1. Please, disable System Restore and antivirus (if you have).
2. Execute this script in AVPTool:
Код:
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
DelBHO('{DBB6E653-FB1C-3A67-EDFD-44423E151D91}');
QuarantineFile('C:\WINDOWS\system32\kdtvq.exe','');
QuarantineFile('C:\WINDOWS\system32\d3dx9_3032.dll','');
DeleteFile('C:\WINDOWS\system32\d3dx9_3032.dll');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\381395f6986','DLLName');
DeleteFile('C:\WINDOWS\system32\kdtvq.exe');
RegKeyParamDel('HKEY_LOCAL_MACHINE','Software\Microsoft\Windows\CurrentVersion\Run','C:\WINDOWS\system32\kdtvq.exe');
BC_ImportDeletedList;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.
3. After reboot execute this script in AVPTool:
Код:
begin
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
end.
Upload file quarantine.zip, by link http://virusinfo.info/upload_virus.php?tid=86759
4. Make a new log of AVPTool.