

Najciekawsze linijki z loga to chyba
Spoiler:
oraz
Spoiler:
:OTL
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/idg/idg_1337784935_456187
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = pl.v9.com/idg/idg_1337784935_456187
IE - HKU\S-1-5-21-1848486269-2507684271-631995896-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/idg/idg_1337784935_456187
IE - HKU\S-1-5-21-1848486269-2507684271-631995896-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = pl.v9.com/idg/idg_1337784935_456187
FF - prefs.js..browser.search.defaultenginename: "Web Search"
FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
FF - prefs.js..browser.startup.homepage: "http://www.vnations.net/house.php"
FF - prefs.js..keyword.URL: "http://search.babylon.com/?AF=110004&babsrc=adbartrp&mntrId=bab2fd0b000000000000002719be1907&q="
[2012-05-25 13:26:02 | 000,000,000 | ---D | M] (Facemoods) -- C:\Users\Bender\AppData\Roaming\mozilla\Firefox\Profiles\ydfhhb86.default\extensions\ffxtlbr@Facemoods.com
[2012-05-25 13:26:02 | 000,000,000 | ---D | M] (Funmoods.com) -- C:\Users\Bender\AppData\Roaming\mozilla\Firefox\Profiles\ydfhhb86.default\extensions\ffxtlbr@funmoods.com
[2012-04-15 18:06:41 | 000,001,800 | ---- | M] () -- C:\Users\Bender\AppData\Roaming\Mozilla\Firefox\Profiles\ydfhhb86.default\searchplugins\funmoods.xml
[2012-04-21 19:52:56 | 000,000,792 | ---- | M] () -- C:\Users\Bender\AppData\Roaming\Mozilla\Firefox\Profiles\ydfhhb86.default\searchplugins\startsear.xml
[2012-05-23 16:55:35 | 000,002,415 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\v9.xml
O4 - HKU\S-1-5-21-1848486269-2507684271-631995896-1000..\Run: [wifjhtkwbadgrsu] C:\ProgramData\wifjhtkw.exe (Hyundai)
O4 - HKLM..\RunOnce: [InnoSetupRegFile.0000000001] "C:\Windows\is-N8NP4.exe" /REG File not found
[2012-08-17 23:08:29 | 000,091,136 | ---- | C] (Hyundai) -- C:\ProgramData\wifjhtkw.exe
[2012-08-17 23:08:29 | 000,000,000 | ---D | C] -- C:\ProgramData\txbbvceobhuvcof
[2012-08-17 23:08:21 | 000,091,136 | ---- | C] (Hyundai) -- C:\Users\Bender\0.058522811206724534.exe
[2012-08-17 23:14:01 | 000,001,032 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012-08-17 23:08:29 | 000,000,051 | ---- | M] () -- C:\ProgramData\ofpiufglduxuxdt
[2012-08-17 23:08:23 | 000,091,136 | ---- | M] (Hyundai) -- C:\ProgramData\wifjhtkw.exe
[2012-08-17 23:08:23 | 000,091,136 | ---- | M] (Hyundai) -- C:\Users\Bender\0.058522811206724534.exe
[2012-08-17 22:16:00 | 000,001,036 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012-08-17 23:14:21 | 000,026,838 | ---- | C] () -- C:\Windows\System32\jcsball.dat
[2012-08-17 23:14:21 | 000,006,454 | ---- | C] () -- C:\Windows\System32\jcsb.new
[2012-08-17 23:14:21 | 000,003,581 | ---- | C] () -- C:\Windows\System32\jerror.dat
[2012-07-02 19:32:53 | 000,107,520 | RHS- | C] () -- C:\Windows\System32\TAKDSDecoder.dll
:Commands
[emptytemp]
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 17 gości