11-26>pe_xscan 改进 O10-Winsock LSP(Layered Service Provider)项的显示内容
2007-11-26 20:47
441 查看
近来有不少朋友询问 pe_xscan 的 log 中的项目 与 瑞星卡卡上网安全助手 之间的对应的关系,看来有必要参照 瑞星卡卡上网安全助手 改进一下 pe_xscan 的log的显示内容……
就从 O10 -Winsock LSP 项开始罢。
新的log显示格式为:
O10 - LSP: MSAFD Tcpip [TCP/IP] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD Tcpip [UDP/IP] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD Tcpip [RAW/IP] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: RSVP UDP Service Provider = C:/WINDOWS/system32/rsvpsp.dll | 2004-8-17 12:0:0 | Microsoft? Windows? Operating System | 5.1.2600.0 | Microsoft Windows Rsvp 1.0 Service Provider | ? Microsoft Corporation. All rights reserved. | 5.1.2600.0 (xpclient.010817-1148) | Microsoft Corporation| ? | rsvpsp.dll | rsvpsp.dll
O10 - LSP: RSVP TCP Service Provider = C:/WINDOWS/system32/rsvpsp.dll | 2004-8-17 12:0:0 | Microsoft? Windows? Operating System | 5.1.2600.0 | Microsoft Windows Rsvp 1.0 Service Provider | ? Microsoft Corporation. All rights reserved. | 5.1.2600.0 (xpclient.010817-1148) | Microsoft Corporation| ? | rsvpsp.dll | rsvpsp.dll
O10 - LSP: MSAFD nwlnkipx [IPX] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD nwlnkspx [SPX] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD nwlnkspx [SPX] [Pseudo Stream] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD nwlnkspx [SPX II] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD nwlnkspx [SPX II] [Pseudo Stream] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NwlnkNb] SEQPACKET 3 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NwlnkNb] DATAGRAM 3 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{34EFE989-37C5-4CB3-8AA1-0BC172DECF23}] SEQPACKET 0 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{34EFE989-37C5-4CB3-8AA1-0BC172DECF23}] DATAGRAM 0 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{A52130BD-7487-4C81-A0BD-22EB3FF060DE}] SEQPACKET 1 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{A52130BD-7487-4C81-A0BD-22EB3FF060DE}] DATAGRAM 1 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{AD7B3780-5095-47A2-9423-3FECD329A0A8}] SEQPACKET 2 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{AD7B3780-5095-47A2-9423-3FECD329A0A8}] DATAGRAM 2 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
就从 O10 -Winsock LSP 项开始罢。
新的log显示格式为:
O10 - LSP: MSAFD Tcpip [TCP/IP] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD Tcpip [UDP/IP] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD Tcpip [RAW/IP] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: RSVP UDP Service Provider = C:/WINDOWS/system32/rsvpsp.dll | 2004-8-17 12:0:0 | Microsoft? Windows? Operating System | 5.1.2600.0 | Microsoft Windows Rsvp 1.0 Service Provider | ? Microsoft Corporation. All rights reserved. | 5.1.2600.0 (xpclient.010817-1148) | Microsoft Corporation| ? | rsvpsp.dll | rsvpsp.dll
O10 - LSP: RSVP TCP Service Provider = C:/WINDOWS/system32/rsvpsp.dll | 2004-8-17 12:0:0 | Microsoft? Windows? Operating System | 5.1.2600.0 | Microsoft Windows Rsvp 1.0 Service Provider | ? Microsoft Corporation. All rights reserved. | 5.1.2600.0 (xpclient.010817-1148) | Microsoft Corporation| ? | rsvpsp.dll | rsvpsp.dll
O10 - LSP: MSAFD nwlnkipx [IPX] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD nwlnkspx [SPX] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD nwlnkspx [SPX] [Pseudo Stream] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD nwlnkspx [SPX II] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD nwlnkspx [SPX II] [Pseudo Stream] = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NwlnkNb] SEQPACKET 3 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NwlnkNb] DATAGRAM 3 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{34EFE989-37C5-4CB3-8AA1-0BC172DECF23}] SEQPACKET 0 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{34EFE989-37C5-4CB3-8AA1-0BC172DECF23}] DATAGRAM 0 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{A52130BD-7487-4C81-A0BD-22EB3FF060DE}] SEQPACKET 1 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{A52130BD-7487-4C81-A0BD-22EB3FF060DE}] DATAGRAM 1 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{AD7B3780-5095-47A2-9423-3FECD329A0A8}] SEQPACKET 2 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
O10 - LSP: MSAFD NetBIOS [/Device/NetBT_Tcpip_{AD7B3780-5095-47A2-9423-3FECD329A0A8}] DATAGRAM 2 = C:/WINDOWS/system32/mswsock.dll | 2004-8-17 12:0:0 | Microsoft(R) Windows(R) Operating System | 5.1.2600.2180 | Microsoft Windows Sockets 2.0 Service Provider | (C) Microsoft Corporation. All rights reserved. | 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Microsoft Corporation| ? | mswsock.dll | mswsock.dll
相关文章推荐
- 11-30>pe_xscan 改进了O15、O14 和 O18 项的显示,log着色显示
- Layered Service Provider (LSP)
- 08-01-10>pe_xscan 改进了一下进程扫描模块的代码
- LSP(Layered Service Provider )---子浏览器被劫持
- Writing a Winsock 2 Layered Service Provider(LSP) 译文(zz)(下)
- winsock service provider editor
- Writing a Winsock 2 Layered Service Provider(LSP) 译文(zz)
- LSP(Layered Service Provider )---子浏览器被劫持
- 07-12-26>pe_xscan 增加 O30 项
- <密码的实现>输入密码的时候,显示“*”,而不是显示输入内容
- 网络编程之编写LSP进行Winsock API监控拦截或LSP注入
- gt()和:not(:last)来控制<li>元素显示的内容
- Android 内容提供器---创建内容提供器(<provider>元素)
- 08-03-27>pe_xscan 增加对引导执行项目的检测
- C# WinFrom 中如何将txt内容显示到dataGridView
- csdn可能待改进点之11------>建议支持直接在博文中贴入图片, 而不需要上传、插入这么麻烦
- Winsock LSP
- 如何在html页面显示<…>标签内容
- 08-27 GridView(点中后,图片被蒙住<蒙板>)、Toast(点击后显示提示的内容,一会儿自动消失)、Dialog(点击后显示对话框)
- <body>标签,网页上显示的内容放在这里