[D:\心⌒型\QQIEHelper.dll] [深圳市腾讯计算机系统有限公司, 1, 1, 0, 5]
[PID: 2696][C:\Program Files\INTERNET EXPLORER\IEXPLORE.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\kakatool.dll] [Beijing Rising Technology Co., Ltd., 2, 0, 2, 6]
[D:\心⌒型\QQIEHelper.dll] [深圳市腾讯计算机系统有限公司, 1, 1, 0, 5]
[C:\WINDOWS\system32\macromed\flash\Flash85.ocx] [Macromedia, Inc., 8,5,0,133]
[C:\WINDOWS\system32\rmoc3260.dll] [RealNetworks, Inc., 6.0.9.2237]
[C:\WINDOWS\system32\PNCRT.dll] [Real Networks, Inc, 6.0.0.0]
[C:\Program Files\Common Files\Real\Common\pnrs3260.dll] [RealNetworks, Inc., 6.0.9.3985]
[PID: 3416][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] [RealNetworks, Inc., 0.1.0.3427]
[PID: 3152][C:\DOCUME~1\new\LOCALS~1\Temp\ThankYou.exe] [N/A, N/A]
[PID: 2004][C:\WINDOWS\system32\conime.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 5044][C:\Program Files\Real\RealPlayer\realplay.exe] [RealNetworks, Inc., 6.0.12.1348]
[C:\WINDOWS\system32\PNCRT.dll] [Real Networks, Inc, 6.0.0.0]
[C:\Program Files\Common Files\Real\Common\objb3201.dll] [RealNetworks, Inc., 0.1.0.6244]
[C:\Program Files\Real\RealPlayer\rpplugins\rpap3260.dll] [RealNetworks, Inc., 6.0.9.2954]
[C:\Program Files\Common Files\Real\Common\pnrs3260.dll] [RealNetworks, Inc., 6.0.9.3985]
[C:\Program Files\Real\RealPlayer\lang\cdplay_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\dbcomp_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\embed_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\gemctl_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\pngui_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\pdgenxfer_cn.dll] [N/A, N/A]
[C:\Program Files\Real\RealPlayer\lang\rjctl_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rjeq_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rjres_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rjskin_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rjviz_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rjfade_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rjdlg_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rjmisc_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rjprog_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rpapp_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rpclsvc_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rpclutil_cn.dll] [RealNetworks, Inc., 6.0.12.299]
[C:\Program Files\Real\RealPlayer\lang\rpdemand_cn.dll] [RealNetworks, Inc., 6.0.12.299]
[C:\Program Files\Real\RealPlayer\lang\rpdsplyr_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rpgutil_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rpmnpane_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rpplylst_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\rpwebctl_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\tcdinfo_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\tclsvc_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\tdwnmgr_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\tmp3_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\twave_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\teasdk_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\tearm_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\tmdedit_cn.dll] [RealNetworks, Inc., 6.0.12.298]
[C:\Program Files\Real\RealPlayer\lang\mydevices_cn.dll] [RealNetworks, Inc., 6.0.12.299]
[C:\Program Files\Real\RealPlayer\rpplugins\rpcl3260.dll] [RealNetworks, Inc., 6.0.9.3027]
[C:\Program Files\Common Files\Real\RCAPlugins\uisy3201.dll] [RealNetworks, Inc., 0.1.0.3749]
[C:\Program Files\Common Files\Real\Plugins\zipf3260.dll] [RealNetworks, Inc., 6.0.8.2469]
[C:\Program Files\Common Files\Real\RCAPlugins\rpcontrols1.dll] [RealNetworks, Inc., 6.0.1.2153]
[C:\Program Files\Common Files\Real\Plugins\pxcb3210.dll] [RealNetworks, Inc., 1.0.0.3914]
[C:\Program Files\Real\RealPlayer\rpplugins\rpmn3260.dll] [RealNetworks, Inc., 6.0.9.2851]
[C:\Program Files\Real\RealPlayer\rpplugins\rpms3260.dll] [RealNetworks, Inc., 6.0.1.2188]
[C:\Program Files\Real\RealPlayer\rpplugins\MPACore.dll] [RealNetworks, Inc., 1.0.3.2207]
[C:\Program Files\Real\RealPlayer\rpplugins\myde3260.dll] [RealNetworks, Inc., 6.0.10.2416]
[C:\Program Files\Common Files\Real\Common\pngu3267.dll] [RealNetworks, Inc., 6.7.0.2629]
[C:\Program Files\Common Files\Real\Common\pnen3260.dll] [RealNetworks, Inc., 10.0.0.895]
[C:\Program Files\Common Files\Real\Plugins\vsrlocal.dll] [RealNetworks, Inc., 10.1.0.795]
[C:\Program Files\Common Files\Real\Plugins\vidsite.dll] [RealNetworks, Inc., 10.0.0.868]
[C:\Program Files\Common Files\Real\Plugins\clntxres.dll] [RealNetworks, Inc., 10.0.0.3446]
[C:\Program Files\Real\RealPlayer\rpplugins\rjbe3260.dll] [RealNetworks, Inc., 6.0.4.2191]
[C:\Program Files\Common Files\Real\Plugins\httpfsys.dll] [RealNetworks, Inc., 10.0.0.2668]
[C:\Program Files\Common Files\Real\RCAPlugins\sonr3210.dll] [RealNetworks, Inc., 1.0.0.2249]
[C:\Program Files\Common Files\Real\Plugins\cont3260.dll] [RealNetworks, Inc., 6.0.0.1816]
[C:\Program Files\Common Files\Real\Plugins\ramfformat.dll] [RealNetworks, Inc., 10.0.0.2111]
[C:\Program Files\Common Files\Real\RCAPlugins\locd3210.dll] [RealNetworks, Inc., 1.0.0.2051]
[C:\Program Files\Common Files\Real\Plugins\ramrender.dll] [RealNetworks, Inc., 10.0.0.1777]
[C:\Program Files\Common Files\Real\Common\rjbviz.dll] [RealNetworks, Inc., 1.0.2.3809]
[C:\Program Files\Common Files\Real\Plugins\smlrender.dll] [RealNetworks, Inc., 10.0.0.1364]
[C:\Program Files\Common Files\Real\RCAPlugins\rpcontrols2.dll] [RealNetworks, 6.0.1.2153]
[C:\Program Files\Common Files\Real\RCAPlugins\gemx3201.dll] [RealNetworks, Inc., 0.1.0.5786]
[C:\Program Files\Common Files\Real\Visualizations\Annabelle.rpv] [RealNetworks, Inc., 1.0.0.2]
[C:\Program Files\Common Files\Real\Codecs\hxltcolor.dll] [RealNetworks, Inc., 10.0.0.725]
[C:\Program Files\Common Files\Real\Plugins\rarender.dll] [RealNetworks, Inc., 10.0.0.874]
[C:\Program Files\Common Files\Real\Codecs\cook.dll] [RealNetworks, Inc., 10.0.0.1625]
[C:\Program Files\Common Files\Real\Plugins\rvrender.dll] [RealNetworks, Inc., 10.0.0.1259]
[C:\Program Files\Common Files\Real\Codecs\RV40.DLL] [RealNetworks, Inc., 10.0.0.1355]
[C:\Program Files\Common Files\Real\Codecs\drvc.dll] [RealNetworks, Inc., 10.0.0.1355]
[C:\Program Files\Common Files\Real\Plugins\smmrender.dll] [RealNetworks, Inc., 10.0.0.864]
[C:\Program Files\Common Files\Real\Plugins\authmgr.dll] [RealNetworks, Inc., 10.0.0.1317]
[C:\Program Files\Common Files\Real\RCAPlugins\gema3201.dll] [RealNetworks, Inc., 0.1.0.3732]
[C:\Program Files\Common Files\Real\Plugins\smplfsys.dll] [RealNetworks, Inc., 10.0.0.1654]
[C:\Program Files\Common Files\Real\Update_OB\rnad3201.dll] [RealNetworks, Inc., 0.1.0.3427]
[C:\Program Files\Real\RealPlayer\rpplugins\rpwe3260.dll] [RealNetworks, Inc., 6.0.1.2194]
[C:\Program Files\Common Files\Real\Common\twebbrowse.dll] [RealNetworks, Inc., 1.0.2.1511]
[C:\Program Files\Real\RealPlayer\rpplugprot.dll] [RealNetworks, Inc., 6.0.10.2157]
[C:\WINDOWS\system32\macromed\flash\Flash85.ocx] [Macromedia, Inc., 8,5,0,133]
[PID: 5116][C:\WINDOWS\system32\cmd.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 5584][F:\木马\SREng.EXE] [Smallfrogs Studio, 2.3.13.690]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
127.0.0.1 localhost
==================================
API HOOK
N/A
==================================
[/CODE]