标题:
微点初始化失败,以后的事情
[打印本页]
作者:
我也是神经病
时间:
2008-8-18 11:22
标题:
微点初始化失败,以后的事情
早上,我还是开机连接网络,只后我开微点升级,随便查可疑文件,之后就很卡了,然后微点的设置性息读取失败,我从新设置保存也失败,没办法,然后我关了主页面,后来就开不起来拉,代码是OEOOBOO7,EOOOOOO6重启后好了,但是重启前卡的要命,还自动修改了注册列表,我家防火墙还是瑞星的,别人说没用我就基本不开的,还有微点坏了之后瑞星防火墙也开不起来,我家还有瑞星卡卡,也基本不开的,我的版本是1.2.10576.0036 和1.6.817.080817.试用版下面是注册列表的被修改性息,我还系统还原过
名称 原数据 新数据 创建者
2008-08-18 10:34:03 HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ CTFMON.EXE C:\WINDOWS\SYSTEM32\CTFMON.EXE C:\WINDOWS\SYSTEM32\CTFMON.EXE C:\WINDOWS\SYSTEM32\CTFMON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DLLNAME WGALOGON.DLL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ RECONNECT WLEVENTRECONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DISCONNECT WLEVENTDISCONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ POSTSHELL WLEVENTPOSTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSHELL WLEVENTSTARTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ UNLOCK WLEVENTUNLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOCK WLEVENTLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STOPSCREENSAVER WLEVENTSTOPSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSCREENSAVER WLEVENTSTARTSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ SHUTDOWN WLEVENTSHUTDOWN C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTUP WLEVENTSTARTUP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGOFF WLEVENTLOGOFF C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGON WLEVENTLOGON C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DLLNAME WGALOGON.DLL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:42 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ RECONNECT WLEVENTRECONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DISCONNECT WLEVENTDISCONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ POSTSHELL WLEVENTPOSTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSHELL WLEVENTSTARTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ UNLOCK WLEVENTUNLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOCK WLEVENTLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STOPSCREENSAVER WLEVENTSTOPSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSCREENSAVER WLEVENTSTARTSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ SHUTDOWN WLEVENTSHUTDOWN C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTUP WLEVENTSTARTUP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGOFF WLEVENTLOGOFF C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGON WLEVENTLOGON C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DLLNAME WGALOGON.DLL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ RECONNECT WLEVENTRECONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DISCONNECT WLEVENTDISCONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ POSTSHELL WLEVENTPOSTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSHELL WLEVENTSTARTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ UNLOCK WLEVENTUNLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:41 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOCK WLEVENTLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STOPSCREENSAVER WLEVENTSTOPSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSCREENSAVER WLEVENTSTARTSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ SHUTDOWN WLEVENTSHUTDOWN C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTUP WLEVENTSTARTUP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGOFF WLEVENTLOGOFF C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:40 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGON WLEVENTLOGON C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DLLNAME WGALOGON.DLL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ RECONNECT WLEVENTRECONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DISCONNECT WLEVENTDISCONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ POSTSHELL WLEVENTPOSTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSHELL WLEVENTSTARTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ UNLOCK WLEVENTUNLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOCK WLEVENTLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
作者:
我也是神经病
时间:
2008-8-18 11:23
STOPSCREENSAVER WLEVENTSTOPSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSCREENSAVER WLEVENTSTARTSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ SHUTDOWN WLEVENTSHUTDOWN C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTUP WLEVENTSTARTUP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:34 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGOFF WLEVENTLOGOFF C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:32:31 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGON WLEVENTLOGON C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DLLNAME WGALOGON.DLL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ RECONNECT WLEVENTRECONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DISCONNECT WLEVENTDISCONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ POSTSHELL WLEVENTPOSTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSHELL WLEVENTSTARTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ UNLOCK WLEVENTUNLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOCK WLEVENTLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STOPSCREENSAVER WLEVENTSTOPSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSCREENSAVER WLEVENTSTARTSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ SHUTDOWN WLEVENTSHUTDOWN C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTUP WLEVENTSTARTUP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGOFF WLEVENTLOGOFF C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGON WLEVENTLOGON C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DLLNAME WGALOGON.DLL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ RECONNECT WLEVENTRECONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DISCONNECT WLEVENTDISCONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ POSTSHELL WLEVENTPOSTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSHELL WLEVENTSTARTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ UNLOCK WLEVENTUNLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOCK WLEVENTLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STOPSCREENSAVER WLEVENTSTOPSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSCREENSAVER WLEVENTSTARTSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ SHUTDOWN WLEVENTSHUTDOWN C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTUP WLEVENTSTARTUP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGOFF WLEVENTLOGOFF C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGON WLEVENTLOGON C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:39 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DLLNAME WGALOGON.DLL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:39 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ RECONNECT WLEVENTRECONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DISCONNECT WLEVENTDISCONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ POSTSHELL WLEVENTPOSTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSHELL WLEVENTSTARTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ UNLOCK WLEVENTUNLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOCK WLEVENTLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STOPSCREENSAVER WLEVENTSTOPSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSCREENSAVER WLEVENTSTARTSCREENSAVER C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ SHUTDOWN WLEVENTSHUTDOWN C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTUP WLEVENTSTARTUP C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGOFF WLEVENTLOGOFF C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:38 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ LOGON WLEVENTLOGON C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:30:26 HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE\ *RESTORE C:\WINDOWS\SYSTEM32\RESTORE\RSTRUI.EXE -I C:\WINDOWS\SYSTEM32\RESTORE\RSTRUI.EXE
2008-08-18 10:26:12 HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ CTFMON.EXE C:\WINDOWS\SYSTEM32\CTFMON.EXE C:\WINDOWS\SYSTEM32\CTFMON.EXE C:\WINDOWS\SYSTEM32\CTFMON.EXE
2008-08-18 10:25:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DLLNAME WGALOGON.DLL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:25:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ RECONNECT WLEVENTRECONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:25:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ DISCONNECT WLEVENTDISCONNECT C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:25:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ POSTSHELL WLEVENTPOSTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:25:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ STARTSHELL WLEVENTSTARTSHELL C:\WINDOWS\SYSTEM32\WINLOGON.EXE
2008-08-18 10:25:48 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\WGALOGON\ UNLOCK WLEVENTUNLOCK C:\WINDOWS\SYSTEM32\WINLOGON.EXE
作者:
images
时间:
2008-8-18 11:43
WGALOGON貌似是系统的正版验证程序。
作者:
Legend
时间:
2008-8-18 11:48
请问楼主的系统在重启之后是否还有异常情况?
您的微点软件现在能否正常使用?
您的瑞星防火墙现在能否正常开启?
至于您提到的“自动修改注册列表”是正常情况。
作者:
我也是神经病
时间:
2008-8-18 11:53
:lol:lol::lol:我的系统很坚强:cool:重启后好好的,什么都没坏
欢迎光临 微点交流论坛 (http://bbs.micropoint.com.cn/)
bbs.micropoint.com.cn