UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
:OTL
IE - HKU\S-1-5-21-1624614489-1438924107-3198493719-1000\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: \"URL\" = http://www.daemon-search.com/search?q={searchTerms}
IE - HKU\S-1-5-21-1624614489-1438924107-3198493719-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.modem.beeline.ru [binary data]
[2013/05/09 13:07:03 | 000,000,000 | ---D | M] (\"DAEMON Tools Toolbar\") -- C:\Users\Dominik\AppData\Roaming\mozilla\Firefox\Profiles\p9eigelu.default\extensions\[email protected]
[2011/01/29 21:14:13 | 000,002,055 | ---- | M] () -- C:\Users\Dominik\AppData\Roaming\mozilla\firefox\profiles\p9eigelu.default\searchplugins\daemon-search.xml
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKU\S-1-5-21-1624614489-1438924107-3198493719-1000..\Run: [cafacedcfdec] \"C:\ProgramData\cafacedcfdec.exe\" File not found
O4 - HKU\S-1-5-21-1624614489-1438924107-3198493719-1000..\Run: [s2361a121] C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1455986\s2361a1.exe File not found
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
[2014/01/02 11:33:07 | 000,000,000 | ---D | C] -- C:\Users\Dominik\.jivex
[2014/01/23 10:28:07 | 000,002,432 | ---- | M] () -- C:\Users\Dominik\AppData\Local\TempEh6352.html
[2014/01/23 09:59:10 | 000,000,914 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1624614489-1438924107-3198493719-1000Core.job
[2014/01/23 09:53:40 | 000,000,936 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-1624614489-1438924107-3198493719-1000UA.job
[2013/09/19 11:51:53 | 000,192,512 | ---- | C] () -- C:\ProgramData\qiibsrfkcwtxqsi
[2013/09/19 11:48:54 | 000,174,592 | ---- | C] () -- C:\ProgramData\iuteunbtfisvaia
[2013/09/19 11:48:54 | 000,000,213 | ---- | C] () -- C:\ProgramData\cafacedcfdec.cfg
[2012/11/29 01:24:02 | 095,023,320 | ---- | C] () -- C:\ProgramData\0tbpw.pad
:Files
C:\Users\Dominik\AppData\Local\Temp*.html
:Reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=-
"UpdateLBPShortCut"=-
"CLMLServer"=-
"UpdateP2GoShortCut"=-
"UpdatePDRShortCut"=-
"RemoteControl8"=-
"PDVD8LanguageShortcut"=-
"UpdatePPShortCut"=-
"UpdatePSTShortCut"=-
"Adobe Reader Speed Launcher"=-
"SunJavaUpdateSched"=-
"HotKeysCmds"=-
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=-
"Google Update"=-
:Commands
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
Java(TM) 6 Update 21
Adobe Reader 9.1 - Polish
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:26.0) Gecko/20100101 Firefox/26.0
UA: Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/32.0.1700.76 Safari/537.36
Zarejestrowani użytkownicy: Majestic-12 [Bot]