
popraw nazwe tematu, logi wstaw w tagi 'code'
http://forum.programosy.pl/przeczytaj-zanim-wstawisz-logi-na-forum-vt93842.html
Siemka wszystkim ...
Przeczytałem na forum o ComboFix`ie więc zamieszczam log ...
mój komp był zasyfiony wirusami i teraz nie wiem czy wszystkie znikneły ...
po skanie ComboFix wyrzucił niby wirusy ... ale teraz nie wiem czy wszystkie programy mi działają bo np. nie wiem czy mi antyvirus działa ...
tzn. nie ma ikonki avasta w prawym dolnym rogu na liście ...
pomóżcie prosze albo wytłumaczcie mi o co chodzi ... dzięki z góry

oto mój log
- Kod: Zaznacz wszystko
ComboFix 08-09-28.03 - Monika 2008-09-30 8:52:26.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.1.1045.18.556 [GMT 2:00]
Uruchomiony z: C:\Documents and Settings\Monika\Pulpit\ComboFix.exe
* Utworzono nowy punkt przywracania
[color=red][b]UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !![/b][/color]
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\LocalService\Dane aplikacji\wsnpoem
C:\Documents and Settings\LocalService\Dane aplikacji\wsnpoem\audio.dll
C:\Documents and Settings\Monika\Cookies\monika@lxk235.lexmark[2].txt
C:\Documents and Settings\Monika\Cookies\monika@serving-sys[2].txt
C:\Documents and Settings\Monika\Cookies\monika@spamblockerutility[2].txt
C:\Documents and Settings\Monika\Cookies\monika@www.gomusic[2].txt
C:\Documents and Settings\Monika\Menu Start\Programy\SpyShredder
C:\Documents and Settings\Monika\Menu Start\Programy\SpyShredder\SpyShredder.lnk
C:\Documents and Settings\Monika\Menu Start\Programy\SpyShredder\Uninstall.lnk
C:\Documents and Settings\NetworkService\Dane aplikacji\wsnpoem
C:\Documents and Settings\NetworkService\Dane aplikacji\wsnpoem\audio.dll
C:\Program Files\Antivirus 2009
C:\Program Files\Antivirus 2009\av2009.exe
C:\Program Files\FBrowserAdvisor
C:\Program Files\FBrowsingAdvisor
C:\Program Files\FBrowsingAdvisor\IXPCOMEvents.xpt
C:\Program Files\FBrowsingAdvisor\Logo.png
C:\Program Files\FBrowsingAdvisor\main.db
C:\Program Files\FBrowsingAdvisor\Thumbs.db
C:\Program Files\FBrowsingAdvisor\unins000.dat
C:\Program Files\FBrowsingAdvisor\unins000.exe
C:\Program Files\FBrowsingAdvisor\XPCOMEvents.dll
C:\Program Files\PlayMP3z
C:\Program Files\PlayMP3z\uninstall.exe
C:\WINDOWS\BM832e80ca.txt
C:\WINDOWS\BM832e80ca.xml
C:\WINDOWS\Downloaded Program Files\setup.inf
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\BaGQWvut.ini
C:\WINDOWS\system32\BaGQWvut.ini2
C:\WINDOWS\system32\ieupdates.exe
C:\WINDOWS\system32\tuvWPiJC.dll
C:\WINDOWS\system32\tuvWQGaB.dll
C:\WINDOWS\system32\vtUMfeeE.dll
C:\WINDOWS\system32\winsrc.dll
C:\WINDOWS\system32\wsnpoem
C:\WINDOWS\system32\wsnpoem\audio.dll
C:\WINDOWS\system32\wsnpoem\video.dll
D:\Autorun.inf
.
((((((((((((((((((((((((( Pliki utworzone od 2008-08-28 do 2008-09-30 )))))))))))))))))))))))))))))))
.
2008-09-30 08:58 . 2008-09-30 08:58 111,840 --a------ C:\WINDOWS\BM832e80ca.xml
2008-09-30 08:58 . 2008-09-30 08:58 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-09-30 08:58 . 2008-09-30 08:58 1,409 --a------ C:\WINDOWS\QTFont.for
2008-09-30 08:58 . 2008-09-30 08:58 22 --a------ C:\WINDOWS\pskt.ini
2008-09-29 23:39 . 2008-09-29 23:40 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Lavasoft
2008-09-29 23:38 . 2008-09-29 23:38 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-09-29 21:55 . 2008-09-29 21:55 106,496 --a------ C:\WINDOWS\system32\ieexplorer32.exe
2008-09-29 21:47 . 2008-09-29 21:47 123,904 --a------ C:\WINDOWS\system32\wpqgbq.dll
2008-09-29 21:47 . 2008-09-29 21:47 123,904 --a------ C:\WINDOWS\system32\pgssgnyt.dll
2008-09-29 21:44 . 2008-09-29 21:44 968,241 ---hs---- C:\WINDOWS\system32\mhvrotyx.ini
2008-09-29 21:44 . 2008-09-29 21:44 67,072 --a------ C:\WINDOWS\system32\xytorvhm.dll
2008-09-29 21:41 . 2008-09-29 21:41 101,888 --a------ C:\WINDOWS\system32\pgvrtusp.dll
2008-09-28 21:41 . 2008-09-28 21:41 128,000 --a------ C:\WINDOWS\system32\rspafb.dll
2008-09-28 21:41 . 2008-09-28 21:41 128,000 --a------ C:\WINDOWS\system32\ouhhulfj.dll
2008-09-28 21:38 . 2008-09-29 21:39 968,241 ---hs---- C:\WINDOWS\system32\gvojpobv.ini
2008-09-27 21:42 . 2008-09-28 10:45 <DIR> d-------- C:\Documents and Settings\Monika\Dane aplikacji\gtk-2.0
2008-09-27 21:42 . 2008-09-27 21:42 <DIR> d-------- C:\Documents and Settings\Monika\.thumbnails
2008-09-27 21:40 . 2008-09-28 10:53 <DIR> d-------- C:\Documents and Settings\Monika\.gimp-2.4
2008-09-27 21:39 . 2008-09-27 21:39 <DIR> d-------- C:\Program Files\GIMP-2.0
2008-09-20 13:23 . 2008-09-20 13:23 <DIR> d-------- C:\WINDOWS\system32\pl
2008-09-20 13:23 . 2008-09-20 13:23 <DIR> d-------- C:\WINDOWS\system32\bits
2008-09-20 13:23 . 2008-09-20 13:23 <DIR> d-------- C:\WINDOWS\l2schemas
2008-09-20 13:21 . 2008-09-20 13:23 <DIR> d-------- C:\WINDOWS\ServicePackFiles
2008-09-20 13:16 . 2008-09-20 13:16 <DIR> d-------- C:\WINDOWS\EHome
2008-09-13 18:43 . 2008-09-13 18:43 <DIR> d-------- C:\Program Files\EA GAMES
2008-09-13 18:26 . 1996-10-15 18:01 298,496 --a------ C:\WINDOWS\uninst.exe
2008-09-03 11:15 . 2004-08-03 22:29 25,471 --------- C:\WINDOWS\system32\drivers\watv10nt.sys
2008-09-03 11:15 . 2004-08-03 22:29 22,271 --------- C:\WINDOWS\system32\drivers\watv06nt.sys
2008-09-03 11:15 . 2004-08-03 22:29 11,935 --------- C:\WINDOWS\system32\drivers\wadv11nt.sys
2008-09-03 11:12 . 2004-08-04 00:35 701,440 --------- C:\WINDOWS\system32\drivers\ati2mtag.sys
2008-09-01 18:46 . 2008-09-01 18:46 <DIR> d-------- C:\Program Files\Common Files\DirectX
2008-09-01 18:31 . 2008-09-01 18:31 <DIR> d-------- C:\Program Files\Common Files\EasyInfo
2008-09-01 18:05 . 2008-09-01 18:05 <DIR> d-------- C:\Program Files\DAEMON Tools Toolbar
2008-09-01 18:05 . 2008-09-01 18:05 <DIR> d-------- C:\Program Files\DAEMON Tools Lite
2008-09-01 18:02 . 2008-09-01 18:02 <DIR> d-------- C:\Documents and Settings\Monika\Dane aplikacji\DAEMON Tools
2008-09-01 18:02 . 2008-09-01 18:02 717,296 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2008-08-27 11:35 . 2008-08-27 11:35 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Corel
2008-08-26 23:43 . 2008-08-27 11:37 88 -r-hs---- C:\WINDOWS\system32\B67796535D.sys
2008-08-24 20:38 . 2008-08-24 20:38 <DIR> d-------- C:\Program Files\Edgard
2008-08-14 11:32 . 2008-04-11 21:06 691,712 -----c--- C:\WINDOWS\system32\dllcache\inetcomm.dll
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-30 06:58 --------- d-----w C:\Documents and Settings\Monika\Dane aplikacji\OpenOffice.ux.pl2
2008-09-29 21:39 --------- d-----w C:\Program Files\Lavasoft
2008-09-29 21:26 --------- d-----w C:\Program Files\FlashGet
2008-09-29 19:20 --------- d-----w C:\Documents and Settings\Monika\Dane aplikacji\Skype
2008-09-29 19:17 --------- d-----w C:\Program Files\Mozilla Thunderbird
2008-09-29 19:10 --------- d-----w C:\Documents and Settings\Monika\Dane aplikacji\skypePM
2008-09-28 18:52 --------- d-----w C:\Program Files\ContextProgram
2008-08-31 20:31 --------- d-----w C:\Program Files\FaxTools
2008-08-31 20:31 --------- d-----w C:\Program Files\Codec Pack - All In 1
2008-08-27 09:37 --------- d-----w C:\Documents and Settings\Monika\Dane aplikacji\Corel
2008-08-26 15:40 --------- d-----w C:\Program Files\VstPlugins
2008-08-16 14:12 --------- d-----w C:\Program Files\Lexmark 1200 Series
2008-07-31 19:03 --------- d-----w C:\Program Files\Java
2007-12-15 15:41 32 ----a-w C:\Documents and Settings\All Users\Dane aplikacji\ezsid.dat
2007-09-25 20:32 88 -csh--r C:\WINDOWS\system32\DAB99D55BF.sys
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{4f337ec5-64a4-4fa2-a0f0-8eb633d73909}]
2008-09-29 21:47 123904 --a------ C:\WINDOWS\system32\wpqgbq.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Gadu-Gadu"="C:\Program Files\Gadu-Gadu\gg.exe" [2007-07-09 2119104]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2008-04-14 1695232]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-08-16 7630848]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2006-08-16 86016]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]
"Lexmark 1200 Series"="C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe" [2006-07-13 57344]
"LogitechCommunicationsManager"="C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-02-08 488984]
"LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" [2007-02-08 774168]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-02-12 77824]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe" [2008-04-01 36352]
"801db356"="C:\WINDOWS\system32\xytorvhm.dll" [2008-09-29 67072]
"BM832e80ca"="C:\WINDOWS\system32\pgvrtusp.dll" [2008-09-29 101888]
"nwiz"="nwiz.exe" [2006-08-16 C:\WINDOWS\system32\nwiz.exe]
"SkyTel"="SkyTel.EXE" [2006-05-16 C:\WINDOWS\SkyTel.exe]
"RTHDCPL"="RTHDCPL.EXE" [2006-06-01 C:\WINDOWS\RTHDCPL.exe]
C:\Documents and Settings\Monika\Menu Start\Programy\Autostart\
OpenOffice.ux.pl 2.1.0.lnk - C:\Program Files\OpenOffice.ux.pl 2.1.0\program\quickstart.exe [2006-12-30 17408]
C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 29696]
Belkin Wireless USB Utility.lnk - D:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe [2005-10-28 1404928]
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-12-15 67128]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=wpqgbq.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.l3codec"= l3codecp.acm
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Gadu-Gadu\\gg.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"C:\\WINDOWS\\system32\\dpvsetup.exe"=
"C:\\Program Files\\BearShare\\BearShare.exe"=
"C:\\Program Files\\FlashGet\\FlashGet.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 78416]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 20560]
S3 PavSRK.sys;PavSRK.sys;C:\WINDOWS\system32\PavSRK.sys [ ]
S3 PavTPK.sys;PavTPK.sys;C:\WINDOWS\system32\PavTPK.sys [ ]
.
Zawartość folderu 'Zaplanowane zadania'
.
- - - - USUNIĘTO PUSTE WPISY - - - -
BHO-{95728618-2F97-4DDA-90E4-73EAB30A9455} - C:\WINDOWS\system32\tuvWPiJC.dll
BHO-{AE7933EC-8526-4C49-9861-EB70A24E697D} - C:\WINDOWS\system32\tuvWQGaB.dll
ShellExecuteHooks-{95728618-2F97-4DDA-90E4-73EAB30A9455} - C:\WINDOWS\system32\tuvWPiJC.dll
.
------- Skan uzupełniający -------
.
FireFox -: Profile - C:\Documents and Settings\Monika\Dane aplikacji\Mozilla\Firefox\Profiles\mtqsc3mx.default\
FF -: plugin - C:\Program Files\Adobe\Acrobat 7.0\Reader\browser\nppdf32.dll
FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\NPMyGlSh.dll
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-30 08:57:19
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
skanowanie ukrytych procesów ...
skanowanie ukrytych wpisów autostartu ...
skanowanie ukrytych plików ...
skanowanie pomyślnie ukończone
ukryte pliki: 0
**************************************************************************
.
--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------
PROCES: C:\WINDOWS\explorer.exe
-> C:\WINDOWS\system32\xytorvhm.dll
-> C:\WINDOWS\system32\pgvrtusp.dll
.
------------------------ Pozostałe uruchomione procesy ------------------------
.
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe
C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe
.
**************************************************************************
.
Czas ukończenia: 2008-09-30 9:02:27 - komputer został uruchomiony ponownie
ComboFix-quarantined-files.txt 2008-09-30 07:02:20
Przed: 1˙834˙889˙216 bajt˘w wolnych
Po: 3,397,062,656 bajt˘w wolnych
214 --- E O F --- 2008-09-21 11:31:26
a to log z Hijack This ...
- Kod: Zaznacz wszystko
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:47:50, on 2008-09-30
Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PSIService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Lexmark 1200 Series\lxczbmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
D:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Gadu-Gadu\gg.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.pl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: {90937d33-6be8-0f0a-2af4-4a465ce733f4} - {4f337ec5-64a4-4fa2-a0f0-8eb633d73909} - C:\WINDOWS\system32\wpqgbq.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
O3 - Toolbar: (no name) - {37B85A29-692B-4205-9CAD-2626E4993404} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [Lexmark 1200 Series] "C:\Program Files\Lexmark 1200 Series\lxczbmgr.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" /hide
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [801db356] rundll32.exe "C:\WINDOWS\system32\xytorvhm.dll",b
O4 - HKLM\..\Run: [BM832e80ca] Rundll32.exe "C:\WINDOWS\system32\pgvrtusp.dll",s
O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: OpenOffice.ux.pl 2.1.0.lnk = C:\Program Files\OpenOffice.ux.pl 2.1.0\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Belkin Wireless USB Utility.lnk = D:\Program Files\Belkin\USB F5D7050\Wireless Utility\Belkinwcui.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1174301425562
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: wpqgbq.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - c:\program files\common files\logishrd\lvmvfm\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
--
End of file - 7605 bytes
PROSZE O JAK NAJSZYBSZĄ ODPOWIEDŹ

Dodano Dzisiaj, 21:12:
prosze odpiszcie

to dla mnie bardzo ważne !
