技术部 收藏本版 今日: 0 主题: 115

4079 10

在这里

[复制链接]
发表于 2008-5-22 20:53:41 | 显示全部楼层 |阅读模式

  1. & s& h- W$ i1 o
  2. 2008-05-22,20:37:43
    ( n2 _; |! U' h" T/ X
  3. System Repair Engineer 2.5.16.900
    . {8 ]2 P9 C  a
  4. Smallfrogs (http://www.KZTechs.com)3 e* h- @/ E, m
  5. Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能% a7 v# N( t4 ?0 g( t
  6. 以下内容被选中:# b" w4 a4 j0 l' l2 H0 r  D
  7.     所有的启动项目(包括注册表、启动文件夹、服务等)
    1 T/ c) c! ]$ g; P! V/ f  Q# w
  8.     浏览器加载项
    ) G# g: v, T/ l
  9.     正在运行的进程(包括进程模块信息), f+ A/ t7 S4 J/ {* i
  10.     文件关联
    * b5 v7 Q4 T% g! B1 Y8 N( i9 Y
  11.     Winsock 提供者5 K3 M2 P( ]. ]$ Z5 A+ L
  12.     Autorun.inf
      J8 h( q; V4 B
  13.     HOSTS 文件5 [/ h9 |  A& d! x3 M' \+ Z
  14.     进程特权扫描
    6 F' T/ G; }, O" c

  15. 4 z& a8 r$ l" a) c3 C
  16. 启动项目
    2 W# k3 i+ L: ^5 X' ?
  17. 注册表( h( H( y2 l6 I7 O: ^
  18. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    9 M7 ^. ]  i" Z6 q' ?" c
  19.     <ctfmon.exe><C:\WINDOWS\system32\CTFMON.EXE>  [(Verified)Microsoft Windows Publisher]
    3 T  i. x2 v' U* h
  20. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]* G8 o( G) a" T$ F
  21.     <360Safebox><"C:\Program Files\360Safebox\safeboxTray.exe" /r>  [(Verified)Qizhi Software (beijing) Co. Ltd]
    * L; t0 u6 i  `. Q
  22.     <360Safetray><C:\Program Files\360safe\safemon\360tray.exe /start>  [(Verified)Qizhi Software (beijing) Co. Ltd]2 N! V0 |# @# G3 @" @
  23.     <360Antiarp><C:\Program Files\360safe\AntiArp\AntiArp.exe /start>  [(Verified)Qizhi Software (beijing) Co. Ltd]
    / l0 ?/ b! O) W' m/ G+ l
  24.     <KavStart><"C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KAVStart.exe" -startup>  [(Verified)KINGSOFT CORPORATION]
    # `/ `- d$ E/ o, L  q8 I  s
  25.     <IMJPMIG8.1><; C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32>  [N/A]1 U1 x5 e6 z6 m, [' Y) N
  26.     <PHIME2002A><; >  [N/A]. _- V. ?+ y! ]' `) @# w3 {% y& q
  27.     <PHIME2002ASync><; C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32>  [N/A]
    5 I2 n) u( ?( \1 Z3 Y
  28. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
      y6 ^) S& C" `3 c
  29.     <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
      M2 j  F; T; @# L0 ~: w8 f8 U
  30.     <Userinit><C:\WINDOWS\system32\UserInit.exe,>  [(Verified)Microsoft Windows Publisher]
    ; ~- @7 N7 I. d
  31.     <UIHost><logonui.exe>  [(Verified)Microsoft Windows Publisher]( `. ?+ P0 d. Q/ n0 c0 d
  32. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]) V4 O& R+ b6 e' D: P% `
  33.     <{AC2DC2EF-5165-40A3-8CDF-41DCA1B0901A}><C:\WINDOWS\system32\shlhook.dll>  [Beijing Rising Technology Co., Ltd.]
    ' h5 P' V. i" K# L
  34. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
    ( R0 ^7 _* k$ ~7 `
  35.     <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [N/A]; U8 C4 s8 ?8 T$ p
  36. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
    7 C3 x% ]( K6 ~( S  N. ^$ D! q
  37.     <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [N/A]
    & T% H3 l+ U2 X( F
  38. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
    5 ]' @, K" S" Z' _1 E2 b' Q6 d
  39.     <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [N/A]0 N. O# S2 S/ H% q" f- |! Q
  40. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
    - l1 j7 K8 t! s5 H2 b
  41.     <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [N/A]
    % k" p+ C3 L. `6 O& _5 ~1 o0 R
  42. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]% R, \! |8 L9 m$ C" p
  43.     <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Remove.PerUser.NT>  [(Verified)Microsoft Windows Publisher]
    + t$ W1 }& G3 b( N: L( Y
  44. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
    ! G$ N8 W2 j, C  H; G
  45.     <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [(Verified)Microsoft Windows Publisher]5 S6 e% H" I6 E+ N* Z8 G$ t9 `7 e9 Q
  46. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]" n: r5 M1 n( q) T0 _, M7 E
  47.     <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp10.inf,PerUserStub>  [(Verified)Microsoft Windows Publisher]
    : L; \2 T/ E' V+ j
  48. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
    3 M3 h6 d5 a$ E6 F* F
  49.     <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [N/A]
    0 S* Y8 x! u; [+ y: ^( u6 f3 y$ H
  50. ==================================
    9 l. g$ ~2 d8 U4 O3 m
  51. 启动文件夹4 b9 E1 m; y# c" {
  52. N/A  A% D" |) s7 _
  53. ==================================) N3 w4 S$ S' o9 u+ H1 {) x: w
  54. 服务
    , L  @! t: o0 P8 C: G
  55. [3ware Controller Service / 3wareSrv][Stopped/Auto Start]
    & s" ~; z# W! g7 v
  56.   <C:\WINDOWS\System32\3wareSrv.exe><N/A>
    ( f2 t5 N/ c( A2 X+ ]" J
  57. [Google Updater Service / gusvc][Stopped/Manual Start]* v/ \: m8 u/ B* `
  58.   <"C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"><Google>
    ! Z4 ]! u  B3 I# u+ d6 _4 m
  59. [Help and Support / helpsvc][Stopped/Disabled]
    " ?9 ?" M! o; a  z; z* Z
  60.   <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%WINDIR%\PCHealth\HelpCtr\Binaries\pchsvc.dll><N/A>
    * y0 S+ U7 v' F, |) l, t# B) C- J
  61. [Human Interface Device Access / HidServ][Stopped/Boot Start]0 C9 h3 k" s' l6 D
  62.   <\SystemRoot\C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
    $ A5 ]" \* Y% M. M
  63. [Kingsoft Internet Security Common Service / KISSvc][Stopped/Auto Start]
    3 e; t6 v" g; }+ I" S
  64.   <C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KISSvc.EXE><Kingsoft Corporation>( q& t- E4 O! n4 [, P7 x2 O
  65. [Kingsoft Personal Firewall Service / KPfwSvc][Running/Auto Start]5 t) S- y: M+ E& y/ R& P7 q
  66.   <"C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KPfwSvc.EXE"><Kingsoft Corporation>& N4 S2 m' ^0 J4 ~/ H" f; j0 o
  67. [Kingsoft Antivirus KWatch Service / KWatchSvc][Running/Auto Start]
    5 k1 g8 R9 {( v( h. w% V
  68.   <"C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KWatch.EXE"><Kingsoft Corporation>' |4 V) h2 h1 g3 W% W6 x
  69. [NetMeeting Remote Desktop Sharing / mnmsrvc][Stopped/Manual Start]: B/ E2 \. a  C' v8 s
  70.   <><N/A>
    , x3 _2 H7 o+ V, e) @9 w$ E
  71. [Qvod Terminal / Qvod Terminal][Running/Auto Start]
      F) D9 Q( J. {" l" j* h
  72.   <C:\Program Files\QvodPlayer\QvodTerminal.exe><Shenzhen QVOD Technology Co.,Ltd>
    3 D" p- \( Z6 _4 {6 o6 F5 S
  73. ==================================
    ' U; v8 E: N; S! D6 T; @
  74. 驱动程序
    & n, b( k0 |9 i+ N
  75. [22j / 22jn][Stopped/Boot Start]; w, B  j6 C2 O- n: |. y5 u7 L% Q; z
  76.   <\SystemRoot\System32\DRIVERS\22jn.sys><N/A># I; G! O" x7 x  |0 m+ w
  77. [360AntiArp / 360AntiArp][Running/System Start]: z: R6 y3 x9 x9 f& u" A
  78.   <\??\C:\WINDOWS\system32\drivers\360AntiArp.sys><360安全中心>4 M' ^! [, k0 D" I  a( m' ^% w
  79. [43ec / 43ecu][Stopped/Boot Start]
    0 I! Z3 `3 ^$ n' I# ^& I
  80.   <\SystemRoot\System32\DRIVERS\43ecu.sys><N/A>7 g5 n3 p: j8 c' h# _3 x% j
  81. [Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Running/Manual Start]
    5 v  ?) f, B7 I1 x* D
  82.   <system32\drivers\ac97intc.sys><Intel Corporation>) u) }+ ?6 G0 ?* K
  83. [Promise driver accelerator / bb-run][Running/Boot Start]
    : n* ?" T7 Y1 P$ p
  84.   <\SystemRoot\system32\DRIVERS\bb-run.sys><Promise Technology, Inc.>
    + C) Y* c- Y* ~) k2 [( u0 B8 t
  85. [Promise Removable Disk Control Driver / dontgo][Running/Boot Start]+ f  Z1 \) ~- L  e/ i& H: n' _
  86.   <\SystemRoot\system32\DRIVERS\DontGo.sys><Promise Technology, Inc.>0 @' q+ I0 V5 _; S0 I
  87. [KAVBase / KAVBase][Running/Auto Start], l# r( z% ?  }6 y/ E2 B. ~, _
  88.   <\??\C:\WINDOWS\system32\Drivers\KAVBase.sys><Kingsoft Corporation>0 E; I4 z+ a/ B( A, Q% L# e, e
  89. [KAVBootC / KAVBootC][Running/Boot Start]) d% p, O- c2 F( z5 r/ N% M& H
  90.   <\SystemRoot\system32\Drivers\KAVBootC.sys><Kingsoft Corporation>& M" w1 M7 _$ f4 q4 l1 m5 t1 y
  91. [KAVSafe / KAVSafe][Running/Auto Start]: f  M9 y1 c) [  I
  92.   <\??\C:\WINDOWS\system32\Drivers\KAVSafe.sys><Kingsoft Corporation>+ l8 g2 R$ W  y# y# g! f3 s- j* s
  93. [KNetWch / KNetWch][Running/System Start]( v% R! G% Z: r% k( v6 k; X+ z
  94.   <\??\C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KNetWch.SYS><Kingsoft Corporation>
    ) c- o% n* d9 |: I- o  x. ^
  95. [KWatch3 / KWatch3][Running/Auto Start]
    6 f3 r9 M8 f! a' W
  96.   <\??\C:\WINDOWS\system32\drivers\KWatch3.SYS><Kingsoft Corporation>; p9 `! T. j3 a, y4 R* @
  97. [ntptdb / ntptdb][Stopped/Auto Start]& O. F  [$ V. ]0 [& r1 v% u
  98.   <\??\C:\Documents and Settings\All Users\Application Data\Microsoft\Office\SYSTEM\ntptdb.sys><N/A>
    ; u9 Y# k$ t* F9 N6 r8 H' Y
  99. [nv / nv][Running/Manual Start]
    " q  E# O7 W0 X& f9 ^2 r! n
  100.   <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
    3 c6 z* y% t$ M- [7 r2 Z
  101. [NVIDIA nForce RAID Driver / nvrd32][Running/Boot Start]
    1 g) p" [9 ~7 E& u2 q& Q8 N6 e8 M. X' d
  102.   <\SystemRoot\system32\DRIVERS\nvrd32.sys><NVIDIA Corporation>' O9 u$ f1 F8 E; n( J+ }. O
  103. [DDK PACKET Protocol / Packet][Running/Manual Start]
    ; Z7 N  J2 ^! L( R3 c8 o
  104.   <system32\DRIVERS\ProtoDrv.sys><360安全中心>' {7 g: Z2 E8 n+ x  k; H
  105. [pnduojtwbt / pnduojtwbt][Stopped/Boot Start]: J* b, N( \* j& }
  106.   <\SystemRoot\system32\drivers\pnduojtwbt.sys><N/A>5 z" J7 A( |& @( a, [
  107. [Direct Parallel Link Driver / Ptilink][Running/Manual Start]2 C3 D' s( |( A
  108.   <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>+ V% K) D- L/ @" N0 a/ p: V* n. ~
  109. [RsAntiSpyware / RsAntiSpyware][Stopped/Boot Start]
    4 z0 O5 i  j8 J. j, ~* L; L
  110.   <\SystemRoot\system32\drivers\RsBoot.sys><N/A>$ _  P, l6 W" y1 a. Z) T, O
  111. [Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Running/Manual Start]
    ; d; G' e+ v4 j% L* E0 M# _
  112.   <system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>! j0 C5 ?$ C" r1 @$ O
  113. [SafeBoxKrnl / SafeBoxKrnl][Running/System Start]& K  D8 H, v1 F/ t
  114.   <\??\C:\Program Files\360Safebox\SafeBoxKrnl.sys><360安全中心>( j" l% r) Q4 R9 F9 _! K* m
  115. [Secdrv / Secdrv][Stopped/Manual Start]. C' j* K+ R  C. S# x
  116.   <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>2 T  r- y- K& p* b6 ~6 E
  117. [SATALink External Device Filter / SiRemFil][Running/Boot Start]
    / S; r+ m9 r  D/ z) f6 ~; B2 w
  118.   <\SystemRoot\system32\DRIVERS\SiRemFil.sys><Silicon Image, Inc.>
    9 \- n2 H  O# ~! r
  119. [System Restore Filter Driver / sr][Stopped/Disabled]1 y0 [5 o) K- M9 C' \
  120.   <system32\DRIVERS\sr.sys><N/A>
    / l. R0 R9 H, @  T6 O
  121. [TesSafe / TesSafe][Stopped/Manual Start]
    $ {& {+ }: @* x) T6 H" L( B
  122.   <\??\C:\WINDOWS\system32\TesSafe.sys><TENCENT>
    6 y" i2 V6 }. d+ {: T
  123. [System Services / unzxzsrs][Stopped/Boot Start]8 E5 }% d  x; i1 n- B! H, @/ x: p
  124.   <\SystemRoot\system32\drivers\unzxzsrs.sys><N/A>3 n, e/ _: s6 L9 Z; c- Y
  125. [ViBus / ViBus][Stopped/Boot Start]
    5 c4 E. V$ [% [: N' T1 S/ O( o" R9 d
  126.   <\SystemRoot\system32\DRIVERS\ViBus.sys><N/A>
    # O- @) f( u% \
  127. [World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]; r* g+ ]# z# V& E
  128.   <system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
    ) A( ?7 y, a  [
  129. [VIA SATA IDE Hot-plug Driver / xfilt][Running/Boot Start]
    + k. d: R/ D' i' l) b! s
  130.   <\SystemRoot\system32\DRIVERS\xfilt.sys><VIA Technologies,Inc>+ P/ D" Y: x- |
  131. [ATI Extend / zhibmaso][Stopped/Boot Start]
    0 Q: z1 Z) g( N( `( V2 c; l9 o
  132.   <\SystemRoot\system32\drivers\zhibmaso.sys><N/A>: S" i9 O! F' E, f( ~$ e; {
  133. [Vimicro USB PC Camera (ZC0301PL) / ZSMC301b][Running/Manual Start]
    6 x$ A% ^3 ^: ]
  134.   <System32\Drivers\usbVM31b.sys><Vimicro Corporation>
    3 r9 R% \; [$ y) p$ y8 k
  135. ==================================7 c; \7 x( S7 o8 j3 h: y8 ?
  136. 浏览器加载项  D* ^& o6 F6 `/ {* C" V
  137. [Google Toolbar Helper]
    ! E# t8 V2 ?  N# B; O/ `% e, V
  138.   {AA58ED58-01DD-4d91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, Google Inc.>! M+ r. U% E. V: {# w3 s
  139. [Google Toolbar Notifier BHO]
    : u( ?, _8 H: ]7 a% d2 _7 U! c
  140.   {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} <C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll, Google Inc.>* T+ C, ]/ \) P; j0 I
  141. [SafeMon Class]9 d; ~5 I3 F8 v6 U* ]
  142.   {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files\360safe\safemon\safemon.dll, 360.CN>5 F3 j8 ~* t5 T7 Y! r/ T# K+ v/ b
  143. [kingsoft browser shield]5 {. }: p5 ~, u" r! W
  144.   {D963BE1A-6B35-47DB-B002-49FAE71D85CC} <C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KASBrowserShield.DLL, Kingsoft Corporation>0 i9 z/ Q4 D7 |8 L
  145. [IEBuddyExtControl Class]' s7 P9 |- C+ T8 W$ K1 h
  146.   {3AECD3C1-7085-4731-96DC-47B6CF7EF749} <C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\IEBuddyExt.DLL, Kingsoft Corporation>
    * p! z8 Q: r+ c3 @
  147. [Zcom 杂志]+ M* g# u/ n5 ^! i( T3 w+ @. P, ]
  148.   {4045D313-1D5E-4fe4-93A0-A34630B6A00B} <C:\Zcom\E-Space.exe, N/A>
      u6 ~& z; B7 P* g! A3 q
  149. [&Google]
    , U, u3 U, R1 p! k  y
  150.   {2318C2B1-4965-11d4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, Google Inc.>
    ) ?% E) |" B4 |
  151. [KooPlayer Control]
    , }/ p9 c7 l9 S
  152.   {C728DAB8-FDF5-4CD7-89DD-879D25794C77} <C:\WINDOWS\system32\CCTVKO~1.OCX, Koos>( M1 m5 }: y- u
  153. [Shockwave Flash Object]6 A2 v4 o; ?, v4 l( I2 e2 |/ z
  154.   {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx, Adobe Systems, Inc.>
    1 c/ A$ W% V  t4 u5 ?( B4 d
  155. [KUpdateObj2 Class]
    , D$ r  A* N* d
  156.   {D82303B7-A754-4DCB-8AFC-8CF99435AACE} <C:\WINDOWS\system32\KingSoft\KOS\UpdateOcx2.dll, Kingsoft Corporation>
    * q, h% A! D7 P/ N  b
  157. [Google Script Object]- {. l/ m2 s3 @- C
  158.   {00EF2092-6AC5-47C0-BD25-CF2D5D657FEB} <c:\program files\google\googletoolbar2.dll, Google Inc.>
    6 S  p0 w4 ^# _$ s
  159. [EWA Control]
    $ s+ ]. O+ B" G% ?# a2 |9 t0 k6 \
  160.   {18226BF8-DC0B-4D81-80E9-A41AE37BB73A} <C:\PROGRA~1\PPLive\SYNACA~2.OCX, Synacast>
    % T- S4 U% C. k
  161. [Windows Media Player]
    4 j$ M1 u! E$ {7 C4 B& ^
  162.   {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\msdxm.ocx, Microsoft Corporation>0 V6 [8 f- N9 \
  163. [&Google]( z& g% c' M6 {; T( z1 j
  164.   {2318C2B1-4965-11D4-9B18-009027A5CD4F} <c:\program files\google\googletoolbar2.dll, Google Inc.>
    - Y2 v* P$ S! f) F! l8 e
  165. [HTML Document]
    , I0 E- q- m9 O6 K
  166.   {25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\mshtml.dll, N/A>+ S; g5 x% x9 D
  167. [DHTML Edit Control Safe for Scripting for IE5]
    * L2 J8 ^* c6 j0 I, R
  168.   {2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\Program Files\Common Files\Microsoft Shared\Triedit\dhtmled.ocx, Microsoft Corporation>3 a/ n& k& e& v0 C8 J( T& R
  169. [RealPlayer RAM Download Handler]
    , x& c* L/ _6 P4 g+ [4 r8 z9 I6 d
  170.   {2F542A2E-EDC9-4BF7-8CB1-87C9919F7F93} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>
    3 e8 a( x- Y- }
  171. [IEBuddyExtControl Class]5 }6 M7 G- d) }. d: f, l+ ]( q: u8 r
  172.   {3AECD3C1-7085-4731-96DC-47B6CF7EF749} <C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\IEBuddyExt.DLL, Kingsoft Corporation>0 n! s8 f9 F( K8 J& I1 \! s3 l
  173. [XML Document]! k0 V! J$ T: l' c. f2 T
  174.   {48123BC4-99D9-11D1-A6B3-00C04FD91555} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>
    1 k* g. x1 ^8 k6 f4 G8 ], y6 @
  175. [HHCtrl Object]
    1 Z& M% f% V, u
  176.   {52A2AAAE-085D-4187-97EA-8C30DB990436} <C:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>( g$ m  }5 D3 R/ U" ?
  177. [Windows Media Player]
    ; T, @$ O, J* _
  178.   {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
    8 g6 `% q% s! d/ F
  179. [Active Desktop Mover]" I' B4 Q, Z+ e* j! {  ^
  180.   {72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>$ r1 C0 d' e7 _/ w5 ?# o
  181. [360SafeLive]: i; W; O- }' J$ @( \" f! ^% M
  182.   {87515F61-A66C-4319-A0E0-D416CB8059E3} <C:\Program Files\360safe\live.dll, 360.cn>( R* _! w& T" V* Y# N& I* o
  183. [Microsoft Web 浏览器]3 U7 u7 |8 o% j" @8 e$ ^
  184.   {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>
    $ Z8 Y+ F; L2 G' ?" F/ r
  185. [Browser Enhanced Objects]
    ) U7 B# u+ B4 M+ q
  186.   {986488AF-13D5-9DDF-4FEF-9FB88698CFC1} <C:\Documents and Settings\All Users\Application Data\Microsoft\OFFICE\USERDATA\webbrowser_2011.dll, N/A>7 Y" i7 S# M  H' }9 I
  187. [Google Toolbar Helper]
    & E' e1 E: R3 n- ?% D! s( L7 @
  188.   {AA58ED58-01DD-4D91-8333-CF10577473F7} <c:\program files\google\googletoolbar2.dll, Google Inc.>; [; Y7 m4 ^* s% A. S7 p
  189. [Microsoft Scriptlet Component]
    ! Y5 ^' M& o1 g" j- W$ J: w, N
  190.   {AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>
    , A  n9 V4 H1 U- ^; z
  191. [Google Toolbar Notifier BHO]. I; n1 o! i2 {; L% W3 y
  192.   {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} <C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll, Google Inc.>
    / E; R' Z0 q( e1 S& E$ C- s" `- W! k
  193. [SearchAssistantOC]
    ; j3 j0 @* d/ j6 _, R4 Z5 ~- ^! ^
  194.   {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>; G5 ]: V) F; }1 e1 V
  195. [SafeMon Class]
    ! `9 C* s/ H9 _2 u: x
  196.   {B69F34DD-F0F9-42DC-9EDD-957187DA688D} <C:\Program Files\360safe\safemon\safemon.dll, 360.CN>  \- I! z+ P8 d
  197. [RDS.DataSpace]+ j! o6 V6 c& f. i# g0 p
  198.   {BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>
    ( P9 C2 ]- L( Q  l. @
  199. [KooPlayer Control]
    & V. t  i3 j$ S# u' Y
  200.   {C728DAB8-FDF5-4CD7-89DD-879D25794C77} <C:\WINDOWS\system32\CCTVKO~1.OCX, Koos>
    0 M3 o" T' h/ {4 b/ b, c( o
  201. [AUDIO__MID Moniker Class]7 G+ j* u, @& h# Q! t& f
  202.   {CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>. G: ]( E! p7 x
  203. [AUDIO__MP3 Moniker Class]1 k4 s/ D/ Z, m8 y
  204.   {CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>
    + d( Q. h# e; m/ k7 M
  205. [AUDIO__X_MS_WMA Moniker Class]
    7 |9 |8 J7 ^( z0 X1 W3 }
  206.   {CD3AFA84-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>: ~, O: A& r) k) u- U: x
  207. [VIDEO__X_MS_WMV Moniker Class]
    , L# y; f0 i- D8 ^
  208.   {CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>  w/ S6 Q' w( w8 d3 d2 O
  209. [RealPlayer G2 Control]
    9 Y9 c& p/ [0 ]- D, |
  210.   {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\WINDOWS\system32\rmoc3260.dll, RealNetworks, Inc.>  q& k! S1 J% N( \$ Q: N" o- H
  211. [Shockwave Flash Object]
    1 I2 F9 d( z& ]" ?' c
  212.   {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx, Adobe Systems, Inc.>/ D/ g# Q4 k2 D
  213. [KUpdateObj2 Class]1 T1 _9 G# U! [* A6 F/ B" \
  214.   {D82303B7-A754-4DCB-8AFC-8CF99435AACE} <C:\WINDOWS\system32\KingSoft\KOS\UpdateOcx2.dll, Kingsoft Corporation>- m. K8 |8 u% D4 R
  215. [kingsoft browser shield]
      G# u, i! \- f) W, O5 q( U+ e
  216.   {D963BE1A-6B35-47DB-B002-49FAE71D85CC} <C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KASBrowserShield.DLL, Kingsoft Corporation>
    $ |) ]1 d! |! g1 x) x8 K3 ~7 I( |0 ~8 r
  217. [PasswordEditCtrl Class]1 d6 U. U; w  T! w% a( z* ]/ ^- ~
  218.   {E787FD25-8D7C-4693-AE67-9406BC6E22DF} <C:\WINDOWS\system32\qqedit\qqedit.dll, 腾讯科技(深圳)有限公司>- {! J. S# a% h9 R& a7 I6 C
  219. [QvodCtrl Class]- _) j( Z4 J; w8 V! k2 C  O2 X( T
  220.   {F3D0D36F-23F8-4682-A195-74C92B03D4AF} <C:\Program Files\QvodPlayer\QvodInsert.dll, Shenzhen QVOD Technology Co.,Ltd># m" v- y. x& _9 h' W
  221. [&使用超级旋风下载]
    ( @2 b: b% z4 `0 f3 P' T0 p8 O
  222.   <C:\Program Files\Tencent\QQDownload\geturl.htm, N/A>) M+ D9 a( [  r: C0 h
  223. [&使用超级旋风下载全部链接]0 k% B/ W/ a! X9 p
  224.   <C:\Program Files\Tencent\QQDownload\getAllurl.htm, N/A>9 e+ J% U" N, ^
  225. [使用迅雷下载]
    / e) b$ W4 R* I4 A( k1 _6 H
  226.   <, N/A>
    0 o0 K' H' K; ?
  227. [使用迅雷下载全部链接]$ {" G1 H1 f& p
  228.   <, N/A>  E# j4 D/ G1 o/ Z" Y
  229. [导出到 Microsoft Office Excel(&X)]' o9 s4 z/ w5 L/ l5 K- e( M
  230.   <res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000, N/A>
    $ {1 I5 u  K4 w$ R3 ]3 {
  231. [添加到QQ表情]# s* N2 l8 ?# f& C; d  u
  232.   <C:\Program Files\Tencent\QQ\AddEmotion.htm, N/A>, Y  x  h6 Y3 [9 D4 c, i( c" z: r6 h
  233. ==================================
    3 t0 b% i2 p9 w. l
  234. 正在运行的进程7 ]* N) m) X* w4 W; P- X) E# @1 v7 m
  235. [PID: 444 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
      M/ l7 P) E; B$ W
  236. [PID: 496 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]* F( C' ?+ o- b. Z1 ]
  237. [PID: 520 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]3 l: T5 e. W! ]# S1 r# R5 B
  238.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    ; i9 I* b. Z# E% [5 u" N8 ~
  239. [PID: 564 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]" j2 @4 d0 d4 O# m0 S1 o/ l
  240. [PID: 576 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]" F# ~! F, t' v- P- F' X
  241. [PID: 720 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]: E9 R0 b7 u  A" f1 y
  242. [PID: 780 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]6 [+ x% v  N# b7 G
  243. [PID: 856 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    & U0 A. _  z7 X1 ^! Z! e8 ^
  244. [PID: 944 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
    7 s5 X6 E7 H$ s4 {6 Z3 E: O5 `
  245. [PID: 1012 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]$ ~0 K* p9 b: F6 _6 P! q2 }
  246. [PID: 1236 / Administrator][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_qfe.070613-1311)]
    ' J. J8 a* ]1 u3 N6 |
  247.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]( [3 S! u! Z% v+ D# w1 i
  248.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]- q) b1 W1 ~& T$ W5 e, i
  249.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
    / z/ N4 z" Z  ?" o8 F: [/ P" o
  250.     [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 5, 1001]( \7 }% ]) _# [/ j' g4 B
  251.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KAVEXT.DLL]  [Kingsoft Corporation, 2008,05,07,373]
    1 `: u: h( J. {6 J0 w# i
  252.     [C:\Program Files\Tencent\QQ\qdshm.dll]  [, 1, 0, 101, 20]
    * i4 S2 Q  u# Q/ O7 D
  253.     [C:\Program Files\Tencent\QQ\MFC42.DLL]  [Microsoft Corporation, 6.00.8665.0]
    ) Y% a% p" w1 E1 i, X: l6 s
  254.     [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]
    5 Z% g' y2 h$ r( e8 w
  255.     [C:\WINDOWS\system32\shlhook.dll]  [Beijing Rising Technology Co., Ltd., 4.0.0.9]
    / a, F. a9 M1 M8 [
  256.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]
    ; B0 p6 G. ?+ M, P8 v5 p4 [
  257.     [C:\Program Files\Microsoft Office\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]" a* T  [, W* E' N" U3 Z
  258. [PID: 1332 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
    * l0 v! ^( a8 e8 g* _+ d4 c( J* A
  259.     [C:\WINDOWS\system32\mdimon.dll]  [Microsoft Corporation, 11.3.8166.2]0 c4 b& q! B- D$ w5 w. p) t
  260.     [C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll]  [Microsoft Corporation, 11.3.8166.2]8 Y4 X3 r9 J  w1 l
  261. [PID: 1540 / Administrator][C:\Program Files\360safe\AntiArp\AntiArp.exe]  [360安全中心, 2, 0, 0, 1008]& k9 l5 a- A: K, w7 ^8 y
  262.     [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 5, 1001]
    , J# L4 j6 D( M' H, S0 S, V$ K
  263.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]
    - e% x: c& c  ?) Q# z, K+ V7 @! r
  264.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]( D/ V: k# t) d' Q4 V
  265.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]) w8 F0 N6 }/ y+ s0 S' W+ B
  266. [PID: 1560 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]/ e' b, k2 `  c7 B) p8 H
  267.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]8 v; n: v* N2 [1 P/ N+ e  w" R
  268.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]3 y4 c4 a/ H* |/ I. T) s
  269.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]
    : E, ~0 q% ~6 z9 `  i# [& x
  270. [PID: 1576 / Administrator][C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe]  [Google Inc., 2, 0, 301, 1654]* g, d+ Q, s/ C% r% H
  271.     [C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\gtn.dll]  [Google Inc., 2, 0, 301, 7164]
    . z3 r7 {5 y! Y
  272.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]
    7 o- l/ _" d+ m2 k* R. }) @
  273.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]
      W$ v7 {# ]( s# O  G3 V) k: k9 f
  274.     [C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\res_zh-CN.dll]  [Google Inc., 2, 0, 301, 7164]
    ( U* V+ ^0 z( K
  275.     [C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll]  [Google Inc., 2, 0, 301, 7164]1 o5 a# h% y; Z3 K
  276.     [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 5, 1001]
    % i+ v; |, v2 J" ^
  277.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]" w7 q0 ~9 E9 Z% d9 D1 u, v
  278. [PID: 1648 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]3 Y- Y9 M: ~0 h8 s
  279. [PID: 1744 / SYSTEM][C:\Program Files\QvodPlayer\QvodTerminal.exe]  [Shenzhen QVOD Technology Co.,Ltd, 2, 5, 0, 53]
    , ^0 U% d' l  |3 Q! h9 V
  280. [PID: 1860 / SYSTEM][C:\WINDOWS\system32\skeys.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]7 R. U, }+ o+ W9 g  m& z
  281. [PID: 1908 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]6 c% u" N- @. {
  282. [PID: 1964 / LOCAL SERVICE][C:\WINDOWS\system32\wdfmgr.exe]  [Microsoft Corporation, 5.2.3790.1230 built by: dnsrv(bld4act)]
    - Z$ R! G0 L9 F, W( ~
  283. [PID: 2772 / Administrator][C:\Program Files\Internet Explorer\iexplore.exe]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
    / `; D/ S( U. i
  284.     [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 5, 1001]
    9 m" T4 p5 G0 t& [
  285.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]
    # R3 W; M7 W+ f9 a. o3 Z% v
  286.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]
    # e$ [5 q* R2 J  w4 r+ d
  287.     [c:\program files\google\googletoolbar2.dll]  [Google Inc., 4, 0, 1606, 6690]
    $ Z3 I# [  o  m) K1 a$ ?7 G
  288.     [C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll]  [Google Inc., 2, 0, 301, 7164]% o- y! x* e2 U9 {7 M+ n6 e
  289.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KASBrowserShield.DLL]  [Kingsoft Corporation, 2008,04,15,2]# P1 k1 S% Z& q5 x' D
  290.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\IEBuddy.dll]  [Kingsoft Corporation, 2008,04,15,2]. ]' I* `6 u2 F4 O# t
  291.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\IEBuddyExt.DLL]  [Kingsoft Corporation, 2008,05,14,83]
    9 R2 @( `: o, D) ?
  292.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KANTray.dll]  [Kingsoft Corporation, 2008,04,15,2]
    3 }: @! s8 m3 Z+ {- }' n( s
  293.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KAVAFish.DLL]  [Kingsoft Corporation, 2008,05,13,78]
    5 E8 G4 |# T* A  Z* b. d+ Y+ B
  294.     [C:\Program Files\Microsoft Office\OFFICE11\msohev.dll]  [Microsoft Corporation, 11.0.5510]
    5 B) a6 w6 {2 |/ P$ u: h
  295.     [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]5 E" d7 O, a. x1 E0 V
  296.     [C:\WINDOWS\system32\WN.IME]  [深圳世强软件开发部 www.wn51.com, 2008, 3, 20, 1]* i1 c# Y) x$ Y1 L- o" v- b
  297.     [C:\Program Files\ShiQiang\wnime\Dll32\wnpy_StatusWnd.dll]  [深圳世强软件开发部 www.wn51.com, 2008, 3, 20, 1]
    9 k: R8 R$ [$ w) C+ @; P) d+ u
  298.     [C:\Program Files\ShiQiang\wnime\Dll32\wnpy_CompWnd.dll]  [深圳世强软件开发部 www.wn51.com, 2008, 3, 20, 1]
    2 x) y3 t* ^' B; m( U" c6 G
  299.     [C:\Program Files\ShiQiang\wnime\Dll32\wnpy_Query.dll]  [深圳世强软件开发部 www.wn51.com, 2008, 3, 20, 1]
    6 `" {4 j0 f8 R, X6 Z8 ?
  300.     [C:\WINDOWS\system32\SOGOUPY.IME]  [Sogou.com Inc., 3.2.0.0]9 l5 B/ L: z, ^3 G
  301.     [C:\Documents and Settings\Administrator\My Documents\SogouInput\Plugin\SgImeWord.dll]  [Sogou.com Inc., 3.2.0.0]
    + ^6 X* E+ E& i$ ^: Y: a, E' U
  302.     [C:\WINDOWS\system32\WINWB98.IME]  [Microsoft Corporation, 4.00.950]+ ~0 v" h% [  c9 _
  303.     [C:\WINDOWS\system32\WINWB86.IME]  [Microsoft Corporation, 4.00.950]8 w5 i! u6 k( J" Q- F6 t
  304.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]% |1 v  i. V: y7 x8 x7 N' }
  305. [PID: 1124 / Administrator][C:\Program Files\Tencent\QQ\TXPlatform.exe]  [Tencent, 1, 0, 170, 0]$ j1 W( E+ R! `  L
  306.     [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 5, 1001]' P7 _  ]/ J( e
  307.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]* ]; ?0 I8 e. E0 n- B6 J' X. n  B
  308.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]
      n. _% L) z7 K- U  g4 z# f
  309.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]
    6 [; P+ S2 \2 `1 {9 a' k9 i; l  n
  310. [PID: 928 / Administrator][F:\arvmon.exe]  [任软工作室, 2.2.5.201]
    + g; U: z9 p" w  u: @: h* e# o' L: ?$ k
  311.     [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 5, 1001]) [7 ?, Q, o- y# b- ~: E
  312.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]
    , t, N# w  A3 h$ v/ B0 C3 ^
  313.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]
      _3 K: ?  |8 Z# k( J( i
  314.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]
    7 L: s% K  {6 Z0 `  w
  315.     [F:\Vdata.dll]  [任软工作室, 2, 2, 1, 94]
    / W( J) S/ v/ V  p, P4 z
  316. [PID: 2540 / Administrator][F:\AutoGuarder.exe]  [任软工作室, 2.2.5.201]( u% S5 |3 s+ z5 y7 X4 k
  317.     [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 5, 1001]
    - K  r4 Z8 c( A4 B- h/ P% O+ d
  318.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]
    : o  a5 B5 d, k4 x5 [
  319.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]
    % l" \) i) R# Z6 J
  320.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]& I6 M; w+ |3 ?0 S
  321. [PID: 2476 / Administrator][d:\我的文档\桌面\系统检测修复\SREngPS.EXE]  [Smallfrogs Studio, 2.5.16.900]
    ' X, l& E8 g5 W9 j$ ]; @) E. H6 ^. q# h
  322.     [C:\Program Files\360safe\safemon\safemon.dll]  [360.CN, 4, 1, 5, 1001]# m! V2 n% l6 e4 X0 W" l; {
  323.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\KMailOEBand.DLL]  [Kingsoft Corporation, 2008,04,02,5]
    3 m! b. ]# J! p9 g" z$ q; A1 `
  324.     [C:\Program Files\Kingsoft\Kingsoft Internet Security 2008\kis.dll]  [Kingsoft Corporation, 2008,04,22,364]
    $ V7 v$ N- ]- ~# }& o( |9 O) L4 I
  325.     [C:\Program Files\Tencent\QQ\DShared.dll]  [Tencent, 2, 1, 0, 0]
    8 }" L2 m3 q3 ?
  326.     [d:\我的文档\桌面\系统检测修复\Upload\3rdUpd.DLL]  [Smallfrogs Studio, 2, 1, 0, 15], |; P# {9 L7 \
  327. ==================================! a* A7 E7 t, D% X9 ~
  328. 文件关联9 e+ ?" _2 Z9 X& {
  329. .TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]4 }: D! Z9 {' k5 i
  330. .EXE  OK. ["%1" %*]
    & ]* l& ~2 O$ F# b
  331. .COM  OK. ["%1" %*]# o5 ^9 E+ e$ O# w3 w/ y/ N( t: j+ c
  332. .PIF  OK. ["%1" %*]; |1 C6 @( b; j4 Y' W2 z# n. r
  333. .REG  OK. [regedit.exe "%1"]
    1 j' ~) ]9 a$ b
  334. .BAT  OK. ["%1" %*]8 E! \9 O; p! r+ Z
  335. .SCR  OK. ["%1" /S]# I. M/ o/ ]' N: X! Q( C+ a: |
  336. .CHM  OK. ["C:\WINDOWS\hh.exe" %1]
    . A7 a- A3 D1 t1 w
  337. .HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
    3 @1 X, m4 z% }. l' M, T: n
  338. .INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]6 Z: \' l6 q5 r& V8 I
  339. .INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
    ( S: M, D  @* d8 `+ {$ j! E
  340. .VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
    . ]1 e% |2 w2 ?7 N4 ]' d0 Y4 w( D
  341. .JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]0 K6 w& |4 @' ?
  342. .LNK  OK. [{00021401-0000-0000-C000-000000000046}]) h  W8 r8 ?( S3 U6 n
  343. ==================================
    3 d8 _/ e$ A2 x9 ?5 X
  344. Winsock 提供者
    9 g% X7 ~: ^. g5 v; L% a/ t
  345. N/A
    ) Z* O' X; e) z
  346. ==================================
    2 u9 j* }+ O" i# u
  347. Autorun.inf4 U/ w& }/ e( L2 {5 ~, T
  348. N/A% R3 u" l! {+ W0 Z4 e* r
  349. ==================================
    ! ~7 q0 P  G. J6 y+ S
  350. HOSTS 文件$ w1 a; L% x9 G
  351. N/A6 k. X( ?" F7 l$ F8 Z
  352. ==================================0 g0 c' n: E$ p- U4 U: b
  353. 进程特权扫描
    9 W. X( ~# r5 k! |& t6 L1 x  k
  354. 特殊特权被允许: SeLoadDriverPrivilege [PID = 520, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]
      P8 q( y8 \+ T4 L
  355. 特殊特权被允许: SeDebugPrivilege [PID = 928, F:\ARVMON.EXE]
    7 j- ?$ o& |0 B  x
  356. 特殊特权被允许: SeLoadDriverPrivilege [PID = 928, F:\ARVMON.EXE]8 [% [: Z0 a5 N/ N5 P( E7 v
  357. 特殊特权被允许: SeDebugPrivilege [PID = 2540, F:\AUTOGUARDER.EXE]
    & @" G# ]# d6 Z( C, j
  358. 特殊特权被允许: SeLoadDriverPrivilege [PID = 2540, F:\AUTOGUARDER.EXE]0 O$ W& Y3 U* x: \& U
  359. ==================================
    & _" _* o, A0 g6 y
  360. API HOOK
    # F8 l: g: Y- k" t# t
  361. N/A/ K7 R. c8 i/ v* S  m* ^9 c6 b
  362. ==================================
    4 y9 ^4 J0 d% @, [/ Y2 Z/ \
  363. 隐藏进程/ F: o/ Y- B8 F/ r( @+ @% q
  364. N/A5 ^0 B6 v* `% }
  365. ==================================
    $ D7 B. \+ `1 W/ F
  366. * h3 h, Q6 B1 D. i  o4 c. ?/ `
复制代码
发表于 2008-5-22 21:40:31 | 显示全部楼层
跟原始说了,不知道能不能看明白。。。
发表于 2008-5-22 22:23:55 | 显示全部楼层
[Start]6 I- V5 S0 s) y% |) d0 M) A9 M

, ]2 o, u0 q; I2 ~2008-05-22,22:24:21
8 Z! Z2 M" c' Q. j; O. G; @. N3 X6 q& P' _
SREngLOG智能分析专家 V1.2.0.125
$ Q; x. Z! {' |6 e  x. b8 z' F$ m! I& STored (http://hi.baidu.com/peaset)8 |8 A! T5 @( t, W' Q

  o/ v$ Q4 z$ L5 n" h======================================================- s; B2 J  l7 @' m7 I+ `4 s( b1 @, e
以下过程将用到SREng、PowerRmv,如果您不熟悉这两款工具的使用方法,请参考下列链接:0 Q7 e4 L$ k0 u  j' ~+ ?0 C* N
SREng详细操作方法: http://hi.baidu.com/peaset/blog/ ... dd19224e4aeadf.html
9 j  _' \* z2 p8 u! ePowerRmv详细操作方法: http://hi.baidu.com/peaset/blog/ ... 6fb5eb77c63816.html7 q& H" u0 ]! j- W% C  ]
======================================================- p# N9 @9 A* h! G: n: f" E  X
/ E7 ?) e$ R  |/ C* a
以下是病毒清除步骤:
6 q" o/ w' t! ], X* |' z. S3 r  v% b1 L  Z
1、用PowerRmv删除以下文件(没有则跳过):
) n7 @$ D6 U  z* \; @) d! N5 l1 X9 D
; C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
, P9 P5 a, R8 i. c( z) q1 E8 r;
* X8 \, j; ^4 [' k- A. {; C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32& n! q/ \5 D, V. o
C:\WINDOWS\System32\3wareSrv.exe8 e7 s4 `. s( N% D; ]% T
\SystemRoot\C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll
* R" X! c/ O$ I* W
3 r7 ^' O# b* N- r. ?\SystemRoot\System32\DRIVERS\22jn.sys
, F2 D9 l6 j5 Y4 z+ R; ~$ ?$ }/ @7 z\SystemRoot\System32\DRIVERS\43ecu.sys7 G% ^, S* i+ A6 u: t7 j6 C. T
\??\C:\Documents and Settings\All Users\Application Data\Microsoft\Office\SYSTEM\ntptdb.sys5 x4 o9 l  T, f* O9 f& F
\SystemRoot\system32\drivers\pnduojtwbt.sys. N; K+ p5 d* v% K* H! K
\SystemRoot\system32\drivers\RsBoot.sys3 M: }# a1 H  j6 ]2 ^% C$ A
system32\DRIVERS\sr.sys
2 ~. K! p+ n7 P1 I\SystemRoot\system32\drivers\unzxzsrs.sys
. v7 C6 \$ H3 e  ]/ w9 m\SystemRoot\system32\DRIVERS\ViBus.sys
) }& Q, L+ Q0 J2 S\SystemRoot\system32\drivers\zhibmaso.sys6 U# }* e( ~( t2 K/ [
3 \1 H. i) O4 X4 D/ s6 {
2、用SREng删除以下【注册表】项(没有则跳过):" ~/ G. c) O$ {! M6 m  g6 J/ d
$ j7 ^3 O, V0 i
<IMJPMIG8.1>
. r9 o; L/ X* L+ G8 Y' f# o# q9 D6 l! a<PHIME2002A># @, i7 p/ R) K# ?) x& q* W1 t
<PHIME2002ASync>
5 o, C2 F, p3 @; Q0 D0 h: Z; a" i2 _6 P$ t. ~
3、用SREng删除【所有启动文件夹】内容(没有则跳过)
. H* e( E- n  Y: X8 ?  u5 f
$ \) {* K1 ?1 X7 [. }0 W- s3 m) r4 M4、用SREng删除以下【服务】项(没有则跳过):
, N8 _3 k" X- P# }
: O7 H* D* m  H* z5 T+ }[3ware Controller Service / 3wareSrv]7 d. ~, `9 N9 b8 ~" n9 A
[NetMeeting Remote Desktop Sharing / mnmsrvc]4 |7 O% }) ^# e2 ~" L7 [2 N
7 v& [5 N) G3 }  F- S4 X
5、用SREng删除以下【驱动程序】项(没有则跳过):* k! |! b' s/ m$ I

* k* t- N' Q6 G( f9 ]7 H$ W! f[22j / 22jn]9 D( l& G5 N) Y6 I  t( Y
[43ec / 43ecu]0 w5 G; `0 T6 X( G! j3 T
[ntptdb / ntptdb]
! B2 ]4 `+ @1 a% ~[pnduojtwbt / pnduojtwbt]/ w, a( f0 ^7 `4 i/ v& g8 Y
[RsAntiSpyware / RsAntiSpyware], f% ^7 ^) c7 ~6 k6 b, Z
[System Restore Filter Driver / sr]+ a0 s+ k& a) q; U3 p* b
[System Services / unzxzsrs]
7 s- D( Z, ]' G1 H1 I" f% Z3 B[ViBus / ViBus]' _2 W9 I6 U7 T' J. B
[ATI Extend / zhibmaso]$ w6 D' w  t8 U! r* m4 m5 D
6 I+ {9 R* A: v* a& u
6、用SREng删除以下【浏览器加载项】项(没有则跳过):
- C6 z5 N. U' f. a+ M# |
' f3 q/ Z6 k+ B% S/ c  E[Zcom 杂志]
* m: K5 A7 j4 G5 b2 Q2 v[Browser Enhanced Objects]
3 K/ _  u2 m. a5 |; G
! @! e9 W& y& q$ q/ m6 x! d9 X" k最后,重新启动计算机.Tored祝您好运!- G6 m; o' i! A5 s
======================================================
/ P, N+ B3 |2 {1 r" f" k[End]
发表于 2008-5-22 22:24:30 | 显示全部楼层
你就这样弄,不行我也没办法
发表于 2008-5-23 13:18:44 | 显示全部楼层
独恋有按原始说的重新操作一次吗?
发表于 2008-5-24 20:09:59 | 显示全部楼层
找不到要删的文件。。。。
发表于 2008-5-25 08:54:35 | 显示全部楼层
有些都是隐藏起来的
发表于 2008-6-5 03:36:36 | 显示全部楼层

, g$ ?4 K; D: U0 {( u' [" c4 I2 q, v% V. D. q% Q1 i) _0 O  I
我对代码 一点都不懂
发表于 2008-6-5 14:21:26 | 显示全部楼层
。。。这不是代码只是系统的扫描日志而已
发表于 2008-6-5 18:19:32 | 显示全部楼层
我汗~~~
8 Q* @) i$ J$ K3 X, r, R9 X% d& K这么多代码~~~
您需要登录后才可以回帖 登录 | 注册

本版积分规则

傲天阁游戏公会
联系我们
咨询电话 : 020-88888888
事务 QQ : 85075421
电子邮箱 : admin@admin.com

小黑屋|手机版|Archiver|傲天阁游戏公会 ( 粤ICP备14058347号 )|免责声明

GMT+8, 2026-4-6 13:03 , Processed in 0.091757 second(s), 6 queries , Redis On.

Powered by Discuz! X3.4

© 2001-2013 Comsenz Inc.

快速回复 返回顶部 返回列表