我中了鸽子了.帮忙.中毒名称是:Backdoor.GPigeon
中毒的地方是:D:\DOCUME~1\偶然奇遇\LOCALS~1\Temp
不知道我复制的对不对.下面是我复制的地方.是一个叫街头篮球的问题.而且瑞星扫描不到.
我的症状是,感觉机器运行不快.我的配置是>奔腾.2.40CPU
256内存.显示卡是.64兆的.具体品牌我也不懂.2年前买的机器.请大侠务必帮我解决呀.小弟谢谢了.如果上传的不对.请告诉我谢谢.我现在都不敢运行各种游戏了........头都大了.谢谢!!!!!帮我杀了吧.
自启动项
HKEY_LOCAL_MACHINE Software\Microsoft\Windows\Currentversion\Run
IMJPMIG8.1 = "D:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
PHIME2002ASync = D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
PHIME2002A = D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
CnsMin = Rundll32.exe D:\WINDOWS\downlo~1\CnsMin.dll,Rundll32
RfwMain = "E:\Rising\Rfw\rfwmain.exe" -Startup
RavTask = "E:\Rising\Rav\RavTask.exe" -system
NvCplDaemon = rem RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
SoundMan = SOUNDMAN.EXE
TkBellExe = "D:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
nwiz = rem nwiz.exe /install
helper.dll = D:\WINDOWS\system32\rundll32.exe D:\PROGRA~1\3721\helper.dll,Rundll32
kpcdst = G:\金山播放芢cdsprite.exe
YLive.exe = D:\PROGRA~1\Yahoo!\ASSIST~1\YLive.exe
NvMediaCenter = RunDLL32.exe NvMCTray.dll,NvTaskbarInit
HKEY_CURRENT_USER Software\Microsoft\Windows\Currentversion\Run
ctfmon.exe = D:\WINDOWS\system32\ctfmon.exe
HKEY_LOCAL_MACHINE Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
shell32.dll = D:\WINDOWS\system32\ctfmon.exe
D:\WINDOWS\downlo~1\CnsHook.dll= D:\WINDOWS\system32\ctfmon.exe
D:\WINDOWS\system32\RavExt.dll= Rising Execute File Exts hook
HKEY_LOCAL_MACHINE Software\Microsoft\Windows\CurrentVersion\ShellService
ObjectDelayLoad
PostBootReminder = %SystemRoot%\system32\SHELL32.dll
CDBurn = %SystemRoot%\system32\SHELL32.dll
WebCheck = %SystemRoot%\system32\webcheck.dll
SysTray = D:\WINDOWS\system32\st
object.dll
HKEY_LOCAL_MACHINE Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler
%SystemRoot%\system32\browseui.dll= Browseui 预加载程序
%SystemRoot%\system32\browseui.dll= 组件类别缓存程序
SYSTEM.INI BOOT SHELL Explorer.exe
SYSTEM.INI BOOT SCRNSAVE.EXE D:\WINDOWS\system32\logon.scr
其他相关项
HKEY_CURRENT_USER Software\Microsoft\Internet Explorer\Main start page ----> http://www.mdjcnc.com/
HKEY_LOCAL_MACHINE Software\Microsoft\Windows NT\CurrentVersion\Winlogon DefaultUserName ----> 偶然奇遇
HKEY_LOCAL_MACHINE Software\Microsoft\Windows NT\CurrentVersion\Winlogon AltDefaultUserName ----> 偶然奇遇
HKEY_LOCAL_MACHINE Software\Microsoft\Windows NT\CurrentVersion\Winlogon Userinit ----> D:\WINDOWS\system32\userinit.exe,