1   1  /  1  页   跳转

大家帮我看下这份日志

大家帮我看下这份日志

2006-12-29,22:56:40

System Repair Engineer 2.2.6.605
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 1 (Build 2600)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\System32\ctfmon.exe>  [(Verified)Microsoft Corporation]
    <MsnMsgr><"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background>  [Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <PHIME2002ASync><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [(Verified)Microsoft Corporation]
    <PHIME2002A><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [(Verified)Microsoft Corporation]
    <ATIModeChange><Ati2mdxx.exe>  [(Verified)ATI Technologies, Inc.]
    <Lskbdrv><C:\Program Files\Lenovo\幸福一键通\Kbdriver.exe>  [N/A]
    <LenSoft><C:\Program Files\Lenovo\幸福一键通\FlyShuttle.exe>  [N/A]
    <SoundMan><SOUNDMAN.EXE>  [(Verified)Realtek Semiconductor Corp.]
    <NeroCheck><C:\WINDOWS\system32\NeroCheck.exe>  [Ahead Software Gmbh]
    <runeip><C:\Program Files\Rising\AntiSpyware\runiep.exe>  [Beijing Rising Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    <KKDelay><C:\Program Files\Rising\AntiSpyware\RunOnce.exe>  [Beijing Rising Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
    <twin><C:\WINDOWS\System32\twunk32.exe>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [(Verified)Microsoft Corporation]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [(Verified)Microsoft Corporation]

==================================
启动文件夹
[InterVideo WinCinema Manager]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\InterVideo WinCinema Manager.lnk --> C:\PROGRA~1\INTERV~1\Common\Bin\WINCIN~1.EXE []><N>
[联想呼吸灯设置]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\联想呼吸灯设置.lnk --> C:\PROGRA~1\lenovo\FXLEDM~1\QUAKEL~1.EXE []><N>

==================================
服务
[Human Interface Device Access / HidServ]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
[LexBce Server / LexBceS]
  <C:\WINDOWS\system32\LEXBCES.EXE><Lexmark International, Inc.>
[Portable Media Serial Number Service / WmdmPmSN]
  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\System32\mspmsnsv.dll><Microsoft Corporation>

==================================
驱动程序
[Service for WDM 3D Audio Driver / ALCXSENS]
  <system32\drivers\ALCXSENS.SYS><Sensaura Ltd>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM]
  <system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[ati2mtag / ati2mtag]
  <System32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[basic2 / basic2]
  <System32\DRIVERS\HSF_BSC2.sys><Conexant>
[CALLKEY_IO / CALLKEY_IO]
  <\??\C:\Program Files\OneKey\CALLKEY.sys><N/A>
[3Com EtherLink XL 90XB/C Adapter Driver / EL90XBC]
  <System32\DRIVERS\el90xbc5.sys><3Com Corporation>
[Fallback / Fallback]
  <System32\DRIVERS\HSF_FALL.sys><Conexant>
[Fsks / Fsks]
  <System32\DRIVERS\HSF_FSKS.sys><Conexant>
[HpaFilt / HpaFilt]
  <C:\WINDOWS\SYSTEM32\DRIVERS\HpaFilt.SYS><Legend Corporation>
[hsf_msft / hsf_msft]
  <System32\DRIVERS\HSF_MSFT.sys><Conexant>
[K56 / K56]
  <System32\DRIVERS\HSF_K56K.sys><Conexant>
[MSJDrvr / MSJDrvr]
  <System32\DRIVERS\MSJDrvr.sys><N/A>
[Direct Parallel Link Driver / Ptilink]
  <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[Rksample / Rksample]
  <System32\DRIVERS\HSF_SAMP.sys><Conexant>
[Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139]
  <System32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
[Secdrv / Secdrv]
  <System32\DRIVERS\secdrv.sys><N/A>
[SoftFax / SoftFax]
  <System32\DRIVERS\HSF_FAXX.sys><Conexant>
[Tones / Tones]
  <System32\DRIVERS\HSF_TONE.sys><Conexant>
[V124 / V124]
  <System32\DRIVERS\HSF_V124.sys><Conexant>

==================================
浏览器加载项
[IeCatch2 Class]
  {A5366673-E8CA-11D3-9CD9-0090271D075B} <C:\PROGRA~1\FlashGet\jccatch.dll, Amaze Soft>
[CibaCtrl Class]
  {8DE0FCD4-5EB5-11D3-AD25-00002100131B} <C:\PROGRA~1\Kingsoft\XDict\IEPlugin.dll, >
[JoyoCtrl Class]
  {C8CE29C5-7589-11D3-B81B-0080C8DC5DC8} <C:\PROGRA~1\Kingsoft\XDict\IEPlugin.dll, >
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[FlashGet]
  {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} <C:\PROGRA~1\FlashGet\flashget.exe, Amaze Soft>
[电台(&R)]
  {8E718888-423F-11D2-876E-00A0C9082467} <C:\WINDOWS\System32\msdxm.ocx, Microsoft Corporation>
[FlashGet Bar]
  {E0E899AB-F487-11D5-8D29-0050BA6940E3} <C:\PROGRA~1\FlashGet\fgiebar.dll, Amaze Soft>
[上传到QQ网络硬盘]
  <E:\IPQQ06454a\AddToNetDisk.htm, N/A>
[使用网际快车下载]
  <C:\PROGRA~1\FlashGet\jc_link.htm, N/A>
[使用网际快车下载全部链接]
  <C:\PROGRA~1\FlashGet\jc_all.htm, N/A>
[导出到 Microsoft Excel(&x)]
  <res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000, N/A>
[添加到QQ自定义面板]
  <E:\IPQQ06454a\AddPanel.htm, N/A>
[添加到QQ表情]
  <E:\IPQQ06454a\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <E:\IPQQ06454a\SendMMS.htm, N/A>

==================================
最后编辑2007-01-02 09:13:53
分享到:
gototop
 

正在运行的进程
[PID: 444][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[PID: 500][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 532][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 576][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 588][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[PID: 764][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 816][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 880][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 908][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1228][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2800.1106 (xpsp1.020828-1920)]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\LgdGuard.dll]  [, ]
    [C:\PROGRA~1\FlashGet\jccatch.dll]  [Amaze Soft, 1, 1, 4, 0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 1248][C:\WINDOWS\system32\LEXBCES.EXE]  [Lexmark International, Inc., 8.16]
    [C:\WINDOWS\system32\lexp2p32.dll]  [Lexmark International, Inc., 8.16]
    [C:\WINDOWS\system32\lex2kusb.dll]  [Lexmark International, Inc., 8.16]
[PID: 1300][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.0 (XPClient.010817-1148)]
    [C:\WINDOWS\system32\LEXLMPM.DLL]  [Lexmark International, Inc., 8.16]
    [C:\WINDOWS\system32\LexBce.dll]  [Lexmark International, Inc., 8.16]
    [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\LGBCPP5C.dll]  [Lenovo, 1.0.3.0]
    [C:\WINDOWS\system32\LGBCpwr.dll]  [Lenovo, 1, 0, 1, 0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 1316][C:\WINDOWS\system32\LEXPPS.EXE]  [Lexmark International, Inc., 8.16]
    [C:\WINDOWS\system32\LEXBCE.DLL]  [Lexmark International, Inc., 8.16]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
[PID: 1452][C:\Program Files\Lenovo\幸福一键通\Kbdriver.exe]  [N/A, N/A]
    [C:\Program Files\Lenovo\幸福一键通\lxkeyled.dll]  [N/A, N/A]
    [C:\Program Files\Lenovo\幸福一键通\VolumeOsd.dll]  [N/A, N/A]
    [C:\Program Files\Lenovo\幸福一键通\ScrOSD32.dll]  [N/A, N/A]
    [C:\Program Files\Lenovo\幸福一键通\tgekb.dll]  [N/A, N/A]
    [C:\Program Files\Lenovo\幸福一键通\XPNyGet.dll]  [N/A, N/A]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 1460][C:\Program Files\Lenovo\幸福一键通\FlyShuttle.exe]  [, 1, 0, 0, 1]
    [C:\Program Files\Lenovo\幸福一键通\CLxUI.dll]  [联想(北京)有限公司, 1, 0, 0, 1]
    [C:\Program Files\Lenovo\幸福一键通\SKOSD.DLL]  [Silitek Corp., 1, 0, 6, 0]
    [C:\Program Files\Lenovo\幸福一键通\SKUtil.DLL]  [Silitek Corp., 1, 0, 9, 0]
    [C:\Program Files\Lenovo\幸福一键通\VolumeOsd.dll]  [N/A, N/A]
    [C:\Program Files\Lenovo\幸福一键通\ScrOSD32.dll]  [N/A, N/A]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 1468][C:\WINDOWS\SOUNDMAN.EXE]  [Realtek Semiconductor Corp., 5.1.09]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 1516][C:\WINDOWS\System32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 1524][C:\Program Files\MSN Messenger\MsnMsgr.Exe]  [Microsoft Corporation, 6.1.0155]
    [C:\WINDOWS\System32\msdmo.dll]  [N/A, N/A]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 1604][C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe]  [, 1.0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 1612][C:\Program Files\lenovo\fxLEDmanager\QuakeLamp.exe]  [, 1, 0, 0, 1]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 2032][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[PID: 1952][E:\IPQQ06454a\TIMPlatfrom.exe]  [tencent, 0, 3, 1, 8]
    [E:\IPQQ06454a\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
[PID: 1700][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2800.1106 (xpsp1.020828-1920)]
    [C:\PROGRA~1\FlashGet\jccatch.dll]  [Amaze Soft, 1, 1, 4, 0]
    [C:\WINDOWS\System32\macromed\flash\swflash.ocx]  [Macromedia, Inc., 5,0,44,0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 168][E:\IPQQ06454a\QQ.exe]  [TENCENT, 0, 0, 0, 0]
    [E:\IPQQ06454a\QQBaseClassInDll.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\QQHelperDll.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\BasicCtrlDll.dll]  [Tencent, 5, 0, 200, 370]
    [E:\IPQQ06454a\QQAPI.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\TIMProxy.dll]  [tencent, 0, 3, 2, 4]
    [E:\IPQQ06454a\LoginCtrl.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\npkcntc.dll]  [INCA Internet Co., Ltd., 2006, 6, 27, 1]
    [E:\IPQQ06454a\npkpdb.dll]  [INCA Internet Co., Ltd., 2003, 10, 1, 1]
    [E:\IPQQ06454a\QQRes.dll]  [tencent, 1, 0, 0, 1]
    [E:\IPQQ06454a\QQMainFrame.dll]  [N/A, N/A]
    [E:\IPQQ06454a\CQQApplication.dll]  [N/A, N/A]
    [E:\IPQQ06454a\NewSkin.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\HostingMgr.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\CameraDll.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\MailSummary.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\QQSpace.dll]  [, 1, 0, 0, 1]
    [C:\WINDOWS\System32\msdmo.dll]  [N/A, N/A]
    [E:\IPQQ06454a\QQGroupMng.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\GroupLive.dll]  [N/A, N/A]
    [E:\IPQQ06454a\UserDefinedHead.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\QQPlugin.dll]  [N/A, N/A]
    [E:\IPQQ06454a\QQConfigPlugin.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\QQSysMsgMng.dll]  [N/A, N/A]
    [E:\IPQQ06454a\QQSettingCtrl.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\QQAllInOne.dll]  [N/A, N/A]
    [E:\IPQQ06454a\SCCore.dll]  [TENCENT, 2, 0, 0, 1]
    [E:\IPQQ06454a\QQPet.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\QQCustomFace.dll]  [N/A, N/A]
    [E:\IPQQ06454a\FlashAvatarDll.dll]  [, 1, 4, 0, 1]
    [E:\IPQQ06454a\QRingMng.dll]  [N/A, N/A]
    [E:\IPQQ06454a\ImageOle.dll]  [TODO: <Company name>, 1.0.0.1]
    [E:\IPQQ06454a\QQAvatar.dll]  [N/A, N/A]
    [E:\IPQQ06454a\QQSceneMng.dll]  [N/A, N/A]
    [E:\IPQQ06454a\PhoneAPI.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\DialerAllinOne.dll]  [tencent, 1, 4, 0, 0]
    [E:\IPQQ06454a\VPortal.dll]  [, 1, 0, 0, 4]
    [E:\IPQQ06454a\LongConnection.dll]  [tencent, 5, 0, 200, 160]
    [E:\IPQQ06454a\QQMagicFace.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\QQFileTransfer.dll]  [Tencent, 0, 3, 3, 5]
    [E:\IPQQ06454a\BQQApplication.dll]  [N/A, N/A]
    [E:\IPQQ06454a\CommercesMng.dll]  [, 1, 0, 0, 1]
    [E:\IPQQ06454a\PersonalDesktop.dll]  [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 2]
    [E:\IPQQ06454a\QQAddr.dll]  [深圳市腾讯计算机系统有限公司, 5, 0, 101, 240]
    [E:\IPQQ06454a\InPlus.dll]  [Tencent, 1, 6, 0, 0]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
    [E:\IPQQ06454a\QQPhoneHelper.dll]  [腾讯科技(深圳)有限公司, 2, 1, 2, 23]
    [C:\WINDOWS\System32\macromed\flash\swflash.ocx]  [Macromedia, Inc., 5,0,44,0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\videodevice.dll]  [Tencent, 1, 6, 0, 0]
    [C:\WINDOWS\System32\l3codeca.acm]  [Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0305]
    [E:\IPQQ06454a\VqqAllInOne.dll]  [Tencent, 1, 6, 0, 0]
    [E:\IPQQ06454a\tencent-proto1.dll]  [tencent, 1, 6, 0, 0]
    [E:\IPQQ06454a\tencent-comlib.dll]  [tencent, 1, 6, 0, 0]
    [E:\IPQQ06454a\tencent-proto2.dll]  [tencent, 1, 6, 0, 0]
[PID: 1652][C:\Program Files\Rising\AntiSpyware\runiep.exe]  [Beijing Rising Technology Co., Ltd., 1, 0, 1, 3]
    [C:\Program Files\Rising\AntiSpyware\iep_ctrl.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 4]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 824][C:\WINDOWS\explorer.exe]  [Microsoft Corporation, 6.00.2800.1106 (xpsp1.020828-1920)]
    [C:\PROGRA~1\FlashGet\jccatch.dll]  [Amaze Soft, 1, 1, 4, 0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, N/A]
    [C:\WINDOWS\System32\LgdGuard.dll]  [, ]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
[PID: 1888][E:\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]
    [E:\IPQQ06454a\DShared.dll]  [Tencent, 1, 6, 0, 0]
    [C:\Program Files\Rising\AntiSpyware\ieprot.dll]  [Beijing Rising Technology Co., Ltd., 1, 0, 0, 7]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
[E:\]
[AutoRun]
OPEN=ghost.exe
shellexecute=ghost.exe
shell\打开(&O)\command=ghost.exe
[F:\]
[AutoRun]
OPEN=ghost.exe
shellexecute=ghost.exe
shell\打开(&O)\command=ghost.exe

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT