又是木马群
最垃圾的病毒
删除启动项
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run]
下的 <FULIN-53C110B2F><.vbe> [File is missing][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
下的注册表项目及<>内文件 <{45AADFAA-DD36-42AB-83AD-0521BBF58C24}><> [N/A]
<{6E6CA8A1-81BC-4707-A54C-F4903DD70BAD}><> [N/A]
<{91698482-6555-3666-1222-954784129019}><> [N/A]
<{37AC9076-C898-B098-D098-A18319080973}><C:\WINDOWS\system32\nhmxcjkl.dll> [File is missing]
<{5B1AEF69-DDAE-FDAD-DCAB-698F026ABDB5}><> [N/A]
<{EB71E0B3-E97D-4D30-8733-E28266467617}><> [N/A]
<{60A345CD-ABCD-EFAB-CDEF-ABCD01020306}><C:\WINDOWS\system32\pqzfajke.dll> [File is missing]
<{2B69874A-C58C-458D-69F0-698F874E41B2}><C:\WINDOWS\system32\lassaplo.dll> [File is missing]
<{43512378-9874-5641-1025-985420368734}><C:\WINDOWS\system32\oswxdttb.dll> [File is missing]
<{54FAE856-AD58-20CB-A025-CD4895FA6E45}><C:\WINDOWS\system32\pjjxedwd.dll> [File is missing]
删除驱动
[1204ee80b086b03c / 1204ee80b086b03c][Stopped/Manual Start]
<\??\C:\1204ee80b086b03c.dat><N/A>
[cqet / cqet][Stopped/Auto Start]
<\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\tmp97.tmp><N/A>
删除浏览器加载项[]
{2B69874A-C58C-458D-69F0-698F874E41B2} <C:\WINDOWS\system32\lassaplo.dll, N/A>
[]
{37AC9076-C898-B098-D098-A18319080973} <C:\WINDOWS\system32\nhmxcjkl.dll, N/A>
[]
{43512378-9874-5641-1025-985420368734} <C:\WINDOWS\system32\oswxdttb.dll, N/A>
[]
{54FAE856-AD58-20CB-A025-CD4895FA6E45} <C:\WINDOWS\system32\pjjxedwd.dll, N/A>
[]
{60A345CD-ABCD-EFAB-CDEF-ABCD01020306} <C:\WINDOWS\system32\pqzfajke.dll, N/A>[]
{2B69874A-C58C-458D-69F0-698F874E41B2} <C:\WINDOWS\system32\lassaplo.dll, N/A>[]
{37AC9076-C898-B098-D098-A18319080973} <C:\WINDOWS\system32\nhmxcjkl.dll, N/A>[]
{43512378-9874-5641-1025-985420368734} <C:\WINDOWS\system32\oswxdttb.dll, N/A>
[]
{54FAE856-AD58-20CB-A025-CD4895FA6E45} <C:\WINDOWS\system32\pjjxedwd.dll, N/A>
[]
{60A345CD-ABCD-EFAB-CDEF-ABCD01020306} <C:\WINDOWS\system32\pqzfajke.dll, N/A>