UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
:OTL
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}
IE - HKU\S-1-5-21-116932825-3151948895-1960116506-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.claro-search.com/?affID=114506&tt=5012_8&babsrc=HP_clro&mntrId=42f543a9000000000000e02a821adad9
IE - HKU\S-1-5-21-116932825-3151948895-1960116506-1002\..\SearchScopes\{0388404D-6072-4CEB-B521-8F090FEAEE57}: "URL" = http://klit.startnow.com/s/?q={searchTerms}&src=defsearch&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=PL&install_date=20120327&user_guid=69038028404548768C5466D3A215551B&machine_id=88a2bec9d4d1e279fceb24d1cf673273&browser=IE&os=win&os_version=6.1-x64-SP0&iesrc={referrer:source}
IE - HKU\S-1-5-21-116932825-3151948895-1960116506-1002\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.claro-search.com/?q={searchTerms}&affID=114506&tt=5012_8&babsrc=SP_clro&mntrId=42f543a9000000000000e02a821adad9
IE - HKU\S-1-5-21-116932825-3151948895-1960116506-1002\..\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}: "URL" = http://safesearchr.lavasoft.com/?source=3336ca5f&tbp=rbox&toolbarid=adawaretb&u=8DD4711210013684ED65FB506C591BA3&q={searchTerms}
IE - HKU\S-1-5-21-116932825-3151948895-1960116506-1002\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search?q={searchTerms}
IE - HKU\S-1-5-21-116932825-3151948895-1960116506-1002\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}
FF - prefs.js..browser.search.selectedEngine: "Claro Search"
FF - prefs.js..browser.startup.homepage: "http://www.claro-search.com/?affID=114506&tt=5012_8&babsrc=HP_clro&mntrId=42f543a9000000000000e02a821adad9"
FF - prefs.js..sweetim.toolbar.previous.browser.search.selectedEngine: "blekko"
FF - prefs.js..browser.startup.homepage: "http://safesearchr.lavasoft.com/?source=3336ca5f&tbp=homepage&toolbarid=adawaretb&v=2_2&u=8DD4711210013684ED65FB506C591BA3"
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_11_5_502_135.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpWinExt,version=5.0: C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2237.0\npwinext.dll File not found
[2012/10/03 16:30:18 | 000,000,000 | ---D | M] (Lavasoft Search Plugin) -- C:\Users\Krzysiek\AppData\Roaming\mozilla\Firefox\Profiles\6awntd5s.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack
C:\Users\Krzysiek\AppData\Roaming\mozilla\firefox\profiles\6awntd5s.default\searchplugins\sweetim.xml
[2012/03/27 11:58:10 | 000,001,390 | ---- | M] () -- C:\Users\Krzysiek\AppData\Roaming\mozilla\firefox\profiles\6awntd5s.default\searchplugins\yahoo-zugo.xml
[2012/10/03 16:30:03 | 000,000,616 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\adawaretb.xml
[2012/12/15 15:48:06 | 000,006,522 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
O2 - BHO: (no name) - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - No CLSID value found.
O3 - HKU\S-1-5-21-116932825-3151948895-1960116506-1002\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O4 - HKU\S-1-5-21-116932825-3151948895-1960116506-1002..\Run: [Bslolp] C:\Users\Krzysiek\AppData\Roaming\Bslolp.exe (IORISOFT)
O4 - HKU\S-1-5-21-116932825-3151948895-1960116506-1002..\Run: [MediaSearch] C:\Users\Krzysiek\AppData\Local\MediaSearch\search.exe ()
O8:64bit: - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html File not found
O8:64bit: - Extra context menu item: Wyślij &do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Search the Web - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\menuext.html File not found
O8 - Extra context menu item: Wyślij &do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 File not found
O20 - AppInit_DLLs: (c:\PROGRA~3\BROWSE~1\25986~1.67\{C16C1~1\BrowserProtect.dll) - c:\ProgramData\BrowserProtect\2.5.986.67\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll ()
[2013/01/03 02:53:24 | 000,000,000 | ---D | C] -- C:\Users\Krzysiek\AppData\Roaming\DYA_OHVLCOUWMHUOJBBNL
[2013/01/03 02:53:24 | 000,000,000 | ---D | C] -- C:\ProgramData\DYA_OHVLCOUWMHUOJBBNL
[2013/01/02 21:36:19 | 000,000,000 | ---D | C] -- C:\Users\Krzysiek\AppData\Local\adawarebp
:Files
C:\ProgramData\BrowserProtect
C:\Users\Krzysiek\AppData\Local\MediaSearch
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=-
"WinampAgent"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
:OTL
[2012/10/21 18:02:38 | 000,003,915 | ---- | M] () -- C:\Users\Krzysiek\AppData\Roaming\mozilla\firefox\profiles\6awntd5s.default\searchplugins\sweetim.xml
[2012/12/22 10:12:58 | 000,000,344 | ---- | M] () -- C:\windows\tasks\HPCeeScheduleForKrzysiek.job
@Alternate Data Stream - 971 bytesC:\ProgramData:$SS_DESCRIPTOR_SBXNV9VVGV1BFPVHRP275D836HNTHKP9KTLWJMHFSVF7JBCVPJGV
:Files
D:\*.lnk
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.0.1271.97 Safari/537.11
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników