瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 瑞星的小绿伞变红伞了,高手救救啊!

1   1  /  1  页   跳转

瑞星的小绿伞变红伞了,高手救救啊!

瑞星的小绿伞变红伞了,高手救救啊!

瑞星监控打不开了,帮帮忙吧!
以下是我的日志,帮忙看看吧!谢谢了!
Logfile of Kaka v2. 0. 0. 9 Scan Module v2. 0. 0. 1
Scan saved at 20:38:11, on 2006-07-31
Platform: Microsoft Windows XP Professional  (Build 2600)
MSIE: Internet Explorer v6.00  (6.00.2600.0000 (xpclient.010817-1148))


Running processes:
[SMSS.EXE]
CommandLine =

[CSRSS.EXE]
CommandLine = C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16

[WINLOGON.EXE]
CommandLine = winlogon.exe

[SERVICES.EXE]
CommandLine = C:\WINDOWS\system32\services.exe

[LSASS.EXE]
CommandLine = C:\WINDOWS\system32\lsass.exe

[SVCHOST.EXE]
CommandLine = C:\WINDOWS\system32\svchost -k rpcss

[SVCHOST.EXE]
CommandLine = C:\WINDOWS\System32\svchost.exe -k netsvcs

[SVCHOST.EXE]
CommandLine = C:\WINDOWS\System32\svchost.exe -k NetworkService

[EXPLORER.EXE]
CommandLine = C:\WINDOWS\Explorer.EXE

[SVCHOST.EXE]
CommandLine = C:\WINDOWS\System32\svchost.exe -k LocalService

[SPOOLSV.EXE]
CommandLine = C:\WINDOWS\system32\spoolsv.exe

[RavTask.exe]
CommandLine = "C:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE" -SYSTEM

[HKServ.exe]
CommandLine = "C:\Program Files\Sony\HotKey Utility\HKserv.exe"

[RavMon.exe]
CommandLine = "C:\Program Files\Rising\Rav\Ravmon.exe" -SYSTEM

[ezSP_Px.exe]
CommandLine = "C:\WINDOWS\System32\ezSP_Px.exe"

[ATIPTAXX.EXE]
CommandLine = "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"

[Apoint.exe]
CommandLine = "C:\Program Files\Apoint\Apoint.exe"

[SRIECLI.EXE]
CommandLine = "C:\Program Files\Super Rabbit\MagicSet\SRIECLI.EXE" /LOAD

[CTFMON.EXE]
CommandLine = "C:\WINDOWS\System32\ctfmon.exe"

[VnetClient.exe]
CommandLine = "C:\Program Files\ChinaNet\VnetClient.exe"

[PcfMgr.exe]
CommandLine = "C:\Program Files\PowerPanel\Program\PcfMgr.exe" /launch

[ApntEx.exe]
CommandLine = "Apntex.exe"

[CONIME.EXE]
CommandLine = C:\WINDOWS\System32\conime.exe

[HKWnd.exe]
CommandLine = "C:\Program Files\Sony\HotKey Utility\HKWnd.exe"

[ALG.EXE]
CommandLine = C:\WINDOWS\System32\alg.exe

[ATI2EVXX.EXE]
CommandLine = C:\WINDOWS\System32\Ati2evxx.exe

[RsAgent.exe]
CommandLine = "C:\Program Files\Rising\Rav\RsAgent.exe"

[AGENTSVR.EXE]
CommandLine = C:\WINDOWS\msagent\AgentSvr.exe -Embedding

[wuauclt.exe]
CommandLine = "C:\WINDOWS\System32\wuauclt.exe"

[KkScan.exe]
CommandLine = "C:\Program Files\Rising\KakaToolBar\KkScan.exe"

R3 - URLSearchHook: bho Class - {ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270} - C:\PROGRA~1\COMMON~1\Wnwb\wnwbio.dll
O1 - Hosts: 127.0.0.1      localhost
O2 - BHO: IE Address Browser Helper - {2A0176FE-008B-4706-90F5-BBA532A49731} - C:\Program Files\SearchNet\SNHpr.dll
O2 - BHO: bho Class - {ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270} - C:\PROGRA~1\COMMON~1\Wnwb\wnwbio.dll
O3 - Toolbar: 电台(&R) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: 卡卡上网安全助手 - {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} - C:\WINDOWS\System32\KakaTool.dll
O4 - HKCU\..\Run: [Super Rabbit IEPro] C:\Program Files\Super Rabbit\MagicSet\SRIECLI.EXE /LOAD
O4 - HKCU\..\Run: [MSMSGS] rem "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKLM\..\Run: [SearchNet_Up] "C:\Program Files\SearchNet\ServeUp.exe"
O4 - HKLM\..\Run: [wdo59k2f] RunDll32 "C:\WINDOWS\Downlo~1\wdo59k2f.dll",Run
O4 - HKLM\..\Run: [serfnu] RunDll32 "C:\WINDOWS\Downlo~1\serfnu.dll",Run
O4 - HKLM\..\Run: [rshz] RunDll32 "C:\WINDOWS\Downlo~1\rshz.dll",Run
O4 - HKLM\..\Run: [rs791i8l] RunDll32 "C:\WINDOWS\Downlo~1\rs791i8l.dll",Run
O4 - HKLM\..\Run: [RfwMain] "C:\Program Files\3721\Rising\Rfw\rfwmain.exe" -Startup
O4 - HKLM\..\Run: [RemoteControl] rem "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - HKLM\..\Run: [r0rny0] RunDll32 "C:\WINDOWS\Downlo~1\r0rny0.dll",Run
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ozfn5] RunDll32 "C:\WINDOWS\Downlo~1\ozfn5.dll",Run
O4 - HKLM\..\Run: [n42yto] RunDll32 "C:\WINDOWS\Downlo~1\n42yto.dll",Run
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [mh81] RunDll32 "C:\WINDOWS\Downlo~1\mh81.dll",Run
O4 - HKLM\..\Run: [IMSCMig] C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload
O4 - HKLM\..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [HKSERV.EXE] C:\Program Files\Sony\HotKey Utility\HKserv.exe
O4 - HKLM\..\Run: [g5cfmy] RunDll32 "C:\WINDOWS\Downlo~1\g5cfmy.dll",Run
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [CdnCtr] ; "C:\Program Files\SearchNet\ServeUp.exe"
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [a7i] RunDll32 "C:\WINDOWS\Downlo~1\a7i.dll",Run
O4 - HKLM\..\Run: [CnsMin] Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32
O4 - HKLM\..\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - Startup: desktop.ini =
O4 - Global Startup: desktop.ini =
O4 - Global Startup: 星空极速.lnk = C:\Program Files\ChinaNet\VnetClient.exe
O4 - Global Startup: PowerPanel.lnk = C:\Program Files\PowerPanel\Program\PcfMgr.exe
O8 - Extra context menu item: 导出到 Microsoft Office Excel(&X) - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra Button: @shdoclc.dll,-866 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: @shdoclc.dll,-864 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\System32\shdocvw.dll
O10 - Unknown file in Winsock LSP: C:\WINDOWS\System32\cdnns.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
O16 - DPF: {B83FC273-3522-4CC6-92EC-75CC86678DA4} - http://download.3721.com/download/CnsMin.cab
O16 - DPF: {D0A29C6C-AA71-4423-8C4A-5998B774C448} - http://download.ourgame.com/IEDown4.cab
O16 - DPF: {F2EB8999-766E-4BF6-AAAD-188D398C0D0B} (PBActiveX40 Control) - http://szdl.cmbchina.com/download/PB/pb50.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{6564D0B3-
最后编辑2006-07-31 22:39:17
分享到:
gototop
 

这个看着别扭
请下载 System Repair Engineer,使用“智能扫描”,按下“扫描”按钮进行扫描,扫描完成后按下“保存报告”按钮保存报告日志文件(SREng.LOG),把保存的报告日志文件内容复制-粘贴上来
下载网址
http://www.kztechs.com/sreng/sreng2.zip
http://forum.ikaka.com/topic.asp?board=67&artid=5188931
日志一次粘不完,分次粘完,请不要修改。
gototop
 

修复
O2 - BHO: IE Address Browser Helper - {2A0176FE-008B-4706-90F5-BBA532A49731} - C:\Program Files\SearchNet\SNHpr.dll
O4 - HKLM\..\Run: [helper.dll] C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
O10 - Unknown file in Winsock LSP: C:\WINDOWS\System32\cdnns.dll


删除文件
C:\Program Files\SearchNet\SNHpr.dll

3721删除掉。


010项解决方法
请到http://forum.ikaka.com/topic.asp?board=67&artid=5188931,下载,LSPFix.exe,WinsockXPFix这两个软件
重新启动电脑, 开机检测完后, 按[F8]键(可以一直按到启动菜单出来为止), 选择安全模式进入Windows

运行LSPFix.exe
附说明一份
LSPFix.exe这个软件主要用来辅助修复HijackThis扫描发现的O10项。
使用时,请关闭所有IE界面和文件夹界面后运行LSPFix,运行后,把quartz32.dll从左边转到右边,点“Finish”即可。(不过这之前,需要在“I know what I`m doing”前面打勾。)

修复后重启,如果无法上网,请运行WinsockXPFix,让它修复一下。
gototop
 

我到http://forum.ikaka.com/topic.asp?board=67&artid=5188931,下载LSPFix.exe,可是下载下来的是4483172005525221146.rar,里面的内容全是一些乱七八糟的东西:Rar! 蠍s 
      緕t@?
?   门?)惫23    LSPFix汉化版.exe l?ISHr .exe 特蘭閳墠?iFW.瓴珳錟]?3鄜疅L⒀i>?? 葽係E->评i? @?  ??? 訜鶟? ???Klj?C慃{媠3?`鹀橕 麐?G諝L孋B埻€?"z'???:E兿? ?!€癬?迌C鰛o鲀?鮺€???鳜?巈﨎┨'?|p€诿控?Km熇%甽庮顎_p/鶲虔^柋??腘剡靈@葵沎楟?cNq_碫??妖?盔 鬹'z    镐馀Og X#[w?唼?凗浛鰇塞睈葵??馦?矤€瘿o樵腐? 3F欉?綅#C?摨?彥g(*!f?F翯艳 鎥    欯臦鮭?櫄Ed?`瑭狄禋f猉Vpo钠q銙霦"?^T3??苬j
怎么回事?
gototop
 

oo123oo3:
我到http://forum.ikaka.com/topic.asp?board=67&artid=5188931,下载LSPFix.exe,可是下载下来的是4483172005525221146.rar,里面的内容全是一些乱七八糟的东西:Rar! 蠍s
緕t@?
?  门?)惫23 LSPFix汉化版.exe l?ISHr .exe 特蘭閳墠?iFW.瓴珳錟]?3鄜疅L⒀i>?? 葽係E->评i? @?  ??? 訜鶟? ???Klj?C慃{媠3?`鹀橕 麐?G諝L孋B埻€?"z'???:E兿? ?!€癬?迌C鰛o鲀?鮺€???鳜?巈﨎┨'?|p€诿控?Km熇%甽庮顎_p/鶲虔^柋??腘剡靈@葵沎楟?cNq_碫??妖?盔 鬹'z 镐馀Og X#[w?唼?凗浛鰇塞睈葵??馦?矤€瘿o樵腐? 3F欉?綅#C?摨?彥g(*!f?F翯艳 鎥 欯臦鮭?櫄Ed?`瑭狄禋f猉Vpo钠q銙霦"?^T3??苬j
  怎么回事?
gototop
 

用System Repair Engineer扫了份日志,请帮我看看,谢谢!!
gototop
 

2006-07-31,22:31:10

System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional  (Build 2600)
- 管理权限用户 - 完整功能

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联


启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <Super Rabbit IEPro><C:\Program Files\Super Rabbit\MagicSet\SRIECLI.EXE /LOAD>  [Super Rabbit Soft]
    <MSMSGS><rem "C:\Program Files\Messenger\msmsgs.exe" /background>  []
    <ctfmon.exe><C:\WINDOWS\System32\ctfmon.exe>  [Microsoft Corporation]
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <load><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <SearchNet_Up><"C:\Program Files\SearchNet\ServeUp.exe">  [中搜在线]
    <wdo59k2f><RunDll32 "C:\WINDOWS\Downlo~1\wdo59k2f.dll",Run>  [Microsoft Corporation]
    <serfnu><RunDll32 "C:\WINDOWS\Downlo~1\serfnu.dll",Run>  [Microsoft Corporation]
    <rshz><RunDll32 "C:\WINDOWS\Downlo~1\rshz.dll",Run>  [Microsoft Corporation]
    <rs791i8l><RunDll32 "C:\WINDOWS\Downlo~1\rs791i8l.dll",Run>  [Microsoft Corporation]
    <RfwMain><"C:\Program Files\3721\Rising\Rfw\rfwmain.exe" -Startup>  []
    <RemoteControl><rem "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe">  []
    <RavTask><"C:\Program Files\Rising\Rav\RavTask.exe" -system>  [Beijing Rising Technology Co., Ltd.]
    <r0rny0><RunDll32 "C:\WINDOWS\Downlo~1\r0rny0.dll",Run>  [Microsoft Corporation]
    <PHIME2002ASync><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC>  [Microsoft Corporation]
    <PHIME2002A><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName>  [Microsoft Corporation]
    <ozfn5><RunDll32 "C:\WINDOWS\Downlo~1\ozfn5.dll",Run>  [Microsoft Corporation]
    <n42yto><RunDll32 "C:\WINDOWS\Downlo~1\n42yto.dll",Run>  [Microsoft Corporation]
    <Mouse Suite 98 Daemon><ICO.EXE>  []
    <mh81><RunDll32 "C:\WINDOWS\Downlo~1\mh81.dll",Run>  [Microsoft Corporation]
    <IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload>  [Microsoft Corporation]
    <IMJPMIG8.1><C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32>  [Microsoft Corporation]
    <HKSERV.EXE><C:\Program Files\Sony\HotKey Utility\HKserv.exe>  [Sony Corporation]
    <g5cfmy><RunDll32 "C:\WINDOWS\Downlo~1\g5cfmy.dll",Run>  [Microsoft Corporation]
    <ezShieldProtector for Px><C:\WINDOWS\System32\ezSP_Px.exe>  [Easy Systems Japan Ltd.]
    <CdnCtr><; "C:\Program Files\SearchNet\ServeUp.exe">  [中搜在线]
    <ATIPTA><C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe>  [ATI Technologies, Inc.]
    <ATIModeChange><Ati2mdxx.exe>  [ATI Technologies, Inc.]
    <Apoint><C:\Program Files\Apoint\Apoint.exe>  [Alps Electric Co., Ltd.]
    <a7i><RunDll32 "C:\WINDOWS\Downlo~1\a7i.dll",Run>  [Microsoft Corporation]
    <CnsMin><Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32>  []
    <helper.dll><C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [Microsoft Corporation]
    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    <{32CD708B-60A7-4C00-9377-D73EAA495F0F}><C:\WINDOWS\system32\RavExt.dll>  [Beijing Rising Technology Co., Ltd.]

==================================
启动文件夹
[星空极速]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\星空极速.lnk><N>
[PowerPanel]
  <C:\Documents and Settings\All Users\「开始」菜单\程序\启动\PowerPanel.lnk><N>

==================================
gototop
 

服务
[Ati HotKey Poller / Ati HotKey Poller]
  <C:\WINDOWS\System32\Ati2evxx.exe><N/A>
[IMAPI CD-Burning COM Service / ImapiService]
  <C:\WINDOWS\System32\imapi.exe><Microsoft Corporation>
[Remote Log / Remote Log]
  <system32\ServeHost.exe><N/A>
[Rising Personal Firewall Service / RfwService]
  <><N/A>
[Rising Process Communication Center / RsCCenter]
  <"C:\Program Files\Rising\Rav\CCenter.exe"><Beijing Rising Technology Co., Ltd.>
[RsRavMon Service / RsRavMon]
  <"C:\Program Files\Rising\Rav\Ravmond.exe"><Beijing Rising Technology Co., Ltd.>

==================================
浏览器加载项
[IE Address Browser Helper]
  {2A0176FE-008B-4706-90F5-BBA532A49731} <C:\Program Files\SearchNet\SNHpr.dll, Beijing Zhongsou Online Software>
[bho Class]
  {ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270} <C:\PROGRA~1\COMMON~1\Wnwb\wnwbio.dll, 深圳世强软件开发部>
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[电台(&R)]
  {8E718888-423F-11D2-876E-00A0C9082467} <C:\WINDOWS\System32\msdxm.ocx, Microsoft Corporation>
[卡卡上网安全助手]
  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\System32\KakaTool.dll, Beijing Rising Technology Co., Ltd.>
[Shockwave Flash Object]
  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\System32\Macromed\Flash\Flash8a.ocx, Macromedia, Inc.>
[PBActiveX40 Control]
  {F2EB8999-766E-4BF6-AAAD-188D398C0D0B} <C:\WINDOWS\System32\CmbPb40.ocx, China Merchants Bank>
[导出到 Microsoft Office Excel(&X)]
  <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>

==================================
正在运行的进程
[PID: 384][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 436][\??\C:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 460][\??\C:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 504][C:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 516][C:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 716][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 780][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 848][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 992][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1004][C:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2600.0000 (xpclient.010817-1148)>
    [C:\WINDOWS\system32\RavExt.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Apoint\Apoint.DLL]  <Alps Electric Co., Ltd.><5.5.5.154>
    [C:\WINDOWS\System32\Vxdif.dll]  <Alps Electric Co., Ltd.><5.3.1.47>
[PID: 1116][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.0 (XPClient.010817-1148)>
[PID: 1336][C:\Program Files\Rising\Rav\RavTask.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
[PID: 1428][C:\Program Files\Rising\Rav\Ravmon.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 1, 30>
    [C:\Program Files\Rising\Rav\RsGuiLib.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
    [C:\Program Files\Rising\Rav\BWList.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
    [C:\Program Files\Rising\Rav\RSAPPMGR.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
    [C:\Program Files\Rising\Rav\CfgDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
gototop
 

[C:\Program Files\Rising\Rav\RSCOMMON.DLL]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
    [C:\Program Files\Rising\Rav\PngDll.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[PID: 1436][C:\Program Files\Sony\HotKey Utility\HKserv.exe]  <Sony Corporation><3.0.0.12050>
    [C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll]  <Sony Corporation><3, 0, 0, 10300>
    [C:\Program Files\Common Files\Sony Shared\SXBIOS\sxbios.dll]  <Sony Corporation><4.02.8170>
[PID: 1472][C:\WINDOWS\System32\ezSP_Px.exe]  <Easy Systems Japan Ltd.><1, 0, 0, 0>
[PID: 1500][C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe]  <ATI Technologies, Inc.><6.13.10.3041>
    [C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.CHS]  <ATI Technologies, Inc.><6.13.10.3041>
    [C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll]  <ATI Technologies, Inc.><6.13.10.3041>
[PID: 1520][C:\Program Files\Apoint\Apoint.exe]  <Alps Electric Co., Ltd.><5.5.5.120>
    [C:\WINDOWS\System32\VXDIF.DLL]  <Alps Electric Co., Ltd.><5.3.1.47>
    [C:\Program Files\Apoint\ApWheel.dll]  <ALPS ELECTRIC CO., LTD.><4.2.0.9>
    [C:\Program Files\Apoint\Apoint.DLL]  <Alps Electric Co., Ltd.><5.5.5.154>
    [C:\Program Files\Apoint\ApRes.dll]  <Alps Electric Co., Ltd.><5.5.5.11>
    [C:\Program Files\Apoint\EzAuto.dll]  <Alps Electric Co., Ltd.><4.5.1.83>
    [C:\Program Files\Apoint\EzLaunch.DLL]  <Alps Electric Co., Ltd.><5.5.5.46>
[PID: 1556][C:\Program Files\Super Rabbit\MagicSet\SRIECLI.EXE]  <Super Rabbit Soft><7.66>
    [C:\PROGRA~1\SUPERR~1\MagicSet\shlobj71.ocx]  <Sky Software (http://www.ssware.com)><7, 1, 0, 0>
[PID: 1564][C:\WINDOWS\System32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1572][C:\Program Files\ChinaNet\VnetClient.exe]  <><2005, 10, 8, 1>
    [C:\Program Files\ChinaNet\Communicate.dll]  <0><2005, 3, 3, 1>
    [C:\Program Files\ChinaNet\DialModule.dll]  <><2005, 3, 22, 1>
    [C:\PROGRA~1\ChinaNet\CLIENT~1.DLL]  <><2004, 2, 28, 1>
    [C:\PROGRA~1\ChinaNet\PLUGIN~1.OCX]  <><2005, 7, 27, 1>
    [C:\PROGRA~1\ChinaNet\sign.dll]  <0><2004, 12, 1, 1>
    [C:\PROGRA~1\ChinaNet\WEBPLU~1.DLL]  <><2005, 8, 18, 1>
    [C:\PROGRA~1\ChinaNet\PostPlug.dll]  <><2004, 12, 16, 2>
    [C:\PROGRA~1\ChinaNet\ADVERT~1.OCX]  <><2005, 10, 13, 1>
    [C:\PROGRA~1\ChinaNet\VnetBs.ocx]  <><2004, 11, 18, 1>
    [C:\PROGRA~1\ChinaNet\ACCOUN~2.DLL]  <><2005, 8, 11, 1>
    [C:\PROGRA~1\ChinaNet\AccountMgr.dll]  <><2005, 8, 16, 1>
    [C:\PROGRA~1\ChinaNet\VnetSkin.ocx]  <GDDC><1, 0, 0, 1>
    [C:\PROGRA~1\ChinaNet\DialogStyle.dll]  <><1, 0, 0, 1>
    [C:\PROGRA~1\ChinaNet\Timer.ocx]  <><2005, 10, 9, 14>
    [C:\PROGRA~1\ChinaNet\PLUGIN~2.OCX]  <><2005, 2, 24, 1>
    [C:\PROGRA~1\ChinaNet\NEWMES~1.DLL]  <><2005, 8, 26, 1>
    [C:\PROGRA~1\ChinaNet\PassCtrl.dll]  <><1, 0, 0, 1>
    [C:\PROGRA~1\ChinaNet\PlugPush.dll]  <><2004, 12, 21, 1>
    [C:\PROGRA~1\ChinaNet\ALLINT~1.DLL]  <><2004, 11, 23, 1>
    [C:\PROGRA~1\ChinaNet\VNetLog.ocx]  <><2005, 10, 9, 1>
    [C:\PROGRA~1\ChinaNet\StatNum.dll]  <><2004, 11, 18, 1>
    [C:\PROGRA~1\ChinaNet\VNETON~1.OCX]  <><2005, 3, 2, 1>
    [C:\PROGRA~1\ChinaNet\ALLFUN~1.DLL]  <GDCN><2005, 10, 9, 1>
    [C:\PROGRA~1\ChinaNet\VnetOptLog.dll]  <><2005, 9, 13, 9>
    [C:\Program Files\Rising\Rav\RavScrCh.dll]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
    [C:\PROGRA~1\ChinaNet\DlgSkin.ocx]  <><1, 0, 0, 1>
    [C:\WINDOWS\System32\Macromed\Flash\Flash8a.ocx]  <Macromedia, Inc.><8,0,24,0>
[PID: 1580][C:\Program Files\PowerPanel\Program\PcfMgr.exe]  <Phoenix Technologies Ltd.><5.1.1.1>
    [C:\Program Files\PowerPanel\Program\EngPM.dll]  <Phoenix Technologies Ltd.><5.1.1.1>
    [C:\Program Files\PowerPanel\PROGRAM\PMOptionMsg.dll]  <><1, 0, 0, 1>
    [C:\Program Files\PowerPanel\PROGRAM\PMDM.dll]  <Phoenix Technologies Ltd.><5.1.0.1>
    [C:\Program Files\PowerPanel\Program\EngDM.DLL]  <Phoenix Technologies Ltd.><4.1.0.1>
    [C:\Program Files\PowerPanel\Program\PTLACPI.DLL]  <Phoenix Technologies Ltd.><5.1.1.1>
    [C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll]  <Sony Corporation><3, 0, 0, 10300>
    [C:\Program Files\Common Files\Sony Shared\SXBIOS\sxbios.dll]  <Sony Corporation><4.02.8170>
    [C:\Program Files\PowerPanel\Program\BSACPICM.DLL]  <><1, 0, 0, 1>
    [C:\Program Files\PowerPanel\Program\BSNTSBS.DLL]  <><1, 0, 0, 3>
[PID: 1692][C:\Program Files\Apoint\Apntex.exe]  <Alps Electric Co., Ltd.><5.0.1.13>
    [C:\WINDOWS\System32\VXDIF.DLL]  <Alps Electric Co., Ltd.><5.3.1.47>
[PID: 1716][C:\WINDOWS\System32\conime.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1728][C:\Program Files\Sony\HotKey Utility\HKWnd.exe]  <Sony Corporation><3.0.0.12050>
    [C:\Program Files\Sony\HotKey Utility\HKRes.dll]  <Sony Corporation><3.0.0.11070>
    [C:\Program Files\Common Files\Sony Shared\Sony Utilities\SnyUtils.dll]  <Sony Corporation><3, 0, 0, 10300>
    [C:\Program Files\Common Files\Sony Shared\SXBIOS\sxbios.dll]  <Sony Corporation><4.02.8170>
[PID: 432][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 420][C:\WINDOWS\System32\Ati2evxx.exe]  <N/A><N/A>
[PID: 2632][C:\WINDOWS\System32\wuauclt.exe]  <Microsoft Corporation><5.4.2600.0 (XPClient.010817-1148)>
[PID: 4048][D:\小说\sreng2\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT