瑞星卡卡电脑诊断日志 v1.30 (2008-8-8 7:23:51) 北京瑞星信息技术有限公司 注释: [A]表示该文件存在自启动关联; [M]表示该文件在内存中; + 注册表自运行项目 + 系统服务 + HKLM\System\CurrentControlSet\Services Alerter [AM] 1. c:\windows\system32\svchost.exe [A ] 2. c:\windows\system32\alrsvc.dll ALG [AM] 3. c:\windows\system32\alg.exe AppMgmt [AM] 1. c:\windows\system32\svchost.exe [A ] 4. c:\windows\system32\appmgmts.dll aspnet_state [A ] 5. c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe Ati HotKey Poller [AM] 6. c:\windows\system32\ati2evxx.exe ATI Smart [A ] 7. c:\windows\system32\ati2sgag.exe AudioSrv [AM] 1. c:\windows\system32\svchost.exe [AM] 8. c:\windows\system32\audiosrv.dll Autodesk Licensing Service [A ] 9. c:\program files\common files\autodesk shared\service\adskscsrv.exe BITS [AM] 1. c:\windows\system32\svchost.exe [AM] 10. c:\windows\system32\qmgr.dll Browser [AM] 1. c:\windows\system32\svchost.exe [A ] 11. c:\windows\system32\browser.dll ccosm [AM] 12. d:\暴风影音\stormliv.exe CiSvc [A ] 13. c:\windows\system32\cisvc.exe ClipSrv [A ] 14. c:\windows\system32\clipsrv.exe clr_optimization_v2.0.50727_32 [A ] 15. c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe COMSysApp [A ] 16. c:\windows\system32\dllhost.exe CryptSvc [AM] 1. c:\windows\system32\svchost.exe [AM] 17. c:\windows\system32\cryptsvc.dll DcomLaunch [AM] 1. c:\windows\system32\svchost.exe [AM] 18. c:\windows\system32\rpcss.dll Dhcp [AM] 1. c:\windows\system32\svchost.exe [AM] 19. c:\windows\system32\dhcpcsvc.dll dmadmin [A ] 20. c:\windows\system32\dmadmin.exe dmserver [AM] 1. c:\windows\system32\svchost.exe [AM] 21. c:\windows\system32\dmserver.dll Dnscache [AM] 1. c:\windows\system32\svchost.exe [AM] 22. c:\windows\system32\dnsrslvr.dll ERSvc [AM] 1. c:\windows\system32\svchost.exe [A ] 23. c:\windows\system32\ersvc.dll Eventlog [AM] 24. c:\windows\system32\services.exe EventSystem [AM] 1. c:\windows\system32\svchost.exe [AM] 25. c:\windows\system32\es.dll FastUserSwitchingCompatibility [AM] 1. c:\windows\system32\svchost.exe [AM] 26. c:\windows\system32\shsvcs.dll helpsvc [AM] 1. c:\windows\system32\svchost.exe [AM] 27. c:\windows\pchealth\helpctr\binaries\pchsvc.dll HidServ [AM] 1. c:\windows\system32\svchost.exe HTTPFilter [AM] 1. c:\windows\system32\svchost.exe [A ] 28. c:\windows\system32\w3ssl.dll IDriverT [A ] 29. c:\program files\common files\installshield\driver\1050\intel 32\idrivert.exe ImapiService [A ] 30. c:\windows\system32\imapi.exe Iprip [AM] 1. c:\windows\system32\svchost.exe lanmanserver [AM] 1. c:\windows\system32\svchost.exe [A ] 31. c:\windows\system32\srvsvc.dll lanmanworkstation [AM] 1. c:\windows\system32\svchost.exe [AM] 32. c:\windows\system32\wkssvc.dll [AM] 33. c:\windows\system32\ntlanman.dll LmHosts [AM] 1. c:\windows\system32\svchost.exe [AM] 34. c:\windows\system32\lmhsvc.dll Messenger [AM] 1. c:\windows\system32\svchost.exe [A ] 35. c:\windows\system32\msgsvc.dll mnmsrvc [A ] 36. c:\windows\system32\mnmsrvc.exe MSDTC [A ] 37. c:\windows\system32\msdtc.exe MSiSCSI [AM] 38. c:\windows\system32\iscsiexe.exe MSIServer [A ] 39. c:\windows\system32\msiexec.exe NetDDE [A ] 40. c:\windows\system32\netdde.exe NetDDEdsdm [A ] 40. c:\windows\system32\netdde.exe Netlogon [AM] 41. c:\windows\system32\lsass.exe Netman [AM] 1. c:\windows\system32\svchost.exe [AM] 42. c:\windows\system32\netman.dll Nla [AM] 1. c:\windows\system32\svchost.exe [AM] 43. c:\windows\system32\mswsock.dll NtLmSsp [AM] 41. c:\windows\system32\lsass.exe NtmsSvc [AM] 1. c:\windows\system32\svchost.exe [A ] 44. c:\windows\system32\ntmssvc.dll PlugPlay [AM] 24. c:\windows\system32\services.exe PolicyAgent [AM] 41. c:\windows\system32\lsass.exe ProtectedStorage [AM] 41. c:\windows\system32\lsass.exe RasAuto [AM] 1. c:\windows\system32\svchost.exe [AM] 45. c:\windows\system32\rasauto.dll RasMan [AM] 1. c:\windows\system32\svchost.exe [AM] 46. c:\windows\system32\rasmans.dll RDSessMgr [A ] 47. c:\windows\system32\sessmgr.exe RemoteAccess [AM] 1. c:\windows\system32\svchost.exe [A ] 48. c:\windows\system32\mprdim.dll RemoteRegistry [AM] 1. c:\windows\system32\svchost.exe [AM] 49. c:\windows\system32\regsvc.dll RfwService [AM] 50. d:\rising\rfw\rfwsrv.exe RpcLocator [A ] 51. c:\windows\system32\locator.exe RpcSs [AM] 1. c:\windows\system32\svchost.exe [AM] 18. c:\windows\system32\rpcss.dll [AM] 18. c:\windows\system32\rpcss.dll RsCCenter [AM] 52. d:\rising\rav\ccenter.exe RsRavMon [AM] 53. d:\rising\rav\ravmond.exe RSVP [A ] 54. c:\windows\system32\rsvp.exe SamSs [AM] 41. c:\windows\system32\lsass.exe SCardSvr [A ] 55. c:\windows\system32\scardsvr.exe Schedule [AM] 1. c:\windows\system32\svchost.exe [AM] 56. c:\windows\system32\schedsvc.dll seclogon [AM] 1. c:\windows\system32\svchost.exe [AM] 57. c:\windows\system32\seclogon.dll SENS [AM] 1. c:\windows\system32\svchost.exe [AM] 58. c:\windows\system32\sens.dll SharedAccess [AM] 1. c:\windows\system32\svchost.exe [AM] 59. c:\windows\system32\ipnathlp.dll ShellHWDetection [AM] 1. c:\windows\system32\svchost.exe [AM] 26. c:\windows\system32\shsvcs.dll Spooler [A ] 60. c:\windows\system32\spoolsv.exe srservice [AM] 1. c:\windows\system32\svchost.exe [AM] 61. c:\windows\system32\srsvc.dll SSDPSRV [AM] 1. c:\windows\system32\svchost.exe [AM] 62. c:\windows\system32\ssdpsrv.dll stisvc [AM] 1. c:\windows\system32\svchost.exe [A ] 63. c:\windows\system32\wiaservc.dll SwPrv [A ] 16. c:\windows\system32\dllhost.exe SysmonLog [A ] 64. c:\windows\system32\smlogsvc.exe TapiSrv [AM] 1. c:\windows\system32\svchost.exe [AM] 65. c:\windows\system32\tapisrv.dll TermService [AM] 1. c:\windows\system32\svchost.exe [A ] 66. c:\windows\system32\termsrv.dll Themes [AM] 1. c:\windows\system32\svchost.exe [AM] 26. c:\windows\system32\shsvcs.dll TlntSvr [A ] 67. c:\windows\system32\tlntsvr.exe TrkWks [AM] 1. c:\windows\system32\svchost.exe [AM] 68. c:\windows\system32\trkwks.dll UMWdf [A ] 69. c:\windows\system32\wdfmgr.exe upnphost [AM] 1. c:\windows\system32\svchost.exe [A ] 70. c:\windows\system32\upnphost.dll UPS [A ] 71. c:\windows\system32\ups.exe usprserv [AM] 1. c:\windows\system32\svchost.exe VSS [A ] 72. c:\windows\system32\vssvc.exe W32Time [AM] 1. c:\windows\system32\svchost.exe [AM] 73. c:\windows\system32\w32time.dll WebClient [AM] 1. c:\windows\system32\svchost.exe [AM] 74. c:\windows\system32\webclnt.dll [AM] 75. c:\windows\system32\davclnt.dll winmgmt [AM] 1. c:\windows\system32\svchost.exe [AM] 76. c:\windows\system32\wbem\wmisvc.dll WLSetupSvc [A ] 77. c:\program files\windows live\installer\wlsetupsvc.exe WmdmPmSN [AM] 1. c:\windows\system32\svchost.exe [A ] 78. c:\windows\system32\mspmsnsv.dll Wmi [AM] 1. c:\windows\system32\svchost.exe [AM] 79. c:\windows\system32\advapi32.dll WmiApSrv [A ] 80. c:\windows\system32\wbem\wmiapsrv.exe wscsvc [AM] 1. c:\windows\system32\svchost.exe [AM] 81. c:\windows\system32\wscsvc.dll wuauserv [AM] 1. c:\windows\system32\svchost.exe [A ] 82. c:\windows\system32\wuauserv.dll WZCSVC [AM] 1. c:\windows\system32\svchost.exe [AM] 83. c:\windows\system32\wzcsvc.dll xmlprov [AM] 1. c:\windows\system32\svchost.exe [A ] 84. c:\windows\system32\xmlprov.dll + 内核驱动 + HKLM\System\CurrentControlSet\Services 1ck25tm [A ] 85. c:\windows\system32\drivers\1ck25tm.sys 94zf1ag3i [A ] 86. c:\windows\system32\drivers\94zf1ag3i.sys ACPI [A ] 87. c:\windows\system32\drivers\acpi.sys ACPIEC [A ] 88. c:\windows\system32\drivers\acpiec.sys aec [A ] 89. c:\windows\system32\drivers\aec.sys AFD [A ] 90. c:\windows\system32\drivers\afd.sys Alidevice [A ] 91. c:\windows\system32\drivers\alidevice.sys AsyncMac [A ] 92. c:\windows\system32\drivers\asyncmac.sys atapi [A ] 93. c:\windows\system32\drivers\atapi.sys ati2mtag [A ] 94. c:\windows\system32\drivers\ati2mtag.sys Atmarpc [A ] 95. c:\windows\system32\drivers\atmarpc.sys audstub [A ] 96. c:\windows\system32\drivers\audstub.sys Beep [A ] 97. c:\windows\system32\drivers\beep.sys bootdrv [A ] 98. c:\windows\system32\drivers\bootdrv.sys BRGSp50 [A ] 99. c:\windows\system32\drivers\brgsp50.sys C-Dilla [A ] 100. c:\windows\system32\drivers\cdant.sys cbidf2k [A ] 101. c:\windows\system32\drivers\cbidf2k.sys Cdaudio [A ] 102. c:\windows\system32\drivers\cdaudio.sys cdralw [A ] 103. c:\windows\system32\drivers\nvmini.sys Cdrom [A ] 104. c:\windows\system32\drivers\cdrom.sys DeepFree Update [A ] 105. c:\windows\system32\drivers\pcihdd2.sys Disk [A ] 106. c:\windows\system32\drivers\disk.sys dmboot [A ] 107. c:\windows\system32\drivers\dmboot.sys dmio [A ] 108. c:\windows\system32\drivers\dmio.sys dmload [A ] 109. c:\windows\system32\drivers\dmload.sys DMusic [A ] 110. c:\windows\system32\drivers\dmusic.sys drmkaud [A ] 111. c:\windows\system32\drivers\drmkaud.sys EagleNT [A ] 112. c:\windows\system32\drivers\eaglent.sys eth8023 [A ] 113. c:\windows\system32\drivers\eth8023.sys Fdc [A ] 114. c:\windows\system32\drivers\fdc.sys Fips [A ] 115. c:\windows\system32\drivers\fips.sys Flpydisk [A ] 116. c:\windows\system32\drivers\flpydisk.sys FsVga [A ] 117. c:\windows\system32\drivers\fsvga.sys Ftdisk [A ] 118. c:\windows\system32\drivers\ftdisk.sys Gpc [A ] 119. c:\windows\system32\drivers\msgpc.sys HBKernel [A ] 120. c:\windows\system32\drivers\hbkernel.sys HDAudBus [A ] 121. c:\windows\system32\drivers\hdaudbus.sys HidUsb [A ] 122. c:\windows\system32\drivers\hidusb.sys HookCont [A ] 123. c:\windows\system32\drivers\hookcont.sys HookNtos [A ] 124. c:\windows\system32\drivers\hookntos.sys HookReg [A ] 125. c:\windows\system32\drivers\hookreg.sys HookSys [A ] 126. c:\windows\system32\drivers\hooksys.sys HookUrl [A ] 127. d:\rising\rfw\hookurl.sys HOSTNT [A ] 128. c:\windows\system32\drivers\hostnt.sys HTTP [A ] 129. c:\windows\system32\drivers\http.sys i8042prt [A ] 130. c:\windows\system32\drivers\i8042prt.sys Imapi [A ] 131. c:\windows\system32\drivers\imapi.sys IntcAzAudAddService [A ] 132. c:\windows\system32\drivers\rtkhdaud.sys intelppm [A ] 133. c:\windows\system32\drivers\intelppm.sys Ip6Fw [A ] 134. c:\windows\system32\drivers\ip6fw.sys IpFilterDriver [A ] 135. c:\windows\system32\drivers\ipfltdrv.sys IpInIp [A ] 136. c:\windows\system32\drivers\ipinip.sys IpNat [A ] 137. c:\windows\system32\drivers\ipnat.sys IPSec [A ] 138. c:\windows\system32\drivers\ipsec.sys IRENUM [A ] 139. c:\windows\system32\drivers\irenum.sys isapnp [A ] 140. c:\windows\system32\drivers\isapnp.sys iScsiPrt [A ] 141. c:\windows\system32\drivers\msiscsi.sys k750bus [A ] 142. c:\windows\system32\drivers\k750bus.sys k750mdfl [A ] 143. c:\windows\system32\drivers\k750mdfl.sys k750mdm [A ] 144. c:\windows\system32\drivers\k750mdm.sys k750mgmt [A ] 145. c:\windows\system32\drivers\k750mgmt.sys k750obex [A ] 146. c:\windows\system32\drivers\k750obex.sys Kbdclass [A ] 147. c:\windows\system32\drivers\kbdclass.sys kfevhixk [A ] 148. c:\windows\system32\drivers\kfevhixk.sys kmixer [A ] 149. c:\windows\system32\drivers\kmixer.sys KSecDD [A ] 150. c:\windows\system32\drivers\ksecdd.sys MHDRV [A ] 151. c:\windows\system32\drivers\mhdrv.sys mnmdd [A ] 152. c:\windows\system32\drivers\mnmdd.sys Modem [A ] 153. c:\windows\system32\drivers\modem.sys Mouclass [A ] 154. c:\windows\system32\drivers\mouclass.sys MountMgr [A ] 155. c:\windows\system32\drivers\mountmgr.sys MSKSSRV [A ] 156. c:\windows\system32\drivers\mskssrv.sys MSPCLOCK [A ] 157. c:\windows\system32\drivers\mspclock.sys MSPQM [A ] 158. c:\windows\system32\drivers\mspqm.sys mssmbios [A ] 159. c:\windows\system32\drivers\mssmbios.sys NDIS [A ] 160. c:\windows\system32\drivers\ndis.sys NdisTapi [A ] 161. c:\windows\system32\drivers\ndistapi.sys Ndisuio [A ] 162. c:\windows\system32\drivers\ndisuio.sys NdisWan [A ] 163. c:\windows\system32\drivers\ndiswan.sys NDProxy [A ] 164. c:\windows\system32\drivers\ndproxy.sys NetBT [A ] 165. c:\windows\system32\drivers\netbt.sys NPF [A ] 166. c:\windows\system32\drivers\npf.sys npkcrypt [A ] 167. c:\windows\system32\npkcrypt.sys npkycryp [A ] 168. c:\windows\system32\npkycryp.sys Null [A ] 169. c:\windows\system32\drivers\null.sys NwlnkFlt [A ] 170. c:\windows\system32\drivers\nwlnkflt.sys NwlnkFwd [A ] 171. c:\windows\system32\drivers\nwlnkfwd.sys Parport [A ] 172. c:\windows\system32\drivers\parport.sys PartMgr [A ] 173. c:\windows\system32\drivers\partmgr.sys ParVdm [A ] 174. c:\windows\system32\drivers\parvdm.sys PCI [A ] 175. c:\windows\system32\drivers\pci.sys PCIIde [A ] 176. c:\windows\system32\drivers\pciide.sys Pcmcia [A ] 177. c:\windows\system32\drivers\pcmcia.sys PptpMiniport [A ] 178. c:\windows\system32\drivers\raspptp.sys prodrv06 [A ] 179. c:\windows\system32\drivers\prodrv06.sys prohlp02 [A ] 180. c:\windows\system32\drivers\prohlp02.sys prosync1 [A ] 181. c:\windows\system32\drivers\prosync1.sys PSched [A ] 182. c:\windows\system32\drivers\psched.sys Ptilink [A ] 183. c:\windows\system32\drivers\ptilink.sys RamDiskXP [A ] 184. c:\windows\system32\drivers\ramdiskxp.sys RasAcd [A ] 185. c:\windows\system32\drivers\rasacd.sys Rasl2tp [A ] 186. c:\windows\system32\drivers\rasl2tp.sys RasPppoe [A ] 187. c:\windows\system32\drivers\raspppoe.sys Raspti [A ] 188. c:\windows\system32\drivers\raspti.sys RDPCDD [A ] 189. c:\windows\system32\drivers\rdpcdd.sys rdpdr [A ] 190. c:\windows\system32\drivers\rdpdr.sys RDPWD [A ] 191. c:\windows\system32\drivers\rdpwd.sys redbook [A ] 192. c:\windows\system32\drivers\redbook.sys RfwBase [A ] 193. c:\windows\system32\drivers\rfwbase.sys RsFwDrv [A ] 194. d:\rising\rfw\rsfwdrv.sys RsNTGDI [A ] 195. c:\windows\system32\drivers\rsntgdi.sys RTLE8023xp [A ] 196. c:\windows\system32\drivers\rtenicxp.sys Secdrv [A ] 197. c:\windows\system32\drivers\secdrv.sys serenum [A ] 198. c:\windows\system32\drivers\serenum.sys Serial [A ] 199. c:\windows\system32\drivers\serial.sys sfhlp01 [A ] 200. c:\windows\system32\drivers\sfhlp01.sys Sfloppy [A ] 201. c:\windows\system32\drivers\sfloppy.sys SiSide [A ] 202. c:\windows\system32\drivers\siside.sys sisperf [A ] 203. c:\windows\system32\drivers\sisperf.sys splitter [A ] 204. c:\windows\system32\drivers\splitter.sys sptd [A ] 205. c:\windows\system32\drivers\sptd.sys SRS_SSCFilter [A ] 206. c:\windows\system32\drivers\srs_sscfilter_i386.sys swenum [A ] 207. c:\windows\system32\drivers\swenum.sys swmidi [A ] 208. c:\windows\system32\drivers\swmidi.sys sysaudio [A ] 209. c:\windows\system32\drivers\sysaudio.sys Tcpip [A ] 210. c:\windows\system32\drivers\tcpip.sys TDPIPE [A ] 211. c:\windows\system32\drivers\tdpipe.sys TDTCP [A ] 212. c:\windows\system32\drivers\tdtcp.sys TermDD [A ] 213. c:\windows\system32\drivers\termdd.sys TesSafe [A ] 214. c:\windows\system32\tessafe.sys Update [A ] 215. c:\windows\system32\drivers\update.sys usbccgp [A ] 216. c:\windows\system32\drivers\usbccgp.sys usbehci [A ] 217. c:\windows\system32\drivers\usbehci.sys usbhub [A ] 218. c:\windows\system32\drivers\usbhub.sys usbohci [A ] 219. c:\windows\system32\drivers\usbohci.sys USBSTOR [A ] 220. c:\windows\system32\drivers\usbstor.sys VgaSave [A ] 221. c:\windows\system32\drivers\vga.sys VolSnap [A ] 222. c:\windows\system32\drivers\volsnap.sys w550bus [A ] 223. c:\windows\system32\drivers\w550bus.sys w550mdfl [A ] 224. c:\windows\system32\drivers\w550mdfl.sys w550mdm [A ] 225. c:\windows\system32\drivers\w550mdm.sys Wanarp [A ] 226. c:\windows\system32\drivers\wanarp.sys wdmaud [A ] 227. c:\windows\system32\drivers\wdmaud.sys ZD1211BU(MengZone) [A ] 228. c:\windows\system32\drivers\zd1211bu.sys ZDPSp50 [A ] 229. c:\windows\system32\drivers\zdpsp50.sys zlportio [A ] 230. e:\伊苏6完美中文版\伊苏ⅵ\屏蔽光区软件\starfuck v0.83 龙卷风简体中文版\zlportio.sys + 文件系统驱动 + HKLM\System\CurrentControlSet\Services Cdfs [A ] 231. c:\windows\system32\drivers\cdfs.sys Fastfat [A ] 232. c:\windows\system32\drivers\fastfat.sys FltMgr [A ] 233. c:\windows\system32\drivers\fltmgr.sys MRxDAV [A ] 234. c:\windows\system32\drivers\mrxdav.sys MRxSmb [A ] 235. c:\windows\system32\drivers\mrxsmb.sys Msfs [A ] 236. c:\windows\system32\drivers\msfs.sys Mup [A ] 237. c:\windows\system32\drivers\mup.sys NetBIOS [A ] 238. c:\windows\system32\drivers\netbios.sys Npfs [A ] 239. c:\windows\system32\drivers\npfs.sys Ntfs [A ] 240. c:\windows\system32\drivers\ntfs.sys Rdbss [A ] 241. c:\windows\system32\drivers\rdbss.sys sisidex [A ] 242. c:\windows\system32\drivers\sisidex.sys sr [A ] 243. c:\windows\system32\drivers\sr.sys Srv [A ] 244. c:\windows\system32\drivers\srv.sys Udfs [A ] 245. c:\windows\system32\drivers\udfs.sys wxbfileb [A ] 246. c:\windows\system32\drivers\wxbfileb.sys + 系统登陆自运行 + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon UIHost [A ] 247. c:\windows\system32\logonui.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify AtiExtEvent [AM] 248. c:\windows\system32\ati2evxx.dll crypt32chain [AM] 249. c:\windows\system32\crypt32.dll cryptnet [AM] 250. c:\windows\system32\cryptnet.dll cscdll [AM] 251. c:\windows\system32\cscdll.dll ScCertProp [AM] 252. c:\windows\system32\wlnotify.dll Schedule [AM] 252. c:\windows\system32\wlnotify.dll sclgntfy [A ] 253. c:\windows\system32\sclgntfy.dll SensLogn [AM] 252. c:\windows\system32\wlnotify.dll termsrv [AM] 252. c:\windows\system32\wlnotify.dll WgaLogon [AM] 254. c:\windows\system32\wgalogon.dll wlballoon [AM] 252. c:\windows\system32\wlnotify.dll + IE浏览器加载模块 + HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar {5093EB4C-3E93-40AB-9266-B607BA87BDC8} [A ] 255. c:\program files\stumbleupon\stumbleuponiebar.dll + HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks {CFBFAE00-17A6-11D0-99CB-00C04FD64497} [AM] 256. c:\windows\system32\ieframe.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects {01443AEC-0FD1-40fd-9C87-E93D1494C233} [AM] 257. d:\thunder\comdlls\tdatonce_now.dll {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} [A ] 255. c:\program files\stumbleupon\stumbleuponiebar.dll {1F364306-AA45-47B5-9F9D-39A8B94E7EF1} [A ] 258. d:\flashget\comdlls\bhocatch.dll {53763D1D-9CA8-4C7C-9756-A8E6B8FC063B} [A ] 259. c:\program files\cmbchina\webprotect\webprotect.dll {889D2FEB-5411-4565-8998-1DD2C5261283} [AM] 260. d:\thunder\comdlls\xunleibho_now.dll {9030D464-4C02-4ABF-8ECC-5164760863C6} [A ] 261. c:\program files\common files\microsoft shared\windows live\windowslivelogin.dll {97421D0D-E07F-40DF-8F07-99597B9585AD} [AM] 262. c:\windows\downloaded program files\thunderadvise.dll {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} [A ] 263. c:\windows\system32\urlfilter.dll {E74B0A8E-68C0-4866-8288-53EFF8ECBC28} [A ] 264. d:\videospeedy\vspeed.dll + HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions Exec [A ] 265. d:\thunder\thunder.exe Exec [A ] 266. c:\windows\network diagnostic\xpnetdiag.exe + HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars {4D5C8C25-D075-11d0-B416-00C04FB90376} [AM] 267. c:\windows\system32\shdocvw.dll + 资源管理器加载模块 + HKLM\SOFTWARE\Classes\PROTOCOLS\Filter application/octet-stream [A ] 268. c:\windows\system32\mscoree.dll application/x-complus [A ] 268. c:\windows\system32\mscoree.dll application/x-msdownload [A ] 268. c:\windows\system32\mscoree.dll Class Install Handler [AM] 269. c:\windows\system32\urlmon.dll deflate [AM] 269. c:\windows\system32\urlmon.dll gzip [AM] 269. c:\windows\system32\urlmon.dll lzdhtml [AM] 269. c:\windows\system32\urlmon.dll text/webviewhtml [AM] 270. c:\windows\system32\shell32.dll + HKLM\SOFTWARE\Classes\PROTOCOLS\Handler about [AM] 271. c:\windows\system32\mshtml.dll cdl [AM] 269. c:\windows\system32\urlmon.dll dvd [A ] 272. c:\windows\system32\msvidctl.dll file [AM] 269. c:\windows\system32\urlmon.dll ftp [AM] 269. c:\windows\system32\urlmon.dll gopher [AM] 269. c:\windows\system32\urlmon.dll http [AM] 269. c:\windows\system32\urlmon.dll https [AM] 269. c:\windows\system32\urlmon.dll its [A ] 273. c:\windows\system32\itss.dll javascript [AM] 271. c:\windows\system32\mshtml.dll local [AM] 269. c:\windows\system32\urlmon.dll mailto [AM] 271. c:\windows\system32\mshtml.dll mhtml [AM] 274. c:\windows\system32\inetcomm.dll mk [AM] 269. c:\windows\system32\urlmon.dll ms-its [A ] 273. c:\windows\system32\itss.dll res [AM] 271. c:\windows\system32\mshtml.dll sysimage [AM] 271. c:\windows\system32\mshtml.dll tv [A ] 272. c:\windows\system32\msvidctl.dll vbscript [AM] 271. c:\windows\system32\mshtml.dll wia [A ] 275. c:\windows\system32\wiascr.dll + HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} [A ] 276. c:\windows\system32\ieudinit.exe >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} [A ] 277. c:\windows\inf\unregmp2.exe >{26923b43-4d38-484f-9b9e-de460746276c} [A ] 278. c:\windows\system32\ie4uinit.exe >{60B49E34-C7CC-11D0-8953-00A0C90347FF} [A ] 279. c:\windows\system32\rundll32.exe >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS [A ] 279. c:\windows\system32\rundll32.exe >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} [A ] 280. c:\windows\system32\shmgrate.exe {2C7339CF-2B09-4501-B3F3-F3508C9228ED} [A ] 281. c:\windows\system32\regsvr32.exe [AM] 282. c:\windows\system32\themeui.dll {44BBA840-CC51-11CF-AAFA-00AA00B6015C} [A ] 283. c:\program files\outlook express\setup50.exe {44BBA842-CC51-11CF-AAFA-00AA00B6015B} [A ] 279. c:\windows\system32\rundll32.exe {5945c046-1e7d-11d1-bc44-00c04fd912be} [A ] 279. c:\windows\system32\rundll32.exe {6BF52A52-394A-11d3-B153-00C04F79FAA6} [A ] 279. c:\windows\system32\rundll32.exe {7790769C-0471-11d2-AF11-00C04FA35D02} [A ] 283. c:\program files\outlook express\setup50.exe {89820200-ECBD-11cf-8B85-00AA005B4340} [A ] 281. c:\windows\system32\regsvr32.exe [AM] 270. c:\windows\system32\shell32.dll {89820200-ECBD-11cf-8B85-00AA005B4383} [A ] 278. c:\windows\system32\ie4uinit.exe {89B4C1CD-B018-4511-B0A1-5476DBF70820} [A ] 279. c:\windows\system32\rundll32.exe + HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers {0D2E74C4-3C34-11d2-A27E-00C04FC30871} [AM] 270. c:\windows\system32\shell32.dll {24F14F01-7B1C-11d1-838f-0000F80461CF} [AM] 270. c:\windows\system32\shell32.dll {24F14F02-7B1C-11d1-838f-0000F80461CF} [AM] 270. c:\windows\system32\shell32.dll {66742402-F9B9-11D1-A202-0000F81FEDEE} [AM] 270. c:\windows\system32\shell32.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved Multimedia File Property Sheet [A ] 284. c:\windows\system32\mmsys.cpl ICM 扫描仪管理 [A ] 285. c:\windows\system32\icmui.dll NTFS Security Page [A ] 286. c:\windows\system32\rshx32.dll OLE Docfile Property Page [A ] 287. c:\windows\system32\docprop.dll Shell extensions for sharing [AM] 288. c:\windows\system32\ntshrui.dll PlusPack CPL Extension [AM] 282. c:\windows\system32\themeui.dll Display Adapter CPL Extension [A ] 289. c:\windows\system32\deskadp.dll Display Monitor CPL Extension [A ] 290. c:\windows\system32\deskmon.dll DS Security Page [A ] 291. c:\windows\system32\dssec.dll Compatibility Page [A ] 292. c:\windows\system32\slayerxp.dll Shell Scrap DataHandler [A ] 293. c:\windows\system32\shscrap.dll Disk Copy Extension [A ] 294. c:\windows\system32\diskcopy.dll Shell extensions for Microsoft Windows Network objects [A ] 295. c:\windows\system32\ntlanui2.dll ICM 监视器管理 [A ] 285. c:\windows\system32\icmui.dll ICM 打印机管理 [A ] 285. c:\windows\system32\icmui.dll Web Printer Shell Extension [A ] 296. c:\windows\system32\printui.dll Disk Quota UI [A ] 297. c:\windows\system32\dskquoui.dll 公文包 [A ] 298. c:\windows\system32\syncui.dll HyperTerminal Icon Ext [A ] 299. c:\windows\system32\hticons.dll 字体 [A ] 300. c:\windows\system32\fontext.dll ICC 配置文件 [A ] 285. c:\windows\system32\icmui.dll Printers Security Page [A ] 286. c:\windows\system32\rshx32.dll Shell extensions for sharing [AM] 288. c:\windows\system32\ntshrui.dll Display TroubleShoot CPL Extension [A ] 301. c:\windows\system32\deskperf.dll Crypto PKO Extension [A ] 302. c:\windows\system32\cryptext.dll Crypto Sign Extension [A ] 302. c:\windows\system32\cryptext.dll 网络连接 [AM] 303. c:\windows\system32\netshell.dll 网络连接 [AM] 303. c:\windows\system32\netshell.dll 扫描仪和照相机 [A ] 304. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 304. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 304. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 304. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 304. c:\windows\system32\wiashext.dll Remote Sessions CPL Extension [A ] 305. c:\windows\system32\remotepg.dll Shell extensions for Windows Script Host [A ] 306. c:\windows\system32\wshext.dll Microsoft 数据链接 [A ] 307. c:\program files\common files\system\ole db\oledb32.dll Tasks Folder Icon Handler [A ] 308. c:\windows\system32\mstask.dll Tasks Folder Shell Extension [A ] 308. c:\windows\system32\mstask.dll 任务计划 [A ] 308. c:\windows\system32\mstask.dll Set Program Access and Defaults [AM] 267. c:\windows\system32\shdocvw.dll Auto Update Property Sheet Extension [A ] 309. c:\windows\system32\wuaucpl.cpl 搜索 [AM] 267. c:\windows\system32\shdocvw.dll 帮助和支持 [AM] 267. c:\windows\system32\shdocvw.dll 帮助和支持 [AM] 267. c:\windows\system32\shdocvw.dll 运行... [AM] 267. c:\windows\system32\shdocvw.dll Internet [AM] 267. c:\windows\system32\shdocvw.dll 电子邮件 [AM] 267. c:\windows\system32\shdocvw.dll 字体 [AM] 267. c:\windows\system32\shdocvw.dll 管理工具 [AM] 267. c:\windows\system32\shdocvw.dll 以前的版本属性页 [A ] 310. c:\windows\system32\twext.dll 以前的版本 [A ] 310. c:\windows\system32\twext.dll Audio Media Properties Handler [A ] 311. c:\windows\system32\shmedia.dll Video Media Properties Handler [A ] 311. c:\windows\system32\shmedia.dll Wav Properties Handler [A ] 311. c:\windows\system32\shmedia.dll Avi Properties Handler [A ] 311. c:\windows\system32\shmedia.dll Midi Properties Handler [A ] 311. c:\windows\system32\shmedia.dll Video Thumbnail Extractor [A ] 311. c:\windows\system32\shmedia.dll Microsoft Internet 工具栏 [AM] 312. c:\windows\system32\browseui.dll 下载状态 [AM] 312. c:\windows\system32\browseui.dll 补充的外壳文件夹 [AM] 312. c:\windows\system32\browseui.dll 补充的外壳文件夹 2 [AM] 312. c:\windows\system32\browseui.dll BandProxy [AM] 312. c:\windows\system32\browseui.dll Microsoft BrowserBand [AM] 312. c:\windows\system32\browseui.dll IE Search Band [AM] 256. c:\windows\system32\ieframe.dll 窗格中的搜索 [AM] 312. c:\windows\system32\browseui.dll Web 搜索 [AM] 312. c:\windows\system32\browseui.dll 注册数目路选项实用程序 [AM] 312. c:\windows\system32\browseui.dll 地址(&A) [AM] 312. c:\windows\system32\browseui.dll 地址 EditBox [AM] 312. c:\windows\system32\browseui.dll Microsoft AutoComplete [AM] 312. c:\windows\system32\browseui.dll TridentImageExtractor [AM] 312. c:\windows\system32\browseui.dll MRU 自动完成列表 [AM] 312. c:\windows\system32\browseui.dll 自定义 MRU 自动完成列表 [AM] 312. c:\windows\system32\browseui.dll 可访问的 [AM] 312. c:\windows\system32\browseui.dll 跟踪弹出栏 [AM] 312. c:\windows\system32\browseui.dll Microsoft 历史自动完成列表 [AM] 312. c:\windows\system32\browseui.dll Microsoft 外壳文件夹自动完成列表 [AM] 312. c:\windows\system32\browseui.dll Microsoft 多个自动完成列表容器 [AM] 312. c:\windows\system32\browseui.dll Shell Band Site Menu [AM] 312. c:\windows\system32\browseui.dll 外壳 DeskBarApp [AM] 312. c:\windows\system32\browseui.dll 外壳 DeskBar [AM] 312. c:\windows\system32\browseui.dll 外壳 Rebar BandSite [AM] 312. c:\windows\system32\browseui.dll 用户帮助 [AM] 312. c:\windows\system32\browseui.dll 全局文件夹设置 [AM] 312. c:\windows\system32\browseui.dll Favorites Band [AM] 267. c:\windows\system32\shdocvw.dll Shell Automation Inproc Service [AM] 267. c:\windows\system32\shdocvw.dll Shell DocObject Viewer [AM] 256. c:\windows\system32\ieframe.dll Microsoft Browser Architecture [AM] 267. c:\windows\system32\shdocvw.dll InternetShortcut [AM] 256. c:\windows\system32\ieframe.dll Microsoft Url History Service [AM] 256. c:\windows\system32\ieframe.dll History [AM] 256. c:\windows\system32\ieframe.dll Temporary Internet Files [AM] 256. c:\windows\system32\ieframe.dll Temporary Internet Files [AM] 256. c:\windows\system32\ieframe.dll Microsoft Url Search Hook [AM] 256. c:\windows\system32\ieframe.dll IE4 套件初始屏幕 [AM] 267. c:\windows\system32\shdocvw.dll CDF Extension Copy Hook [AM] 267. c:\windows\system32\shdocvw.dll ISFBand OC [AM] 267. c:\windows\system32\shdocvw.dll Search Assistant OC [AM] 267. c:\windows\system32\shdocvw.dll The Internet [AM] 256. c:\windows\system32\ieframe.dll Internet Name Space [AM] 256. c:\windows\system32\ieframe.dll 浏览器栏 [AM] 267. c:\windows\system32\shdocvw.dll Sendmail service [A ] 313. c:\windows\system32\sendmail.dll Sendmail service [A ] 313. c:\windows\system32\sendmail.dll ActiveX Cache Folder [A ] 314. c:\windows\system32\occache.dll WebCheck [AM] 315. c:\windows\system32\webcheck.dll Subscription Mgr [AM] 315. c:\windows\system32\webcheck.dll Subscription Folder [AM] 315. c:\windows\system32\webcheck.dll WebCheckWebCrawler [AM] 315. c:\windows\system32\webcheck.dll WebCheckChannelAgent [AM] 315. c:\windows\system32\webcheck.dll TrayAgent [AM] 315. c:\windows\system32\webcheck.dll Code Download Agent [AM] 315. c:\windows\system32\webcheck.dll ConnectionAgent [AM] 315. c:\windows\system32\webcheck.dll PostAgent [AM] 315. c:\windows\system32\webcheck.dll WebCheck SyncMgr Handler [AM] 315. c:\windows\system32\webcheck.dll Shell Application Manager [A ] 316. c:\windows\system32\appwiz.cpl Installed Apps Enumerator [A ] 316. c:\windows\system32\appwiz.cpl Darwin App Publisher [A ] 316. c:\windows\system32\appwiz.cpl Shell Image Verbs [A ] 317. c:\windows\system32\shimgvw.dll Shell Image Data Factory [A ] 317. c:\windows\system32\shimgvw.dll GDI+ 文件缩略图解压缩程序 [A ] 317. c:\windows\system32\shimgvw.dll 摘要信息缩略图处理程序(DOCFILES) [A ] 317. c:\windows\system32\shimgvw.dll HTML 缩略图的解压缩程序 [A ] 317. c:\windows\system32\shimgvw.dll Shell Image Property Handler [A ] 317. c:\windows\system32\shimgvw.dll 网络出版向导 [A ] 318. c:\windows\system32\netplwiz.dll 通过 Web 订购照片 [A ] 318. c:\windows\system32\netplwiz.dll 外壳出版向导对象 [A ] 318. c:\windows\system32\netplwiz.dll 获取 Passport 向导 [A ] 318. c:\windows\system32\netplwiz.dll Compressed (zipped) Folder Right Drag Handler [A ] 319. c:\windows\system32\zipfldr.dll Compressed (zipped) Folder SendTo Target [A ] 319. c:\windows\system32\zipfldr.dll Extensions Manager Folder [A ] 320. c:\windows\system32\extmgr.dll FTP Folders Webview [A ] 321. c:\windows\system32\msieftp.dll Microsoft DocProp Shell Ext [A ] 322. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Edit Box Control [A ] 322. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace ML Edit Box Control [A ] 322. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Droplist Combo Control [A ] 322. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Calendar Control [A ] 322. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Time Control [A ] 322. c:\windows\system32\docprop2.dll Directory Query UI [A ] 323. c:\windows\system32\dsquery.dll Shell properties for a DS object [A ] 323. c:\windows\system32\dsquery.dll Directory Object Find [A ] 323. c:\windows\system32\dsquery.dll Directory Start/Search Find [A ] 323. c:\windows\system32\dsquery.dll Directory Property UI [A ] 324. c:\windows\system32\dsuiext.dll Directory Context Menu Verbs [A ] 324. c:\windows\system32\dsuiext.dll MyDocs Copy Hook [A ] 325. c:\windows\system32\mydocs.dll MyDocs Drop Target [A ] 325. c:\windows\system32\mydocs.dll MyDocs Properties [A ] 325. c:\windows\system32\mydocs.dll Offline Files Menu [AM] 326. c:\windows\system32\cscui.dll Offline Files Folder Options [AM] 326. c:\windows\system32\cscui.dll 脱机文件夹 [AM] 326. c:\windows\system32\cscui.dll Microsoft Agent Character Property Sheet Handler [A ] 327. c:\windows\msagent\agentpsh.dll DfsShell [A ] 328. c:\windows\system32\dfsshlex.dll %DESC_PublishDropTarget% [A ] 329. c:\windows\system32\photowiz.dll MMC Icon Handler [A ] 330. c:\windows\system32\mmcshext.dll .CAB file viewer [A ] 331. c:\windows\system32\cabview.dll 用户(&P)... [A ] 332. c:\program files\outlook express\wabfind.dll Windows Media Player Play as Playlist Context Menu Handler [A ] 333. c:\windows\system32\wmpshell.dll Windows Media Player Burn Audio CD Context Menu Handler [A ] 333. c:\windows\system32\wmpshell.dll Windows Media Player Add to Playlist Context Menu Handler [A ] 333. c:\windows\system32\wmpshell.dll Portable Media Devices [A ] 334. c:\windows\system32\audiodev.dll Portable Media Devices Menu [A ] 334. c:\windows\system32\audiodev.dll Catalyst Context Menu extension [AM] 335. c:\program files\ati technologies\ati.ace\core-static\atiacmxx.dll Shell Extensions for RealOne Player [A ] 336. c:\program files\real\realplayer\rpshell.dll Shell Search Band [AM] 312. c:\windows\system32\browseui.dll AutoCAD 数字签名图标覆盖处理程序 [AM] 337. c:\windows\system32\acsignicon.dll Autodesk Drawing Preview [A ] 338. c:\program files\common files\autodesk shared\thumbnail\acthumbnail16.dll Sony Ericsson 文件管理器 [A ] 339. c:\program files\sony ericsson\mobile2\file manager\fmgrgui.dll IE Microsoft BrowserBand [AM] 256. c:\windows\system32\ieframe.dll IE Fade Task [AM] 256. c:\windows\system32\ieframe.dll IE Menu Desk Bar [AM] 256. c:\windows\system32\ieframe.dll IE AutoComplete [AM] 256. c:\windows\system32\ieframe.dll IE Navigation Bar [AM] 256. c:\windows\system32\ieframe.dll IE Menu Site [AM] 256. c:\windows\system32\ieframe.dll IE Menu Band [AM] 256. c:\windows\system32\ieframe.dll IE Microsoft History AutoComplete List [AM] 256. c:\windows\system32\ieframe.dll IE Tracking Shell Menu [AM] 256. c:\windows\system32\ieframe.dll IE IShellFolderBand [AM] 256. c:\windows\system32\ieframe.dll IE BandProxy [AM] 256. c:\windows\system32\ieframe.dll IE MRU AutoComplete List [AM] 256. c:\windows\system32\ieframe.dll IE RSS Feeder Folder [AM] 256. c:\windows\system32\ieframe.dll IE Microsoft Shell Folder AutoComplete List [AM] 256. c:\windows\system32\ieframe.dll IE Microsoft Multiple AutoComplete List Container [AM] 256. c:\windows\system32\ieframe.dll Microsoft Browser Architecture [AM] 256. c:\windows\system32\ieframe.dll IE Shell Rebar BandSite [AM] 256. c:\windows\system32\ieframe.dll IE Shell Band Site Menu [AM] 256. c:\windows\system32\ieframe.dll &Links [AM] 256. c:\windows\system32\ieframe.dll IE Registry Tree Options Utility [AM] 256. c:\windows\system32\ieframe.dll IE User Assist [AM] 256. c:\windows\system32\ieframe.dll IE Custom MRU AutoCompleted List [AM] 256. c:\windows\system32\ieframe.dll WinRAR shell extension [A ] 340. d:\winrar\rarext.dll EncryptFile [A ] 341. d:\wopti\woptiencryptmodule.dll RISING [AM] 342. c:\windows\system32\ravext.dll Foxy [A ] 343. c:\documents and settings\chibi\application data\foxy\linkmaker.dll ShellLink for Application References [A ] 344. c:\windows\system32\dfshim.dll Shell Icon Handler for Application References [A ] 344. c:\windows\system32\dfshim.dll HTML Document [AM] 271. c:\windows\system32\mshtml.dll MSHTML Document [AM] 271. c:\windows\system32\mshtml.dll Microsoft Web Browser [AM] 256. c:\windows\system32\ieframe.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks {32CD708B-60A7-4C00-9377-D73EAA495F0F} [AM] 342. c:\windows\system32\ravext.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler Browseui 预加载程序 [AM] 312. c:\windows\system32\browseui.dll 组件类别缓存程序 [AM] 312. c:\windows\system32\browseui.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad PostBootReminder [AM] 270. c:\windows\system32\shell32.dll CDBurn [AM] 270. c:\windows\system32\shell32.dll WebCheck [AM] 315. c:\windows\system32\webcheck.dll SysTray [AM] 345. c:\windows\system32\stobject.dll ThunderAdvise [AM] 262. c:\windows\downloaded program files\thunderadvise.dll + 用户登陆自运行项目 + HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds StartupPrograms [A ] 346. c:\windows\system32\rdpclip.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Userinit [A ] 347. c:\windows\system32\userinit.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Shell [AM] 348. c:\windows\explorer.exe + HKCU\Software\Microsoft\Windows\CurrentVersion\Run ctfmon.exe [AM] 349. c:\windows\system32\ctfmon.exe SRS Audio Sandbox [AM] 350. d:\srs\srsssc.exe + HKLM\Software\Microsoft\Windows\CurrentVersion\Run RavTask [AM] 351. d:\rising\rav\ravtask.exe RfwMain [AM] 352. d:\rising\rfw\rfwmain.exe TkBellExe [A ] 353. c:\program files\common files\real\update_ob\realsched.exe wdcertm_ccb [AM] 354. c:\windows\system32\watchdata\watchdata ccb csp v3.2\wdcertm_ccb.exe runeip [AM] 355. d:\瑞星卡卡\rstray.exe HBService [A ] 356. c:\windows\system32\hbinject.exe + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce KKDelay [A ] 357. d:\瑞星卡卡\runonce.exe + 开机执行 + HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order BootExecute [A ] 358. c:\windows\system32\autochk.exe [A ] 359. c:\windows\system32\bsmain.exe [A ] 360. c:\windows\system32\kknative.exe + 映像劫持 + HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options nod32.exeNavapsvc.exe [A ] 361. c:\windows\system32\ntsd.exe OllyDBG.EXE [A ] 361. c:\windows\system32\ntsd.exe OllyICE.EXE [A ] 361. c:\windows\system32\ntsd.exe procexp.exe [A ] 361. c:\windows\system32\ntsd.exe RegTool.exe [A ] 361. c:\windows\system32\ntsd.exe rfwstub.exe [A ] 361. c:\windows\system32\ntsd.exe Your Image File Name Here without a path [A ] 361. c:\windows\system32\ntsd.exe + HKCR\Folder\shell explore [AM] 348. c:\windows\explorer.exe open [AM] 348. c:\windows\explorer.exe + HKCR\.exe exefile\启用/禁用数字签名图标\Command [A ] 362. c:\windows\system32\acsignopt.exe + HKCR\.bat batfile\edit\Command [A ] 363. c:\windows\system32\notepad.exe batfile\print\Command [A ] 363. c:\windows\system32\notepad.exe + HKCR\.html htmlfile\Maxthon\Command [A ] 364. d:\maxthon2\maxthon.exe htmlfile\open\Command [A ] 364. d:\maxthon2\maxthon.exe htmlfile\opennew\Command [A ] 365. c:\program files\internet explorer\iexplore.exe htmlfile\print\Command [A ] 279. c:\windows\system32\rundll32.exe htmlfile\printto\Command [A ] 279. c:\windows\system32\rundll32.exe htmlfile\傲游(Maxthon)\Command [A ] 364. d:\maxthon2\maxthon.exe + HKCR\.htm htmlfile\Maxthon\Command [A ] 364. d:\maxthon2\maxthon.exe htmlfile\open\Command [A ] 364. d:\maxthon2\maxthon.exe htmlfile\opennew\Command [A ] 365. c:\program files\internet explorer\iexplore.exe htmlfile\print\Command [A ] 279. c:\windows\system32\rundll32.exe htmlfile\printto\Command [A ] 279. c:\windows\system32\rundll32.exe htmlfile\傲游(Maxthon)\Command [A ] 364. d:\maxthon2\maxthon.exe + HKCR\.log txtfile\open\Command [A ] 366. c:\windows\notepad.exe txtfile\print\Command [A ] 363. c:\windows\system32\notepad.exe txtfile\printto\Command [A ] 363. c:\windows\system32\notepad.exe + HKCR\.txt txtfile\open\Command [A ] 366. c:\windows\notepad.exe txtfile\print\Command [A ] 363. c:\windows\system32\notepad.exe txtfile\printto\Command [A ] 363. c:\windows\system32\notepad.exe + HKCR\.cmd cmdfile\edit\Command [A ] 363. c:\windows\system32\notepad.exe cmdfile\print\Command [A ] 363. c:\windows\system32\notepad.exe + HKCR\.scr scrfile\install\Command [A ] 279. c:\windows\system32\rundll32.exe + HKCR\.reg regfile\edit\Command [A ] 363. c:\windows\system32\notepad.exe regfile\open\Command [A ] 367. c:\windows\regedit.exe regfile\print\Command [A ] 363. c:\windows\system32\notepad.exe + HKCR\.vbs VBSFile\Edit\Command [A ] 363. c:\windows\system32\notepad.exe VBSFile\Open\Command [A ] 368. c:\windows\system32\wscript.exe VBSFile\Open2\Command [A ] 369. c:\windows\system32\cscript.exe VBSFile\Print\Command [A ] 363. c:\windows\system32\notepad.exe + HKCR\.js JSFile\Edit\Command [A ] 363. c:\windows\system32\notepad.exe JSFile\Open\Command [A ] 368. c:\windows\system32\wscript.exe JSFile\Open2\Command [A ] 369. c:\windows\system32\cscript.exe JSFile\Print\Command [A ] 363. c:\windows\system32\notepad.exe + HKCR\.mp3 RealPlayer.MP3.6\open\Command [A ] 370. c:\program files\real\realplayer\realplay.exe + HKCR\.ini inifile\open\Command [A ] 363. c:\windows\system32\notepad.exe inifile\print\Command [A ] 363. c:\windows\system32\notepad.exe + HKCR\.inf inffile\Install\Command [A ] 279. c:\windows\system32\rundll32.exe inffile\open\Command [A ] 363. c:\windows\system32\notepad.exe inffile\print\Command [A ] 363. c:\windows\system32\notepad.exe + 程序初始化和已知动态连接库 + HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs advapi32 [AM] 79. c:\windows\system32\advapi32.dll comdlg32 [AM] 371. c:\windows\system32\comdlg32.dll gdi32 [AM] 372. c:\windows\system32\gdi32.dll imagehlp [AM] 373. c:\windows\system32\imagehlp.dll kernel32 [AM] 374. c:\windows\system32\kernel32.dll lz32 [A ] 375. c:\windows\system32\lz32.dll ole32 [AM] 376. c:\windows\system32\ole32.dll oleaut32 [AM] 377. c:\windows\system32\oleaut32.dll olecli32 [A ] 378. c:\windows\system32\olecli32.dll olecnv32 [A ] 379. c:\windows\system32\olecnv32.dll olesvr32 [A ] 380. c:\windows\system32\olesvr32.dll olethk32 [A ] 381. c:\windows\system32\olethk32.dll rpcrt4 [AM] 382. c:\windows\system32\rpcrt4.dll shell32 [AM] 270. c:\windows\system32\shell32.dll url [A ] 383. c:\windows\system32\url.dll urlmon [AM] 269. c:\windows\system32\urlmon.dll user32 [AM] 384. c:\windows\system32\user32.dll version [AM] 385. c:\windows\system32\version.dll wininet [AM] 386. c:\windows\system32\wininet.dll wldap32 [AM] 387. c:\windows\system32\wldap32.dll + 打印机监控 + HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors BJ Language Monitor [A ] 388. c:\windows\system32\cnbjmon.dll Local Port [A ] 389. c:\windows\system32\localspl.dll PJL Language Monitor [A ] 390. c:\windows\system32\pjlmon.dll Standard TCP/IP Port [A ] 391. c:\windows\system32\tcpmon.dll USB Monitor [A ] 392. c:\windows\system32\usbmon.dll + 安全验证 + HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders SecurityProviders [A ] 393. c:\windows\system32\msapsspc.dll [AM] 394. c:\windows\system32\schannel.dll [A ] 395. c:\windows\system32\digest.dll [A ] 396. c:\windows\system32\msnsspc.dll + HKLM\SYSTEM\CurrentControlSet\Control\Lsa Authentication Packages [AM] 397. c:\windows\system32\msv1_0.dll Security Packages [AM] 398. c:\windows\system32\kerberos.dll [AM] 397. c:\windows\system32\msv1_0.dll [AM] 394. c:\windows\system32\schannel.dll [AM] 399. c:\windows\system32\wdigest.dll + 其他自启动项目 + dsetup32.dll [A ] 400. c:\dsetup32.dll DSETUP.dll [A ] 401. c:\dsetup.dll DXSETUP.exe [A ] 402. c:\dxsetup.exe + dsetup32.dll [A ] 400. c:\dsetup32.dll DSETUP.dll [A ] 401. c:\dsetup.dll DXSETUP.exe [A ] 402. c:\dxsetup.exe + C:\Documents and Settings\All Users\「开始」菜单\程序\启动 星空极速.lnk [AM] 403. c:\program files\chinanet\vnetclient.exe + 正在运行的进程 + 000000b4(180) iscsiexe.exe 01000000[0001A000] [AM] 38. c:\windows\system32\iscsiexe.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 00400000[0000A000] [ M] 407. c:\windows\system32\iscsium.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 74A40000[00007000] [ M] 411. c:\windows\system32\cfgmgr32.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll + 0000020c(524) RavStub.exe 00400000[00021000] [ M] 425. d:\rising\rav\ravstub.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 427. d:\rising\rav\proccom.dll 00620000[00024000] [ M] 428. d:\rising\rav\rscommx2.dll 23700000[00028000] [ M] 429. d:\rising\rav\rscommon.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll + 00000298(664) smss.exe 48580000[0000F000] [ M] 430. c:\windows\system32\smss.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll + 000002b4(692) Explorer.EXE 01000000[000F1000] [AM] 348. c:\windows\explorer.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 75EF0000[000FD000] [AM] 312. c:\windows\system32\browseui.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 7E550000[0016F000] [AM] 267. c:\windows\system32\shdocvw.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 75430000[00071000] [ M] 431. c:\windows\system32\cryptui.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 00400000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 002E0000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 76D70000[00022000] [ M] 441. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 60560000[00033000] [AM] 337. c:\windows\system32\acsignicon.dll 72F70000[00026000] [ M] 442. c:\windows\system32\winspool.drv 76590000[0004E000] [AM] 326. c:\windows\system32\cscui.dll 76570000[0001C000] [AM] 251. c:\windows\system32\cscdll.dll 5B680000[0006E000] [AM] 282. c:\windows\system32\themeui.dll 762F0000[00005000] [ M] 443. c:\windows\system32\msimg32.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 71CC0000[0001C000] [ M] 445. c:\windows\system32\actxprxy.dll 10000000[0001C000] [AM] 342. c:\windows\system32\ravext.dll 017B0000[007A9000] [AM] 256. c:\windows\system32\ieframe.dll 5FE40000[00031000] [ M] 446. c:\windows\system32\msutb.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll 60610000[00061000] [ M] 448. c:\program files\common files\autodesk shared\acsigncore16.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76960000[00024000] [AM] 288. c:\windows\system32\ntshrui.dll 76AF0000[00011000] [ M] 449. c:\windows\system32\atl.dll 7C9C0000[002BE000] [ M] 450. c:\windows\system32\msi.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 76950000[00008000] [ M] 451. c:\windows\system32\linkinfo.dll 74770000[0019A000] [AM] 303. c:\windows\system32\netshell.dll 76E50000[0000E000] [ M] 452. c:\windows\system32\rtutils.dll 76BD0000[0002D000] [ M] 453. c:\windows\system32\credui.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 026C0000[0003C000] [AM] 315. c:\windows\system32\webcheck.dll 74A60000[00020000] [AM] 345. c:\windows\system32\stobject.dll 74A50000[0000A000] [ M] 455. c:\windows\system32\batmeter.dll 74A30000[00008000] [ M] 456. c:\windows\system32\powrprof.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 02680000[0000B000] [AM] 262. c:\windows\downloaded program files\thunderadvise.dll 76EB0000[0003C000] [ M] 458. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 459. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 460. c:\windows\system32\tapi32.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 72240000[00005000] [ M] 461. c:\windows\system32\sensapi.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 72C90000[00009000] [ M] 462. c:\windows\system32\wdmaud.drv 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 72C80000[00008000] [ M] 465. c:\windows\system32\msacm32.drv 77BA0000[00007000] [ M] 466. c:\windows\system32\midimap.dll 72FA0000[00010000] [ M] 467. c:\windows\system32\wzcsapi.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 02BA0000[0000F000] [ M] 469. c:\windows\system32\browselc.dll 02F90000[0002C000] [AM] 257. d:\thunder\comdlls\tdatonce_now.dll 02FC0000[00031000] [AM] 260. d:\thunder\comdlls\xunleibho_now.dll 74BE0000[0002C000] [ M] 470. c:\windows\system32\oleacc.dll 75FF0000[00065000] [ M] 471. c:\windows\system32\msvcp60.dll 240A0000[0000E000] [ M] 472. d:\thunder\components\resworker\dsbho_01.dll 24050000[0001E000] [ M] 473. d:\thunder\components\resworker\dataprocessor_01.dll 75E00000[000AE000] [ M] 474. c:\windows\system32\sxs.dll 71A90000[00012000] [ M] 475. c:\windows\system32\mpr.dll 75ED0000[00007000] [ M] 476. c:\windows\system32\drprov.dll 71B90000[0000E000] [AM] 33. c:\windows\system32\ntlanman.dll 71C50000[00015000] [ M] 477. c:\windows\system32\netui0.dll 71C10000[00040000] [ M] 478. c:\windows\system32\netui1.dll 71C00000[00007000] [ M] 479. c:\windows\system32\netrap.dll 71B70000[00013000] [ M] 480. c:\windows\system32\samlib.dll 75EE0000[00009000] [AM] 75. c:\windows\system32\davclnt.dll 758D0000[000F0000] [ M] 481. c:\windows\system32\msgina.dll 73540000[0003D000] [ M] 482. c:\windows\system32\odbc32.dll 76320000[00047000] [AM] 371. c:\windows\system32\comdlg32.dll 03180000[00017000] [ M] 483. c:\windows\system32\odbcint.dll 6C520000[0004D000] [ M] 484. c:\windows\system32\duser.dll 74CF0000[00091000] [ M] 485. c:\windows\system32\mlang.dll 702B0000[00039000] [ M] 486. c:\windows\system32\c_g18030.dll 702A0000[00005000] [ M] 487. c:\windows\system32\c_is2022.dll 00ED0000[00013000] [AM] 335. c:\program files\ati technologies\ati.ace\core-static\atiacmxx.dll + 0000031c(796) RfwMain.exe 00400000[00092000] [AM] 352. d:\rising\rfw\rfwmain.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 7C140000[00103000] [ M] 488. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 489. c:\windows\system32\msvcr71.dll 7C3A0000[0007B000] [ M] 490. c:\windows\system32\msvcp71.dll 26600000[000A8000] [ M] 491. d:\rising\rfw\rsguilib.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 10000000[0001F000] [ M] 492. d:\rising\rfw\proccom.dll 00B60000[00024000] [ M] 493. d:\rising\rfw\rscommx2.dll 00CA0000[0000E000] [ M] 494. d:\rising\rfw\rsappmgr.dll 00CC0000[00030000] [ M] 495. d:\rising\rfw\cfgdll.dll 23700000[00028000] [ M] 496. d:\rising\rfw\rscommon.dll 00F10000[00014000] [ M] 497. d:\rising\rfw\rfwctrl.dll 23800000[00022000] [ M] 498. d:\rising\rfw\rsxml.dll 23900000[00040000] [ M] 499. d:\rising\rfw\pngdll.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 01400000[0000F000] [ M] 500. d:\rising\rfw\rfwrule.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 5E8E0000[0000D000] [ M] 501. c:\windows\system32\perfproc.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 757D0000[00013000] [AM] 250. c:\windows\system32\cryptnet.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 4A410000[00058000] [ M] 502. c:\windows\system32\winhttp.dll 72240000[00005000] [ M] 461. c:\windows\system32\sensapi.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll + 00000334(820) knownsvr.exe 00400000[00072000] [ M] 503. d:\瑞星卡卡\knownsvr.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 10000000[0002F000] [ M] 504. d:\瑞星卡卡\ncomm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 00390000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 003A0000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 00CF0000[0002E000] [ M] 505. d:\瑞星卡卡\comx3.dll 00D20000[00019000] [ M] 506. d:\瑞星卡卡\syslay.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll + 000003a4(932) stormliv.exe 00400000[00077000] [AM] 12. d:\暴风影音\stormliv.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 75FF0000[00065000] [ M] 507. d:\暴风影音\msvcp60.dll 73D30000[000FE000] [ M] 508. c:\windows\system32\mfc42.dll 76320000[00047000] [AM] 371. c:\windows\system32\comdlg32.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 00390000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 003A0000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 61BE0000[0000D000] [ M] 509. c:\windows\system32\mfc42loc.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 5DD50000[00113000] [ M] 512. c:\windows\system32\msxml3.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 76F80000[00008000] [ M] 513. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 76AF0000[00011000] [ M] 449. c:\windows\system32\atl.dll 76760000[0000C000] [ M] 514. c:\windows\system32\cryptdll.dll + 000003b8(952) csrss.exe 4A680000[00005000] [ M] 515. c:\windows\system32\csrss.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 75AA0000[0000B000] [ M] 516. c:\windows\system32\csrsrv.dll 75AB0000[00010000] [ M] 517. c:\windows\system32\basesrv.dll 764E0000[00054000] [ M] 518. c:\windows\system32\winsrv.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 75E00000[000AE000] [ M] 474. c:\windows\system32\sxs.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll + 000003d4(980) winlogon.exe 01000000[0007C000] [ M] 519. c:\windows\system32\winlogon.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77FE0000[00011000] [ M] 520. c:\windows\system32\authz.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 758A0000[00008000] [ M] 521. c:\windows\system32\nddeapi.dll 75890000[0000A000] [ M] 522. c:\windows\system32\profmap.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 76B90000[0000F000] [ M] 524. c:\windows\system32\regapi.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 758D0000[000F0000] [ M] 481. c:\windows\system32\msgina.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 73540000[0003D000] [ M] 482. c:\windows\system32\odbc32.dll 76320000[00047000] [AM] 371. c:\windows\system32\comdlg32.dll 20000000[00017000] [ M] 483. c:\windows\system32\odbcint.dll 76E10000[00023000] [AM] 26. c:\windows\system32\shsvcs.dll 76B80000[00005000] [ M] 525. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 526. c:\windows\system32\sfc_os.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 76D70000[00022000] [ M] 441. c:\windows\system32\apphelp.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 72360000[0001A000] [ M] 527. c:\windows\system32\winscard.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 10000000[0001E000] [AM] 248. c:\windows\system32\ati2evxx.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 76570000[0001C000] [AM] 251. c:\windows\system32\cscdll.dll 758B0000[0001A000] [AM] 252. c:\windows\system32\wlnotify.dll 72F70000[00026000] [ M] 442. c:\windows\system32\winspool.drv 71A90000[00012000] [ M] 475. c:\windows\system32\mpr.dll 01DA0000[0003B000] [AM] 254. c:\windows\system32\wgalogon.dll 76CB0000[00020000] [ M] 528. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 480. c:\windows\system32\samlib.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 76590000[0004E000] [AM] 326. c:\windows\system32\cscui.dll 01380000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 72C90000[00009000] [ M] 462. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 465. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 466. c:\windows\system32\midimap.dll + 00000400(1024) services.exe 01000000[0001C000] [AM] 24. c:\windows\system32\services.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 75840000[0004A000] [ M] 529. c:\windows\system32\scesrv.dll 77FE0000[00011000] [ M] 520. c:\windows\system32\authz.dll 7E1E0000[00020000] [ M] 530. c:\windows\system32\umpnpmgr.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 5F9A0000[0000C000] [ M] 531. c:\windows\system32\ncobjapi.dll 75FF0000[00065000] [ M] 471. c:\windows\system32\msvcp60.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76D70000[00022000] [ M] 441. c:\windows\system32\apphelp.dll 76CE0000[00011000] [ M] 532. c:\windows\system32\eventlog.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll + 0000040c(1036) lsass.exe 01000000[00006000] [AM] 41. c:\windows\system32\lsass.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 74480000[000AE000] [ M] 533. c:\windows\system32\lsasrv.dll 71A90000[00012000] [ M] 475. c:\windows\system32\mpr.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 76770000[00013000] [ M] 534. c:\windows\system32\ntdsapi.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 480. c:\windows\system32\samlib.dll 743A0000[00068000] [ M] 535. c:\windows\system32\samsrv.dll 76760000[0000C000] [ M] 514. c:\windows\system32\cryptdll.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 20000000[0000E000] [ M] 536. c:\windows\system32\msprivs.dll 71C70000[0004B000] [AM] 398. c:\windows\system32\kerberos.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 74410000[00065000] [ M] 537. c:\windows\system32\netlogon.dll 76790000[0002E000] [AM] 73. c:\windows\system32\w32time.dll 75FF0000[00065000] [ M] 471. c:\windows\system32\msvcp60.dll 767C0000[00027000] [AM] 394. c:\windows\system32\schannel.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 742E0000[0000F000] [AM] 399. c:\windows\system32\wdigest.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 74340000[0002F000] [ M] 538. c:\windows\system32\ipsecsvc.dll 77FE0000[00011000] [ M] 520. c:\windows\system32\authz.dll 73ED0000[000CE000] [ M] 539. c:\windows\system32\oakley.dll 742D0000[0000B000] [ M] 540. c:\windows\system32\winipsec.dll 74300000[0000B000] [ M] 541. c:\windows\system32\pstorsvc.dll 74320000[0001A000] [ M] 542. c:\windows\system32\psbase.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll 68100000[00024000] [ M] 543. c:\windows\system32\dssenh.dll + 000004b0(1200) Ati2evxx.exe 00400000[00073000] [AM] 6. c:\windows\system32\ati2evxx.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 74A30000[00008000] [ M] 456. c:\windows\system32\powrprof.dll 74A40000[00007000] [ M] 411. c:\windows\system32\cfgmgr32.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 00CC0000[00010000] [ M] 544. c:\windows\system32\ati2edxx.dll 10000000[00020000] [ M] 545. c:\windows\system32\atipdlxx.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll + 000004c0(1216) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 528. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 480. c:\windows\system32\samlib.dll 76230000[00063000] [AM] 18. c:\windows\system32\rpcss.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 76D70000[00022000] [ M] 441. c:\windows\system32\apphelp.dll + 000004cc(1228) WPService.exe 00400000[0003C000] [ M] 546. c:\program files\cmbchina\webprotect\wpservice.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 10000000[00039000] [ M] 547. c:\program files\cmbchina\webprotect\webprotectplus.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 00A90000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 00AA0000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76EB0000[0003C000] [ M] 458. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 459. c:\windows\system32\rasman.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 76E80000[0002F000] [ M] 460. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 452. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 72240000[00005000] [ M] 461. c:\windows\system32\sensapi.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll + 000004f4(1268) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76230000[00063000] [AM] 18. c:\windows\system32\rpcss.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 76F80000[00008000] [ M] 513. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll + 000005ac(1452) CCenter.exe 00400000[0002A000] [AM] 52. d:\rising\rav\ccenter.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll + 000005cc(1484) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 528. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 480. c:\windows\system32\samlib.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 76E10000[00023000] [AM] 26. c:\windows\system32\shsvcs.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 76D50000[0001D000] [AM] 19. c:\windows\system32\dhcpcsvc.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 76B40000[00031000] [AM] 56. c:\windows\system32\schedsvc.dll 76770000[00013000] [ M] 534. c:\windows\system32\ntdsapi.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 74EB0000[00005000] [ M] 548. c:\windows\system32\msidle.dll 70DE0000[0000D000] [AM] 8. c:\windows\system32\audiosrv.dll 76850000[00023000] [AM] 32. c:\windows\system32\wkssvc.dll 69AB0000[00064000] [AM] 10. c:\windows\system32\qmgr.dll 71A90000[00012000] [ M] 475. c:\windows\system32\mpr.dll 76750000[00009000] [ M] 549. c:\windows\system32\shfolder.dll 4A410000[00058000] [ M] 502. c:\windows\system32\winhttp.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll 75EB0000[00012000] [AM] 17. c:\windows\system32\cryptsvc.dll 752B0000[00030000] [ M] 550. c:\windows\system32\certcli.dll 76AF0000[00011000] [ M] 449. c:\windows\system32\atl.dll 75430000[00071000] [ M] 431. c:\windows\system32\cryptui.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 01590000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 015A0000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 5DF20000[00106000] [ M] 551. c:\windows\system32\esent.dll 74EF0000[00008000] [AM] 21. c:\windows\system32\dmserver.dll 74EA0000[0000C000] [AM] 27. c:\windows\pchealth\helpctr\binaries\pchsvc.dll 77CD0000[00033000] [AM] 42. c:\windows\system32\netman.dll 76D10000[00018000] [ M] 552. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 553. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 554. c:\windows\system32\adsldpc.dll 76E50000[0000E000] [ M] 452. c:\windows\system32\rtutils.dll 74770000[0019A000] [AM] 303. c:\windows\system32\netshell.dll 76BD0000[0002D000] [ M] 453. c:\windows\system32\credui.dll 76EB0000[0003C000] [ M] 458. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 459. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 460. c:\windows\system32\tapi32.dll 72FA0000[00010000] [ M] 467. c:\windows\system32\wzcsapi.dll 77290000[0006E000] [AM] 83. c:\windows\system32\wzcsvc.dll 76D00000[00004000] [ M] 555. c:\windows\system32\wmi.dll 75100000[0002E000] [AM] 61. c:\windows\system32\srsvc.dll 74A30000[00008000] [ M] 456. c:\windows\system32\powrprof.dll 67180000[00028000] [AM] 76. c:\windows\system32\wbem\wmisvc.dll 75340000[0006D000] [ M] 556. c:\windows\system32\vssapi.dll 74FD0000[00019000] [AM] 68. c:\windows\system32\trkwks.dll 73C90000[00008000] [AM] 57. c:\windows\system32\seclogon.dll 768A0000[00041000] [AM] 25. c:\windows\system32\es.dll 66700000[00052000] [AM] 59. c:\windows\system32\ipnathlp.dll 77FE0000[00011000] [ M] 520. c:\windows\system32\authz.dll 4C1A0000[00017000] [AM] 81. c:\windows\system32\wscsvc.dll 7C9C0000[002BE000] [ M] 450. c:\windows\system32\msi.dll 72260000[0000D000] [AM] 58. c:\windows\system32\sens.dll 751F0000[00037000] [ M] 557. c:\windows\system32\wbem\wbemcomn.dll 75D00000[00085000] [ M] 558. c:\windows\system32\wbem\wbemcore.dll 75FF0000[00065000] [ M] 471. c:\windows\system32\msvcp60.dll 75270000[0003F000] [ M] 559. c:\windows\system32\wbem\esscli.dll 755F0000[00076000] [ M] 560. c:\windows\system32\wbem\fastprox.dll 73350000[0003F000] [AM] 65. c:\windows\system32\tapisrv.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 75E00000[000AE000] [ M] 474. c:\windows\system32\sxs.dll 74E30000[0000E000] [ M] 561. c:\windows\system32\wbem\wbemsvc.dll 7E510000[00031000] [AM] 46. c:\windows\system32\rasmans.dll 742D0000[0000B000] [ M] 540. c:\windows\system32\winipsec.dll 75550000[00092000] [ M] 562. c:\windows\system32\netcfgx.dll 762A0000[00011000] [ M] 563. c:\windows\system32\clusapi.dll 75690000[0013C000] [ M] 564. c:\windows\system32\comsvcs.dll 75090000[00014000] [ M] 565. c:\windows\system32\colbact.dll 75050000[00013000] [ M] 566. c:\windows\system32\mtxclu.dll 71A40000[0000B000] [ M] 567. c:\windows\system32\wsock32.dll 75010000[00012000] [ M] 568. c:\windows\system32\resutils.dll 74F80000[00019000] [ M] 569. c:\windows\system32\wbem\wmiutils.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 75160000[0002E000] [ M] 570. c:\windows\system32\wbem\repdrvfs.dll 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 75130000[00011000] [ M] 571. c:\windows\system32\rastapi.dll 57980000[00035000] [ M] 572. c:\windows\system32\unimdm.tsp 71F90000[00007000] [ M] 573. c:\windows\system32\uniplat.dll 594C0000[0006D000] [ M] 574. c:\windows\system32\wbem\wmiprvsd.dll 5F9A0000[0000C000] [ M] 531. c:\windows\system32\ncobjapi.dll 57A00000[0000B000] [ M] 575. c:\windows\system32\kmddsp.tsp 579E0000[00010000] [ M] 576. c:\windows\system32\ndptsp.tsp 752F0000[00046000] [ M] 577. c:\windows\system32\wbem\wbemess.dll 57A10000[00008000] [ M] 578. c:\windows\system32\ipconf.tsp 57A30000[00045000] [ M] 579. c:\windows\system32\h323.tsp 57A20000[0000A000] [ M] 580. c:\windows\system32\hidphone.tsp 68BE0000[00009000] [ M] 581. c:\windows\system32\hid.dll 721D0000[00035000] [ M] 582. c:\windows\system32\rasppp.dll 72420000[00006000] [ M] 583. c:\windows\system32\ntlsapi.dll 71C70000[0004B000] [AM] 398. c:\windows\system32\kerberos.dll 76760000[0000C000] [ M] 514. c:\windows\system32\cryptdll.dll 75D90000[00014000] [ M] 584. c:\windows\system32\raschap.dll 75DB0000[0001F000] [ M] 585. c:\windows\system32\rastls.dll 767C0000[00027000] [AM] 394. c:\windows\system32\schannel.dll 72360000[0001A000] [ M] 527. c:\windows\system32\winscard.dll 76540000[00023000] [ M] 586. c:\windows\system32\upnp.dll 74E60000[0000C000] [ M] 587. c:\windows\system32\ssdpapi.dll 5F970000[0000E000] [ M] 588. c:\windows\system32\wbem\ncprov.dll 72030000[0001B000] [AM] 45. c:\windows\system32\rasauto.dll 741F0000[00004000] [ M] 589. c:\windows\system32\icmp.dll 754B0000[00096000] [ M] 590. c:\windows\system32\rasdlg.dll + 000005f8(1528) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76740000[0000D000] [AM] 22. c:\windows\system32\dnsrslvr.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll + 00000624(1572) Ati2evxx.exe 00400000[00073000] [AM] 6. c:\windows\system32\ati2evxx.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 74A30000[00008000] [ M] 456. c:\windows\system32\powrprof.dll 74A40000[00007000] [ M] 411. c:\windows\system32\cfgmgr32.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 00CC0000[00010000] [ M] 544. c:\windows\system32\ati2edxx.dll 10000000[00020000] [ M] 545. c:\windows\system32\atipdlxx.dll 00CF0000[0001E000] [AM] 248. c:\windows\system32\ati2evxx.dll 72F70000[00026000] [ M] 442. c:\windows\system32\winspool.drv 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll + 00000658(1624) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 528. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 480. c:\windows\system32\samlib.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 74BA0000[00006000] [AM] 34. c:\windows\system32\lmhsvc.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 5A720000[00015000] [AM] 74. c:\windows\system32\webclnt.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 008B0000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 008C0000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 75B80000[00012000] [AM] 49. c:\windows\system32\regsvc.dll 75BA0000[00014000] [AM] 62. c:\windows\system32\ssdpsrv.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll + 000006e4(1764) ravmond.exe 00400000[00069000] [AM] 53. d:\rising\rav\ravmond.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 10000000[00042000] [ M] 591. d:\rising\rav\bwlist.dll 7C140000[00103000] [ M] 488. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 489. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 7C3A0000[0007B000] [ M] 490. c:\windows\system32\msvcp71.dll 71A40000[0000B000] [ M] 567. c:\windows\system32\wsock32.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 00B70000[0000E000] [ M] 592. d:\rising\rav\rsappmgr.dll 00B90000[00030000] [ M] 593. d:\rising\rav\cfgdll.dll 00E00000[00067000] [ M] 594. d:\rising\rav\rslog.dll 00E70000[0001F000] [ M] 427. d:\rising\rav\proccom.dll 00E90000[00024000] [ M] 428. d:\rising\rav\rscommx2.dll 00EE0000[00075000] [ M] 595. d:\rising\rav\monrule.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 00F80000[00013000] [ M] 596. d:\rising\rav\hooksys.dll 00FE0000[00013000] [ M] 597. d:\rising\rav\hookreg.dll 01040000[00013000] [ M] 598. d:\rising\rav\hookntos.dll 011C0000[0001D000] [ M] 599. d:\rising\rav\rswalmon.dll 01FF0000[00035000] [ M] 600. d:\rising\rav\recomp.dll 02040000[00036000] [ M] 601. d:\rising\rav\refs.dll 02090000[00023000] [ M] 602. d:\rising\rav\ffr.dll 76B80000[00005000] [ M] 525. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 526. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 020D0000[00020000] [ M] 603. d:\rising\rav\rsstore.dll 02100000[00013000] [ M] 604. d:\rising\rav\hookcont.dll 02130000[00028000] [ M] 605. d:\rising\rav\fakescan.dll 02170000[00022000] [ M] 606. d:\rising\rav\scanner.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 027B0000[0002F000] [ M] 607. d:\rising\rav\viruslib.dll 028F0000[00028000] [ M] 608. d:\rising\rav\relibldr.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 02E20000[00012000] [ M] 609. d:\rising\rav\hookweb.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 041D0000[000DC000] [ M] 610. d:\rising\rav\extfile.dll 042C0000[00027000] [ M] 611. d:\rising\rav\pearc.dll 04300000[00021000] [ M] 612. d:\rising\rav\nvfile.dll 13AB0000[0004A000] [ M] 613. d:\rising\rav\scanexec.dll 05BF0000[002DC000] [ M] 614. d:\rising\rav\unexe.dll 05EE0000[000D3000] [ M] 615. d:\rising\rav\scanex.dll 06440000[00036000] [ M] 616. d:\rising\rav\scanpack.dll 06490000[000B7000] [ M] 617. d:\rising\rav\revm.dll 06680000[00020000] [ M] 618. d:\rising\rav\urutils.dll 066B0000[00018000] [ M] 619. d:\rising\rav\ur000.dat 03EE0000[00038000] [ M] 620. d:\rising\rav\scriptci.dll 03F30000[00017000] [ M] 621. d:\rising\rav\ur023.dat 05590000[000F3000] [ M] 622. d:\rising\rav\uroutine.dll 03F70000[0001D000] [ M] 623. d:\rising\rav\ur001.dat 03FA0000[00023000] [ M] 624. d:\rising\rav\scansct.dll + 000006f0(1776) rfwsrv.exe 00400000[00037000] [AM] 50. d:\rising\rfw\rfwsrv.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 7C140000[00103000] [ M] 488. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 489. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 7C3A0000[0007B000] [ M] 490. c:\windows\system32\msvcp71.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 492. d:\rising\rfw\proccom.dll 007B0000[00024000] [ M] 493. d:\rising\rfw\rscommx2.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 009F0000[0000E000] [ M] 494. d:\rising\rfw\rsappmgr.dll 00A10000[00030000] [ M] 495. d:\rising\rfw\cfgdll.dll 00B20000[0000F000] [ M] 500. d:\rising\rfw\rfwrule.dll 00B30000[0000C000] [ M] 625. d:\rising\rfw\rfwlog.dll 00B40000[00018000] [ M] 626. d:\rising\rfw\rfwdrv.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 00B60000[0000E000] [ M] 627. d:\rising\rfw\ijt_ctrl.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 00B90000[00016000] [ M] 628. d:\rising\rfw\unvdet.dll 76B80000[00005000] [ M] 525. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 526. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 76D70000[00022000] [ M] 441. c:\windows\system32\apphelp.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 00CE0000[0001B000] [ M] 629. d:\rising\rfw\mports.dll 5E8E0000[0000D000] [ M] 501. c:\windows\system32\perfproc.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll + 00000764(1892) ras.exe 00400000[0000B000] [ M] 630. d:\瑞星卡卡\ras.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 7C140000[00103000] [ M] 631. d:\瑞星卡卡\mfc71.dll 7C340000[00056000] [ M] 632. d:\瑞星卡卡\msvcr71.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll 10000000[00047000] [ M] 633. d:\瑞星卡卡\kakamgr.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 7C3A0000[0007B000] [ M] 634. d:\瑞星卡卡\msvcp71.dll 00B50000[00019000] [ M] 506. d:\瑞星卡卡\syslay.dll 00B80000[0001F000] [ M] 427. d:\rising\rav\proccom.dll 00BA0000[00024000] [ M] 428. d:\rising\rav\rscommx2.dll 00CF0000[0002E000] [ M] 505. d:\瑞星卡卡\comx3.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 00F60000[00058000] [ M] 635. d:\瑞星卡卡\dbmgr.dll 23800000[00022000] [ M] 636. d:\瑞星卡卡\rsxml.dll 010C0000[0002D000] [ M] 637. d:\瑞星卡卡\pweb.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 74D90000[0006C000] [ M] 638. c:\windows\system32\riched20.dll 01130000[000C1000] [ M] 639. d:\瑞星卡卡\pscan.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 01200000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 01210000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 01240000[0002F000] [ M] 504. d:\瑞星卡卡\ncomm.dll 012D0000[00070000] [ M] 640. d:\瑞星卡卡\pset.dll 01570000[0002A000] [ M] 641. d:\瑞星卡卡\pdefend.dll 015A0000[000B6000] [ M] 642. d:\瑞星卡卡\ptools.dll 76320000[00047000] [AM] 371. c:\windows\system32\comdlg32.dll 76B80000[00005000] [ M] 525. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 526. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 01760000[0008C000] [ M] 643. d:\瑞星卡卡\psysinfo.dll 76D70000[00022000] [ M] 441. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 017F0000[007A9000] [AM] 256. c:\windows\system32\ieframe.dll 020B0000[0001C000] [AM] 342. c:\windows\system32\ravext.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 23900000[00040000] [ M] 644. d:\瑞星卡卡\pngdll.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 75E00000[000AE000] [ M] 474. c:\windows\system32\sxs.dll 63580000[004E5000] [AM] 271. c:\windows\system32\mshtml.dll 02B10000[00029000] [ M] 645. c:\windows\system32\msls31.dll 47060000[00021000] [ M] 646. c:\windows\system32\xmllite.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 74CF0000[00091000] [ M] 485. c:\windows\system32\mlang.dll 74910000[000AB000] [AM] 274. c:\windows\system32\inetcomm.dll 75B20000[00022000] [ M] 647. c:\windows\system32\msoert2.dll 20000000[0000C000] [ M] 648. c:\windows\system32\inetres.dll 0FFD0000[00028000] [ M] 468. c:\windows\system32\rsaenh.dll 74650000[0002A000] [ M] 649. c:\windows\system32\msimtf.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 76F80000[00008000] [ M] 513. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll 76EB0000[0003C000] [ M] 458. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 459. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 460. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 452. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 034C0000[00030000] [ M] 650. c:\windows\system32\iepeers.dll 72F70000[00026000] [ M] 442. c:\windows\system32\winspool.drv 037B0000[00028000] [ M] 651. d:\rising\rav\ravscrch.dll 037E0000[0006A000] [ M] 652. c:\windows\system32\vbscript.dll 63380000[00088000] [ M] 653. c:\windows\system32\jscript.dll 03850000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 30000000[003AF000] [ M] 654. c:\windows\system32\macromed\flash\flash9f.ocx 72C90000[00009000] [ M] 462. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 465. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 466. c:\windows\system32\midimap.dll 76950000[00008000] [ M] 451. c:\windows\system32\linkinfo.dll 76960000[00024000] [AM] 288. c:\windows\system32\ntshrui.dll 76AF0000[00011000] [ M] 449. c:\windows\system32\atl.dll + 000008c4(2244) wmiprvse.exe 01000000[00038000] [ M] 655. c:\windows\system32\wbem\wmiprvse.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 751F0000[00037000] [ M] 557. c:\windows\system32\wbem\wbemcomn.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 755F0000[00076000] [ M] 560. c:\windows\system32\wbem\fastprox.dll 75FF0000[00065000] [ M] 471. c:\windows\system32\msvcp60.dll 76770000[00013000] [ M] 534. c:\windows\system32\ntdsapi.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76F30000[0002C000] [AM] 387. c:\windows\system32\wldap32.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 5F9A0000[0000C000] [ M] 531. c:\windows\system32\ncobjapi.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 74E50000[00008000] [ M] 656. c:\windows\system32\wbem\wbemprox.dll 74E30000[0000E000] [ M] 561. c:\windows\system32\wbem\wbemsvc.dll 74F80000[00019000] [ M] 569. c:\windows\system32\wbem\wmiutils.dll 72E90000[00028000] [ M] 657. c:\windows\system32\wbem\wmiprov.dll 76D00000[00004000] [ M] 555. c:\windows\system32\wmi.dll 5E030000[00022000] [ M] 658. c:\windows\system32\wbem\mofd.dll + 000008d0(2256) RavTask.exe 00400000[00034000] [AM] 351. d:\rising\rav\ravtask.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 427. d:\rising\rav\proccom.dll 00A40000[00024000] [ M] 428. d:\rising\rav\rscommx2.dll 23700000[00028000] [ M] 429. d:\rising\rav\rscommon.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 00CA0000[0000E000] [ M] 592. d:\rising\rav\rsappmgr.dll 08CC0000[00030000] [ M] 593. d:\rising\rav\cfgdll.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll + 000008fc(2300) Ravmon.exe 00400000[00067000] [ M] 659. d:\rising\rav\ravmon.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 7C140000[00103000] [ M] 488. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 489. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 7C3A0000[0007B000] [ M] 490. c:\windows\system32\msvcp71.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 427. d:\rising\rav\proccom.dll 00B30000[00024000] [ M] 428. d:\rising\rav\rscommx2.dll 23700000[00028000] [ M] 429. d:\rising\rav\rscommon.dll 00D80000[00035000] [ M] 600. d:\rising\rav\recomp.dll 00DD0000[00036000] [ M] 601. d:\rising\rav\refs.dll 01030000[0002F000] [ M] 607. d:\rising\rav\viruslib.dll 01170000[00028000] [ M] 608. d:\rising\rav\relibldr.dll 011F0000[0000E000] [ M] 592. d:\rising\rav\rsappmgr.dll 01210000[00030000] [ M] 593. d:\rising\rav\cfgdll.dll 01370000[00075000] [ M] 595. d:\rising\rav\monrule.dll 23900000[00040000] [ M] 660. d:\rising\rav\pngdll.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 26600000[000A8000] [ M] 661. d:\rising\rav\rsguilib.dll 23800000[00022000] [ M] 662. d:\rising\rav\rsxml.dll 5E8E0000[0000D000] [ M] 501. c:\windows\system32\perfproc.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll + 00000944(2372) alg.exe 01000000[0000D000] [AM] 3. c:\windows\system32\alg.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 76AF0000[00011000] [ M] 449. c:\windows\system32\atl.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 71A40000[0000B000] [ M] 567. c:\windows\system32\wsock32.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll + 00000c08(3080) wdcertm_ccb.exe 00400000[00013000] [AM] 354. c:\windows\system32\watchdata\watchdata ccb csp v3.2\wdcertm_ccb.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 72360000[0001A000] [ M] 527. c:\windows\system32\winscard.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 68BE0000[00009000] [ M] 581. c:\windows\system32\hid.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 10000000[00019000] [ M] 663. c:\windows\system32\watchdata\watchdata ccb csp v3.2\tokenmgr.dll 73D30000[000FE000] [ M] 508. c:\windows\system32\mfc42.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 423. c:\windows\system32\comctl32.dll 00A10000[00019000] [ M] 664. c:\windows\system32\watchdata\watchdata ccb csp v3.2\wdalg.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 00BC0000[0008A000] [ M] 665. c:\windows\system32\watchdata\watchdata ccb csp v3.2\wdudk.dll 76320000[00047000] [AM] 371. c:\windows\system32\comdlg32.dll 72F70000[00026000] [ M] 442. c:\windows\system32\winspool.drv 00A60000[00025000] [ M] 666. c:\windows\system32\watchdata\watchdata ccb csp v3.2\wdcrwv.dll 00DD0000[0002E000] [ M] 667. c:\windows\system32\watchdata\watchdata ccb csp v3.2\wdpkcs.dll 61BE0000[0000D000] [ M] 509. c:\windows\system32\mfc42loc.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll + 00000d44(3396) rstray.exe 00400000[00023000] [AM] 355. d:\瑞星卡卡\rstray.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 10000000[0003C000] [ M] 668. d:\瑞星卡卡\rsmginfo.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 00A10000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 00A20000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 23800000[00022000] [ M] 636. d:\瑞星卡卡\rsxml.dll 7C3A0000[0007B000] [ M] 634. d:\瑞星卡卡\msvcp71.dll 7C340000[00056000] [ M] 632. d:\瑞星卡卡\msvcr71.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 00E10000[00024000] [ M] 669. d:\瑞星卡卡\comserv.dll 00E40000[00019000] [ M] 506. d:\瑞星卡卡\syslay.dll 23700000[00026000] [ M] 670. d:\瑞星卡卡\rscommon.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 00E80000[0002E000] [ M] 505. d:\瑞星卡卡\comx3.dll 76F20000[00008000] [ M] 457. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 454. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll 23900000[00040000] [ M] 644. d:\瑞星卡卡\pngdll.dll 011E0000[0005C000] [ M] 671. d:\瑞星卡卡\runiep.dll 01360000[0001F000] [ M] 427. d:\rising\rav\proccom.dll 01380000[00024000] [ M] 428. d:\rising\rav\rscommx2.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76EB0000[0003C000] [ M] 458. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 459. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 460. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 452. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 72240000[00005000] [ M] 461. c:\windows\system32\sensapi.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll + 00000e14(3604) ctfmon.exe 00400000[00006000] [AM] 349. c:\windows\system32\ctfmon.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll 5FE40000[00031000] [ M] 446. c:\windows\system32\msutb.dll 5CC30000[00026000] [ M] 435. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime + 00000e1c(3612) SRSSSC.exe 00400000[00428000] [AM] 350. d:\srs\srsssc.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 762F0000[00005000] [ M] 443. c:\windows\system32\msimg32.dll 76320000[00047000] [AM] 371. c:\windows\system32\comdlg32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 72F70000[00026000] [ M] 442. c:\windows\system32\winspool.drv 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 003A0000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 003B0000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 73E70000[0005C000] [ M] 672. c:\windows\system32\dsound.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 72C90000[00009000] [ M] 462. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 465. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 466. c:\windows\system32\midimap.dll 76EB0000[0003C000] [ M] 458. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 459. c:\windows\system32\rasman.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 76E80000[0002F000] [ M] 460. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 452. c:\windows\system32\rtutils.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 72240000[00005000] [ M] 461. c:\windows\system32\sensapi.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 73E40000[00004000] [ M] 673. c:\windows\system32\ksuser.dll + 00000e4c(3660) VnetClient.exe 00400000[0004C000] [AM] 403. c:\program files\chinanet\vnetclient.exe 7C920000[00094000] [ M] 404. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 374. c:\windows\system32\kernel32.dll 10000000[0000D000] [ M] 674. c:\program files\chinanet\communicate.dll 77D10000[0008F000] [AM] 384. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 372. c:\windows\system32\gdi32.dll 00450000[00077000] [ M] 675. c:\program files\chinanet\dialmodule.dll 76320000[00047000] [AM] 371. c:\windows\system32\comdlg32.dll 77F40000[00076000] [ M] 422. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 79. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 382. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 406. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 405. c:\windows\system32\msvcrt.dll 7D590000[007F4000] [AM] 270. c:\windows\system32\shell32.dll 72F70000[00026000] [ M] 442. c:\windows\system32\winspool.drv 74C90000[00020000] [ M] 676. c:\windows\system32\oledlg.dll 76990000[0013D000] [AM] 376. c:\windows\system32\ole32.dll 5EFE0000[00017000] [ M] 677. c:\windows\system32\olepro32.dll 770F0000[0008B000] [AM] 377. c:\windows\system32\oleaut32.dll 76EB0000[0003C000] [ M] 458. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 459. c:\windows\system32\rasman.dll 71A20000[00017000] [ M] 408. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 409. c:\windows\system32\ws2help.dll 5FDD0000[00054000] [ M] 426. c:\windows\system32\netapi32.dll 76E80000[0002F000] [ M] 460. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 452. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 437. c:\windows\system32\winmm.dll 6BC40000[000F2000] [ M] 678. c:\program files\chinanet\mfc42.dll 76300000[0001D000] [ M] 414. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 415. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 416. c:\windows\system32\usp10.dll 759D0000[000AE000] [ M] 439. c:\windows\system32\userenv.dll 77C40000[00023000] [AM] 397. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 413. c:\windows\system32\iphlpapi.dll 61BE0000[0000D000] [ M] 509. c:\windows\system32\mfc42loc.dll 70000000[00019000] [ M] 421. d:\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 424. d:\rising\rfw\olemon.dll 5ADC0000[00037000] [ M] 418. c:\windows\system32\uxtheme.dll 74680000[0004C000] [ M] 447. c:\windows\system32\msctf.dll 76FA0000[0007F000] [ M] 419. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 420. c:\windows\system32\comres.dll 77BD0000[00008000] [AM] 385. c:\windows\system32\version.dll 012B0000[0002D000] [ M] 679. c:\program files\chinanet\clientapi.dll 63000000[000D0000] [AM] 386. c:\windows\system32\wininet.dll 012E0000[00009000] [ M] 432. c:\windows\system32\normaliz.dll 1A400000[0012E000] [AM] 269. c:\windows\system32\urlmon.dll 5DCA0000[00045000] [ M] 433. c:\windows\system32\iertutil.dll 012F0000[00026000] [ M] 434. c:\windows\system32\iesetting.dll 70E20000[00013000] [ M] 680. c:\windows\system32\asycfilt.dll 73640000[0002E000] [ M] 440. c:\windows\system32\msctfime.ime 01E10000[00024000] [ M] 681. c:\program files\chinanet\plugincontainer.ocx 01E40000[0000E000] [ M] 682. c:\program files\chinanet\sign.dll 011A0000[00017000] [ M] 683. c:\program files\chinanet\advertise.ocx 011D0000[0005D000] [ M] 684. c:\program files\chinanet\vnetbs.ocx 01230000[0000F000] [ M] 685. c:\program files\chinanet\bdsearch.ocx 01270000[00012000] [ M] 686. c:\program files\chinanet\pagefram.ocx 02440000[007A9000] [AM] 256. c:\windows\system32\ieframe.dll 02F00000[0001D000] [ M] 687. c:\program files\chinanet\accountpage.ocx 02F20000[00027000] [ M] 688. c:\program files\chinanet\accountmgr.dll 02F50000[0004C000] [ M] 689. c:\program files\chinanet\vpndial.dll 72240000[00005000] [ M] 461. c:\windows\system32\sensapi.dll 719C0000[0003E000] [AM] 43. c:\windows\system32\mswsock.dll 76F90000[00006000] [ M] 463. c:\windows\system32\rasadhlp.dll 76EF0000[00027000] [ M] 464. c:\windows\system32\dnsapi.dll 03150000[000D3000] [ M] 690. c:\program files\chinanet\plugins\plugin002\smsmodule.ocx 01FF0000[0002D000] [ M] 691. c:\program files\chinanet\plugins\plugin002\smscom.dll 75E00000[000AE000] [ M] 474. c:\windows\system32\sxs.dll 03430000[00044000] [ M] 692. c:\program files\chinanet\plugins\plugin002\smsctrls.dll 035A0000[00010000] [ M] 693. c:\program files\chinanet\icosbar.ocx 035B0000[0004B000] [ M] 694. c:\program files\chinanet\vnetskin.ocx 03600000[00085000] [ M] 695. c:\program files\chinanet\dialogstyle.dll 75EF0000[000FD000] [AM] 312. c:\windows\system32\browseui.dll 038B0000[00028000] [ M] 696. c:\program files\chinanet\timer.ocx 038E0000[00083000] [ M] 697. c:\program files\chinanet\pluginman.ocx 039C0000[0005A000] [ M] 698. c:\program files\chinanet\newmessage.dll 03980000[00011000] [ M] 699. c:\program files\chinanet\passctrl.dll 03A20000[0003B000] [ M] 700. c:\windows\system32\wpcap.dll 71A40000[0000B000] [ M] 567. c:\windows\system32\wsock32.dll 039A0000[0000D000] [ M] 701. c:\windows\system32\pthreadvc.dll 03A60000[0000F000] [ M] 702. c:\windows\system32\packet.dll 60FD0000[00055000] [ M] 510. c:\windows\system32\hnetcfg.dll 03AA0000[00012000] [ M] 703. c:\program files\chinanet\plugpush.dll 71A00000[00008000] [ M] 511. c:\windows\system32\wshtcpip.dll 03BD0000[0001A000] [ M] 704. c:\program files\chinanet\allinterface.dll 03D00000[00015000] [ M] 705. c:\program files\chinanet\vnetlogin.ocx 03C00000[00012000] [ M] 706. c:\program files\chinanet\statnum.dll 03C30000[00021000] [ M] 707. c:\program files\chinanet\vnetonlineupdate.ocx 03C60000[00063000] [ M] 708. c:\program files\chinanet\allfunctions.dll 03CD0000[00022000] [ M] 709. c:\program files\chinanet\vnetoptlog.dll 03E30000[0004A000] [ M] 710. c:\program files\chinanet\vnetsettings.ocx 03E80000[00009000] [ M] 711. c:\program files\chinanet\clientdll.dll 03E90000[00010000] [ M] 712. c:\program files\chinanet\weather.ocx 03DB0000[00032000] [ M] 713. c:\program files\chinanet\base64.dll 76D70000[00022000] [ M] 441. c:\windows\system32\apphelp.dll 63580000[004E5000] [AM] 271. c:\windows\system32\mshtml.dll 043B0000[00029000] [ M] 645. c:\windows\system32\msls31.dll 47060000[00021000] [ M] 646. c:\windows\system32\xmllite.dll 765E0000[00092000] [AM] 249. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 410. c:\windows\system32\msasn1.dll 76BC0000[0000B000] [ M] 523. c:\windows\system32\psapi.dll 74CF0000[00091000] [ M] 485. c:\windows\system32\mlang.dll 04900000[00030000] [ M] 650. c:\windows\system32\iepeers.dll 74650000[0002A000] [ M] 649. c:\windows\system32\msimtf.dll 04940000[00028000] [ M] 651. d:\rising\rav\ravscrch.dll 04980000[0006A000] [ M] 652. c:\windows\system32\vbscript.dll 63380000[00088000] [ M] 653. c:\windows\system32\jscript.dll 20000000[00549000] [ M] 444. c:\windows\system32\xpsp2res.dll 1B000000[0000C000] [ M] 714. c:\windows\system32\imgutil.dll 1B060000[0000E000] [ M] 715. c:\windows\system32\pngfilt.dll 76060000[00156000] [ M] 412. c:\windows\system32\setupapi.dll 61740000[00024000] [ M] 716. c:\windows\system32\mprmsg.dll 75550000[00092000] [ M] 562. c:\windows\system32\netcfgx.dll 762A0000[00011000] [ M] 563. c:\windows\system32\clusapi.dll 76C00000[0002E000] [ M] 417. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 373. c:\windows\system32\imagehlp.dll 5DD50000[00113000] [ M] 512. c:\windows\system32\msxml3.dll 30000000[003AF000] [ M] 654. c:\windows\system32\macromed\flash\flash9f.ocx 72C90000[00009000] [ M] 462. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 465. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 438. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 466. c:\windows\system32\midimap.dll 767C0000[00027000] [AM] 394. c:\windows\system32\schannel.dll 35C50000[00038000] [ M] 717. c:\windows\system32\dxtrans.dll 76AF0000[00011000] [ M] 449. c:\windows\system32\atl.dll 6D7C0000[0000A000] [ M] 718. c:\windows\system32\ddrawex.dll 736D0000[00049000] [ M] 719. c:\windows\system32\ddraw.dll 73B30000[00006000] [ M] 720. c:\windows\system32\dciman32.dll 35CB0000[00057000] [ M] 721. c:\windows\system32\dxtmsft.dll