[PID: 1172 / Zhao][C:\Program Files\Analog Devices\SoundMAX\Smax4.exe] [Analog Devices, Inc., 5, 0, 0, 18]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[PID: 1276 / Zhao][C:\Program Files\VIA\RAID\raid_tool.exe] [VIA Technologies, 4, 0, 6, 0]
[C:\Program Files\VIA\RAID\drvInterface.dll] [VIA, 4, 0, 4, 0]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[PID: 1308 / Zhao][C:\WINDOWS\system32\RUNDLL32.EXE] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\NvMcTray.dll] [NVIDIA Corporation, 6.14.10.7777]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.10.7777]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[PID: 1324 / Zhao][C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe] [Yahoo! China, 3, 1, 9, 1025]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\PROGRA~1\Yahoo!\ASSIST~1\YAlive.dll] [yahoo! china, 3, 5, 9, 1111]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll] [Yahoo! China, 3, 0, 1, 1010]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[C:\PROGRA~1\Yahoo!\ASSIST~1\ynotifier.dll] [yahoo! china, 3, 0, 1, 1001]
[PID: 1340 / Zhao][C:\Program Files\Rising\Rav\RavTask.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 7]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[PID: 1428 / Zhao][C:\Program Files\Rising\Rav\Ravmon.exe] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 36]
[C:\Program Files\Rising\Rav\RsGuiLib.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 28]
[C:\Program Files\Rising\Rav\BWList.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 10]
[C:\WINDOWS\system32\jzgpri.dll] [N/A, ]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 2]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 13]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
[C:\Program Files\Rising\Rav\RsCommX.dll] [rising, 18, 0, 0, 1]
[C:\Program Files\Rising\Rav\RsXML.dll] [Beijing Rising Technology Co., Ltd., 19, 0, 0, 2]
[C:\Program Files\Rising\Rav\PngDll.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 5]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[C:\WINDOWS\system32\RAVWDMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVZTMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAV008C.DAT] [N/A, ]
[C:\WINDOWS\system32\RAV0138.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVCQMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVCHDMON.DAT] [N/A, ]
[C:\WINDOWS\system32\NVDispDrv.dll] [N/A, ]
[C:\WINDOWS\system32\tlqpri.dll] [N/A, ]
[C:\WINDOWS\system32\wldpri.dll] [N/A, ]
[C:\WINDOWS\system32\xyhpri.dll] [N/A, ]
[C:\WINDOWS\system32\mydpri.dll] [N/A, ]
[C:\WINDOWS\system32\wlfpri.dll] [N/A, ]
[C:\WINDOWS\system32\RAV0131.DAT] [N/A, ]
[PID: 1404 / Zhao][C:\WINDOWS\system32\CTFMON.EXE] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\xyhpri.dll] [N/A, ]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[PID: 1024 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1904 / Zhao][C:\WINDOWS\system32\conime.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[PID: 4036 / Zhao][C:\WINDOWS\system32\taskmgr.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\tlqpri.dll] [N/A, ]
[C:\WINDOWS\system32\RAVCHDMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVCQMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAV0138.DAT] [N/A, ]
[C:\WINDOWS\system32\RAV008C.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVZTMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVWDMON.DAT] [N/A, ]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[C:\WINDOWS\system32\wlfpri.dll] [N/A, ]
[C:\WINDOWS\system32\NVDispDrv.dll] [N/A, ]
[C:\WINDOWS\system32\wldpri.dll] [N/A, ]
[C:\WINDOWS\system32\jzgpri.dll] [N/A, ]
[C:\WINDOWS\system32\xyhpri.dll] [N/A, ]
[C:\WINDOWS\system32\mydpri.dll] [N/A, ]
[C:\WINDOWS\system32\RAV0131.DAT] [N/A, ]
[PID: 2000 / Zhao][D:\Maxthon\Maxthon.exe] [Maxthon International Ltd., 1, 6, 1, 22]
[D:\Maxthon\maxzlib.dll] [ , 1, 0, 0, 2]
[C:\WINDOWS\system32\mydpri.dll] [N/A, ]
[C:\WINDOWS\system32\msdebug.dll] [N/A, ]
[C:\WINDOWS\system32\RAV0131.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVCHDMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVCQMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAV0138.DAT] [N/A, ]
[C:\WINDOWS\system32\RAV008C.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVZTMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVWDMON.DAT] [N/A, ]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\odbcbcp.dll] [Microsoft Corporation, 2000.085.1117.00 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[D:\Maxthon\Services\RealTime\real_time.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\wlfpri.dll] [N/A, ]
[C:\WINDOWS\system32\NVDispDrv.dll] [N/A, ]
[C:\WINDOWS\system32\tlqpri.dll] [N/A, ]
[C:\WINDOWS\system32\wldpri.dll] [N/A, ]
[C:\WINDOWS\system32\jzgpri.dll] [N/A, ]
[C:\WINDOWS\system32\xyhpri.dll] [N/A, ]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 18, 0, 0, 4]
[C:\WINDOWS\system32\Macromed\Flash\Flash8.ocx] [Macromedia, Inc., 8,0,5,0]
[PID: 2560 / Zhao][F:\工具\反网络劫持工具\SREngPS.EXE] [Smallfrogs Studio, 2.5.16.900]
[C:\WINDOWS\system32\jzgpri.dll] [N/A, ]
[C:\WINDOWS\system32\msdebug.dll] [N/A, ]
[C:\WINDOWS\system32\RAV0131.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVCHDMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVCQMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAV0138.DAT] [N/A, ]
[C:\WINDOWS\system32\RAV008C.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVZTMON.DAT] [N/A, ]
[C:\WINDOWS\system32\RAVWDMON.DAT] [N/A, ]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 0, 5, 1023]
[C:\PROGRA~1\Yahoo!\ASSIST~1\assist\ykern.dll] [Yahoo! China, 3, 1, 9, 1025]
[C:\Program Files\Internet Explorer\PLUGINS\WinSys64.Sys] [N/A, ]
[C:\WINDOWS\system32\sh.dll] [N/A, ]
[C:\WINDOWS\system32\wlfpri.dll] [N/A, ]
[C:\WINDOWS\system32\NVDispDrv.dll] [N/A, ]
[C:\WINDOWS\system32\tlqpri.dll] [N/A, ]
[C:\WINDOWS\system32\wldpri.dll] [N/A, ]
[C:\WINDOWS\system32\xyhpri.dll] [N/A, ]
[C:\WINDOWS\system32\mydpri.dll] [N/A, ]