word da bukai shurufa bunengyong
[code]2010-07-30,00:25:37
SysLog Scanner 3.1 - build 20100608
Arswp (http://www.arswp.com)
Windows XP Home Edition Service Pack 3 (build 2600)
================================================================
注册项
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<360sd> <"D:\360\360sd.exe" /autorun> [(Verified)360.cn, 1, 1, 0, 1311]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<IgfxTray> <C:\WINDOWS\system32\igfxtray.exe> [(Verified)Intel Corporation, 6.14.11.1009]
<Persisten**hread> <C:\WINDOWS\system32\Persisten**hread.exe> [(Verified)Intel Corporation, 6.14.11.1009]
<SynTPEnh> <C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [(Verified)Synaptics Incorporated, 12.2.4.1 27Feb09]
<LManager> <C:\Program Files\Launch Manager\LManager.exe> [(Verified)Dritek System Inc., 2, 0, 15, 720]
<360Safetray> <"D:\360safe\safemon\360Tray.exe" /start> [(Verified)360.CN, 7, 0, 0, 1009]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
<load> <> []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager]
<BootExecute> <> []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify]
<igdlogin> <igdlogin.dll> [(Verified)N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components]
<<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}> <C:\WINDOWS\system32\ieudinit.exe> [Microsoft Corporation, 8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)]
<{44BBA842-CC51-11CF-AAFA-00AA00B6015B}> <rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105) | (Verified)Microsoft Corporation, 7.00.6000.17055 (vista_gdr.100414-0533) | (Verified)N/A]
<{5945c046-1e7d-11d1-bc44-00c04fd912be}> <rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105) | (Verified)Microsoft Corporation, 7.00.6000.17055 (vista_gdr.100414-0533) | (Verified)N/A]
<{6BF52A52-394A-11d3-B153-00C04F79FAA6}> <rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105) | (Verified)Microsoft Corporation, 7.00.6000.17055 (vista_gdr.100414-0533) | (Verified)N/A]
================================================================
启动组
================================================================
任务计划
================================================================
组件
--------------------------------
Shell Extension
[Display Panning CPL Extension]
<{42071714-76d4-11d1-8b24-00a0c9068ff3}> <deskpan.dll> []
[HyperTerminal Icon Ext]
<{88895560-9AA2-1069-930E-00AA0030EBC8}> <C:\WINDOWS\system32\htic**.dll> [(Verified)Hilgraeve, Inc., 5.1.2600.0]
[任务栏和「开始」菜单]
<{0DF44EAA-FF21-4412-828E-260A8728E7F1}> <> []
[Synaptics Control Panel]
<{2F603045-309F-11CF-9774-0020AFD0CFF6}> <C:\Program Files\Synaptics\SynTP\SynTPCpl.dll> [(Verified)Synaptics Incorporated, 12.2.4.1 27Feb09]
[WinRAR shell extension]
<{B41DB860-8EE4-11D2-9906-E49FADC173CA}> <C:\Program Files\WinRAR\rarext.dll> [N/A]
--------------------------------
Protocols
[]
<{BBCA9F81-8F4F-11D2-90FF-0080C83D3571}> <C:\WINDOWS\wc98pp.dll> [N/A]
[Microsoft Infotech Storage Protocol for IE 4.0]
<{0A9007C0-4076-11D3-8789-0000F8105754}> <C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL> [Microsoft Corporation, 05.02.9336.01]
[IEProtocolHandler Class]
<{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D}> <C:\Program Files\Acer\Acer VCM\Skype4COM.dll> [(Verified)Skype Technologies, 1, 0, 31, 0]
--------------------------------
Context Menu
[SD360]
<{086F171D-5ED1-4ED2-B736-CFF3AD6A128E}> <D:\360\MenuEx.dll> [(Verified)360.cn, 1, 1, 0, 1080]
[WinRAR]
<{B41DB860-8EE4-11D2-9906-E49FADC173CA}> <C:\Program Files\WinRAR\rarext.dll> [N/A]
[igfxcui]
<{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4}> <C:\WINDOWS\system32\igfxpph.dll> [(Verified)Intel Corporation, 6.14.11.1009]
--------------------------------
ActiveX Extension
[ThunderAtOnce Class]
<{01443AEC-0FD1-40FD-9C87-E93D1494C233}> <C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll> [(Verified)深圳市迅雷网络技术有限公司, 5,9,14,1246]
[HallToolkit Class]
<{1E36C446-29F0-4773-A3FB-59C5501446EB}> <C:\Program Files\Thunder Network\Thunder\Program\HallTool.dll> [(Verified)深圳市迅雷网络技术有限公司, 1.0.0.1]
[Thunder Agent Class]
<{485463B7-8FB2-4B3B-B29B-8B919B0EACCE}> <C:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent5.9.14.1246.dll> [(Verified)深圳市迅雷网络技术有限公司, 5,9,14,1246]
[MediaComm Class]
<{7670648D-461B-42AF-BDFE-46D26AF5EFF2}> <C:\Program Files\Thunder Network\Thunder\userdata\Components\InMedia\MediaAddin.dll> [(Verified)深圳市迅雷网络技术有限公司, 3, 1, 7, 83]
[360SafeLive]
<{87515F61-A66C-4319-A0E0-D416CB8059E3}> <D:\360safe\Safelive.dll> [(Verified)360.cn, 1, 0, 0, 1007]
[Thunder Browser Helper]
<{889D2FEB-5411-4565-8998-1DD2C5261283}> <C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll> [(Verified)深圳市迅雷网络技术有限公司, 5,9,14,1246]
[OFrameObject Class]
<{9701758C-4373-482E-B13C-776C048EC890}> <C:\Program Files\Common Files\Thunder Network\KanKan\DapCtrl.2.3.5915.260.(159).dll> [(Verified)ShenZhen Thunder Networking Technologies Ltd., 2, 3, 5915, 260]
[VersionDetector Class]
<{9EFF1953-9694-47B1-AEF6-B2A3FE8BFE9B}> <C:\Program Files\Common Files\Thunder Network\KanKan\vd.1.1.0.29.(855).dll> [(Verified)深圳市迅雷网络技术有限公司, 1, 1, 0, 29]
[APlayer Control]
<{A9322148-C691-4B9D-91FC-B9C461DBE9DD}> <C:\Program Files\Common Files\Thunder Network\APlayer\APlayer_001.dll> [(Verified)ShenZhen Thunder Networking Technologies, LTD, 2.0.0.221]
[SafeMon Class]
<{B69F34DD-F0F9-42DC-9EDD-957187DA688D}> <D:\360safe\safemon\safemon.dll> [(Verified)360.cn, 6, 6, 5, 1005]
[Shockwave Flash Object]
<{D27CDB6E-AE6D-11CF-96B8-444553540000}> <C:\WINDOWS\system32\Macromed\Flash\Flash10h.ocx> [(Verified)Adobe Systems, Inc., 10,1,53,64]
[XPPlayer Class]
<{F3E70CEA-956E-49CC-B444-73AFE593AD7F}> <C:\Program Files\Common Files\Thunder Network\KanKan\PPlayer.2.1.5914.257.(159).dll> [(Verified)深圳市迅雷网络技术有限公司, 2, 1, 5914, 257]
================================================================
服务
[Human Interface Device Access / HidServ][Stopped/Disabled]
<%SystemRoot%\System32\svchost.exe -k netsvcs --> "%SystemRoot%\System32\hidserv.dll"> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[Raw Socket Service / RS_Service][Stopped/Manual Start]
<C:\Program Files\Acer\Acer VCM\RS_Service.exe> [Acer Incorporated, 4, 0, 3001, 8484]
[360 杀毒全盘扫描辅助服务 / scan][Stopped/Manual Start]
<%SystemRoot%\System32\svchost.exe -k bdx --> "D:\360\Scan.dll"> [(Verified)Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111) | S.C. BitDefender S.R.L, 12, 0, 53, 0]
[360 杀毒实时防护服务 / 360rp][Running/Auto Start]
<"D:\360\360rp.exe"> [(Verified)360.cn, 1, 1, 0, 1310]
[主动防御 / ZhuDongFangYu][Running/Auto Start]
<"D:\360safe\deepscan\zhudongfangyu.exe"> [(Verified)360.cn, 3, 2, 2, 1002]
================================================================
驱动
[TCP/IP Protocol Driver / Tcpip][Running/System Start]
<system32\DRIVERS\tcpip.sys> [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]
[360netmon / 360netmon][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\360netmon.sys> [(Verified)360.cn, 1.0.3.1006]
[360SelfProtection / 360SelfProtection][Running/System Start]
<system32\drivers\360SelfProtection.sys> [(Verified)360安全中心, 1, 0, 0, 1038]
[AliIde / AliIde][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\aliide.sys> [(Verified)Acer Laboratories Inc., 1.20]
[Ambfilt / Ambfilt][Stopped/Manual Start]
<system32\drivers\Ambfilt.sys> [(Verified)Creative, 5.10.00.4240]
[AMD AGP Bus Filter Driver / amdagp][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\amdagp.sys> [(Verified)Advanced Micro Devices, Inc., 5.00 (xpsp.080413-2111)]
[Atheros AR5008 Wireless Network Adapter Service / AR5416][Running/Manual Start]
<system32\DRIVERS\athw.sys> [(Verified)Atheros Communicati**, Inc., 7.7.0.348]
[asc / asc][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\asc.sys> [(Verified)Advanced System Products, Inc., 2.9I-MS (XPClient.010817-1148)]
[asc3550 / asc3550][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\asc3550.sys> [(Verified)Advanced System Products, Inc., 3.1E-MS (XPClient.010817-1148)]
[AtpKrnl / AtpKrnl][Running/Manual Start]
<System32\Drivers\AtpKrnl.sys> [(Verified)www.arswp.com, 3.00]
[BAPIDRV / BAPIDRV][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\BAPIDRV.SYS> [(Verified)360.cn, 1.0.0.1012]
[bdfsfltr / bdfsfltr][Running/System Start]
<system32\DRIVERS\bdfsfltr.sys> [(Verified)BitDefender S.R.L. Bucharest, ROMANIA, 0.4.182.4891, RELEASE, built by: WinDDK]
[CmdIde / CmdIde][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\cmdide.sys> [(Verified)CMD Technology, Inc., 2.0.7 (XPClient.010817-1148)]
[dac2w2k / dac2w2k][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\dac2w2k.sys> [(Verified)Mylex Corporation, 6.00-21 (XPClient.010817-1148)]
[Dritek Keyboard Filter Driver / DKbFltr][Running/Manual Start]
<system32\DRIVERS\DKbFltr.sys> [(Verified)Dritek System Inc., 1, 3, 0, 0]
[EfiSystemMon / EfiMon][Running/System Start]
<System32\Drivers\Efimon.sys> [(Verified)奇虎网, 1, 0, 0, 1005]
[Microsoft 用于 High Definition Audio 的 UAA 总线驱动程序 / HDAudBus][Running/Manual Start]
<system32\DRIVERS\HDAudBus.sys> [(Verified)Windows (R) Server 2003 DDK provider, 5.10.01.5013 built by: WinDDK]
[HookPort / HookPort][Running/Boot Start]
<System32\Drivers\Hookport.sys> [(Verified)360安全中心, 1, 0, 0, 1011]
[igd / igd][Running/Manual Start]
<system32\DRIVERS\igxpmp32.sys> [(Verified)Intel Corporation, 6.14.11.1009]
[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
<system32\drivers\RtkHDAud.sys> [(Verified)Realtek Semiconductor Corp., 5.10.0.5817 built by: WinDDK]
[Monfilt / Monfilt][Stopped/Manual Start]
<system32\drivers\Monfilt.sys> [(Verified)Creative Technology Ltd., 5.10.0.4112]
[mraid35x / mraid35x][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\mraid35x.sys> [(Verified)American Megatrends Inc., 6.19 (XPClient.010817-1148)]
[Direct Parallel Link Driver / Ptilink][Running/Manual Start]
<system32\DRIVERS\ptilink.sys> [(Verified)Parallel Technologies, Inc., 1.10 (XPClient.010817-1148)]
[ql1080 / ql1080][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ql1080.sys> [(Verified)QLogic Corporation, 3.04]
[ql12160 / ql12160][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ql12160.sys> [(Verified)QLogic Corporation, 7.13.02 (W64)]
[ql1280 / ql1280][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ql1280.sys> [(Verified)QLogic Corporation, 7.13.01 (W2K)]
[Quantum DeepScanner Servers / qutmdserv][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\qutmdrv.sys> [(Verified)360安全中心, 6.5.0.1004]
[qutmipc / qutmipc][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\qutmipc.sys> [(Verified)360安全中心, 6.2.0.1014]
[RtsUStor.Sys Realtek USB Card Reader / RSUSBSTOR][Stopped/Manual Start]
<System32\Drivers\RtsUStor.sys> [(Verified)Realtek Semiconductor Corp., 6.0.6000.84]
[Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver / RTLE8023xp][Running/Manual Start]
<system32\DRIVERS\Rtenicxp.sys> [(Verified)Realtek Semiconductor Corporation , 5.722.0416.2009 built by: WinDDK]
[Secdrv / Secdrv][Stopped/Manual Start]
<system32\DRIVERS\secdrv.sys> [(Verified)Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K., 4.03.086]
[SIS AGP Bus Filter / sisagp][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\sisagp.sys> [(Verified)Silicon Integrated Systems Corporation, 5.12.01.2010 (xpsp.080413-2111)]
[Acronis Snapshots Manager / snapman][Running/Boot Start]
<system32\DRIVERS\snapman.sys> [(Verified)Acronis, 3.0 build 303]
[Sparrow / Sparrow][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\sparrow.sys> [(Verified)Adaptec, Inc., v2.0a (ReleaseBinaries.001205-1804)]
[symc810 / symc810][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\symc810.sys> [(Verified)Symbios Logic Inc., 5.1.2409.1 (ReleaseBinaries.001205-1804)]
[symc8xx / symc8xx][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\symc8xx.sys> [(Verified)LSI Logic, 5.1.2409.1 (ReleaseBinaries.001205-1804)]
[sym_hi / sym_hi][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\sym_hi.sys> [(Verified)LSI Logic, 5.1.2462.0 (Lab01_N.010309-0027)]
[sym_u3 / sym_u3][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\sym_u3.sys> [(Verified)LSI Logic, 5.1.2462.0 (Lab01_N.010309-0027)]
[Synaptics TouchPad Driver / SynTP][Running/Manual Start]
<system32\DRIVERS\SynTP.sys> [(Verified)Synaptics Incorporated, 12.2.4.1 27Feb09]
[ultra / ultra][Stopped/Disabled]
<\SystemRoot\system32\DRIVERS\ultra.sys> [(Verified)Promise Technology, Inc., 1.43 (第 0603 版)]
================================================================
活动进程
[PID: 1512 / SYSTEM] D:\360safe\deepscan\zhudongfangyu.exe [(Verified)360.cn, 3, 2, 2, 1002]
D:\360safe\SoftMgr\360SoftMgrS.dll [(Verified)360.cn, 2, 1, 5, 1100]
D:\360safe\deepscan\CloudCom2.dll [(Verified)360.cn, 3, 2, 3, 3001]
D:\360safe\deepscan\bapi.dll [(Verified)360.cn, 1.0.0.1010]
D:\360safe\deepscan\heavygate.dll [360.cn, 3, 6, 21, 0]
D:\360safe\deepscan\qutmload.dll [(Verified)360安全中心, 6, 5, 0, 1001]
[PID: 232 / acer] C:\WINDOWS\Explorer.EXE [(Verified)Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
C:\WINDOWS\system32\igfxpph.dll [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\hccutils.DLL [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\igfxres.dll [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\igfxress.dll [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\igfxsrvc.dll [(Verified)Intel Corporation, 6.14.11.1009]
D:\360safe\safemon\safemon.dll [(Verified)360.cn, 6, 6, 5, 1005]
C:\Program Files\Tencent\QQ\qdshm.dll [(Verified)Copyright 2004, 1, 0, 101, 20]
C:\Program Files\WinRAR\rarext.dll [N/A]
D:\360\MenuEx.dll [(Verified)360.cn, 1, 1, 0, 1080]
[PID: 564 / acer] C:\WINDOWS\system32\Persisten**hread.exe [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\igfxsrvc.dll [(Verified)Intel Corporation, 6.14.11.1009]
[PID: 572 / acer] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [(Verified)Synaptics Incorporated, 12.2.4.1 27Feb09]
C:\WINDOWS\system32\SynCOM.dll [(Verified)Synaptics Incorporated, 12.2.4.1 27Feb09]
C:\WINDOWS\system32\SynTPAPI.dll [(Verified)Synaptics Incorporated, 12.2.4.1 27Feb09]
[PID: 600 / acer] C:\Program Files\Launch Manager\LManager.exe [(Verified)Dritek System Inc., 2, 0, 15, 720]
C:\Program Files\Launch Manager\CDRomUtl.dll [(Verified)Dritek System Inc., 1.00]
C:\Program Files\Launch Manager\ComFnUtl.dll [(Verified)Dritek System Inc., 1, 0, 0, 711]
C:\Program Files\Launch Manager\MixerUtl.dll [(Verified)Dritek System Inc., 1.00]
C:\Program Files\Launch Manager\SzUPFUtl.dll [(Verified)Dritek System Inc., 1.00]
C:\Program Files\Launch Manager\Wnd2File.dll [(Verified)Dritek System Inc., 3.00]
C:\Program Files\Launch Manager\SzPtcUtl.dll [(Verified)Dritek System Inc., 1.00]
C:\Program Files\Launch Manager\OSDUtl2.dll [(Verified)Dritek System Inc., 1.0.0.2]
C:\Program Files\Launch Manager\LgKCUtl.Dll [(Verified)Dritek System Inc., 2, 0, 2, 1007]
C:\Program Files\Launch Manager\DialCnt.Dll [(Verified)Dritek System Inc., 2, 1, 0, 1]
C:\Program Files\Launch Manager\MMDUtl.DLL [(Verified)Dritek System Inc., 2.1.15.10325]
C:\WINDOWS\system32\IGFXEXTPS.DLL [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\Syncom.dll [(Verified)Synaptics Incorporated, 12.2.4.1 27Feb09]
C:\Program Files\Launch Manager\NTKCUtl.dll [(Verified)Dritek System Inc., 2, 0, 0, 207]
C:\Program Files\Launch Manager\WHookCtl.dll [(Verified)Dritek System Inc., 2, 2, 8, 328]
[PID: 620 / acer] D:\360safe\safemon\360Tray.exe [(Verified)360.CN, 7, 0, 0, 1009]
D:\360safe\ipc\ipcservice.dll [(Verified)360.CN, 6, 5, 3, 1002]
D:\360safe\ipc\fileMgr.dll [(Verified)360.cn, 6, 5, 2, 1002]
D:\360safe\ipc\yhregd.dll [(Verified)(C) 360.cn Inc. All Rights Reserved., 6, 5, 0, 1002]
D:\360safe\ipc\appd.dll [(Verified)360.cn, 6, 5, 3, 1002]
D:\360safe\safemon\360compro.dll [(Verified)360安全中心, 6, 2, 0, 1005]
D:\360safe\safemon\360webpro.dll [(Verified)360.CN, 1, 3, 0, 1031]
D:\360safe\safemon\360traylive.dll [(Verified)360安全中心, 6, 0, 1, 1013]
D:\360safe\safemon\360procmon.dll [(Verified)360.CN, 6, 5, 2, 1011]
D:\360safe\safemon\SelfProtectAPI2.dll [(Verified)360.CN, 1, 1, 0, 1012]
D:\360safe\safemon\360safemonpro.tpi [(Verified)360.cn, 1, 1, 2, 1002]
D:\360safe\safemon\netm.tpi [(Verified)360.cn, 1, 0, 1, 1012]
D:\360safe\safemon\netmon.tpi [(Verified)360.CN, 1, 0, 2, 1011]
D:\360safe\deepscan\qutmload.dll [(Verified)360安全中心, 6, 5, 0, 1001]
D:\360safe\ipc\qutmipc.dll [(Verified)360安全中心, 6, 2, 0, 1007]
D:\360safe\SafeLive.dll [(Verified)360.cn, 1, 0, 0, 1007]
D:\360safe\pdown.dll [(Verified)360.cn, 1, 2, 0, 1014]
D:\360safe\safemon\safemon.dll [(Verified)360.cn, 6, 6, 5, 1005]
D:\360safe\safemon\urlproc.dll [(Verified)360.cn, 1, 2, 2, 1001]
D:\360safe\safemon\urlprocnet.dll [(Verified)360.cn, 1, 2, 2, 1001]
D:\360safe\360ver.dll [(Verified)奇虎网, 7, 1, 1, 1001]
D:\360safe\netmon\360netctrl.dll [(Verified)360.CN, 1, 0, 3, 1009]
D:\360safe\LiveUpd360.dll [(Verified)360.cn, 1, 2, 0, 1033]
D:\360safe\360net.dll [(Verified)奇虎网, 1, 1, 17, 1020]
D:\360safe\360P2SP.dll [(Verified)360.cn, 1, 1, 0, 1046]
D:\360safe\deepscan\Cloudcom2.dll [(Verified)360.cn, 3, 2, 3, 3001]
D:\360safe\deepscan\Bapi.dll [(Verified)360.cn, 1.0.0.1010]
D:\360safe\efiproc.dll [(Verified)奇虎360安全卫士, 1, 0, 0, 1005]
D:\360safe\ipc\PatchCheck.dll [(Verified)360.cn, 1, 1, 0, 1001]
D:\360safe\deepscan\deepscan.dll [(Verified)360.cn, 3, 2, 3, 3001]
D:\360safe\deepscan\heavygate.dll [360.cn, 3, 6, 21, 0]
[PID: 648 / acer] C:\WINDOWS\system32\igfxsrvc.exe [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\igfxsrvc.dll [(Verified)Intel Corporation, 6.14.11.1009]
[PID: 1060 / acer] D:\360\360sd.exe [(Verified)360.cn, 1, 1, 0, 1311]
D:\360\QTQuart.dll [(Verified)360.cn, 1, 1, 0, 1203]
D:\360\CrashReport.dll [(Verified)360安全中心, 1, 0, 0, 1074]
[PID: 1572 / SYSTEM] D:\360\360rp.exe [(Verified)360.cn, 1, 1, 0, 1310]
D:\360\Router.dll [(Verified)360安全中心, 1, 0, 0, 1069]
D:\360\BDFLTLIB.DLL [N/A]
D:\360\SCAN.DLL [S.C. BitDefender S.R.L, 12, 0, 53, 0]
D:\360\Wrapper.dll [(Verified)360安全中心, 1, 0, 0, 1]
D:\360\QTQuart.dll [(Verified)360.cn, 1, 1, 0, 1203]
D:\360\cloudcom2.dll [(Verified)360.cn, 3, 2, 3, 1006]
D:\360\wlist.dll [(Verified)360安全中心, 3, 0, 0, 1004]
D:\360\Bapi.dll [(Verified)360.cn, 1.0.0.1010]
D:\360\smartscn.dll [(Verified)BitDefender S.R.L., 12.0.0.11]
D:\360\bdcore.dll [(Verified)BitDefender, 11, 0, 0, 33]
D:\360\heavygate.dll [360.cn, 3, 6, 21, 0]
D:\360\trufos.dll [(Verified)N/A]
D:\360\avxdisk.dll [(Verified)BitDefender, 1, 0, 0, 1]
D:\360\CrashReport.dll [(Verified)360安全中心, 1, 0, 0, 1074]
[PID: 256 / acer] C:\WINDOWS\system32\igfxext.exe [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\igfxsrvc.dll [(Verified)Intel Corporation, 6.14.11.1009]
C:\WINDOWS\system32\IGFXEXTPS.DLL [(Verified)Intel Corporation, 6.14.11.1009]
[PID: 3660 / acer] C:\WINDOWS\system32\wuauclt.exe [(Verified)Microsoft Corporation, 7.4.7600.226 (winmain_wtr_wsus3sp2(wmbla).090806-1834)]
D:\360safe\safemon\safemon.dll [(Verified)360.cn, 6, 6, 5, 1005]
[PID: 3752 / acer] C:\Program Files\Tencent\QQ\QQ.exe [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQBaseClassInDll.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQHelperDll.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\BasicCtrlDll.dll [(Verified)TENCENT, 8,0,978,1833]
D:\360safe\safemon\safemon.dll [(Verified)360.cn, 6, 6, 5, 1005]
C:\Program Files\Tencent\QQ\QQAPI.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\LoginCtrl.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\LoginCtrlRes.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQRes.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQMainFrame.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQPlugin.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\UnReadMsgMgr.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQAllInOne.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\SCCore.dll [(Verified)TENCENT, 1, 6, 0, 2]
C:\Program Files\Tencent\QQ\CameraDll.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\CQQApplication.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\FlashAvatarDll.dll [(Verified)版权所有 (C) 2008, 1, 0, 0, 1]
C:\Program Files\Tencent\QQ\NewSkin.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\MailSummary.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQSpace.dll [(Verified)TENCENT, 8,0,978,1833]
C:\WINDOWS\system32\Macromed\Flash\Flash10h.ocx [(Verified)Adobe Systems, Inc., 10,1,53,64]
C:\WINDOWS\system32\msdmo.dll [(Verified)N/A]
C:\Program Files\Tencent\QQ\OEMApplication.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQAvatar.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQKnowledgeSearch.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQGroupMng.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQPet.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQSysMsgMng.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QRingMng.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQCustomFace.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\ImageOle.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQLiveQMng.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\UserDefinedHead.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQConfigPlugin.dll [(Verified)TENCENT, 8,0,978,1833]
C:\WINDOWS\system32\SOGOUPY.IME [(Verified)Sogou.com Inc., 5.0.1.4192]
C:\Program Files\Tencent\QQ\LongConnection.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQSceneMng.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\GroupConnection.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\PhoneAPI.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\DialerAllinOne.dll [(Verified)tencent, 1, 4, 0, 0]
C:\Program Files\Tencent\QQ\SafeBase\TSFSCAN.DAT [(Verified)TENCENT, 2010, 1, 19, 1]
C:\Program Files\Tencent\QQ\BQQApplication.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\CommercesMng.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\PersonalDesktop.dll [(Verified)TENCENT, 8,0,978,1833]
C:\Program Files\Tencent\QQ\QQAddr.dll [(Verified)深圳市腾讯计算机系统有限公司, 5, 0, 101, 330]
C:\Program Files\Tencent\QQ\AddrSearch.dll [(Verified)Tencent, 2, 3, 16, 12]
C:\Program Files\Tencent\QQ\SafeBase\TSELoder.DAT [(Verified)Tencent, 2008, 1, 28, 13]
[PID: 3396 / acer] C:\Program Files\Tencent\QQ\TXPlatform.exe [(Verified)Tencent, 1, 5, 225, 0]
D:\360safe\safemon\safemon.dll [(Verified)360.cn, 6, 6, 5, 1005]
[PID: 3068 / acer] C:\Program Files\Internet Explorer\iexplore.exe [(Verified)Microsoft Corporation, 7.00.6000.17055 (vista_gdr.100414-0533)]
D:\360safe\safemon\safemon.dll [(Verified)360.cn, 6, 6, 5, 1005]
C:\WINDOWS\system32\xmllite.dll [Microsoft Corporation, 1.00.1018.0]
D:\360safe\safemon\LoadWDUI.dll [(Verified)360.cn, 1, 0, 0, 1019]
D:\360safe\safemon\urlproc.dll [(Verified)360.cn, 1, 2, 2, 1001]
D:\360safe\safemon\urlprocnet.dll [(Verified)360.cn, 1, 2, 2, 1001]
[PID: 1968 / acer] D:\Program Files\arswp3\ArSwp3.exe [(Verified)Windows 清理助手, 3.1.2.0628]
D:\360safe\safemon\safemon.dll [(Verified)360.cn, 6, 6, 5, 1005]
C:\WINDOWS\system32\Macromed\Flash\Flash10h.ocx [(Verified)Adobe Systems, Inc., 10,1,53,64]
================================================================
文件关联
[.avi] <"C:\Program Files\StormII\Storm.exe" /play "%1"> [(Verified)**暴风网际科技有限公司, 3, 10, 3, 17]
[.ram] <"C:\Program Files\StormII\Storm.exe" /play "%1"> [(Verified)**暴风网际科技有限公司, 3, 10, 3, 17]
[.sep] <"C:\Program Files\Thunder Network\Thunder\Program\FileLink\XLFileLink.exe" "%1"> [(Verified)Thunder Networking Technologies,LTD, 1, 0, 3, 24]
[.mod] <"C:\Program Files\StormII\Storm.exe" /play "%1"> [(Verified)**暴风网际科技有限公司, 3, 10, 3, 17]
================================================================
Autorun.Inf
================================================================
Winsock**者
================================================================
隐藏进程
================================================================
可疑文件
================================================================
HOSTS
127.0.0.1 localhost
[/code]
页:
[1]