
:OTL
[2012-10-29 01:02:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ABC\Dane aplikacji\hellomoto
O4 - HKLM..\Run: [simpdata] C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\1482\simpdata.exe (Microsoft Corporation)
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={1ABC34E4-7388-4087-A409-48DEAE2025A3}&mid=a4df4eaa32d547d096e4d150ff92c0d5-ee78da76d9b9c339d269b046f2eb8611e63c45a8&lang=pl&ds=ik011&pr=&d=2012-10-29 15:05:26&v=13.2.0.4&sap=hp
IE - HKCU\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKCU\..\SearchScopes\{29E6E72A-EE40-4784-BFA9-64414F4F0A71}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=VDJ&o=41647960&src=crm&q={searchTerms}&locale=&apn_ptnrs=8R&apn_dtid=YYYYYYYYPL&apn_uid=36735453-348A-4CBC-B398-1A3CC406FF37&apn_sauid=0EBBC1E6-8163-4E71-945B-693984AE0003
IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.com/search?cid={1ABC34E4-7388-4087-A409-48DEAE2025A3}&mid=a4df4eaa32d547d096e4d150ff92c0d5-ee78da76d9b9c339d269b046f2eb8611e63c45a8&lang=pl&ds=ik011&pr=&d=2012-10-29 15:05:26&v=13.2.0.4&sap=dsp&q={searchTerms}
IE - HKCU\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB9}: "URL" = http://www.daemon-search.com/search?q={searchTerms}
FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\13.2.0\\npsitesafety.dll ()
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\FireFoxExt\13.2.0.4 [2012-10-29 15:05:34 | 000,000,000 | ---D | M]
O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll ()
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\13.2.0.4\AVG Secure Search_toolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
:Files
C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\1482
:Commands
[emptytemp]
[2012-10-19 16:23:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ABC\Dane aplikacji\Ywowo
A brak internetu jest spowodowany tym wirusem czy może combofix'a
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 7 gości