瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 backdoor.gpigeon.shk是不是灰鸽子变种,如何去除?

1   1  /  1  页   跳转

backdoor.gpigeon.shk是不是灰鸽子变种,如何去除?

backdoor.gpigeon.shk是不是灰鸽子变种,如何去除?

瑞星最新版本杀完72个病毒文件重启后又有,原来多少个还是多少个,不知道瑞星是干什么用的!附上HijackThis日志,请高手指教。下面是瑞星删除的其中两个病毒文件,在安全模式下只找到了第二个文件,第一个根本看不到!郁闷....
Backdoor.Gpigeon.shk                                    删除成功        05-08-06 10:25  C:\WINNT        WIN_Server.DLL\本机
Backdoor.Gpigeon.shk                                    删除成功        05-08-06 10:25  C:\WINNT        WIN_Server_Hook.DLL\本机

这个是HijackThis v1.99.1日志文件,怀疑WIN_server_hook.dll文件,但是在安全模式下又找不到其它的疑似文件,比如win_server.exe,win_server.dll,win_serverkey.dll。请高手指点迷津

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINNT\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINNT\system32\ati2sgag.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Corporation Limited - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - rising - C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
O23 - Service: WINServer (WIN GronServer) - Unknown owner - C:\WINNT\WIN_Server.exe

最后编辑2005-08-06 23:50:19
分享到:
gototop
 

灰鸽子
O23 - Service: WINServer (WIN GronServer) - Unknown owner - C:\WINNT\WIN_Server.exe
http://forum.ikaka.com/topic.asp?board=28&artid=6202404
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT