UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.14) Gecko/2009082707 Firefox/3.0.14
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.1.3) Gecko/20090824 Firefox/3.5.3
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.14) Gecko/2009082707 Firefox/3.0.14
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.1.3) Gecko/20090824 Firefox/3.5.3
:OTL
PRC - [2008-04-14 19:21:32 | 00,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\AhnRpta.exe
PRC - [2008-04-14 19:21:16 | 01,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE
SRV - File not found -- -- (AVTasks2 [Auto | Stopped])
MOD - [2009-10-24 17:39:00 | 00,077,093 | RHS- | M] () -- C:\Documents and Settings\Krzysiek\Ustawienia lokalne\Temp\cvasds1.dll
MOD - [2008-04-14 19:21:16 | 00,078,848 | ---- | M] () -- C:\WINDOWS\System32\e8main1.dll
O4 - HKU\S-1-5-21-854245398-1801674531-839522115-1003..\Run: [cdoosoft] C:\Documents and Settings\Krzysiek\Ustawienia lokalne\Temp\herss.exe ()
O8 - Extra context menu item: Add to AMV Convert Tool... - E:\Program Files\MP3 Player Utilities 4.00\AMVConverter\grab.html File not found
O8 - Extra context menu item: MediaManager tool grab multimedia file - E:\Program Files\MP3 Player Utilities 4.00\MediaManager\grab.html File not found
O9 - Extra Button: ArcaVir >> - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - C:\Program Files\ArcaBit\WebExtensions\ie\ArcaIEExt.dll File not found
O9 - Extra 'Tools' menuitem : ArcaVir >> - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - C:\Program Files\ArcaBit\WebExtensions\ie\ArcaIEExt.dll File not found
O28 - HKLM ShellExecuteHooks: {BB4C402F-882A-4526-8C08-51278EA437C1} - C:\WINDOWS\System32\e8main1.dll ()
O32 - AutoRun File - [2009-10-24 18:25:56 | 00,000,057 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009-10-24 18:25:56 | 00,000,057 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2009-10-24 18:25:56 | 00,000,057 | RHS- | M] () - E:\autorun.inf -- [ NTFS ]
:Files
C:\WINDOWS\AhnRpta.exe
C:\Documents and Settings\Krzysiek\Ustawienia lokalne\Temp\cvasds1.dll
C:\WINDOWS\System32\e8main1.dll
C:\found.002
C:\eexyv.exe
D:\eexyv.exe
E:\eexyv.exe
C:\b00ijwpu.exe
D:\b00ijwpu.exe
E:\b00ijwpu.exe
C:\wcgswa.exe
D:\wcgswa.exe
E:\wcgswa.exe
C:\qbr2q.exe
D:\qbr2q.exe
E:\qbr2q.exe
C:\nds0q.exe
D:\nds0q.exe
E:\nds0q.exe
C:\se12ydam.exe
D:\se12ydam.exe
E:\se12ydam.exe
C:\vb0hsoay.exe
D:\vb0hsoay.exe
E:\vb0hsoay.exe
C:\2sm66r.exe
D:\2sm66r.exe
E:\2sm66r.exe
C:\s3ek.exe
D:\s3ek.exe
E:\s3ek.exe
C:\ycvvj.exe
D:\ycvvj.exe
E:\ycvvj.exe
C:\mje12tni.exe
D:\mje12tni.exe
E:\mje12tni.exe
C:\vlvtdflx.exe
D:\vlvtdflx.exe
E:\vlvtdflx.exe
C:\1di1w.exe
D:\1di1w.exe
E:\1di1w.exe
C:\r2g20.exe
D:\r2g20.exe
E:\r2g20.exe
C:\f9o8o.exe
D:\f9o8o.exe
E:\f9o8o.exe
C:\ctu8r.exe
D:\ctu8r.exe
E:\ctu8r.exe
C:\sp1jensi.exe
D:\sp1jensi.exe
E:\sp1jensi.exe
C:\l6jj.exe
D:\l6jj.exe
E:\l6jj.exe
C:\t2hjo0.exe
D:\t2hjo0.exe
E:\t2hjo0.exe
C:\0fkk02x.exe
D:\0fkk02x.exe
E:\0fkk02x.exe
C:\9jyhdim8.exe
D:\9jyhdim8.exe
E:\9jyhdim8.exe
C:\rg9g9bgq.exe
D:\rg9g9bgq.exe
E:\rg9g9bgq.exe
C:\mranjm.exe
D:\mranjm.exe
E:\mranjm.exe
C:\w9uxx92.exe
D:\w9uxx92.exe
E:\w9uxx92.exe
:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
:Commands
[emptytemp]
[start explorer]
[Reboot]
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.14) Gecko/2009082707 Firefox/3.0.14
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.1.3) Gecko/20090824 Firefox/3.5.3
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=-
"RemoteControl"=-
"SunJavaUpdateSched"=-
"Adobe Reader Speed Launcher"=-
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.0.14) Gecko/2009082707 Firefox/3.0.14
Zarejestrowani użytkownicy: Bing [Bot]