病毒文件名就是baisog
这是360提供的详细信息,请参考。。。。
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP [NextInstance]: (1)
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP\0000
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Service]: (COMSystemApp)
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Legacy]: (1)
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [ConfigFlags]: (0)
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Class]: (LegacyDriver)
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [ClassGUID]: ({8ECC055D-047F-11D1-A537-0000F8753ED1})
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [DeviceDesc]: (COM+ System Applications)
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP [NextInstance]: (1)
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP\0000
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Service]: (COMSystemApp)
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Legacy]: (1)
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [ConfigFlags]: (0)
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Class]: (LegacyDriver)
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [ClassGUID]: ({8ECC055D-047F-11D1-A537-0000F8753ED1})
HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [DeviceDesc]: (COM+ System Applications)
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP [NextInstance]: (1)
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP\0000
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Service]: (COMSystemApp)
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Legacy]: (1)
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [ConfigFlags]: (0)
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [Class]: (LegacyDriver)
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [ClassGUID]: ({8ECC055D-047F-11D1-A537-0000F8753ED1})
HKLM\SYSTEM\ControlSet002\Enum\Root\LEGACY_COMSYSTEMAPP\0000 [DeviceDesc]: (COM+ System Applications)