30 Sty 2014, 16:00
30 Sty 2014, 16:06
30 Sty 2014, 16:27
30 Sty 2014, 17:28
30 Sty 2014, 19:15
:OTL
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com/?type=hp&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3&q={searchTerms}
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3&q={searchTerms}
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.awesomehp.com/?type=hp&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com/?type=hp&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.awesomehp.com/?type=hp&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3
IE - HKU\S-1-5-21-1783630719-625014831-3730506037-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=ds&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3&q={searchTerms}
IE - HKU\S-1-5-21-1783630719-625014831-3730506037-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.awesomehp.com/?type=hp&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3
IE - HKU\S-1-5-21-1783630719-625014831-3730506037-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=ds&ts=1391083207&from=amt&uid=ST9500420AS_5VJ8R3N3&q={searchTerms}
O2:64bit: - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O2 - BHO: (no name) - {61DB16C5-B733-43F4-872E-B20DC9E72740} - No CLSID value found.
O3 - HKU\S-1-5-21-1783630719-625014831-3730506037-1001\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe File not found
O4 - HKU\S-1-5-21-1783630719-625014831-3730506037-1001..\Run: [NextLive] C:\Users\Sławek\AppData\Roaming\newnext.me\nengine.dll (NewNextDotMe)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O16 - DPF: Garmin Communicator Plug-In https://static.garmincdn.com/gcp/ie/2.9.3.0/GarminAxControl.CAB (Reg Error: Key error.)
[2014-01-30 13:01:23 | 000,000,000 | ---D | C] -- C:\Users\Sławek\.android
[2014-01-30 13:01:20 | 000,000,000 | ---D | C] -- C:\Users\Sławek\AppData\Roaming\newnext.me
[2014-01-30 13:01:20 | 000,000,000 | ---D | C] -- C:\Users\Sławek\AppData\Local\cache
[2014-01-30 13:01:19 | 000,000,000 | ---D | C] -- C:\Users\Sławek\Documents\Mobogenie
[2014-01-30 13:01:19 | 000,000,000 | ---D | C] -- C:\Users\Sławek\AppData\Local\Mobogenie
[2014-01-30 13:01:19 | 000,000,000 | ---D | C] -- C:\Users\Sławek\AppData\Local\genienext
[2014-01-30 13:00:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mobogenie
[2014-01-30 13:00:27 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService
[2014-01-30 13:00:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SupTab
[2014-01-30 13:00:22 | 000,000,000 | ---D | C] -- C:\ProgramData\WPM
[2014-01-28 23:19:51 | 000,000,344 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForSŁAWEK-HP$.job
:Files
C:\Users\Sławek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HP SimpleSave Monitor.lnk
:Commands
[clearallrestorepoints]
[emptytemp]
30 Sty 2014, 20:03
30 Sty 2014, 20:05
30 Sty 2014, 20:09
30 Sty 2014, 20:35
30 Sty 2014, 21:26
:OTL
[2014-01-30 13:01:23 | 000,000,000 | ---D | C] -- C:\Users\Sławek\.android
[2014-01-30 13:01:20 | 000,000,000 | ---D | C] -- C:\Users\Sławek\AppData\Roaming\newnext.me
[2014-01-30 13:01:20 | 000,000,000 | ---D | C] -- C:\Users\Sławek\AppData\Local\cache
[2014-01-30 13:01:19 | 000,000,000 | ---D | C] -- C:\Users\Sławek\Documents\Mobogenie
[2014-01-30 13:01:19 | 000,000,000 | ---D | C] -- C:\Users\Sławek\AppData\Local\Mobogenie
[2014-01-30 13:01:19 | 000,000,000 | ---D | C] -- C:\Users\Sławek\AppData\Local\genienext
[2014-01-30 13:00:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mobogenie
[2014-01-30 13:00:27 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService
[2014-01-30 13:00:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SupTab
[2014-01-30 13:00:22 | 000,000,000 | ---D | C] -- C:\ProgramData\WPM
[2014-01-04 18:00:45 | 000,000,336 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForSławek.job
:Files
C:\Users\Sławek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HP SimpleSave Monitor.lnk
:Commands
[reboot]
30 Sty 2014, 21:31
30 Sty 2014, 21:36
30 Sty 2014, 22:33
30 Sty 2014, 22:45
31 Sty 2014, 13:09