进程特权扫描
特殊特权被允许: SeLoadDriverPrivilege [PID = 1344, C:\WINDOWS\SYSTEM32\AMDHPSRV.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1532, C:\WINDOWS\KVSC3.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1400, C:\WINDOWS\MPPDS.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1748, C:\WINDOWS\MSIMMS32.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1900, C:\WINDOWS\UPXDND.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1948, C:\WINDOWS\IGM.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 448, C:\WINDOWS\MSCCRT.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 484, C:\WINDOWS\DBGHLP32.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 1036, C:\WINDOWS\AVPSRV.EXE]

==================================
API HOOK
N/A

==================================
隐藏进程
N/A

==================================


[/CODE]