版主帮忙啊

版主, 小弟又中招:Trojan.DL.Direct.bi,这是病毒名,文件名是:top[1].gif>>QQ.exe
文件路径是c:\documents and settings\shan\local settings\tomporary internet files\content.ie5\I7GVD92v
瑞星提示要手动删除,可是打开电脑又找不到这个文件,在安全模式下杀了也没用,再开机还是有,怎么办啊?



Logfile of HijackThis v1.99.0
Scan saved at 6:09:54, on 2006-10-17
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
D:\ÈðÐÇɱ¶¾\Rising\Rav\CCenter.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
D:\ÈðÐÇɱ¶¾\Rising\Rav\Ravmond.exe
d:\ÈðÐÇɱ¶¾\rising\rfw\rfwsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\SCardSvr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
d:\ÈðÐÇɱ¶¾\rising\rfw\RfwMain.exe
D:\ÈðÐÇɱ¶¾\Rising\Rav\RavStub.exe
D:\ÈðÐÇɱ¶¾\Rising\Rav\RavTask.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\VM_STI.EXE
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\System32\conime.exe
D:\ÈðÐÇɱ¶¾\Rising\Rav\CopyRun\RavCopy.exe
D:\ÈðÐÇɱ¶¾\RISING\RAV\Update\Setup.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
D:\winrar½âѹ\WinRAR.exe
C:\DOCUME~1\shan\LOCALS~1\Temp\Rar$EX01.393\Ê×Ò³°ó¼Ü¿ËÐÇ - HijackThis1.99.exe
C:\DOCUME~1\shan\LOCALS~1\Temp\Rar$EX09.351\Ê×Ò³°ó¼Ü¿ËÐÇ - HijackThis1.99.exe


最后编辑2006-10-17 06:25:32.390000000