SEED-XDS560Plus Emulator for CCS3.3.82.exe 在硬盘上都安装了什么?

被这款仿真器驱动程序欺负过的,请看:

  已监控程序     SeedEmulator
  监控时间
    
  已监控程序路径
    "C:\仿真器驱动\SEED-XDS560Plus Emulator for CCS3.3.82.exe
  
  检测到的修改
    文件系统
      创建的文件夹:     3
      删除的文件夹:     0
      创建的文件  :    22
      删除的文件  :     1
      修改的文件  :    16
      大小                        : 5.32 MB
    注册表
      创建的主键:     6
      删除的主键:     0
      创建的注册表键值:    41
      删除的注册表键值:     0
      修改的注册表键值:     3
      大小                        : 3.07 KB
  
  记录文件名称
    C:\ProgramData\Martau\Total Uninstall 6\Monitored Programs\SeedEmulator.tun
  
  备份
    没有找到

文件系统详细信息 [查看: 全部详细信息] (选定范围)
----------------------------
    (文件夹) C:\CCStudio_v3.3
       (+)(文件) USBorPCI.exe = 2010-01-26 下午 4:05, 40960 字节, A
    (文件夹) C:\CCStudio_v3.3\cc\bin
       (*)(文件) uscif.out
        2008-10-21 下午 2:31, 2425629 字节, A ==> 2010-01-15 下午 5:10, 2440272 字节, A
       (+)(文件) uscif.ti.out = 2008-10-21 下午 2:31, 2425629 字节, A
       (*)(文件) xds560.out
        2008-10-21 下午 2:31, 673203 字节, A ==> 2010-01-19 下午 4:29, 726890 字节, A
       (+)(文件) xds560.ti.out = 2008-10-21 下午 2:31, 673203 字节, A
    (+)(文件夹) C:\CCStudio_v3.3\drivers\SEED-XP
       (+)(文件) seedxds560usb.inf = 2008-07-15 上午 11:17, 6560 字节, A
       (+)(文件) seedxds560usb.sys = 2010-01-20 下午 5:48, 27216 字节, A
    (+)(文件夹) C:\Program Files\InstallShield Installation Information\{211A7647-F1BB-4A6A-821E-1DD94321749A}
       (+)(文件) _setup.dll = 2018-02-03 下午 1:42, 148416 字节, A
       (+)(文件) data1.cab = 2018-02-03 下午 1:42, 498913 字节, A
       (+)(文件) data1.hdr = 2018-02-03 下午 1:42, 11904 字节, A
       (+)(文件) ISSetup.dll = 2018-02-03 下午 1:42, 535552 字节
       (+)(文件) layout.bin = 2018-02-03 下午 1:42, 473 字节, A
       (+)(文件) setup.exe = 2018-02-03 下午 1:42, 372736 字节, A
       (+)(文件) setup.ilg = 2018-02-03 下午 1:43, 184320 字节, A
       (+)(文件) setup.ini = 2018-02-03 下午 1:43, 591 字节, A
       (+)(文件) setup.inx = 2018-02-03 下午 1:42, 228824 字节, A
       (+)(文件) setup.isn = 2018-02-03 下午 1:42, 256664 字节, A
    (文件夹) C:\Program Files\Tencent\QQPCMgr\12.11.19357.218
       (*)(文件) CPCache.db
        2018-02-03 下午 1:40, 8192 字节, A ==> 2018-02-03 下午 1:43, 10240 字节, A
       (-)(文件) nodisturb.ini = 2018-02-03 上午 10:37, 133 字节, A
       (*)(文件) StartupLog_2.log
        2018-02-03 下午 1:36, 158528 字节, A ==> 2018-02-03 下午 1:42, 158724 字节, A
    (文件夹) C:\ProgramData\Tencent\QQPCMgr
       (*)(文件) QMConfig.hiv
        2018-02-03 下午 1:41, 262144 字节, A ==> 2018-02-03 下午 1:43, 262144 字节, A
       (*)(文件) QMConfig.hiv.LOG1
        2018-02-03 下午 1:41, 95232 字节, HSA ==> 2018-02-03 下午 1:43, 95232 字节, HSA
       (*)(文件) TaskLog.dat
        2018-02-03 下午 1:31, 1796 字节, A ==> 2018-02-03 下午 1:41, 1834 字节, A
    (文件夹) C:\ProgramData\Tencent\QQPCMgr\AdBlock
       (*)(文件) AdWndRecordDb.db
        2018-02-03 下午 1:41, 311296 字节, A ==> 2018-02-03 下午 1:43, 317440 字节, A
    (文件夹) C:\ProgramData\Tencent\QQPCMgr\SoftMgr
       (*)(文件) ProcesslistItem.ini
        2018-02-03 下午 1:36, 3108 字节, A ==> 2018-02-03 下午 1:43, 3445 字节, A
       (*)(文件) softuninstalllog.db
        2018-02-03 下午 1:41, 329728 字节, A ==> 2018-02-03 下午 1:43, 329728 字节, A
    (文件夹) C:\ProgramData\Tencent\QQPCMgr\TAVWfsDB
       (*)(文件) TAVCache.db
        2018-02-03 下午 1:41, 2972672 字节, A ==> 2018-02-03 下午 1:44, 2980864 字节, A
    (文件夹) C:\Users\Administrator\AppData\Roaming\Tencent\QQPinyin
       (*)(文件) 5.7.4417.400local.stat
        2018-02-03 下午 1:41, 961 字节, A ==> 2018-02-03 下午 1:43, 961 字节, A
    (文件夹) C:\Users\Public\Desktop
       (+)(文件) USBorPCI.lnk = 2018-02-03 下午 1:43, 473 字节, A
    (文件夹) C:\Windows\inf
       (+)(文件) oem59.inf = 2018-02-03 下午 1:43, 6560 字节, A
       (+)(文件) seedxds560usb.inf = 2008-07-15 上午 11:17, 6560 字节, A
    (文件夹) C:\Windows\System32\drivers
       (+)(文件) seedxds560usb.sys = 2010-01-20 下午 5:48, 27216 字节, A
    (文件夹) C:\Windows\System32\DriverStore
       (*)(文件) INFCACHE.1
        2018-02-01 上午 9:39, 2764992 字节, A ==> 2018-02-03 下午 1:43, 2765136 字节, A
       (*)(文件) infpub.dat
        2018-02-01 上午 9:39, 86016 字节, A ==> 2018-02-03 下午 1:43, 86016 字节, A
       (*)(文件) infstor.dat
        2018-02-01 上午 9:39, 143360 字节, A ==> 2018-02-03 下午 1:43, 143360 字节, A
       (*)(文件) infstrng.dat
        2018-02-01 上午 9:39, 143360 字节, A ==> 2018-02-03 下午 1:43, 143360 字节, A
    (+)(文件夹) C:\Windows\System32\DriverStore\FileRepository\seedxds560usb.inf_x86_neutral_821f3d6dc1201fa8
       (+)(文件) seedxds560usb.inf = 2008-07-15 上午 11:17, 6560 字节, A
       (+)(文件) seedxds560usb.PNF = 2018-02-03 下午 1:43, 10528 字节, A
       (+)(文件) seedxds560usb.sys = 2010-01-20 下午 5:48, 27216 字节, A

注册表详细信息 [查看: 全部详细信息] (选定范围)
---------------------------
    (REG KEY) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs
       (+)(REG VAL) C:\CCStudio_v3.3\cc\bin\uscifboot.out = REG_DWORD, 1
       (+)(REG VAL) C:\windows\inf\seedxds560usb1.inf = REG_DWORD, 1
       (+)(REG VAL) C:\windows\system32\drivers\seedxds560usb1.sys = REG_DWORD, 1
    (+)(REG KEY) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{211A7647-F1BB-4A6A-821E-1DD94321749A}
       (+)(REG VAL) DisplayName = REG_SZ, "SEED-XDS560Plus Emulator for CCS3.3.82"
       (+)(REG VAL) DisplayVersion = REG_SZ, "2.06.3382"
       (+)(REG VAL) InstallDate = REG_SZ, "20180203"
       (+)(REG VAL) InstallLocation = REG_SZ, "C:\CCStudio_v3.3\"
       (+)(REG VAL) InstallSource = REG_SZ, "C:\Program Files\feiq\AutoRecv Files\Jenkins_ABC(76AB878E6873)\仿真器驱动\SEED-XDS560Plus Emulator for CCS3.3.82.exe"
       (+)(REG VAL) Language = REG_DWORD, 9
       (+)(REG VAL) LogFile = REG_SZ, "C:\Program Files\InstallShield Installation Information\{211A7647-F1BB-4A6A-821E-1DD94321749A}\setup.ilg"
       (+)(REG VAL) LogMode = REG_DWORD, 4
       (+)(REG VAL) MajorVersion = REG_DWORD, 2
       (+)(REG VAL) MinorVersion = REG_DWORD, 6
       (+)(REG VAL) ModifyPath = REG_SZ, ""C:\Program Files\InstallShield Installation Information\{211A7647-F1BB-4A6A-821E-1DD94321749A}\setup.exe" -runfromtemp -l0x0009"
       (+)(REG VAL) NoRepair = REG_DWORD, 1
       (+)(REG VAL) ProductGuid = REG_SZ, "{1EC909DE-D556-4DD1-BEF1-A78DC6EE4575}"
       (+)(REG VAL) Publisher = REG_SZ, "SEED International Ltd."
       (+)(REG VAL) RegCompany = REG_SZ, "微软中国"
       (+)(REG VAL) RegOwner = REG_SZ, "微软用户"
       (+)(REG VAL) UninstallString = REG_SZ, ""C:\Program Files\InstallShield Installation Information\{211A7647-F1BB-4A6A-821E-1DD94321749A}\setup.exe" -runfromtemp -l0x0009 -removeonly"
       (+)(REG VAL) URLInfoAbout = REG_SZ, "http://www.seeddsp.com"
       (+)(REG VAL) Version = REG_DWORD, 33951030
    (+)(REG KEY) HKEY_LOCAL_MACHINE\SOFTWARE\SEED International Ltd.
    (+)(REG KEY) HKEY_LOCAL_MACHINE\SOFTWARE\SEED International Ltd.\SEED-XDS560Plus Emulator for CCS3.3.82
    (+)(REG KEY) HKEY_LOCAL_MACHINE\SOFTWARE\SEED International Ltd.\SEED-XDS560Plus Emulator for CCS3.3.82\2.06.3382
    (+)(REG KEY) HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{533C5B84-EC70-11D2-9505-00C04F79DEAF}\0002
       (+)(REG VAL) DriverDate = REG_SZ, "6-21-2006"
       (+)(REG VAL) DriverDateData = REG_BINARY, ....
       (+)(REG VAL) DriverDesc = REG_SZ, "通用卷影复制"
       (+)(REG VAL) DriverVersion = REG_SZ, "6.1.7600.16385"
       (+)(REG VAL) InfPath = REG_SZ, "volsnap.inf"
       (+)(REG VAL) InfSection = REG_SZ, "volume_snapshot_install"
       (+)(REG VAL) InfSectionExt = REG_SZ, ".NTx86"
       (+)(REG VAL) MatchingDeviceId = REG_SZ, "storage\volumesnapshot"
       (+)(REG VAL) ProviderName = REG_SZ, "Microsoft"
    (+)(REG KEY) HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{533C5B84-EC70-11D2-9505-00C04F79DEAF}\0003
       (+)(REG VAL) DriverDate = REG_SZ, "6-21-2006"
       (+)(REG VAL) DriverDateData = REG_BINARY, ....
       (+)(REG VAL) DriverDesc = REG_SZ, "通用卷影复制"
       (+)(REG VAL) DriverVersion = REG_SZ, "6.1.7600.16385"
       (+)(REG VAL) InfPath = REG_SZ, "volsnap.inf"
       (+)(REG VAL) InfSection = REG_SZ, "volume_snapshot_install"
       (+)(REG VAL) InfSectionExt = REG_SZ, ".NTx86"
       (+)(REG VAL) MatchingDeviceId = REG_SZ, "storage\volumesnapshot"
       (+)(REG VAL) ProviderName = REG_SZ, "Microsoft"
    (REG KEY) HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Environment
       (+)(REG VAL) Pathv3382 = REG_SZ, "C:\CCStudio_v3.3\"
    (REG KEY) HKEY_USERS\QMConfig\QQDoctor\QQDoctor\ComCfg
       (*)(REG VAL) QMTaskHistory
        REG_BINARY, .................................................................................................................................. ==> REG_BINARY, ..................................................................................................................................
       (*)(REG VAL) TJSafeChangeLastSequence
        REG_BINARY, .... ==> REG_BINARY, ....
       (*)(REG VAL) TrojanFileMonCount
        REG_BINARY, .. ==> REG_BINARY, ..

posted on 2018-06-15 11:26  johnphan  阅读(383)  评论(0编辑  收藏  举报

导航