[CODE] 2008-06-03,00:41:18 System Repair Engineer 2.5.16.900 Smallfrogs (http://www.KZTechs.com) Windows XP Professional Service Pack 2 (Build 2600) - 管理权限用户 - 完整功能 以下内容被选中: 所有的启动项目(包括注册表、启动文件夹、服务等) 浏览器加载项 正在运行的进程(包括进程模块信息) 文件关联 Winsock 提供者 Autorun.inf HOSTS 文件 进程特权扫描 启动项目 注册表 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] [(Verified)Microsoft Windows Publisher] [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows] <> [N/A] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] [] [(Verified)"INTER CHINA NETWORK SOFTWARE (BEIJING) CO., LTD"] [(Verified)"INTER CHINA NETWORK SOFTWARE (BEIJING) CO., LTD"] [(Verified)Microsoft Windows Hardware Compatibility Publisher] [N/A] <"C:\Program Files\Rising\Rav\RavTask.exe" -system> [(Verified)Beijing Rising Science and Technology Corporation Limited] [InstallShield Software Corporation] <"C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start> [InstallShield Software Corporation] [CIDC] <"C:\Program Files\QuickTime\QTTask.exe" -atboottime> [Apple Inc.] <"C:\Program Files\iTunes\iTunesHelper.exe"> [(Verified)Apple Inc.] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] [(Verified)Microsoft Windows Publisher] [(Verified)Microsoft Windows Publisher] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows] [] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] [(Verified)Microsoft Windows Publisher] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] <{D157330A-9EF3-49F8-9A67-4141AC41ADD4}> [(Verified)"INTER CHINA NETWORK SOFTWARE (BEIJING) CO., LTD"] <{32CD708B-60A7-4C00-9377-D73EAA495F0F}> [(Verified)Microsoft Windows Publisher] <{6C8D1401-A58D-A81C-CD24-A5915C4517C6}> [] <{5B1AEF69-DDAE-FDAD-DCAB-698F026ABDB5}> [] <{45694105-5108-9405-3695-954187462154}> [] <{8490415F-65F8-B5C5-D8BA-9405FB120548}> [] <{4C648541-1025-9650-9057-6541258720C4}> [] <{4629FF4F-ACDB-5C90-A098-FACB3456A264}> [] <{6A041F13-A111-12A3-B0CF-F99818AA68A6}> [] <{4FD45A54-9875-698F-E56E-65102358FDF4}> [] <{81954FAC-1023-154F-895A-1458258AD818}> [] <{67FD640A-158F-48AC-FD14-1597F14A9776}> [] <{528DF602-9541-A985-210A-984A698C6F25}> [] <{22596546-2036-9451-6058-658402589722}> [] <{2D698451-2015-6358-9871-2015987452D2}> [] <{3A698102-5904-AFD0-20DF-CD1A65829CA3}> [N/A] <{9A59145F-315D-BC23-AC1F-145DF81A34A9}> [] <{50940F85-F015-14F1-A05F-F69858AC6D05}> [] <{83BA45AF-FAAA-CDDD-BEEE-BCDE1234AB38}> [] <{370165F1-9F65-569F-F895-F14F58F41073}> [N/A] <{3E035987-F585-68D1-AC28-98FA58E459E3}> [N/A] <{44FAE856-AD58-20CB-A025-CD4895FA6E44}> [] <{35671234-7890-ABCD-CDEF-567801237653}> [] <{6319A1F1-9410-9654-3201-345FFA349136}> [] <{91698482-6555-3666-1222-954784129019}> [] <{32023698-6984-8541-9654-698745012523}> [] <{14698742-2059-3025-9058-954023874141}> [] <{33512378-9874-5641-1025-985420368733}> [] <{2A095412-A568-B258-C587-D148E148F0A2}> [] <{4A069845-2036-6084-9054-6087502480A4}> [] <{4A698102-5904-AFD0-20DF-CD1A65829CA4}> [] <{470165F1-9F65-569F-F895-F14F58F41074}> [] <{70AF1289-F140-A140-D012-C1458759FC07}> [] <{18093456-9012-4568-9076-908765467181}> [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}] <%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE> [N/A] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}] <%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [N/A] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] <%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll> [N/A] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] <"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install> [N/A] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}] [(Verified)Microsoft Windows Publisher] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] [(Verified)Microsoft Windows Component Publisher] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}] <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install> [N/A] ================================== 启动文件夹 [QQ游戏启动加速程序] C:\PROGRA~1\Tencent\QQGAME\Accel.exe [深圳市腾讯计算机系统有限公司]> ================================== 服务 [Apple Mobile Device / Apple Mobile Device][Running/Auto Start] <"C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe"> [Ati HotKey Poller / Ati HotKey Poller][Running/Auto Start] [BlueSoleil Hid Service / BlueSoleil Hid Service][Running/Auto Start] [Bonjour 服务 / Bonjour Service][Running/Auto Start] <"C:\Program Files\Bonjour\mDNSResponder.exe"> [Human Interface Device Access / HidServ][Stopped/Disabled] %SystemRoot%\System32\hidserv.dll> [iPod 服务 / iPod Service][Running/Manual Start] <"C:\Program Files\iPod\bin\iPodService.exe"> [Rising Process Communication Center / RsCCenter][Running/Auto Start] <"C:\Program Files\Rising\Rav\CCenter.exe"> [Rising RealTime Monitor / RsRavMon][Stopped/Auto Start] <"C:\PROGRAM FILES\RISING\RAV\Ravmond.exe"> [Windows Accounts Driver / WindowsRemote][Stopped/Manual Start] <2 - 系统找不到指定的文件。 > ================================== 驱动程序 [Intel(r) 82801 Audio Driver Install Service (WDM) / ac97intc][Stopped/Manual Start] [Service for Realtek AC97 Audio (WDM) / ALCXWDM][Running/Manual Start] [AliIde / AliIde][Stopped/Boot Start] <\SystemRoot\System32\DRIVERS\aliide.sys> [AMD K8 Processor Driver / AmdK8][Stopped/Manual Start] [ati2mtag / ati2mtag][Running/Manual Start] [Bluetooth Audio Service / BlueletAudio][Running/Manual Start] [Bluetooth PAN Network Adapter / BT][Stopped/Manual Start] [Bluetooth USB For Bluetooth Service / Btcsrusb][Stopped/Manual Start] [Bluetooth HID Enumerator / BTHidEnum][Running/Manual Start] [Bluetooth HID Manager Service / BTHidMgr][Running/Boot Start] <\SystemRoot\System32\Drivers\BTHidMgr.sys> [CmdIde / CmdIde][Stopped/Boot Start] <\SystemRoot\System32\DRIVERS\cmdide.sys> [CnsMinKP / CnsMinKP][Running/Boot Start] <\SystemRoot\system32\drivers\CnsMinKP.sys><国风因特软件(北京)有限公司> [VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver / FETNDIS][Stopped/Manual Start] [GEARAspiWDM / GEARAspiWDM][Running/Manual Start] [HookCont / HookCont][Running/System Start] <\SystemRoot\system32\drivers\HookCont.sys> [HookNtos / HookNtos][Running/System Start] <\SystemRoot\system32\drivers\HookNtos.sys> [HookReg / HookReg][Running/System Start] <\SystemRoot\system32\drivers\HookReg.sys> [HookSys / HookSys][Running/System Start] <\SystemRoot\system32\drivers\HookSys.sys> [npkcrypt / npkcrypt][Stopped/Auto Start] <\??\C:\Program Files\QQ2006\npkcrypt.sys> [nv / nv][Stopped/Manual Start] [NVATABUS / NVATABUS][Running/Boot Start] <\SystemRoot\System32\DRIVERS\NVATABUS.SYS> [NVIDIA nForce Networking Controller Driver / NVENETFD][Running/Manual Start] [NVIDIA Network Bus Enumerator / nvnetbus][Running/Manual Start] [NVIDIA nForce AGP Bus Filter / nv_agp][Running/Boot Start] <\SystemRoot\system32\DRIVERS\nv_agp.sys> [oisin / oisin][Running/Boot Start] <\SystemRoot\\SystemRoot\System32\drivers\oisin.sys> [Direct Parallel Link Driver / Ptilink][Running/Manual Start] [RsNTGDI / RsNTGDI][Running/Boot Start] <\SystemRoot\system32\Drivers\RsNTGdi.sys> [Secdrv / Secdrv][Stopped/Manual Start] [Virtual Serial port driver / VComm][Running/Manual Start] [Bluetooth VComm Manager Service / VcommMgr][Running/Manual Start] [World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start] [Vimicro USB PC Camera (ZC0301PL) / ZSMC301b][Running/Manual Start] ================================== 浏览器加载项 [ThunderAtOnce Class] {01443AEC-0FD1-40fd-9C87-E93D1494C233} [] {14698742-2059-3025-9058-954023874141} [] {18093456-9012-4568-9076-908765467181} [] {22596546-2036-9451-6058-658402589722} [] {2A095412-A568-B258-C587-D148E148F0A2} [] {2D698451-2015-6358-9871-2015987452D2} [] {32023698-6984-8541-9654-698745012523} [] {33512378-9874-5641-1025-985420368733} [] {35671234-7890-ABCD-CDEF-567801237653} [] {370165F1-9F65-569F-F895-F14F58F41073} [] {3A698102-5904-AFD0-20DF-CD1A65829CA3} [] {3E035987-F585-68D1-AC28-98FA58E459E3} [] {44FAE856-AD58-20CB-A025-CD4895FA6E44} [] {45694105-5108-9405-3695-954187462154} [] {4629FF4F-ACDB-5C90-A098-FACB3456A264} [] {470165F1-9F65-569F-F895-F14F58F41074} [] {4A069845-2036-6084-9054-6087502480A4} [] {4A698102-5904-AFD0-20DF-CD1A65829CA4} [] {4C648541-1025-9650-9057-6541258720C4} [] {4FD45A54-9875-698F-E56E-65102358FDF4} [] {50940F85-F015-14F1-A05F-F69858AC6D05} [] {528DF602-9541-A985-210A-984A698C6F25} [] {5B1AEF69-DDAE-FDAD-DCAB-698F026ABDB5} [] {6319A1F1-9410-9654-3201-345FFA349136} [] {67FD640A-158F-48AC-FD14-1597F14A9776} [] {6A041F13-A111-12A3-B0CF-F99818AA68A6} [] {6C8D1401-A58D-A81C-CD24-A5915C4517C6} [] {70AF1289-F140-A140-D012-C1458759FC07} [] {81954FAC-1023-154F-895A-1458258AD818} [] {83BA45AF-FAAA-CDDD-BEEE-BCDE1234AB38} [] {8490415F-65F8-B5C5-D8BA-9405FB120548} [Thunder Browser Helper] {889D2FEB-5411-4565-8998-1DD2C5261283} [] {91698482-6555-3666-1222-954784129019} [] {9A59145F-315D-BC23-AC1F-145DF81A34A9} [CnsHook Class] {D157330A-9EF3-49F8-9A67-4141AC41ADD4} [SrchHook Class] {F08555B0-9CC3-11D2-AA8E-000000000000} [启动迅雷5] {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} [浩方对战平台] {0A155D3C-68E2-4215-A47A-E800A446447A} [Yahoo 3.5G电邮] {507F9113-CD77-4866-BA92-0E86DA3D0B97} [名品折扣] {59BC54A2-56B3-44a0-93E5-432D58746E26} [雅虎助手] {5D73EE86-05F1-49ed-B850-E423120EC338} [雅虎WIDGET] {6354ABE6-05F1-49ed-B850-E423120EC338} [情景聊天] {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} [] {ECF2E268-F28C-48d2-9AB7-8F69C11CCB71} [] {FD00D911-7529-4084-9946-A29F1BDF4FE5} [IE搜索工具条] {BE830FD4-E393-417F-9F4B-CC70ABB3384C} [金山快译(&K)] {6C3797D2-3FEF-4cd4-B654-D3AE55B4128C} [iTrusPTA Class] {1E0DFFCF-27FF-4574-849B-55007349FEDA} [EditCtrl Class] {488A4255-3236-44B3-8F27-FA1AECAA8844} [PowerPlayer Control] {5EC7C511-CD0F-42E6-830C-1BD9882F3458} [AxSubmitControl Class] {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} [PhotosCtrl Class] {9C3C2C08-C494-4F52-AE94-85156A447D43} [ThunderAtOnce Class] {01443AEC-0FD1-40FD-9C87-E93D1494C233} [GerneralPeerID Class] {0A47E819-F82E-4D5D-B806-6A9EA94D68CD} [] {14698742-2059-3025-9058-954023874141} [] {18093456-9012-4568-9076-908765467181} [iTrusPTA Class] {1E0DFFCF-27FF-4574-849B-55007349FEDA} [PowerList Control] {20C2C286-BDE8-441B-B73D-AFA22D914DA5} [] {22596546-2036-9451-6058-658402589722} [Windows Media Player] {22D6F312-B0F6-11D0-94AB-0080C74C7E95} [] {2A095412-A568-B258-C587-D148E148F0A2} [] {2D698451-2015-6358-9871-2015987452D2} [] {32023698-6984-8541-9654-698745012523} [] {33512378-9874-5641-1025-985420368733} [] {35671234-7890-ABCD-CDEF-567801237653} [] {370165F1-9F65-569F-F895-F14F58F41073} [] {3A698102-5904-AFD0-20DF-CD1A65829CA3} [] {3E035987-F585-68D1-AC28-98FA58E459E3} [] {44FAE856-AD58-20CB-A025-CD4895FA6E44} [] {45694105-5108-9405-3695-954187462154} [] {4629FF4F-ACDB-5C90-A098-FACB3456A264} [] {470165F1-9F65-569F-F895-F14F58F41074} [XML Document] {48123BC4-99D9-11D1-A6B3-00C04FD91555} <%SystemRoot%\system32\msxml3.dll, N/A> [Thunder Agent Class] {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} [EditCtrl Class] {488A4255-3236-44B3-8F27-FA1AECAA8844} [] {4A069845-2036-6084-9054-6087502480A4} [] {4A698102-5904-AFD0-20DF-CD1A65829CA4} [] {4C648541-1025-9650-9057-6541258720C4} [] {4FD45A54-9875-698F-E56E-65102358FDF4} [] {50940F85-F015-14F1-A05F-F69858AC6D05} [] {528DF602-9541-A985-210A-984A698C6F25} [] {5B1AEF69-DDAE-FDAD-DCAB-698F026ABDB5} [PowerPlayer Control] {5EC7C511-CD0F-42E6-830C-1BD9882F3458} [] {6319A1F1-9410-9654-3201-345FFA349136} [XMP Class] {6483F145-A768-4C41-AACC-52D4D7845851} [] {67FD640A-158F-48AC-FD14-1597F14A9776} [XDRM] {693571CB-54A3-4E90-9D52-EEAE1334E2D3} [] {6A041F13-A111-12A3-B0CF-F99818AA68A6} [Windows Media Player] {6BF52A52-394A-11D3-B153-00C04F79FAA6} [金山快译(&K)] {6C3797D2-3FEF-4CD4-B654-D3AE55B4128C} [] {6C8D1401-A58D-A81C-CD24-A5915C4517C6} [CCtInf Class] {6DBB2904-082D-4DB0-944A-21C22BA121F4} [WangWangObj Class] {6E213FC7-DD5A-4115-B7E6-D4C7838C361E} [] {70AF1289-F140-A140-D012-C1458759FC07} [AxInputControl Class] {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} [MediaComm Class] {7670648D-461B-42AF-BDFE-46D26AF5EFF2} [] {81954FAC-1023-154F-895A-1458258AD818} [] {83BA45AF-FAAA-CDDD-BEEE-BCDE1234AB38} [] {8490415F-65F8-B5C5-D8BA-9405FB120548} [Microsoft Web 浏览器] {8856F961-340A-11D0-A96B-00C04FD705A2} [Thunder Browser Helper] {889D2FEB-5411-4565-8998-1DD2C5261283} [AxSubmitControl Class] {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} [] {91698482-6555-3666-1222-954784129019} [ImageUploader Control] {97488D0C-D52F-4E0C-9B59-BCFCD3F7B390} [] {9A59145F-315D-BC23-AC1F-145DF81A34A9} [PhotosCtrl Class] {9C3C2C08-C494-4F52-AE94-85156A447D43} [RMGetLicense Class] {A9FC132B-096D-460B-B7D5-1DB0FAE0C062} [Thunder DapCtrl] {ACACC6EB-1FBA-4E13-A729-53AEB2DF54F8} [SearchAssistantOC] {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A> [RDS.DataSpace] {BD96C556-65A3-11D0-983A-00C04FC29E36} [IE搜索工具条] {BE830FD4-E393-417F-9F4B-CC70ABB3384C} [RealPlayer G2 Control] {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} [CnsHook Class] {D157330A-9EF3-49F8-9A67-4141AC41ADD4} [Shockwave Flash Object] {D27CDB6E-AE6D-11CF-96B8-444553540000} [Thunder DapPlayer] {EEDD6FF9-13DE-496B-9A1C-D78B3215E266} [SrchHook Class] {F08555B0-9CC3-11D2-AA8E-000000000000} [XPPlayer Class] {F3E70CEA-956E-49CC-B444-73AFE593AD7F} [使用迅雷下载] [使用迅雷下载全部链接] [导出到 Microsoft Office Excel(&X)] [添加到QQ表情] [添加到网络硬盘] ================================== 正在运行的进程 [PID: 636 / SYSTEM][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 716 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 744 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [C:\WINDOWS\system32\Ati2evxx.dll] [ATI Technologies Inc., 6.14.10.4146] [C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [PID: 788 / SYSTEM][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 800 / SYSTEM][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 960 / SYSTEM][C:\WINDOWS\system32\Ati2evxx.exe] [ATI Technologies Inc., 6.14.10.4146] [C:\WINDOWS\system32\Ati2edxx.dll] [ATI Technologies, Inc., 6, 14, 10, 2504] [PID: 972 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1040 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [PID: 1136 / SYSTEM][C:\Program Files\Rising\Rav\CCenter.exe] [Beijing Rising Technology Co., Ltd., 20.0.0.28] [PID: 1164 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [C:\WINDOWS\system32\wups2.dll] [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)] [PID: 1232 / SYSTEM][C:\WINDOWS\system32\Ati2evxx.exe] [ATI Technologies Inc., 6.14.10.4146] [C:\WINDOWS\system32\Ati2edxx.dll] [ATI Technologies, Inc., 6, 14, 10, 2504] [C:\WINDOWS\system32\ati2evxx.dll] [ATI Technologies Inc., 6.14.10.4146] [PID: 1264 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1320 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 1472 / SYSTEM][C:\PROGRAM FILES\RISING\RAV\ravmond.exe] [Beijing Rising Technology Co., Ltd., 20.0.0.76] [C:\PROGRAM FILES\RISING\RAV\BWList.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.4] [C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0] [C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4] [C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0] [C:\PROGRAM FILES\RISING\RAV\RSAPPMGR.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.0] [C:\PROGRAM FILES\RISING\RAV\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.16] [C:\PROGRAM FILES\RISING\RAV\RsLog.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.34] [C:\PROGRAM FILES\RISING\RAV\ProcCom.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\PROGRAM FILES\RISING\RAV\RsCommX2.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\PROGRAM FILES\RISING\RAV\MonRule.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.29] [C:\PROGRAM FILES\RISING\RAV\Hooksys.dll] [Beijing Rising Technology Co., Ltd, 22, 0, 0, 9] [C:\PROGRAM FILES\RISING\RAV\HookReg.dll] [Beijing Rising Technology Co., Ltd, 22, 0, 0, 4] [C:\PROGRAM FILES\RISING\RAV\HookNtos.dll] [Beijing Rising Technology Co., Ltd, 22, 0, 0, 2] [C:\PROGRAM FILES\RISING\RAV\rswalmon.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 22] [C:\PROGRAM FILES\RISING\RAV\recomp.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 38] [C:\PROGRAM FILES\RISING\RAV\refs.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 17] [C:\PROGRAM FILES\RISING\RAV\ffr.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 14] [C:\Program Files\Rising\Rav\RsStore.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.8] [C:\PROGRAM FILES\RISING\RAV\extfile.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 29] [C:\PROGRAM FILES\RISING\RAV\HookCont.dll] [Beijing Rising Technology Co., Ltd, 22, 0, 0, 1] [C:\Program Files\Rising\Rav\fakescan.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.13] [C:\Program Files\Rising\Rav\Scanner.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.36] [C:\PROGRAM FILES\RISING\RAV\pearc.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 5] [C:\PROGRAM FILES\RISING\RAV\viruslib.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 26] [C:\PROGRAM FILES\RISING\RAV\relibldr.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [C:\PROGRAM FILES\RISING\RAV\HookWeb.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.2] [C:\PROGRAM FILES\RISING\RAV\nvfile.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 6] [C:\PROGRAM FILES\RISING\RAV\scanexec.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 17] [C:\PROGRAM FILES\RISING\RAV\unexe.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 4] [C:\PROGRAM FILES\RISING\RAV\scanex.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 73] [C:\PROGRAM FILES\RISING\RAV\scanpack.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 9] [C:\PROGRAM FILES\RISING\RAV\revm.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 8] [C:\PROGRAM FILES\RISING\RAV\urutils.dll] [, 20, 0, 0, 6] [C:\PROGRAM FILES\RISING\RAV\ur000.dat] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 18] [C:\PROGRAM FILES\RISING\RAV\scriptci.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3] [C:\PROGRAM FILES\RISING\RAV\uroutine.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 26] [C:\PROGRAM FILES\RISING\RAV\scansct.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 9] [C:\PROGRAM FILES\RISING\RAV\posttrt.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 18] [PID: 1824 / SYSTEM][C:\PROGRAM FILES\RISING\RAV\RavStub.exe] [Beijing Rising Technology Co., Ltd., 20.0.0.9] [C:\PROGRAM FILES\RISING\RAV\ProcCom.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\PROGRAM FILES\RISING\RAV\RsCommX2.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\PROGRAM FILES\RISING\RAV\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [PID: 1920 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [PID: 124 / Administrator][C:\WINDOWS\system32\Rundll32.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\WINDOWS\DOWNLO~1\CnsMinIO.dll] [国风因特软件(北京)有限公司, 2.5.0.8] [C:\WINDOWS\DOWNLO~1\cnsio.dll] [国风因特软件(北京)有限公司, 2.5.0.6] [C:\WINDOWS\DOWNLO~1\CnsMinEx.dll] [国风因特软件(北京)有限公司, 2.5.0.6] [PID: 220 / SYSTEM][C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe] [Apple, Inc., 1, 14, 0, 0] [PID: 232 / SYSTEM][C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe] [N/A, ] [PID: 300 / SYSTEM][C:\Program Files\Bonjour\mDNSResponder.exe] [Apple Inc., 1,0,4,12] [PID: 512 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 528 / LOCAL SERVICE][C:\WINDOWS\system32\wdfmgr.exe] [Microsoft Corporation, 5.2.3790.1230 built by: dnsrv(bld4act)] [PID: 1880 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [PID: 504 / Administrator][C:\WINDOWS\system32\Explorer.exe] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\PROGRA~1\3721\alrex.dll] [国风因特软件(北京)有限公司, 2.5.1.1003] [C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [C:\WINDOWS\system32\mnmhfsrv.dll] [N/A, ] [C:\WINDOWS\system32\oohxdbyt.dll] [N/A, ] [C:\WINDOWS\system32\mpwddapi.dll] [N/A, ] [C:\WINDOWS\system32\yzzthmsn.dll] [N/A, ] [C:\WINDOWS\system32\mndhddwd.dll] [N/A, ] [C:\WINDOWS\system32\mpmydapi.dll] [N/A, ] [C:\WINDOWS\system32\zxmscwin.dll] [N/A, ] [C:\WINDOWS\system32\apsgdjba.dll] [N/A, ] [C:\WINDOWS\system32\ypdjfbmp.dll] [N/A, ] [C:\WINDOWS\system32\mndsfsrv.dll] [N/A, ] [C:\WINDOWS\system32\ptjhehlp.dll] [N/A, ] [C:\WINDOWS\system32\opshbbty.dll] [N/A, ] [C:\WINDOWS\system32\apzhbtde.dll] [N/A, ] [C:\WINDOWS\system32\zyzxiime.dll] [N/A, ] [C:\WINDOWS\system32\zptlcsys.dll] [N/A, ] [C:\WINDOWS\system32\yxfhcjpg.dll] [N/A, ] [C:\WINDOWS\system32\lofsdjbo.dll] [N/A, ] [C:\WINDOWS\system32\pjjxddwd.dll] [N/A, ] [C:\WINDOWS\system32\yxcschlp.dll] [N/A, ] [C:\WINDOWS\system32\zywmfime.dll] [N/A, ] [C:\WINDOWS\system32\zxptejpg.dll] [N/A, ] [C:\WINDOWS\system32\ypcqfhlp.dll] [N/A, ] [C:\WINDOWS\system32\skqncbib.dll] [N/A, ] [C:\WINDOWS\system32\jkhxaklo.dll] [N/A, ] [C:\WINDOWS\system32\oswxcttb.dll] [N/A, ] [C:\WINDOWS\system32\cdwsbkop.dll] [N/A, ] [C:\WINDOWS\system32\ozfydbyt.dll] [N/A, ] [C:\WINDOWS\system32\tisqatyu.dll] [N/A, ] [C:\WINDOWS\DOWNLO~1\CnsHook.dll] [国风因特软件(北京)有限公司, 2.5.1.9] [C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.17] [C:\WINDOWS\system32\zycbdime.dll] [N/A, ] [C:\Program Files\WinRAR\rarext.dll] [N/A, ] [E:\Program Files\Tencent\qdshm.dll] [, 1, 0, 101, 20] [E:\Program Files\Tencent\MFC42.DLL] [Microsoft Corporation, 6.00.8665.0] [C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [C:\PROGRA~1\3721\autolive.dll] [国风因特软件(北京)有限公司, 2.5.5.1010] [C:\PROGRA~1\3721\alLiveEx.dll] [ , 1, 0, 3, 1006] [C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.5.27] [C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 8, 96] [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 18] [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 16] [C:\Program Files\Microsoft Office\OFFICE11\msohev.dll] [Microsoft Corporation, 11.0.5510] [PID: 1248 / Administrator][C:\WINDOWS\system32\rundll32.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\PROGRA~1\3721\autolive.dll] [国风因特软件(北京)有限公司, 2.5.5.1010] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [C:\PROGRA~1\3721\alLiveEx.dll] [ , 1, 0, 3, 1006] [PID: 1424 / Administrator][C:\WINDOWS\SOUNDMAN.EXE] [Realtek Semiconductor Corp., 5, 1, 0, 52] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [PID: 1504 / Administrator][C:\WINDOWS\VM_STI.EXE] [Vimicro, 4, 2, 1124, 6] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\WINDOWS\system32\msdmo.dll] [, ] [C:\WINDOWS\system32\VM31bPrp.Ax] [Vimicro, 1.00.01.00] [PID: 2064 / Administrator][C:\Program Files\Rising\Rav\RavTask.exe] [Beijing Rising Technology Co., Ltd., 20.0.0.23] [C:\Program Files\Rising\Rav\ProcCom.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\Program Files\Rising\Rav\RsCommX2.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 20.0.0.0] [C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.16] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [PID: 2104 / Administrator][C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe] [InstallShield Software Corporation, 3, 10, 100, 1146] [PID: 2112 / Administrator][C:\Program Files\Rising\Rav\Ravmon.exe] [Beijing Rising Technology Co., Ltd., 20.0.01.19] [C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0] [C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4] [C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0] [C:\Program Files\Rising\Rav\ProcCom.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\Program Files\Rising\Rav\RsCommX2.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [C:\Program Files\Rising\Rav\recomp.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 38] [C:\Program Files\Rising\Rav\refs.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 17] [C:\Program Files\Rising\Rav\viruslib.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 26] [C:\Program Files\Rising\Rav\relibldr.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [C:\Program Files\Rising\Rav\RSAPPMGR.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.0] [C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.16] [C:\Program Files\Rising\Rav\MonRule.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.29] [C:\Program Files\Rising\Rav\PngDll.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 4] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\Program Files\Rising\Rav\Rsguilib.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 89] [C:\Program Files\Rising\Rav\RsXML.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 0] [PID: 2156 / Administrator][C:\Program Files\95599 Certificate Tools\CIDC\RegCertTool.exe] [CIDC, 1, 0, 0, 10] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [PID: 2236 / Administrator][C:\Program Files\iTunes\iTunesHelper.exe] [Apple Inc., 7.6.2.9] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\Program Files\iTunes\iTunesHelper.Resources\zh_CN.lproj\iTunesHelperLocalized.DLL] [Apple Inc., 7.6.2.1] [C:\Program Files\iTunes\iTunesHelper.Resources\iTunesHelper.DLL] [Apple Inc., 7.6.2.9] [C:\Program Files\QuickTime\QTSystem\QuickTime.qts] [Apple Inc., 7.4.5] [C:\Program Files\Common Files\Apple\Mobile Device Support\bin\iTunesMobileDevice.dll] [Apple Inc., 7, 6, 120, 1] [PID: 2244 / Administrator][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [PID: 2520 / SYSTEM][C:\Program Files\iPod\bin\iPodService.exe] [Apple Inc., 7.6.2.9] [C:\Program Files\iPod\bin\iPodService.Resources\zh_CN.lproj\iPodServiceLocalized.DLL] [Apple Inc., 7.6.2.1] [C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL] [Apple Inc., 7.6.2.9] [PID: 344 / Administrator][C:\Program Files\Alisoft\WangWang\WangWang.exe] [阿里巴巴软件(上海)有限公司, 5, 7, 0, 4] [C:\Program Files\Alisoft\WangWang\AliViewCtrl.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 2] [C:\Program Files\Alisoft\WangWang\VLNetwork.dll] [阿里巴巴软件(上海)有限公司, 1, 0, 0, 6] [C:\Program Files\Alisoft\WangWang\MFC80.DLL] [Microsoft Corporation, 8.00.50727.762] [C:\Program Files\Alisoft\WangWang\AliViewMedia.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 2] [C:\Program Files\Alisoft\WangWang\VideoCap.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 4] [C:\Program Files\Alisoft\WangWang\VLAudio.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 5] [C:\Program Files\Alisoft\WangWang\JsmShow.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 4] [C:\Program Files\Alisoft\WangWang\AliSkin.dll] [阿里巴巴软件(上海)有限公司, 1.0.0.1] [C:\Program Files\Alisoft\WangWang\PngLib.dll] [阿里巴巴软件(上海)有限公司, 1, 0, 0, 1] [C:\Program Files\Alisoft\WangWang\zlib.dll] [, 1.2.3] [C:\Program Files\Alisoft\WangWang\ww_network.dll] [, 2, 1, 0, 1] [C:\Program Files\Alisoft\WangWang\MFC80CHS.DLL] [Microsoft Corporation, 8.00.50727.762] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\Program Files\Alisoft\WangWang\Ali_Res.DLL] [N/A, ] [C:\WINDOWS\system32\aliedit\aliedit.dll] [, 2, 1, 2, 1] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [C:\Program Files\Alisoft\WangWang\WangWangX6.dll] [阿里巴巴软件(上海)有限公司, 1, 0, 0, 5] [C:\Program Files\Alisoft\WangWang\RICHED32.DLL] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [C:\Program Files\Alisoft\WangWang\RICHED20.dll] [Microsoft Corporation, 5.30.23.1221] [C:\Program Files\Alisoft\WangWang\RichOne.dll] [阿里巴巴软件(上海)有限公司, 1.0.0.1] [C:\Program Files\Alisoft\WangWang\TBProgress.dll] [阿里巴巴软件(上海)有限公司, 1.0.0.1] [C:\Program Files\Alisoft\WangWang\MessageNotify.dll] [, 1, 0, 0, 1] [C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3] [C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [C:\WINDOWS\system32\msdmo.dll] [, ] [PID: 2268 / Administrator][C:\Program Files\Alisoft\WangWang\WangWang.exe] [阿里巴巴软件(上海)有限公司, 5, 7, 0, 4] [C:\Program Files\Alisoft\WangWang\AliViewCtrl.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 2] [C:\Program Files\Alisoft\WangWang\VLNetwork.dll] [阿里巴巴软件(上海)有限公司, 1, 0, 0, 6] [C:\Program Files\Alisoft\WangWang\MFC80.DLL] [Microsoft Corporation, 8.00.50727.762] [C:\Program Files\Alisoft\WangWang\AliViewMedia.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 2] [C:\Program Files\Alisoft\WangWang\VideoCap.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 4] [C:\Program Files\Alisoft\WangWang\VLAudio.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 5] [C:\Program Files\Alisoft\WangWang\JsmShow.dll] [ 阿里巴巴软件(上海)有限公司, 1, 0, 0, 4] [C:\Program Files\Alisoft\WangWang\AliSkin.dll] [阿里巴巴软件(上海)有限公司, 1.0.0.1] [C:\Program Files\Alisoft\WangWang\PngLib.dll] [阿里巴巴软件(上海)有限公司, 1, 0, 0, 1] [C:\Program Files\Alisoft\WangWang\zlib.dll] [, 1.2.3] [C:\Program Files\Alisoft\WangWang\ww_network.dll] [, 2, 1, 0, 1] [C:\Program Files\Alisoft\WangWang\MFC80CHS.DLL] [Microsoft Corporation, 8.00.50727.762] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\Program Files\Alisoft\WangWang\Ali_Res.DLL] [N/A, ] [C:\WINDOWS\system32\aliedit\aliedit.dll] [, 2, 1, 2, 1] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [C:\Program Files\Alisoft\WangWang\WangWangX6.dll] [阿里巴巴软件(上海)有限公司, 1, 0, 0, 5] [C:\Program Files\Alisoft\WangWang\RICHED32.DLL] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [C:\Program Files\Alisoft\WangWang\RICHED20.dll] [Microsoft Corporation, 5.30.23.1221] [C:\Program Files\Alisoft\WangWang\RichOne.dll] [阿里巴巴软件(上海)有限公司, 1.0.0.1] [C:\Program Files\Alisoft\WangWang\TBProgress.dll] [阿里巴巴软件(上海)有限公司, 1.0.0.1] [C:\Program Files\Alisoft\WangWang\MessageNotify.dll] [, 1, 0, 0, 1] [C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3] [C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [C:\WINDOWS\system32\msdmo.dll] [, ] [PID: 2832 / Administrator][C:\Program Files\Rising\Rav\Rav.exe] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 71] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\Program Files\Rising\Rav\ProcCom.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\Program Files\Rising\Rav\RsCommX2.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19] [C:\Program Files\Rising\Rav\Rsguilib.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 89] [C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0] [C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4] [C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0] [C:\Program Files\Rising\Rav\RsXML.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 0] [C:\Program Files\Rising\Rav\PngDll.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 4] [C:\Program Files\Rising\Rav\RsCommon.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [C:\Program Files\Rising\Rav\ravpagem.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 1, 5] [C:\Program Files\Rising\Rav\htmllib.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.16] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [C:\WINDOWS\DOWNLO~1\CnsHook.dll] [国风因特软件(北京)有限公司, 2.5.1.9] [C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.17] [C:\Program Files\Rising\Rav\ravpagew.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 87] [C:\Program Files\Rising\Rav\RSAPPMGR.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.0] [C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.16] [C:\Program Files\Rising\Rav\fakescan.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.13] [C:\Program Files\Rising\Rav\Scanner.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.36] [C:\Program Files\Rising\Rav\BWList.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.4] [C:\Program Files\Rising\Rav\SysMail.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.10] [C:\WINDOWS\system32\mnmhfsrv.dll] [N/A, ] [C:\WINDOWS\system32\oohxdbyt.dll] [N/A, ] [C:\WINDOWS\system32\mpwddapi.dll] [N/A, ] [C:\WINDOWS\system32\yzzthmsn.dll] [N/A, ] [C:\WINDOWS\system32\mndhddwd.dll] [N/A, ] [C:\WINDOWS\system32\mpmydapi.dll] [N/A, ] [C:\WINDOWS\system32\zxmscwin.dll] [N/A, ] [C:\WINDOWS\system32\apsgdjba.dll] [N/A, ] [C:\WINDOWS\system32\ypdjfbmp.dll] [N/A, ] [C:\WINDOWS\system32\mndsfsrv.dll] [N/A, ] [C:\WINDOWS\system32\ptjhehlp.dll] [N/A, ] [C:\WINDOWS\system32\opshbbty.dll] [N/A, ] [C:\WINDOWS\system32\apzhbtde.dll] [N/A, ] [C:\WINDOWS\system32\zycbdime.dll] [N/A, ] [C:\Program Files\Rising\Rav\recomp.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 38] [C:\Program Files\Rising\Rav\refs.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 17] [C:\Program Files\Rising\Rav\viruslib.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 26] [C:\Program Files\Rising\Rav\relibldr.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [C:\Program Files\Rising\Rav\mvengine.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16] [C:\Program Files\Rising\Rav\posttrt.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 18] [C:\Program Files\Rising\Rav\ffr.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 14] [C:\Program Files\Rising\Rav\nvfile.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 6] [C:\Program Files\Rising\Rav\scanexec.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 17] [C:\Program Files\Rising\Rav\unexe.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 4] [C:\Program Files\Rising\Rav\scanex.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 73] [C:\Program Files\Rising\Rav\pearc.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 5] [C:\Program Files\Rising\Rav\extfile.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 29] [C:\Program Files\Rising\Rav\RsLog.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.34] [C:\Program Files\Rising\Rav\scanpack.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 9] [C:\Program Files\Rising\Rav\revm.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 8] [C:\Program Files\Rising\Rav\urutils.dll] [, 20, 0, 0, 6] [C:\Program Files\Rising\Rav\ur000.dat] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 18] [C:\Program Files\Rising\Rav\scriptci.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3] [C:\Program Files\Rising\Rav\uroutine.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 26] [C:\Program Files\Rising\Rav\extole.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 12] [C:\Program Files\Rising\Rav\scansct.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 9] [C:\Program Files\Rising\Rav\extmail.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 9] [C:\WINDOWS\system32\zyzxiime.dll] [N/A, ] [C:\WINDOWS\system32\zptlcsys.dll] [N/A, ] [C:\WINDOWS\system32\yxfhcjpg.dll] [N/A, ] [C:\WINDOWS\system32\pjjxddwd.dll] [N/A, ] [C:\WINDOWS\system32\yxcschlp.dll] [N/A, ] [C:\WINDOWS\system32\zywmfime.dll] [N/A, ] [C:\WINDOWS\system32\zxptejpg.dll] [N/A, ] [C:\WINDOWS\system32\skqncbib.dll] [N/A, ] [C:\WINDOWS\system32\jkhxaklo.dll] [N/A, ] [C:\WINDOWS\system32\oswxcttb.dll] [N/A, ] [C:\WINDOWS\system32\cdwsbkop.dll] [N/A, ] [C:\WINDOWS\system32\ozfydbyt.dll] [N/A, ] [C:\WINDOWS\system32\lofsdjbo.dll] [N/A, ] [C:\WINDOWS\system32\ypcqfhlp.dll] [N/A, ] [C:\WINDOWS\system32\tisqatyu.dll] [N/A, ] [C:\Program Files\Rising\Rav\RsStore.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.8] [C:\Program Files\Rising\Rav\ur001.dat] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3] [PID: 3164 / Administrator][C:\WINDOWS\system32\conime.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [PID: 2036 / Administrator][C:\Program Files\Thunder Network\Thunder\Program\Thunder5.exe] [Thunder Networking Technologies,LTD, 5.7.9.466] [C:\Program Files\Thunder Network\Thunder\Program\BugReport.dll] [Thunder Networking Technologies,LTD, 1, 2, 0, 15] [C:\WINDOWS\system32\skqncbib.dll] [N/A, ] [C:\WINDOWS\system32\tisqatyu.dll] [N/A, ] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\Program Files\Thunder Network\Thunder\Program\TaskManager.dll] [Thunder Networking Technologies,LTD, 1, 3, 4, 62] [C:\Program Files\Thunder Network\Thunder\Program\download_interface.dll] [Thunder Networking Technologies,LTD, 3, 0, 2, 307] [C:\Program Files\Thunder Network\Thunder\Program\stlport_vc646.dll] [STLport Consulting, Inc., 4.6.2003.1031] [C:\Program Files\Thunder Network\Thunder\Program\asyn_frame.dll] [, 1, 0, 2, 7] [C:\Program Files\Thunder Network\Thunder\Program\backend_agent.dll] [, 1, 0, 2, 11] [C:\Program Files\Thunder Network\Thunder\Program\ptl.dll] [Thunder Networking Technologies, LTD, 1, 0, 2, 12] [C:\Program Files\Thunder Network\Thunder\Program\p2p_upload.dll] [, 1, 0, 2, 7] [C:\Program Files\Thunder Network\Thunder\Program\fs.dll] [, 1, 0, 2, 7] [C:\Program Files\Thunder Network\Thunder\Program\p2p.dll] [, 1, 0, 2, 12] [C:\Program Files\Thunder Network\Thunder\Program\p2p_local_res.dll] [, 1, 0, 2, 7] [C:\Program Files\Thunder Network\Thunder\Program\p2sp.dll] [, 1, 0, 2, 13] [C:\Program Files\Thunder Network\Thunder\Program\down_dispatcher.dll] [, 1, 0, 2, 12] [C:\Program Files\Thunder Network\Thunder\Program\xldc.dll] [Thunder Networking Technologies,LTD, 1, 5, 2, 9] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [C:\Program Files\Thunder Network\Thunder\Program\bd.dll] [Thunder Networking Technologies,LTD, 1, 0, 2, 16] [C:\Program Files\Thunder Network\Thunder\Program\stream.dll] [, 2, 0, 2, 308] [C:\Program Files\Thunder Network\Thunder\Program\al.dll] [, 1, 1, 2, 9] [C:\Program Files\Thunder Network\Thunder\Program\emule_id.dll] [, 1, 0, 2, 6] [C:\Program Files\Thunder Network\Thunder\Program\XLNet.Dll] [Thunder Networking Technologies,LTD, 1, 4, 5, 21] [C:\Program Files\Thunder Network\Thunder\Program\BHOStub.dll] [Thunder Networking Technologies,LTD, 1, 1, 1, 10] [C:\Program Files\Thunder Network\Thunder\Components\DownAndPlay\DownAndPlay.dll] [, 1, 0, 11, 29] [C:\Program Files\Thunder Network\Thunder\Program\iTargetAD.dll] [Thunder Networking Technologies,LTD, 1, 0, 3, 34] [C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx] [Adobe Systems, Inc., 9,0,124,0] [C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3] [C:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbedShell.dll] [ , 1, 0, 2, 24] [C:\Program Files\Thunder Network\Thunder\Components\InMedia\iEmbed16.dll] [Thunder Networking Technologies,LTD, 3, 4, 7, 103] [C:\Program Files\Thunder Network\Thunder\Components\InMedia\PlayerHelper.dll] [thunder, 1, 1, 5, 41] [C:\Program Files\Thunder Network\Thunder\Components\InMedia\XLIPC.DLL] [Thunder Networking Technologies,LTD, 1, 0, 0, 2] [C:\Program Files\Thunder Network\Thunder\Components\P4PClient\P4PClient.dll] [Thunder Networking Technologies,LTD, 2, 2, 5, 70] [C:\Program Files\Thunder Network\Thunder\Components\Community\XLCommunity.dll] [Thunder Networking Technologies,LTD, 1, 5, 0, 16] [C:\Program Files\Thunder Network\Thunder\Program\RegisterDll.dll] [Thunder Networking Technologies,LTD, 2, 16, 5, 63] [C:\Program Files\Thunder Network\Thunder\Program\MSVCIRT.dll] [Microsoft Corporation, 7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)] [C:\Program Files\Thunder Network\Thunder\Components\Security\ThunderSafe.dll] [深圳市迅雷网络技术有限公司, 1, 0, 7, 77] [C:\Program Files\Thunder Network\Thunder\Program\ATL71.DLL] [Microsoft Corporation, 7.10.3077.0] [C:\Program Files\Thunder Network\Thunder\Components\Security\XLSafeUI.dll] [深圳市迅雷网络技术有限公司, 1, 0, 7, 77] [C:\WINDOWS\system32\mnmhfsrv.dll] [N/A, ] [C:\WINDOWS\system32\oohxdbyt.dll] [N/A, ] [C:\WINDOWS\system32\mpwddapi.dll] [N/A, ] [C:\WINDOWS\system32\yzzthmsn.dll] [N/A, ] [C:\WINDOWS\system32\mndhddwd.dll] [N/A, ] [C:\WINDOWS\system32\mpmydapi.dll] [N/A, ] [C:\WINDOWS\system32\zxmscwin.dll] [N/A, ] [C:\WINDOWS\system32\apsgdjba.dll] [N/A, ] [C:\WINDOWS\system32\ypdjfbmp.dll] [N/A, ] [C:\WINDOWS\system32\mndsfsrv.dll] [N/A, ] [C:\WINDOWS\system32\ptjhehlp.dll] [N/A, ] [C:\WINDOWS\system32\opshbbty.dll] [N/A, ] [C:\WINDOWS\system32\apzhbtde.dll] [N/A, ] [C:\WINDOWS\system32\zyzxiime.dll] [N/A, ] [C:\WINDOWS\system32\zptlcsys.dll] [N/A, ] [C:\WINDOWS\system32\yxfhcjpg.dll] [N/A, ] [C:\WINDOWS\system32\pjjxddwd.dll] [N/A, ] [C:\WINDOWS\system32\yxcschlp.dll] [N/A, ] [C:\WINDOWS\system32\zywmfime.dll] [N/A, ] [C:\WINDOWS\system32\zxptejpg.dll] [N/A, ] [C:\WINDOWS\system32\jkhxaklo.dll] [N/A, ] [C:\WINDOWS\system32\oswxcttb.dll] [N/A, ] [C:\WINDOWS\system32\cdwsbkop.dll] [N/A, ] [C:\WINDOWS\system32\ozfydbyt.dll] [N/A, ] [C:\WINDOWS\system32\zycbdime.dll] [N/A, ] [C:\WINDOWS\system32\lofsdjbo.dll] [N/A, ] [C:\WINDOWS\system32\ypcqfhlp.dll] [N/A, ] [C:\Program Files\Thunder Network\Thunder\Components\Search\XLSearch.dll] [Thunder Networking Technologies,LTD, 1, 1, 6, 21] [C:\Program Files\Thunder Network\Thunder\Program\LiveUpdate.dll] [Thunder Networking Technologies,LTD, 1, 2, 3, 25] [C:\Program Files\Thunder Network\Thunder\Plugins\BhoAdv\bho_adv.dll] [深圳市迅雷网络技术有限公司, 1.0.1.0] [C:\Program Files\Thunder Network\Thunder\Plugins\XLSafeHost\XLSafeHost.dll] [深圳市迅雷网络技术有限公司, 1, 0, 7, 59] [C:\Program Files\Thunder Network\Thunder\Plugins\KanKanTop\KanKanTop.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 4] [C:\Program Files\Thunder Network\Thunder\Components\ExplorerHelper\ExplorerHelper.dll] [Thunder Networking Technologies,LTD, 1, 0, 4, 18] [C:\Program Files\Thunder Network\Thunder\Components\Tips\TipsClient.dll] [Thunder Networking Technologies,LTD, 2, 2, 11, 106] [C:\Program Files\Thunder Network\Thunder\Components\VPSHELL\VPSHELL.dll] [迅雷网络, 3, 0, 1, 33] [C:\Program Files\Thunder Network\Thunder\Components\UserExperience\UserExperience.dll] [Thunder Networking Technologies,LTD, 1, 0, 1, 3] [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsXlCom.dll] [, 1, 0, 0, 29] [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 16] [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\MediaWorker.dll] [Thunder Networking Technologies,LTD, 1, 2, 0, 22] [C:\Program Files\Thunder Network\Thunder\Components\Tips\XLIPC.DLL] [Thunder Networking Technologies,LTD, 1, 0, 0, 2] [C:\Program Files\Thunder Network\Thunder\Components\DownloadStat\DownloadStat.dll] [Thunder Networking Technologies,LTD, 1, 4, 1, 6] [PID: 1304 / Administrator][C:\Program Files\Thunder Network\Thunder\Components\InMedia\ThunderMinisite.exe] [Thunder Networking Technologies,LTD, 1, 0, 4, 17] [C:\WINDOWS\system32\skqncbib.dll] [N/A, ] [C:\WINDOWS\system32\tisqatyu.dll] [N/A, ] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\Program Files\Thunder Network\Thunder\Components\InMedia\XLIPC.DLL] [Thunder Networking Technologies,LTD, 1, 0, 0, 2] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3] [C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx] [Adobe Systems, Inc., 9,0,124,0] [C:\Program Files\Thunder Network\Thunder\Components\InMedia\MediaAddin16.dll] [Thunder Networking Technologies,LTD, 3, 1, 4, 76] [PID: 3720 / Administrator][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] [C:\WINDOWS\system32\skqncbib.dll] [N/A, ] [C:\WINDOWS\system32\tisqatyu.dll] [N/A, ] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\PROGRA~1\3721\scrblock.dll] [3721, 1, 0, 1, 1000] [C:\PROGRA~1\3721\alrex.dll] [国风因特软件(北京)有限公司, 2.5.1.1003] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\WINDOWS\DOWNLO~1\CnsHint.dll] [国风因特软件(北京)有限公司, 2.5.0.7] [C:\PROGRA~1\3721\autolive.dll] [国风因特软件(北京)有限公司, 2.5.5.1010] [C:\PROGRA~1\3721\alLiveEx.dll] [ , 1, 0, 3, 1006] [C:\WINDOWS\DOWNLO~1\cnsplus.dll] [国风因特软件(北京)有限公司, 2.5.0.4] [C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.5.27] [C:\WINDOWS\system32\jkhxaklo.dll] [N/A, ] [C:\WINDOWS\system32\opshbbty.dll] [N/A, ] [C:\WINDOWS\system32\cdwsbkop.dll] [N/A, ] [C:\WINDOWS\system32\apzhbtde.dll] [N/A, ] [C:\WINDOWS\system32\oswxcttb.dll] [N/A, ] [C:\WINDOWS\system32\yxcschlp.dll] [N/A, ] [C:\WINDOWS\system32\pjjxddwd.dll] [N/A, ] [C:\WINDOWS\system32\mpwddapi.dll] [N/A, ] [C:\WINDOWS\system32\mpmydapi.dll] [N/A, ] [C:\WINDOWS\system32\lofsdjbo.dll] [N/A, ] [C:\WINDOWS\system32\ozfydbyt.dll] [N/A, ] [C:\WINDOWS\system32\zycbdime.dll] [N/A, ] [C:\WINDOWS\system32\mndhddwd.dll] [N/A, ] [C:\WINDOWS\system32\apsgdjba.dll] [N/A, ] [C:\WINDOWS\system32\zptlcsys.dll] [N/A, ] [C:\WINDOWS\system32\ptjhehlp.dll] [N/A, ] [C:\WINDOWS\system32\oohxdbyt.dll] [N/A, ] [C:\WINDOWS\system32\zywmfime.dll] [N/A, ] [C:\WINDOWS\system32\mndsfsrv.dll] [N/A, ] [C:\WINDOWS\system32\zxmscwin.dll] [N/A, ] [C:\WINDOWS\system32\mnmhfsrv.dll] [N/A, ] [C:\WINDOWS\system32\ypcqfhlp.dll] [N/A, ] [C:\WINDOWS\system32\ypdjfbmp.dll] [N/A, ] [C:\WINDOWS\system32\yxfhcjpg.dll] [N/A, ] [C:\WINDOWS\system32\yzzthmsn.dll] [N/A, ] [C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 8, 96] [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 18] [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll] [Thunder Networking Technologies,LTD, 1, 0, 0, 16] [C:\WINDOWS\system32\zxptejpg.dll] [N/A, ] [C:\WINDOWS\system32\zyzxiime.dll] [N/A, ] [C:\WINDOWS\DOWNLO~1\CnsHook.dll] [国风因特软件(北京)有限公司, 2.5.1.9] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] [C:\Program Files\Microsoft Office\OFFICE11\msohev.dll] [Microsoft Corporation, 11.0.5510] [C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3] [C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)] [C:\WINDOWS\system32\Macromed\Flash\Flash9f.ocx] [Adobe Systems, Inc., 9,0,124,0] [PID: 3344 / Administrator][C:\Documents and Settings\Administrator\桌面\sreng2\SREngPS.EXE] [Smallfrogs Studio, 2.5.16.900] [C:\WINDOWS\system32\skqncbib.dll] [N/A, ] [C:\WINDOWS\system32\tisqatyu.dll] [N/A, ] [C:\PROGRA~1\3721\helper.dll] [国风因特软件(北京)有限公司, 2.5.5.1008] [C:\WINDOWS\DOWNLO~1\CnsMin.dll] [国风因特软件(北京)有限公司, 2.5.1.6] [C:\Documents and Settings\Administrator\桌面\sreng2\Upload\3rdUpd.DLL] [Smallfrogs Studio, 2, 1, 0, 15] [C:\Program Files\Bonjour\mdnsNSP.dll] [Apple Inc., 1,0,4,12] ================================== 文件关联 .TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1] .EXE OK. ["%1" %*] .COM OK. ["%1" %*] .PIF OK. ["%1" %*] .REG OK. [regedit.exe "%1"] .BAT OK. ["%1" %*] .SCR OK. ["%1" /S] .CHM OK. ["C:\WINDOWS\hh.exe" %1] .HLP OK. [%SystemRoot%\System32\winhlp32.exe %1] .INI OK. [%SystemRoot%\system32\NOTEPAD.EXE %1] .INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1] .VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*] .JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*] .LNK OK. [{00021401-0000-0000-C000-000000000046}] ================================== Winsock 提供者 N/A ================================== Autorun.inf N/A ================================== HOSTS 文件 127.0.0.1 localhost 0.0.0.0 182838.com 0.0.0.0 204.177.92.68 0.0.0.0 asiafriendfinder.com 0.0.0.0 asqin123.51.net 0.0.0.0 babe520.5188.org 0.0.0.0 music.feifa.com 0.0.0.0 music.v111.com 0.0.0.0 www.jpbeauty.com 0.0.0.0 beautishow.com 0.0.0.0 goodmovies88.com 0.0.0.0 hothack.home.chinaren.com 0.0.0.0 hualiao.net 0.0.0.0 iplus.allyes.com 0.0.0.0 jjkafei.longcity.net 0.0.0.0 kaomm.8m.cn 0.0.0.0 l3iaoliao.com 0.0.0.0 lingaonbvm.myrice.com 0.0.0.0 lovejava.boy.net.cn 0.0.0.0 love7liao.com 0.0.0.0 asqin123.51.net 0.0.0.0 babe520.5188.org 0.0.0.0 music.feifa.com 0.0.0.0 jjkafei.longcity.net 0.0.0.0 kaomm.8m.cn 0.0.0.0 l3iaoliao.com 0.0.0.0 l3iaoliao.com 0.0.0.0 lingaonbvm.myrice.com 0.0.0.0 lovejava.boy.net.cn 0.0.0.0 love7liao.com 0.0.0.0 babe520.5188.org 0.0.0.0 music.feifa.com 0.0.0.0 music.v111.com 0.0.0.0 babe520.5188.org 0.0.0.0 music.feifa.com 0.0.0.0 jjkafei.longcity.net 0.0.0.0 kaomm.8m.cn 0.0.0.0 l3iaoliao.com 0.0.0.0 l3iaoliao.com 0.0.0.0 lingaonbvm.myrice.com 0.0.0.0 lovejava.boy.net.cn 0.0.0.0 love7liao.com 0.0.0.0 babe520.5188.org 0.0.0.0 music.feifa.com 0.0.0.0 music.v111.com 219.153.32.215 auto.search.msn.com ================================== 进程特权扫描 特殊特权被允许: SeLoadDriverPrivilege [PID = 220, C:\PROGRAM FILES\COMMON FILES\APPLE\MOBILE DEVICE SUPPORT\BIN\APPLEMOBILEDEVICESERVICE.EXE] 特殊特权被允许: SeLoadDriverPrivilege [PID = 232, C:\PROGRAM FILES\IVT CORPORATION\BLUESOLEIL\BTNTSERVICE.EXE] 特殊特权被允许: SeDebugPrivilege [PID = 2104, C:\PROGRAM FILES\COMMON FILES\INSTALLSHIELD\UPDATESERVICE\ISSCH.EXE] 特殊特权被允许: SeLoadDriverPrivilege [PID = 2104, C:\PROGRAM FILES\COMMON FILES\INSTALLSHIELD\UPDATESERVICE\ISSCH.EXE] 特殊特权被允许: SeDebugPrivilege [PID = 2156, C:\PROGRAM FILES\95599 CERTIFICATE TOOLS\CIDC\REGCERTTOOL.EXE] 特殊特权被允许: SeLoadDriverPrivilege [PID = 2156, C:\PROGRAM FILES\95599 CERTIFICATE TOOLS\CIDC\REGCERTTOOL.EXE] 特殊特权被允许: SeDebugPrivilege [PID = 2036, C:\PROGRAM FILES\THUNDER NETWORK\THUNDER\PROGRAM\THUNDER5.EXE] 特殊特权被允许: SeLoadDriverPrivilege [PID = 2036, C:\PROGRAM FILES\THUNDER NETWORK\THUNDER\PROGRAM\THUNDER5.EXE] 特殊特权被允许: SeDebugPrivilege [PID = 1304, C:\PROGRAM FILES\THUNDER NETWORK\THUNDER\COMPONENTS\INMEDIA\THUNDERMINISITE.EXE] 特殊特权被允许: SeLoadDriverPrivilege [PID = 1304, C:\PROGRAM FILES\THUNDER NETWORK\THUNDER\COMPONENTS\INMEDIA\THUNDERMINISITE.EXE] ================================== API HOOK N/A ================================== 隐藏进程 N/A ================================== [/CODE]