1   1  /  1  页   跳转

关于Trojan.PSW.QQgame.l的问题日志

关于Trojan.PSW.QQgame.l的问题日志

2006-07-30,10:50:52

System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional  (Build 2600)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <MsnMsgr><; "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background>  [Microsoft Corporation]
    <MSMSGS><; "C:\Program Files\Messenger\msmsgs.exe" /background>  [Microsoft Corporation]
    <ctfmon.exe><; C:\WINDOWS\System32\ctfmon.exe>  [Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <维宇RealLink><; d:\RealLink\RealLink.exe>  []
    <TomcatStartup><; C:\Program Files\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe>  [Hewlett-Packard]
    <TkBellExe><; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot>  [RealNetworks, Inc.]
    <thunder_mini><; C:\Program Files\Maxthon\Thundermini\ThunderMini.exe>  [深圳市三代科技开发有限公司]
    <ThunderMini><; C:\Program Files\Thunder Network\ThunderMini\ThunderMiniShell.exe>  []
    <stup.exe><; C:\PROGRA~1\TENCENT\Adplus\stup.exe>  []
    <StatusClient><; C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe /auto>  [Hewlett-Packard]
    <SpeedTouch USB Diagnostics><; "C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon>  [THOMSON multimedia]
    <RavTimer><; C:\PROGRA~1\RISING\RAV\RAVTIMER.EXE>  []
    <RavTask><; "C:\Program Files\rising\Rav\RavTask.exe" -system>  [Beijing Rising Technology Co., Ltd.]
    <RavMon><; C:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM>  [Beijing Rising Technology Co., Ltd.]
    <PHIME2002A><; C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [Microsoft Corporation]
    <Microsoft Update><; navmgrd.exe>  []
    <kpcdst><; C:\Program Files\Kingsoft\KingPlayerShare\cdsprite.exe>  []
    <IMSCMig><; C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload>  [Microsoft Corporation]
    <IMJPMIG8.1><; C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32>  [Microsoft Corporation]
    <IgfxTray><; C:\WINDOWS\System32\igfxtray.exe>  [Intel Corporation]
    <HotKeysCmds><; C:\WINDOWS\System32\hkcmd.exe>  [Intel Corporation]
    <FineReader7NewsReaderPro><; "C:\Program Files\ABBYY FineReader 7.0 Professional Edition\ABBYYNewsReader.exe">  [ABBYY (BIT Software)]
    <Device Detector><; DevDetect.exe -autorun>  []
    <DAEMON Tools-1033><; "C:\Program Files\D-Tools\daemon.exe"  -lang 1033>  [DAEMON'S HOME]
    <BIE><; Rundll32.exe C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll,Rundll32>  []
    <AddrPlus3><; RUNDLL32.EXE C:\PROGRA~1\TENCENT\AddrPlus\QAHook3.dll,Rundll32>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
    <Microsoft Update><; navmgrd.exe>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    <CheckFaultKernel><; C:\WINDOWS\System32\mswdm.exe>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [Microsoft Corporation]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{BC207F7D-3E63-4ACA-99B5-FB5F8428200C}><C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll>  []
    <{32CD708B-60A7-4C00-9377-D73EAA495F0F}><C:\WINDOWS\system32\RavExt.dll>  [Beijing Rising Technology Co., Ltd.]

==================================
启动文件夹
[文通手写]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\文通手写.lnk><N>

==================================
服务
[IMAPI CD-Burning COM Service / ImapiService]
  <C:\WINDOWS\System32\imapi.exe><Microsoft Corporation>
[LexBce Server / LexBceS]
  <C:\WINDOWS\system32\LEXBCES.EXE><Lexmark International, Inc.>
[Macromedia Licensing Service / Macromedia Licensing Service]
  <"C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe"><N/A>
[Plug and Play / PlugPlay]
  <2 - 系统找不到指定的文件。
><N/A>
[Pml Driver HPZ12 / Pml Driver HPZ12]
  <C:\WINDOWS\System32\HPZipm12.exe><HP>
[Rising Process Communication Center / RsCCenter]
  <"C:\Program Files\rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
  <C:\PROGRAM FILES\RISING\RAV\Ravmond.exe><Beijing Rising Technology Co., Ltd.>
最后编辑2006-07-30 11:13:41
分享到:
gototop
 


==================================
浏览器加载项
[ThunderIEHelper Class]
  {0005A87D-D626-4B3A-84F9-1D9571695F55} <C:\WINDOWS\System32\xunleibho_v4.dll, >
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx, >
[Tencent Browser Helper]
  {0C7C23EF-A848-485B-873C-0ED954731014} <, N/A>
[QQBrowserHelperObject Class]
  {54EBD53A-9BC1-480B-966A-843A333CA162} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, N/A>
[]
  {669751ED-D558-49AE-B01A-3B374CC7910E} <C:\DOCUME~1\秋\LOCALS~1\Temp\SSLive.dll, N/A>
[ThunderMini Browser Helper]
  {8E6C1C49-F9CE-4311-9FB4-D70E8B0AEAEB} <C:\Program Files\Thunder Network\ThunderMini\ComDlls\XunLeiMiniBHO_002.dll, Thunder Networking Technologies,LTD>
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <C:\PROGRA~1\FLASHGET\jccatch.dll, Amaze Soft>
[BDSrchHook Class]
  {BC207F7D-3E63-4ACA-99B5-FB5F8428200C} <C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll, >
[维宇RealLink]
  {0713E8D2-850A-101B-AFC0-4210122A8DA9} <D:\RealLink\RealLink.exe, N/A>
[CibaCtrl Class]
  {8DE0FCD4-5EB5-11D3-AD25-00002100131B} <C:\PROGRA~1\Kingsoft\POWERW~1\IEPlugin.dll, >
[信息检索(&R)]
  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
[BDSrchHook Class]
  {BC207F7D-3E63-4ACA-99B5-FB5F8428200C} <C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll, >
[JoyoCtrl Class]
  {C8CE29C5-7589-11D3-B81B-0080C8DC5DC8} <C:\PROGRA~1\Kingsoft\POWERW~1\IEPlugin.dll, >
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[QQ]
  {c95fe080-8f5d-11d2-a20b-00aa003c157b} <C:\Program Files\Tencent\QQ\QQ.EXE, N/A>
[FlashGet]
  {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} <C:\PROGRA~1\FLASHGET\flashget.exe, Amaze Soft>
[QQIEFloatBarCfgCmd Class]
  {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <C:\Program Files\Tencent\QQ\QQIEHelper.dll, N/A>
[金山快译(&K)]
  {6C3797D2-3FEF-4cd4-B654-D3AE55B4128C} <C:\PROGRA~1\Kingsoft\FASTAI~1\IEBand.dll, >
[电台(&R)]
  {8E718888-423F-11D2-876E-00A0C9082467} <C:\WINDOWS\System32\msdxm.ocx, Microsoft Corporation>
[FlashGet Bar]
  {E0E899AB-F487-11D5-8D29-0050BA6940E3} <C:\PROGRA~1\FLASHGET\fgiebar.dll, Amaze Soft>
[XDownload Class]
  {165D83D3-359C-4783-9BF0-6FA6DC42A3F1} <C:\WINDOWS\Downloaded Program Files\SSDownload.dll, 北京世纪超星>
[MeadCo ScriptX]
  {1663ed61-23eb-11d2-b92f-008048fdd814} <C:\WINDOWS\System32\MCScripX.dll, Mead & Company Limited>
[WUWebControl Class]
  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\System32\wuweb.dll, Microsoft Corporation>
[MUWebControl Class]
  {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <C:\WINDOWS\System32\muweb.dll, Microsoft Corporation>
[BDSrchHook Class]
  {BC207F7D-3E63-4ACA-99B5-FB5F8428200C} <C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll, >
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\System32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[&使用迷你迅雷下载]
  <C:\Program Files\Maxthon\Thundermini\geturl.htm, N/A>
[使用网际快车下载]
  <C:\Program Files\FlashGet\jc_link.htm, N/A>
[使用网际快车下载全部链接]
  <C:\Program Files\FlashGet\jc_all.htm, N/A>

==================================
正在运行的进程
[PID: 348][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 528][\??\C:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 552][\??\C:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 596][C:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 608][C:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 788][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 852][C:\Program Files\rising\Rav\CCenter.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[PID: 868][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 960][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 972][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1076][C:\WINDOWS\system32\LEXBCES.EXE]  <Lexmark International, Inc.><7.4>
    [C:\WINDOWS\system32\lexp2p32.dll]  <Lexmark International, Inc.><7.4>
    [C:\WINDOWS\system32\lex2kusb.dll]  <Lexmark International, Inc.><7.4>
[PID: 1112][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.0 (XPClient.010817-1148)>
    [C:\WINDOWS\system32\HPBMMON.DLL]  <Hewlett-Packard><10.00.16>
    [C:\WINDOWS\system32\hppamon0.dll]  <HP><5, 0, 5, 0>
    [C:\WINDOWS\system32\hpdomon.dll]  <Hewlett-Packard><03.42.00>
    [C:\WINDOWS\system32\HPBHealr.dll]  <N/A><N/A>
    [C:\WINDOWS\system32\LEXLMPM.DLL]  <Lexmark International, Inc.><7.4>
    [C:\WINDOWS\system32\LexBce.dll]  <Lexmark International, Inc.><7.4>
    [C:\WINDOWS\system32\md_monnt.dll]  <N/A><N/A>
    [C:\WINDOWS\System32\pdfports.dll]  <Adobe Systems Incorporated.><5.0.000>
    [C:\Program Files\Adobe\Acrobat 5.0\Distillr\adistres.dll]  <N/A><N/A>
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\IMFPrint.DLL]  <Zenographics, Inc.><5, 54, 330, 0>
    [C:\WINDOWS\system32\Imf32.dll]  <Zenographics, Inc.><5, 60, 1204, 0>
    [C:\WINDOWS\system32\ZTAG32.dll]  <Zenographics, Inc.><5, 60, 1210, 0>
    [C:\WINDOWS\system32\ZSPOOL.dll]  <Zenographics, Inc.><5, 51, 709, 0>
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\LGAXPP5C.dll]  <Lexmark International><1.0.2.1>
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\vprproc.dll]  <Windows (R) 2000 DDK provider><5.00.2195.1620>
    [C:\WINDOWS\system32\hppadt40.dll]  <HP><5, 0, 5, 0>
    [C:\WINDOWS\system32\HPZidr12.dll]  <HP><5, 0, 5, 0>
    [C:\WINDOWS\system32\hpbmmjno.dll]  <Hewlett-Packard><00.01.00>
[PID: 1116][C:\WINDOWS\system32\LEXPPS.EXE]  <Lexmark International, Inc.><7.4>
    [C:\WINDOWS\system32\LEXBCE.DLL]  <Lexmark International, Inc.><7.4>
[PID: 1428][C:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2600.0000 (xpclient.010817-1148)>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [C:\Program Files\Thunder Network\ThunderMini\ComDlls\XunLeiMiniBHO_002.dll]  <Thunder Networking Technologies,LTD><2, 0, 0, 2>
    [C:\PROGRA~1\FLASHGET\jccatch.dll]  <Amaze Soft><1, 1, 4, 0>
    [C:\PROGRA~1\WINZIP\WZSHLSTB.DLL]  <WinZip Computing, Inc.><4.1 (32-bit)>
    [C:\Program Files\WinRAR\rarext.dll]  <N/A><N/A>
    [C:\Program Files\ABBYY FineReader 6.0\FECMenu.dll]  <ABBYY (BIT Software)><6.0.0.395>
    [C:\WINDOWS\System32\xunleibho_v4.dll]  <><4, 3, 2, 29>
    [C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx]  <><1, 0, 0, 1>
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\WINDOWS\System32\igfxpph.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\hccutils.DLL]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxres.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxsrvc.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxdev.dll]  <Intel Corporation><3,0,0,1502>
[PID: 1564][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1744][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
    [C:\WINDOWS\System32\PS2DMiniDrv.DLL]  <Mustek Systems Inc.><1.1.0.3>
    [C:\WINDOWS\TWAIN_32\S12U16K\PS2Dspi.dll]  <Scanner><0, 0, 9, 6>
[PID: 1812][C:\WINDOWS\System32\Rundll32.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 1400][C:\Program Files\Common Files\Real\Update_OB\realsched.exe]  <RealNetworks, Inc.><0.1.0.1622>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 1140][C:\Program Files\Maxthon\Thundermini\ThunderMini.exe]  <深圳市三代科技开发有限公司><1, 1, 0, 4>
gototop
 

[C:\Program Files\Maxthon\Thundermini\boost_thread-vc6-mt-1_31.dll]  <N/A><N/A>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 332][C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe]  <Hewlett-Packard><00.00.13>
    [C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\hpptui0.dll]  <Hewlett-Packard><01.00.35>
[PID: 1480][C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe]  <THOMSON multimedia><200.7.0.0>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 1492][C:\Program Files\rising\Rav\RavTask.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 1588][C:\Program Files\Kingsoft\KingPlayerShare\cdsprite.exe]  <><3, 0, 0, 2>
    [C:\Program Files\Kingsoft\KingPlayerShare\KPlayer.dll]  <金山软件股份有限公司><1, 0, 0, 1>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 1696][C:\Program Files\Thunder Network\ThunderMini\program\ThunderMini.exe]  <Thunder Networking Technologies,LTD><2, 0, 1, 30>
    [C:\Program Files\Thunder Network\ThunderMini\program\download_interface.dll]  <N/A><N/A>
    [C:\Program Files\Thunder Network\ThunderMini\program\UpdateDownload.dll]  <Thunder Networking Technologies,LTD><1, 0, 1, 6>
    [C:\Program Files\Thunder Network\ThunderMini\Components\InMedia\iEmbedShell.dll]  < ><1, 0, 0, 6>
    [C:\Program Files\Thunder Network\ThunderMini\Components\InMedia\iEmbed.dll]  < ><2, 1, 0, 30>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
[PID: 192][C:\WINDOWS\System32\igfxtray.exe]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\hccutils.DLL]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxdev.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
    [C:\WINDOWS\System32\igfxsrvc.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxres.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxress.dll]  <Intel Corporation><3,0,0,1502>
[PID: 208][C:\WINDOWS\System32\hkcmd.exe]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\hccutils.DLL]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxdev.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxsrvc.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
    [C:\WINDOWS\System32\igfxhk.dll]  <Intel Corporation><3,0,0,1502>
    [C:\WINDOWS\System32\igfxres.dll]  <Intel Corporation><3,0,0,1502>
[PID: 296][C:\Program Files\ABBYY FineReader 7.0 Professional Edition\ABBYYNewsReader.exe]  <ABBYY (BIT Software)><7.0.0.963>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 424][C:\Program Files\Common Files\ACD Systems\EN\DevDetect.exe]  <ACD Systems, Ltd.><3,0,9,0>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 1848][C:\Program Files\D-Tools\daemon.exe]  <DAEMON'S HOME><3.41.0.0>
    [C:\WINDOWS\daemon.dll]  <N/A><3.41.0.0>
    [C:\Program Files\D-Tools\PFCTOC.DLL]  <Padus(R), Inc.><1, 0, 0, 12>
    [C:\Program Files\D-Tools\Plugins\Images\ccdmount.dll]  <GENERIC><1.01.0.0>
    [C:\Program Files\D-Tools\Plugins\Images\mdsmount.dll]  <GENERIC><1.01.0.0>
    [C:\Program Files\D-Tools\Plugins\Images\pdimount.dll]  <GENERIC><1.01.0.0>
    [C:\Program Files\D-Tools\Plugins\Images\nrgmount.dll]  <GENERIC><1.01.0.0>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 1228][C:\Program Files\MSN Messenger\MsnMsgr.Exe]  <Microsoft Corporation><7.5.0311>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
    [C:\WINDOWS\System32\msdmo.dll]  <N/A><N/A>
[PID: 1652][C:\Program Files\Messenger\msmsgs.exe]  <Microsoft Corporation><4.0.0155>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 1720][C:\WINDOWS\System32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 2816][C:\Program Files\rising\Rav\Smartup.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 71>
    [C:\Program Files\rising\Rav\RsGuiLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
    [C:\Program Files\rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\rising\Rav\PngDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[PID: 3308][C:\Program Files\rising\rav\RsAgent.exe]  <Beijing Rising Technology Co., Ltd.><17, 0, 0, 27>
    [C:\Program Files\rising\rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 3324][C:\WINDOWS\msagent\AgentSvr.exe]  <Microsoft Corporation><2.00.0.3422>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
[PID: 2948][C:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2600.0000 (xpclient.010817-1148)>
    [C:\WINDOWS\System32\xunleibho_v4.dll]  <><4, 3, 2, 29>
    [C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx]  <><1, 0, 0, 1>
    [C:\Program Files\Thunder Network\ThunderMini\ComDlls\XunLeiMiniBHO_002.dll]  <Thunder Networking Technologies,LTD><2, 0, 0, 2>
    [C:\PROGRA~1\FLASHGET\jccatch.dll]  <Amaze Soft><1, 1, 4, 0>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>
    [C:\Program Files\rising\Rav\RavScrCh.dll]  <><17, 0, 0, 7>
    [C:\WINDOWS\System32\Macromed\Flash\Flash8b.ocx]  <Macromedia, Inc.><8,0,24,0>
[PID: 492][C:\Documents and Settings\冬\桌面\sreng2\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [C:\WINDOWS\DOWNLO~1\CONFLICT.1\BDSrHook.dll]  <><2, 0, 1, 2>

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT