回复:哪位大侠能给帮帮忙吗?
根据你的报告分析出的东西 还真不少哇可疑的文件:ntsd -d
ntsd -d
ntsd -d
ntsd -d
C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll
"C:\Program Files\WinPcap\rpcapd.exe" -d -f "C:\Program Files\WinPcap\rpcapd.ini"
可疑的注册表项:
<IFEO[RawCopy.exe]>
<IFEO[RegTool.exe]>
<IFEO[rfwstub.exe]>
<IFEO[safebank.exe]>
可疑的服务项:[Application Management / AppMgmt]
[Remote Packet Capture Protocol v.0 (experimental) / rpcapd]
可疑的浏览器加载项:[ICBC Anti-Phishing class]
[联想]
[QQ]
[QQIEFloatBarCfgCmd Class]
[]
[get_atlcom Class]
[PeerDraw Class]
[XSL Template]
[DHTML Edit Control Safe for Scripting]
[Microsoft Terminal Services Client Control (redist)]
[Microsoft Terminal Services Client Control (redist)]
[CAntiVersion Object]
[Microsoft Terminal Services Client Control (redist)]
[Microsoft Terminal Services Client Control (redist)]
[VdCom Control]
[Microsoft Terminal Services Client Control (redist)]
[ICBC Anti-Phishing class]
[QQPlayerCtrl Class]
[get_atlcom Class]
[PlayerCtrl Class]
[TimwpDll.TimwpCheck]
[Thunder DapCtrl]
[Free Threaded XML DOM Document 3.0]
[XSL Template 3.0]
[ > 收藏此页到VVZ收藏夹]
[添加到QQ自定义面板]
[用QQ彩信发送该图片]
[用维棠下载视频]