==================================
正在运行的进程
[PID: 724][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 804][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 828][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 872][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 884][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1040][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1116][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1260][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1304][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1344][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1676][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\hpzll3xu.dll] [Hewlett-Packard Company, 60.051.641.00]
[C:\WINDOWS\System32\spool\PRTPROCS\W32X86\hpzpp3xu.dll] [Hewlett-Packard Corporation, 60.051.641.00]
[PID: 1704][C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe] [Symantec Corporation, 1.03.4]
[C:\WINDOWS\system32\ccTrust.dll] [Symantec Corporation, 1.0.10.002]
[C:\WINDOWS\system32\SYMSTORE.dll] [Symantec Corporation, 4.7.2.15]
[C:\PROGRA~1\NORTON~1\NAVEvent.dll] [Symantec Corporation, 9.05.1015]
[C:\PROGRA~1\COMMON~1\SYMANT~1\ccEvt.dll] [Symantec Corporation, 1.0.10.006]
[PID: 1980][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.10.9371]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.10.9371]
[C:\WINDOWS\system32\nvapi.dll] [N/A, N/A]
[C:\WINDOWS\system32\nvshell.dll] [N/A, N/A]
[C:\PROGRA~1\FlashGet\jccatch.dll] [FlashGet, 1, 1, 5, 0]
[C:\Program Files\Norton AntiVirus\NavShExt.dll] [Symantec Corporation, 9.05.15]
[C:\WINDOWS\system32\ccTrust.dll] [Symantec Corporation, 1.0.10.002]
[C:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
[C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll] [Symantec Corporation, 1, 1, 0, 126]
[C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll] [Symantec Corporation, 1, 1, 0, 126]
[C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_007.dll] [Thunder Networking Technologies,LTD, 5, 0, 1, 4]
[PID: 168][C:\Program Files\Common Files\Symantec Shared\ccApp.exe] [Symantec Corporation, 1.0.10.006]
[C:\WINDOWS\system32\SYMSTORE.dll] [Symantec Corporation, 4.7.2.15]
[C:\WINDOWS\system32\ccTrust.dll] [Symantec Corporation, 1.0.10.002]
[C:\PROGRA~1\NORTON~1\NAVOpts.dll] [Symantec Corporation, 9.20.3]
[C:\PROGRA~1\NORTON~1\N32Exclu.dll] [Symantec Corporation, 9.05.1015]
[C:\PROGRA~1\NORTON~1\S32NAVO.DLL] [Symantec Corporation, 5.3.0.182]
[C:\PROGRA~1\NORTON~1\SavRT32.dll] [Symantec Corporation, 9.0.1.36]
[C:\Program Files\Norton AntiVirus\NAVError.dll] [, 1, 0, 0, 1]
[C:\PROGRA~1\COMMON~1\SYMANT~1\CCEMLPXY.DLL] [Symantec Corporation, 1.0.10.006]
[C:\WINDOWS\system32\SYMREDIR.dll] [Symantec Corporation, 5.5.1.6]
[C:\PROGRA~1\COMMON~1\SYMANT~1\ccErrDsp.DLL] [Symantec Corporation, 1.0.10.006]
[C:\PROGRA~1\COMMON~1\SYMANT~1\CCREGMON.DLL] [Symantec Corporation, 1.0.10.006]
[C:\PROGRA~1\COMMON~1\SYMANT~1\ccEvt.DLL] [Symantec Corporation, 1.0.10.006]
[C:\PROGRA~1\NORTON~1\CCIMSCAN.DLL] [Symantec Corporation, 9.20.1006]
[C:\PROGRA~1\NORTON~1\DEFALERT.DLL] [Symantec Corporation, 9.20.3]
[C:\PROGRA~1\NORTON~1\NAVAPW32.DLL] [Symantec Corporation, 9.05.1015]
[C:\WINDOWS\system32\ccPasswd.DLL] [Symantec Corporation, 1.0.10.006]
[C:\PROGRA~1\NORTON~1\apwutil.dll] [Symantec Corporation, 9.05.1015]
[C:\Program Files\Norton AntiVirus\apwcmdnt.dll] [Symantec Corporation, 9.05.1015]
[C:\Program Files\Norton AntiVirus\NavEmail.dll] [Symantec Corporation, 9.05.1015]
[PID: 200][C:\WINDOWS\SOUNDMAN.EXE] [Realtek Semiconductor Corp., 5, 1, 0, 48]
[PID: 216][C:\WINDOWS\VM303_STI.EXE] [Vimicro, 4, 3, 625, 61]
[C:\WINDOWS\system32\msdmo.dll] [N/A, N/A]
[C:\WINDOWS\system32\VM303Prp.Ax] [Vimicro, 4.3. 625.61]
[PID: 392][C:\WINDOWS\system32\RUNDLL32.EXE] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\NvMcTray.dll] [NVIDIA Corporation, 6.14.10.9371]
[C:\WINDOWS\system32\nvapi.dll] [N/A, N/A]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.10.9371]
[PID: 400][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1624][C:\WINDOWS\system32\conime.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 888][C:\Program Files\Norton AntiVirus\navapsvc.exe] [Symantec Corporation, 9.05.1015]
[C:\Program Files\Norton AntiVirus\SavRT32.dll] [Symantec Corporation, 9.0.1.36]
[PID: 920][C:\WINDOWS\system32\nvsvc32.exe] [NVIDIA Corporation, 6.14.10.9371]
[C:\WINDOWS\system32\nvapi.dll] [N/A, N/A]
[PID: 1536][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1444][C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe] [Symantec Corporation, 2005.1.2.20]
[C:\Program Files\Common Files\Symantec Shared\Security Center\WSCHlpr.dll] [Symantec Corporation, 2005.1.2.20]
[C:\Program Files\Common Files\Symantec Shared\Security Center\sscnis7.dll] [Symantec Corporation, 2005.1.2.20]
[C:\Program Files\Common Files\Symantec Shared\Security Center\sscnis56.dll] [Symantec Corporation, 2005.1.2.20]
[C:\Program Files\Common Files\Symantec Shared\Security Center\sscnav.dll] [Symantec Corporation, 2005.1.2.20]
[C:\Program Files\Norton AntiVirus\navapscr.dll] [Symantec Corporation, 9.05.1015]
[C:\WINDOWS\system32\ccTrust.dll] [Symantec Corporation, 1.0.10.002]
[C:\Program Files\Norton AntiVirus\NAVError.dll] [, 1, 0, 0, 1]
[C:\PROGRA~1\NORTON~1\NAVOpts.dll] [Symantec Corporation, 9.20.3]
[C:\PROGRA~1\NORTON~1\N32Exclu.dll] [Symantec Corporation, 9.05.1015]
[C:\PROGRA~1\NORTON~1\S32NAVO.DLL] [Symantec Corporation, 5.3.0.182]
[C:\PROGRA~1\NORTON~1\SavRT32.dll] [Symantec Corporation, 9.0.1.36]
[C:\Program Files\Symantec\LiveUpdate\NetDetectController.DLL] [Symantec Corporation, 1.80.19.0]
[PID: 2432][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3092][C:\Program Files\Teamspeak2_RC2\TeamSpeak.exe] [Dominating Bytes Design, 2.0.32.60]
[C:\Program Files\Teamspeak2_RC2\hvdi.dll] [N/A, N/A]
[C:\Program Files\Teamspeak2_RC2\libspeex.dll] [N/A, N/A]
[PID: 2756][C:\Program Files\Windows NT\Accessories\WORDPAD.EXE] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\hpzle3xu.dll] [HP, 60.051.641.00]
[C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\hpz3r3xu.dll] [Hewlett Packard Corporation, 60.051.641.00]
[C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\hpzst3xu.dll] [Hewlett-Packard Corporation, 60.051.641.00]
[C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPFIE3xu.dll] [Hewlett-Packard Company, A.05.00.008]
[PID: 2508][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\FlashGet\jccatch.dll] [FlashGet, 1, 1, 5, 0]
[C:\Program Files\Tencent\QQ\QQIEHelper.dll] [深圳市腾讯计算机系统有限公司, 1, 1, 0, 5]
[C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_007.dll] [Thunder Networking Technologies,LTD, 5, 0, 1, 4]
[C:\Program Files\Norton AntiVirus\NavShExt.dll] [Symantec Corporation, 9.05.15]
[C:\WINDOWS\system32\ccTrust.dll] [Symantec Corporation, 1.0.10.002]
[C:\PROGRA~1\FlashGet\getflash.dll] [N/A, 1, 0, 0, 1]
[C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll] [Symantec Corporation, 1, 1, 0, 126]
[C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll] [Symantec Corporation, 1, 1, 0, 126]
[C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx] [Adobe Systems, Inc., 9,0,16,0]
[PID: 3824][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\FlashGet\jccatch.dll] [FlashGet, 1, 1, 5, 0]
[C:\Program Files\Tencent\QQ\QQIEHelper.dll] [深圳市腾讯计算机系统有限公司, 1, 1, 0, 5]
[C:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_007.dll] [Thunder Networking Technologies,LTD, 5, 0, 1, 4]
[C:\Program Files\Norton AntiVirus\NavShExt.dll] [Symantec Corporation, 9.05.15]
[C:\WINDOWS\system32\ccTrust.dll] [Symantec Corporation, 1.0.10.002]
[C:\PROGRA~1\FlashGet\getflash.dll] [N/A, 1, 0, 0, 1]
[C:\Program Files\Common Files\Symantec Shared\Script Blocking\scrauth.dll] [Symantec Corporation, 1, 1, 0, 126]
[C:\Program Files\Common Files\Symantec Shared\Script Blocking\ScrBlock.dll] [Symantec Corporation, 1, 1, 0, 126]
[C:\WINDOWS\system32\Macromed\Flash\Flash9.ocx] [Adobe Systems, Inc., 9,0,16,0]
[C:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_007.dll] [Thunder Networking Technologies,LTD, 5, 0, 1, 14]
[PID: 3120][C:\Program Files\Messenger\msmsgs.exe] [Microsoft Corporation, 4.7.3000]
[PID: 288][I:\杀毒\sreng2\SREng.EXE] [Smallfrogs Studio, 2.3.13.690]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
==================================
API HOOK
N/A
==================================
[/CODE]