小小坏孩 - 2007-8-20 16:02:00
下面是sreng2扫描的日志
[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)附件:
5707402007822102322.txt
tankk - 2007-8-22 10:03:00
删除:
启动项目:
<MsServer><msfir80.exe> [N/A]
<IMJPMIG8.2><msime80.exe> [N/A]
疑似:
驱动程序:
[mrv10n04p / mrv10n04p][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\mrv10n04p.sys><N/A>
[mthggp4 / mthggp4g][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\mthggp4g.sys><N/A>
[xs9zc1pco / xs9zc1pcos][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\xs9zc1pcos.sys><N/A>
[nmpkg / nmpkg][Stopped/Auto Start]
<\??\C:\WINDOWS\system32\drivers\nmpkg.sys><N/A>
文件:
C:\WINDOWS\system32\6t1ur56.dll
小小坏孩 - 2007-8-22 10:35:00
这是杀出来的病毒文件,杀了好几天了,手动删除也不行
附件:
5707402007822102609.jpg
小小坏孩 - 2007-8-27 8:49:00
上面的2个病毒始终无法删除,文件也无法删除,谁帮帮我
HOSTのS - 2007-8-27 8:58:00
顺手 这些服务也删掉
[DCOM Server Process Launcher / DcomLaunch][Running/Auto Start]
<C:\WINDOWS\system32\svchost -k DcomLaunch-->%SystemRoot%\system32\rpcss.dll><Microsoft Corporation>
[DHCP Client / Dhcp][Running/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\dhcpcsvc.dll><Microsoft Corporation>
[COM+ Event System / EventSystem][Running/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\es.dll><Microsoft Corporation>
[Windows eymc RunThem / eymc][Running/Auto Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\PROGRA~1\zthx\jdrh.dll>< >
[Server / lanmanserver][Running/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\srvsvc.dll><Microsoft Corporation>
[Workstation / lanmanworkstation][Running/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\wkssvc.dll><Microsoft Corporation>
[Network Connections / Netman][Running/Auto Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\netman.dll><Microsoft Corporation>
[Remote Access Connection Manager / RasMan][Running/Manual Start]
<C:\WINDOWS\system32\svchost.exe -k netsvcs-->%SystemRoot%\System32\rasmans.dll><Microsoft Corporation>
[Remote Procedure Call (RPC) / RpcSs][Running/Auto Start]
<C:\WINDOWS\system32\svchost -k rpcss-->%SystemRoot%\system32\rpcss.dll><Microsoft Corporation>
[Telephony / TapiSrv][Running/Manual Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->%SystemRoot%\System32\tapisrv.dll><Microsoft Corporation>
[WebClient / WebClient][Running/Auto Start]
<C:\WINDOWS\system32\svchost.exe -k LocalService-->%SystemRoot%\System32\webclnt.dll><Microsoft Corporation>
[Portable Media Serial Number Service / WmdmPmSN][Stopped/Manual Start]
<C:\WINDOWS\System32\svchost.exe -k netsvcs-->C:\WINDOWS\system32\mspmsnsv.dll><Microsoft Corporation>
小小坏孩 - 2007-8-27 14:00:00
我用360filekill都无法删除这些文件,真郁闷,还有什么更强劲的删除文件的工具没
小小坏孩 - 2007-8-27 14:16:00
[DCOM Server Process Launcher / DcomLaunch][Running/Auto Start]
<C:\WINDOWS\system32\svchost -k DcomLaunch-->%SystemRoot%\system32\rpcss.dll><Microsoft Corporation>
系统服务无法删除,还有个也是的,我忘记是那个了
© 2000 - 2026 Rising Corp. Ltd.