UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1847.116 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/33.0.1750.154 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1847.116 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:29.0) Gecko/20100101 Firefox/29.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1847.116 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:29.0) Gecko/20100101 Firefox/29.0
:OTL
DRV:64bit: - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard)
IE - HKU\S-1-5-21-407425370-1498148162-1658622403-1000\..\SearchScopes\{77D64FE5-150F-4245-B938-279673B592CA}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=en_US&apn_ptnrs=^U3&apn_dtid=^OSJ000^YY^PL&apn_uid=F4F2AC8A-31B6-45A8-8153-349C4DD521A4&apn_sauid=3B835B0E-0C9B-48B4-8E83-C630C048B649
[2013/01/02 01:45:40 | 000,213,444 | ---- | M] () (No name found) -- C:\Users\Acer\AppData\Roaming\mozilla\firefox\profiles\0\extensions\[email protected]
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~2\mcafee\msk\mskapbho.dll File not found
O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\ProgramData\Gadu-Gadu 10\_userdata\ggbho.2.dll File not found
O3:64bit: - HKLM\..\Toolbar: (no name) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-407425370-1498148162-1658622403-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
[2014/04/19 12:46:18 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/04/18 17:10:06 | 000,000,000 | ---D | C] -- C:\ProgramData\ssave net
[2014/04/18 17:10:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ssave net
[2014/04/18 17:10:57 | 000,000,000 | ---D | C] -- C:\ProgramData\SuperbApp
[2014/04/18 17:10:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SW_Booster
[2014/04/18 17:09:59 | 000,000,000 | ---D | C] -- C:\ProgramData\39b559e409962429
[2014/04/21 22:52:01 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-407425370-1498148162-1658622403-1000UA.job
[2014/04/21 22:52:00 | 000,000,902 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-407425370-1498148162-1658622403-1000Core.job
:Files
C:\Users\Acer\AppData\Local\Temp*.html
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"BackupManagerTray"=-
"NortonOnlineBackupReminder"=-
"EgisTecLiveUpdate"=-
"WinampAgent"=-
"GrooveMonitor"=-
"Adobe ARM"=-
"QuickTime Task"=-
"SunJavaUpdateSched"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/34.0.1847.116 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:29.0) Gecko/20100101 Firefox/29.0
:OTL
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll File not found
O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
[2014/04/19 12:46:18 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/04/18 17:10:57 | 000,000,000 | ---D | C] -- C:\ProgramData\SuperbApp
[2014/04/18 17:10:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SW_Booster
[2014/04/18 17:10:06 | 000,000,000 | ---D | C] -- C:\ProgramData\ssave net
[2014/04/18 17:10:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ssave net
[2014/04/18 17:09:59 | 000,000,000 | ---D | C] -- C:\ProgramData\39b559e409962429
:Files
C:\Users\Acer\AppData\Local\Temp*.html
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"BackupManagerTray"=-
"NortonOnlineBackupReminder"=-
"EgisTecLiveUpdate"=-
"WinampAgent"=-
"GrooveMonitor"=-
"Adobe ARM"=-
"QuickTime Task"=-
"SunJavaUpdateSched"=-
:Commands
[clearallrestorepoints]
[emptytemp]
Zarejestrowani użytkownicy: Bing [Bot]