Follow along with the video below to see how to install our site as a web app on your home screen.
Примечание: This feature currently requires accessing the site using the built-in Safari browser.
begin
SearchRootkit(true, true);
SetAVZGuardStatus(true);
QuarantineFile('C:\WINDOWS\System32\DVAPTray.exe','');
QuarantineFile('C:\WINDOWS\system32\DVAPfg.exe','');
QuarantineFile('D:\Go_There_Games.exe','');
QuarantineFile('F:\AutoRun.exe','');
QuarantineFile('I:\DVAP.exe','');
DeleteFile('D:\autorun.inf');
DeleteFile('C:\Program Files\mycent~1\infobar\mycentriainfobar.dll');
DeleteFile('C:\Program Files\mycent~1\infobar\mycent~1.dll');
DelBHO('FFFC57DB-1DE3-4303-B24D-CEE6DCDD3D86');
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
ExecuteRepair(19);
RebootWindows(true);
end.
begin
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
end.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
И проверьте систему TDSSKiller
в процессетогда давайте лог gmer.
Suspicious file (NoAccess): C:\WINDOWS\system32\DRIVERS\atapi.sys. md5: cdfe4411a69c224bd1d11b2da92dac51
2010/11/15 17:00:52.0302 Suspicious file (NoAccess): C:\WINDOWS\system32\Drivers\sptd.sys. md5: 7f1b7c4d446cd3f926af45b8c48bd593
если на это ругался киллер , то я это удалилВы это удаляли