
Wczoraj włączyłem komputer po zaniku napięcia. Włączając komputer wyskoczył komunikat w BIOS-ie "CMOS Settings Wrong", po restarcie kompa BIOS się zresetował. Uruchomiłem komputer pierwsze co oczywiście net - tu niespodzianka mocno 'zamula'. W NetMeter'ze max 4kB/s i jakby było ograniczenie nic więcej, tak jest do teraz


Hijack:
Logfile of HijackThis v1.99.1
Scan saved at 22:07:58, on 2007-04-20
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
M:\WINDOWS\System32\smss.exe
M:\WINDOWS\system32\winlogon.exe
M:\WINDOWS\system32\services.exe
M:\WINDOWS\system32\lsass.exe
M:\WINDOWS\system32\svchost.exe
M:\WINDOWS\System32\svchost.exe
M:\WINDOWS\system32\spoolsv.exe
M:\Program Files\DU Meter\DUMeter.exe
M:\Program Files\DAEMON Tools\daemon.exe
M:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
M:\WINDOWS\system32\ctfmon.exe
M:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
M:\Program Files\Gadu-Gadu\gg.exe
M:\PROGRA~1\MyPortal\Speed-X\SpeedX.exe
M:\Program Files\NetMeter\NetMeter.exe
M:\WINDOWS\system32\nvsvc32.exe
M:\WINDOWS\system32\svchost.exe
M:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
M:\Documents and Settings\Adam\Moje dokumenty\Sharing\sbclv1.0i\SBCL v1.0i.exe
M:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
M:\WINDOWS\system32\taskmgr.exe
M:\Program Files\Mozilla Firefox\firefox.exe
M:\WINDOWS\explorer.exe
M:\WINDOWS\NOTEPAD.EXE
M:\WINDOWS\NOTEPAD.EXE
P:\Inne\INSTALKI\zzz-RESZTA-zzz\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
F2 - REG:system.ini: Shell=explorer.exe
O2 - BHO: (no name) - {034BCF48-D4E7-4335-8F56-CE9AB44F6961} - M:\WINDOWS\system32\opnmkii.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - M:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - M:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - M:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {A16229AC-D0FB-4FA4-B405-6B8E95029014} - M:\WINDOWS\system32\qaysybqm.dll
O2 - BHO: gFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - M:\PROGRA~1\FlashGet\getflash.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - M:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [DU Meter] M:\Program Files\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [DAEMON Tools] "M:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] "M:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE M:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [CTFMON.EXE] M:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Gadu-Gadu] "M:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - HKCU\..\Run: [SpeedX] M:\PROGRA~1\MyPortal\Speed-X\SpeedX.exe
O4 - HKCU\..\Run: [M:\Program Files\NetMeter\NetMeter.exe] M:\Program Files\NetMeter\NetMeter.exe
O4 - Startup: Skrót do SBCL v1.lnk = M:\Documents and Settings\Adam\Moje dokumenty\Sharing\sbclv1.0i\SBCL v1.0i.exe
O4 - Startup: Yahoo! Widget Engine.lnk = M:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = M:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = M:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://M:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ściągnij przy pomocy FlashGet'a - M:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Ściągnij wszystko przy pomocy FlashGet'a - M:\Program Files\FlashGet\jc_all.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - M:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - M:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - M:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - M:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - M:\PROGRA~1\FlashGet\flashget.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://kaspersky.pl/resources/virusscanner/kavwebscan_unicode.cab
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - M:\Program Files\Yahoo!\Common\Yinsthelper.dll
O20 - Winlogon Notify: opnmkii - opnmkii.dll (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - M:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - M:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: kavsvc - Kaspersky Lab - M:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - M:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - M:\Program Files\PC Connectivity Solution\ServiceLayer.exe
ComboScan:
ComboScan v20070306.20 run by Adam on 2007-04-20 at 22:46:02
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- HijackThis (run as Adam.exe) ------------------------------------------------
Logfile of HijackThis v1.99.1
Scan saved at 22:46:03, on 2007-04-20
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
M:\WINDOWS\System32\smss.exe
M:\WINDOWS\system32\winlogon.exe
M:\WINDOWS\system32\services.exe
M:\WINDOWS\system32\lsass.exe
M:\WINDOWS\system32\svchost.exe
M:\WINDOWS\System32\svchost.exe
M:\WINDOWS\system32\spoolsv.exe
M:\Program Files\DU Meter\DUMeter.exe
M:\Program Files\DAEMON Tools\daemon.exe
M:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
M:\WINDOWS\system32\ctfmon.exe
M:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
M:\Program Files\Gadu-Gadu\gg.exe
M:\PROGRA~1\MyPortal\Speed-X\SpeedX.exe
M:\Program Files\NetMeter\NetMeter.exe
M:\WINDOWS\system32\nvsvc32.exe
M:\WINDOWS\system32\svchost.exe
M:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
M:\Documents and Settings\Adam\Moje dokumenty\Sharing\sbclv1.0i\SBCL v1.0i.exe
M:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
M:\WINDOWS\system32\taskmgr.exe
M:\Program Files\Mozilla Firefox\firefox.exe
M:\WINDOWS\explorer.exe
M:\Documents and Settings\Adam\Pulpit\comboscan.exe
P:\Inne\INSTALKI\ZZZ-RE~1\Adam.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
F2 - REG:system.ini: Shell=explorer.exe
O2 - BHO: (no name) - {034BCF48-D4E7-4335-8F56-CE9AB44F6961} - M:\WINDOWS\system32\opnmkii.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - M:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - M:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - M:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {A16229AC-D0FB-4FA4-B405-6B8E95029014} - M:\WINDOWS\system32\qaysybqm.dll
O2 - BHO: gFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - M:\PROGRA~1\FlashGet\getflash.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - M:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [DU Meter] M:\Program Files\DU Meter\DUMeter.exe
O4 - HKLM\..\Run: [DAEMON Tools] "M:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] "M:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE M:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [CTFMON.EXE] M:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Gadu-Gadu] "M:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - HKCU\..\Run: [SpeedX] M:\PROGRA~1\MyPortal\Speed-X\SpeedX.exe
O4 - HKCU\..\Run: [M:\Program Files\NetMeter\NetMeter.exe] M:\Program Files\NetMeter\NetMeter.exe
O4 - Startup: Skrót do SBCL v1.lnk = M:\Documents and Settings\Adam\Moje dokumenty\Sharing\sbclv1.0i\SBCL v1.0i.exe
O4 - Startup: Yahoo! Widget Engine.lnk = M:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = M:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = M:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://M:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ściągnij przy pomocy FlashGet'a - M:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Ściągnij wszystko przy pomocy FlashGet'a - M:\Program Files\FlashGet\jc_all.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - M:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - M:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - M:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - M:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - M:\PROGRA~1\FlashGet\flashget.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://kaspersky.pl/resources/virusscanner/kavwebscan_unicode.cab
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - M:\Program Files\Yahoo!\Common\Yinsthelper.dll
O20 - Winlogon Notify: opnmkii - opnmkii.dll (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - M:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - M:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: kavsvc - Kaspersky Lab - M:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - M:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ServiceLayer - Nokia. - M:\Program Files\PC Connectivity Solution\ServiceLayer.exe
-- Files created between 2007-03-20 and 2007-04-20 -----------------------------
2007-04-20 19:00:07 0 d-------- M:\WINDOWS\CSC
2007-04-20 18:49:37 123972 --a------ M:\WINDOWS\system32\uwgeenym.dll
2007-04-20 15:25:42 125460 --a------ M:\WINDOWS\system32\qaysybqm.dll
2007-04-20 15:24:11 123972 --a------ M:\WINDOWS\system32\tyylqmim.dll
2007-04-20 15:20:42 353 ---hs---- M:\WINDOWS\system32\nqtwa.ini2<NQTWA~1.INI>
2007-04-20 14:42:17 123972 --a------ M:\WINDOWS\system32\ynjvumht.dll
2007-04-20 14:33:18 281172 -----n--- M:\WINDOWS\system32\awtqn.dll
2007-04-14 21:13:02 0 d-------- M:\WINDOWS\Performance<PERFOR~1>
2007-04-13 21:00:25 0 d-------- M:\Program Files\BearShare Applications<BEARSH~2>
2007-04-10 18:00:15 0 d-------- M:\Program Files\EDU CD<EDUCD~1>
2007-03-25 19:19:30 0 d-------- M:\Program Files\NetMeter
2007-03-23 00:39:26 0 d-------- M:\Program Files\VideoLAN
2007-03-22 00:26:29 0 d-------- M:\Program Files\English Translator 2<ENGLIS~1>
2007-03-21 23:20:47 0 d-------- M:\Program Files\Corel
2007-03-20 02:23:54 0 d-------- M:\Program Files\SiGSOFT
2007-03-20 00:47:04 0 d-------- M:\Program Files\Yahoo!
-- Find3M Report ---------------------------------------------------------------
2007-04-20 21:43:28 0 d-------- M:\Program Files\Mozilla Firefox<MOZILL~1>
2007-04-20 15:13:01 0 d-------- M:\Program Files\Uniblue
2007-04-20 15:10:34 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\Uniblue
2007-04-20 15:09:58 0 d-------- M:\Program Files\DAEMON Tools<DAEMON~1>
2007-04-20 02:30:26 0 d-------- M:\Program Files\FlashGet
2007-04-20 01:43:49 0 d-------- M:\Program Files\Java
2007-04-20 00:18:30 448004 --a------ M:\WINDOWS\system32\perfh015.dat
2007-04-20 00:18:30 74230 --a------ M:\WINDOWS\system32\perfc015.dat
2007-04-19 23:07:25 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\dvdcss
2007-04-18 20:03:09 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\foobar2000<FOOBAR~1>
2007-04-17 12:24:16 0 d-------- M:\Program Files\Opera
2007-04-14 23:19:22 0 d-------- M:\Program Files\Winamp
2007-04-14 21:38:31 0 d---s---- M:\Documents and Settings\Adam\Dane aplikacji\Microsoft<MICROS~1>
2007-04-13 23:35:19 0 d-------- M:\Program Files\AllMyMovies<ALLMYM~1>
2007-04-13 23:18:06 0 d-------- M:\Program Files\Ad-Aware SE Personal<AD-AWA~1>
2007-04-13 21:15:44 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\BearShare<BEARSH~1>
2007-03-29 13:58:06 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\uTorrent
2007-03-23 00:40:10 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\vlc
2007-03-20 01:15:34 0 d-------- M:\Program Files\SpeedFan
2007-03-19 18:54:09 0 d-------- M:\Program Files\LPS
2007-03-19 16:09:00 0 d-------- M:\Program Files\K-litePro<K-LITE~2>
2007-03-18 15:09:28 0 d-------- M:\Program Files\Microsoft Games<MICROS~3>
2007-03-17 21:33:02 0 d-------- M:\Program Files\WinUHA
2007-03-17 21:01:40 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\Kingston
2007-03-17 15:45:36 293376 --a------ M:\WINDOWS\system32\winsrv.dll
2007-03-16 14:48:38 0 d-------- M:\Program Files\XMotorRacingDemo<XMOTOR~1>
2007-03-15 23:50:40 0 d-------- M:\Program Files\Peer2Mail<PEER2M~1>
2007-03-15 15:55:58 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\GRETECH
2007-03-15 15:55:25 0 d-------- M:\Program Files\GRETECH
2007-03-14 20:27:33 0 d-------- M:\Program Files\Nokia
2007-03-12 19:45:43 0 d-------- M:\Program Files\WorldUnlock Codes Calculator<WORLDU~1>
2007-03-09 17:43:33 0 d-------- M:\Program Files\BearShare Acceleration Patch<BEARSH~1>
2007-03-08 17:38:47 579072 --a------ M:\WINDOWS\system32\user32.dll
2007-03-08 17:38:47 40960 --a------ M:\WINDOWS\system32\mf3216.dll
2007-03-08 17:38:47 281600 --a------ M:\WINDOWS\system32\gdi32.dll
2007-03-08 17:37:33 1843840 --a------ M:\WINDOWS\system32\win32k.sys
2007-03-07 23:03:59 0 d-------- M:\Program Files\HDD Regenerator<HDDREG~1>
2007-03-07 01:54:10 0 d-------- M:\Program Files\foobar2000<FOOBAR~1>
2007-03-06 19:22:19 0 d-------- M:\Program Files\Badongo
2007-03-05 15:30:54 0 d--h----- M:\Program Files\InstallShield Installation Information<INSTAL~1>
2007-03-03 16:39:11 0 dr-h----- M:\Documents and Settings\Adam\Dane aplikacji\SecuROM
2007-03-03 16:39:10 108144 --a------ M:\WINDOWS\system32\CmdLineExt.dll<CMDLIN~1.DLL>
2007-03-01 23:00:48 0 d-------- M:\Program Files\Cartall
2007-03-01 20:45:27 0 d-------- M:\Program Files\Windows NT<WINDOW~1>
2007-03-01 14:49:49 0 d-------- M:\Program Files\Lavalys
2007-02-27 15:44:52 0 d-------- M:\Program Files\MyPortal
2007-02-26 22:22:36 0 d-------- M:\Program Files\Shortcut
2007-02-26 02:04:32 0 d-------- M:\Program Files\NAPI-PROJEKT<NAPI-P~1>
2007-02-23 01:46:39 0 d-------- M:\Documents and Settings\Adam\Dane aplikacji\GanymedeNet<GANYME~1>
2007-02-21 01:05:01 0 d-------- M:\Program Files\Ganymede
2007-02-05 22:19:48 185856 --a------ M:\WINDOWS\system32\upnphost.dll
2007-01-29 10:58:06 60416 -----n--- M:\WINDOWS\system32\tzchange.exe
2007-01-26 15:47:44 3614 --a------ M:\WINDOWS\mozver.dat
2007-01-24 21:19:04 5 --ahs---- M:\WINDOWS\system32\aecdfbfcd6_s.dll<AECDFB~1.DLL>
2007-01-22 20:47:58 249856 --a------ M:\WINDOWS\Setup1.exe
2007-01-22 20:47:56 73216 --a------ M:\WINDOWS\ST6UNST.EXE
-- Registry Dump ---------------------------------------------------------------
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="M:\\WINDOWS\\system32\\ctfmon.exe"
"Gadu-Gadu"="\"M:\\Program Files\\Gadu-Gadu\\gg.exe\" /tray"
"SpeedX"="M:\\PROGRA~1\\MyPortal\\Speed-X\\SpeedX.exe"
"M:\\Program Files\\NetMeter\\NetMeter.exe"="M:\\Program Files\\NetMeter\\NetMeter.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"DU Meter"="M:\\Program Files\\DU Meter\\DUMeter.exe"
"DAEMON Tools"="\"M:\\Program Files\\DAEMON Tools\\daemon.exe\" -lang 1033"
"SunJavaUpdateSched"="\"M:\\Program Files\\Java\\jre1.6.0_01\\bin\\jusched.exe\""
"NvCplDaemon"="RUNDLL32.EXE M:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
"{034BCF48-D4E7-4335-8F56-CE9AB44F6961}"=""
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="M:\\WINDOWS\\system32\\CTFMON.EXE"
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="M:\\WINDOWS\\system32\\CTFMON.EXE"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoLowDiskSpaceChecks"=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\DisAllowRun]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\opnmkii
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\F]
Shell\AutoRun\command F:\Autorun.exe
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\G]
Shell\AutoRun\command G:\start.exe
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8b562a0e-4426-11db-9bde-000ae60852ae}]
Shell\AutoRun\command F:\Autorun.exe
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8b562a0f-4426-11db-9bde-000ae60852ae}]
Shell\AutoRun\command G:\start.exe
-- End of ComboScan: finished at 2007-04-20 at 22:46:39 ------------------------