W własne opcje skanowania wklej:
:OTL
MOD - [2011-08-19 14:01:44 | 000,382,464 | ---- | M] () -- C:\WINDOWS\update.7.1\svchostdriver.exe
SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [Auto | Stopped] -- -- (avg8wd)
SRV - File not found [On_Demand | Stopped] -- -- (AVG Security Toolbar Service)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011-08-19 14:01:44 | 000,382,464 | ---- | M] () [Auto | Running] -- C:\WINDOWS\update.7.1\svchostdriver.exe -- (ddservice)
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\WłAśCICIEL\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\GTD779VI.DEFAULT\EXTENSIONS\{0B38152B-1B20-484D-A11F-5E04A9B0661F}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\WłAśCICIEL\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\GTD779VI.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\WłAśCICIEL\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\GTD779VI.DEFAULT\EXTENSIONS\FFXTLBR@BABYLON.COM
O3 - HKU\S-1-5-21-436374069-1708537768-682003330-1003\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - File not found
O4 - HKLM..\Run: [BabylonToolbar] File not found
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [tray_ico] File not found
O4 - HKLM..\Run: [tray_ico1] File not found
O4 - HKLM..\Run: [tray_ico2] File not found
O4 - HKLM..\Run: [tray_ico3] File not found
O4 - HKLM..\Run: [tray_ico4] File not found
O4 - HKU\S-1-5-21-436374069-1708537768-682003330-1003..\Run: [AQQ] File not found
O4 - HKU\S-1-5-21-436374069-1708537768-682003330-1003..\Run: [EA Core] File not found
O4 - HKU\S-1-5-21-436374069-1708537768-682003330-1003..\Run: [Komunikator] File not found
O4 - HKU\S-1-5-21-436374069-1708537768-682003330-1003..\Run: [PowerBar] File not found
O18 - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - File not found
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - File not found
O31 - SafeBoot: AlternateShell - services32.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
[2011-08-19 22:05:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\ufa
[2011-08-19 15:37:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\phoenix
[2011-08-19 14:01:45 | 000,000,000 | -H-D | C] -- C:\WINDOWS\update.7.1
[2011-08-19 13:42:48 | 000,000,000 | -H-D | C] -- C:\WINDOWS\update.5.0
[2011-08-19 13:42:13 | 000,000,000 | -H-D | C] -- C:\WINDOWS\update.2
[2011-08-19 13:40:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\av_ico
[2011-08-19 13:39:05 | 000,000,000 | -H-D | C] -- C:\WINDOWS\update.1
[2011-08-19 13:38:24 | 000,000,000 | -H-D | C] -- C:\WINDOWS\update.tray-12-0-lnk
[2011-08-19 13:38:24 | 000,000,000 | -H-D | C] -- C:\WINDOWS\update.tray-12-0
File not found -- C:\Documents and Settings\Właściciel\Pulpit\Pidżama Porno
File not found -- C:\Documents and Settings\Właściciel\Pulpit\Letni, Chamski Podryw -
[2011-08-19 22:05:53 | 005,589,370 | ---- | M] () -- C:\WINDOWS\phoenix.rar
[2011-08-19 22:05:53 | 000,182,617 | ---- | M] () -- C:\WINDOWS\ufa.rar
[2011-08-19 14:01:45 | 000,000,179 | ---- | M] () -- C:\WINDOWS\info1
[2011-08-19 13:42:26 | 000,904,792 | ---- | M] () -- C:\WINDOWS\geoiplist.rar
[2011-08-19 13:42:11 | 000,000,000 | ---- | M] () -- C:\WINDOWS\loader2.exe_ok
[2011-08-19 15:37:18 | 005,589,370 | ---- | C] () -- C:\WINDOWS\phoenix.rar
[2011-08-19 15:37:18 | 000,182,617 | ---- | C] () -- C:\WINDOWS\ufa.rar
[2011-08-19 15:37:17 | 001,075,284 | ---- | C] () -- C:\WINDOWS\rpcminer.rar
[2011-08-19 13:42:27 | 004,636,907 | ---- | C] () -- C:\WINDOWS\geoiplist
[2011-08-19 13:42:26 | 000,904,792 | ---- | C] () -- C:\WINDOWS\geoiplist.rar
[2011-08-19 13:42:26 | 000,246,272 | ---- | C] () -- C:\WINDOWS\unrar.exe
[2011-08-19 13:42:13 | 000,000,179 | ---- | C] () -- C:\WINDOWS\info1
[2011-08-19 13:41:10 | 000,000,000 | ---- | C] () -- C:\WINDOWS\loader2.exe_ok
:Reg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot]
"AlternateShell"="cmd.exe"
:Commands
[RESETHOSTS]
[emptytemp]
Kliknij wykonaj skrypt, po czym zresetuj komputer i wykonaj nowy log ;]