brakuje loga extras... spróbuj odpalić też log z Gmera
Uruchom OTL i w oknie Custom Scans/Fixes wklej :
:OTL
O4 - HKLM..\Run: [svchost] c:\WINDOWS\svchost.exe ()
O32 - AutoRun File - [2009-03-21 19:11:38 | 000,059,308 | RH-- | M] () - F:\autorun.inf -- [ FAT ]
O32 - AutoRun File - [2009-02-13 10:49:05 | 000,095,034 | RHS- | M] () - Y:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\##192.168.2.11#t\Shell - "" = AutoRun
O33 - MountPoints2\##192.168.2.11#t\Shell\AutoRun\command - "" = Z:\starter.exe -- File not found
O33 - MountPoints2\{609d1d3b-30a8-11dd-adc6-001a64a0683c}\Shell\AutoRun\command - "" = F:\Portable_usb.exe -- File not found
O33 - MountPoints2\{ee64c669-feb4-11de-b3ac-001a64a0683c}\Shell - "" = AutoRun
:Files
C:\WINDOWS\System32\ykerjqwn.dll
c:\WINDOWS\svchost.exe
:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
:Commands
[emptytemp]
Kliknij w Run Fix. I potwierdź reset komputera .
Następnie uruchamiasz OTL z opcją Run Scan. Pokazujesz nowy log OTL.txt
oraz raport z czyszczenia komputera + log z Gmera