日志中看你桌面进程下有这一堆软件的模块注入
[PID: 3804 / Administrator][C:\WINDOWS\explorer.exe] [(Verified) Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[C:\Program Files\Tencent\QQPCMgr\10.0.25353.901\QMSysLdr.dll] [Tencent, 10.0.37124.901]
[C:\WINDOWS\system32\UxTheme.dll] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[C:\Program Files\Tencent\QQPCMgr\10.0.25353.901\QMSysFW.dll] [Tencent, 10.0.37124.901]
[C:\Program Files\Tencent\QQPCMgr\10.0.25353.901\QMIpc.dll] [Tencent, 10.0.37124.901]
[C:\Program Files\Tencent\QQPCMgr\10.0.25353.901\QMCommon.dll] [Tencent, 10.0.37124.901]
[C:\Program Files\Tencent\QQPCMgr\10.0.25353.901\dr.dll] [Tencent, 10.0.37124.901]
[C:\Program Files\360\360Safe\safemon\360UDiskGuard.dll] [360.cn, 2, 0, 0, 1101]
[C:\Documents and Settings\All Users\Application Data\Tencent\TSVulFw\TSVulFW.DAT] [Tencent, 10.0.37124.901]
[C:\Program Files\360\360sd\ShellIco.dll] [360.cn, 5, 0, 0, 5061]
[C:\Program Files\360\360Safe\SoftMgr\SoftMgrExt.dll] [360.cn, 1, 1, 0, 1025]
[C:\WINDOWS\system32\nvcpl.dll] [NVIDIA Corporation, 6.14.13.4052]
[C:\WINDOWS\system32\NVRSZHC.DLL] [NVIDIA Corporation, 6.14.13.4052]
[C:\WINDOWS\system32\nvapi.dll] [NVIDIA Corporation, 6.14.13.4052]
[C:\Program Files\NVIDIA Corporation\nview\nvshell.dll] [, ]
[C:\Program Files\NVIDIA Corporation\nview\NVWRSZHC.DLL] [NVIDIA Corporation, 6.14.10.14124]
[C:\WINDOWS\system32\UNISPIM6.IME] [北京华宇软件股份有限公司, 6.9.0.23]
[C:\Program Files\WinRAR\rarext.dll] [WinRAR 压缩管理软件中文版, 5.20.0]
[C:\Program Files\Tencent\QQ\ShellExt\QQShellExt.dll] [Tencent, 6.7.13458.0]
[C:\Program Files\Tencent\QQPCMgr\10.0.25353.901\QMContextScan.dll] [Tencent, 10.0.37124.901]
[C:\WINDOWS\system32\shellfire.dll] [, 3,5,6,0120]
[C:\Program Files\360\360sd\MenuEx.dll] [360.cn, 5, 0, 0, 5075]
[C:\Program Files\360\360Safe\Utils\shell360ext.dll] [360.cn, 7, 5, 0, 1275]
[C:\Program Files\QvodPlayer\QvodBand.dll] [Shenzhen QVOD Technology Co.,Ltd, 3, 1, 1, 0]
[C:\Program Files\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x86.dll] [Foxit Software Inc., 7.0.1.831]
你自己根据文件路径去看属于哪家软件的,你就卸载哪家软件试试
不要舍不得,也不要不相信,更不要对这些喜欢注入桌面进程的国产软件自信
主要解决这几家软件,必须卸载观察看,卸一个,观察一个
C:\Program Files\Tencent\QQPCMgr\
C:\Program Files\360\360Safe\
C:\Program Files\360\360sd\
C:\WINDOWS\system32\UNISPIM6.IME] [北京华宇软件股份有限公司, 6.9.0.23]
C:\Program Files\Tencent\QQ\
C:\Program Files\QvodPlayer\
C:\Program Files\Foxit Software\Foxit Reader\