[PID: 1596][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
[C:\WINDOWS\system32\CNMLM2H.DLL] <CANON INC.><1.50.2.6>
[C:\WINDOWS\system32\hpdcmon.dll] <Hewlett-Packard><03.40.00>
[C:\WINDOWS\System32\spool\PRTPROCS\W32X86\CNMPD2H.DLL] <CANON INC.><1.50.2.6>
[PID: 1700][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1752][C:\WINDOWS\system32\RegSrvc.exe] <Intel Corporation><4, 1, 0, 0>
[PID: 1772][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\dcsws2.dll] <DiamondCS><2.110>
[PID: 1808][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1864][C:\WINDOWS\system32\wdfmgr.exe] <Microsoft Corporation><5.2.3790.1230 built by: DNSRV(bld4act)>
[PID: 2012][C:\Program Files\Rising\Rav\RavStub.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[PID: 344][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\dcsws2.dll] <DiamondCS><2.110>
[PID: 1444][C:\WINDOWS\system32\ZCfgSvc.exe] <Intel Corporation><4, 1, 0, 53>
[C:\WINDOWS\system32\PfMgrApi.dll] <Intel Corporation><4, 1, 0, 0>
[C:\WINDOWS\system32\PsRegApi.dll] <Intel Corporation><4, 1, 0, 0>
[C:\WINDOWS\system32\WConfig.DLL] <Intel Corporation><4, 1, 0, 0>
[C:\WINDOWS\system32\WiFiAdap.DLL] <Intel Corporation><4, 1, 0, 0>
[C:\WINDOWS\system32\C1XStngs.dll] <><4, 1, 0, 1>
[C:\Program Files\Intel\PROSet\CHS\ZcSvcCHS.dll] <Intel Corporation><4, 1, 0, 53>
[C:\Program Files\Intel\PROSet\CHS\PmApiCHS.dll] <Intel Corporation><4, 1, 0, 0>
[C:\WINDOWS\system32\S24MUDLL.dll] <Intel Corporation><4, 1, 0, 0>
[C:\Program Files\Intel\PROSet\CHS\C1XStCHS.dll] <><4, 1, 0, 1>
[PID: 200][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[C:\PROGRA~1\TROJAN~1.5\contmenu.dll] <N/A><N/A>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
[C:\WINDOWS\system32\smflash.ocx] <Macromedia, Inc.><6.8.19.1>
[C:\WINDOWS\system32\dcsws2.dll] <DiamondCS><2.110>
[C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll] <Adobe Systems, Inc.><7.0.0.0>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\WINDOWS\system32\igfxpph.dll] <Intel Corporation><3.0.0.2172>
[C:\WINDOWS\system32\hccutils.DLL] <Intel Corporation><3.0.0.2172>
[PID: 292][C:\WINDOWS\system32\1XConfig.exe] <Intel><4, 1, 0, 3>
[C:\WINDOWS\system32\IntelAE5.dll] <Meetinghouse Data Communications><1, 5, 1, 90>
[C:\WINDOWS\system32\SSLEAY32.dll] <N/A><N/A>
[C:\WINDOWS\system32\LIBEAY32.dll] <N/A><N/A>
[C:\WINDOWS\system32\PsRegApi.dll] <Intel Corporation><4, 1, 0, 0>
[PID: 1836][C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe] <Intel(R) Corporation><6.1.302.0>
[C:\Program Files\Intel\NCS\PROSet\CHSPGUIR.dll] <Intel(R) Corporation><6.1.302.0>
[C:\WINDOWS\system32\Pn802_11.dll] <Intel Corporation.><4, 1, 0, 0>
[C:\WINDOWS\system32\PfMgrApi.dll] <Intel Corporation><4, 1, 0, 0>
[C:\WINDOWS\system32\PsRegApi.dll] <Intel Corporation><4, 1, 0, 0>
[C:\WINDOWS\system32\WConfig.DLL] <Intel Corporation><4, 1, 0, 0>
[C:\WINDOWS\system32\WiFiAdap.DLL] <Intel Corporation><4, 1, 0, 0>
[C:\Program Files\Intel\PROSet\CHS\PNC11CHS.dll] <Intel Corporation.><4, 1, 0, 0>
[C:\WINDOWS\system32\S24MUDLL.dll] <Intel Corporation><4, 1, 0, 0>
[C:\Program Files\Intel\PROSet\CHS\PmApiCHS.dll] <Intel Corporation><4, 1, 0, 0>
[C:\Program Files\Intel\NCS\PROSet\8023\PNC802_3.dll] <Intel(R) Corporation><6.1.303.0>
[C:\Program Files\Intel\NCS\PROSet\8023\CHSPCMRs.dll] <Intel(R) Corporation><6.1.303.0>
[PID: 516][C:\WINDOWS\system32\hkcmd.exe] <Intel Corporation><3.0.0.2172>
[C:\WINDOWS\system32\hccutils.DLL] <Intel Corporation><3.0.0.2172>
[C:\WINDOWS\system32\igfxdev.dll] <Intel Corporation><3.0.0.2172>
[C:\WINDOWS\system32\igfxsrvc.dll] <Intel Corporation><3.0.0.2172>
[C:\WINDOWS\system32\igfxres.dll] <Intel Corporation><3.0.0.2172>
[C:\WINDOWS\system32\igfxhk.dll] <Intel Corporation><3.0.0.2172>
[PID: 608][C:\WINDOWS\system32\pctspk.exe] <><1, 0, 0, 1>
[PID: 1072][C:\Program Files\Rising\Rav\RavTask.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[PID: 1820][C:\WINDOWS\VM_STI.EXE] <BIGDOG><4, 2, 610, 4>
[C:\WINDOWS\system32\msdmo.dll] <N/A><N/A>
[PID: 1276][C:\Program Files\Rising\Rav\Ravmon.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 32>
[C:\Program Files\Rising\Rav\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
[C:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[PID: 2060][C:\Program Files\SkyNet\FireWall\PFW.exe] <广州众达天网技术有限公司><2.7.7.1004>
[C:\Program Files\SkyNet\FireWall\SKYMISC.DLL] <N/A><N/A>
[C:\Program Files\SkyNet\FireWall\COMPRESSWRAP.DLL] <N/A><N/A>
[C:\WINDOWS\system32\dcsws2.dll] <DiamondCS><2.110>
[PID: 2092][C:\Program Files\TrojanHunter 4.5\THGuard.exe] <Mischel Internet Security><4.5.0.275>
[C:\Program Files\TrojanHunter 4.5\unrar.dll] <N/A><N/A>
[C:\Program Files\TrojanHunter 4.5\UNZDLL.DLL] <><1.7.0.4>
[PID: 2124][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 2200][C:\Program Files\Messenger\msmsgs.exe] <Microsoft Corporation><4.7.3001>
[PID: 2248][C:\Program Files\Microsoft ActiveSync\wcescomm.exe] <Microsoft Corporation><4.2.4855.0>
[C:\WINDOWS\system32\dcsws2.dll] <DiamondCS><2.110>
[C:\Program Files\Microsoft ActiveSync\rapiproxystub.dll] <N/A><N/A>
[PID: 2420][C:\PROGRA~1\MICROS~3\rapimgr.exe] <Microsoft Corporation><4.2.4855.0>
[C:\Program Files\Microsoft ActiveSync\rapiproxystub.dll] <N/A><N/A>
[C:\WINDOWS\system32\dcsws2.dll] <DiamondCS><2.110>
[PID: 3060][D:\back\qq2005\QQ.exe] <TENCENT><0, 0, 0, 0>