瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 Backdoor.Gpigeon.xhd 怎么杀不了【原创】

12   2  /  2  页   跳转

Backdoor.Gpigeon.xhd 怎么杀不了【原创】

[C:\PROGRA~1\ChinaNet\CLIENT~1.DLL]  <><2004, 2, 28, 1>
    [C:\PROGRA~1\ChinaNet\PLUGIN~1.OCX]  <><2005, 7, 27, 1>
    [C:\PROGRA~1\ChinaNet\sign.dll]  <0><2004, 12, 1, 1>
    [C:\PROGRA~1\ChinaNet\SETUPP~1.DLL]  <><1, 0, 0, 1>
    [C:\PROGRA~1\ChinaNet\WEBPLU~1.DLL]  <><2005, 2, 17, 1>
    [C:\PROGRA~1\ChinaNet\ADVERT~1.OCX]  <><2005, 6, 21, 1>
    [C:\PROGRA~1\ChinaNet\Gif89a.dll]  <><2005, 6, 21, 1>
    [C:\PROGRA~1\ChinaNet\VnetBs.ocx]  <><2004, 11, 18, 1>
    [C:\PROGRA~1\ChinaNet\ACCOUN~2.DLL]  <><2005, 7, 18, 1>
    [C:\PROGRA~1\ChinaNet\AccountMgr.dll]  <><2005, 3, 25, 1>
    [C:\PROGRA~1\ChinaNet\VnetSkin.ocx]  <GDDC><1, 0, 0, 1>
    [C:\PROGRA~1\ChinaNet\DialogStyle.dll]  <><1, 0, 0, 1>
    [C:\PROGRA~1\ChinaNet\Timer.ocx]  <><2005, 4, 30, 1>
    [C:\PROGRA~1\ChinaNet\PLUGIN~2.OCX]  <><2005, 2, 24, 1>
    [C:\PROGRA~1\ChinaNet\NEWMES~1.DLL]  <><2005, 8, 8, 1>
    [C:\PROGRA~1\ChinaNet\PassCtrl.dll]  <GDCN><2005, 8, 8, 1>
    [C:\Program Files\ChinaNet\wpcap.dll]  <Politecnico di Torino><3, 0, 0, 18>
    [C:\Program Files\ChinaNet\pthreadVC.dll]  <N/A><N/A>
    [C:\Program Files\ChinaNet\packet.dll]  <Politecnico di Torino><3, 0, 0, 18>
    [C:\PROGRA~1\ChinaNet\PlugPush.dll]  <><2004, 12, 21, 1>
    [C:\PROGRA~1\ChinaNet\ALLINT~1.DLL]  <><2004, 11, 23, 1>
    [C:\PROGRA~1\ChinaNet\VNETLO~1.OCX]  <><2005, 4, 19, 1>
    [C:\PROGRA~1\ChinaNet\StatNum.dll]  <><2004, 11, 18, 1>
    [C:\PROGRA~1\ChinaNet\VNETON~1.OCX]  <><2005, 3, 2, 1>
    [C:\PROGRA~1\ChinaNet\ALLFUN~1.DLL]  <GDCN><2005, 7, 29, 1>
    [C:\PROGRA~1\ChinaNet\VnetOptLog.dll]  <><2004, 11, 23, 1>
    [C:\PROGRA~1\ChinaNet\DlgSkin.ocx]  <><1, 0, 0, 1>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx]  <Macromedia, Inc.><8,0,24,0>
[PID: 1052][C:\WINDOWS\system32\drivers\CDAC11BA.EXE]  <Macrovision><4.20.020>
[PID: 1908][C:\WINDOWS\System32\alg.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 2664][C:\Program Files\Rising\Rav\RsAgent.exe]  <Beijing Rising Technology Co., Ltd.><18, 0, 0, 12>
    [C:\Program Files\TENCENT\Adplus\Adplus.dll]  <Tencent><4, 0, 10, 100>
    [C:\Program Files\Rising\Rav\RsCommX.dll]  <rising><18, 0, 0, 1>
[PID: 2716][C:\WINDOWS\msagent\AgentSvr.exe]  <Microsoft Corporation><2.00.0.3422>
    [C:\Program Files\TENCENT\Adplus\Adplus.dll]  <Tencent><4, 0, 10, 100>
[PID: 3336][C:\Program Files\Internet Explorer\iexplore.exe]  <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
    [C:\Program Files\TENCENT\Adplus\Adplus.dll]  <Tencent><4, 0, 10, 100>
    [C:\WINDOWS\system32\AcSignIcon.dll]  <Autodesk><16.0.0.86>
    [D:\PROGRA~1\SUPERR~1\MAGICSET\haokanbar.dll]  <Xiang Feng Technology><2, 1, 0, 1463>
    [C:\WINDOWS\system32\Macromed\Flash\Flash8b.ocx]  <Macromedia, Inc.><8,0,24,0>
[PID: 4012][C:\WINDOWS\system32\svchost.exe]  <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 3152][C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\sreng2.zip 的临时目录 1\SREng2\SREng.exe]  <Smallfrogs Studio><2.0.21.505>
    [C:\Program Files\TENCENT\Adplus\Adplus.dll]  <Tencent><4, 0, 10, 100>

==================================
文件关联
.TXT  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE  OK. ["%1" %*]
.COM  OK. ["%1" %*]
.PIF  OK. ["%1" %*]
.REG  OK. [regedit.exe "%1"]
.BAT  OK. ["%1" %*]
.SCR  OK. ["%1" /S]
.CHM  OK. ["C:\WINDOWS\hh.exe" %1]
.HLP  OK. [%SystemRoot%\system32\winhlp32.exe %1]
.INI  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.INF  OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.VBS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS  OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK  OK. [{00021401-0000-0000-C000-000000000046}]

==================================
Winsock 提供者

==================================
gototop
 

谢谢你"我无邪"现在查不到毒了!
我顶你
gototop
 

我想问一下刚刚删除的Network Management Center Task服务要不要重新启动.如果要启动,是要怎么启动?谢谢了
gototop
 
12   2  /  2  页   跳转
页面顶部
Powered by Discuz!NT