**** Kill LSASS-SMSS-KGH1,2 *********
Step 1 -> Kill Process
VIRUS service Not Found In Memory !!!
VIRUS kazme_gheyz Not Found In Memory !!!
VIRUS lsass Not Found In Memory !!!
VIRUS smss32 Not Found In Memory !!!
;
----- Step 2 -> Delete Files From Windows Folder-----------------------------------
virus.exe Not Found!
Service.exe Not Found!
FSP32.exe Not Found!
kazme__gheyz.exe Not Found!
hideproc.sys Not Found!
LSASS.exe Not Found!
Documents and Settings\Administrator\LSASS.exe Not Found!
Documents and Settings\Meghdad\LSASS.exe Not Found!
-- Step 3 -> Clean Storage From Virus And Autorun.inf-----
Delete File C:\Autorun.inf OK
C:\kazme__gheyz.exe Not Found!
Delete File C:\RECYCLER\autoplay.exe OK
Delete File D:\Autorun.inf OK
D:\kazme__gheyz.exe Not Found!
Delete File D:\RECYCLER\autoplay.exe OK
Delete File E:\Autorun.inf OK
E:\kazme__gheyz.exe Not Found!
Delete File E:\RECYCLER\autoplay.exe OK
Delete File F:\Autorun.inf OK
F:\kazme__gheyz.exe Not Found!
Delete File F:\RECYCLER\autoplay.exe OK
Delete File G:\Autorun.inf OK
G:\kazme__gheyz.exe Not Found!
Delete File G:\RECYCLER\autoplay.exe OK
;
-------- Step 4 -> Remove Virus From Registry---------------
KGH Ver 2 Not Found In Registry ->\SYSTEM\CurrentControlSet\Services\WIN32CM
KGH Ver 1 Not Found In Registry ->\SYSTEM\CurrentControlSet\Services\kazme__gheyz
KGH Ver 1 Not Found In Registry ->\SYSTEM\CurrentControlSet\Services\C:\WINDOWS\sys tem32\kazme__gheyz
KGH Ver 1 Not Found In Registry ->\SYSTEM\ControlSet001\Services\kazme__gheyz
KGH Ver 1 Not Found In Registry ->\SYSTEM\ControlSet001\Services\C:\WINDOWS\system3 2\kazme__gheyz
\SOFTWARE\Microsoft\Windows\CurrentVersion\RunWith Key=SysUtils Deleted OK!
\SOFTWARE\Microsoft\Windows\CurrentVersion\RunWith Key=SysUtils Deleted OK!
Repair Winlogon Ok
;
--------Step 5 -> Full Repair Registry--------------------
Additional Key Deleted Success
Key Changed Success
This Segment Extracted From Imen AntiVirus Lab
Safe Mode Repair OK
This Segment Extracted From KasperSky AntiVirus Lab
Please Log Off This User