Uruchom OTL i w sekcji
własne opcje skanowania / skrypt wklej:
:OTL
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\VcommMgr.sys -- (VcommMgr)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\VComm.sys -- (VComm)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\System32\Drivers\vaxscsi.sys -- (vaxscsi)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btwdndis.sys -- (BTWDNDIS)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btkrnl.sys -- (BTKRNL)
DRV - File not found [Kernel | Boot | Stopped] -- System32\Drivers\BTHidMgr.sys -- (BTHidMgr)
DRV - File not found [Kernel | Boot | Stopped] -- System32\Drivers\vbtenum.sys -- (BTHidEnum)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btport.sys -- (BTDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\btcusb.sys -- (Btcsrusb)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\btaudio.sys -- (btaudio)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btnetdrv.sys -- (BT)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\BlueletSCOAudio.sys -- (BlueletSCOAudio)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\blueletaudio.sys -- (BlueletAudio)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Piotrek\USTAWI~1\Temp\ASFWHide -- (ASFWHide)
IE - HKCU\..\SearchScopes\{D36F7799-BD37-4601-B5EC-C22D6590F6F9}: "URL" = http://www.daemon-search.com/search/web?q={searchTerms}
FF - prefs.js..browser.search.defaultengine: "Web Search"
FF - prefs.js..browser.search.defaultenginename: "Web Search"
FF - prefs.js..browser.search.order.1: "Web Search"
[2009-08-05 16:10:56 | 000,002,399 | ---- | M] () -- C:\Documents and Settings\Piotrek\Dane aplikacji\Mozilla\Firefox\Profiles\39atfiah.default\searchplugins\daemon-search.xml
[2011-07-11 19:04:02 | 000,000,633 | ---- | M] () -- C:\Documents and Settings\Piotrek\Dane aplikacji\Mozilla\Firefox\Profiles\39atfiah.default\searchplugins\startsear.xml
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - No CLSID value found.
O33 - MountPoints2\{36e742a0-319d-11df-8cf9-001636849341}\Shell - "" = AutoRun
O33 - MountPoints2\{36e742a0-319d-11df-8cf9-001636849341}\Shell\AutoRun\command - "" = E:\Setup.exe
O33 - MountPoints2\{47e3caee-68d1-11df-8d21-001636849341}\Shell\AutoRun\command - "" = F:\12gn6id2.exe
O33 - MountPoints2\{47e3caee-68d1-11df-8d21-001636849341}\Shell\open\Command - "" = F:\12gn6id2.exe
O33 - MountPoints2\{d4121b26-b83e-11df-8d68-001636849341}\Shell - "" = AutoRun
O33 - MountPoints2\{d4121b26-b83e-11df-8d68-001636849341}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -a
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - Reg Error: Key error. File not found
@Alternate Data Stream - 104 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:D1B5B4F1
:Commands
[emptytemp]
Kliknij
wykonaj skrypt. I potwierdź reset komputera .
Użyj
AdwCleaner i kliknij w nim
Delete (w przypadku Visty/Windows7 uruchom z prawokliku jako Administrator)
Pokaż raport z niego
Następnie uruchamiasz OTL z opcją skanuj. Pokazujesz nowy log OTL.txt
oraz raport z czyszczenia (zawartość notatnika, która otworzyła się po restarcie).