[PID: 1000 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1104 / SYSTEM][C:\WINDOWS\System32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\wups2.dll] [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
[PID: 1184 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1300 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1456 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe] [Microsoft Corporation, 5.1.2600.2696 (xpsp_sp2_gdr.050610-1519)]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[PID: 1748 / Administrator][C:\WINDOWS\Explorer.EXE] [Microsoft Corporation, 6.00.2900.3156 (xpsp_sp2_gdr.070613-1234)]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[c:\documents and settings\administrator\application data\ppstream\bin\1.0.0.2\vodrc.dll] [ppstream.com, 1.0.0.2]
[C:\WINDOWS\system32\mfdesy.dll] [N/A, ]
[C:\WINDOWS\system32\zgfdet.dll] [N/A, ]
[C:\WINDOWS\system32\zrexgx.dll] [N/A, ]
[C:\WINDOWS\system32\sgrefg.dll] [N/A, ]
[C:\WINDOWS\system32\hfrdzx.dll] [N/A, ]
[C:\WINDOWS\system32\hhrdxd.dll] [N/A, ]
[C:\WINDOWS\system32\wrqszl.dll] [N/A, ]
[C:\WINDOWS\system32\wyrsdj.dll] [N/A, ]
[C:\WINDOWS\system32\cedafb.dll] [N/A, ]
[C:\WINDOWS\system32\jdsaex.dll] [N/A, ]
[C:\WINDOWS\system32\fmcvxy.dll] [N/A, ]
[C:\WINDOWS\system32\jhrcar.dll] [N/A, ]
[C:\WINDOWS\system32\dionpis.dll] [N/A, ]
[C:\WINDOWS\system32\anistio.dll] [N/A, ]
[C:\WINDOWS\system32\dbhlp32.dlL] [N/A, ]
[C:\WINDOWS\system32\fmsjhif.dll] [N/A, ]
[C:\WINDOWS\system32\hefcndy.dll] [N/A, ]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.11.6928]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.11.6928]
[C:\WINDOWS\system32\isndntio.dll] [N/A, ]
[C:\WINDOWS\system32\nvapi.dll] [NVIDIA Corporation, 6.14.11.6928]
[C:\WINDOWS\system32\nvshell.dll] [, ]
[C:\WINDOWS\system32\wipicdec.dll] [N/A, ]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\WinRAR\rarext.dll] [N/A, ]
[C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.17]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16]
[C:\WINDOWS\system32\Audiodev.dll] [Microsoft Corporation, 5.2.3802.3802 built by: dnsrv(bld4act)]
[C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.5.16]
[C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 8, 61]
[C:\Program Files\Microsoft Office\OFFICE11\msohev.dll] [Microsoft Corporation, 11.0.5510]
[PID: 2028 / Administrator][C:\WINDOWS\tsnpstd3.exe] [, 1, 1, 5, 10]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[C:\WINDOWS\system32\jhrcar.dll] [N/A, ]
[C:\WINDOWS\system32\fmcvxy.dll] [N/A, ]
[C:\WINDOWS\system32\jdsaex.dll] [N/A, ]
[C:\WINDOWS\system32\cedafb.dll] [N/A, ]
[C:\WINDOWS\system32\wyrsdj.dll] [N/A, ]
[C:\WINDOWS\system32\wrqszl.dll] [N/A, ]
[C:\WINDOWS\system32\hhrdxd.dll] [N/A, ]
[C:\WINDOWS\system32\hfrdzx.dll] [N/A, ]
[C:\WINDOWS\system32\sgrefg.dll] [N/A, ]
[C:\WINDOWS\system32\zrexgx.dll] [N/A, ]
[C:\WINDOWS\system32\zgfdet.dll] [N/A, ]
[C:\WINDOWS\system32\mfdesy.dll] [N/A, ]
[C:\WINDOWS\system32\msdmo.dll] [, ]
[C:\WINDOWS\vsnpstd3.dll] [ , 1, 0, 2, 0]
[PID: 240 / Administrator][C:\WINDOWS\FixCamera.exe] [, 1, 0, 1, 1]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[C:\WINDOWS\system32\hhrdxd.dll] [N/A, ]
[C:\WINDOWS\system32\jhrcar.dll] [N/A, ]
[C:\WINDOWS\system32\fmcvxy.dll] [N/A, ]
[C:\WINDOWS\system32\jdsaex.dll] [N/A, ]
[C:\WINDOWS\system32\cedafb.dll] [N/A, ]
[C:\WINDOWS\system32\wyrsdj.dll] [N/A, ]
[C:\WINDOWS\system32\wrqszl.dll] [N/A, ]
[C:\WINDOWS\system32\hfrdzx.dll] [N/A, ]
[C:\WINDOWS\system32\sgrefg.dll] [N/A, ]
[C:\WINDOWS\system32\zrexgx.dll] [N/A, ]
[C:\WINDOWS\system32\zgfdet.dll] [N/A, ]
[C:\WINDOWS\system32\mfdesy.dll] [N/A, ]
[PID: 360 / Administrator][C:\WINDOWS\vsnpstd3.exe] [, 1, 1, 5, 11]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[C:\WINDOWS\system32\hhrdxd.dll] [N/A, ]
[C:\WINDOWS\system32\jhrcar.dll] [N/A, ]
[C:\WINDOWS\system32\fmcvxy.dll] [N/A, ]
[C:\WINDOWS\system32\jdsaex.dll] [N/A, ]
[C:\WINDOWS\system32\cedafb.dll] [N/A, ]
[C:\WINDOWS\system32\wyrsdj.dll] [N/A, ]
[C:\WINDOWS\system32\wrqszl.dll] [N/A, ]
[C:\WINDOWS\system32\hfrdzx.dll] [N/A, ]
[C:\WINDOWS\system32\sgrefg.dll] [N/A, ]
[C:\WINDOWS\system32\zrexgx.dll] [N/A, ]
[C:\WINDOWS\system32\zgfdet.dll] [N/A, ]
[C:\WINDOWS\system32\mfdesy.dll] [N/A, ]
[PID: 440 / Administrator][C:\Program Files\Rising\Rav\RavTask.exe] [Beijing Rising Technology Co., Ltd., 20.0.0.22]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[C:\Program Files\Rising\Rav\ProcCom.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
[C:\Program Files\Rising\Rav\RsCommX2.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 16]
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] [Beijing Rising Technology Co., Ltd., 20.0.0.0]
[C:\Program Files\Rising\Rav\CfgDll.dll] [Beijing Rising Technology Co., Ltd., 20.0.0.16]
[C:\WINDOWS\system32\hfrdzx.dll] [N/A, ]
[C:\WINDOWS\system32\sgrefg.dll] [N/A, ]
[C:\WINDOWS\system32\zrexgx.dll] [N/A, ]
[C:\WINDOWS\system32\zgfdet.dll] [N/A, ]
[C:\WINDOWS\system32\mfdesy.dll] [N/A, ]
[C:\WINDOWS\system32\hhrdxd.dll] [N/A, ]
[C:\WINDOWS\system32\jhrcar.dll] [N/A, ]
[C:\WINDOWS\system32\fmcvxy.dll] [N/A, ]
[C:\WINDOWS\system32\jdsaex.dll] [N/A, ]
[C:\WINDOWS\system32\cedafb.dll] [N/A, ]
[C:\WINDOWS\system32\wyrsdj.dll] [N/A, ]
[C:\WINDOWS\system32\wrqszl.dll] [N/A, ]
[PID: 2996 / SYSTEM][C:\WINDOWS\system32\nvsvc32.exe] [NVIDIA Corporation, 6.14.11.6928]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[C:\WINDOWS\system32\nvapi.dll] [NVIDIA Corporation, 6.14.11.6928]
[PID: 3416 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3488 / LOCAL SERVICE][C:\WINDOWS\system32\wdfmgr.exe] [Microsoft Corporation, 5.2.3790.1230 built by: dnsrv(bld4act)]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[PID: 3780 / SYSTEM][C:\WINDOWS\system32\winini.exe] [Microsoft Corporation, 5.2.3790.1830]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[PID: 7340 / Administrator][C:\WINDOWS\system32\ctfmon.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[C:\WINDOWS\system32\hhrdxd.dll] [N/A, ]
[C:\WINDOWS\system32\cedafb.dll] [N/A, ]
[C:\WINDOWS\system32\jdsaex.dll] [N/A, ]
[C:\WINDOWS\system32\wyrsdj.dll] [N/A, ]
[C:\WINDOWS\system32\wrqszl.dll] [N/A, ]
[C:\WINDOWS\system32\hfrdzx.dll] [N/A, ]
[C:\WINDOWS\system32\sgrefg.dll] [N/A, ]
[C:\WINDOWS\system32\zrexgx.dll] [N/A, ]
[C:\WINDOWS\system32\zgfdet.dll] [N/A, ]
[C:\WINDOWS\system32\mfdesy.dll] [N/A, ]
[C:\WINDOWS\system32\jhrcar.dll] [N/A, ]
[C:\WINDOWS\system32\fmcvxy.dll] [N/A, ]
[PID: 10192 / Administrator][c:\net.exe] [N/A, ]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[PID: 10636 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\System32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\System32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\System32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\System32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\System32\msosfmsq00.dll] [N/A, ]
[PID: 11832 / SYSTEM][C:\Program Files\Internet Explorer\iexplore.exe] [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[c:\documents and settings\administrator\application data\ppstream\bin\1.0.0.2\vodrc.dll] [ppstream.com, 1.0.0.2]
[C:\Program Files\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.5.16]
[C:\Program Files\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 8, 61]
[C:\Program Files\Microsoft Office\OFFICE11\msohev.dll] [Microsoft Corporation, 11.0.5510]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\Program Files\Rising\Rav\RavScrCh.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 3]
[C:\WINDOWS\system32\Macromed\Flash\Flash9e.ocx] [Adobe Systems, Inc., 9,0,115,0]
[PID: 4064 / Administrator][C:\Program Files\KWMUSIC\KwMV.exe] [N/A, ]
[C:\Program Files\KWMUSIC\KwLogSvr.dll] [N/A, ]
[C:\Program Files\KWMUSIC\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\Program Files\KWMUSIC\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[C:\Program Files\KWMUSIC\lidx.dll] [N/A, ]
[C:\WINDOWS\system32\hhrdxd.dll] [N/A, ]
[C:\WINDOWS\system32\wrqszl.dll] [N/A, ]
[C:\WINDOWS\system32\jdsaex.dll] [N/A, ]
[C:\WINDOWS\system32\cedafb.dll] [N/A, ]
[C:\WINDOWS\system32\wyrsdj.dll] [N/A, ]
[C:\WINDOWS\system32\mfdesy.dll] [N/A, ]
[C:\WINDOWS\system32\sgrefg.dll] [N/A, ]
[C:\WINDOWS\system32\fmcvxy.dll] [N/A, ]
[C:\WINDOWS\system32\zgfdet.dll] [N/A, ]
[C:\WINDOWS\system32\hfrdzx.dll] [N/A, ]
[C:\WINDOWS\system32\zrexgx.dll] [N/A, ]
[C:\WINDOWS\system32\jhrcar.dll] [N/A, ]
[PID: 3144 / Administrator][C:\Program Files\Rising\Rav\RsAgent.exe] [Beijing Rising Technology Co., Ltd., 20.0.0.7]
[C:\WINDOWS\system32\MFC71.DLL] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\SysDaJHv.dll] [Microsoft Corporation, 5.1.2600.3099]
[C:\WINDOWS\system32\msosdohs00.dll] [N/A, ]
[C:\WINDOWS\system32\msoscqit00.dll] [N/A, ]
[C:\WINDOWS\system32\msosptfs00.dll] [N/A, ]
[C:\WINDOWS\system32\msosfmsq00.dll] [N/A, ]
[C:\Program Files\Rising\Rav\ProcCom.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
[C:\Program Files\Rising\Rav\RsCommX2.dll] [Beijing Rising Technology Co., Ltd., 20, 0, 0, 19]
[C:\WINDOWS\system32\hhrdxd.dll] [N/A, ]
[C:\WINDOWS\system32\wrqszl.dll] [N/A, ]
[C:\WINDOWS\system32\cedafb.dll] [N/A, ]
[C:\WINDOWS\system32\wyrsdj.dll] [N/A, ]
[C:\WINDOWS\system32\jdsaex.dll] [N/A, ]
[C:\WINDOWS\system32\zrexgx.dll] [N/A, ]
[C:\WINDOWS\system32\fmcvxy.dll] [N/A, ]
[C:\WINDOWS\system32\hfrdzx.dll] [N/A, ]
[C:\WINDOWS\system32\zgfdet.dll] [N/A, ]
[C:\WINDOWS\system32\mfdesy.dll] [N/A, ]