==================================
正在运行的进程
[PID: 348][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[PID: 404][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[PID: 684][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[PID: 728][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[PID: 740][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[PID: 952][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[PID: 1052][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[PID: 1148][C:\WINDOWS\system32\msdtc.exe] [Microsoft Corporation, 2001.12.4720.0 (srv03_rtm.030324-2048)]
[PID: 1232][C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe] [Anti-Malware Development a.s., 7, 5, 0, 47]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\engine.dll] [Anti-Malware Development a.s., 4, 2, 0, 15]
[PID: 1260][C:\Program Files\Network Associates\Common Framework\FrameworkService.exe] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\nailog.dll] [Network Associates, Inc., 3.5.0.474]
[C:\Program Files\Network Associates\Common Framework\naXML.dll] [Network Associates, Inc., 3.5.0.474]
[C:\Program Files\Network Associates\Common Framework\naCmnLib.dll] [Network Associates, Inc., 3.5.0.474]
[C:\Program Files\Network Associates\Common Framework\applib.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\0804\AgentRes.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\Logging.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\InternetManager.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\naInet.dll] [Network Associates, Inc., 3.5.0.474]
[C:\Program Files\Network Associates\Common Framework\UserSpace.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\SecureFrameworkFactory.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\Management.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\cmalib.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\naPolicyManager.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\ScriptSubSys.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\UpdateSubSys.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\Scheduler.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\TCSubSys.dll] [Network Associates, Inc., 3.5.0.412]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[PID: 1304][C:\Program Files\Network Associates\VirusScan\Mcshield.exe] [McAfee, Inc., 8.0.0.336]
[C:\Program Files\Network Associates\VirusScan\Res04\McShield.DLL] [Network Associates, Inc., 8.0.0.251]
[C:\Program Files\Network Associates\VirusScan\FTL.Dll] [Network Associates, Inc., 8.0.0.135]
[C:\Program Files\Network Associates\VirusScan\naiann.dll] [Network Associates, Inc., 8.0.0.308]
[C:\Program Files\Network Associates\VirusScan\mytilus.dll] [McAfee, Inc., 8.0.0.337]
[C:\Program Files\Network Associates\Common Framework\GenEvtInf.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\VirusScan\NaEventU.DLL] [Network Associates, Inc., 8.0.0.356]
[C:\Program Files\Network Associates\VirusScan\Res04\naEvtRes.dll] [Network Associates, Inc., 8.0.0.342]
[C:\Program Files\Network Associates\VirusScan\VSIDSvr.dll] [Network Associates, Inc., 8.0.0.291]
[C:\Program Files\Common Files\Network Associates\Engine\MCSCAN32.DLL] [McAfee, Inc., 5.1.00]
[C:\Program Files\Network Associates\Common Framework\SecureFrameworkFactory.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\VirusScan\EntSrv.Dll] [McAfee, Inc, 8.0.0.453]
[PID: 1372][C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe] [Network Associates, Inc., 8.0.0.1004]
[C:\Program Files\Network Associates\VirusScan\SHUTIL.dll] [McAfee, Inc., 8.0.0.1036]
[C:\Program Files\Network Associates\VirusScan\naiwmain.dll] [Network Associates, Inc., 8.0.0.912]
[C:\Program Files\Network Associates\VirusScan\naicondl.dll] [Network Associates, Inc., 8.0.0.912]
[C:\Program Files\Network Associates\VirusScan\RES04\VsTskMgr.dll] [Network Associates, Inc., 8.0.0.912]
[C:\Program Files\Network Associates\VirusScan\MIDUtil.Dll] [McAfee, Inc., 8.0.0.155]
[PID: 1416][C:\PROGRA~1\NETWOR~1\COMMON~1\naPrdMgr.exe] [Network Associates, Inc., 3.5.0.412]
[C:\PROGRA~1\NETWOR~1\COMMON~1\nailog.dll] [Network Associates, Inc., 3.5.0.474]
[C:\PROGRA~1\NETWOR~1\COMMON~1\naCmnLib.dll] [Network Associates, Inc., 3.5.0.474]
[C:\PROGRA~1\NETWOR~1\COMMON~1\naXML.dll] [Network Associates, Inc., 3.5.0.474]
[C:\PROGRA~1\NETWOR~1\COMMON~1\0804\AgentRes.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\VirusScan\VsPlugin.dll] [McAfee, Inc., 8.0.0.1039]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[PID: 1516][C:\WINDOWS\system32\nvsvc32.exe] [NVIDIA Corporation, 6.14.10.4532]
[PID: 1684][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.3790.0 (srv03_rtm.030324-2048)]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll] [Anti-Malware Development a.s., 7, 5, 0, 47]
[C:\Program Files\Network Associates\VirusScan\scriptproxy.dll] [Network Associates, Inc., 8.0.0.1012]
[C:\Program Files\Network Associates\VirusScan\mytilus.dll] [McAfee, Inc., 8.0.0.337]
[C:\Program Files\Network Associates\VirusScan\Res04\McShield.dll] [Network Associates, Inc., 8.0.0.251]
[C:\Program Files\Common Files\Network Associates\Engine\mcscan32.dll] [McAfee, Inc., 5.1.00]
[C:\WINDOWS\system32\Macromed\Flash\Flash9c.ocx] [Adobe Systems, Inc., 9,0,45,0]
[PID: 1768][C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\nailog.dll] [Network Associates, Inc., 3.5.0.474]
[C:\Program Files\Network Associates\Common Framework\naCmnLib.dll] [Network Associates, Inc., 3.5.0.474]
[C:\Program Files\Network Associates\Common Framework\naXML.dll] [Network Associates, Inc., 3.5.0.474]
[C:\Program Files\Network Associates\Common Framework\0804\UpdRes.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\0804\AgentRes.dll] [Network Associates, Inc., 3.5.0.412]
[C:\Program Files\Network Associates\Common Framework\SecureFrameworkFactory.dll] [Network Associates, Inc., 3.5.0.412]
[PID: 1776][D:\MagicSet\DS.EXE] [Super Rabbit Software, 1.50]
[PID: 1784][D:\MagicSet\MemDef.exe] [, 4.0.0.0]
[PID: 1804][C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE] [McAfee, Inc., 8.0.0.1040]
[C:\Program Files\Network Associates\VirusScan\SHUTIL.dll] [McAfee, Inc., 8.0.0.1036]
[C:\Program Files\Network Associates\VirusScan\naiwmain.dll] [Network Associates, Inc., 8.0.0.912]
[C:\Program Files\Network Associates\VirusScan\RES04\shstat.dll] [Network Associates, Inc., 8.0.0.912]
[C:\Program Files\Network Associates\VirusScan\RES04\Product.dll] [Network Associates, Inc., 8.0.0.912]
[C:\Program Files\Network Associates\VirusScan\RES04\McShield.dll] [Network Associates, Inc., 8.0.0.251]
[C:\Program Files\Network Associates\VirusScan\RES04\Shutilrc.dll] [Network Associates, Inc., 8.0.0.912]
[C:\Program Files\Network Associates\VirusScan\Graphics.dll] [Network Associates, Inc., 8.0.0.912]
[PID: 1824][C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe] [Network Associates, Inc., 2.0.275.0]
[PID: 1864][C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe] [Anti-Malware Development a.s., 7, 5, 0, 50]
[C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\engine.dll] [Anti-Malware Development a.s., 4, 2, 0, 15]
[PID: 1904][C:\Program Files\Kav6(USB)\Kav6(USB)\Kav6(USB)\AVP6\avp.exe] [Kaspersky Lab, 6.0.0.299]
[C:\Program Files\Kav6(USB)\Kav6(USB)\Kav6(USB)\AVP6\pr_remote.dll] [Kaspersky Lab, 6.0.0.299]
[C:\Program Files\Kav6(USB)\Kav6(USB)\Kav6(USB)\AVP6\FSSync.dll] [Kaspersky Lab, 6.0.5.0]
[C:\Program Files\Kav6(USB)\Kav6(USB)\Kav6(USB)\AVP6\AVPGS.PPL] [Kaspersky Lab, 6.0.0.299]
[C:\Program Files\Kav6(USB)\Kav6(USB)\Kav6(USB)\AVP6\prloader.dll] [Kaspersky Lab, 6.0.0.299]
[C:\Program Files\Kav6(USB)\Kav6(USB)\Kav6(USB)\AVP6\prkernel.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\pxstub.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\params.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\winreg.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\tm.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\nfio.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\fsdrvplgn.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\bl.ppl] [Kaspersky Lab, 6.0.0.300]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\wmihlpr.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\ndetect.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\crpthlpr.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\schedule.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\timer.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\thpimpl.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\lic60.ppl] [Kaspersky Lab, 6.0.0.300]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\report.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\hashmd5.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\avs.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\avpmgr.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\wdiskio.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\avlib.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\avspm.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\avp3info.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\avpgui.ppl] [Kaspersky Lab, 6.0.0.300]
[C:\Program Files\Kav6(USB)\Kav6(USB)\Kav6(USB)\AVP6\basegui.dll] [Kaspersky Lab, 6.0.0.300]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\qb.ppl] [Kaspersky Lab, 6.0.0.299]
[c:\program files\kav6(usb)\kav6(usb)\kav6(usb)\avp6\prutil.ppl] [Kaspersky Lab, 6.0.0.299]
[PID: 1912][C:\WINDOWS\system32\internat.exe] [Microsoft Corporation, 5.00.2920.0000]
[PID: 576][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.3790.0 (srv03_rtm.030324-2048)]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[C:\Program Files\Network Associates\VirusScan\scriptproxy.dll] [Network Associates, Inc., 8.0.0.1012]
[C:\Program Files\Network Associates\VirusScan\mytilus.dll] [McAfee, Inc., 8.0.0.337]
[C:\Program Files\Network Associates\VirusScan\Res04\McShield.dll] [Network Associates, Inc., 8.0.0.251]
[C:\Program Files\Common Files\Network Associates\Engine\mcscan32.dll] [McAfee, Inc., 5.1.00]
[C:\WINDOWS\system32\Macromed\Flash\Flash9c.ocx] [Adobe Systems, Inc., 9,0,45,0]
[PID: 1040][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[PID: 732][C:\WINDOWS\system32\wbem\wmiprvse.exe] [Microsoft Corporation, 5.2.3790.0 (srv03_rtm.030324-2048)]
[PID: 2752][C:\Program Files\Internet Explorer\IEXPLORE.EXE] [Microsoft Corporation, 6.00.3790.0 (srv03_rtm.030324-2048)]
[C:\WINDOWS\system32\EntApi.dll] [McAfee, Inc, 8.0.0.453]
[C:\Program Files\Network Associates\VirusScan\scriptproxy.dll] [Network Associates, Inc., 8.0.0.1012]
[C:\Program Files\Network Associates\VirusScan\mytilus.dll] [McAfee, Inc., 8.0.0.337]
[C:\Program Files\Network Associates\VirusScan\Res04\McShield.dll] [Network Associates, Inc., 8.0.0.251]
[C:\Program Files\Common Files\Network Associates\Engine\mcscan32.dll] [McAfee, Inc., 5.1.00]
[C:\WINDOWS\system32\Macromed\Flash\Flash9c.ocx] [Adobe Systems, Inc., 9,0,45,0]
[PID: 2916][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.193\SREng.EXE] [Smallfrogs Studio, 2.3.13.690]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.193\Plugins\SRECXTMG.SRE] [Smallfrogs Studio, 1, 5, 0, 55]
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}] |