signature=088f1a83037be62dfd2a4254d9ec1f93,恶意软件分析 & URL链接扫描 免费在线病毒分析平台 | 魔盾安全分析...

该内容涉及系统文件如api-ms-win-core-fibers-l1-1-1.DLL和api-ms-win-core-sysinfo-l1-2-1.DLL的路径,以及TaoShopAssistant应用程序的相关配置和日志文件。还提到了Windows错误报告和键盘布局设置。此外,注册表中有关TaoShopAssistant、CTF(文字服务框架)和Windows NT的部分被提及。

摘要生成于 C知道 ,由 DeepSeek-R1 满血版支持, 前往体验 >

C:\Users\test\AppData\Local\Temp\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\System32\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\system\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\api-ms-win-core-fibers-l1-1-1.DLL

C:\ProgramData\Oracle\Java\javapath\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\System32\wbem\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\System32\WindowsPowerShell\v1.0\api-ms-win-core-fibers-l1-1-1.DLL

C:\Program Files (x86)\WinRAR\api-ms-win-core-fibers-l1-1-1.DLL

C:\Program Files (x86)\Common Files\TaoShopAssistant\TaoShopAssistant.ini

C:\Program Files (x86)\TaoShopAssistant\

C:\Users\test\AppData\Local\Temp\TaoShopAssistant.ini

C:\Program Files (x86)\TaoShopAssistant\TaoShopAssistant.ini

C:\Users\test\AppData\Local

C:\Users\test\AppData\LocalLow

C:\Users\test\AppData\Roaming

C:\Users\test\AppData\LocalLow\TaoShopAssistant\

C:\Users\test\AppData\Local\Temp

C:\Users

C:\Users\test

C:\Users\test\AppData

C:\Users\test\AppData\LocalLow\TaoShopAssistant

C:\Users\test\AppData\LocalLow\TaoShopAssistant\TGConfig

C:\Users\test\AppData\LocalLow\TaoShopAssistant\TGConfig\TGUse.ini

C:\Users\test\AppData\Local\Temp\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\System32\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\system\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\ProgramData\Oracle\Java\javapath\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\System32\wbem\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\System32\WindowsPowerShell\v1.0\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Program Files (x86)\WinRAR\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\System32\tzres.dll

C:\Program Files (x86)\TaoShopAssistant\TaoShop.exe

C:\Program Files (x86)\TaoShopAssistant\TGUpgrade.exe

C:\Program Files (x86)\TaoShopAssistant\Uninst.exe

C:\Program Files (x86)\TaoShopAssistant\Uortest.exe

C:\Program Files (x86)\TaoShopAssistant\Svnpnd.exe

C:\Program Files (x86)\TaoShopAssistant\Ponaner.exe

C:\Program Files (x86)\TaoShopAssistant\Ponaner64.exe

C:\Program Files (x86)\TaoShopAssistant\Ttghshnuser.exe

\Device\KsecDD

C:\Users\test\AppData\Local\Temp\

C:\Windows\win.ini

C:\

C:\Users\test\AppData\Local\Temp\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\System32\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\system\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\ProgramData\Oracle\Java\javapath\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\System32\wbem\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\System32\WindowsPowerShell\v1.0\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Program Files (x86)\WinRAR\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Users\test\AppData\Local\Temp\ext-ms-win-kernel32-package-current-l1-1-0.DLL

C:\Users\test\AppData\Local\Temp\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\System32\api-ms-win-core-fibers-l1-1-1.DLL

C:\Program Files (x86)\Common Files\TaoShopAssistant\TaoShopAssistant.ini

C:\Users\test\AppData\Local\Temp\TaoShopAssistant.ini

C:\Program Files (x86)\TaoShopAssistant\TaoShopAssistant.ini

C:\Users\test\AppData\LocalLow\TaoShopAssistant\TGConfig\TGUse.ini

C:\Windows\System32\tzres.dll

\Device\KsecDD

C:\Windows\win.ini

C:\Users\test\AppData\Local\Temp\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Users\test\AppData\Local\Temp\ext-ms-win-kernel32-package-current-l1-1-0.DLL

C:\Users\test\AppData\LocalLow\TaoShopAssistant\TGConfig\TGUse.ini

HKEY_LOCAL_MACHINE\SOFTWARE\TaoShopAssistant

HKEY_CURRENT_USER\SoftWare

HKEY_CURRENT_USER\Software\TaoShopAssistant

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo\CfgPath

HKEY_LOCAL_MACHINE\SoftWare

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo\QID

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\WMR

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGSetting

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGSetting\e3139

HKEY_CURRENT_USER

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollInset

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragDelay

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragMinDist

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollDelay

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollInterval

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\Compatibility\setup_tgwlxnb001.exe_

HKEY_LOCAL_MACHINE\Software\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}\Enable

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{03B5835F-F03C-411B-9CE2-AA23E1171E36}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{07EB03D6-B001-41DF-9192-BF9B841EE71F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{3697C5FA-60DD-4B56-92D4-74A569205C16}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{3FC47A08-E5C9-4BCA-A2C7-BC9A282AED14}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{531FDEBF-9B4C-4A43-A2AA-960E8FCDC732}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{78CB5B0E-26ED-4FCC-854C-77E8F3D1AA80}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{81D4E9C9-1D3B-41BC-9E6C-4B40BF79E35E}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{8613E14C-D0C0-4161-AC0F-1DD2563286BC}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{A028AE76-01B1-46C2-99C4-ACD9858AE02F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{AE6BE008-07FB-400D-8BEB-337A64F7051F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{C1EE01F2-B3B6-4A6A-9DDD-E988C088EC82}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{DCBD6FA8-032F-11D3-B5B1-00C04FC324A1}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{E429B25A-E5D3-4D1F-9BE3-0C608477E3A1}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{F25E9F57-2FC8-4EB3-A41A-CCE5F08541E6}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{F89E9E58-BD2F-4008-9AC2-0F816C09F4EE}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_CURRENT_USER\Keyboard Layout\Toggle

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Language Hotkey

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Hotkey

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Layout Hotkey

HKEY_CURRENT_USER\Software\Microsoft\CTF\DirectSwitchHotkeys

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\CTF\EnableAnchorContext

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\KnownClasses

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo\CfgPath

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo\QID

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollInset

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragDelay

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragMinDist

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollDelay

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollInterval

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}\Enable

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Language Hotkey

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Hotkey

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Layout Hotkey

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\CTF\EnableAnchorContext

HKEY_CURRENT_USER\Software\TaoShopAssistant

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGSetting

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGSetting\e3139

kernel32.dll.FlsAlloc

kernel32.dll.FlsSetValue

kernel32.dll.FlsGetValue

api-ms-win-core-localization-l1-2-1.dll.LCMapStringEx

kernel32.dll.FlsFree

kernel32.dll.InitializeCriticalSectionEx

kernel32.dll.InitOnceExecuteOnce

kernel32.dll.CreateEventExW

kernel32.dll.CreateSemaphoreW

kernel32.dll.CreateSemaphoreExW

kernel32.dll.CreateThreadpoolTimer

kernel32.dll.SetThreadpoolTimer

kernel32.dll.WaitForThreadpoolTimerCallbacks

kernel32.dll.CloseThreadpoolTimer

kernel32.dll.CreateThreadpoolWait

kernel32.dll.SetThreadpoolWait

kernel32.dll.CloseThreadpoolWait

kernel32.dll.FlushProcessWriteBuffers

kernel32.dll.FreeLibraryWhenCallbackReturns

kernel32.dll.GetCurrentProcessorNumber

kernel32.dll.CreateSymbolicLinkW

kernel32.dll.GetTickCount64

kernel32.dll.GetFileInformationByHandleEx

kernel32.dll.SetFileInformationByHandle

kernel32.dll.InitializeConditionVariable

kernel32.dll.WakeConditionVariable

kernel32.dll.WakeAllConditionVariable

kernel32.dll.SleepConditionVariableCS

kernel32.dll.InitializeSRWLock

kernel32.dll.AcquireSRWLockExclusive

kernel32.dll.TryAcquireSRWLockExclusive

kernel32.dll.ReleaseSRWLockExclusive

kernel32.dll.SleepConditionVariableSRW

kernel32.dll.CreateThreadpoolWork

kernel32.dll.SubmitThreadpoolWork

kernel32.dll.CloseThreadpoolWork

kernel32.dll.CompareStringEx

kernel32.dll.GetLocaleInfoEx

kernel32.dll.LCMapStringEx

cryptbase.dll.SystemFunction036

user32.dll.UpdateLayeredWindow

user32.dll.UpdateLayeredWindowIndirect

riched20.dll.CreateTextServices

kernel32.dll.IsProcessorFeaturePresent

user32.dll.GetWindowInfo

user32.dll.GetAncestor

user32.dll.GetMonitorInfoA

user32.dll.EnumDisplayMonitors

user32.dll.EnumDisplayDevicesA

gdi32.dll.ExtTextOutW

gdi32.dll.GdiIsMetaPrintDC

ole32.dll.CoInitializeEx

ole32.dll.CoUninitialize

ext-ms-win-kernel32-package-current-l1-1-0.dll.GetCurrentPackageId

ws2_32.dll.getaddrinfo

ws2_32.dll.getnameinfo

ws2_32.dll.freeaddrinfo

ole32.dll.CoRegisterInitializeSpy

ole32.dll.CoRevokeInitializeSpy

TaoShopAssistantSetup

Local\MSCTF.Asm.MutexDefault1

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值