瑞星卡卡安全论坛
云烟飞雪 - 2007-8-13 15:18:00
各位大侠我的机器启动之后,只要一上网聊天或者玩单机游戏{比如要塞之类的}没多会就自动重启了,除非浏览浏览新闻 看看电视能撑久点,进这里写这么点字都重启两次了!
重启之后就显示-----
系统已经从一个严重错误中恢复....
瑞星注册表监控信息------
注册表项:HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN
发现:删除<KernelFaultCheck>
进程名称:C:\WINDOWS\system32\dumprep.exe
提示修改;同意还是拒绝!反正不管点哪个一会也还是老样子。
没办法昨天拿去重做系统了,可也没见好,今天拿瑞星一杀,杀了30多个病毒,可能系统都没做彻底!各位帮帮忙,看看我这究竟是什么情况啊,该怎么治!谢谢了!
[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
云烟飞雪 - 2007-8-13 15:20:00
我对于电脑基本等于文盲,求求大家了
冰天 - 2007-8-13 15:26:00
重装系统仍然出问题,说明非系统盘上有病毒。系统启动后病毒会重新感染系统盘。重装系统后用winrar打开非系统盘(千万不要双击我的电脑及本地磁盘),看看有无隐藏的病毒文件,右键删除后再进注册表中删除启动项
云烟飞雪 - 2007-8-13 15:46:00
当时我用移动硬盘拷了点照片和录象下来,然后又装进去的。今天用瑞星在这里面也查出了一个病毒。是不是还要重装系统啊,下面是我刚用卡卡做的诊断日志 你再帮我看看哈 谢谢了!
云烟飞雪 - 2007-8-13 15:47:00
瑞星卡卡电脑诊断日志 v1.30 (2007-8-13 15:15:2) 北京瑞星科技股份有限公司
注释: [A]表示该文件存在自启动关联;
[M]表示该文件在内存中;
+ 注册表自运行项目
+ 系统服务
+ HKLM\System\CurrentControlSet\Services
RfwProxySrv
[A ] 1. d:\rising\rising\rfw\rfwproxy.exe
Beijing Rising Technology Co., Ltd.
Rising Personal Proxy Service
.text,.rdata,.data,.rsrc,
RfwService
[A ] 2. d:\rising\rising\rfw\rfwsrv.exe
Beijing Rising Technology Co., Ltd.
Rising Personal FireWall Service
.text,.rdata,.data,.rsrc,
RsCCenter
[A ] 3. d:\rising\rav\ccenter.exe
Beijing Rising Technology Co., Ltd.
CCenter
.text,.rdata,.data,.rsrc,
RsRavMon
[A ] 4. d:\rising\rav\ravmond.exe
Beijing Rising Technology Co., Ltd.
RavMond
.text,.rdata,.data,.rsrc,
WinSrvGunVrs
[A ] 5. c:\windows\winsrvgunvrs.exe
,,
+ 内核驱动
+ HKLM\System\CurrentControlSet\Services
ALCXWDM
[A ] 6. c:\windows\system32\drivers\alcxwdm.sys
Realtek Semiconductor Corp.
Realtek AC'97 Audio Driver (WDM)
.text,CODE,.rdata,.data,.data1,PAGE,INIT,.rsrc,.reloc,
BaseTDI
[A ] 7. c:\windows\system32\drivers\basetdi.sys
Beijing Rising Technology Co., Ltd.
basetdi
.text,.rdata,.data,INIT,.rsrc,.reloc,
ExpScaner
[A ] 8. d:\rising\rav\expscan.sys
ExpScan.sys
.text,.rdata,.data,INIT,.rsrc,.reloc,
HookCont
[A ] 9. d:\rising\rav\hookcont.sys
Rising
HookCont
.text,.rdata,.data,INIT,.rsrc,.reloc,
HookReg
[A ] 10. d:\rising\rav\hookreg.sys
.text,.rdata,.data,INIT,.rsrc,.reloc,
HookSys
[A ] 11. d:\rising\rav\hooksys.sys
Rising
Hooksys
.text,.rdata,.data,INIT,.rsrc,.reloc,
HookUrl
[A ] 12. d:\rising\rising\rfw\hookurl.sys
Beijing Rising Technology Co., Ltd.
HookUrl
.text,.rdata,.data,INIT,.rsrc,.reloc,
MEMSCAN
[A ] 13. d:\rising\rav\memscan.sys
Beijing Rising Technology Co., Ltd.
MemScan Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
mProcRs
[A ] 14. d:\rising\rising\rfw\mprocrs.sys
Beijing Rising Technology Co., Ltd.
Rising Personal FireWall mprocrs.sys
.text,.rdata,.data,INIT,.rsrc,.reloc,
RsAntiSpyware
[A ] 15. c:\windows\system32\drivers\rsboot.sys
Beijing Rising Technology Co., Ltd.
Anti-RootKit Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
RsFwDrv
[A ] 16. d:\rising\rising\rfw\rsfwdrv.sys
Beijing Rising Technology Co., Ltd.
nt_fwdrv
.text,.rdata,.data,INIT,.rsrc,.reloc,
RsNTGDI
[A ] 17. c:\windows\system32\drivers\rsntgdi.sys
Beijing Rising Technology Co., Ltd.
RsNTGDI
.text,.rdata,INIT,.rsrc,.reloc,
RSPPSYS
[A ] 18. d:\rising\rav\rsppsys.sys
Rising
RSPPSYS.SYS
.text,.rdata,.data,INIT,.rsrc,.reloc,
Secdrv
[A ] 19. c:\windows\system32\drivers\secdrv.sys
.text,.data,INIT,.reloc,
viagfx
[A ] 20. c:\windows\system32\drivers\vtmini.sys
Copyright (C) VIA/S3 Graphics Co, Ltd.
VIA/S3G Miniport Driver
.text,_TVBIOSD,_MISC,_FOCUSTV,.rdata,.data,PAGE,PAGE,INIT,.rsrc,.reloc,
ZSMC303
[A ] 21. c:\windows\system32\drivers\usbvm303.sys
VM
Video streaming and Capture Device Driver
.text,.data,.data1,PAGECONS,INIT,.rsrc,.reloc,
云烟飞雪 - 2007-8-13 15:49:00
+ 系统登陆自运行
+ HKCU\Control Panel\Desktop
Scrnsave.exe
[A ] 22. c:\windows\system32\ravss.scr
Rising Corp.
Rising Screen Saver
CODE,DATA,BSS,.idata,.tls,.rdata,.reloc,.rsrc,
+ IE浏览器加载模块
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
{DB9ECD4F-FB8F-4311-B3CE-90B976C2707C}
[AM] 23. c:\windows\system32\kakatool.dll
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware Toolbar
.text,.rdata,.data,MonitorS,.rsrc,.reloc,
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
{01443AEC-0FD1-40fd-9C87-E93D1494C233}
[AM] 24. d:\迅雷\comdlls\tdatonce_now.dll
Thunder Networking Technologies,LTD
迅雷浏览器高级特性支持模块
.text,.rdata,.data,.rsrc,.reloc,
{889D2FEB-5411-4565-8998-1DD2C5261283}
[AM] 25. d:\迅雷\comdlls\xunleibho_now.dll
Thunder Networking Technologies,LTD
XunLeiBHO
.text,.rdata,.data,.rsrc,.reloc,
+ HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions
Exec
[A ] 26. d:\迅雷\thunder.exe
Thunder Networking Technologies,LTD
.text,.rdata,.data,.rsrc,
Exec
[A ] 27. c:\program files\messenger\msmsgs.exe
Microsoft Corporation
Windows Messenger
.text,.data,.rsrc,
+ 资源管理器加载模块
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
HyperTerminal Icon Ext
[A ] 28. c:\windows\system32\hticons.dll
Hilgraeve, Inc.
HyperTerminal Applet Library
.text,.data,.rsrc,.reloc,
RISING
[AM] 29. c:\windows\system32\ravext.dll
Beijing Rising Technology Co., Ltd.
Rising Shell Ext Module
.text,.rdata,.data,.rsrc,.reloc,
+ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
{32CD708B-60A7-4C00-9377-D73EAA495F0F}
[AM] 29. c:\windows\system32\ravext.dll
Beijing Rising Technology Co., Ltd.
Rising Shell Ext Module
.text,.rdata,.data,.rsrc,.reloc,
{AC2DC2EF-5165-40A3-8CDF-41DCA1B0901A}
[AM] 30. c:\windows\system32\shlhook.dll
Beijing Rising Technology Co., Ltd.
shlhook Module
.text,.rdata,.data,.rsrc,.reloc,
{525AB2F3-234A-7469-2F43-E341713ABFA5}
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
{36368135-64FA-BC34-DA32-DCF4FD431C93}
[A ] 32. c:\windows\system32\qhcpri.dll
+ 用户登陆自运行项目
+ HKLM\Software\Microsoft\Windows\CurrentVersion\Run
VTTimer
[AM] 33. c:\windows\system32\vttimer.exe
S3 Graphics, Inc.
.text,.rdata,.data,.rsrc,
VTTrayp
[AM] 34. c:\windows\system32\vttrayp.exe
S3 Graphics Co., Ltd.
s3contrl (32-bit)
.text,.rdata,.data,.rsrc,
SoundMan
[AM] 35. c:\windows\soundman.exe
Realtek Semiconductor Corp.
Realtek Sound Manager
.text,.rdata,.data,.sxdata,.rsrc,
RavTask
[A ] 36. d:\rising\rav\ravtask.exe
Beijing Rising Technology Co., Ltd.
RavTimer
.text,.rdata,.data,.rsrc,
runeip
[AM] 37. d:\rising\runiep.exe
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware Monitor
.text,.rdata,.data,.rsrc,
BigDog303
[AM] 38. c:\windows\vm303_sti.exe
Vimicro
Vimicro
.text,.rdata,.data,.sxdata,.rsrc,
RfwMain
[AM] 39. d:\rising\rising\rfw\rfwmain.exe
Beijing Rising Technology Co., Ltd.
Rising Personal FireWall Main Program
.text,.rdata,.data,.rsrc,
Thunder
[A ] 26. d:\迅雷\thunder.exe
Thunder Networking Technologies,LTD
.text,.rdata,.data,.rsrc,
+ 开机执行
+ HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order
BootExecute
[A ] 40. c:\windows\system32\bsmain.exe
Beijing Rising Technology Co., Ltd.
BootScan
.text,.data,.rsrc,.reloc,
+ 程序初始化和已知动态连接库
+ HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
AppInit_DLLs
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 其他自启动项目
+ C:\Documents and Settings\Owner\「开始」菜单\程序\启动
腾讯QQ.lnk
[A ] 41. d:\qq\qq.exe
TENCENT
QQ
.text,.rdata,.data,.rsrc,
+ 正在运行的进程
+ 0000020c(524) smss.exe
+ 00000244(580) VTTimer.exe
00400000[0000D000]
[AM] 33. c:\windows\system32\vttimer.exe
S3 Graphics, Inc.
.text,.rdata,.data,.rsrc,
003D0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
10000000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
+ 00000248(584) VTtrayp.exe
00400000[00027000]
[AM] 34. c:\windows\system32\vttrayp.exe
S3 Graphics Co., Ltd.
s3contrl (32-bit)
.text,.rdata,.data,.rsrc,
6BB00000[0007B000]
[ M] 43. c:\windows\system32\vtdisply.dll
S3 Graphics Co., Ltd.
S3 multi-chip display switch utility (32-bit)
.text,.rdata,.data,.rsrc,.reloc,
6BE00000[0005A000]
[ M] 44. c:\windows\system32\vtgamma2.dll
S3 Graphics Co., Ltd.
S3Gamma Plus (32-bit)
.text,.rdata,.data,.rsrc,.reloc,
6C000000[00043000]
[ M] 45. c:\windows\system32\vtinfo2.dll
S3 Graphics Co., Ltd.
S3 Graphics Display Adapter Information Utility (32-bit)
.text,.rdata,.data,.rsrc,.reloc,
6C200000[00065000]
[ M] 46. c:\windows\system32\vtovrlay.dll
S3 Graphics Co., Ltd.
S3ColorPus/S3Overlay Utility
.text,.rdata,.data,.rsrc,.reloc,
10000000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
00C10000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 00000254(596) SOUNDMAN.EXE
00400000[0008F000]
[AM] 35. c:\windows\soundman.exe
Realtek Semiconductor Corp.
Realtek Sound Manager
.text,.rdata,.data,.sxdata,.rsrc,
10000000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
00E50000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 0000025c(604) csrss.exe
+ 00000274(628) winlogon.exe
004C0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
72C80000[00008000]
[ M] 47. c:\windows\system32\msacm32.drv
Microsoft Corporation
Microsoft Sound Mapper
.text,.data,.rsrc,.reloc,
+ 000002a4(676) services.exe
003B0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 000002b8(696) lsass.exe
003B0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 000002fc(764) runiep.exe
00400000[00013000]
[AM] 37. d:\rising\runiep.exe
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware Monitor
.text,.rdata,.data,.rsrc,
00BE0000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
00BD0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 00000344(836) VM303_STI.EXE
00400000[00010000]
[AM] 38. c:\windows\vm303_sti.exe
Vimicro
Vimicro
.text,.rdata,.data,.sxdata,.rsrc,
10000000[0003A000]
[ M] 48. c:\windows\system32\vm303prp.ax
Vimicro
DirectShow Extension Page
.text,.rdata,.data,.idata,.CRT,.rsrc,.reloc,
00BF0000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
00D10000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 00000358(856) svchost.exe
003A0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 0000039c(924) svchost.exe
003A0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 0000040c(1036) svchost.exe
003A0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
云烟飞雪 - 2007-8-13 15:50:00
+ 00000444(1092) svchost.exe
003A0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 000004a0(1184) ctfmon.exe
003C0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
10000000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
+ 000004bc(1212) WinSrv32.EXE
00400000[00014000]
[ M] 49. c:\windows\winsrv32.exe
,,
00610000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 000004d0(1232) svchost.exe
003A0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 00000620(1568) spoolsv.exe
003B0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 000006ec(1772) Explorer.EXE
003C0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
10000000[0001B000]
[AM] 29. c:\windows\system32\ravext.dll
Beijing Rising Technology Co., Ltd.
Rising Shell Ext Module
.text,.rdata,.data,.rsrc,.reloc,
00F60000[00011000]
[AM] 30. c:\windows\system32\shlhook.dll
Beijing Rising Technology Co., Ltd.
shlhook Module
.text,.rdata,.data,.rsrc,.reloc,
01410000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
72C80000[00008000]
[ M] 47. c:\windows\system32\msacm32.drv
Microsoft Corporation
Microsoft Sound Mapper
.text,.data,.rsrc,.reloc,
+ 00000730(1840) RavStub.exe
00400000[00018000]
[ M] 50. d:\rising\rav\ravstub.exe
Beijing Rising Technology Co., Ltd.
Rising RavStub
.text,.rdata,.data,.rsrc,
10000000[0001B000]
[ M] 51. d:\rising\rav\rscommx.dll
rising
RsCommX
.text,.rdata,.data,.rsrc,.reloc,
23700000[0001A000]
[ M] 52. d:\rising\rav\rscommon.dll
Beijing Rising Technology Co., Ltd.
Rising Common Function Dynamic Link Library
.text,.rdata,.data,.rsrc,.reloc,
+ 00000798(1944) RfwMain.exe
00400000[00073000]
[AM] 39. d:\rising\rising\rfw\rfwmain.exe
Beijing Rising Technology Co., Ltd.
Rising Personal FireWall Main Program
.text,.rdata,.data,.rsrc,
26600000[0007D000]
[ M] 53. d:\rising\rising\rfw\rsguilib.dll
Beijing Rising Technology Co., Ltd.
Rising GUI Library Loader
.text,.rdata,.data,.rsrc,.reloc,
23700000[0001A000]
[ M] 54. d:\rising\rising\rfw\rscommon.dll
Beijing Rising Technology Co., Ltd.
Rising Common Function Dynamic Link Library
.text,.rdata,.data,.rsrc,.reloc,
10000000[0000F000]
[ M] 55. d:\rising\rising\rfw\rfwctrl.dll
Beijing Rising Technology Co., Ltd.
RfwCtrl DLL
.text,.rdata,.data,.rsrc,.reloc,
23800000[0001A000]
[ M] 56. d:\rising\rising\rfw\rsxml.dll
Beijing Rising Technology Co., Ltd.
RsXML
.text,.rdata,.data,.rsrc,.reloc,
23900000[00031000]
[ M] 57. d:\rising\rising\rfw\pngdll.dll
Beijing Rising Technology Co., Ltd.
Rising .Png File Loader Dynamic Link Library
.text,.rdata,.data,.rsrc,.reloc,
010C0000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
011E0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 000007e0(2016) svchost.exe
003A0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
+ 00000820(2080) alg.exe
+ 00000c14(3092) iexplore.exe
003C0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
10000000[00057000]
[AM] 23. c:\windows\system32\kakatool.dll
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware Toolbar
.text,.rdata,.data,MonitorS,.rsrc,.reloc,
01140000[00024000]
[AM] 24. d:\迅雷\comdlls\tdatonce_now.dll
Thunder Networking Technologies,LTD
迅雷浏览器高级特性支持模块
.text,.rdata,.data,.rsrc,.reloc,
01170000[00044000]
[AM] 25. d:\迅雷\comdlls\xunleibho_now.dll
Thunder Networking Technologies,LTD
XunLeiBHO
.text,.rdata,.data,.rsrc,.reloc,
22A30000[0000A000]
[ M] 58. d:\迅雷\components\resworker\dsbho_00.dll
DsBho
.text,.rdata,.data,.rsrc,.reloc,
22A10000[0000D000]
[ M] 59. d:\迅雷\components\resworker\dataprocessor_00.dll
Thunder Networking Technologies,LTD
DataProcessor
.text,.rdata,.data,.rsrc,.reloc,
07370000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
08A80000[00019000]
[ M] 60. d:\rising\rav\ravscrch.dll
Beijing Rising Technology Co., Ltd.
RavScrCh Module
.text,.rdata,.data,.rsrc,.reloc,
09300000[0018D000]
[ M] 61. c:\windows\system32\macromed\flash\flash.ocx
Macromedia, Inc.
Macromedia Flash Player 6.0 r79
.text,.rdata,.data,.data1,.CRT,.rsrc,.reloc,
72C80000[00008000]
[ M] 47. c:\windows\system32\msacm32.drv
Microsoft Corporation
Microsoft Sound Mapper
.text,.data,.rsrc,.reloc,
+ 00000ef4(3828) Ras.exe
00400000[0013F000]
[ M] 62. d:\rising\ras.exe
Beijing Rising Technology Co., Ltd.
Rising AntiSpyware
.text,.rdata,.data,.rsrc,
003D0000[0000C000]
[AM] 31. c:\windows\system32\wgepri.dll
CODE,DATA,BSS,.idata,.edata,.reloc,.rsrc,
10000000[000A3000]
[ M] 63. d:\rising\rasgui.dll
Beijing Rising Technology Co., Ltd.
RasGUI
.text,.rdata,.data,.rsrc,.reloc,
01260000[0001B000]
[ M] 42. d:\rising\ieprot.dll
Beijing Rising Technology Co., Ltd.
IE Protector
.text,.rdata,.data,.rsrc,.reloc,
024A0000[00019000]
[ M] 60. d:\rising\rav\ravscrch.dll
Beijing Rising Technology Co., Ltd.
RavScrCh Module
.text,.rdata,.data,.rsrc,.reloc,
1
© 2000 - 2026 Rising Corp. Ltd.