结束进程:
C:\Program Files\Common Files\COMM\Network.exe
C:\PROGRA~1\baigoo\bgoomain.exe
修复:
R3 - URLSearchHook: YOK Search Class - {88351CEF-BAC0-4A9B-8380-31A173E2926F} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll
O2 - BHO: QuickBtn - {1A199C20-DE2B-4838-AE3F-B5257ECE2B7E} - C:\Program Files\CoolWebsite\QuickLink.dll
O2 - BHO: YOK超级搜索 - {75FE2B5A-D3A4-4EFA-AC11-ADC9C9459688} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll
O2 - BHO: bg - {7BDAF75A-0D6F-4F50-AFE9-333D08DF4005} - C:\Program Files\baigoo\BGooBHO.dll
O2 - BHO: Accoona Search Assistant - {944864A5-3916-46E2-96A9-A2E84F3F1208} - C:\Program Files\Accoona\ASearchAssist.dll
O2 - BHO: NewWeb Controller - {9ACEEE30-143F-471A-AA45-72B061FE7D60} - C:\WINDOWS\system32\AdvSC.dll
O3 - Toolbar: Accoona - {364B6276-C6C1-40B6-A6D7-6C48871FD707} - C:\Program Files\Accoona\atoolbar.dll
O3 - Toolbar: YOK超级搜索 - {F869BB38-FFEF-4589-B986-610B7AD0ADA2} - C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll
O4 - HKLM\..\Run: [Update] C:\Program Files\Common Files\UPDAT\Update.exe
O4 - HKLM\..\Run: [res] C:\WINDOWS\system32\res.exe
04 - HKLM\..\Run: [YOKAssiant] Rundll32.exe C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll,YOKAssiant
O4 - HKLM\..\Run: [HNETPOLCY] rundll32.exe C:\DOCUME~1\new\LOCALS~1\Temp\RarSFX1\HNETPO~1.DLL,Start
O4 - HKLM\..\Run: [bgoomain.exe] C:\PROGRA~1\baigoo\bgoomain.exe
O4 - HKLM\..\RunOnce: [dwMyTest] LOADHW.EXE
O4 - HKCU\..\Run: [HNETPOLCY] rundll32.exe C:\DOCUME~1\new\LOCALS~1\Temp\RarSFX1\HNETPO~1.DLL,Start
O8 - Extra context menu item: YOK搜索 - C:\Program Files\YOK.com\SuperSearch\yoksch.htm
O9 - Extra button: 实用网址导航 - {1D901067-2529-4A9B-9B6B-7A1DB3A44CB5} - C:\Program Files\CoolWebsite\QuickLink.dll
O9 - Extra button: 唯刊.VIKA - {2BB49E59-100F-4ca6-9127-E0E3FF76F98E} - C:\Program Files\VIKA\vkclient.exe.lnk
O9 - Extra 'Tools' menuitem: 唯刊.VIKA - {2BB49E59-100F-4ca6-9127-E0E3FF76F98E} - C:\Program Files\VIKA\vkclient.exe.lnk
O9 - Extra button: YOK超级搜索 - {F869BB38-FFEF-4589-B986-610B7AD0ADA2} - http://www.yok.com (file missing)
O20 - AppInit_DLLs: KB494001.LOG
O23 - Service: GrayPigeon_Hacker.com.cn - Unknown owner - C:\WINDOWS\Hacker.com.cn.exe
O23 - Service: Network System (Universal Disk Manager) - COMENET TECHNOLOGY - C:\Program Files\Common Files\COMM\Network.exe
卸载:
C:\PROGRA~1\YOK.com\
C:\Program Files\CoolWebsite\
C:\Program Files\baigoo\
C:\Program Files\Accoona\
C:\Program Files\VIKA\
删除:
C:\PROGRA~1\YOK.com\(文件夹,下同)
C:\Program Files\CoolWebsite\
C:\Program Files\baigoo\
C:\Program Files\Accoona\
C:\Program Files\VIKA\
C:\WINDOWS\ .exe(若存在的话)
C:\Program Files\Common Files\COMM\
LOADHW.EXE(在硬盘中搜索)
C:\Program Files\Common Files\UPDAT\
C:\WINDOWS\system32\res.exe
C:\WINDOWS\system32\AdvSC.dll
KB494001.LOG(在硬盘中搜索)
C:\DOCUME~1\new\LOCALS~1\Temp\RarSFX1\HNETPO~1.DLL
C:\WINDOWS\Hacker.com.cn.exe
其中O23 - Service: GrayPigeon_Hacker.com.cn - Unknown owner - C:\WINDOWS\Hacker.com.cn.exe是灰鸽子,参考
http://forum.ikaka.com/topic.asp?board=28&artid=7713905