服务
[Remote Registry Protect / Framework][Stopped/Auto Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\dmvqc.dll><N/A>
[DNS Cache / NHLscA][Stopped/Auto Start]
<C:\WINDOWS\SYSTEM32\RUNDLLFOROUR.EXE C:\WINDOWS\SYSTEM32\WBEM\FAETC.DLL,DllRegisterServer 1087>
驱动
[15gr442 / 15gr442f][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\15gr442f.sys><N/A>
怀疑
[Logitech SetPoint Mouse Filter Driver / LMouKE][Stopped/Manual Start]
<system32\DRIVERS\LMouKE.Sys><N/A>
看到正在运行的进程 有点晕