Sorry for waiting...
Please, disable your "anti" and disconnect from the internet !
Execute in AVPTools this script (from the box below )
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
DelBHO('{A057A204-BACC-4D26-9990-79A187E2698E}');
QuarantineFile('C:\Archivos de programa\Windows Live\Protecciуn infantil\fssbho.dll','');
QuarantineFile('C:\WINDOWS\system32\lruvqvw.dll','');
QuarantineFile('C:\WINDOWS\POKMON~1.SCR','');
QuarantineFile('C:\ARCHIV~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe','');
QuarantineFile('C:\WINDOWS\system32\drivers\SIODRV.SYS','');
QuarantineFile('C:\WINDOWS\system32\Drivers\MxlW2k.sys','');
QuarantineFile('C:\WINDOWS\system32\drivers\iSMBIOS.SYS','');
QuarantineFile('C:\WINDOWS\System32\DRIVERS\bsstor.sys','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\ndisio.sys','');
QuarantineFile('C:\WINDOWS\system32\Drivers\gahqgxia.sys','');
TerminateProcessByName('c:\windows\system32\symdbsvc.exe');
QuarantineFile('c:\windows\system32\symdbsvc.exe','');
DeleteFile('c:\windows\system32\symdbsvc.exe');
DeleteFile('C:\WINDOWS\system32\Drivers\gahqgxia.sys');
DeleteFile('C:\ARCHIV~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe');
DeleteFile('C:\WINDOWS\system32\lruvqvw.dll');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
ExecuteRepair(6);
ExecuteRepair(8);
ExecuteRepair(9);
ExecuteRepair(10);
ExecuteRepair(17);
RebootWindows(true);
end.
Your computer will reboot.
Pack ( zip) (with password 'virus' without quotes) "Qurantine_AVZ" ( it is subfolder where your avptool exist)
Please upload it by link http://virusinfo.info/upload_virus_eng.php?tid=34895
Then, please disable your internet connection, antivirus/firewall, all messengers and other staff that you can.
Lunch your internet explorer.
Only after these simple steps, please make a new log in avptool and attach it to your next post.