78945612 - 2005-11-4 10:04:00
每次开机都有这么多病毒,杀掉了.下次开机还是有这么多.
请问这些都是什么病毒??????
wscntfy.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
RfwMain.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
IEXPLORE.EXE>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
WSocks_Server2.0.exe>>C:\WINDOWS\WSocks_Server2.0.exe ->Dropper.Delf.av
wdfmgr.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
sde.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
spoolsv.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
rfwsrv.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
Explorer.EXE>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
svchost.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
lsass.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
services.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
winlogon.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
csrss.exe>>C:\WINDOWS\Wns_Server_Hook.DLL ->Backdoor.Gpigeon.5.n
独孤豪侠 - 2005-11-4 10:07:00
请扫描一个HJ日志,这个日志没什么用.
BlackStone - 2005-11-4 10:09:00
杀完毒后
手动删除C:\WINDOWS\Wns_Server_Hook.DLL
重新启动
若还有病毒
用Autoruns删掉可疑的启动项
具体可参考
http://forum.ikaka.com/topic.asp?board=28&artid=7318038
© 2000 - 2026 Rising Corp. Ltd.