UA: Mozilla/5.0 (Windows NT 5.1; rv:19.0) Gecko/20100101 Firefox/19.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.1.0.0 Safari/537.22
:OTL
MOD - [2013-01-24 12:16:54 | 001,050,112 | ---- | M] () -- c:\Program Files\BrowseToSave\sprotector.dll
MOD - [2013-01-23 20:58:25 | 000,348,160 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\BetterSoft\OptimizerPro\OptimizerPro.exe
MOD - [2012-11-24 00:48:38 | 001,814,935 | ---- | M] () -- C:\Documents and Settings\Administrator\Dane aplikacji\MSDCSC\WindowsUpdate.exe
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\pccsmcfd.sys -- (pccsmcfd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\catchme.sys -- (catchme)
DRV - File not found [Kernel | System | Stopped] -- system32\DRIVERS\13509611.sys -- (13509611)
DRV - [2009-10-22 12:54:18 | 000,037,392 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\13509612.sys -- (13509612)
DRV - [2009-10-09 22:31:10 | 000,315,408 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\1350961.sys -- (setup_9.0.0.722_06.05.2011_13-36drv)
IE - HKU\S-1-5-21-1708537768-963894560-682003330-500\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://bestsearchonweb.com
IE - HKU\S-1-5-21-1708537768-963894560-682003330-500\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.delta-search.com/?q={searchTerms}&affID=119370&babsrc=SP_ss&mntrId=60cdac34000000000000001731502d5d
IE - HKU\S-1-5-21-1708537768-963894560-682003330-500\..\SearchScopes\{E1629C24-8321-4B66-BFEB-66968867105D}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=HIP&o=102876&src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=^6G&apn_dtid=^YYYYYY^YY^PL&apn_uid=48223c20-3549-4a42-97e1-9186185f7f89&apn_sauid=F776E9A9-002E-4676-BBC0-0DBEB8208E08
IE - HKU\S-1-5-21-1708537768-963894560-682003330-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=;ftp=;https=;
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename,S: S", ""
FF - prefs.js..browser.search.order.1,S: S", ""
FF - prefs.js..browser.search.selectedEngine: "Delta Search"
FF - prefs.js..browser.search.selectedEngine,S: S", ""
FF - prefs.js..extensions.enabledAddons: toolbar%40seomoz.org:2.37
[2013-03-07 22:59:40 | 000,000,000 | ---D | M] (Browese2ssaaviee) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\rse4r9a1.default\extensions\[email protected]
[2010-01-01 00:02:03 | 000,720,273 | ---- | M] () (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\rse4r9a1.default\extensions\[email protected]
[2013-01-14 22:08:42 | 000,002,578 | ---- | M] () -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\rse4r9a1.default\searchplugins\askcom.xml
[2013-02-24 23:29:54 | 000,001,294 | ---- | M] () -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\rse4r9a1.default\searchplugins\delta.xml
[2013-02-24 23:28:54 | 000,006,484 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
O3 - HKU\S-1-5-21-1708537768-963894560-682003330-500\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe File not found
O4 - HKU\S-1-5-21-1708537768-963894560-682003330-500..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-1708537768-963894560-682003330-500..\Run: [MicroUpdate] C:\Documents and Settings\Administrator\Dane aplikacji\MSDCSC\WindowsUpdate.exe ()
O4 - HKU\S-1-5-21-1708537768-963894560-682003330-500..\Run: [WindowsUpdate.exe] C:\Documents and Settings\Administrator\Dane aplikacji\MSDCSC\WindowsUpdate.exe ()
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 File not found
O20 - AppInit_DLLs: (c:\progra~1\browse~1\sprote~1.dll) - c:\Program Files\BrowseToSave\sprotector.dll ()
[2013-03-07 23:08:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Dane aplikacji\Optimizer Pro
[2013-03-07 22:58:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Optimizer Pro
[2013-03-07 22:58:44 | 000,000,000 | ---D | C] -- C:\Program Files\Optimizer Pro
[2013-03-07 22:58:00 | 000,000,000 | ---D | C] -- C:\Program Files\BrowseToSave
[2013-03-07 22:57:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Browese2ssaaviee
[2013-03-07 22:57:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Browese2ssaaviee
[2013-03-07 22:58:45 | 000,000,737 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Optimizer Pro.lnk
[2013-03-07 22:50:59 | 000,000,040 | -H-- | M] () -- C:\09CC8B0FD85B
[2012-11-12 15:12:47 | 000,000,047 | ---- | C] () -- C:\Documents and Settings\Administrator\Dane aplikacji\msconfig.ini
[2012-11-12 15:12:43 | 000,072,551 | ---- | C] () -- C:\Documents and Settings\Administrator\0.18494618570977317.exe
:Files
C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\OpenOffice.org 3.3.lnk
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"=-
"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 5.1; rv:19.0) Gecko/20100101 Firefox/19.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.1.0.0 Safari/537.22
Folders to delete:
C:\Documents and Settings\Administrator\Dane aplikacji\MSDCSC
UA: Mozilla/5.0 (Windows NT 5.1; rv:19.0) Gecko/20100101 Firefox/19.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.2.0.0 Safari/537.22
UA: Mozilla/5.0 (Windows NT 5.1; rv:19.0) Gecko/20100101 Firefox/19.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.2.0.0 Safari/537.22
:OTL
[2013-03-13 08:21:45 | 000,000,260 | ---- | M] () -- C:\WINDOWS\tasks\WGASetup.job
[2013-03-13 08:21:43 | 000,000,294 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1708537768-963894560-682003330-500.job
[2013-03-13 08:21:39 | 000,000,302 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1708537768-963894560-682003330-500.job
[2013-03-12 18:35:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Dane aplikacji\MSDCSC
[2013-03-12 18:34:40 | 000,000,000 | ---D | C] -- C:\Avenger
:Commands
[reboot]
UA: Mozilla/5.0 (Windows NT 5.1; rv:19.0) Gecko/20100101 Firefox/19.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.2.0.0 Safari/537.22
UA: Mozilla/5.0 (Windows NT 5.1; rv:19.0) Gecko/20100101 Firefox/19.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.2.0.0 Safari/537.22
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:19.0) Gecko/20100101 Firefox/19.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:18.0) Gecko/20100101 Firefox/18.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.22 (KHTML, like Gecko) Chrome/25.2.0.0 Safari/537.22
Zarejestrowani użytkownicy: Bing [Bot]