你最后日志中就看到这些
启动项目
注册表
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<AppInit_DLLs><mgmpmadd.dll,kceegkii.dll,bnkbldmj.dll,cocjiiec.dll,pdjdcefo.dll,jlbmochl.dll,ocfilodf.dll,cblpbfbd.dll,nkaebggc.dll,gpfmlkkb.dll,hkcbghjk.dll,HBCHIBI.dll,kmon.dll,ihoonbal.dll> []
启动项目
注册表
<HBService32><System.exe> [HB Software]
<ctfn><C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\2085651> []
<Alcmtr><anymie360.exe> []
<{514AD076-F95E-4672-B4F0-B88A5C80FA3F}><C:\WINDOWS\system32\lhkadgnm.dll> [File is missing]
<{C8C322EC-BDCF-4454-A6C9-414E21F39955}><C:\WINDOWS\system32\cocjiiec.dll> []
<{74AEB00C-1C51-4122-9223-4694966FF293}><C:\WINDOWS\system32\nkaebggc.dll> []
<{9D3DCEF8-B3ED-4488-990A-816403B7519F}><C:\WINDOWS\system32\pdjdcefo.dll> []
<{CB59BFBD-7770-4CD4-BD4A-406DCC7F4724}><C:\WINDOWS\system32\cblpbfbd.dll> []
<{60696ADD-77B8-4422-8F60-2F462AEAEF96}><C:\WINDOWS\system32\mgmpmadd.dll> []
<{14CB0134-8D88-4652-BF72-EF6F1D38C759}><C:\WINDOWS\system32\hkcbghjk.dll> []
<{09F6544B-BA65-4964-BB8C-87E605191B63}><C:\WINDOWS\system32\gpfmlkkb.dll> []
<{35B68C15-8A67-44C7-AC3D-0910BC503EE2}><C:\WINDOWS\system32\jlbmochl.dll> []
<{B74B5D63-FE66-45F5-8C03-38838F5FD947}><C:\WINDOWS\system32\bnkbldmj.dll> []
<{4CEE0422-2D06-425E-B270-3161CF70EC2F}><C:\WINDOWS\system32\kceegkii.dll> []
<{8CF258DF-684A-441F-B896-1B1C4F3DE4F5}><C:\WINDOWS\system32\ocfilodf.dll> []
<{21887BA5-DA35-43F3-9B6C-5242EFD16F68}><C:\WINDOWS\system32\ihoonbal.dll> []
<{A95083BE-3D1F-4C7E-ACCC-EC11EA9D498A}><C:\Program Files\Internet Explorer\UfzsKetNt.Ps3> []
<514AD076><C:\WINDOWS\system32\lhkadgnm.dll> [File is missing]
<C8C322EC><C:\WINDOWS\system32\cocjiiec.dll> []
<74AEB00C><C:\WINDOWS\system32\nkaebggc.dll> []
<9D3DCEF8><C:\WINDOWS\system32\pdjdcefo.dll> []
<CB59BFBD><C:\WINDOWS\system32\cblpbfbd.dll> []
<60696ADD><C:\WINDOWS\system32\mgmpmadd.dll> []
<14CB0134><C:\WINDOWS\system32\hkcbghjk.dll> []
<09F6544B><C:\WINDOWS\system32\gpfmlkkb.dll> []
<35B68C15><C:\WINDOWS\system32\jlbmochl.dll> []
<B74B5D63><C:\WINDOWS\system32\bnkbldmj.dll> []
<4CEE0422><C:\WINDOWS\system32\kceegkii.dll> []
<8CF258DF><C:\WINDOWS\system32\ocfilodf.dll> []
<21887BA5><C:\WINDOWS\system32\ihoonbal.dll> []
==================================
服务
[DCOM Server Process Launcher / DcomLaunch][Stopped/Auto Start]
<C:\WINDOWS\system32\svchost -k DcomLaunch-->%SystemRoot%\system32\rpcss.dll><N/A>
[Remote Procedure Call (RPC) / RpcSs][Running/Auto Start]
<C:\WINDOWS\system32\svchost -k rpcss-->%SystemRoot%\system32\rpcss.dll><N/A>
==================================
驱动程序
[msiffei / msiffei][Stopped/Manual Start]
<System32\Drivers\msiffei.sys><N/A>
[Safe Mon 360 / SafeMon0][Running/System Start]
<\??\C:\WINDOWS\system32\F1DC3D89.dat><N/A>
==================================
浏览器加载项
[]
{A95083BE-3D1F-4C7E-ACCC-EC11EA9D498A} <C:\Program Files\Internet Explorer\UfzsKetNt.Ps3, N/A>
[]
{A95083BE-3D1F-4C7E-ACCC-EC11EA9D498A} <C:\Program Files\Internet Explorer\UfzsKetNt.Ps3, N/A>
==================================
正在运行的进程
[C:\WINDOWS\system32\anymie360.dll] [N/A, ]
[C:\Program Files\Internet Explorer\UfzsKetNt.Ps3] [N/A, ]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\WowInitcode.dat] [N/A, ]
[C:\WINDOWS\system32\cocjiiec.dll] [N/A, ]
[C:\WINDOWS\system32\sh05022.dll] [N/A, ]
[C:\WINDOWS\system32\nkaebggc.dll] [N/A, ]
[C:\WINDOWS\system32\pdjdcefo.dll] [N/A, ]
[C:\WINDOWS\system32\HBCHIBI.dll] [N/A, ]
[C:\WINDOWS\system32\cblpbfbd.dll] [N/A, ]
[C:\WINDOWS\system32\mgmpmadd.dll] [N/A, ]
[C:\WINDOWS\system32\hkcbghjk.dll] [N/A, ]
[C:\WINDOWS\system32\gpfmlkkb.dll] [N/A, ]
[C:\WINDOWS\system32\jlbmochl.dll] [N/A, ]
[C:\WINDOWS\system32\bnkbldmj.dll] [N/A, ]
[C:\WINDOWS\system32\kceegkii.dll] [N/A, ]
[C:\WINDOWS\system32\anymie360.dll] [N/A, ]
[C:\WINDOWS\system32\ocfilodf.dll] [N/A, ]
[C:\WINDOWS\system32\ihoonbal.dll] [N/A, ]
[PID: 1816][C:\WINDOWS\system32\System.exe] [HB Software, 1, 2, 1, 1007]
[C:\WINDOWS\system32\HBCHIBI.dll] [N/A, ]