UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
:OTL
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&st=4&q={searchTerms}&barid={CDD325CD-A1A5-11E0-8909-BCAEC55601D8}
IE - HKU\S-1-5-21-881703838-129982336-1645053698-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&AF=108603&babsrc=SP_ss&mntrId=be6c1c28000000000000bcaec55601d8
IE - HKU\S-1-5-21-881703838-129982336-1645053698-1000\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=6B1B35E2-74E9-4CD4-A921-CD80697BC79E&apn_sauid=CA17AB23-8BAA-4DB7-BE0B-73A2657EE2D0
IE - HKU\S-1-5-21-881703838-129982336-1645053698-1000\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search?q={searchTerms}
IE - HKU\S-1-5-21-881703838-129982336-1645053698-1000\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incredibar.com/mb139/?search={searchTerms}&loc=IB_DS&a=6R8CYGX0YT&i=26
IE - HKU\S-1-5-21-881703838-129982336-1645053698-1000\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&st=4&q={searchTerms}&barid={CDD325CD-A1A5-11E0-8909-BCAEC55601D8}
FF - prefs.js..browser.search.defaultthis.engineName: "Gamebario2 Customized Web Search"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..sweetim.toolbar.previous.browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2652911&SearchSource=3&q={searchTerms}"
FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2652911&q="
[2011-10-14 09:54:08 | 000,000,000 | ---D | M] ("Facecons") -- C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\xlirx5bc.default\extensions\[email protected]
[2014-02-07 12:33:33 | 000,000,000 | ---D | M] (ArcaBit Ext.) -- C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]
O4 - HKU\S-1-5-21-881703838-129982336-1645053698-1000..\Run: [NvidiaHostStart] C:\Users\user\AppData\Local\NVIDIA Corporation\nvsync.exe ()
O9:64bit: - Extra Button: ArcaVir >> - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - C:\Program Files\ArcaBit\WebExtensions\ie\ArcaIEExt.dll File not found
O9:64bit: - Extra 'Tools' menuitem : ArcaVir >> - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - C:\Program Files\ArcaBit\WebExtensions\ie\ArcaIEExt.dll File not found
[2014-02-07 00:01:59 | 000,000,000 | ---D | C] -- C:\AdwCleaner
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
:OTL
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll File not found
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
Użycie procesora i pamięci jest tak na poziomie 50 % gdy nic nie robię.
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
rdpclip
Adobe ARM
GrooveMonitor
HDAudDeck
ISUSScheduler
Microsoft Windows
Microsoft Windows
(Default)
ISUSPM Startup
KiesPDLR
NvidiaHostStart
\Microsoft\Windows Defender\MP Scheduled Scan
\Microsoft\Windows\NetTrace\GatherNetworkInfo
\Microsoft\Windows\Windows Media Sharing\UpdateLibrary
oraz wszystkie wpisy oznaczone na żółto
NVSvc
Microsoft Office Groove Audit Service
nvUpdatusService
odserv
ose
PEVSystemStart
Stereo Service
WinDefend
WMPNetworkSvc
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
Zarejestrowani użytkownicy: Bing [Bot]