正在运行的进程
[PID: 440][\SystemRoot\System32\smss.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 496][\??\C:\WINDOWS.0\system32\csrss.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 520][\??\C:\WINDOWS.0\system32\winlogon.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 564][C:\WINDOWS.0\system32\services.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 576][C:\WINDOWS.0\system32\lsass.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 732][C:\WINDOWS.0\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 788][C:\WINDOWS.0\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 848][C:\Program Files\Rising\Rav\CCenter.exe] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 3)
[PID: 868][C:\WINDOWS.0\System32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 932][C:\WINDOWS.0\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS.0\system32\upfdll.dll] (N/A)(N/A)
[PID: 1008][C:\WINDOWS.0\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1288][C:\WINDOWS.0\Explorer.EXE] (Microsoft Corporation)(6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS.0\system32\RavExt.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 21)
[C:\WINDOWS.0\system32\msicn\msibm.dll] (广州傲讯信息科技有限公司)(2, 0, 0, 1)
[C:\WINDOWS.0\system32\msicn\plugins\as.dll] (广州傲讯信息科技有限公司)(2, 0, 0, 1)
[C:\WINDOWS.0\system32\msicn\plugins\bm.dll] (广州傲讯信息科技有限公司)(2, 0, 0, 1)
[C:\WINDOWS.0\system32\msicn\plugins\bse.dll] (广州傲讯信息科技有限公司)(2, 0, 0, 1)
[C:\WINDOWS.0\system32\msicn\plugins\lup.dll] (广州傲讯信息科技有限公司)(2, 0, 0, 1)
[C:\Program Files\Rising\Rav\RavScrCh.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 3)
[C:\PROGRA~1\FlashGet\Jccatch.dll] (FlashGet)(1, 1, 5, 0)
[C:\WINDOWS.0\system32\upfdll.dll] (N/A)(N/A)
[C:\Progra~1\DoDoorRSSFinder\ActiveBand
Object.dll] ()(1, 0, 0, 1)
[C:\WINDOWS.0\system32\WinDefendor.dll] (TODO: (公司名))(1.0.0.2)
[C:\WINDOWS.0\twuenk_16.dll] (N/A)(N/A)
[C:\WINDOWS.0\system32\ODBCINST.dll] (N/A)(N/A)
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 4)
[C:\WINDOWS.0\system32\JPWB.IME] (常诚研制)(4.00.950)
[PID: 1428][C:\WINDOWS.0\system32\spoolsv.exe] (Microsoft Corporation)(5.1.2600.2696 (xpsp_sp2_gdr.050610-1519))
[PID: 1476][C:\WINDOWS.0\System32\SCardSvr.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1996][C:\Program Files\Rising\Rav\RavTask.exe] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 22)
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 4)
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 2)
[C:\Program Files\Rising\Rav\CfgDll.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 10)
[C:\Program Files\Rising\Rav\RsCommX.dll] (rising)(18, 0, 0, 1)
[PID: 144][C:\WINDOWS.0\system32\ctfmon.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS.0\system32\msicn\msibm.dll] (广州傲讯信息科技有限公司)(2, 0, 0, 1)
[PID: 1220][C:\WINDOWS.0\System32\alg.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 2520][C:\WINDOWS.0\system32\wuauclt.exe] (Microsoft Corporation)(5.8.0.2469 built by: lab01_n(wmbla))
[PID: 2984][C:\WINDOWS.0\system32\Rundll32.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\PROGRA~1\hbclient\HBHelper.dll] (Shanghai Henbang Technology Co., Ltd)(1, 1, 3, 3)
[PID: 3440][C:\WINDOWS.0\system32\rundll32.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 192][C:\Program Files\Internet Explorer\iexplore.exe] (Microsoft Corporation)(6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS.0\system32\wmpdrm.dll] (Allsum Info. Tech. Ltd.)(2, 0, 0, 1)
[C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper_4620.dll] (Microsoft Corporation)(1, 2, 3, 0)
[C:\PROGRA~1\FlashGet\Jccatch.dll] (FlashGet)(1, 1, 5, 0)
[C:\WINDOWS.0\twuenk_16.dll] (N/A)(N/A)
[C:\WINDOWS.0\system32\upfdll.dll] (N/A)(N/A)
[C:\Program Files\Tencent\QQ\QQIEHelper.dll] (深圳市腾讯计算机系统有限公司)(1, 1, 0, 5)
[C:\WINDOWS.0\IEYHelper.dll] (Eastday Corporation)(1, 0, 0, 9)
[C:\WINDOWS.0\YayaBands.dll] (Eastday Corporation)(1, 0, 0, 5)
[C:\WINDOWS.0\YayaVerAtl.dll] (Eastday Corporation)(1, 0, 0, 35)
[C:\Progra~1\DoDoorRSSFinder\ActiveBand
Object.dll] ()(1, 0, 0, 1)
[C:\WINDOWS.0\estAlive.dll] (Eastday Corporation)(1, 0, 0, 4)
[C:\PROGRA~1\hbclient\HBHelper.dll] (Shanghai Henbang Technology Co., Ltd)(1, 1, 3, 3)
[C:\WINDOWS.0\Downloaded Program Files\barhelp24.0.dll] (HDT, Inc.)(1, 9, 5, 0)
[C:\WINDOWS.0\system32\microapmddt.dll] (MACROMEDlA)(1, 2, 0, 0)
[C:\WINDOWS.0\system32\ODBCINST.dll] (N/A)(N/A)
[C:\Program Files\Rising\Rav\RavScrCh.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 3)
[C:\WINDOWS.0\system32\msicn\msibm.dll] (广州傲讯信息科技有限公司)(2, 0, 0, 1)
[C:\WINDOWS.0\system32\Macromed\Flash\Flash8.ocx] (Macromedia, Inc.)(8,0,22,0)
[C:\WINDOWS.0\system32\JPWB.IME] (常诚研制)(4.00.950)
[C:\WINDOWS.0\system32\Macromed\Common\SwSupport.dll] (Macromedia, Inc.)(10.0.1r4)
[PID: 4012][C:\WINDOWS.0\system32\rundll32.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\Progra~1\IE-BAR\Cast\dmipn.dll] (千橡互联)(2, 2, 1, 0)
[C:\Progra~1\IE-BAR\Cast\dmshell.dll] (千橡互联)(2, 2, 1, 0)
[C:\Progra~1\IE-BAR\Cast\221~1.0\dmplayer.dll] (千橡互联)(2, 2, 1, 0)
[C:\WINDOWS.0\system32\upfdll.dll] (N/A)(N/A)
[PID: 3540][C:\Program Files\Rising\Rav\Ravmond.exe] (Beijing Rising Technology Co., Ltd.)(18, 0, 1, 26)
[C:\Program Files\Rising\Rav\BWList.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 19)
[C:\Program Files\Rising\Rav\RsCommX.dll] (rising)(18, 0, 0, 1)
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 2)
[C:\Program Files\Rising\Rav\CfgDll.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 10)
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 4)
[C:\Program Files\Rising\Rav\RsLog.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 20)
[C:\Program Files\Rising\Rav\HOOKSYS.dll] (Rising)(18, 1, 0, 9)
[C:\Program Files\Rising\Rav\Scanner.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 30)
[C:\Program Files\Rising\Rav\libload.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 10)
[C:\Program Files\Rising\Rav\VirusLib.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 10)
[C:\Program Files\Rising\Rav\regmon.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 6)
[C:\Program Files\Rising\Rav\HookWeb.dll] (rising)(18, 0, 0, 1)
[C:\Program Files\Rising\Rav\MemMon.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 9)
[C:\Program Files\Rising\Rav\expscan.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 4)
[C:\Program Files\Rising\Rav\mPorts.dll] (Beijing Rising Technology Co., Ltd.)(4, 0, 0, 3)
[C:\Program Files\Rising\Rav\MailMon.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 5)
[C:\Program Files\Rising\Rav\SpamEng.dll] (N/A)(18, 0, 0, 6)
[C:\Program Files\Rising\Rav\engine.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 30)
[C:\Program Files\Rising\Rav\PostTrt.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 9)
[C:\Program Files\Rising\Rav\UnExe.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 11)
[C:\Program Files\Rising\Rav\ScanExec.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 11)
[C:\Program Files\Rising\Rav\ScanEx.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 11)
[C:\Program Files\Rising\Rav\NvFile.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 7)
[C:\Program Files\Rising\Rav\ScanMac.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 8)
[C:\Program Files\Rising\Rav\ScanSct.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 15)
[C:\Program Files\Rising\Rav\Unpacker.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 3)
[C:\Program Files\Rising\Rav\ExtOLE.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 6)
[PID: 2576][C:\Program Files\Rising\Rav\RAVMON.EXE] (Beijing Rising Technology Co., Ltd.)(18, 0, 1, 28)
[C:\Program Files\Rising\Rav\RsGuiLib.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 24)
[C:\Program Files\Rising\Rav\BWList.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 19)
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 2)
[C:\Program Files\Rising\Rav\CfgDll.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 10)
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 4)
[C:\Program Files\Rising\Rav\RsCommX.dll] (rising)(18, 0, 0, 1)
[C:\Program Files\Rising\Rav\PngDll.dll] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 5)
[PID: 2868][C:\Program Files\Rising\Rav\RavStub.exe] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 16)
[C:\Program Files\Rising\Rav\RsCommX.dll] (rising)(18, 0, 0, 1)
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 4)
[PID: 1904][C:\Program Files\FlashGet\flashget.exe] (FlashGet.com)(1, 7, 2, 0)
[PID: 4340][c:\program files\rising\rav\RsAgent.exe] (Beijing Rising Technology Co., Ltd.)(18, 0, 0, 12)
[c:\program files\rising\rav\RsCommX.dll] (rising)(18, 0, 0, 1)
[PID: 4396][C:\WINDOWS.0\msagent\AgentSvr.exe] (Microsoft Corporation)(2.00.0.3422)
[PID: 1124][C:\Documents and Settings\Administrator\桌面\sreng2\SREng2\SREng.exe] (Smallfrogs Studio)(2.0.21.505)
[C:\WINDOWS.0\system32\upfdll.dll] (N/A)(N/A)
--------------------------------------------------------------------------------
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM Error. ["hh.exe" %1]
.HLP Error. [winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]