==================================
正在运行的进程
[PID: 468][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 696][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 724][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\Ati2evxx.dll] <ATI Technologies Inc.><6.14.10.4124>
[PID: 772][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 784][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 936][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4124>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2499>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[PID: 952][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1192][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1260][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1324][C:\KV2004\KVSrvXp_1.exe] <JiangMin Ltd.><8.0.0.311>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[PID: 1336][C:\KV2004\KVwsc.exe] <Jiangmin Co><1, 0, 0, 8>
[PID: 1376][C:\WINDOWS\system32\Kindber.exe] <N/A><N/A>
[PID: 1648][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4124>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2499>
[PID: 1704][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[C:\KV2004\KVShell_1.dll] <JiangMin Lmt><8.0.0.309>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\KvXP0804_1.lng] <N/A><N/A>
[C:\KV2004\KVComm_1.dll] <JiangMin Ltd.><8.0.0.312>
[C:\KV2004\APIImpl.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\GUIExt.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\GUIExt0804.lng] <JiangMin Ltd.><7, 1, 0, 200>
[C:\Program Files\Thunder\ComDlls\XunLeiBHO_002.dll] <Thunder Networking Technologies,LTD><5, 0, 0, 2>
[C:\PROGRA~1\KuGoo3\KUGOO3~1.OCX] <N/A><N/A>
[PID: 1808][C:\WINDOWS\RTHDCPL.EXE] <Realtek Semiconductor Corp.><2.0.1.7>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[PID: 1832][C:\Program Files\DAEMON Tools\daemon.exe] <DT Soft Ltd.><4.03.0.0>
[C:\Program Files\DAEMON Tools\daemon.dll] <DT Soft Ltd.><4.03.0.0>
[C:\Program Files\DAEMON Tools\PFCTOC.DLL] <Padus(R), Inc.><1, 0, 0, 12>
[C:\Program Files\DAEMON Tools\Plugins\Images\bw5mount.dll] <N/A><1.0.6.0>
[C:\Program Files\DAEMON Tools\Plugins\Images\ccdmount.dll] <GENERIC><1.10.0.0>
[C:\Program Files\DAEMON Tools\Plugins\Images\mdsmount.dll] <GENERIC><1.12.0.0>
[C:\Program Files\DAEMON Tools\Plugins\Images\nrgmount.dll] <GENERIC><1.11.0.0>
[C:\Program Files\DAEMON Tools\Plugins\Images\pdimount.dll] <GENERIC><1.01.0.0>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[PID: 1840][C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe] <Team H2O><v0.3.1412>
[C:\Program Files\SyncroSoft\Pos\H2O\emu.dll] <Team H2O><4.3.0.0>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[C:\KV2004\KVMonXp_1.kxp] <JiangMin Ltd.><8.0.0.309>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[C:\KV2004\UpdateX.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\KvXP0804_1.lng] <N/A><N/A>
[C:\KV2004\GUIExt.dll] <JiangMin Ltd.><8.0.0.309>
[C:\KV2004\lang\GUIExt0804.lng] <JiangMin Ltd.><7, 1, 0, 200>
[PID: 1904][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[PID: 1960][C:\Documents and Settings\funkyji\桌面\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
[C:\WINDOWS\system32\KindberKey.DLL] <N/A><N/A>
[C:\WINDOWS\system32\KVWspXP_1.dll] <JiangMin Ltd.><8.0.0.312>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================