UA: Opera/9.80 (Windows NT 5.1; U; pl) Presto/2.9.168 Version/11.51
UA: Mozilla/5.0 (Windows NT 5.1; rv:6.0.2) Gecko/20100101 Firefox/6.0.2
usunąłem(z tego co mi sie zdaje)
:OTL
DRV - File not found [Kernel | On_Demand | Running] -- -- (catchme)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
O20 - Winlogon\Notify\LogonInit: DllName - (logonInit.dll) - C:\Program Files\Common Files\logonInit.dll ()
[2011-09-18 19:04:05 | 000,001,050 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011-09-17 16:04:00 | 000,001,046 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
:Files
C:\Program Files\Common Files\userInit.dll
C:\WINDOWS\PEV.exe
C:\WINDOWS\sed.exe
C:\WINDOWS\grep.exe
C:\WINDOWS\zip.exe
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"nwiz"=-
"WinampAgent"=-
[HKEY_USERS\S-1-5-21-448539723-287218729-1417001333-500\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=-
:Commands
[clearallrestorepoints]
[emptytemp]
Description = W urządzeniu \Device\Harddisk0\D wystąpił zły blok.
UA: Opera/9.80 (Windows NT 5.1; U; pl) Presto/2.9.168 Version/11.51
UA: Mozilla/5.0 (Windows NT 5.1; rv:7.0) Gecko/20100101 Firefox/7.0
No coz,jesli nie bede mogl tego naprawic zrobie format :c
:OTL
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
O20 - Winlogon\Notify\LogonInit: DllName - (logonInit.dll) - C:\Program Files\Common Files\logonInit.dll ()
[2011-09-20 15:41:31 | 000,000,000 | ---- | M] () -- C:\Program Files\Common Files\userInit.dll
:Commands
[clearallrestorepoints]
UA: Opera/9.80 (Windows NT 5.1; U; pl) Presto/2.9.168 Version/11.51
UA: Mozilla/5.0 (Windows NT 5.1; rv:7.0) Gecko/20100101 Firefox/7.0
UA: Opera/9.80 (Windows NT 5.1; U; pl) Presto/2.9.168 Version/11.51
UA: Mozilla/5.0 (Windows NT 5.1; rv:6.0.2) Gecko/20100101 Firefox/6.0.2
UA: Mozilla/5.0 (Windows NT 5.1; rv:7.0) Gecko/20100101 Firefox/7.0
Ten proces jest irytujacy i czasochlonny
UA: Opera/9.80 (Windows NT 5.1; U; pl) Presto/2.9.168 Version/11.51
UA: Mozilla/5.0 (Windows NT 5.1; rv:7.0) Gecko/20100101 Firefox/7.0
UA: Opera/9.80 (Windows NT 5.1; U; pl) Presto/2.9.168 Version/11.51
UA: Mozilla/5.0 (Windows NT 5.1; rv:7.0) Gecko/20100101 Firefox/7.0
Adobe Reader 9.4.6 - Polish
UA: Opera/9.80 (Windows NT 5.1; U; pl) Presto/2.9.168 Version/11.51
UA: Mozilla/5.0 (Windows NT 5.1; rv:6.0.2) Gecko/20100101 Firefox/6.0.2
d:\Gry\CSS\counter strike source 2011\cstrike\addons\name_enabler.dll (Malware.UPX.Mod) Quarantined and deleted successfully.
Zarejestrowani użytkownicy: Google [Bot]