UA: Opera/9.80 (Windows NT 6.1) Presto/2.12.388 Version/12.16
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:24.0) Gecko/20100101 Firefox/24.0
:OTL
SRV - File not found [On_Demand | Stopped] -- -- (BsHelpCS)
SRV - File not found [Auto | Stopped] -- -- (BlueSoleilCS)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (VIAHdAudAddService)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (VcommMgr)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (VComm)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Wolny\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - File not found [Kernel | Boot | Stopped] -- -- (BTHidMgr)
DRV - File not found [Kernel | Boot | Stopped] -- -- (BTHidEnum)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (BT)
IE - HKU\S-1-5-21-2342444559-4047630553-3061306393-1000\..\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}: "URL" = http://start.facemoods.com/?a=ddr&s={searchTerms}&f=4
IE - HKU\S-1-5-21-2342444559-4047630553-3061306393-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.facemoods.com/?a=ddr
O4 - HKLM..\Run: [Regedit32] C:\Windows\system32\regedit.exe File not found
O4 - HKU\S-1-5-21-2342444559-4047630553-3061306393-1000..\Run: [KiesAirMessage] D:\Samsung Kies\Kies\KiesAirMessage.exe -startup File not found
O8 - Extra context menu item: Funkcja Google Sidewiki - Reg Error: Value error. File not found
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
[2013-10-09 15:18:52 | 095,025,368 | ---- | M] () -- C:\ProgramData\rjrwhow.pff
[2013-10-09 15:17:51 | 000,000,000 | ---- | M] () -- C:\ProgramData\rjrwhow.ctrl
[2013-10-09 15:14:36 | 000,001,041 | ---- | M] () -- C:\Users\Wolny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rjrwhow.lnk
[2013-10-04 21:00:00 | 000,000,906 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-2342444559-4047630553-3061306393-1000Core.job
[2011-07-16 14:10:32 | 000,000,000 | ---D | M] -- C:\Users\Wolny\AppData\Roaming\OpenCandy
:Files
c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2342444559-4047630553-3061306393-1000UA.job
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Opera/9.80 (Windows NT 6.1) Presto/2.12.388 Version/12.16
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:24.0) Gecko/20100101 Firefox/24.0
:OTL
IE - HKCU\..\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&query={searchTerms}&invocationType=tb50winampie7
:Reg
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Gadu-Gadu 10"=-
"Facebook Update"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"=-
Java(TM) 6 Update 22
UA: Opera/9.80 (Windows NT 6.1) Presto/2.12.388 Version/12.16
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:24.0) Gecko/20100101 Firefox/24.0
%SystemRoot%\system32\wbem\WMIsvc.dll
UA: Opera/9.80 (Windows NT 6.1) Presto/2.12.388 Version/12.16
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:24.0) Gecko/20100101 Firefox/24.0
Zarejestrowani użytkownicy: Bing [Bot]