<rx><C:\WINDOWS\system32\explore.exe> []
<Services><C:\WINDOWS\Services.exe> [Microsoft Corporation]
<Torjan Program><C:\WINDOWS\WINLOGON.EXE> [GtE8w0l9NLysBCdvZTRh]
<wdfmgr32><C:\WINDOWS\system32\wdfmgr32.exe> []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{ms80435c-A6FF-11E0-9A84-00C04FD8DBD8}><C:\WINDOWS\system32\h0435cfc.log> []
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
<shell><Explorer.exe 1> []
这些东西我手动杀过了.威金的源头杀不死还是会在的.