RDPWD
[A ] 151. c:\windows\system32\drivers\rdpwd.sys
Microsoft Corporation
RDP Terminal Stack Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
RsAntiSpyware
[A ] 152. c:\windows\system32\drivers\rsboot.sys
Beijing Rising Technology Co., Ltd.
Anti-RootKit Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
RsNTGDI
[A ] 153. c:\windows\system32\drivers\rsntgdi.sys
Beijing Rising Technology Co., Ltd.
RsNTGDI
.text,.rdata,INIT,.rsrc,.reloc,
RSPPSYS
[A ] 154. c:\program files\rising\rav\rsppsys.sys
Rising
RSPPSYS.SYS
.text,.rdata,.data,INIT,.rsrc,.reloc,
Secdrv
[A ] 155. c:\windows\system32\drivers\secdrv.sys
Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.
Macrovision SECURITY Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,pnidata,
serenum
[A ] 156. c:\windows\system32\drivers\serenum.sys
Microsoft Corporation
Serial Port Enumerator
.text,.rdata,.data,PAGE,PAGESENM,INIT,.rsrc,.reloc,
Serial
[A ] 157. c:\windows\system32\drivers\serial.sys
Microsoft Corporation
Serial Device Driver
.text,.rdata,.data,PAGESRP0,PAGESER,INIT,.rsrc,.reloc,
Sfloppy
[A ] 158. c:\windows\system32\drivers\sfloppy.sys
Microsoft Corporation
SCSI Floppy Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
splitter
[A ] 159. c:\windows\system32\drivers\splitter.sys
Microsoft Corporation
Microsoft Kernel Audio Splitter
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
swenum
[A ] 160. c:\windows\system32\drivers\swenum.sys
Microsoft Corporation
Plug and Play Software Device Enumerator
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
swmidi
[A ] 161. c:\windows\system32\drivers\swmidi.sys
Microsoft Corporation
Microsoft GS Wavetable Synthesizer
.text,.rdata,.data,PAGE,PAGEDATA,INIT,.rsrc,.reloc,
sysaudio
[A ] 162. c:\windows\system32\drivers\sysaudio.sys
Microsoft Corporation
System Audio WDM Filter
.text,.rdata,.data,PAGE,PAGEDATA,INIT,.rsrc,.reloc,
Tcpip
[A ] 163. c:\windows\system32\drivers\tcpip.sys
Microsoft Corporation
TCP/IP Protocol Driver
.text,.rdata,.data,PAGE,PAGELK,PAGEIPMc,.edata,INIT,.rsrc,.reloc,
TDPIPE
[A ] 164. c:\windows\system32\drivers\tdpipe.sys
Microsoft Corporation
Named Pipe Transport Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
TDTCP
[A ] 165. c:\windows\system32\drivers\tdtcp.sys
Microsoft Corporation
TCP Transport Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
TermDD
[A ] 166. c:\windows\system32\drivers\termdd.sys
Microsoft Corporation
Terminal Server Driver
.text,.rdata,.data,PAGE,.edata,INIT,.rsrc,.reloc,
Update
[A ] 167. c:\windows\system32\drivers\update.sys
Microsoft Corporation
Update Driver
.text,.rdata,.data,PAGE,PAGECONS,PAGELK,INIT,.rsrc,.reloc,
usbehci
[A ] 168. c:\windows\system32\drivers\usbehci.sys
Microsoft Corporation
EHCI eUSB Miniport Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
usbhub
[A ] 169. c:\windows\system32\drivers\usbhub.sys
Microsoft Corporation
Default Hub Driver for USB
.text,.rdata,.data,PAGE,PAGECONS,INIT,.rsrc,.reloc,
usbuhci
[A ] 170. c:\windows\system32\drivers\usbuhci.sys
Microsoft Corporation
UHCI USB Miniport Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
vga
[A ] 171. c:\windows\system32\drivers\vgapnp.sys
Microsoft Corporation
VGA/Super VGA Video Driver
.text,.rdata,.data,PAGE,PAGE_DAT,INIT,.rsrc,.reloc,
VgaSave
[A ] 172. c:\windows\system32\drivers\vga.sys
Microsoft Corporation
VGA/Super VGA Video Driver
.text,.rdata,.data,PAGE,PAGE_DAT,INIT,.rsrc,.reloc,
vmmouse
[A ] 173. c:\windows\system32\drivers\vmmouse.sys
VMware, Inc.
VMware Pointing Device Driver
.text,.rdata,PAGE,INIT,.rsrc,.reloc,
VolSnap
[A ] 174. c:\windows\system32\drivers\volsnap.sys
Microsoft Corporation
Volume Shadow Copy Driver
.text,.rdata,.data,PAGELK,INIT,.rsrc,.reloc,
Wanarp
[A ] 175. c:\windows\system32\drivers\wanarp.sys
Microsoft Corporation
MS Remote Access and Routing ARP Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
wdmaud
[A ] 176. c:\windows\system32\drivers\wdmaud.sys
Microsoft Corporation
MMSYSTEM Wave/Midi API mapper
.text,.rdata,.data,PAGE,PAGEDATA,PAGECONS,INIT,.rsrc,.reloc,
WLBS
[A ] 177. c:\windows\system32\drivers\wlbs.sys
Microsoft Corporation
Network Load Balancing Driver
.text,.rdata,.data,INIT,.rsrc,.reloc,
+ 文件系统驱动
+ HKLM\System\CurrentControlSet\Services
Cdfs
[A ] 178. c:\windows\system32\drivers\cdfs.sys
Microsoft Corporation
CD-ROM File System Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
DfsDriver
[A ] 179. c:\windows\system32\drivers\dfs.sys
Microsoft Corporation
Distributed File System Filter Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
Fastfat
[A ] 180. c:\windows\system32\drivers\fastfat.sys
Microsoft Corporation
Fast FAT File System Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
FltMgr
[A ] 181. c:\windows\system32\drivers\fltmgr.sys
Microsoft Corporation
Microsoft Filesystem Filter Manager
.text,.rdata,.data,PAGE,PAGEVRF2,.edata,PAGEDDAT,INIT,.rsrc,.reloc,
MRxDAV
[A ] 182. c:\windows\system32\drivers\mrxdav.sys
Microsoft Corporation
Windows NT WebDav Minirdr
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
MRxSmb
[A ] 183. c:\windows\system32\drivers\mrxsmb.sys
Microsoft Corporation
Windows NT SMB Minirdr
.text,SECUR,.rdata,.data,PAGE,PAGE5NET,PAGE,INIT,.rsrc,.reloc,
Msfs
[A ] 184. c:\windows\system32\drivers\msfs.sys
Microsoft Corporation
Mailslot driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
Mup
[A ] 185. c:\windows\system32\drivers\mup.sys
Microsoft Corporation
Multiple UNC Provider driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
NetBIOS
[A ] 186. c:\windows\system32\drivers\netbios.sys
Microsoft Corporation
NetBIOS interface driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
Npfs
[A ] 187. c:\windows\system32\drivers\npfs.sys
Microsoft Corporation
NPFS Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
Ntfs
[A ] 188. c:\windows\system32\drivers\ntfs.sys
Microsoft Corporation
NT File System Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
Rdbss
[A ] 189. c:\windows\system32\drivers\rdbss.sys
Microsoft Corporation
Redirected Drive Buffering SubSystem Driver
.text,.rdata,.data,PAGE,.edata,INIT,.rsrc,.reloc,
Srv
[A ] 190. c:\windows\system32\drivers\srv.sys
Microsoft Corporation
Server driver
.text,.rdata,.data,PAGE,PAGE8FIL,INIT,.rsrc,.reloc,
Udfs
[A ] 191. c:\windows\system32\drivers\udfs.sys
Microsoft Corporation
UDF File System Driver
.text,.rdata,.data,PAGE,INIT,.rsrc,.reloc,
+ 系统登陆自运行
+ HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
UIHost
[A ] 192. c:\windows\system32\logonui.exe
Microsoft Corporation
Windows Logon UI
.text,.data,.rsrc,