瑞星卡卡电脑诊断日志 v1.30 (2012-1-29 23:41:42) 北京瑞星信息技术有限公司 注释: [A]表示该文件存在自启动关联; [M]表示该文件在内存中; + 注册表自运行项目 + 系统服务 + HKLM\System\CurrentControlSet\Services Adobe LM Service [A ] 1. c:\program files\common files\adobe systems shared\service\adobelmsvc.exe aspnet_state [A ] 2. c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe Ati HotKey Poller [A ] 3. c:\windows\system32\ati2evxx.exe clr_optimization_v2.0.50727_32 [A ] 4. c:\windows\microsoft.net\framework\v2.0.50727\mscorsvw.exe DCService.exe [AM] 5. c:\documents and settings\all users\application data\datacardservice\dcservice.exe METrsptSvr [AM] 6. c:\documents and settings\all users\application data\thunder network\devicetips\program\metrsptsvr.dll OnKey Service _ICBC [AM] 7. c:\windows\system32\d4ser_icbc.exe ose [A ] 8. c:\program files\common files\microsoft shared\source engine\ose.exe RsMgrSvc [AM] 9. c:\program files\rising\rsd\rsmgrsvc.exe RsRavMon [AM] 10. e:\program files\rising\rav\ravmond.exe RsRFWMon [AM] 11. e:\program files\rising\rfw\ravmond.exe RsSafetyBoxMon [AM] 12. e:\program files\rising\rfb\rssmond.exe ServiceLayer [AM] 13. c:\program files\pc connectivity solution\servicelayer.exe WMConnectCDS [A ] 14. c:\program files\windows media connect 2\wmccds.exe WudfSvc [AM] 15. c:\windows\system32\wudfsvc.dll XLServicePlatform [AM] 16. c:\program files\common files\thunder network\serviceplatform\xlsp.dll + 内核驱动 + HKLM\System\CurrentControlSet\Services ahcix86 [A ] 17. c:\windows\system32\drivers\ahcix86.sys ALCXWDM [A ] 18. c:\windows\system32\drivers\alcxwdm.sys androidusb [A ] 19. c:\windows\system32\drivers\ssadadb.sys hookcont [A ] 20. c:\windows\system32\drivers\hookcont.sys hooksys [A ] 21. c:\windows\system32\drivers\hooksys.sys HookTdi [A ] 22. c:\windows\system32\drivers\hooktdi.sys hwdatacard [A ] 23. c:\windows\system32\drivers\ewusbmdm.sys hwusbdev [A ] 24. c:\windows\system32\drivers\ewusbdev.sys HyperVM [A ] 25. c:\windows\system32\drivers\hvm.sys iaStor5 [A ] 26. c:\windows\system32\drivers\iastor5.sys iastor6 [A ] 27. c:\windows\system32\drivers\iastor6.sys iaStor7 [A ] 28. c:\windows\system32\drivers\iastor7.sys iaStor8 [A ] 29. c:\windows\system32\drivers\iastor8.sys ITEATAPI [A ] 30. c:\windows\system32\drivers\iteatapi.sys Jraid [A ] 31. c:\windows\system32\drivers\jraid.sys m5228 [A ] 32. c:\windows\system32\drivers\m5228.sys m5281 [A ] 33. c:\windows\system32\drivers\m5281.sys m5287 [A ] 34. c:\windows\system32\drivers\m5287.sys m5288 [A ] 35. c:\windows\system32\drivers\m5288.sys m5289 [A ] 36. c:\windows\system32\drivers\m5289.sys netfilter [A ] 37. c:\windows\system32\drivers\netfilter.sys nmwcd [A ] 38. c:\windows\system32\drivers\ccdcmb.sys nmwcdc [A ] 39. c:\windows\system32\drivers\ccdcmbo.sys nmwcdnsu [A ] 40. c:\windows\system32\drivers\nmwcdnsu.sys nvatabus [A ] 41. c:\windows\system32\drivers\nvatabus.sys nvgts [A ] 42. c:\windows\system32\drivers\nvgts.sys nvrd32 [A ] 43. c:\windows\system32\drivers\nvrd32.sys pccsmcfd [A ] 44. c:\windows\system32\drivers\pccsmcfd.sys rasuw [A ] 45. c:\windows\system32\drivers\rasuw.sys rfwaf [A ] 46. e:\program files\rising\rfw\rfwaf.sys RFWARP [A ] 47. c:\windows\system32\drivers\rfwarp.sys RFWNDIS [A ] 48. c:\windows\system32\drivers\rfwndis.sys rfwtdi [A ] 49. e:\program files\rising\rfw\rfwtdi.sys rsassist [A ] 50. c:\windows\system32\drivers\rsassist.sys rsdsys [A ] 51. c:\windows\system32\drivers\protreg.sys rsfwdrv [A ] 52. e:\program files\rising\rfw\rsfwdrv.sys RsNTGDI [A ] 53. c:\windows\system32\drivers\rsntgdi.sys rspndr [A ] 54. c:\windows\system32\drivers\rspndr.sys RsProtect5 [A ] 55. c:\windows\system32\drivers\rsprotect.sys RTL8023xp [A ] 56. c:\windows\system32\drivers\rtnicxp.sys Secdrv [A ] 57. c:\windows\system32\drivers\secdrv.sys SI3112r [A ] 58. c:\windows\system32\drivers\si3112r.sys SiFilter [A ] 59. c:\windows\system32\drivers\siwinacc.sys SiSRaid [A ] 60. c:\windows\system32\drivers\sisraid.sys SiSRaid2 [A ] 61. c:\windows\system32\drivers\sisraid2.sys SiSRaid4 [A ] 62. c:\windows\system32\drivers\sisraid4.sys ssadbus [A ] 63. c:\windows\system32\drivers\ssadbus.sys ssadmdfl [A ] 64. c:\windows\system32\drivers\ssadmdfl.sys ssadmdm [A ] 65. c:\windows\system32\drivers\ssadmdm.sys ssadserd [A ] 66. c:\windows\system32\drivers\ssadserd.sys Tcpip [A ] 67. c:\windows\system32\drivers\tcpip.sys upperdev [A ] 68. c:\windows\system32\drivers\usbser_lowerflt.sys UsbserFilt [A ] 69. c:\windows\system32\drivers\usbser_lowerfltj.sys viamraid [A ] 70. c:\windows\system32\drivers\viamraid.sys VMscsi [A ] 71. c:\windows\system32\drivers\vmscsi.sys Wdf01000 [A ] 72. c:\windows\system32\drivers\wdf01000.sys WudfPf [A ] 73. c:\windows\system32\drivers\wudfpf.sys WudfRd [A ] 74. c:\windows\system32\drivers\wudfrd.sys + 文件系统驱动 + HKLM\System\CurrentControlSet\Services exFat [A ] 75. c:\windows\system32\drivers\exfat.sys + 系统登陆自运行 + HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify AtiExtEvent [AM] 76. c:\windows\system32\ati2evxx.dll + HKCU\Control Panel\Desktop Scrnsave.exe [A ] 77. c:\windows\system32\图片幻灯.scr + IE浏览器加载模块 + HKCU\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks {CFBFAE00-17A6-11D0-99CB-00C04FD64497} [AM] 78. c:\windows\system32\ieframe.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects {0EA37B17-6B8B-4085-8257-F3A4AA69C27A} [A ] 79. e:\program files\thunder network\thunder\bho\xlbrowseraddin1.0.5.64.dll {889D2FEB-5411-4565-8998-1DD2C5261283} [A ] 80. e:\program files\thunder network\thunder\bho\xunleibho7.2.3.3254.dll {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} [A ] 81. c:\windows\system32\urlfilter.dll + HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions Script [A ] 82. e:\program files\wandoujia\openwdj.html + 资源管理器加载模块 + HKLM\SOFTWARE\Classes\PROTOCOLS\Filter application/octet-stream [AM] 83. c:\windows\system32\mscoree.dll application/x-complus [AM] 83. c:\windows\system32\mscoree.dll application/x-msdownload [AM] 83. c:\windows\system32\mscoree.dll text/xml [AM] 84. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll + HKLM\SOFTWARE\Classes\PROTOCOLS\Handler KuGoo [A ] 85. c:\windows\system32\kugoo3downxcontrol.ocx KuGoo3 [A ] 85. c:\windows\system32\kugoo3downxcontrol.ocx + HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} [A ] 86. c:\windows\system32\ieudinit.exe + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved HyperTerminal Icon Ext [A ] 87. c:\windows\system32\hticons.dll IE Search Band [AM] 78. c:\windows\system32\ieframe.dll IE AutoComplete [AM] 78. c:\windows\system32\ieframe.dll Shell DocObject Viewer [AM] 78. c:\windows\system32\ieframe.dll InternetShortcut [AM] 78. c:\windows\system32\ieframe.dll Microsoft Url History Service [AM] 78. c:\windows\system32\ieframe.dll History [AM] 78. c:\windows\system32\ieframe.dll Temporary Internet Files [AM] 78. c:\windows\system32\ieframe.dll Temporary Internet Files [AM] 78. c:\windows\system32\ieframe.dll Microsoft Url Search Hook [AM] 78. c:\windows\system32\ieframe.dll The Internet [AM] 78. c:\windows\system32\ieframe.dll Internet Name Space [AM] 78. c:\windows\system32\ieframe.dll Portable Devices [AM] 88. c:\windows\system32\wpdshext.dll Portable Devices Menu [AM] 88. c:\windows\system32\wpdshext.dll Portable Media Devices [A ] 89. c:\windows\system32\audiodev.dll HashTab Property Page [A ] 90. c:\windows\system32\hashtab32.dll WinRAR shell extension [A ] 91. c:\program files\winrar\rarext.dll Microsoft Office HTML Icon Handler [A ] 92. c:\program files\microsoft office\office11\msohev.dll Web Folders [A ] 93. c:\program files\common files\microsoft shared\web folders\msonsext.dll RISING [A ] 94. c:\windows\system32\ravext.dll EncryptFile [A ] 95. e:\program files\wopti\woptiencryptmodule.dll IE Microsoft BrowserBand [AM] 78. c:\windows\system32\ieframe.dll IE History and Feeds Shell Data Source for Windows Search [AM] 78. c:\windows\system32\ieframe.dll IE Fade Task [AM] 78. c:\windows\system32\ieframe.dll IE Menu Desk Bar [AM] 78. c:\windows\system32\ieframe.dll IE Navigation Bar [AM] 78. c:\windows\system32\ieframe.dll IE Menu Site [AM] 78. c:\windows\system32\ieframe.dll IE Menu Band [AM] 78. c:\windows\system32\ieframe.dll IE Microsoft History AutoComplete List [AM] 78. c:\windows\system32\ieframe.dll IE Tracking Shell Menu [AM] 78. c:\windows\system32\ieframe.dll IE IShellFolderBand [AM] 78. c:\windows\system32\ieframe.dll IE BandProxy [AM] 78. c:\windows\system32\ieframe.dll Microsoft Web Browser [AM] 78. c:\windows\system32\ieframe.dll IE MRU AutoComplete List [AM] 78. c:\windows\system32\ieframe.dll IE RSS Feeder Folder [AM] 78. c:\windows\system32\ieframe.dll IE Microsoft Shell Folder AutoComplete List [AM] 78. c:\windows\system32\ieframe.dll IE Microsoft Multiple AutoComplete List Container [AM] 78. c:\windows\system32\ieframe.dll IE Shell Rebar BandSite [AM] 78. c:\windows\system32\ieframe.dll IE Shell Band Site Menu [AM] 78. c:\windows\system32\ieframe.dll &Links [AM] 78. c:\windows\system32\ieframe.dll IE Registry Tree Options Utility [AM] 78. c:\windows\system32\ieframe.dll IE Custom MRU AutoCompleted List [AM] 78. c:\windows\system32\ieframe.dll 诺基亚手机浏览器 [AM] 96. e:\program files\nokia\nokia pc suite 7\phonebrowser.dll ShellLink for Application References [A ] 97. c:\windows\system32\dfshim.dll Shell Icon Handler for Application References [A ] 97. c:\windows\system32\dfshim.dll 天翼网盘 [AM] 98. c:\program files\天翼网盘\189drivense.dll + HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad WPDShServiceObj [AM] 99. c:\windows\system32\wpdshserviceobj.dll + 用户登陆自运行项目 + HKLM\Software\Microsoft\Windows\CurrentVersion\Run RavTray [AM] 100. e:\program files\rising\rav\rstray.exe D4Svr_ICBC.exe [AM] 101. c:\windows\system32\d4svr_icbc.exe NeroFilterCheck [A ] 102. c:\windows\system32\nerocheck.exe RFWTRAY [AM] 103. e:\program files\rising\rfw\rstray.exe runeip [AM] 104. e:\program files\rising\antispyware\rstray.exe + 开机执行 + HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order BootExecute [A ] 105. c:\windows\system32\bsmain.exe + 映像劫持 + HKCR\.html 360seURL\Edit\Command [A ] 106. c:\program files\microsoft office\office11\msohtmed.exe 360seURL\open\Command [A ] 107. e:\program files\360\360se3\360se.exe 360seURL\Print\Command [A ] 106. c:\program files\microsoft office\office11\msohtmed.exe + HKCR\.htm 360seURL\Edit\Command [A ] 106. c:\program files\microsoft office\office11\msohtmed.exe 360seURL\open\Command [A ] 107. e:\program files\360\360se3\360se.exe 360seURL\Print\Command [A ] 106. c:\program files\microsoft office\office11\msohtmed.exe + HKCR\.mp3 KuGoo.MP3\Open\Command [A ] 108. e:\program files\kugou\kugou2011\kugoo.exe KuGoo.MP3\PlayList\Command [A ] 108. e:\program files\kugou\kugou2011\kugoo.exe + 其他自启动项目 + C:\Documents and Settings\Administrator\「开始」菜单\程序\启动 WanDouJiaHelper.lnk [AM] 109. e:\program files\wandoujia\wandoujiahelper.exe + C:\WINDOWS\Tasks User_Feed_Synchronization-{FE21426F-23CA-4F85-BEEC-71469C336C74}.job [A ] 110. c:\windows\system32\msfeedssync.exe + 正在运行的进程 + 00000180(384) DeviceTips.exe 00400000[00055000] [ M] 111. c:\documents and settings\all users\application data\thunder network\devicetips\program\devicetips.exe 217E0000[00029000] [ M] 112. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlluaruntime.dll 25680000[00040000] [ M] 113. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlfsio.dll 7C120000[00019000] [ M] 114. c:\windows\system32\atl71.dll 7C3C0000[0007C000] [ M] 115. c:\windows\system32\msvcp71.dll 7C360000[00056000] [ M] 116. c:\windows\system32\msvcr71.dll 258B0000[00174000] [ M] 117. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlue.dll 25710000[000AB000] [ M] 118. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlgraphic.dll 21530000[00039000] [ M] 119. c:\documents and settings\all users\application data\thunder network\devicetips\program\libpng13.dll 21970000[00013000] [ M] 120. c:\documents and settings\all users\application data\thunder network\devicetips\program\zlib1.dll 214D0000[00024000] [ M] 121. c:\documents and settings\all users\application data\thunder network\devicetips\program\libexpat.dll 10000000[0002E000] [ M] 122. c:\documents and settings\all users\application data\thunder network\devicetips\program\win32shell.dll 215B0000[00009000] [ M] 123. c:\documents and settings\all users\application data\thunder network\devicetips\program\minizip.dll 00380000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 218B0000[00019000] [ M] 127. c:\documents and settings\all users\application data\thunder network\devicetips\program\xl_data.dll 218F0000[00032000] [ M] 128. c:\documents and settings\all users\application data\thunder network\devicetips\program\xl_stat_client.dll 22ED0000[00015000] [ M] 129. c:\documents and settings\all users\application data\thunder network\devicetips\program\dl_peer_id.dll 21840000[00030000] [ M] 130. c:\documents and settings\all users\application data\thunder network\devicetips\program\xl_client.dll 22AB0000[00063000] [ M] 131. c:\documents and settings\all users\application data\thunder network\devicetips\program\asyn_frame.dll 24D70000[00005000] [ M] 132. c:\documents and settings\all users\application data\thunder network\devicetips\program\dl_uac_tool.dll 235A0000[00007000] [ M] 133. c:\documents and settings\all users\application data\thunder network\devicetips\program\mp.dll 0B990000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll + 000001b8(440) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10930000[00049000] [ M] 135. c:\windows\system32\portabledeviceapi.dll + 000001d0(464) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 25190000[00014000] [AM] 16. c:\program files\common files\thunder network\serviceplatform\xlsp.dll 7C3C0000[0007C000] [ M] 136. c:\program files\common files\thunder network\serviceplatform\msvcp71.dll 7C360000[00056000] [ M] 137. c:\program files\common files\thunder network\serviceplatform\msvcr71.dll 21730000[0004E000] [ M] 138. c:\program files\common files\thunder network\serviceplatform\xlbughandler.dll 25160000[0000F000] [ M] 139. c:\program files\common files\thunder network\serviceplatform\xldocser.dll 10000000[0002D000] [ M] 140. c:\documents and settings\all users\application data\thunder network\kankan\pusher\xappdrv.1.0.0.11.dll + 00000204(516) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 00000268(616) Explorer.EXE 00400000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[0003E000] [ M] 141. c:\program files\common files\thunder network\kankan\xappex.1.1.1.38.(710).dll 00F50000[0002D000] [ M] 140. c:\documents and settings\all users\application data\thunder network\kankan\pusher\xappdrv.1.0.0.11.dll 3E1C0000[00A95000] [AM] 78. c:\windows\system32\ieframe.dll 164A0000[00023000] [AM] 99. c:\windows\system32\wpdshserviceobj.dll 02D40000[0009E000] [AM] 96. e:\program files\nokia\nokia pc suite 7\phonebrowser.dll 02E30000[000E3000] [ M] 142. e:\program files\nokia\nokia pc suite 7\ngscm.dll 03030000[00005000] [ M] 143. e:\program files\nokia\nokia pc suite 7\lang\phonebrowser_chi-sc.nlr 03040000[0008D000] [ M] 144. e:\program files\nokia\nokia pc suite 7\resource\phonebrowser_nokia.ngr 109C0000[0002C000] [ M] 145. c:\windows\system32\portabledevicetypes.dll 10930000[00049000] [ M] 135. c:\windows\system32\portabledeviceapi.dll 72C80000[00008000] [ M] 146. c:\windows\system32\msacm32.drv 01DA0000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll 16210000[0027E000] [AM] 88. c:\windows\system32\wpdshext.dll 79000000[00045000] [AM] 83. c:\windows\system32\mscoree.dll 641F0000[0001D000] [ M] 147. c:\windows\microsoft.net\framework\v2.0.50727\shfusion.dll 60610000[00006000] [ M] 148. c:\windows\microsoft.net\framework\v2.0.50727\fusion.dll 60340000[00008000] [ M] 149. c:\windows\microsoft.net\framework\v2.0.50727\culture.dll 64220000[00018000] [ M] 150. c:\windows\microsoft.net\framework\v2.0.50727\shfusres.dll 01460000[00006000] [AM] 98. c:\program files\天翼网盘\189drivense.dll 36D30000[0001B000] [ M] 151. c:\program files\microsoft office\office11\mcps.dll 00A20000[00008000] [ M] 152. c:\program files\microsoft silverlight\xapauthenticodesip.dll + 000002b8(696) C+WClient.exe 00400000[000C9000] [ M] 153. e:\program files\chinatelecom c+w\c+wclient.exe 10000000[0001D000] [ M] 154. e:\program files\chinatelecom c+w\statreport.dll 003A0000[0000D000] [ M] 155. e:\program files\chinatelecom c+w\language.dll 003B0000[0000D000] [ M] 156. e:\program files\chinatelecom c+w\singleton.dll 003C0000[00019000] [ M] 157. e:\program files\chinatelecom c+w\zexuilib.dll 004D0000[00018000] [ M] 158. e:\program files\chinatelecom c+w\zuilib.dll 004F0000[0002E000] [ M] 159. e:\program files\chinatelecom c+w\zuisurface.dll 00530000[0001B000] [ M] 160. e:\program files\chinatelecom c+w\tipsapp.dll 00560000[0000C000] [ M] 161. e:\program files\chinatelecom c+w\uifactory.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 00C10000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll 3E1C0000[00A95000] [AM] 78. c:\windows\system32\ieframe.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 01320000[00026000] [ M] 162. e:\program files\chinatelecom c+w\modfrwk.dll 01660000[0003D000] [ M] 163. e:\program files\chinatelecom c+w\deploy.dll 016A0000[0000E000] [ M] 164. e:\program files\chinatelecom c+w\appdeploy.dll 016B0000[0000C000] [ M] 165. e:\program files\chinatelecom c+w\httpmodule.dll 016C0000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 01870000[0000A000] [ M] 166. e:\program files\chinatelecom c+w\interface.dll 01880000[00048000] [ M] 167. c:\program files\chinatelecom dialmanager\dialmanage.dll 018E0000[00032000] [ M] 168. e:\program files\chinatelecom c+w\utils.dll 01920000[0000F000] [ M] 169. e:\program files\chinatelecom c+w\driversetuppkg.dll 01930000[00012000] [ M] 170. e:\program files\chinatelecom c+w\updatemodule.dll 01950000[0003F000] [ M] 171. e:\program files\chinatelecom c+w\updateuimodule.dll 01990000[0000D000] [ M] 172. e:\program files\chinatelecom c+w\oprurl.dll 019A0000[00032000] [ M] 173. e:\program files\chinatelecom c+w\pinmodule.dll 019E0000[00048000] [ M] 174. e:\program files\chinatelecom c+w\timestotal.dll 01A30000[0000E000] [ M] 175. e:\program files\chinatelecom c+w\cdmaopermodule.dll 01A40000[00044000] [ M] 176. e:\program files\chinatelecom c+w\cwcommander.dll 01A90000[00008000] [ M] 177. e:\program files\chinatelecom c+w\transmsg.dll 01AA0000[00013000] [ M] 178. e:\program files\chinatelecom c+w\cmptman\cmptmanmodule.dll 01AC0000[00060000] [ M] 179. e:\program files\chinatelecom c+w\cmptman\cmptmanui.dll 01B20000[00009000] [ M] 180. e:\program files\chinatelecom c+w\viewmgr.dll 01B30000[00012000] [ M] 181. e:\program files\chinatelecom c+w\imclient.dll 01B50000[00021000] [ M] 182. c:\program files\chinatelecom dialmanager\ctatmgrmodule.dll 01B80000[00060000] [ M] 183. c:\program files\chinatelecom dialmanager\driversetup.dll 01C00000[00008000] [ M] 184. c:\program files\chinatelecom dialmanager\clientcoexist.dll 01C10000[00034000] [ M] 185. c:\program files\chinatelecom c+w\roam2\wlanroammodule.dll 01C50000[00022000] [ M] 186. c:\program files\chinatelecom c+w\roam2\wlanroammoduleex.dll 01C80000[00021000] [ M] 187. c:\program files\chinatelecom c+w\roam2\roaming.dll 01CC0000[00042000] [ M] 188. c:\program files\chinatelecom c+w\roam2\roaming2.dll 7C340000[00056000] [ M] 189. c:\program files\chinatelecom c+w\roam2\msvcr71.dll 01E00000[00046000] [ M] 190. e:\program files\chinatelecom c+w\mymessagebox.dll 01E50000[0000A000] [ M] 191. e:\program files\chinatelecom c+w\errormodule.dll 01E60000[0000C000] [ M] 192. e:\program files\chinatelecom c+w\errorsubmitmodule.dll 01E70000[00011000] [ M] 193. e:\program files\chinatelecom c+w\zlib.dll 01E90000[0000A000] [ M] 194. e:\program files\chinatelecom c+w\infocentermodule.dll 01EA0000[00009000] [ M] 195. e:\program files\chinatelecom c+w\listenneterrormodule.dll 01EB0000[0001E000] [ M] 196. e:\program files\chinatelecom c+w\msgwnd.dll 01ED0000[00030000] [ M] 197. e:\program files\chinatelecom c+w\mktintf.dll 01F20000[0000B000] [ M] 198. e:\program files\chinatelecom c+w\actreport.dll 01F30000[0001A000] [ M] 199. c:\program files\chinatelecom dialmanager\verifybasic.dll 02150000[0001E000] [ M] 200. e:\program files\chinatelecom c+w\activationreporter.dll 02280000[00013000] [ M] 201. e:\program files\chinatelecom c+w\modbase_.dll 022A0000[00018000] [ M] 202. e:\program files\chinatelecom c+w\crashrpt.dll 022C0000[0000C000] [ M] 203. e:\program files\chinatelecom c+w\emaillib.dll 023E0000[00030000] [ M] 204. e:\program files\chinatelecom c+w\mudpnative.dll 02C20000[0000B000] [ M] 205. c:\program files\chinatelecom dialmanager\cdmadll.dll 02C30000[00040000] [ M] 206. c:\program files\chinatelecom dialmanager\awifi\wifiman.dll 02C90000[0017E000] [ M] 207. c:\program files\chinatelecom dialmanager\awifi\wificlient.dll 02E60000[0002B000] [ M] 208. c:\program files\chinatelecom dialmanager\awifi\broadcom.dll 02E90000[00017000] [ M] 209. c:\program files\chinatelecom dialmanager\awifi\preflib.dll 031A0000[0009A000] [ M] 210. c:\program files\chinatelecom dialmanager\uniwlan\ucwlib.dll 03250000[0010B000] [ M] 211. c:\program files\chinatelecom dialmanager\uniwlan\cl32.dll 03370000[00007000] [ M] 212. c:\program files\chinatelecom dialmanager\uniwlan\cdmaapi.dll 033B0000[00009000] [ M] 213. c:\program files\chinatelecom dialmanager\adslmodule.dll 033C0000[0002B000] [ M] 214. c:\program files\chinatelecom dialmanager\proxydef.dll 03C00000[0002C000] [ M] 215. e:\program files\chinatelecom c+w\ekernel.dll 03500000[0007C000] [ M] 216. e:\program files\chinatelecom c+w\ecomxmldb.dll 04D20000[000B3000] [ M] 217. e:\program files\chinatelecom c+w\service\addressbook\addressbook.dll 035D0000[00022000] [ M] 218. e:\program files\chinatelecom c+w\service\eclientndplugin\eclientndplugin.dll 05010000[0012E000] [ M] 219. e:\program files\chinatelecom c+w\service\esms\esms.dll 05260000[00031000] [ M] 220. e:\program files\chinatelecom c+w\service\passportlogin\passportlogin.dll 04DE0000[0001A000] [ M] 221. e:\program files\chinatelecom c+w\webssoserver.dll 04E20000[00046000] [ M] 222. c:\program files\chinatelecom applications\eweather\eweather.dll 04E90000[00014000] [ M] 223. c:\program files\chinatelecom applications\dnbm\dnbm.dll 05F00000[00006000] [AM] 98. c:\program files\天翼网盘\189drivense.dll 05500000[000F6000] [ M] 224. c:\program files\天翼网盘\189drive.dll 05E60000[00015000] [ M] 225. e:\program files\chinatelecom c+w\systeminfo.dll 4B4F0000[00006000] [ M] 226. c:\windows\system32\odbcbcp.dll 08AB0000[00041000] [ M] 227. c:\program files\chinatelecom dialmanager\dlldata\standardat.dll 08B50000[00012000] [ M] 228. c:\program files\chinatelecom dialmanager\dlldata\atcomm.dll 05EB0000[0000E000] [ M] 229. e:\program files\chinatelecom c+w\eclientcomm.dll + 000002e0(736) LoginAccount.exe 00400000[0000D000] [ M] 230. e:\program files\chinatelecom c+w\loginaccount.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll + 00000300(768) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 000003a8(936) spoolsv.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 00000400(1024) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 006C0000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll + 00000430(1072) DCService.exe 00400000[00036000] [AM] 5. c:\documents and settings\all users\application data\datacardservice\dcservice.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll + 0000045c(1116) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[000BE000] [AM] 6. c:\documents and settings\all users\application data\thunder network\devicetips\program\metrsptsvr.dll 217E0000[00029000] [ M] 112. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlluaruntime.dll 25680000[00040000] [ M] 113. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlfsio.dll 7C120000[00019000] [ M] 114. c:\windows\system32\atl71.dll 7C3C0000[0007C000] [ M] 115. c:\windows\system32\msvcp71.dll 7C360000[00056000] [ M] 116. c:\windows\system32\msvcr71.dll 258B0000[00174000] [ M] 117. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlue.dll 25710000[000AB000] [ M] 118. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlgraphic.dll 21530000[00039000] [ M] 119. c:\documents and settings\all users\application data\thunder network\devicetips\program\libpng13.dll 21970000[00013000] [ M] 120. c:\documents and settings\all users\application data\thunder network\devicetips\program\zlib1.dll 214D0000[00024000] [ M] 121. c:\documents and settings\all users\application data\thunder network\devicetips\program\libexpat.dll 006C0000[0002E000] [ M] 122. c:\documents and settings\all users\application data\thunder network\devicetips\program\win32shell.dll 215B0000[00009000] [ M] 123. c:\documents and settings\all users\application data\thunder network\devicetips\program\minizip.dll 006F0000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 21600000[0004E000] [ M] 231. c:\documents and settings\all users\application data\thunder network\devicetips\program\sqlite3.dll 21730000[0004E000] [ M] 232. c:\documents and settings\all users\application data\thunder network\devicetips\program\xlbughandler.dll + 00000478(1144) D4Ser_ICBC.exe 00400000[0000E000] [AM] 7. c:\windows\system32\d4ser_icbc.exe + 00000494(1172) smss.exe + 000004a4(1188) D4MON_ICBC.exe 00400000[00014000] [ M] 233. c:\windows\system32\d4mon_icbc.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 000004dc(1244) csrss.exe + 00000518(1304) winlogon.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00028000] [AM] 76. c:\windows\system32\ati2evxx.dll 72C80000[00008000] [ M] 146. c:\windows\system32\msacm32.drv + 00000544(1348) services.exe 46040000[0000F000] [ M] 234. c:\windows\apppatch\acadproc.dll + 00000550(1360) lsass.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 000005f8(1528) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 00000618(1560) rssmond.exe 00400000[00033000] [AM] 12. e:\program files\rising\rfb\rssmond.exe 10000000[00032000] [ M] 235. e:\program files\rising\rfb\combase.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 017F0000[00019000] [ M] 236. e:\program files\rising\rfb\moncomm.dll 01820000[0001D000] [ M] 237. e:\program files\rising\rfb\monbase.dll 01850000[0001A000] [ M] 238. e:\program files\rising\rfb\rssafetymondriver.dll 01880000[00021000] [ M] 239. e:\program files\rising\rfb\rssafetymon.dll 018E0000[00016000] [ M] 240. e:\program files\rising\rfb\rssvirusmon.dll 01910000[00019000] [ M] 241. e:\program files\rising\rfb\proccomm.dll 01940000[0002D000] [ M] 242. e:\program files\rising\rfb\comx3.dll 01C80000[00019000] [ M] 243. e:\program files\rising\rfb\syslay.dll 01DF0000[00090000] [ M] 244. e:\program files\rising\rfb\rssdb.dll 01E90000[00020000] [ M] 245. e:\program files\rising\rfb\rsprotect.dll + 0000065c(1628) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 000006f4(1780) RsMgrSvc.exe 00400000[00024000] [AM] 9. c:\program files\rising\rsd\rsmgrsvc.exe 10000000[0002E000] [ M] 246. c:\program files\rising\rsd\comx3.dll 003E0000[00019000] [ M] 247. c:\program files\rising\rsd\syslay.dll + 00000700(1792) RavMonD.exe 00400000[00029000] [AM] 10. e:\program files\rising\rav\ravmond.exe 10000000[00039000] [ M] 248. e:\program files\rising\rav\combase.dll 003E0000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 013E0000[0004B000] [ M] 249. e:\program files\rising\rav\rsconf.dll 011A0000[00017000] [ M] 250. e:\program files\rising\rav\scansrvp.dll 01A80000[00086000] [ M] 251. e:\program files\rising\rav\cnt09.dll 01B20000[00019000] [ M] 252. e:\program files\rising\rav\moncomm.dll 01C50000[0001C000] [ M] 253. e:\program files\rising\rav\monbase.dll 01C80000[00081000] [ M] 254. e:\program files\rising\rav\rslog.dll 01D30000[00029000] [ M] 255. e:\program files\rising\rav\rsstore.dll 01D70000[0001A000] [ M] 256. e:\program files\rising\rav\mondrvd.dll 01DA0000[00034000] [ M] 257. e:\program files\rising\rav\defmon.dll 01DF0000[00010000] [ M] 258. e:\program files\rising\rav\moncom08.dll 01E10000[00018000] [ M] 259. e:\program files\rising\rav\taskplug.dll 01F40000[00010000] [ M] 260. e:\program files\rising\rav\mondrvm.dll 01F60000[0007F000] [ M] 261. e:\program files\rising\rav\monrule.dll 02000000[00028000] [ M] 262. e:\program files\rising\rav\filemon.dll 02040000[00030000] [ M] 263. e:\program files\rising\rav\mailmon.dll 020B0000[00084000] [ M] 264. e:\program files\rising\rav\rsindent.dll 02540000[0001D000] [ M] 265. e:\program files\rising\rav\cnt08.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 027B0000[00019000] [ M] 266. e:\program files\rising\rav\proccomm.dll 02D00000[0002E000] [ M] 267. e:\program files\rising\rav\comx3.dll 02D30000[00019000] [ M] 268. e:\program files\rising\rav\syslay.dll 02FA0000[00020000] [ M] 269. e:\program files\rising\rav\hooksys.dll 03050000[0001F000] [ M] 270. e:\program files\rising\rav\proccom.dll 03070000[00024000] [ M] 271. e:\program files\rising\rav\rscommx2.dll 033C0000[0002A000] [ M] 272. e:\program files\rising\rav\rstask.dll 03480000[00018000] [ M] 273. e:\program files\rising\rav\rsstub.dll 23700000[00023000] [ M] 274. e:\program files\rising\rav\rslang.dll 03B20000[0000D000] [ M] 275. e:\program files\rising\rav\hooktdi.dll 03C50000[0008F000] [ M] 276. e:\program files\rising\rav\bacore.dll 03D00000[00081000] [ M] 277. e:\program files\rising\rav\rsnetsvr.dll 040D0000[00016000] [ M] 278. e:\program files\rising\rav\bawhite.dll 04300000[0001C000] [ M] 279. e:\program files\rising\rav\scanadd.dll 04330000[00047000] [ M] 280. e:\program files\rising\rav\scanner.dll 04390000[0003A000] [ M] 281. e:\program files\rising\rav\recomp.dll 043E0000[00039000] [ M] 282. e:\program files\rising\rav\refs.dll 04430000[00034000] [ M] 283. e:\program files\rising\rav\viruslib.dll 00F70000[00029000] [ M] 284. e:\program files\rising\rav\relibldr.dll 062E0000[00019000] [ M] 285. e:\program files\rising\rav\scansrv.dll 07990000[00073000] [ M] 286. e:\program files\rising\rav\scanpe.dll 07B70000[0002D000] [ M] 287. e:\program files\rising\rav\pearc.dll 09AC0000[000CA000] [ M] 288. e:\program files\rising\rav\vmicore.dll 0A9C0000[00049000] [ M] 289. e:\program files\rising\rav\engext.dll 07270000[00032000] [ M] 290. e:\program files\rising\rav\ffr.dll 072C0000[00026000] [ M] 291. e:\program files\rising\rav\nvfile.dll 13AB0000[00049000] [ M] 292. e:\program files\rising\rav\scanexec.dll 0A720000[00297000] [ M] 293. e:\program files\rising\rav\unexe.dll 0B6C0000[000D0000] [ M] 294. e:\program files\rising\rav\scanex.dll 07350000[00010000] [ M] 295. e:\program files\rising\rav\scantj.dll 0D000000[0001D000] [ M] 296. e:\program files\rising\rav\extsfx.dll 0D060000[00023000] [ M] 297. e:\program files\rising\rav\scansct.dll 0D720000[000F9000] [ M] 298. e:\program files\rising\rav\extarch.dll 01B90000[00061000] [ M] 299. e:\program files\rising\rav\extcomp.dll 12820000[00014000] [ M] 300. e:\program files\rising\rav\ur025.dat 12860000[00028000] [ M] 301. e:\program files\rising\rav\urutils.dll 11D80000[00017000] [ M] 302. e:\program files\rising\rav\ur029.dat 07890000[00020000] [ M] 303. e:\program files\rising\rav\scanravt.dll 078B0000[000C7000] [ M] 304. e:\program files\rising\rav\scanbt.dll 00E50000[00019000] [ M] 305. e:\program files\rising\rav\scanstub.dll 148F0000[00046000] [ M] 306. e:\program files\rising\rav\extole.dll + 00000730(1840) RavMonD.exe 00400000[00029000] [AM] 11. e:\program files\rising\rfw\ravmond.exe 10000000[00039000] [ M] 307. e:\program files\rising\rfw\combase.dll 003E0000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 01B30000[00086000] [ M] 308. e:\program files\rising\rfw\cnt09.dll 011A0000[0001C000] [ M] 309. e:\program files\rising\rfw\monbase.dll 01BC0000[00019000] [ M] 310. e:\program files\rising\rfw\moncomm.dll 01BF0000[0004B000] [ M] 311. e:\program files\rising\rfw\rsconf.dll 01C50000[00085000] [ M] 312. e:\program files\rising\rfw\rfwlog.dll 01D00000[0000C000] [ M] 313. e:\program files\rising\rfw\rfwrule.dll 7C3C0000[0007C000] [ M] 115. c:\windows\system32\msvcp71.dll 7C360000[00056000] [ M] 116. c:\windows\system32\msvcr71.dll 01D20000[00061000] [ M] 314. e:\program files\rising\rfw\rfwsrv.dll 01D90000[00019000] [ M] 315. e:\program files\rising\rfw\syslay.dll 01E90000[0001B000] [ M] 316. e:\program files\rising\rfw\mports.dll 01EC0000[00011000] [ M] 317. e:\program files\rising\rfw\rfwdrvc.dll 023F0000[000B6000] [ M] 318. e:\program files\rising\rfw\fishweb.dll 024B0000[00084000] [ M] 319. e:\program files\rising\rfw\rsindent.dll 02550000[00018000] [ M] 320. e:\program files\rising\rfw\taskplug.dll 02580000[00012000] [ M] 321. e:\program files\rising\rfw\rfwpgdef.dll 029C0000[00019000] [ M] 322. e:\program files\rising\rfw\proccomm.dll 02CF0000[0002E000] [ M] 323. e:\program files\rising\rfw\comx3.dll 02F60000[00012000] [ M] 324. e:\program files\rising\rfw\rfwdrv.dll 033C0000[00011000] [ M] 325. e:\program files\rising\rfw\rfwarp.dll 035F0000[00014000] [ M] 326. e:\program files\rising\rfw\urlrule.dll 03620000[0003A000] [ M] 327. e:\program files\rising\rfw\recomp.dll 03670000[00039000] [ M] 328. e:\program files\rising\rfw\refs.dll 038D0000[00034000] [ M] 329. e:\program files\rising\rfw\viruslib.dll 03920000[00029000] [ M] 330. e:\program files\rising\rfw\relibldr.dll 039A0000[0004E000] [ M] 331. e:\program files\rising\rfw\rfwproxy.dll 23700000[00023000] [ M] 332. e:\program files\rising\rfw\rslang.dll 04210000[0001B000] [ M] 333. e:\program files\rising\rfw\fwfish.dll 04250000[0003A000] [ M] 334. e:\program files\rising\rfw\fwcomp.dll 042A0000[00039000] [ M] 335. e:\program files\rising\rfw\fwfs.dll 04500000[00034000] [ M] 336. e:\program files\rising\rfw\fwvirlib.dll 04550000[00029000] [ M] 337. e:\program files\rising\rfw\fwlibldr.dll 06760000[0002A000] [ M] 338. e:\program files\rising\rfw\rstask.dll 067A0000[00018000] [ M] 339. e:\program files\rising\rfw\rsstub.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 011F0000[0000E000] [ M] 340. e:\program files\rising\rfw\urllib.dll + 00000758(1880) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 01830000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll + 0000077c(1916) svchost.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00013000] [AM] 15. c:\windows\system32\wudfsvc.dll 006C0000[00028000] [ M] 341. c:\windows\system32\wudfplatform.dll + 00000808(2056) rundll32.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll + 000008b0(2224) CWCleanTools.exe 00400000[00005000] [ M] 342. e:\program files\chinatelecom c+w\cwcleantools.exe + 000008dc(2268) conime.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll + 0000093c(2364) RSTRAY.EXE 00400000[0002C000] [AM] 100. e:\program files\rising\rav\rstray.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00037000] [ M] 343. e:\program files\rising\rav\comserv.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 23700000[00023000] [ M] 274. e:\program files\rising\rav\rslang.dll 00BC0000[0002E000] [ M] 267. e:\program files\rising\rav\comx3.dll 00BF0000[00019000] [ M] 268. e:\program files\rising\rav\syslay.dll 00E80000[00019000] [ M] 266. e:\program files\rising\rav\proccomm.dll 23800000[00039000] [ M] 344. e:\program files\rising\rav\rsxml.dll 010C0000[00014000] [ M] 345. e:\program files\rising\rav\monstate.dll 010F0000[00016000] [ M] 346. e:\program files\rising\rav\scanevnt.dll 26600000[0007B000] [ M] 347. e:\program files\rising\rav\rsguilib.dll 01130000[0004B000] [ M] 249. e:\program files\rising\rav\rsconf.dll 01190000[00024000] [ M] 348. e:\program files\rising\rav\rspalvd.dll 011D0000[0007D000] [ M] 349. e:\program files\rising\rav\mruleui.dll 01260000[000D6000] [ M] 350. e:\program files\rising\rav\montray.dll 013F0000[0004F000] [ M] 351. e:\program files\rising\rav\rsmginfo.dll 01350000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 01460000[00013000] [ M] 352. e:\program files\rising\rav\usbserv.dll 01490000[0003A000] [ M] 353. e:\program files\rising\rav\scantray.dll 23900000[00040000] [ M] 354. e:\program files\rising\rav\pngdll.dll 01890000[00A95000] [AM] 78. c:\windows\system32\ieframe.dll 031D0000[000BA000] [ M] 355. e:\program files\rising\rav\dfw.dll 032A0000[00087000] [ M] 356. e:\program files\rising\rav\scanprxy.dll 034F0000[00038000] [ M] 357. e:\program files\rising\rav\gcompt.dll 03440000[0001F000] [ M] 358. e:\program files\rising\rav\isol.dll 03470000[00029000] [ M] 255. e:\program files\rising\rav\rsstore.dll + 00000964(2404) alg.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 000009b4(2484) popwndexe.exe 00400000[00021000] [ M] 359. c:\program files\rising\rsd\popwndexe.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[0007C000] [ M] 360. c:\program files\rising\rsd\rsdk.dll 00990000[00055000] [ M] 361. c:\program files\rising\rsd\rsmginfo.dll 00A00000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 01B50000[0000D000] [AM] 84. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll 01BB0000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll + 00000a34(2612) D4Svr_ICBC.exe 00400000[0000E000] [AM] 101. c:\windows\system32\d4svr_icbc.exe 10000000[00053000] [ M] 362. c:\windows\system32\d4token_icbc.dll 008F0000[00020000] [ M] 363. c:\windows\system32\d4csp_icbc.dll 00910000[00048000] [ M] 364. c:\windows\system32\d4pinpad_icbc.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 00B80000[00012000] [ M] 365. c:\windows\system32\d4dev03_icbc.dll 00BC0000[00012000] [ M] 366. c:\windows\system32\d4dev05_icbc.dll + 00000a78(2680) RSTRAY.EXE 00400000[0002C000] [AM] 103. e:\program files\rising\rfw\rstray.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00037000] [ M] 367. e:\program files\rising\rfw\comserv.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 23700000[00023000] [ M] 332. e:\program files\rising\rfw\rslang.dll 00BC0000[0002E000] [ M] 323. e:\program files\rising\rfw\comx3.dll 00BF0000[00019000] [ M] 315. e:\program files\rising\rfw\syslay.dll 00E80000[00019000] [ M] 322. e:\program files\rising\rfw\proccomm.dll 23800000[00039000] [ M] 368. e:\program files\rising\rfw\rsxml.dll 010C0000[00014000] [ M] 369. e:\program files\rising\rfw\monstate.dll 010F0000[0000C000] [ M] 313. e:\program files\rising\rfw\rfwrule.dll 7C3C0000[0007C000] [ M] 115. c:\windows\system32\msvcp71.dll 7C360000[00056000] [ M] 116. c:\windows\system32\msvcr71.dll 01110000[0004B000] [ M] 311. e:\program files\rising\rfw\rsconf.dll 01170000[00024000] [ M] 370. e:\program files\rising\rfw\rspalvd.dll 26600000[0007B000] [ M] 371. e:\program files\rising\rfw\rsguilib.dll 011C0000[00081000] [ M] 372. e:\program files\rising\rfw\rsnetsvr.dll 01260000[0004F000] [ M] 373. e:\program files\rising\rfw\rsmginfo.dll 012B0000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 01370000[000DC000] [ M] 374. e:\program files\rising\rfw\rfwtray.dll 019F0000[00085000] [ M] 312. e:\program files\rising\rfw\rfwlog.dll 23900000[00040000] [ M] 375. e:\program files\rising\rfw\pngdll.dll 027E0000[00A95000] [AM] 78. c:\windows\system32\ieframe.dll + 00000a8c(2700) rstray.exe 00400000[00026000] [AM] 104. e:\program files\rising\antispyware\rstray.exe 10000000[0004C000] [ M] 376. e:\program files\rising\antispyware\rsmginfo.dll 00910000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 00CD0000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll 23800000[00039000] [ M] 377. e:\program files\rising\antispyware\rsxml.dll 00E20000[00024000] [ M] 378. e:\program files\rising\antispyware\comserv.dll 00D10000[00019000] [ M] 379. e:\program files\rising\antispyware\syslay.dll 7C3A0000[0007B000] [ M] 380. e:\program files\rising\antispyware\msvcp71.dll 7C340000[00056000] [ M] 381. e:\program files\rising\antispyware\msvcr71.dll 23700000[00026000] [ M] 382. e:\program files\rising\antispyware\rscommon.dll 00D60000[0002D000] [ M] 383. e:\program files\rising\antispyware\comx3.dll 010E0000[00022000] [ M] 384. e:\program files\rising\antispyware\rsxml1.dll 23900000[00040000] [ M] 385. e:\program files\rising\antispyware\pngdll.dll 01130000[00081000] [ M] 386. e:\program files\rising\antispyware\runiep.dll 011C0000[00034000] [ M] 387. e:\program files\rising\antispyware\ncomm.dll 01220000[0001F000] [ M] 270. e:\program files\rising\rav\proccom.dll 01240000[00024000] [ M] 388. e:\program files\rising\antispyware\rscommx2.dll + 00000aac(2732) SafetyBox.exe 00400000[00088000] [ M] 389. e:\program files\rising\rfb\safetybox.exe 10000000[00025000] [ M] 390. e:\program files\rising\rfb\rsslogvw.dll 00490000[00090000] [ M] 244. e:\program files\rising\rfb\rssdb.dll 23900000[00040000] [ M] 391. e:\program files\rising\rfb\pngdll.dll 23700000[00023000] [ M] 392. e:\program files\rising\rfb\rslang.dll 00B50000[0002D000] [ M] 242. e:\program files\rising\rfb\comx3.dll 00B80000[00019000] [ M] 243. e:\program files\rising\rfb\syslay.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 00D90000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll 26600000[00086000] [ M] 393. e:\program files\rising\rfb\rsguilib.dll 00DD0000[00032000] [ M] 235. e:\program files\rising\rfb\combase.dll 23800000[00039000] [ M] 394. e:\program files\rising\rfb\rsxml.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 01710000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 022F0000[0000D000] [AM] 84. c:\program files\common files\microsoft shared\office11\msoxmlmf.dll 02A10000[0004F000] [ M] 395. e:\program files\rising\rfb\rsmginfo.dll + 00000ab8(2744) ctfmon.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll + 00000b00(2816) knownsvr.exe 00400000[00072000] [ M] 396. e:\program files\rising\antispyware\knownsvr.exe 10000000[00034000] [ M] 387. e:\program files\rising\antispyware\ncomm.dll 00390000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 00BC0000[0002D000] [ M] 383. e:\program files\rising\antispyware\comx3.dll 00BF0000[00019000] [ M] 379. e:\program files\rising\antispyware\syslay.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 01100000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll + 00000b0c(2828) ras.exe 00400000[0001F000] [ M] 397. e:\program files\rising\antispyware\ras.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll 009B0000[00065000] [ M] 398. e:\program files\rising\antispyware\rspalmgr.dll 00A30000[0001F000] [ M] 270. e:\program files\rising\rav\proccom.dll 00A50000[00024000] [ M] 388. e:\program files\rising\antispyware\rscommx2.dll 00BA0000[0002D000] [ M] 383. e:\program files\rising\antispyware\comx3.dll 00BD0000[00019000] [ M] 379. e:\program files\rising\antispyware\syslay.dll 00D40000[00058000] [ M] 399. e:\program files\rising\antispyware\dbmgr.dll 7C140000[00103000] [ M] 400. e:\program files\rising\antispyware\mfc71.dll 7C340000[00056000] [ M] 381. e:\program files\rising\antispyware\msvcr71.dll 23800000[00022000] [ M] 384. e:\program files\rising\antispyware\rsxml1.dll 7C3A0000[0007B000] [ M] 380. e:\program files\rising\antispyware\msvcp71.dll 00F70000[00039000] [ M] 377. e:\program files\rising\antispyware\rsxml.dll 26600000[00078000] [ M] 401. e:\program files\rising\antispyware\rsguilib.dll 23900000[00040000] [ M] 385. e:\program files\rising\antispyware\pngdll.dll 010D0000[00031000] [ M] 402. e:\program files\rising\antispyware\pweb.dll 01120000[0002D000] [ M] 403. e:\program files\rising\antispyware\pdefend.dll 01220000[00225000] [ M] 404. e:\program files\rising\antispyware\pscan.dll 01150000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 01160000[00034000] [ M] 387. e:\program files\rising\antispyware\ncomm.dll 01650000[00071000] [ M] 405. e:\program files\rising\antispyware\pset.dll 016D0000[000B8000] [ M] 406. e:\program files\rising\antispyware\ptools.dll 01790000[00077000] [ M] 407. e:\program files\rising\antispyware\psysinfo.dll 01810000[00086000] [ M] 408. e:\program files\rising\antispyware\kengine.dll 018A0000[00045000] [ M] 409. e:\program files\rising\antispyware\posttrt.dll 018F0000[00010000] [ M] 410. e:\program files\rising\antispyware\kscanex.dll 01910000[0002F000] [ M] 411. e:\program files\rising\antispyware\engine.dll 01950000[00033000] [ M] 412. e:\program files\rising\antispyware\rsdialog.dll 019A0000[00022000] [ M] 413. e:\program files\rising\antispyware\secscan.dll 019E0000[00087000] [ M] 414. e:\program files\rising\antispyware\ntlib.dll 01A80000[00017000] [ M] 415. e:\program files\rising\antispyware\secex.dll 3E1C0000[00A95000] [AM] 78. c:\windows\system32\ieframe.dll 049C0000[00927000] [ M] 416. c:\windows\system32\macromed\flash\flash11e.ocx + 00000c50(3152) WanDouJiaHelper.exe 00400000[00094000] [AM] 109. e:\program files\wandoujia\wandoujiahelper.exe 79000000[00045000] [AM] 83. c:\windows\system32\mscoree.dll 79E70000[00561000] [ M] 417. c:\windows\microsoft.net\framework\v2.0.50727\mscorwks.dll 790C0000[00AE8000] [ M] 418. c:\windows\assembly\nativeimages_v2.0.50727_32\mscorlib\fe62e69f24bc9d438d8603f55850fe88\mscorlib.ni.dll 64020000[00013000] [ M] 419. c:\windows\microsoft.net\framework\v2.0.50727\mscorsec.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll 10000000[00014000] [ M] 134. e:\program files\rising\antispyware\regcall.dll 79060000[00053000] [ M] 420. c:\windows\microsoft.net\framework\v2.0.50727\mscorjit.dll 7A440000[007BE000] [ M] 421. c:\windows\assembly\nativeimages_v2.0.50727_32\system\edd9003158b9e948a22e9e5e9840e09a\system.ni.dll 7ADE0000[00194000] [ M] 422. c:\windows\assembly\nativeimages_v2.0.50727_32\system.drawing\6912fcdd4d4dd5408a17642eca53b25a\system.drawing.ni.dll 7AFD0000[00C86000] [ M] 423. c:\windows\assembly\nativeimages_v2.0.50727_32\system.windows.forms\c8cecbac6a9c1d448418e16a4020f7c5\system.windows.forms.ni.dll 03D40000[00112000] [ M] 424. e:\program files\wandoujia\coreutils.dll 03E70000[0005A000] [ M] 425. e:\program files\wandoujia\newtonsoft.json.net20.dll 03FD0000[00052000] [ M] 426. e:\program files\wandoujia\pcsuitlibary.dll 69BE0000[00568000] [ M] 427. c:\windows\assembly\nativeimages_v2.0.50727_32\system.xml\52b72c14cb111c409e4b6e10c21f08fa\system.xml.ni.dll 03C60000[00009000] [ M] 124. c:\windows\system32\normaliz.dll 3DFD0000[001E9000] [ M] 125. c:\windows\system32\iertutil.dll 65140000[00668000] [ M] 428. c:\windows\assembly\nativeimages_v2.0.50727_32\system.data\c20a82028716914b90f3ad5b5e7a58b5\system.data.ni.dll 64E70000[002C7000] [ M] 429. c:\windows\assembly\gac_32\system.data\2.0.0.0__b77a5c561934e089\system.data.dll 64890000[000EE000] [ M] 430. c:\windows\assembly\nativeimages_v2.0.50727_32\system.configuration\54cceb0f047a674c8432ad4d4def67f8\system.configuration.ni.dll 685C0000[00B4A000] [ M] 431. c:\windows\assembly\nativeimages_v2.0.50727_32\system.web\e054912c6f68464caa6ecc915b7de9bc\system.web.ni.dll 050B0000[0004A000] [ M] 432. e:\program files\wandoujia\manager.dll + 00000ce0(3296) NclRSSrv.exe 00400000[00023000] [ M] 433. c:\program files\pc connectivity solution\transports\nclrssrv.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 00000e54(3668) NclUSBSrv.exe 00400000[0002C000] [ M] 434. c:\program files\pc connectivity solution\transports\nclusbsrv.exe 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll + 00000f4c(3916) ServiceLayer.exe 00400000[0009F000] [AM] 13. c:\program files\pc connectivity solution\servicelayer.exe 10000000[0006A000] [ M] 435. c:\program files\pc connectivity solution\pccs_dbengine.dll 5ADC0000[00037000] [ M] 126. c:\windows\system32\uxtheme.dll