backdoor.gpigeon.shk是不是灰鸽子变种,如何去除?
瑞星最新版本杀完72个病毒文件重启后又有,原来多少个还是多少个,不知道瑞星是干什么用的!附上HijackThis日志,请高手指教。下面是瑞星删除的其中两个病毒文件,在安全模式下只找到了第二个文件,第一个根本看不到!郁闷....
Backdoor.Gpigeon.shk 删除成功 05-08-06 10:25 C:\WINNT WIN_Server.DLL\本机
Backdoor.Gpigeon.shk 删除成功 05-08-06 10:25 C:\WINNT WIN_Server_Hook.DLL\本机
这个是HijackThis v1.99.1日志文件,怀疑WIN_server_hook.dll文件,但是在安全模式下又找不到其它的疑似文件,比如win_server.exe,win_server.dll,win_serverkey.dll。请高手指点迷津
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINNT\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINNT\system32\ati2sgag.exe
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Corporation Limited - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - rising - C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
O23 - Service: WINServer (WIN GronServer) - Unknown owner - C:\WINNT\WIN_Server.exe