瑞星卡卡安全论坛技术交流区反病毒/反流氓软件论坛 跪求大虾帮忙啊~!!Backdoor.GPigeon.smd

1   1  /  1  页   跳转

跪求大虾帮忙啊~!!Backdoor.GPigeon.smd

跪求大虾帮忙啊~!!Backdoor.GPigeon.smd

我用瑞星可以查杀到Backdoor.GPigeon.smd,可是一重启后就又有了~!!郁闷啊。。。。
路径是C:\Program Files\Internet Explorer\IEXPLORE.EXE
我手动去找可是 又找不到~!!!跪求大虾们帮忙了~!!!我在线等了。。。。。
最后编辑2005-12-06 16:04:39
分享到:
gototop
 

1楼的大哥啊~!!我下了你说的软件,也都按你说的做了。
这是我的日志,请大哥帮忙!!谢了
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

+ ExFiltercdnspiec:\program files\cnnic\cdn\cdnspie.dll

+ RavTaskRavTimerBeijing Rising Technology Co., Ltd.c:\program files\rising\rav\ravtask.exe

+ SeAdUpdatec:\winnt\sead\seadupdate43946728.exe

+ Thunderf:\迅雷\thundershell.exe

+ TkBellExeRealNetworks SchedulerRealNetworks, Inc.c:\program files\common files\real\update_ob\realsched.exe

+ WindowsUpdateFile not found: C:\WINNT\system32\WindowsUpdate.exe

+ yassistseAssistSettingYahoo!c:\program files\yahoo!\assistant\yassistse.exe

+ YLive.exeYLive c:\program files\yahoo!\assistant\ylive.exe

C:\Documents and Settings\All Users\「开始」菜单\程序\启动

+ 河南网通宽带用户客户端.lnkRacerPutian Runwayc:\program files\racer-henan-cnc\racer.exe

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run

+ KernelCheckFile not found: C:\WINNT\system32\winbery.exe

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks

+ cq.dllc:\winnt\system32\cq.dll

+ Rising Execute File Exts hookRising Shell Ext ModuleBeijing Rising Technology Co., Ltd.c:\winnt\system32\ravext.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved

+ Display Panning CPL ExtensionFile not found: deskpan.dll

+ HyperTerminal Icon ExtHyperTerminal Applet LibraryHilgraeve, Inc.c:\winnt\system32\hticons.dll

+ RISINGRising Shell Ext ModuleBeijing Rising Technology Co., Ltd.c:\winnt\system32\ravext.dll

+ Shell Extensions for RealOne PlayerRealPlayer Shell ExtensionsRealNetworks, Inc.f:\real player\rpshell.dll

+ WinRAR shell extensionc:\program files\winrar\rarext.dll

+ Yahoo!PhotoyPhtbYahoo! Chinac:\program files\yahoo!\assistant\assist\yphtb.dll

+ 粉碎文件Wiper 动态链接库c:\program files\yahoo!\assistant\assist\ywiper.dll

HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved

+ Web 文件夹c:\program files\common files\microsoft shared\web folders\msonsext.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects

+ Ad ClassFile not found: C:\WINNT\SeAd\SeAd4394670f.dll

+ ADefaultSearch ClassASearchAssistAccoona Corp.c:\program files\accoona\asearchassist.dll

+ AntiFish Classyangling.dllYahoo.c:\program files\yahoo!\assistant\assist\yangling.dll

+ CPub ObjectFile not found: C:\Program Files\P4P\sodaie.dll

+ DragSearch BHODragSearchc:\program files\yahoo!\assistant\assist\ydragsearch.dll

+ Google Toolbar HelperGoogle IE 客户端工具栏Google Inc.c:\program files\google\googletoolbar1.dll

+ ThunderIEHelper Classxunleibho BHOc:\winnt\system32\xunleibho_v8.dll

+ Yahoo!PhotoyPhtbYahoo! Chinac:\program files\yahoo!\assistant\assist\yphtb.dll

+ 雅虎助手ToolBarYahoo!c:\program files\yahoo!\assistant\assist\yasbar.dll

HKLM\Software\Microsoft\Internet Explorer\Toolbar

+ AccoonaAToolbar ModuleAccoona Corp.c:\program files\accoona\atoolbar.dll

+ 雅虎助手ToolBarYahoo!c:\program files\yahoo!\assistant\assist\yasbar.dll

HKLM\Software\Microsoft\Internet Explorer\Extensions

+ @shdoclc.dll,-864c:\winnt\web\related.htm

+ kele8File not found: http://www.kele8.com/

+ Yahoo 1G电邮File not found: http://cn.mail.yahoo.com/promo/rd1

+ 播霸电视File not found: http://itv.mop.com

+ 浩方对战平台浩方对战平台上海浩方在线信息技术有限公司f:\浩方\浩方对战平台\gameclient.exe

+ 情景聊天File not found: http://cn.rd.yahoo.com/home/messenger/bjk/clientbtn/?http://cn.messenger.yahoo.com/

+ 寻宝乐趣多File not found: http://hot.3721.com/rd/shop_btn.htm

HKLM\System\CurrentControlSet\Services

+ Ati HotKey PollerATI External Event Utility EXE ModuleATI Technologies Inc.c:\winnt\system32\ati2evxx.exe

+ ATI SmartATI Smartc:\winnt\system32\ati2sgag.exe

+ GrayPigeonServer灰鸽子服务端程序。远程监控管理.c:\winnt\server.exe

+ RfwServiceRising Personal Firewall ServiceBeijing Rising Technology Corporation Limitedc:\program files\rising\rfw\rfwsrv.exe

+ RsCCenterCCenterBeijing Rising Technology Co., Ltd.c:\program files\rising\rav\ccenter.exe

+ RsRavMonRavMondBeijing Rising Technology Co., Ltd.c:\program files\rising\rav\ravmond.exe

HKLM\System\CurrentControlSet\Services

+ ati2mtagATI Radeon WindowsNT Miniport DriverATI Technologies Inc.c:\winnt\system32\drivers\ati2mtag.sys

+ BaseTDIbasetdiBeijing Rising Technology Co., Ltd.c:\winnt\system32\drivers\basetdi.sys

+ dmioNT Disk Manager I/O DriverVERITAS Software Corp.c:\winnt\system32\drivers\dmio.sys

+ dmloadNT Disk Manager Startup DriverVERITAS Software Corp.c:\winnt\system32\drivers\dmload.sys

+ EagleNTFile not found: C:\WINNT\system32\drivers\EagleNT.sys

+ ExpScanerExpScan.sysc:\program files\rising\rav\expscan.sys

+ HdAudAddServiceHigh Definition Audio Function Driver v1.0Windows (R) Server 2003 DDK providerc:\winnt\system32\drivers\hdaudio.sys

+ HDAudBusHigh Definition Audio Bus Driver v1.0Windows (R) Server 2003 DDK providerc:\winnt\system32\drivers\hdaudbus.sys

+ HookContTDI HOOK DriverRising tech Co. ltdc:\program files\rising\rav\hookcont.sys

+ HookRegc:\program files\rising\rav\hookreg.sys

+ HookSysHooksysRisingc:\program files\rising\rav\hooksys.sys

+ IntcAzAudAddServiceRealtek(r) High Definition Audio Function DriverRealtek Semiconductor Corp.c:\winnt\system32\drivers\rtkhdaud.sys

+ kmsinputc:\winnt\system32\drivers\kmsinput.sys

+ MEMSCANMemScan Driver瑞星软件有限公司c:\program files\rising\rav\memscan.sys

+ MTsensorATK0110 ACPI Utilityc:\winnt\system32\drivers\asacpi.sys

+ NPFNPF Driver - TME extensionsPolitecnico di Torinoc:\winnt\system32\drivers\npf.sys

+ PtilinkDirect Parallel Link DriverParallel Technologies, Inc.c:\winnt\system32\drivers\ptilink.sys

+ QuakeDRVc:\winnt\system32\drivers\quakedrv.sys

+ RsFwDrvnt_fwdrvRisingc:\program files\rising\rfw\rsfwdrv.sys

+ Ser2plUSB-to-Serial Cable DriverProlific Technology Inc.c:\winnt\system32\drivers\ser2pl.sys

+ yukonw2kNDIS5 Miniport Driver for Marvell Yukon Ethernet ControllerMarvellc:\winnt\system32\drivers\yk50x86.sys

+ ZSMC301bVideo streaming and Capture Device DriverVMc:\winnt\system32\drivers\usbvm31b.sys

HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute

+ ckFile not found: ck

gototop
 

大虾啊~!我中的是灰鸽子么???他对我有什么危害啊 ?
gototop
 

谢谢 大家了~问题解决了
gototop
 
1   1  /  1  页   跳转
页面顶部
Powered by Discuz!NT