[C:\WINDOWS\System32\quartz32.dll] [, 4, 1, 0, 0]
[PID: 2904][c:\windows\system32\inetsrv\csrss.exe] [Microsoft, 1.0.0.0]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[PID: 1264][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] [RealNetworks, Inc., 0.1.0.3510]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[PID: 3352][C:\WINDOWS\System32\Realplayer.exe] [N/A, N/A]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[PID: 4012][C:\Program Files\CNNIC\Cdn\cdnup.exe] [, 2, 4, 0, 6]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[PID: 4048][C:\WINDOWS\WINLOGON.EXE] [lFVjBhx2wUsWKHo8Rznh, 0.00.0118]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[PID: 3172][C:\WINDOWS\System32\conime.exe] [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[PID: 2692][C:\WINDOWS\System32\rundll32.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\WINDOWS\System32\sdmAgent20.dll] [LINKMEDIA Tech, 1, 5, 0, 7]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\WINDOWS\System32\quartz32.dll] [, 4, 1, 0, 0]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[PID: 192][D:\Softwares\123\Luxor AR.exe] [MumboJumbo, LLC, 1.5.5.8]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[D:\Softwares\123\core.dll] [N/A, N/A]
[D:\Softwares\123\file.dll] [N/A, N/A]
[D:\Softwares\123\logger.dll] [N/A, N/A]
[D:\Softwares\123\ui2.dll] [N/A, N/A]
[D:\Softwares\123\gfx2d.dll] [N/A, N/A]
[D:\Softwares\123\imglib.dll] [N/A, N/A]
[D:\Softwares\123\jpeg.dll] [N/A, N/A]
[D:\Softwares\123\snd3d.dll] [N/A, N/A]
[D:\Softwares\123\crash.dll] [N/A, N/A]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[D:\Softwares\123\gfx2d_dx8.dll] [N/A, N/A]
[D:\Softwares\123\snd3d_fmod.dll] [N/A, N/A]
[D:\Softwares\123\fmod.dll] [Firelight Technologies Pty, Ltd, 3.74]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[PID: 3204][C:\WINDOWS\Explorer.exe] [Microsoft Corporation, 6.00.2800.1106 (xpsp1.020828-1920)]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\WINDOWS\System32\Rsvtub.dll] [N/A, N/A]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\WINDOWS\System32\quartz32.dll] [, 4, 1, 0, 0]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\WINDOWS\System32\DLMon.dll] [N/A, N/A]
[C:\WINDOWS\Downloaded Program Files\swflash.dll] [N/A, N/A]
[C:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
[C:\WINDOWS\System32\xunleibho_v14.dll] [Thunder Networking Technologies,LTD, 4, 6, 0, 62]
[C:\Program Files\baigoo\BGooBHO.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\System32\mskey32.dll] [Microsoft, 1, 0, 0, 1]
[C:\WINDOWS\system32\browsewmzero.dll] [N/A, N/A]
[C:\Program Files\Exceed.nt\HESHELL.DLL] [Hummingbird Communications Ltd., Version: 6.2.0.0]
[PID: 3232][C:\WINDOWS\System32\Rundll32.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\PROGRA~1\pcast\hbcast.dll] [Shanghai Henbang Technology Co., Ltd, 1, 1, 3, 8]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[PID: 3376][C:\Program Files\Internet Explorer\IEXPLORE.EXE] [Microsoft Corporation, 6.00.2800.1106 (xpsp1.020828-1920)]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\WINDOWS\System32\xunleibho_v14.dll] [Thunder Networking Technologies,LTD, 4, 6, 0, 62]
[C:\Program Files\DeskAdTop\deskipn.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\System32\SYSREA~1.DLL] [Kmedia, 1, 0, 0, 2]
[C:\PROGRA~1\pcast\hbcast.dll] [Shanghai Henbang Technology Co., Ltd, 1, 1, 3, 8]
[C:\WINDOWS\system32\YHBO.dll] [YHBO, 1.0.0.1]
[C:\Program Files\baigoo\BGooBHO.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\System32\mskey32.dll] [Microsoft, 1, 0, 0, 1]
[C:\WINDOWS\system32\COMBoHEvent.dll] [N/A, N/A]
[C:\WINDOWS\system32\browsewmzero.dll] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
[C:\WINDOWS\system32\Inte.dll] [N/A, N/A]
[C:\WINDOWS\system32\HTTPDll.dll] [TODO: <公司名>, 1.0.0.1]
[C:\WINDOWS\system32\COMAdEvent.dll] [N/A, N/A]
[PID: 2448][Z:\LOGISTICS\Receiving\B班文件\Tools\SREng\SREng.exe] [Smallfrogs Studio, 2.2.6.605]
[C:\WINDOWS\KB205910M.LOG] [N/A, N/A]
[C:\Program Files\CNNIC\Cdn\cdnforie.dll] [CNNIC, 2, 0, 0, 2]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\WINDOWS\FtpServerKey.DLL] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, N/A]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, N/A]
==================================
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE Error. [winfiles]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS Error. []
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock Provider
MSTCPChain Provider
C:\WINDOWS\System32\quartz32.dll(, MFClDLL)
MSTCP Provider
C:\WINDOWS\System32\quartz32.dll(, MFClDLL)
==================================
Autorun.Inf
[C:\]
[AutoRun]
open=pagefile.pif
shellexecute=pagefile.pif
shell\Auto\command=pagefile.pif
[D:\]
[autorun]
OPEN=D:\pagefile.pif
==================================
HOSTS File
127.0.0.1 localhost
59.34.148.98 www.hao123.com
==================================