==================================
服务
[Application Management / AppMgmt][Stopped/Manual Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\appmgmts.dll><N/A>(找个系统文件appmgmts.dll替换一下)
[Rmhcxw Gnpemrem Jaxtpfas Jwwp / Qepmss Itlkfngr Dik][Stopped/Auto Start]
<C:\WINDOWS\System32\svchost.exe -k imgsvc-->C:\Program Files\Asar\Xafwfiwpg.jpg><N/A>
[WxHtgU yNrEENPic / tECMOnai][Running/Auto Start]
<C:\WINDOWS\system32\iSql\C608.exe><N/A>
==================================
浏览器加载项
[BDSrchHook Class]
{BC207F7D-3E63-4ACA-99B5-FB5F8428200C} <C:\WINDOWS\DOWNLO~1\BDSrHook.dll, >
[]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} <, >
==================================
正在运行的进程
[C:\WINDOWS\DOWNLO~1\BDSrHook.dll] [, 2, 0, 1, 2]