飘零de回忆 - 2007-3-15 13:08:00


不知道怎么的进程出现了那么多重复的东东,进入安全模式也没发现有病毒,之前中了灰鸽子跟威金,不知道是不是还没杀干净呢~~
飘零de回忆 - 2007-3-15 13:18:00
系统诊断出这堆看不懂的东西..请高手们帮下忙吧..
100 - 中危险 - Process: Logo1_.exe [怀疑为恶意程序或病毒,请使用杀毒软件
进行查杀。] - C:\WINDOWS\Logo1_.exe
100 - 未知 - Process: RavMonD.exe [RavMond] -
E:\Rising\Rav\Ravmond.exe
100 - 未知 - Process: RavStub.exe [Rising RavStub] -
E:\Rising\Rav\RavStub.exe /RAVMOND
100 - 未知 - Process: RavTask.exe [RavTimer] -
E:\Rising\Rav\RavTask.exe
100 - 未知 - Process: 7.exe [] - C:\WINDOWS\system32\7.exe
100 - 未知 - Process: runiep.exe [Rising AntiSpyware Monitor] - F:\卡
卡助手\runiep.exe
100 - 未知 - Process: 360tray.exe [360安全卫士实时保护模块] - F:\360安
全卫士\360safe\safemon\360Tray.exe
100 - 未知 - Process: EXPLORER.EXE [] - C:\Program Files\Internet
Explorer\EXPLORER.EXE
100 - 未知 - Process: 8Sy.exe [] - C:\Program Files\Internet
Explorer\8Sy.exe
100 - 未知 - Process: rundl132.exe [] - C:\WINDOWS\rundl132.exe
C:\Documents and Settings\new\桌面\8Sy.exeshow.exe
100 - 未知 - Process: QQ.exe [QQ] - F:\騰新2007\QQ.exe
100 - 未知 - Process: TIMPlatfrom.exe [TIMPlatform] - F:\騰新2007
\TIMPlatfrom.exe
O2 - 未知 - BHO: (NavigatMon Class) - [360安全卫士实时保护模块] -
{B69F34DD-F0F9-42DC-9EDD-957187DA688D} - F:\360安全卫士\360safe\safemon\safemon.dll
O3 - 未知 - Toolbar: (第三方IE工具栏) - [无效的CLSID:{710EB7A1-45ED-
11D0-924A-0020AFC7AC4D}] - {710EB7A1-45ED-11D0-924A-0020AFC7AC4D} -
O4 - 未知 - HKLM\..\Run: [upxdnd] [] C:\DOCUME~1\new\LOCALS~1
\Temp\upxdnd.exe
O4 - 未知 - HKLM\..\Run: [runeip] [Rising AntiSpyware Monitor] F:\卡卡
助手\runiep.exe
O4 - 未知 - HKLM\..\Run: [mppds] [] C:\WINDOWS\mppds.exe
O4 - 未知 - HKLM\..\Run: [360Safetray] [360安全卫士实时保护模块]
F:\360安全卫士\360safe\safemon\360Tray.exe /start
O4 - 未知 - HKCU\..\Run: [2k] [] C:\WINDOWS\iexp1ore.exe
O4 - 未知 - HKCU\..\Run: [xrisjf8f] [] C:\WINDOWS\iexpl0ra.exe
O4 - 未知 - Startup folder: [QQ游戏启动加速程序.lnk] [] C:\Documents
and Settings\new\「开始」菜单\程序\启动\QQ游戏启动加速程序.lnk
O8 - 未知 - Extra context menu item: 上传到QQ网络硬盘 - F:\騰新2007
\AddToNetDisk.htm
O8 - 未知 - Extra context menu item: 使用Web迅雷下载 - F:\ 迅雷
\GetUrl.htm
O8 - 未知 - Extra context menu item: 使用Web迅雷下载全部链接 - F:\ 迅
雷\GetAllUrl.htm
O8 - 未知 - Extra context menu item: 使用迅雷下载 -
F:\Thunder\geturl.htm
O8 - 未知 - Extra context menu item: 使用迅雷下载全部链接 -
F:\Thunder\getAllurl.htm
O8 - 未知 - Extra context menu item: 添加到QQ自定义面板 - F:\騰新2007
\AddPanel.htm
O8 - 未知 - Extra context menu item: 添加到QQ表情 - F:\騰新2007
\AddEmotion.htm
O8 - 未知 - Extra context menu item: 用QQ彩信发送该图片 - F:\騰新2007
\SendMMS.htm
O9 - 未知 - Extra button: 微软(HKLM) -
http://www.microsoft.com/china/index.htm
O9 - 未知 - Extra button: 启动Web迅雷(HKLM) - http://my.xunlei.com
O9 - 未知 - Extra button: 腾讯QQ(HKLM) - F:\騰新2007\QQ.EXE
O16 - 未知 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows
Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - 未知 - DPF: {E787FD25-8D7C-4693-AE67-9406BC6E22DF}
(CPasswordEditCtrl Object) - https://www.tenpay.com/download/qqedit.cab
O18 - 未知 - Protocol: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC}
- F:\KuGoo3\InExtend\KuGoo3DownXControl.ocx
O23 - 未知 - Service: PDEngine [PDEngine] - "C:\Program
Files\Raxco\PerfectDisk\PDEngine.exe" - (not running)
O23 - 未知 - Service: PDSched [PDScheduler] - "C:\Program
Files\Raxco\PerfectDisk\PDSched.exe" - (not running)
O23 - 未知 - Service: RsCCenter [Rising Process Communication Center]
- "E:\Rising\Rav\CCenter.exe" - (running)
O23 - 未知 - Service: RsRavMon [Rising RealTime Monitor] -
"E:\Rising\Rav\Ravmond.exe" - (running)
O23 - 未知 - Service: svcname [服务描述] - C:\WINDOWS\system32\7.exe -
(running)
O23 - 未知 - Service: systom [systom] - - (not running)
飘零de回忆 - 2007-3-15 13:19:00
100 - 安全 - Process: smss.exe [进程为会话管理子系统用以初始化系统变量,ms-dos驱动名
称类似lpt1以及com,调用win32壳子系统和运行在windows登陆过程。] -
C:\WINDOWS\System32\smss.exe
100 - 安全 - Process: csrss.exe [客户端服务子系统,用以控制windows图形相关子系统。]
- C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512
Windows=On SubSystemType=Windows ServerDll=base
100 - 安全 - Process: winlogon.exe [windows nt用户登陆程序。] - C:\WINDOWS\system32
\winlogon.exe
100 - 安全 - Process: services.exe [用于管理windows服务系统进程。] -
C:\WINDOWS\system32\services.exe
100 - 安全 - Process: lsass.exe [本地安全权限服务控制windows安全机制。] -
C:\WINDOWS\system32\lsass.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处
理服务。] - C:\WINDOWS\system32\svchost -k DcomLaunch
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处
理服务。] - C:\WINDOWS\system32\svchost -k rpcss
100 - 安全 - Process: CCenter.exe [瑞星杀毒软件控制台相关程序。] -
E:\Rising\Rav\CCenter.exe
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处
理服务。] - C:\WINDOWS\System32\svchost.exe -k netsvcs
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处
理服务。] - C:\WINDOWS\system32\svchost.exe -k NetworkService
100 - 安全 - Process: svchost.exe [service host process是一个标准的动态连接库主机处
理服务。] - C:\WINDOWS\system32\svchost.exe -k LocalService
100 - 安全 - Process: explorer.exe [windows program manager或者windows explorer用于
控制windows图形shell,包括开始菜单、任务栏,桌面和文件管理。] -
C:\WINDOWS\Explorer.EXE
100 - 安全 - Process: rfwsrv.exe [瑞星出品的防火墙程序,用于抵御黑客攻击。] -
c:\rising\rfw\rfwsrv.exe
100 - 安全 - Process: spoolsv.exe [windows打印任务控制程序,用以打印机就绪。] -
C:\WINDOWS\system32\spoolsv.exe
100 - 安全 - Process: scardsvr.exe [对插入在计算机智能卡阅读器中的智能卡进行管理和访
问控制。] - C:\WINDOWS\System32\SCardSvr.exe
100 - 安全 - Process: nvsvc32.exe [nvidia driver helper service在nvida显卡驱动中被安
装。] - C:\WINDOWS\system32\nvsvc32.exe
100 - 安全 - Process: rfwmain.exe [瑞星公司出品的瑞星杀毒软件个人防火墙程序,用于抵御
黑客攻击。] - c:\rising\rfw\RfwMain.exe
100 - 安全 - Process: wdfmgr.exe [windows media player播放器相关程序。] -
C:\WINDOWS\system32\wdfmgr.exe
100 - 安全 - Process: SafeSignCertReg.exe [一款数字证书驱动程序。] -
C:\WINDOWS\system32\SafeSignCertReg.exe
100 - 安全 - Process: ctfmon.exe [office xp输入法图标。] - C:\WINDOWS\system32
\ctfmon.exe
100 - 安全 - Process: alg.exe [这是一个应用层网关服务用于网络共享。] -
C:\WINDOWS\System32\alg.exe
100 - 安全 - Process: conime.exe [console ime ime输入法控制台软件。] -
C:\WINDOWS\system32\conime.exe
100 - 安全 - Process: IEXPLORE.EXE [microsoft internet explorer浏览器用于浏览网页。]
- C:\Program Files\Internet Explorer\iexplore.exe
100 - 安全 - Process: uwdf.exe [windows 用户模式驱动程序。] - C:\WINDOWS\system32
\uWDF.exe
100 - 安全 - Process: conime.exe [console ime ime输入法控制台软件。] -
C:\WINDOWS\system32\conime.exe
100 - 安全 - Process: cmd.exe [windows控制台程序。不像旧的command.com,cmd.exe是一个
32位的命令行使用在winnt/2000/xp。] - C:\WINDOWS\system32\cmd.exe
100 - 安全 - Process: IEXPLORE.EXE [microsoft internet explorer浏览器用于浏览网页。]
- C:\Program Files\Internet Explorer\iexplore.exe
100 - 安全 - Process: cmd.exe [windows控制台程序。不像旧的command.com,cmd.exe是一个
32位的命令行使用在winnt/2000/xp。] - C:\WINDOWS\system32\cmd.exe
100 - 安全 - Process: 诊断报告工具.exe [ReportTool Microsoft 基础类应用程序] - F:\听
诊器\CheckTool\诊断报告工具.exe
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home
Page=http://www.microsoft.com/isapi/redir.dll?Prd=ie&Pver=5.0&Ar=ie5update&O1=b1
R1 - 安全 - HKLM\Software\Microsoft\Internet Explorer\Main,Local
Page=C:\WINDOWS\system32\blank.htm
R1 - 安全 - HKCU\Software\Microsoft\Internet Explorer\Main,Local
Page=C:\WINDOWS\system32\blank.htm
O2 - 安全 - BHO: (WebThunder Browser Helper) - [Web迅雷, 支持多资源超线程技术的下载
工具。] - {00000AAA-A363-466E-BEF5-9BB68697AA7F} - F:\ 迅雷\WebThunderBHO_016.dll
O2 - 安全 - BHO: (浏览器辅助对象(BHO)) - [网际快车IE模块。] - {A5366673-E8CA-11D3-
9CD9-0090271D075B} -
O3 - 安全 - Toolbar: (卡卡上网安全助手) - [卡卡安全助手工具条软件相关程序。] -
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\system32\KakaTool.dll
O4 - 安全 - HKLM\..\Run: [nwiz] [是NVidia的Nview特性相关程序。该程序用于用户对其特性
进行配置,将桌面扩展到多台显示器上。 ] nwiz.exe /install
O4 - 安全 - HKLM\..\Run: [TkBellExe] [是Real Networks产品定时升级检测程序。]
"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - 安全 - HKLM\..\Run: [ISUSPM Startup] [installshield安装包服务计划任务升级程序。
] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - 安全 - HKLM\..\Run: [RavTask] [瑞星杀毒软件的任务计划程序。]
"E:\Rising\Rav\RavTask.exe" -system
O4 - 安全 - HKLM\..\Run: [WebThunder] [是迅雷公司推出的一款基于多资源超线程技术的下
载工具。] F:\ 迅雷\WebThunder.exe
O4 - 安全 - HKLM\..\Run: [ISUSScheduler] [installshield 公司出品的相关软件。]
"C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - 安全 - HKLM\..\Run: [CertificateRegistration] [一款数字证书驱动程序。]
SafeSignCertReg.exe
O4 - 安全 - HKLM\..\RunOnce: [RavStub] [是瑞星杀毒软件相关程序。]
"E:\Rising\Rav\ravstub.exe" /RUNONCE
O4 - 安全 - HKCU\..\Run: [ctfmon.exe] [office xp输入法图标。] C:\WINDOWS\system32
\ctfmon.exe
O4 - 安全 - HKCU\..\Run: [ravtask] [瑞星杀毒软件的任务计划程序。] C:\Progra~1
\Eset\rund1132.exe
O4 - 安全 - Startup folder: [壁纸自动换.lnk] [一款自动换壁纸软件相关程序。]
C:\Documents and Settings\All Users\「开始」菜单\程序\启动\壁纸自动换.lnk
O4 - 安全 - Startup folder: [腾讯QQ.lnk] [qq:即时通讯软件] C:\Documents and
Settings\new\「开始」菜单\程序\启动\腾讯QQ.lnk
O8 - 安全 - Extra context menu item: &使用迅雷下载 - F:\Thunder\geturl.htm
O8 - 安全 - Extra context menu item: &使用迅雷下载全部链接 -
F:\Thunder\getallurl.htm
O8 - 安全 - Extra context menu item: 使用影音传送带下载 - C:\Program
Files\Xi\NetTransport 2\NTAddLink.html
O8 - 安全 - Extra context menu item: 使用影音传送带下载全部链接 - C:\Program
Files\Xi\NetTransport 2\NTAddList.html
O8 - 安全 - Extra context menu item: 导出到 Microsoft Office Excel(&X) -
res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O16 - 安全 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Flash播放器) -
http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
O18 - 安全 - Protocol: OFFICE 相关 - {807553E5-5146-11D5-A672-00B0D022E945} -
C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
O23 - 安全 - Service: NVSvc [是NVIDIA显示卡相关程序。] - C:\WINDOWS\system32
\nvsvc32.exe - (running)
O23 - 安全 - Service: RfwProxySrv [瑞星防火墙相关程序。] -
c:\rising\rfw\rfwproxy.exe - (not running)
O23 - 安全 - Service: RfwService [是瑞星个人防火墙相关程序。] -
c:\rising\rfw\rfwsrv.exe - (running)
飘零de回忆 - 2007-3-15 13:20:00
O40 - svchost.exe - Beijing Rising Technology Co., Ltd. - F:\卡卡助手
\ieprot.dll - IE Protector - 6b0f42a6f0fcca3b2de389fd297fd25c
O40 - Explorer.EXE - Beijing Rising Technology Co., Ltd. -
C:\WINDOWS\system32\RavExt.dll - Rising Shell Ext Module -
fa20734a7acabcfe9d727fb343da4e8a
O40 - Explorer.EXE - Beijing Rising Technology Co., Ltd. - F:\卡卡助手
\ieprot.dll - IE Protector - 6b0f42a6f0fcca3b2de389fd297fd25c
O40 - Explorer.EXE - - F:\360安全卫士\360safe\safemon\safemon.dll -
360安全卫士实时保护模块 - 2ce8c338ab8d88e1d663828b6eb4133e
O40 - Explorer.EXE - - C:\WINDOWS\system32\mppds.dll - -
da4d2552e3277e1b8d08a7ee6f99e33f
O40 - Explorer.EXE - Beijing Rising Technology Co., Ltd. -
E:\Rising\Rav\RSCOMMON.DLL - Rising Common Function Dynamic Link Library -
58432e6c58f1b4c339adc1a79bf864b6
O40 - Explorer.EXE - - C:\WINDOWS\system32\winform.dll - -
2844183980e16d52da0bf797d00ea31e
O40 - Explorer.EXE - - C:\DOCUME~1\new\LOCALS~1\Temp\upxdnd.dll - -
7341e89e8f7e6756da957a7c90bfc581
O40 - Explorer.EXE - - C:\WINDOWS\system32\Rav26.dll - -
2a5e39bc19dfb418fc732d974a051e69
O40 - Explorer.EXE - Thunder Networking Technologies,LTD - F:\ 迅雷
\WebThunderBHO_016.dll - WebThunderBHO - e0de92701b68fc5201d8007722589f69
O40 - EXPLORER.EXE - Beijing Rising Technology Co., Ltd. - F:\卡卡助手
\ieprot.dll - IE Protector - 6b0f42a6f0fcca3b2de389fd297fd25c
O40 - EXPLORER.EXE - - F:\360安全卫士\360safe\safemon\safemon.dll -
360安全卫士实时保护模块 - 2ce8c338ab8d88e1d663828b6eb4133e
飘零de回忆 - 2007-3-15 13:20:00
O41 - a320raid - Adaptec HostRAID for Ultra320 SCSI -
C:\WINDOWS\system32\drivers\a320raid.sys - (not running) - Adaptec HostRAID for
Ultra320 SCSI - Adaptec, Inc. - 0532434d53314ee8858b7bfdbe761837
O41 - AAC - Adaptec RAID Miniport Driver - C:\WINDOWS\system32
\drivers\aac.sys - (not running) - Adaptec RAID Miniport Driver - Adaptec, Inc. -
f9ee3c7a185d121b145164cb10c057a7
O41 - adpu320 - Adaptec Win2K/XP/Server2003 Ultra320 SCSI Driver -
C:\WINDOWS\system32\drivers\adpu320.sys - (not running) - Adaptec
Win2K/XP/Server2003 Ultra320 SCSI Driver - Adaptec, Inc. -
c234c8595918e4403016fc7e87abf153
O41 - aec6210 - aec6210 - C:\WINDOWS\system32\drivers\AEC6210.sys -
(not running) - - ACARD Technology Corp. - 38e6c035e89fb8b079301e71b2523f3d
O41 - aec6260 - ID=0006, 0007 - C:\WINDOWS\system32
\drivers\AEC6260.sys - (not running) - ID=0006, 0007 - ACARD Technology Corp. -
db227bd0ba1f29bb38950f8fd97caa35
O41 - aec6280 - AEC6280 Miniport Driver - C:\WINDOWS\system32
\drivers\AEC6280.SYS - (not running) - AEC6280 Miniport Driver - ACARD Technology
Corp. - 71c3ab81b22c151a2e2ba97ec53430ca
O41 - AEC6290 - AEC6280 Miniport Driver - C:\WINDOWS\system32
\drivers\AEC6290.SYS - (not running) - AEC6280 Miniport Driver - ACARD Technology
Corp. - 71c3ab81b22c151a2e2ba97ec53430ca
O41 - AEC67160 - AEC67160 PCI Ultra3 LVD/SE Adapter Driver -
C:\WINDOWS\system32\drivers\AEC67160.SYS - (not running) - AEC67160 PCI Ultra3
LVD/SE Adapter Driver - ACARD Technology Corp. - f2b276e8f4057dd1ba2bd40ecaf1ac57
O41 - AEC671X - AEC671X PCI Ultra/W SCSI3 Adapter Driver -
C:\WINDOWS\system32\drivers\AEC671X.SYS - (not running) - AEC671X PCI Ultra/W SCSI3
Adapter Driver - ACARD Technology Corp. - 9493824293585203212d0157cb2430a7
O41 - AEC6880 - AEC6880/90 PCI Ultra ATA133 RAID Adapter Driver -
C:\WINDOWS\system32\drivers\AEC6880.SYS - (not running) - AEC6880/90 PCI Ultra
ATA133 RAID Adapter Driver - ACARD Technology Corp. -
415f252cee34bbf839acbcadb2bc85ce
O41 - AEC6890 - AEC6880/90 PCI Ultra ATA133 RAID Adapter Driver -
C:\WINDOWS\system32\drivers\AEC6890.SYS - (not running) - AEC6880/90 PCI Ultra
ATA133 RAID Adapter Driver - ACARD Technology Corp. -
415f252cee34bbf839acbcadb2bc85ce
O41 - aec68x5 - AEC6885/95/96 PCI ATA133 4 Channel RAID Adapter Driver
- C:\WINDOWS\system32\drivers\aec68X5.sys - (not running) - AEC6885/95/96 PCI ATA133
4 Channel RAID Adapter Driver - ACARD Technology Corp. -
6275261ebb499358ff5c5cf901f7ad6c
O41 - AmdK8 - Processor Device Driver - C:\WINDOWS\system32
\drivers\amdk8.sys - (not running) - Processor Device Driver - Microsoft Corporation
- f3db0078e05f9480abc58ad94cb03ce4
O41 - arc - Adaptec RAID Storport Driver - C:\WINDOWS\system32
\drivers\arc.sys - (not running) - Adaptec RAID Storport Driver - Adaptec, Inc. -
03db2261f2abbc70780fc06850cdd4bd
O41 - BaseTDI - basetdi - C:\WINDOWS\system32\drivers\basetdi.sys -
(running) - basetdi - Beijing Rising Technology Co., Ltd. -
0064810c1b03f2c889130b669a4ce937
O41 - EagleNT - EagleNT - C:\WINDOWS\system32\drivers\EagleNT.sys -
(not running) - - -
O41 - elxstor - Storport Miniport Driver for LightPulse HBAs -
C:\WINDOWS\system32\drivers\elxstor.sys - (not running) - Storport Miniport Driver
for LightPulse HBAs - Emulex - 83054fc939537446d35db871c20da128
O41 - ExpScaner - ExpScan.sys - E:\Rising\Rav\ExpScan.sys - (running)
- ExpScan.sys - - 5a690926c7181d5c0b2721016442c9c3
O41 - FASTSX - Promise FastTRAK SX4/SX4000 Driver for WindowsXP -
C:\WINDOWS\system32\drivers\fastsx.sys - (not running) - Promise FastTRAK SX4/SX4000
Driver for WindowsXP - Promise Technology, Inc. - 21ab10bc1c78a68cdf0cbd304dbfb7fa
O41 - fasttrak - Promise FastTrak Series Driver for WinXP -
C:\WINDOWS\system32\drivers\fasttrak.sys - (not running) - Promise FastTrak Series
Driver for WinXP - Promise Technology, Inc. - eb1c078d99cc081c1d2ae3a19e2284cc
O41 - fasttx2k - Promise Driver for Windows XP - C:\WINDOWS\system32
\drivers\fasttx2k.sys - (not running) - Promise Driver for Windows XP - Promise
Technology, Inc. - 5d95724d3c3923449c02be1106657bcd
O41 - fasttx2k2 - Promise FastTrak Series Driver for WindowsXP -
C:\WINDOWS\system32\drivers\fasttx2k2.sys - (not running) - Promise FastTrak Series
Driver for WindowsXP - Promise Technology, Inc. - c127946de07bbb00f69f78923577dae4
O41 - hardlock - Hardlock Device Driver for Windows NT -
C:\WINDOWS\system32\drivers\hardlock.sys - (running) - Hardlock Device Driver for
Windows NT - Aladdin Knowledge Systems - c818b973110a1c9f7763dd39bffd0fd3
O41 - Haspnt - HASP Kernel Device Driver for Windows NT -
C:\WINDOWS\system32\drivers\Haspnt.sys - (running) - HASP Kernel Device Driver for
Windows NT - Aladdin Knowledge Systems - 2dd25f060dc9f79b5cdf33d90ed93669
O41 - HookCont - HookCont - E:\Rising\Rav\HookCont.sys - (running) -
HookCont - Rising - 4447c53ba80df5d4a9b72e54a0ba71d8
O41 - HookReg - HookReg - E:\Rising\Rav\HOOKREG.sys - (running) - -
- 997c395147f8e5b3f714bdd112fe8945
O41 - HookSys - Hooksys - E:\Rising\Rav\HookSys.sys - (running) -
Hooksys - Rising - 265b67f85db6226f2439e13e7c1fa8bf
O41 - HookUrl - HookUrl - C:\Rising\Rfw\HookUrl.sys - (running) -
HookUrl - Beijing Rising Technology Co., Ltd. - 93768ab1e576eef2de107eddbc586e9b
O41 - HpCISSs - Smart Array 5x and 6x Controllers Storport Driver -
C:\WINDOWS\system32\drivers\hpcisss.sys - (not running) - Smart Array 5x and 6x
Controllers Storport Driver - Hewlett-Packard Company -
1712369d00c88b8c8205790aa4b225d0
O41 - Hpt366 - ATAPI IDE Miniport Driver - C:\WINDOWS\system32
\drivers\hpt366.sys - (not running) - ATAPI IDE Miniport Driver - Microsoft
Corporation - 4e4c5dde3eb4e9392c9659818790ed6c
O41 - HPT371 - HPT3xx Miniport Driver - C:\WINDOWS\system32
\drivers\hpt371.sys - (not running) - HPT3xx Miniport Driver - HighPoint
Technologies, Inc. - cac96d5be76a3d20c41759b12167c09b
O41 - hpt374 - HPT374 Miniport Driver - C:\WINDOWS\system32
\drivers\hpt374.sys - (not running) - HPT374 Miniport Driver - HighPoint
Technologies, Inc. - ccee236589335d118e22d0fe400233a6
O41 - hpt3xx - HPT3xx Miniport Driver - C:\WINDOWS\system32
\drivers\hpt3xx.sys - (not running) - HPT3xx Miniport Driver - HighPoint
Technologies, Inc. - 9f2dfe54317b1cd38143686935a278d9
O41 - hptmv - hptmv Miniport Driver - C:\WINDOWS\system32
\drivers\hptmv.sys - (not running) - hptmv Miniport Driver - HighPoint Technologies,
Inc. - 4f92f14095d52ca870039b192a3319b0
O41 - hptpro - Hptpro - C:\WINDOWS\system32\drivers\hptpro.sys - (not
running) - Hptpro - HighPoint Technologies, Inc. - 977716f8a6edda986fdb41de52bdb689
飘零de回忆 - 2007-3-15 13:21:00
O41 - iaStor - Intel Application Accelerator driver -
C:\WINDOWS\system32\drivers\iastor.sys - (not running) - Intel Application
Accelerator driver - Intel Corporation - bdce6b54e1d7d8399175a83a02274b7a
O41 - iirsp - Intel/ICP Raid Storport Driver - C:\WINDOWS\system32
\drivers\iirsp.sys - (not running) - Intel/ICP Raid Storport Driver - Intel
Corp./ICP vortex GmbH - c1e08b2845995ac1cbcde37ac2c55b68
O41 - iteraid - ITE IT8212 ATA RAID SCSI miniport -
C:\WINDOWS\system32\drivers\iteraid.sys - (not running) - ITE IT8212 ATA RAID SCSI
miniport - Integrated Technology Express, Inc. - eebd120b0eeb78c3374ddc72fa55e789
O41 - LSI_SAS - LSI Logic Fusion-MPT SAS Driver (StorPort) -
C:\WINDOWS\system32\drivers\lsi_sas.sys - (not running) - LSI Logic Fusion-MPT SAS
Driver (StorPort) - LSI Logic - 73c195bcee1530e6107339f1e427dded
O41 - LSI_SCSI - LSI Logic Fusion-MPT SCSI Driver (StorPort) -
C:\WINDOWS\system32\drivers\lsi_scsi.sys - (not running) - LSI Logic Fusion-MPT SCSI
Driver (StorPort) - LSI Logic - 72b9219213c6935fd9c4ba9e2ec7e207
O41 - m5228 - M5228 ATA RAID Controller Driver - C:\WINDOWS\system32
\drivers\m5228.sys - (not running) - M5228 ATA RAID Controller Driver - ALi
Corporation. - 4bc8aa133cdb516392ac76d9948138bc
O41 - m5281 - M5281 SATA RAID Controller Driver - C:\WINDOWS\system32
\drivers\m5281.sys - (not running) - M5281 SATA RAID Controller Driver - ALi
Corporation - 3bb7e4f0d880c57b75ab2197f6e21897
O41 - megasas - MEGASAS RAID Controller Driver for Windows for x86 -
C:\WINDOWS\system32\drivers\megasas.sys - (not running) - MEGASAS RAID Controller
Driver for Windows for x86 - LSI Logic Corporation -
53e3718e5aaae794f412543f819f8344
O41 - MEMSCAN - MemScan Driver - E:\Rising\Rav\MemScan.sys - (running)
- MemScan Driver - 瑞星软件有限公司 - 9811b256023dd985cbc5bad790e5bb84
O41 - mProcRs - Rising Personal FireWall mprocrs.sys -
c:\Rising\Rfw\mProcRs.sys - (running) - Rising Personal FireWall mprocrs.sys -
Beijing Rising Technology Co., Ltd. - f19fe6ccade903d285208247056daf6a
O41 - mraid2k - MEGARAID SCSI Controller Driver for Windows 2000 PAE -
C:\WINDOWS\system32\drivers\MRAID2K.SYS - (not running) - MEGARAID SCSI Controller
Driver for Windows 2000 PAE - American Megatrends, Inc. -
a7bb113a38b04c0296bfa76b41d92f95
O41 - nfrd960 - IBM ServeRAID Controller Driver - C:\WINDOWS\system32
\drivers\nfrd960.sys - (not running) - IBM ServeRAID Controller Driver - IBM
Corporation - d5314d4a43cdcf2072aa46a3be39c764
O41 - NPF - npf - C:\WINDOWS\system32\drivers\npf.sys - (running) -
npf - CACE Technologies - d21fee8db254ba762656878168ac1db6
O41 - npkcrypt - nProtect KeyCrypt Driver - F:\騰信QQ\npkcrypt.sys -
(running) - nProtect KeyCrypt Driver - INCA Internet Co., Ltd. -
e2ccef92d4acf3de8deb8b3cb08811e2
O41 - NvAtaBus - NVIDIA? nForce(TM) IDE Performance Driver -
C:\WINDOWS\system32\drivers\NvAtaBus.sys - (not running) - NVIDIA? nForce(TM) IDE
Performance Driver - NVIDIA Corporation - a1f88223528aadbb6374132becbbdcc1
O41 - nvraid - NVIDIA? nForce(TM) RAID Driver - C:\WINDOWS\system32
\drivers\nvraid.sys - (not running) - NVIDIA? nForce(TM) RAID Driver - NVIDIA
Corporation - 30dd670c6ffa1e0ef51955c08a7fe5bf
O41 - oreans32 - oreans32 - C:\WINDOWS\system32\drivers\oreans32.sys -
(running) - - - aad837bf3b475092fd515cd0842334e9
O41 - PNP649R - IDE RAID miniport driver - C:\WINDOWS\system32
\drivers\PnP649r.sys - (not running) - IDE RAID miniport driver - CMD Technology,
Inc. - 5a5a6a1003eecd15df2f383972e86188
O41 - Pnp680 - DMA capable ATA miniport driver - C:\WINDOWS\system32
\drivers\Pnp680.sys - (not running) - DMA capable ATA miniport driver - Silicon
Image, Inc. - 023657a82e76ad98f3fafbd1ec425a71
O41 - Pnp680r - DMA capable ATA RAID miniport driver -
C:\WINDOWS\system32\drivers\PnP680r.sys - (not running) - DMA capable ATA RAID
miniport driver - Silicon Image, Inc - a1d7a9214b71ebbb6f31cb84aac15525
O41 - ql2300 - QLogic Fibre Channel Stor Miniport Driver -
C:\WINDOWS\system32\drivers\ql2300.sys - (not running) - QLogic Fibre Channel Stor
Miniport Driver - QLogic Corporation - 8d21bae29162b1a9ea17e895e9f825eb
O41 - RAIDSRC - Intel(r)/ICP Miniport Driver - C:\WINDOWS\system32
\drivers\raidsrc.sys - (not running) - Intel(r)/ICP Miniport Driver - Intel/ICP -
4ba4a4ac184ed0cf15faa62e2375883f
O41 - RsAntiSpyware - RsBoot - C:\WINDOWS\system32\drivers\RsBoot.sys
- (not running) - RsBoot - Beijing Rising - ab32cdae04c24a612bf4dac356ce3354
O41 - RsFwDrv - nt_fwdrv - C:\Rising\Rfw\rsfwdrv.sys - (running) -
nt_fwdrv - Beijing Rising Technology Co., Ltd. - 1869e55cfacff0ff786d4ba6d2340ee2
O41 - RsNTGDI - RsNTGDI - C:\WINDOWS\system32\drivers\RsNTGdi.sys -
(running) - RsNTGDI - Beijing Rising Technology Co., Ltd. -
17214e7b192cb93ff014fca1484b97ad
O41 - RSPPSYS - RSPPSYS - E:\Rising\Rav\rsppsys.sys - (stopping) -
RSPPSYS - Rising - 4197f8bb3251c22f806c1d7d8d6ca2e1
O41 - S150SX8 - Promise SATAII150 SX8 Driver for WindowsXP -
C:\WINDOWS\system32\drivers\S150sx8.sys - (not running) - Promise SATAII150 SX8
Driver for WindowsXP - Promise Technology, Inc. - 13d1e68b006ae72276079f5fcbe5a471
飘零de回忆 - 2007-3-15 13:21:00
O41 - SI3112 - Serial ATA miniport driver - C:\WINDOWS\system32
\drivers\Si3112.sys - (not running) - Serial ATA miniport driver - Silicon Image,
Inc. - 77f5cf403657f5086df7f4ed1f497cbb
O41 - SI3112r - Serial ATA RAID Miniport Driver - C:\WINDOWS\system32
\drivers\Si3112r.sys - (not running) - Serial ATA RAID Miniport Driver - Silicon
Image, Inc - d89dde61753a3b5d64e15a1a925588cc
O41 - SI3114 - Serial ATA miniport driver - C:\WINDOWS\system32
\drivers\Si3114.sys - (not running) - Serial ATA miniport driver - Silicon Image,
Inc. - 9c67403714df81c8bdf177ce440c9d84
O41 - SI3114r - SATARAID Miniport Driver - C:\WINDOWS\system32
\drivers\Si3114r.sys - (not running) - SATARAID Miniport Driver - Silicon Image, Inc
- 53ee85fa0b48eb64031a190adf23c8d8
O41 - SI3124 - Serial ATA miniport driver - C:\WINDOWS\system32
\drivers\Si3124.sys - (not running) - Serial ATA miniport driver - Silicon Image,
Inc. - da09038c6d12cf69031b515741250f7b
O41 - SI3124r - SATARAID miniport driver (PRE-RELEASE) -
C:\WINDOWS\system32\drivers\Si3124r.sys - (not running) - SATARAID miniport driver
(PRE-RELEASE) - Silicon Image, Inc - 0c71855057883e63ca2c19736cbab018
O41 - SiFilter - Windows Accelerator Driver - C:\WINDOWS\system32
\drivers\SiWinAcc.sys - (not running) - Windows Accelerator Driver - Silicon Image,
Inc. - 1582e88c6f340627247b1ecd00fa84fe
O41 - SISIDE - SiS PCI Mini IDE Driver - C:\WINDOWS\system32
\drivers\siside.sys - (not running) - SiS PCI Mini IDE Driver - Silicon Integrated
Systems Corp. - b4485881bd8aed9b157a2e6cf43c2d51
O41 - SiSRaid - SiS RAID Miniport Driver - C:\WINDOWS\system32
\drivers\sisraid.sys - (not running) - SiS RAID Miniport Driver - Silicon Integrated
Systems - 4c597e4de6edf6453990059ba0eac7d0
O41 - SiSRaid1 - SiS RAID Miniport Driver - C:\WINDOWS\system32
\drivers\sisraid1.sys - (not running) - SiS RAID Miniport Driver - Silicon
Integrated Systems - 52192d1a30ae56a203c047213b0f596b
O41 - SISRAIDS - SiS RAID Miniport Driver - C:\WINDOWS\system32
\drivers\SISRAIDS.SYS - (not running) - SiS RAID Miniport Driver - Silicon
Integrated Systems Corp - 46cecd8f57e63bdb9d6c9f130be2d97c
O41 - sptrak - Promise SuperTrak Family Driver for WindowsNT -
C:\WINDOWS\system32\drivers\Sptrak.sys - (not running) - Promise SuperTrak Family
Driver for WindowsNT - Promise Technology, Inc. - b04bdc24f80ecb319f64189194399989
O41 - SYMMPI - LSI Logic Fusion-MPT MiniPort Driver (ScsiPort) -
C:\WINDOWS\system32\drivers\symmpi.sys - (not running) - LSI Logic Fusion-MPT
MiniPort Driver (ScsiPort) - LSI Logic - 3adffb39782474652f4ea2cf1345b340
O41 - UlSata - Promise Ultra/Sata Series Driver for WinXP -
C:\WINDOWS\system32\drivers\ulsata.sys - (not running) - Promise Ultra/Sata Series
Driver for WinXP - Promise Technology, Inc. - 2c2777217a706f62a9d225256ceaf30a
O41 - ULSATAS - Promise SATAII150 Series Driver for Win2003 -
C:\WINDOWS\system32\drivers\ulsatas.sys - (not running) - Promise SATAII150 Series
Driver for Win2003 - Promise Technology, Inc. - 0c5583d3bb02e78e639eac234e97d515
O41 - viamraid - VIA RAID DRIVER FOR WIN 2000/XP/2003IA32 -
C:\WINDOWS\system32\drivers\viamraid.sys - (not running) - VIA RAID DRIVER FOR WIN
2000/XP/2003IA32 - VIA Technologies inc,.ltd - f199939205dccc7836ae5ab8b5dd5e83
O41 - viapdsk - VIA VT4149 PATA Driver - C:\WINDOWS\system32
\drivers\viapdsk.sys - (not running) - VIA VT4149 PATA Driver - VIA Technologies,
Inc. - f314359357b6960eb727620470ffc9cf
O41 - viaraid - VT6410 RAID DRIVER FOR WINXP - C:\WINDOWS\system32
\drivers\viaraid.sys - (not running) - VT6410 RAID DRIVER FOR WINXP - VIA
Technologies inc,.ltd - 29d02cee410d4ed80014bbf0fc98bd2d
O41 - viasraid - VIA SATA RAID DRIVER FOR WINXP - C:\WINDOWS\system32
\drivers\viasraid.sys - (not running) - VIA SATA RAID DRIVER FOR WINXP - VIA
Technologies inc,.ltd - ebe101c01d80a42868f57b327be1b564
O41 - vmscsi - VMware SCSI Controller - C:\WINDOWS\system32
\drivers\vmscsi.sys - (not running) - VMware SCSI Controller - VMware, Inc. -
cd8a1f04836111dc0e6c0cd904b3c660
O41 - XTrapD12 - XTrapD12 - C:\WINDOWS\system32\XTrapD12.sys - (not
running) - - -
© 2000 - 2026 Rising Corp. Ltd.