重起后用sreng删除下列启动项目
<WinSysM><C:\WINDOWS\192896M.exe> [N/A]
<{EB71E0B3-E97D-4D30-8733-E28266467617}><C:\WINDOWS\system32\wyhesm.dll> []
<{45AADFAA-DD36-42AB-83AD-0521BBF58C24}><C:\WINDOWS\system32\zjydcx.dll> []
<{17DFD111-BF3A-4CB4-ADB0-88FCBFE69821}><C:\WINDOWS\system32\hhrdxd.dll> []
<{05922c2d-da84-48e8-a3e4-e797c58c39cf}><C:\WINDOWS\system32\ttEZZEZZ1046.dll> [N/A]
<{a238a8b2-ba89-4889-8572-7cab00ab56f5}><C:\WINDOWS\system32\ttDABDAB1064.dll> [N/A]
<{9bfcef7a-d26e-4a7f-9495-7952badca451}><C:\WINDOWS\system32\dqCBDCBD1051.dll> [N/A]
<{841529CB-7F77-4B99-A895-B5441E0D302F}><C:\WINDOWS\system32\jfrwdh.dll> []
<{23323f58-17d8-4fed-8148-b666cde959ca}><C:\WINDOWS\system32\ttBAIBAI1061.dll> [N/A]
<{1f102fa9-e182-41f3-937b-b5418bfc43e4}><C:\WINDOWS\system32\dqQACQAC1041.dll> [N/A]
<{C0595A7E-2E2F-4B34-A83A-019270A0A464}><C:\WINDOWS\system32\tdffdl.dll> []
<{1E51C0FD-EE36-434B-AD2A-FD1FF3731C38}><C:\WINDOWS\system32\wyrsdj.dll> []
<{CAED0F3B-DF8B-4DBF-BB20-8DFBC3199068}><C:\WINDOWS\system32\jhrcar.dll> []
<{54e916fc-fd9c-41a8-95e7-6ef0e35ec243}><C:\WINDOWS\system32\dqFKKFKK1062.dll> [N/A]
用sreng删除下列服务
[System / System][Stopped/Auto Start]
<C:\WINDOWS\Hacker.com.cn.exe><N/A>
[CurrentControlSetion / Win32RegEdit][Stopped/Auto Start]
<C:\WINDOWS\system32\serve.exe><N/A>
删除下列驱动
[acpidisk / acpidisk][Stopped/Auto Start]
<\??\C:\WINDOWS\system32\drivers\acpidisk.sys><N/A>
[fpids32 / fpids32][Stopped/Auto Start]
<\??\C:\WINDOWS\system32\drivers\msosfpids32.sys><N/A>
[mnsf / mnsf][Stopped/Auto Start]
<\??\C:\DOCUME~1\WEILON~1\LOCALS~1\Temp\tmp4A.tmp><N/A>
[msfpfis64 / msfpfis64][Running/Auto Start]
<\??\C:\WINDOWS\system32\drivers\msosmsfpfis64.sys><N/A>
[oreans32 / oreans32][Running/System Start]
<\??\C:\WINDOWS\system32\drivers\oreans32.sys><N/A>
[puqn0 / puqn0i][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\puqn0i.sys><N/A>
[tucjk / tucjk][Stopped/Boot Start]
<\SystemRoot\system32\drivers\tucjk.sys><N/A>