09/08/09 14:44:09
| C:\WINDOWS\system32\svchost.exe
| 修改注册表键
| HKLM\SYSTEM\ControlSet002\Services\Eventlog\Application\ESENT\EventMessageFile
|
09/08/09 14:44:10
| C:\WINDOWS\explorer.exe
| 修改注册表键
| HKUS\S-1-5-21-448539723-1177238915-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\AutoDetect
|
09/08/09 14:44:11
| C:\WINDOWS\explorer.exe
| 修改文件
| \Device\MountPointManager
|
09/08/09 14:44:17
| C:\Program Files\彩影软件\ARP防火墙单机版\AntiARP.exe
| 修改注册表键
| HKLM\SYSTEM\ControlSet???\Services\AntiARPClientLoader
|
09/08/09 14:44:17
| C:\WINDOWS\explorer.exe
| 阻止文件
| C:\Program Files\SogouInput\4.2.3.2810\ImeUtil.exe
|
09/08/09 14:44:17
| C:\WINDOWS\explorer.exe
| 阻止文件
| C:\Program Files\SogouInput\4.2.3.2810\ImeUtil.exe
|
09/08/09 14:45:28
| C:\WINDOWS\system32\svchost.exe
| 加载驱动
| system32\DRIVERS\rdbss.sys
|
09/08/09 14:45:30
| C:\WINDOWS\system32\svchost.exe
| 修改文件
| \Device\MountPointManager
|
09/08/09 14:45:34
| C:\WINDOWS\system32\svchost.exe
| 修改文件
| C:\WINDOWS\system32\h323log.txt
|