主题:机器中了病毒, 求救!! -- AK545
[SIZE=3]Description:[/SIZE]
This Trojan sends an email with information on the computer, RAS information, and cached passwords. It also intercepts keyboard entries.
[SIZE=3]Solution:[/SIZE]
Click Start>Run. type Regedit then hit the Enter key.
Double click the following:
HKEY_LOCAL_MACHINE>Software>Microsoft >Windows>CurrentVersion>RunOnce
In the right panel, search for and delete any of the registry keys that contains the data value as follows:
Kernel32=Kernel32.exe
Exit the registry.
Click Start>Shutdowm>"Restart in MS-DOS mode” then click OK.
In the %System% folder, delete the following files:
KERNEL32.EXE
SSTABL.DLL
Type “exit”, and then hit the Enter key to restart in Windows mode.
Scan your system with Trend Micro antivirus and delete all files detected as TROJ_HOOKER.24C. To do this, Trend Micro customers must download the latest pattern file and scan their system. Other email users may use HouseCall, Trend Micro's free online virus scanner.
Trend Micro offers best-of-breed antivirus and content-security solutions for your corporate network, small and medium business or home PC.
- 相关回复 上下关系7
机器中了病毒, 求救!! AK545 字103 2004-12-23 20:49:40
如果是木马的话 Davi 字95 2004-12-27 21:04:00
😉试试看这个-->
在 RUNONCE 里找了 AK545 字48 2004-12-23 21:35:56
😉在Registry里search一下。 Highway 字96 2004-12-23 22:30:13
😨找不到Kernel32.exe AK545 字0 2004-12-24 19:45:48
☹️更新了PC-CILLIN, 再查找, 就找不到病毒了 AK545 字13 2004-12-25 14:14:29