G
Guest
Hi.
A malicious script infected my win2000sp4 with kernels32.exe in
c:\winnt\system32.
I delete the file from safe mode and I create a read only folder with the
same name, and I remove it from the registry in the line shell=explorer.exe
kernels32.exe.
I restart, but still :
my start up is very slow, and when I press ctrl+alt+del, the button task
manager is grayed, impossible to check my running apps, and kill them.
Even if I start, run : taskman.exe, nothing comes.
I have scanned my pc with norton av 2005, with latest updates, and with MS
antispyware beta 1, with latest updates : nothing is found or corrected.
What can I do ?
Thanks.
A malicious script infected my win2000sp4 with kernels32.exe in
c:\winnt\system32.
I delete the file from safe mode and I create a read only folder with the
same name, and I remove it from the registry in the line shell=explorer.exe
kernels32.exe.
I restart, but still :
my start up is very slow, and when I press ctrl+alt+del, the button task
manager is grayed, impossible to check my running apps, and kill them.
Even if I start, run : taskman.exe, nothing comes.
I have scanned my pc with norton av 2005, with latest updates, and with MS
antispyware beta 1, with latest updates : nothing is found or corrected.
What can I do ?
Thanks.