CloseProcesses:
R1 ppfd_vt_1_10_0_22; C:\Windows\System32\drivers\ppfd_vt_1_10_0_22.sys [56464 2015-08-14] (PhraseProfessor)
C:\Windows\System32\drivers\ppfd_vt_1_10_0_22.sys
R2 ppsvc_1.10.0.22; C:\Program Files\PhraseProfessor_1.10.0.22\Service\ppsvc.exe [300128 2015-08-14] (PhraseProfessor)
C:\Program Files\PhraseProfessor_1.10.0.22
StartMenuInternet: Google Chrome - C:\Program Files\Google\Chrome\Application\chrome.exe
Dostępne tylko dla zarejestrowanych użytkownikówCHR HKLM\...\Chrome\Extension: [fcgnigmofekcllgbiejhmigggmgehkip] -
Dostępne tylko dla zarejestrowanych użytkownikówFF SearchPlugin: C:\Users\ASl_Kaida\AppData\Roaming\Mozilla\Firefox\Profiles\79blbkwu.default-1438874466173\searchplugins\oursurfing.xml [2015-08-31]
FF Extension: Default SearchProtected - C:\Users\ASl_Kaida\AppData\Roaming\Mozilla\Firefox\Profiles\79blbkwu.default-1438874466173\Extensions\defsearchp@gmail.com [2015-08-31]
FF Extension: deskCut - C:\Users\ASl_Kaida\AppData\Roaming\Mozilla\Firefox\Profiles\79blbkwu.default-1438874466173\Extensions\deskCutv2@gmail.com [2015-08-31]
FF HKLM\...\Firefox\Extensions: [defsearchp@gmail.com] - C:\Users\ASl_Kaida\AppData\Roaming\Mozilla\Firefox\Profiles\79blbkwu.default-1438874466173\extensions\defsearchp@gmail.com
FF HKLM\...\Firefox\Extensions: [deskCutv2@gmail.com] - C:\Users\ASl_Kaida\AppData\Roaming\Mozilla\Firefox\Profiles\79blbkwu.default-1438874466173\extensions\deskCutv2@gmail.com
StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe
hxxp://www.oursurfing.com/?type=sc&ts=1 ... 8431884318FF NewTab: chrome://quick_start/content/index.html
FF DefaultSearchEngine: oursurfing
FF SelectedSearchEngine: oursurfing
FF Homepage:
hxxp://www.oursurfing.com/?type=hp&ts=1 ... 8431884318StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe
hxxp://www.oursurfing.com/?type=sc&ts=1 ... 8431884318HKLM\...\Run: [gmsd_pl_006010071] => [X]
2015-08-31 09:34 - 2015-08-31 09:34 - 00000000 ____D C:\Users\ASl_Kaida\AppData\Roaming\oursurfing
2015-08-31 09:33 - 2015-08-31 09:33 - 00000000 ____D C:\Program Files\predm
2015-08-31 09:33 - 2015-08-31 09:33 - 00000000 ____D C:\Program Files\PhraseProfessor_1.10.0.22
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\Users\Public\Documents\ShopperPro
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\Users\Public\Documents\Goobzo
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\Program Files\YouTube Accelerator
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\Program Files\ShopperPro
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\Program Files\SensePlus
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\Program Files\iWebar
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\Program Files\globalUpdate
2015-08-26 12:21 - 2015-08-26 12:21 - 00000000 ____D C:\Program Files\Common Files\ShopperPro
2015-08-26 10:18 - 2015-08-31 10:18 - 00005834 _____ C:\Windows\Tasks\f275d25a-bfc7-462a-810a-a01336c419ca-6.job
2015-08-26 10:18 - 2015-08-31 10:18 - 00005490 _____ C:\Windows\Tasks\f275d25a-bfc7-462a-810a-a01336c419ca-7.job
2015-08-26 10:18 - 2015-08-31 10:18 - 00005484 _____ C:\Windows\Tasks\9a0a63ae-bbc7-4989-bf80-0a31a706b5d8-7.job
2015-08-26 10:18 - 2015-08-31 09:59 - 00000894 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-08-26 10:18 - 2015-08-30 22:23 - 00000904 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-08-26 10:18 - 2015-08-26 10:18 - 00005732 _____ C:\Windows\Tasks\9a0a63ae-bbc7-4989-bf80-0a31a706b5d8-6.job
2015-08-26 10:18 - 2015-08-26 10:18 - 00000000 ____D C:\Program Files\e937cf68-8f18-44a2-b8c9-8f4e7315c1bb
2015-08-26 10:18 - 2015-08-26 10:18 - 00000000 ____D C:\Program Files\62f8b73b-e09f-47b8-badd-9a4e5bf4297b
2015-08-26 10:17 - 2015-08-26 10:17 - 00172032 _____ (Jin Hui E-mail:
jinhui@jcomsoft.com Web:
Dostępne tylko dla zarejestrowanych użytkowników) C:\Windows\system32\AniGIF.ocx
2015-08-26 10:17 - 2015-08-26 10:17 - 00001104 _____ C:\Users\ASl_Kaida\Desktop\YouTube Accelerator.lnk
2015-08-26 10:16 - 2015-08-26 10:16 - 00000000 ____D C:\Users\ASl_Kaida\AppData\Local\CrashRpt
2015-08-20 20:00 - 2015-08-20 20:00 - 0057344 _____ () C:\Users\ASl_Kaida\AppData\Local\Lasantouch.exe
2015-08-20 20:00 - 2015-08-20 20:00 - 0000187 _____ () C:\Users\ASl_Kaida\AppData\Local\Lasantouch.exe.config
ATTENTION: ==> Could not access BCD.
CMD: netsh winsock reset
EmptyTemp: