正在运行的进程
[PID: 464][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[PID: 528][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 552][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[C:\WINDOWS\System32\winlib .dll] <N/A><N/A>
[PID: 596][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 608][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[PID: 784][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 864][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[C:\olite\bin\oci.dll] <Oracle Corporation><8.0.5.0.1>
[C:\olite\bin\ORA805.dll] <Oracle Corporation><8.0.5.0.0>
[C:\olite\bin\CORE40.dll] <Oracle Corporation><4.0.5.0.0>
[C:\olite\bin\NLSRTL33.dll] <Oracle Corporation><3.3.2.0.0>
[C:\olite\bin\NL80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\OTRACE80.dll] <Oracle Corporation><8.0.4.0.0>
[C:\olite\bin\NS80.dll] <Oracle Corporation><8.0.4.0.2 Production>
[C:\olite\bin\nasns80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\nz80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NNFG80.dll] <Oracle Corporation><8.0.4.0.1 Production>
[C:\olite\bin\NNCI80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NNG80.dll] <Oracle Corporation><8.0.4.0.2 Production>
[C:\olite\bin\NMP80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NPL80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NR80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NT80.dll] <Oracle Corporation><8.0.4.0.1 Production>
[C:\olite\bin\NCR80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NMS80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NNFD80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NNFN80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\NI80.dll] <Oracle Corporation><8.0.4.0.0 Production>
[C:\olite\bin\PLS805.dll] <Oracle Corporation><8.0.5.0.0>
[C:\olite\bin\NDWSI80.DLL] <N/A><N/A>
[C:\olite\bin\SQLLib80.dll] <Oracle Corporation><8.0.5.0.0>
[C:\olite\bin\xa80.dll] <Oracle Corporation><8.0.5.0.0>
[PID: 924][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1024][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1160][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.0 (XPClient.010817-1148)>
[C:\WINDOWS\system32\EBPMON2.DLL] <SEIKO EPSON CORPORATION><2, 20, 0, 0>
[PID: 1252][d:\Program Files\Rising\Rav\RavStub.exe] <Beijing Rising Technology Co., Ltd.><19, 0, 0, 4>
[d:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[d:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><19, 0, 0, 5>
[PID: 1856][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1876][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1980][C:\WINDOWS\System32\r_server.exe] <><2, 2, 0, 0>
[PID: 176][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2800.1106 (xpsp1.020828-1920)>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><19, 0, 0, 9>
[C:\Program Files\Common Files\Microsoft Shared\MSINFO\SysInfo.vxd] <N/A><N/A>
[C:\WINDOWS\System32\ZYBE.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[C:\WINDOWS\system32\pjoai.dll] <N/A><N/A>
[C:\WINDOWS\System32\winform.dll] <N/A><N/A>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[C:\DOCUME~1\user\LOCALS~1\Temp\Tmp5.tmp.rom] <N/A><N/A>
[C:\WINDOWS\System32\igfxpph.dll] <Intel Corporation><3,0,0,2082>
[C:\WINDOWS\System32\hccutils.DLL] <Intel Corporation><3,0,0,2082>
[C:\WINDOWS\System32\igfxres.dll] <Intel Corporation><3,0,0,2082>
[C:\WINDOWS\System32\igfxsrvc.dll] <Intel Corporation><3,0,0,2082>
[C:\WINDOWS\System32\igfxdev.dll] <Intel Corporation><3,0,0,2082>
[C:\WINDOWS\System32\igfxress.dll] <Intel Corporation><3,0,0,2082>
[d:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[d:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><19, 0, 0, 5>
[PID: 340][C:\WINDOWS\SYSTEM32\RUNDLL2000.EXE] <Microsoft Corporation><5.00.2134.1>
[PID: 480][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 516][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1340][C:\WINDOWS\System32\wbem\lsass.exe] <Microsoft><1.0.0.0>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[PID: 1364][C:\WINDOWS\System32\AE9C7762.exe] <N/A><N/A>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[PID: 1400][C:\WINDOWS\System32\21980CEE.exe] <N/A><N/A>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[PID: 1396][C:\program files\internet explorer\iexplore.exe] <Microsoft Corporation><6.00.2800.1106 (xpsp1.020828-1920)>
[C:\WINDOWS\System32\winsys32_070328.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[C:\Program Files\superutilbar\superutilbar.dll] <www.shiyongsousuo.com><2, 1, 8, 24>
[C:\Documents and Settings\All Users\Application Data\Microsoft\PCTools\pctools.dll] <金泰丰(广州)科技有限公司><2, 3, 0, 0>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[PID: 2400][C:\WINDOWS\System32\rundll32.exe] <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[C:\WINDOWS\System32\ZYBE.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[PID: 2568][C:\WINDOWS\System32\ctfmon.exe] <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[PID: 2788][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] <RealNetworks, Inc.><0.1.0.1622>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[PID: 3004][C:\Program Files\Common Files\System\Updaterun.exe] <N/A><N/A>
[PID: 3116][C:\WINDOWS\System32\wuauclt.exe] <Microsoft Corporation><5.8.0.2469 built by: lab01_n(wmbla)>
[PID: 2636][C:\Documents and Settings\user\桌面\sreng2\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\DOCUME~1\user\LOCALS~1\Temp\~Tm4.tmp.rom] <N/A><N/A>
[C:\Program Files\Internet Explorer\InfoMs.tdm] <N/A><N/A>
[C:\DOCUME~1\user\LOCALS~1\Temp\Tmp5.tmp.rom] <N/A><N/A>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================