UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
Adobe Reader 9.4.0 - Polish
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; de; rv:1.9.2.17) Gecko/20110420 Firefox/3.6.17
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
File not found -- C:\Documents and Settings\Angelika H\Desktop\[Fwd_ Re_ FILM SCREENING _
:OTL
SRV - File not found [Auto | Stopped] -- -- (wzumlfjiy)
DRV - File not found [Kernel | Unknown | Running] -- -- (AnyDVD)
IE - HKU\S-1-5-21-448539723-1957994488-839522115-1003\..\URLSearchHook: *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-448539723-1957994488-839522115-1003\..\URLSearchHook: *{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search"
FF - prefs.js..browser.search.defaultthis.engineName: "Softonic Deutsch Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1351351&SearchSource=3&q={searchTerms}"
FF - prefs.js..extensions.enabledItems: [email protected]:3.2.5.2
FF - prefs.js..keyword.URL: "http://us.yhs.search.yahoo.com/avg/search?fr=yhs-avgb&type=yahoo_avg_hs2-tb-web_us&p="
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
[2011.01.11 10:23:10 | 000,000,000 | ---D | M] (Softonic Deutsch Toolbar) -- C:\Documents and Settings\Angelika H\Application Data\Mozilla\Firefox\Profiles\canpy6jm.default\extensions\{8dbb6d8e-e4a6-4e3b-9753-af78b226441c}
[2010.12.12 17:25:05 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Angelika H\Application Data\Mozilla\Firefox\Profiles\canpy6jm.default\extensions\[email protected]
O4 - HKU\.DEFAULT..\RunOnce: [FlashPlayerUpdate] File not found
O4 - HKU\S-1-5-18..\RunOnce: [FlashPlayerUpdate] File not found
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - File not found
O33 - MountPoints2\{28cdda2f-9f43-11dd-8a18-001b7784cfdd}\Shell\AutoRun\command - "" = zivac/primitivac.exe
O33 - MountPoints2\{28cdda2f-9f43-11dd-8a18-001b7784cfdd}\Shell\Explore\command - "" = zivac/primitivac.exe
O33 - MountPoints2\{28cdda2f-9f43-11dd-8a18-001b7784cfdd}\Shell\Open\command - "" = zivac/primitivac.exe
O33 - MountPoints2\{507914e7-f0cf-11dc-89c9-001b7784cfdd}\Shell\AutoRun\command - "" = ntdelect.com
O33 - MountPoints2\{507914e7-f0cf-11dc-89c9-001b7784cfdd}\Shell\explore\Command - "" = F:\utdetect.com
O33 - MountPoints2\{507914e7-f0cf-11dc-89c9-001b7784cfdd}\Shell\open\Command - "" = F:\utdetect.com
O33 - MountPoints2\{50aa7c75-699b-11e0-83f5-001b7784cfdd}\Shell\AutoRun\command - "" = 12gn6id2.exe
O33 - MountPoints2\{50aa7c75-699b-11e0-83f5-001b7784cfdd}\Shell\open\Command - "" = 12gn6id2.exe
[2011.07.30 12:47:03 | 000,000,894 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011.07.30 12:09:41 | 000,000,296 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-448539723-1957994488-839522115-1003.job
[2011.07.30 12:09:41 | 000,000,288 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-448539723-1957994488-839522115-1003.job
[2011.07.30 11:57:42 | 000,000,890 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
@Alternate Data Stream - 24 bytesC:\WINDOWS:70B306F46D393809
:Files
C:\Documents and Settings\Angelika H\Start Menu\Programs\Startup\OpenOffice.org 3.1.lnk
:Reg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\WINDOWS\Temp\~TM159E.tmp"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Alcmtr"=-
"TkBellExe"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; de; rv:1.9.2.18) Gecko/20110614 Firefox/3.6.18
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
:OTL
IE - HKU\S-1-5-21-448539723-1957994488-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1351351
IE - HKU\S-1-5-21-448539723-1957994488-839522115-1003\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-448539723-1957994488-839522115-1003\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-448539723-1957994488-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
[2010.08.05 21:33:12 | 000,000,935 | ---- | M] () -- C:\Documents and Settings\Angelika H\Application Data\Mozilla\Firefox\Profiles\canpy6jm.default\searchplugins\conduit.xml
O3 - HKLM\..\Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found.
O3 - HKU\S-1-5-21-448539723-1957994488-839522115-1003\..\Toolbar\ShellBrowser: (no name) - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - No CLSID value found.
[2011.07.31 10:25:40 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
@Alternate Data Stream - 106 bytesC:\Documents and Settings\All Users\Application Data\TEMP:1CA73D29
:Commands
[emptytemp]
mati8898 napisał(a):Ten obiekt znajdujący się na pulpicie:File not found -- C:\Documents and Settings\Angelika H\Desktop\[Fwd_ Re_ FILM SCREENING _
usuń za pomocą Delete FXP Fileshttp://www.instalki.pl/programy/downloa ... Files.html
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; de; rv:1.9.2.18) Gecko/20110614 Firefox/3.6.18
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
:OTL
[2011.08.01 13:27:08 | 000,000,288 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-448539723-1957994488-839522115-1003.job
[2011.08.01 13:27:06 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2011.08.01 13:07:49 | 000,000,296 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-448539723-1957994488-839522115-1003.job
:Commands
[emptytemp]
directoryfixer C:\Documents and Settings\Angelika H\Desktop\[Fwd_ Re_ FILM SCREENING _
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; de; rv:1.9.2.18) Gecko/20110614 Firefox/3.6.18
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników