
OTL.Txt
http://wklej.org/id/582453/
Extras.Txt
http://wklej.org/id/582462/
Z góry dziękuję za pomoc, pozdrawiam.
:OTL
PRC - [2011-08-22 17:08:04 | 000,382,464 | ---- | M] () -- C:\Windows\update.7.1\svchostdriver.exe
SRV - [2011-08-22 17:08:04 | 000,382,464 | ---- | M] () [Auto | Running] -- C:\Windows\update.7.1\svchostdriver.exe -- (ddservice)
O4 - HKLM..\Run: [2085429.exe] C:\Windows\Temp\2085429.exe ()
O4 - HKLM..\Run: [3204145.exe] C:\Windows\Temp\3204145.exe ()
O4 - HKLM..\Run: [3801455-loader2.exe] C:\Windows\Temp\3801455-loader2.exe ()
O4 - HKLM..\Run: [6188949.exe] C:\Windows\Temp\6188949.exe ()
O4 - HKLM..\Run: [6462105.exe] C:\Users\Nowak\AppData\Local\Temp\6462105.exe ()
O4 - HKLM..\Run: [avast5] File not found
O4 - HKLM..\Run: [sysdriver32.exe] File not found
O4 - HKLM..\Run: [sysdriver32_.exe] File not found
O4 - HKLM..\Run: [tray_ico1] File not found
O4 - HKU\S-1-5-21-563868195-2239554368-2030781534-1001..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-563868195-2239554368-2030781534-1001..\Run: [spol] File not found
O4 - HKU\S-1-5-21-563868195-2239554368-2030781534-1001..\Run: [WhatPulse] File not found
O31 - SafeBoot: AlternateShell - services32.exe
[2011-08-22 17:17:14 | 000,000,000 | ---D | C] -- C:\Windows\rpcminer
[2011-08-22 17:17:14 | 000,000,000 | ---D | C] -- C:\Windows\phoenix
[2011-08-22 17:08:05 | 000,000,000 | -H-D | C] -- C:\Windows\update.7.1
[2011-08-22 17:06:44 | 000,000,000 | -H-D | C] -- C:\Windows\update.2
[2011-08-22 17:05:55 | 000,000,000 | -H-D | C] -- C:\Windows\update.5.0
[2011-08-22 16:56:58 | 000,000,000 | -H-D | C] -- C:\Windows\update.1
[2011-08-22 21:25:20 | 000,000,223 | ---- | M] () -- C:\Windows\info1
[2011-08-22 17:59:01 | 000,001,006 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-563868195-2239554368-2030781534-1001Core.job
[2011-08-22 17:17:13 | 005,589,370 | ---- | M] () -- C:\Windows\phoenix.rar
[2011-08-22 17:17:13 | 001,075,284 | ---- | M] () -- C:\Windows\rpcminer.rar
[2011-08-22 17:17:13 | 000,246,272 | ---- | M] () -- C:\Windows\unrar.exe
[2011-08-22 17:17:13 | 000,182,617 | ---- | M] () -- C:\Windows\ufa.rar
[2011-08-22 17:06:13 | 000,904,792 | ---- | M] () -- C:\Windows\geoiplist.rar
[2011-08-22 17:04:06 | 000,000,000 | ---- | M] () -- C:\Windows\loader2.exe_ok
:Reg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot]
"AlternateShell"="cmd.exe"
:Commands
[resethosts]
[emptytemp]
[emptyflash]
Pokazujesz nowy log OTL.txt oraz raport z czyszczenia (zawartość notatnika, która otworzy się po restarcie).
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 21 gości