2011-12-17 12:29:51 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe加载库文件C:\WINDOWS\system32\wsock32.dll C:\WINDOWS\system32\wsock32.dll
2011-12-17 12:29:51 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe加载库文件C:\WINDOWS\system32\wsock32.dll C:\WINDOWS\system32\wsock32.dll
2011-12-17 12:29:51 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe创建注册表键值HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings
2011-12-17 12:29:51 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe创建注册表键值HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\Software\Microsoft\Multimedia\Audio HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\Software\Microsoft\Multimedia\Audio
2011-12-17 12:29:51 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe创建注册表键值HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\Software\Microsoft\Multimedia\Audio Compression Manager\ HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\Software\Microsoft\Multimedia\Audio Compression Manager\
2011-12-17 12:29:51 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe创建注册表键值HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\Software\Microsoft\Multimedia\Audio Compression Manager\MSACM HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\Software\Microsoft\Multimedia\Audio Compression Manager\MSACM
2011-12-17 12:29:51 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe创建注册表键值HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\Software\Microsoft\Multimedia\Audio Compression Manager\Priority v4.00 HKEY_USERS\S-1-5-21-1292428093-1614895754-682003330-500\Software\Microsoft\Multimedia\Audio Compression Manager\Priority v4.00
2011-12-17 12:29:52 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe写文件C:\KSafeBox\21DE8C9F\WINDOWS\36Osafe.exe C:\KSafeBox\21DE8C9F\WINDOWS\36Osafe.exe
2011-12-17 12:29:52 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe创建文件C:\WINDOWS\36Osafe.exe C:\WINDOWS\36Osafe.exe
2011-12-17 12:29:53 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe发送消息C:\WINDOWS\EXPLORER.EXE C:\WINDOWS\EXPLORER.EXE
2011-12-17 12:29:53 C:\Documents and Settings\Administrator\桌面\▲CF血腥插件演示▲.exe发送消息C:\WINDOWS\System32\CTFMON.EXE C:\WINDOWS\System32\CTFMON.EXE
点击在新窗播放[ 此帖被丿Kome丶小永在2011-12-17 12:43重新编辑 ]