UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0.1) Gecko/20100101 Firefox/8.0.1

UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0) Gecko/20100101 Firefox/10.0
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [CardDetectorICON225] C:\Program Files (x86)\CardDetector\ICON225\CardDetector.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
URUCHOM
Msconfig
Usługi
odznacz usługi
Windows Defender, NVIDIA Display Driver Service i Acer Update.
Bonjour, Google Toolbar i Yahoo! (chyba, że używasz).
w oknie Własne opcje skanowania/skrypt wklej::OTL
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0415&m=aspire_5742g&r=27361210i165l0474z125v4722236r
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0415&m=aspire_5742g&r=27361210i165l0474z125v4722236r
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0415&m=aspire_5742g&r=27361210i165l0474z125v4722236r
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://startsear.ch/?aff=1
IE - HKU\S-1-5-21-413342750-3625534322-78780742-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\yez\Desktop
IE - HKU\S-1-5-21-413342750-3625534322-78780742-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0415&m=aspire_5742g&r=27361210i165l0474z125v4722236r
IE - HKU\S-1-5-21-413342750-3625534322-78780742-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.orange.pl
IE - HKU\S-1-5-21-413342750-3625534322-78780742-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
O4 - HKLM..\Run: [] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files (x86)\Yahoo!\Common\yinsthelper.dll (YInstStarter Class)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
@Alternate Data Stream - 143 bytes -> C:\ProgramData\Temp:CDFF58FE
:Files
C:\Program Files (x86)\Google\Update
C:\Users\yez\Desktop\gmer
C:\Windows\tasks\*.job
C:\Users\yez\Desktop\gmer.zip
C:\Windows\SysWow64\shortcut_ex.dat
C:\Windows\hpomdl30.dat.temp
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0.1) Gecko/20100101 Firefox/8.0.1

UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0) Gecko/20100101 Firefox/10.0

UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0) Gecko/20100101 Firefox/10.0
mati8898 napisał(a):Przywróć plik hpomdl30.dat.temp z kwarantanny OTL, czyli C:\_OTL do folderu C:\Windows i zobacz, czy komunikat nadal się będzie pojawiał.
http://www.instalki.pl/programy/downloa ... oruns.html.
HijackThis.:OTL
:Files
C:\SDFix
C:\Users\yez\Desktop\SDFix_www.INSTALKI.pl.exe
:Commands
[clearallrestorepoints]
[emptytemp]

UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0.1) Gecko/20100101 Firefox/8.0.1

UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0) Gecko/20100101 Firefox/10.0

UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0.1) Gecko/20100101 Firefox/8.0.1
mati8898 napisał(a):Przywróć plik hpomdl30.dat.temp z kwarantanny OTL, czyli C:\_OTL do folderu C:\Windows i zobacz, czy komunikat nadal się będzie pojawiał.

UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0) Gecko/20100101 Firefox/10.0
hpomdl30.dat.temp, ale z jakimś innym. Reinstaluj oprogramowanie HP, bądź pokaż screen z komunikatu.
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:8.0.1) Gecko/20100101 Firefox/8.0.1

UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0) Gecko/20100101 Firefox/10.0
rdpclip, mwlDaemon, RtHDVCpl, HP Digital Imaging Monitor.lnk, Microsoft Windows, Microsoft Windows, NeroMobileAd, MBAMShlExt, NvCplDesktopContext, Windows Live ID Sign-in Helper, Adobe PDF Link Helper, Java(tm) Plug-In 2 SSV Helper, Skype Browser Helper , całą zakładkę
Task Scheduler, gupdate i gupdatem. Następnie podaj nowe logi z OTL.
UA: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)

UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0.1) Gecko/20100101 Firefox/10.0.1
w oknie Własne opcje skanowania/skrypt wklej::OTL
O3 - HKU\S-1-5-21-413342750-3625534322-78780742-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
:Files
C:\Users\yez\Desktop\Autoruns
C:\Users\yez\Desktop\AutoRuns.arn
C:\Users\yez\Desktop\Autoruns.zip
:Commands
[clearallrestorepoints]
[emptytemp]
Sprzątanie.
Java(TM) 6 Update 5, Java(TM) 6 Update 24 i zainstaluj najnowszą
http://www.instalki.pl/programy/downloa ... %29_6.html.
dobe Reader 9.5.0 MUI i zainstaluj najnowszą
http://www.instalki.pl/programy/downloa ... eader.html.
https://www.instalki.pl/download/programy/windows/multimedia/kodeki/k-lite-codec-pack-full/.
Skype™ 5.5 i zainstaluj najnowszą
http://www.instalki.pl/programy/downloa ... Skype.html.
Pomoc
Sprawdź dostępność aktualizacji...).
https://www.instalki.pl/download/programy/windows/narzedzia/narzedzia-systemowe/ccleaner/.
https://www.instalki.pl/download/programy/windows/bezpieczenstwo/antyspyware/malwarebytes/, jeśli coś znajdzie usuń i daj raport.
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.1) Gecko/20100101 Firefox/10.0.1
.
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.1) Gecko/20100101 Firefox/10.0.1

Zarejestrowani użytkownicy: Bing [Bot]