lmnn
新手上路

积分 4
发帖 4
注册 2008-1-16
|
#1 帖出一部分劫持其他杀毒软件的信息,看完像是没有微点的进程
创建时间 键 名称 原数据 新数据 创建者
2008-12-07 04:17:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\LUCOMSERVER.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\LUALL.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\LOOKOUT.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\LOCKDOWN2000.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\LAMAPP.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KWATCH.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KVPRESCAN.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KVMONXP.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KRF.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KPPMAIN.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KPFWSVC.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KPFW32.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KPFW32.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KISSVC.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KAVSTART.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KAV32.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KASMAIN.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE D:\WINDOWS\SYSTEM32\SVCHOST.EXE
2008-12-07 04:17:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\KABACKREPORT.EXE\ DEBUGGER SVCHOST.EXE SVCHOST.EXE
|
※ ※ ※ 本文纯属【lmnn】个人意见,与【 微点交流论坛 】立场无关※ ※ ※
|
 |
|