[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
<SysKernel><C:\RavBin.exe> []
启动文件夹
[ ]
<C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\ .lnk --> C:\WINDOWS\system32\XP-DCB08499.EXE [File is missing]><N>
C:\WINDOWS\system32\XP-DCB08499.EXE 找到压缩后发上来==================================
浏览器加载项[]
{493B223E-9AFD-4E2F-B149-74AFAA4A900E} <
http://www.361La.com, N/A>
用文件夹图标专杀!!!!!压缩发上来并删除以下文件
C:\WINDOWS\system32\SysService.exe这个发上来[PID: 2936 F:\新建文件夹 (4).exe
[PID: 852 F:\娱乐.exe
[PID: 2976 C:\WINDOWS\system32\SysService.exe
[PID: 2100 C:\WINDOWS\system32\SysService.exe
[PID: 244 E:\安全.exe
[PID: 636 E:\换届选举.exe
[PID: 584 C:\WINDOWS\system32\SysService.exe
[PID: 1980 C:\WINDOWS\system32\SysService.exe
[PID: 2988 E:\QQVideo.Cache.exe
[PID: 2092 C:\WINDOWS\system32\SysService.exe
[PID: 3092 E:\QQVideo.Cache.exe
[PID: 3136 C:\WINDOWS\system32\SysService.exe
[PID: 3208 H:\交通.exe
[PID: 3416 C:\WINDOWS\system32\SysService.exe
[PID: 3484 H:\共青团.exe
[PID: 1472 C:\WINDOWS\system32\SysService.exe
[PID: 3516 E:\安全生产.exe
[PID: 3436 E:\表格模板.exe
[PID: 2840 C:\WINDOWS\system32\SysService.exe
[PID: 3632 C:\WINDOWS\system32\SysService.exe
[PID: 3652 E:\安全生产.exe
[PID: 924 E:\表格模板.exe
[PID: 3668 E:\安全.exe
[PID: 3676 C:\WINDOWS\system32\SysService.exe
[PID: 3684 C:\WINDOWS\system32\SysService.exe
[PID: 3300 C:\WINDOWS\system32\SysService.exe
[PID: 3476 H:\村 官.exe
[PID: 3524 C:\WINDOWS\system32\SysService.exe
[PID: 3296 E:\人 大.exe
[PID: 3204 C:\WINDOWS\system32\SysService.exe
[PID: 3220 H:\文物.exe
[PID: 3704 C:\WINDOWS\system32\SysService.exe
[PID: 3716 H:\文物.exe
[PID: 3744 C:\WINDOWS\system32\SysService.exe
[PID: 4000 H:\安全.exe
[PID: 476 C:\WINDOWS\system32\SysService.exe
[PID: 192 E:\表格模板.exe
[PID: 916 C:\WINDOWS\system32\SysService.exe
[PID: 312 H:\综治文件.exe
[PID: 1520 C:\WINDOWS\system32\SysService.exe
[PID: 2256 E:\综治文件.exe
[PID: 2376 C:\WINDOWS\system32\SysService.exe
[PID: 1984 H:\综治文件.exe
[PID: 1256 H:\综治文件.exe
[PID: 860 C:\WINDOWS\system32\SysService.exe
[PID: 1844 C:\WINDOWS\system32\SysService.exe
[PID: 2672 E:\村级组织材料.exe
[PID: 2748 C:\WINDOWS\system32\SysService.exe
[PID: 616 C:\Program Files\WinRAR\WinRAR.exe
[C:\Program Files\WinRAR\Formats\tar.fmt
[C:\WINDOWS\system32\msi.dll] [Microsoft Corporation, 4.5.6001.22159]
[PID: 2060 C:\WINDOWS.exe
[PID: 3344 C:\WINDOWS\system32\SysService.exe
[PID: 1572 E:\安全.exe
[PID: 3824 C:\WINDOWS\system32\SysService.exe
[PID: 3988 C:\WINDOWS\explorer.exe] [(Verified) Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]
[C:\WINDOWS\system32\msi.dll] [Microsoft Corporation, 4.5.6001.22159]
[C:\Program Files\WinRAR\rarext.dll
[C:\WINDOWS\system32\RavExt.dll] [Beijing Rising Information Technology Co., Ltd., 21, 0, 0, 12]
[PID: 3412 E:\村 官.exe
[PID: 2928 C:\WINDOWS\system32\SysService.exe
[PID: 2136 H:\新建文件夹.exe
[PID: 3396 C:\WINDOWS\system32\SysService.exe
[PID: 420 E:\安全.exe
[PID: 3368 C:\WINDOWS\system32\SysService.exe
[PID: 3116 E:\表格模板.exe
[PID: 3540 H:\复件 新建文件夹.exe
[PID: 3076 C:\WINDOWS\system32\SysService.exe
[PID: 3228 H:\复件 新建文件夹.exe
[PID: 3016 H:\复件 (2) 新建文件夹.exe
[PID: 1412 C:\WINDOWS\system32\SysService.exe
[PID: 3236 C:\WINDOWS\system32\SysService.exe
[PID: 3508 H:\aq.exe
[PID: 3168 C:\WINDOWS\system32\SysService.exe
[PID: 3544 C:\WINDOWS\system32\SysService.exe
[PID: 1872 H:\复件 新建文件夹.exe
[PID: 3392 C:\WINDOWS\system32\SysService.exe