按照上面的步骤操作后,出现了以下问题,
1,用XDelBox1[1].6 删除时,提示找不到C:\WINDOWS\knx32.exe 和 C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_tmp.bat
2,用Sreng删除时,以下删除完重启后又出现
<{9E8287B0-0F3A-48ae-99C5-A6E0AAC36BC5}><C:\WINDOWS\system32\certmgrkd.dll> []
<{21BE5FDF-D4CB-4850-AD99-21E68B50BF3F}><C:\WINDOWS\system32\qpismdhp.dll> []
<{84143967-B645-4BFF-B873-DA1DC886E9A7}><C:\WINDOWS\system32\cedafb.dll> []
<{8C41B7F7-3168-400D-A702-0E7EFE0BA304}><C:\WINDOWS\system32\sgdewg.dll> []
<{DA56B183-A731-402b-9235-2CB8803E212D}><C:\WINDOWS\system32\imgutilhx2.dll> []
<{C578B618-FAF7-4D46-BD55-50655B94FEF7}><C578B618.dll> []
<dpvvoxmh.dll><C:\WINDOWS\system32\dpvvoxmh.dll> [File is missing]
<inetresdxc.dll><C:\WINDOWS\system32\inetresdxc.dll> []
<lweurqhx.dll><C:\WINDOWS\system32\lweurqhx.dll> []
<cliconfgzx.dll><C:\WINDOWS\system32\cliconfgzx.dll> []
<mstimewd.dll><C:\WINDOWS\system32\mstimewd.dll> []
<bootvidgj.dll><C:\WINDOWS\system32\bootvidgj.dll> []
<adsntzt.dll><C:\WINDOWS\system32\adsntzt.dll> []
<xolehlpjh.dll><C:\WINDOWS\system32\xolehlpjh.dll> []
<dispexcb.dll><C:\WINDOWS\system32\dispexcb.dll> []
<tscfgwmijxsj.dll><C:\WINDOWS\system32\tscfgwmijxsj.dll> []
<slbiopfs2.dll><C:\WINDOWS\system32\slbiopfs2.dll> []
<scrruncqsj.dll><C:\WINDOWS\system32\scrruncqsj.dll> []
<certmgrkd.dll><C:\WINDOWS\system32\certmgrkd.dll> []
<wapyoaia.dll><C:\WINDOWS\system32\qpismdhp.dll> []
<imgutilhx2.dll><C:\WINDOWS\system32\imgutilhx2.dll> []
<wnokobto.dll><C:\WINDOWS\system32\qpismdhp.dll> []
<nsduhwub.dll><C:\WINDOWS\system32\qpismdhp.dll> []
<qpismdhp.dll><C:\WINDOWS\system32\qpismdhp.dll> []
3,不懂如何修改一下这两项,现在还没改
将 <Userinit><C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\sichost.exe>改成<Userinit><C:\WINDOWS\system32\userinit.exe,>注意逗号是必需的!!!
将<AppInit_DLLs><mduaey.dll candayl.dll wllame.dll catower.dll kandaof.dll,aaa.dll,HBmhly.dll,kmon.dll> [N/A]改成<AppInit_DLLs><kmon.dll>
附件是重新扫描的日志,请再帮忙查看下要如何进一步杀毒。
非常感谢