Switch off/Disable:
- Antivirus and and, if you have - Firewall.
- System Restore
- Execute following script in Manual disinfection
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
ClearQuarantine;
TerminateProcessByName('c:\documents and settings\tim\local settings\application data\snnruj\uawxsftav.exe');
QuarantineFile('C:\WINDOWS\System32\EGCOMSERVICE2.dll','');
QuarantineFile('C:\WINDOWS\2_0_1browserhelper2.dll','');
QuarantineFile('C:\Documents and Settings\Tim\Local Settings\Application Data\snnruj\uawxsftav.exe','');
DeleteFile('C:\Documents and Settings\Tim\Local Settings\Application Data\snnruj\uawxsftav.exe');
DeleteFile('C:\WINDOWS\2_0_1browserhelper2.dll');
DeleteFile('C:\WINDOWS\System32\EGCOMSERVICE2.dll');
DelBHO('{32683183-48a0-441b-a342-7c2a440a9478}');
DelBHO('{9C691A33-7DDA-4C2F-BE4C-C176083F35CF}');
DelBHO('{83DE62E0-5805-11D8-9B25-00E04C60FAF2}');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
SetAVZPMStatus(True);
RebootWindows(true);
end.
After reboot execute following script in Manual disinfection
Код:
begin
CreateQurantineArchive('C:\quarantine.zip');
end.
and upload the C:\quarantine.zip over the link Upload quarantined files on the top of this page.
- Install Service Pack 3 and all updates
- Install the last version of your antivirus: http://free.avg.com/us-en/download-avg-anti-virus-free
- Repeat a log file of AVPTool.
- Make a log file with Hijackthis ( Analysis, p.3 for further informations).
- Attach both logs to your new post..