Alfizik
. SMS- , Windows.
! SMS, 300 .
, )))
, , , ( ), . Win+L, . , . ))
:
1. C:\Documents and Settings\\Local Settings\Temp\922.exe
2. C:\Documents and Settings\\Local Settings\Temporary Internet Files\Content.IE5\HO9NMBT5\aa[1].exe
3. C:\WINDOWS\mfo.exe
44544 MD5 : E7A247CE628D8F455D5E895DBEF71976
:
AntiVir - TR/LockScreen.E.1
Avast - Win32:Malware-gen
AVG - SHeur2.BPQG
Comodo - Heur.Suspicious
DrWeb - Trojan.Winlock.428
Kaspersky - Trojan-Ransom.Win32.SMSer.rk
Panda - Trj/CI.A
Symantec - Trojan.Ransomlock.C
NOD !!! , !
.
LiveCD . LiveCD USB- ( Alkid Live CD iNFR@ CD). portable Dr.Web -
Dr.Web CureIt!, . -
http://www.freedrweb.com/cureit/
AVZ ( ), . . -
http://www.z-oleg.com/secur/avz/download.php
.
" " AVZ
" "
( ).
:
13616. . , . ( ---> - , Regedit) :
HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Internet Explorer \ Desktop \ SafeMode
HKEY_LOCAL_MACHINE \ SYSTEM \ ControlSet001 \ Control \ SafeBoot
HKEY_LOCAL_MACHINE \ System \ ControlSet003 \ Control \ SafeBoot
HKEY_LOCAL_MACHINE \ System \ CurrentControlSet \ Control \ SafeBoot
1 ( ). , , Windows, F8. - " ". .