
miałem poważną awarię, nie działał explorator windows. Pomimo podmiany z dysku instalacyjnego tego pliku nadal było źle. Jakoś w końcu się udało - naprawa systemu z dysku instalacyjnego. Natomiast teraz nie działa update oraz ie. Poza tym komputer jakoś dziwnie mieli (wolno). Ponadto nie mogę uruchomić żadnego skanera on-line, nawet trend-micro pod firefoxem. Mam zaporę Kerio i antywirus AVG. AVG nic mi pokazuje, wcześniej wykrył kilka koni trojańskich. Nie wiem czy system jest czysty.
Poniżej podaję logi .
Z góry dziękuje za pomoc!
- Kod: Zaznacz wszystko
info.txt logfile of random's system information tool 1.06 2009-05-12 19:53:47
======Uninstall list======
-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Aktualizacja dla systemu Windows Internet Explorer 8 (KB969497)-->"C:\WINDOWS\ie8updates\KB969497-IE8\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows Internet Explorer 7 (KB963027)-->"C:\WINDOWS\ie7updates\KB963027-IE7\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
ALLPlayer V3.X-->"C:\Program Files\MarBit\ALLPlayer\unins000.exe"
Athlon 64 Processor Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0x15
AVG Free 8.5-->C:\Program Files\AVG\AVG8\setup.exe /UNINSTALL
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch-->C:\Program Files\InstallShield Installation Information\{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}\setup.exe -runfromtemp -l0x0409
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch-->C:\Program Files\InstallShield Installation Information\{931C37FC-594D-43A9-B10F-A2F2B1F03498}\setup.exe -runfromtemp -l0x0409
Call of Duty(R) 4 - Modern Warfare(TM)-->C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\setup.exe -runfromtemp -l0x0415
Creative Live! Cam Video IM Driver (1.01.01.00)-->C:\WINDOWS\CtDrvIns.exe -uninstall -script VF0220.uns -unsext NT -plugin V0220Pin.dll -pluginres CtCamPin.crl
Foxit Reader-->C:\Program Files\Foxit Software\Foxit Reader\Uninstall.exe
Gadu-Gadu 7.7-->C:\Program Files\Gadu-Gadu\Setup.exe
Google Earth Pro 4.2-->"C:\WINDOWS\Google Earth Pro 4.2\uninstall.exe" "/U:C:\Program Files\Google Earth Pro 4.2\Uninstall\uninstall.xml"
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Java(TM) 6 Update 11-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216011FF}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110415-6000-11D3-8CFE-0150048383C9}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mozilla Firefox (3.0.10)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
NAPIPROJEKT 1.0.6.2-->"C:\Program Files\NAPI-PROJEKT\unins000.exe"
Need for Speed™ ProStreet-->MsiExec.exe /X{CC419DDC-E0F0-4013-B25A-6FA036516F0D}
Nero Suite-->C:\Program Files\Common Files\Nero\Uninstall\setupx.exe /uninstall ExtraUninstallID=""
NVIDIA Drivers-->C:\WINDOWS\system32\nvuninst.exe UninstallGUI
O&O Defrag Professional-->MsiExec.exe /I{F530581E-12FE-43B4-A28D-E5257AAD63E6}
Odkurzacz 11.3-->"C:\Program Files\Odkurzacz\unins000.exe"
Ojciec chrzestny® II-->MsiExec.exe /X{A1416622-0DDE-45B5-B06C-DFC3ED94C53B}
QuickTime Alternative 1.78-->"C:\Program Files\QuickTime Alternative\unins000.exe"
Real Alternative 1.52 Lite-->"C:\Program Files\Real Alternative\unins000.exe"
Realtek High Definition Audio Driver-->RtlUpd.exe -r -m
Skype™ 4.0-->MsiExec.exe /X{24D753CA-6AE9-4E30-8F5F-EFC93E08BF3D}
Sony Ericsson PC Suite 4.010.00-->C:\Program Files\InstallShield Installation Information\{2FFE93F0-BB72-4E52-8761-354D1AAA9387}\ISAdmin.exe -runfromtemp -l0x0015 -removeonly
Sunbelt Personal Firewall-->MsiExec.exe /X{82B1150E-9B37-49FC-83EB-D52197D900D0}
The Rise of Atlantis (remove only)-->D:\GRY\The Rise of Altlantis\Uninstall.exe
TuneUp Utilities 2009-->MsiExec.exe /I{55A29068-F2CE-456C-9148-C869879E2357}
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
Xfire (remove only)-->"C:\Program Files\Xfire\uninst.exe"
=====HijackThis Backups=====
O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL [2009-02-08]
O20 - Winlogon Notify: urqRKDtr - urqRKDtr.dll (file missing) [2009-02-08]
R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL [2009-02-08]
O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [2009-02-08]
O20 - Winlogon Notify: urqPgFwu - urqPgFwu.dll (file missing) [2009-02-08]
O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [2009-02-08]
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-05-11]
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe [2009-05-11]
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-05-11]
O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL [2009-05-11]
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe [2009-05-11]
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 [2009-05-11]
======Hosts File======
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
======System event log======
Computer Name: TY
Event Code: 7036
Message: Usługa Usługa COM nagrywania dysków CD IMAPI weszła w stan zatrzymania.
Record Number: 11160
Source Name: Service Control Manager
Time Written: 20090406233454.000000+270
Event Type: informacje
User:
Computer Name: TY
Event Code: 7036
Message: Usługa Przeglądarka komputera weszła w stan zatrzymania.
Record Number: 11159
Source Name: Service Control Manager
Time Written: 20090406233452.000000+270
Event Type: informacje
User:
Computer Name: TY
Event Code: 7036
Message: Usługa Menedżer połączeń usługi Dostęp zdalny weszła w stan uruchomienia.
Record Number: 11158
Source Name: Service Control Manager
Time Written: 20090406233451.000000+270
Event Type: informacje
User:
Computer Name: TY
Event Code: 7036
Message: Usługa Usługa bramy warstwy aplikacji weszła w stan uruchomienia.
Record Number: 11157
Source Name: Service Control Manager
Time Written: 20090406233451.000000+270
Event Type: informacje
User:
Computer Name: TY
Event Code: 7035
Message: Do usługi Usługa bramy warstwy aplikacji został pomyślnie wysłany kod sterowania uruchom.
Record Number: 11156
Source Name: Service Control Manager
Time Written: 20090406233451.000000+270
Event Type: informacje
User: ZARZĄDZANIE NT\SYSTEM
=====Application event log=====
Computer Name: TY
Event Code: 1025
Message: Produkt: Kaspersky Internet Security 2009. Plik C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\adialhk.dll jest używany przez następujący proces: Nazwa: PnkBstrA, identyfikator 1900.
Record Number: 179
Source Name: MsiInstaller
Time Written: 20090207162706.000000+270
Event Type: informacje
User: TY\MICHU
Computer Name: TY
Event Code: 1025
Message: Produkt: Kaspersky Internet Security 2009. Plik C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\adialhk.dll jest używany przez następujący proces: Nazwa: jqs, identyfikator 1772.
Record Number: 178
Source Name: MsiInstaller
Time Written: 20090207162706.000000+270
Event Type: informacje
User: TY\MICHU
Computer Name: TY
Event Code: 1025
Message: Produkt: Kaspersky Internet Security 2009. Plik C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\adialhk.dll jest używany przez następujący proces: Nazwa: ctfmon, identyfikator 1252.
Record Number: 177
Source Name: MsiInstaller
Time Written: 20090207162706.000000+270
Event Type: informacje
User: TY\MICHU
Computer Name: TY
Event Code: 1025
Message: Produkt: Kaspersky Internet Security 2009. Plik C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\adialhk.dll jest używany przez następujący proces: Nazwa: explorer, identyfikator 776.
Record Number: 176
Source Name: MsiInstaller
Time Written: 20090207162706.000000+270
Event Type: informacje
User: TY\MICHU
Computer Name: TY
Event Code: 1025
Message: Produkt: Kaspersky Internet Security 2009. Plik C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\adialhk.dll jest używany przez następujący proces: Nazwa: svchost, identyfikator 1944.
Record Number: 175
Source Name: MsiInstaller
Time Written: 20090207162706.000000+270
Event Type: informacje
User: TY\MICHU
======Environment variables======
"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\WBEM
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 95 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=5f02
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
-----------------EOF-----------------
- Kod: Zaznacz wszystko
Logfile of random's system information tool 1.06 (written by random/random)
Run by MICHU at 2009-05-12 19:53:32
Microsoft Windows XP Professional Dodatek Service Pack 2
System drive C: has 27 GB (77%) free of 35 GB
Total RAM: 2047 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:53:46, on 2009-05-12
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.21020)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oodag.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Sunbelt Software\Personal Firewall\SbPFCl.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\MICHU\Pulpit\RSIT.exe
C:\Program Files\HijackThis\MICHU.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1233410031937
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: SbPF.Launcher - Sunbelt Software, Inc. - C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software, Inc. - C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
--
End of file - 5050 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\1-Click Maintenance.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2009-05-11 1107224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2009-01-31 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2009-05-11 2223872]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-01-31 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-01-31 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{A057A204-BACC-4D26-9990-79A187E2698E} - AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2009-05-11 2223872]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2009-05-11 1947928]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2009-01-15 13680640]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-04-01 486856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RivaTunerStartupDaemon]
C:\Program Files\RivaTuner v2.22\RivaTuner.exe /S []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2009-05-11 11952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2008-01-24 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Xfire\Xfire.exe"="C:\Program Files\Xfire\Xfire.exe:*:Enabled:Xfire"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"D:\GRY\Call of Duty 4\iw3mp.exe"="D:\GRY\Call of Duty 4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgnsx.exe"="C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5ce42a1-fbe7-11dd-86ab-000fea5c8784}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RECYCLER\S-8-2-30-100030958-100032596-100024777-3717.com g:\
shell\Open\command - RECYCLER\S-8-2-30-100030958-100032596-100024777-3717.com g:\
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{eb99f978-ef1b-11dd-a748-806d6172696f}]
shell\AutoRun\command - F:\Run.exe
======File associations======
.ini - open - C:\WINDOWS\SYSTEM32\NOTEPAD.EXE %1
.txt - open - C:\WINDOWS\SYSTEM32\NOTEPAD.EXE %1
======List of files/folders created in the last 1 months======
2009-05-12 19:53:32 ----D---- C:\rsit
2009-05-11 21:33:48 ----D---- C:\Program Files\Sunbelt Software
2009-05-11 21:31:29 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2009-05-11 21:31:21 ----D---- C:\Documents and Settings\MICHU\Dane aplikacji\AVGTOOLBAR
2009-05-11 21:31:13 ----D---- C:\Documents and Settings\All Users\Dane aplikacji\avg8
2009-05-11 21:17:57 ----D---- C:\WINDOWS\Prefetch
2009-05-11 21:11:36 ----D---- C:\Program Files\MSXML 6.0
2009-05-11 21:08:56 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-05-11 20:54:35 ----A---- C:\WINDOWS\system32\irclass.dll
2009-05-11 20:54:34 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-05-11 20:53:53 ----RA---- C:\WINDOWS\SETAE.tmp
2009-05-11 20:53:51 ----RA---- C:\WINDOWS\SETA2.tmp
2009-05-11 20:53:50 ----RA---- C:\WINDOWS\SET9F.tmp
2009-05-11 20:53:09 ----A---- C:\WINDOWS\setuplog.txt
2009-05-10 21:51:30 ----D---- C:\Program Files\AVG
2009-05-10 21:12:58 ----SHD---- C:\WINDOWS\CSC
2009-05-10 20:11:27 ----D---- C:\WINDOWS\ie8updates
2009-05-10 20:07:49 ----HDC---- C:\WINDOWS\ie8
2009-05-10 18:03:45 ----A---- C:\WINDOWS\Pocket Tanks Uninstall Log.txt
2009-05-10 11:13:55 ----A---- C:\WINDOWS\wininit.ini
2009-05-09 10:06:00 ----D---- C:\Documents and Settings\All Users\Dane aplikacji\The Humans
2009-05-09 09:29:37 ----RSD---- C:\WINDOWS\assembly
2009-05-09 09:29:37 ----D---- C:\WINDOWS\Microsoft.NET
2009-05-09 09:29:35 ----D---- C:\WINDOWS\system32\URTTemp
2009-04-26 13:24:59 ----D---- C:\WINDOWS\Pocket Tanks
2009-04-26 13:24:40 ----A---- C:\WINDOWS\Pocket Tanks Setup Log.txt
2009-04-19 23:14:18 ----D---- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software
2009-04-19 19:17:14 ----D---- C:\Program Files\Burrrn
2009-04-19 19:13:55 ----D---- C:\Documents and Settings\MICHU\Dane aplikacji\Uniblue
2009-04-19 19:13:55 ----D---- C:\Documents and Settings\All Users\Dane aplikacji\DriverScanner
======List of files/folders modified in the last 1 months======
2009-05-12 21:59:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-05-12 21:55:33 ----A---- C:\WINDOWS\imsins.BAK
2009-05-12 21:55:29 ----D---- C:\Program Files\Internet Explorer
2009-05-12 21:55:24 ----D---- C:\WINDOWS\system32\pl-pl
2009-05-12 21:54:29 ----D---- C:\WINDOWS\system32\CatRoot
2009-05-12 21:52:25 ----D---- C:\Documents and Settings\MICHU\Dane aplikacji\uTorrent
2009-05-12 21:47:35 ----A---- C:\WINDOWS\NeroDigital.ini
2009-05-12 19:53:42 ----D---- C:\Program Files\HijackThis
2009-05-12 19:51:21 ----D---- C:\Program Files\Mozilla Firefox
2009-05-12 19:46:47 ----D---- C:\WINDOWS\Temp
2009-05-12 19:46:22 ----D---- C:\WINDOWS
2009-05-12 19:45:49 ----D---- C:\WINDOWS\system32
2009-05-12 19:44:21 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-05-12 19:41:27 ----HD---- C:\WINDOWS\inf
2009-05-12 19:41:25 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-05-12 19:41:20 ----D---- C:\WINDOWS\system32\CatRoot2
2009-05-12 01:21:05 ----D---- C:\WINDOWS\system32\usmt
2009-05-12 01:21:04 ----D---- C:\WINDOWS\AppPatch
2009-05-12 01:21:03 ----D---- C:\WINDOWS\system32\Setup
2009-05-12 01:20:59 ----D---- C:\WINDOWS\Media
2009-05-12 01:20:47 ----D---- C:\WINDOWS\PeerNet
2009-05-12 01:20:47 ----D---- C:\WINDOWS\ime
2009-05-12 01:20:33 ----D---- C:\WINDOWS\system32\npp
2009-05-12 01:20:28 ----D---- C:\WINDOWS\msagent
2009-05-12 01:20:09 ----D---- C:\WINDOWS\ehome
2009-05-12 01:19:59 ----D---- C:\WINDOWS\Network Diagnostic
2009-05-12 01:19:58 ----D---- C:\WINDOWS\Offline Web Pages
2009-05-12 01:19:52 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-05-12 01:19:50 ----D---- C:\WINDOWS\WBEM
2009-05-12 01:19:43 ----D---- C:\WINDOWS\twain_32
2009-05-12 01:19:31 ----D---- C:\WINDOWS\system32\icsxml
2009-05-12 01:19:11 ----D---- C:\WINDOWS\system32\1045
2009-05-12 01:19:11 ----D---- C:\WINDOWS\system32\1033
2009-05-12 01:18:42 ----D---- C:\WINDOWS\Driver Cache
2009-05-12 01:18:41 ----D---- C:\WINDOWS\WinSxS
2009-05-11 22:41:20 ----D---- C:\Documents and Settings\MICHU\Dane aplikacji\Skype
2009-05-11 22:16:21 ----D---- C:\Documents and Settings\MICHU\Dane aplikacji\skypePM
2009-05-11 22:10:36 ----RD---- C:\Program Files
2009-05-11 21:33:55 ----SHD---- C:\WINDOWS\Installer
2009-05-11 21:33:51 ----D---- C:\WINDOWS\system32\drivers
2009-05-11 21:26:19 ----D---- C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy
2009-05-11 21:25:39 ----D---- C:\Documents and Settings\All Users\Dane aplikacji\comodo
2009-05-11 21:25:26 ----SD---- C:\Documents and Settings\MICHU\Dane aplikacji\Microsoft
2009-05-11 21:22:47 ----SHD---- C:\System Volume Information
2009-05-11 21:22:47 ----D---- C:\WINDOWS\system32\Restore
2009-05-11 21:21:17 ----D---- C:\WINDOWS\Registration
2009-05-11 21:20:21 ----D---- C:\WINDOWS\SoftwareDistribution
2009-05-11 21:20:17 ----D---- C:\WINDOWS\Help
2009-05-11 21:17:31 ----D---- C:\WINDOWS\system32\inetsrv
2009-05-11 21:17:31 ----D---- C:\WINDOWS\system32\config
2009-05-11 21:17:30 ----D---- C:\WINDOWS\nview
2009-05-11 21:15:35 ----D---- C:\WINDOWS\repair
2009-05-11 21:11:54 ----D---- C:\WINDOWS\security
2009-05-11 21:10:53 ----A---- C:\WINDOWS\OEWABLog.txt
2009-05-11 21:10:47 ----A---- C:\WINDOWS\ODBCINST.INI
2009-05-11 21:10:04 ----D---- C:\WINDOWS\system32\ias
2009-05-11 21:09:00 ----RD---- C:\WINDOWS\Web
2009-05-11 21:08:48 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-05-11 21:08:31 ----A---- C:\WINDOWS\win.ini
2009-05-11 21:08:21 ----D---- C:\WINDOWS\srchasst
2009-05-11 21:07:32 ----D---- C:\WINDOWS\system32\oobe
2009-05-11 21:07:19 ----D---- C:\Program Files\Windows Media Player
2009-05-11 21:07:18 ----D---- C:\Program Files\NetMeeting
2009-05-11 21:07:17 ----D---- C:\Program Files\Common Files\Services
2009-05-11 21:07:13 ----SD---- C:\WINDOWS\Tasks
2009-05-11 21:07:13 ----D---- C:\Program Files\Outlook Express
2009-05-11 21:06:59 ----D---- C:\Program Files\Movie Maker
2009-05-11 21:06:38 ----D---- C:\Program Files\Common Files\System
2009-05-11 21:05:40 ----D---- C:\WINDOWS\system32\Com
2009-05-11 21:05:03 ----D---- C:\Program Files\Windows Media Connect 2
2009-05-11 21:04:47 ----D---- C:\WINDOWS\Cursors
2009-05-11 21:04:37 ----D---- C:\Program Files\Windows NT
2009-05-11 21:04:19 ----D---- C:\WINDOWS\system32\wbem
2009-05-11 21:03:11 ----SH---- C:\boot.ini
2009-05-11 20:55:19 ----A---- C:\WINDOWS\system.ini
2009-05-11 20:55:18 ----RSD---- C:\WINDOWS\Fonts
2009-05-11 20:54:34 ----D---- C:\WINDOWS\system
2009-05-11 20:54:23 ----ASH---- C:\Documents and Settings\All Users\Dane aplikacji\desktop.ini
2009-05-11 18:35:35 ----A---- C:\WINDOWS\ntbtlog.txt
2009-05-11 18:35:23 ----D---- C:\Documents and Settings
2009-05-10 20:49:11 ----D---- C:\WINDOWS\Minidump
2009-05-10 20:10:32 ----HD---- C:\WINDOWS\$hf_mig$
2009-05-10 20:00:24 ----D---- C:\WINDOWS\ie7updates
2009-05-10 18:02:40 ----HD---- C:\Program Files\InstallShield Installation Information
2009-05-09 09:30:45 ----D---- C:\WINDOWS\system32\DirectX
2009-05-09 09:30:42 ----D---- C:\WINDOWS\Logs
2009-05-09 09:29:46 ----D---- C:\WINDOWS\system32\mui
2009-05-07 00:16:30 ----A---- C:\WINDOWS\system32\MRT.exe
2009-04-25 20:07:37 ----D---- C:\Documents and Settings\MICHU\Dane aplikacji\Xfire
2009-04-24 12:21:36 ----A---- C:\WINDOWS\system32\PnkBstrB.exe
2009-04-15 21:23:58 ----D---- C:\WINDOWS\system32\oodag
2009-04-14 18:36:49 ----D---- C:\Program Files\Xfire
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AmdK8;Sterownik procesora AMD; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 43008]
R1 AvgLdx86;AVG Free AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2009-05-11 325896]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2009-05-11 27784]
R1 AvgTdiX;AVG Free8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2009-05-11 108552]
R1 SbFw;SbFw; C:\WINDOWS\system32\drivers\SbFw.sys [2008-10-31 270888]
R1 sbhips;Sunbelt HIPS Driver; C:\WINDOWS\system32\drivers\sbhips.sys [2008-06-21 66600]
R3 Arp1394;Protokół klienta 1394 ARP; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-01-24 60800]
R3 HDAudBus;Sterownik magistrali Microsoft UAA dla High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-26 4279296]
R3 NIC1394;Sterownik sieci 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-01-24 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-01-15 6301248]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-03-22 52736]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-03-22 18944]
R3 SBFWIMCL;Sunbelt Software Firewall NDIS IM Filter Miniport; C:\WINDOWS\system32\DRIVERS\sbfwim.sys [2008-06-21 65576]
R3 usbehci;Sterownik Miniport rozszerzonego kontrolera hosta USB 2.0 Microsoft; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-04 26624]
R3 usbhub;Koncentrator z obsługą USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-04 57600]
R3 usbohci;Sterownik Miniport otwartego kontrolera hosta USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-04 17024]
R3 V0220Dev;Live! Cam Video IM; C:\WINDOWS\system32\DRIVERS\V0220Dev.sys [2006-06-29 146112]
R3 V0220Vfx;V0220VFX; C:\WINDOWS\system32\DRIVERS\V0220Vfx.sys [2006-06-08 6272]
S2 NVR0FLASHDev;NVR0FLASHDev; \??\C:\WINDOWS\nvflash.sys []
S3 CCDECODE;Dekoder napisów; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2009-03-11 25280]
S3 MSTEE;Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;Koder-dekoder NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Połączenie TV/wideo firmy Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-01-24 10880]
S3 s0016bus;Sony Ericsson Device 0016 driver (WDM); C:\WINDOWS\system32\DRIVERS\s0016bus.sys [2008-05-16 89256]
S3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s0016mdfl.sys [2008-05-16 15016]
S3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s0016mdm.sys [2008-05-16 120744]
S3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s0016mgmt.sys [2008-05-16 114216]
S3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS); C:\WINDOWS\system32\DRIVERS\s0016nd5.sys [2008-05-16 25512]
S3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s0016obex.sys [2008-05-16 110632]
S3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM); C:\WINDOWS\system32\DRIVERS\s0016unic.sys [2008-05-16 115752]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 USBSTOR;Sterownik magazynu masowego USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S3 WSTCODEC;Kodery-dekodery teletekstu w standardzie światowym; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2008-01-24 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-24 82944]
S4 dwshd;dwshd; C:\WINDOWS\System32\drivers\dwshd.sys []
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avg8wd;AVG Free8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2009-05-11 298776]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-01-31 152984]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2009-01-15 163908]
R2 O&O Defrag;O&O Defrag; C:\WINDOWS\system32\oodag.exe [2008-11-03 1332480]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2009-03-30 75064]
R2 SbPF.Launcher;SbPF.Launcher; C:\Program Files\Sunbelt Software\Personal Firewall\SbPFLnch.exe [2008-10-31 95528]
R2 SPF4;Sunbelt Personal Firewall 4; C:\Program Files\Sunbelt Software\Personal Firewall\SbPFSvc.exe [2008-10-31 1365288]
S2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2004-08-04 14336]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2003-02-20 32768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2009-03-08 362240]
S3 WMPNetworkSvc;Usługa udostępniania w sieci programu Windows Media Player; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-12-01 918016]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]
-----------------EOF-----------------