瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 急,急,急!!每次开机显示backdoor.gpigeon.sfa!

1   1  /  1  页   跳转

急,急,急!!每次开机显示backdoor.gpigeon.sfa!

急,急,急!!每次开机显示backdoor.gpigeon.sfa!

请问各位高手大哥,是灰鸽子吗?怎么好像不一样啊?每次开机瑞星提示的就是这个木马病毒,晕了,请帮忙指点一下!c:\windows\windows.dll

O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Corporation Limited - c:\program files\rising\rfw\rfwsrv.exe
O23 - Service: Rising Process Communication Center (RsCCenter) - rising - C:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - Service: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - C:\PROGRAM FILES\RISING\RAV\Ravmond.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: windows - Unknown owner - C:\WINDOWS\windows.exe
最后编辑2005-07-12 14:38:29
分享到:
gototop
 

O23 - Service: windows - Unknown owner - C:\WINDOWS\windows.exe
别做养鸽专业户了,用杀毒软件把鸽子杀了吧



gototop
 

1.打开注册表编辑器,定位到HKEY_LOCAL_MACHINE\ SYSTEM \ CURRENTCONTROLSET \ SERVICES分支,删除左栏中的病毒服务名windows
2.重启系统,在“文件夹选项”的“查看”面板中勾选“显示系统文件”、“显示所有的文件和文件夹”两项,点击“确定”按钮。然后在windows下寻找病毒文件名windows.exe,windows.dll,windows_Hook.dll,windowskey.dll
gototop
 

多谢了,可是只找到了windows.exe和windows.dll这两个文件呀,对吗?
gototop
 

恩,windowskey.dll这个不是每个灰鸽子都有的
找不到的到杀毒软件记录看看,是不是被删除过
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT