Apri OTL
sotto il box "custom scans/fixes"
incolla questo codice:
:otl
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\AssaultBP.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\BonusPack.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\Core.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\Editor.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\Engine.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\Fire.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\GamePlay.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\GUI2K4.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\IpDrv.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\Onslaught.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\OnslaughtBP.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\OnslaughtFull.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\SkaarjPack.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\SkaarjPack_rc.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\StreamLineFX.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\UnrealEd.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\UnrealGame.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\UT2k4Assault.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\UT2k4AssaultFull.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\UTClassic.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\UTV2004c.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\UTV2004s.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\UWeb.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\Vehicles.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XAdmin.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XEffects.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XGame.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XGame_rc.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XInterface.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XPickups.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XPickups_rc.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XVoting.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XWeapons.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XWeapons_rc.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0\System\XWebAdmin.u
C:\$Recycle.bin\S-1-5-21-3007467487-2371586424-196871101-1002\$RHT8AK0
C:\ProgramData\SetStretch.exe
C:\ProgramData\SetStretch.cmd
C:\ProgramData\SetStretch.VBS
C:\ProgramData\1416554723.2084.bin
C:\ProgramData\1416554723.5660.bin
C:\ProgramData\1416554723.444.bin
C:\ProgramData\1416554723.5028.bin
C:\ProgramData\1416554723.5596.bin
C:\ProgramData\1416554723.3996.bin
C:\ProgramData\1416554723.3832.bin
C:\ProgramData\1416554723.3132.bin
C:\Users\Radu\AppData\Roaming\YFKK.exe
C:\Users\Radu\AppData\Roaming\CWCKFX.exe
:commands
[emptytemp]
clicca su
RUN FIX
aspetta il riavvio del PC.
Posta il log fuoriuscito.
Nota bene che l'antivirus e altri programmi in esecuzione devono essere
chiusi prima di questo processo.
Poi scarica
TDSSKiller Download
avvialo , clicca su
start scan.
Se rileva un file infetto , seleziona
Cure poi su avanti.
Invece se rileva un file sospetto , seleziona
Skip e sempre su avanti.
Posta il log.