Sorry for waiting.
Switch off:
- Antivirus and Antispayware, if you have - Firewall, an internet connection.
- Execute following script in avptool ( how -to : http://avptool.virusinfo.info/en/AVP...curescript.htm)
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
QuarantineFile('C:\autorun.inf','');
DelBHO('{D5BF49A2-94F1-42BD-F434-3604812C807D}');
DelBHO('{6D794CB4-C7CD-4c6f-BFDC-9B77AFBDC02C}');
DelBHO('{171820E3-5BB1-4DC6-9D1B-5D6881984405}');
QuarantineFile('pmnkICRJ.dll','');
QuarantineFile('RtlGina2.dll','');
QuarantineFile('C:\WINDOWS\system32\ysowqc.dll','');
QuarantineFile('C:\WINDOWS\system32\tyshb36rfjdf.dll','');
QuarantineFile('C:\WINDOWS\system32\prunnet.exe','');
QuarantineFile('C:\WINDOWS\System32\ezSP_Px.exe','');
QuarantineFile('C:\DOCUME~1\Joseluis\LOCALS~1\Temp\winloggn.exe','');
QuarantineFile('C:\DOCUME~1\Joseluis\LOCALS~1\Temp\csrssc.exe','');
QuarantineFile('C:\WINDOWS\system32\drivers\ATWPKT2.SYS','');
QuarantineFile('C:\WINDOWS\system32\Drivers\EPLPDX02.SYS','');
QuarantineFile('C:\WINDOWS\System32\DRIVERS\PxHelp20.sys','');
QuarantineFile('C:\WINDOWS\system32\Brmfrmps.exe','');
QuarantineFile('C:\WINDOWS\System32\ysowqc.dll','');
QuarantineFile('C:\WINDOWS\system32\vtUooPiI.dll','');
QuarantineFile('C:\WINDOWS\system32\RtlGina2.dll','');
QuarantineFile('C:\WINDOWS\system32\pmnkICRJ.dll','');
DeleteFile('C:\DOCUME~1\Joseluis\LOCALS~1\Temp\csrssc.exe');
DeleteFile('C:\DOCUME~1\Joseluis\LOCALS~1\Temp\winloggn.exe');
DeleteFile('C:\WINDOWS\System32\ezSP_Px.exe');
DeleteFile('C:\WINDOWS\system32\pmnkICRJ.dll');
DeleteFile('C:\WINDOWS\system32\prunnet.exe');
DeleteFile('C:\WINDOWS\system32\tyshb36rfjdf.dll');
DeleteFile('C:\WINDOWS\system32\ysowqc.dll');
DeleteFile('RtlGina2.dll');
DeleteFile('pmnkICRJ.dll');
DeleteFile('C:\WINDOWS\system32\vtUooPiI.dll');
DeleteFile('C:\autorun.inf');
BC_ImportALL;
ExecuteSysClean;
ExecuteRepair(6);
ExecuteRepair(8);
ExecuteRepair(9);
ExecuteRepair(17);
BC_Activate;
RebootWindows(true);
end.
You computer will reboot.
After reboot:
- Clean Temp-Maps, Cache of Browsers, Recycler. Use Windows service tool cleanmgr or CCleaner or ClearProg
- Close all the programs and start only Internet Explorer!!!
- Repeat 3 log files in accordance with the rules.
- Switch Antivirus and, if you have - Firewall, on.
- Go On-Line
- Pack ( zip) (with pass 'virus') "Qurantine_AVZ" ( it is subfolder where your avptool exist)
Please upload it by link http://virusinfo.info/upload_virus_eng.php?tid=36124
- Attach 3 logs to your new post..