acadproc.dllacadproc.dll
正在运行的进程
[PID:616][\SystemRoot\System32\smss.exe][MicrosoftCorporation,5.1.2600.2180
(xpsp_sp2_rtm.040803-2158)]
[PID:672][\??\C:\WINDOWS\system32\csrss.exe][MicrosoftCorporation,5.1.2600.2180
(xpsp_sp2_rtm.040803-2158)]
[PID:696][\??\C:\WINDOWS\system32\winlogon.exe][MicrosoftCorporation,5.1.2600.2180
(xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\SYNCOR11.DLL][SoundMAX,1.2.2]
[C:\WINDOWS\system32\Ati2evxx.dll][ATITechnologiesInc.,6.14.10.4162]
[C:\WINDOWS\system32\msacm32.drv][MicrosoftCorporation,5.1.2600.0(xpclient.010817-
1148)]
[C:\ProgramFiles\Micropoint\mp110031.dll][MicropointCorporation,1.2.10033]
[PID:740][C:\WINDOWS\system32\services.exe][MicrosoftCorporation,5.1.2600.2180
(xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\AppPatch\AcAdProc.dll][MicrosoftCorporation,5.1.2600.3008(xpsp.061004-
0027)]
[PID:752][C:\WINDOWS\system32\lsass.exe][MicrosoftCorporation,5.1.2600.2180
(xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\SYNCOR11.DLL][SoundMAX,1.2.2]
[PID:528][C:\WINDOWS\Explorer.EXE][MicrosoftCorporation,6.00.2900.2180
(xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\Normaliz.dll][MicrosoftCorporation,6.0.5441.0(winmain
(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll][MicrosoftCorporation,7.00.6000.16441
(vista_gdr.070219-1500)]
[C:\WINDOWS\system32\SYNCOR11.DLL][SoundMAX,1.2.2]
[C:\WINDOWS\system32\ieframe.dll][MicrosoftCorporation,7.00.6000.16441
(vista_gdr.070219-1500)]
[C:\WINDOWS\system32\WPDShServiceObj.dll][MicrosoftCorporation,5.2.5721.5145
(WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceTypes.dll][MicrosoftCorporation,5.2.5721.5145
(WMP_11.061018-2006)]
[C:\WINDOWS\system32\PortableDeviceApi.dll][MicrosoftCorporation,5.2.5721.5145
(WMP_11.061018-2006)]
[C:\WINDOWS\system32\msacm32.drv][MicrosoftCorporation,5.1.2600.0(xpclient.010817-
1148)]
[C:\ProgramFiles\Thunder\ComDlls\xunleiBHO_Now.dll][ThunderNetworking
Technologies,LTD,5,0,2,17]
[C:\ProgramFiles\Adobe\Acrobat7.0\ActiveX\PDFShell.dll][AdobeSystems,Inc.,7.0.0.0]
[C:\ProgramFiles\FastCopy\fastext1.dll][SHIROUZUHiroaki,1,3,0,0]
[C:\WINDOWS\system32\nvcpl.dll][NVIDIACorporation,6.14.10.9371]
[C:\WINDOWS\system32\NVRSZHC.DLL][NVIDIACorporation,6.14.10.9371]
[C:\WINDOWS\system32\nvshell.dll][,]
[C:\WINDOWS\system32\nvapi.dll][N/A,]
[C:\ProgramFiles\Micropoint\mp110031.dll][MicropointCorporation,1.2.10033]
[C:\ProgramFiles\MicrosoftOffice\OFFICE11\msohev.dll][MicrosoftCorporation,
11.0.5510]
[PID:904][c:\programfiles\rising\rfw\RfwMain.exe][BeijingRisingTechnologyCo.,Ltd.,5,
0,0,70]
[c:\programfiles\rising\rfw\RsGuiLib.dll][BeijingRisingTechnologyCo.,Ltd.,19,0,
0,33]
[C:\WINDOWS\system32\SYNCOR11.DLL][SoundMAX,1.2.2]
[c:\programfiles\rising\rfw\RSCOMMON.DLL][BeijingRisingTechnologyCo.,Ltd.,19,0,
0,5]
[c:\programfiles\rising\rfw\RfwCtrl.dll][BeijingRisingTechnologyCo.,Ltd.,5,0,0,
11]
[c:\programfiles\rising\rfw\RsXML.dll][BeijingRisingTechnologyCo.,Ltd.,19,0,0,
2]
[c:\programfiles\rising\rfw\PngDll.dll][BeijingRisingTechnologyCo.,Ltd.,18,0,0,
5]
[PID:1728][C:\WINDOWS\system32\ctfmon.exe][MicrosoftCorporation,5.1.2600.2180
(xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\SYNCOR11.DLL][SoundMAX,1.2.2]
[PID:1780][G:\software\杀毒软件\sreng2\SREng.EXE][SmallfrogsStudio,2.4.12.806]
[C:\WINDOWS\system32\Normaliz.dll][MicrosoftCorporation,6.0.5441.0(winmain
(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll][MicrosoftCorporation,7.00.6000.16441
(vista_gdr.070219-1500)]
[C:\WINDOWS\system32\SYNCOR11.DLL][SoundMAX,1.2.2]
[C:\ProgramFiles\Micropoint\mp110031.dll][MicropointCorporation,1.2.10033]
==================================
文件关联
.TXTOK.[%SystemRoot%\system32\NOTEPAD.EXE%1]
.EXEOK.["%1"%*]
.COMOK.["%1"%*]
.PIFOK.["%1"%*]
.REGOK.[regedit.exe"%1"]
.BATOK.["%1"%*]
.SCROK.["%1"/S]
.CHMOK.["C:\WINDOWS\hh.exe"%1]
.HLPOK.[%SystemRoot%\system32\winhlp32.exe%1]
.INIOK.[%SystemRoot%\system32\NOTEPAD.EXE%1]
.INFOK.[%SystemRoot%\system32\NOTEPAD.EXE%1]
.VBSOK.[%SystemRoot%\System32\WScript.exe"%1"%*]
.JSOK.[%SystemRoot%\System32\WScript.exe"%1"%*]
.LNKOK.[{00021401-0000-0000-C000-000000000046}]
==================================
Winsock提供者
N/A
==================================
Autorun.inf
N/A
==================================
HOSTS文件
127.0.0.1localhost
127.0.0.1u.ete.cn
127.0.0.1vnet.cn
127.0.0.1114.vnet.cn
127.0.0.1adv.xaonline.com
127.0.0.1auto.search.msn.com
127.0.0.1keyword.vnet.cn
127.0.0.1news.114.vnet.cn
==================================
APIHOOK
N/A
==================================
隐藏进程
N/A
==================================
高手来抢分吧,呵呵
本文来自电脑杂谈,转载请注明本文网址:
http://www.pc-fly.com/a/ruanjian/article-52043-1.html
小男神太棒了爱你