瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 【求助】中的不知道是什么病毒,过一段时间机器就提示重新启动(附日志)

12   2  /  2  页   跳转

【求助】中的不知道是什么病毒,过一段时间机器就提示重新启动(附日志)

[PID: 1252][C:\WINNT\system32\regsvc.exe]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\secur32.dll]  [Microsoft Corporation, 5.00.2195.6695]
[PID: 1292][C:\Program Files\Rising\Rav\RNReport.exe]  [瑞星科技股份发展有限公司, 19, 0, 0, 10]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\MFC42.DLL]  [Microsoft Corporation, 6.00.9586.0]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\USER32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\ole32.dll]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\WSOCK32.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MSVCP60.dll]  [Microsoft Corporation, 6.00.8168.0]
    [C:\WINNT\system32\snmpapi.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\MFC42LOC.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [C:\WINNT\system32\inetmib1.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\iphlpapi.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\system32\ICMP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MPRAPI.DLL]  [Microsoft Corporation, 5.00.2181.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\NETAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\OLEAUT32.DLL]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\ACTIVEDS.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ADSLDPC.DLL]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\DHCPCSVC.DLL]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\Program Files\Rising\Rav\RsCommx.dll]  [rising, 18, 0, 0, 1]
    [C:\WINNT\System32\rnr20.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\System32\winrnr.dll]  [Microsoft Corporation, 5.00.2160.1]
    [C:\WINNT\system32\rasadhlp.dll]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\msafd.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\System32\wshtcpip.dll]  [Microsoft Corporation, 5.00.2195.6601]
[PID: 1380][C:\WINNT\system32\MSTask.exe]  [Microsoft Corporation, 4.71.2195.6704]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\USER32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\NETAPI32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\WSOCK32.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\USERENV.dll]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\mswsock.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\msafd.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\System32\wshtcpip.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\rnr20.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\iphlpapi.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\system32\ICMP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MPRAPI.DLL]  [Microsoft Corporation, 5.00.2181.1]
    [C:\WINNT\system32\OLE32.DLL]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\OLEAUT32.DLL]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\ACTIVEDS.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ADSLDPC.DLL]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\DHCPCSVC.DLL]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\WINNT\System32\winrnr.dll]  [Microsoft Corporation, 5.00.2160.1]
    [C:\WINNT\system32\rasadhlp.dll]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\MSIDLE.DLL]  [Microsoft Corporation, 5.00.2920.0000]
[PID: 1480][C:\WINNT\system32\stisvc.exe]  [Microsoft Corporation, 5.00.2195.6656]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\STI.dll]  [Microsoft Corporation, 5.00.2195.6656]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\COMCTL32.dll]  [Microsoft Corporation, 5.81]
gototop
 

[PID: 1556][C:\WINNT\System32\WBEM\WinMgmt.exe]  [Microsoft Corporation, 1.50.1085.0100]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\System32\WBEM\wbemcomn.dll]  [Microsoft Corporation, 1.50.1085.0100]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\ole32.dll]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\WINNT\system32\wbem\wbemcore.dll]  [Microsoft Corporation, 1.50.1085.0100]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\wbem\fastprox.dll]  [Microsoft Corporation, 1.50.1085.0100]
    [C:\WINNT\system32\wbem\wbemess.dll]  [Microsoft Corporation, 1.50.1085.0100]
    [C:\WINNT\system32\wbem\wbemsvc.dll]  [Microsoft Corporation, 1.50.1085.0007]
[PID: 1572][C:\WINNT\system32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\ADVAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\OLE32.DLL]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\USER32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [c:\winnt\system32\wuauserv.dll]  [Microsoft Corporation, 5.4.3630.2554 built by: lab04_n]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\wuaueng.dll]  [Microsoft Corporation, 5.4.3630.2554 built by: lab04_n]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\ADVPACK.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\USERENV.dll]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\sfc.dll]  [Microsoft Corporation, 5.00.2195.6673]
    [C:\WINNT\system32\sfcfiles.dll]  [Microsoft Corporation, 5.00.2195.6894]
    [C:\WINNT\system32\WINSTA.dll]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\WTSAPI32.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\UTILDLL.dll]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\TAPI32.dll]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\NETAPI32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\WSOCK32.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\REGAPI.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\system32\MPRAPI.dll]  [Microsoft Corporation, 5.00.2181.1]
    [C:\WINNT\system32\ACTIVEDS.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ADSLDPC.DLL]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\WININET.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2195.6824]
    [C:\WINNT\system32\MSASN1.DLL]  [Microsoft Corporation, 5.00.2195.6905]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\WINNT\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.00.2195.6659]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\es.dll]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\WINNT\system32\TxfAux.Dll]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\WINNT\system32\msv1_0.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\IPHLPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\system32\ICMP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\DHCPCSVC.DLL]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\WINNT\system32\winhttp.dll]  [Microsoft Corporation, 5.1.2600.1327 (xpsp2.031208-2000)]
[PID: 1588][C:\WINNT\system32\Dfssvc.exe]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\WLDAP32.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\NETAPI32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\WSOCK32.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\CLUSAPI.dll]  [Microsoft Corporation, 5.00.2195.6683]
    [C:\WINNT\system32\RESUTILS.dll]  [Microsoft Corporation, 5.00.2195.6702]
    [C:\WINNT\system32\USERENV.dll]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
[PID: 1616][C:\WINNT\system32\inetsrv\inetinfo.exe]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\ole32.dll]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\IisRTL.DLL]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\inetsrv\rpcref.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\iisadmin.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\COADMIN.DLL]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\SHELL32.DLL]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\ADMWPROX.DLL]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\WMI.dll]  [Microsoft Corporation, 5.00.2191.1]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\inetsrv\nsepm.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\IISMAP.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\schannel.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\MSASN1.DLL]  [Microsoft Corporation, 5.00.2195.6905]
gototop
 

[C:\WINNT\system32\CRYPT32.DLL]  [Microsoft Corporation, 5.131.2195.6824]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\WSOCK32.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\inetsrv\metadata.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\wamreg.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\rsabase.dll]  [Microsoft Corporation, 5.00.2195.6619]
    [C:\WINNT\system32\inetsrv\admexs.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\svcext.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\Security.dll]  [Microsoft Corporation, 5.00.2154.1]
    [C:\WINNT\system32\NETAPI32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\inetsrv\ftpsvc2.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\ISATQ.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\INFOCOMM.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\IISFECNV.DLL]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\NntpSvc.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\ATL.DLL]  [Microsoft Corporation, 3.00.9435]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\MSWSOCK.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\STAXMEM.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\exstrace.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\ISRPC.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\RWNH.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\FCACHDLL.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\SMTPSVC.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\inetsrv\w3svc.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsloc.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\lonsint.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\msafd.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\System32\wshtcpip.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\wintrust.dll]  [Microsoft Corporation, 5.131.2195.6824]
    [C:\WINNT\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.00.2195.6613]
    [C:\WINNT\System32\rnr20.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\iphlpapi.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\system32\ICMP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MPRAPI.DLL]  [Microsoft Corporation, 5.00.2181.1]
    [C:\WINNT\system32\ACTIVEDS.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ADSLDPC.DLL]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\DHCPCSVC.DLL]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\WINNT\System32\winrnr.dll]  [Microsoft Corporation, 5.00.2160.1]
    [C:\WINNT\system32\rasadhlp.dll]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\inetsrv\iscomlog.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\sspifilt.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\seo.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\compfilt.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\gzip.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\md5filt.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\rsaenh.dll]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\inetsrv\aqueue.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\System32\wshnetbs.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\40\bin\fpexedll.dll]  [Microsoft Corporation, 4.0.2.7523]
    [C:\WINNT\system32\inetsrv\httpext.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\NTLSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\inetsrv\iislog.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\kerberos.dll]  [Microsoft Corporation, 5.00.2195.6903]
    [C:\WINNT\system32\CRYPTDLL.DLL]  [Microsoft Corporation, 5.00.2195.6607]
    [C:\WINNT\system32\inetsrv\nntpfs.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\inetsrv\mailmsg.dll]  [Microsoft Corporation, 5.00.0984]
    [C:\WINNT\system32\query.dll]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\inetsrv\ntfsdrv.dll]  [Microsoft Corporation, 5.00.0984]
[PID: 1956][C:\WINNT\System32\svchost.exe]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\ADVAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\OLE32.DLL]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\GDI32.dll]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\USER32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [c:\winnt\system32\tapisrv.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\MSVCRT.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\System32\secur32.dll]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\System32\unimdm.tsp]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\SETUPAPI.dll]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\System32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\System32\uniplat.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\CFGMGR32.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\COMCTL32.dll]  [Microsoft Corporation, 5.81]
    [C:\WINNT\System32\NTMARTA.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\System32\WINSPOOL.DRV]  [Microsoft Corporation, 5.00.2195.6659]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\WLDAP32.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\System32\SAMLIB.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\System32\NTDSAPI.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\System32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\System32\WSOCK32.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\System32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\System32\NETAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\System32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\System32\kmddsp.tsp]  [Microsoft Corporation, 5.00.2150.1]
    [C:\WINNT\System32\ndptsp.tsp]  [Microsoft Corporation, 5.00.2143.1]
    [C:\WINNT\System32\ipconf.tsp]  [Microsoft Corporation, 5.00.2143.1]
    [C:\WINNT\System32\h323.tsp]  [Microsoft Corporation, 5.00.2195.6901]
    [C:\WINNT\System32\iphlpapi.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\System32\ICMP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\System32\MPRAPI.DLL]  [Microsoft Corporation, 5.00.2181.1]
    [C:\WINNT\system32\OLEAUT32.DLL]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\System32\ACTIVEDS.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\ADSLDPC.DLL]  [Microsoft Corporation, 5.00.2195.6701]
gototop
 

[C:\WINNT\System32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\System32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\System32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\System32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\System32\DHCPCSVC.DLL]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\WINNT\system32\MSASN1.dll]  [Microsoft Corporation, 5.00.2195.6905]
[PID: 476][C:\WINNT\Explorer.EXE]  [Microsoft Corporation, 5.00.3700.6690]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\ADVAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\USER32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\OLE32.DLL]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\SHDOCVW.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\browseui.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\ntshrui.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\ATL.DLL]  [Microsoft Corporation, 3.00.9435]
    [C:\WINNT\system32\NETAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\WSOCK32.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\mydocs.dll]  [Microsoft Corporation, 5.00.3502.6601]
    [C:\WINNT\System32\ntlanman.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\NETUI0.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\NETUI1.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\NETSHELL.dll]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\webcheck.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\stobject.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\BATMETER.DLL]  [Microsoft Corporation, 5.00.3502.6601]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\POWRPROF.DLL]  [Microsoft Corporation, 5.00.3502.6601]
    [C:\WINNT\system32\WINMM.DLL]  [Microsoft Corporation, 5.00.2161.1]
    [C:\WINNT\system32\MSI.DLL]  [Microsoft Corporation, 2.0.2600.1183]
    [C:\WINNT\system32\cscui.dll]  [Microsoft Corporation, 5.00.2195.6705]
    [C:\WINNT\system32\CSCDLL.DLL]  [Microsoft Corporation, 5.00.2195.6713]
    [C:\WINNT\system32\wdmaud.drv]  [Microsoft Corporation, 5.00.2195.6673]
    [C:\WINNT\system32\msacm32.drv]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MSACM32.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  [Yahoo! China, 3, 0, 5, 1023]
    [C:\WINNT\system32\WININET.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2195.6824]
    [C:\WINNT\system32\MSASN1.DLL]  [Microsoft Corporation, 5.00.2195.6905]
    [C:\WINNT\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.00.2195.6659]
    [C:\WINNT\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.00.2195.6666]
    [c:\winnt\system32\uiygv.dll]  [Microsoft Corporation, 5.1.2600.0]
    [C:\WINNT\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\usbui.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\CfgMgr32.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MLANG.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\browselc.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\yaLive.dll]  [yahoo! china, 3, 6, 6, 1121]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll]  [Yahoo! China, 3, 0, 2, 1011]
    [C:\Program Files\Yahoo!\Assistant\Assist\yphtb.dll]  [Yahoo! China, 3, 0, 4, 1006]
    [C:\WINNT\system32\comdlg32.dll]  [Microsoft Corporation, 5.00.3700.6693]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~2.DLL]  [yahoo! china, 3, 0, 6, 1008]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\assist\yassist.dll]  [Yahoo! China, 3, 1, 8, 1023]
    [C:\WINNT\system32\mshtml.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\c_is2022.dll]  [Microsoft Corporation, 5.00.2195.6688]
    [C:\WINNT\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\MSLS31.DLL]  [Microsoft Corporation, 3.10.337.0]
    [C:\WINNT\system32\webvw.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\WINNT\system32\imgutil.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\mshtmled.dll]  [Microsoft Corporation, 6.00.2800.1106]
    [C:\WINNT\system32\RavExt.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 7]
    [C:\WINNT\system32\diskcopy.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\Program Files\Rising\Rav\RSCOMMON.DLL]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 5]
    [C:\WINNT\system32\msadp32.acm]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\docprop2.dll]  [Microsoft Corporation, 5.00.2178.1]
    [C:\WINNT\system32\MSVFW32.DLL]  [Microsoft Corporation, 5.00.2195.6612]
    [C:\WINNT\system32\AVIFIL32.DLL]  [Microsoft Corporation, 5.00.2195.6612]
    [C:\WINNT\system32\faxshell.dll]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\USP10.DLL]  [Microsoft Corporation, 1.0325.2195.6692]
[PID: 904][C:\WINNT\SOUNDMAN.EXE]  [Realtek Semiconductor Corp., 5.1.14]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\WINMM.dll]  [Microsoft Corporation, 5.00.2161.1]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
gototop
 

[PID: 1940][C:\Program Files\Rising\Rav\RavTray.exe]  [Rising, 19, 0, 0, 16]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\MPR.dll]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\ADVAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\USER32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\Program Files\Rising\Rav\RavUILib.dll]  [, 18, 0, 0, 1]
    [C:\WINNT\system32\WS2_32.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\MSVCRT.DLL]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MFC42.DLL]  [Microsoft Corporation, 6.00.9586.0]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\ole32.dll]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\WSOCK32.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\MSVCP60.dll]  [Microsoft Corporation, 6.00.8168.0]
    [C:\WINNT\system32\snmpapi.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\MFC42LOC.DLL]  [Microsoft Corporation, 6.00.8665.0]
    [C:\WINNT\system32\inetmib1.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\iphlpapi.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\system32\ICMP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MPRAPI.DLL]  [Microsoft Corporation, 5.00.2181.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\NETAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\ACTIVEDS.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ADSLDPC.DLL]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\DHCPCSVC.DLL]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\Program Files\Rising\Rav\RavTray936.dll]  [Rising, 19, 0, 0, 16]
    [C:\Program Files\Rising\Rav\RsCommx.dll]  [rising, 18, 0, 0, 1]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  [Yahoo! China, 3, 0, 5, 1023]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\Program Files\Rising\Rav\BDEngine.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 13]
    [C:\Program Files\Rising\Rav\libload.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 16]
    [C:\Program Files\Rising\Rav\BDEX.dll]  [Beijing Rising Technology Co., Ltd., 19, 0, 0, 3]
    [C:\Program Files\Rising\Rav\BDLib.dll]  [Beijing Rising Technology Co., Ltd., 18, 0, 0, 1]
[PID: 1944][C:\WINNT\Twain_32\ScanPro\LANServer.exe]  [, 1, 0, 0, 1]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\comdlg32.dll]  [Microsoft Corporation, 5.00.3700.6693]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\SHELL32.DLL]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.00.2195.6659]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\WSOCK32.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  [Yahoo! China, 3, 0, 5, 1023]
    [C:\WINNT\system32\msafd.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\System32\wshtcpip.dll]  [Microsoft Corporation, 5.00.2195.6601]
[PID: 2032][C:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe]  [Yahoo! China, 3, 2, 2, 1028]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\SHELL32.dll]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\ADVAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\ole32.dll]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  [Yahoo! China, 3, 0, 5, 1023]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\yaLive.dll]  [yahoo! china, 3, 6, 6, 1121]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\WININET.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2195.6824]
    [C:\WINNT\system32\MSASN1.DLL]  [Microsoft Corporation, 5.00.2195.6905]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yalliveex.dll]  [Yahoo! China, 3, 0, 2, 1011]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\sensapi.dll]  [Microsoft Corporation, 5.00.2195.6627]
    [C:\WINNT\system32\netapi32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\WSOCK32.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\ynotifier.dll]  [yahoo! china, 3, 0, 2, 1002]
gototop
 

[PID: 2020][C:\WINNT\system32\internat.exe]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\KERNEL32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\USER32.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\MSVCRT.DLL]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\SHELL32.DLL]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
[PID: 1992][C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe]  [Microsoft Corporation, 2000.080.0760.00]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\SQLUNIRL.dll]  [Microsoft Corporation, 2000.080.0728.00]
    [C:\WINNT\system32\KERNEL32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.00.2195.6659]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\ADVAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\comdlg32.dll]  [Microsoft Corporation, 5.00.3700.6693]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\SHELL32.DLL]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\ole32.dll]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\W95SCM.dll]  [Microsoft Corporation, 2000.080.0760.00]
    [C:\WINNT\system32\ODBC32.dll]  [Microsoft Corporation, 3.520.9030.0]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\SQLSVC.dll]  [Microsoft Corporation, 2000.080.0760.00]
    [C:\WINNT\system32\odbcbcp.dll]  [Microsoft Corporation, 2000.081.9031.038]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\SQLRESLD.dll]  [Microsoft Corporation, 2000.080.0382.00]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\NDDEAPI.DLL]  [Microsoft Corporation, 5.00.2195.6661]
    [C:\WINNT\system32\odbcint.dll]  [Microsoft Corporation, 3.520.9001.0]
    [C:\WINNT\system32\clusapi.dll]  [Microsoft Corporation, 5.00.2195.6683]
    [C:\WINNT\system32\resutils.dll]  [Microsoft Corporation, 5.00.2195.6702]
    [C:\WINNT\system32\USERENV.dll]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\Resources\1033\SQLSVC.RLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\Program Files\Microsoft SQL Server\80\Tools\Binn\Resources\1033\sqlmangr.RLL]  [Microsoft Corporation, 2000.080.0194.00]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  [Yahoo! China, 3, 0, 5, 1023]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\WINNT\system32\cscui.dll]  [Microsoft Corporation, 5.00.2195.6705]
    [C:\WINNT\system32\CSCDLL.DLL]  [Microsoft Corporation, 5.00.2195.6713]
    [C:\WINNT\system32\NETAPI32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\WS2_32.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
    [C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\WSOCK32.DLL]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\msafd.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\System32\wshtcpip.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\System32\rnr20.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\iphlpapi.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\system32\ICMP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MPRAPI.DLL]  [Microsoft Corporation, 5.00.2181.1]
    [C:\WINNT\system32\ACTIVEDS.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ADSLDPC.DLL]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\DHCPCSVC.DLL]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\WINNT\System32\winrnr.dll]  [Microsoft Corporation, 5.00.2160.1]
    [C:\WINNT\system32\rasadhlp.dll]  [Microsoft Corporation, 5.00.2168.1]
[PID: 2220][H:\sreng2\SREng.EXE]  [Smallfrogs Studio, 2.4.12.806]
    [C:\WINNT\system32\ntdll.dll]  [Microsoft Corporation, 5.00.2195.6899]
    [C:\WINNT\system32\kernel32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\USER32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\GDI32.DLL]  [Microsoft Corporation, 5.00.2195.6898]
    [C:\WINNT\system32\comdlg32.dll]  [Microsoft Corporation, 5.00.3700.6693]
    [C:\WINNT\system32\SHLWAPI.DLL]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\msvcrt.dll]  [Microsoft Corporation, 6.10.9844.0]
    [C:\WINNT\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.00.2195.6876]
    [C:\WINNT\system32\RPCRT4.DLL]  [Microsoft Corporation, 5.00.2195.6904]
    [C:\WINNT\system32\COMCTL32.DLL]  [Microsoft Corporation, 5.81]
    [C:\WINNT\system32\SHELL32.DLL]  [Microsoft Corporation, 5.00.3700.6705]
    [C:\WINNT\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.00.2195.6659]
    [C:\WINNT\system32\MPR.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\oledlg.dll]  [Microsoft Corporation, 1.0]
    [C:\WINNT\system32\OLE32.DLL]  [Microsoft Corporation, 5.00.2195.6906]
    [C:\WINNT\system32\OLEAUT32.dll]  [Microsoft Corporation, 2.40.4522]
    [C:\WINNT\system32\VERSION.dll]  [Microsoft Corporation, 5.00.2195.6623]
    [C:\WINNT\system32\LZ32.DLL]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2195.6824]
    [C:\WINNT\system32\MSASN1.DLL]  [Microsoft Corporation, 5.00.2195.6905]
    [C:\WINNT\system32\WINMM.dll]  [Microsoft Corporation, 5.00.2161.1]
    [C:\WINNT\system32\WS2_32.dll]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\WS2HELP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\WININET.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\system32\IMM32.DLL]  [Microsoft Corporation, 5.00.2195.6655]
    [C:\WINNT\system32\RICHED20.DLL]  [Microsoft Corporation, 5.30.23.1215]
    [C:\WINNT\system32\INDICDLL.dll]  [Microsoft Corporation, 5.00.2920.0000]
    [C:\PROGRA~1\Yahoo!\ASSIST~1\Yhelper.dll]  [Yahoo! China, 3, 0, 5, 1023]
    [C:\WINNT\system32\sfc.dll]  [Microsoft Corporation, 5.00.2195.6673]
    [C:\WINNT\system32\sfcfiles.dll]  [Microsoft Corporation, 5.00.2195.6894]
    [C:\WINNT\system32\Sensapi.dll]  [Microsoft Corporation, 5.00.2195.6627]
    [C:\WINNT\system32\wsock32.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6625]
    [C:\WINNT\system32\RASMAN.DLL]  [Microsoft Corporation, 5.00.2195.6604]
    [C:\WINNT\system32\TAPI32.DLL]  [Microsoft Corporation, 5.00.2195.6664]
    [C:\WINNT\system32\RTUTILS.DLL]  [Microsoft Corporation, 5.00.2168.1]
    [C:\WINNT\system32\USERENV.DLL]  [Microsoft Corporation, 5.00.2195.6794]
    [C:\WINNT\system32\netapi32.dll]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\SECUR32.DLL]  [Microsoft Corporation, 5.00.2195.6695]
    [C:\WINNT\system32\NETRAP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\SAMLIB.DLL]  [Microsoft Corporation, 5.00.2195.6897]
    [C:\WINNT\system32\WLDAP32.DLL]  [Microsoft Corporation, 5.00.2195.6666]
gototop
 

[C:\WINNT\system32\DNSAPI.DLL]  [Microsoft Corporation, 5.00.2195.6824]
    [C:\WINNT\system32\wintrust.dll]  [Microsoft Corporation, 5.131.2195.6824]
    [C:\WINNT\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.00.2195.6613]
    [C:\WINNT\system32\rsaenh.dll]  [Microsoft Corporation, 5.00.2195.6611]
    [C:\WINNT\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2800.1400]
    [C:\WINNT\System32\rnr20.dll]  [Microsoft Corporation, 5.00.2195.6603]
    [C:\WINNT\system32\iphlpapi.dll]  [Microsoft Corporation, 5.00.2195.6602]
    [C:\WINNT\system32\ICMP.DLL]  [Microsoft Corporation, 5.00.2134.1]
    [C:\WINNT\system32\MPRAPI.DLL]  [Microsoft Corporation, 5.00.2181.1]
    [C:\WINNT\system32\ACTIVEDS.DLL]  [Microsoft Corporation, 5.00.2195.6601]
    [C:\WINNT\system32\ADSLDPC.DLL]  [Microsoft Corporation, 5.00.2195.6701]
    [C:\WINNT\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.00.2195.6622]
    [C:\WINNT\system32\DHCPCSVC.DLL]  [Microsoft Corporation, 5.00.2195.6685]
    [C:\WINNT\System32\winrnr.dll]  [Microsoft Corporation, 5.00.2160.1]
    [C:\WINNT\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2000.2.3511.0]
    [C:\WINNT\system32\rasadhlp.dll]  [Microsoft Corporation, 5.00.2168.1]

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINNT\hh.exe" %1]
.HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者
N/A

==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1        localhost

==================================
API HOOK
N/A

==================================
隐藏进程
N/A

==================================


[/CODE]
gototop
 

高手帮忙看看啊。好象是新病毒吧。而且服务里有一项关于显卡的服务。
gototop
 

帮忙看看啊。别掉了啊
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT