Прикрепил.
[IMG]http://s018.radikal.ru/i519/1204/cd/a1786cf3371f.png[/IMG]
Прикрепил.
[IMG]http://s018.radikal.ru/i519/1204/cd/a1786cf3371f.png[/IMG]
Уважаемый(ая) [B]malor[/B], спасибо за обращение на наш форум!
Удаление вирусов - абсолютно бесплатная услуга на VirusInfo.Info. Хелперы, в самое ближайшее время, ответят на Ваш запрос. Для оказания помощи необходимо предоставить логи сканирования утилитами АВЗ и HiJackThis, подробнее можно прочитать в [URL="http://virusinfo.info/pravila.html"]правилах оформления запроса о помощи[/URL].
Если наш сайт окажется полезен Вам и у Вас будет такая возможность - пожалуйста [URL="http://virusinfo.info/content.php?r=113-virusinfo.info-donate"]поддержите проект[/URL].
выполните скрипт
[code]
begin
SetAVZGuardStatus(True);
QuarantineFile('C:\Documents and Settings\user\Cookies\userlib.dll','');
QuarantineFile('C:\Documents and Settings\user\Application Data\Microsoft\Windows\Cookies\userlib.dll','');
QuarantineFile('C:\Users\user\Downloads\xxx_video_18769.avi.exe','');
DeleteFile('C:\Users\user\Downloads\xxx_video_18769.avi.exe');
ExecuteRepair(16)
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\1A15.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\2EED.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\478A.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\4D07.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\587B.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\627.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\72CF.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\85C4.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\8F43.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\94B0.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\9888.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\9F1C.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\A22A.exe');
DeleteFile('C:\Documents and Settings\user\AppData\Roaming\Microsoft\Windows\Cookies\userlib.dll');
DeleteFile('C:\Documents and Settings\user\Application Data\1055.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\1A15.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\2EED.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\478A.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\4D07.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\587B.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\627.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\72CF.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\85C4.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\8F43.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\94B0.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\9888.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\9F1C.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\A22A.exe');
DeleteFile('C:\Documents and Settings\user\Application Data\B56A.exe');
DeleteFile('C:\Users\user\AppData\Roaming\1055.exe');
DeleteFile('C:\Users\user\AppData\Roaming\1A15.exe');
DeleteFile('C:\Users\user\AppData\Roaming\2EED.exe');
DeleteFile('C:\Users\user\AppData\Roaming\478A.exe');
DeleteFile('C:\Users\user\AppData\Roaming\4D07.exe');
DeleteFile('C:\Users\user\AppData\Roaming\587B.exe');
DeleteFile('C:\Users\user\AppData\Roaming\627.exe');
DeleteFile('C:\Users\user\AppData\Roaming\72CF.exe');
DeleteFile('C:\Users\user\AppData\Roaming\8F43.exe');
DeleteFile('C:\Users\user\AppData\Roaming\94B0.exe');
DeleteFile('C:\Users\user\AppData\Roaming\9888.exe');
DeleteFile('C:\Users\user\AppData\Roaming\9F1C.exe');
DeleteFile('C:\Users\user\AppData\Roaming\A22A.exe');
DeleteFile('C:\Users\user\AppData\Roaming\B56A.exe');
DeleteFile('C:\Users\user\Application Data\1055.exe');
DeleteFile('C:\Users\user\Application Data\1A15.exe');
DeleteFile('C:\Users\user\Application Data\478A.exe');
DeleteFile('C:\Users\user\Application Data\4D07.exe');
DeleteFile('C:\Users\user\Application Data\587B.exe');
DeleteFile('C:\Users\user\Application Data\627.exe');
DeleteFile('C:\Users\user\Application Data\72CF.exe');
DeleteFile('C:\Users\user\Application Data\85C4.exe');
DeleteFile('C:\Users\user\Application Data\8F43.exe');
DeleteFile('C:\Users\user\Application Data\94B0.exe');
DeleteFile('C:\Users\user\Application Data\9888.exe');
DeleteFile('C:\Users\user\Application Data\9F1C.exe');
DeleteFile('C:\Users\user\Application Data\A22A.exe');
DeleteFile('C:\Users\user\Application Data\B56A.exe');
DeleteFile('C:\Users\user\Cookies\userlib.dll');
BC_ImportDeletedList;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
[/code]
пришлите карантин согласно приложения 3 правил
повторите логи
[IMG]http://s019.radikal.ru/i638/1204/fd/3054d3f1be0d.jpg[/IMG]
Нет карантина ..?
Помню когда я делал лог [B]AVZ[/B], то [B]Comodo [/B]что-то пару раз спросил, я нажимал `[I]Удалить[/I]`. Может он и подчистил файлы, которые предполагалось попадут в карантин...
логи повторите