UA: Mozilla/5.0 (Windows NT 6.0; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
:OTL
SRV - File not found [Auto | Stopped] -- C:\Program Files\RightSurf\updateRightSurf.exe -- (Update RightSurf)
SRV - [2014-02-04 17:33:42 | 000,493,568 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Running] -- C:\ProgramData\WPM\wprotectmanager.exe -- (Wpm)
SRV - [2014-01-09 09:01:20 | 000,063,168 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Mobogenie\MgAssist.exe -- (MgAssistService)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\blbdrive.sys -- (blbdrive)
IE - HKLM\..\URLSearchHook: - No CLSID value found
IE - HKLM\..\URLSearchHook: {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files\SiteFinder\SiteFinder.dll (Site Finder)
FF - prefs.js..extensions.enabledAddons: sitefinder%40sitefinder.com:1.0.1
[2014-02-04 17:33:15 | 000,000,000 | ---D | M] ("Site Finder") -- C:\Users\Maciek\AppData\Roaming\mozilla\Firefox\Profiles\u8yirgqr.default\extensions\[email protected]
[2014-02-04 16:45:28 | 000,548,617 | ---- | M] () (No name found) -- C:\Users\Maciek\AppData\Roaming\mozilla\firefox\profiles\u8yirgqr.default\extensions\[email protected]
O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe File not found
O4 - HKCU..\Run: [NextLive] C:\Users\Maciek\AppData\Roaming\newnext.me\nengine.dll (NewNextDotMe)
O9 - Extra Button: Site Finder - {CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files\SiteFinder\SiteFinder.dll (Site Finder)
[2014-02-11 14:15:39 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014-02-04 17:33:47 | 000,000,000 | ---D | C] -- C:\Program Files\SupTab
[2014-02-04 17:32:54 | 000,000,000 | ---D | C] -- C:\Program Files\SiteFinder
2014-02-04 16:41:50 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService
[2014-02-04 16:41:42 | 000,000,000 | ---D | C] -- C:\ProgramData\WPM
[2014-01-30 22:17:35 | 000,000,000 | ---D | C] -- C:\Users\Maciek\AppData\Local\SaveSenseLive
[2014-01-30 22:17:35 | 000,000,000 | ---D | C] -- C:\ProgramData\SaveSenseLive
[2014-01-30 22:17:35 | 000,000,000 | ---D | C] -- C:\Program Files\SaveSenseLive
[2014-01-30 22:17:19 | 000,000,000 | ---D | C] -- C:\Users\Maciek\AppData\Roaming\SaveSense
[2014-01-25 14:12:37 | 000,000,000 | ---D | C] -- C:\Users\Maciek\.android
[2014-01-25 14:12:36 | 000,000,000 | ---D | C] -- C:\Users\Maciek\AppData\Roaming\newnext.me
[2014-01-25 14:12:36 | 000,000,000 | ---D | C] -- C:\Users\Maciek\AppData\Local\cache
[2014-01-25 14:12:35 | 000,000,000 | ---D | C] -- C:\Users\Maciek\AppData\Local\genienext
[2014-01-25 14:12:34 | 000,000,000 | ---D | C] -- C:\Users\Maciek\Documents\Mobogenie
[2014-01-25 14:12:34 | 000,000,000 | ---D | C] -- C:\Users\Maciek\AppData\Local\Mobogenie
[2014-01-25 14:11:47 | 000,000,000 | ---D | C] -- C:\Program Files\Mobogenie
[2014-01-30 22:17:21 | 000,000,296 | ---- | C] () -- C:\Windows\tasks\SaveSense.job
[2014-01-25 14:13:24 | 000,001,919 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
:Files
C:\Users\Maciek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.0; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.0; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.0; rv:27.0) Gecko/20100101 Firefox/27.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:27.0) Gecko/20100101 Firefox/27.0
:OTL
[2014-02-04 16:41:50 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService
UA: Mozilla/5.0 (Windows NT 6.0; rv:27.0) Gecko/20100101 Firefox/27.0
Zarejestrowani użytkownicy: Bing [Bot]