正在运行的进程
[PID: 388][\SystemRoot\System32\smss.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 656][\??\C:\WINDOWS\system32\csrss.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\TEMP\yzpqqq.dll] (N/A)(N/A)
[PID: 692][\??\C:\WINDOWS\system32\winlogon.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 736][C:\WINDOWS\system32\services.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 748][C:\WINDOWS\system32\lsass.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 900][C:\WINDOWS\system32\Ati2evxx.exe] (N/A)(N/A)
[C:\WINDOWS\lsaasKey.DLL] (N/A)(N/A)
[PID: 912][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 964][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1052][C:\WINDOWS\System32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\TEMP\yzpqqq.dll] (N/A)(N/A)
[PID: 1108][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1252][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1504][C:\WINDOWS\Explorer.EXE] (Microsoft Corporation)(6.00.2900.2180 (xpsp_sp2_rtm.040803-2158))
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[C:\WINDOWS\lsaasKey.DLL] (N/A)(N/A)
[C:\PROGRA~1\Yahoo!\ASSIST~1\yaLive.dll] ()(2, 1, 5, 1045)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll] ( )(2, 0, 1, 1007)
[C:\Program Files\WinRAR\rarext.dll] (N/A)(N/A)
[C:\PROGRA~1\3721\ske\contmenu.dll] (N/A)(N/A)
[C:\WINDOWS\TEMP\yzpqqq.dll] (N/A)(N/A)
[C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll] (Yahoo! China)(1, 1, 3, 1035)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL] ()(1, 2, 7, 1006)
[F:\KuGoo2\KuGoo3DownXControl.ocx] (N/A)(N/A)
[C:\WINDOWS\system32\mp3infp.dll] (win32lab.com)(2.44.3.0)
[PID: 1572][C:\WINDOWS\system32\spoolsv.exe] (Microsoft Corporation)(5.1.2600.2696 (xpsp_sp2_gdr.050610-1519))
[PID: 1620][C:\WINDOWS\System32\SCardSvr.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 1748][C:\WINDOWS\system32\SafeSignCertReg.exe] (A.E.T. Europe B.V.)(2.0.0.2)
[PID: 1800][C:\WINDOWS\system32\ctfmon.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\WINDOWS\lsaasKey.DLL] (N/A)(N/A)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[PID: 1948][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 2000][C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\libapr.dll] (Apache Software Foundation)(0.0.0.0)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\libaprutil.dll] (Apache Software Foundation)(0.0.0.0)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\libapriconv.dll] (Apache Software Foundation)(0.0.0.0)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\libhttpd.dll] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_access.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_actions.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_alias.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_asis.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_auth.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_autoindex.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_cgi.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_dir.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_env.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_expires.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_headers.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_imap.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_include.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_isapi.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_log_config.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_mime.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_negotiation.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_rewrite.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_setenvif.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_ssl.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\SSLEAY32.dll] (N/A)(N/A)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\LIBEAY32.dll] (N/A)(N/A)
[PID: 212][C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\libapr.dll] (Apache Software Foundation)(0.0.0.0)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\libaprutil.dll] (Apache Software Foundation)(0.0.0.0)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\libapriconv.dll] (Apache Software Foundation)(0.0.0.0)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\libhttpd.dll] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_access.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_actions.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_alias.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_asis.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_auth.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_autoindex.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_cgi.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_dir.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_env.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_expires.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_headers.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_imap.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_include.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_isapi.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_log_config.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_mime.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_negotiation.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_rewrite.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_setenvif.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\modules\mod_ssl.so] (Apache Software Foundation)(2.0.47)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\SSLEAY32.dll] (N/A)(N/A)
[C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\LIBEAY32.dll] (N/A)(N/A)
[PID: 268][C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE] (Microsoft Corporation)(7.00.9466)
[C:\WINDOWS\lsaasKey.DLL] (N/A)(N/A)
[PID: 2212][C:\PROGRA~1\Yahoo!\ASSIST~1\ylive.exe] ( )(2, 0, 0, 1002)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[C:\PROGRA~1\Yahoo!\ASSIST~1\yaLive.dll] ()(2, 1, 5, 1045)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll] ( )(2, 0, 1, 1007)
[C:\WINDOWS\lsaasKey.DLL] (N/A)(N/A)
[C:\Program Files\Yahoo!\Assistant\yNotifier.dll] ()(1, 0, 0, 5)
[PID: 2240][C:\NVIDIA\NetworkAccessManager\bin\nSvcLog.exe] (N/A)(N/A)
[C:\NVIDIA\NetworkAccessManager\bin\nv_common.dll] (N/A)(N/A)
[PID: 2352][C:\WINDOWS\system32\svchost.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 2984][C:\WINDOWS\System32\alg.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[PID: 160][C:\WINDOWS\system32\wuauclt.exe] (Microsoft Corporation)(5.8.0.2469 built by: lab01_n(wmbla))
[PID: 2852][C:\WINDOWS\system32\conime.exe] (Microsoft Corporation)(5.1.2600.2180 (xpsp_sp2_rtm.040803-2158))
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[C:\WINDOWS\lsaasKey.DLL] (N/A)(N/A)
[I:\SREng2\SREng.com] (Smallfrogs Studio)(2.0.21.505)
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] ()(2, 0, 1, 1018)
[C:\WINDOWS\lsaasKey.DLL] (N/A)(N/A)
--------------------------------------------------------------------------------
文件关联
.TXT Error. [NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==========
winscoks