用sreng
删除启动项目=>注册表
<vzln><; RunDll32 "C:\WINDOWS\Downlo~1\vzln.dll",Run> [N/A]
<xy><; C:\WINDOWS\Download\svhost32.exe> [N/A]
<CheckFaultKernel><C:\WINDOWS\system32\mswdm.exe> [N/A]
<{A6E7143A-143A-6E72-3A6E-43AE743A6E72}><C:\Program Files\Common Files\Microsoft Shared\MSINFO\143A6E72.dll> [N/A]
<{DD7D4640-4464-48C0-82FD-21338366D2D2}><C:\Program Files\Internet Explorer\InfoMs.tdm> [N/A]
<{9915CFD1-6B7D-4AC5-ABAC-136924579E91}><C:\Program Files\Internet Explorer\PLUGINS\system.sys> [N/A]
<{1A404685-7563-4d02-B0F6-58B308A406A9}><c:\program files\internet explorer\iiutcvzt.dll> [N/A]
删除
C:\WINDOWS\Downlo~1\vzln.dll
C:\WINDOWS\Download\svhost32.exe
C:\WINDOWS\system32\mswdm.exe
C:\Program Files\Common Files\Microsoft Shared\MSINFO\143A6E72.dll
C:\Program Files\Internet Explorer\InfoMs.tdm
C:\Program Files\Internet Explorer\PLUGINS\system.sys
c:\program files\internet explorer\iiutcvzt.dll
<AppInit_DLLs>编辑改为空值
安全模式删除
C:\WINDOWS\235780M.BMP
用sreng
删除启动项目=>服务
[nvsvc32.exe / nvsvc32.exe]
<C:\WINDOWS\Hacker.com.cn><N/A>
[va dr ce / va dr ce]
<C:\WINDOWS\vdc.exe><N/A>
[Windows XP Vista / Windows XP Vista ]
<C:\WINDOWS\Hacker.com.cn.ini><N/A>
删除
C:\WINDOWS\Hacker.com.cn
C:\WINDOWS\vdc.exe
C:\WINDOWS\Hacker.com.cn.ini
http://download5.pctutu.com/soft/magicset785.zip
用超级兔子清理王在安全模式下卸载流氓软件...