Czesc, czy moze mi ktos sprawdzic logi z OTL? z GMER jest wlasnie problem bo jak dochodzi mi do winlogon to resetuje sie komputer.
Logi OTL
http://www.wklej.eu/index.php?id=0325c2c78f
http://www.wklej.eu/index.php?id=c4f9ed3829
UA: Opera/9.80 (Windows NT 5.1; U; pl) Presto/2.10.229 Version/11.64
UA: Opera/9.80 (Windows NT 6.1; WOW64; U; pl) Presto/2.10.229 Version/11.64
UA: Mozilla/5.0 (Windows NT 5.1; rv:12.0) Gecko/20100101 Firefox/12.0
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://pl.v9.com/ins/ins_1336035912_183114
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://pl.v9.com/ins/ins_1336035912_183114
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.google.pl/cse?q={searchTerms}&cx=partner-pub-2489206448026482%3A4041638047&tbm=&ie=UTF-8#gsc.tab=0&gsc.q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.pl/cse?q={searchTerms}&cx=partner-pub-2489206448026482%3A4041638047&tbm=&ie=UTF-8#gsc.tab=0&gsc.q={searchTerms}
IE - HKU\S-1-5-21-1343024091-1604221776-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://pl.v9.com/ins/ins_1336035912_183114
IE - HKU\S-1-5-21-1343024091-1604221776-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://pl.v9.com/ins/ins_1336035912_183114
IE - HKU\S-1-5-21-1343024091-1604221776-725345543-1003\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689
IE - HKU\S-1-5-21-1343024091-1604221776-725345543-1003\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.google.pl/cse?q={searchTerms}&cx=partner-pub-2489206448026482%3A4041638047&tbm=&ie=UTF-8#gsc.tab=0&gsc.q={searchTerms}
IE - HKU\S-1-5-21-1343024091-1604221776-725345543-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searc}
FF - prefs.js..browser.search.defaultengine: "Web Search"
FF - prefs.js..browser.startup.homepage: "http://pl.v9.com/ins/ins_1336035912_183114"
FF - prefs.js..keyword.URL: "http://search.babylon.com/?AF=100478&babsrc=adbartrp&mntrId=00bfd2850000000000000018f3cd1f43&q="
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll File not found
[2011-12-15 18:44:06 | 000,000,000 | ---D | M] (Babylon) -- C:\Documents and Settings\XXX\Dane aplikacji\Mozilla\Firefox\Profiles\indhqbt9.default\extensions\[email protected]
[2012-01-25 22:10:21 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\XXX\Dane aplikacji\Mozilla\Firefox\Profiles\indhqbt9.default\searchplugins\startsear.xml
[2011-07-30 18:23:03 | 000,001,565 | ---- | M] () -- C:\Documents and Settings\XXX\Dane aplikacji\Mozilla\Firefox\Profiles\indhqbt9.default\searchplugins\web-search.xml
[2011-12-15 18:43:22 | 000,002,310 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
[2012-05-03 11:05:14 | 000,002,415 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\v9.xml
O3 - HKU\S-1-5-21-1343024091-1604221776-725345543-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
:Files
C:\Program Files\Google\Update
C:\Documents and Settings\XXX\Pulpit\gmer
C:\Documents and Settings\XXX\Ustawienia lokalne\Temp
C:\Program Files\v9Soft
C:\Documents and Settings\XXX\Pulpit\gmer.zip
C:\WINDOWS\tasks\*.job
:Reg
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"High Definition Audio Property Page Shortcut"=-
"NvCplDaemon"=-
"NvMediaCenter"=-
"nwiz"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
:Commands
[emptyflash]
[clearallrestorepoints]
[emptytemp]
UA: Mozilla/5.0 (Windows NT 5.1; rv:12.0) Gecko/20100101 Firefox/12.0
:OTL
:Files
C:\Documents and Settings\XXX\Pulpit\sfdrvrem
C:\Documents and Settings\XXX\Pulpit\sfdrvrem.zip
:Commands
[emptyflash]
[clearallrestorepoints]
[emptytemp]
Zarejestrowani użytkownicy: Google [Bot]