1. Please, disable System Restore and antivirus (if you have).
2. Execute the script in AVPTool:
Код:
begin
ClearQuarantine;
SetAVZGuardStatus(True);
RegKeyIntParamWrite('HKLM','SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer','NoDriveTypeAutoRun', 221);
QuarantineFile('C:\vlvtdflx.exe','');
QuarantineFile('C:\DOCUME~1\Ti\LOCALS~1\Temp\herss.exe','');
QuarantineFile('C:\DOCUME~1\Ti\LOCALS~1\Temp\cvasds0.dll','');
QuarantineFile('C:\WINDOWS\system32\blastclnnn.exe','');
DeleteFile('C:\DOCUME~1\Ti\LOCALS~1\Temp\cvasds0.dll');
DeleteFile('C:\DOCUME~1\Ti\LOCALS~1\Temp\herss.exe');
DeleteFile('C:\WINDOWS\system32\blastclnnn.exe');
DeleteFileMask('C:\WINDOWS\Tasks', 'At*.job', false);
DeleteFile('C:\autorun.inf');
DeleteFile('C:\vlvtdflx.exe');
DeleteFile('D:\autorun.inf');
DeleteFile('D:\vlvtdflx.exe');
DeleteFile('I:\autorun.inf');
DeleteFile('I:\vlvtdflx.exe');
BC_ImportDeletedList;
ExecuteSysClean;
ExecuteWizard('TSW', 3, 3, true);
BC_Activate;
CreateQurantineArchive('C:\quarantine.zip');
RebootWindows(true);
end.
After restart upload file C:\quarantine.zip, by link http://virusinfo.info/upload_virus.php?tid=57150
3. Attach a new avptool_syscheck.zip.