GMER 2.1.19357 - http://www.gmer.net Autostart scan 2014-08-11 15:12:54 Windows 6.1.7601 Service Pack 1 AdobeARMservice@ = "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" avast! Antivirus@ = "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" gupdate@ = "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc nvsvc@ = "C:\Windows\system32\nvvsvc.exe" WMPNetworkSvc@ = "%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe" /*file not found*/ HKCU\Software\Microsoft\Windows\CurrentVersion\Run >>> @OtLandIPChanger"C:\Users\Patryk\Desktop\ipchanger.exe" /tray = "C:\Users\Patryk\Desktop\ipchanger.exe" /tray @DAEMON Tools Lite"D:\DAEMON Tools Lite\DTLite.exe" -autorun = "D:\DAEMON Tools Lite\DTLite.exe" -autorun @uTorrent"C:\Users\Patryk\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED = "C:\Users\Patryk\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad@WebCheck = HKLM\Software\Classes\.hta@ = C:\Windows\SysWOW64\mshta.exe "%1" %* HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved >>> @{472083B0-C522-11CF-8763-00608CC02F24} /*avast*/C:\Program Files\AVAST Software\Avast\ashShA64.dll = C:\Program Files\AVAST Software\Avast\ashShA64.dll @{EBDF1F20-C829-11D1-8233-0020AF3E97A9} /*4shared_Desktop*/(null) = @{E6FB5E20-DE35-11CF-9C87-00AA005127ED} /*WebCheck*/(null) = @{F764812A-132C-4013-9960-5CBBEB408A0E} /*Nero Shell Extension*/(null) = @{A70C977A-BF00-412C-90B7-034C51DA2439} /*NvCpl DesktopContext Class*/C:\Program Files\NVIDIA Corporation\Display\nvui.dll = C:\Program Files\NVIDIA Corporation\Display\nvui.dll @{3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} /*NVIDIA Play On My TV Context Menu Extension*/%SystemRoot%\system32\nvshext.dll = %SystemRoot%\system32\nvshext.dll HKLM\Software\Classes\*\shellex\ContextMenuHandlers\ >>> avast@{472083B0-C522-11CF-8763-00608CC02F24} = C:\Program Files\AVAST Software\Avast\ashShA64.dll WinRAR@{B41DB860-64E4-11D2-9906-E49FADC173CA} = C:\Program Files (x86)\WinRAR\rarext64.dll WinRAR32@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\NvCplDesktopContext@{3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} = %SystemRoot%\system32\nvshext.dll HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\ >>> avast@{472083B0-C522-11CF-8763-00608CC02F24} = C:\Program Files\AVAST Software\Avast\ashShA64.dll WinRAR@{B41DB860-64E4-11D2-9906-E49FADC173CA} = C:\Program Files (x86)\WinRAR\rarext64.dll WinRAR32@{B41DB860-8EE4-11D2-9906-E49FADC173CA} = HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects@{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} = C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32@VIDC.RTV1 = rtvcvfw64.dll HKLM\Software\Microsoft\Internet Explorer\Main >>> @Default_Page_URLhttp://go.microsoft.com/fwlink/?LinkId=69157 = http://go.microsoft.com/fwlink/?LinkId=69157 @Start Pagewww.wp.pl/?src01=dp4 = www.wp.pl/?src01=dp4 @Local PageC:\Windows\System32\blank.htm = C:\Windows\System32\blank.htm HKCU\Software\Microsoft\Internet Explorer\Main >>> @Start Pagehttp://www.wp.pl/?src01=dp4 = http://www.wp.pl/?src01=dp4 @Local PageC:\Windows\system32\blank.htm = C:\Windows\system32\blank.htm HKLM\Software\Classes\PROTOCOLS\Handler\skype4com@CLSID = {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} /*file not found*/ ---- EOF - GMER 2.1 ----