[C:\Program Files\Yuguo\shdapi.dll] [N/A, ]
[C:\Program Files\Yuguo\idle.dll] [N/A, ]
[C:\Program Files\Yuguo\shdservps.dll] [N/A, ]
[PID: 3244 / SYSTEM][C:\WINDOWS\system32\svchost.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 1736 / SYSTEM][C:\Program Files\Alwil Software\Avast4\ashWebSv.exe] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\ashBase.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\WINDOWS\system32\MSVCP71.dll] [Microsoft Corporation, 7.10.3077.0]
[C:\WINDOWS\system32\MSVCR71.dll] [Microsoft Corporation, 7.10.3052.4]
[C:\Program Files\Alwil Software\Avast4\aswCmnOS.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnB.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\aswCmnS.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\Aavm4h.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\ashTask.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\aswAux.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\ChineseS\Base.dll] [ALWIL Software, 4, 7, 1038, 0]
[C:\Program Files\Alwil Software\Avast4\ashWsFtr.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\aswScan.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\PROGRA~1\ALWILS~1\Avast4\AhResWs.dll] [ALWIL Software, 4, 7, 1043, 0]
[C:\Program Files\Alwil Software\Avast4\aswEngin.dll] [ALWIL Software, 4, 7, 1043, 0]
[PID: 3736 / SYSTEM][C:\Program Files\PC Connectivity Solution\ServiceLayer.exe] [Nokia., 6, 84, 83, 3]
[C:\Program Files\PC Connectivity Solution\NclTools.dll] [Nokia, 6, 84, 33, 0]
[C:\Program Files\PC Connectivity Solution\Transports\NCLIrDAMM.dll] [Nokia Corp., 6, 84, 33, 0]
[C:\Program Files\PC Connectivity Solution\Transports\NCLRSMM.dll] [Nokia Corp., 6, 84, 41, 0]
[C:\Program Files\PC Connectivity Solution\Transports\NCLUSBMM.dll] [Nokia Corp., 6, 84, 55, 1]
[C:\Program Files\PC Connectivity Solution\Transports\NclMSBTMM.dll] [Nokia Corp., 6, 84, 55, 0]
[PID: 2228 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe] [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[PID: 3136 / hp][C:\Program Files\ChinaNet\VnetClient.exe] [, 2005, 11, 14, 1]
[C:\Program Files\ChinaNet\Communicate.dll] [0, 2005, 3, 3, 1]
[C:\Program Files\ChinaNet\DialModule.dll] [GDCN, 2007, 4, 4, 16]
[C:\Program Files\ChinaNet\MFC42.DLL] [Microsoft Corporation, 6.00.8665.0]
[C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll] [TENCENT, 5, 0, 1, 19]
[C:\PROGRA~1\ChinaNet\CLIENT~1.DLL] [, 2004, 2, 28, 1]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
[C:\PROGRA~1\ChinaNet\PLUGIN~1.OCX] [, 2005, 7, 27, 1]
[C:\PROGRA~1\ChinaNet\sign.dll] [0, 2004, 12, 1, 1]
[C:\PROGRA~1\ChinaNet\PostPlug.dll] [, 2004, 12, 16, 2]
[C:\PROGRA~1\ChinaNet\ADVERT~1.OCX] [, 2005, 10, 13, 1]
[C:\PROGRA~1\ChinaNet\Gif89a.dll] [, 2005, 6, 21, 1]
[C:\PROGRA~1\ChinaNet\VnetBs.ocx] [, 2004, 11, 18, 1]
[C:\PROGRA~1\ChinaNet\ACCOUN~2.DLL] [, 2005, 11, 14, 1]
[C:\PROGRA~1\ChinaNet\AccountMgr.dll] [, 2007, 3, 22, 10]
[C:\PROGRA~1\ChinaNet\VnetSkin.ocx] [GDDC, 2005, 11, 14, 1]
[C:\PROGRA~1\ChinaNet\DialogStyle.dll] [, 1, 0, 0, 1]
[C:\PROGRA~1\ChinaNet\Timer.ocx] [, 2007, 3, 28, 17]
[C:\PROGRA~1\ChinaNet\PLUGIN~2.OCX] [, 2005, 2, 24, 1]
[C:\PROGRA~1\ChinaNet\NEWMES~1.DLL] [, 2005, 8, 26, 1]
[C:\PROGRA~1\ChinaNet\PassCtrl.dll] [, 1, 0, 0, 1]
[C:\WINDOWS\system32\wpcap.dll] [Politecnico di Torino, 3, 0, 0, 18]
[C:\WINDOWS\system32\pthreadVC.dll] [N/A, ]
[C:\WINDOWS\system32\packet.dll] [Politecnico di Torino, 3, 0, 0, 18]
[C:\PROGRA~1\ChinaNet\PlugPush.dll] [, 2004, 12, 21, 1]
[C:\PROGRA~1\ChinaNet\ALLINT~1.DLL] [, 2004, 11, 23, 1]
[C:\PROGRA~1\ChinaNet\VNETLO~1.OCX] [, 2005, 10, 9, 1]
[C:\PROGRA~1\ChinaNet\StatNum.dll] [, 2004, 11, 18, 1]
[C:\PROGRA~1\ChinaNet\VNETON~1.OCX] [, 2005, 3, 2, 1]
[C:\PROGRA~1\ChinaNet\ALLFUN~1.DLL] [GDCN, 2005, 10, 9, 1]
[C:\PROGRA~1\ChinaNet\VnetOptLog.dll] [, 2005, 9, 13, 9]
[C:\Program Files\Yuguo\idle.dll] [N/A, ]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[C:\WINDOWS\system32\Macromed\Flash\Flash9c.ocx] [Adobe Systems, Inc., 9,0,45,0]
[PID: 2372 / SYSTEM][C:\WINDOWS\system32\wuauclt.exe] [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
[C:\WINDOWS\system32\wups2.dll] [Microsoft Corporation, 7.0.6000.381 (winmain(wmbla).070730-1740)]
[PID: 504 / hp][C:\Program Files\Internet Explorer\IEXPLORE.EXE] [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
[C:\WINDOWS\system32\IEFRAME.dll] [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
[C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll] [TENCENT, 5, 0, 1, 19]
[C:\Program Files\TENCENT\SSPlus\SAddr.dll] [Tencent, 5, 0, 1, 17]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\IEUI.dll] [Microsoft Corporation, 7.00.5730.13 (longhorn(wmbla).070711-1130)]
[C:\WINDOWS\system32\xmllite.dll] [Microsoft Corporation, 1.00.1018.0]
[C:\Program Files\Microsoft Office\OFFICE11\msohev.dll] [Microsoft Corporation, 11.0.5510]
[C:\Program Files\Internet Explorer\ieproxy.dll] [Microsoft Corporation, 7.00.5730.13 (longhorn(wmbla).070711-1130)]
[C:\Program Files\Yuguo\idle.dll] [N/A, ]
[K:\Thunder\ComDlls\TDAtOnce_Now.dll] [Thunder Networking Technologies,LTD, 1.0.2.9]
[K:\Thunder\ComDlls\xunleiBHO_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 5, 13]
[c:\PROGRA~1\chinanet\VNETTR~1.DLL] [, 2005, 4, 6, 1]
[c:\PROGRA~1\chinanet\Communicate.dll] [0, 2005, 3, 3, 1]
[C:\PROGRA~1\ChinaNet\CLIENT~1.DLL] [, 2004, 2, 28, 1]
[K:\360safe\safemon\safemon.dll] [, 3, 6, 1, 1001]
[C:\WINDOWS\system32\ieapfltr.dll] [Microsoft Corporation, 7.0.6000.16461]
[C:\WINDOWS\system32\wpdshext.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\Audiodev.dll] [Microsoft Corporation, 5.2.5721.5145 (WMP_11.061018-2006)]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[K:\Thunder\ComDlls\ThunderAgent_Now.dll] [Thunder Networking Technologies,LTD, 5, 0, 3, 20]
[PID: 2416 / hp][K:\Thunder\Program\Thunder5.exe] [Thunder Networking Technologies,LTD, 5, 7, 1, 338]
[C:\WINDOWS\system32\Normaliz.dll] [Microsoft Corporation, 6.0.5441.0 (winmain(wmbla).060628-1735)]
[C:\WINDOWS\system32\iertutil.dll] [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
[K:\Thunder\Program\ThunderEx.dll] [, 1, 1, 6, 12]
[C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll] [TENCENT, 5, 0, 1, 19]
[K:\Thunder\Program\TaskManager.dll] [Thunder Networking Technologies,LTD, 1, 2, 1, 26]
[K:\Thunder\Program\download_interface.dll] [Thunder Networking Technologies,LTD, 2, 17, 2, 124]
[K:\Thunder\Program\stlport_vc646.dll] [STLport Consulting, Inc., 4.6.2003.1031]
[K:\Thunder\Program\asyn_dns.dll] [Thunder Networking Technologies,LTD, 2, 17, 2, 124]
[K:\Thunder\Program\BHOStub.dll] [Thunder Networking Technologies,LTD, 1, 1, 0, 8]
[K:\Thunder\Program\FloatBar.dll] [Giganology Inc., 1, 0, 0, 2]
[K:\Thunder\Components\DownAndPlay\DownAndPlay.dll] [, 1, 0, 2, 20]
[K:\Thunder\Program\iTargetAD.dll] [N/A, ]
[C:\Program Files\Yuguo\idle.dll] [N/A, ]
[K:\Thunder\Components\Community\XLCommunity.dll] [Thunder Networking Technologies,LTD, 1, 3, 0, 7]
[K:\Thunder\Program\RegisterDll.dll] [Thunder Networking Technologies,LTD, 2, 13, 5, 59]
[K:\Thunder\Program\MSVCIRT.dll] [Microsoft Corporation, 7.0.2600.2180 (xpsp_sp2_rtm.040803-2158)]
[C:\WINDOWS\system32\ieframe.dll] [Microsoft Corporation, 7.00.6000.16512 (vista_gdr.070625-1522)]
[K:\Thunder\Components\Security\ThunderSafe.dll] [深圳市迅雷网络技术有限公司, 1, 0, 5, 29]
[K:\Thunder\Program\XLNet.Dll] [Thunder Networking Technologies,LTD, 1, 2, 1, 9]
[K:\Thunder\Components\Search\XLSearch.dll] [Thunder Networking Technologies,LTD, 1, 1, 3, 13]
[C:\WINDOWS\system32\msacm32.drv] [Microsoft Corporation, 5.1.2600.0 (xpclient.010817-1148)]
[K:\Thunder\Components\ExplorerHelper\ExplorerHelper.dll] [Thunder Networking Technologies,LTD, 1, 0, 4, 15]
[K:\Thunder\Plugins\BhoAdv\bho_adv.dll] [深圳市迅雷网络技术有限公司, 1.0.1.0]
[K:\Thunder\Plugins\XLSafeHost\XLSafeHost.dll] [深圳市迅雷网络技术有限公司, 1, 0, 5, 30]
[K:\Thunder\Plugins\XLSafeHost\ThunderKAV\ThunderKAV.dll] [深圳市迅雷网络技术有限公司, 1, 0, 5, 28]
[K:\Thunder\Plugins\KLScan\PluginKLScan.dll] [Thunder Networking Technologies,LTD, 1.0.0.11]
[K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\kave.dll] [Kaspersky Lab., 5, 0, 0, 62]
[PID: 2432 / hp][K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\ScanningProcess.exe] [N/A, ]
[K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\prloader.dll] [Kaspersky Lab, 6.0.1.305]
[C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll] [TENCENT, 5, 0, 1, 19]
[K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\prkernel.ppl] [Kaspersky Lab, 6.0.1.305]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\prefetch.ppl] [Kaspersky Labs, 1, 0, 0, 56]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\avpmgr.ppl] [Kaspersky Lab, 6.0.1.305]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\wdiskio.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\nfio.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\avlib.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\dtreg.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\prutil.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\avp1.ppl] [Kaspersky Lab, 6.0.0.299]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\l_llio.ppl] [Kaspersky Labs, 6.0.9.75]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\ichstrms.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\hashcont.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\hccmp.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\uniarc.ppl] [Kaspersky Lab, 6.0.0.16]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\minizip.ppl] [Kaspersky Lab, 6.0.0.16]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\prseqio.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\hashmd5.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\inflate.ppl] [Kaspersky Lab, 6.0.0.16]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\tempfile.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\cab.ppl] [Kaspersky Lab, 6.0.0.16]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\arj.ppl] [Kaspersky Lab, 6.0.0.16]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\rar.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\mdb.ppl] [Kaspersky Lab, 6.0.0.300]
[C:\WINDOWS\system32\MAPI32.dll] [Microsoft Corporation, 1.0.2536.0 (XPClient.010817-1148)]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\msoe.ppl] [Kaspersky Lab, 6.0.0.276]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\iwgen.ppl] [Kaspersky Lab, 6.0.0.276]
[PID: 1380 / hp][K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\ScanningProcess.exe] [N/A, ]
[K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\prloader.dll] [Kaspersky Lab, 6.0.1.305]
[C:\PROGRA~1\TENCENT\SSPlus\SPlus.dll] [TENCENT, 5, 0, 1, 19]
[K:\Thunder\Plugins\XLSafeHost\ThunderKAV\bin\prkernel.ppl] [Kaspersky Lab, 6.0.1.305]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\prefetch.ppl] [Kaspersky Labs, 1, 0, 0, 56]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\avpmgr.ppl] [Kaspersky Lab, 6.0.1.305]
[k:\thunder\plugins\xlsafehost\thunderkav\bin\wdiskio.ppl] [Kaspersky Lab, 6.0.0.276] |