-------------------------------------------------------------------------------
HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute
KvNative.exe
File not found: KvNative.exe
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
360rpt.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
360Safe.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
360tray.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
adam.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
AgentSvr.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
AppSvc32.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
autoruns.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
avgrssvc.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
AvMonitor.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
avp.com
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
avp.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
CCenter.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
ccSvcHst.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
FileDsty.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
FTCleanerShell.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
HijackThis.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
IceSword.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
iparmo.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
Iparmor.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
isPwdSvc.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
kabaload.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KaScrScn.SCR
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KASMain.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KASTask.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KAV32.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KAVDX.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KAVPFW.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KAVSetup.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KAVStart.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KISLnchr.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KMailMon.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KMFilter.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KPFW32.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KPFW32X.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KPFWSvc.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KRegEx.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
krepair.COM
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KsLoader.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KVCenter.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KvDetect.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KvfwMcl.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KVMonXP.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KVMonXP_1.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
kvol.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
kvolself.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KvReport.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KVScan.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KVSrvXP.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KVStub.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
kvupload.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
kvwsc.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KvXP.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KvXP_1.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KWatch.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KWatch9x.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
KWatchX.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
loaddll.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
MagicSet.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
mcconsol.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
mmqczj.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
mmsk.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
NAVSetup.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
nod32krn.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
nod32kui.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
PFW.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
PFWLiveUpdate.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
QHSET.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
Ras.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
Rav.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
RavMon.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
RavMonD.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
RavStub.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
RavTask.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
RegClean.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
rfwcfg.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
RfwMain.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
rfwProxy.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
rfwsrv.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
RsAgent.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
Rsaupd.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
runiep.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
safelive.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
scan32.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
shcfg32.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
SmartUp.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
SREng.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
symlcsvc.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
SysSafe.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
TrojanDetector.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
Trojanwall.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
TrojDie.kxp
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
UIHost.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
UmxAgent.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
UmxAttachment.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
UmxCfg.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
UmxFwHlp.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
UmxPol.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
UpLive.EXE.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
WoptiClean.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
zxsweep.exe
c:\program files\common files\microsoft shared\msinfo\8337efe5.dat
HKLM\System\CurrentControlSet\Services
ACA
c:\windows\system32\drivers\aca.sys
Belcarra USBLAN
Windows USBLAN Host Driver
(Not verified) Belcarra Technologies
c:\windows\system32\drivers\btblan.sys
istar
iSTAR
(Not verified) UUDynamics Inc.
c:\windows\system32\drivers\istar.sys
NPF
npf.sys (NT5/6 x86) Kernel Driver
(Verified) CACE TECHNOLOGIES, LLC
c:\windows\system32\drivers\npf.sys
npkcrypt
nProtect KeyCrypt Driver
(Not verified) INCA Internet Co., Ltd.
d:\program files\tencent\qq\npkcrypt.sys
PCA
c:\windows\system32\drivers\pca.sys
Sniffer
SNIFFER Protocol Driver
(Not verified) Network General
c:\windows\system32\drivers\sniffer.sys
tap0801
TAP-Win32 Virtual Network Driver
(Not verified) The OpenVPN Project
c:\windows\system32\drivers\tap0801.sys
Tcpip
TCP/IP Protocol Driver
(Not verified) Microsoft Corporation
c:\windows\system32\drivers\tcpip.sys
UUAPPSDR
UUApp Redirector
(Not verified) Windows (R) 2000 DDK provider
c:\windows\system32\drivers\uuappsdr.sys
UUTdiRdr
UURedirect
(Not verified) UUDynamics
c:\windows\system32\drivers\uutdirdr.sys
ZSMC301b
Video streaming and Capture Device Driver
(Not verified) VM
c:\windows\system32\drivers\usbvm31b.sys
HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors
Microsoft Document Imaging Writer Monitor
Microsoft? Document Imaging
(Not verified) Microsoft Corporation
c:\windows\system32\mdimon.dll
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
StormCodec_Helper
d:\program files\ringz studio\storm codec\stormset.exe
UUTOKEN
UUToken Application
c:\windows\system32\uutoken.exe
NeroFilterCheck
NeroCheck
(Not verified) Ahead Software Gmbh
c:\windows\system32\nerocheck.exe
SunJavaUpdateSched
Java(TM) 2 Platform Standard Edition binary
(Not verified) Sun Microsystems, Inc.
c:\program files\java\jre1.5.0_10\bin\jusched.exe
HKLM\SOFTWARE\Classes\Protocols\Filter
application/octet-stream
Microsoft .NET Runtime Execution Engine
(Not verified) Microsoft Corporation
c:\windows\system32\mscoree.dll
application/x-complus
Microsoft .NET Runtime Execution Engine
(Not verified) Microsoft Corporation
c:\windows\system32\mscoree.dll
application/x-msdownload
Microsoft .NET Runtime Execution Engine
(Not verified) Microsoft Corporation
c:\windows\system32\mscoree.dll
HKLM\SOFTWARE\Classes\Protocols\Handler
msnim
MSN Messenger 协议处理程序
(Not verified) Microsoft Corporation
c:\program files\msn messenger\msgrapp.dll
HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
n/a
Microsoft .NET IE SECURITY REGISTRATION
(Not verified) Microsoft Corporation
c:\windows\system32\mscories.dll
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
SolarWinds Toolbar
SolarWinds Network Toolbar
(Verified) SolarWinds.Net
d:\program files\solarwinds\broadband engineers edition\solarwinds-
toolbar.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
Thunder Browser Helper
XunLeiBHO
(Not verified) Thunder Networking Technologies,LTD
d:\program files\thunder network\thunder\comdlls\xunleibho_007.dll
SSVHelper Class
Java(TM) 2 Platform Standard Edition binary
(Verified) Sun Microsystems, Inc.
c:\program files\java\jre1.5.0_10\bin\ssv.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
8337efe5.dll
c:\program files\common files\microsoft shared\msinfo\8337efe5.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Fusion Cache
Microsoft .NET Runtime Execution Engine
(Not verified) Microsoft Corporation
c:\windows\system32\mscoree.dll
WinRAR shell extension
d:\program files\winrar\rarext.dll
ShellLink for Application References
Application Deployment Support Library
(Not verified) Microsoft Corporation
c:\windows\system32\dfshim.dll
Shell Icon Handler for Application References
Application Deployment Support Library
(Not verified) Microsoft Corporation
c:\windows\system32\dfshim.dll
HKLM\Software\Microsoft\Internet Explorer\Extensions
启动迅雷5
(Not verified) Thunder Networking Technologies,LTD
d:\program files\thunder network\thunder\thunder.exe