




Jak to naprawić..

Dodatkowo log:
- Kod: Zaznacz wszystko
ComboFix 08-12-12.05 - Admin 2008-12-17 15:06:55.3 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1250.1.1045.18.2047.1684 [GMT 1:00]
Uruchomiony z: c:\documents and settings\Admin\Pulpit\ComboFix.exe
[COLOR=RED][B]UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !![/B][/COLOR]
.
((((((((((((((((((((((((( Pliki utworzone od 2008-11-17 do 2008-12-17 )))))))))))))))))))))))))))))))
.
2008-12-16 23:01 . 2008-12-16 23:01 <DIR> d-------- c:\program files\MSXML 4.0
2008-12-16 16:43 . 2008-12-16 16:52 <DIR> d-------- C:\UniScan
2008-12-15 22:24 . 2008-12-15 22:32 <DIR> d-------- c:\program files\BitKinex
2008-12-15 20:58 . 2008-12-15 20:58 <DIR> d-------- c:\program files\NAPI-PROJEKT
2008-12-14 11:24 . 2008-12-14 11:24 1,700,352 --a------ c:\windows\system32\gdiplus.dll
2008-12-14 11:24 . 2008-12-14 11:24 1,060,864 --a------ c:\windows\system32\mfc71.dll
2008-12-14 10:25 . 2008-12-14 11:36 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\DivX
2008-12-14 10:24 . 2008-11-21 22:47 120,056 --------- c:\windows\system32\pxcpyi64.exe
2008-12-14 10:24 . 2008-11-21 22:47 118,520 --------- c:\windows\system32\pxinsi64.exe
2008-12-14 10:17 . 2008-12-14 10:17 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\CyberLink
2008-12-14 09:55 . 2008-12-14 09:55 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\Media Player Classic
2008-12-14 09:46 . 2008-12-14 09:52 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\BESTplayer
2008-12-14 09:45 . 2008-12-16 20:59 49 --a------ c:\windows\NeroDigital.ini
2008-12-13 23:18 . 2008-12-02 10:13 453,152 --a------ c:\windows\system32\NVUNINST.EXE
2008-12-13 23:18 . 2008-12-02 23:11 453,152 --a------ c:\windows\system32\nvudisp.exe
2008-12-13 23:18 . 2008-12-17 15:06 205,151 --a------ c:\windows\system32\nvapps.xml
2008-12-13 23:18 . 2008-12-02 23:11 18,696 --a------ c:\windows\system32\nvdisp.nvu
2008-12-13 16:46 . 2008-12-13 16:47 112,284,744 --a------ C:\180.48_geforce_winxp_32bit_international_whql.exe
2008-12-13 16:32 . 2008-12-13 16:32 <DIR> d-------- C:\NVIDIA
2008-12-13 15:30 . 2008-12-13 15:30 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\KONAMI
2008-12-13 14:27 . 2008-12-13 16:30 <DIR> d-------- c:\program files\Driver Cleaner
2008-12-13 13:48 . 2008-12-13 13:48 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\eMule
2008-12-13 13:38 . 2008-12-13 13:38 <DIR> d-------- c:\program files\ReflexiveArcade
2008-12-13 13:30 . 2008-12-14 22:41 <DIR> d-a------ c:\documents and settings\All Users\Dane aplikacji\TEMP
2008-12-13 13:22 . 2008-12-13 13:22 <DIR> d-------- c:\program files\bfgclient
2008-12-13 13:21 . 2008-12-13 13:22 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\BigFishGamesCache
2008-12-13 13:19 . 2008-12-13 23:18 1,324 --a------ c:\windows\system32\d3d9caps.dat
2008-12-13 11:53 . 2008-12-13 11:53 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\PlayFirst
2008-12-13 11:53 . 2008-12-13 11:53 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\PlayFirst
2008-12-13 11:13 . 2008-12-13 11:13 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\FarmFrenzy2
2008-12-12 20:48 . 2008-12-12 20:48 <DIR> d-------- C:\Pro.Evolution.Soccer.2009-RELOADED
2008-12-12 17:45 . 2008-12-13 13:21 <DIR> d-------- c:\program files\Zylom Games
2008-12-12 17:45 . 2008-12-12 17:45 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\My Games
2008-12-12 14:47 . 2008-12-12 14:47 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\Zylom
2008-12-12 14:47 . 2008-12-13 12:16 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\Zylom
2008-12-12 14:43 . 2008-12-12 14:43 <DIR> d-------- c:\windows\Sun
2008-12-12 11:36 . 2008-12-12 11:36 0 --ah----- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-12-12 11:36 . 2008-12-12 11:36 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
2008-12-12 11:33 . 2008-04-14 00:15 26,368 --a--c--- c:\windows\system32\dllcache\usbstor.sys
2008-12-12 11:11 . 2008-12-12 11:11 <DIR> d---s---- c:\documents and settings\Admin\UserData
2008-12-12 11:09 . 2008-04-14 00:15 15,104 --a------ c:\windows\system32\drivers\usbscan.sys
2008-12-12 11:09 . 2008-04-14 00:15 15,104 --a--c--- c:\windows\system32\dllcache\usbscan.sys
2008-12-11 20:56 . 2008-12-17 12:54 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\uTorrent
2008-12-11 20:20 . 2008-12-11 20:20 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\Nero
2008-12-11 20:09 . 2008-12-11 20:09 <DIR> d-------- c:\program files\Nero
2008-12-11 20:09 . 2008-12-11 20:18 <DIR> d-------- c:\program files\Common Files\Nero
2008-12-11 20:09 . 2008-12-11 20:09 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\Nero
2008-12-11 19:51 . 2008-12-11 20:00 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\Nowe Gadu-Gadu
2008-12-11 19:50 . 2008-12-11 19:51 <DIR> d-------- c:\program files\Nowe Gadu-Gadu
2008-12-11 19:28 . 2008-12-11 19:28 <DIR> dr-h----- c:\documents and settings\Admin\Dane aplikacji\SecuROM
2008-12-11 19:27 . 2008-12-11 19:27 669,184 --a------ c:\windows\system32\pbsvc.exe
2008-12-11 19:27 . 2008-12-11 19:27 103,736 --a------ c:\windows\system32\PnkBstrB.exe
2008-12-11 19:27 . 2008-12-11 19:27 66,872 --a------ c:\windows\system32\PnkBstrA.exe
2008-12-11 19:27 . 2008-12-11 19:27 22,328 --a------ c:\windows\system32\drivers\PnkBstrK.sys
2008-12-11 19:27 . 2008-12-11 19:27 22,328 --a------ c:\documents and settings\Admin\Dane aplikacji\PnkBstrK.sys
2008-12-11 18:55 . 2008-12-11 18:55 <DIR> d-------- c:\program files\MSBuild
2008-12-11 18:55 . 2008-12-11 18:55 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\Talkback
2008-12-11 18:54 . 2008-12-11 18:54 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\Thunderbird
2008-12-11 18:53 . 2008-12-11 18:53 <DIR> d-------- c:\windows\system32\XPSViewer
2008-12-11 18:53 . 2008-12-11 18:53 <DIR> d-------- c:\program files\Reference Assemblies
2008-12-11 18:53 . 2006-06-29 13:07 14,048 --------- c:\windows\system32\spmsg2.dll
2008-12-11 18:50 . 2008-12-11 18:50 <DIR> d-------- c:\windows\system32\xlive
2008-12-11 18:50 . 2008-12-11 19:27 <DIR> d-------- c:\windows\system32\LogFiles
2008-12-11 18:50 . 2008-12-11 18:50 <DIR> d-------- c:\windows\system32\drivers\umdf
2008-12-11 18:50 . 2008-12-11 18:50 <DIR> d-------- c:\windows\Logs
2008-12-11 18:50 . 2008-12-11 19:01 <DIR> d-------- c:\program files\Microsoft Games for Windows - LIVE
2008-12-11 18:50 . 2008-03-05 15:56 3,786,760 --a------ c:\windows\system32\D3DX9_37.dll
2008-12-11 18:50 . 2008-03-05 15:56 1,420,824 --a------ c:\windows\system32\D3DCompiler_37.dll
2008-12-11 18:50 . 2008-02-05 23:07 462,864 --a------ c:\windows\system32\d3dx10_37.dll
2008-12-11 18:50 . 2007-04-04 18:53 81,768 --a------ c:\windows\system32\xinput1_3.dll
2008-12-11 18:17 . 2008-06-14 18:36 273,024 --------- c:\windows\system32\drivers\bthport.sys
2008-12-11 18:17 . 2008-06-14 18:36 273,024 -----c--- c:\windows\system32\dllcache\bthport.sys
2008-12-11 18:16 . 2008-08-14 14:26 2,190,464 -----c--- c:\windows\system32\dllcache\ntoskrnl.exe
2008-12-11 18:16 . 2008-08-14 14:26 2,146,816 -----c--- c:\windows\system32\dllcache\ntkrnlmp.exe
2008-12-11 18:16 . 2008-08-14 14:26 2,067,328 -----c--- c:\windows\system32\dllcache\ntkrnlpa.exe
2008-12-11 18:16 . 2008-08-14 14:26 2,025,472 -----c--- c:\windows\system32\dllcache\ntkrpamp.exe
2008-12-11 18:16 . 2008-10-24 12:21 455,296 -----c--- c:\windows\system32\dllcache\mrxsmb.sys
2008-12-11 18:16 . 2006-10-08 21:51 23,856 --a------ c:\windows\system32\spupdsvc.exe
2008-12-11 18:15 . 2008-12-16 23:04 <DIR> d--h----- c:\windows\$hf_mig$
2008-12-11 18:06 . 2008-12-11 18:06 427 --a------ c:\windows\ODBC.INI
2008-12-11 18:05 . 2008-12-11 18:05 <DIR> d-------- c:\windows\ShellNew
2008-12-11 18:01 . 2008-12-11 18:01 <DIR> d-------- c:\program files\CyberLink
2008-12-11 18:01 . 2008-12-11 18:01 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\CyberLink
2008-12-11 17:56 . 2008-12-11 17:56 <DIR> d-------- c:\program files\Common Files\Hewlett-Packard
2008-12-11 17:56 . 2008-12-11 17:56 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\Folder przesyłania Share-to-Web
2008-12-11 17:56 . 2008-12-11 17:56 82,380 --a------ c:\windows\system32\drivers\AFS2K.SYS
2008-12-11 17:53 . 2008-12-11 17:56 <DIR> d-------- c:\program files\Hewlett-Packard
2008-12-11 17:53 . 1998-10-07 12:54 327,168 --a------ c:\windows\IsUn0415.exe
2008-12-11 17:53 . 2008-12-11 17:53 150,314 --a------ c:\windows\hpdj3500.hi1
2008-12-11 17:53 . 2008-12-11 17:53 8,980 --a------ c:\windows\hpdj3500.bu1
2008-12-11 17:52 . 2008-12-11 17:54 158,318 --a------ c:\windows\hpdj3500.his
2008-12-11 17:52 . 2008-12-11 17:54 9,879 --a------ c:\windows\hpdj3500.ini
2008-12-11 17:49 . 2008-12-11 17:49 <DIR> d-------- c:\documents and settings\Admin\Dane aplikacji\DAEMON Tools Pro
2008-12-11 17:48 . 2008-12-11 17:48 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\DAEMON Tools Pro
2008-12-11 17:47 . 2008-12-11 17:50 <DIR> d-------- c:\program files\DAEMON Tools Pro
2008-12-11 17:43 . 2008-12-11 17:43 <DIR> d-------- c:\program files\Common Files\Adobe Systems Shared
2008-12-11 17:43 . 2008-12-11 17:43 <DIR> d-------- c:\documents and settings\All Users\Dane aplikacji\Adobe Systems
2008-12-11 17:35 . 2008-12-11 17:36 <DIR> d-------- c:\program files\Java
2008-12-11 17:35 . 2008-12-11 17:35 <DIR> d-------- c:\program files\Common Files\Java
2008-12-11 17:35 . 2008-12-11 17:35 69,632 --a------ c:\windows\system32\javacpl.cpl
2008-12-11 17:12 . 2008-12-11 17:12 <DIR> d-------- c:\windows\tmp
2008-12-11 17:04 . 2008-12-11 17:04 4,444 --a------ c:\windows\system32\pid.PNF
2008-12-11 17:03 . 2008-04-14 22:35 58,880 --a------ c:\windows\system32\drivers\redbook.sys
2008-12-11 17:03 . 2008-04-14 01:17 25,856 --a------ c:\windows\system32\drivers\usbprint.sys
2008-12-11 17:03 . 2001-08-17 22:59 3,072 --a------ c:\windows\system32\drivers\audstub.sys
2008-12-11 17:02 . 2008-04-14 22:50 77,312 --a------ c:\windows\system32\usbui.dll
2008-12-11 17:02 . 2008-04-14 22:50 77,312 --a--c--- c:\windows\system32\dllcache\usbui.dll
2008-12-11 17:01 . 2008-12-11 17:01 <DIR> dr-h----- c:\documents and settings\Default User\Ustawienia lokalne
2008-12-11 17:01 . 2008-12-11 17:01 <DIR> d-------- c:\documents and settings\Default User\Ulubione
2008-12-11 17:01 . 2008-12-11 16:06 <DIR> d--h----- c:\documents and settings\Default User\Szablony
2008-12-11 17:01 . 2008-12-11 17:01 <DIR> d-------- c:\documents and settings\Default User\Pulpit
2008-12-11 17:01 . 2008-12-11 17:01 <DIR> d-------- c:\documents and settings\Default User\Moje dokumenty
2008-12-11 17:01 . 2008-12-11 17:01 <DIR> dr------- c:\documents and settings\Default User\Menu Start
2008-12-11 17:01 . 2008-12-11 17:01 <DIR> dr-h----- c:\documents and settings\Default User\Dane aplikacji
2008-12-11 17:01 . 2008-12-11 17:01 <DIR> d-------- c:\documents and settings\All Users\Ulubione
2008-12-11 17:01 . 2008-12-11 17:01 <DIR> d--h----- c:\documents and settings\All Users\Szablony
2008-12-11 17:01 . 2008-12-16 19:22 <DIR> d-------- c:\documents and settings\All Users\Pulpit
2008-12-11 17:01 . 2008-12-12 20:43 <DIR> dr------- c:\documents and settings\All Users\Menu Start
2008-12-11 17:01 . 2008-12-11 18:59 <DIR> dr------- c:\documents and settings\All Users\Dokumenty
2008-12-11 17:01 . 2008-12-16 19:24 <DIR> dr-h----- c:\documents and settings\All Users\Dane aplikacji
2008-12-11 17:00 . 2008-12-11 16:30 <DIR> d--h----- c:\documents and settings\Default User
2008-12-11 17:00 . 2008-12-11 17:48 <DIR> d-------- c:\documents and settings\All Users
2008-12-11 17:00 . 2008-12-11 16:12 <DIR> d-------- C:\Documents and Settings
2008-12-11 17:00 . 2008-12-11 17:46 685,816 --a------ c:\windows\system32\drivers\sptd.sys
2008-12-11 17:00 . 2008-12-11 16:11 261 --a------ c:\windows\system32\$winnt$.inf
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-16 22:01 --------- d-----w c:\program files\Mozilla Thunderbird
2008-12-16 18:05 --------- d--h--w c:\program files\InstallShield Installation Information
2008-12-16 13:00 --------- d-----w c:\program files\Common Files\Adobe
2008-12-15 21:06 --------- d-----w c:\documents and settings\Admin\Dane aplikacji\Vso
2008-12-12 13:34 --------- d-----w c:\documents and settings\Admin\Dane aplikacji\Winamp
2008-12-11 17:51 107,888 ----a-w c:\windows\system32\CmdLineExt.dll
2008-12-11 17:00 --------- d-----w c:\program files\Common Files\InstallShield
2008-12-11 16:29 --------- d-----w c:\program files\Real Alternative
2008-12-11 16:29 --------- d-----w c:\program files\K-Lite Codec Pack
2008-12-11 16:28 --------- d-----w c:\program files\Creative
2008-12-11 16:27 409,600 ----a-w c:\windows\system32\wrap_oal.dll
2008-12-11 16:27 114,688 ----a-w c:\windows\system32\OpenAL32.dll
2008-12-11 15:51 361,344 ----a-w c:\windows\system32\drivers\tcpip.sys
2008-12-11 15:51 --------- d-----w c:\program files\UltraISO
2008-12-11 15:51 --------- d-----w c:\program files\Common Files\EZB Systems
2008-12-11 15:50 --------- d-----w c:\program files\xp-AntiSpy
2008-12-11 15:50 --------- d-----w c:\program files\Winamp
2008-12-11 15:49 --------- d-----w c:\program files\HyperSnap 6
2008-12-11 15:47 47,360 ----a-w c:\windows\system32\drivers\pcouffin.sys
2008-12-11 15:47 47,360 ----a-w c:\documents and settings\Admin\Dane aplikacji\pcouffin.sys
2008-12-11 15:47 --------- d-----w c:\program files\vso
2008-12-11 15:47 --------- d-----w c:\program files\Media Player Classic
2008-12-11 15:46 --------- d-----w c:\program files\Opera
2008-12-11 15:45 --------- d-----w c:\program files\The Bat!
2008-12-11 15:41 --------- d-----w c:\program files\Malicious Software Removal Tool
2008-12-11 15:40 --------- d-----w c:\program files\PowerMenu
2008-12-11 15:40 --------- d-----w c:\program files\Microsoft Bootvis
2008-12-11 15:40 --------- d-----w c:\program files\HighMAT CD Writing Wizard
2008-12-11 15:40 --------- d-----w c:\program files\Dir2File
2008-12-11 15:39 --------- d-----w c:\program files\Microsoft CopyProfile
2008-12-11 15:34 --------- d-----w c:\program files\AutoPatcher
2008-12-11 15:25 --------- d-----w c:\documents and settings\All Users\Dane aplikacji\nView_Profiles
2008-12-11 15:24 --------- d-----w c:\program files\Common Files\Wise Installation Wizard
2008-12-11 15:24 --------- d-----w c:\program files\AGEIA Technologies
2008-12-11 15:18 --------- d-----w c:\program files\Intel
2008-12-11 15:09 --------- d-----w c:\program files\microsoft frontpage
2008-12-11 15:08 --------- d-----w c:\program files\Usługi online
2008-11-21 21:47 129,784 ------w c:\windows\system32\pxafs.dll
2008-11-21 21:44 161,096 ----a-w c:\windows\system32\DivXCodecVersionChecker.exe
2008-11-12 13:54 290,816 ----a-w c:\windows\system32\nvwrsth.dll
2008-10-28 16:41 14,303,392 ----a-w c:\windows\system32\xlive.dll
2008-10-28 16:41 13,643,936 ----a-w c:\windows\system32\xlivefnt.dll
2008-10-24 11:21 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 12:42 286,720 ----a-w c:\windows\system32\gdi32.dll
2008-10-16 20:33 826,368 ----a-w c:\windows\system32\wininet.dll
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
2008-10-13 08:56 70,936 ----a-w c:\windows\system32\PhysXLoader.dll
2008-10-03 10:04 247,326 ----a-w c:\windows\system32\strmdll.dll
2008-09-30 15:43 1,286,152 ----a-w c:\windows\system32\msxml4.dll
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"DAEMON Tools Pro Agent"="c:\program files\DAEMON Tools Pro\DTProAgent.exe" [2007-09-06 136136]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files\Common Files\Nero\Lib\NMBgMonitor.exe" [2007-08-03 202024]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"36X Raid Configurer"="c:\windows\system32\xRaidSetup.exe" [2007-11-19 1970176]
"HP Software Update"="c:\program files\Hewlett-Packard\HP Software Update\HPWuSchd.exe" [2002-12-17 49152]
"HPDJ Taskbar Utility"="c:\windows\system32\spool\drivers\w32x86\3\hpztsb08.exe" [2003-03-11 172032]
"DeviceDiscovery"="c:\program files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe" [2002-12-02 40960]
"NeroFilterCheck"="c:\program files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 153136]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-12-02 13680640]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-12-02 86016]
"Office register"="c:\program files\Common Files\Microsoft Shared\Office10\MSOICON.EXE" [2008-12-14 172544]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]
"P17Helper"="P17.dll" [2005-05-03 c:\windows\system32\P17.dll]
"nwiz"="nwiz.exe" [2008-12-02 c:\windows\system32\nwiz.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"ForceClassicControlPanel"= 1 (0x1)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"d:\\Tlen.pl\\tlen.exe"=
"d:\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"d:\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"d:\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"d:\\uTorrent\\uTorrent.exe"=
"d:\\DOKUMENTY\\Madzia\\e\\eMule\\emule.exe"=
"c:\\Program Files\\Common Files\\Microsoft Shared\\Office10\\MSOICON.EXE"=
"d:\\Rockstar Games\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
"d:\\Pro Evolution Soccer 2009\\pes2009.exe"=
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5ff6457-c79a-11dd-9615-806d6172696f}]
\Shell\AutoRun\command - E:\setup.exe
.
.
------- Skan uzupełniający -------
.
IE: E&ksport do programu Microsoft Excel - c:\progra~1\MICROS~4\Office10\EXCEL.EXE/3000
FF - ProfilePath - c:\documents and settings\Admin\Dane aplikacji\Mozilla\Firefox\Profiles\hr3zxlcf.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.pl/
FF - plugin: c:\documents and settings\All Users\Dane aplikacji\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
FF - plugin: c:\program files\Java\jre1.6.0\bin\npjava11.dll
FF - plugin: c:\program files\Java\jre1.6.0\bin\npjava12.dll
FF - plugin: c:\program files\Java\jre1.6.0\bin\npjava13.dll
FF - plugin: c:\program files\Java\jre1.6.0\bin\npjava14.dll
FF - plugin: c:\program files\Java\jre1.6.0\bin\npjava32.dll
FF - plugin: c:\program files\Java\jre1.6.0\bin\npjpi160.dll
FF - plugin: c:\program files\Java\jre1.6.0\bin\npoji610.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npzylomgamesplayer.dll
FF - plugin: c:\program files\Opera\program\plugins\npdivx32.dll
FF - plugin: c:\program files\Opera\program\plugins\NPJava11.dll
FF - plugin: c:\program files\Opera\program\plugins\NPJava12.dll
FF - plugin: c:\program files\Opera\program\plugins\NPJava13.dll
FF - plugin: c:\program files\Opera\program\plugins\NPJava14.dll
FF - plugin: c:\program files\Opera\program\plugins\NPJava32.dll
FF - plugin: c:\program files\Opera\program\plugins\NPJPI142_16.dll
FF - plugin: c:\program files\Opera\program\plugins\NPOJI610.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - plugin: d:\dokumenty\Natalia\DivX\DivX Player\npDivxPlayerPlugin.dll
FF - plugin: d:\dokumenty\Natalia\DivX\DivX Web Player\npdivx32.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-17 15:07:44
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
skanowanie ukrytych procesów ...
skanowanie ukrytych wpisów autostartu ...
skanowanie ukrytych plików ...
skanowanie pomyślnie ukończone
ukryte pliki: 0
**************************************************************************
.
Czas ukończenia: 2008-12-17 15:08:05
ComboFix-quarantined-files.txt 2008-12-17 14:07:56
Przed: 15 325 495 296 bajtów wolnych
Po: 15,342,796,800 bajtów wolnych
278 --- E O F --- 2008-12-16 22:04:56