Uruchom OTL i w oknie Custom Scans/Fixes wklej :
:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
C:\Documents and Settings\Jurecki\Ustawienia lokalne\Temp\cvasds1.dll
O4 - HKU\S-1-5-21-842925246-1123561945-725345543-1004..\Run: [cdoosoft] C:\Documents and Settings\Jurecki\Ustawienia lokalne\Temp\herss.exe ()
O32 - AutoRun File - [2010-02-02 09:44:08 | 00,000,059 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-02-02 09:44:08 | 00,000,059 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-02-02 09:44:08 | 00,000,059 | RHS- | M] () - E:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-02-02 09:44:08 | 00,000,059 | RHS- | M] () - F:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{1c81660d-ed56-11de-9ee0-806d6172696f}\Shell\AutoRun\command - "" = D:\9d6tpg.exe -- [2010-02-02 09:38:42 | 00,090,624 | RHS- | M] ()
O33 - MountPoints2\{1c81660d-ed56-11de-9ee0-806d6172696f}\Shell\open\Command - "" = D:\9d6tpg.exe -- [2010-02-02 09:38:42 | 00,090,624 | RHS- | M] ()
O33 - MountPoints2\{1c81660e-ed56-11de-9ee0-806d6172696f}\Shell\AutoRun\command - "" = E:\9d6tpg.exe -- [2010-02-02 09:38:42 | 00,090,624 | RHS- | M] ()
O33 - MountPoints2\{1c81660e-ed56-11de-9ee0-806d6172696f}\Shell\open\Command - "" = E:\9d6tpg.exe -- [2010-02-02 09:38:42 | 00,090,624 | RHS- | M] ()
O33 - MountPoints2\{1c81660f-ed56-11de-9ee0-806d6172696f}\Shell\AutoRun\command - "" = F:\9d6tpg.exe -- [2010-02-02 09:38:42 | 00,090,624 | RHS- | M] ()
O33 - MountPoints2\{1c81660f-ed56-11de-9ee0-806d6172696f}\Shell\open\Command - "" = F:\9d6tpg.exe -- [2010-02-02 09:38:42 | 00,090,624 | RHS- | M] ()
O33 - MountPoints2\{1c816611-ed56-11de-9ee0-806d6172696f}\Shell\AutoRun\command - "" = C:\9d6tpg.exe -- [2010-02-02 09:38:42 | 00,090,624 | RHS- | M] ()
O33 - MountPoints2\{1c816611-ed56-11de-9ee0-806d6172696f}\Shell\open\Command - "" = C:\9d6tpg.exe -- [2010-02-02 09:38:42 | 00,090,624 | RHS- | M] ()
:Files
C:\9d6tpg.exe
C:\mvmdh.exe
C:\y.exe
C:\0fpdq2dw.exe
C:\df.exe
C:\c2e.exe
C:\qkm.exe
C:\yu3.exe
C:\autorun.inf
d:\9d6tpg.exe
d:\mvmdh.exe
d:\y.exe
d:\0fpdq2dw.exe
d:\df.exe
d:\c2e.exe
d:\qkm.exe
d:\yu3.exe
d:\autorun.inf
e:\9d6tpg.exe
e:\mvmdh.exe
e:\y.exe
e:\0fpdq2dw.exe
e:\df.exe
e:\c2e.exe
e:\qkm.exe
e:\yu3.exe
e:\autorun.inf
f:\9d6tpg.exe
f:\mvmdh.exe
f:\y.exe
f:\0fpdq2dw.exe
f:\df.exe
f:\c2e.exe
f:\qkm.exe
f:\yu3.exe
f:\autorun.inf
:Reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
:Commands
[emptytemp]
Kliknij w Run Fix. I potwierdz reset kompa .
Następnie uruchamiasz OTL z opcją Run Scan. Pokazujesz nowy log OTL.txt
oraz raport z czyszczenia komputera