Close/unload all the programs excepted AVZ and Internet Explorer
Switch off:
- Antivirus and and, if you have - Firewall.
- System Restore
- Execute following script in Manual Healing
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
StopService('AcrSch2Svc');
DeleteService('AcrSch2Svc');
BC_DeleteSvc('AcrSch2Svc');
QuarantineFile('AcrSch2Svc.sys','');
DelBHO('{9CB65206-89C4-402c-BA80-02D8C59F9B1D}');
DelBHO('{9CB65201-89C4-402c-BA80-02D8C59F9B1D}');
DeleteFile('C:\Program Files\AskTBar\SrchAstt\3.bin\A5SRCHAS.DLL');
DeleteFile('%windir%\system32\drivers\AcrSch2Svc.sys');
ExecuteWizard('TSW', 2, 2, true);
ExecuteWizard('SCU', 2, 2, true);
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
After reboot:
- Execute following script in Manual Healing
Код:
begin
CreateQurantineArchive('C:\quarantine.zip');
end.
- Upload the C:\quarantine.zip here: http://virusinfo.info/upload_virus_eng.php?tid=84882
- Make a new log file of AVPTool
- Attach a new log to your new post..