Skejcik utworzono 4 października 2009 utworzono 4 października 2009 Witam.. Otóż problem polega na tym, że chcąc wejść w jakiś dysk twardy muszę go otworzyć za pomocą PPM , ale to nie jest główny problem.. Głównym i zarazem najbardziej uciążliwym problemem jest to, że nie mogę odpalić menadżera zadań.. po prostu nie uruchamia się.. Pomocy!
Psycholandia komentarz 4 października 2009 komentarz 4 października 2009 Prawdopodobnie infekcja, daj loga z OTL: http://www.forumpc.pl/index.php?showtopic=104338
Skejcik komentarz 4 października 2009 Autor komentarz 4 października 2009 (edytowane) [log]OTL logfile created on: 2009-10-05 19:29:39 - Run 1 OTL by OldTimer - Version 3.0.18.2 Folder = C:\Documents and Settings\Skejcik\Moje dokumenty\Pobieranie Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,36 Gb Available Physical Memory | 68,02% Memory free 3,85 Gb Paging File | 3,34 Gb Available in Paging File | 86,83% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 69,21 Gb Total Space | 19,71 Gb Free Space | 28,48% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: DOM-AA552B6B83C Current User Name: Skejcik Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2009-07-15 06:38:26 | 00,602,112 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\Ati2evxx.exe PRC - [2009-07-15 06:38:26 | 00,602,112 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\Ati2evxx.exe PRC - [2007-06-25 08:47:12 | 01,552,680 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe PRC - [2009-08-11 01:07:50 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe PRC - [2009-07-21 04:36:06 | 02,120,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE PRC - [2007-08-23 17:40:48 | 00,079,136 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe PRC - [2009-04-30 12:23:26 | 00,090,112 | ---- | M] () -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe PRC - [2009-08-28 14:48:56 | 00,066,872 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe PRC - [2006-10-05 23:26:28 | 00,280,779 | ---- | M] () -- C:\WINDOWS\VistaDrive\VistaDrive.exe PRC - [2009-08-11 01:07:50 | 00,148,888 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe PRC - [2008-10-28 13:48:26 | 17,331,200 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE PRC - [2004-01-26 11:38:38 | 00,866,816 | ---- | M] (THOMSON Telecom Belgium) -- C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe PRC - [2007-06-25 08:47:24 | 01,629,480 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe PRC - [2007-06-25 08:47:02 | 01,057,064 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\InCD\InCD.exe PRC - [2000-08-01 06:41:10 | 00,073,728 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Internet Keyboard\MEDIAKEY.EXE PRC - [2009-09-23 09:13:30 | 00,007,168 | ---- | M] () -- C:\WINDOWS\System32\winxp.exe PRC - [2009-04-23 18:21:38 | 00,691,656 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\daemon.exe PRC - [2007-06-27 19:03:40 | 00,152,872 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe PRC - [2007-06-27 19:04:00 | 00,279,848 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe PRC - [2007-08-23 17:36:30 | 00,455,968 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe PRC - [2009-06-23 16:50:56 | 00,434,176 | ---- | M] (Sony Ericsson Mobile Communications AB) -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe PRC - [2007-06-27 19:04:00 | 01,213,736 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe PRC - [2000-07-06 10:26:14 | 00,106,496 | ---- | M] (Dritek System Inc. ( Monterey M380 )) -- C:\Program Files\Internet Keyboard\KBOSDCTL.EXE PRC - [2000-07-06 10:30:32 | 00,053,248 | ---- | M] (Dritek System Inc. ( Monterey M380 )) -- C:\Program Files\Internet Keyboard\KCODEMSG.EXE PRC - [2009-04-22 17:38:50 | 00,065,536 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe PRC - [2009-04-22 17:37:16 | 00,065,536 | ---- | M] (ATI Technologies Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe PRC - [2009-08-11 01:07:50 | 00,386,480 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jucheck.exe PRC - [2009-09-26 08:48:39 | 00,908,280 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2009-10-05 19:28:44 | 00,519,168 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Skejcik\Moje dokumenty\Pobieranie\OTL.exe [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2008-07-25 13:46:40 | 00,034,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state [On_Demand | Stopped]) SRV - [2009-07-15 06:38:26 | 00,602,112 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\Ati2evxx.exe -- (Ati HotKey Poller [Auto | Running]) SRV - [2009-07-14 21:05:00 | 00,593,920 | ---- | M] () -- C:\WINDOWS\System32\ati2sgag.exe -- (ATI Smart [Auto | Stopped]) SRV - [2008-07-25 13:47:02 | 00,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [On_Demand | Stopped]) SRV - [2008-07-29 23:40:04 | 00,046,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0 [On_Demand | Stopped]) SRV - [2008-04-15 16:30:00 | 00,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running]) SRV - [2008-07-29 21:54:50 | 00,881,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc [Unknown | Stopped]) SRV - [2007-06-25 08:47:12 | 01,552,680 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe -- (InCDsrv [Auto | Running]) SRV - [2009-08-11 01:07:50 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService [Auto | Running]) SRV - [2007-08-23 17:40:48 | 00,079,136 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService [Auto | Running]) SRV - [2007-06-29 19:16:56 | 00,800,040 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService [On_Demand | Stopped]) SRV - [2008-07-29 21:46:38 | 00,132,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing [Disabled | Stopped]) SRV - [2007-06-27 19:04:00 | 00,279,848 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -- (NMIndexingService [On_Demand | Running]) SRV - [2009-04-30 12:23:26 | 00,090,112 | ---- | M] () -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe -- (OMSI download service [Auto | Running]) SRV - [2009-08-28 14:48:56 | 00,066,872 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe -- (PnkBstrA [Auto | Running]) SRV - [2009-07-21 04:31:34 | 00,918,016 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\WMPNetwk.exe -- (WMPNetworkSvc [On_Demand | Stopped]) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2003-12-08 11:53:48 | 00,053,600 | ---- | M] (THOMSON) -- C:\WINDOWS\System32\DRIVERS\alcan5wn.sys -- (alcan5wn [On_Demand | Running]) DRV - [2003-12-08 11:53:46 | 00,070,688 | ---- | M] (THOMSON) -- C:\WINDOWS\System32\DRIVERS\alcaudsl.sys -- (alcaudsl [On_Demand | Running]) DRV - [2009-07-15 08:50:10 | 04,407,808 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\DRIVERS\ati2mtag.sys -- (ati2mtag [On_Demand | Running]) DRV - [2008-07-03 00:08:14 | 00,089,600 | R--- | M] (ATI Research Inc.) -- C:\WINDOWS\System32\drivers\AtiHdmi.sys -- (AtiHdmiService [On_Demand | Running]) DRV - [2009-09-04 10:53:58 | 00,278,984 | ---- | M] () -- C:\WINDOWS\System32\DRIVERS\atksgt.sys -- (atksgt [Auto | Running]) DRV - [2009-03-27 01:16:28 | 00,012,672 | ---- | M] (Windows (R) Codename Longhorn DDK provider) -- C:\WINDOWS\System32\drivers\cpuz132_x32.sys -- (cpuz132 [Auto | Running]) DRV - [2008-04-15 16:30:00 | 00,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\System32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running]) DRV - [2008-02-08 09:50:40 | 05,955,232 | ---- | M] (Intel Corporation) -- C:\WINDOWS\System32\DRIVERS\igxpmp32.sys -- (ialm [On_Demand | Stopped]) DRV - [2007-06-25 08:47:02 | 00,119,080 | ---- | M] (Nero AG) -- C:\WINDOWS\System32\drivers\InCDFs.sys -- (InCDfs [Disabled | Running]) DRV - [2007-06-25 08:47:12 | 00,036,776 | ---- | M] (Nero AG) -- C:\WINDOWS\System32\drivers\InCDPass.sys -- (InCDPass [System | Running]) DRV - [2007-06-25 08:47:12 | 00,038,440 | ---- | M] (Nero AG) -- C:\WINDOWS\System32\drivers\InCDRm.sys -- (incdrm [System | Running]) DRV - [2008-10-31 08:08:08 | 04,942,336 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys -- (IntcAzAudAddService [On_Demand | Running]) DRV - [2000-04-07 11:26:36 | 00,013,620 | ---- | M] () -- C:\WINDOWS\System32\Drivers\KBFiltr.sys -- (KBFiltr [On_Demand | Running]) DRV - [2009-09-04 10:53:57 | 00,025,416 | ---- | M] () -- C:\WINDOWS\System32\DRIVERS\lirsgt.sys -- (lirsgt [Auto | Running]) DRV - [2008-04-15 16:30:00 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running]) DRV - [2009-04-29 00:50:06 | 00,044,944 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys -- (PxHelp20 [Boot | Running]) DRV - [2008-10-31 06:44:20 | 00,117,888 | ---- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys -- (RTLE8023xp [On_Demand | Running]) DRV - [2008-05-16 12:33:12 | 00,089,256 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\System32\DRIVERS\s0016bus.sys -- (s0016bus [On_Demand | Stopped]) DRV - [2008-05-16 12:33:14 | 00,015,016 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\System32\DRIVERS\s0016mdfl.sys -- (s0016mdfl [On_Demand | Stopped]) DRV - [2008-05-16 12:33:12 | 00,120,744 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\System32\DRIVERS\s0016mdm.sys -- (s0016mdm [On_Demand | Stopped]) DRV - [2008-05-16 12:33:12 | 00,114,216 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\System32\DRIVERS\s0016mgmt.sys -- (s0016mgmt [On_Demand | Stopped]) DRV - [2008-05-16 12:33:12 | 00,110,632 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\System32\DRIVERS\s0016obex.sys -- (s0016obex [On_Demand | Stopped]) DRV - [2008-05-16 12:33:14 | 00,115,752 | ---- | M] (MCCI Corporation) -- C:\WINDOWS\System32\DRIVERS\s0016unic.sys -- (s0016unic [On_Demand | Stopped]) DRV - [2008-04-15 16:30:00 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys -- (Secdrv [On_Demand | Stopped]) DRV - [2008-01-09 11:28:34 | 00,027,632 | ---- | M] (Sony Ericsson Mobile Communications) -- C:\WINDOWS\System32\DRIVERS\seehcri.sys -- (seehcri [On_Demand | Running]) DRV - [2009-08-11 08:39:43 | 00,721,904 | ---- | M] () -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd [Boot | Running]) DRV - [2009-08-23 13:27:12 | 00,023,600 | ---- | M] (EnTech Taiwan) -- C:\WINDOWS\System32\DRIVERS\TVICHW32.SYS -- (TVICHW32 [On_Demand | Stopped]) DRV - [2001-12-18 14:45:04 | 00,003,279 | ---- | M] (VIA Technologies. Inc.) -- C:\WINDOWS\System32\Drivers\VIAPFD.SYS -- (VIAPFD [System | Running]) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\S-1-5-20\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-583907252-1659004503-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm IE - HKU\S-1-5-21-583907252-1659004503-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKU\S-1-5-21-583907252-1659004503-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\S-1-5-21-583907252-1659004503-1801674531-1003\S-1-5-21-583907252-1659004503-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.0.4 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}:6.0.14 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {20a82645-c095-46ed-80e3-08825760534b}:1.1 FF - prefs.js..extensions.enabledItems: zrzuta.eu@gmail.com:1.0 FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.3 FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009-08-11 01:06:41 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2009-08-11 01:07:51 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.5.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009-10-04 07:49:06 | 00,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.5.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009-09-26 08:48:42 | 00,000,000 | ---D | M] [2009-08-11 08:30:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\mozilla\Extensions [2009-08-11 08:30:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2009-10-04 11:47:07 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\mozilla\Firefox\Profiles\goknk5c4.default\extensions [2009-09-26 10:21:54 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\mozilla\Firefox\Profiles\goknk5c4.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34} [2009-08-11 08:37:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\mozilla\Firefox\Profiles\goknk5c4.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2009-08-11 15:29:33 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\mozilla\Firefox\Profiles\goknk5c4.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} [2009-10-03 10:29:22 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\mozilla\Firefox\Profiles\goknk5c4.default\extensions\zrzuta.eu@gmail.com [2009-10-04 11:47:07 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions [2009-09-25 07:56:27 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2009-08-11 01:07:56 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} [2009-09-26 08:48:36 | 00,023,544 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll [2009-09-26 08:48:36 | 00,137,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll [2009-07-17 13:10:12 | 00,704,512 | ---- | M] (BitComet) -- C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll [2009-08-11 01:07:50 | 00,410,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeploytk.dll [2009-09-26 08:48:40 | 00,065,016 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll [2008-09-11 00:26:44 | 00,144,960 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nppl3260.dll [2008-09-11 00:07:54 | 00,094,208 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\mozilla firefox\plugins\nprpjplug.dll [2009-07-31 03:14:16 | 00,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2009-07-31 03:14:16 | 00,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2009-07-31 04:15:26 | 00,002,371 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml [2009-07-31 03:14:16 | 00,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2009-07-31 03:14:16 | 00,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2009-07-31 03:14:16 | 00,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2009-07-31 03:14:16 | 00,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: (742 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.3.7.16.dll (BitComet) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKU\S-1-5-21-583907252-1659004503-1801674531-1003\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe (Intel Corporation) O4 - HKLM..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe (Intel Corporation) O4 - HKLM..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe (Nero AG) O4 - HKLM..\Run: [MediaKey] C:\Program Files\Internet Keyboard\MEDIAKEY.EXE (Dritek System Inc.) O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG) O4 - HKLM..\Run: [Persistence] C:\WINDOWS\System32\igfxpers.exe (Intel Corporation) O4 - HKLM..\Run: [regdiit] C:\WINDOWS\System32\winxp.exe () O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe (Nero AG) O4 - HKLM..\Run: [SpeedTouch USB Diagnostics] C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe (THOMSON Telecom Belgium) O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.) O4 - HKLM..\Run: [VistaDrive] C:\WINDOWS\VistaDrive\VistaDrive.exe () O4 - HKU\.DEFAULT..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe File not found O4 - HKU\S-1-5-18..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe File not found O4 - HKU\S-1-5-20..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe File not found O4 - HKU\S-1-5-21-583907252-1659004503-1801674531-1003..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG) O4 - HKU\S-1-5-21-583907252-1659004503-1801674531-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-583907252-1659004503-1801674531-1003..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe (Hewlett-Packard Company) O4 - HKU\S-1-5-21-583907252-1659004503-1801674531-1003..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe File not found O4 - HKU\S-1-5-21-583907252-1659004503-1801674531-1003..\Run: [Sony Ericsson PC Suite] C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe (Sony Ericsson Mobile Communications AB) O4 - HKU\.DEFAULT..\RunOnce: [_nltide_3] C:\WINDOWS\System32\advpack.DLL (Microsoft Corporation) O4 - HKU\S-1-5-18..\RunOnce: [_nltide_3] C:\WINDOWS\System32\advpack.DLL (Microsoft Corporation) O4 - HKU\S-1-5-20..\RunOnce: [_nltide_3] C:\WINDOWS\System32\advpack.DLL (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-583907252-1659004503-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O8 - Extra context menu item: Pobierz wszystkie VIdeo za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com) O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com) O8 - Extra context menu item: Pobierz za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com) O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.3.7.16.dll (BitComet) O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\rsvpsp.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\rsvpsp.dll (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\ipp - No CLSID value found O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\Antiwpa: DllName - antiwpa.dll - C:\WINDOWS\System32\antiwpa.dll () O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\Ati2evxx.dll (ATI Technologies Inc.) O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O27 - HKLM IFEO\dwwinxp.exe: Debugger - C:\WINDOWS\System32\winxp.exe () O27 - HKLM IFEO\procexp.exe: Debugger - File not found O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-08-11 01:04:04 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-10-05 12:05:05 | 00,000,110 | RHS- | M] () - C:\autorun.inf -- [ NTFS ] O33 - MountPoints2\{378661ec-a2c8-11de-acc1-001966c2bd3b}\Shell - "" = AutoRun O33 - MountPoints2\{519bf18c-8c9b-11de-ac64-000e50e2a775}\Shell\AutoRun\command - "" = G:\ktly.exe -- File not found O33 - MountPoints2\{519bf18c-8c9b-11de-ac64-000e50e2a775}\Shell\open\Command - "" = G:\ktly.exe -- File not found O33 - MountPoints2\{701c9e9c-989c-11de-ac99-000e50e2a775}\Shell\AutoRun\command - "" = g8k.exe O33 - MountPoints2\{701c9e9c-989c-11de-ac99-000e50e2a775}\Shell\open\Command - "" = g8k.exe O33 - MountPoints2\{f25910fe-b0b4-11de-860f-000e50e2a775}\Shell - "" = AutoRun O33 - MountPoints2\D\Shell - "" = AutoRun O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\H\Shell - "" = AutoRun O34 - HKLM BootExecute: (autocheck) - File not found O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation) O34 - HKLM BootExecute: (*) - File not found O35 - comfile [open] -- "%1" %* File not found O35 - exefile [open] -- "%1" %* File not found [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [1 C:\WINDOWS\System32\*.tmp files] [1 C:\WINDOWS\*.tmp files] [2009-09-24 18:29:02 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe [2009-09-17 06:54:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software [2009-09-16 18:22:36 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Sony Ericsson [2009-09-21 19:09:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Ubisoft [2009-09-21 18:58:40 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Skejcik\Dane aplikacji\InstallShield [2009-09-21 19:11:43 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Skejcik\Dane aplikacji\Ubisoft [2009-09-24 18:35:28 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Skejcik\Ustawienia lokalne\Dane aplikacji\Adobe [2009-09-24 20:43:25 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Skejcik\Ustawienia lokalne\Dane aplikacji\Deployment [2009-09-17 06:54:18 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Skejcik\Ustawienia lokalne\Dane aplikacji\Sony Ericsson [2009-09-24 18:28:53 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2009-09-18 20:20:27 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard [2009-09-24 18:28:53 | 00,000,000 | ---D | C] -- C:\Program Files\Adobe [2009-09-18 20:20:35 | 00,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies [2009-09-18 18:35:59 | 00,000,000 | ---D | C] -- C:\Program Files\Need for Speed - Shift [2009-09-17 08:09:45 | 00,000,000 | ---D | C] -- C:\Program Files\OniGames [2009-09-16 18:22:36 | 00,000,000 | ---D | C] -- C:\Program Files\Sony Ericsson [2009-09-21 18:58:48 | 00,000,000 | ---D | C] -- C:\Program Files\Ubisoft [2009-09-08 07:25:21 | 00,000,000 | ---D | C] -- C:\Program Files\Wiedzmin [2009-09-25 07:41:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Skejcik\Moje dokumenty\Laptop [2009-09-18 20:22:07 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Skejcik\Moje dokumenty\NFS SHIFT [2009-09-18 20:20:35 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\AGEIA [2009-09-16 18:32:59 | 00,032,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbccgp.sys [2009-09-16 18:23:04 | 00,027,632 | ---- | C] (Sony Ericsson Mobile Communications) -- C:\WINDOWS\System32\drivers\seehcri.sys [2009-09-16 18:22:54 | 00,115,752 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016unic.sys [2009-09-16 18:22:54 | 00,010,792 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016cr.sys [2009-09-16 18:22:53 | 00,120,744 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016mdm.sys [2009-09-16 18:22:53 | 00,114,216 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016mgmt.sys [2009-09-16 18:22:53 | 00,110,632 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016obex.sys [2009-09-16 18:22:53 | 00,089,256 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016bus.sys [2009-09-16 18:22:53 | 00,015,016 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016mdfl.sys [2009-09-16 18:22:53 | 00,012,200 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016whnt.sys [2009-09-16 18:22:53 | 00,012,200 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016wh.sys [2009-09-16 18:22:53 | 00,012,200 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016cmnt.sys [2009-09-16 18:22:53 | 00,012,200 | ---- | C] (MCCI Corporation) -- C:\WINDOWS\System32\drivers\s0016cm.sys [2009-09-16 18:22:47 | 00,148,736 | ---- | C] (Avanquest Software) -- C:\Documents and Settings\All Users\Dane aplikacji\hpe31.dll [2009-09-10 07:07:27 | 00,016,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll [2009-09-09 06:59:34 | 00,153,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\triedit.dll [2009-09-09 06:59:28 | 00,726,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jscript.dll [2009-09-08 07:43:08 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Skejcik\Moje dokumenty\The Witcher [2009-09-06 10:44:09 | 00,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages [2009-09-06 10:43:48 | 01,230,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msvidctl.dll [2009-09-06 10:43:48 | 00,285,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kstvtune.ax [2009-09-06 10:43:48 | 00,226,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kswdmcap.ax [2009-09-06 10:43:48 | 00,083,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\nabtsfec.sys [2009-09-06 10:43:48 | 00,052,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\msdv.sys [2009-09-06 10:43:48 | 00,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wstdecod.dll [2009-09-06 10:43:48 | 00,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksxbar.ax [2009-09-06 10:43:48 | 00,018,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\wstcodec.sys [2009-09-06 10:43:48 | 00,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bdaplgin.ax [2009-09-06 10:43:48 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ccdecode.sys [2009-09-06 10:43:48 | 00,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mpe.sys [2009-09-06 10:43:48 | 00,014,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\streamip.sys [2009-09-06 10:43:48 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsink.ax [2009-09-06 10:43:48 | 00,011,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\bdasup.sys [2009-09-06 10:43:48 | 00,010,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\slip.sys [2009-09-06 10:43:48 | 00,010,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\ndisip.sys [2009-09-06 10:43:47 | 00,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\mstee.sys [2009-09-06 10:43:46 | 01,798,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qedit.dll [2009-09-06 10:43:46 | 00,173,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qasf.dll [2009-09-06 10:43:46 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksolay.ax [2009-09-06 10:43:45 | 01,962,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quartz.dll [2009-09-06 10:43:45 | 00,470,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qdvd.dll [2009-09-06 10:43:45 | 00,316,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qdv.dll [2009-09-06 10:43:45 | 00,257,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qcap.dll [2009-09-06 10:43:45 | 00,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\devenum.dll [2009-09-06 10:43:45 | 00,010,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxapi.sys [2009-09-06 10:43:44 | 00,590,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3dramp.dll [2009-09-06 10:43:44 | 00,436,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3dim.dll [2009-09-06 10:43:44 | 00,350,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3drm.dll [2009-09-06 10:43:44 | 00,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3dxof.dll [2009-09-06 10:43:44 | 00,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3dpmesh.dll [2009-09-06 10:43:43 | 01,201,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3d8.dll [2009-09-06 10:43:43 | 00,974,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxdiag.exe [2009-09-06 10:43:43 | 00,667,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dinput8.dll [2009-09-06 10:43:43 | 00,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmime.dll [2009-09-06 10:43:43 | 00,122,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmusic.dll [2009-09-06 10:43:43 | 00,100,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmsynth.dll [2009-09-06 10:43:43 | 00,098,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmstyle.dll [2009-09-06 10:43:43 | 00,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmscript.dll [2009-09-06 10:43:43 | 00,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmcompos.dll [2009-09-06 10:43:43 | 00,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmloader.dll [2009-09-06 10:43:43 | 00,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmband.dll [2009-09-06 10:43:43 | 00,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dswave.dll [2009-09-06 10:43:42 | 00,491,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsdmoprp.dll [2009-09-06 10:43:42 | 00,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvoice.dll [2009-09-06 10:43:42 | 00,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsdmo.dll [2009-09-06 10:43:42 | 00,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvvox.dll [2009-09-06 10:43:42 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvsetup.exe [2009-09-06 10:43:42 | 00,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dxdllreg.exe [2009-09-06 10:43:42 | 00,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvacm.dll [2009-09-06 10:43:41 | 01,294,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsound3d.dll [2009-09-06 10:43:41 | 01,189,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dx8vb.dll [2009-09-06 10:43:41 | 00,797,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3dim700.dll [2009-09-06 10:43:41 | 00,723,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnet.dll [2009-09-06 10:43:41 | 00,648,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dinput.dll [2009-09-06 10:43:41 | 00,602,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dx7vb.dll [2009-09-06 10:43:41 | 00,467,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\diactfrm.dll [2009-09-06 10:43:41 | 00,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsound.dll [2009-09-06 10:43:41 | 00,292,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ddraw.dll [2009-09-06 10:43:41 | 00,230,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dplayx.dll [2009-09-06 10:43:41 | 00,223,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\gcdef.dll [2009-09-06 10:43:41 | 00,208,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\joy.cpl [2009-09-06 10:43:41 | 00,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpwsockx.dll [2009-09-06 10:43:41 | 00,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpmodemx.dll [2009-09-06 10:43:41 | 00,068,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnhupnp.dll [2009-09-06 10:43:41 | 00,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dimap.dll [2009-09-06 10:43:41 | 00,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnhpast.dll [2009-09-06 10:43:41 | 00,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pid.dll [2009-09-06 10:43:41 | 00,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dplaysvr.exe [2009-09-06 10:43:41 | 00,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ddrawex.dll [2009-09-06 10:43:41 | 00,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnsvr.exe [2009-09-06 10:43:41 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\d3d8thk.dll [2009-09-06 10:43:41 | 00,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnlobby.dll [2009-09-06 10:43:41 | 00,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnaddr.dll [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [1 C:\WINDOWS\System32\*.tmp files] [1 C:\WINDOWS\*.tmp files] [2009-10-05 18:43:09 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2009-10-05 18:43:05 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2009-10-05 18:43:04 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2009-10-05 12:05:05 | 00,043,500 | RHS- | M] () -- C:\winfile.jpg [2009-10-05 12:05:05 | 00,043,500 | RHS- | M] () -- C:\WINDOWS\System32\winjpg.jpg [2009-10-05 12:05:05 | 00,000,110 | RHS- | M] () -- C:\autorun.inf [2009-10-03 11:29:06 | 05,508,328 | ---- | M] () -- C:\Documents and Settings\Skejcik\Pulpit\mor w.a - tam i z powrotem feat lui.mp3 [2009-09-30 09:52:34 | 00,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2009-09-29 19:41:28 | 00,453,951 | ---- | M] () -- C:\Documents and Settings\Skejcik\Pulpit\p1030046x.jpg [2009-09-29 11:06:59 | 00,003,477 | ---- | M] () -- C:\Documents and Settings\Skejcik\Pulpit\glitery-pl_avatary514.jpg [2009-09-25 08:36:40 | 00,010,240 | ---- | M] () -- C:\Documents and Settings\Skejcik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-09-25 07:56:29 | 00,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2009-09-23 09:13:30 | 00,007,168 | ---- | M] () -- C:\WINDOWS\System32\winxp.exe [2009-09-22 07:08:49 | 00,030,717 | ---- | M] () -- C:\Documents and Settings\Skejcik\Pulpit\P1030168.JPG [2009-09-21 19:09:00 | 00,001,833 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Assassin's Creed.lnk [2009-09-18 20:19:12 | 00,000,761 | ---- | M] () -- C:\Documents and Settings\Skejcik\Pulpit\Play Need for Speed - Shift.lnk [2009-09-16 21:55:54 | 06,949,536 | -H-- | M] () -- C:\Documents and Settings\Skejcik\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-09-16 18:22:47 | 00,148,736 | ---- | M] (Avanquest Software) -- C:\Documents and Settings\All Users\Dane aplikacji\hpe31.dll [2009-09-10 07:07:35 | 00,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2009-09-08 21:41:14 | 00,000,791 | ---- | M] () -- C:\Documents and Settings\Skejcik\Pulpit\The Witcher.lnk [2009-09-08 10:16:13 | 00,138,184 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2009-09-08 10:16:06 | 00,183,112 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.exe [color=#E56717]========== Files - No Company Name ==========[/color] [2009-10-03 10:33:24 | 05,508,328 | ---- | C] () -- C:\Documents and Settings\Skejcik\Pulpit\mor w.a - tam i z powrotem feat lui.mp3 [2009-09-29 19:41:27 | 00,453,951 | ---- | C] () -- C:\Documents and Settings\Skejcik\Pulpit\p1030046x.jpg [2009-09-29 11:06:59 | 00,003,477 | ---- | C] () -- C:\Documents and Settings\Skejcik\Pulpit\glitery-pl_avatary514.jpg [2009-09-25 07:56:29 | 00,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2009-09-23 09:13:30 | 00,043,500 | RHS- | C] () -- C:\winfile.jpg [2009-09-23 09:13:30 | 00,043,500 | RHS- | C] () -- C:\WINDOWS\System32\winjpg.jpg [2009-09-23 09:13:30 | 00,007,168 | ---- | C] () -- C:\WINDOWS\System32\winxp.exe [2009-09-23 09:13:30 | 00,000,110 | RHS- | C] () -- C:\autorun.inf [2009-09-22 07:07:48 | 00,030,717 | ---- | C] () -- C:\Documents and Settings\Skejcik\Pulpit\P1030168.JPG [2009-09-21 19:09:00 | 00,001,833 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Assassin's Creed.lnk [2009-09-18 20:19:12 | 00,000,761 | ---- | C] () -- C:\Documents and Settings\Skejcik\Pulpit\Play Need for Speed - Shift.lnk [2009-09-08 21:40:52 | 00,000,791 | ---- | C] () -- C:\Documents and Settings\Skejcik\Pulpit\The Witcher.lnk [2009-09-06 10:43:48 | 00,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2009-09-06 10:43:48 | 00,052,224 | ---- | C] () -- C:\WINDOWS\System32\msdvbnp.ax [2009-09-06 10:43:48 | 00,030,208 | ---- | C] () -- C:\WINDOWS\System32\psisrndr.ax [2009-09-06 10:43:46 | 00,733,184 | ---- | C] () -- C:\WINDOWS\System32\dllcache\qedwipes.dll [2009-09-06 10:43:45 | 00,136,192 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mpg2splt.ax [2009-09-06 10:43:45 | 00,064,512 | ---- | C] () -- C:\WINDOWS\System32\dllcache\amstream.dll [2009-09-06 10:43:45 | 00,034,304 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mciqtz32.dll [2009-09-06 10:43:45 | 00,013,312 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdmo.dll [2009-09-04 10:53:58 | 00,278,984 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys [2009-09-04 10:53:57 | 00,025,416 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys [2009-08-28 10:38:27 | 00,138,184 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2009-08-27 17:26:00 | 00,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2009-08-27 12:48:20 | 00,000,010 | ---- | C] () -- C:\WINDOWS\WININIT.INI [2009-08-16 19:13:36 | 00,168,448 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2009-08-16 19:13:36 | 00,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2009-08-16 19:13:34 | 03,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2009-08-16 19:13:34 | 00,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2009-08-16 19:13:34 | 00,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2009-08-16 19:13:32 | 00,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2009-08-16 19:13:32 | 00,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2009-08-14 16:28:21 | 00,010,240 | ---- | C] () -- C:\Documents and Settings\Skejcik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-08-11 08:39:43 | 00,721,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2009-08-11 02:29:49 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\desktop.ini [2009-08-11 01:14:39 | 00,005,330 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini [2009-08-11 01:14:38 | 00,010,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2009-08-11 01:12:46 | 00,014,792 | ---- | C] () -- C:\Documents and Settings\Skejcik\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2009-08-11 01:11:40 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\Skejcik\Dane aplikacji\desktop.ini [2009-08-11 01:08:06 | 00,005,376 | ---- | C] () -- C:\WINDOWS\System32\antiwpa.dll [2009-08-10 22:58:15 | 00,005,606 | ---- | C] () -- C:\WINDOWS\System32\stci.dll [2009-08-10 22:53:12 | 06,949,536 | -H-- | C] () -- C:\Documents and Settings\Skejcik\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-08-10 22:45:39 | 00,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4924.dll [2009-08-03 00:21:54 | 00,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll [2009-08-03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2009-08-03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll [2009-08-03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll [2009-08-03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2009-08-03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll [2009-08-03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll [2009-08-03 00:21:54 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll [2009-08-03 00:21:52 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll [2009-08-03 00:21:52 | 00,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll [2009-07-21 04:27:55 | 00,000,081 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.ini [2009-07-21 04:27:31 | 00,394,240 | ---- | C] () -- C:\WINDOWS\System32\HMTCD.dll [2009-07-14 17:15:00 | 00,178,432 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat [2008-04-15 16:30:00 | 00,061,440 | ---- | C] () -- C:\WINDOWS\System32\CopyToSendTo.dll [2008-04-15 16:30:00 | 00,000,507 | ---- | C] () -- C:\WINDOWS\win.ini [2008-04-15 16:30:00 | 00,000,231 | ---- | C] () -- C:\WINDOWS\system.ini [2000-04-07 11:26:36 | 00,013,620 | ---- | C] () -- C:\WINDOWS\System32\drivers\KBFILTR.SYS [color=#E56717]========== LOP Check ==========[/color] [2009-09-24 18:29:02 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji [2009-08-26 10:56:14 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ahead [2009-08-28 07:44:00 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ATI [2009-09-17 06:54:18 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software [2009-08-11 08:41:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2009-08-26 10:57:56 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe [2009-09-21 19:09:51 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ubisoft [2009-08-11 01:07:42 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\Default User\Dane aplikacji [2009-08-11 01:06:32 | 00,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji [2009-08-11 01:09:36 | 00,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji [2009-09-21 19:11:43 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji [2009-08-26 10:58:42 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\Ahead [2009-04-02 02:04:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\ATI [2009-08-11 08:43:11 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\DAEMON Tools Lite [2009-08-25 16:15:52 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\DAEMON Tools Pro [2009-08-11 08:37:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\Gadu-Gadu [2009-08-28 10:23:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\Leadertech [2009-08-14 17:15:52 | 00,000,000 | RH-D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\SecuROM [2009-09-21 19:11:43 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Skejcik\Dane aplikacji\Ubisoft [2008-04-15 16:30:00 | 00,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\desktop.ini [2009-10-05 18:43:05 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT [color=#E56717]========== Purity Check ==========[/color] < End of report >[/log]
Psycholandia komentarz 4 października 2009 komentarz 4 października 2009 W okienko OTL wklej poniższy skrypt i klik na Run Fix: [code]:Processes explorer.exe :OTL O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKU\S-1-5-21-583907252-1659004503-1801674531-1003\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O4 - HKLM..\Run: [regdiit] C:\WINDOWS\System32\winxp.exe () O4 - HKU\.DEFAULT..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe File not found O4 - HKU\S-1-5-18..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe File not found O4 - HKU\S-1-5-20..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe File not found O32 - AutoRun File - [2009-10-05 12:05:05 | 00,000,110 | RHS- | M] () - C:\autorun.inf -- [ NTFS ] O33 - MountPoints2\{378661ec-a2c8-11de-acc1-001966c2bd3b}\Shell - "" = AutoRun O33 - MountPoints2\{701c9e9c-989c-11de-ac99-000e50e2a775}\Shell\AutoRun\command - "" = g8k.exe O33 - MountPoints2\{701c9e9c-989c-11de-ac99-000e50e2a775}\Shell\open\Command - "" = g8k.exe O33 - MountPoints2\{f25910fe-b0b4-11de-860f-000e50e2a775}\Shell - "" = AutoRun O33 - MountPoints2\D\Shell - "" = AutoRun O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\H\Shell - "" = AutoRun :Files C:\Program Files\DAEMON Tools Toolbar C:\autorun.inf C:\winfile.jpg C:\WINDOWS\System32\winjpg.jpg C:\WINDOWS\System32\winxp.exe :Commands [emptytemp] [start explorer] [Reboot][/code] Daj nowego loga z OTL + tego powstałego po usuwaniu Otwórz notatnik tekstowy i wklej do niego poniższy tekst: [code]Windows Registry Editor Version 5.00 [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2] [/code] Zapisz jako->Wybierz [b]Wszystkie pliki[/b]->wpisz [b]Fix.reg[/b]->Następnie kliknij na zapisany plik i uruchom komputer ponownie. Przeskanuj komputer tym: [url="http://www.programosy.pl/program,malwarebytes-anti-malware.html"]Malware[/url] usuń wszystko co znajdzie i daj loga po kasowaniu (loga z Malware) 1
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.