:OTL PRC - [2010-04-21 05:33:44 | 000,061,712 | ---- | M] () – C:\Documents and Settings\All Users\Dane aplikacji\BrowserZinc\browserzinc133.exe PRC - [2010-04-21 05:33:44 | 000,061,712 | ---- | M] () – C:\Program Files\BrowserZinc\browserzinc.exe PRC - [2010-04-14 15:28:04 | 000,401,872 | ---- | M] () – C:\Program Files\Communication Today\1.5.0.2200\InternetToday.exe PRC - [2009-09-01 14:09:36 | 000,516,727 | ---- | M] () – C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\taskmgr.exe MOD - [2010-04-21 05:33:36 | 000,598,016 | ---- | M] () – C:\Program Files\BrowserZinc\browserzinc.dll SRV - [2010-04-21 05:33:44 | 000,061,712 | ---- | M] () [Auto | Running] – C:\Documents and Settings\All Users\Dane aplikacji\BrowserZinc\browserzinc133.exe – (BrowserZinc Service) IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.myideafinder.com FF - prefs.js…browser.search.selectedEngine: “GamezMission Toolbar” FF - prefs.js…browser.startup.homepage: “http://www.theprizeday.com/today.php|http://www.google.pl/” FF - prefs.js…extensions.enabledItems: {E63605FC-D583-4C81-867F-9457BDB3EA1B}:4.5.0.2690 FF - prefs.js…extensions.enabledItems: {8141440E-08F0-4339-9959-5C31C6A69F23}:4.5.0.6190 FF - prefs.js…extensions.enabledItems: {AA1ACB70-B5F1-4037-909E-1F725B04D2A8}:1.5.0.3700 FF - prefs.js…extensions.enabledItems: {E889F097-B0BE-471B-89AD-B86B6F04B506}:4.5.0.2570 FF - prefs.js…extensions.enabledItems: {5909FC3D-7F8B-415d-A5D1-7C7E941E536E}:1.5.0.3710 FF - HKLM\software\mozilla\Firefox\extensions\{E63605FC-D583-4C81-867F-9457BDB3EA1B}: C:\Program Files\Internet Search Helper\4.5.0.2690\FF [2010-04-23 07:10:10 | 000,000,000 | —D | M] FF - HKLM\software\mozilla\Firefox\extensions\{8141440E-08F0-4339-9959-5C31C6A69F23}: C:\Program Files\Remote Access Enhancer\4.5.0.6190\FF [2010-04-23 07:10:20 | 000,000,000 | —D | M] FF - HKLM\software\mozilla\Firefox\extensions\{E889F097-B0BE-471B-89AD-B86B6F04B506}: C:\Program Files\Web Access Controller\4.5.0.2570\FF [2010-04-23 07:10:32 | 000,000,000 | —D | M] FF - HKLM\software\mozilla\Firefox\extensions\{AA1ACB70-B5F1-4037-909E-1F725B04D2A8}: C:\Program Files\Smart Content Wizard\1.5.0.3700\FF [2010-04-23 07:11:10 | 000,000,000 | —D | M] FF - HKLM\software\mozilla\Firefox\extensions\{5909FC3D-7F8B-415d-A5D1-7C7E941E536E}: C:\Program Files\Web Match Enhancer\1.5.0.3710\FF [2010-04-23 07:11:26 | 000,000,000 | —D | M] FF - prefs.js…extensions.enabledItems: {52ED9673-0722-4A1D-B859-959FD56143DC}:1.0 [2010-04-23 07:11:44 | 000,000,000 | —D | M] (BrowserZinc) – C:\Program Files\Mozilla Firefox\extensions{52ED9673-0722-4A1D-B859-959FD56143DC} O2 - BHO: (Remote Access Enhancer) - {1D74E9DD-8987-448b-B2CB-67FFF2B8A932} - C:\Program Files\Remote Access Enhancer\4.5.0.6190\RAEIEAddOn.dll () O2 - BHO: (Web Access Controller) - {42C7C39F-3128-4a17-BDB7-91C46032B5B9} - C:\Program Files\Web Access Controller\4.5.0.2570\WACIEAddOn.dll () O2 - BHO: (no name) - {8664889D-ED18-4713-918F-E2BB69D8452B} - No CLSID value found. O2 - BHO: (Smart Content Wizard) - {B72681C0-A222-4b21-A0E2-53A5A5CA3D41} - C:\Program Files\Smart Content Wizard\1.5.0.3700\SCWIE.dll () O2 - BHO: (Web Match Enhancer) - {CAC89FF9-34A9-4431-8CFE-292A47F843BC} - C:\Program Files\Web Match Enhancer\1.5.0.3710\WMEIE.dll () O2 - BHO: (Internet Search Helper) - {EB4A577D-BCAD-4b1c-8AF2-9A74B8DD3431} - C:\Program Files\Internet Search Helper\4.5.0.2690\ISHIEAddOn.dll () O3 - HKLM…\Toolbar: (no name) - {8664889D-ED18-4713-918F-E2BB69D8452B} - No CLSID value found. O3 - HKCU…\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found. O3 - HKCU…\Toolbar\WebBrowser: (no name) - {D45817B8-3EAD-4D1D-8FCA-EC63A8E35DE2} - No CLSID value found. O4 - HKLM…\Run: [Communication Today Task] C:\Program Files\Communication Today\1.5.0.2200\InternetToday.exe () O4 - HKLM…\Run: [DrvIcon] C:\Program Files\Vista Drive Icon\DrvIcon.exe File not found O4 - Startup: C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\taskmgr.exe () O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - CLSID or File not found. O28 - HKLM ShellExecuteHooks: {BB4C402F-882A-4526-8C08-51278EA437C1} - C:\windows\System32\e8main0.dll File not found [2010-04-23 07:13:54 | 000,000,000 | —D | C] – C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Web Match Enhancer [2010-04-23 07:11:41 | 000,000,000 | —D | C] – C:\Program Files\BrowserZinc [2010-04-23 07:11:41 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Dane aplikacji\BrowserZinc [2010-04-23 07:11:25 | 000,000,000 | —D | C] – C:\Program Files\Web Match Enhancer [2010-04-23 07:11:09 | 000,000,000 | —D | C] – C:\Program Files\Smart Content Wizard [2010-04-23 07:10:52 | 000,000,000 | —D | C] – C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Communication Today [2010-04-23 07:10:49 | 000,000,000 | —D | C] – C:\Program Files\Communication Today [2010-04-23 07:10:34 | 000,000,000 | —D | C] – C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Web Access Controller [2010-04-23 07:10:31 | 000,000,000 | —D | C] – C:\Program Files\Web Access Controller [2010-04-23 07:10:22 | 000,000,000 | —D | C] – C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Remote Access Enhancer [2010-04-23 07:10:20 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Remote Access Enhancer [2010-04-23 07:10:19 | 000,000,000 | —D | C] – C:\Program Files\Remote Access Enhancer [2010-04-23 07:10:10 | 000,000,000 | —D | C] – C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Internet Search Helper [2010-04-23 07:10:09 | 000,000,000 | —D | C] – C:\Program Files\Internet Search Helper [2010-04-23 07:09:23 | 000,000,000 | —D | C] – C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\GamezMission Toolbar [2010-04-13 06:51:30 | 000,293,376 | ---- | C] (Microsoft Corporation) – C:\windows\System32\browserchoice.exe :Reg [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] “C:\Program Files\Nowe Gadu-Gadu\gg.exe”=- “C:\Program Files\eMule\eMule.exe”=- “D:\Metin2\metin2.bin”=- “D:\Metin2\metin2client.bin”=- “D:\Metin2\Zzyt2_by_QBA_96.exe”=- “C:\metin2\Metin2Mod.bin”=- “C:\metin2\metin_dxyt2.exe”=- “C:\metin2\metin2.bin”=- “C:\metin2\metin2client.bin”=- “C:\newlongju\mc.exe”=- “C:\metin222\NagasMt2.exe”=- “C:\metin2222\FunMT2PL-by-nycormen.exe”=- “C:\metin22222\123wulin_by_Mroczny.exe”=- “C:\metin22222\Metin2Mod.bin”=- “D:\met\123wulin_by_Mroczny.exe”=- “D:\Metin2\metin_ddmt2.exe”=- “C:\metin222\TmYT2_spol_by_Lost.exe”=- “C:\metin222\123wulin_up_by_MrC.exe”=- “D:\Metin2\metin_zzyt2.exe”=- “D:\met\123wulin_up_by_creative442.exe”=- “D:\metde\FunMt2_Ita_De_Pl_launcher.exe”=- “D:\metde\metin_mymetin2s3.exe”=- “D:\metde\UltimateLongju2_Spol_By_Lost.exe”=- “D:\metde\94btlongju_Spol_by_Lost.exe”=- “C:\Program Files\Electronic Arts\EADM\Core.exe”=- “D:\SecondLifeViewer2\SLVoice.exe”=- :Commands [emptytemp] [start explorer] [Reboot]