==================================
注册表
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Realplayer.exe><; C:\WINDOWS\system32\Realplayer.exe> [File is missing]
<yassistse><; "C:\PROGRA~1\Yahoo!\Assistant\yassistse.exe"> [File is missing]
<YLive.exe><; > [N/A]
<YOKAssiant><; Rundll32.exe C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll,YOKAssiant> [File is missing]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
<CPushSetup><"C:\WINDOWS\system32\regsvr32.exe" /s "C:\Program Files\Common Files\PushWare\cpush.dll"> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{A39E36AE-59C1-59D1-69D1-69D269D26AD2}]
<N/A><C:\WINDOWS\system32\FamDiy.exe> [File is missing]
==================================
服务
[IPRIP / IPRIP][Running/Auto Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\icpb.dll><N/A>
[网络服务 / Network Services][Stopped/Auto Start]
<C:\WINDOWS\Window Med1a\silvergod.exe><N/A>
==================================
驱动程序
[aevg / aevgb][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\aevgb.sys><N/A>
[bcrlah1 / bcrlah15][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\bcrlah15.sys><N/A>
[filter / filter][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\filter.sys><N/A>
[nqneul9 / nqneul97][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\nqneul97.sys><N/A>
[nsysaudm / nsysaudm][Stopped/Manual Start]
<\??\C:\DOCUME~1\aa\LOCALS~1\Temp\nsysaudm.sys><N/A>
[xskes / xskes][Running/Boot Start]
<\SystemRoot\system32\drivers\xskes.sys><N/A>
[zduemz2 / zduemz25][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\zduemz25.sys><N/A>
[wmpobj / wmpobj][Running/Auto Start]
<\??\C:\Documents and Settings\All Users\Application Data\Microsoft\Media Player\obj\wmpobj.sys><N/A>
==================================
浏览器加载项
[网站排名工具条BHO]
{489873CE-F3E1-44A3-8E89-04BE26BE4446} <C:\Program Files\zzToolBar\Toolbar_bho.dll, (Signed)
www.chinarank.org.cn>
[CMsgCenter Class]
{6014EABC-B61A-4F07-A32B-440EAE835DF9} <C:\WINDOWS\system32\usmsho.dll, >
[JVMSurfer Class]
{686488AF-13D5-9DDF-4FEF-9FB88698CFC1} <C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\USERDATA\webbrowser_2005.dll, >
[网站排名工具条]
{0A1230F1-EB52-4CA3-9D34-DE2ABC2EED35} <C:\Program Files\zzToolBar\ToolBand.dll, (Signed)
www.chinarank.org.cn>
[Msp Class]
{EF9F1C48-1A63-495A-9317-B7B71B34A9CF} <C:\WINDOWS\Downloaded Program Files\dddmsp.dll, N/A>
[网站排名工具条]
{0A1230F1-EB52-4CA3-9D34-DE2ABC2EED35} <C:\Program Files\zzToolBar\ToolBand.dll, (Signed)
www.chinarank.org.cn>
[网站排名工具条BHO]
{489873CE-F3E1-44A3-8E89-04BE26BE4446} <C:\Program Files\zzToolBar\Toolbar_bho.dll, (Signed)
www.chinarank.org.cn>
[CMsgCenter Class]
{6014EABC-B61A-4F07-A32B-440EAE835DF9} <C:\WINDOWS\system32\usmsho.dll, >
[JVMSurfer Class]
{686488AF-13D5-9DDF-4FEF-9FB88698CFC1} <C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\USERDATA\webbrowser_2005.dll, >
==================================
正在运行的进程
C:\WINDOWS\Window Med1a\silverdll.dat
c:\windows\icpb.dll
c:\windows\avtapit.dll
C:\DOCUME~1\aa\LOCALS~1\Temp\CMDLIN~2.DLL
C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\USERDATA\webbrowser_2005.dll
C:\WINDOWS\system32\usmsho.dll
==================================