UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:17.0) Gecko/17.0 Firefox/17.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.4 (KHTML, like Gecko) Chrome/22.0.1229.94 Safari/537.4
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.4 (KHTML, like Gecko) Chrome/22.0.1229.94 Safari/537.4
Deleted ! E:\MUZYKA
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
IE - HKU\S-1-5-21-839522115-436374069-1417001333-1004\..\SearchScopes\{0388404D-6072-4CEB-B521-8F090FEAEE57}: "URL" = http://klit.startnow.com/s/?q={searchTerms}&src=defsearch&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=PL&install_date=20120507&user_guid=A0F6468EA496458AB9E35F0CF9C4237A&machine_id=4a1fbebcdf7aa84c7bca35e44e392f28&browser=IE&os=win&os_version=5.1-x86-SP3&iesrc={referrer:source}
IE - HKU\S-1-5-21-839522115-436374069-1417001333-1004\..\SearchScopes\{391BB2CE-3EE9-4A91-AF00-67E604F85DA0}: "URL" = http://startsear.ch/?aff=2&src=sp&cf=69265f2c-1dd5-11e1-af90-00142ae43d76&q={searchTerms}
IE - HKU\S-1-5-21-839522115-436374069-1417001333-1004\..\SearchScopes\{487B0B3A-D431-474A-9481-6B75ECEA5ABC}: "URL" = http://startsear.ch/?aff=1&src=sp&cf=69265f2c-1dd5-11e1-af90-00142ae43d76&q={searchTerms}
IE - HKU\S-1-5-21-839522115-436374069-1417001333-1004\..\SearchScopes\{4FF82988-C69C-4BB3-9AB9-2A85380F4C75}: "URL" = http://www.daemon-search.com/search?q={searchTerms}
IE - HKU\S-1-5-21-839522115-436374069-1417001333-1004\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://startsear.ch/?aff=2&src=sp&cf=0215cc4a-f534-11e1-b0ea-00142ae43d76&q={searchTerms}
IE - HKU\S-1-5-21-839522115-436374069-1417001333-1004\..\SearchScopes\{FF3BB5A8-5ADB-4F90-86A4-53563B21125A}: "URL" = http://isearch.avg.com/search?cid={24F13762-0B7F-4447-8A70-0786365A7775}&mid=6b0c63568e5c47d093e5d15d6c00d485-06ce4fc639803a2e3563922518183d8e94088cb9&lang=pl&ds=gm011&pr=sa&d=2012-05-07 15:13:18&v=11.0.0.9&sap=dsp&q={searchTerms}
FF - prefs.js..browser.search.defaultengine: "Web Search"
FF - prefs.js..browser.search.defaultenginename: "Web Search"
FF - prefs.js..browser.search.order.1: "Web Search"
FF - prefs.js..keyword.URL: "http://isearch.avg.com/search?cid=%7B56159f9a-f86e-4668-b08f-01a7e755ab49%7D&mid=6b0c63568e5c47d093e5d15d6c00d485-06ce4fc639803a2e3563922518183d8e94088cb9&ds=gm011&v=11.0.0.9&lang=pl&pr=sa&d=2012-05-07%2015%3A13%3A18&sap=ku&q="
FF - HKLM\Software\MozillaPlugins\@ganymede/BOARDS,version=1.0: C:\Program Files\Ganymede\Plugins\BOARDS\NPBOARDS.dll File not found
FF - HKLM\Software\MozillaPlugins\@ganymede/CARDS,version=1.0: C:\Program Files\Ganymede\Plugins\CARDS\NPCARDS.dll File not found
FF - HKLM\Software\MozillaPlugins\@ganymede/DARTS,version=1.0: C:\Program Files\Ganymede\Plugins\DARTS\NPDARTS.dll File not found
FF - HKLM\Software\MozillaPlugins\@ganymede/MAKAOV2,version=1.0: C:\Program Files\Ganymede\Plugins\MAKAOV2\NPMAKAOV2.dll File not found
FF - HKLM\Software\MozillaPlugins\@ganymede/SOCCER,version=1.0: C:\Program Files\Ganymede\Plugins\SOCCER\NPSOCCER.dll File not found
FF - HKLM\Software\MozillaPlugins\@ganymede/SOLITAIRE,version=1.0: C:\Program Files\Ganymede\Plugins\SOLITAIRE\NPSOLITAIRE.dll File not found
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
[2010-05-21 16:09:48 | 000,002,921 | ---- | M] () -- C:\Documents and Settings\sebastian\Dane aplikacji\Mozilla\Firefox\Profiles\8y4alld7.default\searchplugins\daemon-search.xml
[2012-09-02 20:26:03 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\sebastian\Dane aplikacji\Mozilla\Firefox\Profiles\8y4alld7.default\searchplugins\startsear.xml
[2010-02-21 14:31:11 | 000,001,250 | ---- | M] () -- C:\Documents and Settings\sebastian\Dane aplikacji\Mozilla\Firefox\Profiles\8y4alld7.default\searchplugins\winamp-search.xml
[2012-05-07 14:09:19 | 000,001,390 | ---- | M] () -- C:\Documents and Settings\sebastian\Dane aplikacji\Mozilla\Firefox\Profiles\8y4alld7.default\searchplugins\yahoo-zugo.xml
[2012-10-31 08:59:55 | 000,000,000 | ---D | M] (z) -- C:\Program Files\Mozilla Firefox\extensions\{1f24ed1e-80e2-bba6-c694-c1f9616e0c72}
[2012-05-07 14:13:15 | 000,003,749 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml
O2 - BHO: (no name) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - No CLSID value found.
O3 - HKU\S-1-5-21-839522115-436374069-1417001333-1004\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKU\S-1-5-21-839522115-436374069-1417001333-1004\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Action Manager 32.lnk = File not found
O4 - Startup: C:\Documents and Settings\sebastian\Menu Start\Programy\Autostart\OpenOffice.org 3.3.lnk = File not found
O16 - DPF: {1A781DED-4153-C22D-3213-A3211E29DF13} http://cached.gamedesire.com/g_bin/pl/cards_2_0_0_81.cab (Reg Error: Key error.)
O16 - DPF: {2A781DED-4153-C22D-9812-CEA98A32981C} http://cached.gamedesire.com/g_bin/pl/cardsmakao_2_0_0_33.cab (Reg Error: Key error.)
O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - File not found
O33 - MountPoints2\{b3b8607e-68ab-11e2-adfb-00142ae43d76}\Shell\AutoRun\command - "" = i00dvoym.exe
O33 - MountPoints2\{b3b8607e-68ab-11e2-adfb-00142ae43d76}\Shell\open\Command - "" = i00dvoym.exe
[2012-12-31 12:07:23 | 000,095,608 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\AvastSS.scr
[2012-10-31 12:10:25 | 000,000,318 | ---- | M] () -- C:\WINDOWS\tasks\GlaryInitialize.job
:Files
O:\FOUND.000
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=-
"HP Software Update"=-
"Adobe ARM"=-
"SunJavaUpdateSched"=-
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Alwil Software\Avast5\AvastUI.exe"=-
"C:\Documents and Settings\sebastian\Ustawienia lokalne\Dane aplikacji\Akamai\netsession_win.exe"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.4 (KHTML, like Gecko) Chrome/22.0.1229.94 Safari/537.4
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:17.0) Gecko/17.0 Firefox/17.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.4 (KHTML, like Gecko) Chrome/22.0.1229.94 Safari/537.4
chkdsk c: /p/r
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:17.0) Gecko/17.0 Firefox/17.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.4 (KHTML, like Gecko) Chrome/22.0.1229.94 Safari/537.4
moze jeszcze jakies uslugi i programy mozna wylaczyc
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.4 (KHTML, like Gecko) Chrome/22.0.1229.94 Safari/537.4
ATICCC
NokiaMServer
NokiaMusic FastStart
NSU_agent
Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk
Książka adresowa 6
Microsoft Outlook Express 6
Gadu-Gadu 10
NokiaSuite.exe
uTorrent
avast! Emergency Update.job
GoogleUpdateTaskMachineCore.job
GoogleUpdateTaskMachineUA.job
wszystko na żółto oprócz "EagleXNt"
JavaQuickStarterService
LightScribeService
odserv
ose
WMPNetworkSvc
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.4 (KHTML, like Gecko) Chrome/22.0.1229.94 Safari/537.4
UA: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:17.0) Gecko/17.0 Firefox/17.0
Zarejestrowani użytkownicy: Bing [Bot]