{C2626E66-D21B-E628-C1DF-1DACCFA36ED2} <C:\Program Files\Common Files\fjOs0r.dll, Microsoft Corporation>
[Shockwave Flash Object]
{D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, (Signed) Adobe Systems, Inc.>
[]
{D7B21266-AA85-44B8-B516-3B1A69827400} <C:\PROGRA~1\CNRN\RNEvent.dll, 国风因特软件(北京)有限公司>
[]
{E24B9E23-58CF-4938-B383-49C6D744D728} <C:\PROGRA~1\CNRN\CNRN.dll, 国风因特软件(北京)有限公司>
[SrchHook Class]
{F08555B0-9CC3-11D2-AA8E-000000000000} <C:\WINDOWS\system32\IEBHO.dll, >
[]
{F156768E-81EF-470C-9057-481BA8380DBA} <, >
[yFlashDl Class]
{F166BC04-3C84-44CC-A6E9-2315EC4844B9} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yflashdl.dll, N/A>
[]
{FB5DA724-162B-11D3-8B9B-AA70B4B0B524} <, >
[]
{FB5F1910-F110-11D2-BB9E-00C04F795683} <, >
[assist]
{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8} <C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yassist.dll, N/A>
[上传到QQ网络硬盘]
<D:\QQ2007\AddToNetDisk.htm, N/A>
[使用迅雷下载]
<C:\Program Files\Thunder\Program\geturl.htm, N/A>
[导出到 Microsoft Office Excel(&X)]
<res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
[添加到QQ自定义面板]
<D:\QQ2007\AddPanel.htm, N/A>
[添加到QQ表情]
<D:\QQ2007\AddEmotion.htm, N/A>
[添加到雅虎订阅(&Y)]
<res://C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yrss.dll/YRSSMENUEXT, N/A>
[用QQ彩信发送该图片]
<D:\QQ2007\SendMMS.htm, N/A>
[雅虎搜索]
<res://C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll/203, N/A>
==================================
正在运行的进程
[PID: 472 / SYSTEM][\SystemRoot\System32\smss.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 532 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 556 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 600 / SYSTEM][C:\WINDOWS\system32\services.exe] [(Verified) Microsoft Corporation, 5.1.2600.3520 (xpsp_sp2_gdr.090206-1233)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 612 / SYSTEM][C:\WINDOWS\system32\lsass.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 760 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 820 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 920 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\System32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 984 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1116 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1200 / SYSTEM][C:\KAV2007\KWatch.EXE] [Kingsoft Corporation, 2005, 9, 27, 51]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\KAV2007\KAVIPC2.DLL] [Kingsoft Corporation, 2004, 12, 28, 20]
[C:\KAV2007\KAEPlat.DLL] [Kingsoft Corp., 2006, 8, 29, 60]
[PID: 1260 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe] [(Verified) Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1376 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1432 / SYSTEM][C:\KAV2007\KPfwSvc.EXE] [Kingsoft Corporation, 2005, 9, 5, 28]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1488 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1964 / Administrator][C:\WINDOWS\explorer.exe] [(Verified) Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\mndoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qhdoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qqdoor0.dll] [N/A, ]
[C:\PROGRA~1\CNRN\RNEvent.dll] [国风因特软件(北京)有限公司, 2.0.3.1018]
[C:\WINDOWS\system32\qzdoor0.dll] [N/A, ]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[C:\Program Files\Internet Explorer\OnlO0r.dll] [Microsoft Corporation, 1. 0. 0. 1]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\Program Files\360\360Safe\safemon\safemon.dll] [360.CN, 5, 0, 0, 1021]
[C:\WINDOWS\system32\browselc.dll] [Microsoft Corporation, 6.00.2600.0000]
[C:\PROGRA~1\CNRN\RNLive.dll] [国风因特软件(北京)有限公司, 2.0.3.1021]
[C:\PROGRA~1\CNRN\RNAxtF.dll] [国风因特软件(北京)有限公司, 2.0.1.1016]
[C:\Program Files\Common Files\fjOs0r.dll] [Microsoft Corporation, 1. 0. 0. 1]
[PID: 1092 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\System32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1524 / Administrator][C:\PROGRA~1\CNRN\RNMain.exe] [国风因特软件(北京)有限公司, 2.0.3.1018]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[C:\PROGRA~1\CNRN\RNList.dll] [国风因特软件(北京)有限公司, 2.0.8.1028]
[PID: 1532 / Administrator][C:\PROGRA~1\CNRN\RNMain.exe] [国风因特软件(北京)有限公司, 2.0.3.1018]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\CNRN\RNLive.dll] [国风因特软件(北京)有限公司, 2.0.3.1021]
[C:\PROGRA~1\CNRN\RNAxtF.dll] [国风因特软件(北京)有限公司, 2.0.1.1016]
[C:\PROGRA~1\CNRN\RNNtfy.dll] [国风因特软件(北京)有限公司, 2.0.1.1016]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[PID: 904 / Administrator][C:\WINDOWS\SOUNDMAN.EXE] [Realtek Semiconductor Corp., 5, 1, 0, 58]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[PID: 1064 / Administrator][C:\WINDOWS\system32\VTTimer.exe] [S3 Graphics, Inc., 2.00.01-0307]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[PID: 860 / Administrator][C:\WINDOWS\system32\VTtrayp.exe] [S3 Graphics Co., Ltd., 2.00.41-1031]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[C:\WINDOWS\system32\VTDisply.dll] [S3 Graphics Co., Ltd., 2.00.58-0523]
[C:\WINDOWS\system32\VTGamma2.dll] [S3 Graphics Co., Ltd., 2.00.28-1128]
[C:\WINDOWS\system32\VTInfo2.dll] [S3 Graphics Co., Ltd., 2.00.35-1031]
[C:\WINDOWS\system32\VTOvrlay.dll] [S3 Graphics Co., Ltd., 2.00.38-1117B]
[PID: 1148 / Administrator][C:\KAV2007\KAVStart.exe] [Kingsoft Corporation, 2006, 11, 10, 212]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[C:\KAV2007\KAVIPC2.DLL] [Kingsoft Corporation, 2004, 12, 28, 20]
[C:\KAV2007\PopSprt3.dll] [Kingsoft Corporation, 2006, 9, 26, 38]
[PID: 2104 / Administrator][C:\WINDOWS\system32\ctfmon.exe] [(Verified) Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[PID: 2568 / SYSTEM][C:\WINDOWS\system32\msiexec.exe] [(Verified) Microsoft Corporation, 3.1.4000.1823]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 144 / Administrator][C:\Program Files\Thunder\Program\Thunder5.exe] [Thunder Networking Technologies,LTD, 5, 5, 3, 264]
[C:\Program Files\Thunder\Program\msgmanage.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\360\360Safe\safemon\safemon.dll] [360.CN, 5, 0, 0, 1021]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[C:\Program Files\Thunder\Program\TaskManager.dll] [Thunder Networking Technologies,LTD, 1, 0, 2, 14]
[C:\Program Files\Thunder\Program\download_interface.dll] [Thunder Networking Technologies,LTD, 2, 12, 2, 42]
[C:\Program Files\Thunder\Program\asyn_dns.dll] [Thunder Networking Technologies,LTD, 2, 12, 2, 42]
[C:\Program Files\Thunder\Program\BHOStub.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 8]
[C:\WINDOWS\system32\mndoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qzdoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qqdoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qhdoor0.dll] [N/A, ]
[C:\Program Files\Thunder\Program\iTargetAD.dll] [N/A, ]
[C:\Program Files\Thunder\Components\DiagnoseHelper\DiagnoseHelper.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 10]
[C:\Program Files\Thunder\Components\PortVerify\PortVerify.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
[C:\Program Files\Thunder\Components\ExplorerHelper\ExplorerHelper.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
[C:\Program Files\Thunder\Components\DTAG\DTAG.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 1]
[C:\Program Files\Thunder\Components\Community\XLCommunity.dll] [Thunder Networking Technologies,LTD, 1, 0, 2, 13]
[C:\Program Files\Thunder\Program\RegisterDll.dll] [Thunder Networking Technologies,LTD, 2, 2, 1, 43]
[C:\Program Files\Thunder\Components\VPSHELL\VPSHELL.dll] [, 1, 0, 0, 1]
[C:\Program Files\Thunder\Components\VPSHELL\VideoPicture.dll] [XunLei, 1, 0, 0, 1]
[C:\Program Files\Thunder\Plugins\BhoAdv\bho_adv.dll] [深圳市迅雷网络技术有限公司, 1.0.1.0]
[PID: 2544 / Administrator][C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE] [Microsoft Corporation, 11.0.8227]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\360\360Safe\safemon\safemon.dll] [360.CN, 5, 0, 0, 1021]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[C:\KAV2007\KAOffice.DLL] [Kingsoft Corporation, 2005, 9, 27, 31]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\KAV2007\KAVIPC2.DLL] [Kingsoft Corporation, 2004, 12, 28, 20]
[C:\KAV2007\KAECall2.DLL] [Kingsoft Corporation, 2004, 12, 28, 7]
[C:\KAV2007\KAEPlat.DLL] [Kingsoft Corp., 2006, 8, 29, 60]
[C:\PROGRA~1\CNRN\RNEvent.dll] [国风因特软件(北京)有限公司, 2.0.3.1018]
[C:\WINDOWS\system32\mndoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qzdoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qqdoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qhdoor0.dll] [N/A, ]
[PID: 3972 / Administrator][E:\新建文件夹\SREngLdr.EXE] [Smallfrogs Studio, 2.8.1.1279]
[PID: 3920 / Administrator][E:\新建文件夹\SRE9b4eb966.EXE] [Smallfrogs Studio, 2.8.1.1279]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\360\360Safe\safemon\safemon.dll] [360.CN, 5, 0, 0, 1021]
[C:\PROGRA~1\CNRN\CNRN.dll] [国风因特软件(北京)有限公司, 2.1.0.1048]
[C:\PROGRA~1\CNRN\RNHelper.dll] [国风因特软件(北京)有限公司, 2.0.2.1017]
[C:\WINDOWS\system32\qzdoor0.dll] [N/A, ]
[C:\WINDOWS\system32\mndoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qqdoor0.dll] [N/A, ]
[C:\WINDOWS\system32\qhdoor0.dll] [N/A, ]
[E:\新建文件夹\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
[D:\]
[AutoRun]
OPEN=ntldr.exe
shellexecute=ntldr.exe
shell\打开(&O)\command=ntldr.exe
[E:\]
[autorun]
open=Windows.scr
shellexecute=Windows.scr
shell\Auto\command=Windows.scr
shell=Auto
[F:\]
[autorun]
open=Windows.scr
shellexecute=Windows.scr
shell\Auto\command=Windows.scr
shell=Auto
==================================
HOSTS 文件
N/A
==================================
进程特权扫描
特殊特权被允许: SeDebugPrivilege [PID = 1064, C:\WINDOWS\SYSTEM32\VTTIMER.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 860, C:\WINDOWS\SYSTEM32\VTTRAYP.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1148, C:\KAV2007\KAVSTART.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 144, C:\PROGRAM FILES\THUNDER\PROGRAM\THUNDER5.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 144, C:\PROGRAM FILES\THUNDER\PROGRAM\THUNDER5.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 3972, E:\新建文件夹\SRENGLDR.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3972, E:\新建文件夹\SRENGLDR.EXE]
==================================
计划任务
N/A
==================================
Windows 安全更新检查
Microsoft .NET Framework 版本 1.1,简体中文版
KB892130, Windows 正版增值验证工具 (KB892130)
KB940767, 用于 Windows XP 的 Windows Internet Explorer 7
KB951376, Microsoft XP 安全更新程序 (KB951376) MS08-030
KB940157, 用于 Windows XP 的 Windows 搜索 4.0 (KB940157)
KB905474, Windows Genuine Advantage 通知 (KB905474)
KB909520, Microsoft 基本智能卡加密服务提供程序包: x86 (KB909520)
KB936929, Windows XP Service Pack 3 (KB936929)
KB931125, 根证书更新程序 [2009 年 5 月] (KB931125)
KB951847, Microsoft .NET Framework 3.5 Service Pack 1 和 .NET Framework 3.5 Family Update (KB951847) x86
KB971657, Windows XP 安全更新程序 (KB971657) MS09-041
KB944036, 用于 Windows XP 的 Internet Explorer 8
KB890830, Windows 恶意软件删除工具 - 2009 年 9 月 (KB890830)
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================
[/CODE]