回复: 麻烦高手帮忙了 电脑中毒 瑞星无法查杀
以下不认得:
驱动程序
[dmk / dmk][Stopped/Manual Start]
<\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp~dmk.tmp><N/A>
[inl / inl][Stopped/Manual Start]
<\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp~inl.tmp><N/A>
[ptk / ptk][Stopped/Manual Start]
<\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp~ptk.tmp><N/A>
[zx / zx][Stopped/Manual Start]
<\??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~d4ae7f.tmp><N/A>
隐藏进程
[256]
C:\WINDOWS\svghost.exeAutorun.inf用WINRAR找到C:\SysAnti.exe并且压缩发上来 [C:\]
[AutoRun]
Open=SysAnti.exe
Shell\Open=打开(&O)
Shell\Open\Command=SysAnti.exe
Shell\Open\Default=1
Shell\Explore=资源管理器(&X)
Shell\Explore\Command=SysAnti.exe
[D:\]
[AutoRun]
Open=SysAnti.exe
Shell\Open=打开(&O)
Shell\Open\Command=SysAnti.exe
Shell\Open\Default=1
Shell\Explore=资源管理器(&X)
Shell\Explore\Command=SysAnti.exe
[E:\]
[AutoRun]
Open=SysAnti.exe
Shell\Open=打开(&O)
Shell\Open\Command=SysAnti.exe
Shell\Open\Default=1
Shell\Explore=资源管理器(&X)
Shell\Explore\Command=SysAnti.exe
[F:\]
[AutoRun]
Open=SysAnti.exe
Shell\Open=打开(&O)
Shell\Open\Command=SysAnti.exe
Shell\Open\Default=1
Shell\Explore=资源管理器(&X)
Shell\Explore\Command=SysAnti.exe
Xdelbox删除
:(可能有风险)C:\SysAnti.exe
D:\SysAnti.exe
E:\SysAnti.exe
F:\SysAnti.exe
C:\AutoRun.inf
D:\AutoRun.inf
E:\AutoRun.inf
F:\AutoRun.infC:\windows\svghost.exeC:\DOCUME~1\ADMINI~1\LOCALS~1\Temp~dmk.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp~inl.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp~ptk.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~d4ae7f.tmp