2006-09-19,11:41:36
System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)
Windows XP Professional Service Pack 1 (Build 2600)
- 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><> []
<run><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<RavTask><"H:\Program Files\rising\Rav\RavTask.exe" -system> [Beijing Rising Technology Co., Ltd.]
<RfwMain><"H:\Program Files\Rising\Rfw\rfwmain.exe" -Startup> [Beijing Rising Technology Co., Ltd.]
<MSConfig><H:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe> [Microsoft Corporation]
<Userinit><H:\WINDOWS\System32\userinit.exe,> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<UIHost><logonui.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\System Safety Monitor]
<WinlogonNotify: System Safety Monitor><SSMWinlogonEx.dll> [System Safety Limited]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<ctfmon.exe><; H:\WINDOWS\System32\ctfmon.exe> [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<KAVPersonal50><; "H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize> [Kaspersky Lab]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<kubao Messenger><; C:\Program Files\kubao\kubaomsgr\KubaoMsgr.exe -autorun> []
==================================
启动文件夹
服务
[COM+ Agent / COM+ Agent]
<H:\WINDOWS\System32\CControl.exe><N/A>
[GrayX / GrayX]
<H:\WINDOWS\Grow.exe><N/A>
[kavsvc / kavsvc]
<"H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe"><Kaspersky Lab>
[NetWork DNS / NetWork DNS]
<H:\WINDOWS\System32\NetworkDNS.exe><N/A>
[Network System Connection / NSCYM]
<><N/A>
[PeanuthullCore / PeanuthullCore]
<H:\Program Files\PeanutHull3\PhCore.exe -service><广东网域>
[Poweroff / Poweroff]
<"H:\WINDOWS\System32\poweroff.exe" -service><Jorgen Bosman>
[Rising Proxy Service / RfwProxySrv]
<h:\program files\rising\rfw\rfwproxy.exe><Beijing Rising Technology Co., Ltd.>
[Rising Personal Firewall Service / RfwService]
<h:\program files\rising\rfw\rfwsrv.exe><Beijing Rising Technology Co., Ltd.>
[Rising Process Communication Center / RsCCenter]
<"H:\Program Files\rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
<"H:\Program Files\rising\Rav\Ravmond.exe"><Beijing Rising Technology Co., Ltd.>
[rundll32 / rundll32]
<H:\WINDOWS\rundll32.exe><N/A>
==================================
浏览器加载项
[ThunderIEHelper Class]
{0005A87D-D626-4B3A-84F9-1D9571695F55} <H:\WINDOWS\System32\xunleibho_v13.dll, Thunder Networking Technologies,LTD>
[浩方对战平台]
{0A155D3C-68E2-4215-A47A-E800A446447A} <H:\Program Files\浩方对战平台\GameClient.exe, 上海浩方在线信息技术有限公司>
[新浪UC]
{2253922F-1B26-4C74-8B57-E3AEE748DBB8} <H:\Program Files\sina\UC\uc.exe, 北京新浪信息技术有限公司>
[LiveMediaOcx Control]
{9242BB35-0DB0-43AC-8DFC-8EA07E63B92A} <E:\bizhi\QQLIVE~1\QQLive.ocx, >
[DFVSScanFile Control]
{9BBD100C-E820-4930-9937-E8F3AA40E584} <H:\WINDOWS\system32\dfvs\dfvsol\DFVSSFOL.ocx, >
[MeChatU Class]
{BE9D5F13-40C1-44CA-9950-B9211E4B60DD} <H:\WINDOWS\Downloaded Program Files\MeChatUser.dll, >
[Java Plug-in 1.4.2]
{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} <H:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll, JavaSoft / Sun Microsystems, Inc.>
[Shockwave Flash
Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <H:\WINDOWS\System32\Macromed\Flash\Flash8b.ocx, Macromedia, Inc.>
[pCastPanel Class]
{FEE1002D-90A5-4A5D-AABE-01803FFBCF7A} <H:\Program Files\pcast\PodcastbarMini\pcastctl.dll, >
[&使用迅雷下载]
<H:\Program Files\Thunder Network\Thunder\geturl.htm, N/A>
[&使用迅雷下载全部链接]
<H:\Program Files\Thunder Network\Thunder\getallurl.htm, N/A>
[用比特精灵下载(&B)]
<H:\Program Files\BitSpirit\bsurl.htm, N/A>