UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/536.11 (KHTML, like Gecko) Chrome/20.0.1132.57 Safari/536.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/536.11 (KHTML, like Gecko) Chrome/20.0.1132.57 Safari/536.11 Comodo_Dragon/20.1.1.0
:OTL
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredibar.com/mb167?a=6R8AabS7t6&i=26
IE - HKCU\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKCU\..\SearchScopes,DefaultScope = {CFF4DB9B-135F-47c0-9269-B4C6572FD61A}
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=110819&tt=2912_3&babsrc=SP_ss&mntrId=bc4495c0000000000000446d57392d41
IE - HKCU\..\SearchScopes\{76C2D511-9A6A-4555-A2D9-F8929F2B9F72}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10401&src=kw&q={searchTerms}&locale=&apn_ptnrs=^ABZ&apn_dtid=^YYYYYY^YY^PL&apn_uid=2d996854-5241-4d39-81a9-95191e69e0ea&apn_sauid=A95CE327-8E47-4AEF-94A2-F014489B5AF9
IE - HKCU\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incredibar.com/mb167/?search={searchTerms}&loc=IB_DS&a=6R8AabS7t6&i=26
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "MyStart Search"
FF - prefs.js..browser.startup.homepage: "http://mystart.incredibar.com/mb167?a=6R8AabS7t6&i=26"
FF - prefs.js..keyword.URL: "http://mystart.incredibar.com/mb167/?loc=IB_DS&a=6R8AabS7t6&&i=26&search="
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
[2012-07-24 11:48:02 | 000,000,000 | ---D | M] ("Giant Savings") -- C:\Users\ADMIN\AppData\Roaming\mozilla\Firefox\Profiles\2z8gnvwh.default\extensions\[email protected]
[2012-07-19 21:23:21 | 000,000,000 | ---D | M] (Babylon) -- C:\Users\ADMIN\AppData\Roaming\mozilla\Firefox\Profiles\2z8gnvwh.default\extensions\[email protected]
[2012-07-26 15:22:46 | 000,000,000 | ---D | M] (incredibar.com) -- C:\Users\ADMIN\AppData\Roaming\mozilla\Firefox\Profiles\2z8gnvwh.default\extensions\[email protected]
[2012-07-22 18:49:25 | 000,000,000 | ---D | M] (Avira SearchFree Toolbar plus Web Protection) -- C:\Users\ADMIN\AppData\Roaming\mozilla\Firefox\Profiles\2z8gnvwh.default\extensions\[email protected]
[2012-07-22 18:49:24 | 000,002,344 | ---- | M] () -- C:\Users\ADMIN\AppData\Roaming\Mozilla\Firefox\Profiles\2z8gnvwh.default\searchplugins\askcom.xml
[2012-07-26 15:21:59 | 000,002,203 | ---- | M] () -- C:\Users\ADMIN\AppData\Roaming\Mozilla\Firefox\Profiles\2z8gnvwh.default\searchplugins\MyStart Search.xml
[2012-07-19 21:22:48 | 000,002,349 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\RunOnce: [hypercam] File not found
O8:[b]64bit:[/b] - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=-
"LanguageShortcut"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ares"=-
"SDP"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/536.11 (KHTML, like Gecko) Chrome/20.0.1132.57 Safari/536.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/536.11 (KHTML, like Gecko) Chrome/20.0.1132.57 Safari/536.11 Comodo_Dragon/20.1.1.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/536.11 (KHTML, like Gecko) Chrome/20.0.1132.57 Safari/536.11
UA: Mozilla/5.0 (Windows NT 5.1; rv:14.0) Gecko/20100101 Firefox/14.0.1
:OTL
O4 - HKCU..\Run: [EA Core] "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent File not found
[2012-07-22 18:48:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/536.11 (KHTML, like Gecko) Chrome/20.0.1132.57 Safari/536.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/536.11 (KHTML, like Gecko) Chrome/20.0.1132.57 Safari/536.11 Comodo_Dragon/20.1.1.0
Nie wykonano akcji.
a w jaki sposób mogę pozbyć się mystart z przeglądarki chrome?
Zarejestrowani użytkownicy: Bing [Bot]