UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
UA: Opera/9.60 (Windows NT 5.1; U; pl) Presto/2.1.1
File::
C:\2fiji.com
C:\08dgu.com
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod1.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod160.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod2.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod3.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod5.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod6.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod7.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod8.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nod9.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nodA.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nodB.tmp
C:\Documents and Settings\Admin\Ustawienia lokalne\temp\nodF.tmp
Registry::
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{cad485b8-7f73-11dd-8dda-000fea5b8914}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ec4ee2b3-96e7-11dd-8e17-000fea5b8914}]
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
UA: Opera/9.60 (Windows NT 5.1; U; pl) Presto/2.1.1
File::
C:\WINDOWS\system32\Bitkv0.dll
Registry::
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{C5F43BEF-CE2F-46D8-AFE6-A647BACD1F09}"=-
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
UA: Opera/9.60 (Windows NT 5.1; U; pl) Presto/2.1.1
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"kamsoft"=-
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
UA: Opera/9.60 (Windows NT 5.1; U; pl) Presto/2.1.1
O2 - BHO: (no name) - {0574D50F-C261-490D-BF39-4E91183C4EFB} - (no file)
O2 - BHO: (no name) - {8C082C4A-D3E3-4CFB-BA21-388952775004} - (no file)
O20 - Winlogon Notify: urqOICtS - urqOICtS.dll (file missing)
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
UA: Opera/9.60 (Windows NT 5.1; U; pl) Presto/2.1.1
Files to delete:
D:\08dgu.com
D:\68.exe
D:\a9.com
D:\b.exe
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.3) Gecko/2008092417 Firefox/3.0.3
UA: Opera/9.60 (Windows NT 5.1; U; pl) Presto/2.1.1
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WinampAgent"=-
"Sony Ericsson PC Suite"=-
"SunJavaUpdateSched"=-
"Adobe Reader Speed Launcher"=-
"NvCplDaemon"=-
"nwiz"=-
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników