UA: Mozilla/5.0 (Windows NT 5.1) AppleWebKit/537.31 (KHTML, like Gecko) Chrome/26.0.1410.64 Safari/537.31
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/537.31 (KHTML, like Gecko) Chrome/26.0.1410.64 Safari/537.31
UA: Mozilla/5.0 (Windows NT 5.1; rv:13.0) Gecko/20100101 Firefox/13.0.1
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:20.0) Gecko/20100101 Firefox/20.0
:OTL
DRV - File not found [Kernel | On_Demand | Unknown] -- C:\DOCUME~1\Dagmara\USTAWI~1\Temp\uxtdipow.sys -- (uxtdipow)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\DU Meter\DUM_XP32.SYS -- (DUMeterDrv)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=idg&from=idg&uid=SAMSUNG_HM160HI_S1WWJ9FZ506536&ts=1351781552
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com/?utm_source=b&utm_medium=idg&from=idg&uid=SAMSUNG_HM160HI_S1WWJ9FZ506536&ts=1351781552
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search.v9.com/web/?q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.v9.com/web/?q={searchTerms}
IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.snap.do/?publisher=SnapdoEMon&dpid=SnapdoEMon&co=RU&userid=179b07f9-9f75-400b-9598-6d1d689fdc39&searchtype=ds&q={searchTerms}
{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=10&q={searchTerms}&barid={0AE7CA6F-29B1-4D80-9EC6-433C083AE57
IE - HKU\.DEFAULT\..\SearchScopes\{33524C00-63FB-43DB-A6BF-0A4E14B24649}: "URL" = http://www.basicscan.com/?prt=BASICSCAN115&keywords={searchTerms}
IE - HKU\S-1-5-18\..\SearchScopes\{33524C00-63FB-43DB-A6BF-0A4E14B24649}: "URL" = http://www.basicscan.com/?prt=BASICSCAN115&keywords={searchTerms}
/?utm_source=b&utm_medium=idg&from=idg&uid=SAMSUNG_HM160HI_S1WWJ9FZ506536&ts=1351781552
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.snap.do/?publisher=SnapdoEMon&dpid=SnapdoEMon&co=RU&userid=179b07f9-9f75-400b-9598-6d1d689fdc39&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.snap.do/?publisher=SnapdoEMon&dpid=SnapdoEMon&co=RU&userid=179b07f9-9f75-400b-9598-6d1d689fdc39&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=119816&babsrc=HP_ss&mntrId=88cabcd4000000000000582c80139263
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snap.do/?publisher=SnapdoEMon&dpid=SnapdoEMon&co=RU&userid=179b07f9-9f75-400b-9598-6d1d689fdc39&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snap.do/?publisher=SnapdoEMon&dpid=SnapdoEMon&co=RU&userid=179b07f9-9f75-400b-9598-6d1d689fdc39&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\SearchScopes,DefaultScope = {CFF4DB9B-135F-47c0-9269-B4C6572FD61A}
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = http://feed.snap.do/?publisher=SnapdoEMon&dpid=SnapdoEMon&co=RU&userid=179b07f9-9f75-400b-9598-6d1d689fdc39&searchtype=ds&q={searchTerms}
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.v9.com/web/?q={searchTerms}
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.delta-search.com/?q={searchTerms}&affID=119816&babsrc=SP_ss&mntrId=88cabcd4000000000000582c80139263
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.v9.com/web/?q={searchTerms}
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3072253
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incredibar.com/mb201/?search={searchTerms}&loc=IB_DS&a=6R8MQRyGUi&i=26
IE - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=10&q={searchTerms}&barid={0AE7CA6F-29B1-4D80-9EC6-433C083AE570}
FF - prefs.js..browser.search.defaultthis.engineName: "Bigpoint Games PL Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2843462&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.order.1: "Search the web"
FF - prefs.js..keyword.URL: "http://www.browsersafesearch.com?client=mozilla-firefox&cd=UTF-8&search=1&q="
[2013-02-12 18:56:04 | 000,000,000 | ---D | M] (Bigpoint Games PL Community Toolbar) -- C:\Documents and Settings\Dagmara\Dane aplikacji\Mozilla\Firefox\Profiles\pdnlx11k.default\extensions\{5c81f57f-3cf7-4785-b4ef-11ace31aec4f}
[2013-02-12 15:55:24 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\Dagmara\Dane aplikacji\Mozilla\Firefox\Profiles\pdnlx11k.default\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03}
[2012-11-30 22:05:21 | 000,000,000 | ---D | M] (incredibar.com) -- C:\Documents and Settings\Dagmara\Dane aplikacji\Mozilla\Firefox\Profiles\pdnlx11k.default\extensions\[email protected]
[2012-09-26 21:21:46 | 000,000,000 | ---D | M] (bab.la dictionary toolbar) -- C:\Documents and Settings\Dagmara\Dane aplikacji\Mozilla\Firefox\Profiles\pdnlx11k.default\extensions\[email protected]
[2013-02-24 20:26:05 | 000,001,294 | ---- | M] () -- C:\Documents and Settings\Dagmara\Dane aplikacji\Mozilla\Firefox\Profiles\pdnlx11k.default\searchplugins\delta.xml
[2013-02-24 20:21:26 | 000,006,484 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
[2011-10-12 20:08:22 | 000,000,158 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Search the web.src
[2012-11-01 16:52:34 | 000,000,402 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\v9.xml
CHR - Extension: IB Updater = C:\Documents and Settings\Dagmara\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd\2.0.0.110_0\
O2 - BHO: (Updater For Kandeebar Toolbar) - {2804caed-1d99-4a3d-833c-c552f986b75c} - C:\Program Files\kandeebartoolbar\auxi\kandeebartoolbarAu.dll File not found
O2 - BHO: (SweetPacks Browser Helper) - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll File not found
O3 - HKLM\..\Toolbar: (no name) - {ae07101b-46d4-4a98-af68-0333ea26e113} - No CLSID value found.
O3 - HKLM\..\Toolbar: (SweetPacks Toolbar for Internet Explorer) - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll File not found
O3 - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\Toolbar\WebBrowser: (no name) - {8FF5E180-ABDE-46EB-B09E-D2AAB95CABE3} - No CLSID value found.
O3 - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [SamsungWInClon] C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler File not found
O4 - HKLM..\Run: [SUPBackground] C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe File not found
O4 - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005..\Run: [DU Meter] "C:\Program Files\DU Meter\DUMeter.exe" /autostart File not found
O4 - HKU\S-1-5-21-3427100945-3658676166-1123956353-1005..\Run: [SSCKbdHk] C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe File not found
O8 - Extra context menu item: &Search - Reg Error: Value error. File not found
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Wyślij do interfejsu Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm File not found
O8 - Extra context menu item: Wyślij do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm File not found
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm File not found
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.)
[2013-05-05 12:00:32 | 000,000,318 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2013-05-05 11:59:30 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\RNUpgradeHelperLogonPrompt_Dagmara.job
[2013-05-05 12:15:08 | 000,000,472 | ---- | M] () -- C:\WINDOWS\tasks\HP Photo Creations Communicator.job
[2013-05-04 23:44:47 | 000,000,410 | ---- | M] () -- C:\WINDOWS\tasks\ReclaimerUpdateFiles_Dagmara.job
[2013-05-04 23:41:54 | 000,000,406 | ---- | M] () -- C:\WINDOWS\tasks\ReclaimerUpdateXML_Dagmara.job
[2012-08-13 20:24:56 | 000,000,606 | ---- | C] () -- C:\Documents and Settings\Dagmara\Dane aplikacji\cortex.exe
[2012-08-13 20:24:54 | 000,000,882 | ---- | C] () -- C:\Documents and Settings\Dagmara\Dane aplikacji\cortex.vbs
:Files
C:\WINDOWS\tasks\At*.job
:Commands
[clearallrestorepoints]
[emptytemp][/quote]
Klikasz [b]Wykonaj skrypt[/b]. Podajesz log z usuwania + nowe logi z OTL
[quote]to samo mam na dwóch laptopach
UA: Mozilla/5.0 (Windows NT 5.1; rv:13.0) Gecko/20100101 Firefox/13.0.1
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.31 (KHTML, like Gecko) Chrome/26.0.1410.64 Safari/537.31
UA: Mozilla/5.0 (Windows NT 5.1; rv:13.0) Gecko/20100101 Firefox/13.0.1
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:20.0) Gecko/20100101 Firefox/20.0
:OTL
[2013-05-08 00:57:42 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\PCConfidential.job
O4 - HKLM..\Run: [DMHotKey] C:\Program Files\Samsung\Easy Display Manager\DMLoader.exe File not found
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników