x-kom hosting

Spowolnienie systemu podczas grania GTA IV

Lisek*
utworzono
utworzono

Otóż mam taki problem,
pojawił sie nie dawno podczas instalacji gta IV zauważyłem,że komputer strasznie spowalnia swoją pracę nawet muzyka się cieła i strasznie muliła.
Teraz kiedy wszystko instaluje(Nawet próbowałem na gothic1 strasznie muli kompa ,czy format pomoże??
I czym może byc to spowodowane :D

Pozdrawiam

[color="#FF0000"]//Nie zmieniamy czcionki bez powodu, używamy normalnej.
//Qn.[/color]

Gość
komentarz
komentarz

Spowodowane to może być naprawdę wieloma rzeczami. Na poczatek sprawdz uzycie procesora. Jak sprawdzisz to napisz cos poradzimy :)

Lisek*
komentarz
komentarz (edytowane)

Podczas instalacji użycie waha si.e miedzy 3 a 40%

rokko
komentarz
komentarz

[quote]I czym może byc to spowodowane :D [/quote]
Wykonaj screen z podglądem na wszystkie procesy i użyciem czasu procesora przez każdy z nich. Użyj do tego celu aplikacji Process Explorer.

Lisek*
komentarz
komentarz (edytowane)

mam screen
[img]http://img249.imageshack.us/i/forum2w.png/][IMG]http://img249.imageshack.us/img249/5048/forum2w.th.png[/img]

http://img249.imageshack.us/i/forum2w.png/%5D%5BIMG%5Dhttp://img249.imageshack.us/img249/5048/%20forum2w.th.png

Doman
komentarz
komentarz

A może Ci się nagrzewa jakiś procesor??
-główny
-od grafiki
Musisz to sprawdzić, a może ram?? jak masz mało ram to też może Ci się komputer przymulać...

Lisek*
komentarz
komentarz

Jak instalowałem gta IV i chodziło na medium to można było sie domyśleć ze nie mam za mało ramu

W moim przypadku format pomoże ?

Psycholandia
komentarz
komentarz

Wykonaj optymalizację: http://www.forumpc.pl/index.php?showtopic=17478
Zmień antywirusa z Avasta na darmową Avirę.
I odhacz co niepotrzebne z msconfig (czyli wchodzisz w start, uruchom, wpisujesz: msconfig i zakładka uruchamianie)

Lisek*
komentarz
komentarz

Nic nie pomogło

Może format zrobić :D

Xpose
komentarz
komentarz

przeskanuj kompa antywirusem

Lisek*
komentarz
komentarz

I wykryło mi tylko reklamiarzy

:D Wczoraj skanował się ponad 2.5h

Psycholandia
komentarz
komentarz

Daj loga z OTL: http://www.forumpc.pl/index.php?showtopic=104338

Lisek*
komentarz
komentarz (edytowane)

[log]OTL logfile created on: 2009-10-30 18:08:57 - Run 1
OTL by OldTimer - Version 3.0.22.1 Folder = D:\Moje dokumenty\Pobieranie
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 1,56 Gb Available Physical Memory | 78,27% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 100,00% Paging File free
Paging file location(s): [Binary data over 100 bytes]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 40,00 Gb Total Space | 16,50 Gb Free Space | 41,25% Space Free | Partition Type: NTFS
Drive D: | 407,16 Gb Total Space | 335,37 Gb Free Space | 82,37% Space Free | Partition Type: NTFS
Drive E: | 4,83 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: DAVID
Current User Name: q
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2009-10-30 18:07:07 | 00,521,728 | ---- | M] (OldTimer Tools) -- D:\Moje dokumenty\Pobieranie\OTL.exe
PRC - [2009-10-30 07:17:25 | 00,908,280 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2009-06-30 10:31:43 | 00,075,064 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe
PRC - [2009-03-12 01:25:16 | 00,233,472 | ---- | M] (Teruten) -- C:\WINDOWS\System32\FsUsbExService.Exe
PRC - [2008-07-23 15:25:45 | 00,348,344 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
PRC - [2008-07-19 15:38:34 | 00,078,008 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe
PRC - [2008-07-19 15:38:28 | 00,147,640 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe
PRC - [2008-07-19 15:38:04 | 00,250,040 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
PRC - [2008-07-19 15:25:06 | 00,016,056 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
PRC - [2008-04-14 21:51:18 | 01,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE
PRC - [2008-02-18 15:29:12 | 00,877,864 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
PRC - [2007-10-31 13:09:16 | 00,110,592 | ---- | M] (Apple, Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2007-05-28 17:57:54 | 00,275,968 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2007-04-12 16:44:00 | 00,163,908 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc32.exe
PRC - [2006-12-19 08:30:26 | 00,081,920 | ---- | M] (Prolific Technology Inc.) -- C:\WINDOWS\System32\IoctlSvc.exe
PRC - [2006-06-28 18:01:00 | 00,032,768 | R--- | M] (Creative Technology Ltd.) -- C:\WINDOWS\V0220Mon.exe
PRC - [2001-02-23 09:07:30 | 00,270,336 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe

[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2009-06-30 10:31:43 | 00,075,064 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrA.exe -- (PnkBstrA [Auto | Running])
SRV - [2009-03-12 01:25:16 | 00,233,472 | ---- | M] (Teruten) -- C:\WINDOWS\System32\FsUsbExService.Exe -- (FsUsbExService [Auto | Running])
SRV - [2008-07-29 20:10:04 | 00,046,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0 [On_Demand | Stopped])
SRV - [2008-07-29 18:24:50 | 00,881,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc [Unknown | Stopped])
SRV - [2008-07-29 18:16:38 | 00,132,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing [Disabled | Stopped])
SRV - [2008-07-25 10:17:02 | 00,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [On_Demand | Stopped])
SRV - [2008-07-25 10:16:40 | 00,034,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe -- (aspnet_state [On_Demand | Stopped])
SRV - [2008-07-23 15:25:45 | 00,348,344 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe -- (avast! Web Scanner [On_Demand | Running])
SRV - [2008-07-19 15:38:28 | 00,147,640 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe -- (avast! Antivirus [Auto | Running])
SRV - [2008-07-19 15:38:04 | 00,250,040 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe -- (avast! Mail Scanner [On_Demand | Running])
SRV - [2008-07-19 15:25:06 | 00,016,056 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv [Auto | Running])
SRV - [2008-04-14 22:50:34 | 00,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\irmon.dll -- (Irmon [Auto | Running])
SRV - [2008-04-14 21:50:46 | 00,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running])
SRV - [2008-04-07 08:17:30 | 00,430,592 | ---- | M] (Nokia.) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer [On_Demand | Stopped])
SRV - [2008-02-28 16:07:48 | 00,529,704 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe -- (NMIndexingService [On_Demand | Stopped])
SRV - [2008-02-18 15:29:12 | 00,877,864 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe -- (Nero BackItUp Scheduler 3 [Auto | Running])
SRV - [2007-10-31 13:09:16 | 00,110,592 | ---- | M] (Apple, Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device [Auto | Running])
SRV - [2007-05-28 17:57:54 | 00,275,968 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE [Auto | Running])
SRV - [2007-04-12 16:44:00 | 00,163,908 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvsvc32.exe -- (NVSvc [Auto | Running])
SRV - [2006-12-19 08:30:26 | 00,081,920 | ---- | M] (Prolific Technology Inc.) -- C:\WINDOWS\System32\IoctlSvc.exe -- (PLFlash DeviceIoControl Service [Auto | Running])
SRV - [2005-04-03 23:41:10 | 00,069,632 | ---- | M] (Macrovision Corporation) -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe -- (IDriverT [On_Demand | Stopped])
SRV - [2001-02-23 09:07:30 | 00,270,336 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe -- (MDM [Auto | Running])

[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2009-07-19 12:12:23 | 00,721,904 | ---- | M] () -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd [Boot | Running])
DRV - [2009-03-12 01:25:16 | 00,036,608 | ---- | M] () -- C:\WINDOWS\System32\FsUsbExDisk.SYS -- (FsUsbExDisk [On_Demand | Running])
DRV - [2009-03-02 15:12:06 | 00,021,035 | ---- | M] (Meetinghouse Data Communications) -- C:\WINDOWS\System32\DRIVERS\AegisP.sys -- (AegisP [Auto | Running])
DRV - [2008-08-20 18:58:58 | 00,044,944 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys -- (PxHelp20 [Boot | Running])
DRV - [2008-07-23 15:07:56 | 00,015,600 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\gdrv.sys -- (gdrv [On_Demand | Stopped])
DRV - [2008-07-19 15:37:42 | 00,020,560 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\DRIVERS\aswFsBlk.sys -- (aswFsBlk [Auto | Running])
DRV - [2008-07-19 15:37:21 | 00,094,416 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2 [Auto | Running])
DRV - [2008-07-19 15:35:18 | 00,078,416 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP [System | Running])
DRV - [2008-07-19 15:33:42 | 00,023,152 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr [On_Demand | Running])
DRV - [2008-07-19 15:32:36 | 00,042,912 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi [System | Running])
DRV - [2008-07-19 15:32:15 | 00,026,944 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4 [System | Running])
DRV - [2008-04-14 21:33:40 | 00,031,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\DRIVERS\wceusbsh.sys -- (wceusbsh [System | Stopped])
DRV - [2008-04-13 21:09:18 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\System32\DRIVERS\secdrv.sys -- (Secdrv [On_Demand | Stopped])
DRV - [2008-04-13 21:06:06 | 00,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\System32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running])
DRV - [2007-12-17 12:30:44 | 00,269,824 | ---- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\DRIVERS\RTL8187.sys -- (RTLWUSB [On_Demand | Running])
DRV - [2007-12-12 11:55:36 | 04,635,648 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys -- (IntcAzAudAddService [On_Demand | Running])
DRV - [2007-10-23 11:51:04 | 00,103,296 | R--- | M] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\DRIVERS\Rtenicxp.sys -- (RTLE8023xp [On_Demand | Running])
DRV - [2007-09-17 14:53:26 | 00,021,632 | ---- | M] (Nokia) -- C:\WINDOWS\System32\DRIVERS\pccsmcfd.sys -- (pccsmcfd [On_Demand | Stopped])
DRV - [2007-04-12 16:44:00 | 06,738,656 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\DRIVERS\nv4_mini.sys -- (nv [On_Demand | Running])
DRV - [2006-11-27 15:33:54 | 00,019,968 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\DRIVERS\nvnetbus.sys -- (nvnetbus [On_Demand | Stopped])
DRV - [2006-11-27 15:33:50 | 00,058,368 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\DRIVERS\NVENETFD.sys -- (NVENETFD [On_Demand | Stopped])
DRV - [2006-10-18 15:31:38 | 00,105,472 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\DRIVERS\nvata.sys -- (nvata [Boot | Running])
DRV - [2006-06-29 06:58:28 | 00,146,112 | R--- | M] (Creative Technology Ltd.) -- C:\WINDOWS\System32\DRIVERS\V0220Dev.sys -- (V0220Dev [On_Demand | Running])
DRV - [2006-06-18 22:51:32 | 00,043,520 | ---- | M] (Advanced Micro Devices) -- C:\WINDOWS\System32\DRIVERS\AmdK8.sys -- (AmdK8 [System | Stopped])
DRV - [2006-06-08 09:00:52 | 00,006,272 | R--- | M] (EyePower Games Pte. Ltd.) -- C:\WINDOWS\System32\DRIVERS\V0220Vfx.sys -- (V0220Vfx [On_Demand | Running])
DRV - [2004-09-03 18:23:10 | 00,115,680 | ---- | M] (Protection Technology) -- C:\WINDOWS\System32\drivers\prohlp02.sys -- (prohlp02 [Boot | Running])
DRV - [2004-09-03 18:19:07 | 00,054,368 | ---- | M] (Protection Technology) -- C:\WINDOWS\System32\drivers\prodrv06.sys -- (prodrv06 [System | Running])
DRV - [2004-07-19 15:49:54 | 00,007,040 | ---- | M] (Protection Technology) -- C:\WINDOWS\System32\drivers\prosync1.sys -- (prosync1 [Boot | Running])
DRV - [2003-12-01 16:20:52 | 00,004,832 | ---- | M] (Protection Technology) -- C:\WINDOWS\System32\drivers\sfhlp01.sys -- (sfhlp01 [Boot | Running])
DRV - [2001-08-17 21:51:32 | 00,018,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\DRIVERS\irsir.sys -- (irsir [On_Demand | Running])
DRV - [2001-08-17 20:49:56 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\System32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running])

[color=#E56717]========== Modules (SafeList) ==========[/color]

MOD - [2009-10-30 18:07:07 | 00,521,728 | ---- | M] (OldTimer Tools) -- D:\Moje dokumenty\Pobieranie\OTL.exe
MOD - [2008-04-14 21:29:10 | 01,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll

[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie


IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-2052111302-602609370-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKU\S-1-5-21-2052111302-602609370-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-2052111302-602609370-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google
IE - HKU\S-1-5-21-2052111302-602609370-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKU\S-1-5-21-2052111302-602609370-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com/?SearchSource=10&ctid=CT1814311
IE - HKU\S-1-5-21-2052111302-602609370-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-2052111302-602609370-839522115-1003\..\URLSearchHook: {72ae8426-3b8d-4ead-b191-8d0ad1c62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-2052111302-602609370-839522115-1003\S-1-5-21-2052111302-602609370-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultthis.engineName: "P2P Max Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1814311&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "P2P Max Customized Web Search"
FF - prefs.js..browser.startup.homepage: "http://www.onet.pl/"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.1
FF - prefs.js..extensions.enabledItems: {72ae8426-3b8d-4ead-b191-8d0ad1c62158}:2.1.0.18
FF - prefs.js..extensions.enabledItems: {1B33E42F-EF14-4cd3-B6DC-174571C4349C}:3.5
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.4
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1814311&SearchSource=2&q="

FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009-09-06 20:23:44 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.4\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009-10-30 14:51:39 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.5.4\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009-10-30 07:17:30 | 00,000,000 | ---D | M]

[2009-08-20 21:17:41 | 00,000,000 | ---D | M] -- C:\Documents and Settings\q\Dane aplikacji\mozilla\Extensions
[2009-08-20 21:17:41 | 00,000,000 | ---D | M] -- C:\Documents and Settings\q\Dane aplikacji\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009-10-29 18:59:59 | 00,000,000 | ---D | M] -- C:\Documents and Settings\q\Dane aplikacji\mozilla\Firefox\Profiles\9tml34m8.default\extensions
[2009-10-06 17:21:10 | 00,000,000 | ---D | M] -- C:\Documents and Settings\q\Dane aplikacji\mozilla\Firefox\Profiles\9tml34m8.default\extensions\{1B33E42F-EF14-4cd3-B6DC-174571C4349C}
[2009-10-14 12:40:31 | 00,000,000 | ---D | M] -- C:\Documents and Settings\q\Dane aplikacji\mozilla\Firefox\Profiles\9tml34m8.default\extensions\{72ae8426-3b8d-4ead-b191-8d0ad1c62158}
[2009-10-23 18:42:26 | 00,000,000 | ---D | M] -- C:\Documents and Settings\q\Dane aplikacji\mozilla\Firefox\Profiles\9tml34m8.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2009-06-29 09:38:42 | 00,000,876 | ---- | M] () -- C:\Documents and Settings\q\Dane aplikacji\Mozilla\FireFox\Profiles\9tml34m8.default\searchplugins\conduit.xml
[2009-08-20 21:16:53 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009-10-30 07:17:30 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009-10-30 07:17:24 | 00,023,544 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009-10-30 07:17:24 | 00,137,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2009-09-27 08:36:52 | 00,075,568 | ---- | M] (ShenZhen Xunlei Networking Technologies,LTD) -- C:\Program Files\mozilla firefox\components\ThunderComponent.dll
[2007-04-10 16:21:08 | 00,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\mozilla firefox\plugins\np-mswmp.dll
[2009-10-30 07:17:25 | 00,065,016 | ---- | M] (mozilla.org) -- C:\Program Files\mozilla firefox\plugins\npnul32.dll
[2009-07-30 23:44:16 | 00,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2009-07-30 23:44:16 | 00,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2009-07-31 00:45:26 | 00,002,371 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2009-07-30 23:44:16 | 00,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2009-07-30 23:44:16 | 00,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2009-07-30 23:44:16 | 00,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2009-07-30 23:44:16 | 00,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml

O1 HOSTS File: (742 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (P2P Max Toolbar) - {72ae8426-3b8d-4ead-b191-8d0ad1c62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Documents and Settings\q\Dane aplikacji\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (P2P Max Toolbar) - {72ae8426-3b8d-4ead-b191-8d0ad1c62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-2052111302-602609370-839522115-1003\..\Toolbar\ShellBrowser: (P2P Max Toolbar) - {72AE8426-3B8D-4EAD-B191-8D0AD1C62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-2052111302-602609370-839522115-1003\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-2052111302-602609370-839522115-1003\..\Toolbar\WebBrowser: (P2P Max Toolbar) - {72AE8426-3B8D-4EAD-B191-8D0AD1C62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [V0220Mon.exe] C:\WINDOWS\V0220Mon.exe (Creative Technology Ltd.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2052111302-602609370-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O8 - Extra context menu item: ?????? - Reg Error: Value error. File not found
O8 - Extra context menu item: ?????????? - Reg Error: Value error. File not found
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: 使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\geturl.htm File not found
O8 - Extra context menu item: 使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\getallurl.htm File not found
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Java Plug-in 1.6.0_03)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.100
O18 - Protocol\Handler\cdo {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\System32\userinit.exe ()
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O29 - HKLM SecurityProviders - (mcenspc.dll) - C:\WINDOWS\System32\mcenspc.dll ()
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008-07-23 20:50:48 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2008-10-27 04:57:37 | 00,410,896 | R--- | M] (Electronic Arts) - E:\AutoRun.exe -- [ UDF ]
O32 - AutoRun File - [2008-10-27 04:57:37 | 00,410,896 | R--- | M] (Electronic Arts) - E:\Autorun.exe -- [ UDF ]
O32 - AutoRun File - [2008-10-27 04:57:38 | 11,281,920 | R--- | M] () - E:\autorun.dat -- [ UDF ]
O32 - AutoRun File - [2008-10-27 04:57:30 | 00,000,156 | R--- | M] () - E:\autorun.inf -- [ UDF ]
O33 - MountPoints2\{862575c0-197a-11de-945f-0015af74b8a4}\Shell - "" = AutoRun
O33 - MountPoints2\{862575c0-197a-11de-945f-0015af74b8a4}\Shell\1\Command - "" = K:\.\recycled\info.exe -- File not found
O33 - MountPoints2\{ffa529c3-58fc-11dd-afa9-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{ffa529c3-58fc-11dd-afa9-806d6172696f}\Shell\AutoRun\command - "" = E:\Run.exe -- File not found
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[4 C:\WINDOWS\*.tmp files]
[2009-10-28 17:11:12 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Easy CD-DA Extractor
[2009-10-06 17:15:58 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Thunder Network
[2009-10-12 14:08:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TSLOG
[2009-10-06 17:16:00 | 00,000,000 | ---D | C] -- C:\Documents and Settings\q\Dane aplikacji\Baidu
[2009-10-06 18:16:42 | 00,000,000 | ---D | C] -- C:\Documents and Settings\q\Dane aplikacji\DMCache
[2009-10-28 15:50:37 | 00,000,000 | ---D | C] -- C:\Documents and Settings\q\Dane aplikacji\IDM
[2009-10-14 11:18:20 | 00,000,000 | ---D | C] -- C:\Documents and Settings\q\Dane aplikacji\THQ
[2009-10-14 06:33:14 | 00,000,000 | ---D | C] -- C:\Documents and Settings\q\Dane aplikacji\VitySoft
[2009-10-14 12:40:33 | 00,000,000 | ---D | C] -- C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\Conduit
[2009-10-28 17:11:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\Easy CD-DA Extractor
[2009-10-14 12:40:32 | 00,000,000 | ---D | C] -- C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\P2P_Max
[2009-10-06 17:16:03 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Thunder Network
[2009-10-06 17:16:00 | 00,000,000 | ---D | C] -- C:\Program Files\Baidu
[2009-10-27 17:26:43 | 00,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2009-10-14 12:40:32 | 00,000,000 | ---D | C] -- C:\Program Files\Conduit
[2009-10-28 17:11:08 | 00,000,000 | ---D | C] -- C:\Program Files\Easy CD-DA Extractor 12
[2009-10-28 15:50:34 | 00,000,000 | ---D | C] -- C:\Program Files\Internet Download Manager
[2009-10-14 12:40:32 | 00,000,000 | ---D | C] -- C:\Program Files\P2P_Max
[2009-10-06 17:15:50 | 00,000,000 | ---D | C] -- C:\Program Files\Thunder Network
[2009-10-30 14:51:37 | 00,000,000 | -HSD | C] -- C:\Config.Msi
[2009-10-29 18:24:35 | 03,550,592 | ---- | C] (Sysinternals - www.sysinternals.com) -- D:\Moje dokumenty\procexp.exe
[2009-10-28 17:11:08 | 00,000,000 | ---D | C] -- C:\WINDOWS\Easy CD-DA Extractor 12.0.3
[2009-10-28 13:18:47 | 00,000,000 | --SD | C] -- D:\Moje dokumenty\Moje witryny
[2009-10-14 11:18:20 | 00,000,000 | ---D | C] -- D:\Moje dokumenty\My Games
[2009-10-11 08:41:18 | 00,000,000 | ---D | C] -- C:\WINDOWS\pss
[2009-10-10 16:58:29 | 00,000,000 | ---D | C] -- D:\Moje dokumenty\FIFA 10
[2009-10-10 09:13:48 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\Softwrap
[2009-10-10 09:13:48 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\Fonts
[2009-10-10 09:13:48 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\Config
[2009-10-10 09:13:43 | 00,509,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_2.dll
[2009-10-10 09:13:43 | 00,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_2.dll
[2009-10-10 09:13:43 | 00,068,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_1.dll
[2009-10-10 09:13:42 | 03,851,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_39.dll
[2009-10-10 09:13:42 | 01,493,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_39.dll
[2009-10-10 09:13:42 | 00,467,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_39.dll
[2009-10-08 15:12:00 | 00,361,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\tcpip.sys.td
[2009-10-06 18:16:42 | 00,000,000 | ---D | C] -- D:\Moje dokumenty\Downloads
[2009-10-06 17:17:32 | 00,000,000 | --SD | C] -- C:\TDDOWNLOAD

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[1 C:\WINDOWS\System32\*.tmp files]
[4 C:\WINDOWS\*.tmp files]
[2009-10-30 17:20:22 | 00,022,328 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009-10-30 17:20:16 | 00,103,736 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2009-10-30 17:01:58 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009-10-30 17:01:54 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009-10-30 17:01:50 | 21,467,29984 | -HS- | M] () -- C:\hiberfil.sys
[2009-10-30 15:47:40 | 00,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2009-10-30 15:05:15 | 00,189,744 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2009-10-30 14:37:22 | 00,024,442 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\nvidia_geforce_300.jpg
[2009-10-30 14:19:24 | 00,000,777 | ---- | M] () -- C:\WINDOWS\win.ini
[2009-10-30 14:19:24 | 00,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2009-10-30 14:19:24 | 00,000,223 | -HS- | M] () -- C:\boot.ini
[2009-10-29 20:17:54 | 00,002,267 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\Skype.lnk
[2009-10-29 19:54:16 | 03,171,700 | -H-- | M] () -- C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2009-10-29 18:37:41 | 00,091,788 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\forum2.PNG
[2009-10-29 18:25:31 | 00,087,347 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\forum1.PNG
[2009-10-29 18:12:26 | 00,075,080 | ---- | M] () -- D:\Moje dokumenty\cc_20091029_181219.reg
[2009-10-29 13:07:27 | 00,076,997 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\787781059_7.jpg
[2009-10-29 13:05:25 | 00,022,692 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\785383376_1.jpg
[2009-10-29 13:01:43 | 00,049,495 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\wzory tralek.jpg
[2009-10-29 13:00:56 | 00,092,116 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\schody_merbau_6.JPG
[2009-10-29 13:00:35 | 00,050,251 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\schody_merbau_1.JPG
[2009-10-28 17:11:12 | 00,001,679 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Easy CD-DA Extractor.lnk
[2009-10-27 19:22:25 | 00,006,842 | ---- | M] () -- D:\Moje dokumenty\cc_20091027_192222.reg
[2009-10-27 19:17:42 | 00,019,288 | ---- | M] () -- D:\Moje dokumenty\cc_20091027_191723.reg
[2009-10-27 17:29:28 | 00,398,844 | ---- | M] () -- D:\Moje dokumenty\cc_20091027_172900.reg
[2009-10-27 17:26:44 | 00,001,553 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\CCleaner.lnk
[2009-10-25 11:36:17 | 00,650,392 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\białe2.gif
[2009-10-25 11:36:01 | 00,657,852 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\białe1.gif
[2009-10-25 11:35:28 | 00,070,591 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\modell44931c 2.jpg
[2009-10-25 11:35:00 | 00,094,595 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\modell44931b 1.jpg
[2009-10-25 11:34:27 | 00,117,873 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\0.jpg
[2009-10-25 09:08:07 | 01,087,636 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009-10-25 09:08:07 | 00,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2009-10-25 09:08:07 | 00,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009-10-25 09:08:07 | 00,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2009-10-25 09:08:07 | 00,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009-10-23 16:09:26 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009-10-22 09:15:46 | 61,988,5752 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\clip0012.avi
[2009-10-21 19:43:02 | 00,031,232 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\Przyjaźń jest według Arystotelesa jedną z cnót.doc
[2009-10-18 20:29:15 | 00,237,056 | ---- | M] () -- D:\Moje dokumenty\1.doc
[2009-10-18 20:28:50 | 00,025,088 | ---- | M] () -- D:\Moje dokumenty\Test ze znajomości lektury.doc
[2009-10-18 07:33:20 | 00,024,064 | ---- | M] () -- D:\Moje dokumenty\Doris am Morgen ist sie zu einer Mutter gegangen.doc
[2009-10-17 09:47:26 | 00,262,530 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\pulpit.JPG
[2009-10-17 09:45:58 | 00,000,447 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\Wolfenstein - Enemy Territory.lnk
[2009-10-14 13:49:00 | 00,000,067 | ---- | M] () -- D:\Moje dokumenty\etkey
[2009-10-14 09:22:46 | 00,028,160 | ---- | M] () -- C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-10-13 13:32:42 | 26,705,6184 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\clip0011.avi
[2009-10-10 16:53:43 | 00,001,368 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\FIFA 10.lnk
[2009-10-10 11:51:03 | 00,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat
[2009-10-10 11:35:59 | 00,000,349 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2009-10-10 10:17:30 | 00,002,645 | ---- | M] () -- C:\Documents and Settings\All Users\Dokumenty\Global.sw2
[2009-10-10 09:13:48 | 00,000,000 | -H-- | M] () -- C:\WINDOWS\SwSys2.bmp
[2009-10-10 09:13:48 | 00,000,000 | -H-- | M] () -- C:\WINDOWS\SwSys1.bmp
[2009-10-08 18:20:30 | 00,029,184 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\umowa ze zmianami.doc
[2009-10-06 21:24:05 | 00,023,761 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\umowa ze zmianami.rtf
[2009-10-06 17:16:07 | 00,000,020 | ---- | M] () -- C:\WINDOWS\System32\pub_store.dat
[2009-10-04 10:04:57 | 00,027,648 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\Protokół oględzin mieszkania.doc
[2009-10-04 08:05:12 | 00,036,352 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\WZÓR PROTOKOŁU Z OGLĘDZIN.doc
[2009-10-01 18:49:10 | 00,020,992 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\Był 26 marzec1943r.doc
[2009-10-01 16:00:54 | 00,074,968 | ---- | M] () -- C:\Documents and Settings\q\Pulpit\IMG_3449.JPG

[color=#E56717]========== Files - No Company Name ==========[/color]
[2009-10-30 14:37:21 | 00,024,442 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\nvidia_geforce_300.jpg
[2009-10-29 18:37:41 | 00,091,788 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\forum2.PNG
[2009-10-29 18:25:30 | 00,087,347 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\forum1.PNG
[2009-10-29 18:24:35 | 00,072,138 | ---- | C] () -- D:\Moje dokumenty\procexp.chm
[2009-10-29 18:12:22 | 00,075,080 | ---- | C] () -- D:\Moje dokumenty\cc_20091029_181219.reg
[2009-10-29 13:07:27 | 00,076,997 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\787781059_7.jpg
[2009-10-29 13:05:25 | 00,022,692 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\785383376_1.jpg
[2009-10-29 13:01:43 | 00,049,495 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\wzory tralek.jpg
[2009-10-29 13:00:56 | 00,092,116 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\schody_merbau_6.JPG
[2009-10-29 13:00:35 | 00,050,251 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\schody_merbau_1.JPG
[2009-10-28 17:11:12 | 00,001,679 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Easy CD-DA Extractor.lnk
[2009-10-27 19:22:23 | 00,006,842 | ---- | C] () -- D:\Moje dokumenty\cc_20091027_192222.reg
[2009-10-27 19:17:25 | 00,019,288 | ---- | C] () -- D:\Moje dokumenty\cc_20091027_191723.reg
[2009-10-27 17:29:04 | 00,398,844 | ---- | C] () -- D:\Moje dokumenty\cc_20091027_172900.reg
[2009-10-27 17:26:44 | 00,001,553 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\CCleaner.lnk
[2009-10-25 11:30:38 | 00,117,873 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\0.jpg
[2009-10-25 11:30:18 | 00,070,591 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\modell44931c 2.jpg
[2009-10-25 11:30:07 | 00,094,595 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\modell44931b 1.jpg
[2009-10-25 11:27:51 | 00,650,392 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\białe2.gif
[2009-10-25 11:27:28 | 00,657,852 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\białe1.gif
[2009-10-22 09:07:09 | 61,988,5752 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\clip0012.avi
[2009-10-21 19:10:58 | 00,031,232 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\Przyjaźń jest według Arystotelesa jedną z cnót.doc
[2009-10-18 20:29:14 | 00,237,056 | ---- | C] () -- D:\Moje dokumenty\1.doc
[2009-10-18 20:28:50 | 00,025,088 | ---- | C] () -- D:\Moje dokumenty\Test ze znajomości lektury.doc
[2009-10-18 07:33:20 | 00,024,064 | ---- | C] () -- D:\Moje dokumenty\Doris am Morgen ist sie zu einer Mutter gegangen.doc
[2009-10-17 09:47:26 | 00,262,530 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\pulpit.JPG
[2009-10-17 09:45:58 | 00,000,447 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\Wolfenstein - Enemy Territory.lnk
[2009-10-14 13:48:46 | 00,000,067 | ---- | C] () -- D:\Moje dokumenty\etkey
[2009-10-13 13:29:20 | 26,705,6184 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\clip0011.avi
[2009-10-10 16:53:43 | 00,001,368 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\FIFA 10.lnk
[2009-10-10 11:51:03 | 00,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2009-10-10 11:35:59 | 00,000,349 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2009-10-10 09:13:48 | 00,002,645 | ---- | C] () -- C:\Documents and Settings\All Users\Dokumenty\Global.sw2
[2009-10-10 09:13:48 | 00,000,000 | -H-- | C] () -- C:\WINDOWS\SwSys2.bmp
[2009-10-10 09:13:48 | 00,000,000 | -H-- | C] () -- C:\WINDOWS\SwSys1.bmp
[2009-10-08 18:14:20 | 00,029,184 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\umowa ze zmianami.doc
[2009-10-06 19:51:12 | 00,023,761 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\umowa ze zmianami.rtf
[2009-10-06 17:16:07 | 00,000,020 | ---- | C] () -- C:\WINDOWS\System32\pub_store.dat
[2009-10-04 10:04:57 | 00,027,648 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\Protokół oględzin mieszkania.doc
[2009-10-04 08:05:12 | 00,036,352 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\WZÓR PROTOKOŁU Z OGLĘDZIN.doc
[2009-10-01 18:49:10 | 00,020,992 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\Był 26 marzec1943r.doc
[2009-10-01 16:00:54 | 00,074,968 | ---- | C] () -- C:\Documents and Settings\q\Pulpit\IMG_3449.JPG
[2009-08-07 18:51:34 | 00,178,430 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2009-06-15 13:04:07 | 00,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll
[2009-06-15 13:04:07 | 00,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys
[2009-06-15 13:04:01 | 00,002,528 | ---- | C] () -- C:\Documents and Settings\q\Dane aplikacji\$_hpcst$.hpc
[2009-03-19 07:24:14 | 00,065,536 | ---- | C] () -- C:\WINDOWS\System32\mcenspc.dll
[2009-03-15 20:06:26 | 00,001,755 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache
[2009-03-07 20:12:00 | 00,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009-03-03 12:43:55 | 00,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2009-03-02 18:27:54 | 00,028,160 | ---- | C] () -- C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-03-02 15:07:26 | 00,006,024 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2009-03-02 15:07:24 | 00,010,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2008-11-27 14:19:49 | 01,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2008-11-27 14:19:49 | 01,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2008-11-27 14:19:49 | 00,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2008-11-27 14:19:48 | 01,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2008-11-27 14:19:48 | 00,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2008-10-08 17:39:41 | 00,721,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2008-10-08 17:36:49 | 00,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2008-07-24 08:50:43 | 00,000,319 | ---- | C] () -- C:\WINDOWS\game.ini
[2008-07-24 08:39:07 | 00,009,728 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2008-07-24 08:36:38 | 00,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008-07-24 08:17:21 | 03,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2008-07-24 08:17:21 | 00,755,027 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2008-07-24 08:17:21 | 00,159,839 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2008-07-24 08:17:21 | 00,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2008-07-24 08:17:21 | 00,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2008-07-24 08:12:15 | 00,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2008-07-23 22:21:32 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\desktop.ini
[2008-07-23 20:54:32 | 00,026,520 | ---- | C] () -- C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2008-07-23 20:53:51 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\q\Dane aplikacji\desktop.ini
[2008-07-23 14:57:21 | 03,171,700 | -H-- | C] () -- C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2008-07-10 09:44:23 | 00,007,237 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2007-10-25 16:26:10 | 00,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2001-07-21 21:16:20 | 00,000,777 | ---- | C] () -- C:\WINDOWS\win.ini
[2001-07-21 21:15:52 | 00,000,227 | ---- | C] () -- C:\WINDOWS\system.ini

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 147 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DD4DD9B9
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2
< End of report >[/log]

Proszę o pomoc :D

Psycholandia
komentarz
komentarz

W okienko OTL wklej poniższy skrypt i klik na Run Fix:

[code]:Processes
explorer.exe

:OTL
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (P2P Max Toolbar) - {72ae8426-3b8d-4ead-b191-8d0ad1c62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-2052111302-602609370-839522115-1003\..\Toolbar\ShellBrowser: (P2P Max Toolbar) - {72AE8426-3B8D-4EAD-B191-8D0AD1C62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-2052111302-602609370-839522115-1003\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-2052111302-602609370-839522115-1003\..\Toolbar\WebBrowser: (P2P Max Toolbar) - {72AE8426-3B8D-4EAD-B191-8D0AD1C62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
O2 - BHO: (P2P Max Toolbar) - {72ae8426-3b8d-4ead-b191-8d0ad1c62158} - C:\Program Files\P2P_Max\tbP2P_.dll (Conduit Ltd.)
O4 - HKLM..\Run: [NPSStartup] File not found
O8 - Extra context menu item: ?????? - Reg Error: Value error. File not found
O8 - Extra context menu item: ?????????? - Reg Error: Value error. File not found
O32 - AutoRun File - [2008-10-27 04:57:37 | 00,410,896 | R--- | M] (Electronic Arts) - E:\AutoRun.exe -- [ UDF ]
O32 - AutoRun File - [2008-10-27 04:57:37 | 00,410,896 | R--- | M] (Electronic Arts) - E:\Autorun.exe -- [ UDF ]
O32 - AutoRun File - [2008-10-27 04:57:38 | 11,281,920 | R--- | M] () - E:\autorun.dat -- [ UDF ]
O32 - AutoRun File - [2008-10-27 04:57:30 | 00,000,156 | R--- | M] () - E:\autorun.inf -- [ UDF ]
O33 - MountPoints2\{862575c0-197a-11de-945f-0015af74b8a4}\Shell - "" = AutoRun
O33 - MountPoints2\{862575c0-197a-11de-945f-0015af74b8a4}\Shell\1\Command - "" = K:\.\recycled\info.exe -- File not found
O33 - MountPoints2\{ffa529c3-58fc-11dd-afa9-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{ffa529c3-58fc-11dd-afa9-806d6172696f}\Shell\AutoRun\command - "" = E:\Run.exe -- File not found

:Files
C:\Program Files\DAEMON Tools Toolbar
C:\Program Files\DAEMON Tools Toolbar

:Commands
[emptytemp]
[start explorer]
[Reboot][/code]

Otwórz notatnik tekstowy i wklej do niego poniższy tekst: [code]Windows Registry Editor Version 5.00

[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
[/code]
Zapisz jako->Wybierz [b]Wszystkie pliki[/b]->wpisz [b]Fix.reg[/b]->Następnie kliknij na zapisany plik i uruchom komputer ponownie.

Przeskanuj komputer tym: [url="http://www.programosy.pl/program,malwarebytes-anti-malware.html"]Malware[/url] usuń wszystko co znajdzie i daj loga po kasowaniu (loga z Malware)

Lisek*
komentarz
komentarz (edytowane)

Zrobiłem z tym OTL tak jak mi kazałeś

Najpierw zniknął mi paske zadań później wywaliło dwa błędy nic sie nie działo resetnołem kompa

Spróbuje jeszcze przeskanować go

wyszło mi to (skanowałem przez ten program o którym pisał[b]a[/b]ś na górze)
[img]http://img263.imageshack.us/img263/4240/scane.png[/img]
skasowałem wszystko


log:Malwarebytes' Anti-Malware 1.41
Wersja bazy definicji: 3070
Windows 5.1.2600 Dodatek Service Pack 3

2009-10-31 17:45:06
mbam-log-2009-10-31 (17-45-06).txt

Typ skanowania: Pełne skanowanie (C:\|D:\|)
Przeskanowane obiekty: 187574
Upłynęło: 23 minute(s), 13 second(s)

Zainfekowane procesy w pamięci: 0
Zainfekowane moduły pamięci: 0
Zainfekowane klucze rejestru: 3
Zainfekowane wartości rejestru: 1
Zainfekowane pliki rejestru: 3
Zainfekowane foldery: 4
Zainfekowane pliki: 2

Zainfekowane procesy w pamięci:
(Nie wykryto groźnych plików)

Zainfekowane moduły pamięci:
(Nie wykryto groźnych plików)

Zainfekowane klucze rejestru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{77fef28e-eb96-44ff-b511-3185dea48697} (Trojan.Cinmus) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b580cf65-e151-49c3-b73f-70b13fca8e86} (Trojan.Cinmus) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a7f05ee4-0426-454f-8013-c41e3596e9e9} (Trojan.Cinmus) -> Quarantined and deleted successfully.

Zainfekowane wartości rejestru:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{b580cf65-e151-49c3-b73f-70b13fca8e86} (Trojan.Cinmus) -> Quarantined and deleted successfully.

Zainfekowane pliki rejestru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Zainfekowane foldery:
C:\Documents and Settings\q\Dane aplikacji\Baidu (Trojan.Cinmus) -> Quarantined and deleted successfully.
C:\Documents and Settings\q\Dane aplikacji\Baidu\Toolbar (Trojan.Cinmus) -> Quarantined and deleted successfully.
C:\Program Files\Baidu (Adware.Baidu) -> Quarantined and deleted successfully.
C:\Program Files\Baidu\Toolbar (Adware.Baidu) -> Quarantined and deleted successfully.

Zainfekowane pliki:
C:\WINDOWS\system32\mcenspc.dll (Spyware.Passwords) -> Quarantined and deleted successfully.
C:\Documents and Settings\q\Ustawienia lokalne\Temp\ie3.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

Psycholandia
komentarz
komentarz

Pisałam ;)
Usuń wszystko. Uruchom OTL i klik w CleanUP

Lisek*
komentarz
komentarz

Nic nie pomogło

Chyba zrobię format :D

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.