Execute the script:
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
TerminateProcessByName('c:\windows\system32\acovcnt.exe');
QuarantineFile('C:\WINDOWS\system32\btmmhook.dll','');
QuarantineFile('C:\WINDOWS\Installer\{DBA5E973-660D-4CBE-A469-F5C37FBF0CE4}\_C1A9BF9D98647632ED5172.exe','');
QuarantineFile('C:\WINDOWS\system32\02.tmp','');
QuarantineFile('C:\WINDOWS\System32\drivers\tandpl.sys','');
QuarantineFile('C:\WINDOWS\System32\drivers\enodpl.sys','');
QuarantineFile('c:\program files\autorun eater\oldmcdonald.exe','');
QuarantineFile('c:\windows\system32\acovcnt.exe','');
DeleteFile('c:\windows\system32\acovcnt.exe');
BC_DeleteFile('c:\windows\system32\acovcnt.exe');
DeleteFile('C:\WINDOWS\system32\02.tmp');
BC_DeleteFile('C:\WINDOWS\system32\02.tmp');
DeleteService('oogxq');
BC_DeleteSvc('oogxq');
BC_Importall;
BC_Activate;
ExecuteSysClean;
RebootWindows(true);
end.
After the restart, upload quarantine via the link http://virusinfo.info/upload_virus_eng.php?tid=53023 as it's described in the app.3 of the rules and make new logs.