==================================
正在运行的进程
[PID: 420][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 476][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 500][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\Ati2evxx.dll] <ATI Technologies Inc.><6.14.10.4113>
[PID: 544][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 556][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 708][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4113>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2496>
[PID: 720][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 776][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 844][C:\Program Files\Rising\Rav\CCenter.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[PID: 876][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 916][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1024][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1084][C:\Program Files\Rising\Rav\Ravmond.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 26>
[C:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RsLog.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 20>
[C:\Program Files\Rising\Rav\HOOKSYS.dll] <Rising><18, 1, 0, 9>
[C:\Program Files\Rising\Rav\Scanner.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 30>
[C:\Program Files\Rising\Rav\libload.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\VirusLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\regmon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
[C:\Program Files\Rising\Rav\HookWeb.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\MemMon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 9>
[C:\Program Files\Rising\Rav\expscan.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\mPorts.dll] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 3>
[C:\Program Files\Rising\Rav\MailMon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\Program Files\Rising\Rav\SpamEng.dll] <N/A><18, 0, 0, 6>
[C:\Program Files\Rising\Rav\engine.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 30>
[C:\Program Files\Rising\Rav\PostTrt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 9>
[C:\Program Files\Rising\Rav\UnExe.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\ScanExec.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\ScanEx.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\NvFile.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\ScanMac.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 8>
[C:\Program Files\Rising\Rav\ScanSct.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 17>
[C:\Program Files\Rising\Rav\Unpacker.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\Program Files\Rising\Rav\ExtOLE.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
[PID: 1224][C:\WINDOWS\system32\Ati2evxx.exe] <ATI Technologies Inc.><6.14.10.4113>
[C:\WINDOWS\system32\Ati2edxx.dll] <ATI Technologies, Inc.><6, 14, 10, 2496>
[C:\WINDOWS\Downloaded Program Files\Rhoof.dll] <Tencent><4, 1, 1, 17>
[PID: 1304][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
[C:\WINDOWS\Downloaded Program Files\Rhoof.dll] <Tencent><4, 1, 1, 17>
[C:\WINDOWS\Downloaded Program Files\Zkdizo.dll] <Tencent><4, 1, 1, 17>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[C:\WINDOWS\system32\Ehmn.dll] <N/A><N/A>
[C:\WINDOWS\system32\Qhhxsj.dll] <N/A><N/A>
[C:\WINDOWS\system32\Mtbao.dll] <N/A><N/A>
[C:\WINDOWS\system32\Wclkx.dll] <N/A><N/A>
[C:\WINDOWS\system32\Ywrtl.dll] <N/A><N/A>
[C:\WINDOWS\system32\Cyiz.dll] <N/A><N/A>
[C:\WINDOWS\system32\Vmfqd.dll] <N/A><N/A>
[C:\WINDOWS\system32\Tdmct.dll] <N/A><N/A>
[C:\WINDOWS\system32\Yoanoo.dll] <N/A><N/A>
[C:\WINDOWS\system32\Iqruaa.dll] <N/A><N/A>
[C:\WINDOWS\system32\Hfrkyy.dll] <N/A><N/A>
[C:\WINDOWS\system32\Lqmei.dll] <N/A><N/A>
[C:\WINDOWS\system32\Xryt.dll] <N/A><N/A>
[C:\WINDOWS\system32\Mkct.dll] <N/A><N/A>
[C:\WINDOWS\system32\Dziyw.dll] <N/A><N/A>
[C:\WINDOWS\system32\Bypdz.dll] <N/A><N/A>
[C:\WINDOWS\system32\Lfwk.dll] <N/A><N/A>
[C:\WINDOWS\system32\Phkzaq.dll] <N/A><N/A>
[C:\WINDOWS\system32\Lmfiz.dll] <N/A><N/A>
[C:\WINDOWS\system32\Tiumv.dll] <N/A><N/A>
[C:\WINDOWS\system32\Uiipji.dll] <N/A><N/A>
[C:\WINDOWS\system32\Noimb.dll] <N/A><N/A>
[C:\WINDOWS\system32\Tcmcj.dll] <N/A><N/A>
[C:\WINDOWS\system32\Hnrv.dll] <N/A><N/A>
[C:\WINDOWS\system32\Wuzkt.dll] <N/A><N/A>
[C:\WINDOWS\system32\Widb.dll] <N/A><N/A>
[C:\WINDOWS\system32\Iixjt.dll] <N/A><N/A>
[C:\WINDOWS\system32\Snhf.dll] <N/A><N/A>
[C:\WINDOWS\system32\Nsfv.dll] <N/A><N/A>
[C:\WINDOWS\system32\Smdqn.dll] <N/A><N/A>
[C:\WINDOWS\system32\Vtyij.dll] <N/A><N/A>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll] <Yahoo!><2, 0, 3, 1023>
[C:\PROGRA~1\MMSASS~1\Mmsass~1.dll] <><1, 2, 0, 2>
[C:\DOCUME~1\pan\LOCALS~1\Temp\SSLive.dll] <TENCENT><4, 1, 1, 17>
[C:\WINDOWS\cm_dwgthumb.dll] <N/A><N/A>