瑞星卡卡电脑诊断日志 v1.30 (2000-6-13 19:12:58) 北京瑞星科技股份有限公司 注释: [A]表示该文件存在自启动关联; [M]表示该文件在内存中; + 注册表自运行项目 + 系统服务 + HKLM\System\CurrentControlSet\Services Alerter [AM] 1. c:\windows\system32\svchost.exe [A ] 2. c:\windows\system32\alrsvc.dll ALG [AM] 3. c:\windows\system32\alg.exe AppMgmt [AM] 1. c:\windows\system32\svchost.exe [A ] 4. c:\windows\system32\appmgmts.dll AudioSrv [AM] 1. c:\windows\system32\svchost.exe [AM] 5. c:\windows\system32\audiosrv.dll BITS [AM] 1. c:\windows\system32\svchost.exe [AM] 6. c:\windows\system32\qmgr.dll Browser [AM] 1. c:\windows\system32\svchost.exe [AM] 7. c:\windows\system32\browser.dll C-DillaCdaC11BA [AM] 8. c:\windows\system32\drivers\cdac11ba.exe ClipSrv [A ] 9. c:\windows\system32\clipsrv.exe COMSysApp [A ] 10. c:\windows\system32\dllhost.exe CryptSvc [AM] 1. c:\windows\system32\svchost.exe [AM] 11. c:\windows\system32\cryptsvc.dll DcomLaunch [AM] 1. c:\windows\system32\svchost.exe [AM] 12. c:\windows\system32\rpcss.dll Dhcp [AM] 1. c:\windows\system32\svchost.exe [AM] 13. c:\windows\system32\dhcpcsvc.dll dmadmin [A ] 14. c:\windows\system32\dmadmin.exe dmserver [AM] 1. c:\windows\system32\svchost.exe [AM] 15. c:\windows\system32\dmserver.dll Dnscache [AM] 1. c:\windows\system32\svchost.exe [AM] 16. c:\windows\system32\dnsrslvr.dll Eventlog [AM] 17. c:\windows\system32\services.exe EventSystem [AM] 1. c:\windows\system32\svchost.exe [AM] 18. c:\windows\system32\es.dll FastUserSwitchingCompatibility [AM] 1. c:\windows\system32\svchost.exe [AM] 19. c:\windows\system32\shsvcs.dll helpsvc [AM] 1. c:\windows\system32\svchost.exe [AM] 20. c:\windows\pchealth\helpctr\binaries\pchsvc.dll HidServ [AM] 1. c:\windows\system32\svchost.exe HTTPFilter [AM] 1. c:\windows\system32\svchost.exe [A ] 21. c:\windows\system32\w3ssl.dll ImapiService [A ] 22. c:\windows\system32\imapi.exe lanmanserver [AM] 1. c:\windows\system32\svchost.exe [AM] 23. c:\windows\system32\srvsvc.dll lanmanworkstation [AM] 1. c:\windows\system32\svchost.exe [AM] 24. c:\windows\system32\wkssvc.dll [A ] 25. c:\windows\system32\ntlanman.dll LmHosts [AM] 1. c:\windows\system32\svchost.exe [AM] 26. c:\windows\system32\lmhsvc.dll Messenger [AM] 1. c:\windows\system32\svchost.exe [A ] 27. c:\windows\system32\msgsvc.dll mnmsrvc [A ] 28. c:\windows\system32\mnmsrvc.exe MSDTC [A ] 29. c:\windows\system32\msdtc.exe MSIServer [A ] 30. c:\windows\system32\msiexec.exe NetDDE [A ] 31. c:\windows\system32\netdde.exe NetDDEdsdm [A ] 31. c:\windows\system32\netdde.exe Netlogon [AM] 32. c:\windows\system32\lsass.exe Netman [AM] 1. c:\windows\system32\svchost.exe [AM] 33. c:\windows\system32\netman.dll Nla [AM] 1. c:\windows\system32\svchost.exe [AM] 34. c:\windows\system32\mswsock.dll NtLmSsp [AM] 32. c:\windows\system32\lsass.exe NtmsSvc [AM] 1. c:\windows\system32\svchost.exe [A ] 35. c:\windows\system32\ntmssvc.dll ose [A ] 36. c:\program files\common files\microsoft shared\source engine\ose.exe PlugPlay [AM] 17. c:\windows\system32\services.exe PolicyAgent [AM] 32. c:\windows\system32\lsass.exe ProtectedStorage [AM] 32. c:\windows\system32\lsass.exe RasAuto [AM] 1. c:\windows\system32\svchost.exe [A ] 37. c:\windows\system32\rasauto.dll RasMan [AM] 1. c:\windows\system32\svchost.exe [AM] 38. c:\windows\system32\rasmans.dll RDSessMgr [A ] 39. c:\windows\system32\sessmgr.exe RemoteAccess [AM] 1. c:\windows\system32\svchost.exe [A ] 40. c:\windows\system32\mprdim.dll RemoteRegistry [AM] 1. c:\windows\system32\svchost.exe [A ] 41. c:\windows\system32\regsvc.dll RfwProxySrv [AM] 42. c:\program files\rising\rfw\rfwproxy.exe RfwService [AM] 43. c:\program files\rising\rfw\rfwsrv.exe RpcLocator [A ] 44. c:\windows\system32\locator.exe RpcSs [AM] 1. c:\windows\system32\svchost.exe [AM] 12. c:\windows\system32\rpcss.dll [AM] 12. c:\windows\system32\rpcss.dll RsCCenter [AM] 45. c:\program files\rising\rav\ccenter.exe RsRavMon [A ] 46. c:\program files\rising\rav\ravmond.exe RSVP [A ] 47. c:\windows\system32\rsvp.exe SamSs [AM] 32. c:\windows\system32\lsass.exe SCardSvr [A ] 48. c:\windows\system32\scardsvr.exe Schedule [AM] 1. c:\windows\system32\svchost.exe [AM] 49. c:\windows\system32\schedsvc.dll seclogon [AM] 1. c:\windows\system32\svchost.exe [AM] 50. c:\windows\system32\seclogon.dll SENS [AM] 1. c:\windows\system32\svchost.exe [AM] 51. c:\windows\system32\sens.dll SharedAccess [AM] 1. c:\windows\system32\svchost.exe [AM] 52. c:\windows\system32\ipnathlp.dll ShellHWDetection [AM] 1. c:\windows\system32\svchost.exe [AM] 19. c:\windows\system32\shsvcs.dll Spooler [AM] 53. c:\windows\system32\spoolsv.exe srservice [AM] 1. c:\windows\system32\svchost.exe [AM] 54. c:\windows\system32\srsvc.dll SSDPSRV [AM] 1. c:\windows\system32\svchost.exe [AM] 55. c:\windows\system32\ssdpsrv.dll stisvc [AM] 1. c:\windows\system32\svchost.exe [AM] 56. c:\windows\system32\wiaservc.dll SwPrv [A ] 10. c:\windows\system32\dllhost.exe SysmonLog [A ] 57. c:\windows\system32\smlogsvc.exe TapiSrv [AM] 1. c:\windows\system32\svchost.exe [AM] 58. c:\windows\system32\tapisrv.dll TermService [AM] 1. c:\windows\system32\svchost.exe [AM] 59. c:\windows\system32\termsrv.dll Themes [AM] 1. c:\windows\system32\svchost.exe [AM] 19. c:\windows\system32\shsvcs.dll TlntSvr [A ] 60. c:\windows\system32\tlntsvr.exe TrkWks [AM] 1. c:\windows\system32\svchost.exe [AM] 61. c:\windows\system32\trkwks.dll UMWdf [A ] 62. c:\windows\system32\wdfmgr.exe upnphost [AM] 1. c:\windows\system32\svchost.exe [A ] 63. c:\windows\system32\upnphost.dll UPS [A ] 64. c:\windows\system32\ups.exe usnjsvc [A ] 65. c:\program files\msn messenger\usnsvc.exe VSS [A ] 66. c:\windows\system32\vssvc.exe W32Time [AM] 1. c:\windows\system32\svchost.exe [AM] 67. c:\windows\system32\w32time.dll WebClient [AM] 1. c:\windows\system32\svchost.exe [AM] 68. c:\windows\system32\webclnt.dll [A ] 69. c:\windows\system32\davclnt.dll winmgmt [AM] 1. c:\windows\system32\svchost.exe [AM] 70. c:\windows\system32\wbem\wmisvc.dll WmdmPmSN [AM] 1. c:\windows\system32\svchost.exe [A ] 71. c:\windows\system32\mspmsnsv.dll Wmi [AM] 1. c:\windows\system32\svchost.exe [AM] 72. c:\windows\system32\advapi32.dll WmiApSrv [A ] 73. c:\windows\system32\wbem\wmiapsrv.exe wscsvc [AM] 1. c:\windows\system32\svchost.exe [A ] 74. c:\windows\system32\wscsvc.dll wuauserv [AM] 1. c:\windows\system32\svchost.exe [AM] 75. c:\windows\system32\wuauserv.dll WZCSVC [AM] 1. c:\windows\system32\svchost.exe [AM] 76. c:\windows\system32\wzcsvc.dll xmlprov [AM] 1. c:\windows\system32\svchost.exe [A ] 77. c:\windows\system32\xmlprov.dll + 内核驱动 + HKLM\System\CurrentControlSet\Services 0525fb001293857f [A ] 78. c:\0525fb001293857f.dat 07143920b5682ece [A ] 79. c:\07143920b5682ece.dat 1f6b28d4956174bd [A ] 80. c:\1f6b28d4956174bd.dat 2a8c15a0d0451cf0 [A ] 81. c:\2a8c15a0d0451cf0.dat 390b974859f9b18c [A ] 82. c:\390b974859f9b18c.dat 461ac23431168ccf [A ] 83. c:\461ac23431168ccf.dat 473d68f8cc302105 [A ] 84. c:\473d68f8cc302105.dat 4886e7b891d5be65 [A ] 85. c:\4886e7b891d5be65.dat 6227562c7571e0d4 [A ] 86. c:\6227562c7571e0d4.dat 8b1c3d14c902f43b [A ] 87. c:\8b1c3d14c902f43b.dat 8e53f9f4b1fd5aaa [A ] 88. c:\8e53f9f4b1fd5aaa.dat 9a978d84b02ce5ec [A ] 89. c:\9a978d84b02ce5ec.dat a1abc6a4ff9cca93 [A ] 90. c:\a1abc6a4ff9cca93.dat abaa0cac53e23550 [A ] 91. c:\abaa0cac53e23550.dat ACPI [A ] 92. c:\windows\system32\drivers\acpi.sys ACPIEC [A ] 93. c:\windows\system32\drivers\acpiec.sys aec [A ] 94. c:\windows\system32\drivers\aec.sys AFD [A ] 95. c:\windows\system32\drivers\afd.sys ALCXWDM [A ] 96. c:\windows\system32\drivers\alcxwdm.sys AsyncMac [A ] 97. c:\windows\system32\drivers\asyncmac.sys atapi [A ] 98. c:\windows\system32\drivers\atapi.sys audstub [A ] 99. c:\windows\system32\drivers\audstub.sys b004705013a25ebe [A ] 100. c:\b004705013a25ebe.dat b9dbde5cf6b845c9 [A ] 101. c:\b9dbde5cf6b845c9.dat ba59c5c0fcfb7388 [A ] 102. c:\ba59c5c0fcfb7388.dat bdb85a9ca485e0a8 [A ] 103. c:\bdb85a9ca485e0a8.dat Beep [A ] 104. c:\windows\system32\drivers\beep.sys CdaC15BA [A ] 105. c:\windows\system32\drivers\cdac15ba.sys Cdaudio [A ] 106. c:\windows\system32\drivers\cdaudio.sys Cdrom [A ] 107. c:\windows\system32\drivers\cdrom.sys cf21e92c6b894272 [A ] 108. c:\cf21e92c6b894272.dat db8c54b894d9a51c [A ] 109. c:\db8c54b894d9a51c.dat dfe6b85c2f5e1cab [A ] 110. c:\dfe6b85c2f5e1cab.dat Disk [A ] 111. c:\windows\system32\drivers\disk.sys dmboot [A ] 112. c:\windows\system32\drivers\dmboot.sys dmio [A ] 113. c:\windows\system32\drivers\dmio.sys dmload [A ] 114. c:\windows\system32\drivers\dmload.sys DMusic [A ] 115. c:\windows\system32\drivers\dmusic.sys drmkaud [A ] 116. c:\windows\system32\drivers\drmkaud.sys e608822429262798 [A ] 117. c:\e608822429262798.dat e9403f04c160fbef [A ] 118. c:\e9403f04c160fbef.dat ea62e5c8fe7e3d26 [A ] 119. c:\ea62e5c8fe7e3d26.dat Fdc [A ] 120. c:\windows\system32\drivers\fdc.sys FileDisk [A ] 121. c:\windows\system32\drivers\filedisk.sys Fips [A ] 122. c:\windows\system32\drivers\fips.sys Flpydisk [A ] 123. c:\windows\system32\drivers\flpydisk.sys FsVga [A ] 124. c:\windows\system32\drivers\fsvga.sys Ftdisk [A ] 125. c:\windows\system32\drivers\ftdisk.sys gameenum [A ] 126. c:\windows\system32\drivers\gameenum.sys Gpc [A ] 127. c:\windows\system32\drivers\msgpc.sys HidUsb [A ] 128. c:\windows\system32\drivers\hidusb.sys HookCont [A ] 129. c:\windows\system32\drivers\hookcont.sys HookNtos [A ] 130. c:\windows\system32\drivers\hookntos.sys HookReg [A ] 131. c:\windows\system32\drivers\hookreg.sys HookSys [A ] 132. c:\windows\system32\drivers\hooksys.sys HookUrl [A ] 133. c:\program files\rising\rfw\hookurl.sys HTTP [A ] 134. c:\windows\system32\drivers\http.sys i8042prt [A ] 135. c:\windows\system32\drivers\i8042prt.sys ialm [A ] 136. c:\windows\system32\drivers\ialmnt5.sys Imapi [A ] 137. c:\windows\system32\drivers\imapi.sys IntelIde [A ] 138. c:\windows\system32\drivers\intelide.sys Ip6Fw [A ] 139. c:\windows\system32\drivers\ip6fw.sys IpFilterDriver [A ] 140. c:\windows\system32\drivers\ipfltdrv.sys IpInIp [A ] 141. c:\windows\system32\drivers\ipinip.sys IpNat [A ] 142. c:\windows\system32\drivers\ipnat.sys IPSec [A ] 143. c:\windows\system32\drivers\ipsec.sys IRENUM [A ] 144. c:\windows\system32\drivers\irenum.sys isapnp [A ] 145. c:\windows\system32\drivers\isapnp.sys JGOGO [A ] 146. c:\windows\system32\drivers\jgogo.sys KAVBootC [A ] 147. c:\windows\system32\drivers\kavbootc.sys Kbdclass [A ] 148. c:\windows\system32\drivers\kbdclass.sys kmixer [A ] 149. c:\windows\system32\drivers\kmixer.sys KSecDD [A ] 150. c:\windows\system32\drivers\ksecdd.sys mnmdd [A ] 151. c:\windows\system32\drivers\mnmdd.sys Modem [A ] 152. c:\windows\system32\drivers\modem.sys Mouclass [A ] 153. c:\windows\system32\drivers\mouclass.sys MountMgr [A ] 154. c:\windows\system32\drivers\mountmgr.sys MSKSSRV [A ] 155. c:\windows\system32\drivers\mskssrv.sys MSPCLOCK [A ] 156. c:\windows\system32\drivers\mspclock.sys MSPQM [A ] 157. c:\windows\system32\drivers\mspqm.sys mssmbios [A ] 158. c:\windows\system32\drivers\mssmbios.sys NDIS [A ] 159. c:\windows\system32\drivers\ndis.sys NdisTapi [A ] 160. c:\windows\system32\drivers\ndistapi.sys Ndisuio [A ] 161. c:\windows\system32\drivers\ndisuio.sys NdisWan [A ] 162. c:\windows\system32\drivers\ndiswan.sys NDProxy [A ] 163. c:\windows\system32\drivers\ndproxy.sys NetBT [A ] 164. c:\windows\system32\drivers\netbt.sys Null [A ] 165. c:\windows\system32\drivers\null.sys NwlnkFlt [A ] 166. c:\windows\system32\drivers\nwlnkflt.sys NwlnkFwd [A ] 167. c:\windows\system32\drivers\nwlnkfwd.sys Parport [A ] 168. c:\windows\system32\drivers\parport.sys PartMgr [A ] 169. c:\windows\system32\drivers\partmgr.sys ParVdm [A ] 170. c:\windows\system32\drivers\parvdm.sys PCI [A ] 171. c:\windows\system32\drivers\pci.sys Pcmcia [A ] 172. c:\windows\system32\drivers\pcmcia.sys PptpMiniport [A ] 173. c:\windows\system32\drivers\raspptp.sys Processor [A ] 174. c:\windows\system32\drivers\processr.sys PSched [A ] 175. c:\windows\system32\drivers\psched.sys Ptilink [A ] 176. c:\windows\system32\drivers\ptilink.sys qkdys [A ] 177. c:\docume~1\admini~1\locals~1\temp\_temp.dat RasAcd [A ] 178. c:\windows\system32\drivers\rasacd.sys Rasl2tp [A ] 179. c:\windows\system32\drivers\rasl2tp.sys RasPppoe [A ] 180. c:\windows\system32\drivers\raspppoe.sys Raspti [A ] 181. c:\windows\system32\drivers\raspti.sys RDPCDD [A ] 182. c:\windows\system32\drivers\rdpcdd.sys rdpdr [A ] 183. c:\windows\system32\drivers\rdpdr.sys RDPWD [A ] 184. c:\windows\system32\drivers\rdpwd.sys redbook [A ] 185. c:\windows\system32\drivers\redbook.sys RfwBase [A ] 186. c:\windows\system32\drivers\rfwbase.sys ROCKEYNT [A ] 187. c:\windows\system32\drivers\rockeynt.sys RsAntiSpyware [A ] 188. c:\windows\system32\drivers\rsboot.sys RsFwDrv [A ] 189. c:\program files\rising\rfw\rsfwdrv.sys RsNTGDI [A ] 190. c:\windows\system32\drivers\rsntgdi.sys rtl8139 [A ] 191. c:\windows\system32\drivers\rtl8139.sys Secdrv [A ] 192. c:\windows\system32\drivers\secdrv.sys serenum [A ] 193. c:\windows\system32\drivers\serenum.sys Serial [A ] 194. c:\windows\system32\drivers\serial.sys Sfloppy [A ] 195. c:\windows\system32\drivers\sfloppy.sys splitter [A ] 196. c:\windows\system32\drivers\splitter.sys swenum [A ] 197. c:\windows\system32\drivers\swenum.sys swmidi [A ] 198. c:\windows\system32\drivers\swmidi.sys sysaudio [A ] 199. c:\windows\system32\drivers\sysaudio.sys Tcpip [A ] 200. c:\windows\system32\drivers\tcpip.sys TDPIPE [A ] 201. c:\windows\system32\drivers\tdpipe.sys TDTCP [A ] 202. c:\windows\system32\drivers\tdtcp.sys TermDD [A ] 203. c:\windows\system32\drivers\termdd.sys TesSafe [A ] 204. c:\windows\system32\tessafe.sys tngdys [A ] 205. c:\windows\system32\tngdys Update [A ] 206. c:\windows\system32\drivers\update.sys usbccgp [A ] 207. c:\windows\system32\drivers\usbccgp.sys usbehci [A ] 208. c:\windows\system32\drivers\usbehci.sys usbhub [A ] 209. c:\windows\system32\drivers\usbhub.sys usbohci [A ] 210. c:\windows\system32\drivers\usbohci.sys usbprint [A ] 211. c:\windows\system32\drivers\usbprint.sys usbscan [A ] 212. c:\windows\system32\drivers\usbscan.sys USBSTOR [A ] 213. c:\windows\system32\drivers\usbstor.sys usbuhci [A ] 214. c:\windows\system32\drivers\usbuhci.sys VgaSave [A ] 215. c:\windows\system32\drivers\vga.sys VolSnap [A ] 216. c:\windows\system32\drivers\volsnap.sys Wanarp [A ] 217. c:\windows\system32\drivers\wanarp.sys wdmaud [A ] 218. c:\windows\system32\drivers\wdmaud.sys + 文件系统驱动 + HKLM\System\CurrentControlSet\Services Cdfs [A ] 219. c:\windows\system32\drivers\cdfs.sys Fastfat [A ] 220. c:\windows\system32\drivers\fastfat.sys FltMgr [A ] 221. c:\windows\system32\drivers\fltmgr.sys MRxDAV [A ] 222. c:\windows\system32\drivers\mrxdav.sys MRxSmb [A ] 223. c:\windows\system32\drivers\mrxsmb.sys Msfs [A ] 224. c:\windows\system32\drivers\msfs.sys Mup [A ] 225. c:\windows\system32\drivers\mup.sys NetBIOS [A ] 226. c:\windows\system32\drivers\netbios.sys Npfs [A ] 227. c:\windows\system32\drivers\npfs.sys Ntfs [A ] 228. c:\windows\system32\drivers\ntfs.sys Rdbss [A ] 229. c:\windows\system32\drivers\rdbss.sys Sr [A ] 230. c:\windows\system32\drivers\sr.sys Srv [A ] 231. c:\windows\system32\drivers\srv.sys Udfs [A ] 232. c:\windows\system32\drivers\udfs.sys + 系统登陆自运行 + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon UIHost [A ] 233. c:\windows\system32\logonui.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify crypt32chain [AM] 234. c:\windows\system32\crypt32.dll cryptnet [AM] 235. c:\windows\system32\cryptnet.dll cscdll [AM] 236. c:\windows\system32\cscdll.dll igfxcui [A ] 237. c:\windows\system32\igfxsrvc.dll ScCertProp [AM] 238. c:\windows\system32\wlnotify.dll Schedule [AM] 238. c:\windows\system32\wlnotify.dll sclgntfy [A ] 239. c:\windows\system32\sclgntfy.dll SensLogn [AM] 238. c:\windows\system32\wlnotify.dll termsrv [AM] 238. c:\windows\system32\wlnotify.dll WgaLogon [AM] 240. c:\windows\system32\wgalogon.dll wlballoon [AM] 238. c:\windows\system32\wlnotify.dll + IE浏览器加载模块 + HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} [AM] 241. c:\windows\system32\kakatool.dll + HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks {CFBFAE00-17A6-11D0-99CB-00C04FD64497} [AM] 242. c:\windows\system32\shdocvw.dll + HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars {4D5C8C25-D075-11d0-B416-00C04FB90376} [AM] 242. c:\windows\system32\shdocvw.dll + HKCU\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars {C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} [AM] 243. c:\windows\system32\shell32.dll {EFA24E61-B078-11D0-89E4-00C04FC9E26E} [AM] 242. c:\windows\system32\shdocvw.dll {EFA24E62-B078-11D0-89E4-00C04FC9E26E} [AM] 242. c:\windows\system32\shdocvw.dll + 资源管理器加载模块 + HKLM\SOFTWARE\Classes\PROTOCOLS\Filter Class Install Handler [AM] 244. c:\windows\system32\urlmon.dll deflate [AM] 244. c:\windows\system32\urlmon.dll gzip [AM] 244. c:\windows\system32\urlmon.dll lzdhtml [AM] 244. c:\windows\system32\urlmon.dll text/webviewhtml [AM] 243. c:\windows\system32\shell32.dll text/xml [A ] 245. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll + HKLM\SOFTWARE\Classes\PROTOCOLS\Handler about [AM] 246. c:\windows\system32\mshtml.dll cdl [AM] 244. c:\windows\system32\urlmon.dll dvd [A ] 247. c:\windows\system32\msvidctl.dll file [AM] 244. c:\windows\system32\urlmon.dll ftp [AM] 244. c:\windows\system32\urlmon.dll gopher [AM] 244. c:\windows\system32\urlmon.dll http [AM] 244. c:\windows\system32\urlmon.dll https [AM] 244. c:\windows\system32\urlmon.dll its [A ] 248. c:\windows\system32\itss.dll javascript [AM] 246. c:\windows\system32\mshtml.dll livecall [A ] 249. c:\program files\msn messenger\msgrapp.8.1.0178.00.dll local [AM] 244. c:\windows\system32\urlmon.dll mailto [AM] 246. c:\windows\system32\mshtml.dll mhtml [AM] 250. c:\windows\system32\inetcomm.dll mk [AM] 244. c:\windows\system32\urlmon.dll ms-its [A ] 248. c:\windows\system32\itss.dll msnim [A ] 249. c:\program files\msn messenger\msgrapp.8.1.0178.00.dll res [AM] 246. c:\windows\system32\mshtml.dll sysimage [AM] 246. c:\windows\system32\mshtml.dll tv [A ] 247. c:\windows\system32\msvidctl.dll vbscript [AM] 246. c:\windows\system32\mshtml.dll wia [A ] 251. c:\windows\system32\wiascr.dll + HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} [A ] 252. c:\windows\inf\unregmp2.exe >{26923b43-4d38-484f-9b9e-de460746276c} [A ] 253. c:\windows\system32\shmgrate.exe >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS [A ] 254. c:\windows\system32\rundll32.exe >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} [A ] 253. c:\windows\system32\shmgrate.exe {2C7339CF-2B09-4501-B3F3-F3508C9228ED} [A ] 255. c:\windows\system32\regsvr32.exe [AM] 256. c:\windows\system32\themeui.dll {44BBA840-CC51-11CF-AAFA-00AA00B6015C} [A ] 257. c:\program files\outlook express\setup50.exe {44BBA842-CC51-11CF-AAFA-00AA00B6015B} [A ] 254. c:\windows\system32\rundll32.exe {6BF52A52-394A-11d3-B153-00C04F79FAA6} [A ] 254. c:\windows\system32\rundll32.exe {7790769C-0471-11d2-AF11-00C04FA35D02} [A ] 257. c:\program files\outlook express\setup50.exe {89820200-ECBD-11cf-8B85-00AA005B4340} [A ] 255. c:\windows\system32\regsvr32.exe [AM] 243. c:\windows\system32\shell32.dll {89820200-ECBD-11cf-8B85-00AA005B4383} [A ] 258. c:\windows\system32\ie4uinit.exe + HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers {0D2E74C4-3C34-11d2-A27E-00C04FC30871} [AM] 243. c:\windows\system32\shell32.dll {24F14F01-7B1C-11d1-838f-0000F80461CF} [AM] 243. c:\windows\system32\shell32.dll {24F14F02-7B1C-11d1-838f-0000F80461CF} [AM] 243. c:\windows\system32\shell32.dll {66742402-F9B9-11D1-A202-0000F81FEDEE} [AM] 243. c:\windows\system32\shell32.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved Multimedia File Property Sheet [A ] 259. c:\windows\system32\mmsys.cpl ICM 扫描仪管理 [A ] 260. c:\windows\system32\icmui.dll NTFS Security Page [A ] 261. c:\windows\system32\rshx32.dll OLE Docfile Property Page [A ] 262. c:\windows\system32\docprop.dll Shell extensions for sharing [AM] 263. c:\windows\system32\ntshrui.dll PlusPack CPL Extension [AM] 256. c:\windows\system32\themeui.dll Display Adapter CPL Extension [A ] 264. c:\windows\system32\deskadp.dll Display Monitor CPL Extension [A ] 265. c:\windows\system32\deskmon.dll DS Security Page [A ] 266. c:\windows\system32\dssec.dll Compatibility Page [A ] 267. c:\windows\system32\slayerxp.dll Shell Scrap DataHandler [A ] 268. c:\windows\system32\shscrap.dll Disk Copy Extension [A ] 269. c:\windows\system32\diskcopy.dll Shell extensions for Microsoft Windows Network objects [A ] 270. c:\windows\system32\ntlanui2.dll ICM 监视器管理 [A ] 260. c:\windows\system32\icmui.dll ICM 打印机管理 [A ] 260. c:\windows\system32\icmui.dll Web Printer Shell Extension [A ] 271. c:\windows\system32\printui.dll Disk Quota UI [A ] 272. c:\windows\system32\dskquoui.dll 公文包 [AM] 273. c:\windows\system32\syncui.dll 字体 [A ] 274. c:\windows\system32\fontext.dll ICC 配置文件 [A ] 260. c:\windows\system32\icmui.dll Printers Security Page [A ] 261. c:\windows\system32\rshx32.dll Shell extensions for sharing [AM] 263. c:\windows\system32\ntshrui.dll Display TroubleShoot CPL Extension [A ] 275. c:\windows\system32\deskperf.dll Crypto PKO Extension [A ] 276. c:\windows\system32\cryptext.dll Crypto Sign Extension [A ] 276. c:\windows\system32\cryptext.dll 网络连接 [AM] 277. c:\windows\system32\netshell.dll 网络连接 [AM] 277. c:\windows\system32\netshell.dll 扫描仪和照相机 [A ] 278. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 278. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 278. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 278. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 278. c:\windows\system32\wiashext.dll Remote Sessions CPL Extension [A ] 279. c:\windows\system32\remotepg.dll Portable Media Devices [A ] 280. c:\windows\system32\audiodev.dll Portable Media Devices Menu [A ] 280. c:\windows\system32\audiodev.dll Shell Search Band [AM] 281. c:\windows\system32\browseui.dll Windows Script Host 的 Shell extensions [A ] 282. c:\windows\system32\wshext.dll Microsoft 数据链接 [AM] 283. c:\program files\common files\system\ole db\oledb32.dll Tasks Folder Icon Handler [A ] 284. c:\windows\system32\mstask.dll Tasks Folder Shell Extension [A ] 284. c:\windows\system32\mstask.dll 任务计划 [A ] 284. c:\windows\system32\mstask.dll Set Program Access and Defaults [AM] 242. c:\windows\system32\shdocvw.dll Auto Update Property Sheet Extension [A ] 285. c:\windows\system32\wuaucpl.cpl 搜索 [AM] 242. c:\windows\system32\shdocvw.dll 帮助和支持 [AM] 242. c:\windows\system32\shdocvw.dll 帮助和支持 [AM] 242. c:\windows\system32\shdocvw.dll 运行... [AM] 242. c:\windows\system32\shdocvw.dll Internet [AM] 242. c:\windows\system32\shdocvw.dll 电子邮件 [AM] 242. c:\windows\system32\shdocvw.dll 字体 [AM] 242. c:\windows\system32\shdocvw.dll 管理工具 [AM] 242. c:\windows\system32\shdocvw.dll 以前的版本属性页 [A ] 286. c:\windows\system32\twext.dll 以前的版本 [A ] 286. c:\windows\system32\twext.dll Audio Media Properties Handler [A ] 287. c:\windows\system32\shmedia.dll Video Media Properties Handler [A ] 287. c:\windows\system32\shmedia.dll Wav Properties Handler [A ] 287. c:\windows\system32\shmedia.dll Avi Properties Handler [A ] 287. c:\windows\system32\shmedia.dll Midi Properties Handler [A ] 287. c:\windows\system32\shmedia.dll Video Thumbnail Extractor [A ] 287. c:\windows\system32\shmedia.dll Microsoft Internet 工具栏 [AM] 281. c:\windows\system32\browseui.dll 下载状态 [AM] 281. c:\windows\system32\browseui.dll 补充的外壳文件夹 [AM] 281. c:\windows\system32\browseui.dll 补充的外壳文件夹 2 [AM] 281. c:\windows\system32\browseui.dll BandProxy [AM] 281. c:\windows\system32\browseui.dll Microsoft BrowserBand [AM] 281. c:\windows\system32\browseui.dll 窗格中的搜索 [AM] 281. c:\windows\system32\browseui.dll 注册数目路选项实用程序 [AM] 281. c:\windows\system32\browseui.dll 地址(&A) [AM] 281. c:\windows\system32\browseui.dll 地址 EditBox [AM] 281. c:\windows\system32\browseui.dll Shell Microsoft AutoComplete [AM] 281. c:\windows\system32\browseui.dll MRU 自动完成列表 [AM] 281. c:\windows\system32\browseui.dll 自定义 MRU 自动完成列表 [AM] 281. c:\windows\system32\browseui.dll 可访问的 [AM] 281. c:\windows\system32\browseui.dll 跟踪弹出栏 [AM] 281. c:\windows\system32\browseui.dll Microsoft 历史自动完成列表 [AM] 281. c:\windows\system32\browseui.dll Microsoft 外壳文件夹自动完成列表 [AM] 281. c:\windows\system32\browseui.dll Microsoft 多个自动完成列表容器 [AM] 281. c:\windows\system32\browseui.dll Shell Band Site Menu [AM] 281. c:\windows\system32\browseui.dll 外壳 DeskBarApp [AM] 281. c:\windows\system32\browseui.dll 外壳 DeskBar [AM] 281. c:\windows\system32\browseui.dll 外壳 Rebar BandSite [AM] 281. c:\windows\system32\browseui.dll 用户帮助 [AM] 281. c:\windows\system32\browseui.dll 全局文件夹设置 [AM] 281. c:\windows\system32\browseui.dll IE Search Band [AM] 281. c:\windows\system32\browseui.dll IE Microsoft AutoComplete [AM] 281. c:\windows\system32\browseui.dll Web 搜索 [AM] 281. c:\windows\system32\browseui.dll TridentImageExtractor [AM] 281. c:\windows\system32\browseui.dll Favorites Band [AM] 242. c:\windows\system32\shdocvw.dll History Band [AM] 242. c:\windows\system32\shdocvw.dll Shell Automation Inproc Service [AM] 242. c:\windows\system32\shdocvw.dll Microsoft Browser Architecture [AM] 242. c:\windows\system32\shdocvw.dll ISFBand OC [AM] 242. c:\windows\system32\shdocvw.dll Search Assistant OC [AM] 242. c:\windows\system32\shdocvw.dll Shell DocObject Viewer [AM] 242. c:\windows\system32\shdocvw.dll InternetShortcut [AM] 242. c:\windows\system32\shdocvw.dll Microsoft Url History 服务 [AM] 242. c:\windows\system32\shdocvw.dll 历史记录 [AM] 242. c:\windows\system32\shdocvw.dll Internet 临时文件 [AM] 242. c:\windows\system32\shdocvw.dll Internet 临时文件 [AM] 242. c:\windows\system32\shdocvw.dll Microsoft Url 搜索挂接 [AM] 242. c:\windows\system32\shdocvw.dll IE4 套件初始屏幕 [AM] 242. c:\windows\system32\shdocvw.dll CDF Extension Copy Hook [AM] 242. c:\windows\system32\shdocvw.dll Internet [AM] 242. c:\windows\system32\shdocvw.dll 浏览器栏 [AM] 242. c:\windows\system32\shdocvw.dll Internet Name Space [AM] 242. c:\windows\system32\shdocvw.dll Sendmail service [A ] 288. c:\windows\system32\sendmail.dll Sendmail service [A ] 288. c:\windows\system32\sendmail.dll ActiveX 高速缓存文件夹 [A ] 289. c:\windows\system32\occache.dll WebCheck [AM] 290. c:\windows\system32\webcheck.dll Subscription Mgr [AM] 290. c:\windows\system32\webcheck.dll 预订文件夹 [AM] 290. c:\windows\system32\webcheck.dll WebCheckWebCrawler [AM] 290. c:\windows\system32\webcheck.dll WebCheckChannelAgent [AM] 290. c:\windows\system32\webcheck.dll TrayAgent [AM] 290. c:\windows\system32\webcheck.dll Code Download Agent [AM] 290. c:\windows\system32\webcheck.dll ConnectionAgent [AM] 290. c:\windows\system32\webcheck.dll PostAgent [AM] 290. c:\windows\system32\webcheck.dll WebCheck SyncMgr Handler [AM] 290. c:\windows\system32\webcheck.dll Shell Application Manager [A ] 291. c:\windows\system32\appwiz.cpl Installed Apps Enumerator [A ] 291. c:\windows\system32\appwiz.cpl Darwin App Publisher [A ] 291. c:\windows\system32\appwiz.cpl Shell Image Verbs [A ] 292. c:\windows\system32\shimgvw.dll Shell Image Data Factory [A ] 292. c:\windows\system32\shimgvw.dll GDI+ 文件缩略图解压缩程序 [A ] 292. c:\windows\system32\shimgvw.dll 摘要信息缩略图处理程序(DOCFILES) [A ] 292. c:\windows\system32\shimgvw.dll HTML 缩略图的解压缩程序 [A ] 292. c:\windows\system32\shimgvw.dll Shell Image Property Handler [A ] 292. c:\windows\system32\shimgvw.dll 网络出版向导 [A ] 293. c:\windows\system32\netplwiz.dll 通过 Web 订购照片 [A ] 293. c:\windows\system32\netplwiz.dll 外壳出版向导对象 [A ] 293. c:\windows\system32\netplwiz.dll 获取 Passport 向导 [A ] 293. c:\windows\system32\netplwiz.dll 频道文件 [A ] 294. c:\windows\system32\cdfview.dll 频道快捷方式 [A ] 294. c:\windows\system32\cdfview.dll 频道句柄对象 [A ] 294. c:\windows\system32\cdfview.dll Channel Menu [A ] 294. c:\windows\system32\cdfview.dll Channel Properties [A ] 294. c:\windows\system32\cdfview.dll Extensions Manager Folder [A ] 295. c:\windows\system32\extmgr.dll FTP Folders Webview [A ] 296. c:\windows\system32\msieftp.dll Microsoft DocProp Shell Ext [A ] 297. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Edit Box Control [A ] 297. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace ML Edit Box Control [A ] 297. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Droplist Combo Control [A ] 297. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Calendar Control [A ] 297. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Time Control [A ] 297. c:\windows\system32\docprop2.dll Directory Query UI [A ] 298. c:\windows\system32\dsquery.dll Shell properties for a DS object [A ] 298. c:\windows\system32\dsquery.dll Directory Object Find [A ] 298. c:\windows\system32\dsquery.dll Directory Start/Search Find [A ] 298. c:\windows\system32\dsquery.dll Directory Property UI [A ] 299. c:\windows\system32\dsuiext.dll Directory Context Menu Verbs [A ] 299. c:\windows\system32\dsuiext.dll MyDocs Copy Hook [AM] 300. c:\windows\system32\mydocs.dll MyDocs Drop Target [AM] 300. c:\windows\system32\mydocs.dll MyDocs Properties [AM] 300. c:\windows\system32\mydocs.dll Offline Files Menu [AM] 301. c:\windows\system32\cscui.dll Offline Files Folder Options [AM] 301. c:\windows\system32\cscui.dll 脱机文件夹 [AM] 301. c:\windows\system32\cscui.dll DfsShell [A ] 302. c:\windows\system32\dfsshlex.dll %DESC_PublishDropTarget% [A ] 303. c:\windows\system32\photowiz.dll MMC Icon Handler [A ] 304. c:\windows\system32\mmcshext.dll 用户(&P)... [A ] 305. c:\program files\outlook express\wabfind.dll Windows Media Player Play as Playlist Context Menu Handler [A ] 306. c:\windows\system32\wmpshell.dll Windows Media Player Burn Audio CD Context Menu Handler [A ] 306. c:\windows\system32\wmpshell.dll Windows Media Player Add to Playlist Context Menu Handler [A ] 306. c:\windows\system32\wmpshell.dll Messenger Sharing Folders [A ] 307. c:\program files\msn messenger\fsshext.8.1.0178.00.dll WinRAR shell extension [AM] 308. c:\program files\winrar\rarext.dll Web Folders [A ] 309. c:\program files\common files\microsoft shared\web folders\msonsext.dll Microsoft Office HTML Icon Handler [A ] 310. c:\program files\microsoft office\office11\msohev.dll AutoCAD 数字签名图标覆盖处理程序 [AM] 311. c:\windows\system32\acsignicon.dll Autodesk Drawing Preview [A ] 312. c:\program files\common files\autodesk shared\thumbnail\acthumbnail16.dll RISING [AM] 313. c:\windows\system32\ravext.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks {32CD708B-60A7-4C00-9377-D73EAA495F0F} [AM] 313. c:\windows\system32\ravext.dll {AC2DC2EF-5165-40A3-8CDF-41DCA1B0901A} [AM] 314. c:\windows\system32\shlhook.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler Browseui 预加载程序 [AM] 281. c:\windows\system32\browseui.dll 组件类别缓存程序 [AM] 281. c:\windows\system32\browseui.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad PostBootReminder [AM] 243. c:\windows\system32\shell32.dll CDBurn [AM] 243. c:\windows\system32\shell32.dll WebCheck [AM] 290. c:\windows\system32\webcheck.dll SysTray [AM] 315. c:\windows\system32\stobject.dll + 用户登陆自运行项目 + HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds StartupPrograms [A ] 316. c:\windows\system32\rdpclip.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Userinit [A ] 317. c:\windows\system32\userinit.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Shell [AM] 318. c:\windows\explorer.exe + HKLM\Software\Microsoft\Windows\CurrentVersion\Run RavTask [AM] 319. c:\program files\rising\rav\ravtask.exe + 开机执行 + HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order BootExecute [A ] 320. c:\windows\system32\autochk.exe [A ] 321. c:\windows\system32\bsmain.exe [A ] 322. c:\windows\system32\kknative.exe + 映像劫持 + HKCR\Folder\shell explore [AM] 318. c:\windows\explorer.exe open [AM] 318. c:\windows\explorer.exe + HKCR\.exe exefile\启用/禁用数字签名图标\Command [A ] 323. c:\windows\system32\acsignopt.exe + HKCR\.bat batfile\edit\Command [A ] 324. c:\windows\system32\notepad.exe batfile\print\Command [A ] 324. c:\windows\system32\notepad.exe + HKCR\.html htmlfile\Edit\Command [A ] 325. c:\program files\microsoft office\office11\msohtmed.exe htmlfile\open\Command [AM] 326. d:\tencent\tt\ttraveler.exe htmlfile\opennew\Command [A ] 327. c:\program files\internet explorer\iexplore.exe htmlfile\Print\Command [A ] 325. c:\program files\microsoft office\office11\msohtmed.exe htmlfile\printto\Command [A ] 254. c:\windows\system32\rundll32.exe htmlfile\TencentTraveler\Command [AM] 326. d:\tencent\tt\ttraveler.exe + HKCR\.htm htmlfile\Edit\Command [A ] 325. c:\program files\microsoft office\office11\msohtmed.exe htmlfile\open\Command [AM] 326. d:\tencent\tt\ttraveler.exe htmlfile\opennew\Command [A ] 327. c:\program files\internet explorer\iexplore.exe htmlfile\Print\Command [A ] 325. c:\program files\microsoft office\office11\msohtmed.exe htmlfile\printto\Command [A ] 254. c:\windows\system32\rundll32.exe htmlfile\TencentTraveler\Command [AM] 326. d:\tencent\tt\ttraveler.exe + HKCR\.log txtfile\open\Command [A ] 328. c:\windows\notepad.exe txtfile\print\Command [A ] 324. c:\windows\system32\notepad.exe txtfile\printto\Command [A ] 324. c:\windows\system32\notepad.exe + HKCR\.txt txtfile\open\Command [A ] 328. c:\windows\notepad.exe txtfile\print\Command [A ] 324. c:\windows\system32\notepad.exe txtfile\printto\Command [A ] 324. c:\windows\system32\notepad.exe + HKCR\.cmd cmdfile\edit\Command [A ] 324. c:\windows\system32\notepad.exe cmdfile\print\Command [A ] 324. c:\windows\system32\notepad.exe + HKCR\.scr scrfile\install\Command [A ] 254. c:\windows\system32\rundll32.exe + HKCR\.reg regfile\edit\Command [A ] 324. c:\windows\system32\notepad.exe regfile\open\Command [A ] 329. c:\windows\regedit.exe regfile\print\Command [A ] 324. c:\windows\system32\notepad.exe + HKCR\.vbs VBSFile\Edit\Command [A ] 324. c:\windows\system32\notepad.exe VBSFile\Open\Command [A ] 330. c:\windows\system32\wscript.exe VBSFile\Open2\Command [A ] 331. c:\windows\system32\cscript.exe VBSFile\Print\Command [A ] 324. c:\windows\system32\notepad.exe + HKCR\.js JSFile\Edit\Command [A ] 324. c:\windows\system32\notepad.exe JSFile\Open\Command [A ] 330. c:\windows\system32\wscript.exe JSFile\Open2\Command [A ] 331. c:\windows\system32\cscript.exe JSFile\Print\Command [A ] 324. c:\windows\system32\notepad.exe + HKCR\.mp3 MyTvPlayer.mp3\open\Command [A ] 332. e:\mytvplayer\mytvplayer.exe + HKCR\.ini inifile\open\Command [A ] 324. c:\windows\system32\notepad.exe inifile\print\Command [A ] 324. c:\windows\system32\notepad.exe + HKCR\.inf inffile\Install\Command [A ] 254. c:\windows\system32\rundll32.exe inffile\open\Command [A ] 324. c:\windows\system32\notepad.exe inffile\print\Command [A ] 324. c:\windows\system32\notepad.exe + 程序初始化和已知动态连接库 + HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs advapi32 [AM] 72. c:\windows\system32\advapi32.dll comdlg32 [AM] 333. c:\windows\system32\comdlg32.dll gdi32 [AM] 334. c:\windows\system32\gdi32.dll imagehlp [AM] 335. c:\windows\system32\imagehlp.dll kernel32 [AM] 336. c:\windows\system32\kernel32.dll lz32 [A ] 337. c:\windows\system32\lz32.dll ole32 [AM] 338. c:\windows\system32\ole32.dll oleaut32 [AM] 339. c:\windows\system32\oleaut32.dll olecli32 [A ] 340. c:\windows\system32\olecli32.dll olecnv32 [A ] 341. c:\windows\system32\olecnv32.dll olesvr32 [A ] 342. c:\windows\system32\olesvr32.dll olethk32 [A ] 343. c:\windows\system32\olethk32.dll rpcrt4 [AM] 344. c:\windows\system32\rpcrt4.dll shell32 [AM] 243. c:\windows\system32\shell32.dll url [A ] 345. c:\windows\system32\url.dll urlmon [AM] 244. c:\windows\system32\urlmon.dll user32 [AM] 346. c:\windows\system32\user32.dll version [AM] 347. c:\windows\system32\version.dll wininet [AM] 348. c:\windows\system32\wininet.dll wldap32 [AM] 349. c:\windows\system32\wldap32.dll + 打印机监控 + HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors BJ Language Monitor [AM] 350. c:\windows\system32\cnbjmon.dll EPSON ME 200 32MonitorBC [AM] 351. c:\windows\system32\e_flbbfc.dll Local Port [AM] 352. c:\windows\system32\localspl.dll Microsoft Document Imaging Writer Monitor [AM] 353. c:\windows\system32\mdimon.dll PJL Language Monitor [AM] 354. c:\windows\system32\pjlmon.dll Standard TCP/IP Port [AM] 355. c:\windows\system32\tcpmon.dll USB Monitor [AM] 356. c:\windows\system32\usbmon.dll + 安全验证 + HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders SecurityProviders [A ] 357. c:\windows\system32\msapsspc.dll [AM] 358. c:\windows\system32\schannel.dll [A ] 359. c:\windows\system32\digest.dll [A ] 360. c:\windows\system32\msnsspc.dll + HKLM\SYSTEM\CurrentControlSet\Control\Lsa Authentication Packages [AM] 361. c:\windows\system32\msv1_0.dll Notification Packages [AM] 362. c:\windows\system32\scecli.dll Security Packages [AM] 363. c:\windows\system32\kerberos.dll [AM] 361. c:\windows\system32\msv1_0.dll [AM] 358. c:\windows\system32\schannel.dll [AM] 364. c:\windows\system32\wdigest.dll + 正在运行的进程 + 000000c8(200) RavTask.exe 00400000[00034000] [AM] 319. c:\program files\rising\rav\ravtask.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 373. c:\program files\rising\rav\proccom.dll 00A30000[00024000] [ M] 374. c:\program files\rising\rav\rscommx2.dll 23700000[00028000] [ M] 375. c:\program files\rising\rav\rscommon.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 00C90000[0000E000] [ M] 376. c:\program files\rising\rav\rsappmgr.dll 08CB0000[00030000] [ M] 377. c:\program files\rising\rav\cfgdll.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 379. c:\windows\system32\msctfime.ime + 000000d8(216) CDAC11BA.EXE 00400000[00012000] [AM] 8. c:\windows\system32\drivers\cdac11ba.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll + 000000e8(232) stormliv.exe 00400000[00076000] [ M] 380. c:\program files\stormii\stormliv.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 75FF0000[00065000] [ M] 383. c:\program files\stormii\msvcp60.dll 73D30000[000FE000] [ M] 384. c:\windows\system32\mfc42.dll 76320000[00047000] [AM] 333. c:\windows\system32\comdlg32.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 76680000[000A2000] [AM] 348. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 61BE0000[0000D000] [ M] 387. c:\windows\system32\mfc42loc.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 5DD50000[00113000] [ M] 394. c:\windows\system32\msxml3.dll 76F80000[00008000] [ M] 395. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 10000000[00045000] [ M] 396. c:\program files\stormii\box\boxlog.dll 76760000[0000C000] [ M] 397. c:\windows\system32\cryptdll.dll 76F90000[00006000] [ M] 398. c:\windows\system32\rasadhlp.dll 75C60000[0009F000] [AM] 244. c:\windows\system32\urlmon.dll 74CF0000[00091000] [ M] 399. c:\windows\system32\mlang.dll + 00000158(344) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 749C0000[00054000] [AM] 56. c:\windows\system32\wiaservc.dll 74A40000[00007000] [ M] 405. c:\windows\system32\cfgmgr32.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 73AA0000[00015000] [ M] 406. c:\windows\system32\mscms.dll 72F70000[00026000] [ M] 407. c:\windows\system32\winspool.drv 762D0000[00010000] [ M] 408. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 71CC0000[0001C000] [ M] 411. c:\windows\system32\actxprxy.dll 73B10000[00013000] [ M] 412. c:\windows\system32\sti.dll + 000001d0(464) Ravmon.exe 00400000[00067000] [ M] 413. c:\program files\rising\rav\ravmon.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 7C140000[00103000] [ M] 414. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 415. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 7C3A0000[0007B000] [ M] 416. c:\windows\system32\msvcp71.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 373. c:\program files\rising\rav\proccom.dll 00B20000[00024000] [ M] 374. c:\program files\rising\rav\rscommx2.dll 23700000[00028000] [ M] 375. c:\program files\rising\rav\rscommon.dll 00D70000[00035000] [ M] 417. c:\program files\rising\rav\recomp.dll 00DC0000[00036000] [ M] 418. c:\program files\rising\rav\refs.dll 01020000[0002F000] [ M] 419. c:\program files\rising\rav\viruslib.dll 01160000[00028000] [ M] 420. c:\program files\rising\rav\relibldr.dll 011E0000[0000E000] [ M] 376. c:\program files\rising\rav\rsappmgr.dll 01200000[00030000] [ M] 377. c:\program files\rising\rav\cfgdll.dll 01360000[00075000] [ M] 421. c:\program files\rising\rav\monrule.dll 23900000[00040000] [ M] 422. c:\program files\rising\rav\pngdll.dll 76F20000[00008000] [ M] 423. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 408. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 379. c:\windows\system32\msctfime.ime 26600000[000B8000] [ M] 424. c:\program files\rising\rav\rsguilib.dll 23800000[00018000] [ M] 425. c:\program files\rising\rav\rsxml.dll 5E8E0000[0000D000] [ M] 426. c:\windows\system32\perfproc.dll + 000001d8(472) smss.exe 48580000[0000F000] [ M] 427. c:\windows\system32\smss.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll + 00000218(536) csrss.exe 4A680000[00005000] [ M] 428. c:\windows\system32\csrss.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 75AA0000[0000B000] [ M] 429. c:\windows\system32\csrsrv.dll 75AB0000[00010000] [ M] 430. c:\windows\system32\basesrv.dll 764E0000[00054000] [ M] 431. c:\windows\system32\winsrv.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 75E00000[000AE000] [ M] 432. c:\windows\system32\sxs.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll + 00000230(560) winlogon.exe 01000000[0007C000] [ M] 435. c:\windows\system32\winlogon.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77FE0000[00011000] [ M] 436. c:\windows\system32\authz.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 758A0000[00008000] [ M] 437. c:\windows\system32\nddeapi.dll 75890000[0000A000] [ M] 438. c:\windows\system32\profmap.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 76BC0000[0000B000] [ M] 439. c:\windows\system32\psapi.dll 76B90000[0000F000] [ M] 440. c:\windows\system32\regapi.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 762D0000[00010000] [ M] 408. c:\windows\system32\winsta.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 758D0000[000F0000] [ M] 441. c:\windows\system32\msgina.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 73540000[0003D000] [ M] 442. c:\windows\system32\odbc32.dll 76320000[00047000] [AM] 333. c:\windows\system32\comdlg32.dll 20000000[00017000] [ M] 443. c:\windows\system32\odbcint.dll 76E10000[00023000] [AM] 19. c:\windows\system32\shsvcs.dll 76B80000[00005000] [ M] 444. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 445. c:\windows\system32\sfc_os.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 76D70000[00022000] [ M] 446. c:\windows\system32\apphelp.dll 73640000[0002E000] [ M] 379. c:\windows\system32\msctfime.ime 72360000[0001A000] [ M] 447. c:\windows\system32\winscard.dll 76F20000[00008000] [ M] 423. c:\windows\system32\wtsapi32.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 0FFD0000[00028000] [ M] 448. c:\windows\system32\rsaenh.dll 76570000[0001C000] [AM] 236. c:\windows\system32\cscdll.dll 758B0000[0001A000] [AM] 238. c:\windows\system32\wlnotify.dll 72F70000[00026000] [ M] 407. c:\windows\system32\winspool.drv 71A90000[00012000] [ M] 449. c:\windows\system32\mpr.dll 011A0000[0003B000] [AM] 240. c:\windows\system32\wgalogon.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 76CB0000[00020000] [ M] 450. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 76590000[0004E000] [AM] 301. c:\windows\system32\cscui.dll 01450000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 77C40000[00023000] [AM] 361. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 72C90000[00009000] [ M] 453. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 454. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll + 0000025c(604) services.exe 01000000[0001C000] [AM] 17. c:\windows\system32\services.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 75840000[0004A000] [ M] 455. c:\windows\system32\scesrv.dll 77FE0000[00011000] [ M] 436. c:\windows\system32\authz.dll 7E1E0000[00020000] [ M] 456. c:\windows\system32\umpnpmgr.dll 762D0000[00010000] [ M] 408. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 5F9A0000[0000C000] [ M] 457. c:\windows\system32\ncobjapi.dll 75FF0000[00065000] [ M] 458. c:\windows\system32\msvcp60.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76D70000[00022000] [ M] 446. c:\windows\system32\apphelp.dll 76CE0000[00011000] [ M] 459. c:\windows\system32\eventlog.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 76BC0000[0000B000] [ M] 439. c:\windows\system32\psapi.dll 76F20000[00008000] [ M] 423. c:\windows\system32\wtsapi32.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll + 00000268(616) lsass.exe 01000000[00006000] [AM] 32. c:\windows\system32\lsass.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 74480000[000AE000] [ M] 460. c:\windows\system32\lsasrv.dll 71A90000[00012000] [ M] 449. c:\windows\system32\mpr.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 76770000[00013000] [ M] 461. c:\windows\system32\ntdsapi.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll 743A0000[00068000] [ M] 462. c:\windows\system32\samsrv.dll 76760000[0000C000] [ M] 397. c:\windows\system32\cryptdll.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 20000000[0000E000] [ M] 463. c:\windows\system32\msprivs.dll 71C70000[0004B000] [AM] 363. c:\windows\system32\kerberos.dll 77C40000[00023000] [AM] 361. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 74410000[00065000] [ M] 464. c:\windows\system32\netlogon.dll 76790000[0002E000] [AM] 67. c:\windows\system32\w32time.dll 75FF0000[00065000] [ M] 458. c:\windows\system32\msvcp60.dll 767C0000[00027000] [AM] 358. c:\windows\system32\schannel.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 74380000[0000F000] [AM] 364. c:\windows\system32\wdigest.dll 0FFD0000[00028000] [ M] 448. c:\windows\system32\rsaenh.dll 00D10000[0002C000] [AM] 362. c:\windows\system32\scecli.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 74340000[0002F000] [ M] 465. c:\windows\system32\ipsecsvc.dll 77FE0000[00011000] [ M] 436. c:\windows\system32\authz.dll 73ED0000[000CE000] [ M] 466. c:\windows\system32\oakley.dll 742D0000[0000B000] [ M] 467. c:\windows\system32\winipsec.dll 74300000[0000B000] [ M] 468. c:\windows\system32\pstorsvc.dll 74320000[0001A000] [ M] 469. c:\windows\system32\psbase.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 68100000[00024000] [ M] 470. c:\windows\system32\dssenh.dll + 000002fc(764) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 450. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll 76230000[00063000] [AM] 12. c:\windows\system32\rpcss.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 761C0000[00051000] [AM] 59. c:\windows\system32\termsrv.dll 74ED0000[00006000] [ M] 471. c:\windows\system32\icaapi.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 77FE0000[00011000] [ M] 436. c:\windows\system32\authz.dll 75070000[0001F000] [ M] 472. c:\windows\system32\mstlsapi.dll 77C90000[00032000] [ M] 473. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 474. c:\windows\system32\adsldpc.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 76AF0000[00011000] [ M] 475. c:\windows\system32\atl.dll 76B90000[0000F000] [ M] 440. c:\windows\system32\regapi.dll 0FFD0000[00028000] [ M] 448. c:\windows\system32\rsaenh.dll 76D70000[00022000] [ M] 446. c:\windows\system32\apphelp.dll + 0000032c(812) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76230000[00063000] [AM] 12. c:\windows\system32\rpcss.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 0FFD0000[00028000] [ M] 448. c:\windows\system32\rsaenh.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 76F80000[00008000] [ M] 395. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 76F90000[00006000] [ M] 398. c:\windows\system32\rasadhlp.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll + 00000370(880) CCenter.exe 00400000[00029000] [AM] 45. c:\program files\rising\rav\ccenter.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll + 00000380(896) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 450. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 76E10000[00023000] [AM] 19. c:\windows\system32\shsvcs.dll 762D0000[00010000] [ M] 408. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 76D50000[0001D000] [AM] 13. c:\windows\system32\dhcpcsvc.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 77290000[0006E000] [AM] 76. c:\windows\system32\wzcsvc.dll 76E50000[0000E000] [ M] 476. c:\windows\system32\rtutils.dll 76D00000[00004000] [ M] 477. c:\windows\system32\wmi.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 76F20000[00008000] [ M] 423. c:\windows\system32\wtsapi32.dll 5DF20000[00106000] [ M] 478. c:\windows\system32\esent.dll 76AF0000[00011000] [ M] 475. c:\windows\system32\atl.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 0FFD0000[00028000] [ M] 448. c:\windows\system32\rsaenh.dll 75DB0000[0001F000] [ M] 479. c:\windows\system32\rastls.dll 75430000[00071000] [ M] 480. c:\windows\system32\cryptui.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 76680000[000A2000] [AM] 348. c:\windows\system32\wininet.dll 76D10000[00018000] [ M] 481. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 473. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 474. c:\windows\system32\adsldpc.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 76EB0000[0003C000] [ M] 482. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 483. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 484. c:\windows\system32\tapi32.dll 767C0000[00027000] [AM] 358. c:\windows\system32\schannel.dll 72360000[0001A000] [ M] 447. c:\windows\system32\winscard.dll 75D90000[00014000] [ M] 485. c:\windows\system32\raschap.dll 77C40000[00023000] [AM] 361. c:\windows\system32\msv1_0.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 76B40000[00031000] [AM] 49. c:\windows\system32\schedsvc.dll 76770000[00013000] [ M] 461. c:\windows\system32\ntdsapi.dll 74EB0000[00005000] [ M] 486. c:\windows\system32\msidle.dll 70DE0000[0000D000] [AM] 5. c:\windows\system32\audiosrv.dll 76850000[00023000] [AM] 24. c:\windows\system32\wkssvc.dll 69AB0000[00064000] [AM] 6. c:\windows\system32\qmgr.dll 71A90000[00012000] [ M] 449. c:\windows\system32\mpr.dll 76750000[00009000] [ M] 487. c:\windows\system32\shfolder.dll 4A410000[00058000] [ M] 488. c:\windows\system32\winhttp.dll 75EB0000[00012000] [AM] 11. c:\windows\system32\cryptsvc.dll 752B0000[00030000] [ M] 489. c:\windows\system32\certcli.dll 50000000[00007000] [AM] 75. c:\windows\system32\wuauserv.dll 67180000[00028000] [AM] 70. c:\windows\system32\wbem\wmisvc.dll 75340000[0006D000] [ M] 490. c:\windows\system32\vssapi.dll 50040000[001A2000] [ M] 491. c:\windows\system32\wuaueng.dll 72F70000[00026000] [ M] 407. c:\windows\system32\winspool.drv 750B0000[00014000] [ M] 492. c:\windows\system32\cabinet.dll 602D0000[0000B000] [ M] 493. c:\windows\system32\mspatcha.dll 76790000[0002E000] [AM] 67. c:\windows\system32\w32time.dll 75FF0000[00065000] [ M] 458. c:\windows\system32\msvcp60.dll 74FD0000[00019000] [AM] 61. c:\windows\system32\trkwks.dll 75100000[0002E000] [AM] 54. c:\windows\system32\srsvc.dll 74A30000[00008000] [ M] 494. c:\windows\system32\powrprof.dll 768A0000[00041000] [AM] 18. c:\windows\system32\es.dll 73C90000[00008000] [AM] 50. c:\windows\system32\seclogon.dll 75D00000[00085000] [ M] 495. c:\windows\system32\wbem\wbemcore.dll 75270000[0003F000] [ M] 496. c:\windows\system32\wbem\esscli.dll 751F0000[00037000] [ M] 497. c:\windows\system32\wbem\wbemcomn.dll 755F0000[00076000] [ M] 498. c:\windows\system32\wbem\fastprox.dll 77CD0000[00033000] [AM] 33. c:\windows\system32\netman.dll 74770000[0019A000] [AM] 277. c:\windows\system32\netshell.dll 76BD0000[0002D000] [ M] 499. c:\windows\system32\credui.dll 72FA0000[00010000] [ M] 500. c:\windows\system32\wzcsapi.dll 74FF0000[0001A000] [AM] 23. c:\windows\system32\srvsvc.dll 76B80000[00005000] [ M] 444. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 445. c:\windows\system32\sfc_os.dll 74EA0000[0000C000] [AM] 20. c:\windows\pchealth\helpctr\binaries\pchsvc.dll 74E30000[0000E000] [ M] 501. c:\windows\system32\wbem\wbemsvc.dll 74EF0000[00008000] [AM] 15. c:\windows\system32\dmserver.dll 66700000[00052000] [AM] 52. c:\windows\system32\ipnathlp.dll 77FE0000[00011000] [ M] 436. c:\windows\system32\authz.dll 72260000[0000D000] [AM] 51. c:\windows\system32\sens.dll 74F80000[00019000] [ M] 502. c:\windows\system32\wbem\wmiutils.dll 75160000[0002E000] [ M] 503. c:\windows\system32\wbem\repdrvfs.dll 594C0000[0006D000] [ M] 504. c:\windows\system32\wbem\wmiprvsd.dll 5F9A0000[0000C000] [ M] 457. c:\windows\system32\ncobjapi.dll 76BA0000[00015000] [AM] 7. c:\windows\system32\browser.dll 73350000[0003F000] [AM] 58. c:\windows\system32\tapisrv.dll 76BC0000[0000B000] [ M] 439. c:\windows\system32\psapi.dll 75E00000[000AE000] [ M] 432. c:\windows\system32\sxs.dll 7E510000[00031000] [AM] 38. c:\windows\system32\rasmans.dll 742D0000[0000B000] [ M] 467. c:\windows\system32\winipsec.dll 75550000[00092000] [ M] 505. c:\windows\system32\netcfgx.dll 762A0000[00011000] [ M] 506. c:\windows\system32\clusapi.dll 75690000[0013C000] [ M] 507. c:\windows\system32\comsvcs.dll 75090000[00014000] [ M] 508. c:\windows\system32\colbact.dll 75050000[00013000] [ M] 509. c:\windows\system32\mtxclu.dll 71A40000[0000B000] [ M] 510. c:\windows\system32\wsock32.dll 75010000[00012000] [ M] 511. c:\windows\system32\resutils.dll 76F90000[00006000] [ M] 398. c:\windows\system32\rasadhlp.dll 75130000[00011000] [ M] 512. c:\windows\system32\rastapi.dll 57980000[00035000] [ M] 513. c:\windows\system32\unimdm.tsp 71F90000[00007000] [ M] 514. c:\windows\system32\uniplat.dll 57A00000[0000B000] [ M] 515. c:\windows\system32\kmddsp.tsp 579E0000[00010000] [ M] 516. c:\windows\system32\ndptsp.tsp 57A30000[00045000] [ M] 517. c:\windows\system32\h323.tsp 57A20000[0000A000] [ M] 518. c:\windows\system32\hidphone.tsp 68BE0000[00009000] [ M] 519. c:\windows\system32\hid.dll 721D0000[00035000] [ M] 520. c:\windows\system32\rasppp.dll 72420000[00006000] [ M] 521. c:\windows\system32\ntlsapi.dll 71C70000[0004B000] [AM] 363. c:\windows\system32\kerberos.dll 76760000[0000C000] [ M] 397. c:\windows\system32\cryptdll.dll 76540000[00023000] [ M] 522. c:\windows\system32\upnp.dll 74E60000[0000C000] [ M] 523. c:\windows\system32\ssdpapi.dll 7C9C0000[002BE000] [ M] 524. c:\windows\system32\msi.dll 754B0000[00096000] [ M] 525. c:\windows\system32\rasdlg.dll + 000003f4(1012) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76740000[0000D000] [AM] 16. c:\windows\system32\dnsrslvr.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 0FFD0000[00028000] [ M] 448. c:\windows\system32\rsaenh.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 76D10000[00018000] [ M] 481. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 473. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 474. c:\windows\system32\adsldpc.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 76AF0000[00011000] [ M] 475. c:\windows\system32\atl.dll 76E50000[0000E000] [ M] 476. c:\windows\system32\rtutils.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll + 00000404(1028) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 450. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 74BA0000[00006000] [AM] 26. c:\windows\system32\lmhsvc.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 5A720000[00015000] [AM] 68. c:\windows\system32\webclnt.dll 76680000[000A2000] [AM] 348. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 71A40000[0000B000] [ M] 510. c:\windows\system32\wsock32.dll 75BA0000[00014000] [AM] 55. c:\windows\system32\ssdpsrv.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll + 00000454(1108) rfwsrv.exe 00400000[00036000] [AM] 43. c:\program files\rising\rfw\rfwsrv.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 7C140000[00103000] [ M] 414. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 415. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 7C3A0000[0007B000] [ M] 416. c:\windows\system32\msvcp71.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 526. c:\program files\rising\rfw\proccom.dll 00770000[00024000] [ M] 527. c:\program files\rising\rfw\rscommx2.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 009B0000[0000E000] [ M] 528. c:\program files\rising\rfw\rsappmgr.dll 009D0000[00030000] [ M] 529. c:\program files\rising\rfw\cfgdll.dll 00AE0000[0000F000] [ M] 530. c:\program files\rising\rfw\rfwrule.dll 00AF0000[0000C000] [ M] 531. c:\program files\rising\rfw\rfwlog.dll 00B00000[00018000] [ M] 532. c:\program files\rising\rfw\rfwdrv.dll 76BC0000[0000B000] [ M] 439. c:\windows\system32\psapi.dll 00B20000[0000E000] [ M] 533. c:\program files\rising\rfw\ijt_ctrl.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 00B50000[00016000] [ M] 534. c:\program files\rising\rfw\unvdet.dll 76B80000[00005000] [ M] 444. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 445. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 00BA0000[00013000] [ M] 535. c:\program files\rising\rfw\mports.dll 5E8E0000[0000D000] [ M] 426. c:\windows\system32\perfproc.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll + 0000047c(1148) rfwProxy.exe 00400000[00236000] [AM] 42. c:\program files\rising\rfw\rfwproxy.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 7C140000[00103000] [ M] 414. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 415. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 76BC0000[0000B000] [ M] 439. c:\windows\system32\psapi.dll 10000000[0001F000] [ M] 526. c:\program files\rising\rfw\proccom.dll 00A60000[00024000] [ M] 527. c:\program files\rising\rfw\rscommx2.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 00DE0000[0000F000] [ M] 530. c:\program files\rising\rfw\rfwrule.dll 00DF0000[00011000] [ M] 536. c:\program files\rising\rfw\urlrule.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 01230000[00016000] [ M] 537. c:\program files\rising\rfw\monmid.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 5E8E0000[0000D000] [ M] 426. c:\windows\system32\perfproc.dll + 000005a4(1444) rfwstub.exe 00400000[00017000] [ M] 538. c:\program files\rising\rfw\rfwstub.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 7C3A0000[0007B000] [ M] 416. c:\windows\system32\msvcp71.dll 7C340000[00056000] [ M] 415. c:\windows\system32\msvcr71.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 23700000[00028000] [ M] 539. c:\program files\rising\rfw\rscommon.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll + 000005f8(1528) Explorer.EXE 01000000[000F1000] [AM] 318. c:\windows\explorer.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 75EF0000[000FD000] [AM] 281. c:\windows\system32\browseui.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 7E550000[0016F000] [AM] 242. c:\windows\system32\shdocvw.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 75430000[00071000] [ M] 480. c:\windows\system32\cryptui.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 76680000[000A2000] [AM] 348. c:\windows\system32\wininet.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 73640000[0002E000] [ M] 379. c:\windows\system32\msctfime.ime 76D70000[00022000] [ M] 446. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 62830000[00026000] [AM] 311. c:\windows\system32\acsignicon.dll 72F70000[00026000] [ M] 407. c:\windows\system32\winspool.drv 74BE0000[0002C000] [ M] 540. c:\windows\system32\oleacc.dll 75FF0000[00065000] [ M] 458. c:\windows\system32\msvcp60.dll 76590000[0004E000] [AM] 301. c:\windows\system32\cscui.dll 76570000[0001C000] [AM] 236. c:\windows\system32\cscdll.dll 5B680000[0006E000] [AM] 256. c:\windows\system32\themeui.dll 762F0000[00005000] [ M] 541. c:\windows\system32\msimg32.dll 10000000[0001C000] [AM] 313. c:\windows\system32\ravext.dll 01910000[00011000] [AM] 314. c:\windows\system32\shlhook.dll 76AF0000[00011000] [ M] 475. c:\windows\system32\atl.dll 75C60000[0009F000] [AM] 244. c:\windows\system32\urlmon.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 01DD0000[000C6000] [ M] 542. c:\program files\freelaunchbar\flb.dll 5DD50000[00113000] [ M] 394. c:\windows\system32\msxml3.dll 76950000[00008000] [ M] 543. c:\windows\system32\linkinfo.dll 76960000[00024000] [AM] 263. c:\windows\system32\ntshrui.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 74CF0000[00091000] [ M] 399. c:\windows\system32\mlang.dll 7E210000[002F6000] [AM] 246. c:\windows\system32\mshtml.dll 74620000[00027000] [ M] 544. c:\windows\system32\msls31.dll 76BC0000[0000B000] [ M] 439. c:\windows\system32\psapi.dll 7C9C0000[002BE000] [ M] 524. c:\windows\system32\msi.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 76F80000[00008000] [ M] 395. c:\windows\system32\winrnr.dll 76EB0000[0003C000] [ M] 482. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 483. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 484. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 476. c:\windows\system32\rtutils.dll 77C40000[00023000] [AM] 361. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 628E0000[00039000] [ M] 545. c:\program files\common files\autodesk shared\acsigncore16.dll 03120000[0007C000] [ M] 546. c:\windows\system32\shdoclc.dll 71A40000[0000B000] [ M] 510. c:\windows\system32\wsock32.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 76F90000[00006000] [ M] 398. c:\windows\system32\rasadhlp.dll 74650000[0002A000] [ M] 547. c:\windows\system32\msimtf.dll 74680000[0004B000] [ M] 548. c:\windows\system32\msctf.dll 762D0000[00010000] [ M] 408. c:\windows\system32\winsta.dll 74A90000[00044000] [AM] 290. c:\windows\system32\webcheck.dll 74A60000[00020000] [AM] 315. c:\windows\system32\stobject.dll 74A50000[0000A000] [ M] 549. c:\windows\system32\batmeter.dll 74A30000[00008000] [ M] 494. c:\windows\system32\powrprof.dll 76F20000[00008000] [ M] 423. c:\windows\system32\wtsapi32.dll 72C90000[00009000] [ M] 453. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 454. c:\windows\system32\msacm32.drv 74770000[0019A000] [AM] 277. c:\windows\system32\netshell.dll 76BD0000[0002D000] [ M] 499. c:\windows\system32\credui.dll 72240000[00005000] [ M] 550. c:\windows\system32\sensapi.dll 0FFD0000[00028000] [ M] 448. c:\windows\system32\rsaenh.dll 00C00000[0002E000] [AM] 308. c:\program files\winrar\rarext.dll 71D30000[0002E000] [AM] 273. c:\windows\system32\syncui.dll 723A0000[00019000] [AM] 300. c:\windows\system32\mydocs.dll 00C40000[0000F000] [ M] 551. c:\windows\system32\browselc.dll 6C520000[0004D000] [ M] 552. c:\windows\system32\duser.dll 75E00000[000AE000] [ M] 432. c:\windows\system32\sxs.dll 754B0000[00096000] [ M] 525. c:\windows\system32\rasdlg.dll 76D10000[00018000] [ M] 481. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 473. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 474. c:\windows\system32\adsldpc.dll + 00000684(1668) RfwMain.exe 00400000[00091000] [ M] 553. c:\program files\rising\rfw\rfwmain.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 7C140000[00103000] [ M] 414. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 415. c:\windows\system32\msvcr71.dll 7C3A0000[0007B000] [ M] 416. c:\windows\system32\msvcp71.dll 26600000[000B8000] [ M] 554. c:\program files\rising\rfw\rsguilib.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 10000000[0001F000] [ M] 526. c:\program files\rising\rfw\proccom.dll 00B50000[00024000] [ M] 527. c:\program files\rising\rfw\rscommx2.dll 00C90000[0000E000] [ M] 528. c:\program files\rising\rfw\rsappmgr.dll 00CB0000[00030000] [ M] 529. c:\program files\rising\rfw\cfgdll.dll 23700000[00028000] [ M] 539. c:\program files\rising\rfw\rscommon.dll 00EF0000[00014000] [ M] 555. c:\program files\rising\rfw\rfwctrl.dll 23800000[00018000] [ M] 556. c:\program files\rising\rfw\rsxml.dll 23900000[00040000] [ M] 557. c:\program files\rising\rfw\pngdll.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 013E0000[0000F000] [ M] 530. c:\program files\rising\rfw\rfwrule.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 0FFD0000[00028000] [ M] 448. c:\windows\system32\rsaenh.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 5E8E0000[0000D000] [ M] 426. c:\windows\system32\perfproc.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 757D0000[00013000] [AM] 235. c:\windows\system32\cryptnet.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 4A410000[00058000] [ M] 488. c:\windows\system32\winhttp.dll 72240000[00005000] [ M] 550. c:\windows\system32\sensapi.dll + 000006a4(1700) spoolsv.exe 01000000[00010000] [AM] 53. c:\windows\system32\spoolsv.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 74240000[00015000] [ M] 558. c:\windows\system32\spoolss.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 76F90000[00006000] [ M] 398. c:\windows\system32\rasadhlp.dll 74C10000[00055000] [AM] 352. c:\windows\system32\localspl.dll 76C30000[00028000] [ M] 445. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 72F70000[00026000] [ M] 407. c:\windows\system32\winspool.drv 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 74200000[0000D000] [AM] 350. c:\windows\system32\cnbjmon.dll 00AF0000[00014000] [AM] 351. c:\windows\system32\e_flbbfc.dll 00B10000[00008000] [AM] 353. c:\windows\system32\mdimon.dll 7C9C0000[002BE000] [ M] 524. c:\windows\system32\msi.dll 741E0000[00007000] [AM] 354. c:\windows\system32\pjlmon.dll 72390000[0000E000] [AM] 355. c:\windows\system32\tcpmon.dll 72380000[00007000] [AM] 356. c:\windows\system32\usbmon.dll 00C30000[00008000] [ M] 559. c:\windows\system32\spool\prtprocs\w32x86\mdippr.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 76F80000[00008000] [ M] 395. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 75AC0000[00023000] [ M] 560. c:\windows\system32\win32spl.dll 71C00000[00007000] [ M] 561. c:\windows\system32\netrap.dll 76770000[00013000] [ M] 461. c:\windows\system32\ntdsapi.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 74260000[00015000] [ M] 562. c:\windows\system32\inetpp.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll + 0000071c(1820) ImeUtil.exe 00400000[00077000] [ M] 563. c:\program files\sogouinput\imeutil.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 76680000[000A2000] [AM] 348. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 450. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll + 00000750(1872) Ras.exe 00400000[001FF000] [ M] 564. c:\program files\rising\antispyware\ras.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 76680000[000A2000] [AM] 348. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 7C140000[00103000] [ M] 565. c:\program files\rising\antispyware\mfc71.dll 7C340000[00056000] [ M] 566. c:\program files\rising\antispyware\msvcr71.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 7C3A0000[0007B000] [ M] 567. c:\program files\rising\antispyware\msvcp71.dll 10000000[00013000] [ M] 568. c:\program files\rising\antispyware\topsoft.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 00370000[00032000] [ M] 569. c:\program files\rising\antispyware\ncomm.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 00D50000[0001F000] [ M] 373. c:\program files\rising\rav\proccom.dll 00E90000[00024000] [ M] 374. c:\program files\rising\rav\rscommx2.dll 74D90000[0006C000] [ M] 570. c:\windows\system32\riched20.dll 00FD0000[0014D000] [ M] 571. c:\program files\rising\antispyware\rasgui.dll 23800000[00022000] [ M] 572. c:\program files\rising\antispyware\rsxml.dll 73640000[0002E000] [ M] 379. c:\windows\system32\msctfime.ime 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 7E550000[0016F000] [AM] 242. c:\windows\system32\shdocvw.dll 75430000[00071000] [ M] 480. c:\windows\system32\cryptui.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 75E00000[000AE000] [ M] 432. c:\windows\system32\sxs.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 75C60000[0009F000] [AM] 244. c:\windows\system32\urlmon.dll 20000000[0007C000] [ M] 546. c:\windows\system32\shdoclc.dll 023F0000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 74CF0000[00091000] [ M] 399. c:\windows\system32\mlang.dll 7E210000[002F6000] [AM] 246. c:\windows\system32\mshtml.dll 74620000[00027000] [ M] 544. c:\windows\system32\msls31.dll 76BC0000[0000B000] [ M] 439. c:\windows\system32\psapi.dll 74910000[000AB000] [AM] 250. c:\windows\system32\inetcomm.dll 75B20000[00022000] [ M] 573. c:\windows\system32\msoert2.dll 01F80000[0000C000] [ M] 574. c:\windows\system32\inetres.dll 02F60000[00018000] [ M] 575. c:\program files\rising\antispyware\ktrojan.dll 02F90000[0002F000] [ M] 576. c:\program files\rising\antispyware\engine.dll 02FD0000[00040000] [ M] 577. c:\program files\rising\antispyware\rsdialog.dll 03020000[00024000] [ M] 578. c:\program files\rising\antispyware\scanunv.dll 03060000[0001F000] [ M] 579. c:\program files\rising\antispyware\secscan.dll 03140000[00015000] [ M] 580. c:\program files\rising\antispyware\secex.dll 03720000[00012000] [ M] 581. c:\program files\rising\antispyware\zip.dll 71A40000[0000B000] [ M] 510. c:\windows\system32\wsock32.dll 74650000[0002A000] [ M] 547. c:\windows\system32\msimtf.dll 74680000[0004B000] [ M] 548. c:\windows\system32\msctf.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 76EB0000[0003C000] [ M] 482. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 483. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 484. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 476. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 77C40000[00023000] [AM] 361. c:\windows\system32\msv1_0.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 72240000[00005000] [ M] 550. c:\windows\system32\sensapi.dll 76F80000[00008000] [ M] 395. c:\windows\system32\winrnr.dll 76F90000[00006000] [ M] 398. c:\windows\system32\rasadhlp.dll 76C30000[00028000] [ M] 445. c:\windows\system32\sfc_os.dll 72C90000[00009000] [ M] 453. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 454. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 02F10000[00028000] [ M] 582. c:\program files\rising\rav\ravscrch.dll 73270000[00067000] [ M] 583. c:\windows\system32\vbscript.dll 73D30000[000FE000] [ M] 384. c:\windows\system32\mfc42.dll 61BE0000[0000D000] [ M] 387. c:\windows\system32\mfc42loc.dll 75BC0000[0006F000] [ M] 584. c:\windows\system32\jscript.dll 753B0000[00071000] [ M] 585. c:\windows\system32\mshtmled.dll 76D70000[00022000] [ M] 446. c:\windows\system32\apphelp.dll 5DD50000[00113000] [ M] 394. c:\windows\system32\msxml3.dll 76B80000[00005000] [ M] 444. c:\windows\system32\sfc.dll 66B50000[0000C000] [ M] 586. c:\windows\system32\imgutil.dll 5E400000[0000C000] [ M] 587. c:\windows\system32\pngfilt.dll 058F0000[0012D000] [ M] 588. c:\windows\system32\sogoupy.ime 762F0000[00005000] [ M] 541. c:\windows\system32\msimg32.dll 76CB0000[00020000] [ M] 450. c:\windows\system32\ntmarta.dll 71B70000[00013000] [ M] 451. c:\windows\system32\samlib.dll 4A3E0000[00025000] [ M] 589. c:\windows\system32\winabc.ime 7C9C0000[002BE000] [ M] 524. c:\windows\system32\msi.dll 74C90000[00020000] [ M] 590. c:\windows\system32\oledlg.dll + 000007b4(1972) alg.exe 01000000[0000D000] [AM] 3. c:\windows\system32\alg.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 76AF0000[00011000] [ M] 475. c:\windows\system32\atl.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 71A40000[0000B000] [ M] 510. c:\windows\system32\wsock32.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 5CC30000[00026000] [ M] 400. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 401. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll + 00000ae8(2792) RsAgent.exe 00400000[00045000] [ M] 591. c:\program files\rising\rav\rsagent.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 7C140000[00103000] [ M] 414. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 415. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 7C3A0000[0007B000] [ M] 416. c:\windows\system32\msvcp71.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 10000000[0001F000] [ M] 373. c:\program files\rising\rav\proccom.dll 00B50000[00024000] [ M] 374. c:\program files\rising\rav\rscommx2.dll 73640000[0002E000] [ M] 379. c:\windows\system32\msctfime.ime 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 67F90000[0000E000] [ M] 592. c:\windows\msagent\agentmpx.dll 7C9C0000[002BE000] [ M] 524. c:\windows\system32\msi.dll 75E00000[000AE000] [ M] 432. c:\windows\system32\sxs.dll + 00000afc(2812) AgentSvr.exe 01000000[00041000] [ M] 593. c:\windows\msagent\agentsvr.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 70000000[00019000] [ M] 433. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 366. c:\windows\system32\comctl32.dll 60000000[0000F000] [ M] 434. c:\program files\rising\rfw\olemon.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 379. c:\windows\system32\msctfime.ime 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 71220000[0000D000] [ M] 594. c:\windows\msagent\agentdp2.dll 7C9C0000[002BE000] [ M] 524. c:\windows\system32\msi.dll 75E00000[000AE000] [ M] 432. c:\windows\system32\sxs.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 403. c:\windows\system32\msacm32.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 72C90000[00009000] [ M] 453. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 454. c:\windows\system32\msacm32.drv + 00000c90(3216) TTraveler.exe 00400000[00321000] [AM] 326. d:\tencent\tt\ttraveler.exe 7C920000[00094000] [ M] 365. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 336. c:\windows\system32\kernel32.dll 5F800000[000F2000] [ M] 595. c:\windows\system32\mfc42u.dll 77BE0000[00058000] [ M] 368. c:\windows\system32\msvcrt.dll 77EF0000[00047000] [AM] 334. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 346. c:\windows\system32\user32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 344. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 367. c:\windows\system32\secur32.dll 7D590000[007F3000] [AM] 243. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 369. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 338. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 339. c:\windows\system32\oleaut32.dll 75C60000[0009F000] [AM] 244. c:\windows\system32\urlmon.dll 77BD0000[00008000] [AM] 347. c:\windows\system32\version.dll 75FF0000[00065000] [ M] 458. c:\windows\system32\msvcp60.dll 76300000[0001D000] [ M] 370. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 371. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 372. c:\windows\system32\usp10.dll 61BE0000[0000D000] [ M] 387. c:\windows\system32\mfc42loc.dll 5ADC0000[00037000] [ M] 378. c:\windows\system32\uxtheme.dll 76FA0000[0007F000] [ M] 392. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 393. c:\windows\system32\comres.dll 76AF0000[00011000] [ M] 475. c:\windows\system32\atl.dll 76060000[00156000] [ M] 385. c:\windows\system32\setupapi.dll 76D70000[00022000] [ M] 446. c:\windows\system32\apphelp.dll 62830000[00026000] [AM] 311. c:\windows\system32\acsignicon.dll 72F70000[00026000] [ M] 407. c:\windows\system32\winspool.drv 74BE0000[0002C000] [ M] 540. c:\windows\system32\oleacc.dll 71A20000[00017000] [ M] 381. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 382. c:\windows\system32\ws2help.dll 73640000[0002E000] [ M] 379. c:\windows\system32\msctfime.ime 7E550000[0016F000] [AM] 242. c:\windows\system32\shdocvw.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 386. c:\windows\system32\msasn1.dll 75430000[00071000] [ M] 480. c:\windows\system32\cryptui.dll 76C00000[0002E000] [ M] 410. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 335. c:\windows\system32\imagehlp.dll 5FDD0000[00054000] [ M] 409. c:\windows\system32\netapi32.dll 76680000[000A2000] [AM] 348. c:\windows\system32\wininet.dll 76F30000[0002C000] [AM] 349. c:\windows\system32\wldap32.dll 20000000[00549000] [ M] 388. c:\windows\system32\xpsp2res.dll 7C9C0000[002BE000] [ M] 524. c:\windows\system32\msi.dll 75E00000[000AE000] [ M] 432. c:\windows\system32\sxs.dll 75EF0000[000FD000] [AM] 281. c:\windows\system32\browseui.dll 10000000[00063000] [AM] 241. c:\windows\system32\kakatool.dll 76B10000[0002A000] [ M] 402. c:\windows\system32\winmm.dll 73D30000[000FE000] [ M] 384. c:\windows\system32\mfc42.dll 76320000[00047000] [AM] 333. c:\windows\system32\comdlg32.dll 5EFE0000[00017000] [ M] 596. c:\windows\system32\olepro32.dll 7E210000[002F6000] [AM] 246. c:\windows\system32\mshtml.dll 74620000[00027000] [ M] 544. c:\windows\system32\msls31.dll 76BC0000[0000B000] [ M] 439. c:\windows\system32\psapi.dll 4DD10000[00083000] [ M] 597. c:\program files\common files\system\ado\msado15.dll 75B50000[00025000] [ M] 598. c:\windows\system32\msdart.dll 72D70000[00077000] [AM] 283. c:\program files\common files\system\ole db\oledb32.dll 74FA0000[00011000] [ M] 599. c:\program files\common files\system\ole db\oledb32r.dll 1B570000[00054000] [ M] 600. c:\windows\system32\msjetoledb40.dll 1B000000[00170000] [ M] 601. c:\windows\system32\msjet40.dll 1B5D0000[00095000] [ M] 602. c:\windows\system32\mswstr10.dll 1B2C0000[0000D000] [ M] 603. c:\windows\system32\msjter40.dll 1B2D0000[00026000] [ M] 604. c:\windows\system32\msjint40.dll 75690000[0013C000] [ M] 507. c:\windows\system32\comsvcs.dll 75090000[00014000] [ M] 508. c:\windows\system32\colbact.dll 75050000[00013000] [ M] 509. c:\windows\system32\mtxclu.dll 71A40000[0000B000] [ M] 510. c:\windows\system32\wsock32.dll 762A0000[00011000] [ M] 506. c:\windows\system32\clusapi.dll 75010000[00012000] [ M] 511. c:\windows\system32\resutils.dll 759D0000[000AE000] [ M] 404. c:\windows\system32\userenv.dll 078C0000[0002E000] [ M] 605. d:\tencent\tt\plugins\qqfloatbar\qqfloatbar4tt2.dll 07910000[0002F000] [ M] 606. d:\tencent\tt\plugins\tweather\tweather.dll 07970000[00050000] [ M] 607. d:\tencent\tt\ttnetfavor.dll 74CF0000[00091000] [ M] 399. c:\windows\system32\mlang.dll 1B800000[0003A000] [ M] 608. c:\windows\system32\msjtes40.dll 0F9A0000[0000B000] [ M] 609. c:\windows\system32\vbajet32.dll 0F9C0000[00062000] [ M] 610. c:\windows\system32\expsrv.dll 49DF0000[0000E000] [ M] 611. c:\program files\common files\system\ado\msadrh15.dll 087F0000[0007C000] [ M] 546. c:\windows\system32\shdoclc.dll 719C0000[0003E000] [AM] 34. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 389. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 390. c:\windows\system32\wshtcpip.dll 76EB0000[0003C000] [ M] 482. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 483. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 484. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 476. c:\windows\system32\rtutils.dll 77C40000[00023000] [AM] 361. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 452. c:\windows\system32\iphlpapi.dll 72240000[00005000] [ M] 550. c:\windows\system32\sensapi.dll 76F90000[00006000] [ M] 398. c:\windows\system32\rasadhlp.dll 76EF0000[00027000] [ M] 391. c:\windows\system32\dnsapi.dll 76F80000[00008000] [ M] 395. c:\windows\system32\winrnr.dll 762F0000[00005000] [ M] 541. c:\windows\system32\msimg32.dll 74650000[0002A000] [ M] 547. c:\windows\system32\msimtf.dll 74680000[0004B000] [ M] 548. c:\windows\system32\msctf.dll