瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 没有高手吗?【求助】Power和GsServer紧急求助,急~!

1   1  /  1  页   跳转

没有高手吗?【求助】Power和GsServer紧急求助,急~!

没有高手吗?【求助】Power和GsServer紧急求助,急~!

五一前中了一个病毒到现在还没解决,请你们帮助.

用卡卡查杀恶意软件总是找到:"广告恶意程序Power"和"恶意程序GsServer"无论我用那种方法再重新启动都无法清除,见图1(我在安全模式中还用了,Windows清理助手\恶意软件清理助手等,都无法清除),在安全模式中可以清除,可是一正常启动就又恢复成原来的样子.

在网上也找了好多资料,也在我的系统目录d:\windows下发现svchost.exe文件,我也用一些软件把这个文件删除.再重启后,这个文件又出现了.

另外还有一现象在卡卡中看"IE及系统修复"中的Hosts文件,有很多恶意网址,我修复后,到下次启动,就又出现了.见图2

我估计是在系统启动的时候加载了什么,我用瑞星听侦器,扫描出了文件,麻烦你们分析下,并给出一个解决方案,谢谢.急!!!

附件附件:

下载次数:325
文件类型:application/octet-stream
文件大小:
上传时间:2007-5-5 10:27:55
描述:



最后编辑2007-05-05 10:19:22
分享到:
gototop
 

瑞星听诊器内容:
未知家族病毒分析
扫描结果:
无可疑文件


系统活动进程
D:\DOCUMENTS AND SETTINGS\123\桌面\RSDETECT.EXE
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

D:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
D:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE11\MSOHEV.DLL
D:\PROGRAM FILES\RISING\RAV\RAVSCRCH.DLL
D:\WINDOWS\SYSTEM32\MACROMED\FLASH\FLASH9B.OCX
D:\WINDOWS\SYSTEM32\MSACM32.DRV

D:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
D:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE11\MSOHEV.DLL
D:\PROGRAM FILES\RISING\RAV\RAVSCRCH.DLL
D:\WINDOWS\SYSTEM32\MACROMED\FLASH\FLASH9B.OCX
D:\WINDOWS\SYSTEM32\MSACM32.DRV

D:\WINDOWS\SYSTEM32\ALG.EXE
D:\WINDOWS\SVCHOST.EXE
D:\WINDOWS\SVCHOST.EXE
D:\WINDOWS\SYSTEM32\SMSS.EXE
D:\WINDOWS\SYSTEM32\CSRSS.EXE
D:\WINDOWS\SYSTEM32\WINLOGON.EXE
D:\WINDOWS\SYSTEM32\MSACM32.DRV

D:\WINDOWS\SYSTEM32\SERVICES.EXE
D:\WINDOWS\SYSTEM32\LSASS.EXE
D:\WINDOWS\SYSTEM32\SVCHOST.EXE
D:\WINDOWS\SYSTEM32\SVCHOST.EXE
D:\WINDOWS\SYSTEM32\SVCHOST.EXE
D:\WINDOWS\SYSTEM32\SVCHOST.EXE
D:\WINDOWS\SYSTEM32\SVCHOST.EXE
D:\PROGRAM FILES\RISING\RFW\RFWSRV.EXE
D:\PROGRAM FILES\RISING\RFW\RFWRULE.DLL
D:\PROGRAM FILES\RISING\RFW\RFWLOG.DLL
D:\PROGRAM FILES\RISING\RFW\RFWDRV.DLL
D:\PROGRAM FILES\RISING\RFW\PSAPI.DLL
D:\PROGRAM FILES\RISING\RFW\MONDRV.DLL
D:\PROGRAM FILES\RISING\RFW\PROCLIB.DLL
D:\PROGRAM FILES\RISING\RFW\MPORTS.DLL

D:\WINDOWS\SYSTEM32\SPOOLSV.EXE
D:\WINDOWS\SYSTEM32\MDIMON.DLL
D:\WINDOWS\SYSTEM32\SPOOL\PRTPROCS\W32X86\MDIPPR.DLL

D:\WINDOWS\SYSTEM32\MSGGHOST.EXE
D:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
D:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE11\MSOHEV.DLL
D:\PROGRAM FILES\RISING\RAV\RAVSCRCH.DLL

D:\WINDOWS\EXPLORER.EXE
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
D:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE11\MSOHEV.DLL
D:\PROGRAM FILES\WINRAR\RAREXT.DLL
F:\RQCN\UNLOCKER\UNLOCKERCOM.DLL
D:\WINDOWS\SYSTEM32\RAVEXT.DLL
D:\PROGRAM FILES\RISING\RAV\RAVSCRCH.DLL
D:\WINDOWS\SYSTEM32\MSCOREE.DLL
D:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V1.1.4322\SHFUSION.DLL
D:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V1.1.4322\MSVCR71.DLL
D:\WINDOWS\SYSTEM32\MSADP32.ACM
D:\WINDOWS\SYSTEM32\MSACM32.DRV

D:\PROGRAM FILES\RISING\RFW\RFWMAIN.EXE
D:\PROGRAM FILES\RISING\RFW\RSGUILIB.DLL
D:\PROGRAM FILES\RISING\RFW\RSCOMMON.DLL
D:\PROGRAM FILES\RISING\RFW\RFWCTRL.DLL
D:\PROGRAM FILES\RISING\RFW\RSXML.DLL
D:\PROGRAM FILES\RISING\RFW\PNGDLL.DLL
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

D:\PROGRAM FILES\RISING\ANTISPYWARE\RUNIEP.EXE
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEP_CTRL.DLL
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

D:\WINDOWS\SYSTEM32\CTFMON.EXE
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

D:\WINDOWS\SVCHOST.EXE
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

F:\RQCN\ARSWP\ARSWP.EXE
F:\RQCN\ARSWP\ARSWP.DLL
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL

D:\PROGRAM FILES\RISING\ANTISPYWARE\RAS.EXE
D:\PROGRAM FILES\RISING\ANTISPYWARE\RASGUI.DLL
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
D:\PROGRAM FILES\RISING\ANTISPYWARE\ENGINE.DLL
D:\PROGRAM FILES\RISING\ANTISPYWARE\ZIP.DLL

D:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
D:\PROGRAM FILES\RISING\ANTISPYWARE\IEPROT.DLL
D:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE11\MSOHEV.DLL
D:\PROGRAM FILES\RISING\RAV\RAVSCRCH.DLL
D:\WINDOWS\SYSTEM32\MACROMED\FLASH\FLASH9B.OCX
D:\WINDOWS\SYSTEM32\MSACM32.DRV
D:\WINDOWS\SYSTEM32\WINWB86.IME


普通自启动项
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
RfwMain = "D:\PROGRAM FILES\RISING\RFW\RFWMAIN.EXE" -STARTUP
runeip = D:\PROGRAM FILES\RISING\ANTISPYWARE\RUNIEP.EXE
RavTray = "D:\PROGRAM FILES\RISING\RAV\RAVTRAY.EXE"
RavTask = "D:\PROGRAM FILES\RISING\RAV\RAVTASK.EXE" -SYSTEM

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
KKDelay = D:\PROGRAM FILES\RISING\ANTISPYWARE\RUNONCE.EXE

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
ctfmon.exe = D:\WINDOWS\SYSTEM32\CTFMON.EXE


系统文件关联
.exe ==> exefile = "%1" %*
.com ==> comfile = "%1" %*
.cmd ==> cmdfile = "%1" %*
.bat ==> batfile = "%1" %*
.txt ==> txtfile = %SystemRoot%\system32\NOTEPAD.EXE %1
.scr ==> scrfile = "%1" /S
.reg ==> regfile = regedit.exe "%1"
.doc ==> Word.Document.8 = "D:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE" /n /dde

其它启动项
WIN.INI
无信息

SYSTEM.INI
SHELL = Explorer.exe
SCRNSAVE.EXE = D:\WINDOWS\System32\logon.scr


Winlogon 启动项
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
igfxcui = IGFXSRVC.DLL

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Userinit = D:\WINDOWS\SYSTEM32\USERINIT.EXE,
shell = EXPLORER.EXE


IE - BHO

Winsock SPI
MSAFD Tcpip [TCP/IP] = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
MSAFD Tcpip [UDP/IP] = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
MSAFD Tcpip [RAW/IP] = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
RSVP UDP Service Provider = D:\WINDOWS\SYSTEM32\RSVPSP.DLL
RSVP TCP Service Provider = D:\WINDOWS\SYSTEM32\RSVPSP.DLL
MSAFD NetBIOS [\Device\NetBT_Tcpip_{F784E4E2-2E04-4BAD-954F-C6E05988A28D}] SEQPACKET 0 = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
MSAFD NetBIOS [\Device\NetBT_Tcpip_{F784E4E2-2E04-4BAD-954F-C6E05988A28D}] DATAGRAM 0 = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
MSAFD NetBIOS [\Device\NetBT_Tcpip_{2F89D63F-17E9-4306-BC4B-0263AE9CCA1D}] SEQPACKET 1 = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
MSAFD NetBIOS [\Device\NetBT_Tcpip_{2F89D63F-17E9-4306-BC4B-0263AE9CCA1D}] DATAGRAM 1 = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
MSAFD NetBIOS [\Device\NetBT_Tcpip_{3AF3E2EB-8998-463D-B8CF-94AEC77AB819}] SEQPACKET 2 = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
MSAFD NetBIOS [\Device\NetBT_Tcpip_{3AF3E2EB-8998-463D-B8CF-94AEC77AB819}] DATAGRAM 2 = D:\WINDOWS\SYSTEM32\MSWSOCK.DLL
gototop
 

系统服务项
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services
Alerter = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE
ALG = D:\WINDOWS\SYSTEM32\ALG.EXE
AppMgmt = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
aspnet_state = D:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V1.1.4322\ASPNET_STATE.EXE
AudioSrv = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
BITS = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Browser = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
CiSvc = D:\WINDOWS\SYSTEM32\CISVC.EXE
ClipSrv = D:\WINDOWS\SYSTEM32\CLIPSRV.EXE
COMSysApp = D:\WINDOWS\SYSTEM32\DLLHOST.EXE /PROCESSID:{02D4B3F1-FD88-11D1-960D-00805FC79235}
CryptSvc = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
DcomLaunch = D:\WINDOWS\SYSTEM32\SVCHOST -K DCOMLAUNCH
Dhcp = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Disk Service = D:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WEB FOLDERS\MSOSV.EXE
dmadmin = D:\WINDOWS\SYSTEM32\DMADMIN.EXE /COM
dmserver = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Dnscache = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE
ERSvc = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Eventlog = D:\WINDOWS\SYSTEM32\SERVICES.EXE
EventSystem = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
FastUserSwitchingCompatibility = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Hello World = D:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\WEB FOLDERS\MSOSV.EXE
helpsvc = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
HTTPFilter = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K HTTPFILTER
ImapiService = D:\WINDOWS\SYSTEM32\IMAPI.EXE
lanmanserver = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
lanmanworkstation = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
LmHosts = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE
Messenger = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
mnmsrvc = D:\WINDOWS\SYSTEM32\MNMSRVC.EXE
MSDTC = D:\WINDOWS\SYSTEM32\MSDTC.EXE
MSIServer = D:\WINDOWS\SYSTEM32\MSIEXEC.EXE /V
NetDDE = D:\WINDOWS\SYSTEM32\NETDDE.EXE
NetDDEdsdm = D:\WINDOWS\SYSTEM32\NETDDE.EXE
Netlogon = D:\WINDOWS\SYSTEM32\LSASS.EXE
Netman = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Nla = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
NtLmSsp = D:\WINDOWS\SYSTEM32\LSASS.EXE
NtmsSvc = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
ose = "D:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\SOURCE ENGINE\OSE.EXE"
PlugPlay = D:\WINDOWS\SYSTEM32\SERVICES.EXE
PolicyAgent = D:\WINDOWS\SYSTEM32\LSASS.EXE
ProtectedStorage = D:\WINDOWS\SYSTEM32\LSASS.EXE
RasAuto = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
RasMan = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
RavService = "D:\PROGRAM FILES\RISING\RAV\RAVSERVICE.EXE" /SERVICE
RDSessMgr = D:\WINDOWS\SYSTEM32\SESSMGR.EXE
RemoteAccess = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
RemoteRegistry = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE
RfwProxySrv = D:\PROGRAM FILES\RISING\RFW\RFWPROXY.EXE
RfwService = D:\PROGRAM FILES\RISING\RFW\RFWSRV.EXE
RpcLocator = D:\WINDOWS\SYSTEM32\LOCATOR.EXE
RpcSs = D:\WINDOWS\SYSTEM32\SVCHOST -K RPCSS
RsCCenter = "D:\PROGRAM FILES\RISING\RAV\CCENTER.EXE"
RsRavMon = "D:\PROGRAM FILES\RISING\RAV\RAVMOND.EXE"
RSVP = D:\WINDOWS\SYSTEM32\RSVP.EXE
SamSs = D:\WINDOWS\SYSTEM32\LSASS.EXE
SCardDrv = D:\WINDOWS\SYSTEM32\SCARDSVR.EXE
SCardSvr = D:\WINDOWS\SYSTEM32\SCARDSVR.EXE
Schedule = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
seclogon = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
SENS = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
SharedAccess = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
ShellHWDetection = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Spooler = D:\WINDOWS\SYSTEM32\SPOOLSV.EXE
srservice = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
SSDPSRV = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE
stisvc = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K IMGSVC
SwPrv = D:\WINDOWS\SYSTEM32\DLLHOST.EXE /PROCESSID:{BBCC050C-0E69-410C-B07B-FFC7C06DDB6E}
SysmonLog = D:\WINDOWS\SYSTEM32\SMLOGSVC.EXE
TapiSrv = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
TermService = D:\WINDOWS\SYSTEM32\SVCHOST -K DCOMLAUNCH
Themes = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
TlntSvr = D:\WINDOWS\SYSTEM32\TLNTSVR.EXE
TrkWks = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
UfAutoLoadService = D:\WINDOWS\SYSTEM32\UFAUTOLOADSERVICE.EXE
UfMsgGhost = D:\WINDOWS\SYSTEM32\MSGGHOST.EXE
upnphost = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE
UPS = D:\WINDOWS\SYSTEM32\UPS.EXE
VSS = D:\WINDOWS\SYSTEM32\VSSVC.EXE
W32Time = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
WebClient = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE
winmgmt = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
WmdmPmSN = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
Wmi = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
WmiApSrv = D:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE
wscsvc = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
wuauserv = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
WZCSVC = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS
xmlprov = D:\WINDOWS\SYSTEM32\SVCHOST.EXE -K NETSVCS


文件驱动
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services
FltMgr = D:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS
MRxDAV = D:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS
MRxSmb = D:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS
NetBIOS = D:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS
Rdbss = D:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS
sr = D:\WINDOWS\SYSTEM32\DRIVERS\SR.SYS
Srv = D:\WINDOWS\SYSTEM32\DRIVERS\SRV.SYS


系统驱动项
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services
ACPI = D:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS
aec = D:\WINDOWS\SYSTEM32\DRIVERS\AEC.SYS
AFD = D:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS
ALCXSENS = D:\WINDOWS\SYSTEM32\DRIVERS\ALCXSENS.SYS
ALCXWDM = D:\WINDOWS\SYSTEM32\DRIVERS\ALCXWDM.SYS
AsyncMac = D:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS
atapi = D:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS
Atmarpc = D:\WINDOWS\SYSTEM32\DRIVERS\ATMARPC.SYS
audstub = D:\WINDOWS\SYSTEM32\DRIVERS\AUDSTUB.SYS
BaseTDI = D:\WINDOWS\SYSTEM32\DRIVERS\BASETDI.SYS
Cdrom = D:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS
Disk = D:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS
dmboot = D:\WINDOWS\SYSTEM32\DRIVERS\DMBOOT.SYS
dmio = D:\WINDOWS\SYSTEM32\DRIVERS\DMIO.SYS
DMusic = D:\WINDOWS\SYSTEM32\DRIVERS\DMUSIC.SYS
drmkaud = D:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS
ExpScaner = D:\PROGRAM FILES\RISING\RAV\EXPSCAN.SYS
Fdc = D:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS
Flpydisk = D:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS
FsVga = D:\WINDOWS\SYSTEM32\DRIVERS\FSVGA.SYS
Ftdisk = D:\WINDOWS\SYSTEM32\DRIVERS\FTDISK.SYS
gameenum = D:\WINDOWS\SYSTEM32\DRIVERS\GAMEENUM.SYS
Gpc = D:\WINDOWS\SYSTEM32\DRIVERS\MSGPC.SYS
hidusb = D:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS
HookCont = D:\PROGRAM FILES\RISING\RAV\HOOKCONT.SYS
HookReg = D:\PROGRAM FILES\RISING\RAV\HOOKREG.SYS
HookSys = D:\PROGRAM FILES\RISING\RAV\HOOKSYS.SYS
HTTP = D:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS
i8042prt = D:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS
ialm = D:\WINDOWS\SYSTEM32\DRIVERS\IALMNT5.SYS
Imapi = D:\WINDOWS\SYSTEM32\DRIVERS\IMAPI.SYS
IntelIde = D:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS
intelppm = D:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS
Ip6Fw = D:\WINDOWS\SYSTEM32\DRIVERS\IP6FW.SYS
IpFilterDriver = D:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS
IpInIp = D:\WINDOWS\SYSTEM32\DRIVERS\IPINIP.SYS
IpNat = D:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS
IPSec = D:\WINDOWS\SYSTEM32\DRIVERS\IPSEC.SYS
IRENUM = D:\WINDOWS\SYSTEM32\DRIVERS\IRENUM.SYS
isadriver = D:\WINDOWS\SYSTEM32\DRIVERS\ISADRIVER.SYS
isapnp = D:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS
Kbdclass = D:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS
kmixer = D:\WINDOWS\SYSTEM32\DRIVERS\KMIXER.SYS
MEMSCAN = D:\PROGRAM FILES\RISING\RAV\MEMSCAN.SYS
Mouclass = D:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS
mouhid = D:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS
mProcRs = D:\PROGRAM FILES\RISING\RFW\MPROCRS.SYS
MSKSSRV = D:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS
MSPCLOCK = D:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS
MSPQM = D:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS
mssmbios = D:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS
ms_mpu401 = D:\WINDOWS\SYSTEM32\DRIVERS\MSMPU401.SYS
NdisTapi = D:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS
Ndisuio = D:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS
NdisWan = D:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS
NetBT = D:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS
NwlnkFlt = D:\WINDOWS\SYSTEM32\DRIVERS\NWLNKFLT.SYS
NwlnkFwd = D:\WINDOWS\SYSTEM32\DRIVERS\NWLNKFWD.SYS
NwlnkIpx = D:\WINDOWS\SYSTEM32\DRIVERS\NWLNKIPX.SYS
NwlnkNb = D:\WINDOWS\SYSTEM32\DRIVERS\NWLNKNB.SYS
NwlnkSpx = D:\WINDOWS\SYSTEM32\DRIVERS\NWLNKSPX.SYS
Parport = D:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS
PCI = D:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS
PCIIde = D:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS
PptpMiniport = D:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS
Processor = D:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS
PSched = D:\WINDOWS\SYSTEM32\DRIVERS\PSCHED.SYS
Ptilink = D:\WINDOWS\SYSTEM32\DRIVERS\PTILINK.SYS
RasAcd = D:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS
Rasl2tp = D:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS
RasPppoe = D:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS
Raspti = D:\WINDOWS\SYSTEM32\DRIVERS\RASPTI.SYS
RDPCDD = D:\WINDOWS\SYSTEM32\DRIVERS\RDPCDD.SYS
rdpdr = D:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS
redbook = D:\WINDOWS\SYSTEM32\DRIVERS\REDBOOK.SYS
RsAntiSpyware = D:\WINDOWS\SYSTEM32\DRIVERS\RSBOOT.SYS
RsFwDrv = D:\PROGRAM FILES\RISING\RFW\RSFWDRV.SYS
RsNTGDI = D:\WINDOWS\SYSTEM32\DRIVERS\RSNTGDI.SYS
RSPPSYS = D:\PROGRAM FILES\RISING\RAV\RSPPSYS.SYS
rtl8139 = D:\WINDOWS\SYSTEM32\DRIVERS\RTL8139.SYS
Secdrv = D:\WINDOWS\SYSTEM32\DRIVERS\SECDRV.SYS
serenum = D:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS
Serial = D:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS
splitter = D:\WINDOWS\SYSTEM32\DRIVERS\SPLITTER.SYS
swenum = D:\WINDOWS\SYSTEM32\DRIVERS\SWENUM.SYS
swmidi = D:\WINDOWS\SYSTEM32\DRIVERS\SWMIDI.SYS
sysaudio = D:\WINDOWS\SYSTEM32\DRIVERS\SYSAUDIO.SYS
Tcpip = D:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS
TermDD = D:\WINDOWS\SYSTEM32\DRIVERS\TERMDD.SYS
UnlockerDriver5 = F:\RQCN\UNLOCKER\UNLOCKERDRIVER5.SYS
Update = D:\WINDOWS\SYSTEM32\DRIVERS\UPDATE.SYS
usbehci = D:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS
usbhub = D:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS
USBSTOR = D:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS
usbuhci = D:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS
VgaSave = D:\WINDOWS\SYSTEM32\DRIVERS\VGA.SYS
Wanarp = D:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS
WATCHKEY = D:\WINDOWS\SYSTEM32\DRIVERS\WDKEY.SYS
wdmaud = D:\WINDOWS\SYSTEM32\DRIVERS\WDMAUD.SYS
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT