瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 查杀灰鸽子紧急求教,请高手帮忙,不胜感激!!!

1   1  /  1  页   跳转

查杀灰鸽子紧急求教,请高手帮忙,不胜感激!!!

查杀灰鸽子紧急求教,请高手帮忙,不胜感激!!!

请帮我看看有无问题,如何杀毒和修复? 在注册表编辑器Legacy里有GraypigeonServer及GraypigeonServer2.0.前几天一直出现Backdoor.Gpigeon.tfs,Backdoor.Gpigeon.uvc,Backdoor.Gpigeon.afm以及Trojan.Rootkit.Hiheproc.a.用瑞星2006版查杀,但打开某些软件后还是会出现,在很多文件里都有,一般有30多个.下面是我的日志,敬请高手指教,多谢!!!!!!

HijackThis_zww汉化版扫描日志 V1.99.1
保存于 18:18:54, 日期 2006-2-21
操作系统: Windows XP SP2 (WinNT 5.01.2600)
浏览器: Internet Explorer v6.00 SP2 (6.00.2900.2180)

当前运行的进程:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Rising\Rav\Ravmond.exe
c:\program files\rising\rfw\rfwsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Rising\Rav\RavStub.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\fxssvc.exe
c:\program files\rising\rfw\RfwMain.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Java\j2re1.4.2_01\bin\jusched.exe
C:\Program Files\Aspire Arcade\PCMService.exe
C:\Program Files\CRW\shwicon.exe
C:\PROGRA~1\LAUNCH~1\CPLCL32.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Rising\Rav\RavTask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Rising\Rav\Ravmon.exe
C:\Program Files\Rising\Rav\RsAgent.exe
C:\WINDOWS\msagent\AgentSvr.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
c:\program files\rising\rfw\RfwCfg.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Rising\Rav\Rav.exe
C:\WINDOWS\system32\mshearts.exe
C:\Program Files\Internet Explorer\iexplore.exe
F:\HijackThis v1.99.1汉化版\HijackThis1991汉化版\HijackThis1991zww.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: TuoTuHelper.LDown - {0BECAB3A-E1F8-45E6-8332-38DD750EBA01} - J:\Tuotu\TuoTuHelper.dll
O2 - BHO: CNNIC_IDN - {35980F6E-A137-4E50-953D-813BB8556899} - C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
O2 - BHO: (no name) - {A5366673-E8CA-11D3-9CD9-0090271D075B} - (no file)
O4 - 启动项HKLM\\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - 启动项HKLM\\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - 启动项HKLM\\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - 启动项HKLM\\Run: [LaunchApp] Alaunch
O4 - 启动项HKLM\\Run: [ATIModeChange] Ati2mdxx.exe
O4 - 启动项HKLM\\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - 启动项HKLM\\Run: [SoundMan] SOUNDMAN.EXE
O4 - 启动项HKLM\\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - 启动项HKLM\\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - 启动项HKLM\\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - 启动项HKLM\\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_01\bin\jusched.exe
O4 - 启动项HKLM\\Run: [PCMService] "C:\Program Files\Aspire Arcade\PCMService.exe"
O4 - 启动项HKLM\\Run: [ShowIcon_Chander_CRW Series Driver v1.17r019] "C:\Program Files\CRW\shwicon.exe" -t"Chander\CRW Series Driver v1.17r019"
O4 - 启动项HKLM\\Run: [LManager] C:\PROGRA~1\LAUNCH~1\CPLCL32.EXE
O4 - 启动项HKLM\\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - 启动项HKLM\\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - 启动项HKLM\\Run: [RavTask] "C:\Program Files\Rising\Rav\RavTask.exe" -system
O4 - 启动项HKLM\\Run: [RfwMain] "C:\Program Files\Rising\Rfw\rfwmain.exe" -Startup
O4 - 启动项HKLM\\Run: [TuoTu] J:\ruanjian\Tuotu\Tuotu.exe /m
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: AutoCAD 启动加速器.lnk = C:\Program Files\Common Files\Autodesk Shared\acstart16.exe
O8 - IE右键菜单中的新增项目: 使用网际快车下载 - J:\ruanjian\FlashGet\jc_link.htm
O8 - IE右键菜单中的新增项目: 使用网际快车下载全部链接 - J:\ruanjian\FlashGet\jc_all.htm
O8 - IE右键菜单中的新增项目: 使用脱兔下载 - J:\Tuotu\TT_one.htm
O8 - IE右键菜单中的新增项目: 使用脱兔下载全部链接 - J:\Tuotu\TT_all.htm
O8 - IE右键菜单中的新增项目: 导出到 Microsoft Excel(&x) - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - 浏览器额外的按钮: 中文上网 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
O9 - 浏览器额外的“工具”菜单项: 中文上网 - {35980F6E-A137-4E50-953D-813BB8556899} - C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
O9 - 浏览器额外的按钮: 脱兔下载 - {D5C1CCC2-811B-4bf2-BF22-0D3B89600F5B} - J:\Tuotu\TuoTu.exe
O9 - 浏览器额外的“工具”菜单项: &TuoTu - {D5C1CCC2-811B-4bf2-BF22-0D3B89600F5B} - J:\Tuotu\TuoTu.exe
O9 - 浏览器额外的按钮: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - 浏览器额外的“工具”菜单项: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - 未知的文件在 Winsock LSP: c:\windows\system32\cdnns.dll
O11 - Options group: [CDNCLIENT] 中文上网
O16 - DPF: {0CA54D3F-CEAE-48AF-9A2B-31909CB9515D} (Edit Class) - https://www.sz1.cmbchina.com/download/CMBEdit.cab
O23 - NT 服务: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - NT 服务: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - NT 服务: Rising Proxy Service (RfwProxySrv) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwproxy.exe
O23 - NT 服务: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Co., Ltd. - c:\program files\rising\rfw\rfwsrv.exe
O23 - NT 服务: Rising Process Communication Center (RsCCenter) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\CCenter.exe
O23 - NT 服务: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\Program Files\Rising\Rav\Ravmond.exe
最后编辑2006-02-22 14:25:24
分享到:
gototop
 

下面是全部的杀毒日志,请版主帮忙看看.感激之至!!!

病毒名称处理结果发现日期扫描方式路径文件病毒来源
Backdoor.Gpigeon.afm删除成功2006-02-20 23:00手动扫描C:\WINDOWSxp.exe本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:00手动扫描C:\WINDOWSxp.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0005994.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0005998.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006003.exe本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006055.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006059.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006069.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006073.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006086.exe本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0007156.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0007160.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0007196.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0007200.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:13手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0007755.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0007759.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0007810.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0007814.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0007837.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0007841.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0007893.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0007897.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0008893.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0008894.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0008908.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0008912.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0008932.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0008936.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0009048.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0009983.EXE本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:14手动扫描C:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP29A0009984.DLL本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:20手动扫描F:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006004.exe本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:20手动扫描F:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006028.exe>>xp.exe本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:20手动扫描F:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006088.exe本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:20手动扫描F:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006089.exe本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:22手动扫描F:\洞房秘密\〖新婚之夜的洞房秘密〗〖新婚之夜的洞房秘密〗.rar>>〖新婚之夜的洞房秘密〗.exe>>〖新婚之夜的洞房秘密〗.exe>>xp.exe本机
Backdoor.Gpigeon.afm删除成功2006-02-20 23:23手动扫描F:\Temp\Rar$EX00.143〖新婚之夜的洞房秘密〗.exe>>xp.exe本机
gototop
 

19 日的杀毒日志
病毒名称处理结果发现日期扫描方式路径文件病毒来源
Backdoor.Gpigeon.uvc清除成功2006-02-16 13:21手动扫描IEXPLORE.EXE>>C:\Program Files\Internet Explorer\IEXPLORE.EXE本机
Trojan.Rootkit.HiheProc.a删除成功2006-02-16 14:54手动扫描J:\ruanjian\SearchNethprocess.sys.tmp>>hprocess.sys本机
Trojan.Rootkit.HiheProc.a删除成功2006-02-16 14:54手动扫描J:\ruanjian\SearchNethprocess.sys本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:36手动扫描csrss.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:36手动扫描winlogon.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:37手动扫描services.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:37手动扫描lsass.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:37手动扫描Ati2evxx.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:37手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:37手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:37手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:37手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:38手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:38手动扫描rfwproxy.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:38手动扫描rfwsrv.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:39手动扫描Explorer.EXE>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:39手动扫描spoolsv.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:39手动扫描IEXPLORE.EXE>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.uvc清除成功2006-02-17 18:39手动扫描IEXPLORE.EXE>>C:\Program Files\Internet Explorer\IEXPLORE.EXE本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:39手动扫描mdm.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:39手动扫描fxssvc.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:39手动扫描RfwMain.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:39手动扫描alg.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描atiptaxx.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描SOUNDMAN.EXE>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描AGRSMMSG.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描SynTPLpr.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描SynTPEnh.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描jusched.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描PCMService.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描shwicon.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描CPLCL32.EXE>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描realsched.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描ctfmon.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描msmsgs.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描SS.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:40手动扫描AgentSvr.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:41手动扫描TuoTu.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:41手动扫描RfwCfg.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:41手动扫描mshearts.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:42手动扫描iexplore.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:42手动扫描Thunder.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:42手动扫描BitComet.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-17 18:42手动扫描CloneCDTray.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Trojan.Rootkit.HiheProc.a删除成功2006-02-17 20:23手动扫描J:\System Volume Information\_restore{FD2AC3D7-A8A0-477A-B179-B90CE8614F21}\RP27A0006124.sys本机
gototop
 

19日的杀毒日志
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描csrss.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描winlogon.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描services.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描lsass.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描Ati2evxx.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:33手动扫描svchost.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描rfwsrv.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描Explorer.EXE>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描spoolsv.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描IEXPLORE.EXE>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描mdm.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描fxssvc.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描RfwMain.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描alg.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描atiptaxx.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描SOUNDMAN.EXE>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描AGRSMMSG.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描SynTPLpr.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描SynTPEnh.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描jusched.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描PCMService.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描shwicon.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描CPLCL32.EXE>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描realsched.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描ctfmon.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描msmsgs.exe>>C:\WINDOWS\xp_HOOk.DLL本机
Backdoor.Gpigeon.tfs清除成功2006-02-19 16:34手动扫描AgentSvr.exe>>C:\WINDOWS\xp_HOOk.DLL本机
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT