
Nie widze managera urzadzen, komputer mi strasznie wolno chodzi...
Zrobilem co bylo opisane w innych tematach(http://forum.programosy.pl/bad-generic-host-process-for-win32-services-vt79489.html, czyli zablokowalem porty, zrobilem tez logi :
- Kod: Zaznacz wszystko
[b]SDFix: Version 1.240 [/b]
Run by Jakub on 2009-05-18 at 00:31
Microsoft Windows XP [Wersja 5.1.2600]
Running From: C:\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
No Trojan Files Found
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-05-18 00:36:22
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Tlen.pl\\tlen.exe"="C:\\Program Files\\Tlen.pl\\tlen.exe:*:Enabled:ipsec"
"E:\\Program Files\\BitLord\\BitLord.exe"="E:\\Program Files\\BitLord\\BitLord.exe:*:Enabled:ipsec"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\\Program Files\\DC++\\DCPlusPlus.exe"="E:\\Program Files\\DC++\\DCPlusPlus.exe:*:Enabled:ipsec"
"C:\\Program Files\\SopCast\\SopCast.exe"="C:\\Program Files\\SopCast\\SopCast.exe:*:Enabled:SopCast Main Application"
"C:\\Program Files\\SopCast\\adv\\SopAdver.exe"="C:\\Program Files\\SopCast\\adv\\SopAdver.exe:*:Enabled:SopCast Adver"
"C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\AcroRd32Info.exe"="C:\\Program Files\\Adobe\\Reader 9.0\\Reader\\AcroRd32Info.exe:*:Enabled:ipsec"
"C:\\Program Files\\Java\\jre6\\bin\\jqsnotify.exe"="C:\\Program Files\\Java\\jre6\\bin\\jqsnotify.exe:*:Enabled:ipsec"
"C:\\Program Files\\Analog Devices\\SoundMAX\\Smax4.exe"="C:\\Program Files\\Analog Devices\\SoundMAX\\Smax4.exe:*:Enabled:ipsec"
"C:\\Program Files\\Analog Devices\\Core\\smax4pnp.exe"="C:\\Program Files\\Analog Devices\\Core\\smax4pnp.exe:*:Enabled:ipsec"
"C:\\WINDOWS\\system32\\igfxtray.exe"="C:\\WINDOWS\\system32\\igfxtray.exe:*:Enabled:ipsec"
"C:\\WINDOWS\\system32\\hkcmd.exe"="C:\\WINDOWS\\system32\\hkcmd.exe:*:Enabled:ipsec"
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"="C:\\Program Files\\Bonjour\\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\ComboFix\\NirCmd.cfexe"="C:\\ComboFix\\NirCmd.cfexe:*:Enabled:ipsec"
"C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\jgmn.exe"="C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\jgmn.exe:*:Enabled:ipsec"
"C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winpljrhm.exe"="C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winpljrhm.exe:*:Enabled:ipsec"
"C:\\Documents and Settings\\Jakub\\Pulpit\\wwdc_[www.programosy.pl].exe"="C:\\Documents and Settings\\Jakub\\Pulpit\\wwdc_[www.programosy.pl].exe:*:Enabled:ipsec"
"C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\ixdm.exe"="C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\ixdm.exe:*:Enabled:ipsec"
"C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winerpqu.exe"="C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winerpqu.exe:*:Enabled:ipsec"
"C:\\WINDOWS\\Explorer.EXE"="C:\\WINDOWS\\Explorer.EXE:*:Enabled:ipsec"
"C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winhymv.exe"="C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winhymv.exe:*:Enabled:ipsec"
"C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winftmpig.exe"="C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winftmpig.exe:*:Enabled:ipsec"
"C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\xgcdye.exe"="C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\xgcdye.exe:*:Enabled:ipsec"
"C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winsuwu.exe"="C:\\DOCUME~1\\Jakub\\USTAWI~1\\Temp\\winsuwu.exe:*:Enabled:ipsec"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[b]Remaining Files [/b]:
[b]Files with Hidden Attributes [/b]:
[b]Finished![/b]
- Kod: Zaznacz wszystko
OTListIt logfile created on: 2009-05-18 18:15:53 - Run 3
OTListIt2 by OldTimer - Version 2.0.15.8 Folder = C:\Documents and Settings\Jakub\Pulpit
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
503,36 Mb Total Physical Memory | 188,81 Mb Available Physical Memory | 37,51% Memory free
1,20 Gb Paging File | 0,94 Gb Available in Paging File | 77,99% Paging File free
Paging file location(s): C:\pagefile.sys 756 1512 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 19,53 Gb Total Space | 3,38 Gb Free Space | 17,29% Space Free | Partition Type: NTFS
Drive D: | 19,53 Gb Total Space | 3,29 Gb Free Space | 16,85% Space Free | Partition Type: NTFS
Drive E: | 16,83 Gb Total Space | 1,02 Gb Free Space | 6,04% Space Free | Partition Type: NTFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: HP-78B7388B315D
Current User Name: Jakub
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Output = Standard
File Age = 30 Days
Company Name Whitelist: On
[color=orange]========== Processes (SafeList) ==========[/color]
PRC - [2009-03-26 15:31:20 | 00,132,424 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
PRC - [2008-12-12 11:17:38 | 00,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe
PRC - [2009-04-06 21:47:16 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2005-01-28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe
PRC - [2008-04-14 19:21:16 | 01,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE
PRC - [2009-03-09 17:49:18 | 00,037,888 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe
PRC - [2009-04-21 15:37:30 | 00,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2006-03-31 16:01:48 | 00,831,578 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PRC - [2009-04-06 21:47:16 | 00,148,888 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe
PRC - [2007-01-05 17:36:48 | 00,872,448 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe
PRC - [2009-04-02 16:11:02 | 00,416,040 | ---- | M] (Apple Inc.) -- C:\Program Files\iTunes\iTunesHelper.exe
PRC - [2006-06-06 10:09:58 | 00,176,128 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxtray.exe
PRC - [2006-06-06 10:10:40 | 00,188,416 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\igfxpers.exe
PRC - [2006-06-06 10:06:44 | 00,151,552 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\hkcmd.exe
PRC - [2005-12-12 15:00:46 | 00,088,203 | ---- | M] (Agere Systems) -- C:\WINDOWS\AGRSMMSG.exe
PRC - [2009-04-02 16:10:56 | 00,656,168 | ---- | M] (Apple Inc.) -- C:\Program Files\iPod\bin\iPodService.exe
PRC - [2009-05-18 17:55:28 | 00,010,240 | ---- | M] () -- C:\Documents and Settings\Jakub\Ustawienia lokalne\temp\dawqi.exe
PRC - [2008-05-27 23:17:49 | 00,003,584 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\SmitfraudFix\Policies.exe
PRC - [2009-01-17 16:48:08 | 05,853,672 | ---- | M] (o2.pl Sp. z o.o.) -- C:\Program Files\Tlen.pl\tlen.exe
PRC - [2009-04-28 22:25:57 | 00,307,704 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2009-05-18 00:08:16 | 00,501,248 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jakub\Pulpit\OTListIt2.exe
[color=orange]========== Win32 Services (SafeList) ==========[/color]
SRV - [2009-03-26 15:31:20 | 00,132,424 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -- (Apple Mobile Device [Auto | Running])
SRV - [2008-12-12 11:17:38 | 00,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service [Auto | Running])
SRV - [2008-04-14 19:20:44 | 00,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll -- (helpsvc [Auto | Running])
SRV - [2009-04-02 16:10:56 | 00,656,168 | ---- | M] (Apple Inc.) -- C:\Program Files\iPod\bin\iPodService.exe -- (iPod Service [On_Demand | Running])
SRV - [2009-04-06 21:47:16 | 00,152,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe -- (JavaQuickStarterService [Auto | Running])
SRV - [2005-01-28 13:44:28 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe -- (UMWdf [Auto | Running])
[color=orange]========== Driver Services (SafeList) ==========[/color]
DRV - [2007-10-01 13:27:40 | 00,281,600 | ---- | M] (Analog Devices, Inc.) -- C:\WINDOWS\system32\drivers\ADIHdAud.sys -- (ADIHdAudAddService [On_Demand | Running])
DRV - [2007-07-13 10:26:12 | 00,094,976 | ---- | M] (Andrea Electronics Corporation) -- C:\WINDOWS\system32\drivers\AEAudio.sys -- (AEAudio [On_Demand | Running])
DRV - [2005-12-12 15:00:46 | 01,120,352 | ---- | M] (Agere Systems) -- C:\WINDOWS\system32\DRIVERS\AGRSM.sys -- (AgereSoftModem [On_Demand | Running])
DRV - [2006-04-28 17:12:40 | 00,429,184 | ---- | M] (Broadcom Corporation) -- C:\WINDOWS\system32\DRIVERS\bcmwl5.sys -- (BCM43XX [On_Demand | Running])
DRV - [2005-08-05 11:33:56 | 00,045,312 | ---- | M] (Broadcom Corporation) -- C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys -- (bcm4sbxp [On_Demand | Running])
DRV - [2009-03-19 16:32:48 | 00,023,400 | ---- | M] (GEAR Software Inc.) -- C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys -- (GEARAspiWDM [On_Demand | Running])
DRV - [2008-04-13 18:36:05 | 00,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\WINDOWS\system32\DRIVERS\HDAudBus.sys -- (HDAudBus [On_Demand | Running])
DRV - [2006-06-06 10:32:54 | 01,168,860 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\DRIVERS\ialmnt5.sys -- (ialm [On_Demand | Running])
DRV - [2001-08-17 23:49:56 | 00,017,792 | ---- | M] (Parallel Technologies, Inc.) -- C:\WINDOWS\system32\DRIVERS\ptilink.sys -- (Ptilink [On_Demand | Running])
DRV - [2008-08-20 19:58:58 | 00,044,944 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys -- (PxHelp20 [Boot | Running])
DRV - [2008-04-13 18:39:16 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\WINDOWS\system32\DRIVERS\secdrv.sys -- (Secdrv [On_Demand | Stopped])
DRV - [2006-03-31 15:41:40 | 00,193,056 | ---- | M] (Synaptics, Inc.) -- C:\WINDOWS\system32\DRIVERS\SynTP.sys -- (SynTP [On_Demand | Running])
DRV - File not found -- -- (dac970nt [On_Demand | Running])
[color=orange]========== Standard Registry (SafeList) ==========[/color]
[color=orange]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1659004503-861567501-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKU\S-1-5-21-1659004503-861567501-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IE - HKU\S-1-5-21-1659004503-861567501-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-1659004503-861567501-839522115-1003\S-1-5-21-1659004503-861567501-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1659004503-861567501-839522115-1003\S-1-5-21-1659004503-861567501-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
[color=orange]========== FireFox ==========[/color]
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}:6.0.13
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.10
FF - HKLM\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2009-04-06 21:47:17 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.10\extensions\\Components: C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS [2009-05-08 09:40:35 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.10\extensions\\Plugins: C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS [2009-05-13 22:42:22 | 00,000,000 | ---D | M]
[2009-04-06 21:26:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jakub\Dane aplikacji\mozilla\Extensions
[2009-04-06 21:26:04 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jakub\Dane aplikacji\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
[2009-04-07 06:28:06 | 00,000,000 | ---D | M] -- C:\Documents and Settings\Jakub\Dane aplikacji\mozilla\Firefox\Profiles\dli59swq.default\extensions
[2009-05-17 17:53:21 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions
[2009-04-28 22:26:03 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009-04-06 21:47:26 | 00,000,000 | ---D | M] -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2009-04-28 22:25:56 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browserdirprovider.dll
[2009-04-28 22:25:57 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\brwsrcmp.dll
[2006-06-03 18:43:22 | 00,000,896 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2008-04-03 19:19:08 | 00,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2008-04-16 06:08:20 | 00,001,706 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\google.xml
[2007-03-31 19:11:54 | 00,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2006-06-03 18:43:22 | 00,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2008-03-28 23:36:04 | 00,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2007-01-05 13:40:56 | 00,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml
O1 HOSTS File: (27 bytes) - C:\WINDOWS\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [AGRSMMSG] AGRSMMSG.exe (Agere Systems)
O4 - HKLM..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe (Intel Corporation)
O4 - HKLM..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" (Apple Inc.)
O4 - HKLM..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime (Apple Inc.)
O4 - HKLM..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe (Analog Devices, Inc.)
O4 - HKLM..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" (Sun Microsystems, Inc.)
O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
O4 - HKLM..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot (RealNetworks, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1659004503-861567501-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1659004503-861567501-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1659004503-861567501-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1659004503-861567501-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-21-1659004503-861567501-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O7 - HKU\S-1-5-21-1659004503-861567501-839522115-1003_Classes\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [mdnsNSP] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {1851174C-97BD-4217-A0CC-E908F60D5B7A} https://h50203.www5.hp.com/HPISWeb/Customer/cabs/HPISDataManager.CAB (Hewlett-Packard Online Support Services)
O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class)
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab (GMNRev Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab (Java Plug-in 1.6.0_13)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\msdaipp.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\Explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-04-06 19:41:01 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - * [2009-05-18 18:14:56 | 00,000,000 | ---D | M]
[color=orange]========== Files/Folders - Created Within 30 Days ==========[/color]
[1 C:\WINDOWS\System32\*.tmp files]
[4 C:\WINDOWS\*.tmp files]
[2009-05-18 18:10:54 | 00,000,000 | -HSD | C] -- C:\RECYCLER
[2009-05-18 00:53:22 | 00,002,502 | ---- | C] () -- C:\WINDOWS\System32\tmp.reg
[2009-05-18 00:52:53 | 00,289,144 | ---- | C] (S!Ri) -- C:\WINDOWS\System32\VCCLSID.exe
[2009-05-18 00:52:53 | 00,288,417 | ---- | C] (S!Ri) -- C:\WINDOWS\System32\SrchSTS.exe
[2009-05-18 00:52:53 | 00,135,168 | ---- | C] (SteelWerX) -- C:\WINDOWS\System32\swreg.exe
[2009-05-18 00:52:53 | 00,087,552 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\VACFix.exe
[2009-05-18 00:52:53 | 00,082,944 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\IEDFix.exe
[2009-05-18 00:52:53 | 00,082,944 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\IEDFix.C.exe
[2009-05-18 00:52:53 | 00,082,432 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\404Fix.exe
[2009-05-18 00:52:53 | 00,080,384 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\o4Patch.exe
[2009-05-18 00:52:53 | 00,079,360 | ---- | C] (SteelWerX) -- C:\WINDOWS\System32\swxcacls.exe
[2009-05-18 00:52:53 | 00,078,336 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\Agent.OMZ.Fix.exe
[2009-05-18 00:52:53 | 00,075,776 | ---- | C] () -- C:\WINDOWS\System32\WS2Fix.exe
[2009-05-18 00:52:53 | 00,053,248 | ---- | C] (http://www.beyondlogic.org) -- C:\WINDOWS\System32\Process.exe
[2009-05-18 00:52:53 | 00,051,200 | ---- | C] () -- C:\WINDOWS\System32\dumphive.exe
[2009-05-18 00:52:53 | 00,040,960 | ---- | C] () -- C:\WINDOWS\System32\swsc.exe
[2009-05-18 00:52:51 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\SmitfraudFix
[2009-05-18 00:52:20 | 01,961,486 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\SmitfraudFix.exe
[2009-05-18 00:48:12 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Ustawienia lokalne\temp
[2009-05-18 00:35:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Dane aplikacji\WinRAR
[2009-05-18 00:30:46 | 00,580,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\user32.dll
[2009-05-18 00:29:32 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERUNT
[2009-05-18 00:22:27 | 00,000,000 | ---D | C] -- C:\WINDOWS\pss
[2009-05-18 00:08:15 | 00,501,248 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Jakub\Pulpit\OTListIt2.exe
[2009-05-18 00:02:15 | 00,000,000 | ---D | C] -- C:\SDFix
[2009-05-18 00:01:12 | 01,607,065 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\SDFix.exe
[2009-05-17 23:30:22 | 00,000,321 | ---- | C] () -- C:\Boot.bak
[2009-05-17 23:30:17 | 00,262,400 | ---- | C] () -- C:\cmldr
[2009-05-17 23:30:16 | 00,000,000 | RHSD | C] -- C:\cmdcons
[2009-05-17 23:29:00 | 00,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2009-05-17 23:29:00 | 00,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2009-05-17 23:29:00 | 00,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2009-05-17 23:29:00 | 00,117,248 | ---- | C] () -- C:\WINDOWS\vFind.exe
[2009-05-17 23:29:00 | 00,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2009-05-17 23:29:00 | 00,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2009-05-17 23:29:00 | 00,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2009-05-17 23:28:53 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2009-05-17 23:28:41 | 00,000,000 | ---D | C] -- C:\Qoobox
[2009-05-17 23:27:37 | 03,062,481 | R--- | C] () -- C:\Documents and Settings\Jakub\Pulpit\ComboFix.exe
[2009-05-17 23:14:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\36-Hypersona-(3SIXCD001)-2009-MAEM
[2009-05-15 13:04:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\X-Men.Origins.Wolverine.2009.WORKPRINT.XviD-NoGRP
[2009-05-15 12:10:15 | 00,000,000 | ---D | C] -- C:\Program Files\Softwin
[2009-05-15 11:27:09 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\DNB Ripy
[2009-05-15 01:45:22 | 00,000,666 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\SopCast.lnk
[2009-05-14 17:19:06 | 08,246,400 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\T Dilla - The Deal.mp3
[2009-05-13 22:57:57 | 57,966,986 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\Kjaerhus.AIO(2).rar
[2009-05-13 22:26:41 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2009-05-13 21:33:34 | 20,580,4628 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\do wydrukowania.rar
[2009-05-13 21:25:03 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\do wydrukowania
[2009-05-13 20:09:49 | 10,666,601 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\Course.PTR.Cubase.SX.3.Ignite.eBook-LinG.rar
[2009-05-13 19:45:08 | 13,635,061 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\Cubase_SX_3_Power_-_The_Complete_Guide.rar
[2009-05-11 23:23:19 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Softwin
[2009-05-11 23:16:45 | 22,101,692 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\Jakub\Pulpit\bitdefender_free_v10.exe
[2009-05-11 22:47:25 | 00,000,000 | ---D | C] -- C:\Program Files\SkanerOnline
[2009-05-11 22:25:10 | 34,535,872 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\setuppol.exe
[2009-05-11 15:05:39 | 32,579,71200 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\Tril0gI.nrg.bc!
[2009-05-11 13:52:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\Spectrasonics Trilogy
[2009-05-11 13:19:14 | 00,000,000 | ---D | C] -- C:\Program Files\Native Instruments
[2009-05-11 08:10:32 | 10,502,754 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\u mnie balagan.mp3
[2009-05-10 15:49:47 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\Akala___Ms._Dynamite_-_A_Little_Darker
[2009-05-10 12:42:07 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\Temate_Henson%20-%20Miejski%20Styl%20Bycia2009
[2009-05-09 12:52:52 | 00,048,640 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\CV English - Tomasz Nidziński.doc
[2009-05-09 12:52:42 | 00,052,224 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\CV Polskie - Tomasz Nidziński.doc
[2009-05-09 12:41:52 | 00,000,243 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\znalezc w necie e books.rtf
[2009-05-08 12:02:20 | 13,593,164 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\Nidxi - Absolution.mp3
[2009-05-08 11:56:17 | 11,138,917 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\01 Hipster Girl (Evol Intent Remix).mp3
[2009-05-08 11:34:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\The Spirit[2008]DvDrip[Eng]-FXG
[2009-05-08 09:44:11 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\Roll Deep - Return Of The Big Money Sound 2008
[2009-05-07 23:13:01 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\UGKMS
[2009-05-07 15:46:27 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\RHYMING EXERCISE
[2009-05-07 00:21:50 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Dane aplikacji\Apple Computer
[2009-05-07 00:21:02 | 00,000,000 | ---D | C] -- C:\Program Files\iPod
[2009-05-07 00:20:56 | 00,000,000 | ---D | C] -- C:\Program Files\iTunes
[2009-05-07 00:20:56 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
[2009-05-07 00:20:30 | 00,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2009-05-07 00:19:47 | 00,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2009-05-07 00:19:44 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Apple Computer
[2009-05-07 00:18:59 | 00,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2009-05-07 00:18:43 | 00,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2009-05-07 00:18:29 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2009-05-07 00:18:28 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Apple
[2009-05-06 23:48:42 | 03,412,428 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\RBS - Odadołaka.mp3
[2009-05-05 22:48:35 | 00,000,000 | -H-D | C] -- C:\WINDOWS\PIF
[2009-05-05 18:35:28 | 27,153,602 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\Procession.wav
[2009-05-05 16:59:12 | 10,436,9104 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\after the movie by kaczka.wmv
[2009-05-03 23:14:50 | 17,246,595 | ---- | C] (Adobe Systems, Inc.) -- C:\Documents and Settings\Jakub\Pulpit\paradigme.exe
[2009-05-02 14:16:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\_2003__The_Love_Below
[2009-05-02 13:36:35 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Moje dokumenty\Tlen.pl
[2009-05-02 12:58:19 | 00,000,736 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\moduly sapa.rtf
[2009-04-30 17:47:45 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\UGK_-_Ridin_Dirty
[2009-04-29 23:40:17 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\Full Metal Alchemist
[2009-04-26 22:57:32 | 04,065,938 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\pih -veni vidi vici to dla moich ludzi.mp31240780384_[mp3.teledyski.info].mp3
[2009-04-26 21:48:51 | 00,000,000 | ---D | C] -- C:\Program Files\SopCast
[2009-04-25 20:09:28 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\um preserve 2008_16bits wav tracks & cover
[2009-04-24 22:25:52 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\Ten_Typ_Mes-Zamach_Na_Przecietnosc-PL-2009-BFPMP3
[2009-04-24 08:48:06 | 00,026,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS
[2009-04-24 08:48:06 | 00,026,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbstor.sys
[2009-04-21 15:38:12 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Jakub\Moje dokumenty\Moje wideo
[2009-04-21 15:37:42 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\xing shared
[2009-04-21 15:37:31 | 00,499,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcp71.dll
[2009-04-21 15:37:31 | 00,348,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcr71.dll
[2009-04-21 15:37:31 | 00,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2009-04-21 15:37:31 | 00,000,000 | ---D | C] -- C:\Program Files\Real
[2009-04-21 15:37:29 | 00,000,000 | ---D | C] -- C:\Program Files\Common Files\Real
[2009-04-21 15:37:28 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Dane aplikacji\Real
[2009-04-21 14:44:56 | 00,000,301 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\mbank.rtf
[2009-04-20 22:15:49 | 03,774,592 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\MLp-Beat4Battle (Battle Scratch 38).mp3
[2009-04-20 22:06:56 | 25,162,0864 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\MarkEG-HydraulixParty-10-04-09-MASTER.mp3
[2009-04-20 22:06:38 | 54,129,051 | ---- | C] () -- C:\Documents and Settings\Jakub\Pulpit\B_SOUL_PERFECT_STORM_MIX.mp3
[2009-04-20 21:07:31 | 07,234,007 | ---- | C] (Macromedia, Inc.) -- C:\Documents and Settings\Jakub\Pulpit\The Repool Two By MLp.exe
[2009-04-20 20:55:24 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Pulpit\Wiley-Grime_Wave-2008-RAGEMP3
[2009-04-18 19:40:39 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Jakub\Dane aplikacji\DC++
[2009-04-09 18:32:37 | 00,000,206 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2008-01-14 16:47:06 | 00,099,712 | ---- | C] () -- C:\WINDOWS\HPBroker.dll
[2001-07-22 00:16:20 | 00,000,477 | ---- | C] () -- C:\WINDOWS\win.ini
[2001-07-22 00:15:52 | 00,000,282 | ---- | C] () -- C:\WINDOWS\system.ini
[color=orange]========== Files - Modified Within 30 Days ==========[/color]
[1 C:\WINDOWS\System32\*.tmp files]
[4 C:\WINDOWS\*.tmp files]
[2009-05-18 17:52:01 | 00,000,062 | -HS- | M] () -- C:\Documents and Settings\Jakub\Ustawienia lokalne\desktop.ini
[2009-05-18 17:46:10 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009-05-18 17:46:09 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009-05-18 00:53:22 | 00,002,502 | ---- | M] () -- C:\WINDOWS\System32\tmp.reg
[2009-05-18 00:53:20 | 00,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2009-05-18 00:52:25 | 01,961,486 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\SmitfraudFix.exe
[2009-05-18 00:45:00 | 00,000,282 | ---- | M] () -- C:\WINDOWS\system.ini
[2009-05-18 00:38:32 | 00,000,477 | ---- | M] () -- C:\WINDOWS\win.ini
[2009-05-18 00:38:32 | 00,000,391 | RHS- | M] () -- C:\boot.ini
[2009-05-18 00:30:46 | 00,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\user32.dll
[2009-05-18 00:08:16 | 00,501,248 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Jakub\Pulpit\OTListIt2.exe
[2009-05-18 00:01:18 | 01,607,065 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\SDFix.exe
[2009-05-17 23:38:02 | 00,763,990 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009-05-17 23:38:02 | 00,356,068 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2009-05-17 23:38:02 | 00,311,938 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009-05-17 23:38:02 | 00,049,910 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2009-05-17 23:38:02 | 00,040,326 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009-05-17 23:27:49 | 03,062,481 | R--- | M] () -- C:\Documents and Settings\Jakub\Pulpit\ComboFix.exe
[2009-05-17 22:38:17 | 32,579,71200 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\Tril0gI.nrg.bc!
[2009-05-17 17:37:58 | 00,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2009-05-15 01:45:22 | 00,000,666 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\SopCast.lnk
[2009-05-14 17:50:08 | 00,117,248 | ---- | M] () -- C:\WINDOWS\vFind.exe
[2009-05-13 23:02:42 | 57,966,986 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\Kjaerhus.AIO(2).rar
[2009-05-13 21:42:02 | 20,580,4628 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\do wydrukowania.rar
[2009-05-13 20:15:29 | 10,666,601 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\Course.PTR.Cubase.SX.3.Ignite.eBook-LinG.rar
[2009-05-13 19:51:59 | 13,635,061 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\Cubase_SX_3_Power_-_The_Complete_Guide.rar
[2009-05-12 00:09:52 | 22,101,692 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Jakub\Pulpit\bitdefender_free_v10.exe
[2009-05-11 22:29:55 | 34,535,872 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\setuppol.exe
[2009-05-11 08:12:38 | 10,502,754 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\u mnie balagan.mp3
[2009-05-09 12:52:52 | 00,048,640 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\CV English - Tomasz Nidziński.doc
[2009-05-09 12:52:45 | 00,052,224 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\CV Polskie - Tomasz Nidziński.doc
[2009-05-09 12:41:53 | 00,000,243 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\znalezc w necie e books.rtf
[2009-05-08 11:57:05 | 11,138,917 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\01 Hipster Girl (Evol Intent Remix).mp3
[2009-05-07 00:16:30 | 24,699,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\MRT.exe
[2009-05-06 23:49:14 | 03,412,428 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\RBS - Odadołaka.mp3
[2009-05-05 18:53:08 | 27,153,602 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\Procession.wav
[2009-05-05 18:07:56 | 13,593,164 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\Nidxi - Absolution.mp3
[2009-05-05 17:16:05 | 10,436,9104 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\after the movie by kaczka.wmv
[2009-05-03 23:16:08 | 17,246,595 | ---- | M] (Adobe Systems, Inc.) -- C:\Documents and Settings\Jakub\Pulpit\paradigme.exe
[2009-05-02 12:58:19 | 00,000,736 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\moduly sapa.rtf
[2009-04-30 01:36:37 | 00,075,776 | ---- | M] () -- C:\WINDOWS\System32\WS2Fix.exe
[2009-04-26 23:00:50 | 04,065,938 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\pih -veni vidi vici to dla moich ludzi.mp31240780384_[mp3.teledyski.info].mp3
[2009-04-26 21:11:39 | 00,004,232 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\cenzura! na allegro.rtf
[2009-04-21 15:37:31 | 00,499,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcp71.dll
[2009-04-21 15:37:31 | 00,348,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcr71.dll
[2009-04-21 15:37:31 | 00,278,528 | ---- | M] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2009-04-21 14:48:38 | 00,000,301 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\mbank.rtf
[2009-04-20 22:54:01 | 25,162,0864 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\MarkEG-HydraulixParty-10-04-09-MASTER.mp3
[2009-04-20 22:17:47 | 54,129,051 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\B_SOUL_PERFECT_STORM_MIX.mp3
[2009-04-20 22:16:09 | 03,774,592 | ---- | M] () -- C:\Documents and Settings\Jakub\Pulpit\MLp-Beat4Battle (Battle Scratch 38).mp3
[2009-04-20 21:08:02 | 07,234,007 | ---- | M] (Macromedia, Inc.) -- C:\Documents and Settings\Jakub\Pulpit\The Repool Two By MLp.exe
[color=orange]========== Alternate Data Streams ==========[/color]
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2
< End of report >
Pomocy!!!
