15 Paź 2015, 12:30
15 Paź 2015, 12:34
15 Paź 2015, 12:51
15 Paź 2015, 13:04
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ISUSScheduler] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [81920 2004-06-16] (InstallShield Software Corporation
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
C:\Program Files (x86)\Mobogenie
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM-x32\...\RunOnce: [DeleteLaunchAR] => C:\windows\Temp\LaunchAR.exe [73728 2015-10-15] () <===== UWAGA
HKLM-x32\...\RunOnce: [DeleteRemoveFolder] => C:\windows\Temp\RemoveFolder.exe [458240 2015-10-15] () <===== UWAGA
HKU\S-1-5-21-2666340739-2498256653-3035462964-1000\...\Run: [ISUSPM Startup] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [221184 2004-06-16] (InstallShield Software Corporation)
HKU\S-1-5-21-2666340739-2498256653-3035462964-1000\...\Run: [ALLUpdate] => C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe [3000680 2013-11-01] (ALLPlayer Group Ltd.)
HKU\S-1-5-21-2666340739-2498256653-3035462964-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2666340739-2498256653-3035462964-1000\...\Run: [NextLive] => C:\windows\SysWOW64\rundll32.exe "C:\Users\Kasia\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
HKU\S-1-5-21-2666340739-2498256653-3035462964-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\Kasia\AppData\Local\Akamai\netsession_win.exe"
C:\Users\Kasia\AppData\Roaming\newnext.me
Startup: C:\Users\Kasia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 2.4.lnk [2012-12-06]
HKU\S-1-5-21-2666340739-2498256653-3035462964-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.buenosearch.com/?babsrc=HP_ss&mntrId=2E6E72B7C3191B79&affID=128491&tsp=5189
SearchScopes: HKU\S-1-5-21-2666340739-2498256653-3035462964-1000{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.buenosearch.com/?q={searchTerms}&babsrc=SP_ss&mntrId=2E6E72B7C3191B79&affID=128491&tsp=5189
BHO: Complitly{0FB6A909-6086-458F-BD92-1F8EE10042A0}
C:\Users\Kasia\AppData\Roaming\Complitly\64\Complitly64.dll [2012-11-30] (SimplyGen)
BHO-x32: Complitly{0FB6A909-6086-458F-BD92-1F8EE10042A0}
C:\Users\Kasia\AppData\Roaming\Complitly\Complitly.dll [2012-11-30] (SimplyGen)
CHR Extension: (Search-Gol Toolbar) - C:\Users\Kasia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aipfmkinhleccnodemkoofnnofpbbpac [2014-01-16]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
EmptyTemp:
15 Paź 2015, 13:25
16 Paź 2015, 11:52
DeleteQuarantine:
16 Paź 2015, 12:20