正在运行的进程
[PID: 140][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.00.2195.6601>
[PID: 164][\??\C:\WINNT\system32\csrss.exe] <Microsoft Corporation><5.00.2195.6601>
[PID: 184][\??\C:\WINNT\system32\winlogon.exe] <Microsoft Corporation><5.00.2195.6997>
[PID: 212][C:\WINNT\system32\services.exe] <Microsoft Corporation><5.00.2195.7035>
[C:\WINNT\system32\dmserver.dll] <VERITAS Software Corp.><2195.6605.297.3>
[PID: 224][C:\WINNT\system32\lsass.exe] <Microsoft Corporation><5.00.2195.7011>
[PID: 408][C:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[PID: 432][C:\WINNT\system32\spoolsv.exe] <Microsoft Corporation><5.00.2195.7059>
[C:\WINNT\system32\pdfports.dll] <Adobe Systems Incorporated.><5.0.000>
[C:\Program Files\Adobe\Acrobat 5.0\Distillr\ADistRes.CHS] <Adobe Systems Incorporated.><5.0.0.0>
[PID: 468][C:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[PID: 504][C:\Program Files\Eset\nod32krn.exe] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\ps_amon.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\ps_dmon.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\ps_emon.dll] <Eset ><2, 51, 8 >
[C:\WINNT\system32\imon.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\ps_mirr.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\ps_nod32.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\ps_upd.dll] <Eset ><2, 51, 8 >
[PID: 600][C:\WINNT\system32\regsvc.exe] <Microsoft Corporation><5.00.2195.6701>
[PID: 620][C:\WINNT\system32\MSTask.exe] <Microsoft Corporation><4.71.2195.6972>
[PID: 688][C:\Program Files\VMware\VMware Workstation\vmware-authd.exe] <VMware, Inc.><5.5.0 build-18463>
[PID: 724][C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe] <VMware, Inc.><5.5.0 build-18463>
[C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmxScsiLib.dll] <VMware, Inc.><5.5.0 build-18463>
[PID: 768][C:\WINNT\system32\vmnat.exe] <VMware, Inc.><5.5.0 build-18463>
[PID: 796][C:\WINNT\System32\WBEM\WinMgmt.exe] <Microsoft Corporation><1.50.1085.0100>
[PID: 804][C:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[PID: 816][C:\WINNT\system32\vmnetdhcp.exe] <VMware, Inc.><5.5.0 build-18463>
[PID: 944][C:\WINNT\Explorer.EXE] <Microsoft Corporation><5.00.3700.6690>
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
[C:\Program Files\FlashGet\JCCatch.dll] <FlashGet><1, 1, 5, 0>
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[C:\WINNT\system32\xunleibho_v4.dll] <><4, 3, 2, 29>
[C:\WINNT\system32\L3codeca.acm] <Fraunhofer Institut Integrierte Schaltungen IIS><1, 2, 0, 63>
[PID: 1024][C:\Program Files\Eset\nod32kui.exe] <Eset ><2, 51, 8 >
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
[C:\Program Files\Eset\pu_amon.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\pu_dmon.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\pu_emon.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\pu_imon.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\pu_mirr.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\pu_nod32.dll] <Eset ><2, 51, 8 >
[C:\Program Files\Eset\pu_upd.dll] <Eset ><2, 51, 8 >
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[PID: 1044][C:\WINNT\system32\ctfmon.exe] <Microsoft Corporation><1.00.2409.34 built by: Lab06_N>
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[PID: 776][D:\Program Bak\cterm-3.25-051122\CTerm\CTerm.exe] <><3, 2, 6, 2>
[D:\Program Bak\cterm-3.25-051122\CTerm\python25.dll] <Python Software Foundation><2.5c1>
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[PID: 272][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\1.exe] <N/A><N/A>
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[PID: 512][C:\Program Files\Tencent\qq\QQ.exe] <TENCENT><0, 0, 0, 0>
[C:\Program Files\Tencent\qq\QQBaseClassInDll.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\QQHelperDll.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\BasicCtrlDll.dll] <Tencent><5, 0, 200, 370>
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
[C:\Program Files\Tencent\qq\LoginCtrl.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\npkcntc.dll] <INCA Internet Co., Ltd.><2006, 6, 27, 1>
[C:\Program Files\Tencent\qq\npkpdb.dll] <INCA Internet Co., Ltd.><2003, 10, 1, 1>
[C:\Program Files\Tencent\qq\QQAPI.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\QQRes.dll] <tencent><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\QQMainFrame.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\CQQApplication.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\NewSkin.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\HostingMgr.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\CameraDll.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\MailSummary.dll] <><1, 0, 0, 1>
[C:\WINNT\system32\devenum.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\QQGroupMng.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\GroupLive.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\QQSysMsgMng.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\UserDefinedHead.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\QQPlugin.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\QQConfigPlugin.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\QRingMng.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\QQAllInOne.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\SCCore.dll] <TENCENT><2, 0, 0, 1>
[C:\Program Files\Tencent\qq\QQCustomFace.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\GroupConnection.dll] <Tencent><0, 3, 3, 5>
[C:\Program Files\Tencent\qq\QQAvatar.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\FlashAvatarDll.dll] <><1, 4, 0, 1>
[C:\Program Files\Tencent\qq\LongConnection.dll] <tencent><5, 0, 200, 160>
[C:\Program Files\Tencent\qq\CommercesMng.dll] <><1, 0, 0, 1>
[C:\Program Files\Tencent\qq\PersonalDesktop.dll] <深圳市腾讯计算机系统公司QQ工作小组><1, 0, 0, 2>
[C:\Program Files\Tencent\qq\QQAddr.dll] <深圳市腾讯计算机系统有限公司><5, 0, 101, 240>
[C:\Program Files\Tencent\qq\QQSceneMng.dll] <N/A><N/A>
[C:\Program Files\Tencent\qq\QQPhoneHelper.dll] <腾讯科技(深圳)有限公司><2, 0, 6, 60>
[C:\WINNT\system32\Macromed\Flash\Flash9.ocx] <Adobe Systems, Inc.><9,0,16,0>
[C:\Program Files\Tencent\qq\QQMagicFace.dll] <><1, 0, 0, 1>
[PID: 1352][D:\Program Bak\BitComet\BitComet.exe] <www.BitComet.com><0.59.>
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
[PID: 1148][D:\Program Bak\flashfxp_v3.0.1030\FlashFXP.exe] <IniCom Networks, Inc.><3.0.1.1030>
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[C:\Program Files\Eset\nodshex.dll] <N/A><N/A>
[PID: 1180][C:\Documents and Settings\Administrator\My Documents\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\WINNT\system32\nmhxy.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\WinHook.sys] <N/A><N/A>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM Error. ["hh.exe" %1]
.HLP Error. [winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者