河北老古 - 2008-1-2 21:44:00
小伞呈黄色,恶意行为检测、文件监控、邮件监控打不开!帮忙啊
瑞星卡卡电脑诊断日志 v1.30 (2008-1-2 21:25:46) 北京瑞星科技股份有限公司
注释: [A]表示该文件存在自启动关联;
[M]表示该文件在内存中;
+ 注册表自运行项目
+ 系统服务
+ HKLM\System\CurrentControlSet\Services
aspnet_state
[A ] 1. c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe
clr_optimization_v2.0.50727_32
[A ] 2. c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe
NVSvc
[AM] 3. c:\windows\system32\nvsvc32.exe
RfwProxySrv
[AM] 4. e:\program files\rising\rfw\rfwproxy.exe
RfwService
[AM] 5. e:\program files\rising\rfw\rfwsrv.exe
rpcapd
[A ] 6. c:\program files\winpcap\rpcapd.exe
RsCCenter
[AM] 7. e:\program files\rising\rav\ccenter.exe
RsRavMon
[AM] 8. e:\program files\rising\rav\ravmond.exe
SoundMAX Agent Service (default)
[AM] 9. c:\program files\analog devices\soundmax\smagent.exe
+ 内核驱动
+ HKLM\System\CurrentControlSet\Services
ALCXWDM
[A ] 10. c:\windows\system32\drivers\alcxwdm.sys
BaseTDI
[A ] 11. c:\windows\system32\drivers\basetdi.sys
HookCont
[A ] 12. c:\windows\system32\drivers\hookcont.sys
HookNtos
[A ] 13. c:\windows\system32\drivers\hookntos.sys
HookReg
[A ] 14. c:\windows\system32\drivers\hookreg.sys
HookSys
[A ] 15. c:\windows\system32\drivers\hooksys.sys
HookUrl
[A ] 16. e:\program files\rising\rfw\hookurl.sys
InCDPass
[A ] 17. c:\windows\system32\drivers\incdpass.sys
InCDRm
[A ] 18. c:\windows\system32\drivers\incdrm.sys
k0tag
[A ] 19. c:\windows\system32\drivers\k0tag.sys
KWatch3
[A ] 20. c:\windows\system32\drivers\kwatch3.sys
kwohnxy
[A ] 21. c:\windows\system32\drivers\kwohnxy.sys
MegaIDE
[A ] 22. c:\windows\system32\drivers\megaide.sys
MidiSyn
[A ] 23. c:\windows\system32\drivers\midisyn.sys
NPF
[A ] 24. c:\windows\system32\drivers\npf.sys
npkcrypt
[A ] 25. c:\windows\system32\npkcrypt.sys
npkycryp
[A ] 26. c:\windows\system32\npkycryp.sys
NTIDrvr
[A ] 27. c:\windows\system32\drivers\ntidrvr.sys
pfc
[A ] 28. c:\windows\system32\drivers\pfc.sys
prodrv06
[A ] 29. c:\windows\system32\drivers\prodrv06.sys
prohlp02
[A ] 30. c:\windows\system32\drivers\prohlp02.sys
prosync1
[A ] 31. c:\windows\system32\drivers\prosync1.sys
RfwBase
[A ] 32. c:\windows\system32\drivers\rfwbase.sys
RsAntiSpyware
[A ] 33. c:\windows\system32\drivers\rsboot.sys
RsFwDrv
[A ] 34. e:\program files\rising\rfw\rsfwdrv.sys
RsNTGDI
[A ] 35. c:\windows\system32\drivers\rsntgdi.sys
Secdrv
[A ] 36. c:\windows\system32\drivers\secdrv.sys
senfilt
[A ] 37. c:\windows\system32\drivers\senfilt.sys
Ser2pl
[A ] 38. c:\windows\system32\drivers\ser2pl.sys
sfhlp01
[A ] 39. c:\windows\system32\drivers\sfhlp01.sys
SFilter
[A ] 40. c:\windows\system32\drivers\ssfilter.sys
smwdm
[A ] 41. c:\windows\system32\drivers\smwdm.sys
TesSafe
[A ] 42. c:\windows\system32\tessafe.sys
u8scpo44
[A ] 43. c:\windows\system32\drivers\u8scpo44.sys
URANUSLT
[A ] 44. c:\windows\system32\drivers\uranuslt.sys
[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)
河北老古 - 2008-1-2 21:46:00
+ 文件系统驱动
+ HKLM\System\CurrentControlSet\Services
ADProt
[A ] 45. c:\windows\system32\drivers\adprot.sys
InCDFs
[A ] 46. c:\windows\system32\drivers\incdfs.sys
+ IE浏览器加载模块
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
{01443AEC-0FD1-40fd-9C87-E93D1494C233}
[AM] 47. e:\program files\thunder network\thunder\comdlls\tdatonce_now.dll
{889D2FEB-5411-4565-8998-1DD2C5261283}
[AM] 48. e:\program files\thunder network\thunder\comdlls\xunleibho_now.dll
{B69F34DD-F0F9-42DC-9EDD-957187DA688D}
[AM] 49. e:\program files\360safe\safemon\safemon.dll
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions
Exec
[A ] 50. e:\program files\thunder network\thunder\thunder.exe
+ 资源管理器加载模块
+ HKLM\SOFTWARE\Classes\PROTOCOLS\Filter
application/octet-stream
[A ] 51. c:\windows\system32\mscoree.dll
application/x-complus
[A ] 51. c:\windows\system32\mscoree.dll
application/x-msdownload
[A ] 51. c:\windows\system32\mscoree.dll
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
HyperTerminal Icon Ext
[A ] 52. c:\windows\system32\hticons.dll
WinRAR shell extension
[A ] 53. c:\program files\winrar\rarext.dll
NvCpl DesktopContext Class
[AM] 54. c:\windows\system32\nvcpl.dll
Play on my TV helper
[AM] 54. c:\windows\system32\nvcpl.dll
Desktop Explorer
[AM] 55. c:\windows\system32\nvshell.dll
Desktop Explorer Menu
[AM] 55. c:\windows\system32\nvshell.dll
nView Desktop Context Menu
[AM] 55. c:\windows\system32\nvshell.dll
SnagIt Shell Extension
[A ] 56. c:\program files\techsmith\snagit 7\snagitshellext.dll
ShellLink for Application References
[A ] 57. c:\windows\system32\dfshim.dll
Shell Icon Handler for Application References
[A ] 57. c:\windows\system32\dfshim.dll
RISING
[AM] 58. c:\windows\system32\ravext.dll
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
{32CD708B-60A7-4C00-9377-D73EAA495F0F}
[AM] 58. c:\windows\system32\ravext.dll
+ 用户登陆自运行项目
+ HKLM\Software\Microsoft\Windows\CurrentVersion\Run
RavTask
[AM] 59. e:\program files\rising\rav\ravtask.exe
RfwMain
[AM] 60. e:\program files\rising\rfw\rfwmain.exe
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
KKDelay
[A ] 61. e:\program files\rising\antispyware\runonce.exe
+ 开机执行
+ HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order
BootExecute
[A ] 62. c:\windows\system32\bsmain.exe
[A ] 63. c:\windows\system32\kknative.exe
+ 映像劫持
+ HKCR\Folder\shell
Super Rabbit CDROM Eject
[A ] 64. e:\program files\super rabbit\magicset\srcd2.exe
+ 打印机监控
+ HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors
EPSON ME 2 32MonitorBC
[AM] 65. c:\windows\system32\e_flbbhc.dll
+ 其他自启动项目
+ C:\Documents and Settings\Admin\「开始」菜单\程序\启动
QQ游戏启动加速程序.lnk
[A ] 66. f:\program files\tencent\qqgame\accel.exe
珊瑚虫.lnk
[A ] 67. f:\program files\tencent\qq\coralqq.exe
河北老古 - 2008-1-2 21:47:00
正在运行的进程
+ 000000a0(160) stormliv.exe
00400000[00075000]
[ M] 68. e:\program files\stormii\stormliv.exe
75FF0000[00065000]
[ M] 69. e:\program files\stormii\msvcp60.dll
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00880000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 000000d0(208) nvsvc32.exe
00400000[00021000]
[AM] 3. c:\windows\system32\nvsvc32.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
007B0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
01600000[00034000]
[ M] 72. c:\windows\system32\nvrszhc.dll
+ 00000198(408) smss.exe
+ 000001d4(468) csrss.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
03510000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 000001ec(492) winlogon.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
01AD0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
72C80000[00008000]
[ M] 73. c:\windows\system32\msacm32.drv
+ 00000218(536) services.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00D50000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 00000224(548) lsass.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00DD0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 00000298(664) SMAgent.exe
00400000[0000B000]
[AM] 9. c:\program files\analog devices\soundmax\smagent.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00790000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 000002a4(676) IEXPLORE.EXE
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00A40000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00BD0000[0001D000]
[AM] 49. e:\program files\360safe\safemon\safemon.dll
01760000[0005F000]
[AM] 47. e:\program files\thunder network\thunder\comdlls\tdatonce_now.dll
017E0000[00029000]
[AM] 48. e:\program files\thunder network\thunder\comdlls\xunleibho_now.dll
22EC0000[0000D000]
[ M] 74. e:\program files\thunder network\thunder\components\resworker\dsbho_00.dll
22E90000[0000D000]
[ M] 75. e:\program files\thunder network\thunder\components\resworker\dataprocessor_00.dll
01F30000[00028000]
[ M] 76. e:\program files\rising\rav\ravscrch.dll
72C80000[00008000]
[ M] 73. c:\windows\system32\msacm32.drv
30000000[003AE000]
[ M] 77. c:\windows\system32\macromed\flash\flash9e.ocx
06E90000[00163000]
[ M] 78. c:\windows\system32\sogoupy.ime
043D0000[0001D000]
[ M] 79. c:\windows\system32\dllmergedict.dll
04450000[00046000]
[ M] 80. e:\program files\sogouinput\plugin\sgimeword.dll
+ 000002bc(700) svchost.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
008F0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 000002ec(748) svchost.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00980000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 00000324(804) svchost.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
007E0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 0000032c(812) CCenter.exe
00400000[00029000]
[AM] 7. e:\program files\rising\rav\ccenter.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00A70000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 00000348(840) svchost.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
009A0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
05CC0000[00028000]
[ M] 76. e:\program files\rising\rav\ravscrch.dll
50E60000[0000C000]
[ M] 81. c:\windows\system32\wups2.dll
+ 00000370(880) svchost.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
007A0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
河北老古 - 2008-1-2 21:47:00
+ 000003b4(948) svchost.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00820000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
+ 00000404(1028) Ravmond.exe
00400000[0006C000]
[AM] 8. e:\program files\rising\rav\ravmond.exe
10000000[00042000]
[ M] 82. e:\program files\rising\rav\bwlist.dll
7C140000[00103000]
[ M] 83. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 84. c:\windows\system32\msvcr71.dll
7C3A0000[0007B000]
[ M] 85. c:\windows\system32\msvcp71.dll
5D360000[0000A000]
[ M] 86. c:\windows\system32\mfc71chs.dll
00AE0000[0000E000]
[ M] 87. e:\program files\rising\rav\rsappmgr.dll
00B00000[00030000]
[ M] 88. e:\program files\rising\rav\cfgdll.dll
00EA0000[00066000]
[ M] 89. e:\program files\rising\rav\rslog.dll
00B40000[0001F000]
[ M] 90. e:\program files\rising\rav\proccom.dll
00F10000[00024000]
[ M] 91. e:\program files\rising\rav\rscommx2.dll
00F90000[00075000]
[ M] 92. e:\program files\rising\rav\monrule.dll
01020000[00013000]
[ M] 93. e:\program files\rising\rav\hooksys.dll
01190000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
01090000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
010B0000[00013000]
[ M] 94. e:\program files\rising\rav\hookreg.dll
01110000[00013000]
[ M] 95. e:\program files\rising\rav\hookntos.dll
01170000[0001C000]
[ M] 96. e:\program files\rising\rav\rswalmon.dll
01D10000[00027000]
[ M] 97. e:\program files\rising\rav\fakescan.dll
01D50000[00022000]
[ M] 98. e:\program files\rising\rav\scanner.dll
01CE0000[0000D000]
[ M] 99. e:\program files\rising\rav\hookweb.dll
01D80000[00028000]
[ M] 100. e:\program files\rising\rav\recomp.dll
01DB0000[00030000]
[ M] 101. e:\program files\rising\rav\refs.dll
01DF0000[0002C000]
[ M] 102. e:\program files\rising\rav\viruslib.dll
01F30000[00027000]
[ M] 103. e:\program files\rising\rav\relibldr.dll
02630000[0001A000]
[ M] 104. e:\program files\rising\rav\ffr.dll
02650000[00020000]
[ M] 105. e:\program files\rising\rav\nvfile.dll
038E0000[00022000]
[ M] 106. e:\program files\rising\rav\scansct.dll
+ 0000044c(1100) Rav.exe
00400000[000A6000]
[ M] 107. e:\program files\rising\rav\rav.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00AC0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00C50000[0001F000]
[ M] 90. e:\program files\rising\rav\proccom.dll
00C70000[00024000]
[ M] 91. e:\program files\rising\rav\rscommx2.dll
26600000[000B5000]
[ M] 108. e:\program files\rising\rav\rsguilib.dll
7C140000[00103000]
[ M] 83. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 84. c:\windows\system32\msvcr71.dll
7C3A0000[0007B000]
[ M] 85. c:\windows\system32\msvcp71.dll
5D360000[0000A000]
[ M] 86. c:\windows\system32\mfc71chs.dll
23800000[00018000]
[ M] 109. e:\program files\rising\rav\rsxml.dll
23900000[00040000]
[ M] 110. e:\program files\rising\rav\pngdll.dll
23700000[00028000]
[ M] 111. e:\program files\rising\rav\rscommon.dll
27000000[000B7000]
[ M] 112. e:\program files\rising\rav\ravpagem.dll
01B40000[00032000]
[ M] 113. e:\program files\rising\rav\htmllib.dll
01CF0000[0001C000]
[AM] 58. c:\windows\system32\ravext.dll
02D70000[00075000]
[ M] 92. e:\program files\rising\rav\monrule.dll
27100000[0006C000]
[ M] 114. e:\program files\rising\rav\ravpagew.dll
01C90000[0000E000]
[ M] 87. e:\program files\rising\rav\rsappmgr.dll
02CB0000[00030000]
[ M] 88. e:\program files\rising\rav\cfgdll.dll
03C90000[00027000]
[ M] 97. e:\program files\rising\rav\fakescan.dll
03CC0000[00022000]
[ M] 98. e:\program files\rising\rav\scanner.dll
03CF0000[00042000]
[ M] 82. e:\program files\rising\rav\bwlist.dll
03D40000[0000C000]
[ M] 115. e:\program files\rising\rav\sysmail.dll
04B90000[00028000]
[ M] 100. e:\program files\rising\rav\recomp.dll
04CC0000[00030000]
[ M] 101. e:\program files\rising\rav\refs.dll
04D00000[0002C000]
[ M] 102. e:\program files\rising\rav\viruslib.dll
04E40000[00027000]
[ M] 103. e:\program files\rising\rav\relibldr.dll
04EC0000[0002F000]
[ M] 116. e:\program files\rising\rav\mvengine.dll
731B0000[0000A000]
[ M] 117. e:\program files\rising\rav\psapi.dll
05000000[0003F000]
[ M] 118. e:\program files\rising\rav\posttrt.dll
05550000[0001A000]
[ M] 104. e:\program files\rising\rav\ffr.dll
05580000[00020000]
[ M] 105. e:\program files\rising\rav\nvfile.dll
13AB0000[00044000]
[ M] 119. e:\program files\rising\rav\scanexec.dll
06820000[002DC000]
[ M] 120. e:\program files\rising\rav\unexe.dll
06B10000[0004E000]
[ M] 121. e:\program files\rising\rav\scanex.dll
06ED0000[00027000]
[ M] 122. e:\program files\rising\rav\pearc.dll
07010000[000DB000]
[ M] 123. e:\program files\rising\rav\extfile.dll
05810000[00046000]
[ M] 124. e:\program files\rising\rav\extole.dll
05BF0000[00022000]
[ M] 106. e:\program files\rising\rav\scansct.dll
05D70000[00035000]
[ M] 125. e:\program files\rising\rav\scanpack.dll
05DC0000[000B4000]
[ M] 126. e:\program files\rising\rav\revm.dll
060B0000[00017000]
[ M] 127. e:\program files\rising\rav\urutils.dll
060E0000[00011000]
[ M] 128. e:\program files\rising\rav\ur000.dat
14210000[00037000]
[ M] 129. e:\program files\rising\rav\extmail.dll
04A50000[00036000]
[ M] 130. e:\program files\rising\rav\scriptci.dll
079F0000[000FB000]
[ M] 131. e:\program files\rising\rav\uroutine.dll
07AF0000[00022000]
[ M] 132. e:\program files\rising\rav\scanmac.dll
0DCE0000[00012000]
[ M] 133. e:\program files\rising\rav\scanelf.dll
河北老古 - 2008-1-2 21:48:00
+ 00000488(1160) Explorer.EXE
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
012D0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
01620000[0001D000]
[AM] 49. e:\program files\360safe\safemon\safemon.dll
72C80000[00008000]
[ M] 73. c:\windows\system32\msacm32.drv
02960000[0055D000]
[AM] 54. c:\windows\system32\nvcpl.dll
014B0000[00034000]
[ M] 72. c:\windows\system32\nvrszhc.dll
019F0000[00073000]
[AM] 55. c:\windows\system32\nvshell.dll
22EC0000[0000D000]
[ M] 74. e:\program files\thunder network\thunder\components\resworker\dsbho_00.dll
22E90000[0000D000]
[ M] 75. e:\program files\thunder network\thunder\components\resworker\dataprocessor_00.dll
23700000[00028000]
[ M] 111. e:\program files\rising\rav\rscommon.dll
01670000[0001C000]
[AM] 58. c:\windows\system32\ravext.dll
+ 000004bc(1212) rfwsrv.exe
00400000[00036000]
[AM] 5. e:\program files\rising\rfw\rfwsrv.exe
7C140000[00103000]
[ M] 83. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 84. c:\windows\system32\msvcr71.dll
7C3A0000[0007B000]
[ M] 85. c:\windows\system32\msvcp71.dll
5D360000[0000A000]
[ M] 86. c:\windows\system32\mfc71chs.dll
10000000[0001F000]
[ M] 134. e:\program files\rising\rfw\proccom.dll
00730000[00024000]
[ M] 135. e:\program files\rising\rfw\rscommx2.dll
00970000[0000E000]
[ M] 136. e:\program files\rising\rfw\rsappmgr.dll
00990000[00030000]
[ M] 137. e:\program files\rising\rfw\cfgdll.dll
00AA0000[0000F000]
[ M] 138. e:\program files\rising\rfw\rfwrule.dll
00AF0000[0000C000]
[ M] 139. e:\program files\rising\rfw\rfwlog.dll
00B00000[00018000]
[ M] 140. e:\program files\rising\rfw\rfwdrv.dll
731B0000[0000A000]
[ M] 141. e:\program files\rising\rfw\psapi.dll
00C20000[0000E000]
[ M] 142. e:\program files\rising\rfw\ijt_ctrl.dll
00E60000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00D60000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00D80000[00016000]
[ M] 143. e:\program files\rising\rfw\unvdet.dll
00DD0000[00013000]
[ M] 144. e:\program files\rising\rfw\mports.dll
+ 00000500(1280) rfwproxy.exe
00400000[00236000]
[AM] 4. e:\program files\rising\rfw\rfwproxy.exe
7C140000[00103000]
[ M] 83. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 84. c:\windows\system32\msvcr71.dll
5D360000[0000A000]
[ M] 86. c:\windows\system32\mfc71chs.dll
731B0000[0000A000]
[ M] 141. e:\program files\rising\rfw\psapi.dll
10000000[0000F000]
[ M] 138. e:\program files\rising\rfw\rfwrule.dll
00E90000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00D90000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00DB0000[00016000]
[ M] 145. e:\program files\rising\rfw\monmid.dll
+ 00000600(1536) rfwstub.exe
00400000[00017000]
[ M] 146. e:\program files\rising\rfw\rfwstub.exe
7C3A0000[0007B000]
[ M] 85. c:\windows\system32\msvcp71.dll
7C340000[00056000]
[ M] 84. c:\windows\system32\msvcr71.dll
23700000[00028000]
[ M] 147. e:\program files\rising\rfw\rscommon.dll
+ 00000694(1684) RavStub.exe
00400000[00021000]
[ M] 148. e:\program files\rising\rav\ravstub.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00650000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00680000[0001F000]
[ M] 90. e:\program files\rising\rav\proccom.dll
007C0000[00024000]
[ M] 91. e:\program files\rising\rav\rscommx2.dll
23700000[00028000]
[ M] 111. e:\program files\rising\rav\rscommon.dll
+ 000006f0(1776) spoolsv.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00A60000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00B70000[00015000]
[AM] 65. c:\windows\system32\e_flbbhc.dll
68F00000[000DD000]
[ M] 149. c:\windows\system32\spool\drivers\w32x86\3\e_fuic1bhc.dll
00DD0000[0001D000]
[ M] 150. c:\windows\system32\spool\drivers\w32x86\3\e_fmai1bhc.dll
+ 00000754(1876) RfwMain.exe
00400000[00091000]
[AM] 60. e:\program files\rising\rfw\rfwmain.exe
7C140000[00103000]
[ M] 83. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 84. c:\windows\system32\msvcr71.dll
7C3A0000[0007B000]
[ M] 85. c:\windows\system32\msvcp71.dll
26600000[000B5000]
[ M] 151. e:\program files\rising\rfw\rsguilib.dll
5D360000[0000A000]
[ M] 86. c:\windows\system32\mfc71chs.dll
10000000[0001F000]
[ M] 134. e:\program files\rising\rfw\proccom.dll
00B10000[00024000]
[ M] 135. e:\program files\rising\rfw\rscommx2.dll
00C50000[0000E000]
[ M] 136. e:\program files\rising\rfw\rsappmgr.dll
00C70000[00030000]
[ M] 137. e:\program files\rising\rfw\cfgdll.dll
23700000[00028000]
[ M] 147. e:\program files\rising\rfw\rscommon.dll
00EC0000[00014000]
[ M] 152. e:\program files\rising\rfw\rfwctrl.dll
23800000[00018000]
[ M] 153. e:\program files\rising\rfw\rsxml.dll
23900000[00040000]
[ M] 154. e:\program files\rising\rfw\pngdll.dll
01030000[0000F000]
[ M] 138. e:\program files\rising\rfw\rfwrule.dll
+ 00000784(1924) alg.exe
+ 00000934(2356) 360Tray.exe
00400000[0002A000]
[ M] 155. e:\program files\360safe\safemon\360tray.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
009C0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00B50000[0001D000]
[AM] 49. e:\program files\360safe\safemon\safemon.dll
00C60000[0000C000]
[ M] 156. e:\program files\360safe\safemon\safekrnl.dll
00C70000[00022000]
[ M] 157. e:\program files\360safe\antiadwa.dll
00CA0000[0001C000]
[ M] 158. e:\program files\360safe\live.dll
+ 0000096c(2412) RavTask.exe
00400000[00034000]
[AM] 59. e:\program files\rising\rav\ravtask.exe
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00B50000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00B80000[0001F000]
[ M] 90. e:\program files\rising\rav\proccom.dll
00BA0000[00024000]
[ M] 91. e:\program files\rising\rav\rscommx2.dll
23700000[00028000]
[ M] 111. e:\program files\rising\rav\rscommon.dll
00E00000[0000E000]
[ M] 87. e:\program files\rising\rav\rsappmgr.dll
08E20000[00030000]
[ M] 88. e:\program files\rising\rav\cfgdll.dll
+ 0000099c(2460) ssgui.exe
00400000[000C6000]
[ M] 159. e:\program files\chinastar\shareshield\ssgui.exe
10000000[0001C000]
[ M] 160. e:\program files\chinastar\shareshield\winfw.dll
00A00000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00A40000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00D50000[0001D000]
[AM] 49. e:\program files\360safe\safemon\safemon.dll
010C0000[00011000]
[ M] 161. e:\program files\chinastar\shareshield\ssnet.dll
+ 00000b30(2864) Ras.exe
00400000[00170000]
[ M] 162. e:\program files\rising\antispyware\ras.exe
780C0000[00061000]
[ M] 163. e:\program files\rising\antispyware\msvcp60.dll
10000000[00013000]
[ M] 164. e:\program files\rising\antispyware\topsoft.dll
7C140000[00103000]
[ M] 165. e:\program files\rising\antispyware\mfc71.dll
7C340000[00056000]
[ M] 166. e:\program files\rising\antispyware\msvcr71.dll
7C3A0000[0007B000]
[ M] 167. e:\program files\rising\antispyware\msvcp71.dll
5D360000[0000A000]
[ M] 86. c:\windows\system32\mfc71chs.dll
00C60000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00DB0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00F20000[0001F000]
[ M] 90. e:\program files\rising\rav\proccom.dll
00F40000[00024000]
[ M] 91. e:\program files\rising\rav\rscommx2.dll
01090000[000BD000]
[ M] 168. e:\program files\rising\antispyware\rasgui.dll
01050000[0001C000]
[AM] 58. c:\windows\system32\ravext.dll
03060000[00028000]
[ M] 76. e:\program files\rising\rav\ravscrch.dll
02950000[0001F000]
[ M] 169. e:\program files\rising\antispyware\secscan.dll
02A30000[00015000]
[ M] 170. e:\program files\rising\antispyware\secex.dll
河北老古 - 2008-1-2 21:49:00
+ 00000d38(3384) QQ.exe
00400000[001BD000]
[ M] 171. f:\program files\tencent\qq\qq.exe
10000000[00022000]
[ M] 172. f:\program files\tencent\qq\coralassist.dll
005D0000[0007E000]
[ M] 173. f:\program files\tencent\qq\coralqq.dll
003C0000[00029000]
[ M] 174. f:\program files\tencent\qq\kql.dll
60A80000[000F2000]
[ M] 175. f:\program files\tencent\qq\mfc42.dll
00650000[00009000]
[ M] 176. f:\program files\tencent\qq\ipsearcher.dll
00670000[00279000]
[ M] 177. f:\program files\tencent\qq\qqbaseclassindll.dll
008F0000[000BE000]
[ M] 178. f:\program files\tencent\qq\qqhelperdll.dll
600A0000[00074000]
[ M] 179. f:\program files\tencent\qq\basicctrldll.dll
01D60000[0000B000]
[ M] 180. f:\program files\tencent\qq\nodisturbfilter.cqx
01DF0000[00006000]
[ M] 181. f:\program files\tencent\qq\confighotkey.cqx
02080000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
021C0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
62250000[00005000]
[ M] 182. f:\program files\tencent\qq\riched32.dll
621E0000[00068000]
[ M] 183. f:\program files\tencent\qq\riched20.dll
61340000[0003A000]
[ M] 184. f:\program files\tencent\qq\qqapi.dll
623A0000[00007000]
[ M] 185. f:\program files\tencent\qq\timproxy.dll
027E0000[00006000]
[ M] 186. f:\program files\tencent\qq\autoreconnect.cqx
60890000[0003B000]
[ M] 187. f:\program files\tencent\qq\loginctrl.dll
608D0000[0009A000]
[ M] 188. f:\program files\tencent\qq\loginctrlres.dll
03040000[00562000]
[ M] 189. f:\program files\tencent\qq\qqres.dll
61890000[0009A000]
[ M] 190. f:\program files\tencent\qq\qqmainframe.dll
60400000[001A3000]
[ M] 191. f:\program files\tencent\qq\gdiplus.dll
03910000[00020000]
[ M] 192. f:\program files\tencent\qq\unreadmsgmgr.dll
03F50000[00138000]
[ M] 193. f:\program files\tencent\qq\cqqapplication.dll
603C0000[0003F000]
[ M] 194. f:\program files\tencent\qq\flashavatardll.dll
60C20000[0005F000]
[ M] 195. f:\program files\tencent\qq\newskin.dll
041F0000[00032000]
[ M] 196. f:\program files\tencent\qq\mailsummary.dll
043D0000[0000F000]
[ M] 197. f:\program files\tencent\qq\coralhotkey.cqx
61840000[00017000]
[ M] 198. f:\program files\tencent\qq\qqknowledgesearch.dll
04780000[0022C000]
[ M] 199. f:\program files\tencent\qq\qqallinone.dll
623E0000[0002B000]
[ M] 200. f:\program files\tencent\qq\sccore.dll
60140000[00034000]
[ M] 201. f:\program files\tencent\qq\cameradll.dll
04710000[00025000]
[ M] 202. f:\program files\tencent\qq\qqspace.dll
02900000[00071000]
[ M] 203. f:\program files\tencent\qq\vbscript.dll
61700000[00071000]
[ M] 204. f:\program files\tencent\qq\qqgroupmng.dll
03710000[0003E000]
[ M] 205. f:\program files\tencent\qq\qqsysmsgmng.dll
62550000[00017000]
[ M] 206. f:\program files\tencent\qq\userdefinedhead.dll
03E10000[00115000]
[ M] 207. f:\program files\tencent\qq\qqplugin.dll
029A0000[0000E000]
[ M] 208. f:\program files\tencent\qq\qqconfigplugin.dll
61380000[0003D000]
[ M] 209. f:\program files\tencent\qq\qqavatar.dll
03790000[00055000]
[ M] 210. f:\program files\tencent\qq\qqcustomface.dll
62320000[00016000]
[ M] 211. f:\program files\tencent\qq\qringmng.dll
05B00000[000A8000]
[ M] 212. f:\program files\tencent\qq\longconnection.dll
61A30000[0002B000]
[ M] 213. f:\program files\tencent\qq\qqpet.dll
60D20000[00026000]
[ M] 214. f:\program files\tencent\qq\phoneapi.dll
60370000[0000D000]
[ M] 215. f:\program files\tencent\qq\dialerallinone.dll
72C80000[00008000]
[ M] 73. c:\windows\system32\msacm32.drv
60120000[0001F000]
[ M] 216. f:\program files\tencent\qq\bqqapplication.dll
05BC0000[0000F000]
[ M] 217. f:\program files\tencent\qq\personaldesktop.dll
60180000[0004F000]
[ M] 218. f:\program files\tencent\qq\commercesmng.dll
06420000[00286000]
[ M] 219. f:\program files\tencent\qq\qqaddr.dll
30000000[003AE000]
[ M] 77. c:\windows\system32\macromed\flash\flash9e.ocx
62130000[0002D000]
[ M] 220. f:\program files\tencent\qq\qqscenemng.dll
02350000[0002C000]
[ M] 221. f:\program files\tencent\qq\addrsearch.dll
02380000[0001D000]
[AM] 49. e:\program files\360safe\safemon\safemon.dll
河北老古 - 2008-1-2 21:50:00
+ 00000d64(3428) TIMPlatform.exe
00400000[00013000]
[ M] 222. f:\program files\tencent\qq\timplatform.exe
10000000[0001D000]
[AM] 49. e:\program files\360safe\safemon\safemon.dll
623A0000[00007000]
[ M] 185. f:\program files\tencent\qq\timproxy.dll
+ 00000dc8(3528) QQ.exe
00400000[001BD000]
[ M] 171. f:\program files\tencent\qq\qq.exe
10000000[00022000]
[ M] 172. f:\program files\tencent\qq\coralassist.dll
005D0000[0007E000]
[ M] 173. f:\program files\tencent\qq\coralqq.dll
003C0000[00029000]
[ M] 174. f:\program files\tencent\qq\kql.dll
60A80000[000F2000]
[ M] 175. f:\program files\tencent\qq\mfc42.dll
00650000[00009000]
[ M] 176. f:\program files\tencent\qq\ipsearcher.dll
00670000[00279000]
[ M] 177. f:\program files\tencent\qq\qqbaseclassindll.dll
008F0000[000BE000]
[ M] 178. f:\program files\tencent\qq\qqhelperdll.dll
600A0000[00074000]
[ M] 179. f:\program files\tencent\qq\basicctrldll.dll
01D60000[0000B000]
[ M] 180. f:\program files\tencent\qq\nodisturbfilter.cqx
01DF0000[00006000]
[ M] 181. f:\program files\tencent\qq\confighotkey.cqx
02080000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
021C0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
62250000[00005000]
[ M] 182. f:\program files\tencent\qq\riched32.dll
621E0000[00068000]
[ M] 183. f:\program files\tencent\qq\riched20.dll
61340000[0003A000]
[ M] 184. f:\program files\tencent\qq\qqapi.dll
623A0000[00007000]
[ M] 185. f:\program files\tencent\qq\timproxy.dll
026E0000[00006000]
[ M] 186. f:\program files\tencent\qq\autoreconnect.cqx
60890000[0003B000]
[ M] 187. f:\program files\tencent\qq\loginctrl.dll
608D0000[0009A000]
[ M] 188. f:\program files\tencent\qq\loginctrlres.dll
03040000[00562000]
[ M] 189. f:\program files\tencent\qq\qqres.dll
61890000[0009A000]
[ M] 190. f:\program files\tencent\qq\qqmainframe.dll
60400000[001A3000]
[ M] 191. f:\program files\tencent\qq\gdiplus.dll
03EF0000[00020000]
[ M] 192. f:\program files\tencent\qq\unreadmsgmgr.dll
03F50000[00138000]
[ M] 193. f:\program files\tencent\qq\cqqapplication.dll
603C0000[0003F000]
[ M] 194. f:\program files\tencent\qq\flashavatardll.dll
60C20000[0005F000]
[ M] 195. f:\program files\tencent\qq\newskin.dll
041F0000[00032000]
[ M] 196. f:\program files\tencent\qq\mailsummary.dll
043D0000[0000F000]
[ M] 197. f:\program files\tencent\qq\coralhotkey.cqx
61840000[00017000]
[ M] 198. f:\program files\tencent\qq\qqknowledgesearch.dll
049F0000[0022C000]
[ M] 199. f:\program files\tencent\qq\qqallinone.dll
623E0000[0002B000]
[ M] 200. f:\program files\tencent\qq\sccore.dll
60140000[00034000]
[ M] 201. f:\program files\tencent\qq\cameradll.dll
04530000[00025000]
[ M] 202. f:\program files\tencent\qq\qqspace.dll
04570000[00071000]
[ M] 203. f:\program files\tencent\qq\vbscript.dll
61700000[00071000]
[ M] 204. f:\program files\tencent\qq\qqgroupmng.dll
62550000[00017000]
[ M] 206. f:\program files\tencent\qq\userdefinedhead.dll
03DA0000[00115000]
[ M] 207. f:\program files\tencent\qq\qqplugin.dll
03710000[0000E000]
[ M] 208. f:\program files\tencent\qq\qqconfigplugin.dll
61380000[0003D000]
[ M] 209. f:\program files\tencent\qq\qqavatar.dll
03790000[00055000]
[ M] 210. f:\program files\tencent\qq\qqcustomface.dll
62320000[00016000]
[ M] 211. f:\program files\tencent\qq\qringmng.dll
72C80000[00008000]
[ M] 73. c:\windows\system32\msacm32.drv
074C0000[000A8000]
[ M] 212. f:\program files\tencent\qq\longconnection.dll
61A30000[0002B000]
[ M] 213. f:\program files\tencent\qq\qqpet.dll
07020000[0003E000]
[ M] 205. f:\program files\tencent\qq\qqsysmsgmng.dll
60D20000[00026000]
[ M] 214. f:\program files\tencent\qq\phoneapi.dll
60370000[0000D000]
[ M] 215. f:\program files\tencent\qq\dialerallinone.dll
606C0000[00024000]
[ M] 223. f:\program files\tencent\qq\groupconnection.dll
72C60000[00007000]
[ M] 224. c:\windows\system32\msadp32.acm
60770000[0001A000]
[ M] 225. f:\program files\tencent\qq\imageole.dll
61860000[00015000]
[ M] 226. f:\program files\tencent\qq\qqliveqmng.dll
081A0000[00028000]
[ M] 76. e:\program files\rising\rav\ravscrch.dll
60120000[0001F000]
[ M] 216. f:\program files\tencent\qq\bqqapplication.dll
07630000[0000F000]
[ M] 217. f:\program files\tencent\qq\personaldesktop.dll
60180000[0004F000]
[ M] 218. f:\program files\tencent\qq\commercesmng.dll
06120000[00286000]
[ M] 219. f:\program files\tencent\qq\qqaddr.dll
30000000[003AE000]
[ M] 77. c:\windows\system32\macromed\flash\flash9e.ocx
62130000[0002D000]
[ M] 220. f:\program files\tencent\qq\qqscenemng.dll
06AD0000[00163000]
[ M] 78. c:\windows\system32\sogoupy.ime
02360000[0001D000]
[ M] 79. c:\windows\system32\dllmergedict.dll
05F50000[00046000]
[ M] 80. e:\program files\sogouinput\plugin\sgimeword.dll
61880000[0000E000]
[ M] 227. f:\program files\tencent\qq\qqmagicface.dll
02320000[0001D000]
[AM] 49. e:\program files\360safe\safemon\safemon.dll
河北老古 - 2008-1-2 21:50:00
+ 00000e60(3680) RavMon.exe
00400000[00057000]
[ M] 228. e:\program files\rising\rav\ravmon.exe
7C140000[00103000]
[ M] 83. c:\windows\system32\mfc71.dll
7C340000[00056000]
[ M] 84. c:\windows\system32\msvcr71.dll
7C3A0000[0007B000]
[ M] 85. c:\windows\system32\msvcp71.dll
5D360000[0000A000]
[ M] 86. c:\windows\system32\mfc71chs.dll
10000000[00016000]
[ M] 70. e:\program files\rising\rfw\ijt_base.dll
00BF0000[0000F000]
[ M] 71. e:\program files\rising\rfw\olemon.dll
00C50000[0001F000]
[ M] 90. e:\program files\rising\rav\proccom.dll
00C70000[00024000]
[ M] 91. e:\program files\rising\rav\rscommx2.dll
23700000[00028000]
[ M] 111. e:\program files\rising\rav\rscommon.dll
00ED0000[00028000]
[ M] 100. e:\program files\rising\rav\recomp.dll
00F10000[00030000]
[ M] 101. e:\program files\rising\rav\refs.dll
00F50000[0002C000]
[ M] 102. e:\program files\rising\rav\viruslib.dll
01090000[00027000]
[ M] 103. e:\program files\rising\rav\relibldr.dll
01110000[0000E000]
[ M] 87. e:\program files\rising\rav\rsappmgr.dll
01130000[00030000]
[ M] 88. e:\program files\rising\rav\cfgdll.dll
01290000[00075000]
[ M] 92. e:\program files\rising\rav\monrule.dll
23900000[00040000]
[ M] 110. e:\program files\rising\rav\pngdll.dll
26600000[000B5000]
[ M] 108. e:\program files\rising\rav\rsguilib.dll
23800000[00018000]
[ M] 109. e:\program files\rising\rav\rsxml.dll
© 2000 - 2026 Rising Corp. Ltd.