Ciao Danielita,
allora se non dovessi riuscire con CLRAV, lo devi fare manualmente o fallo fare a chi è un po' esperto di PC ecco le modalità per la rimozione prelevate dal sito
www.trendmicro.comManual Removal
Restart the system in Safe mode. Except Windows NT, all Windows system can be restarted.
For Windows 95 systems, this could be done with the following instructions:
Restart the computer.
Press the F8 key when you see the message "Starting Windows 95".
For Windows 98/Me systems, please follow these steps:
Restart the computer.
Hold down the Ctrl key until the Windows 98 startup menu appears.
Choose the Safe Mode option and press the Enter key.
For Windows XP systems, please follow the following instructions:
Restart the computer.
When prompted, press the F8 key. If Windows XP Professional starts without the “Press select operating system to start” menu, restart the computer. Press F8 again after the Power-On Self Test is done.
Choose the Safe Mode option from the Windows Advanced Options Menu.
For Windows 2000 systems, please follow these steps:
Restart the computer.
Press the F8 key, when you see the Starting Windows bar at the bottom of the screen.
Choose the Safe Mode option from the Windows 2000 Advanced Options Menu.
Scan your system with Trend antivirus and note any WORM_KLEZ.E infected file named WINK*.EXE (* is a random number of random characters).
Click Start, and then click on Run.
After the Run dialog box appears, type regedit on the input box provided and press the Enter key.
As soon as the Registry Editor window’s appears, locate the following key:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\
CurrentVersion\Run
In the right pane, look for the following values:
”Wink*” = ”%System%\Wink*.exe”
”WQK” = “%System%\Wqk.exe”
Note: * is any random characters
Click on these values if they exist and press the DEL key to delete them.
Now locate the following key if they exist:
HKEY_LOCAL_MACHINE\System\CurrentControl
Set\Services
Under the Services key, look for the subkey Wink* and delete it if it exists.
Close the Registry Editor.
Restart the system.
Do a scan of the system again and delete any files detected with WORM_KLEZ.E.
Using your notes in step 2, delete all values in the right panel that have the same name as those files detected/deleted by your Trend Micro antivirus.
Since this worm makes use of a vulnerability in HTTP-based email clients like Microsoft Outlook and Outlook Express, please apply the latest patch:
Update to Internet Explorer 5.01 SP2
Update to IE 5.5 SP2
Update to IE 6.0
Trend Micro offers best-of-breed antivirus and content-security solutions for your corporate network or home PC.
Ciao fammi sapre Marco(amvinfe)
<u></u>