[PID: 1900][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\System32\UmxSbxExw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\System32\UmxSbxw.dll] <Computer Associates International, Inc.><6.0.1.58>
[PID: 2308][C:\WINDOWS\SOUNDMAN.EXE] <Realtek Semiconductor Corp.><5.0.19>
[C:\WINDOWS\system32\UmxSbxExw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\system32\UmxSbxw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 4>
[PID: 2352][C:\Program Files\Norton Ghost\Agent\GhostTray.exe] <Symantec Corporation><10.0.0.8400>
[C:\WINDOWS\system32\UmxSbxExw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\system32\UmxSbxw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\Program Files\Common Files\Symantec Shared\ccAlert.dll] <Symantec Corporation><103.0.4.3>
[C:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.4.3>
[C:\Program Files\Norton Ghost\Shared\VProAuto.dll] <Symantec Corporation><10.0.0.8400>
[C:\Program Files\Norton Ghost\Agent\DrmLicense.DLL] <Symantec Corporation><10.0.0.8400>
[C:\Program Files\Common Files\Symantec Shared\ccL35.dll] <Symantec Corporation><103.5.0.90>
[C:\Program Files\Norton Ghost\EasySetupInt.dll] <Symantec Corporation><10.0.0.8400>
[C:\Program Files\Norton Ghost\Agent\gwrks32.dll] <GEAR-Software><3.52.001.03>
[C:\Program Files\Norton Ghost\Agent\GEARAW32.dll] <GEAR-Software><3.52.001.03>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 4>
[PID: 2412][C:\Program Files\Common Files\Symantec Shared\ccApp.exe] <Symantec Corporation><103.0.4.3>
[C:\Program Files\Common Files\Symantec Shared\ccL30.dll] <Symantec Corporation><103.0.4.3>
[C:\WINDOWS\system32\UmxSbxExw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\system32\UmxSbxw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\Program Files\Common Files\Symantec Shared\ccVrTrst.dll] <Symantec Corporation><103.0.4.3>
[C:\PROGRA~1\COMMON~1\SYMANT~1\CCALERT.DLL] <Symantec Corporation><103.0.4.3>
[C:\PROGRA~1\COMMON~1\SYMANT~1\CCEMLPXY.DLL] <Symantec Corporation><103.0.4.3>
[C:\Program Files\Common Files\Symantec Shared\ccSetEvt.dll] <Symantec Corporation><103.0.4.3>
[C:\Program Files\Common Files\Symantec Shared\ccProSub.dll] <Symantec Corporation><103.0.4.3>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 4>
[PID: 2436][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\UmxSbxExw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\system32\UmxSbxw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 4>
[PID: 164][C:\WINDOWS\system32\Rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\UmxSbxExw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\system32\UmxSbxw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 4>
[PID: 3928][C:\DOCUME~1\张军\LOCALS~1\Temp\Rar$EX00.234\SREng.exe] <Smallfrogs Studio><2.0.12.350>
[C:\WINDOWS\system32\UmxSbxExw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\system32\UmxSbxw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 4>
[PID: 3784][C:\Documents and Settings\张军\桌面\SnagIt8ls_PConline\SnagIt32.exe] <TechSmith Corporation><8.0.0.0>
[C:\Documents and Settings\张军\桌面\SnagIt8ls_PConline\ltfil12n.dll] <LEAD Technologies, Inc.><12.1.0.061>
[C:\Documents and Settings\张军\桌面\SnagIt8ls_PConline\LTKRN12n.dll] <LEAD Technologies, Inc.><12.1.0.061>
[C:\WINDOWS\system32\UmxSbxExw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\system32\UmxSbxw.dll] <Computer Associates International, Inc.><6.0.1.58>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 2, 4>
[C:\Documents and Settings\张军\桌面\SnagIt8ls_PConline\SnagItres.dll] <TechSmith 公司><8.0.0.0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\scrchpg.dll] <Kaspersky Lab><5.0.1.18>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\scrch_ag.dll] <Kaspersky Lab><5.0.388.1>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\FSSync.dll] <Kaspersky Lab><5.0.388.0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\pr_rmt.dll] <Kaspersky Lab><5.0.388.0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\ccclient.dll] <Kaspersky Lab><5.0.388.1>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\klipc.dll] <Kaspersky Lab><5.0.388.0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\KLUtil.dll] <Kaspersky Lab><5.0.388.1>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\rpt.dll] <Kaspersky Lab><5.0.388.2>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\CCIFACE.dll] <Kaspersky Lab><5.0.388.1>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\prloader.dll] <Kaspersky Lab><5.0.388.0>
[C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\prkernel.ppl] <Kaspersky Lab><5.0.388.0>
[c:\program files\kaspersky lab\kaspersky anti-virus personal\prstring.ppl] <Kaspersky Lab><5.0.388.0>
[c:\program files\kaspersky lab\kaspersky anti-virus personal\pr_srv.ppl] <Kaspersky Lab><5.0.388.0>
[c:\program files\kaspersky lab\kaspersky anti-virus personal\pr_clnt.ppl] <Kaspersky Lab><5.0.388.0>
[c:\program files\kaspersky lab\kaspersky anti-virus personal\tempfile.ppl] <Kaspersky Lab><5.0.388.0>
[C:\Documents and Settings\张军\桌面\SnagIt8ls_PConline\LTDIS12n.dll] <LEAD Technologies, Inc.><12.1.0.061>
[C:\Documents and Settings\张军\桌面\SnagIt8ls_PConline\LFPNG12N.DLL] <LEAD Technologies, Inc.><12.1.0.061>
[C:\Documents and Settings\张军\桌面\SnagIt8ls_PConline\LFCMP12N.DLL] <LEAD Technologies, Inc.><12.1.0.061>