查看: 13841|回复: 39
收起左侧

[软件] 最近下了个快速还原 不知道怎么删除

[复制链接]
amour
发表于 2014-8-20 21:45:54 | 显示全部楼层 |阅读模式
类似Shadow Defender的软件,我在安装的时候提示安装失败,可是我每次开机自动还原C盘!而且任何软件管理软件都找不到快速还原这个软件,系统自带的也没有!而且我都不知道他安装到哪里去了!怎么才能删了这个东西!就是这个网站http://fast.xia008.com/
woxihuan2011
发表于 2014-8-20 22:01:48 | 显示全部楼层
提供个办法不一定管用,试一试看看吧。
1.启动系统至安全模式。
2.如果你记得安装的日期,请用搜索功能搜索这个日期创建的文件,将它们删除到回收站,注意这些文件里面有没有.sys文件,如果有请记住他们的名称,在注册表中以名称为关键字搜索,备份注册表后将搜索的结果全部删除。
3.如果你备份过mbr,请用备份还原mbr,有些还原软件会修改mbr,在系统启动时获取控制权,从而还原系统的。
4.如果开启系统还原,将系统还原到一个比较早的时间。

评分

参与人数 1人气 +1 收起 理由
100lj + 1 正解,专业

查看全部评分

cis
发表于 2014-8-20 22:51:02 | 显示全部楼层
无语了,可能得重装系统
firethreat
发表于 2014-8-21 00:06:31 | 显示全部楼层
1.请备份资料,数据永远最重要。
2.尝试重新安装,如果安装还是不成功,尝试安装相近版本的。安装完成后再卸载。
3.去官方论坛发帖寻求帮助,比如人家给个卸载工具。
4.以上都失败,pe启动搜索注册表,删除相关项目,然后删除磁盘文件。但这种强行卸载容易导致不稳定。当然,也可以这样先去除还原,然后在安装这个软件,再卸载。
5备份后重装。

评分

参与人数 1经验 +4 收起 理由
woxihuan2011 + 4 感谢解答: )

查看全部评分

伊川书院
发表于 2014-8-21 07:25:50 | 显示全部楼层
什么系统,
这类工具的引导项一般在:系统引导区和较高的驱动加载项。

评分

参与人数 1经验 +4 收起 理由
woxihuan2011 + 4 感谢解答: )

查看全部评分

天月来了
发表于 2014-8-21 10:05:20 | 显示全部楼层
我晕,这玩意驱动级的,自己还不能随便删除它的驱动

搞了

amour
 楼主| 发表于 2014-8-21 18:32:37 | 显示全部楼层
伊川书院 发表于 2014-8-21 07:25
什么系统,
这类工具的引导项一般在:系统引导区和较高的驱动加载项。

XP系统!
伊川书院
发表于 2014-8-21 20:38:49 | 显示全部楼层


我们先暂时认为引导区是正常的,

先排除驱动加载项(懒得自己去装这种软件),那么上传一份:SREng日志,看看他都有哪些加载项,

看过火眼的日志,好像没几个加载项,不清楚会不会有自保。先试试看吧。如果你愿意跟我一起折腾的话。
amour
 楼主| 发表于 2014-8-21 21:18:46 | 显示全部楼层
伊川书院 发表于 2014-8-21 20:38
我们先暂时认为引导区是正常的,

先排除驱动加载项(懒得自己去装这种软件),那么上传一份:SREng ...


  1. 2014-08-21,21:17:44

  2. System Repair Engineer 2.8.4.1331
  3. Smallfrogs (http://www.KZTechs.com)

  4. Windows XP Professional Service Pack 3 (Build 2600) - 管理权限用户 - 完整功能

  5. 以下内容被选中:
  6.     所有的启动项目(包括注册表、启动文件夹、服务等)
  7.     浏览器加载项
  8.     正在运行的进程(包括进程模块信息)
  9.     文件关联
  10.     Winsock 提供者
  11.     Autorun.inf
  12.     HOSTS 文件
  13.     进程特权扫描
  14.     计划任务
  15.     Windows 安全更新检查
  16.     API HOOK
  17.     隐藏进程


  18. 启动项目
  19. 注册表
  20. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  21.     <ctfmon.exe><C:\WINDOWS\system32\ctfmon.exe>  [(Verified)Microsoft Windows Component Publisher]
  22. [HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  23.     <load><>  [N/A]
  24. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  25.     <KSafeTray><"d:\program files\ksafe\KSafeTray.exe" -autorun>  [(Verified)Kingsoft Security Co.,Ltd]
  26. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  27.     <shell><Explorer.exe>  [(Verified)Microsoft Windows Component Publisher]
  28.     <Userinit><C:\WINDOWS\system32\userinit.exe,>  [(Verified)Microsoft Windows Component Publisher]
  29. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
  30.     <AppInit_DLLs><>  [N/A]
  31. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  32.     <UIHost><logonui.exe>  [(Verified)Microsoft Windows Component Publisher]
  33. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
  34.     <{AEB6717E-7E19-11d0-97EE-00C04FD91972}><shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
  35. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
  36.     <PostBootReminder><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
  37.     <CDBurn><%SystemRoot%\system32\SHELL32.dll>  [(Verified)Microsoft Windows Component Publisher]
  38.     <WebCheck><%SystemRoot%\system32\webcheck.dll>  [(Verified)Microsoft Windows Component Publisher]
  39.     <SysTray><C:\WINDOWS\system32\stobject.dll>  [(Verified)Microsoft Windows Component Publisher]
  40. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
  41.     <WinlogonNotify: crypt32chain><crypt32.dll>  [(Verified)Microsoft Windows Component Publisher]
  42. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
  43.     <WinlogonNotify: cryptnet><cryptnet.dll>  [(Verified)Microsoft Windows Component Publisher]
  44. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
  45.     <WinlogonNotify: cscdll><cscdll.dll>  [(Verified)Microsoft Windows Component Publisher]
  46. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy]
  47.     <WinlogonNotify: dimsntfy><%SystemRoot%\System32\dimsntfy.dll>  [(Verified)Microsoft Windows Component Publisher]
  48. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
  49.     <WinlogonNotify: ScCertProp><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  50. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
  51.     <WinlogonNotify: Schedule><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  52. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
  53.     <WinlogonNotify: sclgntfy><sclgntfy.dll>  [(Verified)Microsoft Windows Component Publisher]
  54. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
  55.     <WinlogonNotify: SensLogn><WlNotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  56. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
  57.     <WinlogonNotify: termsrv><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  58. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
  59.     <WinlogonNotify: wlballoon><wlnotify.dll>  [(Verified)Microsoft Windows Component Publisher]
  60. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
  61.     <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
  62.     <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll>  [(Verified)Microsoft Windows Component Publisher]
  63. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
  64.     <Microsoft Windows Media Player><C:\WINDOWS\inf\unregmp2.exe /ShowWMP>  [(Verified)Microsoft Windows Component Publisher]
  65. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
  66.     <Internet Explorer><%systemroot%\system32\shmgrate.exe OCInstallUserConfigIE>  [File is missing]
  67. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
  68.     <浏览器自定义组件><RunDLL32 IEDKCS32.DLL,BrandIE4 SIGNUP>  [(Verified)Microsoft Windows Component Publisher]
  69. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
  70.     <Outlook Express><%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE>  [File is missing]
  71. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
  72.     <Themes Setup><%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll>  [File is missing]
  73. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
  74.     <Microsoft Outlook Express 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install>  [File is missing]
  75. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
  76.     <NetMeeting 3.01><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\msnetmtg.inf,NetMtg.Install.PerUser.NT>  []
  77. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
  78.     <Microsoft Windows Media Player><rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmp.inf,PerUserStub>  [(Verified)Microsoft Windows Component Publisher]
  79. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
  80.     <通讯簿 6><"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install>  [File is missing]
  81. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
  82.     <Windows 桌面更新><regsvr32.exe /s /n /i:U shell32.dll>  [(Verified)Microsoft Windows Component Publisher]
  83. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
  84.     <Internet Explorer 6><%SystemRoot%\system32\ie4uinit.exe>  [(Verified)Microsoft Windows Component Publisher]
  85. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}]
  86.     <N/A><C:\WINDOWS\system32\Rundll32.exe C:\WINDOWS\system32\mscories.dll,Install>  [Microsoft Corporation]

  87. ==================================
  88. 启动文件夹
  89. N/A

  90. ==================================
  91. 服务
  92. [Adobe Flash Player Update Service / AdobeFlashPlayerUpdateSvc][Stopped/Manual Start]
  93.   <C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe><Adobe Systems Incorporated>
  94. [HID Input Service / HidServ][Stopped/Auto Start]
  95.   <C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\hidserv.dll><N/A>
  96. [KSafe service / KSafeSvc][Running/Auto Start]
  97.   <"d:\program files\ksafe\KSafeSvc.exe" -svc><Kingsoft Corporation>
  98. [MPSVC Service / MPSVCService][Running/Auto Start]
  99.   <C:\Program Files\Micropoint\MPSvc.exe><Micropoint Corporation>
  100. [Sandboxie Service / SbieSvc][Running/Auto Start]
  101.   <"C:\Program Files\Sandboxie\App\Sandboxie\SbieSvc.exe"><Sandboxie Holdings, LLC>

  102. ==================================
  103. 驱动程序
  104. [AmdK8 Compatible Device / AmdK8][Stopped/Manual Start]
  105.   <System32\drivers\amdk8.sys><Advanced Micro Devices>
  106. [FASTMNT / FASTMNT][Stopped/Manual Start]
  107.   <\??\c:\windows\system32\drivers\fastmnt.sys><XIASOFT TECH CO.,LTD.>
  108. [Microsoft 用于 High Definition Audio 的 UAA 总线驱动程序 / HDAudBus][Running/Manual Start]
  109.   <system32\DRIVERS\HDAudBus.sys><Windows (R) Server 2003 DDK provider>
  110. [hptpro / hptpro][Stopped/Boot Start]
  111.   <\SystemRoot\system32\DRIVERS\hptpro.sys><HighPoint Technologies, Inc.>
  112. [ialm / ialm][Running/Manual Start]
  113.   <system32\DRIVERS\igxpmp32.sys><Intel Corporation>
  114. [Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]
  115.   <system32\drivers\RtkHDAud.sys><Realtek Semiconductor Corp.>
  116. [kmodurl / kmodurl][Running/System Start]
  117.   <\??\d:\program files\ksafe\kmodurlxp.sys><Kingsoft Corporation>
  118. [KSafeBootCheck / KSafeBootCheck][Stopped/Boot Start]
  119.   <\SystemRoot\system32\Drivers\ksafebc.sys><N/A>
  120. [ksafebootsafe / ksafebootsafe][Stopped/Boot Start]
  121.   <\SystemRoot\system32\Drivers\ksafebootsafe.sys><Kingsoft Corporation>
  122. [ksapi / ksapi][Stopped/Manual Start]
  123.   <\??\C:\WINDOWS\system32\drivers\ksapi.sys><Kingsoft Corporation>
  124. [mp110001 / mp110001][Running/Auto Start]
  125.   <system32\drivers\mp110001.sys><Micropoint Corporation>
  126. [mp110002 / mp110002][Running/Auto Start]
  127.   <system32\drivers\mp110002.sys><Micropoint Corporation>
  128. [mp110003 / mp110003][Running/Boot Start]
  129.   <\SystemRoot\system32\drivers\mp110003.sys><Micropoint Corporation>
  130. [mp110004 / mp110004][Running/Auto Start]
  131.   <system32\drivers\mp110004.sys><Micropoint Corporation>
  132. [mp110005 / mp110005][Running/Manual Start]
  133.   <system32\drivers\mp110005.sys><Micropoint Corporation>
  134. [mp110006 / mp110006][Running/System Start]
  135.   <system32\DRIVERS\mp110006.sys><Micropoint Corporation>
  136. [mp110007 / mp110007][Running/System Start]
  137.   <system32\drivers\mp110007.sys><Micropoint Corporation>
  138. [mp110008 / mp110008][Running/Auto Start]
  139.   <system32\drivers\mp110008.sys><Micropoint Corporation>
  140. [mp110009 / mp110009][Running/System Start]
  141.   <system32\drivers\mp110009.sys><Micropoint Corporation>
  142. [mp110010 / mp110010][Running/Boot Start]
  143.   <\SystemRoot\system32\drivers\mp110010.sys><Micropoint Corporation>
  144. [mp110011 / mp110011][Running/System Start]
  145.   <system32\drivers\mp110011.sys><Micropoint Corporation>
  146. [mp110012 / mp110012][Running/Boot Start]
  147.   <\SystemRoot\system32\drivers\mp110012.sys><Micropoint Corporation>
  148. [mp110013 / mp110013][Running/Boot Start]
  149.   <\SystemRoot\system32\drivers\mp110013.sys><Micropoint Corporation>
  150. [Direct Parallel Link Driver / Ptilink][Running/Manual Start]
  151.   <system32\DRIVERS\ptilink.sys><Parallel Technologies, Inc.>
  152. [QqGameMasterControl / QqGameMasterControl][Running/System Start]
  153.   <\??\C:\WINDOWS\system32\drivers\QMTgpNetflowxp.sys><tencent>
  154. [QQProtect / QQProtect][Running/System Start]
  155.   <\??\C:\WINDOWS\system32\drivers\QQProtect.sys><Tencent>
  156. [Realtek 10/100/1000 PCI NIC Family NDIS XP Driver / RTL8023xp][Running/Manual Start]
  157.   <system32\DRIVERS\Rtnicxp.sys><Realtek Semiconductor Corporation>
  158. [Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver / rtl8139][Stopped/Manual Start]
  159.   <system32\DRIVERS\RTL8139.SYS><Realtek Semiconductor Corporation>
  160. [Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver / RTLE8023xp][Stopped/Manual Start]
  161.   <system32\DRIVERS\Rtenicxp.sys><Realtek Semiconductor Corporation>
  162. [SbieDrv / SbieDrv][Running/Manual Start]
  163.   <\??\C:\Program Files\Sandboxie\App\Sandboxie\SbieDrv.sys><Sandboxie Holdings, LLC>
  164. [Secdrv / Secdrv][Stopped/Manual Start]
  165.   <system32\DRIVERS\secdrv.sys><Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.>
  166. [TCP/IP Protocol Driver / Tcpip][Running/System Start]
  167.   <system32\DRIVERS\tcpip.sys><Microsoft Corporation>

  168. ==================================
  169. 浏览器加载项
  170. [AccountProtectBHO Class]
  171.   {DDD362CF-523B-4BC9-8FDC-58F93B6BC945} <C:\Documents and Settings\Administrator\Application Data\Tencent\QQ\QQAntiPhishing\AccountProtect.dll, N/A>
  172. [WUWebControl Class]
  173.   {6414512B-B978-451D-A0D8-FCFDF33E833C} <C:\WINDOWS\system32\wuweb.dll, (Signed) Microsoft Corporation>
  174. []
  175.   {01443AEC-0FD1-40FD-9C87-E93D1494C233} <, >
  176. []
  177.   {889D2FEB-5411-4565-8998-1DD2C5261283} <, >
  178. []
  179.   {98F22D0A-B97F-4AF4-8E4C-A6596C8CDD4C} <, >
  180. [AccountProtectBHO Class]
  181.   {DDD362CF-523B-4BC9-8FDC-58F93B6BC945} <C:\Documents and Settings\Administrator\Application Data\Tencent\QQ\QQAntiPhishing\AccountProtect.dll, N/A>
  182. []
  183.   {E05BC2A3-9A46-4a32-80C9-023A473F5B23} <, >
  184. [TimwpCheck Class]
  185.   {ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4} <D:\Program Files\Tencent\QQ\bin\Timwp.dll, (Signed) Tencent>
  186. [使用迅雷离线下载]
  187.   <C:\Program Files\Thunder Network\Thunder\Program\OfflineDownload.htm, N/A>

  188. ==================================
  189. 正在运行的进程
  190. [PID: 632 / SYSTEM][\SystemRoot\System32\smss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  191. [PID: 684 / SYSTEM][\??\C:\WINDOWS\system32\csrss.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  192. [PID: 708 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
  193.     [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  194.     [C:\WINDOWS\system32\uxtheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  195. [PID: 752 / SYSTEM][C:\WINDOWS\system32\services.exe]  [Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_qfe.090206-1316)]
  196.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  197. [PID: 764 / SYSTEM][C:\WINDOWS\system32\lsass.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
  198.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  199. [PID: 936 / SYSTEM][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  200.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  201.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  202. [PID: 1000 / SYSTEM][C:\Program Files\Micropoint\MPSvc.exe]  [Micropoint Corporation, 2,0,10582,32]
  203.     [C:\Program Files\Micropoint\dbghelp.dll]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  204.     [C:\Program Files\Micropoint\MSVCP60.dll]  [Microsoft Corporation, 6.00.8168.0]
  205.     [C:\Program Files\Micropoint\mp110049.dll]  [Micropoint Corporation, 2,0,10582,1]
  206.     [C:\Program Files\Micropoint\mp110078.dll]  [Micropoint Corporation, 2.0.10582.3]
  207.     [C:\Program Files\Micropoint\mp110081.dll]  [Micropoint Corporation, 2,0,10582,4]
  208.     [C:\Program Files\Micropoint\mp110036.dll]  [Micropoint Corporation, 2.0.10582.33]
  209. [PID: 1144 / SYSTEM][C:\Program Files\Micropoint\MPSVC2.exe]  [Micropoint Corporation, 2.0.10582.133]
  210.     [C:\Program Files\Micropoint\dbghelp.dll]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  211.     [C:\Program Files\Micropoint\mp110030.dll]  [Micropoint Corporation, 1.2.10038]
  212.     [C:\Program Files\Micropoint\mp110037.dll]  [Micropoint Corporation, 2.0.10582.9]
  213.     [C:\Program Files\Micropoint\mp110078.dll]  [Micropoint Corporation, 2.0.10582.3]
  214.     [C:\Program Files\Micropoint\mp110028.dll]  [Micropoint Corporation, 1, 2, 10581, 4]
  215.     [C:\Program Files\Micropoint\mp110036.dll]  [Micropoint Corporation, 2.0.10582.33]
  216.     [C:\Program Files\Micropoint\mp110033.dll]  [Micropoint Corporation, 2,0,10582,21]
  217.     [C:\Program Files\Micropoint\mp110034.dll]  [Micropoint Corporation, 2.0.10145]
  218.     [C:\Program Files\Micropoint\mp110039.dll]  [Micropoint Corporation, 2,0,10582,1]
  219.     [C:\Program Files\Micropoint\mp110042.dll]  [Micropoint Corporation, 1, 2, 10053, 100]
  220.     [C:\Program Files\Micropoint\mp110049.dll]  [Micropoint Corporation, 2,0,10582,1]
  221.     [C:\Program Files\Micropoint\mp110069.dll]  [Micropoint Corporation, 1, 2, 10581, 104]
  222.     [C:\Program Files\Micropoint\mp110071.dll]  [Micropoint Corporation, 2, 0, 10582, 1]
  223.     [C:\Program Files\Micropoint\MSVCP60.dll]  [Microsoft Corporation, 6.00.8168.0]
  224.     [C:\Program Files\Micropoint\mp110073.dll]  [Micropoint Corporation, 2,0,10582,8]
  225.     [C:\Program Files\Micropoint\mp110075.dll]  [Micropoint Corporation, 2.0.10582.5]
  226.     [C:\Program Files\Micropoint\mp110081.dll]  [Micropoint Corporation, 2,0,10582,4]
  227.     [C:\Program Files\Micropoint\mp110086.dll]  [, 2, 0, 10582, 2]
  228.     [C:\Program Files\Micropoint\mp110185.dll]  [Micropoint Corporation, 2, 0, 10582, 3]
  229.     [C:\Program Files\Micropoint\mp110186.dll]  [Micropoint Corporation, 2, 0, 10582, 9]
  230.     [C:\Program Files\Micropoint\mp110124.dll]  [Micropoint Corporation, 2,0,10582,14]
  231.     [C:\Program Files\Micropoint\mp110125.dll]  [Micropoint Corporation, 1.2.10572.3]
  232.     [C:\Program Files\Micropoint\mp110029.dll]  [Micropoint Corporation, 2, 0, 10582, 1]
  233.     [C:\Program Files\Micropoint\mp110077.dll]  [Micropoint Corporation, 2,0,10582,10]
  234.     [C:\Program Files\Micropoint\mp110100.dll]  [Micropoint Corporation, 1, 2, 10581, 115]
  235.     [C:\Program Files\Micropoint\mp110118.dll]  [Micropoint Corporation, 1, 2, 10582, 86]
  236.     [C:\Program Files\Micropoint\mp110115.dll]  [Micropoint Corporation, 1, 2, 10581, 113]
  237.     [C:\Program Files\Micropoint\mp110103.dll]  [Micropoint Corporation, 1, 2, 10582, 83]
  238.     [C:\Program Files\Micropoint\mp110116.dll]  [Micropoint Corporation, 1, 2, 10581, 4]
  239.     [C:\Program Files\Micropoint\mp110120.dll]  [Micropoint Corporation, 1, 2, 10581, 10]
  240.     [C:\Program Files\Micropoint\mp110122.dll]  [Micropoint Corporation, 1.2.69.705]
  241.     [C:\Program Files\Micropoint\mp110128.dll]  [Micropoint Corporation, 1, 2, 10581, 11]
  242.     [C:\Program Files\Micropoint\mp110130.dll]  [Micropoint Corporation, 1, 2, 10581, 108]
  243.     [C:\Program Files\Micropoint\mp110190.dll]  [Micropoint Corporation, 1, 2, 10581, 30]
  244.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  245. [PID: 1344 / SYSTEM][C:\Program Files\Micropoint\MPSVC1.exe]  [Micropoint Corporation, 2.0.10582.26]
  246.     [C:\Program Files\Micropoint\mp110049.dll]  [Micropoint Corporation, 2,0,10582,1]
  247.     [C:\Program Files\Micropoint\mp110078.dll]  [Micropoint Corporation, 2.0.10582.3]
  248.     [C:\Program Files\Micropoint\mp110081.dll]  [Micropoint Corporation, 2,0,10582,4]
  249.     [C:\Program Files\Micropoint\mp110072.dll]  [Micropoint Corporation, 2.0.10582.2]
  250. [PID: 1380 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  251.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  252.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  253. [PID: 1832 / SYSTEM][C:\Program Files\Sandboxie\App\Sandboxie\SbieSvc.exe]  [Sandboxie Holdings, LLC, 4.08]
  254.     [C:\Program Files\Sandboxie\App\Sandboxie\SbieDll.dll]  [Sandboxie Holdings, LLC, 4.06]
  255.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  256. [PID: 1872 / SYSTEM][C:\WINDOWS\System32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  257.     [C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  258.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  259.     [C:\WINDOWS\System32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  260. [PID: 1984 / NETWORK SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  261.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  262.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  263. [PID: 200 / LOCAL SERVICE][C:\WINDOWS\system32\svchost.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  264.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  265.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  266. [PID: 488 / SYSTEM][d:\program files\ksafe\KSafeSvc.exe]  [Kingsoft Corporation, 4.7.0.4064]
  267.     [d:\program files\ksafe\json.dll]  [N/A, ]
  268.     [d:\program files\ksafe\kdump.dll]  [Kingsoft Corporation, 2012,11,14,3229]
  269.     [d:\program files\ksafe\kxebase.dll]  [Kingsoft Corporation, 2012,02,10,1978]
  270.     [d:\program files\ksafe\scom.dll]  [Kingsoft Corporation, 2010,07,29,976]
  271.     [d:\program files\ksafe\kxecore\kxecore.dll]  [Kingsoft Corporation, 2012,03,30,2020]
  272.     [d:\program files\ksafe\kexectrl.dll]  [Kingsoft Corporation, 2010,09,18,1422]
  273.     [d:\program files\ksafe\kwssp.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  274.     [d:\program files\ksafe\netstat.dll]  [Kingsoft Corporation, 4.7.0.4064]
  275.     [d:\program files\ksafe\fwproxy.dll]  [Kingsoft Corporation, 4.7.0.4064]
  276.     [d:\program files\ksafe\ksinst.dll]  [Kingsoft Corporation, 2012,07,25,3056]
  277.     [d:\program files\ksafe\kse\ksecansp.dll]  [Kingsoft Corporation, 4.0.7.2420]
  278.     [d:\program files\ksafe\kse\ksbwdet2.dll]  [Kingsoft Corporation, 2012,05,18,2915]
  279.     [d:\program files\ksafe\ksapi.dll]  [Kingsoft Corporation, 2013,02,22,107]
  280.     [d:\program files\ksafe\khistory.dll]  [Kingsoft Corporation, 2012,05,08,2880]
  281.     [d:\program files\ksafe\kse\kseutil.dll]  [Kingsoft Corporation, 2012,04,26,14]
  282.     [d:\program files\ksafe\kse\ksesscan.dll]  [Kingsoft Corporation, 2012,06,09,2]
  283.     [d:\program files\ksafe\kse\wfs.dll]  [Kingsoft Corporation, 2011,10,13,1839]
  284.     [d:\program files\ksafe\kse\sqlite.dll]  [Kingsoft Corporation, 2010,07,05,1194]
  285.     [d:\program files\ksafe\keng\kae\kaecore.dat]  [Kingsoft Corporation, 2011,11,17,1887]
  286.     [d:\program files\ksafe\KSE\kseescan.dll]  [Kingsoft Corporation, 2012,05,24,33]
  287.     [d:\program files\ksafe\keng\kae\karchive.dat]  [Kingsoft Corporation, 2011,07,29,1746]
  288.     [d:\program files\ksafe\keng\kae\kaearcha.dat]  [Kingsoft Corporation, 2010,11,19,1407]
  289.     [d:\program files\ksafe\keng\kae\kaeolea.dat]  [Kingsoft Corporation, 2011,10,20,1847]
  290.     [d:\program files\ksafe\keng\kae\kaearchb.dat]  [Kingsoft Corporation, 2012,04,25,12]
  291.     [d:\program files\ksafe\keng\kae\kaecoref.dat]  [Kingsoft Corporation, 2010,12,16,1454]
  292.     [d:\program files\ksafe\keng\kae\kaecorem.dat]  [Kingsoft Corporation, 2010,10,26,1328]
  293.     [d:\program files\ksafe\keng\kae\kaecorea.dat]  [Kingsoft Corporation, 2011,10,20,1847]
  294.     [d:\program files\ksafe\keng\kae\kaextend.dat]  [Kingsoft Corporation, 2012,01,19,1966]
  295.     [d:\program files\ksafe\keng\kae\kaext2.dat]  [Kingsoft Corporation, 2011,10,20,1847]
  296.     [d:\program files\ksafe\keng\kae\kaecoreh.dat]  [Kingsoft Corporation, 2011,10,20,1847]
  297.     [d:\program files\ksafe\keng\kae\kaecoreo.dat]  [Kingsoft Corporation, 2011,12,22,1927]
  298. [PID: 676 / Administrator][C:\WINDOWS\Explorer.EXE]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  299.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  300.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  301.     [d:\program files\ksafe\ksfmon.dll]  [Kingsoft Corporation, 4.7.0.4109]
  302.     [d:\program files\ksafe\kwsui.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  303.     [d:\program files\ksafe\kswebshield.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  304.     [C:\WINDOWS\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
  305.     [C:\Program Files\7-Zip\7-zip.dll]  [Igor Pavlov, 9.20]
  306. [PID: 1100 / Administrator][C:\Program Files\Micropoint\MPMon.exe]  [Micropoint Corporation, 2,0,10582,37]
  307.     [C:\Program Files\Micropoint\mp110036.dll]  [Micropoint Corporation, 2.0.10582.33]
  308.     [C:\Program Files\Micropoint\mp110078.dll]  [Micropoint Corporation, 2.0.10582.3]
  309.     [C:\Program Files\Micropoint\mp110049.dll]  [Micropoint Corporation, 2,0,10582,1]
  310.     [C:\Program Files\Micropoint\mp110079.dll]  [Micropoint Corporation, 2,0,10582,1]
  311.     [C:\Program Files\Micropoint\mp110081.dll]  [Micropoint Corporation, 2,0,10582,4]
  312.     [C:\Program Files\Micropoint\mp110161.dll]  [Micropoint Corporation, 2,0,10582,5]
  313.     [C:\Program Files\Micropoint\MSVCP60.dll]  [Microsoft Corporation, 6.00.8168.0]
  314.     [C:\Program Files\Micropoint\dbghelp.dll]  [Microsoft Corporation, 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)]
  315.     [C:\Program Files\Micropoint\mp110051.dll]  [Micropoint Corporation, 2,0,10582,24]
  316.     [C:\Program Files\Micropoint\mp34\mp110168.00A]  [Micropoint Corporation, 2,0,10582,24]
  317. [PID: 1948 / SYSTEM][C:\WINDOWS\system32\spoolsv.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
  318.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  319.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  320.     [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]
  321. [PID: 2028 / Administrator][C:\WINDOWS\system32\conime.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
  322.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  323. [PID: 548 / Administrator][D:\program files\ksafe\KSafeTray.exe]  [Kingsoft Corporation, 4.7.0.4109]
  324.     [d:\program files\ksafe\kdump.dll]  [Kingsoft Corporation, 2012,11,14,3229]
  325.     [D:\program files\ksafe\ksftray.dll]  [Kingsoft Corporation, 4.7.0.4153]
  326.     [D:\program files\ksafe\json.dll]  [N/A, ]
  327.     [d:\program files\ksafe\ksfmon.dll]  [Kingsoft Corporation, 4.7.0.4109]
  328.     [D:\program files\ksafe\ksapi.dll]  [Kingsoft Corporation, 2013,02,22,107]
  329.     [d:\program files\ksafe\ksfskin.dll]  [Kingsoft Corporation, 4.7.0.4102]
  330.     [d:\program files\ksafe\ksafedb.dll]  [Kingsoft Corporation, 4.7.0.4064]
  331.     [D:\program files\ksafe\krcmdmon.dll]  [Kingsoft Corporation, 4.7.0.4104]
  332.     [D:\program files\ksafe\actpush.dll]  [Kingsoft Corporation, 4.7.0.4064]
  333.     [D:\program files\ksafe\pushapp\usbmon.dll]  [Kingsoft Corporation, 4.7.0.4064]
  334.     [D:\program files\ksafe\kinfoc.dll]  [Kingsoft Corporation, 2013,02,22,5159]
  335.     [D:\program files\ksafe\krunopt.dll]  [Kingsoft Corporation, 4.7.0.4064]
  336.     [d:\program files\ksafe\khistory.dll]  [Kingsoft Corporation, 2012,05,08,2880]
  337.     [D:\program files\ksafe\ksafeup.dll]  [Kingsoft Corporation, 4.7.0.4064]
  338.     [d:\program files\ksafe\zlib1.dll]  [, 1.2.3]
  339.     [d:\program files\ksafe\kwsctrl.dll]  [Kingsoft Corporation, 4.7.0.4098]
  340.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  341.     [d:\program files\ksafe\KEng\ksignup.dll]  [Kingsoft Corporation, 4.7.0.4064]
  342.     [C:\WINDOWS\system32\shdoclc.dll]  [Microsoft Corporation, 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)]
  343.     [d:\program files\ksafe\KEng\KSGMerge.DLL]  [Kingsoft Corporation, 2011,05,12,1656]
  344.     [d:\program files\ksafe\ksgamemon.dll]  [Kingsoft Corporation, 4.7.0.4064]
  345.     [D:\program files\ksafe\cloudlib.dll]  [Kingsoft Corporation, 4.7.0.4064]
  346.     [D:\program files\ksafe\kse\sqlite.dll]  [Kingsoft Corporation, 2010,07,05,1194]
  347. [PID: 556 / Administrator][C:\WINDOWS\system32\ctfmon.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]
  348.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  349. [PID: 404 / SYSTEM][C:\Program Files\Microsoft Bing Pinyin\1.5.24.02\Shared\BingIMEUpdateService.exe]  [Microsoft Corporation, 1.5.24.02]
  350.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  351. [PID: 2460 / LOCAL SERVICE][C:\WINDOWS\System32\alg.exe]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]
  352.     [C:\WINDOWS\System32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  353.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  354. [PID: 2716 / Administrator][D:\Program Files\Tencent\QQ\QQProtect\Bin\QQProtect.exe]  [Tencent, 3.8.1.6000]
  355.     [D:\Program Files\Tencent\QQ\QQProtect\Bin\libtcmalloc.dll]  [, 2.0.1.0]
  356.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  357.     [D:\Program Files\Tencent\QQ\QQProtect\Bin\QQProtectEngine.dll]  [Tencent, 3.8.1.6000]
  358.     [D:\Program Files\Tencent\QQ\QQProtect\Bin\QQProtect.dll]  [Tencent, 3.8.1.6000]
  359.     [D:\Program Files\Tencent\QQ\QQProtect\Bin\Common.dll]  [Tencent, 3.8.1.5]
  360.     [D:\Program Files\Tencent\QQ\QQProtect\Bin\zlib.dll]  [Tencent, 3.8.1.5]
  361.     [D:\Program Files\Tencent\QQ\QQProtect\Bin\libexpatw.dll]  [Tencent, 3.8.1.5]
  362.     [D:\Program Files\Tencent\QQ\QQProtect\Bin\tinyxml.dll]  [Tencent, 3.8.1.5]
  363.     [D:\Program Files\Tencent\QQ\QQProtect\Bin\AsyncTask.dll]  [Tencent, 5.3.59.0]
  364. [PID: 3348 / Administrator][D:\Program Files\Tencent\QQ\bin\QQ.exe]  [Tencent, 6.2.12179.0]
  365.     [D:\Program Files\Tencent\QQ\bin\libtcmalloc.dll]  [, 2.0.1.0]
  366.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  367.     [D:\Program Files\Tencent\QQ\bin\HummerEngine.dll]  [Tencent, 6.2.12179.0]
  368.     [D:\Program Files\Tencent\QQ\bin\Common.dll]  [Tencent, 6.2.19.0]
  369.     [D:\Program Files\Tencent\QQ\bin\zlib.dll]  [, 1.2.8.0]
  370.     [D:\Program Files\Tencent\QQ\bin\libexpatw.dll]  [, 2.0.1.0]
  371.     [D:\Program Files\Tencent\QQ\bin\tinyxml.dll]  [Tencent, 6.2.19.0]
  372.     [D:\Program Files\Tencent\QQ\bin\AsyncTask.dll]  [Tencent, 6.2.19.0]
  373.     [D:\Program Files\Tencent\QQ\bin\arkFS.dll]  [Tencent, 6.2.19.0]
  374.     [D:\Program Files\Tencent\QQ\bin\arkIOStub.dll]  [Tencent, 6.2.19.0]
  375.     [D:\Program Files\Tencent\QQ\bin\sqlite.dll]  [, 3.7.16.1]
  376.     [D:\Program Files\Tencent\QQ\bin\KernelUtil.dll]  [Tencent, 6.2.12179.0]
  377.     [D:\Program Files\Tencent\QQ\bin\xImage.dll]  [Tencent, 6.2.19.0]
  378.     [D:\Program Files\Tencent\QQ\bin\libpng.dll]  [, 1.4.12.0]
  379.     [D:\Program Files\Tencent\QQ\bin\libjpegturbo.dll]  [, 1.3.1.0]
  380.     [D:\Program Files\Tencent\QQ\bin\GF.dll]  [Tencent, 6.2.19.0]
  381.     [D:\Program Files\Tencent\QQ\bin\xGraphic32.dll]  [Tencent, 6.2.19.0]
  382.     [D:\Program Files\Tencent\QQ\bin\arkGraphic.dll]  [Tencent, 6.2.19.0]
  383.     [D:\Program Files\Tencent\QQ\bin\arkImage.dll]  [Tencent, 6.2.19.0]
  384.     [D:\Program Files\Tencent\QQ\bin\libimagequant.dll]  [Tencent, 6.2.19.0]
  385.     [D:\Program Files\Tencent\QQ\bin\lua.dll]  [, 5.2.3.0]
  386.     [D:\Program Files\Tencent\QQ\bin\AFBase.DLL]  [Tencent, 6.2.12179.0]
  387.     [D:\Program Files\Tencent\QQ\bin\AFUtil.dll]  [Tencent, 6.2.12179.0]
  388.     [D:\Program Files\Tencent\QQ\bin\AppUtil.dll]  [Tencent, 6.2.12179.0]
  389.     [d:\program files\ksafe\ksfmon.dll]  [Kingsoft Corporation, 4.7.0.4109]
  390.     [d:\program files\ksafe\kwsui.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  391.     [d:\program files\ksafe\kswebshield.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  392.     [D:\Program Files\Tencent\QQ\Bin\AppMisc.dll]  [Tencent, 6.2.12179.0]
  393.     [D:\Program Files\Tencent\QQ\Bin\UtilGif.dll]  [Tencent, 6.2.19.0]
  394.     [D:\Program Files\Tencent\QQ\Bin\AFCtrl.dll]  [Tencent, 6.2.12179.0]
  395.     [D:\Program Files\Tencent\QQ\Bin\ProcessSession.DLL]  [Tencent, 6.2.19.0]
  396.     [D:\Program Files\Tencent\QQ\Bin\LongCnn.dll]  [Tencent, 6.2.12179.0]
  397.     [D:\Program Files\Tencent\QQ\Bin\MainFrame.dll]  [Tencent, 6.2.12179.0]
  398.     [D:\Program Files\Tencent\QQ\Bin\QSLogic.dll]  [Tencent, 2.6.0.0]
  399.     [D:\Program Files\Tencent\QQ\Bin\arkIPC.dll]  [Tencent, 6.2.19.0]
  400.     [D:\Program Files\Tencent\QQ\Bin\RequestHost.dll]  [Tencent, 6.2.12179.0]
  401.     [D:\Program Files\Tencent\QQ\Bin\QScanEngine.dll]  [Tencent, 2.4.0.0]
  402.     [D:\Program Files\Tencent\QQ\Bin\LoginLogic.dll]  [Tencent, 6.2.12179.0]
  403.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  404.     [D:\Program Files\Tencent\QQ\Bin\TaskTray.dll]  [Tencent, 6.2.12179.0]
  405.     [D:\Program Files\Tencent\QQ\Bin\AppFramework.dll]  [Tencent, 6.2.12179.0]
  406.     [D:\Program Files\Tencent\QQ\Bin\xPlatform.dll]  [Tencent, 6.2.12179.0]
  407.     [D:\Program Files\Tencent\QQ\Bin\PreloginLogic.dll]  [Tencent, 6.2.12179.0]
  408.     [D:\Program Files\Tencent\QQ\bin\TXSSO\Bin\SSOPlatform.dll]  [Tencent, 1.2.2.81]
  409.     [D:\Program Files\Tencent\QQ\bin\TXSSO\Bin\SSOCommon.DLL]  [Tencent, 1.2.2.81]
  410.     [D:\Program Files\Tencent\QQ\Bin\IM.dll]  [Tencent, 6.2.12179.0]
  411.     [D:\Program Files\Tencent\QQ\Bin\TXPFProxy.dll]  [Tencent, 6.2.12179.0]
  412.     [D:\Program Files\Tencent\QQ\Bin\KernelMisc.dll]  [Tencent, 6.2.12179.0]
  413.     [D:\Program Files\Tencent\QQ\Bin\GroupApp.dll]  [Tencent, 6.2.12179.0]
  414.     [D:\Program Files\Tencent\QQ\Bin\ConfigCenter.dll]  [Tencent, 6.2.12179.0]
  415.     [D:\Program Files\Tencent\QQ\Bin\SystemMsg.dll]  [Tencent, 6.2.12179.0]
  416.     [D:\Program Files\Tencent\QQ\Bin\ChatFrameApp.dll]  [Tencent, 6.2.12179.0]
  417.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.wireless\Bin\Wireless.dll]  [Tencent, 6.2.12179.0]
  418.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.wireless\Bin\xplatform_dl.dll]  [Tencent, 6.2.12179.0]
  419.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.wireless\Bin\litetransfer.dll]  [Tencent, 6.2.12179.0]
  420.     [D:\Program Files\Tencent\QQ\bin\libhttp.dll]  [Tencent, 6.2.19.0]
  421.     [D:\Program Files\Tencent\QQ\bin\libuv.dll]  [, 0.11.25.0]
  422.     [D:\Program Files\Tencent\QQ\Bin\PluginCommon.dll]  [Tencent, 6.2.12179.0]
  423.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.audiovideo\Bin\AudioVideo.dll]  [Tencent, 6.2.12179.0]
  424.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.audiovideo\Bin\DocShare.dll]  [Tencent, 6.2.12179.0]
  425.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.filetransfer\Bin\FileTransfer.dll]  [Tencent, 6.2.12179.0]
  426.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.netdisk\Bin\NetDisk.dll]  [Tencent, 6.2.12179.0]
  427.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.qqvip\Bin\QQVip.dll]  [Tencent, 6.2.12179.0]
  428.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.snsapp\Bin\SNSApp.dll]  [Tencent, 6.2.12179.0]
  429.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.vas\Bin\VAS.dll]  [Tencent, 6.2.12179.0]
  430.     [D:\Program Files\Tencent\QQ\Bin\SkinMgr.dll]  [Tencent, 6.2.12179.0]
  431.     [D:\Program Files\Tencent\QQ\bin\ContactInfoFrame.dll]  [Tencent, 6.2.12179.0]
  432.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.qzone\Bin\Qzone.dll]  [Tencent, 6.2.12179.0]
  433.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.wblog\Bin\WBlog.dll]  [Tencent, 6.2.12179.0]
  434.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.wblog\Bin\WBKernel.dll]  [Tencent, 6.2.12179.0]
  435.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.wblog\Bin\WBMisc.dll]  [Tencent, 6.2.12179.0]
  436.     [D:\Program Files\Tencent\QQ\Bin\InformationBox.dll]  [Tencent, 6.2.12179.0]
  437.     [D:\Program Files\Tencent\QQ\Bin\LoginUI.dll]  [Tencent, 6.2.12179.0]
  438.     [D:\Program Files\Tencent\QQ\Bin\QInterLive.dll]  [Tencent, 6.2.12179.0]
  439.     [D:\Program Files\Tencent\QQ\Bin\ContactMgr.dll]  [Tencent, 6.2.12179.0]
  440.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.crm\Bin\CRM.dll]  [Tencent, 6.2.12179.0]
  441.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.qqmusic\Bin\QQMusic.dll]  [Tencent, 6.2.12179.0]
  442.     [D:\Program Files\Tencent\QQ\Bin\MsgMgr.dll]  [Tencent, 6.2.12179.0]
  443.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.soso\Bin\Soso.dll]  [Tencent, 6.2.12179.0]
  444.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.qqpet\Bin\QQPet.dll]  [Tencent, 6.2.12179.0]
  445.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.paipai\Bin\PaiPai.dll]  [Tencent, 6.2.12179.0]
  446.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.vas\Bin\TRCloudInputLib.dll]  [Tencent, 2.0.20120207]
  447.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.qqring\Bin\QQRing.dll]  [Tencent, 6.2.12179.0]
  448.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.advertisement\Bin\Advertisement.dll]  [Tencent, 6.2.12179.0]
  449.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.hrtx\Bin\HRTX.dll]  [Tencent, 6.2.12179.0]
  450.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.weather\Bin\Weather.dll]  [Tencent, 6.2.12179.0]
  451.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.qqshow\Bin\QQShow.dll]  [Tencent, 6.2.12179.0]
  452.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.wenwen\Bin\WenWen.dll]  [Tencent, 6.2.12179.0]
  453.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.netbar\Bin\NetBar.dll]  [Tencent, 6.2.12179.0]
  454.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.memo\Bin\Memo.dll]  [Tencent, 6.2.12179.0]
  455.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.gamelife\Bin\GameLife.dll]  [Tencent, 6.2.12179.0]
  456.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.qqgame\Bin\QQGame.dll]  [Tencent, 6.2.12179.0]
  457.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.mmog\Bin\MMOG.dll]  [Tencent, 6.2.12179.0]
  458.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.mail\Bin\Mail.dll]  [Tencent, 6.2.12179.0]
  459.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.today\Bin\Today.dll]  [Tencent, 6.2.12179.0]
  460.     [D:\Program Files\Tencent\QQ\Bin\FlashControl.dll]  [Tencent, 6.2.19.0]
  461.     [D:\Program Files\Tencent\QQ\Bin\RenderService.dll]  [Tencent, 6.2.19.0]
  462.     [D:\Program Files\Tencent\QQ\Bin\CustomFace.dll]  [Tencent, 6.2.12179.0]
  463.     [C:\WINDOWS\system32\msdmo.dll]  [, ]
  464.     [D:\Program Files\Tencent\QQ\Plugin\com.tencent.paycenter\Bin\PayCenter.dll]  [Tencent, 6.2.12179.0]
  465.     [D:\Program Files\Tencent\QQ\Bin\maJmp.dll]  [Tencent, 4.0.999.3705]
  466.     [D:\Program Files\Tencent\QQ\Bin\maUtility.dll]  [Tencent, 4.0.999.3705]
  467.     [C:\Documents and Settings\Administrator\Application Data\Tencent\QQ\Misc\com.tencent.wireless\SDK\22\AndroidAssist.dll]  [腾讯公司, 6.2.105.1209]
  468.     [C:\Documents and Settings\Administrator\Application Data\Tencent\QQ\Misc\com.tencent.wireless\SDK\22\AdbTools.dll]  [腾讯公司, 6.2.105.1209]
  469.     [C:\Documents and Settings\Administrator\Application Data\Tencent\AndroidAssist\1021\Bin\AndroidDevice.dll]  [腾讯公司, 2.0.101.2592]
  470.     [D:\Program Files\Tencent\QQ\Bin\WebCtrl.dll]  [Tencent, 6.2.19.0]
  471.     [D:\Program Files\Tencent\QQ\bin\icudt.dll]  [The ICU Project, 4, 6, 0, 0]
  472.     [D:\Program Files\Tencent\QQ\bin\AddrSearch.dll]  [Tencent, 6, 0, 1, 0]
  473. [PID: 3740 / Administrator][D:\Program Files\Tencent\QQ\Bin\TXPlatform.exe]  [Tencent, 6.2.12179.0]
  474.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  475.     [d:\program files\ksafe\ksfmon.dll]  [Kingsoft Corporation, 4.7.0.4109]
  476.     [D:\Program Files\Tencent\QQ\Bin\TXPFProxy.dll]  [Tencent, 6.2.12179.0]
  477. [PID: 3956 / Administrator][C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\TheWorld.exe]  [TheWorld.CN, 6.2.0.128]
  478.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  479.     [C:\Program Files\Micropoint\mp110200.dll]  [Micropoint Corporation, 1, 2, 10581, 19]
  480.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\chrome.dll]  [TheWorld.CN, 6.2.0.128]
  481.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\icudt.dll]  [The ICU Project, 4, 6, 0, 0]
  482.     [d:\program files\ksafe\ksfmon.dll]  [Kingsoft Corporation, 4.7.0.4109]
  483.     [d:\program files\ksafe\kwsui.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  484.     [d:\program files\ksafe\kswebshield.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  485.     [d:\program files\ksafe\kswbc.dll]  [Kingsoft Corporation, 2014.04.02.4117]
  486.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  487. [PID: 1180 / Administrator][C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\TheWorld.exe]  [TheWorld.CN, 6.2.0.128]
  488.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  489.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\chrome_child.dll]  [TheWorld.CN, 6.2.0.128]
  490.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  491.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\icudt.dll]  [The ICU Project, 4, 6, 0, 0]
  492.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\ffmpegsumo.dll]  [N/A, ]
  493. [PID: 2096 / Administrator][C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\TheWorld.exe]  [TheWorld.CN, 6.2.0.128]
  494.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  495.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\chrome_child.dll]  [TheWorld.CN, 6.2.0.128]
  496.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  497.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\icudt.dll]  [The ICU Project, 4, 6, 0, 0]
  498.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\ffmpegsumo.dll]  [N/A, ]
  499. [PID: 3616 / Administrator][C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\TheWorld.exe]  [TheWorld.CN, 6.2.0.128]
  500.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  501.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\chrome_child.dll]  [TheWorld.CN, 6.2.0.128]
  502.     [C:\Program Files\Micropoint\mp110200.dll]  [Micropoint Corporation, 1, 2, 10581, 19]
  503.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\icudt.dll]  [The ICU Project, 4, 6, 0, 0]
  504.     [d:\program files\ksafe\ksfmon.dll]  [Kingsoft Corporation, 4.7.0.4109]
  505.     [d:\program files\ksafe\kwsui.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  506.     [d:\program files\ksafe\kswebshield.dll]  [Kingsoft Corporation, 2014.03.20.4098]
  507.     [d:\program files\ksafe\kswbc.dll]  [Kingsoft Corporation, 2014.04.02.4117]
  508.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\gcswf32.dll]  [, ]
  509.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  510. [PID: 196 / Administrator][C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\TheWorld.exe]  [TheWorld.CN, 6.2.0.128]
  511.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  512.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\chrome_child.dll]  [TheWorld.CN, 6.2.0.128]
  513.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  514.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\icudt.dll]  [The ICU Project, 4, 6, 0, 0]
  515.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\ffmpegsumo.dll]  [N/A, ]
  516. [PID: 3040 / Administrator][C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\TheWorld.exe]  [TheWorld.CN, 6.2.0.128]
  517.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  518.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\chrome_child.dll]  [TheWorld.CN, 6.2.0.128]
  519.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  520.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\icudt.dll]  [The ICU Project, 4, 6, 0, 0]
  521.     [C:\Documents and Settings\Administrator\Local Settings\Application Data\TheWorld6\Application\6.2.0.128\ffmpegsumo.dll]  [N/A, ]
  522. [PID: 2444 / Administrator][E:\Administrator\Desktop\SREngLdr.EXE]  [Smallfrogs Studio, 2.8.4.1331]
  523.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  524. [PID: 3864 / Administrator][E:\Administrator\Desktop\SRE3cb1113b.EXE]  [Smallfrogs Studio, 2.8.4.1331]
  525.     [C:\Program Files\Micropoint\mp110031.dll]  [Micropoint Corporation, 2.0.47.1498]
  526.     [d:\program files\ksafe\ksfmon.dll]  [Kingsoft Corporation, 4.7.0.4109]
  527.     [C:\WINDOWS\system32\UxTheme.dll]  [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
  528.     [C:\WINDOWS\system32\sfc_os.dll]  [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

  529. ==================================
  530. 文件关联
  531. .TXT  Error. [C:\WINDOWS\notepad.exe %1]
  532. .EXE  OK. ["%1" %*]
  533. .COM  OK. ["%1" %*]
  534. .PIF  OK. ["%1" %*]
  535. .REG  OK. [regedit.exe "%1"]
  536. .BAT  OK. ["%1" %*]
  537. .SCR  OK. ["%1" /S]
  538. .CHM  Error. ["hh.exe" %1]
  539. .HLP  OK. [%SystemRoot%\System32\winhlp32.exe %1]
  540. .INI  Error. [C:\WINDOWS\System32\NOTEPAD.EXE %1]
  541. .INF  OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
  542. .VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  543. .JS   OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
  544. .LNK  OK. [{00021401-0000-0000-C000-000000000046}]

  545. ==================================
  546. Winsock 提供者
  547. IERD_TGP_LSP
  548.     C:\WINDOWS\system32\ierd_tgp_lsp.dll(Tencent, Tencent TGC LSP)
  549. IERD_TGP_LSP over [MSAFD Tcpip [TCP/IP]]
  550.     C:\WINDOWS\system32\ierd_tgp_lsp.dll(Tencent, Tencent TGC LSP)
  551. IERD_TGP_LSP over [MSAFD Tcpip [UDP/IP]]
  552.     C:\WINDOWS\system32\ierd_tgp_lsp.dll(Tencent, Tencent TGC LSP)
  553. IERD_TGP_LSP over [MSAFD Tcpip [RAW/IP]]
  554.     C:\WINDOWS\system32\ierd_tgp_lsp.dll(Tencent, Tencent TGC LSP)

  555. ==================================
  556. Autorun.inf
  557. N/A

  558. ==================================
  559. HOSTS 文件
  560. 127.0.0.1       localhost

  561. ==================================
  562. 进程特权扫描
  563. 特殊特权被允许: SeLoadDriverPrivilege [PID = 708, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]

  564. ==================================
  565. 计划任务
  566. [已禁用] Adobe Flash Player Updater.job
  567.         C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe

  568. ==================================
  569. Windows 安全更新检查
  570. Microsoft .NET Framework 版本 1.1,简体中文版
  571. KB829019,  Microsoft .NET Framework 2.0 语言包:x86 (KB829019)
  572. KB925850,  Windows Media Player 11
  573. KB940157,  用于 Windows XP 的 Windows 搜索 4.0 (KB940157)
  574. KB902344,  启用了 WMDRM 的 Media Player 更新程序 (KB902344)
  575. KB909520,  Microsoft 基本智能卡加密服务提供程序包: x86 (KB909520)
  576. KB971513,  Windows XP 更新程序 (KB971513)
  577. KB2115168,  Windows XP 安全更新程序 (KB2115168) MS10-052
  578. KB982665,  Windows XP 安全更新程序 (KB982665) MS10-055
  579. KB2347290,  Windows XP 安全更新程序 (KB2347290) MS10-061
  580. KB975558,  Windows XP 安全更新程序 (KB975558) MS10-062
  581. KB979687,  Windows XP 安全更新程序 (KB979687) MS10-083
  582. KB2296011,  Windows XP 安全更新程序 (KB2296011) MS10-081
  583. KB2345886,  Windows XP 更新程序 (KB2345886)
  584. KB2378111,  Windows XP 安全更新程序 (KB2378111) MS10-082
  585. KB2387149,  Windows XP 安全更新程序 (KB2387149) MS10-074
  586. KB982132,  Windows XP 安全更新程序 (KB982132) MS10-076
  587. KB2423089,  Windows XP 安全更新程序 (KB2423089) MS10-096
  588. KB2419632,  Windows XP 安全更新程序 (KB2419632) MS11-002
  589. KB2478971,  Windows XP 安全更新程序 (KB2478971) MS11-013
  590. KB2483185,  Windows XP 安全更新程序 (KB2483185) MS11-006
  591. KB2478960,  Windows XP 安全更新程序 (KB2478960) MS11-014
  592. KB2393802,  Windows XP 安全更新程序 (KB2393802) MS11-011
  593. KB971029,  Windows XP 更新程序 (KB971029)
  594. KB2479943,  Windows XP 安全更新程序 (KB2479943) MS11-015
  595. KB2481109,  Windows XP 安全更新程序 (KB2481109) MS11-017
  596. KB2485663,  Windows XP 安全更新程序 (KB2485663) MS11-033
  597. KB2508429,  Windows XP 安全更新程序 (KB2508429) MS11-020
  598. KB2506212,  Windows XP 安全更新程序 (KB2506212) MS11-024
  599. KB2510581,  Windows XP 安全更新程序 (KB2510581) MS11-031
  600. KB2509553,  Windows XP 安全更新程序 (KB2509553) MS11-030
  601. KB2492386,  Windows XP 更新程序 (KB2492386)
  602. KB2535512,  Windows XP 安全更新程序 (KB2535512) MS11-042
  603. KB2507938,  Windows XP 安全更新程序 (KB2507938) MS11-056
  604. KB2566454,  Windows XP 安全更新程序 (KB2566454) MS11-062
  605. KB2536276,  Windows XP 安全更新程序 (KB2536276) MS11-043
  606. KB2570947,  Windows XP 安全更新程序 (KB2570947) MS11-071
  607. KB2592799,  Windows XP 安全更新程序 (KB2592799) MS11-080
  608. KB2564958,  Windows XP 安全更新程序 (KB2564958) MS11-075
  609. KB2544893,  Windows XP 安全更新程序 (KB2544893) MS11-037
  610. KB2619339,  Windows XP 安全更新程序 (KB2619339) MS11-092
  611. KB2620712,  Windows XP 安全更新程序 (KB2620712) MS11-097
  612. KB2631813,  Windows XP 安全更新程序 (KB2631813) MS12-004
  613. KB2585542,  Windows XP 安全更新程序 (KB2585542) MS12-006
  614. KB2603381,  Windows XP 安全更新程序 (KB2603381) MS12-002
  615. KB2598479,  Windows XP 安全更新程序 (KB2598479) MS12-004
  616. KB944036,  用于 Windows XP 的 Internet Explorer 8
  617. KB2661637,  Windows XP 安全更新程序 (KB2661637) MS12-014
  618. KB2653956,  Windows XP 安全更新程序 (KB2653956) MS12-024
  619. KB2676562,  Windows XP 安全更新程序 (KB2676562) MS12-034
  620. KB2659262,  Windows XP 安全更新程序 (KB2659262) MS12-034
  621. KB982670,  用于 Windows XP x86 的 Microsoft .NET Framework 4 Client Profile (KB982670)
  622. KB2686509,  Windows XP 安全更新程序 (KB2686509) MS12-034
  623. KB2691442,  Windows XP 安全更新程序 (KB2691442) MS12-048
  624. KB2655992,  Windows XP 安全更新程序 (KB2655992) MS12-049
  625. KB2719985,  Windows XP 安全更新程序 (KB2719985) MS12-043
  626. KB2698365,  Windows XP 安全更新程序 (KB2698365) MS12-045
  627. KB2712808,  Windows XP 安全更新程序 (KB2712808) MS12-054
  628. KB2749655,  Windows XP 更新程序 (KB2749655)
  629. KB2723135,  Windows XP 安全更新程序 (KB2723135) MS12-053
  630. KB2705219,  Windows XP 安全更新程序 (KB2705219) MS12-054
  631. KB2727528,  Windows XP 安全更新程序 (KB2727528) MS12-072
  632. KB2770660,  Windows XP 安全更新程序 (KB2770660) MS12-082
  633. KB2757638,  Windows XP 安全更新程序 (KB2757638) MS13-002
  634. KB2802968,  Windows XP 安全更新程序 (KB2802968) MS13-020
  635. KB2780091,  Windows XP 安全更新程序 (KB2780091) MS13-011
  636. KB2807986,  Windows XP 安全更新程序 (KB2807986) MS13-027
  637. KB2820917,  Windows XP 安全更新程序 (KB2820917) MS13-033
  638. KB2813345,  Windows XP 安全更新程序 (KB2813345) MS13-029
  639. KB2834886,  Windows XP 安全更新程序 (KB2834886) MS13-054
  640. KB2850869,  Windows XP 安全更新程序 (KB2850869) MS13-060
  641. KB2859537,  Windows XP 安全更新程序 (KB2859537) MS13-063
  642. KB2834903,  用于 Windows XP 的 Windows Media Format Runtime 9.5 的安全更新程序 (KB2834903) MS13-057
  643. KB2876217,  Windows XP 安全更新程序 (KB2876217) MS13-070
  644. KB2864063,  Windows XP 安全更新程序 (KB2864063) MS13-071
  645. KB2847311,  Windows XP 安全更新程序 (KB2847311) MS13-081
  646. KB2862330,  Windows XP 安全更新程序 (KB2862330) MS13-081
  647. KB2862335,  Windows XP 安全更新程序 (KB2862335) MS13-081
  648. KB2808679,  Windows XP 更新程序 (KB2808679)
  649. KB951847,  Microsoft .NET Framework 3.5 Service Pack 1 和用于 .NET 版本 2.0 至 3.5 的 .NET Framework 3.5 Family Update (KB951847) x86
  650. KB2900986,  用于 Windows XP 的 ActiveX Killbit 累积安全更新程序 (KB2900986) MS13-090
  651. KB2876331,  Windows XP 安全更新程序 (KB2876331) MS13-089
  652. KB2868626,  Windows XP 安全更新程序 (KB2868626) MS13-095
  653. KB931125,  Windows XP 的根证书更新 [2013 年 11 月] (KB931125)
  654. KB2862152,  Windows XP 安全更新程序 (KB2862152)
  655. KB2898715,  Windows XP 安全更新程序 (KB2898715) MS13-102
  656. KB2892075,  Windows XP 安全更新程序 (KB2892075) MS13-099
  657. KB2893294,  Windows XP 安全更新程序 (KB2893294) MS13-098
  658. KB2904266,  Windows XP 更新程序 (KB2904266)
  659. KB2914368,  Windows XP 安全更新程序 (KB2914368) MS14-002
  660. KB2917500,  Windows XP 和 Windows Server 2003 安全更新程序 (KB2917500)
  661. KB2916036,  Windows XP 安全更新程序 (KB2916036) MS14-005
  662. KB2909212,  Windows XP 安全更新程序 (KB2909212) MS14-011
  663. KB2929961,  Windows XP 安全更新程序 (KB2929961) MS14-013
  664. KB2930275,  Windows XP 安全更新程序 (KB2930275) MS14-015
  665. KB2936068,  用于 Windows XP 的 Internet Explorer 6 累积安全更新程序 (KB2936068) MS14-018
  666. KB2922229,  Windows XP 安全更新程序 (KB2922229) MS14-019
  667. KB2964358,  用于 Windows XP 的 Internet Explorer 6 安全更新程序 (KB2964358) MS14-021
  668. KB890830,  Windows 恶意软件删除工具 - 2014 年 8 月 (KB890830)

  669. ==================================
  670. API HOOK
  671. 入口点错误:LoadLibraryExW (危险等级: 高,  被下面模块所HOOK: 0x00FD02F1)
  672. 入口点错误:CreateProcessA (危险等级: 高,  被下面模块所HOOK: 0x00F702F1)
  673. 入口点错误:CreateProcessW (危险等级: 高,  被下面模块所HOOK: 0x00FA02F1)

  674. ==================================
  675. 隐藏进程
  676. N/A

  677. ==================================


复制代码
amour
 楼主| 发表于 2014-8-21 21:20:01 | 显示全部楼层
伊川书院 发表于 2014-8-21 20:38
我们先暂时认为引导区是正常的,

先排除驱动加载项(懒得自己去装这种软件),那么上传一份:SREng ...

我什么也看不懂啊!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-7-5 22:18 , Processed in 0.133484 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表