- 2007-04-11,17:26:22
- System Repair Engineer 2.3.13.690
- Smallfrogs ([url]http://www.KZTechs.com[/url])
- Windows XP Home Edition Service Pack 2 (Build 2600)
- - 管理权限用户 - 完整功能
- 以下内容被选中:
- 所有的启动项目(包括注册表、启动文件夹、服务等)
- 浏览器加载项
- 正在运行的进程(包括进程模块信息)
- 文件关联
- Winsock 提供者
- Autorun.inf
- HOSTS 文件
- 启动项目
- 注册表
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe> [(Verified)Microsoft Corporation]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
- <load><> [N/A]
- <run><> [N/A]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
- <IMJPMIG8.1><C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32> [(Verified)Microsoft Corporation]
- <PHIME2002ASync><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC> [(Verified)Microsoft Corporation]
- <PHIME2002A><C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName> [(Verified)Microsoft Corporation]
- <SiSUSBRG><C:\WINDOWS\SiSUSBrg.exe> [Silicon Integrated Systems Corp.]
- <SiS KHooker><C:\WINDOWS\System32\khooker.exe> [Silicon Integrated Systems Corporation]
- <SoundMan><SOUNDMAN.EXE> [(Verified)Avance Logic, Inc.]
- <SynTPLpr><C:\Program Files\Synaptics\SynTP\SynTPLpr.exe> [(Verified)Synaptics, Inc.]
- <SynTPEnh><C:\Program Files\Synaptics\SynTP\SynTPEnh.exe> [(Verified)Synaptics, Inc.]
- <IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload> [(Verified)Microsoft Corporation]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
- <shell><Explorer.exe> [(Verified)Microsoft Corporation]
- <Userinit><C:\WINDOWS\system32\userinit.exe,> [(Verified)Microsoft Corporation]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
- <AppInit_DLLs><> [N/A]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
- <UIHost><logonui.exe> [(Verified)Microsoft Corporation]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ImpsSensor]
- <WinlogonNotify: ImpsSensor><ImpsSensor.dll> [N/A]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
- <{553858A7-4922-4e7e-B1C1-97140C1C16EF}><C:\WINDOWS\system32\ieframe.dll> [(Verified)Microsoft Corporation]
- ==================================
- 启动文件夹
- [EzButton]
- <C:\Documents and Settings\user\「开始」菜单\程序\启动\EzButton.lnk --> C:\PROGRA~1\EZBUTT~1.14\EzButton.exe []><N>
- ==================================
- 服务
- [Application Management / AppMgmt][Stopped/Manual Start]
- <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><N/A>
- [ASP.NET Admin Service / aspnet_admin][Stopped/Auto Start]
- <C:\WINDOWS\Microsoft.NET\Framework\v2.0.40607\aspnet_admin.exe><N/A>
- [ASP.NET State Service / aspnet_state][Stopped/Manual Start]
- <C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe><N/A>
- [BlueSoleil Hid Service / BlueSoleil Hid Service][Stopped/Auto Start]
- <><N/A>
- [Symantec Lic NetConnect service / CLTNetCnService][Stopped/Auto Start]
- <><N/A>
- [Comodo Application Agent / CmdAgent][Stopped/Auto Start]
- <><N/A>
- [Diskeeper / Diskeeper][Stopped/Manual Start]
- <><N/A>
- [Human Interface Device Access / HidServ][Stopped/Disabled]
- <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
- [LiveUpdate / LiveUpdate][Stopped/Manual Start]
- <"C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE"><Symantec Corporation>
- [Macromedia Licensing Service / Macromedia Licensing Service][Stopped/Manual Start]
- <"C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe"><Macromedia>
- [McAfee Framework 服务 / McAfeeFramework][Stopped/Auto Start]
- <><N/A>
- [Network Associates McShield / McShield][Stopped/Auto Start]
- <><N/A>
- [Network Associates Task Manager / McTaskManager][Stopped/Auto Start]
- <><N/A>
- [Machine Debug Manager / MDM][Running/Auto Start]
- <"C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe"><Microsoft Corporation>
- [msn / msn][Stopped/Auto Start]
- <><N/A>
- [Siompwonadqt / Siompwonadqt][Stopped/Manual Start]
- <><N/A>
- [XP变脸王可视风格引擎 / UxTuneUp][Stopped/Disabled]
- <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\uxtuneup.dll><Holersoft>
- [Portable Media Serial Number Service / WmdmPmSN][Stopped/Manual Start]
- <C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\System32\mspmsnsv.dll><Microsoft Corporation>
- [自动 LiveUpdate 调度程序 / 自动 LiveUpdate 调度程序][Running/Auto Start]
- <"C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe"><Symantec Corporation>
- ==================================
- 驱动程序
- [Service for Avance AC97 Audio (WDM) / ALCXWDM][Running/Manual Start]
- <system32\drivers\ALCXWDM.SYS><Avance Logic, Inc.>
- [AntiyFirewall / AntiyFirewall][Stopped/Manual Start]
- <\??\C:\WINDOWS\system32\drivers\AntiyFW.sys><N/A>
- [Bluetooth Audio Service / BlueletAudio][Running/Manual Start]
- <system32\DRIVERS\blueletaudio.sys><IVT Corporation>
- [Bluetooth PAN Network Adapter / BT][Running/Manual Start]
- <system32\DRIVERS\btnetdrv.sys><IVT Corporation>
- [Bluetooth USB For Bluetooth Service / Btcsrusb][Stopped/Manual Start]
- <System32\Drivers\btcusb.sys><IVT Corporation>
- [Bluetooth HID Enumerator / BTHidEnum][Running/Manual Start]
- <system32\DRIVERS\vbtenum.sys><N/A>
- [Bluetooth HID Manager Service / BTHidMgr][Running/Boot Start]
- <\SystemRoot\System32\Drivers\BTHidMgr.sys><IVT Corporation>
- [Comodo Application Engine / CmdMon][Stopped/System Start]
- <System32\DRIVERS\cmdmon.sys><N/A>
- [EagleNT / EagleNT][Stopped/Manual Start]
- <\??\C:\WINDOWS\system32\drivers\EagleNT.sys><N/A>
- [Symantec Eraser Control driver / eeCtrl][Running/System Start]
- <\??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys><Symantec Corporation>
- [EnE Keyboard KB-3886 / EKBfltr][Running/Manual Start]
- <System32\DRIVERS\EKBfltr.sys><EnE Technology Inc.>
- [EntDrv51 / EntDrv51][Stopped/Manual Start]
- <\??\C:\WINDOWS\system32\drivers\EntDrv51.sys><N/A>
- [HOSTNT / HOSTNT][Running/Auto Start]
- <\??\C:\WINDOWS\system32\drivers\hostnt.sys><N/A>
- [ihdrwsiv / ihdrwsiv][Running/Boot Start]
- <\SystemRoot\System32\DRIVERS\ihdrwsiv.sys><Yahoo! China Corporation>
- [Comodo Network Engine / Inspect][Stopped/Boot Start]
- <\SystemRoot\System32\DRIVERS\inspect.sys><N/A>
- [C:\WINDOWS\system32\drivers\IOPort.sys / IOPort][Stopped/Manual Start]
- <\??\C:\WINDOWS\system32\drivers\IOPort.sys><N/A>
- [IsDrv120 / IsDrv120][Running/Boot Start]
- <2 - 系统找不到指定的文件。
- ><N/A>
- [kl1 / kl1][Running/Boot Start]
- <\SystemRoot\system32\drivers\kl1.sys><Kaspersky Lab>
- [klif / klif][Running/System Start]
- <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
- [KRegEx / KRegEx][Stopped/Manual Start]
- <\??\C:\WINDOWS\system32\drivers\KRegEx.sys><N/A>
- [Lucent Technologies Soft Modem / LucentSoftModem][Running/Manual Start]
- <System32\DRIVERS\LTSM.sys><Lucent Technologies>
- [mdrimerb / mdrimerb][Stopped/Boot Start]
- <\SystemRoot\\SystemRoot\System32\drivers\mdrimerb.sys><N/A>
- [NaiAvFilter1 / NaiAvFilter1][Stopped/Manual Start]
- <system32\drivers\naiavf5x.sys><N/A>
- [NaiAvTdi1 / NaiAvTdi1][Stopped/System Start]
- <system32\drivers\mvstdi5x.sys><N/A>
- [New0 / New0][Stopped/Auto Start]
- <\??\C:\WINDOWS\System32\new.sys><N/A>
- [npkcrypt / npkcrypt][Stopped/Auto Start]
- <\??\E:\Program Files\Tencent\QQ\npkcrypt.sys><N/A>
- [npkycryp / npkycryp][Stopped/Manual Start]
- <\??\D:\Program Files\Tencent\QQ\npkycryp.sys><N/A>
- [NPPTNT2 / NPPTNT2][Stopped/Manual Start]
- <\??\C:\WINDOWS\system32\npptNT2.sys><INCA Internet Co., Ltd.>
- [Direct Parallel Link Driver / Ptilink][Running/Manual Start]
- <System32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
- [Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Running/Manual Start]
- <System32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
- [Secdrv / Secdrv][Running/Auto Start]
- <System32\DRIVERS\secdrv.sys><N/A>
- [SiS315 / SiS315][Running/Manual Start]
- <System32\DRIVERS\sisgrp.sys><Silicon Integrated Systems Corporation>
- [SiS AGP Filter / sisagp][Running/Boot Start]
- <\SystemRoot\System32\DRIVERS\sisagp.sys><Silicon Integrated Systems Corporation>
- [SiSkp / SiSkp][Running/System Start]
- <system32\drivers\srvkp.sys><N/A>
- [Sony Digital Imaging Video2 / sonypvs1][Stopped/Manual Start]
- <system32\DRIVERS\sonypvs1.sys><N/A>
- [Sony USB Filter Driver (SONYPVU1) / SONYPVU1][Stopped/Manual Start]
- <system32\DRIVERS\SONYPVU1.SYS><Sony Corporation>
- [SPBBCDrv / SPBBCDrv][Stopped/Manual Start]
- <\??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys><Symantec Corporation>
- [Synaptics TouchPad Driver / SynTP][Running/Manual Start]
- <System32\DRIVERS\SynTP.sys><Synaptics, Inc.>
- [TCP/IP Protocol Driver / Tcpip][Running/System Start]
- <System32\DRIVERS\tcpip.sys><Microsoft Corporation>
- [TSP / TSP][Stopped/Manual Start]
- <\??\C:\WINDOWS\system32\drivers\klif.sys><Kaspersky Lab>
- [Bluetooth VComm Manager Service / VcommMgr][Running/Manual Start]
- <System32\Drivers\VcommMgr.sys><IVT Corporation>
- [World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]
- <system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>
- [xwyutwl / xwyutwl][Stopped/Boot Start]
- <\SystemRoot\system32\drivers\xwyutwl.sys><N/A>
- ==================================
- 浏览器加载项
- [信息检索(&R)]
- {92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, Microsoft Corporation>
- [FlashGet]
- {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} <, N/A>
- [Messenger]
- {FB5F1910-F110-11d2-BB9E-00C04F795683} <, N/A>
- [MMCPlayer Class]
- {05C1004E-2596-48E5-8E26-39362985EEB9} <C:\WINDOWS\Downloaded Program Files\MMCShell.dll, Sohu.com Inc.>
- [Office Genuine Advantage Validation Tool]
- {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} <C:\WINDOWS\system32\OGACheckControl.DLL, N/A>
- [Office Update Installation Engine]
- {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} <C:\WINDOWS\opuc.dll, Microsoft Corporation>
- [WUWebControl Class]
- {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, Microsoft Corporation>
- [IEDown Class]
- {99888952-AC62-437C-AFC6-7B5CF05A7F2F} <C:\WINDOWS\System32\GLIEDown.dll, N/A>
- [WebActivater Control]
- {C661F36D-DF85-4EF4-83C7-E107B83D04B1} <C:\WINDOWS\system32\3DShowVM.ocx, QQ>
- [Office Update Installation Engine]
- {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} <C:\WINDOWS\opuc.dll, Microsoft Corporation>
- [Shockwave Flash Object]
- {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash9b.ocx, Adobe Systems, Inc.>
- [CPasswordEditCtrl Object]
- {E787FD25-8D7C-4693-AE67-9406BC6E22DF} <C:\WINDOWS\system32\qqedit\qqedit.dll, N/A>
- [Thunder Browser Helper]
- {39F7E361-828A-4B5A-BCAF-5B79BFDFEA60} <d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_007.dll, N/A>
- []
- {7F9FBFAD-C171-4B2B-AC7E-1EA1119C938D} <C:\DOCUME~1\ALLUSE~1\APPLIC~1\MICROS~1\APPLIC~1\IE_Help.dll, N/A>
- [Thunder Browser Helper]
- {889D2FEB-5411-4565-8998-1DD2C5261283} <d:\Program Files\Thunder Network\Thunder\ComDlls\XunLeiBHO_007.dll, N/A>
- ==================================
- 正在运行的进程
- [PID: 560][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 676][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 700][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 748][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 760][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 904][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 964][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 1048][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\System32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5243.0 (vbl_ux_partners_ie.051011-1845)]
- [PID: 1108][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\System32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 1184][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\System32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5243.0 (vbl_ux_partners_ie.051011-1845)]
- [PID: 1328][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
- [C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 1448][C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe] [Microsoft Corporation, 7.10.3077]
- [C:\Program Files\Common Files\Microsoft Shared\VS7Debug\2052\mdmui.dll] [Microsoft Corporation, 7.10.3077]
- [C:\Program Files\Common Files\Microsoft Shared\VS7Debug\csm.dll] [Microsoft Corporation, 7.10.3077]
- [C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
- [C:\Program Files\Common Files\Microsoft Shared\VS7Debug\msdbg2.dll] [Microsoft Corporation, 7.10.3077]
- [PID: 1532][C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe] [Symantec Corporation, 3.1.0.99]
- [C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
- [C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 1880][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5243.0 (vbl_ux_partners_ie.051011-1845)]
- [C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 6.7.2 22Jul02]
- [C:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
- [C:\Program Files\EzButton VE 2.14\KeyHook.dll] [, 1, 0, 0, 1]
- [PID: 1996][C:\WINDOWS\system32\wscntfy.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 2032][C:\WINDOWS\System32\khooker.exe] [Silicon Integrated Systems Corporation, 0.0.0.2098]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 2040][C:\WINDOWS\SOUNDMAN.EXE] [Avance Logic, Inc., 5.0.03]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 136][C:\Program Files\Synaptics\SynTP\SynTPLpr.exe] [Synaptics, Inc., 6.7.2 22Jul02]
- [C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 6.7.2 22Jul02]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 160][C:\Program Files\Synaptics\SynTP\SynTPEnh.exe] [Synaptics, Inc., 6.7.2 22Jul02]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\SynTPAPI.dll] [Synaptics, Inc., 6.7.2 22Jul02]
- [C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 6.7.2 22Jul02]
- [PID: 140][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\System32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [PID: 196][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 6.7.2 22Jul02]
- [PID: 308][C:\Program Files\EzButton VE 2.14\EzButton.exe] [, 2.0]
- [C:\Program Files\EzButton VE 2.14\KeyHook.dll] [, 1, 0, 0, 1]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 6.7.2 22Jul02]
- [PID: 1716][C:\WINDOWS\system32\conime.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 6.7.2 22Jul02]
- [PID: 844][C:\Documents and Settings\user\桌面\专杀工具\sreng2\SREng.EXE] [Smallfrogs Studio, 2.3.13.690]
- [C:\WINDOWS\system32\uxtheme.dll] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
- [C:\WINDOWS\system32\SynTPFcs.dll] [Synaptics, Inc., 6.7.2 22Jul02]
- [C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5243.0 (vbl_ux_partners_ie.051011-1845)]
- ==================================
- 文件关联
- .TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
- .EXE OK. ["%1" %*]
- .COM OK. ["%1" %*]
- .PIF OK. ["%1" %*]
- .REG OK. [regedit.exe "%1"]
- .BAT OK. ["%1" %*]
- .SCR OK. ["%1" /S]
- .CHM OK. ["C:\WINDOWS\hh.exe" %1]
- .HLP OK. [%SystemRoot%\system32\winhlp32.exe %1]
- .INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
- .INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
- .VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
- .JS Error. []
- .LNK OK. [{00021401-0000-0000-C000-000000000046}]
- ==================================
- Winsock 提供者
- N/A
- ==================================
- Autorun.inf
- N/A
- ==================================
- HOSTS 文件
- 127.0.0.1 localhost
- ==================================
- API HOOK
- 警告!System Repair Engineer 提醒
- 你下面的函数内容与预期值不符,他
- 们可能被一些恶意的软件所修改:
- RVA 错误: LoadLibraryA
- RVA 错误: LoadLibraryExA
- RVA 错误: LoadLibraryExW
- RVA 错误: LoadLibraryW
- ==================================
复制代码 |