
http://wklej.org/id/352347/
biore sie do roboty
:processes
killallprocesses
:otl
IE - HKU\S-1-5-21-1482476501-602609370-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com?o=14656&l=dis
IE - HKU\S-1-5-21-1482476501-602609370-682003330-1003\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - G:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
IE - HKU\S-1-5-21-1482476501-602609370-682003330-1003\..\URLSearchHook: {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - G:\Program Files\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.)
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..keyword.URL: "http://websearch.ask.com/redirect?client=ff&src=kw&tb=CPUID&o=14654&locale=en_US&q="
[2010-05-17 05:54:17 | 000,000,000 | ---D | M] -- G:\Documents and Settings\Mendej Krul\Dane aplikacji\Mozilla\Firefox\Profiles\vzak7h3t.default\extensions\toolbar@ask.com
[2010-05-17 05:54:19 | 000,002,426 | ---- | M] () -- G:\Documents and Settings\Mendej Krul\Dane aplikacji\Mozilla\Firefox\Profiles\vzak7h3t.default\searchplugins\askcom.xml
[2010-05-16 19:21:51 | 000,002,059 | ---- | M] () -- G:\Documents and Settings\Mendej Krul\Dane aplikacji\Mozilla\Firefox\Profiles\vzak7h3t.default\searchplugins\daemon-search.xml
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - G:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - G:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O3 - HKU\S-1-5-21-1482476501-602609370-682003330-1003\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O3 - HKU\S-1-5-21-1482476501-602609370-682003330-1003\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - G:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com)
O4 - HKLM..\Run: [BCU] G:\Program Files\DeviceVM\Browser Configuration Utility\BCU.exe File not found
O4 - Startup: G:\Documents and Settings\All Users\Menu Start\Programy\Autostart\WConfig.lnk = G:\Program Files\WLAN\WConfig\WConfig.exe File not found
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
[2010-06-17 19:26:36 | 000,157,520 | ---- | C] (Kaspersky Lab) -- G:\Documents and Settings\Mendej Krul\Pulpit\SalityKiller.exe
[2010-06-17 19:09:14 | 000,000,000 | ---D | C] -- G:\ComboFix
[2010-06-14 09:34:18 | 000,000,000 | ---D | C] -- G:\Avenger
[2010-06-14 09:16:22 | 000,212,480 | ---- | C] (SteelWerX) -- G:\WINDOWS\SWXCACLS.exe
[2010-06-14 09:16:22 | 000,161,792 | ---- | C] (SteelWerX) -- G:\WINDOWS\SWREG.exe
[2010-06-14 09:16:22 | 000,136,704 | ---- | C] (SteelWerX) -- G:\WINDOWS\SWSC.exe
[2010-06-14 09:16:22 | 000,031,232 | ---- | C] (NirSoft) -- G:\WINDOWS\NIRCMD.exe
[2010-06-14 09:16:19 | 000,000,000 | ---D | C] -- G:\WINDOWS\ERDNT
[2010-06-14 09:15:44 | 000,000,000 | ---D | C] -- G:\Qoobox
[2010-06-17 20:01:00 | 000,000,246 | ---- | M] () -- G:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2010-06-17 19:59:03 | 000,006,371 | ---- | M] () -- G:\Documents and Settings\Mendej Krul\Pulpit\sality_regkeys.zip
[2010-06-17 19:37:19 | 000,150,089 | ---- | M] () -- G:\Documents and Settings\Mendej Krul\Pulpit\salitykiller(2).zip
[2010-06-17 19:26:09 | 000,150,089 | ---- | M] () -- G:\Documents and Settings\Mendej Krul\Pulpit\salitykiller.zip
[2010-06-17 19:17:29 | 000,293,376 | ---- | M] () -- G:\Documents and Settings\Mendej Krul\Pulpit\4mh3osnr.exe
[2010-06-17 19:08:45 | 003,713,914 | R--- | M] () -- G:\Documents and Settings\Mendej Krul\Pulpit\ComboFix.exe
[2010-06-14 09:39:49 | 000,293,376 | ---- | M] () -- G:\Documents and Settings\Mendej Krul\Pulpit\vmsrts3p.exe
[2010-06-17 19:59:02 | 000,006,371 | ---- | C] () -- G:\Documents and Settings\Mendej Krul\Pulpit\sality_regkeys.zip
[2010-06-17 19:37:18 | 000,150,089 | ---- | C] () -- G:\Documents and Settings\Mendej Krul\Pulpit\salitykiller(2).zip
[2010-06-17 19:26:09 | 000,150,089 | ---- | C] () -- G:\Documents and Settings\Mendej Krul\Pulpit\salitykiller.zip
[2010-06-17 19:17:28 | 000,293,376 | ---- | C] () -- G:\Documents and Settings\Mendej Krul\Pulpit\4mh3osnr.exe
[2010-06-17 19:08:10 | 003,713,914 | R--- | C] () -- G:\Documents and Settings\Mendej Krul\Pulpit\ComboFix.exe
[2010-06-14 09:16:22 | 000,256,512 | ---- | C] () -- G:\WINDOWS\PEV.exe
[2010-06-14 09:16:22 | 000,098,816 | ---- | C] () -- G:\WINDOWS\sed.exe
[2010-06-14 09:16:22 | 000,080,412 | ---- | C] () -- G:\WINDOWS\grep.exe
[2010-06-14 09:16:22 | 000,077,312 | ---- | C] () -- G:\WINDOWS\MBR.exe
[2010-06-14 09:16:22 | 000,068,096 | ---- | C] () -- G:\WINDOWS\zip.exe
[2010-06-17 20:01:00 | 000,000,246 | ---- | M] () -- G:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
:services
mbr
catchme
:files
:reg
:commands
[purity]
[emptytemp]
[emptyflash]
[clearallrestorepoints]
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 9 gości