biehl816 - 2008-7-10 10:43:00
这是我的日志扫描文件,请高手帮忙。:default16:
用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; .NET CLR 2.0.50727)附件:
SREngLOG.log
biehl816 - 2008-7-10 11:17:00
C:\WINDOWS\Help
C:\Recycled
这是病毒的路径,为什么没有人帮我呢? 版主,你人呢?呼唤你呀。
小日来了 - 2008-7-10 13:27:00
清空回收站~~
用SRENG
打开注册表中
删除
<{17DFD111-BF3A-4CB4-ADB0-88FCBFE69821}><> [N/A]
<{1DB3C525-5271-46F7-887A-D4E1ADAA7632}><> [N/A]
<{28EB3777-3E23-4E72-8449-A992D09D24C3}><C:\WINDOWS\system32\zgfdet.dll> [File is missing]
<{DC3D30AE-0380-4151-8934-EE98A34B0370}><C:\WINDOWS\system32\mfdesy.dll> [File is missing]
<{C0595A7E-2E2F-4B34-A83A-019270A0A464}><C:\WINDOWS\system32\tdffdl.dll> [File is missing]
<{E8A3B193-77E3-4FB3-986D-F4FA4828BAFC}><C:\WINDOWS\system32\wklsdd.dll> [File is missing]
<{841529CB-7F77-4B99-A895-B5441E0D302F}><C:\WINDOWS\system32\jfrwdh.dll> [File is missing]
<{84143967-B645-4BFF-B873-DA1DC886E9A7}><C:\WINDOWS\system32\cedafb.dll> [File is missing]
<{CAED0F3B-DF8B-4DBF-BB20-8DFBC3199068}><C:\WINDOWS\system32\jhrcar.dll> [File is missing]
<{8C41B7F7-3168-400D-A702-0E7EFE0BA304}><C:\WINDOWS\system32\sgrefg.dll> [File is missing]
<{B29583D8-033A-4B9F-8553-7C5458F3FB8E}><C:\WINDOWS\system32\jdsaex.dll> [File is missing]
<{1E51C0FD-EE36-434B-AD2A-FD1FF3731C38}><C:\WINDOWS\system32\wyrsdj.dll> [File is missing]
<{7C8D1401-A58D-A81C-CD24-A5915C4517C7}><C:\WINDOWS\system32\mnmhgsrv.dll> [File is missing]
<{27AC9076-C898-B098-D098-A18319080972}><C:\WINDOWS\system32\nhmxbjkl.dll> [File is missing]
<{4F4F0064-71E0-4f0d-0005-708476C7815F}><C:\WINDOWS\system32\midimapzx.dll> [File is missing]
<{4F4F0064-71E0-4f0d-0004-708476C7815F}><C:\WINDOWS\system32\midimapwl.dll> [File is missing]
<{4F4F0064-71E0-4f0d-0014-708476C7815F}><C:\WINDOWS\system32\midimapms.dll> [File is missing]
<{4F4F0064-71E0-4f0d-0023-708476C7815F}><C:\WINDOWS\system32\midimapcq.dll> [File is missing]
<{4F4F0064-71E0-4f0d-0003-708476C7815F}><C:\WINDOWS\system32\midimapgj.dll> [File is missing]
<{4F4F0064-71E0-4f0d-0022-708476C7815F}><C:\WINDOWS\system32\midimapqn3.dll> [File is missing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<midimapms><C:\WINDOWS\system32\midimapms.dll> [File is missing]
<midimapzx><C:\WINDOWS\system32\midimapzx.dll> [File is missing]
<midimapqn3><C:\WINDOWS\system32\midimapqn3.dll> [File is missing]
<midimapgj><C:\WINDOWS\system32\midimapgj.dll> [File is missing]
<midimapwl><C:\WINDOWS\system32\midimapwl.dll> [File is missing]
<midimapcq><C:\WINDOWS\system32\midimapcq.dll> [File is missing]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices]
<SchedulingAgent><mstask.exe> [N/A]
编辑 <nwiz><nwiz.exe /installquiet /keeploaded /nodetect> []为 <nwiz><nwiz.exe /install> []
biehl816 - 2008-7-10 16:27:00
谢版主了,但我在注册表里根本看不到你说的那些删除项。到是我先用清理助手清理了一下。后又用压缩文件找到那个根目录,然后,然后就可以删除了。真不知道是什么原因。
后又重新起动了。发现病毒没有了。这里面的小道道还真多。。你能给解释一下吗?
还有,那个病毒先前是在那个回收站根目录下,用压缩程序找到后,一删,立马又出现。而且是隐藏的。在正常的目录下找不到。
biehl816 - 2008-7-10 16:45:00
版主,再帮我看一下我的电脑还有没有问题?这是我重新扫描的日志。万分感谢!!
附件:
SREngLOG.log
© 2000 - 2026 Rising Corp. Ltd.