ColourfulDay - 2005-10-20 18:23:00
最近中了graypigoen杀了之后也没出现问题可是用hijackthis扫描发现还有这一项:
O23 - Service: Gray_Pigeon_Server2.0 (GrayPigeonServer2.0) - Unknown owner - C:\WINDOWS\G_Server2.0.exe
同时在启动后瑞星防火墙还提示说阻止了:iexplore.exe>>c:\program File\internet Explorer\IEXPLOER.EXE->Dropper.delf.av
请高手帮忙彻底清除掉他们!
附件是:瑞星防火墙日志系统内存扫描事件的截图
附件:
55651120051020182320.jpg
吃猫的鱼1984 - 2005-10-20 18:25:00
http://forum.ikaka.com/topic.asp?board=28&artid=5666824
方法如上
ColourfulDay - 2005-10-20 18:30:00
下面是用hijackthis扫描注册表的日志(023项)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Gray_Pigeon_Server2.0 (GrayPigeonServer2.0) - Unknown owner - C:\WINDOWS\G_Server2.0.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Corporation Limited - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Remote Aadmin (Routing and Remote Aadmin) - Beijing Rising Technology Corporation Limited - (no file)
O23 - Service: Rising Process Communication Center (RsCCenter) - rising - C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
ColourfulDay - 2005-10-20 18:33:00
下面是用hijackthis扫描注册表的日志(023项)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Gray_Pigeon_Server2.0 (GrayPigeonServer2.0) - Unknown owner - C:\WINDOWS\G_Server2.0.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Corporation Limited - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Remote Aadmin (Routing and Remote Aadmin) - Beijing Rising Technology Corporation Limited - (no file)
O23 - Service: Rising Process Communication Center (RsCCenter) - rising - C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
吃猫的鱼1984 - 2005-10-20 18:33:00
O23 - Service: Gray_Pigeon_Server2.0 (GrayPigeonServer2.0) - Unknown owner - C:\WINDOWS\G_Server2.0.exe
查杀方法:http://forum.ikaka.com/topic.asp?board=28&artid=5666824
ColourfulDay - 2005-10-20 18:38:00
| 引用: |
【吃猫的鱼1984的贴子】http://forum.ikaka.com/topic.asp?board=28&artid=5666824 方法如上 ........................... |
我已经用那种方法手动杀过了
而且不只是灰鸽子的问题啊
吃猫的鱼1984 - 2005-10-20 18:40:00
| 引用: |
【ColourfulDay的贴子】 我已经用那种方法手动杀过了 而且不只是灰鸽子的问题啊 ........................... |
没杀干净?还是什么别的?
ColourfulDay - 2005-10-20 18:54:00
我杀了之后用hijackthis扫描还出现了那一项啊!
但是在注册表里搜索graypigeon服务项时搜不到
ColourfulDay - 2005-10-20 18:56:00
出现的情况就是第一个T里说的那样
ColourfulDay - 2005-10-20 19:27:00
我现在又杀了之后出现的问题是用hijackthis扫描注册表会出现:
O23 - Service: Gray_Pigeon_Server2.0 (GrayPigeonServer2.0) - Unknown owner - C:\WINDOWS\G_Server2.0.exe (file missing)
和刚才的区别是G_Server2.0.exe 后面有(file missing)
© 2000 - 2026 Rising Corp. Ltd.