[PID: 2260][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 2824][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] [RealNetworks, Inc., 0.1.0.3536]
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] [Symantec Corporation, 2006.1.00.28]
[PID: 2008][D:\Program Files\eMule\eMule.exe] [http://www.emule.org.cn, 0.47.0]
[D:\Program Files\eMule\pthreadVC.dll] [Open Source Software community project, 1, 0, 0, 0]
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] [Symantec Corporation, 2006.1.00.28]
[D:\Program Files\eMule\lang\zh_CN.dll] [http://www.emule-project.net, 0.47.0]
[D:\Program Files\Permeo\Security Driver\s5spi.dll] [Permeo Technologies Inc., 4, 2, 0, 0]
[PID: 3340][C:\Program Files\Internet Explorer\IEXPLORE.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] [Symantec Corporation, 2006.1.00.28]
[C:\Program Files\Norton AntiVirus\NavShExt.dll] [Symantec Corporation, 12.6.0.1]
[D:\Program Files\Permeo\Security Driver\s5spi.dll] [Permeo Technologies Inc., 4, 2, 0, 0]
[C:\WINDOWS\system32\UNISPIM.IME] [北京清华紫光软件股份有限公司, 3.0.0.3045]
[C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx] [Adobe Systems, Inc., 9,0,16,0]
[C:\WINDOWS\system32\upengine.dll] [北京清华紫光软件股份有限公司, 3.0.0.3045]
[PID: 3000][D:\Program Files\Tencent\TT\TTraveler.exe] [腾讯公司, 3.1.0.259]
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] [Symantec Corporation, 2006.1.00.28]
[D:\Program Files\Tencent\TT\Plugins\TWeather\TWeather.dll] [, 1, 0, 0, 3]
[D:\Program Files\Tencent\TT\PersonalDesktop.dll] [深圳市腾讯计算机系统公司QQ工作小组, 1, 0, 0, 4]
[D:\Program Files\Permeo\Security Driver\s5spi.dll] [Permeo Technologies Inc., 4, 2, 0, 0]
[C:\PROGRA~1\Sony\VAIOUP~1\VUAC.dll] [Sony Corporation, 1.0.1.11050]
[C:\WINDOWS\system32\UNISPIM.IME] [北京清华紫光软件股份有限公司, 3.0.0.3045]
[C:\WINDOWS\system32\upengine.dll] [北京清华紫光软件股份有限公司, 3.0.0.3045]
[C:\WINDOWS\system32\quartz.dll] [N/A, N/A]
[C:\WINDOWS\system32\msdmo.dll] [N/A, N/A]
[C:\WINDOWS\system32\l3codeca.acm] [Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0305]
[C:\WINDOWS\system32\devenum.dll] [N/A, N/A]
[C:\WINDOWS\system32\ffdshow.ax] [N/A, 1.0.2.1997]
[D:\Program Files\Ringz Studio\Storm Codec\Codecs\VSFilter.dll] [Gabest, 1, 0, 1, 3]
[C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx] [Adobe Systems, Inc., 9,0,16,0]
[C:\Program Files\Common Files\Ahead\lib\NeroDigitalExt.dll] [Nero AG, 2, 0, 0, 8]
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[PID: 3124][E:\软件安装程序\SREng2\SREng\SREng.exe] [Smallfrogs Studio, 2.2.6.605]
[C:\PROGRA~1\COMMON~1\SYMANT~1\ANTISPAM\asOEHook.dll] [Symantec Corporation, 2006.1.00.28]
[D:\Program Files\Permeo\Security Driver\s5spi.dll] [Permeo Technologies Inc., 4, 2, 0, 0]
[E:\软件安装程序\SREng2\SREng\Plugins\SRECXTMG.SRE] [Smallfrogs Studio, 1, 5, 0, 55]
==================================
File Associations
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock Provider
Permeo TCP
D:\Program Files\Permeo\Security Driver\s5spi.dll(Permeo Technologies Inc., Security Driver Loader)
Permeo UDP
D:\Program Files\Permeo\Security Driver\s5spi.dll(Permeo Technologies Inc., Security Driver Loader)
Permeo RSVP TCP
D:\Program Files\Permeo\Security Driver\s5spi.dll(Permeo Technologies Inc., Security Driver Loader)
Permeo RSVP UDP
D:\Program Files\Permeo\Security Driver\s5spi.dll(Permeo Technologies Inc., Security Driver Loader)
Permeo Security Driver
D:\Program Files\Permeo\Security Driver\s5spi.dll(Permeo Technologies Inc., Security Driver Loader)
==================================
Autorun.Inf
N/A
==================================
HOSTS File
127.0.0.1 localhost
==================================