瑞星卡卡安全论坛

首页 » 技术交流区 » 反病毒/反流氓软件论坛 » LOG续
风铃美人鱼 - 2007-1-19 22:09:00
==================================
正在运行的进程
[PID: 160][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.00.2195.6601]
[PID: 188][\??\C:\WINNT\system32\csrss.exe]  [Microsoft Corporation, 5.00.2195.6601]
[PID: 208][\??\C:\WINNT\system32\winlogon.exe]  [Microsoft Corporation, 5.00.2195.6970]
[PID: 236][C:\WINNT\system32\services.exe]  [Microsoft Corporation, 5.00.2195.6700]
    [C:\WINNT\system32\dmserver.dll]  [VERITAS Software Corp., 2195.6605.297.3]
[PID: 256][C:\WINNT\system32\lsass.exe]  [Microsoft Corporation, 5.00.2195.6902]
[PID: 488][C:\WINNT\system32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 520][C:\WINNT\system32\spoolsv.exe]  [Microsoft Corporation, 5.00.2195.7059]
[PID: 552][C:\WINNT\System32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 568][C:\WINNT\system32\hidhook.exe]  [Shanda Computer (Shanghai) Co., Ltd., 1, 5, 17, 90]
[PID: 612][C:\WINNT\system32\nvsvc32.exe]  [NVIDIA Corporation, 6.14.01.4345]
[PID: 648][C:\WINNT\system32\regsvc.exe]  [Microsoft Corporation, 5.00.2195.6701]
[PID: 676][C:\WINNT\system32\Svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
    [c:\winnt\system32\drivers\service.dll]  [N/A, N/A]
    [c:\winnt\system32\drivers\ms_restore.dll]  [Microsoft Corporation All rights reserved, 1, 0, 0, 1]
    [c:\winnt\system32\drivers\Old_service.dll]  [N/A, N/A]
[PID: 664][C:\WINNT\system32\MSTask.exe]  [Microsoft Corporation, 4.71.2195.6920]
[PID: 720][C:\WINNT\system32\sdus\SDUSvc.exe]  [Shanda Networking Co.,Ltd, 1.6.8.409]
    [C:\WINNT\system32\sdus\SDUCore.dll]  [Shanda Networking Co.,Ltd, 1.6.8.409]
    [C:\WINNT\system32\sdus\SDUComm.dll]  [上海盛大网络发展有限公司, 1.0.8.335]
    [C:\WINNT\system32\sdus\CrashProcess.dll]  [盛大网络发展有限公司, 1.0.8.335]
[PID: 848][C:\WINNT\System32\WBEM\WinMgmt.exe]  [Microsoft Corporation, 1.50.1085.0100]
[PID: 864][C:\WINNT\System32\mspmspsv.exe]  [Microsoft Corporation, 7.01.00.3055]
[PID: 884][C:\WINNT\system32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 892][C:\WINNT\System32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
[PID: 1040][C:\WINNT\Explorer.exe]  [Microsoft Corporation, 5.00.3700.6690]
    [C:\WINNT\system32\msicn\msibm.dll]  [广州傲讯信息科技有限公司, 2, 2, 0, 3]
    [C:\WINNT\system32\msicn\plugins\lup.dll]  [广州傲讯信息科技有限公司, 2, 2, 0, 2]
    [C:\WINNT\system32\msicn\plugins\bm.dll]  [广州傲讯信息科技有限公司, 2, 2, 0, 2]
    [C:\WINNT\system32\msicn\plugins\as.dll]  [广州傲讯信息科技有限公司, 2, 2, 0, 3]
    [C:\WINNT\system32\msicn\plugins\bse.dll]  [广州傲讯信息科技有限公司, 2, 2, 0, 2]
    [D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll]  [Adobe Systems Incorporated, 7.0.0.2004121400]
    [D:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll]  [Adobe Systems, Inc., 7.0.0.0]
    [C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll]  [Nokia, 6, 41, 64, 0]
    [C:\Program Files\Nokia\Nokia PC Suite 6\PCSCM.dll]  [Nokia, 6, 41, 22, 0]
    [C:\Program Files\WinRAR\rarext.dll]  [N/A, N/A]
    [C:\Program Files\UltraEdit\ue32ctmn.dll]  [, 1.0]
    [C:\Program Files\AntiViral Toolkit Pro\avpshlex.dll]  [N/A, N/A]
[PID: 1356][C:\WINNT\system32\sstray.exe]  [NVIDIA Corporation, 1.00.00.0307]
    [C:\WINNT\system32\SSTraZHC.dll]  [NVIDIA Corporation, 1.00.00.0307]
[PID: 1384][C:\Program Files\Winamp\Winampa.exe]  [N/A, N/A]
[PID: 1392][C:\Program Files\Nokia\Nokia PC Suite 6\Launch Application 2.exe]  [Nokia, 6, 41, 22, 3]
    [C:\Program Files\Nokia\Nokia PC Suite 6\PCSCM.dll]  [Nokia, 6, 41, 22, 0]
    [C:\Program Files\Nokia\Nokia PC Suite 6\PCSL.dll]  [Nokia, 6, 41, 3, 0]
    [C:\Program Files\Nokia\Nokia PC Suite 6\Lang\LaunchApplication2_chi-sc.NLR]  [, 6, 41, 4, 0]
    [C:\Program Files\Common Files\PCSuite\ConfServer\ConfServer.dll]  [Nokia, 6, 41, 6, 0]
[PID: 1400][C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE]  [Nokia Mobile Phones Ltd., 6, 41, 85, 8]
    [C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\Lang\DataLayer_chi-sc.nlr]  [Nokia, 6, 41, 5, 0]
[PID: 1388][C:\Program Files\Ipwindows\ipwins.exe]  [N/A, N/A]
    [C:\Program Files\Ipwindows\ipwins.dll]  [N/A, N/A]
[PID: 1364][C:\WINNT\vsnpstd3.exe]  [, 1, 0, 2, 2]
[PID: 1412][C:\Program Files\Common Files\{98F18B27-0600-2052-0324-031114020056}\Update.exe]  [N/A, N/A]
    [C:\Program Files\Common Files\{98F18B27-0600-2052-0324-031114020056}\System.dll]  [N/A, N/A]
[PID: 1424][C:\Program Files\AntiViral Toolkit Pro\avpm.exe]  [Kaspersky Labs., 3.5.133.2410]
    [C:\Program Files\Common Files\AVP Shared\CCClient.dll]  [Kaspersky Labs., 3.5.1.2]
    [C:\Program Files\Common Files\AVP Shared\IPC.dll]  [Kaspersky Labs., 1.42.0.0]
[PID: 1428][C:\Program Files\Common Files\Sonic Shared\CineTray.exe]  [Sonic Solutions, 2.1.00.0041]
[PID: 1376][C:\WINNT\system32\stisvc.exe]  [Microsoft Corporation, 5.00.2195.6656]
[PID: 1476][C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE]  [Nokia., 6, 41, 20, 0]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLIrDAMM.dll]  [Nokia Corp., 6, 41, 11, 0]
    [C:\Program Files\Common Files\PCSuite\Transports\NclTools.dll]  [Nokia., 6, 41, 5, 1]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLRSMM.dll]  [Nokia, 6, 41, 15, 0]
    [C:\Program Files\Common Files\PCSuite\Transports\NCLUSBMM.dll]  [Nokia, 6, 41, 17, 0]
[PID: 1216][D:\Program Files\STerm2549\STerm.exe]  [Develop Studio, 2, 0, 0, 0]
    [C:\WINNT\system32\PYJJU.IME]  [北京六合源软件技术有限公司, 2, 2, 0, 4]
[PID: 1636][C:\WINNT\system32\wuauclt.exe]  [Microsoft Corporation, 5.8.0.2469 built by: lab01_n(wmbla)]
[PID: 1532][C:\WINNT\system32\PYINTAU.EXE]  [北京六合源软件技术有限公司, 2, 2, 1, 4]
    [C:\WINNT\system32\PYCODEU.dll]  [北京六合源软件技术有限公司, 2, 2, 0, 4]
    [C:\WINNT\system32\PYJJCZU.dll]  [北京六合源软件技术有限公司, 2, 2, 0, 0]
[PID: 1516][D:\Software\NETWORK TOOLS\SREng\SREng.exe]  [Smallfrogs Studio, 2.2.6.605]

==================================
文件关联
.TXT  Error. [MED.txtfile]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINNT\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  Error. [UltraEdit.ini]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost

==================================
1
查看完整版本: LOG续