[ModuleUsage]
1_HKey=HKEY_LOCAL_MACHINE
1_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/danim.dll
1_Name=.Owner
1_Value=CMediaAudioRack
1_Clsid=
1_FileName=C:\WINDOWS\system32\danim.dll
1_FileSize=1049088
1_FileDate=2006-6-23 19:11:20
1_FileVersion=6.3.1.148
2_HKey=HKEY_LOCAL_MACHINE
2_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/ddrawex.dll
2_Name=.Owner
2_Value=CMediaAudioRack
2_Clsid=
2_FileName=C:\WINDOWS\system32\ddrawex.dll
2_FileSize=27136
2_FileDate=2004-8-4 8:52:08
2_FileVersion=5.3.2600.2180
3_HKey=HKEY_LOCAL_MACHINE
3_Key=SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/system32/quartz.dll
3_Name=.Owner
3_Value=CMediaAudioRack
3_Clsid=
3_FileName=C:\WINDOWS\system32\quartz.dll
3_FileSize=1269248
3_FileDate=2005-8-30 11:55:45
3_FileVersion=6.5.2600.2749
Max=3
[Process]
1_FileName=C:\WINDOWS\SYSTEM32\SMSS.EXE
1_FileSize=50688
1_FileDate=2004-8-4 8:52:38
1_FileVersion=5.1.2600.2180
2_FileName=C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2_FileSize=487424
2_FileDate=2004-8-4 8:52:38
2_FileVersion=5.1.2600.2180
3_FileName=C:\WINDOWS\SYSTEM32\SERVICES.EXE
3_FileSize=108032
3_FileDate=2004-8-4 8:52:38
3_FileVersion=5.1.2600.2180
4_FileName=C:\WINDOWS\SYSTEM32\LSASS.EXE
4_FileSize=13312
4_FileDate=2004-8-4 8:52:32
4_FileVersion=5.1.2600.2180
5_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
5_FileSize=14336
5_FileDate=2004-8-4 8:52:38
5_FileVersion=5.1.2600.2180
6_FileName=D:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
6_FileSize=110592
6_FileDate=2006-8-27 15:43:35
6_FileVersion=18.0.0.3
7_FileName=C:\WINDOWS\SYSTEM32\SVCHOST.EXE
7_FileSize=14336
7_FileDate=2004-8-4 8:52:38
7_FileVersion=5.1.2600.2180
8_FileName=E:\PROGRAM FILES\RISING\RFW\RFWSRV.EXE
8_FileSize=98304
8_FileDate=2006-8-31 16:14:46
8_FileVersion=4.0.0.32
9_FileName=C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
9_FileSize=57856
9_FileDate=2005-6-11 7:53:32
9_FileVersion=5.1.2600.2696
10_FileName=C:\WINDOWS\SYSTEM32\DRIVERS\CDAC11BA.EXE
10_FileSize=54784
10_FileDate=2006-8-17 19:43:53
10_FileVersion=4.20.20.0
11_FileName=C:\WINDOWS\SYSTEM32\NVSVC32.EXE
11_FileSize=127043
11_FileDate=2004-10-29 16:50:00
11_FileVersion=6.14.10.6693
12_FileName=C:\WINDOWS\EXPLORER.EXE
12_FileSize=976896
12_FileDate=2004-8-4 8:52:32
12_FileVersion=6.0.2900.2180
13_FileName=E:\PROGRAM FILES\RISING\RFW\RFWMAIN.EXE
13_FileSize=417792
13_FileDate=2006-8-31 16:17:36
13_FileVersion=4.0.0.52
14_FileName=C:\WINDOWS\MIXER.EXE
14_FileSize=1216512
14_FileDate=2001-12-7 23:24:24
14_FileVersion=1.4.6.0
15_FileName=D:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE
15_FileSize=114688
15_FileDate=2006-8-27 15:43:35
15_FileVersion=18.0.0.22
16_FileName=C:\WINDOWS\SYSTEM32\CTFMON.EXE
16_FileSize=15360
16_FileDate=2004-8-4 8:52:30
16_FileVersion=5.1.2600.2180
17_FileName=D:\PROGRAM FILES\RISING\RAV\RSAGENT.EXE
17_FileSize=106496
17_FileDate=2006-8-27 15:43:18
17_FileVersion=18.0.0.12
18_FileName=C:\WINDOWS\MSAGENT\AGENTSVR.EXE
18_FileSize=256512
18_FileDate=2004-8-4 8:52:30
18_FileVersion=2.0.0.3422
19_FileName=D:\PROGRAM FILES\RISING\RAV\RAVMOND.EXE
19_FileSize=233472
19_FileDate=2006-8-29 12:07:21
19_FileVersion=18.0.1.35
20_FileName=D:\PROGRAM FILES\RISING\RAV\RAVMON.EXE
20_FileSize=610304
20_FileDate=2006-8-29 12:07:21
20_FileVersion=18.0.1.33
21_FileName=D:\PROGRAM FILES\RISING\RAV\RAVSTUB.EXE
21_FileSize=90112
21_FileDate=2006-8-27 15:43:25
21_FileVersion=18.0.0.16
22_FileName=C:\PROGRAM FILES\AUTOCAD 2004\ACAD.EXE
22_FileSize=7842464
22_FileDate=2003-2-14 1:30:42
22_FileVersion=22.0.0.86
23_FileName=C:\DOCUME~1\LI\LOCALS~1\TEMP\~E5D141.TMP
23_FileSize=46080
23_FileDate=2006-9-1 8:42:14
23_FileVersion=1.0.0.1
24_FileName=C:\PROGRAM FILES\COMMON FILES\AUTODESK SHARED\WSCOMMCNTR1.EXE
24_FileSize=193696
24_FileDate=2003-2-14 1:33:28
24_FileVersion=1.0.0.1
25_FileName=C:\WINDOWS\SYSTEM32\CONIME.EXE
25_FileSize=27648
25_FileDate=2004-8-4 8:52:30
25_FileVersion=5.1.2600.2180
26_FileName=C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
26_FileSize=93184
26_FileDate=2004-8-4 8:52:32
26_FileVersion=6.0.2900.2180
27_FileName=E:\电脑工具\安装软件\EWIDO3.5\OLDEWIDO.EXE
27_FileSize=528448
27_FileDate=2006-9-1 9:11:36
27_FileVersion=3.5.0.0
28_FileName=C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
28_FileSize=93184
28_FileDate=2004-8-4 8:52:32
28_FileVersion=6.0.2900.2180
29_FileName=D:\PROGRAM FILES\SUPER RABBIT\MAGICSET\IEHELP.EXE
29_FileSize=735232
29_FileDate=2006-8-9 0:29:16
29_FileVersion=7.75.0.0
30_FileName=[SYSTEM PROCESS]
31_FileName=C:\WINDOWS\system32\CSRSS.EXE
31_FileSize=6144
31_FileDate=2004-8-4 8:52:30
31_FileVersion=5.1.2600.2180
32_FileName=C:\WINDOWS\system32\ALG.EXE
32_FileSize=44544
32_FileDate=2004-8-4 8:52:30
32_FileVersion=5.1.2600.2180
Max=32
[Hosts]
HostsFile=C:\WINDOWS\system32\Drivers\Etc\Hosts
1_Host=127.0.0.1 localhost
Max=1
[Service]
1_ServiceName=C-DillaCdaC11BA
1_DisplayName=C-DillaCdaC11BA
1_Description=
1_Status=已启动
1_StartType=自动
1_ServiceDll=
1_ImagePath=C:\WINDOWS\SYSTEM32\DRIVERS\CDAC11BA.EXE
2_ServiceName=DcomLaunch
2_DisplayName=DCOM Server Process Launcher
2_Description=为 DCOM 服务提供加载功能。
2_Status=已启动
2_StartType=自动
2_ServiceDll=C:\WINDOWS\SYSTEM32\RPCSS.DLL
2_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST -K DCOMLAUNCH
3_ServiceName=HTTPFilter
3_DisplayName=HTTP SSL
3_Description=此服务通过安全套接字层(SSL)实现 HTTP 服务的安全超文本传送协议(HTTPS)。如果此服务被禁用,任何依赖它的服务将无法启动。
3_Status=停止
3_StartType=手动
3_ServiceDll=C:\WINDOWS\SYSTEM32\W3SSL.DLL
3_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K HTTPFILTER
4_ServiceName=NetDDEdsdm
4_DisplayName=Network DDE DSDM
4_Description=管理动态数据交换 (DDE) 网络共享。如果此服务终止,DDE 网络共享将不可用。如果此服务被禁用,任何依赖它的服务将无法启动。
4_Status=停止
4_StartType=已禁用
4_ServiceDll=
4_ImagePath=C:\WINDOWS\SYSTEM32\NETDDE.EXE
5_ServiceName=NVSvc
5_DisplayName=NVIDIA Display Driver Service
5_Description=Provides system and desktop level support to the NVIDIA display driver
5_Status=已启动
5_StartType=自动
5_ServiceDll=
5_ImagePath=C:\WINDOWS\SYSTEM32\NVSVC32.EXE
6_ServiceName=RfwProxySrv
6_DisplayName=Rising Proxy Service
6_Description=Rising Personal Proxy Service
6_Status=停止
6_StartType=手动
6_ServiceDll=
6_ImagePath=E:\PROGRAM FILES\RISING\RFW\RFWPROXY.EXE
7_ServiceName=RfwService
7_DisplayName=Rising Personal Firewall Service
7_Description=Rising Personal Firewall Service
7_Status=已启动
7_StartType=自动
7_ServiceDll=
7_ImagePath=E:\PROGRAM FILES\RISING\RFW\RFWSRV.EXE
8_ServiceName=RsCCenter
8_DisplayName=Rising Process Communication Center
8_Description=
8_Status=已启动
8_StartType=自动
8_ServiceDll=
8_ImagePath="D:\PROGRAM FILES\RISING\RAV\CCENTER.EXE"
9_ServiceName=RsRavMon
9_DisplayName=RsRavMon Service
9_Description=
9_Status=已启动
9_StartType=自动
9_ServiceDll=
9_ImagePath="D:\PROGRAM FILES\RISING\RAV\RAVMOND.EXE"
10_ServiceName=WmdmPmSN
10_DisplayName=Portable Media Serial Number Service
10_Description=Retrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device.
10_Status=停止
10_StartType=手动
10_ServiceDll=C:\WINDOWS\SYSTEM32\MSPMSNSV.DLL
10_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
11_ServiceName=wscsvc
11_DisplayName=Security Center
11_Description=监视系统安全设置和配置。
11_Status=已启动
11_StartType=自动
11_ServiceDll=C:\WINDOWS\SYSTEM32\WSCSVC.DLL
11_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
12_ServiceName=xmlprov
12_DisplayName=Network Provisioning Service
12_Description=为自动网络提供管理基于域的 XML 配置文件。
12_Status=停止
12_StartType=手动
12_ServiceDll=C:\WINDOWS\SYSTEM32\XMLPROV.DLL
12_ImagePath=C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Max=12
[END]
Max=1