[Main] Program=超级兔子IE 修复专家 Version=V8.7 WindowsVersion=Windows XP IEVersion=8.0.6001.18241 WinDir=C:\WINDOWS\ WinSystemDir=C:\WINDOWS\system32\ USERPROFILE=C:\Documents and Settings\Administrator Admin=1 Detail=1 Date=2009-02-15 Time=00:24:26 Code=, CDCode=, Reg=0 [Soft] Max=0 [IE] 1_HKey=HKEY_CURRENT_USER 1_Key=Software\Microsoft\Internet Explorer\Main 1_Name=Window Title 1_Value= 2_HKey=HKEY_CURRENT_USER 2_Key=Software\Microsoft\Internet Explorer\Main 2_Name=Local Page 2_Value=C:\WINDOWS\system32\blank.htm 3_HKey=HKEY_CURRENT_USER 3_Key=Software\Microsoft\Internet Explorer\Main 3_Name=Search Page 3_Value=http://go.microsoft.com/fwlink/?LinkId=54896 4_HKey=HKEY_CURRENT_USER 4_Key=Software\Microsoft\Internet Explorer\Main 4_Name=Start Page 4_Value=about:blank 5_HKey=HKEY_CURRENT_USER 5_Key=Software\Microsoft\Internet Explorer\Main 5_Name=Default_page_url 5_Value= 6_HKey=HKEY_CURRENT_USER 6_Key=Software\Microsoft\Internet Explorer\Main 6_Name=First Home Page 6_Value= 7_HKey=HKEY_LOCAL_MACHINE 7_Key=Software\Microsoft\Internet Explorer\Main 7_Name=Search Page 7_Value=http://go.microsoft.com/fwlink/?LinkId=54896 8_HKey=HKEY_LOCAL_MACHINE 8_Key=Software\Microsoft\Internet Explorer\Main 8_Name=Start Page 8_Value=http://go.microsoft.com/fwlink/?LinkId=69157 9_HKey=HKEY_LOCAL_MACHINE 9_Key=Software\Microsoft\Internet Explorer\Main 9_Name=Default_page_url 9_Value=http://go.microsoft.com/fwlink/?LinkId=69157 10_HKey=HKEY_LOCAL_MACHINE 10_Key=Software\Microsoft\Internet Explorer\Main 10_Name=First Home Page 10_Value= 11_HKey=HKEY_LOCAL_MACHINE 11_Key=Software\Microsoft\Internet Explorer\Main 11_Name=Search Page 11_Value=http://go.microsoft.com/fwlink/?LinkId=54896 12_HKey=HKEY_LOCAL_MACHINE 12_Key=Software\Microsoft\Internet Explorer\Main 12_Name=Start Page 12_Value=http://go.microsoft.com/fwlink/?LinkId=69157 Max=12 [IE2] 1_HKey=HKEY_CURRENT_USER 1_Key=Software\Microsoft\Internet Explorer\Toolbar\WebBrowser 1_Name=ITBar7Layout 1_FileName= 1_FileVersion= 1_FileCompanyName= 2_HKey=HKEY_CURRENT_USER 2_Key=Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser 2_Name={01E04581-4EEE-11D0-BFE9-00AA005B4383} 2_FileName=%SystemRoot%\system32\browseui.dll 2_FileSize=1024512 2_FileDate=2008-4-13 19:13:40 2_FileVersion=6.0.2900.5512 2_FileCompanyName=Microsoft Corporation 3_HKey=HKEY_LOCAL_MACHINE 3_Key=SOFTWARE\Microsoft\Internet Explorer\Toolbar 3_Name={EE5D279F-081B-4404-994D-C6B60AAEBA6D} 3_FileName=C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll 3_FileSize=339968 3_FileDate=2004-2-10 14:08:58 3_FileVersion=1.0.0.0 3_FileCompanyName=SEIKO EPSON CORPORATION Max=3 [IE3] 1_HKey=HKEY_CURRENT_USER 1_Key=Software\Microsoft\Internet Explorer\MenuExt\使用光影编辑和美化 1_FileName=C:\Program Files\nEO iMAGING\NeoOpenNeo.htm 1_FileSize=478 1_FileDate=2008-12-8 0:27:40 1_FileVersion= 1_FileCompanyName= 2_HKey=HKEY_CURRENT_USER 2_Key=Software\Microsoft\Internet Explorer\MenuExt\使用迅雷下载 2_FileName=C:\Program Files\Thunder Network\Thunder\Program\geturl.htm 2_FileSize=4207 2_FileDate=2008-12-24 13:09:30 2_FileVersion= 2_FileCompanyName= 3_HKey=HKEY_CURRENT_USER 3_Key=Software\Microsoft\Internet Explorer\MenuExt\使用迅雷下载全部链接 3_FileName=C:\Program Files\Thunder Network\Thunder\Program\getallurl.htm 3_FileSize=1673 3_FileDate=2008-12-24 13:09:30 3_FileVersion= 3_FileCompanyName= 4_HKey=HKEY_CURRENT_USER 4_Key=Software\Microsoft\Internet Explorer\MenuExt\添加到QQ表情 4_FileName=C:\Program Files\Tencent\QQ\AddEmotion.htm 4_FileSize=893 4_FileDate=2008-11-26 16:46:32 4_FileVersion= 4_FileCompanyName= 5_HKey=HKEY_LOCAL_MACHINE 5_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\RsAutorunsDisabled 5_Clsid= 5_ButtonText= 5_MenuText= 5_FileName= 5_FileVersion= 5_FileCompanyName= 6_HKey=HKEY_LOCAL_MACHINE 6_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\{09BA8F6D-CB54-424B-839C-C2A6C8E6B436} 6_Clsid={1FBA04EE-3024-11D2-8F1F-0000F87ABD16} 6_ButtonText=启动迅雷5 6_MenuText=启动迅雷5 6_FileName= 6_FileVersion= 6_FileCompanyName= 7_HKey=HKEY_LOCAL_MACHINE 7_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\{A412E581-59B2-485E-834F-C5F0C0268C79} 7_Clsid={1FBA04EE-3024-11D2-8F1F-0000F87ABD16} 7_ButtonText=金山词霸浏览器栏 7_MenuText=金山词霸浏览器栏 7_FileName= 7_FileVersion= 7_FileCompanyName= 8_HKey=HKEY_CURRENT_USER 8_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping 8_Clsid= 8_ButtonText= 8_MenuText= 8_FileName= 8_FileVersion= 8_FileCompanyName= 9_HKey=HKEY_LOCAL_MACHINE 9_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01443AEC-0FD1-40fd-9C87-E93D1494C233} 9_Clsid=ThunderAtOnce Class 9_FileName=C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll 9_FileSize=142600 9_FileDate=2008-12-24 12:54:36 9_FileVersion=1.0.5.34 9_FileCompanyName=Thunder Networking Technologies,LTD 10_HKey=HKEY_LOCAL_MACHINE 10_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3} 10_Clsid=Adobe PDF Link Helper 10_FileName=C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll 10_FileSize=75128 10_FileDate=2008-6-11 22:33:16 10_FileVersion=9.0.0.332 10_FileCompanyName=Adobe Systems Incorporated 11_HKey=HKEY_LOCAL_MACHINE 11_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{889D2FEB-5411-4565-8998-1DD2C5261283} 11_Clsid=Thunder Browser Helper 11_FileName=C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll 11_FileSize=128464 11_FileDate=2008-12-24 12:54:36 11_FileVersion=5.0.8.120 11_FileCompanyName=Thunder Networking Technologies,LTD 12_HKey=HKEY_LOCAL_MACHINE 12_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} 12_Clsid=卡卡上网安全助手 12_FileName=C:\WINDOWS\system32\UrlFilter.dll 12_FileSize=100976 12_FileDate=2009-1-24 13:22:26 12_FileVersion=6.0.0.15 12_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 13_HKey=HKEY_LOCAL_MACHINE 13_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A412E581-59B2-485E-834F-C5F0C0268C79} 13_Clsid=CBBrowerBuddy Class 13_FileName=C:\Program Files\Kingsoft\PowerWord Lite\CBEBand.dll 13_FileSize=183408 13_FileDate=2008-12-5 18:22:00 13_FileVersion=0.0.1.2 13_FileCompanyName=Copyright (c) Kingsoft Corporation Limited. All rights reserved. 14_HKey=HKEY_LOCAL_MACHINE 14_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B69F34DD-F0F9-42DC-9EDD-957187DA688D} 14_Clsid=SafeMon Class 14_FileName=C:\Program Files\360\360Safe\safemon\safemon.dll 14_FileSize=165384 14_FileDate=2009-1-15 23:36:22 14_FileVersion=5.0.0.1005 14_FileCompanyName=360.CN 15_HKey=HKEY_LOCAL_MACHINE 15_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} 15_Clsid=EpsonToolBandKicker Class 15_FileName=C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll 15_FileSize=339968 15_FileDate=2004-2-10 14:08:58 15_FileVersion=1.0.0.0 15_FileCompanyName=SEIKO EPSON CORPORATION 16_HKey=HKEY_LOCAL_MACHINE 16_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\Microsoft XML Parser for Java 16_Download=file://C:\WINDOWS\Java\classes\xmldso.cab 16_FileName= 16_FileVersion= 16_FileCompanyName= 17_HKey=HKEY_LOCAL_MACHINE 17_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{73E4740C-08EB-4133-896B-8D0A7C9EE3CD} 17_Download=https://b2c.icbc.com.cn/icbc/newperbank/AXSafeControls.cab 17_FileName=C:\WINDOWS\Downloaded Program Files\AxSafeControls.inf 17_FileSize=483 17_FileDate=2005-7-25 15:53:12 17_FileVersion= 17_FileCompanyName= 18_HKey=HKEY_LOCAL_MACHINE 18_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D3AAD2B6-4C3D-43D4-927F-00AAA20158A4} 18_Download=http://jdxx.zhs.mofcom.gov.cn/activex/jdxxusbkey.cab 18_FileName=C:\WINDOWS\Downloaded Program Files\jdxxusbkey.inf 18_FileSize=805 18_FileDate=2008-9-27 9:35:36 18_FileVersion= 18_FileCompanyName= 19_HKey=HKEY_LOCAL_MACHINE 19_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{0961E0AD-266B-4271-9192-C2BE88A3AFF9} 19_NameServer= 19_Clsid= 19_FileName= 19_FileVersion= 19_FileCompanyName= 20_HKey=HKEY_LOCAL_MACHINE 20_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{24C25469-412A-4A38-8DA6-23D9E214E69B} 20_NameServer= 20_Clsid= 20_FileName= 20_FileVersion= 20_FileCompanyName= 21_HKey=HKEY_LOCAL_MACHINE 21_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{25152339-B917-4661-9E15-87AF6476264D} 21_NameServer= 21_Clsid= 21_FileName= 21_FileVersion= 21_FileCompanyName= 22_HKey=HKEY_LOCAL_MACHINE 22_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{27B59ADF-1D9C-476E-9D49-D8EBAEF60C2B} 22_NameServer=202.101.224.69 202.101.226.68 22_Clsid= 22_FileName= 22_FileVersion= 22_FileCompanyName= 23_HKey=HKEY_LOCAL_MACHINE 23_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4D08FF01-0F81-4FFC-AADA-0BCE99DAEB31} 23_NameServer= 23_Clsid= 23_FileName= 23_FileVersion= 23_FileCompanyName= 24_HKey=HKEY_LOCAL_MACHINE 24_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{65F23301-A436-4A5F-848F-0BF82CD3005F} 24_NameServer= 24_Clsid= 24_FileName= 24_FileVersion= 24_FileCompanyName= 25_HKey=HKEY_LOCAL_MACHINE 25_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DD653D8B-AC45-43A3-9221-669DDD16F680} 25_NameServer= 25_Clsid= 25_FileName= 25_FileVersion= 25_FileCompanyName= Max=25 [Link] 1_HKey=HKEY_CLASSES_ROOT 1_Key=.exe 1_Name= 1_Value=exefile 1_HKeyLink=HKEY_CLASSES_ROOT 1_KeyLink=exefile\shell\open\command 1_NameLink= 1_ValueLink="%1" %* 2_HKey=HKEY_CLASSES_ROOT 2_Key=.com 2_Name= 2_Value=comfile 2_HKeyLink=HKEY_CLASSES_ROOT 2_KeyLink=comfile\shell\open\command 2_NameLink= 2_ValueLink="%1" %* 3_HKey=HKEY_CLASSES_ROOT 3_Key=.lnk 3_Name= 3_Value=lnkfile 3_HKeyLink=HKEY_CLASSES_ROOT 3_KeyLink=lnkfile\CLSID 3_NameLink= 3_ValueLink={00021401-0000-0000-C000-000000000046} 4_HKey=HKEY_CLASSES_ROOT 4_Key=.txt 4_Name= 4_Value=txtfile 4_HKeyLink=HKEY_CLASSES_ROOT 4_KeyLink=txtfile\shell\open\command 4_NameLink= 4_ValueLink=C:\WINDOWS\notepad.exe %1 4_FileSizeLink=66560 4_FileDateLink=2008-4-13 19:14:10 4_FileVersionLink=5.1.2600.5512 4_FileCompanyNameLink=Microsoft Corporation 5_HKey=HKEY_CLASSES_ROOT 5_Key=.htm 5_Name= 5_Value=htmlfile 5_HKeyLink=HKEY_CLASSES_ROOT 5_KeyLink=htmlfile\shell\open\command 5_NameLink= 5_ValueLink="C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome 5_FileSizeLink=637984 5_FileDateLink=2008-8-22 12:11:48 5_FileVersionLink=8.0.6001.18241 5_FileCompanyNameLink=Microsoft Corporation 6_HKey=HKEY_CLASSES_ROOT 6_Key=.html 6_Name= 6_Value=htmlfile 6_HKeyLink=HKEY_CLASSES_ROOT 6_KeyLink=htmlfile\shell\open\command 6_NameLink= 6_ValueLink="C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome 6_FileSizeLink=637984 6_FileDateLink=2008-8-22 12:11:48 6_FileVersionLink=8.0.6001.18241 6_FileCompanyNameLink=Microsoft Corporation 7_HKey=HKEY_CLASSES_ROOT 7_Key=.url 7_Name= 7_Value=InternetShortcut 7_HKeyLink=HKEY_CLASSES_ROOT 7_KeyLink=InternetShortcut\shell\open\command 7_NameLink= 7_ValueLink=rundll32.exe ieframe.dll,OpenURL %l 8_HKey=HKEY_CLASSES_ROOT 8_Key=PROTOCOLS\Filter\text/html 8_Name=CLSID 8_Value= 9_HKey=HKEY_CLASSES_ROOT 9_Key=PROTOCOLS\Filter\text/plain 9_Name=CLSID 9_Value= 10_HKey=HKEY_LOCAL_MACHINE 10_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix 10_Name= 10_Value=http:// 11_HKey=HKEY_LOCAL_MACHINE 11_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes 11_Name=www 11_Value=http:// Max=11 [Notify] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy 1_FileName=%SystemRoot%\System32\dimsntfy.dll 1_FileSize=19456 1_FileDate=2008-4-13 19:13:42 1_FileVersion=5.1.2600.5512 1_FileCompanyName=Microsoft Corporation Max=1 [Shdoclc] 1_FileSize=498176 1_FileDate=2008-4-13 18:53:26 1_FileVersion=6.0.2900.5512 1_FileCompanyName=Microsoft Corporation Max=1 [AppInit_DLLs] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows 1_Name=AppInit_DLLs 1_Value=kmon.dll 1_FileSize=477808 1_FileDate=2009-1-24 13:22:26 2_HKey=HKEY_LOCAL_MACHINE 2_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon 2_Name=Userinit 2_Value=C:\WINDOWS\system32\userinit.exe, 2_FileSize=25088 2_FileDate=2008-4-13 19:14:16 3_HKey=HKEY_LOCAL_MACHINE 3_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon 3_Name=Shell 3_Value=Explorer.exe 4_HKey=HKEY_LOCAL_MACHINE 4_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon 4_Name=System 3_Value= Max=4 [WinSock2NameSpace] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001 1_Name=DisplayString 1_Value=Tcpip 1_Enabled=1 1_LibraryPath=%SystemRoot%\System32\mswsock.dll 1_FileSize=240640 1_FileDate=2008-6-21 1:46:00 1_FileVersion=5.1.2600.5625 1_FileCompanyName=Microsoft Corporation 2_HKey=HKEY_LOCAL_MACHINE 2_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002 2_Name=DisplayString 2_Value=NTDS 2_Enabled=1 2_LibraryPath=%SystemRoot%\System32\winrnr.dll 2_FileSize=16896 2_FileDate=2008-4-13 19:13:52 2_FileVersion=5.1.2600.5512 2_FileCompanyName=Microsoft Corporation 3_HKey=HKEY_LOCAL_MACHINE 3_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003 3_Name=DisplayString 3_Value=网络位置知晓 (NLA) 名称空间 3_Enabled=1 3_LibraryPath=%SystemRoot%\System32\mswsock.dll 3_FileSize=240640 3_FileDate=2008-6-21 1:46:00 3_FileVersion=5.1.2600.5625 3_FileCompanyName=Microsoft Corporation Max=3 [WinSock2Protocol] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 1_Name=PackedCatalogItem 1_FileName=%SystemRoot%\system32\mswsock.dll 2_HKey=HKEY_LOCAL_MACHINE 2_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 2_Name=PackedCatalogItem 2_FileName=%SystemRoot%\system32\mswsock.dll 3_HKey=HKEY_LOCAL_MACHINE 3_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 3_Name=PackedCatalogItem 3_FileName=%SystemRoot%\system32\mswsock.dll 4_HKey=HKEY_LOCAL_MACHINE 4_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 4_Name=PackedCatalogItem 4_FileName=%SystemRoot%\system32\rsvpsp.dll 5_HKey=HKEY_LOCAL_MACHINE 5_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 5_Name=PackedCatalogItem 5_FileName=%SystemRoot%\system32\rsvpsp.dll 6_HKey=HKEY_LOCAL_MACHINE 6_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 6_Name=PackedCatalogItem 6_FileName=%SystemRoot%\system32\mswsock.dll 7_HKey=HKEY_LOCAL_MACHINE 7_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 7_Name=PackedCatalogItem 7_FileName=%SystemRoot%\system32\mswsock.dll 8_HKey=HKEY_LOCAL_MACHINE 8_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 8_Name=PackedCatalogItem 8_FileName=%SystemRoot%\system32\mswsock.dll 9_HKey=HKEY_LOCAL_MACHINE 9_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 9_Name=PackedCatalogItem 9_FileName=%SystemRoot%\system32\mswsock.dll 10_HKey=HKEY_LOCAL_MACHINE 10_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 10_Name=PackedCatalogItem 10_FileName=%SystemRoot%\system32\mswsock.dll 11_HKey=HKEY_LOCAL_MACHINE 11_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 11_Name=PackedCatalogItem 11_FileName=%SystemRoot%\system32\mswsock.dll 12_HKey=HKEY_LOCAL_MACHINE 12_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012 12_Name=PackedCatalogItem 12_FileName=%SystemRoot%\system32\mswsock.dll 13_HKey=HKEY_LOCAL_MACHINE 13_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013 13_Name=PackedCatalogItem 13_FileName=%SystemRoot%\system32\mswsock.dll 14_HKey=HKEY_LOCAL_MACHINE 14_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000014 14_Name=PackedCatalogItem 14_FileName=%SystemRoot%\system32\mswsock.dll 15_HKey=HKEY_LOCAL_MACHINE 15_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000015 15_Name=PackedCatalogItem 15_FileName=%SystemRoot%\system32\mswsock.dll 16_HKey=HKEY_LOCAL_MACHINE 16_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 16_Name=PackedCatalogItem 16_FileName=%SystemRoot%\system32\mswsock.dll 17_HKey=HKEY_LOCAL_MACHINE 17_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000017 17_Name=PackedCatalogItem 17_FileName=%SystemRoot%\system32\mswsock.dll 18_HKey=HKEY_LOCAL_MACHINE 18_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000018 18_Name=PackedCatalogItem 18_FileName=%SystemRoot%\system32\mswsock.dll 19_HKey=HKEY_LOCAL_MACHINE 19_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000019 19_Name=PackedCatalogItem 19_FileName=%SystemRoot%\system32\mswsock.dll Max=19 [WinSock2Winsock] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=System\CurrentControlSet\Services\Winsock2\Winsock 1_Name=PathName 1_Value= 1_Found=0 Max=1 [WOW] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SYSTEM\CurrentControlSet\Control\WOW 1_Name=cmdline 1_Value=%SystemRoot%\system32\ntvdm.exe -o 1_Filename=C:\WINDOWS\SYSTEM32\NTVDM.EXE 1_FileSize=418816 1_FileDate=2008-4-13 19:14:10 1_FileVersion=5.1.2600.5512 1_FileCompanyName=Microsoft Corporation 2_HKey=HKEY_LOCAL_MACHINE 2_Key=SYSTEM\CurrentControlSet\Control\WOW 2_Name=wowcmdline 2_Value=%SystemRoot%\system32\ntvdm.exe -a %SystemRoot%\system32\krnl386 2_Filename=C:\WINDOWS\SYSTEM32\NTVDM.EXE 2_FileSize=418816 2_FileDate=2008-4-13 19:14:10 2_FileVersion=5.1.2600.5512 2_FileCompanyName=Microsoft Corporation Max=2 [ShellExecuteHooks] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks 1_Name={AEB6717E-7E19-11d0-97EE-00C04FD91972} 1_ClsidName=URL 执行挂钩 1_FileName=C:\WINDOWS\system32\shell32.dll 1_FileSize=8319488 1_FileDate=2008-9-30 14:20:10 Max=1 [ShellServiceObjectDelayLoad] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad 1_Name=PostBootReminder 1_Value={7849596a-48ea-486e-8937-a2a3009f31a9} 1_ClsidName=PostBootReminder 对象 1_FileName=%SystemRoot%\system32\SHELL32.dll 1_FileSize=8319488 1_FileDate=2008-9-30 14:20:10 1_FileVersion=6.0.2900.5686 1_FileCompanyName=Microsoft Corporation 2_HKey=HKEY_LOCAL_MACHINE 2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad 2_Name=CDBurn 2_Value={fbeb8a05-beee-4442-804e-409d6c4515e9} 2_ClsidName=烧 CD 的 ShellFolder 2_FileName=%SystemRoot%\system32\SHELL32.dll 2_FileSize=8319488 2_FileDate=2008-9-30 14:20:10 2_FileVersion=6.0.2900.5686 2_FileCompanyName=Microsoft Corporation 3_HKey=HKEY_LOCAL_MACHINE 3_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad 3_Name=WebCheck 3_Value={E6FB5E20-DE35-11CF-9C87-00AA005127ED} 3_ClsidName=WebCheck 3_FileName=C:\WINDOWS\system32\webcheck.dll 3_FileSize=236544 3_FileDate=2008-8-22 3:08:08 3_FileVersion=8.0.6001.18241 3_FileCompanyName=Microsoft Corporation 4_HKey=HKEY_LOCAL_MACHINE 4_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad 4_Name=SysTray 4_Value={35CEC8A3-2BE6-11D2-8773-92E220524153} 4_ClsidName=SysTray 4_FileName=C:\WINDOWS\system32\stobject.dll 4_FileSize=121344 4_FileDate=2008-4-13 19:13:50 4_FileVersion=5.1.2600.5512 4_FileCompanyName=Microsoft Corporation 5_HKey=HKEY_LOCAL_MACHINE 5_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad 5_Name=WPDShServiceObj 5_Value={AAA288BA-9A4C-45B0-95D7-94D524869DB5} 5_ClsidName=WPDShServiceObj Class 5_FileName=C:\WINDOWS\system32\WPDShServiceObj.dll 5_FileSize=52224 5_FileDate=2006-5-9 20:58:54 5_FileVersion=5.2.5358.4827 5_FileCompanyName=Microsoft Corporation Max=5 [SharedTaskScheduler] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler 1_Name={438755C2-A8BA-11D1-B96B-00A0C90312E1} 1_Value=Browseui 预加载程序 1_FileName=%SystemRoot%\system32\browseui.dll 1_FileSize=1024512 1_FileDate=2008-4-13 19:13:40 2_HKey=HKEY_LOCAL_MACHINE 2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler 2_Name={8C7461EF-2B13-11d2-BE35-3078302C2030} 2_Value=组件类别缓存程序 2_FileName=%SystemRoot%\system32\browseui.dll 2_FileSize=1024512 2_FileDate=2008-4-13 19:13:40 Max=2 [ProtocolDefaults] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults 1_Name= 2_HKey=HKEY_LOCAL_MACHINE 2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults 2_Name=http 2_Value=3 3_HKey=HKEY_LOCAL_MACHINE 3_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults 3_Name=https 3_Value=3 4_HKey=HKEY_LOCAL_MACHINE 4_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults 4_Name=ftp 4_Value=3 5_HKey=HKEY_LOCAL_MACHINE 5_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults 5_Name=file 5_Value=3 6_HKey=HKEY_LOCAL_MACHINE 6_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults 6_Name=@ivt 6_Value=1 7_HKey=HKEY_LOCAL_MACHINE 7_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults 7_Name=shell 7_Value=0 Max=7 [BootExecute] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SYSTEM\CurrentControlSet\Control\Session Manager 1_Name=BootExecute 1_Value=autocheck autochk * Max=1 [Startup] Max=0 [AutoRun] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=Software\Microsoft\Windows\CurrentVersion\Run 1_Name=runeip 1_Value="c:\program files\rising\antispyware\rstray.exe" /startup 1_FileSize=141936 1_FileDate=2009-1-24 13:22:26 1_FileVersion=21.0.0.16 1_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 2_HKey=HKEY_LOCAL_MACHINE 2_Key=Software\Microsoft\Windows\CurrentVersion\Run 2_Name=RFWTray 2_Value="c:\program files\rising\rfw\rstray.exe" -system 2_FileSize=141936 2_FileDate=2009-1-24 13:26:58 2_FileVersion=21.0.0.22 2_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 3_HKey=HKEY_LOCAL_MACHINE 3_Key=Software\Microsoft\Windows\CurrentVersion\Run 3_Name=RavTray 3_Value="c:\program files\rising\rav\rstray.exe" -system 3_FileSize=141936 3_FileDate=2009-1-24 13:31:11 3_FileVersion=21.0.0.22 3_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 4_HKey=HKEY_LOCAL_MACHINE 4_Key=Software\Microsoft\Windows\CurrentVersion\Run 4_Name=360Safetray 4_Value=c:\program files\360\360safe\safemon\360tray.exe /start 4_FileSize=308744 4_FileDate=2009-1-16 15:21:44 4_FileVersion=5.0.0.1011 4_FileCompanyName=360安全中心 5_HKey=HKEY_LOCAL_MACHINE 5_Key=Software\Microsoft\Windows NT\CurrentVersion\Windows 5_Name=load 5_Value= 6_HKey=HKEY_CURRENT_USER 6_Key=Software\Microsoft\Windows\CurrentVersion\Run 6_Name=ctfmon.exe 6_Value=c:\windows\system32\ctfmon.exe 6_FileSize=15360 6_FileDate=2008-4-13 19:13:58 6_FileVersion=5.1.2600.5512 6_FileCompanyName=Microsoft Corporation 7_HKey=HKEY_CURRENT_USER 7_Key=Software\Microsoft\Windows\CurrentVersion\Run 7_Name=PPS Accelerator 7_Value=c:\program files\ppstream\ppsap.exe 7_FileSize=210296 7_FileDate=2008-12-11 18:06:26 7_FileVersion=1.0.11.171 7_FileCompanyName=PPStream Inc 8_HKey=HKEY_CURRENT_USER 8_Key=Software\Microsoft\Windows NT\CurrentVersion\Windows 8_Name=load 8_Value= Max=8 [ModuleUsage] 1_HKey=HKEY_LOCAL_MACHINE 1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/InputControl.dll 1_Name=.Owner 1_Value={73E4740C-08EB-4133-896B-8D0A7C9EE3CD} 1_Clsid=AxInputControl Class 1_FileName=C:\WINDOWS\Downloaded Program Files\InputControl.dll 1_FileSize=106496 1_FileDate=2005-7-25 15:51:42 1_FileVersion=1.0.0.12 1_FileCompanyName=InputControl Module 2_HKey=HKEY_LOCAL_MACHINE 2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/jdxxusbkey.ocx 2_Name=.Owner 2_Value={D3AAD2B6-4C3D-43D4-927F-00AAA20158A4} 2_Clsid=jdxxUSBKey Control 2_FileName=C:\WINDOWS\Downloaded Program Files\jdxxusbkey.ocx 2_FileSize=521728 2_FileDate=2008-9-27 9:40:44 2_FileVersion=1.0.1.1 2_FileCompanyName=北京易商海泰克科技有限公司 3_HKey=HKEY_LOCAL_MACHINE 3_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/SubmitControl.dll 3_Name=.Owner 3_Value={73E4740C-08EB-4133-896B-8D0A7C9EE3CD} 3_Clsid=AxInputControl Class 3_FileName=C:\WINDOWS\Downloaded Program Files\SubmitControl.dll 3_FileSize=65536 3_FileDate=2005-1-26 0:36:36 3_FileVersion=1.0.0.5 3_FileCompanyName=SubmitControl Module 4_HKey=HKEY_LOCAL_MACHINE 4_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/msvcp60.dll 4_Name=.Owner 4_Value=Unknown Owner 4_Clsid= 4_FileName=C:\WINDOWS\system32\msvcp60.dll 4_FileSize=413696 4_FileDate=2008-4-13 19:13:44 4_FileVersion=6.2.3104.0 4_FileCompanyName=Microsoft Corporation Max=4 [Process] 1_FileName=C:\WINDOWS\SYSTEM32\SMSS.EXE 1_FileSize=50688 1_FileDate=2008-4-13 19:14:14 1_FileVersion=5.1.2600.5512 1_FileCompanyName=Microsoft Corporation 2_FileName=C:\WINDOWS\SYSTEM32\WINLOGON.EXE 2_FileSize=493056 2_FileDate=2008-4-13 19:14:18 2_FileVersion=5.1.2600.5512 2_FileCompanyName=Microsoft Corporation 3_FileName=C:\WINDOWS\SYSTEM32\SERVICES.EXE 3_FileSize=108544 3_FileDate=2008-4-13 19:14:12 3_FileVersion=5.1.2600.5512 3_FileCompanyName=Microsoft Corporation 4_FileName=C:\WINDOWS\SYSTEM32\LSASS.EXE 4_FileSize=13312 4_FileDate=2008-4-13 19:14:04 4_FileVersion=5.1.2600.5512 4_FileCompanyName=Microsoft Corporation 5_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE 5_FileSize=14336 5_FileDate=2008-4-13 19:14:14 5_FileVersion=5.1.2600.5512 5_FileCompanyName=Microsoft Corporation 6_FileName=C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE 6_FileSize=113264 6_FileDate=2009-1-24 13:31:18 6_FileVersion=21.0.0.2 6_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 7_FileName=C:\PROGRAM FILES\RISING\RFW\CCENTER.EXE 7_FileSize=113264 7_FileDate=2009-1-24 13:26:59 7_FileVersion=21.0.0.2 7_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 8_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE 8_FileSize=14336 8_FileDate=2008-4-13 19:14:14 8_FileVersion=5.1.2600.5512 8_FileCompanyName=Microsoft Corporation 9_FileName=C:\PROGRAM FILES\RISING\RFW\RFWSRV.EXE 9_FileSize=92784 9_FileDate=2009-1-24 13:26:58 9_FileVersion=21.0.0.1 9_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 10_FileName=C:\PROGRAM FILES\RISING\RAV\RAVMOND.EXE 10_FileSize=133744 10_FileDate=2009-1-24 13:31:12 10_FileVersion=21.0.0.1 10_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 11_FileName=C:\WINDOWS\SYSTEM32\SPOOLSV.EXE 11_FileSize=57856 11_FileDate=2008-4-13 19:14:14 11_FileVersion=5.1.2600.5512 11_FileCompanyName=Microsoft Corporation 12_FileName=C:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE 12_FileSize=129648 12_FileDate=2009-1-24 13:31:18 12_FileVersion=21.0.0.23 12_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 13_FileName=C:\PROGRAM FILES\RISING\RFW\RAVTASK.EXE 13_FileSize=129648 13_FileDate=2009-1-24 13:26:59 13_FileVersion=21.0.0.23 13_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 14_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE 14_FileSize=14336 14_FileDate=2008-4-13 19:14:14 14_FileVersion=5.1.2600.5512 14_FileCompanyName=Microsoft Corporation 15_FileName=C:\PROGRAM FILES\RISING\RAV\SCANFRM.EXE 15_FileSize=51824 15_FileDate=2009-1-24 13:31:10 15_FileVersion=21.0.0.11 15_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 16_FileName=C:\PROGRAM FILES\RISING\RFW\RSNETSVR.EXE 16_FileSize=494192 16_FileDate=2009-2-14 17:49:48 16_FileVersion=21.0.0.13 16_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 17_FileName=C:\WINDOWS\EXPLORER.EXE 17_FileSize=978432 17_FileDate=2008-4-13 19:14:02 17_FileVersion=6.0.2900.5512 17_FileCompanyName=Microsoft Corporation 18_FileName=C:\PROGRAM FILES\RISING\ANTISPYWARE\RSTRAY.EXE 18_FileSize=141936 18_FileDate=2009-1-24 13:22:26 18_FileVersion=21.0.0.16 18_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 19_FileName=C:\PROGRAM FILES\RISING\RFW\RSTRAY.EXE 19_FileSize=141936 19_FileDate=2009-1-24 13:26:58 19_FileVersion=21.0.0.22 19_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 20_FileName=C:\PROGRAM FILES\RISING\RAV\RSTRAY.EXE 20_FileSize=141936 20_FileDate=2009-1-24 13:31:11 20_FileVersion=21.0.0.22 20_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 21_FileName=C:\PROGRAM FILES\360\360SAFE\SAFEMON\360TRAY.EXE 21_FileSize=308744 21_FileDate=2009-1-16 15:21:44 21_FileVersion=5.0.0.1011 21_FileCompanyName=360安全中心 22_FileName=C:\WINDOWS\SYSTEM32\CTFMON.EXE 22_FileSize=15360 22_FileDate=2008-4-13 19:13:58 22_FileVersion=5.1.2600.5512 22_FileCompanyName=Microsoft Corporation 23_FileName=C:\PROGRAM FILES\PPSTREAM\PPSAP.EXE 23_FileSize=210296 23_FileDate=2008-12-11 18:06:26 23_FileVersion=1.0.11.171 23_FileCompanyName=PPStream Inc 24_FileName=C:\PROGRAM FILES\KINGSOFT\KAC\SERVICE\KACCORE.EXE 24_FileSize=361840 24_FileDate=2009-1-7 16:11:24 24_FileVersion=2009.1.7.428 24_FileCompanyName=Kingsoft Corporation 25_FileName=C:\PROGRAM FILES\RISING\RAV\RSAGENT.EXE 25_FileSize=223856 25_FileDate=2009-1-24 13:31:12 25_FileVersion=21.0.0.17 25_FileCompanyName=Beijing Rising Information Technology Co., Ltd. 26_FileName=C:\WINDOWS\MSAGENT\AGENTSVR.EXE 26_FileSize=256512 26_FileDate=2008-4-13 19:13:54 26_FileVersion=2.0.0.3427 26_FileCompanyName=Microsoft Corporation 27_FileName=D:\MALATA09\MAGICSET\SRIEH.EXE 27_FileSize=757760 27_FileDate=2008-9-17 20:16:18 27_FileVersion=8.75.0.0 27_FileCompanyName=Super Rabbit Soft 28_FileName=[SYSTEM PROCESS] 29_FileName=C:\WINDOWS\system32\CSRSS.EXE 29_FileSize=6144 29_FileDate=2008-4-13 19:13:58 29_FileVersion=5.1.2600.5512 29_FileCompanyName=Microsoft Corporation 30_FileName=C:\WINDOWS\system32\ALG.EXE 30_FileSize=44544 30_FileDate=2008-4-13 19:13:54 30_FileVersion=5.1.2600.5512 30_FileCompanyName=Microsoft Corporation Max=30 [Hosts] HostsFile=C:\WINDOWS\system32\Drivers\Etc\Hosts 1_Host=127.0.0.1 localhost Max=1 [Service] 1_ServiceName=ccosm 1_DisplayName=Contrl Center of Storm Media 1_Description=Contrl Center of Storm Media 1_Status=停止 1_StartType=已禁用 1_ServiceDll= 1_ImagePath=C:\PROGRAM FILES\STORMII\STORMLIV.EXE /ASSERVICE 2_ServiceName=kaccore 2_DisplayName=Kingsoft Basic Service 2_Description=金山软件基础服务,为金山公司系列软件提供调用方式扩展、软件升级等多种基础服务。 2_Status=已启动 2_StartType=手动 2_ServiceDll= 2_ImagePath="C:\PROGRAM FILES\KINGSOFT\KAC\SERVICE\KACCORE.EXE" 3_ServiceName=RavCCenter 3_DisplayName=Rav Process Communication Center 3_Description= 3_Status=停止 3_StartType=自动 3_ServiceDll= 3_ImagePath=C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE 4_ServiceName=RavTask 4_DisplayName=Rising RavTask Manager 4_Description= 4_Status=已启动 4_StartType=自动 4_ServiceDll= 4_ImagePath="C:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE" RAVTASK 5_ServiceName=RfwCCenter 5_DisplayName=Rfw Process Communication Center 5_Description= 5_Status=停止 5_StartType=自动 5_ServiceDll= 5_ImagePath=C:\PROGRAM FILES\RISING\RFW\CCENTER.EXE 6_ServiceName=RfwService 6_DisplayName=Rising Personal Firewall Service 6_Description= 6_Status=停止 6_StartType=自动 6_ServiceDll= 6_ImagePath=C:\PROGRAM FILES\RISING\RFW\RFWSRV.EXE 7_ServiceName=RfwTask 7_DisplayName=Rising RfwTask Manager 7_Description= 7_Status=已启动 7_StartType=自动 7_ServiceDll= 7_ImagePath="C:\PROGRAM FILES\RISING\RFW\RAVTASK.EXE" RFWTASK 8_ServiceName=RsRavMon 8_DisplayName=Rising RealTime Monitor 8_Description= 8_Status=停止 8_StartType=自动 8_ServiceDll= 8_ImagePath=C:\PROGRAM FILES\RISING\RAV\RAVMOND.EXE 9_ServiceName=RsScanSrv 9_DisplayName=Rising Scan Service 9_Description= 9_Status=停止 9_StartType=自动 9_ServiceDll= 9_ImagePath=C:\PROGRAM FILES\RISING\RAV\SCANFRM.EXE Max=9 [Driver] 1_ServiceName=360AntiArp 1_DisplayName=360AntiArp 1_Description= 1_ServiceDll= 1_ImagePath=C:\WINDOWS\SYSTEM32\DRIVERS\360ANTIARP.SYS 2_ServiceName=360procmon 2_DisplayName=360procmon 2_Description= 2_ServiceDll= 2_ImagePath=C:\PROGRAM FILES\360\360SAFE\SAFEMON\360PROCMON.SYS 3_ServiceName=360TimeProt 3_DisplayName=360TimeProt 3_Description= 3_ServiceDll= 3_ImagePath=C:\WINDOWS\SYSTEM32\DRIVERS\360TIMEPROT.SYS 4_ServiceName=FETNDIS 4_DisplayName=VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver 4_Description= 4_ServiceDll= 4_ImagePath=SYSTEM32\DRIVERS\FETND5.SYS 5_ServiceName=hookcont 5_DisplayName=hookcont 5_Description= 5_ServiceDll= 5_ImagePath=SYSTEM32\DRIVERS\HOOKCONT.SYS 6_ServiceName=hooksys 6_DisplayName=hooksys 6_Description= 6_ServiceDll= 6_ImagePath=SYSTEM32\DRIVERS\HOOKSYS.SYS 7_ServiceName=Packet 7_DisplayName=DDK PACKET Protocol 7_Description=DDK PACKET Protocol 7_ServiceDll= 7_ImagePath=SYSTEM32\DRIVERS\PROTODRV.SYS 8_ServiceName=RfwBase9 8_DisplayName=Rising RfwBase Driver 8_Description= 8_ServiceDll= 8_ImagePath=SYSTEM32\DRIVERS\RFWBASE.SYS 9_ServiceName=rfwtdi 9_DisplayName=rfwtdi 9_Description= 9_ServiceDll= 9_ImagePath=C:\PROGRAM FILES\RISING\RFW\RFWTDI.SYS 10_ServiceName=rsfwdrv 10_DisplayName=rsfwdrv 10_Description= 10_ServiceDll= 10_ImagePath=C:\PROGRAM FILES\RISING\RFW\RSFWDRV.SYS 11_ServiceName=RsNTGDI 11_DisplayName=RsNTGDI 11_Description= 11_ServiceDll= 11_ImagePath=SYSTEM32\DRIVERS\RSNTGDI.SYS 12_ServiceName=RsProtect 12_DisplayName=RsProtect 12_Description= 12_ServiceDll= 12_ImagePath=SYSTEM32\DRIVERS\RSPTECT.SYS 13_ServiceName=RTL8023xp 13_DisplayName=Realtek 10/100/1000 PCI NIC Family NDIS XP Driver 13_Description= 13_ServiceDll= 13_ImagePath=SYSTEM32\DRIVERS\RTNICXP.SYS 14_ServiceName=rtl8139 14_DisplayName=Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver 14_Description= 14_ServiceDll= 14_ImagePath=SYSTEM32\DRIVERS\RTL8139.SYS 15_ServiceName=SafeBoxKrnl 15_DisplayName=SafeBoxKrnl 15_Description= 15_ServiceDll= 15_ImagePath=C:\WINDOWS\SYSTEM32\DRIVERS\SAFEBOXKRNL.SYS 16_ServiceName=SiFilter 16_DisplayName=SATALink driver accelerator 16_Description= 16_ServiceDll= 16_ImagePath=SYSTEM32\DRIVERS\SIWINACC.SYS 17_ServiceName=TesSafe 17_DisplayName=TesSafe 17_Description= 17_ServiceDll= 17_ImagePath=C:\WINDOWS\SYSTEM32\TESSAFE.SYS 18_ServiceName=viagfx 18_DisplayName=viagfx 18_Description= 18_ServiceDll= 18_ImagePath=SYSTEM32\DRIVERS\VTMINI.SYS 19_ServiceName=WudfPf 19_DisplayName=Windows Driver Foundation - User-mode Driver Framework Platform Driver 19_Description=Provide communciation services for UMDF components. 19_ServiceDll= 19_ImagePath=SYSTEM32\DRIVERS\WUDFPF.SYS 20_ServiceName=WudfRd 20_DisplayName=Windows Driver Foundation - User-mode Driver Framework Reflector 20_Description=Reflect device requests to user-mode driver drivers 20_ServiceDll= 20_ImagePath=SYSTEM32\DRIVERS\WUDFRD.SYS 21_ServiceName=ZSMC302 21_DisplayName=VIMICRO USB PC Camera 21_Description= 21_ServiceDll= 21_ImagePath=SYSTEM32\DRIVERS\USBVM31B.SYS Max=21 [END] Max=1