signature=088f1a83037be62dfd2a4254d9ec1f93,恶意软件分析 & URL链接扫描 免费在线病毒分析平台 | 魔盾安全分析...

C:\Users\test\AppData\Local\Temp\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\System32\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\system\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\api-ms-win-core-fibers-l1-1-1.DLL

C:\ProgramData\Oracle\Java\javapath\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\System32\wbem\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\System32\WindowsPowerShell\v1.0\api-ms-win-core-fibers-l1-1-1.DLL

C:\Program Files (x86)\WinRAR\api-ms-win-core-fibers-l1-1-1.DLL

C:\Program Files (x86)\Common Files\TaoShopAssistant\TaoShopAssistant.ini

C:\Program Files (x86)\TaoShopAssistant\

C:\Users\test\AppData\Local\Temp\TaoShopAssistant.ini

C:\Program Files (x86)\TaoShopAssistant\TaoShopAssistant.ini

C:\Users\test\AppData\Local

C:\Users\test\AppData\LocalLow

C:\Users\test\AppData\Roaming

C:\Users\test\AppData\LocalLow\TaoShopAssistant\

C:\Users\test\AppData\Local\Temp

C:\Users

C:\Users\test

C:\Users\test\AppData

C:\Users\test\AppData\LocalLow\TaoShopAssistant

C:\Users\test\AppData\LocalLow\TaoShopAssistant\TGConfig

C:\Users\test\AppData\LocalLow\TaoShopAssistant\TGConfig\TGUse.ini

C:\Users\test\AppData\Local\Temp\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\System32\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\system\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\ProgramData\Oracle\Java\javapath\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\System32\wbem\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\System32\WindowsPowerShell\v1.0\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Program Files (x86)\WinRAR\api-ms-win-core-sysinfo-l1-2-1.DLL

C:\Windows\System32\tzres.dll

C:\Program Files (x86)\TaoShopAssistant\TaoShop.exe

C:\Program Files (x86)\TaoShopAssistant\TGUpgrade.exe

C:\Program Files (x86)\TaoShopAssistant\Uninst.exe

C:\Program Files (x86)\TaoShopAssistant\Uortest.exe

C:\Program Files (x86)\TaoShopAssistant\Svnpnd.exe

C:\Program Files (x86)\TaoShopAssistant\Ponaner.exe

C:\Program Files (x86)\TaoShopAssistant\Ponaner64.exe

C:\Program Files (x86)\TaoShopAssistant\Ttghshnuser.exe

\Device\KsecDD

C:\Users\test\AppData\Local\Temp\

C:\Windows\win.ini

C:\

C:\Users\test\AppData\Local\Temp\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\System32\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\system\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\ProgramData\Oracle\Java\javapath\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\System32\wbem\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Windows\System32\WindowsPowerShell\v1.0\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Program Files (x86)\WinRAR\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Users\test\AppData\Local\Temp\ext-ms-win-kernel32-package-current-l1-1-0.DLL

C:\Users\test\AppData\Local\Temp\api-ms-win-core-fibers-l1-1-1.DLL

C:\Windows\System32\api-ms-win-core-fibers-l1-1-1.DLL

C:\Program Files (x86)\Common Files\TaoShopAssistant\TaoShopAssistant.ini

C:\Users\test\AppData\Local\Temp\TaoShopAssistant.ini

C:\Program Files (x86)\TaoShopAssistant\TaoShopAssistant.ini

C:\Users\test\AppData\LocalLow\TaoShopAssistant\TGConfig\TGUse.ini

C:\Windows\System32\tzres.dll

\Device\KsecDD

C:\Windows\win.ini

C:\Users\test\AppData\Local\Temp\api-ms-win-appmodel-runtime-l1-1-1.DLL

C:\Users\test\AppData\Local\Temp\ext-ms-win-kernel32-package-current-l1-1-0.DLL

C:\Users\test\AppData\LocalLow\TaoShopAssistant\TGConfig\TGUse.ini

HKEY_LOCAL_MACHINE\SOFTWARE\TaoShopAssistant

HKEY_CURRENT_USER\SoftWare

HKEY_CURRENT_USER\Software\TaoShopAssistant

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo\CfgPath

HKEY_LOCAL_MACHINE\SoftWare

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo\QID

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Windows Error Reporting\WMR

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGSetting

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGSetting\e3139

HKEY_CURRENT_USER

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollInset

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragDelay

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragMinDist

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollDelay

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollInterval

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\Compatibility\setup_tgwlxnb001.exe_

HKEY_LOCAL_MACHINE\Software\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}\Enable

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{03B5835F-F03C-411B-9CE2-AA23E1171E36}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{07EB03D6-B001-41DF-9192-BF9B841EE71F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{3697C5FA-60DD-4B56-92D4-74A569205C16}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{3FC47A08-E5C9-4BCA-A2C7-BC9A282AED14}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{531FDEBF-9B4C-4A43-A2AA-960E8FCDC732}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{78CB5B0E-26ED-4FCC-854C-77E8F3D1AA80}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{81D4E9C9-1D3B-41BC-9E6C-4B40BF79E35E}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{8613E14C-D0C0-4161-AC0F-1DD2563286BC}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{A028AE76-01B1-46C2-99C4-ACD9858AE02F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{AE6BE008-07FB-400D-8BEB-337A64F7051F}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{C1EE01F2-B3B6-4A6A-9DDD-E988C088EC82}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{DCBD6FA8-032F-11D3-B5B1-00C04FC324A1}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{E429B25A-E5D3-4D1F-9BE3-0C608477E3A1}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{F25E9F57-2FC8-4EB3-A41A-CCE5F08541E6}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{F89E9E58-BD2F-4008-9AC2-0F816C09F4EE}\Category\Category\{534C48C1-0607-4098-A521-4FC899C73E90}

HKEY_CURRENT_USER\Keyboard Layout\Toggle

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Language Hotkey

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Hotkey

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Layout Hotkey

HKEY_CURRENT_USER\Software\Microsoft\CTF\DirectSwitchHotkeys

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\CTF\EnableAnchorContext

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\KnownClasses

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo\CfgPath

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo\QID

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\Windows Error Reporting\WMR\Disable

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollInset

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragDelay

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\DragMinDist

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollDelay

HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\ScrollInterval

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\CTF\TIP\{0000897b-83df-4b96-be07-0fb58b01c4a4}\LanguageProfile\0x00000000\{0001bea3-ed56-483d-a2e2-aeae25577436}\Enable

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Language Hotkey

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Hotkey

HKEY_CURRENT_USER\Keyboard Layout\Toggle\Layout Hotkey

HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\CTF\EnableAnchorContext

HKEY_CURRENT_USER\Software\TaoShopAssistant

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGAppInfo

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGSetting

HKEY_CURRENT_USER\Software\TaoShopAssistant\TGSetting\e3139

kernel32.dll.FlsAlloc

kernel32.dll.FlsSetValue

kernel32.dll.FlsGetValue

api-ms-win-core-localization-l1-2-1.dll.LCMapStringEx

kernel32.dll.FlsFree

kernel32.dll.InitializeCriticalSectionEx

kernel32.dll.InitOnceExecuteOnce

kernel32.dll.CreateEventExW

kernel32.dll.CreateSemaphoreW

kernel32.dll.CreateSemaphoreExW

kernel32.dll.CreateThreadpoolTimer

kernel32.dll.SetThreadpoolTimer

kernel32.dll.WaitForThreadpoolTimerCallbacks

kernel32.dll.CloseThreadpoolTimer

kernel32.dll.CreateThreadpoolWait

kernel32.dll.SetThreadpoolWait

kernel32.dll.CloseThreadpoolWait

kernel32.dll.FlushProcessWriteBuffers

kernel32.dll.FreeLibraryWhenCallbackReturns

kernel32.dll.GetCurrentProcessorNumber

kernel32.dll.CreateSymbolicLinkW

kernel32.dll.GetTickCount64

kernel32.dll.GetFileInformationByHandleEx

kernel32.dll.SetFileInformationByHandle

kernel32.dll.InitializeConditionVariable

kernel32.dll.WakeConditionVariable

kernel32.dll.WakeAllConditionVariable

kernel32.dll.SleepConditionVariableCS

kernel32.dll.InitializeSRWLock

kernel32.dll.AcquireSRWLockExclusive

kernel32.dll.TryAcquireSRWLockExclusive

kernel32.dll.ReleaseSRWLockExclusive

kernel32.dll.SleepConditionVariableSRW

kernel32.dll.CreateThreadpoolWork

kernel32.dll.SubmitThreadpoolWork

kernel32.dll.CloseThreadpoolWork

kernel32.dll.CompareStringEx

kernel32.dll.GetLocaleInfoEx

kernel32.dll.LCMapStringEx

cryptbase.dll.SystemFunction036

user32.dll.UpdateLayeredWindow

user32.dll.UpdateLayeredWindowIndirect

riched20.dll.CreateTextServices

kernel32.dll.IsProcessorFeaturePresent

user32.dll.GetWindowInfo

user32.dll.GetAncestor

user32.dll.GetMonitorInfoA

user32.dll.EnumDisplayMonitors

user32.dll.EnumDisplayDevicesA

gdi32.dll.ExtTextOutW

gdi32.dll.GdiIsMetaPrintDC

ole32.dll.CoInitializeEx

ole32.dll.CoUninitialize

ext-ms-win-kernel32-package-current-l1-1-0.dll.GetCurrentPackageId

ws2_32.dll.getaddrinfo

ws2_32.dll.getnameinfo

ws2_32.dll.freeaddrinfo

ole32.dll.CoRegisterInitializeSpy

ole32.dll.CoRevokeInitializeSpy

TaoShopAssistantSetup

Local\MSCTF.Asm.MutexDefault1

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值