失眠的瞌睡虫 - 2009-7-18 10:26:00
我朋友给了我个日志~~~各位帮忙看下谢谢了 我一点都不懂。。。
用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
失眠的瞌睡虫 - 2009-7-18 10:27:00
sinoer - 2009-7-18 10:38:00
删除注册表键值,没有发现其他东西了
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
<{FCA4D3BE-C6C7-4F4D-9CBD-CB2666647ACA}><C:\WINDOWS\system32\EN7hzSreCat8.dll> [File is missing]
<{480F828B-3E98-426A-AEBC-B4307DF4771D}><C:\WINDOWS\system32\kSVHjMeWr5ZZY47.dll> [File is missing]
<{16886058-6A31-4D53-B4AC-4CC7D2248D69}><C:\WINDOWS\fonts\vwuXtYbhj.fon> [File is missing]
<{B2780DCE-0B89-4886-9D4B-8810DE6239AD}><C:\WINDOWS\fonts\bzMtuqTck9.fon> [File is missing]
<{750DBD56-AF03-47CB-BB28-BBF312B059F9}><C:\WINDOWS\fonts\xbpCfXnG6wUVF.fon> [File is missing]
<{C2EE4B05-6467-40E1-8638-C8B895AE335A}><C:\WINDOWS\fonts\CtZ8uc499k.fon> [File is missing]
<{AC933D46-96A7-4670-9292-E7C4126C071E}><C:\WINDOWS\fonts\wQ7KbaNZKMe5G4qZ.fon> [File is missing]
<{91F5C9DB-ACD1-4812-BAB9-6F5AE433930A}><C:\WINDOWS\fonts\MbsV2QQJe.fon> [File is missing]
<{122B901E-493F-4AD9-BC69-7DE8C3E52FCC}><C:\WINDOWS\system32\122B901E.dll> [File is missing]
<{51F88A10-09E6-4763-948F-1C8861003255}><C:\WINDOWS\fonts\MqppW9KYn.fon> [File is missing]
<{39C1640B-E010-48CF-88A1-0D17A33AF9EA}><C:\WINDOWS\system32\dktXFYbT3G.dll> [File is missing]
<{76CBCF38-0583-44C7-A1AE-D463DFE625EC}><C:\WINDOWS\system32\skcfujQ5EDN.dll> [File is missing]
<{2EF0D734-21FD-4225-A1A2-BCD296182AAF}><C:\WINDOWS\system32\2EF0D734.dll> [File is missing]
daemonz - 2009-7-18 10:40:00
貌似中过毒,但是被杀掉了,不过没杀干净
最近这东西很常见:c:\windows\system32\drivers\pcidump.sys 删掉
这个我不知道,觉得它不是奇虎的吧:g:\inst.exe
找个清理助手清理一下注册表:
[{FCA4D3BE-C6C7-4F4D-9CBD-CB2666647ACA}] <C:\WINDOWS\system32\EN7hzSreCat8.dll>
[{480F828B-3E98-426A-AEBC-B4307DF4771D}] <C:\WINDOWS\system32\kSVHjMeWr5ZZY47.dll>
[{16886058-6A31-4D53-B4AC-4CC7D2248D69}] <C:\WINDOWS\fonts\vwuXtYbhj.fon>
[{B2780DCE-0B89-4886-9D4B-8810DE6239AD}] <C:\WINDOWS\fonts\bzMtuqTck9.fon>
[{750DBD56-AF03-47CB-BB28-BBF312B059F9}] <C:\WINDOWS\fonts\xbpCfXnG6wUVF.fon>
[{C2EE4B05-6467-40E1-8638-C8B895AE335A}] <C:\WINDOWS\fonts\CtZ8uc499k.fon>
[{AC933D46-96A7-4670-9292-E7C4126C071E}] <C:\WINDOWS\fonts\wQ7KbaNZKMe5G4qZ.fon>
[{91F5C9DB-ACD1-4812-BAB9-6F5AE433930A}] <C:\WINDOWS\fonts\MbsV2QQJe.fon>
[{122B901E-493F-4AD9-BC69-7DE8C3E52FCC}] <C:\WINDOWS\system32\122B901E.dll>
[{51F88A10-09E6-4763-948F-1C8861003255}] <C:\WINDOWS\fonts\MqppW9KYn.fon>
[{39C1640B-E010-48CF-88A1-0D17A33AF9EA}] <C:\WINDOWS\system32\dktXFYbT3G.dll>
[{76CBCF38-0583-44C7-A1AE-D463DFE625EC}] <C:\WINDOWS\system32\skcfujQ5EDN.dll>
[{2EF0D734-21FD-4225-A1A2-BCD296182AAF}] <C:\WINDOWS\system32\2EF0D734.dll>
[pcidump / pcidump] <System32\DRIVERS\pcidump.sys>
失眠的瞌睡虫 - 2009-7-18 10:57:00
哦 谢谢了
© 2000 - 2025 Rising Corp. Ltd.