服务名称 是否运行 描述
RemoteRegistry [已停止] [说明:这个服务可能被利用远程操作注册表]
Windows Time [运行中] [说明:这个服务可能被黑客利用来启动木马]
Telnet [已停止] [说明:这个服务可能被黑客登录到您计算机]
Messenger [运行中] [说明:这个服务常被广告商用来发垃圾广告]
Server [运行中] [说明:如果你的电脑不用局域网中,可以关闭]
-----------------------计算机网络端口----------------------
协议 端口号 端口类型
TCP 135 微软DCE RPC end-point mapper服务
TCP 445 Microsoft-DS
TCP 1124 未知类型
TCP 1130 未知类型
TCP 1210 未知类型
TCP 1238 未知类型
TCP 1239 未知类型
TCP 1242 未知类型
TCP 1244 未知类型
TCP 1255 未知类型
TCP 1256 未知类型
TCP 1257 未知类型
TCP 1258 未知类型
TCP 1259 未知类型
TCP 1260 未知类型
TCP 1267 未知类型
TCP 1268 未知类型
TCP 1269 未知类型
TCP 1270 未知类型
TCP 1271 未知类型
TCP 1028 未知类型
TCP 139 微软Netbios Name服务(用于文件及打印机共享)
TCP 445 公共Internet文件系统(CIFS)
TCP 500 Internet密钥交换
TCP 1032 Akosch4
TCP 1039 未知类型
TCP 1040 未知类型
TCP 1041 未知类型
TCP 4500 sae-urn
TCP 123 未知类型
TCP 1900 未知类型
TCP 123 未知类型
TCP 1049 未知类型
TCP 1077 未知类型
TCP 1209 未知类型
TCP 1900 未知类型
TCP 123 未知类型
TCP 137 未知类型
TCP 138 未知类型
TCP 1900 未知类型
--------------------计算机系统组件体检----------------------
[编号:0]
[名称:\SystemRoot\System32\smss.exe]
[类型:运行进程]
[内容:未知]
[编号:1]
[名称:\??\C:\WINDOWS\system32\csrss.exe]
[类型:运行进程]
[内容:未知]
[编号:2]
[名称:\??\C:\WINDOWS\system32\winlogon.exe]
[类型:运行进程]
[内容:未知]
[编号:3]
[名称:C:\WINDOWS\system32\services.exe]
[类型:运行进程]
[内容:Microsoft(R) Windows(R) Operating System (C) Microsoft Corporation. All rights reserved.]
[编号:4]
[名称:C:\WINDOWS\system32\lsass.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:5]
[名称:C:\WINDOWS\system32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:6]
[名称:C:\WINDOWS\system32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:7]
[名称:C:\WINDOWS\System32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:8]
[名称:C:\WINDOWS\System32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:9]
[名称:C:\WINDOWS\System32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:10]
[名称:C:\WINDOWS\Explorer.EXE]
[类型:运行进程]
[内容:Microsoft(R) Windows(R) Operating System (C) Microsoft Corporation. All rights reserved.]
[编号:11]
[名称:C:\WINDOWS\system32\spoolsv.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:12]
[名称:C:\WINDOWS\system32\Rundll32.exe]
[类型:运行进程]
[内容:未知]
[编号:13]
[名称:C:\WINDOWS\System32\svchost.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:14]
[名称:C:\WINDOWS\system32\rundll32.exe]
[类型:运行进程]
[内容:未知]
[编号:15]
[名称:C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe]
[类型:运行进程]
[内容: YLive Copyright ? 2005]
[编号:16]
[名称:C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe]
[类型:运行进程]
[内容:Yahoo! AssistSetting Copyright cn.yahoo.com 2004]
[编号:17]
[名称:C:\WINDOWS\SOUNDMAN.EXE]
[类型:运行进程]
[内容:Avance Sound Manager Copyright (c) 2001-2002 Avance Logic, Inc.]
[编号:18]
[名称:C:\Program Files\Common Files\Real\Update_OB\realsched.exe]
[类型:运行进程]
[内容:RealPlayer (32-bit) Copyright ? RealNetworks, Inc. 1995-2004]
[编号:19]
[名称:C:\WINDOWS\system32\ctfmon.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:20]
[名称:C:\Program Files\MSN Messenger\msnmsgr.exe]
[类型:运行进程]
[内容:MSN Messenger Copyright (c) Microsoft Corporation 1997-2004]
[编号:21]
[名称:C:\WINDOWS\System32\alg.exe]
[类型:运行进程]
[内容:Microsoft? Windows? Operating System ? Microsoft Corporation. All rights reserved.]
[编号:22]
[名称:C:\WINDOWS\system32\rundll32.exe]
[类型:运行进程]
[内容:未知]
[编号:23]
[名称:C:\Program Files\完美卸载V2006\MainCon.exe]
[类型:运行进程]
[内容:MainCon 应用程序 版权所有 (C) 2004]
[编号:24]
[名称:C:\WINDOWS\system32\wuauclt.exe]
[类型:运行进程]
[内容:Microsoft(R) Windows(R) Operating System (C) Microsoft Corporation. All rights reserved.]
[编号:25]
[名称:C:\Program Files\完美卸载V2006\TrCleaner.exe]
[类型:运行进程]
[内容:TrCleaner 应用程序 版权所有 (C) 2004]
[编号:26]
[名称:C:\Program Files\完美卸载V2006\WmSysPro.exe]
[类型:运行进程]
[内容:系统保护+网络防火墙 版权所有 (C)剑锋工作室]
[编号:27]
[名称:C:\Program Files\完美卸载V2006\syssec.exe]
[类型:运行进程]
[内容:完美卸载V2006-ChinaHijackThis 版权所有 (C) 2006]
[编号:28]
[分隔符:---------------------------------------------------------------------]
[编号:29]
[名称:C:\WINDOWS\DOWNLO~1\CnsMin.dll]
[类型:已加载DLL]
[内容:3721 CnsMin 版权所有 (C) 2001 - 2005]
[编号:30]
[名称:C:\PROGRA~1\MMSASS~1\Mmsass~1.dll]
[类型:已加载DLL]
[内容:Vision Copyright 2006]
[编号:31]
[名称:C:\PROGRA~1\3721\helper.dll]
[类型:已加载DLL]
[内容:Helper Module Copyright 2004]
[编号:32]
[名称:C:\PROGRA~1\3721\alrex.dll]
[类型:已加载DLL]
[内容:alrex Module Copyright 2006]
[编号:33]
[名称:C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]
[类型:已加载DLL]
[内容:Helper Module Copyright 2004]
[编号:34]
[名称:C:\WINDOWS\DOWNLO~1\CnsHook.dll]
[类型:已加载DLL]
[内容:3721 CNS Module 版权所有 (C) 2001 - 2004]
[编号:35]
[名称:C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ywiper.dll]
[类型:已加载DLL]
[内容: Wiper 动态链接库 版权所有 (C) 2005]
[编号:36]
[名称:C:\Program Files\WinRAR\rarext.dll]
[类型:已加载DLL]
[内容:未知]
[编号:37]
[名称:C:\WINDOWS\DOWNLO~1\CnsMinIO.dll]
[类型:已加载DLL]
[内容:3721 CnsMinIO 版权所有 (C) 2001 - 2004]
[编号:38]
[名称:C:\WINDOWS\DOWNLO~1\cnsio.dll]
[类型:已加载DLL]
[内容:3721 CnsIO 版权所有 (C) 2001 - 2004]
[编号:39]
[名称:C:\PROGRA~1\3721\autolive.dll]
[类型:已加载DLL]
[内容:AutoLive Module Copyright 2004]
[编号:40]
[名称:C:\PROGRA~1\Yahoo!\ASSIST~1\YAlive.dll]
[类型:已加载DLL]
[内容:YAlive Module Copyright 2005]
[编号:41]
[名称:C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll]
[类型:已加载DLL]
[内容: LiveEx Copyright ? 2005]
[编号:42]
[名称:C:\PROGRA~1\Yahoo!\Assistant\shell\yAssecblk.dll]
[类型:已加载DLL]
[内容:yassecblk module ]
[编号:43]
[名称:C:\PROGRA~1\Yahoo!\Assistant\shell\yMenuInfo.dll]
[类型:已加载DLL]
[内容:Yahoo MenuInfo Copyright Yahoo!]
[编号:44]
[名称:C:\PROGRA~1\Yahoo!\Assistant\shell\yIEAngel.dll]
[类型:已加载DLL]
[内容:Yahoo IEAngel Copyright Yahoo! 2004]
[编号:45]
[名称:C:\PROGRA~1\Yahoo!\Assistant\shell\yAsMenu.dll]
[类型:已加载DLL]
[内容:yAsMenu module ]
[编号:46]
[名称:C:\Program Files\MSN Messenger\RICHED20.dll]
[类型:已加载DLL]
[内容:Jiangmin KV Copyright (C) 2004]
[编号:47]
[名称:C:\WINDOWS\system32\msdmo.dll]
[类型:已加载DLL]
[内容:(null) (null)]
[编号:48]
[名称:C:\Progra~1\IE-BAR\Cast\dmipn.dll]
[类型:已加载DLL]
[内容:Desktop Media 版权所有 (C) 2005 - 2006]
[编号:49]
[名称:C:\Progra~1\IE-BAR\Cast\dmshell.dll]
[类型:已加载DLL]
[内容:Desktop Media 版权所有 (C) 2005 - 2006]
[编号:50]
[名称:C:\Progra~1\IE-BAR\Cast\215~1.0\dmplayer.dll]
[类型:已加载DLL]
[内容:Desktop Media 版权所有 (C) 2005 - 2006]
[编号:51]
[名称:C:\Program Files\完美卸载V2006\ScanEngine.dll]
[类型:已加载DLL]
[内容:ScanEngine 完美病毒引擎文件 版权所有 (C) 2005]
[编号:52]
[名称:C:\WINDOWS\system32\Protect.sys]
[类型:已加载DLL]
[内容:未知]
[编号:53]
[分隔符:---------------------------------------------------------------------]
[编号:54]
[名称:IMJPMIG8.1]
[类型:开机启动]
[内容:"C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32]
[编号:55]
[名称:PHIME2002ASync]
[类型:开机启动]
[内容:C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC]
[编号:56]
[名称:PHIME2002A]
[类型:开机启动]
[内容:C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName]
[编号:57]
[名称:IgfxTray]
[类型:开机启动]
[内容:rem C:\WINDOWS\System32\igfxtray.exe]
[编号:58]
[名称:HotKeysCmds]
[类型:开机启动]
[内容:rem C:\WINDOWS\System32\hkcmd.exe]
[编号:59]
[名称:BigDogPath]
[类型:开机启动]
[内容:rem C:\WINDOWS\VM_STI.EXE USB PC Camera 301P]
[编号:60]
[名称:helper.dll]
[类型:开机启动]
[内容:C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32]
[编号:61]
[名称:YLive.exe]
[类型:开机启动]
[内容:C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe]
[编号:62]
[名称:yassistse]
[类型:开机启动]
[内容:"C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe"]
[编号:63]
[名称:CnsMin]
[类型:开机启动]
[内容:Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32]
[编号:64]
[名称:SoundMan]
[类型:开机启动]
[内容:SOUNDMAN.EXE]
[编号:65]
[名称:Windows木马防火墙]
[类型:开机启动]
[内容:C:\Program Files\ftc\Trojanwall.exe]