玉林学院历年二本线:请教崔衍渠先生!我感染了downloader病毒,如何删除?

来源:百度文库 编辑:杭州交通信息网 时间:2024/04/27 14:30:41
O9 - 浏览器额外的“工具”菜单项: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{0777FC0A-69B6-445F-96CA-5DA7A2D775DA}: NameServer = 202.101.172.46,202.101.172.47
O17 - HKLM\System\CS1\Services\Tcpip\..\{0777FC0A-69B6-445F-96CA-5DA7A2D775DA}: NameServer = 202.101.172.46,202.101.172.47
O17 - HKLM\System\CS2\Services\Tcpip\..\{0777FC0A-69B6-445F-96CA-5DA7A2D775DA}: NameServer = 202.101.172.46,202.101.172.47
O20 - AppInit_DLLs: KB721815M.LOG
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: Sebring - c:\WINDOWS\system32\LgNotify.dll
O23 - NT 服务: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - NT 服务: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - NT 服务: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - NT 服务: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - NT 服务: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - NT 服务: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe
O23 - NT 服务: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe
O23 - NT 服务: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - NT 服务: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - NT 服务: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe

hijackthis打勾修复
O20 - AppInit_DLLs: KB721815M.LOG
其他没问题。

最好重装系统,并格式化。