1.请使用Xdelbox删除以下文件(关于Xdelbox的下载使用请参考
http://bbs.ikaka.com/showtopic-8442813.aspx)
C:\WINDOWS\system32\explore.exe
C:\WINDOWS\system32\sichost.exe
C:\WINDOWS\system32\spqkesrgz\svchost.exe
C:\DOCUME~1\jzxpc\LOCALS~1\Temp\_tmp.bat
C:\DOCUME~1\jzxpc\LOCALS~1\Temp\_tmp.bat
C:\WINDOWS\system32\DRIVERS\HBKernel.sys
C:\DOCUME~1\jzxpc\LOCALS~1\Temp\_tmp.bat
C:\WINDOWS\system32\drivers\kmsinput.sys
C:\DOCUME~1\jzxpc\LOCALS~1\Temp\_tmp.bat
C:\DOCUME~1\jzxpc\LOCALS~1\Temp\WowInitcode.dll
C:\WINDOWS\system32\730B78A6.dll
C:\WINDOWS\system32\C578B618.dll
2.使用Sreng在注册表启动项目中删除
<{7A6DF30E-D0F2-446f-B4F0-BF4232D60E07}><C:\WINDOWS\system32\cliconfgzx.dll> [File is missing]
<{21BE5FDF-D4CB-4850-AD99-21E68B50BF3F}><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<{E0F3526A-4165-4589-80CD-50B6FBAC3BDA}><C:\WINDOWS\system32\adsntzt.dll> [File is missing]
<{76D44356-B494-443a-BEDC-AA68DE4255E6}><C:\WINDOWS\system32\dispexcb.dll> [File is missing]
<{2CB77746-8ECC-40ca-8217-10CA8BE5EFC8}><C:\WINDOWS\system32\tscfgwmijxsj.dll> [File is missing]
<{EB9660D8-E1CD-4ff0-B4A9-00CD907F928A}><C:\WINDOWS\system32\slbiopfs2.dll> [File is missing]
<{7914E0AA-ECCB-4311-B584-C49538227824}><C:\WINDOWS\system32\jhfrxz.dll> [File is missing]
<{73AE86E6-7F03-4C3B-8980-FB1DA157D3C7}><C:\WINDOWS\system32\fmcvxy.dll> [File is missing]
<{2876D76C-CAAA-4313-AF97-8D1D9A2A1087}><C:\WINDOWS\system32\dpvvoxmh.dll> [File is missing]
<{C578B618-FAF7-4D46-BD55-50655B94FEF7}><C578B618.dll> []
<{84143967-B645-4BFF-B873-DA1DC886E9A7}><C:\WINDOWS\system32\cedafb.dll> [File is missing]
<{DA56B183-A731-402b-9235-2CB8803E212D}><C:\WINDOWS\system32\imgutilhx2.dll> [File is missing]
<{E560642D-A32D-432c-9E7E-9A135CC37E0F}><C:\WINDOWS\system32\kbdgrms.dll> [File is missing]
<{8C41B7F7-3168-400D-A702-0E7EFE0BA304}><C:\WINDOWS\system32\sgdewg.dll> [File is missing]
<xolehlpjh.dll><C:\WINDOWS\system32\xolehlpjh.dll> [File is missing]
<inetresdxc.dll><C:\WINDOWS\system32\inetresdxc.dll> [File is missing]
<lweurqhx.dll><C:\WINDOWS\system32\lweurqhx.dll> [File is missing]
<cliconfgzx.dll><C:\WINDOWS\system32\cliconfgzx.dll> [File is missing]
<qplqmlxl.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<adsntzt.dll><C:\WINDOWS\system32\adsntzt.dll> [File is missing]
<dispexcb.dll><C:\WINDOWS\system32\dispexcb.dll> [File is missing]
<tscfgwmijxsj.dll><C:\WINDOWS\system32\tscfgwmijxsj.dll> [File is missing]
<slbiopfs2.dll><C:\WINDOWS\system32\slbiopfs2.dll> [File is missing]
<tocquijb.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<tvgxxgbr.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<ukrdrdkz.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<qhaebbbe.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<xkzxezi><C:\WINDOWS\system32\sfuszud.dll> [File is missing]
<dpvvoxmh.dll><C:\WINDOWS\system32\dpvvoxmh.dll> [File is missing]
<eyhnqazg.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<dudpvhbb.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<imgutilhx2.dll><C:\WINDOWS\system32\imgutilhx2.dll> [File is missing]
<kbdgrms.dll><C:\WINDOWS\system32\kbdgrms.dll> [File is missing]
<ofwuuwph.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<szcftcxz.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<bhygotsh.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<kmoigyos.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<certmgrkd.dll><C:\WINDOWS\system32\certmgrkd.dll> [File is missing]
<qwuwsjin.dll><C:\WINDOWS\system32\qwuwsjin.dll> [File is missing]
<HBService><explore.exe> [N/A]
j将<Userinit><C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\sichost.exe> 的改成><C:\WINDOWS\system32\userinit.exe,> 注意逗号是必要的!!
在Sreng中的修复系统/hosts文件/点击红色的重置
3.使用附件的东东
4.最后使用windows清理助手清理一下系统
5.上传一份新日志