飘扬过海 - 2005-9-29 21:15:00
不慎中了灰鸽子(Backdoor.Gpigeon),升级瑞星也杀不掉,望各位朋友帮忙如何手工查杀,飘扬在此道一声谢谢。。。


附件:
5902112005929211555.jpg
猎鹰渔民 - 2005-9-29 21:19:00
还是用hijackthis扫描log吧
baohe - 2005-9-29 21:20:00
【回复“飘扬过海”的帖子】
http://forum.ikaka.com/topic.asp?board=28&artid=6202404
飘扬过海 - 2005-9-29 21:37:00
谢谢,boohe斑斑和猎鹰朋友。。。
以下是扫描023项结果,不懂怎么看,还请帮帮忙。。。
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NetSendServer - Unknown owner - C:\WINNT\NetSend.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
O23 - Service: PDScheduler (PDSched) - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDSched.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - rising - D:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - D:\PROGRAM FILES\RISING\RAV\Ravmond.exe
O23 - Service: System Safety Monitor (SSM) - Max Computing - D:\Program Files\System Safety Monitor\SYSSAFE.EXE
baohe - 2005-9-29 21:45:00
【回复“飘扬过海”的帖子】
O23 - Service: NetSendServer - Unknown owner - C:\WINNT\NetSend.exe
灰鸽子
飘扬过海 - 2005-9-29 21:46:00
是不是
O23 - Service: NetSendServer - Unknown owner - C:\WINNT\NetSend.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
这两项
飘扬过海 - 2005-9-29 21:48:00
注册表中的具体位置在哪里,好像找不到。。。
baohe - 2005-9-29 21:54:00
【回复“飘扬过海”的帖子】
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
正常的
飘扬过海 - 2005-9-29 21:56:00
这项?
baohe - 2005-9-29 21:59:00
| 引用: |
【飘扬过海的贴子】这项?
........................... |
删除左栏中的 NetSendServer
飘扬过海 - 2005-9-29 22:09:00
恩,可以了,谢谢你baohe斑斑,祝你开心每一天。。:)
© 2000 - 2026 Rising Corp. Ltd.