瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】希望大家帮忙看看这份日志~~

12   1  /  2  页   跳转

【求助】希望大家帮忙看看这份日志~~

【求助】希望大家帮忙看看这份日志~~

刚收到同学发来的一份SREng日志,反映症状:
电脑上不了网,冰刃被屏蔽(当然杀毒软件也升不了级)
但看了日志,除了一些小问题外,没发现什么可疑的东东……
个人水平问题………………
所以希望大家一起帮忙看看这份日志~~~~~~~~

[CODE]

2007-07-23,22:14:11

System Repair Engineer 2.4.12.806
Smallfrogs (http://www.KZTechs.com)

Windows Vista Home Edition  (Build 6000) - 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <捁牥吠畯?敒業摮牥><??散屲捁牥潔牵剜浥湩敤?硥e>  [N/A]
    <swg><; C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe>  [Google Inc.]
    <KavPFW><; "C:\KAV2007\KPFW32.EXE">  [Kingsoft Corporation]
    <ISUSPM Startup><; "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup>  [Macrovision Corporation]
    <WMPNSCFG><; C:\Program Files\Windows Media Player\WMPNSCFG.exe>  [(Verified)]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  [N/A]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <Windows Defender><; %ProgramFiles%\Windows Defender\MSASCui.exe -hide>  [N/A]
    <RtHDVCpl><; RtHDVCpl.exe>  [Realtek Semiconductor]
    <NvSvc><; RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart>  [NVIDIA Corporation]
    <NvCplDaemon><; RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup>  [NVIDIA Corporation]
    <NvMediaCenter><; RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit>  [NVIDIA Corporation]
    <Acer Tour><; >  [N/A]
    <eDataSecurity Loader><; C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe>  [HiTRUST]
    <ccApp><; "C:\Program Files\Common Files\Symantec Shared\ccApp.exe">  [Symantec Corporation]
    <osCheck><; "C:\Program Files\Norton Internet Security\osCheck.exe">  [N/A]
    <SetPanel><; >  [N/A]
    <LManager><; C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE>  [Dritek System Inc.]
    <eRecoveryService><; >  [N/A]
    <Acer Tour Reminder><; C:\Acer\AcerTour\Reminder.exe>  [Acer Inc.]
    <FixCamera><; C:\Windows\FixCamera.exe>  []
    <tsnp325><; C:\Windows\tsnp325.exe>  []
    <snp325><; C:\Windows\vsnp325.exe>  []
    <YLive.exe><; C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe>  [N/A]
    <TkBellExe><; "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot>  [N/A]
    <Flashget><; "D:\joy\proce\wangji pro\FlashGet.exe" /min>  [FlashGet.com]
    <KavStart><"C:\KAV2007\KAVStart.exe" -startup>  [Kingsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><explorer.exe>  [(Verified)]
    <Userinit><C:\Windows\system32\userinit.exe,>  [(Verified)]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><eNetHook.dll>  [acer]
[HKEY_CURRENT_USER\Control Panel\Desktop]
    <SCRNSAVE.EXE><; [WindowsFolder]\Acer.scr>  [N/A]

==================================
启动文件夹
[Adobe Reader Speed Launch]
  <C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk --> C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [Adobe Systems Incorporated]><N>
[Empowering Technology Launcher]
  <C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Empowering Technology Launcher.lnk --> C:\Acer\EMPOWE~1\EAPLAU~1.EXE [Acer Inc.]><N>
[电脑报IT精灵2007]
  <C:\Users\joy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\电脑报IT精灵2007.lnk --> D:\joy\IT 电脑报\ITInside\ITWizard2007\Express.exe [N/A]><N>
[电脑报IT精灵2007]
  <C:\Users\joy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\电脑报IT精灵2007.lnk --> D:\joy\IT 电脑报\ITInside\ITWizard2007\Express.exe [N/A]><N>
[Adobe Reader Speed Launch]
  <C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk --> C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE [Adobe Systems Incorporated]><N>
[Empowering Technology Launcher]
  <C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Empowering Technology Launcher.lnk --> C:\Acer\EMPOWE~1\EAPLAU~1.EXE [Acer Inc.]><N>

==================================
服务
[Agere Modem Call Progress Audio / AgereModemAudio][Running/Auto Start]
  <C:\Windows\system32\agrsmsvc.exe><Agere Systems>
[Symantec Event Manager / ccEvtMgr][Running/Auto Start]
  <"C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon><Symantec Corporation>
[Symantec Settings Manager / ccSetMgr][Running/Auto Start]
  <"C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon><Symantec Corporation>
[CyberLink Background Capture Service (CBCS) / CLCapSvc][Running/Auto Start]
  <"C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe"><>
[CyberLink Task Scheduler (CTS) / CLSched][Running/Auto Start]
  <"C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe"><>
[Symantec Lic NetConnect service / CLTNetCnService][Running/Auto Start]
  <"C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon><Symantec Corporation>
[COM Host / comHost][Stopped/Manual Start]
  <"C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe"><Symantec Corporation>
[CyberLink Media Library Service / CyberLink Media Library Service][Running/Auto Start]
  <"C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe"><Cyberlink>
[eDSService.exe / eDataSecurity Service][Running/Auto Start]
  <"C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe"><HiTRSUT>
[eLock Service / eLockService][Running/Auto Start]
  <C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe><Acer Inc.>
[eNet Service / eNet Service][Running/Auto Start]
  <C:\Acer\Empowering Technology\eNet\eNet Service.exe><Acer Inc.>
[eRecovery Service / eRecoveryService][Running/Auto Start]
  <C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe><Acer Inc.>
[eSettings Service / eSettingsService][Running/Auto Start]
  <C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe><>
[Symantec IS 密码验证 / ISPwdSvc][Stopped/Manual Start]
  <"C:\Program Files\Norton Internet Security\isPwdSvc.exe"><N/A>
[Kingsoft Personal Firewall Service / KPfwSvc][Running/Auto Start]
  <"C:\KAV2007\KPfwSvc.EXE"><Kingsoft Corporation>
[Kingsoft Antivirus KWatch Service / KWatchSvc][Running/Auto Start]
  <C:\KAV2007\KWatch.EXE><Kingsoft Corporation>
[LightScribeService Direct Disc Labeling Service / LightScribeService][Running/Auto Start]
  <"C:\Program Files\Common Files\LightScribe\LSSrvc.exe"><Hewlett-Packard Company>
[MobilityService / MobilityService][Running/Auto Start]
  <C:\Acer\Mobility Center\MobilityService.exe -p><N/A>
[Cyberlink RichVideo Service(CRVS) / RichVideo][Running/Auto Start]
  <"C:\Program Files\CyberLink\Shared Files\RichVideo.exe"><>
[Symantec Core LC / Symantec Core LC][Stopped/Manual Start]
  <"C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe"><Symantec Corporation>
[Symantec AppCore Service / SymAppCore][Running/Auto Start]
  <"C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe"><Symantec Corporation>
[Windows Defender / WinDefend][Running/Auto Start]
  <C:\Windows\System32\svchost.exe -k secsvcs-->%ProgramFiles%\Windows Defender\mpsvc.dll><Microsoft Corporation>
[ePower Service / WMIService][Running/Auto Start]
  <C:\Acer\Empowering Technology\ePower\ePowerSvc.exe><acer>
[Windows Search / WSearch][Running/Auto Start]
  <C:\Windows\system32\SearchIndexer.exe /Embedding><Microsoft Corporation>
最后编辑2007-07-24 12:24:36
分享到:
gototop
 

==================================
驱动程序
[adp94xx / adp94xx][Stopped/Disabled]
  <\SystemRoot\system32\drivers\adp94xx.sys><Adaptec, Inc.>
[adpahci / adpahci][Stopped/Disabled]
  <\SystemRoot\system32\drivers\adpahci.sys><Adaptec, Inc.>
[adpu160m / adpu160m][Stopped/Disabled]
  <\SystemRoot\system32\drivers\adpu160m.sys><Adaptec, Inc.>
[adpu320 / adpu320][Stopped/Disabled]
  <\SystemRoot\system32\drivers\adpu320.sys><Adaptec, Inc.>
[Agere Systems Soft Modem / AgereSoftModem][Running/Manual Start]
  <system32\DRIVERS\AGRSM.sys><Agere Systems>
[Intel AGP Bus Filter / agp440][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\agp440.sys><Microsoft Corporation>
[aic78xx / aic78xx][Stopped/Disabled]
  <\SystemRoot\system32\drivers\djsvs.sys><Adaptec, Inc.>
[aliide / aliide][Stopped/Disabled]
  <\SystemRoot\system32\drivers\aliide.sys><Acer Laboratories Inc.>
[AMD AGP Bus Filter Driver / amdagp][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\amdagp.sys><Microsoft Corporation>
[amdide / amdide][Stopped/Disabled]
  <\SystemRoot\system32\drivers\amdide.sys><Microsoft Corporation>
[AMD K7 Processor Driver / AmdK7][Stopped/Disabled]
  <\SystemRoot\system32\drivers\amdk7.sys><Microsoft Corporation>
[AMD K8 Processor Driver / AmdK8][Stopped/Disabled]
  <\SystemRoot\system32\drivers\amdk8.sys><Microsoft Corporation>
[arc / arc][Stopped/Disabled]
  <\SystemRoot\system32\drivers\arc.sys><Adaptec, Inc.>
[arcsas / arcsas][Stopped/Disabled]
  <\SystemRoot\system32\drivers\arcsas.sys><Adaptec, Inc.>
[blbdrive / blbdrive][Stopped/Disabled]
  <\SystemRoot\system32\drivers\blbdrive.sys><N/A>
[Brother USB Mass-Storage Lower Filter Driver / BrFiltLo][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\brfiltlo.sys><Brother Industries, Ltd.>
[Brother USB Mass-Storage Upper Filter Driver / BrFiltUp][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\brfiltup.sys><Brother Industries, Ltd.>
[Brother MFC Serial Port Interface Driver (WDM) / Brserid][Stopped/Disabled]
  <\SystemRoot\system32\drivers\brserid.sys><Brother Industries Ltd.>
[Brother WDM Serial driver / BrSerWdm][Stopped/Disabled]
  <\SystemRoot\system32\drivers\brserwdm.sys><Brother Industries Ltd.>
[Brother MFC USB Fax Only Modem / BrUsbMdm][Stopped/Disabled]
  <\SystemRoot\system32\drivers\brusbmdm.sys><Brother Industries Ltd.>
[Brother MFC USB Serial WDM Driver / BrUsbSer][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\brusbser.sys><Brother Industries Ltd.>
[Bluetooth Serial Communications Driver / BTHMODEM][Stopped/Disabled]
  <\SystemRoot\system32\drivers\bthmodem.sys><Microsoft Corporation>
[Consumer IR Devices / circlass][Stopped/Disabled]
  <\SystemRoot\system32\drivers\circlass.sys><Microsoft Corporation>
[cmdide / cmdide][Stopped/Disabled]
  <\SystemRoot\system32\drivers\cmdide.sys><CMD Technology, Inc.>
[Microsoft Composite Battery Driver / Compbatt][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\compbatt.sys><Microsoft Corporation>
[Crcdisk Filter Driver / crcdisk][Running/Boot Start]
  <\SystemRoot\system32\drivers\crcdisk.sys><Microsoft Corporation>
[Transmeta Crusoe Processor Driver / Crusoe][Stopped/Disabled]
  <\SystemRoot\system32\drivers\crusoe.sys><Microsoft Corporation>
[Dritek Keyboard Filter Driver / DKbFltr][Running/Manual Start]
  <system32\DRIVERS\DKbFltr.sys><Dritek System Inc.>
[Intel(R) PRO/1000 NDIS 6 Adapter Driver / E1G60][Stopped/Manual Start]
  <system32\DRIVERS\E1G60I32.sys><Intel Corporation>
[Symantec Eraser Control driver / eeCtrl][Running/System Start]
  <\??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys><Symantec Corporation>
[elxstor / elxstor][Stopped/Disabled]
  <\SystemRoot\system32\drivers\elxstor.sys><Emulex>
[Floppy Disk Controller Driver / fdc][Stopped/Disabled]
  <system32\DRIVERS\fdc.sys><Microsoft Corporation>
[Floppy Disk Driver / flpydisk][Stopped/Disabled]
  <system32\DRIVERS\flpydisk.sys><Microsoft Corporation>
[Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms / gagp30kx][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\gagp30kx.sys><Microsoft Corporation>
[Microsoft Bluetooth HID Miniport / HidBth][Stopped/Disabled]
  <\SystemRoot\system32\drivers\hidbth.sys><Microsoft Corporation>
[Microsoft Infrared HID Driver / HidIr][Stopped/Disabled]
  <\SystemRoot\system32\drivers\hidir.sys><Microsoft Corporation>
[HpCISSs / HpCISSs][Stopped/Disabled]
  <\SystemRoot\system32\drivers\hpcisss.sys><Hewlett-Packard Company>
[i2omp / i2omp][Stopped/Disabled]
  <\SystemRoot\system32\drivers\i2omp.sys><Microsoft Corporation>
[Intel RAID Controller Vista / iaStorV][Stopped/Disabled]
  <\SystemRoot\system32\drivers\iastorv.sys><Intel Corporation>
[Symantec Intrusion Prevention Driver / IDSvix86][Running/System Start]
  <\??\C:\PROGRA~2\Symantec\DEFINI~1\SymcData\idsdefs\20070628.003\IDSvix86.sys><Symantec Corporation>
[iirsp / iirsp][Stopped/Disabled]
  <\SystemRoot\system32\drivers\iirsp.sys><Intel Corp./ICP vortex GmbH>
[int15 / int15][Running/Auto Start]
  <\??\C:\Acer\Empowering Technology\eRecovery\int15.sys><N/A>
[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
  <system32\drivers\RTKVHDA.sys><Realtek Semiconductor Corp.>
[intelide / intelide][Running/Boot Start]
  <\SystemRoot\system32\drivers\intelide.sys><Microsoft Corporation>
[Intel Processor Driver / intelppm][Running/Manual Start]
  <system32\DRIVERS\intelppm.sys><Microsoft Corporation>
[IP in IP Tunnel Driver / IpInIp][Stopped/Manual Start]
  <system32\DRIVERS\ipinip.sys><N/A>
[IPMIDRV / IPMIDRV][Stopped/Disabled]
  <\SystemRoot\system32\drivers\ipmidrv.sys><Microsoft Corporation>
[PnP ISA/EISA Bus Driver / isapnp][Stopped/Disabled]
  <\SystemRoot\system32\drivers\isapnp.sys><Microsoft Corporation>
[ITEATAPI_Service_Install / iteatapi][Stopped/Disabled]
  <\SystemRoot\system32\drivers\iteatapi.sys><Integrated Technology Express, Inc.>
[ITERAID_Service_Install / iteraid][Stopped/Disabled]
  <\SystemRoot\system32\drivers\iteraid.sys><Integrated Technology Express, Inc.>
[Sony Ericsson 750 driver (WDM) / k750bus][Stopped/Manual Start]
  <system32\DRIVERS\k750bus.sys><MCCI>
[Sony Ericsson 750 USB WMC Modem Filter / k750mdfl][Stopped/Manual Start]
  <system32\DRIVERS\k750mdfl.sys><MCCI>
[Sony Ericsson 750 USB WMC Modem Drivers / k750mdm][Stopped/Manual Start]
  <system32\DRIVERS\k750mdm.sys><MCCI>
[Sony Ericsson 750 USB WMC Device Management Drivers / k750mgmt][Stopped/Manual Start]
  <system32\DRIVERS\k750mgmt.sys><MCCI>
[Keyboard HID Driver / kbdhid][Stopped/Disabled]
  <\SystemRoot\system32\drivers\kbdhid.sys><Microsoft Corporation>
[KNetWch / KNetWch][Running/System Start]
  <\??\C:\KAV2007\KNetWch.SYS><Kingsoft Corporation>
[KWatch3 / KWatch3][Running/System Start]
  <\??\C:\Windows\system32\drivers\KWatch3.SYS><Kingsoft Corporation>
gototop
 

[LSI_FC / LSI_FC][Stopped/Disabled]
  <\SystemRoot\system32\drivers\lsi_fc.sys><LSI Logic>
[LSI_SAS / LSI_SAS][Stopped/Disabled]
  <\SystemRoot\system32\drivers\lsi_sas.sys><LSI Logic>
[LSI_SCSI / LSI_SCSI][Stopped/Disabled]
  <\SystemRoot\system32\drivers\lsi_scsi.sys><LSI Logic>
[megasas / megasas][Stopped/Disabled]
  <\SystemRoot\system32\drivers\megasas.sys><LSI Logic Corporation>
[Microsoft Multi-Path Bus Driver / mpio][Stopped/Disabled]
  <\SystemRoot\system32\drivers\mpio.sys><Microsoft Corporation>
[Mraid35x / Mraid35x][Stopped/Disabled]
  <\SystemRoot\system32\drivers\mraid35x.sys><LSI Logic Corporation>
[msahci / msahci][Stopped/Disabled]
  <\SystemRoot\system32\drivers\msahci.sys><Microsoft Corporation>
[Microsoft Multi-Path Device Specific Module / msdsm][Stopped/Disabled]
  <\SystemRoot\system32\drivers\msdsm.sys><Microsoft Corporation>
[NAVENG / NAVENG][Stopped/Manual Start]
  <\??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20070709.039\NAVENG.SYS><Symantec Corporation>
[NAVEX15 / NAVEX15][Stopped/Manual Start]
  <\??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20070709.039\NAVEX15.SYS><Symantec Corporation>
[用于 Windows Vista 32 Bit 版的英特尔(R) PRO/无线 3945ABG 适配器驱动程序 / NETw3v32][Running/Manual Start]
  <system32\DRIVERS\NETw3v32.sys><Intel? Corporation>
[nfrd960 / nfrd960][Stopped/Disabled]
  <\SystemRoot\system32\drivers\nfrd960.sys><IBM Corporation>
[NSC Infrared Device Driver / NSCIRDA][Stopped/Manual Start]
  <system32\DRIVERS\nscirda.sys><National Semiconductor Corporation>
[Upper Class Filter Driver / NTIDrvr][Running/Manual Start]
  <system32\DRIVERS\NTIDrvr.sys><NewTech Infosystems, Inc.>
[N-trig HID Tablet Driver / ntrigdigi][Stopped/Disabled]
  <\SystemRoot\system32\drivers\ntrigdigi.sys><N-trig Innovative Technologies>
[nvlddmkm / nvlddmkm][Running/Manual Start]
  <system32\DRIVERS\nvlddmkm.sys><NVIDIA Corporation>
[nvraid / nvraid][Stopped/Disabled]
  <\SystemRoot\system32\drivers\nvraid.sys><NVIDIA Corporation>
[nvstor / nvstor][Stopped/Disabled]
  <\SystemRoot\system32\drivers\nvstor.sys><NVIDIA Corporation>
[NVIDIA nForce AGP Bus Filter / nv_agp][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\nv_agp.sys><Microsoft Corporation>
[IPX Traffic Filter Driver / NwlnkFlt][Stopped/Manual Start]
  <system32\DRIVERS\nwlnkflt.sys><N/A>
[IPX Traffic Forwarder Driver / NwlnkFwd][Stopped/Manual Start]
  <system32\DRIVERS\nwlnkfwd.sys><N/A>
[pciide / pciide][Stopped/Disabled]
  <\SystemRoot\system32\drivers\pciide.sys><Microsoft Corporation>
[Processor Driver / Processor][Stopped/Disabled]
  <\SystemRoot\system32\drivers\processr.sys><Microsoft Corporation>
[PSDFilter / PSDFilter][Running/Boot Start]
  <\SystemRoot\system32\DRIVERS\psdfilter.sys><HiTRUST>
[PSDNSERVER / PSDNServ][Running/Boot Start]
  <\SystemRoot\system32\drivers\PSDNServ.sys><HiTRUST>
[psdvdisk / psdvdisk][Running/Boot Start]
  <\SystemRoot\system32\drivers\psdvdisk.sys><HiTRUST>
[QLogic Fibre Channel Miniport Driver / ql2300][Stopped/Disabled]
  <\SystemRoot\system32\drivers\ql2300.sys><QLogic Corporation>
[QLogic iSCSI Miniport Driver / ql40xx][Stopped/Disabled]
  <\SystemRoot\system32\drivers\ql40xx.sys><QLogic Corporation>
[Terminal Server Device Redirector Driver / rdpdr][Stopped/Disabled]
  <\SystemRoot\system32\drivers\rdpdr.sys><Microsoft Corporation>
[SBP-2 Transport/Protocol Bus Driver / sbp2port][Stopped/Disabled]
  <\SystemRoot\system32\drivers\sbp2port.sys><Microsoft Corporation>
[SFF Storage Class Driver / sffdisk][Stopped/Disabled]
  <\SystemRoot\system32\drivers\sffdisk.sys><Microsoft Corporation>
[SFF Storage Protocol Driver for MMC / sffp_mmc][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\sffp_mmc.sys><Microsoft Corporation>
[SFF Storage Protocol Driver for SDBus / sffp_sd][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\sffp_sd.sys><Microsoft Corporation>
[High-Capacity Floppy Disk Drive / sfloppy][Stopped/Disabled]
  <\SystemRoot\system32\drivers\sfloppy.sys><Microsoft Corporation>
[SIS AGP Bus Filter / sisagp][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\sisagp.sys><Microsoft Corporation>
[SiSRaid2 / SiSRaid2][Stopped/Disabled]
  <\SystemRoot\system32\drivers\sisraid2.sys><Silicon Integrated Systems Corp.>
[SiSRaid4 / SiSRaid4][Stopped/Disabled]
  <\SystemRoot\system32\drivers\sisraid4.sys><Silicon Integrated Systems>
[USB PC Camera (SNPSTD325) / SNP325][Stopped/Manual Start]
  <system32\DRIVERS\snp325.sys><Sonix Co. Ltd.>
[SPBBCDrv / SPBBCDrv][Stopped/Manual Start]
  <\??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys><Symantec Corporation>
[SRTSP / SRTSP][Stopped/Manual Start]
  <System32\Drivers\SRTSP.SYS><Symantec Corporation>
[SRTSPL / SRTSPL][Stopped/Manual Start]
  <System32\Drivers\SRTSPL.SYS><Symantec Corporation>
[SRTSPX / SRTSPX][Running/System Start]
  <System32\Drivers\SRTSPX.SYS><Symantec Corporation>
[Software Bus Driver / swenum][Running/Manual Start]
  <system32\DRIVERS\swenum.sys><Microsoft Corporation>
[Symc8xx / Symc8xx][Stopped/Disabled]
  <\SystemRoot\system32\drivers\symc8xx.sys><LSI Logic>
[SYMDNS / SYMDNS][Stopped/Manual Start]
  <\SystemRoot\System32\Drivers\SYMDNS.SYS><Symantec Corporation>
[SymEvent / SymEvent][Running/Manual Start]
  <\??\C:\Windows\system32\Drivers\SYMEVENT.SYS><Symantec Corporation>
[SYMFW / SYMFW][Stopped/Manual Start]
  <\SystemRoot\System32\Drivers\SYMFW.SYS><Symantec Corporation>
[SYMIDS / SYMIDS][Stopped/Manual Start]
  <\SystemRoot\System32\Drivers\SYMIDS.SYS><Symantec Corporation>
[SYMNDISV / SYMNDISV][Stopped/Manual Start]
  <\SystemRoot\System32\Drivers\SYMNDISV.SYS><Symantec Corporation>
[SYMREDRV / SYMREDRV][Stopped/Manual Start]
  <\SystemRoot\System32\Drivers\SYMREDRV.SYS><Symantec Corporation>
[SYMTDI / SYMTDI][Running/System Start]
  <\SystemRoot\System32\Drivers\SYMTDI.SYS><Symantec Corporation>
[Sym_hi / Sym_hi][Stopped/Disabled]
  <\SystemRoot\system32\drivers\sym_hi.sys><LSI Logic>
[Sym_u3 / Sym_u3][Stopped/Disabled]
  <\SystemRoot\system32\drivers\sym_u3.sys><LSI Logic>
[tifm21 / tifm21][Running/Manual Start]
  <system32\drivers\tifm21.sys><Texas Instruments>
[Microsoft AGPv3.5 Filter / uagp35][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\uagp35.sys><Microsoft Corporation>
[Uli AGP Bus Filter / uliagpkx][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\uliagpkx.sys><Microsoft Corporation>
[uliahci / uliahci][Stopped/Disabled]
  <\SystemRoot\system32\drivers\uliahci.sys><ULi Electronics Inc.>
[UlSata / UlSata][Stopped/Disabled]
  <\SystemRoot\system32\drivers\ulsata.sys><Promise Technology, Inc.>
[ulsata2 / ulsata2][Stopped/Disabled]
  <\SystemRoot\system32\drivers\ulsata2.sys><Promise Technology, Inc.>
[Microsoft USB Generic Parent Driver / usbccgp][Stopped/Disabled]
  <\SystemRoot\system32\drivers\usbccgp.sys><Microsoft Corporation>
[eHome Infrared Receiver (USBCIR) / usbcir][Stopped/Disabled]
  <\SystemRoot\system32\drivers\usbcir.sys><Microsoft Corporation>
[Microsoft USB Open Host Controller Miniport Driver / usbohci][Stopped/Disabled]
  <\SystemRoot\system32\drivers\usbohci.sys><Microsoft Corporation>
[Microsoft USB PRINTER Class / usbprint][Stopped/Disabled]
  <\SystemRoot\system32\drivers\usbprint.sys><Microsoft Corporation>
[VIA AGP Bus Filter / viaagp][Stopped/Manual Start]
  <\SystemRoot\system32\drivers\viaagp.sys><Microsoft Corporation>
[VIA C7 Processor Driver / ViaC7][Stopped/Disabled]
  <\SystemRoot\system32\drivers\viac7.sys><Microsoft Corporation>
[viaide / viaide][Stopped/Disabled]
  <\SystemRoot\system32\drivers\viaide.sys><VIA Technologies, Inc.>
[vsmraid / vsmraid][Stopped/Disabled]
  <\SystemRoot\system32\drivers\vsmraid.sys><VIA Technologies Inc.,Ltd>
[Wacom Serial Pen HID Driver / WacomPen][Stopped/Disabled]
  <\SystemRoot\system32\drivers\wacompen.sys><Microsoft Corporation>
[Microsoft Watchdog Timer Driver / Wd][Stopped/Disabled]
  <\SystemRoot\system32\drivers\wd.sys><Microsoft Corporation>
[NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller / yukonwlh][Stopped/Manual Start]
  <system32\DRIVERS\yk60x86.sys><Marvell>
gototop
 

==================================
浏览器加载项
[Yahoo! Toolbar Helper]
  {02478D38-C3F9-4EFB-9B51-7695ECA05670} <C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll, N/A>
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[]
  {1E8A6170-7264-4D0F-BEAE-D42A53123C75} <C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll, Symantec Corporation>
[FGCatchUrl]
  {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} <D:\joy\proce\wangji pro\jccatch.dll, www.flashget.com>
[CBrowseStakeout Class]
  {55302805-482E-470E-8A57-6795A1487F90} <C:\KAV2007\KAVAFish.DLL, Kingsoft Corporation>
[Google Toolbar Helper]
  {AA58ED58-01DD-4d91-8333-CF10577473F7} <c:\program files\google\googletoolbar1.dll, Google Inc.>
[FlashGet GetFlash Class]
  {F156768E-81EF-470C-9057-481BA8380DBA} <D:\joy\proce\wangji pro\getflash.dll, www.flashget.com>
[快车]
  {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} <D:\joy\proce\wangji pro\FlashGet.exe, FlashGet.com>
[易趣购物]
  {EE60714F-AC17-427e-861A-FD60CBDF119A} <http://click2.ad4all.net/url2/urlmanage/url.asp?id=160, N/A>
[精彩图铃]
  {EE60714F-AC27-427e-861A-FD60CBDF119A} <http://click2.ad4all.net/url2/urlmanage/url.asp?id=163, N/A>
[Acer eDataSecurity Management]
  {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} <C:\Windows\system32\eDStoolbar.dll, HiTRUST>
[显示 Norton 工具栏]
  {90222687-F593-4738-B738-FBEE9C7B26DF} <C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll, Symantec Corporation>
[Yahoo! 导航条]
  {EF99BD32-C1FB-11D2-892F-0090271D4F88} <C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll, N/A>
[&Google]
  {2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar1.dll, Google Inc.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\Windows\system32\Macromed\Flash\Flash9d.ocx, Adobe Systems, Inc.>
[Yahoo! Toolbar Helper]
  {02478D38-C3F9-4EFB-9B51-7695ECA05670} <C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll, N/A>
[AcroIEHlprObj Class]
  {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} <C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll, Adobe Systems Incorporated>
[]
  {1E8A6170-7264-4D0F-BEAE-D42A53123C75} <C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll, Symantec Corporation>
[&Google]
  {2318C2B1-4965-11D4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar1.dll, Google Inc.>
[FGCatchUrl]
  {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} <D:\joy\proce\wangji pro\jccatch.dll, www.flashget.com>
[CBrowseStakeout Class]
  {55302805-482E-470E-8A57-6795A1487F90} <C:\KAV2007\KAVAFish.DLL, Kingsoft Corporation>
[Acer eDataSecurity Management]
  {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} <C:\Windows\system32\eDStoolbar.dll, HiTRUST>
[显示 Norton 工具栏]
  {90222687-F593-4738-B738-FBEE9C7B26DF} <C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll, Symantec Corporation>
[Google Toolbar Helper]
  {AA58ED58-01DD-4D91-8333-CF10577473F7} <c:\program files\google\googletoolbar1.dll, Google Inc.>
[Yahoo! 导航条]
  {EF99BD32-C1FB-11D2-892F-0090271D4F88} <C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll, N/A>
[FlashGet GetFlash Class]
  {F156768E-81EF-470C-9057-481BA8380DBA} <D:\joy\proce\wangji pro\getflash.dll, www.flashget.com>
[FGAutoLive]
  {F90D830D-C175-4bbe-82C7-FF94669A4C42} <D:\joy\proce\wangji pro\fgupdate.dll, www.flashget.com>
[FGCatchUrl]
  {FB5DA724-162B-11D3-8B9B-AA70B4B0B524} <D:\joy\proce\wangji pro\jccatch.dll, www.flashget.com>
[&使用快车(FlashGet)下载]
  <D:\joy\proce\wangji pro\jc_link.htm, N/A>
[&使用快车(FlashGet)下载全部链接]
  <D:\joy\proce\wangji pro\jc_all.htm, N/A>
gototop
 

==================================
正在运行的进程
[PID: 408][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
[PID: 536][C:\Windows\system32\csrss.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
[PID: 1720][C:\Windows\system32\Dwm.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [D:\joy\proce\wangji pro\fgmgr.dll]  [www.flashget.com, 1, 8, 0, 1001]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Acer\Empowering Technology\EPOWER\SysHook.dll]  [, 0, 9, 7, 3]
[PID: 1744][C:\Windows\Explorer.EXE]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\PROGRA~1\WI4EB4~1\wmpband.dll]  [Microsoft Corporation, 11.0.6000.6324 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Acer\Empowering Technology\EPOWER\SysHook.dll]  [, 0, 9, 7, 3]
    [D:\joy\proce\wangji pro\fgmgr.dll]  [www.flashget.com, 1, 8, 0, 1001]
    [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 106.1.1.4]
    [C:\Program Files\Common Files\Symantec Shared\ccL60U.dll]  [Symantec Corporation, 106.1.1.4]
    [C:\Windows\system32\CryptoAPI.dll]  [HiTRUST, 2, 2, 0, 34]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [D:\joy\proce\压缩软件\winrar  pro\rarext.dll]  [N/A, ]
    [C:\KAV2007\KAVEXT.DLL]  [Kingsoft Corporation, 2007, 5, 11, 28]
    [C:\PROGRA~1\NORTON~1\NORTON~1\NavShExt.dll]  [Symantec Corporation, 14.1.0.27]
    [C:\Windows\system32\eDSshellExt.dll]  [HiTRUST, 2, 5, 3024, 20]
    [C:\Windows\system32\nvcpl.dll]  [NVIDIA Corporation, 7.15.10.9755]
    [C:\Windows\system32\FREEIME.IME]  [极点五笔工作室, 6.00.950]
[PID: 256][C:\Windows\system32\taskeng.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\nvapi.dll]  [NVIDIA Corporation, 7.15.10.9755]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3468][C:\Program Files\Windows Defender\MSASCui.exe]  [Microsoft Corporation, 1.1.1505.0]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3480][C:\Windows\RtHDVCpl.exe]  [Realtek Semiconductor, 1, 0, 0, 11]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3612][C:\Program Files\Acer\Acer Arcade\PCMService.exe]  [CyberLink Corp., 4, 5, 0, 0]
    [C:\Program Files\Acer\Acer Arcade\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Acer\Acer Arcade\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Acer\Acer Arcade\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\MFC71CHS.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\Program Files\Acer\Acer Arcade\Kernel\common\CLRCEngine3.dll]  [CyberLink Corp., 4, 5, 0, 1919]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapX.dll]  [Cyberlink, 4.05.2308]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSchMgr.dll]  [, 4.05.2425]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvcps.dll]  [N/A, ]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapEngine.dll]  [, 4.05.2302]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\PCMRRec4.dll]  [CyberLink Corp., 4.01.3628]
gototop
 

==================================
正在运行的进程
[PID: 408][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
[PID: 536][C:\Windows\system32\csrss.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
[PID: 1720][C:\Windows\system32\Dwm.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [D:\joy\proce\wangji pro\fgmgr.dll]  [www.flashget.com, 1, 8, 0, 1001]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Acer\Empowering Technology\EPOWER\SysHook.dll]  [, 0, 9, 7, 3]
[PID: 1744][C:\Windows\Explorer.EXE]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\PROGRA~1\WI4EB4~1\wmpband.dll]  [Microsoft Corporation, 11.0.6000.6324 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Acer\Empowering Technology\EPOWER\SysHook.dll]  [, 0, 9, 7, 3]
    [D:\joy\proce\wangji pro\fgmgr.dll]  [www.flashget.com, 1, 8, 0, 1001]
    [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  [Symantec Corporation, 106.1.1.4]
    [C:\Program Files\Common Files\Symantec Shared\ccL60U.dll]  [Symantec Corporation, 106.1.1.4]
    [C:\Windows\system32\CryptoAPI.dll]  [HiTRUST, 2, 2, 0, 34]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [D:\joy\proce\压缩软件\winrar  pro\rarext.dll]  [N/A, ]
    [C:\KAV2007\KAVEXT.DLL]  [Kingsoft Corporation, 2007, 5, 11, 28]
    [C:\PROGRA~1\NORTON~1\NORTON~1\NavShExt.dll]  [Symantec Corporation, 14.1.0.27]
    [C:\Windows\system32\eDSshellExt.dll]  [HiTRUST, 2, 5, 3024, 20]
    [C:\Windows\system32\nvcpl.dll]  [NVIDIA Corporation, 7.15.10.9755]
    [C:\Windows\system32\FREEIME.IME]  [极点五笔工作室, 6.00.950]
[PID: 256][C:\Windows\system32\taskeng.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\nvapi.dll]  [NVIDIA Corporation, 7.15.10.9755]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3468][C:\Program Files\Windows Defender\MSASCui.exe]  [Microsoft Corporation, 1.1.1505.0]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3480][C:\Windows\RtHDVCpl.exe]  [Realtek Semiconductor, 1, 0, 0, 11]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3612][C:\Program Files\Acer\Acer Arcade\PCMService.exe]  [CyberLink Corp., 4, 5, 0, 0]
    [C:\Program Files\Acer\Acer Arcade\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Program Files\Acer\Acer Arcade\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Program Files\Acer\Acer Arcade\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\MFC71CHS.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\Program Files\Acer\Acer Arcade\Kernel\common\CLRCEngine3.dll]  [CyberLink Corp., 4, 5, 0, 1919]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapX.dll]  [Cyberlink, 4.05.2308]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSchMgr.dll]  [, 4.05.2425]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvcps.dll]  [N/A, ]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapEngine.dll]  [, 4.05.2302]
    [C:\Program Files\Acer\Acer Arcade\Kernel\TV\PCMRRec4.dll]  [CyberLink Corp., 4.01.3628]
gototop
 

[PID: 3676][C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe]  [HiTRUST, 2, 5, 3028, 168]
    [C:\Windows\system32\ADMIN_CLASS_LIB.dll]  [HiTRUST, 1.0.0.1]
    [C:\Windows\system32\keyManager.dll]  [HiTRSUT, 2, 2, 0, 18]
    [C:\Windows\system32\CryptoAPI.dll]  [HiTRUST, 2, 2, 0, 34]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [C:\Windows\system32\sysenv.dll]  [HiTRUST, 2, 5, 3021, 107]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.42_none_d6c3e7af9bae13a2\MFC80U.DLL]  [Microsoft Corporation, 8.00.50727.42]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [C:\Windows\system32\PSDUtil.dll]  [HiTRUST, 2, 2, 0, 26]
    [C:\Windows\system32\ShowErrMsg.dll]  [, 2, 5, 3024, 22]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.42_none_0e9c2a8d74fd3ce6\MFC80CHS.DLL]  [Microsoft Corporation, 8.00.50727.42]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3692][C:\Program Files\Launch Manager\QtZgAcer.EXE]  [Dritek System Inc., 1, 0, 6, 523]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Program Files\Launch Manager\CDRomUtl.dll]  [Dritek System Inc., 1.00]
    [C:\Program Files\Launch Manager\ComFnUtl.dll]  [Dritek System Inc., 1, 0, 0, 711]
    [C:\Program Files\Launch Manager\MixerUtl.dll]  [Dritek System Inc., 1.00]
    [C:\Program Files\Launch Manager\OSDUtl.dll]  [Dritek System Inc., 1, 0, 3, 309]
    [C:\Program Files\Launch Manager\RgnMaker.dll]  [Dritek System Inc., 12.07.1999 ( VC60 )]
    [C:\Program Files\Launch Manager\SzUPFUtl.dll]  [Dritek System Inc., 1.00]
    [C:\Program Files\Launch Manager\Wnd2File.dll]  [Dritek System Inc., 3.00]
    [C:\Program Files\Launch Manager\SzPtcUtl.dll]  [Dritek System Inc., 1.00]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Program Files\Launch Manager\LgKCUtl.Dll]  [Dritek System Inc., 2, 0, 2, 1007]
    [C:\Program Files\Launch Manager\DialCnt.Dll]  [Dritek System Inc., 2, 1, 0, 1]
    [C:\Program Files\Launch Manager\VistaVol.DLL]  [Dritek System Inc., 1, 0, 0, 306]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\Program Files\Launch Manager\MMDUtl.DLL]  [Dritek System Inc., 1, 2, 8, 908]
    [C:\Windows\system32\nvapi.dll]  [NVIDIA Corporation, 7.15.10.9755]
[PID: 3708][C:\Windows\FixCamera.exe]  [, 1, 0, 0, 8]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3716][C:\Windows\tsnp325.exe]  [, 1, 1, 3, 6]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3724][C:\Windows\vsnp325.exe]  [, 1, 0, 5, 0]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3740][D:\joy\proce\wangji pro\flashget.exe]  [FlashGet.com, 1, 8, 2, 1003]
    [D:\joy\proce\wangji pro\FGBTCORE.dll]  [, 1, 0, 0, 36]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Acer\Empowering Technology\EPOWER\SysHook.dll]  [, 0, 9, 7, 3]
    [D:\joy\proce\wangji pro\fgmgr.dll]  [www.flashget.com, 1, 8, 0, 1001]
    [D:\joy\proce\wangji pro\fgupdate.dll]  [www.flashget.com, 1, 8, 1, 1002]
[PID: 3756][C:\KAV2007\KAVStart.EXE]  [Kingsoft Corporation, 2007, 5, 9, 272]
    [C:\Windows\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\MFC71CHS.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KAVIPC2.DLL]  [Kingsoft Corporation, 2007, 1, 15, 30]
    [C:\KAV2007\SvcTimer.DLL]  [Kingsoft Corporation, 2006.12.22.84]
    [C:\KAV2007\KAVPassp.dll]  [Kingsoft Corporation, 2006, 12, 30, 271]
    [C:\KAV2007\PopSprt3.dll]  [Kingsoft Corporation, 2007, 1, 16, 45]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3764][C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe]  [Google Inc., 1, 0, 720, 3640]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\res_zh-CN.dll]  [Google Inc., 1, 0, 720, 3640]
    [C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\swg.dll]  [Google Inc., 1, 0, 720, 3640]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 3868][C:\KAV2007\KPFW32.EXE]  [Kingsoft Corporation, 2007, 2, 2, 687]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\MFC71.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\system32\MFC71CHS.DLL]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KAVIPC2.DLL]  [Kingsoft Corporation, 2007, 1, 15, 30]
    [C:\KAV2007\KAConfig.DLL]  [Kingsoft Corporation, 2007, 1, 11, 41]
    [C:\KAV2007\FiltList.dll]  [N/A, ]
    [C:\KAV2007\KAVPassp.DLL]  [Kingsoft Corporation, 2006, 12, 30, 271]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\Acer\Empowering Technology\EPOWER\SysHook.dll]  [, 0, 9, 7, 3]
    [D:\joy\proce\wangji pro\fgmgr.dll]  [www.flashget.com, 1, 8, 0, 1001]
[PID: 3920][C:\Program Files\Windows Media Player\wmpnscfg.exe]  [Microsoft Corporation, 11.0.6000.6324 (vista_rtm.061101-2205)]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
gototop
 

[PID: 2948][C:\Windows\System32\rundll32.exe]  [Microsoft Corporation, 6.0.6000.16386 (vista_rtm.061101-2205)]
    [C:\Windows\System32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\System32\NVSVC.DLL]  [NVIDIA Corporation, 7.15.10.9755]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 2804][C:\KAV2007\KMailMon.EXE]  [Kingsoft Corporation, 2007, 2, 25, 948]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KAntiSpm.dll]  [Kingsoft Corporation, 2007, 2, 25, 129]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KAVIPC2.DLL]  [Kingsoft Corporation, 2007, 1, 15, 30]
    [C:\KAV2007\KAECall2.DLL]  [Kingsoft Corporation, 2004, 12, 28, 7]
    [C:\KAV2007\KAEPlat.DLL]  [Kingsoft Corp., 2007, 2, 4, 61]
    [C:\KAV2007\KAEMem.DAT]  [Kingsoft, 2006, 9, 25, 16]
    [C:\KAV2007\KAEUnpack.DAT]  [Kingsoft Corp., 2007, 5, 9, 120]
    [C:\KAV2007\KAConfig.DLL]  [Kingsoft Corporation, 2007, 1, 11, 41]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
[PID: 3456][C:\Users\joy\AppData\Local\Temp\RtkBtMnt.exe]  [Realtek Semiconductor Corp., 1.0.0.9]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
[PID: 1632][C:\Acer\Empowering Technology\ENET\ENMTRAY.EXE]  [Acer Inc., 2, 6, 3, 2]
    [C:\Acer\Empowering Technology\ENET\eNMIPCmm.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [C:\Acer\Empowering Technology\ENET\Network.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Acer\Empowering Technology\ENET\NetworkCardMgr.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Acer\Empowering Technology\ENET\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\msvcm80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7fe79782947b85d961fd55cb5e02a129\mscorlib.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System\fcc712bc5da45a672e7f1ad176dbd5a5\System.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\8fbca0140921ed343cb511595869a0ed\System.Runtime.Remoting.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Acer\Empowering Technology\ENET\eNetServiceInterface.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Acer\Empowering Technology\ENET\ICmdDispatcher.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\70c145ed25af403aa899ffcb633350b1\System.Drawing.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\35a9f19f21aac42b979be321f1bb5fd4\System.Windows.Forms.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Acer\Empowering Technology\ENET\PfMgr.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Acer\Empowering Technology\ENET\Wlan.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_zh-CHS_b77a5c561934e089\mscorlib.resources.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\Acer\Empowering Technology\ENET\Acer.Empowering.Windows.Forms.dll]  [Acer inc., 2.0.20.0]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Acer\Empowering Technology\ENET\MultiLang.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f76a7622c73e26e4d2daf54068d7ff79\System.Xml.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Acer\Empowering Technology\ENET\ProfileSwitch.dll]  [Acer Inc., 2, 6, 3, 2]
    [C:\Acer\Empowering Technology\ENET\Diagnosis.dll]  [Acer Inc., 2, 6, 3, 2]
    [D:\joy\proce\wangji pro\fgmgr.dll]  [www.flashget.com, 1, 8, 0, 1001]
[PID: 1832][C:\Acer\Empowering Technology\EPOWER\EPOWER_DMC.EXE]  [Acer Inc., 2, 5, 3007, 0]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [C:\Windows\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.312_none_10b2ee7b9bffc2c7\msvcm80.dll]  [Microsoft Corporation, 8.00.50727.312]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7fe79782947b85d961fd55cb5e02a129\mscorlib.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System\fcc712bc5da45a672e7f1ad176dbd5a5\System.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\70c145ed25af403aa899ffcb633350b1\System.Drawing.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\35a9f19f21aac42b979be321f1bb5fd4\System.Windows.Forms.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\8fbca0140921ed343cb511595869a0ed\System.Runtime.Remoting.ni.dll]  [Microsoft Corporation, 2.0.50727.312 (rtmLHS.050727-3100)]
    [C:\Acer\Empowering Technology\EPOWER\WMIInterface.dll]  [acer, 2, 5, 3006, 0]
    [C:\Acer\Empowering Technology\EPOWER\SysHook.dll]  [, 0, 9, 7, 3]
    [C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6000.16386_none_9ea0ac9ec96e7127\gdiplus.dll]  [Microsoft Corporation, 5.2.6000.16386 (vista_rtm.061101-2205)]
    [C:\Acer\Empowering Technology\EPOWER\Acer.Empowering.Windows.Forms.dll]  [Acer inc., 2.0.18.2]
    [C:\Windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll]  [Microsoft Corporation, 2.0.50727.833 (QFE.050727-8300)]
[PID: 3452][C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE]  [Acer Inc., 2.5.5.1]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
[PID: 4848][D:\joy\proce\电驴\eMule\emule.exe]  [http://www.emule-project.net, 0.47.2 Unicode]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
    [D:\joy\proce\wangji pro\fgmgr.dll]  [www.flashget.com, 1, 8, 0, 1001]
    [C:\KAV2007\KMailOEBand.dll]  [Kingsoft Corporation, 2006, 12, 1, 139]
    [C:\Windows\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]
    [C:\Windows\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]
    [C:\KAV2007\KASocket.dll]  [Kingsoft Corporation, 2006, 12, 21, 241]
    [D:\joy\proce\电驴\eMule\lang\zh_CN.dll]  [http://www.emule-project.net, 0.47.2]
    [C:\Acer\Empowering Technology\EPOWER\SysHook.dll]  [, 0, 9, 7, 3]
[PID: 440][D:\joy\杀毒\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\COMCTL32.dll]  [Microsoft Corporation, 6.10 (vista_rtm.061101-2205)]
    [C:\Windows\system32\eNetHook.dll]  [acer, 2, 6, 3, 2]
gototop
 

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["%SystemRoot%\hh.exe" %1]
.HLP  OK. [%SystemRoot%\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. ["%SystemRoot%\System32\WScript.exe" "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1      localhost
::1            localhost

==================================
API HOOK
N/A

==================================
隐藏进程
N/A

==================================


[/CODE]

目前发现的问题:
杀软装了两个…………

HOSTS 文件
::1            localhost

注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <捁牥吠畯?敒業摮牥><??散屲捁牥潔牵剜浥湩敤?硥e>  [N/A]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <Acer Tour><; >  [N/A]
    <SetPanel><; >  [N/A]
    <eRecoveryService><; >  [N/A]
    <tsnp325><; C:\Windows\tsnp325.exe>  []
    <snp325><; C:\Windows\vsnp325.exe>  []
(这两个上网查了,说是摄像头驱动……)

驱动程序
[blbdrive / blbdrive][Stopped/Disabled]
  <\SystemRoot\system32\drivers\blbdrive.sys><N/A>
gototop
 

雅虎助手  与 冰刃有冲突 用360等工具将其删除
gototop
 
12   1  /  2  页   跳转
页面顶部
Powered by Discuz!NT