2014-03-18,18:02:42
SysLog Scanner 3.1 - build 20100608
Arswp ([url]http://www.arswp.com[/url])
Windows XP Professional Service Pack 3 (build 2600)
================================================================
注册项
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<Advanced SystemCare 7> <"F:\xiufu\Advanced SystemCare 7\ASCTray.exe" /Auto> [(Verified)IObit, 7.0.0.322]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<RTHDCPL> <RTHDCPL.EXE> [(Verified)Realtek Semiconductor Corp., 2.4.2.2]
<SoundMan> <SOUNDMAN.EXE> [(Verified)Realtek Semiconductor Corp., 1, 0, 0, 32]
<AlcWzrd> <ALCWZRD.EXE> [(Verified)RealTek Semicoductor Corp., 1.1.0.37]
<Alcmtr> <ALCMTR.EXE> [(Verified)Realtek Semiconductor Corp., 1, 6, 0, 4]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<Userinit> <C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
[HKEY_CURRENT_USER\Control Panel\Desktop]
<SCRNSAVE.EXE> <C:\WINDOWS\System32\logon.scr> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd]
<StartupPrograms> <rdpclip> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders]
<SecurityProviders> <msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll> [(Verified)Microsoft Corporation, 6.00.7755 | (Verified)Microsoft Corporation, 5.1.2600.6175 (xpsp_sp3_qfe.111116-1647) | (Verified)Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105) | (Verified)Microsoft Corporation, 6.1.1825.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components]
<{44BBA842-CC51-11CF-AAFA-00AA00B6015B}> <rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105) | (Verified)Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105) | (Verified)N/A]
<{6BF52A52-394A-11d3-B153-00C04F79FAA6}> <rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105) | (Verified)Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105) | N/A]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt]
<使用迅雷精简版下载> <C:\Program Files\Thunder Network\MiniThunder\BHO\minixlgeturl.htm> [N/A]
<使用迅雷精简版下载全部链接> <C:\Program Files\Thunder Network\MiniThunder\BHO\minixlgetAllurl.htm> [N/A]
================================================================
启动组
================================================================
任务计划
[Driver Booster Update.job]
<C:\WINDOWS\tasks\Driver Booster Update.job> <"C:\Program Files\IObit\Driver Booster\AutoUpdate.exe" /auto> [(Verified)IObit, 1.0.0.338]
[Driver Booster Scan.job]
<C:\WINDOWS\tasks\Driver Booster Scan.job> <"C:\Program Files\IObit\Driver Booster\Scheduler.exe" /scan> [(Verified)IObit, 1.3.0.10]
================================================================
组件
--------------------------------
Shell Extension
[Display Panning CPL Extension]
<{42071714-76d4-11d1-8b24-00a0c9068ff3}> <deskpan.dll> []
[任务栏和「开始」菜单]
<{0DF44EAA-FF21-4412-828E-260A8728E7F1}> <> []
[360软件管家右键卸载 Shell Extension]
<{5E19C0CE-C02C-46c2-98C3-A2E12EDE0E17}> <C:\Program Files\360\360Safe\SoftMgr\SoftMgrExt.dll> [(Verified)360.cn, 1, 0, 0, 1005]
[HaoZip Shell Extension]
<{5FED836A-C96C-4d88-A91E-F63F07726585}> <C:\Program Files\HaoZip\HaoZipExt.dll> [(Verified)好压软件工作室, 2.5.1.8008]
[UnLockerMenu]
<{A6FF0E3A-8437-482C-8E04-4F9E15C57538}> <F:\xiufu\IObit Uninstaller\UninstallMenuRight32.dll> [(Verified)IObit, 1.2.0.2]
--------------------------------
ToolBar
[ExplorerWnd Helper]
<{10921475-03CE-4E04-90CE-E2E7EF20C814}> <F:\xiufu\IObit Uninstaller\UninstallExplorer32.dll> [(Verified)IObit, 1.0.7.15]
--------------------------------
Protocols
[]
<{6AC4FBC7-AA38-45EC-9634-D6D20B679EFC}> <C:\PROGRA~1\KuGou7\KUGOO3~1.OCX> [(Verified)广州酷狗计算机科技有限公司, 1.0.0.0]
--------------------------------
Context Menu
[HaoZip]
<{5FED836A-C96C-4d88-A91E-F63F07726585}> <C:\Program Files\HaoZip\HaoZipExt.dll> [(Verified)好压软件工作室, 2.5.1.8008]
[Advanced SystemCare]
<{2803063F-4B8D-4dc6-8874-D1802487FE2D}> <F:\xiufu\Advanced SystemCare 7\ASCExtMenu.dll> [(Verified)IObit, 7, 0, 5, 5]
[IObit Malware Fighter]
<{0BB81440-5F42-4480-A5F7-770A6F439FC8}> <C:\Program Files\IObit\IObit Malware Fighter\IMFShellExt.dll> [(Verified)IObit, 1, 0, 0, 5]
[Safe360Ext]
<{7C0F6D57-E799-4C8A-A319-8E2B4D724CF0}> <C:\Program Files\360\360Safe\Utils\shell360ext.dll> [(Verified)360.cn, 7, 5, 0, 1060]
[SD360]
<{086F171D-5ED1-4ED2-B736-CFF3AD6A128E}> <C:\Program Files\360\360sd\MenuEx.dll> [(Verified)360.cn, 2, 1, 0, 2071]
[UnLockerMenu]
<{A6FF0E3A-8437-482C-8E04-4F9E15C57538}> <F:\xiufu\IObit Uninstaller\UninstallMenuRight32.dll> [(Verified)IObit, 1.2.0.2]
--------------------------------
BrowserHelperObject
[ExplorerWnd Helper]
<{10921475-03CE-4E04-90CE-E2E7EF20C814}> <F:\xiufu\IObit Uninstaller\UninstallExplorer32.dll> [(Verified)IObit, 1.0.7.15]
[迅雷下载支持]
<{889D2FEB-5411-4565-8998-1DD2C5261283}> <C:\Program Files\Thunder Network\MiniThunder\BHO\XunleiBHO7.2.4.3316.dll> [(Verified)Xunlei Tech Network, 7, 2, 4, 3316]
[SafeMon Class]
<{B69F34DD-F0F9-42DC-9EDD-957187DA688D}> <C:\Program Files\360\360Safe\safemon\safemon.dll> [(Verified)360.cn, 6, 8, 9, 1030]
[Advanced SystemCare Browser Protection]
<{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}> <C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL> [(Verified)IObit, 7.0.0.0]
--------------------------------
ActiveX Extension
[Agent Class]
<{485463B7-8FB2-4B3B-B29B-8B919B0EACCE}> <C:\Program Files\Thunder Network\MiniThunder\BHO\ThunderAgent7.2.4.3316.dll> [(Verified)深圳市迅雷网络技术有限公司, 7, 2, 4, 3316]
[360SafeLive]
<{87515F61-A66C-4319-A0E0-D416CB8059E3}> <C:\Program Files\360\360Safe\Safelive.dll> [(Verified)360.cn, 2, 0, 1, 1009]
[迅雷下载支持]
<{889D2FEB-5411-4565-8998-1DD2C5261283}> <C:\Program Files\Thunder Network\MiniThunder\BHO\XunleiBHO7.2.4.3316.dll> [(Verified)Xunlei Tech Network, 7, 2, 4, 3316]
[Shockwave Flash Object]
<{D27CDB6E-AE6D-11CF-96B8-444553540000}> <C:\WINDOWS\system32\Macromed\Flash\Flash11e.ocx> [(Verified)Adobe Systems, Inc., 11,1,102,55]
[PPLive Lite Class]
<{EF0D1A14-1033-41A2-A589-240C01EDC078}> <C:\Program Files\Internet Explorer\PPLite\plugin\pplugin2.dll> [(Verified)Copyright 2008, 1, 1, 0, 34]
================================================================
服务
[Human Interface Device Access / HidServ][Stopped/Manual Start]
<%SystemRoot%\System32\svchost.exe -k netsvcs --> "%SystemRoot%\System32\hidserv.dll"> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[360 杀毒实时防护服务 / 360rp][Stopped/Auto Start]
<"C:\Program Files\360\360sd\360rps.exe"> [(Verified)360.cn, 3, 0, 0, 2093]
[Advanced SystemCare Service 7 / AdvancedSystemCareService7][Stopped/Auto Start]
<F:\xiufu\Advanced SystemCare 7\ASCService.exe> [(Verified)IObit, 7.0.0.9]
[DriverGenius Core Service / DGPNPSEV][Stopped/Auto Start]
<F:\qudong\DriverGenius2013\DgService.exe> [(Verified)MyDrivers.com, 8.0.114.1003]
[IMF Service / IMFservice][Stopped/Auto Start]
<C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe> [(Verified)IObit, 2.0.0.12]
[LiveUpdate / LiveUpdateSvc][Stopped/Auto Start]
<C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe> [(Verified)IObit, 2.0.0.653]
[主动防御 / ZhuDongFangYu][Stopped/Auto Start]
<"C:\Program Files\360\360Safe\deepscan\zhudongfangyu.exe"> [(Verified)360.cn, 3, 2, 2, 1031]
================================================================
驱动
[590E7520 / 590E7520][Stopped/Auto Start]
<\??\F:\新建文件夹\KS_KILLER\590E7520.sys> []
[5920ADA8 / 5920ADA8][Stopped/Auto Start]
<\??\F:\新建文件夹\KS_KILLER\5920ADA8.sys> []
[DgSafe / DgSafe][Stopped/Auto Start]
<\??\C:\WINDOWS\system32\drivers\DgSafe.sys> []
[skvkrpr / skvkrpr][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\Drivers\skvkrpr.sys> [Kingsoft Corporation, 2011, 5, 30, 0]
[viamraid / viamraid][Stopped/Boot Start]
<system32\DRIVERS\viamraid.sys> [VIA Technologies inc,.ltd, 5.1.6000.581]
[360AvFlt mini-filter driver / 360AvFlt][Stopped/System Start]
<system32\DRIVERS\360AvFlt.sys> [(Verified)360.cn, 1.0.0.1005]
[360Box mini-filter driver / 360Box][Stopped/Manual Start]
<system32\DRIVERS\360Box.sys> [(Verified)360安全中心, 1.1.0.1007]
[360netmon / 360netmon][Stopped/System Start]
<\??\C:\WINDOWS\system32\drivers\360netmon.sys> [(Verified)360.cn, 2.1.11.1011]
[360SelfProtection / 360SelfProtection][Stopped/System Start]
<system32\drivers\360SelfProtection.sys> [(Verified)360安全中心, 1, 0, 0, 1290]
[Ambfilt / Ambfilt][Stopped/Manual Start]
<system32\drivers\Ambfilt.sys> [(Verified)Creative, 5.10.00.4240]
[AtpKrnl / AtpKrnl][Stopped/Manual Start]
<System32\Drivers\AtpKrnl.sys> [(Verified)[url]www.arswp.com[/url], 3.00]
[BAPIDRV / BAPIDRV][Stopped/System Start]
<\??\C:\WINDOWS\system32\drivers\BAPIDRV.SYS> [(Verified)360.cn, 1.0.0.1032]
[EfiSystemMon / EfiMon][Stopped/System Start]
<System32\Drivers\Efimon.sys> [(Verified)360安全中心, 1, 0, 0, 1009]
[Creative AudioPCI (ES1371,ES1373) (WDM) / es1371][Stopped/Manual Start]
<system32\drivers\es1371mp.sys> [(Verified)Creative Technology Ltd., 5.1.2501.0 built by: WinDDK]
[Microsoft 用于 High Definition Audio 的 UAA 总线驱动程序 / HDAudBus][Running/Manual Start]
<system32\DRIVERS\HDAudBus.sys> [(Verified)Windows (R) Server 2003 DDK provider, 5.10.01.5013 built by: WinDDK]
[HookPort / HookPort][Stopped/Boot Start]
<System32\Drivers\Hookport.sys> [(Verified)360安全中心, 1, 1, 0, 1006]
[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Stopped/Manual Start]
<system32\drivers\RtkHDAud.sys> [(Verified)Realtek Semiconductor Corp., 5.10.0.7111 built by: WinDDK]
[ksapi / ksapi][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\drivers\ksapi.sys> [(Verified)Kingsoft Corporation, 2013, 2, 21, 10086]
[Monfilt / Monfilt][Stopped/Manual Start]
<system32\drivers\Monfilt.sys> [(Verified)Creative Technology Ltd., 5.10.0.4112]
[nv / nv][Stopped/Manual Start]
<system32\DRIVERS\nv4_mini.sys> [(Verified)NVIDIA Corporation, 6.14.12.9610]
[AMD PCNET Compatable Adapter Driver / PCnet][Stopped/Manual Start]
<system32\DRIVERS\pcntpci5.sys> [(Verified)AMD Inc., 4.38.00 built by: WinDDK]
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys> [(Verified)Parallel Technologies, Inc., 1.10 (XPClient.010817-1148)]
[Quantum DeepScanner Servers / quxxxserv][Stopped/System Start]
<\??\C:\WINDOWS\system32\drivers\quxxxrv.sys> [(Verified)360.cn, 7.0.0.1007]
[qutmipc / qutmipc][Stopped/System Start]
<\??\C:\WINDOWS\system32\drivers\qutmipc.sys> [(Verified)360.cn, 6.9.0.1005]
[Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver / RTLE8023xp][Running/Manual Start]
<system32\DRIVERS\Rtenicxp.sys> [(Verified)Realtek Semiconductor Corporation , 5.820.1028.2013 built by: WinDDK]
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys> [(Verified)Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K., 4.03.086]
[ATI SiI-3531 SATA Controller / SI3531][Stopped/Boot Start]
<System32\Drivers\Si3531.sys> [(Verified)Silicon Image, Inc, 1, 5, 12, 0]
[SATALink driver accelerator / SiFilter][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\SiWinAcc.sys> [(Verified)Silicon Image, Inc., 1.0.0.11]
================================================================
活动进程
[PID: 684 / SYSTEM] \??\C:\WINDOWS\system32\winlogon.exe [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
C:\WINDOWS\system32\sfc_os.dll [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 740 / SYSTEM] C:\WINDOWS\system32\lsass.exe [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 908 / SYSTEM] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 976 / NETWORK SERVICE] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 1128 / SYSTEM] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 1140 / NETWORK SERVICE] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 1216 / LOCAL SERVICE] C:\WINDOWS\system32\svchost.exe [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 1636 / Administrator] C:\WINDOWS\Explorer.EXE [(Verified)Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
C:\Program Files\360\360sd\MenuEx.dll [(Verified)360.cn, 2, 1, 0, 2071]
C:\Program Files\360\360Safe\Utils\shell360ext.dll [(Verified)360.cn, 7, 5, 0, 1060]
C:\Program Files\360\360Safe\360Common.dll [(Verified)360.cn, 7, 3, 0, 1030]
C:\Program Files\HaoZip\HaoZipExt.dll [(Verified)好压软件工作室, 2.5.1.8008]
F:\xiufu\IObit Uninstaller\UninstallMenuRight32.dll [(Verified)IObit, 1.2.0.2]
C:\Program Files\IObit\IObit Malware Fighter\IMFShellExt.dll [(Verified)IObit, 1, 0, 0, 5]
F:\xiufu\Advanced SystemCare 7\ASCExtMenu.dll [(Verified)IObit, 7, 0, 5, 5]
C:\Program Files\360\360Safe\SoftMgr\SoftMgrExt.dll [(Verified)360.cn, 1, 0, 0, 1005]
[PID: 2040 / Administrator] C:\WINDOWS\system32\conime.exe [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 520 / Administrator] F:\xiufu\Advanced SystemCare 7\ASCTray.exe [(Verified)IObit, 7.0.0.322]
F:\xiufu\Advanced SystemCare 7\rtl120.bpl [(Verified)Embarcadero Technologies, Inc., 12.0.3210.17555]
F:\xiufu\Advanced SystemCare 7\vcl120.bpl [(Verified)Embarcadero Technologies, Inc., 12.0.3210.17555]
F:\xiufu\Advanced SystemCare 7\taskMgr.dll [(Verified)IObit, 7.0.0.311]
F:\xiufu\Advanced SystemCare 7\datastate.dll [(Verified)IObit, 1, 0, 2, 4]
F:\xiufu\Advanced SystemCare 7\webres.dll [(Verified)N/A]
C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 544 / Administrator] F:\xiufu\Advanced SystemCare 7\Asc.exe [(Verified)IObit, 7.0.5.360]
F:\xiufu\Advanced SystemCare 7\rtl120.bpl [(Verified)Embarcadero Technologies, Inc., 12.0.3210.17555]
F:\xiufu\Advanced SystemCare 7\vcl120.bpl [(Verified)Embarcadero Technologies, Inc., 12.0.3210.17555]
F:\xiufu\Advanced SystemCare 7\webres.dll [(Verified)N/A]
F:\xiufu\Advanced SystemCare 7\vclx120.bpl [(Verified)Embarcadero Technologies, Inc., 12.0.3210.17555]
F:\xiufu\Advanced SystemCare 7\sqlite3.dll [(Verified)N/A]
F:\xiufu\Advanced SystemCare 7\datastate.dll [(Verified)IObit, 1, 0, 2, 4]
F:\xiufu\Advanced SystemCare 7\PowerConfig.dll [(Verified)IObit, 1.1.0.40]
F:\xiufu\Advanced SystemCare 7\Scan.dll [(Verified), 1.0.0.1205]
F:\xiufu\Advanced SystemCare 7\sdlib.dll [(Verified)IObit, 1.0.0.76]
F:\xiufu\Advanced SystemCare 7\sdcore.dll [(Verified)IObit, 1.0.0.76]
C:\WINDOWS\system32\uxtheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 240 / SYSTEM] C:\WINDOWS\system32\wbem\wmiprvse.exe [(Verified)Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_gdr.090206-1234)]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[PID: 1928 / Administrator] F:\qudong\DriverGenius2013\ksoft\softmain.exe [(Verified)MyDrivers.com, 8.0.305.1025]
F:\qudong\DriverGenius2013\ksoft\ksCache.dll [(Verified)MyDrivers.com, 8.0.305.1025]
F:\qudong\DriverGenius2013\ksoft\tinyxml.dll [(Verified)N/A]
F:\qudong\DriverGenius2013\ksoft\ksfskin.dll [(Verified)N/A]
F:\qudong\DriverGenius2013\kdump.dll [(Verified)Kingsoft Corporation, 2013,07,09,3620]
F:\qudong\DriverGenius2013\ksoft\kinfoc.dll [(Verified)Kingsoft Corporation, 2012,04,16,2906]
C:\WINDOWS\system32\UxTheme.dll [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
F:\qudong\DriverGenius2013\ksoft\zlib1.dll [(Verified)(C) 1995-2004 Jean-loup Gailly & Mark Adler, 1.2.3]
F:\qudong\DriverGenius2013\ksoft\klogin.dll [(Verified)Kingsoft Corporation, 4.5.2.3001]
F:\qudong\DriverGenius2013\ksoft\kvip\kvipinter.dll [(Verified)Kingsoft Corporation, 2012,10,18,110]
F:\qudong\DriverGenius2013\ksoft\softmgr.dll [(Verified)MyDrivers.com, 8.0.127.1008]
F:\qudong\DriverGenius2013\ksoft\qqdl\DownloadProxy.dll [(Verified)Tencent, 1, 0, 101, 7]
F:\qudong\DriverGenius2013\ksoft\qqdl\bittransport.dll [(Verified)N/A]
[PID: 1884 / Administrator] F:\新建文件夹 (2)141\arswp3\arswp3.exe [(Verified)Windows 清理助手, 3.1.8.0415]
C:\WINDOWS\system32\UXTHEME.DLL [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
C:\WINDOWS\system32\Macromed\Flash\Flash11e.ocx [(Verified)Adobe Systems, Inc., 11,1,102,55]
================================================================
文件关联
[.wav] <"C:\Program Files\KuGou7\Kugou7.exe" /Open "%1"> [(Verified)Copyright 2011, 7,1,26,13141]
================================================================
Autorun.Inf
================================================================
Winsock提供者
================================================================
隐藏进程
================================================================
可疑文件
================================================================
HOSTS
127.0.0.1 localhost
用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; 360SE)