2005-12-03,15:53:08
System Repair Engineer 1.1.0.269
Windows 2000 Professional Service Pack 4 - 管理权限用户 - 完整功能
以下内容被选中:
所有的启动项目(包括注册表、启动文件夹、服务等)
浏览器加载项
正在运行的进程(包括进程模块信息)
文件关联
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<Internat.exe><internat.exe>
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<load><>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<EPSON Stylus Photo R210 Series><D:\WINNT\System32\spool\DRIVERS\W32X86\3\E_S4I3H2.EXE /P30 "EPSON Stylus Photo R210 Series" /O6 "USB001" /M "Stylus Photo R210">
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<NvCplDaemon><RUNDLL32.EXE NvQTwk,NvCplDaemon initialize>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<nwiz><nwiz.exe /install>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<RavTimer><E:\PROGRA~1\RISING\RAV\RAVTIMER.EXE>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<RavMon><E:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<RfwMain><"E:\Program Files\Rising\Rfw\rfwmain.exe" -Startup>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<Synchronization Manager><mobsync.exe /logon>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<Userinit><D:\WINNT\system32\userinit.exe,>
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><>
==================================
启动文件夹
服务
[Autodesk Licensing Service / Autodesk Licensing Service]
<"D:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe"><Autodesk, Inc.>
[Logical Disk Manager Administrative Service / dmadmin]
<D:\WINNT\System32\dmadmin.exe /com><VERITAS Software Corp.>
[Macromedia Licensing Service / Macromedia Licensing Service]
<"D:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe"><N/A>
[NVIDIA Driver Helper Service / NVSvc]
<D:\WINNT\System32\nvsvc32.exe><NVIDIA Corporation>
[Rising Personal Firewall Service / RfwService]
<e:\program files\rising\rfw\rfwsrv.exe><Beijing Rising Technology Corporation Limited>
[Rising Process Communication Center / RsCCenter]
<E:\PROGRAM FILES\RISING\RAV\CCENTER.EXE><rising>
[RsRavMon Service / RsRavMon]
<E:\PROGRAM FILES\RISING\RAV\Ravmond.exe><Beijing Rising Technology Co., Ltd.>
==================================
浏览器加载项
[BandIE Class]
<D:\PROGRA~1\baidu\bar\baidubar.dll>
[浩方对战平台]
<E:\Program Files\浩方对战平台\GameClient.exe>
[百度超级搜霸]
<D:\PROGRA~1\baidu\bar\baidubar.dll>
[卡卡上网安全助手]
<D:\WINNT\System32\kakatool.dll>
[Update Class]
<D:\WINNT\System32\iuctl.dll>
[Shockwave Flash
Object]
<D:\WINNT\System32\macromed\flash\Flash.ocx>
[Rising Web Scan
Object]
<D:\WINNT\Downloaded Program Files\OL2005.dll>
==================================
正在运行的进程
[PID: 156][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.00.2195.6601>
[PID: 180][\??\D:\WINNT\system32\csrss.exe] <Microsoft Corporation><5.00.2195.6601>
[PID: 200][\??\D:\WINNT\system32\winlogon.exe] <Microsoft Corporation><5.00.2195.6714>
[PID: 228][D:\WINNT\system32\services.exe] <Microsoft Corporation><5.00.2195.6700>
[D:\WINNT\system32\dmserver.dll] <VERITAS Software Corp.><2195.6605.297.3>
[PID: 240][D:\WINNT\system32\lsass.exe] <Microsoft Corporation><5.00.2195.6695>
[PID: 400][E:\PROGRAM FILES\RISING\RAV\Ravmond.exe] <Beijing Rising Technology Co., Ltd.><17, 0, 1, 57>
[E:\PROGRAM FILES\RISING\RAV\guidll.dll] <rising><17, 0, 0, 13>
[E:\PROGRAM FILES\RISING\RAV\RsCommX.dll] <rising><17, 0, 0, 3>
[E:\PROGRAM FILES\RISING\RAV\RSAPPMGR.DLL] <Rising Corp.><17, 0, 0, 7>
[E:\PROGRAM FILES\RISING\RAV\CfgDll.dll] <rising><17, 0, 0, 60>
[E:\Program Files\Rising\Rav\Scanner.dll] <Rising><17, 0, 0, 43>
[E:\PROGRAM FILES\RISING\RAV\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 17>
[E:\Program Files\Rising\Rav\libload.dll] <Rising><17, 0, 0, 14>
[E:\Program Files\Rising\Rav\VirusLib.dll] <Rising><17, 0, 0, 26>
[E:\PROGRAM FILES\RISING\RAV\MailMon.dll] < ><17, 0, 0, 9>
[E:\Program Files\Rising\Rav\engine.dll] <rising><17, 0, 0, 40>
[E:\Program Files\Rising\Rav\SpamEng.dll] <N/A><17, 0, 0, 7>
[E:\Program Files\Rising\Rav\UnExe.dll] <Rising><17, 0, 0, 27>
[E:\PROGRAM FILES\RISING\RAV\MemMon.dll] <北京瑞星><17, 8, 0, 0>
[E:\PROGRAM FILES\RISING\RAV\expscan.dll] <N/A><17, 0, 0, 6>
[E:\Program Files\Rising\Rav\ScanEx.dll] <Rising><17, 0, 0, 33>
[E:\Program Files\Rising\Rav\PostTrt.dll] <Rising><17, 0, 0, 21>
[E:\PROGRAM FILES\RISING\RAV\mPorts.dll] <Beijing Rising Technology Corporation Limited><3, 0, 0, 3>
[E:\Program Files\Rising\Rav\NvFile.dll] <瑞星><17, 0, 0, 13>
[E:\PROGRAM FILES\RISING\RAV\regmon.dll] < ><17, 0, 0, 12>
[E:\PROGRAM FILES\RISING\RAV\HookWeb.dll] <rising><17, 0, 0, 4>
[E:\Program Files\Rising\Rav\ScanMac.dll] <rising><17, 0, 0, 19>
[E:\Program Files\Rising\Rav\ScanSct.dll] <rising><17, 0, 0, 31>
[E:\Program Files\Rising\Rav\ScanExec.dll] <N/A><17, 0, 0, 21>
[E:\Program Files\Rising\Rav\Unpacker.dll] <rising><17, 0, 0, 19>
[E:\Program Files\Rising\Rav\ExtOLE.dll] <rising><17, 0, 0, 21>
[PID: 428][E:\PROGRAM FILES\RISING\RAV\RavStub.exe] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 27>
[E:\PROGRAM FILES\RISING\RAV\RsCommX.dll] <rising><17, 0, 0, 3>
[E:\PROGRAM FILES\RISING\RAV\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 17>
[PID: 448][e:\program files\rising\rfw\rfwsrv.exe] <Beijing Rising Technology Corporation Limited><3, 2, 0, 0>
[e:\program files\rising\rfw\Rfwdrv.dll] <Beijing Rising Technology Corporation Limited><3, 0, 1, 5>
[e:\program files\rising\rfw\rfwrule.dll] <Beijing Rising Technology Corporation Limited><3, 1, 0, 0>
[e:\program files\rising\rfw\rfwlog.dll] <Beijing Rising Technology Corporation Limited><3, 1, 0, 2>
[PID: 524][D:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[PID: 560][D:\WINNT\system32\spoolsv.exe] <Microsoft Corporation><5.00.2195.6659>
[D:\WINNT\system32\EBPMON24.DLL] <SEIKO EPSON CORPORATION><1, 10, 0, 0>
[PID: 604][D:\WINNT\System32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[PID: 636][D:\WINNT\System32\nvsvc32.exe] <NVIDIA Corporation><6.13.10.2832>
[PID: 712][E:\PROGRAM FILES\RISING\RAV\CCENTER.EXE] <rising><17, 0, 0, 1>
[PID: 776][D:\WINNT\System32\WBEM\WinMgmt.exe] <Microsoft Corporation><1.50.1085.0100>
[PID: 816][D:\WINNT\system32\svchost.exe] <Microsoft Corporation><5.00.2134.1>
[PID: 1024][D:\WINNT\Explorer.EXE] <Microsoft Corporation><5.00.3700.6690>
[D:\WINNT\System32\AcSignIcon.dll] <Autodesk><16.1.63.0>
[D:\Program Files\Common Files\Autodesk Shared\AcSignCore16.dll] <Autodesk><16.1.63.0>
[D:\PROGRA~1\baidu\bar\baidubar.dll] <Baidu.com, Inc.><2, 0, 2, 47>
[PID: 1068][e:\program files\rising\rfw\RfwMain.exe] <Beijing Rising Technology Corporation Limited><3, 1, 0, 19>
[e:\program files\rising\rfw\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 40>
[e:\program files\rising\rfw\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 17>
[e:\program files\rising\rfw\PngDll.dll] <Rising><17, 0, 0, 2>
[PID: 1108][D:\WINNT\System32\spool\DRIVERS\W32X86\3\E_S4I3H2.EXE] <SEIKO EPSON CORPORATION><3.00>
[PID: 1132][E:\PROGRA~1\RISING\RAV\RAVTIMER.EXE] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 39>
[E:\PROGRA~1\RISING\RAV\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 17>
[E:\PROGRA~1\RISING\RAV\RSAPPMGR.DLL] <Rising Corp.><17, 0, 0, 7>
[E:\PROGRA~1\RISING\RAV\CfgDll.dll] <rising><17, 0, 0, 60>
[E:\PROGRA~1\RISING\RAV\RsCommX.dll] <rising><17, 0, 0, 3>
[PID: 1140][E:\PROGRA~1\RISING\RAV\RAVMON.EXE] <Beijing Rising Technology Co., Ltd.><17, 0, 1, 37>
[E:\PROGRA~1\RISING\RAV\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 40>
[E:\PROGRA~1\RISING\RAV\RSAPPMGR.DLL] <Rising Corp.><17, 0, 0, 7>
[E:\PROGRA~1\RISING\RAV\CfgDll.dll] <rising><17, 0, 0, 60>
[E:\PROGRA~1\RISING\RAV\RsCommX.dll] <rising><17, 0, 0, 3>
[E:\PROGRA~1\RISING\RAV\PngDll.dll] <Rising><17, 0, 0, 2>
[E:\PROGRA~1\RISING\RAV\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><17, 0, 0, 17>
[PID: 1176][D:\WINNT\system32\internat.exe] <Microsoft Corporation><5.00.2920.0000>
[PID: 1504][F:\新建文件夹 (3)\SREng.exe] <Smallfrogs Studio><1.1.0.269>
==================================
文件关联
.TXT Error. [txtfile]
.EXE Error. [exefile]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM Error. [hh.exe %1]
.HLP OK. [D:\WINNT\System32\winhlp32.exe %1]
.INI Error. [notepad.exe %1]
.INF Error. [notepad.exe %1]
==================================