Смотрите видео ниже, чтобы узнать, как установить наш сайт в качестве веб-приложения на домашнем экране.
Примечание: Эта возможность может быть недоступна в некоторых браузерах.
begin
ClearQuarantine;
SearchRootkit(true, true);
SetAVZGuardStatus(true);
QuarantineFile('C:\WINDOWS\system32\rebuild.exe','');
QuarantineFile('C:\WINDOWS\system32\DRIVERS\wpdusb.sys','');
QuarantineFile('C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe','');
QuarantineFile('C:\WINDOWS\system32\vksaver.dll','');
DeleteFile('C:\WINDOWS\system32\vksaver.dll');
DeleteFile('c:\windows\system32\vksaver.dll');
DeleteFile('C:\autorun.inf');
DeleteFile('C:\mlburmh.exe');
DeleteFile('E:\autorun.inf');
DeleteFile('E:\mlburmh.exe');
DeleteFile('F:\autorun.inf');
DeleteFile('F:\mlburmh.exe');
BC_ImportALL;
ExecuteRepair(9);
BC_Activate;
ExecuteSysClean;
RebootWindows(true);
end.
begin
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
end.
begin
SearchRootkit(true, true);
SetAVZGuardStatus(true);
ClearIECache;
ClearQuarantine;
QuarantineFile('C:\WINDOWS\system32\ieudinit.exe','');
QuarantineFile('C:\WINDOWS\system32\AdvUninstCPL.cpl','');
QuarantineFile('C:\WINDOWS\system32\Path2ClipboardSetup.cpl','');
QuarantineFile('C:\WINDOWS\system32\Startup.cpl','');
QuarantineFile('C:\PROGRA~1\FieryAds\FieryAds.dll','');
QuarantineFile('%USERPROFILE%\Application Data\bpdata.dll','');
QuarantineFile('E:\Миша\Grand Theft Auto IV\Rockstar Games Social Club\RGSCLauncher.exe','');
DeleteFile('%USERPROFILE%\Application Data\bpdata.dll');
DeleteFile('C:\PROGRA~1\FieryAds\FieryAds.dll');
DeleteFile('C:\autorun.inf');
DeleteFile('C:\mlburmh.exe');
DeleteFile('E:\autorun.inf');
DeleteFile('E:\mlburmh.exe');
DeleteFile('F:\autorun.inf');
DeleteFile('F:\mlburmh.exe');
DeleteFile('C:\WINDOWS\system32\aoupbie.dll');
DeleteFile('C:\WINDOWS\system32\ati2avxx.bak');
DeleteFile('C:\WINDOWS\system32\ati2avxx.exe');
DelBHO('{CF272101-7F6E-4CF2-9453-B4C5D2FC32C0}');
DelBHO('{9D64F819-9380-8473-DAB2-702FCB3D7A3E}');
BC_ImportALL;
BC_Activate;
ExecuteSysClean;
ExecuteRepair(6);
ExecuteRepair(9);
RebootWindows(true);
end.
begin
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
end.
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
QuarantineFile('C:\WINDOWS\system32\DRIVERS\wpdusb.sys','');
QuarantineFile('C:\WINDOWS\system32\IMES.dll','');
QuarantineFile('fynlphmh.sys','');
QuarantineFile('C:\Documents and Settings\Администратор\Local Settings\Application Data\Opera\Маша\profile\cache4\temporary_download\ updater_29_118363602.exe','');
QuarantineFile('C:\Documents and Settings\Администратор\Local Settings\Application Data\Opera\Маша\profile\cache4\temporary_download\ updater_29_118367554.exe','');
QuarantineFile('C:\Documents and Settings\Администратор\Local Settings\Application Data\Opera\Маша\profile\cache4\temporary_download\ updater_29_152080483.exe','');
DeleteFile('fynlphmh.sys');
DeleteFile('C:\Documents and Settings\Администратор\Local Settings\Application Data\Opera\Маша\profile\cache4\temporary_download\ updater_29_152080483.exe');
DeleteFile('C:\Documents and Settings\Администратор\Local Settings\Application Data\Opera\Маша\profile\cache4\temporary_download\ updater_29_118367554.exe');
DeleteFile('C:\Documents and Settings\Администратор\Local Settings\Application Data\Opera\Маша\profile\cache4\temporary_download\ updater_29_118363602.exe');
DeleteFile('C:\WINDOWS\system32\IMES.dll');
DeleteFile('C:\WINDOWS\system32\DRIVERS\wpdusb.sys');
DeleteFile('c:\windows\system32\ati2avxx.exe');
DeleteFile('C:\autorun.inf');
DeleteFile('C:\mlburmh.exe');
DeleteFile('E:\autorun.inf');
DeleteFile('E:\mlburmh.exe');
DeleteFile('F:\autorun.inf');
DeleteFile('F:\mlburmh.exe');
BC_ImportALL;
ExecuteSysClean;
BC_Activate;
ExecuteRepair(6);
ExecuteRepair(8);
RegKeyIntParamWrite( 'HKLM', 'SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum', '{BDEADF00-C265-11D0-BCED-00A0C90AB50F}', 1);
RebootWindows(true);
end.
begin
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
end.
begin
SearchRootkit(true, true);
SetAVZGuardStatus(true);
DeleteFile('C:\WINDOWS\system32\aoupbie.dll');
DeleteFile('c:\windows\system32\ati2avxx.exe');
DeleteFile('C:\WINDOWS\system32\IMES.dll');
DeleteFile('C:\autorun.inf');
DeleteFile('C:\mlburmh.exe');
DeleteFile('E:\autorun.inf');
DeleteFile('E:\mlburmh.exe');
DeleteFile('F:\autorun.inf');
DeleteFile('F:\mlburmh.exe');
BC_ImportDeletedList;
BC_Activate;
ExecuteRepair(9);
ExecuteSysClean;
RebootWindows(true);
end.
begin
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
end.
O24 - Desktop Component 0: (no name) - http://line.mole.ru/metoyou/16112007_1_02_30_9_15_17_Hcce0eaf1e8-eceae520-f3e6e5 __.gif
:Processes
explorer.exe
:Services
ati2avxx
:Files
C:\WINDOWS\system32\IMES.dll
C:\WINDOWS\SETE5.tmp
C:\WINDOWS\SETE8.tmp
C:\WINDOWS\SETF4.tmp
C:\WINDOWS\NV1304316.TMP
C:\WINDOWS\system32\aoupbie.dll
C:\mlburmh.exe
C:\WINDOWS\system32\ati2avxx.exe
:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2823fa6d-a5ca-11dd-9686-101111111111}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{45bb6a18-f471-11dd-9a15-0080482fb263}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6e5db280-1c96-11de-9c28-0080482fb263}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8495e1be-ed3c-11dd-99b7-0080482fb263}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{b8715501-a745-11dd-9692-101111111111}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e923c42e-0766-11de-9b18-0080482fb263}]
:Commands
[purity]
[emptytemp]
[start explorer]
[Reboot]
пропускаем..Пропускаем шаг.
Поробуйте в IceSword: Запустите программу.
Появится аналог проводника. Найдите в нем файл C:\WINDOWS\system32\ati2avxx.exe