在扫日志的SRENG工具》启动项目》注册表》里面找下面项目删除:
启动项目
注册表
<WinShell><"C:\WINDOWS\system32\Rundll32.exe" "C:\WINDOWS\system32\shell32.dll",Control_RunDLL "C:\DOCUME~1\Admin\LOCALS~1\Temp\dat13E.tmp"> [N/A]
<PTSShell><C:\WINDOWS\PTSShell.exe> []
<dgzsykwz><C:\WINDOWS\gskznjqb.exe> []
<WSockDrv32><C:\WINDOWS\WSockDrv32.exe> []
<LotusHlp><C:\WINDOWS\LotusHlp.exe> []
<SHAProc><C:\WINDOWS\SHAProc.exe> []
<DXDLG32><DXDLG.exe> []
<MSDWG32><LYLoadbr.exe> [N/A]
<MSDCG32 ><LYLeador.exe> [N/A]
<MSDOG32><LYLoador.exe> [N/A]
<MSDSG32><LYLoadar.exe> [N/A]
<MSDMG32><LYLoadmr.exe> [N/A]
<MSDHG32><LYLoadhr.exe> [N/A]
<MSDQG32><LYLoadqr.exe> [N/A]
<bsnuhzbx><rundll32 "C:\WINDOWS\Downlo~1\bsnuhzbx.dll",start> [Microsoft Corporation]
<zsmstc><rundll32.exe C:\WINDOWS\system32\mxcdcsrv16_080321.dll start> [N/A
<{7FA4A83B-F99A-4bfc-A8E2-6A62B05D2C82}><C:\DOCUME~1\Admin\LOCALS~1\Temp\dat13E.tmp> []
<{5E907A48-400E-4EA8-9792-FFAE052D59E9}><C:\WINDOWS\system32\pedadt.dll> []
中
<DXDLG32><DXDLG.exe> []
<MSDWG32><LYLoadbr.exe> [N/A]
<MSDCG32 ><LYLeador.exe> [N/A]
<MSDOG32><LYLoador.exe> [N/A]
<MSDSG32><LYLoadar.exe> [N/A]
<MSDMG32><LYLoadmr.exe> [N/A]
<MSDHG32><LYLoadhr.exe> [N/A]
<MSDQG32><LYLoadqr.exe> [N/A]
<bsnuhzbx><rundll32 "C:\WINDOWS\Downlo~1\bsnuhzbx.dll",start> [Microsoft Corporation]
<zsmstc><rundll32.exe C:\WINDOWS\system32\mxcdcsrv16_080321.dll start> [N/A]
这几个删不了