[PID: 2156 / Administrator][C:\windows\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[c:\program files\rising\rfw\ijt_base.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.10]
[c:\program files\rising\rfw\olemon.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.5]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 1, 5, 1033]
[C:\windows\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\windows\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16608 (vista_gdr.071204-1500)]
[PID: 2172 / Administrator][C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe] [Google Inc., 2, 0, 301, 1654]
[c:\program files\rising\rfw\ijt_base.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.10]
[c:\program files\rising\rfw\olemon.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.5]
[C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\gtn.dll] [Google Inc., 2, 0, 301, 7164]
[C:\windows\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\windows\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16608 (vista_gdr.071204-1500)]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 1, 5, 1033]
[C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\res_zh-CN.dll] [Google Inc., 2, 0, 301, 7164]
[C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll] [Google Inc., 2, 0, 301, 7164]
[PID: 2220 / Administrator][C:\Program Files\Rising\Rav\Ravmon.exe] [Beijing Rising Technology Co., Ltd., 20.0.01.13]
[C:\windows\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\windows\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\windows\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\Rising\Rav\ProcCom.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
[C:\Program Files\Rising\Rav\RsCommX2.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16]
[C:\Program Files\Rising\Rav\recomp.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 30]
[C:\Program Files\Rising\Rav\refs.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 14]
[C:\Program Files\Rising\Rav\viruslib.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 17]
[C:\Program Files\Rising\Rav\relibldr.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 13]
[C:\Program Files\Rising\Rav\RSAPPMGR.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.0]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.10]
[C:\Program Files\Rising\Rav\MonRule.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.28]
[C:\Program Files\Rising\Rav\PngDll.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 4]
[C:\Program Files\Rising\Rav\Rsguilib.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 88]
[C:\Program Files\Rising\Rav\RsXML.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 0]
[PID: 2336 / Administrator][C:\Program Files\Kingsoft\PowerWord 2006\XDICT.EXE] [Kingsoft Co, Ltd., 9, 0, 0, 0]
[C:\Program Files\Kingsoft\PowerWord 2006\AccountActivate.dll] [N/A, ]
[C:\Program Files\Kingsoft\PowerWord 2006\DicMngr.dll] [Kingsoft, 2, 0, 0, 0]
[C:\Program Files\Kingsoft\PowerWord 2006\doshow.dll] [N/A, ]
[C:\Program Files\Kingsoft\PowerWord 2006\ITextOut.dll] [Kingsoft, 1, 1, 0, 0]
[C:\Program Files\Kingsoft\PowerWord 2006\KPic10.dll] [N/A, ]
[C:\Program Files\Kingsoft\PowerWord 2006\ijl11.dll] [Intel Corporation, 1.1.2]
[C:\Program Files\Kingsoft\PowerWord 2006\NormGrab.DLL] [Kingsoft Co, Ltd., 6, 0, 0, 0]
[C:\Program Files\Kingsoft\PowerWord 2006\toTTSEngine50.dll] [Kingsoft Corporation, 1, 0, 0, 1]
[C:\Program Files\Kingsoft\PowerWord 2006\xfile.dll] [N/A, ]
[c:\program files\rising\rfw\ijt_base.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.10]
[c:\program files\rising\rfw\olemon.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.5]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 1, 5, 1033]
[C:\windows\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\windows\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16608 (vista_gdr.071204-1500)]
[C:\Program Files\Kingsoft\PowerWord 2006\DBCore10.dll] [Kingsoft Corp., 1, 0, 0, 0]
[C:\Program Files\Kingsoft\PowerWord 2006\XdictGrb.dll] [Kingsoft Co, Ltd., 9, 0, 0, 0]
[C:\PROGRA~1\COMMON~1\MICROS~1\Speech\sapi.dll] [Microsoft Corporation, 5.1.4111.00 (xpsp_sp2_rtm.040803-2158)]
[C:\windows\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\PROGRA~1\COMMON~1\SPEECH~1\MICROS~1\TTS\1033\spttseng.dll] [Microsoft Corporation, 5.1.4111.00 (XPClient.010817-1148)]
[C:\PROGRA~1\COMMON~1\SPEECH~1\MICROS~1\spcommon.dll] [Microsoft Corporation, 5.1.4111.00 (XPClient.010817-1148)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16608 (vista_gdr.071204-1500)]
[C:\Program Files\Kingsoft\PowerWord 2006\KAVPassport.DLL] [Kingsoft Corporation, 2005, 4, 7, 25]
[C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3]
[PID: 2816 / LOCAL SERVICE][C:\windows\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 2568 / Administrator][C:\Program Files\Tencent\QQ\TXPlatform.exe] [Tencent, 1, 0, 170, 0]
[c:\program files\rising\rfw\ijt_base.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.10]
[c:\program files\rising\rfw\olemon.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.5]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 1, 5, 1033]
[C:\windows\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\windows\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16608 (vista_gdr.071204-1500)]
[PID: 3156 / Administrator][D:\Downloads\PPLive\PPLive.exe] [N/A, ]
[c:\program files\rising\rfw\ijt_base.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.10]
[c:\program files\rising\rfw\olemon.dll] [Beijing Rising Technology Co., Ltd., 7.0.0.5]
[D:\Downloads\PPLive\UI.DLL] [, 1, 9, 0, 1]
[C:\windows\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\windows\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16608 (vista_gdr.071204-1500)]
[D:\Downloads\PPLive\uilib.dll] [Synacast, 1, 0, 0, 1]
[C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll] [Yahoo! China, 3, 1, 5, 1033]
[D:\DOWNLO~1\PPLive\common.dll] [, 1, 0, 0, 1]
[D:\Downloads\PPLive\NetTools.dll] [, 1.0.0.2]
[D:\Downloads\PPLive\PPK.DLL] [N/A, ]
[D:\DOWNLO~1\PPLive\SYNACA~1.OCX] [, 1, 9, 0, 1]
[C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3]
[D:\DOWNLO~1\PPLive\ETS.DLL] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16608 (vista_gdr.071204-1500)]
[D:\DOWNLO~1\PPLive\SYNACA~2.OCX] [Synacast, 1, 9, 0, 1]
[D:\DOWNLO~1\PPLive\AM.DLL] [, 2, 0, 0, 0]