UA: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; .NET CLR 2.0.50727)
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; .NET CLR 2.0.50727)
UA: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; .NET CLR 2.0.50727)
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; .NET CLR 2.0.50727)
UA: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; .NET CLR 2.0.50727)
UA: Mozilla/5.0 (Windows NT 5.1; rv:7.0) Gecko/20100101 Firefox/7.0
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.tangosearch.com/?useie5=1&q=
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=iron&s={searchTerms}&f=4
IE - HKU\S-1-5-21-789336058-963894560-839522115-500\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.tangosearch.com/?useie5=1&q=
FF - prefs.js..browser.search.defaultenginename: "Facemoods Search"
FF - prefs.js..extensions.enabledItems: vshare@toolbar:1.0.0
FF - prefs.js..extensions.enabledItems: [email protected]:1.2.1
FF - prefs.js..keyword.URL: "http://vshare.toolbarhome.com/search.aspx?srch=ku&q="
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
[2011-03-09 16:01:48 | 000,000,000 | ---D | M] (Facemoods) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2o7momdx.default\extensions\[email protected]
[2011-01-14 22:35:16 | 000,000,000 | ---D | M] (vShare) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2o7momdx.default\extensions\vshare@toolbar
[2010-01-15 14:34:55 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2o7momdx.default\searchplugins\daemon-search.xml
[2011-01-14 22:35:34 | 000,001,583 | ---- | M] () -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2o7momdx.default\searchplugins\web-search.xml
[2011-03-09 16:01:49 | 000,002,047 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrch.xml
O3 - HKU\S-1-5-21-789336058-963894560-839522115-500\..\Toolbar\WebBrowser: (Tango) - {0A676AB8-4318-4F34-8E6E-7151163E5C2D} - File not found
O4 - HKLM..\Run: [ezLife] Reg Error: Invalid data type. File not found
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [Onet.pl AutoUpdate] File not found
O4 - HKU\S-1-5-21-789336058-963894560-839522115-500..\Run: [] File not found
O4 - HKU\S-1-5-21-789336058-963894560-839522115-500..\Run: [ALLUpdate] File not found
O4 - HKU\S-1-5-21-789336058-963894560-839522115-500..\Run: [GabPath] File not found
O4 - HKU\S-1-5-21-789336058-963894560-839522115-500..\Run: [SfKg6wIPuSp] File not found
O4 - HKU\S-1-5-21-789336058-963894560-839522115-500..\RunOnce: [hO15401DnElM15401] C:\Documents and Settings\All Users\Dane aplikacji\hO15401DnElM15401\hO15401DnElM15401.exe ()
[2011-08-22 00:21:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\hO15401DnElM15401
[2011-08-22 19:05:01 | 000,000,478 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{78D3BDBF-496D-40E4-BEAE-9AA074A45635}.job
[2011-08-22 19:03:16 | 000,001,046 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011-08-22 19:03:16 | 000,000,294 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-789336058-963894560-839522115-500.job
[2011-08-22 18:54:01 | 000,001,050 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011-08-22 18:37:00 | 000,001,164 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-963894560-839522115-500UA.job
[2011-08-22 00:24:45 | 000,000,302 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-789336058-963894560-839522115-500.job
[2011-08-21 19:37:02 | 000,001,112 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-963894560-839522115-500Core.job
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Alcmtr"=-
"facemoods"=-
"NeroFilterCheck"=-
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\SopCast\adv\SopAdver.exe"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; .NET CLR 2.0.50727)
UA: Mozilla/5.0 (Windows NT 5.1; rv:7.0) Gecko/20100101 Firefox/7.0
:OTL
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
[2011-08-22 00:21:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\hO15401DnElM15401
[2011-03-09 17:00:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\facemoods.com
Java(TM) 6 Update 15
Java(TM) 6 Update 5
Adobe Reader 9.4.5
UA: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; .NET CLR 2.0.50727)
UA: Mozilla/5.0 (Windows NT 5.1; rv:7.0) Gecko/20100101 Firefox/7.0
UA: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; GTB7.1; .NET CLR 2.0.50727)
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników