==================================
驱动程序
[atirage3 / atirage3][Running/Manual Start]
<System32\DRIVERS\atimpab.sys><ATI Technologies Inc.>
[awlegacy / awlegacy][Running/System Start]
<\SystemRoot\System32\Drivers\awlegacy.sys><Symantec Corporation>
[AW_HOST / AW_HOST][Running/System Start]
<system32\drivers\aw_host5.sys><Symantec Corporation>
[Rising TDI Base Driver / BaseTDI][Running/Auto Start]
<System32\DRIVERS\BaseTDI.SYS><Beijing Rising Technology Co., Ltd.>
[dmboot / dmboot][Stopped/Disabled]
<System32\drivers\dmboot.sys><VERITAS Software Corp.>
[Logical Disk Manager Driver / dmio][Running/Boot Start]
<\SystemRoot\System32\drivers\dmio.sys><VERITAS Software Corp.>
[dmload / dmload][Running/Boot Start]
<\SystemRoot\System32\drivers\dmload.sys><VERITAS Software Corp.>
[3Com EtherLink XL B/C Adapter Driver / EL90BC][Running/Manual Start]
<System32\DRIVERS\el90xbc5.sys><3Com Corporation>
[mraid2k / mraid2k][Running/Boot Start]
<\SystemRoot\system32\drivers\mraid2k.sys><LSI Logic Corporation>
[New0 / New0][Running/Auto Start]
<\??\C:\WINNT\system32\new.sys><N/A>
[Netgroup Packet Filter / NPF][Stopped/Manual Start]
<system32\drivers\npf.sys><Politecnico di Torino>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[SymEvent / SymEvent][Stopped/Manual Start]
<\??\C:\Program Files\Symantec\SYMEVENT.SYS><Symantec Corporation>
[Trend Micro Filter / TmFilter][Running/Auto Start]
<\??\C:\Program Files\Trend Micro\OfficeScan Client\TmFilter.sys><Trend Micro Inc.>
[Common Firewall Driver / TM_CFW][Running/Auto Start]
<\??\C:\Program Files\Trend Micro\OfficeScan Client\tm_cfw.sys><Trend Micro Inc.>
[VRVFW / VRVFW][Running/Boot Start]
<\SystemRoot\system32\VrvFw.sys><北信源>
[Trend Micro VSAPI NT / VSApiNt][Running/Auto Start]
<\??\C:\Program Files\Trend Micro\OfficeScan Client\VSApiNt.sys><Trend Micro Inc.>
==================================
浏览器加载项
[@shdoclc.dll,-866]
{c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[@msdxmLC.dll,-1@2052,电台(&R)]
{8E718888-423F-11D2-876E-00A0C9082467} <C:\WINNT\System32\msdxm.ocx, Microsoft Corporation>
[ObjWinNTCheck Class]
{00134F72-5284-44F7-95A8-52A619F70751} <C:\WINNT\Downloaded Program Files\WinNTChk.dll, Trend Micro Inc.>
[OfficeScan Corp Edition Web-Deployment SetupINICtrl Class]
{08D75BB0-D2B5-11D1-88FC-0080C859833B} <, N/A>
[OfficeScan Corp Edition Web-Deployment SetupCtrl Class]
{08D75BC1-D2B5-11D1-88FC-0080C859833B} <, N/A>
[Encrypt Class]
{35C3D91E-401A-4E45-88A5-F3B32CD72DF4} <C:\WINNT\Downloaded Program Files\AtxEnc.dll, Trend Micro Inc.>
[OfficeScan Corp Edition Web-Deployment ObjRemoveCtrl Class]
{5EFE8CB1-D095-11D1-88FC-0080C859833B} <C:\WINNT\Downloaded Program Files\OfficeScanRemoveCtrl.dll, Trend Micro Inc.>
[Java Plug-in 1.4.0]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\Java\j2re1.4.0\bin\npjpi140.dll, JavaSoft / Sun Microsystems, Inc.>
[Java Plug-in 1.4.0]
{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA} <C:\Program Files\Java\j2re1.4.0\bin\npjpi140.dll, JavaSoft / Sun Microsystems, Inc.>
[Shockwave Flash
Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINNT\system32\macromed\flash\Flash.ocx, Macromedia, Inc.>
==================================
正在运行的进程
[PID: 160][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.00.2195.6601]
[PID: 188][\??\C:\WINNT\system32\csrss.exe] [Microsoft Corporation, 5.00.2195.6601]
[C:\WINNT\system32\VrvHook.dll] [edp, 6, 4, 19, 15]
[PID: 208][\??\C:\WINNT\system32\winlogon.exe] [Microsoft Corporation, 5.00.2195.6898]
[C:\WINNT\system32\APIHookDll.dll] [N/A, ]
[C:\WINNT\system32\awgina.dll] [Symantec Corporation, 10.0.0.361]
[C:\WINNT\system32\vrvhook.dll] [edp, 6, 4, 19, 15]
[PID: 236][C:\WINNT\system32\services.exe] [Microsoft Corporation, 5.00.2195.6700]
[C:\WINNT\system32\APIHookDll.dll] [N/A, ]
[C:\WINNT\system32\dmserver.dll] [VERITAS Software Corp., 2195.6605.297.3]
[C:\WINNT\system32\VrvHook.dll] [edp, 6, 4, 19, 15]
[PID: 248][C:\WINNT\system32\lsass.exe] [Microsoft Corporation, 5.00.2195.6902]
[C:\WINNT\system32\APIHookDll.dll] [N/A, ]
[C:\WINNT\system32\VrvHook.dll] [edp, 6, 4, 19, 15]
[PID: 448][C:\WINNT\system32\svchost.exe] [Microsoft Corporation, 5.00.2134.1]
[C:\WINNT\system32\APIHookDll.dll] [N/A, ]
[C:\WINNT\system32\vrvhook.dll] [edp, 6, 4, 19, 15]
[PID: 476][C:\WINNT\system32\spoolsv.exe] [Microsoft Corporation, 5.00.2195.6659]
[C:\WINNT\system32\APIHookDll.dll] [N/A, ]
[C:\WINNT\system32\vrvhook.dll] [edp, 6, 4, 19, 15]
[C:\WINNT\system32\awmon.dll] [Symantec Corporation, 9.2.1]
[PID: 1040][d:\oracle\ora81\bin\ORACLE.EXE] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oraclient8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oracore8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oranls8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oravsn8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oracommon8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\orageneric8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oranl8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oran8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\orancrypt8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oranro8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\orannzsbb8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oranldap8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oraldapclnt8.dll] [Oracle Corporation, 8.1.5.0.0]
[d:\oracle\ora81\bin\oranhost8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oranoname8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\orancds8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\orantns8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\orannds8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oranms.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oranmsp.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\ORATRACE8.dll] [N/A, ]
[d:\oracle\ora81\bin\orapls8.dll] [Oracle Corporation, 8]
[d:\oracle\ora81\bin\oraslax8.dll] [Oracle Corporation, 8]
[d:\oracle\ora81\bin\orawtc8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\orasql8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oraplp8.dll] [Oracle Corporation, 8]
[d:\oracle\ora81\bin\oradbicx8.dll] [Oracle Corporation, 8]
[d:\oracle\ora81\bin\orajox8.dll] [N/A, ]
[d:\oracle\ora81\bin\orawwg8.dll] [Oracle Corporation, 8.1.7.0.0]
[d:\oracle\ora81\bin\oransgr8.dll] [Oracle Corporation, 8.1.7.0.0]
[C:\WINNT\system32\APIHookDll.dll] [N/A, ]
[D:\oracle\ora81\BIN\ORAIMR8.Dll] [Oracle Corporation, 8.1.7.0.0]
[D:\oracle\ora81\bin\oranbeq8.dll] [Oracle Corporation, 8.1.7.0.0]
[D:\oracle\ora81\bin\orannts8.dll] [Oracle Corporation, 8.1.7.0.0]
[C:\WINNT\system32\vrvhook.dll] [edp, 6, 4, 19, 15]
[D:\oracle\ora81\bin\orantcp8.dll] [Oracle Corporation, 8.1.7.0.0]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_rdbms.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_lang.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_io.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_util.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_vm.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_security.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_lang_reflect.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_gss_util.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8sun_io.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_lang_ref.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8sun_security_action.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8sun_misc.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_sql.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_sql.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8sun_security_provider.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_jdbc_driver.dll] [N/A, ]
[D:\oracle\ora81\bin\corejava.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_math.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_rdbms_security.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_realm.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_jdbc_kprb.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_jdbc_dbaccess.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_memoryManager.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_net.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8_e2d26a7a79_internal_oracle_aurora_mts_http_admin.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8_e2d25a092e_internal_oracle_aurora_namespace_shell.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_net.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_security.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_security_acl.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8javax_naming.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8_e2d25a092e_internal_oracle_aurora_namespace.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8javax_naming_directory.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_util.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8_e2d25a092e_internal_oracle_aurora_namespace_rdbms.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8_e2d25a092e_internal_oracle_aurora_mts_session.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8sun_security_util.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_applet.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8oracle_aurora_rdbms_url_jserver.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8javax_naming_spi.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8_e2d25a092e_internal_oracle_aurora_mts_session_rdbms.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8_e2d25a092e_internal_oracle_aurora_mts.dll] [N/A, ]
[D:\ORACLE\ORA81\JAVAVM\ADMIN\orajox8java_text.dll] [N/A, ]