[Process]
1_FileName=C:\WINDOWS\SYSTEM32\SMSS.EXE
1_FileSize=50688
1_FileDate=2004-8-23 16:00:00
1_FileVersion=5.1.2600.2180
2_FileName=C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2_FileSize=487424
2_FileDate=2004-8-23 16:00:00
2_FileVersion=5.1.2600.2180
3_FileName=C:\WINDOWS\SYSTEM32\SERVICES.EXE
3_FileSize=108032
3_FileDate=2004-8-23 16:00:00
3_FileVersion=5.1.2600.2180
4_FileName=C:\WINDOWS\SYSTEM32\LSASS.EXE
4_FileSize=13312
4_FileDate=2004-8-23 16:00:00
4_FileVersion=5.1.2600.2180
5_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
5_FileSize=14336
5_FileDate=2004-8-23 16:00:00
5_FileVersion=5.1.2600.2180
6_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
6_FileSize=14336
6_FileDate=2004-8-23 16:00:00
6_FileVersion=5.1.2600.2180
7_FileName=C:\WINDOWS\EXPLORER.EXE
7_FileSize=976896
7_FileDate=2004-8-23 16:00:00
7_FileVersion=6.0.2900.2180
8_FileName=C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
8_FileSize=57856
8_FileDate=2004-8-23 16:00:00
8_FileVersion=5.1.2600.2180
9_FileName=C:\WINDOWS\SYSTEM32\HKCMD.EXE
9_FileSize=114688
9_FileDate=2004-10-10 18:38:26
9_FileVersion=3.0.0.2082
10_FileName=C:\WINDOWS\SOUNDMAN.EXE
10_FileSize=67584
10_FileDate=2004-6-18 16:31:02
10_FileVersion=5.1.0.28
11_FileName=C:\PROGRA~1\YAHOO!\ASSIST~1\YLIVE.EXE
11_FileSize=20480
11_FileDate=2005-12-20 13:53:08
11_FileVersion=2.0.0.1002
12_FileName=C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
12_FileSize=32768
12_FileDate=2004-8-23 16:00:00
12_FileVersion=5.1.2600.2180
13_FileName=C:\PROGRA~1\YAHOO!\ASSISTANT\YASSISTSE.EXE
13_FileSize=65536
13_FileDate=2005-9-21 6:08:40
13_FileVersion=1.0.1.1001
14_FileName=C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
14_FileSize=32768
14_FileDate=2004-8-23 16:00:00
14_FileVersion=5.1.2600.2180
15_FileName=C:\PROGRAM FILES\CONEXANT\ACCESSRUNNER ADSL USB\CNXDSLTB.EXE
15_FileSize=278528
15_FileDate=2004-10-22 18:05:08
15_FileVersion=40.1.18.0
16_FileName=C:\PROGRAM FILES\COMMON FILES\SOGOU PXP\P2PSVR.EXE
16_FileSize=86016
16_FileDate=2006-6-8 20:25:10
16_FileVersion=2.0.0.17
17_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
17_FileSize=14336
17_FileDate=2004-8-23 16:00:00
17_FileVersion=5.1.2600.2180
18_FileName=C:\WINDOWS\DISKMAN.EXE
18_FileSize=77824
18_FileDate=2004-6-1 21:16:00
18_FileVersion=
19_FileName=C:\PROGRAM FILES\VENTURI2\CLIENT\VENTC.EXE
19_FileSize=868352
19_FileDate=2002-7-18 13:28:50
19_FileVersion=1.0.0.1
20_FileName=C:\PROGRAM FILES\HUACI\HUACI\ZSEARCH.EXE
20_FileSize=143360
20_FileDate=2006-1-19 15:32:50
20_FileVersion=1.0.0.1
21_FileName=C:\PROGRAM FILES\DESKMEMO\DESKMEMO.EXE
21_FileSize=65536
21_FileDate=2006-8-4 17:02:48
21_FileVersion=1.0.0.1
22_FileName=C:\WINDOWS\SYSTEM32\CTFMON.EXE
22_FileSize=15360
22_FileDate=2004-8-23 16:00:00
22_FileVersion=5.1.2600.2180
23_FileName=C:\PROGRAM FILES\DUDU\SPEED\DUDUPROS.EXE
23_FileSize=360448
23_FileDate=2006-6-5 9:32:54
23_FileVersion=5.0.0.1
24_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
24_FileSize=14336
24_FileDate=2004-8-23 16:00:00
24_FileVersion=5.1.2600.2180
25_FileName=D:\游戏\QQ\QQ.EXE
25_FileSize=1224704
25_FileDate=2005-10-11 16:36:18
25_FileVersion=14.19.0.220
26_FileName=D:\游戏\QQ\TIMPLATFORM.EXE
26_FileSize=69632
26_FileDate=2005-9-14 13:38:46
26_FileVersion=0.3.1.8
27_FileName=C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
27_FileSize=93184
27_FileDate=2004-8-24
27_FileVersion=6.0.2900.2180
28_FileName=C:\PROGRAM FILES\DUDU\SPEED\DUDUACC.EXE
28_FileSize=1159168
28_FileDate=2006-8-2 16:47:00
28_FileVersion=5.0.0.7
29_FileName=D:\RUIXING\HA_HIJACKTHIS_1991\HIJACKTHIS.EXE
29_FileSize=218624
29_FileDate=2005-2-22 2:43:46
29_FileVersion=1.99.0.1
30_FileName=C:\PROGRAM FILES\SUPER RABBIT\MAGICSET\IEHELP.EXE
30_FileSize=735232
30_FileDate=2006-8-9 0:29:16
30_FileVersion=7.75.0.0
31_FileName=[SYSTEM PROCESS]
32_FileName=C:\WINDOWS\system32\CSRSS.EXE
32_FileSize=6144
32_FileDate=2004-8-23 16:00:00
32_FileVersion=5.1.2600.2180
33_FileName=C:\WINDOWS\system32\ALG.EXE
33_FileSize=44544
33_FileDate=2004-8-23 16:00:00
33_FileVersion=5.1.2600.2180
Max=33
[Hosts]
HostsFile=C:\WINDOWS\system32\Drivers\Etc\Hosts
1_Host=127.0.0.1 localhost
Max=1