[PID: 1976][C:\Program Files\Rising\Rav\RavTask.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 22>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[PID: 1984][C:\WINDOWS\system32\rundll32.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[C:\PROGRA~1\3721\autolive.dll] <><1, 1, 5, 1324>
[C:\PROGRA~1\3721\alLiveEx.dll] < ><1, 0, 3, 1006>
[C:\PROGRA~1\3721\notifier.dll] <><1, 0, 0, 5>
[PID: 2008][C:\PROGRA~1\3721\assistse.exe] <yahoo><1, 0, 1, 1001>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[PID: 2016][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[PID: 2024][C:\Program Files\Messenger\msmsgs.exe] <Microsoft Corporation><4.7.3000>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[PID: 1796][C:\Program Files\UHT\UHT.EXE] <><2, 0, 0, 0>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[PID: 3100][C:\Program Files\Rising\Rav\RsAgent.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[PID: 3600][C:\Program Files\Internet Explorer\IEXPLORE.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\PROGRA~1\3721\scrblock.dll] <3721><1, 0, 1, 1000>
[C:\PROGRA~1\3721\alrex.dll] <><1, 0, 1, 1001>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[C:\WINDOWS\DOWNLO~1\CnsHint.dll] <3721><1, 0, 0, 7>
[C:\PROGRA~1\3721\autolive.dll] <><1, 1, 5, 1324>
[C:\PROGRA~1\3721\alLiveEx.dll] < ><1, 0, 3, 1006>
[C:\WINDOWS\DOWNLO~1\cnsplus.dll] <3721><1, 0, 0, 2>
[C:\PROGRA~1\3721\Assist\asbar.dll] <3721><1, 0, 1, 1021>
[C:\PROGRA~1\3721\Assist\tbwrap.dll] <3721><1, 0, 0, 2>
[C:\PROGRA~1\3721\Assist\asnoad.dll] <><1, 0, 0, 9>
[C:\PROGRA~1\3721\Assist\aswiper.dll] <3721><1, 0, 1, 1004>
[C:\PROGRA~1\3721\Assist\asiesec.dll] <yahoo><1, 0, 0, 9>
[C:\Program Files\Tencent\QQ\QQIEHelper.dll] <深圳市腾讯计算机系统有限公司><1, 1, 0, 5>
[C:\PROGRA~1\FLASHGET\jccatch.dll] <Amaze Soft><1, 1, 4, 0>
[C:\WINDOWS\DOWNLO~1\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[C:\WINDOWS\system32\wa_api60.dll] <N/A><N/A>
[C:\Program Files\Rising\Rav\RavScrCh.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\WINDOWS\system32\UNISPIM.IME] <北京清华紫光软件股份有限公司><3.0.0.3045>
[c:\progra~1\3721\assist\adfilter.dll] < ><1, 0, 1, 6>
[C:\PROGRA~1\3721\Assist\optimum.dll] <N/A><N/A>
[C:\PROGRA~1\3721\Assist\XPStyle.dll] <N/A><N/A>
[C:\PROGRA~1\3721\Shell\Assecblk.dll] <3721><1, 0, 1, 1001>
[C:\PROGRA~1\3721\Assist\repair.dll] <北京三七二一科技有限公司><1, 0, 4, 1001>
[C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx] <Macromedia, Inc.><8,0,24,0>
[C:\WINDOWS\system32\upengine.dll] <北京清华紫光软件股份有限公司><3.0.0.3045>
[PID: 2728][C:\Program Files\Rising\Rav\Rav.exe] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 61>
[C:\Program Files\Rising\Rav\PlugIn\RsPgScan.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 17>
[C:\Program Files\Rising\Rav\RSAPPMGR.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 2>
[C:\Program Files\Rising\Rav\CfgDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 10>
[C:\Program Files\Rising\Rav\RsCommX.dll] <rising><18, 0, 0, 1>
[C:\Program Files\Rising\Rav\RavUI.Dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 57>
[C:\Program Files\Rising\Rav\RsGuiLib.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 24>
[C:\Program Files\Rising\Rav\PngDll.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 5>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[C:\Program Files\Rising\Rav\RSCOMMON.DLL] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 4>
[C:\Program Files\Rising\Rav\Scanner.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 28>
[C:\Program Files\Rising\Rav\BWList.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 16>
[C:\Program Files\Rising\Rav\RavUIMsg.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 23>
[C:\WINDOWS\system32\wa_api60.dll] <N/A><N/A>
[C:\Program Files\Rising\Rav\RavScrCh.dll] <Beijing Rising Technology Co., Ltd.><18, 0, 0, 3>
[C:\WINDOWS\DOWNLO~1\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[PID: 3900][C:\Program Files\WinRAR\WinRAR.exe] <N/A><N/A>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[C:\WINDOWS\DOWNLO~1\CnsHook.dll] <北京三七二一科技有限公司><1, 0, 2, 7>
[PID: 1748][C:\DOCUME~1\user\LOCALS~1\Temp\Rar$EX01.697\SREng.exe] <Smallfrogs Studio><2.0.12.350>
[C:\PROGRA~1\3721\helper.dll] <><1, 0, 9, 1324>
[C:\WINDOWS\DOWNLO~1\CnsMin.dll] <北京三七二一科技有限公司><1, 5, 3, 0>
[C:\WINDOWS\system32\wa_api60.dll] <N/A><N/A>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE Error. [winfiles]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
MSAFD Tcpip [TCP/IP]
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD Tcpip [UDP/IP]
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD Tcpip [RAW/IP]
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
RSVP UDP Service Provider
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
RSVP TCP Service Provider
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{B6FB4725-883B-4118-93EF-E717068C1BC3}] SEQPACKET 0
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{B6FB4725-883B-4118-93EF-E717068C1BC3}] DATAGRAM 0
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{C6297995-42CD-4412-AE6E-5ABFDBF7937D}] SEQPACKET 1
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{C6297995-42CD-4412-AE6E-5ABFDBF7937D}] DATAGRAM 1
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{83089CA0-7C9F-4B7E-9E51-FB6B31791381}] SEQPACKET 2
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{83089CA0-7C9F-4B7E-9E51-FB6B31791381}] DATAGRAM 2
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{F6C4EC9A-8265-4440-A8F4-79A5B3CDCED5}] SEQPACKET 3
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{F6C4EC9A-8265-4440-A8F4-79A5B3CDCED5}] DATAGRAM 3
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{B2C1851B-351C-4C8B-B5F5-DF067EC454FF}] SEQPACKET 4
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{B2C1851B-351C-4C8B-B5F5-DF067EC454FF}] DATAGRAM 4
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{03907D1F-1018-4EDA-9E4F-3833F62D1EFC}] SEQPACKET 5
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{03907D1F-1018-4EDA-9E4F-3833F62D1EFC}] DATAGRAM 5
C:\WINDOWS\system32\wa_api60.dll(N/A, N/A)