=====================================================
PROCESS NAME: SVCHOST.EXE
-----------------------------------------------------
Process ID = 0x000002e4
Thread count= 8
Parent process ID = 560
Priority Class = 32
Modules:
------------------------------------
D:\WINDOWS\system32\svchost.exe (0x01000000)
D:\WINDOWS\System32\ntdll.dll (0x77F50000)
D:\WINDOWS\system32\kernel32.dll (0x77E40000)
D:\WINDOWS\system32\ADVAPI32.dll (0x77DA0000)
D:\WINDOWS\system32\RPCRT4.dll (0x78000000)
d:\windows\system32\rpcss.dll (0x757B0000)
D:\WINDOWS\system32\msvcrt.dll (0x77BE0000)
d:\windows\system32\WS2_32.dll (0x71A20000)
d:\windows\system32\WS2HELP.dll (0x71A10000)
D:\WINDOWS\system32\USER32.dll (0x77D10000)
D:\WINDOWS\system32\GDI32.dll (0x77C40000)
d:\windows\system32\Secur32.dll (0x76F60000)
D:\WINDOWS\System32\IMM32.DLL (0x76300000)
D:\WINDOWS\system32\LPK.DLL (0x62C20000)
D:\WINDOWS\system32\USP10.dll (0x72F10000)
D:\WINDOWS\system32\userenv.dll (0x759D0000)
D:\WINDOWS\system32\mswsock.dll (0x719C0000)
D:\WINDOWS\System32\wshtcpip.dll (0x71A00000)
D:\WINDOWS\system32\DNSAPI.dll (0x76EF0000)
D:\WINDOWS\system32\iphlpapi.dll (0x76D30000)
D:\WINDOWS\system32\netman.dll (0x76DB0000)
D:\WINDOWS\system32\MPRAPI.dll (0x76D10000)
D:\WINDOWS\system32\ACTIVEDS.dll (0x76E10000)
D:\WINDOWS\system32\adsldpc.dll (0x76DE0000)
D:\WINDOWS\system32\NETAPI32.dll (0x71BA0000)
D:\WINDOWS\system32\WLDAP32.dll (0x76F30000)
D:\WINDOWS\system32\ATL.DLL (0x76AF0000)
D:\WINDOWS\system32\ole32.dll (0x77180000)
D:\WINDOWS\system32\OLEAUT32.dll (0x770F0000)
D:\WINDOWS\system32\rtutils.dll (0x76E50000)
D:\WINDOWS\system32\SAMLIB.dll (0x71B70000)
D:\WINDOWS\system32\SETUPAPI.dll (0x765E0000)
D:\WINDOWS\system32\RASAPI32.dll (0x76EB0000)
D:\WINDOWS\system32\rasman.dll (0x76E60000)
D:\WINDOWS\system32\TAPI32.dll (0x76E80000)
D:\WINDOWS\system32\SHLWAPI.dll (0x772A0000)
D:\WINDOWS\system32\WINMM.dll (0x76B10000)
D:\WINDOWS\system32\SHELL32.dll (0x773A0000)
D:\WINDOWS\system32\WZCSvc.DLL (0x76D70000)
D:\WINDOWS\system32\WMI.dll (0x76D00000)
D:\WINDOWS\system32\DHCPCSVC.DLL (0x76D50000)
D:\WINDOWS\system32\CRYPT32.dll (0x76230000)
D:\WINDOWS\system32\MSASN1.dll (0x76210000)
D:\WINDOWS\system32\WTSAPI32.dll (0x76F20000)
D:\WINDOWS\system32\WINSTA.dll (0x762D0000)
D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll (0x00760000)
D:\WINDOWS\system32\comctl32.dll (0x77310000)
D:\WINDOWS\System32\winrnr.dll (0x76F80000)
D:\WINDOWS\system32\rasadhlp.dll (0x76F90000)
D:\WINDOWS\system32\CLBCATQ.DLL (0x76FA0000)
D:\WINDOWS\system32\COMRes.dll (0x77020000)
D:\WINDOWS\system32\VERSION.dll (0x77BD0000)
=====================================================
PROCESS NAME: CCenter.exe
-----------------------------------------------------
Process ID = 0x00000328
Thread count= 3
Parent process ID = 560
Priority Class = 32
Modules:
------------------------------------
D:\Program Files\Rising\Rav\CCenter.exe (0x00400000)
D:\WINDOWS\System32\ntdll.dll (0x77F50000)
D:\WINDOWS\system32\kernel32.dll (0x77E40000)
D:\WINDOWS\system32\USER32.dll (0x77D10000)
D:\WINDOWS\system32\GDI32.dll (0x77C40000)
D:\WINDOWS\system32\ADVAPI32.dll (0x77DA0000)
D:\WINDOWS\system32\RPCRT4.dll (0x78000000)
D:\WINDOWS\System32\IMM32.DLL (0x76300000)
D:\WINDOWS\system32\LPK.DLL (0x62C20000)
D:\WINDOWS\system32\USP10.dll (0x72F10000)
=====================================================
PROCESS NAME: RavMonD.exe
-----------------------------------------------------
Process ID = 0x00000338
Thread count= 16
Parent process ID = 560
Priority Class = 32
Modules:
------------------------------------
D:\Program Files\Rising\Rav\Ravmond.exe (0x00400000)
D:\WINDOWS\System32\ntdll.dll (0x77F50000)
D:\WINDOWS\system32\kernel32.dll (0x77E40000)
D:\Program Files\Rising\Rav\BWList.dll (0x10000000)
D:\WINDOWS\system32\MFC42.DLL (0x73D30000)
D:\WINDOWS\system32\MSVCRT.dll (0x77BE0000)
D:\WINDOWS\system32\GDI32.dll (0x77C40000)
D:\WINDOWS\system32\USER32.dll (0x77D10000)
D:\WINDOWS\system32\ADVAPI32.dll (0x77DA0000)
D:\WINDOWS\system32\RPCRT4.dll (0x78000000)
D:\WINDOWS\system32\SHELL32.dll (0x773A0000)
D:\WINDOWS\system32\SHLWAPI.dll (0x772A0000)
D:\WINDOWS\system32\MSVCP60.dll (0x75FF0000)
D:\WINDOWS\system32\WSOCK32.dll (0x71A40000)
D:\WINDOWS\system32\WS2_32.dll (0x71A20000)
D:\WINDOWS\system32\WS2HELP.dll (0x71A10000)
D:\WINDOWS\system32\OLEAUT32.dll (0x770F0000)
D:\WINDOWS\system32\OLE32.DLL (0x77180000)
D:\WINDOWS\system32\VERSION.dll (0x77BD0000)
D:\WINDOWS\System32\IMM32.DLL (0x76300000)
D:\WINDOWS\system32\LPK.DLL (0x62C20000)
D:\WINDOWS\system32\USP10.dll (0x72F10000)
D:\WINDOWS\System32\MFC42LOC.DLL (0x61BE0000)
D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll (0x00720000)
D:\WINDOWS\system32\comctl32.dll (0x77310000)
D:\Program Files\Rising\Rav\RsCommX.dll (0x00810000)
D:\Program Files\Rising\Rav\RSAPPMGR.DLL (0x00C30000)
D:\Program Files\Rising\Rav\CfgDll.dll (0x08D50000)
D:\Program Files\Rising\Rav\RSCOMMON.DLL (0x23700000)
D:\Program Files\Rising\Rav\RsLog.dll (0x08FE0000)
D:\Program Files\Rising\Rav\HOOKSYS.dll (0x08FF0000)
D:\Program Files\Rising\Rav\Scanner.dll (0x09120000)
D:\Program Files\Rising\Rav\libload.dll (0x13100000)
D:\Program Files\Rising\Rav\VirusLib.dll (0x09280000)
D:\Program Files\Rising\Rav\regmon.dll (0x093C0000)
D:\Program Files\Rising\Rav\psapi.dll (0x731B0000)
D:\WINDOWS\system32\IMAGEHLP.dll (0x76C60000)
D:\Program Files\Rising\Rav\HookWeb.dll (0x09650000)
D:\Program Files\Rising\Rav\MemMon.dll (0x09670000)
D:\Program Files\Rising\Rav\expscan.dll (0x096A0000)
D:\Program Files\Rising\Rav\mPorts.dll (0x096C0000)
D:\WINDOWS\system32\iphlpapi.dll (0x76D30000)
D:\WINDOWS\system32\netman.dll (0x76DB0000)
D:\WINDOWS\system32\MPRAPI.dll (0x76D10000)
D:\WINDOWS\system32\ACTIVEDS.dll (0x76E10000)
D:\WINDOWS\system32\adsldpc.dll (0x76DE0000)
D:\WINDOWS\system32\NETAPI32.dll (0x71BA0000)
D:\WINDOWS\system32\WLDAP32.dll (0x76F30000)
D:\WINDOWS\system32\ATL.DLL (0x76AF0000)
D:\WINDOWS\system32\rtutils.dll (0x76E50000)
D:\WINDOWS\system32\SAMLIB.dll (0x71B70000)
D:\WINDOWS\system32\SETUPAPI.dll (0x765E0000)
D:\WINDOWS\system32\RASAPI32.dll (0x76EB0000)
D:\WINDOWS\system32\rasman.dll (0x76E60000)
D:\WINDOWS\system32\TAPI32.dll (0x76E80000)
D:\WINDOWS\system32\WINMM.dll (0x76B10000)
D:\WINDOWS\system32\Secur32.dll (0x76F60000)
D:\WINDOWS\system32\WZCSvc.DLL (0x76D70000)
D:\WINDOWS\system32\WMI.dll (0x76D00000)
D:\WINDOWS\system32\DHCPCSVC.DLL (0x76D50000)
D:\WINDOWS\system32\DNSAPI.dll (0x76EF0000)
D:\WINDOWS\system32\CRYPT32.dll (0x76230000)
D:\WINDOWS\system32\MSASN1.dll (0x76210000)
D:\WINDOWS\system32\WTSAPI32.dll (0x76F20000)
D:\WINDOWS\system32\WINSTA.dll (0x762D0000)
D:\Program Files\Rising\Rav\MailMon.dll (0x09810000)
D:\Program Files\Rising\Rav\SpamEng.dll (0x09950000)
D:\Program Files\Rising\Rav\engine.dll (0x13A80000)
D:\WINDOWS\system32\mswsock.dll (0x719C0000)
D:\WINDOWS\System32\wshtcpip.dll (0x71A00000)
D:\WINDOWS\system32\perfproc.dll (0x5E8E0000)
=====================================================
PROCESS NAME: SVCHOST.EXE
-----------------------------------------------------
Process ID = 0x00000368
Thread count= 6
Parent process ID = 560
Priority Class = 32
Modules:
------------------------------------
D:\WINDOWS\System32\svchost.exe (0x01000000)
D:\WINDOWS\System32\ntdll.dll (0x77F50000)
D:\WINDOWS\system32\kernel32.dll (0x77E40000)
D:\WINDOWS\system32\ADVAPI32.dll (0x77DA0000)
D:\WINDOWS\system32\RPCRT4.dll (0x78000000)
D:\WINDOWS\system32\ole32.dll (0x77180000)
D:\WINDOWS\system32\GDI32.dll (0x77C40000)
D:\WINDOWS\system32\USER32.dll (0x77D10000)
D:\WINDOWS\System32\IMM32.DLL (0x76300000)
D:\WINDOWS\System32\LPK.DLL (0x62C20000)
D:\WINDOWS\System32\USP10.dll (0x72F10000)
d:\windows\pchealth\helpctr\binaries\pchsvc.dll (0x74EA0000)
D:\WINDOWS\system32\msvcrt.dll (0x77BE0000)
D:\WINDOWS\system32\OLEAUT32.dll (0x770F0000)
D:\WINDOWS\system32\WINSTA.dll (0x762D0000)
D:\WINDOWS\System32\CLBCATQ.DLL (0x76FA0000)
D:\WINDOWS\System32\COMRes.dll (0x77020000)
D:\WINDOWS\system32\VERSION.dll (0x77BD0000)
D:\WINDOWS\System32\SXS.DLL (0x75E00000)
=====================================================
PROCESS NAME: explorer.exe
-----------------------------------------------------
Process ID = 0x0000042c
Thread count= 13
Parent process ID = 1060
Priority Class = 32