Z góry dzięki za sprawdzenie.
:OTL
IE - HKU\S-1-5-21-3166234107-2778391146-2593925009-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?affID=113940&tt=060612_8_&babsrc=HP_ss&mntrId=906812b5000000000000dca9719b9c46
IE - HKU\S-1-5-21-3166234107-2778391146-2593925009-1000\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=113940&tt=060612_8_&babsrc=SP_ss&mntrId=906812b5000000000000dca9719b9c46
FF - prefs.js..network.proxy.type: 0
[2012-06-21 23:22:44 | 000,000,000 | ---D | M] (Babylon) -- C:\Users\Tomek\AppData\Roaming\mozilla\Firefox\Profiles\wlg61t4y.default\extensions\ffxtlbr@babylon.com
O2 - BHO: (DownloadnSave Class) - {179F1B94-9AF7-8274-A22A-91332B826A25} - C:\ProgramData\DownloadnSave\bhoclass.dll ()
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No CLSID value found.
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - d:\AVAST Software\Avast\aswWebRepIE64.dll File not found
O4 - HKLM..\Run: [NBKeyScan] "D:\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" File not found
O4 - HKU\S-1-5-21-3166234107-2778391146-2593925009-1000..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-3166234107-2778391146-2593925009-1000..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-3166234107-2778391146-2593925009-1001..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O33 - MountPoints2\{ef684bc0-a8f1-11e1-bafa-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{ef684bc0-a8f1-11e1-bafa-806e6f6e6963}\Shell\AutoRun\command - "" = H:\BSAutoRun.exe
:Files
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3166234107-2778391146-2593925009-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3166234107-2778391146-2593925009-1000Core.job
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Users\Tomek\AppData\Local\Temp*.html
:Commands
[emptytemp]
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 6 gości