WoJT@s utworzono 6 sierpnia 2008 utworzono 6 sierpnia 2008 Logi do tematu: http://www.forumpc.pl/index.php?showtopic=59771 Logfile of Trend Micro HijackThis v2.0.2Scan saved at 14:08:29, on 2008-08-06Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\UAService7.exeC:\Program Files\VIA\RAID\raid_tool.exeC:\WINDOWS\SOUNDMAN.EXEC:\WINDOWS\system32\VTTimer.exeC:\Program Files\CyberLink\PowerDVD\PDVDServ.exeC:\WINDOWS\system32\RUNDLL32.EXEC:\Program Files\Java\jre1.6.0_05\bin\jusched.exeC:\Program Files\Common Files\InstallShield\UpdateService\issch.exeC:\WINDOWS\system32\drivers\nvscv32.exeC:\WINDOWS\system32\wuauclt.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Documents and Settings\Grzesiek\Moje dokumenty\Gadu-Gadu\gg.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = ŁączaO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exeO4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXEO4 - HKLM\..\Run: [VTTimer] VTTimer.exeO4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exeO4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startupO4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -startO4 - HKLM\..\Run: [FortKnoxPersonalFirewall] "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe"O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exeO4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O4 - Startup: No-IP DUC.lnk = C:\Program Files\WebServ\no-ip\No-IP DUC20.exeO4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exeO4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exeO8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htmO8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htmO8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htmO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO14 - IERESET.INF: START_PAGE_URL=http://www.vobis.pl/O23 - Service: FortKnox Personal Firewall (fortknox) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exeO23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exeO23 - Service: Windows Media Connect (WMC) (WmcCds) - Unknown owner - c:\program files\windows media connect\mswmccds.exeO24 - Desktop Component 0: (no name) - http://www.humor-z.webpark.pl/pic_files/tapety/247003.jpg--End of file - 5763 bytes
snip91 komentarz 6 sierpnia 2008 komentarz 6 sierpnia 2008 O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exe C:\WINDOWS\system32\drivers\nvscv32.exe Plik usuń ręcznie. Dodaj log z ComboFix.
WoJT@s komentarz 6 sierpnia 2008 Autor komentarz 6 sierpnia 2008 Gdy chcę usunąć wyświetla się komunikat: Nie można usunąć nvscv32: Odmowa dostępu. Sprawdź, czy dysk nie jest zapełniony lub chroniony przed zapisem oraz, czy plik nie jest aktualnie używany.
snip91 komentarz 6 sierpnia 2008 komentarz 6 sierpnia 2008 Pobierz ComboFix. Do notatnika wklej: File::C:\WINDOWS\system32\drivers\nvscv32.exe W notatniku zakładka Plik --> Zapisz jako --> zapisz pod nazwą CFScript.txt i zapisz go w tym samym katalogu, w którym jest ComboFix. Wystartuj tryb awaryjny (F8 podczas ładowania systemu). Na ikonę ComboFix przeciągasz zrobiony plik CFScript.txt tak, jak na obrazku: Rozpocznie się usuwanie i powstanie log, który pokazujesz na forum. Po restarcie usuń ręcznie folder C:\Qoobox.
WoJT@s komentarz 7 sierpnia 2008 Autor komentarz 7 sierpnia 2008 Mam problem: Internet działa tylko raz.Po cofnięciu systemu. Gdy zrobię loga, system mi zrestartuje a internet znowu nie będzie działał, więc jak wstawię loga na forum? Nie mam żadnego znajomego z internetem. A jak zrobię tego loga, zapiszę na płytę czy pendrive'a i cofnę system do internetu, wstawię tego loga OK. Ale to przecież mi wszystko cofnie to co zrobił ComboFix. Co poradzisz??
Mateusz J. komentarz 7 sierpnia 2008 komentarz 7 sierpnia 2008 Pobierz SpyBota i przeskanuj komputer. Użyj FixWareOut Wykonaj polecenie Sniper-a, tylko plik: C:\WINDOWS\system32\drivers\nvscv32.exe usuń ręcznie. Jeśli pojawi się odmowa dostępu, wyłącz proces tego pliku w menadżerze zadań, a następnie go usuń. Wykonuj powyższe instrukcje nawet, gdy zabraknie Ci internetu Jeśli znowu nie będziesz miał połączenia internetowego, spróbuj użyj WinSockFix. Mam nadzieję, że się uda.
WoJT@s komentarz 8 sierpnia 2008 Autor komentarz 8 sierpnia 2008 Dzięki jesiona, ale nie mogę otworzyć menedżera zadań, daje CTRL + ALT + DELETE. Otwiera się i znika. Gdy najadę na kwadracik na pasku on również znika. Musiałem cofnąć system żeby napisać tego posta :mellow: a program WinSockFix nic nie daje. Proszę pomóżcie!!
Mateusz J. komentarz 8 sierpnia 2008 komentarz 8 sierpnia 2008 W takim razie poproszę o loga z DDS - program nie uruchamia ponownie komputera. Opis programu pod ComboFix.
WoJT@s komentarz 8 sierpnia 2008 Autor komentarz 8 sierpnia 2008 Utworzyły się dwa logi: Deckard's System Scanner v20071014.68Run by MONIKA on 2008-08-08 16:46:07Computer is in Normal Mode.---------------------------------------------------------------------------------- System Restore --------------------------------------------------------------Successfully created a Deckard's System Scanner Restore Point.-- Last 5 Restore Point(s) --20: 2008-08-08 14:46:35 UTC - RP758 - Deckard's System Scanner Restore Point19: 2008-08-08 11:30:56 UTC - RP757 - Operacja przywracania18: 2008-08-08 07:49:28 UTC - RP756 - Operacja przywracania17: 2008-08-08 07:43:24 UTC - RP755 - Operacja przywracania16: 2008-08-08 07:34:16 UTC - RP754 - Operacja przywracania-- First Restore Point -- 1: 2008-08-01 08:13:40 UTC - RP739 - SBacked up registry hives.Performed disk cleanup.Total Physical Memory: 256 MiB (512 MiB recommended).-- HijackThis Clone ------------------------------------------------------------Emulating logfile of Trend Micro HijackThis v2.0.2Scan saved at 2008-08-08 16:47:51Platform: Windows XP Dodatek Service Pack 2 (5.01.2600)MSIE: Internet Explorer (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\system32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exeC:\WINDOWS\system32\nvsvc32.exeC:\WINDOWS\explorer.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\UAService7.exeC:\Program Files\VIA\RAID\raid_tool.exeC:\WINDOWS\SOUNDMAN.EXEC:\WINDOWS\system32\VTTimer.exeC:\Program Files\CyberLink\PowerDVD\PDVDServ.exeC:\WINDOWS\system32\rundll32.exeC:\Program Files\Java\jre1.6.0_05\bin\jusched.exeC:\Program Files\Common Files\InstallShield\UpdateService\issch.exeC:\WINDOWS\system32\drivers\nvscv32.exeC:\WINDOWS\system32\wuauclt.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Documents and Settings\MONIKA\Pulpit\dss.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.com/search?q=%sR1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = iexploreR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = ŁączaR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ieO2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exeO4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXEO4 - HKLM\..\Run: [VTTimer] VTTimer.exeO4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exeO4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [nwiz] nwiz.exe /installO4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInitO4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startupO4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -startO4 - HKLM\..\Run: [FortKnoxPersonalFirewall] "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe"O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exeO4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')O4 - Startup: No-IP DUC.lnk = C:\Program Files\WebServ\no-ip\No-IP DUC20.exeO4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exeO4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exeO8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htmO8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htmO8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htmO9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXEO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXEO23 - Service: FortKnox Personal Firewall (fortknox) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exeO23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exeO23 - Service: Windows Media Connect (WMC) (WmcCds) - Unknown owner - C:\Program Files\Windows Media Connect\mswmccds.exeO24 - Desktop Component 0: - http://www.humor-z.webpark.pl/pic_files/tapety/247003.jpg--End of file - 6207 bytes-- HijackThis Fixed Entries (C:\Program Files\Trend Micro\HijackThis\backups\) -backup-20080722-133747-163 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://search.bearshare.com/sidebar.html?src=ssbbackup-20080722-133747-388 O4 - HKLM\..\Run: [Windows] C:\WINDOWS\services.exebackup-20080722-133747-398 O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)backup-20080722-133747-565 O4 - HKLM\..\Run: [msm] C:\WINDOWS\system32\drivers\services.exebackup-20080722-133747-655 O4 - HKLM\..\Run: [lsass.exe] C:\WINDOWS\lsass.exebackup-20080722-133747-729 O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exebackup-20080722-133747-798 O2 - BHO: Give4Free Plugin Installer - {208E7E77-507A-4649-B0C9-D39E9049C7A2} - C:\Program Files\Give4Free Plugin\ibho1.dllbackup-20080722-133747-813 O4 - HKLM\..\Run: [shell] c:\windows\system32\services32.exebackup-20080722-133748-789 O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) - backup-20080722-133750-672 O23 - Service: NNServ - New.net, Inc. - C:\Program Files\NewDotNet\nnrun.exe-- File Associations -----------------------------------------------------------.cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*.cpl - cplfile - shell\runas\command - rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%*-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------R0 prohlp02 (StarForce Protection Helper Driver v2) - c:\windows\system32\drivers\prohlp02.sys <Not Verified; Protection Technology; StarForce Protection System>R0 prosync1 (StarForce Protection Synchronization Driver v1) - c:\windows\system32\drivers\prosync1.sys <Not Verified; Protection Technology; StarForce Protection System>R0 sfdrv01 (StarForce Protection Environment Driver (version 1.x)) - c:\windows\system32\drivers\sfdrv01.sys <Not Verified; Protection Technology; StarForce Protection System>R0 sfhlp01 (StarForce Protection Helper Driver) - c:\windows\system32\drivers\sfhlp01.sys <Not Verified; Protection Technology; StarForce Protection System>R0 sfsync02 (StarForce Protection Synchronization Driver (version 2.x)) - c:\windows\system32\drivers\sfsync02.sys <Not Verified; Protection Technology; StarForce Protection System>R1 prodrv06 (StarForce Protection Environment Driver v6) - c:\windows\system32\drivers\prodrv06.sys <Not Verified; Protection Technology; StarForce Protection System>R3 pfc (PADUS ASPI SHELL) - c:\windows\system32\drivers\pfc.sys <Not Verified; Padus, Inc.; Padus? ASPI Shell>S3 catchme - c:\combofix\catchme.sys (file missing)S3 GMSIPCI - d:\install\gmsipci.sys (file missing)S3 hamachi (Hamachi Network Interface) - c:\windows\system32\drivers\hamachi.sys <Not Verified; Applied Networking Inc.; Hamachi Virtual Network Interface Driver>S3 pmxdrv - c:\windows\system32\drivers\pmxdrv.sys (file missing)S3 sony_ssm.sys - c:\docume~1\monika\ustawi~1\temp\sony_ssm.sys (file missing)-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------R2 UserAccess7 (SecuROM User Access Service (V7)) - c:\windows\system32\uaservice7.exe <Not Verified; Sony DADC Austria AG.; >S2 PowerManager (Power Manager) - c:\windows\svchost.exe <Not Verified; Microsoft Corporation; Microsoft? Windows? Operating System>S3 ServiceLayer - "c:\program files\pc connectivity solution\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>S3 WmcCds (Windows Media Connect (WMC)) - c:\program files\windows media connect\mswmccds.exeS3 WmcCdsLs (Pomocnik programu Windows Media Connect (WMC)) - c:\program files\windows media connect\mswmcls.exe <Not Verified; Microsoft Corporation; Microsoft? Windows? Operating System>-- Device Manager: Disabled ----------------------------------------------------No disabled devices found.-- Scheduled Tasks -------------------------------------------------------------2007-06-26 20:21:14 414 --a------ C:\WINDOWS\Tasks\Symantec NetDetect.job-- Files created between 2008-07-08 and 2008-08-08 -----------------------------2008-08-08 13:48:12 0 d-------- C:\Program Files\Altnet2008-08-08 13:32:43 0 d-------- C:\WINDOWS\system32\dt2008-08-07 17:35:48 0 d-------- C:\ComboFix(2)2008-08-05 11:14:18 0 d-------- C:\6fd08c7f11d096932b2520bf8ae2f7322008-08-05 11:14:13 0 d-------- C:\WINDOWS\network diagnostic2008-08-05 11:10:23 0 d-------- C:\5772b73c5eb2155d3395b4d780eb29142008-08-05 10:56:54 0 d-------- C:\Program Files\Alwil Software2008-08-04 11:55:27 0 d-------- C:\Lit2008-08-04 11:52:11 0 d-------- C:\Program Files\JLC's Software2008-08-04 11:50:49 0 d-------- C:\Program Files\Ashampoo2008-07-31 13:26:45 0 d-------- C:\Program Files\Słownik Kontekstowy2008-07-30 11:26:03 0 d-------- C:\Program Files\Give4Free Plugin2008-07-30 11:25:58 0 d--hs---- C:\RECYCLER(3)2008-07-30 11:15:14 0 d-------- C:\Program Files\Tibia(3)2008-07-25 12:58:55 0 d-------- C:\Program Files\Tibia(2)2008-07-23 14:46:48 0 d-------- C:\Program Files\NETGATE2008-07-23 13:23:33 68586 --a------ C:\WINDOWS\system32\drivers\nvscv32.exe2008-07-22 17:54:16 0 d-------- C:\WINDOWS\pss2008-07-22 13:58:33 68096 --a------ C:\WINDOWS\zip.exe2008-07-22 13:58:33 49152 --a------ C:\WINDOWS\VFind.exe2008-07-22 13:58:33 212480 --a------ C:\WINDOWS\swxcacls.exe <Not Verified; SteelWerX; SteelWerX Extended Configurator ACLists>2008-07-22 13:58:33 136704 --a------ C:\WINDOWS\swsc.exe <Not Verified; SteelWerX; SteelWerX Service Controller>2008-07-22 13:58:33 161792 --a------ C:\WINDOWS\swreg.exe <Not Verified; SteelWerX; SteelWerX Registry Editor>2008-07-22 13:58:33 98816 --a------ C:\WINDOWS\sed.exe2008-07-22 13:58:33 80412 --a------ C:\WINDOWS\grep.exe2008-07-22 13:58:33 89504 --a------ C:\WINDOWS\fdsv.exe <Not Verified; Smallfrogs Studio; >2008-07-22 12:41:52 0 d-------- C:\Program Files\Trend Micro-- Find3M Report ---------------------------------------------------------------2008-08-08 14:42:56 0 d-------- C:\Program Files\Kurka Wodna 22008-08-08 14:38:14 0 d-------- C:\Program Files\Football Club2008-08-08 14:34:16 0 d-------- C:\Program Files\eMule2008-08-08 14:05:54 8 -r-hs---- C:\Program Files\Desktop_.ini2008-08-06 12:23:04 0 d-------- C:\Program Files\K-Lite Codec Pack2008-08-06 10:48:46 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Ashampoo2008-08-05 12:07:15 0 d-------- C:\Program Files\McDonaldsDragons2008-08-05 12:07:01 0 d-------- C:\Program Files\Ubisoft2008-08-05 12:06:51 0 d-------- C:\Program Files\Valve2008-08-05 12:03:17 0 d-------- C:\Program Files\Windows Media Connect2008-08-01 10:10:24 0 d--h----- C:\Program Files\InstallShield Installation Information2008-07-31 19:11:27 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Disney Interactive Studios2008-07-31 18:39:41 0 d-------- C:\Program Files\THQ2008-07-31 18:38:55 0 d-------- C:\Program Files\BackToGaya2008-07-31 18:38:46 0 d-------- C:\Program Files\Dead City2008-07-31 18:38:44 0 d-------- C:\Program Files\Deluxe Ski Jump 32008-07-31 18:38:30 0 d-------- C:\Program Files\Gadu-Gadu2008-07-31 18:38:30 0 d-------- C:\Program Files\EOM2008-07-31 18:38:28 0 d-------- C:\Program Files\ICE-land2008-07-31 18:38:26 0 d-------- C:\Program Files\ICE-Land2 Demo2008-07-31 18:38:08 0 d-------- C:\Program Files\Kart2008-07-31 18:37:59 0 d-------- C:\Program Files\Little Fighter 2.5 - v2.02008-07-31 18:37:56 0 d-------- C:\Program Files\Maja22008-07-31 18:37:55 0 d-------- C:\Program Files\Maluch Racer2008-07-31 18:37:43 0 d-------- C:\Program Files\Mistrz Klawiatury II Demo2008-07-31 18:37:42 0 d-------- C:\Program Files\Modi i Nanna2008-07-31 18:37:41 0 d-------- C:\Program Files\No Brakes 4x4 Racing2008-07-31 18:37:41 0 d-------- C:\Program Files\Mustang z Zielonej Doliny2008-07-31 18:37:38 0 d-------- C:\Program Files\Red Clash2008-07-31 18:37:38 0 d-------- C:\Program Files\Notrium2008-07-31 18:37:37 0 d-------- C:\Program Files\Pazur Demo2008-07-31 18:37:37 0 d-------- C:\Program Files\Open Kart PL2008-07-31 18:37:34 0 d-------- C:\Program Files\Pekka Kana 22008-07-31 18:37:08 0 d-------- C:\Program Files\PocoMan2008-07-31 18:37:04 0 d-------- C:\Program Files\Red Shark II2008-07-31 18:37:04 0 d-------- C:\Program Files\Realtek AC972008-07-31 18:37:03 0 d-------- C:\Program Files\Sammy Suricate2008-07-31 18:37:03 0 d-------- C:\Program Files\Różowa Pantera2008-07-31 18:37:03 0 d-------- C:\Program Files\Roll 'm Up2008-07-31 18:37:03 0 d-------- C:\Program Files\Rocks'n'Diamonds2008-07-31 18:37:02 0 d-------- C:\Program Files\Secret Maryo Chronicles2008-07-31 18:37:02 0 d-------- C:\Program Files\Scooby-Doo i Miasto Duchów 2008-07-31 18:37:02 0 d-------- C:\Program Files\Scooby Doo2008-07-31 18:37:01 0 d-------- C:\Program Files\Serious Sam Pierwsze Starcie2008-07-31 18:37:00 0 d-------- C:\Program Files\Sims2Packer2008-07-31 18:37:00 0 d-------- C:\Program Files\Shopping Centre Tycoon2008-07-31 18:36:59 0 d-------- C:\Program Files\TeddyBears2008-07-31 18:36:59 0 d-------- C:\Program Files\SparxDEMO2008-07-31 18:36:59 0 d-------- C:\Program Files\Smash up Derby2008-07-31 18:36:58 0 d-------- C:\Program Files\The Playa2008-07-31 18:36:57 0 d-------- C:\Program Files\TibiaTestserver2008-07-31 18:36:57 0 d-------- C:\Program Files\TibiaBOT NG42008-07-31 18:36:38 0 d-------- C:\Program Files\wastesedge2008-07-31 18:36:38 0 d-------- C:\Program Files\Video Strip Poker2008-07-31 18:36:37 0 d-------- C:\Program Files\Winamp2008-07-31 18:36:34 0 d-------- C:\Program Files\Windows Journal Viewer2008-07-31 18:36:28 0 d-------- C:\Program Files\Worms2008-07-31 18:34:32 0 d-------- C:\Program Files\Winamp Remote2008-07-31 18:34:03 0 d-------- C:\Program Files\DNA2008-07-31 18:33:42 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Tibia2008-07-31 18:33:36 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Tibia(3)2008-07-31 18:33:26 0 d-------- C:\Program Files\CyberLink2008-07-31 18:33:25 0 d-------- C:\Program Files\Common Files2008-07-31 18:32:20 0 d-------- C:\Program Files\Cheating-Death2008-07-31 18:32:16 0 d-------- C:\Program Files\BitComet2008-07-31 18:32:16 0 d-------- C:\Program Files\Azureus2008-07-31 18:32:06 0 d-------- C:\Program Files\Robin Hood2008-07-31 18:31:43 0 d-------- C:\Program Files\SPIDI LICZY2008-07-31 18:31:39 0 d-------- C:\Program Files\Santa Claus in Trouble2008-07-31 18:31:38 0 d-------- C:\Program Files\Race Cars2008-07-31 18:31:36 0 d-------- C:\Program Files\Pinocchio the Game2008-07-31 18:31:25 0 d-------- C:\Program Files\Chromium BSU2008-07-31 18:30:51 0 d-------- C:\Program Files\Undercover2008-07-31 18:30:41 0 d-------- C:\Program Files\uTorrent2008-07-31 18:30:40 0 d-------- C:\Program Files\AIDA322008-07-31 18:29:59 0 d-------- C:\Program Files\7-Zip2008-07-31 18:24:45 0 d-------- C:\Program Files\Sprill Wodne Przygody2008-07-31 18:24:41 0 d-------- C:\Program Files\Wizaz 22008-07-31 18:24:34 0 d-------- C:\Program Files\TibiaBot NG2008-07-31 18:24:28 0 d-------- C:\Program Files\Messenger2008-07-31 18:23:53 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Mozilla2008-07-31 18:05:47 0 d-------- C:\Program Files\BitTorrent2008-07-29 11:51:30 0 d-------- C:\Program Files\GameSpy Arcade2008-07-29 11:50:12 0 d-------- C:\Program Files\Flash Strike2008-07-29 11:36:35 0 d-------- C:\Program Files\AquaPark_at2008-07-23 13:25:33 577572 --a------ C:\dxsetup.exe2008-07-21 14:20:01 0 d-------- C:\Program Files\Disney Interactive2008-07-10 16:08:23 1847326 -----n--- C:\RaymanM.exe2008-07-10 16:08:21 0 d-------- C:\Program Files\Yeti Studios2008-07-10 16:07:27 0 d-------- C:\Program Files\WSiP2008-07-10 16:05:57 0 d-------- C:\Program Files\Woody Woodpecker2008-07-10 16:05:41 0 d-------- C:\Program Files\WnP2008-07-10 16:05:41 0 d-------- C:\Program Files\WMV9_VCM2008-07-10 16:05:38 0 d-------- C:\Program Files\Wizards of the Coast2008-07-10 16:05:27 0 d-------- C:\Program Files\Winfor2008-07-10 16:04:29 0 d-------- C:\Program Files\Wiering Software2008-07-10 16:03:59 0 d-------- C:\Program Files\WebServ2008-07-10 16:03:36 0 d-------- C:\Program Files\WarlockStudio2008-07-10 16:03:33 0 d-------- C:\Program Files\VIA2008-07-10 15:59:25 0 d-------- C:\Program Files\Usługi online2008-07-10 15:59:25 153116 --a------ C:\Program Files\UNWISE.EXE2008-07-10 15:56:18 0 d-------- C:\Program Files\Ubi Soft2008-07-10 15:56:17 0 d-------- C:\Program Files\ToonCar2008-07-10 15:56:16 0 d-------- C:\Program Files\Tomb Raider II GOLD2008-07-10 15:56:05 0 d-------- C:\Program Files\The Learning Company2008-07-10 15:55:53 0 d-------- C:\Program Files\TerraGame2008-07-10 15:55:42 0 d-------- C:\Program Files\Techland2008-07-10 15:55:41 0 d-------- C:\Program Files\Taxi Challenge Londyn2008-07-10 15:55:41 0 d-------- C:\Program Files\TajemniczaWyspa2008-07-10 15:55:41 0 d-------- C:\Program Files\Tairex Interactive2008-07-10 15:55:40 0 d-------- C:\Program Files\Szybki Lopez2008-07-10 15:55:39 0 d-------- C:\Program Files\Symantec2008-07-10 15:55:39 0 d-------- C:\Program Files\SuperMarioPac2008-07-10 15:55:38 0 d-------- C:\Program Files\sunmedia2008-07-10 15:54:51 0 d-------- C:\Program Files\Steam2008-07-10 15:54:50 0 d-------- C:\Program Files\StarshipTycoonDemo2008-07-10 15:54:18 0 d-------- C:\Program Files\Soda Pipes2008-07-10 15:54:17 0 d-------- C:\Program Files\Snowy Lunch Rush2008-07-10 15:54:13 0 d-------- C:\Program Files\Ski Park Manager2008-07-10 15:54:12 0 d-------- C:\Program Files\Sierra On-Line2008-07-10 15:52:41 0 d-------- C:\Program Files\Shavlik Technologies2008-07-10 15:51:29 0 d-------- C:\Program Files\SEGA2008-07-10 15:50:18 0 d-------- C:\Program Files\Rockstar Games2008-07-10 15:49:52 0 d-------- C:\Program Files\Robster Productions2008-07-10 15:46:20 0 d-------- C:\Program Files\Revistronic2008-07-10 15:46:20 0 d-------- C:\Program Files\ReflexiveArcade2008-07-10 15:46:02 0 d-------- C:\Program Files\Realore2008-07-10 15:46:02 0 d-------- C:\Program Files\RealApex2008-07-10 15:46:02 0 d-------- C:\Program Files\Real2008-07-10 15:46:01 0 d-------- C:\Program Files\Rainbow Islands - Candyland (Demo)2008-07-10 15:45:59 0 d-------- C:\Program Files\QuickTime2008-07-10 15:45:58 0 d-------- C:\Program Files\Project 3 Interactive2008-07-10 15:45:36 0 d-------- C:\Program Files\poszukiwania_zozoli2008-07-10 15:45:34 0 d-------- C:\Program Files\Play.com.pl2008-07-10 15:45:33 0 d-------- C:\Program Files\Play2008-07-10 15:45:33 0 d-------- C:\Program Files\Piraci Nowego Świata2008-07-10 15:45:06 0 d-------- C:\Program Files\Pinnacle2008-07-10 15:45:06 0 d-------- C:\Program Files\Phelios2008-07-10 15:44:55 0 d-------- C:\Program Files\PC-The.Sims.2-4CD.Multi15-By.TXT-[tntvillage.org]2008-07-10 15:44:52 0 d-------- C:\Program Files\Patrician III2008-07-10 15:44:52 0 d-------- C:\Program Files\Paradox Entertainment2008-07-10 15:44:51 0 d-------- C:\Program Files\PacBomber2008-07-10 15:44:49 0 d-------- C:\Program Files\Oak Entertainment2008-07-10 15:44:34 0 d-------- C:\Program Files\Nikki the Ninja2008-07-10 15:44:34 0 d-------- C:\Program Files\neoSoftware2008-07-10 15:44:32 0 d-------- C:\Program Files\Multi_Media2008-07-10 15:44:32 0 d-------- C:\Program Files\MSN Gaming Zone2008-07-10 15:44:17 0 d-------- C:\Program Files\Monte Cristo2008-07-10 15:44:13 0 d-------- C:\Program Files\Mirage Interactive2008-07-10 15:44:13 0 d-------- C:\Program Files\Mindscape2008-07-10 15:44:12 0 d-------- C:\Program Files\Microids2008-07-10 15:44:12 0 d-------- C:\Program Files\Metro 3D2008-07-10 15:44:12 0 d-------- C:\Program Files\Menara Games2008-07-10 15:44:11 0 d-------- C:\Program Files\MDK22008-07-10 15:39:45 0 d-------- C:\Program Files\Maxis2008-07-10 15:39:45 0 d-------- C:\Program Files\MarkSoft2008-07-10 15:39:35 0 d-------- C:\Program Files\MarBit2008-07-10 15:39:35 0 d-------- C:\Program Files\Maps2008-07-10 15:39:35 0 d-------- C:\Program Files\Managed DirectX (0901)2008-07-10 15:39:31 0 d-------- C:\Program Files\Magic Builder2008-07-10 15:39:30 0 d-------- C:\Program Files\Madagascar2008-07-10 15:39:30 0 d-------- C:\Program Files\Mad Tracks Demo2008-07-10 15:39:17 0 d-------- C:\Program Files\LittleFighter22008-07-10 15:38:45 0 d-------- C:\Program Files\LEGO Company2008-07-10 15:38:45 0 d-------- C:\Program Files\Legendo's Trzej Muszkieterowie2008-07-10 15:38:44 0 d-------- C:\Program Files\Lavasoft2008-07-10 15:38:44 0 d-------- C:\Program Files\Lalka Klara - Stylistka2008-07-10 15:38:40 0 d-------- C:\Program Files\Kovloria2008-07-10 15:38:40 0 d-------- C:\Program Files\Komlogo2008-07-10 15:38:35 0 d-------- C:\Program Files\Kelvin2008-07-10 15:38:34 0 d-------- C:\Program Files\Kazaa2008-07-10 15:38:30 0 d-------- C:\Program Files\Kajko i Kokosz - Szkoła latania2008-07-10 15:38:23 0 d-------- C:\Program Files\JoWooD2008-07-10 15:37:50 0 d-------- C:\Program Files\Java2008-07-10 15:37:49 0 d-------- C:\Program Files\ivo2008-07-10 15:37:49 0 d-------- C:\Program Files\InterActual2008-07-10 15:37:49 0 d-------- C:\Program Files\Infogrames2008-07-10 15:37:12 0 d-------- C:\Program Files\ILLEGAL STREET RACING(2)2008-07-10 15:37:11 0 d-------- C:\Program Files\IceTec Studios Games2008-07-10 15:37:06 0 d-------- C:\Program Files\Hugo - Gorączka Czarnych Diamentów2008-07-10 15:37:06 0 d-------- C:\Program Files\HighMAT CD Writing Wizard2008-07-10 15:37:06 0 d-------- C:\Program Files\Help2008-07-10 15:37:01 0 d-------- C:\Program Files\Groovy Lime2008-07-10 15:37:01 0 d-------- C:\Program Files\Gorky 022008-07-10 15:36:15 0 d-------- C:\Program Files\Google2008-07-10 15:36:14 0 d-------- C:\Program Files\Gift2008-07-10 15:36:11 0 d-------- C:\Program Files\Games2008-07-10 15:35:57 0 d-------- C:\Program Files\Funny Racer DEMO2008-07-10 15:35:57 0 d-------- C:\Program Files\Freaky Tuner2008-07-10 15:35:56 0 d-------- C:\Program Files\FOX Jones2008-07-10 15:35:29 0 d-------- C:\Program Files\Fish Tales Trial2008-07-10 15:34:14 0 d-------- C:\Program Files\Firefly Studios2008-07-10 15:34:13 0 d-------- C:\Program Files\Feedback2008-07-10 15:32:31 0 d-------- C:\Program Files\Enlight2008-07-10 15:31:58 0 d-------- C:\Program Files\Empire Interactive2008-07-10 15:31:57 0 d-------- C:\Program Files\Elektrogames2008-07-10 15:31:56 0 d-------- C:\Program Files\Edukacja XXI wieku2008-07-10 15:31:01 0 d-------- C:\Program Files\EA Games2008-07-10 15:31:00 0 d-------- C:\Program Files\Duke Nukem2008-07-10 15:30:59 0 d-------- C:\Program Files\Droga do Eldorado2008-07-10 15:30:59 0 d-------- C:\Program Files\Dragon Jumper2008-07-10 15:30:59 0 d-------- C:\Program Files\Dracula Twins2008-07-10 15:30:59 0 d-------- C:\Program Files\Dracula Twins Demo2008-07-10 15:28:37 0 d-------- C:\Program Files\Disney Interactive Studios2008-07-10 15:28:10 0 d-------- C:\Program Files\directx2008-07-10 15:28:09 0 d-------- C:\Program Files\DIFX2008-07-10 15:27:47 0 d-------- C:\Program Files\Deluxe Ski Jump2008-07-10 15:27:38 0 d-------- C:\Program Files\Deep Silver2008-07-10 15:27:29 0 d-------- C:\Program Files\Daydream Software2008-07-10 15:27:29 0 d-------- C:\Program Files\Dart 'm Up2008-07-10 15:25:57 0 d-------- C:\Program Files\Creative2008-07-10 15:25:56 0 d-------- C:\Program Files\Cossacks2008-07-10 15:25:56 0 d-------- C:\Program Files\Core Design2008-07-10 15:25:53 0 d-------- C:\Program Files\Compedia2008-07-10 15:25:53 0 d-------- C:\Program Files\Combat Mission - Beyond Overlord2008-07-10 15:25:52 0 d-------- C:\Program Files\Codemasters2008-07-10 15:25:52 0 d-------- C:\Program Files\City Interactive2008-07-10 15:25:48 0 d-------- C:\Program Files\Charlie II2008-07-10 15:25:48 0 d-------- C:\Program Files\CeeBot-Teen DEMO2008-07-10 15:25:12 0 d-------- C:\Program Files\Cat Daddy Games2008-07-10 15:25:07 0 d-------- C:\Program Files\Calaris2008-07-10 15:24:57 0 d-------- C:\Program Files\Buena Vista Games2008-07-10 15:24:57 0 d-------- C:\Program Files\Borland2008-07-10 15:24:56 0 d-------- C:\Program Files\Bob Buduje Park2008-07-10 15:24:55 0 d-------- C:\Program Files\Black Isle2008-07-10 15:24:55 0 d-------- C:\Program Files\BitZip2008-07-10 15:24:43 0 d-------- C:\Program Files\Billy Blade2008-07-10 15:24:43 0 d-------- C:\Program Files\Big Scale Racing2008-07-10 15:24:43 0 d-------- C:\Program Files\Best Friends Free Trial2008-07-10 15:24:37 0 d-------- C:\Program Files\BearShare Applications2008-07-10 15:24:36 0 d-------- C:\Program Files\BearFlix2008-07-10 15:24:27 0 d-------- C:\Program Files\Avalon2008-07-10 15:24:26 0 d-------- C:\Program Files\Auralog2008-07-10 15:24:18 0 d-------- C:\Program Files\Atari2008-07-10 15:18:57 0 d-------- C:\Program Files\Aspyr(2)2008-07-10 15:13:31 0 d-------- C:\Program Files\Asprate2008-07-10 15:12:55 0 d-------- C:\Program Files\ARTEMATICA2008-07-10 15:12:54 0 d-------- C:\Program Files\Arcade Lab2008-07-10 15:12:52 0 d-------- C:\Program Files\Another Day2008-07-10 15:12:52 0 d-------- C:\Program Files\Anno 16022008-07-10 15:12:51 0 d-------- C:\Program Files\Anemone2008-07-10 15:12:38 0 d-------- C:\Program Files\Alternative Software Ltd2008-07-10 15:12:37 0 d-------- C:\Program Files\Alicja w Krainie Czarów2008-07-10 15:12:37 0 d-------- C:\Program Files\Air Strike 3D2008-07-10 15:06:32 0 d-------- C:\Program Files\AidemMedia2008-07-10 15:06:12 0 d-------- C:\Program Files\Ahead2008-07-10 15:05:18 0 d-------- C:\Program Files\Activision Value2008-07-10 15:04:36 0 d-------- C:\Program Files\Activision2008-07-10 15:04:32 0 d-------- C:\Program Files\Ace Ventura2008-07-10 15:04:24 0 d-------- C:\Program Files\Absolutist.com2008-07-10 15:04:23 0 d-------- C:\Program Files\Abashera Revamped demo2008-07-10 15:04:20 0 d-------- C:\Program Files\20.000 Leghe2008-07-10 15:04:19 0 d-------- C:\Program Files\1C & Cenega2008-07-10 15:04:16 0 d-------- C:\Program Files\1C2008-07-10 15:04:08 0 d-------- C:\Program Files\0012008-07-10 15:03:59 49178 --a------ C:\MTAPH.exe <Not Verified; MultiTheftAuto; MTA Protocol Handler>2008-07-10 15:03:59 435231 -----n--- C:\MTAClient.exe2008-07-10 15:01:23 3088925 -----n--- C:\gta-vc.exe2008-07-10 15:01:19 228911 -----n--- C:\GTA Vice ultimate Trainer.exe2008-07-10 13:31:40 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Azureus2008-07-03 10:11:22 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\uTorrent2008-07-02 19:12:24 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Adobe2008-07-02 19:10:08 0 d-------- C:\Program Files\Common Files\Adobe2008-07-02 15:01:45 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\BearShare2008-06-26 20:02:04 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\CyberLink2008-06-26 10:10:44 47104 --a------ C:\WINDOWS\system32\KMVIDC32.DLL2008-05-14 09:48:12 2560 --a------ C:\WINDOWS\system32\bitcometres.dll <Not Verified; BitComet; BitComet BCTP Helper>2008-05-09 16:20:47 58493 --a------ C:\WINDOWS\SFDLL.DLL-- Registry Dump ---------------------------------------------------------------*Note* empty entries & legit default entries are not shown[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"RaidTool"="C:\Program Files\VIA\RAID\raid_tool.exe" [2005-04-26 11:22]"SoundMan"="SOUNDMAN.EXE" [2005-06-20 21:42 C:\WINDOWS\SOUNDMAN.EXE]"VTTimer"="VTTimer.exe" [2005-03-08 03:33 C:\WINDOWS\system32\VTTimer.exe]"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50]"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2003-10-31 19:42]"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-08-11 15:43]"nwiz"="nwiz.exe" [2006-08-11 15:43 C:\WINDOWS\system32\nwiz.exe]"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2006-08-11 15:43]"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25]"ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-04-17 13:41]"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2004-04-13 07:07]"FortKnoxPersonalFirewall"="C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe" [2008-03-31 17:35][HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"nvscv32"="C:\WINDOWS\system32\drivers\nvscv32.exe" [2008-07-23 13:23][HKEY_USERS\.default\software\microsoft\windows\currentversion\run]"Nokia.PCSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]"DisableRegistryTools"=0 (0x0)"HideLegacyLogonScripts"=0 (0x0)"HideLogoffScripts"=0 (0x0)"RunLogonScriptSync"=1 (0x1)"RunStartupScriptSync"=0 (0x0)"HideStartupScripts"=0 (0x0)[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]"HideLegacyLogonScripts"=0 (0x0)"HideLogoffScripts"=0 (0x0)"RunLogonScriptSync"=1 (0x1)"RunStartupScriptSync"=0 (0x0)"HideStartupScripts"=0 (0x0)[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication]C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3c30088b-589c-11dd-b79f-0013d30a9684}]Auto\command- E:\setup.exeAutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL setup.exe-- End of Deckard's System Scanner: finished at 2008-08-08 16:49:07 ------------ Deckard's System Scanner v20071014.68Extra logfile - please post this as an attachment with your post.---------------------------------------------------------------------------------- System Information ----------------------------------------------------------Microsoft Windows XP Home Edition (build 2600) SP 2.0Architecture: X86; Language: PolishCPU 0: Intel? Celeron? CPU 3.06GHzPercentage of Memory in Use: 77%Physical Memory (total/avail): 255.48 MiB / 56.56 MiBPagefile Memory (total/avail): 568.41 MiB / 350.11 MiBVirtual Memory (total/avail): 2047.88 MiB / 1923.8 MiBA: is Removable (No Media)C: is Fixed (NTFS) - 74.52 GiB total, 14.76 GiB free. D: is CDROM (No Media)\\.\PHYSICALDRIVE0 - WDC WD800BB-88JHC0 - 74.53 GiB - 1 partition \PARTITION0 (bootable) - Instalowalny system plików - 74.52 GiB - C:-- Security Center -------------------------------------------------------------AUOptions is scheduled to auto-install.-- Environment Variables -------------------------------------------------------ALLUSERSPROFILE=C:\Documents and Settings\All UsersAPPDATA=C:\Documents and Settings\MONIKA\Dane aplikacjiCLIENTNAME=ConsoleCommonProgramFiles=C:\Program Files\Common FilesCOMPUTERNAME=TWOJA-EEF261E29ComSpec=C:\WINDOWS\system32\cmd.exeFP_NO_HOST_CHECK=NOHOMEDRIVE=C:HOMEPATH=\Documents and Settings\MONIKALOGONSERVER=\\TWOJA-EEF261E29NUMBER_OF_PROCESSORS=1OS=Windows_NTPath=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\wbem;C:\Program Files\PC Connectivity SolutionPATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSHPROCESSOR_ARCHITECTURE=x86PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 1, GenuineIntelPROCESSOR_LEVEL=15PROCESSOR_REVISION=0401ProgramFiles=C:\Program FilesPROMPT=$P$GSESSIONNAME=ConsoleSystemDrive=C:SystemRoot=C:\WINDOWSTEMP=C:\DOCUME~1\MONIKA\USTAWI~1\TempTMP=C:\DOCUME~1\MONIKA\USTAWI~1\TempUSERDOMAIN=TWOJA-EEF261E29USERNAME=MONIKAUSERPROFILE=C:\Documents and Settings\MONIKAwindir=C:\WINDOWS-- User Profiles ---------------------------------------------------------------MONIKA [i](admin)[/i]Grzesiek [i](admin)[/i]Diego [i](admin)[/i]Metal Slug [i](admin)[/i]-- Add/Remove Programs --------------------------------------------------------- --> C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL --> C:\WINDOWS\UNINST.EXE -f"C:\Program Files\Adobe\Photoshop 5.0\DeIsL1.isu" -c"C:\Program Files\Adobe\Photoshop 5.0\Uninst.dll" --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5AAFE9B0-B60B-4B12-B22D-6B15507502E5}\Setup.exe" -l0x9 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{63A317D0-60A6-43FC-848A-9FE4A53B29CE}\setup.exe" -l0x9 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{99CDAF0C-AF5D-422F-B469-33048A949994}\setup.exe" -l0x9 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{99CDAF0C-AF5D-422F-B469-33048A949994}\setup.exe" -l0x9 /remove --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9E54F486-CD4A-44A5-B041-16D4E1E56A53}\setup.exe" -l0x9 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9E54F486-CD4A-44A5-B041-16D4E1E56A53}\setup.exe" -l0x9 /remove --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x9 --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf7-Zip 4.57 --> "C:\Program Files\7-Zip\Uninstall.exe"Ad-Aware SE Personal --> C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOGAdobe Acrobat 5.0 --> C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll"Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exeAdobe Reader 8 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A80000000002}Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.logAktualizacja dla systemu Windows XP (KB894391) --> "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB896727) --> "C:\WINDOWS\$NtUninstallKB896727$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB898461) --> "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB900485) --> "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB900930) --> "C:\WINDOWS\$NtUninstallKB900930$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB908531) --> "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB910437) --> "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB911280) --> "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB916595) --> "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB920872) --> "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB922582) --> "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB927891) --> "C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB929338) --> "C:\WINDOWS\$NtUninstallKB929338$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB930916) --> "C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB931836) --> "C:\WINDOWS\$NtUninstallKB931836$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB933360) --> "C:\WINDOWS\$NtUninstallKB933360$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB936357) --> "C:\WINDOWS\$NtUninstallKB936357$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB938828) --> "C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB942763) --> "C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB942840) --> "C:\WINDOWS\$NtUninstallKB942840$\spuninst\spuninst.exe"Aktualizacja dla systemu Windows XP (KB946627) --> "C:\WINDOWS\$NtUninstallKB946627$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB890046) --> "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB893066) --> "C:\WINDOWS\$NtUninstallKB893066$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB893756) --> "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896358) --> "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896422) --> "C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896423) --> "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896424) --> "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB896428) --> "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB899587) --> "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB899588) --> "C:\WINDOWS\$NtUninstallKB899588$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB899591) --> "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB900725) --> "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB901017) --> "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB901214) --> "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB902400) --> "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB904706) --> "C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB905414) --> "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB905749) --> "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB908519) --> "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB911562) --> "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB911567) --> "C:\WINDOWS\$NtUninstallKB911567$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB911927) --> "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB912812) --> "C:\WINDOWS\$NtUninstallKB912812$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB912919) --> "C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB913446) --> "C:\WINDOWS\$NtUninstallKB913446$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB913580) --> "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB914388) --> "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB914389) --> "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB916281) --> "C:\WINDOWS\$NtUninstallKB916281$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB917159) --> "C:\WINDOWS\$NtUninstallKB917159$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB917344) --> "C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB917422) --> "C:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB917953) --> "C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB918118) --> "C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB918439) --> "C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB918899) --> "C:\WINDOWS\$NtUninstallKB918899$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB919007) --> "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920213) --> "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920214) --> "C:\WINDOWS\$NtUninstallKB920214$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920670) --> "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920683) --> "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB920685) --> "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB921398) --> "C:\WINDOWS\$NtUninstallKB921398$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB921503) --> "C:\WINDOWS\$NtUninstallKB921503$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB921883) --> "C:\WINDOWS\$NtUninstallKB921883$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB922616) --> "C:\WINDOWS\$NtUninstallKB922616$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB922760) --> "C:\WINDOWS\$NtUninstallKB922760$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB922819) --> "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB923191) --> "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB923414) --> "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB923694) --> "C:\WINDOWS\$NtUninstallKB923694$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB923980) --> "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB924191) --> "C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB924270) --> "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB924496) --> "C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB924667) --> "C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB925454) --> "C:\WINDOWS\$NtUninstallKB925454$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB925486) --> "C:\WINDOWS\$NtUninstallKB925486$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB925902) --> "C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB926255) --> "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB926436) --> "C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB927779) --> "C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB927802) --> "C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB928090) --> "C:\WINDOWS\$NtUninstallKB928090$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB928255) --> "C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB928843) --> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB929123) --> "C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB929969) --> "C:\WINDOWS\$NtUninstallKB929969$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB930178) --> "C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB931261) --> "C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB931768) --> "C:\WINDOWS\$NtUninstallKB931768$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB931784) --> "C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB932168) --> "C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB933566) --> "C:\WINDOWS\$NtUninstallKB933566$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB933729) --> "C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB935839) --> "C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB935840) --> "C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB936021) --> "C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB937143) --> "C:\WINDOWS\$NtUninstallKB937143$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB938127) --> "C:\WINDOWS\$NtUninstallKB938127$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB938829) --> "C:\WINDOWS\$NtUninstallKB938829$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB939653) --> "C:\WINDOWS\$NtUninstallKB939653$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB941202) --> "C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB941568) --> "C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB941644) --> "C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB941693) --> "C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB942615) --> "C:\WINDOWS\$NtUninstallKB942615$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB943055) --> "C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB943460) --> "C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB943485) --> "C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB944338) --> "C:\WINDOWS\$NtUninstallKB944338$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB944533) --> "C:\WINDOWS\$NtUninstallKB944533$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB944653) --> "C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB945553) --> "C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB946026) --> "C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB947864) --> "C:\WINDOWS\$NtUninstallKB947864$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB948590) --> "C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB948881) --> "C:\WINDOWS\$NtUninstallKB948881$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB950749) --> "C:\WINDOWS\$NtUninstallKB950749$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB950759) --> "C:\WINDOWS\$NtUninstallKB950759$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB950760) --> "C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB950762) --> "C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB951376-v2) --> "C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB951376) --> "C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB951698) --> "C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla systemu Windows XP (KB951748) --> "C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla Windows XP (KB923689) --> "C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"Aktualizacja zabezpieczeń dla Windows XP (KB941569) --> "C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"ALLPlayer V2.3.L --> "C:\Program Files\MarBit\ALLPlayer\unins000.exe"ALLPlayer V3.X --> "C:\Program Files\MarBit\ALLPlayer\unins001.exe"ALLPlayer V3.X --> "C:\Program Files\MarBit\ALLPlayer\unins002.exe"Anemone --> C:\PROGRA~1\UNWISE.EXE C:\PROGRA~1\INSTALL.LOGArchiwizator WinRAR --> C:\Program Files\WinRAR\uninstall.exe?Torrent --> "C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALLBearShare --> C:\Program Files\BearShare Applications\BearShare\UninstallSurvey.exe C:\PROGRA~1\BEARSH~1\BEARSH~1\UNWISE.EXE /U C:\PROGRA~1\BEARSH~1\BEARSH~1\INSTALL.LOGBitComet 1.00 --> C:\Program Files\BitComet\uninst.exeCheating-Death 4.33.4 --> C:\Program Files\Cheating-Death\UninstCD.exeChromium BSU --> C:\Program Files\Chromium BSU\Uninstal.exeCounter-Strike 1.6 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}\Setup.exe" -l0x19 Creative MuVo V200 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{903EC56F-EA7E-4309-B0E6-9F1AE22FCC08}\SETUP.EXE" -l0x9 /removeCreative System Information --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{63A317D0-60A6-43FC-848A-9FE4A53B29CE}\setup.exe" -l0x9 /removeDeluxe Ski Jump 3 v1.2 --> "C:\Program Files\Deluxe Ski Jump 3\Uninstall\unins000.exe"Direct Show Ogg Vorbis Filter (remove only) --> "C:\WINDOWS\system32\OggDSuninst.exe"DNA --> "C:\Program Files\DNA\btdna.exe" /UNINSTALLDragon Ninja Saga v2.0 --> c:\windows\program files\Planet Zio\Ninja Saga\Uninstal.exeeMusic - 50 Free MP3 offer --> "C:\Program Files\Winamp\eMusic\Uninst-eMusic-promotion.exe"FortKnox Personal Firewall 2008 --> "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\unins000.exe"Give4Free Plugin --> C:\Program Files\Give4Free Plugin\uninstall.exeGoogle Earth --> MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}Harry Potter II --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7BF68B83-5057-4D4B-0093-28285EEB9EE3}\setup.exe" -l0x15 UninstallHarry Potter TM --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3F50AF3B-8997-4916-0095-99D63DDB785A}\setup.exe" -l0x15 UninstallHeroes of Might and Magic III --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BEC72604-5B27-4C6B-B136-F98EF4C46F5B}\setup.exe" -l0x15 HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstallŚwiątynia Pierwotnego Zła --> "C:\Program Files\InstallShield Installation Information\{25FD9FFA-C3DF-4176-BD33-68FC9F8E7F55}\setup.exe" -runfromtemp -l0x0015 -removeonlyJanitor Dan the Spaceman --> "C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-Janitor Dan the Spaceman.datJava 2 Runtime Environment, SE v1.4.2_05 --> MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142050}Java 6 Update 5 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}Jump&Ride Riding Academy 3D --> "C:\Program Files\Jump and Ride Riding Academy 3D\unins000.exe"K-Lite Codec Pack 3.8.0 Full --> "C:\Program Files\K-Lite Codec Pack\unins000.exe"Kociaki (remove only) --> "C:\Program Files\Ubisoft\Kociaki\uninstall.exe" 1045Król Maciuś Pierwszy. Wesołe Miasteczko --> C:\Program Files\AidemMedia\Król Maciuś Pierwszy. Wesołe Miasteczko\Uninstall.exeLiveReg (Symantec Corporation) --> C:\Program Files\Common Files\Symantec Shared\LiveReg\VcSetup.exe /REMOVELiveUpdate 1.6 (Symantec Corporation) --> C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE /UMój brat niedźwiedź --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B489D5F8-D960-4399-9286-C59BF21991B5}\setup.exe" -l0x15 Mój brat niedźwiedźMaluch Racer --> "C:\Program Files\Maluch Racer\unins000.exe"Martin Mystčre --> "C:\Program Files\ARTEMATICA\MM\unins000.exe"Mashed --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8B82BC98-9CBF-47A3-A850-388CA1611383}\setup.exe" -l0x15 McDonald's Dragons --> C:\Program Files\McDonaldsDragons\uninstall.exeMDK2 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EA3CD554-A1E2-11D3-B4C5-006067326BA5}\setup.exe" -uninst Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}Microsoft Windows Journal Viewer --> MsiExec.exe /X{43DCF766-6838-4F9A-8C91-D92DA586DFA7}Microsoft Windows Media Video 9 VCM --> RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmv9vcm.inf, UninstallMistrz Klawiatury II Demo --> "C:\Program Files\Mistrz Klawiatury II Demo\unins000.exe"Moorhuhn Kart XS (PL) --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{63D08574-EC96-44F1-8973-8BA847C2BB22}\Setup.exe" -l0x9 Mozilla Firefox (2.0.0.16) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exeMuVo Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5AAFE9B0-B60B-4B12-B22D-6B15507502E5}\Setup.exe" -l0x9 /removeMyszka Miki: Naukowe potyczki z duchami --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{916088E7-C035-47E3-8DD6-9434B6A90357}\setup.exe" -l0x15 UninstallNero Suite --> C:\Program Files\Common Files\Nero\Uninstall\Setupx.exe /uninstall ExtraUninstallID=""No Brakes: 4x4 Racing 1.11 --> "C:\Program Files\No Brakes 4x4 Racing\unins000.exe"Nokia Connectivity Cable Driver --> MsiExec.exe /X{972B1D9B-0EAD-49E8-B7D6-3B83FD5665B1}Nokia PC Suite --> C:\Documents and Settings\All Users\Dane aplikacji\Installations\{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}\Nokia_PC_Suite_683_rel_14_1_EA.exe /LANG="1045"Nokia PC Suite --> MsiExec.exe /I{57A48477-92F0-4C1F-ADF9-4806C4EC3CF2}NVIDIA Drivers --> C:\WINDOWS\system32\nvudisp.exe UninstallGUIOdinstaluj aplikację Wizaż 2 --> "C:\Program Files\Wizaz 2\unins000.exe"Open Kart PL --> C:\PROGRA~1\OPENKA~1\UNWISE.EXE C:\PROGRA~1\OPENKA~1\INSTALL.LOGOpowiesci z Narnii --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{ACE86D58-5876-4CA5-95F4-D8A6802D5055} Over the Hedge Demo --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{835DE40D-C224-447A-9D65-B015514B3440} P2P Networking --> C:\WINDOWS\system32\P2P Networking\P2P Networking.exe /UNINSTALLPacDoom v3.0 --> "C:\Program Files\Absolutist.com\PacDoom3\unins000.exe"PacQuest 3D --> C:\WINDOWS\unvise32.exe C:\Program Files\TerraGame\PacQuest 3D\uninstal.logPaintball Shooter --> C:\WINDOWS\IsUninst.exe -f"C:\Program Files\Play.com.pl\Paintball Shooter\Uninst.isu"Pakiet sterowników systemu Windows - Nokia Modem (11/03/2006 6.82.0.1) --> C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_4EFFAAE27A08EDFDE145390033D8EF099DA65567\nokbtmdm.infPC Connectivity Solution --> MsiExec.exe /I{066D65EA-ED53-44E4-A96A-F81B6E409D2E}Pekka Kana 2 --> C:\Documents and Settings\MONIKA\Pulpit\Uninstal.exePinocchio the Game --> C:\Program Files\Pinocchio the Game\Setup.exePoprawka systemu Windows XP - KB834707 --> C:\WINDOWS\$NtUninstallKB834707$\spuninst\spuninst.exePoprawka systemu Windows XP - KB873333 --> C:\WINDOWS\$NtUninstallKB873333$\spuninst\spuninst.exePoprawka systemu Windows XP - KB873339 --> C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exePoprawka systemu Windows XP - KB885250 --> C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exePoprawka systemu Windows XP - KB885835 --> C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exePoprawka systemu Windows XP - KB885836 --> C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exePoprawka systemu Windows XP - KB886185 --> C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exePoprawka systemu Windows XP - KB887472 --> C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exePoprawka systemu Windows XP - KB887742 --> C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exePoprawka systemu Windows XP - KB887797 --> C:\WINDOWS\$NtUninstallKB887797$\spuninst\spuninst.exePoprawka systemu Windows XP - KB888113 --> C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exePoprawka systemu Windows XP - KB888302 --> C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exePoprawka systemu Windows XP - KB890859 --> "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"Poprawka systemu Windows XP - KB891781 --> C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exePoprawka systemu Windows XP - KB893086 --> "C:\WINDOWS\$NtUninstallKB893086$\spuninst\spuninst.exe"PowerDVD --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstallProfesor Szalony --> "C:\Program Files\Avalon\Profesor Szalony\Odinstaluj.exe"Prosiaczek i Przyjaciele --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1D6FB37A-CBCA-11D6-8940-0002A5E32BEF}\setup.exe" Prosiaczek i PrzyjacielePsiaki (remove only) --> "C:\Program Files\Ubisoft\Psiaki\uninstall.exe" 1045Pszczółka Maja - Urodzinowa niespodzianka --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{79FAE1B5-634C-4AFC-A994-13AB94A69FCB}\setup.exe" Race Cars --> "C:\Program Files\Race Cars\unins000.exe"Rage of Mages --> C:\WINDOWS\aluinst1.exeRayman Raving Rabbids --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{111E336D-30BF-4CD4-8D69-4541732AFB27}\setup.exe" -l0x15 -removeonlyRayman3 --> MsiExec.exe /X{BAF5914B-5730-4373-B038-9F436AC6A0D6}Realtek AC'97 Audio --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" -l0x15 -removeonlyRed Clash --> C:\PROGRA~1\REDCLA~1\UNWISE.EXE C:\PROGRA~1\REDCLA~1\INSTALL.LOGRed Shark II --> "C:\Program Files\Red Shark II\unins000.exe"Reksio i Wehikuł Czasu --> C:\Program Files\AidemMedia\Reksio i Wehikuł Czasu\Uninstall.exeRobin Hood --> "C:\WINDOWS\lsb_un20.exe" /C=UC /N=Robin HoodRocks'n'Diamonds 3.2.3 --> "C:\Program Files\Rocks'n'Diamonds\unins000.exe"Rozszerzenie HighMAT do Kreatora zapisywania dysku CD w systemie Microsoft Windows XP --> MsiExec.exe /X{FCE65C4E-B0E8-4FBD-AD16-EDCBE6CD591F}Sammy Suricate --> C:\PROGRA~1\SAMMYS~1\UNWISE.EXE C:\PROGRA~1\SAMMYS~1\INSTALL.LOGSanta Claus in Trouble --> C:\PROGRA~1\SANTAC~1\UNINST~1\UNWISE.EXE C:\PROGRA~1\SANTAC~1\UNINST~1\INSTALL.LOGSchool Tycoon Demo --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{066EDEF5-8B9D-46FB-83CB-AA040A98801E}\Setup.exe" Scooby-Doo 2 - Potwory na gigancie --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB80AB5C-9CBA-4906-A2BA-DA3C469A3B92}\setup.exe" -l0x15 -uninst Scooby Doo i Strachy na Lachy --> C:\PROGRA~1\SCOOBY~1\UNWISE.EXE C:\PROGRA~1\SCOOBY~1\INSTALL.LOGSecret Maryo Chronicles --> "C:\Program Files\Secret Maryo Chronicles\uninstall.exe"Serious Sam Pierwsze Starcie --> C:\PROGRA~1\SERIOU~1\UNWISE.EXE C:\PROGRA~1\SERIOU~1\INSTALL.LOGShark Tale --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\10\INTEL3~1\IDriver.exe /M{C5D63256-4148-4317-B64D-A51D233CA945} /l1043 Shockwave --> C:\WINDOWS\system32\Macromed\SHOCKW~2\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~2\Install.logShopping Centre Tycoon --> C:\Program Files\Shopping Centre Tycoon\uninst.exeSideswipe --> C:\Uninstal.exeSimon Extreme 1.0 --> "C:\Program Files\Games\Simon Extreme\uninstall.exe"Sims2Packer --> C:\Program Files\Sims2Packer\Uninstal.exeSki Racing 2006 Demo --> MsiExec.exe /I{B01CB0F0-63C0-431D-9497-87B9B4131E9D}Snoopy na tropie --> MsiExec.exe /I{B28F6FC3-E092-11D6-9AFC-00045A969C6A}SPIDI LICZY --> "C:\WINDOWS\lsb_un20.exe" /C=UC /N=SPIDI LICZYStronghold Crusader --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{8C3727F2-8E37-49E4-820C-03B1677F53B6}\setup.exe" Studio 8 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{53EF6570-21A4-47ED-A40A-E6470A5677A3}\Setup.exe" -l0x9 UNINSTALL-L0x9 -cSwarm --> "C:\Games\Swarm\Swarm.exe" /REMOVESzkoła Koziołka Matołka --> C:\Program Files\AidemMedia\Demo\SzkołaKoziołka\Uninstall.exeTarzan --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68F423B1-B08A-4EFC-8414-408455443322}\setup.exe" TarzanTAXI MADNESS LONDON --> C:\Program Files\TAXI MADNESS LONDON\uninstall.exeThe Dead City --> "C:\Program Files\Dead City\unins000.exe"THE HOUSE OF THE DEAD 2 --> MsiExec.exe /X{2C8B0579-46E6-4088-8E57-44833265798F}The Playa --> "C:\Program Files\The Playa\uninstall.exe"The Sims House Party --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7D268154-7A31-40F2-9779-7A250914BB39}\setup.exe" -l0009The Westerner --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{243165C5-949A-404D-AE94-A0A2C9CFD44C} Tibia MULTI-ip changer --> C:\Program Files\Asprate\Tibia Multi IP Changer\UNinstaller.exeTibia Testserver --> "C:\Program Files\TibiaTestserver\unins000.exe"TibiaBot NG 4.7.1 --> "C:\Program Files\TibiaBot NG\unins000.exe"Tony Hawks Pro Skater 4 --> MsiExec.exe /X{E0F07676-2C60-4465-A727-20DE3BFCABAC}Tygrysek i Uczta Kubusia --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68F423B1-B08A-4EFC-8414-408485473BB3}\setup.exe" Tygrysek i Uczta KubusiaUndercover(v1.1) --> "C:\Program Files\Undercover\unins000.exe"Unreal --> MsiExec.exe /I{8FDBE1E8-2922-4750-9E4B-6B28CA67DBBB}Unreal Tournament 2004 Demo --> C:\UT2004Demo\System\Setup.exe uninstall "UT2004-Demo"VIA Platform Device Manager --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169} VIA/S3G Display Driver --> C:\PROGRA~1\VIA\UChromeP\s3minset.exe /u C:\PROGRA~1\VIA\UChromeP\UChromeP.unsVuze --> C:\Program Files\Azureus\uninstall.exeWinamp --> "C:\Program Files\Winamp\UninstWA.exe"Winamp Remote --> "C:\Program Files\Winamp Remote\uninstall.exe"Windows Driver Package - Nokia (WUDFRd) WPD (03/19/2007 6.83.31.1) --> C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccswpddri_039E7E24575DBAE6A389611AF28F4EB97729D33E\pccswpddriver.infWindows Driver Package - Nokia Modem (02/15/2007 3.1) --> C:\PROGRA~1\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccs_bluet_8B37DC72918CCD58A6EC20373AF6242B037A293B\pccs_bluetooth.infWindows Media Connect --> msiexec.exe /I {F6869CD2-3DB4-476D-A4C7-B3AE7C3ACF7B}Windows Media Connect --> MsiExec.exe /I{F6869CD2-3DB4-476D-A4C7-B3AE7C3ACF7B}WinZip 11.1 --> MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}Worms 2 --> C:\PROGRA~1\Worms\UNWISE.EXE C:\PROGRA~1\Worms\INSTALL.LOGWorms2 --> C:\WINDOWS\IsUn0415.exe -fC:\Team17\Worms2\Uninst.isuZoo Empire --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5D86B852-8BFB-4ED6-A460-E01E29B955D1}\setup.exe" -l0x15 -uninst -- Application Event Log -------------------------------------------------------Event Record #/Type1501 / ErrorEvent Submitted/Written: 08/08/2008 04:09:23 PMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]Event Record #/Type1497 / ErrorEvent Submitted/Written: 08/08/2008 01:57:43 PMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]Event Record #/Type1494 / ErrorEvent Submitted/Written: 08/08/2008 10:09:30 AMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]Event Record #/Type1493 / ErrorEvent Submitted/Written: 08/08/2008 09:46:31 AMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]Event Record #/Type1492 / ErrorEvent Submitted/Written: 08/08/2008 09:37:14 AMEvent ID/Source: 1000 / Application ErrorEvent Description:Aplikacja powodująca błąd svchost.exe, wersja 5.1.0.0, moduł powodujący błąd svchost.exe, wersja 5.1.0.0, adres błędu 0x000013db.Przetwarzanie zdarzenia określonego nośnika dla [svchost.exe!ws!]-- Security Event Log ----------------------------------------------------------No Errors/Warnings found.-- System Event Log ------------------------------------------------------------Event Record #/Type2898 / WarningEvent Submitted/Written: 08/08/2008 04:26:19 PMEvent ID/Source: 4226 / TcpipEvent Description:Protokół TCP/IP osiągnął limit zabezpieczeń ustalony dla liczby równoczesnych prób połączeń TCP.Event Record #/Type2897 / ErrorEvent Submitted/Written: 08/08/2008 04:10:24 PMEvent ID/Source: 7034 / Service Control ManagerEvent Description:Usługa Power Manager niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.Event Record #/Type2876 / WarningEvent Submitted/Written: 08/08/2008 04:10:11 PMEvent ID/Source: 4226 / TcpipEvent Description:Protokół TCP/IP osiągnął limit zabezpieczeń ustalony dla liczby równoczesnych prób połączeń TCP.Event Record #/Type2873 / WarningEvent Submitted/Written: 08/08/2008 02:48:42 PMEvent ID/Source: 4226 / TcpipEvent Description:Protokół TCP/IP osiągnął limit zabezpieczeń ustalony dla liczby równoczesnych prób połączeń TCP.Event Record #/Type2872 / WarningEvent Submitted/Written: 08/08/2008 01:59:05 PMEvent ID/Source: 4226 / TcpipEvent Description:Protokół TCP/IP osiągnął limit zabezpieczeń ustalony dla liczby równoczesnych prób połączeń TCP.-- End of Deckard's System Scanner: finished at 2008-08-08 16:49:07 ------------ //logi wstawiamy w tagi code a nie quote //vocativus
Mateusz J. komentarz 8 sierpnia 2008 komentarz 8 sierpnia 2008 1.Start => Uruchom => regedit Usuń pogrubiony klucz: HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2 oraz klucz: [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] nvscv32 Nie usuwaj czasem całego Run, usuń samą wartość nvscv32 2. 2008-07-22 13:58:33 68096 --a------ C:\WINDOWS\zip.exe2008-07-22 13:58:33 49152 --a------ C:\WINDOWS\VFind.exe2008-07-22 13:58:33 212480 --a------ C:\WINDOWS\swxcacls.exe <Not Verified; SteelWerX; SteelWerX Extended Configurator ACLists>2008-07-22 13:58:33 136704 --a------ C:\WINDOWS\swsc.exe <Not Verified; SteelWerX; SteelWerX Service Controller>2008-07-22 13:58:33 161792 --a------ C:\WINDOWS\swreg.exe <Not Verified; SteelWerX; SteelWerX Registry Editor>2008-07-22 13:58:33 98816 --a------ C:\WINDOWS\sed.exe2008-07-22 13:58:33 80412 --a------ C:\WINDOWS\grep.exe2008-07-22 13:58:33 89504 --a------ C:\WINDOWS\fdsv.exe <Not Verified; Smallfrogs Studio; > Pozostałości po ComboFix, wywal je ręcznie z dysku. 3. C:\RECYCLER(3) C:\WINDOWS\system32\drivers\nvscv32.exe Folder i plik usuń ręcznie z dysku. W razie problemów z usunięciem proszę użyć programu Unlocker. 4.Po wszystkim nowy log z DDS + log z Silent Runners.
WoJT@s komentarz 8 sierpnia 2008 Autor komentarz 8 sierpnia 2008 Nie mogę usunąć tych kluczy ponieważ jest podobnie jak z menedżerem zadań. Otwiera się i znika. Mogę zrobić tylko pkt. 2-3-4 wymienione przez Ciebie.
Mateusz J. komentarz 8 sierpnia 2008 komentarz 8 sierpnia 2008 Użyj programu FlashDisinfector. Następnie wykonaj 2,3,4 punkt.
WoJT@s komentarz 8 sierpnia 2008 Autor komentarz 8 sierpnia 2008 Upierdliwy nvscv32.exe za nic w świecie nie chce się usunąć, nawet przy pomocy Unlocker'a. 3.C:\RECYCLER(3) Nie mam takiego czegoś. Log z DDS ale tym razem był tylko jeden: Deckard's System Scanner v20071014.68Run by MONIKA on 2008-08-08 18:15:34 Computer is in Normal Mode. -------------------------------------------------------------------------------- Percentage of Memory in Use: 90% (more than 75%). Total Physical Memory: 256 MiB (512 MiB recommended). -- HijackThis Clone ------------------------------------------------------------ Emulating logfile of Trend Micro HijackThis v2.0.2 Scan saved at 2008-08-08 18:15:39 Platform: Windows XP Dodatek Service Pack 2 (5.01.2600) MSIE: Internet Explorer (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\system32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\UAService7.exe C:\Program Files\VIA\RAID\raid_tool.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\system32\VTTimer.exe C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\WINDOWS\system32\drivers\nvscv32.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\Grzesiek\Moje dokumenty\Gadu-Gadu\gg.exe C:\WINDOWS\explorer.exe C:\Program Files\Unlocker\UnlockerAssistant.exe C:\Documents and Settings\MONIKA\Pulpit\dss.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.com/search?q=%s R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = iexplore R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [VTTimer] VTTimer.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [FortKnoxPersonalFirewall] "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe" O4 - HKLM\..\Run: [unlockerAssistant] "C:\Program Files\Unlocker\UnlockerAssistant.exe" O4 - HKCU\..\Run: [nvscv32] C:\WINDOWS\system32\drivers\nvscv32.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user') O4 - Startup: No-IP DUC.lnk = C:\Program Files\WebServ\no-ip\No-IP DUC20.exe O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O23 - Service: FortKnox Personal Firewall (fortknox) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Power Manager (PowerManager) - Unknown owner - C:\WINDOWS\svchost.exe O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe O23 - Service: Windows Media Connect (WMC) (WmcCds) - Unknown owner - C:\Program Files\Windows Media Connect\mswmccds.exe O24 - Desktop Component 0: - http://www.humor-z.webpark.pl/pic_files/tapety/247003.jpg -- End of file - 6499 bytes -- Files created between 2008-07-08 and 2008-08-08 ----------------------------- 2008-08-08 17:51:14 0 drahs---- C:\autorun.inf 2008-08-08 13:48:12 0 d-------- C:\Program Files\Altnet 2008-08-08 13:32:43 0 d-------- C:\WINDOWS\system32\dt 2008-08-07 17:35:48 0 d-------- C:\ComboFix(2) 2008-08-05 11:14:18 0 d-------- C:\6fd08c7f11d096932b2520bf8ae2f732 2008-08-05 11:14:13 0 d-------- C:\WINDOWS\network diagnostic 2008-08-05 11:10:23 0 d-------- C:\5772b73c5eb2155d3395b4d780eb2914 2008-08-05 10:56:54 0 d-------- C:\Program Files\Alwil Software 2008-08-04 11:55:27 0 d-------- C:\Lit 2008-08-04 11:52:11 0 d-------- C:\Program Files\JLC's Software 2008-08-04 11:50:49 0 d-------- C:\Program Files\Ashampoo 2008-07-31 13:26:45 0 d-------- C:\Program Files\Słownik Kontekstowy 2008-07-30 11:26:03 0 d-------- C:\Program Files\Give4Free Plugin 2008-07-30 11:25:58 0 d--hs---- C:\RECYCLER(3) 2008-07-30 11:15:14 0 d-------- C:\Program Files\Tibia(3) 2008-07-25 12:58:55 0 d-------- C:\Program Files\Tibia(2) 2008-07-23 14:46:48 0 d-------- C:\Program Files\NETGATE 2008-07-23 13:23:33 68586 --a------ C:\WINDOWS\system32\drivers\nvscv32.exe 2008-07-22 17:54:16 0 d-------- C:\WINDOWS\pss 2008-07-22 12:41:52 0 d-------- C:\Program Files\Trend Micro -- Find3M Report --------------------------------------------------------------- 2008-08-08 18:07:26 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Desktopicon 2008-08-08 14:42:56 0 d-------- C:\Program Files\Kurka Wodna 2 2008-08-08 14:38:14 0 d-------- C:\Program Files\Football Club 2008-08-08 14:34:16 0 d-------- C:\Program Files\eMule 2008-08-08 14:05:54 8 -r-hs---- C:\Program Files\Desktop_.ini 2008-08-06 12:23:04 0 d-------- C:\Program Files\K-Lite Codec Pack 2008-08-06 10:48:46 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Ashampoo 2008-08-05 12:07:15 0 d-------- C:\Program Files\McDonaldsDragons 2008-08-05 12:07:01 0 d-------- C:\Program Files\Ubisoft 2008-08-05 12:06:51 0 d-------- C:\Program Files\Valve 2008-08-05 12:03:17 0 d-------- C:\Program Files\Windows Media Connect 2008-08-01 10:10:24 0 d--h----- C:\Program Files\InstallShield Installation Information 2008-07-31 19:11:27 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Disney Interactive Studios 2008-07-31 18:39:41 0 d-------- C:\Program Files\THQ 2008-07-31 18:38:55 0 d-------- C:\Program Files\BackToGaya 2008-07-31 18:38:46 0 d-------- C:\Program Files\Dead City 2008-07-31 18:38:44 0 d-------- C:\Program Files\Deluxe Ski Jump 3 2008-07-31 18:38:30 0 d-------- C:\Program Files\Gadu-Gadu 2008-07-31 18:38:30 0 d-------- C:\Program Files\EOM 2008-07-31 18:38:28 0 d-------- C:\Program Files\ICE-land 2008-07-31 18:38:26 0 d-------- C:\Program Files\ICE-Land2 Demo 2008-07-31 18:38:08 0 d-------- C:\Program Files\Kart 2008-07-31 18:37:59 0 d-------- C:\Program Files\Little Fighter 2.5 - v2.0 2008-07-31 18:37:56 0 d-------- C:\Program Files\Maja2 2008-07-31 18:37:55 0 d-------- C:\Program Files\Maluch Racer 2008-07-31 18:37:43 0 d-------- C:\Program Files\Mistrz Klawiatury II Demo 2008-07-31 18:37:42 0 d-------- C:\Program Files\Modi i Nanna 2008-07-31 18:37:41 0 d-------- C:\Program Files\No Brakes 4x4 Racing 2008-07-31 18:37:41 0 d-------- C:\Program Files\Mustang z Zielonej Doliny 2008-07-31 18:37:38 0 d-------- C:\Program Files\Red Clash 2008-07-31 18:37:38 0 d-------- C:\Program Files\Notrium 2008-07-31 18:37:37 0 d-------- C:\Program Files\Pazur Demo 2008-07-31 18:37:37 0 d-------- C:\Program Files\Open Kart PL 2008-07-31 18:37:34 0 d-------- C:\Program Files\Pekka Kana 2 2008-07-31 18:37:08 0 d-------- C:\Program Files\PocoMan 2008-07-31 18:37:04 0 d-------- C:\Program Files\Red Shark II 2008-07-31 18:37:04 0 d-------- C:\Program Files\Realtek AC97 2008-07-31 18:37:03 0 d-------- C:\Program Files\Sammy Suricate 2008-07-31 18:37:03 0 d-------- C:\Program Files\Różowa Pantera 2008-07-31 18:37:03 0 d-------- C:\Program Files\Roll 'm Up 2008-07-31 18:37:03 0 d-------- C:\Program Files\Rocks'n'Diamonds 2008-07-31 18:37:02 0 d-------- C:\Program Files\Secret Maryo Chronicles 2008-07-31 18:37:02 0 d-------- C:\Program Files\Scooby-Doo i Miasto Duchów 2008-07-31 18:37:02 0 d-------- C:\Program Files\Scooby Doo 2008-07-31 18:37:01 0 d-------- C:\Program Files\Serious Sam Pierwsze Starcie 2008-07-31 18:37:00 0 d-------- C:\Program Files\Sims2Packer 2008-07-31 18:37:00 0 d-------- C:\Program Files\Shopping Centre Tycoon 2008-07-31 18:36:59 0 d-------- C:\Program Files\TeddyBears 2008-07-31 18:36:59 0 d-------- C:\Program Files\SparxDEMO 2008-07-31 18:36:59 0 d-------- C:\Program Files\Smash up Derby 2008-07-31 18:36:58 0 d-------- C:\Program Files\The Playa 2008-07-31 18:36:57 0 d-------- C:\Program Files\TibiaTestserver 2008-07-31 18:36:57 0 d-------- C:\Program Files\TibiaBOT NG4 2008-07-31 18:36:38 0 d-------- C:\Program Files\wastesedge 2008-07-31 18:36:38 0 d-------- C:\Program Files\Video Strip Poker 2008-07-31 18:36:37 0 d-------- C:\Program Files\Winamp 2008-07-31 18:36:34 0 d-------- C:\Program Files\Windows Journal Viewer 2008-07-31 18:36:28 0 d-------- C:\Program Files\Worms 2008-07-31 18:34:32 0 d-------- C:\Program Files\Winamp Remote 2008-07-31 18:34:03 0 d-------- C:\Program Files\DNA 2008-07-31 18:33:42 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Tibia 2008-07-31 18:33:36 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Tibia(3) 2008-07-31 18:33:26 0 d-------- C:\Program Files\CyberLink 2008-07-31 18:33:25 0 d-------- C:\Program Files\Common Files 2008-07-31 18:32:20 0 d-------- C:\Program Files\Cheating-Death 2008-07-31 18:32:16 0 d-------- C:\Program Files\BitComet 2008-07-31 18:32:16 0 d-------- C:\Program Files\Azureus 2008-07-31 18:32:06 0 d-------- C:\Program Files\Robin Hood 2008-07-31 18:31:43 0 d-------- C:\Program Files\SPIDI LICZY 2008-07-31 18:31:39 0 d-------- C:\Program Files\Santa Claus in Trouble 2008-07-31 18:31:38 0 d-------- C:\Program Files\Race Cars 2008-07-31 18:31:36 0 d-------- C:\Program Files\Pinocchio the Game 2008-07-31 18:31:25 0 d-------- C:\Program Files\Chromium BSU 2008-07-31 18:30:51 0 d-------- C:\Program Files\Undercover 2008-07-31 18:30:41 0 d-------- C:\Program Files\uTorrent 2008-07-31 18:30:40 0 d-------- C:\Program Files\AIDA32 2008-07-31 18:29:59 0 d-------- C:\Program Files\7-Zip 2008-07-31 18:24:45 0 d-------- C:\Program Files\Sprill Wodne Przygody 2008-07-31 18:24:41 0 d-------- C:\Program Files\Wizaz 2 2008-07-31 18:24:34 0 d-------- C:\Program Files\TibiaBot NG 2008-07-31 18:24:28 0 d-------- C:\Program Files\Messenger 2008-07-31 18:23:53 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Mozilla 2008-07-31 18:05:47 0 d-------- C:\Program Files\BitTorrent 2008-07-29 11:51:30 0 d-------- C:\Program Files\GameSpy Arcade 2008-07-29 11:50:12 0 d-------- C:\Program Files\Flash Strike 2008-07-29 11:36:35 0 d-------- C:\Program Files\AquaPark_at 2008-07-23 13:25:33 577572 --a------ C:\dxsetup.exe 2008-07-21 14:20:01 0 d-------- C:\Program Files\Disney Interactive 2008-07-10 16:08:23 1847326 -----n--- C:\RaymanM.exe 2008-07-10 16:08:21 0 d-------- C:\Program Files\Yeti Studios 2008-07-10 16:07:27 0 d-------- C:\Program Files\WSiP 2008-07-10 16:05:57 0 d-------- C:\Program Files\Woody Woodpecker 2008-07-10 16:05:41 0 d-------- C:\Program Files\WnP 2008-07-10 16:05:41 0 d-------- C:\Program Files\WMV9_VCM 2008-07-10 16:05:38 0 d-------- C:\Program Files\Wizards of the Coast 2008-07-10 16:05:27 0 d-------- C:\Program Files\Winfor 2008-07-10 16:04:29 0 d-------- C:\Program Files\Wiering Software 2008-07-10 16:03:59 0 d-------- C:\Program Files\WebServ 2008-07-10 16:03:36 0 d-------- C:\Program Files\WarlockStudio 2008-07-10 16:03:33 0 d-------- C:\Program Files\VIA 2008-07-10 15:59:25 0 d-------- C:\Program Files\Usługi online 2008-07-10 15:59:25 153116 --a------ C:\Program Files\UNWISE.EXE 2008-07-10 15:56:18 0 d-------- C:\Program Files\Ubi Soft 2008-07-10 15:56:17 0 d-------- C:\Program Files\ToonCar 2008-07-10 15:56:16 0 d-------- C:\Program Files\Tomb Raider II GOLD 2008-07-10 15:56:05 0 d-------- C:\Program Files\The Learning Company 2008-07-10 15:55:53 0 d-------- C:\Program Files\TerraGame 2008-07-10 15:55:42 0 d-------- C:\Program Files\Techland 2008-07-10 15:55:41 0 d-------- C:\Program Files\Taxi Challenge Londyn 2008-07-10 15:55:41 0 d-------- C:\Program Files\TajemniczaWyspa 2008-07-10 15:55:41 0 d-------- C:\Program Files\Tairex Interactive 2008-07-10 15:55:40 0 d-------- C:\Program Files\Szybki Lopez 2008-07-10 15:55:39 0 d-------- C:\Program Files\Symantec 2008-07-10 15:55:39 0 d-------- C:\Program Files\SuperMarioPac 2008-07-10 15:55:38 0 d-------- C:\Program Files\sunmedia 2008-07-10 15:54:51 0 d-------- C:\Program Files\Steam 2008-07-10 15:54:50 0 d-------- C:\Program Files\StarshipTycoonDemo 2008-07-10 15:54:18 0 d-------- C:\Program Files\Soda Pipes 2008-07-10 15:54:17 0 d-------- C:\Program Files\Snowy Lunch Rush 2008-07-10 15:54:13 0 d-------- C:\Program Files\Ski Park Manager 2008-07-10 15:54:12 0 d-------- C:\Program Files\Sierra On-Line 2008-07-10 15:52:41 0 d-------- C:\Program Files\Shavlik Technologies 2008-07-10 15:51:29 0 d-------- C:\Program Files\SEGA 2008-07-10 15:50:18 0 d-------- C:\Program Files\Rockstar Games 2008-07-10 15:49:52 0 d-------- C:\Program Files\Robster Productions 2008-07-10 15:46:20 0 d-------- C:\Program Files\Revistronic 2008-07-10 15:46:20 0 d-------- C:\Program Files\ReflexiveArcade 2008-07-10 15:46:02 0 d-------- C:\Program Files\Realore 2008-07-10 15:46:02 0 d-------- C:\Program Files\RealApex 2008-07-10 15:46:02 0 d-------- C:\Program Files\Real 2008-07-10 15:46:01 0 d-------- C:\Program Files\Rainbow Islands - Candyland (Demo) 2008-07-10 15:45:59 0 d-------- C:\Program Files\QuickTime 2008-07-10 15:45:58 0 d-------- C:\Program Files\Project 3 Interactive 2008-07-10 15:45:36 0 d-------- C:\Program Files\poszukiwania_zozoli 2008-07-10 15:45:34 0 d-------- C:\Program Files\Play.com.pl 2008-07-10 15:45:33 0 d-------- C:\Program Files\Play 2008-07-10 15:45:33 0 d-------- C:\Program Files\Piraci Nowego Świata 2008-07-10 15:45:06 0 d-------- C:\Program Files\Pinnacle 2008-07-10 15:45:06 0 d-------- C:\Program Files\Phelios 2008-07-10 15:44:55 0 d-------- C:\Program Files\PC-The.Sims.2-4CD.Multi15-By.TXT-[tntvillage.org] 2008-07-10 15:44:52 0 d-------- C:\Program Files\Patrician III 2008-07-10 15:44:52 0 d-------- C:\Program Files\Paradox Entertainment 2008-07-10 15:44:51 0 d-------- C:\Program Files\PacBomber 2008-07-10 15:44:49 0 d-------- C:\Program Files\Oak Entertainment 2008-07-10 15:44:34 0 d-------- C:\Program Files\Nikki the Ninja 2008-07-10 15:44:34 0 d-------- C:\Program Files\neoSoftware 2008-07-10 15:44:32 0 d-------- C:\Program Files\Multi_Media 2008-07-10 15:44:32 0 d-------- C:\Program Files\MSN Gaming Zone 2008-07-10 15:44:17 0 d-------- C:\Program Files\Monte Cristo 2008-07-10 15:44:13 0 d-------- C:\Program Files\Mirage Interactive 2008-07-10 15:44:13 0 d-------- C:\Program Files\Mindscape 2008-07-10 15:44:12 0 d-------- C:\Program Files\Microids 2008-07-10 15:44:12 0 d-------- C:\Program Files\Metro 3D 2008-07-10 15:44:12 0 d-------- C:\Program Files\Menara Games 2008-07-10 15:44:11 0 d-------- C:\Program Files\MDK2 2008-07-10 15:39:45 0 d-------- C:\Program Files\Maxis 2008-07-10 15:39:45 0 d-------- C:\Program Files\MarkSoft 2008-07-10 15:39:35 0 d-------- C:\Program Files\MarBit 2008-07-10 15:39:35 0 d-------- C:\Program Files\Maps 2008-07-10 15:39:35 0 d-------- C:\Program Files\Managed DirectX (0901) 2008-07-10 15:39:31 0 d-------- C:\Program Files\Magic Builder 2008-07-10 15:39:30 0 d-------- C:\Program Files\Madagascar 2008-07-10 15:39:30 0 d-------- C:\Program Files\Mad Tracks Demo 2008-07-10 15:39:17 0 d-------- C:\Program Files\LittleFighter2 2008-07-10 15:38:45 0 d-------- C:\Program Files\LEGO Company 2008-07-10 15:38:45 0 d-------- C:\Program Files\Legendo's Trzej Muszkieterowie 2008-07-10 15:38:44 0 d-------- C:\Program Files\Lavasoft 2008-07-10 15:38:44 0 d-------- C:\Program Files\Lalka Klara - Stylistka 2008-07-10 15:38:40 0 d-------- C:\Program Files\Kovloria 2008-07-10 15:38:40 0 d-------- C:\Program Files\Komlogo 2008-07-10 15:38:35 0 d-------- C:\Program Files\Kelvin 2008-07-10 15:38:34 0 d-------- C:\Program Files\Kazaa 2008-07-10 15:38:30 0 d-------- C:\Program Files\Kajko i Kokosz - Szkoła latania 2008-07-10 15:38:23 0 d-------- C:\Program Files\JoWooD 2008-07-10 15:37:50 0 d-------- C:\Program Files\Java 2008-07-10 15:37:49 0 d-------- C:\Program Files\ivo 2008-07-10 15:37:49 0 d-------- C:\Program Files\InterActual 2008-07-10 15:37:49 0 d-------- C:\Program Files\Infogrames 2008-07-10 15:37:12 0 d-------- C:\Program Files\ILLEGAL STREET RACING(2) 2008-07-10 15:37:11 0 d-------- C:\Program Files\IceTec Studios Games 2008-07-10 15:37:06 0 d-------- C:\Program Files\Hugo - Gorączka Czarnych Diamentów 2008-07-10 15:37:06 0 d-------- C:\Program Files\HighMAT CD Writing Wizard 2008-07-10 15:37:06 0 d-------- C:\Program Files\Help 2008-07-10 15:37:01 0 d-------- C:\Program Files\Groovy Lime 2008-07-10 15:37:01 0 d-------- C:\Program Files\Gorky 02 2008-07-10 15:36:15 0 d-------- C:\Program Files\Google 2008-07-10 15:36:14 0 d-------- C:\Program Files\Gift 2008-07-10 15:36:11 0 d-------- C:\Program Files\Games 2008-07-10 15:35:57 0 d-------- C:\Program Files\Funny Racer DEMO 2008-07-10 15:35:57 0 d-------- C:\Program Files\Freaky Tuner 2008-07-10 15:35:56 0 d-------- C:\Program Files\FOX Jones 2008-07-10 15:35:29 0 d-------- C:\Program Files\Fish Tales Trial 2008-07-10 15:34:14 0 d-------- C:\Program Files\Firefly Studios 2008-07-10 15:34:13 0 d-------- C:\Program Files\Feedback 2008-07-10 15:32:31 0 d-------- C:\Program Files\Enlight 2008-07-10 15:31:58 0 d-------- C:\Program Files\Empire Interactive 2008-07-10 15:31:57 0 d-------- C:\Program Files\Elektrogames 2008-07-10 15:31:56 0 d-------- C:\Program Files\Edukacja XXI wieku 2008-07-10 15:31:01 0 d-------- C:\Program Files\EA Games 2008-07-10 15:31:00 0 d-------- C:\Program Files\Duke Nukem 2008-07-10 15:30:59 0 d-------- C:\Program Files\Droga do Eldorado 2008-07-10 15:30:59 0 d-------- C:\Program Files\Dragon Jumper 2008-07-10 15:30:59 0 d-------- C:\Program Files\Dracula Twins 2008-07-10 15:30:59 0 d-------- C:\Program Files\Dracula Twins Demo 2008-07-10 15:28:37 0 d-------- C:\Program Files\Disney Interactive Studios 2008-07-10 15:28:10 0 d-------- C:\Program Files\directx 2008-07-10 15:28:09 0 d-------- C:\Program Files\DIFX 2008-07-10 15:27:47 0 d-------- C:\Program Files\Deluxe Ski Jump 2008-07-10 15:27:38 0 d-------- C:\Program Files\Deep Silver 2008-07-10 15:27:29 0 d-------- C:\Program Files\Daydream Software 2008-07-10 15:27:29 0 d-------- C:\Program Files\Dart 'm Up 2008-07-10 15:25:57 0 d-------- C:\Program Files\Creative 2008-07-10 15:25:56 0 d-------- C:\Program Files\Cossacks 2008-07-10 15:25:56 0 d-------- C:\Program Files\Core Design 2008-07-10 15:25:53 0 d-------- C:\Program Files\Compedia 2008-07-10 15:25:53 0 d-------- C:\Program Files\Combat Mission - Beyond Overlord 2008-07-10 15:25:52 0 d-------- C:\Program Files\Codemasters 2008-07-10 15:25:52 0 d-------- C:\Program Files\City Interactive 2008-07-10 15:25:48 0 d-------- C:\Program Files\Charlie II 2008-07-10 15:25:48 0 d-------- C:\Program Files\CeeBot-Teen DEMO 2008-07-10 15:25:12 0 d-------- C:\Program Files\Cat Daddy Games 2008-07-10 15:25:07 0 d-------- C:\Program Files\Calaris 2008-07-10 15:24:57 0 d-------- C:\Program Files\Buena Vista Games 2008-07-10 15:24:57 0 d-------- C:\Program Files\Borland 2008-07-10 15:24:56 0 d-------- C:\Program Files\Bob Buduje Park 2008-07-10 15:24:55 0 d-------- C:\Program Files\Black Isle 2008-07-10 15:24:55 0 d-------- C:\Program Files\BitZip 2008-07-10 15:24:43 0 d-------- C:\Program Files\Billy Blade 2008-07-10 15:24:43 0 d-------- C:\Program Files\Big Scale Racing 2008-07-10 15:24:43 0 d-------- C:\Program Files\Best Friends Free Trial 2008-07-10 15:24:37 0 d-------- C:\Program Files\BearShare Applications 2008-07-10 15:24:36 0 d-------- C:\Program Files\BearFlix 2008-07-10 15:24:27 0 d-------- C:\Program Files\Avalon 2008-07-10 15:24:26 0 d-------- C:\Program Files\Auralog 2008-07-10 15:24:18 0 d-------- C:\Program Files\Atari 2008-07-10 15:18:57 0 d-------- C:\Program Files\Aspyr(2) 2008-07-10 15:13:31 0 d-------- C:\Program Files\Asprate 2008-07-10 15:12:55 0 d-------- C:\Program Files\ARTEMATICA 2008-07-10 15:12:54 0 d-------- C:\Program Files\Arcade Lab 2008-07-10 15:12:52 0 d-------- C:\Program Files\Another Day 2008-07-10 15:12:52 0 d-------- C:\Program Files\Anno 1602 2008-07-10 15:12:51 0 d-------- C:\Program Files\Anemone 2008-07-10 15:12:38 0 d-------- C:\Program Files\Alternative Software Ltd 2008-07-10 15:12:37 0 d-------- C:\Program Files\Alicja w Krainie Czarów 2008-07-10 15:12:37 0 d-------- C:\Program Files\Air Strike 3D 2008-07-10 15:06:32 0 d-------- C:\Program Files\AidemMedia 2008-07-10 15:06:12 0 d-------- C:\Program Files\Ahead 2008-07-10 15:05:18 0 d-------- C:\Program Files\Activision Value 2008-07-10 15:04:36 0 d-------- C:\Program Files\Activision 2008-07-10 15:04:32 0 d-------- C:\Program Files\Ace Ventura 2008-07-10 15:04:24 0 d-------- C:\Program Files\Absolutist.com 2008-07-10 15:04:23 0 d-------- C:\Program Files\Abashera Revamped demo 2008-07-10 15:04:20 0 d-------- C:\Program Files\20.000 Leghe 2008-07-10 15:04:19 0 d-------- C:\Program Files\1C & Cenega 2008-07-10 15:04:16 0 d-------- C:\Program Files\1C 2008-07-10 15:04:08 0 d-------- C:\Program Files\001 2008-07-10 15:03:59 49178 --a------ C:\MTAPH.exe <Not Verified; MultiTheftAuto; MTA Protocol Handler> 2008-07-10 15:03:59 435231 -----n--- C:\MTAClient.exe 2008-07-10 15:01:23 3088925 -----n--- C:\gta-vc.exe 2008-07-10 15:01:19 228911 -----n--- C:\GTA Vice ultimate Trainer.exe 2008-07-10 13:31:40 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Azureus 2008-07-03 10:11:22 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\uTorrent 2008-07-02 19:12:24 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\Adobe 2008-07-02 19:10:08 0 d-------- C:\Program Files\Common Files\Adobe 2008-07-02 15:01:45 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\BearShare 2008-06-26 20:02:04 0 d-------- C:\Documents and Settings\MONIKA\Dane aplikacji\CyberLink 2008-06-26 10:10:44 47104 --a------ C:\WINDOWS\system32\KMVIDC32.DLL 2008-05-14 09:48:12 2560 --a------ C:\WINDOWS\system32\bitcometres.dll <Not Verified; BitComet; BitComet BCTP Helper> 2008-05-09 16:20:47 58493 --a------ C:\WINDOWS\SFDLL.DLL -- Registry Dump --------------------------------------------------------------- *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RaidTool"="C:\Program Files\VIA\RAID\raid_tool.exe" [2005-04-26 11:22] "SoundMan"="SOUNDMAN.EXE" [2005-06-20 21:42 C:\WINDOWS\SOUNDMAN.EXE] "VTTimer"="VTTimer.exe" [2005-03-08 03:33 C:\WINDOWS\system32\VTTimer.exe] "NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50] "RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2003-10-31 19:42] "NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-08-11 15:43] "nwiz"="nwiz.exe" [2006-08-11 15:43 C:\WINDOWS\system32\nwiz.exe] "NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2006-08-11 15:43] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25] "ISUSPM Startup"="C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-04-17 13:41] "ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2004-04-13 07:07] "FortKnoxPersonalFirewall"="C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe" [2008-08-08 16:57] "UnlockerAssistant"="C:\Program Files\Unlocker\UnlockerAssistant.exe" [2008-05-02 06:15] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "nvscv32"="C:\WINDOWS\system32\drivers\nvscv32.exe" [2008-07-23 13:23] [HKEY_USERS\.default\software\microsoft\windows\currentversion\run] "Nokia.PCSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "HideLegacyLogonScripts"=0 (0x0) "HideLogoffScripts"=0 (0x0) "RunLogonScriptSync"=1 (0x1) "RunStartupScriptSync"=0 (0x0) "HideStartupScripts"=0 (0x0) [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "HideLegacyLogonScripts"=0 (0x0) "HideLogoffScripts"=0 (0x0) "RunLogonScriptSync"=1 (0x1) "RunStartupScriptSync"=0 (0x0) "HideStartupScripts"=0 (0x0) [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3c30088b-589c-11dd-b79f-0013d30a9684}] Auto\command- E:\setup.exe AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL setup.exe *Newly Created Service* - UNLOCKERDRIVER5 -- End of Deckard's System Scanner: finished at 2008-08-08 18:16:32 ------------ EDIT Zapomniałem, tu jeszcze log ze Silent Runners'a: "Silent Runners.vbs", revision 58, http://www.silentrunners.org/Operating System: Windows XP SP2 Output limited to non-default values, except where indicated by "{++}" Startup items buried in registry: --------------------------------- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++} "nvscv32" = "C:\WINDOWS\system32\drivers\nvscv32.exe" [null data] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++} "RaidTool" = "C:\Program Files\VIA\RAID\raid_tool.exe" ["VIA Technologies"] "SoundMan" = "SOUNDMAN.EXE" ["Realtek Semiconductor Corp."] "VTTimer" = "VTTimer.exe" ["S3 Graphics, Inc."] "NeroFilterCheck" = "C:\WINDOWS\system32\NeroCheck.exe" ["Ahead Software Gmbh"] "RemoteControl" = ""C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"" ["Cyberlink Corp."] "NvCplDaemon" = "RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup" [MS] "nwiz" = "nwiz.exe /install" ["NVIDIA Corporation"] "NvMediaCenter" = "RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit" [MS] "SunJavaUpdateSched" = ""C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"" ["Sun Microsystems, Inc."] "ISUSPM Startup" = "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup" [null data] "ISUSScheduler" = ""C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start" ["InstallShield Software Corporation"] "FortKnoxPersonalFirewall" = ""C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnoxGUI.exe"" [null data] "UnlockerAssistant" = ""C:\Program Files\Unlocker\UnlockerAssistant.exe"" [null data] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = (no title provided) -> {HKLM...CLSID} = "Adobe PDF Reader Link Helper" \InProcServer32\(Default) = "C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll" ["Adobe Systems Incorporated"] {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}\(Default) = "BitComet ClickCapture" -> {HKLM...CLSID} = "BitComet Helper" \InProcServer32\(Default) = "C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll" ["BitComet"] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\(Default) = (no title provided) -> {HKLM...CLSID} = "SSVHelper Class" \InProcServer32\(Default) = "C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll" ["Sun Microsystems, Inc."] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ "{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Rozszerzenie CPL kadrowania wyświetlania" -> {HKLM...CLSID} = "Rozszerzenie CPL kadrowania wyświetlania" \InProcServer32\(Default) = "deskpan.dll" [file not found] "{88895560-9AA2-1069-930E-00AA0030EBC8}" = "Rozszerzenie ikony HyperTerminalu" -> {HKLM...CLSID} = "HyperTerminal Icon Ext" \InProcServer32\(Default) = "C:\WINDOWS\system32\hticons.dll" ["Hilgraeve, Inc."] "{cc86590a-b60a-48e6-996b-41d25ed39a1e}" = "Portable Media Devices Menu" -> {HKLM...CLSID} = "Portable Media Devices Menu" \InProcServer32\(Default) = "C:\WINDOWS\system32\Audiodev.dll" [MS] "{0E40CBF0-0263-4AD4-A71B-11316667CBB7}" = "MuVo V200 Media Explorer" -> {HKLM...CLSID} = "MuVo V200 Media Explorer" \InProcServer32\(Default) = "C:\Program Files\Creative\Creative MuVo V200\CTMvns.dll" ["Creative Technology Ltd"] "{E0D79304-84BE-11CE-9641-444553540000}" = "WinZip" -> {HKLM...CLSID} = "WinZip" \InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."] "{E0D79305-84BE-11CE-9641-444553540000}" = "WinZip" -> {HKLM...CLSID} = "WinZip" \InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."] "{E0D79306-84BE-11CE-9641-444553540000}" = "WinZip" -> {HKLM...CLSID} = "WinZip" \InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."] "{E0D79307-84BE-11CE-9641-444553540000}" = "WinZip" -> {HKLM...CLSID} = "WinZip" \InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."] "{416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A}" = "Nokia Phone Browser" -> {HKLM...CLSID} = "Nokia Phone Browser" \InProcServer32\(Default) = "C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll" ["Nokia"] "{A70C977A-BF00-412C-90B7-034C51DA2439}" = "NvCpl DesktopContext Class" -> {HKLM...CLSID} = "DesktopContext Class" \InProcServer32\(Default) = "C:\WINDOWS\system32\nvcpl.dll" ["NVIDIA Corporation"] "{FFB699E0-306A-11d3-8BD1-00104B6F7516}" = "Play on my TV helper" -> {HKLM...CLSID} = "NVIDIA CPL Extension" \InProcServer32\(Default) = "C:\WINDOWS\system32\nvcpl.dll" ["NVIDIA Corporation"] "{1CDB2949-8F65-4355-8456-263E7C208A5D}" = "Desktop Explorer" -> {HKLM...CLSID} = "Desktop Explorer" \InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"] "{1E9B04FB-F9E5-4718-997B-B8DA88302A47}" = "Desktop Explorer Menu" -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"] "{1E9B04FB-F9E5-4718-997B-B8DA88302A48}" = "nView Desktop Context Menu" -> {HKLM...CLSID} = "nView Desktop Context Menu" \InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"] "{23170F69-40C1-278A-1000-000100020000}" = "7-Zip Shell Extension" -> {HKLM...CLSID} = "7-Zip Shell Extension" \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"] "{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}" = "UnlockerShellExtension" -> {HKLM...CLSID} = "UnlockerShellExtension" \InProcServer32\(Default) = "C:\Program Files\Unlocker\UnlockerCOM.dll" [null data] "{B41DB860-8EE4-11D2-9906-E49FADC173CA}" = "WinRAR shell extension" -> {HKLM...CLSID} = "WinRAR" \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data] HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\ {F9DB5320-233E-11D1-9F84-707F02C10627}\(Default) = "PDF Column Info" -> {HKLM...CLSID} = "PDF Shell Extension" \InProcServer32\(Default) = "C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll" ["Adobe Systems, Inc."] HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\ 7-Zip\(Default) = "{23170F69-40C1-278A-1000-000100020000}" -> {HKLM...CLSID} = "7-Zip Shell Extension" \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"] WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}" -> {HKLM...CLSID} = "WinRAR" \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data] WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}" -> {HKLM...CLSID} = "WinZip" \InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."] HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\ 7-Zip\(Default) = "{23170F69-40C1-278A-1000-000100020000}" -> {HKLM...CLSID} = "7-Zip Shell Extension" \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"] WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}" -> {HKLM...CLSID} = "WinRAR" \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data] WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}" -> {HKLM...CLSID} = "WinZip" \InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."] HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\ UnlockerShellExtension\(Default) = "{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}" -> {HKLM...CLSID} = "UnlockerShellExtension" \InProcServer32\(Default) = "C:\Program Files\Unlocker\UnlockerCOM.dll" [null data] WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}" -> {HKLM...CLSID} = "WinRAR" \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data] WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}" -> {HKLM...CLSID} = "WinZip" \InProcServer32\(Default) = "C:\Program Files\WinZip\wzshlstb.dll" ["WinZip Computing, S.L."] HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\ UnlockerShellExtension\(Default) = "{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83}" -> {HKLM...CLSID} = "UnlockerShellExtension" \InProcServer32\(Default) = "C:\Program Files\Unlocker\UnlockerCOM.dll" [null data] Default executables: -------------------- <<!>> HKLM\SOFTWARE\Classes\.com\(Default) = "ComFile" Group Policies {policy setting}: -------------------------------- Note: detected settings may not have any effect. HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ "NoDrives" = (REG_DWORD) dword:0x00000000 {unrecognized setting} HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ "NoDrives" = (REG_DWORD) dword:0x00000000 {unrecognized setting} HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\ "HideLegacyLogonScripts" = (REG_DWORD) dword:0x00000000 {unrecognized setting} "HideLogoffScripts" = (REG_DWORD) dword:0x00000000 {unrecognized setting} "RunLogonScriptSync" = (REG_DWORD) dword:0x00000001 {unrecognized setting} "RunStartupScriptSync" = (REG_DWORD) dword:0x00000000 {unrecognized setting} "HideStartupScripts" = (REG_DWORD) dword:0x00000000 {unrecognized setting} HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ "shutdownwithoutlogon" = (REG_DWORD) dword:0x00000001 {Shutdown: Allow system to be shut down without having to log on} "undockwithoutlogon" = (REG_DWORD) dword:0x00000001 {Devices: Allow undock without having to log on} "HideLegacyLogonScripts" = (REG_DWORD) dword:0x00000000 {unrecognized setting} "HideLogoffScripts" = (REG_DWORD) dword:0x00000000 {unrecognized setting} "RunLogonScriptSync" = (REG_DWORD) dword:0x00000001 {unrecognized setting} "RunStartupScriptSync" = (REG_DWORD) dword:0x00000000 {unrecognized setting} "HideStartupScripts" = (REG_DWORD) dword:0x00000000 {unrecognized setting} Active Desktop and Wallpaper: ----------------------------- Active Desktop may be disabled at this entry: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState Displayed if Active Desktop enabled and wallpaper not set by Group Policy: HKCU\Software\Microsoft\Internet Explorer\Desktop\General\ "Wallpaper" = "C:\WINDOWS\system32\config\systemprofile\Pulpit\bez tytułu.bmp" Displayed if Active Desktop disabled and wallpaper not set by Group Policy: HKCU\Control Panel\Desktop\ "Wallpaper" = "C:\Documents and Settings\MONIKA\Pulpit\bez tytułu.bmp" Windows Portable Device AutoPlay Handlers ----------------------------------------- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ BSMediaPlayerOnArrival\ "Provider" = "BearShare" "ProgID" = "BearShare.LauncherEventHandler" HKLM\SOFTWARE\Classes\BearShare.LauncherEventHandler\CLSID\(Default) = "{A7A4A19A-00AC-473c-8225-1B97D1FDD43E}" -> {HKLM...CLSID} = "CLauncherEventHandler Object" \LocalServer32\(Default) = ""C:\PROGRA~1\BEARSH~1\BEARSH~1\Launcher.exe"" ["MusicLab LLC"] BSPlayCDAudioOnArrival\ "Provider" = "BearShare" "InvokeProgID" = "BearShare.AudioCD" "InvokeVerb" = "play" HKLM\SOFTWARE\Classes\BearShare.AudioCD\shell\play\Command\(Default) = "C:\PROGRA~1\BEARSH~1\BEARSH~1\BearShare.exe --playdrive %L" [null data] BSRipCDAudioOnArrival\ "Provider" = "BearShare" "InvokeProgID" = "BearShare.AudioCD" "InvokeVerb" = "rip" HKLM\SOFTWARE\Classes\BearShare.AudioCD\shell\rip\Command\(Default) = "C:\PROGRA~1\BEARSH~1\BEARSH~1\BearShare.exe --ripdrive %L" [null data] BSShowCDAudioOnArrival\ "Provider" = "BearShare" "InvokeProgID" = "BearShare.AudioCD" "InvokeVerb" = "show" HKLM\SOFTWARE\Classes\BearShare.AudioCD\shell\show\Command\(Default) = "C:\PROGRA~1\BEARSH~1\BEARSH~1\BearShare.exe --showdrive %L" [null data] MPCPlayCDAudioOnArrival\ "Provider" = "Media Player Classic" "InvokeProgID" = "MediaPlayerClassic.Autorun" "InvokeVerb" = "PlayCDAudio" HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayCDAudio\command\(Default) = ""C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1 /cd" [null data] MPCPlayDVDMovieOnArrival\ "Provider" = "Media Player Classic" "InvokeProgID" = "MediaPlayerClassic.Autorun" "InvokeVerb" = "PlayDVDMovie" HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayDVDMovie\command\(Default) = ""C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1 /dvd" [null data] MPCPlayMusicFilesOnArrival\ "Provider" = "Media Player Classic" "InvokeProgID" = "MediaPlayerClassic.Autorun" "InvokeVerb" = "PlayMusicFiles" HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayMusicFiles\command\(Default) = ""C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1" [null data] MPCPlayVideoFilesOnArrival\ "Provider" = "Media Player Classic" "InvokeProgID" = "MediaPlayerClassic.Autorun" "InvokeVerb" = "PlayVideoFiles" HKLM\SOFTWARE\Classes\MediaPlayerClassic.Autorun\shell\PlayVideoFiles\command\(Default) = ""C:\Program Files\K-Lite Codec Pack\Media Player Classic\mplayerc.exe" %1" [null data] NeroAutoPlay2CDAudio\ "Provider" = "Nero Express" "InvokeProgID" = "Nero.AutoPlay2" "InvokeVerb" = "HandleCDBurningOnArrival_CDAudio" HKLM\SOFTWARE\Classes\Nero.AutoPlay2\shell\HandleCDBurningOnArrival_CDAudio\command\(Default) = "C:\Program Files\Ahead\nero\nero.exe /w /New:AudioCD /Drive:%L" ["Ahead Software AG"] NeroAutoPlay2CopyCD\ "Provider" = "Nero Express" "InvokeProgID" = "Nero.AutoPlay2" "InvokeVerb" = "PlayCDAudioOnArrival_CopyCD" HKLM\SOFTWARE\Classes\Nero.AutoPlay2\shell\PlayCDAudioOnArrival_CopyCD\command\(Default) = "C:\Program Files\Ahead\nero\nero.exe /w /Dialog:DiscCopy /Drive:%L" ["Ahead Software AG"] NeroAutoPlay2DataDisc\ "Provider" = "Nero Express" "InvokeProgID" = "Nero.AutoPlay2" "InvokeVerb" = "HandleCDBurningOnArrival_DataDisc" HKLM\SOFTWARE\Classes\Nero.AutoPlay2\shell\HandleCDBurningOnArrival_DataDisc\command\(Default) = "C:\Program Files\Ahead\nero\nero.exe /w /New:ISODisc /Drive:%L" ["Ahead Software AG"] NeroAutoPlay2LaunchNeroStartSmart\ "Provider" = "Nero StartSmart" "InvokeProgID" = "Nero.AutoPlay2" "InvokeVerb" = "HandleCDBurningOnArrival_LaunchNeroStartSmart" HKLM\SOFTWARE\Classes\Nero.AutoPlay2\shell\HandleCDBurningOnArrival_LaunchNeroStartSmart\command\(Default) = "C:\Program Files\Ahead\Nero StartSmart\NeroStartSmart.exe /AutoPlay /Drive:%L" ["Ahead Software AG"] NMMPlayCDAudioOnArrival\ "Provider" = "Nokia Music Manager" "InvokeProgID" = "NokiaMusicManager" "InvokeVerb" = "NMMPlayCD" HKLM\SOFTWARE\Classes\NokiaMusicManager\shell\NMMPlayCD\command\(Default) = "C:\Program Files\Nokia\Nokia PC Suite 6\MusicManager.exe /playCD "%L"" ["Nokia"] NMMRipCDAudioOnArrival\ "Provider" = "Nokia Music Manager" "InvokeProgID" = "NokiaMusicManager" "InvokeVerb" = "NMMRipCD" HKLM\SOFTWARE\Classes\NokiaMusicManager\shell\NMMRipCD\command\(Default) = "C:\Program Files\Nokia\Nokia PC Suite 6\MusicManager.exe /ripCD "%L"" ["Nokia"] PDVDPlayDVDMovieOnArrival\ "Provider" = "PowerDVD" "InvokeProgID" = "DVD" "InvokeVerb" = "PlayWithPowerDVD" HKLM\SOFTWARE\Classes\DVD\shell\PlayWithPowerDVD\Command\(Default) = ""C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe" "%L"" [null data] WinampMTPHandler\ "Provider" = "Winamp" "ProgID" = "Shell.HWEventHandlerShellExecute" "InitCmdLine" = "C:\Program Files\Winamp\winamp.exe" HKLM\SOFTWARE\Classes\Shell.HWEventHandlerShellExecute\CLSID\(Default) = "{FFB8655F-81B9-4fce-B89C-9A6BA76D13E7}" -> {HKLM...CLSID} = "ShellExecute HW Event Handler" \LocalServer32\(Default) = "rundll32.exe shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7}" [MS] WinampPlayMediaOnArrival\ "Provider" = "Winamp" "InvokeProgID" = "Winamp.File" "InvokeVerb" = "Play" HKLM\SOFTWARE\Classes\Winamp.File\shell\Play\command\(Default) = ""C:\Program Files\Winamp\winamp.exe" "%1"" [null data] HKLM\SOFTWARE\Classes\Winamp.File\shell\Play\DropTarget\CLSID = "{46986115-84D6-459c-8F95-52DD653E532E}" -> {HKLM...CLSID} = (no title provided) \LocalServer32\(Default) = ""C:\Program Files\Winamp\winamp.exe"" [null data] Startup items in "MONIKA" & "All Users" startup folders: -------------------------------------------------------- C:\Documents and Settings\MONIKA\Menu Start\Programy\Autostart "No-IP DUC" -> shortcut to: "C:\Program Files\WebServ\no-ip\No-IP DUC20.exe" [file not found] C:\Documents and Settings\All Users\Menu Start\Programy\Autostart "Adobe Gamma Loader.exe" -> shortcut to: "C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe" [null data] "Adobe Reader Speed Launch" -> shortcut to: "C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe" ["Adobe Systems Incorporated"] "Adobe Reader Synchronizer" -> shortcut to: "C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe" [file not found] Winsock2 Service Provider DLLs: ------------------------------- Namespace Service Providers HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++} 000000000001\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS] 000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS] 000000000003\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS] Transport Service Providers HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++} 0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range: %SystemRoot%\system32\mswsock.dll [MS], 01 - 03, 06 - 13 %SystemRoot%\system32\rsvpsp.dll [MS], 04 - 05 Toolbars, Explorer Bars, Extensions: ------------------------------------ Extensions (Tools menu items, main toolbar menu buttons) HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\ {08B0E5C0-4FCB-11CF-AAA5-00401C608501}\ "MenuText" = "Sun Java Console" "CLSIDExtension" = "{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}" -> {HKCU...CLSID} = "Java Plug-in 1.6.0_05" \InProcServer32\(Default) = "C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll" ["Sun Microsystems, Inc."] -> {HKLM...CLSID} = "Java Plug-in 1.6.0_05" \InProcServer32\(Default) = "C:\Program Files\Java\jre1.6.0_05\bin\npjpi160_05.dll" ["Sun Microsystems, Inc."] {FB5F1910-F110-11D2-BB9E-00C04F795683}\ "ButtonText" = "Messenger" "MenuText" = "Windows Messenger" "Exec" = "C:\Program Files\Messenger\msmsgs.exe" [MS] Miscellaneous IE Hijack Points ------------------------------ C:\WINDOWS\INF\IERESET.INF (used to "Reset Web Settings") Added lines (compared with English-language version): [strings]: START_PAGE_URL=http://www.vobis.pl/ Missing lines (compared with English-language version): [strings]: 1 line Running Services (Display Name, Service Name, Path {Service DLL}): ------------------------------------------------------------------ FortKnox Personal Firewall, fortknox, "C:\Program Files\NETGATE\FortKnox Personal Firewall 2008\FortKnox.exe" ["NETGATE Technologies s.r.o."] NVIDIA Display Driver Service, NVSvc, "C:\WINDOWS\system32\nvsvc32.exe" ["NVIDIA Corporation"] SecuROM User Access Service (V7), UserAccess7, "C:\WINDOWS\system32\UAService7.exe" ["Sony DADC Austria AG."] Windows User Mode Driver Framework, UMWdf, "C:\WINDOWS\system32\wdfmgr.exe" [MS] ---------- (launch time: 2008-08-08 18:24:03) + This report excludes default entries except where indicated. + To see *everywhere* the script checks and *everything* it finds, launch it from a command prompt or a shortcut with the -all parameter. + To search all directories of local fixed drives for DESKTOP.INI DLL launch points, use the -supp parameter or answer "No" at the first message box and "Yes" at the second message box. ---------- (total run time: 119 seconds, including 16 seconds for message boxes) Mam pomysł, mógłbym robić logi z resetem komputera, potem zapisywać je na pendrive'a czy MP3, cofać system na internet, wklejać na forum, czekać na Twoją odpowiedź, cofnąć ostatnie przywracanie i stosować się do twoich wskazówek. Później znowu zapisuję loga, cofam do internetu i wklejam. Pomysł trochę cienki i czasu dużo zabiorą te wszystkie cofania ale co się nie robi żeby komputer dobrze hulał Proszę o zamknięcie tematu, system został od nowa zainstalowany, nie ma już żadnych problemów
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.