07 Lip 2011, 01:28
07 Lip 2011, 09:54
:OTL
IE - HKU\S-1-5-21-2925410564-1019759512-3564179559-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = my.daemon-search.com
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
[2011-05-28 01:48:55 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Users\Szary\AppData\Roaming\mozilla\Firefox\Profiles\1klwu3kg.default\extensions\[email protected]
[2011-05-28 01:48:51 | 000,002,055 | ---- | M] () -- C:\Users\Szary\AppData\Roaming\Mozilla\Firefox\Profiles\1klwu3kg.default\searchplugins\daemon-search.xml
O4 - HKU\S-1-5-21-2925410564-1019759512-3564179559-1000..\Run: [3775234460] C:\Users\Szary\AppData\Local\kdd.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] File not found
O35 - HKU\S-1-5-21-2925410564-1019759512-3564179559-1000..exefile [open] -- "C:\Users\Szary\AppData\Local\kdd.exe" -a "%1" %* (Microsoft Corporation)
O37 - HKU\S-1-5-21-2925410564-1019759512-3564179559-1000\...exe [@ = exefile] -- "C:\Users\Szary\AppData\Local\kdd.exe" -a "%1" %* (Microsoft Corporation)
[2011-07-07 00:24:47 | 000,323,584 | ---- | C] (Microsoft Corporation) -- C:\Users\Szary\AppData\Local\giq.exe
[2011-07-07 00:46:01 | 000,014,290 | -HS- | M] () -- C:\Users\Szary\AppData\Local\ucl46i6p764y41v485ss1gl36n0wrbrcba82
[2011-07-07 00:45:19 | 000,000,984 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2011-07-07 00:30:23 | 000,014,286 | -HS- | M] () -- C:\ProgramData\ucl46i6p764y41v485ss1gl36n0wrbrcba82
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AdobeCS5ServiceManager"=-
"HDAudDeck"=-
:Commands
[clearallrestorepoints]
[emptytemp]
07 Lip 2011, 11:06
07 Lip 2011, 12:23
Java(TM) 6 Update 22