

i tego co znalazł AdAware wczoraj było to samo

A tu daje jeszcze loga z OTListIt2 może coś w nim zobaczysz ? Bardzo proszę o pomoc!
- Kod: Zaznacz wszystko
http://www.wklej.org/id/124477/
http://www.wklej.org/id/124477/
http://www.wklej.org/id/124477/
ComboFix 09-07-22.05 - admin 2009-07-23 12:43.1.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.446.156 [GMT 2:00]
Uruchomiony z: c:\documents and settings\admin\Pulpit\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\AUTORUN.INF
c:\program files\Common Files\PushWare
c:\program files\Common Files\PushWare\Uninst.exe
c:\program files\Internet Explorer\IETimber
c:\program files\Internet Explorer\IETimber\IP.dat
c:\program files\Internet Explorer\IETimber\uISGRLFile.dat
c:\program files\Internet Explorer\IETimber\Uninstall.exe
c:\windows\AMD
c:\windows\Fonts\CcKKcpwJmND4.Ttf
c:\windows\Fonts\T8EkDVD578wpyAdP.Ttf
c:\windows\KB611311.log
c:\windows\system32\B4eocaps.SRG
c:\windows\system32\drivers\npf.sys
c:\windows\system32\gprmsgse.axz
c:\windows\system32\gscpx32r.det
c:\windows\system32\mprmsgse.axz
c:\windows\system32\Packet.dll
c:\windows\system32\WanPacket.dll
c:\windows\system32\wpcap.dll
D:\autorun.inf
.
((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_ACPIDISK
-------\Legacy_NPF
-------\Service_acpidisk
-------\Service_npf
((((((((((((((((((((((((( Pliki utworzone od 2009-06-23 do 2009-07-23 )))))))))))))))))))))))))))))))
.
2009-07-23 08:51 . 2009-07-23 10:29 -------- d--h--w- C:\$AVG8.VAULT$
2009-07-23 08:43 . 2009-07-23 08:43 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-07-23 08:43 . 2009-07-23 08:43 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-07-23 08:43 . 2009-07-23 08:43 335752 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-07-23 08:43 . 2009-07-23 08:43 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-07-23 08:43 . 2009-07-23 08:46 -------- d-----w- c:\windows\system32\drivers\Avg
2009-07-23 08:43 . 2009-07-23 10:13 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\avg8
2009-07-23 08:43 . 2009-07-23 08:43 -------- d-----w- c:\program files\AVG
2009-07-22 10:21 . 2008-04-14 17:20 19968 -c--a-w- c:\windows\system32\dllcache\linkinfo.dll
2009-07-22 09:38 . 2009-07-22 09:38 -------- d-----w- c:\program files\MSXML 4.0
2009-07-22 08:05 . 2009-07-22 08:05 -------- d-----w- c:\windows\system32\pl-pl
2009-07-22 08:05 . 2009-07-22 08:05 -------- d-----w- c:\windows\l2schemas
2009-07-22 08:05 . 2009-07-22 08:05 -------- d-----w- c:\windows\system32\pl
2009-07-22 08:05 . 2009-07-22 08:05 -------- d-----w- c:\windows\system32\bits
2009-07-22 08:03 . 2009-07-22 08:05 -------- d-----w- c:\windows\ServicePackFiles
2009-07-22 08:00 . 2009-07-22 08:00 -------- d-----w- c:\windows\EHome
2009-07-22 07:40 . 2009-07-22 07:40 -------- d-s---w- c:\documents and settings\admin\UserData
2009-07-21 16:57 . 2008-04-14 17:20 221184 ----a-w- c:\windows\system32\wmpns.dll
2009-07-21 16:39 . 2009-07-21 16:40 -------- d-----w- c:\documents and settings\admin\Dane aplikacji\Nero
2009-07-21 16:25 . 2009-07-21 16:25 16504 ----a-w- c:\documents and settings\admin\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
2009-07-21 16:18 . 2009-07-22 07:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero
2009-07-21 16:18 . 2009-07-22 07:34 -------- d-----w- c:\program files\Common Files\Nero
2009-07-21 15:18 . 2009-07-22 07:25 -------- d-----w- c:\documents and settings\admin\Dane aplikacji\uTorrent
2009-07-21 14:10 . 2009-07-21 14:10 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Kaspersky Lab Setup Files
2009-07-21 13:14 . 2009-07-21 13:20 -------- d-----w- c:\program files\Metin2_PL
2009-07-21 13:09 . 2009-07-21 13:10 -------- d-----w- c:\program files\Valve
2009-07-21 13:08 . 2007-10-23 07:27 110592 ----a-w- c:\documents and settings\admin\Dane aplikacji\U3\temp\cleanup.exe
2009-07-21 12:54 . 2007-10-23 07:22 3350528 ---ha-w- c:\documents and settings\admin\Dane aplikacji\U3\temp\Launchpad Removal.exe
2009-07-21 12:54 . 2009-07-21 13:08 -------- d-----w- c:\documents and settings\admin\Dane aplikacji\U3
2009-07-21 12:53 . 2009-07-21 12:53 -------- d-----w- c:\documents and settings\admin\Ustawienia lokalne\Dane aplikacji\Adobe
2009-07-21 12:52 . 2009-07-21 12:53 -------- d-----w- c:\program files\Common Files\Adobe
2009-07-21 12:47 . 2009-07-21 12:47 -------- d-----w- c:\windows\Cache
2009-07-21 12:46 . 2009-07-21 12:46 1 ----a-w- c:\documents and settings\admin\Dane aplikacji\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2009-07-21 12:46 . 2009-07-21 12:46 -------- d-----w- c:\documents and settings\admin\Dane aplikacji\OpenOffice.org
2009-07-21 12:43 . 2009-07-21 12:43 -------- d-----w- c:\program files\OpenOffice.org 3
2009-07-21 10:33 . 2004-08-03 20:29 73216 ------w- c:\windows\system32\drivers\atintuxx.sys
2009-07-21 10:23 . 2009-07-21 10:23 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-07-21 10:23 . 2009-07-21 10:23 -------- d-----w- c:\documents and settings\admin\Dane aplikacji\skypePM
2009-07-21 10:20 . 2009-02-06 10:10 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2009-07-21 10:20 . 2009-03-06 14:22 285696 -c----w- c:\windows\system32\dllcache\pdh.dll
2009-07-21 10:20 . 2009-02-09 11:26 2190336 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2009-07-21 10:20 . 2009-02-09 11:25 111104 -c----w- c:\windows\system32\dllcache\services.exe
2009-07-21 10:20 . 2009-02-09 10:53 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2009-07-21 10:20 . 2009-02-09 10:53 731136 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2009-07-21 10:20 . 2009-02-09 10:53 686592 -c----w- c:\windows\system32\dllcache\advapi32.dll
2009-07-21 10:20 . 2009-02-09 10:53 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2009-07-21 10:20 . 2009-02-09 10:53 722944 -c----w- c:\windows\system32\dllcache\ntdll.dll
2009-07-21 10:20 . 2009-02-09 10:53 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2009-07-21 10:20 . 2009-02-09 11:26 2025472 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2009-07-21 10:20 . 2009-02-09 11:26 2146816 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2009-07-21 10:19 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2009-07-21 10:19 . 2008-10-24 11:21 455296 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2009-07-21 10:19 . 2008-12-11 10:57 333952 -c----w- c:\windows\system32\dllcache\srv.sys
2009-07-21 10:19 . 2008-04-11 19:06 691712 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2009-07-21 10:19 . 2009-04-15 14:54 585216 -c----w- c:\windows\system32\dllcache\rpcrt4.dll
2009-07-21 10:18 . 2009-07-22 14:42 -------- d-----w- c:\documents and settings\admin\Dane aplikacji\Nowe Gadu-Gadu
2009-07-21 10:18 . 2009-07-21 10:18 -------- d-----w- c:\program files\Nowe Gadu-Gadu
2009-07-21 10:17 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2009-07-21 10:17 . 2009-06-16 14:40 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2009-07-21 10:17 . 2009-06-16 14:40 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2009-07-21 10:17 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2009-07-21 10:09 . 2009-07-03 14:49 15688 ----a-w- c:\windows\system32\lsdelete.exe
2009-07-21 10:08 . 2009-07-21 13:26 -------- d-----w- c:\documents and settings\admin\Dane aplikacji\Skype
2009-07-21 10:07 . 2009-07-21 10:07 -------- d-----w- c:\program files\Common Files\Skype
2009-07-21 10:07 . 2009-07-21 10:07 -------- d-----r- c:\program files\Skype
2009-07-21 10:07 . 2009-07-21 10:07 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Skype
2009-07-21 10:03 . 2009-07-21 10:03 -------- d-----w- c:\documents and settings\admin\Dane aplikacji\Creative
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-22 10:48 . 2009-07-21 08:53 239 ----a-w- c:\windows\Fonts\bp.ini
2009-07-22 10:46 . 2009-07-21 08:51 190 ----a-w- c:\windows\Fonts\isfsb.ini
2009-07-22 08:18 . 2006-03-02 12:00 49492 ----a-w- c:\windows\system32\perfc015.dat
2009-07-22 08:18 . 2006-03-02 12:00 355486 ----a-w- c:\windows\system32\perfh015.dat
2009-07-22 08:06 . 2009-07-21 08:12 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-07-21 13:09 . 2009-07-21 08:34 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-07-21 10:02 . 2009-07-21 09:53 -------- d-----w- c:\program files\Creative
2009-07-21 09:54 . 2009-07-21 08:26 -------- d-----w- c:\program files\Common Files\InstallShield
2009-07-21 09:51 . 2009-07-21 09:36 -------- d-----w- c:\program files\Odkurzacz
2009-07-21 09:48 . 2009-07-21 09:48 -------- dc-h--w- c:\documents and settings\All Users\Dane aplikacji\{EF63305C-BAD7-4144-9208-D65528260864}
2009-07-03 14:49 . 2009-07-21 09:49 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-06-16 14:40 . 2006-03-02 12:00 119808 ----a-w- c:\windows\system32\t2embed.dll
2009-06-16 14:40 . 2006-03-02 12:00 81920 ----a-w- c:\windows\system32\fontsub.dll
2009-06-03 19:11 . 2006-03-02 12:00 1294848 ----a-w- c:\windows\system32\quartz.dll
2009-05-07 15:34 . 2006-03-02 12:00 347648 ----a-w- c:\windows\system32\localspl.dll
2009-04-29 04:35 . 2006-03-02 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2009-04-29 04:35 . 2006-03-02 12:00 669184 ----a-w- c:\windows\system32\wininet.dll
2009-07-16 01:02 . 2009-07-21 09:38 137208 ----a-w- c:\program files\mozilla firefox\components\brwsrcmp.dll
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-08-16 7630848]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-08-16 86016]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-07-23 1948440]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2006-08-16 1617920]
"RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.exe [2006-12-19 16062464]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-07-23 08:43 11952 ----a-w- c:\windows\system32\avgrsstx.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
[HKLM\~\startupfolder\C:^Documents and Settings^admin^Menu Start^Programy^Autostart^OpenOffice.org 3.0.lnk]
path=c:\documents and settings\admin\Menu Start\Programy\Autostart\OpenOffice.org 3.0.lnk
backup=c:\windows\pss\OpenOffice.org 3.0.lnkStartup
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Nowe Gadu-Gadu\\gg.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-07-21 64160]
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-07-23 335752]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-07-23 108552]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [2009-07-23 907032]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2009-07-23 298776]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [2009-07-03 1029456]
S2 pnpmem;pnpmem;\??\c:\windows\system32\drivers\pnpmem.sys --> c:\windows\system32\drivers\pnpmem.sys [?]
S3 lvbasb;lvbasb;\??\c:\windows\fonts\lvbasb.sys --> c:\windows\fonts\lvbasb.sys [?]
S3 safeg;safeg;\??\c:\windows\fonts\safeg.sys --> c:\windows\fonts\safeg.sys [?]
S3 V0260VID;Live! Cam Vista IM;c:\windows\system32\drivers\V0260Vid.sys [2009-07-21 178913]
.
Zawartość folderu 'Zaplanowane zadania'
2009-07-21 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-07-03 14:49]
.
.
------- Skan uzupełniający -------
.
uStart Page = baidu.com
uSearchURL,(Default) = hxxp://toolbar.ask.com/toolbarv/askRedirect?o=13925&gct=&gc=1&q=%s
FF - ProfilePath - c:\documents and settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\a6b015hx.default\
FF - prefs.js: browser.startup.homepage - www.google.pl
FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll
FF - plugin: c:\documents and settings\admin\Dane aplikacji\Nowe Gadu-Gadu\_userdata\npgg.1.dll
---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.enforce_same_site_origin", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.cache_size", 51200);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.ogg.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.wave.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("media.autoplay.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.urlbar.autocomplete.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("capability.policy.mailnews.*.wholeText", "noAccess");
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.storage.default_quota", 5120);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("content.sink.event_probe_rate", 3);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.http.prompt-temp-redirect", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("layout.css.dpi", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("layout.css.devPixelsPerPx", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("gestures.enable_single_finger_input", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.max_chrome_script_run_time", 0);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.tcp.sendbuffer", 131072);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("geo.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.remember_cert_checkbox_default_setting", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr", "moz35");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-cjkt", "moz35");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.blocklist.level", 2);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.urlbar.restrict.typed", "~");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.urlbar.default.behavior", 0);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.history", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.formdata", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.passwords", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.downloads", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cookies", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cache", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.sessions", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.offlineApps", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.siteSettings", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.history", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.formdata", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.passwords", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.downloads", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.cookies", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.cache", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.sessions", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.offlineApps", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.cpd.siteSettings", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("privacy.sanitize.migrateFx3Prefs", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.ssl_override_behavior", 2);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("security.alternate_certificate_error_page", "certerror");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.autostart", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.dont_prompt_on_enter", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("geo.wifi.uri", "https://www.google.com/loc/json");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-07-23 12:48
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
skanowanie ukrytych procesów ...
skanowanie ukrytych wpisów autostartu ...
skanowanie ukrytych plików ...
skanowanie pomyślnie ukończone
ukryte pliki: 0
**************************************************************************
.
------------------------ Pozostałe uruchomione procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\AVG\AVG8\avgrsx.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\windows\system32\rundll32.exe
c:\program files\AVG\AVG8\avgcsrvx.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\Lavasoft\Ad-Aware\AAWTray.exe
.
**************************************************************************
.
Czas ukończenia: 2009-07-23 12:52 - komputer został uruchomiony ponownie
ComboFix-quarantined-files.txt 2009-07-23 10:51
Przed: 29 220 773 888 bajtów wolnych
Po: 30 920 544 256 bajtów wolnych
WindowsXP-KB310994-SP2-Home-BootDisk-PLK.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
260 --- E O F --- 2009-07-22 09:38
File::
c:\windows\fonts\safeg.sys
c:\windows\fonts\lvbasb.sys
c:\windows\system32\drivers\pnpmem.sys
Driver::
safeg
lvbasb
pnpmem
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 9 gości