23:53:52:005,病毒.exe,7508:8164,7508,REG_getval,HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache,type:0x00000001 datalen:160 data:'43 00 3A 00 5C 00 55 00 73 00 65 00 72 00 73 00 ' ,0x00000000 [操作成功完成。 ],
23:53:52:005,病毒.exe,7508:8164,7508,REG_openkey,HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers,access:0x00020019 ,0xC0000034 [系统找不到指定的文件。 ],
23:53:52:005,病毒.exe,7508:8164,7508,REG_openkey,HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers,access:0x00020019 ,0x00000000 [操作成功完成。 ],
23:53:52:005,病毒.exe,7508:8164,7508,REG_openkey,HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom\pack.exe,access:0x00020019 ,0xC0000034 [系统找不到指定的文件。 ],
23:53:52:005,病毒.exe,7508:8164,7508,FILE_open,D:\pack.exe,access:0x00120089 alloc_size:0 attrib:0x00000080 share_access:0x00000001 disposition:0x00000001 options:0x00000060 ,0x00000000 [操作成功完成。 ],
23:53:52:010,病毒.exe,7508:8164,7508,REG_openkey,HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\SideBySide,access:0x00020019 ,0x00000000 [操作成功完成。 ],
23:53:52:083,病毒.exe,7508:8164,7508,PROC_writevm,D:\pack.exe,target_pid:6768 base:0x00000000001B0000 bytes_written:0x00000020 datalen:0x00000020 data:'01 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 ' ,0x00000000 [操作成功完成。 ],