瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 俺中了backdoor.gpigeon.shl,跪求各位高手

1   1  /  1  页   跳转

俺中了backdoor.gpigeon.shl,跪求各位高手

俺中了backdoor.gpigeon.shl,跪求各位高手

shk的升级版本,小弟我真是焦头烂额了,安全模式下找不到病毒服务器路径,找不到病毒文件,与传统的灰鸽子病毒好象不一样,求各位了
最后编辑2005-08-10 10:38:46
分享到:
gototop
 

我的也好多这个病毒 他们可能是一个家族Backdoor.Gpigeon.bc《---我那个从起就出来 也不知道怎么搞的 你找不到路径可能因为是常驻内存的 我的也找不到!:)
gototop
 

兄弟 有高手给我回复了 你去这看看http://it.rising.com.cn/newSite/Channels/Anti_Virus/Antivirus_Base/Antivirus_Tech/200502/01-112318318.htm :)
gototop
 


这是我的扫描结果,各位高手看看
O23 - Service: aqnzwzp - Unknown - \\10.158.195.166\E$\sysconf.exe (file missing)
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: win_xp2 - Unknown - C:\WINNT\win_xp2.exe
O23 - Service: Logical Disk Manager Administrative Service - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: hgjhy - Unknown - \\10.158.195.166\E$\sysconf.exe (file missing)
O23 - Service: ll_reg - Unknown - Rundll32.exe (file missing)
O23 - Service: Merhe1p - Unknown - C:\WINNT\Merhe1p.exe
O23 - Service: Microsoft NetWork FireWall Services - Unknown - NetServices.exe (file missing)
O23 - Service: NVIDIA Display Driver Service - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: Rising Personal Firewall Service - Beijing Rising Technology Corporation Limited - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rwx - Unknown - C:\WINNT\system32\svhosts.exe (file missing)
O23 - Service: Smart Card Helper - Unknown - C:\WINNT\system32\scardsvr32.exe (file missing)
O23 - Service: Security Center Console - Unknown - C:\WINNT\Security.exe (file missing)
O23 - Service: ulfzlw - Unknown - \\10.158.195.166\E$\sysconf.exe (file missing)
O23 - Service: Windows Management Instrumentation Driver Extension - Unknown - C:\WINNT\system32\WinDriver.exe (file missing)
gototop
 

O23 - Service: win_xp2 - Unknown - C:\WINNT\win_xp2.exe
这项是
gototop
 

兄弟,我也搞了一周,到目前才解决问题的,你可以看一下这个帖子

http://forum.ikaka.com/topic.asp?board=28&artid=6939337
gototop
 

O23 - Service: Merhe1p - Unknown - C:\WINNT\Merhe1p.exe
还有一个哦,别漏了。
gototop
 

把后面带(file missing)全都修复了,这些是注册表里的垃圾。
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT