正在运行的进程
[PID: 1048][C:\WINNT\Explorer.EXE] [Microsoft Corporation, 5.00.3700.6690]
[C:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
[C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx] [, 1, 0, 0, 1]
[PID: 1132][C:\MisCli.exe] [Jack, 1.00]
[C:\WINNT\system32\vb6chs.dll] [Microsoft Corporation, 6.00.8169]
[C:\WINNT\system32\WINSKCHS.DLL] [Microsoft Corporation, 6.00.8163]
[PID: 1140][C:\MisMsg.exe] [FOCI, 1.00]
[C:\WINNT\system32\vb6chs.dll] [Microsoft Corporation, 6.00.8169]
[PID: 1148][C:\Program Files\Trend Micro\OfficeScan Client\pccntmon.exe] [Trend Micro Inc., 6.5.0.1303]
[C:\Program Files\Trend Micro\OfficeScan Client\loadhttp.dll] [Trend Micro Inc., 6.5.0.1303]
[C:\Program Files\Trend Micro\OfficeScan Client\Pwd.dll] [Trend Micro Inc., 6.5.0.1106]
[C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInAPI.dll] [Trend Micro Inc., 6.5.0.1106]
[C:\Program Files\Trend Micro\OfficeScan Client\OfcPIPC.dll] [N/A, N/A]
[C:\Program Files\Trend Micro\OfficeScan Client\TimeString.dll] [N/A, N/A]
[C:\Program Files\Trend Micro\OfficeScan Client\ntmonres.dll] [Trend Micro Inc., 6.5.0.1106]
[C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInMain.dll] [Trend Micro Inc., 6.5.0.1106]
[C:\Program Files\Trend Micro\OfficeScan Client\OfcPlugInTray.dll] [Trend Micro Inc., 6.5.0.1106]
[PID: 1156][C:\WINNT\system32\Internat.exe] [Microsoft Corporation, 5.00.2920.0000]
[PID: 1052][C:\Program Files\wnwb\wnwb.exe] [深圳世强软件开发部 www.wn51.com , 2006, 10, 20, 1]
[C:\Program Files\wnwb\flyDll.dll] [N/A, N/A]
[C:\Program Files\wnwb\2304wnmkey.dll] [深圳世强软件开发部 www.wnwb.com , 2005, 7, 5, 1]
[PID: 308][C:\WINNT\system32\conime.exe] [Microsoft Corporation, 5.00.2195.6655]
[PID: 1228][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.2800.1106]
[C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx] [, 1, 0, 0, 1]
[C:\WINNT\system32\Macromed\Flash\Flash8.ocx] [Macromedia, Inc., 8,0,22,0]
[PID: 1212][C:\Program Files\Foxmail\Foxmail.exe] [Boda Network Technology Inc., 5.0]
[C:\Program Files\Foxmail\FoxAntiSpam.dll] [N/A, N/A]
[C:\Program Files\Foxmail\3rdParty\punylib.dll] [CNNIC, 1, 0, 0, 3]
[PID: 844][C:\Documents and Settings\908027\桌面\sreng2\SREng\SREng.exe] [Smallfrogs Studio, 2.2.6.605]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINNT\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
[D:\]
[autorun]
OPEN=D:\command.com
==================================
HOSTS 文件
127.0.0.1 localhost
203.191.148.73 www.eachwe.com
127.0.0.1 www.tongxunqicai.cn
127.0.0.1 www.media-china.com.cn
==================================