[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[D:\yy\Internet\Tencent\qq\PersonalDesktop.dll] <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 2>
[D:\yy\Internet\Tencent\qq\QQUdpGetFileLib.dll] <tencent><0, 2, 2, 3>
[D:\yy\Internet\Tencent\qq\GroupConnection.dll] <Tencent><0, 3, 3, 5>
[D:\yy\Internet\Tencent\qq\QQPhoneHelper.dll] <腾讯科技(深圳)有限公司><1, 1, 1, 30>
[D:\yy\Internet\Tencent\qq\QQZip.dll] <tencent><0, 3, 2, 4>
[D:\yy\Internet\Tencent\qq\ImageOle.dll] <TODO: <Company name>><1.0.0.1>
[D:\yy\Internet\Tencent\qq\QQMagicFace.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\ShareFiles.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\QQFileTransfer.dll] <Tencent><0, 3, 3, 5>
[PID: 3216][D:\yy\Internet\Tencent\qq\TIMPlatform.exe] <tencent><0, 3, 1, 8>
[C:\Program Files\KV2006\KVHookG_1.dll] <Jiangmin Co.Ltd><9.0.0.0813>
[C:\PROGRA~1\TENCENT\AddrPlus\QAHook.dll] <Tencent><2, 1, 1, 81>
[D:\yy\Internet\Tencent\qq\TIMProxy.dll] <tencent><0, 3, 2, 4>
[PID: 3376][C:\Program Files\rising\Rav\RavMon.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 10>
[C:\Program Files\rising\Rav\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 23>
[C:\Program Files\rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[C:\Program Files\rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
[C:\Program Files\rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\rising\Rav\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\Program Files\KV2006\KVHookG_1.dll] <Jiangmin Co.Ltd><9.0.0.0813>
[C:\PROGRA~1\TENCENT\AddrPlus\QAHook.dll] <Tencent><2, 1, 1, 81>
[PID: 3612][D:\yy\Internet\Maxthon\Maxthon.exe] <MY Soft Technology><1, 2, 3, 50>
[D:\yy\Internet\Maxthon\maxzlib.dll] < ><1, 0, 0, 2>
[C:\Program Files\KV2006\KVHookG_1.dll] <Jiangmin Co.Ltd><9.0.0.0813>
[C:\PROGRA~1\TENCENT\AddrPlus\QAHook.dll] <Tencent><2, 1, 1, 81>
[C:\Program Files\KV2006\KVSock_2.dll] <Jiangmin Co. Ltd.><1, 2, 24, 51231>
[D:\yy\Internet\Maxthon\Services\RealTime\real_time.dll] <><1, 0, 0, 1>
[C:\Program Files\Rising\Rav\RavScrCh.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\WINDOWS\system32\msdmo.dll] <N/A><N/A>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\VSFilter.dll] <Gabest><1, 0, 0, 9>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\empgdmx.ax] <Elecard Ltd.><1, 0, 19, 51017>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\OGGSplt.ax] <Gabest><1, 0, 0, 0>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\RMSplt.ax] <Gabest><1, 0, 1, 0>
[d:\yy\systools\Nero7\DSFilter\NeSplitter.ax] <Nero AG><4, 2, 0, 27f>
[C:\WINDOWS\system32\ffdshow.ax] <N/A><1.0.2.1997>
[C:\WINDOWS\system32\macromed\flash\Flash.ocx] <Macromedia, Inc.><7,0,19,0>
[PID: 3972][D:\yy\Internet\Tencent\qq\QQ.exe] <TENCENT><14, 27, 0, 082>
[D:\yy\Internet\Tencent\qq\CoralAssist.DLL] <N/A><4.0.0 Build 20051112>
[D:\yy\Internet\Tencent\qq\CoralQQ.DLL] <Coral Team><4.1.0 Build 20051220>
[D:\yy\Internet\Tencent\qq\IPSearcher.dll] <><1.0.0.3>
[D:\yy\Internet\Tencent\qq\QQBaseClassInDll.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\QQHelperDll.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\BasicCtrlDll.dll] <Tencent><0, 3, 3, 6>
[C:\Program Files\KV2006\KVHookG_1.dll] <Jiangmin Co.Ltd><9.0.0.0813>
[C:\PROGRA~1\TENCENT\AddrPlus\QAHook.dll] <Tencent><2, 1, 1, 81>
[D:\yy\Internet\Tencent\qq\QQAPI.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\TIMProxy.dll] <tencent><0, 3, 2, 4>
[D:\yy\Internet\Tencent\qq\LoginCtrl.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\npkcntc.dll] <INCA Internet Co., Ltd.><2005, 9, 1, 1>
[D:\yy\Internet\Tencent\qq\npkpdb.dll] <INCA Internet Co., Ltd.><2003, 10, 1, 1>
[D:\yy\Internet\Tencent\qq\QQRes.dll] <tencent><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\QQMainFrame.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\CQQApplication.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\NewSkin.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\HostingMgr.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\MailSummary.dll] <><1, 0, 0, 1>
[C:\Program Files\KV2006\KVSock_2.dll] <Jiangmin Co. Ltd.><1, 2, 24, 51231>
[D:\yy\Internet\Tencent\qq\QQSpace.dll] <><1, 0, 0, 1>
[C:\WINDOWS\system32\msdmo.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\UserDefinedHead.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\QQPlugin.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\QQAllInOne.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\CameraDll.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\SCCore.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\QQCustomFace.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\QQPet.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\LongConnection.dll] <tencent><0, 3, 3, 8>
[D:\yy\Internet\Tencent\qq\QQConfigPlugin.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\FlashAvatarDll.dll] <><1, 4, 0, 1>
[D:\yy\Internet\Tencent\qq\QQAvatar.dll] <N/A><N/A>
[C:\WINDOWS\system32\macromed\flash\Flash.ocx] <Macromedia, Inc.><7,0,19,0>
[D:\yy\Internet\Tencent\qq\QQSysMsgMng.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\GroupConnection.dll] <Tencent><0, 3, 3, 5>
[D:\yy\Internet\Tencent\qq\QRingMng.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\PhoneAPI.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\DialerAllinOne.dll] <tencent><1, 4, 0, 0>
[D:\yy\Internet\Tencent\qq\QQSceneMng.dll] <N/A><N/A>
[D:\yy\Internet\Tencent\qq\BQQApplication.dll] <N/A><N/A>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[D:\yy\Internet\Tencent\qq\CommercesMng.dll] <><1, 0, 0, 1>
[D:\yy\Internet\Tencent\qq\PersonalDesktop.dll] <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 2>
[D:\yy\Internet\Tencent\qq\QQAddr.dll] <深圳市腾讯计算机系统有限公司><4, 0, 200, 32>
[D:\yy\Internet\Tencent\qq\QQZip.dll] <tencent><0, 3, 2, 4>
[D:\yy\Internet\Tencent\qq\ImageOle.dll] <TODO: <Company name>><1.0.0.1>
[D:\yy\Internet\Tencent\qq\QQMagicFace.dll] <><1, 0, 0, 1>
[PID: 3920][C:\Program Files\Thunder Network\ThunderMini\ThunderMini.exe] <Thunder Network Technologies Inc.><1, 2, 1, 9>
[C:\Program Files\Thunder Network\ThunderMini\boost_thread-vc6-mt-1_31.dll] <N/A><N/A>
[C:\Program Files\KV2006\KVSock_2.dll] <Jiangmin Co. Ltd.><1, 2, 24, 51231>
[C:\Program Files\KV2006\KVHookG_1.dll] <Jiangmin Co.Ltd><9.0.0.0813>
[C:\PROGRA~1\TENCENT\AddrPlus\QAHook.dll] <Tencent><2, 1, 1, 81>
[PID: 1028][C:\Program Files\Windows Media Player\wmplayer.exe] <Microsoft Corporation><10.00.00.3802>
[C:\Program Files\KV2006\KVHookG_1.dll] <Jiangmin Co.Ltd><9.0.0.0813>
[C:\PROGRA~1\TENCENT\AddrPlus\QAHook.dll] <Tencent><2, 1, 1, 81>
[C:\Program Files\Rising\Rav\RavScrCh.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\Program Files\KV2006\KVSock_2.dll] <Jiangmin Co. Ltd.><1, 2, 24, 51231>
[C:\WINDOWS\system32\msdmo.dll] <N/A><N/A>
[C:\WINDOWS\system32\l3codeca.acm] <Fraunhofer Institut Integrierte Schaltungen IIS><1, 9, 0, 0305>
[d:\yy\systools\Nero7\Lib\AdvrCntr2.dll] <Nero AG><2,0,0, 3021>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\VSFilter.dll] <Gabest><1, 0, 0, 9>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\mlcom.ax] <Moonlight Cordless Ltd><1, 5, 173, 41217>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\empgdmx.ax] <Elecard Ltd.><1, 0, 19, 51017>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\OGGSplt.ax] <Gabest><1, 0, 0, 0>
[d:\yy\mpeg\Ringz Studio\Storm Codec\Codecs\RMSplt.ax] <Gabest><1, 0, 1, 0>
[C:\WINDOWS\system32\ffdshow.ax] <N/A><1.0.2.1997>
[PID: 2824][C:\DOCUME~1\小猪~1.WLJ\LOCALS~1\Temp\Rar$EX00.344\SREng.exe] <Smallfrogs Studio><2.0.12.350>
[C:\Program Files\KV2006\KVHookG_1.dll] <Jiangmin Co.Ltd><9.0.0.0813>
[C:\PROGRA~1\TENCENT\AddrPlus\QAHook.dll] <Tencent><2, 1, 1, 81>
[C:\Program Files\KV2006\KVSock_2.dll] <Jiangmin Co. Ltd.><1, 2, 24, 51231>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
Jiangmin-MSAFD Tcpip [TCP/IP]
C:\Program Files\KV2006\KVSock_2.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin-MSAFD Tcpip [UDP/IP]
C:\Program Files\KV2006\KVSock_2.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin-MSAFD Tcpip [RAW/IP]
C:\Program Files\KV2006\KVSock_2.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin-RSVP UDP Service Provider
C:\Program Files\KV2006\KVSock_2.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin-RSVP TCP Service Provider
C:\Program Files\KV2006\KVSock_2.dll(Jiangmin Co. Ltd., A winsock layer)
Jiangmin_Filter
C:\Program Files\KV2006\KVSock_2.dll(Jiangmin Co. Ltd., A winsock layer)
==================================