删除重启后使用SREng修复下面各项:
启动项目 -- 注册表之如下项删除:
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360rpt.exe]] <IFEO[360rpt.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360Safe.exe]] <IFEO[360Safe.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360tray.exe]] <IFEO[360tray.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\adam.exe]] <IFEO[adam.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AgentSvr.exe]] <IFEO[AgentSvr.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AntiArp.exe]] <IFEO[AntiArp.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AppSvc32.exe]] <IFEO[AppSvc32.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autoruns.exe]] <IFEO[autoruns.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avconsol.exe]] <IFEO[avconsol.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avgrssvc.exe]] <IFEO[avgrssvc.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AvMonitor.exe]] <IFEO[AvMonitor.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avp.com]] <IFEO[avp.com]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avp.exe]] <IFEO[avp.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CCenter.exe]] <IFEO[CCenter.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ccSvcHst.exe]] <IFEO[ccSvcHst.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\EGHOST.exe]] <IFEO[EGHOST.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FileDsty.exe]] <IFEO[FileDsty.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\filemon.exe]] <IFEO[filemon.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FTCleanerShell.exe]] <IFEO[FTCleanerShell.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FYFireWall.exe]] <IFEO[FYFireWall.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GFRing3.exe]] <IFEO[GFRing3.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GFUpd.exe]] <IFEO[GFUpd.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\HijackThis.exe]] <IFEO[HijackThis.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iparmo.exe]] <IFEO[iparmo.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Iparmor.exe]] <IFEO[Iparmor.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\isPwdSvc.exe]] <IFEO[isPwdSvc.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kabaload.exe]] <IFEO[kabaload.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KaScrScn.SCR]] <IFEO[KaScrScn.SCR]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KASMain.exe]] <IFEO[KASMain.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KASTask.exe]] <IFEO[KASTask.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAV32.exe]] <IFEO[KAV32.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVDX.exe]] <IFEO[KAVDX.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVPF.exe]] <IFEO[KAVPF.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVPFW.exe]] <IFEO[KAVPFW.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVSetup.exe]] <IFEO[KAVSetup.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVStart.exe]] <IFEO[KAVStart.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KISLnchr.exe]] <IFEO[KISLnchr.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KMailMon.exe]] <IFEO[KMailMon.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KMFilter.exe]] <IFEO[KMFilter.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFW32.exe]] <IFEO[KPFW32.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFW32X.exe]] <IFEO[KPFW32X.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPfwSvc.exe]] <IFEO[KPfwSvc.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KRegEx.exe]] <IFEO[KRegEx.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KRepair.com]] <IFEO[KRepair.com]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatch.exe]] <IFEO[KWatch.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatch9x.exe]] <IFEO[KWatch9x.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatchX.exe]] <IFEO[KWatchX.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MagicSet.exe]] <IFEO[MagicSet.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mcconsol.exe]] <IFEO[mcconsol.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mmqczj.exe]] <IFEO[mmqczj.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mmsk.exe]] <IFEO[mmsk.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Navapsvc.exe]] <IFEO[Navapsvc.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Navapw32.exe]] <IFEO[Navapw32.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32.exe]] <IFEO[nod32.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32krn.exe]] <IFEO[nod32krn.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32kui.exe]] <IFEO[nod32kui.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NPFMntor.exe]] <IFEO[NPFMntor.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PFW.exe]] <IFEO[PFW.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PFWLiveUpdate.exe]] <IFEO[PFWLiveUpdate.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\procexp.exe]] <IFEO[procexp.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\QHSET.exe]] <IFEO[QHSET.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\QQKav.exe]] <IFEO[QQKav.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Ras.exe]] <IFEO[Ras.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RavMonD.exe]] <IFEO[RavMonD.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RavStub.exe]] <IFEO[RavStub.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RawCopy.exe]] <IFEO[RawCopy.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RegClean.exe]] <IFEO[RegClean.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regmon.exe]] <IFEO[regmon.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RegTool.exe]] <IFEO[RegTool.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwcfg.exe]] <IFEO[rfwcfg.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwmain.exe]] <IFEO[rfwmain.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwProxy.exe]] <IFEO[rfwProxy.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwsrv.exe]] <IFEO[rfwsrv.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwstub.exe]] <IFEO[rfwstub.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RsAgent.exe]] <IFEO[RsAgent.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Rsaupd.exe]] <IFEO[Rsaupd.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\runiep.exe]] <IFEO[runiep.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safeboxTray.exe]] <IFEO[safeboxTray.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safelive.exe]] <IFEO[safelive.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\scan32.exe]] <IFEO[scan32.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\shcfg32.exe]] <IFEO[shcfg32.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SmartUp.exe]] <IFEO[SmartUp.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SREng.EXE]] <IFEO[SREng.EXE]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SuperKiller.exe]] <IFEO[SuperKiller.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\symlcsvc.exe]] <IFEO[symlcsvc.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SysSafe.exe]] <IFEO[SysSafe.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\taskmgr.exe]] <IFEO[taskmgr.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Thunder5.exe]] <IFEO[Thunder5.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TrojanDetector.exe]] <IFEO[TrojanDetector.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Trojanwall.exe]] <IFEO[Trojanwall.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TrojDie.kxp]] <IFEO[TrojDie.kxp]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxAgent.exe]] <IFEO[UmxAgent.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxAttachment.exe]] <IFEO[UmxAttachment.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxCfg.exe]] <IFEO[UmxCfg.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxFwHlp.exe]] <IFEO[UmxFwHlp.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxPol.exe]] <IFEO[UmxPol.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UpLive.exe]] <IFEO[UpLive.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vsstat.exe]] <IFEO[vsstat.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\webscanx.exe]] <IFEO[webscanx.exe]>
[[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WoptiClean.exe]] <IFEO[WoptiClean.exe]>
[BDE83296] <C:\WINDOWS\system32\bdeojipm.dll>
[0E4ED413] <C:\WINDOWS\system32\gekedkhj.dll>
[C830DE42] <C:\WINDOWS\system32\cojgdeki.dll>
[95F2CF39] <C:\WINDOWS\system32\plficfjp.dll>
[ACE39802] <C:\WINDOWS\system32\acejpogi.dll>
[343BA919] <C:\WINDOWS\system32\jkjbaphp.dll>
[BFB9F9CB] <C:\WINDOWS\system32\bfbpfpcb.dll>
[71368092] <C:\WINDOWS\system32\nhjmogpi.dll>
[5D8B55EB] <C:\WINDOWS\system32\ldoblleb.dll>
[F5285031] <C:\WINDOWS\system32\fliolgjh.dll>
[E241D70C] <C:\WINDOWS\system32\eikhdngc.dll>
[049C24C4] <C:\WINDOWS\system32\gkpcikck.dll>
[2E56C1ED] <C:\WINDOWS\system32\ielmched.dll>
[01138A6B] <C:\WINDOWS\system32\ghhjoamb.dll>
[B059E698] <C:\WINDOWS\system32\bglpempo.dll>
[8E88E8E4] <C:\WINDOWS\system32\oeooeoek.dll>
[95DA64ED] <C:\WINDOWS\system32\pldamked.dll>
[B2F58E50] <C:\WINDOWS\system32\bifloelg.dll>
[C2BFFE34] <C:\WINDOWS\system32\cibffejk.dll>
[F24F0435] <C:\WINDOWS\system32\fikfgkjl.dll>
[FF6330AD] <C:\WINDOWS\system32\ffmjjgad.dll>
[0B69C01E] <C:\WINDOWS\system32\gbmpcghe.dll>
[9104E329] <C:\WINDOWS\system32\phgkejip.dll>
[3E430204] <C:\WINDOWS\system32\jekjgigk.dll>
[ABBE412B] <C:\WINDOWS\system32\abbekhib.dll>
[22D1EA85] <C:\WINDOWS\system32\iidheaol.dll>
[10927F53] <C:\WINDOWS\system32\hgpinflj.dll>
[3CD71417] <C:\WINDOWS\system32\jcdnhkhn.dll>
[E4178703] <C:\WINDOWS\system32\ekhnongj.dll>
[72A2FC1D] <C:\WINDOWS\system32\niaifchd.dll>
[7FBE865C] <C:\WINDOWS\system32\nfbeomlc.dll>
[323A80CB] <C:\WINDOWS\system32\jijaogcb.dll>
[BBD97E54] <C:\WINDOWS\system32\bbdpnelk.dll>
[CA0EE0A2] <C:\WINDOWS\system32\cageegai.dll>
[B0A36E98] <C:\WINDOWS\system32\bgajmepo.dll>
[90178D3F] <C:\WINDOWS\system32\pghnodjf.dll>
[742BE8FD] <C:\WINDOWS\system32\nkibeofd.dll>
[5059745F] <C:\WINDOWS\system32\lglpnklf.dll>
[A92D50C7] <C:\WINDOWS\system32\apidlgcn.dll>
[C2AACAC1] <C:\WINDOWS\system32\ciaacach.dll>
[5E60B816] <C:\WINDOWS\system32\lemgbohm.dll>
[9741E3AF] <C:\WINDOWS\system32\pnkhejaf.dll>
[60A4C19F] <C:\WINDOWS\system32\mgakchpf.dll>
[0F3D9AAC] <C:\WINDOWS\system32\gfjdpaac.dll>
[3D8C2E2D] <C:\WINDOWS\system32\jdocieid.dll>
[5C348674] <C:\WINDOWS\system32\lcjkomnk.dll>
[D73779BF] <C:\WINDOWS\system32\dnjnnpbf.dll>
[CFD4C499] <C:\WINDOWS\system32\cfdkckpp.dll>
[67C393A3] <C:\WINDOWS\system32\mncjpjaj.dll>
[6499E44F] <C:\WINDOWS\system32\mkppekkf.dll>
[7735994B] <C:\WINDOWS\system32\nnjlppkb.dll>
[B4FF3726] <C:\WINDOWS\system32\bkffjnim.dll>
[WinlogonNotify: xy3safe] <C:\WINDOWS\system32\360mon.dll>
[IFEO[360rpt.exe]] <ntsd -d>
[IFEO[360Safe.exe]] <ntsd -d>
[IFEO[360tray.exe]] <ntsd -d>
[IFEO[adam.exe]] <ntsd -d>
[IFEO[AgentSvr.exe]] <ntsd -d>
[IFEO[AntiArp.exe]] <ntsd -d>
[IFEO[AppSvc32.exe]] <ntsd -d>
[IFEO[autoruns.exe]] <ntsd -d>
[IFEO[avconsol.exe]] <ntsd -d>
[IFEO[avgrssvc.exe]] <ntsd -d>
[IFEO[AvMonitor.exe]] <ntsd -d>
[IFEO[avp.com]] <ntsd -d>
[IFEO[avp.exe]] <ntsd -d>
[IFEO[CCenter.exe]] <ntsd -d>
[IFEO[ccSvcHst.exe]] <ntsd -d>
[IFEO[EGHOST.exe]] <ntsd -d>
[IFEO[FileDsty.exe]] <ntsd -d>
[IFEO[filemon.exe]] <ntsd -d>
[IFEO[FTCleanerShell.exe]] <ntsd -d>
[IFEO[FYFireWall.exe]] <ntsd -d>
[IFEO[GFRing3.exe]] <ntsd -d>
[IFEO[GFUpd.exe]] <ntsd -d>
[IFEO[HijackThis.exe]] <ntsd -d>
[IFEO[iparmo.exe]] <ntsd -d>
[IFEO[Iparmor.exe]] <ntsd -d>
[IFEO[isPwdSvc.exe]] <ntsd -d>
[IFEO[kabaload.exe]] <ntsd -d>
[IFEO[KaScrScn.SCR]] <ntsd -d>
[IFEO[KASMain.exe]] <ntsd -d>
[IFEO[KASTask.exe]] <ntsd -d>
[IFEO[KAV32.exe]] <ntsd -d>
[IFEO[KAVDX.exe]] <ntsd -d>
[IFEO[KAVPF.exe]] <ntsd -d>
[IFEO[KAVPFW.exe]] <ntsd -d>
[IFEO[KAVSetup.exe]] <ntsd -d>
[IFEO[KAVStart.exe]] <ntsd -d>
[IFEO[KISLnchr.exe]] <ntsd -d>
[IFEO[KMailMon.exe]] <ntsd -d>
[IFEO[KMFilter.exe]] <ntsd -d>
[IFEO[KPFW32.exe]] <ntsd -d>
[IFEO[KPFW32X.exe]] <ntsd -d>
[IFEO[KPfwSvc.exe]] <ntsd -d>
[IFEO[KRegEx.exe]] <ntsd -d>
[IFEO[KRepair.com]] <ntsd -d>
[IFEO[KWatch.exe]] <ntsd -d>
[IFEO[KWatch9x.exe]] <ntsd -d>
[IFEO[KWatchX.exe]] <ntsd -d>
[IFEO[MagicSet.exe]] <ntsd -d>
[IFEO[mcconsol.exe]] <ntsd -d>
[IFEO[mmqczj.exe]] <ntsd -d>
[IFEO[mmsk.exe]] <ntsd -d>
[IFEO[Navapsvc.exe]] <ntsd -d>
[IFEO[Navapw32.exe]] <ntsd -d>
[IFEO[nod32.exe]] <ntsd -d>
[IFEO[nod32krn.exe]] <ntsd -d>
[IFEO[nod32kui.exe]] <ntsd -d>
[IFEO[NPFMntor.exe]] <ntsd -d>
[IFEO[PFW.exe]] <ntsd -d>
[IFEO[PFWLiveUpdate.exe]] <ntsd -d>
[IFEO[procexp.exe]] <ntsd -d>
[IFEO[QHSET.exe]] <ntsd -d>
[IFEO[QQKav.exe]] <ntsd -d>
[IFEO[Ras.exe]] <ntsd -d>
[IFEO[RavMonD.exe]] <ntsd -d>
[IFEO[RavStub.exe]] <ntsd -d>
[IFEO[RawCopy.exe]] <ntsd -d>
[IFEO[RegClean.exe]] <ntsd -d>
[IFEO[regmon.exe]] <ntsd -d>
[IFEO[RegTool.exe]] <ntsd -d>
[IFEO[rfwcfg.exe]] <ntsd -d>
[IFEO[rfwmain.exe]] <ntsd -d>
[IFEO[rfwProxy.exe]] <ntsd -d>
[IFEO[rfwsrv.exe]] <ntsd -d>
[IFEO[rfwstub.exe]] <ntsd -d>
[IFEO[RsAgent.exe]] <ntsd -d>
[IFEO[Rsaupd.exe]] <ntsd -d>
[IFEO[runiep.exe]] <ntsd -d>
[IFEO[safeboxTray.exe]] <ntsd -d>
[IFEO[safelive.exe]] <ntsd -d>
[IFEO[scan32.exe]] <ntsd -d>
[IFEO[shcfg32.exe]] <ntsd -d>
[IFEO[SmartUp.exe]] <ntsd -d>
[IFEO[SREng.EXE]] <ntsd -d>
[IFEO[SuperKiller.exe]] <ntsd -d>
[IFEO[symlcsvc.exe]] <ntsd -d>
[IFEO[SysSafe.exe]] <ntsd -d>
[IFEO[taskmgr.exe]] <ntsd -d>
[IFEO[Thunder5.exe]] <svchost.exe>
[IFEO[TrojanDetector.exe]] <ntsd -d>
[IFEO[Trojanwall.exe]] <ntsd -d>
[IFEO[TrojDie.kxp]] <ntsd -d>
[IFEO[UmxAgent.exe]] <ntsd -d>
[IFEO[UmxAttachment.exe]] <ntsd -d>
[IFEO[UmxCfg.exe]] <ntsd -d>
[IFEO[UmxFwHlp.exe]] <ntsd -d>
[IFEO[UmxPol.exe]] <ntsd -d>
[IFEO[UpLive.exe]] <ntsd -d>
[IFEO[vsstat.exe]] <ntsd -d>
[IFEO[webscanx.exe]] <ntsd -d>
[IFEO[WoptiClean.exe]] <ntsd -d>
启动项目 -- 服务-- 驱动程序之如下项禁用:
[4901228 / 4901228] <\??\C:\WINDOWS\system32\4901228.sys>
[4c70249 / 4c70249] <\??\C:\WINDOWS\system32\4c70249.sys>
[8b52f47 / 8b52f47] <\??\C:\WINDOWS\system32\8b52f47.sys>
[io / io] <>
[io / io] <>
[c551839 / c551839] <\??\C:\WINDOWS\system32\c551839.sys>
系统修复-- HOSTS文件--重置