瑞星卡卡安全论坛
大神小僧 - 2007-9-24 16:49:00
刚刚发生的现象 应该是中病毒了
所有文件的图标都变成没有图标文件时的模样 比如应用程序的图标就是个窗口方框图样
文件夹的左侧信息栏也没有了
帮忙看看是什么病毒 怎么解决
以下为日志
[CODE]
2007-09-24,17:28:33
System Repair Engineer 2.5.16.900
Smallfrogs (http://www.KZTechs.com)
Windows XP Home Edition Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
Winsock 提供者
Autorun.inf
HOSTS 文件
进程特权扫描
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Windows Publisher]
<MSMSGS><"C:\Program Files\Messenger\msmsgs.exe" /background> [(Verified)Microsoft Windows XP Publisher]
<WMPNSCFG><C:\Program Files\Windows Media Player\WMPNSCFG.exe> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<IMJPMIG8.1><"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32> [(Verified)Microsoft Windows Publisher]
<PHIME2002ASync><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [(Verified)Microsoft Windows Publisher]
<PHIME2002A><C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [(Verified)Microsoft Windows Publisher]
<TPKMAPHELPER><C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe -helper> [Lenovo]
<TpShocks><TpShocks.exe> [Lenovo, Ltd. and IBM Corporation.]
<TP4EX><tp4ex.exe> [Lenovo Group Limited]
<EZEJMNAP><C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe> [Lenovo Group Limited]
<TPHOTKEY><C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe> []
<SynTPLpr><C:\Program Files\Synaptics\SynTP\SynTPLpr.exe> [(Verified)Microsoft Windows Publisher]
<SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [(Verified)Microsoft Windows Publisher]
<SoundMAXPnP><C:\Program Files\Analog Devices\Core\smax4pnp.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<SoundMAX><C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray> [Analog Devices, Inc.]
<LPManager><C:\PROGRA~1\THINKV~2\PrdCtr\LPMGR.exe> [Lenovo Group Limited]
<AMSG><C:\PROGRA~1\THINKV~2\AMSG\amsg.exe> [LENOVO]
<DLA><C:\WINDOWS\System32\DLA\DLACTRLW.EXE> [Sonic Solutions]
<ISUSPM Startup><c:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup> [InstallShield Software Corporation]
<ISUSScheduler><"c:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start> [Macrovision Corporation]
<AwaySch><C:\Program Files\Lenovo\AwayTask\AwaySch.EXE> [Lenovo Group Limited]
<cssauth><"C:\Program Files\IBM ThinkVantage\Client Security Solution\cssauth.exe" silent> [N/A]
<PDService.exe><"C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\pdservice.exe"> [Utimaco Safeware AG]
<Picasa Media Detector><C:\Program Files\Picasa2\PicasaMediaDetector.exe> [Google Inc.]
<DiskeeperSystray><"C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe"> [Diskeeper Corporation]
<Google Desktop Search><"C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup> []
<ACTray><C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe> []
<ACWLIcon><C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe> []
<PWRMGRTR><rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL,PwrMgrBkGndMonitor> [Lenovo Group Limited]
<BLOG><rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BatLogEx.DLL,StartBattLog> []
<IMEKRMIG6.1><C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE> [(Verified)Microsoft Windows Publisher]
<MSPY2002><C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC> [(Verified)Microsoft Windows Publisher]
<RavTask><"C:\Program Files\Rising\Rav\RavTask.exe" -system> [Beijing Rising Technology Co., Ltd.]
<RfwMain><"C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup> [Beijing Rising Technology Co., Ltd.]
<TkBellExe><"C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot> [RealNetworks, Inc.]
<RAMDrive><"C:\Program Files\FarStone\VDPPro\VHD\RDTask.exe"> []
<DVDCTray><C:\Program Files\FarStone\VDPPro\dvdcreator\DVDCTrayIconShl.exe> []
<VirtualDrive><C:\Program Files\FarStone\VDPPro\VDP\vdtask.exe /AutoRestore> [FarStone Technology Inc.]
<DAEMON Tools-1033><"C:\Program Files\D-Tools\daemon.exe" -lang 2052> [DAEMON'S HOME]
<IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload> [(Verified)Microsoft Corporation]
<TVT Scheduler Proxy><C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe> [Lenovo Group Limited]
<suScheduler><C:\Program Files\ThinkVantage\SystemUpdate\UCLauncher.exe /SCHEDULER> []
<PSQLLauncher><"C:\Program Files\ThinkVantage Fingerprint Software\launcher.exe" /startup> [UPEK Inc.]
<TPKBDLED><C:\WINDOWS\system32\TpScrLk.exe> []
<igfxtray><C:\WINDOWS\system32\igfxtray.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<igfxhkcmd><C:\WINDOWS\system32\hkcmd.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<igfxpers><C:\WINDOWS\system32\igfxpers.exe> [(Verified)Microsoft Windows Component Publisher]
<snp2std><C:\WINDOWS\vsnp2std.exe> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
<runeip><"C:\Program Files\Rising\KakaToolBar\runiep.exe" /startup> [Beijing Rising Technology Co., Ltd.]
<aMPStation><C:\Program Files\KDDI\auMusicPort\aMPStation.exe> []
<IBM Warranty Notification><"C:\Program Files\IBM\acp\ERTS0749\ERTS0749.exe /nointro"> [IBM Corporation]
<QuickTime Task><"C:\Program Files\QuickTime\QTTask.exe" -atboottime> [Apple Inc.]
<iTunesHelper><"C:\Program Files\iTunes\iTunesHelper.exe"> [(Verified)"Apple Computer, Inc."]
<KernelFaultCheck><%systemroot%\system32\dumprep 0 -k> [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [(Verified)Microsoft Windows Component Publisher]
<Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<GinaDLL><vrlogon.dll> [UPEK Inc.]
<UIHost><logonui.exe> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{32CD708B-60A7-4C00-9377-D73EAA495F0F}><C:\WINDOWS\system32\RavExt.dll> [Beijing Rising Technology Co., Ltd.]
<{AC2DC2EF-5165-40A3-8CDF-41DCA1B0901A}><C:\WINDOWS\system32\shlhook.dll> [Beijing Rising Technology Co., Ltd.]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<WPDShServiceObj><C:\WINDOWS\system32\WPDShServiceObj.dll> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ACNotify]
<WinlogonNotify: ACNotify><ACNotify.dll> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AwayNotify]
<WinlogonNotify: AwayNotify><C:\Program Files\Lenovo\AwayTask\AwayNotify.dll> [Lenovo Group Limited]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
<WinlogonNotify: igfxcui><igfxdev.dll> [(Verified)Microsoft Windows Hardware Compatibility Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\psfus]
<WinlogonNotify: psfus><psqlpwd.dll> [UPEK Inc.]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tpfnf2]
<WinlogonNotify: tpfnf2><notifyf2.dll> []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tphotkey]
<WinlogonNotify: tphotkey><tphklock.dll> []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
<WinlogonNotify: WgaLogon><WgaLogon.dll> [(Verified)Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
<Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
<Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
<Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
<Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
<NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
<Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser> [(Verified)Microsoft Windows Component Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
<Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp11.inf,PerUserStub> [(Verified)Microsoft Windows Publisher]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
<通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
<N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install> [Microsoft Corporation]
[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; TencentTraveler ; .NET CLR 1.1.4322; .NET CLR 2.0.50727)
大神小僧 - 2007-9-24 16:52:00
[MEMSCAN / MEMSCAN][Running/Auto Start]
<\??\C:\Program Files\Rising\Rav\MEMSCAN.sys><Beijing Rising Technology Co., Ltd.>
[mProcRs / mProcRs][Running/Auto Start]
<\??\c:\program files\rising\rfw\mProcRs.sys><Beijing Rising Technology Co., Ltd.>
[mraid35x / mraid35x][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\mraid35x.sys><American Megatrends Inc.>
[npkcrypt / npkcrypt][Stopped/Auto Start]
<\??\C:\Program Files\Tencent\QQ\npkcrypt.sys><N/A>
[npkcusb / npkcusb][Stopped/Auto Start]
<\??\C:\Program Files\Tencent\QQ\npkcusb.sys><N/A>
[NSC Infrared Device Driver / NSCIRDA][Running/Manual Start]
<system32\DRIVERS\nscirda.sys><National Semiconductor Corporation>
[nv / nv][Stopped/Manual Start]
<system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[pmem / pmem][Running/Auto Start]
<\??\C:\WINDOWS\System32\drivers\pmemnt.sys><Microsoft Corporation>
[pnicml / pnicml][Stopped/Manual Start]
<\??\C:\DOCUME~1\Yang\LOCALS~1\Temp\pnicml.sys><N/A>
[PrivateDisk / PrivateDisk][Running/Auto Start]
<\??\C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\PrivateDiskM.sys><Utimaco Safeware AG>
[IPS 帮助器驱动程序 / PROCDD][Running/Auto Start]
<system32\DRIVERS\PROCDD.SYS><Lenovo Group Limited>
[StarForce Protection Environment Driver v6 / prodrv06][Running/System Start]
<\SystemRoot\System32\drivers\prodrv06.sys><StarForce Technologies, Inc.>
[StarForce Protection Helper Driver v2 / prohlp02][Running/Boot Start]
<\SystemRoot\System32\drivers\prohlp02.sys><StarForce Technologies, Inc.>
[StarForce Protection Synchronization Driver v1 / prosync1][Running/Boot Start]
<\SystemRoot\System32\drivers\prosync1.sys><StarForce Technologies, Inc.>
[IBM PSA Access Driver / psadd][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\Drivers\psadd.sys><Lenovo>
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
[PxHelp20 / PxHelp20][Running/Boot Start]
<\SystemRoot\System32\Drivers\PxHelp20.sys><Sonic Solutions>
[ql1080 / ql1080][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ql1080.sys><QLogic Corporation>
[Ql10wnt / Ql10wnt][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ql10wnt.sys><Microsoft Corporation>
[ql12160 / ql12160][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ql12160.sys><QLogic Corporation>
[ql1280 / ql1280][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ql1280.sys><QLogic Corporation>
[RsAntiSpyware / RsAntiSpyware][Running/Boot Start]
<\SystemRoot\system32\drivers\RsBoot.sys><Beijing Rising Technology Co., Ltd.>
[RsFwDrv / RsFwDrv][Running/Auto Start]
<\??\C:\Program Files\Rising\Rfw\RsFwDrv.sys><Beijing Rising Technology Co., Ltd.>
[RsNTGDI / RsNTGDI][Running/Boot Start]
<\SystemRoot\system32\Drivers\RsNTGdi.sys><Beijing Rising Technology Co., Ltd.>
[RSPPSYS / RSPPSYS][Running/Auto Start]
<\??\C:\Program Files\Rising\Rav\RSPPSYS.sys><Rising>
[WLAN 传输 / s24trans][Running/Auto Start]
<system32\DRIVERS\s24trans.sys><Intel Corporation>
[Secdrv / Secdrv][Running/Auto Start]
<system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
[StarForce Protection Helper Driver / sfhlp01][Running/Boot Start]
<\SystemRoot\System32\drivers\sfhlp01.sys><StarForce Technologies, Inc.>
[SIS AGP Bus Filter / sisagp][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\sisagp.sys><Silicon Integrated Systems Corporation>
[Smapint / Smapint][Running/System Start]
<System32\drivers\Smapint.sys><Microsoft Corporation>
[smi2 / smi2][Running/Auto Start]
<\??\C:\Program Files\SMI2\smi2.sys><IBM Corp.>
[SMI helper driver / smihlp][Running/Auto Start]
<\??\C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys><UPEK Inc.>
[USB2.0 PC Camera (SNP2STD) / SNP2STD][Running/Manual Start]
<system32\DRIVERS\snp2sxp.sys><>
[Sony USB Filter Driver (SONYPVU1) / SONYPVU1][Stopped/Manual Start]
<system32\DRIVERS\SONYPVU1.SYS><Sony Corporation>
[Sparrow / Sparrow][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\sparrow.sys><Adaptec, Inc.>
[auMusicPort SPS Service / Spsmqvsm][Running/Boot Start]
<\SystemRoot\system32\drivers\spsmqvsm.sys><Toshiba Corporation>
[symc810 / symc810][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\symc810.sys><Symbios Logic Inc.>
[symc8xx / symc8xx][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\symc8xx.sys><LSI Logic>
[sym_hi / sym_hi][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\sym_hi.sys><LSI Logic>
[sym_u3 / sym_u3][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\sym_u3.sys><LSI Logic>
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
<system32\DRIVERS\SynTP.sys><Synaptics, Inc.>
[TC USB Kernel Driver / TcUsb][Running/Manual Start]
<System32\Drivers\tcusb.sys><UPEK Inc.>
[TDSMAPI / TDSMAPI][Running/System Start]
<System32\drivers\TDSMAPI.SYS><N/A>
[tifm21 / tifm21][Running/Manual Start]
<system32\drivers\tifm21.sys><Texas Instruments>
[TosIde / TosIde][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\toside.sys><Microsoft Corporation>
[TPPWRIF / TPPWRIF][Running/System Start]
<System32\drivers\Tppwrif.sys><N/A>
[TSMAPIP / TSMAPIP][Running/System Start]
<System32\drivers\TSMAPIP.SYS><N/A>
[ultra / ultra][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ultra.sys><Promise Technology, Inc.>
[ViaIde / ViaIde][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\viaide.sys><Microsoft Corporation>
[Intel(R) PRO/Wireless 3945ABG Adapter Driver / w39n51][Running/Manual Start]
<system32\DRIVERS\w39n51.sys><Intel? Corporation>
[Driver for w42smdm Device / w42smdm][Stopped/Manual Start]
<system32\DRIVERS\w42smdm.sys><Sony Ericsson Mobile Communications Japan, Inc.>
[Driver for w42sser Device / w42sser][Stopped/Manual Start]
<system32\DRIVERS\w42sser.sys><Sony Ericsson Mobile Communications Japan, Inc.>
[Driver for w42susb Device / w42susb][Stopped/Manual Start]
<system32\DRIVERS\w42susb.sys><Sony Ericsson Mobile Communications Japan, Inc.>
[winachsf / winachsf][Running/Manual Start]
<system32\DRIVERS\hsx_cnxt.sys><Conexant Systems, Inc.>
[World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
<system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
==================================
浏览器加载项
[WebThunder Browser Helper]
{00000AAA-A363-466E-BEF5-9BB68697AA7F} <C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_Now.dll, Thunder Networking Technologies,LTD>
[Adobe PDF Reader Link Helper]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[BitComet Helper]
{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <C:\Program Files\BitComet\tools\BitCometBHO_1.1.8.30.dll, BitComet>
[DriveLetterAccess]
{5CA3D70E-1895-11CF-8E15-001234567890} <C:\WINDOWS\System32\DLA\DLASHX_W.DLL, Sonic Solutions>
[Windows Live Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Google Toolbar Helper]
{AA58ED58-01DD-4d91-8333-CF10577473F7} <c:\program files\google\googletoolbar3.dll, Google Inc.>
[BitComet Button]
{461CC20B-FB6E-4f16-8FE8-C29359DB100E} <C:\Program Files\BitComet\tools\BitCometBHO_1.1.8.30.dll, BitComet>
[信息检索(&R)]
{92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
[启动WEB迅雷]
{962EFB8E-2683-42d4-AC74-AAA4C759B9C6} <http://my.xunlei.com, N/A>
[更新 ThinkPad 软件]
{D1A4DEBD-C2EE-449f-B9FB-E8409F9A0BC5} <C:\Program Files\Lenovo\PkgMgr\\PkgMgr.exe, Lenovo Group Limited>
[Messenger]
{FB5F1910-F110-11d2-BB9E-00C04F795683} <C:\Program Files\Messenger\msmsgs.exe, Microsoft Corporation>
[访问瑞星网站]
{FF2DE7A6-ECB1-4CBC-9C0E-D92A9E66E444} <http://www.rising.com.cn/?u=RSTB, N/A>
[访问卡卡社区]
{FF2DE7A6-ECB1-4CBC-9C0E-D92A9E66E445} <http://www.ikaka.com/?u=RSTB, N/A>
[&Google]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar3.dll, Google Inc.>
[卡卡上网安全助手]
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\KakaTool.dll, Beijing Rising Technology Co., Ltd.>
大神小僧 - 2007-9-24 16:53:00
[Windows Live Photo Upload Control]
{7FC1B346-83E6-4774-8D20-1A6B09B0E737} <C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll, Microsoft? Corporation>
[WebThunder Browser Helper]
{00000AAA-A363-466E-BEF5-9BB68697AA7F} <C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_Now.dll, Thunder Networking Technologies,LTD>
[WebThunder Class]
{03507A1A-E0C5-4404-AA26-205385C0892D} <, N/A>
[Adobe PDF Reader Link Helper]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[Windows Genuine Advantage Validation Tool]
{17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, Microsoft Corporation>
[&Google]
{2318C2B1-4965-11D4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar3.dll, Google Inc.>
[WebThunder DapPlayer]
{2EEDA47E-8D5C-4d7e-B4B6-E16E19218555} <C:\Program Files\Thunder Network\WebThunder\DownAndPlay\DapPlayer3.0.11.17.dll, ShenZhen Thunder Networking Technologies Ltd.>
[BitComet Helper]
{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} <C:\Program Files\BitComet\tools\BitCometBHO_1.1.8.30.dll, BitComet>
[QuickTime Object]
{4063BE15-3B08-470D-A0D5-B37161CFFD69} <C:\Program Files\QuickTime\QTPlugin.ocx, Apple Inc.>
[DriveLetterAccess]
{5CA3D70E-1895-11CF-8E15-001234567890} <C:\WINDOWS\System32\DLA\DLASHX_W.DLL, Sonic Solutions>
[PowerPlayer Control]
{5EC7C511-CD0F-42E6-830C-1BD9882F3458} <C:\DOCUME~1\Yang\APPLIC~1\ppStream\203~1.400\POWERP~1.DLL, PPStream Inc.>
[WUWebControl Class]
{6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
[XMP Class]
{6483F145-A768-4C41-AACC-52D4D7845851} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xplayer.dll_1_work, >
[XDRM]
{693571CB-54A3-4E90-9D52-EEAE1334E2D3} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xdrm.dll_1_work, >
[Windows Media Player]
{6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[MediaComm Class]
{7670648D-461B-42AF-BDFE-46D26AF5EFF2} <C:\Program Files\Thunder Network\WebThunder\InMedia\MediaAddin13.dll, Thunder Networking Technologies,LTD>
[Windows Live Photo Upload Control]
{7FC1B346-83E6-4774-8D20-1A6B09B0E737} <C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll, Microsoft? Corporation>
[Windows Live Sign-in Helper]
{9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[RMGetLicense Class]
{A9FC132B-096D-460B-B7D5-1DB0FAE0C062} <C:\WINDOWS\system32\msnetobj.dll, Microsoft Corporation>
[Google Toolbar Helper]
{AA58ED58-01DD-4D91-8333-CF10577473F7} <c:\program files\google\googletoolbar3.dll, Google Inc.>
[SearchAssistantOC]
{B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>
[VIDEO__X_MS_WMV Moniker Class]
{CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
[Windows Live Sign-in Control]
{D2517915-48CE-4286-970F-921E881B8C5C} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
[卡卡上网安全助手]
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\KakaTool.dll, Beijing Rising Technology Co., Ltd.>
[]
{F06608C7-1874-4EEA-B3B2-DF99EBB144B8} <C:\PROGRA~1\MSNMES~1\MSGSC8~1.DLL, Microsoft Corporation>
[XPPlayer Class]
{F3E70CEA-956E-49CC-B444-73AFE593AD7F} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\pplayer.dll_1_work, Thunder>
[&使用BitComet下载]
<res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm, N/A>
[&使用BitComet下载全部链接]
<res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm, N/A>
[&使用BitComet下载本页视频]
<res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm, N/A>
[使用Web迅雷下载]
<C:\Program Files\Thunder Network\WebThunder\GetUrl.htm, N/A>
[使用Web迅雷下载全部链接]
<C:\Program Files\Thunder Network\WebThunder\GetAllUrl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ表情]
<C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>
==================================
正在运行的进程
[PID: 872 / SYSTEM][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 932 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 960 / SYSTEM][\??\C:\WINDOWS\SYSTEM32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2645 (xpsp.050331-1524)]
[C:\WINDOWS\SYSTEM32\vrlogon.dll] [UPEK Inc., 5.5.0.2918]
[C:\WINDOWS\SYSTEM32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\ACNotify.dll] [N/A, ]
[C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\AcSvcStub.dll] [N/A, ]
[C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\AcLocSettings.dll] [N/A, ]
[C:\WINDOWS\SYSTEM32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\ACHelper.dll] [N/A, ]
[C:\WINDOWS\SYSTEM32\psqlpwd.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\ThinkVantage Fingerprint Software\infra.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\ThinkVantage Fingerprint Software\homefus2.dll] [UPEK Inc., 5.5.0.2918]
[C:\WINDOWS\SYSTEM32\biologon.dll] [Microsoft Corporation, 6.00.2497.0000 built by: main(SReasor)]
[C:\Program Files\ThinkVantage Fingerprint Software\homepass.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\ThinkVantage Fingerprint Software\bio.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\ThinkVantage Fingerprint Software\remote.dll] [UPEK Inc., 5.5.0.2918]
[C:\WINDOWS\SYSTEM32\tphklock.dll] [N/A, ]
[C:\WINDOWS\SYSTEM32\WgaLogon.dll] [Microsoft Corporation, 1.7.0018.5]
[C:\Program Files\ThinkVantage Fingerprint Software\crypto.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\Lenovo\AwayTask\AwayNotify.dll] [Lenovo Group Limited, 2, 0, 0, 0]
[C:\WINDOWS\SYSTEM32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1004 / SYSTEM][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\AppPatch\AcAdProc.dll] [Microsoft Corporation, 5.1.2600.3008 (xpsp.061004-0027)]
[PID: 1016 / SYSTEM][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRAM FILES\IBM THINKVANTAGE\CLIENT SECURITY SOLUTION\csspwntfy.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\PROGRAM FILES\IBM THINKVANTAGE\CLIENT SECURITY SOLUTION\ibmtsp.dll] [IBM, 1,1,2,009]
[C:\PROGRAM FILES\IBM THINKVANTAGE\CLIENT SECURITY SOLUTION\tcsrpc.dll] [IBM, 1,1,2,009]
[C:\PROGRAM FILES\IBM THINKVANTAGE\CLIENT SECURITY SOLUTION\cssuserdatadispatcher.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\ACGina.dll] [N/A, ]
[C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\ACHelper.dll] [N/A, ]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\AcSvcStub.dll] [N/A, ]
[C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\AcLocSettings.dll] [N/A, ]
[C:\WINDOWS\system32\psqlpwd.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\ThinkVantage Fingerprint Software\infra.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\ThinkVantage Fingerprint Software\homefus2.dll] [UPEK Inc., 5.5.0.2918]
[PID: 1208 / SYSTEM][C:\WINDOWS\system32\ibmpmsvc.exe] [, ]
[PID: 1236 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1300 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1340 / SYSTEM][C:\Program Files\Rising\Rav\CCenter.exe] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 3]
[PID: 1356 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1424 / SYSTEM][C:\Program Files\Intel\Wireless\Bin\EvtEng.exe] [Intel Corporation, 10, 1, 1, 1]
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] [Intel Corporation, 10, 1, 1, 2]
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] [Intel Corporation, 10, 1, 1, 5]
大神小僧 - 2007-9-24 16:55:00
[PID: 1472 / SYSTEM][C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe] [Intel Corporation , 10, 1, 1, 34]
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] [Intel Corporation, 10, 1, 1, 5]
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] [Intel Corporation, 10, 1, 1, 2]
[C:\Program Files\Intel\Wireless\Bin\LIBEAY32.dll] [N/A, ]
[C:\Program Files\Intel\Wireless\Bin\IntStngs.dll] [, 10, 1, 1, 3]
[C:\Program Files\Intel\Wireless\Bin\IWMSPROV.DLL] [N/A, ]
[PID: 1528 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1616 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1644 / SYSTEM][C:\Program Files\Rising\Rav\Ravmond.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 49]
[C:\Program Files\Rising\Rav\BWList.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\Program Files\Rising\Rav\rfwctrl.dll] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 11]
[C:\Program Files\Rising\Rav\RsPPsys.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 6]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\Rising\Rav\RsLog.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 20]
[C:\Program Files\Rising\Rav\HOOKSYS.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 0]
[C:\Program Files\Rising\Rav\Scanner.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 15]
[C:\Program Files\Rising\Rav\libload.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 19]
[C:\Program Files\Rising\Rav\VirusLib.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 15]
[C:\Program Files\Rising\Rav\regmon.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 6]
[C:\Program Files\Rising\Rav\psapi.dll] [Microsoft Corporation, 4.00]
[C:\Program Files\Rising\Rav\HookWeb.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 1]
[C:\Program Files\Rising\Rav\MemMon.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 14]
[C:\Program Files\Rising\Rav\expscan.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[C:\Program Files\Rising\Rav\mPorts.dll] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 3]
[C:\Program Files\Rising\Rav\HookCont.dll] [Rising, 19, 0, 0, 0]
[C:\Program Files\Rising\Rav\SpamEng.dll] [, 18, 0, 0, 6]
[C:\Program Files\Rising\Rav\engine.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 30]
[C:\Program Files\Rising\Rav\UnExe.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
[C:\Program Files\Rising\Rav\ScanExec.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 19]
[C:\Program Files\Rising\Rav\PostTrt.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 17]
[C:\Program Files\Rising\Rav\ScanEx.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 84]
[C:\Program Files\Rising\Rav\ExtFile.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 36]
[C:\Program Files\Rising\Rav\NvFile.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 11]
[C:\Program Files\Rising\Rav\ScanMac.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 17]
[C:\Program Files\Rising\Rav\ScanSct.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 20]
[C:\Program Files\Rising\Rav\ScanPack.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 24]
[C:\Program Files\Rising\Rav\RsVM.dll] [, 19, 0, 0, 22]
[C:\Program Files\Rising\Rav\Uroutine.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 57]
[C:\Program Files\Rising\Rav\ScanNet.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[C:\Program Files\Rising\Rav\Uscript.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 19]
[C:\Program Files\Rising\Rav\ExtOLE.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 14]
[C:\Program Files\Rising\Rav\ExtMail.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 14]
[C:\Program Files\Rising\Rav\ScanElf.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 11]
[PID: 1740 / SYSTEM][c:\program files\rising\rfw\rfwsrv.exe] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 35]
[c:\program files\rising\rfw\RfwRule.dll] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 3]
[c:\program files\rising\rfw\rfwlog.dll] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 2]
[c:\program files\rising\rfw\Rfwdrv.dll] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 10]
[c:\program files\rising\rfw\psapi.dll] [Microsoft Corporation, 4.00]
[c:\program files\rising\rfw\MonDrv.dll] [rs, 1, 0, 0, 4]
[c:\program files\rising\rfw\ProcLib.dll] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 5]
[c:\program files\rising\rfw\mPorts.dll] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 3]
[PID: 416 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[C:\WINDOWS\system32\mdimon.dll] [Microsoft Corporation, 11.3.1897.0]
[C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll] [Microsoft Corporation, 11.3.1897.0]
[PID: 552 / SYSTEM][C:\Program Files\Rising\Rav\RavStub.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 4]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[PID: 736 / SYSTEM][C:\WINDOWS\system32\IPSSVC.EXE] [Lenovo Group Limited, 2, 0, 5, 2]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Lenovo\AwayTask\AwayDB.DLL] [Lenovo Group Limited, 2, 0, 0, 0]
[PID: 784 / SYSTEM][C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcLocSettings.dll] [N/A, ]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcCryptHlpr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACHelper.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACON.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACTurinSupport.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcAdaptersInfo.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcLocMigrator.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ThinQCon.dll] [N/A, ]
[PID: 836 / SYSTEM][C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe] [Apple, Inc., 1, 12, 0, 0]
[PID: 848 / SYSTEM][C:\WINDOWS\system32\bgsvcgen.exe] [B.H.A Corporation, 2, 0, 3, 1]
[PID: 920 / SYSTEM][C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe] [Diskeeper Corporation, 9.0.537.0]
[C:\Program Files\Diskeeper Corporation\Diskeeper\DkLib.dll] [Diskeeper Corporation, 9.0.537.0]
[C:\Program Files\Diskeeper Corporation\Diskeeper\Tab.dll] [Executive Software International, Inc., 1.0.34.0]
[C:\Program Files\Diskeeper Corporation\Diskeeper\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Diskeeper Corporation\Diskeeper\GetFATExtents.dll] [Diskeeper Corporation, 9.0.537.0]
[C:\WINDOWS\system32\odbcbcp.dll] [Microsoft Corporation, 2000.085.1117.00 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\Diskeeper Corporation\Diskeeper\2052\DkRes.dll] [Diskeeper Corporation, 9.0.537.0]
[C:\Program Files\Diskeeper Corporation\Diskeeper\DkTabProvider.dll] [Diskeeper Corporation, 9.0.537.0]
大神小僧 - 2007-9-24 16:56:00
[PID: 1940 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 276 / SYSTEM][C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe] [Intel Corporation, 10, 1, 1, 1]
[PID: 664 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1252 / SYSTEM][c:\program files\lenovo\system update\suservice.exe] [ , 0.0.0.0]
[C:\WINDOWS\system32\mscoree.dll] [Microsoft Corporation, 2.0.50727.832 (QFE.050727-8300)]
[C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll] [Microsoft Corporation, 1.1.4322.2407]
[C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll] [Microsoft Corporation, 1.1.4322.2032]
[c:\windows\microsoft.net\framework\v1.1.4322\mscorlib.dll] [Microsoft Corporation, 1.1.4322.2407]
[c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_0c0a36ef\mscorlib.dll] [N/A, ]
[C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll] [Microsoft Corporation, 1.1.4322.2407]
[c:\windows\assembly\gac\system.serviceprocess\1.0.5000.0__b03f5f7f11d50a3a\system.serviceprocess.dll] [Microsoft Corporation, 1.1.4322.2032]
[c:\windows\assembly\gac\system\1.0.5000.0__b77a5c561934e089\system.dll] [Microsoft Corporation, 1.1.4322.2407]
[c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_44cd3269\system.dll] [N/A, ]
[C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MSCORJIT.DLL] [Microsoft Corporation, 1.1.4322.2407]
[c:\program files\lenovo\system update\tvsuservicecommon.dll] [ , 0.0.0.0]
[c:\windows\assembly\gac\mscorlib.resources\1.0.5000.0_zh-chs_b77a5c561934e089\mscorlib.resources.dll] [Microsoft Corporation, 1.1.4322.573]
[C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\diasymreader.dll] [Microsoft Corporation, 7.10.3052.4]
[c:\windows\assembly\gac\system.serviceprocess.resources\1.0.5000.0_zh-chs_b03f5f7f11d50a3a\system.serviceprocess.resources.dll] [Microsoft Corporation, 1.1.4322.573]
[PID: 2480 / SYSTEM][C:\WINDOWS\System32\TPHDEXLG.EXE] [Lenovo., 1.40]
[PID: 2500 / SYSTEM][C:\WINDOWS\system32\TpKmpSVC.exe] [N/A, ]
[PID: 2532 / NETWORK SERVICE][C:\Program Files\IBM ThinkVantage\Client Security Solution\ibmtcsd.exe] [IBM, 1,1,2,009]
[C:\WINDOWS\system32\TPMDDL.dll] [Atmel, Inc., 3.0.0.15 (x86)]
[PID: 2580 / SYSTEM][C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rrservice.exe] [, 3,0,27,0]
[C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rr_res.dll] [, 3,0,29,0]
[C:\Program Files\IBM ThinkVantage\Rescue and Recovery\pui.dll] [International Business Machines Corporation, 1, 0, 0, 6]
[C:\Program Files\IBM ThinkVantage\Rescue and Recovery\ui.dll] [, 3,0,29,0]
[C:\Program Files\IBM ThinkVantage\Rescue and Recovery\CDRecord.dll] [N/A, ]
[C:\Program Files\IBM ThinkVantage\Rescue and Recovery\zlib.dll] [, 1.1.4.0]
[PID: 2592 / SYSTEM][C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe] [Lenovo Group Limited, 3,10,7,0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[PID: 2612 / SYSTEM][C:\Program Files\ThinkVantage\SystemUpdate\UCLauncherService.exe] [N/A, ]
[C:\Program Files\ThinkVantage\SystemUpdate\UCLauncherCommon.dll] [N/A, ]
[PID: 2704 / SYSTEM][C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe] [Lenovo, 4, 21, 0, 0]
[C:\Program Files\ThinkPad\ConnectUtilities\AcLocSettings.dll] [N/A, ]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcCryptHlpr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACHelper.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACON.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACTurinSupport.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcSvcHlpr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcAdaptersInfo.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ANCA.dll] [IBM Corp., 8.3]
[C:\Program Files\ThinkPad\ConnectUtilities\ANC.dll] [IBM Corp., 8.3]
[C:\Program Files\ThinkPad\ConnectUtilities\AcSvcStub.dll] [N/A, ]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\ThinkPad\ConnectUtilities\ACGolan.DLL] [N/A, ]
[C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll] [Intel Corporation, 10, 1, 1, 48]
[C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL] [Intel Corporation, 10, 1, 1, 5]
[C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll] [Intel Corporation, 10, 1, 1, 2]
[C:\Program Files\Intel\Wireless\Bin\DbEngine.dll] [Intel Corporation, 10, 1, 1, 14]
[C:\Program Files\Intel\Wireless\Bin\LIBEAY32.dll] [N/A, ]
[C:\Program Files\Intel\Wireless\Bin\IntStngs.dll] [, 10, 1, 1, 3]
[C:\PROGRAM FILES\INTEL\WIRELESS\BIN\MurocAPI.dll] [Intel Corporation, 10, 1, 1, 39]
[C:\PROGRAM FILES\INTEL\WIRELESS\BIN\S24MUDLL.dll] [Intel Corporation, 10, 1, 1, 1]
[PID: 2780 / NETWORK SERVICE][C:\Program Files\Windows Media Player\WMPNetwk.exe] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\wmpmde.dll] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\MFPlat.DLL] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\wmpps.dll] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
大神小僧 - 2007-9-24 16:58:00
[PID: 3304 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1808 / SYSTEM][C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcLocSettings.dll] [N/A, ]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcCryptHlpr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACHelper.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcSvcStub.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACGUIHlpr.dll] [N/A, ]
[C:\WINDOWS\system32\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\ThinkPad\ConnectUtilities\AcAdaptersInfo.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACON.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACTurinSupport.dll] [N/A, ]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\ThinkPad\ConnectUtilities\Res\SC\GUIHlprRes.dll] [Lenovo, 4, 0, 0, 0]
[C:\Program Files\ThinkPad\ConnectUtilities\Res\SC\SvcHlprRes.dll] [Lenovo, 4, 0, 0, 0]
[PID: 3840 / Yang][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\PROGRA~1\WINDOW~2\wmpband.dll] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\WPDShServiceObj.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\WINDOWS\system32\PortableDeviceTypes.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceApi.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopDeskbar2.dll] [N/A, ]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopHyper.dll] [N/A, ]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopResources_zh_cn.dll] [N/A, ]
[C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL] [Lenovo Group Limited, 1, 0, 0, 0]
[C:\PROGRA~1\ThinkPad\UTILIT~1\SC\PWRMGRRT.DLL] [N/A, ]
[C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRIF.DLL] [N/A, ]
[C:\WINDOWS\system32\Sensor.dll] [Lenovo., 1.40]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[C:\WINDOWS\system32\shlhook.dll] [Beijing Rising Technology Co., Ltd., 4.0.0.9]
[C:\Program Files\Thunder Network\WebThunder\WebThunderBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 2, 10]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll] [Adobe Systems Incorporated, 7.0.9.2006121800]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\System32\DLA\DLASHX_W.DLL] [Sonic Solutions, 5.10.15a]
[C:\WINDOWS\system32\DLAAPI_W.DLL] [Sonic Solutions, 5.10.15a]
[C:\WINDOWS\System32\DLA\DLACResW.dll] [Sonic Solutions, 5.10.15a]
[C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\PDLib0804.dll] [Utimaco Safeware AG, 1.10.2.1]
[C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\PDShell0804.dll] [Utimaco Safeware AG, 1.10.2.1]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\PWMgrHook.dll] [Lenovo Group Limited, 1.50.0021.00]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[C:\WINDOWS\system32\MFPlat.DLL] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\igfxpph.dll] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\hccutils.DLL] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\igfxres.dll] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\igfxress.dll] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 3.0.0.4693]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\pdshell.dll] [Utimaco Safeware AG, 1.10.2.1]
[C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\PDLib.dll] [Utimaco Safeware AG, 1.10.2.1]
[C:\WINDOWS\system32\vgdshell.dll] [FarStone Technology Inc., 1,7, 0, 0]
[C:\WINDOWS\system32\VGDShlRc.dll] [FarStone Technology Inc., 1,7, 0, 0]
[C:\Program Files\FarStone\VDPPro\DVDCreator\BurnInterface.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\DVDCreator\CDInfo.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\WriteLog.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\UDFGen.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\DVDCreator\CDBLib.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\UDFFormat.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\ListCtrl.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\LogDLL.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\FsGetVcdInfo.dll] [FarStone Technology Inc., 1, 2, 0, 1]
[C:\Program Files\FarStone\VDPPro\DVDCreator\FsLodLib.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\DVDCreator\ExportFile.dll] [N/A, ]
[C:\WINDOWS\system32\ComRc.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\vdp\VDExt900.dll] [, 1, 0, 0, 1]
[C:\DOCUME~1\Yang\LOCALS~1\Temp\CmdLineExt02.dll] [N/A, ]
[C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[C:\WINDOWS\system32\dfshim.dll] [Microsoft Corporation, 2.0.50727.42 (RTM.050727-4200)]
[C:\WINDOWS\system32\mscoree.dll] [Microsoft Corporation, 2.0.50727.832 (QFE.050727-8300)]
[C:\WINDOWS\system32\msadp32.acm] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 4044 / Yang][c:\program files\rising\rfw\RfwMain.exe] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 72]
[c:\program files\rising\rfw\RsGuiLib.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 33]
[c:\program files\rising\rfw\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[c:\program files\rising\rfw\RfwCtrl.dll] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 11]
[c:\program files\rising\rfw\RsXML.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
[c:\program files\rising\rfw\PngDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[PID: 2120 / Yang][C:\WINDOWS\system32\TpShocks.exe] [Lenovo, Ltd. and IBM Corporation., 1, 4, 1, 0]
[C:\Program Files\ThinkPad\TpShocks\MUI\0804\TpShocks.dll] [Lenovo, Ltd. and IBM Corporation., 1, 4, 1, 0]
[C:\WINDOWS\system32\Sensor.dll] [Lenovo., 1.40]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2156 / Yang][C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe] [Lenovo Group Limited, 1, 0, 0, 0]
[C:\PROGRA~1\ThinkPad\UTILIT~1\SC\EzMApRes.dll] [N/A, ]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
大神小僧 - 2007-9-24 17:00:00
[PID: 2184 / Yang][C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe] [N/A, ]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\WINDOWS\system32\Oemdspif.dll] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\igfxdev.dll] [Intel Corporation, 3.0.0.4693]
[C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\tpfnf7.dll] [N/A, ]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2200 / Yang][C:\Program Files\Synaptics\SynTP\SynTPLpr.exe] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2212 / Yang][C:\Program Files\Lenovo\PkgMgr\HOTKEY\TPONSCR.exe] [N/A, ]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2224 / Yang][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\WINDOWS\system32\SynCOM.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\SynTPAPI.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[C:\WINDOWS\system32\shlhook.dll] [Beijing Rising Technology Co., Ltd., 4.0.0.9]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2228 / Yang][C:\Program Files\Lenovo\PkgMgr\HOTKEY_1\TpScrex.exe] [Lenovo Group Limited, 1.17]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2304 / Yang][C:\Program Files\Analog Devices\Core\smax4pnp.exe] [Analog Devices, Inc., 6, 0, 0, 20]
[C:\Program Files\Analog Devices\Core\SMWDMIF.dll] [Analog Devices, Inc., 6, 0, 4200, 014]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2412 / Yang][C:\PROGRA~1\THINKV~2\PrdCtr\LPMGR.exe] [Lenovo Group Limited, 1, 0, 0, 1]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\PROGRA~1\THINKV~2\PrdCtr\SC\LPRESMGR.DLL] [N/A, ]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\ThinkPad\ConnectUtilities\Res\SC\TrayRes.dll] [Lenovo, 4, 0, 0, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2436 / Yang][C:\PROGRA~1\THINKV~2\AMSG\amsg.exe] [LENOVO, 1, 0, 0, 0]
[C:\PROGRA~1\THINKV~2\AMSG\AHLPRUNL.dll] [N/A, ]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\PROGRA~1\THINKV~2\AMSG\AcpPollingEngine.dll] [, 1, 0, 0, 7]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
大神小僧 - 2007-9-24 17:01:00
[PID: 2568 / Yang][C:\WINDOWS\System32\DLA\DLACTRLW.EXE] [Sonic Solutions, 5.10.15a]
[C:\WINDOWS\system32\DLAAPI_W.DLL] [Sonic Solutions, 5.10.15a]
[C:\WINDOWS\System32\DLA\DLACResW.dll] [Sonic Solutions, 5.10.15a]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2892 / Yang][C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe] [Macrovision Corporation, 4, 60, 100, 37068]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3148 / Yang][C:\Program Files\Lenovo\AwayTask\AwaySch.EXE] [Lenovo Group Limited, 2, 0, 5, 1]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Lenovo\AwayTask\AwayAPI.dll] [Lenovo Group Limited, 2, 0, 5, 2]
[C:\Program Files\Lenovo\AwayTask\AwayDB.dll] [Lenovo Group Limited, 2, 0, 0, 0]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3384 / Yang][C:\Program Files\IBM ThinkVantage\Client Security Solution\cssauth.exe] [Lenovo Group Limited, 6.01.0044.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\cssuserdatadispatcher.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\csswait.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\ibmtsp.dll] [IBM, 1,1,2,009]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\tcsrpc.dll] [IBM, 1,1,2,009]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\cssdlgpwentry.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\dlganswerprompt.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3396 / Yang][C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\pdservice.exe] [Utimaco Safeware AG, 1.10.2.1]
[C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\PDLib.dll] [Utimaco Safeware AG, 1.10.2.1]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\PDLib0804.dll] [Utimaco Safeware AG, 1.10.2.1]
[C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\pdservice0804.dll] [Utimaco Safeware AG, 1.10.2.1]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 392 / Yang][C:\Program Files\Picasa2\PicasaMediaDetector.exe] [Google Inc., 2.1.0]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3472 / Yang][C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe] [N/A, ]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopResources_zh_cn.dll] [N/A, ]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3644 / Yang][C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcLocSettings.dll] [N/A, ]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ThinkPad\ConnectUtilities\ACGUIHlpr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcSvcStub.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACHelper.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcCryptHlpr.dll] [N/A, ]
[C:\WINDOWS\system32\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\ThinkPad\ConnectUtilities\Res\SC\GUIHlprRes.dll] [Lenovo, 4, 0, 0, 0]
[C:\Program Files\ThinkPad\ConnectUtilities\Res\SC\TrayRes.dll] [Lenovo, 4, 0, 0, 0]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3704 / Yang][C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcLocSettings.dll] [N/A, ]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ThinkPad\ConnectUtilities\ACGUIHlpr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcSvcStub.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\ACHelper.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgr.dll] [N/A, ]
[C:\Program Files\ThinkPad\ConnectUtilities\AcCryptHlpr.dll] [N/A, ]
[C:\WINDOWS\system32\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\ThinkPad\ConnectUtilities\Res\SC\GUIHlprRes.dll] [Lenovo, 4, 0, 0, 0]
[C:\Program Files\ThinkPad\ConnectUtilities\Res\SC\IconRes.dll] [Lenovo, 4, 0, 0, 0]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3752 / Yang][C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe] [N/A, ]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopResources_zh_cn.dll] [N/A, ]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[PID: 3804 / Yang][C:\WINDOWS\system32\rundll32.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL] [Lenovo Group Limited, 1, 0, 0, 0]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\PROGRA~1\ThinkPad\UTILIT~1\SC\PWRMGRRT.DLL] [N/A, ]
[C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRIF.DLL] [N/A, ]
[C:\WINDOWS\system32\Sensor.dll] [Lenovo., 1.40]
[C:\WINDOWS\system32\OEMDSPIF.DLL] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\igfxdev.dll] [Intel Corporation, 3.0.0.4693]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3972 / Yang][C:\Program Files\Google\Google Desktop Search\GoogleDesktopDisplay.exe] [N/A, ]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopHyper.dll] [N/A, ]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopResources_zh_cn.dll] [N/A, ]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopDeskbar2.dll] [N/A, ]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 4016 / Yang][C:\Program Files\Rising\Rav\RavTask.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3940 / Yang][C:\Program Files\Rising\Rav\Ravmon.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 45]
[C:\Program Files\Rising\Rav\RsGuiLib.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 33]
[C:\Program Files\Rising\Rav\BWList.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\Program Files\Rising\Rav\RsXML.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
[C:\Program Files\Rising\Rav\PngDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
大神小僧 - 2007-9-24 17:01:00
[PID: 3836 / Yang][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] [RealNetworks, Inc., 0.1.0.3536]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 4028 / Yang][C:\Program Files\FarStone\VDPPro\VHD\RDTask.exe] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\VHD\FsLodLib.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\VHD\RDrvInterface.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\VHD\RDTask_RC.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\FarStone\VDPPro\VHD\RDrv2KInterface.dll] [, 1, 0, 0, 1]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3816 / Yang][C:\Program Files\FarStone\VDPPro\dvdcreator\DVDCTrayIconShl.exe] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\dvdcreator\CDBLib.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\GetUDFInfo.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\EjectCtrl.dll] [FarStone Inc., 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\dvdcreator\UDFWrite.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\dvdcreator\UDFFormat.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\CDErase.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\WriteLog.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\PrgCtrlEx.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\FsLodLib.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\dvdcreator\CDInfo.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\UDFGen.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\dvdcreator\ListCtrl.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\LogDLL.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\FsGetVcdInfo.dll] [FarStone Technology Inc., 1, 2, 0, 1]
[C:\Program Files\FarStone\VDPPro\dvdcreator\ExportFile.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\About.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\dvdcreator\ComRc.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\dvdcreator\About_RC.dll] [Farstone Technology Inc., 7,1,0,0]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\FarStone\VDPPro\dvdcreator\DCTryShl_Rc.dll] [FarStone, 1, 0, 0, 1]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 760 / Yang][C:\Program Files\FarStone\VDPPro\VDP\vdtask.exe] [FarStone Technology Inc., 7, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\VDP\FsLodLib.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\VDP\LightVerRegClew.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\VDP\FarTCP.dll] [FarStone Technology Inc., 7, 0, 0, 0]
[C:\Program Files\FarStone\VDPPro\VDP\LightVerRegClew_RC.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\FarStone\VDPPro\VDP\vdtask_RC.dll] [FarStone Technology Inc., 7, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\EvalInterface.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\DVDCreator\BurnInterface.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\DVDCreator\CDInfo.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\WriteLog.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\UDFGen.dll] [, 1, 0, 0, 1]
[C:\Program Files\FarStone\VDPPro\DVDCreator\CDBLib.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\UDFFormat.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\ListCtrl.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\LogDLL.dll] [N/A, ]
[C:\Program Files\FarStone\VDPPro\DVDCreator\FsGetVcdInfo.dll] [FarStone Technology Inc., 1, 2, 0, 1]
[C:\Program Files\FarStone\VDPPro\DVDCreator\ExportFile.dll] [N/A, ]
[C:\WINDOWS\system32\ComRc.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[C:\WINDOWS\system32\shlhook.dll] [Beijing Rising Technology Co., Ltd., 4.0.0.9]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 1784 / Yang][C:\Program Files\D-Tools\daemon.exe] [DAEMON'S HOME, 3.46.0.0]
[C:\WINDOWS\daemon.dll] [, 3.46.0.0]
[C:\Program Files\D-Tools\PFCTOC.DLL] [Padus(R), Inc., 1, 0, 0, 12]
[C:\Program Files\D-Tools\Plugins\Images\bw5mount.dll] [, 1.0.2.0]
[C:\Program Files\D-Tools\Plugins\Images\ccdmount.dll] [GENERIC, 1.02.0.0]
[C:\Program Files\D-Tools\Plugins\Images\mdsmount.dll] [GENERIC, 1.01.0.0]
[C:\Program Files\D-Tools\Plugins\Images\nrgmount.dll] [GENERIC, 1.02.0.0]
[C:\Program Files\D-Tools\Plugins\Images\pdimount.dll] [GENERIC, 1.01.0.0]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2100 / Yang][C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe] [Lenovo Group Limited, 3,10,7,0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[PID: 2252 / Yang][C:\WINDOWS\system32\TpScrLk.exe] [N/A, ]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 1540 / Yang][C:\WINDOWS\system32\igfxtray.exe] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\hccutils.DLL] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\igfxres.dll] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\igfxress.dll] [Intel Corporation, 3.0.0.4693]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2820 / Yang][C:\WINDOWS\system32\hkcmd.exe] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\hccutils.DLL] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\igfxres.dll] [Intel Corporation, 3.0.0.4693]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
大神小僧 - 2007-9-24 17:02:00
[PID: 2888 / Yang][C:\WINDOWS\system32\igfxpers.exe] [Intel Corporation, 3.0.0.4693]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\WINDOWS\system32\igfxsrvc.dll] [Intel Corporation, 3.0.0.4693]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 2644 / Yang][C:\WINDOWS\vsnp2std.exe] [Sonix, 1, 0, 2, 4]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3680 / Yang][C:\Program Files\Rising\KakaToolBar\runiep.exe] [Beijing Rising Technology Co., Ltd., 4.0.0.18]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 3736 / Yang][C:\Program Files\KDDI\auMusicPort\aMPStation.exe] [, 1, 1, 0, 0]
[C:\Program Files\KDDI\auMusicPort\kdrm.dll] [ , 1, 0, 1, 1]
[C:\Program Files\KDDI\auMusicPort\SST.dll] [ , 1, 0, 1, 0]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 4144 / Yang][C:\Program Files\iTunes\iTunesHelper.exe] [Apple Inc., 7.3.2.6]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\iTunes\iTunesHelper.Resources\zh_CN.lproj\iTunesHelperLocalized.DLL] [Apple Inc., 7.3.2.2]
[C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.DLL] [Apple Inc., 7.3.2.6]
[C:\Program Files\QuickTime\QTSystem\QuickTime.qts] [Apple Inc., 7.2]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[C:\Program Files\QuickTime\QTSystem\CoreVideo.qtx] [Apple Computer, Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTime3GPP.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTime3GPPAuthoring.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeAudioSupport.qtx] [Apple Computer, Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeAuthoring.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeCapture.qtx] [Apple Inc., 7.2]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\QuickTime\QTSystem\QuickTimeEffects.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeEssentials.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeH264.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeImage.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeInternetExtras.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeMPEG4Authoring.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeMusic.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeQD3D.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeStreaming.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingAuthoring.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeStreamingExtras.qtx] [Apple Inc., 7.2]
[C:\Program Files\QuickTime\QTSystem\QuickTimeVR.qtx] [Apple Inc., 7.2]
[C:\Program Files\Common Files\Apple\Mobile Device Support\bin\iTunesMobileDevice.dll] [Apple Inc., 7, 3, 85, 0]
[PID: 4284 / Yang][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 4352 / Yang][C:\Program Files\Messenger\msmsgs.exe] [Microsoft Corporation, 4.7.3001]
[C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL] [N/A, ]
[C:\PROGRA~1\Google\GOOGLE~1\GoogleDesktopResources_zh_cn.dll] [N/A, ]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll] [N/A, ]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 4396 / Yang][C:\Program Files\Windows Media Player\WMPNSCFG.exe] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Windows Media Player\wmpnssci.dll] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
大神小僧 - 2007-9-24 17:02:00
[PID: 4956 / Yang][C:\Program Files\IBM ThinkVantage\Client Security Solution\pwmgr.exe] [Lenovo Group Limited, 1.50.0021.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\cssuserdatadispatcher.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\ibmtsp.dll] [IBM, 1,1,2,009]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\tcsrpc.dll] [IBM, 1,1,2,009]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\dlganswerprompt.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\csswait.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\PWMgrHook.dll] [Lenovo Group Limited, 1.50.0021.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\cssdlgpwentry.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\css_strings.dll] [Lenovo Group Limited, 6.01.0044.00]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\ThinkVantage Fingerprint Software\infra.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\ThinkVantage Fingerprint Software\remote.dll] [UPEK Inc., 5.5.0.2918]
[C:\Program Files\ThinkVantage Fingerprint Software\homefus2.dll] [UPEK Inc., 5.5.0.2918]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[PID: 5580 / SYSTEM][C:\Program Files\iPod\bin\iPodService.exe] [Apple Inc., 7.3.2.6]
[C:\Program Files\iPod\bin\iPodService.Resources\zh_CN.lproj\iPodServiceLocalized.DLL] [Apple Inc., 7.3.2.2]
[C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL] [Apple Inc., 7.3.2.6]
[PID: 5552 / Yang][C:\Program Files\MSN Messenger\msnmsgr.exe] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\MSNCore.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\msidcrl40.dll] [Microsoft Corporation, 4.100.313.1]
[C:\Program Files\MSN Messenger\ContactsUX.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL] [N/A, ]
[C:\PROGRA~1\Google\GOOGLE~1\GoogleDesktopResources_zh_cn.dll] [N/A, ]
[C:\Program Files\Google\Google Desktop Search\GoogleDesktopAPI2.dll] [N/A, ]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\MSN Messenger\msgslang.8.1.0178.00.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\msgsres.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\lcapi.dll] [Microsoft Corporation, 1.7.256.0 (RTC Version 4.3.5371.0) built by: msn8.0(rtbldlab)]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[C:\Program Files\MSN Messenger\lcres.dll] [Microsoft Corporation, 1.7.109.0 (RTC Version 4.3.5371.0) built by: msn8.0(rtbldlab)]
[C:\Program Files\MSN Messenger\RTMPLTFM.dll] [Microsoft Corporation, 3.0.5774.0 built by: media_msn80]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[C:\Program Files\MSN Messenger\MSGSWCAM.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\WINDOWS\system32\sirenacm.dll] [Microsoft Corp., 8.1.0178.00]
[C:\Program Files\MSN Messenger\lmcdata.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\contact.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\abssm.dll] [Microsoft Corporation, 8.1.0178.00]
[C:\Program Files\MSN Messenger\custsat.dll] [Microsoft Corporation, 9.0.3790.2428 (srv03_sp1_qfe.050422-1043)]
[C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[C:\WINDOWS\system32\mfplat.dll] [Microsoft Corporation, 11.0.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\vsnp2std.dll] [Sonix, 1, 1, 1, 1]
[PID: 5164 / Yang][C:\Program Files\Tencent\TT\TTraveler.exe] [Tencent, 3, 7, 305, 201]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\KDDI\auMusicPort\bin\atl.dll] [Microsoft Corporation, 3.00.9435]
[C:\Program Files\Tencent\TT\Plugins\QQFloatBar\QQFloatBar4TT2.dll] [腾讯公司, 1, 1, 0, 5]
[C:\Program Files\Tencent\TT\Plugins\TWeather\TWeather.dll] [, 1, 0, 0, 3]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx] [Adobe Systems, Inc., 9,0,28,0]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\WINDOWS\system32\Macromed\Common\SwSupport.dll] [Adobe Systems, Inc., 10.1.4r20]
[C:\Program Files\Tencent\TT\TTNetFavor.dll] [N/A, ]
[C:\Program Files\IBM ThinkVantage\Client Security Solution\PWMgrHook.dll] [Lenovo Group Limited, 1.50.0021.00]
[C:\WINDOWS\system32\UNISPIM6.IME] [北京紫光华宇软件股份有限公司, 6.0.0.6138]
[PID: 4360 / Yang][C:\移动硬盘\SCAN\sreng2\SREngPS.EXE] [Smallfrogs Studio, 2.5.16.900]
[C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 7.5.17.20 14Feb06]
[C:\WINDOWS\system32\PROCHLP.DLL] [Lenovo Group Limited, 2, 0, 6, 0]
[C:\Program Files\Rising\KakaToolBar\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 12]
[C:\移动硬盘\SCAN\sreng2\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 1472, C:\PROGRAM FILES\INTEL\WIRELESS\BIN\S24EVMON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 836, C:\PROGRAM FILES\COMMON FILES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2580, C:\PROGRAM FILES\IBM THINKVANTAGE\RESCUE AND RECOVERY\RRSERVICE.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2592, C:\PROGRAM FILES\COMMON FILES\LENOVO\SCHEDULER\TVTSCHED.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2704, C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\ACSVC.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1808, C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\SVCGUIHLPR.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2120, C:\WINDOWS\SYSTEM32\TPSHOCKS.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2156, C:\PROGRA~1\THINKPAD\UTILIT~1\EZEJMNAP.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2184, C:\PROGRA~1\LENOVO\PKGMGR\HOTKEY\TPHKMGR.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2212, C:\PROGRAM FILES\LENOVO\PKGMGR\HOTKEY\TPONSCR.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2228, C:\PROGRAM FILES\LENOVO\PKGMGR\HOTKEY_1\TPSCREX.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2412, C:\PROGRA~1\THINKV~2\PRDCTR\LPMGR.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2436, C:\PROGRA~1\THINKV~2\AMSG\AMSG.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2568, C:\WINDOWS\SYSTEM32\DLA\DLACTRLW.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2892, C:\PROGRAM FILES\COMMON FILES\INSTALLSHIELD\UPDATESERVICE\ISSCH.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3148, C:\PROGRAM FILES\LENOVO\AWAYTASK\AWAYSCH.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3396, C:\PROGRAM FILES\IBM THINKVANTAGE\SAFEGUARD PRIVATEDISK\PDSERVICE.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 392, C:\PROGRAM FILES\PICASA2\PICASAMEDIADETECTOR.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3472, C:\PROGRAM FILES\GOOGLE\GOOGLE DESKTOP SEARCH\GOOGLEDESKTOP.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3644, C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\ACTRAY.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3704, C:\PROGRAM FILES\THINKPAD\CONNECTUTILITIES\ACWLICON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3752, C:\PROGRAM FILES\GOOGLE\GOOGLE DESKTOP SEARCH\GOOGLEDESKTOPINDEX.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3972, C:\PROGRAM FILES\GOOGLE\GOOGLE DESKTOP SEARCH\GOOGLEDESKTOPDISPLAY.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 4016, C:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3940, C:\PROGRAM FILES\RISING\RAV\RAVMON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3836, C:\PROGRAM FILES\COMMON FILES\REAL\UPDATE_OB\REALSCHED.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 4028, C:\PROGRAM FILES\FARSTONE\VDPPRO\VHD\RDTASK.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3816, C:\PROGRAM FILES\FARSTONE\VDPPRO\DVDCREATOR\DVDCTRAYICONSHL.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 760, C:\PROGRAM FILES\FARSTONE\VDPPRO\VDP\VDTASK.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1784, C:\PROGRAM FILES\D-TOOLS\DAEMON.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 2100, C:\PROGRAM FILES\COMMON FILES\LENOVO\SCHEDULER\SCHEDULER_PROXY.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2100, C:\PROGRAM FILES\COMMON FILES\LENOVO\SCHEDULER\SCHEDULER_PROXY.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2252, C:\WINDOWS\SYSTEM32\TPSCRLK.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3680, C:\PROGRAM FILES\RISING\KAKATOOLBAR\RUNIEP.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3736, C:\PROGRAM FILES\KDDI\AUMUSICPORT\AMPSTATION.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 5164, C:\PROGRAM FILES\TENCENT\TT\TTRAVELER.EXE]
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================
[/CODE]
大神小僧 - 2007-9-24 17:04:00
终于发完了 怎么这么长啊 是不是有些东西不用发上来?
帮忙看看啊
Aasetup - 2007-9-24 17:56:00

(看完日志不知道还有没力气回贴) 呵呵 开机启动项太多了 开机不慢么
看到了这里发现这个不清楚是什么 可疑<WinlogonNotify: ACNotify><ACNotify.dll> [N/A]
不好意思先帮你鼎下
Aasetup - 2007-9-24 17:56:00

(看完日志不知道还有没力气回贴) 呵呵 开机启动项太多了 开机不慢么
看到了这里发现这个不清楚是什么 可疑<WinlogonNotify: ACNotify><ACNotify.dll> [N/A]
不好意思先帮你鼎下

怎么发了两次 ,第一次发 出现该网页无法显示,从新发 一看成双!成一对了
hanjunbin - 2007-9-24 20:02:00
日志不完整 服务和驱动都没有看到
1
© 2000 - 2026 Rising Corp. Ltd.