CreateRestorePoint: HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-3295371147-2942387223-962318981-1000\...\Run: [AdobeBridge] => [X] ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File ShellIconOverlayIdentifiers: [1QMShellIconExt] -> {AC224566-817F-454B-A7A7-79C8840050D1} => C:\Program Files (x86)\QMGame\QMShellIcon64.dll No File BHO: 迅雷下载支持 -> {004B0726-A010-4ABF-8556-FCDB7F1FCA1E} -> C:\Program Files (x86)\Thunder Network\Thunder\BHO\XunleiBHO647.9.41.5020.dll [2015-10-24] (深圳市迅雷网络技术有限公司) BHO-x32: 迅雷下载支持组件 -> {DE05CF4A-7B0A-4775-B5E5-396244938679} -> C:\Program Files (x86)\Thunder Network\Thunder\Thunder BHO Platform\np_tdieplat.dll [2014-08-01] (深圳市迅雷网络技术有限公司) FF Plugin-x32: @xunlei.com/npaplayer -> C:\Users\Public\Thunder Network\APlayer\codecs\npaplayer.dll [No File] FF Plugin-x32: @xunlei.com/npxluser -> C:\Program Files (x86)\Common Files\Thunder Network\UserAgent\npxluser2.0.2.3.dll [No File] FF Plugin HKU\S-1-5-21-3295371147-2942387223-962318981-1000: @xunlei.com/npxluser -> C:\Program Files (x86)\Common Files\Thunder Network\UserAgent\npxluser2.0.2.3.dll [No File] 2015-10-24 17:18 - 2015-10-24 17:18 - 00000000 ____D C:\Users\Celine\AppData\Roaming\Baidu 2015-10-24 17:18 - 2015-10-24 17:18 - 00000000 ____D C:\Users\Celine\AppData\LocalLow\Baidu 2015-10-24 17:18 - 2015-10-24 17:18 - 00000000 ____D C:\ProgramData\Baidu 2015-10-24 14:51 - 2015-10-24 15:28 - 00000035 _____ C:\Users\Celine\AppData\Roaming\CoreAVC.ini CMD: bitsadmin /reset /allusers CMD: netsh advfirewall reset CMD: netsh advfirewall set allprofiles state on CMD: ipconfig /flushdns Hosts: EmptyTemp: