
ComboFix 09-02-01.01 - DawidK 2009-02-01 23:25:49.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1250.1.1045.18.1023.384 [GMT 1:00]
Uruchomiony z: c:\documents and settings\DawidK\Pulpit\ComboFix.exe
AV: avast! antivirus 4.8.1296 [VPS 090131-0] *On-access scanning disabled* (Updated)
* Utworzono nowy punkt przywracania
UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !!
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\myglobalsearch
c:\program files\myglobalsearch\bar\History\search
.
((((((((((((((((((((((((( Pliki utworzone od 2009-01-01 do 2009-02-01 )))))))))))))))))))))))))))))))
.
2009-02-01 21:40 . 2009-02-01 21:40 <DIR> d-------- c:\program files\BandwidthMeterPro
2009-02-01 21:24 . 2009-02-01 21:24 <DIR> d-------- c:\windows\LastGood
2009-02-01 21:24 . 2009-02-01 21:28 169 --a------ c:\windows\adidsl.ini
2009-02-01 21:24 . 2009-02-01 21:24 21 --a------ c:\windows\Fast800.ini
2009-02-01 21:23 . 2009-02-01 21:23 <DIR> d-------- c:\program files\SAGEM
2009-02-01 21:23 . 2009-02-01 21:23 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\InstallShield
2009-02-01 14:45 . 2005-09-28 03:51 78,080 --a------ c:\windows\system32\drivers\Rtenicxp.sys
2009-01-31 22:09 . 2009-02-01 11:24 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\Draco Organizer
2009-01-31 16:13 . 2009-01-31 16:13 <DIR> d-------- c:\program files\Koala
2009-01-29 18:38 . 2004-08-03 23:08 25,600 --a------ c:\windows\system32\drivers\usbser.sys
2009-01-29 18:38 . 2004-08-03 23:08 25,600 --a--c--- c:\windows\system32\dllcache\usbser.sys
2009-01-29 18:38 . 2008-03-21 13:57 14,640 --------- c:\windows\system32\spmsgXP_2k3.dll
2009-01-29 18:38 . 2009-01-29 18:38 0 --ah----- c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
2009-01-29 18:38 . 2009-01-29 18:38 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
2009-01-29 18:37 . 2009-01-29 18:38 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\PC Suite
2009-01-29 18:37 . 2009-01-29 18:38 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\Nokia
2009-01-29 18:37 . 2009-01-29 18:37 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\PC Suite
2009-01-29 18:36 . 2009-01-29 18:37 <DIR> d----c--- c:\windows\system32\DRVSTORE
2009-01-29 18:36 . 2009-01-29 18:36 <DIR> d-------- c:\program files\PC Connectivity Solution
2009-01-29 18:36 . 2009-01-29 18:36 <DIR> d-------- c:\program files\Nokia
2009-01-29 18:36 . 2009-01-29 18:36 <DIR> d-------- c:\program files\DIFX
2009-01-29 18:36 . 2009-01-29 18:36 <DIR> d-------- c:\program files\Common Files\PCSuite
2009-01-29 18:36 . 2009-01-29 18:36 <DIR> d-------- c:\program files\Common Files\Nokia
2009-01-29 18:36 . 2008-09-15 07:29 1,112,288 --a------ c:\windows\system32\wdfcoinstaller01007.dll
2009-01-29 18:36 . 2008-09-15 07:56 659,968 --a------ c:\windows\system32\nmwcdcocls.dll
2009-01-29 18:36 . 2008-09-15 07:56 91,136 --a------ c:\windows\system32\nmwcdcls.dll
2009-01-29 18:36 . 2008-09-15 07:56 22,016 --a------ c:\windows\system32\drivers\ccdcmbo.sys
2009-01-29 18:36 . 2008-08-26 09:26 18,816 --a------ c:\windows\system32\drivers\pccsmcfd.sys
2009-01-29 18:36 . 2008-09-15 07:56 17,664 --a------ c:\windows\system32\drivers\ccdcmb.sys
2009-01-29 18:36 . 2008-09-15 07:56 8,064 --a------ c:\windows\system32\drivers\usbser_lowerflt.sys
2009-01-29 18:34 . 2009-01-29 18:34 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\Installations
2009-01-25 23:20 . 2009-01-25 23:20 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\HP
2009-01-25 23:17 . 2009-01-25 23:18 <DIR> d-------- c:\program files\Common Files\HP
2009-01-25 23:12 . 2009-01-25 23:12 <DIR> d-------- c:\windows\system32\URTTEMP
2009-01-25 23:09 . 2009-01-25 22:33 102,738 --------- c:\windows\hpoins05.dat.temp
2009-01-25 23:09 . 2004-12-15 02:04 19,696 --------- c:\windows\hpomdl05.dat
2009-01-25 22:32 . 2009-01-25 22:32 <DIR> d-------- c:\program files\Common Files\Hewlett-Packard
2009-01-25 22:29 . 2004-08-03 22:58 15,104 --a------ c:\windows\system32\drivers\usbscan.sys
2009-01-25 22:29 . 2004-08-03 22:58 15,104 --a--c--- c:\windows\system32\dllcache\usbscan.sys
2009-01-25 22:27 . 1998-10-29 16:45 306,688 --a------ c:\windows\IsUninst.exe
2009-01-25 22:27 . 2004-09-29 12:12 278,584 --a------ c:\windows\system32\HPZidr12.dll
2009-01-25 22:27 . 2004-09-29 12:15 204,800 --a------ c:\windows\system32\HPZipr12.dll
2009-01-25 22:27 . 2004-09-29 12:09 94,208 --a------ c:\windows\system32\HPZipt12.dll
2009-01-25 22:27 . 2004-09-29 12:14 69,632 --a------ c:\windows\system32\HPZipm12.exe
2009-01-25 22:27 . 2004-09-29 12:08 61,440 --a------ c:\windows\system32\HPZinw12.exe
2009-01-25 22:27 . 2004-09-29 12:09 57,344 --a------ c:\windows\system32\HPZisn12.dll
2009-01-25 22:26 . 2009-01-25 23:21 69,604 --a------ c:\windows\hpoins05.dat
2009-01-25 22:26 . 2005-06-22 06:50 17,505 --------- c:\windows\hpomdl07.dat
2009-01-25 22:25 . 2009-01-25 23:09 <DIR> d-------- c:\temp\HP_WebRelease
2009-01-25 22:25 . 2009-01-25 22:25 <DIR> d-------- C:\temp
2009-01-24 22:06 . 2009-01-24 22:06 <DIR> d-------- c:\program files\K-Lite Codec Pack
2009-01-24 22:06 . 2008-09-24 19:41 839,680 --a------ c:\windows\system32\lameACM.acm
2009-01-24 22:06 . 2004-01-25 17:18 217,088 --a------ c:\windows\system32\yv12vfw.dll
2009-01-24 22:06 . 2008-09-16 20:23 168,448 --a------ c:\windows\system32\unrar.dll
2009-01-24 22:06 . 2007-09-21 01:52 118,784 --a------ c:\windows\system32\ac3acm.acm
2009-01-24 22:06 . 2008-12-08 12:53 57,344 --a------ c:\windows\system32\ff_vfw.dll
2009-01-24 22:06 . 2007-07-10 17:10 547 --a------ c:\windows\system32\ff_vfw.dll.manifest
2009-01-24 22:06 . 2008-10-03 13:30 414 --a------ c:\windows\system32\lame_acm.xml
2009-01-24 12:02 . 2009-02-01 21:42 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\BitTorrent
2009-01-24 12:01 . 2009-02-01 10:03 <DIR> d-------- c:\program files\DNA
2009-01-24 12:01 . 2009-01-24 12:01 <DIR> d-------- c:\program files\BitTorrent
2009-01-24 12:01 . 2009-01-24 12:01 <DIR> d-------- c:\program files\AskBarDis
2009-01-24 12:01 . 2009-02-01 14:07 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\DNA
2009-01-21 21:46 . 2009-01-21 21:46 <DIR> d-------- c:\program files\Xvid
2009-01-21 21:46 . 2008-12-07 19:08 795,648 --a------ c:\windows\system32\xvidcore.dll
2009-01-21 21:46 . 2008-12-07 19:08 130,048 --a------ c:\windows\system32\xvidvfw.dll
2009-01-21 21:46 . 2007-06-28 18:55 77,824 --a------ c:\windows\system32\xvid.ax
2009-01-20 19:10 . 2009-01-20 19:10 157 --a------ c:\windows\hpbvspst.his
2009-01-20 19:10 . 2009-01-20 19:10 120 --a------ c:\windows\hpbvspst.ini
2009-01-20 18:36 . 2003-09-24 09:44 1,230,336 -ra------ c:\windows\system32\MSXML4.dll
2009-01-20 18:36 . 2003-09-24 09:43 626,960 -ra------ c:\windows\system32\hpvaut32.dll
2009-01-20 18:36 . 2003-09-24 09:43 487,424 -ra------ c:\windows\system32\hpvcp70.dll
2009-01-20 18:36 . 2003-09-24 09:43 344,064 -ra------ c:\windows\system32\hpvcr70.dll
2009-01-20 18:36 . 2003-09-24 09:44 82,432 -ra------ c:\windows\system32\MSXML4r.dll
2009-01-20 18:36 . 2003-09-24 09:44 44,544 -ra------ c:\windows\system32\MSXML4a.dll
2009-01-20 18:25 . 2009-01-25 23:15 <DIR> d-------- c:\program files\HP
2009-01-20 18:25 . 2009-01-25 23:15 <DIR> d-------- c:\program files\Hewlett-Packard
2009-01-20 18:24 . 2003-11-08 01:52 278,528 --a------ c:\windows\system32\hpdj
2009-01-20 18:21 . 2009-01-20 19:34 291,591 --a------ c:\windows\hpdj5100.hi2
2009-01-20 18:21 . 2009-01-20 19:45 241,153 --a------ c:\windows\hpdj5100.hi1
2009-01-20 18:21 . 2009-01-20 19:34 12,430 --a------ c:\windows\hpdj5100.bu2
2009-01-20 18:21 . 2009-01-20 19:45 12,396 --a------ c:\windows\hpdj5100.bu1
2009-01-20 18:18 . 2009-01-20 19:54 215,618 --a------ c:\windows\hpdj5100.his
2009-01-20 18:18 . 2009-01-20 19:54 11,660 --a------ c:\windows\hpdj5100.ini
2009-01-20 18:11 . 2009-01-20 20:02 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\AdobeUM
2009-01-20 18:09 . 2009-01-20 18:09 <DIR> d-------- c:\program files\Common Files\Adobe
2009-01-17 11:17 . 2009-01-17 11:19 <DIR> d-------- c:\program files\BearShare
2009-01-17 11:17 . 2009-02-01 10:17 <DIR> d-------- C:\My Downloads
2009-01-17 00:20 . 2009-01-31 16:12 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\DivX
2009-01-17 00:04 . 2009-01-17 00:04 3,932,214 --a------ c:\windows\BricoPack Wallpaper.bmp
2009-01-17 00:04 . 2009-01-17 00:04 64,502 --a------ c:\windows\BricoPackUninst.cmd
2009-01-17 00:02 . 2009-01-17 00:02 <DIR> d-------- c:\windows\BricoPacks
2009-01-17 00:02 . 2009-01-17 00:04 6,116 --a------ c:\windows\BricoPackFoldersDelete.cmd
2009-01-14 23:26 . 2008-11-06 17:37 120,056 --------- c:\windows\system32\pxcpyi64.exe
2009-01-14 23:26 . 2008-11-06 17:37 118,520 --------- c:\windows\system32\pxinsi64.exe
2009-01-14 23:25 . 2009-01-31 16:12 <DIR> d-------- c:\program files\DivX
2009-01-14 23:23 . 2003-06-19 01:31 17,920 --a------ c:\windows\system32\mdimon.dll
2009-01-14 23:23 . 2009-01-14 23:23 421 --a------ c:\windows\ODBC.INI
2009-01-14 23:21 . 2009-01-14 23:22 <DIR> d-------- c:\windows\SHELLNEW
2009-01-14 23:20 . 2009-01-14 23:20 <DIR> d-------- c:\program files\Microsoft.NET
2009-01-14 23:18 . 2009-01-14 23:18 <DIR> dr-h----- C:\MSOCache
2009-01-14 23:08 . 2009-01-14 23:08 <DIR> d-------- c:\documents and settings\DawidK\Dane aplikacji\Logitech
2009-01-14 23:00 . 2009-01-14 23:00 <DIR> d-------- c:\program files\Alwil Software
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-02-01 20:36 34 ----a-w c:\documents and settings\DawidK\jagex_runescape_preferences.dat
2009-02-01 20:24 33 ----a-w c:\windows\system32\drivers\adidsl.cfg
2009-02-01 20:23 --------- d--h--w c:\program files\InstallShield Installation Information
2009-02-01 13:35 --------- d-----w c:\program files\NAPI-PROJEKT
2009-02-01 09:07 --------- d-----w c:\program files\SwiftKit
2009-01-30 13:06 --------- d-----w c:\program files\ALLPlayer
2009-01-16 23:04 219,648 ----a-w c:\windows\system32\uxtheme.dll
2009-01-14 21:52 410,984 ----a-w c:\windows\system32\deploytk.dll
2009-01-14 21:52 --------- d-----w c:\program files\Java
2009-01-14 21:41 --------- d-----w c:\program files\CyberLink
2009-01-14 21:41 --------- d-----w c:\documents and settings\All Users\Dane aplikacji\CyberLink
2009-01-14 21:37 --------- d-----w c:\program files\Labtec
2009-01-14 21:37 --------- d-----w c:\program files\Common Files\InstallShield
2009-01-14 21:35 --------- d-----w c:\program files\Analog Devices
2009-01-14 21:35 --------- d-----w c:\documents and settings\DawidK\Dane aplikacji\Gadu-Gadu
2009-01-14 21:26 --------- d-----w c:\program files\Logitech
2009-01-14 21:26 --------- d-----w c:\program files\Common Files\Logitech
2009-01-14 21:25 --------- d-----w c:\program files\Winamp Toolbar
2009-01-14 21:25 --------- d-----w c:\program files\Winamp
2009-01-14 21:25 --------- d-----w c:\documents and settings\DawidK\Dane aplikacji\Winamp
2009-01-14 21:25 --------- d-----w c:\documents and settings\All Users\Dane aplikacji\Winamp Toolbar
2009-01-14 21:22 --------- d-----w c:\program files\Gadu-Gadu
2009-01-14 21:13 --------- d-----w c:\program files\Intel
2009-01-14 21:04 --------- d-----w c:\documents and settings\DawidK\Dane aplikacji\ATI
2009-01-14 21:01 --------- d-----w c:\program files\Common Files\ATI Technologies
2009-01-14 21:01 --------- d-----w c:\program files\ATI Technologies
2009-01-14 21:00 --------- d-----w c:\documents and settings\All Users\Dane aplikacji\SwiftKit
2009-01-14 20:51 --------- d-----w c:\program files\microsoft frontpage
2009-01-14 20:49 --------- d-----w c:\program files\Usługi online
2008-12-11 00:33 86,016 ----a-w c:\windows\system32\dpl100.dll
2008-12-11 00:33 200,704 ----a-w c:\windows\system32\dtu100.dll
2008-12-09 02:28 593,920 ----a-w c:\windows\system32\dpuGUI11.dll
2008-12-09 02:28 57,344 ----a-w c:\windows\system32\dpv11.dll
2008-12-09 02:28 344,064 ----a-w c:\windows\system32\dpus11.dll
2008-12-09 02:28 294,912 ----a-w c:\windows\system32\dpu11.dll
2008-11-06 16:37 524,288 ----a-w c:\windows\system32\DivXsm.exe
2008-11-06 16:37 3,596,288 ----a-w c:\windows\system32\qt-dx331.dll
2008-11-06 16:37 129,784 ------w c:\windows\system32\pxafs.dll
2008-11-06 16:35 200,704 ----a-w c:\windows\system32\ssldivx.dll
2008-11-06 16:35 1,044,480 ----a-w c:\windows\system32\libdivx.dll
2008-11-06 16:33 823,296 ----a-w c:\windows\system32\divx_xx0c.dll
2008-11-06 16:33 823,296 ----a-w c:\windows\system32\divx_xx07.dll
2008-11-06 16:33 815,104 ----a-w c:\windows\system32\divx_xx0a.dll
2008-11-06 16:33 802,816 ----a-w c:\windows\system32\divx_xx11.dll
2008-11-06 16:33 684,032 ----a-w c:\windows\system32\DivX.dll
2008-11-06 16:33 12,288 ----a-w c:\windows\system32\DivXWMPExtType.dll
.
------- Sigcheck -------
2004-08-04 13:00 693248 7d46293106e58ca7878509ccc4071f2f c:\windows\system32\wininet.dll
2004-08-04 13:00 693248 7d46293106e58ca7878509ccc4071f2f c:\windows\system32\dllcache\wininet.dll
2004-08-04 13:00 975872 196c130d31317fe53de984220b5e13b9 c:\windows\explorer.exe
2004-08-04 13:00 975872 196c130d31317fe53de984220b5e13b9 c:\windows\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
2008-09-29 17:24 325000 --a------ c:\program files\AskBarDis\bar\bin\askBar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{3041d03e-fd4b-44e0-b742-2d9b88305f98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-09-29 325000]
[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{3041D03E-FD4B-44E0-B742-2D9B88305F98}"= "c:\program files\AskBarDis\bar\bin\askBar.dll" [2008-09-29 325000]
[HKEY_CLASSES_ROOT\clsid\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKEY_CLASSES_ROOT\TypeLib\{4b1c1e16-6b34-430e-b074-5928eca4c150}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATICCC"="c:\program files\ATI Technologies\ATI.ACE\CLIStart.exe" [2006-09-25 90112]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2005-05-20 925696]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2008-11-26 81000]
"MSConfig"="c:\windows\PCHealth\HelpCtr\Binaries\MSConfig.exe" [2004-08-04 159744]
"High Definition Audio Property Page Shortcut"="HDAShCut.exe" [2004-10-27 c:\windows\system32\HdAShCut.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360]
c:\documents and settings\DawidK\Menu Start\Programy\Autostart\
TransBar.lnk - c:\windows\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe [2005-06-01 65536]
Y'z Shadow.lnk - c:\windows\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe [2006-05-21 155648]
c:\documents and settings\All Users\Menu Start\Programy\Autostart\
DSLMON.lnk - c:\program files\SAGEM\SAGEM F@st 800-840\dslmon.exe [2009-02-01 1205840]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Speed Launch.lnk]
path=c:\documents and settings\All Users\Menu Start\Programy\Autostart\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^HP Digital Imaging Monitor.lnk]
path=c:\documents and settings\All Users\Menu Start\Programy\Autostart\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^HP Image Zone - szybkie uruchamianie.lnk]
path=c:\documents and settings\All Users\Menu Start\Programy\Autostart\HP Image Zone - szybkie uruchamianie.lnk
backup=c:\windows\pss\HP Image Zone - szybkie uruchamianie.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Logitech SetPoint.lnk]
path=c:\documents and settings\All Users\Menu Start\Programy\Autostart\Logitech SetPoint.lnk
backup=c:\windows\pss\Logitech SetPoint.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ALLUpdate]
--a------ 2008-11-24 20:44 869888 c:\program files\ALLPlayer\ALLUpdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BandwidthMeterPro]
--a------ 2009-02-01 04:19 585728 c:\program files\BandwidthMeterPro\BandwidthMeterPro.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent DNA]
--a------ 2009-01-24 12:01 342848 c:\program files\DNA\btdna.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Component Manager]
--a------ 2003-10-23 19:51 233472 c:\program files\HP\hpcoretech\hpcmpmgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
--a------ 2004-09-13 15:49 49152 c:\program files\Hewlett-Packard\HP Software Update\hpwuSchd2.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
--a------ 2003-11-08 02:45 188416 c:\windows\system32\spool\drivers\w32x86\3\hpztsb09.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
--a------ 2008-12-03 12:47 1205760 c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
--a------ 2003-10-31 19:42 32768 c:\program files\CyberLink\PowerDVD\PDVDServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2009-01-14 22:52 136600 c:\program files\Java\jre6\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
--a------ 2008-08-04 00:02 36352 c:\program files\Winamp\winampa.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\BearShare\\BearShare.exe"=
"c:\\Program Files\\Gadu-Gadu\\gg.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"8461:TCP"= 8461:TCP:GoD High Port
"8462:TCP"= 8462:TCP:GoD Low Port
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-01-14 111184]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-01-14 20560]
R3 e4usbaw;USB ADSL2 WAN Adapter;c:\windows\system32\drivers\e4usbaw.sys [2009-02-01 104344]
S2 E4LOADER;General Purpose USB Driver (e4ldr.sys);c:\windows\system32\drivers\e4ldr.sys [2009-02-01 69656]
.
.
------- Skan uzupełniający -------
.
uStart Page = hxxp://google.bearshare.com/pl/
IE: &Winamp Search - c:\documents and settings\All Users\Dane aplikacji\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
IE: E&ksport do programu Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
TCP: {3BAAE4FB-2F2A-4ACE-B786-6D5F5FE6E17D} = 213.241.79.37 83.238.255.76
FF - ProfilePath - c:\documents and settings\DawidK\Dane aplikacji\Mozilla\Firefox\Profiles\reawntvv.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.pl/
FF - plugin: c:\program files\Mozilla Firefox\plugins\npbittorrent.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-02-01 23:26:51
Windows 5.1.2600 Dodatek Service Pack 2 NTFS
skanowanie ukrytych procesów ...
skanowanie ukrytych wpisów autostartu ...
skanowanie ukrytych plików ...
skanowanie pomyślnie ukończone
ukryte pliki: 0
**************************************************************************
.
--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------
- - - - - - - > 'winlogon.exe'(620)
c:\windows\system32\Ati2evxx.dll
.
Czas ukończenia: 2009-02-01 23:27:46
ComboFix-quarantined-files.txt 2009-02-01 22:27:44
Przed: 74 825 142 272 bajtów wolnych
Po: 75,413,155,840 bajtów wolnych
283
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 27 gości