回复:电脑刚刚中毒快救我,瑞星被遏制住不能启动
[PID: 2776 / 3dfx][C:\DOCUME~1\3dfx\LOCALS~1\Temp\smses.exe] [N/A, ]
[C:\DOCUME~1\3dfx\LOCALS~1\Temp\fixfinal2.dll] [N/A, ]
特殊特权被允许: SeDebugPrivilege [PID = 2776, C:\DOCUME~1\3DFX\LOCALS~1\TEMP\SMSES.EXE]
特殊特权被允许: SeLoadDriverPrivilege [PID = 2776, C:\DOCUME~1\3DFX\LOCALS~1\TEMP\SMSES.EXE]
==================================
结束进程:
C:\DOCUME~1\3dfx\LOCALS~1\Temp\smses.exe
删除文件:
C:\DOCUME~1\3dfx\LOCALS~1\Temp\smses.exe
C:\DOCUME~1\3dfx\LOCALS~1\Temp\fixfinal2.dll
PS:
浏览器加载项:
[InfosecCertInstall Class]
{0EB487C8-E9AC-43A6-8C4C-083999B0622F} <C:\WINDOWS\system32\certInStall.dll, >
建议删除