<?xml version="1.0" encoding="gb2312"?>
<rss version="2.0">
<channel>
<title><![CDATA[凝逸实验室.凝逸反毒(英特尔软件合作伙伴计划的认证会员 授权使用英特尔标识]]></title>
        <image>
        <title>http://hi.baidu.com</title>
        <link>http://hi.baidu.com</link>
        <url>http://img.baidu.com/img/logo-hi.gif</url>
        </image>
<description><![CDATA[无论代价多大,我们的天赋要作某种事情的!]]></description>
<link>http://hi.baidu.com/503165656</link>
<language>zh-cn</language>
<generator>www.baidu.com</generator>
<ttl>5</ttl>


<item>
        <title><![CDATA[凝逸反毒.修复downloader(爱情后门)感染]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/46ca394c82056df3d72afc2c.html]]></link>
        <description><![CDATA[
		
		<p>凝逸反毒.修复downloader(爱情后门)感染</p>
<p><br>
感染引擎: 修复Win32.HLLP.Dzan<br>
引擎作者: 凝逸<br>
开发周期: 1小时(2009-11-16 13:00)<br>
样本提供: 転生の炎  (谢谢)</p>
<p>  病毒名: downloader,爱情后门变种AN,Worm.Mail.LovGate.an,Downloader,win32/agent dp,蠕虫病毒<br>
&nbsp;&nbsp;&nbsp;  功能: 完美修复downloader感染的exe,有些感染后变小的exe不能修复!</p>
<p>注意:先试修复几个exe,如不能运行为新变种,请联络凝逸开发出新的修复引擎!</p>
<p>清毒方法:<br>
&nbsp;&nbsp;&nbsp;  [凝逸反毒]-&gt;[修复]-&gt;[异形感染]-&gt;[downloader]</p>
<p><br>
<a href="http://555222.net/">http://555222.net</a><br>
<a href="http://www.baobro.com/ccc">http://www.baobro.com/ccc</a> <br>
<a href="http://hi.baidu.com/503165656">http://hi.baidu.com/503165656</a><br>
2007-9000 &copy; 凝逸实验室-凝逸反毒作者:凝逸 版权所有 桂ICP备06003823号 <br>
反病毒 QQ:503165656,771263817 QQ群:31168828 <br>
 </p>
<p><br>
<span><img class="blogimg" border="0" small="0" src="http://hiphotos.baidu.com/503165656/pic/item/94e995fd4e092a3809244db4.jpg"><br>
</span><br>
<span><img class="blogimg" border="0" small="0" src="http://hiphotos.baidu.com/503165656/pic/item/dfb96410b16232d2c3ce79b5.jpg"><br>
</span></p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p>[IMG]http://www.pic-pal.com/pictures/1ffb06feb77039929bcbc68a7545abc7.jpg[/IMG]<br>
[IMG]http://www.pic-pal.com/pictures/8eb2d9c2d23f0b964291899d34592053.jpg[/IMG]</p>
<p> </p>
<p>========<br>
downloader病毒　　这种病毒是&ldquo;爱情后门变种AN（Worm.Mail.LovGate.an）&rdquo;病毒：蠕虫病毒，通过邮</p>
<p>件/局域网传播，依赖系统：WIN9X/NT/2000/XP。病毒运行后，会复制自身到每个盘的根目录，文件名为</p>
<p>&ldquo;command.com&rdquo;，然后修改&ldquo;autorun.inf&rdquo;文件，这样会大大增加病毒的运行机会。修改注册表实现随</p>
<p>系统启动，结束多种反病毒软件的运行。病毒会把自己大量拷贝到本地硬盘上，产生大量垃圾文件，严重</p>
<p>浪费硬盘空间。病毒文件名都是比较有诱惑的名字，如：CloneCD crack，Star Wars Downloader.exe，</p>
<p>Adobe Photoshop6.0.zip.exe等等。 <br>
　　downloader病毒解决办法<br>
　　操作步骤如下：<br>
　　１．当我们打开网页的时候symantec会弹出对话框，病毒名为＂downloader＂．<br>
　　２．双际病毒名，弹出对话框对话框内有病毒地址如：C:\Documents and Settings\time\Local</p>
<p>Settings\Temporary Internet Files\Content.IE5<br>
　　３．进入该目录，删除目录中所有文件，如果这个电脑没有中病毒，所有文件都可以删除掉，当中病</p>
<p>毒后有几个文件无法删除．无法删除的文件就是我们所要找的病毒．<br>
　　４．下载此软件名为&quot;Unlocker.rar&quot;<br>
　　５．删除后打开网页．该文件夹内会自动生成７－８个文件，我们再次删除所有文件．如果没有提示</p>
<p>不可删除文件提示窗口，这样我们就成功一半了．<br>
　　６．以上只是第一步，第二步，我们使用３６０卫士等清理工具，进行注册表的修复，因downloader</p>
<p>病毒会自动修改注册表内的信息．所以要进行修复．<br>
　　７．再次打开网页，进行重复刷新．没有出现symantec窗口，证明我们彻底删除了病毒．</p>
<p><br>
 </p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%B2%A1%B6%BE%B7%D6%CE%F6">病毒分析</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/46ca394c82056df3d72afc2c.html#comment">查看评论</a>]]></description>
        <pubDate>2009-11-16  16:46</pubDate>
        <category><![CDATA[病毒分析]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/46ca394c82056df3d72afc2c.html</guid>
</item>

<item>
        <title><![CDATA[[凝逸反毒-捐款救人公告]人间有情,大爱无疆,救救潍坊沈娜娜吧!]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/c6522f339f5787f21a4cff34.html]]></link>
        <description><![CDATA[
		
		<p>凝逸反毒 已贴捐款救人公告,其他软件也参于吧!<br>
<a href="http://hi.baidu.com/503165656/blog/item/c6522f339f5787f21a4cff34.html">http://hi.baidu.com/503165656/blog/item/c6522f339f5787f21a4cff34.html</a><br>
<a href="http://www.baobro.com/ccc/a/index.asp">http://www.baobro.com/ccc/a/index.asp</a><br>
凝逸:503165656</p>
<p><br>
[凝逸反毒-捐款救人公告]人间有情,大爱无疆,救救潍坊沈娜娜吧!<br>
<a href="http://tieba.baidu.com/f?kz=656573986">http://tieba.baidu.com/f?kz=656573986</a><br>
齐鲁台的《一天零一夜》报道视频 <a href="http://vod.iqilu.com/content/index/244526">http://vod.iqilu.com/content/index/244526</a></p>
<p> </p>
<p>&nbsp;&nbsp;  潍坊BBs 去看娜娜 视频&nbsp;&nbsp;  <a href="http://www.tudou.com/programs/view/-TTe5jmHAT8/">http://www.tudou.com/programs/view/-TTe5jmHAT8/</a></p>
<p> </p>
<p><a href="http://vod.iqilu.com/content/index/244526">http://vod.iqilu.com/content/index/244526</a><br>
<a href="http://vod.iqilu.com/media/swf/244526/v2541.swf">http://vod.iqilu.com/media/swf/244526/v2541.swf</a><br>
齐鲁台的《一天零一夜》报道视频</p>
<p>沈娜娜<br>
<a href="http://bbs.wfits.com/attachments/month_0910/0910171131368444bcbc575bae.jpg">http://bbs.wfits.com/attachments/month_0910/0910171131368444bcbc575bae.jpg</a><br>
诊断单<br>
<a href="http://bbs.wfits.com/attachments/month_0910/0910171121f5ed06122833ccf8.jpg.thumb.jpg">http://bbs.wfits.com/attachments/month_0910/0910171121f5ed06122833ccf8.jpg.thumb.jpg</a><br>
<a href="http://bbs.wfits.com/attachments/month_0910/0910171121f5ed06122833ccf8.jpg.thumb.jpg">http://bbs.wfits.com/attachments/month_0910/0910171121f5ed06122833ccf8.jpg.thumb.jpg</a></p>
<p> </p>
<p> </p>
<h1 >救助、关注安丘白血病女孩沈娜娜，大爱无疆 奉献爱心！</h1>
<div class="c"> </div>
<div ><blockquote class="blockquote block-img"><span class="s3"><font color="#ff6600">管理提醒: </font></span>本帖被 秦风E韵 执行置顶操作(2009-10-24) </blockquote></div>
<div class="tpc_content">
<div class="c" > </div>
<div class="f14" ><font size="4">&ldquo;我像秋天的枯叶一样失去了生命力……卖火柴的小女孩在死之前还有火柴为她点燃希望之火，但是我呢？&rdquo; <br>
&ldquo;虽然我就要走了，可我毕竟来过，我很乖。&rdquo;…… <br>
21岁的潍坊女孩沈娜娜在自己的小记事本上是这么写的。 <br>
沈娜娜乖巧懂事，聪明伶俐。可命运弄人，那个曾经笑得比花还要灿烂的她就在我们的猝不及防间病倒了，关心她的人无一不倾其所有的给她最大的帮助，可贫寒的家境让大家在面对巨额的手术费时一筹莫展。 <br>
在潍坊人民医院住院部2楼血液科16床，躺在病床上的沈娜娜面无血色，手上布满针眼，由于戴着一个大口罩，她那双眼睛显得更大，但眼窝凹陷，眼神无助。一个21岁的女孩就要开始面对死亡，面对惨白的医院，面对常人难以忍受的化疗。 <br>
沈娜娜的家在安丘市凌河镇沈家庄村，父母都是勤劳但不富裕的农民，自始至终的生活都抓襟见肘。为了抚养、教育三个孩子，在奔波与操劳中他们双双倒下了。在家里一躺就是两个月，为了不想拖累孩子，都把&ldquo;敌敌畏&rdquo;准备好了。可最终也是为了孩子，支撑着坚持了下来。 <br>
可这也使他们落下了病根，父亲腿部的肌肉严重萎缩，怕风怕凉；母亲除了高血压之外，也患上了严重的抑郁症，每天晚上都坐到深夜才能睡着。她的爷爷去年在安丘市人民医院诊断出&ldquo;胃癌晚期&rdquo;，限于年龄和家庭条件，也只能回家待着。沈娜娜时刻告诉自己：我必须要好好工作，锻炼自己，让父母和爷爷、奶奶不再为生活而忧郁，不再为无钱治疗病痛而受尽折磨。只要将来有出息，才能让家里摆脱经济上的沉重负担，让吃了一辈子苦的父母亲人能过上好日子……&nbsp;&nbsp;  <br>
可是就在今年的6月，沈娜娜因腹部肿大、痛疼，无奈去医院检查，被诊断为&ldquo;慢性粒细胞白血病&rdquo;。做了两个星期化疗后回家休养，每天靠服用&ldquo;羟基脲&rdquo;来控制病情，家人也在积极筹钱。可就在9月底的例行血液检查中发现白血病已发展到&ldquo;急变期&rdquo;。只得迅速住院，做化疗到10月12号，病情刚趋于稳定。为了活下去，就必须尽快做骨髓移植，因为最多也只有5个月的存活时间。 <br>
但是，造血干细胞移植手术所需的500000元的巨额费用又让沈娜娜一家再一次感觉到天塌了下来！更何况是前期治疗的时候已经付出的费用，就已经让一家人负债累累……&nbsp;&nbsp;  <br>
沈娜娜虽然知道家里没钱，但她的求生欲望让她不由得向最亲近的人求救，虽然她的声音很微弱，但这带给她亲人的震憾是何其之大。有一天，她紧紧抓住了姐姐和哥哥的手，求他们救救自己。就这样，三个人抱在一起哭的一塌糊涂。有哪一个人在看到自己的亲人向自己求救，而自己却无能为力时不是感到撕心裂肺的痛呢？我想这种感觉天底下的身为人父、人母、至亲都应该可以理解。&nbsp;&nbsp;  <br>
人非草木，孰能无情？？对于这个家庭，对于我们身边这样一个勇敢、坚强、善良的女孩，对于她所遭遇的不幸和他所承担的痛苦和磨难，我们除了心痛，所能做的就是仅仅提供一点经济上的援助了。也许我们献出的一点心意只是平时少吃一点零食，少上一次网的钱，但这么多人积聚起来，对于需要它的人来说，就会形成生命的延续！&nbsp;&nbsp;  <br>
潍坊电视台《潍坊新闻》栏目在10月11号已对此做了报道，目前沈娜娜一家已收到了一些热心人的捐款和心理帮助。 <br>
山东新闻网多次对沈娜娜进行了看望，但是残酷的现实必须让我们大家一起拉起关爱之手，献一份爱心，把这位花季女孩从死神那里拉回来吧！ <br>
在此，我们倡议：伸出我们大家援助之手，用青春和爱，给自己一份不一样的感动！给沈娜娜一个继续生存的希望~！！也请求好心人能够帮帮这个女孩，救救这个如花的生命。 <br>
人间有情，大爱无疆，祝天下好心人一生平安。 <br>
发起单位：山东新闻网(</font><a href="http://weifang.sdnews.com.cn/" target="_blank"><font size="4"><span style="color: #96465d">http://weifang.sdnews.com.cn/</span></font></a><font size="4"> )&nbsp;&nbsp; 山东新闻网咨询电话：0536-8257110&nbsp;&nbsp;  <br>
沈娜娜的家人电话（姐姐）&mdash;&mdash;沈玉萍 13406601389 <br>
捐助账号：中国工商银行&nbsp;&nbsp; 沈娜娜&nbsp;&nbsp; 6222104057479643 <br>
中国工商银行&nbsp;&nbsp; 沈鹏（哥哥）6222021607005749644 <br>
<br>
</font><br>
<img src="http://www.qcjd.com.cn/bbs/attachments/month_0910/0910221523d06029c22009f5f8.jpg" width="700" border="0"> <br>
<br>
<br>
<img src="http://www.qcjd.com.cn/bbs/attachments/month_0910/0910221523e90503716220e6b5.jpg" width="700" border="0"> <br>
<br>
<br>
<img src="http://www.qcjd.com.cn/bbs/attachments/month_0910/0910221523418e4044e1bba56d.jpg" width="700" border="0"> <br>
<br>
<a href="http://tieba.baidu.com/f?kz=656849947" target="_blank"><font color="#0070af">http://tieba.baidu.com/f?kz=656849947</font></a> <br>
<a href="http://weifang.sdnews.com.cn/" target="_blank"><font color="#0070af">http://weifang.sdnews.com.cn/</font></a> <br>
救助、关注安丘白血病女孩沈娜娜，大爱无疆 奉献爱心！救助沈娜娜临时QQ群 9493662 <br>
<br>
如果是潍坊市的朋友 是RH血的请到医院跟沈娜娜配型 如果配型成功将可能是永远的快乐。</div>
</div>
<p> </p>
<p> </p>
<p><br>
qq群：9493662</p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p><br>
国际最新的治疗白血病技术-半相合&ldquo;迷你&rdquo;造血干细胞移植(治疗白血病无需骨髓配型)<br>
<a href="http://hi.baidu.com/503165656/blog/item/ff54f3164bae7d1b972b43a4.html">http://hi.baidu.com/503165656/blog/item/ff54f3164bae7d1b972b43a4.html</a></p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p> </p>
<p><img border="0" src="http://ai.img1001.com/uu_0910_5/nyav_7_1_bea7b082bbd885b.jpg"></p>
<p><img border="0" src="http://ai.img1001.com/uu_0910_5/nyav_7_1_a06a282978ff464.jpg"></p>
<p><embed style="width: 450px; height: 390px" pluginspage="http://www.macromedia.com/go/getflashplayer" src="http://vod.iqilu.com/media/swf/244526/v2541.swf" width="450" height="390" type="application/x-shockwave-flash" wmode="transparent" play="true" loop="false" menu="false" allownetworking="none" allowscriptaccess="never"></embed></p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%D0%C4%C1%E9%C6%AE%B7%C9">心灵飘飞</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/c6522f339f5787f21a4cff34.html#comment">查看评论</a>]]></description>
        <pubDate>2009-10-22  15:31</pubDate>
        <category><![CDATA[心灵飘飞]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/c6522f339f5787f21a4cff34.html</guid>
</item>

<item>
        <title><![CDATA[凝逸实验室.凝逸反毒7.4-开发进度]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/5131b145ce5c243686947374.html]]></link>
        <description><![CDATA[
		
		<p>凝逸实验室.凝逸反毒</p>
<p>当前版本： 7.0<br>
软件大小： 10 MB<br>
更新时间： 2009-9-1 <br>
软件类别： 国产软件 / 杀毒软件 <br>
软件语言： 支持中文简体<br>
软件性质： 共享软件<br>
联 系 人： <a href="mailto:503165656@qq.com">503165656@qq.com</a><br>
开 发 商： 凝逸实验室<br>
应用平台： Windowns95/98/Me/NT4.0/2000/XP/2003/Vista</p>
<p> </p>
<p><br>
&nbsp;&nbsp;&nbsp;&nbsp;  凝逸实验室.凝逸反毒</p>
<p>凝逸反凝逸反毒7-凝逸浏览器-毒网测试(视频)</p>
<p>a<br>
1.系统环境: xp2 小本 cpu:1.6g 内存:1g ,ie6 ,没打补丁!没装其他杀软与防火!<br>
<br>
2.测试软件: 凝逸反毒7-凝逸浏览器<br>
3.凝逸浏览器 功能:防网页病毒!</p>
<p>测试毒网:http://zaolee.cn</p>
<p><br>
4.沙盘a1 用凝逸浏览器 上毒网<br>
沙盘a1中可以看到,没有网马生成的exe文件! --防御成功</p>
<p>5.沙盘a2 用IE上毒网 <br>
沙盘a2中可以看了有大量网马生成的exe文件!<br>
完全中毒后,无法浏览网页!</p>
<p><br>
测试完成!</p>
<p><br>
凝逸反毒-凝逸浏览器-病毒网测试(酷6视频) <br>
<a href="http://v.ku6.com/u/6103879/video.html">http://v.ku6.com/u/6103879/video.html</a><br>
毒 用易语言开发的杀毒软件!</p>
<p>&nbsp;&nbsp;&nbsp;  软件: 凝逸反毒<br>
开发语言: 易语言<br>
&nbsp;&nbsp;&nbsp;  作者: 凝逸<br>
&nbsp;&nbsp;&nbsp;  主页: <a href="http://hi.baidu.com/503165656">http://hi.baidu.com/503165656</a><br>
下载量: 16万</p>
<p><br>
2007年第二届中国原创软件大赛&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  最佳人气奖：凝逸反毒<br>
2007年中国易语言编程大赛&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  三等奖：凝逸反毒<br>
2008年首届中国优秀软件创新大赛&nbsp;&nbsp;&nbsp;  优秀奖：凝逸反毒<br>
2009年龙族联盟论坛第二届编程大赛 二等奖 凝逸反毒</p>
<p>&nbsp;&nbsp;&nbsp;  凝逸实验室-凝逸反毒,已经通过了Intel认证!是英特尔软件合作伙伴计划的认证会员!英特尔授权使</p>
<p>用英特尔标识!</p>
<p> </p>
<p>&nbsp;&nbsp;&nbsp;  凝逸反病毒软件，由凝逸独立开发，根据每日网络现状，进行分析，及时发现流行新病毒。本软件采</p>
<p>用自主创新黑洞引擎，强力清除恶性病毒给您的困扰，很多病毒、木马、间谍软件及恶意程序都会将自身</p>
<p>添加到计算机的启动项目中，以实现随计算机启动而自动运行的目的。可疑文件定位技术可以列出注册表</p>
<p>、ini文件、系统服务和开始菜单等启动项，并可以对相关启动项目进行禁用和删除等操作。快速修复由</p>
<p>于病毒或某些恶意程序、网站造成的系统故障。</p>
<p> </p>
<p>&nbsp;&nbsp;  凝逸反毒7.2</p>
<p>开发进度:<br>
--------引擎--------|-----完成时间------------<br>
1. 扫描病毒&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  |&nbsp;&nbsp;  完成 <br>
2. 防御&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  完成 <br>
3. 凝逸浏览器&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  完成 <br>
4. 黑洞&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  .......开发中<br>
5. 修复&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  完成</p>
<p>5. ...</p>
<p><br>
[凝逸反毒.病毒库]<br>
毒库总数=2967208<br>
白库总数=24748827</p>
<p> </p>
<p> </p>
<p><br>
凝逸反毒<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  主页: <a href="http://hi.baidu.com/503165656">http://hi.baidu.com/503165656</a> <br>
&nbsp;&nbsp;  凝逸BBS: <a href="http://nyav.uu1001.cn/">http://nyav.uu1001.cn</a><br>
技术支持QQ: 503165656 <br>
反病毒QQ群: (50953214,52349784)(41074619,55068205)<br>
(创建于:2007-01)</p>
<p><br>
软件下载<br>
下载:</p>
<p>凝逸反毒.升级器7: <br>
[url=http://down.qiannao.com/space/show/uu1001/share/2009/9/4/nyav7.zip/.page]nyav7.zip</p>
<p>[/url]</p>
<p> </p>
<p> </p>
<p>[合作网站] <br>
天空软件:http://www.skycn.com/soft/32883.html <br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  <br>
华军软件:http://www.onlinedown.net/soft/56156.htm <br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  <a href="http://www.pcsoft.com.cn/Soft/Soft_8084.htm">http://www.pcsoft.com.cn/Soft/Soft_8084.htm</a><br>
ZDNet下载频:http://down.zdnet.com.cn/detail/8/72611.shtml<br>
电脑报软件:http://download.cpcw.com/soft/utilitie/antivirus/262/418262.shtml<br>
下载银行:http://www.downbank.cn/soft/4/46/2007/200705075220.htm<br>
爱国者黑客:http://www.3800cc.com/Soft/gjgj/18838.html<br>
天极下载:http://www.mydown.com/soft/utilitie/antivirus/262/418262.shtml</p>
<p>[购买]<br>
天空软件商城<br>
<a href="http://shareware.skycn.com/orderform.php?purtype=unreg&amp;soft_id=12420">http://shareware.skycn.com/orderform.php?purtype=unreg&amp;soft_id=12420</a><br>
华军软件商城<br>
<a href="http://www.pcsoft.com.cn/Soft/Soft_8084.htm">http://www.pcsoft.com.cn/Soft/Soft_8084.htm</a></p>
<p><br>
凝逸反毒说明<br>
<a href="http://webdisk.lbyc.cn/myfile/qq223366/swf/index.html">http://webdisk.lbyc.cn/myfile/qq223366/swf/index.html</a><br>
凝逸反毒演示<br>
<a href="http://webdisk.lbyc.cn/myfile/qq223366/swf/swf.htm">http://webdisk.lbyc.cn/myfile/qq223366/swf/swf.htm</a></p>
<p><br>
[凝逸反毒测评]<br>
<a href="http://hi.baidu.com/503165656/blog/item/7c6aefbf2c00240e19d81fdc.html">http://hi.baidu.com/503165656/blog/item/7c6aefbf2c00240e19d81fdc.html</a><br>
<a href="http://hi.baidu.com/503165656/blog/item/a4c5b35256ead80a0df3e364.html">http://hi.baidu.com/503165656/blog/item/a4c5b35256ead80a0df3e364.html</a><br>
<a href="http://hi.baidu.com/503165656/blog/item/2aa687c227e0601f0ff47751.html">http://hi.baidu.com/503165656/blog/item/2aa687c227e0601f0ff47751.html</a></p>
<p><br>
[img]http://ai.img1001.com/uu_0909_1/nyav_2_1_622b09137e495c8.jpg[/img]<br>
[img]http://ai.img1001.com/uu_0909_1/nyav_2_1_4c739ecc244a931.jpg[/img]<br>
[img]http://ai.img1001.com/uu_0909_1/nyav_2_1_a82f2a96e6504f0.jpg[/img]<br>
[img]http://ai.img1001.com/uu_0909_1/nyav_2_1_a4bddaa6602a6d5.jpg[/img]<br>
[img]http://ai.img1001.com/uu_0909_1/nyav_2_1_c4e557810b27956.jpg[/img]<br>
[img]http://ai.img1001.com/uu_0909_1/nyav_2_1_144dd188e9a9b94.jpg[/img]<br>
[img]http://ai.img1001.com/uu_0909_1/nyav_2_1_92260071cc3eb82.jpg[/img]</p>
<p> </p>
<p><br>
<img border="0" src="http://ai.img1001.com/uu_0909_1/nyav_2_1_622b09137e495c8.jpg"> [<a style="cursor: pointer"><font color="#0070af">删除</font></a>]</p>
<div style="margin: 5px">图片： <br>
<img border="0" src="http://ai.img1001.com/uu_0909_1/nyav_2_1_4c739ecc244a931.jpg"> [<a style="cursor: pointer"><font color="#0070af">删除</font></a>]</div>
<div style="margin: 5px">图片： <br>
<img border="0" src="http://ai.img1001.com/uu_0909_1/nyav_2_1_a82f2a96e6504f0.jpg"> [<a style="cursor: pointer"><font color="#0070af">删除</font></a>]</div>
<div style="margin: 5px">图片： <br>
<img border="0" src="http://ai.img1001.com/uu_0909_1/nyav_2_1_a4bddaa6602a6d5.jpg"> [<a style="cursor: pointer"><font color="#0070af">删除</font></a>]</div>
<div style="margin: 5px">图片： <br>
<img border="0" src="http://ai.img1001.com/uu_0909_1/nyav_2_1_c4e557810b27956.jpg"> [<a style="cursor: pointer"><font color="#0070af">删除</font></a>]</div>
<div style="margin: 5px">图片： <br>
<img border="0" src="http://ai.img1001.com/uu_0909_1/nyav_2_1_144dd188e9a9b94.jpg"> [<a style="cursor: pointer"><font color="#0070af">删除</font></a>]</div>
<div style="margin: 5px">
<p>图片： <br>
<img border="0" src="http://ai.img1001.com/uu_0909_1/nyav_2_1_92260071cc3eb82.jpg"></p>
<p> </p>
<p> </p>
<p>===</p>
<p> </p>
</div> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%C4%FD%D2%DD%B7%B4%B6%BE">凝逸反毒</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/5131b145ce5c243686947374.html#comment">查看评论</a>]]></description>
        <pubDate>2009-09-04  23:12</pubDate>
        <category><![CDATA[凝逸反毒]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/5131b145ce5c243686947374.html</guid>
</item>

<item>
        <title><![CDATA[2009【龙族联盟论坛第二届编程大赛】 二等奖 凝逸反毒]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/8341a8d439f44508a08bb741.html]]></link>
        <description><![CDATA[
		
		<p><a href="http://www.chinadforce.com/viewthread.php?tid=1220024&amp;extra=page%3D1">http://www.chinadforce.com/viewthread.php?tid=1220024&amp;extra=page%3D1</a><br>
【龙族联盟论坛第二届编程大赛】<br>
二等奖&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  16.85&nbsp;&nbsp;&nbsp;&nbsp;  凝逸反毒&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  凝逸反毒</p>
<p> <br>
<img class="blogimg" border="0" small="0" src="http://hiphotos.baidu.com/503165656/pic/item/df3c2ff3f3222ce10b46e021.jpg"></p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%C4%FD%D2%DD%B7%B4%B6%BE">凝逸反毒</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/8341a8d439f44508a08bb741.html#comment">查看评论</a>]]></description>
        <pubDate>2009-08-19  18:34</pubDate>
        <category><![CDATA[凝逸反毒]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/8341a8d439f44508a08bb741.html</guid>
</item>

<item>
        <title><![CDATA[凝逸志愿者-语言组]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/fce8a2cb62ad0ff452664fd6.html]]></link>
        <description><![CDATA[
		
		<p>凝逸志愿者-语言组</p>
<p>日语版<font size="2">翻译</font>: wRong (日本销售代理)</p>
<p> </p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%C4%FD%D2%DD%D6%BE%D4%B8%D5%DF">凝逸志愿者</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/fce8a2cb62ad0ff452664fd6.html#comment">查看评论</a>]]></description>
        <pubDate>2009-08-16  16:25</pubDate>
        <category><![CDATA[凝逸志愿者]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/fce8a2cb62ad0ff452664fd6.html</guid>
</item>

<item>
        <title><![CDATA[凝逸反毒-空间赞助商-恶魔网络]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/15ab8a01eee7d80f1c958348.html]]></link>
        <description><![CDATA[
		
		<p> </p>
<p><strong>凝逸反毒-空间赞助商-恶魔网络</strong></p>
<p><strong>[空间赞助商]</strong><br>
赞助商=恶魔网络<br>
网址=<a target="_blank" href="http://www.myhacker.cn">http://www.myhacker.cn</a></p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%D4%DE%D6%FA%C9%CC">赞助商</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/15ab8a01eee7d80f1c958348.html#comment">查看评论</a>]]></description>
        <pubDate>2009-08-15  16:59</pubDate>
        <category><![CDATA[赞助商]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/15ab8a01eee7d80f1c958348.html</guid>
</item>

<item>
        <title><![CDATA[凝逸反毒-空间赞助商-AQ数据软件]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/ee244e228a098ead4623e8e4.html]]></link>
        <description><![CDATA[
		
		<p>凝逸反毒-空间赞助商-AQ数据软件</p>
<p> </p>
<p><br>
<strong>[空间赞助商]</strong><br>
赞助商=AQ数据软件]<br>
网址=<a target="_blank" href="http://www.aqidc.com">http://www.aqidc.com</a><br>
软件=</p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%D4%DE%D6%FA%C9%CC">赞助商</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/ee244e228a098ead4623e8e4.html#comment">查看评论</a>]]></description>
        <pubDate>2009-08-12  20:27</pubDate>
        <category><![CDATA[赞助商]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/ee244e228a098ead4623e8e4.html</guid>
</item>

<item>
        <title><![CDATA[网赚]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/bced8aec7960122e62d09fd4.html]]></link>
        <description><![CDATA[
		
		<p>网赚</p>
<p>663D901B9E66C71728B961F356AEE0A1</p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%CD%F8%D7%AC">网赚</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/bced8aec7960122e62d09fd4.html#comment">查看评论</a>]]></description>
        <pubDate>2009-07-23  20:26</pubDate>
        <category><![CDATA[网赚]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/bced8aec7960122e62d09fd4.html</guid>
</item>

<item>
        <title><![CDATA[凝逸反毒  ok:0|毒:1488|末知:442|1931/1931|每秒2个文件]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/1a7760a98439fcf51e17a23f.html]]></link>
        <description><![CDATA[
		
		<p>凝逸反毒  ok:0|毒:1488|末知:442|1931/1931|每秒2个文件</p>
<p>1、电脑的配置情况： cpu1.6g ,内1g<br>
2、扫描前文件数： 1931<br>
3、扫描后文件数： 442<br>
4：杀软以及杀软版本号 ：凝逸反毒6.10<br>
5：扫描数量 ：1931<br>
6：查杀数量： 毒:1488<br>
7：耗时 ： 75/s<br>
8：病毒库更新日期：2009.6.29<br>
9: 查杀率：77<br>
 </p>
<div forimg="1"><img class="blogimg" border="0" small="0" src="http://hiphotos.baidu.com/503165656/pic/item/b0a7297b6e868bd20ad1878c.jpg"></div>
<p><br>
----OK-----</p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%B2%A1%B6%BE%B2%E2%CA%D4">病毒测试</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/1a7760a98439fcf51e17a23f.html#comment">查看评论</a>]]></description>
        <pubDate>2009-07-02  09:34</pubDate>
        <category><![CDATA[病毒测试]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/1a7760a98439fcf51e17a23f.html</guid>
</item>

<item>
        <title><![CDATA[凝逸实验室.凝逸安全7.0]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/f4b091b754d12afd31add1cb.html]]></link>
        <description><![CDATA[
		
		<p>凝逸实验室.凝逸安全7.0</p>
<p>&nbsp;&nbsp;&nbsp;  凝逸实验室.凝逸安全,已经通过了Intel认证!是英特尔软件合作伙伴计划的认证会员!英特尔授权使用英特尔标识!</p>
<p> <br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  凝逸安全</p>
<p><br>
【软件名称】: 凝逸安全<br>
【软件官方】: 凝逸实验室<br>
【软件作者】: 凝逸<br>
【软件版本】: 7.0<br>
【软件类型】: 免费/共享版<br>
【支持语言】: 多语言<br>
【开发语言】: 易语言<br>
【官方网站】: <a href="http://hi.baidu.com/503165656">http://hi.baidu.com/503165656</a><br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  <a href="http://nyav.uueasy.com/">http://nyav.uueasy.com</a><br>
【官方下载】: <a href="http://hi.baidu.com/503165656">http://hi.baidu.com/503165656</a><br>
【 VIP客服】: QQ:503165656,QQ群:663690</p>
<p> <br>
【功能】:  <br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  1.安全登陆QQ&nbsp;&nbsp;  支持QQ2009登陆<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  2.安全扫描&nbsp;&nbsp;&nbsp;&nbsp;  分析QQ中的有可疑文件,在线分析有毒否!<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  3.安全搜索&nbsp;&nbsp;&nbsp;&nbsp;  拦截广告,拦截网马!可以安全浏览挂有网马的网站,不会中毒!</p>
<p>【凝逸实验室】</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  作者:凝逸</p>
<p>主站: <a href="http://hi.baidu.com/503165656">http://hi.baidu.com/503165656</a> <br>
 BBS: <a href="http://nyav.uu1001.cn/">http://nyav.uu1001.cn/</a><br>
下载: <a href="http://hi.baidu.com/503165656">http://hi.baidu.com/503165656</a><br>
客服QQ:503165656,771263817<br>
<a href="mailto:503165656@qq.com">503165656@qq.com</a>  <a href="mailto:q503165656@hotmail.com">q503165656@hotmail.com</a><br>
反病毒QQ群:31168828<br>
(创建于:2007-01)<br>
 </p>
<p>天空软件 <a href="http://www.skycn.com/soft/33472.html">http://www.skycn.com/soft/33472.html</a><br>
下载银行 <a href="http://www.downbank.cn/soft/2/25/2007/200705145394.htm">http://www.downbank.cn/soft/2/25/2007/200705145394.htm</a></p>
<p>【购买】<br>
注册价格: 10 元/1套 <br>
天空软件商城  <a href="http://shareware.skycn.com/orderform.php?purtype=unreg&amp;soft_id=12454">http://shareware.skycn.com/orderform.php?purtype=unreg&amp;soft_id=12454</a></p>
<p>支付宝在线支付 <a href="mailto:503165656@163.com">503165656@163.com</a><br>
请把硬件号与订单号发到 <a href="mailto:503165656@qq.com">503165656@qq.com</a></p>
<p>[img]http://ai.img1001.com/uu_0908_5/nyav_17_1_59fd3444686ee09.jpg[/img]<br>
[img]http://ai.img1001.com/uu_0908_5/nyav_17_1_6acea6db50efb0d.jpg[/img]<br>
[img]http://ai.img1001.com/uu_0908_5/nyav_17_1_282b7ec4626c149.jpg[/img]</p>
<p><br>
[url=http://down.qiannao.com/space/show/uu1001/share/2009/8/23/%C4%FD%D2%DD%CA%B5%D1%E9%CA%D2.%C4%FD%D2%DD%B0%B2%C8%AB7.0_nys.zip%2F.page]点击进入下载－凝逸实验室.凝逸安全7.0_nys.zip[/url]</p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%C4%FD%D2%DD%C8%ED%BC%FE">凝逸软件</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/f4b091b754d12afd31add1cb.html#comment">查看评论</a>]]></description>
        <pubDate>2009-06-27  14:26</pubDate>
        <category><![CDATA[凝逸软件]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/f4b091b754d12afd31add1cb.html</guid>
</item>

<item>
        <title><![CDATA[凝逸_API_文件拖放1.0.ec]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/3e21937e615e93300dd7da7e.html]]></link>
        <description><![CDATA[
		
		<p>凝逸_API_文件拖放1.0.ec</p>
<p>.版本 2</p>
<p>.程序集 窗口程序集1</p>
<p>.子程序 __启动窗口_创建完毕</p>
<p>API_拖放文件_注册 (列表框2.取窗口句柄 (), &amp;拖放事件)</p>
<p>.子程序 拖放事件<br>
.参数 组数, 整数型<br>
.参数 a2<br>
.参数 a3<br>
.参数 a4<br>
.局部变量 i, 整数型<br>
.局部变量 文件, 文本型</p>
<p><br>
.计次循环首 (组数, i)<br>
&nbsp;&nbsp;&nbsp;  文件 ＝ 拖放文件组 [i]<br>
&nbsp;&nbsp;&nbsp;  列表框2.加入项目 (文件, )<br>
.计次循环尾 ()</p>
<p>=======</p>
<p><br>
模块名称：凝逸_API_文件拖放<br>
作者：凝逸<br>
版本：1.0</p>
<p> </p>
<p><br>
------------------------------</p>
<p>.版本 2</p>
<p>.子程序 API_拖放文件_禁止, , 公开, <br>
.参数 句柄, 整数型</p>
<p>.子程序 API_拖放文件_注册, , 公开<br>
.参数 窗口句柄1, 整数型<br>
.参数 子程序指针1, 子程序指针, 可空, 得到结果的子程序 拖放事件 (组数, 0, 0, 0)</p>
<p>.全局变量 拖放文件组, 文本型, 公开, &quot;0&quot;</p>
<p><br>
 </p>
<p><a target="_blank" href="http://www.qiannao.com/space/show/uu1001/上传分享/2009/6/9/凝逸_API_文件拖放1.0.rar/.page">http://www.qiannao.com/space/show/uu1001/上传分享/2009/6/9/凝逸_API_文件拖放1.0.rar/.page</a></p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%D2%D7%D3%EF%D1%D4">易语言</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/3e21937e615e93300dd7da7e.html#comment">查看评论</a>]]></description>
        <pubDate>2009-06-09  14:19</pubDate>
        <category><![CDATA[易语言]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/3e21937e615e93300dd7da7e.html</guid>
</item>

<item>
        <title><![CDATA[凝逸反毒.修复Win32.HLLW.WaceE(MMM.MMM)感染1.1]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/b0a7297b699e8afc0ad187b6.html]]></link>
        <description><![CDATA[
		
		<p> </p>
<div forimg="1"><img class="blogimg" border="0" small="0" src="http://hiphotos.baidu.com/503165656/pic/item/fce8a2cba170cad853664f67.jpg"></div>
<p>凝逸反毒.修复Win32.HLLW.WaceE(MMM.MMM)感染1.1</p>
<p>感染引擎: 修复Win32.HLLW.Wace病毒<br>
引擎作者: 凝逸<br>
  病毒名: Win32.HLLW.Wace,Worm.Win32.AutoRun.ubh,Win32.Troj.Downloader.cf.978944,Worm.Win32.AutoRun.yze,Win32.AutoRun.NC 蠕虫 ,MMM.MMM<br>
&nbsp;&nbsp;&nbsp;  功能: 修复Win32.HLLW.Wace感染的EXE,有一些感染坏了,就修复不了!<br>
&nbsp;&nbsp;&nbsp;  清除: 一建[清除病毒]</p>
<p>1.1版 对变种作通用性升级!</p>
<p>注意:先试修复几个exe,如不能运行为新变种,请联络凝逸开发出新的修复引擎!</p>
<p>修复方法:</p>
<p><br>
  [专杀]<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  -&gt;修复Win32.HLLW.Wace<br>
 <br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  再 修复所有exe</p>
<p>  [扫描]<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  -&gt;扫描病毒<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  把 c:\ 下的木马杀了</p>
<p>从开机 在把凝逸反毒在解出来,在扫一次<br>
---<br>
如有 ghost或一键还原,可用<br>
  [扫描]<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  -&gt;黑洞<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  把 把木马杀了, 从开机时在还原系,<br>
---</p>
<p><br>
主页:http://hi.baidu.com/503165656</p>
<p>&nbsp;&nbsp;&nbsp;  <br>
凝逸BBS:http://nyav.uu1001.cn/<br>
技术支持QQ:503165656 <br>
反病毒QQ群:31168828<br>
(创建于:2007-01)</p>
<p>=============</p>
<p> </p>
<p><br>
=======MMM.MMM病毒样本分析报告=============</p>
<p><br>
1: 分析环境是xp2，分析工具是易语言自写的小工具</p>
<p><br>
2:概述:<br>
  MMM.MMM病毒<br>
  病毒名: Win32.HLLW.Wace,Worm.Win32.AutoRun.ubh,Win32.Troj.Downloader.cf.978944,Worm.Win32.AutoRun.yze,Win32.AutoRun.NC 蠕虫 ,MMM.MMM <br>
  目前还在变种流行,最初会先感染rar ,现在好象直接感染所有exe,在文件尾加入毒节  .MMM<br>
  凝逸反毒.修复Win32.HLLW.WaceE感染1.0 对变种不能修复,所以更新到1.1版,以能通用修复!<br>
 <br>
 <br>
========PE格式分析==========</p>
<p>文件头分析【PE Headers】<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  文件格式&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：unknown signature, probably MS-DOS<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  DOS_HEADER 文件头长度&nbsp;&nbsp;&nbsp;  ：512<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  文件运行所要求的CPU&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：Intel 80386 处理器或更高<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  节数目&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：9<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  文件创建的时间&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：2006年8月16日2时0分30秒<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  OptionalHeader 结构大小  ：E0<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  文件信息的标记&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：30E<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  标志字&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：10B<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  连接器版本号&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：5.0<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  代码段长度&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：185000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  已初始化数据块大小&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：29000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  未初始化数据块大小&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：0<br>
&nbsp;&nbsp;&nbsp;  ★程序入口  [EntryCodeData]：003D5E5E<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  代码段起始&nbsp;&nbsp;  [BaseOfCode]：00001000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  数据库段起始 [BaseOfData]：00186000<br>
&nbsp;&nbsp;&nbsp;  ★优先装载地址  [ImageBase]：00400000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  内存中节对齐粒度&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：1000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  文件中节对齐粒度&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：200<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  系统所需版本号&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：4.0<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  自定义版本号&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：0.0<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  子系统所需版本号&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：4.0<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  内存中PE映像体的尺寸&nbsp;&nbsp;&nbsp;&nbsp;  ：3D6082<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  所有头+节表的大小&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：600<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  校验和&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：0<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  文件系统&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：IMAGE_SUBSYSTEM_WINDOWS_GUI<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  DLL特性&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：0<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  保留栈的大小&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：100000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  初始时指定栈大小&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：2000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  保留堆的大小&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：100000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  指定堆大小&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：1000<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  加载器标志&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：0<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  Rva数和大小&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  ：10</p>
<p>分析节表【Section Table】<br>
 序号&nbsp;&nbsp;  名称  代码地址  代码长度  文件偏移  文件长度  内存属性<br>
  1&nbsp;&nbsp;&nbsp;  .text  00001000  00185000  00000600  00184C00  60000020<br>
  2&nbsp;&nbsp;&nbsp;  .data  00186000  00029000  00185200  00024200  C0000040<br>
  3&nbsp;&nbsp;&nbsp;&nbsp;  .tls  001AF000  00001000  001A9400  00000200  C0000040<br>
  4&nbsp;&nbsp;  .rdata  001B0000  00001000  001A9600  00000200  50000040<br>
  5&nbsp;&nbsp;  .idata  001B1000  00004000  001A9800  00003A00  40000040<br>
  6&nbsp;&nbsp;  .edata  001B5000  0003C000  001AD200  0003B800  40000040<br>
  7&nbsp;&nbsp;&nbsp;  .rsrc  001F1000  001C2018  001E8A00  001C1A18  40000040<br>
  8&nbsp;&nbsp;  .reloc  003B4000  0001B000  003AA600  0001B000  50000040<br>
  9&nbsp;&nbsp;&nbsp;&nbsp;  .MMM  003CF000  00007082  003C5600  00007082  E00000E0</p>
<p>分析导入表【Import Table】 Image Thunk raw + ★ rva + Import by Name||Hint<br>
动态链接库 :SKYMISC.DLL<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A995C&nbsp;&nbsp;&nbsp;&nbsp;  001B115C==&gt; Report2WSC<br>
动态链接库 :WS2_32.DLL<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A9988&nbsp;&nbsp;&nbsp;&nbsp;  001B1188==&gt; Report2WSC<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A9990&nbsp;&nbsp;&nbsp;&nbsp;  001B118C==&gt; WSAIoctl<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A9998&nbsp;&nbsp;&nbsp;&nbsp;  001B1190==&gt; WSASocketA<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A99A0&nbsp;&nbsp;&nbsp;&nbsp;  001B1194==&gt; WSASocketA<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A99A8&nbsp;&nbsp;&nbsp;&nbsp;  001B1198==&gt; WSASocketA<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A99B0&nbsp;&nbsp;&nbsp;&nbsp;  001B119C==&gt; WSASocketA<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A99B8&nbsp;&nbsp;&nbsp;&nbsp;  001B11A0==&gt; WSASocketA<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  地址 :&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  001A99C0&nbsp;&nbsp;&nbsp;&nbsp;  001B11A4==&gt; WSASocketA</p>
<p>=============<br>
生成木马</p>
<p>C:\WINDOWS\Fonts\9b8fd8070709598b9f5c5a64d77fe290\system\<br>
windows.sys<br>
dd.jpg<br>
KB930.vxd<br>
ctfmn.exe</p>
<p>MMM.MMM</p>
<p>===IFEO映像劫持一些杀毒软件 指向病毒文件=======<br>
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360rpt.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[360rpt.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360Safe.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[360Safe.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360tray.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[360tray.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\_AVP32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[_AVP32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\_AVPCC.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[_AVPCC.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\_AVPM.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[_AVPM.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ACKWIN32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ACKWIN32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ANTI-TROJAN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ANTI-TROJAN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\APVXDWIN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[APVXDWIN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AUTODOWN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AUTODOWN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCONSOL.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVCONSOL.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVE32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVE32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVGCTRL.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVGCTRL.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVKSERV.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVKSERV.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVNT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVNT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVP.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVP.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVP32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVP32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVPCC.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVPCC.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVPDOS32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVPDOS32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVPM.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVPM.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVPTC32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVPTC32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVPUPD.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVPUPD.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVSCHED32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVSCHED32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWIN95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVWIN95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWUPD32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[AVWUPD32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BLACKD.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[BLACKD.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BLACKICE.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[BLACKICE.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CFIADMIN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[CFIADMIN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CFIAUDIT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[CFIAUDIT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CFINET.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[CFINET.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CFINET32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[CFINET32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CLAW95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[CLAW95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CLAW95CF.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[CLAW95CF.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CLEANER.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[CLEANER.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CLEANER3.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[CLEANER3.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DVP95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[DVP95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DVP95_0.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[DVP95_0.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ECENGINE.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ECENGINE.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\EGHOST.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[EGHOST.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ESAFE.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ESAFE.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\EXPWATCH.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[EXPWATCH.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\F-AGNT95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[F-AGNT95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\F-PROT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[F-PROT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\F-PROT95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[F-PROT95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\F-STOPW.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[F-STOPW.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FESCUE.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[FESCUE.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FINDVIRU.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[FINDVIRU.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FP-WIN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[FP-WIN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FPROT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[FPROT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FRW.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[FRW.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IAMAPP.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[IAMAPP.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IAMSERV.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[IAMSERV.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IBMASN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[IBMASN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IBMAVSP.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[IBMAVSP.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ICLOAD95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ICLOAD95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ICLOADNT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ICLOADNT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ICMON.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ICMON.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ICSUPP95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ICSUPP95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ICSUPPNT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ICSUPPNT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IFACE.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[IFACE.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IOMON98.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[IOMON98.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Iparmor.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[Iparmor.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\JEDI.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[JEDI.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAV32.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KAV32.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVPFW.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KAVPFW.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVsvc.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KAVsvc.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVSvcUI.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KAVSvcUI.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVFW.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KVFW.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVMonXP.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KVMonXP.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVMonXP.kxp]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KVMonXP.kxp]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVSrvXP.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KVSrvXP.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVwsc.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KVwsc.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KvXP.kxp]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KvXP.kxp]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatchUI.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[KWatchUI.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LOCKDOWN2000.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[LOCKDOWN2000.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Logo1_.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[Logo1_.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Logo_1.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[Logo_1.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LOOKOUT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[LOOKOUT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LUALL.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[LUALL.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MAILMON.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[MAILMON.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MOOLIVE.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[MOOLIVE.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MPFTRAY.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[MPFTRAY.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\N32SCANW.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[N32SCANW.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Navapsvc.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[Navapsvc.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Navapw32.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[Navapw32.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NAVLU32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[NAVLU32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NAVNT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[NAVNT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\navw32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[navw32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NAVWNT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[NAVWNT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NISUM.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[NISUM.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NMain.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[NMain.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NORMIST.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[NORMIST.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NUPGRADE.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[NUPGRADE.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NVC95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[NVC95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PAVCL.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[PAVCL.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PAVSCHED.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[PAVSCHED.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PAVW.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[PAVW.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCCWIN98.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[PCCWIN98.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCFWALLICON.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[PCFWALLICON.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PERSFW.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[PERSFW.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PFW.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[PFW.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Rav.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[Rav.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAV7.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[RAV7.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAV7WIN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[RAV7WIN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAVmon.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[RAVmon.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAVmonD.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[RAVmonD.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAVtimer.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[RAVtimer.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Rising.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[Rising.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SAFEWEB.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SAFEWEB.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCAN32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SCAN32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCAN95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SCAN95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCANPM.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SCANPM.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCRSCAN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SCRSCAN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SERV95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SERV95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SMC.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SMC.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SPHINX.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SPHINX.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SWEEP95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[SWEEP95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TBSCAN.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[TBSCAN.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TCA.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[TCA.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TDS2-98.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[TDS2-98.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TDS2-NT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[TDS2-NT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\THGUARD.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[THGUARD.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TrojanHunter.exe]&nbsp;&nbsp;&nbsp;  &lt;IFEO[TrojanHunter.exe]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VET95.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[VET95.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VETTRAY.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[VETTRAY.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VSCAN40.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[VSCAN40.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VSECOMR.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[VSECOMR.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VSHWIN32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[VSHWIN32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VSSTAT.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[VSSTAT.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WEBSCANX.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[WEBSCANX.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WFINDV32.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[WFINDV32.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ZONEALARM.EXE]&nbsp;&nbsp;&nbsp;  &lt;IFEO[ZONEALARM.EXE]&gt;&lt;c:\\MMM.exe&gt;  [File is missing]</p>
<p>=============<br>
==HOSTS 文件========<br>
127.0.0.1  <a href="http://www.netclean.org.cn/">www.netclean.org.cn</a> <br>
127.0.0.1  <a href="http://www.netclean.cn/">www.netclean.cn</a>&nbsp;&nbsp;&nbsp;  <br>
127.0.0.1  <a href="http://www.kingdun.net/">www.kingdun.net</a>&nbsp;&nbsp;  <br>
127.0.0.1  <a href="http://www.168tgws.cn/">www.168tgws.cn</a>&nbsp;&nbsp;&nbsp;  <br>
127.0.0.1  <a href="http://www.king6.com.cn/">www.king6.com.cn</a>  <br>
127.0.0.1  <a href="http://www.netclean.com.cn/">www.netclean.com.cn</a>  <br>
127.0.0.1  <a href="http://www.lebi.cn/">www.lebi.cn</a>&nbsp;&nbsp;&nbsp;&nbsp;  <br>
127.0.0.1  <a href="http://www.feydj.com/">www.feydj.com</a>&nbsp;&nbsp;  <br>
127.0.0.1  <a href="http://www.netclean.org.cn/">www.netclean.org.cn</a>&nbsp;&nbsp;</p>
<p>========</p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%C4%FD%D2%DD%B7%B4%B6%BE">凝逸反毒</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/b0a7297b699e8afc0ad187b6.html#comment">查看评论</a>]]></description>
        <pubDate>2009-06-07  15:53</pubDate>
        <category><![CDATA[凝逸反毒]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/b0a7297b699e8afc0ad187b6.html</guid>
</item>

<item>
        <title><![CDATA[凝逸反毒.分析PE(修复Worm.Win32.AutoRun.lmx感染)]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/b77e720f4ef826226059f359.html]]></link>
        <description><![CDATA[
		
		<p> </p>
<div forimg="1"><img class="blogimg" border="0" small="0" src="http://hiphotos.baidu.com/503165656/pic/item/9be30c2efcc2e3754ec22636.jpg"></div>
<p>凝逸反毒.分析PE(修复Worm.Win32.AutoRun.lmx感染)</p>
<p><br>
病毒名: Worm.Win32.AutoRun.lmx,Win32.Troj.AgentT.ac.18776 (MSN伪装下载器变种) <br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  感染所有exe,卡巴.金山也是删除,Sophos无法清除</p>
<p> 修复: 用凝逸反病毒的分析pe功能扫掉马尾后杀软就不报了,可以运行<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  尾为马 大小28431 ,点[修复exe] 就可以了<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</p>
<p> </p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  凝逸反毒.分析PE-日志<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  [凝逸反毒] (<a href="http://hi.baidu.com/503165656">http://hi.baidu.com/503165656</a>)</p>
<p>目录:E:\2009分析感染\Palkia_染毒文件样本|<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  1|e:\2009分析感染\palkia_染毒文件样本\染毒文件样本.exe|  48026A55|&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  <br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  |┣1&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  |  48026A55|&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  <br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  |┣2&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  |  48026A55|&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;  <br>
CRC:1|2/1</p>
<p> </p>
<p><br>
=======原贴================<br>
杀不掉的Worm.Win32.AutoRun.lmx病毒，求助<br>
Tags: Worm lmx 求助 <br>
<a href="http://bbs.kafan.cn/thread-496095-1-1.html">http://bbs.kafan.cn/thread-496095-1-1.html</a></p>
<p>我的电脑前段时间中了Worm.Win32.AutoRun.lmx病毒，卡巴查的出来却杀不掉，实在没办法，偶把系统重新GHOST了一遍，可是其他分区上的可执行文件感染了Worm.Win32.AutoRun.lmx病毒的文件还是解决不了！<br>
那些染毒文件我用卡巴一杀，它就要给偶删除，因为他清除不了。卡巴啊卡巴，如果你只会将生了病的人枪毙，我要你何用？偶其他盘上数以万计的软件呀，难道你不能只会删除吗？<br>
念在偶多年以来一直对你情有独钟，不  忍心将你删除，可你能理解偶欲哭无泪的心情吗？ 染毒文件样本见附件，希望有大侠伸出援助之手，万分感激。<br>
附件<br>
 染毒文件样本.rar (33.55 KB) <br>
2009-6-7 10:44, 下载次数: 42 <br>
=======================</p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%C4%FD%D2%DD%B7%B4%B6%BE">凝逸反毒</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/b77e720f4ef826226059f359.html#comment">查看评论</a>]]></description>
        <pubDate>2009-06-07  12:17</pubDate>
        <category><![CDATA[凝逸反毒]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/b77e720f4ef826226059f359.html</guid>
</item>

<item>
        <title><![CDATA[易语言能编出这些软件就等着收钱]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/50c88c51137c5f878c5430ba.html]]></link>
        <description><![CDATA[
		
		<p>易语言能编出这些软件就等着收钱<br>
<a href="http://bbs.eyuyan.com/dispbbs.asp?boardid=124&amp;Id=184282">http://bbs.eyuyan.com/dispbbs.asp?boardid=124&amp;Id=184282</a></p>
<p>英语学习<br>
网络电视<br>
视频转换<br>
聊天记录查看<br>
木马查杀<br>
文件加密<br>
小型进销存<br>
======加上3个最赚钱的===========<br>
浏览器<br>
输入法<br>
播放器<br>
===========<br>
当然还有我所不知道的,只要你选对了路,小钱大钱就源源不断来<br>
进销存是很多软件的基础，有了这个基础可以多个类型的行业软件，面比较广而已。<br>
而本论坛很多高手,做的进销存软件，每月卖好几万,我建议你找个小店,拿2个月扫描枪,马上就明白小型进销存软件该怎么做了</p>
<p> </p>
<p>最赚钱这三个 靠什么赚啊<br>
当然是广告,人多就有$,那得有很庞大的用户群</p>
<p> </p>
<p> </p>
<p> </p> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%D2%D7%D3%EF%D1%D4">易语言</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/50c88c51137c5f878c5430ba.html#comment">查看评论</a>]]></description>
        <pubDate>2009-06-05  13:39</pubDate>
        <category><![CDATA[易语言]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/50c88c51137c5f878c5430ba.html</guid>
</item>

<item>
        <title><![CDATA[Kafan VirList 2009.05测试结果汇总]]></title>
        <link><![CDATA[http://hi.baidu.com/503165656/blog/item/97b5ca5084712e541038c2f3.html]]></link>
        <description><![CDATA[
		
		<h2>
<div forimg="1"><img class="blogimg" border="0" small="0" src="http://hiphotos.baidu.com/503165656/pic/item/02f15a31e06ef93cebc4aff0.jpg"></div>
Kafan VirList 2009.05测试结果汇总</h2>
<p class="posttags">Tags: <a href="http://bbs.kafan.cn/tag-Kafan.html" target="_blank">Kafan</a> <a href="http://bbs.kafan.cn/tag-VirList.html" target="_blank">VirList</a> <a href="http://bbs.kafan.cn/tag-%BB%E3%D7%DC.html" target="_blank">汇总</a> <a href="http://bbs.kafan.cn/tag-%BD%E1%B9%FB.html" target="_blank">结果</a></p>
<div class="t_msgfont" >
<p align="center"><strong><font size="5"><font color="#4169e1">Kafan VirList 2009.05测试结果汇总</font></font></strong></p>
<br>
<br>
<table class="t_table" style="width: 98%" cellspacing="0">
    <tbody>
        <tr>
            <td><font face="宋体 "><font size="3">杀毒软件名称</font></font></td>
            <td><font face="宋体 "><font size="3">总查杀数</font></font></td>
            <td><font face="宋体 "><font size="3">剩余样本数</font></font></td>
            <td><font face="宋体 "><font size="3"><br>
            </font></font><font face="宋体 "><font size="3">总样本数</font></font></td>
            <td><font face="宋体 "><font size="3">总查杀率</font></font></td>
            <td><font face="宋体 "><font size="3">测试者</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">IKARUS 1.0.97</font></font></td>
            <td><font face="宋体 "><font size="3">2784</font></font></td>
            <td><font face="宋体 "><font size="3">6</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.78%</font></font></td>
            <td><font face="宋体 "><font size="3">揍敌客</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">a-squared antimalware</font></font></td>
            <td><font face="宋体 "><font size="3">2783</font></font></td>
            <td><font face="宋体 "><font size="3">7</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.75%</font></font></td>
            <td><font face="宋体 "><font size="3">悠柚</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">a-squared free</font></font></td>
            <td><font face="宋体 "><font size="3">2783</font></font></td>
            <td><font face="宋体 "><font size="3">7</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.75%</font></font></td>
            <td><font face="宋体 "><font size="3">D20099188</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">KIS 2010 TR</font></font></td>
            <td><font face="宋体 "><font size="3">2783</font></font></td>
            <td><font face="宋体 "><font size="3">7</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.75%</font></font></td>
            <td><font face="宋体 "><font size="3">syfwxmh</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">Filseclab V7 R3</font></font></td>
            <td><font face="宋体 "><font size="3">2783</font></font></td>
            <td><font face="宋体 "><font size="3">7</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.75%</font></font></td>
            <td><font face="宋体 "><font size="3">东方无为</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">kis 2009</font></font></td>
            <td><font face="宋体 "><font size="3">2781</font></font></td>
            <td><font face="宋体 "><font size="3">9</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.68%</font></font></td>
            <td><font face="宋体 "><font size="3">fatezero</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">Avira AntiVir Personal 9</font></font></td>
            <td><font face="宋体 "><font size="3">2779</font></font></td>
            <td><font face="宋体 "><font size="3">11</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.61%</font></font></td>
            <td><font face="宋体 "><font size="3">D20099188</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">Avira AntiVir Premium 9</font></font></td>
            <td><font face="宋体 "><font size="3">2779</font></font></td>
            <td><font face="宋体 "><font size="3">11</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.61%</font></font></td>
            <td><font face="宋体 "><font size="3">Dirk</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">AVG Antivirus 8.5</font></font></td>
            <td><font face="宋体 "><font size="3">2779</font></font></td>
            <td><font face="宋体 "><font size="3">11</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.61%</font></font></td>
            <td><font face="宋体 "><font size="3">will</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">ESET NOD32</font></font><font face="宋体 "><font size="3"><br>
            </font></font><font face="宋体 "><font size="3">4.0.314.0</font></font></td>
            <td><font face="宋体 "><font size="3">2775</font></font></td>
            <td><font face="宋体 "><font size="3">15</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">99.46%</font></font></td>
            <td><font face="宋体 "><font size="3">揍敌客</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">gdata 2010</font></font></td>
            <td><font face="宋体 "><font size="3">2760</font></font></td>
            <td><font face="宋体 "><font size="3">30</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">98.92%</font></font></td>
            <td><font face="宋体 "><font size="3">欠妳緈諨</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">jiangmin Portable 2009</font></font></td>
            <td><font face="宋体 "><font size="3">2705</font></font></td>
            <td><font face="宋体 "><font size="3">85</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">96.95%</font></font></td>
            <td><font face="宋体 "><font size="3">will</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">McAfee VirsScan Enterprise 8.5i</font></font></td>
            <td><font face="宋体 "><font size="3">2672</font></font></td>
            <td><font face="宋体 "><font size="3">118</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">95.77%</font></font></td>
            <td><font face="宋体 "><font size="3">llydmissile</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">avast! pro </font></font><font face="宋体 "><font size="3">4.8</font></font></td>
            <td><font face="宋体 "><font size="3">2670</font></font></td>
            <td><font face="宋体 "><font size="3">120</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">95.70%</font></font></td>
            <td><font face="宋体 "><font size="3">揍敌客</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">Norton 2008</font></font></td>
            <td><font face="宋体 "><font size="3">2666</font></font></td>
            <td><font face="宋体 "><font size="3">124</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">95.56%</font></font></td>
            <td><font face="宋体 "><font size="3">Dirk</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">Rising 2009</font></font></td>
            <td><font face="宋体 "><font size="3">2641</font></font></td>
            <td><font face="宋体 "><font size="3">149</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">94.66%</font></font></td>
            <td><font face="宋体 "><font size="3">smilediy</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">BitDefender 2010</font></font></td>
            <td><font face="宋体 "><font size="3">2622</font></font></td>
            <td><font face="宋体 "><font size="3">168</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">93.98%</font></font></td>
            <td><font face="宋体 "><font size="3">揍敌客</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">BitDefender Command-Line Scanner</font></font></td>
            <td><font face="宋体 "><font size="3">2622</font></font></td>
            <td><font face="宋体 "><font size="3">168</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">93.98%</font></font></td>
            <td><font face="宋体 "><font size="3">will</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">Kingsoft 2009</font></font></td>
            <td><font face="宋体 "><font size="3">2572</font></font></td>
            <td><font face="宋体 "><font size="3">218</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">92.19%</font></font></td>
            <td><font face="宋体 "><font size="3">Palkia</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font color="#ff0000" size="3"><strong>nyav</strong></font></font></td>
            <td><font face="宋体 "><font color="#ff0000" size="3"><strong>2542</strong></font></font></td>
            <td><font face="宋体 "><font color="#ff0000" size="3"><strong>248</strong></font></font></td>
            <td><font face="宋体 "><font color="#ff0000" size="3"><strong>2790</strong></font></font></td>
            <td><font face="宋体 "><font color="#ff0000" size="3"><strong>91.11%</strong></font></font></td>
            <td><font face="宋体 "><font color="#ff0000" size="3"><strong>凝逸反毒</strong></font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">Dr.Web 5</font></font></td>
            <td><font face="宋体 "><font size="3">2341</font></font></td>
            <td><font face="宋体 "><font size="3">449</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">83.91%</font></font></td>
            <td><font face="宋体 "><font size="3">aerbeisi</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">ArcaMicroScan</font></font></td>
            <td><font face="宋体 "><font size="3">2290</font></font></td>
            <td><font face="宋体 "><font size="3">500</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">82.08%</font></font></td>
            <td><font face="宋体 "><font size="3">悠柚</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">Antiy Ghostbusters 2009</font></font></td>
            <td><font face="宋体 "><font size="3">2251</font></font></td>
            <td><font face="宋体 "><font size="3">539</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">80.68%</font></font></td>
            <td><font face="宋体 "><font size="3">英仔</font></font></td>
        </tr>
        <tr>
            <td><font face="宋体 "><font size="3">F-Prot Antivirus</font></font></td>
            <td><font face="宋体 "><font size="3">2141</font></font></td>
            <td><font face="宋体 "><font size="3">649</font></font></td>
            <td><font face="宋体 "><font size="3">2790</font></font></td>
            <td><font face="宋体 "><font size="3">76.74%</font></font></td>
            <td><font face="宋体 "><font size="3">will</font></font></td>
        </tr>
    </tbody>
</table>
<br>
<br>
[<em> 本帖最后由 揍敌客 于 2009-6-3 18:01 编辑 </em>]</div>
<br> 
		
		<br/><b>类别：</b><a href="http://hi.baidu.com/503165656/blog/category/%B2%A1%B6%BE%B2%E2%CA%D4">病毒测试</a>&nbsp;<a href="http://hi.baidu.com/503165656/blog/item/97b5ca5084712e541038c2f3.html#comment">查看评论</a>]]></description>
        <pubDate>2009-06-04  06:44</pubDate>
        <category><![CDATA[病毒测试]]></category>
        <author><![CDATA[503165656]]></author>
		<guid>http://hi.baidu.com/503165656/blog/item/97b5ca5084712e541038c2f3.html</guid>
</item>


</channel>
</rss>