进程特权扫描
特殊特权被允许: SeDebugPrivilege [PID = 2888, E:\大智慧\DZH\INTERNET\HYPWISE.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2888, E:\大智慧\DZH\INTERNET\HYPWISE.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 3480, C:\PROGRAM FILES\MAXTHON\MAXTHON.EXE]
==================================
API HOOK
入口点错误:CreateProcessA (危险等级: 高, 被下面模块所HOOK: 0x00E81FFD)
入口点错误:CreateProcessW (危险等级: 高, 被下面模块所HOOK: 0x00E820E5)
==================================
隐藏进程
N/A
==================================