============================================================== 金山清理专家系统诊断报告 该诊断报告由金山清理专家提供 http://www.duba.net ============================================================== 诊断时间: 2008-10-05, 16:32 诊断平台: Windows XP [5.1.2600] Service Pack 2 IE版本: Internet Explorer V6.0.2180.2900 计算机物理内存: 247(MB) 当前可用内存: 74(MB) 硬盘总大小: 37(GB) 硬盘可用空间: 20(GB) 清理专家版本: 2008.08.12.553 恶意软件库版本: 2008.08.06.1 漏洞库版本: 2008.09.02.1 ============================================================== 常规启动项 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [OfficeScanNT Monitor] <"C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe" -HideWindow> 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe [服务器忙] [IMJPMIG8.1] <; C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32> [PHIME2002ASync] <; C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32> ============================================================== 启动文件夹位置 ============================================================== Common Startup: C:\Documents and Settings\All Users\「开始」菜单\程序\启动 Startup: C:\Documents and Settings\Administrator\「开始」菜单\程序\启动 Common Startup: %ALLUSERSPROFILE%\「开始」菜单\程序\启动 ============================================================== 文件扩展名关联 ============================================================== .ASF <"C:\Program Files\StormII\Storm.exe" /play "%1"> 文件路径: C:\Program Files\StormII\Storm.exe [服务器忙] .AVI <"C:\Program Files\StormII\Storm.exe" /play "%1"> 文件路径: C:\Program Files\StormII\Storm.exe [服务器忙] .M3U <"C:\Program Files\StormII\Storm.exe" /play "%1"> 文件路径: C:\Program Files\StormII\Storm.exe [服务器忙] .WMA <"C:\Program Files\StormII\Storm.exe" /play "%1"> 文件路径: C:\Program Files\StormII\Storm.exe [服务器忙] .MP3 <"C:\Program Files\StormII\Storm.exe" /play "%1"> 文件路径: C:\Program Files\StormII\Storm.exe [服务器忙] .MPG(.MPEG) <"C:\Program Files\StormII\Storm.exe" /play "%1"> 文件路径: C:\Program Files\StormII\Storm.exe [服务器忙] ============================================================== Host File ============================================================== 127.0.0.1 localhost 10.200.0.35 app1.hub 10.200.0.34 app2.hub 10.2.0.32 app1.tj 10.2.0.31 tj3.oa.net 10.2.0.31 oa3.tj ============================================================== 系统服务 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services [ccosm] [已启用] 文件路径: C:\Program Files\StormII\stormliv.exe [服务器忙] [HidServ] [已禁用] <%SystemRoot%\System32\hidserv.dll> [ntrtscan] [已启用] <"C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe"> 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe [服务器忙] [OfcPfwSvc] [已启用] <"C:\Program Files\Trend Micro\OfficeScan Client\OfcPfwSvc.exe"> 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\OfcPfwSvc.exe [服务器忙] [SoundMAX Agent Service (default)] [已启用] 文件路径: C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [服务器忙] [tmlisten] [已启用] <"C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe"> 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe [服务器忙] ============================================================== 驱动程序 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32 [MIDI1] [已启用] 文件路径: C:\WINDOWS\system32\SYNCOR11.DLL [服务器忙] [vidc.ffds] [已启用] 文件路径: C:\WINDOWS\system32\ff_vfw.dll [服务器忙] [vidc.H263] [已启用] 文件路径: C:\Program Files\V2Conference\h263codec.dll [服务器忙] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services [2310_00] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\2310_00.sys [服务器忙] [3WAREDRV] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\3WAREDRV.SYS [服务器忙] [3WAREGSM] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\3waregsm.sys [服务器忙] [3WDRV100] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\3WDRV100.SYS [服务器忙] [A320RAID] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\a320raid.sys [服务器忙] [AAC] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aac.sys [服务器忙] [AACSAS] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aacsas.sys [服务器忙] [AAR81XX] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aar81xx.sys [服务器忙] [AARSI3X] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aarsi3x.sys [服务器忙] [ADP94XX] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\adp94xx.sys [服务器忙] [ADPU320] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\adpu320.sys [服务器忙] [AEC6260] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aec6260.sys [服务器忙] [AEC6280] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aec6280.sys [服务器忙] [AEC67160] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aec67160.sys [服务器忙] [AEC67162] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aec67162.sys [服务器忙] [AEC671X] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\AEC671X.sys [服务器忙] [AEC6880] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\AEC6880.sys [服务器忙] [AEC6897] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aec6897.sys [服务器忙] [AEC68X5] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\aec68x5.sys [服务器忙] [AmdK8] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\amdk8.sys [服务器忙] [ARCM_X86] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\arcm_x86.sys [服务器忙] [BaseTDI] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\BaseTDI.SYS [服务器忙] [BCHTSW32] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\bchtsw32.sys [服务器忙] [BCRAID] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\BCRAID.sys [服务器忙] [CDA1000] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\cda1000.sys [服务器忙] [CPQARRY2] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\cpqarry2.sys [服务器忙] [CPQCISSM] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\cpqcissm.sys [服务器忙] [CSB6IDE] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\csb6ide.sys [服务器忙] [FASTSX] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\fastsx.sys [服务器忙] [FASTTRAK] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\fasttrak.sys [服务器忙] [FASTTX2K] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\fasttx2k.sys [服务器忙] [FT8300] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\ft8300.sys [服务器忙] [FTSATA2] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\ftsata2.sys [服务器忙] [GD31244] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\gd31244.sys [服务器忙] [HPCISSS2] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\hpcisss2.sys [服务器忙] [HPT371] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\HPT371.sys [服务器忙] [HPT374] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\hpt374.sys [服务器忙] [HPT3XX] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\hpt3xx.sys [服务器忙] [IASTOR] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\iaStor.sys [服务器忙] [IFT2000] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\ift2000.sys [服务器忙] [INIA100] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\INIA100.sys [服务器忙] [inic162x] [已禁用] 文件路径: C:\WINDOWS\system32\BIRD\inic162x.sys [服务器忙] [IPSRAIDN] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\ipsraidn.sys [服务器忙] [ITERAID] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\iteraid.sys [服务器忙] [JRAID] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\JRAID.SYS [服务器忙] [M5228] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\m5228.sys [服务器忙] [M5281] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\m5281.sys [服务器忙] [M5287] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\m5287.sys [服务器忙] [M5288] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\m5288.sys [服务器忙] [M5289] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\m5289.sys [服务器忙] [MEGAIDE] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\MegaIDE.sys [服务器忙] [mraid35x] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\mraid35x.sys [服务器忙] [mv614x] [已禁用] 文件路径: C:\WINDOWS\system32\BIRD\mv614x.sys [服务器忙] [NFRD960] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\nfrd960.sys [服务器忙] [NVATABUS] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\NVATABUS.SYS [服务器忙] [NVRAID] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\NVRAID.SYS [服务器忙] [perc2] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\perc2.sys [服务器忙] [PNP649R] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\pnp649r.sys [服务器忙] [PNP680] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\pnp680.sys [服务器忙] [PNP680R] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\pnp680r.sys [服务器忙] [RAIDSRC] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\raidsrc.sys [服务器忙] [RR232X] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\rr232x.sys [服务器忙] [RsAntiSpyware] [已启用] [S150SX8] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\S150sx8.sys [服务器忙] [SI3112] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SI3112.sys [服务器忙] [SI3112R] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SI3112r.sys [服务器忙] [SI3114] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SI3114.sys [服务器忙] [SI3114R] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SI3114R.sys [服务器忙] [SI3114R5] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\Si3114r5.sys [服务器忙] [SI3124] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SI3124.sys [服务器忙] [SI3124R] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SI3124R.sys [服务器忙] [SI3124R5] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\Si3124r5.sys [服务器忙] [SI3132] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SI3132.sys [服务器忙] [SI3132R5] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\Si3132r5.sys [服务器忙] [SISRAID] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SiSRaid.sys [服务器忙] [SISRAID2] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\SiSRaid2.sys [服务器忙] [SPTRAK] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\sptrak.sys [服务器忙] [ST8350] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\st8350.sys [服务器忙] [SYMMPI] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\symmpi.sys [服务器忙] [SysGuard] [已禁用] <\SystemRoot\System32\Drivers\Sysguard.sys> [TM_CFW] [已启用] <\??\C:\Program Files\Trend Micro\OfficeScan Client\tm_cfw.sys> 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\tm_cfw.sys [服务器忙] [ULSATA] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\ulsata.sys [服务器忙] [ULSATA2] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\ulsata2.sys [服务器忙] [ULTIMA] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\Ultima.sys [服务器忙] [ULTIMARX] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\UltimaRX.sys [服务器忙] [ultra] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\ultra.sys [服务器忙] [VIAMRAID] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\viamraid.sys [服务器忙] [vmscsi] [已启用] 文件路径: C:\WINDOWS\system32\bird\vmscsi.sys [服务器忙] [vnccom] [已启用] 文件路径: C:\WINDOWS\system32\Drivers\vnccom.SYS [服务器忙] [vncdrv] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\vncdrv.sys [服务器忙] [W2KADV] [已启用] 文件路径: C:\WINDOWS\system32\BIRD\w2kadv.sys [服务器忙] ============================================================== 当前进程 ============================================================== 名称: stormliv.exe [已启用] 命令行: "C:\Program Files\StormII\stormliv.exe" /asservice 文件路径: C:\Program Files\StormII\stormliv.exe [服务器忙] (北京暴风网际科技有限公司) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYSFER.DLL (Sygate Technologies. Inc.) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\Program Files\StormII\MSVCP60.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MFC42.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comdlg32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MFC42LOC.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\uxtheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msxml3.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 名称: ntrtscan.exe [已启用] 命令行: "C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe" 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\ntrtscan.exe [服务器忙] (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYSFER.DLL (Sygate Technologies. Inc.) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcDog.dll (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSPOOL.DRV (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInAPI.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\TimeString.dll 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPIPC.dll 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInMain.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInTray.dll (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\tmdbg20.dll (trend_company_name) 模块文件: C:\WINDOWS\system32\Apphelp.dll (Microsoft Corporation) 名称: SMAgent.exe [已启用] 命令行: "C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe" 文件路径: C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [服务器忙] (Analog Devices. Inc.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYSFER.DLL (Sygate Technologies. Inc.) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 名称: tmlisten.exe [已启用] 命令行: "C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe" 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\tmlisten.exe [服务器忙] (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYSFER.DLL (Sygate Technologies. Inc.) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\TMSOCK.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\loadhttp.dll (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSPOOL.DRV (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\snmpapi.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInAPI.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPIPC.dll 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\libTmCAV.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\Pwd.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcDog.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\security.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\tmdbg20.dll (trend_company_name) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInMain.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInTray.dll (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\mpr.dll (Microsoft Corporation) 模块文件: C:\Program Files\Symantec\SPA\SnacNp.dll 模块文件: C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\drprov.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ntlanman.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\NETUI0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\NETUI1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\NETRAP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\davclnt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\TmUpdate.dll (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\uxtheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETSHELL.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rtutils.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\credui.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ATL.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NTMARTA.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\inetmib1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MPRAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ACTIVEDS.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\adsldpc.dll (Microsoft Corporation) 名称: pccntmon.exe [已启用] 命令行: "C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe" -HideWindow 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe [服务器忙] (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYSFER.DLL (Sygate Technologies. Inc.) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\loadhttp.dll (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\Pwd.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInAPI.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPIPC.dll 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\TimeString.dll 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comdlg32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSPOOL.DRV (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\security.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\uxtheme.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\ntmonres.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInMain.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInTray.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\tmdbg20.dll (trend_company_name) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 名称: OfcPfwSvc.exe [已启用] 命令行: "C:\Program Files\Trend Micro\OfficeScan Client\OfcPfwSvc.exe" 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\OfcPfwSvc.exe [服务器忙] (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYSFER.DLL (Sygate Technologies. Inc.) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPfwCommon.dll 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\ZLib.dll (Trend Micro Inc.) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\OfcPIPC.dll 模块文件: C:\WINDOWS\system32\snmpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\tmdbg20.dll (trend_company_name) 模块文件: C:\WINDOWS\system32\WINSPOOL.DRV (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\inetmib1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MPRAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ACTIVEDS.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\adsldpc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ATL.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rtutils.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\tmCfwApi.dll (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\rasapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasman.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\TAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYNCOR11.DLL (SoundMAX) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msv1_0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\uxtheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 名称: VW1A73.EXE [已启用] 命令行: "C:\WINDOWS\TEMP\VW1A73.EXE" 文件路径: C:\WINDOWS\TEMP\VW1A73.EXE [服务器忙] 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYSFER.DLL (Sygate Technologies. Inc.) 模块文件: C:\WINDOWS\system32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSPOOL.DRV (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\uxtheme.dll (Microsoft Corporation) 名称: pccntupd.exe [已启用] 命令行: "C:\Program Files\Trend Micro\OfficeScan Client\pccntupd.exe" 文件路径: C:\Program Files\Trend Micro\OfficeScan Client\pccntupd.exe [服务器忙] (Trend Micro Inc.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SYSFER.DLL (Sygate Technologies. Inc.) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSPOOL.DRV (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Trend Micro\OfficeScan Client\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\uxtheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation)