UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.71 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:34.0) Gecko/20100101 Firefox/34.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.71 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:34.0) Gecko/20100101 Firefox/34.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.71 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:34.0) Gecko/20100101 Firefox/34.0
HKLM\...\Run: [RTHDVCPL] => D:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7575256 2000-01-01] (Realtek Semiconductor)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKLM-x32\...\Run: [RUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [115048 2011-09-20] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => D:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKU\S-1-5-21-2809401499-2226387616-2888565779-1000\...\Run: [Facebook Update] => C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-05-24] (Facebook Inc.)
Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk
CHR StartupUrls: Default"hxxp://www.mystartsearch.com/?type=hp&ts=1417861459&from=vtt&uid=ST1000DM003-1CH162_W1D2M5GBXXXXW1D2M5GB"
S3 MSICDSetup; \??\E:\CDriver64.sys [X]
S3 NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [X]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X]
U3 pgddqpoc; \??\C:\Users\User\AppData\Local\Temp\pgddqpoc.sys [X]
2014-12-06 11:36 - 2014-12-06 14:01 - 00001332 _____ () C:\Windows\Tasks\DMHMP.job
2014-12-06 11:36 - 2014-12-06 11:36 - 00004356 _____ () C:\Windows\System32\Tasks\DMHMP
2014-12-06 11:35 - 2014-12-06 14:01 - 00001680 _____ () C:\Windows\Tasks\AVGNOJW.job
2014-12-06 11:35 - 2014-12-06 11:35 - 02004448 _____ () C:\Users\User\AppData\Roaming\AVGNOJW.exe
2014-12-06 11:35 - 2014-12-06 11:35 - 01520608 _____ () C:\Users\User\AppData\Roaming\DMHMP.exe
2014-12-06 11:35 - 2014-12-06 11:35 - 00004704 _____ () C:\Windows\System32\Tasks\AVGNOJW
2014-12-06 11:34 - 2014-12-06 11:34 - 00003570 _____ () C:\Windows\System32\Tasks\YTDownloaderUpd
2014-12-06 11:33 - 2014-12-06 11:33 - 00000000 ____D () C:\Users\User\AppData\Roaming\itesing
Task: {2A0D2035-C6DB-4A04-9828-0026DA0D6729} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe ,Command701 update3 <==== ATTENTION
Task: {3E992295-3950-4AB6-A572-D16D271B2AB1} - System32\Tasks\DMHMP => C:\Users\User\AppData\Roaming\DMHMP.exe [2014-12-06] () <==== ATTENTION
Task: {68F6B08C-D938-4F9A-93F5-AF72611D36E6} - System32\Tasks\YTDownloaderUpd => C:\Program Files (x86)\YTDownloader\updater.exe <==== ATTENTION
C:\Program Files (x86)\YTDownloader
Task: {B81D23FE-E3FB-427D-B9C9-5ECA24B2A836} - System32\Tasks\AVGNOJW => C:\Users\User\AppData\Roaming\AVGNOJW.exe [2014-12-06] () <==== ATTENTION
Task: {F591D9BA-0FA8-4413-8CC4-681043DB6437} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe ,Command701 update2 <==== ATTENTION
Task: C:\Windows\Tasks\AVGNOJW.job => C:\Users\User\AppData\Roaming\AVGNOJW.exe <==== ATTENTION
Task: C:\Windows\Tasks\DMHMP.job => C:\Users\User\AppData\Roaming\DMHMP.exe <==== ATTENTION
EmptyTemp:
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.71 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:34.0) Gecko/20100101 Firefox/34.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.2171.71 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:34.0) Gecko/20100101 Firefox/34.0
DeleteQuarantine:
Zarejestrowani użytkownicy: Bing [Bot]