[C:\WINDOWS\daemon.dll] [N/A, 3.47.0.0]
[C:\Program Files\D-Tools\PFCTOC.DLL] [Padus(R), Inc., 1, 0, 0, 12]
[C:\Program Files\D-Tools\Plugins\Images\bw5mount.dll] [N/A, 1.0.2.0]
[C:\Program Files\D-Tools\Plugins\Images\ccdmount.dll] [GENERIC, 1.02.0.0]
[C:\Program Files\D-Tools\Plugins\Images\mdsmount.dll] [GENERIC, 1.01.0.0]
[C:\Program Files\D-Tools\Plugins\Images\nrgmount.dll] [GENERIC, 1.02.0.0]
[C:\Program Files\D-Tools\Plugins\Images\pdimount.dll] [GENERIC, 1.01.0.0]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2192][C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe] [ATI Technologies, Inc., 6.14.10.5072]
[C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll] [ATI Technologies, Inc., 6.14.10.5072]
[C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.CHS] [ATI Technologies, Inc., 6.14.10.5072]
[C:\Program Files\ATI Technologies\ATI Control Panel\atipdxxx.dll] [ATI Technologies, Inc., 6.14.10.5072]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2200][C:\WINDOWS\SOUNDMAN.EXE] [Realtek Semiconductor Corp., 5.1.14]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2240][C:\Program Files\ASUSTeK\ASUSDVD\PDVDServ.exe] [Cyberlink Corp., 6.00.1027]
[C:\Program Files\ASUSTeK\ASUSDVD\CLRCEngine2.dll] [CyberLink Corp., 3.2.2021 ]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2376][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] [RealNetworks, Inc., 0.1.0.3510]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2412][C:\Program Files\TP-LINK\TWCU\TWCU.exe] [TP-LINK TECHNOLOGIES CO., LTD, 4.1.2.25]
[C:\WINDOWS\system32\wcapi.dll] [Atheros, 4.1.2.25]
[C:\WINDOWS\system32\athcfg11.dll] [Atheros, 4.1.2.25]
[C:\WINDOWS\system32\athcfg11Res.dll] [Atheros Communications, Inc., 4.1.2.25]
[C:\WINDOWS\system32\wgapi.dll] [TP-LINK TECHNOLOGIES CO., LTD, 4.1.2.25]
[C:\WINDOWS\system32\wgapiloc.dll] [TP-LINK, 4.1.2.25]
[C:\Program Files\TP-LINK\TWCU\TWCUloc.dll] [TP-LINK TECHNOLOGIES CO., LTD., 4.1.2.25]
[C:\Program Files\TP-LINK\TWCU\oemresloc.dll] [TP-LINK TECHNOLOGIES CO., LTD., 4.1.2.25]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2440][C:\PROGRA~1\SYMANT~1\SYMANT~1\vptray.exe] [Symantec Corporation, 8.1.0.821]
[C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\Cliproxy.dll] [Symantec Corporation, 8.1.0.821]
[C:\PROGRA~1\SYMANT~1\SYMANT~1\NAVNTUTL.DLL] [Symantec/Peter Norton Group, 1, 0, 0, 1]
[C:\Program Files\Symantec_Client_Security\Symantec AntiVirus\Cliscan.dll] [Symantec Corporation, 8.1.0.821]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2452][C:\WINDOWS\CameraFixer.exe] [, 1, 0, 0, 2]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2576][C:\WINDOWS\tsnpstd3.exe] [, 1, 1, 3, 1]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2636][C:\WINDOWS\vsnpstd3.exe] [, 1, 0, 2, 2]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2756][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 3028][C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe] [Google Inc., 1, 2, 908, 5008]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\res_zh-CN.dll] [Google Inc., 1, 2, 908, 5008]
[C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\swg.dll] [Google Inc., 1, 2, 908, 5008]
[PID: 2972][C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE] [Symantec Corporation, 1.80.19.0]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[C:\Program Files\Symantec\LiveUpdate\LuComServerPS.DLL] [Symantec Corporation, 1.80.19.0]
[C:\Program Files\Symantec\LiveUpdate\ProductRegCom.DLL] [Symantec Corporation, 1.80.19.0]
[PID: 3300][C:\WINDOWS\system32\wuauclt.exe] [Microsoft Corporation, 5.8.0.2469 built by: lab01_n(wmbla)]
[PID: 776][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[C:\WINDOWS\downlo~1\Vvxpq.dll] [Tencent, 4, 4, 1, 14]
[c:\program files\google\googletoolbar1.dll] [Google Inc., 4, 0, 1020, 3054]
[C:\PROGRA~1\baidu\bar\baidubar.dll] [Baidu.com, Inc., 2, 0, 2, 124]
[C:\Program Files\TENCENT\Adplus\SSAddr.dll] [Tencent, 4, 4, 1, 14]
[C:\Program Files\Tencent\QQ\QQIEHelper.dll] [深圳市腾讯计算机系统有限公司, 1, 1, 0, 5]
[C:\WINDOWS\system32\ssup.dll] [TENCENT, 4, 4, 1, 14]
[C:\WINDOWS\system32\macromed\flash\Flash.ocx] [Macromedia, Inc., 7,0,19,0]
[PID: 2348][C:\WINDOWS\system32\wuauclt.exe] [Microsoft Corporation, 5.8.0.2469 built by: lab01_n(wmbla)]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 2280][C:\Program Files\WinRAR\WinRAR.exe] [N/A, N/A]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
[PID: 1768][C:\DOCUME~1\广西松~1\LOCALS~1\Temp\Rar$EX00.656\SREng.EXE] [Smallfrogs Studio, 2.3.13.690]
[C:\WINDOWS\downlo~1\Uipmm.dll] [Tencent, 4, 4, 1, 14]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
==================================
API HOOK
N/A
==================================
[/CODE]