瑞星卡卡电脑诊断日志 v1.30 (2008-9-9 18:2:49) 北京瑞星信息技术有限公司 注释: [A]表示该文件存在自启动关联; [M]表示该文件在内存中; + 注册表自运行项目 + 系统服务 + HKLM\System\CurrentControlSet\Services ALG [AM] 1. c:\windows\system32\alg.exe AppMgmt [AM] 2. c:\windows\system32\svchost.exe [A ] 3. c:\windows\system32\appmgmts.dll aspnet_state [A ] 4. c:\windows\microsoft.net\framework\v1.1.4322\aspnet_state.exe Ati HotKey Poller [AM] 5. c:\windows\system32\ati2evxx.exe ATI Smart [A ] 6. c:\windows\system32\ati2sgag.exe AudioSrv [AM] 2. c:\windows\system32\svchost.exe [AM] 7. c:\windows\system32\audiosrv.dll Autodesk Licensing Service [A ] 8. c:\program files\common files\autodesk shared\service\adskscsrv.exe BITS [AM] 2. c:\windows\system32\svchost.exe [A ] 9. c:\windows\system32\qmgr.dll Browser [AM] 2. c:\windows\system32\svchost.exe [AM] 10. c:\windows\system32\browser.dll ClipSrv [A ] 11. c:\windows\system32\clipsrv.exe COMSysApp [A ] 12. c:\windows\system32\dllhost.exe CryptSvc [AM] 2. c:\windows\system32\svchost.exe [AM] 13. c:\windows\system32\cryptsvc.dll DcomLaunch [AM] 2. c:\windows\system32\svchost.exe [AM] 14. c:\windows\system32\rpcss.dll Dhcp [AM] 2. c:\windows\system32\svchost.exe [AM] 15. c:\windows\system32\dhcpcsvc.dll dmadmin [A ] 16. c:\windows\system32\dmadmin.exe dmserver [AM] 2. c:\windows\system32\svchost.exe [A ] 17. c:\windows\system32\dmserver.dll Dnscache [AM] 2. c:\windows\system32\svchost.exe [AM] 18. c:\windows\system32\dnsrslvr.dll Eventlog [AM] 19. c:\windows\system32\services.exe EventSystem [AM] 2. c:\windows\system32\svchost.exe [AM] 20. c:\windows\system32\es.dll FastUserSwitchingCompatibility [AM] 2. c:\windows\system32\svchost.exe [AM] 21. c:\windows\system32\shsvcs.dll HidServ [AM] 2. c:\windows\system32\svchost.exe HTTPFilter [AM] 2. c:\windows\system32\svchost.exe [A ] 22. c:\windows\system32\w3ssl.dll ImapiService [A ] 23. c:\windows\system32\imapi.exe lanmanserver [AM] 2. c:\windows\system32\svchost.exe [AM] 24. c:\windows\system32\srvsvc.dll lanmanworkstation [AM] 2. c:\windows\system32\svchost.exe [AM] 25. c:\windows\system32\wkssvc.dll [AM] 26. c:\windows\system32\ntlanman.dll LmHosts [AM] 2. c:\windows\system32\svchost.exe [AM] 27. c:\windows\system32\lmhsvc.dll MDM [AM] 28. c:\program files\common files\microsoft shared\vs7debug\mdm.exe Messenger [AM] 2. c:\windows\system32\svchost.exe [A ] 29. c:\windows\system32\msgsvc.dll mnmsrvc [A ] 30. c:\windows\system32\mnmsrvc.exe MSDTC [A ] 31. c:\windows\system32\msdtc.exe MSIServer [A ] 32. c:\windows\system32\msiexec.exe NBService [A ] 33. c:\program files\nero\nero 7\nero backitup\nbservice.exe NetDDE [A ] 34. c:\windows\system32\netdde.exe NetDDEdsdm [A ] 34. c:\windows\system32\netdde.exe Netlogon [AM] 35. c:\windows\system32\lsass.exe Netman [AM] 2. c:\windows\system32\svchost.exe [AM] 36. c:\windows\system32\netman.dll Nla [AM] 2. c:\windows\system32\svchost.exe [AM] 37. c:\windows\system32\mswsock.dll NMIndexingService [A ] 38. c:\program files\common files\ahead\lib\nmindexingservice.exe NtLmSsp [AM] 35. c:\windows\system32\lsass.exe ose [A ] 39. c:\program files\common files\microsoft shared\source engine\ose.exe PlugPlay [AM] 19. c:\windows\system32\services.exe PolicyAgent [AM] 35. c:\windows\system32\lsass.exe ProtectedStorage [AM] 35. c:\windows\system32\lsass.exe RasAuto [AM] 2. c:\windows\system32\svchost.exe [A ] 40. c:\windows\system32\rasauto.dll RasMan [AM] 2. c:\windows\system32\svchost.exe [AM] 41. c:\windows\system32\rasmans.dll RDSessMgr [A ] 42. c:\windows\system32\sessmgr.exe RemoteAccess [AM] 2. c:\windows\system32\svchost.exe [A ] 43. c:\windows\system32\mprdim.dll RemoteRegistry [AM] 2. c:\windows\system32\svchost.exe [A ] 44. c:\windows\system32\regsvc.dll RfwProxySrv [AM] 45. c:\program files\rising\rfw\rfwproxy.exe RfwService [AM] 46. c:\program files\rising\rfw\rfwsrv.exe RpcLocator [A ] 47. c:\windows\system32\locator.exe RpcSs [AM] 2. c:\windows\system32\svchost.exe [AM] 14. c:\windows\system32\rpcss.dll [AM] 14. c:\windows\system32\rpcss.dll RsCCenter [AM] 48. c:\program files\rising\rav\ccenter.exe RsRavMon [AM] 49. c:\program files\rising\rav\ravmond.exe RSVP [A ] 50. c:\windows\system32\rsvp.exe SamSs [AM] 35. c:\windows\system32\lsass.exe SCardSvr [A ] 51. c:\windows\system32\scardsvr.exe Schedule [AM] 2. c:\windows\system32\svchost.exe [AM] 52. c:\windows\system32\schedsvc.dll seclogon [AM] 2. c:\windows\system32\svchost.exe [A ] 53. c:\windows\system32\seclogon.dll SENS [AM] 2. c:\windows\system32\svchost.exe [AM] 54. c:\windows\system32\sens.dll SharedAccess [AM] 2. c:\windows\system32\svchost.exe [AM] 55. c:\windows\system32\ipnathlp.dll ShellHWDetection [AM] 2. c:\windows\system32\svchost.exe [AM] 21. c:\windows\system32\shsvcs.dll Spooler [AM] 56. c:\windows\system32\spoolsv.exe srservice [AM] 2. c:\windows\system32\svchost.exe [A ] 57. c:\windows\system32\srsvc.dll SSDPSRV [AM] 2. c:\windows\system32\svchost.exe [A ] 58. c:\windows\system32\ssdpsrv.dll stisvc [AM] 2. c:\windows\system32\svchost.exe [A ] 59. c:\windows\system32\wiaservc.dll SysmonLog [A ] 60. c:\windows\system32\smlogsvc.exe TapiSrv [AM] 2. c:\windows\system32\svchost.exe [AM] 61. c:\windows\system32\tapisrv.dll TermService [AM] 2. c:\windows\system32\svchost.exe [AM] 62. c:\windows\system32\termsrv.dll Themes [AM] 2. c:\windows\system32\svchost.exe [AM] 21. c:\windows\system32\shsvcs.dll TlntSvr [A ] 63. c:\windows\system32\tlntsvr.exe TrkWks [AM] 2. c:\windows\system32\svchost.exe [A ] 64. c:\windows\system32\trkwks.dll UMWdf [A ] 65. c:\windows\system32\wdfmgr.exe upnphost [AM] 2. c:\windows\system32\svchost.exe [A ] 66. c:\windows\system32\upnphost.dll W32Time [AM] 2. c:\windows\system32\svchost.exe [AM] 67. c:\windows\system32\w32time.dll WebClient [AM] 2. c:\windows\system32\svchost.exe [A ] 68. c:\windows\system32\webclnt.dll [AM] 69. c:\windows\system32\davclnt.dll winmgmt [AM] 2. c:\windows\system32\svchost.exe [AM] 70. c:\windows\system32\wbem\wmisvc.dll WmdmPmSN [AM] 2. c:\windows\system32\svchost.exe [A ] 71. c:\windows\system32\mspmsnsv.dll Wmi [AM] 2. c:\windows\system32\svchost.exe [AM] 72. c:\windows\system32\advapi32.dll WmiApSrv [A ] 73. c:\windows\system32\wbem\wmiapsrv.exe wscsvc [AM] 2. c:\windows\system32\svchost.exe [A ] 74. c:\windows\system32\wscsvc.dll wuauserv [AM] 2. c:\windows\system32\svchost.exe [A ] 75. c:\windows\system32\wuauserv.dll WZCSVC [AM] 2. c:\windows\system32\svchost.exe [AM] 76. c:\windows\system32\wzcsvc.dll xmlprov [AM] 2. c:\windows\system32\svchost.exe [A ] 77. c:\windows\system32\xmlprov.dll + 内核驱动 + HKLM\System\CurrentControlSet\Services ACPI [A ] 78. c:\windows\system32\drivers\acpi.sys ACPIEC [A ] 79. c:\windows\system32\drivers\acpiec.sys aec [A ] 80. c:\windows\system32\drivers\aec.sys AFD [A ] 81. c:\windows\system32\drivers\afd.sys agp440 [A ] 82. c:\windows\system32\drivers\agp440.sys ALCXSENS [A ] 83. c:\windows\system32\drivers\alcxsens.sys ALCXWDM [A ] 84. c:\windows\system32\drivers\alcxwdm.sys Alidevice [A ] 85. c:\windows\system32\drivers\alidevice.sys AN983 [A ] 86. c:\windows\system32\drivers\an983.sys AsyncMac [A ] 87. c:\windows\system32\drivers\asyncmac.sys atapi [A ] 88. c:\windows\system32\drivers\atapi.sys ati2mtag [A ] 89. c:\windows\system32\drivers\ati2mtag.sys audstub [A ] 90. c:\windows\system32\drivers\audstub.sys Beep [A ] 91. c:\windows\system32\drivers\beep.sys cbidf2k [A ] 92. c:\windows\system32\drivers\cbidf2k.sys Cdaudio [A ] 93. c:\windows\system32\drivers\cdaudio.sys Cdrom [A ] 94. c:\windows\system32\drivers\cdrom.sys Disk [A ] 95. c:\windows\system32\drivers\disk.sys dmboot [A ] 96. c:\windows\system32\drivers\dmboot.sys dmio [A ] 97. c:\windows\system32\drivers\dmio.sys dmload [A ] 98. c:\windows\system32\drivers\dmload.sys DMusic [A ] 99. c:\windows\system32\drivers\dmusic.sys drmkaud [A ] 100. c:\windows\system32\drivers\drmkaud.sys Fdc [A ] 101. c:\windows\system32\drivers\fdc.sys Fips [A ] 102. c:\windows\system32\drivers\fips.sys Flpydisk [A ] 103. c:\windows\system32\drivers\flpydisk.sys FsVga [A ] 104. c:\windows\system32\drivers\fsvga.sys Ftdisk [A ] 105. c:\windows\system32\drivers\ftdisk.sys FwHookDrv [A ] 106. e:\microshut8\fwhookdrv.sys gameenum [A ] 107. c:\windows\system32\drivers\gameenum.sys Gpc [A ] 108. c:\windows\system32\drivers\msgpc.sys HookCont [A ] 109. c:\windows\system32\drivers\hookcont.sys HookNtos [A ] 110. c:\windows\system32\drivers\hookntos.sys HookReg [A ] 111. c:\windows\system32\drivers\hookreg.sys HookSys [A ] 112. c:\windows\system32\drivers\hooksys.sys HookUrl [A ] 113. c:\program files\rising\rfw\hookurl.sys HTTP [A ] 114. c:\windows\system32\drivers\http.sys i8042prt [A ] 115. c:\windows\system32\drivers\i8042prt.sys Imapi [A ] 116. c:\windows\system32\drivers\imapi.sys IntelIde [A ] 117. c:\windows\system32\drivers\intelide.sys intelppm [A ] 118. c:\windows\system32\drivers\intelppm.sys Ip6Fw [A ] 119. c:\windows\system32\drivers\ip6fw.sys IpFilterDriver [A ] 120. c:\windows\system32\drivers\ipfltdrv.sys IpInIp [A ] 121. c:\windows\system32\drivers\ipinip.sys IpNat [A ] 122. c:\windows\system32\drivers\ipnat.sys IPSec [A ] 123. c:\windows\system32\drivers\ipsec.sys IRENUM [A ] 124. c:\windows\system32\drivers\irenum.sys isapnp [A ] 125. c:\windows\system32\drivers\isapnp.sys Kbdclass [A ] 126. c:\windows\system32\drivers\kbdclass.sys kmixer [A ] 127. c:\windows\system32\drivers\kmixer.sys KSecDD [A ] 128. c:\windows\system32\drivers\ksecdd.sys mnmdd [A ] 129. c:\windows\system32\drivers\mnmdd.sys Modem [A ] 130. c:\windows\system32\drivers\modem.sys Mouclass [A ] 131. c:\windows\system32\drivers\mouclass.sys MountMgr [A ] 132. c:\windows\system32\drivers\mountmgr.sys MSKSSRV [A ] 133. c:\windows\system32\drivers\mskssrv.sys MSPCLOCK [A ] 134. c:\windows\system32\drivers\mspclock.sys MSPQM [A ] 135. c:\windows\system32\drivers\mspqm.sys mssmbios [A ] 136. c:\windows\system32\drivers\mssmbios.sys ms_mpu401 [A ] 137. c:\windows\system32\drivers\msmpu401.sys NDIS [A ] 138. c:\windows\system32\drivers\ndis.sys NdisTapi [A ] 139. c:\windows\system32\drivers\ndistapi.sys Ndisuio [A ] 140. c:\windows\system32\drivers\ndisuio.sys NdisWan [A ] 141. c:\windows\system32\drivers\ndiswan.sys NDProxy [A ] 142. c:\windows\system32\drivers\ndproxy.sys NetBT [A ] 143. c:\windows\system32\drivers\netbt.sys Null [A ] 144. c:\windows\system32\drivers\null.sys NwlnkFlt [A ] 145. c:\windows\system32\drivers\nwlnkflt.sys NwlnkFwd [A ] 146. c:\windows\system32\drivers\nwlnkfwd.sys Parport [A ] 147. c:\windows\system32\drivers\parport.sys PartMgr [A ] 148. c:\windows\system32\drivers\partmgr.sys ParVdm [A ] 149. c:\windows\system32\drivers\parvdm.sys PCI [A ] 150. c:\windows\system32\drivers\pci.sys PCIIde [A ] 151. c:\windows\system32\drivers\pciide.sys Pcmcia [A ] 152. c:\windows\system32\drivers\pcmcia.sys PptpMiniport [A ] 153. c:\windows\system32\drivers\raspptp.sys Protector [A ] 154. c:\windows\system32\drivers\protector.sys ProtectorA [A ] 155. c:\windows\system32\drivers\protectora.sys PSched [A ] 156. c:\windows\system32\drivers\psched.sys Ptilink [A ] 157. c:\windows\system32\drivers\ptilink.sys RasAcd [A ] 158. c:\windows\system32\drivers\rasacd.sys Rasl2tp [A ] 159. c:\windows\system32\drivers\rasl2tp.sys RasPppoe [A ] 160. c:\windows\system32\drivers\raspppoe.sys Raspti [A ] 161. c:\windows\system32\drivers\raspti.sys RDPCDD [A ] 162. c:\windows\system32\drivers\rdpcdd.sys rdpdr [A ] 163. c:\windows\system32\drivers\rdpdr.sys RDPWD [A ] 164. c:\windows\system32\drivers\rdpwd.sys redbook [A ] 165. c:\windows\system32\drivers\redbook.sys RfwBase [A ] 166. c:\windows\system32\drivers\rfwbase.sys RsFwDrv [A ] 167. c:\program files\rising\rfw\rsfwdrv.sys RsNTGDI [A ] 168. c:\windows\system32\drivers\rsntgdi.sys Secdrv [A ] 169. c:\windows\system32\drivers\secdrv.sys serenum [A ] 170. c:\windows\system32\drivers\serenum.sys Serial [A ] 171. c:\windows\system32\drivers\serial.sys Sfloppy [A ] 172. c:\windows\system32\drivers\sfloppy.sys splitter [A ] 173. c:\windows\system32\drivers\splitter.sys swenum [A ] 174. c:\windows\system32\drivers\swenum.sys swmidi [A ] 175. c:\windows\system32\drivers\swmidi.sys sysaudio [A ] 176. c:\windows\system32\drivers\sysaudio.sys Tcpip [A ] 177. c:\windows\system32\drivers\tcpip.sys TDPIPE [A ] 178. c:\windows\system32\drivers\tdpipe.sys TDTCP [A ] 179. c:\windows\system32\drivers\tdtcp.sys TermDD [A ] 180. c:\windows\system32\drivers\termdd.sys Update [A ] 181. c:\windows\system32\drivers\update.sys usbehci [A ] 182. c:\windows\system32\drivers\usbehci.sys usbhub [A ] 183. c:\windows\system32\drivers\usbhub.sys USBSTOR [A ] 184. c:\windows\system32\drivers\usbstor.sys usbuhci [A ] 185. c:\windows\system32\drivers\usbuhci.sys VgaSave [A ] 186. c:\windows\system32\drivers\vga.sys Wanarp [A ] 187. c:\windows\system32\drivers\wanarp.sys wdmaud [A ] 188. c:\windows\system32\drivers\wdmaud.sys + 文件系统驱动 + HKLM\System\CurrentControlSet\Services Cdfs [A ] 189. c:\windows\system32\drivers\cdfs.sys Fastfat [A ] 190. c:\windows\system32\drivers\fastfat.sys FltMgr [A ] 191. c:\windows\system32\drivers\fltmgr.sys MRxDAV [A ] 192. c:\windows\system32\drivers\mrxdav.sys MRxSmb [A ] 193. c:\windows\system32\drivers\mrxsmb.sys Msfs [A ] 194. c:\windows\system32\drivers\msfs.sys Mup [A ] 195. c:\windows\system32\drivers\mup.sys NetBIOS [A ] 196. c:\windows\system32\drivers\netbios.sys Npfs [A ] 197. c:\windows\system32\drivers\npfs.sys Ntfs [A ] 198. c:\windows\system32\drivers\ntfs.sys Rdbss [A ] 199. c:\windows\system32\drivers\rdbss.sys Sr [A ] 200. c:\windows\system32\drivers\sr.sys Srv [A ] 201. c:\windows\system32\drivers\srv.sys Udfs [A ] 202. c:\windows\system32\drivers\udfs.sys + 系统登陆自运行 + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon UIHost [A ] 203. c:\windows\system32\logonui.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify AtiExtEvent [AM] 204. c:\windows\system32\ati2evxx.dll crypt32chain [AM] 205. c:\windows\system32\crypt32.dll cryptnet [AM] 206. c:\windows\system32\cryptnet.dll cscdll [AM] 207. c:\windows\system32\cscdll.dll ScCertProp [AM] 208. c:\windows\system32\wlnotify.dll Schedule [AM] 208. c:\windows\system32\wlnotify.dll sclgntfy [AM] 209. c:\windows\system32\sclgntfy.dll SensLogn [AM] 208. c:\windows\system32\wlnotify.dll termsrv [AM] 208. c:\windows\system32\wlnotify.dll wlballoon [AM] 208. c:\windows\system32\wlnotify.dll + IE浏览器加载模块 + HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks {CFBFAE00-17A6-11D0-99CB-00C04FD64497} [AM] 210. c:\windows\system32\shdocvw.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects {01443AEC-0FD1-40fd-9C87-E93D1494C233} [A ] 211. c:\program files\thunder network\thunder\comdlls\tdatonce_now.dll {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [A ] 212. e:\adobe\acrobat 7.0\activex\acroiehelper.dll {889D2FEB-5411-4565-8998-1DD2C5261283} [A ] 213. c:\program files\thunder network\thunder\comdlls\xunleibho_now.dll {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} [A ] 214. c:\windows\system32\urlfilter.dll {C37F9D60-975D-41f2-A745-4DC934D319AA} [A ] 215. c:\windows\system32\citicspp.dll + HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions Exec [A ] 216. c:\program files\thunder network\thunder\thunder.exe + HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars {4D5C8C25-D075-11d0-B416-00C04FB90376} [AM] 210. c:\windows\system32\shdocvw.dll + 资源管理器加载模块 + HKLM\SOFTWARE\Classes\PROTOCOLS\Filter application/octet-stream [A ] 217. c:\windows\system32\mscoree.dll application/x-complus [A ] 217. c:\windows\system32\mscoree.dll application/x-msdownload [A ] 217. c:\windows\system32\mscoree.dll Class Install Handler [AM] 218. c:\windows\system32\urlmon.dll deflate [AM] 218. c:\windows\system32\urlmon.dll gzip [AM] 218. c:\windows\system32\urlmon.dll lzdhtml [AM] 218. c:\windows\system32\urlmon.dll text/webviewhtml [AM] 219. c:\windows\system32\shell32.dll text/xml [A ] 220. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll + HKLM\SOFTWARE\Classes\PROTOCOLS\Handler about [AM] 221. c:\windows\system32\mshtml.dll cdl [AM] 218. c:\windows\system32\urlmon.dll dvd [A ] 222. c:\windows\system32\msvidctl.dll file [AM] 218. c:\windows\system32\urlmon.dll ftp [AM] 218. c:\windows\system32\urlmon.dll gopher [AM] 218. c:\windows\system32\urlmon.dll http [AM] 218. c:\windows\system32\urlmon.dll https [AM] 218. c:\windows\system32\urlmon.dll its [A ] 223. c:\windows\system32\itss.dll javascript [AM] 221. c:\windows\system32\mshtml.dll local [AM] 218. c:\windows\system32\urlmon.dll mailto [AM] 221. c:\windows\system32\mshtml.dll mhtml [AM] 224. c:\windows\system32\inetcomm.dll mk [AM] 218. c:\windows\system32\urlmon.dll ms-its [A ] 223. c:\windows\system32\itss.dll ms-itss [A ] 225. c:\program files\common files\microsoft shared\information retrieval\msitss.dll mso-offdap [A ] 226. c:\program files\common files\microsoft shared\web components\10\owc10.dll mso-offdap11 [A ] 227. c:\program files\common files\microsoft shared\web components\11\owc11.dll res [AM] 221. c:\windows\system32\mshtml.dll sysimage [AM] 221. c:\windows\system32\mshtml.dll tv [A ] 222. c:\windows\system32\msvidctl.dll vbscript [AM] 221. c:\windows\system32\mshtml.dll wia [A ] 228. c:\windows\system32\wiascr.dll + HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} [A ] 229. c:\windows\inf\unregmp2.exe >{26923b43-4d38-484f-9b9e-de460746276c} [A ] 230. c:\windows\system32\shmgrate.exe >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS [A ] 231. c:\windows\system32\rundll32.exe >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} [A ] 230. c:\windows\system32\shmgrate.exe {2C7339CF-2B09-4501-B3F3-F3508C9228ED} [A ] 232. c:\windows\system32\regsvr32.exe [AM] 233. c:\windows\system32\themeui.dll {44BBA840-CC51-11CF-AAFA-00AA00B6015C} [A ] 234. c:\program files\outlook express\setup50.exe {44BBA842-CC51-11CF-AAFA-00AA00B6015B} [A ] 231. c:\windows\system32\rundll32.exe {6BF52A52-394A-11d3-B153-00C04F79FAA6} [A ] 231. c:\windows\system32\rundll32.exe {7790769C-0471-11d2-AF11-00C04FA35D02} [A ] 234. c:\program files\outlook express\setup50.exe {89820200-ECBD-11cf-8B85-00AA005B4340} [A ] 232. c:\windows\system32\regsvr32.exe [AM] 219. c:\windows\system32\shell32.dll {89820200-ECBD-11cf-8B85-00AA005B4383} [A ] 235. c:\windows\system32\ie4uinit.exe {89B4C1CD-B018-4511-B0A1-5476DBF70820} [A ] 231. c:\windows\system32\rundll32.exe + HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers {0D2E74C4-3C34-11d2-A27E-00C04FC30871} [AM] 219. c:\windows\system32\shell32.dll {24F14F01-7B1C-11d1-838f-0000F80461CF} [AM] 219. c:\windows\system32\shell32.dll {24F14F02-7B1C-11d1-838f-0000F80461CF} [AM] 219. c:\windows\system32\shell32.dll {66742402-F9B9-11D1-A202-0000F81FEDEE} [AM] 219. c:\windows\system32\shell32.dll {F9DB5320-233E-11D1-9F84-707F02C10627} [AM] 236. e:\adobe\acrobat 7.0\activex\pdfshell.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved Multimedia File Property Sheet [A ] 237. c:\windows\system32\mmsys.cpl ICM 扫描仪管理 [A ] 238. c:\windows\system32\icmui.dll NTFS Security Page [A ] 239. c:\windows\system32\rshx32.dll OLE Docfile Property Page [A ] 240. c:\windows\system32\docprop.dll Shell extensions for sharing [AM] 241. c:\windows\system32\ntshrui.dll PlusPack CPL Extension [AM] 233. c:\windows\system32\themeui.dll Display Adapter CPL Extension [A ] 242. c:\windows\system32\deskadp.dll Display Monitor CPL Extension [A ] 243. c:\windows\system32\deskmon.dll DS Security Page [A ] 244. c:\windows\system32\dssec.dll Compatibility Page [A ] 245. c:\windows\system32\slayerxp.dll Shell Scrap DataHandler [A ] 246. c:\windows\system32\shscrap.dll Disk Copy Extension [A ] 247. c:\windows\system32\diskcopy.dll Shell extensions for Microsoft Windows Network objects [A ] 248. c:\windows\system32\ntlanui2.dll ICM 监视器管理 [A ] 238. c:\windows\system32\icmui.dll ICM 打印机管理 [A ] 238. c:\windows\system32\icmui.dll Web Printer Shell Extension [A ] 249. c:\windows\system32\printui.dll Disk Quota UI [A ] 250. c:\windows\system32\dskquoui.dll 公文包 [A ] 251. c:\windows\system32\syncui.dll 字体 [A ] 252. c:\windows\system32\fontext.dll ICC 配置文件 [A ] 238. c:\windows\system32\icmui.dll Printers Security Page [A ] 239. c:\windows\system32\rshx32.dll Shell extensions for sharing [AM] 241. c:\windows\system32\ntshrui.dll Display TroubleShoot CPL Extension [A ] 253. c:\windows\system32\deskperf.dll Crypto PKO Extension [A ] 254. c:\windows\system32\cryptext.dll Crypto Sign Extension [A ] 254. c:\windows\system32\cryptext.dll 网络连接 [AM] 255. c:\windows\system32\netshell.dll 网络连接 [AM] 255. c:\windows\system32\netshell.dll 扫描仪和照相机 [A ] 256. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 256. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 256. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 256. c:\windows\system32\wiashext.dll 扫描仪和照相机 [A ] 256. c:\windows\system32\wiashext.dll Remote Sessions CPL Extension [A ] 257. c:\windows\system32\remotepg.dll Portable Media Devices [A ] 258. c:\windows\system32\audiodev.dll Portable Media Devices Menu [A ] 258. c:\windows\system32\audiodev.dll Shell Search Band [AM] 259. c:\windows\system32\browseui.dll Windows Script Host 的 Shell extensions [A ] 260. c:\windows\system32\wshext.dll Microsoft 数据链接 [A ] 261. c:\program files\common files\system\ole db\oledb32.dll Tasks Folder Icon Handler [A ] 262. c:\windows\system32\mstask.dll Tasks Folder Shell Extension [A ] 262. c:\windows\system32\mstask.dll 任务计划 [A ] 262. c:\windows\system32\mstask.dll Set Program Access and Defaults [AM] 210. c:\windows\system32\shdocvw.dll Auto Update Property Sheet Extension [A ] 263. c:\windows\system32\wuaucpl.cpl 搜索 [AM] 210. c:\windows\system32\shdocvw.dll 帮助和支持 [AM] 210. c:\windows\system32\shdocvw.dll 帮助和支持 [AM] 210. c:\windows\system32\shdocvw.dll 运行... [AM] 210. c:\windows\system32\shdocvw.dll Internet [AM] 210. c:\windows\system32\shdocvw.dll 电子邮件 [AM] 210. c:\windows\system32\shdocvw.dll 字体 [AM] 210. c:\windows\system32\shdocvw.dll 管理工具 [AM] 210. c:\windows\system32\shdocvw.dll Audio Media Properties Handler [A ] 264. c:\windows\system32\shmedia.dll Video Media Properties Handler [A ] 264. c:\windows\system32\shmedia.dll Wav Properties Handler [A ] 264. c:\windows\system32\shmedia.dll Avi Properties Handler [A ] 264. c:\windows\system32\shmedia.dll Midi Properties Handler [A ] 264. c:\windows\system32\shmedia.dll Video Thumbnail Extractor [A ] 264. c:\windows\system32\shmedia.dll Microsoft Internet 工具栏 [AM] 259. c:\windows\system32\browseui.dll 下载状态 [AM] 259. c:\windows\system32\browseui.dll 补充的外壳文件夹 [AM] 259. c:\windows\system32\browseui.dll 补充的外壳文件夹 2 [AM] 259. c:\windows\system32\browseui.dll BandProxy [AM] 259. c:\windows\system32\browseui.dll Microsoft BrowserBand [AM] 259. c:\windows\system32\browseui.dll 窗格中的搜索 [AM] 259. c:\windows\system32\browseui.dll 注册数目路选项实用程序 [AM] 259. c:\windows\system32\browseui.dll 地址(&A) [AM] 259. c:\windows\system32\browseui.dll 地址 EditBox [AM] 259. c:\windows\system32\browseui.dll Shell Microsoft AutoComplete [AM] 259. c:\windows\system32\browseui.dll MRU 自动完成列表 [AM] 259. c:\windows\system32\browseui.dll 自定义 MRU 自动完成列表 [AM] 259. c:\windows\system32\browseui.dll 可访问的 [AM] 259. c:\windows\system32\browseui.dll 跟踪弹出栏 [AM] 259. c:\windows\system32\browseui.dll Microsoft 历史自动完成列表 [AM] 259. c:\windows\system32\browseui.dll Microsoft 外壳文件夹自动完成列表 [AM] 259. c:\windows\system32\browseui.dll Microsoft 多个自动完成列表容器 [AM] 259. c:\windows\system32\browseui.dll Shell Band Site Menu [AM] 259. c:\windows\system32\browseui.dll 外壳 DeskBarApp [AM] 259. c:\windows\system32\browseui.dll 外壳 DeskBar [AM] 259. c:\windows\system32\browseui.dll 外壳 Rebar BandSite [AM] 259. c:\windows\system32\browseui.dll 用户帮助 [AM] 259. c:\windows\system32\browseui.dll 全局文件夹设置 [AM] 259. c:\windows\system32\browseui.dll IE Search Band [AM] 259. c:\windows\system32\browseui.dll IE Microsoft AutoComplete [AM] 259. c:\windows\system32\browseui.dll Web 搜索 [AM] 259. c:\windows\system32\browseui.dll TridentImageExtractor [AM] 259. c:\windows\system32\browseui.dll Favorites Band [AM] 210. c:\windows\system32\shdocvw.dll History Band [AM] 210. c:\windows\system32\shdocvw.dll Shell Automation Inproc Service [AM] 210. c:\windows\system32\shdocvw.dll Microsoft Browser Architecture [AM] 210. c:\windows\system32\shdocvw.dll ISFBand OC [AM] 210. c:\windows\system32\shdocvw.dll Search Assistant OC [AM] 210. c:\windows\system32\shdocvw.dll Shell DocObject Viewer [AM] 210. c:\windows\system32\shdocvw.dll InternetShortcut [AM] 210. c:\windows\system32\shdocvw.dll Microsoft Url History 服务 [AM] 210. c:\windows\system32\shdocvw.dll 历史记录 [AM] 210. c:\windows\system32\shdocvw.dll Internet 临时文件 [AM] 210. c:\windows\system32\shdocvw.dll Internet 临时文件 [AM] 210. c:\windows\system32\shdocvw.dll Microsoft Url 搜索挂接 [AM] 210. c:\windows\system32\shdocvw.dll IE4 套件初始屏幕 [AM] 210. c:\windows\system32\shdocvw.dll CDF Extension Copy Hook [AM] 210. c:\windows\system32\shdocvw.dll Internet [AM] 210. c:\windows\system32\shdocvw.dll 浏览器栏 [AM] 210. c:\windows\system32\shdocvw.dll Internet Name Space [AM] 210. c:\windows\system32\shdocvw.dll Sendmail service [A ] 265. c:\windows\system32\sendmail.dll Sendmail service [A ] 265. c:\windows\system32\sendmail.dll ActiveX 高速缓存文件夹 [A ] 266. c:\windows\system32\occache.dll WebCheck [AM] 267. c:\windows\system32\webcheck.dll Subscription Mgr [AM] 267. c:\windows\system32\webcheck.dll 预订文件夹 [AM] 267. c:\windows\system32\webcheck.dll WebCheckWebCrawler [AM] 267. c:\windows\system32\webcheck.dll WebCheckChannelAgent [AM] 267. c:\windows\system32\webcheck.dll TrayAgent [AM] 267. c:\windows\system32\webcheck.dll Code Download Agent [AM] 267. c:\windows\system32\webcheck.dll ConnectionAgent [AM] 267. c:\windows\system32\webcheck.dll PostAgent [AM] 267. c:\windows\system32\webcheck.dll WebCheck SyncMgr Handler [AM] 267. c:\windows\system32\webcheck.dll Shell Application Manager [A ] 268. c:\windows\system32\appwiz.cpl Installed Apps Enumerator [A ] 268. c:\windows\system32\appwiz.cpl Darwin App Publisher [A ] 268. c:\windows\system32\appwiz.cpl Shell Image Verbs [A ] 269. c:\windows\system32\shimgvw.dll Shell Image Data Factory [A ] 269. c:\windows\system32\shimgvw.dll GDI+ 文件缩略图解压缩程序 [A ] 269. c:\windows\system32\shimgvw.dll 摘要信息缩略图处理程序(DOCFILES) [A ] 269. c:\windows\system32\shimgvw.dll HTML 缩略图的解压缩程序 [A ] 269. c:\windows\system32\shimgvw.dll Shell Image Property Handler [A ] 269. c:\windows\system32\shimgvw.dll 网络出版向导 [A ] 270. c:\windows\system32\netplwiz.dll 通过 Web 订购照片 [A ] 270. c:\windows\system32\netplwiz.dll 外壳出版向导对象 [A ] 270. c:\windows\system32\netplwiz.dll 获取 Passport 向导 [A ] 270. c:\windows\system32\netplwiz.dll 频道文件 [A ] 271. c:\windows\system32\cdfview.dll 频道快捷方式 [A ] 271. c:\windows\system32\cdfview.dll 频道句柄对象 [A ] 271. c:\windows\system32\cdfview.dll Channel Menu [A ] 271. c:\windows\system32\cdfview.dll Channel Properties [A ] 271. c:\windows\system32\cdfview.dll Extensions Manager Folder [A ] 272. c:\windows\system32\extmgr.dll FTP Folders Webview [A ] 273. c:\windows\system32\msieftp.dll Microsoft DocProp Shell Ext [A ] 274. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Edit Box Control [A ] 274. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace ML Edit Box Control [A ] 274. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Droplist Combo Control [A ] 274. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Calendar Control [A ] 274. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Time Control [A ] 274. c:\windows\system32\docprop2.dll Directory Query UI [A ] 275. c:\windows\system32\dsquery.dll Shell properties for a DS object [A ] 275. c:\windows\system32\dsquery.dll Directory Object Find [A ] 275. c:\windows\system32\dsquery.dll Directory Start/Search Find [A ] 275. c:\windows\system32\dsquery.dll Directory Property UI [A ] 276. c:\windows\system32\dsuiext.dll Directory Context Menu Verbs [A ] 276. c:\windows\system32\dsuiext.dll MyDocs Copy Hook [A ] 277. c:\windows\system32\mydocs.dll MyDocs Drop Target [A ] 277. c:\windows\system32\mydocs.dll MyDocs Properties [A ] 277. c:\windows\system32\mydocs.dll Offline Files Menu [AM] 278. c:\windows\system32\cscui.dll Offline Files Folder Options [AM] 278. c:\windows\system32\cscui.dll 脱机文件夹 [AM] 278. c:\windows\system32\cscui.dll DfsShell [A ] 279. c:\windows\system32\dfsshlex.dll %DESC_PublishDropTarget% [A ] 280. c:\windows\system32\photowiz.dll MMC Icon Handler [A ] 281. c:\windows\system32\mmcshext.dll 用户(&P)... [A ] 282. c:\program files\outlook express\wabfind.dll Windows Media Player Play as Playlist Context Menu Handler [A ] 283. c:\windows\system32\wmpshell.dll Windows Media Player Burn Audio CD Context Menu Handler [A ] 283. c:\windows\system32\wmpshell.dll Windows Media Player Add to Playlist Context Menu Handler [A ] 283. c:\windows\system32\wmpshell.dll WinRAR shell extension [A ] 284. c:\program files\winrar\rarext.dll RISING [AM] 285. c:\windows\system32\ravext.dll Web Folders [A ] 286. c:\program files\common files\microsoft shared\web folders\msonsext.dll Microsoft Office HTML Icon Handler [A ] 287. c:\program files\microsoft office\office11\msohev.dll Fusion Cache [A ] 217. c:\windows\system32\mscoree.dll Autodesk Drawing Preview [A ] 288. c:\program files\common files\autodesk shared\thumbnail\acthumbnail16.dll AutoCAD 数字签名图标覆盖处理程序 [AM] 289. c:\windows\system32\acsignicon.dll Autodesk DWF Preview [A ] 290. c:\program files\common files\autodesk shared\thumbnail\acdwfthmbprxy16.dll NeroCoverEd Live Icons [A ] 291. c:\program files\nero\nero 7\nero coverdesigner\coveredextension.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks {32CD708B-60A7-4C00-9377-D73EAA495F0F} [AM] 285. c:\windows\system32\ravext.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler Browseui 预加载程序 [AM] 259. c:\windows\system32\browseui.dll 组件类别缓存程序 [AM] 259. c:\windows\system32\browseui.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad PostBootReminder [AM] 219. c:\windows\system32\shell32.dll CDBurn [AM] 219. c:\windows\system32\shell32.dll WebCheck [AM] 267. c:\windows\system32\webcheck.dll SysTray [AM] 292. c:\windows\system32\stobject.dll + 用户登陆自运行项目 + HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds StartupPrograms [A ] 293. c:\windows\system32\rdpclip.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Userinit [A ] 294. c:\windows\system32\userinit.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Shell [AM] 295. c:\windows\explorer.exe + HKCU\Software\Microsoft\Windows\CurrentVersion\Run ctfmon.exe [AM] 296. c:\windows\system32\ctfmon.exe + HKLM\Software\Microsoft\Windows\CurrentVersion\Run RfwMain [AM] 297. c:\program files\rising\rfw\rfwmain.exe RavTask [AM] 298. c:\program files\rising\rav\ravtask.exe runeip [AM] 299. c:\program files\rising\antispyware\rstray.exe + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce KKDelay [A ] 300. c:\program files\rising\antispyware\runonce.exe + 开机执行 + HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order BootExecute [A ] 301. c:\windows\system32\autochk.exe [A ] 302. c:\windows\system32\bsmain.exe [A ] 303. c:\windows\system32\kknative.exe + 映像劫持 + HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options Your Image File Name Here without a path [A ] 304. c:\windows\system32\ntsd.exe + HKCR\Folder\shell explore [AM] 295. c:\windows\explorer.exe open [AM] 295. c:\windows\explorer.exe + HKCR\.exe exefile\启用/禁用数字签名图标\Command [A ] 305. c:\windows\system32\acsignopt.exe + HKCR\.bat batfile\edit\Command [A ] 306. c:\windows\system32\notepad.exe batfile\print\Command [A ] 306. c:\windows\system32\notepad.exe + HKCR\.html htmlfile\Edit\Command [A ] 307. c:\program files\microsoft office\office11\msohtmed.exe htmlfile\open\Command [A ] 308. c:\program files\internet explorer\iexplore.exe htmlfile\opennew\Command [A ] 308. c:\program files\internet explorer\iexplore.exe htmlfile\Print\Command [A ] 307. c:\program files\microsoft office\office11\msohtmed.exe htmlfile\printto\Command [A ] 231. c:\windows\system32\rundll32.exe htmlfile\傲游(Maxthon)\Command [A ] 309. c:\program files\maxthon2\maxthon.exe + HKCR\.htm htmlfile\Edit\Command [A ] 307. c:\program files\microsoft office\office11\msohtmed.exe htmlfile\open\Command [A ] 308. c:\program files\internet explorer\iexplore.exe htmlfile\opennew\Command [A ] 308. c:\program files\internet explorer\iexplore.exe htmlfile\Print\Command [A ] 307. c:\program files\microsoft office\office11\msohtmed.exe htmlfile\printto\Command [A ] 231. c:\windows\system32\rundll32.exe htmlfile\傲游(Maxthon)\Command [A ] 309. c:\program files\maxthon2\maxthon.exe + HKCR\.log txtfile\open\Command [A ] 310. c:\windows\notepad.exe txtfile\print\Command [A ] 306. c:\windows\system32\notepad.exe txtfile\printto\Command [A ] 306. c:\windows\system32\notepad.exe + HKCR\.txt txtfile\open\Command [A ] 310. c:\windows\notepad.exe txtfile\print\Command [A ] 306. c:\windows\system32\notepad.exe txtfile\printto\Command [A ] 306. c:\windows\system32\notepad.exe + HKCR\.cmd cmdfile\edit\Command [A ] 306. c:\windows\system32\notepad.exe cmdfile\print\Command [A ] 306. c:\windows\system32\notepad.exe + HKCR\.scr scrfile\install\Command [A ] 231. c:\windows\system32\rundll32.exe + HKCR\.reg regfile\edit\Command [A ] 306. c:\windows\system32\notepad.exe regfile\open\Command [A ] 311. c:\windows\regedit.exe regfile\print\Command [A ] 306. c:\windows\system32\notepad.exe + HKCR\.vbs VBSFile\Edit\Command [A ] 306. c:\windows\system32\notepad.exe VBSFile\Open\Command [A ] 312. c:\windows\system32\wscript.exe VBSFile\Open2\Command [A ] 313. c:\windows\system32\cscript.exe VBSFile\Print\Command [A ] 306. c:\windows\system32\notepad.exe + HKCR\.js JSFile\Edit\Command [A ] 306. c:\windows\system32\notepad.exe JSFile\Open\Command [A ] 312. c:\windows\system32\wscript.exe JSFile\Open2\Command [A ] 313. c:\windows\system32\cscript.exe JSFile\Print\Command [A ] 306. c:\windows\system32\notepad.exe + HKCR\.mp3 foobar2000.MP3\enqueue\Command [A ] 314. e:\foobar2000\foobar2000.exe foobar2000.MP3\open\Command [A ] 314. e:\foobar2000\foobar2000.exe + HKCR\.ini inifile\open\Command [A ] 306. c:\windows\system32\notepad.exe inifile\print\Command [A ] 306. c:\windows\system32\notepad.exe + HKCR\.inf inffile\Install\Command [A ] 231. c:\windows\system32\rundll32.exe inffile\open\Command [A ] 306. c:\windows\system32\notepad.exe inffile\print\Command [A ] 306. c:\windows\system32\notepad.exe + 程序初始化和已知动态连接库 + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows AppInit_DLLs [AM] 315. c:\windows\system32\kmon.dll + HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs advapi32 [AM] 72. c:\windows\system32\advapi32.dll comdlg32 [AM] 316. c:\windows\system32\comdlg32.dll gdi32 [AM] 317. c:\windows\system32\gdi32.dll imagehlp [AM] 318. c:\windows\system32\imagehlp.dll kernel32 [AM] 319. c:\windows\system32\kernel32.dll lz32 [A ] 320. c:\windows\system32\lz32.dll ole32 [AM] 321. c:\windows\system32\ole32.dll oleaut32 [AM] 322. c:\windows\system32\oleaut32.dll olecli32 [A ] 323. c:\windows\system32\olecli32.dll olecnv32 [A ] 324. c:\windows\system32\olecnv32.dll olesvr32 [A ] 325. c:\windows\system32\olesvr32.dll olethk32 [A ] 326. c:\windows\system32\olethk32.dll rpcrt4 [AM] 327. c:\windows\system32\rpcrt4.dll shell32 [AM] 219. c:\windows\system32\shell32.dll url [A ] 328. c:\windows\system32\url.dll urlmon [AM] 218. c:\windows\system32\urlmon.dll user32 [AM] 329. c:\windows\system32\user32.dll version [AM] 330. c:\windows\system32\version.dll wininet [AM] 331. c:\windows\system32\wininet.dll wldap32 [AM] 332. c:\windows\system32\wldap32.dll + 打印机监控 + HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors Local Port [AM] 333. c:\windows\system32\localspl.dll Microsoft Document Imaging Writer Monitor [AM] 334. c:\windows\system32\mdimon.dll Standard TCP/IP Port [AM] 335. c:\windows\system32\tcpmon.dll USB Monitor [AM] 336. c:\windows\system32\usbmon.dll + 安全验证 + HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders SecurityProviders [A ] 337. c:\windows\system32\msapsspc.dll [AM] 338. c:\windows\system32\schannel.dll [A ] 339. c:\windows\system32\digest.dll [A ] 340. c:\windows\system32\msnsspc.dll + HKLM\SYSTEM\CurrentControlSet\Control\Lsa Authentication Packages [AM] 341. c:\windows\system32\msv1_0.dll Notification Packages [AM] 342. c:\windows\system32\scecli.dll Security Packages [AM] 343. c:\windows\system32\kerberos.dll [AM] 341. c:\windows\system32\msv1_0.dll [AM] 338. c:\windows\system32\schannel.dll [AM] 344. c:\windows\system32\wdigest.dll + 正在运行的进程 + 000000c0(192) MDM.EXE 00400000[0004D000] [AM] 28. c:\program files\common files\microsoft shared\vs7debug\mdm.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 51810000[00006000] [ M] 353. c:\program files\common files\microsoft shared\vs7debug\2052\mdmui.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 000001b0(432) smss.exe 48580000[0000F000] [ M] 360. c:\windows\system32\smss.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll + 000001fc(508) csrss.exe 4A680000[00005000] [ M] 361. c:\windows\system32\csrss.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 75AA0000[0000B000] [ M] 362. c:\windows\system32\csrsrv.dll 75AB0000[00010000] [ M] 363. c:\windows\system32\basesrv.dll 764E0000[00054000] [ M] 364. c:\windows\system32\winsrv.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 75E00000[000AE000] [ M] 365. c:\windows\system32\sxs.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 00000218(536) winlogon.exe 01000000[0007C000] [ M] 366. c:\windows\system32\winlogon.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77FE0000[00011000] [ M] 367. c:\windows\system32\authz.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 758A0000[00008000] [ M] 369. c:\windows\system32\nddeapi.dll 75890000[0000A000] [ M] 370. c:\windows\system32\profmap.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 76B90000[0000F000] [ M] 373. c:\windows\system32\regapi.dll 76060000[00156000] [ M] 374. c:\windows\system32\setupapi.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 758D0000[000F0000] [ M] 379. c:\windows\system32\msgina.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 73540000[0003D000] [ M] 380. c:\windows\system32\odbc32.dll 76320000[00047000] [AM] 316. c:\windows\system32\comdlg32.dll 20000000[00017000] [ M] 381. c:\windows\system32\odbcint.dll 76E10000[00023000] [AM] 21. c:\windows\system32\shsvcs.dll 76B80000[00005000] [ M] 382. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 383. c:\windows\system32\sfc_os.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 76D70000[00022000] [ M] 384. c:\windows\system32\apphelp.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 72360000[0001A000] [ M] 386. c:\windows\system32\winscard.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 10000000[0001D000] [AM] 204. c:\windows\system32\ati2evxx.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 0FFD0000[00028000] [ M] 390. c:\windows\system32\rsaenh.dll 76570000[0001C000] [AM] 207. c:\windows\system32\cscdll.dll 758B0000[0001A000] [AM] 208. c:\windows\system32\wlnotify.dll 72F70000[00026000] [ M] 391. c:\windows\system32\winspool.drv 71A90000[00012000] [ M] 392. c:\windows\system32\mpr.dll 77C40000[00023000] [AM] 341. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 71B70000[00013000] [ M] 394. c:\windows\system32\samlib.dll 01D00000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 76CB0000[00020000] [ M] 395. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 72C90000[00009000] [ M] 396. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 397. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 399. c:\windows\system32\midimap.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 757D0000[00013000] [AM] 206. c:\windows\system32\cryptnet.dll 4A410000[00058000] [ M] 400. c:\windows\system32\winhttp.dll 72240000[00005000] [ M] 401. c:\windows\system32\sensapi.dll 5CFF0000[00008000] [AM] 209. c:\windows\system32\sclgntfy.dll 75ED0000[00007000] [ M] 402. c:\windows\system32\drprov.dll 71B90000[0000E000] [AM] 26. c:\windows\system32\ntlanman.dll 71C50000[00015000] [ M] 403. c:\windows\system32\netui0.dll 71C10000[00040000] [ M] 404. c:\windows\system32\netui1.dll 71C00000[00007000] [ M] 405. c:\windows\system32\netrap.dll 75EE0000[00009000] [AM] 69. c:\windows\system32\davclnt.dll 76EB0000[0003C000] [ M] 406. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 407. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 408. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 409. c:\windows\system32\rtutils.dll 76590000[0004E000] [AM] 278. c:\windows\system32\cscui.dll + 00000244(580) services.exe 01000000[0001C000] [AM] 19. c:\windows\system32\services.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 75840000[0004A000] [ M] 410. c:\windows\system32\scesrv.dll 77FE0000[00011000] [ M] 367. c:\windows\system32\authz.dll 7E1E0000[00020000] [ M] 411. c:\windows\system32\umpnpmgr.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 5F9A0000[0000C000] [ M] 412. c:\windows\system32\ncobjapi.dll 75FF0000[00065000] [ M] 413. c:\windows\system32\msvcp60.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 76D70000[00022000] [ M] 384. c:\windows\system32\apphelp.dll 76CE0000[00011000] [ M] 416. c:\windows\system32\eventlog.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 00000250(592) lsass.exe 01000000[00006000] [AM] 35. c:\windows\system32\lsass.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 74480000[000AE000] [ M] 417. c:\windows\system32\lsasrv.dll 71A90000[00012000] [ M] 392. c:\windows\system32\mpr.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 76770000[00013000] [ M] 418. c:\windows\system32\ntdsapi.dll 76EF0000[00027000] [ M] 419. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 394. c:\windows\system32\samlib.dll 743A0000[00068000] [ M] 420. c:\windows\system32\samsrv.dll 76760000[0000C000] [ M] 421. c:\windows\system32\cryptdll.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 20000000[0000E000] [ M] 422. c:\windows\system32\msprivs.dll 71C70000[0004B000] [AM] 343. c:\windows\system32\kerberos.dll 77C40000[00023000] [AM] 341. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 74410000[00065000] [ M] 423. c:\windows\system32\netlogon.dll 76790000[0002E000] [AM] 67. c:\windows\system32\w32time.dll 75FF0000[00065000] [ M] 413. c:\windows\system32\msvcp60.dll 767C0000[00027000] [AM] 338. c:\windows\system32\schannel.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 74380000[0000F000] [AM] 344. c:\windows\system32\wdigest.dll 0FFD0000[00028000] [ M] 390. c:\windows\system32\rsaenh.dll 76060000[00156000] [ M] 374. c:\windows\system32\setupapi.dll 00D50000[0002C000] [AM] 342. c:\windows\system32\scecli.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 74300000[0000B000] [ M] 424. c:\windows\system32\pstorsvc.dll 74320000[0001A000] [ M] 425. c:\windows\system32\psbase.dll + 000002d8(728) Ati2evxx.exe 00400000[00072000] [AM] 5. c:\windows\system32\ati2evxx.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 76060000[00156000] [ M] 374. c:\windows\system32\setupapi.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 74A30000[00008000] [ M] 426. c:\windows\system32\powrprof.dll 74A40000[00007000] [ M] 427. c:\windows\system32\cfgmgr32.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 77C40000[00023000] [AM] 341. c:\windows\system32\msv1_0.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 00CB0000[00010000] [ M] 428. c:\windows\system32\ati2edxx.dll 10000000[0001F000] [ M] 429. c:\windows\system32\atipdlxx.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 000002f4(756) svchost.exe 01000000[00006000] [AM] 2. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 395. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 394. c:\windows\system32\samlib.dll 76230000[00063000] [AM] 14. c:\windows\system32\rpcss.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 761C0000[00051000] [AM] 62. c:\windows\system32\termsrv.dll 74ED0000[00006000] [ M] 430. c:\windows\system32\icaapi.dll 76060000[00156000] [ M] 374. c:\windows\system32\setupapi.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 77FE0000[00011000] [ M] 367. c:\windows\system32\authz.dll 75070000[0001F000] [ M] 431. c:\windows\system32\mstlsapi.dll 77C90000[00032000] [ M] 432. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 433. c:\windows\system32\adsldpc.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 76AF0000[00011000] [ M] 434. c:\windows\system32\atl.dll 76B90000[0000F000] [ M] 373. c:\windows\system32\regapi.dll 0FFD0000[00028000] [ M] 390. c:\windows\system32\rsaenh.dll + 00000330(816) svchost.exe 01000000[00006000] [AM] 2. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 76230000[00063000] [AM] 14. c:\windows\system32\rpcss.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 0FFD0000[00028000] [ M] 390. c:\windows\system32\rsaenh.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 435. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 436. c:\windows\system32\wshtcpip.dll 76EF0000[00027000] [ M] 419. c:\windows\system32\dnsapi.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 76F80000[00008000] [ M] 437. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 76F90000[00006000] [ M] 438. c:\windows\system32\rasadhlp.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll + 00000374(884) CCenter.exe 00400000[0002A000] [AM] 48. c:\program files\rising\rav\ccenter.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll + 00000384(900) svchost.exe 01000000[00006000] [AM] 2. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 395. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 394. c:\windows\system32\samlib.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 76E10000[00023000] [AM] 21. c:\windows\system32\shsvcs.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 76D50000[0001D000] [AM] 15. c:\windows\system32\dhcpcsvc.dll 76EF0000[00027000] [ M] 419. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 435. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 436. c:\windows\system32\wshtcpip.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 76B40000[00031000] [AM] 52. c:\windows\system32\schedsvc.dll 76770000[00013000] [ M] 418. c:\windows\system32\ntdsapi.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 76060000[00156000] [ M] 374. c:\windows\system32\setupapi.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 77C40000[00023000] [AM] 341. c:\windows\system32\msv1_0.dll 74EB0000[00005000] [ M] 439. c:\windows\system32\msidle.dll 70DE0000[0000D000] [AM] 7. c:\windows\system32\audiosrv.dll 76850000[00023000] [AM] 25. c:\windows\system32\wkssvc.dll 75EB0000[00012000] [AM] 13. c:\windows\system32\cryptsvc.dll 752B0000[00030000] [ M] 440. c:\windows\system32\certcli.dll 76AF0000[00011000] [ M] 434. c:\windows\system32\atl.dll 75430000[00071000] [ M] 441. c:\windows\system32\cryptui.dll 76680000[000A2000] [AM] 331. c:\windows\system32\wininet.dll 5DF20000[00106000] [ M] 442. c:\windows\system32\esent.dll 00FE0000[0001A000] [AM] 24. c:\windows\system32\srvsvc.dll 768A0000[00044000] [AM] 20. c:\windows\system32\es.dll 0FFD0000[00028000] [ M] 390. c:\windows\system32\rsaenh.dll 77CD0000[00033000] [AM] 36. c:\windows\system32\netman.dll 76D10000[00018000] [ M] 443. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 432. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 433. c:\windows\system32\adsldpc.dll 76E50000[0000E000] [ M] 409. c:\windows\system32\rtutils.dll 74770000[0019A000] [AM] 255. c:\windows\system32\netshell.dll 76BD0000[0002D000] [ M] 444. c:\windows\system32\credui.dll 76EB0000[0003C000] [ M] 406. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 407. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 408. c:\windows\system32\tapi32.dll 72FA0000[00010000] [ M] 445. c:\windows\system32\wzcsapi.dll 77290000[0006E000] [AM] 76. c:\windows\system32\wzcsvc.dll 76D00000[00004000] [ M] 446. c:\windows\system32\wmi.dll 72260000[0000D000] [AM] 54. c:\windows\system32\sens.dll 67180000[00028000] [AM] 70. c:\windows\system32\wbem\wmisvc.dll 75340000[0006D000] [ M] 447. c:\windows\system32\vssapi.dll 76BA0000[00015000] [AM] 10. c:\windows\system32\browser.dll 66700000[00052000] [AM] 55. c:\windows\system32\ipnathlp.dll 77FE0000[00011000] [ M] 367. c:\windows\system32\authz.dll 75E00000[000AE000] [ M] 365. c:\windows\system32\sxs.dll 75690000[0013C000] [ M] 448. c:\windows\system32\comsvcs.dll 75090000[00014000] [ M] 449. c:\windows\system32\colbact.dll 75050000[00013000] [ M] 450. c:\windows\system32\mtxclu.dll 71A40000[0000B000] [ M] 451. c:\windows\system32\wsock32.dll 762A0000[00011000] [ M] 452. c:\windows\system32\clusapi.dll 75010000[00012000] [ M] 453. c:\windows\system32\resutils.dll 75D00000[00085000] [ M] 454. c:\windows\system32\wbem\wbemcore.dll 75FF0000[00065000] [ M] 413. c:\windows\system32\msvcp60.dll 75270000[0003F000] [ M] 455. c:\windows\system32\wbem\esscli.dll 751F0000[00037000] [ M] 456. c:\windows\system32\wbem\wbemcomn.dll 755F0000[00076000] [ M] 457. c:\windows\system32\wbem\fastprox.dll 71CC0000[0001C000] [ M] 458. c:\windows\system32\actxprxy.dll 74E30000[0000E000] [ M] 459. c:\windows\system32\wbem\wbemsvc.dll 76F90000[00006000] [ M] 438. c:\windows\system32\rasadhlp.dll 74E50000[00008000] [ M] 460. c:\windows\system32\wbem\wbemprox.dll 74F80000[00019000] [ M] 461. c:\windows\system32\wbem\wmiutils.dll 75160000[0002E000] [ M] 462. c:\windows\system32\wbem\repdrvfs.dll 594C0000[0006D000] [ M] 463. c:\windows\system32\wbem\wmiprvsd.dll 5F9A0000[0000C000] [ M] 412. c:\windows\system32\ncobjapi.dll 752F0000[00046000] [ M] 464. c:\windows\system32\wbem\wbemess.dll 7E510000[00031000] [AM] 41. c:\windows\system32\rasmans.dll 742D0000[0000B000] [ M] 465. c:\windows\system32\winipsec.dll 75550000[00092000] [ M] 466. c:\windows\system32\netcfgx.dll 73350000[0003F000] [AM] 61. c:\windows\system32\tapisrv.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 75130000[00011000] [ M] 467. c:\windows\system32\rastapi.dll 57980000[00035000] [ M] 468. c:\windows\system32\unimdm.tsp 71F90000[00007000] [ M] 469. c:\windows\system32\uniplat.dll 57A00000[0000B000] [ M] 470. c:\windows\system32\kmddsp.tsp 579E0000[00010000] [ M] 471. c:\windows\system32\ndptsp.tsp 57A30000[00045000] [ M] 472. c:\windows\system32\h323.tsp 57A20000[0000A000] [ M] 473. c:\windows\system32\hidphone.tsp 68BE0000[00009000] [ M] 474. c:\windows\system32\hid.dll 721D0000[00035000] [ M] 475. c:\windows\system32\rasppp.dll 72420000[00006000] [ M] 476. c:\windows\system32\ntlsapi.dll 71C70000[0004B000] [AM] 343. c:\windows\system32\kerberos.dll 76760000[0000C000] [ M] 421. c:\windows\system32\cryptdll.dll 75D90000[00014000] [ M] 477. c:\windows\system32\raschap.dll 75DB0000[0001F000] [ M] 478. c:\windows\system32\rastls.dll 767C0000[00027000] [AM] 338. c:\windows\system32\schannel.dll 72360000[0001A000] [ M] 386. c:\windows\system32\winscard.dll 76540000[00023000] [ M] 479. c:\windows\system32\upnp.dll 4A410000[00058000] [ M] 400. c:\windows\system32\winhttp.dll 74E60000[0000C000] [ M] 480. c:\windows\system32\ssdpapi.dll 04A40000[002C6000] [ M] 481. c:\windows\system32\msi.dll 754B0000[00096000] [ M] 482. c:\windows\system32\rasdlg.dll 5F970000[0000E000] [ M] 483. c:\windows\system32\wbem\ncprov.dll 73CA0000[00017000] [ M] 484. c:\windows\system32\wbem\wbemcons.dll + 000003bc(956) svchost.exe 01000000[00006000] [AM] 2. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 76740000[0000D000] [AM] 18. c:\windows\system32\dnsrslvr.dll 76EF0000[00027000] [ M] 419. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 0FFD0000[00028000] [ M] 390. c:\windows\system32\rsaenh.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 435. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 436. c:\windows\system32\wshtcpip.dll + 00000428(1064) svchost.exe 01000000[00006000] [AM] 2. c:\windows\system32\svchost.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 395. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 394. c:\windows\system32\samlib.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 74BA0000[00006000] [AM] 27. c:\windows\system32\lmhsvc.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 000004a4(1188) ravmond.exe 00400000[00069000] [AM] 49. c:\program files\rising\rav\ravmond.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 10000000[00042000] [ M] 485. c:\program files\rising\rav\bwlist.dll 7C140000[00103000] [ M] 486. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 487. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 7C3A0000[0007B000] [ M] 488. c:\windows\system32\msvcp71.dll 71A40000[0000B000] [ M] 451. c:\windows\system32\wsock32.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 00B20000[0000E000] [ M] 489. c:\program files\rising\rav\rsappmgr.dll 00B40000[00030000] [ M] 490. c:\program files\rising\rav\cfgdll.dll 00DE0000[00067000] [ M] 491. c:\program files\rising\rav\rslog.dll 00B80000[0001F000] [ M] 492. c:\program files\rising\rav\proccom.dll 00E50000[00024000] [ M] 493. c:\program files\rising\rav\rscommx2.dll 00E90000[00075000] [ M] 494. c:\program files\rising\rav\monrule.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 00F30000[00013000] [ M] 495. c:\program files\rising\rav\hooksys.dll 00F90000[00013000] [ M] 496. c:\program files\rising\rav\hookreg.dll 00FF0000[00013000] [ M] 497. c:\program files\rising\rav\hookntos.dll 01170000[0001D000] [ M] 498. c:\program files\rising\rav\rswalmon.dll 01FA0000[00035000] [ M] 499. c:\program files\rising\rav\recomp.dll 01FF0000[00036000] [ M] 500. c:\program files\rising\rav\refs.dll 02040000[00023000] [ M] 501. c:\program files\rising\rav\ffr.dll 76B80000[00005000] [ M] 382. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 383. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 02080000[00020000] [ M] 502. c:\program files\rising\rav\rsstore.dll 020B0000[00013000] [ M] 503. c:\program files\rising\rav\hookcont.dll 020E0000[00028000] [ M] 504. c:\program files\rising\rav\fakescan.dll 02120000[00022000] [ M] 505. c:\program files\rising\rav\scanner.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 02760000[0002F000] [ M] 506. c:\program files\rising\rav\viruslib.dll 028A0000[00028000] [ M] 507. c:\program files\rising\rav\relibldr.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 435. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 436. c:\windows\system32\wshtcpip.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 02F90000[00012000] [ M] 508. c:\program files\rising\rav\hookweb.dll 030D0000[000DC000] [ M] 509. c:\program files\rising\rav\extfile.dll 03200000[00027000] [ M] 510. c:\program files\rising\rav\pearc.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 04470000[00021000] [ M] 511. c:\program files\rising\rav\nvfile.dll 13AB0000[0004A000] [ M] 512. c:\program files\rising\rav\scanexec.dll 05D60000[002DC000] [ M] 513. c:\program files\rising\rav\unexe.dll 06050000[000D4000] [ M] 514. c:\program files\rising\rav\scanex.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 02E20000[00023000] [ M] 515. c:\program files\rising\rav\scansct.dll + 000004b0(1200) rfwsrv.exe 00400000[00037000] [AM] 46. c:\program files\rising\rfw\rfwsrv.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 7C140000[00103000] [ M] 486. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 487. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 7C3A0000[0007B000] [ M] 488. c:\windows\system32\msvcp71.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 10000000[0001F000] [ M] 516. c:\program files\rising\rfw\proccom.dll 00780000[00024000] [ M] 517. c:\program files\rising\rfw\rscommx2.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 007D0000[0000E000] [ M] 518. c:\program files\rising\rfw\rsappmgr.dll 007F0000[00030000] [ M] 519. c:\program files\rising\rfw\cfgdll.dll 00B10000[0000F000] [ M] 520. c:\program files\rising\rfw\rfwrule.dll 00B20000[0000C000] [ M] 521. c:\program files\rising\rfw\rfwlog.dll 00B30000[00018000] [ M] 522. c:\program files\rising\rfw\rfwdrv.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 00B50000[0000E000] [ M] 523. c:\program files\rising\rfw\ijt_ctrl.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 00B80000[00016000] [ M] 524. c:\program files\rising\rfw\unvdet.dll 76B80000[00005000] [ M] 382. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 383. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 00BD0000[0001B000] [ M] 525. c:\program files\rising\rfw\mports.dll 5E8E0000[0000D000] [ M] 526. c:\windows\system32\perfproc.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll + 000004cc(1228) rfwProxy.exe 00400000[00236000] [AM] 45. c:\program files\rising\rfw\rfwproxy.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 7C140000[00103000] [ M] 486. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 487. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 10000000[0001F000] [ M] 516. c:\program files\rising\rfw\proccom.dll 00A80000[00024000] [ M] 517. c:\program files\rising\rfw\rscommx2.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 00AC0000[0000F000] [ M] 520. c:\program files\rising\rfw\rfwrule.dll 00AD0000[00011000] [ M] 527. c:\program files\rising\rfw\urlrule.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 435. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 436. c:\windows\system32\wshtcpip.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 01230000[00016000] [ M] 528. c:\program files\rising\rfw\monmid.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 5E8E0000[0000D000] [ M] 526. c:\windows\system32\perfproc.dll + 000004e4(1252) alg.exe 01000000[0000D000] [AM] 1. c:\windows\system32\alg.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 76AF0000[00011000] [ M] 434. c:\windows\system32\atl.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 71A40000[0000B000] [ M] 451. c:\windows\system32\wsock32.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 60FD0000[00055000] [ M] 435. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 436. c:\windows\system32\wshtcpip.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 000005f4(1524) rfwstub.exe 00400000[00017000] [ M] 529. c:\program files\rising\rfw\rfwstub.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 7C3A0000[0007B000] [ M] 488. c:\windows\system32\msvcp71.dll 7C340000[00056000] [ M] 487. c:\windows\system32\msvcr71.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 23700000[00028000] [ M] 530. c:\program files\rising\rfw\rscommon.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 000006f0(1776) RavStub.exe 00400000[00021000] [ M] 531. c:\program files\rising\rav\ravstub.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 492. c:\program files\rising\rav\proccom.dll 00620000[00024000] [ M] 493. c:\program files\rising\rav\rscommx2.dll 23700000[00028000] [ M] 532. c:\program files\rising\rav\rscommon.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 0000076c(1900) spoolsv.exe 01000000[00010000] [AM] 56. c:\windows\system32\spoolsv.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 74240000[00015000] [ M] 533. c:\windows\system32\spoolss.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76EF0000[00027000] [ M] 419. c:\windows\system32\dnsapi.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 76F90000[00006000] [ M] 438. c:\windows\system32\rasadhlp.dll 74C10000[00055000] [AM] 333. c:\windows\system32\localspl.dll 76C30000[00028000] [ M] 383. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 72F70000[00026000] [ M] 391. c:\windows\system32\winspool.drv 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 00B00000[00008000] [AM] 334. c:\windows\system32\mdimon.dll 745E0000[002C6000] [ M] 481. c:\windows\system32\msi.dll 72390000[0000E000] [AM] 335. c:\windows\system32\tcpmon.dll 72380000[00007000] [AM] 336. c:\windows\system32\usbmon.dll 00B10000[00008000] [ M] 534. c:\windows\system32\spool\prtprocs\w32x86\mdippr.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 76F80000[00008000] [ M] 437. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 75AC0000[00023000] [ M] 535. c:\windows\system32\win32spl.dll 71C00000[00007000] [ M] 405. c:\windows\system32\netrap.dll 76770000[00013000] [ M] 418. c:\windows\system32\ntdsapi.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 74260000[00015000] [ M] 536. c:\windows\system32\inetpp.dll + 00000840(2112) Ati2evxx.exe 00400000[00072000] [AM] 5. c:\windows\system32\ati2evxx.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 76060000[00156000] [ M] 374. c:\windows\system32\setupapi.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 74A30000[00008000] [ M] 426. c:\windows\system32\powrprof.dll 74A40000[00007000] [ M] 427. c:\windows\system32\cfgmgr32.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 77C40000[00023000] [AM] 341. c:\windows\system32\msv1_0.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 0FFD0000[00028000] [ M] 390. c:\windows\system32\rsaenh.dll 00E60000[00010000] [ M] 428. c:\windows\system32\ati2edxx.dll 10000000[0001F000] [ M] 429. c:\windows\system32\atipdlxx.dll 00E90000[0001D000] [AM] 204. c:\windows\system32\ati2evxx.dll 72F70000[00026000] [ M] 391. c:\windows\system32\winspool.drv + 00000870(2160) Explorer.EXE 01000000[000F1000] [AM] 295. c:\windows\explorer.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 75EF0000[000FD000] [AM] 259. c:\windows\system32\browseui.dll 7E550000[0016F000] [AM] 210. c:\windows\system32\shdocvw.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 75430000[00071000] [ M] 441. c:\windows\system32\cryptui.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 76680000[000A2000] [AM] 331. c:\windows\system32\wininet.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 76D70000[00022000] [ M] 384. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 60C60000[00026000] [AM] 289. c:\windows\system32\acsignicon.dll 72F70000[00026000] [ M] 391. c:\windows\system32\winspool.drv 74BE0000[0002C000] [ M] 537. c:\windows\system32\oleacc.dll 75FF0000[00065000] [ M] 413. c:\windows\system32\msvcp60.dll 76590000[0004E000] [AM] 278. c:\windows\system32\cscui.dll 76570000[0001C000] [AM] 207. c:\windows\system32\cscdll.dll 5B680000[0006E000] [AM] 233. c:\windows\system32\themeui.dll 762F0000[00005000] [ M] 538. c:\windows\system32\msimg32.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 71CC0000[0001C000] [ M] 458. c:\windows\system32\actxprxy.dll 10000000[0001C000] [AM] 285. c:\windows\system32\ravext.dll 5FE40000[00031000] [ M] 539. c:\windows\system32\msutb.dll 74680000[0004B000] [ M] 540. c:\windows\system32\msctf.dll 60D00000[00039000] [ M] 541. c:\program files\common files\autodesk shared\acsigncore16.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 76950000[00008000] [ M] 542. c:\windows\system32\linkinfo.dll 76960000[00024000] [AM] 241. c:\windows\system32\ntshrui.dll 76AF0000[00011000] [ M] 434. c:\windows\system32\atl.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 018F0000[002C6000] [ M] 481. c:\windows\system32\msi.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 74A90000[00044000] [AM] 267. c:\windows\system32\webcheck.dll 71A40000[0000B000] [ M] 451. c:\windows\system32\wsock32.dll 76060000[00156000] [ M] 374. c:\windows\system32\setupapi.dll 74A60000[00020000] [AM] 292. c:\windows\system32\stobject.dll 74A50000[0000A000] [ M] 543. c:\windows\system32\batmeter.dll 74A30000[00008000] [ M] 426. c:\windows\system32\powrprof.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 72C90000[00009000] [ M] 396. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 397. c:\windows\system32\msacm32.drv 77BA0000[00007000] [ M] 399. c:\windows\system32\midimap.dll 74770000[0019A000] [AM] 255. c:\windows\system32\netshell.dll 76E50000[0000E000] [ M] 409. c:\windows\system32\rtutils.dll 76BD0000[0002D000] [ M] 444. c:\windows\system32\credui.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 02060000[0001C000] [AM] 236. e:\adobe\acrobat 7.0\activex\pdfshell.dll 754B0000[00096000] [ M] 482. c:\windows\system32\rasdlg.dll 76D10000[00018000] [ M] 443. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 432. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 433. c:\windows\system32\adsldpc.dll 71B70000[00013000] [ M] 394. c:\windows\system32\samlib.dll 76EB0000[0003C000] [ M] 406. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 407. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 408. c:\windows\system32\tapi32.dll 77C40000[00023000] [AM] 341. c:\windows\system32\msv1_0.dll 020F0000[0007C000] [ M] 544. c:\windows\system32\shdoclc.dll + 00000a44(2628) RfwMain.exe 00400000[00092000] [AM] 297. c:\program files\rising\rfw\rfwmain.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 7C140000[00103000] [ M] 486. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 487. c:\windows\system32\msvcr71.dll 7C3A0000[0007B000] [ M] 488. c:\windows\system32\msvcp71.dll 26600000[000A8000] [ M] 545. c:\program files\rising\rfw\rsguilib.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 10000000[0001F000] [ M] 516. c:\program files\rising\rfw\proccom.dll 00B50000[00024000] [ M] 517. c:\program files\rising\rfw\rscommx2.dll 00C90000[0000E000] [ M] 518. c:\program files\rising\rfw\rsappmgr.dll 00CB0000[00030000] [ M] 519. c:\program files\rising\rfw\cfgdll.dll 23700000[00028000] [ M] 530. c:\program files\rising\rfw\rscommon.dll 00F00000[00014000] [ M] 546. c:\program files\rising\rfw\rfwctrl.dll 23800000[00022000] [ M] 547. c:\program files\rising\rfw\rsxml.dll 23900000[00040000] [ M] 548. c:\program files\rising\rfw\pngdll.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 013F0000[0000F000] [ M] 520. c:\program files\rising\rfw\rfwrule.dll 74680000[0004B000] [ M] 540. c:\windows\system32\msctf.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 0FFD0000[00028000] [ M] 390. c:\windows\system32\rsaenh.dll 20000000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 5E8E0000[0000D000] [ M] 526. c:\windows\system32\perfproc.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 757D0000[00013000] [AM] 206. c:\windows\system32\cryptnet.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 4A410000[00058000] [ M] 400. c:\windows\system32\winhttp.dll 72240000[00005000] [ M] 401. c:\windows\system32\sensapi.dll + 00000a64(2660) RavTask.exe 00400000[00034000] [AM] 298. c:\program files\rising\rav\ravtask.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 5D170000[0009A000] [ M] 352. c:\windows\system32\comctl32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 492. c:\program files\rising\rav\proccom.dll 00A30000[00024000] [ M] 493. c:\program files\rising\rav\rscommx2.dll 23700000[00028000] [ M] 532. c:\program files\rising\rav\rscommon.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 00C90000[0000E000] [ M] 489. c:\program files\rising\rav\rsappmgr.dll 08CB0000[00030000] [ M] 490. c:\program files\rising\rav\cfgdll.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 74680000[0004B000] [ M] 540. c:\windows\system32\msctf.dll + 00000a7c(2684) RavMon.exe 00400000[00067000] [ M] 549. c:\program files\rising\rav\ravmon.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 7C140000[00103000] [ M] 486. c:\windows\system32\mfc71.dll 7C340000[00056000] [ M] 487. c:\windows\system32\msvcr71.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 7C3A0000[0007B000] [ M] 488. c:\windows\system32\msvcp71.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 10000000[0001F000] [ M] 492. c:\program files\rising\rav\proccom.dll 00B20000[00024000] [ M] 493. c:\program files\rising\rav\rscommx2.dll 23700000[00028000] [ M] 532. c:\program files\rising\rav\rscommon.dll 00D70000[00035000] [ M] 499. c:\program files\rising\rav\recomp.dll 00DC0000[00036000] [ M] 500. c:\program files\rising\rav\refs.dll 01020000[0002F000] [ M] 506. c:\program files\rising\rav\viruslib.dll 01160000[00028000] [ M] 507. c:\program files\rising\rav\relibldr.dll 011E0000[0000E000] [ M] 489. c:\program files\rising\rav\rsappmgr.dll 01200000[00030000] [ M] 490. c:\program files\rising\rav\cfgdll.dll 01360000[00075000] [ M] 494. c:\program files\rising\rav\monrule.dll 23900000[00040000] [ M] 550. c:\program files\rising\rav\pngdll.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 74680000[0004B000] [ M] 540. c:\windows\system32\msctf.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 26600000[000A8000] [ M] 551. c:\program files\rising\rav\rsguilib.dll 23800000[00022000] [ M] 552. c:\program files\rising\rav\rsxml.dll 5E8E0000[0000D000] [ M] 526. c:\windows\system32\perfproc.dll + 00000a80(2688) rstray.exe 00400000[00023000] [AM] 299. c:\program files\rising\antispyware\rstray.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 10000000[0003C000] [ M] 553. c:\program files\rising\antispyware\rsmginfo.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 76680000[000A2000] [AM] 331. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 23800000[00022000] [ M] 554. c:\program files\rising\antispyware\rsxml.dll 7C3A0000[0007B000] [ M] 555. c:\program files\rising\antispyware\msvcp71.dll 7C340000[00056000] [ M] 556. c:\program files\rising\antispyware\msvcr71.dll 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll 74680000[0004B000] [ M] 540. c:\windows\system32\msctf.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 00BD0000[00024000] [ M] 557. c:\program files\rising\antispyware\comserv.dll 00C00000[00019000] [ M] 558. c:\program files\rising\antispyware\syslay.dll 23700000[00026000] [ M] 559. c:\program files\rising\antispyware\rscommon.dll 00C40000[0002E000] [ M] 560. c:\program files\rising\antispyware\comx3.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 23900000[00040000] [ M] 561. c:\program files\rising\antispyware\pngdll.dll 010D0000[0005C000] [ M] 562. c:\program files\rising\antispyware\runiep.dll 01140000[0001F000] [ M] 492. c:\program files\rising\rav\proccom.dll 01160000[00024000] [ M] 493. c:\program files\rising\rav\rscommx2.dll + 00000a98(2712) ctfmon.exe 00400000[00006000] [AM] 296. c:\windows\system32\ctfmon.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 74680000[0004B000] [ M] 540. c:\windows\system32\msctf.dll 5FE40000[00031000] [ M] 539. c:\windows\system32\msutb.dll 5CC30000[00026000] [ M] 414. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 415. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 70000000[00019000] [ M] 358. c:\program files\rising\rfw\ijt_base.dll 75000000[0000F000] [ M] 359. c:\program files\rising\rfw\olemon.dll + 00000e44(3652) ras.exe 00400000[0000B000] [ M] 563. c:\program files\rising\antispyware\ras.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 7C140000[00103000] [ M] 564. c:\program files\rising\antispyware\mfc71.dll 7C340000[00056000] [ M] 556. c:\program files\rising\antispyware\msvcr71.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 5ADC0000[00037000] [ M] 388. c:\windows\system32\uxtheme.dll 74680000[0004B000] [ M] 540. c:\windows\system32\msctf.dll 10000000[00047000] [ M] 565. c:\program files\rising\antispyware\kakamgr.dll 7D590000[007F3000] [AM] 219. c:\windows\system32\shell32.dll 7C3A0000[0007B000] [ M] 555. c:\program files\rising\antispyware\msvcp71.dll 00B40000[00019000] [ M] 558. c:\program files\rising\antispyware\syslay.dll 00B70000[0001F000] [ M] 492. c:\program files\rising\rav\proccom.dll 00B90000[00024000] [ M] 493. c:\program files\rising\rav\rscommx2.dll 00CE0000[0002E000] [ M] 560. c:\program files\rising\antispyware\comx3.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll 00F50000[00058000] [ M] 566. c:\program files\rising\antispyware\dbmgr.dll 23800000[00022000] [ M] 554. c:\program files\rising\antispyware\rsxml.dll 010B0000[0002D000] [ M] 567. c:\program files\rising\antispyware\pweb.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 71A20000[00017000] [ M] 377. c:\windows\system32\ws2_32.dll 71A10000[00008000] [ M] 378. c:\windows\system32\ws2help.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 74D90000[0006C000] [ M] 568. c:\windows\system32\riched20.dll 010E0000[000C1000] [ M] 569. c:\program files\rising\antispyware\pscan.dll 76680000[000A2000] [AM] 331. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 76D30000[00018000] [ M] 393. c:\windows\system32\iphlpapi.dll 011B0000[0002F000] [ M] 570. c:\program files\rising\antispyware\ncomm.dll 01200000[00070000] [ M] 571. c:\program files\rising\antispyware\pset.dll 01290000[0002A000] [ M] 572. c:\program files\rising\antispyware\pdefend.dll 01360000[000B6000] [ M] 573. c:\program files\rising\antispyware\ptools.dll 76320000[00047000] [AM] 316. c:\windows\system32\comdlg32.dll 76B80000[00005000] [ M] 382. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 383. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 376. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 318. c:\windows\system32\imagehlp.dll 012C0000[0008C000] [ M] 574. c:\program files\rising\antispyware\psysinfo.dll 76D70000[00022000] [ M] 384. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 356. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 357. c:\windows\system32\comres.dll 7E550000[0016F000] [AM] 210. c:\windows\system32\shdocvw.dll 75430000[00071000] [ M] 441. c:\windows\system32\cryptui.dll 76F30000[0002C000] [AM] 332. c:\windows\system32\wldap32.dll 01540000[0001C000] [AM] 285. c:\windows\system32\ravext.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 76060000[00156000] [ M] 374. c:\windows\system32\setupapi.dll 23900000[00040000] [ M] 561. c:\program files\rising\antispyware\pngdll.dll 73640000[0002E000] [ M] 385. c:\windows\system32\msctfime.ime 75E00000[000AE000] [ M] 365. c:\windows\system32\sxs.dll 20000000[0007C000] [ M] 544. c:\windows\system32\shdoclc.dll 02570000[00548000] [ M] 355. c:\windows\system32\xpsp2res.dll 74CF0000[00091000] [ M] 575. c:\windows\system32\mlang.dll 7E210000[002F6000] [AM] 221. c:\windows\system32\mshtml.dll 74620000[00027000] [ M] 576. c:\windows\system32\msls31.dll 76BC0000[0000B000] [ M] 354. c:\windows\system32\psapi.dll 74910000[000AB000] [AM] 224. c:\windows\system32\inetcomm.dll 75B20000[00022000] [ M] 577. c:\windows\system32\msoert2.dll 02F00000[0000C000] [ M] 578. c:\windows\system32\inetres.dll 74650000[0002A000] [ M] 579. c:\windows\system32\msimtf.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 76EF0000[00027000] [ M] 419. c:\windows\system32\dnsapi.dll 76F80000[00008000] [ M] 437. c:\windows\system32\winrnr.dll 76F90000[00006000] [ M] 438. c:\windows\system32\rasadhlp.dll 71A40000[0000B000] [ M] 451. c:\windows\system32\wsock32.dll 60FD0000[00055000] [ M] 435. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 436. c:\windows\system32\wshtcpip.dll 76EB0000[0003C000] [ M] 406. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 407. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 408. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 409. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 389. c:\windows\system32\winmm.dll 77C40000[00023000] [AM] 341. c:\windows\system32\msv1_0.dll 759D0000[000AE000] [ M] 372. c:\windows\system32\userenv.dll 03540000[00028000] [ M] 580. c:\program files\rising\rav\ravscrch.dll 73270000[00067000] [ M] 581. c:\windows\system32\vbscript.dll 73D30000[000FE000] [ M] 582. c:\windows\system32\mfc42.dll 61BE0000[0000D000] [ M] 583. c:\windows\system32\mfc42loc.dll 75BC0000[0006F000] [ M] 584. c:\windows\system32\jscript.dll 30000000[003AF000] [ M] 585. c:\windows\system32\macromed\flash\flash9f.ocx 72C90000[00009000] [ M] 396. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 397. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 398. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 399. c:\windows\system32\midimap.dll 050C0000[00085000] [ M] 586. c:\program files\rising\antispyware\kengine.dll 05150000[00045000] [ M] 587. c:\program files\rising\antispyware\posttrt.dll 051A0000[00010000] [ M] 588. c:\program files\rising\antispyware\kscanex.dll 051C0000[0002F000] [ M] 589. c:\program files\rising\antispyware\engine.dll 05200000[00033000] [ M] 590. c:\program files\rising\antispyware\rsdialog.dll 5DD50000[0010E000] [ M] 591. c:\windows\system32\msxml3.dll + 00000e78(3704) knownsvr.exe 00400000[00072000] [ M] 592. c:\program files\rising\antispyware\knownsvr.exe 7C920000[00094000] [ M] 345. c:\windows\system32\ntdll.dll 7C800000[0011D000] [AM] 319. c:\windows\system32\kernel32.dll 77D10000[0008F000] [AM] 329. c:\windows\system32\user32.dll 77EF0000[00047000] [AM] 317. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 72. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 327. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 346. c:\windows\system32\secur32.dll 10000000[0002F000] [ M] 570. c:\program files\rising\antispyware\ncomm.dll 76990000[0013D000] [AM] 321. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 347. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 322. c:\windows\system32\oleaut32.dll 76680000[000A2000] [AM] 331. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 205. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 368. c:\windows\system32\msasn1.dll 77F40000[00076000] [ M] 348. c:\windows\system32\shlwapi.dll 77BD0000[00008000] [AM] 330. c:\windows\system32\version.dll 76300000[0001D000] [ M] 349. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 350. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 351. c:\windows\system32\usp10.dll 60000000[00074000] [AM] 315. c:\windows\system32\kmon.dll 75C60000[0009F000] [AM] 218. c:\windows\system32\urlmon.dll 00A90000[0002E000] [ M] 560. c:\program files\rising\antispyware\comx3.dll 00AC0000[00019000] [ M] 558. c:\program files\rising\antispyware\syslay.dll 76F20000[00008000] [ M] 387. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 375. c:\windows\system32\winsta.dll 5FDD0000[00054000] [ M] 371. c:\windows\system32\netapi32.dll