
Proszę o pomoc.
:OTL
MOD - [2012-03-13 08:05:45 | 000,168,960 | ---- | M] () -- C:\Users\Mika\AppData\Roaming\EE9C5\0E1E6.exe
MOD - [2012-03-13 08:02:57 | 000,185,344 | ---- | M] () -- C:\Users\Mika\AppData\Roaming\C5CF8\lvvm.exe
MOD - [2012-03-12 21:16:04 | 000,282,112 | ---- | M] () -- C:\Users\Mika\AppData\Roaming\Microsoft\E6BE\AA9.exe
PRC - [2012-03-13 08:05:45 | 000,168,960 | ---- | M] () -- C:\Users\Mika\AppData\Roaming\EE9C5\0E1E6.exe
PRC - [2012-03-13 08:02:57 | 000,185,344 | ---- | M] () -- C:\Users\Mika\AppData\Roaming\C5CF8\lvvm.exe
PRC - [2012-03-12 21:16:04 | 000,282,112 | ---- | M] () -- C:\Users\Mika\AppData\Roaming\Microsoft\E6BE\AA9.exe
O3:64bit: - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll File not found
O3:64bit: - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll File not found
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AA9.exe] C:\Program Files (x86)\LP\E6BE\AA9.exe File not found
O4 - HKCU..\Run: [AA9.exe] C:\Users\Mika\AppData\Roaming\Microsoft\E6BE\AA9.exe ()
O4 - HKCU..\Run: [AdobeBridge] File not found
F3:64bit: - HKCU WinNT: Load - (C:\Users\Mika\AppData\Roaming\C5CF8\lvvm.exe) - C:\Users\Mika\AppData\Roaming\C5CF8\lvvm.exe ()
F3 - HKCU WinNT: Load - (C:\Users\Mika\AppData\Roaming\C5CF8\lvvm.exe) - C:\Users\Mika\AppData\Roaming\C5CF8\lvvm.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O20 - HKCU Winlogon: Shell - (C:\Users\Mika\AppData\Roaming\EE9C5\0E1E6.exe) - C:\Users\Mika\AppData\Roaming\EE9C5\0E1E6.exe ()
[2012-02-22 21:19:18 | 000,000,000 | ---D | C] -- C:\Users\Mika\AppData\Roaming\C5CF8
[2012-02-22 21:18:45 | 000,000,000 | ---D | C] -- C:\Users\Mika\AppData\Roaming\EE9C5
[2012-03-13 12:31:00 | 000,001,044 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012-03-13 11:06:20 | 000,001,040 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012-03-13 08:34:09 | 000,230,624 | ---- | M] () -- C:\Windows\SysNative\drivers\sfi.dat
[2012-03-13 08:07:21 | 000,000,388 | ---- | M] () -- C:\Windows\tasks\At3.job
[2012-03-13 08:03:56 | 000,282,112 | ---- | M] () -- C:\Users\Mika\AppData\Roaming\opera.exe
[2012-03-13 08:01:51 | 000,000,388 | ---- | M] () -- C:\Windows\tasks\At2.job
[2012-03-13 08:01:51 | 000,000,328 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForMika.job
[2012-02-24 11:54:04 | 000,000,388 | ---- | M] () -- C:\Windows\tasks\At1.job
[2012-02-23 22:51:42 | 000,283,136 | ---- | M] () -- C:\Users\Mika\AppData\Roaming\java.exe
[2012-02-19 18:46:50 | 000,007,604 | ---- | M] () -- C:\Users\Mika\AppData\Local\Resmon.ResmonCfg
:Commands
[emptytemp]
[emptyflash]
Windows Registry Editor Version 5.00
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
"Load"=""
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Shell"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyServer"=-
"ProxyEnable"=dword:00000000
:OTL
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
IE - HKCU\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search/web?q={searchTerms}
:Files
C:\Users\Mika\AppData\Roaming\Microsoft\E6BE
:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
:Commands
[emptytemp]
[emptyflash]
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 29 gości