ver 1.1
Windows XP
注册表启动信息
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
360Safetray "E:\360\360safe\safemon\360Tray.exe" /start
StormStartup C:\Program Files\StormII\Stormtray.exe /Start
360Safebox "E:\360\360Safebox\SafeBoxTray.exe" /r
NvCplDaemon RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
===========================================
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
ctfmon.exe C:\WINDOWS\system32\ctfmon.exe
360sd "E:\360\360sd\360sd.exe" /autorun
===========================================
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
DebugOptions 2048
Documents
DosPrint no
NetMessage no
NullPort None
Programs com exe bat pif cmd
===========================================
系统进程列表
映像名称 PID
F:\装机必备\事实看\ProcessInfo.exe 0
System 4
SMSS.EXE 680
CSRSS.EXE 740
WINLOGON.EXE 764
SERVICES.EXE 808
LSASS.EXE 836
SVCHOST.EXE 976
SVCHOST.EXE 1036
SVCHOST.EXE 1132
SVCHOST.EXE 1252
SVCHOST.EXE 1296
ZhuDongFangYu.exe 1328
SPOOLSV.EXE 1520
C:\WINDOWS\Explorer.EXE 1708
E:\360\360safe\safemon\360Tray.exe 1840
E:\360\360Safebox\SafeBoxTray.exe 1892
C:\WINDOWS\system32\ctfmon.exe 1904
E:\360\360sd\360sd.exe 2036
nvsvc32.exe 1916
alg.exe 2264
360rp.exe 3140
C:\Program Files\360\360se3\360SE.exe 200
C:\Program Files\360\360se3\Extensions\SafeCentral\urlproc.exe 2852
C:\Documents and Settings\Administrator\Application Data\360se\extensions\ExtWebmail\360WebMail.exe 1748
C:\Program Files\360\360se3\360se.exe 3112
F:\梦幻\梦幻西游\my.exe 1404
F:\装机必备\事实看\ProcessInfo.exe 1464
===========================================
梦幻西游进程信息
1404 my.exe
地址 长度 模块路径 模块描述 公司 版本
4194304 401408 F:\梦幻\梦幻西游\my.exe 梦幻西游 Netease 2, 0, 0, 27
2089943040 614400 C:\WINDOWS\system32\ntdll.dll NT Layer DLL Microsoft Corporation 5.1.2600.6007
2088763392 1171456 C:\WINDOWS\system32\kernel32.dll Windows NT BASE API Client DLL Microsoft Corporation 5.1.2600.5781
1906442240 94208 C:\WINDOWS\system32\WS2_32.dll Windows Socket 2.0 32-Bit DLL Microsoft Corporation 5.1.2600.5512
2010775552 692224 C:\WINDOWS\system32\ADVAPI32.dll Advanced Windows 32 Base API Microsoft Corporation 5.1.2600.5755
2011496448 602112 C:\WINDOWS\system32\RPCRT4.dll Remote Procedure Call Runtime Microsoft Corporation 5.1.2600.6022
2013003776 69632 C:\WINDOWS\system32\Secur32.dll Security Support Provider Interface Microsoft Corporation 5.1.2600.5834
2008940544 360448 C:\WINDOWS\system32\msvcrt.dll Windows NT CRT DLL Microsoft Corporation 7.0.2600.5512
1906376704 32768 C:\WINDOWS\system32\WS2HELP.dll Windows Socket 2.0 Helper for Windows NT Microsoft Corporation 5.1.2600.5512
2010185728 589824 C:\WINDOWS\system32\USER32.dll Windows XP USER API Client DLL Microsoft Corporation 5.1.2600.5512
2012151808 299008 C:\WINDOWS\system32\GDI32.dll GDI Client DLL Microsoft Corporation 5.1.2600.5698
2102984704 8339456 C:\WINDOWS\system32\SHELL32.dll Windows Shell Common Dll Microsoft Corporation 6.00.2900.6018
2012479488 483328 C:\WINDOWS\system32\SHLWAPI.dll Shell Light-weight Utility Library Microsoft Corporation 6.00.2900.5912
1982857216 118784 C:\WINDOWS\system32\IMM32.DLL Windows XP IMM32 API Client DLL Microsoft Corporation 5.1.2600.5512
1656881152 36864 C:\WINDOWS\system32\LPK.DLL Language Pack Microsoft Corporation 5.1.2600.5512
1945763840 438272 C:\WINDOWS\system32\USP10.dll Uniscribe Unicode script processor Microsoft Corporation 1.0420.2600.5969
1998061568 1060864 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll User Experience Controls Library Microsoft Corporation 6.00.2900.6028
1561788416 630784 C:\WINDOWS\system32\comctl32.dll Common Controls Library Microsoft Corporation 6.00.2900.6028
1524367360 225280 C:\WINDOWS\system32\uxtheme.dll Microsoft UxTheme Library Microsoft Corporation 6.00.2900.5512
10747904 507904 E:\360\360safe\safemon\safemon.dll 360安全卫士 网盾防护模块 |