sprawdzenie loga z OTL

Wszystko co dotyczy bezpieczeństwa systemów oraz walki z malware, w szczególności analiza logów
hebros

Użytkownik
Posty: 2
Rejestracja: 03 lis 2011, 16:23

sprawdzenie loga z OTL

Post03 lis 2011, 16:52

Witam.
Mam prośbę - proszę o sprawdzenie log'a z OTL'a

Dostępne tylko dla zarejestrowanych użytkowników

Z góry wielkie dzięki

filutka78

Użytkownik
Posty: 1485
Rejestracja: 28 sty 2009, 17:40

sprawdzenie loga z OTL

Post03 lis 2011, 19:08

Nie widzę tu żadnej infekcji.

Kosmetyka:
Uruchom OTL i w oknie Własne opcje skanowania/Script wklej to:
:OTL
[2011-11-03 08:24:57 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{10222315-95B3-40EF-923F-8154DA3D37B5}
[2011-11-03 07:22:26 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{BFA602BE-CB92-43A4-B6E0-3CA6837166C4}
[2011-11-02 15:26:11 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{AE4BFF3F-9F75-4A17-A7C1-71CAECEBB5B7}
[2011-11-01 18:34:10 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{CD7C748B-0F77-4CD2-961D-971807870C55}
[2011-11-01 18:33:36 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{D4D51200-8982-4FAD-9440-6C96275AF74F}
[2011-11-01 16:26:53 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{C3056E39-B317-4722-97C8-9C9B7A2BF392}
[2011-11-01 12:59:34 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{F7E008B6-0667-4C07-B517-035583A47157}
[2011-11-01 10:47:39 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{4604C14E-E937-4B93-93C1-C95CF7221169}
[2011-10-31 18:57:05 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{BDC690CC-C355-4B02-8419-53D3F3AF5067}
[2011-10-31 18:12:20 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{331E1C85-102A-49FF-B6B9-623DDCD51518}
[2011-10-31 16:01:30 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{54E36A96-7E83-4DD0-B7DA-1A7BB6B2CCC8}
[2011-10-31 15:06:52 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{12E32FAE-3AA2-4D48-BC45-BD7CD36A784C}
[2011-10-31 13:33:17 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{77944E5D-FE0D-4A61-96C6-A2C2DC3FE828}
[2011-10-31 13:32:50 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{C7476508-A677-4C3E-815E-D7475DF43FC6}
[2011-10-31 10:30:04 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{6F9954B5-20F3-43AC-B58C-29467DC67EAD}
[2011-10-31 08:52:14 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{DD07B43F-583B-4DFC-8051-47B695416B30}
[2011-10-31 07:15:07 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{4D459722-DC62-45ED-991A-8FD60D10152E}
[2011-10-30 21:03:28 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{18F9EC80-ED79-49ED-B014-4A5946C7B16D}
[2011-10-30 20:30:47 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{6CAC3D53-BA2B-414C-8951-7CC10DC142C1}
[2011-10-30 12:03:06 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{2AA0E3C4-4F22-41C0-A2FE-02190D312866}
[2011-10-30 11:16:11 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{D184B725-4465-4F24-9CA4-58F703633B57}
[2011-10-29 17:01:26 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{6B9018FF-38E0-40E5-94E7-D9301F159A99}
[2011-10-29 16:59:58 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{548FE705-1386-4FF1-B248-944D583B03B0}
[2011-10-29 10:57:46 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{035768FC-7E1D-4753-93EF-69B926416EB9}
[2011-10-29 10:56:57 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{512ED691-28ED-44AF-AC22-5689F72DEA65}
[2011-10-28 10:21:48 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{DFCEE146-0C30-4AED-9BF7-FD8C4BDA416A}
[2011-10-28 10:20:53 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{E71AA6DA-BD5D-4268-82DA-FECCA897D6E2}
[2011-10-28 09:35:57 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{97843149-6BC6-4656-8BD8-0DF1FF59B9E2}
[2011-10-28 07:09:16 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{84382F1A-C74A-4526-BAAB-479506B02A00}
[2011-10-27 12:59:25 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{99CAF004-F3D1-45A9-834C-B28B9B377E68}
[2011-10-26 15:53:00 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{1A427092-CA18-4C7D-9584-E5395D7FF8C9}
[2011-10-26 13:53:37 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{AD20A7A7-6CFB-475F-85E0-D7DCA226D5FC}
[2011-10-25 18:46:32 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{84FD67EC-771E-458C-98B4-CE6015F66F0C}
[2011-10-25 14:49:24 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{93D63156-2FCF-4EF7-96A2-856114B19E47}
[2011-10-25 14:27:30 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{2A78EE0C-0B5C-4FE8-B7EB-FA94075DB83F}
[2011-10-25 12:13:51 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{7DC68A7F-6030-4845-BF65-046A9E079AE9}
[2011-10-24 19:17:29 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{58A2620C-5852-4115-8FEF-6A5DD4985482}
[2011-10-24 13:10:41 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{8F1F9107-7A04-41E4-BF09-D51D5AC5C5EA}
[2011-10-24 13:09:56 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{BBB03ECA-7AD4-443D-A082-DCB86616517E}
[2011-10-23 20:09:56 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{9B29050D-6154-456F-81F5-4B2F4419651A}
[2011-10-23 18:29:00 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{5CBD381F-E3D6-4C22-8ED4-1AD1545ED22C}
[2011-10-23 14:27:51 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{53B878E6-2096-410E-B8C9-4E8045D92683}
[2011-10-23 10:32:42 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{9D6E909C-68DC-49A4-BA0B-D024F437D3D8}
[2011-10-22 17:55:47 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{11C903EF-1C26-4D3B-BBDD-EF7E62737869}
[2011-10-22 10:57:58 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{B5D45393-A0A3-41F0-9628-72CF8FF6F01D}
[2011-10-21 20:00:24 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{0369170A-03FA-41CA-A660-49EF1C90F9B9}
[2011-10-21 15:51:23 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{088EEAA3-A322-483B-94DC-1470D5ADFC9F}
[2011-10-21 11:56:29 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{ECCE73A2-7EF1-4F68-8BDF-8F84586685A7}
[2011-10-20 15:39:14 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{BEB0FDD2-EDEC-4567-91C9-5617F78F66C4}
[2011-10-19 19:58:00 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{D2FFD56C-521B-494D-A9AA-3FDB38D330DD}
[2011-10-19 15:19:59 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{DB454515-1A4D-4EDB-B5D0-5AD79A96790F}
[2011-10-18 12:17:52 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{4AC17FDA-0E55-4430-96C2-6B907DB9009C}
[2011-10-17 12:56:45 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{7215A530-B106-457B-B17C-5C7362190B77}
[2011-10-16 13:50:30 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{5CE50B8F-1A2B-4165-8685-5E7F89650183}
[2011-10-16 12:19:12 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{33C294EB-2F60-43B1-90F8-8AF3395B278D}
[2011-10-16 08:55:44 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{606B42D0-E4F0-414D-9CD6-5519DB1BA023}
[2011-10-15 16:16:38 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{C6A36960-BB6B-4DE6-A926-98CDE1DA4000}
[2011-10-15 09:25:52 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{2326844E-3DC8-47AB-BC48-677CE39E9B33}
[2011-10-14 16:59:17 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{6556AB56-3989-4685-B8E7-1677D469C142}
[2011-10-14 14:08:01 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{F3F9C8E1-29A0-4156-A577-8037A1523439}
[2011-10-14 10:32:38 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{04C9C16B-2493-466B-9B25-920D29B2699F}
[2011-10-13 18:20:44 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{DC819A52-4546-4FFF-9568-3D6F6FC19C4F}
[2011-10-13 14:35:44 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{58BC2107-2490-4DB9-B7E1-DC7F6FCD3C98}
[2011-10-13 12:13:52 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{C0319C80-C203-47C4-8F44-2796984BF039}
[2011-10-12 14:20:43 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{E6EE3171-FED2-4AF4-A527-B1ED69809B3E}
[2011-10-11 19:46:56 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{409E8232-EE47-48AF-87AB-A9F0C28B0C58}
[2011-10-11 18:43:19 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{2B0BB658-866F-4D17-8741-73E1AEDCE27B}
[2011-10-11 13:27:07 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{F3EC59E9-0706-4EE7-93D3-BA871071C84F}
[2011-10-11 11:59:00 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{A0C443A6-CA48-47A2-AA54-53B0E8181CB8}
[2011-10-10 20:09:21 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{89738300-C936-4E3D-A502-726597141E35}
[2011-10-10 19:10:44 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{08B8F44B-6660-46B5-8393-AD947E6A1038}
[2011-10-10 16:03:12 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{A1A4E785-4BCA-4E49-99E4-FBC78A78A6AE}
[2011-10-10 12:56:09 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{C4234B8E-6FFF-4320-AD40-BC763DB39775}
[2011-10-09 15:22:47 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{5050408F-218D-4C25-BEB8-2B2015CC5704}
[2011-10-09 09:22:10 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{EC6C6C35-35E8-4D6A-85E4-B135FD83133C}
[2011-10-08 19:21:55 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{82EB0BEA-24BD-4B63-99FF-79F6D27850EE}
[2011-10-08 19:07:54 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{8B3DD6D5-A8FB-4BD7-B3F0-952DFC47C2BB}
[2011-10-08 18:32:01 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{03B33A36-ACBF-4847-9B89-FF50FDAEAC39}
[2011-10-08 16:50:02 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{DC7A642C-F75D-4E24-BE72-D8A04BD1800B}
[2011-10-08 16:32:09 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{11F29AA0-A612-48F7-9842-B2B3182E8AA6}
[2011-10-08 13:29:05 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{597C77AC-43A8-403C-96E0-614CED15ACB8}
[2011-10-08 12:08:16 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{BF7E4D02-4F6B-4C8E-99EF-138F5522CEB4}
[2011-10-08 06:07:21 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{7D2130BD-3AFF-4028-A9CA-F5F678D52242}
[2011-10-07 19:19:05 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{99CCCE38-002E-4D14-9CCE-AF1893B4E14F}
[2011-10-07 18:34:03 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{D1FC8725-C78F-4D28-B218-87677E8DAEA7}
[2011-10-07 15:33:45 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{3BACD544-BB54-42F6-AB0B-09B626F9AF9F}
[2011-10-07 11:56:03 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{B3A4E2B5-3B16-4A03-BF43-1FB697FFF5C7}
[2011-10-06 15:49:06 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{6D11AB17-1554-4179-A110-E42A5E0005B7}
[2011-10-06 13:10:31 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{1D838CE8-7E74-49B2-8F9D-663EB04A1168}
[2011-10-06 07:30:09 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{ABF49BFF-61B4-4EE1-976E-E159CF4976E9}
[2011-10-05 14:17:44 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{C618C611-9E49-4A98-8EFB-B23421D88913}
[2011-10-05 13:52:20 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{2385C126-2E67-4DC2-88D7-DF181AE35A4E}
[2011-10-05 13:42:04 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{A52C5231-20B2-4EF5-97D6-8FB8BF92C3B8}
[2011-10-04 18:43:59 | 000,000,000 | ---D | C] -- C:\Users\Albina\AppData\Local\{42FE47CF-6DD3-4526-ACCB-D0C13BADEBA7}


:Files
C:\Users\Albina\AppData\Local\Temp*.html

:Commands
[emptyflash]
[emptytemp]


Kliknij w Wykonaj Script. Zatwierdź restart komputera. Zapisz raport, który pokaże się po restarcie.

F.

hebros

Użytkownik
Posty: 2
Rejestracja: 03 lis 2011, 16:23

sprawdzenie loga z OTL

Post03 lis 2011, 20:00

OK!
Dzięki - Bogdan



  • Reklama

Wróć do „Bezpieczeństwo”



Kto jest online

Użytkownicy przeglądający to forum: Obecnie na forum nie ma żadnego zarejestrowanego użytkownika i 6 gości