kindly help
kindly help
Hi,
Close/unload all the programs excepted AVZ and Internet Explorer
Switch off:
- Antivirus and and, if you have - Firewall.
- System Restore
- Execute following script in Manual Healing
After reboot:Код:begin SearchRootkit(true, true); SetAVZGuardStatus(True); QuarantineFile('C:\WINDOWS\system32\DWRCSh32.DLL',''); QuarantineFile('C:\Documents and Settings\dwl\dwl21\winlogon.exe',''); QuarantineFile('C:\DOCUME~1\dwl\LOCALS~1\Temp\QH1377.ins\ntclnsrv.exe',''); QuarantineFile('C:\DOCUME~1\dwl\LOCALS~1\Temp\08152303\24191.sys',''); ExecuteWizard('TSW', 2, 2, true); ExecuteWizard('SCU',3, 3, true); BC_ImportAll; ExecuteSysClean; BC_Activate; RebootWindows(true); end.
- Execute following script in Manual Healing
- Upload the C:\quarantine.zip here: http://virusinfo.info/upload_virus_eng.php?tid=84994Код:begin CreateQurantineArchive('C:\quarantine.zip'); end.
- Your System is extremely vulnerable. Prepare to install Service Pack 3 + all subsequent updates + Internet Explorer 8
- Make a new log file of AVPTool
- Make a log file of Malwarebytes Antimalware: http://www.malwarebytes.org/mbam.php
- Attach a new log to your new post..
Статистика проведенного лечения:
- Получено карантинов: 1
- Обработано файлов: 2
- В ходе лечения обнаружены вредоносные программы:
- c:\documents and settings\dwl\dwl21\winlogon.exe - Trojan-Downloader.Win32.VB.zmd ( DrWEB: Trojan.Siggen2.408, BitDefender: Trojan.Generic.KD.21743 )