正在运行的进程
[PID: 1068][\SystemRoot\System32\smss.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1140][\??\C:\WINDOWS\system32\csrss.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1164][\??\C:\WINDOWS\system32\winlogon.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\NavLogon.dll] (Symantec Corporation)(9.0.1.1000)
[PID: 1208][C:\WINDOWS\system32\services.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1220][C:\WINDOWS\system32\lsass.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1380][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1444][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1536][C:\WINDOWS\System32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1604][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1664][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1896][C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe] (Symantec Corporation)(2.2.1.004)
[C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] (Symantec Corporation)(2.2.1.004)
[PID: 1924][C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe] (Symantec Corporation)(2.2.1.004)
[C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] (Symantec Corporation)(2.2.1.004)
[C:\PROGRA~1\COMMON~1\SYMANT~1\CCSETEVT.DLL] (Symantec Corporation)(2.2.1.004)
[PID: 2044][C:\WINDOWS\system32\spoolsv.exe] (Microsoft Corporation)(5.1.2600.2696 (xpsp_sp2_gdr.050610-1519))
[C:\WINDOWS\system32\EBPMON24.DLL] (SEIKO EPSON CORPORATION)(1, 12, 0, 0)
[PID: 136][C:\WINDOWS\system32\drivers\CDAC11BA.EXE] (Macrovision)(4.20.020)
[PID: 372][C:\Program Files\Symantec AntiVirus\DefWatch.exe] (Symantec Corporation)(9.0.1.1000)
[PID: 456][C:\Program Files\Symantec AntiVirus\Rtvscan.exe] (Symantec Corporation)(9.0.1.1000)
[C:\WINDOWS\system32\CBA.DLL] (Intel? Corporation)(6.12.0.126 E)
[C:\WINDOWS\system32\MsgSys.dll] (Intel? Corporation)(6.12.0.126 E)
[C:\WINDOWS\system32\NTS.dll] (Intel? Corporation)(6.12.0.126 E)
[C:\WINDOWS\system32\PDS.DLL] (Intel? Corporation)(6.12.0.126 E)
[C:\Program Files\Symantec AntiVirus\NAVLU.dll] (Symantec Corporation)(9.0.1.1000)
[C:\Program Files\Symantec AntiVirus\I2ldvp3.dll] (Symantec Corporation)(9.0.1.1000)
[C:\Program Files\Symantec AntiVirus\ecmldr32.DLL] (Symantec Corp.)(1.1.0.3)
[C:\Program Files\Symantec AntiVirus\SAVRT32.DLL] (Symantec Corporation)(9.3.0.28)
[C:\Program Files\Symantec AntiVirus\NAVNTUTL.DLL] (Symantec Corporation)(9.0.1.1000)
[C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060601.019\ecmsvr32.dll] (Symantec Corporation)(61.1.0.11)
[C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060601.019\NAVEX32a.DLL] (Symantec Corporation)(20061.1.0.14)
[C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060601.019\NAVENG32.DLL] (Symantec Corporation)(20061.1.0.14)
[C:\Program Files\Symantec AntiVirus\IMail.dll] (Symantec Corporation)(9.0.1.1000)
[C:\Program Files\Symantec AntiVirus\NotesExt.dll] (Symantec Corporation)(9.0.1.1000)
[C:\Program Files\Symantec AntiVirus\vpmsece2.dll] (Symantec Corporation)(9.0.1.1000)
[C:\Program Files\Symantec AntiVirus\DecSDK.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2ID.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2ZIP.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2SS.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2GZIP.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2CAB.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2LHA.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2ARJ.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2TNEF.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2LZ.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2AMG.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2TAR.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2RTF.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Symantec AntiVirus\Dec2Text.dll] (Symantec Corporation)(3.02.12.09)
[C:\Program Files\Common Files\Symantec Shared\SSC\scandlgs.dll] (Symantec Corporation)(9.0.1.1000)
[PID: 912][C:\WINDOWS\System32\alg.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1620][C:\WINDOWS\system32\wuauclt.exe] (Microsoft Corporation)(5.8.0.2469 built by: lab01_n(wmbla))
[PID: 424][C:\WINDOWS\Explorer.EXE] (Microsoft Corporation)(6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\system32\AcSignIcon.dll] (Autodesk)(16.0.0.86)
[C:\WINDOWS\Downloaded Program Files\Wkbf.dll] (Tencent)(4, 0, 9, 90)
[C:\WINDOWS\Downloaded Program Files\Gccr.dll] (Tencent)(4, 0, 9, 90)
[C:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] (Autodesk)(16.0.0.86)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[C:\PROGRA~1\Yahoo!\ASSIST~1\YAlive.dll] ()(2, 0, 5, 1031)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll] ( )(2, 0, 1, 1007)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasnoad.dll] ()(1, 1, 4, 1006)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yzsNetProto.dll] (Yahoo)(1, 0, 0, 1)
[C:\WINDOWS\system32\Xicyzb.dll] (N/A)(N/A)
[c:\progra~1\yahoo!\assist~1\assist\yadfil~1.dll] ( )(1, 0, 3, 1002)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yrepair.dll] (Yahoo)(1, 0, 5, 1009)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasfsks.dll] (3721.com)(2, 1, 1, 87)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yoptimum.dll] (Yahoo)(1, 0, 1, 1001)
[C:\PROGRA~1\yahoo!\assistant\Shell\yAssecblk.dll] (Yahoo)(1, 0, 2, 1002)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yXPStyle.dll] (Yahoo)(1, 0, 2, 1309)
[PID: 792][C:\WINDOWS\system32\wuauclt.exe] (Microsoft Corporation)(5.8.0.2469 built by: lab01_n(wmbla))
[C:\WINDOWS\Downloaded Program Files\Wkbf.dll] (Tencent)(4, 0, 9, 90)
[PID: 564][C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe] ( )(2, 0, 0, 1002)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[C:\WINDOWS\Downloaded Program Files\Wkbf.dll] (Tencent)(4, 0, 9, 90)
[C:\PROGRA~1\Yahoo!\ASSIST~1\YAlive.dll] ()(2, 0, 5, 1031)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll] ( )(2, 0, 1, 1007)
[C:\PROGRA~1\Yahoo!\ASSIST~1\ynotifier.dll] ()(1, 0, 0, 5)
[PID: 956][C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe] (Yahoo!)(1, 0, 1, 1001)
[C:\WINDOWS\Downloaded Program Files\Wkbf.dll] (Tencent)(4, 0, 9, 90)
[C:\PROGRA~1\Yahoo!\Assistant\shell\yAsMenu.dll] (Yahoo)(1, 0, 1, 1006)
[C:\PROGRA~1\Yahoo!\Assistant\shell\yAssecblk.dll] (Yahoo)(1, 0, 2, 1002)
[C:\PROGRA~1\Yahoo!\Assistant\shell\yIEAngel.dll] (Yahoo)(1, 0, 1, 1001)
[C:\PROGRA~1\Yahoo!\Assistant\shell\yMenuInfo.dll] (Yahoo)(1, 0, 0, 2)
[PID: 988][C:\WINDOWS\system32\ctfmon.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[C:\WINDOWS\Downloaded Program Files\Wkbf.dll] (Tencent)(4, 0, 9, 90)
[PID: 3196][G:\SREng2\SREng.exe] (Smallfrogs Studio)(2.0.21.505)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[C:\WINDOWS\Downloaded Program Files\Wkbf.dll] (Tencent)(4, 0, 9, 90)
--------------------------------------------------------------------------------
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]