UA: Mozilla/5.0 (Windows NT 6.0; WOW64; rv:2.0) Gecko/20100101 Firefox/4.0
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.46 Safari/535.11
UA: Mozilla/5.0 (Windows NT 6.0; WOW64; rv:2.0) Gecko/20100101 Firefox/4.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.1) Gecko/20100101 Firefox/10.0.1
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://startsear.ch/?aff=1&cf=9937fe90-cf4d-11e0-a753-00238bcf9dba
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=100000014&gct=hp
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
[2012-01-25 14:14:35 | 000,002,580 | ---- | M] () -- C:\Users\Majamiko\AppData\Roaming\Mozilla\Firefox\Profiles\gh0wcspp.default\searchplugins\askcom.xml
[2011-07-11 19:04:02 | 000,000,633 | ---- | M] () -- C:\Users\Majamiko\AppData\Roaming\Mozilla\Firefox\Profiles\gh0wcspp.default\searchplugins\startsear.xml
[2011-10-03 10:14:54 | 000,083,456 | ---- | M] (vShare.tv ) -- C:\Program Files (x86)\mozilla firefox\plugins\npvsharetvplg.dll
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
O4 - HKCU..\Run: [AccelerometerSysTrayApplet] "C:\Windows\system32\AccelerometerSt.Exe" File not found
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 File not found
MsConfig:64bit - StartUpReg: DAEMON Tools Lite - hkey= - key= - File not found
MsConfig:64bit - StartUpReg: LightScribe Control Panel - hkey= - key= - File not found
MsConfig:64bit - State: "startup" - Reg Error: Key error.
[2012-02-14 23:43:01 | 000,001,052 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012-02-14 23:28:36 | 000,001,048 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012-02-14 19:14:22 | 000,000,440 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{095E9238-9C35-4907-9E07-41F8E3CFF137}.job
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"APSDaemon"=-
"CLMLServer for HP TouchSmart"=-
"UCam_Menu"=-
"UpdateLBPShortCut"=-
"UpdateP2GoShortCut"=-
"UpdatePDIRShortCut"=-
"UpdatePSTShortCut"=-
:Commands
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.0; WOW64; rv:2.0) Gecko/20100101 Firefox/4.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0.1) Gecko/20100101 Firefox/10.0.1
+ nowe logi z OTL.
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.1) Gecko/20100101 Firefox/10.0.1
UA: Mozilla/5.0 (Windows NT 6.0; WOW64; rv:2.0) Gecko/20100101 Firefox/4.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0.1) Gecko/20100101 Firefox/10.0.1
:OTL
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
[2012-01-24 22:06:22 | 000,000,000 | ---D | M] (HP Detect) -- C:\Users\Majamiko\AppData\Roaming\Mozilla\Firefox\Profiles\gh0wcspp.default\extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2}
[2011-09-22 08:15:39 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Majamiko\AppData\Roaming\Mozilla\Firefox\Profiles\gh0wcspp.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2012-01-24 01:01:27 | 000,000,000 | ---D | M] (Разпознаване на устройство Logitech) -- C:\Users\Majamiko\AppData\Roaming\Mozilla\Firefox\Profiles\gh0wcspp.default\extensions\[email protected]
CHR - Extension: vshare plugin = C:\Users\Majamiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj\1.3_0\
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} - No CLSID value found.
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O15 - HKCU\..Trusted Ranges: Range1 ([http] in Local intranet)
@Alternate Data Stream - 130 bytes -> C:\ProgramData\Temp:B755D674
:Files
C:\Program Files (x86)\Google\Update
C:\ProgramData\McAfee
C:\Users\Majamiko\AppData\Local\setup.exe
C:\Windows\tasks\*.job
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HP Health Check Scheduler"=-
"StartCCC"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.1) Gecko/20100101 Firefox/10.0.1
:OTL
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} - No CLSID value found.
[2012-02-16 14:08:04 | 000,000,346 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForMajamiko.job
Java(TM) 6 Update 29
Java(TM) 6 Update 7
Adobe Reader 9
UA: Mozilla/5.0 (Windows NT 6.0; WOW64; rv:2.0) Gecko/20100101 Firefox/4.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.2) Gecko/20100101 Firefox/10.0.2
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników