启动项目 -- 注册表之如下项删除:
[{C20C5A13-4DD7-40D9-90B4-700BAB0BBBE9}] <C:\WINDOWS\system32\S5kSrtwDf35EW9f2kBDF.inf>
[{51716C09-6B08-4CCF-B526-718E912C0573}] <C:\WINDOWS\system32\PERrGx5DkqSbQdwauCRQH.dll>
[{B9D0F4D7-C809-4C27-9CB4-63201DFB3D05}] <C:\WINDOWS\Tasks\c2nH4numz9knY5zqnC.inf>
[{CD478099-014D-4B3A-A4BB-B518F1019BC7}] <C:\WINDOWS\system32\SCEVFJRCmaB7.dll>
[{87DE8A1A-96C5-4420-B222-EF998F697CE7}] <C:\WINDOWS\system32\2exJW3dsaTgWrf5uAPadmHN.dll>
[{B7F1BFDC-4B6C-4E2F-AF7A-638D2D47802C}] <C:\WINDOWS\system32\FsmBY3kmWnAG5gRbwGgU.inf>
[{B59F0A61-EF3E-4A2B-9E3A-4A84EDDF2308}] <C:\WINDOWS\Downloaded Program Files\AnXnubyMnv58c9vaECWX.cur>
[{36AC68E6-0C26-4D39-B98E-54B49DAB6BAA}] <C:\WINDOWS\system32\dhDhwS7fFW.dll>
[{8A6A5B34-D995-4C5D-9338-B5E264B4A87}] <C:\WINDOWS\system32\nXe2grrKNzF9dxYKmqg.inf>
[{05EDDA35-1E5B-4A77-8F68-99AB967CF632}] <C:\WINDOWS\system32\bWxJAeWKDxgRfhkaWEfA33C36nr.inf>
Autorun.inf
[C:\]
[AutoRun]
shellexecute=AutoRun.vbs
shell\Auto\command=AutoRun.vbs
[G:\]
[AutoRun]
shellexecute=AutoRun.vbs
shell\Auto\command=AutoRun.vbs
[H:\]
[AutoRun]
shellexecute=AutoRun.vbs
shell\Auto\command=AutoRun.vbs
[I:\]
[AutoRun]
shellexecute=AutoRun.vbs
shell\Auto\command=AutoRun.vbsPress Right and delete C: and d: and e: and f:AutoRun.vbs
and .exe



Chkcing This Driver
asyncmac.sys
[RAS Asynchronous Media Driver / AsyncMac][Stopped/Manual Start]
<system32\DRIVERS\asyncmac.sys><N/A>
and send this Driver to
http://www.virustotal.com/zh-cn/