UA: Opera/9.63 (Windows NT 5.1; U; pl) Presto/2.1.1
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5
O4 - HKCU\..\Run: [cdoosoft] C:\WINDOWS\system32\olhrwef.exe
File::
C:\aaw7boot.cmd
c:\windows\system32\nmdfgds0.dll
c:\windows\system32\olhrwef.exe
c:\windows\AhnRpta.exe
c:\windows\pp.enc
c:\windows\system32\olhrwef.exe
c:\windows\system32\9B.tmp
I:\AutoRun.exe
F:\AutoRun.exe
F:\m9ma.exe
Folder::
C:\fsaua.data
c:\documents and settings\All Users\Dane aplikacji\~0
Registry::
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{05b8dd78-c47f-11dd-a380-f00613dcedc4}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3a4deb34-c28e-11dd-a37a-0014854e4283}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{900ac8ba-c04c-11dd-a365-0014854e4283}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{900ac8bd-c04c-11dd-a365-0014854e4283}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ae703770-c28d-11dd-a379-0014854e4283}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bad207d6-e3ee-11dd-a403-e83b511f7fc5}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ee752ef6-cbb7-11dd-a3a1-a41011e1618e}]
UA: Opera/9.63 (Windows NT 5.1; U; pl) Presto/2.1.1
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5
File::
C:\gy.exe
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5
UA: Opera/9.63 (Windows NT 5.1; U; pl) Presto/2.1.1
Zarejestrowani użytkownicy: Bing [Bot]