点以下链接下载
http://www.huayiw.com/main/upload/killpig.exe以下是流氓猪的部分文件列表,有一些是动态文件名,无法列出.
流氓猪的文件列表:
C:\WINDOWS\system32\drivers\fad.sys
C:\WINDOWS\system32\drivers\anfad.sys
C:\WINDOWS\system32\ServeHost.exe
C:\WINDOWS\system32\ServeHost.dat
C:\Program Files\SearchNet\SearchNet.exe
C:\Program Files\SearchNet\ServeUp.exe
C:\Program Files\SearchNet\SNHpr.dll
C:\Program Files\SearchNet\SNHpr_Del.dll
C:\Program Files\SearchNet\SrvNet32.dll
C:\Program Files\SearchNet\SrvNet32_Del.dll
C:\Program Files\SearchNet\UnInstall.exe
C:\Program Files\SearchNet\
流氓猪的注册表键组:
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A0176FE-008B-4706-90F5-BBA532A49731}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D1AFED83-9133-4660-8C8F-DAF1B4A3D5A8}
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr.1
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E8D3778F-47D3-4F1F-9245-3D46856936E4}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper
Objects\{2A0176FE-008B-4706-90F5-BBA532A49731}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZSXZ
HKEY_LOCAL_MACHINE\SOFTWARE\SearchNet
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANFAD
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_FAD
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FAD
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ANFAD
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Remote Log
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\SearchNet_Up