
gmer -del service FOPN
gmer -del file C:\WINDOWS\System32\Drivers\FOPN.sys
gmer –reboot
Drivers to unload:
vspf_hk
vspf
Files to delete:
C:\windows\system32\drivers\vspf5.sys
C:\windows\system32\drivers\vspf_hk5.sys
C:\Program Files\WinAntiVirus Pro 2006
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
{F6104497-54FD-4688-9162-5115CC8AB0FB}=-
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"NWEReboot"=-
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{09129E55-4ADE-475A-B32D-B960DB0BA5E0}"=-
Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Services\aatghmow
*******************
Script file located at: \??\C:\hvrjmsdd.txt
Script file opened successfully.
Script file read successfully
Backups directory opened successfully at C:\Avenger
*******************
Beginning to process script file:
Driver vspf_hk unloaded successfully.
Driver vspf unloaded successfully.
File C:\windows\system32\drivers\vspf5.sys not found!
Deletion of file C:\windows\system32\drivers\vspf5.sys failed!
Could not process line:
C:\windows\system32\drivers\vspf5.sys
Status: 0xc0000034
File C:\windows\system32\drivers\vspf_hk5.sys not found!
Deletion of file C:\windows\system32\drivers\vspf_hk5.sys failed!
Could not process line:
C:\windows\system32\drivers\vspf_hk5.sys
Status: 0xc0000034
Completed script processing.
*******************
Finished! Terminate.
C:\WINDOWS\system32\tmp.reg
C:\qoobox
C:\WINDOWS\SYSTEM32\mcrh.tmp
C:\windows\System32\vcacfcws.ini
C:\windows\System32\pdgvlbku.ini
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
{F6104497-54FD-4688-9162-5115CC8AB0FB}
C:\windows\System32\vcacfcws.ini
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 6 gości