狙剑(V2008)-系统体检记录 狙剑下载地址:http://www.ZhuLinFeng.com/ ====================================================== 操作系统:Windows XP 版本号:5.1.2600.2 (Service Pack 2) ====================================================== SSDT-HOOK: 序号:11 函数:NtAdjustPrivilegesToken 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:17 函数:NtAllocateVirtualMemory 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:19 函数:NtAssignProcessToJobObject 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:41 函数:NtCreateKey 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:43 函数:NtCreateMutant 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:47 函数:NtCreateProcess 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:48 函数:NtCreateProcessEx 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:50 函数:NtCreateSection 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:53 函数:NtCreateThread 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:57 函数:NtDebugActiveProcess 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:63 函数:NtDeleteKey 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:65 函数:NtDeleteValueKey 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:66 函数:NtDeviceIoControlFile 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:68 函数:NtDuplicateObject 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:97 函数:NtLoadDriver 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:103 函数:NtLockVirtualMemory 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:119 函数:NtOpenKey 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:122 函数:NtOpenProcess 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:125 函数:NtOpenSection 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:137 函数:NtProtectVirtualMemory 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:145 函数:NtQueryDirectoryFile 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:177 函数:NtQueryValueKey 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:180 函数:NtQueueApcThread 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:192 函数:NtRenameKey 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:200 函数:NtRequestWaitReplyPort 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:204 函数:NtRestoreKey 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:213 函数:NtSetContextThread 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:237 函数:NtSetSecurityObject 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:240 函数:NtSetSystemInformation 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:242 函数:NtSetSystemTime 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:247 函数:NtSetValueKey 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:253 函数:NtSuspendProcess 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:254 函数:NtSuspendThread 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:255 函数:NtSystemDebugControl 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:257 函数:NtTerminateProcess 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys HOOK类型:HOOK 序号:258 函数:NtTerminateThread 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:267 函数:NtUnmapViewOfSection 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK 序号:277 函数:NtWriteVirtualMemory 模块:\SystemRoot\system32\drivers\HOOKHELP.sys HOOK类型:HOOK ====================================================== FSD-HOOK: 序号:0 IRP:IRP_MJ_CREATE HOOK模块:\SystemRoot\system32\drivers\HOOKHELP.sys INLINE-HOOK模块: 序号:2 IRP:IRP_MJ_CLOSE HOOK模块:\SystemRoot\system32\drivers\HOOKHELP.sys INLINE-HOOK模块: 序号:4 IRP:IRP_MJ_WRITE HOOK模块:\SystemRoot\system32\drivers\HOOKHELP.sys INLINE-HOOK模块: 序号:6 IRP:IRP_MJ_SET_INFORMATION HOOK模块:\SystemRoot\system32\drivers\HOOKHELP.sys INLINE-HOOK模块: 序号:13 IRP:IRP_MJ_FILE_SYSTEM_CONTROL HOOK模块:\SystemRoot\system32\drivers\HOOKHELP.sys INLINE-HOOK模块: 序号:18 IRP:IRP_MJ_CLEANUP HOOK模块:\SystemRoot\system32\drivers\HOOKHELP.sys INLINE-HOOK模块: 序号:21 IRP:IRP_MJ_SET_SECURITY HOOK模块:\SystemRoot\system32\drivers\HOOKHELP.sys INLINE-HOOK模块: ====================================================== 文件过滤系统驱动: 文件系统:\FileSystem\sr 文件:system32\DRIVERS\sr.sys 文件系统:\FileSystem\Fastfat 文件:C:\WINDOWS\system32\drivers\Fastfat.sys ====================================================== 内核Inline-HOOK: 跳转模块:\??\C:\WINDOWS\system32\drivers\SafeBoxKrnl.sys Inline-函数:KeUserModeCallback 跳转模块:\??\C:\WINDOWS\system32\drivers\SafeBoxKrnl.sys Inline-函数:KiDeliverApc + 0xB87 ====================================================== API-HOOK: 无 ====================================================== 无微软签名进程: 进程:C:\Program Files\IPMsg\ipmsg.exe 进程:C:\Documents and Settings\new\桌面\狙剑V2008-0429\SnipeSword.exe 进程:C:\Program Files\Thunder Network\Thunder\Program\Thunder5.exe 进程:system ====================================================== 无微软签名模块 进程:C:\WINDOWS\System32\svchost.exe 模块:C:\WINDOWS\System32\UxTheme.dll 进程:C:\Program Files\Windows Live\Contacts\wlcomm.exe 模块:C:\Program Files\Windows Live\Contacts\conproxy.dll 模块:C:\Program Files\Windows Live\Contacts\contact.dll 模块:C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1801_x-ww_5eed8217\MSVCR80.dll 进程:C:\WINDOWS\System32\alg.exe 模块:C:\WINDOWS\System32\UxTheme.dll 进程:C:\Program Files\Netease\网易右键邮\右键邮\rdaemon.exe 模块:C:\Program Files\360safe\safemon\safemon.dll 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\Program Files\360safe\safemon\360tray.exe 模块:C:\Program Files\360safe\live.dll 模块:C:\Program Files\360safe\safemon\360webpro.dll 模块:C:\Program Files\360safe\AntiAdwa.dll 模块:C:\Program Files\360safe\safemon\SafeKrnl.dll 模块:C:\Program Files\360safe\safemon\urlproc.dll 模块:C:\Program Files\360safe\safemon\safemon.dll 模块:C:\Program Files\360safe\safemon\360compro.dll 模块:C:\Program Files\360safe\safemon\safeboxapi.dll 模块:C:\Program Files\360safe\safemon\360procmon.dll 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\WINDOWS\SOUNDMAN.EXE 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\WINDOWS\system32\spoolsv.exe 模块:C:\WINDOWS\system32\UxTheme.dll 进程:C:\Program Files\Rising\Rav\rsnetsvr.exe 模块:C:\WINDOWS\system32\uxtheme.dll 模块:C:\Program Files\Rising\Rav\ProcComm.dll 模块:C:\WINDOWS\system32\MSVCP71.dll 模块:C:\WINDOWS\system32\MSVCR71.dll 模块:C:\Program Files\Rising\Rav\comx3.dll 模块:C:\Program Files\Rising\Rav\Syslay.dll 模块:C:\Program Files\Rising\Rav\NComm.dll 进程:C:\Program Files\Rising\Rav\RavMonD.exe 模块:C:\Program Files\Rising\Rav\ur023.dat 模块:C:\Program Files\Rising\Rav\urutils.dll 模块:C:\Program Files\Rising\Rav\revm.dll 模块:C:\Program Files\Rising\Rav\ur000.dat 模块:C:\Program Files\Rising\Rav\scanpe.dll 模块:C:\Program Files\Rising\Rav\pearc.dll 模块:C:\Program Files\Rising\Rav\scansct.dll 模块:C:\Program Files\Rising\Rav\scanex.dll 模块:C:\Program Files\Rising\Rav\unexe.dll 模块:C:\Program Files\Rising\Rav\scanexec.dll 模块:C:\Program Files\Rising\Rav\extfile.dll 模块:C:\Program Files\Rising\Rav\nvfile.dll 模块:C:\Program Files\Rising\Rav\ffr.dll 模块:C:\WINDOWS\system32\uxtheme.dll 模块:C:\Program Files\Rising\Rav\relibldr.dll 模块:C:\Program Files\Rising\Rav\viruslib.dll 模块:C:\Program Files\Rising\Rav\Scanner.dll 模块:C:\Program Files\Rising\Rav\ScanAdd.dll 模块:C:\Program Files\Rising\Rav\RSStore.dll 模块:C:\Program Files\Rising\Rav\refs.dll 模块:C:\Program Files\Rising\Rav\recomp.dll 模块:C:\Program Files\Rising\Rav\BACore.dll 模块:C:\Program Files\Rising\Rav\rsnetsvr.dll 模块:C:\Program Files\Rising\Rav\HookCont.dll 模块:C:\Program Files\Rising\Rav\ProcCom.dll 模块:C:\Program Files\Rising\Rav\RsCommX2.dll 模块:C:\Program Files\Rising\Rav\Hooksys.dll 模块:C:\Program Files\Rising\Rav\comx3.dll 模块:C:\Program Files\Rising\Rav\Syslay.dll 模块:C:\Program Files\Rising\Rav\CfgDll.dll 模块:C:\Program Files\Rising\Rav\RSAPPMGR.dll 模块:C:\Program Files\Rising\Rav\proccomm.dll 模块:C:\Program Files\Rising\Rav\HookWeb.dll 模块:C:\Program Files\Rising\Rav\MailMon.dll 模块:C:\Program Files\Rising\Rav\FileMon.dll 模块:C:\Program Files\Rising\Rav\MonRule.dll 模块:C:\Program Files\Rising\Rav\moncom08.dll 模块:C:\Program Files\Rising\Rav\defmon.dll 模块:C:\Program Files\Rising\Rav\mondrv.dll 模块:C:\Program Files\Rising\Rav\Rslog.dll 模块:C:\Program Files\Rising\Rav\MonBase.dll 模块:C:\Program Files\Rising\Rav\moncomm.dll 模块:C:\WINDOWS\system32\MSVCP71.dll 模块:C:\WINDOWS\system32\MSVCR71.dll 模块:C:\Program Files\Rising\Rav\combase.dll 进程:C:\WINDOWS\system32\svchost.exe 模块:C:\WINDOWS\system32\UxTheme.dll 进程:C:\Program Files\IPMsg\ipmsg.exe 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\Program Files\Rising\Rav\CCENTER.EXE 模块:C:\WINDOWS\system32\uxtheme.dll 模块:C:\Program Files\Rising\Rav\cnt08.dll 模块:C:\Program Files\Rising\Rav\cnt09.dll 模块:C:\Program Files\Rising\Rav\combase.dll 进程:C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 模块:C:\Program Files\Microsoft\Search Enhancement Pack\SeaShadow\SEASHADO.dll 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\WINDOWS\system32\svchost 模块:C:\WINDOWS\system32\UxTheme.dll 模块:C:\WINDOWS\system32\UxTheme.dll 进程:C:\Program Files\Rising\Rav\ScanFrm.exe 模块:C:\Program Files\Rising\Rav\ScanAdd.dll 模块:C:\Program Files\Rising\Rav\ScanStub.dll 模块:C:\Program Files\Rising\Rav\ScanSimT.dll 模块:C:\Program Files\Rising\Rav\ScanBT.dll 模块:C:\WINDOWS\system32\uxtheme.dll 模块:C:\Program Files\Rising\Rav\comx3.dll 模块:C:\Program Files\Rising\Rav\Syslay.dll 模块:C:\Program Files\Rising\Rav\ScanSrv.dll 模块:C:\Program Files\Rising\Rav\proccomm.dll 模块:C:\Program Files\Rising\Rav\scansrvp.dll 模块:C:\Program Files\Rising\Rav\moncomm.dll 模块:C:\Program Files\Rising\Rav\combase.dll 模块:C:\WINDOWS\system32\MSVCP71.dll 模块:C:\WINDOWS\system32\MSVCR71.dll 进程:C:\WINDOWS\system32\winlogon.exe 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\WINDOWS\system32\services.exe 模块:C:\WINDOWS\system32\UxTheme.dll 进程:C:\WINDOWS\system32\svchost.exe 模块:C:\WINDOWS\system32\UxTheme.dll 进程:C:\Program Files\Windows Live\Messenger\msnmsgr.exe 模块:C:\Program Files\Windows Live\Contacts\conproxy.dll 模块:C:\Program Files\Windows Live\Contacts\lmcdata.dll 模块:C:\Program Files\Windows Live\Contacts\contact.dll 模块:C:\Program Files\Windows Live\Messenger\msgswcam.dll 模块:C:\WINDOWS\system32\sirenacm.dll 模块:C:\Program Files\Windows Live\Messenger\RTMPLTFM.dll 模块:C:\Program Files\Windows Live\Messenger\uccapi.dll 模块:C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\MSVCP90.dll 模块:C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\MSVCR90.dll 模块:C:\PROGRA~1\WINDOW~4\MESSEN~1\vvpltfrm.dll 模块:C:\Program Files\360safe\safemon\safemon.dll 模块:C:\Program Files\Windows Live\Messenger\sqmapi.dll 模块:C:\Program Files\Windows Live\Messenger\msgsres.dll 模块:C:\Program Files\Windows Live\Messenger\msgslang.14.0.8050.1202.dll 模块:C:\Program Files\Windows Live\Messenger\PresenceIM.dll 模块:C:\Program Files\Windows Live\Messenger\LiveTransport.dll 模块:C:\Program Files\Windows Live\Messenger\LiveNatTrav.dll 模块:C:\Program Files\Windows Live\Messenger\uxcontacts.dll 模块:C:\Program Files\Windows Live\Messenger\UXCalendar.dll 模块:C:\Program Files\Windows Live\Messenger\wldlog.dll 模块:C:\Program Files\Windows Live\Messenger\msidcrl40.dll 模块:C:\WINDOWS\system32\UxTheme.dll 模块:C:\Program Files\Windows Live\Messenger\UXCore.dll 模块:C:\Program Files\Windows Live\Messenger\WLDCore.dll 模块:C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1801_x-ww_5eed8217\MSVCR80.dll 进程:C:\WINDOWS\Explorer.EXE 模块:C:\Program Files\Rising\Rav\RavScrCh.dll 模块:C:\Program Files\360safe\safemon\urlproc.dll 模块:C:\Program Files\Common Files\Autodesk Shared\dwf Common\DWFShellExtensionRes.dll 模块:C:\Program Files\Common Files\Autodesk Shared\dwf Common\DWFShellExtension.dll 模块:C:\Program Files\Common Files\Autodesk Shared\dwf Common\MSVCP71.dll 模块:C:\Program Files\Common Files\Autodesk Shared\dwf Common\MSVCR71.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll 模块:C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll 模块:C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll 模块:C:\Program Files\Netease\网易右键邮\右键邮\rightmailshell.dll 模块:C:\Program Files\WinRAR\rarext.dll 模块:C:\WINDOWS\system32\RavExt.dll 模块:C:\Program Files\Microsoft Office\OFFICE11\msohev.dll 模块:C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.CHS 模块:C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll 模块:C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1801_x-ww_5eed8217\MSVCR80.dll 模块:C:\Program Files\360safe\safemon\safemon.dll 模块:C:\WINDOWS\system32\UxTheme.dll 进程:C:\Documents and Settings\new\桌面\狙剑V2008-0429\SnipeSword.exe 模块:C:\Program Files\360safe\safemon\safemon.dll 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\Program Files\StormII\stormliv.exe 模块:C:\Program Files\StormII\box\BoxLog.dll 模块:C:\Program Files\StormII\bfoptdll.dll 模块:C:\WINDOWS\system32\uxtheme.dll 模块:C:\Program Files\StormII\MSVCP60.dll 进程:C:\WINDOWS\System32\svchost.exe 模块:C:\WINDOWS\System32\UxTheme.dll 进程:C:\Program Files\internet explorer\iexplore.exe 模块:C:\WINDOWS\system32\WBJJU.IME 模块:C:\WINDOWS\system32\wbjju.dll 模块:C:\WINDOWS\system32\WbCodeU.dll 模块:C:\WINDOWS\system32\UNISPIM6.IME 模块:C:\WINDOWS\system32\Macromed\Flash\Flash10a.ocx 模块:C:\Program Files\Rising\Rav\RavScrCh.dll 模块:C:\WINDOWS\system32\MSVCP71.dll 模块:C:\WINDOWS\system32\MSVCR71.dll 模块:C:\Program Files\Microsoft Office\OFFICE11\msohev.dll 模块:C:\Program Files\360safe\safemon\urlproc.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll 模块:C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll 模块:C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll 模块:C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll 模块:C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1801_x-ww_5eed8217\MSVCP80.dll 模块:C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1801_x-ww_5eed8217\MSVCR80.dll 模块:C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll 模块:C:\Program Files\360safe\safemon\safemon.dll 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\WINDOWS\system32\ctfmon.exe 模块:C:\WINDOWS\system32\UxTheme.dll 进程:C:\Program Files\Rising\Rav\RsTray.exe 模块:C:\Program Files\Rising\Rav\rsmginfo.dll 模块:C:\Program Files\Rising\Rav\ScanPrxy.dll 模块:C:\Program Files\Rising\Rav\RavITray.dll 模块:C:\Program Files\Rising\Rav\PngDll.dll 模块:C:\Program Files\Rising\Rav\MonTray.dll 模块:C:\Program Files\Rising\Rav\mruleui.dll 模块:C:\Program Files\Rising\Rav\ravbintl.dll 模块:C:\Program Files\Rising\Rav\rspalvd.dll 模块:C:\Program Files\Rising\Rav\CfgDll.dll 模块:C:\Program Files\Rising\Rav\RSAPPMGR.dll 模块:C:\Program Files\Rising\Rav\rsconf.dll 模块:C:\Program Files\Rising\Rav\rsguilib.dll 模块:C:\WINDOWS\system32\MFC71.DLL 模块:C:\Program Files\Rising\Rav\ScanEvnt.dll 模块:C:\Program Files\Rising\Rav\MonState.dll 模块:C:\Program Files\Rising\Rav\ProcComm.dll 模块:C:\Program Files\Rising\Rav\rsxml.dll 模块:C:\Program Files\Rising\Rav\comx3.dll 模块:C:\Program Files\Rising\Rav\Syslay.dll 模块:C:\Program Files\Rising\Rav\rslang.dll 模块:C:\Program Files\Rising\Rav\ComServ.dll 模块:C:\WINDOWS\system32\MSVCP71.dll 模块:C:\WINDOWS\system32\MSVCR71.dll 模块:C:\WINDOWS\system32\uxtheme.dll 进程:C:\Program Files\360Safebox\safeboxTray.exe 模块:C:\Program Files\360Safebox\liveupdate.dll 模块:C:\Program Files\360Safebox\safeboxapi.dll 模块:C:\WINDOWS\system32\uxtheme.dll 模块:C:\Program Files\360Safebox\360wservice.dll 进程:C:\Program Files\Rising\Rav\RavTask.exe 模块:C:\Program Files\Rising\Rav\rstask.dll 模块:C:\WINDOWS\system32\uxtheme.dll 模块:C:\Program Files\Rising\Rav\rsstub.dll 模块:C:\Program Files\Rising\Rav\proccomm.dll 模块:C:\WINDOWS\system32\MSVCP71.dll 模块:C:\WINDOWS\system32\MSVCR71.dll 模块:C:\Program Files\Rising\Rav\CfgDll.dll 模块:C:\Program Files\Rising\Rav\RSAPPMGR.dll 模块:C:\Program Files\Rising\Rav\rsconf.dll 进程:C:\Program Files\Thunder Network\Thunder\Program\Thunder5.exe 模块:C:\Program Files\Thunder Network\Thunder\Program\bd.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\DownloadStat\DownloadStat.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\Tips\XLIPC.DLL 模块:C:\Program Files\Thunder Network\Thunder\Components\ResWorker\MediaWorker.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsXlCom.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\UserExperience\UserExperience.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\VPSHELL\VPSHELL.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\Tips\TipsClient.dll 模块:C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll 模块:C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll 模块:C:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\ExplorerHelper\ExplorerHelper.dll 模块:C:\Program Files\Thunder Network\Thunder\Plugins\KanKanTop\KanKanTop.dll 模块:C:\Program Files\Thunder Network\Thunder\Plugins\GouGouTop\GouGouTop.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\XLSoftBase\XLSoftwareBase.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\LiveUpdate.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\Search\XLSearch.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\p2sp_pd.dll 模块:C:\Program Files\Thunder Network\Thunder\Plugins\XLSafeHost\AutoHelp.dll 模块:C:\Program Files\Thunder Network\Thunder\Plugins\XLSafeHost\XLSafeHost.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\XLNetU.Dll 模块:C:\Program Files\Thunder Network\Thunder\Components\Security\SafeStatistic.dll 模块:C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL 模块:C:\Program Files\Thunder Network\Thunder\Components\Security\SafeManager.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\Security\ConfigManager.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\Security\ThunderSafe.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\InMedia\MediaAddin18.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\imdt.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\RegisterDll.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\MSVCIRT.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\xldcsubtask.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\Community\XLCommunity.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\P4PClient\P4PClient.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\InMedia\XLIPC.DLL 模块:C:\Program Files\Thunder Network\Thunder\Components\InMedia\PlayerHelper.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbed19.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbedShell.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\p2p_network_com.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\al.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\p2p_local_res.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\stream.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\xldc.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\p2p.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\p2p_upload.dll 模块:C:\WINDOWS\system32\Macromed\Flash\Flash10a.ocx 模块:C:\Program Files\Thunder Network\Thunder\Program\iTargetAD.dll 模块:C:\Program Files\Rising\Rav\RavScrCh.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\xl_stat.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\dl_peer_id.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\ptl.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\down_dispatcher.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\p2sp.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\backend_agent.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\zlib1.dll 模块:C:\Program Files\Thunder Network\Thunder\Components\DownAndPlay\DownAndPlay.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\BHOStub.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\XLNet.Dll 模块:C:\Program Files\Thunder Network\Thunder\Program\fs.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\asyn_frame.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\ATL71.DLL 模块:C:\Program Files\Thunder Network\Thunder\Program\download_interface.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\mp.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\MSVCP71.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\MSVCR71.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\TaskManager.dll 模块:C:\Program Files\360safe\safemon\safemon.dll 模块:C:\WINDOWS\system32\uxtheme.dll 模块:C:\Program Files\Thunder Network\Thunder\Program\BugReport.dll 进程:C:\WINDOWS\system32\lsass.exe 模块:C:\WINDOWS\system32\UxTheme.dll ====================================================== 无签名自启动项(包含了IE劫持、服务、SPI等): 名称: 注册键:◆ Logon Run ↓ 注册值: 类别: 名称:NeroFilterCheck 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run 注册值:C:\WINDOWS\system32\NeroCheck.exe 类别:2 名称: 注册键:◆ Logon Startup ↓ 注册值: 类别: 名称:飞鸽传书.lnk 注册键:C:\Documents and Settings\new\「开始」菜单\程序\启动\ 注册值:C:\Documents and Settings\new\「开始」菜单\程序\启动\飞鸽传书.lnk 类别:10 名称: 注册键:◆ Serivce And Drivers ↓ 注册值: 类别: 名称:Alidevice 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\Alidevice.sys 类别:21 名称:AliIde 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:System32\DRIVERS\aliide.sys 类别:21 名称:Axvdev 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\Axvdev.sys 类别:21 名称:Changer 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\Changer.sys 类别:21 名称:HWiNFO32 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:\??\C:\Program Files\HWiNFO32\HWiNFO32.SYS 类别:21 名称:i2omgmt 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\i2omgmt.sys 类别:21 名称:lbrtfdc 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\lbrtfdc.sys 类别:21 名称:MegaIDE 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:System32\DRIVERS\MegaIDE.sys 类别:21 名称:PCIDump 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\PCIDump.sys 类别:21 名称:PDCOMP 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\PDCOMP.sys 类别:21 名称:PDFRAME 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\PDFRAME.sys 类别:21 名称:PDRELI 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\PDRELI.sys 类别:21 名称:PDRFRAME 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\PDRFRAME.sys 类别:21 名称:SbieDrv 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:\??\C:\Program Files\360safe\Shield\SbieDrv.sys 类别:21 名称:SE27bus 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:system32\DRIVERS\SE27bus.sys 类别:21 名称:SE27mdfl 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:system32\DRIVERS\SE27mdfl.sys 类别:21 名称:SE27mdm 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:system32\DRIVERS\SE27mdm.sys 类别:21 名称:Tcpip 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:system32\DRIVERS\tcpip.sys 类别:21 名称:TosIde 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\TosIde.sys 类别:21 名称:WDICA 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\WDICA.sys 类别:21 名称:Winsock 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\System32\Drivers\Winsock.sys 类别:21 名称:HidServ 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:%SystemRoot%\System32\hidserv.dll 类别:11 名称:spktfrqgu 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services 注册值:C:\WINDOWS\system32\tfuixg.dll 类别:11 名称: 注册键:◆ WinLogon ↓ 注册值: 类别: 名称:SCRNSAVE.EXE 注册键:HKEY_CURRENT_USER\Control Panel\Desktop 注册值:C:\WINDOWS\system32\BLISS.SCR 类别:3 名称: 注册键:◆ Internet Explorer ↓ 注册值: 类别: 名称:{488A4255-3236-44B3-8F27-FA1AECAA8844} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units 注册值:https://img.alipay.com/download/2121/aliedit.cab 类别:6 名称:{6483F145-A768-4C41-AACC-52D4D7845851} 注册键:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats 注册值:C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xplayer.dll_1_work 类别:4 名称:{693571CB-54A3-4E90-9D52-EEAE1334E2D3} 注册键:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats 注册值:C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xdrm.dll_1_work 类别:4 名称:{ACACC6EB-1FBA-4E13-A729-53AEB2DF54F8} 注册键:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats 注册值:C:\Program Files\Common Files\Thunder Network\KanKan\DapCtrl.2.1.5805.77.(707).dll 类别:4 名称:{F3E70CEA-956E-49CC-B444-73AFE593AD7F} 注册键:HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats 注册值:C:\Program Files\Common Files\Thunder Network\KanKan\PPlayer.2.1.5853.212.(708).dll 类别:4 名称: 注册键:◆ Internet Explorer Extersions ↓ 注册值: 类别: 名称:{09BA8F6D-CB54-424B-839C-C2A6C8E6B436} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions 注册值:C:\Program Files\Thunder Network\Thunder\Thunder.exe 类别:1 名称:{6096E38F-5AC1-4391-8EC4-75DFA92FB32F} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions 注册值:http://www.microsoft.com/china/index.htm 类别:1 名称: 注册键:◆ Internet Explorer ActiveX ↓ 注册值: 类别: 名称:{06DD38D3-D187-11CF-A80D-00C04FD74AD8} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\WINDOWS\system32\plugin.ocx 类别:4 名称:{250770F3-6AF2-11CF-A915-008029E31FCD} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\Program Files\Microsoft Office\OFFICE11\HTML\HTMLMARQ.OCX 类别:4 名称:{403A6360-2638-4B4A-A4DD-73D207CE1139} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\PROGRA~1\GLOBAL~1\Game\share\GLRoom.ocx 类别:4 名称:{61238DE1-3317-4322-89AC-AC844831380D} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\PROGRA~1\GLOBAL~1\Game\share\GLAVAT~1.OCX 类别:4 名称:{61F5C358-60FB-4A23-A312-D2B556620F20} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\WINDOWS\Downloaded Program Files\HanGamePluginCn18.dll 类别:4 名称:{6E3197A3-BBC3-11D4-84C0-00C04F7A06E5} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\WINDOWS\IME\imjp8_1\Applets\IMSKDIC.DLL 类别:4 名称:{7D1425D4-E2FC-4A52-BDA9-B9DCAC5EF574} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\Program Files\Globallink\Game\share\GLITEMSetup\glItemFlat.dll 类别:4 名称:{835D604F-C3F7-442C-88D4-6EB6DB6598DC} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\Program Files\Globallink\Game\share\GLITEMSetup\glplayer.dll 类别:4 名称:{8422DAE3-9929-11CF-B8D3-004033373DA8} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\Program Files\Microsoft Office\OFFICE11\HTML\HTMLMM.OCX 类别:4 名称:{8422DAE7-9929-11CF-B8D3-004033373DA8} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\Program Files\Microsoft Office\OFFICE11\HTML\HTMLMM.OCX 类别:4 名称:{9C218381-DCC7-4DC1-9698-5095AE32C59E} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility 注册值:C:\Program Files\Globallink\Game\share\GLITEMSetup\glItemFlat.dll 类别:4 名称: 注册键:◆ Internet Explorer BHO ↓ 注册值: 类别: 名称: 注册键:◆ Explorer ↓ 注册值: 类别: 名称:application/octet-stream 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter 注册值:mscoree.dll 类别:8 名称:application/x-complus 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter 注册值:mscoree.dll 类别:8 名称:application/x-msdownload 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter 注册值:mscoree.dll 类别:8 名称:{89B4C1CD-B018-4511-B0A1-5476DBF70820} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components 注册值:C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install 类别:1 名称: 注册键:◆ Explorer ShellEx ↓ 注册值: 类别: 名称:AlcoholShellEx 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers 注册值:C:\PROGRA~1\ALCOHO~1\ALCOHO~1\AXShlEx.dll 类别:9 名称:Netease mail 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers 注册值:C:\Program Files\Netease\网易右键邮\右键邮\rightmailshell.dll 类别:9 名称:WinRAR 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers 注册值:C:\Program Files\WinRAR\rarext.dll 类别:9 名称:WinRAR 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers 注册值:C:\Program Files\WinRAR\rarext.dll 类别:9 名称:{42071714-76d4-11d1-8b24-00a0c9068ff3} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved 注册值:deskpan.dll 类别:7 名称:{B41DB860-8EE4-11D2-9906-E49FADC173CA} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved 注册值:C:\Program Files\WinRAR\rarext.dll 类别:7 名称:{32020A01-506E-484D-A2A8-BE3CF17601C3} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved 注册值:C:\PROGRA~1\ALCOHO~1\ALCOHO~1\AXShlEx.dll 类别:7 名称:{e82a2d71-5b2f-43a0-97b8-81be15854de8} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved 注册值:C:\WINDOWS\system32\dfshim.dll 类别:7 名称:{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved 注册值:C:\WINDOWS\system32\dfshim.dll 类别:7 名称: 注册键:◆ LSA Providers ↓ 注册值: 类别: 名称:Security Packages 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa 注册值:channel 类别:3 名称:Security Packages 注册键:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa 注册值:sv1_0 类别:3 名称: 注册键:◆ ImageFile Hijacks ↓ 注册值: 类别: 名称:Netease mail 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers 注册值:C:\Program Files\Netease\网易右键邮\右键邮\rightmailshell.dll 类别:9 名称:WinRAR 注册键:HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers 注册值:C:\Program Files\WinRAR\rarext.dll 类别:9 名称: 注册键:◆ Session Manager ↓ 注册值: 类别: 名称: 注册键:◆ Other ↓ 注册值: 类别: ====================================================== 无签名内核模块: 模块基址:F5525000 模块:\??\c:\documents and settings\new\桌面\狙剑v2008-0429\SnipeSword.sys 模块基址:F7A6A000 模块:\??\C:\Program Files\HWiNFO32\HWiNFO32.SYS 模块基址:F79FE000 模块:\SystemRoot\System32\Drivers\dump_WMILIB.SYS 模块基址:F6BA7000 模块:\SystemRoot\System32\Drivers\dump_atapi.sys 模块基址:F6DCF000 模块:\SystemRoot\system32\DRIVERS\tcpip.sys 模块基址:F77D0000 模块:\SystemRoot\System32\Drivers\Alidevice.SYS 模块基址:F73D5000 模块:MegaIDE.sys 模块基址:F742C000 模块:Axvdev.sys ====================================================== 硬件设备及其支持文件列表: 设备:Sony Ericsson Device 039 Driver 支持文件:oem8.inf 支持文件:SE27bus.sys 支持文件:SE27wh95.sys 支持文件:SE27whnt.sys 设备:Realtek AC'97 Audio for VIA (R) Audio Controller 支持文件:oem4.inf 支持文件:ALCXWDM.SYS 支持文件:SOUNDMAN.EXE 支持文件:ALSNDMGR.CPL 支持文件:ALSNDMGR.WAV 支持文件:RTLCPL.EXE 支持文件:RtlCPAPI.dll 设备:Sony Ericsson Device 039 USB WMC Data Modem 支持文件:oem9.inf 支持文件:SE27mdm.sys 支持文件:SE27cmnt.sys 支持文件:SE27mdfl.sys 设备:Realtek RTL8139/810x Family Fast Ethernet NIC 支持文件:oem3.inf 支持文件:Rtlnic.sys 支持文件:Rtlnicxp.sys 支持文件:Rtlnic64.sys 设备:Realtek RTL8139/810x Family Fast Ethernet NIC 支持文件:oem3.inf 支持文件:Rtlnic.sys 支持文件:Rtlnicxp.sys 支持文件:Rtlnic64.sys 设备:Bluetooth 设备 (RFCOMM 协议 TDI) 支持文件:tdibth.inf 支持文件:rfcomm.sys 支持文件:BthEnum.sys 支持文件:wshBth.dll 设备:HP LaserJet 1018 支持文件:oem6.inf 支持文件:QDPRINT.DLL 支持文件:SDNT5UI.DLL 支持文件:SDNTUM4.DLL 支持文件:SD32.DLL 支持文件:SDDM32.DLL 支持文件:SDDMUI.DLL 支持文件:SR32.DLL 支持文件:ZGDI32.DLL 支持文件:ZPRINT32.EXE 支持文件:ZSPOOL32.EXE 支持文件:ZSPOOL.DLL 支持文件:SDhp1018.DLL 支持文件:SUhp1018.DLL 支持文件:SUhp1018.ENT 支持文件:SDhp1018.SDD 支持文件:SD4.DLL 支持文件:ZLhp1018.DLL 支持文件:ZUNINST.EXE 支持文件:SDhp1018.UNZ 支持文件:ZJBIG.DLL 支持文件:SDhp1018.HLP 支持文件:ZTAG32.DLL 支持文件:IMFPRINT.DLL 支持文件:IMF16.DRV 支持文件:SDIMF32.DLL 支持文件:IMFNT5.DLL 支持文件:IMF32.DLL 支持文件:USBMON.DLL 支持文件:SUXML.DLL 支持文件:XERCES-C.DLL 支持文件:UNICOWS.DLL 支持文件:ZLM.DLL 支持文件:hp1018.img 支持文件:VSHP1018.DLL 支持文件:ZSHP1018.EXE 支持文件:ZSHP1018.HLP 支持文件:SD4.INI 支持文件:SUhp1018.VER ====================================================== 当前已安装软件列表: 360保险箱 360安全卫士 8点报阅读器 Adobe Flash Player 10 ActiveX Adobe Photoshop 7.0 Dna-Drivers ffdshow 卸载联众程序 HWiNFO32 Version 1.53 Windows XP 修补程序包 - KB873333 Windows XP 修补程序包 - KB873339 Windows XP 安全更新 (KB883939) Windows XP 修补程序包 - KB885250 Windows XP 修补程序包 - KB885626 Windows XP 修补程序包 - KB885835 Windows XP 修补程序包 - KB885836 Windows XP 修补程序包 - KB886185 Windows XP 修补程序包 - KB886677 Windows XP 修补程序包 - KB887472 Windows XP 修补程序包 - KB887742 Windows XP 修补程序包 - KB888113 Windows XP 修补程序包 - KB888302 Windows XP 安全更新 (KB890046) Windows XP 修补程序包 - KB890175 Windows XP 修补程序包 - KB890859 Windows XP 修补程序包 - KB890923 Windows XP 修补程序包 - KB891781 Windows XP 修补程序包 - KB893066 Windows XP 修补程序包 - KB893086 Windows XP 安全更新 (KB893756) Windows Installer 3.1 (KB893803) Windows Installer 3.1 (KB893803) Windows XP 更新 (KB894391) Windows XP 安全更新 (KB896358) Windows XP 安全更新 (KB896422) Windows XP 安全更新 (KB896423) Windows XP 安全更新 (KB896428) Windows XP 更新 (KB898461) Windows XP 安全更新 (KB899587) Windows XP 安全更新 (KB899588) Windows XP 安全更新 (KB899591) Windows XP 更新 (KB900485) Windows XP 安全更新 (KB900725) Windows XP 安全更新 (KB901017) Windows XP 安全更新 (KB901190) Windows XP 安全更新 (KB901214) Windows XP 安全更新 (KB902400) Windows XP 安全更新 (KB905414) Windows XP 安全更新 (KB905749) Windows XP 安全更新 (KB908519) Windows XP 更新 (KB908531) Windows XP 更新 (KB910437) Windows XP 更新 (KB911280) Windows XP 安全更新 (KB911562) Windows Media Player (KB911564) 安全更新 Windows XP 安全更新 (KB911927) Windows XP 安全更新 (KB913580) Windows XP 安全更新 (KB914388) Windows XP 安全更新 (KB914389) Windows XP 更新 (KB916595) Windows XP 安全更新 (KB918118) Windows XP 安全更新 (KB918439) Windows XP 安全更新 (KB920213) Windows XP 安全更新 (KB920670) Windows XP 安全更新 (KB920683) Windows XP 安全更新 (KB920685) Windows XP 更新 (KB920872) Windows XP 更新 (KB922582) Windows XP 安全更新 (KB922819) Windows XP 安全更新 (KB923191) Windows XP 安全更新 (KB923414) Windows XP (KB923689) 安全更新 Windows XP 安全更新 (KB923980) Windows XP 安全更新 (KB924270) Windows XP 安全更新 (KB924496) Windows XP 安全更新 (KB924667) Windows Media Player 6.4 (KB925398) 安全更新 Windows XP 安全更新 (KB925454) Windows XP 安全更新 (KB925486) Windows XP 安全更新 (KB925902) Windows XP 安全更新 (KB926255) Windows XP 安全更新 (KB926436) Windows XP 安全更新 (KB927779) Windows XP 安全更新 (KB927802) Windows XP 更新 (KB927891) Windows XP 安全更新 (KB928255) 用于 Microsoft .NET Framework 2.0 的 Security Update (KB928365) Windows XP 安全更新 (KB928843) Windows XP 安全更新 (KB929123) Windows XP 更新 (KB929338) Windows XP 安全更新 (KB930178) Windows XP 更新 (KB930916) Windows XP 安全更新 (KB931261) Windows XP 安全更新 (KB931784) Windows XP 安全更新 (KB932168) Windows XP 修补程序 (KB932716-v2) Windows XP 更新 (KB932823-v3) Windows XP 修补程序 (KB933062) Windows XP 安全更新 (KB933729) Windows XP 修补程序 (KB934428-v3) Windows XP 修补程序 (KB935448) Windows XP 修补程序 (KB935708) Windows XP 安全更新 (KB935839) Windows XP 安全更新 (KB935840) Windows XP 修补程序 (KB935843) Windows XP 安全更新 (KB936021) Windows Media Player 10 (KB936782) 安全更新 Windows XP 安全更新 (KB937894) Windows XP 安全更新 (KB938127) Windows XP 安全更新 (KB938464) Windows XP 更新 (KB938828) Windows XP 修补程序 (KB940275-v3) Windows XP (KB941569) 安全更新 Windows XP 安全更新 (KB941644) Windows XP 安全更新 (KB941693) Windows XP 安全更新 (KB943055) Windows XP 修补程序 (KB943198-v2) Windows XP 安全更新 (KB943460) Windows XP 安全更新 (KB943485) Windows XP 修补程序 (KB944043-v3) Windows XP 安全更新 (KB944338-v2) Windows XP 安全更新 (KB944653) Windows XP 安全更新 (KB945553) Windows XP 安全更新 (KB946026) Windows XP 更新 (KB946501-v2) Windows XP 安全更新 (KB946648) Windows XP 安全更新 (KB948590) Windows XP 安全更新 (KB948881) Windows XP 安全更新 (KB950582) Windows XP 安全更新 (KB950749) Windows XP 安全更新 (KB950760) Windows XP 安全更新 (KB950762) Windows XP 安全更新 (KB950974) Windows XP 安全更新 (KB951066) Windows XP 更新 (KB951072-v2) Windows XP 安全更新 (KB951376-v2) Windows XP 安全更新 (KB951698) Windows XP 安全更新 (KB951748) Windows XP 修补程序 (KB951830) Windows Media Player (KB952069) 安全更新 Windows XP 修补程序 (KB952287) Windows XP 安全更新 (KB952954) Windows XP 安全更新 (KB953155) Windows XP 安全更新 (KB953838) Windows XP 安全更新 (KB953839) Windows XP 安全更新 (KB954211) Windows XP 安全更新 (KB954600) Windows XP 安全更新 (KB955069) Windows XP 更新 (KB955704) Windows XP 更新 (KB955839) Windows XP 安全更新 (KB956390) Windows XP 安全更新 (KB956391) Windows XP 安全更新 (KB956802) Windows XP 安全更新 (KB956803) Windows XP 安全更新 (KB956841) Windows XP 安全更新 (KB957095) Windows XP 安全更新 (KB957097) Windows XP 安全更新 (KB958215) Windows XP 安全更新 (KB958644) Windows XP 安全更新 (KB958687) Windows XP 更新 (KB958752) Windows XP 修补程序 (KB959252-v2) Windows XP 安全更新 (KB960714) Windows XP 安全更新 (KB960715) Microsoft .NET Framework 2.0 Microsoft .NET Framework 2.0 语言包 - 简体中文 Nero 6 Demo QQ2008II Beta1 QQ游戏 瑞星杀毒软件   暴风影音 迅雷5 UUSee 网络电视 [5.9.107.1] UUSee 播放插件基础包 5.9.1.7 Windows Imaging Component Windows Media Format Runtime Windows Media Player 10 Windows Live 软件包 WinRAR 压缩文件管理器 Avira RootKit Detection Windows Live 上载工具 MSVCRT Microsoft Search Enhancement Pack Macromedia Flash 8 Windows Live 照片库 WebFldrs XP USB PC Camera 301P Windows Live 软件包 Windows Live Toolbar Junk Mail filter update Microsoft .NET Framework 2.0 Language Pack - CHS VBA (2627.01) VBA (2701.04) Windows Live Writer MSXML 6 Service Pack 2 (KB954459) Microsoft .NET Framework 2.0 Windows Live Sync Macromedia Flash Player 8 Microsoft Silverlight Microsoft Sync Framework Runtime Native v1.0 (x86) Macromedia Flash 8 Video Encoder Choice Guard Microsoft Office Lite Edition 2003 Microsoft Office Visio Professional 2003 Microsoft Office Visio Viewer 2003 (簡體中文) Macromedia Flash Player 8 Plugin Microsoft Application Error Reporting Windows Live 登录助手 Autodesk DWF Viewer 7 Segoe UI Windows Live Messenger Adobe Reader 9 - Chinese Simplified Windows Live Mail Adobe Flash Player 9 ActiveX Microsoft Sync Framework Services Native v1.0 (x86) Alcohol 120% Microsoft SQL Server 2005 Compact Edition [ENU] Macromedia Extension Manager Windows Live Communications Platform 五笔加加Plus 2.5 豪华版 Build1115 大连滚子 大连红五 斗地主 新娱网棋牌 有道桌面词典 矮人DOS工具箱 紫光华宇拼音输入法V6.1 网易右键邮 联众安全补丁 联众打滚子 飞鸽传书简体中文版 ====================================================== Host文件: 127.0.0.1 localhost ====================================================== 系统体检全部完成 2009-02-23-10:36:08