Psycholandia komentarz 22 października 2009 komentarz 22 października 2009 [quote]Dobra to z C usunęło ale w hijackthis znajduje jeszcze jeden plik z tym svchost.exe[/quote] W okienko OTL wklej poniższy skrypt i klik na Run Fix: [code]:Processes explorer.exe :OTL O23 - Service: Power Manager (PowerManager) - Unknown owner - C:\WINDOWS\svchost.exe (file missing) :Commands [emptytemp] [start explorer] [Reboot][/code]
dawidafc komentarz 22 października 2009 Autor komentarz 22 października 2009 (edytowane) Czy już jest wszystko dobrze z komputerem ? Dać jeszcze log jakiegoś programu ?[log]All processes killed ========== PROCESSES ========== Process explorer.exe killed successfully! ========== OTL ========== ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: All Users.WINDOWS User: Arsenal ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Google Chrome cache emptied: 0 bytes User: bnmnm ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: dawid File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Temp\etilqs_u19SuSv9RjbAoMldg22E scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Temp\Perflib_Perfdata_f64.dat scheduled to be deleted on reboot. ->Temp folder emptied: 604042 bytes File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Temporary Internet Files\Content.IE5\E3GZG7OP\getUserHabit[1].action scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Temporary Internet Files\Content.IE5\E3GZG7OP\info[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot. ->Temporary Internet Files folder emptied: 61919 bytes File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\Cache\_CACHE_001_ scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\Cache\_CACHE_002_ scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\Cache\_CACHE_003_ scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\Cache\_CACHE_MAP_ scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\urlclassifier3.sqlite scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\XUL.mfl scheduled to be deleted on reboot. ->FireFox cache emptied: 45547163 bytes User: Dawidd ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User.WINDOWS ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: LocalService.ZARZĄDZANIE NT ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: LocalService.ZARZĄDZANIE NT.000 ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: LocalService.ZARZĄDZANIE NT.001 ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: LocalService.ZARZĄDZANIE NT.002 ->Temp folder emptied: 0 bytes File delete failed. C:\Documents and Settings\LocalService.ZARZĄDZANIE NT.002\Ustawienia lokalne\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot. ->Temporary Internet Files folder emptied: 32902 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: NetworkService.ZARZĄDZANIE NT ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: NetworkService.ZARZĄDZANIE NT.000 ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: NetworkService.ZARZĄDZANIE NT.001 ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: NetworkService.ZARZĄDZANIE NT.002 ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 44,10 mb OTL by OldTimer - Version 3.0.21.0 log created on 10222009_192334 Files\Folders moved on Reboot... File\Folder C:\Documents and Settings\dawid\Ustawienia lokalne\Temp\etilqs_u19SuSv9RjbAoMldg22E not found! File\Folder C:\Documents and Settings\dawid\Ustawienia lokalne\Temp\Perflib_Perfdata_f64.dat not found! C:\Documents and Settings\dawid\Ustawienia lokalne\Temporary Internet Files\Content.IE5\E3GZG7OP\getUserHabit[1].action moved successfully. C:\Documents and Settings\dawid\Ustawienia lokalne\Temporary Internet Files\Content.IE5\E3GZG7OP\info[1].htm moved successfully. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\Cache\_CACHE_001_ moved successfully. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\Cache\_CACHE_002_ moved successfully. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\Cache\_CACHE_003_ moved successfully. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\Cache\_CACHE_MAP_ moved successfully. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\urlclassifier3.sqlite moved successfully. C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\ywv0iu65.default\XUL.mfl moved successfully. Registry entries deleted on Reboot...[/log]? Edytowane 22 października 2009 przez dawidafc
dawidafc komentarz 22 października 2009 Autor komentarz 22 października 2009 [log]OTL logfile created on: 2009-10-22 21:46:18 - Run 6 OTL by OldTimer - Version 3.0.21.0 Folder = C:\Documents and Settings\dawid\Moje dokumenty Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 0,60 Gb Available Physical Memory | 30,06% Memory free 3,85 Gb Paging File | 2,36 Gb Available in Paging File | 61,30% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 24,41 Gb Total Space | 12,01 Gb Free Space | 49,21% Space Free | Partition Type: NTFS D: Drive not present or media not loaded Drive E: | 104,23 Gb Total Space | 44,72 Gb Free Space | 42,91% Space Free | Partition Type: NTFS Drive F: | 104,23 Gb Total Space | 22,18 Gb Free Space | 21,28% Space Free | Partition Type: NTFS Drive G: | 7,02 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: FF Current User Name: dawid Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2009-10-21 17:59:51 | 00,521,216 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dawid\Moje dokumenty\OTL.exe PRC - [2009-09-25 14:59:32 | 00,906,544 | ---- | M] (UUSEE) -- C:\Program Files\Common Files\uusee\UUSeeMediaCenter.exe PRC - [2009-09-14 20:13:19 | 00,307,704 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2009-08-31 18:07:34 | 11,391,592 | ---- | M] (GG Network S.A.) -- C:\Program Files\Nowe Gadu-Gadu\gg.exe PRC - [2009-08-31 16:56:26 | 00,077,824 | ---- | M] () -- C:\Program Files\Nowe Gadu-Gadu\spellchecker_gg.exe PRC - [2009-08-23 00:22:28 | 00,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe PRC - [2008-04-14 19:21:50 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wscntfy.exe PRC - [2008-04-14 19:21:16 | 00,977,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE PRC - [2008-04-01 20:50:32 | 01,307,648 | ---- | M] (Nullsoft) -- C:\Program Files\Winamp\winamp.exe PRC - [2008-04-01 20:49:42 | 00,036,352 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe PRC - [2007-05-11 00:03:00 | 00,163,908 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc32.exe PRC - [2007-04-12 11:33:10 | 16,132,608 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE PRC - [2006-12-23 18:05:20 | 00,143,360 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe PRC - [2006-12-23 17:54:04 | 00,262,144 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe PRC - [2006-05-21 09:43:14 | 00,155,648 | ---- | M] (Y'z@Home) -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe PRC - [2006-05-21 09:43:08 | 00,180,224 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe PRC - [2005-04-02 03:51:48 | 00,217,600 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe PRC - [2005-01-28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2009-08-19 05:14:00 | 03,401,976 | ---- | M] (INCA Internet Co., Ltd.) -- C:\WINDOWS\System32\GameMon.des -- (npggsvc [On_Demand | Stopped]) SRV - [2008-04-14 19:20:44 | 00,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running]) SRV - [2007-05-11 00:03:00 | 00,163,908 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc32.exe -- (NVSvc [Auto | Running]) SRV - [2007-01-05 13:41:10 | 00,774,144 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService [On_Demand | Stopped]) SRV - [2006-12-23 17:54:04 | 00,262,144 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -- (NMIndexingService [On_Demand | Running]) SRV - [2006-10-26 19:49:34 | 00,441,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv [On_Demand | Stopped]) SRV - [2006-10-26 13:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped]) SRV - [2005-04-02 03:51:48 | 00,217,600 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe -- (StarWindService [Auto | Running]) SRV - [2005-01-28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe -- (UMWdf [Auto | Running]) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2009-08-23 00:44:56 | 00,639,224 | ---- | M] () -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd [Boot | Running]) DRV - [2009-08-22 21:11:20 | 00,015,600 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\gdrv.sys -- (gdrv [On_Demand | Stopped]) DRV - [2008-04-13 18:39:16 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys -- (Secdrv [On_Demand | Stopped]) DRV - [2008-04-13 18:36:05 | 00,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\System32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running]) DRV - [2007-05-11 00:03:00 | 06,738,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\DRIVERS\nv4_mini.sys -- (nv [On_Demand | Running]) DRV - [2007-04-23 12:12:28 | 04,402,176 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys -- (IntcAzAudAddService [On_Demand | Running]) DRV - [2007-03-08 01:51:00 | 00,043,528 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys -- (PxHelp20 [Boot | Running]) DRV - [2007-03-01 10:05:38 | 00,090,496 | R--- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys -- (RTLE8023xp [On_Demand | Running]) DRV - [2007-01-16 13:52:20 | 00,017,664 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\WINDOWS\System32\Drivers\ZDPSp50.sys -- (ZDPSp50 [On_Demand | Running]) DRV - [2007-01-10 10:14:34 | 00,450,560 | ---- | M] (ZyDAS Technology Corporation) -- C:\WINDOWS\System32\DRIVERS\WlanBZXP.sys -- (SG762_XP [On_Demand | Stopped]) DRV - [2006-03-02 14:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running]) DRV - [2005-01-04 20:43:08 | 00,004,682 | ---- | M] (INCA Internet Co., Ltd.) -- C:\WINDOWS\System32\npptNT2.sys -- (NPPTNT2 [On_Demand | Running]) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.selectedEngine: "Wikipedia (pl)" FF - prefs.js..extensions.enabledItems: firefox@tvunetworks.com:2 FF - prefs.js..extensions.enabledItems: 4 FF - prefs.js..extensions.enabledItems: 8 FF - prefs.js..extensions.enabledItems: 1 FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.14 FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Program Files\Real\RealPlayer\browserrecord [2009-08-23 00:22:35 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.14\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009-09-17 15:30:52 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.14\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009-09-14 20:13:22 | 00,000,000 | ---D | M] [2009-08-22 22:33:05 | 00,000,000 | ---D | M] -- C:\Documents and Settings\dawid\Dane aplikacji\mozilla\Extensions [2009-08-22 22:33:05 | 00,000,000 | ---D | M] -- C:\Documents and Settings\dawid\Dane aplikacji\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2009-10-22 16:12:46 | 00,000,000 | ---D | M] -- C:\Documents and Settings\dawid\Dane aplikacji\mozilla\Firefox\Profiles\ywv0iu65.default\extensions [2009-09-16 20:56:32 | 00,000,000 | ---D | M] -- C:\Documents and Settings\dawid\Dane aplikacji\mozilla\Firefox\Profiles\ywv0iu65.default\extensions\firefox@tvunetworks.com [2009-08-23 00:54:32 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions [2009-09-14 20:13:22 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2009-09-14 20:13:18 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll [2009-09-14 20:13:19 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll [2009-09-14 20:13:19 | 00,065,528 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll [2006-10-26 20:12:16 | 00,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL [2009-02-27 12:13:42 | 00,103,792 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2009-08-23 00:22:33 | 00,144,960 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nppl3260.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-08-23 00:22:38 | 00,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nprjplug.dll [2009-08-23 00:22:31 | 00,094,208 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nprpjplug.dll [2009-08-24 16:02:26 | 00,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2009-08-24 16:02:26 | 00,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2009-08-24 16:02:26 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml [2009-08-24 16:02:26 | 00,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2009-08-24 16:02:26 | 00,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2009-08-24 16:02:26 | 00,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2009-08-24 16:02:26 | 00,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: (27 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Documents and Settings\dawid\Dane aplikacji\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.) O4 - HKLM..\Run: [UUSeeMediaCenter] C:\Program Files\Common Files\uusee\UUSeeMediaCenter.exe (UUSEE) O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe () O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG) O4 - HKCU..\Run: [IPLA!] C:\Program Files\ipla\ipla.exe (Redefine Sp z o.o.) O4 - Startup: C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Autostart\Program sieciowy dla SAGEM Wi-Fi 11g USB adapter.lnk = C:\Program Files\SAGEM WiFi manager\WLANUTL.exe ( ) O4 - Startup: C:\Documents and Settings\dawid\Menu Start\Programy\Autostart\TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe (AKSoftware) O4 - Startup: C:\Documents and Settings\dawid\Menu Start\Programy\Autostart\UberIcon.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe () O4 - Startup: C:\Documents and Settings\dawid\Menu Start\Programy\Autostart\Y'z Shadow.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe (Y'z@Home) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation) O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone. O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ipp - No CLSID value found O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Filter: - text/xml - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2007-10-26 19:22:37 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-09-09 06:11:10 | 00,419,088 | R--- | M] (Electronic Arts) - G:\AutoRun.exe -- [ UDF ] O32 - AutoRun File - [2009-09-09 06:11:10 | 00,419,088 | R--- | M] (Electronic Arts) - G:\Autorun.exe -- [ UDF ] O32 - AutoRun File - [2009-09-09 06:11:08 | 11,369,984 | R--- | M] () - G:\autorun.dat -- [ UDF ] O32 - AutoRun File - [2009-09-09 05:48:56 | 00,000,136 | R--- | M] () - G:\autorun.inf -- [ UDF ] O34 - HKLM BootExecute: (autocheck) - File not found O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation) O34 - HKLM BootExecute: (*) - File not found O35 - comfile [open] -- "%1" %* File not found O35 - exefile [open] -- "%1" %* File not found [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2009-10-17 15:53:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Dane aplikacji\StreamTorrent [2009-10-22 21:25:58 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Dane aplikacji\Winamp [2009-10-21 16:06:24 | 00,000,000 | ---D | C] -- C:\Program Files\San Andreas Mod Installer [2009-10-22 21:25:58 | 00,000,000 | ---D | C] -- C:\Program Files\Winamp [2009-10-22 19:02:44 | 00,000,000 | ---D | C] -- C:\WINDOWS\temp [2009-10-22 18:59:17 | 00,000,000 | ---D | C] -- C:\ComboFix [2009-10-22 15:58:59 | 00,000,000 | ---D | C] -- C:\!KillBox [2009-10-22 15:58:48 | 00,092,672 | ---- | C] (Option^Explicit Software vbtechcd@gmail.com) -- C:\Documents and Settings\dawid\Moje dokumenty\KillBox.exe [2009-10-22 15:53:55 | 00,033,280 | ---- | C] (iSergiwa Software - www.sergiwa.com) -- C:\Documents and Settings\dawid\Moje dokumenty\PRT.exe [2009-10-21 21:41:17 | 00,000,000 | ---D | C] -- C:\Avenger [2009-10-21 19:43:14 | 00,000,000 | RHSD | C] -- C:\cmdcons [2009-10-21 19:42:01 | 00,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2009-10-21 19:42:01 | 00,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2009-10-21 19:42:01 | 00,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2009-10-21 19:42:01 | 00,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2009-10-21 19:41:53 | 00,000,000 | ---D | C] -- C:\Qoobox [2009-10-21 18:46:03 | 00,000,000 | ---D | C] -- C:\_OTL [2009-10-21 17:59:49 | 00,521,216 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\dawid\Moje dokumenty\OTL.exe [2009-10-21 16:06:24 | 00,000,000 | ---D | C] -- C:\WINDOWS\San Andreas Mod Installer [2009-10-21 15:13:59 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Moje dokumenty\GTA San Andreas User Files [2009-10-17 18:20:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Moje dokumenty\DATA [2009-10-06 16:36:48 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Moje dokumenty\FIFA 10 [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2009-10-22 21:26:10 | 00,000,664 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Pulpit\Winamp.lnk [2009-10-22 19:25:07 | 00,000,204 | ---- | M] () -- C:\WINDOWS\struct~.ini [2009-10-22 19:24:30 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2009-10-22 19:24:29 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2009-10-22 19:01:50 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini [2009-10-22 18:52:16 | 00,966,656 | ---- | M] (Nero AG) -- C:\WINDOWS\UNNeroBackItUp.exe [2009-10-22 18:52:16 | 00,293,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\WISPTIS.EXE [2009-10-22 18:52:14 | 00,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\PhysXCplUI.exe [2009-10-22 18:52:13 | 01,339,392 | ---- | M] () -- C:\WINDOWS\System32\nvdspsch.exe [2009-10-22 18:52:13 | 00,745,472 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcplui.exe [2009-10-22 18:52:13 | 00,356,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\NVUNINST.EXE [2009-10-22 18:52:13 | 00,356,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvudisp.exe [2009-10-22 18:52:13 | 00,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\PhysXCompatCplUI.exe [2009-10-22 18:52:13 | 00,143,360 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcolor.exe [2009-10-22 18:52:12 | 00,442,368 | ---- | M] () -- C:\WINDOWS\System32\nvappbar.exe [2009-10-22 18:52:12 | 00,425,984 | ---- | M] () -- C:\WINDOWS\System32\keystone.exe [2009-10-22 18:51:55 | 02,157,568 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\MicCal.exe [2009-10-22 18:51:55 | 01,191,936 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RtlUpd.exe [2009-10-22 18:51:54 | 00,315,392 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\HideWin.exe [2009-10-22 18:45:21 | 00,075,776 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\jeefogui.com [2009-10-22 15:58:49 | 00,092,672 | ---- | M] (Option^Explicit Software vbtechcd@gmail.com) -- C:\Documents and Settings\dawid\Moje dokumenty\KillBox.exe [2009-10-22 15:53:55 | 00,033,280 | ---- | M] (iSergiwa Software - www.sergiwa.com) -- C:\Documents and Settings\dawid\Moje dokumenty\PRT.exe [2009-10-22 00:33:42 | 00,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2009-10-21 21:40:04 | 00,724,952 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\avenger.zip [2009-10-21 19:43:17 | 00,000,281 | RHS- | M] () -- C:\boot.ini [2009-10-21 19:41:36 | 03,351,153 | R--- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\ComboFix.exe [2009-10-21 18:50:41 | 00,000,126 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\Fix.reg [2009-10-21 17:59:51 | 00,521,216 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dawid\Moje dokumenty\OTL.exe [2009-10-21 16:57:40 | 00,355,830 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2009-10-21 16:57:40 | 00,311,740 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2009-10-21 16:57:40 | 00,049,712 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2009-10-21 16:57:40 | 00,040,128 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2009-10-21 16:19:38 | 00,827,262 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2009-10-21 15:28:38 | 00,048,640 | ---- | M] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-10-21 14:59:41 | 00,000,501 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Pulpit\GTA San Andreas.lnk [2009-10-20 01:00:16 | 04,763,140 | -H-- | M] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-10-19 17:07:26 | 06,463,770 | ---- | M] () -- C:\Documents and Settings\dawid\Pulpit\andy la toggo - electronic pleasure (original mix).mp3.mp3 [2009-10-19 16:20:18 | 00,010,755 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\Soszyński Mariusz 02.docx [2009-10-18 23:43:56 | 00,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2009-10-18 10:49:57 | 00,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2009-10-17 18:19:48 | 01,560,423 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\N_I_G_H_T_S_H_A_D_E___skin_by_MyNameIsRay.zip [2009-10-17 15:53:38 | 01,415,665 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\StreamTorrent10Build0059.zip [2009-10-15 16:27:55 | 00,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2009-10-15 08:07:08 | 00,267,615 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\20091015.jpg [2009-10-12 19:42:40 | 00,000,406 | ---- | M] () -- C:\Documents and Settings\dawid\Pulpit\Skrót do Połączenie lokalne.lnk [2009-10-11 08:10:09 | 00,236,544 | ---- | M] () -- C:\WINDOWS\PEV.exe [2009-10-06 17:03:28 | 00,000,503 | ---- | M] () -- C:\Documents and Settings\dawid\Pulpit\FIFA10.exe.lnk [2009-10-02 20:01:57 | 25,198,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe [2009-10-01 18:42:19 | 11,907,440 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\VeohVideoCompassSetup_eng.exe [2009-09-27 17:20:44 | 00,014,556 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\Do Inspekcji Transportu Drogowego w Warszawie.docx [2009-09-27 14:35:03 | 00,070,487 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\KillBox.zip [2009-09-25 07:37:34 | 00,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wininet.dll [2009-09-25 07:37:34 | 00,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll [2009-09-25 07:37:33 | 01,509,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shdocvw.dll [2009-09-25 07:37:33 | 01,509,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shdocvw.dll [2009-09-25 07:37:33 | 00,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\urlmon.dll [2009-09-25 07:37:33 | 00,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll [2009-09-25 07:37:32 | 03,091,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mshtml.dll [2009-09-25 07:37:32 | 03,091,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll [2009-09-25 07:37:30 | 00,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieencode.dll [2009-09-25 07:37:30 | 00,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieencode.dll [2009-09-25 07:20:34 | 00,370,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\html.iec [color=#E56717]========== Files - No Company Name ==========[/color] [2009-10-22 21:26:10 | 00,000,664 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Pulpit\Winamp.lnk [2009-10-22 19:13:10 | 00,000,204 | ---- | C] () -- C:\WINDOWS\struct~.ini [2009-10-22 18:45:20 | 00,075,776 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\jeefogui.com [2009-10-21 21:40:10 | 00,731,136 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\avenger.exe [2009-10-21 21:39:56 | 00,724,952 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\avenger.zip [2009-10-21 19:43:17 | 00,000,211 | ---- | C] () -- C:\Boot.bak [2009-10-21 19:43:15 | 00,262,400 | ---- | C] () -- C:\cmldr [2009-10-21 19:42:01 | 00,236,544 | ---- | C] () -- C:\WINDOWS\PEV.exe [2009-10-21 19:42:01 | 00,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2009-10-21 19:42:01 | 00,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2009-10-21 19:42:01 | 00,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2009-10-21 19:37:33 | 03,351,153 | R--- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\ComboFix.exe [2009-10-21 18:50:41 | 00,000,126 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\Fix.reg [2009-10-21 14:59:41 | 00,000,501 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Pulpit\GTA San Andreas.lnk [2009-10-19 17:02:05 | 06,463,770 | ---- | C] () -- C:\Documents and Settings\dawid\Pulpit\andy la toggo - electronic pleasure (original mix).mp3.mp3 [2009-10-17 18:19:42 | 01,560,423 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\N_I_G_H_T_S_H_A_D_E___skin_by_MyNameIsRay.zip [2009-10-17 15:53:44 | 01,482,366 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\StreamTorrent10Build0059.exe [2009-10-17 15:53:04 | 01,415,665 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\StreamTorrent10Build0059.zip [2009-10-15 14:50:14 | 00,267,615 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\20091015.jpg [2009-10-15 14:49:33 | 00,343,946 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\DSC01303.JPG [2009-10-12 19:42:40 | 00,000,406 | ---- | C] () -- C:\Documents and Settings\dawid\Pulpit\Skrót do Połączenie lokalne.lnk [2009-10-06 17:03:28 | 00,000,503 | ---- | C] () -- C:\Documents and Settings\dawid\Pulpit\FIFA10.exe.lnk [2009-10-02 13:07:19 | 00,010,755 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\Soszyński Mariusz 02.docx [2009-10-01 18:39:48 | 11,907,440 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\VeohVideoCompassSetup_eng.exe [2009-09-27 17:06:56 | 00,014,556 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\Do Inspekcji Transportu Drogowego w Warszawie.docx [2009-09-27 14:35:02 | 00,070,487 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\KillBox.zip [2009-08-23 02:35:43 | 04,763,140 | -H-- | C] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-08-23 00:47:00 | 00,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2009-08-23 00:45:17 | 00,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll [2009-08-23 00:45:17 | 00,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll [2009-08-23 00:45:17 | 00,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll [2009-08-23 00:45:17 | 00,129,024 | ---- | C] () -- C:\WINDOWS\System32\AVERM.dll [2009-08-23 00:45:17 | 00,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll [2009-08-23 00:45:17 | 00,028,672 | ---- | C] () -- C:\WINDOWS\System32\AVEQT.dll [2009-08-23 00:44:55 | 00,639,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2009-08-22 22:37:41 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\desktop.ini [2009-08-22 21:31:14 | 00,114,688 | ---- | C] () -- C:\WINDOWS\System32\WLANUTL.dll [2009-08-22 21:03:58 | 00,048,640 | ---- | C] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-08-22 20:55:08 | 00,028,648 | ---- | C] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2009-08-22 20:52:43 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\dawid\Dane aplikacji\desktop.ini [2009-08-22 13:24:54 | 00,018,454 | ---- | C] () -- C:\Program Files\Common Files\yrer.sys [2009-06-19 20:06:22 | 00,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll [2009-02-04 11:50:32 | 00,024,576 | ---- | C] () -- C:\WINDOWS\System32\nsis_loader.dll [2007-05-11 00:03:00 | 01,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2007-05-11 00:03:00 | 01,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2007-05-11 00:03:00 | 01,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2007-05-11 00:03:00 | 00,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2007-05-11 00:03:00 | 00,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2006-09-13 13:06:10 | 00,045,056 | ---- | C] () -- C:\WINDOWS\System32\gtapi.dll [2006-03-02 14:00:00 | 00,000,477 | ---- | C] () -- C:\WINDOWS\win.ini [2006-03-02 14:00:00 | 00,000,227 | ---- | C] () -- C:\WINDOWS\system.ini < End of report >[/log]
Psycholandia komentarz 22 października 2009 komentarz 22 października 2009 Wykonaj to: http://support.microsoft.com/kb/310405/pl Następnie uruchom OTL i kliknij na CleanUP. Na moje oko jest już czysto.
dawidafc komentarz 23 października 2009 Autor komentarz 23 października 2009 Daje loga z OTL po tej operacji wyłączenia przywracania systemu itd. [log]OTL logfile created on: 2009-10-23 16:12:03 - Run 7 OTL by OldTimer - Version 3.0.22.1 Folder = C:\Documents and Settings\dawid\Moje dokumenty Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,44 Gb Available Physical Memory | 71,88% Memory free 3,85 Gb Paging File | 3,45 Gb Available in Paging File | 89,69% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 24,41 Gb Total Space | 13,26 Gb Free Space | 54,31% Space Free | Partition Type: NTFS D: Drive not present or media not loaded Drive E: | 104,23 Gb Total Space | 44,97 Gb Free Space | 43,14% Space Free | Partition Type: NTFS Drive F: | 104,23 Gb Total Space | 22,53 Gb Free Space | 21,62% Space Free | Partition Type: NTFS Drive G: | 7,02 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: FF Current User Name: dawid Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2009-10-23 16:11:26 | 00,521,728 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dawid\Moje dokumenty\OTL.exe PRC - [2009-09-25 14:59:32 | 00,906,544 | ---- | M] (UUSEE) -- C:\Program Files\Common Files\uusee\UUSeeMediaCenter.exe PRC - [2009-09-14 20:13:19 | 00,307,704 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2009-08-31 18:07:34 | 11,391,592 | ---- | M] (GG Network S.A.) -- C:\Program Files\Nowe Gadu-Gadu\gg.exe PRC - [2009-08-31 16:56:26 | 00,077,824 | ---- | M] () -- C:\Program Files\Nowe Gadu-Gadu\spellchecker_gg.exe PRC - [2009-08-23 00:22:28 | 00,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe PRC - [2008-04-14 19:21:50 | 00,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wscntfy.exe PRC - [2008-04-14 19:21:16 | 00,977,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE PRC - [2008-04-01 20:49:42 | 00,036,352 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe PRC - [2007-05-11 00:03:00 | 00,163,908 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc32.exe PRC - [2007-04-12 11:33:10 | 16,132,608 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE PRC - [2006-12-23 18:05:20 | 00,143,360 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe PRC - [2006-12-23 17:54:04 | 00,262,144 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe PRC - [2006-05-21 09:43:14 | 00,155,648 | ---- | M] (Y'z@Home) -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe PRC - [2006-05-21 09:43:08 | 00,180,224 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe PRC - [2005-04-02 03:51:48 | 00,217,600 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe PRC - [2005-01-28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2009-08-19 05:14:00 | 03,401,976 | ---- | M] (INCA Internet Co., Ltd.) -- C:\WINDOWS\System32\GameMon.des -- (npggsvc [On_Demand | Stopped]) SRV - [2008-04-14 19:20:44 | 00,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running]) SRV - [2007-05-11 00:03:00 | 00,163,908 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc32.exe -- (NVSvc [Auto | Running]) SRV - [2007-01-05 13:41:10 | 00,774,144 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService [On_Demand | Stopped]) SRV - [2006-12-23 17:54:04 | 00,262,144 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -- (NMIndexingService [On_Demand | Running]) SRV - [2006-10-26 19:49:34 | 00,441,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv [On_Demand | Stopped]) SRV - [2006-10-26 13:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped]) SRV - [2005-04-02 03:51:48 | 00,217,600 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindService.exe -- (StarWindService [Auto | Running]) SRV - [2005-01-28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfmgr.exe -- (UMWdf [Auto | Running]) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2009-08-23 00:44:56 | 00,639,224 | ---- | M] () -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd [Boot | Running]) DRV - [2009-08-22 21:11:20 | 00,015,600 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\gdrv.sys -- (gdrv [On_Demand | Stopped]) DRV - [2008-04-13 18:39:16 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys -- (Secdrv [On_Demand | Stopped]) DRV - [2008-04-13 18:36:05 | 00,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\System32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running]) DRV - [2007-05-11 00:03:00 | 06,738,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\DRIVERS\nv4_mini.sys -- (nv [On_Demand | Running]) DRV - [2007-04-23 12:12:28 | 04,402,176 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys -- (IntcAzAudAddService [On_Demand | Running]) DRV - [2007-03-08 01:51:00 | 00,043,528 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys -- (PxHelp20 [Boot | Running]) DRV - [2007-03-01 10:05:38 | 00,090,496 | R--- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys -- (RTLE8023xp [On_Demand | Running]) DRV - [2007-01-16 13:52:20 | 00,017,664 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) -- C:\WINDOWS\System32\Drivers\ZDPSp50.sys -- (ZDPSp50 [On_Demand | Running]) DRV - [2007-01-10 10:14:34 | 00,450,560 | ---- | M] (ZyDAS Technology Corporation) -- C:\WINDOWS\System32\DRIVERS\WlanBZXP.sys -- (SG762_XP [On_Demand | Stopped]) DRV - [2006-03-02 14:00:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running]) [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2009-10-23 16:11:26 | 00,521,728 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dawid\Moje dokumenty\OTL.exe MOD - [2008-04-14 18:59:08 | 01,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll MOD - [2006-05-21 09:43:14 | 00,053,248 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.dll MOD - [2006-05-21 09:43:08 | 00,065,536 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon.dll [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.selectedEngine: "Wikipedia (pl)" FF - prefs.js..extensions.enabledItems: firefox@tvunetworks.com:2 FF - prefs.js..extensions.enabledItems: 4 FF - prefs.js..extensions.enabledItems: 8 FF - prefs.js..extensions.enabledItems: 1 FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.14 FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Program Files\Real\RealPlayer\browserrecord [2009-08-23 00:22:35 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.14\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009-09-17 15:30:52 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.14\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009-09-14 20:13:22 | 00,000,000 | ---D | M] [2009-08-22 22:33:05 | 00,000,000 | ---D | M] -- C:\Documents and Settings\dawid\Dane aplikacji\mozilla\Extensions [2009-08-22 22:33:05 | 00,000,000 | ---D | M] -- C:\Documents and Settings\dawid\Dane aplikacji\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2009-10-22 16:12:46 | 00,000,000 | ---D | M] -- C:\Documents and Settings\dawid\Dane aplikacji\mozilla\Firefox\Profiles\ywv0iu65.default\extensions [2009-09-16 20:56:32 | 00,000,000 | ---D | M] -- C:\Documents and Settings\dawid\Dane aplikacji\mozilla\Firefox\Profiles\ywv0iu65.default\extensions\firefox@tvunetworks.com [2009-08-23 00:54:32 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions [2009-09-14 20:13:22 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2009-09-14 20:13:18 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll [2009-09-14 20:13:19 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll [2009-09-14 20:13:19 | 00,065,528 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll [2006-10-26 20:12:16 | 00,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL [2009-02-27 12:13:42 | 00,103,792 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2009-08-23 00:22:33 | 00,144,960 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nppl3260.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll [2009-08-23 00:30:12 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll [2009-08-23 00:22:38 | 00,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nprjplug.dll [2009-08-23 00:22:31 | 00,094,208 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nprpjplug.dll [2009-08-24 16:02:26 | 00,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2009-08-24 16:02:26 | 00,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2009-08-24 16:02:26 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml [2009-08-24 16:02:26 | 00,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2009-08-24 16:02:26 | 00,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2009-08-24 16:02:26 | 00,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2009-08-24 16:02:26 | 00,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: (27 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Documents and Settings\dawid\Dane aplikacji\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.) O4 - HKLM..\Run: [UUSeeMediaCenter] C:\Program Files\Common Files\uusee\UUSeeMediaCenter.exe (UUSEE) O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe () O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG) O4 - HKCU..\Run: [IPLA!] C:\Program Files\ipla\ipla.exe (Redefine Sp z o.o.) O4 - Startup: C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Autostart\Program sieciowy dla SAGEM Wi-Fi 11g USB adapter.lnk = C:\Program Files\SAGEM WiFi manager\WLANUTL.exe ( ) O4 - Startup: C:\Documents and Settings\dawid\Menu Start\Programy\Autostart\TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe (AKSoftware) O4 - Startup: C:\Documents and Settings\dawid\Menu Start\Programy\Autostart\UberIcon.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe () O4 - Startup: C:\Documents and Settings\dawid\Menu Start\Programy\Autostart\Y'z Shadow.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe (Y'z@Home) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation) O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation) O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone. O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ipp - No CLSID value found O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2007-10-26 19:22:37 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-09-09 06:11:10 | 00,419,088 | R--- | M] (Electronic Arts) - G:\AutoRun.exe -- [ UDF ] O32 - AutoRun File - [2009-09-09 06:11:10 | 00,419,088 | R--- | M] (Electronic Arts) - G:\Autorun.exe -- [ UDF ] O32 - AutoRun File - [2009-09-09 06:11:08 | 11,369,984 | R--- | M] () - G:\autorun.dat -- [ UDF ] O32 - AutoRun File - [2009-09-09 05:48:56 | 00,000,136 | R--- | M] () - G:\autorun.inf -- [ UDF ] O34 - HKLM BootExecute: (autocheck) - File not found O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation) O34 - HKLM BootExecute: (*) - File not found O35 - comfile [open] -- "%1" %* File not found O35 - exefile [open] -- "%1" %* File not found [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2009-10-17 15:53:49 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Dane aplikacji\StreamTorrent [2009-10-22 21:25:58 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Dane aplikacji\Winamp [2009-10-21 16:06:24 | 00,000,000 | ---D | C] -- C:\Program Files\San Andreas Mod Installer [2009-10-22 21:25:58 | 00,000,000 | ---D | C] -- C:\Program Files\Winamp [2009-10-23 16:11:23 | 00,521,728 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\dawid\Moje dokumenty\OTL.exe [2009-10-22 19:02:44 | 00,000,000 | ---D | C] -- C:\WINDOWS\temp [2009-10-22 15:53:55 | 00,033,280 | ---- | C] (iSergiwa Software - www.sergiwa.com) -- C:\Documents and Settings\dawid\Moje dokumenty\PRT.exe [2009-10-21 19:43:14 | 00,000,000 | RHSD | C] -- C:\cmdcons [2009-10-21 16:06:24 | 00,000,000 | ---D | C] -- C:\WINDOWS\San Andreas Mod Installer [2009-10-21 15:13:59 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Moje dokumenty\GTA San Andreas User Files [2009-10-17 18:20:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Moje dokumenty\DATA [2009-10-06 16:36:48 | 00,000,000 | ---D | C] -- C:\Documents and Settings\dawid\Moje dokumenty\FIFA 10 [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2009-10-23 16:11:26 | 00,521,728 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\dawid\Moje dokumenty\OTL.exe [2009-10-23 16:05:31 | 00,000,204 | ---- | M] () -- C:\WINDOWS\struct~.ini [2009-10-23 16:05:29 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2009-10-23 16:05:28 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2009-10-22 21:26:10 | 00,000,664 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Pulpit\Winamp.lnk [2009-10-22 19:01:50 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini [2009-10-22 18:52:16 | 00,966,656 | ---- | M] (Nero AG) -- C:\WINDOWS\UNNeroBackItUp.exe [2009-10-22 18:52:16 | 00,293,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\WISPTIS.EXE [2009-10-22 18:52:14 | 00,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\PhysXCplUI.exe [2009-10-22 18:52:13 | 01,339,392 | ---- | M] () -- C:\WINDOWS\System32\nvdspsch.exe [2009-10-22 18:52:13 | 00,745,472 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcplui.exe [2009-10-22 18:52:13 | 00,356,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\NVUNINST.EXE [2009-10-22 18:52:13 | 00,356,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvudisp.exe [2009-10-22 18:52:13 | 00,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\PhysXCompatCplUI.exe [2009-10-22 18:52:13 | 00,143,360 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcolor.exe [2009-10-22 18:52:12 | 00,442,368 | ---- | M] () -- C:\WINDOWS\System32\nvappbar.exe [2009-10-22 18:52:12 | 00,425,984 | ---- | M] () -- C:\WINDOWS\System32\keystone.exe [2009-10-22 18:51:55 | 02,157,568 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\MicCal.exe [2009-10-22 18:51:55 | 01,191,936 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RtlUpd.exe [2009-10-22 18:51:54 | 00,315,392 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\HideWin.exe [2009-10-22 18:45:21 | 00,075,776 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\jeefogui.com [2009-10-22 15:53:55 | 00,033,280 | ---- | M] (iSergiwa Software - www.sergiwa.com) -- C:\Documents and Settings\dawid\Moje dokumenty\PRT.exe [2009-10-22 00:33:42 | 00,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2009-10-21 19:43:17 | 00,000,281 | RHS- | M] () -- C:\boot.ini [2009-10-21 18:50:41 | 00,000,126 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\Fix.reg [2009-10-21 16:57:40 | 00,355,830 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2009-10-21 16:57:40 | 00,311,740 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2009-10-21 16:57:40 | 00,049,712 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2009-10-21 16:57:40 | 00,040,128 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2009-10-21 16:19:38 | 00,827,262 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2009-10-21 15:28:38 | 00,048,640 | ---- | M] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-10-21 14:59:41 | 00,000,501 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Pulpit\GTA San Andreas.lnk [2009-10-20 01:00:16 | 04,763,140 | -H-- | M] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-10-19 17:07:26 | 06,463,770 | ---- | M] () -- C:\Documents and Settings\dawid\Pulpit\andy la toggo - electronic pleasure (original mix).mp3.mp3 [2009-10-19 16:20:18 | 00,010,755 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\Soszyński Mariusz 02.docx [2009-10-18 23:43:56 | 00,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2009-10-18 10:49:57 | 00,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2009-10-17 18:19:48 | 01,560,423 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\N_I_G_H_T_S_H_A_D_E___skin_by_MyNameIsRay.zip [2009-10-17 15:53:38 | 01,415,665 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\StreamTorrent10Build0059.zip [2009-10-15 16:27:55 | 00,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2009-10-15 08:07:08 | 00,267,615 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\20091015.jpg [2009-10-12 19:42:40 | 00,000,406 | ---- | M] () -- C:\Documents and Settings\dawid\Pulpit\Skrót do Połączenie lokalne.lnk [2009-10-11 08:10:09 | 00,236,544 | ---- | M] () -- C:\WINDOWS\PEV.exe [2009-10-06 17:03:28 | 00,000,503 | ---- | M] () -- C:\Documents and Settings\dawid\Pulpit\FIFA10.exe.lnk [2009-10-02 20:01:57 | 25,198,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe [2009-10-01 18:42:19 | 11,907,440 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\VeohVideoCompassSetup_eng.exe [2009-09-27 17:20:44 | 00,014,556 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\Do Inspekcji Transportu Drogowego w Warszawie.docx [2009-09-27 14:35:03 | 00,070,487 | ---- | M] () -- C:\Documents and Settings\dawid\Moje dokumenty\KillBox.zip [2009-09-25 07:37:34 | 00,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wininet.dll [2009-09-25 07:37:34 | 00,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll [2009-09-25 07:37:33 | 01,509,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shdocvw.dll [2009-09-25 07:37:33 | 01,509,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shdocvw.dll [2009-09-25 07:37:33 | 00,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\urlmon.dll [2009-09-25 07:37:33 | 00,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll [2009-09-25 07:37:32 | 03,091,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mshtml.dll [2009-09-25 07:37:32 | 03,091,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll [2009-09-25 07:37:30 | 00,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieencode.dll [2009-09-25 07:37:30 | 00,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieencode.dll [2009-09-25 07:20:34 | 00,370,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\html.iec [color=#E56717]========== Files - No Company Name ==========[/color] [2009-10-22 21:26:10 | 00,000,664 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Pulpit\Winamp.lnk [2009-10-22 19:13:10 | 00,000,204 | ---- | C] () -- C:\WINDOWS\struct~.ini [2009-10-22 18:45:20 | 00,075,776 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\jeefogui.com [2009-10-21 19:43:17 | 00,000,211 | ---- | C] () -- C:\Boot.bak [2009-10-21 19:43:15 | 00,262,400 | ---- | C] () -- C:\cmldr [2009-10-21 19:42:01 | 00,236,544 | ---- | C] () -- C:\WINDOWS\PEV.exe [2009-10-21 18:50:41 | 00,000,126 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\Fix.reg [2009-10-21 14:59:41 | 00,000,501 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Pulpit\GTA San Andreas.lnk [2009-10-19 17:02:05 | 06,463,770 | ---- | C] () -- C:\Documents and Settings\dawid\Pulpit\andy la toggo - electronic pleasure (original mix).mp3.mp3 [2009-10-17 18:19:42 | 01,560,423 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\N_I_G_H_T_S_H_A_D_E___skin_by_MyNameIsRay.zip [2009-10-17 15:53:44 | 01,482,366 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\StreamTorrent10Build0059.exe [2009-10-17 15:53:04 | 01,415,665 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\StreamTorrent10Build0059.zip [2009-10-15 14:50:14 | 00,267,615 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\20091015.jpg [2009-10-15 14:49:33 | 00,343,946 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\DSC01303.JPG [2009-10-12 19:42:40 | 00,000,406 | ---- | C] () -- C:\Documents and Settings\dawid\Pulpit\Skrót do Połączenie lokalne.lnk [2009-10-06 17:03:28 | 00,000,503 | ---- | C] () -- C:\Documents and Settings\dawid\Pulpit\FIFA10.exe.lnk [2009-10-02 13:07:19 | 00,010,755 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\Soszyński Mariusz 02.docx [2009-10-01 18:39:48 | 11,907,440 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\VeohVideoCompassSetup_eng.exe [2009-09-27 17:06:56 | 00,014,556 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\Do Inspekcji Transportu Drogowego w Warszawie.docx [2009-09-27 14:35:02 | 00,070,487 | ---- | C] () -- C:\Documents and Settings\dawid\Moje dokumenty\KillBox.zip [2009-08-23 02:35:43 | 04,763,140 | -H-- | C] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-08-23 00:47:00 | 00,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2009-08-23 00:45:17 | 00,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll [2009-08-23 00:45:17 | 00,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll [2009-08-23 00:45:17 | 00,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll [2009-08-23 00:45:17 | 00,129,024 | ---- | C] () -- C:\WINDOWS\System32\AVERM.dll [2009-08-23 00:45:17 | 00,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll [2009-08-23 00:45:17 | 00,028,672 | ---- | C] () -- C:\WINDOWS\System32\AVEQT.dll [2009-08-23 00:44:55 | 00,639,224 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2009-08-22 22:37:41 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\desktop.ini [2009-08-22 21:31:14 | 00,114,688 | ---- | C] () -- C:\WINDOWS\System32\WLANUTL.dll [2009-08-22 21:03:58 | 00,048,640 | ---- | C] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-08-22 20:55:08 | 00,028,648 | ---- | C] () -- C:\Documents and Settings\dawid\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2009-08-22 20:52:43 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\dawid\Dane aplikacji\desktop.ini [2009-08-22 13:24:54 | 00,018,454 | ---- | C] () -- C:\Program Files\Common Files\yrer.sys [2009-06-19 20:06:22 | 00,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll [2009-06-19 20:06:22 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll [2009-02-04 11:50:32 | 00,024,576 | ---- | C] () -- C:\WINDOWS\System32\nsis_loader.dll [2007-05-11 00:03:00 | 01,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2007-05-11 00:03:00 | 01,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2007-05-11 00:03:00 | 01,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2007-05-11 00:03:00 | 00,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2007-05-11 00:03:00 | 00,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2006-09-13 13:06:10 | 00,045,056 | ---- | C] () -- C:\WINDOWS\System32\gtapi.dll [2006-03-02 14:00:00 | 00,000,477 | ---- | C] () -- C:\WINDOWS\win.ini [2006-03-02 14:00:00 | 00,000,227 | ---- | C] () -- C:\WINDOWS\system.ini < End of report > [/log]
Psycholandia komentarz 23 października 2009 komentarz 23 października 2009 Czysto, uruchom OTL i kliknij na CleanUP.
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.