Switch off:
- Antivirus and and, if you have - Firewall.
- System Restore
- Execute following script in Manual Healing
Код:
begin
SetAVZPMStatus(True);
SearchRootkit(true, true);
SetAVZGuardStatus(True);
TerminateProcessByName('c:\documents and settings\all users\application data\725a159\sa725a.exe');
QuarantineFile('c:\documents and settings\all users\application data\725a159\sa725a.exe','');
DeleteFileMask('c:\documents and settings\all users\application data\725a159\','*.*',true);
DeleteDirectory('c:\documents and settings\all users\application data\725a159\');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
After reboot:
- Execute following script in Manual Healing
Код:
begin
CreateQurantineArchive('C:\quarantine.zip');
end.
- Remove Bonjour: http://virusinfo.info/showthread.php?t=42263
- Install Service Pack 3 + all subsequent inportant patches.
- Repeat a log file of AVPTool
- Upload the C:\quarantine.zip here: http://virusinfo.info/upload_virus_eng.php?tid=73780
- Make a log file with Malwarebytes Antimalware and attach it.