2006-06-13,00:14:01
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows 98 SE -
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<ScanRegistry><C:\WINDOWS\scanregw.exe /autorun> [Microsoft Corporation]
<internat.exe><internat.exe> [Microsoft Corporation]
<SystemTray><SysTray.Exe> [Microsoft Corporation]
<SoundMan><SOUNDMAN.EXE> [Realtek Semiconductor Corp.]
<LoadPowerProfile><Rundll32.exe powrprof.dll,LoadCurrentPwrScheme> [Microsoft Corporation]
<thunder_mini><E:\下载\MAXTHON\THUNDERMINI\ThunderMini.exe> [深圳市三代科技开发有限公司]
<LoadQM><loadqm.exe> [Microsoft Corporation]
<SKYNET Personal FireWall><E:\下载\FIREWALL\pfw.exe> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
<KB891711><C:\WINDOWS\SYSTEM\KB891711\KB891711.EXE> [Microsoft Corporation]
<LoadPowerProfile><Rundll32.exe powrprof.dll,LoadCurrentPwrScheme> [Microsoft Corporation]
<SchedulingAgent><mstask.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> []
==================================
启动文件夹
服务
==================================
浏览器加载项
[NaviHelperObj Class]
{3E422F49-1566-40D3-B43D-077EF739AC32} <C:\WINDOWS\SYSTEM\NAVIHELPER.DLL, N/A>
[]
{A9930D97-9CF0-42A0-A10D-4F28836579D5} <D:\PROGRA~1\KUGOO2\KUGOO3~1.OCX, N/A>
[kele8]
{84920E5F-3788-49cd-A274-E365578DF174} <http://www.kele8.com/, N/A>
[Shockwave Flash
Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\SYSTEM\MACROMED\FLASH\FLASH8B.OCX, Macromedia, Inc.>
[Update Class]
{9F1C11AA-197B-4942-BA54-47A8489BB47F} <C:\WINDOWS\SYSTEM\IUCTL.DLL, Microsoft Corporation>
[Ravonline]
{DA984A6D-508E-11D6-AA49-0050FF3C628D} <C:\WINDOWS\DOWNLOADED PROGRAM FILES\RSONLINE.DLL, Beijing Rising Tech. Co., Ltd.>
[添加到QQ自定义面板]
<E:\下载\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
<E:\下载\QQ\AddEmotion.htm, N/A>
[上传到QQ网络硬盘]
<E:\下载\QQ\AddToNetDisk.htm, N/A>
[用QQ彩信发送该图片]
<E:\下载\QQ\SendMMS.htm, N/A>
[&使用迷你迅雷下载]
<E:\下载\MAXTHON\THUNDERMINI\geturl.htm, N/A>
[使用KuGoo3下载(&K)]
<D:\PROGRAM FILES\KUGOO2\KuGoo3DownX.htm, N/A>
==================================
正在运行的进程
[PID: 4294938125][C:\WINDOWS\SYSTEM\MPREXE.EXE] <Microsoft Corporation><4.10.1998>
[PID: 4294842805][C:\WINDOWS\SYSTEM\MSTASK.EXE] <Microsoft Corporation><4.71.1972.1>
[C:\PROGRAM FILES\WINRAR\RAREXT.DLL] <N/A><N/A>
[PID: 4294957993][C:\WINDOWS\EXPLORER.EXE] <Microsoft Corporation><4.72.3110.1>
[C:\WINDOWS\SYSTEM\TCPIPDOG0.DLL] <N/A><N/A>
[PID: 4294958589][C:\WINDOWS\SYSTEM\RPCSS.EXE] <Microsoft Corporation><4.71.2900>
[PID: 4294774165][C:\WINDOWS\SYSTEM\INTERNAT.EXE] <Microsoft Corporation><4.10.2222>
[PID: 4294771505][C:\WINDOWS\SYSTEM\SYSTRAY.EXE] <Microsoft Corporation><4.10.2222>
[PID: 4294792265][C:\WINDOWS\SOUNDMAN.EXE] <Realtek Semiconductor Corp.><5.0.16>
[C:\WINDOWS\SYSTEM\TCPIPDOG0.DLL] <N/A><N/A>
[PID: 4294797485][E:\下载\MAXTHON\THUNDERMINI\THUNDERMINI.EXE] <深圳市三代科技开发有限公司><1, 1, 0, 4>
[E:\下载\MAXTHON\THUNDERMINI\BOOST_THREAD-VC6-MT-1_31.DLL] <N/A><N/A>
[C:\WINDOWS\SYSTEM\DHCPCSVC.DLL] <N/A><N/A>
[C:\WINDOWS\SYSTEM\DHCPCSVC.DLL] <N/A><N/A>
[PID: 4294804989][C:\WINDOWS\LOADQM.EXE] <Microsoft Corporation><5.4.1103.3>
[C:\WINDOWS\SYSTEM\TCPIPDOG0.DLL] <N/A><N/A>
[PID: 4294829593][D:\下载保留\登陆\ISHARE_USER.EXE] <N/A><N/A>
[C:\WINDOWS\SYSTEM\DHCPCSVC.DLL] <N/A><N/A>
[C:\WINDOWS\SYSTEM\NETBIOS.DLL] <N/A><N/A>
[C:\WINDOWS\SYSTEM\MACROMED\FLASH\FLASH8B.OCX] <Macromedia, Inc.><8,0,24,0>
[E:\下载\MAXTHON\SERVICES\REALTIME\REAL_TIME.DLL] <$><1, 0, 0, 1>
[C:\WINDOWS\SYSTEM\TCPIPDOG0.DLL] <N/A><N/A>
[C:\WINDOWS\SYSTEM\NETBIOS.DLL] <N/A><N/A>
[PID: 4294718121][E:\下载\MAXTHON\MAX.EXE] <Maxthon International Ltd.><1, 5, 3, 18>
[E:\下载\MAXTHON\MAXZLIB.DLL] < ><1, 0, 0, 2>
[C:\WINDOWS\SYSTEM\DHCPCSVC.DLL] <N/A><N/A>
[C:\WINDOWS\SYSTEM\NVDD32.DLL] <NVidia Corporation><4.12.01.0776>
[C:\WINDOWS\SYSTEM\NVARCH32.DLL] <NVidia Corporation><4.12.01.0776>
[PID: 4294677753][C:\WINDOWS\SYSTEM\DDHELP.EXE] <Microsoft Corporation><4.08.01.0881>
[C:\WINDOWS\SYSTEM\TCPIPDOG0.DLL] <N/A><N/A>
[PID: 4294597973][D:\下载保留\新建文件夹\RAVSDBOT.EXE] <Beijing Rising Tech. Co., Ltd.><1, 7, 0, 0>
[PID: 4294621877][C:\PROGRAM FILES\WINRAR\WINRAR.EXE] <N/A><N/A>
[C:\WINDOWS\SYSTEM\TCPIPDOG0.DLL] <N/A><N/A>
[PID: 4294575989][D:\下载保留\新建文件夹\SRENG2\SRENG.EXE] <Smallfrogs Studio><2.0.21.505>
==================================
文件关联
.TXT OK. [C:\WINDOWS\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [C:\WINDOWS\winhlp32.exe %1]
.INI OK. [C:\WINDOWS\NOTEPAD.EXE %1]
.INF OK. [C:\WINDOWS\NOTEPAD.EXE %1]
.VBS OK. [C:\WINDOWS\WScript.exe "%1" %*]
.JS OK. [C:\WINDOWS\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]