正在运行的进程
[PID: 860 / SYSTEM][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1444 / SYSTEM][\??\C:\windows\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1660 / SYSTEM][\??\C:\windows\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
[PID: 1992 / SYSTEM][C:\windows\system32\services.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 2028 / SYSTEM][C:\windows\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
[PID: 1188 / SYSTEM][C:\windows\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1348 / NETWORK SERVICE][C:\windows\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1536 / SYSTEM][C:\windows\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 1684 / NETWORK SERVICE][C:\windows\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
[PID: 988 / CYL][C:\windows\Explorer.EXE] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ASOEHOOK.DLL] [Symantec Corporation, 4.0.0.123]
[D:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 8, 96]
[D:\Program Files\Tuotu\TuoTuHelper_v8.dll] [Tuotu.com, 2.0.0.6]
[C:\WINDOWS\system32\widgetdownload.dll] [鱼鱼桌面秀widget插件下载工具, 1.3.0.0]
[D:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.CHS] [Adobe Systems, Inc., 7.0.0.0]
[D:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] [Adobe Systems, Inc., 7.0.0.0]
[C:\windows\System32\spool\DRIVERS\W32X86\3\BRUMF04B.DLL] [Brother Industries Ltd., 3.07]
[C:\windows\System32\spool\DRIVERS\W32X86\3\BRLMF04B.DLL] [Brother Industries Ltd., 3.07]
[C:\windows\System32\spool\DRIVERS\W32X86\3\BROMF04B.DLL] [Brother Industries Ltd., 3.07]
[D:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.5.29]
[D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll] [Adobe Systems Incorporated, 7.0.9.2006121800]
[C:\windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[PID: 1488 / SYSTEM][C:\windows\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
[C:\windows\system32\AdobePDF.dll] [Adobe Systems Incorporated., 7.0.0.00]
[C:\windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[D:\Program Files\Adobe\Acrobat 7.0\Distillr\AdistRes.CHS] [, ]
[C:\windows\system32\CNMLM6e.DLL] [CANON INC., 1.80.2.50]
[C:\windows\System32\spool\PRTPROCS\W32X86\CNMPD6e.DLL] [CANON INC., 1.80.2.50]
[C:\windows\System32\spool\PRTPROCS\W32X86\filterpipelineprintproc.dll] [Microsoft Corporation, 6.0.5824.16384 (winmain(wmbla).060911-0725)]
[PID: 1812 / SYSTEM][D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccL80U.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccVrTrst.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\EFACli.dll] [Symantec Corporation, 1.0.0.152]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvc.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\srtsp32.dll] [Symantec Corporation, 11.0.0.74]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccIPC.dll] [Symantec Corporation, 108.0.0.126]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\DIMASTER.DLL] [Symantec Corporation, 5.0.0.218]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSet.dll] [Symantec Corporation, 108.0.0.126]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\IPSPLUG.DLL] [Symantec Corporation, 9.0.0.172]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\UIPERFSV.DLL] [Symantec Corporation, 2009.0.0.165]
[C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20080923.001\IDSxpx86.dll] [Symantec Corporation, 9.0.0.172]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CCJOBMGR.DLL] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccGEvt.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccsubeng.dll] [Symantec Corporation, 108.0.0.126]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\FWCORE.DLL] [Symantec Corporation, 16.0.0.125]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\HTEC.DLL] [Symantec Corporation, 3.0.0.78]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\NCWTRUST.DLL] [Symantec Corporation, 16.0.0.125]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\AVPSVC32.DLL] [Symantec Corporation, 16.0.0.125]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\BHSVCPLG.DLL] [Symantec Corporation, 5.0.0.207]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccGLog.dll] [Symantec Corporation, 108.0.0.126]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\SNDSVC.DLL] [Symantec Corporation, 9.0.0.146]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CLTLMC.DLL] [Symantec Corporation, 9.0.0.133]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\COSVCPLG.DLL] [Symantec Corporation, 2009.0.0.104]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\SymNeti.dll] [Symantec Corporation, 9.0.0.146]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ISDATAPR.DLL] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\FWGenPlg.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AVIfc.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AppMgr32.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\BHClient.dll] [Symantec Corporation, 5.0.0.207]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ISDATASV.DLL] [Symantec Corporation, 16.0.0.125]
[C:\WINDOWS\system32\msjetoledb40.dll] [, ]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CLTLMS.DLL] [Symantec Corporation, 9.0.0.133]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\HNCORE.DLL] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\avModule.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\FWHelper.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\FWSetup.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\coDataPr.dll] [Symantec Corporation, 2009.0.0.104]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\IMCfg.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\QBackup.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccScanw.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ecmldr32.DLL] [Symantec Corporation, 71.3.0.25]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSEBind.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\HTecSub.dll] [Symantec Corporation, 3.0.0.78]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\bbRGen.dll] [Symantec Corporation, 5.0.0.207]
[PID: 924 / CYL][C:\windows\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
[PID: 1208 / CYL][D:\Program Files\鱼鱼桌面\FishDesk.exe] [鱼鱼软件, 2.1.2.903]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ASOEHOOK.DLL] [Symantec Corporation, 4.0.0.123]
[C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\pdm.dll] [Microsoft Corporation, 7.10.3077]
[C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\2052\mdmui.dll] [Microsoft Corporation, 7.10.3077]
[C:\windows\system32\msxml4.dll] [Microsoft Corporation, 4.20.9848.0]
[PID: 596 / CYL][D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvcHst.exe] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccL80U.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccVrTrst.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\EFACli.dll] [Symantec Corporation, 1.0.0.152]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\SymNeti.dll] [Symantec Corporation, 9.0.0.146]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccIPC.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSvc.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\srtsp32.dll] [Symantec Corporation, 11.0.0.74]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\UIHOST.DLL] [Symantec Corporation, 2009.0.0.165]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\NPCTRAY.DLL] [Symantec Corporation, 2009.0.0.165]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\isDataPr.dll] [Symantec Corporation, 16.0.0.125]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\AVPAPP32.DLL] [Symantec Corporation, 16.0.0.125]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\BHCLIENT.DLL] [Symantec Corporation, 5.0.0.207]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AVIfc.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccSet.dll] [Symantec Corporation, 108.0.0.126]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ASOEHOOK.DLL] [Symantec Corporation, 4.0.0.123]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccJobMgr.dll] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\ccGEvt.dll] [Symantec Corporation, 108.0.0.126]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CCEMLPXY.DLL] [Symantec Corporation, 108.0.0.126]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\coDataPr.dll] [Symantec Corporation, 2009.0.0.104]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CLTALDIS.DLL] [Symantec Corporation, 9.0.0.133]
[D:\Program Files\Norton Internet Security\MUI\16.0.0.125\04\02\cltRes.loc] [Symantec Corporation, 9.0.0.133]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\SymRedir.dll] [Symantec Corporation, 9.0.0.146]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\FWSESAL.DLL] [Symantec Corporation, 16.0.0.125]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ACCTMGR.DLL] [Symantec Corporation, 2009.0.0.104]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\SDKCMN.DLL] [Symantec Corporation, 4.0.0.44]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\CLTLMC.DLL] [Symantec Corporation, 9.0.0.133]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\UIALERT.DLL] [Symantec Corporation, 2009.0.0.165]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\asFilter.dll] [Symantec Corporation, 4.0.0.123]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\asUniPlg.dll] [Symantec Corporation, 4.0.0.123]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AVMail.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\AppMgr32.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\NPCStatus.dll] [Symantec Corporation, 2009.0.0.165]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\hsui.dll] [Symantec Corporation, 2009.0.0.165]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\cltui.dll] [Symantec Corporation, 2009.0.0.165]
[C:\Documents and Settings\All Users\Application Data\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\CLT\cltLMSx.dll] [Symantec Corporation, 9.0.0.133]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\isPwd.dll] [Symantec Corporation, 16.0.0.125]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\SYMHTML.DLL] [Symantec Corporation, 3.0.0.149]
[D:\Program Files\Norton Internet Security\Engine\16.0.0.125\uiPerfsv.dll] [Symantec Corporation, 2009.0.0.165]
[PID: 2628 / SYSTEM][C:\WINDOWS\system32\wbem\wmiprvse.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]
[PID: 1904 / CYL][D:\下载\sreng\SREngLdr.EXE] [Smallfrogs Studio, 2.6.12.1018]
[PID: 1164 / CYL][D:\下载\sreng\SREecd55647.EXE] [Smallfrogs Studio, 2.6.12.1018]
[D:\PROGRAM FILES\NORTON INTERNET SECURITY\ENGINE\16.0.0.125\ASOEHOOK.DLL] [Symantec Corporation, 4.0.0.123]
[D:\下载\sreng\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS 文件
==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 1208, D:\PROGRAM FILES\鱼鱼桌面\FISHDESK.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1904, D:\下载\SRENG\SRENGLDR.EXE]
==================================
API HOOK
N/A
==================================
隐藏进程
N/A
==================================
[/CODE] |