[mfc43 / mfc43][Running/Auto Start]
<c:\windows\mfc43.exe><N/A>
[Qvod Terminal / Qvod Terminal][Stopped/Auto Start]
<E:\my things\q vod\QvodTerminal.exe><(File is missing)>
[PID: 528 / SYSTEM][\??\C:\WINDOWS\system32\winlogon.exe] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]
[C:\WINDOWS\system32\COMRes.dll] [N/A, ]
[PID: 1408 / Administrator][C:\WINDOWS\Explorer.EXE] [, 1, 0, 0, 1]
[C:\WINDOWS\aboy.dll] [N/A, ]
[C:\WINDOWS\system32\COMRes.dll] [N/A, ]
[PID: 1236 / SYSTEM][c:\windows\mfc43.exe] [N/A, ]
==================================
进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 528, C:\WINDOWS\SYSTEM32\WINLOGON.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1408, C:\WINDOWS\EXPLORER.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 376, C:\WINDOWS\TEMP\EXPLORER.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 376, C:\WINDOWS\TEMP\EXPLORER.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 1996, C:\WINDOWS\VM303_STI.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1996, C:\WINDOWS\VM303_STI.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 488, C:\PROGRAM FILES\GRIDSERVICE\PEER.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 488, C:\PROGRAM FILES\GRIDSERVICE\PEER.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 876, C:\WINDOWS\SYSTEM32\LCHOST.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 876, C:\WINDOWS\SYSTEM32\LCHOST.EXE]
特殊特权被允许: SeDebugPrivilege [PID = 3160, E:\MY THINGS\杀毒工具\SRENG2\我爱小狮子.BAT]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3160, E:\MY THINGS\杀毒工具\SRENG2\我爱小狮子.BAT]