

Jak wszyscy zablokowany ekran przez wiadomy komunikat.
Przesyłam logi.
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?crg=3.1010000&st=12
IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=12&q={searchTerms}
IE - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/home?AF=100581
IE - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..\URLSearchHook: {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL (Ask.com)
IE - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/web/{searchTerms}?babsrc=browsersearch&AF=100581
IE - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB9}: "URL" = http://www.daemon-search.com/search?q={searchTerms}
IE - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..\SearchScopes\{BF2B5B4E-2530-49F9-BAF2-5EE8C4D7FD9B}: "URL" = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms}
IE - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=12&q={searchTerms}
IE - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
O4 - HKU\S-1-5-21-76972214-2977507923-2387386021-1000..\Run: [xmlfilter] C:\Users\Adam G\AppData\Local\Microsoft\Windows\2903\xmlfilter.exe ()
O4 - HKU\S-1-5-21-76972214-2977507923-2387386021-1000..\Run: [ChomikBox] C:\Program Files\ChomikBox\chomikbox.exe File not found
O15 - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..Trusted Domains: alipay.com ([]http in Trusted sites)
O15 - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..Trusted Domains: alipay.com ([]https in Trusted sites)
O15 - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..Trusted Domains: alisoft.com ([]http in Trusted sites)
O15 - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..Trusted Domains: alisoft.com ([]https in Trusted sites)
O15 - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..Trusted Domains: taobao.com ([]http in Trusted sites)
O15 - HKU\S-1-5-21-76972214-2977507923-2387386021-1000\..Trusted Domains: taobao.com ([]https in Trusted sites)
O33 - MountPoints2\{7d03886f-0c91-11e1-aa53-0015affce4ca}\Shell - "" = AutoRun
O33 - MountPoints2\{7d03886f-0c91-11e1-aa53-0015affce4ca}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{7d03888e-0c91-11e1-aa53-0015affce4ca}\Shell - "" = AutoRun
O33 - MountPoints2\{7d03888e-0c91-11e1-aa53-0015affce4ca}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{9556be44-053c-11e1-b909-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{9556be44-053c-11e1-b909-806e6f6e6963}\Shell\AutoRun\command - "" = E:\bakus6.exe -- [2007-02-01 13:14:06 | 008,823,101 | R--- | M] (The Design Assembly GmbH)
:Files
C:\Users\Adam G\AppData\Local\Microsoft\Windows\2903
C:\Users\Adam G\AppData\Roaming\hellomoto
C:\ProgramData\qjaxlkio.dss
C:\Users\Adam G\AppData\Roaming\OpenCandy
C:\Windows\bthservsdp.dat
:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
:Commands
[emptytemp]
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 6 gości