17 Lis 2011, 17:20
17 Lis 2011, 17:33
17 Lis 2011, 18:26
17 Lis 2011, 19:38
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
IE - HKLM\..\URLSearchHook: {5c5b9468-d672-4eb7-b52f-b5afabf28c5b} - C:\Program Files\SFT_Polska\prxtbSFT_.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-184286615-399170166-3320894557-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
IE - HKU\S-1-5-21-184286615-399170166-3320894557-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-184286615-399170166-3320894557-1000\..\URLSearchHook: {5c5b9468-d672-4eb7-b52f-b5afabf28c5b} - C:\Program Files\SFT_Polska\prxtbSFT_.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-184286615-399170166-3320894557-1000\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll (SweetIM Technologies Ltd.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
[2011-11-16 22:32:26 | 000,000,000 | ---D | M] (SFT_Polska Community Toolbar) -- C:\Users\Wojtek\AppData\Roaming\mozilla\Firefox\Profiles\hs7f1km0.default\extensions\{5c5b9468-d672-4eb7-b52f-b5afabf28c5b}
[2011-11-17 14:42:43 | 000,000,000 | ---D | M] (SweetIM Toolbar for Firefox) -- C:\Users\Wojtek\AppData\Roaming\mozilla\Firefox\Profiles\hs7f1km0.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
[2011-11-17 14:42:35 | 000,003,915 | ---- | M] () -- C:\Users\Wojtek\AppData\Roaming\Mozilla\Firefox\Profiles\hs7f1km0.default\searchplugins\sweetim.xml
:Files
C:\Program Files\Google\Update
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=-
"NvMediaCenter"=-
"NvSvc"=-
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"=-
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"WindowsWelcomeCenter"=-
:Commands
[clearallrestorepoints]
[emptytemp]
17 Lis 2011, 21:25
17 Lis 2011, 23:44
:OTL
O3 - HKU\S-1-5-21-184286615-399170166-3320894557-1000\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-184286615-399170166-3320894557-1000\..\Toolbar\WebBrowser: (no name) - {5C5B9468-D672-4EB7-B52F-B5AFABF28C5B} - No CLSID value found.
O3 - HKU\S-1-5-21-184286615-399170166-3320894557-1000\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found.
O8 - Extra context menu item: Search the Web - C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources\menuext.html File not found
:Services
gupdatem
gupdate
19 Lis 2011, 00:39
19 Lis 2011, 14:43
cosik_ktosik napisał(a):Podaj odczyty plików DMP z programu BluescreenView