瑞星卡卡安全论坛

首页 » 技术交流区 » 系统软件 » 各位大虾可以帮我分析一下日志吗?
JerryVic - 2006-6-25 14:38:00
[编号:92]
[名称:C:\Program Files\Tencent\QQ\FlashAvatarDll.dll]
[类型:已加载DLL]
[内容:FlashAvatarDll Dynamic Link Library 版权所有 (C) 2005]
[编号:93]
[名称:C:\Program Files\Tencent\QQ\ImageOle.dll]
[类型:已加载DLL]
[内容:TODO: <Product name> TODO: (c) <Company name>.  All rights reserved.]
[编号:94]
[名称:C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx]
[类型:已加载DLL]
[内容:Shockwave Flash Copyright ? 1996-2005 Macromedia, Inc.]
[编号:95]
[名称:C:\Program Files\Tencent\QQ\QQSceneMng.dll]
[类型:已加载DLL]
[内容:未知]
[编号:96]
[名称:C:\Program Files\Tencent\QQ\QRingMng.dll]
[类型:已加载DLL]
[内容:未知]
[编号:97]
[名称:C:\Program Files\Tencent\QQ\PhoneAPI.dll]
[类型:已加载DLL]
[内容:PhoneAPI Dynamic Link Library 版权所有 (C) 2005]
[编号:98]
[名称:C:\Program Files\Tencent\QQ\DialerAllinOne.dll]
[类型:已加载DLL]
[内容:tencent DialerAllInOne Copyright ? 2005]
[编号:99]
[名称:C:\Program Files\Tencent\QQ\LongConnection.dll]
[类型:已加载DLL]
[内容:tencent QQ Platform Copyright ? 2005]
[编号:100]
[名称:C:\Program Files\Tencent\QQ\QQAvatar.dll]
[类型:已加载DLL]
[内容:未知]
[编号:101]
[名称:C:\Program Files\Tencent\QQ\GroupConnection.dll]
[类型:已加载DLL]
[内容:GroupConnection Dynamic Link Library 版权所有 (C) 2005]
[编号:102]
[名称:C:\Program Files\Tencent\QQ\BQQApplication.dll]
[类型:已加载DLL]
[内容:未知]
[编号:103]
[名称:C:\Program Files\Tencent\QQ\CommercesMng.dll]
[类型:已加载DLL]
[内容:CommercesMng Dynamic Link Library 版权所有 (C) 2003]
[编号:104]
[名称:C:\Program Files\Tencent\QQ\PersonalDesktop.dll]
[类型:已加载DLL]
[内容:PersonalDesktop Module 版权所有 (C) 1998-2001  深圳市腾讯计算机系统公司]
[编号:105]
[名称:C:\Program Files\Tencent\QQ\QQUdpGetFileLib.dll]
[类型:已加载DLL]
[内容:tencent QQUdpGetFileLib Copyright ? 2005]
[编号:106]
[名称:C:\Program Files\Tencent\QQ\QQAddr.dll]
[类型:已加载DLL]
[内容:腾讯通讯录 版权所有 (C) 2004 深圳市腾讯计算机系统有限公司]
[编号:107]
[名称:C:\Program Files\Tencent\QQ\QQSysMsgMng.dll]
[类型:已加载DLL]
[内容:未知]
[编号:108]
[名称:C:\Program Files\Tencent\QQ\QQPhoneHelper.dll]
[类型:已加载DLL]
[内容:QQPhoneHelper 腾讯科技(深圳)有限公司 版权所有 (C) 2005]
[编号:109]
[名称:C:\Program Files\Yahoo!\Assistant\yNotifier.dll]
[类型:已加载DLL]
[内容:Notifier Module Copyright 2004]
[编号:110]
[名称:C:\Program Files\3721\ske\fsk.dll]
[类型:已加载DLL]
[内容:fsk by Genghis.Tang(2005.3) Copyright 2004]
[编号:111]
[名称:C:\Program Files\3721\ske\wmpns.dll]
[类型:已加载DLL]
内容:--- Copyright ? 2004]
[编号:112]
[名称:C:\Program Files\木马防御大师\ScanEngine.dll]
[类型:已加载DLL]
[内容:ScanEngine 完美病毒引擎文件 版权所有 (C) 2005]
[编号:113]
[分隔符:---------------------------------------------------------------------]
[编号:114]
[名称:ctfmon.exe]
[类型:开机启动]
[内容:C:\WINDOWS\system32\ctfmon.exe]
[编号:115]
[名称:Super Rabbit IEPro]
[类型:开机启动]
[内容:C:\Program Files\Super Rabbit\MagicSet\SRIECLI.EXE /LOAD]
[编号:116]
分隔符:---------------------------------------------------------------------]
[编号:117]
[名称:AFD]
[类型:服务:未知]
[内容:\SystemRoot\System32\drivers\afd.sys]
[编号:118]
[名称:Service for Realtek AC97 Audio (WDM)]
[类型:服务:Windows (R) WDM driver for Realtek AC'97 Audio(HRTF data Copyright 1994 by MIT Media Lab) Copyright (c) Realtek Semiconductor Corp.1998-2004]
[内容:C:\WINDOWS\system32\drivers\alcxwdm.sys]
[编号:119]
[名称:Antivirus Filter Driver]
[类型:服务:未知]
[内容:\SystemRoot\system32\drivers\av5flt.sys]
[编号:120]
[名称:CnsMinKP]
[类型:服务:KMD Copyright (c) 3721 Corporation.]
[内容:C:\WINDOWS\system32\drivers\cnsminkp.sys]
[编号:121]
[名称:Panda CPoint Driver]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\drivers\cpoint.sys]
[编号:122]
[名称:DCOM Server Process Launcher]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\svchost ]
[编号:123]
[名称:IMMDRV]
[类型:服务:IMMDRV Copyright (C) 2002-2005 FILSECLAB Corp.]
[内容:c:\program files\filseclab\twister\immdrv.sys]
[编号:124]
[名称:kavsvc]
[类型:服务:Kaspersky Anti-Virus Personal Pro Copyright ? Kaspersky Lab 1996-2005.]
[内容:"C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\kavsvc.exe"]
[编号:125]
[名称:Kl1]
[类型:服务:Kaspersky Anti-Virus Personal Copyright ? Kaspersky Lab 1996-2005.]
[内容:C:\WINDOWS\system32\drivers\kl1.sys]
[编号:126]
[名称:Klif]
[类型:服务:KLIF Copyright (c) Kaspersky Labs 1999-2004]
[内容:C:\WINDOWS\system32\drivers\klif.sys]
[编号:127]
[名称:Klmc]
[类型:服务:Kaspersky Anti-Virus Personal Pro Copyright ? Kaspersky Lab 1996-2005.]
[内容:C:\WINDOWS\system32\drivers\klmc.sys]
[编号:128]
[名称:KWatch3]
[类型:服务:Kingsoft Antivirus Copyright (C) 2000 - 2004 Kingsoft Corporation]
[内容:c:\windows\system32\drivers\kwatch3.sys]
[编号:129]
[名称:npkcrypt]
[类型:服务:nProtect KeyCrypt Driver Copyright (C) INCA Internet. 2000-2005]
[内容:c:\program files\tencent\qq\npkcrypt.sys]
[编号:130]
[名称:NVIDIA nForce Networking Controller Driver]
[类型:服务:NVENETFD Copyright ? 2001-2003 NVIDIA Corporation]
[内容:C:\WINDOWS\system32\drivers\nvenetfd.sys]
[编号:131]
[名称:NVIDIA Network Bus Enumerator]
[类型:服务:NVNETBUS Copyright ? 2001-2003 NVIDIA Corporation]
[内容:C:\WINDOWS\system32\drivers\nvnetbus.sys]
[编号:132]
[名称:NVIDIA Display Driver Service]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\nvsvc32.exe]
[编号:133]
[名称:Panda Process Protection Driver]
[类型:服务:PandaShield Copyright ? 2003, Panda Software]
[内容:c:\windows\system32\drivers\pavproc.sys]
[编号:134]
[名称:Panda Process Protection Service]
[类型:服务:PandaShield Copyright ? 2004, Panda Software]
[内容:"C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe"]
[编号:135]
[名称:Panda IManager Service]
[类型:服务:Panda Antivirus ? Panda Software 2005.]
[内容:"C:\Program Files\Panda Software\熊猫卫士钛金版2005\psimsvc.exe"]
[编号:136]
[名称:R2A]
[类型:服务:未知]
[内容:c:\windows\system32a2.sys]
[编号:137]
[名称:Remote Procedure Call (RPC)]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\svchost ]
[编号:138]
[名称:Secdrv]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\drivers\secdrv.sys]
[编号:139]
[名称:Teefer for NT]
[类型:服务:未知]
[内容:\SystemRoot\SYSTEM32\Drivers\Teefer.sys]
[编号:140]
[名称:Terminal Services]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\svchost ]
[编号:141]
[名称:TSP]
[类型:服务:KLIF Copyright (c) Kaspersky Labs 1999-2004]
[内容:c:\windows\system32\drivers\klif.sys]
[编号:142]
[名称:VCD VNC Virtual Network Adapter]
[类型:服务:VNN Client Adapter Copyright (C) VNN B.J. Corp.2002-2005]
[内容:C:\WINDOWS\system32\drivers\vcdvnic.sys]
[编号:143]
[名称:WmRegProDrv]
[类型:服务:未知]
[内容:C:\WINDOWS\system32\drivers\wmregprodrv.sys]
[编号:144]
[名称:Windows 套接字 2 .0 Non-IFS 服务提供程序支持环境]
[类型:服务:未知]
[内容:\SystemRoot\System32\drivers\ws2ifsl.sys]
[编号:145]
[分隔符:---------------------------------------------------------------------]
[编号:146]
[名称:Start Page]
[类型:IE主页-当前用户]
[内容:about:blank]
[编号:147]
[名称:Search Page]
[类型:IE搜索-当前用户]
[内容:abou ]
[编号:148]
[名称:Start Page]
[类型:IE主页-所有用户]
[内容:about:blank]
[编号:149]
[名称:Search Page]
[类型:IE搜索-所有用户]
[内容:abou ]
[编号:150]
[名称:Default_Page_URL]
[类型:默认IE主页-所有用户]
[内容:http://www.microsoft.com/windows/ie_intl/cn/start/]
[编号:151]
[名称:Default_Search_URL]
[类型:默认IE搜索-所有用户]
[内容:http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch]
[编号:152]
[分隔符:---------------------------------------------------------------------]
[编号:153]
[名称:WinSearch]
[类型:IE 嵌入对象]
[内容:C:\WINDOWS\system32\winsearch.dll]
[编号:154]
[名称:AntiFish Class]
[类型:IE 嵌入对象]
[内容:C:\Program Files\Yahoo!\Assistant\Assist\yAngling.dll]
[编号:155]
[名称:雅虎助手]
[类型:IE 嵌入对象]
[内容:C:\Program Files\Yahoo!\Assistant\Assist\yasbar.dll]
[编号:156]
[名称:CnsHook Class]
[类型:IE 嵌入对象]
[内容:C:\WINDOWS\downlo~1\cnshook.dll]
[编号:157]
[名称:超级兔子上网精灵]
[类型:IE 嵌入对象]
[内容:C:\PROGRA~1\SUPERR~1\MagicSet\HAOKAN~1.DLL]
[编号:158]
[分隔符:---------------------------------------------------------------------]
[编号:159]
[名称:{507F9113-CD77-4866-BA92-0E86DA3D0B97}]
[类型:IE 扩展按钮]
[内容:Yahoo 1G电邮 路径:http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomail]
[编号:160]
[名称:{59BC54A2-56B3-44a0-93E5-432D58746E26}]
[类型:IE 扩展按钮]
[内容:寻宝乐趣多 路径:http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=taobao]
[编号:161]
[名称:{5D73EE86-05F1-49ed-B850-E423120EC338}]
[类型:IE 扩展按钮]
[内容:雅虎助手 路径:http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist]
[编号:162]
[名称:{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96}]
[类型:IE 扩展按钮]
[内容:情景聊天 路径:http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomsg]
[编号:163]
[名称:{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71}]
[类型:IE 扩展按钮]
[内容:http 路径:http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair]
[编号:164]
[名称:{FD00D911-7529-4084-9946-A29F1BDF4FE5}]
[类型:IE 扩展按钮]
[内容:http 路径:http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean]
编号:165]
[分隔符:---------------------------------------------------------------------]
[编号:166]
[名称:&使用迅雷下载]
[类型:IE 右键按钮]
[内容: 路径:\:]
[编号:167]
[名称:&使用迅雷下载全部链接]
[类型:IE 右键按钮]
[内容: 路径:\:]
[编号:168]
[名称:YOK搜索]
[类型:IE 右键按钮]
[内容: 路径:\:]
[编号:169]
[名称:上传到QQ网络硬盘]
[类型:IE 右键按钮]
[内容: 路径:\:]
[编号:170]
[名称:添加到QQ自定义面板]
[类型:IE 右键按钮]
[内容: 路径:\:]
[编号:171]
[名称:添加到QQ表情]
[类型:IE 右键按钮]
[容: 路径:\:]
[编号:172]
[名称:用QQ彩信发送该图片]
[类型:IE 右键按钮]
[内容: 路径:\:]
[编号:173]
[分隔符:---------------------------------------------------------------------]
[编号:174]
[名称:]
[类型:EXE关联]
[内容:"%1" %*]
[编号:175]
[名称:]
[类型:TXT关联]
[内容:%SystemRoot%\system32\NOTEPAD.EXE %1]
[编号:176]
[名称:]
[类型:vbs关联]
[内容:%SystemRoot%\System32\WScript.exe "%1" %*]
[编号:177]
[名称:]
[类型:Js关联]
[内容:%SystemRoot%\System32\WScript.exe "%1" %*]
[编号:178]
[名称:]
[类型:htmlfile关联]
[内容:"C:\Program Files\Internet Explorer\iexplore.exe" -nohome]
[编号:179]
[名称:]
[类型:HTTP协议]
[内容:"C:\Program Files\Internet Explorer\iexplore.exe" -nohome]
[编号:180]
[名称:]
[类型:FTP协议]
[内容:"C:\Program Files\Internet Explorer\iexplore.exe" %1]



1
查看完整版本: 各位大虾可以帮我分析一下日志吗?