UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15 ( .NET CLR 3.5.30729)
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15 ( )
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15 ( .NET CLR 3.5.30729)
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15
http://www.bezpieczenstwosystemow.pl/index.php?topic=2948.0
:OTL
FF - prefs.js..browser.search.selectedEngine: "DAEMON Search"
[2011-01-01 22:23:37 | 000,000,000 | ---D | M] (SHOUTcast Radio Toolbar) -- D:\Documents and Settings\MetPC\Dane aplikacji\Mozilla\Firefox\Profiles\q9uj2x1r.default\extensions\{12e4c684-c03e-4e4d-85bc-0c065e7a9489}
[2010-10-16 19:13:03 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- D:\Documents and Settings\MetPC\Dane aplikacji\Mozilla\Firefox\Profiles\q9uj2x1r.default\extensions\[email protected]
[2010-10-16 19:12:57 | 000,002,059 | ---- | M] () -- D:\Documents and Settings\MetPC\Dane aplikacji\Mozilla\Firefox\Profiles\q9uj2x1r.default\searchplugins\daemon-search.xml
O4 - HKLM..\Run: [nwiz] File not found
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"=-
"NvCplDaemon"=-
"NvMediaCenter"=-
:Commands
[emptytemp]
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15 ( .NET CLR 3.5.30729)
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15
:OTL
O3 - HKU\S-1-5-21-1292428093-1645522239-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
[2011-03-16 16:15:22 | 000,245,760 | ---- | C] (Ask.com) -- D:\Program Files\Uninstall Ask Toolbar.dll
[2011-03-15 17:10:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\MetPC\Dane aplikacji\QuickStoresToolbar
Java(TM) 6 Update 22
Adobe Reader 9.4.2 - Polish
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15 ( .NET CLR 3.5.30729)
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15
f:\Server\connect changer\3333.exe (Trojan.Downloader) -> No action taken.
f:\Server\connect changer\spolszczenie.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\0_extrememt2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\0_noblatmt2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\85.214.65.233.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\Ascaria.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\BelenuS.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\bmetin2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\candylongju.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\digitalmt2 by zwierz.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\eAPI.fne (Trojan.Autorun) -> No action taken.
f:\metin dla hamachi\empiredinasty.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\frostworld2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\fullmt2 by cayen.exe.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\HouseMt2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\hyperionmt2 spol by mikepolak.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\longdong2 by suffipl.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\madakamt2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\metin8 by doyyumhwaji.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\mmyt2 s1 spolszczenie by mrgrzejkop.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\nerdmt2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\Nexusmt2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\reddragonmt2.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\sirbaldur by zarobek.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\wowpvp by marecke12.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\ylmtc s1 spol by @lu.exe (Trojan.Downloader) -> No action taken.
f:\metin dla hamachi\equinox\equinox.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\0_extrememt2.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\candylongju.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\coverr_www.przeklej.pl.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\digitalmt2 by zwierz.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\fullmt2 by cayen.exe.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\HouseMt2.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\sapphiremt2.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\hyperionmt2 spol by mikepolak.exe (Trojan.Downloader) -> No action taken.
f:\metin2_pl\metin2mod.bin (Trojan.Downloader) -> No action taken.
f:\Pulpit\KeyGen.exe (Trojan.Agent.CK) -> No action taken.
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15 ( .NET CLR 3.5.30729)
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15 ( .NET CLR 3.5.30729)
http://www.virustotal.com/file-scan/report.html?id=e5b77d12313dd27f8a372bd1e567d0bc27b95896287b76962df43f21301ef544-1288561804
http://www.virustotal.com/file-scan/report.html?id=42b5c5b8eab7a90bdf0acaf5cc39a29ec42813d67dc87b084bbc8044d8c62d32-1290174328
http://www.virustotal.com/file-scan/report.html?id=92ba2aca3771d7d162be2f9ca41bf6448d0dbf949debaaa991765abc77710e48-1299987935
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.15) Gecko/20110303 Firefox/3.6.15
Zarejestrowani użytkownicy: Bing [Bot], Majestic-12 [Bot]