg][Running/Auto Start]
<\??\C:\Program Files\Rising\Rav\HookReg.sys><>
[MEMSCAN / MEMSCAN][Running/Auto Start]
<\??\C:\Program Files\Rising\Rav\MEMSCAN.sys><瑞星软件
有限公司>
[Basetdi / Basetdi][Running/Auto Start]
<\??\C:\WINNT\system32\drivers\basetdi.sys><Beijing
Rising Technology Co., Ltd.>
[RsNTGDI / RsNTGDI][Stopped/Boot Start]
<\SystemRoot\system32\Drivers\RsNTGdi.sys><Beijing
Rising Technology Co., Ltd.>
[squell / squell][Running/]
<2 - 系统找不到指定的文件。
><N/A>
[Netgroup Packet Filter / NPF][Stopped/Manual Start]
<system32\DRIVERS\npf.sys><CACE Technologies>
==================================
浏览器加载项
[AlxTB BHO Class]
{F1FABE79-25FC-46de-8C5A-2C6DB9D64333}
<C:\WINNT\system32\AlxTB1.dll, Alexa Internet>
[网址大全]
{C18CB140-0BBB-11D4-8FE8-0088CC102438}
<http://www.mpsoft.net/wz.htm, N/A>
[@shdoclc.dll,-866]
{c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[@msdxmLC.dll,-1@2052,电台(&R)]
{8E718888-423F-11D2-876E-00A0C9082467}
<C:\WINNT\system32\msdxm.ocx, Microsoft Corporation>
[Alexa]
{3CEFF6CD-6F08-4e4d-BCCD-FF7415288C3B}
<C:\WINNT\system32\SHDOCVW.DLL, Microsoft Corporation>
[Alexa Web Search]
<http://client.alexa.com/holiday/script/actions/search.h
tm, N/A>
[Get Alexa Data]
<http://client.alexa.com/holiday/script/actions/sitedata
.htm, N/A>
[Mail to a Friend...]
<http://client.alexa.com/holiday/script/actions/mailto.h
tm, N/A>
[See Related Links]
<http://client.alexa.com/holiday/script/actions/related.
htm, N/A>
[Write a Review...]
<http://client.alexa.com/holiday/script/actions/review.h
tm, N/A>
==================================
正在运行的进程
[PID: 168][\SystemRoot\System32\smss.exe] [Microsoft
Corporation, 5.00.2195.6601]
[PID: 192][\??\C:\WINNT\system32\csrss.exe] [Microsoft
Corporation, 5.00.2195.6601]
[PID: 948][C:\WINNT\Explorer.EXE] [Microsoft
Corporation, 5.00.3700.6690]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\WINNT\system32\winform.dll] [N/A, ]
[C:\WINNT\system32\cmdbcs.dll] [N/A, ]
[C:\WINNT\system32\msccrt.dll] [N/A, ]
[C:\WINNT\TEMP\upxdnd.dll] [N/A, ]
[C:\WINNT\system32\RavExt.dll] [Beijing Rising
Technology Co., Ltd., 19, 0, 0, 9]
[C:\WINNT\system32\AlxTB1.dll] [Alexa Internet, 7,
0, 1, 57]
[PID: 1048][C:\WINNT\system32\hkcmd.exe] [Intel
Corporation, 3.0.0.3924]
[C:\WINNT\system32\hccutils.DLL] [Intel
Corporation, 3.0.0.3924]
[C:\WINNT\system32\igfxdev.dll] [Intel Corporation,
3.0.0.3924]
[C:\WINNT\system32\igfxsrvc.dll] [Intel
Corporation, 3.0.0.3924]
[C:\WINNT\system32\igfxhk.dll] [Intel Corporation,
3.0.0.3924]
[C:\WINNT\system32\igfxres.dll] [Intel Corporation,
3.0.0.3924]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[PID: 1056][C:\WINNT\soundman.exe] [Avance Logic, Inc.,
5, 0, 0, 0]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[PID: 956][F:\scon\scon.exe] [N/A, ]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[PID: 1096][C:\WINNT\system32\internat.exe] [Microsoft
Corporation, 5.00.2920.0000]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[PID: 1392][C:\Program
Files\Rising\AntiSpyware\runiep.exe] [Beijing Rising
Technology Co., Ltd., 1, 0, 1, 4]
[C:\Program Files\Rising\AntiSpyware\iep_ctrl.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 4]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[PID: 1084][C:\Program Files\Rising\Rav\RavTask.exe]
[Beijing Rising Technology Co., Ltd., 19, 0, 0, 7]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing
Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing
Rising Technology Co., Ltd., 18, 0, 0, 2]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing
Rising Technology Co., Ltd., 18, 0, 0, 13]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising,
18, 0, 0, 1]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[PID: 1372][C:\Program Files\Rising\Rav\RsAgent.exe]
[Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising,
18, 0, 0, 1]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[PID: 1596][C:\WINNT\msagent\AgentSvr.exe] [Microsoft
Corporation, 2.00.0.3422]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[PID: 1380][C:\Documents and Settings\Administrator\桌面
\病毒日志扫描工具sreng2\SREng.EXE] [Smallfrogs Studio,
2.4.12.806]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll]
[Beijing Rising Technology Co., Ltd., 1, 0, 0, 8]
[C:\WINNT\system32\wsttrs.dll] [N/A, ]