Прошу прощения Андрей, я не смог загрузить вирус, потому что у меня не грузилась картинка с ключами на отправку сообщения.
Сейчас файла нет уже.
Вроде бы компьютер ведёт себя нормально.
Огромное спасибо за помощь!!!
Вот отчёт
All processes killed
========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_Dlls:C:\Windows\system32\bmodqeh.dll deleted successfully.
C:\Windows\System32\bmodqeh.dll moved successfully.
========== COMMANDS ==========
HOSTS file reset successfully
User: Acer
->Temp folder emptied: 353604601 bytes
->Temporary Internet Files folder emptied: 411826699 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 52435642 bytes
->Google Chrome cache emptied: 6512874 bytes
->Flash cache emptied: 2918 bytes
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Public
User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
User: Все пользователи
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 1575440 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 12154446 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 799,00 mb
Restore point Set: OTL Restore Point
OTL by OldTimer - Version log created on 01092013_190302
Files\Folders moved on Reboot…
C:\Users\Acer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\V0UIE81U\contact-form[1].htm moved successfully.
C:\Users\Acer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\V0UIE81U\tweet_button.1357735024[1].htm moved successfully.
C:\Users\Acer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\MXUHSCUP\fastbutton[1].htm moved successfully.
C:\Users\Acer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\MXUHSCUP\index[8].htm moved successfully.
C:\Users\Acer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\52E2R5DX\xd_arbiter[1].htm moved successfully.
C:\Users\Acer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\52E2R5DX\xd_arbiter[3].htm moved successfully.
C:\Users\Acer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\ED8654D5-B9F0-4DD9-B3E8-F8F560086FDF.dat moved successfully.
C:\Users\Acer\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT moved successfully.
File move failed. C:\Windows\temp_avast_\Webshlock.txt scheduled to be moved on reboot.
PendingFileRenameOperations files…
Registry entries deleted on Reboot…