OTL wystarczy... nie trzeba sdfixa ani dss
Uruchom OTL i w oknie Custom Scans/Fixes wklej :
:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O4 - HKCU..\Run: [cdoosoft] C:\WINDOWS\system32\olhrwef.exe ()
O32 - AutoRun File - [2009-06-12 18:30:44 | 00,000,063 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009-06-12 18:30:44 | 00,000,063 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009-06-12 18:30:44 | 00,000,063 | RHS- | M] () - E:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009-06-12 18:30:46 | 00,000,063 | RHS- | M] () - F:\autorun.inf -- [ FAT ]
O33 - MountPoints2\{6aa6139f-551d-11de-ac65-806d6172696f}\Shell\AutoRun\command - "" = C:\28b6ry9r.exe -- [2009-06-12 18:11:12 | 00,106,334 | RHS- | M] ()
O33 - MountPoints2\{6aa6139f-551d-11de-ac65-806d6172696f}\Shell\open\Command - "" = C:\28b6ry9r.exe -- [2009-06-12 18:11:12 | 00,106,334 | RHS- | M] ()
O33 - MountPoints2\{6aa613a0-551d-11de-ac65-806d6172696f}\Shell\AutoRun\command - "" = D:\28b6ry9r.exe -- [2009-06-12 18:11:12 | 00,106,334 | RHS- | M] ()
O33 - MountPoints2\{6aa613a0-551d-11de-ac65-806d6172696f}\Shell\open\Command - "" = D:\28b6ry9r.exe -- [2009-06-12 18:11:12 | 00,106,334 | RHS- | M] ()
O33 - MountPoints2\{6aa613a1-551d-11de-ac65-806d6172696f}\Shell\AutoRun\command - "" = E:\28b6ry9r.exe -- [2009-06-12 18:11:12 | 00,106,334 | RHS- | M] ()
O33 - MountPoints2\{6aa613a1-551d-11de-ac65-806d6172696f}\Shell\open\Command - "" = E:\28b6ry9r.exe -- [2009-06-12 18:11:12 | 00,106,334 | RHS- | M] ()
O33 - MountPoints2\{8804dc48-5762-11de-87f9-001d7dc83c2d}\Shell\AutoRun\command - "" = F:\1f.bat -- [2009-06-12 17:25:10 | 00,106,407 | RHS- | M] ()
O33 - MountPoints2\{8804dc48-5762-11de-87f9-001d7dc83c2d}\Shell\open\Command - "" = F:\1f.bat -- [2009-06-12 17:25:10 | 00,106,407 | RHS- | M] ()
O33 - MountPoints2\{b9b31a12-558b-11de-87da-c70c265ccdae}\Shell\AutoRun\command - "" = F:\6phx.com -- File not found
O33 - MountPoints2\{b9b31a12-558b-11de-87da-c70c265ccdae}\Shell\open\Command - "" = F:\6phx.com -- File not found
O33 - MountPoints2\{bf9e1d3a-55fb-11de-87e0-d8c771353d8a}\Shell\AutoRun\command - "" = F:\6phx.com -- File not found
O33 - MountPoints2\{bf9e1d3a-55fb-11de-87e0-d8c771353d8a}\Shell\open\Command - "" = F:\6phx.com -- File not found
:Files
C:\28b6ry9r.exe
D:\28b6ry9r.exe
E:\28b6ry9r.exe
F:\28b6ry9r.exe
C:\6phx.com
D:\6phx.com
E:\6phx.com
F:\6phx.com
C:\autorun.inf
D:\autorun.inf
E:\autorun.inf
F:\autorun.inf
C:\WINDOWS\AhnRpta.exe
C:\WINDOWS\System32\c.exe
C:\1f.bat
D:\1f.bat
E:\1f.bat
F:\1f.bat
C:\WINDOWS\System32\nmdfgds1.dll
C:\6phx.com
C:\WINDOWS\System32\olhrwef.exe
C:\WINDOWS\System32\nmdfgds0.dll
:Reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
:Commands
[emptytemp]
[start explorer]
[Reboot]
Kliknij w Run Fix. I potwierdz reset kompa .
Następnie uruchamiasz OTL z opcją Run Scan. Pokazujesz nowy log OTL.txt oraz raport z czyszczenia kompa