01/01/10 19:02:21 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | COM接口访问 | LocalSecurityAuthority.Debug |
01/01/10 19:02:27 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 修改注册表键 | HKLM\SOFTWARE\Classes\CLSID\{37086F34-1C2B-4282-A09E-8E0A7EF2A8F0}\InprocServer32 |
01/01/10 19:02:29 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 直接磁盘访问 | PhysicalDrive0 |
01/01/10 19:02:35 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 直接磁盘访问 | PhysicalDrive0 |
01/01/10 19:02:39 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 访问内存 | C:\Program Files\Tencent\QQ\Bin\TXPlatform.exe |
01/01/10 19:02:55 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 访问内存 | C:\Program Files\Tencent\QQ\Bin\TXPlatform.exe |
01/01/10 19:03:13 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 创建进程 | C:\Documents and Settings\Administrator\Application Data\Tencent\QQ\SafeBase\selfupdate.exe |
01/01/10 19:03:16 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 修改文件 | C:\WINDOWS\system32\drivers\etc\hosts |
01/01/10 19:05:57 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 访问内存 | C:\WINDOWS\system32\svchost.exe |
01/01/10 19:07:47 | C:\Program Files\COMODO\COMODO Internet Security\cfp.exe | 改变Defense+模式 | 禁用 |
01/01/10 19:12:11 | C:\Program Files\Tencent\QQ\Bin\QQ.exe | 阻止文件 | C:\Autorun.inf |
01/01/10 19:16:43 | C:\Program Files\COMODO\COMODO Internet Security\cfplogvw.exe | 阻止文件 | C:\Autorun.inf |