[CODE] 2008-12-13,00:57:15 SysLog Scanner 1.0 - build 20080726 Arswp (http://www.arswp.com) Windows Vista Home Basic Edition, 32-bit (build 6000) - Administrators ======================================== 注册项 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:48 M:2006-11-02 17:45|(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:48 M:2006-11-02 17:45|(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:48 M:2006-11-02 17:45|(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [(Verified)Realtek Semiconductor, 1, 0, 0, 58, C:2007-12-26 09:10 M:2007-05-04 16:56] [(Verified)Synaptics, Inc., 9.2.2 19Apr07, C:2007-08-16 15:26 M:2007-04-19 16:49] <"C:\Program Files\BenQ\Q-HotkeyMgr\HotkeySensor.exe"> [BenQ Corp., 1.0.0.24, C:2007-12-26 09:32 M:2007-03-30 10:26] [BenQ Corp, 1, 0, 0, 14, C:2007-12-26 09:37 M:2007-04-13 10:14] [BenQ Corp., 1, 0, 0, 10, C:2007-12-26 09:39 M:2007-04-20 11:33] [Nero AG, 1, 0, 0, 5, C:2006-01-12 15:40 M:2006-01-12 15:40] <"C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"> [(Verified)Cyberlink Corp., 7.00.2320, C:2007-12-26 09:47 M:2006-11-23 15:10] <"C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"> [(Verified)Copyright (C) 2006, 1.00.2405 , C:2007-12-26 09:47 M:2006-12-05 22:55] <"C:\Program Files\BenQ\Q-MediaBar\QBar.exe" /stop> [ , 2, 0, 14120, 11, C:2007-12-26 09:48 M:2007-09-05 16:38] <"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"> [(Verified)Adobe Systems Incorporated, 9.0.0.2008061200, C:2008-06-12 02:38 M:2008-06-12 02:38] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\使用迅雷下载] <> [N/A, C:2008-05-05 18:43 M:2008-07-28 15:43] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\使用迅雷下载全部链接] <> [N/A, C:2008-05-05 18:43 M:2007-12-10 14:17] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\图像发送到 Bluetooth 设备(&B)...] <> [N/A, C:2006-08-29 15:12 M:2006-08-29 15:12] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\页面发送到 Bluetooth 设备(&B)...] <> [N/A, C:2006-10-26 19:28 M:2006-10-26 19:28] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{0A155D3C-68E2-4215-A47A-E800A446447A}] <浩方对战平台> [(Verified)上海浩方在线信息技术有限公司, 4.8.3.530, C:2008-05-30 20:20 M:2008-05-30 20:20] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{CCA281CA-C863-46ef-9331-5C8D4460577F}] <发送到 Bluetooth> [N/A, C:2006-10-26 19:28 M:2006-10-26 19:28] ======================================== 启动项 [蓝牙控制盘] "C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe" > [(Verified)Broadcom Corporation., 6.0.1.3400, C:2006-11-21 14:12 M:2006-11-21 14:12] ======================================== 组件 Shell Extension [NvCpl DesktopContext Class] {A70C977A-BF00-412C-90B7-034C51DA2439} [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [Play on my TV helper] {FFB699E0-306A-11d3-8BD1-00104B6F7516} [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [Synaptics Control Panel] {2F603045-309F-11CF-9774-0020AFD0CFF6} [(Verified)Synaptics, Inc., 9.2.2 19Apr07, C:2007-08-16 15:26 M:2007-04-19 16:13] [Monitor] {7842554E-6BED-11D2-8CDB-B05550C10000} [Broadcom Corporation., 6.0.1.3400, C:2006-11-21 13:11 M:2006-11-21 13:11] [WinRAR shell extension] {B41DB860-8EE4-11D2-9906-E49FADC173CA} [N/A, C:2008-05-08 20:54 M:2007-09-23 18:59] BrowserHelperObject [ThunderAtOnce Class] {01443AEC-0FD1-40fd-9C87-E93D1494C233} [(Verified)Thunder Networking Technologies,LTD, 1.0.5.29, C:2008-05-05 18:43 M:2008-06-13 09:43] [Adobe PDF Link Helper] {18DF081C-E8AD-4283-A596-FA578C2EBDC3} [(Verified)Adobe Systems Incorporated, 9.0.0.2008061100, C:2008-06-11 22:33 M:2008-06-11 22:33] [Thunder Browser Helper] {889D2FEB-5411-4565-8998-1DD2C5261283} [(Verified)Thunder Networking Technologies,LTD, 5, 0, 8, 96, C:2008-05-05 18:43 M:2008-06-13 09:43] ActiveX Extension [ThunderAtOnce Class] {01443AEC-0FD1-40FD-9C87-E93D1494C233} [(Verified)Thunder Networking Technologies,LTD, 1.0.5.29, C:2008-05-05 18:43 M:2008-06-13 09:43] [Adobe PDF Reader Link Helper] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [(Verified)Adobe Systems Incorporated, 9.0.0.2008061100, C:2008-06-11 22:33 M:2008-06-11 22:33] [Adobe PDF Link Helper] {18DF081C-E8AD-4283-A596-FA578C2EBDC3} [(Verified)Adobe Systems Incorporated, 9.0.0.2008061100, C:2008-06-11 22:33 M:2008-06-11 22:33] [Thunder Agent Class] {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} [(Verified)Thunder Networking Technologies,LTD, 5, 0, 4, 23, C:2008-05-05 18:43 M:2008-11-13 10:18] [360SafeLive] {87515F61-A66C-4319-A0E0-D416CB8059E3} [(Verified)360.cn, 1, 0, 1, 1029, C:2008-11-25 09:42 M:2008-11-25 09:42] [Thunder Browser Helper] {889D2FEB-5411-4565-8998-1DD2C5261283} [(Verified)Thunder Networking Technologies,LTD, 5, 0, 8, 96, C:2008-05-05 18:43 M:2008-06-13 09:43] [Shockwave Flash Object] {D27CDB6E-AE6D-11CF-96B8-444553540000} [(Verified)Adobe Systems, Inc., 10,0,12,36, C:2008-10-05 11:16 M:2008-10-05 11:16] Context Menu [WinRAR] {B41DB860-8EE4-11D2-9906-E49FADC173CA} [N/A, C:2008-05-08 20:54 M:2007-09-23 18:59] ======================================== 服务 [NMIndexingService / NMIndexingService][Stopped/Manual Start] <"C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe"> [Nero AG, 1, 5, 12, 0, C:2006-12-20 09:48 M:2006-12-20 09:48] [Cyberlink RichVideo Service(CRVS) / RichVideo][Running/Auto Start] <"C:\Program Files\CyberLink\Shared Files\RichVideo.exe"> [Copyright 2004, 1.1.0808 , C:2007-12-26 09:48 M:2005-08-08 13:54] [Agere Modem Call Progress Audio / AgereModemAudio][Running/Auto Start] [(Verified)Agere Systems, 1.0.0.4, C:2007-08-16 15:26 M:2006-10-05 12:10] [Bluetooth Service / btwdins][Running/Auto Start] [(Verified)Broadcom Corporation., 6.0.1.3400, C:2006-11-21 14:12 M:2006-11-21 14:12] [MgiSvr / MgiSvr][Running/Auto Start] [(Verified)ArcSoft, Inc., 1.0.0.4, C:2007-12-26 09:44 M:2006-11-13 14:02] ======================================== 驱动 [blbdrive / blbdrive][Stopped/Disabled] <\SystemRoot\system32\drivers\blbdrive.sys> [] [IP in IP Tunnel Driver / IpInIp][Stopped/Manual Start] [] [IPX Traffic Filter Driver / NwlnkFlt][Stopped/Manual Start] [] [IPX Traffic Forwarder Driver / NwlnkFwd][Stopped/Manual Start] [] [QBIOSIo.dll / QBIOSIO][Running/Auto Start] [N/A, C:2007-12-26 09:32 M:2007-01-20 00:02] [QBIOSIO.dll / QBIOSIO.dll][Stopped/Manual Start] <\??\C:\Windows\system32\QBIOSIO.dll> [N/A, C:2007-12-26 09:32 M:2007-01-20 00:02] [QBIOSIOdetect.dll / QBIOSIOdetect.dll][Stopped/Manual Start] <\??\C:\DRV\BT\BTChk\QBIOSIOdetect.dll> [N/A, C:2007-12-26 09:42 M:2007-01-22 21:00] [TCP/IP 协议驱动程序 / Tcpip][Running/System Start] [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:58 M:2006-11-02 16:58] [Microsoft IPv6 Protocol Driver / Tcpip6][Stopped/Manual Start] [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:58 M:2006-11-02 16:58] [USB Mass Storage Driver / USBSTOR][Stopped/Disabled] <\SystemRoot\system32\drivers\usbstor.sys> [] [adp94xx / adp94xx][Stopped/Disabled] <\SystemRoot\system32\drivers\adp94xx.sys> [(Verified)Adaptec, Inc., 1.6.0006.0 (1.060824-1234), C:2006-11-02 15:36 M:2006-11-02 17:51] [adpahci / adpahci][Stopped/Disabled] <\SystemRoot\system32\drivers\adpahci.sys> [(Verified)Adaptec, Inc., 1.6.0006.0 (1.060824-1234), C:2006-11-02 15:36 M:2006-11-02 17:51] [adpu160m / adpu160m][Stopped/Disabled] <\SystemRoot\system32\drivers\adpu160m.sys> [(Verified)Adaptec, Inc., 6.4.645.100 (NT.051018-1332), C:2006-11-02 15:36 M:2006-11-02 17:50] [adpu320 / adpu320][Stopped/Disabled] <\SystemRoot\system32\drivers\adpu320.sys> [(Verified)Adaptec, Inc., 7.1.000.000 (NT.060302-2137), C:2006-11-02 15:36 M:2006-11-02 17:51] [Agere Systems Soft Modem / AgereSoftModem][Running/Manual Start] [(Verified)Agere Systems, 2.1.77 11/28/2006 15:10:54, C:2007-08-16 15:26 M:2006-11-28 15:11] [aic78xx / aic78xx][Stopped/Disabled] <\SystemRoot\system32\drivers\djsvs.sys> [(Verified)Adaptec, Inc., 6.0.0.0, C:2006-11-02 15:36 M:2006-11-02 17:50] [aliide / aliide][Stopped/Disabled] <\SystemRoot\system32\drivers\aliide.sys> [(Verified)Acer Laboratories Inc., 1.20, C:2006-11-02 16:51 M:2006-11-02 17:49] [arc / arc][Stopped/Disabled] <\SystemRoot\system32\drivers\arc.sys> [(Verified)Adaptec, Inc., 5.1.0.6789 (NT.060726-2054), C:2006-11-02 15:36 M:2006-11-02 17:50] [arcsas / arcsas][Stopped/Disabled] <\SystemRoot\system32\drivers\arcsas.sys> [(Verified)Adaptec, Inc., 5.1.0.6790 (NT.060726-2054), C:2006-11-02 15:36 M:2006-11-02 17:50] [ArcSoft Magic-i Driver / ARCSOFTVIRTUALCAPTURE][Running/Manual Start] [(Verified)ArcSoft Corporation, 3, 0, 20, 8, C:2007-12-26 09:44 M:2006-11-24 17:53] [ArKdv / ArKdv][Running/Manual Start] <\??\C:\Windows\system32\drivers\ArKdv.SYS> [(Verified)ARSWP, 1.00, C:2008-12-13 00:56 M:2008-12-13 00:56] [Brother USB Mass-Storage Lower Filter Driver / BrFiltLo][Stopped/Manual Start] <\SystemRoot\system32\drivers\brfiltlo.sys> [(Verified)Brother Industries, Ltd., 1.10.000 (vbl_wcp_d2_drivers.060616-1619), C:2006-11-02 17:38 M:2006-11-02 16:24] [Brother USB Mass-Storage Upper Filter Driver / BrFiltUp][Stopped/Manual Start] <\SystemRoot\system32\drivers\brfiltup.sys> [(Verified)Brother Industries, Ltd., 1.04.000 (vbl_wcp_d2_drivers.060616-1619), C:2006-11-02 17:37 M:2006-11-02 16:24] [Brother MFC Serial Port Interface Driver (WDM) / Brserid][Stopped/Disabled] <\SystemRoot\system32\drivers\brserid.sys> [(Verified)Brother Industries Ltd., 1.0.1.6 (vbl_wcp_d2_drivers.060616-1619), C:2006-11-02 17:22 M:2006-11-02 16:25] [Brother WDM Serial driver / BrSerWdm][Stopped/Disabled] <\SystemRoot\system32\drivers\brserwdm.sys> [(Verified)Brother Industries Ltd., 1.0.0.20 (vbl_wcp_d2_drivers.060616-1619), C:2006-11-02 17:36 M:2006-11-02 16:24] [Brother MFC USB Fax Only Modem / BrUsbMdm][Stopped/Disabled] <\SystemRoot\system32\drivers\brusbmdm.sys> [(Verified)Brother Industries Ltd., 1,0,0,12 (vbl_wcp_d2_drivers.060616-1619), C:2006-11-02 17:37 M:2006-11-02 16:24] [Brother MFC USB Serial WDM Driver / BrUsbSer][Stopped/Manual Start] <\SystemRoot\system32\drivers\brusbser.sys> [(Verified)Brother Industries Ltd., 1,0,1,3 (vbl_wcp_d2_drivers.060809-0459), C:2006-11-02 17:38 M:2006-11-02 16:24] [蓝牙音频设备 / btwaudio][Stopped/Manual Start] [(Verified)Broadcom Corporation., 6.0.1.3300, C:2008-12-12 22:28 M:2006-11-20 13:59] [Bluetooth AVDT / btwavdt][Stopped/Manual Start] [(Verified)Broadcom Corporation., 6.0.1.3300, C:2008-12-12 22:28 M:2006-11-20 13:59] [btwrchid / btwrchid][Stopped/Manual Start] [(Verified)Broadcom Corporation., 6.0.1.3300, C:2008-12-12 22:28 M:2006-11-20 13:59] [cmdide / cmdide][Stopped/Disabled] <\SystemRoot\system32\drivers\cmdide.sys> [(Verified)CMD Technology, Inc., 2.0.7 (vista_rtm.061101-2205), C:2006-11-02 16:51 M:2006-11-02 17:49] [Intel(R) PRO/1000 NDIS 6 Adapter Driver / E1G60][Stopped/Manual Start] [(Verified)Intel Corporation, 8.1.37.2 built by: WinDDK, C:2006-11-02 18:25 M:2006-11-02 15:30] [elxstor / elxstor][Stopped/Disabled] <\SystemRoot\system32\drivers\elxstor.sys> [(Verified)Emulex, 5-1.20M8 9/14/2006 WS2K3 32 bit (NT.060909-1739), C:2006-11-02 15:36 M:2006-11-02 17:51] [HpCISSs / HpCISSs][Stopped/Disabled] <\SystemRoot\system32\drivers\hpcisss.sys> [(Verified)Hewlett-Packard Company, 6.0.0.32 Build 4 (x86) (NT.060726-2054), C:2006-11-02 15:36 M:2006-11-02 17:50] [Intel RAID Controller Vista / iaStorV][Stopped/Disabled] <\SystemRoot\system32\drivers\iastorv.sys> [(Verified)Intel Corporation, 6.2.0.1015, C:2006-11-02 15:36 M:2006-11-02 17:51] [iirsp / iirsp][Stopped/Disabled] <\SystemRoot\system32\drivers\iirsp.sys> [(Verified)Intel Corp./ICP vortex GmbH, 5.4.22.0, C:2006-11-02 15:36 M:2006-11-02 17:50] [Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start] [(Verified)Realtek Semiconductor Corp., 6.0.1.5410 built by: WinDDK, C:2007-12-26 09:10 M:2007-05-04 16:57] [ITEATAPI_Service_Install / iteatapi][Stopped/Disabled] <\SystemRoot\system32\drivers\iteatapi.sys> [(Verified)Integrated Technology Express, Inc., v1.3.2.7 (NT.060726-2054), C:2006-11-02 15:36 M:2006-11-02 17:50] [ITERAID_Service_Install / iteraid][Stopped/Disabled] <\SystemRoot\system32\drivers\iteraid.sys> [(Verified)Integrated Technology Express, Inc., v1.7.1.91 (NT.060726-2054), C:2006-11-02 15:36 M:2006-11-02 17:50] [LSI_FC / LSI_FC][Stopped/Disabled] <\SystemRoot\system32\drivers\lsi_fc.sys> [(Verified)LSI Logic, 1.23.24.03 (NT.060824-1234), C:2006-11-02 15:36 M:2006-11-02 17:50] [LSI_SAS / LSI_SAS][Stopped/Disabled] <\SystemRoot\system32\drivers\lsi_sas.sys> [(Verified)LSI Logic, 1.23.24.03 (NT.060824-1234), C:2006-11-02 15:36 M:2006-11-02 17:50] [LSI_SCSI / LSI_SCSI][Stopped/Disabled] <\SystemRoot\system32\drivers\lsi_scsi.sys> [(Verified)LSI Logic, 1.23.24.03 (NT.060824-1234), C:2006-11-02 15:36 M:2006-11-02 17:50] [megasas / megasas][Stopped/Disabled] <\SystemRoot\system32\drivers\megasas.sys> [(Verified)LSI Logic Corporation, 2.4.0.32 (NT.060824-1234), C:2006-11-02 15:36 M:2006-11-02 17:49] [Mraid35x / Mraid35x][Stopped/Disabled] <\SystemRoot\system32\drivers\mraid35x.sys> [(Verified)LSI Logic Corporation, 6.50.2.32 (NT.060824-1234), C:2006-11-02 15:36 M:2006-11-02 17:49] [Intel(R) Wireless WiFi Link 适配器驱动程序(适用于 Windows Vista 32 位) / NETw4v32][Stopped/Manual Start] [(Verified)Intel Corporation, 11.1.0.86, C:2007-12-26 09:43 M:2007-02-25 06:14] [Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit / NETw5v32][Running/Manual Start] [(Verified)Intel Corporation, 12.1.2.1, C:2008-12-12 22:47 M:2008-09-25 06:37] [nfrd960 / nfrd960][Stopped/Disabled] <\SystemRoot\system32\drivers\nfrd960.sys> [(Verified)IBM Corporation, 7.10.56 (NT.060601-1710), C:2006-11-02 15:36 M:2006-11-02 17:50] [N-trig HID Tablet Driver / ntrigdigi][Stopped/Disabled] <\SystemRoot\system32\drivers\ntrigdigi.sys> [(Verified)N-trig Innovative Technologies, 0.90.16.16384 (Vista_RC1.060509-2219), C:2006-11-02 15:36 M:2006-11-02 15:36] [nvlddmkm / nvlddmkm][Running/Manual Start] [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [nvraid / nvraid][Stopped/Disabled] <\SystemRoot\system32\drivers\nvraid.sys> [(Verified)NVIDIA Corporation, 5.10.2600.0822 (NT.060926-1359), C:2006-11-02 15:36 M:2006-11-02 17:50] [nvstor / nvstor][Stopped/Disabled] <\SystemRoot\system32\drivers\nvstor.sys> [(Verified)NVIDIA Corporation, 5.10.2600.0822 (NT.060926-1359), C:2006-11-02 15:36 M:2006-11-02 17:50] [QLogic Fibre Channel Miniport Driver / ql2300][Stopped/Disabled] <\SystemRoot\system32\drivers\ql2300.sys> [(Verified)QLogic Corporation, 9.1.2.6 (w32), C:2006-11-02 15:36 M:2006-11-02 17:51] [QLogic iSCSI Miniport Driver / ql40xx][Stopped/Disabled] <\SystemRoot\system32\drivers\ql40xx.sys> [(Verified)QLogic Corporation, 2.1.3.19 (STOR w32), C:2006-11-02 15:36 M:2006-11-02 17:50] [SiSRaid2 / SiSRaid2][Stopped/Disabled] <\SystemRoot\system32\drivers\sisraid2.sys> [(Verified)Silicon Integrated Systems Corp., 2.05.12 (NT.060926-1359), C:2006-11-02 15:36 M:2006-11-02 17:50] [SiSRaid4 / SiSRaid4][Stopped/Disabled] <\SystemRoot\system32\drivers\sisraid4.sys> [(Verified)Silicon Integrated Systems, 3.00.02 (NT.060726-2054), C:2006-11-02 15:36 M:2006-11-02 17:50] [USB2.0 PC Camera (SNP2UVC) / SNP2UVC][Running/Manual Start] [(Verified)Copyright 2004, 0, 1, 2, 1, C:2007-12-26 09:22 M:2007-02-07 18:35] [Symc8xx / Symc8xx][Stopped/Disabled] <\SystemRoot\system32\drivers\symc8xx.sys> [(Verified)LSI Logic, 4.16.06.00 (NT.051018-1332), C:2006-11-02 15:36 M:2006-11-02 17:50] [Sym_hi / Sym_hi][Stopped/Disabled] <\SystemRoot\system32\drivers\sym_hi.sys> [(Verified)LSI Logic, 4.16.06.00 (NT.051018-1332), C:2006-11-02 15:36 M:2006-11-02 17:49] [Sym_u3 / Sym_u3][Stopped/Disabled] <\SystemRoot\system32\drivers\sym_u3.sys> [(Verified)LSI Logic, 5.09.09.00 (NT.051018-1332), C:2006-11-02 15:36 M:2006-11-02 17:50] [Synaptics TouchPad Driver / SynTP][Running/Manual Start] [(Verified)Synaptics, Inc., 9.2.2 19Apr07, C:2007-08-16 15:26 M:2007-04-19 16:49] [tifm21 / tifm21][Running/Manual Start] [(Verified)Texas Instruments, 2.0.0.8, C:2007-05-02 03:52 M:2007-05-02 03:52] [uliahci / uliahci][Stopped/Disabled] <\SystemRoot\system32\drivers\uliahci.sys> [(Verified)ULi Electronics Inc., 6.300, C:2006-11-02 15:36 M:2006-11-02 17:51] [UlSata / UlSata][Stopped/Disabled] <\SystemRoot\system32\drivers\ulsata.sys> [(Verified)Promise Technology, Inc., 1.1.0.31, C:2006-11-02 15:36 M:2006-11-02 17:50] [ulsata2 / ulsata2][Stopped/Disabled] <\SystemRoot\system32\drivers\ulsata2.sys> [(Verified)Promise Technology, Inc., 1.0.0.38, C:2006-11-02 15:36 M:2006-11-02 17:50] [viaide / viaide][Stopped/Disabled] <\SystemRoot\system32\drivers\viaide.sys> [(Verified)VIA Technologies, Inc., 5.1.3790.150, C:2006-11-02 16:51 M:2006-11-02 17:49] [vsmraid / vsmraid][Stopped/Disabled] <\SystemRoot\system32\drivers\vsmraid.sys> [(Verified)VIA Technologies Inc.,Ltd, 6.0.5600,613, C:2006-11-02 15:36 M:2006-11-02 17:50] [NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller / yukonwlh][Running/Manual Start] [(Verified)Marvell, 10.12.5.3 built by: WinDDK, C:2007-03-13 10:12 M:2007-03-13 10:12] ======================================== 进程 [PID: 400 / SYSTEM] \SystemRoot\System32\smss.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:33 M:2006-11-02 17:45] [PID: 468 / SYSTEM] C:\Windows\system32\csrss.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:33 M:2006-11-02 17:45] [PID: 520 / SYSTEM] C:\Windows\system32\csrss.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:33 M:2006-11-02 17:45] [PID: 532 / SYSTEM] C:\Windows\system32\wininit.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:44 M:2006-11-02 17:45] [PID: 560 / SYSTEM] C:\Windows\system32\winlogon.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:44 M:2006-11-02 17:45] [PID: 612 / SYSTEM] C:\Windows\system32\services.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 624 / SYSTEM] C:\Windows\system32\lsass.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:43 M:2006-11-02 17:45] [PID: 636 / SYSTEM] C:\Windows\system32\lsm.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 17:02 M:2006-11-02 17:45] [PID: 780 / SYSTEM] C:\Windows\system32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 836 / NETWORK SERVICE] C:\Windows\system32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 868 / SYSTEM] C:\Windows\System32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 980 / LOCAL SERVICE] C:\Windows\System32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] C:\Windows\system32\RtkAPO.dll [(Verified)Realtek Semiconductor Corp., 11.0.6000.37 built by: WinDDK, C:2007-12-26 09:10 M:2007-05-02 14:02] C:\Windows\system32\SRSTSXT.dll [(Verified)SRS Labs, Inc., 3, 2, 0, 0, C:2007-12-26 09:10 M:2006-12-13 10:30] [PID: 1044 / SYSTEM] C:\Windows\System32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 1072 / SYSTEM] C:\Windows\system32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 1184 / NETWORK SERVICE] C:\Windows\system32\SLsvc.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:44 M:2006-11-02 17:45] [PID: 1212 / LOCAL SERVICE] C:\Windows\system32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 1392 / NETWORK SERVICE] C:\Windows\system32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 1624 / SYSTEM] C:\Windows\System32\spoolsv.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 17:15 M:2006-11-02 17:45] [PID: 1676 / LOCAL SERVICE] C:\Windows\system32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 1736 / Joybook] C:\Windows\system32\taskeng.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:41 M:2006-11-02 17:45] C:\Windows\system32\nvapi.dll [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [PID: 1824 / Joybook] C:\Windows\system32\Dwm.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:39 M:2006-11-02 17:45] C:\Windows\system32\nvd3dum.dll [(Verified)NVidia Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [PID: 1908 / Joybook] C:\Windows\Explorer.EXE [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:47 M:2006-11-02 17:45] C:\Windows\system32\btncopy.dll [Broadcom Corporation., 6.0.1.3400, C:2006-11-21 13:11 M:2006-11-21 13:11] D:\软件工具\Thunder\ComDlls\TDAtOnce_Now.dll [(Verified)Thunder Networking Technologies,LTD, 1.0.5.29, C:2008-05-05 18:43 M:2008-06-13 09:43] D:\软件工具\Thunder\ComDlls\xunleiBHO_Now.dll [(Verified)Thunder Networking Technologies,LTD, 5, 0, 8, 96, C:2008-05-05 18:43 M:2008-06-13 09:43] D:\软件工具\Thunder\Components\ResWorker\DsBho_01.dll [Thunder Networking Technologies,LTD, 1, 0, 0, 20, C:2008-11-26 12:56 M:2008-11-13 10:54] D:\软件工具\Thunder\Components\ResWorker\DataProcessor_01.dll [Thunder Networking Technologies,LTD, 1, 0, 0, 16, C:2008-11-26 12:56 M:2008-11-13 10:54] C:\Windows\system32\nvcpl.dll [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] C:\Windows\system32\nvapi.dll [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] D:\软件工具\WinRAR\rarext.dll [N/A, C:2008-05-08 20:54 M:2007-09-23 18:59] C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll [N/A, C:2006-11-21 14:03 M:2006-11-21 14:03] [PID: 512 / Joybook] C:\Program Files\Windows Defender\MSASCui.exe [(Verified)Microsoft Corporation, 1.1.1505.0, C:2006-11-02 20:33 M:2006-11-02 20:33] [PID: 1284 / Joybook] C:\Windows\System32\rundll32.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:48 M:2006-11-02 17:45] C:\Windows\system32\NvMcTray.dll [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] C:\Windows\System32\nvapi.dll [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [PID: 1372 / Joybook] C:\Windows\RtHDVCpl.exe [(Verified)Realtek Semiconductor, 1, 0, 0, 58, C:2007-12-26 09:10 M:2007-05-04 16:56] [PID: 1936 / Joybook] C:\Windows\System32\rundll32.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:48 M:2006-11-02 17:45] C:\Windows\System32\NVSVC.DLL [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] C:\Windows\System32\nvapi.dll [(Verified)NVIDIA Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] [PID: 1808 / SYSTEM] C:\Windows\system32\agrsmsvc.exe [(Verified)Agere Systems, 1.0.0.4, C:2007-08-16 15:26 M:2006-10-05 12:10] [PID: 344 / LOCAL SERVICE] C:\Windows\system32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 1380 / SYSTEM] C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [(Verified)Broadcom Corporation., 6.0.1.3400, C:2006-11-21 14:12 M:2006-11-21 14:12] [PID: 708 / SYSTEM] C:\Program Files\ArcSoft\Magic-i 3\uMgiSvr.exe [(Verified)ArcSoft, Inc., 1.0.0.4, C:2007-12-26 09:44 M:2006-11-13 14:02] C:\Windows\system32\ArcFakeCapture.dll [(Verified)ArcSoft Corporation, 1, 0, 0, 6, C:2007-12-26 09:44 M:2006-08-29 13:25] [PID: 1448 / NETWORK SERVICE] C:\Windows\system32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 1192 / SYSTEM] C:\Program Files\CyberLink\Shared Files\RichVideo.exe [Copyright 2004, 1.1.0808 , C:2007-12-26 09:48 M:2005-08-08 13:54] [PID: 1792 / SYSTEM] C:\Windows\System32\svchost.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:35 M:2006-11-02 17:45] [PID: 1340 / SYSTEM] C:\Windows\system32\SearchIndexer.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 20:34 M:2006-11-02 20:34] [PID: 2412 / SYSTEM] C:\Windows\system32\taskeng.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:41 M:2006-11-02 17:45] [PID: 2652 / Joybook] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [(Verified)Synaptics, Inc., 9.2.2 19Apr07, C:2007-08-16 15:26 M:2007-04-19 16:49] C:\Windows\system32\SynCOM.dll [(Verified)Synaptics, Inc., 9.2.2 19Apr07, C:2007-08-16 15:26 M:2007-04-19 16:03] C:\Windows\system32\SynTPAPI.dll [(Verified)Synaptics, Inc., 9.2.2 19Apr07, C:2007-08-16 15:26 M:2007-04-19 16:11] [PID: 2672 / Joybook] C:\Program Files\BenQ\Q-HotkeyMgr\HotkeySensor.exe [BenQ Corp., 1.0.0.24, C:2007-12-26 09:32 M:2007-03-30 10:26] C:\Program Files\BenQ\Q-HotkeyMgr\QBSetting.DLL [N/A, C:2007-12-26 09:32 M:2005-09-26 10:33] C:\Program Files\BenQ\Q-HotkeyMgr\Q32HotkeySensor.dll [BenQ Corp., 1.2.0.2, C:2007-12-26 09:32 M:2004-09-22 17:30] C:\Program Files\BenQ\Q-HotkeyMgr\dhpolywin.dll [N/A, C:2007-12-26 09:32 M:2003-04-24 17:00] C:\Windows\system32\QBIOSFn.dll [BenQ, 1, 0, 0, 10, C:2007-12-26 09:37 M:2007-04-09 15:50] C:\Windows\system32\QBIOSUt.dll [BenQ, 1, 0, 0, 4, C:2007-12-26 09:37 M:2007-04-04 17:36] C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll [N/A, C:2006-11-21 14:03 M:2006-11-21 14:03] [PID: 2704 / Joybook] C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [(Verified)Cyberlink Corp., 7.00.2320, C:2007-12-26 09:47 M:2006-11-23 15:10] C:\Program Files\CyberLink\PowerDVD\CLRCEngine3.dll [CyberLink Corp., 7.00.1711 , C:2007-12-26 09:47 M:2006-05-11 16:21] C:\Program Files\CyberLink\PowerDVD\MSVCR71.dll [Microsoft Corporation, 7.10.3052.4, C:2007-12-26 09:47 M:2003-02-21 04:42] [PID: 2752 / Joybook] C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [(Verified)Broadcom Corporation., 6.0.1.3400, C:2006-11-21 14:12 M:2006-11-21 14:12] C:\Windows\system32\btwapi.dll [Broadcom Corporation., 6.0.1.3400, C:2006-11-21 13:04 M:2006-11-21 13:04] C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.42_none_d6c3e7af9bae13a2\MFC80.DLL [Microsoft Corporation, 8.00.50727.42, C:2007-12-26 09:26 M:2007-12-26 09:26] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_none_10b2f55f9bffb8f8\MSVCR80.dll [Microsoft Corporation, 8.00.50727.762, C:2008-12-12 23:53 M:2008-12-12 23:53] C:\Windows\system32\btosif.dll [Broadcom Corporation., 6.0.1.3400, C:2006-11-21 13:27 M:2006-11-21 13:27] C:\Windows\system32\btwhidcs.DLL [N/A, C:2006-11-21 13:43 M:2006-11-21 13:43] C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.42_none_d6c3e7af9bae13a2\MFC80U.DLL [Microsoft Corporation, 8.00.50727.42, C:2007-12-26 09:26 M:2007-12-26 09:26] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_none_10b2f55f9bffb8f8\MSVCP80.dll [Microsoft Corporation, 8.00.50727.762, C:2008-12-12 23:53 M:2008-12-12 23:53] C:\Program Files\WIDCOMM\Bluetooth Software\BtBalloon.dll [Broadcom Corporation., 6.0.1.3400, C:2006-11-21 13:26 M:2006-11-21 13:26] C:\Windows\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.42_none_0e9c2a8d74fd3ce6\MFC80CHS.DLL [Microsoft Corporation, 8.00.50727.42, C:2007-12-26 09:26 M:2007-12-26 09:26] C:\Windows\system32\btrez.dll [Broadcom Corporation., 6.0.1.3400, C:2006-11-21 12:57 M:2006-11-21 12:57] C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll [N/A, C:2006-11-21 14:03 M:2006-11-21 14:03] C:\Windows\system32\btmmhook.dll [Broadcom Corporation., 6.0.1.3400, C:2006-11-21 14:12 M:2006-11-21 14:12] [PID: 3028 / Joybook] C:\Program Files\Internet Explorer\ieuser.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:49 M:2006-11-02 17:45] [PID: 3572 / Joybook] C:\Program Files\Internet Explorer\iexplore.exe [(Verified)Microsoft Corporation, 7.00.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:49 M:2006-11-02 17:45] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_none_10b2f55f9bffb8f8\MSVCR80.dll [Microsoft Corporation, 8.00.50727.762, C:2008-12-12 23:53 M:2008-12-12 23:53] D:\软件工具\Thunder\ComDlls\TDAtOnce_Now.dll [(Verified)Thunder Networking Technologies,LTD, 1.0.5.29, C:2008-05-05 18:43 M:2008-06-13 09:43] C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [(Verified)Adobe Systems Incorporated, 9.0.0.2008061100, C:2008-06-11 22:33 M:2008-06-11 22:33] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_none_10b2f55f9bffb8f8\MSVCP80.dll [Microsoft Corporation, 8.00.50727.762, C:2008-12-12 23:53 M:2008-12-12 23:53] C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [(Verified)Adobe Systems Incorporated, 9.0.0.2008061100, C:2008-06-11 22:33 M:2008-06-11 22:33] D:\软件工具\Thunder\ComDlls\xunleiBHO_Now.dll [(Verified)Thunder Networking Technologies,LTD, 5, 0, 8, 96, C:2008-05-05 18:43 M:2008-06-13 09:43] C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll [N/A, C:2006-11-21 14:03 M:2006-11-21 14:03] C:\Windows\system32\freeime.ime [极点五笔工作室, 6.4.0.0, C:2008-12-12 23:38 M:2008-10-30 20:17] C:\Windows\system32\nvd3dum.dll [(Verified)NVidia Corporation, 7.15.11.0119, C:2007-12-26 09:43 M:2007-04-28 19:05] C:\Windows\system32\Macromed\Flash\Flash10a.ocx [(Verified)Adobe Systems, Inc., 10,0,12,36, C:2008-10-05 11:16 M:2008-10-05 11:16] D:\软件工具\Thunder\ComDlls\ThunderAgent_Now.dll [(Verified)Thunder Networking Technologies,LTD, 5, 0, 4, 23, C:2008-05-05 18:43 M:2008-11-13 10:18] [PID: 3892 / Joybook] C:\Windows\system32\Macromed\Flash\FlashUtil10a.exe [(Verified)Adobe Systems, Inc., 10,0,12,36, C:2008-10-05 11:16 M:2008-10-05 11:16] [PID: 2528 / Joybook] C:\Windows\system32\conime.exe [(Verified)Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205), C:2006-11-02 16:38 M:2006-11-02 17:44] [PID: 3044 / Joybook] D:\软件工具\arswp\ArSwp.exe [(Verified)ArSwp.com, 2, 8, 2, 1115, C:2008-12-13 00:53 M:2008-11-15 11:58] C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.762_none_10b2f55f9bffb8f8\MSVCR80.dll [Microsoft Corporation, 8.00.50727.762, C:2008-12-12 23:53 M:2008-12-12 23:53] D:\软件工具\arswp\plugin\ArFix.dll [(Verified)ArSwp.Com, 2, 5, 0, 0, C:2008-12-13 00:53 M:2007-11-28 15:19] ======================================== 文件关联 ======================================== AutoRun.INF ======================================== Winsock提供者 ======================================== HOSTS 127.0.0.1 localhost ::1 localhost [/CODE]