UA: Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0
UA: Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.17 (KHTML, like Gecko) Chrome/24.0.1312.45 Safari/537.17
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
UA: Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
File not found -- C:\Documents and Settings\x\Pulpit\Sample Conflict BASS
:OTL
[2011-04-03 01:29:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\bsbandmltbpi
[2013-01-08 17:31:48 | 000,000,548 | -H-- | M] () -- C:\WINDOWS\tasks\OptimizerPro1UpdaterTask{B4A17730-3992-4043-87CF-97147EC09AAE}.job
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..keyword.URL: "http://isearch.avg.com/search?cid=%7B1c5da218-8997-435e-a484-4ea875e5777e%7D&mid=40ed2ed8e86b47d0b014d1543b3017ca-b2c6c87db76c415afb639f9da67dff9875fcaa92&ds=AVG&v=11.0.0.9&lang=pl&pr=fr&d=2012-06-14%2021%3A43%3A06&sap=ku&q="
IE - HKU\S-1-5-21-1715567821-861567501-682003330-1004\..\SearchScopes\{27759CF1-BD5C-47CA-BC56-E79C2CB5A23A}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYPL&apn_uid=8C31F93D-C3F1-49B3-B66F-5C381E51800C&apn_sauid=D7F01B7B-BCEE-4AEB-B6C9-D6616E29BE6E
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\x\USTAWI~1\Temp\ASFWHide -- (ASFWHide)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\AWRTPD.sys -- (AdWatchDrv)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\VBoxNetFlt.sys -- (VBoxNetFlt)
DRV - File not found [Kernel | Boot | Stopped] -- -- (TPkd)
MOD - [2012-09-10 13:31:46 | 000,209,920 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Premium\OptimizerPro1\OptimizerPro1.exe
:Commands
[emptytemp]
[clearallrestorepoints]
UA: Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
UA: Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
:OTL
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\VBoxNetFlt.sys -- (VBoxNetFlt)
DRV - File not found [Kernel | Boot | Stopped] -- -- (TPkd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\x\USTAWI~1\Temp\ASFWHide -- (ASFWHide)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\AWRTPD.sys -- (AdWatchDrv)
IE - HKU\S-1-5-21-1715567821-861567501-682003330-1004\..\SearchScopes\{27759CF1-BD5C-47CA-BC56-E79C2CB5A23A}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYPL&apn_uid=8C31F93D-C3F1-49B3-B66F-5C381E51800C&apn_sauid=D7F01B7B-BCEE-4AEB-B6C9-D6616E29BE6E
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..keyword.URL: "http://isearch.avg.com/search?cid=%7B1c5da218-8997-435e-a484-4ea875e5777e%7D&mid=40ed2ed8e86b47d0b014d1543b3017ca-b2c6c87db76c415afb639f9da67dff9875fcaa92&ds=AVG&v=11.0.0.9&lang=pl&pr=fr&d=2012-06-14%2021%3A43%3A06&sap=ku&q="
aplikacji\Mozilla\Firefox\Profiles\w5tveg8b.default\extensions\{d43723ae-1ae1-4a25-a6a4-bf0929273cab}
[2012-10-03 18:03:12 | 000,000,000 | ---D | M] (Download and Sa) -- C:\Documents and Settings\x\Dane aplikacji\Mozilla\Firefox\Profiles\w5tveg8b.default\extensions\[email protected]
[2012-11-04 08:37:05 | 000,002,571 | ---- | M] () -- C:\Documents and Settings\x\Dane aplikacji\Mozilla\Firefox\Profiles\w5tveg8b.default\searchplugins\askcom.xml
[2013-01-09 18:09:23 | 000,000,548 | -H-- | M] () -- C:\WINDOWS\tasks\OptimizerPro1UpdaterTask{B4A17730-3992-4043-87CF-97147EC09AAE}.job
[2011-04-03 01:29:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\x\Dane aplikacji\bsbandmltbpi
@Alternate Data Stream - 1265 bytesC:\Documents and Settings\All Users\Dane aplikacji\Microsoft:ZE8kPxCWA6AItXKpRQ1qM
@Alternate Data Stream - 1222 bytesC:\Documents and Settings\x\Cookies:NSvloGEb8TMHs0C7ey2Ris
@Alternate Data Stream - 1205 bytesC:\Documents and Settings\All Users\Dane aplikacji\Microsoft:urAkAY08FAL4MtwL3DPzERCt7K
@Alternate Data Stream - 1196 bytesC:\Program Files\WindowsUpdate:DHeB33nM14HYqbgWzm1w
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000 File not found
MOD - [2012-09-10 13:31:46 | 000,209,920 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Premium\OptimizerPro1\OptimizerPro1.exe
:Files
C:\Documents and Settings\All Users\Dane aplikacji\Premium
UA: Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.11 (KHTML, like Gecko) Chrome/23.4.0.0 Safari/537.11
:OTL
[2012-08-21 22:40:45 | 000,000,000 | ---D | M] (Ashampoo PO Community Toolbar) -- C:\Documents and Settings\x\Dane aplikacji\Mozilla\Firefox\Profiles\w5tveg8b.default\extensions\{d43723ae-1ae1-4a25-a6a4-bf0929273cab}
:Reg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\AVG\AVG2012\avgmfapx.exe"=-
UA: Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0
UA: Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0
UA: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.17 (KHTML, like Gecko) Chrome/24.2.0.0 Safari/537.17
Zarejestrowani użytkownicy: Bing [Bot]