用附件的XDELBOX删除文件
C:\WINDOWS\system32\nhmxcjkl.dll
C:\WINDOWS\system32\tisqatyu.dll
复制他们,从剪贴板导入,点上抑制再生,右键点击要删除的文件列表,选择立即重起删除
重起以后进入XDELBOX工具,执行删除~
删除过后,打开SRENG
注册表中删除
<kcomi><kcomi32.exe> []
把 <AppInit_DLLs><nhmxcjkl.dll,tisqatyu.dll> [N/A]编辑为空
删除
<{7C8D1401-A58D-A81C-CD24-A5915C4517C7}><C:\WINDOWS\system32\mnmhgsrv.dll> [N/A]
<{9490415F-65F8-B5C5-D8BA-9405FB120549}><C:\WINDOWS\system32\yzztimsn.dll> [N/A]
<{4F4F0064-71E0-4f0d-0015-708476C7815F}><C:\WINDOWS\system32\midimapmy.dll> [N/A]
<{528DF602-9541-A985-210A-984A698C6F25}><C:\WINDOWS\system32\ptjhehlp.dll> [N/A]
<{4F4F0064-71E0-4f0d-0018-708476C7815F}><C:\WINDOWS\system32\midimapwd.dll> [N/A]
<{6A041F13-A111-12A3-B0CF-F99818AA68A6}><C:\WINDOWS\system32\zxmscwin.dll> [N/A]
<{4F4F0064-71E0-4f0d-0005-708476C7815F}><C:\WINDOWS\system32\midimapzx.dll> [N/A]
<{A9895933-6636-4281-BC58-EE6DE2AF96E3}><C:\WINDOWS\system32\ddserh.dll> [N/A]
<{4F4F0064-71E0-4f0d-0017-708476C7815F}><C:\WINDOWS\system32\midimaptl.dll> [N/A]
<{4F4F0064-71E0-4f0d-0013-708476C7815F}><C:\WINDOWS\system32\midimapfy.dll> [N/A]
<{4F4F0064-71E0-4f0d-0004-708476C7815F}><C:\WINDOWS\system32\midimapwl.dll> [N/A]
<{6bbd8cc0-98a8-428d-bc08-32aa3ec4fdd3}><MMDABLUU1096.dll> [N/A]
<{4F4F0064-71E0-4f0d-0012-708476C7815F}><C:\WINDOWS\system32\midimapjr.dll> [N/A]
<{5FD45A54-9875-698F-E56E-65102358FDF5}><C:\WINDOWS\system32\apsgejba.dll> [N/A]
<{5B1AEF69-DDAE-FDAD-DCAB-698F026ABDB5}><C:\WINDOWS\system32\oohxdbyt.dll> [N/A]
<{4F4F0064-71E0-4f0d-0024-708476C7815F}><C:\WINDOWS\system32\midimapcqsj.dll> [N/A]
<{875E07B1-0614-43D9-A76E-D76A28AB3D7B}><C:\WINDOWS\system32\tfsdmz.dll> [N/A]
<{18093456-9012-4568-9076-908765467181}><C:\WINDOWS\system32\tisqatyu.dll> [N/A]
<{22596546-2036-9451-6058-658402589722}><C:\WINDOWS\system32\opshbbty.dll> [N/A]
<{4F4F0064-71E0-4f0d-0006-708476C7815F}><C:\WINDOWS\system32\midimapcb.dll> [N/A]
<{4F4F0064-71E0-4f0d-0026-708476C7815F}><C:\WINDOWS\system32\midimapjx2.dll> [N/A]
<{5E907A48-400E-4EA8-9792-FFAE052D59E9}><C:\WINDOWS\system32\pedadt.dll> [N/A]
<{45AADFAA-DD36-42AB-83AD-0521BBF58C24}><C:\WINDOWS\system32\zdesfx.dll> [N/A]
<{37AC9076-C898-B098-D098-A18319080973}><C:\WINDOWS\system32\nhmxcjkl.dll> [N/A]
<{1E51C0FD-EE36-434B-AD2A-FD1FF3731C38}><C:\WINDOWS\system32\wyrsdj.dll> [N/A]
<{3C954872-1230-6541-9548-6541025884C3}><C:\WINDOWS\system32\lijzclit.dll> [N/A]
<{2B69874A-C58C-458D-69F0-698F874E41B2}><C:\WINDOWS\system32\lassaplo.dll> [N/A]
<{347729ba-b13c-4a0c-b917-b3fc84a6fcdf}><MMHADPQG1093.dll> [N/A]
<{3A908760-8000-4000-A000-9000322145A3}><C:\WINDOWS\system32\akjsckaq.dll> [N/A]
<{E8A3B193-77E3-4FB3-986D-F4FA4828BAFC}><C:\WINDOWS\system32\wklsdd.dll> []
<{6FD45A54-9875-698F-E56E-65102358FDF6}><C:\WINDOWS\system32\apsgfjba.dll> [N/A]
<{35671234-7890-ABCD-CDEF-567801237653}><C:\WINDOWS\system32\yxcschlp.dll> [N/A]
<{4F4F0064-71E0-4f0d-0023-708476C7815F}><C:\WINDOWS\system32\midimapcq.dll> [N/A]
<{4F4F0064-71E0-4f0d-0003-708476C7815F}><C:\WINDOWS\system32\midimapgj.dll> [N/A]
<{6C648541-1025-9650-9057-6541258720C6}><C:\WINDOWS\system32\mndhfdwd.dll> [N/A]
<{c7c5224f-143b-4c7e-bc8a-a6b7e70f0f60}><C:\WINDOWS\system32\MMKAFNFW1100.dll> [N/A]
<{4A698102-5904-AFD0-20DF-CD1A65829CA4}><C:\WINDOWS\system32\zycbdime.dll> [N/A]
<{91954FAC-1023-154F-895A-1458258AD819}><C:\WINDOWS\system32\ypdjgbmp.dll> [N/A]
<{5A069845-2036-6084-9054-6087502480A5}><C:\WINDOWS\system32\ozfyebyt.dll> [N/A]
<{4F4F0064-71E0-4f0d-0022-708476C7815F}><C:\WINDOWS\system32\midimapqn3.dll> [N/A]
<{25FD6584-698F-BCD2-602C-698745210352}><C:\WINDOWS\system32\rijxbkin.dll> []
<{43512378-9874-5641-1025-985420368734}><C:\WINDOWS\system32\oswxdttb.dll> [N/A]
<{4F4F0064-71E0-4f0d-0021-708476C7815F}><C:\WINDOWS\system32\midimappt.dll> [N/A]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<midimapmy><C:\WINDOWS\system32\midimapmy.dll> [N/A]
<midimapwd><C:\WINDOWS\system32\midimapwd.dll> [N/A]
<midimapzx><C:\WINDOWS\system32\midimapzx.dll> [N/A]
<midimaptl><C:\WINDOWS\system32\midimaptl.dll> [N/A]
<midimapfy><C:\WINDOWS\system32\midimapfy.dll> [N/A]
<midimapwl><C:\WINDOWS\system32\midimapwl.dll> [N/A]
<midimapjr><C:\WINDOWS\system32\midimapjr.dll> [N/A]
<midimapcqsj><C:\WINDOWS\system32\midimapcqsj.dll> [N/A]
<midimapcb><C:\WINDOWS\system32\midimapcb.dll> [N/A]
<midimapjx2><C:\WINDOWS\system32\midimapjx2.dll> [N/A]
<midimapcq><C:\WINDOWS\system32\midimapcq.dll> [N/A]
<midimapgj><C:\WINDOWS\system32\midimapgj.dll> [N/A]
<midimapqn3><C:\WINDOWS\system32\midimapqn3.dll> [N/A]
<midimappt><C:\WINDOWS\system32\midimappt.dll> [N/A]
删除驱动程序
[19228710a2bdf917 / 19228710a2bdf917][Stopped/Manual Start]
<\??\C:\19228710a2bdf917.dat><N/A>
[1cff0350f488d5b6 / 1cff0350f488d5b6][Stopped/Manual Start]
<\??\C:\1cff0350f488d5b6.dat><N/A>
[45f3ea38089f8026 / 45f3ea38089f8026][Stopped/Manual Start]
<\??\C:\45f3ea38089f8026.dat><N/A>
[826775ccc00b22e6 / 826775ccc00b22e6][Stopped/Manual Start]
<\??\C:\826775ccc00b22e6.dat><N/A>
[a68411aca1507bd0 / a68411aca1507bd0][Stopped/Manual Start]
<\??\C:\a68411aca1507bd0.dat><N/A>
[bzzxur / bzzxur][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\bzzxur><N/A>
[ebc / ebc][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\ebc><N/A>
[lhjfc / lhjfc][Stopped/Manual Start]
<\??\C:\WINDOWS\system32\lhjfc><N/A>
[R2A / R2A][Stopped/Disabled]
<\??\C:\WINDOWS\system32a2.sys><N/A>
删除浏览器加载项
[]
{18093456-9012-4568-9076-908765467181} <C:\WINDOWS\system32\tisqatyu.dll, N/A>
[]
{22596546-2036-9451-6058-658402589722} <C:\WINDOWS\system32\opshbbty.dll, N/A>
[]
{25FD6584-698F-BCD2-602C-698745210352} <C:\WINDOWS\system32\rijxbkin.dll, N/A>
[]
{2B69874A-C58C-458D-69F0-698F874E41B2} <C:\WINDOWS\system32\lassaplo.dll, N/A>
[]
{35671234-7890-ABCD-CDEF-567801237653} <C:\WINDOWS\system32\yxcschlp.dll, N/A>
[]
{37AC9076-C898-B098-D098-A18319080973} <C:\WINDOWS\system32\nhmxcjkl.dll, N/A>
[]
{3A908760-8000-4000-A000-9000322145A3} <C:\WINDOWS\system32\akjsckaq.dll, N/A>
[]
{3C954872-1230-6541-9548-6541025884C3} <C:\WINDOWS\system32\lijzclit.dll, N/A>
[]
{43512378-9874-5641-1025-985420368734} <C:\WINDOWS\system32\oswxdttb.dll, N/A>
[]
{4A698102-5904-AFD0-20DF-CD1A65829CA4} <C:\WINDOWS\system32\zycbdime.dll, N/A>
[]
{528DF602-9541-A985-210A-984A698C6F25} <C:\WINDOWS\system32\ptjhehlp.dll, N/A>
[]
{5A069845-2036-6084-9054-6087502480A5} <C:\WINDOWS\system32\ozfyebyt.dll, N/A>
[]
{5B1AEF69-DDAE-FDAD-DCAB-698F026ABDB5} <C:\WINDOWS\system32\oohxdbyt.dll, N/A>
[]
{5FD45A54-9875-698F-E56E-65102358FDF5} <C:\WINDOWS\system32\apsgejba.dll, N/A>
[]
{6A041F13-A111-12A3-B0CF-F99818AA68A6} <C:\WINDOWS\system32\zxmscwin.dll, N/A>
[]
{6C648541-1025-9650-9057-6541258720C6} <C:\WINDOWS\system32\mndhfdwd.dll, N/A>
[]
{6FD45A54-9875-698F-E56E-65102358FDF6} <C:\WINDOWS\system32\apsgfjba.dll, N/A>
[]
{7C8D1401-A58D-A81C-CD24-A5915C4517C7} <C:\WINDOWS\system32\mnmhgsrv.dll, N/A>
[]
{91954FAC-1023-154F-895A-1458258AD819} <C:\WINDOWS\system32\ypdjgbmp.dll, N/A>
[]
{9490415F-65F8-B5C5-D8BA-9405FB120549} <C:\WINDOWS\system32\yzztimsn.dll, N/A>
然后下载arswp(Windows清理助手)清理下..
http://www.arswp.com/download/arswp/arswp.rar清理临时文件夹:
打开我的电脑-工具-文件夹选项-查看-显示隐藏文件-隐藏受保护的系统文件(勾去掉)-确定
重起进入安全模式(开机不停的按F8,选择安全模式启动) 清空下列临时文件夹中所有内容:
C:\Documents and Settings\用户名\Local Settings\Temporary Internet Files
C:\Documents and Settings\用户名\Local Settings\Temp
C:\WINDOWS\TEMP
更新修复杀软,全盘杀毒