[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[PID: 972][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1008][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1060][C:\Program Files\Rising\Rav\Ravmond.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 1, 35>
[C:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RsLog.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 20>
[C:\Program Files\Rising\Rav\HOOKSYS.dll] <Beijing Rising Technology Co., Ltd.><18, 1, 0, 11>
[C:\Program Files\Rising\Rav\Scanner.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 32>
[C:\Program Files\Rising\Rav\libload.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\VirusLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
[C:\Program Files\Rising\Rav\regmon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
[C:\Program Files\Rising\Rav\HookWeb.dll] <rising><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\MemMon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\expscan.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\mPorts.dll] <Beijing Rising Technology Co., Ltd.><4, 0, 0, 3>
[C:\Program Files\Rising\Rav\MailMon.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\Program Files\Rising\Rav\SpamEng.dll] <N/A><18, 0, 0, 6>
[C:\Program Files\Rising\Rav\engine.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 34>
[C:\Program Files\Rising\Rav\PostTrt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[C:\Program Files\Rising\Rav\UnExe.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\ScanExec.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\ScanEx.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 27>
[C:\Program Files\Rising\Rav\RSUnpack.dll] <Beijing Rising Technology Co., Ltd.><1, 0, 0, 17>
[C:\Program Files\Rising\Rav\NvFile.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 7>
[C:\Program Files\Rising\Rav\ScanMac.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\ScanSct.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 19>
[C:\Program Files\Rising\Rav\Unpacker.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[C:\Program Files\Rising\Rav\ExtOLE.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 6>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[PID: 1264][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\RavExt.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 21>
[C:\Program Files\Internet Explorer\PLUGINS\system3.sys] <N/A><N/A>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\winhelp.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\wldll.dll] <N/A><N/A>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[C:\WINDOWS\system32\nvcpl.dll] <NVIDIA Corporation><6.14.10.8198>
[C:\WINDOWS\system32\NVRSZHC.DLL] <NVIDIA Corporation><6.14.10.8198>
[C:\WINDOWS\system32\nvshell.dll] <N/A><N/A>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Thunder\ComDlls\XunLeiBHO_002.dll] <Thunder Networking Technologies,LTD><5, 0, 0, 2>
[C:\WINDOWS\system32\msdmo.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] <N/A><N/A>
[PID: 1364][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[PID: 1480][C:\Program Files\Rising\Rav\RavStub.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[PID: 1780][C:\WINDOWS\system32\conime.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Program Files\Internet Explorer\PLUGINS\system3.sys] <N/A><N/A>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\winhelp.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\WINDOWS\system32\wldll.dll] <N/A><N/A>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] <N/A><N/A>
[PID: 164][C:\WINDOWS\system32\RUNDLL32.EXE] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\system32\winhelp.dll] <TODO: <公司名>><1.0.0.1>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[C:\Program Files\Internet Explorer\PLUGINS\system3.sys] <N/A><N/A>
[C:\WINDOWS\system32\NvMcTray.dll] <NVIDIA Corporation><6.14.10.8198>
[C:\WINDOWS\system32\NVRSZHC.DLL] <NVIDIA Corporation><6.14.10.8198>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\WINDOWS\system32\wldll.dll] <N/A><N/A>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] <N/A><N/A>
[PID: 280][C:\Program Files\Internet Explorer\iexplore.exe] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[C:\Program Files\Internet Explorer\PLUGINS\system3.sys] <N/A><N/A>
[C:\WINDOWS\system32\winhelp.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\wldll.dll] <N/A><N/A>
[C:\WINDOWS\system32\kakatool.dll] <Beijing Rising Technology Co., Ltd.><2, 0, 0, 9>
[C:\WINDOWS\system32\YHBO.dll] <TODO: <公司名>><1.0.0.1>
[C:\Program Files\Thunder\ComDlls\XunLeiBHO_002.dll] <Thunder Networking Technologies,LTD><5, 0, 0, 2>
[D:\新建文~3\KuGoo2\KUGOO3~1.OCX] <N/A><N/A>
[C:\WINDOWS\system32\HTTPDll.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\Program Files\Rising\Rav\RavScrCh.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] <N/A><N/A>
[PID: 352][C:\WINDOWS\command\rundll32.exe] <N/A><N/A>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[C:\Program Files\Internet Explorer\PLUGINS\system3.sys] <N/A><N/A>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[C:\WINDOWS\system32\winhelp.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\wldll.dll] <N/A><N/A>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] <N/A><N/A>
[PID: 912][C:\Program Files\Rising\Rav\RavTask.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 11>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Internet Explorer\PLUGINS\system3.sys] <N/A><N/A>
[C:\Documents and Settings\yh\Local Settings\Temp\~BackupFiles\f97c5d29941bfb1b2fdab0874906ab82.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\wldll.dll] <N/A><N/A>
[C:\WINDOWS\system32\winhelp.dll] <TODO: <公司名>><1.0.0.1>
[C:\WINDOWS\system32\tdll.dll] <N/A><N/A>
[C:\DOCUME~1\yh\LOCALS~1\Temp\falbonn.dll] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] <N/A><N/A>
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] <N/A><N/A>
[PID: 920][C:\WINDOWS\VM_STI.EXE] <VM.><4.2.610.4>