Switch off/Disable:
- Antivirus and and, if you have - Firewall.
- System Restore
- Execute following script in Manual Cure
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
StopService('Messager');
QuarantineFile('c:\temp\svchost.exe','');
DeleteFile('c:\temp\svchost.exe');
DeleteService('Messager');
BC_ImportAll;
ExecuteSysClean;
BC_DeleteSvc('Messager');
BC_Activate;
RebootWindows(true);
end.
After reboot execute following script in Manual Cure
Код:
begin
CreateQurantineArchive('C:\quarantine.zip');
end.
- Remove Bonjour
- Clean Temp-Maps, Cache of Browsers, Recycler. Use Windows service tool cleanmgr or CCleaner or ClearProg
- Close all the programs and start only Internet Explorer!!!
- Repeat a log file.
- Switch Antivirus and, if you have - Firewall, on.
- Go On-Line
- Upload the quarantine.zip over the link Upload quarantined files on the top of this page.
- Attach a log to your new post..
Добавлено через 3 минуты
Сообщение от
aberiault
my old Anti Virus ESET NOD32 tried unsuccessfuly to remove it.
It doesn't have any sense, in case of infection to try to install any other antivirus. PC cleaning should be done in another way, e.g. from LiveCD.