this is my report.
thank
this is my report.
thank
Hi,
Switch off/Disable:
- Antivirus and and, if you have - Firewall.
- System Restore
- Execute following script in Manual Cure
After reboot execute following script in Manual CureКод:begin SearchRootkit(true, true); SetAVZGuardStatus(True); ClearQuarantine; QuarantineFile('winudpmgr.exe',''); QuarantineFile('C:\WINDOWS\system32\sdra64.exe',''); DeleteFile('C:\WINDOWS\system32\sdra64.exe'); DeleteFile('winudpmgr.exe'); DeleteFile('C:\WINDOWS\winudpmgr.exe'); DeleteFile('C:\WINDOWS\system32\winudpmgr.exe'); RegKeyParamDel('HKEY_LOCAL_MACHINE','SOFTWARE\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run','Windows UDP Control Center'); BC_ImportAll; ExecuteSysClean; BC_Activate; ExecuteRepair(13); SetAVZPMStatus(True); RebootWindows(true); end.
- Upload the C:\quarantine.zip over the link Upload quarantined files on the top of this page.Код:begin CreateQurantineArchive('C:\quarantine.zip'); end.
- Remove Bonjour
- Repeat the AVPTool log file.
- Make a Logfile of Hijackthis: http://www.trendsecure.com/portal/en...HiJackThis.zip (How-To read chapter Analysis here: http://virusinfo.info/showthread.php?t=9184)
- Attach both logs to your new post..
Последний раз редактировалось Rene-gad; 08.11.2009 в 19:41.
Thanks
- Upload the C:\quarantine.zip over the link Upload quarantined files on the top of this page.
Why 've I to repeat all my requests more than once?!
The logs are showing nothing suspicious now.
Remove
- SUPERAntiSpyware
- Ad-Aware
- McAfee SiteAdvisor
Avira is realy good and sufficient protection.
Absolutely insufficient - in contrast - is your Service Pack 2 .
Install SP3 + all updates (visit www.windowsupdate.com)
Install IE8, even if you don't use it for browsing.