
Mój komputer został zarażony wirusem Win32:Patched-HN. Używam avasta jednak nie może sobie z nim poradzić. Wklejam loga i proszę was o pomoc.
http://docs.google.com/Doc?docid=0AbbDf2zo2umVZGdmN2hud3JfMHFqYjhiamZu&hl=en
:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O2 - BHO: (My Global Search Bar BHO) - {37B85A21-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL File not found
O3 - HKLM\..\Toolbar: (My Global Search Bar) - {37B85A29-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL File not found
O3 - HKCU\..\Toolbar\WebBrowser: (My Global Search Bar) - {37B85A29-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL File not found
O4 - HKLM..\Run: [] File not found
O4 - HKCU..\Run: [cdoosoft] C:\Documents and Settings\Mateusz\Ustawienia lokalne\Temp\herss.exe ()
O32 - AutoRun File - [2009-12-22 13:18:40 | 00,000,053 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009-12-22 13:18:40 | 00,000,053 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{36ae0f2b-792b-11de-825f-806d6172696f}\Shell\AutoRun\command - "" = D:\t8g.exe -- [2009-12-18 10:13:36 | 00,119,649 | RHS- | M] ()
O33 - MountPoints2\{36ae0f2b-792b-11de-825f-806d6172696f}\Shell\open\Command - "" = D:\t8g.exe -- [2009-12-18 10:13:36 | 00,119,649 | RHS- | M] ()
O33 - MountPoints2\{95db3800-7975-11de-bf77-00022ad86e17}\Shell\AutoRun\command - "" = G:\t8g.exe -- File not found
O33 - MountPoints2\{95db3800-7975-11de-bf77-00022ad86e17}\Shell\open\Command - "" = G:\t8g.exe -- File not found
O33 - MountPoints2\{b5c2e260-7931-11de-bf72-00022ad86e17}\Shell\AutoRun\command - "" = G:\
O33 - MountPoints2\{b5c2e260-7931-11de-bf72-00022ad86e17}\Shell\open\Command - "" = 38F844F3.exe
:Files
C:\t8g.exe
D:\t8g.exe
e:\t8g.exe
:Reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
:Commands
[emptytemp]
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 4 gości