Pouzi Avenger (pozri podpis) s tymto skriptom (skopirujes do bieleho policka a das Execute):
Kód:
Folders to delete:
C:\Program Files\Antispyware 2008
Files to delete:
C:\Windows\system32\s11twsht.dll
C:\Windows\system32\e1.dll
C:\WINDOWS\system32\pngfuxth.dll
Otvor Poznamkovy blok a skopiruj don toto:
Kód:
REGEDIT4
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=""
[-HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\pngfuxth]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
"QXK Olive"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.com/"
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Antispyware-2008.exe"=-
Uloz ako typ "vsetky subory" pod menom "%nieco%.reg" a spusti ho -> OK.
Otestuj na
www.virustotal.com tieto subory:
c:\windows\system32\ntdll64.dll
C:\Windows\system32\ab6prvaz.sys
Start -> Spustit -> msconfig -> WIN.INI -> Zakaz:
Scanner32=Twaino38,22
// doplnene