Please download in my signature special avz, put it in new folder on desktop.
Please execute this script in avz (http://virusinfo.info/showthread.php?t=9207)
(Do remember before execution scripts to exit antivirus&antispyware and disconnect from internet, disable System Restore )
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
QuarantineFile('D:\autorun.inf','');
QuarantineFile('c:\google\BAE.dll','');
DelBHO('{8D187DFF-423F-41d3-A331-A60DE5886675}');
QuarantineFile('C:\ProgramData\AV1\QWProtect.dll','');
QuarantineFile('C:\ProgramData\AV1\AV1i.exe','');
TerminateProcessByName('c:\programdata\av1\av1.exe');
QuarantineFile('c:\programdata\av1\av1.exe','');
DeleteFile('c:\programdata\av1\av1.exe');
DeleteFile('C:\ProgramData\AV1\QWProtect.dll');
DeleteFile('D:\autorun.inf');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
ExecuteRepair(6);
ExecuteRepair(8);
ExecuteRepair(9);
ExecuteRepair(12);
ExecuteRepair(13);
ExecuteRepair(16);
SetAVZPMStatus(true);
RebootWindows(true);
end.
Please upload the quarantine according to appendix 3 of rules(http://virusinfo.info/showthread.php?t=9184) , by link http://virusinfo.info/upload_virus_eng.php?tid=40774
After that make a set of logs according to rules: http://virusinfo.info/showthread.php?t=9184