瑞星卡卡电脑诊断日志 v1.30 (2010-1-19 19:52:55) 北京瑞星信息技术有限公司 注释: [A]表示该文件存在自启动关联; [M]表示该文件在内存中; + 注册表自运行项目 + 系统服务 + HKLM\System\CurrentControlSet\Services Alerter [AM] 1. c:\windows\system32\svchost.exe [A ] 2. c:\windows\system32\alrsvc.dll ALG [A ] 3. c:\windows\system32\alg.exe AppMgmt [AM] 1. c:\windows\system32\svchost.exe [A ] 4. c:\windows\system32\appmgmts.dll AudioSrv [AM] 1. c:\windows\system32\svchost.exe [AM] 5. c:\windows\system32\audiosrv.dll BITS [AM] 1. c:\windows\system32\svchost.exe [A ] 6. c:\windows\system32\qmgr.dll Browser [AM] 1. c:\windows\system32\svchost.exe [AM] 7. c:\windows\system32\browser.dll CiSvc [A ] 8. c:\windows\system32\cisvc.exe ClipSrv [A ] 9. c:\windows\system32\clipsrv.exe COMSysApp [A ] 10. c:\windows\system32\dllhost.exe DcomLaunch [AM] 1. c:\windows\system32\svchost.exe [AM] 11. c:\windows\system32\rpcss.dll Dhcp [AM] 1. c:\windows\system32\svchost.exe [AM] 12. c:\windows\system32\dhcpcsvc.dll dmadmin [A ] 13. c:\windows\system32\dmadmin.exe dmserver [AM] 1. c:\windows\system32\svchost.exe [A ] 14. c:\windows\system32\dmserver.dll Dnscache [AM] 1. c:\windows\system32\svchost.exe [AM] 15. c:\windows\system32\dnsrslvr.dll Dot3svc [AM] 1. c:\windows\system32\svchost.exe [A ] 16. c:\windows\system32\dot3svc.dll [A ] 16. c:\windows\system32\dot3svc.dll EapHost [AM] 1. c:\windows\system32\svchost.exe [A ] 17. c:\windows\system32\eapsvc.dll ERSvc [AM] 1. c:\windows\system32\svchost.exe [A ] 18. c:\windows\system32\ersvc.dll Eventlog [AM] 19. c:\windows\system32\services.exe EventSystem [AM] 1. c:\windows\system32\svchost.exe [AM] 20. c:\windows\system32\es.dll FastUserSwitchingCompatibility [AM] 1. c:\windows\system32\svchost.exe [AM] 21. c:\windows\system32\shsvcs.dll helpsvc [AM] 1. c:\windows\system32\svchost.exe HidServ [AM] 1. c:\windows\system32\svchost.exe hkmsvc [AM] 1. c:\windows\system32\svchost.exe [A ] 22. c:\windows\system32\kmsvc.dll HTTPFilter [AM] 1. c:\windows\system32\svchost.exe [A ] 23. c:\windows\system32\w3ssl.dll ImapiService [A ] 24. c:\windows\system32\imapi.exe LanmanServer [AM] 1. c:\windows\system32\svchost.exe [AM] 25. c:\windows\system32\srvsvc.dll lanmanworkstation [AM] 1. c:\windows\system32\svchost.exe [AM] 26. c:\windows\system32\wkssvc.dll [AM] 27. c:\windows\system32\ntlanman.dll LmHosts [AM] 1. c:\windows\system32\svchost.exe [AM] 28. c:\windows\system32\lmhsvc.dll Messenger [AM] 1. c:\windows\system32\svchost.exe [A ] 29. c:\windows\system32\msgsvc.dll mnmsrvc [A ] 30. c:\windows\system32\mnmsrvc.exe MSDTC [A ] 31. c:\windows\system32\msdtc.exe MSIServer [A ] 32. c:\windows\system32\msiexec.exe napagent [AM] 1. c:\windows\system32\svchost.exe [A ] 33. c:\windows\system32\qagentrt.dll NetDDE [A ] 34. c:\windows\system32\netdde.exe NetDDEdsdm [A ] 34. c:\windows\system32\netdde.exe Netlogon [AM] 35. c:\windows\system32\lsass.exe Netman [AM] 1. c:\windows\system32\svchost.exe [AM] 36. c:\windows\system32\netman.dll Nla [AM] 1. c:\windows\system32\svchost.exe [AM] 37. c:\windows\system32\mswsock.dll NtLmSsp [AM] 35. c:\windows\system32\lsass.exe NtmsSvc [AM] 1. c:\windows\system32\svchost.exe [A ] 38. c:\windows\system32\ntmssvc.dll NVSvc [AM] 39. c:\windows\system32\nvsvc32.exe ose [A ] 40. c:\program files\common files\microsoft shared\source engine\ose.exe PlugPlay [AM] 19. c:\windows\system32\services.exe PolicyAgent [AM] 35. c:\windows\system32\lsass.exe ProtectedStorage [AM] 35. c:\windows\system32\lsass.exe RasAuto [AM] 1. c:\windows\system32\svchost.exe [A ] 41. c:\windows\system32\rasauto.dll RasMan [AM] 1. c:\windows\system32\svchost.exe [AM] 42. c:\windows\system32\rasmans.dll RDSessMgr [A ] 43. c:\windows\system32\sessmgr.exe RemoteAccess [AM] 1. c:\windows\system32\svchost.exe [A ] 44. c:\windows\system32\mprdim.dll RemoteRegistry [AM] 1. c:\windows\system32\svchost.exe [A ] 45. c:\windows\system32\regsvc.dll RpcLocator [A ] 46. c:\windows\system32\locator.exe RpcSs [AM] 1. c:\windows\system32\svchost.exe [AM] 11. c:\windows\system32\rpcss.dll [AM] 11. c:\windows\system32\rpcss.dll RsRavMon [AM] 47. c:\program files\rising\rav\ravmond.exe RsRFWMon [AM] 48. c:\program files\rising\rfw\ravmond.exe RSVP [A ] 49. c:\windows\system32\rsvp.exe SamSs [AM] 35. c:\windows\system32\lsass.exe SCardSvr [A ] 50. c:\windows\system32\scardsvr.exe Schedule [AM] 1. c:\windows\system32\svchost.exe [A ] 51. c:\windows\system32\schedsvc.dll seclogon [AM] 1. c:\windows\system32\svchost.exe [AM] 52. c:\windows\system32\seclogon.dll SENS [AM] 1. c:\windows\system32\svchost.exe [AM] 53. c:\windows\system32\sens.dll SharedAccess [AM] 1. c:\windows\system32\svchost.exe [AM] 54. c:\windows\system32\ipnathlp.dll ShellHWDetection [AM] 1. c:\windows\system32\svchost.exe [AM] 21. c:\windows\system32\shsvcs.dll Spooler [AM] 55. c:\windows\system32\spoolsv.exe srservice [AM] 1. c:\windows\system32\svchost.exe [AM] 56. c:\windows\system32\srsvc.dll SSDPSRV [AM] 1. c:\windows\system32\svchost.exe [A ] 57. c:\windows\system32\ssdpsrv.dll stisvc [AM] 1. c:\windows\system32\svchost.exe [AM] 58. c:\windows\system32\wiaservc.dll SwPrv [A ] 10. c:\windows\system32\dllhost.exe SysmonLog [A ] 59. c:\windows\system32\smlogsvc.exe TapiSrv [AM] 1. c:\windows\system32\svchost.exe [AM] 60. c:\windows\system32\tapisrv.dll TermService [AM] 1. c:\windows\system32\svchost.exe [AM] 61. c:\windows\system32\termsrv.dll Themes [AM] 1. c:\windows\system32\svchost.exe [AM] 21. c:\windows\system32\shsvcs.dll TlntSvr [A ] 62. c:\windows\system32\tlntsvr.exe TrkWks [AM] 1. c:\windows\system32\svchost.exe [AM] 63. c:\windows\system32\trkwks.dll TSUSVC [A ] 64. c:\program files\tencent\qqsoftmgr\tencentupdatesvc.exe UMWdf [A ] 65. c:\windows\system32\wdfmgr.exe upnphost [AM] 1. c:\windows\system32\svchost.exe [A ] 66. c:\windows\system32\upnphost.dll UPS [A ] 67. c:\windows\system32\ups.exe VSS [A ] 68. c:\windows\system32\vssvc.exe W32Time [AM] 1. c:\windows\system32\svchost.exe [AM] 69. c:\windows\system32\w32time.dll WebClient [AM] 1. c:\windows\system32\svchost.exe [AM] 70. c:\windows\system32\webclnt.dll [AM] 71. c:\windows\system32\davclnt.dll winmgmt [AM] 1. c:\windows\system32\svchost.exe [AM] 72. c:\windows\system32\wbem\wmisvc.dll WmdmPmSN [AM] 1. c:\windows\system32\svchost.exe [A ] 73. c:\windows\system32\mspmsnsv.dll Wmi [AM] 1. c:\windows\system32\svchost.exe [AM] 74. c:\windows\system32\advapi32.dll WmiApSrv [A ] 75. c:\windows\system32\wbem\wmiapsrv.exe wscsvc [AM] 1. c:\windows\system32\svchost.exe [A ] 76. c:\windows\system32\wscsvc.dll wuauserv [AM] 1. c:\windows\system32\svchost.exe [AM] 77. c:\windows\system32\wuauserv.dll WZCSVC [AM] 1. c:\windows\system32\svchost.exe [AM] 78. c:\windows\system32\wzcsvc.dll xmlprov [AM] 1. c:\windows\system32\svchost.exe [A ] 79. c:\windows\system32\xmlprov.dll + 内核驱动 + HKLM\System\CurrentControlSet\Services ACPI [A ] 80. c:\windows\system32\drivers\acpi.sys ACPIEC [A ] 81. c:\windows\system32\drivers\acpiec.sys aec [A ] 82. c:\windows\system32\drivers\aec.sys AFD [A ] 83. c:\windows\system32\drivers\afd.sys AliIde [A ] 84. c:\windows\system32\drivers\aliide.sys AmdK8 [A ] 85. c:\windows\system32\drivers\amdk8.sys asc3350p [A ] 86. c:\windows\system32\drivers\asc3350p.sys AsyncMac [A ] 87. c:\windows\system32\drivers\asyncmac.sys atapi [A ] 88. c:\windows\system32\drivers\atapi.sys Atmarpc [A ] 89. c:\windows\system32\drivers\atmarpc.sys audstub [A ] 90. c:\windows\system32\drivers\audstub.sys Beep [A ] 91. c:\windows\system32\drivers\beep.sys cbidf2k [A ] 92. c:\windows\system32\drivers\cbidf2k.sys CCDECODE [A ] 93. c:\windows\system32\drivers\ccdecode.sys cd20xrnt [A ] 94. c:\windows\system32\drivers\cd20xrnt.sys Cdaudio [A ] 95. c:\windows\system32\drivers\cdaudio.sys Cdrom [A ] 96. c:\windows\system32\drivers\cdrom.sys CmdIde [A ] 97. c:\windows\system32\drivers\cmdide.sys Disk [A ] 98. c:\windows\system32\drivers\disk.sys dmboot [A ] 99. c:\windows\system32\drivers\dmboot.sys dmio [A ] 100. c:\windows\system32\drivers\dmio.sys dmload [A ] 101. c:\windows\system32\drivers\dmload.sys DMusic [A ] 102. c:\windows\system32\drivers\dmusic.sys drmkaud [A ] 103. c:\windows\system32\drivers\drmkaud.sys EagleNT [A ] 104. c:\windows\system32\drivers\eaglent.sys Fdc [A ] 105. c:\windows\system32\drivers\fdc.sys Fips [A ] 106. c:\windows\system32\drivers\fips.sys Flpydisk [A ] 107. c:\windows\system32\drivers\flpydisk.sys FsVga [A ] 108. c:\windows\system32\drivers\fsvga.sys Ftdisk [A ] 109. c:\windows\system32\drivers\ftdisk.sys Gpc [A ] 110. c:\windows\system32\drivers\msgpc.sys HDAudBus [A ] 111. c:\windows\system32\drivers\hdaudbus.sys hidusb [A ] 112. c:\windows\system32\drivers\hidusb.sys hookcont [A ] 113. c:\windows\system32\drivers\hookcont.sys hooksys [A ] 114. c:\windows\system32\drivers\hooksys.sys HTTP [A ] 115. c:\windows\system32\drivers\http.sys i8042prt [A ] 116. c:\windows\system32\drivers\i8042prt.sys Imapi [A ] 117. c:\windows\system32\drivers\imapi.sys IntcAzAudAddService [A ] 118. c:\windows\system32\drivers\rtkhdaud.sys IntelIde [A ] 119. c:\windows\system32\drivers\intelide.sys intelppm [A ] 120. c:\windows\system32\drivers\intelppm.sys Ip6Fw [A ] 121. c:\windows\system32\drivers\ip6fw.sys IpFilterDriver [A ] 122. c:\windows\system32\drivers\ipfltdrv.sys IpInIp [A ] 123. c:\windows\system32\drivers\ipinip.sys IpNat [A ] 124. c:\windows\system32\drivers\ipnat.sys IPSec [A ] 125. c:\windows\system32\drivers\ipsec.sys IRENUM [A ] 126. c:\windows\system32\drivers\irenum.sys isapnp [A ] 127. c:\windows\system32\drivers\isapnp.sys iz [A ] 128. c:\windows\system32\drivers\iz.sys Kbdclass [A ] 129. c:\windows\system32\drivers\kbdclass.sys kbdhid [A ] 130. c:\windows\system32\drivers\kbdhid.sys kmixer [A ] 131. c:\windows\system32\drivers\kmixer.sys KSecDD [A ] 132. c:\windows\system32\drivers\ksecdd.sys Mkd2kfNt [A ] 133. c:\windows\system32\drivers\mkd2kfnt.sys Mkd2Nadr [A ] 134. c:\windows\system32\drivers\mkd2nadr.sys mnmdd [A ] 135. c:\windows\system32\drivers\mnmdd.sys Modem [A ] 136. c:\windows\system32\drivers\modem.sys Mouclass [A ] 137. c:\windows\system32\drivers\mouclass.sys mouhid [A ] 138. c:\windows\system32\drivers\mouhid.sys MountMgr [A ] 139. c:\windows\system32\drivers\mountmgr.sys MSKSSRV [A ] 140. c:\windows\system32\drivers\mskssrv.sys MSPCLOCK [A ] 141. c:\windows\system32\drivers\mspclock.sys MSPQM [A ] 142. c:\windows\system32\drivers\mspqm.sys mssmbios [A ] 143. c:\windows\system32\drivers\mssmbios.sys MSTEE [A ] 144. c:\windows\system32\drivers\mstee.sys NABTSFEC [A ] 145. c:\windows\system32\drivers\nabtsfec.sys NDIS [A ] 146. c:\windows\system32\drivers\ndis.sys NdisIP [A ] 147. c:\windows\system32\drivers\ndisip.sys NdisTapi [A ] 148. c:\windows\system32\drivers\ndistapi.sys Ndisuio [A ] 149. c:\windows\system32\drivers\ndisuio.sys NdisWan [A ] 150. c:\windows\system32\drivers\ndiswan.sys NDProxy [A ] 151. c:\windows\system32\drivers\ndproxy.sys NetBT [A ] 152. c:\windows\system32\drivers\netbt.sys Null [A ] 153. c:\windows\system32\drivers\null.sys nv [A ] 154. c:\windows\system32\drivers\nv4_mini.sys NwlnkFlt [A ] 155. c:\windows\system32\drivers\nwlnkflt.sys NwlnkFwd [A ] 156. c:\windows\system32\drivers\nwlnkfwd.sys Parport [A ] 157. c:\windows\system32\drivers\parport.sys PartMgr [A ] 158. c:\windows\system32\drivers\partmgr.sys ParVdm [A ] 159. c:\windows\system32\drivers\parvdm.sys PCI [A ] 160. c:\windows\system32\drivers\pci.sys PCIIde [A ] 161. c:\windows\system32\drivers\pciide.sys Pcmcia [A ] 162. c:\windows\system32\drivers\pcmcia.sys PptpMiniport [A ] 163. c:\windows\system32\drivers\raspptp.sys Processor [A ] 164. c:\windows\system32\drivers\processr.sys PSched [A ] 165. c:\windows\system32\drivers\psched.sys Ptilink [A ] 166. c:\windows\system32\drivers\ptilink.sys RasAcd [A ] 167. c:\windows\system32\drivers\rasacd.sys Rasl2tp [A ] 168. c:\windows\system32\drivers\rasl2tp.sys RasPppoe [A ] 169. c:\windows\system32\drivers\raspppoe.sys Raspti [A ] 170. c:\windows\system32\drivers\raspti.sys RDPCDD [A ] 171. c:\windows\system32\drivers\rdpcdd.sys rdpdr [A ] 172. c:\windows\system32\drivers\rdpdr.sys RDPWD [A ] 173. c:\windows\system32\drivers\rdpwd.sys redbook [A ] 174. c:\windows\system32\drivers\redbook.sys RFWARP [A ] 175. c:\windows\system32\drivers\rfwarp.sys RfwBase9 [A ] 176. c:\windows\system32\drivers\rfwbase.sys rfwtdi [A ] 177. c:\program files\rising\rfw\rfwtdi.sys rsassist [A ] 178. c:\windows\system32\drivers\rsassist.sys rsfwdrv [A ] 179. c:\program files\rising\rfw\rsfwdrv.sys RsNTGDI [A ] 180. c:\windows\system32\drivers\rsntgdi.sys RTL8023xp [A ] 181. c:\windows\system32\drivers\rtnicxp.sys rtl8139 [A ] 182. c:\windows\system32\drivers\rtl8139.sys Secdrv [A ] 183. c:\windows\system32\drivers\secdrv.sys Serenum [A ] 184. c:\windows\system32\drivers\serenum.sys Serial [A ] 185. c:\windows\system32\drivers\serial.sys Sfloppy [A ] 186. c:\windows\system32\drivers\sfloppy.sys SLIP [A ] 187. c:\windows\system32\drivers\slip.sys splitter [A ] 188. c:\windows\system32\drivers\splitter.sys streamip [A ] 189. c:\windows\system32\drivers\streamip.sys swenum [A ] 190. c:\windows\system32\drivers\swenum.sys swmidi [A ] 191. c:\windows\system32\drivers\swmidi.sys sysaudio [A ] 192. c:\windows\system32\drivers\sysaudio.sys Tcpip [A ] 193. c:\windows\system32\drivers\tcpip.sys TDPIPE [A ] 194. c:\windows\system32\drivers\tdpipe.sys TDTCP [A ] 195. c:\windows\system32\drivers\tdtcp.sys TermDD [A ] 196. c:\windows\system32\drivers\termdd.sys TesDrvPt [A ] 197. c:\windows\system32\tesdrvpt.sys TesSafe [A ] 198. c:\windows\system32\tessafe.sys TosIde [A ] 199. c:\windows\system32\drivers\toside.sys Update [A ] 200. c:\windows\system32\drivers\update.sys usbaudio [A ] 201. c:\windows\system32\drivers\usbaudio.sys usbccgp [A ] 202. c:\windows\system32\drivers\usbccgp.sys usbehci [A ] 203. c:\windows\system32\drivers\usbehci.sys usbhub [A ] 204. c:\windows\system32\drivers\usbhub.sys usbohci [A ] 205. c:\windows\system32\drivers\usbohci.sys USBSTOR [A ] 206. c:\windows\system32\drivers\usbstor.sys usbuhci [A ] 207. c:\windows\system32\drivers\usbuhci.sys usbvideo [A ] 208. c:\windows\system32\drivers\usbvideo.sys VgaSave [A ] 209. c:\windows\system32\drivers\vga.sys ViaIde [A ] 210. c:\windows\system32\drivers\viaide.sys VolSnap [A ] 211. c:\windows\system32\drivers\volsnap.sys Wanarp [A ] 212. c:\windows\system32\drivers\wanarp.sys wdmaud [A ] 213. c:\windows\system32\drivers\wdmaud.sys WmiAcpi [A ] 214. c:\windows\system32\drivers\wmiacpi.sys WS2IFSL [A ] 215. c:\windows\system32\drivers\ws2ifsl.sys WSTCODEC [A ] 216. c:\windows\system32\drivers\wstcodec.sys XDva320 [A ] 217. c:\windows\system32\xdva320.sys + 文件系统驱动 + HKLM\System\CurrentControlSet\Services Cdfs [A ] 218. c:\windows\system32\drivers\cdfs.sys exFat [A ] 219. c:\windows\system32\drivers\exfat.sys Fastfat [A ] 220. c:\windows\system32\drivers\fastfat.sys FltMgr [A ] 221. c:\windows\system32\drivers\fltmgr.sys MRxDAV [A ] 222. c:\windows\system32\drivers\mrxdav.sys MRxSmb [A ] 223. c:\windows\system32\drivers\mrxsmb.sys Msfs [A ] 224. c:\windows\system32\drivers\msfs.sys Mup [A ] 225. c:\windows\system32\drivers\mup.sys NetBIOS [A ] 226. c:\windows\system32\drivers\netbios.sys Npfs [A ] 227. c:\windows\system32\drivers\npfs.sys Ntfs [A ] 228. c:\windows\system32\drivers\ntfs.sys Rdbss [A ] 229. c:\windows\system32\drivers\rdbss.sys sr [A ] 230. c:\windows\system32\drivers\sr.sys Srv [A ] 231. c:\windows\system32\drivers\srv.sys Udfs [A ] 232. c:\windows\system32\drivers\udfs.sys + 系统登陆自运行 + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon UIHost [A ] 233. c:\windows\system32\logonui.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify crypt32chain [AM] 234. c:\windows\system32\crypt32.dll cryptnet [AM] 235. c:\windows\system32\cryptnet.dll cscdll [AM] 236. c:\windows\system32\cscdll.dll dimsntfy [AM] 237. c:\windows\system32\dimsntfy.dll ScCertProp [AM] 238. c:\windows\system32\wlnotify.dll Schedule [AM] 238. c:\windows\system32\wlnotify.dll sclgntfy [A ] 239. c:\windows\system32\sclgntfy.dll SensLogn [AM] 238. c:\windows\system32\wlnotify.dll termsrv [AM] 238. c:\windows\system32\wlnotify.dll wlballoon [AM] 238. c:\windows\system32\wlnotify.dll + IE浏览器加载模块 + HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks {CFBFAE00-17A6-11D0-99CB-00C04FD64497} [AM] 240. c:\windows\system32\shdocvw.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects {01443AEC-0FD1-40fd-9C87-E93D1494C233} [AM] 241. c:\program files\thunder network\thunder\comdlls\tdatonce_now.dll {1A3440C6-F123-4CAB-84EE-C814E1AE0D8F} [AM] 242. c:\program files\9ptv2009\kernel\pipi\jfcheck.dll {889D2FEB-5411-4565-8998-1DD2C5261283} [AM] 243. c:\program files\thunder network\thunder\comdlls\xunleibho_now.dll {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} [AM] 244. c:\windows\system32\urlfilter.dll + HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions Exec [A ] 245. c:\windows\network diagnostic\xpnetdiag.exe + HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars {4D5C8C25-D075-11d0-B416-00C04FB90376} [AM] 240. c:\windows\system32\shdocvw.dll + HKCU\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars {C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} [AM] 246. c:\windows\system32\shell32.dll {EFA24E61-B078-11D0-89E4-00C04FC9E26E} [AM] 240. c:\windows\system32\shdocvw.dll {EFA24E62-B078-11D0-89E4-00C04FC9E26E} [AM] 240. c:\windows\system32\shdocvw.dll + 资源管理器加载模块 + HKLM\SOFTWARE\Classes\PROTOCOLS\Filter Class Install Handler [AM] 247. c:\windows\system32\urlmon.dll deflate [AM] 247. c:\windows\system32\urlmon.dll gzip [AM] 247. c:\windows\system32\urlmon.dll lzdhtml [AM] 247. c:\windows\system32\urlmon.dll text/webviewhtml [AM] 246. c:\windows\system32\shell32.dll text/xml [A ] 248. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll + HKLM\SOFTWARE\Classes\PROTOCOLS\Handler about [AM] 249. c:\windows\system32\mshtml.dll cdl [AM] 247. c:\windows\system32\urlmon.dll dvd [A ] 250. c:\windows\system32\msvidctl.dll file [AM] 247. c:\windows\system32\urlmon.dll ftp [AM] 247. c:\windows\system32\urlmon.dll gopher [AM] 247. c:\windows\system32\urlmon.dll http [AM] 247. c:\windows\system32\urlmon.dll https [AM] 247. c:\windows\system32\urlmon.dll its [A ] 251. c:\windows\system32\itss.dll javascript [AM] 249. c:\windows\system32\mshtml.dll local [AM] 247. c:\windows\system32\urlmon.dll mailto [AM] 249. c:\windows\system32\mshtml.dll mhtml [AM] 252. c:\windows\system32\inetcomm.dll mk [AM] 247. c:\windows\system32\urlmon.dll ms-its [A ] 251. c:\windows\system32\itss.dll res [AM] 249. c:\windows\system32\mshtml.dll sysimage [AM] 249. c:\windows\system32\mshtml.dll tv [A ] 250. c:\windows\system32\msvidctl.dll vbscript [AM] 249. c:\windows\system32\mshtml.dll wia [A ] 253. c:\windows\system32\wiascr.dll + HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} [A ] 254. c:\windows\inf\unregmp2.exe >{26923b43-4d38-484f-9b9e-de460746276c} [A ] 255. c:\windows\system32\shmgrate.exe >{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS [A ] 256. c:\windows\system32\rundll32.exe >{881dd1c5-3dcf-431b-b061-f3f88e8be88a} [A ] 255. c:\windows\system32\shmgrate.exe {2C7339CF-2B09-4501-B3F3-F3508C9228ED} [A ] 257. c:\windows\system32\regsvr32.exe [AM] 258. c:\windows\system32\themeui.dll {44BBA840-CC51-11CF-AAFA-00AA00B6015C} [A ] 259. c:\program files\outlook express\setup50.exe {44BBA842-CC51-11CF-AAFA-00AA00B6015B} [A ] 256. c:\windows\system32\rundll32.exe {5945c046-1e7d-11d1-bc44-00c04fd912be} [A ] 256. c:\windows\system32\rundll32.exe {6BF52A52-394A-11d3-B153-00C04F79FAA6} [A ] 256. c:\windows\system32\rundll32.exe {7790769C-0471-11d2-AF11-00C04FA35D02} [A ] 259. c:\program files\outlook express\setup50.exe {89820200-ECBD-11cf-8B85-00AA005B4340} [A ] 257. c:\windows\system32\regsvr32.exe [AM] 246. c:\windows\system32\shell32.dll {89820200-ECBD-11cf-8B85-00AA005B4383} [A ] 260. c:\windows\system32\ie4uinit.exe + HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers {0D2E74C4-3C34-11d2-A27E-00C04FC30871} [AM] 246. c:\windows\system32\shell32.dll {24F14F01-7B1C-11d1-838f-0000F80461CF} [AM] 246. c:\windows\system32\shell32.dll {24F14F02-7B1C-11d1-838f-0000F80461CF} [AM] 246. c:\windows\system32\shell32.dll {66742402-F9B9-11D1-A202-0000F81FEDEE} [AM] 246. c:\windows\system32\shell32.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved Multimedia File Property Sheet [A ] 261. c:\windows\system32\mmsys.cpl ICM 扫描仪管理 [A ] 262. c:\windows\system32\icmui.dll NTFS Security Page [A ] 263. c:\windows\system32\rshx32.dll OLE Docfile Property Page [A ] 264. c:\windows\system32\docprop.dll Shell extensions for sharing [AM] 265. c:\windows\system32\ntshrui.dll PlusPack CPL Extension [AM] 258. c:\windows\system32\themeui.dll Display Adapter CPL Extension [A ] 266. c:\windows\system32\deskadp.dll Display Monitor CPL Extension [A ] 267. c:\windows\system32\deskmon.dll DS Security Page [A ] 268. c:\windows\system32\dssec.dll ShimLayer Property Page [A ] 269. c:\windows\system32\slayerxp.dll Shell Scrap DataHandler [A ] 270. c:\windows\system32\shscrap.dll Disk Copy Extension [AM] 271. c:\windows\system32\diskcopy.dll Shell extensions for Microsoft Windows Network objects [A ] 272. c:\windows\system32\ntlanui2.dll ICM 监视器管理 [A ] 262. c:\windows\system32\icmui.dll ICM 打印机管理 [A ] 262. c:\windows\system32\icmui.dll Web Printer Shell Extension [A ] 273. c:\windows\system32\printui.dll Disk Quota UI [A ] 274. c:\windows\system32\dskquoui.dll 公文包 [A ] 275. c:\windows\system32\syncui.dll HyperTerminal Icon Ext [A ] 276. c:\windows\system32\hticons.dll 字体 [A ] 277. c:\windows\system32\fontext.dll ICC 配置文件 [A ] 262. c:\windows\system32\icmui.dll Printers Security Page [A ] 263. c:\windows\system32\rshx32.dll Shell extensions for sharing [AM] 265. c:\windows\system32\ntshrui.dll Display TroubleShoot CPL Extension [A ] 278. c:\windows\system32\deskperf.dll MMC Icon Handler [A ] 279. c:\windows\system32\mmcshext.dll Shell Search Band [AM] 280. c:\windows\system32\browseui.dll Crypto PKO Extension [A ] 281. c:\windows\system32\cryptext.dll Crypto Sign Extension [A ] 281. c:\windows\system32\cryptext.dll 网络连接 [AM] 282. c:\windows\system32\netshell.dll 网络连接 [AM] 282. c:\windows\system32\netshell.dll 扫描仪和照相机 [AM] 283. c:\windows\system32\wiashext.dll 扫描仪和照相机 [AM] 283. c:\windows\system32\wiashext.dll 扫描仪和照相机 [AM] 283. c:\windows\system32\wiashext.dll 扫描仪和照相机 [AM] 283. c:\windows\system32\wiashext.dll 扫描仪和照相机 [AM] 283. c:\windows\system32\wiashext.dll Remote Sessions CPL Extension [A ] 284. c:\windows\system32\remotepg.dll Windows Script Host 的 Shell extensions [A ] 285. c:\windows\system32\wshext.dll Microsoft 数据链接 [A ] 286. c:\program files\common files\system\ole db\oledb32.dll Tasks Folder Icon Handler [AM] 287. c:\windows\system32\mstask.dll Tasks Folder Shell Extension [AM] 287. c:\windows\system32\mstask.dll 任务计划 [AM] 287. c:\windows\system32\mstask.dll Set Program Access and Defaults [AM] 240. c:\windows\system32\shdocvw.dll Auto Update Property Sheet Extension [A ] 288. c:\windows\system32\wuaucpl.cpl 搜索 [AM] 240. c:\windows\system32\shdocvw.dll 帮助和支持 [AM] 240. c:\windows\system32\shdocvw.dll 帮助和支持 [AM] 240. c:\windows\system32\shdocvw.dll 运行... [AM] 240. c:\windows\system32\shdocvw.dll Internet [AM] 240. c:\windows\system32\shdocvw.dll 电子邮件 [AM] 240. c:\windows\system32\shdocvw.dll 字体 [AM] 240. c:\windows\system32\shdocvw.dll 管理工具 [AM] 240. c:\windows\system32\shdocvw.dll 以前的版本属性页 [A ] 289. c:\windows\system32\twext.dll 以前的版本 [A ] 289. c:\windows\system32\twext.dll Audio Media Properties Handler [A ] 290. c:\windows\system32\shmedia.dll Video Media Properties Handler [A ] 290. c:\windows\system32\shmedia.dll Wav Properties Handler [A ] 290. c:\windows\system32\shmedia.dll Avi Properties Handler [A ] 290. c:\windows\system32\shmedia.dll Midi Properties Handler [A ] 290. c:\windows\system32\shmedia.dll Video Thumbnail Extractor [A ] 290. c:\windows\system32\shmedia.dll Microsoft Internet 工具栏 [AM] 280. c:\windows\system32\browseui.dll 下载状态 [AM] 280. c:\windows\system32\browseui.dll 补充的外壳文件夹 [AM] 280. c:\windows\system32\browseui.dll 补充的外壳文件夹 2 [AM] 280. c:\windows\system32\browseui.dll BandProxy [AM] 280. c:\windows\system32\browseui.dll Microsoft BrowserBand [AM] 280. c:\windows\system32\browseui.dll 窗格中的搜索 [AM] 280. c:\windows\system32\browseui.dll 注册数目路选项实用程序 [AM] 280. c:\windows\system32\browseui.dll 地址(&A) [AM] 280. c:\windows\system32\browseui.dll 地址 EditBox [AM] 280. c:\windows\system32\browseui.dll Shell Microsoft AutoComplete [AM] 280. c:\windows\system32\browseui.dll MRU 自动完成列表 [AM] 280. c:\windows\system32\browseui.dll 自定义 MRU 自动完成列表 [AM] 280. c:\windows\system32\browseui.dll 可访问的 [AM] 280. c:\windows\system32\browseui.dll 跟踪弹出栏 [AM] 280. c:\windows\system32\browseui.dll Microsoft 历史自动完成列表 [AM] 280. c:\windows\system32\browseui.dll Microsoft 外壳文件夹自动完成列表 [AM] 280. c:\windows\system32\browseui.dll Microsoft 多个自动完成列表容器 [AM] 280. c:\windows\system32\browseui.dll Shell Band Site Menu [AM] 280. c:\windows\system32\browseui.dll 外壳 DeskBarApp [AM] 280. c:\windows\system32\browseui.dll 外壳 DeskBar [AM] 280. c:\windows\system32\browseui.dll 外壳 Rebar BandSite [AM] 280. c:\windows\system32\browseui.dll 用户帮助 [AM] 280. c:\windows\system32\browseui.dll 全局文件夹设置 [AM] 280. c:\windows\system32\browseui.dll IE Search Band [AM] 280. c:\windows\system32\browseui.dll IE Microsoft AutoComplete [AM] 280. c:\windows\system32\browseui.dll Web 搜索 [AM] 280. c:\windows\system32\browseui.dll TridentImageExtractor [AM] 280. c:\windows\system32\browseui.dll Favorites Band [AM] 240. c:\windows\system32\shdocvw.dll History Band [AM] 240. c:\windows\system32\shdocvw.dll Shell Automation Inproc Service [AM] 240. c:\windows\system32\shdocvw.dll Microsoft Browser Architecture [AM] 240. c:\windows\system32\shdocvw.dll ISFBand OC [AM] 240. c:\windows\system32\shdocvw.dll Search Assistant OC [AM] 240. c:\windows\system32\shdocvw.dll Shell DocObject Viewer [AM] 240. c:\windows\system32\shdocvw.dll InternetShortcut [AM] 240. c:\windows\system32\shdocvw.dll Microsoft Url History 服务 [AM] 240. c:\windows\system32\shdocvw.dll 历史记录 [AM] 240. c:\windows\system32\shdocvw.dll Internet 临时文件 [AM] 240. c:\windows\system32\shdocvw.dll Internet 临时文件 [AM] 240. c:\windows\system32\shdocvw.dll Microsoft Url 搜索挂接 [AM] 240. c:\windows\system32\shdocvw.dll IE4 套件初始屏幕 [AM] 240. c:\windows\system32\shdocvw.dll CDF Extension Copy Hook [AM] 240. c:\windows\system32\shdocvw.dll Internet [AM] 240. c:\windows\system32\shdocvw.dll 浏览器栏 [AM] 240. c:\windows\system32\shdocvw.dll Internet Name Space [AM] 240. c:\windows\system32\shdocvw.dll Sendmail service [A ] 291. c:\windows\system32\sendmail.dll Sendmail service [A ] 291. c:\windows\system32\sendmail.dll ActiveX 高速缓存文件夹 [A ] 292. c:\windows\system32\occache.dll WebCheck [AM] 293. c:\windows\system32\webcheck.dll Subscription Mgr [AM] 293. c:\windows\system32\webcheck.dll 预订文件夹 [AM] 293. c:\windows\system32\webcheck.dll WebCheckWebCrawler [AM] 293. c:\windows\system32\webcheck.dll WebCheckChannelAgent [AM] 293. c:\windows\system32\webcheck.dll TrayAgent [AM] 293. c:\windows\system32\webcheck.dll Code Download Agent [AM] 293. c:\windows\system32\webcheck.dll ConnectionAgent [AM] 293. c:\windows\system32\webcheck.dll PostAgent [AM] 293. c:\windows\system32\webcheck.dll WebCheck SyncMgr Handler [AM] 293. c:\windows\system32\webcheck.dll Shell Application Manager [A ] 294. c:\windows\system32\appwiz.cpl Installed Apps Enumerator [A ] 294. c:\windows\system32\appwiz.cpl Darwin App Publisher [A ] 294. c:\windows\system32\appwiz.cpl Shell Image Verbs [A ] 295. c:\windows\system32\shimgvw.dll Shell Image Data Factory [A ] 295. c:\windows\system32\shimgvw.dll GDI+ 文件缩略图解压缩程序 [A ] 295. c:\windows\system32\shimgvw.dll 摘要信息缩略图处理程序(DOCFILES) [A ] 295. c:\windows\system32\shimgvw.dll HTML 缩略图的解压缩程序 [A ] 295. c:\windows\system32\shimgvw.dll Shell Image Property Handler [A ] 295. c:\windows\system32\shimgvw.dll 网络出版向导 [A ] 296. c:\windows\system32\netplwiz.dll 通过 Web 订购照片 [A ] 296. c:\windows\system32\netplwiz.dll 外壳出版向导对象 [A ] 296. c:\windows\system32\netplwiz.dll 获取 Passport 向导 [A ] 296. c:\windows\system32\netplwiz.dll 压缩(zipped)文件夹 [A ] 297. c:\windows\system32\zipfldr.dll Compressed (zipped) Folder Right Drag Handler [A ] 297. c:\windows\system32\zipfldr.dll Compressed (zipped) Folder SendTo Target [A ] 297. c:\windows\system32\zipfldr.dll Extensions Manager Folder [A ] 298. c:\windows\system32\extmgr.dll FTP Folders Webview [A ] 299. c:\windows\system32\msieftp.dll Microsoft DocProp Shell Ext [A ] 300. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Edit Box Control [A ] 300. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace ML Edit Box Control [A ] 300. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Droplist Combo Control [A ] 300. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Calendar Control [A ] 300. c:\windows\system32\docprop2.dll Microsoft DocProp Inplace Time Control [A ] 300. c:\windows\system32\docprop2.dll Directory Query UI [A ] 301. c:\windows\system32\dsquery.dll Shell properties for a DS object [A ] 301. c:\windows\system32\dsquery.dll Directory Object Find [A ] 301. c:\windows\system32\dsquery.dll Directory Start/Search Find [A ] 301. c:\windows\system32\dsquery.dll Directory Property UI [A ] 302. c:\windows\system32\dsuiext.dll Directory Context Menu Verbs [A ] 302. c:\windows\system32\dsuiext.dll MyDocs Copy Hook [A ] 303. c:\windows\system32\mydocs.dll MyDocs Drop Target [A ] 303. c:\windows\system32\mydocs.dll MyDocs Properties [A ] 303. c:\windows\system32\mydocs.dll Offline Files Menu [AM] 304. c:\windows\system32\cscui.dll Offline Files Folder Options [AM] 304. c:\windows\system32\cscui.dll 脱机文件夹 [AM] 304. c:\windows\system32\cscui.dll Microsoft Agent Character Property Sheet Handler [A ] 305. c:\windows\msagent\agentpsh.dll DfsShell [A ] 306. c:\windows\system32\dfsshlex.dll %DESC_PublishDropTarget% [A ] 307. c:\windows\system32\photowiz.dll .CAB file viewer [A ] 308. c:\windows\system32\cabview.dll 用户(&P)... [A ] 309. c:\program files\outlook express\wabfind.dll Windows Media Player Play as Playlist Context Menu Handler [A ] 310. c:\windows\system32\wmpshell.dll Windows Media Player Burn Audio CD Context Menu Handler [A ] 310. c:\windows\system32\wmpshell.dll Windows Media Player Add to Playlist Context Menu Handler [A ] 310. c:\windows\system32\wmpshell.dll Portable Media Devices [AM] 311. c:\windows\system32\audiodev.dll Portable Media Devices Menu [AM] 311. c:\windows\system32\audiodev.dll WinRAR shell extension [AM] 312. c:\program files\winrar\rarext.dll Microsoft Office HTML Icon Handler [AM] 313. c:\program files\microsoft office\office11\msohev.dll Web Folders [A ] 314. c:\program files\common files\microsoft shared\web folders\msonsext.dll 频道文件 [A ] 315. c:\windows\system32\cdfview.dll 频道快捷方式 [A ] 315. c:\windows\system32\cdfview.dll 频道句柄对象 [A ] 315. c:\windows\system32\cdfview.dll Channel Menu [A ] 315. c:\windows\system32\cdfview.dll Channel Properties [A ] 315. c:\windows\system32\cdfview.dll 通用即插即用设备 [AM] 316. c:\windows\system32\upnpui.dll NvCpl DesktopContext Class [A ] 317. c:\windows\system32\nvcpl.dll Play on my TV helper [A ] 317. c:\windows\system32\nvcpl.dll Desktop Explorer [A ] 318. c:\windows\system32\nvshell.dll Desktop Explorer Menu [A ] 318. c:\windows\system32\nvshell.dll nView Desktop Context Menu [A ] 318. c:\windows\system32\nvshell.dll Microsoft.XPS.Shell.Metadata.1 [A ] 319. c:\windows\system32\xpsshhdr.dll Microsoft.XPS.Shell.Thumbnail.1 [A ] 319. c:\windows\system32\xpsshhdr.dll RISING [AM] 320. c:\windows\system32\ravext.dll HaoZip Shell Extension [AM] 321. c:\program files\haozip\haozipext.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks {AEB6717E-7E19-11d0-97EE-00C04FD91972} [AM] 246. c:\windows\system32\shell32.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler Browseui 预加载程序 [AM] 280. c:\windows\system32\browseui.dll 组件类别缓存程序 [AM] 280. c:\windows\system32\browseui.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad PostBootReminder [AM] 246. c:\windows\system32\shell32.dll CDBurn [AM] 246. c:\windows\system32\shell32.dll WebCheck [AM] 293. c:\windows\system32\webcheck.dll SysTray [AM] 322. c:\windows\system32\stobject.dll UPnPMonitor [AM] 316. c:\windows\system32\upnpui.dll + 用户登陆自运行项目 + HKLM\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds StartupPrograms [A ] 323. c:\windows\system32\rdpclip.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Userinit [A ] 324. c:\windows\system32\userinit.exe + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon Shell [AM] 325. c:\windows\explorer.exe + HKCU\Software\Microsoft\Windows\CurrentVersion\Run ctfmon.exe [AM] 326. c:\windows\system32\ctfmon.exe PPS Accelerator [A ] 327. c:\program files\ppstream\ppsap.exe + HKLM\Software\Microsoft\Windows\CurrentVersion\Run NvCplDaemon [A ] 256. c:\windows\system32\rundll32.exe RavTray [A ] 328. c:\program files\rising\rav\rstray.exe runeip [AM] 329. c:\program files\rising\antispyware\rstray.exe RFWTray [AM] 330. c:\program files\rising\rfw\rstray.exe + 开机执行 + HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order BootExecute [A ] 331. c:\windows\system32\autochk.exe [A ] 332. c:\windows\system32\bsmain.exe + 映像劫持 + HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options Your Image File Name Here without a path [A ] 333. c:\windows\system32\ntsd.exe + HKCR\Folder\shell explore [AM] 325. c:\windows\explorer.exe open [AM] 325. c:\windows\explorer.exe + HKCR\.bat batfile\edit\Command [A ] 334. c:\windows\system32\notepad.exe batfile\print\Command [A ] 334. c:\windows\system32\notepad.exe + HKCR\.html 360seURL\Edit\Command [A ] 335. c:\program files\microsoft office\office11\msohtmed.exe 360seURL\Print\Command [A ] 335. c:\program files\microsoft office\office11\msohtmed.exe + HKCR\.htm 360seURL\Edit\Command [A ] 335. c:\program files\microsoft office\office11\msohtmed.exe 360seURL\Print\Command [A ] 335. c:\program files\microsoft office\office11\msohtmed.exe + HKCR\.log txtfile\open\Command [A ] 334. c:\windows\system32\notepad.exe txtfile\print\Command [A ] 334. c:\windows\system32\notepad.exe txtfile\printto\Command [A ] 334. c:\windows\system32\notepad.exe + HKCR\.txt txtfile\open\Command [A ] 334. c:\windows\system32\notepad.exe txtfile\print\Command [A ] 334. c:\windows\system32\notepad.exe txtfile\printto\Command [A ] 334. c:\windows\system32\notepad.exe + HKCR\.cmd cmdfile\edit\Command [A ] 334. c:\windows\system32\notepad.exe cmdfile\print\Command [A ] 334. c:\windows\system32\notepad.exe + HKCR\.scr scrfile\install\Command [A ] 256. c:\windows\system32\rundll32.exe + HKCR\.reg regfile\edit\Command [A ] 334. c:\windows\system32\notepad.exe regfile\open\Command [A ] 336. c:\windows\regedit.exe regfile\print\Command [A ] 334. c:\windows\system32\notepad.exe + HKCR\.vbs VBSFile\Edit\Command [A ] 334. c:\windows\system32\notepad.exe VBSFile\Open\Command [A ] 337. c:\windows\system32\wscript.exe VBSFile\Open2\Command [A ] 338. c:\windows\system32\cscript.exe VBSFile\Print\Command [A ] 334. c:\windows\system32\notepad.exe + HKCR\.js JSFile\Edit\Command [A ] 334. c:\windows\system32\notepad.exe JSFile\Open\Command [A ] 337. c:\windows\system32\wscript.exe JSFile\Open2\Command [A ] 338. c:\windows\system32\cscript.exe JSFile\Print\Command [A ] 334. c:\windows\system32\notepad.exe + HKCR\.mp3 Audio.mp3\open\Command [A ] 339. c:\program files\ttplayer\ttplayer.exe Audio.mp3\PlayList\Command [A ] 339. c:\program files\ttplayer\ttplayer.exe + HKCR\.ini inifile\open\Command [A ] 334. c:\windows\system32\notepad.exe inifile\print\Command [A ] 334. c:\windows\system32\notepad.exe + HKCR\.inf inffile\Install\Command [A ] 256. c:\windows\system32\rundll32.exe inffile\open\Command [A ] 334. c:\windows\system32\notepad.exe inffile\print\Command [A ] 334. c:\windows\system32\notepad.exe + 程序初始化和已知动态连接库 + HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs advapi32 [AM] 74. c:\windows\system32\advapi32.dll comdlg32 [AM] 340. c:\windows\system32\comdlg32.dll gdi32 [AM] 341. c:\windows\system32\gdi32.dll imagehlp [AM] 342. c:\windows\system32\imagehlp.dll kernel32 [AM] 343. c:\windows\system32\kernel32.dll lz32 [A ] 344. c:\windows\system32\lz32.dll ole32 [AM] 345. c:\windows\system32\ole32.dll oleaut32 [AM] 346. c:\windows\system32\oleaut32.dll olecli32 [A ] 347. c:\windows\system32\olecli32.dll olecnv32 [A ] 348. c:\windows\system32\olecnv32.dll olesvr32 [A ] 349. c:\windows\system32\olesvr32.dll olethk32 [A ] 350. c:\windows\system32\olethk32.dll rpcrt4 [AM] 351. c:\windows\system32\rpcrt4.dll shell32 [AM] 246. c:\windows\system32\shell32.dll url [A ] 352. c:\windows\system32\url.dll urlmon [AM] 247. c:\windows\system32\urlmon.dll user32 [AM] 353. c:\windows\system32\user32.dll version [AM] 354. c:\windows\system32\version.dll wininet [AM] 355. c:\windows\system32\wininet.dll wldap32 [AM] 356. c:\windows\system32\wldap32.dll + 打印机监控 + HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors BJ Language Monitor [AM] 357. c:\windows\system32\cnbjmon.dll Local Port [AM] 358. c:\windows\system32\localspl.dll Microsoft Document Imaging Writer Monitor [AM] 359. c:\windows\system32\mdimon.dll PJL Language Monitor [AM] 360. c:\windows\system32\pjlmon.dll Standard TCP/IP Port [AM] 361. c:\windows\system32\tcpmon.dll USB Monitor [AM] 362. c:\windows\system32\usbmon.dll + 安全验证 + HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders SecurityProviders [A ] 363. c:\windows\system32\msapsspc.dll [AM] 364. c:\windows\system32\schannel.dll [A ] 365. c:\windows\system32\digest.dll [A ] 366. c:\windows\system32\msnsspc.dll + HKLM\SYSTEM\CurrentControlSet\Control\Lsa Authentication Packages [AM] 367. c:\windows\system32\msv1_0.dll Notification Packages [AM] 368. c:\windows\system32\scecli.dll Security Packages [AM] 369. c:\windows\system32\kerberos.dll [AM] 367. c:\windows\system32\msv1_0.dll [AM] 364. c:\windows\system32\schannel.dll [AM] 370. c:\windows\system32\wdigest.dll + 正在运行的进程 + 000002a4(676) smss.exe 48580000[0000F000] [ M] 371. c:\windows\system32\smss.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll + 000002f4(756) csrss.exe 4A680000[00005000] [ M] 373. c:\windows\system32\csrss.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 75AA0000[0000B000] [ M] 374. c:\windows\system32\csrsrv.dll 75AB0000[00010000] [ M] 375. c:\windows\system32\basesrv.dll 764E0000[00054000] [ M] 376. c:\windows\system32\winsrv.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 75E00000[000AE000] [ M] 380. c:\windows\system32\sxs.dll + 0000030c(780) winlogon.exe 01000000[0007D000] [ M] 381. c:\windows\system32\winlogon.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 77FE0000[00012000] [ M] 382. c:\windows\system32\authz.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 758A0000[00008000] [ M] 385. c:\windows\system32\nddeapi.dll 75890000[0000A000] [ M] 386. c:\windows\system32\profmap.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 76BC0000[0000B000] [ M] 389. c:\windows\system32\psapi.dll 76B90000[0000F000] [ M] 390. c:\windows\system32\regapi.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 758D0000[000F1000] [ M] 398. c:\windows\system32\msgina.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 73540000[0003D000] [ M] 400. c:\windows\system32\odbc32.dll 76320000[00047000] [AM] 340. c:\windows\system32\comdlg32.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 1F840000[00017000] [ M] 402. c:\windows\system32\odbcint.dll 76E10000[00023000] [AM] 21. c:\windows\system32\shsvcs.dll 76B80000[00005000] [ M] 403. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 404. c:\windows\system32\sfc_os.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 76D70000[00022000] [ M] 405. c:\windows\system32\apphelp.dll 73640000[0002E000] [ M] 406. c:\windows\system32\msctfime.ime 72360000[0001A000] [ M] 407. c:\windows\system32\winscard.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76570000[0001C000] [AM] 236. c:\windows\system32\cscdll.dll 45D20000[00008000] [AM] 237. c:\windows\system32\dimsntfy.dll 758B0000[0001A000] [AM] 238. c:\windows\system32\wlnotify.dll 71A90000[00012000] [ M] 411. c:\windows\system32\mpr.dll 72F70000[00026000] [ M] 412. c:\windows\system32\winspool.drv 68000000[00036000] [ M] 413. c:\windows\system32\rsaenh.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 76590000[0004E000] [AM] 304. c:\windows\system32\cscui.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 76CB0000[00020000] [ M] 417. c:\windows\system32\ntmarta.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 72C90000[00009000] [ M] 418. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 419. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 421. c:\windows\system32\midimap.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 016D0000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll + 0000033c(828) services.exe 01000000[0001D000] [AM] 19. c:\windows\system32\services.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 5F9A0000[0000C000] [ M] 425. c:\windows\system32\ncobjapi.dll 75FF0000[00065000] [ M] 426. c:\windows\system32\msvcp60.dll 75840000[0004B000] [ M] 427. c:\windows\system32\scesrv.dll 77FE0000[00012000] [ M] 382. c:\windows\system32\authz.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 7E1E0000[00020000] [ M] 428. c:\windows\system32\umpnpmgr.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 46040000[0000F000] [ M] 430. c:\windows\apppatch\acadproc.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 76D70000[00022000] [ M] 405. c:\windows\system32\apphelp.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 76CE0000[00011000] [ M] 431. c:\windows\system32\eventlog.dll 76BC0000[0000B000] [ M] 389. c:\windows\system32\psapi.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll + 00000348(840) lsass.exe 01000000[00006000] [AM] 35. c:\windows\system32\lsass.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 74480000[000AF000] [ M] 432. c:\windows\system32\lsasrv.dll 71A90000[00012000] [ M] 411. c:\windows\system32\mpr.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 76770000[00014000] [ M] 433. c:\windows\system32\ntdsapi.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 743A0000[00068000] [ M] 435. c:\windows\system32\samsrv.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 4D200000[0000E000] [ M] 437. c:\windows\system32\msprivs.dll 71C70000[0004C000] [AM] 369. c:\windows\system32\kerberos.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 74410000[00065000] [ M] 438. c:\windows\system32\netlogon.dll 76790000[0002E000] [AM] 69. c:\windows\system32\w32time.dll 75FF0000[00065000] [ M] 426. c:\windows\system32\msvcp60.dll 767C0000[00028000] [AM] 364. c:\windows\system32\schannel.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 7EAC0000[00011000] [AM] 370. c:\windows\system32\wdigest.dll 68000000[00036000] [ M] 413. c:\windows\system32\rsaenh.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 74370000[0002D000] [AM] 368. c:\windows\system32\scecli.dll 74340000[0002F000] [ M] 439. c:\windows\system32\ipsecsvc.dll 77FE0000[00012000] [ M] 382. c:\windows\system32\authz.dll 73ED0000[000D0000] [ M] 440. c:\windows\system32\oakley.dll 742D0000[0000B000] [ M] 441. c:\windows\system32\winipsec.dll 74300000[0000B000] [ M] 442. c:\windows\system32\pstorsvc.dll 74320000[0001A000] [ M] 443. c:\windows\system32\psbase.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll 68100000[00026000] [ M] 446. c:\windows\system32\dssenh.dll + 000003e4(996) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 417. c:\windows\system32\ntmarta.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 76230000[00064000] [AM] 11. c:\windows\system32\rpcss.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 00770000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 761C0000[00051000] [AM] 61. c:\windows\system32\termsrv.dll 74ED0000[00006000] [ M] 447. c:\windows\system32\icaapi.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 77FE0000[00012000] [ M] 382. c:\windows\system32\authz.dll 75070000[0001F000] [ M] 448. c:\windows\system32\mstlsapi.dll 77C90000[00032000] [ M] 449. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 450. c:\windows\system32\adsldpc.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 76AF0000[00011000] [ M] 451. c:\windows\system32\atl.dll 76B90000[0000F000] [ M] 390. c:\windows\system32\regapi.dll 68000000[00036000] [ M] 413. c:\windows\system32\rsaenh.dll 76D70000[00022000] [ M] 405. c:\windows\system32\apphelp.dll + 00000430(1072) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 76230000[00064000] [AM] 11. c:\windows\system32\rpcss.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 00770000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 68000000[00036000] [ M] 413. c:\windows\system32\rsaenh.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 76F80000[00008000] [ M] 452. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll + 0000045c(1116) RavMonD.exe 00400000[0002F000] [AM] 47. c:\program files\rising\rav\ravmond.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 10000000[00032000] [ M] 454. c:\program files\rising\rav\combase.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 00E30000[00086000] [ M] 455. c:\program files\rising\rav\cnt09.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 00EE0000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 01360000[00019000] [ M] 456. c:\program files\rising\rav\moncomm.dll 01220000[0001D000] [ M] 457. c:\program files\rising\rav\monbase.dll 01250000[00084000] [ M] 458. c:\program files\rising\rav\rslog.dll 01300000[00018000] [ M] 459. c:\program files\rising\rav\mondrv.dll 01390000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 018E0000[0002E000] [ M] 460. c:\program files\rising\rav\defmon.dll 76BC0000[0000B000] [ M] 389. c:\windows\system32\psapi.dll 01920000[00010000] [ M] 461. c:\program files\rising\rav\moncom08.dll 01A40000[0007E000] [ M] 462. c:\program files\rising\rav\monrule.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 01AF0000[00027000] [ M] 463. c:\program files\rising\rav\filemon.dll 01B30000[0002F000] [ M] 464. c:\program files\rising\rav\mailmon.dll 01B70000[00015000] [ M] 465. c:\program files\rising\rav\hookweb.dll 01CB0000[0008C000] [ M] 466. c:\program files\rising\rav\rsindent.dll 01D40000[00019000] [ M] 467. c:\program files\rising\rav\syslay.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 01D80000[00018000] [ M] 468. c:\program files\rising\rav\taskplug.dll 01DB0000[00012000] [ M] 469. c:\program files\rising\rav\scansrvp.dll 021E0000[0001D000] [ M] 470. c:\program files\rising\rav\cnt08.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 02260000[00019000] [ M] 471. c:\program files\rising\rav\proccomm.dll 02290000[0000E000] [ M] 472. c:\program files\rising\rav\rsappmgr.dll 027D0000[00044000] [ M] 473. c:\program files\rising\rav\cfgdll.dll 02910000[0002D000] [ M] 474. c:\program files\rising\rav\comx3.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 02A80000[00020000] [ M] 475. c:\program files\rising\rav\hooksys.dll 02B30000[0001F000] [ M] 476. c:\program files\rising\rav\proccom.dll 02B50000[00024000] [ M] 477. c:\program files\rising\rav\rscommx2.dll 02DA0000[00013000] [ M] 478. c:\program files\rising\rav\hookcont.dll 02EE0000[00072000] [ M] 479. c:\program files\rising\rav\bacore.dll 76B80000[00005000] [ M] 403. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 404. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 03080000[0003B000] [ M] 480. c:\program files\rising\rav\recomp.dll 030D0000[00038000] [ M] 481. c:\program files\rising\rav\refs.dll 03330000[00030000] [ M] 482. c:\program files\rising\rav\viruslib.dll 03470000[00029000] [ M] 483. c:\program files\rising\rav\relibldr.dll 036F0000[0007E000] [ M] 484. c:\program files\rising\rav\rsnetsvr.dll 039B0000[00016000] [ M] 485. c:\program files\rising\rav\bawhite.dll 03C00000[0002B000] [ M] 486. c:\program files\rising\rav\rsstore.dll 03C60000[00043000] [ M] 487. c:\program files\rising\rav\scanner.dll 03CC0000[0001B000] [ M] 488. c:\program files\rising\rav\scanadd.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll 03E90000[00028000] [ M] 489. c:\program files\rising\rav\rstask.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 03EC0000[00018000] [ M] 490. c:\program files\rising\rav\rsstub.dll 049F0000[0001A000] [ M] 491. c:\program files\rising\rav\scansrv.dll 05F60000[0002B000] [ M] 492. c:\program files\rising\rav\scanpe.dll 05FA0000[00029000] [ M] 493. c:\program files\rising\rav\pearc.dll 06390000[0001B000] [ M] 494. c:\program files\rising\rav\ur000.dat 063C0000[00035000] [ M] 495. c:\program files\rising\rav\urutils.dll 06830000[00032000] [ M] 496. c:\program files\rising\rav\ffr.dll 06870000[00022000] [ M] 497. c:\program files\rising\rav\nvfile.dll 13AB0000[00045000] [ M] 498. c:\program files\rising\rav\scanexec.dll 07620000[002DD000] [ M] 499. c:\program files\rising\rav\unexe.dll 07900000[000D1000] [ M] 500. c:\program files\rising\rav\scanex.dll 07DB0000[00011000] [ M] 501. c:\program files\rising\rav\scantj.dll 0CB80000[00085000] [ M] 502. c:\program files\rising\rav\methodex.dll 0CD30000[000B9000] [ M] 503. c:\program files\rising\rav\revm.dll 0CAF0000[00022000] [ M] 504. c:\program files\rising\rav\pecompd.dll 0CB30000[0003E000] [ M] 505. c:\program files\rising\rav\heurex.dll 01140000[00023000] [ M] 506. c:\program files\rising\rav\scansct.dll 01BD0000[0001C000] [ M] 507. c:\program files\rising\rav\scanravt.dll 01BF0000[0009A000] [ M] 508. c:\program files\rising\rav\scanbt.dll 0D480000[00019000] [ M] 509. c:\program files\rising\rav\scanstub.dll 11A60000[0001D000] [ M] 510. c:\program files\rising\rav\extsfx.dll 11A90000[00019000] [ M] 511. c:\program files\rising\rav\sysmail.dll 143D0000[00011000] [ M] 512. c:\program files\rising\rav\ur001.dat 14EE0000[00012000] [ M] 513. c:\program files\rising\rav\ur025.dat 0E4C0000[00099000] [ M] 514. c:\program files\rising\rav\extarch.dll 12200000[00045000] [ M] 515. c:\program files\rising\rav\extole.dll 14210000[0003A000] [ M] 516. c:\program files\rising\rav\extmail.dll 12F70000[0000F000] [ M] 517. c:\program files\rising\rav\ur014.dat 12EB0000[0005A000] [ M] 518. c:\program files\rising\rav\extcomp.dll 00DB0000[0003A000] [ M] 519. c:\program files\rising\rav\scriptci.dll 01960000[0006C000] [ M] 520. c:\program files\rising\rav\uroutine.dll 019D0000[0000F000] [ M] 521. c:\program files\rising\rav\extalgo.dll 00D20000[00015000] [ M] 522. c:\program files\rising\rav\ur023.dat 00D50000[0001D000] [ M] 523. c:\program files\rising\rav\ur004.dat 00D80000[00022000] [ M] 524. c:\program files\rising\rav\scanmac.dll + 0000046c(1132) RavMonD.exe 00400000[0002F000] [AM] 48. c:\program files\rising\rfw\ravmond.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 10000000[00032000] [ M] 525. c:\program files\rising\rfw\combase.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 00EA0000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 01120000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 01770000[00086000] [ M] 526. c:\program files\rising\rfw\cnt09.dll 00E40000[0001D000] [ M] 527. c:\program files\rising\rfw\monbase.dll 00E70000[00019000] [ M] 528. c:\program files\rising\rfw\moncomm.dll 01800000[00082000] [ M] 529. c:\program files\rising\rfw\rfwlog.dll 018B0000[0000C000] [ M] 530. c:\program files\rising\rfw\rfwrule.dll 7C3A0000[0007B000] [ M] 531. c:\windows\system32\msvcp71.dll 7C340000[00056000] [ M] 532. c:\windows\system32\msvcr71.dll 018D0000[0004A000] [ M] 533. c:\program files\rising\rfw\rfwsrv.dll 01A20000[00019000] [ M] 534. c:\program files\rising\rfw\syslay.dll 01A60000[0001B000] [ M] 535. c:\program files\rising\rfw\mports.dll 01A90000[00011000] [ M] 536. c:\program files\rising\rfw\rfwdrvc.dll 01AC0000[00011000] [ M] 537. c:\program files\rising\rfw\rfwdrv.dll 76BC0000[0000B000] [ M] 389. c:\windows\system32\psapi.dll 01DF0000[0007E000] [ M] 538. c:\program files\rising\rfw\rsnetsvr.dll 01F80000[00011000] [ M] 539. c:\program files\rising\rfw\rfwarp.dll 01FB0000[0002D000] [ M] 540. c:\program files\rising\rfw\comx3.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 02330000[00014000] [ M] 541. c:\program files\rising\rfw\urlrule.dll 02460000[0003B000] [ M] 542. c:\program files\rising\rfw\recomp.dll 024B0000[00038000] [ M] 543. c:\program files\rising\rfw\refs.dll 02810000[00030000] [ M] 544. c:\program files\rising\rfw\viruslib.dll 02850000[00029000] [ M] 545. c:\program files\rising\rfw\relibldr.dll 028D0000[0003F000] [ M] 546. c:\program files\rising\rfw\rfwproxy.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll 23700000[00023000] [ M] 547. c:\program files\rising\rfw\rslang.dll 03010000[0008C000] [ M] 548. c:\program files\rising\rfw\rsindent.dll 030B0000[00018000] [ M] 549. c:\program files\rising\rfw\taskplug.dll 034E0000[0000E000] [ M] 550. c:\program files\rising\rfw\rsappmgr.dll 03500000[00044000] [ M] 551. c:\program files\rising\rfw\cfgdll.dll 03630000[00019000] [ M] 552. c:\program files\rising\rfw\proccomm.dll 03BC0000[0001C000] [ M] 553. c:\program files\rising\rfw\ncomm2.dll 04200000[00028000] [ M] 554. c:\program files\rising\rfw\rstask.dll 04230000[00018000] [ M] 555. c:\program files\rising\rfw\rsstub.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 01020000[0000E000] [ M] 556. c:\program files\rising\rfw\urllib.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 68000000[00036000] [ M] 413. c:\windows\system32\rsaenh.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 757D0000[00013000] [AM] 235. c:\windows\system32\cryptnet.dll 72240000[00005000] [ M] 557. c:\windows\system32\sensapi.dll 4A410000[00059000] [ M] 558. c:\windows\system32\winhttp.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll 76EB0000[0003C000] [ M] 560. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 561. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 562. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 563. c:\windows\system32\rtutils.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 7EAE0000[000A1000] [AM] 247. c:\windows\system32\urlmon.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll + 0000048c(1164) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 417. c:\windows\system32\ntmarta.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 00730000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 76E10000[00023000] [AM] 21. c:\windows\system32\shsvcs.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 7CC90000[00021000] [AM] 12. c:\windows\system32\dhcpcsvc.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 7DDB0000[0008C000] [AM] 78. c:\windows\system32\wzcsvc.dll 76E50000[0000E000] [ M] 563. c:\windows\system32\rtutils.dll 76D00000[00004000] [ M] 564. c:\windows\system32\wmi.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 4A340000[0000B000] [ M] 565. c:\windows\system32\eapolqec.dll 76AF0000[00011000] [ M] 451. c:\windows\system32\atl.dll 4A5A0000[00016000] [ M] 566. c:\windows\system32\qutil.dll 75FF0000[00065000] [ M] 426. c:\windows\system32\msvcp60.dll 42E00000[0000A000] [ M] 567. c:\windows\system32\dot3api.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 5DF20000[00106000] [ M] 568. c:\windows\system32\esent.dll 68000000[00036000] [ M] 413. c:\windows\system32\rsaenh.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 75DB0000[00027000] [ M] 569. c:\windows\system32\rastls.dll 75430000[00071000] [ M] 570. c:\windows\system32\cryptui.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 76D10000[00018000] [ M] 571. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 449. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 450. c:\windows\system32\adsldpc.dll 76EB0000[0003C000] [ M] 560. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 561. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 562. c:\windows\system32\tapi32.dll 767C0000[00028000] [AM] 364. c:\windows\system32\schannel.dll 72360000[0001A000] [ M] 407. c:\windows\system32\winscard.dll 76BC0000[0000B000] [ M] 389. c:\windows\system32\psapi.dll 70DE0000[0000D000] [AM] 5. c:\windows\system32\audiosrv.dll 75D90000[00016000] [ M] 572. c:\windows\system32\raschap.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 76850000[00024000] [AM] 26. c:\windows\system32\wkssvc.dll 76770000[00014000] [ M] 433. c:\windows\system32\ntdsapi.dll 768A0000[00044000] [AM] 20. c:\windows\system32\es.dll 74FF0000[0001A000] [AM] 25. c:\windows\system32\srvsvc.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 77CD0000[00033000] [AM] 36. c:\windows\system32\netman.dll 7DE40000[00199000] [AM] 282. c:\windows\system32\netshell.dll 76BD0000[0002D000] [ M] 573. c:\windows\system32\credui.dll 4A5C0000[00006000] [ M] 574. c:\windows\system32\dot3dlg.dll 5A990000[00028000] [ M] 575. c:\windows\system32\onex.dll 4A820000[00022000] [ M] 576. c:\windows\system32\eappcfg.dll 582E0000[0000E000] [ M] 577. c:\windows\system32\eappprxy.dll 72FA0000[00010000] [ M] 578. c:\windows\system32\wzcsapi.dll 73C90000[00008000] [AM] 52. c:\windows\system32\seclogon.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 75100000[0002E000] [AM] 56. c:\windows\system32\srsvc.dll 74A30000[00008000] [ M] 579. c:\windows\system32\powrprof.dll 74FD0000[00019000] [AM] 63. c:\windows\system32\trkwks.dll 76790000[0002E000] [AM] 69. c:\windows\system32\w32time.dll 67180000[00028000] [AM] 72. c:\windows\system32\wbem\wmisvc.dll 75340000[0006D000] [ M] 580. c:\windows\system32\vssapi.dll 50000000[00005000] [AM] 77. c:\windows\system32\wuauserv.dll 50040000[00119000] [ M] 581. c:\windows\system32\wuaueng.dll 751C0000[00028000] [ M] 582. c:\windows\system32\advpack.dll 750B0000[00013000] [ M] 583. c:\windows\system32\cabinet.dll 602D0000[0000B000] [ M] 584. c:\windows\system32\mspatcha.dll 76B80000[00005000] [ M] 403. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 404. c:\windows\system32\sfc_os.dll 76750000[00009000] [ M] 585. c:\windows\system32\shfolder.dll 4A410000[00059000] [ M] 558. c:\windows\system32\winhttp.dll 72F70000[00026000] [ M] 412. c:\windows\system32\winspool.drv 72260000[0000D000] [AM] 53. c:\windows\system32\sens.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll 76BA0000[00016000] [AM] 7. c:\windows\system32\browser.dll 75E00000[000AE000] [ M] 380. c:\windows\system32\sxs.dll 75690000[0013C000] [ M] 586. c:\windows\system32\comsvcs.dll 75090000[00014000] [ M] 587. c:\windows\system32\colbact.dll 75050000[00013000] [ M] 588. c:\windows\system32\mtxclu.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll 762A0000[00012000] [ M] 589. c:\windows\system32\clusapi.dll 75010000[00012000] [ M] 590. c:\windows\system32\resutils.dll 66700000[00052000] [AM] 54. c:\windows\system32\ipnathlp.dll 77FE0000[00012000] [ M] 382. c:\windows\system32\authz.dll 75D00000[00085000] [ M] 591. c:\windows\system32\wbem\wbemcore.dll 75270000[0003F000] [ M] 592. c:\windows\system32\wbem\esscli.dll 751F0000[00037000] [ M] 593. c:\windows\system32\wbem\wbemcomn.dll 755F0000[00076000] [ M] 594. c:\windows\system32\wbem\fastprox.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll 74F80000[00019000] [ M] 595. c:\windows\system32\wbem\wmiutils.dll 75160000[0002F000] [ M] 596. c:\windows\system32\wbem\repdrvfs.dll 3FCC0000[00072000] [ M] 597. c:\windows\system32\wbem\wmiprvsd.dll 5F9A0000[0000C000] [ M] 425. c:\windows\system32\ncobjapi.dll 752F0000[00046000] [ M] 598. c:\windows\system32\wbem\wbemess.dll 75550000[00092000] [ M] 599. c:\windows\system32\netcfgx.dll 5F970000[0000E000] [ M] 600. c:\windows\system32\wbem\ncprov.dll 7E510000[00032000] [AM] 42. c:\windows\system32\rasmans.dll 742D0000[0000B000] [ M] 441. c:\windows\system32\winipsec.dll 73350000[0003F000] [AM] 60. c:\windows\system32\tapisrv.dll 75130000[00011000] [ M] 601. c:\windows\system32\rastapi.dll 57980000[00035000] [ M] 602. c:\windows\system32\unimdm.tsp 71F90000[00007000] [ M] 603. c:\windows\system32\uniplat.dll 57A00000[0000B000] [ M] 604. c:\windows\system32\kmddsp.tsp 579E0000[00010000] [ M] 605. c:\windows\system32\ndptsp.tsp 57A10000[00008000] [ M] 606. c:\windows\system32\ipconf.tsp 57A30000[00045000] [ M] 607. c:\windows\system32\h323.tsp 57A20000[0000A000] [ M] 608. c:\windows\system32\hidphone.tsp 68BE0000[00009000] [ M] 609. c:\windows\system32\hid.dll 721D0000[00037000] [ M] 610. c:\windows\system32\rasppp.dll 72420000[00006000] [ M] 611. c:\windows\system32\ntlsapi.dll 71C70000[0004C000] [AM] 369. c:\windows\system32\kerberos.dll 4A930000[00013000] [ M] 612. c:\windows\system32\rasqec.dll 3FDE0000[00441000] [ M] 613. c:\windows\system32\msi.dll 754B0000[00096000] [ M] 614. c:\windows\system32\rasdlg.dll 76D70000[00022000] [ M] 405. c:\windows\system32\apphelp.dll 50640000[0000C000] [ M] 615. c:\windows\system32\wups.dll 74E30000[0000E000] [ M] 616. c:\windows\system32\wbem\wbemsvc.dll + 00000500(1280) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 76740000[0000D000] [AM] 15. c:\windows\system32\dnsrslvr.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 68000000[00036000] [ M] 413. c:\windows\system32\rsaenh.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll + 00000568(1384) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 417. c:\windows\system32\ntmarta.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 00730000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 74BA0000[00006000] [AM] 28. c:\windows\system32\lmhsvc.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll + 000005d0(1488) spoolsv.exe 01000000[00010000] [AM] 55. c:\windows\system32\spoolsv.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 74240000[00015000] [ M] 617. c:\windows\system32\spoolss.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll 74C10000[00056000] [AM] 358. c:\windows\system32\localspl.dll 76C30000[00028000] [ M] 404. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 72F70000[00026000] [ M] 412. c:\windows\system32\winspool.drv 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 74200000[0000D000] [AM] 357. c:\windows\system32\cnbjmon.dll 00A00000[00008000] [AM] 359. c:\windows\system32\mdimon.dll 3FDE0000[00441000] [ M] 613. c:\windows\system32\msi.dll 741E0000[00007000] [AM] 360. c:\windows\system32\pjlmon.dll 72390000[0000E000] [AM] 361. c:\windows\system32\tcpmon.dll 72380000[00007000] [AM] 362. c:\windows\system32\usbmon.dll 00A10000[00008000] [ M] 618. c:\windows\system32\spool\prtprocs\w32x86\mdippr.dll 3F420000[0001B000] [ M] 619. c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 76F80000[00008000] [ M] 452. c:\windows\system32\winrnr.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 75AC0000[00024000] [ M] 620. c:\windows\system32\win32spl.dll 71C00000[00007000] [ M] 621. c:\windows\system32\netrap.dll 76770000[00014000] [ M] 433. c:\windows\system32\ntdsapi.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 01010000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 74260000[00015000] [ M] 622. c:\windows\system32\inetpp.dll + 00000664(1636) rstray.exe 00400000[00034000] [AM] 329. c:\program files\rising\antispyware\rstray.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 10000000[0004C000] [ M] 623. c:\program files\rising\antispyware\rsmginfo.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 406. c:\windows\system32\msctfime.ime 76AF0000[00011000] [ M] 451. c:\windows\system32\atl.dll 23800000[00022000] [ M] 624. c:\program files\rising\antispyware\rsxml.dll 7C3A0000[0007B000] [ M] 625. c:\program files\rising\antispyware\msvcp71.dll 7C340000[00056000] [ M] 626. c:\program files\rising\antispyware\msvcr71.dll 74680000[0004C000] [ M] 627. c:\windows\system32\msctf.dll 00BC0000[00024000] [ M] 628. c:\program files\rising\antispyware\comserv.dll 00BF0000[00019000] [ M] 629. c:\program files\rising\antispyware\syslay.dll 23700000[00026000] [ M] 630. c:\program files\rising\antispyware\rscommon.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 00C30000[0002D000] [ M] 631. c:\program files\rising\antispyware\comx3.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll + 00000684(1668) Explorer.EXE 01000000[000F1000] [AM] 325. c:\windows\explorer.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 75EF0000[000FD000] [AM] 280. c:\windows\system32\browseui.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 7E550000[00173000] [AM] 240. c:\windows\system32\shdocvw.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 75430000[00071000] [ M] 570. c:\windows\system32\cryptui.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 73640000[0002E000] [ M] 406. c:\windows\system32\msctfime.ime 76D70000[00022000] [ M] 405. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 76590000[0004E000] [AM] 304. c:\windows\system32\cscui.dll 76570000[0001C000] [AM] 236. c:\windows\system32\cscdll.dll 5B680000[0006E000] [AM] 258. c:\windows\system32\themeui.dll 762F0000[00005000] [ M] 632. c:\windows\system32\msimg32.dll 01100000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 71CC0000[0001B000] [ M] 633. c:\windows\system32\actxprxy.dll 5FE40000[00031000] [ M] 634. c:\windows\system32\msutb.dll 74680000[0004C000] [ M] 627. c:\windows\system32\msctf.dll 76950000[00008000] [ M] 635. c:\windows\system32\linkinfo.dll 76960000[00024000] [AM] 265. c:\windows\system32\ntshrui.dll 76AF0000[00011000] [ M] 451. c:\windows\system32\atl.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 7DE40000[00199000] [AM] 282. c:\windows\system32\netshell.dll 76BD0000[0002D000] [ M] 573. c:\windows\system32\credui.dll 42E00000[0000A000] [ M] 567. c:\windows\system32\dot3api.dll 76E50000[0000E000] [ M] 563. c:\windows\system32\rtutils.dll 4A5C0000[00006000] [ M] 574. c:\windows\system32\dot3dlg.dll 5A990000[00028000] [ M] 575. c:\windows\system32\onex.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 4A820000[00022000] [ M] 576. c:\windows\system32\eappcfg.dll 75FF0000[00065000] [ M] 426. c:\windows\system32\msvcp60.dll 582E0000[0000E000] [ M] 577. c:\windows\system32\eappprxy.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 3FDE0000[00441000] [ M] 613. c:\windows\system32\msi.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 74A90000[00044000] [AM] 293. c:\windows\system32\webcheck.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll 74A60000[00020000] [AM] 322. c:\windows\system32\stobject.dll 74A50000[0000A000] [ M] 636. c:\windows\system32\batmeter.dll 74A30000[00008000] [ M] 579. c:\windows\system32\powrprof.dll 5AFD0000[0003D000] [AM] 316. c:\windows\system32\upnpui.dll 72C90000[00009000] [ M] 418. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 419. c:\windows\system32\msacm32.drv 77BA0000[00007000] [ M] 421. c:\windows\system32\midimap.dll 754B0000[00096000] [ M] 614. c:\windows\system32\rasdlg.dll 76D10000[00018000] [ M] 571. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 449. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 450. c:\windows\system32\adsldpc.dll 76EB0000[0003C000] [ M] 560. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 561. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 562. c:\windows\system32\tapi32.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 75E00000[000AE000] [ M] 380. c:\windows\system32\sxs.dll 71800000[0007C000] [ M] 637. c:\windows\system32\shdoclc.dll 68000000[00036000] [ M] 413. c:\windows\system32\rsaenh.dll 71A90000[00012000] [ M] 411. c:\windows\system32\mpr.dll 75ED0000[00007000] [ M] 638. c:\windows\system32\drprov.dll 71B90000[0000E000] [AM] 27. c:\windows\system32\ntlanman.dll 71C50000[00015000] [ M] 639. c:\windows\system32\netui0.dll 71C10000[00040000] [ M] 640. c:\windows\system32\netui1.dll 71C00000[00007000] [ M] 621. c:\windows\system32\netrap.dll 75EE0000[0000A000] [AM] 71. c:\windows\system32\davclnt.dll 027A0000[0002E000] [AM] 312. c:\program files\winrar\rarext.dll 02870000[00024000] [AM] 320. c:\windows\system32\ravext.dll 03C30000[00024000] [ M] 641. c:\windows\system32\kakaext.dll 03C60000[00029000] [AM] 321. c:\program files\haozip\haozipext.dll 71600000[0000F000] [ M] 642. c:\windows\system32\browselc.dll 7EAE0000[000A1000] [AM] 247. c:\windows\system32\urlmon.dll 7C120000[00019000] [ M] 643. c:\windows\system32\atl71.dll 7C3A0000[0007B000] [ M] 531. c:\windows\system32\msvcp71.dll 7C340000[00056000] [ M] 532. c:\windows\system32\msvcr71.dll 03D60000[00017000] [AM] 243. c:\program files\thunder network\thunder\comdlls\xunleibho_now.dll 74BE0000[0002C000] [ M] 644. c:\windows\system32\oleacc.dll 03D90000[0000E000] [ M] 645. c:\documents and settings\all users\application data\thunder network\thunder_76e1789e-695f-4641-943c-d7c6a12db2c7_\components\resworker\dsbho_00.dll 03DB0000[0001E000] [ M] 646. c:\documents and settings\all users\application data\thunder network\thunder_76e1789e-695f-4641-943c-d7c6a12db2c7_\components\resworker\dataprocessor_00.dll 6C520000[0004D000] [ M] 647. c:\windows\system32\duser.dll 74CF0000[00091000] [ M] 648. c:\windows\system32\mlang.dll 746D0000[00042000] [AM] 287. c:\windows\system32\mstask.dll 76320000[00047000] [AM] 340. c:\windows\system32\comdlg32.dll 76770000[00014000] [ M] 433. c:\windows\system32\ntdsapi.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 03FD0000[0003C000] [AM] 241. c:\program files\thunder network\thunder\comdlls\tdatonce_now.dll 758D0000[000F1000] [ M] 398. c:\windows\system32\msgina.dll 73540000[0003D000] [ M] 400. c:\windows\system32\odbc32.dll 1F840000[00017000] [ M] 402. c:\windows\system32\odbcint.dll 325C0000[00012000] [AM] 313. c:\program files\microsoft office\office11\msohev.dll 5A540000[00090000] [AM] 283. c:\windows\system32\wiashext.dll 73B10000[00013000] [ M] 649. c:\windows\system32\sti.dll 74A40000[00007000] [ M] 650. c:\windows\system32\cfgmgr32.dll 096C0000[0007A000] [AM] 311. c:\windows\system32\audiodev.dll 086D0000[00247000] [ M] 651. c:\windows\system32\wmvcore.dll 070D0000[0003B000] [ M] 652. c:\windows\system32\wmasf.dll 6CFE0000[00172000] [AM] 271. c:\windows\system32\diskcopy.dll 11000000[00008000] [ M] 653. c:\windows\system32\srcd.dll 74020000[0014D000] [ M] 654. c:\windows\system32\msvbvm50.dll + 000006c4(1732) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 76CB0000[00020000] [ M] 417. c:\windows\system32\ntmarta.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 00730000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 5A720000[00015000] [AM] 70. c:\windows\system32\webclnt.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 10000000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll + 00000714(1812) nvsvc32.exe 00400000[0002C000] [AM] 39. c:\windows\system32\nvsvc32.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 74A30000[00008000] [ M] 579. c:\windows\system32\powrprof.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 00A10000[0006A000] [ M] 655. c:\windows\system32\nvapi.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll + 00000734(1844) svchost.exe 01000000[00006000] [AM] 1. c:\windows\system32\svchost.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 749C0000[00054000] [AM] 58. c:\windows\system32\wiaservc.dll 74A40000[00007000] [ M] 650. c:\windows\system32\cfgmgr32.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 73AA0000[00015000] [ M] 656. c:\windows\system32\mscms.dll 72F70000[00026000] [ M] 412. c:\windows\system32\winspool.drv 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 00730000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 5A4F0000[00026000] [ M] 657. c:\windows\system32\wiavusd.dll 76750000[00009000] [ M] 585. c:\windows\system32\shfolder.dll 71CC0000[0001B000] [ M] 633. c:\windows\system32\actxprxy.dll 73B10000[00013000] [ M] 649. c:\windows\system32\sti.dll + 000007e8(2024) RsTray.exe 00400000[0002C000] [AM] 330. c:\program files\rising\rfw\rstray.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 73640000[0002E000] [ M] 406. c:\windows\system32\msctfime.ime 10000000[00031000] [ M] 658. c:\program files\rising\rfw\comserv.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 23700000[00023000] [ M] 547. c:\program files\rising\rfw\rslang.dll 00990000[0002D000] [ M] 540. c:\program files\rising\rfw\comx3.dll 009C0000[00019000] [ M] 534. c:\program files\rising\rfw\syslay.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 00CC0000[00019000] [ M] 552. c:\program files\rising\rfw\proccomm.dll 23800000[00039000] [ M] 659. c:\program files\rising\rfw\rsxml.dll 00F00000[00013000] [ M] 660. c:\program files\rising\rfw\monstate.dll 00F30000[0000C000] [ M] 530. c:\program files\rising\rfw\rfwrule.dll 7C3A0000[0007B000] [ M] 531. c:\windows\system32\msvcp71.dll 7C340000[00056000] [ M] 532. c:\windows\system32\msvcr71.dll 00F50000[00017000] [ M] 661. c:\program files\rising\rfw\rsconf.dll 00F80000[00022000] [ M] 662. c:\program files\rising\rfw\rspalvd.dll 26600000[00078000] [ M] 663. c:\program files\rising\rfw\rsguilib.dll 33000000[00026000] [ M] 664. c:\program files\rising\rfw\ravbintl.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 00FE0000[0007E000] [ M] 538. c:\program files\rising\rfw\rsnetsvr.dll 01080000[0004C000] [ M] 665. c:\program files\rising\rfw\rsmginfo.dll 010E0000[00052000] [ M] 666. c:\program files\rising\rfw\rfwtray.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 01140000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 32000000[00088000] [ M] 667. c:\program files\rising\rfw\ravppops.dll 01180000[0000E000] [ M] 550. c:\program files\rising\rfw\rsappmgr.dll 011A0000[00044000] [ M] 551. c:\program files\rising\rfw\cfgdll.dll 74680000[0004C000] [ M] 627. c:\windows\system32\msctf.dll 23900000[00040000] [ M] 668. c:\program files\rising\rfw\pngdll.dll 01A50000[00082000] [ M] 529. c:\program files\rising\rfw\rfwlog.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 76D10000[00018000] [ M] 571. c:\windows\system32\mprapi.dll 77C90000[00032000] [ M] 449. c:\windows\system32\activeds.dll 76DE0000[00025000] [ M] 450. c:\windows\system32\adsldpc.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 76AF0000[00011000] [ M] 451. c:\windows\system32\atl.dll 76E50000[0000E000] [ M] 563. c:\windows\system32\rtutils.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll 76EB0000[0003C000] [ M] 560. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 561. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 562. c:\windows\system32\tapi32.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 7EAE0000[000A1000] [AM] 247. c:\windows\system32\urlmon.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll + 00000808(2056) ctfmon.exe 00400000[00006000] [AM] 326. c:\windows\system32\ctfmon.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 74680000[0004C000] [ M] 627. c:\windows\system32\msctf.dll 5FE40000[00031000] [ M] 634. c:\windows\system32\msutb.dll 5CC30000[00026000] [ M] 429. c:\windows\system32\shimeng.dll 58FB0000[001CA000] [ M] 436. c:\windows\apppatch\acgenral.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 73640000[0002E000] [ M] 406. c:\windows\system32\msctfime.ime + 00000ac4(2756) RsMain.exe 00400000[00021000] [ M] 669. c:\program files\rising\rav\rsmain.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 74680000[0004C000] [ M] 627. c:\windows\system32\msctf.dll 10000000[00040000] [ M] 670. c:\program files\rising\rav\rspalmgr.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 23800000[00039000] [ M] 671. c:\program files\rising\rav\rsxml.dll 26600000[00078000] [ M] 672. c:\program files\rising\rav\rsguilib.dll 23700000[00023000] [ M] 673. c:\program files\rising\rav\rslang.dll 00AF0000[00017000] [ M] 674. c:\program files\rising\rav\rsconf.dll 00B20000[00022000] [ M] 675. c:\program files\rising\rav\rspalvd.dll 32000000[00088000] [ M] 676. c:\program files\rising\rav\ravppops.dll 33000000[00026000] [ M] 677. c:\program files\rising\rav\ravbintl.dll 00B70000[00019000] [ M] 467. c:\program files\rising\rav\syslay.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 00BB0000[00040000] [ M] 678. c:\program files\rising\rav\ravpsafe.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 00C00000[00013000] [ M] 679. c:\program files\rising\rav\monstate.dll 00C50000[00080000] [ M] 680. c:\program files\rising\rav\scanprxy.dll 00CD0000[00060000] [ M] 681. c:\program files\rising\rav\pubcfg.dll 00D40000[00013000] [ M] 682. c:\program files\rising\rav\rsscanbd.dll 23900000[00040000] [ M] 683. c:\program files\rising\rav\pngdll.dll 00E70000[0000E000] [ M] 472. c:\program files\rising\rav\rsappmgr.dll 00ED0000[00044000] [ M] 473. c:\program files\rising\rav\cfgdll.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 01010000[0002D000] [ M] 474. c:\program files\rising\rav\comx3.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 01180000[00019000] [ M] 471. c:\program files\rising\rav\proccomm.dll 30000000[000BB000] [ M] 684. c:\program files\rising\rav\ravxpage.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 31000000[00025000] [ M] 685. c:\program files\rising\rav\ravxmons.dll 01660000[00030000] [ M] 686. c:\program files\rising\rav\ravptool.dll 018D0000[00087000] [ M] 687. c:\program files\rising\rav\log2file.dll 76B80000[00005000] [ M] 403. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 404. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 73640000[0002E000] [ M] 406. c:\windows\system32\msctfime.ime 020E0000[00030000] [ M] 688. c:\program files\rising\rav\htmllib.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 02CB0000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 76EB0000[0003C000] [ M] 560. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 561. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 562. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 563. c:\windows\system32\rtutils.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 7EAE0000[000A1000] [AM] 247. c:\windows\system32\urlmon.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll 70E20000[00013000] [ M] 689. c:\windows\system32\asycfilt.dll 76D70000[00022000] [ M] 405. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 76590000[0004E000] [AM] 304. c:\windows\system32\cscui.dll 76570000[0001C000] [AM] 236. c:\windows\system32\cscdll.dll + 00000cc4(3268) IEXPLORE.EXE 00400000[00019000] [ M] 690. c:\program files\internet explorer\iexplore.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 7E550000[00173000] [AM] 240. c:\windows\system32\shdocvw.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 75430000[00071000] [ M] 570. c:\windows\system32\cryptui.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 5D170000[0009A000] [ M] 399. c:\windows\system32\comctl32.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 74680000[0004C000] [ M] 627. c:\windows\system32\msctf.dll 75EF0000[000FD000] [AM] 280. c:\windows\system32\browseui.dll 71600000[0000F000] [ M] 642. c:\windows\system32\browselc.dll 76D70000[00022000] [ M] 405. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 73640000[0002E000] [ M] 406. c:\windows\system32\msctfime.ime 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 7EAE0000[000A1000] [AM] 247. c:\windows\system32\urlmon.dll 10000000[0003C000] [AM] 241. c:\program files\thunder network\thunder\comdlls\tdatonce_now.dll 7C120000[00019000] [ M] 643. c:\windows\system32\atl71.dll 7C3A0000[0007B000] [ M] 531. c:\windows\system32\msvcp71.dll 7C340000[00056000] [ M] 532. c:\windows\system32\msvcr71.dll 00FB0000[0003B000] [AM] 242. c:\program files\9ptv2009\kernel\pipi\jfcheck.dll 01100000[00017000] [AM] 243. c:\program files\thunder network\thunder\comdlls\xunleibho_now.dll 74BE0000[0002C000] [ M] 644. c:\windows\system32\oleacc.dll 75FF0000[00065000] [ M] 426. c:\windows\system32\msvcp60.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 01120000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll 011A0000[0000E000] [ M] 645. c:\documents and settings\all users\application data\thunder network\thunder_76e1789e-695f-4641-943c-d7c6a12db2c7_\components\resworker\dsbho_00.dll 011B0000[0001E000] [ M] 646. c:\documents and settings\all users\application data\thunder network\thunder_76e1789e-695f-4641-943c-d7c6a12db2c7_\components\resworker\dataprocessor_00.dll 01AB0000[00018000] [AM] 244. c:\windows\system32\urlfilter.dll 76AF0000[00011000] [ M] 451. c:\windows\system32\atl.dll 01AD0000[00011000] [ M] 691. c:\program files\rising\antispyware\urlrule.dll 76EB0000[0003C000] [ M] 560. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 561. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 562. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 563. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 75E00000[000AE000] [ M] 380. c:\windows\system32\sxs.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 71800000[0007C000] [ M] 637. c:\windows\system32\shdoclc.dll 01FE0000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 74CF0000[00091000] [ M] 648. c:\windows\system32\mlang.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll 3FDE0000[00441000] [ M] 613. c:\windows\system32\msi.dll 7E210000[002F8000] [AM] 249. c:\windows\system32\mshtml.dll 74620000[00027000] [ M] 692. c:\windows\system32\msls31.dll 76BC0000[0000B000] [ M] 389. c:\windows\system32\psapi.dll 74650000[0002A000] [ M] 693. c:\windows\system32\msimtf.dll 325C0000[00012000] [AM] 313. c:\program files\microsoft office\office11\msohev.dll 03280000[00018000] [ M] 694. c:\program files\rising\rav\ravscrch.dll 75BC0000[0007D000] [ M] 695. c:\windows\system32\jscript.dll 73270000[00069000] [ M] 696. c:\windows\system32\vbscript.dll 72C90000[00009000] [ M] 418. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 419. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 421. c:\windows\system32\midimap.dll 5DD50000[00114000] [ M] 697. c:\windows\system32\msxml3.dll 20000000[00113000] [ M] 698. c:\windows\system32\xpsp3res.dll 71CC0000[0001B000] [ M] 633. c:\windows\system32\actxprxy.dll 66B50000[0000C000] [ M] 699. c:\windows\system32\imgutil.dll 5E400000[0000C000] [ M] 700. c:\windows\system32\pngfilt.dll 03D10000[004A3000] [ M] 701. c:\windows\system32\macromed\flash\flash10c.ocx 76320000[00047000] [AM] 340. c:\windows\system32\comdlg32.dll 73AA0000[00015000] [ M] 656. c:\windows\system32\mscms.dll 72F70000[00026000] [ M] 412. c:\windows\system32\winspool.drv 60150000[00026000] [ M] 702. c:\windows\system32\msrating.dll 60180000[00011000] [ M] 703. c:\windows\system32\msratelc.dll 6C140000[00036000] [ M] 704. c:\windows\system32\dxtrans.dll 6D7C0000[0000A000] [ M] 705. c:\windows\system32\ddrawex.dll 736D0000[0004B000] [ M] 706. c:\windows\system32\ddraw.dll 73B30000[00006000] [ M] 707. c:\windows\system32\dciman32.dll 6C180000[0005A000] [ M] 708. c:\windows\system32\dxtmsft.dll 767C0000[00028000] [AM] 364. c:\windows\system32\schannel.dll 753B0000[00071000] [ M] 709. c:\windows\system32\mshtmled.dll 73900000[0002E000] [ M] 710. c:\windows\system32\jpwb.ime 04E60000[0020C000] [ M] 711. c:\windows\system32\sogoupy.ime 762F0000[00005000] [ M] 632. c:\windows\system32\msimg32.dll 76CB0000[00020000] [ M] 417. c:\windows\system32\ntmarta.dll 71B70000[00013000] [ M] 414. c:\windows\system32\samlib.dll 027F0000[00032000] [ M] 712. c:\program files\sogouinput\4.2.3.2813\resource.dll 67140000[00040000] [ M] 713. c:\windows\system32\iepeers.dll 5E1B0000[0000D000] [ M] 714. c:\windows\system32\pstorec.dll + 00000e30(3632) ras.exe 00400000[0000B000] [ M] 715. c:\program files\rising\antispyware\ras.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 7C140000[00103000] [ M] 716. c:\program files\rising\antispyware\mfc71.dll 7C340000[00056000] [ M] 626. c:\program files\rising\antispyware\msvcr71.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 74680000[0004C000] [ M] 627. c:\windows\system32\msctf.dll 10000000[00047000] [ M] 717. c:\program files\rising\antispyware\kakamgr.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 7C3A0000[0007B000] [ M] 625. c:\program files\rising\antispyware\msvcp71.dll 00A50000[00019000] [ M] 629. c:\program files\rising\antispyware\syslay.dll 00A80000[0001F000] [ M] 476. c:\program files\rising\rav\proccom.dll 00AA0000[00024000] [ M] 718. c:\program files\rising\antispyware\rscommx2.dll 00BF0000[0002D000] [ M] 631. c:\program files\rising\antispyware\comx3.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 00E90000[00058000] [ M] 719. c:\program files\rising\antispyware\dbmgr.dll 23800000[00022000] [ M] 624. c:\program files\rising\antispyware\rsxml.dll 00D60000[0002E000] [ M] 720. c:\program files\rising\antispyware\pweb.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 00FF0000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 74D90000[0006D000] [ M] 721. c:\windows\system32\riched20.dll 01270000[0010D000] [ M] 722. c:\program files\rising\antispyware\pscan.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 01020000[00034000] [ M] 723. c:\program files\rising\antispyware\ncomm.dll 01080000[00070000] [ M] 724. c:\program files\rising\antispyware\pset.dll 01160000[00027000] [ M] 725. c:\program files\rising\antispyware\pdefend.dll 01190000[000B7000] [ M] 726. c:\program files\rising\antispyware\ptools.dll 76320000[00047000] [AM] 340. c:\windows\system32\comdlg32.dll 76B80000[00005000] [ M] 403. c:\windows\system32\sfc.dll 76C30000[00028000] [ M] 404. c:\windows\system32\sfc_os.dll 76C00000[0002E000] [ M] 393. c:\windows\system32\wintrust.dll 76C60000[00028000] [AM] 342. c:\windows\system32\imagehlp.dll 01480000[00075000] [ M] 727. c:\program files\rising\antispyware\psysinfo.dll 76D70000[00022000] [ M] 405. c:\windows\system32\apphelp.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 7E550000[00173000] [AM] 240. c:\windows\system32\shdocvw.dll 75430000[00071000] [ M] 570. c:\windows\system32\cryptui.dll 76F30000[0002C000] [AM] 356. c:\windows\system32\wldap32.dll 76060000[00156000] [ M] 391. c:\windows\system32\setupapi.dll 23900000[00040000] [ M] 728. c:\program files\rising\antispyware\pngdll.dll 73640000[0002E000] [ M] 406. c:\windows\system32\msctfime.ime 75E00000[000AE000] [ M] 380. c:\windows\system32\sxs.dll 7EAE0000[000A1000] [AM] 247. c:\windows\system32\urlmon.dll 71800000[0007C000] [ M] 637. c:\windows\system32\shdoclc.dll 02A60000[00549000] [ M] 424. c:\windows\system32\xpsp2res.dll 74CF0000[00091000] [ M] 648. c:\windows\system32\mlang.dll 7E210000[002F8000] [AM] 249. c:\windows\system32\mshtml.dll 74620000[00027000] [ M] 692. c:\windows\system32\msls31.dll 76BC0000[0000B000] [ M] 389. c:\windows\system32\psapi.dll 74910000[000AE000] [AM] 252. c:\windows\system32\inetcomm.dll 75B20000[00022000] [ M] 729. c:\windows\system32\msoert2.dll 025F0000[0000C000] [ M] 730. c:\windows\system32\inetres.dll 74650000[0002A000] [ M] 693. c:\windows\system32\msimtf.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll 76EB0000[0003C000] [ M] 560. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 561. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 562. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 563. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 035A0000[00018000] [ M] 694. c:\program files\rising\rav\ravscrch.dll 75BC0000[0007D000] [ M] 695. c:\windows\system32\jscript.dll 73270000[00069000] [ M] 696. c:\windows\system32\vbscript.dll 04210000[004A3000] [ M] 701. c:\windows\system32\macromed\flash\flash10c.ocx 73AA0000[00015000] [ M] 656. c:\windows\system32\mscms.dll 72F70000[00026000] [ M] 412. c:\windows\system32\winspool.drv 72C90000[00009000] [ M] 418. c:\windows\system32\wdmaud.drv 72C80000[00008000] [ M] 419. c:\windows\system32\msacm32.drv 77BB0000[00015000] [ M] 420. c:\windows\system32\msacm32.dll 77BA0000[00007000] [ M] 421. c:\windows\system32\midimap.dll 76F80000[00008000] [ M] 452. c:\windows\system32\winrnr.dll 66B50000[0000C000] [ M] 699. c:\windows\system32\imgutil.dll 5E400000[0000C000] [ M] 700. c:\windows\system32\pngfilt.dll 753B0000[00071000] [ M] 709. c:\windows\system32\mshtmled.dll 3FDE0000[00441000] [ M] 613. c:\windows\system32\msi.dll 71CC0000[0001B000] [ M] 633. c:\windows\system32\actxprxy.dll 03C70000[0002F000] [ M] 731. c:\program files\rising\antispyware\engine.dll 03CB0000[0000F000] [ M] 732. c:\program files\rising\antispyware\zip.dll 76AF0000[00011000] [ M] 451. c:\windows\system32\atl.dll 76590000[0004E000] [AM] 304. c:\windows\system32\cscui.dll 76570000[0001C000] [AM] 236. c:\windows\system32\cscdll.dll + 00000e4c(3660) knownsvr.exe 00400000[00072000] [ M] 733. c:\program files\rising\antispyware\knownsvr.exe 7C920000[00096000] [ M] 372. c:\windows\system32\ntdll.dll 7C800000[0011E000] [AM] 343. c:\windows\system32\kernel32.dll 77D10000[00090000] [AM] 353. c:\windows\system32\user32.dll 77EF0000[00049000] [AM] 341. c:\windows\system32\gdi32.dll 77DA0000[000A9000] [AM] 74. c:\windows\system32\advapi32.dll 77E50000[00092000] [AM] 351. c:\windows\system32\rpcrt4.dll 77FC0000[00011000] [ M] 379. c:\windows\system32\secur32.dll 10000000[00034000] [ M] 723. c:\program files\rising\antispyware\ncomm.dll 76990000[0013D000] [AM] 345. c:\windows\system32\ole32.dll 77BE0000[00058000] [ M] 383. c:\windows\system32\msvcrt.dll 770F0000[0008B000] [AM] 346. c:\windows\system32\oleaut32.dll 76680000[000A6000] [AM] 355. c:\windows\system32\wininet.dll 765E0000[00093000] [AM] 234. c:\windows\system32\crypt32.dll 76DB0000[00012000] [ M] 384. c:\windows\system32\msasn1.dll 77F40000[00076000] [ M] 401. c:\windows\system32\shlwapi.dll 77BD0000[00008000] [AM] 354. c:\windows\system32\version.dll 76300000[0001D000] [ M] 396. c:\windows\system32\imm32.dll 62C20000[00009000] [ M] 377. c:\windows\system32\lpk.dll 73FA0000[0006B000] [ M] 378. c:\windows\system32\usp10.dll 00980000[0002D000] [ M] 631. c:\program files\rising\antispyware\comx3.dll 009B0000[00019000] [ M] 629. c:\program files\rising\antispyware\syslay.dll 76F20000[00008000] [ M] 408. c:\windows\system32\wtsapi32.dll 762D0000[00010000] [ M] 392. c:\windows\system32\winsta.dll 5FDD0000[00056000] [ M] 387. c:\windows\system32\netapi32.dll 5ADC0000[00037000] [ M] 410. c:\windows\system32\uxtheme.dll 74680000[0004C000] [ M] 627. c:\windows\system32\msctf.dll 76FA0000[0007F000] [ M] 423. c:\windows\system32\clbcatq.dll 77020000[0009A000] [ M] 422. c:\windows\system32\comres.dll 7D590000[007F4000] [AM] 246. c:\windows\system32\shell32.dll 71A40000[0000B000] [ M] 559. c:\windows\system32\wsock32.dll 71A20000[00017000] [ M] 394. c:\windows\system32\ws2_32.dll 01620000[00019000] [ M] 395. c:\windows\system32\ws2help.dll 71A10000[00008000] [ M] 397. c:\windows\system32\sikinstead.dll 76EB0000[0003C000] [ M] 560. c:\windows\system32\rasapi32.dll 76E60000[00012000] [ M] 561. c:\windows\system32\rasman.dll 76E80000[0002F000] [ M] 562. c:\windows\system32\tapi32.dll 76E50000[0000E000] [ M] 563. c:\windows\system32\rtutils.dll 76B10000[0002A000] [ M] 409. c:\windows\system32\winmm.dll 77C40000[00025000] [AM] 367. c:\windows\system32\msv1_0.dll 76760000[0000C000] [ M] 415. c:\windows\system32\cryptdll.dll 76D30000[00018000] [ M] 416. c:\windows\system32\iphlpapi.dll 759D0000[000AF000] [ M] 388. c:\windows\system32\userenv.dll 7EAE0000[000A1000] [AM] 247. c:\windows\system32\urlmon.dll 719C0000[0003E000] [AM] 37. c:\windows\system32\mswsock.dll 76EF0000[00027000] [ M] 434. c:\windows\system32\dnsapi.dll 76F90000[00006000] [ M] 453. c:\windows\system32\rasadhlp.dll 60FD0000[00055000] [ M] 444. c:\windows\system32\hnetcfg.dll 71A00000[00008000] [ M] 445. c:\windows\system32\wshtcpip.dll