UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
:OTL
IE - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003\..\URLSearchHook: {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - Reg Error: Key error. File not found
[2011-04-22 17:23:41 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Documents and Settings\Labedz\Dane aplikacji\Mozilla\Firefox\Profiles\a6zcb56q.default\extensions\[email protected]
[2010-11-07 21:51:15 | 000,000,000 | ---D | M] (vShare) -- C:\Documents and Settings\Labedz\Dane aplikacji\Mozilla\Firefox\Profiles\a6zcb56q.default\extensions\vshare@toolbar
[2009-07-06 11:00:53 | 000,024,683 | ---- | M] (Ask.com) -- C:\Program Files\mozilla firefox\plugins\NPAskSBr.dll
[2007-07-26 13:05:16 | 000,001,329 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\crawlersrch.xml
O3 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003\..\Toolbar\ShellBrowser: (no name) - {ECDEE021-0D17-467F-A1FF-C7A115230949} - No CLSID value found.
O4 - HKLM..\Run: [avast5] File not found
O4 - HKLM..\Run: [HP Software Update] File not found
O4 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003..\Run: [IPLA!] File not found
O4 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003..\Run: [KiesHelper] File not found
O4 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003..\Run: [KiesPDLR] File not found
O4 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003..\Run: [KiesTrayAgent] File not found
O4 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003..\Run: [PC Suite Tray] File not found
O4 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003..\Run: [RGSC] File not found
O4 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003..\Run: [Sony Ericsson PC Companion] File not found
O4 - Startup: C:\Documents and Settings\Labedz\Menu Start\Programy\Autostart\Rejestracja FIFA 11.lnk = File not found
O20 - Winlogon\Notify\WgaLogon: DllName - WgaLogon.dll - File not found
[2011-06-29 22:35:07 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011-06-29 12:19:02 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cac91eb6fa2d72.job
[2010-03-18 20:11:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Alwil Software
:Files
C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Autostart\Adobe Gamma Loader.lnk
C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Autostart\Panasonic Multi-Function StatusMonitor.lnk
C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Autostart\SketchBook Snapshot.lnk
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=-
"Alcmtr"=-
"NeroFilterCheck"=-
"NvCplDaemon"=-
"nwiz"=-
"NvMediaCenter"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ALLUpdate"=-
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=-
"ccleaner"=-
"GAINWARD"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
Po włączaniu WWDC nadal wyświetla się komunikat, że komputer jest zainfekowany przez wirusa.
:OTL
[2011-06-30 11:12:03 | 000,267,592 | ---- | C] (Ask.com) -- C:\Program Files\Uninstall Ask Toolbar.dll
O3 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found.
O3 - HKU\S-1-5-21-1659004503-1004336348-1417001333-1003\..\Toolbar\WebBrowser: (no name) - {B7D3E479-CC68-42B5-A338-938ECE35F419} - No CLSID value found.
:Reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=-
"Adobe ARM"=-
"SunJavaUpdateSched"=-
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
d:\CS4\adobe cs4 activation patch\adobe cs4 keygen.exe (Trojan.Downloader)Quarantined and deleted successfully.
e:\program files\SEBA\adobe photoshop cs4\Crack\keygen.exe (Trojan.Agent)Quarantined and deleted successfully.
który blokuje niektóre strony(nawet to forum)?
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
plik był w System Volume Information
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0
Zarejestrowani użytkownicy: Bing [Bot]