瑞星卡卡安全论坛
四国爱好者 - 2006-5-4 21:53:00
斑竹,帮我看看扫描结果正常不?谢谢
我的事IBM。。T43的。。
开机启动蛮快。。但是网络连接(无线和有线)的图标要隔好久才跳出来。
用最新的瑞星又杀不出病毒来。请帮我看看是怎么回事?谢谢
各位高手也请指点一下。。谢谢
2006-05-04,21:40:52
System Repair Engineer 2.0.12.350 (2.0 RC 1)
Windows XP Professional Service Pack 2 - 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<PHIME2002ASync><; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<PHIME2002A><; C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<TPKMAPHELPER><C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe -helper>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<TpShocks><TpShocks.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<TPHOTKEY><C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<TP4EX><tp4ex.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<ControlCenter><"C:\Program Files\IBM fingerprint software\ctlcntr.exe" /startup>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<EZEJMNAP><C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SynTPLpr><C:\Program Files\Synaptics\SynTP\SynTPLpr.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SoundMAXPnP><C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SoundMAX><C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<ATIPTA><C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<UpdateManager><; "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<dla><C:\WINDOWS\system32\dla\tfswctrl.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IBMPRC><C:\IBMTOOLS\UTILS\ibmprc.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<QCWLICON><C:\Program Files\ThinkPad\ConnectUtilities\QCWLICON.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<PWRMGRTR><rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL,PwrMgrBkGndMonitor>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<BLOG><rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BatLogEx.DLL,StartBattLog>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMEKRMIG6.1><; C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<MSPY2002><C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<RavTask><"C:\Program Files\Rising\Rav\RavTask.exe" -system>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<ISUSPM Startup><; C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<ISUSScheduler><; "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SysHotKey_DFDD><C:\Program Files\Common Files\!SUNV\GraspWord\SysHotKey.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<RfwMain><"C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<XDeskWeather><E:\软件\专业软件\XDeskWeather\XDeskWeather\XDeskWeather.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<ATICCC><"C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<Userinit><C:\WINDOWS\system32\userinit.exe,>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><wbsys.dll>
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<Acrobat Assistant 7.0><; "D:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe">
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<DAEMON Tools><; "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 -noicon>
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<DesktopSprite><; C:\Program Files\SnowFox\DesktopSprite2\DesktopSprite.exe>
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<MSMSGS><; "C:\Program Files\Messenger\msmsgs.exe" /background>
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<MsnMsgr><; "C:\Program Files\MSN Messenger\msnmsgr.exe" /background>
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<TkBellExe><; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot>
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<YLive.exe><; C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe>
四国爱好者 - 2006-5-4 21:54:00
启动文件夹
服务
[Adobe LM Service / Adobe LM Service]
<"C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe"><Adobe Systems>
[Ati HotKey Poller / Ati HotKey Poller]
<C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[Autodesk Licensing Service / Autodesk Licensing Service]
<"C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe"><Autodesk>
[EvtEng / EvtEng]
<C:\Program Files\Intel\Wireless\Bin\EvtEng.exe><Intel Corporation>
[IBM Rapid Restore Ultra Service / IBM Rapid Restore Ultra Service]
<"C:\Program Files\IBM\IBM Rapid Restore Ultra\rrpcsb.exe"><>
[IBM PM Service / IBMPMSVC]
<C:\WINDOWS\system32\ibmpmsvc.exe><N/A>
[InstallDriver Table Manager / IDriverT]
<"C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe"><Macrovision Corporation>
[IBM PSA Access Driver Control / PsaSrv]
<C:\WINDOWS\system32\PsaSrv.exe><N/A>
[QCONSVC / QCONSVC]
<System32\QCONSVC.EXE><IBM Corp.>
[RegSrvc / RegSrvc]
<C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe><Intel Corporation>
[Rising Proxy Service / RfwProxySrv]
<c:\program files\rising\rfw\rfwproxy.exe><Beijing Rising Technology Co., Ltd.>
[Rising Personal Firewall Service / RfwService]
<c:\program files\rising\rfw\rfwsrv.exe><Beijing Rising Technology Co., Ltd.>
[Rising Process Communication Center / RsCCenter]
<"C:\Program Files\Rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
<"C:\Program Files\Rising\Rav\Ravmond.exe"><Beijing Rising Technology Co., Ltd.>
[Spectrum24 Event Monitor / S24EventMonitor]
<C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe><Intel Corporation >
[SoundMAX Agent Service / SoundMAX Agent Service (default)]
<C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe><Analog Devices, Inc.>
[IBM HDD APS Logging Service / TPHDEXLGSVC]
<System32\TPHDEXLG.EXE><IBM Corporation>
[IBM KCU Service / TpKmpSVC]
<C:\WINDOWS\system32\TpKmpSVC.exe><N/A>
[Protector Suite Virtual Token / vtserver]
<"C:\Program Files\Common Files\Virtual Token\vtserver.exe"><UPEK Inc.>
四国爱好者 - 2006-5-4 21:54:00
浏览器加载项
[ThunderIEHelper Class]
{0005A87D-D626-4B3A-84F9-1D9571695F55} <C:\WINDOWS\system32\xunleibho_v14.dll, Thunder Networking Technologies,LTD>
[AcroIEHlprObj Class]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[wmpdrm]
{0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\system32\wmpdrm.dll, N/A>
[MyIEHelper Class]
{16A770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper2006429_1100.dll, Microsoft Corporation>
[QQBrowserHelperObject Class]
{54EBD53A-9BC1-480B-966A-843A333CA162} <D:\Program Files\QQ2006\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[DriveLetterAccess]
{5CA3D70E-1895-11CF-8E15-001234567890} <C:\WINDOWS\system32\dla\tfswshx.dll, Sonic Solutions>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <D:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_001.dll, Thunder Networking Technologies,LTD>
[]
{A9930D97-9CF0-42A0-A10D-4F28836579D5} <C:\PROGRA~1\KuGoo3\KUGOO3~1.OCX, N/A>
[AcroIEToolbarHelper Class]
{AE7CD045-E861-484f-8273-0445EE161910} <D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, Adobe Systems Incorporated>
[]
{D24CF84E-46D7-4479-A4D8-D7E06E91FAC5} <C:\WINDOWS\system32\weatherdll.dll, N/A>
[东方快车]
{0B66EBA4-5F53-40e4-B17B-A0E9BC1E8D50} <C:\Program Files\!Sunv\DFKC2003\IEBand.DLL, 交大铭泰>
[信息检索(&R)]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
[更新 ThinkPad 软件]
{D1A4DEBD-C2EE-449f-B9FB-E8409F9A0BC5} <C:\Program Files\Lenovo\PkgMgr\\PkgMgr.exe, Lenovo Group Limited>
[易趣购物]
{DE607145-AC19-425e-867A-7D70ABDF119A} <http://click2.ad4all.net/url2/urlmanage/url.asp?id=5, N/A>
[QQIEFloatBarCfgCmd Class]
{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} <D:\Program Files\QQ2006\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[Adobe PDF]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} <D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, Adobe Systems Incorporated>
[卡卡上网安全助手]
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\KakaTool.dll, Beijing Rising Technology Co., Ltd.>
[东方快车]
{3EA85E14-887D-4E2F-91E2-3158CE58ED62} <C:\Program Files\!Sunv\DFKC2003\IEBand.DLL, 交大铭泰>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[Java Plug-in 1.4.2]
{8AD9C840-044E-11D1-B3E9-00805F499D93} <C:\Program Files\IBM\Java142\jre\bin\NPJPI142.dll, IBM.>
[GLWebAvt Control]
{C14D003A-DA41-4FEE-8204-62A94EAA29D1} <C:\WINDOWS\DOWNLO~1\GLWebAvt.ocx, >
[Java Plug-in 1.4.2]
{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} <C:\Program Files\IBM\Java142\jre\bin\NPJPI142.dll, IBM.>
[CTAdjust Class]
{DE22A7AB-A739-4C58-AD52-21F9CD6306B7} <C:\WINDOWS\Downloaded Program Files\clearadjust.dll, N/A>
[ThunderIEHelper Class]
{0005A87D-D626-4B3A-84F9-1D9571695F55} <C:\WINDOWS\system32\xunleibho_v14.dll, Thunder Networking Technologies,LTD>
[AcroIEHlprObj Class]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[wmpdrm]
{0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\system32\wmpdrm.dll, N/A>
[MyIEHelper Class]
{16A770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper2006429_1100.dll, Microsoft Corporation>
[东方快车]
{3EA85E14-887D-4E2F-91E2-3158CE58ED62} <C:\Program Files\!Sunv\DFKC2003\IEBand.DLL, 交大铭泰>
[Adobe PDF]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} <D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, Adobe Systems Incorporated>
[QQBrowserHelperObject Class]
{54EBD53A-9BC1-480B-966A-843A333CA162} <D:\Program Files\QQ2006\QQIEHelper.dll, 深圳市腾讯计算机系统有限公司>
[DriveLetterAccess]
{5CA3D70E-1895-11CF-8E15-001234567890} <C:\WINDOWS\system32\dla\tfswshx.dll, Sonic Solutions>
[Thunder Browser Helper]
{889D2FEB-5411-4565-8998-1DD2C5261283} <D:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_001.dll, Thunder Networking Technologies,LTD>
[]
{A9930D97-9CF0-42A0-A10D-4F28836579D5} <C:\PROGRA~1\KuGoo3\KUGOO3~1.OCX, N/A>
[AcroIEToolbarHelper Class]
{AE7CD045-E861-484F-8273-0445EE161910} <D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, Adobe Systems Incorporated>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[GLWebAvt Control]
{C14D003A-DA41-4FEE-8204-62A94EAA29D1} <C:\WINDOWS\DOWNLO~1\GLWebAvt.ocx, >
[]
{D24CF84E-46D7-4479-A4D8-D7E06E91FAC5} <C:\WINDOWS\system32\weatherdll.dll, N/A>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\macromed\flash\Flash.ocx, Macromedia, Inc.>
[卡卡上网安全助手]
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\KakaTool.dll, Beijing Rising Technology Co., Ltd.>
[Convert link target to Adobe PDF]
<res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[Convert link target to existing PDF]
<res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
[Convert selected links to Adobe PDF]
<res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html, N/A>
[Convert selected links to existing PDF]
<res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html, N/A>
[Convert selection to Adobe PDF]
<res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[Convert selection to existing PDF]
<res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
[Convert to Adobe PDF]
<res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[Convert to existing PDF]
<res://D:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
[上传到QQ网络硬盘]
<D:\Program Files\QQ2006\AddToNetDisk.htm, N/A>
[东方快车-保存翻译后的网页]
<C:\Program Files\!Sunv\DFKC2003\ExtSave.htm, N/A>
[使用KuGoo3下载(&K)]
<C:\Program Files\KuGoo3\KuGoo3DownX.htm, N/A>
[使用迅雷下载]
<D:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>
[使用迅雷下载全部链接]
<D:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>
[在Foxmail中添加该RSS频道/频道组]
<res://C:\WINDOWS\system32\fmrsslink.dll/201, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ自定义面板]
<D:\Program Files\QQ2006\AddPanel.htm, N/A>
[添加到QQ表情]
<D:\Program Files\QQ2006\AddEmotion.htm, N/A>
四国爱好者 - 2006-5-4 21:56:00
正在运行的进程
[PID: 916][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 964][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 996][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\Ati2evxx.dll] <ATI Technologies Inc.><6.14.10.4115>
[C:\PROGRA~1\COMMON~1\Stardock\mcpstub.dll] <Stardock><0, 0, 5, 2>
[C:\Program Files\IBM fingerprint software\psfus.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\psutil.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\Remote.dll] <UPEK Inc.><4.5.5.1108>
[C:\WINDOWS\system32\tphklock.dll] <N/A><N/A>
[C:\Program Files\Common Files\Virtual Token\passport.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\psdlg.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\resmgr.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\BGTcVer.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\BTcVer.dll] <UPEK Inc.><4.5.5.1108>
[D:\WINDOW~1\wbsrv.dll] <Stardock><5, 0, 0, 1>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 1044][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1056][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\pwdmon.dll] <N/A><N/A>
[PID: 1248][C:\Program Files\Common Files\Virtual Token\vtserver.exe] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\psutil.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\IBM fingerprint software\psfus.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\passport.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\DevTc.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\BTcVer.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\Remote.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\LocPass.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\AlgVer.dll] <UPEK Inc.><4.5.5.1108>
[C:\Program Files\Common Files\Virtual Token\resmgr.dll] <UPEK Inc.><4.5.5.1108>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 1268][C:\WINDOWS\system32\ibmpmsvc.exe] <N/A><N/A>
[PID: 1304][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4115>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2497>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 1316][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1416][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1536][C:\Program Files\Rising\Rav\CCenter.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 1568][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 1712][C:\Program Files\Intel\Wireless\Bin\EvtEng.exe] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] <Intel Corporation><9, 0, 1, 83>
[PID: 1744][C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe] <Intel Corporation ><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] <Intel Corporation><9, 0, 1, 83>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
四国爱好者 - 2006-5-4 21:57:00
[PID: 1800][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1940][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1972][C:\Program Files\Rising\Rav\Ravmond.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 19>
[C:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RsLog.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 18>
[C:\Program Files\Rising\Rav\HOOKSYS.dll] <Rising><18, 1, 0, 9>
[C:\Program Files\Rising\Rav\Scanner.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 28>
[C:\Program Files\Rising\Rav\libload.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\VirusLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\regmon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
[C:\Program Files\Rising\Rav\HookWeb.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\MemMon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 8>
[C:\Program Files\Rising\Rav\expscan.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\mPorts.dll] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 3>
[C:\Program Files\Rising\Rav\MailMon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\Program Files\Rising\Rav\SpamEng.dll] <N/A><18, 0, 0, 6>
[C:\Program Files\Rising\Rav\engine.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 26>
[C:\Program Files\Rising\Rav\PostTrt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 9>
[C:\Program Files\Rising\Rav\UnExe.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\ScanExec.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\ScanEx.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\NvFile.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\ScanMac.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\ScanSct.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[C:\Program Files\Rising\Rav\Unpacker.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\Program Files\Rising\Rav\ScanNet.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\Program Files\Rising\Rav\ExtOLE.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 256][c:\program files\rising\rfw\rfwsrv.exe] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 32>
[c:\program files\rising\rfw\RfwRule.dll] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 12>
[c:\program files\rising\rfw\rfwlog.dll] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 6>
[c:\program files\rising\rfw\Rfwdrv.dll] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 21>
[c:\program files\rising\rfw\MonDrv.dll] <rs><1, 0, 0, 4>
[c:\program files\rising\rfw\ProcLib.dll] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 9>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 756][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
[C:\WINDOWS\system32\adimon.dll] <Autodesk, Inc.><3,0,14,177>
[C:\WINDOWS\system32\heidi3.dll] <Autodesk, Inc.><3,0,14,177>
[C:\WINDOWS\system32\AdobePDF.dll] <Adobe Systems Incorporated.><7.0.0.00>
[D:\Program Files\Adobe\Acrobat 7.0\Distillr\adistres.dll] <Adobe Systems Incorporated.><7.0.0.2004121400>
[PID: 1124][C:\Program Files\Rising\Rav\RavStub.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 492][C:\PROGRA~1\COMMON~1\Stardock\SDMCP.exe] <Stardock><0, 0, 5, 11>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 1484][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4115>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2497>
[PID: 1756][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\AcSignIcon.dll] <Autodesk><16.2.54.0>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] <Autodesk><16.2.54.0>
[C:\PROGRA~1\COMMON~1\Stardock\MCPCore.dll] <Stardock><0, 0, 5, 4>
[D:\WindowBlinds5GE\tray.dll] <N/A><N/A>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL] <IBM Corp.><1, 0, 0, 0>
[C:\PROGRA~1\ThinkPad\UTILIT~1\US\PWRMGRRT.DLL] <N/A><N/A>
[C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRIF.DLL] <N/A><N/A>
[C:\WINDOWS\system32\Sensor.dll] <IBM Corporation><1.30.1.0>
[C:\WINDOWS\system32\OEMDSPIF.DLL] <ATI Technologies, Inc.><6.14.0012>
[D:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] <Adobe Systems, Inc.><7.0.0.0>
[C:\Program Files\ATI Technologies\ATI.ACE\atiacmxx.dll] <><1, 0, 0, 1>
[C:\WINDOWS\system32\xunleibho_v14.dll] <Thunder Networking Technologies,LTD><4, 6, 0, 62>
[D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll] <Adobe Systems Incorporated><7.0.0.2004121400>
[C:\WINDOWS\system32\msicn\msibm.dll] <广州傲讯信息科技有限公司><2, 0, 0, 1>
[D:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_001.dll] <Thunder Networking Technologies,LTD><5, 0, 0, 1>
[C:\WINDOWS\system32\weatherdll.dll] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\as.dll] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\bm.dll] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\bm.dll_被屏蔽木马] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\bm.dll_被屏蔽木马_被屏蔽木马] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\bm.dll_被屏蔽木马_被屏蔽木马_被屏蔽木马] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\bse.dll] <广州傲讯信息科技有限公司><2, 0, 0, 1>
[C:\WINDOWS\system32\msicn\plugins\bse.dll_被屏蔽木马] <广州傲讯信息科技有限公司><2, 0, 0, 1>
[C:\WINDOWS\system32\msicn\plugins\bse.dll_被屏蔽木马_被屏蔽木马] <广州傲讯信息科技有限公司><2, 0, 0, 1>
[C:\WINDOWS\system32\msicn\plugins\bse.dll_被屏蔽木马_被屏蔽木马_被屏蔽木马] <广州傲讯信息科技有限公司><2, 0, 0, 1>
[C:\WINDOWS\system32\msicn\plugins\lup.dll] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\lup.dll_被屏蔽木马] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\lup.dll_被屏蔽木马_被屏蔽木马] <N/A><N/A>
[C:\WINDOWS\system32\msicn\plugins\lup.dll_被屏蔽木马_被屏蔽木马_被屏蔽木马] <N/A><N/A>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[C:\WINDOWS\system32\dla\tfswshx.dll] <Sonic Solutions><1.04.08a>
[C:\WINDOWS\system32\tfswapi.dll] <Sonic Solutions><1.04.08a>
[C:\WINDOWS\system32\dla\tfswcres.dll] <Sonic Solutions><1.04.08a>
[C:\PROGRA~1\KuGoo3\KUGOO3~1.OCX] <N/A><N/A>
四国爱好者 - 2006-5-4 21:58:00
[PID: 2004][c:\program files\rising\rfw\RfwMain.exe] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 48>
[c:\program files\rising\rfw\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 23>
[c:\program files\rising\rfw\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[c:\program files\rising\rfw\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 1812][C:\WINDOWS\system32\TpShocks.exe] <IBM Corp.><1, 3, 2, 0>
[C:\Program Files\ThinkPad\TpShocks\MUI\0804\TpShocks.dll] <IBM Corp.><1, 3, 2, 0>
[C:\WINDOWS\system32\Sensor.dll] <IBM Corporation><1.30.1.0>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 1876][C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe] <N/A><N/A>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\Program Files\ThinkPad\PkgMgr\HOTKEY_2\tphk_2k.dll] <N/A><N/A>
[C:\WINDOWS\system32\Oemdspif.dll] <ATI Technologies, Inc.><6.14.0012>
[C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\tpfnf7.dll] <N/A><N/A>
[PID: 2036][C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe] <IBM Corp.><1, 0, 0, 0>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\PROGRA~1\ThinkPad\UTILIT~1\US\EzMApRes.dll] <N/A><N/A>
[PID: 324][C:\Program Files\Synaptics\SynTP\SynTPLpr.exe] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 420][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe] <Synaptics, Inc.><7.5.17.13 08Nov04>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynCOM.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\WINDOWS\system32\SynTPAPI.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 640][C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe] <Analog Devices, Inc.><5, 0, 2, 2>
[C:\Program Files\Analog Devices\SoundMAX\SMWDMIF.dll] <Analog Devices, Inc.><5, 0, 2, 008>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 620][C:\WINDOWS\system32\dla\tfswctrl.exe] <Sonic Solutions><1.04.08a>
[C:\WINDOWS\system32\tfswapi.dll] <Sonic Solutions><1.04.08a>
[C:\WINDOWS\system32\dla\tfswcres.dll] <Sonic Solutions><1.04.08a>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 1408][C:\IBMTOOLS\UTILS\ibmprc.exe] <IBM Corp.><1, 0, 0, 3>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 1916][C:\Program Files\ThinkPad\ConnectUtilities\QCWLICON.EXE] <IBM Corp.><3, 7, 1, 0>
[C:\Program Files\ThinkPad\ConnectUtilities\QCON.dll] <IBM Corp.><3, 7, 1, 0>
[C:\Program Files\ThinkPad\ConnectUtilities\MerlinC201.dll] <Novatel Wireless Inc.><1, 0, 0, 1>
[C:\Program Files\ThinkPad\ConnectUtilities\QCMurPI.DLL] <IBM Corp.><3, 7, 1, 0>
[C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\C8021CHS.dll] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\MurocAPI.dll] <Intel Corporation><9, 0, 1, 59>
[C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\C1XStngs.dll] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\Intel\Wireless\Bin\LSAWRAPI.dll] <Intel Corporation><9, 0, 1, 83>
[C:\Program Files\ThinkPad\ConnectUtilities\Res\SC\IconRes.dll] <N/A><N/A>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 1904][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
四国爱好者 - 2006-5-4 21:59:00
[PID: 1904][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL] <IBM Corp.><1, 0, 0, 0>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\PROGRA~1\ThinkPad\UTILIT~1\US\PWRMGRRT.DLL] <N/A><N/A>
[C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRIF.DLL] <N/A><N/A>
[C:\WINDOWS\system32\Sensor.dll] <IBM Corporation><1.30.1.0>
[C:\WINDOWS\system32\OEMDSPIF.DLL] <ATI Technologies, Inc.><6.14.0012>
[PID: 2120][C:\Program Files\Rising\Rav\RavTask.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 2160][C:\Program Files\Rising\Rav\Ravmon.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 17>
[C:\Program Files\Rising\Rav\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
[C:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 2220][C:\Program Files\Common Files\!SUNV\GraspWord\SysHotKey.exe] <N/A><N/A>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 2344][E:\软件\专业软件\XDeskWeather\XDeskWeather\XDeskWeather.exe] <www.CFishSoft.com><4.2.0.418>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 2412][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\WINDOWS\system32\msicn\msibm.dll] <广州傲讯信息科技有限公司><2, 0, 0, 1>
[PID: 2452][C:\Program Files\ThinkPad\PkgMgr\HOTKEY\TPONSCR.exe] <N/A><N/A>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 2460][C:\Program Files\ThinkPad\PkgMgr\HOTKEY_1\TpScrex.exe] <IBM Corporation><1.14>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
四国爱好者 - 2006-5-4 21:59:00
[PID: 3064][C:\Program Files\IBM\IBM Rapid Restore Ultra\rrpcsb.exe] <><4,1,0,4074>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 3092][C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE] <Microsoft Corporation><7.00.9466>
[PID: 3180][C:\WINDOWS\System32\QCONSVC.EXE] <IBM Corp.><3, 7, 1, 0>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 3236][C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe] <Intel Corporation><9, 0, 1, 83>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[PID: 3520][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe] <Analog Devices, Inc.><3, 2, 6, 0>
[PID: 3864][C:\WINDOWS\System32\TPHDEXLG.EXE] <IBM Corporation><1.0.0.1>
[PID: 3876][C:\WINDOWS\system32\TpKmpSVC.exe] <N/A><N/A>
[PID: 3912][C:\WINDOWS\system32\wdfmgr.exe] <Microsoft Corporation><5.2.3790.1230 built by: DNSRV(bld4act)>
[PID: 2872][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 5200][D:\Program Files\Maxthon\Maxthon.exe] <Maxthon International Ltd.><1, 5, 2, 21>
[D:\Program Files\Maxthon\maxzlib.dll] < ><1, 0, 0, 2>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\WINDOWS\system32\AcSignIcon.dll] <Autodesk><16.2.54.0>
[D:\Program Files\Maxthon\Plugin\FloatBar\FloatBar.dll] <><1, 8, 0, 0>
[C:\WINDOWS\system32\xunleibho_v14.dll] <Thunder Networking Technologies,LTD><4, 6, 0, 62>
[D:\Program Files\Maxthon\Services\RealTime\real_time.dll] <><1, 0, 0, 1>
[C:\Program Files\Rising\Rav\RavScrCh.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\WINDOWS\system32\WINABCX.IME] <PKUETI><5.22.216>
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] <Autodesk><16.2.54.0>
[C:\WINDOWS\system32\macromed\flash\Flash.ocx] <Macromedia, Inc.><7,0,19,0>
[C:\WINDOWS\system32\msicn\msibm.dll] <广州傲讯信息科技有限公司><2, 0, 0, 1>
[PID: 5796][C:\Program Files\Rising\Rav\Rav.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 61>
[C:\Program Files\Rising\Rav\PlugIn\RsPgScan.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 17>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\RavUI.Dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 57>
[C:\Program Files\Rising\Rav\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
[C:\Program Files\Rising\Rav\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\Scanner.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 28>
[C:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[C:\WINDOWS\system32\AcSignIcon.dll] <Autodesk><16.2.54.0>
[C:\Program Files\Rising\Rav\RavUIMsg.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 23>
[C:\Program Files\Rising\Rav\RavScrCh.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\Program Files\Rising\Rav\libload.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\VirusLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\MVEngine.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\Engine.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 26>
[C:\Program Files\Rising\Rav\ScanExec.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\Unpacker.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\Program Files\Rising\Rav\UnExe.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\ScanEx.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\PostTrt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 9>
[C:\Program Files\Rising\Rav\NvFile.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\ScanMac.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\ScanSct.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[C:\Program Files\Rising\Rav\ExtMail.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[C:\Program Files\Rising\Rav\ExtOLE.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\Program Files\Rising\Rav\ExtFile.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 17>
[C:\Program Files\Rising\Rav\ScanNet.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[PID: 5504][D:\Program Files\Thunder Network\Thunder\Program\Thunder5.exe] <Thunder Networking Technologies,LTD><5.1.6.198>
[D:\Program Files\Thunder Network\Thunder\Program\UpdateDownload.dll] <Thunder Networking Technologies,LTD><1, 0, 1, 3>
[D:\Program Files\Thunder Network\Thunder\Program\download_interface.dll] <Thunder Networking Technologies,LTD><1, 0, 2, 69>
[D:\Program Files\Thunder Network\Thunder\Program\log4cplus.dll] <><1, 0, 2, 1>
[D:\Program Files\Thunder Network\Thunder\Program\stlport_vc646.dll] <STLport Consulting, Inc.><4.6.2003.1031>
[D:\Program Files\Thunder Network\Thunder\Program\asyn_dns.dll] <N/A><N/A>
[D:\Program Files\Thunder Network\Thunder\Program\msgmanage.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 15>
[D:\Program Files\Thunder Network\Thunder\Program\historyinfo_manage.dll] <Thunder Networking Technologies,LTD><5, 2, 0, 148>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[D:\Program Files\Thunder Network\Thunder\Program\RegisterDll.dll] <Thunder Networking Technologies,LTD><1, 2, 0, 7>
[D:\Program Files\Thunder Network\Thunder\Program\FloatBar.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 2>
[D:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbedShell.dll] < ><1, 0, 0, 5>
[D:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbed.dll] < ><2, 1, 0, 29>
[D:\Program Files\Thunder Network\Thunder\Components\P4PClient\P4PClient.dll] <Thunder Networking Technologies,LTD><1, 0, 0, 4>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 13>
[D:\Program Files\Thunder Network\Thunder\Program\iTargetAd.dll] <N/A><N/A>
[PID: 4852][C:\WINDOWS\system32\NOTEPAD.EXE] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
[PID: 3652][C:\Documents and Settings\ljz\桌面\sreng2\SREng.exe] <Smallfrogs Studio><2.0.12.350>
[D:\WindowBlinds5GE\wblind.dll] <Stardock.Net, Inc><5.0>
[D:\WindowBlinds5GE\wbhelp.dll] <Stardock.Net, Inc><4.01>
[C:\WINDOWS\system32\SynTPFcs.dll] <Synaptics, Inc.><7.5.17.13 08Nov04>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
四国爱好者 - 2006-5-4 22:00:00
请高手帮我看看,,谢谢
我无邪 - 2006-5-4 22:05:00
关闭所有浏览窗口以及一些不必要的程序
运行System Repair Engineer,使用“系统修复,浏览器加载项”来删除以下选项。
wmpdrm]
{0E674588-66B7-4E19-9D0E-2053B800F69F} <C:\WINDOWS\system32\wmpdrm.dll, N/A>
[MyIEHelper Class]
{16A770A0-0E87-4278-B748-2460D64A8386} <C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper2006429_1100.dll, Microsoft Corporation>
以下这项不知,如果你也不知道,建议删除。
[]
{D24CF84E-46D7-4479-A4D8-D7E06E91FAC5} <C:\WINDOWS\system32\weatherdll.dll, N/A>
双击我的电脑--工具---文件夹选项--查看选项卡--单击选取"显示隐藏文件或文件夹"--
清除"隐藏受保护的操作系统文件(推荐)"复选框。在提示您确定更改时,单击“是”
然后找到如下文件并删除C:\WINDOWS\system32\wmpdrm.dll
C:\Documents and Settings\All Users\Application Data\Microsoft\IEHelper\IEHelper2006429_1100.dll
C:\WINDOWS\system32\weatherdll.dll
1
© 2000 - 2026 Rising Corp. Ltd.