瑞星卡卡安全论坛在线技术支持在线技术支持[已关闭] 给我倒下~两个病毒啊Trojan.Agent.xwe,Trojan.DL.BHO.il

12   1  /  2  页   跳转

给我倒下~两个病毒啊Trojan.Agent.xwe,Trojan.DL.BHO.il

给我倒下~两个病毒啊Trojan.Agent.xwe,Trojan.DL.BHO.il

这几天中了这两个病毒啊~真是够烦人的~看他的烦人
1,开机~单出来15%
2. 每打开我的电脑~单去拉20%
3. 用卡卡查杀是~单出来25%
4.(这个可恶)每次打开IE是,每浏览一个网他都是~单出来(瑞星的监控)40%
5. 用瑞星(19.01.20)杀不死~卡卡(3.1.0.7)也杀不死~唉~无语咯
还有啊~打开他时~单出来1%
(百分比为它烦人的比例)
请高手们看看啊~~~_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð

附件附件:

您所在的用户组无法下载或查看附件

最后编辑2006-12-25 12:14:22
分享到:
gototop
 

【回复“木乃伊1”的帖子】这个是哦用卡卡扫描去的
Logfile of Kaka v2. 0. 2. 5 Scan Module v1. 0. 3. 6
Scan saved at 05:20:18, on 2006-12-15
Platform: Microsoft Windows XP Professional Service Pack 1 (Build 2600)
MSIE: Internet Explorer v6.00 SP1;Q867801; (6.00.2800.1106 (xpsp1.020828-1920))


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page=http://about.blank.la/
O1 - Hosts: 127.0.0.1      localhost
O2 - BHO: IEMonitor Class - {08A312BB-5409-49FC-9347-54BB7D069AC6} - C:\WINDOWS\System32\deskipn.dll
O2 - BHO:  (file missing)
O2 - BHO: QQBrowserHelperObject Class - {54EBD53A-9BC1-480B-966A-843A333CA162} - F:\Program Files\新建文件夹\QQIEHelper.dll
O2 - BHO:  - {A9930D97-9CF0-42A0-A10D-4F28836579D5} - G:\PROGRA~1\KuGoo3\KUGOO3~1.OCX (file missing)
O3 - Toolbar: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\System32\KakaTool.dll
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [runeip] C:\Program Files\Rising\KakaToolBar\runiep.exe
O4 - HKLM\..\RunOnce: [KKDelay] C:\Program Files\Rising\KakaToolBar\RunOnce.exe
O4 - Startup: desktop.ini =
O4 - Startup: 腾讯QQ.lnk = F:\Program Files\新建文件夹\QQ.exe
O4 - Global Startup: desktop.ini =
O8 - Extra context menu item: &使用迅雷下载 - E:\Thunder\Program\geturl.htm
O8 - Extra context menu item: &使用迅雷下载全部链接 - E:\Thunder\Program\getallurl.htm
O8 - Extra context menu item: 上传到QQ网络硬盘 - F:\Program Files\新建文件夹\AddToNetDisk.htm
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://F:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: 添加到QQ自定义面板 - F:\Program Files\新建文件夹\AddPanel.htm
O8 - Extra context menu item: 添加到QQ表情 - F:\Program Files\新建文件夹\AddEmotion.htm
O8 - Extra context menu item: 用QQ彩信发送该图片 - F:\Program Files\新建文件夹\SendMMS.htm
O9 - Extra Button: 启动迅雷5 - {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - E:\Thunder\Thunder.exe
O9 - Extra 'Tools' menuitem: 启动迅雷5 - {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - E:\Thunder\Thunder.exe
O9 - Extra Button: 相关站点 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: 相关站点 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra Button: QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - F:\Program Files\新建文件夹\QQ.EXE
O9 - Extra 'Tools' menuitem: 腾讯QQ - {c95fe080-8f5d-11d2-a20b-00aa003c157b} - F:\Program Files\新建文件夹\QQ.EXE
O9 - Extra Button: (no name) - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - F:\Program Files\新建文件夹\QQIEHelper.dll
O9 - Extra 'Tools' menuitem: QQ炫彩工具条设置 - {DEDEB80D-FA35-45d9-9460-4983E5A8AFE6} - F:\Program Files\新建文件夹\QQIEHelper.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
O16 - DPF: DirectAnimation Java Classes - file://C:\WINDOWS\Java\classes\dajava.cab
O16 - DPF: {05C1004E-2596-48E5-8E26-39362985EEB9} (MMCPlayer Class) - http://p3p.sogou.com/MMCShell.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://scan.safety.live.com/resource/download/scanner/wlscbase5059.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1123902651512
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1143901642464
O16 - DPF: {A96C48EA-AA88-4BBD-B58C-7B41146A6EAC} (PhotoUploadCtrl Control) - http://qz-photo.qq.com/qzone3/QzoneMediaTools.cab
O16 - DPF: {C661F36D-DF85-4EF4-83C7-E107B83D04B1} (WebActivater Control) - http://dl_dir.qq.com/3dshow/3DShowVM.cab
O16 - DPF: {E4CF9B52-A94E-4A27-AD90-904A81D0643A} (QPicControl Control) - http://my.paipai.com/activex/qpic.cab
O16 - DPF: {E787FD25-8D7C-4693-AE67-9406BC6E22DF} (CPasswordEditCtrl Object) - https://www.tenpay.com/download/qqedit.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{C7A2C71E-F9B4-4B3A-A4C7-C3E30101FAFF}: NameServer = 69.50.176.158,85.255.112.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{ED75E358-8A05-44D3-9362-422B94316400}: NameServer = 61.144.56.100 202.96.128.86
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\System32\msvidctl.dll
O18 - Protocol: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: ipp - (no CLSID) - (no file)
O18 - Protocol: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: KuGoo3 - {6AC4FBC7-AA38-45EC-9634-D6D20B679EFC} - G:\PROGRA~1\KuGoo3\InExtend\KUGOO3~1.OCX
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\System32\inetcomm.dll
O18 - Protocol: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\System32\urlmon.dll
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll
O18 - Protocol: msdaipp - (no CLSID) - (no file)
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL
O18 - Protocol: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\System32\msvidctl.dll
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: vnd.ms.radio - {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\System32\msdxm.ocx
O18 - Protocol: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\System32\wiascr.dll
O20 - Winlogon Notify: axdebugl
O21 - SSODL: SysTrays - {590498A3-4131-4D8F-BA4B-36791A9803B1} - C:\WINDOWS\System32\DLMain.dll
O21 - SSODL: DLMon - {590498A3-4131-4D8F-BA4B-36791A0803B1} - C:\WINDOWS\System32\DLMain.dll
O23 - Service: Human Interface Device Access (HidServ) -  - C:\WINDOWS\System32\svchost.exe -k netsvcs
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - "c:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe"
O23 - Service: Macromedia Licensing Service (Macromedia Licensing Service) -  - "C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe"
O23 - Service: Network IPSEC Connections (Mercha2) -  - C:\WINDOWS\System32\rundll32.exe c:\windows\system32\wbem\dldvm.dll,export 1087
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - "C:\Program Files\Rising\Rav\CCenter.exe"
O23 - Service: Rising RealTime Monitor (RsRavMon) - Beijing Rising Technology Co., Ltd. - "C:\Program Files\Rising\Rav\Ravmond.exe"
O23 - Service: User Privilege Service (usprserv) - Microsoft Corporation - C:\WINDOWS\System32\svchost.exe -k netsvcs
O23 - Service: Windows NT Service32 (Windows NT Service32) -  - C:\WINDOWS\System32\rundll32.exe" "c:\windows\system32\ntservice32.dll",start
  OK吗??
_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð
gototop
 

兔子的扫描
[Main]
Program=超级兔子IE修复专家
Version=V7.93
WindowsVersion=Windows XP
IEVersion=6.0.2800.1106
WinDir=C:\WINDOWS\
WinSystemDir=C:\WINDOWS\System32\
USERPROFILE=C:\Documents and Settings\ALLUSER
Admin=1
Detail=1
Date=2006-12-15
Time=05:24:13
Code=,
CDCode=,
Reg=0

[Soft]
Max=0

[IE]
1_HKey=HKEY_CURRENT_USER
1_Key=Software\Microsoft\Internet Explorer\Main
1_Name=Window Title
1_Value=Microsoft Internet Explorer
2_HKey=HKEY_CURRENT_USER
2_Key=Software\Microsoft\Internet Explorer\Main
2_Name=Local Page
2_Value=about:blank
3_HKey=HKEY_CURRENT_USER
3_Key=Software\Microsoft\Internet Explorer\Main
3_Name=Search Page
3_Value=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
4_HKey=HKEY_CURRENT_USER
4_Key=Software\Microsoft\Internet Explorer\Main
4_Name=Start Page
4_Value=http://about.blank.la/
5_HKey=HKEY_CURRENT_USER
5_Key=Software\Microsoft\Internet Explorer\Main
5_Name=Default_page_url
5_Value=http://www.microsoft.com/windows/ie_intl/cn/start/
6_HKey=HKEY_CURRENT_USER
6_Key=Software\Microsoft\Internet Explorer\Main
6_Name=First Home Page
6_Value=
7_HKey=HKEY_LOCAL_MACHINE
7_Key=Software\Microsoft\Internet Explorer\Main
7_Name=Search Page
7_Value=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
8_HKey=HKEY_LOCAL_MACHINE
8_Key=Software\Microsoft\Internet Explorer\Main
8_Name=Start Page
8_Value=about:blank
9_HKey=HKEY_LOCAL_MACHINE
9_Key=Software\Microsoft\Internet Explorer\Main
9_Name=Default_page_url
9_Value=http://www.microsoft.com/windows/ie_intl/cn/start/
10_HKey=HKEY_LOCAL_MACHINE
10_Key=Software\Microsoft\Internet Explorer\Main
10_Name=First Home Page
10_Value=
11_HKey=HKEY_LOCAL_MACHINE
11_Key=Software\Microsoft\Internet Explorer\Main
11_Name=Search Page
11_Value=http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
12_HKey=HKEY_LOCAL_MACHINE
12_Key=Software\Microsoft\Internet Explorer\Main
12_Name=Start Page
12_Value=about:blank
Max=12

[IE2]
1_HKey=HKEY_CURRENT_USER
1_Key=Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
1_Name={01E04581-4EEE-11D0-BFE9-00AA005B4383}
1_FileName=%SystemRoot%\System32\browseui.dll
1_FileSize=1026048
1_FileDate=2004-7-7 18:57:48
1_FileVersion=6.0.2800.1400
1_FileCompanyName=Microsoft Corporation
2_HKey=HKEY_CURRENT_USER
2_Key=Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
2_Name={0E5CBF21-D15F-11D0-8301-00AA005B4383}
2_FileName=%SystemRoot%\system32\SHELL32.dll
2_FileSize=8240640
2_FileDate=2003-6-12 4:48:44
2_FileVersion=6.0.2800.1233
2_FileCompanyName=Microsoft Corporation
3_HKey=HKEY_CURRENT_USER
3_Key=Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
3_Name={2318C2B1-4965-11D4-9B18-009027A5CD4F}
3_FileName=
3_FileVersion=
3_FileCompanyName=
4_HKey=HKEY_CURRENT_USER
4_Key=Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
4_Name={43869BB3-22FD-4F15-9B46-238106BA2F4E}
4_FileName=
4_FileVersion=
4_FileCompanyName=
5_HKey=HKEY_CURRENT_USER
5_Key=Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser
5_Name={01E04581-4EEE-11D0-BFE9-00AA005B4383}
5_FileName=%SystemRoot%\System32\browseui.dll
5_FileSize=1026048
5_FileDate=2004-7-7 18:57:48
5_FileVersion=6.0.2800.1400
5_FileCompanyName=Microsoft Corporation
6_HKey=HKEY_LOCAL_MACHINE
6_Key=SOFTWARE\Microsoft\Internet Explorer\Toolbar
6_Name={8E718888-423F-11D2-876E-00A0C9082467}
6_FileName=C:\WINDOWS\System32\msdxm.ocx
6_FileSize=842268
6_FileDate=2002-10-7 12:00:00
6_FileVersion=6.4.9.1125
6_FileCompanyName=Microsoft Corporation
7_HKey=HKEY_LOCAL_MACHINE
7_Key=SOFTWARE\Microsoft\Internet Explorer\Toolbar
7_Name={DB9ECD4F-FB8F-4311-B3CE-90B976C2707C}
7_FileName=C:\WINDOWS\System32\KakaTool.dll
7_FileSize=344064
7_FileDate=2006-12-7 5:28:40
7_FileVersion=2.0.2.5
7_FileCompanyName=Beijing Rising Technology Co., Ltd.
Max=7
_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð
gototop
 

[IE3]
1_HKey=HKEY_CURRENT_USER
1_Key=Software\Microsoft\Internet Explorer\MenuExt\&使用迅雷下载
1_FileName=E:\Thunder\Program\geturl.htm
1_FileSize=3144
1_FileDate=2006-11-22 23:54:24
1_FileVersion=
1_FileCompanyName=
2_HKey=HKEY_CURRENT_USER
2_Key=Software\Microsoft\Internet Explorer\MenuExt\&使用迅雷下载全部链接
2_FileName=E:\Thunder\Program\getallurl.htm
2_FileSize=1481
2_FileDate=2006-9-14 15:00:10
2_FileVersion=
2_FileCompanyName=
3_HKey=HKEY_CURRENT_USER
3_Key=Software\Microsoft\Internet Explorer\MenuExt\上传到QQ网络硬盘
3_FileName=F:\Program Files\新建文件夹\AddToNetDisk.htm
3_FileVersion=
3_FileCompanyName=
4_HKey=HKEY_CURRENT_USER
4_Key=Software\Microsoft\Internet Explorer\MenuExt\导出到 Microsoft Office Excel(&X)
4_FileName=res://F:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
4_FileVersion=
4_FileCompanyName=
5_HKey=HKEY_CURRENT_USER
5_Key=Software\Microsoft\Internet Explorer\MenuExt\添加到QQ自定义面板
5_FileName=F:\Program Files\新建文件夹\AddPanel.htm
5_FileSize=1815
5_FileDate=2006-8-31 20:07:56
5_FileVersion=
5_FileCompanyName=
6_HKey=HKEY_CURRENT_USER
6_Key=Software\Microsoft\Internet Explorer\MenuExt\添加到QQ表情
6_FileName=F:\Program Files\新建文件夹\AddEmotion.htm
6_FileSize=534
6_FileDate=2006-8-31 20:07:56
6_FileVersion=
6_FileCompanyName=
7_HKey=HKEY_CURRENT_USER
7_Key=Software\Microsoft\Internet Explorer\MenuExt\用QQ彩信发送该图片
7_FileName=F:\Program Files\新建文件夹\SendMMS.htm
7_FileSize=519
7_FileDate=2006-8-31 20:08:48
7_FileVersion=
7_FileCompanyName=
8_HKey=HKEY_LOCAL_MACHINE
8_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\{09BA8F6D-CB54-424B-839C-C2A6C8E6B436}
8_Clsid={1FBA04EE-3024-11D2-8F1F-0000F87ABD16}
8_ButtonText=启动迅雷5
8_MenuText=启动迅雷5
8_FileName=
8_FileVersion=
8_FileCompanyName=
9_HKey=HKEY_LOCAL_MACHINE
9_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a}
9_Clsid={1FBA04EE-3024-11D2-8F1F-0000F87ABD16}
9_ButtonText=相关站点
9_MenuText=相关站点
9_FileName=%SystemRoot%\web\related.htm
9_FileSize=654
9_FileDate=2002-10-7 12:00:00
9_FileVersion=
9_FileCompanyName=
10_HKey=HKEY_LOCAL_MACHINE
10_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157b}
10_Clsid={1FBA04EE-3024-11d2-8F1F-0000F87ABD16}
10_ButtonText=QQ
10_MenuText=腾讯QQ
10_FileName=
10_FileVersion=
10_FileCompanyName=
11_HKey=HKEY_LOCAL_MACHINE
11_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6}
11_Clsid={1FBA04EE-3024-11d2-8F1F-0000F87ABD16}
11_ButtonText=
11_MenuText=QQ炫彩工具条设置
11_FileName=
11_FileVersion=
11_FileCompanyName=
12_HKey=HKEY_CURRENT_USER
12_Key=SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping
12_Clsid=
12_ButtonText=
12_MenuText=
12_FileName=
12_FileVersion=
12_FileCompanyName=
13_HKey=HKEY_LOCAL_MACHINE
13_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{08A312BB-5409-49FC-9347-54BB7D069AC6}
13_Clsid=IEMonitor Class
13_FileName=C:\WINDOWS\System32\deskipn.dll
13_FileSize=151552
13_FileDate=2006-11-5 10:52:56
13_FileVersion=
13_FileCompanyName=
14_HKey=HKEY_LOCAL_MACHINE
14_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{08A312BB-5409-49FC-9347-54BB7D069AC6}?
14_Clsid=
14_FileName=
14_FileVersion=
14_FileCompanyName=
15_HKey=HKEY_LOCAL_MACHINE
15_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{54EBD53A-9BC1-480B-966A-843A333CA162}
15_Clsid=QQBrowserHelperObject Class
15_FileName=F:\Program Files\新建文件夹\QQIEHelper.dll
15_FileSize=184320
15_FileDate=2006-8-31 20:09:28
15_FileVersion=1.1.0.5
15_FileCompanyName=深圳市腾讯计算机系统有限公司
16_HKey=HKEY_LOCAL_MACHINE
16_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A9930D97-9CF0-42A0-A10D-4F28836579D5}
16_Clsid=
16_FileName=G:\PROGRA~1\KuGoo3\KUGOO3~1.OCX
16_FileVersion=
16_FileCompanyName=
17_HKey=HKEY_LOCAL_MACHINE
17_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\DirectAnimation Java Classes
17_Download=file://C:\WINDOWS\Java\classes\dajava.cab
17_FileName=
17_FileVersion=
17_FileCompanyName=
18_HKey=HKEY_LOCAL_MACHINE
18_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\Microsoft XML Parser for Java
18_Download=file://C:\WINDOWS\Java\classes\xmldso.cab
18_FileName=
18_FileVersion=
18_FileCompanyName=
19_HKey=HKEY_LOCAL_MACHINE
19_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{00000161-9980-0010-8000-00AA00389B71}
19_Download=http://codecs.microsoft.com/codecs/i386/msaud.cab
19_FileName=C:\WINDOWS\Downloaded Program Files\msaud.inf
19_FileSize=1237
19_FileDate=1999-11-18 13:48:40
19_FileVersion=
19_FileCompanyName=
20_HKey=HKEY_LOCAL_MACHINE
20_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{05C1004E-2596-48E5-8E26-39362985EEB9}
20_Download=http://p3p.sogou.com/MMCShell.cab
20_FileName=C:\WINDOWS\Downloaded Program Files\MMCShell.inf
20_FileSize=227
20_FileDate=2006-11-13 19:02:20
20_FileVersion=
20_FileCompanyName=
21_HKey=HKEY_LOCAL_MACHINE
21_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{33564D57-0000-0010-8000-00AA00389B71}
21_Download=http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
21_FileName=C:\WINDOWS\Downloaded Program Files\WMV9VCM.inf
21_FileSize=1689
21_FileDate=2003-6-30 22:41:04
21_FileVersion=
21_FileCompanyName=
22_HKey=HKEY_LOCAL_MACHINE
22_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{3E68E405-C6DE-49FF-83AE-41EE9F4C36CE}
22_Download=http://office.microsoft.com/officeupdate/content/opuc2.cab
22_FileName=C:\WINDOWS\Downloaded Program Files\opuc.inf
22_FileSize=227
22_FileDate=2005-1-17 17:09:34
22_FileVersion=
22_FileCompanyName=
23_HKey=HKEY_LOCAL_MACHINE
23_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{5ED80217-570B-4DA9-BF44-BE107C0EC166}
23_Download=http://scan.safety.live.com/resource/download/scanner/wlscbase5059.cab
23_FileName=C:\WINDOWS\Downloaded Program Files\wlscBase.inf
23_FileSize=322
23_FileDate=2006-5-17 16:52:26
23_FileVersion=
23_FileCompanyName=
24_HKey=HKEY_LOCAL_MACHINE
24_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{6414512B-B978-451D-A0D8-FCFDF33E833C}
24_Download=http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1123902651512
24_FileName=C:\WINDOWS\Downloaded Program Files\wuweb.inf
24_FileSize=291
24_FileDate=2005-5-26 4:19:32
24_FileVersion=
24_FileCompanyName=
25_HKey=HKEY_LOCAL_MACHINE
25_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
25_Download=http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1143901642464
25_FileName=C:\WINDOWS\Downloaded Program Files\muweb.inf
25_FileSize=293
25_FileDate=2005-5-26 4:19:32
25_FileVersion=
25_FileCompanyName=
26_HKey=HKEY_LOCAL_MACHINE
26_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{A96C48EA-AA88-4BBD-B58C-7B41146A6EAC}
26_Download=http://qz-photo.qq.com/qzone3/QzoneMediaTools.cab
26_FileName=C:\WINDOWS\Downloaded Program Files\install.inf
26_FileSize=252
26_FileDate=2006-3-14 12:01:26
26_FileVersion=
26_FileCompanyName=
27_HKey=HKEY_LOCAL_MACHINE
27_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{C661F36D-DF85-4EF4-83C7-E107B83D04B1}
27_Download=http://dl_dir.qq.com/3dshow/3DShowVM.cab
27_FileName=C:\WINDOWS\Downloaded Program Files\3DShowVM.inf
27_FileSize=573
27_FileDate=2006-3-13 14:28:36
27_FileVersion=
27_FileCompanyName=
28_HKey=HKEY_LOCAL_MACHINE
28_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D27CDB6E-AE6D-11CF-96B8-444553540000}
28_Download=http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
28_FileName=C:\WINDOWS\Downloaded Program Files\swflash.inf
28_FileSize=5019
28_FileDate=2006-11-9 14:36:12
28_FileVersion=
28_FileCompanyName=
29_HKey=HKEY_LOCAL_MACHINE
29_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E4CF9B52-A94E-4A27-AD90-904A81D0643A}
29_Download=http://my.paipai.com/activex/qpic.cab
29_FileName=C:\WINDOWS\Downloaded Program Files\setup.inf
29_FileSize=703
29_FileDate=2006-4-13 11:54:24
29_FileVersion=
29_FileCompanyName=
30_HKey=HKEY_LOCAL_MACHINE
30_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E787FD25-8D7C-4693-AE67-9406BC6E22DF}
30_Download=https://www.tenpay.com/download/qqedit.cab
30_FileName=C:\WINDOWS\Downloaded Program Files\qqedit.inf
30_FileSize=677
30_FileDate=2006-3-27 15:00:16
30_FileVersion=
30_FileCompanyName=
31_HKey=HKEY_LOCAL_MACHINE
31_Key=SOFTWARE\Microsoft\Code Store Database\Distribution Units\{F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6}
31_Download=http://chat.msn.com/controls/msnchat45.cab
31_FileName=C:\WINDOWS\Downloaded Program Files\MsnChat45.inf
31_FileSize=278
31_FileDate=2003-10-24 14:01:18
31_FileVersion=
31_FileCompanyName=
32_HKey=HKEY_LOCAL_MACHINE
32_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4073487D-C1A3-4E29-8694-2C5C512A0F17}
32_NameServer=
32_Clsid=
32_FileName=
32_FileVersion=
32_FileCompanyName=
33_HKey=HKEY_LOCAL_MACHINE
33_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{6B663354-07E4-4C72-8BD9-0232559E75CE}
33_NameServer=
33_Clsid=
33_FileName=
33_FileVersion=
33_FileCompanyName=
34_HKey=HKEY_LOCAL_MACHINE
34_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{8AFE3A48-41D7-4D00-A280-BAF3123B550E}
34_NameServer=
34_Clsid=
34_FileName=
34_FileVersion=
34_FileCompanyName=
35_HKey=HKEY_LOCAL_MACHINE
35_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{8B4EB6F3-A0B2-45C4-A82C-901BD11F724A}
35_NameServer=
35_Clsid=
35_FileName=
35_FileVersion=
35_FileCompanyName=
36_HKey=HKEY_LOCAL_MACHINE
36_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{C7A2C71E-F9B4-4B3A-A4C7-C3E30101FAFF}
36_NameServer=69.50.176.158,85.255.112.8
36_Clsid=
36_FileName=
36_FileVersion=
36_FileCompanyName=
37_HKey=HKEY_LOCAL_MACHINE
37_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{CD69791D-C1AA-46FB-A278-FD94B332B588}
37_NameServer=
37_Clsid=
37_FileName=
37_FileVersion=
37_FileCompanyName=
38_HKey=HKEY_LOCAL_MACHINE
38_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{D6355BD8-7EC2-4B0F-BE81-52B2B311CBD5}
38_NameServer=
38_Clsid=_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð
gototop
 

38_FileName=
38_FileVersion=
38_FileCompanyName=
39_HKey=HKEY_LOCAL_MACHINE
39_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{D9D589F7-8C3D-48DA-B40E-8084AE2D9462}
39_NameServer=
39_Clsid=
39_FileName=
39_FileVersion=
39_FileCompanyName=
40_HKey=HKEY_LOCAL_MACHINE
40_Key=SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{ED75E358-8A05-44D3-9362-422B94316400}
40_NameServer=61.144.56.100 202.96.128.86
40_Clsid=
40_FileName=
40_FileVersion=
40_FileCompanyName=
Max=40

[Link]
1_HKey=HKEY_CLASSES_ROOT
1_Key=.exe
1_Name=
1_Value=exefile
1_HKeyLink=HKEY_CLASSES_ROOT
1_KeyLink=exefile\shell\open\command
1_NameLink=
1_ValueLink="%1" %*
2_HKey=HKEY_CLASSES_ROOT
2_Key=.com
2_Name=
2_Value=comfile
2_HKeyLink=HKEY_CLASSES_ROOT
2_KeyLink=comfile\shell\open\command
2_NameLink=
2_ValueLink="%1" %*
3_HKey=HKEY_CLASSES_ROOT
3_Key=.lnk
3_Name=
3_Value=lnkfile
3_HKeyLink=HKEY_CLASSES_ROOT
3_KeyLink=lnkfile\CLSID
3_NameLink=
3_ValueLink={00021401-0000-0000-C000-000000000046}
4_HKey=HKEY_CLASSES_ROOT
4_Key=.txt
4_Name=
4_Value=txtfile
4_HKeyLink=HKEY_CLASSES_ROOT
4_KeyLink=txtfile\shell\open\command
4_NameLink=
4_ValueLink=%SystemRoot%\system32\NOTEPAD.EXE %1
4_FileSizeLink=66048
4_FileDateLink=2002-10-7 12:00:00
4_FileVersionLink=5.1.2600.0
4_FileCompanyNameLink=Microsoft Corporation
5_HKey=HKEY_CLASSES_ROOT
5_Key=.htm
5_Name=
5_Value=htmlfile
5_HKeyLink=HKEY_CLASSES_ROOT
5_KeyLink=htmlfile\shell\open\command
5_NameLink=
5_ValueLink="C:\Program Files\Internet Explorer\iexplore.exe" -nohome
5_FileSizeLink=91136
5_FileDateLink=2002-10-7 20:00:00
5_FileVersionLink=6.0.2800.1106
5_FileCompanyNameLink=Microsoft Corporation
6_HKey=HKEY_CLASSES_ROOT
6_Key=.html
6_Name=
6_Value=htmlfile
6_HKeyLink=HKEY_CLASSES_ROOT
6_KeyLink=htmlfile\shell\open\command
6_NameLink=
6_ValueLink="C:\Program Files\Internet Explorer\iexplore.exe" -nohome
6_FileSizeLink=91136
6_FileDateLink=2002-10-7 20:00:00
6_FileVersionLink=6.0.2800.1106
6_FileCompanyNameLink=Microsoft Corporation
7_HKey=HKEY_CLASSES_ROOT
7_Key=.url
7_Name=
7_Value=InternetShortcut
7_HKeyLink=HKEY_CLASSES_ROOT
7_KeyLink=InternetShortcut\shell\open\command
7_NameLink=
7_ValueLink=rundll32.exe shdocvw.dll,OpenURL %l
8_HKey=HKEY_CLASSES_ROOT
8_Key=PROTOCOLS\Filter\text/html
8_Name=CLSID
8_Value=
9_HKey=HKEY_CLASSES_ROOT
9_Key=PROTOCOLS\Filter\text/plain
9_Name=CLSID
9_Value=
10_HKey=HKEY_LOCAL_MACHINE
10_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix
10_Name=
10_Value=http://
11_HKey=HKEY_LOCAL_MACHINE
11_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes
11_Name=www
11_Value=http://
Max=11

[Notify]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\axdebugl
1_FileName=axdebugl.dll
1_FileVersion=
1_FileCompanyName=
Max=1

[Shdoclc]
1_FileSize=548864
1_FileDate=2002-10-7 12:00:00
1_FileVersion=6.0.2600.0
1_FileCompanyName=Microsoft Corporation
Max=1

[AppInit_DLLs]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
1_Name=AppInit_DLLs
1_Value=
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
2_Name=Userinit
2_Value=C:\WINDOWS\System32\userinit.exe,
2_FileSize=20992
2_FileDate=2002-10-7 12:00:00
3_HKey=HKEY_LOCAL_MACHINE
3_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
3_Name=Shell
3_Value=Explorer.exe
4_HKey=HKEY_LOCAL_MACHINE
4_Key=SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
4_Name=System
3_Value=
Max=4_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð
gototop
 

[WinSock2NameSpace]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001
1_Name=DisplayString
1_Value=Tcpip
1_Enabled=1
1_LibraryPath=%SystemRoot%\System32\mswsock.dll
1_FileSize=228352
1_FileDate=2002-10-7 12:00:00
1_FileVersion=5.1.2600.0
1_FileCompanyName=Microsoft Corporation
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002
2_Name=DisplayString
2_Value=NTDS
2_Enabled=1
2_LibraryPath=%SystemRoot%\System32\winrnr.dll
2_FileSize=14848
2_FileDate=2002-10-7 12:00:00
2_FileVersion=5.1.2600.0
2_FileCompanyName=Microsoft Corporation
3_HKey=HKEY_LOCAL_MACHINE
3_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003
3_Name=DisplayString
3_Value=网络位置知晓 (NLA) 名称空间
3_Enabled=1
3_LibraryPath=%SystemRoot%\System32\mswsock.dll
3_FileSize=228352
3_FileDate=2002-10-7 12:00:00
3_FileVersion=5.1.2600.0
3_FileCompanyName=Microsoft Corporation
Max=3

[WinSock2Protocol]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001
1_Name=PackedCatalogItem
1_FileName=%SystemRoot%\system32\mswsock.dll
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002
2_Name=PackedCatalogItem
2_FileName=%SystemRoot%\system32\mswsock.dll
3_HKey=HKEY_LOCAL_MACHINE
3_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003
3_Name=PackedCatalogItem
3_FileName=%SystemRoot%\system32\mswsock.dll
4_HKey=HKEY_LOCAL_MACHINE
4_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004
4_Name=PackedCatalogItem
4_FileName=%SystemRoot%\system32\rsvpsp.dll
5_HKey=HKEY_LOCAL_MACHINE
5_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005
5_Name=PackedCatalogItem
5_FileName=%SystemRoot%\system32\rsvpsp.dll
6_HKey=HKEY_LOCAL_MACHINE
6_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006
6_Name=PackedCatalogItem
6_FileName=%SystemRoot%\system32\mswsock.dll
7_HKey=HKEY_LOCAL_MACHINE
7_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007
7_Name=PackedCatalogItem
7_FileName=%SystemRoot%\system32\mswsock.dll
8_HKey=HKEY_LOCAL_MACHINE
8_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008
8_Name=PackedCatalogItem
8_FileName=%SystemRoot%\system32\mswsock.dll
9_HKey=HKEY_LOCAL_MACHINE
9_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009
9_Name=PackedCatalogItem
9_FileName=%SystemRoot%\system32\mswsock.dll
10_HKey=HKEY_LOCAL_MACHINE
10_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010
10_Name=PackedCatalogItem
10_FileName=%SystemRoot%\system32\mswsock.dll
11_HKey=HKEY_LOCAL_MACHINE
11_Key=SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011
11_Name=PackedCatalogItem
11_FileName=%SystemRoot%\system32\mswsock.dll
Max=11

[WinSock2Winsock]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=System\CurrentControlSet\Services\Winsock2\Winsock
1_Name=PathName
1_Value=
1_Found=0
Max=1
_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð
gototop
 

[WOW]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SYSTEM\CurrentControlSet\Control\WOW
1_Name=cmdline
1_Value=%SystemRoot%\system32\ntvdm.exe -o
1_Filename=C:\WINDOWS\SYSTEM32\NTVDM.EXE
1_FileSize=393216
1_FileDate=2002-10-7 12:00:00
1_FileVersion=5.1.2600.1106
1_FileCompanyName=Microsoft Corporation
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SYSTEM\CurrentControlSet\Control\WOW
2_Name=wowcmdline
2_Value=%SystemRoot%\system32\ntvdm.exe -a %SystemRoot%\system32\krnl386
2_Filename=C:\WINDOWS\SYSTEM32\NTVDM.EXE
2_FileSize=393216
2_FileDate=2002-10-7 12:00:00
2_FileVersion=5.1.2600.1106
2_FileCompanyName=Microsoft Corporation
Max=2

[ShellExecuteHooks]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
1_Name={AEB6717E-7E19-11d0-97EE-00C04FD91972}
1_ClsidName=URL 执行挂钩
1_FileName=C:\WINDOWS\System32\shell32.dll
1_FileSize=8240640
1_FileDate=2003-6-12 4:48:44
Max=1

[ShellServiceObjectDelayLoad]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
1_Name=PostBootReminder
1_Value={7849596a-48ea-486e-8937-a2a3009f31a9}
1_ClsidName=PostBootReminder 对象
1_FileName=%SystemRoot%\system32\SHELL32.dll
1_FileSize=8240640
1_FileDate=2003-6-12 4:48:44
1_FileVersion=6.0.2800.1233
1_FileCompanyName=Microsoft Corporation
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
2_Name=CDBurn
2_Value={fbeb8a05-beee-4442-804e-409d6c4515e9}
2_ClsidName=烧 CD 的 ShellFolder
2_FileName=%SystemRoot%\system32\SHELL32.dll
2_FileSize=8240640
2_FileDate=2003-6-12 4:48:44
2_FileVersion=6.0.2800.1233
2_FileCompanyName=Microsoft Corporation
3_HKey=HKEY_LOCAL_MACHINE
3_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
3_Name=WebCheck
3_Value={E6FB5E20-DE35-11CF-9C87-00AA005127ED}
3_ClsidName=WebCheck
3_FileName=%SystemRoot%\System32\webcheck.dll
3_FileSize=247296
3_FileDate=2002-10-7 12:00:00
3_FileVersion=6.0.2800.1106
3_FileCompanyName=Microsoft Corporation
4_HKey=HKEY_LOCAL_MACHINE
4_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
4_Name=SysTray
4_Value={35CEC8A3-2BE6-11D2-8773-92E220524153}
4_ClsidName=SysTray
4_FileName=C:\WINDOWS\System32\stobject.dll
4_FileSize=117248
4_FileDate=2002-10-7 12:00:00
4_FileVersion=5.1.2600.1106
4_FileCompanyName=Microsoft Corporation
5_HKey=HKEY_LOCAL_MACHINE
5_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
5_Name=SysTrays
5_Value={590498A3-4131-4D8F-BA4B-36791A9803B1}
5_ClsidName=
5_FileName=C:\WINDOWS\System32\DLMain.dll
5_FileVersion=
5_FileCompanyName=
6_HKey=HKEY_LOCAL_MACHINE
6_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
6_Name=DLMon
6_Value={590498A3-4131-4D8F-BA4B-36791A0803B1}
6_ClsidName=
6_FileName=C:\WINDOWS\System32\DLMain.dll
6_FileVersion=
6_FileCompanyName=
Max=6

[SharedTaskScheduler]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler
1_Name={438755C2-A8BA-11D1-B96B-00A0C90312E1}
1_Value=Browseui 预加载程序
1_FileName=%SystemRoot%\System32\browseui.dll
1_FileSize=1026048
1_FileDate=2004-7-7 18:57:48
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler
2_Name={8C7461EF-2B13-11d2-BE35-3078302C2030}
2_Value=组件类别缓存程序
2_FileName=%SystemRoot%\System32\browseui.dll
2_FileSize=1026048
2_FileDate=2004-7-7 18:57:48
Max=2

[ProtocolDefaults]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults
1_Name=http
1_Value=3
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults
2_Name=https
2_Value=3
3_HKey=HKEY_LOCAL_MACHINE
3_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults
3_Name=ftp
3_Value=3
4_HKey=HKEY_LOCAL_MACHINE
4_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults
4_Name=file
4_Value=3
5_HKey=HKEY_LOCAL_MACHINE
5_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults
5_Name=@ivt
5_Value=1
6_HKey=HKEY_LOCAL_MACHINE
6_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults
6_Name=shell
6_Value=0
Max=6

[BootExecute]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SYSTEM\CurrentControlSet\Control\Session Manager
1_Name=BootExecute
1_Value=autocheck autochk *
Max=1

[Startup]
1_LnkFile=C:\Documents and Settings\ALLUSER\「开始」菜单\程序\启动\腾讯QQ.lnk
1_ExeFile=腾讯QQ
Max=1

[AutoRun]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=Software\Microsoft\Windows\CurrentVersion\Run
1_Name=RavTask
1_Value="c:\program files\rising\rav\ravtask.exe" -system
1_FileSize=114688
1_FileDate=2006-12-9 10:53:38
1_FileVersion=19.0.0.5
1_FileCompanyName=Beijing Rising Technology Co., Ltd.
2_HKey=HKEY_LOCAL_MACHINE
2_Key=Software\Microsoft\Windows\CurrentVersion\Run
2_Name=runeip
2_Value=c:\program files\rising\kakatoolbar\runiep.exe
2_FileSize=86016
2_FileDate=2006-12-14 5:09:10
2_FileVersion=1.0.1.3
2_FileCompanyName=Beijing Rising Technology Co., Ltd.
3_HKey=HKEY_LOCAL_MACHINE
3_Key=Software\Microsoft\Windows\CurrentVersion\RunOnce
3_Name=KKDelay
3_Value=; c:\program files\rising\kakatoolbar\runonce.exe
3_FileSize=61440
3_FileDate=2006-11-2 17:14:20
3_FileVersion=19.0.0.2
3_FileCompanyName=Beijing Rising Technology Co., Ltd.
4_HKey=HKEY_LOCAL_MACHINE
4_Key=Software\Microsoft\Windows NT\CurrentVersion\Windows
4_Name=load
4_Value=
5_HKey=HKEY_LOCAL_MACHINE
5_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run
5_Name=run
5_Value=
6_HKey=HKEY_CURRENT_USER
6_Key=Software\Microsoft\Windows\CurrentVersion\Run
6_Name=ctfmon.exe
6_Value=c:\windows\system32\ctfmon.exe
6_FileSize=13312
6_FileDate=2002-10-7 12:00:00
6_FileVersion=5.1.2600.1106
6_FileCompanyName=Microsoft Corporation
7_HKey=HKEY_CURRENT_USER
7_Key=Software\Microsoft\Windows NT\CurrentVersion\Windows
7_Name=load
7_Value=
8_HKey=HKEY_CURRENT_USER
8_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run
8_Name=run
8_Value=
Max=8_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð
gototop
 

[ModuleUsage]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/AutoLive.dll
1_Name=.Owner
1_Value={7CA83CF1-3AEA-42D0-A4E3-1594FC6E48B2}
1_Clsid=
1_FileName=C:\WINDOWS\Downloaded Program Files\AutoLive.dll
1_FileVersion=
1_FileCompanyName=
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/checkup2.dll
2_Name=.Owner
2_Value={4EA20CD0-BF89-4666-9DB1-B5410D27DA54}
2_Clsid=
2_FileName=C:\WINDOWS\Downloaded Program Files\checkup2.dll
2_FileVersion=
2_FileCompanyName=
3_HKey=HKEY_LOCAL_MACHINE
3_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/cns02.dat
3_Name=.Owner
3_Value={B83FC273-3522-4CC6-92EC-75CC86678DA4}
3_Clsid=
3_FileName=C:\WINDOWS\Downloaded Program Files\cns02.dat
3_FileVersion=
3_FileCompanyName=
4_HKey=HKEY_LOCAL_MACHINE
4_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/CnsMin.dll
4_Name=.Owner
4_Value={B83FC273-3522-4CC6-92EC-75CC86678DA4}
4_Clsid=
4_FileName=C:\WINDOWS\Downloaded Program Files\CnsMin.dll
4_FileVersion=
4_FileCompanyName=
5_HKey=HKEY_LOCAL_MACHINE
5_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/messengerstatsclient.dll
5_Name=.Owner
5_Value={8E0D4DE5-3180-4024-A327-4DFAD1796A8D}
5_Clsid=MessengerStatsClient Class
5_FileName=C:\WINDOWS\Downloaded Program Files\messengerstatsclient.dll
5_FileSize=160864
5_FileDate=2003-5-29 15:00:20
5_FileVersion=7.1.9502.1
5_FileCompanyName=Microsoft Corporation
6_HKey=HKEY_LOCAL_MACHINE
6_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/msgrchkr.dll
6_Name=.Owner
6_Value={00B71CFB-6864-4346-A978-C0A14556272C}
6_Clsid=Checkers Class
6_FileName=C:\WINDOWS\Downloaded Program Files\msgrchkr.dll
6_FileSize=77408
6_FileDate=2003-5-29 15:00:18
6_FileVersion=7.1.9502.1
6_FileCompanyName=Microsoft Corporation
7_HKey=HKEY_LOCAL_MACHINE
7_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/MSNChat45.ocx
7_Name=.Owner
7_Value={F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6}
7_Clsid=MSN Chat Control 4.5
7_FileName=C:\WINDOWS\Downloaded Program Files\MSNChat45.ocx
7_FileSize=510552
7_FileDate=2003-10-27 11:35:44
7_FileVersion=9.2.310.2401
7_FileCompanyName=Microsoft Corporation
8_HKey=HKEY_LOCAL_MACHINE
8_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/MsnPUpld.dll
8_Name=.Owner
8_Value={4F1E5B1A-2A80-42CA-8532-2D05CB959537}
8_Clsid=MSN Photo Upload Tool
8_FileName=C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll
8_FileSize=372736
8_FileDate=2004-10-8 16:01:22
8_FileVersion=10.0.910.0
8_FileCompanyName=Microsoft? Corporation
9_HKey=HKEY_LOCAL_MACHINE
9_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/PURen-us.dll
9_Name=.Owner
9_Value={4F1E5B1A-2A80-42CA-8532-2D05CB959537}
9_Clsid=MSN Photo Upload Tool
9_FileName=C:\WINDOWS\Downloaded Program Files\PURen-us.dll
9_FileSize=117088
9_FileDate=2002-6-19 14:11:22
9_FileVersion=5.0.1730.0
9_FileCompanyName=Microsoft? Corporation
10_HKey=HKEY_LOCAL_MACHINE
10_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/solitaireshowdown.dll
10_Name=.Owner
10_Value={F6BF0D00-0B2A-4A75-BF7B-F385591623AF}
10_Clsid=Solitaire Showdown Class
10_FileName=C:\WINDOWS\Downloaded Program Files\solitaireshowdown.dll
10_FileSize=86112
10_FileDate=2003-5-29 15:00:20
10_FileVersion=7.1.9502.1
10_FileCompanyName=Microsoft Corporation
11_HKey=HKEY_LOCAL_MACHINE
11_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/wlscBase.dll
11_Name=.Owner
11_Value={5ED80217-570B-4DA9-BF44-BE107C0EC166}
11_Clsid=Windows Live Safety Center Base Module
11_FileName=C:\WINDOWS\Downloaded Program Files\wlscBase.dll
11_FileSize=419128
11_FileDate=2006-5-17 16:49:32
11_FileVersion=0.801.5059.1
11_FileCompanyName=Microsoft Corporation
12_HKey=HKEY_LOCAL_MACHINE
12_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/opuc.dll
12_Name=.Owner
12_Value={3E68E405-C6DE-49FF-83AE-41EE9F4C36CE}
12_Clsid=Office Update Installation Engine
12_FileName=C:\WINDOWS\opuc.dll
12_FileSize=326656
12_FileDate=2005-3-22 15:56:36
12_FileVersion=11.0.6551.0
12_FileCompanyName=Microsoft Corporation
13_HKey=HKEY_LOCAL_MACHINE
13_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/3DShowVM.ocx
13_Name=.Owner
13_Value={C661F36D-DF85-4EF4-83C7-E107B83D04B1}
13_Clsid=WebActivater Control
13_FileName=C:\WINDOWS\System32\3DShowVM.ocx
13_FileSize=319488
13_FileDate=2006-3-13 14:00:38
13_FileVersion=1.0.200.50
13_FileCompanyName=QQ
14_HKey=HKEY_LOCAL_MACHINE
14_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/mfc42.dll
14_Name=.Owner
14_Value=Unknown Owner
14_Clsid=
14_FileName=C:\WINDOWS\System32\mfc42.dll
14_FileSize=995383
14_FileDate=2002-10-7 12:00:00
14_FileVersion=6.0.8665.0
14_FileCompanyName=Microsoft Corporation
15_HKey=HKEY_LOCAL_MACHINE
15_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/msvcp60.dll
15_Name=.Owner
15_Value=Unknown Owner
15_Clsid=
15_FileName=C:\WINDOWS\System32\msvcp60.dll
15_FileSize=401462
15_FileDate=2002-10-7 12:00:00
15_FileVersion=6.0.8972.0
15_FileCompanyName=Microsoft Corporation
16_HKey=HKEY_LOCAL_MACHINE
16_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/msvcrt.dll
16_Name=.Owner
16_Value=Unknown Owner
16_Clsid=
16_FileName=C:\WINDOWS\System32\msvcrt.dll
16_FileSize=323072
16_FileDate=2002-10-7 12:00:00
16_FileVersion=7.0.2600.1106
16_FileCompanyName=Microsoft Corporation
17_HKey=HKEY_LOCAL_MACHINE
17_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/muweb.dll
17_Name=.Owner
17_Value={6E32070A-766D-4EE6-879C-DC1FA91D2FC3}
17_Clsid=MUWebControl Class
17_FileName=C:\WINDOWS\System32\muweb.dll
17_FileSize=178408
17_FileDate=2005-5-26 4:19:32
17_FileVersion=5.8.0.2469
17_FileCompanyName=Microsoft Corporation
18_HKey=HKEY_LOCAL_MACHINE
18_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/olepro32.dll
18_Name=.Owner
18_Value=Unknown Owner
18_Clsid=
18_FileName=C:\WINDOWS\System32\olepro32.dll
18_FileSize=106496
18_FileDate=2002-10-7 12:00:00
18_FileVersion=5.0.5014.0
18_FileCompanyName=Microsoft Corporation
19_HKey=HKEY_LOCAL_MACHINE
19_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/WebActivater.ocx
19_Name=.Owner
19_Value={3D8F74EE-8692-4F8F-B8D2-7522E732519E}
19_Clsid=WebActivater Control
19_FileName=C:\WINDOWS\System32\WebActivater.ocx
19_FileSize=266240
19_FileDate=2004-7-23 17:00:20
19_FileVersion=1.0.0.1
19_FileCompanyName=QQ
20_HKey=HKEY_LOCAL_MACHINE
20_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/wuweb.dll
20_Name=.Owner
20_Value={6414512B-B978-451D-A0D8-FCFDF33E833C}
20_Clsid=WUWebControl Class
20_FileName=C:\WINDOWS\System32\wuweb.dll
20_FileSize=173536
20_FileDate=2005-5-26 4:19:32
20_FileVersion=5.8.0.2469
20_FileCompanyName=Microsoft Corporation
21_HKey=HKEY_LOCAL_MACHINE
21_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\F:/StormPlayer/Sogou PXP/MMCShell.dll
21_Name=.Owner
21_Value=Unknown Owner
21_Clsid=
21_FileName=F:\StormPlayer\Sogou PXP\MMCShell.dll
21_FileSize=286720
21_FileDate=2006-11-14 10:52:12
21_FileVersion=2.0.0.68
21_FileCompanyName=Sohu.com Inc.
22_HKey=HKEY_LOCAL_MACHINE
22_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\G:/Program Files/Tencent/QQ/Qzone/Qzone Media Tools.ocx
22_Name=.Owner
22_Value=Unknown Owner
22_Clsid=
22_FileName=G:\Program Files\Tencent\QQ\Qzone\Qzone Media Tools.ocx
22_FileVersion=
22_FileCompanyName=
Max=22_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð
gototop
 

[Process]
1_FileName=C:\WINDOWS\SYSTEM32\SMSS.EXE
1_FileSize=45568
1_FileDate=2002-10-7 12:00:00
1_FileVersion=5.1.2600.1106
1_FileCompanyName=Microsoft Corporation
2_FileName=C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2_FileSize=501760
2_FileDate=2002-10-7 12:00:00
2_FileVersion=5.1.2600.1106
2_FileCompanyName=Microsoft Corporation
3_FileName=C:\WINDOWS\SYSTEM32\SERVICES.EXE
3_FileSize=101376
3_FileDate=2002-10-7 12:00:00
3_FileVersion=5.1.2600.0
3_FileCompanyName=Microsoft Corporation
4_FileName=C:\WINDOWS\SYSTEM32\LSASS.EXE
4_FileSize=11776
4_FileDate=2002-10-7 12:00:00
4_FileVersion=5.1.2600.1106
4_FileCompanyName=Microsoft Corporation
5_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
5_FileSize=12800
5_FileDate=2002-10-7 12:00:00
5_FileVersion=5.1.2600.0
5_FileCompanyName=Microsoft Corporation
6_FileName=C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
6_FileSize=110592
6_FileDate=2006-12-9 10:53:38
6_FileVersion=18.0.0.3
6_FileCompanyName=Beijing Rising Technology Co., Ltd.
7_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
7_FileSize=12800
7_FileDate=2002-10-7 12:00:00
7_FileVersion=5.1.2600.0
7_FileCompanyName=Microsoft Corporation
8_FileName=C:\PROGRAM FILES\RISING\RAV\RAVMOND.EXE
8_FileSize=278528
8_FileDate=2006-12-9 10:53:28
8_FileVersion=19.0.0.39
8_FileCompanyName=Beijing Rising Technology Co., Ltd.
9_FileName=C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
9_FileSize=53248
9_FileDate=2005-6-11 7:55:46
9_FileVersion=5.1.2600.1699
9_FileCompanyName=Microsoft Corporation
10_FileName=C:\WINDOWS\EXPLORER.EXE
10_FileSize=948736
10_FileDate=2002-10-7 12:00:00
10_FileVersion=6.0.2800.1106
10_FileCompanyName=Microsoft Corporation
11_FileName=C:\PROGRAM FILES\RISING\RAV\RAVSTUB.EXE
11_FileSize=90112
11_FileDate=2006-12-9 10:53:28
11_FileVersion=19.0.0.4
11_FileCompanyName=Beijing Rising Technology Co., Ltd.
12_FileName=C:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE
12_FileSize=114688
12_FileDate=2006-12-9 10:53:38
12_FileVersion=19.0.0.5
12_FileCompanyName=Beijing Rising Technology Co., Ltd.
13_FileName=C:\PROGRAM FILES\RISING\KAKATOOLBAR\RUNIEP.EXE
13_FileSize=86016
13_FileDate=2006-12-14 5:09:10
13_FileVersion=1.0.1.3
13_FileCompanyName=Beijing Rising Technology Co., Ltd.
14_FileName=C:\PROGRAM FILES\RISING\RAV\RAVMON.EXE
14_FileSize=622592
14_FileDate=2006-12-9 10:53:28
14_FileVersion=19.0.0.36
14_FileCompanyName=Beijing Rising Technology Co., Ltd.
15_FileName=C:\WINDOWS\SYSTEM32\CTFMON.EXE
15_FileSize=13312
15_FileDate=2002-10-7 12:00:00
15_FileVersion=5.1.2600.1106
15_FileCompanyName=Microsoft Corporation
16_FileName=C:\PROGRAM FILES\TTPLAYER\TTPLAYER.EXE
16_FileSize=866816
16_FileDate=2006-7-4 13:03:54
16_FileVersion=4.6.8.0
16_FileCompanyName=Alen Soft
17_FileName=C:\WINDOWS\SYSTEM32\RUNDLL32.EXE
17_FileSize=31744
17_FileDate=2002-10-7 12:00:00
17_FileVersion=5.1.2600.0
17_FileCompanyName=Microsoft Corporation
18_FileName=C:\WINDOWS\SYSTEM32\NVSVC32.EXE
18_FileSize=77824
18_FileDate=2003-7-28 15:19:00
18_FileVersion=6.14.10.4523
18_FileCompanyName=NVIDIA Corporation
19_FileName=F:\GGDSGS\RAM.EXE
19_FileSize=66048
19_FileDate=2005-8-26 10:00:04
19_FileVersion=1.9.0.4
19_FileCompanyName=jfzlnyf
20_FileName=C:\WINDOWS\SYSTEM32\CONIME.EXE
20_FileSize=24576
20_FileDate=2002-10-7 12:00:00
20_FileVersion=5.1.2600.1106
20_FileCompanyName=Microsoft Corporation
21_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
21_FileSize=12800
21_FileDate=2002-10-7 12:00:00
21_FileVersion=5.1.2600.0
21_FileCompanyName=Microsoft Corporation
22_FileName=C:\PROGRAM FILES\RISING\RAV\RSAGENT.EXE
22_FileSize=233472
22_FileDate=2006-12-9 10:53:28
22_FileVersion=19.0.0.9
22_FileCompanyName=Beijing Rising Technology Co., Ltd.
23_FileName=C:\WINDOWS\MSAGENT\AGENTSVR.EXE
23_FileSize=235008
23_FileDate=2002-10-7 12:00:00
23_FileVersion=2.0.0.3422
23_FileCompanyName=Microsoft Corporation
24_FileName=E:\THEWORLD 2.0\THEWORLD.EXE
24_FileSize=681472
24_FileDate=2006-11-28 12:33:54
24_FileVersion=2.0.0.8
24_FileCompanyName=Phoenix Studio
25_FileName=C:\PROGRAM FILES\SUPER RABBIT\MAGICSET\SRIEH.EXE
25_FileSize=1376256
25_FileDate=2006-12-10 14:33:18
25_FileVersion=7.93.0.0
25_FileCompanyName=Super Rabbit Soft
26_FileName=[SYSTEM PROCESS]
27_FileName=C:\WINDOWS\System32\CSRSS.EXE
27_FileSize=4096
27_FileDate=2002-10-7 12:00:00
27_FileVersion=5.1.2600.0
27_FileCompanyName=Microsoft Corporation
28_FileName=C:\WINDOWS\System32\ALG.EXE
28_FileSize=41984
28_FileDate=2002-10-7 12:00:00
28_FileVersion=5.1.2600.1106
28_FileCompanyName=Microsoft Corporation
29_FileName=C:\WINDOWS\System32\WDFMGR.EXE
29_FileSize=38912
29_FileDate=2005-1-28 1:36:00
29_FileVersion=5.2.3790.1230
29_FileCompanyName=Microsoft Corporation
Max=29

[Hosts]
HostsFile=C:\WINDOWS\System32\Drivers\Etc\Hosts
1_Host=127.0.0.1      localhost
Max=1

[Service]
1_ServiceName=6to4
1_DisplayName=6to4
1_Description=Offers IPv6 connectivity over an IPv4 network
1_Status=停止
1_StartType=自动
1_ServiceDll=C:\WINDOWS\SYSTEM32\6TO4SVC.DLL
1_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS

2_ServiceName=IDriverT
2_DisplayName=InstallDriver Table Manager
2_Description=Provides support for the Running Object Table for InstallShield Drivers
2_Status=停止
2_StartType=手动
2_ServiceDll=
2_ImagePath="C:\PROGRAM FILES\COMMON FILES\INSTALLSHIELD\DRIVER\1150\INTEL 32\IDRIVERT.EXE"

3_ServiceName=Macromedia Licensing Service
3_DisplayName=Macromedia Licensing Service
3_Description=Provides authentication services for Macromedia applications.
3_Status=停止
3_StartType=手动
3_ServiceDll=
3_ImagePath="C:\PROGRAM FILES\COMMON FILES\MACROMEDIA SHARED\SERVICE\MACROMEDIA LICENSING.EXE"

4_ServiceName=Mercha2
4_DisplayName=Network IPSEC Connections
4_Description=提供安全的网络和拨号连接服务,记录局域网和远程连接通讯的目标机器信息。
4_Status=已启动
4_StartType=自动
4_ServiceDll=
4_ImagePath=C:\WINDOWS\SYSTEM32\RUNDLL32.EXE C:\WINDOWS\SYSTEM32\WBEM\DLDVM.DLL,EXPORT 1087

5_ServiceName=NVSvc
5_DisplayName=NVIDIA Driver Helper Service
5_Description=Nvidia 驱动助手服务
5_Status=已启动
5_StartType=自动
5_ServiceDll=
5_ImagePath=C:\WINDOWS\SYSTEM32\NVSVC32.EXE

6_ServiceName=ose
6_DisplayName=Office Source Engine
6_Description=可保存用于更新和修复的安装文件,并且在下载安装程序更新和 Watson 错误报告时必须使用。
6_Status=停止
6_StartType=手动
6_ServiceDll=
6_ImagePath="C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\SOURCE ENGINE\OSE.EXE"

7_ServiceName=RsCCenter
7_DisplayName=Rising Process Communication Center
7_Description=
7_Status=已启动
7_StartType=自动
7_ServiceDll=
7_ImagePath="C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE"

8_ServiceName=RsRavMon
8_DisplayName=Rising RealTime Monitor
8_Description=
8_Status=已启动
8_StartType=自动
8_ServiceDll=
8_ImagePath="C:\PROGRAM FILES\RISING\RAV\RAVMOND.EXE"

9_ServiceName=Tech
9_DisplayName=Volume Optimization
9_Description=Windows 文件卷的优化服务,使得系统具有更快的文件卷访问和存取功能。如果停止服务,帮助和支持中心将不可用。
9_Status=已启动
9_StartType=自动
9_ServiceDll=C:\WINDOWS\SYSTEM32\WVEHR.DLL
9_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS

10_ServiceName=UMWdf
10_DisplayName=Windows User Mode Driver Framework
10_Description=启用 Windows 用户模式驱动程序。
10_Status=已启动
10_StartType=自动
10_ServiceDll=
10_ImagePath=C:\WINDOWS\SYSTEM32\WDFMGR.EXE

11_ServiceName=usnsvc
11_DisplayName=共享 USN 杂志阅读器服务
11_Description=Messenger 上安装的启用共享情况的服务
11_Status=停止
11_StartType=手动
11_ServiceDll=C:\PROGRAM FILES\MSN MESSENGER\USNSVC.DLL
11_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K USNSVC

12_ServiceName=usprserv
12_DisplayName=User Privilege Service
12_Description=
12_Status=停止
12_StartType=手动
12_ServiceDll=
12_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS

13_ServiceName=Windows NT Service32
13_DisplayName=Windows NT Service32
13_Description=Windows NT service for Windows NT/XP/2003 system
13_Status=停止
13_StartType=自动
13_ServiceDll=
13_ImagePath="C:\WINDOWS\SYSTEM32\RUNDLL32.EXE" "C:\WINDOWS\SYSTEM32\NTSERVICE32.DLL",START

14_ServiceName=WmdmPmSN
14_DisplayName=Portable Media Serial Number Service
14_Description=Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device.
14_Status=停止
14_StartType=已禁用
14_ServiceDll=C:\WINDOWS\SYSTEM32\MSPMSNSV.DLL
14_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS

Max=14

[END]
Max=1
兔子的在线检查

_íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð

附件附件:

您所在的用户组无法下载或查看附件

gototop
 

plese help me a _íÏéžIŽœúbbs.ikaka.com]ÂÙ3NÄÜnð
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT