操作方法见我签名
对于病毒文件
必须删除文件并强力抑制再生
否则杀毒失败
删除启动项
<internat.exe><internat.exe> [N/A]
<{00070007-0007-0007-0007-00070007BB15}><C:\WINDOWS\system32\dpvvoxmh.dll> [File is missing]
<{00170017-0017-0017-0017-00170017BB15}><C:\WINDOWS\system32\msobjstl.dll> [File is missing]
<{00180018-0018-0018-0018-00180018BB15}><C:\WINDOWS\system32\mstimewd.dll> [File is missing]
<{00010001-0001-0001-0001-00010001BB15}><C:\WINDOWS\system32\adsntzt.dll> [File is missing]
<{8FD45A54-9875-698F-E56E-65102358FDF8}><C:\WINDOWS\system32\apsghjba.dll> [File is missing]
<{00270027-0027-0027-0027-00270027BB15}><C:\WINDOWS\system32\wmpuiqhx.dll> [File is missing]
<{00230023-0023-0023-0023-00230023BB15}><C:\WINDOWS\system32\rasdlgcq.dll> [File is missing]
<{00050005-0005-0005-0005-00050005BB15}><C:\WINDOWS\system32\cliconfgzx.dll> [File is missing]
<{8A041F13-A111-12A3-B0CF-F99818AA68A8}><C:\WINDOWS\system32\zxmsewin.dll> [File is missing]
<{6C648541-1025-9650-9057-6541258720C6}><C:\WINDOWS\system32\mndhfdwd.dll> [File is missing]
<{00060006-0006-0006-0006-00060006BB15}><C:\WINDOWS\system32\dispexcb.dll> [File is missing]
<{00150015-0015-0015-0015-00150015BB15}><C:\WINDOWS\system32\wloxygir.dll> [File is missing]
<{00040004-0004-0004-0004-00040004BB15}><C:\WINDOWS\system32\catsrvwl.dll> [File is missing]
<{00120012-0012-0012-0012-00120012BB15}><C:\WINDOWS\system32\kbdswjr.dll> [File is missing]
<{00330033-0033-0033-0033-00330033BB15}><C:\WINDOWS\system32\tscfgwmijxsj.dll> [File is missing]
<{00250025-0025-0025-0025-00250025BB15}><C:\WINDOWS\system32\slbiopfs2.dll> [File is missing]
<{00300030-0030-0030-0030-00300030BB15}><C:\WINDOWS\system32\imgutilhx2.dll> [File is missing]
<dpvvoxmh.dll><C:\WINDOWS\system32\dpvvoxmh.dll> [File is missing]
<msobjstl.dll><C:\WINDOWS\system32\msobjstl.dll> [File is missing]
<mstimewd.dll><C:\WINDOWS\system32\mstimewd.dll> [File is missing]
<adsntzt.dll><C:\WINDOWS\system32\adsntzt.dll> [File is missing]
<wmpuiqhx.dll><C:\WINDOWS\system32\wmpuiqhx.dll> [File is missing]
<rasdlgcq.dll><C:\WINDOWS\system32\rasdlgcq.dll> [File is missing]
<cliconfgzx.dll><C:\WINDOWS\system32\cliconfgzx.dll> [File is missing]
<dispexcb.dll><C:\WINDOWS\system32\dispexcb.dll> [File is missing]
<wloxygir.dll><C:\WINDOWS\system32\wloxygir.dll> [File is missing]
<catsrvwl.dll><C:\WINDOWS\system32\catsrvwl.dll> [File is missing]
<kbdswjr.dll><C:\WINDOWS\system32\kbdswjr.dll> [File is missing]
<tscfgwmijxsj.dll><C:\WINDOWS\system32\tscfgwmijxsj.dll> [File is missing]
<slbiopfs2.dll><C:\WINDOWS\system32\slbiopfs2.dll> [File is missing]
<imgutilhx2.dll><C:\WINDOWS\system32\imgutilhx2.dll> [File is missing]
删除驱动
[03ac44d422a4ff12 / 03ac44d422a4ff12][Stopped/Manual Start]
<\??\C:\03ac44d422a4ff12.dat><N/A>
[1046e7cc3d301c8a / 1046e7cc3d301c8a][Stopped/Manual Start]
<\??\C:\1046e7cc3d301c8a.dat><N/A>
[250f0b38b1cf4f03 / 250f0b38b1cf4f03][Stopped/Manual Start]
<\??\C:\250f0b38b1cf4f03.dat><N/A>
[26fd49585b37e1b3 / 26fd49585b37e1b3][Stopped/Manual Start]
<\??\C:\26fd49585b37e1b3.dat><N/A>
[2c05 / 2c05p][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\2c05p.sys><N/A>
[30fb8f608edd110f / 30fb8f608edd110f][Stopped/Manual Start]
<\??\C:\30fb8f608edd110f.dat><N/A>
[3367b4e4219fb856 / 3367b4e4219fb856][Stopped/Manual Start]
<\??\C:\3367b4e4219fb856.dat><N/A>
[3555f304c757cf85 / 3555f304c757cf85][Stopped/Manual Start]
<\??\C:\3555f304c757cf85.dat><N/A>
[3a07661029682c3a / 3a07661029682c3a][Stopped/Manual Start]
<\??\C:\3a07661029682c3a.dat><N/A>
[3c435428b114a5bb / 3c435428b114a5bb][Stopped/Manual Start]
<\??\C:\3c435428b114a5bb.dat><N/A>
[47e22858f2663695 / 47e22858f2663695][Stopped/Manual Start]
<\??\C:\47e22858f2663695.dat><N/A>
[5df3ca84d035c526 / 5df3ca84d035c526][Stopped/Manual Start]
<\??\C:\5df3ca84d035c526.dat><N/A>
[60ddd76cb98ec134 / 60ddd76cb98ec134][Stopped/Manual Start]
<\??\C:\60ddd76cb98ec134.dat><N/A>
[67267930b07e568a / 67267930b07e568a][Stopped/Manual Start]
<\??\C:\67267930b07e568a.dat><N/A>
[726e3df8a2212726 / 726e3df8a2212726][Stopped/Manual Start]
<\??\C:\726e3df8a2212726.dat><N/A>
[8f9d78b4fd21284a / 8f9d78b4fd21284a][Stopped/Manual Start]
<\??\C:\8f9d78b4fd21284a.dat><N/A>
[9df62260014572b5 / 9df62260014572b5][Stopped/Manual Start]
<\??\C:\9df62260014572b5.dat><N/A>
[b315553490be6574 / b315553490be6574][Stopped/Manual Start]
<\??\C:\b315553490be6574.dat><N/A>
[bf7fc0c0eb470a07 / bf7fc0c0eb470a07][Stopped/Manual Start]
<\??\C:\bf7fc0c0eb470a07.dat><N/A>
[bgcdjceg / bgcdjceg][Stopped/Boot Start]
<C:\windos\system32\drivers\bgcdjceg.sys><N/A>
[cc37dc4415424bec / cc37dc4415424bec][Stopped/Manual Start]
<\??\C:\cc37dc4415424bec.dat><N/A>
[cibjurs82 / cibjurs82][Stopped/Boot Start]
<C:\windos\system32\drivers\cibjurs82.sys><N/A>
[d0e94f50a97ba9c0 / d0e94f50a97ba9c0][Stopped/Manual Start]
<\??\C:\d0e94f50a97ba9c0.dat><N/A>
[d636224cad612860 / d636224cad612860][Stopped/Manual Start]
<\??\C:\d636224cad612860.dat><N/A>
[e75200e47a4a4478 / e75200e47a4a4478][Stopped/Manual Start]
<\??\C:\e75200e47a4a4478.dat><N/A>
[ee663a04b4f6aa6e / ee663a04b4f6aa6e][Stopped/Manual Start]
<\??\C:\ee663a04b4f6aa6e.dat><N/A>
[f9adfeccad4cd342 / f9adfeccad4cd342][Stopped/Manual Start]
<\??\C:\f9adfeccad4cd342.dat><N/A>
MS / MS][Stopped/Manual Start]
<\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\tmpC.tmp><N/A>
[ntptdb / ntptdb][Running/]
<2 - 系统找不到指定的文件。
><N/A>
[nv / nv][Running/Manual Start]
<system32\DRIVERS\nv4_mini.sys><NVIDIA Corporation>
[PciHardDisk / PciHardDisk][Stopped/]
<2 - 系统找不到指定的文件。
><N/A>
[acpidisk / acpidisk][Running/Manual Start]
<2 - 系统找不到指定的文件。
><N/A>
删除浏览器加载项及对应文件
[]
{6C648541-1025-9650-9057-6541258720C6} <C:\WINDOWS\system32\mndhfdwd.dll, N/A>
[BHO5]
{9873E994-669E-4044-BA64-E5D9AD534A55} <C:\WINDOWS\system32\sofie.dll, N/A>
[]
{6C648541-1025-9650-9057-6541258720C6} <C:\WINDOWS\system32\mndhfdwd.dll, N/A>
并删除文件
C:\WINDOWS\system32\winlib .dll