瑞星卡卡电脑诊断日志 v1.30 (2007-12-22 21:30:19) 北京瑞星科技股份有限公司
注释: [A]表示该文件存在自启动关联;
[M]表示该文件在内存中;
+ 注册表自运行项目
+ 系统服务
+ HKLM\System\CurrentControlSet\Services
ose
[A ] 1. c:\program files\common files\microsoft shared\source engine\ose.exe
RfwProxySrv
[A ] 2. c:\program files\rising\rfw\rfwproxy.exe
RfwService
[A ] 3. c:\program files\rising\rfw\rfwsrv.exe
RsCCenter
[AM] 4. c:\program files\rising\rav\ccenter.exe
RsRavMon
[AM] 5. c:\program files\rising\rav\ravmond.exe
UMWdf
[AM] 6. c:\windows\system32\wdfmgr.exe
UPHClean
[AM] 7. c:\program files\uphclean\uphclean.exe
WudfSvc
[A ] 8. c:\windows\system32\wudfsvc.dll
+ 内核驱动
+ HKLM\System\CurrentControlSet\Services
A0380VID
[A ] 9. c:\windows\system32\drivers\a0380vid.sys
BaseTDI
[A ] 10. c:\windows\system32\drivers\basetdi.sys
dtscsi
[A ] 11. c:\windows\system32\drivers\dtscsi.sys
FETNDISB
[A ] 12. c:\windows\system32\drivers\fetnd5b.sys
HdAudAddService
[A ] 13. c:\windows\system32\drivers\hdaudio.sys
HDAudBus
[A ] 14. c:\windows\system32\drivers\hdaudbus.sys
HookCont
[A ] 15. c:\windows\system32\drivers\hookcont.sys
HookNtos
[A ] 16. c:\windows\system32\drivers\hookntos.sys
HookReg
[A ] 17. c:\windows\system32\drivers\hookreg.sys
HookSys
[A ] 18. c:\windows\system32\drivers\hooksys.sys
HookUrl
[A ] 19. c:\program files\rising\rfw\hookurl.sys
HWiNFO32
[A ] 20. c:\program files\hwinfo32\hwinfo32.sys
ialm
[A ] 21. c:\windows\system32\drivers\ialmnt5.sys
IntcAzAudAddService
[A ] 22. c:\windows\system32\drivers\rtkhdaud.sys
IPHOOK
[A ] 23. c:\program files\rising\rfw\iphook.sys
kmsinput
[A ] 24. c:\windows\system32\drivers\kmsinput.sys
MegaIDE
[A ] 25. c:\windows\system32\drivers\megaide.sys
New0
[A ] 26. c:\windows\system32\new.sys
NPF
[A ] 27. c:\windows\system32\drivers\npf.sys
npkcrypt
[A ] 28. d:\program files\tencent\qq\npkcrypt.sys
NTSIM
[A ] 29. c:\windows\system32\ntsim.sys
RfwBase
[A ] 30. c:\windows\system32\drivers\rfwbase.sys
RsAntiSpyware
[A ] 31. c:\windows\system32\drivers\rsboot.sys
RsFwDrv
[A ] 32. c:\program files\rising\rfw\rsfwdrv.sys
RsNTGDI
[A ] 33. c:\windows\system32\drivers\rsntgdi.sys
RTL8023xp
[A ] 34. c:\windows\system32\drivers\rtlnicxp.sys
Secdrv
[A ] 35. c:\windows\system32\drivers\secdrv.sys
sfdrv01
[A ] 36. c:\windows\system32\drivers\sfdrv01.sys
sfhlp02
[A ] 37. c:\windows\system32\drivers\sfhlp02.sys
sfsync02
[A ] 38. c:\windows\system32\drivers\sfsync02.sys
SMBios
[A ] 39. c:\windows\system32\drivers\smbios.sys
sptd
[A ] 40. c:\windows\system32\drivers\sptd.sys
TDIHOOK
[A ] 41. c:\program files\rising\rfw\tdihook.sys
w810bus
[A ] 42. c:\windows\system32\drivers\w810bus.sys
w810mdfl
[A ] 43. c:\windows\system32\drivers\w810mdfl.sys
w810mdm
[A ] 44. c:\windows\system32\drivers\w810mdm.sys
w810mgmt
[A ] 45. c:\windows\system32\drivers\w810mgmt.sys
w810obex
[A ] 46. c:\windows\system32\drivers\w810obex.sys
WudfPf
[A ] 47. c:\windows\system32\drivers\wudfpf.sys
WudfRd
[A ] 48. c:\windows\system32\drivers\wudfrd.sys
+ 文件系统驱动
+ HKLM\System\CurrentControlSet\Services
ATE_PROCMON
[A ] 49. d:\program files\anti trojan elite\atepmon.sys
+ 系统登陆自运行
+ HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
igfxcui
[A ] 50. c:\windows\system32\igfxsrvc.dll
+ IE浏览器加载模块
+ HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks
{CFBFAE00-17A6-11D0-99CB-00C04FD64497}
[AM] 51. c:\windows\system32\ieframe.dll
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper
Objects
{0005A87D-D626-4B3A-84F9-1D9571695F55}
[AM] 52. c:\windows\system32\xunleibho_v8.dll
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
[A ] 53. c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll
{4E83D567-4697-4F7B-B1F0-A513B01DB89A}
[A ] 54. c:\program files\chinanet\vnettransfer.dll
{A9930D97-9CF0-42A0-A10D-4F28836579D5}
[A ] 55. d:\program files\kugoo3\kugoo3downxcontrol.ocx
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions
Exec
[A ] 56. c:\windows\network diagnostic\xpnetdiag.exe
+ 资源管理器加载模块
+ HKLM\SOFTWARE\Classes\PROTOCOLS\Filter
text/xml
[A ] 57. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll
+ HKLM\SOFTWARE\Classes\PROTOCOLS\Handler
KuGoo
[A ] 58. c:\windows\system32\kugoo3downxcontrol.ocx
KuGoo3
[A ] 58. c:\windows\system32\kugoo3downxcontrol.ocx
mso-offdap11
[A ] 59. c:\program files\common files\microsoft shared\web components\11\owc11.dll
+ HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}
[A ] 60. c:\windows\system32\ieudinit.exe
+ HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers
{F9DB5320-233E-11D1-9F84-707F02C10627}
[AM] 61. c:\program files\common files\adobe\acrobat\activex\pdfshell.dll
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Web Folders
[A ] 62. c:\program files\common files\microsoft shared\web folders\msonsext.dll
WinRAR shell extension
[A ] 63. c:\program files\winrar\rarext.dll
Shell Extensions for RealOne Player
[A ] 64. c:\program files\real\realone player\rpshell.dll
PicaView
[A ] 65. d:\program files\acdsee\picaview.dll
Microsoft Office Outlook Desktop Icon Handler
[A ] 66. d:\microsoft office\office11\mlshext.dll
Microsoft Office Outlook Custom Icon Handler
[A ] 67. d:\microsoft office\office11\olkfstub.dll
Microsoft Office HTML Icon Handler
[A ] 68. d:\microsoft office\office11\msohev.dll
RISING
[AM] 69. c:\windows\system32\ravext.dll
Portable Media Devices
[A ] 70. c:\windows\system32\audiodev.dll
Portable Media Devices Menu
[A ] 70. c:\windows\system32\audiodev.dll
IE Microsoft BrowserBand
[AM] 51. c:\windows\system32\ieframe.dll
IE Fade Task
[AM] 51. c:\windows\system32\ieframe.dll
IE Menu Desk Bar
[AM] 51. c:\windows\system32\ieframe.dll
IE AutoComplete
[AM] 51. c:\windows\system32\ieframe.dll
IE Search Band
[AM] 51. c:\windows\system32\ieframe.dll
Microsoft Url History Service
[AM] 51. c:\windows\system32\ieframe.dll
The Internet
[AM] 51. c:\windows\system32\ieframe.dll
IE Navigation Bar
[AM] 51. c:\windows\system32\ieframe.dll
IE Menu Site
[AM] 51. c:\windows\system32\ieframe.dll
IE Menu Band
[AM] 51. c:\windows\system32\ieframe.dll
IE Microsoft History AutoComplete List
[AM] 51. c:\windows\system32\ieframe.dll
IE Tracking Shell Menu
[AM] 51. c:\windows\system32\ieframe.dll
IE IShellFolderBand
[AM] 51. c:\windows\system32\ieframe.dll
IE BandProxy
[AM] 51. c:\windows\system32\ieframe.dll
Temporary Internet Files
[AM] 51. c:\windows\system32\ieframe.dll
Temporary Internet Files
[AM] 51. c:\windows\system32\ieframe.dll
Internet Name Space
[AM] 51. c:\windows\system32\ieframe.dll
IE MRU AutoComplete List
[AM] 51. c:\windows\system32\ieframe.dll
IE RSS Feeder Folder
[AM] 51. c:\windows\system32\ieframe.dll
IE Microsoft Shell Folder AutoComplete List
[AM] 51. c:\windows\system32\ieframe.dll
IE Microsoft Multiple AutoComplete List Container
[AM] 51. c:\windows\system32\ieframe.dll
Microsoft Browser Architecture
[AM] 51. c:\windows\system32\ieframe.dll
IE Shell Rebar BandSite
[AM] 51. c:\windows\system32\ieframe.dll
Microsoft Url Search Hook
[AM] 51. c:\windows\system32\ieframe.dll
IE Shell Band Site Menu
[AM] 51. c:\windows\system32\ieframe.dll