x-kom hosting

explorer.exe nie uruchamia sie przy starcie

sebek345
utworzono
utworzono

Witam! Otóż explorer.exe nie uruchamia mi sie przy starcie. Ładuje sie użytkownik, a po nim widac tylko tapete, bez ikon i paska. Jestem kompletnie zielony w sprawach komputerowych, tutaj macie log'a chyba o tego chodzi. Z gory dziekuje za pomoc

[log]OTL logfile created on: 2010-02-02 22:16:02 - Run 1
OTL by OldTimer - Version 3.1.27.1 Folder = C:\Documents and Settings\anna gancaż\Pulpit
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

502,00 Mb Total Physical Memory | 103,00 Mb Available Physical Memory | 21,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 70,00% Paging File free
Paging file location(s): C:\pagefile.sys 756 1512 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 15,90 Gb Total Space | 5,44 Gb Free Space | 34,21% Space Free | Partition Type: NTFS
Drive D: | 29,29 Gb Total Space | 4,96 Gb Free Space | 16,92% Space Free | Partition Type: NTFS
Drive E: | 29,30 Gb Total Space | 3,98 Gb Free Space | 13,57% Space Free | Partition Type: NTFS
Drive F: | 62,68 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: J-6CCDF4BD33504
Current User Name: anna gancaż
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 30 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
PRC - [2010-01-11 08:24:46 | 000,307,672 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2009-08-28 19:42:54 | 000,144,672 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2009-08-06 18:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
PRC - [2009-06-19 08:59:16 | 000,906,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgemc.exe
PRC - [2009-06-11 07:57:30 | 001,368,952 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgfws8.exe
PRC - [2009-05-14 10:18:37 | 000,486,680 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgrsx.exe
PRC - [2009-05-01 08:18:13 | 000,692,504 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgcsrvx.exe
PRC - [2009-05-01 08:18:01 | 000,594,712 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgnsx.exe
PRC - [2009-05-01 08:17:58 | 000,298,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe
PRC - [2009-05-01 08:17:48 | 000,833,304 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgam.exe
PRC - [2009-02-09 12:25:57 | 000,111,104 | -H-- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2009-02-05 21:01:25 | 000,018,752 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
PRC - [2008-04-15 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-15 13:00:00 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-15 13:00:00 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\AhnRpta.exe
PRC - [2008-04-15 13:00:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-15 13:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-15 13:00:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\alg.exe
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [IMGSVC]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-15 13:00:00 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wscntfy.exe
PRC - [2008-04-15 13:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-15 13:00:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2007-12-05 11:34:52 | 000,079,136 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2007-11-26 13:54:12 | 001,554,728 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
PRC - [2004-08-11 00:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 15:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 11:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-06-17 20:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-15 13:00:00 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-15 13:00:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
MOD - [2008-04-15 13:00:00 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-15 13:00:00 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-15 13:00:00 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-15 13:00:00 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-15 13:00:00 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2008-04-15 13:00:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-15 13:00:00 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-15 13:00:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-15 13:00:00 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-15 13:00:00 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-15 13:00:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-15 13:00:00 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-15 13:00:00 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-15 13:00:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-15 13:00:00 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-15 13:00:00 | 000,061,149 | ---- | M] () -- C:\WINDOWS\system32\softqq0.dll
MOD - [2008-04-15 13:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-15 13:00:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2009-11-12 16:33:00 | 000,545,568 | ---- | M] (Apple Inc.) [On_Demand | Stopped] -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service)
SRV - [2009-08-28 19:42:54 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009-06-19 08:59:16 | 000,906,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgemc.exe -- (avg8emc)
SRV - [2009-06-11 07:57:30 | 001,368,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgfws8.exe -- (avgfws8)
SRV - [2009-05-01 08:17:58 | 000,298,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgwdsvc.exe -- (avg8wd)
SRV - [2009-02-05 21:08:40 | 000,138,680 | ---- | M] (ALWIL Software) [Auto | Stopped] -- C:\Program Files\Alwil Software\Avast4\ashServ.exe -- (avast! Antivirus)
SRV - [2009-02-05 21:08:26 | 000,254,040 | ---- | M] (ALWIL Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe -- (avast! Mail Scanner)
SRV - [2009-02-05 21:06:04 | 000,352,920 | ---- | M] (ALWIL Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe -- (avast! Web Scanner)
SRV - [2009-02-05 21:01:25 | 000,018,752 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv)
SRV - [2007-12-05 11:34:52 | 000,079,136 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService)
SRV - [2007-11-26 13:54:12 | 001,554,728 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe -- (InCDsrv)
SRV - [2007-09-17 08:36:18 | 000,800,040 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService)
SRV - [2007-06-27 17:04:00 | 000,279,848 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -- (NMIndexingService)
SRV - [2006-11-06 13:21:10 | 000,210,432 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2009-09-23 10:41:58 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2009-06-19 08:59:23 | 000,027,784 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\System32\Drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2009-06-11 07:57:35 | 000,327,688 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2009-05-18 14:17:00 | 000,026,600 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2009-05-01 08:18:04 | 000,108,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2009-05-01 08:17:53 | 000,029,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwfd)
DRV - [2009-05-01 08:17:53 | 000,029,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwdx)
DRV - [2009-05-01 08:17:48 | 000,012,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\System32\Drivers\avgrkx86.sys -- (AvgRkx86)
DRV - [2009-04-30 17:48:08 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2009-02-05 21:08:10 | 000,094,032 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2009-02-05 21:07:23 | 000,114,768 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswSP.sys -- (aswSP)
DRV - [2009-02-05 21:07:12 | 000,020,560 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2009-02-05 21:06:20 | 000,051,376 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2009-02-05 21:06:10 | 000,023,152 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2009-02-05 21:05:11 | 000,026,944 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2008-04-15 13:00:00 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv)
DRV - [2008-04-15 13:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink)
DRV - [2008-04-15 13:00:00 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usb8023.sys -- (USB_RNDIS)
DRV - [2007-11-26 13:54:12 | 000,038,440 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDRm.sys -- (incdrm)
DRV - [2007-11-26 13:54:12 | 000,036,776 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDPass.sys -- (InCDPass)
DRV - [2007-11-26 13:54:02 | 000,118,952 | ---- | M] (Nero AG) [File_System | Disabled | Running] -- C:\WINDOWS\system32\drivers\InCDfs.sys -- (InCDfs)
DRV - [2006-10-10 07:54:34 | 000,138,240 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcd.sys -- (Nokia USB Phone Parent)
DRV - [2006-10-10 07:54:32 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcj.sys -- (Nokia USB Port)
DRV - [2006-10-10 07:54:32 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcm.sys -- (Nokia USB Modem)
DRV - [2006-10-10 07:54:32 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdc.sys -- (Nokia USB Generic)
DRV - [2006-05-10 14:00:16 | 000,156,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2006-03-23 19:47:06 | 001,166,972 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ialmnt5.sys -- (ialm)
DRV - [2005-03-22 10:08:40 | 000,260,224 | ---- | M] (Analog Devices, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\smwdm.sys -- (smwdm)
DRV - [2004-09-17 08:02:54 | 000,732,928 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt)
DRV - [2003-01-07 08:32:26 | 000,015,400 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NetMotCM.sys -- (ndiscm)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm


IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = plimus.com,www.plimus.com,regnow.com,www.regnow.com,
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = socks=127.0.0.1:7070

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.startup.homepage: "http://google.atcomet.com/b/"
FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0
FF - prefs.js..extensions.enabledItems: {B042753D-F57E-4e8e-A01B-7379A6D4CEFB}:1.18
FF - prefs.js..network.proxy.no_proxies_on: "plimus.com,www.plimus.com,regnow.com,www.regnow.com,"
FF - prefs.js..network.proxy.socks: "127.0.0.1"
FF - prefs.js..network.proxy.socks_port: 7070
FF - prefs.js..network.proxy.type: 4

FF - user.js..network.proxy.type: 1
FF - user.js..network.proxy.http: ""
FF - user.js..network.proxy.http_port: 0
FF - user.js..network.proxy.ssl: ""
FF - user.js..network.proxy.ssl_port: 0
FF - user.js..network.proxy.ftp: ""
FF - user.js..network.proxy.ftp_port: 0
FF - user.js..network.proxy.gopher: ""
FF - user.js..network.proxy.gopher_port: 0
FF - user.js..network.proxy.socks_version: 5
FF - user.js..network.proxy.socks: "127.0.0.1"
FF - user.js..network.proxy.socks_port: 7070
FF - user.js..network.proxy.no_proxies_on: "plimus.com,www.plimus.com,regnow.com,www.regnow.com,"

FF - HKLM\software\mozilla\Mozilla Firefox 3.0.17\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-01-15 15:00:34 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.17\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-02-02 21:41:59 | 000,000,000 | ---D | M]

[2009-04-07 10:49:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Extensions
[2010-02-02 08:23:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions
[2010-02-02 08:13:03 | 000,000,000 | ---D | M] (BitComet Video Downloader) -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
[2010-02-02 08:05:44 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2009-04-30 18:05:24 | 000,002,399 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\searchplugins\daemon-search.xml
[2009-04-08 08:29:49 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009-11-16 16:23:30 | 000,120,296 | ---- | M] ( ) -- C:\Program Files\Mozilla Firefox\plugins\npganymedenet.dll
[2009-11-01 00:27:53 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2009-11-01 00:27:53 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2009-11-01 00:27:54 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2009-11-01 00:27:54 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2009-11-01 00:27:54 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2009-11-01 00:27:54 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2008-04-15 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.10.dll (BitComet)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software)
O4 - HKLM..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe (Microsoft Corporation)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe ()
O4 - HKU\.DEFAULT..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-18..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [amva] C:\WINDOWS\System32\amvo.exe File not found
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [BitComet] C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [cdoosoft] C:\DOCUME~1\ANNAGA~1\USTAWI~1\Temp\herss.exe File not found
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [FlashGet 3] C:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe (Trend Media Corporation Limited)
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [wsctf.exe] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Pobierz wszystkie VIdeo za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.10.dll (BitComet)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny)
O15 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.172.224.160 80.244.140.241 89.228.6.83
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (EXPLORER.EXE) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: TaskMan - (C:\Documents and Settings\anna gancaż\Dane aplikacji\fqja.exe) - C:\Documents and Settings\anna gancaż\Dane aplikacji\fqja.exe (Microsoft Corporation)
O20 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004 Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004 Winlogon: Shell - (C:\Documents and Settings\anna gancaż\Dane aplikacji\fqja.exe) - C:\Documents and Settings\anna gancaż\Dane aplikacji\fqja.exe (Microsoft Corporation)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {B03A4BE6-5E5A-483E-B9B3-C484D4B20B72} - C:\WINDOWS\system32\softqq0.dll ()
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-04-06 15:47:28 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010-02-02 21:17:14 | 000,000,059 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-02-02 21:17:14 | 000,000,059 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-02-02 21:17:14 | 000,000,059 | RHS- | M] () - E:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2003-01-07 08:32:24 | 000,000,045 | R--- | M] () - F:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{0712296e-286a-11de-a683-000ce58436c1}\Shell\AutoRun\command - "" = H:\9b9w3.exe -- File not found
O33 - MountPoints2\{0712296e-286a-11de-a683-000ce58436c1}\Shell\open\Command - "" = H:\9b9w3.exe -- File not found
O33 - MountPoints2\{0f601944-6999-11de-ab84-000ce58436c1}\Shell\AutoRun\command - "" = H:\filesystem\pagefile.exe -- File not found
O33 - MountPoints2\{0f601944-6999-11de-ab84-000ce58436c1}\Shell\eXpLorE\cOMMand - "" = H:\filesystem\pagefile.exe -- File not found
O33 - MountPoints2\{0f601944-6999-11de-ab84-000ce58436c1}\Shell\oPen\CoMMAnd - "" = H:\filesystem\pagefile.exe -- File not found
O33 - MountPoints2\{1823c2f8-5e75-11de-aa7f-000ce58436c1}\Shell\AutoRun\command - "" = H:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\winde32.exe -- File not found
O33 - MountPoints2\{1823c2f8-5e75-11de-aa7f-000ce58436c1}\Shell\open\command - "" = H:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\winde32.exe -- File not found
O33 - MountPoints2\{1c9b7f70-5aa5-11de-aa2c-000ce58436c1}\Shell\AutoRun\command - "" = H:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe -- File not found
O33 - MountPoints2\{1c9b7f70-5aa5-11de-aa2c-000ce58436c1}\Shell\open\command - "" = H:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe -- File not found
O33 - MountPoints2\{2cb2b46b-22c8-11de-b32f-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{2cb2b46b-22c8-11de-b32f-806d6172696f}\Shell\AutoRun\command - "" = F:\Launch.exe -- [2003-01-07 10:21:00 | 003,456,990 | R--- | M] (Macromedia, Inc.)
O33 - MountPoints2\{2f4347e0-dc26-11de-b395-000ce58436c1}\Shell\AutoRun\command - "" = H:\0qw6vege.exe -- File not found
O33 - MountPoints2\{2f4347e0-dc26-11de-b395-000ce58436c1}\Shell\open\Command - "" = H:\0qw6vege.exe -- File not found
O33 - MountPoints2\{38d84660-f7b6-11de-b6b7-000ce58436c1}\Shell\AutoRun\command - "" = H:\h0.exe -- File not found
O33 - MountPoints2\{38d84660-f7b6-11de-b6b7-000ce58436c1}\Shell\open\Command - "" = H:\h0.exe -- File not found
O33 - MountPoints2\{54e86eaa-8690-11de-ad9a-000ce58436c1}\Shell - "" = Autorun
O33 - MountPoints2\{54e86eaa-8690-11de-ad9a-000ce58436c1}\Shell\AutoRun\command - "" = C:\WINDOWS\System32\setup.exe -- [2008-04-15 13:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{6888f6f8-8654-11de-ad86-000ce58436c1}\Shell - "" = Autorun
O33 - MountPoints2\{6888f6f8-8654-11de-ad86-000ce58436c1}\Shell\AutoRun\command - "" = C:\WINDOWS\System32\setup.exe -- [2008-04-15 13:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation)
O33 - MountPoints2\{6d951af9-22be-11de-9af3-d2127648349a}\Shell - "" = AutoRun
O33 - MountPoints2\{6d951af9-22be-11de-9af3-d2127648349a}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -- File not found
O33 - MountPoints2\{9502e252-4a22-11de-a8b8-000ce58436c1}\Shell - "" = AutoRun
O33 - MountPoints2\{9502e252-4a22-11de-a8b8-000ce58436c1}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -- File not found
O33 - MountPoints2\{9502e253-4a22-11de-a8b8-000ce58436c1}\Shell\AutoRun\command - "" = I:\n0euybx.exe -- File not found
O33 - MountPoints2\{9502e253-4a22-11de-a8b8-000ce58436c1}\Shell\open\Command - "" = I:\n0euybx.exe -- File not found
O33 - MountPoints2\C\Shell\AutoRun\command - "" = C:\1hqup.exe -- [2010-02-01 16:43:54 | 000,090,624 | RHS- | M] ()
O33 - MountPoints2\C\Shell\open\Command - "" = C:\1hqup.exe -- [2010-02-01 16:43:54 | 000,090,624 | RHS- | M] ()
O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\1hqup.exe -- [2010-02-01 16:43:54 | 000,090,624 | RHS- | M] ()
O33 - MountPoints2\D\Shell\open\Command - "" = D:\1hqup.exe -- [2010-02-01 16:43:54 | 000,090,624 | RHS- | M] ()
O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\1hqup.exe -- [2010-02-01 16:43:54 | 000,090,624 | RHS- | M] ()
O33 - MountPoints2\E\Shell\open\Command - "" = E:\1hqup.exe -- [2010-02-01 16:43:54 | 000,090,624 | RHS- | M] ()
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\Launch.exe -- [2003-01-07 10:21:00 | 003,456,990 | R--- | M] (Macromedia, Inc.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009-04-06 15:46:59 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2010-02-02 22:06:23 | 000,548,864 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
[2010-02-02 21:42:01 | 000,225,280 | ---- | C] (My Global Search) -- C:\Program Files\Uninstall My Global Search Bar.dll
[2010-02-02 21:35:47 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\anna gancaż\Recent
[2010-02-02 08:13:13 | 000,000,000 | ---D | C] -- C:\Downloads
[2010-02-02 08:13:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BitComet
[2010-02-02 08:12:54 | 000,000,000 | ---D | C] -- C:\Program Files\BitComet
[2010-02-02 08:05:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BITS
[2010-02-02 08:05:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO
[2010-02-02 08:05:12 | 000,000,000 | ---D | C] -- C:\Program Files\FlashGet Network
[2010-02-01 21:34:42 | 000,015,400 | ---- | C] (Motorola Inc.) -- C:\WINDOWS\System32\drivers\NetMotCM.sys
[2010-01-27 12:29:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\ipla
[2010-01-27 12:29:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2010-01-27 12:29:22 | 000,000,000 | ---D | C] -- C:\Program Files\ipla
[2010-01-27 12:18:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2010-01-27 12:18:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:18:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:17:50 | 000,000,000 | ---D | C] -- C:\Program Files\Gadu-Gadu 10
[2010-01-23 21:37:44 | 001,035,264 | RHS- | C] (Microsoft Corporation) -- C:\Documents and Settings\anna gancaż\Dane aplikacji\fqja.exe
[2010-01-17 19:56:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\CyberLink
[2010-01-09 23:18:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Pulpit\Hitfaker
[2010-01-09 17:00:18 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasaoriginals
[2009-06-01 21:24:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Apple
[2009-04-07 10:42:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2009-04-07 10:42:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2009-04-07 10:42:44 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2009-04-07 10:42:44 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[4 C:\Documents and Settings\anna gancaż\Pulpit\*.tmp files -> C:\Documents and Settings\anna gancaż\Pulpit\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
[2010-02-02 21:51:01 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-02-02 21:50:29 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-02-02 21:49:22 | 005,767,168 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\NTUSER.DAT
[2010-02-02 21:49:22 | 000,000,292 | -HS- | M] () -- C:\Documents and Settings\anna gancaż\ntuser.ini
[2010-02-02 21:49:14 | 000,000,573 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-02-02 21:49:14 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-02-02 21:49:14 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2010-02-02 21:17:14 | 000,000,059 | RHS- | M] () -- C:\autorun.inf
[2010-02-02 21:08:31 | 000,000,334 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do gowna.lnk
[2010-02-02 08:13:03 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\BitComet.lnk
[2010-02-02 08:05:56 | 000,000,305 | ---- | M] () -- C:\WINDOWS\System32\secushr.dat
[2010-02-02 08:05:32 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI
[2010-02-02 08:05:21 | 000,000,876 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\FlashGet 3.3.lnk
[2010-02-02 08:05:15 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-02-02 03:56:09 | 003,721,120 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-02-01 22:24:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010-02-01 21:00:51 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-02-01 20:54:26 | 000,036,864 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-02-01 16:43:54 | 000,090,624 | RHS- | M] () -- C:\1hqup.exe
[2010-02-01 07:03:43 | 000,763,990 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-02-01 07:03:43 | 000,355,486 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-02-01 07:03:43 | 000,311,604 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-02-01 07:03:43 | 000,049,492 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-02-01 07:03:43 | 000,039,992 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-01-30 18:33:11 | 000,094,208 | RHS- | M] () -- C:\mvmdh.exe
[2010-01-30 11:04:13 | 000,000,193 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasa.ini
[2010-01-29 05:20:28 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010-01-28 12:50:45 | 000,100,864 | RHS- | M] () -- C:\0fpdq2dw.exe
[2010-01-27 12:18:47 | 000,000,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\OpenFM.lnk
[2010-01-27 12:18:46 | 000,000,678 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk
[2010-01-26 16:46:56 | 000,100,864 | RHS- | M] () -- C:\df.exe
[2010-01-26 08:30:00 | 000,097,792 | RHS- | M] () -- C:\c2e.exe
[2010-01-25 18:39:07 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-01-22 14:33:23 | 000,096,768 | RHS- | M] () -- C:\qkm.exe
[2010-01-20 18:34:32 | 000,118,272 | RHS- | M] () -- C:\9fo3ar0j.exe
[2010-01-18 18:28:24 | 000,123,392 | RHS- | M] () -- C:\sywyrl0q.exe
[2010-01-17 18:51:50 | 000,115,712 | RHS- | M] () -- C:\9xf8.exe
[2010-01-17 14:38:02 | 000,000,746 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do urodziny adama.lnk
[2010-01-16 23:01:11 | 000,015,177 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsadsa.JPG
[2010-01-16 20:21:07 | 000,118,784 | RHS- | M] () -- C:\mh.exe
[2010-01-16 11:10:02 | 000,017,792 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsa.JPG
[2010-01-15 18:44:26 | 000,120,320 | RHS- | M] () -- C:\kmj.exe
[2010-01-13 10:22:44 | 000,001,517 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Counter-Strike.lnk
[2010-01-13 10:21:01 | 000,000,453 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Steam.lnk
[2010-01-13 09:33:10 | 000,041,465 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\administracja_nst_1rok.pdf
[2010-01-12 15:57:07 | 000,121,856 | RHS- | M] () -- C:\olu392qj.exe
[2010-01-11 17:50:22 | 000,118,784 | RHS- | M] () -- C:\8xcrbho6.exe
[2010-01-09 16:51:45 | 002,178,225 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\DSC05197.JPG
[2010-01-09 16:09:51 | 000,120,832 | RHS- | M] () -- C:\ljy.exe
[2010-01-08 18:46:52 | 000,114,688 | RHS- | M] () -- C:\31lyx.exe
[2010-01-08 17:17:48 | 000,120,320 | RHS- | M] () -- C:\mltox.exe
[2010-01-07 21:43:48 | 000,121,344 | RHS- | M] () -- C:\f2kmj.exe
[2010-01-07 09:41:14 | 000,024,064 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\Sienkiewicz w opisie śmierci Janusza.doc
[2010-01-07 08:39:37 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\~$nusz ra.doc
[2010-01-06 18:25:46 | 000,118,784 | RHS- | M] () -- C:\e9naq.exe
[4 C:\Documents and Settings\anna gancaż\Pulpit\*.tmp files -> C:\Documents and Settings\anna gancaż\Pulpit\*.tmp -> ]
[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-02-02 21:08:31 | 000,000,334 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do gowna.lnk
[2010-02-02 08:13:03 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\BitComet.lnk
[2010-02-02 08:05:56 | 000,000,305 | ---- | C] () -- C:\WINDOWS\System32\secushr.dat
[2010-02-02 08:05:32 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
[2010-02-02 08:05:21 | 000,000,876 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\FlashGet 3.3.lnk
[2010-02-02 08:05:15 | 000,000,000 | ---- | C] () -- C:\bholog
[2010-01-30 18:33:45 | 000,090,624 | RHS- | C] () -- C:\1hqup.exe
[2010-01-29 18:19:14 | 000,094,208 | RHS- | C] () -- C:\mvmdh.exe
[2010-01-29 05:20:28 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010-01-28 12:50:19 | 000,100,864 | RHS- | C] () -- C:\0fpdq2dw.exe
[2010-01-27 12:18:47 | 000,000,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\OpenFM.lnk
[2010-01-27 12:18:46 | 000,000,678 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk
[2010-01-26 15:55:29 | 000,100,864 | RHS- | C] () -- C:\df.exe
[2010-01-23 15:38:55 | 000,097,792 | RHS- | C] () -- C:\c2e.exe
[2010-01-21 10:11:00 | 000,096,768 | RHS- | C] () -- C:\qkm.exe
[2010-01-19 19:10:44 | 000,118,272 | RHS- | C] () -- C:\9fo3ar0j.exe
[2010-01-18 18:28:51 | 000,123,392 | RHS- | C] () -- C:\sywyrl0q.exe
[2010-01-17 18:52:21 | 000,115,712 | RHS- | C] () -- C:\9xf8.exe
[2010-01-17 14:38:02 | 000,000,746 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do urodziny adama.lnk
[2010-01-16 23:01:11 | 000,015,177 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsadsa.JPG
[2010-01-16 17:25:58 | 000,118,784 | RHS- | C] () -- C:\mh.exe
[2010-01-16 11:10:02 | 000,017,792 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsa.JPG
[2010-01-13 16:44:53 | 000,120,320 | RHS- | C] () -- C:\kmj.exe
[2010-01-13 10:22:44 | 000,001,517 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Counter-Strike.lnk
[2010-01-13 10:20:59 | 000,000,453 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Steam.lnk
[2010-01-13 09:33:10 | 000,041,465 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\administracja_nst_1rok.pdf
[2010-01-12 15:41:37 | 000,121,856 | RHS- | C] () -- C:\olu392qj.exe
[2010-01-12 14:28:53 | 002,178,225 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\DSC05197.JPG
[2010-01-10 22:33:01 | 000,118,784 | RHS- | C] () -- C:\8xcrbho6.exe
[2010-01-09 15:23:48 | 000,120,832 | RHS- | C] () -- C:\ljy.exe
[2010-01-08 18:47:19 | 000,114,688 | RHS- | C] () -- C:\31lyx.exe
[2010-01-08 17:18:15 | 000,120,320 | RHS- | C] () -- C:\mltox.exe
[2010-01-08 12:27:38 | 000,000,193 | -H-- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasa.ini
[2010-01-07 17:58:43 | 000,121,344 | RHS- | C] () -- C:\f2kmj.exe
[2010-01-07 09:41:14 | 000,024,064 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\Sienkiewicz w opisie śmierci Janusza.doc
[2010-01-07 08:39:37 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\~$nusz ra.doc
[2010-01-04 13:53:30 | 000,118,784 | RHS- | C] () -- C:\e9naq.exe
[2009-12-09 11:28:12 | 000,000,118 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2009-10-22 08:28:53 | 000,075,864 | RHS- | C] () -- C:\WINDOWS\System32\nmdfgds1.dll
[2009-10-22 07:33:12 | 000,075,864 | RHS- | C] () -- C:\WINDOWS\System32\nmdfgds0.dll
[2009-05-20 14:42:49 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009-04-30 18:13:30 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2009-04-30 17:48:07 | 000,721,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2009-04-16 20:15:53 | 000,000,083 | ---- | C] () -- C:\WINDOWS\WWP.INI
[2009-04-08 14:53:15 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OpPrintServer.INI
[2009-04-08 08:47:29 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009-04-08 08:11:30 | 000,076,407 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Smiley.ico
[2009-04-07 11:16:07 | 000,036,864 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-04-07 10:50:24 | 000,168,448 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2009-04-07 10:50:22 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2009-04-07 10:50:22 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009-04-07 10:50:22 | 000,130,048 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2009-04-07 10:50:21 | 000,067,584 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2009-04-07 10:50:21 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2008-04-15 13:00:00 | 000,061,149 | ---- | C] () -- C:\WINDOWS\System32\softqq0.dll
[2005-12-07 10:31:00 | 000,202,752 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll

[color=#E56717]========== LOP Check ==========[/color]

[2009-04-08 08:11:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\2136B
[2009-04-08 14:45:39 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2009-04-30 18:05:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2009-07-07 11:02:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Downloaded Installations
[2010-01-27 12:18:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:29:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2009-04-28 18:52:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe
[2009-05-16 11:42:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PassMark
[2009-07-07 11:07:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2009-04-07 10:36:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\WinZip
[2009-11-21 19:07:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2010-02-02 21:16:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BitComet
[2010-02-02 21:46:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BITS
[2009-04-30 18:11:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DAEMON Tools Lite
[2010-01-02 16:51:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DAEMON Tools Pro
[2009-08-04 09:47:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DBGo
[2009-08-10 11:46:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DBnWo
[2010-02-02 08:05:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO
[2009-04-07 18:43:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu
[2010-01-29 03:41:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu 10
[2009-12-28 16:48:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\GanymedeNet
[2009-11-19 06:47:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Hide IP NG
[2010-02-02 21:45:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\ipla
[2009-06-18 15:36:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Kingston
[2009-12-04 20:14:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Leadertech
[2009-10-09 14:01:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Nokia
[2009-09-15 13:32:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Nokia Multimedia Player
[2009-07-07 11:07:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\PC Suite

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-01-28 12:50:45 | 000,100,864 | RHS- | M] () -- C:\0fpdq2dw.exe
[2009-11-18 15:23:14 | 000,114,071 | RHS- | M] () -- C:\0qw6vege.exe
[2009-11-05 14:25:23 | 000,114,602 | RHS- | M] () -- C:\1a1dndah.exe
[2010-02-01 16:43:54 | 000,090,624 | RHS- | M] () -- C:\1hqup.exe
[2010-01-08 18:46:52 | 000,114,688 | RHS- | M] () -- C:\31lyx.exe
[2009-12-29 19:30:20 | 000,103,936 | RHS- | M] () -- C:\3exi.exe
[2009-10-28 17:59:48 | 000,115,845 | RHS- | M] () -- C:\3n8awsyg.exe
[2009-11-13 17:15:36 | 000,115,082 | RHS- | M] () -- C:\6ruaqx.exe
[2010-01-11 17:50:22 | 000,118,784 | RHS- | M] () -- C:\8xcrbho6.exe
[2009-11-02 15:00:54 | 000,115,127 | RHS- | M] () -- C:\9b9w3.exe
[2010-01-20 18:34:32 | 000,118,272 | RHS- | M] () -- C:\9fo3ar0j.exe
[2009-11-17 15:09:04 | 000,114,180 | RHS- | M] () -- C:\9g86.exe
[2010-01-17 18:51:50 | 000,115,712 | RHS- | M] () -- C:\9xf8.exe
[2009-12-31 15:13:00 | 000,109,568 | RHS- | M] () -- C:\anoataly.exe
[2009-04-06 15:47:28 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-02-02 21:17:14 | 000,000,059 | RHS- | M] () -- C:\autorun.inf
[2010-02-02 08:05:15 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-02-02 21:49:14 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2008-04-15 13:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2010-01-26 08:30:00 | 000,097,792 | RHS- | M] () -- C:\c2e.exe
[2009-04-06 15:47:28 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2009-06-28 19:46:27 | 000,000,126 | ---- | M] () -- C:\CountCyclesWMVDecLog.txt
[2010-01-26 16:46:56 | 000,100,864 | RHS- | M] () -- C:\df.exe
[2010-01-06 18:25:46 | 000,118,784 | RHS- | M] () -- C:\e9naq.exe
[2009-10-25 17:28:30 | 000,114,244 | RHS- | M] () -- C:\eexyv.exe
[2010-01-07 21:43:48 | 000,121,344 | RHS- | M] () -- C:\f2kmj.exe
[2009-11-10 15:54:57 | 000,112,695 | RHS- | M] () -- C:\g12g.exe
[2009-11-01 11:44:58 | 000,115,086 | RHS- | M] () -- C:\gcq6.exe
[2010-01-03 15:44:43 | 000,120,320 | RHS- | M] () -- C:\h0.exe
[2009-10-27 16:00:05 | 000,115,072 | RHS- | M] () -- C:\hjvjte.exe
[2009-12-27 15:34:58 | 000,106,496 | RHS- | M] () -- C:\imghyva6.exe
[2009-04-06 15:47:28 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-01-15 18:44:26 | 000,120,320 | RHS- | M] () -- C:\kmj.exe
[2009-11-08 14:26:56 | 000,114,924 | RHS- | M] () -- C:\l61yyp.exe
[2010-01-09 16:09:51 | 000,120,832 | RHS- | M] () -- C:\ljy.exe
[2010-01-16 20:21:07 | 000,118,784 | RHS- | M] () -- C:\mh.exe
[2010-01-08 17:17:48 | 000,120,320 | RHS- | M] () -- C:\mltox.exe
[2009-04-06 15:47:28 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-01-30 18:33:11 | 000,094,208 | RHS- | M] () -- C:\mvmdh.exe
[2009-11-03 17:11:16 | 000,111,826 | RHS- | M] () -- C:\mwfubaob.exe
[2009-06-29 09:38:02 | 000,106,931 | RHS- | M] () -- C:\n0euybx.exe
[2008-04-15 13:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2008-04-15 13:00:00 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-01-12 15:57:07 | 000,121,856 | RHS- | M] () -- C:\olu392qj.exe
[2009-11-15 16:39:36 | 000,116,522 | RHS- | M] () -- C:\opdux.exe
[2010-02-02 21:50:23 | 792,723,456 | -HS- | M] () -- C:\pagefile.sys
[2009-10-22 09:54:02 | 000,113,953 | RHS- | M] () -- C:\qbr2q.exe
[2010-01-22 14:33:23 | 000,096,768 | RHS- | M] () -- C:\qkm.exe
[2010-02-01 21:37:05 | 000,008,262 | ---- | M] () -- C:\SB_usb_log.txt
[2009-10-22 08:28:51 | 000,117,488 | RHS- | M] () -- C:\sfkn.exe
[2009-11-04 15:17:45 | 000,114,304 | RHS- | M] () -- C:\srgo.exe
[2010-01-18 18:28:24 | 000,123,392 | RHS- | M] () -- C:\sywyrl0q.exe
[2009-12-25 15:08:09 | 000,114,372 | RHS- | M] () -- C:\u16sqrqn.exe
[2009-10-29 16:04:12 | 000,112,905 | RHS- | M] () -- C:\uqgvf.exe
[2009-11-06 15:52:57 | 000,115,973 | RHS- | M] () -- C:\v1cbvsmq.exe
[2009-11-09 16:43:04 | 000,114,778 | RHS- | M] () -- C:\vk0w.exe
[2009-10-22 18:28:46 | 000,115,729 | RHS- | M] () -- C:\wcgswa.exe
[2009-11-16 17:02:43 | 000,115,097 | RHS- | M] () -- C:\wglb9q.exe
[2009-12-29 09:22:07 | 000,098,816 | RHS- | M] () -- C:\wisf1.exe
< End of report >
[/log]

Psycholandia
komentarz
komentarz

Infekcja jest duża, daj loga z Combofixa.

sebek345
komentarz
komentarz

Proszę

[log]ComboFix 10-02-02.02 - anna gancaż 2010-02-02 22:53:58.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.502.191 [GMT 1:00]
Uruchomiony z: c:\documents and settings\anna gancaż\Pulpit\ComboFix.exe
AV: avast! antivirus 4.8.1335 [VPS 090714-0] *On-access scanning disabled* (Outdated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
AV: AVG Anti-Virus plus Firewall *On-access scanning enabled* (Outdated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Firewall *enabled* {8decf618-9569-4340-b34a-d78d28969b66}
.

((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\0fpdq2dw.exe
C:\0qw6vege.exe
C:\1a1dndah.exe
C:\1hqup.exe
C:\31lyx.exe
C:\3exi.exe
C:\3n8awsyg.exe
C:\6ruaqx.exe
C:\8xcrbho6.exe
C:\9b9w3.exe
C:\9fo3ar0j.exe
C:\9g86.exe
C:\9xf8.exe
C:\anoataly.exe
C:\autorun.inf
C:\c2e.exe
C:\e9naq.exe
C:\eexyv.exe
C:\f2kmj.exe
C:\g12g.exe
C:\gcq6.exe
C:\h0.exe
C:\hjvjte.exe
C:\imghyva6.exe
C:\kmj.exe
C:\l61yyp.exe
C:\mh.exe
C:\mvmdh.exe
C:\mwfubaob.exe
C:\olu392qj.exe
C:\opdux.exe
c:\program files\FlashGet Network
c:\program files\FlashGet Network\FlashGet 3\adns.dll
c:\program files\FlashGet Network\FlashGet 3\btcoreu.dll
c:\program files\FlashGet Network\FlashGet 3\BugReport.dll
c:\program files\FlashGet Network\FlashGet 3\BugReport.exe
c:\program files\FlashGet Network\FlashGet 3\cd1.ico
c:\program files\FlashGet Network\FlashGet 3\ckcore.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\14_43260.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\28_83260.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\atrc.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\Codecs.zip
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\cook.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\ddnt3260.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\dnet3260.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\drv1.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\drv2.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\drvc.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\hxltcolor.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\raac.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\ralf.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\rv10.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\rv20.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\rv30.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\rv40.dll
c:\program files\FlashGet Network\FlashGet 3\codec\real\Codecs\sipr.dll
c:\program files\FlashGet Network\FlashGet 3\commonlib.dll
c:\program files\FlashGet Network\FlashGet 3\componentskrnl.dll
c:\program files\FlashGet Network\FlashGet 3\config\clients.met
c:\program files\FlashGet Network\FlashGet 3\config\clients.met.bak
c:\program files\FlashGet Network\FlashGet 3\config\cryptkey.dat
c:\program files\FlashGet Network\FlashGet 3\config\emfriends.met
c:\program files\FlashGet Network\FlashGet 3\config\known.met
c:\program files\FlashGet Network\FlashGet 3\config\known2_64.met
c:\program files\FlashGet Network\FlashGet 3\config\preferences.ini
c:\program files\FlashGet Network\FlashGet 3\config\server.met
c:\program files\FlashGet Network\FlashGet 3\config\server_met.old
c:\program files\FlashGet Network\FlashGet 3\corestat.dll
c:\program files\FlashGet Network\FlashGet 3\dat\Appsetting.cfg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\1.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\1.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\2.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\3.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\btn1.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\btn2.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\cig.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\cig1.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_1644431G8.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_2544432.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_4090637.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_44848_1.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_icon01.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_icon03.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_icon04.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_KeHuDuanZiYuanZhongXinTuiJianTuMoBan.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_KeHuDuanZiYuanZhongXinTuiJianTuMoBan_7.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_logo.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_WuBiaoTi-2.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\client_WuBiaoTi-6.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\dian.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\directui_new_1265076104.zip
c:\program files\FlashGet Network\FlashGet 3\dat\directui\down.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\game.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\game.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\game1.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\gameall.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\gametop.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\ico01.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\ico02.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\line.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\movie.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\movie1.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\new_rescenter.txt
c:\program files\FlashGet Network\FlashGet 3\dat\directui\newgame.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\newmovie.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\p1.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\p2.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\p3.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\p4.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\p5.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\p6.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\p7.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\p8.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\pic_bg.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\preview.gif
c:\program files\FlashGet Network\FlashGet 3\dat\directui\reom.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\reom.jpg1
c:\program files\FlashGet Network\FlashGet 3\dat\directui\rescenter.txt
c:\program files\FlashGet Network\FlashGet 3\dat\directui\soft.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\soft_zhan.jpg
c:\program files\FlashGet Network\FlashGet 3\dat\directui\tab.gif
c:\program files\FlashGet Network\FlashGet 3\dat\FlashGet3db.bak
c:\program files\FlashGet Network\FlashGet 3\dat\FlashGet3db.db
c:\program files\FlashGet Network\FlashGet 3\dat\stat\advertisement\domain_url_list_en.zip
c:\program files\FlashGet Network\FlashGet 3\dat\stat\skinpreview\preview_blue.png
c:\program files\FlashGet Network\FlashGet 3\dat\stat\skinpreview\preview_classic.png
c:\program files\FlashGet Network\FlashGet 3\dat\stat\skinpreview\preview_white.png
c:\program files\FlashGet Network\FlashGet 3\dbghelp.dll
c:\program files\FlashGet Network\FlashGet 3\fg.ico
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\default.htm
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\FGResDetector.conf
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\banner.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\bullet.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\close.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\closelabel.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\download-icon.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\explorer.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\ftp.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\image.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\introTextBg.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\loading.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\nextlabel.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\prevlabel.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\software.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\data\images\vod.gif
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\FGResDetector.exe
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\about.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\ftplist_tree_icon.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\option_icon.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\quickop_hide.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\quickop_show.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\statusbar_bk.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\tasktab_close.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\toolbar_back.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\toolbar_bk.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\toolbar_close.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\toolbar_forward.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\image\toolbar_refresh.png
c:\program files\FlashGet Network\FlashGet 3\FGResDetector_I\lang\l.eng.xml
c:\program files\FlashGet Network\FlashGet 3\FGSoftware.exe
c:\program files\FlashGet Network\FlashGet 3\Flashget3.exe
c:\program files\FlashGet Network\FlashGet 3\FlashGet3_En.xpi
c:\program files\FlashGet Network\FlashGet 3\FlashGetBHO3.dll
c:\program files\FlashGet Network\FlashGet 3\FlashGetHook.dll
c:\program files\FlashGet Network\FlashGet 3\fnsArchive.dll
c:\program files\FlashGet Network\FlashGet 3\fnsDirectuix.dll
c:\program files\FlashGet Network\FlashGet 3\fnsLanguage.dll
c:\program files\FlashGet Network\FlashGet 3\fnslanguage_en.dll
c:\program files\FlashGet Network\FlashGet 3\fnsScheduler.dll
c:\program files\FlashGet Network\FlashGet 3\fnsSecurity.dll
c:\program files\FlashGet Network\FlashGet 3\fnsSkinX.dll
c:\program files\FlashGet Network\FlashGet 3\fnsStatistics.dll
c:\program files\FlashGet Network\FlashGet 3\game.ico
c:\program files\FlashGet Network\FlashGet 3\gb2312-unicode.dic
c:\program files\FlashGet Network\FlashGet 3\gdiplus.dll
c:\program files\FlashGet Network\FlashGet 3\GetAllUrl.htm
c:\program files\FlashGet Network\FlashGet 3\GetUrl.htm
c:\program files\FlashGet Network\FlashGet 3\GoogleToolbarInstaller_download_signed.exe
c:\program files\FlashGet Network\FlashGet 3\libem.dll
c:\program files\FlashGet Network\FlashGet 3\LICENSE.TXT
c:\program files\FlashGet Network\FlashGet 3\lst_tz.bin
c:\program files\FlashGet Network\FlashGet 3\P2PCfg.ini
c:\program files\FlashGet Network\FlashGet 3\p2pcore.dll
c:\program files\FlashGet Network\FlashGet 3\p2score.dll
c:\program files\FlashGet Network\FlashGet 3\pncrt.dll
c:\program files\FlashGet Network\FlashGet 3\pup.dat
c:\program files\FlashGet Network\FlashGet 3\RdOldDb.dll
c:\program files\FlashGet Network\FlashGet 3\RealMediaSplitter.ax
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\BarSet.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\btn_check.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\btn_normal.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\btn_radio.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\desktoplink.ico
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\login_line.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\menu_icon.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\option_line.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\option_page_line.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\skin.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\statusbar_ad_bk_long.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\statusbar_ad_bk2.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\SuspendLogo.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\SuspendNoLogo.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_backgrand.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_cancle.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_catgroy.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_group.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_new.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_open.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_option.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_pause.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_recly.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbar_start.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbarbutton_left.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbarbutton_middle.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\toolbarbutton_right.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\top_logotitle.gif
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\torrent.ico
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\userinfo_head.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\image\VistaStyleListItems.bmp
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\preview.png
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\skin.xml
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\sound\loginfailed.wav
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\sound\loginsucc.wav
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\sound\msgnotify.wav
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\sound\notify.wav
c:\program files\FlashGet Network\FlashGet 3\skin\international\default\topmain.png
c:\program files\FlashGet Network\FlashGet 3\SnapShot.dll
c:\program files\FlashGet Network\FlashGet 3\storage.dll
c:\program files\FlashGet Network\FlashGet 3\SysOptimize.exe
c:\program files\FlashGet Network\FlashGet 3\uninst.exe
c:\program files\FlashGet Network\FlashGet 3\VodCore.dll
c:\program files\FlashGet Network\FlashGet 3\zlib.dll
c:\program files\myglobalsearch
c:\program files\myglobalsearch\bar\1.bin\MGSBAR.DLL
c:\program files\myglobalsearch\bar\History\search
C:\qbr2q.exe
C:\qkm.exe
c:\recycler\S-1-5-21-1482476501-1644491937-682003330-1013
c:\recycler\S-1-5-21-8895719652-8505900081-436090439-2920
C:\srgo.exe
C:\sywyrl0q.exe
C:\u16sqrqn.exe
C:\uqgvf.exe
C:\v1cbvsmq.exe
C:\vk0w.exe
C:\wcgswa.exe
c:\windows\AhnRpta.exe
c:\windows\system32\ieuinit.inf
c:\windows\system32\nmdfgds0.dll
c:\windows\system32\nmdfgds1.dll
c:\windows\system32\olhrwef.exe
c:\windows\system32\softqq0.dll
C:\wisf1.exe
D:\0fpdq2dw.exe
D:\0qw6vege.exe
D:\1a1dndah.exe
D:\1hqup.exe
D:\3exi.exe
D:\3n8awsyg.exe
D:\6ruaqx.exe
D:\8xcrbho6.exe
D:\9b9w3.exe
D:\9fo3ar0j.exe
D:\9g86.exe
D:\9xf8.exe
D:\anoataly.exe
D:\Autorun.inf
D:\c2e.exe
D:\e9naq.exe
D:\eexyv.exe
D:\f2kmj.exe
D:\g12g.exe
D:\gcq6.exe
D:\h0.exe
D:\hjvjte.exe
D:\imghyva6.exe
D:\kmj.exe
D:\l61yyp.exe
D:\mh.exe
D:\mvmdh.exe
D:\mwfubaob.exe
D:\n0euybx.exe
D:\olu392qj.exe
D:\opdux.exe
D:\qbr2q.exe
D:\qkm.exe
D:\srgo.exe
D:\sywyrl0q.exe
D:\u16sqrqn.exe
D:\uqgvf.exe
D:\v1cbvsmq.exe
D:\vk0w.exe
D:\wcgswa.exe
D:\wisf1.exe
D:\y.exe
E:\0fpdq2dw.exe
E:\0qw6vege.exe
E:\1a1dndah.exe
E:\1hqup.exe
E:\3exi.exe
E:\3n8awsyg.exe
E:\6ruaqx.exe
E:\8xcrbho6.exe
E:\9b9w3.exe
E:\9fo3ar0j.exe
E:\9g86.exe
E:\9xf8.exe
E:\anoataly.exe
E:\Autorun.inf
E:\c2e.exe
E:\e9naq.exe
E:\eexyv.exe
E:\f2kmj.exe
E:\g12g.exe
E:\gcq6.exe
E:\h0.exe
E:\hjvjte.exe
E:\imghyva6.exe
E:\kmj.exe
E:\l61yyp.exe
E:\mh.exe
E:\mvmdh.exe
E:\mwfubaob.exe
E:\n0euybx.exe
E:\olu392qj.exe
E:\opdux.exe
E:\qbr2q.exe
E:\qkm.exe
E:\srgo.exe
E:\sywyrl0q.exe
E:\u16sqrqn.exe
E:\uqgvf.exe
E:\v1cbvsmq.exe
E:\vk0w.exe
E:\wcgswa.exe
E:\wisf1.exe
E:\y.exe

.
((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_AVPsys


((((((((((((((((((((((((( Pliki utworzone od 2010-01-02 do 2010-02-02 )))))))))))))))))))))))))))))))
.

2010-02-02 21:36 . 2010-02-02 21:36 -------- d-----w- C:\_OTL
2010-02-02 20:42 . 2009-04-08 07:23 225280 ----a-w- c:\program files\Uninstall My Global Search Bar.dll
2010-02-02 07:13 . 2010-02-02 07:13 -------- d-----w- C:\Downloads
2010-02-02 07:12 . 2010-02-02 07:13 -------- d-----w- c:\program files\BitComet
2010-02-02 07:05 . 2010-02-02 07:05 305 ----a-w- c:\windows\system32\secushr.dat
2010-02-01 20:34 . 2003-01-07 07:32 15400 ----a-w- c:\windows\system32\drivers\NetMotCM.sys
2010-01-29 04:20 . 2010-01-29 04:20 664 ----a-w- c:\windows\system32\d3d9caps.dat
2010-01-27 11:29 . 2010-01-27 11:29 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ipla
2010-01-27 11:29 . 2010-01-27 11:29 -------- d-----w- c:\program files\ipla
2010-01-27 11:26 . 2010-01-27 11:26 1700352 ----a-w- c:\windows\system32\gdiplus.dll
2010-01-27 11:18 . 2010-01-27 11:18 -------- d-----w- c:\windows\SxsCaPendDel
2010-01-27 11:18 . 2010-01-27 11:18 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Gadu-Gadu 10
2010-01-27 11:17 . 2010-01-27 11:18 -------- d-----w- c:\program files\Gadu-Gadu 10
2010-01-26 14:55 . 2010-01-26 15:46 100864 --sh--r- C:\df.exe
2010-01-09 14:23 . 2010-01-09 15:09 120832 --sh--r- C:\ljy.exe
2010-01-08 16:18 . 2010-01-08 16:17 120320 --sh--r- C:\mltox.exe

.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-02 20:47 . 2009-04-07 09:49 -------- d-----w- c:\program files\Yahoo!
2010-02-02 20:39 . 2009-04-07 08:51 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-02 20:37 . 2010-01-02 20:40 -------- d-----w- c:\program files\ALLConverter
2010-02-01 06:03 . 2008-04-15 12:00 49492 ----a-w- c:\windows\system32\perfc015.dat
2010-02-01 06:03 . 2008-04-15 12:00 355486 ----a-w- c:\windows\system32\perfh015.dat
2010-02-01 06:02 . 2009-04-07 09:34 -------- d-----w- c:\program files\Common Files\Adobe
2010-01-17 17:52 . 2009-04-07 09:38 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\CyberLink
2010-01-02 20:40 . 2009-04-07 09:41 -------- d-----w- c:\program files\ALLPlayer
2010-01-02 20:39 . 2009-04-07 09:41 -------- d-----w- c:\program files\NAPI-PROJEKT
2009-12-25 20:20 . 2009-12-25 20:20 -------- d-----w- c:\program files\Lavasoft
2009-12-22 05:10 . 2008-04-15 12:00 669696 ----a-w- c:\windows\system32\wininet.dll
2009-12-22 05:10 . 2008-04-15 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2009-12-15 22:04 . 2009-12-15 22:04 -------- d-----w- c:\program files\MSECache
2009-11-21 16:03 . 2008-04-15 12:00 471552 ----a-w- c:\windows\AppPatch\aclayers.dll
2009-11-16 16:02 . 2009-11-16 16:03 115097 --sh--r- C:\wglb9q.exe
2009-11-12 16:07 . 2009-11-12 16:07 79144 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
.

------- Sigcheck -------

[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 4AFB3B0919649F95C1964AA1FAD27D73 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-04-15 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BitComet"="c:\program files\BitComet\BitComet.exe" [2010-01-21 2956536]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"igfxtray"="c:\windows\system32\igfxtray.exe" [2006-03-23 94208]
"igfxhkcmd"="c:\windows\system32\hkcmd.exe" [2006-03-23 77824]
"igfxpers"="c:\windows\system32\igfxpers.exe" [2006-03-23 118784]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"WinampAgent"="d:\program files\Winamp\winampa.exe" [2008-08-03 36352]
"avast!"="c:\program files\Alwil Software\Avast4\ashDisp.exe" [2009-02-05 81000]
"Adobe Photo Downloader"="c:\program files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe" [2007-03-09 63712]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-15 15360]
"PcSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2006-11-09 1634304]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-05-01 07:18 11952 ----a-w- c:\windows\system32\avgrsstx.dll

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Microsoft Office.lnk]
path=c:\documents and settings\All Users\Menu Start\Programy\Autostart\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^WinZip Quick Pick.lnk]
path=c:\documents and settings\All Users\Menu Start\Programy\Autostart\WinZip Quick Pick.lnk
backup=c:\windows\pss\WinZip Quick Pick.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2008-06-12 00:38 34672 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ALLUpdate]
2009-11-11 15:18 870400 ----a-w- c:\program files\ALLPlayer\ALLUpdate.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AVG8_TRAY]
2009-06-11 06:57 1948440 ----a-w- c:\progra~1\AVG\AVG8\avgtray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
2009-04-23 13:51 691656 ----a-w- e:\program files\DAEMON Tools Lite\daemon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Easy-PrintToolBox]
2006-10-17 01:20 398944 ----a-w- c:\program files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gadu-Gadu]
2007-04-17 11:12 2113536 ----a-w- e:\gadu-gadu\gg.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gadu-Gadu 10]
2010-01-20 12:05 12067432 ----a-w- c:\program files\Gadu-Gadu 10\gg.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
2007-11-26 12:54 1057064 ----a-w- c:\program files\Nero\Nero 7\InCD\InCD.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IPLA!]
2009-12-23 16:14 14100888 ----a-w- c:\program files\ipla\ipla.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2009-11-12 15:33 141600 ----a-w- E:\iTunesHelper.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LightScribe Control Panel]
2007-12-05 10:30 2295072 ----a-w- c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2007-03-01 12:57 153136 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]
2006-11-28 12:12 222720 ----a-w- c:\program files\Nokia\Nokia PC Suite 6\LaunchApplication.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SecurDisc]
2007-11-26 12:54 1629480 ----a-w- c:\program files\Nero\Nero 7\InCD\NBHGui.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2010-01-13 09:24 1217808 ----a-w- d:\program files\Valve\Steam\Steam.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"e:\\iTunes.exe"=
"c:\\Program Files\\BitComet\\BitComet.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"10223:TCP"= 10223:TCP:BitComet 10223 TCP
"10223:UDP"= 10223:UDP:BitComet 10223 UDP

R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [2009-04-07 12552]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2009-04-30 721904]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-05-16 114768]
R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-04-07 327688]
R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-04-07 108552]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-05-16 20560]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [2009-05-01 906520]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2009-04-09 298776]
R2 avgfws8;AVG8 Firewall;c:\progra~1\AVG\AVG8\avgfws8.exe [2009-05-01 1368952]
R3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys [2009-04-07 29208]
S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys [2009-04-07 29208]

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2007-12-05 10:27 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Zawartość folderu 'Zaplanowane zadania'

2010-02-01 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34]
.
.
------- Skan uzupełniający -------
.
uStart Page = hxxp://google.atcomet.com/b/
uDefault_Search_URL = hxxp://www.google.com/ie
uInternet Settings,ProxyOverride = plimus.com,www.plimus.com,regnow.com,www.regnow.com,
uInternet Settings,ProxyServer = socks=127.0.0.1:7070
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Download all by FlashGet3 - c:\documents and settings\anna gancaż\Dane aplikacji\FlashGetBHO\GetAllUrl.htm
IE: Download by FlashGet3 - c:\documents and settings\anna gancaż\Dane aplikacji\FlashGetBHO\GetUrl.htm
IE: E&ksport do programu Microsoft Excel - c:\progra~1\Microsoft Office\Office10\EXCEL.EXE/3000
IE: Pobierz wszystkie VIdeo za pomocą BitComet - c:\program files\BitComet\BitComet.exe/AddVideo.htm
IE: Pobierz wszystko za pomocą BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: Pobierz za pomocą BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm
Trusted Zone: kuaiche.com\software
FF - ProfilePath - c:\documents and settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\
FF - prefs.js: browser.startup.homepage - hxxp://google.atcomet.com/b/
FF - prefs.js: network.proxy.socks - 127.0.0.1
FF - prefs.js: network.proxy.socks_port - 7070
FF - prefs.js: network.proxy.type - 4
FF - component: c:\documents and settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}\components\IBitCometExtension.dll
FF - component: c:\documents and settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npganymedenet.dll
FF - plugin: e:\mozilla plugins\npitunes.dll

---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
FF - user.js: network.proxy.type - 1
FF - user.js: network.proxy.http -
FF - user.js: network.proxy.http_port - 0
FF - user.js: network.proxy.ssl -
FF - user.js: network.proxy.ssl_port - 0
FF - user.js: network.proxy.ftp -
FF - user.js: network.proxy.ftp_port - 0
FF - user.js: network.proxy.gopher -
FF - user.js: network.proxy.gopher_port - 0
FF - user.js: network.proxy.socks_version - 5
FF - user.js: network.proxy.socks - 127.0.0.1
user_pref(network.proxy.socks_port,7070);
FF - user.js: network.proxy.no_proxies_on - plimus.com,www.plimus.com,regnow.com,www.regnow.com,
.
- - - - USUNIĘTO PUSTE WPISY - - - -

HKCU-Run-wsctf.exe - wsctf.exe
HKCU-Run-FlashGet 3 - c:\program files\FlashGet Network\FlashGet 3\Flashget3.exe
ShellExecuteHooks-{B03A4BE6-5E5A-483E-B9B3-C484D4B20B72} - c:\windows\system32\softqq0.dll
MSConfigStartUp-BDRegion - c:\program files\Cyberlink\Shared Files\brs.exe
MSConfigStartUp-BearShare - e:\dumkaaa\BearShare.exe
MSConfigStartUp-GoD - c:\documents and settings\anna gancaż\Moje dokumenty\GoD\GoD.exe
ActiveSetup-{28ABC5C0-4FCB-11CF-AAX5-81CX1C635612} - c:\recycler\S-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe
ActiveSetup-{28ABC5C0-4FCB-11CF-AAX5-81CX1C735612} - c:\recycler\S-1-5-21-1482476501-1644491937-682003330-1013\winde32.exe
AddRemove-FlashGet 3.3 - c:\program files\FlashGet Network\FlashGet 3\uninst.exe
AddRemove-{9FB04E44-1339-4A6C-8C50-78BA121AAED5}_is1 - c:\program files\CyberLink\PowerDVD8\Language\Enu\unins000.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-02 23:02
Windows 5.1.2600 Dodatek Service Pack 3 NTFS

skanowanie ukrytych procesów ...

skanowanie ukrytych wpisów autostartu ...

skanowanie ukrytych plików ...

skanowanie pomyślnie ukończone
ukryte pliki: 0

**************************************************************************

Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys atapi.sys spig.sys hal.dll >>UNKNOWN [0x82FCA938]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xf8774f28
\Driver\ACPI -> ACPI.sys @ 0xf85cdcb8
\Driver\atapi -> atapi.sys @ 0xf8588b40
IoDeviceObjectType -> DeleteProcedure -> ntoskrnl.exe @ 0x805e668e
ParseProcedure -> ntoskrnl.exe @ 0x8057b6b1
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntoskrnl.exe @ 0x805e668e
ParseProcedure -> ntoskrnl.exe @ 0x8057b6b1
NDIS: -> SendCompleteHandler -> 0x0
PacketIndicateHandler -> 0x0
SendHandler -> 0x0
user & kernel MBR OK

**************************************************************************
.
------------------------ Pozostałe uruchomione procesy ------------------------
.
c:\program files\Alwil Software\Avast4\aswUpdSv.exe
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Nero\Nero 7\InCD\InCDsrv.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\progra~1\AVG\AVG8\avgam.exe
c:\progra~1\AVG\AVG8\avgrsx.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\windows\system32\wdfmgr.exe
c:\program files\AVG\AVG8\avgcsrvx.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Czas ukończenia: 2010-02-02 23:03:42 - komputer został uruchomiony ponownie
ComboFix-quarantined-files.txt 2010-02-02 22:03

Przed: 5 849 653 248 bajtów wolnych
Po: 5 712 367 616 bajtów wolnych

WindowsXP-KB310994-SP2-Home-BootDisk-PLK.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

- - End Of File - - A1368E95993C692A4DA6122747AF90EB
[/log]

Psycholandia
komentarz
komentarz

Daj teraz loga z OTL.

sebek345
komentarz
komentarz

Już daje

[log]OTL logfile created on: 2010-02-02 23:29:31 - Run 2
OTL by OldTimer - Version 3.1.27.1 Folder = C:\Documents and Settings\anna gancaż\Pulpit
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

502,00 Mb Total Physical Memory | 172,00 Mb Available Physical Memory | 34,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 76,00% Paging File free
Paging file location(s): C:\pagefile.sys 756 1512 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 15,90 Gb Total Space | 5,41 Gb Free Space | 34,03% Space Free | Partition Type: NTFS
Drive D: | 29,29 Gb Total Space | 4,96 Gb Free Space | 16,92% Space Free | Partition Type: NTFS
Drive E: | 29,30 Gb Total Space | 3,98 Gb Free Space | 13,57% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: J-6CCDF4BD33504
Current User Name: anna gancaż
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 30 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
PRC - [2010-01-11 08:24:46 | 000,307,672 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2009-08-28 19:42:54 | 000,144,672 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2009-08-06 18:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
PRC - [2009-06-19 08:59:16 | 000,906,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgemc.exe
PRC - [2009-06-11 07:57:30 | 001,368,952 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgfws8.exe
PRC - [2009-05-14 10:18:37 | 000,486,680 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgrsx.exe
PRC - [2009-05-01 08:18:13 | 000,692,504 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgcsrvx.exe
PRC - [2009-05-01 08:18:01 | 000,594,712 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgnsx.exe
PRC - [2009-05-01 08:17:58 | 000,298,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe
PRC - [2009-05-01 08:17:48 | 000,833,304 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgam.exe
PRC - [2009-02-09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2008-08-04 00:02:20 | 000,036,352 | ---- | M] () -- D:\Program Files\Winamp\winampa.exe
PRC - [2008-04-15 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-15 13:00:00 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-15 13:00:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-15 13:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-15 13:00:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\alg.exe
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [IMGSVC]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-15 13:00:00 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wscntfy.exe
PRC - [2008-04-15 13:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-15 13:00:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2007-12-05 11:34:52 | 000,079,136 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2007-11-26 13:54:12 | 001,554,728 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
PRC - [2007-03-09 10:09:58 | 000,063,712 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe
PRC - [2006-03-23 19:17:50 | 000,118,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxpers.exe
PRC - [2006-03-23 19:13:40 | 000,077,824 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\hkcmd.exe
PRC - [2004-10-14 13:42:54 | 001,404,928 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe
PRC - [2004-08-11 00:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 15:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 11:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-06-17 20:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-15 13:00:00 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-15 13:00:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
MOD - [2008-04-15 13:00:00 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-15 13:00:00 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-15 13:00:00 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-15 13:00:00 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-15 13:00:00 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2008-04-15 13:00:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-15 13:00:00 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-15 13:00:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-15 13:00:00 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-15 13:00:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-15 13:00:00 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-15 13:00:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-15 13:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-15 13:00:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2009-11-12 16:33:00 | 000,545,568 | ---- | M] (Apple Inc.) [On_Demand | Stopped] -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service)
SRV - [2009-08-28 19:42:54 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009-06-19 08:59:16 | 000,906,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgemc.exe -- (avg8emc)
SRV - [2009-06-11 07:57:30 | 001,368,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgfws8.exe -- (avgfws8)
SRV - [2009-05-01 08:17:58 | 000,298,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgwdsvc.exe -- (avg8wd)
SRV - [2007-12-05 11:34:52 | 000,079,136 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService)
SRV - [2007-11-26 13:54:12 | 001,554,728 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe -- (InCDsrv)
SRV - [2007-09-17 08:36:18 | 000,800,040 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService)
SRV - [2007-06-27 17:04:00 | 000,279,848 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -- (NMIndexingService)
SRV - [2006-11-06 13:21:10 | 000,210,432 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2009-09-23 10:41:58 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2009-06-19 08:59:23 | 000,027,784 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\System32\Drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2009-06-11 07:57:35 | 000,327,688 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2009-05-18 14:17:00 | 000,026,600 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2009-05-01 08:18:04 | 000,108,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2009-05-01 08:17:53 | 000,029,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwfd)
DRV - [2009-05-01 08:17:53 | 000,029,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwdx)
DRV - [2009-05-01 08:17:48 | 000,012,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\System32\Drivers\avgrkx86.sys -- (AvgRkx86)
DRV - [2009-04-30 17:48:08 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2008-04-15 13:00:00 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv)
DRV - [2008-04-15 13:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink)
DRV - [2008-04-15 13:00:00 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usb8023.sys -- (USB_RNDIS)
DRV - [2007-11-26 13:54:12 | 000,038,440 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDRm.sys -- (incdrm)
DRV - [2007-11-26 13:54:12 | 000,036,776 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDPass.sys -- (InCDPass)
DRV - [2007-11-26 13:54:02 | 000,118,952 | ---- | M] (Nero AG) [File_System | Disabled | Running] -- C:\WINDOWS\system32\drivers\InCDfs.sys -- (InCDfs)
DRV - [2006-10-10 07:54:34 | 000,138,240 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcd.sys -- (Nokia USB Phone Parent)
DRV - [2006-10-10 07:54:32 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcj.sys -- (Nokia USB Port)
DRV - [2006-10-10 07:54:32 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcm.sys -- (Nokia USB Modem)
DRV - [2006-10-10 07:54:32 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdc.sys -- (Nokia USB Generic)
DRV - [2006-05-10 14:00:16 | 000,156,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2006-03-23 19:47:06 | 001,166,972 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ialmnt5.sys -- (ialm)
DRV - [2005-03-22 10:08:40 | 000,260,224 | ---- | M] (Analog Devices, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\smwdm.sys -- (smwdm)
DRV - [2004-09-17 08:02:54 | 000,732,928 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt)
DRV - [2003-01-07 08:32:26 | 000,015,400 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NetMotCM.sys -- (ndiscm)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm


IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = plimus.com,www.plimus.com,regnow.com,www.regnow.com,
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = socks=127.0.0.1:7070

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.startup.homepage: "http://google.atcomet.com/b/"
FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0
FF - prefs.js..extensions.enabledItems: {B042753D-F57E-4e8e-A01B-7379A6D4CEFB}:1.18
FF - prefs.js..network.proxy.no_proxies_on: "plimus.com,www.plimus.com,regnow.com,www.regnow.com,"
FF - prefs.js..network.proxy.socks: "127.0.0.1"
FF - prefs.js..network.proxy.socks_port: 7070
FF - prefs.js..network.proxy.type: 4

FF - user.js..network.proxy.type: 1
FF - user.js..network.proxy.http: ""
FF - user.js..network.proxy.http_port: 0
FF - user.js..network.proxy.ssl: ""
FF - user.js..network.proxy.ssl_port: 0
FF - user.js..network.proxy.ftp: ""
FF - user.js..network.proxy.ftp_port: 0
FF - user.js..network.proxy.gopher: ""
FF - user.js..network.proxy.gopher_port: 0
FF - user.js..network.proxy.socks_version: 5
FF - user.js..network.proxy.socks: "127.0.0.1"
FF - user.js..network.proxy.socks_port: 7070
FF - user.js..network.proxy.no_proxies_on: "plimus.com,www.plimus.com,regnow.com,www.regnow.com,"

FF - HKLM\software\mozilla\Mozilla Firefox 3.0.17\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-01-15 15:00:34 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.17\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-02-02 21:41:59 | 000,000,000 | ---D | M]

[2009-04-07 10:49:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Extensions
[2010-02-02 08:23:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions
[2010-02-02 08:13:03 | 000,000,000 | ---D | M] (BitComet Video Downloader) -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
[2010-02-02 08:05:44 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2009-04-30 18:05:24 | 000,002,399 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\searchplugins\daemon-search.xml
[2009-04-08 08:29:49 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009-11-16 16:23:30 | 000,120,296 | ---- | M] ( ) -- C:\Program Files\Mozilla Firefox\plugins\npganymedenet.dll
[2009-11-01 00:27:53 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2009-11-01 00:27:53 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2009-11-01 00:27:54 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2009-11-01 00:27:54 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2009-11-01 00:27:54 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2009-11-01 00:27:54 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2010-02-02 23:00:56 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.10.dll (BitComet)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [MSConfig] C:\WINDOWS\pchealth\helpctr\Binaries\MSCONFIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe ()
O4 - HKU\.DEFAULT..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-18..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [BitComet] C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Pobierz wszystkie VIdeo za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.10.dll (BitComet)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny)
O15 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.172.224.160 80.244.140.241 89.228.6.83
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-04-06 15:47:28 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009-04-06 15:46:59 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2010-02-02 23:09:20 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010-02-02 22:53:09 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010-02-02 22:51:51 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010-02-02 22:51:51 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010-02-02 22:51:51 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010-02-02 22:51:50 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010-02-02 22:51:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010-02-02 22:49:49 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010-02-02 22:36:42 | 000,000,000 | ---D | C] -- C:\_OTL
[2010-02-02 22:06:23 | 000,548,864 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
[2010-02-02 21:42:01 | 000,225,280 | ---- | C] (My Global Search) -- C:\Program Files\Uninstall My Global Search Bar.dll
[2010-02-02 21:35:47 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\anna gancaż\Recent
[2010-02-02 08:13:13 | 000,000,000 | ---D | C] -- C:\Downloads
[2010-02-02 08:13:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BitComet
[2010-02-02 08:12:54 | 000,000,000 | ---D | C] -- C:\Program Files\BitComet
[2010-02-02 08:05:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BITS
[2010-02-02 08:05:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO
[2010-02-01 21:34:42 | 000,015,400 | ---- | C] (Motorola Inc.) -- C:\WINDOWS\System32\drivers\NetMotCM.sys
[2010-01-27 12:29:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\ipla
[2010-01-27 12:29:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2010-01-27 12:29:22 | 000,000,000 | ---D | C] -- C:\Program Files\ipla
[2010-01-27 12:18:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2010-01-27 12:18:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:18:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:17:50 | 000,000,000 | ---D | C] -- C:\Program Files\Gadu-Gadu 10
[2010-01-23 21:37:44 | 001,035,264 | RHS- | C] (Microsoft Corporation) -- C:\Documents and Settings\anna gancaż\Dane aplikacji\fqja.exe
[2010-01-17 19:56:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\CyberLink
[2010-01-09 23:18:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Pulpit\Hitfaker
[2010-01-09 17:00:18 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasaoriginals
[2009-06-01 21:24:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Apple
[2009-04-07 10:42:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2009-04-07 10:42:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2009-04-07 10:42:44 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2009-04-07 10:42:44 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[4 C:\Documents and Settings\anna gancaż\Pulpit\*.tmp files -> C:\Documents and Settings\anna gancaż\Pulpit\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2010-02-02 23:22:34 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010-02-02 23:22:33 | 000,000,573 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-02-02 23:22:33 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-02-02 23:20:46 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-02-02 23:20:44 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-02-02 23:08:37 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-02-02 23:00:56 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010-02-02 23:00:49 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-02-02 22:59:33 | 005,767,168 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\NTUSER.DAT
[2010-02-02 22:59:33 | 000,000,292 | -HS- | M] () -- C:\Documents and Settings\anna gancaż\ntuser.ini
[2010-02-02 22:46:31 | 003,844,017 | R--- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\ComboFix.exe
[2010-02-02 22:30:46 | 000,139,648 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
[2010-02-02 21:49:14 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-02-02 21:08:31 | 000,000,334 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do gowna.lnk
[2010-02-02 08:13:03 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\BitComet.lnk
[2010-02-02 08:05:56 | 000,000,305 | ---- | M] () -- C:\WINDOWS\System32\secushr.dat
[2010-02-02 08:05:32 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI
[2010-02-02 08:05:21 | 000,000,876 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\FlashGet 3.3.lnk
[2010-02-02 08:05:15 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-02-02 03:56:09 | 003,721,120 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-02-01 22:24:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010-02-01 21:00:51 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-02-01 20:54:26 | 000,036,864 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-02-01 07:03:43 | 000,763,990 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-02-01 07:03:43 | 000,355,486 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-02-01 07:03:43 | 000,311,604 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-02-01 07:03:43 | 000,049,492 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-02-01 07:03:43 | 000,039,992 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-01-30 11:04:13 | 000,000,193 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasa.ini
[2010-01-29 05:20:28 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010-01-27 12:18:47 | 000,000,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\OpenFM.lnk
[2010-01-27 12:18:46 | 000,000,678 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk
[2010-01-26 16:46:56 | 000,100,864 | RHS- | M] () -- C:\df.exe
[2010-01-17 14:38:02 | 000,000,746 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do urodziny adama.lnk
[2010-01-16 23:01:11 | 000,015,177 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsadsa.JPG
[2010-01-16 11:10:02 | 000,017,792 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsa.JPG
[2010-01-13 10:22:44 | 000,001,517 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Counter-Strike.lnk
[2010-01-13 10:21:01 | 000,000,453 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Steam.lnk
[2010-01-13 09:33:10 | 000,041,465 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\administracja_nst_1rok.pdf
[2010-01-09 16:51:45 | 002,178,225 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\DSC05197.JPG
[2010-01-09 16:09:51 | 000,120,832 | RHS- | M] () -- C:\ljy.exe
[2010-01-08 17:17:48 | 000,120,320 | RHS- | M] () -- C:\mltox.exe
[2010-01-07 09:41:14 | 000,024,064 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\Sienkiewicz w opisie śmierci Janusza.doc
[2010-01-07 08:39:37 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\~$nusz ra.doc
[4 C:\Documents and Settings\anna gancaż\Pulpit\*.tmp files -> C:\Documents and Settings\anna gancaż\Pulpit\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-02-02 22:53:14 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010-02-02 22:53:12 | 000,262,400 | ---- | C] () -- C:\cmldr
[2010-02-02 22:51:51 | 000,261,632 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010-02-02 22:51:51 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010-02-02 22:51:51 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010-02-02 22:51:51 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010-02-02 22:51:51 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010-02-02 22:45:59 | 003,844,017 | R--- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\ComboFix.exe
[2010-02-02 21:08:31 | 000,000,334 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do gowna.lnk
[2010-02-02 08:13:03 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\BitComet.lnk
[2010-02-02 08:05:56 | 000,000,305 | ---- | C] () -- C:\WINDOWS\System32\secushr.dat
[2010-02-02 08:05:32 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
[2010-02-02 08:05:21 | 000,000,876 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\FlashGet 3.3.lnk
[2010-02-02 08:05:15 | 000,000,000 | ---- | C] () -- C:\bholog
[2010-01-29 05:20:28 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010-01-27 12:18:47 | 000,000,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\OpenFM.lnk
[2010-01-27 12:18:46 | 000,000,678 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk
[2010-01-26 15:55:29 | 000,100,864 | RHS- | C] () -- C:\df.exe
[2010-01-17 14:38:02 | 000,000,746 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do urodziny adama.lnk
[2010-01-16 23:01:11 | 000,015,177 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsadsa.JPG
[2010-01-16 11:10:02 | 000,017,792 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsa.JPG
[2010-01-13 10:22:44 | 000,001,517 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Counter-Strike.lnk
[2010-01-13 10:20:59 | 000,000,453 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Steam.lnk
[2010-01-13 09:33:10 | 000,041,465 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\administracja_nst_1rok.pdf
[2010-01-12 14:28:53 | 002,178,225 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\DSC05197.JPG
[2010-01-09 15:23:48 | 000,120,832 | RHS- | C] () -- C:\ljy.exe
[2010-01-08 17:18:15 | 000,120,320 | RHS- | C] () -- C:\mltox.exe
[2010-01-08 12:27:38 | 000,000,193 | -H-- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasa.ini
[2010-01-07 09:41:14 | 000,024,064 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\Sienkiewicz w opisie śmierci Janusza.doc
[2010-01-07 08:39:37 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\~$nusz ra.doc
[2009-12-09 11:28:12 | 000,000,118 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2009-05-20 14:42:49 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009-04-30 18:13:30 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2009-04-30 17:48:07 | 000,721,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2009-04-16 20:15:53 | 000,000,083 | ---- | C] () -- C:\WINDOWS\WWP.INI
[2009-04-08 14:53:15 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OpPrintServer.INI
[2009-04-08 08:47:29 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009-04-08 08:11:30 | 000,076,407 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Smiley.ico
[2009-04-07 11:16:07 | 000,036,864 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-04-07 10:50:24 | 000,168,448 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2009-04-07 10:50:22 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2009-04-07 10:50:22 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009-04-07 10:50:22 | 000,130,048 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2009-04-07 10:50:21 | 000,067,584 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2009-04-07 10:50:21 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2005-12-07 10:31:00 | 000,202,752 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll

[color=#E56717]========== LOP Check ==========[/color]

[2009-04-08 08:11:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\2136B
[2009-04-08 14:45:39 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2009-04-30 18:05:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2009-07-07 11:02:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Downloaded Installations
[2010-01-27 12:18:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:29:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2009-04-28 18:52:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe
[2009-05-16 11:42:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PassMark
[2009-07-07 11:07:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2009-04-07 10:36:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\WinZip
[2009-11-21 19:07:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2010-02-02 23:22:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BitComet
[2010-02-02 21:46:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BITS
[2009-04-30 18:11:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DAEMON Tools Lite
[2010-01-02 16:51:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DAEMON Tools Pro
[2009-08-04 09:47:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DBGo
[2009-08-10 11:46:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DBnWo
[2010-02-02 08:05:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO
[2009-04-07 18:43:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu
[2010-01-29 03:41:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu 10
[2009-12-28 16:48:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\GanymedeNet
[2009-11-19 06:47:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Hide IP NG
[2010-02-02 21:45:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\ipla
[2009-06-18 15:36:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Kingston
[2009-12-04 20:14:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Leadertech
[2009-10-09 14:01:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Nokia
[2009-09-15 13:32:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Nokia Multimedia Player
[2009-07-07 11:07:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\PC Suite

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2009-04-06 15:47:28 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-02-02 08:05:15 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-02-02 21:49:14 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-02-02 23:22:34 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2008-04-15 13:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2004-08-03 23:00:14 | 000,262,400 | ---- | M] () -- C:\cmldr
[2010-02-02 23:03:43 | 000,034,221 | ---- | M] () -- C:\ComboFix.txt
[2009-04-06 15:47:28 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2009-06-28 19:46:27 | 000,000,126 | ---- | M] () -- C:\CountCyclesWMVDecLog.txt
[2010-01-26 16:46:56 | 000,100,864 | RHS- | M] () -- C:\df.exe
[2009-04-06 15:47:28 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-01-09 16:09:51 | 000,120,832 | RHS- | M] () -- C:\ljy.exe
[2010-01-08 17:17:48 | 000,120,320 | RHS- | M] () -- C:\mltox.exe
[2009-04-06 15:47:28 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2009-06-29 09:38:02 | 000,106,931 | RHS- | M] () -- C:\n0euybx.exe
[2008-04-15 13:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2008-04-15 13:00:00 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-02-02 23:20:37 | 792,723,456 | -HS- | M] () -- C:\pagefile.sys
[2010-02-01 21:37:05 | 000,008,262 | ---- | M] () -- C:\SB_usb_log.txt
[2009-10-22 08:28:51 | 000,117,488 | RHS- | M] () -- C:\sfkn.exe
[2009-11-16 17:02:43 | 000,115,097 | RHS- | M] () -- C:\wglb9q.exe
< End of report >
[/log]

Psycholandia
komentarz
komentarz

W okienko OTL wklej poniższy skrypt i klik na Run Fix:

[code]:Processes
explorer.exe

:Files
C:\Documents and Settings\anna gancaż\Dane aplikacji\fqja.exe
C:\df.exe
D:\df.exe
E:\df.exe
C:\ljy.exe
C:\mltox.exe
D:\ljy.exe
D:\mltox.exe
E:\ljy.exe
E:\mltox.exe
C:\n0euybx.exe
D:\n0euybx.exe
E:\n0euybx.exe
C:\sfkn.exe
C:\wglb9q.exe
D:\sfkn.exe
D:\wglb9q.exe
E:\sfkn.exe
E:\wglb9q.exe

:Commands
[emptytemp]
[start explorer]
[Reboot][/code]

Otwórz notatnik tekstowy i wklej do niego poniższy tekst: [code]Windows Registry Editor Version 5.00

[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
[/code]
Zapisz jako->Wybierz [b]Wszystkie pliki[/b]->wpisz [b]Fix.reg[/b]->Następnie kliknij na zapisany plik i uruchom komputer ponownie.

Przeskanuj komputer tym: [url="http://www.programosy.pl/program,malwarebytes-anti-malware.html"]Malware[/url] usuń wszystko co znajdzie i daj loga po kasowaniu (loga z Malware)

sebek345
komentarz
komentarz

Trzymaj

[log]Malwarebytes' Anti-Malware 1.44
Wersja bazy definicji: 3681
Windows 5.1.2600 Dodatek Service Pack 3
Internet Explorer 6.0.2900.5512

2010-02-03 08:30:31
mbam-log-2010-02-03 (08-30-31).txt

Typ skanowania: Pełne skanowanie (C:\|D:\|E:\|)
Przeskanowane obiekty: 205720
Upłynęło: 39 minute(s), 48 second(s)

Zainfekowane procesy w pamięci: 0
Zainfekowane moduły pamięci: 0
Zainfekowane klucze rejestru: 5
Zainfekowane wartości rejestru: 0
Zainfekowane pliki rejestru: 0
Zainfekowane foldery: 0
Zainfekowane pliki: 615

Zainfekowane procesy w pamięci:
(Nie wykryto groźnych plików)

Zainfekowane moduły pamięci:
(Nie wykryto groźnych plików)

Zainfekowane klucze rejestru:
HKEY_CLASSES_ROOT\CLSID\{b03a4be6-5e5a-b9b3-483e-c484d4b20b72} (Spyware.OnlineGames) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{37b85a21-692b-4205-9cad-2626e4993404} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{37b85a29-692b-4205-9cad-2626e4993404} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\{28abc5c0-4fcb-11cf-aax5-81cx1c635612} (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MyGlobalSearch (Adware.BookedSpace) -> Quarantined and deleted successfully.

Zainfekowane wartości rejestru:
(Nie wykryto groźnych plików)

Zainfekowane pliki rejestru:
(Nie wykryto groźnych plików)

Zainfekowane foldery:
(Nie wykryto groźnych plików)

Zainfekowane pliki:
C:\Program Files\BearShare Applications\BearShare\Skins\PS.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\eexyv.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\1a1dndah.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\31lyx.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\3n8awsyg.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\6ruaqx.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\8xcrbho6.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\9b9w3.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\9fo3ar0j.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\9g86.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\anoataly.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\c2e.exe.vir (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\g12g.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\hjvjte.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\l61yyp.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\mvmdh.exe.vir (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\mwfubaob.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\qbr2q.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\srgo.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\sywyrl0q.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\uqgvf.exe.vir (Worm.Taterf) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\vk0w.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\wcgswa.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\wisf1.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\WINDOWS\system32\nmdfgds0.dll.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\WINDOWS\system32\nmdfgds1.dll.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\C\WINDOWS\system32\olhrwef.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\mwfubaob.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\1a1dndah.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\3n8awsyg.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\6ruaqx.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\8xcrbho6.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\9b9w3.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\9fo3ar0j.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\9g86.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\anoataly.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\c2e.exe.vir (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\eexyv.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\g12g.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\hjvjte.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\l61yyp.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\mvmdh.exe.vir (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\n0euybx.exe.vir (Worm.Magania) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\qbr2q.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\srgo.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\sywyrl0q.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\uqgvf.exe.vir (Worm.Taterf) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\vk0w.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\wcgswa.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\wisf1.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\D\y.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\mwfubaob.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\1a1dndah.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\3n8awsyg.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\6ruaqx.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\8xcrbho6.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\9b9w3.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\9fo3ar0j.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\9g86.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\anoataly.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\c2e.exe.vir (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\eexyv.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\g12g.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\hjvjte.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\l61yyp.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\mvmdh.exe.vir (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\n0euybx.exe.vir (Worm.Magania) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\qbr2q.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\srgo.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\sywyrl0q.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\uqgvf.exe.vir (Worm.Taterf) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\vk0w.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\wcgswa.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\wisf1.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Qoobox\Quarantine\E\y.exe.vir (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3637662.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3637687.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3639686.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3638686.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3663973.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3664972.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3665972.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3665981.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3666972.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667000.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667035.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667063.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3668063.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3669063.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3670063.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3697252.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3707275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3688253.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3689252.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3690252.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3691252.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3692252.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3693252.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3694252.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3695252.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3696253.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3697275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3698275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3699275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3700274.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3701275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3702275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3703275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3704275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3705275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3708275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3709275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3710275.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3710299.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3711299.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3711318.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3711340.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3712340.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3713340.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3714340.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3719340.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3718340.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3720340.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3720392.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3721392.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3722393.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3724392.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3725393.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3726392.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3727392.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3728393.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3728414.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3729414.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3730414.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3731414.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3732414.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3733414.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3734414.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3735438.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3736438.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3736465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3737465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3738465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3739465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3740465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3741466.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3742465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3743465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3745465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3746465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3747465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3748465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3749465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3750465.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP272\A3751473.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3816776.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3817776.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3817799.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3819897.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3818825.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3818849.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3819849.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3819922.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3820922.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3821922.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3822922.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3823921.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3824921.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3824947.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3825946.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3827946.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3827971.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3828971.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3829971.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3829995.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3830003.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3830029.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3831029.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3833029.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3834029.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3835029.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3843108.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3836029.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3837029.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3837053.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3838078.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3839078.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3840078.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3841078.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3842078.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3843078.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3843138.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3845138.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3848138.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3849138.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3850138.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3852170.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3854171.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3854194.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3855194.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3855217.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3857217.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3858217.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3852138.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3859217.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3859241.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3880429.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3882418.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3883418.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3884418.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3885418.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3881419.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3887421.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3888418.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3889418.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3890529.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3895553.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3897563.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3903561.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3904560.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3938640.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3939639.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3951689.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3940647.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3941647.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3942646.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3943648.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3948648.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3949646.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3950682.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3952690.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3961778.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3962777.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3963780.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3964780.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3965778.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP285\A3973801.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005521.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005523.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005525.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005526.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005527.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005528.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005529.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005530.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005532.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005623.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005534.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005536.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005538.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005541.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005544.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005546.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005547.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005613.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005615.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005616.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005618.exe (Worm.Taterf) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005620.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005621.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005624.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005625.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005627.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\_OTL\MovedFiles\02032010_072604\C_\n0euybx.exe (Worm.Magania) -> Quarantined and deleted successfully.
C:\_OTL\MovedFiles\02032010_072604\C_\sfkn.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\_OTL\MovedFiles\02032010_072604\D_\sfkn.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\_OTL\MovedFiles\02032010_072604\E_\sfkn.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\31lyx.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3637664.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3637689.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3638689.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3639688.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3663975.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3664975.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3665975.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3665983.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3666975.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667002.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667038.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667065.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3668065.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3669065.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3670065.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3688255.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3689255.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3694254.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3690254.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3691254.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3692254.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3695254.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3696255.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3697254.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3697277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3698277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3699277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3700276.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3701277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3702277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3703277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3704277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3707277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3708277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3709277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3710277.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3710301.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3711301.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3711320.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3711342.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3712342.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3713342.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3714342.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3719342.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3720342.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3720394.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3721394.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3722395.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3724395.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3725395.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3726394.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3734416.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3727394.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3728417.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3729416.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3731416.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3732416.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3733416.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3735440.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3736440.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3736467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3737467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3738467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3739467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3740467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3741468.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3742467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3743467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3745467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3746467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3748467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3749467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3750467.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP272\A3751475.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3816778.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3817778.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3817801.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3818827.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3818851.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3819900.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3819924.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3820924.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3821924.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3822924.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3823923.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3824923.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3824949.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3825948.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3827949.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3827973.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3828973.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3829997.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3830005.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3830031.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3831032.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3833031.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3835031.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3836031.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3837031.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3837055.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3838080.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3839081.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3840080.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3841080.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3842080.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3843110.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3843140.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3845140.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3848140.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3849140.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3850140.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3852140.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3852172.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3854173.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3854196.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3855196.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3855219.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3858219.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3859219.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3859243.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3880431.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3881422.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3882420.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3883420.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3884420.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3886420.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3887423.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3889420.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3890531.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3888420.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3895555.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3897565.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3903563.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3904562.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3950649.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3939642.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3940649.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3942649.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3948650.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3949648.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3950684.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3951691.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3952692.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3961780.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3962779.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3963782.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3964782.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3965780.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP285\A3973803.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005642.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005630.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005633.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005634.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005635.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005636.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005637.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005638.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005640.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005644.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005646.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005649.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005652.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005654.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005655.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005656.exe (Worm.Magania) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005659.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005661.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005662.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005664.exe (Worm.Taterf) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005666.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005667.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005668.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005669.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4018733.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\31lyx.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3637666.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3637691.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3638691.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3639690.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3663977.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3664977.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP265\A3665977.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3665985.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3666977.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667005.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667040.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3667067.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3668067.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3669067.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP266\A3670067.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3707279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3688257.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3689257.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3690256.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3691256.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3692256.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3694256.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3695256.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3696257.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3697256.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3697279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3698279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3699279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3700279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3701279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3702279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3703279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3704279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3708279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3710279.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3710303.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP270\A3711303.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3711322.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3711344.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3712344.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3714344.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3718344.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3719344.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3720344.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3720396.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3721396.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3724397.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3725397.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3726396.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3727396.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3729418.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3731418.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3732418.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3733418.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3734418.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3735442.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3736442.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3736469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3737469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3738469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3728419.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3739469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3740469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3741470.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3742469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3743469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3745469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3746469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3748469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3749469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP271\A3750469.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP272\A3751477.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3821926.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3816780.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3817780.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3817803.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3818829.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3818853.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3819902.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3819926.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3820926.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3822926.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3823925.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3824926.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3824951.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3825950.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3827951.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3827976.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3828975.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP274\A3829999.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3830007.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3830033.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3831034.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3833033.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3835033.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3836033.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3837057.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3839083.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3840082.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3842082.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3843082.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3843112.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3843142.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3845142.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3847142.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3848142.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3849142.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3850142.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3852142.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3852174.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3838082.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3854175.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3854198.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3855198.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3855221.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3856221.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3858221.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3859221.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP275\A3859245.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3880433.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3881424.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3882422.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3883422.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3884422.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3887425.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3888422.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3889422.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP279\A3890533.exe (Trojan.Agent) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3895557.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3897567.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3903565.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP280\A3904564.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3939644.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3940651.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3941651.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3942651.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3948652.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3950651.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3950686.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3951693.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP282\A3952694.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3961782.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3962782.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3963784.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3964784.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP283\A3965782.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP285\A3973805.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005684.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005672.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005675.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005676.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005677.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005678.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005679.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005680.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005682.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005686.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005688.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005691.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005694.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005696.exe (Trojan.Valklik) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005697.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005698.exe (Worm.Magania) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005701.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005703.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005704.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005706.exe (Worm.Taterf) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005708.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005709.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005710.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4005711.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
E:\System Volume Information\_restore{2ACDF0B6-EF90-489A-A3DF-6D99C6A179A8}\RP292\A4018735.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
[/log]

Gość
komentarz
komentarz

[b]1.[/b] Pokaż ponownie log z OTL'a.

sebek345
komentarz
komentarz (edytowane)

Prosze


[log]OTL logfile created on: 2010-02-03 22:00:57 - Run 1
OTL by OldTimer - Version 3.1.27.1 Folder = C:\Documents and Settings\anna gancaż\Pulpit
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

502,00 Mb Total Physical Memory | 152,00 Mb Available Physical Memory | 30,00% Memory free
1,00 Gb Paging File | 1,00 Gb Available in Paging File | 71,00% Paging File free
Paging file location(s): C:\pagefile.sys 756 1512 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 15,90 Gb Total Space | 5,24 Gb Free Space | 32,94% Space Free | Partition Type: NTFS
Drive D: | 29,29 Gb Total Space | 14,26 Gb Free Space | 48,69% Space Free | Partition Type: NTFS
Drive E: | 29,30 Gb Total Space | 12,13 Gb Free Space | 41,40% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: J-6CCDF4BD33504
Current User Name: anna gancaż
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 30 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
PRC - [2010-01-11 08:24:46 | 000,307,672 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2009-08-28 19:42:54 | 000,144,672 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2009-08-11 04:14:54 | 002,004,528 | ---- | M] (Trend Media Corporation Limited) -- D:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe
PRC - [2009-08-06 18:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
PRC - [2009-06-19 08:59:16 | 000,906,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgemc.exe
PRC - [2009-06-11 07:57:30 | 001,368,952 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgfws8.exe
PRC - [2009-05-14 10:18:37 | 000,486,680 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgrsx.exe
PRC - [2009-05-01 08:18:13 | 000,692,504 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgcsrvx.exe
PRC - [2009-05-01 08:18:01 | 000,594,712 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgnsx.exe
PRC - [2009-05-01 08:17:58 | 000,298,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe
PRC - [2009-05-01 08:17:48 | 000,833,304 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgam.exe
PRC - [2009-02-09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2008-08-04 00:02:20 | 000,036,352 | ---- | M] () -- D:\Program Files\Winamp\winampa.exe
PRC - [2008-04-15 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-15 13:00:00 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-15 13:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dwwin.exe
PRC - [2008-04-15 13:00:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-15 13:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-15 13:00:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\alg.exe
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [IMGSVC]
PRC - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-15 13:00:00 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wscntfy.exe
PRC - [2008-04-15 13:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-15 13:00:00 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dumprep.exe
PRC - [2008-04-15 13:00:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2007-12-05 11:34:52 | 000,079,136 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2007-11-26 13:54:12 | 001,554,728 | ---- | M] (Nero AG) -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
PRC - [2007-03-09 10:09:58 | 000,063,712 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe
PRC - [2006-03-23 19:17:50 | 000,118,784 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxpers.exe
PRC - [2006-03-23 19:13:40 | 000,077,824 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\hkcmd.exe
PRC - [2004-10-14 13:42:54 | 001,404,928 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe
PRC - [2004-08-11 00:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 15:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 11:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-06-17 20:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-15 13:00:00 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-15 13:00:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
MOD - [2008-04-15 13:00:00 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-15 13:00:00 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-15 13:00:00 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-15 13:00:00 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-15 13:00:00 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2008-04-15 13:00:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-15 13:00:00 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-15 13:00:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-15 13:00:00 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-15 13:00:00 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-15 13:00:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-15 13:00:00 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-15 13:00:00 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-15 13:00:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-15 13:00:00 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-15 13:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-15 13:00:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2009-11-12 16:33:00 | 000,545,568 | ---- | M] (Apple Inc.) [On_Demand | Stopped] -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service)
SRV - [2009-08-28 19:42:54 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2009-06-19 08:59:16 | 000,906,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgemc.exe -- (avg8emc)
SRV - [2009-06-11 07:57:30 | 001,368,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgfws8.exe -- (avgfws8)
SRV - [2009-05-01 08:17:58 | 000,298,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgwdsvc.exe -- (avg8wd)
SRV - [2007-12-05 11:34:52 | 000,079,136 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService)
SRV - [2007-11-26 13:54:12 | 001,554,728 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe -- (InCDsrv)
SRV - [2007-09-17 08:36:18 | 000,800,040 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService)
SRV - [2007-06-27 17:04:00 | 000,279,848 | ---- | M] (Nero AG) [On_Demand | Stopped] -- C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe -- (NMIndexingService)
SRV - [2006-11-06 13:21:10 | 000,210,432 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2009-09-23 10:41:58 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2009-06-19 08:59:23 | 000,027,784 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\System32\Drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2009-06-11 07:57:35 | 000,327,688 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2009-05-18 14:17:00 | 000,026,600 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2009-05-01 08:18:04 | 000,108,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2009-05-01 08:17:53 | 000,029,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwfd)
DRV - [2009-05-01 08:17:53 | 000,029,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwdx)
DRV - [2009-05-01 08:17:48 | 000,012,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\System32\Drivers\avgrkx86.sys -- (AvgRkx86)
DRV - [2009-04-30 17:48:08 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2008-04-15 13:00:00 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv)
DRV - [2008-04-15 13:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink)
DRV - [2008-04-15 13:00:00 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usb8023.sys -- (USB_RNDIS)
DRV - [2007-11-26 13:54:12 | 000,038,440 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDRm.sys -- (incdrm)
DRV - [2007-11-26 13:54:12 | 000,036,776 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDPass.sys -- (InCDPass)
DRV - [2007-11-26 13:54:02 | 000,118,952 | ---- | M] (Nero AG) [File_System | Disabled | Running] -- C:\WINDOWS\system32\drivers\InCDfs.sys -- (InCDfs)
DRV - [2006-10-10 07:54:34 | 000,138,240 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcd.sys -- (Nokia USB Phone Parent)
DRV - [2006-10-10 07:54:32 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcj.sys -- (Nokia USB Port)
DRV - [2006-10-10 07:54:32 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcm.sys -- (Nokia USB Modem)
DRV - [2006-10-10 07:54:32 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdc.sys -- (Nokia USB Generic)
DRV - [2006-05-10 14:00:16 | 000,156,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2006-03-23 19:47:06 | 001,166,972 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ialmnt5.sys -- (ialm)
DRV - [2005-03-22 10:08:40 | 000,260,224 | ---- | M] (Analog Devices, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\smwdm.sys -- (smwdm)
DRV - [2004-09-17 08:02:54 | 000,732,928 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt)
DRV - [2003-01-07 08:32:26 | 000,015,400 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NetMotCM.sys -- (ndiscm)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm


IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = plimus.com,www.plimus.com,regnow.com,www.regnow.com,
IE - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = socks=127.0.0.1:7070

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.startup.homepage: "http://google.atcomet.com/b/"
FF - prefs.js..extensions.enabledItems: {B042753D-F57E-4e8e-A01B-7379A6D4CEFB}:1.18
FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0
FF - prefs.js..network.proxy.no_proxies_on: "plimus.com,www.plimus.com,regnow.com,www.regnow.com,"
FF - prefs.js..network.proxy.socks: "127.0.0.1"
FF - prefs.js..network.proxy.socks_port: 7070
FF - prefs.js..network.proxy.type: 4

FF - user.js..network.proxy.type: 1
FF - user.js..network.proxy.http: ""
FF - user.js..network.proxy.http_port: 0
FF - user.js..network.proxy.ssl: ""
FF - user.js..network.proxy.ssl_port: 0
FF - user.js..network.proxy.ftp: ""
FF - user.js..network.proxy.ftp_port: 0
FF - user.js..network.proxy.gopher: ""
FF - user.js..network.proxy.gopher_port: 0
FF - user.js..network.proxy.socks_version: 5
FF - user.js..network.proxy.socks: "127.0.0.1"
FF - user.js..network.proxy.socks_port: 7070
FF - user.js..network.proxy.no_proxies_on: "plimus.com,www.plimus.com,regnow.com,www.regnow.com,"

FF - HKLM\software\mozilla\Mozilla Firefox 3.0.17\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-01-15 15:00:34 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.17\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-02-02 21:41:59 | 000,000,000 | ---D | M]

[2009-04-07 10:49:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Extensions
[2010-02-03 15:53:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions
[2010-02-02 08:13:03 | 000,000,000 | ---D | M] (BitComet Video Downloader) -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
[2010-02-02 23:50:04 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2009-04-30 18:05:24 | 000,002,399 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Mozilla\Firefox\Profiles\6tbsiitw.default\searchplugins\daemon-search.xml
[2009-04-08 08:29:49 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2009-11-16 16:23:30 | 000,120,296 | ---- | M] ( ) -- C:\Program Files\Mozilla Firefox\plugins\npganymedenet.dll
[2009-11-01 00:27:53 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2009-11-01 00:27:53 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2009-11-01 00:27:54 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2009-11-01 00:27:54 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2009-11-01 00:27:54 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2009-11-01 00:27:54 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2010-02-02 23:00:56 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.10.dll (BitComet)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll (FlashGet)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O4 - HKLM..\Run: [Adobe Photo Downloader] C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [WinampAgent] D:\Program Files\Winamp\winampa.exe ()
O4 - HKU\.DEFAULT..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-18..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe (Time Information Services Ltd.)
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [BitComet] C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [FlashGet 3] D:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe (Trend Media Corporation Limited)
O4 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004..\Run: [Gadu-Gadu] E:\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Pobierz wszystkie VIdeo za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.10.dll (BitComet)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O15 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny)
O15 - HKU\S-1-5-21-1960408961-1532298954-1177238915-1004\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.172.224.160 80.244.140.241 89.228.6.83
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-04-06 15:47:28 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009-04-06 15:46:59 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2010-02-03 07:45:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Malwarebytes
[2010-02-03 07:45:36 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010-02-03 07:45:34 | 000,019,160 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010-02-03 07:45:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
[2010-02-03 07:34:45 | 005,115,824 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\anna gancaż\Pulpit\mbam-setup.exe
[2010-02-02 23:39:24 | 007,884,856 | ---- | C] (Trend Media Corporation Limited.) -- C:\Documents and Settings\anna gancaż\Pulpit\flashget3.2.0.1060en.exe
[2010-02-02 23:09:20 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010-02-02 22:53:09 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010-02-02 22:51:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010-02-02 22:06:23 | 000,548,864 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
[2010-02-02 21:42:01 | 000,225,280 | ---- | C] (My Global Search) -- C:\Program Files\Uninstall My Global Search Bar.dll
[2010-02-02 21:35:47 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\anna gancaż\Recent
[2010-02-02 08:13:13 | 000,000,000 | ---D | C] -- C:\Downloads
[2010-02-02 08:13:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BitComet
[2010-02-02 08:12:54 | 000,000,000 | ---D | C] -- C:\Program Files\BitComet
[2010-02-02 08:05:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BITS
[2010-02-02 08:05:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO
[2010-02-01 21:34:42 | 000,015,400 | ---- | C] (Motorola Inc.) -- C:\WINDOWS\System32\drivers\NetMotCM.sys
[2010-01-27 12:29:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\ipla
[2010-01-27 12:29:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2010-01-27 12:29:22 | 000,000,000 | ---D | C] -- C:\Program Files\ipla
[2010-01-27 12:18:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\SxsCaPendDel
[2010-01-27 12:18:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:18:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:17:50 | 000,000,000 | ---D | C] -- C:\Program Files\Gadu-Gadu 10
[2010-01-17 19:56:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\CyberLink
[2010-01-09 23:18:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\anna gancaż\Pulpit\Hitfaker
[2010-01-09 17:00:18 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasaoriginals
[2009-06-01 21:24:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Apple
[2009-04-07 10:42:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2009-04-07 10:42:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2009-04-07 10:42:44 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2009-04-07 10:42:44 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[42 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[4 C:\Documents and Settings\anna gancaż\Pulpit\*.tmp files -> C:\Documents and Settings\anna gancaż\Pulpit\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2010-02-03 21:56:51 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-02-03 21:56:49 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-02-03 20:36:15 | 000,000,292 | -HS- | M] () -- C:\Documents and Settings\anna gancaż\ntuser.ini
[2010-02-03 20:36:14 | 005,767,168 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\NTUSER.DAT
[2010-02-03 20:15:47 | 000,041,984 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-02-03 19:31:05 | 000,000,204 | ---- | M] () -- C:\WINDOWS\System32\secustat.dat
[2010-02-03 07:45:39 | 000,000,562 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk
[2010-02-03 07:41:21 | 000,000,126 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\Fix.reg
[2010-02-03 07:41:09 | 005,115,824 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\anna gancaż\Pulpit\mbam-setup.exe
[2010-02-02 23:55:32 | 000,024,032 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-02-02 23:49:49 | 000,000,720 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\FlashGet 3.0 Beta.lnk
[2010-02-02 23:44:56 | 007,884,856 | ---- | M] (Trend Media Corporation Limited.) -- C:\Documents and Settings\anna gancaż\Pulpit\flashget3.2.0.1060en.exe
[2010-02-02 23:22:34 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010-02-02 23:22:33 | 000,000,573 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-02-02 23:22:33 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-02-02 23:08:37 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-02-02 23:00:56 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010-02-02 23:00:49 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-02-02 22:30:46 | 000,139,648 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-02-02 22:06:26 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\anna gancaż\Pulpit\OTL.exe
[2010-02-02 21:49:14 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-02-02 21:08:31 | 000,000,334 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do gowna.lnk
[2010-02-02 08:13:03 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\BitComet.lnk
[2010-02-02 08:05:56 | 000,000,305 | ---- | M] () -- C:\WINDOWS\System32\secushr.dat
[2010-02-02 08:05:32 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI
[2010-02-02 08:05:21 | 000,000,876 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\FlashGet 3.3.lnk
[2010-02-02 08:05:15 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-02-02 03:56:09 | 003,721,120 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-02-01 22:24:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2010-02-01 21:00:51 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-02-01 07:03:43 | 000,763,990 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-02-01 07:03:43 | 000,355,486 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-02-01 07:03:43 | 000,311,604 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-02-01 07:03:43 | 000,049,492 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-02-01 07:03:43 | 000,039,992 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-01-30 11:04:13 | 000,000,193 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasa.ini
[2010-01-29 05:20:28 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010-01-27 12:18:47 | 000,000,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\OpenFM.lnk
[2010-01-27 12:18:46 | 000,000,678 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk
[2010-01-17 14:38:02 | 000,000,746 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do urodziny adama.lnk
[2010-01-16 23:01:11 | 000,015,177 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsadsa.JPG
[2010-01-16 11:10:02 | 000,017,792 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsa.JPG
[2010-01-13 10:22:44 | 000,001,517 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Counter-Strike.lnk
[2010-01-13 10:21:01 | 000,000,453 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\Steam.lnk
[2010-01-13 09:33:10 | 000,041,465 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\administracja_nst_1rok.pdf
[2010-01-09 16:51:45 | 002,178,225 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\DSC05197.JPG
[2010-01-07 16:07:14 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010-01-07 16:07:04 | 000,019,160 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010-01-07 09:41:14 | 000,024,064 | ---- | M] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\Sienkiewicz w opisie śmierci Janusza.doc
[2010-01-07 08:39:37 | 000,000,162 | -H-- | M] () -- C:\Documents and Settings\anna gancaż\Pulpit\~$nusz ra.doc
[42 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[4 C:\Documents and Settings\anna gancaż\Pulpit\*.tmp files -> C:\Documents and Settings\anna gancaż\Pulpit\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-02-03 07:48:47 | 000,000,204 | ---- | C] () -- C:\WINDOWS\System32\secustat.dat
[2010-02-03 07:45:39 | 000,000,562 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk
[2010-02-03 07:41:21 | 000,000,126 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\Fix.reg
[2010-02-02 23:49:49 | 000,000,720 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\FlashGet 3.0 Beta.lnk
[2010-02-02 22:53:14 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010-02-02 22:53:12 | 000,262,400 | ---- | C] () -- C:\cmldr
[2010-02-02 22:51:51 | 000,261,632 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010-02-02 22:51:51 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010-02-02 21:08:31 | 000,000,334 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do gowna.lnk
[2010-02-02 08:13:03 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\BitComet.lnk
[2010-02-02 08:05:56 | 000,000,305 | ---- | C] () -- C:\WINDOWS\System32\secushr.dat
[2010-02-02 08:05:32 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
[2010-02-02 08:05:21 | 000,000,876 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\FlashGet 3.3.lnk
[2010-02-02 08:05:15 | 000,000,000 | ---- | C] () -- C:\bholog
[2010-01-29 05:20:28 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010-01-27 12:18:47 | 000,000,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\OpenFM.lnk
[2010-01-27 12:18:46 | 000,000,678 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk
[2010-01-17 14:38:02 | 000,000,746 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Skrót do urodziny adama.lnk
[2010-01-16 23:01:11 | 000,015,177 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsadsa.JPG
[2010-01-16 11:10:02 | 000,017,792 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\dasdsa.JPG
[2010-01-13 10:22:44 | 000,001,517 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Counter-Strike.lnk
[2010-01-13 10:20:59 | 000,000,453 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\Steam.lnk
[2010-01-13 09:33:10 | 000,041,465 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\administracja_nst_1rok.pdf
[2010-01-12 14:28:53 | 002,178,225 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\DSC05197.JPG
[2010-01-08 12:27:38 | 000,000,193 | -H-- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\.picasa.ini
[2010-01-07 09:41:14 | 000,024,064 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Moje dokumenty\Sienkiewicz w opisie śmierci Janusza.doc
[2010-01-07 08:39:37 | 000,000,162 | -H-- | C] () -- C:\Documents and Settings\anna gancaż\Pulpit\~$nusz ra.doc
[2009-12-09 11:28:12 | 000,000,118 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2009-05-20 14:42:49 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2009-04-30 18:13:30 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2009-04-30 17:48:07 | 000,721,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2009-04-16 20:15:53 | 000,000,083 | ---- | C] () -- C:\WINDOWS\WWP.INI
[2009-04-08 14:53:15 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OpPrintServer.INI
[2009-04-08 08:47:29 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2009-04-08 08:11:30 | 000,076,407 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Smiley.ico
[2009-04-07 11:16:07 | 000,041,984 | ---- | C] () -- C:\Documents and Settings\anna gancaż\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-04-07 10:50:24 | 000,168,448 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2009-04-07 10:50:22 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2009-04-07 10:50:22 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2009-04-07 10:50:22 | 000,130,048 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2009-04-07 10:50:21 | 000,067,584 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2009-04-07 10:50:21 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
[2005-12-07 10:31:00 | 000,202,752 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll

[color=#E56717]========== LOP Check ==========[/color]

[2009-04-08 08:11:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\2136B
[2009-04-08 14:45:39 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2009-04-30 18:05:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2009-07-07 11:02:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Downloaded Installations
[2010-01-27 12:18:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-01-27 12:29:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2009-04-28 18:52:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe
[2009-05-16 11:42:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PassMark
[2009-07-07 11:07:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2009-04-07 10:36:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\WinZip
[2009-11-21 19:07:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2010-02-03 21:57:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BitComet
[2010-02-03 21:57:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\BITS
[2009-04-30 18:11:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DAEMON Tools Lite
[2010-01-02 16:51:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DAEMON Tools Pro
[2009-08-04 09:47:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DBGo
[2009-08-10 11:46:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\DBnWo
[2010-02-02 08:05:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\FlashGetBHO
[2009-04-07 18:43:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu
[2010-01-29 03:41:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Gadu-Gadu 10
[2009-12-28 16:48:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\GanymedeNet
[2009-11-19 06:47:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Hide IP NG
[2010-02-02 21:45:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\ipla
[2009-06-18 15:36:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Kingston
[2009-12-04 20:14:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Leadertech
[2009-10-09 14:01:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Nokia
[2009-09-15 13:32:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\Nokia Multimedia Player
[2009-07-07 11:07:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\anna gancaż\Dane aplikacji\PC Suite

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2009-04-06 15:47:28 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-02-02 08:05:15 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-02-02 21:49:14 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-02-02 23:22:34 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2008-04-15 13:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2004-08-03 23:00:14 | 000,262,400 | ---- | M] () -- C:\cmldr
[2009-04-06 15:47:28 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2009-06-28 19:46:27 | 000,000,126 | ---- | M] () -- C:\CountCyclesWMVDecLog.txt
[2009-04-06 15:47:28 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2009-04-06 15:47:28 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2008-04-15 13:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2008-04-15 13:00:00 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-02-03 21:56:41 | 792,723,456 | -HS- | M] () -- C:\pagefile.sys
[2010-02-01 21:37:05 | 000,008,262 | ---- | M] () -- C:\SB_usb_log.txt
< End of report >
[/log]

Gość
komentarz
komentarz

Czysto. :)

Psycholandia
komentarz
komentarz

Uruchom OTL i klik CleanUP.

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.