
Logi: Dostępne tylko dla zarejestrowanych użytkowników, Dostępne tylko dla zarejestrowanych użytkowników, Dostępne tylko dla zarejestrowanych użytkowników.
"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 1.10.02
"AVG" = AVG 2013
"AVG Secure Search" = AVG Security Toolbar
"PunkBusterSvc" = PunkBuster Services
"Security Task Manager" = Security Task Manager 1.8f
"{E7E84E23-C5C0-4B15-B13A-C63149E59C98}" = AVG 2012
"{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}" = TuneUp Utilities 2013
Logi.
:OTL
SRV - File not found [Auto | Stopped] -- C:\Windows\system32\serv32.dll -- (qbkecsfz)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\vmnetadapter.sys -- (VMnetAdapter)
DRV - File not found [Kernel | Boot | Stopped] -- system32\DRIVERS\vmci.sys -- (vmci)
DRV - File not found [Kernel | On_Demand | Stopped] -- D:\POBIERANIE\SAVE\[cshacked.pl]Intelligent Aimbot Gold Edition Cracked\Intelligent Aimbot Gold Edition Cracked\glynnharr.sys -- (glynnxxGE)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Przemek\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (az77qhec)
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-2843964837-1774224190-1715446536-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-2843964837-1774224190-1715446536-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2843964837-1774224190-1715446536-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-2843964837-1774224190-1715446536-1000\..\SearchScopes\{302862ED-C83A-4726-928F-ADFF7A6D1DF8}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&locale=&apn_ptnrs=VX&apn_dtid=YYYYYYYYPL&apn_uid=4F6C2F20-8D60-4664-AE29-6E5785A0C3AA&apn_sauid=37BC00FC-C630-4AD1-A0C5-962E2CE0E8EA
IE - HKU\S-1-5-21-2843964837-1774224190-1715446536-1000\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{064F5E54-AAC4-483D-97FB-7A2F61BA4511}&mid=b7da9e74797f47d19c6fd1b647e4e9f2-c826723ddd2b7523bf8ee4aaf636ad79eb760747&lang=pl&ds=xn011&pr=sa&d=2013-01-29 15:47:03&v=14.2.0.1&pid=avg&sg=&sap=dsp&q={searchTerms}
FF - prefs.js..browser.search.update: false
FF - prefs.js..extensions.enabledAddons: plugin@yontoo.com:1.20.00
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Przemek\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Przemek\AppData\Local\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
[2012-08-14 03:26:50 | 000,000,000 | ---D | M] (OneClickDownloader) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\a2x0rqx6.default\extensions\OneClickDownload@OneClickDownload.com
[2012-08-14 03:26:57 | 000,000,000 | ---D | M] (Yontoo) -- C:\Users\Przemek\AppData\Roaming\mozilla\Firefox\Profiles\a2x0rqx6.default\extensions\plugin@yontoo.com
[2011-01-28 14:05:40 | 000,310,382 | ---- | M] () (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\firefox\profiles\a2x0rqx6.default\extensions\firefox@facebook.com.xpi
[2011-04-18 14:32:32 | 000,599,300 | ---- | M] () (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\firefox\profiles\a2x0rqx6.default\extensions\testpilot@labs.mozilla.com.xpi
[2011-01-28 13:49:32 | 000,794,219 | ---- | M] () (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\firefox\profiles\a2x0rqx6.default\extensions\{241aae70-0022-11de-87af-0800200c9a66}.xpi
[2011-01-28 14:00:49 | 000,043,131 | ---- | M] () (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\firefox\profiles\a2x0rqx6.default\extensions\{5F590AA2-1221-4113-A6F4-A4BB62414FAC}.xpi
[2011-04-18 14:32:32 | 000,465,063 | ---- | M] () (No name found) -- C:\Users\Przemek\AppData\Roaming\mozilla\firefox\profiles\a2x0rqx6.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011-07-27 21:37:48 | 000,002,333 | ---- | M] () -- C:\Users\Przemek\AppData\Roaming\mozilla\firefox\profiles\a2x0rqx6.default\searchplugins\askcom.xml
[2013-02-11 12:01:07 | 000,000,000 | ---D | M] (AVG Security Toolbar) -- C:\PROGRAMDATA\AVG SECURE SEARCH\FIREFOXEXT\14.1.0.10
CHR - Extension: No name found = C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1\
CHR - Extension: No name found = C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.3.4_0\
CHR - Extension: No name found = C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1\
CHR - Extension: No name found = C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\kiplfnciaokpcennlkldkdaeaaomamof\1.0.0.2023_0\
CHR - Extension: No name found = C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmicgfcegednlkdhgbhgickcgndjeeig\1.1.5_0\
CHR - Extension: No name found = C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_0\
CHR - Extension: No name found = C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
CHR - Extension: No name found = C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\plnacehkknmafkjgkikclamogikoiaaa\1.0_0\
O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
O2 - BHO: (no name) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - {8664889D-ED18-4713-918F-E2BB69D8452B} - No CLSID value found.
O3 - HKU\S-1-5-21-2843964837-1774224190-1715446536-1000\..\Toolbar\WebBrowser: (no name) - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No CLSID value found.
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} Dostępne tylko dla zarejestrowanych użytkowników (Reg Error: Value error.)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} Dostępne tylko dla zarejestrowanych użytkowników (Java Plug-in 10.13.2)
[2013-02-19 21:59:08 | 000,100,608 | ---- | C] (GMER) -- C:\awdiyfow.sys
[2013-01-29 15:47:15 | 000,000,000 | ---D | C] -- C:\Users\Przemek\AppData\Local\AVG Secure Search
[2013-01-29 15:47:07 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG Secure Search
[2013-01-29 15:47:00 | 000,033,112 | ---- | C] (AVG Technologies) -- C:\Windows\System32\drivers\avgtpx86.sys
[2013-01-29 15:46:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AVG Secure Search
[2013-01-29 15:46:50 | 000,000,000 | ---D | C] -- C:\Program Files\AVG Secure Search
[2013-01-28 16:24:46 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2013-01-28 16:24:46 | 000,000,000 | ---D | C] -- C:\Users\Przemek\AppData\Local\temp
[2011-08-13 22:46:40 | 000,143,240 | ---- | C] (Ask.com) -- C:\Program Files\Common Files\ApnStub.exe
[2011-02-01 19:15:22 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\TuneUp Software
[2013-01-11 13:51:40 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\TuneUp Software
[2013-01-11 13:51:40 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\TuneUp Software
[2012-12-23 22:29:40 | 000,000,000 | ---D | M] -- C:\Users\Guest\AppData\Roaming\AVG2013
[2012-12-14 19:34:49 | 000,000,000 | ---D | M] -- C:\Users\Przemek\AppData\Roaming\AVG2013
@Alternate Data Stream - 508 bytes -> C:\ProgramData\TEMP:05EE1EEF
:Files
C:\Users\Przemek\AppData\Local\Google\Update
C:\Program Files\Google\Update
$RECYCLE.BIN /alldrives
C:\Windows\tasks\*.*
:Reg
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
:Commands
[clearallrestorepoints]
[emptytemp]
Użytkownicy przeglądający to forum: Obecnie na forum nie ma żadnego zarejestrowanego użytkownika i 1 gość