接上
==================================
正在运行的进程
[PID: 136][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.00.2195.6601]
[PID: 164][\??\D:\WINNT\system32\csrss.exe] [Microsoft Corporation, 5.00.2195.6601]
[PID: 160][\??\D:\WINNT\system32\winlogon.exe] [Microsoft Corporation, 5.00.2195.6997]
[PID: 212][D:\WINNT\system32\services.exe] [Microsoft Corporation, 5.00.2195.7035]
[D:\WINNT\system32\dmserver.dll] [VERITAS Software Corp., 2195.6605.297.3]
[PID: 232][D:\WINNT\system32\lsass.exe] [Microsoft Corporation, 5.00.2195.7011]
[PID: 400][D:\WINNT\system32\svchost.exe] [Microsoft Corporation, 5.00.2134.1]
[PID: 440][D:\WINNT\system32\spoolsv.exe] [Microsoft Corporation, 5.00.2195.7059]
[PID: 472][D:\WINNT\system32\svchost.exe] [Microsoft Corporation, 5.00.2134.1]
[PID: 500][D:\WINNT\system32\nvsvc32.exe] [NVIDIA Corporation, 6.14.10.7189]
[PID: 532][D:\WINNT\system32\regsvc.exe] [Microsoft Corporation, 5.00.2195.6701]
[PID: 568][D:\WINNT\system32\MSTask.exe] [Microsoft Corporation, 4.71.2195.6972]
[PID: 604][D:\WINNT\System32\WBEM\WinMgmt.exe] [Microsoft Corporation, 1.50.1085.0100]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[PID: 664][D:\WINNT\system32\svchost.exe] [Microsoft Corporation, 5.00.2134.1]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[PID: 672][D:\WINNT\system32\svchost.exe] [Microsoft Corporation, 5.00.2134.1]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[PID: 976][D:\WINNT\Explorer.EXE] [Microsoft Corporation, 5.00.3700.6690]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[D:\Program Files\Internet Explorer\PLUGINS\System8.sys] [N/A, N/A]
[D:\WINNT\system32\nvtuicpl.cpl] [NVIDIA Corporation, 6.14.10.10040]
[D:\WINNT\system32\NVWRSZHC.DLL] [NVIDIA Corporation, 6.14.10.10040]
[D:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
[PID: 1068][D:\WINNT\Mixer.exe] [C-Media Electronic Inc. (www.cmedia.com.tw), 1.60]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[D:\Program Files\Internet Explorer\PLUGINS\System8.sys] [N/A, N/A]
[D:\WINNT\System32\cmnprop.dll] [C-Media Corporation, 5.00.2195.12]
[PID: 1076][D:\Program Files\Java\jre1.5.0\bin\jusched.exe] [N/A, N/A]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[PID: 1092][D:\WINNT\system32\RUNDLL32.EXE] [Microsoft Corporation, 5.00.2134.1]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[D:\WINNT\system32\NvMcTray.dll] [NVIDIA Corporation, 6.14.10.7189]
[D:\Program Files\Internet Explorer\PLUGINS\System8.sys] [N/A, N/A]
[D:\WINNT\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.10.7189]
[PID: 1100][D:\WINNT\system32\Internat.exe] [Microsoft Corporation, 5.00.2920.0000]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[D:\Program Files\Internet Explorer\PLUGINS\System8.sys] [N/A, N/A]
[PID: 884][C:\新建文件夹 (2)\mmsk.exe] [木马杀客, 2,0,0,6]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[C:\新建文件夹 (2)\krnln.fnr] [, 1, 0, 0, 1]
[D:\Program Files\Internet Explorer\PLUGINS\System8.sys] [N/A, N/A]
[C:\新建文件夹 (2)\iext2.fne] [, 1, 0, 0, 1]
[C:\新建文件夹 (2)\iext.fne] [, 1, 0, 0, 1]
[C:\新建文件夹 (2)\HYExtLib.fne] [N/A, N/A]
[C:\新建文件夹 (2)\HtmlView.fne] [, 1, 0, 0, 1]
[C:\新建文件夹 (2)\TrayIcon.fne] [, 1, 0, 0, 1]
[C:\新建文件夹 (2)\iext3.fne] [, 1, 0, 0, 1]
[C:\新建文件夹 (2)\xplib.fne] [N/A, N/A]
[C:\新建文件夹 (2)\mmskskin.dll] [, 2, 0, 0, 6]
[C:\新建文件夹 (2)\SkinPPWTL.dll] [http://www.skinplusplus.com, 2, 1, 0, 0]
[C:\新建文件夹 (2)\shell.fne] [N/A, N/A]
[C:\新建文件夹 (2)\EThread.fne] [N/A, N/A]
[C:\新建文件夹 (2)\dp1.fne] [N/A, N/A]
[C:\新建文件夹 (2)\eAPI.fne] [, 1, 0, 0, 1]
[D:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL] [N/A, N/A]
[PID: 896][C:\zfs\gc.exe] [N/A, N/A]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[D:\Program Files\Internet Explorer\PLUGINS\System8.sys] [N/A, N/A]
[D:\WINNT\system32\WINABCX.IME] [PKUETI, 5.22.216]
[PID: 588][D:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.2800.1106]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[D:\Program Files\Internet Explorer\PLUGINS\System8.sys] [N/A, N/A]
[PID: 208][D:\saomiao\SREng\SREng.exe] [Smallfrogs Studio, 2.2.6.605]
[D:\WINNT\system32\windhcp.ocx] [N/A, N/A]
[D:\Program Files\Internet Explorer\PLUGINS\System8.sys] [N/A, N/A]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["D:\WINNT\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]