先按一楼说的做,然后删除注册表中<xxsvjs64><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xxsvjs64.dll",Start> []
<xdbgfg25><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\xdbgfg25.dll",Start> []
<thagz97><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\thagz97.dll",Start> []
<rfbvfn58><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\rfbvfn58.dll",Start> []
<kpghhr88><%systemroot%\system32\Rundll32.exe "%systemroot%\system32\kpghhr88.dll",Start> []
<MSDEG32><LYLoader.exe> []
<MSDWG32><LYLoadbr.exe> [N/A]
<MSDCG32 ><LYLeador.exe> [N/A]
<MSDOG32><LYLoador.exe> [N/A]
<MSDSG32><LYLoadar.exe> [N/A]
<MSDMG32><LYLoadmr.exe> []
<MSDHG32><LYLoadhr.exe> [N/A]
<MSDQG32><LYLoadqr.exe> [N/A]
驱动程序中[dddmrr0 / dddmrr02][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\dddmrr02.sys><N/A>
[fcdfadga / fcdfadga][Stopped/Boot Start]
<\SystemRoot\system32\drivers\fcdfadga.sys><N/A>
[gotnae7 / gotnae75][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\gotnae75.sys><N/A>
[HOOKAPI / HOOKAPI][Stopped/Manual Start]
[jsdpp3 / jsdpp32][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\jsdpp32.sys><N/A>
[jvwzwt1 / jvwzwt17][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\jvwzwt17.sys><N/A>
[kivxdr / kivxdrv][Stopped/Boot Start]
<\SystemRoot\System32\DRIVERS\kivxdrv.sys><N/A>
[koz4kdd12 / koz4kdd123][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\koz4kdd123.sys><N/A>
[kpghhr8 / kpghhr88][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\kpghhr88.sys><N/A>
[mseam / mseam][Stopped/Manual Start]
<\??\C:\WINDOWS\System32\mseam.sys><N/A>
[mxdispdr / mxdispdr][Running/Auto Start]
<\??\C:\WINDOWS\System32\drivers\mxdispdr.sys><N/A>
[rfbvfn5 / rfbvfn58][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\rfbvfn58.sys><N/A>
[Secdrv / Secdrv][Stopped/Manual Start]
<System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
<\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[Secdrv / Secdrv][Stopped/Manual Start]
<System32\DRIVERS\secdrv.sys><N/A>
[thagz9 / thagz97][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\thagz97.sys><N/A>
[thrpud02 / thrpud02][Stopped/Manual Start]
<\??\C:\WINDOWS\System32\drivers\thrpud02.sys><>
[tivxdr / tivxdrv][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\tivxdrv.sys><N/A>
[uf46 / uf46][Running/Auto Start]
<\??\C:\WINDOWS\System32\drivers\uf46.sys><N/A>
[xdbgfg2 / xdbgfg25][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\xdbgfg25.sys><N/A>
[xxsvjs6 / xxsvjs64][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\xxsvjs64.sys><N/A>
正在运行的进程中的
[C:\WINDOWS\System32\msplrct.dll] [N/A, ]
[C:\WINDOWS\System32\winlib .dll] [N/A, ]
[C:\WINDOWS\System32\qdshm.dll] [N/A, ]
[C:\WINDOWS\System32\system.dat] [N/A, ]
[C:\WINDOWS\System32\qdshm.dll] [N/A, ]
[C:\WINDOWS\System32\addrmshelp.dll] [N/A, ]
[C:\WINDOWS\System32\sqmapi32.dll] [N/A, ]
[C:\WINDOWS\System32\allatl.dll] [N/A, ]
[C:\WINDOWS\System32\allatl.dll] [N/A, ]
[C:\WINDOWS\System32\addrmshelp.dll] [N/A, ]
[thpbku74 / thpbku74][Running/Boot Start]
<\SystemRoot\System32\DRIVERS\thpbku74.sys><>
[acpidisk / acpidisk][Running/Auto Start]
<\??\C:\WINDOWS\System32\drivers\acpidisk.sys><N/A>
[nooxbbh / nooxbbh][Running/Disabled]
<\??\C:\DOCUME~1\new\LOCALS~1\Temp\nooxbbhadq><N/A>
[C:\WINDOWS\System32\allatl.dll] [N/A, ]
[C:\WINDOWS\System32\addrmshelp.dll] [N/A, ]
[C:\WINDOWS\System32\allatl.dll] [N/A, ]
[C:\WINDOWS\System32\addrmshelp.dll] [N/A, ]
[C:\WINDOWS\System32\qdshm.dll] [N/A, ]
[C:\WINDOWS\System32\allatl.dll] [N/A, ]
[C:\WINDOWS\System32\addrmshelp.dll] [N/A, ]
[C:\WINDOWS\System32\qdshm.dll] [N/A, ]