==================================
正在运行的进程
[PID: 472][\SystemRoot\System32\smss.exe] [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[PID: 556][\??\C:\WINDOWS\system32\csrss.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 580][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[PID: 624][C:\WINDOWS\system32\services.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 636][C:\WINDOWS\system32\lsass.exe] [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[PID: 796][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\WINDOWS\System32\vgtiug.dll] [N/A, N/A]
[C:\WINDOWS\System32\kbjqhp.dll] [N/A, N/A]
[C:\WINDOWS\System32\civwof.dll] [N/A, N/A]
[C:\WINDOWS\System32\ecxvrk.dll] [N/A, N/A]
[C:\WINDOWS\System32\ekpmsz.dll] [N/A, N/A]
[PID: 848][C:\Program Files\Rising\Rav\CCenter.exe] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 3]
[PID: 876][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 996][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1024][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1040][C:\Program Files\Rising\Rav\Ravmond.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 49]
[C:\Program Files\Rising\Rav\BWList.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\Program Files\Rising\Rav\rfwctrl.dll] [Beijing Rising Technology Co., Ltd., 5, 0, 0, 11]
[C:\Program Files\Rising\Rav\RsPPsys.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 6]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\Rising\Rav\RsLog.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 20]
[C:\Program Files\Rising\Rav\HOOKSYS.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 0]
[C:\Program Files\Rising\Rav\Scanner.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 15]
[C:\Program Files\Rising\Rav\libload.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 16]
[C:\Program Files\Rising\Rav\VirusLib.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 12]
[C:\Program Files\Rising\Rav\regmon.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 6]
[C:\Program Files\Rising\Rav\HookWeb.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 1]
[C:\Program Files\Rising\Rav\MemMon.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 14]
[C:\Program Files\Rising\Rav\expscan.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[C:\Program Files\Rising\Rav\mPorts.dll] [Beijing Rising Technology Co., Ltd., 4, 0, 0, 3]
[C:\Program Files\Rising\Rav\HookCont.dll] [Rising, 19, 0, 0, 0]
[C:\Program Files\Rising\Rav\SpamEng.dll] [N/A, 18, 0, 0, 6]
[C:\Program Files\Rising\Rav\engine.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 27]
[C:\Program Files\Rising\Rav\PostTrt.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 14]
[C:\Program Files\Rising\Rav\UnExe.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
[C:\Program Files\Rising\Rav\ScanExec.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 16]
[C:\Program Files\Rising\Rav\ScanEx.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 54]
[C:\Program Files\Rising\Rav\ExtFile.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 28]
[C:\Program Files\Rising\Rav\NvFile.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 11]
[C:\Program Files\Rising\Rav\ScanMac.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 14]
[C:\Program Files\Rising\Rav\ScanSct.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 19]
[C:\Program Files\Rising\Rav\Unpacker.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 20]
[C:\Program Files\Rising\Rav\ScanPack.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 23]
[C:\Program Files\Rising\Rav\RsVM.dll] [N/A, 19, 0, 0, 18]
[C:\Program Files\Rising\Rav\ScanNet.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[C:\Program Files\Rising\Rav\Uroutine.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 30]
[C:\Program Files\Rising\Rav\Uscript.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 19]
[C:\Program Files\Rising\Rav\RsStore.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
[C:\Program Files\Rising\Rav\ExtOLE.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 13]
[PID: 1248][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.0 (XPClient.010817-1148)]
[PID: 1356][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2800.1106 (xpsp1.020828-1920)]
[C:\WINDOWS\system32\nwguf.dll] [N/A, N/A]
[C:\WINDOWS\System32\moyu102.dll] [N/A, N/A]
[C:\WINDOWS\System32\nwizhx2.dll] [N/A, N/A]
[C:\WINDOWS\System32\igfxpph.dll] [Intel Corporation, 3,0,0,1517]
[C:\WINDOWS\System32\hccutils.DLL] [Intel Corporation, 3,0,0,1517]
[C:\WINDOWS\System32\igfxres.dll] [Intel Corporation, 3,0,0,1517]
[C:\WINDOWS\System32\igfxsrvc.dll] [Intel Corporation, 3,0,0,1517]
[C:\WINDOWS\System32\igfxdev.dll] [Intel Corporation, 3,0,0,1517]
[C:\PROGRA~1\WinZip\WZSHLSTB.DLL] [WinZip Computing, Inc., 3.0 (32-bit)]
[C:\Program Files\WinRAR\rarext.dll] [N/A, N/A]
[C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\WINDOWS\System32\vgtiug.dll] [N/A, N/A]
[C:\WINDOWS\System32\bwlgtd.dll] [N/A, N/A]
[C:\WINDOWS\System32\kbjqhp.dll] [N/A, N/A]
[C:\WINDOWS\System32\civwof.dll] [N/A, N/A]
[C:\WINDOWS\System32\ecxvrk.dll] [N/A, N/A]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Gjzo1.dll] [N/A, N/A]
[C:\WINDOWS\System32\Kvsc3.dll] [N/A, N/A]
[C:\WINDOWS\System32\MsIMMs32.dll] [N/A, N/A]
[C:\WINDOWS\System32\ekpmsz.dll] [N/A, N/A]
[PID: 1580][C:\Program Files\Rising\Rav\RavTask.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 9]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\WINDOWS\System32\vgtiug.dll] [N/A, N/A]
[C:\WINDOWS\System32\kbjqhp.dll] [N/A, N/A]
[C:\WINDOWS\System32\civwof.dll] [N/A, N/A]
[C:\WINDOWS\System32\ecxvrk.dll] [N/A, N/A]
[C:\WINDOWS\System32\ekpmsz.dll] [N/A, N/A]
[PID: 1620][C:\WINDOWS\System32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[C:\WINDOWS\System32\vgtiug.dll] [N/A, N/A]
[C:\WINDOWS\System32\kbjqhp.dll] [N/A, N/A]
[C:\WINDOWS\System32\civwof.dll] [N/A, N/A]
[C:\WINDOWS\System32\ecxvrk.dll] [N/A, N/A]
[C:\WINDOWS\System32\ekpmsz.dll] [N/A, N/A]
[PID: 1788][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[PID: 332][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 2188][C:\WINDOWS\System32\conime.exe] [Microsoft Corporation, 5.1.2600.1106 (xpsp1.020828-1920)]
[C:\WINDOWS\System32\ekpmsz.dll] [N/A, N/A]
[C:\WINDOWS\System32\ecxvrk.dll] [N/A, N/A]
[C:\WINDOWS\System32\civwof.dll] [N/A, N/A]
[C:\WINDOWS\System32\kbjqhp.dll] [N/A, N/A]
[C:\WINDOWS\System32\vgtiug.dll] [N/A, N/A]
[PID: 2384][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.2800.1106 (xpsp1.020828-1920)]
[C:\Program Files\Super Rabbit\IEG\haokanbar.dll] [Xiang Feng Technology, 2, 2, 0, 1612]
[C:\Program Files\Common Files\CPUSH\cpush.dll] [N/A, 1.0.2.9]
[C:\Documents and Settings\All Users\Application Data\Microsoft\PCTools\pctools.dll] [金泰丰(广州)科技有限公司, 2, 3, 0, 0]
[C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[C:\WINDOWS\System32\vgtiug.dll] [N/A, N/A]
[C:\WINDOWS\System32\civwof.dll] [N/A, N/A]
[C:\WINDOWS\System32\kbjqhp.dll] [N/A, N/A]
[C:\WINDOWS\System32\ecxvrk.dll] [N/A, N/A]
[C:\WINDOWS\System32\ekpmsz.dll] [N/A, N/A]
[PID: 1052][C:\Documents and Settings\Administrator\Local Settings\Temp\temp.exe] [N/A, N/A]
[PID: 2912][C:\WINDOWS\SYSTEM32\RUNDLLFOROUR.EXE] [Microsoft Corporation, 5.00.2134.1]
[PID: 2944][C:\Program Files\WinRAR\WinRAR.exe] [N/A, N/A]
[C:\WINDOWS\System32\ekpmsz.dll] [N/A, N/A]
[C:\WINDOWS\System32\ecxvrk.dll] [N/A, N/A]
[C:\WINDOWS\System32\civwof.dll] [N/A, N/A]
[C:\WINDOWS\System32\kbjqhp.dll] [N/A, N/A]
[C:\WINDOWS\System32\vgtiug.dll] [N/A, N/A]
[C:\WINDOWS\System32\MsIMMs32.dll] [N/A, N/A]
[C:\WINDOWS\System32\Kvsc3.dll] [N/A, N/A]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Gjzo1.dll] [N/A, N/A]
[C:\WINDOWS\System32\bwlgtd.dll] [N/A, N/A]
[PID: 3856][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.779\SREng\SREng.exe] [Smallfrogs Studio, 2.2.6.605]