瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 [求助]请帮忙看一下日志文件 - 弹出窗口

1   1  /  1  页   跳转

[求助]请帮忙看一下日志文件 - 弹出窗口

[求助]请帮忙看一下日志文件 - 弹出窗口

同事的机器,出现一些弹出网页,请帮忙看一下
不胜感谢。
=====================================================================

2006-06-13,12:54:30

System Repair Engineer 2.0.21.505 (2.0 RC 2)
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 1 (Build 2600)
- Administrative User - Completed Functions Allowed

Follow item(s) have been choosed:
    All Boot Items (Including Registry, Startup Folders, Services and so on)
    Browser Add-ons
    Runing Processes (Including process model information)
    File Associations


Boot Items
Registry
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><C:\WINDOWS\System32\ctfmon.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    <vptray><C:\PROGRA~1\SYMANT~1\VPTray.exe>  [Symantec Corporation]
    <SDJobCheck><triggusr.exe>  []
    <CA-AMAgent><C:\Program Files\CA\Unicenter Asset Management\Agents\amagent.exe>  [Computer Associates International, Inc.]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <shell><Explorer.exe>  [Microsoft Corporation]
    <Userinit><userinit.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
    <AppInit_DLLs><>  []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
    <UIHost><logonui.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\IntelWireless]
    <WinlogonNotify: IntelWireless><C:\Program Files\Intel\Wireless\Bin\LgNotify.dll>  [Intel Corporation]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    <ctfmon.exe><; C:\WINDOWS\System32\ctfmon.exe>  [Microsoft Corporation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    <SDJobCheck><; triggusr.exe>  []

==================================
Startup Folders
[Microsoft Office]
  <D:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk><N>
[Powerword 2003]
  <D:\Documents and Settings\All Users\Start Menu\Programs\Startup\Powerword 2003.lnk><N>
[RealSecure(r) Desktop Protector]
  <D:\Documents and Settings\All Users\Start Menu\Programs\Startup\RealSecure(r) Desktop Protector.lnk><N>

==================================
Services
[Asset Management Agent / AmoAgent]
  <C:\WINDOWS\UMCSTUB.EXE><Computer Associates International, Inc.>
[BlackICE / BlackICE]
  <"C:\Program Files\ISS\issSensors\DesktopProtection\blackd.exe"><Internet Security Systems, Inc.>
[Intranet Messenger / BRGNS]
  <C:\WINDOWS\SYSTEM32\RUNDLL32.EXE C:\WINDOWS\SYSTEM32\WBEM\IRJIT.DLL,Export 1087><N/A>
[Unicenter Message Queuing Server / CA-MessageQueuing]
  <"C:\PROGRA~1\CA\SHARED~1\CAM\bin\cam.exe"><Computer Associates International, Inc.>
[CA-License Client / CA_LIC_CLNT]
  <C:\WINDOWS\Lic98Rmt.exe><N/A>
[CA-License Server / CA_LIC_SRVR]
  <C:\WINDOWS\Lic98RmtD.exe><N/A>
[Symantec Event Manager / ccEvtMgr]
  <"C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"><Symantec Corporation>
[Symantec Password Validation / ccPwdSvc]
  <"C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"><Symantec Corporation>
[Symantec Settings Manager / ccSetMgr]
  <"C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"><Symantec Corporation>
[Symantec AntiVirus Definition Watcher / DefWatch]
  <"C:\Program Files\Symantec AntiVirus\DefWatch.exe"><Symantec Corporation>
[EvtEng / EvtEng]
  <C:\Program Files\Intel\Wireless\Bin\EvtEng.exe><Intel Corporation>
[Contivity VPN Service / ExtranetAccess]
  <"C:\Program Files\Nortel Networks\Extranet_serv.exe"><Nortel Networks NA, Inc.>
[Hummingbird Inetd / HCLInetd]
  <C:\WINDOWS\System32\Hummingbird\Connectivity\7.10\Inetd\inetd32.exe><Hummingbird Ltd.>
[Hummingbird Jconfig Daemon / Jconfigd]
  <C:\WINDOWS\System32\Hummingbird\Connectivity\7.10\Jconfig\jconfigdnt.exe><Hummingbird Ltd.>
[Event Log Watch / LogWatch]
  <C:\WINDOWS\LogWatNT.exe><N/A>
[NICCONFIGSVC / NICCONFIGSVC]
  <C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe><Dell Inc.>
[RapApp / RapApp]
  <"C:\Program Files\ISS\issSensors\DesktopProtection\RapApp.exe"><Internet Security Systems, Inc.>
[RegSrvc / RegSrvc]
  <C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe><Intel Corporation>
[Spectrum24 Event Monitor / S24EventMonitor]
  <C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe><Intel Corporation>
[SavRoam / SavRoam]
  <"C:\Program Files\Symantec AntiVirus\SavRoam.exe"><symantec>
[Unicenter Software Delivery / SDService]
  <"c:\Program Files\CA\Unicenter Software Delivery\BIN\SDSERV.EXE"><Computer Associates International, Inc.>
[Symantec Network Drivers Service / SNDSrvc]
  <"C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe"><Symantec Corporation>
[Symantec SPBBCSvc / SPBBCSvc]
  <"C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe"><Symantec Corporation>
[Symantec AntiVirus / Symantec AntiVirus]
  <"C:\Program Files\Symantec AntiVirus\Rtvscan.exe"><Symantec Corporation>
[WLANKEEPER / WLANKEEPER]
  <C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe><Intel? Corporation>

==================================
Browser Add-ons
[MICROQIL2]
  {832C0563-0820-4fef-83D8-418261DBC233} <C:\WINDOWS\System32\RAdminl.dll, RAdminl>
[@shdoclc.dll,-866]
  {c95fe080-8f5d-11d2-a20b-00aa003c157a} <, N/A>
[SupportCentral]
  {E5CA3FCB-32F0-4602-A3FD-0785E3F0F5BF} <C:\WINDOWS\System32\SCTOOL~1.DLL, >
[JNILoader Control]
  {8F0DF9DB-AA5A-4ED0-9176-1C4A9C762C59} <C:\WINDOWS\DOWNLO~1\CONFLICT.2\STJNIL~1.OCX, Databeam>
[E&xport to Microsoft Excel]
  <res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000, N/A>
[上传到QQ网络硬盘]
  <C:\temp\Tencent1\qq\AddToNetDisk.htm, N/A>
[添加到QQ自定义面板]
  <C:\temp\Tencent1\qq\AddPanel.htm, N/A>
[添加到QQ表情]
  <C:\temp\Tencent1\qq\AddEmotion.htm, N/A>
[用QQ彩信发送该图片]
  <C:\temp\Tencent1\qq\SendMMS.htm, N/A>
最后编辑2006-06-14 15:55:14
分享到:
gototop
 

==================================
Running Processes
[PID: 620][\SystemRoot\System32\smss.exe]  <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[PID: 676][\??\C:\WINDOWS\system32\csrss.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 700][\??\C:\WINDOWS\system32\winlogon.exe]  <Microsoft Corporation><5.1.2600.1557 (xpsp2_gdr.040517-1325)>
    [C:\Program Files\Intel\Wireless\Bin\LgNotify.dll]  <Intel Corporation><9, 0, 1, 0>
[PID: 744][C:\WINDOWS\system32\services.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 756][C:\WINDOWS\system32\lsass.exe]  <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[PID: 936][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1064][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1148][C:\Program Files\Intel\Wireless\Bin\EvtEng.exe]  <Intel Corporation><9, 0, 1, 12>
    [C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll]  <Intel Corporation><9, 0, 1, 14>
    [C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL]  <Intel Corporation><9, 0, 1, 22>
[PID: 1200][C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe]  <Intel Corporation ><9, 0, 1, 41>
    [C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL]  <Intel Corporation><9, 0, 1, 22>
    [C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll]  <Intel Corporation><9, 0, 1, 14>
[PID: 1260][C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe]  <Intel? Corporation><9, 0, 1, 14>
    [C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll]  <Intel Corporation><9, 0, 1, 45>
    [C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL]  <Intel Corporation><9, 0, 1, 22>
    [C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll]  <Intel Corporation><9, 0, 1, 14>
    [C:\Program Files\Intel\Wireless\Bin\MurocApi.dll]  <Intel Corporation><9, 0, 1, 54>
    [C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll]  <Intel Corporation><9, 0, 1, 7>
    [C:\Program Files\Intel\Wireless\Bin\C1XStngs.dll]  <Intel Corporation><9, 0, 1, 31>
    [C:\Program Files\Intel\Wireless\Bin\C8021CHS.dll]  <Intel Corporation><9, 0, 1, 31>
    [C:\Program Files\Intel\Wireless\Bin\LSAWRAPI.dll]  <Intel Corporation><9, 0, 1, 1>
[PID: 1460][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1492][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1712][C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll]  <Symantec Corporation><103.5.6.3>
[PID: 1736][C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  <Symantec Corporation><103.5.6.3>
    [C:\PROGRA~1\COMMON~1\SYMANT~1\SPBBC\BB.DLL]  <Symantec Corporation><1,5,1,3>
    [C:\PROGRA~1\COMMON~1\SYMANT~1\SPBBC\SPBBCEVT.DLL]  <Symantec Corporation><1,5,1,3>
    [C:\Program Files\Common Files\Symantec Shared\ccSet.dll]  <Symantec Corporation><103.5.6.3>
    [C:\PROGRA~1\COMMON~1\SYMANT~1\CCSETEVT.DLL]  <Symantec Corporation><103.5.6.3>
[PID: 1864][C:\WINDOWS\system32\spoolsv.exe]  <Microsoft Corporation><5.1.2600.1699 (xpsp2.050610-1533)>
    [C:\WINDOWS\System32\Hummingbird\Connectivity\7.10\Accessories\hcllpr.dll]  <Hummingbird Ltd.><7.1.0.0>
    [C:\WINDOWS\System32\Hummingbird\Connectivity\7.10\Accessories\hcllpr.nls]  <Hummingbird Ltd.><7.1.0.0>
[PID: 1976][C:\WINDOWS\System32\SCardSvr.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1516][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[PID: 1576][C:\Program Files\ISS\issSensors\DesktopProtection\blackd.exe]  <Internet Security Systems, Inc.><7.0.322>
    [C:\Program Files\ISS\issSensors\DesktopProtection\FileSec.dll]  <Internet Security Systems, Inc.><7.0.319>
    [C:\Program Files\ISS\issSensors\DesktopProtection\AC_Base.dll]  <N/A><N/A>
    [C:\WINDOWS\System32\blackdll.dll]  <Internet Security Systems, Inc.><7.0.321>
    [C:\Program Files\ISS\issSensors\DesktopProtection\RapAd.dll]  <Internet Security Systems, Inc.><7.0.05.0>
    [C:\Program Files\ISS\issSensors\DesktopProtection\VpnICE.dll]  <Internet Security Systems, Inc.><7.0.320>
    [C:\Program Files\ISS\issSensors\DesktopProtection\Comply\AC_McAfee.dll]  <Internet Security Systems, Inc.><7.0.320>
    [C:\Program Files\ISS\issSensors\DesktopProtection\Comply\AC_Norton.dll]  <Internet Security Systems, Inc.><7.0.320>
    [C:\Program Files\ISS\issSensors\DesktopProtection\iss-pam1.dll]  <Internet Security Systems><1.10.106.3>
[PID: 204][C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe]  <Intel Corporation><9, 0, 1, 45>
    [C:\Program Files\Intel\Wireless\Bin\PfMgrApi.dll]  <Intel Corporation><9, 0, 1, 45>
    [C:\Program Files\Intel\Wireless\Bin\TraceAPI.DLL]  <Intel Corporation><9, 0, 1, 22>
    [C:\Program Files\Intel\Wireless\Bin\PsRegApi.dll]  <Intel Corporation><9, 0, 1, 14>
    [C:\Program Files\Intel\Wireless\Bin\MurocApi.dll]  <Intel Corporation><9, 0, 1, 54>
    [C:\Program Files\Intel\Wireless\Bin\S24MUDLL.dll]  <Intel Corporation><9, 0, 1, 7>
    [C:\Program Files\Intel\Wireless\Bin\C1XStngs.dll]  <Intel Corporation><9, 0, 1, 31>
    [C:\Program Files\Intel\Wireless\Bin\C8021CHS.dll]  <Intel Corporation><9, 0, 1, 31>
    [C:\Program Files\Intel\Wireless\Bin\LSAWRAPI.dll]  <Intel Corporation><9, 0, 1, 1>
    [C:\Program Files\Intel\Wireless\Bin\ZcSvcCHS.dll]  <Intel Corporation><9, 0, 1, 44>
    [C:\Program Files\Intel\Wireless\Bin\D8021Xps.DLL]  <N/A><N/A>
[PID: 480][C:\WINDOWS\Explorer.EXE]  <Microsoft Corporation><6.00.2800.1106 (xpsp1.020828-1920)>
    [C:\Program Files\Lotus\Sametime Client\autoaway.dll]  <IBM Rehovot><6, 51, 0, 0>
    [C:\Program Files\WinRAR\rarext.dll]  <N/A><N/A>
    [C:\Program Files\Common Files\Symantec Shared\SSC\vpshell2.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\WINDOWS\System32\igfxpph.dll]  <Intel Corporation><3.0.0.3929>
    [C:\WINDOWS\System32\hccutils.DLL]  <Intel Corporation><3.0.0.3929>
    [C:\Program Files\Hummingbird\Connectivity\7.10\HostExplorer\Ftp\heshell.dll]  <Hummingbird Ltd.><7.1.0.0>
[PID: 404][C:\WINDOWS\System32\conime.exe]  <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[PID: 420][C:\PROGRA~1\SYMANT~1\VPTray.exe]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Symantec AntiVirus\SAVRT32.DLL]  <Symantec Corporation><9.7.0.10>
    [C:\Program Files\Symantec AntiVirus\Cliscan.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\PROGRA~1\SYMANT~1\NAVNTUTL.DLL]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Symantec AntiVirus\Cliproxy.dll]  <Symantec Corporation><10.0.2.2000>
[PID: 444][C:\WINDOWS\System32\ctfmon.exe]  <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[PID: 512][C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe]  <Intel><9, 0, 1, 33>
    [C:\PROGRA~1\Intel\Wireless\Bin\IntelAE5.dll]  <Meetinghouse Data Communications><3, 0, 0, 40>
    [C:\PROGRA~1\Intel\Wireless\Bin\TraceAPI.DLL]  <Intel Corporation><9, 0, 1, 22>
    [C:\PROGRA~1\Intel\Wireless\Bin\PsRegApi.dll]  <Intel Corporation><9, 0, 1, 14>
    [C:\Program Files\Intel\Wireless\Bin\D8021Xps.DLL]  <N/A><N/A>
gototop
 

[PID: 976][C:\Program Files\Kingsoft\Powerword 2003\Xdict.exe]  <Kingsoft Co, Ltd.><6, 0, 3, 0>
    [C:\Program Files\Kingsoft\Powerword 2003\ITextOut.dll]  <Kingsoft><1, 1, 0, 0>
    [C:\Program Files\Kingsoft\Powerword 2003\CJKTAB32.dll]  <N/A><N/A>
    [C:\Program Files\Kingsoft\Powerword 2003\XImage32.dll]  <N/A><N/A>
    [C:\Program Files\Kingsoft\Powerword 2003\xfile.dll]  <N/A><N/A>
    [C:\Program Files\Kingsoft\Powerword 2003\KPic10.dll]  <N/A><N/A>
    [C:\Program Files\Kingsoft\Powerword 2003\ijl11.dll]  <Intel Corporation><1.1.2>
    [C:\Program Files\Kingsoft\Powerword 2003\toTTSEngine50.dll]  <Kingsoft Corporation><1, 0, 0, 1>
    [C:\Program Files\Kingsoft\Powerword 2003\NormGrab.DLL]  <Kingsoft Co, Ltd.><6, 0, 0, 0>
    [C:\Program Files\Kingsoft\Powerword 2003\DicMngr.dll]  <Kingsoft><1, 0, 0, 0>
    [C:\Program Files\Kingsoft\Powerword 2003\DBCore10.dll]  <Kingsoft  Corp.><1, 0, 0, 0>
    [C:\Program Files\Kingsoft\Powerword 2003\XdictGrb.dll]  <Kingsoft Co, Ltd.><6, 0, 0, 0>
    [C:\Program Files\Lotus\Sametime Client\autoaway.dll]  <IBM Rehovot><6, 51, 0, 0>
[PID: 992][C:\Program Files\ISS\issSensors\DesktopProtection\blackice.exe]  <Internet Security Systems, Inc.><7.0.320>
    [C:\Program Files\ISS\issSensors\DesktopProtection\FileSec.dll]  <Internet Security Systems, Inc.><7.0.319>
[PID: 1024][C:\Program Files\Symantec AntiVirus\DefWatch.exe]  <Symantec Corporation><10.0.2.2000>
[PID: 1052][C:\WINDOWS\System32\Hummingbird\Connectivity\7.10\Inetd\inetd32.exe]  <Hummingbird Ltd.><7.1.0.0>
    [C:\WINDOWS\System32\HCLNLS.dll]  <Hummingbird Ltd.><7.1.0.0>
    [C:\WINDOWS\System32\Hummingbird\Connectivity\7.10\Inetd\humprdin.dll]  <Hummingbird Ltd.><7.1.0.0>
    [C:\WINDOWS\System32\Hummingbird\Connectivity\7.10\Inetd\HCINETD.NLS]  <Hummingbird Ltd.><7.1.0.0>
[PID: 1216][C:\WINDOWS\System32\Hummingbird\Connectivity\7.10\Jconfig\jconfigdnt.exe]  <Hummingbird Ltd.><7.1.0.0>
[PID: 1240][C:\WINDOWS\LogWatNT.exe]  <N/A><N/A>
    [C:\CA_LIC\lic98.dll]  <Computer Associates><01.46>
[PID: 1300][C:\WINDOWS\System32\tcpsvcs.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 1320][C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe]  <Microsoft Corporation><7.00.9466>
[PID: 1472][C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe]  <Dell Inc.><1, 0, 0, 1>
[PID: 1932][C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe]  <Intel Corporation><9, 0, 1, 10>
[PID: 1964][C:\Program Files\Symantec AntiVirus\SavRoam.exe]  <symantec><10.0.2.2000>
    [C:\Program Files\Common Files\Symantec Shared\SSC\Transman.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\WINDOWS\System32\CBA.DLL]  <LANDesk Software Ltd.><6.12.0.140 E>
    [C:\WINDOWS\System32\MsgSys.dll]  <LANDesk Software Ltd.><6.12.0.140 E>
    [C:\WINDOWS\System32\NTS.dll]  <LANDesk Software Ltd.><6.12.0.141 E>
    [C:\WINDOWS\System32\PDS.DLL]  <LANDesk Software Ltd.><6.12.0.140 E>
    [c:\program files\common files\symantec shared\ssc\ScsComms.dll]  <Symantec Corporation><10.0.2.2000>
[PID: 2012][c:\Program Files\CA\Unicenter Software Delivery\BIN\SDSERV.EXE]  <Computer Associates International, Inc.><4, 0, 2102, 0>
[PID: 2064][C:\WINDOWS\System32\svchost.exe]  <Microsoft Corporation><5.1.2600.0 (xpclient.010817-1148)>
[PID: 2088][C:\Program Files\Symantec AntiVirus\Rtvscan.exe]  <Symantec Corporation><10.0.2.2000>
    [C:\WINDOWS\System32\CBA.DLL]  <LANDesk Software Ltd.><6.12.0.140 E>
    [C:\WINDOWS\System32\MsgSys.dll]  <LANDesk Software Ltd.><6.12.0.140 E>
    [C:\WINDOWS\System32\NTS.dll]  <LANDesk Software Ltd.><6.12.0.141 E>
    [C:\WINDOWS\System32\PDS.DLL]  <LANDesk Software Ltd.><6.12.0.140 E>
    [C:\Program Files\Symantec AntiVirus\NAVLU.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Symantec AntiVirus\NAVNTUTL.DLL]  <Symantec Corporation><10.0.2.2000>
    [c:\program files\common files\symantec shared\ssc\ScsComms.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Symantec AntiVirus\I2ldvp3.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\ccL35.dll]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\ccDec.dll]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\decsdk.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2ID.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2Zip.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2SS.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2GZIP.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2CAB.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2LHA.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2ARJ.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2TNEF.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2LZ.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2AMG.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2RAR.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2TAR.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2RTF.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\Decomposers\Dec2Text.dll]  <Symantec Corporation><3.02.14.03>
    [C:\Program Files\Common Files\Symantec Shared\ccScan.dll]  <Symantec Corporation><103.5.6.3>
    [C:\Program Files\Common Files\Symantec Shared\ecmldr32.DLL]  <Symantec Corporation><51.2.0.12>
    [C:\Program Files\Symantec AntiVirus\DefUtDCD.dll]  <Symantec Corporation><3.1.13a.0>
    [C:\Program Files\Symantec AntiVirus\SAVRT32.DLL]  <Symantec Corporation><9.7.0.10>
    [C:\Program Files\Symantec AntiVirus\IMail.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Symantec AntiVirus\NotesExt.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Symantec AntiVirus\vpmsece3.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Symantec AntiVirus\SymProtectStorage.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCEvt.dll]  <Symantec Corporation><1,5,1,3>
    [C:\Program Files\Symantec AntiVirus\DefUtDCS.dll]  <Symantec Corporation><3.1.13a.0>
    [C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060612.019\ccEraser.dll]  <Symantec Corporation><106.1.5.2>
    [C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060612.019\ecmsvr32.dll]  <Symantec Corporation><61.1.0.11>
    [C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060612.019\NAVEX32a.DLL]  <Symantec Corporation><20061.1.0.14>
    [C:\PROGRA~1\COMMON~1\SYMANT~1\VIRUSD~1\20060612.019\NAVENG32.DLL]  <Symantec Corporation><20061.1.0.14>
    [C:\Program Files\Symantec AntiVirus\NAVAP32.DLL]  <Symantec Corporation><9.7.0.10>
[PID: 2128][c:\Program Files\CA\Unicenter Software Delivery\BIN\TRIGGAG.EXE]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\ACPORT32.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\RDCNF.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDStrCnv.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDCAWIN.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDWINAPI.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
gototop
 

[c:\Program Files\CA\Unicenter Software Delivery\BIN\CTRLCOM.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDWCHAR.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDNLS.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDOSAPI.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\ASMCOM32.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\NATFCL32.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDLIC.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDRES.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\GENERAL.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\COMPON.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\sdevent.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDINFOV.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\SDFILSYS.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
    [c:\Program Files\CA\Unicenter Software Delivery\BIN\FILECOPY.dll]  <Computer Associates International, Inc.><4, 0, 2102, 0>
[PID: 2172][C:\WINDOWS\System32\wdfmgr.exe]  <Microsoft Corporation><5.2.3790.1230 built by: dnsrv(bld4act)>
[PID: 2216][C:\WINDOWS\UMCSTUB.EXE]  <Computer Associates International, Inc.><2.9>
    [C:\WINDOWS\CAWinExF.DLL]  <Computer Associates International, Inc.><1.19.1>
[PID: 2652][C:\WINDOWS\System32\wbem\wmiprvse.exe]  <Microsoft Corporation><5.1.2600.1106 (xpsp1.020828-1920)>
[PID: 1096][C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE]  <Microsoft Corporation><11.0.5510>
    [C:\PROGRA~1\Kingsoft\POWERW~1\PWOFFI~1.DLL]  <Kingsoft Co, Ltd.><6, 0, 0, 0>
    [C:\Program Files\Symantec AntiVirus\vpmsece3.dll]  <Symantec Corporation><10.0.2.2000>
    [C:\Program Files\Symantec AntiVirus\SAVRT32.DLL]  <Symantec Corporation><9.7.0.10>
    [C:\Program Files\Lotus\Sametime Client\autoaway.dll]  <IBM Rehovot><6, 51, 0, 0>
[PID: 2952][C:\Program Files\CA\Unicenter Asset Management\Agents\umclisvc.exe]  <Computer Associates International, Inc.><1.41>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\mbapiw32.dll]  <Computer Associates International, Inc.><1.27>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\BWCC32.dll]  <Borland International><2.02>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\CAWinExF.DLL]  <Computer Associates International, Inc.><1.19.1>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\AMTEXT.ENU]  <Computer Associates International, Inc.><1.13>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\MBCAMW32.DLL]  <Computer Associates><4, 0, 0, 8>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\RSAPIM.dll]  <Computer Associates International, Inc.><4, 0, 0, 10>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\CAWINXSF.dll]  <Computer Associates International, Inc.><1.19.1>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\AwMsq.dll]  <Computer Associates International, Inc.><3.11.26.0>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\emcci2.dll]  <N/A><N/A>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\caft.dll]  <Computer Associates International, Inc.><3.11.26.10>
[PID: 2344][C:\PROGRA~1\CA\SHARED~1\CAM\bin\cam.exe]  <Computer Associates International, Inc.><3.11.26.0>
    [C:\PROGRA~1\CA\SHARED~1\CAM\bin\emcci2.dll]  <N/A><N/A>
[PID: 3792][C:\Program Files\CA\Unicenter Asset Management\Agents\DMSCRIPT.EXE]  <Computer Associates International, Inc.><6.01.0033>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\CAWINEXF.dll]  <Computer Associates International, Inc.><1.19.1>
    [C:\Program Files\CA\Unicenter Asset Management\Agents\dmscript.ENU]  <Computer Associates International, Inc.><6, 1, 8, 0>
[PID: 3616][C:\WINDOWS\system32\wscript.exe]  <Microsoft Corporation><5.6.0.6626>
[PID: 1600][C:\Program Files\Lotus\Sametime Client\Connect.exe]  <Lotus Development Corporation><6, 51, 0, 0>
    [C:\Program Files\Lotus\Sametime Client\connecte.dll]  <Lotus Development Corporation><6, 51, 0, 0>
    [C:\PROGRA~1\Lotus\SAMETI~1\connect.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\Lotus\SAMETI~1\connect.dll]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\Program Files\Lotus\Sametime Client\autoaway.dll]  <IBM Rehovot><6, 51, 0, 0>
    [C:\Program Files\Common Files\Lotus\Sametime\vpaot.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\vpcore.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\Lotus\SAMETI~1\VpStore.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\VpList.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\treeui.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\directui.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\ListUI.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\CommUI.ocx]  <Ubique Ltd.><6, 5, 1, 1>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\MeetUI.ocx]  <Ubique Ltd.><6, 51, 0, 1>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\InviteUI.ocx]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\commui.dll]  <Ubique Ltd.><6, 5, 1, 1>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\meetui.dll]  <Ubique Ltd.><6, 51, 0, 1>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\inviteui.dll]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\Lotus\SAMETI~1\vpStore.dll]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\treeui.dll]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\directUI.dll]  <Ubique Ltd.><6, 51, 0, 0>
    [C:\PROGRA~1\COMMON~1\Lotus\Sametime\listUI.dll]  <Ubique Ltd.><6, 51, 0, 0>
[PID: 3740][C:\Program Files\Maxthon\Maxthon.exe]  <MY Soft Technology><1, 5, 0, 95>
    [C:\Program Files\Maxthon\maxzlib.dll]  < ><1, 0, 0, 2>
    [C:\Program Files\Maxthon\Services\RealTime\real_time.dll]  <><1, 0, 0, 1>
    [C:\Program Files\Lotus\Sametime Client\autoaway.dll]  <IBM Rehovot><6, 51, 0, 0>
    [C:\Program Files\Oracle\JInitiator 1.3.1.18\bin\npjinit13118.dll]  <Oracle Corporation><1, 3, 1, 18>
    [C:\Program Files\Oracle\JInitiator 1.3.1.18\bin\beans.ocx]  <Oracle Corporation><1, 3, 1, 18>
    [C:\Program Files\Oracle\JInitiator 1.3.1.18\bin\jpishare.dll]  <><1, 3, 1, 18>
    [C:\PROGRA~1\Oracle\JINITI~1.18\bin\hotspot\jvm.dll]  <N/A><N/A>
    [C:\PROGRA~1\Oracle\JINITI~1.18\bin\hpi.dll]  <N/A><N/A>
    [C:\PROGRA~1\Oracle\JINITI~1.18\bin\verify.dll]  <N/A><N/A>
    [C:\PROGRA~1\Oracle\JINITI~1.18\bin\java.dll]  <N/A><N/A>
    [C:\PROGRA~1\Oracle\JINITI~1.18\bin\zip.dll]  <N/A><N/A>
    [C:\Program Files\Oracle\JInitiator 1.3.1.18\bin\awt.dll]  <N/A><N/A>
    [C:\Program Files\Oracle\JInitiator 1.3.1.18\bin\fontmanager.dll]  <N/A><N/A>
    [C:\WINDOWS\System32\ialmgicd.dll]  <Intel Corporation><6.14.10.3929>
    [C:\WINDOWS\System32\ialmgdev.dll]  <Intel Corporation><6.14.10.3929>
    [C:\Program Files\Oracle\JInitiator 1.3.1.18\bin\net.dll]  <N/A><N/A>
    [C:\Program Files\Oracle\JInitiator 1.3.1.18\bin\packager.dll]  <N/A><N/A>
    [C:\WINDOWS\System32\Macromed\Flash\Flash8a.ocx]  <Macromedia, Inc.><8,0,24,0>
    [C:\WINDOWS\System32\Macromed\Common\SwSupport.dll]  <Macromedia, Inc.><10.0r210>
[PID: 3720][C:\Program Files\Microsoft Office\Office10\EXCEL.EXE]  <Microsoft Corporation><10.0.6789>
    [C:\Program Files\Lotus\Sametime Client\autoaway.dll]  <IBM Rehovot><6, 51, 0, 0>
[PID: 1708][D:\Documents and Settings\305013638\Desktop\sreng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [C:\Program Files\Lotus\Sametime Client\autoaway.dll]  <IBM Rehovot><6, 51, 0, 0>

==================================
File Associations
.TXT  Error. [C:\WINDOWS\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. [C:\WINDOWS\hh.exe %1]
.HLP  Error. [C:\WINDOWS\winhlp32.exe %1]
.INI  Error. [C:\WINDOWS\NOTEPAD.EXE %1]
.INF  Error. [C:\WINDOWS\NOTEPAD.EXE %1]
.VBS  Error. []
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock Provider

==================================
gototop
 

非常感谢你的耐心和无私
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT