HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
+ hmonitor Hardware sensors monitor AB Software c:\program files\hmonitor\hmonitor.exe
+ RavMon File not found: ;
+ RavTask RavTimer Beijing Rising Technology Co., Ltd. c:\program files\rising\rav\ravtask.exe
+ Super Rabbit SafeEdit Super Rabbit Safe File Client Super Rabbit Soft c:\program files\magicset\srfc.exe
C:\Documents and Settings\All Users\「开始」菜单\程序\启动
+ BlueSoleil.lnk Bluetooth Application IVT Corporation c:\program files\ivt corporation\bluesoleil\bluesoleil.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
+ NoAds NoAds South Bay Software c:\program files\noads\noads.exe
HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
+ n/a File not found: C:\WINDOWS\System32\pop3net.exe
+ n/a File not found: C:\WINDOWS\svchost.exe s
+ 能源规则设置 File not found: setupx.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
+ IEXPLORE.DLL File not found: C:\WINDOWS\System32\IEXPLORE.DLL
+ new123.sys File not found: C:\Program Files\Internet Explorer\PLUGINS\new123.sys
+ Rising Execute File Exts hook Rising Shell Ext Module Beijing Rising Technology Co., Ltd. c:\windows\system32\ravext.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
+ iTunes iTunes Mini Player DLL Apple Computer, Inc. f:\program files\itunes\itunesminiplayer.dll
+ RISING Rising Shell Ext Module Beijing Rising Technology Co., Ltd. c:\windows\system32\ravext.dll
+ Shell Extensions for RealOne Player RealPlayer Shell Extensions RealNetworks, Inc. c:\program files\real\realone player\rpshell.dll
+ Web Anti-Virus Script Monitor Internet Explorer plugin Kaspersky Lab f:\program files\kaspersky lab\kaspersky anti-virus 6.0\scieplugin.dll
HKLM\Software\Classes\Folder\Shellex\ColumnHandlers
+ PDF Shell Extension PDF Shell Extension Adobe Systems, Inc. c:\program files\adobe\acrobat 7.0\activex\pdfshell.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper
Objects
+ AcroIEHlprObj Class Adobe Acrobat IE Helper Version 7.0 for ActiveX Adobe Systems Incorporated c:\program files\adobe\acrobat 7.0\activex\acroiehelper.dll
HKLM\Software\Microsoft\Internet Explorer\Toolbar
+ FlashGet Bar FlashGet IE Bar Amaze Soft c:\program files\flashget\fgiebar.dll
HKLM\System\CurrentControlSet\Services
+ BlueSoleil Hid Service c:\program files\ivt corporation\bluesoleil\btntservice.exe
+ NVSvc NVIDIA Driver Helper Service, Version 40.72 NVIDIA Corporation c:\windows\system32\nvsvc32.exe
+ PDSched PerfectDisk Scheduling module Raxco Software, Inc. c:\program files\raxco\perfectdisk\pdsched.exe
+ RsCCenter CCenter Beijing Rising Technology Co., Ltd. c:\program files\rising\rav\ccenter.exe
+ RsRavMon RavMond Beijing Rising Technology Co., Ltd. c:\program files\rising\rav\ravmond.exe
HKLM\System\CurrentControlSet\Services
+ BaseTDI basetdi Beijing Rising Technology Co., Ltd. c:\windows\system32\drivers\basetdi.sys
+ BlueletAudio Bluelet Audio Driver IVT Corporation c:\windows\system32\drivers\blueletaudio.sys
+ BT Bluetooth PAN Network Adapter Driver IVT Corporation c:\windows\system32\drivers\btnetdrv.sys
+ Btcsrusb Bluetooth USB Device Driver IVT Corporation c:\windows\system32\drivers\btcusb.sys
+ BTHidEnum c:\windows\system32\drivers\vbtenum.sys
+ BTHidMgr Bluetooth HID Manager driver IVT Corporation c:\windows\system32\drivers\bthidmgr.sys
+ BTNetFilter c:\windows\system32\drivers\btnetfilter.sys
+ cmpci C-Media Audio WDM Driver C-Media Inc c:\windows\system32\drivers\cmaudio.sys
+ ExpScaner ExpScan.sys c:\program files\rising\rav\expscan.sys
+ GEARAspiWDM CDRom Class Filter Driver GEAR Software Inc. c:\windows\system32\drivers\gearaspiwdm.sys
+ hmonitor c:\windows\system32\drivers\hmonitor.sys
+ HookCont TDI HOOK Driver Rising tech Co. ltd c:\program files\rising\rav\hookcont.sys
+ HookReg c:\program files\rising\rav\hookreg.sys
+ HookSys Hooksys Rising c:\program files\rising\rav\hooksys.sys
+ kl1 Kaspersky Unified Driver Kaspersky Lab c:\windows\system32\drivers\kl1.sys
+ klif spuper-ptor Kaspersky Lab c:\windows\system32\drivers\klif.sys
+ MEMSCAN MemScan Driver 瑞星软件有限公司 c:\program files\rising\rav\memscan.sys
+ New0 c:\windows\system32\new.sys
+ npkcrypt File not found: C:\Program Files\Tencent\qq\npkcrypt.sys
+ nv NVIDIA Compatible Windows 2000 Miniport Driver, Version 40.72 NVIDIA Corporation c:\windows\system32\drivers\nv4_mini.sys
+ OVT511Plus Stream Class Mini Driver OmniVision Technologies, Inc. c:\windows\system32\drivers\omcamvid.sys
+ pnpshark PnP BIOS Extension c:\windows\system32\drivers\pnpshark.sys
+ prodrv06 StarForce Protection Environment Driver Protection Technology c:\windows\system32\drivers\prodrv06.sys
+ prohlp02 StarForce Protection Helper Driver Protection Technology c:\windows\system32\drivers\prohlp02.sys
+ prosync1 StarForce Protection Synchronization Driver Protection Technology c:\windows\system32\drivers\prosync1.sys
+ Ptilink Direct Parallel Link Driver Parallel Technologies, Inc. c:\windows\system32\drivers\ptilink.sys
+ rtl8139 NDIS 5.0 driver Realtek Semiconductor Corporation c:\windows\system32\drivers\rtl8139.sys
+ Secdrv SafeDisc driver Macrovision Europe Ltd c:\windows\system32\drivers\secdrv.sys
+ sfhlp01 StarForce Protection Helper Driver Protection Technology c:\windows\system32\drivers\sfhlp01.sys
+ st3shark SCSI miniport c:\windows\system32\drivers\st3shark.sys
+ TSP spuper-ptor Kaspersky Lab c:\windows\system32\drivers\klif.sys
+ U3sHlpDr c:\windows\system32\drivers\u3shlpdr.sys
+ VComm Bluetooth Serial Port Driver IVT Corporation c:\windows\system32\drivers\vcomm.sys
+ VcommMgr Bluetooth VcommMgr driver IVT Corporation c:\windows\system32\drivers\vcommmgr.sys
+ W9986 I82930 Bulk IO Test Driver Windows (R) 2000 DDK provider c:\windows\system32\drivers\w9986.sys
+ XONEUSB YMDC-3071 MP3 Player Device Driver Yountel Corporation c:\windows\system32\drivers\xoneusb.sys
HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute
+ PDBoot.exe PerfectDisk Boot Time Defragmentation Raxco Software, Inc. c:\windows\system32\pdboot.exe
+ SsiEfr.ex File not found: SsiEfr.ex
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
+ klogon Logon Visualizer Kaspersky Lab c:\windows\system32\klogon.dll