UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.12) Gecko/20101026 Firefox/3.6.12 WinNT-A8I 26.11.2010
UA: Mozilla/5.0 (Windows; U; Windows NT 6.0; pl; rv:1.9.2.12) Gecko/20101026 Firefox/3.6.12 ( .NET CLR 3.5.30729; .NET4.0C)
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.12) Gecko/20101026 Firefox/3.6.12 WinNT-A8I 26.11.2010
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.12) Gecko/20101026 Firefox/3.6.12
:OTL
[2010-05-25 17:09:48 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
O4 - HKU\S-1-5-21-1078081533-1202660629-839522115-1003..\Run: [AV8] C:\Program Files\AV8\av8.exe ()
O4 - HKLM..\RunOnce: [] File not found
O20 - Winlogon\Notify\hspdam3: DllName - hspdam3.dll - C:\WINDOWS\System32\hspdam3.dll ()
SRV - [2010-11-26 08:17:20 | 000,052,736 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\TEMP\efhd\setup.exe -- (AMService)
:Files
C:\Program Files\AV8
C:\WINDOWS\tasks\WGASetup.job
C:\UsbFix_Upload_Me_PAWEL.zip
C:\Documents and Settings\PAWEL MARZEC\Pulpit\Antivirus8.lnk
C:\yveqsh93.exe
D:\albkpq3.exe
D:\apqpm.exe
D:\b9v.exe
D:\w9.exe
D:\yveqsh93.exe
G:\yveqsh93.exe
G:\w9.exe
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Alcmtr"=-
"SkyTel"=-
"WinampAgent"=-
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\WINDOWS\TEMP\morw\setup.exe"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.12) Gecko/20101026 Firefox/3.6.12 WinNT-A8I 26.11.2010
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.12) Gecko/20101026 Firefox/3.6.12
Adobe Reader 9.3
UA: Mozilla/5.0 (Windows; U; Windows NT 5.1; pl; rv:1.9.2.12) Gecko/20101026 Firefox/3.6.12 WinNT-A8I 26.11.2010
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników