12 Wrz 2010, 21:01
12 Wrz 2010, 21:30
:OTL
SRV - [2010-09-09 23:17:12 | 002,854,488 | ---- | M] () [Auto | Running] -- c:\Program Files\Common Files\Akamai\rswin_3746.dll -- (Akamai)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva359.sys -- (XDva359)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva352.sys -- (XDva352)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva349.sys -- (XDva349)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva346.sys -- (XDva346)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva345.sys -- (XDva345)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva342.sys -- (XDva342)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva337.sys -- (XDva337)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva327.sys -- (XDva327)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\XDva317.sys -- (XDva317)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\EagleNT.sys -- (EagleNT)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\lukasz\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\blbdrive.sys -- (blbdrive)
IE - HKU\S-1-5-21-1603559253-1888200305-4026527912-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/home?AF=14797
[2010-09-06 17:13:26 | 000,000,000 | ---D | M] (Babylon-English Toolbar) -- C:\Users\lukasz\AppData\Roaming\mozilla\Firefox\Profiles\rpdu1n1r.default\extensions\{ce18769b-c7fa-42d2-860d-17c4662c70ad}
[2010-04-01 12:50:55 | 000,000,000 | ---D | M] -- C:\Users\lukasz\AppData\Roaming\mozilla\Firefox\Profiles\rpdu1n1r.default\extensions\[email protected]
[2010-04-01 12:51:01 | 000,002,426 | ---- | M] () -- C:\Users\lukasz\AppData\Roaming\Mozilla\FireFox\Profiles\rpdu1n1r.default\searchplugins\askcom.xml
[2009-12-06 12:09:14 | 000,001,250 | ---- | M] () -- C:\Users\lukasz\AppData\Roaming\Mozilla\FireFox\Profiles\rpdu1n1r.default\searchplugins\winamp-search.xml
O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Users\lukasz\AppData\Roaming\Gadu-Gadu 10\_userdata\ggbho.2.dll File not found
O20 - Winlogon\Notify\LogonInit: DllName - logonInit.dll - C:\Program Files\Common Files\logonInit.dll ()
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
:Files
C:\Program Files\Common Files\logonInit.dll
C:\Program Files\Common Files\userInit.dll
C:\Users\lukasz\AppData\Local\Temp*.html
:Reg
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=-
"NvMediaCenter"=-
"TkBellExe"=-
:Commands
[clearallrestorepoints]
[emptytemp]
12 Wrz 2010, 22:15
13 Wrz 2010, 17:57
:OTL
O3 - HKU\S-1-5-21-1603559253-1888200305-4026527912-1000\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
14 Wrz 2010, 12:48
14 Wrz 2010, 15:13
17 Wrz 2010, 18:55
17 Wrz 2010, 19:21