Testirah i ovako stvari stoje.
Najprije End Task nad svchost.exe (Onaj kod kojeg pod Username pise trenutni user - kod sistemskog svchost ce pisati SYSTEM, Local Service ili Network Service)
Izbrises:
c:\WINDOWS\svchost.exe
c:\WINDOWS\system32\gldrv.exe
I u registriju maknes
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{C131CGB2-VLWS-QOC9-LUNY-F3DIDFAB5252}]
"StubPath"="C:\\WINDOWS\\system32\\gldrv.exe"
Znaci maknes cijeli {C131CGB2-VLWS-QOC9-LUNY-F3DIDFAB5252} kljuc.