创意安天

 找回密码
 注册创意安天

奇怪的花屏问题 会不会病毒导致?

[复制链接]
发表于 2009-7-21 07:51 | 显示全部楼层 |阅读模式
电脑从前几天开始,开了一段时间后就会出现花屏假死,屏幕字体都会不正常,这时候我只要随便关闭一些已经打开的程序,就会暂时恢复正常。不知道是什么原因?
2.jpg
1.JPG
 楼主| 发表于 2009-7-21 08:14 | 显示全部楼层
因为之前安装过PPS软件,通过百度后发现PPS会导致花屏问题,已经将PPS卸载,并且显卡驱动已经重新安装。刚刚用sreng扫描已经提示某些键值不正常,稍后将日志发上来。
 楼主| 发表于 2009-7-21 08:28 | 显示全部楼层
本帖最后由 马力 于 2009-7-21 08:31 编辑

2009-07-21,08:18:29

System Repair Engineer 2.7.1.1261 Emergency Scan Mode
Smallfrogs (http://www.KZTechs.com)

Windows XP Professional Service Pack 3 (Build 2600)

以下内容被选中:
    所有的启动项目(包括注册表、启动文件夹、服务等)
    浏览器加载项
    正在运行的进程(包括进程模块信息)
    文件关联
    Winsock 提供者
    Autorun.inf
    HOSTS 文件
    进程特权扫描
    计划任务



启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]    <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [Microsoft Corporation]    <iResearchiClick><"C:\PROGRA~1\IRESEA~1\iClick\iResearchiClick.exe" -d 150>  [iResearch][HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]    <load><>  [N/A]    <run><>  [N/A][HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]    <iResearchiClick><"C:\PROGRA~1\IRESEA~1\iClick\iResearchiClick.exe" -d 150>  [iResearch]    <runeip><"C:\Program Files\Rising\AntiSpyware\rstray.exe" /startup>  [(Verified)Beijing Rising Information Technology Corporation Limited]    <IMSCMig><C:\PROGRA~1\COMMON~1\MICROS~1\IME\IMSC40A\IMSCMIG.EXE /Preload>  [(Verified)Microsoft Corporation]    <KavStart><"C:\Program Files\Kingsoft\Kingsoft Internet Security\KAVStart.exe" -startup>  [(Verified)"Zhuhai  Kingsoft Software Co.,Ltd"]    <AntiyTray><C:\Program Files\Antiy Labs\ASoft\ATray.exe>  [(Verified)Antiy Technology Co. Ltd]    <RTHDCPL><RTHDCPL.EXE>  [Realtek Semiconductor Corp.]    <Alcmtr><; ALCMTR.EXE>  [Realtek Semiconductor Corp.]    <RavTray><"C:\Program Files\Rising\Rav\RsTray.exe" -system>  [(Verified)Beijing Rising Information Technology Corporation Limited]    <RFWTray><"C:\Program Files\Rising\RFW\RsTray.exe" -system>  [(Verified)Beijing Rising Information Technology Corporation Limited]    <safety3><"C:\Program Files\Rising\Rav\rssafety.exe" /startup>  [(Verified)Beijing Rising Information Technology Corporation Limited]    <NvCplDaemon><RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup>  [NVIDIA Corporation][HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]    <shell><Explorer.exe>  [Microsoft Corporation]    <Userinit><C:\WINDOWS\system32\userinit.exe,>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]    <AppInit_DLLs><kmon.dll>  [(Verified)Beijing Rising Information Technology Corporation Limited][HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]    <UIHost><logonui.exe>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]    <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]    <PostBootReminder><%SystemRoot%\system32\SHELL32.dll>  [Microsoft Corporation]    <CDBurn><%SystemRoot%\system32\SHELL32.dll>  [Microsoft Corporation]    <WebCheck><%SystemRoot%\system32\webcheck.dll>  [Microsoft Corporation]    <SysTray><C:\WINDOWS\system32\stobject.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]    <WinlogonNotify: crypt32chain><crypt32.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]    <WinlogonNotify: cryptnet><cryptnet.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]    <WinlogonNotify: cscdll><cscdll.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy]    <WinlogonNotify: dimsntfy><%SystemRoot%\System32\dimsntfy.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]    <WinlogonNotify: ScCertProp><wlnotify.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]    <WinlogonNotify: Schedule><wlnotify.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]    <WinlogonNotify: sclgntfy><sclgntfy.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]    <WinlogonNotify: SensLogn><WlNotify.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]    <WinlogonNotify: termsrv><wlnotify.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]    <WinlogonNotify: wlballoon><wlnotify.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]    <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [Microsoft Corporation]    <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]    <Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]    <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]    <浏览器自定义组件><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]    <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]    <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]    <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]    <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  [][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]    <Windows Messenger 4.7><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msmsgs.inf,BLC.QuietInstall.PerUser>  [][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]    <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub>  [][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]    <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]    <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [Microsoft Corporation][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]    <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [Microsoft Corporation]

==================================
启动文件夹
N/A

==================================
服务
[AKrnl / AKrnl][Running/Auto Start]  <"C:\Program Files\Common Files\Antiy Labs\ACommon\AKrnl.exe" -n AKrnl -f  C:\Program Files\Common Files\Antiy Labs\ACommon\AKrnlComMgr.dll><Antiy Labs>[Alerter / Alerter][Stopped/Disabled]  <C:\WINDOWS\system32\svchost.exe -k LocalService-->%SystemRoot%\system32\alrsvc.dll><Microsoft Corporation>[Application Layer Gateway Service / ALG][Running/Manual Start]  <C:\WINDOWS\System32\alg.exe><Microsoft Corporation>[Antiy AHPProcMon Server / Antiy AHPProcMon Server][Running/Auto Start]  <C:\Program Files\Antiy Labs\AModule\AHProcMonServer.exe><Antiy Labs>[Application Management / AppMgmt][Stopped/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><Microsoft Corporation>[AScheduleService / AScheduleService][Running/Auto Start]  <C:\Program Files\Antiy Labs\ASoft\AScheduleService.exe><Antiy Labs>[Windows Audio / AudioSrv][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\audiosrv.dll><Microsoft Corporation>[Background Intelligent Transfer Service / BITS][Stopped/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\qmgr.dll><Microsoft Corporation>[BlueSoleil Hid Service / BlueSoleil Hid Service][Running/Auto Start]  <C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe><N/A>[Computer Browser / Browser][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\browser.dll><Microsoft Corporation>[Indexing Service / CiSvc][Stopped/Manual Start]  <C:\WINDOWS\system32\cisvc.exe><Microsoft Corporation>[ClipBook / ClipSrv][Stopped/Disabled]  <C:\WINDOWS\system32\clipsrv.exe><Microsoft Corporation>[COM+ System Application / COMSysApp][Stopped/Manual Start]  <C:\WINDOWS\system32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}><Microsoft Corporation>[Cryptographic Services / CryptSvc][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\cryptsvc.dll><Microsoft Corporation>[DCOM 服务器进程启动器 / DcomLaunch][Running/Auto Start]  <C:\WINDOWS\system32\svchost -k DcomLaunch-->%SystemRoot%\system32\rpcss.dll><Microsoft Corporation>[DHCP Client / Dhcp][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\dhcpcsvc.dll><Microsoft Corporation>[Logical Disk Manager Administrative Service / dmadmin][Stopped/Manual Start]  <C:\WINDOWS\System32\dmadmin.exe /com><Microsoft Corp., Veritas Software>[Logical Disk Manager / dmserver][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\dmserver.dll><Microsoft Corp.>[DNS Client / Dnscache][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k NetworkService-->%SystemRoot%\System32\dnsrslvr.dll><Microsoft Corporation>[Wired AutoConfig / Dot3svc][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k dot3svc-->%SystemRoot%\System32\dot3svc.dll><Microsoft Corporation>[Extensible Authentication Protocol Service / EapHost][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k eapsvcs-->%SystemRoot%\System32\eapsvc.dll><Microsoft Corporation>[Error Reporting Service / ERSvc][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\ersvc.dll><Microsoft Corporation>[Event Log / Eventlog][Running/Auto Start]  <C:\WINDOWS\system32\services.exe><Microsoft Corporation>[COM+ Event System / EventSystem][Running/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\es.dll><Microsoft Corporation>[Fast User Switching Compatibility / FastUserSwitchingCompatibility][Running/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\shsvcs.dll><Microsoft Corporation>[Help and Support / helpsvc][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%WINDIR%\PCHealth\HelpCtr\Binaries\pchsvc.dll><Microsoft Corporation>[HID Input Service / HidServ][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><Microsoft Corporation>[Health Key and Certificate Management Service / hkmsvc][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\kmsvc.dll><Microsoft Corporation>[HTTP SSL / HTTPFilter][Running/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k HTTPFilter-->%SystemRoot%\System32\w3ssl.dll><Microsoft Corporation>[IMAPI CD-Burning COM Service / ImapiService][Stopped/Manual Start]  <C:\WINDOWS\system32\imapi.exe><Microsoft Corporation>[Kingsoft Basic Service / kaccore][Stopped/Manual Start]  <"C:\Program Files\Kingsoft\KAC\Service\kaccore.exe"><Kingsoft Corporation>[Kingsoft Antivirus WebShield Service / Kingsoft Antivirus WebShield Service][Running/Auto Start]  <C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\KSWebShield.exe><Kingsoft Corporation>[Kingsoft Internet Security Common Service / KISSvc][Running/Auto Start]  <C:\Program Files\Kingsoft\Kingsoft Internet Security\KISSvc.EXE><Kingsoft Corporation>[Kingsoft Antivirus KWatch Service / KWatchSvc][Running/Auto Start]  <"C:\Program Files\Kingsoft\Kingsoft Internet Security\KWatch.EXE"><Kingsoft Corporation>[Kingsoft Antivirus XEngine Service / KxEServ][Running/Auto Start]  <C:\Program Files\Common Files\Kingsoft\CommonService\kxeserv.exe><Kingsoft Corporation>[Server / lanmanserver][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\srvsvc.dll><Microsoft Corporation>[Workstation / lanmanworkstation][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\wkssvc.dll><Microsoft Corporation>[TCP/IP NetBIOS Helper / LmHosts][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k LocalService-->%SystemRoot%\System32\lmhsvc.dll><Microsoft Corporation>[Messenger / Messenger][Stopped/Disabled]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\msgsvc.dll><Microsoft Corporation>[NetMeeting Remote Desktop Sharing / mnmsrvc][Stopped/Manual Start]  <C:\WINDOWS\system32\mnmsrvc.exe><Microsoft Corporation>[Distributed Transaction Coordinator / MSDTC][Stopped/Manual Start]  <C:\WINDOWS\system32\msdtc.exe><Microsoft Corporation>[Windows Installer / MSIServer][Stopped/Manual Start]  <C:\WINDOWS\system32\msiexec.exe /V><Microsoft Corporation>[Network Access Protection Agent / napagent][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\qagentrt.dll><Microsoft Corporation>[Network DDE / NetDDE][Stopped/Disabled]  <C:\WINDOWS\system32\netdde.exe><Microsoft Corporation>[Network DDE DSDM / NetDDEdsdm][Stopped/Disabled]  <C:\WINDOWS\system32\netdde.exe><Microsoft Corporation>[Net Logon / Netlogon][Stopped/Manual Start]  <C:\WINDOWS\system32\lsass.exe><Microsoft Corporation>[Network Connections / Netman][Running/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\netman.dll><Microsoft Corporation>[Network Location Awareness (NLA) / Nla][Running/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\mswsock.dll><Microsoft Corporation>[NT LM Security Support Provider / NtLmSsp][Stopped/Manual Start]  <C:\WINDOWS\system32\lsass.exe><Microsoft Corporation>[Removable Storage / NtmsSvc][Stopped/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\system32\ntmssvc.dll><Microsoft Corporation>[NVIDIA Display Driver Service / nvsvc][Running/Auto Start]  <C:\WINDOWS\system32\nvsvc32.exe><NVIDIA Corporation>[Plug and Play / PlugPlay][Running/Auto Start]  <C:\WINDOWS\system32\services.exe><Microsoft Corporation>[IPSEC Services / PolicyAgent][Running/Auto Start]  <C:\WINDOWS\system32\lsass.exe><Microsoft Corporation>[Protected Storage / ProtectedStorage][Running/Auto Start]  <C:\WINDOWS\system32\lsass.exe><Microsoft Corporation>[Remote Access Auto Connection Manager / RasAuto][Stopped/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\rasauto.dll><Microsoft Corporation>[Remote Access Connection Manager / RasMan][Running/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\rasmans.dll><Microsoft Corporation>[Remote Desktop Help Session Manager / RDSessMgr][Stopped/Manual Start]  <C:\WINDOWS\system32\sessmgr.exe><Microsoft Corporation>[Routing and Remote Access / RemoteAccess][Stopped/Disabled]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\mprdim.dll><Microsoft Corporation>[Remote Registry / RemoteRegistry][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k LocalService-->%SystemRoot%\system32\regsvc.dll><Microsoft Corporation>[Remote Procedure Call (RPC) Locator / RpcLocator][Stopped/Manual Start]  <C:\WINDOWS\system32\locator.exe><Microsoft Corporation>[Remote Procedure Call (RPC) / RpcSs][Running/Auto Start]  <C:\WINDOWS\system32\svchost -k rpcss-->%SystemRoot%\system32\rpcss.dll><Microsoft Corporation>[Rav Service / RsRavMon][Stopped/Auto Start]  <"C:\Program Files\Rising\Rav\RavMonD.exe"><Beijing Rising Information Technology Co., Ltd.>[RFW Service / RsRFWMon][Stopped/Auto Start]  <"C:\Program Files\Rising\RFW\RavMonD.exe"><Beijing Rising Information Technology Co., Ltd.>[QoS RSVP / RSVP][Stopped/Manual Start]  <C:\WINDOWS\system32\rsvp.exe><Microsoft Corporation>[Security Accounts Manager / SamSs][Running/Auto Start]  <C:\WINDOWS\system32\lsass.exe><Microsoft Corporation>[Smart Card / SCardSvr][Stopped/Manual Start]  <C:\WINDOWS\System32\SCardSvr.exe><Microsoft Corporation>[Task Scheduler / Schedule][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\system32\schedsvc.dll><Microsoft Corporation>[Secondary Logon / seclogon][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\seclogon.dll><Microsoft Corporation>[System Event Notification / SENS][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\system32\sens.dll><Microsoft Corporation>[ServiceLayer / ServiceLayer][Stopped/Manual Start]  <"C:\Program Files\PC Connectivity Solution\ServiceLayer.exe"><Nokia.>[Windows Firewall/Internet Connection Sharing (ICS) / SharedAccess][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\ipnathlp.dll><Microsoft Corporation>[Shell Hardware Detection / ShellHWDetection][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\shsvcs.dll><Microsoft Corporation>[Print Spooler / Spooler][Running/Auto Start]  <C:\WINDOWS\system32\spoolsv.exe><Microsoft Corporation>[System Restore Service / srservice][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\srsvc.dll><Microsoft Corporation>[SSDP Discovery Service / SSDPSRV][Running/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k LocalService-->%SystemRoot%\System32\ssdpsrv.dll><Microsoft Corporation>[Windows Image Acquisition (WIA) / stisvc][Running/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k imgsvc-->%SystemRoot%\system32\wiaservc.dll><Microsoft Corporation>[MS Software Shadow Copy Provider / SwPrv][Stopped/Manual Start]  <C:\WINDOWS\system32\dllhost.exe /Processid:{E9744927-6A84-45FF-8BB3-FE4E93169F03}><Microsoft Corporation>[Performance Logs and Alerts / SysmonLog][Stopped/Manual Start]  <C:\WINDOWS\system32\smlogsvc.exe><Microsoft Corporation>[Telephony / TapiSrv][Running/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\tapisrv.dll><Microsoft Corporation>[Terminal Services / TermService][Running/Manual Start]  <C:\WINDOWS\System32\svchost -k DComLaunch-->%SystemRoot%\System32\termsrv.dll><Microsoft Corporation>[Themes / Themes][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\shsvcs.dll><Microsoft Corporation>[Telnet / TlntSvr][Stopped/Disabled]  <C:\WINDOWS\system32\tlntsvr.exe><Microsoft Corporation>[Distributed Link Tracking Client / TrkWks][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\system32\trkwks.dll><Microsoft Corporation>[Universal Plug and Play Device Host / upnphost][Stopped/Manual Start]  <C:\WINDOWS\system32\svchost.exe -k LocalService-->%SystemRoot%\System32\upnphost.dll><Microsoft Corporation>[Uninterruptible Power Supply / UPS][Stopped/Manual Start]  <C:\WINDOWS\System32\ups.exe><Microsoft Corporation>[User Privilege Service / usprserv][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs><Microsoft Corporation>[VMware Authorization Service / VMAuthdService][Running/Auto Start]  <C:\Program Files\VMware\VMware Workstation\vmware-authd.exe><VMware, Inc.>[VMware DHCP Service / VMnetDHCP][Running/Auto Start]  <C:\WINDOWS\system32\vmnetdhcp.exe><VMware, Inc.>[VMware NAT Service / VMware NAT Service][Running/Auto Start]  <C:\WINDOWS\system32\vmnat.exe><VMware, Inc.>[Volume Shadow Copy / VSS][Stopped/Manual Start]  <C:\WINDOWS\System32\vssvc.exe><Microsoft Corporation>[Windows Time / W32Time][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\w32time.dll><Microsoft Corporation>[WebClient / WebClient][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k LocalService-->%SystemRoot%\System32\webclnt.dll><Microsoft Corporation>[Windows Management Instrumentation / winmgmt][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\system32\wbem\WMIsvc.dll><Microsoft Corporation>[Portable Media Serial Number Service / WmdmPmSN][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\mspmsnsv.dll><Microsoft Corporation>[Windows Management Instrumentation Driver Extensions / Wmi][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\advapi32.dll><Microsoft Corporation>[WMI Performance Adapter / WmiApSrv][Stopped/Manual Start]  <C:\WINDOWS\system32\wbem\wmiapsrv.exe><Microsoft Corporation>[Security Center / wscsvc][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SYSTEMROOT%\system32\wscsvc.dll><Microsoft Corporation>[Automatic Updates / wuauserv][Running/Auto Start]  <C:\WINDOWS\system32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\wuauserv.dll><Microsoft Corporation>[Wireless Zero Configuration / WZCSVC][Running/Auto Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\wzcsvc.dll><Microsoft Corporation>[Network Provisioning Service / xmlprov][Stopped/Manual Start]  <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\xmlprov.dll><Microsoft Corporation>

==================================
驱动程序
[Microsoft ACPI Driver / ACPI][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\ACPI.sys><Microsoft Corporation>[Microsoft Kernel Acoustic Echo Canceller / aec][Stopped/Manual Start]  <system32\drivers\aec.sys><Microsoft Corporation>[AFD / AFD][Running/System Start]  <\SystemRoot\System32\drivers\afd.sys><Microsoft Corporation>[Ambfilt / Ambfilt][Stopped/Manual Start]  <system32\drivers\Ambfilt.sys><Creative>[Antiy Labs Process creation detector. / AMoniterDriver][Running/Manual Start]  <\??\C:\Program Files\Antiy Labs\AModule\AMonitorDriver.sys><Antiy Labs>[Antiy-Product-Protect / Antiy-Product-Protect][Running/Manual Start]  <\??\C:\Program Files\Antiy Labs\AModule\ProAntiy.sys><Antiy Labs>[RAS Asynchronous Media Driver / AsyncMac][Stopped/Manual Start]  <system32\DRIVERS\asyncmac.sys><Microsoft Corporation>[标准 IDE/ESDI 硬盘控制器 / atapi][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\atapi.sys><Microsoft Corporation>[ATM ARP Client Protocol / Atmarpc][Stopped/Manual Start]  <system32\DRIVERS\atmarpc.sys><Microsoft Corporation>[音频存根驱动程序 / audstub][Running/Manual Start]  <system32\DRIVERS\audstub.sys><Microsoft Corporation>[Bluetooth Audio Service / BlueletAudio][Running/Manual Start]  <system32\DRIVERS\blueletaudio.sys><IVT Corporation>[Bluetooth SCO Audio Service / BlueletSCOAudio][Running/Manual Start]  <system32\DRIVERS\BlueletSCOAudio.sys><IVT Corporation>[Bluetooth PAN Network Adapter / BT][Running/Manual Start]  <system32\DRIVERS\btnetdrv.sys><IVT Corporation>[Bluetooth USB For Bluetooth Service / Btcsrusb][Stopped/Manual Start]  <System32\Drivers\btcusb.sys><IVT Corporation>[Bluetooth HID Enumerator / BTHidEnum][Running/Manual Start]  <system32\DRIVERS\vbtenum.sys><N/A>[Bluetooth HID Manager Service / BTHidMgr][Running/Boot Start]  <\SystemRoot\System32\Drivers\BTHidMgr.sys><IVT Corporation>[Closed Caption Decoder / CCDECODE][Stopped/Manual Start]  <system32\DRIVERS\CCDECODE.sys><Microsoft Corporation>[CD-ROM Driver / Cdrom][Running/System Start]  <system32\DRIVERS\cdrom.sys><Microsoft Corporation>[Ch000001 / Ch000001][Stopped/Manual Start]  <\??\C:\Documents and Settings\mali\桌面\Ch000001.sys><N/A>[磁盘驱动器 / Disk][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\disk.sys><Microsoft Corporation>[dmboot / dmboot][Stopped/Disabled]  <System32\drivers\dmboot.sys><Microsoft Corp., Veritas Software>[Logical Disk Manager Driver / dmio][Running/Boot Start]  <\SystemRoot\System32\drivers\dmio.sys><Microsoft Corp., Veritas Software>[dmload / dmload][Running/Boot Start]  <\SystemRoot\System32\drivers\dmload.sys><Microsoft Corp., Veritas Software.>[Microsoft Kernel DLS Syntheiszer / DMusic][Stopped/Manual Start]  <system32\drivers\DMusic.sys><Microsoft Corporation>[Microsoft Kernel DRM Audio Descrambler / drmkaud][Stopped/Manual Start]  <system32\drivers\drmkaud.sys><Microsoft Corporation>[EagleNT / EagleNT][Stopped/Manual Start]  <\??\C:\WINDOWS\system32\drivers\EagleNT.sys><N/A>[Floppy Disk Controller Driver / Fdc][Running/Manual Start]  <system32\DRIVERS\fdc.sys><Microsoft Corporation>[软盘驱动程序 / Flpydisk][Running/Manual Start]  <system32\DRIVERS\flpydisk.sys><Microsoft Corporation>[FltMgr / FltMgr][Running/Boot Start]  <\SystemRoot\system32\drivers\fltmgr.sys><Microsoft Corporation>[FsVga / FsVga][Running/System Start]  <system32\DRIVERS\fsvga.sys><Microsoft Corporation>[Volume Manager Driver / Ftdisk][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\ftdisk.sys><Microsoft Corporation>[gdrv / gdrv][Stopped/Manual Start]  <\??\C:\WINDOWS\gdrv.sys><Windows (R) 2000 DDK provider>[Generic Packet Classifier / Gpc][Running/Manual Start]  <system32\DRIVERS\msgpc.sys><Microsoft Corporation>[hardlock / hardlock][Stopped/Auto Start]  <\??\C:\WINDOWS\system32\drivers\hardlock.sys><N/A>[VMware hcmon / hcmon][Running/Auto Start]  <\??\C:\WINDOWS\system32\Drivers\hcmon.sys><VMware, Inc.>[Microsoft 用于 High Definition Audio 的 UAA 总线驱动程序 / HDAudBus][Running/Manual Start]  <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>[Microsoft HID Class Driver / hidusb][Running/Manual Start]  <system32\DRIVERS\hidusb.sys><Microsoft Corporation>[hookcont / hookcont][Running/System Start]  <system32\drivers\HookCont.sys><Beijing Rising Information Technology Co., Ltd.>[HookProtect / HookProtect][Stopped/Manual Start]  <\??\D:\热舞派对\element\HookProtect.sys><N/A>[hooksys / hooksys][Running/System Start]  <system32\drivers\HookSys.sys><Beijing Rising Information Technology Co., Ltd.>[HTTP / HTTP][Running/Manual Start]  <System32\Drivers\HTTP.sys><Microsoft Corporation>[i8042 键盘和 PS/2 鼠标端口驱动程序 / i8042prt][Running/System Start]  <system32\DRIVERS\i8042prt.sys><Microsoft Corporation>[CD 烧制筛选驱动器 / Imapi][Running/System Start]  <system32\DRIVERS\imapi.sys><Microsoft Corporation>[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]  <system32\drivers\RtkHDAud.sys><Realtek Semiconductor Corp.>[Intel Processor Driver / intelppm][Running/System Start]  <system32\DRIVERS\intelppm.sys><Microsoft Corporation>[IPv6 Windows Firewall Driver / Ip6Fw][Stopped/Manual Start]  <system32\drivers\ip6fw.sys><Microsoft Corporation>[IP Traffic Filter Driver / IpFilterDriver][Running/Manual Start]  <system32\DRIVERS\ipfltdrv.sys><Microsoft Corporation>[IP in IP Tunnel Driver / IpInIp][Stopped/Manual Start]  <system32\DRIVERS\ipinip.sys><Microsoft Corporation>[IP Network Address Translator / IpNat][Running/Manual Start]  <system32\DRIVERS\ipnat.sys><Microsoft Corporation>[IPSEC driver / IPSec][Running/System Start]  <system32\DRIVERS\ipsec.sys><Microsoft Corporation>[IR Enumerator Service / IRENUM][Stopped/Manual Start]  <system32\DRIVERS\irenum.sys><Microsoft Corporation>[PnP ISA/EISA Bus Driver / isapnp][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\isapnp.sys><Microsoft Corporation>[JRAID / JRAID][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\jraid.sys><JMicron Technology Corp.>[KAVAPIM / KAVAPIM][Running/Auto Start]  <\??\C:\WINDOWS\system32\drivers\kavapim.sys><Kingsoft Corporation>[KAVBootC / KAVBootC][Running/Boot Start]  <\SystemRoot\system32\Drivers\KAVBootC.sys><Kingsoft Corporation>[KAVFM / KAVFM][Running/Auto Start]  <\??\C:\WINDOWS\system32\drivers\kavfm.sys><Kingsoft Corporation>[KAVPM / KAVPM][Running/Boot Start]  <\SystemRoot\system32\drivers\kavpm.sys><Kingsoft Corporation>[KAVSafe / KAVSafe][Running/Auto Start]  <\??\C:\WINDOWS\system32\Drivers\KAVSafe.sys><Kingsoft Corporation>[KAVUTY / KAVUTY][Running/Boot Start]  <\SystemRoot\system32\drivers\kavuty.sys><Kingsoft Corporation>[Keyboard Class Driver / Kbdclass][Running/System Start]  <system32\DRIVERS\kbdclass.sys><Microsoft Corporation>[Microsoft Kernel Wave Audio Mixer / kmixer][Running/Manual Start]  <system32\drivers\kmixer.sys><Microsoft Corporation>[KNetWch / KNetWch][Running/System Start]  <\??\C:\Program Files\Kingsoft\Kingsoft Internet Security\KNetWch.SYS><Kingsoft Corporation>[KWatch3 / KWatch3][Running/Auto Start]  <\??\C:\WINDOWS\system32\Drivers\KWatch3.sys><Kingsoft Corporation>[Monfilt / Monfilt][Stopped/Manual Start]  <system32\drivers\Monfilt.sys><Creative Technology Ltd.>[Mouse Class Driver / Mouclass][Running/System Start]  <system32\DRIVERS\mouclass.sys><Microsoft Corporation>[Mouse HID Driver / mouhid][Running/Manual Start]  <system32\DRIVERS\mouhid.sys><Microsoft Corporation>[WebDav Client Redirector / MRxDAV][Running/Manual Start]  <system32\DRIVERS\mrxdav.sys><Microsoft Corporation>[MRxSmb / MRxSmb][Running/System Start]  <system32\DRIVERS\mrxsmb.sys><Microsoft Corporation>[Microsoft Streaming Service Proxy / MSKSSRV][Stopped/Manual Start]  <system32\drivers\MSKSSRV.sys><Microsoft Corporation>[Microsoft Streaming Clock Proxy / MSPCLOCK][Stopped/Manual Start]  <system32\drivers\MSPCLOCK.sys><Microsoft Corporation>[Microsoft Streaming Quality Manager Proxy / MSPQM][Stopped/Manual Start]  <system32\drivers\MSPQM.sys><Microsoft Corporation>[Microsoft System Management BIOS Driver / mssmbios][Running/Manual Start]  <system32\DRIVERS\mssmbios.sys><Microsoft Corporation>[Microsoft Streaming Tee/Sink-to-Sink Converter / MSTEE][Stopped/Manual Start]  <system32\drivers\MSTEE.sys><Microsoft Corporation>[NABTS/FEC VBI Codec / NABTSFEC][Stopped/Manual Start]  <system32\DRIVERS\NABTSFEC.sys><Microsoft Corporation>[Microsoft TV/Video Connection / NdisIP][Stopped/Manual Start]  <system32\DRIVERS\NdisIP.sys><Microsoft Corporation>[Remote Access NDIS TAPI Driver / NdisTapi][Running/Manual Start]  <system32\DRIVERS\ndistapi.sys><Microsoft Corporation>[NDIS 用户模式 I/O 协议 / Ndisuio][Running/Manual Start]  <system32\DRIVERS\ndisuio.sys><Microsoft Corporation>[Remote Access NDIS WAN Driver / NdisWan][Running/Manual Start]  <system32\DRIVERS\ndiswan.sys><Microsoft Corporation>[NetBIOS Interface / NetBIOS][Running/System Start]  <system32\DRIVERS\netbios.sys><Microsoft Corporation>[NetBios over Tcpip / NetBT][Running/System Start]  <system32\DRIVERS\netbt.sys><Microsoft Corporation>[nv / nv][Running/Manual Start]  <system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>[IPX Traffic Filter Driver / NwlnkFlt][Stopped/Manual Start]  <system32\DRIVERS\nwlnkflt.sys><Microsoft Corporation>[IPX Traffic Forwarder Driver / NwlnkFwd][Stopped/Manual Start]  <system32\DRIVERS\nwlnkfwd.sys><Microsoft Corporation>[Parallel port driver / Parport][Running/Manual Start]  <system32\DRIVERS\parport.sys><Microsoft Corporation>[PCCS Mode Change Filter Driver / pccsmcfd][Stopped/Manual Start]  <system32\DRIVERS\pccsmcfd.sys><Nokia>[PCI Bus Driver / PCI][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\pci.sys><Microsoft Corporation>[PCIIde / PCIIde][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\pciide.sys><Microsoft Corporation>[WAN Miniport (PPTP) / PptpMiniport][Running/Manual Start]  <system32\DRIVERS\raspptp.sys><Microsoft Corporation>[Protector / Protector][Running/System Start]  <system32\drivers\Protector.sys><N/A>[ProtectorA / ProtectorA][Running/System Start]  <\??\C:\WINDOWS\system32\drivers\ProtectorA.sys><www.ISRA.org.cn>[QoS Packet Scheduler / PSched][Running/Manual Start]  <system32\DRIVERS\psched.sys><Microsoft Corporation>[Direct Parallel Link Driver / Ptilink][Running/Manual Start]  <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>[Remote Access Auto Connection Driver / RasAcd][Running/System Start]  <system32\DRIVERS\rasacd.sys><Microsoft Corporation>[WAN Miniport (L2TP) / Rasl2tp][Running/Manual Start]  <system32\DRIVERS\rasl2tp.sys><Microsoft Corporation>[远程访问 PPPOE 驱动程序 / RasPppoe][Running/Manual Start]  <system32\DRIVERS\raspppoe.sys><Microsoft Corporation>[Direct Parallel / Raspti][Running/Manual Start]  <system32\DRIVERS\raspti.sys><Microsoft Corporation>[Rdbss / Rdbss][Running/System Start]  <system32\DRIVERS\rdbss.sys><Microsoft Corporation>[RDPCDD / RDPCDD][Running/System Start]  <System32\DRIVERS\RDPCDD.sys><Microsoft Corporation>[Terminal Server Device Redirector Driver / rdpdr][Running/Manual Start]  <system32\DRIVERS\rdpdr.sys><Microsoft Corporation>[Digital CD Audio Playback Filter Driver / redbook][Running/System Start]  <system32\DRIVERS\redbook.sys><Microsoft Corporation>[Rising RfwARP Driver / RFWARP][Running/Auto Start]  <system32\DRIVERS\rfwarp.sys><Beijing Rising Information Technology Co., Ltd.>[Rising RfwBase Driver / RfwBase9][Running/Manual Start]  <system32\DRIVERS\rfwbase.sys><Beijing Rising Information Technology Co., Ltd.>[rfwtdi / rfwtdi][Running/Auto Start]  <\??\C:\Program Files\Rising\RFW\rfwtdi.sys><Beijing Rising Information Technology Co., Ltd.>[Microsoft Legacy Modem Driver / ROOTMODEM][Running/Manual Start]  <System32\Drivers\RootMdm.sys><Microsoft Corporation>[rsfwdrv / rsfwdrv][Running/System Start]  <\??\C:\Program Files\Rising\RFW\rsfwdrv.sys><Beijing Rising Information Technology Co., Ltd.>[RsNTGDI / RsNTGDI][Running/Boot Start]  <\SystemRoot\system32\Drivers\RsNTGdi.sys><Beijing Rising Information Technology Co., Ltd.>[RsProtect / RsProtect][Running/System Start]  <system32\drivers\RsPtect.sys><Beijing Rising Information Technology Co., Ltd.>[Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver / RTLE8023xp][Running/Manual Start]  <system32\DRIVERS\Rtenicxp.sys><Realtek Semiconductor Corporation>[Secdrv / Secdrv][Stopped/Manual Start]  <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>[Sentinel / Sentinel][Running/Auto Start]  <\SystemRoot\System32\Drivers\SENTINEL.SYS><Rainbow Technologies, Inc.>[Serenum Filter Driver / serenum][Running/Manual Start]  <system32\DRIVERS\serenum.sys><Microsoft Corporation>[Serial port driver / Serial][Running/System Start]  <system32\DRIVERS\serial.sys><Microsoft Corporation>[BDA Slip De-Framer / SLIP][Stopped/Manual Start]  <system32\DRIVERS\SLIP.sys><Microsoft Corporation>[Sony USB Filter Driver (SONYPVU1) / SONYPVU1][Stopped/Manual Start]  <system32\DRIVERS\SONYPVU1.SYS><Sony Corporation>[Microsoft Kernel Audio Splitter / splitter][Stopped/Manual Start]  <system32\drivers\splitter.sys><Microsoft Corporation>[System Restore Filter Driver / sr][Running/Boot Start]  <\SystemRoot\system32\DRIVERS\sr.sys><Microsoft Corporation>[Srv / Srv][Running/Manual Start]  <system32\DRIVERS\srv.sys><Microsoft Corporation>[BDA IPSink / streamip][Stopped/Manual Start]  <system32\DRIVERS\StreamIP.sys><Microsoft Corporation>[Software Bus Driver / swenum][Running/Manual Start]  <system32\DRIVERS\swenum.sys><Microsoft Corporation>[Microsoft Kernel GS Wavetable Synthesizer / swmidi][Stopped/Manual Start]  <system32\drivers\swmidi.sys><Microsoft Corporation>[Microsoft Kernel System Audio Device / sysaudio][Running/Manual Start]  <system32\drivers\sysaudio.sys><Microsoft Corporation>[TCP/IP Protocol Driver / Tcpip][Running/System Start]  <system32\DRIVERS\tcpip.sys><Microsoft Corporation>[Terminal Device Driver / TermDD][Running/System Start]  <system32\DRIVERS\termdd.sys><Microsoft Corporation>[TesSafe / TesSafe][Stopped/Manual Start]  <\??\C:\WINDOWS\system32\TesSafe.sys><TENCENT>[Microcode Update Driver / Update][Running/Manual Start]  <system32\DRIVERS\update.sys><Microsoft Corporation>[upperdev / upperdev][Stopped/Manual Start]  <system32\DRIVERS\usbser_lowerflt.sys><N/A>[Microsoft USB 2.0 Enhanced Host Controller Miniport Driver / usbehci][Running/Manual Start]  <system32\DRIVERS\usbehci.sys><Microsoft Corporation>[USB2 Enabled Hub / usbhub][Running/Manual Start]  <system32\DRIVERS\usbhub.sys><Microsoft Corporation>[USB 大容量存储设备 / USBSTOR][Stopped/Manual Start]  <system32\DRIVERS\USBSTOR.SYS><Microsoft Corporation>[Microsoft USB Universal Host Controller Miniport Driver / usbuhci][Running/Manual Start]  <system32\DRIVERS\usbuhci.sys><Microsoft Corporation>[Virtual Serial port driver / VComm][Running/Manual Start]  <system32\DRIVERS\VComm.sys><IVT Corporation>[Bluetooth VComm Manager Service / VcommMgr][Running/Manual Start]  <System32\Drivers\VcommMgr.sys><IVT Corporation>[VGA 显示控制器。 / VgaSave][Running/System Start]  <\SystemRoot\System32\drivers\vga.sys><Microsoft Corporation>[VMware Virtual Ethernet Adapter Driver / VMnetAdapter][Running/Manual Start]  <system32\DRIVERS\vmnetadapter.sys><VMware, Inc.>[VMware Bridge Protocol / VMnetBridge][Running/Auto Start]  <system32\DRIVERS\vmnetbridge.sys><VMware, Inc.>[VMware Network Application Interface / VMnetuserif][Running/Auto Start]  <\??\C:\WINDOWS\system32\drivers\vmnetuserif.sys><VMware, Inc.>[VMware VMparport / VMparport][Running/Auto Start]  <\??\C:\WINDOWS\system32\Drivers\VMparport.sys><VMware, Inc.>[VMware USB Client Driver / vmusb][Stopped/Manual Start]  <System32\Drivers\vmusb.sys><VMware, Inc.>[VMware vmx86 / vmx86][Running/Auto Start]  <\??\C:\WINDOWS\system32\Drivers\vmx86.sys><VMware, Inc.>[Remote Access IP ARP Driver / Wanarp][Running/Manual Start]  <system32\DRIVERS\wanarp.sys><Microsoft Corporation>[Microsoft WINMM WDM Audio Compatibility Driver / wdmaud][Running/Manual Start]  <system32\drivers\wdmaud.sys><Microsoft Corporation>[World Standard Teletext Codec / WSTCODEC][Stopped/Manual Start]  <system32\DRIVERS\WSTCODEC.SYS><Microsoft Corporation>[AntiyFirewall / AntiyFirewall][Running/Manual Start]  <\??\C:\WINDOWS\system32\drivers\AntiyFW.sys><Antiy Labs>

==================================
浏览器加载项
[ThunderAtOnce Class]  {01443AEC-0FD1-40fd-9C87-E93D1494C233} <C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>[BOC ProcessProtect Class]  {776B71E2-B4CC-4C94-BC7C-09103AA690B6} <C:\WINDOWS\system32\ProcessProtection.dll, (Signed) www.ISRA.org.cn>[Thunder Browser Helper]  {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>[Windows Live 登录帮助程序]  {9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, (Signed) Microsoft Corporation>[启动迅雷5]  {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <C:\Program Files\Thunder Network\Thunder\Thunder.exe, (Signed) 深圳市迅雷网络技术有限公司>[Google Gears ToolsMenuItem]  {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} <C:\Program Files\Google\Google Gears\Internet Explorer\0.3.13.0\gears.dll, Google Inc.>[信息检索(&R)]  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL, (Signed) Microsoft Corporation>[瑞星卡卡工具条(&R)]  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\KakaTool.dll, (Signed) Beijing Rising Information Technology Co., Ltd.>[]  {00000161-0000-0010-8000-00AA00389B71} <, >[Office Genuine Advantage Validation Tool]  {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} <C:\WINDOWS\system32\OGACheckControl.dll, (Signed) >[Microsoft Data Collection Control]  {0742B9EF-8C83-41CA-BFBA-830A59E23533} <C:\WINDOWS\Downloaded Program Files\MSDcode.dll, (Signed) Microsoft Corp>[Windows Genuine Advantage Validation Tool]  {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft Corporation>[iTrusPTA Class]  {1E0DFFCF-27FF-4574-849B-55007349FEDA} <C:\WINDOWS\system32\aliedit\pta.dll, (Signed) >[]  {33564D57-0000-0010-8000-00AA00389B71} <, >[WebI8001 Class]  {3F096DF9-E61A-40D2-96CA-E734019AB4B9} <C:\WINDOWS\system32\WebI800.dll, (Signed) TODO: <公司名>>[EditCtrl Class]  {488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, (Signed) >[WUWebControl Class]  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>[SpeedTest Class]  {6DC46AC0-7EC9-44EB-8CF7-5371B2008904} <C:\WINDOWS\Downloaded Program Files\SpeedTE.dll, (Signed) AKAZAM Communications Inc.>[MUWebControl Class]  {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <C:\WINDOWS\system32\muweb.dll, (Signed) Microsoft Corporation>[AxInputControl Class]  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >[]  {B2EC6023-6C00-49F9-A8BE-3AAC4E326BA4} <, >[QQCertCtrl Class]  {BAEA0695-03A4-43BB-8495-C7025E1A8F42} <C:\WINDOWS\system32\qqedit\qqcert.dll, N/A>[Shockwave Flash Object]  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10b.ocx, (Signed) Adobe Systems, Inc.>[]  {00000161-0000-0010-8000-00AA00389B71} <, >[ThunderAtOnce Class]  {01443AEC-0FD1-40FD-9C87-E93D1494C233} <C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll, (Signed) Thunder Networking Technologies,LTD>[]  {01C8D7B8-5236-46A6-B6A7-94224EEED170} <, >[Office Genuine Advantage Validation Tool]  {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} <C:\WINDOWS\system32\OGACheckControl.dll, (Signed) >[Microsoft Data Collection Control]  {0742B9EF-8C83-41CA-BFBA-830A59E23533} <C:\WINDOWS\Downloaded Program Files\MSDcode.dll, (Signed) Microsoft Corp>[Web Browser Applet Control]  {08B0E5C0-4FCB-11CF-AAA5-00401C608501} <C:\WINDOWS\system32\msjava.dll, Microsoft Corporation>[]  {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} <, >[]  {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} <, >[GerneralPeerID Class]  {0A47E819-F82E-4D5D-B806-6A9EA94D68CD} <C:\Program Files\Thunder Network\Thunder\Components\InMedia\peerid.dll, N/A>[CEnroll Class]  {127698E4-E730-4E5C-A2B1-21490A70C8A1} <C:\WINDOWS\system32\xenroll.dll, (Signed) Microsoft Corporation>[Windows Genuine Advantage Validation Tool]  {17492023-C23A-453E-A040-C7C580BBF700} <C:\WINDOWS\system32\legitcheckcontrol.dll, (Signed) Microsoft Corporation>[]  {18226BF8-DC0B-4D81-80E9-A41AE37BB73A} <, >[]  {19EFFC12-25FB-479A-A0F2-1569AE1B3365} <, >[iTrusPTA Class]  {1E0DFFCF-27FF-4574-849B-55007349FEDA} <C:\WINDOWS\system32\aliedit\pta.dll, (Signed) >[Windows Media Player]  {22D6F312-B0F6-11D0-94AB-0080C74C7E95} <C:\WINDOWS\system32\msdxm.ocx, Microsoft Corporation>[HTML Document]  {25336920-03F9-11CF-8FD0-00AA00686F13} <%SystemRoot%\system32\mshtml.dll, N/A>[DHTML Edit Control Safe for Scripting for IE5]  {2D360201-FFF5-11D1-8D03-00A0C959BC0A} <C:\WINDOWS\system32\dllcache\dhtmled.ocx, Microsoft Corporation>[HtmlDlgSafeHelper Class]  {3050F819-98B5-11CF-BB82-00AA00BDCE0B} <C:\WINDOWS\system32\mshtmled.dll, Microsoft Corporation>[]  {320AF880-6646-11D3-ABEE-C5DBF3571F46} <, >[]  {320AF880-6646-11D3-ABEE-C5DBF3571F49} <, >[IETag Factory]  {38481807-CA0E-42D2-BF39-B33AF135CC4D} <C:\PROGRA~1\COMMON~1\MICROS~1\SMARTT~1\IETAG.DLL, (Signed) Microsoft Corporation>[]  {3AECD3C1-7085-4731-96DC-47B6CF7EF749} <, >[WebI8001 Class]  {3F096DF9-E61A-40D2-96CA-E734019AB4B9} <C:\WINDOWS\system32\WebI800.dll, (Signed) TODO: <公司名>>[]  {43869BB3-22FD-4F15-9B46-238106BA2F4E} <, >[XML Document]  {48123BC4-99D9-11D1-A6B3-00C04FD91555} <C:\WINDOWS\system32\msxml3.dll, Microsoft Corporation>[Thunder Agent Class]  {485463B7-8FB2-4B3B-B29B-8B919B0EACCE} <C:\Program Files\Thunder Network\Thunder\ComDlls\ThunderAgent_Now.dll, (Signed) Thunder Networking Technologies,LTD>[EditCtrl Class]  {488A4255-3236-44B3-8F27-FA1AECAA8844} <C:\WINDOWS\system32\aliedit\aliedit.dll, (Signed) >[9Box Agent Object]  {49484D63-60FB-4E4E-A400-9092F418CB61} <C:\PROGRA~1\Shutter\9BOX-S~1\NINEBO~1.DLL, (Signed) N/A>[Microsoft Terminal Services Client Control (redist)]  {4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2} <%systemroot%\system32\mstscax.dll, N/A>[Microsoft Terminal Services Client Control (redist)]  {4EDCB26C-D24C-4e72-AF07-B576699AC0DE} <%systemroot%\system32\mstscax.dll, N/A>[HHCtrl Object]  {52A2AAAE-085D-4187-97EA-8C30DB990436} <C:\WINDOWS\system32\hhctrl.ocx, Microsoft Corporation>[]  {53BEAA3C-A509-49AD-ACC3-553AD20DA38B} <, >[Shell Name Space]  {55136805-B2DE-11D1-B9F2-00A0C98BC547} <%SystemRoot%\system32\shdocvw.dll, N/A>[]  {5AB9367B-DD7F-411D-A030-DF7DE5E17AAE} <, >[WangWangX Class]  {5D09DD40-CDC4-4C56-B615-0D1E3B357C2B} <C:\Program Files\Alisoft\WangWang\AliIMX.dll, (Signed) Alibaba software (Shanghai) Corporation.>[WUWebControl Class]  {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>[XMP Class]  {6483F145-A768-4C41-AACC-52D4D7845851} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xplayer.dll_1_work, 深圳市迅雷网络技术有限公司>[XDRM]  {693571CB-54A3-4E90-9D52-EEAE1334E2D3} <C:\Documents and Settings\All Users\Application Data\Thunder Network\KanKan\xdrm.dll_1_work, >[]  {69A5F9C4-01CB-470B-8161-CE67313E3CF4} <, >[StormPlayer Object]  {6BE52E1D-E586-474F-A6E2-1A85A9B4D9FB} <C:\Program Files\StormII\mps.dll, (Signed) 北京暴风网际科技有限公司>[Windows Media Player]  {6BF52A52-394A-11D3-B153-00C04F79FAA6} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>[SpeedTest Class]  {6DC46AC0-7EC9-44EB-8CF7-5371B2008904} <C:\WINDOWS\Downloaded Program Files\SpeedTE.dll, (Signed) AKAZAM Communications Inc.>[MUWebControl Class]  {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} <C:\WINDOWS\system32\muweb.dll, (Signed) Microsoft Corporation>[Active Desktop Mover]  {72267F6A-A6F9-11D0-BC94-00C04FB67863} <%SystemRoot%\system32\SHELL32.dll, N/A>[]  {724D43A0-0D85-11D4-9908-00400523E39A} <, >[]  {724D43A9-0D85-11D4-9908-00400523E39A} <, >[]  {724D43AA-0D85-11D4-9908-00400523E39A} <, >[]  {7369D35A-5B70-4A5B-B789-B25FE09B4AF3} <, >[Microsoft Terminal Services Client Control (redist)]  {7390f3d8-0439-4c05-91e3-cf5cb290c3d0} <%systemroot%\system32\mstscax.dll, N/A>[AxInputControl Class]  {73E4740C-08EB-4133-896B-8D0A7C9EE3CD} <C:\WINDOWS\DOWNLO~1\INPUTC~1.DLL, >[Microsoft Terminal Services Client Control (redist)]  {7584c670-2274-4efb-b00b-d6aaba6d3850} <%systemroot%\system32\mstscax.dll, N/A>[MediaComm Class]  {7670648D-461B-42AF-BDFE-46D26AF5EFF2} <C:\Program Files\Thunder Network\Thunder\Components\InMedia\MediaAddin19.dll, (Signed) 深圳市迅雷网络技术有限公司>[BOC ProcessProtect Class]  {776B71E2-B4CC-4C94-BC7C-09103AA690B6} <C:\WINDOWS\system32\ProcessProtection.dll, (Signed) www.ISRA.org.cn>[]  {77FEF28E-EB96-44FF-B511-3185DEA48697} <, >[]  {7E853D72-626A-48EC-A868-BA8D5E23E045} <, >[]  {7EA71132-FFE9-4BEC-8824-B94F83E1F353} <, >[Microsoft Web 浏览器]  {8856F961-340A-11D0-A96B-00C04FD705A2} <C:\WINDOWS\system32\shdocvw.dll, Microsoft Corporation>[Thunder Browser Helper]  {889D2FEB-5411-4565-8998-1DD2C5261283} <C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll, (Signed) Thunder Networking Technologies,LTD>[AxSubmitControl Class]  {8D9E0B29-563C-4226-86C1-5FF2AE77E1D2} <C:\WINDOWS\DOWNLO~1\SUBMIT~1.DLL, >[]  {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >[Windows Live 登录帮助程序]  {9030D464-4C02-4ABF-8ECC-5164760863C6} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, (Signed) Microsoft Corporation>[Microsoft Terminal Services Client Control (redist)]  {9059f30f-4eb1-4bd2-9fdc-36f43a218f4a} <%systemroot%\system32\mstscax.dll, N/A>[]  {92780B25-18CC-41C8-B9BE-3C9C571A8263} <, >[OFrameObject Class]  {9701758C-4373-482E-B13C-776C048EC890} <C:\Program Files\Common Files\Thunder Network\KanKan\DapCtrl.2.3.5814.165.(186).dll, (Signed) 深圳市迅雷网络技术有限公司>[卡卡上网安全助手]  {98B7C13A-E9CD-4959-8B46-FBEAB41E42A8} <C:\WINDOWS\system32\UrlFilter.dll, (Signed) Beijing Rising Information Technology Co., Ltd.>[]  {9D9E8E93-78DE-4C43-9951-571BE86D5060} <, >[]  {9EDD6A91-BDD9-46DF-B470-7C04BA9B11FB} <, >[]  {9EFF1953-9694-47B1-AEF6-B2A3FE8BFE9B} <, >[]  {A3CD7F74-93C9-4BC4-B892-CCDF1514F714} <, >[RMGetLicense Class]  {A9FC132B-096D-460B-B7D5-1DB0FAE0C062} <C:\WINDOWS\system32\msnetobj.dll, Microsoft Corporation>[DapCtrl Class]  {ACACC6EB-1FBA-4E13-A729-53AEB2DF54F8} <C:\Program Files\Common Files\Thunder Network\KanKan\DapCtrl.2.3.5814.165.(186).dll, (Signed) 深圳市迅雷网络技术有限公司>[Microsoft Scriptlet Component]  {AE24FDAE-03C6-11D1-8B76-0080C744F389} <C:\WINDOWS\system32\mshtml.dll, Microsoft Corporation>[]  {B2EC6023-6C00-49F9-A8BE-3AAC4E326BA4} <, >[SearchAssistantOC]  {B45FF030-4447-11D2-85DE-00C04FA35C89} <%SystemRoot%\system32\shdocvw.dll, N/A>[]  {B580CF65-E151-49C3-B73F-70B13FCA8E86} <, >[]  {B69003B3-C55E-4B48-836C-BC5946FC3B28} <C:\Program Files\Messenger\msgsc.dll, Microsoft Corporation>[QQCertCtrl Class]  {BAEA0695-03A4-43BB-8495-C7025E1A8F42} <C:\WINDOWS\system32\qqedit\qqcert.dll, N/A>[RDS.DataSpace]  {BD96C556-65A3-11D0-983A-00C04FC29E36} <C:\Program Files\Common Files\System\msadc\msadco.dll, Microsoft Corporation>[OWSClientMiscApis Class]  {BDEADE3F-C265-11D0-BCED-00A0C90AB50F} <C:\PROGRA~1\MICROS~2\OFFICE11\OWSCLT.DLL, (Signed) Microsoft Corporation>[OWSBrowserUI Class]  {BDEADE43-C265-11D0-BCED-00A0C90AB50F} <C:\PROGRA~1\MICROS~2\OFFICE11\OWSCLT.DLL, (Signed) Microsoft Corporation>[AUDIO__MID Moniker Class]  {CD3AFA74-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>[AUDIO__MP3 Moniker Class]  {CD3AFA76-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>[AUDIO__WAV Moniker Class]  {CD3AFA7B-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>[AUDIO__X_MS_WMA Moniker Class]  {CD3AFA84-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>[VIDEO__X_MS_ASF Moniker Class]  {CD3AFA8F-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>[VIDEO__X_MS_WMV Moniker Class]  {CD3AFA94-B84F-48F0-9393-7EDC34128127} <C:\WINDOWS\system32\wmp.dll, Microsoft Corporation>[RealPlayer G2 Control]  {CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA} <C:\Program Files\StormII\Codec\rmoc3260.dll, N/A>[Windows Live 登录控制]  {D2517915-48CE-4286-970F-921E881B8C5C} <C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll, (Signed) Microsoft Corporation>[Shockwave Flash Object]  {D27CDB6E-AE6D-11CF-96B8-444553540000} <C:\WINDOWS\system32\Macromed\Flash\Flash10b.ocx, (Signed) Adobe Systems, Inc.>[]  {D82303B7-A754-4DCB-8AFC-8CF99435AACE} <, >[kingsoft browser shield]  {D963BE1A-6B35-47DB-B002-49FAE71D85CC} <C:\Program Files\Kingsoft\Kingsoft Internet Security\KASBrowserShield.DLL, (Signed) Kingsoft Corporation>[瑞星卡卡工具条(&R)]  {DB9ECD4F-FB8F-4311-B3CE-90B976C2707C} <C:\WINDOWS\system32\KakaTool.dll, (Signed) Beijing Rising Information Technology Co., Ltd.>[Microsoft Silverlight]  {DFEAF541-F3E1-4C24-ACAC-99C30715084A} <C:\Program Files\Microsoft Silverlight\2.0.40115.0\npctrl.dll, (Signed)  Microsoft Corporation>[PlayerCtrl Class]  {E05BC2A3-9A46-4A32-80C9-023A473F5B23} <C:\Program Files\QQ\QzoneMusic.dll, (Signed) 深圳腾讯科技>[Google Gears Helper]  {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} <C:\Program Files\Google\Google Gears\Internet Explorer\0.3.13.0\gears.dll, Google Inc.>[]  {E2E2DD38-D088-4134-82B7-F2BA38496583} <, >[BOC Edit Class]  {E61E8363-041F-455C-8AD0-8A61F1D8E540} <C:\WINDOWS\system32\KeyboardProtection.dll, (Signed) www.ISRA.org.cn>[]  {E787FD25-8D7C-4693-AE67-9406BC6E22DF} <, >[]  {E9707834-5BF7-4CFF-A639-398427DE1991} <, >[]  {ECCBA956-80E5-11D3-9285-0080ADB811C9} <, >[Thunder DapPlayer]  {EEDD6FF9-13DE-496B-9A1C-D78B3215E266} <C:\Program Files\Thunder Network\Thunder\Components\DownAndPlay\DapPlayer3.0.5712.71.207.dll, N/A>[Snapshot Viewer Control 11.0]  {F0E42D40-368C-11D0-AD81-00A0C90DC8D9} <C:\PROGRA~1\COMMON~1\MICROS~1\SNAPSH~1\SNAPVIEW.OCX, (Signed) Microsoft Corporation>[XPPlayer Class]  {F3E70CEA-956E-49CC-B444-73AFE593AD7F} <C:\Program Files\Common Files\Thunder Network\KanKan\PPlayer.2.1.58130.251.(186).dll, (Signed) 深圳市迅雷网络技术有限公司>[]  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >[]  {FB7199AB-79BF-11D2-8D94-0000F875C541} <C:\Program Files\Messenger\msgsc.dll, Microsoft Corporation>[使用迅雷下载]  <C:\Program Files\Thunder Network\Thunder\Program\GetUrl.htm, N/A>[使用迅雷下载全部链接]  <C:\Program Files\Thunder Network\Thunder\Program\GetAllUrl.htm, N/A>

==================================
正在运行的进程
[PID: 1336 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)][PID: 1468 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\CSRSRV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\basesrv.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\winsrv.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\KERNEL32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\sxs.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)][PID: 1492 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\AUTHZ.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\NDdeApi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\PROFMAP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\REGAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\MSGINA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\COMCTL32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ODBC32.dll]  [Microsoft Corporation, 3.525.1132.0 (xpsp.080413-0852)]    [C:\WINDOWS\system32\comdlg32.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\odbcint.dll]  [Microsoft Corporation, 3.525.1117.0 built by: (_sqlbld)]    [C:\WINDOWS\system32\SHSVCS.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\sfc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)]    [C:\WINDOWS\system32\WINSCARD.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WTSAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\sxs.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\cscdll.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\dimsntfy.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WlNotify.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MPR.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\cscui.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\wdmaud.drv]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\midimap.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700][PID: 1536 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NCObjAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\MSVCP60.dll]  [Microsoft Corporation, 6.02.3104.0]    [C:\WINDOWS\system32\SCESRV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\AUTHZ.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\umpnpmgr.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcAdProc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\eventlog.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)][PID: 1548 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\LSASRV.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\MPR.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SAMSRV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\cryptdll.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msprivs.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\kerberos.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\netlogon.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [C:\WINDOWS\system32\w32time.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [C:\WINDOWS\system32\MSVCP60.dll]  [Microsoft Corporation, 6.02.3104.0]    [C:\WINDOWS\system32\schannel.dll]  [Microsoft Corporation, 5.1.2600.5721 (xpsp_sp3_gdr.081204-1228)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\wdigest.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\setupapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\scecli.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\ipsecsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\AUTHZ.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\oakley.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WINIPSEC.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\pstorsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\psbase.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\dssenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)][PID: 1748 / SYSTEM][C:\WINDOWS\system32\nvsvc32.exe]  [NVIDIA Corporation, 6.14.11.8618]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\POWRPROF.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\COMCTL32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\nvapi.dll]  [NVIDIA Corporation, 6.14.11.8618]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)][PID: 1788 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\rpcss.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [c:\windows\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [c:\windows\system32\termsrv.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [c:\windows\system32\ICAAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [c:\windows\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [c:\windows\system32\AUTHZ.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\mstlsapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [c:\windows\system32\ACTIVEDS.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\adsldpc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [c:\windows\system32\ATL.DLL]  [Microsoft Corporation, 3.05.2284]    [C:\WINDOWS\system32\REGAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)][PID: 1868 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [c:\windows\system32\rpcss.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [c:\windows\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\winrnr.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700][PID: 576 / SYSTEM][C:\Program Files\Rising\Rav\RavMonD.exe]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\Rav\combase.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 8]    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]    [C:\Program Files\Rising\Rav\cnt09.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\moncomm.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 8]    [C:\Program Files\Rising\Rav\MonBase.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\Rslog.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.33]    [C:\Program Files\Rising\Rav\mondrv.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 4]    [C:\Program Files\Rising\Rav\defmon.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 23]    [C:\Program Files\Rising\Rav\moncom08.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\MonRule.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 6]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\Program Files\Rising\Rav\FileMon.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 13]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\Program Files\Rising\Rav\MailMon.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 9]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Rising\Rav\HookWeb.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 8]    [C:\Program Files\Rising\Rav\rsindent.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\NComm.dll]  [Beijing Rising Information Technology Co., Ltd., 6.0.0.12]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Rising\Rav\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\Program Files\Rising\Rav\taskplug.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 6]    [C:\Program Files\Rising\Rav\scansrvp.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.6]    [C:\Program Files\Rising\Rav\cnt08.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\proccomm.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\RSAPPMGR.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.1]    [C:\Program Files\Rising\Rav\CfgDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.20]    [C:\Program Files\Rising\Rav\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\Program Files\Rising\Rav\Hooksys.dll]  [Beijing Rising Information Technology Co., Ltd., 24, 0, 0, 1]    [C:\Program Files\Rising\Rav\ProcCom.dll]  [Beijing Rising Information Technology Co., Ltd., 20, 0, 0, 20]    [C:\Program Files\Rising\Rav\RsCommX2.dll]  [Beijing Rising Information Technology Co., Ltd., 20, 0, 0, 20]    [C:\Program Files\Rising\Rav\HookCont.dll]  [Beijing Rising Information Technology Co., Ltd., 24, 0, 0, 1]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\Rav\BACore.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 13]    [C:\WINDOWS\system32\sfc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\Rav\recomp.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 4]    [C:\Program Files\Rising\Rav\refs.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\rsnetsvr.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\RSStore.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\Scanner.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.10]    [C:\Program Files\Rising\Rav\viruslib.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\relibldr.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\ScanAdd.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.3]    [C:\WINDOWS\system32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Rising\Rav\rsconf.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\Program Files\Rising\Rav\rstask.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\Program Files\Rising\Rav\rsstub.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\Rav\ScanSrv.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.2]    [C:\Program Files\Rising\Rav\extsfx.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 4]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\wbem\wbemprox.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\wbemcomn.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\Program Files\Rising\Rav\ffr.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\nvfile.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\scanexec.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\unexe.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\scanex.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 8]    [C:\Program Files\Rising\Rav\pearc.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\scanpe.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 5]    [C:\Program Files\Rising\Rav\scantj.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\ur000.dat]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\urutils.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\methodex.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\heurex.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 6]    [C:\Program Files\Rising\Rav\pecompd.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\revm.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\WINDOWS\system32\msxml3.dll]  [Microsoft Corporation, 8.100.1048.0]    [C:\WINDOWS\system32\shell32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\wsock32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rasman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\TAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Rising\Rav\ur025.dat]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\WINDOWS\system32\wbem\wbemsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\fastprox.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\MSVCP60.dll]  [Microsoft Corporation, 6.02.3104.0]    [C:\WINDOWS\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\cryptnet.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SensApi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\WINHTTP.dll]  [Microsoft Corporation, 5.1.2600.5727 (xpsp_sp3_gdr.081215-1359)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\Cabinet.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\Rav\scansct.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\extarch.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 4]    [C:\Program Files\Rising\Rav\extcomp.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\extmail.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\ur001.dat]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\extole.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\ScanRavT.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.3]    [C:\Program Files\Rising\Rav\ScanBT.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.11]    [C:\Program Files\Rising\Rav\ScanStub.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.0]    [C:\Program Files\Rising\Rav\ur023.dat]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)][PID: 596 / SYSTEM][C:\Program Files\Rising\RFW\RavMonD.exe]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\RFW\combase.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 8]    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]    [C:\Program Files\Rising\RFW\cnt09.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\RFW\MonBase.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\RFW\MonComm.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 8]    [C:\Program Files\Rising\RFW\rfwlog.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.10]    [C:\Program Files\Rising\RFW\rfwrule.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\Program Files\Rising\RFW\rfwsrv.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.2]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\Program Files\Rising\RFW\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\Program Files\Rising\RFW\mPorts.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.0]    [C:\Program Files\Rising\RFW\rfwdrvc.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.1]    [C:\Program Files\Rising\RFW\Rfwdrv.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.5]    [C:\WINDOWS\system32\psapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\RFW\rsnetsvr.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\RFW\RfwArp.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.4]    [C:\Program Files\Rising\RFW\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\Iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Rising\RFW\urlrule.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\Program Files\Rising\RFW\recomp.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 4]    [C:\Program Files\Rising\RFW\refs.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\RFW\viruslib.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\RFW\relibldr.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\RFW\urllib.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\RFW\rfwproxy.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 29]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Rising\RFW\rsindent.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\RFW\NComm.dll]  [Beijing Rising Information Technology Co., Ltd., 6.0.0.12]    [C:\Program Files\Rising\RFW\taskplug.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 6]    [C:\Program Files\Rising\RFW\RSAPPMGR.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.1]    [C:\Program Files\Rising\RFW\CfgDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.20]    [C:\Program Files\Rising\RFW\proccomm.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\RFW\rsconf.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\Program Files\Rising\RFW\rstask.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\RFW\rsstub.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\WINDOWS\system32\COMCTL32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\MPRAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\ACTIVEDS.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\adsldpc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\ATL.DLL]  [Microsoft Corporation, 3.05.2284]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)][PID: 632 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\System32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\System32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\System32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\System32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\shsvcs.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [c:\windows\system32\dhcpcsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [c:\windows\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\wzcsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WMI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\EapolQec.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\ATL.DLL]  [Microsoft Corporation, 3.05.2284]    [c:\windows\system32\QUtil.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\MSVCP60.dll]  [Microsoft Corporation, 6.02.3104.0]    [c:\windows\system32\dot3api.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WTSAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [c:\windows\system32\ESENT.dll]  [Microsoft Corporation, 5.1.2468.0 (Lab03_N(jliem).010306-1456)]    [C:\WINDOWS\System32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\System32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\System32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\System32\rastls.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\CRYPTUI.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\MPRAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\ACTIVEDS.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\adsldpc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\RASAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\rasman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\TAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\SCHANNEL.dll]  [Microsoft Corporation, 5.1.2600.5721 (xpsp_sp3_gdr.081204-1228)]    [C:\WINDOWS\System32\WinSCard.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\raschap.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [c:\windows\system32\schedsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [C:\WINDOWS\System32\MSIDLE.DLL]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [c:\windows\system32\audiosrv.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [c:\windows\system32\wkssvc.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [c:\windows\system32\cryptsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\certcli.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\ersvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\dmserver.dll]  [Microsoft Corp., 2600.5512.503.0]    [c:\windows\pchealth\helpctr\binaries\pchsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\hidserv.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\HID.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\es.dll]  [Microsoft Corporation, 2001.12.4414.706]    [c:\windows\system32\srvsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\netman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\netshell.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\credui.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\dot3dlg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\OneX.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\eappcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\eappprxy.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WZCSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\seclogon.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\sens.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\srsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\POWRPROF.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\HNETCFG.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\trkwks.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\w32time.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [c:\windows\system32\wbem\wmisvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\VSSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\wuauserv.dll]  [Microsoft Corporation, 5.4.3790.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\WINSPOOL.DRV]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\WINHTTP.dll]  [Microsoft Corporation, 5.1.2600.5727 (xpsp_sp3_gdr.081215-1359)]    [C:\WINDOWS\System32\Cabinet.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\mspatcha.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [c:\windows\system32\browser.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\ipnathlp.dll]  [Microsoft Corporation, 5.1.2600.5584 (xpsp_sp3_qfe.080421-1413)]    [c:\windows\system32\MSWSOCK.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [c:\windows\system32\AUTHZ.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\SXS.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\comsvcs.dll]  [Microsoft Corporation, 2001.12.4414.702]    [C:\WINDOWS\system32\colbact.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\MTXCLU.DLL]  [Microsoft Corporation, 2001.12.4414.706]    [C:\WINDOWS\system32\WSOCK32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\CLUSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\RESUTILS.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\sfc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\Wbem\wbemcore.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\System32\Wbem\esscli.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\System32\Wbem\wbemcomn.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\System32\Wbem\FastProx.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\wbem\wbemsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\wmiutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\repdrvfs.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\wmiprvsd.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\NCObjAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\wbemess.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\ncprov.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [c:\windows\system32\tapisrv.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\rasmans.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WINIPSEC.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\netcfgx.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\upnp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\SSDPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\rastapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\unimdm.tsp]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\uniplat.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\unimdmat.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\modemui.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\kmddsp.tsp]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\msi.dll]  [Microsoft Corporation, 4.5.6001.22159]    [C:\WINDOWS\System32\ndptsp.tsp]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\ipconf.tsp]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\h323.tsp]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\hidphone.tsp]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\rasppp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\ntlsapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\kerberos.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\cryptdll.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\RASQEC.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\RASDLG.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msxml3.dll]  [Microsoft Corporation, 8.100.1048.0]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)][PID: 1120 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [c:\windows\system32\dnsrslvr.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [c:\windows\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 1316 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\lmhsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\regsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [c:\windows\system32\ssdpsrv.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\httpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WINHTTP.dll]  [Microsoft Corporation, 5.1.2600.5727 (xpsp_sp3_gdr.081215-1359)][PID: 1620 / SYSTEM][C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\KSWebShield.exe]  [Kingsoft Corporation, 2009,07,01,132]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\WTSAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kwssp.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kxestat.dll]  [Kingsoft Corporation, 2009,06,17,27]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\wsock32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rasman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\TAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\sensapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\System32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 1692 / SYSTEM][C:\Program Files\Kingsoft\Kingsoft Internet Security\KWatch.EXE]  [Kingsoft Corporation, 2009,06,17,932]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\kis.dll]  [Kingsoft Corporation, 2009,06,15,929]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80U.DLL]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\sfc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\MFC80CHS.DLL]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\KARetr.DLL]  [Kingsoft Corporation, 1, 0, 0, 1]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\KAVEvent.DLL]  [Kingsoft Corporation, 2008,04,22,364]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\KAVIPC2.DLL]  [Kingsoft Corporation, 2008,07,15,469]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\KAVDevC.dll]  [Kingsoft Corporation, 2009,03,18,117][PID: 2024 / mali][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\BROWSEUI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\SHDOCVW.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\CRYPTUI.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)]    [C:\WINDOWS\system32\appHelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\System32\cscui.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\CSCDLL.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\themeui.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\MSIMG32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\actxprxy.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\msutb.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\LINKINFO.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ntshrui.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ATL.DLL]  [Microsoft Corporation, 3.05.2284]    [C:\WINDOWS\system32\MLANG.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\msi.dll]  [Microsoft Corporation, 4.5.6001.22159]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\webcheck.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WSOCK32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\stobject.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\BatMeter.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\POWRPROF.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WTSAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\wdmaud.drv]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]    [C:\WINDOWS\system32\midimap.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\NETSHELL.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\credui.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\dot3api.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\dot3dlg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\OneX.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\eappcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\MSVCP60.dll]  [Microsoft Corporation, 6.02.3104.0]    [C:\WINDOWS\system32\eappprxy.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\SXS.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\MPR.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\drprov.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\ntlanman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\System32\NETUI0.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\System32\NETUI1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\System32\NETRAP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\davclnt.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\ktaskbar.dll]  [Kingsoft Corporation, 2009,03,11,790]    [C:\WINDOWS\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Common Files\Nero\Lib\NeroDigitalExt.dll]  [Nero AG, 3, 1, 0, 8]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80.DLL]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\MFC80CHS.DLL]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\system32\nvcpl.dll]  [NVIDIA Corporation, 6.14.11.8618]    [C:\WINDOWS\system32\COMDLG32.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\OLEACC.dll]  [Microsoft Corporation, 4.2.5406.0 (xpclient.010817-1148)]    [C:\WINDOWS\system32\NVRSZHC.DLL]  [NVIDIA Corporation, 6.14.11.8618]    [C:\WINDOWS\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\nvapi.dll]  [NVIDIA Corporation, 6.14.11.8618]    [C:\WINDOWS\system32\nvshell.dll]  [, ]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\browselc.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll]  [Thunder Networking Technologies,LTD, 5, 0, 8, 120]    [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DsBho_00.dll]  [深圳市迅雷网络技术有限公司, 1, 0, 0, 20]    [C:\Program Files\Thunder Network\Thunder\Components\ResWorker\DataProcessor_00.dll]  [深圳市迅雷网络技术有限公司, 1, 0, 0, 16]    [C:\WINDOWS\system32\DUSER.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\MSGINA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\ODBC32.dll]  [Microsoft Corporation, 3.525.1132.0 (xpsp.080413-0852)]    [C:\WINDOWS\system32\odbcint.dll]  [Microsoft Corporation, 3.525.1117.0 built by: (_sqlbld)]    [C:\Program Files\WinRAR\rarext.dll]  [N/A, ]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\KAVEXT.DLL]  [Kingsoft Corporation, 2008,07,09,459]    [C:\Program Files\Antiy Labs\AGB7\AGBCM.dll]  [Antiy Labs, 3, 1, 1, 5]    [C:\Program Files\Alisoft\WangWang\AliIMExt.dll]  [Alibaba software (Shanghai) Corporation., 1.0.0.1]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5581_x-ww_dfbc4fc4\gdiplus.dll]  [Microsoft Corporation, 5.1.3102.5581 (xpsp_sp3_qfe.080415-1416)]    [C:\WINDOWS\system32\RavExt.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\WINDOWS\system32\shimgvw.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll]  [Thunder Networking Technologies,LTD, 1.0.5.34]    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]    [C:\WINDOWS\system32\MSISIP.DLL]  [Microsoft Corporation, 4.5.6001.22159 (vistasp1_ldr.080415-1732)]    [C:\WINDOWS\system32\wshext.dll]  [Microsoft Corporation, 5.7.0.18066][PID: 216 / SYSTEM][C:\Program Files\Common Files\Kingsoft\CommonService\kxeserv.exe]  [Kingsoft Corporation, 2009,05,06,235]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\Program Files\Common Files\Kingsoft\CommonService\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.762]    [C:\Program Files\Common Files\Kingsoft\CommonService\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\Program Files\Common Files\Kingsoft\CommonService\kxebase.dll]  [Kingsoft Corporation, 2009,05,06,235]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\Program Files\Common Files\Kingsoft\CommonService\kxedump.dll]  [Kingsoft Corporation, 2009,05,06,235]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\Program Files\Common Files\Kingsoft\CommonService\SCOM.dll]  [Kingsoft Corporation, 2009,05,06,235]    [C:\Program Files\Common Files\Kingsoft\CommonService\kxecore\kxelog.dll]  [Kingsoft Corporation, 2009,05,06,235]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Common Files\Kingsoft\CommonService\kxecore\kxecfg.dll]  [Kingsoft Corporation, 2009,05,06,235]    [C:\Program Files\Common Files\Kingsoft\CommonService\kxecore\kxethr.dll]  [Kingsoft Corporation, 2009,05,06,235]    [C:\Program Files\Common Files\Kingsoft\CommonService\kxecore\kxehttp.dll]  [Kingsoft Corporation, 2009,05,06,235]    [C:\WINDOWS\system32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Common Files\Kingsoft\CommonService\kxecore\kxeevent.dll]  [Kingsoft Corporation, 2009,05,06,235]    [C:\Program Files\Common Files\Kingsoft\CommonService\serviceprovider\kxeupdsp.dll]  [Kingsoft Corporation, 2009,04,23,222]    [C:\Program Files\Common Files\Kingsoft\CommonService\serviceprovider\kxedesp.dll]  [Kingsoft Corporation, 2009,06,14,9]    [C:\Program Files\Common Files\Kingsoft\CommonService\subsystem\kxede\kxecs.dll]  [Kingsoft Corporation, 2009,05,19,186]    [C:\Program Files\Common Files\Kingsoft\CommonService\KAVUTYU.DLL]  [Kingsoft Corporation, 2009,04,22,149]    [C:\Program Files\Common Files\Kingsoft\CommonService\subsystem\kxede\kxemcs.dll]  [Kingsoft Corporation, 2009,05,19,186]    [C:\Program Files\Common Files\Kingsoft\CommonService\subsystem\kxede\krulemgr.dll]  [Kingsoft Corporation, 2009,06,14,9]    [C:\Program Files\Common Files\Kingsoft\CommonService\subsystem\kxede\kxeuimgr.dll]  [Kingsoft Corporation, 2009,04,22,149]    [C:\Program Files\Common Files\Kingsoft\CommonService\subsystem\kxede\kxedelog.dll]  [Kingsoft Corporation, 2009,04,22,149][PID: 1080 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SPOOLSS.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\localspl.dll]  [Microsoft Corporation, 5.1.2600.5809 (xpsp_sp3_qfe.090507-1349)]    [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\winspool.drv]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\netapi32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\cnbjmon.dll]  [Microsoft Corporation, 5.1.2600.2082 (xpsp(skatari).040213-0952)]    [C:\WINDOWS\system32\msi.dll]  [Microsoft Corporation, 4.5.6001.22159]    [C:\WINDOWS\system32\pjlmon.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\tcpmon.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\usbmon.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\System32\winrnr.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\win32spl.dll]  [Microsoft Corporation, 5.1.2600.5664 (xpsp_sp3_gdr.080827-1248)]    [C:\WINDOWS\system32\NETRAP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\inetpp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)][PID: 408 / mali][C:\Program Files\Rising\AntiSpyware\rstray.exe]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.17]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\COMCTL32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\AntiSpyware\rsmginfo.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 11]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)]    [C:\Program Files\Rising\AntiSpyware\RsXML.dll]  [Beijing Rising Information Technology Co., Ltd., 20, 0, 0, 2]    [C:\Program Files\Rising\AntiSpyware\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\Program Files\Rising\AntiSpyware\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]    [C:\Program Files\Rising\AntiSpyware\ComServ.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.31]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\Program Files\Rising\AntiSpyware\rscommon.dll]  [Beijing Rising Information Technology Co., Ltd., 20.0.1.1]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\AntiSpyware\pngdll.dll]  [Beijing Rising Information Technology Co., Ltd., 20, 0, 0, 5]    [C:\Program Files\Rising\AntiSpyware\runiep.dll]  [Beijing Rising Information Technology Co., Ltd., 6.0.0.43]    [C:\Program Files\Rising\AntiSpyware\NComm.dll]  [Beijing Rising Information Technology Co., Ltd., 6.0.0.11]    [C:\Program Files\Rising\Rav\ProcCom.dll]  [Beijing Rising Information Technology Co., Ltd., 20, 0, 0, 20]    [C:\Program Files\Rising\AntiSpyware\RsCommX2.dll]  [Beijing Rising Information Technology Co., Ltd., 20, 0, 0, 20]    [C:\WINDOWS\system32\wsock32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rasman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\TAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\sensapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\System32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\MLANG.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)][PID: 1972 / mali][C:\WINDOWS\RTHDCPL.EXE]  [Realtek Semiconductor Corp., 2.2.6.3]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\DSOUND.DLL]  [Microsoft Corporation, 5.3.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\HHCTRL.OCX]  [Microsoft Corporation, 5.2.3790.4110 (srv03_sp2_qfe.070702-2345)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\COMCTL32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\SETUPAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\MPR.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\COMDLG32.DLL]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\mui\0804\HHCTRLui.dll]  [Microsoft Corporation, 4.74.9273]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\wdmaud.drv]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msacm32.drv]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\midimap.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\KsUser.dll]  [Microsoft Corporation, 5.3.2600.5512 (xpsp.080413-0845)][PID: 792 / mali][C:\Program Files\Rising\Rav\RsTray.exe]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.6]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\COMCTL32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)]    [C:\Program Files\Rising\Rav\comserv.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.10]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]    [C:\Program Files\Rising\Rav\rslang.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\Rav\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\Program Files\Rising\Rav\ProcComm.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\Rav\rsxml.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 2]    [C:\Program Files\Rising\Rav\MonState.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\Rav\ScanEvnt.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.2]    [C:\Program Files\Rising\Rav\rsguilib.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 40]    [C:\Program Files\Rising\Rav\rsconf.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\Program Files\Rising\Rav\rspalvd.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.4]    [C:\Program Files\Rising\Rav\ravbintl.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 11]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Rising\Rav\mruleui.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 6]    [C:\Program Files\Rising\Rav\MonTray.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.36]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\Rav\RavITray.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 4]    [C:\Program Files\Rising\Rav\rsmginfo.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\Rav\scanleak.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 4]    [C:\Program Files\Rising\Rav\ravppops.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 14]    [C:\Program Files\Rising\Rav\RSAPPMGR.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.1]    [C:\Program Files\Rising\Rav\CfgDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.20]    [C:\Program Files\Rising\Rav\PngDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]    [C:\Program Files\Rising\Rav\ScanPrxy.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\wsock32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rasman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\TAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\sensapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\System32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)][PID: 832 / mali][C:\Program Files\Rising\RFW\RsTray.exe]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.6]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\WinSxS\X86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\COMCTL32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)]    [C:\Program Files\Rising\RFW\comserv.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.10]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]    [C:\Program Files\Rising\RFW\rslang.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\RFW\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\RFW\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\Program Files\Rising\RFW\ProcComm.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 3]    [C:\Program Files\Rising\RFW\rsxml.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 2]    [C:\Program Files\Rising\RFW\MonState.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 2]    [C:\Program Files\Rising\RFW\rfwrule.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\Program Files\Rising\RFW\rsconf.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.1]    [C:\Program Files\Rising\RFW\rspalvd.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.4]    [C:\Program Files\Rising\RFW\rsguilib.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 40]    [C:\Program Files\Rising\RFW\ravbintl.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 11]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Rising\RFW\rsnetsvr.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\RFW\rsmginfo.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 1]    [C:\Program Files\Rising\RFW\rfwtray.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 19]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Rising\RFW\ravppops.dll]  [Beijing Rising Information Technology Co., Ltd., 22, 0, 0, 14]    [C:\Program Files\Rising\RFW\RSAPPMGR.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.1]    [C:\Program Files\Rising\RFW\CfgDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.20]    [C:\Program Files\Rising\RFW\PngDll.dll]  [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 4]    [C:\Program Files\Rising\RFW\rfwlog.dll]  [Beijing Rising Information Technology Co., Ltd., 22.0.0.10]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MPRAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\ACTIVEDS.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\adsldpc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\ATL.DLL]  [Microsoft Corporation, 3.05.2284]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\wsock32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rasman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\TAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\sensapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\System32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 1200 / mali][C:\Program Files\Rising\Rav\rssafety.exe]  [Beijing Rising Information Technology Co., Ltd., 4.0.0.22]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\comdlg32.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\COMCTL32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\msxml3.dll]  [Microsoft Corporation, 8.100.1048.0]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)][PID: 2072 / mali][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\MSUTB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)][PID: 2076 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\webclnt.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\wsock32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 2216 / SYSTEM][C:\Program Files\Common Files\Antiy Labs\ACommon\AKrnl.exe]  [Antiy Labs, 1, 0, 0, 3]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\user32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\advapi32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\Program Files\Common Files\Antiy Labs\ACommon\AKrnlComMgr.dll]  [Antiy Labs, 1, 0, 0, 2]    [C:\WINDOWS\system32\mfc71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]    [C:\WINDOWS\system32\shell32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\msvcp71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\Program Files\Common Files\Antiy Labs\ACommon\AKrnlProductHeart.dll]  [Antiy Labs, 1, 0, 0, 2]    [C:\Program Files\Common Files\Antiy Labs\ACommon\AKrnlCommu.dll]  [Antiy Labs, 1, 0, 0, 2]    [C:\WINDOWS\system32\ws2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\Program Files\Common Files\Antiy Labs\ACommon\AKnrlLogin.dll]  [Antiy Labs, 1, 0, 2, 6]    [C:\WINDOWS\system32\oleaut32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\netapi32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\Program Files\Common Files\Antiy Labs\ACommon\AKrnlUtils.dll]  [Antiy Labs, 1, 0, 0, 2]    [C:\WINDOWS\system32\wsock32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rasman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\TAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\sensapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\System32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\winrnr.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)][PID: 3824 / SYSTEM][C:\Program Files\Antiy Labs\ASoft\AScheduleService.exe]  [Antiy Labs, 1.0.3.1]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSVCP71.dll]  [Microsoft Corporation, 7.10.3077.0]    [C:\WINDOWS\system32\MSVCR71.dll]  [Microsoft Corporation, 7.10.3052.4]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 2816 / SYSTEM][C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe]  [N/A, ]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)][PID: 2900 / SYSTEM][C:\Program Files\Kingsoft\Kingsoft Internet Security\KISSvc.EXE]  [Kingsoft Corporation, 2008,04,22,364]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCP80.dll]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\kis.dll]  [Kingsoft Corporation, 2009,06,15,929]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80U.DLL]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\MFC80CHS.DLL]  [Microsoft Corporation, 8.00.50727.762]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\kissvc.dll]  [Kingsoft Corporation, 2008,04,22,364][PID: 2956 / SYSTEM][C:\Program Files\VMware\VMware Workstation\vmware-authd.exe]  [VMware, Inc., 4.5.2 build-8848]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\MSVCRT.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\MPR.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\userenv.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\shfolder.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\perfos.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\perfproc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)][PID: 3536 / SYSTEM][C:\WINDOWS\system32\vmnat.exe]  [VMware, Inc., 4.5.2 build-8848]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 3584 / SYSTEM][C:\WINDOWS\system32\vmnetdhcp.exe]  [VMware, Inc., 4.5.2 build-8848]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\MSVCRT.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)][PID: 3368 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\ATL.DLL]  [Microsoft Corporation, 3.05.2284]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\System32\WSOCK32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\MSWSOCK.DLL]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\System32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\System32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\System32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\System32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\System32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\System32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\System32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 3004 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\System32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\System32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\System32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\System32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\WINDOWS\System32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\System32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [c:\windows\system32\w3ssl.dll]  [Microsoft Corporation, 6.0.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\strmfilt.dll]  [Microsoft Corporation, 6.0.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\HTTPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 3740 / SYSTEM][C:\WINDOWS\system32\wbem\wmiprvse.exe]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\wbem\wbemcomn.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\wbem\FastProx.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\MSVCP60.dll]  [Microsoft Corporation, 6.02.3104.0]    [C:\WINDOWS\system32\NTDSAPI.dll]  [Microsoft Corporation, 5.1.2600.5582 (xpsp_sp3_qfe.080416-1432)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\NCObjAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\wbem\wbemsvc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\wmiutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\wbem\wmiprov.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\WMI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\wbem\esscli.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)][PID: 3796 / mali][C:\WINDOWS\system32\conime.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\IMM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\kmon.dll]  [Beijing Rising Information Technology Co., Ltd., 1, 0, 0, 38]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [C:\Program Files\Rising\AntiSpyware\comx3.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.37]    [C:\Program Files\Rising\AntiSpyware\Syslay.dll]  [Beijing Rising Information Technology Co., Ltd., 21.0.0.6]    [C:\WINDOWS\system32\Wtsapi32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)][PID: 712 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\ShimEng.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\AppPatch\AcGenral.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\MSACM32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\comctl32.dll]  [Microsoft Corporation, 5.82 (xpsp.080413-2105)]    [c:\windows\system32\wiaservc.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\CFGMGR32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [c:\windows\system32\setupapi.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [c:\windows\system32\mscms.dll]  [Microsoft Corporation, 5.1.2600.5627 (xpsp_sp3_gdr.080624-1245)]    [c:\windows\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [c:\windows\system32\WINSTA.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\WINTRUST.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\actxprxy.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\sti.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)][PID: 3464 / mali][C:\Documents and Settings\mali\桌面\sreng2\SREngLdr.EXE]  [Smallfrogs Studio, 2.7.1.1261]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\system32\user32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\Apphelp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)][PID: 1128 / mali][C:\Documents and Settings\mali\桌面\sreng2\SRE13ab7b75.EXE]  [Smallfrogs Studio, 2.7.1.1261]    [C:\WINDOWS\system32\ntdll.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\kernel32.dll]  [Microsoft Corporation, 5.1.2600.5781 (xpsp_sp3_gdr.090321-1317)]    [C:\WINDOWS\system32\USER32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\GDI32.dll]  [Microsoft Corporation, 5.1.2600.5698 (xpsp_sp3_gdr.081022-1932)]    [C:\WINDOWS\system32\comdlg32.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\ADVAPI32.dll]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]    [C:\WINDOWS\system32\RPCRT4.dll]  [Microsoft Corporation, 5.1.2600.5795 (xpsp_sp3_gdr.090415-1241)]    [C:\WINDOWS\system32\Secur32.dll]  [Microsoft Corporation, 5.1.2600.5753 (xpsp_sp3_gdr.090203-1302)]    [C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\COMCTL32.dll]  [Microsoft Corporation, 6.0 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msvcrt.dll]  [Microsoft Corporation, 7.0.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\SHLWAPI.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\SHELL32.dll]  [Microsoft Corporation, 6.00.2900.5686 (xpsp_sp3_gdr.080929-1314)]    [C:\WINDOWS\system32\WINSPOOL.DRV]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\oledlg.dll]  [Microsoft Corporation, 1.0 (xpsp.080413-2108)]    [C:\WINDOWS\system32\ole32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\OLEAUT32.dll]  [Microsoft Corporation, 5.1.2600.5512]    [C:\WINDOWS\system32\VERSION.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\CRYPT32.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSASN1.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WINMM.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0845)]    [C:\WINDOWS\system32\WININET.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\system32\WS2_32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\WS2HELP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\IMM32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\LPK.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\USP10.dll]  [Microsoft Corporation, 1.0420.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\RICHED20.DLL]  [Microsoft Corporation, 5.30.23.1230]    [C:\WINDOWS\system32\NTMARTA.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\SAMLIB.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WLDAP32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\MSCTF.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\Program Files\Kingsoft\Kingsoft Internet Security\webshield\kswebshield.dll]  [Kingsoft Corporation, 2009,07,09,136]    [C:\WINDOWS\system32\PSAPI.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\msctfime.ime]  [Microsoft Corporation, 5.1.2600.5768 (xpsp_sp3_gdr.090226-1442)]    [C:\WINDOWS\system32\wsock32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\RASAPI32.DLL]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rasman.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\NETAPI32.dll]  [Microsoft Corporation, 5.1.2600.5694 (xpsp_sp3_gdr.081015-1312)]    [C:\WINDOWS\system32\TAPI32.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\rtutils.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\msv1_0.dll]  [Microsoft Corporation, 5.1.2600.5594 (xpsp_sp3_qfe.080503-1404)]    [C:\WINDOWS\system32\iphlpapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\sensapi.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]    [C:\WINDOWS\system32\USERENV.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\urlmon.dll]  [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]    [C:\WINDOWS\System32\mswsock.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\DNSAPI.dll]  [Microsoft Corporation, 5.1.2600.5625 (xpsp_sp3_gdr.080620-1249)]    [C:\WINDOWS\system32\rasadhlp.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\hnetcfg.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\System32\wshtcpip.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]    [C:\WINDOWS\system32\wintrust.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\IMAGEHLP.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\Winsta.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\utildll.dll]  [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]    [C:\WINDOWS\system32\SETUPAPI.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]    [C:\WINDOWS\system32\xpsp2res.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\rsaenh.dll]  [Microsoft Corporation, 5.1.2600.5507 (xpsp.080318-1711)]    [C:\WINDOWS\system32\cryptnet.dll]  [Microsoft Corporation, 5.131.2600.5512 (xpsp.080413-2113)]    [C:\WINDOWS\system32\WINHTTP.dll]  [Microsoft Corporation, 5.1.2600.5727 (xpsp_sp3_gdr.081215-1359)]    [C:\WINDOWS\system32\Cabinet.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]    [C:\WINDOWS\system32\CLBCATQ.DLL]  [Microsoft Corporation, 2001.12.4414.700]    [C:\WINDOWS\system32\COMRes.dll]  [Microsoft Corporation, 2001.12.4414.700]
发表于 2009-7-21 08:28 | 显示全部楼层
我想说~你的windows安装盘不完整,哪个版本的GHOST XP?缺少了个dll~用sreng把错误的值修复
 楼主| 发表于 2009-7-21 08:32 | 显示全部楼层
文件关联
.TXT  Error. [C:\WINDOWS\notepad.exe %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  Error. ["hh.exe" %1]
.HLP  Error. [winhlp32.exe %1]
.INI  Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]


==================================
Winsock 提供者
MSAFD Tcpip [TCP/IP]
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD Tcpip [UDP/IP]
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD Tcpip [RAW/IP]
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{D2790B8F-09E6-414E-B0CF-006B34892566}] SEQPACKET 0
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{D2790B8F-09E6-414E-B0CF-006B34892566}] DATAGRAM 0
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{D746C9BA-AD42-4B33-BDBE-B1AF43FC7375}] SEQPACKET 6
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{D746C9BA-AD42-4B33-BDBE-B1AF43FC7375}] DATAGRAM 6
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{7E0F7E5A-498A-4EED-A5BD-F3FC1C08CF6D}] SEQPACKET 5
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{7E0F7E5A-498A-4EED-A5BD-F3FC1C08CF6D}] DATAGRAM 5
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{76009BF6-791A-4233-82B4-B701D64E41AB}] SEQPACKET 1
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{76009BF6-791A-4233-82B4-B701D64E41AB}] DATAGRAM 1
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{545776AC-8D3C-4981-966E-650111C6A6BB}] SEQPACKET 2
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{545776AC-8D3C-4981-966E-650111C6A6BB}] DATAGRAM 2
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{E54E4B5F-E176-4974-BDB2-A5207EBB59B3}] SEQPACKET 7
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{E54E4B5F-E176-4974-BDB2-A5207EBB59B3}] DATAGRAM 7
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{4CFC8A68-5F8F-4DFE-8D01-4801312B2952}] SEQPACKET 8
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{4CFC8A68-5F8F-4DFE-8D01-4801312B2952}] DATAGRAM 8
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{BDF79DEB-B9F9-44F0-A4A7-CA3C3241D65E}] SEQPACKET 3
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{BDF79DEB-B9F9-44F0-A4A7-CA3C3241D65E}] DATAGRAM 3
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{479C39F7-DAFD-4596-B5E8-2493B715A1F0}] SEQPACKET 4
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
MSAFD NetBIOS [\Device\NetBT_Tcpip_{479C39F7-DAFD-4596-B5E8-2493B715A1F0}] DATAGRAM 4
    C:\WINDOWS\system32\mswsock.dll(Microsoft Corporation, Microsoft Windows Sockets 2.0 Service Provider)
RSVP UDP Service Provider
    C:\WINDOWS\system32\rsvpsp.dll(Microsoft Corporation, Microsoft Windows Rsvp 1.0 Service Provider)
RSVP TCP Service Provider
    C:\WINDOWS\system32\rsvpsp.dll(Microsoft Corporation, Microsoft Windows Rsvp 1.0 Service Provider)


==================================
Autorun.inf
N/A

==================================
HOSTS 文件
127.0.0.1       localhost


==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 1492, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1548, C:\WINDOWS\SYSTEM32\LSASS.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1748, C:\WINDOWS\SYSTEM32\NVSVC32.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 632, C:\WINDOWS\SYSTEM32\SVCHOST.EXE]
特殊特权被允许: SeSystemtimePrivilege [PID = 632, C:\WINDOWS\SYSTEM32\SVCHOST.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2024, C:\WINDOWS\EXPLORER.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1080, C:\WINDOWS\SYSTEM32\SPOOLSV.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1980, C:\PROGRA~1\IRESEA~1\ICLICK\IRESEARCHICLICK.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1980, C:\PROGRA~1\IRESEA~1\ICLICK\IRESEARCHICLICK.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1972, C:\WINDOWS\RTHDCPL.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2072, C:\WINDOWS\SYSTEM32\CTFMON.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2816, C:\PROGRAM FILES\IVT CORPORATION\BLUESOLEIL\BTNTSERVICE.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3740, C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE]
特殊特权被允许: SeSystemtimePrivilege [PID = 3740, C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3796, C:\WINDOWS\SYSTEM32\CONIME.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 712, C:\WINDOWS\SYSTEM32\SVCHOST.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3464, C:\DOCUMENTS AND SETTINGS\mali\桌面\SRENG2\SRENGLDR.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2824, C:\DOCUMENTS AND SETTINGS\mali\桌面\SRENG2\SRENGLDR.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 2268, C:\DOCUME~1\mali\LOCALS~1\TEMP\SRE34B.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2268, C:\DOCUME~1\mali\LOCALS~1\TEMP\SRE34B.EXE]


==================================
计划任务
[已启用] SogouImeMgr.job        C:\PROGRA~1\SOGOUI~1\360~1.165\PinyinRepair.exe [已启用] OGALogon.job        C:\WINDOWS\system32\OGAVerify.exe [已启用] OGADaily.job        C:\WINDOWS\system32\OGAVerify.exe

==================================
API HOOK
N/A

==================================
隐藏进程
N/A
 楼主| 发表于 2009-7-21 08:35 | 显示全部楼层
我想说~你的windows安装盘不完整,哪个版本的GHOST XP?缺少了个dll~用sreng把错误的值修复
547602543z 发表于 2009-7-21 08:28

XP是原版镜像文件刻的盘,不是GHOST
发表于 2009-7-21 09:53 | 显示全部楼层
本帖最后由 547602543z 于 2009-7-21 09:54 编辑

01.jpg 用金山清理专家诊断下吧,怀疑有病毒或者恶意软件,尝试这些工具
 楼主| 发表于 2009-7-21 09:54 | 显示全部楼层
诊断过没问题,所以觉得奇怪
发表于 2009-7-21 10:03 | 显示全部楼层
电脑从前几天开始,开了一段时间后就会出现花屏假死,屏幕字体都会不正常,这时候我只要随便关闭一些已经打开的程序,就会暂时恢复正常。不知道是什么原因?


这种情况我以前遇到过,一般是系统可用句柄被耗尽的前兆,可以使用任务管理器检查一下是哪个进程占用句柄过多。
task.jpg
 楼主| 发表于 2009-7-21 10:15 | 显示全部楼层
好的,我回去看下,谢谢sw
 楼主| 发表于 2009-7-21 18:34 | 显示全部楼层
这种情况我以前遇到过,一般是系统可用句柄被耗尽的前兆,可以使用任务管理器检查一下是哪个进程占用句柄过多。
1940
swordlea 发表于 2009-7-21 10:03

发个截图
1.JPG
 楼主| 发表于 2009-7-21 18:34 | 显示全部楼层
还有刚刚软件运行的时候,提示可能因为病毒原因已经被更改。我现在重新解压未被感染的sreng扫描个日志发上来
发表于 2009-7-21 18:37 | 显示全部楼层
11# 马力

设置任务管理器显示句柄数量的方法为,”查看 “-> ”选择列“,然后按图中操作。
handles.png
 楼主| 发表于 2009-7-21 18:41 | 显示全部楼层
11# 马力

设置任务管理器显示句柄数量的方法为,”查看 “-> ”选择列“,然后按图中操作。
1942
swordlea 发表于 2009-7-21 18:37

不好意思,想着截句柄的,结果截错图了
1.JPG
 楼主| 发表于 2009-7-21 19:03 | 显示全部楼层
重新发个刚刚扫描的日志上来

SREngLOG.rar

9.42 KB, 下载次数: 47

您需要登录后才可以回帖 登录 | 注册创意安天

本版积分规则

小黑屋|手机版|Archiver|创意安天 ( 京ICP备09068574,ICP证100468号。 )

GMT+8, 2024-5-5 23:56

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回复 返回顶部 返回列表