先看你第一个日志:
下面不认识的异常项目:
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunServices]
<Windows Virtual Assistance><hpms2wtn.exe> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
<soft><; c:\Softsetup.exe> [File is missing]
==================================
服务
[0S0JB5N29R / 0S0JB5N29R][Stopped/Disabled]
<C:\WINDOWS\J9VT5CHCGGBB.exe -AW8AZKQFO><(File is missing)>
[bixdct / bixdct][Stopped/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k bixdct-->%SystemRoot%\System32\dathue.dll><N/A>
[DC9952A6 / DC9952A6][Stopped/Disabled]
<C:\WINDOWS\Fonts\A1845C9E.EXE -k><(File is missing)>
[diqgda / diqgda][Stopped/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k diqgda-->%SystemRoot%\System32\vuwjoh.dll><N/A>
[COM+ Disk Manager / DiskManager][Stopped/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k DiskManager-->%SystemRoot%\System32\okxhxf.dll><N/A>
[Event Protocol Service / EventService][Stopped/Auto Start]
<C:\WINDOWS\system32\SVCHOST.EXE -k EventService-->%SystemRoot%\System32\tttwez.fsl><N/A>
[GameSrv / GameSrv][Running/Auto Start]
<C:\Program Files\gamenet\CENTCOMM.EXE><>
[TCP/IP NetCOMS Helpen / LmHostne][Stopped/Auto Start]
<C:\WINDOWS\system32\system.exe><(File is missing)>
[qhddcj / qhddcj][Stopped/Disabled]
<C:\WINDOWS\system32\svchOST.Exe -kqhddcj-->%SYSTEMROOT%\SYSTEM32\mcrpjb.DLL><N/A>
[skctrp / skctrp][Stopped/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k skctrp-->%SystemRoot%\System32\dxdwcl.dll><N/A>
[socr / socr][Stopped/Disabled]
<C:\WINDOWS\system32\svchost.exe -k socr-->%SystemRoot%\System32\oymhfi.dll><N/A>
从下面进程看,竟然是两个个桌面进程,怎么了??
==================================
正在运行的进程
[PID: 1976 / Administrator][C:\WINDOWS\Explorer.EXE] [(Verified) Microsoft Corporation, 6.00.3790.1830 (srv03_sp1_rtm.050324-1447)]
[PID: 3504 / Administrator][C:\WINDOWS\Explorer.EXE] [(Verified) Microsoft Corporation, 6.00.3790.1830 (srv03_sp1_rtm.050324-1447)]
再看你第二个日志,有些东西还在,到底是什么呢??
启动项目
注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunServices]
<Windows Virtual Assistance><hpms2wtn.exe> [N/A]
==================================
服务
[COM+ Disk Manager / DiskManager][Stopped/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k DiskManager-->%SystemRoot%\System32\okxhxf.dll><N/A>
[Event Protocol Service / EventService][Stopped/Auto Start]
<C:\WINDOWS\system32\SVCHOST.EXE -k EventService-->%SystemRoot%\System32\tttwez.fsl><N/A>
[GameSrv / GameSrv][Running/Auto Start]
<C:\Program Files\gamenet\CENTCOMM.EXE><>
[TCP/IP NetCOMS Helpen / LmHostne][Stopped/Auto Start]
<C:\WINDOWS\system32\system.exe><(File is missing)>