求求大哥哥大姐姐帮帮我,我又中了灰鸽子病毒了!
下面是我的系统日志:
O23 - NT 服务: Forceware Web Interface (ForcewareWebInterface) - Unknown owner - C:\NVIDIA\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe" -k runservice (file missing)
O23 - NT 服务: Gray_Pigeon_Server2.0 (GrayPigeonServer2.0) - Unknown owner - C:\WINDOWS\G_Server2.0.exe
O23 - NT 服务: ForceWare IP service (nSvcIp) - Unknown owner - C:\NVIDIA\NetworkAccessManager\bin\nSvcIp.exe
O23 - NT 服务: ForceWare user log service (nSvcLog) - Unknown owner - C:\NVIDIA\NetworkAccessManager\bin\nSvcLog.exe
O23 - NT 服务: P4P Service - Sohu.com Inc. - f:\Program Files\P4P\p2psvr.exe
O23 - NT 服务: Rising Personal Firewall Service (RfwService) - Beijing Rising Technology Corporation Limited - f:\program files\rising\rfw\rfwsrv.exe
O23 - NT 服务: Rising Process Communication Center (RsCCenter) - rising - F:\PROGRAM FILES\RISING\RAV\CCENTER.EXE
O23 - NT 服务: RsRavMon Service (RsRavMon) - Beijing Rising Technology Co., Ltd. - F:\PROGRAM FILES\RISING\RAV\Ravmond.exe
O23 - NT 服务: Window Time - Unknown owner - C:\WINDOWS\svchost.exe
不过还有一点我一点都不明白,我的瑞星杀毒软件是这样提示的:
C:\Program Files\Internet Explorer\IEXPLORE.EXE 清除成功
C:\WINDOWS\explorer 删除成功
还有就是我的瑞星放火墙提示:系统内存扫毒事件
XXX.exe>>c:\windows\svchost_hook.dll ->backdoor.gpigeon.tfs(XXX 代表的就是有很多变化的名字,但后面的东西都是一样的,我的机子里总共有29项)
还有一项 explorer.exe>>c:\windows\explorer.exe ->worm.mail.fanbot
希望能得到您的帮助,小弟在这里鞠躬致谢了.