Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 483

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 27

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 28

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 29

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 30

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 31

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 32

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 33

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 35

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 36

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 37

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 38

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 39

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 40

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 41

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 42

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 43

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 44

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 45

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 47

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 48

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 49

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 50

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 51

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 52

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 53

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 54

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 55

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 56

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 80

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 81

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 82

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 83

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 84

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 85

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 86

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 87

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 88

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 89

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 90

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 91

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 92

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 93

Deprecated: Function eregi() is deprecated in /home/mati/domains/forum.programosy.pl/public_html/includes/functions_gfxua.php on line 94

Strict Standards: Non-static method utf_normalizer::nfkc() should not be called statically in /home/mati/domains/forum.programosy.pl/public_html/includes/utf/utf_tools.php on line 1663
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3900: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3902: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3903: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3904: Cannot modify header information - headers already sent by (output started at /includes/bbcode.php:483)
długie oczekiwanie na witryny, brak ładowania stron • programosy.pl

  • Ogłoszenie:

długie oczekiwanie na witryny, brak ładowania stron

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

długie oczekiwanie na witryny, brak ładowania stron

Postprzez conter 18 Lut 2008, 19:27

reklama
długie oczekiwanie na witryny, brak ładowania większości www, jedynie co dobrze chodzi i to nie zawsze to fora. Proszę o sprawdzenie chcę wyeliminować czynnik wirusów.

Kod: Zaznacz wszystko
"Silent Runners.vbs", revision 55, http://www.silentrunners.org/
Operating System: Windows XP SP2
Output limited to non-default values, except where indicated by "{++}"


Startup items buried in registry:
---------------------------------

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
"Konnekt" = ""C:\Program Files\Konnekt\konnekt.exe" /autostart" ["Stamina"]

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
"SoundMAXPnP" = "C:\Program Files\Analog Devices\Core\smax4pnp.exe" ["Analog Devices, Inc."]
"SoundMAX" = ""C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray" ["Analog Devices, Inc."]
"JMB36X IDE Setup" = "C:\WINDOWS\JM\JMInsIDE.exe" [null data]
"36X Raid Configurer" = "C:\WINDOWS\system32\JMRaidSetup.exe boot" ["JMicron Technology Corp."]
"Ai Gear Help" = ""C:\Program Files\ASUS\AI Gear\GearHelp.exe"" [null data]
"AsusStartupHelp" = "C:\Program Files\ASUS\AASP\1.00.15\AsRunHelp.exe" [null data]
"WheelMouse" = "C:\Program Files\A4Tech\Mouse\Amoumain.exe" ["A4Tech Co., Ltd."]
"ISUSPM Startup" = ""C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup" ["Macrovision Corporation"]
"ISUSScheduler" = ""C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start" ["Macrovision Corporation"]
"Ai Nap" = ""C:\Program Files\ASUS\AI Nap\AiNap.exe"" [null data]
"Launch PC Probe II" = ""C:\Program Files\ASUS\PC Probe II\Probe2.exe" 1" ["ASUS"]
"UserFaultCheck" = "C:\WINDOWS\system32\dumprep 0 -u"
"NvCplDaemon" = "RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup" [MS]
"nwiz" = "nwiz.exe /install" ["NVIDIA Corporation"]
"NvMediaCenter" = "RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit" [MS]
"LanzarL2007" = ""C:\DOCUME~1\kowalsky\USTAWI~1\Temp\{2C1EEECF-E67A-4CDA-9974-42F08D958A35}\{D1DA2BA7-2592-4036-9BB2-DCCABDE8DC1A}\..\..\L2007tmp\Setup.exe" /SETUP:"/l0x0015"" ["Macrovision Corporation"]
"APVXDWIN" = ""C:\Program Files\Panda Security\Panda Antivirus 2008\APVXDWIN.EXE" /s" ["Panda Software International"]

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{02478D38-C3F9-4EFB-9B51-7695ECA05670}\(Default) = (no title provided)
  -> {HKLM...CLSID} = "Yahoo! Toolbar Helper"
                   \InProcServer32\(Default) = "C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll" ["Yahoo! Inc."]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = (no title provided)
  -> {HKLM...CLSID} = "Adobe PDF Reader Link Helper"
                   \InProcServer32\(Default) = "C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll" ["Adobe Systems Incorporated"]
{53707962-6F74-2D53-2644-206D7942484F}\(Default) = (no title provided)
  -> {HKLM...CLSID} = "Spybot-S&D IE Protection"
                   \InProcServer32\(Default) = "C:\PROGRA~1\SPYBOT~2\SDHelper.dll" ["Safer Networking Limited"]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\(Default) = (no title provided)
  -> {HKLM...CLSID} = "SSVHelper Class"
                   \InProcServer32\(Default) = "C:\Program Files\Java\jre1.6.0\bin\ssv.dll" ["Sun Microsystems, Inc."]

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Rozszerzenie CPL kadrowania wyświetlania"
  -> {HKLM...CLSID} = "Rozszerzenie CPL kadrowania wyświetlania"
                   \InProcServer32\(Default) = "deskpan.dll" [file not found]
"{88895560-9AA2-1069-930E-00AA0030EBC8}" = "Rozszerzenie ikony HyperTerminalu"
  -> {HKLM...CLSID} = "HyperTerminal Icon Ext"
                   \InProcServer32\(Default) = "C:\WINDOWS\system32\hticons.dll" ["Hilgraeve, Inc."]
"{B41DB860-8EE4-11D2-9906-E49FADC173CA}" = "WinRAR shell extension"
  -> {HKLM...CLSID} = "WinRAR"
                   \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]
"{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" = "OpenOffice.org Column Handler"
  -> {HKLM...CLSID} = (no title provided)
                   \InProcServer32\(Default) = ""D:\OpenOffice.org 2.2\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
"{087B3AE3-E237-4467-B8DB-5A38AB959AC9}" = "OpenOffice.org Infotip Handler"
  -> {HKLM...CLSID} = (no title provided)
                   \InProcServer32\(Default) = ""D:\OpenOffice.org 2.2\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
"{63542C48-9552-494A-84F7-73AA6A7C99C1}" = "OpenOffice.org Property Sheet Handler"
  -> {HKLM...CLSID} = (no title provided)
                   \InProcServer32\(Default) = ""D:\OpenOffice.org 2.2\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
"{3B092F0C-7696-40E3-A80F-68D74DA84210}" = "OpenOffice.org Thumbnail Viewer"
  -> {HKLM...CLSID} = (no title provided)
                   \InProcServer32\(Default) = ""D:\OpenOffice.org 2.2\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
"{23170F69-40C1-278A-1000-000100020000}" = "7-Zip Shell Extension"
  -> {HKLM...CLSID} = "7-Zip Shell Extension"
                   \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]
"{A70C977A-BF00-412C-90B7-034C51DA2439}" = "NvCpl DesktopContext Class"
  -> {HKLM...CLSID} = "DesktopContext Class"
                   \InProcServer32\(Default) = "C:\WINDOWS\system32\nvcpl.dll" ["NVIDIA Corporation"]
"{FFB699E0-306A-11d3-8BD1-00104B6F7516}" = "Play on my TV helper"
  -> {HKLM...CLSID} = "NVIDIA CPL Extension"
                   \InProcServer32\(Default) = "C:\WINDOWS\system32\nvcpl.dll" ["NVIDIA Corporation"]
"{1CDB2949-8F65-4355-8456-263E7C208A5D}" = "Desktop Explorer"
  -> {HKLM...CLSID} = "Desktop Explorer"
                   \InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]
"{1E9B04FB-F9E5-4718-997B-B8DA88302A47}" = "Desktop Explorer Menu"
  -> {HKLM...CLSID} = (no title provided)
                   \InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]
"{1E9B04FB-F9E5-4718-997B-B8DA88302A48}" = "nView Desktop Context Menu"
  -> {HKLM...CLSID} = "nView Desktop Context Menu"
                   \InProcServer32\(Default) = "C:\WINDOWS\system32\nvshell.dll" ["NVIDIA Corporation"]
"{950FF917-7A57-46BC-8017-59D9BF474000}" = "Shell Extension for CDRW"
  -> {HKLM...CLSID} = "Shell Extension for CDRW"
                   \InProcServer32\(Default) = "C:\Program Files\Ahead\InCD\incdshx.dll" ["Nero AG"]
"{65756541-C65C-11CD-0000-4B656E696100}" = "Panda Antivirus"
  -> {HKLM...CLSID} = "Panda Antivirus"
                   \InProcServer32\(Default) = "C:\Program Files\Panda Security\Panda Antivirus 2008\ShellTit.dll" ["Panda Software International"]

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\
<<!>> avldr\DLLName = "avldr.dll" ["Panda Software International"]
<<!>> mmutilse32\DLLName = "mmutilse32.dll" [MS]

HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\(Default) = "OpenOffice.org Column Handler"
  -> {HKLM...CLSID} = (no title provided)
                   \InProcServer32\(Default) = ""D:\OpenOffice.org 2.2\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
{F9DB5320-233E-11D1-9F84-707F02C10627}\(Default) = "PDF Column Info"
  -> {HKLM...CLSID} = "PDF Shell Extension"
                   \InProcServer32\(Default) = "C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll" ["Adobe Systems, Inc."]

HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\
7-Zip\(Default) = "{23170F69-40C1-278A-1000-000100020000}"
  -> {HKLM...CLSID} = "7-Zip Shell Extension"
                   \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]
Panda Antivirus\(Default) = "{65756541-C65C-11CD-0000-4B656E696100}"
  -> {HKLM...CLSID} = "Panda Antivirus"
                   \InProcServer32\(Default) = "C:\Program Files\Panda Security\Panda Antivirus 2008\ShellTit.dll" ["Panda Software International"]
WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
  -> {HKLM...CLSID} = "WinRAR"
                   \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\
7-Zip\(Default) = "{23170F69-40C1-278A-1000-000100020000}"
  -> {HKLM...CLSID} = "7-Zip Shell Extension"
                   \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]
WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
  -> {HKLM...CLSID} = "WinRAR"
                   \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\
Panda Antivirus\(Default) = "{65756541-C65C-11CD-0000-4B656E696100}"
  -> {HKLM...CLSID} = "Panda Antivirus"
                   \InProcServer32\(Default) = "C:\Program Files\Panda Security\Panda Antivirus 2008\ShellTit.dll" ["Panda Software International"]
WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
  -> {HKLM...CLSID} = "WinRAR"
                   \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]


Group Policies {GPedit.msc branch and setting}:
-----------------------------------------------

Note: detected settings may not have any effect.

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\

"DisableRegistryTools" = (REG_DWORD) dword:0x00000000
{User Configuration|Administrative Templates|System|
Prevent access to registry editing tools}

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\

"shutdownwithoutlogon" = (REG_DWORD) dword:0x00000001
{Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options|
Shutdown: Allow system to be shut down without having to log on}

"undockwithoutlogon" = (REG_DWORD) dword:0x00000001
{Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options|
Devices: Allow undock without having to log on}


Active Desktop and Wallpaper:
-----------------------------

Active Desktop may be disabled at this entry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState

Displayed if Active Desktop enabled and wallpaper not set by Group Policy:
HKCU\Software\Microsoft\Internet Explorer\Desktop\General\
"Wallpaper" = "C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp"

Displayed if Active Desktop disabled and wallpaper not set by Group Policy:
HKCU\Control Panel\Desktop\
"Wallpaper" = "C:\Documents and Settings\kowalsky\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp"


Startup items in "kowalsky" & "All Users" startup folders:
----------------------------------------------------------

C:\Documents and Settings\kowalsky\Menu Start\Programy\Autostart
"GIGABYTE VGA Utility" -> shortcut to: "C:\Documents and Settings\kowalsky\Dane aplikacji\Microsoft\Installer\{D27BDB5D-3B4C-44F0-A648-BD00B0E79B39}\Utility.exe2_D27BDB5D3B4C44F0A648BD00B0E79B39.exe" ["Macrovision Corporation"]


Winsock2 Service Provider DLLs:
-------------------------------

Namespace Service Providers

HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
000000000001\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]
000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]
000000000003\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]

Transport Service Providers

HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
C:\Program Files\Panda Security\Panda Antivirus 2008\pavlsp.dll ["Panda Software International"], 01 - 03, 36
%SYSTEMROOT%\system32\nvappfilter.dll ["NVIDIA"], 04 - 06, 12
%SystemRoot%\system32\mswsock.dll [MS], 07 - 09, 13 - 35
%SystemRoot%\system32\rsvpsp.dll [MS], 10 - 11


Toolbars, Explorer Bars, Extensions:
------------------------------------

Toolbars

HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\
"{EF99BD32-C1FB-11D2-892F-0090271D4F88}"
  -> {HKLM...CLSID} = "Yahoo! Toolbar"
                   \InProcServer32\(Default) = "C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll" ["Yahoo! Inc."]

HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\
"{EF99BD32-C1FB-11D2-892F-0090271D4F88}" = (no title provided)
  -> {HKLM...CLSID} = "Yahoo! Toolbar"
                   \InProcServer32\(Default) = "C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll" ["Yahoo! Inc."]

Extensions (Tools menu items, main toolbar menu buttons)

HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\
{08B0E5C0-4FCB-11CF-AAA5-00401C608501}\
"MenuText" = "Sun Java Console"
"CLSIDExtension" = "{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}"
  -> {HKCU...CLSID} = "Java Plug-in 1.5.0_10"
                   \InProcServer32\(Default) = "C:\Program Files\Java\jre1.6.0\bin\ssv.dll" ["Sun Microsystems, Inc."]
  -> {HKLM...CLSID} = "Java Plug-in 1.5.0_10"
                   \InProcServer32\(Default) = "C:\Program Files\Java\jre1.5.0_10\bin\npjpi150_10.dll" ["Sun Microsystems, Inc."]

{DFB852A3-47F8-48C4-A200-58CAB36FD2A2}\
"MenuText" = "Spybot - Search & Destroy Configuration"
"CLSIDExtension" = "{53707962-6F74-2D53-2644-206D7942484F}"
  -> {HKLM...CLSID} = "Spybot-S&D IE Protection"
                   \InProcServer32\(Default) = "C:\PROGRA~1\SPYBOT~2\SDHelper.dll" ["Safer Networking Limited"]


Miscellaneous IE Hijack Points
------------------------------

HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\
<<H>> "{EF99BD32-C1FB-11D2-892F-0090271D4F88}" = "*h" (unwritable string)
  -> {HKLM...CLSID} = "Yahoo! Toolbar"
                   \InProcServer32\(Default) = "C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll" ["Yahoo! Inc."]


Running Services (Display Name, Service Name, Path {Service DLL}):
------------------------------------------------------------------

ForceWare Intelligent Application Manager (IAM), ForceWare Intelligent Application Manager (IAM), "C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe" [empty string]
ForceWare IP service, nSvcIp, "C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe" ["NVIDIA Corporation"]
ForceWare user log service, nSvcLog, "C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe" ["NVIDIA Corporation"]
Forceware Web Interface, ForcewareWebInterface, ""C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe" -k runservice" ["Apache Software Foundation"]
InCD Helper, InCDsrv, "C:\Program Files\Ahead\InCD\InCDsrv.exe" ["Nero AG"]
NVIDIA Display Driver Service, NVSvc, "C:\WINDOWS\system32\nvsvc32.exe" ["NVIDIA Corporation"]
Panda anti-virus service, PAVSRV, ""C:\Program Files\Panda Security\Panda Antivirus 2008\pavsrv51.exe"" ["Panda Software International"]
Panda IManager Service, PSIMSVC, ""C:\Program Files\Panda Security\Panda Antivirus 2008\PsImSvc.exe"" ["Panda Software International"]
Panda Process Protection Service, PavPrSrv, ""C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe"" ["Panda Software"]
Panda Software Controller, Panda Software Controller, ""C:\Program Files\Panda Security\Panda Antivirus 2008\PsCtrls.exe"" ["Panda Software International"]
Sunbelt Kerio Personal Firewall 4, KPF4, ""C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe"" ["Sunbelt Software"]
Usługa Pomocnik IPv6, 6to4, "C:\WINDOWS\system32\svchost.exe -k netsvcs" {"C:\WINDOWS\System32\6to4svc.dll" [MS]}


---------- (launch time: 2008-02-18 18:25:26)
<<!>>: Suspicious data at a malware launch point.
<<H>>: Suspicious data at a browser hijack point.

+ This report excludes default entries except where indicated.
+ To see *everywhere* the script checks and *everything* it finds,
  launch it from a command prompt or a shortcut with the -all parameter.
+ The search for DESKTOP.INI DLL launch points on all local fixed drives
  took 53 seconds.
---------- (total run time: 83 seconds)
Awatar użytkownika
conter
~user
 
Posty: 203
Dołączenie: 23 Sty 2006, 23:17
Miejscowość: Gorzów
Pochwały: 1



Postprzez wojtas 18 Lut 2008, 19:29

Wykonaj to co jest podane w tym temacie

Zastosuj SDFix . Po pobraniu uruchom go a rozpakuje się do C:\SDFix. Uruchom komputer w trybie awaryjnym (F8 przy stracie systemu). Będąc w awaryjnym uruchom plik RunThis.bat z folderu SDFixa. Zatwierdź czyszczenie przez Y. Poczekaj aż ukończy i komputer zresetuje

Potem wejdz do folderu C:\SDFix wrzuc zawartość pliku Report.txt + log z combofixa oraz z hijacka
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656



Postprzez conter 18 Lut 2008, 21:41

Brak poprawy, taki denerwujący objaw to gdy www sie już załaduje jeśli che ściągnąć jakiś program to graniczy to z cudem


Kod: Zaznacz wszystko
catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-18 19:10:56
Windows 5.1.2600 Dodatek Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC]
"p0"="C:\Program Files\DAEMON Tools Pro\"
"h0"=dword:00000000
"hdf12"=hex:8f,9d,f2,4b,53,86,19,32,1e,4a,0b,64,75,96,7f,05,55,36,f9,b8,3d,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001]
"a0"=hex:20,01,00,00,55,27,b8,42,58,e8,dc,83,dd,1c,12,46,f3,4e,e5,5a,2b,..
"hdf12"=hex:33,45,3c,58,0e,b4,da,ab,09,32,22,cd,c7,69,20,02,bf,1e,a6,45,0b,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0]
"hdf12"=hex:80,cd,aa,9c,bd,0a,53,4b,ac,89,82,93,dd,11,67,28,c9,b7,a5,ae,8e,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002]
"a0"=hex:20,01,00,00,c6,a8,ca,64,0f,85,f7,fb,72,d7,cc,2d,97,4b,bd,01,ab,..
"hdf12"=hex:4f,c2,78,26,5b,80,ff,50,3f,26,c6,5e,fd,3b,25,fe,51,07,3c,eb,c5,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002\gdq0]
"hdf12"=hex:44,f9,a5,9e,aa,21,e2,3a,ff,e1,4b,83,ff,7b,64,06,6a,89,6e,85,93,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002\gdq1]
"hdf12"=hex:84,0a,18,58,80,7b,f3,f7,20,71,30,0c,a4,d1,3b,ff,a3,45,f4,37,bf,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC]
"p0"="C:\Program Files\DAEMON Tools Pro\"
"h0"=dword:00000000
"hdf12"=hex:8f,9d,f2,4b,53,86,19,32,1e,4a,0b,64,75,96,7f,05,55,36,f9,b8,3d,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001]
"a0"=hex:20,01,00,00,55,27,b8,42,58,e8,dc,83,dd,1c,12,46,f3,4e,e5,5a,2b,..
"hdf12"=hex:33,45,3c,58,0e,b4,da,ab,09,32,22,cd,c7,69,20,02,bf,1e,a6,45,0b,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0]
"hdf12"=hex:80,cd,aa,9c,bd,0a,53,4b,ac,89,82,93,dd,11,67,28,c9,b7,a5,ae,8e,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002]
"a0"=hex:20,01,00,00,c6,a8,ca,64,0f,85,f7,fb,72,d7,cc,2d,97,4b,bd,01,ab,..
"hdf12"=hex:4f,c2,78,26,5b,80,ff,50,3f,26,c6,5e,fd,3b,25,fe,51,07,3c,eb,c5,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002\gdq0]
"hdf12"=hex:44,f9,a5,9e,aa,21,e2,3a,ff,e1,4b,83,ff,7b,64,06,6a,89,6e,85,93,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002\gdq1]
"hdf12"=hex:84,0a,18,58,80,7b,f3,f7,20,71,30,0c,a4,d1,3b,ff,a3,45,f4,37,bf,..

scanning hidden registry entries ...

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\A\1\5\1c]
"Order"=hex:08,00,00,00,02,00,00,00,b8,01,00,00,01,00,00,00,04,00,00,00,8c,..

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0




Kod: Zaznacz wszystko
ComboScan v20070306.20 run by kowalsky on 2008-02-18 at 19:15:37
Computer is in Normal Mode.
--------------------------------------------------------------------------------



-- HijackThis (run as kowalsky.exe) --------------------------------------------

Logfile of HijackThis v1.99.1
Scan saved at 19:15, on 2008-02-18
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Panda Security\Panda Antivirus 2008\pavsrv51.exe
C:\Program Files\Panda Security\Panda Antivirus 2008\AVENGINE.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Panda Security\Panda Antivirus 2008\PsCtrls.exe
C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
C:\Program Files\Panda Security\Panda Antivirus 2008\PsImSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Panda Security\Panda Antivirus 2008\ApvxdWin.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Panda Security\Panda Antivirus 2008\WebProxy.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\ASUS\AI Gear\GearHelp.exe
C:\Program Files\A4Tech\Mouse\Amoumain.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\ASUS\AI Nap\AiNap.exe
C:\Program Files\ASUS\PC Probe II\Probe2.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Konnekt\konnekt.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\ASUS\AASP\1.00.15\aaCenter.exe
C:\Program Files\AutoConnect\AutoConnect.exe
D:\Moje dokument1y\comboscan.exe
D:\MOJEDO~1\hihackis\kowalsky.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~2\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\JM\JMInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\JMRaidSetup.exe boot
O4 - HKLM\..\Run: [Ai Gear Help] "C:\Program Files\ASUS\AI Gear\GearHelp.exe"
O4 - HKLM\..\Run: [AsusStartupHelp] C:\Program Files\ASUS\AASP\1.00.15\AsRunHelp.exe
O4 - HKLM\..\Run: [WheelMouse] C:\Program Files\A4Tech\Mouse\Amoumain.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Ai Nap] "C:\Program Files\ASUS\AI Nap\AiNap.exe"
O4 - HKLM\..\Run: [Launch PC Probe II] "C:\Program Files\ASUS\PC Probe II\Probe2.exe" 1
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [LanzarL2007] "C:\DOCUME~1\kowalsky\USTAWI~1\Temp\{2C1EEECF-E67A-4CDA-9974-42F08D958A35}\{D1DA2BA7-2592-4036-9BB2-DCCABDE8DC1A}\..\..\L2007tmp\Setup.exe" /SETUP:"/l0x0015"
O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Security\Panda Antivirus 2008\APVXDWIN.EXE" /s
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [Launch Ai Booster] "C:\Program Files\ASUS\AI Booster\OverClk.exe"
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [Konnekt] "C:\Program Files\Konnekt\konnekt.exe" /autostart
O4 - Startup: GIGABYTE VGA Utility.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~2\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~2\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nvappfilter.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{6F41A169-A36D-4CB0-8BA7-A99357183F88}: NameServer = 213.241.79.37 83.238.255.76
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: avldr - C:\WINDOWS\SYSTEM32\avldr.dll
O20 - Winlogon Notify: mmutilse32 - C:\WINDOWS\SYSTEM32\mmutilse32.dll
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe" -k runservice (file missing)
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Panda Software Controller - Panda Software International - C:\Program Files\Panda Security\Panda Antivirus 2008\PsCtrls.exe
O23 - Service: Panda Process Protection Service (PavPrSrv) - Panda Software - C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
O23 - Service: Panda anti-virus service (PAVSRV) - Panda Software International - C:\Program Files\Panda Security\Panda Antivirus 2008\pavsrv51.exe
O23 - Service: Panda IManager Service (PSIMSVC) - Panda Software International - C:\Program Files\Panda Security\Panda Antivirus 2008\PsImSvc.exe
O23 - Service: Ventrilo - Unknown owner - C:\Program Files\VentSrv\ventrilo_svc.exe (file missing)


-- Files created between 2008-01-18 and 2008-02-18 -----------------------------

2008-02-18 19:06:58         0 d-------- C:\WINDOWS\ERUNT
2008-02-18 19:02:25         0 d-------- C:\SDFix
2008-02-18 18:09:32     38968 --a------ C:\WINDOWS\system32\drivers\ShlDrv51.sys
2008-02-18 18:09:32    178872 --a------ C:\WINDOWS\system32\drivers\PavProc.sys
2008-02-18 18:09:32         0 d-------- C:\Program Files\Common Files\Panda Software<PANDAS~1>
2008-02-18 17:53:57       248 --a------ C:\WINDOWS\system32\PavCPL.dat
2008-02-18 17:53:57     83896 --a------ C:\WINDOWS\system32\drivers\pavdrv51.sys
2008-02-18 17:53:53         0 d-------- C:\WINDOWS\system32\PAV
2008-02-18 17:53:47     50736 --a------ C:\WINDOWS\system32\avldr.dll
2008-02-18 17:53:47         0 d-------- C:\Program Files\Panda Security<PANDAS~1>
2008-02-17 22:14:03    164352 --a------ C:\WINDOWS\system32\unrar.dll
2008-02-17 22:14:01    217088 --a------ C:\WINDOWS\system32\yv12vfw.dll
2008-02-17 22:14:01   1559040 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-02-17 22:14:00    282624 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-02-17 22:14:00   3596288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2008-02-17 22:14:00     81920 --a------ C:\WINDOWS\system32\dpl100.dll
2008-02-17 22:14:00    682496 --a------ C:\WINDOWS\system32\divx.dll
2008-02-17 22:13:59      7680 --a------ C:\WINDOWS\system32\ff_vfw.dll
2008-02-17 22:13:58         0 d-------- C:\Program Files\K-Lite Codec Pack<K-LITE~1>
2008-02-11 19:34:33   2973696 -----n--- C:\WINDOWS\NuNinst.exe
2008-02-11 19:34:30      8704 -----n--- C:\WINDOWS\system32\drivers\InCDrec.sys
2008-02-11 19:34:30     29696 -----n--- C:\WINDOWS\system32\drivers\InCDpass.sys
2008-02-11 19:34:30     99584 -----n--- C:\WINDOWS\system32\drivers\InCDfs.sys
2008-02-11 19:34:29     28672 -----n--- C:\WINDOWS\system32\drivers\InCDrm.sys
2008-02-11 19:34:27         0 d-------- C:\WINDOWS\InCD
2008-02-11 18:45:06         0 d-------- C:\Program Files\AVSMedia
2008-02-11 15:24:10         0 d-------- C:\Program Files\Gadu-Gadu<GADU-G~1>
2008-02-08 18:12:09         0 d-------- C:\WINDOWS\system32\FTCodecs
2008-02-08 18:12:06         0 d-------- C:\Program Files\Fantasysoft-Studio<FANTAS~1>
2008-02-08 17:49:35         0 d-------- C:\Program Files\Common Files\AVSMedia
2008-02-08 17:49:27    413760 --a------ C:\WINDOWS\system32\mpg4c32.dll
2008-02-08 17:49:27    261632 --a------ C:\WINDOWS\system32\mcdvd_32.dll
2008-02-08 17:49:27   1700352 --a------ C:\WINDOWS\system32\GdiPlus.dll
2008-02-08 17:49:26         0 d-------- C:\Program Files\AVS4YOU
2008-02-05 23:18:05         0 d-------- C:\Program Files\PhotoCleaner<PHOTOC~1>
2008-02-05 23:16:03         0 d-------- C:\Program Files\Common Files\Blizzard Entertainment<BLIZZA~1>
2008-02-04 16:03:47     80896 --a------ C:\WINDOWS\system32\Winstr.dll
2008-02-04 16:03:47     89600 --a------ C:\WINDOWS\system32\Winsdec.dll
2008-02-04 16:03:47     60416 --a------ C:\WINDOWS\system32\Winplay.dll
2008-02-04 16:03:47    322832 --a------ C:\WINDOWS\system32\Mfc30.dll
2008-02-04 16:03:47    117248 --a------ C:\WINDOWS\system32\Edec.dll
2008-02-04 16:03:47     98816 --a------ C:\WINDOWS\system32\Dec130.dll
2008-02-04 16:03:47     39936 --a------ C:\WINDOWS\system32\D2htls32.dll
2008-02-04 16:03:47    202752 --a------ C:\WINDOWS\system32\D2hlnk32.dll
2008-01-31 13:04:27         0 d-------- C:\Program Files\xp-AntiSpy<XP-ANT~1>
2008-01-28 01:05:47       545 --a------ C:\WINDOWS\UC.PIF
2008-01-28 01:05:47       545 --a------ C:\WINDOWS\RAR.PIF
2008-01-28 01:05:47       545 --a------ C:\WINDOWS\PKZIP.PIF
2008-01-28 01:05:47       545 --a------ C:\WINDOWS\PKUNZIP.PIF
2008-01-28 01:05:47       545 --a------ C:\WINDOWS\NOCLOSE.PIF
2008-01-28 01:05:47       545 --a------ C:\WINDOWS\LHA.PIF
2008-01-28 01:05:47       545 --a------ C:\WINDOWS\ARJ.PIF
2008-01-28 01:05:47         0 d-------- C:\totalcmd
2008-01-24 13:14:03    304128 --a------ C:\WINDOWS\IsUninst.exe
2008-01-21 23:16:57         0 d-------- C:\Program Files\mIRC
2008-01-21 22:15:24    368912 -ra------ C:\WINDOWS\system32\VBAR332.DLL
2008-01-21 22:15:24   1039360 -ra------ C:\WINDOWS\system32\MSJET35.DLL
2008-01-21 22:15:05    607744 -----n--- C:\WINDOWS\system32\Decslib.dll
2008-01-21 22:14:30         0 d-------- C:\Program Files\Corel
2008-01-21 22:14:28    112688 -----n--- C:\WINDOWS\system32\shw32.dll
2008-01-21 22:14:28     39095 -----n--- C:\WINDOWS\iccsigs.dat
2008-01-21 22:14:27    553984 -----n--- C:\WINDOWS\system32\rave.dll
2008-01-21 22:14:27    909824 -----n--- C:\WINDOWS\system32\qd3d.dll
2008-01-21 22:14:27     70656 -----n--- C:\WINDOWS\system32\3dviewer.dll
2008-01-21 22:14:23    168448 -----n--- C:\WINDOWS\system32\Awrtl30.dll
2008-01-21 22:14:23    100864 -----n--- C:\WINDOWS\system32\awpe.dll
2008-01-21 22:14:19    225280 -----n--- C:\WINDOWS\system32\Scint91.dll
2008-01-21 22:14:19    110592 -----n--- C:\WINDOWS\system32\Sccres91.dll
2008-01-21 22:14:19    245760 -----n--- C:\WINDOWS\system32\Sccomp91.dll
2008-01-21 22:14:16         0 d-------- C:\WINDOWS\Profiles
2008-01-21 22:12:22         0 d-------- C:\WINDOWS\Corel
2008-01-21 09:54:33         0 d-------- C:\WINDOWS\system32\LogFiles
2008-01-19 23:52:27         0 d-------- C:\WINDOWS\erdnt
2008-01-19 23:52:06     49152 --a------ C:\WINDOWS\system32\VFind.exe
2008-01-19 23:52:06    156160 --a------ C:\WINDOWS\system32\swreg.exe
2008-01-19 23:52:05    212480 --a------ C:\WINDOWS\system32\swxcacls.exe
2008-01-19 23:52:05    136704 --a------ C:\WINDOWS\system32\swsc.exe
2008-01-19 23:51:40         0 d-------- C:\ComboFix
2008-01-19 21:12:41   1033728 --a------ C:\WINDOWS\system32\sqlrcmd.dll
2008-01-18 11:28:59         0 d-------- C:\Program Files\The Privacy Guard<THEPRI~1>
2008-01-18 11:22:05         0 d-------- C:\Firefox - Download Statusbar 0.9.5.1<FIREFO~1.1>


-- Find3M Report ---------------------------------------------------------------

2008-02-18 19:15:17         0 d-------- C:\Program Files\AutoConnect<AUTOCO~1>
2008-02-18 19:14:29    457574 --a------ C:\WINDOWS\system32\perfh015.dat
2008-02-18 19:14:29     79606 --a------ C:\WINDOWS\system32\perfc015.dat
2008-02-18 19:06:16         0 d-------- C:\Program Files\Mozilla Firefox<MOZILL~1>
2008-02-18 17:53:47         0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1>
2008-02-18 15:09:30         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\OpenOffice.org2<OPENOF~1.ORG>
2008-02-17 22:05:01         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\uTorrent
2008-02-14 20:59:08         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Skype
2008-02-14 20:47:03         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\skypePM
2008-02-11 22:06:20         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\CyberLink<CYBERL~1>
2008-02-11 19:19:16         0 d-------- C:\Program Files\CyberLink DVD Solution<CYBERL~1>
2008-02-11 16:33:08         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\mIRC
2008-02-08 17:59:57         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\AVS4YOU
2008-02-05 23:23:51      4542 --a------ C:\Documents and Settings\kowalsky\Dane aplikacji\photocleaner.log<PHOTOC~1.LOG>
2008-02-05 23:20:39         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\PhotoCleaner<PHOTOC~1>
2008-02-03 22:59:50         0 d-------- C:\Program Files\Pcsx2_0.9.4<PCSX2_~1.4>
2008-02-03 02:17:59         0 d-------- C:\Program Files\MarBit
2008-02-03 02:14:44         0 d-------- C:\Program Files\DivX
2008-02-03 02:04:17         0 d-------- C:\Program Files\AIMP2
2008-01-31 13:10:14         0 d-------- C:\Program Files\Messenger<MESSEN~1>
2008-01-30 15:46:41         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Aston
2008-01-27 14:23:03         0 d-------- C:\Program Files\VentSrv
2008-01-27 14:22:53         0 d-------- C:\Program Files\ePSXe
2008-01-27 14:10:19         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Lavasoft
2008-01-24 16:02:03         0 d-------- C:\Program Files\Deutsch Translator 2<DEUTSC~1>
2008-01-22 17:23:29         0 d-------- C:\Program Files\DirectShow Pack<DIRECT~1>
2008-01-21 22:16:25         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Corel
2008-01-21 20:32:53         0 d-------- C:\Program Files\Pcsx2
2008-01-17 21:22:10         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Ventrilo
2008-01-17 21:22:10         0 d---s---- C:\Documents and Settings\kowalsky\Dane aplikacji\Microsoft<MICROS~1>
2008-01-17 15:50:38         0 d-------- C:\Program Files\Spybot - Search & Destroy2<SPYBOT~2>
2008-01-16 19:37:30         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Hamachi
2008-01-16 16:11:35         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Thinstall<THINST~1>
2008-01-16 15:14:50         0 d-------- C:\Program Files\Alwil Software<ALWILS~1>
2008-01-13 21:50:35         0 d-------- C:\Program Files\uTorrent
2008-01-12 14:24:56         0 d-------- C:\Program Files\TC UP<TCUP~1>
2008-01-12 14:24:26         0 d-------- C:\Program Files\SubEdit-Player<SUBEDI~1>
2008-01-12 13:40:43         0 d-------- C:\Program Files\Webteh
2008-01-12 13:40:37         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\BSplayer PRO<BSPLAY~1>
2008-01-12 13:39:02         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Bassic Technologies<BASSIC~1>
2008-01-12 13:38:39         0 d-------- C:\Program Files\Bassic Technologies<BASSIC~1>
2008-01-11 23:04:21         0 d-------- C:\Program Files\NAPI-PROJEKT<NAPI-P~1>
2008-01-10 16:40:06         0 d-------- C:\Program Files\MemSet
2008-01-07 19:31:48         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Media Player Classic<MEDIAP~1>
2008-01-05 14:57:17         0 d-------- C:\Documents and Settings\kowalsky\Dane aplikacji\Help
2007-12-28 14:54:44         0 d-------- C:\Program Files\Ahead
2007-12-28 14:49:42         0 d-------- C:\Program Files\CyberLink<CYBERL~2>
2007-12-28 14:42:19         0 d-------- C:\Program Files\Common Files\Ahead
2007-12-28 00:22:55         0 d-------- C:\Program Files\The KMPlayer<THEKMP~1>
2007-12-27 17:33:00         0 d-------- C:\Program Files\Common Files\DirectX
2007-12-26 22:11:14         0 d-------- C:\Program Files\Skype
2007-12-26 22:11:09         0 d-------- C:\Program Files\Common Files\Skype
2007-12-22 20:02:16       684 --a------ C:\WINDOWS\mozver.dat
2007-12-21 07:34:57         0 d-------- C:\Program Files\7-Zip
2007-12-14 22:55:19    262144 --a------ C:\WINDOWS\system32\wrap_oal.dll
2007-12-14 22:55:19     86016 --a------ C:\WINDOWS\system32\OpenAL32.dll
2007-12-13 19:30:22     98304 --a------ C:\WINDOWS\system32CmdLineExt.dll<SYSTEM~1.DLL>
2007-12-13 16:15:42         0 --a------ C:\WINDOWS\nsreg.dat
2007-12-13 15:45:07        62 --ahs---- C:\Documents and Settings\kowalsky\Dane aplikacji\desktop.ini
2007-12-13 15:16:40         0 -rahs---- C:\MSDOS.SYS
2007-12-13 15:16:40         0 -rahs---- C:\IO.SYS
2007-12-13 15:16:40         0 --a------ C:\CONFIG.SYS
2007-12-13 15:16:40         0 --a------ C:\AUTOEXEC.BAT
2007-12-13 15:13:26     21856 --a------ C:\WINDOWS\system32\emptyregdb.dat<EMPTYR~1.DAT>
2007-12-05 02:53:08    356352 --a------ C:\WINDOWS\system32\NVUNINST.EXE
2007-12-05 01:41:00   1626112 --a------ C:\WINDOWS\system32\nwiz.exe
2007-12-05 01:41:00   2519040 --a------ C:\WINDOWS\system32\nvwssr.dll
2007-12-05 01:41:00   2498560 --a------ C:\WINDOWS\system32\nvwss.dll
2007-12-05 01:41:00    167936 --a------ C:\WINDOWS\system32\nvwrszht.dll
2007-12-05 01:41:00    163840 --a------ C:\WINDOWS\system32\nvwrszhc.dll
2007-12-05 01:41:00    303104 --a------ C:\WINDOWS\system32\nvwrstr.dll
2007-12-05 01:41:00    290816 --a------ C:\WINDOWS\system32\nvwrsth.dll
2007-12-05 01:41:00    294912 --a------ C:\WINDOWS\system32\nvwrssv.dll
2007-12-05 01:41:00    303104 --a------ C:\WINDOWS\system32\nvwrssl.dll
2007-12-05 01:41:00    299008 --a------ C:\WINDOWS\system32\nvwrssk.dll
2007-12-05 01:41:00    315392 --a------ C:\WINDOWS\system32\nvwrsru.dll
2007-12-05 01:41:00    319488 --a------ C:\WINDOWS\system32\nvwrsptb.dll
2007-12-05 01:41:00    323584 --a------ C:\WINDOWS\system32\nvwrspt.dll
2007-12-05 01:41:00    294912 --a------ C:\WINDOWS\system32\nvwrspl.dll
2007-12-05 01:41:00    299008 --a------ C:\WINDOWS\system32\nvwrsno.dll
2007-12-05 01:41:00    319488 --a------ C:\WINDOWS\system32\nvwrsnl.dll
2007-12-05 01:41:00    196608 --a------ C:\WINDOWS\system32\nvwrsko.dll
2007-12-05 01:41:00    212992 --a------ C:\WINDOWS\system32\nvwrsja.dll
2007-12-05 01:41:00    323584 --a------ C:\WINDOWS\system32\nvwrsit.dll
2007-12-05 01:41:00    315392 --a------ C:\WINDOWS\system32\nvwrshu.dll
2007-12-05 01:41:00    278528 --a------ C:\WINDOWS\system32\nvwrshe.dll
2007-12-05 01:41:00    327680 --a------ C:\WINDOWS\system32\nvwrsfr.dll
2007-12-05 01:41:00    303104 --a------ C:\WINDOWS\system32\nvwrsfi.dll
2007-12-05 01:41:00    327680 --a------ C:\WINDOWS\system32\nvwrsesm.dll
2007-12-05 01:41:00    335872 --a------ C:\WINDOWS\system32\nvwrses.dll
2007-12-05 01:41:00    286720 --a------ C:\WINDOWS\system32\nvwrseng.dll
2007-12-05 01:41:00    335872 --a------ C:\WINDOWS\system32\nvwrsel.dll
2007-12-05 01:41:00    311296 --a------ C:\WINDOWS\system32\nvwrsde.dll
2007-12-05 01:41:00    294912 --a------ C:\WINDOWS\system32\nvwrsda.dll
2007-12-05 01:41:00    286720 --a------ C:\WINDOWS\system32\nvwrscs.dll
2007-12-05 01:41:00    282624 --a------ C:\WINDOWS\system32\nvwrsar.dll
2007-12-05 01:41:00   1019904 --a------ C:\WINDOWS\system32\nvwimg.dll
2007-12-05 01:41:00   1703936 --a------ C:\WINDOWS\system32\nvwdmcpl.dll
2007-12-05 01:41:00     81920 --a------ C:\WINDOWS\system32\nvwddi.dll
2007-12-05 01:41:00   3715072 --a------ C:\WINDOWS\system32\nvvitvsr.dll
2007-12-05 01:41:00   3710976 --a------ C:\WINDOWS\system32\nvvitvs.dll
2007-12-05 01:41:00    356352 --a------ C:\WINDOWS\system32\nvudisp.exe
2007-12-05 01:41:00    155716 --a------ C:\WINDOWS\system32\nvsvc32.exe
2007-12-05 01:41:00    466944 --a------ C:\WINDOWS\system32\nvshell.dll
2007-12-05 01:41:00    126976 --a------ C:\WINDOWS\system32\nvrszht.dll
2007-12-05 01:41:00    225280 --a------ C:\WINDOWS\system32\nvrszhc.dll
2007-12-05 01:41:00    258048 --a------ C:\WINDOWS\system32\nvrstr.dll
2007-12-05 01:41:00    253952 --a------ C:\WINDOWS\system32\nvrsth.dll
2007-12-05 01:41:00    253952 --a------ C:\WINDOWS\system32\nvrssv.dll
2007-12-05 01:41:00    258048 --a------ C:\WINDOWS\system32\nvrssl.dll
2007-12-05 01:41:00    258048 --a------ C:\WINDOWS\system32\nvrssk.dll
2007-12-05 01:41:00    270336 --a------ C:\WINDOWS\system32\nvrsru.dll
2007-12-05 01:41:00    266240 --a------ C:\WINDOWS\system32\nvrsptb.dll
2007-12-05 01:41:00    274432 --a------ C:\WINDOWS\system32\nvrspt.dll
2007-12-05 01:41:00    253952 --a------ C:\WINDOWS\system32\nvrspl.dll
2007-12-05 01:41:00    253952 --a------ C:\WINDOWS\system32\nvrsno.dll
2007-12-05 01:41:00    274432 --a------ C:\WINDOWS\system32\nvrsnl.dll
2007-12-05 01:41:00    258048 --a------ C:\WINDOWS\system32\nvrsko.dll
2007-12-05 01:41:00    266240 --a------ C:\WINDOWS\system32\nvrsja.dll
2007-12-05 01:41:00    278528 --a------ C:\WINDOWS\system32\nvrsit.dll
2007-12-05 01:41:00    258048 --a------ C:\WINDOWS\system32\nvrshu.dll
2007-12-05 01:41:00    327680 --a------ C:\WINDOWS\system32\nvrshe.dll
2007-12-05 01:41:00    282624 --a------ C:\WINDOWS\system32\nvrsfr.dll
2007-12-05 01:41:00    249856 --a------ C:\WINDOWS\system32\nvrsfi.dll
2007-12-05 01:41:00    274432 --a------ C:\WINDOWS\system32\nvrsesm.dll
2007-12-05 01:41:00    282624 --a------ C:\WINDOWS\system32\nvrses.dll
2007-12-05 01:41:00    245760 --a------ C:\WINDOWS\system32\nvrseng.dll
2007-12-05 01:41:00    282624 --a------ C:\WINDOWS\system32\nvrsel.dll
2007-12-05 01:41:00    278528 --a------ C:\WINDOWS\system32\nvrsde.dll
2007-12-05 01:41:00    253952 --a------ C:\WINDOWS\system32\nvrsda.dll
2007-12-05 01:41:00    249856 --a------ C:\WINDOWS\system32\nvrscs.dll
2007-12-05 01:41:00    327680 --a------ C:\WINDOWS\system32\nvrsar.dll
2007-12-05 01:41:00   6901760 --a------ C:\WINDOWS\system32\nvoglnt.dll
2007-12-05 01:41:00    286720 --a------ C:\WINDOWS\system32\nvnt4cpl.dll
2007-12-05 01:41:00   2854912 --a------ C:\WINDOWS\system32\nvmoblsr.dll
2007-12-05 01:41:00   1228800 --a------ C:\WINDOWS\system32\nvmobls.dll
2007-12-05 01:41:00     81920 --a------ C:\WINDOWS\system32\nvmctray.dll
2007-12-05 01:41:00    458752 --a------ C:\WINDOWS\system32\nvmccssr.dll
2007-12-05 01:41:00    188416 --a------ C:\WINDOWS\system32\nvmccss.dll
2007-12-05 01:41:00     45056 --a------ C:\WINDOWS\system32\nvmccsrs.dll
2007-12-05 01:41:00    229376 --a------ C:\WINDOWS\system32\nvmccs.dll
2007-12-05 01:41:00   1474560 --a------ C:\WINDOWS\system32\nview.dll
2007-12-05 01:41:00   3334144 --a------ C:\WINDOWS\system32\nvgamesr.dll
2007-12-05 01:41:00   3420160 --a------ C:\WINDOWS\system32\nvgames.dll
2007-12-05 01:41:00    307200 --a------ C:\WINDOWS\system32\nvexpbar.dll
2007-12-05 01:41:00   1339392 --a------ C:\WINDOWS\system32\nvdspsch.exe
2007-12-05 01:41:00   5611520 --a------ C:\WINDOWS\system32\nvdispsr.dll
2007-12-05 01:41:00   6549504 --a------ C:\WINDOWS\system32\nvdisps.dll
2007-12-05 01:41:00   1089536 --a------ C:\WINDOWS\system32\nvcuda.dll
2007-12-05 01:41:00   1073152 --a------ C:\WINDOWS\system32\nvcpluir.dll
2007-12-05 01:41:00    753664 --a------ C:\WINDOWS\system32\nvcplui.exe
2007-12-05 01:41:00   8523776 --a------ C:\WINDOWS\system32\nvcpl.dll
2007-12-05 01:41:00    147456 --a------ C:\WINDOWS\system32\nvcolor.exe
2007-12-05 01:41:00     35328 --a------ C:\WINDOWS\system32\nvcodins.dll
2007-12-05 01:41:00     35328 --a------ C:\WINDOWS\system32\nvcod.dll
2007-12-05 01:41:00    442368 --a------ C:\WINDOWS\system32\nvappbar.exe
2007-12-05 01:41:00    385024 --a------ C:\WINDOWS\system32\nvapi.dll
2007-12-05 01:41:00   5773568 --a------ C:\WINDOWS\system32\nv4_disp.dll
2007-12-05 01:41:00    425984 --a------ C:\WINDOWS\system32\keystone.exe


-- Registry Dump ---------------------------------------------------------------


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Konnekt"="\"C:\\Program Files\\Konnekt\\konnekt.exe\" /autostart"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"SoundMAXPnP"="C:\\Program Files\\Analog Devices\\Core\\smax4pnp.exe"
"SoundMAX"="\"C:\\Program Files\\Analog Devices\\SoundMAX\\Smax4.exe\" /tray"
"JMB36X IDE Setup"="C:\\WINDOWS\\JM\\JMInsIDE.exe"
"36X Raid Configurer"="C:\\WINDOWS\\system32\\JMRaidSetup.exe boot"
"Ai Gear Help"="\"C:\\Program Files\\ASUS\\AI Gear\\GearHelp.exe\""
"AsusStartupHelp"="C:\\Program Files\\ASUS\\AASP\\1.00.15\\AsRunHelp.exe"
"WheelMouse"="C:\\Program Files\\A4Tech\\Mouse\\Amoumain.exe"
"ISUSPM Startup"="\"C:\\Program Files\\Common Files\\InstallShield\\UpdateService\\ISUSPM.exe\" -startup"
"ISUSScheduler"="\"C:\\Program Files\\Common Files\\InstallShield\\UpdateService\\issch.exe\" -start"
"Ai Nap"="\"C:\\Program Files\\ASUS\\AI Nap\\AiNap.exe\""
"Launch PC Probe II"="\"C:\\Program Files\\ASUS\\PC Probe II\\Probe2.exe\" 1"
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"LanzarL2007"="\"C:\\DOCUME~1\\kowalsky\\USTAWI~1\\Temp\\{2C1EEECF-E67A-4CDA-9974-42F08D958A35}\\{D1DA2BA7-2592-4036-9BB2-DCCABDE8DC1A}\\..\\..\\L2007tmp\\Setup.exe\" /SETUP:\"/l0x0015\""
"APVXDWIN"="\"C:\\Program Files\\Panda Security\\Panda Antivirus 2008\\APVXDWIN.EXE\" /s"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0\\bin\\jusched.exe\""
"Launch Ai Booster"="\"C:\\Program Files\\ASUS\\AI Booster\\OverClk.exe\""
"MSConfig"="C:\\WINDOWS\\PCHealth\\HelpCtr\\Binaries\\MSConfig.exe /auto"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^isoGames IRC Chat.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\isoGames IRC Chat.lnk"
"backup"="C:\\WINDOWS\\pss\\isoGames IRC Chat.lnkCommon Startup"
"location"="Common Startup"
"command"="C:\\PROGRA~1\\ISOGAM~1\\MIRC6~1.16\\mirc.exe "
"item"="isoGames IRC Chat"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\!AVG Anti-Spyware]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="avgas"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Reader_sl"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="DTProAgent"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\DAEMON Tools Pro\\DTProAgent.exe\""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="InCD"
"hkey"="HKLM"
"command"="C:\\Program Files\\Ahead\\InCD\\InCD.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NeroCheck"
"hkey"="HKLM"
"command"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerBar]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PowerBar"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\CyberLink DVD Solution\\Multimedia Launcher\\PowerBar.exe\" /AtBootTime"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RamCleaner]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ramcore"
"hkey"="HKCU"
"command"="C:\\Program Files\\RamCleaner\\ramcore.exe -s"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PDVDServ"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\CyberLink DVD Solution\\PowerDVD\\PDVDServ.exe\""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedTouch USB Diagnostics]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Dragdiag"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Thomson\\SpeedTouch USB\\Dragdiag.exe\" /icon"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="TeaTimer"
"hkey"="HKCU"
"command"="C:\\Program Files\\Spybot - Search & Destroy2\\TeaTimer.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="steam"
"hkey"="HKCU"
"command"="\"d:\\steam\\steam.exe\" -silent"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wuauserv"=dword:00000002
   

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE"

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\CTFMON.EXE"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=dword:00000000

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avldr
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\mmutilse32

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter   REG_MULTI_SZ      HTTPFilter\0\0
LocalService   REG_MULTI_SZ      Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService   REG_MULTI_SZ      DnsCache\0\0
DcomLaunch   REG_MULTI_SZ      DcomLaunch\0TermService\0\0
rpcss   REG_MULTI_SZ      RpcSs\0\0
imgsvc   REG_MULTI_SZ      StiSvc\0\0
termsvcs   REG_MULTI_SZ      TermService\0\0



-- End of ComboScan: finished at 2008-02-18 at 19:16:41
------------------------




Kod: Zaznacz wszystko
[b][u]SDFix: Version 1.143[/u][/b]

Run by Administrator on 2008-02-18 at 19:08

Microsoft Windows XP [Wersja 5.1.2600]
Running From: C:\SDFix

[b][u]Checking Services[/u][/b]:


Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting...


[b][u]Checking Files[/u][/b]:

No Trojan Files Found






Removing Temp Files...

[b][u]ADS Check[/u][/b]:



                                 [b][u]Final Check[/u][/b]:

catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-18 19:10:56
Windows 5.1.2600 Dodatek Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000001

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC]
"p0"="C:\Program Files\DAEMON Tools Pro\"
"h0"=dword:00000000
"hdf12"=hex:8f,9d,f2,4b,53,86,19,32,1e,4a,0b,64,75,96,7f,05,55,36,f9,b8,3d,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001]
"a0"=hex:20,01,00,00,55,27,b8,42,58,e8,dc,83,dd,1c,12,46,f3,4e,e5,5a,2b,..
"hdf12"=hex:33,45,3c,58,0e,b4,da,ab,09,32,22,cd,c7,69,20,02,bf,1e,a6,45,0b,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0]
"hdf12"=hex:80,cd,aa,9c,bd,0a,53,4b,ac,89,82,93,dd,11,67,28,c9,b7,a5,ae,8e,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002]
"a0"=hex:20,01,00,00,c6,a8,ca,64,0f,85,f7,fb,72,d7,cc,2d,97,4b,bd,01,ab,..
"hdf12"=hex:4f,c2,78,26,5b,80,ff,50,3f,26,c6,5e,fd,3b,25,fe,51,07,3c,eb,c5,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002\gdq0]
"hdf12"=hex:44,f9,a5,9e,aa,21,e2,3a,ff,e1,4b,83,ff,7b,64,06,6a,89,6e,85,93,..

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002\gdq1]
"hdf12"=hex:84,0a,18,58,80,7b,f3,f7,20,71,30,0c,a4,d1,3b,ff,a3,45,f4,37,bf,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC]
"p0"="C:\Program Files\DAEMON Tools Pro\"
"h0"=dword:00000000
"hdf12"=hex:8f,9d,f2,4b,53,86,19,32,1e,4a,0b,64,75,96,7f,05,55,36,f9,b8,3d,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001]
"a0"=hex:20,01,00,00,55,27,b8,42,58,e8,dc,83,dd,1c,12,46,f3,4e,e5,5a,2b,..
"hdf12"=hex:33,45,3c,58,0e,b4,da,ab,09,32,22,cd,c7,69,20,02,bf,1e,a6,45,0b,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0]
"hdf12"=hex:80,cd,aa,9c,bd,0a,53,4b,ac,89,82,93,dd,11,67,28,c9,b7,a5,ae,8e,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002]
"a0"=hex:20,01,00,00,c6,a8,ca,64,0f,85,f7,fb,72,d7,cc,2d,97,4b,bd,01,ab,..
"hdf12"=hex:4f,c2,78,26,5b,80,ff,50,3f,26,c6,5e,fd,3b,25,fe,51,07,3c,eb,c5,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002\gdq0]
"hdf12"=hex:44,f9,a5,9e,aa,21,e2,3a,ff,e1,4b,83,ff,7b,64,06,6a,89,6e,85,93,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000002\gdq1]
"hdf12"=hex:84,0a,18,58,80,7b,f3,f7,20,71,30,0c,a4,d1,3b,ff,a3,45,f4,37,bf,..

scanning hidden registry entries ...

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\A\1\5\1c]
"Order"=hex:08,00,00,00,02,00,00,00,b8,01,00,00,01,00,00,00,04,00,00,00,8c,..

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


[b][u]Remaining Services[/u][/b]:



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\NVIDIA Corporation\\NetworkAccessManager\\Apache Group\\Apache2\\bin\\Apache.exe"="C:\\Program Files\\NVIDIA Corporation\\NetworkAccessManager\\Apache Group\\Apache2\\bin\\Apache.exe:*:Enabled:Apache HTTP Server"
"D:\\utott\\utorrent.exe"="D:\\utott\\utorrent.exe:*:Enabled:uTorrent"
"C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:uTorrent"
"D:\\Neverwinter Nights 2\\nwn2main.exe"="D:\\Neverwinter Nights 2\\nwn2main.exe:*:Enabled:Neverwinter Nights 2 Main"
"D:\\Neverwinter Nights 2\\nwn2main_amdxp.exe"="D:\\Neverwinter Nights 2\\nwn2main_amdxp.exe:*:Enabled:Neverwinter Nights 2 AMD"
"D:\\Neverwinter Nights 2\\nwupdate.exe"="D:\\Neverwinter Nights 2\\nwupdate.exe:*:Enabled:Neverwinter Nights 2 Updater"
"D:\\Neverwinter Nights 2\\nwn2server.exe"="D:\\Neverwinter Nights 2\\nwn2server.exe:*:Enabled:Neverwinter Nights 2 Server"
"D:\\Sierra\\FEAR\\FEAR.exe"="D:\\Sierra\\FEAR\\FEAR.exe:*:Enabled:FEAR"
"D:\\Sierra\\FEAR\\FEARMP.exe"="D:\\Sierra\\FEAR\\FEARMP.exe:*:Enabled:FEAR"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[b][u]Remaining Files[/u][/b]:



[b][u]Files with Hidden Attributes[/u][/b]:

Thu 20 Dec 2007           857 ...HR --- "C:\Documents and Settings\kowalsky\Dane aplikacji\SecuROM\UserData\securom_v7_01.bak"
Wed 16 Jan 2008         1,248 A.SH. --- "C:\Documents and Settings\kowalsky\Dane aplikacji\Thinstall\{CDEAA250-E5D3-4AD8-B076-C5B699C934D1}\%drive_c%\4vhjovma.sys"

[b]Finished![/b]

Awatar użytkownika
conter
~user
 
Posty: 203
Dołączenie: 23 Sty 2006, 23:17
Miejscowość: Gorzów
Pochwały: 1



Postprzez wojtas 18 Lut 2008, 21:51

sciagnij ATF_Cleaner
zaznacz
Windows Temp
Temporary internet files
i wcisnij EMPTY SELECTED

i wykonaj:

http://forum.programosy.pl/optymalizacja-windowsa-xp-vt89133.html

nic nie widac w logach wiecej

Autor postu otrzymał pochwałę
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 15 gości