瑞星卡卡安全论坛
Dennis蛋蛋 - 2007-2-23 0:00:00
急救,机子无端死机。。。郁闷中,请各位【民间高手】看看,救救我的电脑
下面是我的日志
Dennis蛋蛋 - 2007-2-23 0:02:00
[CODE]
2007-02-22,23:44:09
System Repair Engineer 2.3.13.690
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 2 (Build 2600)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Corporation]
<bgswitch><C:\WINDOWS\system32\bgswitch.exe> [N/A]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<CnsMin><Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32> [北京三七二一科技有限公司]
<helper.dll><C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32> []
<clean><autohal /Clean> [N/A]
<SoundMan><SOUNDMAN.EXE> [N/A]
<Cmaudio><RunDll32 cmicnfg.cpl,CMICtrlWnd> [N/A]
<ATIPTA><C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe> [ATI Technologies, Inc.]
<KBD><C:\HP\KBD\KBD.EXE> [Hewlett-Packard Company]
<StormCodec_Helper><"C:\Program Files\Ringz Studio\Storm Codec\StormSet.exe" /S /opti> [N/A]
<KvMonXP><"C:\Program Files\KV2006\KVMonXP.kxp" /auto> [Jiangmin Co.Ltd]
<KernelFaultCheck><%systemroot%\system32\dumprep 0 -k> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Corporation]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll> [(Verified)Microsoft Corporation]
<{D157330A-9EF3-49F8-9A67-4141AC41ADD4}><C:\WINDOWS\DOWNLO~1\CnsHook.dll> [北京三七二一科技有限公司]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<PostBootReminder><%SystemRoot%\system32\SHELL32.dll> [(Verified)Microsoft Corporation]
<CDBurn><%SystemRoot%\system32\SHELL32.dll> [(Verified)Microsoft Corporation]
<WebCheck><%SystemRoot%\system32\webcheck.dll> [(Verified)Microsoft Corporation]
<SysTray><C:\WINDOWS\system32\stobject.dll> [(Verified)Microsoft Corporation]
<WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
<WinlogonNotify: crypt32chain><crypt32.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
<WinlogonNotify: cryptnet><cryptnet.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
<WinlogonNotify: cscdll><cscdll.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
<WinlogonNotify: ScCertProp><wlnotify.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
<WinlogonNotify: Schedule><wlnotify.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
<WinlogonNotify: sclgntfy><sclgntfy.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
<WinlogonNotify: SensLogn><WlNotify.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
<WinlogonNotify: termsrv><wlnotify.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
<WinlogonNotify: wlballoon><wlnotify.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
<{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll> [(Verified)Microsoft Corporation]
<{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll> [(Verified)Microsoft Corporation]
Dennis蛋蛋 - 2007-2-23 0:03:00
启动文件夹
N/A
==================================
服务
[Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start]
<C:\WINDOWS\system32\Ati2evxx.exe><ATI Technologies Inc.>
[ATI Smart / ATI Smart][Stopped/Auto Start]
<C:\WINDOWS\system32\ati2sgag.exe><>
[KVSrvXP / KVSrvXP][Running/Auto Start]
<C:\Program Files\KV2006\KVSrvXP.exe /Service><Jiangmin Co. Ltd>
[KVWSC / KVWSC][Running/Auto Start]
<"C:\Program Files\KV2006\kvwsc.exe"><Jiangmin Co.Ltd>
[smService / smService][Running/Auto Start]
<C:\WINDOWS\system32\smService.exe><N/A>
Dennis蛋蛋 - 2007-2-23 0:05:00
驱动程序
[2310_00 / 2310_00][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\2310_00.sys><HighPoint Technologies, Inc.>
[3WAREDRV / 3WAREDRV][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\3WAREDRV.SYS><N/A>
[3WAREGSM / 3WAREGSM][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\3waregsm.sys><N/A>
[3WDRV100 / 3WDRV100][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\3WDRV100.SYS><N/A>
[A320RAID / A320RAID][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\a320raid.sys><Adaptec, Inc.>
[AAC / AAC][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\AAC.SYS><Adaptec, Inc.>
[AACSAS / AACSAS][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aacsas.sys><Adaptec, Inc.>
[AARSI3X / AARSI3X][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aarsi3x.sys><Adaptec, Inc.>
[abp480n5 / abp480n5][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\abp480n5.sys><Microsoft Corporation>
[adpu160m / adpu160m][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\adpu160m.sys><Microsoft Corporation>
[ADPU320 / ADPU320][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\adpu320.sys><Adaptec, Inc.>
[ACARD AEC6210UF UltraDMA33 Controller / AEC6210][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aec6210.sys><ACARD Technology Corp.>
[ACARD AEC6260 UltraDMA-66 Controller / AEC6260][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aec6260.sys><ACARD Technology Corp.>
[AEC6280 / AEC6280][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aec6280.sys><ACARD Technology Corp.>
[AEC67160 / AEC67160][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\AEC67160.SYS><ACARD Technology Corp.>
[AEC67162 / AEC67162][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aec67162.sys><ACARD Technology Corp.>
[AEC671X / AEC671X][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\AEC671X.SYS><ACARD Technology Corp.>
[AEC6880 / AEC6880][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\AEC6880.SYS><ACARD Technology Corp.>
[AEC6890 / AEC6890][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\AEC6890.sys><ACARD Technology Corp.>
[AEC6897 / AEC6897][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aec6897.sys><ACARD Technology Corp.>
[AEC68X5 / AEC68X5][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aec68x5.sys><ACARD Technology Corp.>
[aic78u2 / aic78u2][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aic78u2.sys><Microsoft Corporation>
[aic78xx / aic78xx][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aic78xx.sys><Microsoft Corporation>
[Service for Realtek AC97 Audio (WDM) / ALCXWDM][Stopped/Manual Start]
<system32\drivers\ALCXWDM.SYS><Realtek Semiconductor Corp.>
[AliIde / AliIde][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aliide.sys><Acer Laboratories Inc.>
[AMD K8 Processor Driver / AmdK8][Stopped/Manual Start]
<System32\DRIVERS\amdk8.sys><Advanced Micro Devices>
[arc / arc][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ARC.SYS><N/A>
[ARCM_X86 / ARCM_X86][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\arcm_x86.sys><ARECA Technology Corporation>
[asc / asc][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\asc.sys><Advanced System Products, Inc.>
[asc3550 / asc3550][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\asc3550.sys><Advanced System Products, Inc.>
[ati2mtag / ati2mtag][Running/Manual Start]
<system32\DRIVERS\ati2mtag.sys><ATI Technologies Inc.>
[BCHTSW32 / BCHTSW32][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\bchtsw32.sys><Broadcom Corporation>
[BCRAID / BCRAID][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\BCRAID.sys><Broadcom Corporation>
[CmdIde / CmdIde][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\cmdide.sys><CMD Technology, Inc.>
[C-Media WDM Audio Interface / cmuda][Running/Manual Start]
<system32\drivers\cmuda.sys><C-Media Inc>
[CnsMinKP / CnsMinKP][Running/Boot Start]
<\SystemRoot\system32\drivers\CnsMinKP.sys><Copyright (C) 3721 Corporation.>
[Cpqarray / Cpqarray][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\cpqarray.sys><Hewlett-Packard Company>
[CPQARRY2 / CPQARRY2][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\cpqarry2.sys><Hewlett-Packard Company>
[CPQCISSM / CPQCISSM][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\cpqcissm.sys><Hewlett-Packard Company>
[CSB6IDE / CSB6IDE][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\csb6ide.sys><ServerWorks Corporation>
[dac2w2k / dac2w2k][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\dac2w2k.sys><Mylex Corporation>
[dac960nt / dac960nt][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\dac960nt.sys><Microsoft Corporation>
[dpti2o / dpti2o][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\dpti2o.sys><Adaptec, Inc.>
[Intel(R) PRO Adapter Driver / E100B][Stopped/Manual Start]
<system32\DRIVERS\e100b325.sys><Intel Corporation>
[elxstor / elxstor][Stopped/Boot Start]
<\SystemRoot\system32\drivers\elxstor.sys><Emulex>
[FASTSX / FASTSX][Stopped/Boot Start]
Dennis蛋蛋 - 2007-2-23 0:06:00
<\SystemRoot\System32\DRIVERS\FASTSX.SYS><Promise Technology, Inc.>
[FASTTRAK / FASTTRAK][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\fasttrak.sys><Promise Technology, Inc.>
[FASTTX2K / FASTTX2K][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\fasttx2k.sys><Promise Technology, Inc.>
[VIA Rhine-Family Fast Ethernet Adapter Driver Service / FETND5BV][Stopped/Manual Start]
<system32\DRIVERS\fetnd5bv.sys><VIA Technologies, Inc.>
[FT8300 / FT8300][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ft8300.sys><Promise Technology, Inc.>
[FTSATA2 / FTSATA2][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\ftsata2.sys><Promise Technology, Inc.>
[GD31244 / GD31244][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\gd31244.sys><Intel Corporation>
[HpCISSs / HpCISSs][Stopped/Boot Start]
<\SystemRoot\system32\drivers\hpcisss.sys><Hewlett-Packard Company>
[HPCISSS2 / HPCISSS2][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\hpcisss2.sys><Hewlett-Packard Company>
[HPT371 / HPT371][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\HPT371.sys><HighPoint Technologies, Inc.>
[HPT374 / HPT374][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\hpt374.sys><HighPoint Technologies, Inc.>
[HPT3XX / HPT3XX][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\hpt3xx.sys><HighPoint Technologies, Inc.>
[i2omp / i2omp][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\i2omp.sys><Microsoft Corporation>
[Intel Integrated RAID / IASTOR][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\iaStor.sys><Intel Corporation>
[ini910u / ini910u][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ini910u.sys><Microsoft Corporation>
[INIA100 / INIA100][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\INIA100.sys><Initio corp.>
[IPSRAIDN / IPSRAIDN][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ipsraidn.sys><IBM Corporation>
[ITERAID / ITERAID][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\iteraid.sys><Integrated Technology Express, Inc.>
[JRAID / JRAID][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\JRAID.SYS><JMicron Technology Corp.>
[kjlikco / kjlikco][Running/Boot Start]
<\SystemRoot\\SystemRoot\System32\drivers\kjlikco.sys><N/A>
[KRegEx / KRegEx][Running/System Start]
<\??\C:\PROGRA~1\KV2006\KRegEx.sys><Jiangmin Co. Ltd.>
[KSysCall Service / KSysCall][Running/System Start]
<\??\C:\PROGRA~1\KV2006\KSysCall.sys><Jiangmin Co. Ltd.>
[KVDP_1 / KVDP_1][Running/Manual Start]
<\??\C:\Program Files\KV2006\KVDP_1.sys><Jiangmin Co., Ltd.>
[KvMemon / KvMemon][Running/Manual Start]
<\??\C:\PROGRA~1\KV2006\KvMemon.sys><Jiangmin Co. Ltd.>
[KVREDIR / KVREDIR][Running/Manual Start]
<\??\C:\Program Files\KV2006\KVREDIR.sys><Jiangmin Co. Ltd>
[LSI_FC / LSI_FC][Stopped/Boot Start]
<\SystemRoot\system32\drivers\lsi_fc.sys><LSI Logic>
[LSI_SCSI / LSI_SCSI][Stopped/Boot Start]
<\SystemRoot\system32\drivers\lsi_scsi.sys><LSI Logic>
[M5228 / M5228][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\m5228.sys><ALi Corporation.>
[M5281 / M5281][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\m5281.sys><ALi Corporation>
[M5287 / M5287][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\m5287.sys><ULi Electronics Inc.>
[M5288 / M5288][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\m5288.sys><ULi Electronics Inc.>
[M5289 / M5289][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\m5289.sys><ULi Electronics Inc.>
[MEGAIDE / MEGAIDE][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\MegaIDE.sys><LSI Logic Corporation.>
[megasas / megasas][Stopped/Boot Start]
<\SystemRoot\system32\drivers\megasas.sys><LSI Logic Corporation>
[mraid2k / mraid2k][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\mraid2k.sys><American Megatrends, Inc.>
[mraid35x / mraid35x][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\mraid35x.sys><LSI Logic Corporation>
[NFRD960 / NFRD960][Stopped/Boot Start]
<\SystemRoot\system32\drivers\nfrd960.sys><IBM Corporation>
[NVATABUS / NVATABUS][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\NVATABUS.SYS><NVIDIA Corporation>
[NVIDIA nForce(tm) RAID Class Driver / NVRAID][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\nvraid.sys><NVIDIA Corporation>
[perc2 / perc2][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\perc2.sys><Adaptec, Inc.>
[PNP649R / PNP649R][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\PNP649R.SYS><CMD Technology, Inc.>
[SiI 680 ATA Controller / PNP680][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\pnp680.sys><Silicon Image, Inc.>
[Silicon Image SiI 0680 Medley Raid Controller / PNP680R][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\pnp680r.sys><Silicon Image, Inc>
[PProtect / PProtect][Running/System Start]
<\??\C:\PROGRA~1\KV2006\PProtect.sys><Jiangmin Co. Ltd.>
[Ps2 / Ps2][Stopped/Manual Start]
<system32\DRIVERS\PS2.sys><Hewlett-Packard Company>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[ql1080 / ql1080][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ql1080.sys><QLogic Corporation>
[Ql10wnt / Ql10wnt][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ql10wnt.sys><Microsoft Corporation>
[ql12160 / ql12160][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ql12160.sys><QLogic Corporation>
[ql1240 / ql1240][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ql1240.sys><Microsoft Corporation>
[ql1280 / ql1280][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ql1280.sys><QLogic Corporation>
[QLogic Fibre Channel SCSI Miniport Driver / ql2300][Stopped/Boot Start]
<\SystemRoot\system32\drivers\ql2300.sys><QLogic Corporation>
[RAIDSRC / RAIDSRC][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\RAIDSRC.SYS><Intel/ICP>
[RR232X / RR232X][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\rr232x.sys><HighPoint Technologies, Inc.>
[Realtek 10/100/1000 PCI NIC Family NDIS XP Driver / RTL8023xp][Running/Manual Start]
<system32\DRIVERS\Rtnicxp.sys><Realtek Semiconductor Corporation>
[S150SX8 / S150SX8][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\S150SX8.SYS><Promise Technology, Inc.>
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys><N/A>
[SiI-3512 SATALink Controller / SI3112][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SI3112.sys><Silicon Image, Inc.>
[Silicon Image SiI 3512 SATARaid Controller / SI3112R][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SI3112r.sys><Silicon Image, Inc>
[SiI-3114 SATALink Controller / SI3114][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SI3114.sys><Silicon Image, Inc.>
[SiI-3114 SATARaid Controller / SI3114R][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SI3114R.sys><Silicon Image, Inc>
[SI3114R5 / SI3114R5][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\Si3114r5.sys><Silicon Image, Inc>
[SiI-3124 SATALink Controller / SI3124][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SI3124.sys><Silicon Image, Inc.>
[SiI-3124 SATARaid Controller / SI3124R][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SI3124R.sys><Silicon Image, Inc>
[SI3124R5 / SI3124R5][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\Si3124r5.sys><Silicon Image, Inc>
[SI3132 / SI3132][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SI3132.sys><Silicon Image, Inc.>
[SI3132R5 / SI3132R5][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\Si3132r5.sys><Silicon Image, Inc>
[SATALink driver accelerator / SiFilter][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\SiWinAcc.sys><Silicon Image, Inc.>
[SISIDE / SISIDE][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SISIDE.SYS><Silicon Integrated Systems Corp.>
[SISRAID / SISRAID][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SiSRaid.sys><Silicon Integrated Systems>
[SISRAID2 / SISRAID2][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SiSRaid2.sys><Silicon Integrated Systems Corp>
[SISRAID4 / SISRAID4][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SiSRaid4.sys><Silicon Integrated Systems>
[Sparrow / Sparrow][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\sparrow.sys><Adaptec, Inc.>
[SPTRAK / SPTRAK][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\sptrak.sys><Promise Technology, Inc.>
[ST8350 / ST8350][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\st8350.sys><Promise Technology, Inc.>
[symc810 / symc810][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\symc810.sys><Symbios Logic Inc.>
[symc8xx / symc8xx][Stopped/Boot Start]
Dennis蛋蛋 - 2007-2-23 0:06:00
<\SystemRoot\System32\DRIVERS\symc8xx.sys><LSI Logic>
[SYMMPI / SYMMPI][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\SYMMPI.SYS><LSI Logic>
[sym_hi / sym_hi][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\sym_hi.sys><LSI Logic>
[sym_u3 / sym_u3][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\sym_u3.sys><LSI Logic>
[TosIde / TosIde][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\toside.sys><Microsoft Corporation>
[TRM3X5 / TRM3X5][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\trm3x5.sys><Tekram Technology Co., Ltd.>
[TwoTrack Compatible Device / TwoTrack][Stopped/Manual Start]
<System32\DRIVERS\TwoTrack.sys><Microsoft Corporation>
[ULSATA / ULSATA][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ulsata.sys><Promise Technology, Inc.>
[ULSATA2 / ULSATA2][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ulsata2.sys><Promise Technology, Inc.>
[ULTIMA / ULTIMA][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\Ultima.sys><Aralion INC.>
[ULTIMARX / ULTIMARX][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\UltimaRX.sys><Aralion INC.>
[ultra / ultra][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\ultra.sys><Promise Technology, Inc.>
[VIA AGP Filter / viaagp1][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\viaagp1.sys><VIA Technologies, Inc.>
[ViaIde / ViaIde][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\viaide.sys><Microsoft Corporation>
[VIAMRAID / VIAMRAID][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\viamraid.sys><VIA Technologies inc,.ltd>
[VIA ATA/ATAPI Host Controller / viapdsk][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\viapdsk.sys><VIA Technologies, Inc.>
[viaraid / viaraid][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\viaraid.sys><VIA Technologies inc,.ltd>
[viasraid / viasraid][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\viasraid.sys><VIA Technologies inc,.ltd>
[videX32 / videX32][Running/Boot Start]
<\SystemRoot\system32\DRIVERS\videX32.sys><VIA Technologies, Inc.>
[vmscsi / vmscsi][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\vmscsi.sys><VMware, Inc.>
[WD7296A / WD7296A][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\wd7296a.sys><Western Digital Corporation>
[R2A / R2A][Stopped/Disabled]
<\??\C:\WINDOWS\system32a2.sys><N/A>
Dennis蛋蛋 - 2007-2-23 0:07:00
浏览器加载项
[FiltrateWebObj Class]
{42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} <C:\Program Files\KV2006\KVBHO.dll, Jiangmin Co.Ltd>
[BrowseHelper Class]
{80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} <C:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[CnsHook Class]
{D157330A-9EF3-49F8-9A67-4141AC41ADD4} <C:\WINDOWS\DOWNLO~1\CnsHook.dll, 北京三七二一科技有限公司>
[SrchHook Class]
{F08555B0-9CC3-11D2-AA8E-000000000000} <C:\WINDOWS\system32\IEBHO.dll, >
[浩方对战平台]
{0A155D3C-68E2-4215-A47A-E800A446447A} <D:\Program Files\浩方对战平台\GameClient.exe, 上海浩方在线信息技术有限公司>
[Yahoo 3.5G电邮]
{507F9113-CD77-4866-BA92-0E86DA3D0B97} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomail, N/A>
[名品折扣]
{59BC54A2-56B3-44a0-93E5-432D58746E26} <http://adtaobao.allyes.com/main/adfclick?db=adtaobao&bid=138,140,18&cid=816,8,1&sid=5042&show=ignore&url=http://www.taobao.com/vertical/mall/pro.php?allyesPara=816, N/A>
[雅虎助手]
{5D73EE86-05F1-49ed-B850-E423120EC338} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yassist, N/A>
[番茄花园]
{6096E38F-5AC1-4391-8EC4-75DFA92FB32F} <http://www.tomatolei.com, N/A>
[雅虎WIDGET]
{6354ABE6-05F1-49ed-B850-E423120EC338} <http://cn.widget.yahoo.com/index.htm?source=Cns, N/A>
[易趣购物]
{DE607146-AC19-426e-869A-9D70ABDF119A} <http://click2.ad4all.net/url2/urlmanage/url.asp?id=5, N/A>
[情景聊天]
{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=yahoomsg, N/A>
[]
{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=repair, N/A>
[]
{FD00D911-7529-4084-9946-A29F1BDF4FE5} <http://cn.zs.yahoo.com/cnsbutton.htm?source=cns&btn=clean, N/A>
[番茄工具条]
{6451F285-9E41-4D8C-813D-794CA7BFEAB4} <C:\WINDOWS\system32\IETool.dll, N/A>
[江民杀毒工具栏]
{B5A34A93-D538-43A7-8371-864CB6148D12} <C:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[Ad Engine]
{077FD0C3-1291-4104-A356-41E36B252682} <C:\Program Files\Yayad\AdCore.dll, CDM>
[FiltrateWebObj Class]
{42AFACEE-2A77-41EB-9EE2-D9F8AF827F90} <C:\Program Files\KV2006\KVBHO.dll, Jiangmin Co.Ltd>
[番茄工具条]
{6451F285-9E41-4D8C-813D-794CA7BFEAB4} <C:\WINDOWS\system32\IETool.dll, N/A>
[BrowseHelper Class]
{80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9} <C:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[江民杀毒工具栏]
{B5A34A93-D538-43A7-8371-864CB6148D12} <C:\Program Files\KV2006\KvShell.dll, Jiangmin Co.Ltd>
[CnsHook Class]
{D157330A-9EF3-49F8-9A67-4141AC41ADD4} <C:\WINDOWS\DOWNLO~1\CnsHook.dll, 北京三七二一科技有限公司>
[SrchHook Class]
{F08555B0-9CC3-11D2-AA8E-000000000000} <C:\WINDOWS\system32\IEBHO.dll, >
[上传到QQ网络硬盘]
<D:\Program Files\Tencent\QQ\AddToNetDisk.htm, N/A>
[添加到QQ自定义面板]
<D:\Program Files\Tencent\QQ\AddPanel.htm, N/A>
[添加到QQ表情]
<D:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
<D:\Program Files\Tencent\QQ\SendMMS.htm, N/A>
Dennis蛋蛋 - 2007-2-23 0:08:00
正在运行的进程
[PID: 424][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 496][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 520][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\Ati2evxx.dll] [ATI Technologies Inc., 6.14.10.4113]
[PID: 564][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 584][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 736][C:\WINDOWS\system32\Ati2evxx.exe] [ATI Technologies Inc., 6.14.10.4113]
[C:\WINDOWS\system32\Ati2edxx.dll] [ATI Technologies, Inc., 6, 14, 10, 2496]
[PID: 756][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 812][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 880][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 968][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1064][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1192][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[PID: 1320][C:\WINDOWS\system32\Ati2evxx.exe] [ATI Technologies Inc., 6.14.10.4113]
[C:\WINDOWS\system32\Ati2edxx.dll] [ATI Technologies, Inc., 6, 14, 10, 2496]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[PID: 1424][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\PROGRA~1\3721\alrex.dll] [, 2.5.0.1002]
[C:\Program Files\KV2006\KvShell.dll] [Jiangmin Co.Ltd, 9, 0, 5, 830]
[C:\Program Files\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[C:\Program Files\KV2006\lang\Kvxp0804.lng] [N/A, N/A]
[C:\Program Files\KV2006\APIImpl.dll] [JiangMin Ltd., 9.0.0.500]
[c:\windows\system32\uptool.dll] [N/A, N/A]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[C:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
[C:\WINDOWS\DOWNLO~1\CnsHook.dll] [北京三七二一科技有限公司, 1, 0, 4, 2]
[C:\PROGRA~1\3721\autolive.dll] [, 2, 5, 1, 1004]
[C:\PROGRA~1\3721\alLiveEx.dll] [ , 1, 0, 3, 1006]
[C:\Program Files\KV2006\KVBHO.dll] [Jiangmin Co.Ltd, 9.0.6.0113]
[C:\Program Files\KV2006\KVAddrDb.dll] [Jiangmin Co.Ltd, 9, 0, 0, 1018]
[PID: 1532][C:\WINDOWS\system32\Rundll32.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\WINDOWS\DOWNLO~1\CnsMinIO.dll] [北京三七二一科技有限公司, 1, 0, 3, 7]
[C:\WINDOWS\DOWNLO~1\cnsio.dll] [北京三七二一科技有限公司, 1, 0, 2, 8]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[PID: 1548][C:\WINDOWS\system32\rundll32.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\PROGRA~1\3721\autolive.dll] [, 2, 5, 1, 1004]
[C:\PROGRA~1\3721\notifier.dll] [, 2.5.0.1002]
[C:\PROGRA~1\3721\alLiveEx.dll] [ , 1, 0, 3, 1006]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[PID: 1988][C:\Program Files\KV2006\KVSrvXP.exe] [Jiangmin Co. Ltd, 9.2.0.50822]
[C:\Program Files\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[C:\Program Files\KV2006\SvcSafe.dll] [Jiangmin Co. Ltd, 9, 2, 0, 51107]
[C:\Program Files\KV2006\lang\SvcSafe0804.lng] [N/A, N/A]
[C:\Program Files\KV2006\RegProt.dll] [Jiangmin Co.Ltd, 9, 0, 5, 1212]
[C:\Program Files\KV2006\Scan.dll] [Jiangmin Co., Ltd., 1.0.6.07110]
[C:\Program Files\KV2006\FileGD.dll] [Jiangmin Co.Ltd, 9.2.0.50809]
[C:\Program Files\KV2006\KvSPI.dll] [Jiangmin Co. Ltd., 1.0.6.1024]
[C:\Program Files\KV2006\lang\KvSPI0804.lng] [N/A, N/A]
[C:\Program Files\KV2006\ScanHost.dll] [Jiangmin Co. Ltd, 9, 2, 0, 50822]
[C:\Program Files\KV2006\KVWPSet.dll] [Jiangmin Co.Ltd, 9, 0, 0, 60220]
[C:\Program Files\KV2006\EngPS.dll] [Jiangmin Co.Ltd, 9, 2, 0, 50817]
[C:\Program Files\KV2006\KVEnhS.dll] [Jiangmin Co., Ltd., 9, 2, 6, 02040]
[C:\Program Files\KV2006\KVEnhJ.dll] [Jiangmin Co.Ltd, 9, 1, 0, 50822]
[C:\Program Files\KV2006\KVExtCab.dll] [JiangMin Co. Ltd, 9, 2, 0, 50822]
[C:\Program Files\KV2006\KVExtLZH.dll] [JiangMin Co. Ltd., 9, 2, 6, 0316]
[C:\Program Files\KV2006\KvExtRar.dll] [JiangMin Co. Ltd., 9, 2, 6, 04020]
[C:\Program Files\KV2006\KvExtZip.dll] [JiangMin Co Ltd., 9, 2, 0, 50822]
[C:\Program Files\KV2006\KVExtZ.dll] [Jiangmin Co. Ltd, 9.2.0.503]
[C:\Program Files\KV2006\KVExtTar.dll] [Jiangmin Co. Ltd, 9, 2, 0, 50822]
[C:\Program Files\KV2006\KVExtEml.dll] [Jiangmin Co. Ltd., 9, 2, 6, 07050]
[C:\Program Files\KV2006\lang\KVExtEml0804.lng] [N/A, N/A]
[C:\Program Files\KV2006\KVExtGz.dll] [Jiangmin Co. Ltd, 9, 0, 6, 04200]
[C:\Program Files\KV2006\KVEnhK.dll] [Jiangmin Co.Ltd, 9, 1, 0, 51209]
[C:\Program Files\KV2006\Fix.dll] [Jiangmin Co.Ltd, 9, 2, 6, 07110]
[C:\Program Files\KV2006\KvCkMail.dll] [N/A, 9, 0, 6, 619]
[C:\Program Files\KV2006\lang\KvMailRes0804.lng] [N/A, N/A]
[C:\Program Files\KV2006\lang\PrivateCfg0804.lng] [TODO: <Company name>, 1.0.0.1]
[PID: 2020][C:\Program Files\KV2006\kvwsc.exe] [Jiangmin Co.Ltd, 9, 0, 5, 908]
[C:\Program Files\KV2006\EngPS.dll] [Jiangmin Co.Ltd, 9, 2, 0, 50817]
[C:\Program Files\KV2006\EngFace.dll] [Jiangmin Co.Ltd, 9.0.0.50809]
[C:\Program Files\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[PID: 144][C:\WINDOWS\system32\smService.exe] [N/A, N/A]
Dennis蛋蛋 - 2007-2-23 0:12:00
[PID: 1232][C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe] [ATI Technologies, Inc., 6.14.10.5142]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll] [ATI Technologies, Inc., 6.14.10.5142]
[C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.CHS] [ATI Technologies, Inc., 6.14.10.5142]
[C:\Program Files\ATI Technologies\ATI Control Panel\atipdxxx.dll] [ATI Technologies, Inc., 6.14.10.5142]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[PID: 1336][C:\HP\KBD\KBD.EXE] [Hewlett-Packard Company, 1.0.2.0]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\HP\KBD\led.dll] [Hewlett-Packard Company, 1.0.2.0]
[C:\HP\KBD\USB.dll] [Hewlett-Packard Company, 1.0.2.0]
[C:\HP\KBD\ps2.dll] [Hewlett-Packard Company, 1.0.2.2.911]
[C:\HP\KBD\msg.dll] [Hewlett-Packard Company, 1.0.2.2.911]
[C:\HP\KBD\osd.dll] [Hewlett-Packard Company, 1.0.2.1.815]
[C:\HP\KBD\sct.dll] [Hewlett-Packard Company, 1.0.2.1.514]
[C:\HP\KBD\onl.dll] [Hewlett-Packard Company, 1.0.2.0]
[C:\HP\KBD\aol.dll] [Hewlett-Packard Company, 1.0.2.0]
[C:\HP\KBD\url.dll] [Hewlett-Packard Company, 1.0.2.2.11304]
[C:\HP\KBD\cfg.dll] [Hewlett-Packard Company, 1.0.2.1]
[C:\HP\KBD\MSIKBDIF.DLL] [Hewlett-Packard Company, 1.0.2.1.917]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[C:\Program Files\KV2006\KVMonXP.kxp] [Jiangmin Co.Ltd, 9, 2, 0, 60905]
[C:\Program Files\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[C:\Program Files\KV2006\lang\Kvxp0804.lng] [N/A, N/A]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\Program Files\KV2006\GUIExt.dll] [Jiangmin Co.Ltd, 9, 0, 5, 927]
[C:\Program Files\KV2006\lang\GUIExt0804.lng] [JiangMin Ltd., 7, 1, 0, 200]
[C:\Program Files\KV2006\EngFace.dll] [Jiangmin Co.Ltd, 9.0.0.50809]
[C:\Program Files\KV2006\EngPS.dll] [Jiangmin Co.Ltd, 9, 2, 0, 50817]
[C:\Program Files\KV2006\KvMemory.dll] [Jiangmin Co. Ltd., 9, 0, 6, 0214]
[C:\Program Files\KV2006\KvOffice.dll] [JiangMin New Tech., 9.0.0.1213]
[C:\Program Files\KV2006\lang\KVOffice0804.lng] [N/A, N/A]
[C:\Program Files\KV2006\VirusUpload.dll] [N/A, 2, 16, 6, 7260]
[C:\Program Files\KV2006\lang\PrivateCfg0804.lng] [TODO: <Company name>, 1.0.0.1]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[C:\Program Files\KV2006\PProtect.dll] [Jiangmin Co. Ltd., 9.0.0.921]
[PID: 1312][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[PID: 1980][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\KV2006\TrojDie.kxp] [Jiangmin Co.Ltd, 9.0.6.0413]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\Program Files\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[C:\Program Files\KV2006\lang\TrojDie0804.lng] [Jiangmin Co.Ltd, 9.0.0.0813]
[C:\Program Files\KV2006\GUIExt.dll] [Jiangmin Co.Ltd, 9, 0, 5, 927]
[C:\Program Files\KV2006\lang\GUIExt0804.lng] [JiangMin Ltd., 7, 1, 0, 200]
[C:\Program Files\KV2006\PProtect.dll] [Jiangmin Co. Ltd., 9.0.0.921]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[C:\Program Files\KV2006\ComUIPS.dll] [Jiangmin Ltd., 9. 5. 5. 20]
[PID: 2408][C:\Program Files\KV2006\KRegEx.exe] [Jiangmin Co.Ltd, 9.0.6.210]
[C:\Program Files\KV2006\KRegEx.dll] [Jiangmin Co. Ltd., 9.0.6.0119]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\Program Files\KV2006\KRegTrust.dll] [Jiangmin Co. Ltd., 9.0.0.825]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[PID: 2492][C:\Program Files\KV2006\UIHost.exe] [Jiangmin Co. Ltd, 9.2.0.50822]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\Program Files\KV2006\UpdateX.dll] [JiangMin Co.Ltd., 9, 0, 5, 831]
[C:\Program Files\KV2006\ComUI.dll] [Jiangmin Ltd., 9. 0. 0.509]
[C:\Program Files\KV2006\ComUIPS.dll] [Jiangmin Ltd., 9. 5. 5. 20]
[PID: 3204][C:\Program Files\Maxthon\Maxthon.exe] [Maxthon International Ltd., 1, 5, 6, 42]
[C:\Program Files\Maxthon\maxzlib.dll] [ , 1, 0, 0, 2]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
[C:\Program Files\Maxthon\Services\RealTime\real_time.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx] [Adobe Systems, Inc., 9,0,16,0]
[PID: 3916][G:\安装\sreng2\SREng.EXE] [Smallfrogs Studio, 2.3.13.690]
[C:\Program Files\KV2006\KVHookG.dll] [Jiangmin Co.Ltd, 9.0.0.1226]
[C:\PROGRA~1\3721\helper.dll] [, 2, 5, 0, 1003]
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] [北京三七二一科技有限公司, 1, 5, 3, 9]
Dennis蛋蛋 - 2007-2-23 0:12:00
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
219.153.32.215 auto.search.msn.com
==================================
API HOOK
警告!System Repair Engineer 提醒
你下面的函数内容与预期值不符,他
们可能被一些恶意的软件所修改:
入口点错误:CreateRemoteThread
==================================
[/CODE]
1
© 2000 - 2026 Rising Corp. Ltd.