瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 我是新手,不知道怎么做,请高手指教。。很急的。。

1   1  /  1  页   跳转

我是新手,不知道怎么做,请高手指教。。很急的。。

我是新手,不知道怎么做,请高手指教。。很急的。。

我电脑中毒了。。这是我的SRENG报告。。

[用户系统信息]Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)

附件附件:

下载次数:106
文件类型:application/octet-stream
文件大小:
上传时间:2008-4-9 13:29:46
描述:

最后编辑2008-04-09 14:29:28
分享到:
gototop
 

1.建议使用XDelBox删除以下文件http://www.dodudou.com/down/index.phpXDelBox1.3下载
使用说明:删除时复制所有要删除文件的路径,在待删除文件列表里点击右键选择从剪贴板导入,导入后在要删除文件上点击右键,选择立刻重启删除,电脑会重启进入DOS界面进行删除操作。运行xdelbox前最好卸载所有可移动存储介质(包括U盘,MP3,手机存储卡等)。

txtqltql1039.dll
aysadsad1032.dll
c:\windows\system32\wrqszl.dll
ttnnbnnb1047.dll
ttqacqac1032.dll
c:\windows\system32\wyhesm.dll
c:\windows\system32\zgxfdx.dll
c:\windows\system32\jfrwdh.dll
c:\windows\system32\zgfdet.dll
wfhyt.dll,kghk.dll,ethsh.dll,stehs.dll,sthth.dll,frntrn.dll,qrhhb.dll,drghszd.dll,fngn.dll,gjjte.dll,xgnfn.dll,xfgnhcgfm.dll,serger.dll,bnxnb.dll,fxgnfx.dll,jzijj.dll,xfgnfx.dll,serghjm.dll,thsddh.dll,xbcvxb.dll,zfdzb.dll,xdndn.dll,xdfntt.dll,hgfhk.dll,dnteh.dll,xfng.dll,njritc.dll,chmfcmh.dll,jwlah.dll,gmnait.dll,hfjg.dll,thurh.dll,mgmgmm.dll,oqrthc.dll,fehom.dll,jyjlt.dll,ijatnaw.dll,sehhter.dll,fhjfg.dll,zdbdb.dll,ydgn.dll,dbfb.dll,fjnbv.dll,wmsat.dll,setrhes.dll,cdxbfxdb.dll,xfgnxfn.dll,gjkhj.dll,xdhdg.dll,rhs.dll,mrjhtjd.dll,zdbfbd.dll,fjyjy.dll,fxnfnh.dll,bjrvm.dll,ektvm.dll,rdthr.dll,rgfjj.dll,dscef.dll,crugd.dll,lariytrz.dll,hjaiq.dll,kduy.dll,hkfgh.dll,awef.dll,dfhsh.dll,msepbe.dll,
c:\docume~1\admin\locals~1\temp\tmp5.tmp
c:\program files\tencent\qq\npkcrypt.sys
c:\docume~1\admin\locals~1\temp\1.sys

2.删除重启后使用SREng修复下面各项:

    启动项目 -- 注册表之如下项删除:
[{fff1c771-4dc7-4c01-8be1-8495780f3f1d}]    <txTQLTQL1039.dll>
[{b4d47a00-9d9c-4272-96e1-620385045b02}]    <aySADSAD1032.dll>
[{F99DEFDD-200B-4410-B572-E90883D527D2}]    <C:\WINDOWS\system32\wrqszl.dll>
[{c4bf46a2-1c05-427d-992f-4e24f7d57f68}]    <ttNNBNNB1047.dll>
[{5ac6d3c3-f564-407e-9c4b-ce4b6cd3f9ac}]    <ttQACQAC1032.dll>
[{EB71E0B3-E97D-4D30-8733-E28266467617}]    <C:\WINDOWS\system32\wyhesm.dll>
[{6E6CA8A1-81BC-4707-A54C-F4903DD70BAD}]    <C:\WINDOWS\system32\zgxfdx.dll>
[{841529CB-7F77-4B99-A895-B5441E0D302F}]    <C:\WINDOWS\system32\jfrwdh.dll>
[{28EB3777-3E23-4E72-8449-A992D09D24C3}]    <C:\WINDOWS\system32\zgfdet.dll>
注意该项[AppInit_DLLs]修改:把<wfhyt.dll,kghk.dll,ethsh.dll,stehs.dll,sthth.dll,frntrn.dll,qrhhb.dll,drghszd.dll,fngn.dll,gjjte.dll,xgnfn.dll,xfgnhcgfm.dll,serger.dll,bnxnb.dll,fxgnfx.dll,jzijj.dll,xfgnfx.dll,serghjm.dll,thsddh.dll,xbcvxb.dll,zfdzb.dll,xdndn.dll,xdfntt.dll,hgfhk.dll,dnteh.dll,xfng.dll,njritc.dll,chmfcmh.dll,jwlah.dll,gmnait.dll,hfjg.dll,thurh.dll,mgmgmm.dll,oqrthc.dll,fehom.dll,jyjlt.dll,ijatnaw.dll,sehhter.dll,fhjfg.dll,zdbdb.dll,ydgn.dll,dbfb.dll,fjnbv.dll,wmsat.dll,setrhes.dll,cdxbfxdb.dll,xfgnxfn.dll,gjkhj.dll,xdhdg.dll,rhs.dll,mrjhtjd.dll,zdbfbd.dll,fjyjy.dll,fxnfnh.dll,bjrvm.dll,ektvm.dll,rdthr.dll,rgfjj.dll,dscef.dll,crugd.dll,lariytrz.dll,hjaiq.dll,kduy.dll,hkfgh.dll,awef.dll,dfhsh.dll,msepbe.dll,ieprot.dll>修改为<>即清空

    启动项目 -- 服务-- 驱动程序之如下项禁用:
[ping / ping]    <\??\C:\DOCUME~1\Admin\LOCALS~1\Temp\tmp5.tmp>
[npkcrypt / npkcrypt]    <\??\C:\Program Files\Tencent\QQ\npkcrypt.sys>
[Net Manager / Net Manager]    <\??\C:\DOCUME~1\Admin\LOCALS~1\Temp\1.sys>

wfhyt.dll,kghk.dll,ethsh.dll,stehs.dll,sthth.dll,frntrn.dll,qrhhb.dll,drghszd.dll,fngn.dll,gjjte.dll,xgnfn.dll,xfgnhcgfm.dll,serger.dll,bnxnb.dll,fxgnfx.dll,jzijj.dll,xfgnfx.dll,serghjm.dll,thsddh.dll,xbcvxb.dll,zfdzb.dll,xdndn.dll,xdfntt.dll,hgfhk.dll,dnteh.dll,xfng.dll,njritc.dll,chmfcmh.dll,jwlah.dll,gmnait.dll,hfjg.dll,thurh.dll,mgmgmm.dll,oqrthc.dll,fehom.dll,jyjlt.dll,ijatnaw.dll,sehhter.dll,fhjfg.dll,zdbdb.dll,ydgn.dll,dbfb.dll,fjnbv.dll,wmsat.dll,setrhes.dll,cdxbfxdb.dll,xfgnxfn.dll,gjkhj.dll,xdhdg.dll,rhs.dll,mrjhtjd.dll,zdbfbd.dll,fjyjy.dll,fxnfnh.dll,bjrvm.dll,ektvm.dll,rdthr.dll,rgfjj.dll,dscef.dll,crugd.dll,lariytrz.dll,hjaiq.dll,kduy.dll,hkfgh.dll,awef.dll,dfhsh.dll,msepbe.dll
这些东西好像得搜索文件名,找到后删除。
gototop
 

重装QQ
gototop
 

还是不懂。。。。。
gototop
 

建议你把这几个文件找到后压缩上传上来
aysadsad1032.dll
txtqltql1039.dll
ttnnbnnb1047.dll
ttqacqac1032.dll
1.建议使用XDelBox删除以下文件:(XDelBox1.6下载)
使用说明:删除时复制所有要删除文件的路径,在待删除文件列表里点击右键选择从剪贴板导入,导入后在要删除文件上点击右键,选择立刻重启删除,电脑会重启进入DOS界面进行删除操作。运行xdelbox前最好卸载所有可移动存储介质(包括U盘,MP3,手机存储卡等)。

c:\progra~1\webpla~1\webpla~1\ftkernelapi.dll
aysadsad1032.dll
txtqltql1039.dll
ttnnbnnb1047.dll
ttqacqac1032.dll
wfhyt.dll,kghk.dll,ethsh.dll,stehs.dll,sthth.dll,frntrn.dll,qrhhb.dll,drghszd.dll,fngn.dll,gjjte.dll,xgnfn.dll,xfgnhcgfm.dll,serger.dll,bnxnb.dll,fxgnfx.dll,jzijj.dll,xfgnfx.dll,serghjm.dll,thsddh.dll,xbcvxb.dll,zfdzb.dll,xdndn.dll,xdfntt.dll,hgfhk.dll,dnteh.dll,xfng.dll,njritc.dll,chmfcmh.dll,jwlah.dll,gmnait.dll,hfjg.dll,thurh.dll,mgmgmm.dll,oqrthc.dll,fehom.dll,jyjlt.dll,ijatnaw.dll,sehhter.dll,fhjfg.dll,zdbdb.dll,ydgn.dll,dbfb.dll,fjnbv.dll,wmsat.dll,setrhes.dll,cdxbfxdb.dll,xfgnxfn.dll,gjkhj.dll,xdhdg.dll,rhs.dll,mrjhtjd.dll,zdbfbd.dll,fjyjy.dll,fxnfnh.dll,bjrvm.dll,ektvm.dll,rdthr.dll,rgfjj.dll,dscef.dll,crugd.dll,lariytrz.dll,hjaiq.dll,kduy.dll,hkfgh.dll,awef.dll,dfhsh.dll,msepbe.dll,ieprot.dll
c:\windows\system32\zgxfdx.dll
c:\windows\system32\wyhesm.dll
c:\windows\system32\jfrwdh.dll
c:\windows\system32\zgfdet.dll
soundman.exe
c:\docume~1\admin\locals~1\temp\tmp5.tmp
c:\docume~1\admin\locals~1\temp\1.sys


2.删除重启后使用SREng修复下面各项:

    启动项目 -- 注册表之如下项删除:
[{b4d47a00-9d9c-4272-96e1-620385045b02}]    <aySADSAD1032.dll>
[{fff1c771-4dc7-4c01-8be1-8495780f3f1d}]    <txTQLTQL1039.dll>
[{c4bf46a2-1c05-427d-992f-4e24f7d57f68}]    <ttNNBNNB1047.dll>
[{5ac6d3c3-f564-407e-9c4b-ce4b6cd3f9ac}]    <ttQACQAC1032.dll>
注意该项[AppInit_DLLs]修改:把<wfhyt.dll,kghk.dll,ethsh.dll,stehs.dll,sthth.dll,frntrn.dll,qrhhb.dll,drghszd.dll,fngn.dll,gjjte.dll,xgnfn.dll,xfgnhcgfm.dll,serger.dll,bnxnb.dll,fxgnfx.dll,jzijj.dll,xfgnfx.dll,serghjm.dll,thsddh.dll,xbcvxb.dll,zfdzb.dll,xdndn.dll,xdfntt.dll,hgfhk.dll,dnteh.dll,xfng.dll,njritc.dll,chmfcmh.dll,jwlah.dll,gmnait.dll,hfjg.dll,thurh.dll,mgmgmm.dll,oqrthc.dll,fehom.dll,jyjlt.dll,ijatnaw.dll,sehhter.dll,fhjfg.dll,zdbdb.dll,ydgn.dll,dbfb.dll,fjnbv.dll,wmsat.dll,setrhes.dll,cdxbfxdb.dll,xfgnxfn.dll,gjkhj.dll,xdhdg.dll,rhs.dll,mrjhtjd.dll,zdbfbd.dll,fjyjy.dll,fxnfnh.dll,bjrvm.dll,ektvm.dll,rdthr.dll,rgfjj.dll,dscef.dll,crugd.dll,lariytrz.dll,hjaiq.dll,kduy.dll,hkfgh.dll,awef.dll,dfhsh.dll,msepbe.dll,ieprot.dll>修改为<>即清空
[{6E6CA8A1-81BC-4707-A54C-F4903DD70BAD}]    <C:\WINDOWS\system32\zgxfdx.dll>
[{EB71E0B3-E97D-4D30-8733-E28266467617}]    <C:\WINDOWS\system32\wyhesm.dll>
[{841529CB-7F77-4B99-A895-B5441E0D302F}]    <C:\WINDOWS\system32\jfrwdh.dll>
[{28EB3777-3E23-4E72-8449-A992D09D24C3}]    <C:\WINDOWS\system32\zgfdet.dll>
[SoundMan]    <SOUNDMAN.EXE>

    启动项目 -- 服务-- 驱动程序之如下项禁用:
[ping / ping]    <\??\C:\DOCUME~1\Admin\LOCALS~1\Temp\tmp5.tmp>
[Net Manager / Net Manager]    <\??\C:\DOCUME~1\Admin\LOCALS~1\Temp\1.sys>

    系统修复-- 浏览器加载项之如下项删除:
[QQMusicCreator Class]    <>
[WebThunder Class]    <>
gototop
 

到底那里不懂啊 =.=
gototop
 

看不明白在说什么..有没有直接点的方法..
gototop
 

有这个东西在,玩游戏会不会被盗号..如果不怕盗的话就算了..
gototop
 

引用:
【aa11a的贴子】有这个东西在,玩游戏会不会被盗号..如果不怕盗的话就算了..
………………


既然闲麻烦不想清理 那何必来问

清理系统临时文件和IE临时文件夹     
http://www.atribune.org/public-beta/ATF-Cleaner.exe
用金山清理专家清理恶意软件
http://www.duba.net/zt/ksc/down.shtml
下载windows清理助手清理一遍
http://www.arswp.com/download/arswp2/arswp2.zip
gototop
 

.......很无奈啊。。。。我用瑞星杀毒,杀完后没发现病毒。电脑是不是已经安全了啊。。
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT