============================================================== 金山清理专家系统诊断报告 该诊断报告由金山清理专家提供 http://www.duba.net ============================================================== 诊断时间: 2009-01-21, 19:56 诊断平台: Windows XP [5.1.2600] Service Pack 2 IE版本: Internet Explorer V6.0.2180.2900 计算机物理内存: 503(MB) 当前可用内存: 264(MB) 清理专家版本: 2008.06.13.404 恶意软件库版本: 0.00.00.0 漏洞库版本: 0.00.00.0 ============================================================== 映像劫持 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options 文件路径: C:\WINDOWS\system32\ntsd.exe [安全] [5.1.2600.0 (XPClient.010817-1148)] ============================================================== App Init DLLs ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] 文件路径: C:\WINDOWS\system32\kmon.dll [安全] ============================================================== 常规启动项 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [switch] 文件路径: c:\windows\system32\壁纸自动换.exe [未连网] [SoundMan] 文件路径: C:\WINDOWS\SOUNDMAN.EXE [安全] [igfxhkcmd] 文件路径: C:\WINDOWS\system32\hkcmd.exe [安全] [igfxpers] 文件路径: C:\WINDOWS\system32\igfxpers.exe [安全] [RavTray] <"C:\Program Files\Rising\Rav\RsTray.exe" -system> 文件路径: C:\Program Files\Rising\Rav\RsTray.exe [安全] [RFWTray] <"C:\Program Files\Rising\Rfw\RsTray.exe" -system> 文件路径: C:\Program Files\Rising\Rfw\RsTray.exe [安全] [runeip] <"C:\Program Files\Rising\AntiSpyware\rstray.exe" /startup> 文件路径: C:\Program Files\Rising\AntiSpyware\rstray.exe [安全] -------------------------------------------------------------- 该项来源: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ctfmon.exe] 文件路径: C:\WINDOWS\system32\ctfmon.exe [安全] ============================================================== 登陆加载项 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon [Userinit] 文件路径: C:\WINDOWS\system32\userinit.exe [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon [Shell] 文件路径: C:\WINDOWS\Explorer.exe [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon [UIHost] 文件路径: C:\WINDOWS\system32\logonui.exe [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify [crypt32chain] 文件路径: C:\WINDOWS\system32\crypt32.dll [安全] [cryptnet] 文件路径: C:\WINDOWS\system32\cryptnet.dll [安全] [cscdll] 文件路径: C:\WINDOWS\system32\cscdll.dll [安全] [igfxcui] 文件路径: C:\WINDOWS\system32\igfxdev.dll [安全] [ScCertProp] 文件路径: C:\WINDOWS\system32\wlnotify.dll [安全] [Schedule] 文件路径: C:\WINDOWS\system32\wlnotify.dll [安全] [sclgntfy] 文件路径: C:\WINDOWS\system32\sclgntfy.dll [安全] [SensLogn] 文件路径: C:\WINDOWS\system32\WlNotify.dll [安全] [termsrv] 文件路径: C:\WINDOWS\system32\wlnotify.dll [安全] [wlballoon] 文件路径: C:\WINDOWS\system32\wlnotify.dll [安全] ============================================================== 延迟加载 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad [PostBootReminder] 文件路径: C:\WINDOWS\system32\SHELL32.dll [安全] [CDBurn] 文件路径: C:\WINDOWS\system32\SHELL32.dll [安全] [WebCheck] 文件路径: C:\WINDOWS\system32\webcheck.dll [安全] [SysTray] 文件路径: C:\WINDOWS\system32\stobject.dll [安全] [WPDShServiceObj] 文件路径: C:\WINDOWS\system32\WPDShServiceObj.dll [安全] ============================================================== 执行挂钩 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks <{AEB6717E-7E19-11d0-97EE-00C04FD91972}> 文件路径: C:\WINDOWS\system32\shell32.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks <{32CD708B-60A7-4C00-9377-D73EAA495F0F}> 文件路径: C:\WINDOWS\system32\RavExt.dll [安全] ============================================================== 启动文件夹位置 ============================================================== Common Startup: C:\Documents and Settings\All Users\「开始」菜单\程序\启动 Startup: C:\Documents and Settings\Administrator\「开始」菜单\程序\启动 Common Startup: %ALLUSERSPROFILE%\「开始」菜单\程序\启动 ============================================================== 安全模式启动项 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SafeBoot [AlternateShell] 文件路径: C:\WINDOWS\system32\cmd.exe [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Control\SafeBoot [AlternateShell] 文件路径: C:\WINDOWS\system32\cmd.exe [安全] ============================================================== 调试相关项 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AEDebug [Debugger] 文件路径: C:\WINDOWS\system32\drwtsn32.exe [安全] ============================================================== 文件扩展名关联 ============================================================== .TXT 文件路径: C:\WINDOWS\notepad.exe [安全] .ASF <"C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:7 /Open "%L"> 文件路径: C:\Program Files\Windows Media Player\wmplayer.exe [安全] .AVI <"C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:8 /Open "%L"> 文件路径: C:\Program Files\Windows Media Player\wmplayer.exe [安全] .CHM <"hh.exe" %1> 文件路径: C:\WINDOWS\hh.exe [安全] .GIF <"C:\Program Files\ACD Systems\ACDSee\5.0\ACDSee5.exe" "%1"> 文件路径: C:\Program Files\ACD Systems\ACDSee\5.0\ACDSee5.exe [未连网] HELPFILE 文件路径: C:\WINDOWS\system32\winhlp32.exe [安全] .HLP 文件路径: C:\WINDOWS\System32\winhlp32.exe [安全] .HTA 文件路径: C:\WINDOWS\system32\mshta.exe [安全] .HTML(.HTM) <"C:\Program Files\Internet Explorer\iexplore.exe" -nohome> 文件路径: C:\Program Files\Internet Explorer\iexplore.exe [安全] .INF 文件路径: C:\WINDOWS\System32\NOTEPAD.EXE [安全] .INI 文件路径: C:\WINDOWS\System32\NOTEPAD.EXE [安全] .JPG(.JPEG) <"C:\Program Files\ACD Systems\ACDSee\5.0\ACDSee5.exe" "%1"> 文件路径: C:\Program Files\ACD Systems\ACDSee\5.0\ACDSee5.exe [未连网] .M3U <"C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L"> 文件路径: C:\Program Files\Windows Media Player\wmplayer.exe [安全] .REG 文件路径: C:\WINDOWS\regedit.exe [安全] .WMA <"C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:5 /Open "%L"> 文件路径: C:\Program Files\Windows Media Player\wmplayer.exe [安全] .MP3 <"C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:6 /Open "%L"> 文件路径: C:\Program Files\Windows Media Player\wmplayer.exe [安全] .MPG(.MPEG) <"C:\Program Files\Windows Media Player\wmplayer.exe" /prefetch:9 /Open "%L"> 文件路径: C:\Program Files\Windows Media Player\wmplayer.exe [安全] .VBS 文件路径: C:\WINDOWS\System32\WScript.exe [安全] .JS 文件路径: C:\WINDOWS\System32\WScript.exe [安全] ============================================================== Host File ============================================================== 157.150.195.10 www.dhghost.com Welcome to the UN_ It's your world 127.0.0.1 localhost ============================================================== 系统服务 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds [StartupPrograms] [已启用] 文件路径: C:\WINDOWS\system32\rdpclip.exe [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services [Alerter] [已禁用] <%SystemRoot%\system32\alrsvc.dll> 文件路径: C:\WINDOWS\system32\alrsvc.dll [安全] [ALG] [已启用] <%SystemRoot%\System32\alg.exe> 文件路径: C:\WINDOWS\System32\alg.exe [安全] [AppMgmt] [已启用] <%SystemRoot%\System32\appmgmts.dll> 文件路径: C:\WINDOWS\System32\appmgmts.dll [安全] [AudioSrv] [已启用] <%SystemRoot%\System32\audiosrv.dll> 文件路径: C:\WINDOWS\System32\audiosrv.dll [安全] [BITS] [已启用] 文件路径: C:\WINDOWS\system32\qmgr.dll [安全] [Browser] [已启用] <%SystemRoot%\System32\browser.dll> 文件路径: C:\WINDOWS\System32\browser.dll [安全] [ccosm] [已启用] 文件路径: D:\程序文件\暴风\stormliv.exe [安全] [CiSvc] [已禁用] <%SystemRoot%\system32\cisvc.exe> 文件路径: C:\WINDOWS\system32\cisvc.exe [安全] [ClipSrv] [已禁用] <%SystemRoot%\system32\clipsrv.exe> 文件路径: C:\WINDOWS\system32\clipsrv.exe [安全] [COMSysApp] [已启用] 文件路径: C:\WINDOWS\system32\dllhost.exe [安全] [CryptSvc] [已启用] <%SystemRoot%\System32\cryptsvc.dll> 文件路径: C:\WINDOWS\System32\cryptsvc.dll [安全] [DcomLaunch] [已启用] <%SystemRoot%\system32\rpcss.dll> 文件路径: C:\WINDOWS\system32\rpcss.dll [安全] [Dhcp] [已启用] <%SystemRoot%\System32\dhcpcsvc.dll> 文件路径: C:\WINDOWS\System32\dhcpcsvc.dll [安全] [dmadmin] [已启用] <%SystemRoot%\System32\dmadmin.exe /com> 文件路径: C:\WINDOWS\System32\dmadmin.exe [安全] [dmserver] [已启用] <%SystemRoot%\System32\dmserver.dll> 文件路径: C:\WINDOWS\System32\dmserver.dll [安全] [Dnscache] [已启用] <%SystemRoot%\System32\dnsrslvr.dll> 文件路径: C:\WINDOWS\System32\dnsrslvr.dll [安全] [ERSvc] [已禁用] <%SystemRoot%\System32\ersvc.dll> 文件路径: C:\WINDOWS\System32\ersvc.dll [安全] [Eventlog] [已启用] <%SystemRoot%\system32\services.exe> 文件路径: C:\WINDOWS\system32\services.exe [安全] [EventSystem] [已启用] 文件路径: C:\WINDOWS\system32\es.dll [安全] [FastUserSwitchingCompatibility] [已启用] <%SystemRoot%\System32\shsvcs.dll> 文件路径: C:\WINDOWS\System32\shsvcs.dll [安全] [helpsvc] [已禁用] <%WINDIR%\PCHealth\HelpCtr\Binaries\pchsvc.dll> 文件路径: C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll [安全] [HidServ] [已禁用] <%SystemRoot%\System32\hidserv.dll> [HTTPFilter] [已启用] <%SystemRoot%\System32\w3ssl.dll> 文件路径: C:\WINDOWS\System32\w3ssl.dll [安全] [ImapiService] [已禁用] 文件路径: C:\WINDOWS\system32\imapi.exe [安全] [lanmanserver] [已启用] <%SystemRoot%\System32\srvsvc.dll> 文件路径: C:\WINDOWS\System32\srvsvc.dll [安全] [lanmanworkstation] [已启用] <%SystemRoot%\System32\wkssvc.dll> 文件路径: C:\WINDOWS\System32\wkssvc.dll [安全] [LmHosts] [已启用] <%SystemRoot%\System32\lmhsvc.dll/TCP/IP NetBIOS Helper> 文件路径: C:\WINDOWS\System32\lmhsvc.dll [安全] [Messenger] [已禁用] <%SystemRoot%\System32\msgsvc.dll> 文件路径: C:\WINDOWS\System32\msgsvc.dll [安全] [mnmsrvc] [已启用] 文件路径: C:\WINDOWS\system32\mnmsrvc.exe [安全] [MSDTC] [已启用] 文件路径: C:\WINDOWS\system32\msdtc.exe [安全] [MSIServer] [已启用] 文件路径: C:\WINDOWS\system32\msiexec.exe [安全] [NetDDE] [已禁用] <%SystemRoot%\system32\netdde.exe> 文件路径: C:\WINDOWS\system32\netdde.exe [安全] [NetDDEdsdm] [已禁用] <%SystemRoot%\system32\netdde.exe> 文件路径: C:\WINDOWS\system32\netdde.exe [安全] [Netlogon] [已启用] <%SystemRoot%\system32\lsass.exe> 文件路径: C:\WINDOWS\system32\lsass.exe [安全] [Netman] [已启用] <%SystemRoot%\System32\netman.dll> 文件路径: C:\WINDOWS\System32\netman.dll [安全] [Nla] [已启用] <%SystemRoot%\System32\mswsock.dll> 文件路径: C:\WINDOWS\System32\mswsock.dll [安全] [NtLmSsp] [已启用] <%SystemRoot%\system32\lsass.exe> 文件路径: C:\WINDOWS\system32\lsass.exe [安全] [NtmsSvc] [已启用] <%SystemRoot%\system32\ntmssvc.dll> 文件路径: C:\WINDOWS\system32\ntmssvc.dll [安全] [ose] [已启用] <"C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"> 文件路径: C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [安全] [PlugPlay] [已启用] <%SystemRoot%\system32\services.exe> 文件路径: C:\WINDOWS\system32\services.exe [安全] [PolicyAgent] [已启用] <%SystemRoot%\system32\lsass.exe/IPSEC Services> 文件路径: C:\WINDOWS\system32\lsass.exe [安全] [ProtectedStorage] [已启用] <%SystemRoot%\system32\lsass.exe> 文件路径: C:\WINDOWS\system32\lsass.exe [安全] [RasAuto] [已启用] <%SystemRoot%\System32\rasauto.dll> 文件路径: C:\WINDOWS\System32\rasauto.dll [安全] [RasMan] [已启用] <%SystemRoot%\System32\rasmans.dll> 文件路径: C:\WINDOWS\System32\rasmans.dll [安全] [RavCCenter] [已启用] 文件路径: C:\Program Files\Rising\Rav\CCENTER.EXE [安全] [RavTask] [已启用] <"C:\Program Files\Rising\Rav\RavTask.exe" RavTask> 文件路径: C:\Program Files\Rising\Rav\RavTask.exe [安全] [RDSessMgr] [已启用] 文件路径: C:\WINDOWS\system32\sessmgr.exe [安全] [RemoteAccess] [已禁用] <%SystemRoot%\System32\mprdim.dll> 文件路径: C:\WINDOWS\System32\mprdim.dll [安全] [RemoteRegistry] [已禁用] <%SystemRoot%\system32\regsvc.dll> 文件路径: C:\WINDOWS\system32\regsvc.dll [安全] [RfwCCenter] [已启用] 文件路径: C:\Program Files\Rising\Rfw\CCENTER.EXE [安全] [RfwService] [已启用] 文件路径: C:\Program Files\Rising\Rfw\rfwsrv.exe [安全] [RfwTask] [已启用] <"C:\Program Files\Rising\Rfw\RavTask.exe" RfwTask> 文件路径: C:\Program Files\Rising\Rfw\RavTask.exe [安全] [RpcLocator] [已启用] <%SystemRoot%\system32\locator.exe> 文件路径: C:\WINDOWS\system32\locator.exe [安全] [RpcSs] [已启用] <%SystemRoot%\system32\rpcss.dll> 文件路径: C:\WINDOWS\system32\rpcss.dll [安全] [RsRavMon] [已启用] 文件路径: C:\Program Files\Rising\Rav\RavMonD.exe [安全] [RsScanSrv] [已启用] 文件路径: C:\Program Files\Rising\Rav\ScanFrm.exe [安全] [RSVP] [已启用] <%SystemRoot%\system32\rsvp.exe> 文件路径: C:\WINDOWS\system32\rsvp.exe [安全] [SamSs] [已启用] <%SystemRoot%\system32\lsass.exe> 文件路径: C:\WINDOWS\system32\lsass.exe [安全] [SCardSvr] [已启用] <%SystemRoot%\System32\SCardSvr.exe> 文件路径: C:\WINDOWS\System32\SCardSvr.exe [安全] [Schedule] [已启用] <%SystemRoot%\system32\schedsvc.dll> 文件路径: C:\WINDOWS\system32\schedsvc.dll [安全] [seclogon] [已启用] <%SystemRoot%\System32\seclogon.dll> 文件路径: C:\WINDOWS\System32\seclogon.dll [安全] [SENS] [已启用] <%SystemRoot%\system32\sens.dll> 文件路径: C:\WINDOWS\system32\sens.dll [安全] [SharedAccess] [已启用] <%SystemRoot%\System32\ipnathlp.dll/Windows Firewall/Internet Connection Sharing (ICS)> 文件路径: C:\WINDOWS\System32\ipnathlp.dll [安全] [ShellHWDetection] [已启用] <%SystemRoot%\System32\shsvcs.dll> 文件路径: C:\WINDOWS\System32\shsvcs.dll [安全] [Spooler] [已启用] <%SystemRoot%\system32\spoolsv.exe> 文件路径: C:\WINDOWS\system32\spoolsv.exe [安全] [srservice] [已启用] 文件路径: C:\WINDOWS\system32\srsvc.dll [安全] [SSDPSRV] [已启用] <%SystemRoot%\System32\ssdpsrv.dll> 文件路径: C:\WINDOWS\System32\ssdpsrv.dll [安全] [stisvc] [已启用] <%SystemRoot%\system32\wiaservc.dll> 文件路径: C:\WINDOWS\system32\wiaservc.dll [安全] [SwPrv] [已启用] 文件路径: C:\WINDOWS\system32\dllhost.exe [安全] [SysmonLog] [已启用] <%SystemRoot%\system32\smlogsvc.exe> 文件路径: C:\WINDOWS\system32\smlogsvc.exe [安全] [TapiSrv] [已启用] <%SystemRoot%\System32\tapisrv.dll> 文件路径: C:\WINDOWS\System32\tapisrv.dll [安全] [TermService] [已启用] <%SystemRoot%\System32\termsrv.dll> 文件路径: C:\WINDOWS\System32\termsrv.dll [安全] [Themes] [已启用] <%SystemRoot%\System32\shsvcs.dll> 文件路径: C:\WINDOWS\System32\shsvcs.dll [安全] [TlntSvr] [已禁用] 文件路径: C:\WINDOWS\system32\tlntsvr.exe [安全] [TrkWks] [已启用] <%SystemRoot%\system32\trkwks.dll> 文件路径: C:\WINDOWS\system32\trkwks.dll [安全] [upnphost] [已启用] <%SystemRoot%\System32\upnphost.dll> 文件路径: C:\WINDOWS\System32\upnphost.dll [安全] [UPS] [已启用] <%SystemRoot%\System32\ups.exe> 文件路径: C:\WINDOWS\System32\ups.exe [安全] [VSS] [已启用] <%SystemRoot%\System32\vssvc.exe> 文件路径: C:\WINDOWS\System32\vssvc.exe [安全] [W32Time] [已启用] 文件路径: C:\WINDOWS\system32\w32time.dll [安全] [WebClient] [已启用] <%SystemRoot%\System32\webclnt.dll> 文件路径: C:\WINDOWS\System32\webclnt.dll [安全] [winmgmt] [已启用] <%SystemRoot%\system32\wbem\WMIsvc.dll> 文件路径: C:\WINDOWS\system32\wbem\WMIsvc.dll [安全] [WmdmPmSN] [已启用] 文件路径: C:\WINDOWS\system32\MsPMSNSv.dll [安全] [Wmi] [已启用] <%SystemRoot%\System32\advapi32.dll> 文件路径: C:\WINDOWS\System32\advapi32.dll [安全] [WmiApSrv] [已启用] 文件路径: C:\WINDOWS\system32\wbem\wmiapsrv.exe [安全] [WMPNetworkSvc] [已启用] <"C:\Program Files\Windows Media Player\WMPNetwk.exe"> 文件路径: C:\Program Files\Windows Media Player\WMPNetwk.exe [安全] [wscsvc] [已启用] <%SYSTEMROOT%\system32\wscsvc.dll> 文件路径: C:\WINDOWS\system32\wscsvc.dll [安全] [wuauserv] [已启用] 文件路径: C:\WINDOWS\system32\wuauserv.dll [安全] [WudfSvc] [已启用] <%SystemRoot%\System32\WUDFSvc.dll> 文件路径: C:\WINDOWS\System32\WUDFSvc.dll [安全] [WZCSVC] [已启用] <%SystemRoot%\System32\wzcsvc.dll> 文件路径: C:\WINDOWS\System32\wzcsvc.dll [安全] [xmlprov] [已启用] <%SystemRoot%\System32\xmlprov.dll> 文件路径: C:\WINDOWS\System32\xmlprov.dll [安全] ============================================================== 驱动程序 ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers [timer] [已启用] 文件路径: C:\WINDOWS\system32\timer.drv [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32 [midimapper] [已启用] 文件路径: C:\WINDOWS\system32\midimap.dll [安全] [msacm.imaadpcm] [已启用] 文件路径: C:\WINDOWS\system32\imaadp32.acm [安全] [msacm.msadpcm] [已启用] 文件路径: C:\WINDOWS\system32\msadp32.acm [安全] [msacm.msg711] [已启用] 文件路径: C:\WINDOWS\system32\msg711.acm [安全] [msacm.msgsm610] [已启用] 文件路径: C:\WINDOWS\system32\msgsm32.acm [安全] [msacm.trspch] [已启用] 文件路径: C:\WINDOWS\system32\tssoft32.acm [安全] [vidc.cvid] [已启用] 文件路径: C:\WINDOWS\system32\iccvid.dll [安全] [vidc.I420] [已启用] 文件路径: C:\WINDOWS\system32\msh263.drv [安全] [vidc.iv31] [已启用] 文件路径: C:\WINDOWS\system32\ir32_32.dll [安全] [vidc.iv32] [已启用] 文件路径: C:\WINDOWS\system32\ir32_32.dll [安全] [vidc.iv41] [已启用] 文件路径: C:\WINDOWS\system32\ir41_32.ax [安全] [vidc.iyuv] [已启用] 文件路径: C:\WINDOWS\system32\iyuv_32.dll [安全] [vidc.mrle] [已启用] 文件路径: C:\WINDOWS\system32\msrle32.dll [安全] [vidc.msvc] [已启用] 文件路径: C:\WINDOWS\system32\msvidc32.dll [安全] [vidc.uyvy] [已启用] 文件路径: C:\WINDOWS\system32\msyuv.dll [安全] [vidc.yuy2] [已启用] 文件路径: C:\WINDOWS\system32\msyuv.dll [安全] [vidc.yvu9] [已启用] 文件路径: C:\WINDOWS\system32\tsbyuv.dll [安全] [vidc.yvyu] [已启用] 文件路径: C:\WINDOWS\system32\msyuv.dll [安全] [wavemapper] [已启用] 文件路径: C:\WINDOWS\system32\msacm32.drv [安全] [msacm.msg723] [已启用] 文件路径: C:\WINDOWS\system32\msg723.acm [安全] [vidc.M263] [已启用] 文件路径: C:\WINDOWS\system32\msh263.drv [安全] [vidc.M261] [已启用] 文件路径: C:\WINDOWS\system32\msh261.drv [安全] [msacm.msaudio1] [已启用] 文件路径: C:\WINDOWS\system32\msaud32.acm [安全] [msacm.sl_anet] [已启用] 文件路径: C:\WINDOWS\system32\sl_anet.acm [安全] [msacm.iac2] [已启用] 文件路径: C:\WINDOWS\system32\iac25_32.ax [安全] [vidc.iv50] [已启用] 文件路径: C:\WINDOWS\system32\ir50_32.dll [安全] [msacm.l3acm] [已启用] 文件路径: C:\WINDOWS\system32\l3codeca.acm [安全] [wave] [已启用] 文件路径: C:\WINDOWS\system32\wdmaud.drv [安全] [midi] [已启用] 文件路径: C:\WINDOWS\system32\wdmaud.drv [安全] [mixer] [已启用] 文件路径: C:\WINDOWS\system32\wdmaud.drv [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services [ac97intc] [已启用] 文件路径: C:\WINDOWS\system32\drivers\ac97intc.sys [安全] [ACPI] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ACPI.sys [安全] [aec] [已启用] 文件路径: C:\WINDOWS\system32\drivers\aec.sys [安全] [AFD] [已启用] <\SystemRoot\System32\drivers\afd.sys> 文件路径: C:\WINDOWS\System32\drivers\afd.sys [安全] [agp440] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\agp440.sys [安全] [ALCXWDM] [已启用] 文件路径: C:\WINDOWS\system32\drivers\ALCXWDM.SYS [安全] [AliIde] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\aliide.sys [安全] [AmdK8] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\amdk8.sys [未连网] [AsyncMac] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\asyncmac.sys [安全] [atapi] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\atapi.sys [安全] [Atmarpc] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\atmarpc.sys [安全] [audstub] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\audstub.sys [安全] [Cdrom] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\cdrom.sys [安全] [CmdIde] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\cmdide.sys [安全] [Disk] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\disk.sys [安全] [dmboot] [已禁用] 文件路径: C:\WINDOWS\system32\drivers\dmboot.sys [安全] [dmio] [已启用] 文件路径: C:\WINDOWS\system32\drivers\dmio.sys [安全] [dmload] [已启用] 文件路径: C:\WINDOWS\system32\drivers\dmload.sys [安全] [DMusic] [已启用] 文件路径: C:\WINDOWS\system32\drivers\DMusic.sys [安全] [drmkaud] [已启用] 文件路径: C:\WINDOWS\system32\drivers\drmkaud.sys [安全] [Fdc] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\fdc.sys [安全] [FETNDIS] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\fetnd5.sys [安全] [FltMgr] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\fltMgr.sys [安全] [FsVga] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\fsvga.sys [安全] [Ftdisk] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ftdisk.sys [安全] [gameenum] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\gameenum.sys [安全] [Gpc] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\msgpc.sys [安全] [HidUsb] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\hidusb.sys [安全] [hookcont] [已启用] 文件路径: C:\WINDOWS\system32\drivers\HookCont.sys [安全] [hooksys] [已启用] 文件路径: C:\WINDOWS\system32\drivers\HookSys.sys [安全] [HTTP] [已启用] 文件路径: C:\WINDOWS\system32\Drivers\HTTP.sys [安全] [i8042prt] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\i8042prt.sys [安全] [ialm] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [安全] [Imapi] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\imapi.sys [安全] [IntelIde] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\intelide.sys [安全] [intelppm] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\intelppm.sys [安全] [Ip6Fw] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys [安全] [IpFilterDriver] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys [安全] [IpInIp] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ipinip.sys [安全] [IpNat] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ipnat.sys [安全] [IPSec] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ipsec.sys [安全] [IRENUM] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\irenum.sys [安全] [isapnp] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\isapnp.sys [安全] [Kbdclass] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\kbdclass.sys [安全] [kbdhid] [已启用] 文件路径: C:\WINDOWS\system32\drivers\kbdhid.sys [安全] [kmixer] [已启用] 文件路径: C:\WINDOWS\system32\drivers\kmixer.sys [安全] [Mouclass] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\mouclass.sys [安全] [mouhid] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\mouhid.sys [安全] [MRxDAV] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\mrxdav.sys [安全] [MRxSmb] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\mrxsmb.sys [安全] [MSKSSRV] [已启用] 文件路径: C:\WINDOWS\system32\drivers\MSKSSRV.sys [安全] [MSPCLOCK] [已启用] 文件路径: C:\WINDOWS\system32\drivers\MSPCLOCK.sys [安全] [MSPQM] [已启用] 文件路径: C:\WINDOWS\system32\drivers\MSPQM.sys [安全] [mssmbios] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\mssmbios.sys [安全] [ms_mpu401] [已启用] 文件路径: C:\WINDOWS\system32\drivers\msmpu401.sys [安全] [NdisTapi] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ndistapi.sys [安全] [Ndisuio] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ndisuio.sys [安全] [NdisWan] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ndiswan.sys [安全] [NetBIOS] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\netbios.sys [安全] [NetBT] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\netbt.sys [安全] [NPF] [已启用] 文件路径: C:\WINDOWS\system32\drivers\npf.sys [未连网] [npkcrypt] [已启用] <\??\C:\Program Files\QQ2006\npkcrypt.sys> [nv] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [安全] [NwlnkFlt] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys [安全] [NwlnkFwd] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys [安全] [P3] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\p3.sys [安全] [Parport] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\parport.sys [安全] [PCI] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\pci.sys [安全] [PCIIde] [已启用] 文件路径: C:\WINDOWS\system32\Drivers\pciide.sys [安全] [PptpMiniport] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\raspptp.sys [安全] [PSched] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\psched.sys [安全] [Ptilink] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\ptilink.sys [安全] [RasAcd] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\rasacd.sys [安全] [Rasl2tp] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\rasl2tp.sys [安全] [RasPppoe] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\raspppoe.sys [安全] [Raspti] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\raspti.sys [安全] [Rdbss] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\rdbss.sys [安全] [RDPCDD] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\RDPCDD.sys [安全] [rdpdr] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\rdpdr.sys [安全] [redbook] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\redbook.sys [安全] [RfwBase9] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\rfwbase.sys [安全] [rfwtdi] [已启用] <\??\C:\Program Files\Rising\Rfw\rfwtdi.sys> 文件路径: C:\Program Files\Rising\Rfw\rfwtdi.sys [安全] [rsfwdrv] [已启用] <\??\C:\Program Files\Rising\Rfw\rsfwdrv.sys> 文件路径: C:\Program Files\Rising\Rfw\rsfwdrv.sys [安全] [RsNTGDI] [已启用] 文件路径: C:\WINDOWS\system32\Drivers\RsNTGdi.sys [安全] [RTL8023xp] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [安全] [Secdrv] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\secdrv.sys [安全] [serenum] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\serenum.sys [安全] [Serial] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\serial.sys [安全] [sermouse] [已启用] 文件路径: C:\WINDOWS\system32\drivers\sermouse.sys [安全] [splitter] [已启用] 文件路径: C:\WINDOWS\system32\drivers\splitter.sys [安全] [sr] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\sr.sys [安全] [Srv] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\srv.sys [安全] [swenum] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\swenum.sys [安全] [swmidi] [已启用] 文件路径: C:\WINDOWS\system32\drivers\swmidi.sys [安全] [sysaudio] [已启用] 文件路径: C:\WINDOWS\system32\drivers\sysaudio.sys [安全] [Tcpip] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\tcpip.sys [安全] [TermDD] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\termdd.sys [安全] [Update] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\update.sys [安全] [usbccgp] [已启用] <\SystemRoot\system32\drivers\usbccgp.sys> 文件路径: C:\WINDOWS\system32\drivers\usbccgp.sys [安全] [usbehci] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\usbehci.sys [安全] [usbhub] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\usbhub.sys [安全] [USBOHCI] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\usbohci.sys [安全] [USBSTOR] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [安全] [usbuhci] [已启用] 文件路径: C:\WINDOWS\system32\drivers\usbuhci.sys [安全] [VgaSave] [已启用] <\SystemRoot\System32\drivers\vga.sys> 文件路径: C:\WINDOWS\System32\drivers\vga.sys [安全] [Wanarp] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\wanarp.sys [安全] [wdmaud] [已启用] 文件路径: C:\WINDOWS\system32\drivers\wdmaud.sys [安全] [WudfPf] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\WudfPf.sys [安全] [WudfRd] [已启用] 文件路径: C:\WINDOWS\system32\DRIVERS\wudfrd.sys [安全] ============================================================== BHO ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects [VnetCookie Class] {4E83D567-4697-4F7B-B1F0-A513B01DB89A} 文件路径: c:\PROGRA~1\chinanet\VNETTR~1.DLL [未连网] [卡卡上网安全助手] {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} 文件路径: C:\WINDOWS\system32\UrlFilter.dll [安全] ============================================================== LSP ============================================================== 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004 文件路径: C:\WINDOWS\system32\rsvpsp.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005 文件路径: C:\WINDOWS\system32\rsvpsp.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000011 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000012 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000013 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000014 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000015 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000016 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] -------------------------------------------------------------- 该项来源: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000017 文件路径: C:\WINDOWS\system32\mswsock.dll [安全] ============================================================== 当前进程 ============================================================== 名称: smss.exe [已启用] 该项来源: \SystemRoot\System32\smss.exe 命令行: \SystemRoot\System32\smss.exe 文件路径: C:\WINDOWS\System32\smss.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 名称: csrss.exe [已启用] 该项来源: \??\C:\WINDOWS\system32\csrss.exe 命令行: C:\WINDOWS\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16 文件路径: C:\WINDOWS\system32\csrss.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CSRSRV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\basesrv.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\winsrv.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\KERNEL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sxs.dll (Microsoft Corporation) 名称: winlogon.exe [已启用] 该项来源: \??\C:\WINDOWS\system32\winlogon.exe 命令行: winlogon.exe 文件路径: C:\WINDOWS\system32\winlogon.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\AUTHZ.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NDdeApi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\PROFMAP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\PSAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\REGAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINTRUST.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSGINA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ODBC32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comdlg32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\odbcint.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHSVCS.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sfc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sfc_os.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Apphelp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSCARD.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WTSAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sxs.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\uxtheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\cscdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rsaenh.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WlNotify.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSPOOL.DRV (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MPR.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wldap32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\cscui.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msv1_0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NTMARTA.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wdmaud.drv (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msacm32.drv (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\midimap.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 名称: services.exe [已启用] 文件路径: C:\WINDOWS\system32\services.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SCESRV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\AUTHZ.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\umpnpmgr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NCObjAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP60.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcAdProc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Apphelp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\eventlog.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\PSAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wtsapi32.dll (Microsoft Corporation) 名称: lsass.exe [已启用] 文件路径: C:\WINDOWS\system32\lsass.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LSASRV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MPR.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NTDSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SAMSRV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\cryptdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msprivs.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kerberos.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msv1_0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\netlogon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\w32time.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP60.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\schannel.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wdigest.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rsaenh.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\setupapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\scecli.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ipsecsvc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\AUTHZ.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\oakley.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINIPSEC.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\pstorsvc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\psbase.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\dssenh.dll (Microsoft Corporation) 名称: svchost.exe [已启用] 命令行: C:\WINDOWS\system32\svchost -k DcomLaunch 文件路径: C:\WINDOWS\system32\svchost.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NTMARTA.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SAMLIB.dll (Microsoft Corporation) 模块文件: c:\windows\system32\rpcss.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2_32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: c:\windows\system32\termsrv.dll (Microsoft Corporation) 模块文件: c:\windows\system32\ICAAPI.dll (Microsoft Corporation) 模块文件: c:\windows\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINTRUST.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: c:\windows\system32\AUTHZ.dll (Microsoft Corporation) 模块文件: c:\windows\system32\mstlsapi.dll (Microsoft Corporation) 模块文件: c:\windows\system32\ACTIVEDS.dll (Microsoft Corporation) 模块文件: c:\windows\system32\adsldpc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\ATL.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\REGAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rsaenh.dll (Microsoft Corporation) 名称: svchost.exe [已启用] 命令行: C:\WINDOWS\system32\svchost -k rpcss 文件路径: C:\WINDOWS\system32\svchost.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\rpcss.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2_32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rsaenh.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 名称: CCENTER.EXE [已启用] 命令行: "C:\Program Files\Rising\Rav\CCENTER.EXE" -Next 文件路径: C:\Program Files\Rising\Rav\CCENTER.EXE [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\combase.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\cnt09.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\cnt08.dll (Beijing Rising Information Technology Co.. Ltd.) 名称: CCENTER.EXE [已启用] 命令行: "C:\Program Files\Rising\Rfw\CCENTER.EXE" -Next 文件路径: C:\Program Files\Rising\Rfw\CCENTER.EXE [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\combase.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\cnt09.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 名称: svchost.exe [已启用] 命令行: C:\WINDOWS\System32\svchost.exe -k netsvcs 文件路径: C:\WINDOWS\System32\svchost.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\NTMARTA.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\xpsp2res.dll (Microsoft Corporation) 模块文件: c:\windows\system32\shsvcs.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\dhcpcsvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2_32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: c:\windows\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: c:\windows\system32\wzcsvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\rtutils.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WMI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WTSAPI32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\ESENT.dll (Microsoft Corporation) 模块文件: c:\windows\system32\ATL.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\rsaenh.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\SETUPAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\rastls.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPTUI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINTRUST.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\MPRAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ACTIVEDS.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\adsldpc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\RASAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\rasman.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\TAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\SCHANNEL.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WinSCard.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\raschap.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msv1_0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\COMRes.dll (Microsoft Corporation) 模块文件: c:\windows\system32\schedsvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\NTDSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\MSIDLE.DLL (Microsoft Corporation) 模块文件: c:\windows\system32\audiosrv.dll (Microsoft Corporation) 模块文件: c:\windows\system32\wkssvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\cryptsvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\certcli.dll (Microsoft Corporation) 模块文件: c:\windows\system32\netman.dll (Microsoft Corporation) 模块文件: c:\windows\system32\netshell.dll (Microsoft Corporation) 模块文件: c:\windows\system32\credui.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WZCSAPI.DLL (Microsoft Corporation) 模块文件: c:\windows\system32\srvsvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\es.dll (Microsoft Corporation) 模块文件: c:\windows\system32\dmserver.dll (Microsoft Corp.) 模块文件: C:\WINDOWS\System32\HNETCFG.DLL (Microsoft Corporation) 模块文件: c:\windows\system32\seclogon.dll (Microsoft Corporation) 模块文件: c:\windows\system32\browser.dll (Microsoft Corporation) 模块文件: c:\windows\system32\wuauserv.dll (Microsoft Corporation) 模块文件: c:\windows\system32\wbem\wmisvc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VSSAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wuaueng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ADVPACK.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\SHFOLDER.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WINSPOOL.DRV (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WINHTTP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\Cabinet.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\mspatcha.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\sfc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\sfc_os.dll (Microsoft Corporation) 模块文件: c:\windows\system32\w32time.dll (Microsoft Corporation) 模块文件: c:\windows\system32\MSVCP60.dll (Microsoft Corporation) 模块文件: c:\windows\system32\trkwks.dll (Microsoft Corporation) 模块文件: c:\windows\system32\srsvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\POWRPROF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: c:\windows\system32\sens.dll (Microsoft Corporation) 模块文件: c:\windows\system32\wscsvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\msi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\SXS.DLL (Microsoft Corporation) 模块文件: c:\windows\system32\ipnathlp.dll (Microsoft Corporation) 模块文件: c:\windows\system32\AUTHZ.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wbem\wbemcomn.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\Wbem\wbemcore.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\Wbem\esscli.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\Wbem\FastProx.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comsvcs.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\colbact.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MTXCLU.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\CLUSAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\RESUTILS.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wbem\wmiutils.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wbem\repdrvfs.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wbem\wmiprvsd.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NCObjAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wbem\wbemess.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wbem\ncprov.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\upnp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SSDPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\netcfgx.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\rasmans.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WINIPSEC.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Apphelp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wups.dll (Microsoft Corporation) 模块文件: c:\windows\system32\tapisrv.dll (Microsoft Corporation) 模块文件: c:\windows\system32\PSAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\rastapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\unimdm.tsp (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\uniplat.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\kmddsp.tsp (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ndptsp.tsp (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ipconf.tsp (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\h323.tsp (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\hidphone.tsp (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\HID.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\rasppp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ntlsapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kerberos.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\cryptdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\RASDLG.dll (Microsoft Corporation) 名称: svchost.exe [已启用] 命令行: C:\WINDOWS\system32\svchost.exe -k NetworkService 文件路径: C:\WINDOWS\system32\svchost.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\dnsrslvr.dll (Microsoft Corporation) 模块文件: c:\windows\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2_32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: c:\windows\system32\iphlpapi.dll (Microsoft Corporation) 名称: svchost.exe [已启用] 命令行: C:\WINDOWS\system32\svchost.exe -k LocalService 文件路径: C:\WINDOWS\system32\svchost.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NTMARTA.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: c:\windows\system32\lmhsvc.dll (Microsoft Corporation) 模块文件: c:\windows\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2_32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: c:\windows\system32\webclnt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wsock32.dll (Microsoft Corporation) 模块文件: c:\windows\system32\ssdpsrv.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 名称: rfwsrv.exe [已启用] 命令行: "C:\Program Files\Rising\Rfw\rfwsrv.exe" -Next 文件路径: C:\Program Files\Rising\Rfw\rfwsrv.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\combase.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\MonBase.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\MonComm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rfwlog.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rfwrule.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rfwsrv.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\mPorts.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rfwdrvc.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\Rfwdrv.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\psapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\rsnetsvr.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Iphlpapi.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\urlrule.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\recomp.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\refs.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\viruslib.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\relibldr.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rfwproxy.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\RSAPPMGR.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\CfgDll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\proccomm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\version.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 名称: RavMonD.exe [已启用] 命令行: "C:\Program Files\Rising\Rav\RavMonD.exe" -Next 文件路径: C:\Program Files\Rising\Rav\RavMonD.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\combase.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\moncomm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\MonBase.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\Rslog.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\mondrv.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\defmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\moncom08.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\MonRule.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\FileMon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\MailMon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\HookWeb.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\proccomm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\RSAPPMGR.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\CfgDll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\Hooksys.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ProcCom.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\RsCommX2.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\HookCont.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\rsnetsvr.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\BACore.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sfc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sfc_os.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINTRUST.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\recomp.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\refs.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\RSStore.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ScanAdd.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\Scanner.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\viruslib.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\relibldr.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\ffr.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\nvfile.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\scanexec.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\unexe.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\scanex.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\extfile.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\pearc.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\scanpe.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ur000.dat (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\revm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\urutils.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\extmail.dll (Beijing Rising Information Technology Co.. Ltd.) 名称: rsnetsvr.exe [已启用] 命令行: "C:\Program Files\Rising\Rav\rsnetsvr.exe" 文件路径: C:\Program Files\Rising\Rav\rsnetsvr.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\NComm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\ProcComm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 名称: Explorer.EXE [已启用] 文件路径: C:\WINDOWS\Explorer.EXE [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\BROWSEUI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHDOCVW.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPTUI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINTRUST.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\appHelp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\cscui.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\CSCDLL.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\themeui.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSIMG32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\actxprxy.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msutb.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LINKINFO.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntshrui.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ATL.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETSHELL.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rtutils.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\credui.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\stobject.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\BatMeter.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\POWRPROF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WTSAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINHTTP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mydocs.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\PortableDeviceTypes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\PortableDeviceApi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wdmaud.drv (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msacm32.drv (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\midimap.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MPR.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\drprov.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ntlanman.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\NETUI0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\NETUI1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\NETRAP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\davclnt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rsaenh.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\browselc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DUSER.dll (Microsoft Corporation) 模块文件: C:\Program Files\Microsoft Office\OFFICE11\msohev.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RavExt.dll (Beijing Rising Information Technology Co.. Ltd.) 名称: spoolsv.exe [已启用] 文件路径: C:\WINDOWS\system32\spoolsv.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SPOOLSS.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\localspl.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sfc_os.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINTRUST.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\winspool.drv (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\netapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\cnbjmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\pjlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\tcpmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\usbmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\win32spl.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETRAP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NTDSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\inetpp.dll (Microsoft Corporation) 名称: stormliv.exe [已启用] 命令行: D:\程序文件\暴风\stormliv.exe /asservice 文件路径: D:\程序文件\暴风\stormliv.exe [安全] (北京暴风网际科技有限公司) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: D:\程序文件\暴风\MSVCP60.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MFC42.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comdlg32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\MFC42LOC.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msxml3.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\cryptdll.dll (Microsoft Corporation) 名称: RavTask.exe [已启用] 命令行: "C:\Program Files\Rising\Rav\RavTask.exe" RavTask 文件路径: C:\Program Files\Rising\Rav\RavTask.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\rsconf.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\RSAPPMGR.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\CfgDll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\proccomm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\rsstub.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\rstask.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\PSAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\netapi32.dll (Microsoft Corporation) 名称: RavTask.exe [已启用] 命令行: "C:\Program Files\Rising\Rfw\RavTask.exe" RfwTask 文件路径: C:\Program Files\Rising\Rfw\RavTask.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\rsconf.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\RSAPPMGR.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\CfgDll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\proccomm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\rsstub.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\rstask.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\PSAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 名称: ScanFrm.exe [已启用] 命令行: "C:\Program Files\Rising\Rav\ScanFrm.exe" -Next 文件路径: C:\Program Files\Rising\Rav\ScanFrm.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\combase.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\moncomm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\scansrvp.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\proccomm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ScanSrv.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 名称: SOUNDMAN.EXE [已启用] 命令行: "C:\WINDOWS\SOUNDMAN.EXE" 文件路径: C:\WINDOWS\SOUNDMAN.EXE [安全] (Realtek Semiconductor Corp.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\HID.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINTRUST.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 名称: hkcmd.exe [已启用] 命令行: "C:\WINDOWS\system32\hkcmd.exe" 文件路径: C:\WINDOWS\system32\hkcmd.exe [安全] (Intel Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hccutils.DLL (Intel Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\igfxsrvc.dll (Intel Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\igfxres.dll (Intel Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 名称: igfxpers.exe [已启用] 命令行: "C:\WINDOWS\system32\igfxpers.exe" 文件路径: C:\WINDOWS\system32\igfxpers.exe [安全] (Intel Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\igfxsrvc.dll (Intel Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 名称: RsTray.exe [已启用] 命令行: "C:\Program Files\Rising\Rav\RsTray.exe" -system 文件路径: C:\Program Files\Rising\Rav\RsTray.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\ComServ.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\rslang.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\rsxml.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ProcComm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\MonState.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ScanEvnt.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\rsguilib.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\MFC71.DLL (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\rsconf.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\RSAPPMGR.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\CfgDll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\rspalvd.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ravbintl.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\mruleui.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\MonTray.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rav\PngDll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\RavITray.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ScanPrxy.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\rsmginfo.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wsock32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RASAPI32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasman.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\TAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rtutils.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msv1_0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sensapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 名称: RsTray.exe [已启用] 命令行: "C:\Program Files\Rising\Rfw\RsTray.exe" -system 文件路径: C:\Program Files\Rising\Rfw\RsTray.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\ComServ.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\rslang.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\rsxml.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\ProcComm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\MonState.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rfwrule.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rsconf.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\RSAPPMGR.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\CfgDll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rspalvd.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rsguilib.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\MFC71.DLL (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\ravbintl.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\rsnetsvr.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rsmginfo.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rfwtray.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\Rfw\PngDll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rfw\rfwlog.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MPRAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ACTIVEDS.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\adsldpc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ATL.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rtutils.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wsock32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RASAPI32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasman.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\TAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msv1_0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sensapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 名称: rstray.exe [已启用] 命令行: "C:\Program Files\Rising\AntiSpyware\rstray.exe" /startup 文件路径: C:\Program Files\Rising\AntiSpyware\rstray.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\rsmginfo.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\RsXML.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\MSVCP71.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\MSVCR71.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\ComServ.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\rscommon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\pngdll.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\runiep.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\NComm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\Rav\ProcCom.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\RsCommX2.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\pscan.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\MFC71.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SAMLIB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wsock32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RASAPI32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasman.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\TAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rtutils.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msv1_0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sensapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\winrnr.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 名称: ctfmon.exe [已启用] 命令行: "C:\WINDOWS\system32\ctfmon.exe" 文件路径: C:\WINDOWS\system32\ctfmon.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSUTB.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 名称: alg.exe [已启用] 文件路径: C:\WINDOWS\System32\alg.exe [安全] (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ATL.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WSOCK32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\MSWSOCK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\ShimEng.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\AppPatch\AcGenral.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\MSACM32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comctl32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\System32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 名称: knownsvr.exe [已启用] 命令行: "C:\Program Files\Rising\AntiSpyware\knownsvr.exe" 文件路径: C:\Program Files\Rising\AntiSpyware\knownsvr.exe [安全] (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\NComm.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\Program Files\Rising\AntiSpyware\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 名称: 金-山-诊-断及粉-碎-器.exe [已启用] 命令行: "C:\Documents and Settings\Administrator\桌面\金-山-诊-断及粉-碎-器\金-山-诊-断及粉-碎-器.exe" 文件路径: C:\Documents and Settings\Administrator\桌面\金-山-诊-断及粉-碎-器\金-山-诊-断及粉-碎-器.exe [未连网] 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMDLG32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLE32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\riched32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RICHED20.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\appHelp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 名称: 123.exe [已启用] 命令行: "C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\123.exe" 文件路径: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\123.exe [未连网] (Ki-ngso-ft Corp-oration) 模块文件: C:\WINDOWS\system32\ntdll.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) 模块文件: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\MFC80U.DLL (Microsoft Corporation) 模块文件: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\MSVCR80.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msvcrt.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\GDI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USER32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHLWAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ADVAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RPCRT4.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\Secur32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSIMG32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\comdlg32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\COMCTL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\OLEAUT32.dll (Microsoft Corporation) 模块文件: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\kis.dll (Kingsoft Corporation) 模块文件: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\MSVCP80.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\VERSION.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WININET.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPT32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSASN1.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\PSAPI.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2_32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WS2HELP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMM32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\LPK.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USP10.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\kmon.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\comx3.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\Program Files\Rising\AntiSpyware\Syslay.dll (Beijing Rising Information Technology Co.. Ltd.) 模块文件: C:\WINDOWS\system32\Wtsapi32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINSTA.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\NETAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\MSCTF.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msctfime.ime (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\UxTheme.dll (Microsoft Corporation) 模块文件: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\KAVDevC.dll (Kingsoft Corporation) 模块文件: C:\WINDOWS\system32\RICHED20.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\wsock32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\RASAPI32.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasman.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\TAPI32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rtutils.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINMM.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msv1_0.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\iphlpapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\sensapi.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\USERENV.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CLBCATQ.DLL (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\COMRes.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\mswsock.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\DNSAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\xpsp2res.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\CRYPTUI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WINTRUST.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\IMAGEHLP.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\WLDAP32.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\appHelp.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\shdoclc.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mlang.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\hnetcfg.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\System32\wshtcpip.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msls31.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\msimtf.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\SETUPAPI.dll (Microsoft Corporation) 模块文件: C:\WINDOWS\system32\rasadhlp.dll (Microsoft Corporation) 模块文件: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\KasCommon.dll (Kingsoft Corporation) 模块文件: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\KAEAutorunEx.dll (Kingsoft Corporation) 模块文件: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RarSFX0\KAVRep.DLL (Kingsoft Corporation)