[PID: 1096][C:\Program Files\LANDesk\LDClient\LocalSch.EXE] [LANDesk Software Ltd., 8.6.0.160]
[C:\Program Files\LANDesk\LDClient\LTAPI.DLL] [LANDesk Software Ltd., 8.6.0.160]
[PID: 1080][C:\WINDOWS\system32\CBA\pds.exe] [LANDesk Software Ltd., 6.12.0.140 E]
[C:\WINDOWS\system32\PDS.DLL] [LANDesk Software Ltd., 6.12.0.140 E]
[C:\WINDOWS\system32\NTS.dll] [LANDesk Software Ltd., 6.12.0.140 E]
[C:\WINDOWS\system32\loc32vc0.dll] [Intel, 3, 0, 0, 2]
[PID: 1220][C:\Program Files\LANDesk\LDClient\tmcsvc.exe] [LANDesk Software Ltd., 8.6.0.160]
[C:\Program Files\LANDesk\LDClient\tmcclnt.dll] [LANDesk Software Ltd., 8.6.0.160]
[C:\Program Files\LANDesk\LDClient\lddwnld.DLL] [LANDesk Software Ltd., 8.6.0.160]
[C:\Program Files\LANDesk\LDClient\ldredirect.dll] [N/A, 8.6.0.160 ]
[C:\Program Files\LANDesk\LDClient\CHSTMCC.dll] [LANDesk Software Ltd., 8.6.0.159]
[PID: 1616][C:\PROGRA~1\LANDesk\LDClient\issuser.exe] [LANDesk Software, Ltd., 8.6.0.160]
[C:\PROGRA~1\LANDesk\LDClient\CHSiuser.dll] [LANDesk Software, Ltd., 8.6.0.159]
[C:\PROGRA~1\LANDesk\LDClient\ISSCLIP.DLL] [LANDesk Software, Ltd., 8.6.0.160]
[C:\PROGRA~1\LANDesk\LDClient\ISSFTCLT.DLL] [LANDesk Software, Ltd., 8.6.0.160]
[C:\PROGRA~1\LANDesk\LDClient\ISSUIFX.DLL] [LANDesk Software, Ltd., 8.6.0.160]
[C:\PROGRA~1\LANDesk\LDClient\irclog.dll] [LANDesk Software, Ltd., 8.6.0.160]
[PID: 1392][C:\Program Files\Network Associates\Common Framework\FrameworkService.exe] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\nailog.dll] [Network Associates, Inc., 3.1.2.272]
[C:\Program Files\Network Associates\Common Framework\naXML.dll] [Network Associates, Inc., 3.1.2.272]
[C:\Program Files\Network Associates\Common Framework\NaiSign.dll] [Network Associates, Inc., 3.1.0.197]
[C:\Program Files\Network Associates\Common Framework\naCmnLib.dll] [Network Associates, Inc., 3.1.2.272]
[C:\Program Files\Network Associates\Common Framework\applib.dll] [N/A, N/A]
[C:\Program Files\Network Associates\Common Framework\0804\AgentRes.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\Logging.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\InternetManager.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\naInet.dll] [Network Associates, Inc., 3.1.2.272]
[C:\Program Files\Network Associates\Common Framework\UserSpace.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\SecureFrameworkFactory.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\Management.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\naPolicyManager.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\ScriptSubSys.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\UpdateSubSys.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\Common Framework\Scheduler.dll] [Network Associates, Inc., 3.1.2.266]
[C:\WINDOWS\system32\SYNCOR11.DLL] [SoundMAX, 1.2.3]
[PID: 1916][C:\Program Files\Network Associates\VirusScan\Mcshield.exe] [Network Associates, Inc., 7.1.0.116]
[C:\Program Files\Network Associates\VirusScan\Res04\McShield.DLL] [Network Associates, Inc., 7.1.0.116]
[C:\Program Files\Network Associates\VirusScan\FTL.Dll] [Network Associates, Inc., 7.1.0.116]
[C:\Program Files\Network Associates\VirusScan\naiann.dll] [Network Associates, Inc., 7.1.0.116]
[C:\Program Files\Network Associates\VirusScan\NAEVENTU.DLL] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Network Associates\VirusScan\Res04\naEvtRes.dll] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Common Files\Network Associates\Engine\MCSCAN32.DLL] [McAfee, Inc., 5.1.00]
[PID: 1996][C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\SHUTIL.dll] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\FTL.dll] [Network Associates, Inc., 7.1.0.116]
[C:\Program Files\Network Associates\VirusScan\Res04\VsTskMgr.dll] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\Res04\Product.dll] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\NAKRNLU.DLL] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Network Associates\VirusScan\NAUTILU.DLL] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Network Associates\VirusScan\Res04\naUtlRes.dll] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Network Associates\VirusScan\NAEVENTU.DLL] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Network Associates\VirusScan\Res04\naEvtRes.dll] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Network Associates\VirusScan\Res04\Shutilrc.dll] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\MIDUtil.Dll] [Network Associates, Inc., 7.1.0.147]
[PID: 452][C:\Program Files\LANDesk\LDClient\softmon.exe] [LANDesk Software Ltd., 8.6.0.160]
[C:\Program Files\LANDesk\LDClient\CHSsftmn.dll] [LANDesk Software Ltd., 8.6.0.159]
[PID: 348][C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe] [Analog Devices, Inc., 3, 2, 6, 0]
[PID: 1924][C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe] [Network Associates, Inc., 3.1.2.266]
[C:\PROGRA~1\NETWOR~1\COMMON~1\nailog.dll] [Network Associates, Inc., 3.1.2.272]
[C:\PROGRA~1\NETWOR~1\COMMON~1\naCmnLib.dll] [Network Associates, Inc., 3.1.2.272]
[C:\PROGRA~1\NETWOR~1\COMMON~1\naXML.dll] [Network Associates, Inc., 3.1.2.272]
[C:\PROGRA~1\NETWOR~1\COMMON~1\NaiSign.dll] [Network Associates, Inc., 3.1.0.197]
[C:\PROGRA~1\NETWOR~1\COMMON~1\0804\AgentRes.dll] [Network Associates, Inc., 3.1.2.266]
[C:\Program Files\Network Associates\VirusScan\VsPlugin.dll] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\SHUTIL.dll] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\FTL.dll] [Network Associates, Inc., 7.1.0.116]
[C:\Program Files\Network Associates\VirusScan\Res04\Product.dll] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\Res04\Shutilrc.dll] [Network Associates, Inc., 7.1.0.187]
[C:\Program Files\Network Associates\VirusScan\NAKRNLU.DLL] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Network Associates\VirusScan\NAUTILU.DLL] [Network Associates, Inc., 7.1.0.289]
[C:\Program Files\Network Associates\VirusScan\Res04\naUtlRes.dll] [Network Associates, Inc., 7.1.0.289]
[PID: 1264][c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe] [Symantec Corporation, 2005.1.00.111]
[c:\Program Files\Common Files\Symantec Shared\Security Center\WSCHlpr.dll] [Symantec Corporation, 2005.1.00.111]
[c:\Program Files\Common Files\Symantec Shared\Security Center\sscnav.dll] [Symantec Corporation, 2005.1.00.111]
[c:\Program Files\Common Files\Symantec Shared\Security Center\sscnis7.dll] [Symantec Corporation, 2005.1.00.111]
[c:\Program Files\Common Files\Symantec Shared\Security Center\sscnis56.dll] [Symantec Corporation, 2005.1.00.111]
[PID: 2648][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\System32\SYNCOR11.DLL] [SoundMAX, 1.2.3]
[PID: 3772][C:\Lotus\Notes\NLNOTES.EXE] [N/A, N/A]
[C:\Lotus\Notes\nnotesws.dll] [Lotus Development Corporation, 4.0.0.0]
[C:\Lotus\Notes\ltssb01.dll] [N/A, N/A]
[C:\Lotus\Notes\nnotes.dll] [N/A, N/A]
[C:\Lotus\Notes\js32.dll] [N/A, N/A]
[C:\Lotus\Notes\NLSCCSTR.DLL] [N/A, N/A]
[C:\Lotus\Notes\LTOUIN22.dll] [Lotus Development Corporation., 2.2.0.8911]
[C:\Lotus\Notes\nplugins.dll] [N/A, N/A]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\Lotus\Notes\NSTRINGS.DLL] [N/A, N/A]
[c:\lotus\notes\nicnv.dll] [N/A, N/A]
[C:\Lotus\Notes\namhook.DLL] [N/A, N/A]
[C:\Lotus\Notes\nTCP.DLL] [N/A, N/A]
[C:\Lotus\Notes\nNETBIOS.DLL] [N/A, N/A]
[C:\Lotus\Notes\nXPC.DLL] [N/A, N/A]
[C:\Lotus\Notes\nNTCP.DLL] [N/A, N/A]
[C:\Lotus\Notes\nlsxbe.DLL] [N/A, N/A]
[C:\Lotus\Notes\nDBnotes.DLL] [N/A, N/A]
[C:\Lotus\Notes\nLsxODBC.DLL] [N/A, N/A]
[C:\WINDOWS\system32\SYNCOR11.DLL] [SoundMAX, 1.2.3]
[PID: 2540][C:\Lotus\Notes\nhldaemn.EXE] [N/A, N/A]
[C:\Lotus\Notes\nnotes.dll] [N/A, N/A]
[C:\Lotus\Notes\js32.dll] [N/A, N/A]
[C:\Lotus\Notes\NLSCCSTR.DLL] [N/A, N/A]
[C:\Lotus\Notes\NSTRINGS.DLL] [N/A, N/A]
[C:\Lotus\Notes\namhook.DLL] [N/A, N/A]
[PID: 2552][C:\娱乐\证券\中国银河证券双子星\LiveUpdate.exe] [上海核新软件技术有限公司, 2005, 12, 3, 0]
[C:\WINDOWS\system32\SYNCOR11.DLL] [SoundMAX, 1.2.3]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[PID: 2608][C:\Program Files\WinRAR\WinRAR.exe] [N/A, N/A]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[PID: 2836][C:\DOCUME~1\ibm\LOCALS~1\Temp\Rar$EX00.421\SREng\SREng.exe] [Smallfrogs Studio, 2.2.6.605]
[C:\Program Files\Internet Explorer\PLUGINS\Windows.sys] [N/A, N/A]
[C:\WINDOWS\system32\SYNCOR11.DLL] [SoundMAX, 1.2.3]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
22.28.10.1 sxserver
==================================