Close/unload all the programs excepted AVPTool and Internet Explorer
Switch off:
- Antivirus and and, if you have - Firewall.
- System Restore
- Execute following script in Manual Healing
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
QuarantineFile('C:\WINDOWS\Lqyhac.exe','');
QuarantineFile('C:\DOCUME~1\user\LOCALS~1\Temp\Lwk.exe','');
RegKeyParamDel('HKEY_USERS','S-1-5-21-1614895754-179605362-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Run','M5T8QL3YW3');
DeleteFile('C:\DOCUME~1\user\LOCALS~1\Temp\Lwk.exe');
RegKeyParamDel('HKEY_USERS','S-1-5-21-1614895754-179605362-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Run','QZAIB7KITK');
DeleteFile('C:\WINDOWS\Lqyhac.exe');
DeleteFile('C:\WINDOWS\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job');
DeleteFile('C:\WINDOWS\tasks\{8C3FDD81-7AE0-4605-A46A-2488B179F2A3}.job');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
After reboot:
- Execute following script in Manual Healing
Код:
begin
CreateQurantineArchive('C:\quarantine.zip');
end.
- Upload the C:\quarantine.zip here: http://virusinfo.info/upload_virus_eng.php?tid=80802
- Make a new log file.
- Attach a new log file to your new post..