yukepgp - 2006-10-17 17:25:00
【回复“长空一长箭”的帖子】
==================================
浏览器加载项
[IeCatch2 Class]
{A5366673-E8CA-11D3-9CD9-0090271D075B} <E:\FlashGet\jccatch.dll, Amaze Soft>
[AcroIEToolbarHelper Class]
{AE7CD045-E861-484f-8273-0445EE161910} <E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll, Adobe Systems Incorporated>
[CnsHook Class]
{D157330A-9EF3-49F8-9A67-4141AC41ADD4} <C:\WINNT\downlo~1\CnsHook.dll, 北京三七二一科技有限公司>
[Yahoo 1G电邮]
{507F9113-CD77-4866-BA92-0E86DA3D0B97} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomail, N/A>
[寻宝乐趣多]
{59BC54A2-56B3-44a0-93E5-432D58746E26} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=taobao, N/A>
[雅虎助手]
{5D73EE86-05F1-49ed-B850-E423120EC338} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist, N/A>
[信息检索(&R)]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <E:\MICROS~1\visio\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
[金山词霸]
{9A687CA6-D585-4947-9ED9-BE96071F5CD9} <e:\Kingsoft\POWERW~1\XDictExB.dll, 金山软件股份有限公司>
[情景聊天]
{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomsg, N/A>
[]
{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair, N/A>
[]
{FD00D911-7529-4084-9946-A29F1BDF4FE5} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean, N/A>
[电台(&R)]
{8E718888-423F-11D2-876E-00A0C9082467} <C:\WINNT\system32\msdxm.ocx, Microsoft Corporation>
[Edit Class]
{0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} <C:\WINNT\system32\CMBEdit.dll, >
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINNT\system32\wuweb.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINNT\system32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[转换为 Adobe PDF]
<res://E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[转换为现有 PDF]
<res://E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
[转换选定的链接为 Adobe PDF]
<res://E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html, N/A>
[转换选定的链接为现有 PDF]
<res://E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html, N/A>
[转换选项为 Adobe PDF]
<res://E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[转换选项为现有 PDF]
<res://E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
[转换链接目标为 Adobe PDF]
<res://E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html, N/A>
[转换链接目标为现有 PDF]
<res://E:\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html, N/A>
==================================
正在运行的进程
[PID: 164][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.00.2195.6601]
[PID: 196][\??\C:\WINNT\system32\csrss.exe] [Microsoft Corporation, 5.00.2195.6601]
[PID: 216][\??\C:\WINNT\system32\winlogon.exe] [Microsoft Corporation, 5.00.2195.6970]
[PID: 244][C:\WINNT\system32\services.exe] [Microsoft Corporation, 5.00.2195.6700]
[PID: 256][C:\WINNT\system32\lsass.exe] [Microsoft Corporation, 5.00.2195.6902]
[PID: 428][E:\rising\Rising\Rfw\rfwsrv.exe] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 33]
[E:\rising\Rising\Rfw\RfwRule.dll] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 13]
[E:\rising\Rising\Rfw\rfwlog.dll] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 6]
[E:\rising\Rising\Rfw\Rfwdrv.dll] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 21]
[E:\rising\Rising\Rfw\MonDrv.dll] [rs, 1, 0, 0, 4]
[E:\rising\Rising\Rfw\ProcLib.dll] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 9]
[E:\rising\Rising\Rfw\mPorts.dll] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 3]
[PID: 504][C:\WINNT\System32\nvsvc32.exe] [NVIDIA Corporation, 6.14.10.4403]
[PID: 528][C:\WINNT\System32\tcpsvcs.exe] [Microsoft Corporation, 5.00.2134.1]
[PID: 536][C:\WINNT\system32\stisvc.exe] [Microsoft Corporation, 5.00.2195.6656]
[PID: 580][f:\Tornado2.2\host\x86-win32\bin\wtxregds.exe] [N/A, N/A]
[f:\Tornado2.2\host\x86-win32\bin\libwpwr.dll] [N/A, N/A]
[f:\Tornado2.2\host\x86-win32\bin\wtxapi.dll] [N/A, N/A]
[f:\Tornado2.2\host\x86-win32\bin\WINRPC32.dll] [NobleNet, Inc, 3.00D]
[PID: 940][C:\WINNT\Explorer.EXE] [Microsoft Corporation, 5.00.3700.6690]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\WINNT\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 21]
[E:\WinRAR\rarext.dll] [N/A, N/A]
[E:\Beyond Compare 2\BCShellEx.dll] [Scooter Software, 2.0.0.0]
[C:\WINNT\downlo~1\CnsHook.dll] [北京三七二一科技有限公司, 1, 0, 2, 4]
[E:\FlashGet\jccatch.dll] [Amaze Soft, 1, 1, 4, 0]
[C:\WINNT\downlo~1\CnsMinIO.dll] [北京三七二一科技有限公司, 1, 0, 3, 4]
[C:\WINNT\downlo~1\cnsio.dll] [北京三七二一科技有限公司, 1, 0, 2, 5]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[E:\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
yukepgp - 2006-10-17 17:25:00
【回复“yukepgp”的帖子】
[PID: 952][E:\rising\Rising\Rfw\RfwMain.exe] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 52]
[E:\rising\Rising\Rfw\RsGuiLib.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 23]
[E:\rising\Rising\Rfw\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[E:\rising\Rising\Rfw\PngDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[PID: 1128][C:\WINNT\system32\Rundll32.exe] [Microsoft Corporation, 5.00.2134.1]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\WINNT\downlo~1\CnsMinIO.dll] [北京三七二一科技有限公司, 1, 0, 3, 4]
[C:\WINNT\downlo~1\cnsio.dll] [北京三七二一科技有限公司, 1, 0, 2, 5]
[C:\WINNT\downlo~1\CnsMinEx.dll] [国风因特软件(北京)有限公司, 1, 0, 3, 1]
[PID: 1120][C:\WINNT\system32\RunDll32.exe] [Microsoft Corporation, 5.00.2134.1]
[C:\WINNT\system\cmicnfg.cpl] [C-Media Corporation, 1, 0, 0, 17]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[PID: 908][E:\daemon\daemon.exe] [VeNoM386 and SwENSkE, 3.20.0.0]
[C:\WINNT\daemon.dll] [Generic, 3.20.0.0]
[E:\daemon\PFCTOC.DLL] [Padus(R), Inc., 1, 0, 0, 12]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[PID: 848][C:\Program Files\Logitech\Video\LogiTray.exe] [Logitech Inc., 8.0.3.1112]
[C:\Program Files\Logitech\Video\QCUI2.dll] [Logitech Inc., 8.0.3.1112]
[C:\Program Files\Logitech\Video\LTWVC12n.dll] [LEAD Technologies, Inc., 12.1.0.011]
[C:\Program Files\Logitech\Video\LQCUI2.dll] [Logitech Inc., 8.0.3.1112]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\Program Files\Logitech\Video\LLogTray.dll] [Logitech Inc., 8.0.3.1112]
[C:\WINNT\downlo~1\CnsHook.dll] [北京三七二一科技有限公司, 1, 0, 2, 4]
[C:\WINNT\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 21]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[PID: 780][E:\rising\Rav\RavTask.exe] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 22]
[E:\rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[E:\rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[E:\rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 11]
[E:\rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[PID: 968][C:\WINNT\system32\RUNDLL32.EXE] [Microsoft Corporation, 5.00.2134.1]
[C:\WINNT\System32\NVMCTRAY.DLL] [NVIDIA Corporation, 6.14.10.4403]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[PID: 964][C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe] [Logitech, 2.1.2.0]
[C:\Program Files\Logitech\Desktop Messenger\8876480\7.2.0.137-8876480SL\Program\backWeb.dll] [BackWeb Technologies Inc., Version 7.2.0 (Build 137R)]
[C:\Program Files\Logitech\Desktop Messenger\8876480\7.2.0.137-8876480SL\Program\bwsec.dll] [BackWeb, Version 4.2.0 (Build 137R)]
[C:\Program Files\Logitech\Desktop Messenger\8876480\7.2.0.137-8876480SL\Program\clntutil.dll] [N/A, N/A]
[C:\PROGRA~1\Logitech\DESKTO~1\8876480\720~1.137\program\EN\ClientRC.dll] [BackWeb Technologies Inc., Version 7.2.0 (Build 137R)]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWfiles-8876480.dll] [BackWeb Technologies Inc. , Version 7.2.0 (Build 137R)]
[C:\Program Files\Logitech\Desktop Messenger\8876480\7.2.0.137-8876480SL\Program\BWfiles.dll] [, Version 7.2.0 (Build 137R)]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWDocMapExt-8876480.dll] [BackWeb Technologies Inc. , Version 7.2.0 (Build 137R)]
[C:\Program Files\Logitech\Desktop Messenger\8876480\7.2.0.137-8876480SL\Program\BWDocMapExt.dll] [, Version 7.2.0 (Build 137R)]
[C:\Program Files\Logitech\Desktop Messenger\8876480\Program\bwscriptext-8876480.dll] [BackWeb Technologies Inc. , Version 7.2.0 (Build 137R)]
[C:\Program Files\Logitech\Desktop Messenger\8876480\7.2.0.137-8876480SL\Program\bwscriptext.dll] [, Version 7.2.0 (Build 137R)]
[E:\rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[C:\Program Files\Logitech\Desktop Messenger\8876480\Program\SyncExt.dll] [Logitech, 2.01.02]
[PID: 728][C:\WINNT\system32\ctfmon.exe] [Microsoft Corporation, 1.00.2409.34 built by: Lab06_N]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[PID: 664][E:\Adobe\Acrobat 7.0\Acrobat\acrobat_sl.exe] [Adobe Systems Incorporated, 7.0.0.0]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[PID: 292][E:\Adobe\Acrobat 7.0\Reader\reader_sl.exe] [Adobe Systems Incorporated, 7.0.5.2005092300]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[PID: 856][C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe] [Microsoft Corporation, 2000.080.0760.00]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[PID: 1116][E:\rising\Rav\Ravmon.exe] [Beijing Rising Technology Co., Ltd., 18, 0, 1, 33]
[E:\rising\Rav\RsGuiLib.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 26]
[E:\rising\Rav\BWList.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 19]
[E:\rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[E:\rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 11]
[E:\rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[E:\rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[E:\rising\Rav\PngDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[PID: 280][E:\WinRAR\WinRAR.exe] [N/A, N/A]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[PID: 1240][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.875\SREng\SREng.exe] [Smallfrogs Studio, 2.2.6.605]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\IadHide5.dll] [BackWeb, Version 7.2.0 (Build 137R)]
[C:\WINNT\downlo~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 1]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.875\SREng\Plugins\SRECXTMG.SRE] [Smallfrogs Studio, 1, 5, 0, 55]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINNT\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS Error. [C:\WINNT\system32\WScript.exe "%1" %*]
.JS Error. [C:\WINNT\system32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
==================================
© 2000 - 2026 Rising Corp. Ltd.