正在运行的进程
[[PID: 732][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 756][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\klogon.dll] [Kaspersky Lab, 6.0.2.621]
[C:\WINDOWS\system32\winlib .dll] [N/A, N/A]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.2.621]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[C:\WINDOWS\system32\msplrct.dll] [N/A, N/A]
[PID: 800][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 812][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 984][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\zerwx.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkufd.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkjbj.dll] [N/A, N/A]
[C:\WINDOWS\system32\hjtdx.dll] [N/A, N/A]
[C:\WINDOWS\system32\whgdm.dll] [N/A, N/A]
[C:\WINDOWS\system32\wgfdl.dll] [N/A, N/A]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 1052][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 1160][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\System32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.2.621]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 1296][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 1364][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 1572][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\dtmon.dll] [Data Techniques, Inc., 3.00.00]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 1680][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scrchpg.dll] [Kaspersky Lab, 6.0.2.621]
[C:\WINDOWS\system32\GetsFiles.dll] [N/A, N/A]
[C:\WINDOWS\system32\wgfdl.dll] [N/A, N/A]
[C:\WINDOWS\system32\whgdm.dll] [N/A, N/A]
[C:\WINDOWS\system32\hjtdx.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkjbj.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkufd.dll] [N/A, N/A]
[C:\WINDOWS\system32\zerwx.dll] [N/A, N/A]
[C:\WINDOWS\system32\Kvsc3.dll] [N/A, N/A]
[C:\WINDOWS\system32\MsIMMs32.dll] [N/A, N/A]
[C:\WINDOWS\system32\TIMHost.dll] [N/A, N/A]
[C:\WINDOWS\system32\AVPSrv.dll] [N/A, N/A]
[C:\WINDOWS\system32\WinForm.dll] [N/A, N/A]
[C:\WINDOWS\system32\cmdbcs.dll] [N/A, N/A]
[C:\WINDOWS\system32\nwizwlwzs.dll] [N/A, N/A]
[C:\WINDOWS\system32\dh2104.dll] [N/A, N/A]
[C:\WINDOWS\system32\nwizwmgjs.dll] [N/A, N/A]
[C:\WINDOWS\system32\nwizzhuxians.dll] [N/A, N/A]
[C:\WINDOWS\system32\nwizqjsj.dll] [N/A, N/A]
[C:\WINDOWS\system32\MOSOU.dll] [N/A, N/A]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.2.621]
[C:\WINDOWS\system32\browselc.dll] [Microsoft Corporation, 6.00.2600.0000]
[C:\Program Files\MyTvEX\Codecs\mmfinfo.dll] [N/A, N/A]
[C:\Program Files\MyTvEX\Codecs\mkunicode.dll] [N/A, N/A]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.10.9371]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.10.9371]
[C:\WINDOWS\system32\nvapi.dll] [N/A, N/A]
[C:\WINDOWS\system32\nvshell.dll] [N/A, N/A]
[C:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
[D:\Program Files\QQ2006\qdshm.dll] [, 1, 0, 101, 20]
[D:\Program Files\QQ2006\MFC42.DLL] [Microsoft Corporation, 6.00.8665.0]
[C:\Program Files\Corel\shared\Versions\CVersion.dll] [Corel Corporation Limited, 9.0.0.528]
[C:\Program Files\Corel\shared\Versions\VERS232.dll] [N/A, N/A]
[C:\Program Files\Corel\shared\Versions\IMPLODE.DLL] [N/A, N/A]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\ShellEx.dll] [Kaspersky Lab, 6.0.2.621]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\MSVCR80.dll] [Microsoft Corporation, 8.00.50727.42]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\MSVCP80.dll] [Microsoft Corporation, 8.00.50727.42]
[PID: 404][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\zerwx.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkufd.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkjbj.dll] [N/A, N/A]
[C:\WINDOWS\system32\hjtdx.dll] [N/A, N/A]
[C:\WINDOWS\system32\whgdm.dll] [N/A, N/A]
[C:\WINDOWS\system32\wgfdl.dll] [N/A, N/A]
[C:\WINDOWS\system32\F0D78D11.DLL] [Microsoft Corporation, N/A]
[PID: 864][C:\WINDOWS\system32\nvsvc32.exe] [NVIDIA Corporation, 6.14.10.9371]
[C:\WINDOWS\system32\nvapi.dll] [N/A, N/A]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1988][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 2040][C:\WINDOWS\system32\wdfmgr.exe] [Microsoft Corporation, 5.2.3790.1230 built by: dnsrv(bld4act)]
[PID: 516][C:\Program Files\WinRAR\WinRAR.exe] [N/A, N/A]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\MOSOU.dll] [N/A, N/A]
[C:\WINDOWS\system32\zerwx.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkufd.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkjbj.dll] [N/A, N/A]
[C:\WINDOWS\system32\hjtdx.dll] [N/A, N/A]
[C:\WINDOWS\system32\whgdm.dll] [N/A, N/A]
[C:\WINDOWS\system32\wgfdl.dll] [N/A, N/A]
[C:\WINDOWS\system32\cmdbcs.dll] [N/A, N/A]
[C:\WINDOWS\system32\MsIMMs32.dll] [N/A, N/A]
[C:\WINDOWS\system32\WinForm.dll] [N/A, N/A]
[C:\WINDOWS\system32\AVPSrv.dll] [N/A, N/A]
[C:\WINDOWS\system32\TIMHost.dll] [N/A, N/A]
[C:\WINDOWS\system32\Kvsc3.dll] [N/A, N/A]
[C:\Program Files\Common Files\Adobe\Shell\AIIcon.dll] [Adobe Systems Incorporated, 11.0]
[D:\Program Files\Corel\Corel Graphics 12\PROGRAMS\CdrIco.DLL] [Corel Corporation, 1.0.0.458]
[D:\Program Files\Corel\Corel Graphics 12\PROGRAMS\CRLUTL.dll] [Corel Corporation, 1.0.0.458]
[D:\Program Files\Corel\Corel Graphics 12\PROGRAMS\CRLI18N.dll] [Corel Corporation, 1.0.0.458]
[C:\WINDOWS\system32\MFC71U.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MFC71CHS.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Common Files\Adobe\Shell\PSICON.DLL] [Adobe Systems, Incorporated, 7.0]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\scrchpg.dll] [Kaspersky Lab, 6.0.2.621]
[PID: 524][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX02.968\SREng.EXE] [Smallfrogs Studio, 2.3.13.690]
[C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\MOSOU.dll] [N/A, N/A]
[C:\WINDOWS\system32\zerwx.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkufd.dll] [N/A, N/A]
[C:\WINDOWS\system32\wkjbj.dll] [N/A, N/A]
[C:\WINDOWS\system32\hjtdx.dll] [N/A, N/A]
[C:\WINDOWS\system32\whgdm.dll] [N/A, N/A]
[C:\WINDOWS\system32\wgfdl.dll] [N/A, N/A]
[C:\WINDOWS\system32\cmdbcs.dll] [N/A, N/A]
[C:\WINDOWS\system32\MsIMMs32.dll] [N/A, N/A]
[C:\WINDOWS\system32\WinForm.dll] [N/A, N/A]
[C:\WINDOWS\system32\AVPSrv.dll] [N/A, N/A]
[C:\WINDOWS\system32\TIMHost.dll] [N/A, N/A]
[C:\WINDOWS\system32\Kvsc3.dll] [N/A, N/A]
[C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 6.0\adialhk.dll] [Kaspersky Lab, 6.0.2.621]
Autorun.inf
[C:\]
[AutoRun]
open=auto.exe
shellexecute=auto.exe
shell\Auto\command=auto.exe
[D:\]
[AutoRun]
open=auto.exe
shellexecute=auto.exe
shell\Auto\command=auto.exe
[E:\]
[AutoRun]
open=auto.exe
shellexecute=auto.exe
shell\Auto\command=auto.exe
[F:\]
[AutoRun]
open=auto.exe
shellexecute=auto.exe
shell\Auto\command=auto.exe
[G:\]
[AutoRun]
open=auto.exe
shellexecute=auto.exe
shell\Auto\command=auto.exe