
KillAll::
DDS::
uRun: [samomomx] C:\Users\ADA\AppData\Roaming\Wipclhqbvc\xrjbikmomx.exe
uRunOnce: [f83r] C:\ProgramData\nreu\kcfg.exe
uRunOnce: [1afh] C:\ProgramData\hcbrhuw\doomi.exe
uRunOnce: [qa52] C:\ProgramData\ofk\hreidmx.exe
uRunOnce: [gskd] C:\ProgramData\fruxhv\cvlisuh.exe
uRunOnce: [idby] C:\ProgramData\afqcuvs\flalpo.exe
dRunOnce: [qa52] C:\ProgramData\ofk\hreidmx.exe
dRunOnce: [1afh] C:\ProgramData\hcbrhuw\doomi.exe
dRunOnce: [f83r] C:\ProgramData\nreu\kcfg.exe
File::
C:\Users\ADA\AppData\Local\Temp\nsm567A.tmp\PEV.DAT
C:\Users\ADA\AppData\Local\Temp\PEVZ.EXE
Folder::
C:\Users\ADA\AppData\Local\Temp\nsm567A.tmp
C:\ProgramData\icrf
C:\Users\ADA\AppData\Roaming\Wipclhqbvc
C:\ProgramData\nreu
C:\ProgramData\hcbrhuw
C:\ProgramData\ofk
C:\ProgramData\fruxhv
C:\ProgramData\afqcuvs
C:\ProgramData\esrmqrp
C:\ProgramData\tatc
C:\ProgramData\xptnsdg
C:\ProgramData\afqcuvs
C:\ProgramData\pkcx
C:\ProgramData\almagsi
C:\Program Files (x86)\SupraSavings
C:\Program Files\suprasavings
C:\ProgramData\IePluginService
C:\Program Files (x86)\SupTab
C:\ProgramData\WPM
C:\ProgramData\bmwpr
C:\ProgramData\cotbpks
C:\ProgramData\rqlf
C:\ProgramData\iug
C:\ProgramData\xtl
C:\ProgramData\bxjkxy
C:\ProgramData\nreu
C:\ProgramData\dcrloep
C:\ProgramData\tpfei
C:\ProgramData\tbm
C:\ProgramData\lcaun
DirLook::
C:\Users\ADA\AppData\Roaming\systweak
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Shell"="explorer.exe"
Reboot::
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 13 gości