x-kom hosting

Proszę o sprawdzenie logów

WoJT@s
utworzono
utworzono

Logi do tematu: http://www.forumpc.pl/index.php?showtopic=59771

 Logfile of Trend Micro HijackThis v2.0.2Scan saved at 14:08:29, on 2008-08-06Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\UAService7.exeC:\Program Files\VIA\RAID\raid_tool.exeC:\WINDOWS\SOUNDMAN.EXEC:\WINDOWS\system32\VTTimer.exeC:\Program Files\CyberLink\PowerDVD\PDVDServ.exeC:\WINDOWS\system32\RUNDLL32.EXEC:\Program Files\Java\jre1.6.0_05\bin\jusched.exeC:\Program Files\Common Files\InstallShield\UpdateService\issch.exeC:\WINDOWS\system32\drivers\nvscv32.exeC:\WINDOWS\system32\wuauclt.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Documents and Settings\Grzesiek\Moje dokumenty\Gadu-Gadu\gg.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = ŁączaO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exeO4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXEO4 - HKLM\..\Run: [VTTimer] VTTimer.exeO4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exeO4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startupO4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -startO4 - HKLM\..\Run: [FortKnoxPersonalFirewall] "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe"O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exeO4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O4 - Startup: No-IP DUC.lnk = C:\Program Files\WebServ\no-ip\No-IP DUC20.exeO4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exeO4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exeO8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htmO8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htmO8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htmO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO14 - IERESET.INF: START_PAGE_URL=http://www.vobis.pl/O23 - Service: FortKnox Personal Firewall (fortknox) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exeO23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exeO23 - Service: Windows Media Connect (WMC) (WmcCds) - Unknown owner - c:\program files\windows media connect\mswmccds.exeO24 - Desktop Component 0: (no name) - http://www.humor-z.webpark.pl/pic_files/tapety/247003.jpg--End of file - 5763 bytes

snip91
komentarz
komentarz
O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exe
C:\WINDOWS\system32\drivers\nvscv32.exe

Plik usuń ręcznie.

Dodaj log z ComboFix.

WoJT@s
komentarz
komentarz

Gdy chcę usunąć wyświetla się komunikat: Nie można usunąć nvscv32: Odmowa dostępu. Sprawdź, czy dysk nie jest zapełniony lub chroniony przed zapisem oraz, czy plik nie jest aktualnie używany.

snip91
komentarz
komentarz

Pobierz ComboFix.

Do notatnika wklej:

File::C:\WINDOWS\system32\drivers\nvscv32.exe

W notatniku zakładka Plik --> Zapisz jako --> zapisz pod nazwą CFScript.txt i zapisz go w tym samym katalogu, w którym jest ComboFix.

Wystartuj tryb awaryjny (F8 podczas ładowania systemu). Na ikonę ComboFix przeciągasz zrobiony plik CFScript.txt tak, jak na obrazku:

82650GIF.gif

Rozpocznie się usuwanie i powstanie log, który pokazujesz na forum.

Po restarcie usuń ręcznie folder C:\Qoobox.

WoJT@s
komentarz
komentarz

Mam problem: Internet działa tylko raz.Po cofnięciu systemu. Gdy zrobię loga, system mi zrestartuje a internet znowu nie będzie działał, więc jak wstawię loga na forum? Nie mam żadnego znajomego z internetem. A jak zrobię tego loga, zapiszę na płytę czy pendrive'a i cofnę system do internetu, wstawię tego loga OK. Ale to przecież mi wszystko cofnie to co zrobił ComboFix. Co poradzisz??

Mateusz J.
komentarz
komentarz

Pobierz SpyBota i przeskanuj komputer.

Użyj FixWareOut

Wykonaj polecenie Sniper-a, tylko plik: C:\WINDOWS\system32\drivers\nvscv32.exe usuń ręcznie.

Jeśli pojawi się odmowa dostępu, wyłącz proces tego pliku w menadżerze zadań, a następnie go usuń.

Wykonuj powyższe instrukcje nawet, gdy zabraknie Ci internetu :)

Jeśli znowu nie będziesz miał połączenia internetowego, spróbuj użyj WinSockFix.

Mam nadzieję, że się uda.

WoJT@s
komentarz
komentarz

Dzięki jesiona, ale nie mogę otworzyć menedżera zadań, daje CTRL + ALT + DELETE. Otwiera się i znika. Gdy najadę na kwadracik na pasku on również znika. Musiałem cofnąć system żeby napisać tego posta :mellow: a program WinSockFix nic nie daje. Proszę pomóżcie!!

Mateusz J.
komentarz
komentarz

W takim razie poproszę o loga z DDS - program nie uruchamia ponownie komputera.

Opis programu pod ComboFix.

WoJT@s
komentarz
komentarz

Utworzyły się dwa logi:

Deckard's System Scanner v20071014.68Run by MONIKA on 2008-08-08 16:46:07Computer is in Normal Mode.---------------------------------------------------------------------------------- System Restore --------------------------------------------------------------Successfully created a Deckard's System Scanner Restore Point.-- Last 5 Restore Point(s) --20: 2008-08-08 14:46:35 UTC - RP758 - Deckard's System Scanner Restore Point19: 2008-08-08 11:30:56 UTC - RP757 - Operacja przywracania18: 2008-08-08 07:49:28 UTC - RP756 - Operacja przywracania17: 2008-08-08 07:43:24 UTC - RP755 - Operacja przywracania16: 2008-08-08 07:34:16 UTC - RP754 - Operacja przywracania-- First Restore Point -- 1: 2008-08-01 08:13:40 UTC - RP739 - SBacked up registry hives.Performed disk cleanup.Total Physical Memory: 256 MiB (512 MiB recommended).-- HijackThis Clone ------------------------------------------------------------Emulating logfile of Trend Micro HijackThis v2.0.2Scan saved at 2008-08-08 16:47:51Platform: Windows XP Dodatek Service Pack 2 (5.01.2600)MSIE: Internet Explorer (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\system32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\explorer.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\UAService7.exeC:\Program Files\VIA\RAID\raid_tool.exeC:\WINDOWS\SOUNDMAN.EXEC:\WINDOWS\system32\VTTimer.exeC:\Program Files\CyberLink\PowerDVD\PDVDServ.exeC:\WINDOWS\system32\rundll32.exeC:\Program Files\Java\jre1.6.0_05\bin\jusched.exeC:\Program Files\Common Files\InstallShield\UpdateService\issch.exeC:\WINDOWS\system32\drivers\nvscv32.exeC:\WINDOWS\system32\wuauclt.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Documents and Settings\MONIKA\Pulpit\dss.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.com/search?q=%sR1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = iexploreR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = ŁączaR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ieO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exeO4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXEO4 - HKLM\..\Run: [VTTimer] VTTimer.exeO4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exeO4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startupO4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -startO4 - HKLM\..\Run: [FortKnoxPersonalFirewall] "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe"O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exeO4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')O4 - Startup: No-IP DUC.lnk = C:\Program Files\WebServ\no-ip\No-IP DUC20.exeO4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exeO4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exeO8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htmO8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htmO8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htmO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXEO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXEO23 - Service: FortKnox Personal Firewall (fortknox) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exeO23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exeO23 - Service: Windows Media Connect (WMC) (WmcCds) - Unknown owner - C:\Program Files\Windows Media Connect\mswmccds.exeO24 - Desktop Component 0:  - http://www.humor-z.webpark.pl/pic_files/tapety/247003.jpg--End of file - 6207 bytes-- HijackThis Fixed Entries (C:\Program Files\Trend Micro\HijackThis\backups\) -backup-20080722-133747-163 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://search.bearshare.com/sidebar.html?src=ssbbackup-20080722-133747-388 O4 - HKLM\..\Run: [Windows] C:\WINDOWS\services.exebackup-20080722-133747-398 O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)backup-20080722-133747-565 O4 - HKLM\..\Run: [msm] C:\WINDOWS\system32\drivers\services.exebackup-20080722-133747-655 O4 - HKLM\..\Run: [lsass.exe] C:\WINDOWS\lsass.exebackup-20080722-133747-729 O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exebackup-20080722-133747-798 O2 - BHO: Give4Free Plugin Installer - {208E7E77-507A-4649-B0C9-D39E9049C7A2} - C:\Program Files\Give4Free Plugin\ibho1.dllbackup-20080722-133747-813 O4 - HKLM\..\Run: [shell] c:\windows\system32\services32.exebackup-20080722-133748-789 O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) - backup-20080722-133750-672 O23 - Service: NNServ - New.net, Inc. - C:\Program Files\NewDotNet\nnrun.exe-- File Associations -----------------------------------------------------------.cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*.cpl - cplfile - shell\runas\command - rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%*-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------R0 prohlp02 (StarForce Protection Helper Driver v2) - c:\windows\system32\drivers\prohlp02.sys <Not Verified; Protection Technology; StarForce Protection System>R0 prosync1 (StarForce Protection Synchronization Driver v1) - c:\windows\system32\drivers\prosync1.sys <Not Verified; Protection Technology; StarForce Protection System>R0 sfdrv01 (StarForce Protection Environment Driver (version 1.x)) - c:\windows\system32\drivers\sfdrv01.sys <Not Verified; Protection Technology; StarForce Protection System>R0 sfhlp01 (StarForce Protection Helper Driver) - c:\windows\system32\drivers\sfhlp01.sys <Not Verified; Protection Technology; StarForce Protection System>R0 sfsync02 (StarForce Protection Synchronization Driver (version 2.x)) - c:\windows\system32\drivers\sfsync02.sys <Not Verified; Protection Technology; StarForce Protection System>R1 prodrv06 (StarForce Protection Environment Driver v6) - c:\windows\system32\drivers\prodrv06.sys <Not Verified; Protection Technology; StarForce Protection System>R3 pfc (PADUS ASPI SHELL) - c:\windows\system32\drivers\pfc.sys <Not Verified; Padus, Inc.; Padus? ASPI Shell>S3 catchme - c:\combofix\catchme.sys (file missing)S3 GMSIPCI - d:\install\gmsipci.sys (file missing)S3 hamachi (Hamachi Network Interface) - c:\windows\system32\drivers\hamachi.sys <Not Verified; Applied Networking Inc.; Hamachi Virtual Network Interface Driver>S3 pmxdrv - c:\windows\system32\drivers\pmxdrv.sys (file missing)S3 sony_ssm.sys - c:\docume~1\monika\ustawi~1\temp\sony_ssm.sys (file missing)-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------R2 UserAccess7 (SecuROM User Access Service (V7)) - c:\windows\system32\uaservice7.exe <Not Verified; Sony DADC Austria AG.; >S2 PowerManager (Power Manager) - c:\windows\svchost.exe <Not Verified; Microsoft Corporation; Microsoft? Windows? Operating System>S3 ServiceLayer - "c:\program files\pc connectivity solution\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>S3 WmcCds (Windows Media Connect (WMC)) - c:\program files\windows media connect\mswmccds.exeS3 WmcCdsLs (Pomocnik programu Windows Media Connect (WMC)) - c:\program files\windows media connect\mswmcls.exe <Not Verified; Microsoft Corporation; Microsoft? Windows? Operating System>-- Device Manager: Disabled ----------------------------------------------------No disabled devices found.-- Scheduled Tasks -------------------------------------------------------------2007-06-26 20:21:14       414 --a------ C:\WINDOWS\Tasks\Symantec NetDetect.job-- Files created between 2008-07-08 and 2008-08-08 -----------------------------2008-08-08 13:48:12         0 d-------- C:\Program Files\Altnet2008-08-08 13:32:43         0 d-------- C:\WINDOWS\system32\dt2008-08-07 17:35:48         0 d-------- C:\ComboFix(2)2008-08-05 11:14:18         0 d-------- C:\6fd08c7f11d096932b2520bf8ae2f7322008-08-05 11:14:13         0 d-------- C:\WINDOWS\network diagnostic2008-08-05 11:10:23         0 d-------- C:\5772b73c5eb2155d3395b4d780eb29142008-08-05 10:56:54         0 d-------- C:\Program Files\Alwil Software2008-08-04 11:55:27         0 d-------- C:\Lit2008-08-04 11:52:11         0 d-------- C:\Program Files\JLC's Software2008-08-04 11:50:49         0 d-------- C:\Program Files\Ashampoo2008-07-31 13:26:45         0 d-------- C:\Program Files\Słownik Kontekstowy2008-07-30 11:26:03         0 d-------- C:\Program Files\Give4Free Plugin2008-07-30 11:25:58         0 d--hs---- C:\RECYCLER(3)2008-07-30 11:15:14         0 d-------- C:\Program Files\Tibia(3)2008-07-25 12:58:55         0 d-------- C:\Program Files\Tibia(2)2008-07-23 14:46:48         0 d-------- C:\Program Files\NETGATE2008-07-23 13:23:33     68586 --a------ C:\WINDOWS\system32\drivers\nvscv32.exe2008-07-22 17:54:16         0 d-------- C:\WINDOWS\pss2008-07-22 13:58:33     68096 --a------ C:\WINDOWS\zip.exe2008-07-22 13:58:33     49152 --a------ C:\WINDOWS\VFind.exe2008-07-22 13:58:33    212480 --a------ C:\WINDOWS\swxcacls.exe <Not Verified; SteelWerX; SteelWerX Extended Configurator ACLists>2008-07-22 13:58:33    136704 --a------ C:\WINDOWS\swsc.exe <Not Verified; SteelWerX; SteelWerX Service Controller>2008-07-22 13:58:33    161792 --a------ C:\WINDOWS\swreg.exe <Not Verified; SteelWerX; SteelWerX Registry Editor>2008-07-22 13:58:33     98816 --a------ C:\WINDOWS\sed.exe2008-07-22 13:58:33     80412 --a------ C:\WINDOWS\grep.exe2008-07-22 13:58:33     89504 --a------ C:\WINDOWS\fdsv.exe <Not Verified; Smallfrogs Studio; >2008-07-22 12:41:52         0 d-------- C:\Program Files\Trend Micro-- Find3M Report ---------------------------------------------------------------2008-08-08 14:42:56         0 d-------- C:\Program Files\Kurka Wodna 22008-08-08 14:38:14         0 d-------- C:\Program Files\Football Club2008-08-08 14:34:16         0 d-------- C:\Program Files\eMule2008-08-08 14:05:54         8 -r-hs---- C:\Program Files\Desktop_.ini2008-08-06 12:23:04         0 d-------- C:\Program Files\K-Lite Codec Pack2008-08-06 10:48:46         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Ashampoo2008-08-05 12:07:15         0 d-------- C:\Program Files\McDonaldsDragons2008-08-05 12:07:01         0 d-------- C:\Program Files\Ubisoft2008-08-05 12:06:51         0 d-------- C:\Program Files\Valve2008-08-05 12:03:17         0 d-------- C:\Program Files\Windows Media Connect2008-08-01 10:10:24         0 d--h----- C:\Program Files\InstallShield Installation Information2008-07-31 19:11:27         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Disney Interactive Studios2008-07-31 18:39:41         0 d-------- C:\Program Files\THQ2008-07-31 18:38:55         0 d-------- C:\Program Files\BackToGaya2008-07-31 18:38:46         0 d-------- C:\Program Files\Dead City2008-07-31 18:38:44         0 d-------- C:\Program Files\Deluxe Ski Jump 32008-07-31 18:38:30         0 d-------- C:\Program Files\Gadu-Gadu2008-07-31 18:38:30         0 d-------- C:\Program Files\EOM2008-07-31 18:38:28         0 d-------- C:\Program Files\ICE-land2008-07-31 18:38:26         0 d-------- C:\Program Files\ICE-Land2 Demo2008-07-31 18:38:08         0 d-------- C:\Program Files\Kart2008-07-31 18:37:59         0 d-------- C:\Program Files\Little Fighter 2.5 - v2.02008-07-31 18:37:56         0 d-------- C:\Program Files\Maja22008-07-31 18:37:55         0 d-------- C:\Program Files\Maluch Racer2008-07-31 18:37:43         0 d-------- C:\Program Files\Mistrz Klawiatury II Demo2008-07-31 18:37:42         0 d-------- C:\Program Files\Modi i Nanna2008-07-31 18:37:41         0 d-------- C:\Program Files\No Brakes 4x4 Racing2008-07-31 18:37:41         0 d-------- C:\Program Files\Mustang z Zielonej Doliny2008-07-31 18:37:38         0 d-------- C:\Program Files\Red Clash2008-07-31 18:37:38         0 d-------- C:\Program Files\Notrium2008-07-31 18:37:37         0 d-------- C:\Program Files\Pazur Demo2008-07-31 18:37:37         0 d-------- C:\Program Files\Open Kart PL2008-07-31 18:37:34         0 d-------- C:\Program Files\Pekka Kana 22008-07-31 18:37:08         0 d-------- C:\Program Files\PocoMan2008-07-31 18:37:04         0 d-------- C:\Program Files\Red Shark II2008-07-31 18:37:04         0 d-------- C:\Program Files\Realtek AC972008-07-31 18:37:03         0 d-------- C:\Program Files\Sammy Suricate2008-07-31 18:37:03         0 d-------- C:\Program Files\Różowa Pantera2008-07-31 18:37:03         0 d-------- C:\Program Files\Roll 'm Up2008-07-31 18:37:03         0 d-------- C:\Program Files\Rocks'n'Diamonds2008-07-31 18:37:02         0 d-------- C:\Program Files\Secret Maryo Chronicles2008-07-31 18:37:02         0 d-------- C:\Program Files\Scooby-Doo  i Miasto Duchów 2008-07-31 18:37:02         0 d-------- C:\Program Files\Scooby Doo2008-07-31 18:37:01         0 d-------- C:\Program Files\Serious Sam Pierwsze Starcie2008-07-31 18:37:00         0 d-------- C:\Program Files\Sims2Packer2008-07-31 18:37:00         0 d-------- C:\Program Files\Shopping Centre Tycoon2008-07-31 18:36:59         0 d-------- C:\Program Files\TeddyBears2008-07-31 18:36:59         0 d-------- C:\Program Files\SparxDEMO2008-07-31 18:36:59         0 d-------- C:\Program Files\Smash up Derby2008-07-31 18:36:58         0 d-------- C:\Program Files\The Playa2008-07-31 18:36:57         0 d-------- C:\Program Files\TibiaTestserver2008-07-31 18:36:57         0 d-------- C:\Program Files\TibiaBOT NG42008-07-31 18:36:38         0 d-------- C:\Program Files\wastesedge2008-07-31 18:36:38         0 d-------- C:\Program Files\Video Strip Poker2008-07-31 18:36:37         0 d-------- C:\Program Files\Winamp2008-07-31 18:36:34         0 d-------- C:\Program Files\Windows Journal Viewer2008-07-31 18:36:28         0 d-------- C:\Program Files\Worms2008-07-31 18:34:32         0 d-------- C:\Program Files\Winamp Remote2008-07-31 18:34:03         0 d-------- C:\Program Files\DNA2008-07-31 18:33:42         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Tibia2008-07-31 18:33:36         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Tibia(3)2008-07-31 18:33:26         0 d-------- C:\Program Files\CyberLink2008-07-31 18:33:25         0 d-------- C:\Program Files\Common Files2008-07-31 18:32:20         0 d-------- C:\Program Files\Cheating-Death2008-07-31 18:32:16         0 d-------- C:\Program Files\BitComet2008-07-31 18:32:16         0 d-------- C:\Program Files\Azureus2008-07-31 18:32:06         0 d-------- C:\Program Files\Robin Hood2008-07-31 18:31:43         0 d-------- C:\Program Files\SPIDI LICZY2008-07-31 18:31:39         0 d-------- C:\Program Files\Santa Claus in Trouble2008-07-31 18:31:38         0 d-------- C:\Program Files\Race Cars2008-07-31 18:31:36         0 d-------- C:\Program Files\Pinocchio the Game2008-07-31 18:31:25         0 d-------- C:\Program Files\Chromium BSU2008-07-31 18:30:51         0 d-------- C:\Program Files\Undercover2008-07-31 18:30:41         0 d-------- C:\Program Files\uTorrent2008-07-31 18:30:40         0 d-------- C:\Program Files\AIDA322008-07-31 18:29:59         0 d-------- C:\Program Files\7-Zip2008-07-31 18:24:45         0 d-------- C:\Program Files\Sprill Wodne Przygody2008-07-31 18:24:41         0 d-------- C:\Program Files\Wizaz 22008-07-31 18:24:34         0 d-------- C:\Program Files\TibiaBot NG2008-07-31 18:24:28         0 d-------- C:\Program Files\Messenger2008-07-31 18:23:53         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Mozilla2008-07-31 18:05:47         0 d-------- C:\Program Files\BitTorrent2008-07-29 11:51:30         0 d-------- C:\Program Files\GameSpy Arcade2008-07-29 11:50:12         0 d-------- C:\Program Files\Flash Strike2008-07-29 11:36:35         0 d-------- C:\Program Files\AquaPark_at2008-07-23 13:25:33    577572 --a------ C:\dxsetup.exe2008-07-21 14:20:01         0 d-------- C:\Program Files\Disney Interactive2008-07-10 16:08:23   1847326 -----n--- C:\RaymanM.exe2008-07-10 16:08:21         0 d-------- C:\Program Files\Yeti Studios2008-07-10 16:07:27         0 d-------- C:\Program Files\WSiP2008-07-10 16:05:57         0 d-------- C:\Program Files\Woody Woodpecker2008-07-10 16:05:41         0 d-------- C:\Program Files\WnP2008-07-10 16:05:41         0 d-------- C:\Program Files\WMV9_VCM2008-07-10 16:05:38         0 d-------- C:\Program Files\Wizards of the Coast2008-07-10 16:05:27         0 d-------- C:\Program Files\Winfor2008-07-10 16:04:29         0 d-------- C:\Program Files\Wiering Software2008-07-10 16:03:59         0 d-------- C:\Program Files\WebServ2008-07-10 16:03:36         0 d-------- C:\Program Files\WarlockStudio2008-07-10 16:03:33         0 d-------- C:\Program Files\VIA2008-07-10 15:59:25         0 d-------- C:\Program Files\Usługi online2008-07-10 15:59:25    153116 --a------ C:\Program Files\UNWISE.EXE2008-07-10 15:56:18         0 d-------- C:\Program Files\Ubi Soft2008-07-10 15:56:17         0 d-------- C:\Program Files\ToonCar2008-07-10 15:56:16         0 d-------- C:\Program Files\Tomb Raider II GOLD2008-07-10 15:56:05         0 d-------- C:\Program Files\The Learning Company2008-07-10 15:55:53         0 d-------- C:\Program Files\TerraGame2008-07-10 15:55:42         0 d-------- C:\Program Files\Techland2008-07-10 15:55:41         0 d-------- C:\Program Files\Taxi Challenge Londyn2008-07-10 15:55:41         0 d-------- C:\Program Files\TajemniczaWyspa2008-07-10 15:55:41         0 d-------- C:\Program Files\Tairex Interactive2008-07-10 15:55:40         0 d-------- C:\Program Files\Szybki Lopez2008-07-10 15:55:39         0 d-------- C:\Program Files\Symantec2008-07-10 15:55:39         0 d-------- C:\Program Files\SuperMarioPac2008-07-10 15:55:38         0 d-------- C:\Program Files\sunmedia2008-07-10 15:54:51         0 d-------- C:\Program Files\Steam2008-07-10 15:54:50         0 d-------- C:\Program Files\StarshipTycoonDemo2008-07-10 15:54:18         0 d-------- C:\Program Files\Soda Pipes2008-07-10 15:54:17         0 d-------- C:\Program Files\Snowy Lunch Rush2008-07-10 15:54:13         0 d-------- C:\Program Files\Ski Park Manager2008-07-10 15:54:12         0 d-------- C:\Program Files\Sierra On-Line2008-07-10 15:52:41         0 d-------- C:\Program Files\Shavlik Technologies2008-07-10 15:51:29         0 d-------- C:\Program Files\SEGA2008-07-10 15:50:18         0 d-------- C:\Program Files\Rockstar Games2008-07-10 15:49:52         0 d-------- C:\Program Files\Robster Productions2008-07-10 15:46:20         0 d-------- C:\Program Files\Revistronic2008-07-10 15:46:20         0 d-------- C:\Program Files\ReflexiveArcade2008-07-10 15:46:02         0 d-------- C:\Program Files\Realore2008-07-10 15:46:02         0 d-------- C:\Program Files\RealApex2008-07-10 15:46:02         0 d-------- C:\Program Files\Real2008-07-10 15:46:01         0 d-------- C:\Program Files\Rainbow Islands - Candyland (Demo)2008-07-10 15:45:59         0 d-------- C:\Program Files\QuickTime2008-07-10 15:45:58         0 d-------- C:\Program Files\Project 3 Interactive2008-07-10 15:45:36         0 d-------- C:\Program Files\poszukiwania_zozoli2008-07-10 15:45:34         0 d-------- C:\Program Files\Play.com.pl2008-07-10 15:45:33         0 d-------- C:\Program Files\Play2008-07-10 15:45:33         0 d-------- C:\Program Files\Piraci Nowego Świata2008-07-10 15:45:06         0 d-------- C:\Program Files\Pinnacle2008-07-10 15:45:06         0 d-------- C:\Program Files\Phelios2008-07-10 15:44:55         0 d-------- C:\Program Files\PC-The.Sims.2-4CD.Multi15-By.TXT-[tntvillage.org]2008-07-10 15:44:52         0 d-------- C:\Program Files\Patrician III2008-07-10 15:44:52         0 d-------- C:\Program Files\Paradox Entertainment2008-07-10 15:44:51         0 d-------- C:\Program Files\PacBomber2008-07-10 15:44:49         0 d-------- C:\Program Files\Oak Entertainment2008-07-10 15:44:34         0 d-------- C:\Program Files\Nikki the Ninja2008-07-10 15:44:34         0 d-------- C:\Program Files\neoSoftware2008-07-10 15:44:32         0 d-------- C:\Program Files\Multi_Media2008-07-10 15:44:32         0 d-------- C:\Program Files\MSN Gaming Zone2008-07-10 15:44:17         0 d-------- C:\Program Files\Monte Cristo2008-07-10 15:44:13         0 d-------- C:\Program Files\Mirage Interactive2008-07-10 15:44:13         0 d-------- C:\Program Files\Mindscape2008-07-10 15:44:12         0 d-------- C:\Program Files\Microids2008-07-10 15:44:12         0 d-------- C:\Program Files\Metro 3D2008-07-10 15:44:12         0 d-------- C:\Program Files\Menara Games2008-07-10 15:44:11         0 d-------- C:\Program Files\MDK22008-07-10 15:39:45         0 d-------- C:\Program Files\Maxis2008-07-10 15:39:45         0 d-------- C:\Program Files\MarkSoft2008-07-10 15:39:35         0 d-------- C:\Program Files\MarBit2008-07-10 15:39:35         0 d-------- C:\Program Files\Maps2008-07-10 15:39:35         0 d-------- C:\Program Files\Managed DirectX (0901)2008-07-10 15:39:31         0 d-------- C:\Program Files\Magic Builder2008-07-10 15:39:30         0 d-------- C:\Program Files\Madagascar2008-07-10 15:39:30         0 d-------- C:\Program Files\Mad Tracks Demo2008-07-10 15:39:17         0 d-------- C:\Program Files\LittleFighter22008-07-10 15:38:45         0 d-------- C:\Program Files\LEGO Company2008-07-10 15:38:45         0 d-------- C:\Program Files\Legendo's Trzej Muszkieterowie2008-07-10 15:38:44         0 d-------- C:\Program Files\Lavasoft2008-07-10 15:38:44         0 d-------- C:\Program Files\Lalka Klara - Stylistka2008-07-10 15:38:40         0 d-------- C:\Program Files\Kovloria2008-07-10 15:38:40         0 d-------- C:\Program Files\Komlogo2008-07-10 15:38:35         0 d-------- C:\Program Files\Kelvin2008-07-10 15:38:34         0 d-------- C:\Program Files\Kazaa2008-07-10 15:38:30         0 d-------- C:\Program Files\Kajko i Kokosz - Szkoła latania2008-07-10 15:38:23         0 d-------- C:\Program Files\JoWooD2008-07-10 15:37:50         0 d-------- C:\Program Files\Java2008-07-10 15:37:49         0 d-------- C:\Program Files\ivo2008-07-10 15:37:49         0 d-------- C:\Program Files\InterActual2008-07-10 15:37:49         0 d-------- C:\Program Files\Infogrames2008-07-10 15:37:12         0 d-------- C:\Program Files\ILLEGAL STREET RACING(2)2008-07-10 15:37:11         0 d-------- C:\Program Files\IceTec Studios Games2008-07-10 15:37:06         0 d-------- C:\Program Files\Hugo - Gorączka Czarnych Diamentów2008-07-10 15:37:06         0 d-------- C:\Program Files\HighMAT CD Writing Wizard2008-07-10 15:37:06         0 d-------- C:\Program Files\Help2008-07-10 15:37:01         0 d-------- C:\Program Files\Groovy Lime2008-07-10 15:37:01         0 d-------- C:\Program Files\Gorky 022008-07-10 15:36:15         0 d-------- C:\Program Files\Google2008-07-10 15:36:14         0 d-------- C:\Program Files\Gift2008-07-10 15:36:11         0 d-------- C:\Program Files\Games2008-07-10 15:35:57         0 d-------- C:\Program Files\Funny Racer DEMO2008-07-10 15:35:57         0 d-------- C:\Program Files\Freaky Tuner2008-07-10 15:35:56         0 d-------- C:\Program Files\FOX Jones2008-07-10 15:35:29         0 d-------- C:\Program Files\Fish Tales Trial2008-07-10 15:34:14         0 d-------- C:\Program Files\Firefly Studios2008-07-10 15:34:13         0 d-------- C:\Program Files\Feedback2008-07-10 15:32:31         0 d-------- C:\Program Files\Enlight2008-07-10 15:31:58         0 d-------- C:\Program Files\Empire Interactive2008-07-10 15:31:57         0 d-------- C:\Program Files\Elektrogames2008-07-10 15:31:56         0 d-------- C:\Program Files\Edukacja XXI wieku2008-07-10 15:31:01         0 d-------- C:\Program Files\EA Games2008-07-10 15:31:00         0 d-------- C:\Program Files\Duke Nukem2008-07-10 15:30:59         0 d-------- C:\Program Files\Droga do Eldorado2008-07-10 15:30:59         0 d-------- C:\Program Files\Dragon Jumper2008-07-10 15:30:59         0 d-------- C:\Program Files\Dracula Twins2008-07-10 15:30:59         0 d-------- C:\Program Files\Dracula Twins Demo2008-07-10 15:28:37         0 d-------- C:\Program Files\Disney Interactive Studios2008-07-10 15:28:10         0 d-------- C:\Program Files\directx2008-07-10 15:28:09         0 d-------- C:\Program Files\DIFX2008-07-10 15:27:47         0 d-------- C:\Program Files\Deluxe Ski Jump2008-07-10 15:27:38         0 d-------- C:\Program Files\Deep Silver2008-07-10 15:27:29         0 d-------- C:\Program Files\Daydream Software2008-07-10 15:27:29         0 d-------- C:\Program Files\Dart 'm Up2008-07-10 15:25:57         0 d-------- C:\Program Files\Creative2008-07-10 15:25:56         0 d-------- C:\Program Files\Cossacks2008-07-10 15:25:56         0 d-------- C:\Program Files\Core Design2008-07-10 15:25:53         0 d-------- C:\Program Files\Compedia2008-07-10 15:25:53         0 d-------- C:\Program Files\Combat Mission - Beyond Overlord2008-07-10 15:25:52         0 d-------- C:\Program Files\Codemasters2008-07-10 15:25:52         0 d-------- C:\Program Files\City Interactive2008-07-10 15:25:48         0 d-------- C:\Program Files\Charlie II2008-07-10 15:25:48         0 d-------- C:\Program Files\CeeBot-Teen DEMO2008-07-10 15:25:12         0 d-------- C:\Program Files\Cat Daddy Games2008-07-10 15:25:07         0 d-------- C:\Program Files\Calaris2008-07-10 15:24:57         0 d-------- C:\Program Files\Buena Vista Games2008-07-10 15:24:57         0 d-------- C:\Program Files\Borland2008-07-10 15:24:56         0 d-------- C:\Program Files\Bob Buduje Park2008-07-10 15:24:55         0 d-------- C:\Program Files\Black Isle2008-07-10 15:24:55         0 d-------- C:\Program Files\BitZip2008-07-10 15:24:43         0 d-------- C:\Program Files\Billy Blade2008-07-10 15:24:43         0 d-------- C:\Program Files\Big Scale Racing2008-07-10 15:24:43         0 d-------- C:\Program Files\Best Friends Free Trial2008-07-10 15:24:37         0 d-------- C:\Program Files\BearShare Applications2008-07-10 15:24:36         0 d-------- C:\Program Files\BearFlix2008-07-10 15:24:27         0 d-------- C:\Program Files\Avalon2008-07-10 15:24:26         0 d-------- C:\Program Files\Auralog2008-07-10 15:24:18         0 d-------- C:\Program Files\Atari2008-07-10 15:18:57         0 d-------- C:\Program Files\Aspyr(2)2008-07-10 15:13:31         0 d-------- C:\Program Files\Asprate2008-07-10 15:12:55         0 d-------- C:\Program Files\ARTEMATICA2008-07-10 15:12:54         0 d-------- C:\Program Files\Arcade Lab2008-07-10 15:12:52         0 d-------- C:\Program Files\Another Day2008-07-10 15:12:52         0 d-------- C:\Program Files\Anno 16022008-07-10 15:12:51         0 d-------- C:\Program Files\Anemone2008-07-10 15:12:38         0 d-------- C:\Program Files\Alternative Software Ltd2008-07-10 15:12:37         0 d-------- C:\Program Files\Alicja w Krainie Czarów2008-07-10 15:12:37         0 d-------- C:\Program Files\Air Strike 3D2008-07-10 15:06:32         0 d-------- C:\Program Files\AidemMedia2008-07-10 15:06:12         0 d-------- C:\Program Files\Ahead2008-07-10 15:05:18         0 d-------- C:\Program Files\Activision Value2008-07-10 15:04:36         0 d-------- C:\Program Files\Activision2008-07-10 15:04:32         0 d-------- C:\Program Files\Ace Ventura2008-07-10 15:04:24         0 d-------- C:\Program Files\Absolutist.com2008-07-10 15:04:23         0 d-------- C:\Program Files\Abashera Revamped demo2008-07-10 15:04:20         0 d-------- C:\Program Files\20.000 Leghe2008-07-10 15:04:19         0 d-------- C:\Program Files\1C & Cenega2008-07-10 15:04:16         0 d-------- C:\Program Files\1C2008-07-10 15:04:08         0 d-------- C:\Program Files\0012008-07-10 15:03:59     49178 --a------ C:\MTAPH.exe <Not Verified; MultiTheftAuto; MTA Protocol Handler>2008-07-10 15:03:59    435231 -----n--- C:\MTAClient.exe2008-07-10 15:01:23   3088925 -----n--- C:\gta-vc.exe2008-07-10 15:01:19    228911 -----n--- C:\GTA Vice ultimate Trainer.exe2008-07-10 13:31:40         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Azureus2008-07-03 10:11:22         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\uTorrent2008-07-02 19:12:24         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Adobe2008-07-02 19:10:08         0 d-------- C:\Program Files\Common Files\Adobe2008-07-02 15:01:45         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\BearShare2008-06-26 20:02:04         0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\CyberLink2008-06-26 10:10:44     47104 --a------ C:\WINDOWS\system32\KMVIDC32.DLL2008-05-14 09:48:12      2560 --a------ C:\WINDOWS\system32\bitcometres.dll <Not Verified; BitComet; BitComet BCTP Helper>2008-05-09 16:20:47     58493 --a------ C:\WINDOWS\SFDLL.DLL-- Registry Dump ---------------------------------------------------------------*Note* empty entries & legit default entries are not shown[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"RaidTool"="C:\Program Files\VIA\RAID\raid_tool.exe" [2005-04-26 11:22]"SoundMan"="SOUNDMAN.EXE" [2005-06-20 21:42 C:\WINDOWS\SOUNDMAN.EXE]"VTTimer"="VTTimer.exe" [2005-03-08 03:33 C:\WINDOWS\system32\VTTimer.exe]"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50]"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2003-10-31 19:42]"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-08-11 15:43]"nwiz"="nwiz.exe" [2006-08-11 15:43 C:\WINDOWS\system32\nwiz.exe]"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2006-08-11 15:43]"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25]"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-04-17 13:41]"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2004-04-13 07:07]"FortKnoxPersonalFirewall"="C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe" [2008-03-31 17:35][HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"nvscv32"="C:\WINDOWS\system32\drivers\nvscv32.exe" [2008-07-23 13:23][HKEY_USERS\.default\software\microsoft\windows\currentversion\run]"Nokia.PCSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]"DisableRegistryTools"=0 (0x0)"HideLegacyLogonScripts"=0 (0x0)"HideLogoffScripts"=0 (0x0)"RunLogonScriptSync"=1 (0x1)"RunStartupScriptSync"=0 (0x0)"HideStartupScripts"=0 (0x0)[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]"HideLegacyLogonScripts"=0 (0x0)"HideLogoffScripts"=0 (0x0)"RunLogonScriptSync"=1 (0x1)"RunStartupScriptSync"=0 (0x0)"HideStartupScripts"=0 (0x0)[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3c30088b-589c-11dd-b79f-0013d30a9684}]Auto\command- E:\setup.exeAutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL setup.exe-- End of Deckard's System Scanner: finished at 2008-08-08 16:49:07 ------------
Deckard's System Scanner v20071014.68Extra logfile - please post this as an attachment with your post.---------------------------------------------------------------------------------- System Information ----------------------------------------------------------Microsoft Windows XP Home Edition (build 2600) SP 2.0Architecture: X86; Language: PolishCPU 0: Intel? Celeron? CPU 3.06GHzPercentage of Memory in Use: 77%Physical Memory (total/avail): 255.48 MiB / 56.56 MiBPagefile Memory (total/avail): 568.41 MiB / 350.11 MiBVirtual Memory (total/avail): 2047.88 MiB / 1923.8 MiBA: is Removable (No Media)C: is Fixed (NTFS) - 74.52 GiB total, 14.76 GiB free. D: is CDROM (No Media)\\.\PHYSICALDRIVE0 - WDC WD800BB-88JHC0 - 74.53 GiB - 1 partition  \PARTITION0 (bootable) - Instalowalny system plików - 74.52 GiB - C:-- Security Center -------------------------------------------------------------AUOptions is scheduled to auto-install.-- Environment Variables -------------------------------------------------------ALLUSERSPROFILE=C:\Documents and Settings\All UsersAPPDATA=C:\Documents and Settings\MONIKA\Dane aplikacjiCLIENTNAME=ConsoleCommonProgramFiles=C:\Program Files\Common FilesCOMPUTERNAME=TWOJA-EEF261E29ComSpec=C:\WINDOWS\system32\cmd.exeFP_NO_HOST_CHECK=NOHOMEDRIVE=C:HOMEPATH=\Documents and Settings\MONIKALOGONSERVER=\\TWOJA-EEF261E29NUMBER_OF_PROCESSORS=1OS=Windows_NTPath=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\wbem;C:\Program Files\PC Connectivity SolutionPATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSHPROCESSOR_ARCHITECTURE=x86PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 1, GenuineIntelPROCESSOR_LEVEL=15PROCESSOR_REVISION=0401ProgramFiles=C:\Program FilesPROMPT=$P$GSESSIONNAME=ConsoleSystemDrive=C:SystemRoot=C:\WINDOWSTEMP=C:\DOCUME~1\MONIKA\USTAWI~1\TempTMP=C:\DOCUME~1\MONIKA\USTAWI~1\TempUSERDOMAIN=TWOJA-EEF261E29USERNAME=MONIKAUSERPROFILE=C:\Documents and Settings\MONIKAwindir=C:\WINDOWS-- User Profiles ---------------------------------------------------------------MONIKA [i](admin)[/i]Grzesiek [i](admin)[/i]Diego [i](admin)[/i]Metal Slug [i](admin)[/i]-- Add/Remove Programs --------------------------------------------------------- --> C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL --> C:\WINDOWS\UNINST.EXE -f"C:\Program Files\Adobe\Photoshop 5.0\DeIsL1.isu" -c"C:\Program Files\Adobe\Photoshop 5.0\Uninst.dll" --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5AAFE9B0-B60B-4B12-B22D-6B15507502E5}\Setup.exe" -l0x9  --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{63A317D0-60A6-43FC-848A-9FE4A53B29CE}\setup.exe" -l0x9  --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{99CDAF0C-AF5D-422F-B469-33048A949994}\setup.exe" -l0x9  --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{99CDAF0C-AF5D-422F-B469-33048A949994}\setup.exe" -l0x9  /remove --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9E54F486-CD4A-44A5-B041-16D4E1E56A53}\setup.exe" -l0x9  --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9E54F486-CD4A-44A5-B041-16D4E1E56A53}\setup.exe" -l0x9  /remove --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x9  --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf7-Zip 4.57 --> "C:\Program Files\7-Zip\Uninstall.exe"Ad-Aware SE Personal --> C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOGAdobe Acrobat 5.0 --> C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll"Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exeAdobe Reader 8 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A80000000002}Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.logAktualizacja dla systemu Windows XP (KB894391) --> "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB896727) --> "C:\WINDOWS\$NtUninstallKB896727$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB898461) --> "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB900485) --> "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB900930) --> "C:\WINDOWS\$NtUninstallKB900930$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB908531) --> "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB910437) --> "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB911280) --> "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB916595) --> "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB920872) --> "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB922582) --> "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB927891) --> "C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB929338) --> "C:\WINDOWS\$NtUninstallKB929338$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB930916) --> "C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB931836) --> "C:\WINDOWS\$NtUninstallKB931836$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB933360) --> "C:\WINDOWS\$NtUninstallKB933360$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB936357) --> "C:\WINDOWS\$NtUninstallKB936357$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB938828) --> "C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB942763) --> "C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB942840) --> "C:\WINDOWS\$NtUninstallKB942840$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB946627) --> "C:\WINDOWS\$NtUninstallKB946627$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB890046) --> "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB893066) --> "C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB893756) --> "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896358) --> "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896422) --> "C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896423) --> "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896424) --> "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896428) --> "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB899587) --> "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB899588) --> "C:\WINDOWS\$NtUninstallKB899588$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB899591) --> "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB900725) --> "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB901017) --> "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB901214) --> "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB902400) --> "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB904706) --> "C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB905414) --> "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB905749) --> "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB908519) --> "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB911562) --> "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB911567) --> "C:\WINDOWS\$NtUninstallKB911567$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB911927) --> "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB912812) --> "C:\WINDOWS\$NtUninstallKB912812$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB912919) --> "C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB913446) --> "C:\WINDOWS\$NtUninstallKB913446$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB913580) --> "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB914388) --> "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB914389) --> "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB916281) --> "C:\WINDOWS\$NtUninstallKB916281$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB917159) --> "C:\WINDOWS\$NtUninstallKB917159$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB917344) --> "C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB917422) --> "C:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB917953) --> "C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB918118) --> "C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB918439) --> "C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB918899) --> "C:\WINDOWS\$NtUninstallKB918899$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB919007) --> "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920213) --> "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920214) --> "C:\WINDOWS\$NtUninstallKB920214$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920670) --> "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920683) --> "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920685) --> "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB921398) --> "C:\WINDOWS\$NtUninstallKB921398$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB921503) --> "C:\WINDOWS\$NtUninstallKB921503$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB921883) --> "C:\WINDOWS\$NtUninstallKB921883$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB922616) --> "C:\WINDOWS\$NtUninstallKB922616$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB922760) --> "C:\WINDOWS\$NtUninstallKB922760$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB922819) --> "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB923191) --> "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB923414) --> "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB923694) --> "C:\WINDOWS\$NtUninstallKB923694$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB923980) --> "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB924191) --> "C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB924270) --> "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB924496) --> "C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB924667) --> "C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB925454) --> "C:\WINDOWS\$NtUninstallKB925454$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB925486) --> "C:\WINDOWS\$NtUninstallKB925486$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB925902) --> "C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB926255) --> "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB926436) --> "C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB927779) --> "C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB927802) --> "C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB928090) --> "C:\WINDOWS\$NtUninstallKB928090$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB928255) --> "C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB928843) --> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB929123) --> "C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB929969) --> "C:\WINDOWS\$NtUninstallKB929969$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB930178) --> "C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB931261) --> "C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB931768) --> "C:\WINDOWS\$NtUninstallKB931768$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB931784) --> "C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB932168) --> "C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB933566) --> "C:\WINDOWS\$NtUninstallKB933566$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB933729) --> "C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB935839) --> "C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB935840) --> "C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB936021) --> "C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB937143) --> "C:\WINDOWS\$NtUninstallKB937143$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB938127) --> "C:\WINDOWS\$NtUninstallKB938127$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB938829) --> "C:\WINDOWS\$NtUninstallKB938829$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB939653) --> "C:\WINDOWS\$NtUninstallKB939653$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB941202) --> "C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB941568) --> "C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB941644) --> "C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB941693) --> "C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB942615) --> "C:\WINDOWS\$NtUninstallKB942615$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB943055) --> "C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB943460) --> "C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB943485) --> "C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB944338) --> "C:\WINDOWS\$NtUninstallKB944338$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB944533) --> "C:\WINDOWS\$NtUninstallKB944533$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB944653) --> "C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB945553) --> "C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB946026) --> "C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB947864) --> "C:\WINDOWS\$NtUninstallKB947864$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB948590) --> "C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB948881) --> "C:\WINDOWS\$NtUninstallKB948881$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB950749) --> "C:\WINDOWS\$NtUninstallKB950749$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB950759) --> "C:\WINDOWS\$NtUninstallKB950759$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB950760) --> "C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB950762) --> "C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB951376-v2) --> "C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB951376) --> "C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB951698) --> "C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB951748) --> "C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla Windows XP (KB923689) --> "C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla Windows XP (KB941569) --> "C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"ALLPlayer V2.3.L --> "C:\Program Files\MarBit\ALLPlayer\unins000.exe"ALLPlayer V3.X --> "C:\Program Files\MarBit\ALLPlayer\unins001.exe"ALLPlayer V3.X --> "C:\Program Files\MarBit\ALLPlayer\unins002.exe"Anemone --> C:\PROGRA~1\UNWISE.EXE C:\PROGRA~1\INSTALL.LOGArchiwizator WinRAR --> C:\Program Files\WinRAR\uninstall.exe?Torrent --> "C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALLBearShare --> C:\Program Files\BearShare Applications\BearShare\UninstallSurvey.exe C:\PROGRA~1\BEARSH~1\BEARSH~1\UNWISE.EXE /U C:\PROGRA~1\BEARSH~1\BEARSH~1\INSTALL.LOGBitComet 1.00 --> C:\Program Files\BitComet\uninst.exeCheating-Death 4.33.4 --> C:\Program Files\Cheating-Death\UninstCD.exeChromium BSU --> C:\Program Files\Chromium BSU\Uninstal.exeCounter-Strike 1.6 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}\Setup.exe" -l0x19 Creative MuVo V200 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{903EC56F-EA7E-4309-B0E6-9F1AE22FCC08}\SETUP.EXE" -l0x9  /removeCreative System Information --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{63A317D0-60A6-43FC-848A-9FE4A53B29CE}\setup.exe" -l0x9  /removeDeluxe Ski Jump 3 v1.2 --> "C:\Program Files\Deluxe Ski Jump 3\Uninstall\unins000.exe"Direct Show Ogg Vorbis Filter (remove only) --> "C:\WINDOWS\system32\OggDSuninst.exe"DNA --> "C:\Program Files\DNA\btdna.exe" /UNINSTALLDragon Ninja Saga v2.0 --> c:\windows\program files\Planet Zio\Ninja Saga\Uninstal.exeeMusic - 50 Free MP3 offer --> "C:\Program Files\Winamp\eMusic\Uninst-eMusic-promotion.exe"FortKnox Personal Firewall 2008 --> "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\unins000.exe"Give4Free Plugin --> C:\Program Files\Give4Free Plugin\uninstall.exeGoogle Earth --> MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}Harry Potter II --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7BF68B83-5057-4D4B-0093-28285EEB9EE3}\setup.exe"  -l0x15 UninstallHarry Potter TM --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3F50AF3B-8997-4916-0095-99D63DDB785A}\setup.exe"  -l0x15 UninstallHeroes of Might and Magic III --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BEC72604-5B27-4C6B-B136-F98EF4C46F5B}\setup.exe" -l0x15 HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstallŚwiątynia Pierwotnego Zła --> "C:\Program Files\InstallShield Installation Information\{25FD9FFA-C3DF-4176-BD33-68FC9F8E7F55}\setup.exe" -runfromtemp -l0x0015 -removeonlyJanitor Dan the Spaceman --> "C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-Janitor Dan the Spaceman.datJava 2 Runtime Environment, SE v1.4.2_05 --> MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142050}Java 6 Update 5 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}Jump&Ride Riding Academy 3D --> "C:\Program Files\Jump and Ride Riding Academy 3D\unins000.exe"K-Lite Codec Pack 3.8.0 Full --> "C:\Program Files\K-Lite Codec Pack\unins000.exe"Kociaki (remove only) --> "C:\Program Files\Ubisoft\Kociaki\uninstall.exe" 1045Król Maciuś Pierwszy. Wesołe Miasteczko --> C:\Program Files\AidemMedia\Król Maciuś Pierwszy. Wesołe Miasteczko\Uninstall.exeLiveReg (Symantec Corporation) --> C:\Program Files\Common Files\Symantec Shared\LiveReg\VcSetup.exe /REMOVELiveUpdate 1.6 (Symantec Corporation) --> C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE /UMój brat niedźwiedź --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B489D5F8-D960-4399-9286-C59BF21991B5}\setup.exe" -l0x15 Mój brat niedźwiedźMaluch Racer --> "C:\Program Files\Maluch Racer\unins000.exe"Martin Mystčre --> "C:\Program Files\ARTEMATICA\MM\unins000.exe"Mashed --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8B82BC98-9CBF-47A3-A850-388CA1611383}\setup.exe" -l0x15 McDonald's Dragons --> C:\Program Files\McDonaldsDragons\uninstall.exeMDK2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EA3CD554-A1E2-11D3-B4C5-006067326BA5}\setup.exe"  -uninst Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}Microsoft Windows Journal Viewer --> MsiExec.exe /X{43DCF766-6838-4F9A-8C91-D92DA586DFA7}Microsoft Windows Media Video 9 VCM --> RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmv9vcm.inf, UninstallMistrz Klawiatury II Demo --> "C:\Program Files\Mistrz Klawiatury II Demo\unins000.exe"Moorhuhn Kart XS (PL) --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{63D08574-EC96-44F1-8973-8BA847C2BB22}\Setup.exe" -l0x9 Mozilla Firefox (2.0.0.16) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exeMuVo Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5AAFE9B0-B60B-4B12-B22D-6B15507502E5}\Setup.exe" -l0x9  /removeMyszka Miki: Naukowe potyczki z duchami --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{916088E7-C035-47E3-8DD6-9434B6A90357}\setup.exe" -l0x15 UninstallNero Suite --> C:\Program Files\Common Files\Nero\Uninstall\Setupx.exe /uninstall ExtraUninstallID=""No Brakes: 4x4 Racing 1.11 --> "C:\Program Files\No Brakes 4x4 Racing\unins000.exe"Nokia Connectivity Cable Driver --> MsiExec.exe /X{972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1}Nokia PC Suite --> C:\Documents and Settings\All Users\Dane aplikacji\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_EA.exe /LANG="1045"Nokia PC Suite --> MsiExec.exe /I{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}NVIDIA Drivers --> C:\WINDOWS\system32\nvudisp.exe UninstallGUIOdinstaluj aplikację Wizaż 2 --> "C:\Program Files\Wizaz 2\unins000.exe"Open Kart PL --> C:\PROGRA~1\OPENKA~1\UNWISE.EXE C:\PROGRA~1\OPENKA~1\INSTALL.LOGOpowiesci z Narnii --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{ACE86D58-5876-4CA5-95F4-D8A6802D5055} Over the Hedge Demo --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{835DE40D-C224-447A-9D65-B015514B3440} P2P Networking --> C:\WINDOWS\system32\P2P Networking\P2P Networking.exe /UNINSTALLPacDoom v3.0 --> "C:\Program Files\Absolutist.com\PacDoom3\unins000.exe"PacQuest 3D --> C:\WINDOWS\unvise32.exe C:\Program Files\TerraGame\PacQuest 3D\uninstal.logPaintball Shooter --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Play.com.pl\Paintball Shooter\Uninst.isu"Pakiet sterowników systemu Windows - Nokia Modem (11/03/2006 6.82.0.1) --> C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_4EFFAAE27A08EDFDE145390033D8EF099DA65567\nokbtmdm.infPC Connectivity Solution --> MsiExec.exe /I{066D65EA-ED53-44E4-A96A-F81B6E409D2E}Pekka Kana 2 --> C:\Documents and Settings\MONIKA\Pulpit\Uninstal.exePinocchio the Game --> C:\Program Files\Pinocchio the Game\Setup.exePoprawka systemu Windows XP - KB834707 --> C:\WINDOWS\$NtUninstallKB834707$\spuninst\spuninst.exePoprawka systemu Windows XP - KB873333 --> C:\WINDOWS\$NtUninstallKB873333$\spuninst\spuninst.exePoprawka systemu Windows XP - KB873339 --> C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exePoprawka systemu Windows XP - KB885250 --> C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exePoprawka systemu Windows XP - KB885835 --> C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exePoprawka systemu Windows XP - KB885836 --> C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exePoprawka systemu Windows XP - KB886185 --> C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exePoprawka systemu Windows XP - KB887472 --> C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exePoprawka systemu Windows XP - KB887742 --> C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exePoprawka systemu Windows XP - KB887797 --> C:\WINDOWS\$NtUninstallKB887797$\spuninst\spuninst.exePoprawka systemu Windows XP - KB888113 --> C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exePoprawka systemu Windows XP - KB888302 --> C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exePoprawka systemu Windows XP - KB890859 --> "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"Poprawka systemu Windows XP - KB891781 --> C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exePoprawka systemu Windows XP - KB893086 --> "C:\WINDOWS\$NtUninstallKB893086$\spuninst\spuninst.exe"PowerDVD --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe"  -uninstallProfesor Szalony --> "C:\Program Files\Avalon\Profesor Szalony\Odinstaluj.exe"Prosiaczek i Przyjaciele --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1D6FB37A-CBCA-11D6-8940-0002A5E32BEF}\setup.exe" Prosiaczek i PrzyjacielePsiaki (remove only) --> "C:\Program Files\Ubisoft\Psiaki\uninstall.exe" 1045Pszczółka Maja - Urodzinowa niespodzianka --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{79FAE1B5-634C-4AFC-A994-13AB94A69FCB}\setup.exe" Race Cars --> "C:\Program Files\Race Cars\unins000.exe"Rage of Mages --> C:\WINDOWS\aluinst1.exeRayman Raving Rabbids --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{111E336D-30BF-4CD4-8D69-4541732AFB27}\setup.exe" -l0x15  -removeonlyRayman3 --> MsiExec.exe /X{BAF5914B-5730-4373-B038-9F436AC6A0D6}Realtek AC'97 Audio --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" -l0x15  -removeonlyRed Clash --> C:\PROGRA~1\REDCLA~1\UNWISE.EXE C:\PROGRA~1\REDCLA~1\INSTALL.LOGRed Shark II --> "C:\Program Files\Red Shark II\unins000.exe"Reksio i Wehikuł Czasu --> C:\Program Files\AidemMedia\Reksio i Wehikuł Czasu\Uninstall.exeRobin Hood --> "C:\WINDOWS\lsb_un20.exe" /C=UC /N=Robin HoodRocks'n'Diamonds 3.2.3 --> "C:\Program Files\Rocks'n'Diamonds\unins000.exe"Rozszerzenie HighMAT do Kreatora zapisywania dysku CD w systemie Microsoft Windows XP --> MsiExec.exe /X{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}Sammy Suricate --> C:\PROGRA~1\SAMMYS~1\UNWISE.EXE C:\PROGRA~1\SAMMYS~1\INSTALL.LOGSanta Claus in Trouble --> C:\PROGRA~1\SANTAC~1\UNINST~1\UNWISE.EXE C:\PROGRA~1\SANTAC~1\UNINST~1\INSTALL.LOGSchool Tycoon Demo --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{066EDEF5-8B9D-46FB-83CB-AA040A98801E}\Setup.exe" Scooby-Doo 2 - Potwory na gigancie --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB80AB5C-9CBA-4906-A2BA-DA3C469A3B92}\setup.exe" -l0x15  -uninst Scooby Doo i Strachy na Lachy --> C:\PROGRA~1\SCOOBY~1\UNWISE.EXE C:\PROGRA~1\SCOOBY~1\INSTALL.LOGSecret Maryo Chronicles --> "C:\Program Files\Secret Maryo Chronicles\uninstall.exe"Serious Sam Pierwsze Starcie --> C:\PROGRA~1\SERIOU~1\UNWISE.EXE C:\PROGRA~1\SERIOU~1\INSTALL.LOGShark Tale --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\10\INTEL3~1\IDriver.exe /M{C5D63256-4148-4317-B64D-A51D233CA945} /l1043 Shockwave --> C:\WINDOWS\system32\Macromed\SHOCKW~2\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~2\Install.logShopping Centre Tycoon --> C:\Program Files\Shopping Centre Tycoon\uninst.exeSideswipe --> C:\Uninstal.exeSimon Extreme 1.0 --> "C:\Program Files\Games\Simon Extreme\uninstall.exe"Sims2Packer --> C:\Program Files\Sims2Packer\Uninstal.exeSki Racing 2006 Demo --> MsiExec.exe /I{B01CB0F0-63C0-431D-9497-87B9B4131E9D}Snoopy na tropie --> MsiExec.exe /I{B28F6FC3-E092-11D6-9AFC-00045A969C6A}SPIDI LICZY --> "C:\WINDOWS\lsb_un20.exe" /C=UC /N=SPIDI LICZYStronghold Crusader --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8C3727F2-8E37-49E4-820C-03B1677F53B6}\setup.exe" Studio 8 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{53EF6570-21A4-47ED-A40A-E6470A5677A3}\Setup.exe" -l0x9  UNINSTALL-L0x9 -cSwarm --> "C:\Games\Swarm\Swarm.exe" /REMOVESzkoła Koziołka Matołka --> C:\Program Files\AidemMedia\Demo\SzkołaKoziołka\Uninstall.exeTarzan --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68F423B1-B08A-4EFC-8414-408455443322}\setup.exe" TarzanTAXI MADNESS LONDON --> C:\Program Files\TAXI MADNESS LONDON\uninstall.exeThe Dead City --> "C:\Program Files\Dead City\unins000.exe"THE HOUSE OF THE DEAD 2 --> MsiExec.exe /X{2C8B0579-46E6-4088-8E57-44833265798F}The Playa --> "C:\Program Files\The Playa\uninstall.exe"The Sims House Party --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7D268154-7A31-40F2-9779-7A250914BB39}\setup.exe"  -l0009The Westerner --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{243165C5-949A-404D-AE94-A0A2C9CFD44C} Tibia MULTI-ip changer --> C:\Program Files\Asprate\Tibia Multi IP Changer\UNinstaller.exeTibia Testserver --> "C:\Program Files\TibiaTestserver\unins000.exe"TibiaBot NG 4.7.1 --> "C:\Program Files\TibiaBot NG\unins000.exe"Tony Hawks Pro Skater 4 --> MsiExec.exe /X{E0F07676-2C60-4465-A727-20DE3BFCABAC}Tygrysek i Uczta Kubusia --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68F423B1-B08A-4EFC-8414-408485473BB3}\setup.exe" Tygrysek i Uczta KubusiaUndercover(v1.1) --> "C:\Program Files\Undercover\unins000.exe"Unreal --> MsiExec.exe /I{8FDBE1E8-2922-4750-9E4B-6B28CA67DBBB}Unreal Tournament 2004 Demo --> C:\UT2004Demo\System\Setup.exe uninstall "UT2004-Demo"VIA Platform Device Manager --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169} VIA/S3G Display Driver --> C:\PROGRA~1\VIA\UChromeP\s3minset.exe /u C:\PROGRA~1\VIA\UChromeP\UChromeP.unsVuze --> C:\Program Files\Azureus\uninstall.exeWinamp --> "C:\Program Files\Winamp\UninstWA.exe"Winamp Remote --> "C:\Program Files\Winamp Remote\uninstall.exe"Windows Driver Package - Nokia (WUDFRd) WPD (03/19/2007 6.83.31.1) --> C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccswpddri_039E7E24575DBAE6A389611AF28F4EB97729D33E\pccswpddriver.infWindows Driver Package - Nokia Modem (02/15/2007 3.1) --> C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccs_bluet_8B37DC72918CCD58A6EC20373AF6242B037A293B\pccs_bluetooth.infWindows Media Connect --> msiexec.exe /I {F6869CD2-3DB4-476D-A4C7-B3AE7C3ACF7B}Windows Media Connect --> MsiExec.exe /I{F6869CD2-3DB4-476D-A4C7-B3AE7C3ACF7B}WinZip 11.1 --> MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}Worms 2 --> C:\PROGRA~1\Worms\UNWISE.EXE C:\PROGRA~1\Worms\INSTALL.LOGWorms2 --> C:\WINDOWS\IsUn0415.exe -fC:\Team17\Worms2\Uninst.isuZoo Empire --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5D86B852-8BFB-4ED6-A460-E01E29B955D1}\setup.exe" -l0x15  -uninst -- Application Event Log -------------------------------------------------------Event Record #/Type1501 / ErrorEvent Submitted/Written: 08/08/2008 04:09:23 PMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]Event Record #/Type1497 / ErrorEvent Submitted/Written: 08/08/2008 01:57:43 PMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]Event Record #/Type1494 / ErrorEvent Submitted/Written: 08/08/2008 10:09:30 AMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]Event Record #/Type1493 / ErrorEvent Submitted/Written: 08/08/2008 09:46:31 AMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]Event Record #/Type1492 / ErrorEvent Submitted/Written: 08/08/2008 09:37:14 AMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]-- Security Event Log ----------------------------------------------------------No Errors/Warnings found.-- System Event Log ------------------------------------------------------------Event Record #/Type2898 / WarningEvent Submitted/Written: 08/08/2008 04:26:19 PMEvent ID/Source: 4226 / TcpipEvent Description:Protokół TCP/IP osiągnął limit zabezpieczeń ustalony dla liczby równoczesnych prób połączeń TCP.Event Record #/Type2897 / ErrorEvent Submitted/Written: 08/08/2008 04:10:24 PMEvent ID/Source: 7034 / Service Control ManagerEvent Description:Usługa Power Manager niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.Event Record #/Type2876 / WarningEvent Submitted/Written: 08/08/2008 04:10:11 PMEvent ID/Source: 4226 / TcpipEvent Description:Protokół TCP/IP osiągnął limit zabezpieczeń ustalony dla liczby równoczesnych prób połączeń TCP.Event Record #/Type2873 / WarningEvent Submitted/Written: 08/08/2008 02:48:42 PMEvent ID/Source: 4226 / TcpipEvent Description:Protokół TCP/IP osiągnął limit zabezpieczeń ustalony dla liczby równoczesnych prób połączeń TCP.Event Record #/Type2872 / WarningEvent Submitted/Written: 08/08/2008 01:59:05 PMEvent ID/Source: 4226 / TcpipEvent Description:Protokół TCP/IP osiągnął limit zabezpieczeń ustalony dla liczby równoczesnych prób połączeń TCP.-- End of Deckard's System Scanner: finished at 2008-08-08 16:49:07 ------------

//logi wstawiamy w tagi code a nie quote

//vocativus

Mateusz J.
komentarz
komentarz

1.Start => Uruchom => regedit

Usuń pogrubiony klucz:

HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2

oraz klucz:

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

nvscv32

Nie usuwaj czasem całego Run, usuń samą wartość nvscv32

2.

2008-07-22 13:58:33 68096 --a------ C:\WINDOWS\zip.exe2008-07-22 13:58:33 49152 --a------ C:\WINDOWS\VFind.exe2008-07-22 13:58:33 212480 --a------ C:\WINDOWS\swxcacls.exe <Not Verified; SteelWerX; SteelWerX Extended Configurator ACLists>2008-07-22 13:58:33 136704 --a------ C:\WINDOWS\swsc.exe <Not Verified; SteelWerX; SteelWerX Service Controller>2008-07-22 13:58:33 161792 --a------ C:\WINDOWS\swreg.exe <Not Verified; SteelWerX; SteelWerX Registry Editor>2008-07-22 13:58:33 98816 --a------ C:\WINDOWS\sed.exe2008-07-22 13:58:33 80412 --a------ C:\WINDOWS\grep.exe2008-07-22 13:58:33 89504 --a------ C:\WINDOWS\fdsv.exe <Not Verified; Smallfrogs Studio; >

Pozostałości po ComboFix, wywal je ręcznie z dysku.

3.

C:\RECYCLER(3)

C:\WINDOWS\system32\drivers\nvscv32.exe

Folder i plik usuń ręcznie z dysku.

W razie problemów z usunięciem proszę użyć programu Unlocker.

4.Po wszystkim nowy log z DDS + log z Silent Runners.

WoJT@s
komentarz
komentarz

Nie mogę usunąć tych kluczy ponieważ jest podobnie jak z menedżerem zadań. Otwiera się i znika. Mogę zrobić tylko pkt. 2-3-4 wymienione przez Ciebie.

Mateusz J.
komentarz
komentarz

Użyj programu FlashDisinfector.

Następnie wykonaj 2,3,4 punkt.

WoJT@s
komentarz
komentarz

Upierdliwy nvscv32.exe za nic w świecie nie chce się usunąć, nawet przy pomocy Unlocker'a.

3.

C:\RECYCLER(3)

Nie mam takiego czegoś.

Log z DDS ale tym razem był tylko jeden:

Deckard's System Scanner v20071014.68

Run by MONIKA on 2008-08-08 18:15:34

Computer is in Normal Mode.

--------------------------------------------------------------------------------

Percentage of Memory in Use: 90% (more than 75%).

Total Physical Memory: 256 MiB (512 MiB recommended).

-- HijackThis Clone ------------------------------------------------------------

Emulating logfile of Trend Micro HijackThis v2.0.2

Scan saved at 2008-08-08 18:15:39

Platform: Windows XP Dodatek Service Pack 2 (5.01.2600)

MSIE: Internet Explorer (6.00.2900.2180)

Boot mode: Normal

Running processes:

C:\WINDOWS\system32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\UAService7.exe

C:\Program Files\VIA\RAID\raid_tool.exe

C:\WINDOWS\SOUNDMAN.EXE

C:\WINDOWS\system32\VTTimer.exe

C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe

C:\WINDOWS\system32\rundll32.exe

C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe

C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe

C:\WINDOWS\system32\drivers\nvscv32.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Documents and Settings\Grzesiek\Moje dokumenty\Gadu-Gadu\gg.exe

C:\WINDOWS\explorer.exe

C:\Program Files\Unlocker\UnlockerAssistant.exe

C:\Documents and Settings\MONIKA\Pulpit\dss.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.com/search?q=%s

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = iexplore

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [VTTimer] VTTimer.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"

O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup

O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start

O4 - HKLM\..\Run: [FortKnoxPersonalFirewall] "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe"

O4 - HKLM\..\Run: [unlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe"

O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')

O4 - Startup: No-IP DUC.lnk = C:\Program Files\WebServ\no-ip\No-IP DUC20.exe

O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe

O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe

O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm

O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE

O23 - Service: FortKnox Personal Firewall (fortknox) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Power Manager (PowerManager) - Unknown owner - C:\WINDOWS\svchost.exe

O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

O23 - Service: Windows Media Connect (WMC) (WmcCds) - Unknown owner - C:\Program Files\Windows Media Connect\mswmccds.exe

O24 - Desktop Component 0: - http://www.humor-z.webpark.pl/pic_files/tapety/247003.jpg

--

End of file - 6499 bytes

-- Files created between 2008-07-08 and 2008-08-08 -----------------------------

2008-08-08 17:51:14 0 drahs---- C:\autorun.inf

2008-08-08 13:48:12 0 d-------- C:\Program Files\Altnet

2008-08-08 13:32:43 0 d-------- C:\WINDOWS\system32\dt

2008-08-07 17:35:48 0 d-------- C:\ComboFix(2)

2008-08-05 11:14:18 0 d-------- C:\6fd08c7f11d096932b2520bf8ae2f732

2008-08-05 11:14:13 0 d-------- C:\WINDOWS\network diagnostic

2008-08-05 11:10:23 0 d-------- C:\5772b73c5eb2155d3395b4d780eb2914

2008-08-05 10:56:54 0 d-------- C:\Program Files\Alwil Software

2008-08-04 11:55:27 0 d-------- C:\Lit

2008-08-04 11:52:11 0 d-------- C:\Program Files\JLC's Software

2008-08-04 11:50:49 0 d-------- C:\Program Files\Ashampoo

2008-07-31 13:26:45 0 d-------- C:\Program Files\Słownik Kontekstowy

2008-07-30 11:26:03 0 d-------- C:\Program Files\Give4Free Plugin

2008-07-30 11:25:58 0 d--hs---- C:\RECYCLER(3)

2008-07-30 11:15:14 0 d-------- C:\Program Files\Tibia(3)

2008-07-25 12:58:55 0 d-------- C:\Program Files\Tibia(2)

2008-07-23 14:46:48 0 d-------- C:\Program Files\NETGATE

2008-07-23 13:23:33 68586 --a------ C:\WINDOWS\system32\drivers\nvscv32.exe

2008-07-22 17:54:16 0 d-------- C:\WINDOWS\pss

2008-07-22 12:41:52 0 d-------- C:\Program Files\Trend Micro

-- Find3M Report ---------------------------------------------------------------

2008-08-08 18:07:26 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Desktopicon

2008-08-08 14:42:56 0 d-------- C:\Program Files\Kurka Wodna 2

2008-08-08 14:38:14 0 d-------- C:\Program Files\Football Club

2008-08-08 14:34:16 0 d-------- C:\Program Files\eMule

2008-08-08 14:05:54 8 -r-hs---- C:\Program Files\Desktop_.ini

2008-08-06 12:23:04 0 d-------- C:\Program Files\K-Lite Codec Pack

2008-08-06 10:48:46 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Ashampoo

2008-08-05 12:07:15 0 d-------- C:\Program Files\McDonaldsDragons

2008-08-05 12:07:01 0 d-------- C:\Program Files\Ubisoft

2008-08-05 12:06:51 0 d-------- C:\Program Files\Valve

2008-08-05 12:03:17 0 d-------- C:\Program Files\Windows Media Connect

2008-08-01 10:10:24 0 d--h----- C:\Program Files\InstallShield Installation Information

2008-07-31 19:11:27 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Disney Interactive Studios

2008-07-31 18:39:41 0 d-------- C:\Program Files\THQ

2008-07-31 18:38:55 0 d-------- C:\Program Files\BackToGaya

2008-07-31 18:38:46 0 d-------- C:\Program Files\Dead City

2008-07-31 18:38:44 0 d-------- C:\Program Files\Deluxe Ski Jump 3

2008-07-31 18:38:30 0 d-------- C:\Program Files\Gadu-Gadu

2008-07-31 18:38:30 0 d-------- C:\Program Files\EOM

2008-07-31 18:38:28 0 d-------- C:\Program Files\ICE-land

2008-07-31 18:38:26 0 d-------- C:\Program Files\ICE-Land2 Demo

2008-07-31 18:38:08 0 d-------- C:\Program Files\Kart

2008-07-31 18:37:59 0 d-------- C:\Program Files\Little Fighter 2.5 - v2.0

2008-07-31 18:37:56 0 d-------- C:\Program Files\Maja2

2008-07-31 18:37:55 0 d-------- C:\Program Files\Maluch Racer

2008-07-31 18:37:43 0 d-------- C:\Program Files\Mistrz Klawiatury II Demo

2008-07-31 18:37:42 0 d-------- C:\Program Files\Modi i Nanna

2008-07-31 18:37:41 0 d-------- C:\Program Files\No Brakes 4x4 Racing

2008-07-31 18:37:41 0 d-------- C:\Program Files\Mustang z Zielonej Doliny

2008-07-31 18:37:38 0 d-------- C:\Program Files\Red Clash

2008-07-31 18:37:38 0 d-------- C:\Program Files\Notrium

2008-07-31 18:37:37 0 d-------- C:\Program Files\Pazur Demo

2008-07-31 18:37:37 0 d-------- C:\Program Files\Open Kart PL

2008-07-31 18:37:34 0 d-------- C:\Program Files\Pekka Kana 2

2008-07-31 18:37:08 0 d-------- C:\Program Files\PocoMan

2008-07-31 18:37:04 0 d-------- C:\Program Files\Red Shark II

2008-07-31 18:37:04 0 d-------- C:\Program Files\Realtek AC97

2008-07-31 18:37:03 0 d-------- C:\Program Files\Sammy Suricate

2008-07-31 18:37:03 0 d-------- C:\Program Files\Różowa Pantera

2008-07-31 18:37:03 0 d-------- C:\Program Files\Roll 'm Up

2008-07-31 18:37:03 0 d-------- C:\Program Files\Rocks'n'Diamonds

2008-07-31 18:37:02 0 d-------- C:\Program Files\Secret Maryo Chronicles

2008-07-31 18:37:02 0 d-------- C:\Program Files\Scooby-Doo i Miasto Duchów

2008-07-31 18:37:02 0 d-------- C:\Program Files\Scooby Doo

2008-07-31 18:37:01 0 d-------- C:\Program Files\Serious Sam Pierwsze Starcie

2008-07-31 18:37:00 0 d-------- C:\Program Files\Sims2Packer

2008-07-31 18:37:00 0 d-------- C:\Program Files\Shopping Centre Tycoon

2008-07-31 18:36:59 0 d-------- C:\Program Files\TeddyBears

2008-07-31 18:36:59 0 d-------- C:\Program Files\SparxDEMO

2008-07-31 18:36:59 0 d-------- C:\Program Files\Smash up Derby

2008-07-31 18:36:58 0 d-------- C:\Program Files\The Playa

2008-07-31 18:36:57 0 d-------- C:\Program Files\TibiaTestserver

2008-07-31 18:36:57 0 d-------- C:\Program Files\TibiaBOT NG4

2008-07-31 18:36:38 0 d-------- C:\Program Files\wastesedge

2008-07-31 18:36:38 0 d-------- C:\Program Files\Video Strip Poker

2008-07-31 18:36:37 0 d-------- C:\Program Files\Winamp

2008-07-31 18:36:34 0 d-------- C:\Program Files\Windows Journal Viewer

2008-07-31 18:36:28 0 d-------- C:\Program Files\Worms

2008-07-31 18:34:32 0 d-------- C:\Program Files\Winamp Remote

2008-07-31 18:34:03 0 d-------- C:\Program Files\DNA

2008-07-31 18:33:42 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Tibia

2008-07-31 18:33:36 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Tibia(3)

2008-07-31 18:33:26 0 d-------- C:\Program Files\CyberLink

2008-07-31 18:33:25 0 d-------- C:\Program Files\Common Files

2008-07-31 18:32:20 0 d-------- C:\Program Files\Cheating-Death

2008-07-31 18:32:16 0 d-------- C:\Program Files\BitComet

2008-07-31 18:32:16 0 d-------- C:\Program Files\Azureus

2008-07-31 18:32:06 0 d-------- C:\Program Files\Robin Hood

2008-07-31 18:31:43 0 d-------- C:\Program Files\SPIDI LICZY

2008-07-31 18:31:39 0 d-------- C:\Program Files\Santa Claus in Trouble

2008-07-31 18:31:38 0 d-------- C:\Program Files\Race Cars

2008-07-31 18:31:36 0 d-------- C:\Program Files\Pinocchio the Game

2008-07-31 18:31:25 0 d-------- C:\Program Files\Chromium BSU

2008-07-31 18:30:51 0 d-------- C:\Program Files\Undercover

2008-07-31 18:30:41 0 d-------- C:\Program Files\uTorrent

2008-07-31 18:30:40 0 d-------- C:\Program Files\AIDA32

2008-07-31 18:29:59 0 d-------- C:\Program Files\7-Zip

2008-07-31 18:24:45 0 d-------- C:\Program Files\Sprill Wodne Przygody

2008-07-31 18:24:41 0 d-------- C:\Program Files\Wizaz 2

2008-07-31 18:24:34 0 d-------- C:\Program Files\TibiaBot NG

2008-07-31 18:24:28 0 d-------- C:\Program Files\Messenger

2008-07-31 18:23:53 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Mozilla

2008-07-31 18:05:47 0 d-------- C:\Program Files\BitTorrent

2008-07-29 11:51:30 0 d-------- C:\Program Files\GameSpy Arcade

2008-07-29 11:50:12 0 d-------- C:\Program Files\Flash Strike

2008-07-29 11:36:35 0 d-------- C:\Program Files\AquaPark_at

2008-07-23 13:25:33 577572 --a------ C:\dxsetup.exe

2008-07-21 14:20:01 0 d-------- C:\Program Files\Disney Interactive

2008-07-10 16:08:23 1847326 -----n--- C:\RaymanM.exe

2008-07-10 16:08:21 0 d-------- C:\Program Files\Yeti Studios

2008-07-10 16:07:27 0 d-------- C:\Program Files\WSiP

2008-07-10 16:05:57 0 d-------- C:\Program Files\Woody Woodpecker

2008-07-10 16:05:41 0 d-------- C:\Program Files\WnP

2008-07-10 16:05:41 0 d-------- C:\Program Files\WMV9_VCM

2008-07-10 16:05:38 0 d-------- C:\Program Files\Wizards of the Coast

2008-07-10 16:05:27 0 d-------- C:\Program Files\Winfor

2008-07-10 16:04:29 0 d-------- C:\Program Files\Wiering Software

2008-07-10 16:03:59 0 d-------- C:\Program Files\WebServ

2008-07-10 16:03:36 0 d-------- C:\Program Files\WarlockStudio

2008-07-10 16:03:33 0 d-------- C:\Program Files\VIA

2008-07-10 15:59:25 0 d-------- C:\Program Files\Usługi online

2008-07-10 15:59:25 153116 --a------ C:\Program Files\UNWISE.EXE

2008-07-10 15:56:18 0 d-------- C:\Program Files\Ubi Soft

2008-07-10 15:56:17 0 d-------- C:\Program Files\ToonCar

2008-07-10 15:56:16 0 d-------- C:\Program Files\Tomb Raider II GOLD

2008-07-10 15:56:05 0 d-------- C:\Program Files\The Learning Company

2008-07-10 15:55:53 0 d-------- C:\Program Files\TerraGame

2008-07-10 15:55:42 0 d-------- C:\Program Files\Techland

2008-07-10 15:55:41 0 d-------- C:\Program Files\Taxi Challenge Londyn

2008-07-10 15:55:41 0 d-------- C:\Program Files\TajemniczaWyspa

2008-07-10 15:55:41 0 d-------- C:\Program Files\Tairex Interactive

2008-07-10 15:55:40 0 d-------- C:\Program Files\Szybki Lopez

2008-07-10 15:55:39 0 d-------- C:\Program Files\Symantec

2008-07-10 15:55:39 0 d-------- C:\Program Files\SuperMarioPac

2008-07-10 15:55:38 0 d-------- C:\Program Files\sunmedia

2008-07-10 15:54:51 0 d-------- C:\Program Files\Steam

2008-07-10 15:54:50 0 d-------- C:\Program Files\StarshipTycoonDemo

2008-07-10 15:54:18 0 d-------- C:\Program Files\Soda Pipes

2008-07-10 15:54:17 0 d-------- C:\Program Files\Snowy Lunch Rush

2008-07-10 15:54:13 0 d-------- C:\Program Files\Ski Park Manager

2008-07-10 15:54:12 0 d-------- C:\Program Files\Sierra On-Line

2008-07-10 15:52:41 0 d-------- C:\Program Files\Shavlik Technologies

2008-07-10 15:51:29 0 d-------- C:\Program Files\SEGA

2008-07-10 15:50:18 0 d-------- C:\Program Files\Rockstar Games

2008-07-10 15:49:52 0 d-------- C:\Program Files\Robster Productions

2008-07-10 15:46:20 0 d-------- C:\Program Files\Revistronic

2008-07-10 15:46:20 0 d-------- C:\Program Files\ReflexiveArcade

2008-07-10 15:46:02 0 d-------- C:\Program Files\Realore

2008-07-10 15:46:02 0 d-------- C:\Program Files\RealApex

2008-07-10 15:46:02 0 d-------- C:\Program Files\Real

2008-07-10 15:46:01 0 d-------- C:\Program Files\Rainbow Islands - Candyland (Demo)

2008-07-10 15:45:59 0 d-------- C:\Program Files\QuickTime

2008-07-10 15:45:58 0 d-------- C:\Program Files\Project 3 Interactive

2008-07-10 15:45:36 0 d-------- C:\Program Files\poszukiwania_zozoli

2008-07-10 15:45:34 0 d-------- C:\Program Files\Play.com.pl

2008-07-10 15:45:33 0 d-------- C:\Program Files\Play

2008-07-10 15:45:33 0 d-------- C:\Program Files\Piraci Nowego Świata

2008-07-10 15:45:06 0 d-------- C:\Program Files\Pinnacle

2008-07-10 15:45:06 0 d-------- C:\Program Files\Phelios

2008-07-10 15:44:55 0 d-------- C:\Program Files\PC-The.Sims.2-4CD.Multi15-By.TXT-[tntvillage.org]

2008-07-10 15:44:52 0 d-------- C:\Program Files\Patrician III

2008-07-10 15:44:52 0 d-------- C:\Program Files\Paradox Entertainment

2008-07-10 15:44:51 0 d-------- C:\Program Files\PacBomber

2008-07-10 15:44:49 0 d-------- C:\Program Files\Oak Entertainment

2008-07-10 15:44:34 0 d-------- C:\Program Files\Nikki the Ninja

2008-07-10 15:44:34 0 d-------- C:\Program Files\neoSoftware

2008-07-10 15:44:32 0 d-------- C:\Program Files\Multi_Media

2008-07-10 15:44:32 0 d-------- C:\Program Files\MSN Gaming Zone

2008-07-10 15:44:17 0 d-------- C:\Program Files\Monte Cristo

2008-07-10 15:44:13 0 d-------- C:\Program Files\Mirage Interactive

2008-07-10 15:44:13 0 d-------- C:\Program Files\Mindscape

2008-07-10 15:44:12 0 d-------- C:\Program Files\Microids

2008-07-10 15:44:12 0 d-------- C:\Program Files\Metro 3D

2008-07-10 15:44:12 0 d-------- C:\Program Files\Menara Games

2008-07-10 15:44:11 0 d-------- C:\Program Files\MDK2

2008-07-10 15:39:45 0 d-------- C:\Program Files\Maxis

2008-07-10 15:39:45 0 d-------- C:\Program Files\MarkSoft

2008-07-10 15:39:35 0 d-------- C:\Program Files\MarBit

2008-07-10 15:39:35 0 d-------- C:\Program Files\Maps

2008-07-10 15:39:35 0 d-------- C:\Program Files\Managed DirectX (0901)

2008-07-10 15:39:31 0 d-------- C:\Program Files\Magic Builder

2008-07-10 15:39:30 0 d-------- C:\Program Files\Madagascar

2008-07-10 15:39:30 0 d-------- C:\Program Files\Mad Tracks Demo

2008-07-10 15:39:17 0 d-------- C:\Program Files\LittleFighter2

2008-07-10 15:38:45 0 d-------- C:\Program Files\LEGO Company

2008-07-10 15:38:45 0 d-------- C:\Program Files\Legendo's Trzej Muszkieterowie

2008-07-10 15:38:44 0 d-------- C:\Program Files\Lavasoft

2008-07-10 15:38:44 0 d-------- C:\Program Files\Lalka Klara - Stylistka

2008-07-10 15:38:40 0 d-------- C:\Program Files\Kovloria

2008-07-10 15:38:40 0 d-------- C:\Program Files\Komlogo

2008-07-10 15:38:35 0 d-------- C:\Program Files\Kelvin

2008-07-10 15:38:34 0 d-------- C:\Program Files\Kazaa

2008-07-10 15:38:30 0 d-------- C:\Program Files\Kajko i Kokosz - Szkoła latania

2008-07-10 15:38:23 0 d-------- C:\Program Files\JoWooD

2008-07-10 15:37:50 0 d-------- C:\Program Files\Java

2008-07-10 15:37:49 0 d-------- C:\Program Files\ivo

2008-07-10 15:37:49 0 d-------- C:\Program Files\InterActual

2008-07-10 15:37:49 0 d-------- C:\Program Files\Infogrames

2008-07-10 15:37:12 0 d-------- C:\Program Files\ILLEGAL STREET RACING(2)

2008-07-10 15:37:11 0 d-------- C:\Program Files\IceTec Studios Games

2008-07-10 15:37:06 0 d-------- C:\Program Files\Hugo - Gorączka Czarnych Diamentów

2008-07-10 15:37:06 0 d-------- C:\Program Files\HighMAT CD Writing Wizard

2008-07-10 15:37:06 0 d-------- C:\Program Files\Help

2008-07-10 15:37:01 0 d-------- C:\Program Files\Groovy Lime

2008-07-10 15:37:01 0 d-------- C:\Program Files\Gorky 02

2008-07-10 15:36:15 0 d-------- C:\Program Files\Google

2008-07-10 15:36:14 0 d-------- C:\Program Files\Gift

2008-07-10 15:36:11 0 d-------- C:\Program Files\Games

2008-07-10 15:35:57 0 d-------- C:\Program Files\Funny Racer DEMO

2008-07-10 15:35:57 0 d-------- C:\Program Files\Freaky Tuner

2008-07-10 15:35:56 0 d-------- C:\Program Files\FOX Jones

2008-07-10 15:35:29 0 d-------- C:\Program Files\Fish Tales Trial

2008-07-10 15:34:14 0 d-------- C:\Program Files\Firefly Studios

2008-07-10 15:34:13 0 d-------- C:\Program Files\Feedback

2008-07-10 15:32:31 0 d-------- C:\Program Files\Enlight

2008-07-10 15:31:58 0 d-------- C:\Program Files\Empire Interactive

2008-07-10 15:31:57 0 d-------- C:\Program Files\Elektrogames

2008-07-10 15:31:56 0 d-------- C:\Program Files\Edukacja XXI wieku

2008-07-10 15:31:01 0 d-------- C:\Program Files\EA Games

2008-07-10 15:31:00 0 d-------- C:\Program Files\Duke Nukem

2008-07-10 15:30:59 0 d-------- C:\Program Files\Droga do Eldorado

2008-07-10 15:30:59 0 d-------- C:\Program Files\Dragon Jumper

2008-07-10 15:30:59 0 d-------- C:\Program Files\Dracula Twins

2008-07-10 15:30:59 0 d-------- C:\Program Files\Dracula Twins Demo

2008-07-10 15:28:37 0 d-------- C:\Program Files\Disney Interactive Studios

2008-07-10 15:28:10 0 d-------- C:\Program Files\directx

2008-07-10 15:28:09 0 d-------- C:\Program Files\DIFX

2008-07-10 15:27:47 0 d-------- C:\Program Files\Deluxe Ski Jump

2008-07-10 15:27:38 0 d-------- C:\Program Files\Deep Silver

2008-07-10 15:27:29 0 d-------- C:\Program Files\Daydream Software

2008-07-10 15:27:29 0 d-------- C:\Program Files\Dart 'm Up

2008-07-10 15:25:57 0 d-------- C:\Program Files\Creative

2008-07-10 15:25:56 0 d-------- C:\Program Files\Cossacks

2008-07-10 15:25:56 0 d-------- C:\Program Files\Core Design

2008-07-10 15:25:53 0 d-------- C:\Program Files\Compedia

2008-07-10 15:25:53 0 d-------- C:\Program Files\Combat Mission - Beyond Overlord

2008-07-10 15:25:52 0 d-------- C:\Program Files\Codemasters

2008-07-10 15:25:52 0 d-------- C:\Program Files\City Interactive

2008-07-10 15:25:48 0 d-------- C:\Program Files\Charlie II

2008-07-10 15:25:48 0 d-------- C:\Program Files\CeeBot-Teen DEMO

2008-07-10 15:25:12 0 d-------- C:\Program Files\Cat Daddy Games

2008-07-10 15:25:07 0 d-------- C:\Program Files\Calaris

2008-07-10 15:24:57 0 d-------- C:\Program Files\Buena Vista Games

2008-07-10 15:24:57 0 d-------- C:\Program Files\Borland

2008-07-10 15:24:56 0 d-------- C:\Program Files\Bob Buduje Park

2008-07-10 15:24:55 0 d-------- C:\Program Files\Black Isle

2008-07-10 15:24:55 0 d-------- C:\Program Files\BitZip

2008-07-10 15:24:43 0 d-------- C:\Program Files\Billy Blade

2008-07-10 15:24:43 0 d-------- C:\Program Files\Big Scale Racing

2008-07-10 15:24:43 0 d-------- C:\Program Files\Best Friends Free Trial

2008-07-10 15:24:37 0 d-------- C:\Program Files\BearShare Applications

2008-07-10 15:24:36 0 d-------- C:\Program Files\BearFlix

2008-07-10 15:24:27 0 d-------- C:\Program Files\Avalon

2008-07-10 15:24:26 0 d-------- C:\Program Files\Auralog

2008-07-10 15:24:18 0 d-------- C:\Program Files\Atari

2008-07-10 15:18:57 0 d-------- C:\Program Files\Aspyr(2)

2008-07-10 15:13:31 0 d-------- C:\Program Files\Asprate

2008-07-10 15:12:55 0 d-------- C:\Program Files\ARTEMATICA

2008-07-10 15:12:54 0 d-------- C:\Program Files\Arcade Lab

2008-07-10 15:12:52 0 d-------- C:\Program Files\Another Day

2008-07-10 15:12:52 0 d-------- C:\Program Files\Anno 1602

2008-07-10 15:12:51 0 d-------- C:\Program Files\Anemone

2008-07-10 15:12:38 0 d-------- C:\Program Files\Alternative Software Ltd

2008-07-10 15:12:37 0 d-------- C:\Program Files\Alicja w Krainie Czarów

2008-07-10 15:12:37 0 d-------- C:\Program Files\Air Strike 3D

2008-07-10 15:06:32 0 d-------- C:\Program Files\AidemMedia

2008-07-10 15:06:12 0 d-------- C:\Program Files\Ahead

2008-07-10 15:05:18 0 d-------- C:\Program Files\Activision Value

2008-07-10 15:04:36 0 d-------- C:\Program Files\Activision

2008-07-10 15:04:32 0 d-------- C:\Program Files\Ace Ventura

2008-07-10 15:04:24 0 d-------- C:\Program Files\Absolutist.com

2008-07-10 15:04:23 0 d-------- C:\Program Files\Abashera Revamped demo

2008-07-10 15:04:20 0 d-------- C:\Program Files\20.000 Leghe

2008-07-10 15:04:19 0 d-------- C:\Program Files\1C & Cenega

2008-07-10 15:04:16 0 d-------- C:\Program Files\1C

2008-07-10 15:04:08 0 d-------- C:\Program Files\001

2008-07-10 15:03:59 49178 --a------ C:\MTAPH.exe <Not Verified; MultiTheftAuto; MTA Protocol Handler>

2008-07-10 15:03:59 435231 -----n--- C:\MTAClient.exe

2008-07-10 15:01:23 3088925 -----n--- C:\gta-vc.exe

2008-07-10 15:01:19 228911 -----n--- C:\GTA Vice ultimate Trainer.exe

2008-07-10 13:31:40 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Azureus

2008-07-03 10:11:22 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\uTorrent

2008-07-02 19:12:24 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Adobe

2008-07-02 19:10:08 0 d-------- C:\Program Files\Common Files\Adobe

2008-07-02 15:01:45 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\BearShare

2008-06-26 20:02:04 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\CyberLink

2008-06-26 10:10:44 47104 --a------ C:\WINDOWS\system32\KMVIDC32.DLL

2008-05-14 09:48:12 2560 --a------ C:\WINDOWS\system32\bitcometres.dll <Not Verified; BitComet; BitComet BCTP Helper>

2008-05-09 16:20:47 58493 --a------ C:\WINDOWS\SFDLL.DLL

-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"RaidTool"="C:\Program Files\VIA\RAID\raid_tool.exe" [2005-04-26 11:22]

"SoundMan"="SOUNDMAN.EXE" [2005-06-20 21:42 C:\WINDOWS\SOUNDMAN.EXE]

"VTTimer"="VTTimer.exe" [2005-03-08 03:33 C:\WINDOWS\system32\VTTimer.exe]

"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50]

"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2003-10-31 19:42]

"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-08-11 15:43]

"nwiz"="nwiz.exe" [2006-08-11 15:43 C:\WINDOWS\system32\nwiz.exe]

"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2006-08-11 15:43]

"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25]

"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-04-17 13:41]

"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2004-04-13 07:07]

"FortKnoxPersonalFirewall"="C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe" [2008-08-08 16:57]

"UnlockerAssistant"="C:\Program Files\Unlocker\UnlockerAssistant.exe" [2008-05-02 06:15]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"nvscv32"="C:\WINDOWS\system32\drivers\nvscv32.exe" [2008-07-23 13:23]

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]

"Nokia.PCSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"HideLegacyLogonScripts"=0 (0x0)

"HideLogoffScripts"=0 (0x0)

"RunLogonScriptSync"=1 (0x1)

"RunStartupScriptSync"=0 (0x0)

"HideStartupScripts"=0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]

"HideLegacyLogonScripts"=0 (0x0)

"HideLogoffScripts"=0 (0x0)

"RunLogonScriptSync"=1 (0x1)

"RunStartupScriptSync"=0 (0x0)

"HideStartupScripts"=0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]

C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3c30088b-589c-11dd-b79f-0013d30a9684}]

Auto\command- E:\setup.exe

AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL setup.exe

*Newly Created Service* - UNLOCKERDRIVER5

-- End of Deckard's System Scanner: finished at 2008-08-08 18:16:32 ------------

EDIT

Zapomniałem, tu jeszcze log ze Silent Runners'a:

"Silent Runners.vbs", revision 58, http://www.silentrunners.org/

Operating System: Windows XP SP2

Output limited to non-default values, except where indicated by "{++}"

Startup items buried in registry:

---------------------------------

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++}

"nvscv32" = "C:\WINDOWS\system32\drivers\nvscv32.exe" [null data]

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}

"RaidTool" = "C:\Program Files\VIA\RAID\raid_tool.exe" ["VIA Technologies"]

"SoundMan" = "SOUNDMAN.EXE" ["Realtek Semiconductor Corp."]

"VTTimer" = "VTTimer.exe" ["S3 Graphics, Inc."]

"NeroFilterCheck" = "C:\WINDOWS\system32\NeroCheck.exe" ["Ahead Software Gmbh"]

"RemoteControl" = ""C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"" ["Cyberlink Corp."]

"NvCplDaemon" = "RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup" [MS]

"nwiz" = "nwiz.exe /install" ["NVIDIA Corporation"]

"NvMediaCenter" = "RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit" [MS]

"SunJavaUpdateSched" = ""C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"" ["Sun Microsystems, Inc."]

"ISUSPM Startup" = "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup" [null data]

"ISUSScheduler" = ""C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start" ["InstallShield Software Corporation"]

"FortKnoxPersonalFirewall" = ""C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe"" [null data]

"UnlockerAssistant" = ""C:\Program Files\Unlocker\UnlockerAssistant.exe"" [null data]

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\

{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = (no title provided)

-> {HKLM...CLSID} = "Adobe PDF Reader Link Helper"

\InProcServer32\(Default) = "C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll" ["Adobe Systems Incorporated"]

{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}\(Default) = "BitComet ClickCapture"

-> {HKLM...CLSID} = "BitComet Helper"

\InProcServer32\(Default) = "C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll" ["BitComet"]

{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\(Default) = (no title provided)

-> {HKLM...CLSID} = "SSVHelper Class"

\InProcServer32\(Default) = "C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll" ["Sun Microsystems, Inc."]

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\

"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Rozszerzenie CPL kadrowania wyświetlania"

-> {HKLM...CLSID} = "Rozszerzenie CPL kadrowania wyświetlania"

\InProcServer32\(Default) = "deskpan.dll" [file not found]

"{88895560-9AA2-1069-930E-00AA0030EBC8}" = "Rozszerzenie ikony HyperTerminalu"

-> {HKLM...CLSID} = "HyperTerminal Icon Ext"

\InProcServer32\(Default) = "C:\WINDOWS\system32\hticons.dll" ["Hilgraeve, Inc."]

"{cc86590a-b60a-48e6-996b-41d25ed39a1e}" = "Portable Media Devices Menu"

-> {HKLM...CLSID} = "Portable Media Devices Menu"

\InProcServer32\(Default) = "C:\WINDOWS\system32\Audiodev.dll" [MS]

"{0E40CBF0-0263-4AD4-A71B-11316667CBB7}" = "MuVo V200 Media Explorer"

-> {HKLM...CLSID} = "MuVo V200 Media Explorer"

\InProcServer32\(Default) = "C:\Program Files\Creative\Creative MuVo V200\CTMvns.dll" ["Creative Technology Ltd"]

"{E0D79304-84BE-11CE-9641-444553540000}" = "WinZip"

-> {HKLM...CLSID} = "WinZip"

\InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."]

"{E0D79305-84BE-11CE-9641-444553540000}" = "WinZip"

-> {HKLM...CLSID} = "WinZip"

\InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."]

"{E0D79306-84BE-11CE-9641-444553540000}" = "WinZip"

-> {HKLM...CLSID} = "WinZip"

\InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."]

"{E0D79307-84BE-11CE-9641-444553540000}" = "WinZip"

-> {HKLM...CLSID} = "WinZip"

\InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."]

"{416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}" = "Nokia Phone Browser"

-> {HKLM...CLSID} = "Nokia Phone Browser"

\InProcServer32\(Default) = "C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll" ["Nokia"]

"{A70C977A-BF00-412C-90B7-034C51DA2439}" = "NvCpl DesktopContext Class"

-> {HKLM...CLSID} = "DesktopContext Class"

\InProcServer32\(Default) = "C:\WINDOWS\system32\nvcpl.dll" ["NVIDIA Corporation"]

"{FFB699E0-306A-11d3-8BD1-00104B6F7516}" = "Play on my TV helper"

-> {HKLM...CLSID} = "NVIDIA CPL Extension"

\InProcServer32\(Default) = "C:\WINDOWS\system32\nvcpl.dll" ["NVIDIA Corporation"]

"{1CDB2949-8F65-4355-8456-263E7C208A5D}" = "Desktop Explorer"

-> {HKLM...CLSID} = "Desktop Explorer"

\InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]

"{1E9B04FB-F9E5-4718-997B-B8DA88302A47}" = "Desktop Explorer Menu"

-> {HKLM...CLSID} = (no title provided)

\InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]

"{1E9B04FB-F9E5-4718-997B-B8DA88302A48}" = "nView Desktop Context Menu"

-> {HKLM...CLSID} = "nView Desktop Context Menu"

\InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]

"{23170F69-40C1-278A-1000-000100020000}" = "7-Zip Shell Extension"

-> {HKLM...CLSID} = "7-Zip Shell Extension"

\InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]

"{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}" = "UnlockerShellExtension"

-> {HKLM...CLSID} = "UnlockerShellExtension"

\InProcServer32\(Default) = "C:\Program Files\Unlocker\UnlockerCOM.dll" [null data]

"{B41DB860-8EE4-11D2-9906-E49FADC173CA}" = "WinRAR shell extension"

-> {HKLM...CLSID} = "WinRAR"

\InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\

{F9DB5320-233E-11D1-9F84-707F02C10627}\(Default) = "PDF Column Info"

-> {HKLM...CLSID} = "PDF Shell Extension"

\InProcServer32\(Default) = "C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll" ["Adobe Systems, Inc."]

HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\

7-Zip\(Default) = "{23170F69-40C1-278A-1000-000100020000}"

-> {HKLM...CLSID} = "7-Zip Shell Extension"

\InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]

WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"

-> {HKLM...CLSID} = "WinRAR"

\InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"

-> {HKLM...CLSID} = "WinZip"

\InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."]

HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\

7-Zip\(Default) = "{23170F69-40C1-278A-1000-000100020000}"

-> {HKLM...CLSID} = "7-Zip Shell Extension"

\InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]

WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"

-> {HKLM...CLSID} = "WinRAR"

\InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"

-> {HKLM...CLSID} = "WinZip"

\InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."]

HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\

UnlockerShellExtension\(Default) = "{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}"

-> {HKLM...CLSID} = "UnlockerShellExtension"

\InProcServer32\(Default) = "C:\Program Files\Unlocker\UnlockerCOM.dll" [null data]

WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"

-> {HKLM...CLSID} = "WinRAR"

\InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"

-> {HKLM...CLSID} = "WinZip"

\InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."]

HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\

UnlockerShellExtension\(Default) = "{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}"

-> {HKLM...CLSID} = "UnlockerShellExtension"

\InProcServer32\(Default) = "C:\Program Files\Unlocker\UnlockerCOM.dll" [null data]

Default executables:

--------------------

<<!>> HKLM\SOFTWARE\Classes\.com\(Default) = "ComFile"

Group Policies {policy setting}:

--------------------------------

Note: detected settings may not have any effect.

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\

"NoDrives" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\

"NoDrives" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\

"HideLegacyLogonScripts" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

"HideLogoffScripts" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

"RunLogonScriptSync" = (REG_DWORD) dword:0x00000001

{unrecognized setting}

"RunStartupScriptSync" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

"HideStartupScripts" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\

"shutdownwithoutlogon" = (REG_DWORD) dword:0x00000001

{Shutdown: Allow system to be shut down without having to log on}

"undockwithoutlogon" = (REG_DWORD) dword:0x00000001

{Devices: Allow undock without having to log on}

"HideLegacyLogonScripts" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

"HideLogoffScripts" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

"RunLogonScriptSync" = (REG_DWORD) dword:0x00000001

{unrecognized setting}

"RunStartupScriptSync" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

"HideStartupScripts" = (REG_DWORD) dword:0x00000000

{unrecognized setting}

Active Desktop and Wallpaper:

-----------------------------

Active Desktop may be disabled at this entry:

HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState

Displayed if Active Desktop enabled and wallpaper not set by Group Policy:

HKCU\Software\Microsoft\Internet Explorer\Desktop\General\

"Wallpaper" = "C:\WINDOWS\system32\config\systemprofile\Pulpit\bez tytułu.bmp"

Displayed if Active Desktop disabled and wallpaper not set by Group Policy:

HKCU\Control Panel\Desktop\

"Wallpaper" = "C:\Documents and Settings\MONIKA\Pulpit\bez tytułu.bmp"

Windows Portable Device AutoPlay Handlers

-----------------------------------------

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\

BSMediaPlayerOnArrival\

"Provider" = "BearShare"

"ProgID" = "BearShare.LauncherEventHandler"

HKLM\SOFTWARE\Classes\BearShare.LauncherEventHandler\CLSID\(Default) = "{A7A4A19A-00AC-473c-8225-1B97D1FDD43E}"

-> {HKLM...CLSID} = "CLauncherEventHandler Object"

\LocalServer32\(Default) = ""C:\PROGRA~1\BEARSH~1\BEARSH~1\Launcher.exe"" ["MusicLab LLC"]

BSPlayCDAudioOnArrival\

"Provider" = "BearShare"

"InvokeProgID" = "BearShare.AudioCD"

"InvokeVerb" = "play"

HKLM\SOFTWARE\Classes\BearShare.AudioCD\shell\play\Command\(Default) = "C:\PROGRA~1\BEARSH~1\BEARSH~1\BearShare.exe --playdrive %L" [null data]

BSRipCDAudioOnArrival\

"Provider" = "BearShare"

"InvokeProgID" = "BearShare.AudioCD"

"InvokeVerb" = "rip"

HKLM\SOFTWARE\Classes\BearShare.AudioCD\shell\rip\Command\(Default) = "C:\PROGRA~1\BEARSH~1\BEARSH~1\BearShare.exe --ripdrive %L" [null data]

BSShowCDAudioOnArrival\

"Provider" = "BearShare"

"InvokeProgID" = "BearShare.AudioCD"

"InvokeVerb" = "show"

HKLM\SOFTWARE\Classes\BearShare.AudioCD\shell\show\Command\(Default) = "C:\PROGRA~1\BEARSH~1\BEARSH~1\BearShare.exe --showdrive %L" [null data]

MPCPlayCDAudioOnArrival\

"Provider" = "Media Player Classic"

"InvokeProgID" = "MediaPlayerClassic.Autorun"

"InvokeVerb" = "PlayCDAudio"

HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayCDAudio\command\(Default) = ""C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1 /cd" [null data]

MPCPlayDVDMovieOnArrival\

"Provider" = "Media Player Classic"

"InvokeProgID" = "MediaPlayerClassic.Autorun"

"InvokeVerb" = "PlayDVDMovie"

HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayDVDMovie\command\(Default) = ""C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1 /dvd" [null data]

MPCPlayMusicFilesOnArrival\

"Provider" = "Media Player Classic"

"InvokeProgID" = "MediaPlayerClassic.Autorun"

"InvokeVerb" = "PlayMusicFiles"

HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayMusicFiles\command\(Default) = ""C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1" [null data]

MPCPlayVideoFilesOnArrival\

"Provider" = "Media Player Classic"

"InvokeProgID" = "MediaPlayerClassic.Autorun"

"InvokeVerb" = "PlayVideoFiles"

HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayVideoFiles\command\(Default) = ""C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1" [null data]

NeroAutoPlay2CDAudio\

"Provider" = "Nero Express"

"InvokeProgID" = "Nero.AutoPlay2"

"InvokeVerb" = "HandleCDBurningOnArrival_CDAudio"

HKLM\SOFTWARE\Classes\Nero.AutoPlay2\shell\HandleCDBurningOnArrival_CDAudio\command\(Default) = "C:\Program Files\Ahead\nero\nero.exe /w /New:AudioCD /Drive:%L" ["Ahead Software AG"]

NeroAutoPlay2CopyCD\

"Provider" = "Nero Express"

"InvokeProgID" = "Nero.AutoPlay2"

"InvokeVerb" = "PlayCDAudioOnArrival_CopyCD"

HKLM\SOFTWARE\Classes\Nero.AutoPlay2\shell\PlayCDAudioOnArrival_CopyCD\command\(Default) = "C:\Program Files\Ahead\nero\nero.exe /w /Dialog:DiscCopy /Drive:%L" ["Ahead Software AG"]

NeroAutoPlay2DataDisc\

"Provider" = "Nero Express"

"InvokeProgID" = "Nero.AutoPlay2"

"InvokeVerb" = "HandleCDBurningOnArrival_DataDisc"

HKLM\SOFTWARE\Classes\Nero.AutoPlay2\shell\HandleCDBurningOnArrival_DataDisc\command\(Default) = "C:\Program Files\Ahead\nero\nero.exe /w /New:ISODisc /Drive:%L" ["Ahead Software AG"]

NeroAutoPlay2LaunchNeroStartSmart\

"Provider" = "Nero StartSmart"

"InvokeProgID" = "Nero.AutoPlay2"

"InvokeVerb" = "HandleCDBurningOnArrival_LaunchNeroStartSmart"

HKLM\SOFTWARE\Classes\Nero.AutoPlay2\shell\HandleCDBurningOnArrival_LaunchNeroStartSmart\command\(Default) = "C:\Program Files\Ahead\Nero StartSmart\NeroStartSmart.exe /AutoPlay /Drive:%L" ["Ahead Software AG"]

NMMPlayCDAudioOnArrival\

"Provider" = "Nokia Music Manager"

"InvokeProgID" = "NokiaMusicManager"

"InvokeVerb" = "NMMPlayCD"

HKLM\SOFTWARE\Classes\NokiaMusicManager\shell\NMMPlayCD\command\(Default) = "C:\Program Files\Nokia\Nokia PC Suite 6\MusicManager.exe /playCD "%L"" ["Nokia"]

NMMRipCDAudioOnArrival\

"Provider" = "Nokia Music Manager"

"InvokeProgID" = "NokiaMusicManager"

"InvokeVerb" = "NMMRipCD"

HKLM\SOFTWARE\Classes\NokiaMusicManager\shell\NMMRipCD\command\(Default) = "C:\Program Files\Nokia\Nokia PC Suite 6\MusicManager.exe /ripCD "%L"" ["Nokia"]

PDVDPlayDVDMovieOnArrival\

"Provider" = "PowerDVD"

"InvokeProgID" = "DVD"

"InvokeVerb" = "PlayWithPowerDVD"

HKLM\SOFTWARE\Classes\DVD\shell\PlayWithPowerDVD\Command\(Default) = ""C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe" "%L"" [null data]

WinampMTPHandler\

"Provider" = "Winamp"

"ProgID" = "Shell.HWEventHandlerShellExecute"

"InitCmdLine" = "C:\Program Files\Winamp\winamp.exe"

HKLM\SOFTWARE\Classes\Shell.HWEventHandlerShellExecute\CLSID\(Default) = "{FFB8655F-81B9-4fce-B89C-9A6BA76D13E7}"

-> {HKLM...CLSID} = "ShellExecute HW Event Handler"

\LocalServer32\(Default) = "rundll32.exe shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7}" [MS]

WinampPlayMediaOnArrival\

"Provider" = "Winamp"

"InvokeProgID" = "Winamp.File"

"InvokeVerb" = "Play"

HKLM\SOFTWARE\Classes\Winamp.File\shell\Play\command\(Default) = ""C:\Program Files\Winamp\winamp.exe" "%1"" [null data]

HKLM\SOFTWARE\Classes\Winamp.File\shell\Play\DropTarget\CLSID = "{46986115-84D6-459c-8F95-52DD653E532E}"

-> {HKLM...CLSID} = (no title provided)

\LocalServer32\(Default) = ""C:\Program Files\Winamp\winamp.exe"" [null data]

Startup items in "MONIKA" & "All Users" startup folders:

--------------------------------------------------------

C:\Documents and Settings\MONIKA\Menu Start\Programy\Autostart

"No-IP DUC" -> shortcut to: "C:\Program Files\WebServ\no-ip\No-IP DUC20.exe" [file not found]

C:\Documents and Settings\All Users\Menu Start\Programy\Autostart

"Adobe Gamma Loader.exe" -> shortcut to: "C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe" [null data]

"Adobe Reader Speed Launch" -> shortcut to: "C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe" ["Adobe Systems Incorporated"]

"Adobe Reader Synchronizer" -> shortcut to: "C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe" [file not found]

Winsock2 Service Provider DLLs:

-------------------------------

Namespace Service Providers

HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}

000000000001\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]

000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]

000000000003\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]

Transport Service Providers

HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}

0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:

%SystemRoot%\system32\mswsock.dll [MS], 01 - 03, 06 - 13

%SystemRoot%\system32\rsvpsp.dll [MS], 04 - 05

Toolbars, Explorer Bars, Extensions:

------------------------------------

Extensions (Tools menu items, main toolbar menu buttons)

HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\

{08B0E5C0-4FCB-11CF-AAA5-00401C608501}\

"MenuText" = "Sun Java Console"

"CLSIDExtension" = "{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}"

-> {HKCU...CLSID} = "Java Plug-in 1.6.0_05"

\InProcServer32\(Default) = "C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll" ["Sun Microsystems, Inc."]

-> {HKLM...CLSID} = "Java Plug-in 1.6.0_05"

\InProcServer32\(Default) = "C:\Program Files\Java\jre1.6.0_05\bin\npjpi160_05.dll" ["Sun Microsystems, Inc."]

{FB5F1910-F110-11D2-BB9E-00C04F795683}\

"ButtonText" = "Messenger"

"MenuText" = "Windows Messenger"

"Exec" = "C:\Program Files\Messenger\msmsgs.exe" [MS]

Miscellaneous IE Hijack Points

------------------------------

C:\WINDOWS\INF\IERESET.INF (used to "Reset Web Settings")

Added lines (compared with English-language version):

[strings]: START_PAGE_URL=http://www.vobis.pl/

Missing lines (compared with English-language version):

[strings]: 1 line

Running Services (Display Name, Service Name, Path {Service DLL}):

------------------------------------------------------------------

FortKnox Personal Firewall, fortknox, "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exe" ["NETGATE Technologies s.r.o."]

NVIDIA Display Driver Service, NVSvc, "C:\WINDOWS\system32\nvsvc32.exe" ["NVIDIA Corporation"]

SecuROM User Access Service (V7), UserAccess7, "C:\WINDOWS\system32\UAService7.exe" ["Sony DADC Austria AG."]

Windows User Mode Driver Framework, UMWdf, "C:\WINDOWS\system32\wdfmgr.exe" [MS]

---------- (launch time: 2008-08-08 18:24:03)

+ This report excludes default entries except where indicated.

+ To see *everywhere* the script checks and *everything* it finds,

launch it from a command prompt or a shortcut with the -all parameter.

+ To search all directories of local fixed drives for DESKTOP.INI

DLL launch points, use the -supp parameter or answer "No" at the

first message box and "Yes" at the second message box.

---------- (total run time: 119 seconds, including 16 seconds for message boxes)

Mam pomysł, mógłbym robić logi z resetem komputera, potem zapisywać je na pendrive'a czy MP3, cofać system na internet, wklejać na forum, czekać na Twoją odpowiedź, cofnąć ostatnie przywracanie i stosować się do twoich wskazówek. Później znowu zapisuję loga, cofam do internetu i wklejam. Pomysł trochę cienki i czasu dużo zabiorą te wszystkie cofania ale co się nie robi żeby komputer dobrze hulał :D

Proszę o zamknięcie tematu, system został od nowa zainstalowany, nie ma już żadnych problemów

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.