UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.66 Safari/535.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.2) Gecko/20100101 Firefox/10.0.2
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.66 Safari/535.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.2) Gecko/20100101 Firefox/10.0.2
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.78 Safari/535.11
UA: Mozilla/5.0 (Windows NT 5.1; rv:10.0.2) Gecko/20100101 Firefox/10.0.2
:OTL
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (IpInIp)
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-2476652958-4222829877-2230031529-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=14672
IE - HKU\S-1-5-21-2476652958-4222829877-2230031529-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-2476652958-4222829877-2230031529-1000\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKU\S-1-5-21-2476652958-4222829877-2230031529-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2476652958-4222829877-2230031529-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC
IE - HKU\S-1-5-21-2476652958-4222829877-2230031529-1000\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.com/search?cid={355F61EA-9054-4A62-BF5A-9023075D4AE9}&mid=30c13ef8578a47d19042d15756fb9687-e302b8bf4d1d367d6343ccb72fe17bc6125510f8&lang=pl&ds=AVG&pr=fr&d=2012-02-27 20:19:22&v=10.0.0.7&sap=dsp&q={searchTerms}
IE - HKU\S-1-5-21-2476652958-4222829877-2230031529-1000\..\SearchScopes\{979183BD-7FA2-42C8-BA4D-84D88AE20E9B}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ATU2&o=14670&src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=T8&apn_dtid=YYYYYYYYPL&apn_uid=5b6cc105-688c-4327-a189-8240ef5c1a01&apn_sauid=33980F36-2675-40A5-AEC8-5DDC670D58D1
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.startup.homepage: "http://www.ask.com/?l=dis&o=14672"
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
[2012-01-29 08:29:03 | 000,000,000 | ---D | M] (Ask Toolbar) -- C:\Users\Komputer\AppData\Roaming\mozilla\Firefox\Profiles\ygtkmxdt.default\extensions\[email protected]
[2012-01-03 16:27:44 | 000,002,333 | ---- | M] () -- C:\Users\Komputer\AppData\Roaming\Mozilla\Firefox\Profiles\ygtkmxdt.default\searchplugins\askcom.xml
[2012-02-27 20:19:01 | 000,003,747 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml
CHR - Extension: Ask Toolbar = C:\Users\Komputer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaapoomnboffjcgcebabolakmhbblbk\7.14.1.0_0\
O4 - HKLM..\Run: [] File not found
O8 - Extra context menu item: &Download All by FlashGet - C:\FlashGet universal\ComDlls\Bhoall.htm ()
O8 - Extra context menu item: &Download by FlashGet - C:\FlashGet universal\ComDlls\Bholink.htm ()
O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
@Alternate Data Stream - 133 bytes -> C:\ProgramData\TEMP:0B4227B4
:Files
C:\Users\Komputer\AppData\Local\Google\Update
C:\ProgramData\TEMP
C:\$AVG
C:\Users\Komputer\AppData\Roaming\AVG
C:\Program Files\AVG
C:\Windows\tasks\*.job
C:\Users\Komputer\Documents\cc_20120307_193752.reg
C:\Users\Komputer\Documents\cc_20120306_212200.reg
C:\Users\Komputer\Documents\cc_20120306_192653.reg
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=-
"Windows Defender"=-
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"=-
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/535.11 (KHTML, like Gecko) Chrome/17.0.963.78 Safari/535.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:10.0.2) Gecko/20100101 Firefox/10.0.2
Zarejestrowani użytkownicy: Bing [Bot]