瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 RootKit.Torn.ab怎么杀呢?杀了一早上都没有办法【求助】

12   2  /  2  页   跳转

RootKit.Torn.ab怎么杀呢?杀了一早上都没有办法【求助】

今天开机出了很多病毒。越来越严重了,拜托各位高手帮忙解决一下吧,要不然越来越难解决了。本来应该很容易的吧?只是我看不懂。拜托了5555555555555555555555555
gototop
 

[876] C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\wmbose.exe
[C:\Syswm1h\Ghook.dll] [N/A, ]
[C:\Program Files\Internet Explorer\IEXPLORE.Dat] [N/A, ]
[C:\Program Files\Internet Explorer\IEXPLORE.Sys] [N/A, ]
[C:\WINDOWS\system32\cmdbc.dll] [N/A, ]
[C:\WINDOWS\system32\winform.dll] [N/A, ]
[C:\WINDOWS\system32\windhcp.ocx] [N/A, ]
[C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys] [N/A, ]
[C:\WINDOWS\system32\mppds.dll] [N/A, ]
[C:\Program Files\Rising\AntiSpyware\ieprot.dll] [Beijing Rising Technology Co., Ltd., 1, 0, 0, 10]
[C:\WINDOWS\system32\cmdbcs.dll] [N/A, ]
[C:\WINDOWS\system32\winform.dll]
[C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\upxdnd.dll
<f0f78cdj><C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\rundl132.exe> [N/A]
<khl6><C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\servicer.exe> [N/A]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
<333><C:\Syswm1h\svchost.exe> []
<mppds><C:\WINDOWS\mppds.exe> []
<upxdnd><C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\zz.exe> []
<winform><C:\WINDOWS\winform.exe> []
<cmdbcs><C:\WINDOWS\cmdbcs.exe> []
<cmdbc><C:\WINDOWS\cmdbc.exe> []
<{A6011F8F-A7F8-49AA-9ADA-49127D43138F}><C:\Program Files\Common Files\Microsoft Shared\MSINFO\NewInfo.dll> []
<{754FB7D8-B8FE-4810-B363-A788CD060F1F}><C:\Program Files\Internet Explorer\PLUGINS\SystemKb.sys> []
<{E25C29AB-12B9-4523-A53C-324B5FBA648C}><c:\program files\common files\real\update_ob\hunhpilq.dll> []
<{99F1D023-7CEB-4586-80F7-BB1A98DB7602}><C:\Program Files\Internet Explorer\IEXPLORE.Sys> []
<{923509F1-45CB-4EC0-BDE0-1DED35B8FD60}><C:\Program Files\Internet Explorer\IEXPLORE.win> []
<{FEB94F5A-69F3-4645-8C2B-9E71D270AF2E}><C:\Program Files\Internet Explorer\IEXPLORE.Dat> []
[Vedio Adapter / VGADown][Stopped/Auto Start]
<C:\WINDOWS\lsass.exe><N/A>
[Windows DHCP Service / WinDHCPsvc][Stopped/Auto Start]
<C:\WINDOWS\system32\\rundll32.exe windhcp.ocx,input><Microsoft Corporation>
[squell / squell][Running/System Start]
<2 - 系统找不到指定的文件。
><N/A>
暴雨梨花针!~~~~~~~~~~
全删了!~~~~~~~~~~~
估计离重装不远了!~~~~~~~~~~~~
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT