UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
Task: {4416C234-AC62-40A9-BB88-CAB4C93A2A70} - System32\Tasks\Rodvies => C:\PROGRA~1\GROOVE~1\Wowcak.bat
C:\PROGRA~1\GROOVE~1
Task: {748871A9-4586-4F42-B0FE-D08F3542FE80} - System32\Tasks\Extension Touch => Rundll32.exe "C:\Users\Użytkownik\AppData\Local\Extension Touch\{3659F2A3-1552-A993-B821-A0D887E9D7B9}\ExtensionTouch.dll",#1 <==== UWAGA
Task: {C8491EF0-9153-4B17-A4C2-7A78F2F0DCC8} - System32\Tasks\Extension Touch2 => Rundll32.exe "C:\Users\Użytkownik\AppData\Local\Extension Touch\{3659F2A3-1552-A993-B821-A0D887E9D7B9}\wxktdzqh.dll",#1 <==== UWAGA
C:\Users\Użytkownik\AppData\Local\Extension Touch
Task: {DD63FE89-48F5-440F-B503-F811761C045A} - System32\Tasks\UżytkownikCurbingShankV2 => Rundll32.exe AtelierTrouncer.dll,main 7 1 <==== UWAGA
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2015-10-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480 2016-03-20] (Oracle Corporation)
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Brak pliku
FF Extension: "Extension Touch - C:\Users\Użytkownik\AppData\Roaming\Mozilla\Firefox\Profiles\lcrw53xq.default\Extensions\@298C8502BBC9D65CF540FCD993A94529298C.xpi [2016-01-11] [Brak podpisu cyfrowego]
FF HKLM\...\Firefox\Extensions: [{15096DF0-2644-4C28-82A7-E4BB31F0F7FE}] - C:\Program Files\groover100120161731\Firefox\{15096DF0-2644-4C28-82A7-E4BB31F0F7FE}.xpi => nie znaleziono
FF HKLM-x32\...\Firefox\Extensions: [{15096DF0-2644-4C28-82A7-E4BB31F0F7FE}] - C:\Program Files\groover100120161731\Firefox\{15096DF0-2644-4C28-82A7-E4BB31F0F7FE}.xpi => nie znaleziono
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\!298C8502BBC9D65CF540FCD993A94529298C.js [2016-01-09] <==== UWAGA
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\298C8502BBC9D65CF540FCD993A94529298C [2016-01-09] <==== UWAGA
CHR HomePage: Defaulthxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn49PYmQ6e1krQXBFZY3csoIFlGNl5HukyFdy96XhfAn1CdrURewoI5oeZErsial07r7iYrUFC_Ljlba1bxcH0ALRFhpYSNXX-QDLwmuE5HOBSFz3AKBNJKtKerCrKWaxLyQshno-lZYoZ3pRrpC_rJI34AK4nfa7NLNKymI2O-ePkJZMag,
CHR StartupUrls: Default"hxxp://www.gazeta.pl/0,0.html?p=150","hxxp://www.gazeta.pl/0,0.html?p=153","\r\nhxxp://www.idg.pl/start\r\n","hxxp://isearch.omiga-plus.com/?type=hp&ts=1406236665&from=ild&uid=WDCXWD5000AADS-00S9B0_WD-WCAV9K89563395633","hxxp://www.mystartsearch.com/?type=hp&ts=1443630120&z=d7ab8b39b02abe2148dae87gez6z6ccq2o3tftao3c&from=cor&uid=WDCXWD5000AADS-00S9B0_WD-WCAV9K89563395633","hxxp://www.omniboxes.com/?type=hp&ts=1452363175&z=69338e4b0a2effecc1e5453gaz9wbo8c6qcc3g9m9w&from=amt&uid=wdcxwd5000aads-00s9b0_wd-wcav9k89563395633","hxxp://www.yoursearching.com/?type=hp&ts=1452365191&z=07170ccd0ca5d26bd7a004bgazdw9occ8q3w0g2b1o&from=face&uid=WDCXWD5000AADS-00S9B0_WD-WCAV9K89563395633"
CHR Extension: (Extension Touch) - C:\Users\Użytkownik\AppData\Local\Extension Touch\Component [2016-01-10]
EmptyTemp:
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/49.0.2623.112 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:45.0) Gecko/20100101 Firefox/45.0
Mateusz1993 napisał(a):http://www.wklej.eu/index.php?id=6ffe6ba6f4
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.102 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:46.0) Gecko/20100101 Firefox/46.0
FF Extension: GsearchFinder - C:\Users\Użytkownik\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi [2016-05-01]
SearchScopes: HKLM-x32DefaultScope - brak wartości
CHR HomePage: Defaulthxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn49PYmQ6e1krQXBFZY3csoIFlGNl5HukyFdy96XhfAn1CdrURewoI5oeZErsial07r7iYrUFC_Ljlba1bxcH0ALRFhpYSNXX-QDLwmuE5HOBSFz3AKBNJKtKerCrKWaxLyQshno-lZYoZ3pRrpC_rJI34AK4nfa7NLNKymI2O-ePkJZMag,
CHR StartupUrls: Default"hxxp://www.gazeta.pl/0,0.html?p=150","hxxp://www.gazeta.pl/0,0.html?p=153","\r\nhxxp://www.idg.pl/start\r\n","hxxp://isearch.omiga-plus.com/?type=hp&ts=1406236665&from=ild&uid=WDCXWD5000AADS-00S9B0_WD-WCAV9K89563395633","hxxp://www.mystartsearch.com/?type=hp&ts=1443630120&z=d7ab8b39b02abe2148dae87gez6z6ccq2o3tftao3c&from=cor&uid=WDCXWD5000AADS-00S9B0_WD-WCAV9K89563395633","hxxp://www.omniboxes.com/?type=hp&ts=1452363175&z=69338e4b0a2effecc1e5453gaz9wbo8c6qcc3g9m9w&from=amt&uid=wdcxwd5000aads-00s9b0_wd-wcav9k89563395633","hxxp://www.yoursearching.com/?type=hp&ts=1452365191&z=07170ccd0ca5d26bd7a004bgazdw9occ8q3w0g2b1o&from=face&uid=WDCXWD5000AADS-00S9B0_WD-WCAV9K89563395633","hxxp://www.hohosearch.com/?mode=nnnb&ptid=isr&uid=07E6A5D037EBBE7E9EF036396480AA99&v=20160501&ts=AHEqAX4kC30tAk.."
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników