
Mam problem z otwarciem dysków, gdy klikam na ikonę wyskakuje mi opcja "otwórz za pomocą". Wcześniej Avas wykrył mi rootkit. Bardzo proszę o pomoc.
Oto logi z Combofix:
ComboFix 08-06-20.4 - MARCIN 2008-06-25 9:09:22.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.1.1045.18.211 [GMT 2:00]
Running from: C:\Documents and Settings\MARCIN\Pulpit\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Autorun.inf
C:\WINDOWS\system32\oledb32.dll
D:\Autorun.inf
E:\Autorun.inf
.
((((((((((((((((((((((((( Files Created from 2008-05-25 to 2008-06-25 )))))))))))))))))))))))))))))))
.
2008-06-24 22:53 . 2008-06-24 22:53 <DIR> d--h----- C:\$AVG8.VAULT$
2008-06-24 22:48 . 2008-06-24 22:48 75,272 --a------ C:\WINDOWS\system32\drivers\avgtdix.sys
2008-06-24 22:48 . 2008-06-24 22:48 10,520 --a------ C:\WINDOWS\system32\avgrsstx.dll
2008-06-24 22:47 . 2008-06-24 22:49 <DIR> d-------- C:\WINDOWS\system32\drivers\Avg
2008-06-24 22:47 . 2008-06-24 22:47 <DIR> d-------- C:\Program Files\AVG
2008-06-24 22:47 . 2008-06-25 08:58 <DIR> d-------- C:\Documents and Settings\MARCIN\Dane aplikacji\AVGTOOLBAR
2008-06-24 22:47 . 2008-06-24 22:47 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\avg8
2008-06-24 22:47 . 2008-06-24 22:47 96,520 --a------ C:\WINDOWS\system32\drivers\avgldx86.sys
2008-06-21 14:05 . 2008-06-21 14:05 98 --a------ C:\WINDOWS\WirelessFTP.INI
2008-06-05 22:08 . 2008-06-16 15:12 <DIR> d-------- C:\Documents and Settings\MARCIN\Dane aplikacji\AdobeUM
2008-06-05 19:29 . 2008-06-25 08:58 <DIR> d-------- C:\Documents and Settings\MARCIN\Dane aplikacji\OpenOffice.org2
2008-06-05 19:27 . 2008-06-05 19:28 <DIR> d-------- C:\Program Files\OpenOffice.org 2.3
2008-06-04 19:58 . 2008-06-04 19:58 <DIR> d-------- C:\Documents and Settings\MARCIN\Dane aplikacji\Corel
2008-06-04 15:59 . 1998-11-13 13:10 307,200 --a------ C:\WINDOWS\IsUn0415.exe
2008-06-03 10:36 . 2008-06-13 15:49 49 --a------ C:\WINDOWS\NeroDigital.ini
2008-06-03 08:13 . 2004-08-03 23:08 26,496 --a--c--- C:\WINDOWS\system32\dllcache\usbstor.sys
2008-06-01 15:46 . 2008-06-01 15:46 <DIR> d---s---- C:\Documents and Settings\MARCIN\UserData
2008-05-31 17:45 . 2008-05-31 17:45 <DIR> d-------- C:\Program Files\SubEdit-Player
2008-05-31 17:18 . 2008-05-31 17:18 <DIR> d-------- C:\Program Files\Common Files\Macrovision Shared
2008-05-31 17:18 . 2008-05-31 17:18 <DIR> d-------- C:\Program Files\Autodesk
2008-05-31 17:18 . 2008-05-31 17:18 54,784 --a------ C:\WINDOWS\system32\drivers\CDAC11BA.EXE
2008-05-31 17:18 . 2008-05-31 17:18 12,464 --a------ C:\WINDOWS\system32\drivers\CDAC15BA.SYS
2008-05-31 17:17 . 2008-05-31 17:17 <DIR> d-------- C:\Program Files\AnswerWorks 4.0
2008-05-31 17:16 . 2008-05-31 17:17 <DIR> d-------- C:\Program Files\Common Files\Autodesk Shared
2008-05-31 17:16 . 2008-05-31 17:22 <DIR> d-------- C:\Program Files\AutoCAD 2004
2008-05-31 17:16 . 2008-05-31 17:22 <DIR> d-------- C:\Documents and Settings\MARCIN\Dane aplikacji\Autodesk
2008-05-31 17:16 . 2008-05-31 17:16 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Autodesk
2008-05-31 17:10 . 2001-07-06 12:44 544,768 --a------ C:\WINDOWS\system32\imagx5.dll
2008-05-31 17:10 . 2000-06-26 11:45 106,496 --a------ C:\WINDOWS\system32\TwnLib20.dll
2008-05-31 17:10 . 2001-06-26 08:15 38,912 --a------ C:\WINDOWS\system32\picn20.dll
2008-05-31 17:09 . 2008-05-31 17:09 <DIR> d-------- C:\Program Files\Common Files\Ahead
2008-05-31 17:09 . 2008-05-31 17:10 <DIR> d-------- C:\Program Files\Ahead
2008-05-31 17:09 . 2001-07-06 14:41 569,344 --a------ C:\WINDOWS\system32\imagr5.dll
2008-05-31 17:09 . 2001-07-06 18:24 283,920 --a------ C:\WINDOWS\system32\ImagXpr5.dll
2008-05-31 17:09 . 2001-07-09 11:50 155,648 --a------ C:\WINDOWS\system32\NeroCheck.exe
2008-05-31 16:32 . 1998-09-25 13:18 607,744 --------- C:\WINDOWS\system32\Decslib.dll
2008-05-31 16:30 . 1999-03-08 08:53 28,252 --------- C:\WINDOWS\corelpf.lrs
2008-05-31 16:28 . 2008-05-31 16:28 <DIR> d-------- C:\WINDOWS\Profiles
2008-05-31 16:28 . 2008-05-31 16:30 <DIR> d-------- C:\Program Files\Corel
2008-05-31 16:27 . 2008-05-31 16:34 <DIR> d-------- C:\WINDOWS\Corel
2008-05-31 16:27 . 2008-05-31 16:27 98,304 --a------ C:\WINDOWS\system32\qttask.exe
2008-05-31 14:42 . 2008-05-31 14:43 <DIR> d-------- C:\Program Files\ACE Mega CoDecS Pack
2008-05-31 14:42 . 2001-10-31 10:14 1,650,688 --a------ C:\WINDOWS\system32\mplva6.dll
2008-05-31 14:07 . 2001-08-17 23:59 3,072 --a------ C:\WINDOWS\system32\drivers\audstub.sys
2008-05-31 14:06 . 2004-08-04 00:44 77,312 --a------ C:\WINDOWS\system32\usbui.dll
2008-05-31 14:06 . 2004-08-04 00:44 77,312 --a--c--- C:\WINDOWS\system32\dllcache\usbui.dll
2008-05-31 14:06 . 2004-08-04 02:35 58,624 --a------ C:\WINDOWS\system32\drivers\redbook.sys
2008-05-31 14:06 . 2004-08-04 01:07 14,080 --a------ C:\WINDOWS\system32\drivers\CmBatt.sys
2008-05-31 14:06 . 2001-08-17 23:57 14,080 --a------ C:\WINDOWS\system32\drivers\battc.sys
2008-05-31 14:06 . 2001-08-17 23:58 9,344 --a------ C:\WINDOWS\system32\drivers\compbatt.sys
2008-05-31 14:06 . 2001-08-17 23:46 6,400 --a------ C:\WINDOWS\system32\drivers\enum1394.sys
2008-05-31 14:04 . 2008-06-23 07:59 <DIR> d-------- C:\WINDOWS\system32\CatRoot2
2008-05-31 14:04 . 2008-05-31 14:04 <DIR> dr-h----- C:\Documents and Settings\Default User\Ustawienia lokalne
2008-05-31 14:04 . 2008-05-31 14:04 <DIR> d-------- C:\Documents and Settings\Default User\Ulubione
2008-05-31 14:04 . 2008-05-31 12:48 <DIR> d--h----- C:\Documents and Settings\Default User\Szablony
2008-05-31 14:04 . 2008-05-31 14:04 <DIR> d-------- C:\Documents and Settings\Default User\Pulpit
2008-05-31 14:04 . 2008-05-31 14:04 <DIR> d-------- C:\Documents and Settings\Default User\Moje dokumenty
2008-05-31 14:04 . 2008-05-31 14:04 <DIR> dr------- C:\Documents and Settings\Default User\Menu Start
2008-05-31 14:04 . 2008-05-31 14:04 <DIR> dr-h----- C:\Documents and Settings\Default User\Dane aplikacji
2008-05-31 14:04 . 2008-05-31 14:04 <DIR> d-------- C:\Documents and Settings\All Users\Ulubione
2008-05-31 14:04 . 2008-06-05 19:28 <DIR> d--h----- C:\Documents and Settings\All Users\Szablony
2008-05-31 14:04 . 2008-06-24 22:48 <DIR> d-------- C:\Documents and Settings\All Users\Pulpit
2008-05-31 14:04 . 2008-05-31 12:56 <DIR> dr------- C:\Documents and Settings\All Users\Menu Start
2008-05-31 14:04 . 2008-05-31 12:50 <DIR> dr------- C:\Documents and Settings\All Users\Dokumenty
2008-05-31 14:04 . 2008-06-24 22:47 <DIR> dr-h----- C:\Documents and Settings\All Users\Dane aplikacji
2008-05-31 14:03 . 2008-05-31 14:03 <DIR> d-------- C:\Program Files\Alwil Software
2008-05-31 14:03 . 2003-03-18 21:20 1,060,864 --a------ C:\WINDOWS\system32\MFC71.dll
2008-05-31 14:03 . 2008-05-31 12:56 261 --a------ C:\WINDOWS\system32\$winnt$.inf
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-04 14:03 --------- d-----w C:\Program Files\Common Files\Adobe
2008-05-31 11:50 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-05-31 11:50 --------- d-----w C:\Program Files\Common Files\BricsCad
2008-05-31 11:38 21,275 ----a-w C:\WINDOWS\system32\drivers\AegisP.sys
2008-05-31 11:38 --------- d-----w C:\WINDOWS\system32\config\systemprofile\Dane aplikacji\Intel
2008-05-31 11:38 --------- d-----w C:\Documents and Settings\MARCIN\Dane aplikacji\Intel
2008-05-31 11:37 --------- d-----w C:\Program Files\Intel
2008-05-31 11:37 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Intel
2008-05-31 11:33 --------- d-----w C:\Program Files\Toshiba
2008-05-31 11:32 --------- d-----w C:\Program Files\Wireless Console 2
2008-05-31 11:30 --------- d-----w C:\Program Files\Synaptics
2008-05-31 11:28 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-05-31 11:27 --------- d-----w C:\Program Files\Realtek
2008-05-31 10:53 --------- d-----w C:\Program Files\microsoft frontpage
2008-05-31 10:51 --------- d-----w C:\Program Files\Usługi online
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 00:44 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HControl"="C:\WINDOWS\ATK0100\HControl.exe" [2006-02-23 06:40 106496]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-11-21 17:51 7335936]
"nwiz"="nwiz.exe" [2005-11-21 17:51 1519616 C:\WINDOWS\system32\nwiz.exe]
"Skrót do strony właściwości High Definition Audio"="HDAShCut.exe" [2005-01-07 17:07 61952 C:\WINDOWS\system32\HdAShCut.exe]
"SMSERIAL"="sm56hlpr.exe" [2005-05-27 01:12 544768 C:\WINDOWS\sm56hlpr.exe]
"RTHDCPL"="RTHDCPL.EXE" [2005-09-06 14:39 14850560 C:\WINDOWS\RTHDCPL.EXE]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2005-10-21 08:26 761945]
"Wireless Console 2"="C:\Program Files\Wireless Console 2\wcourier.exe" [2005-10-17 17:09 987136]
"IntelZeroConfig"="C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe" [2006-04-14 11:51 667718]
"IntelWireless"="C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" [2006-04-14 11:52 602182]
"EOUApp"="C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe" [2006-04-14 11:56 569413]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-05-16 01:19 79224]
"QuickTime Task"="C:\WINDOWS\system32\qttask.exe" [2008-05-31 16:27 98304]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50 155648]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-06-24 22:47 1177368]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 00:44 15360]
C:\Documents and Settings\MARCIN\Menu Start\Programy\Autostart\
OpenOffice.org 2.3.lnk - C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe [2007-08-17 22:57:56 393216]
Rejestrowanie produkt˘w Corela.lnk - C:\Program Files\Corel\Graphics9\Register\Remind32.exe [2008-05-31 16:30:12 67584]
C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\
Adobe Gamma Loader.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2008-06-04 16:03:35 113664]
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 04:44:06 29696]
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe [2005-06-16 11:11:42 49152]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"msacm.iac2"= C:\PROGRA~1\ACEMEG~1\SystemS\Intel\iac25_32.ax
"msacm.sl_anet"= C:\PROGRA~1\ACEMEG~1\SystemS\sl_anet.acm
"vidc.yv12"= C:\PROGRA~1\ACEMEG~1\SystemS\ATI\atiyuv12.DLL
"vidc.divx"= C:\PROGRA~1\ACEMEG~1\SystemS\DivX\DivX520.dll
"vidc.iyuv"= C:\PROGRA~1\ACEMEG~1\SystemS\Intel\iyuv_32.dll
"vidc.yvu9"= C:\PROGRA~1\ACEMEG~1\SystemS\Intel\Iyvu9_32.dll
"vidc.uyvy"= C:\PROGRA~1\ACEMEG~1\SystemS\MICROS~1\msyuv.dll
"vidc.yuy2"= C:\PROGRA~1\ACEMEG~1\SystemS\MICROS~1\msyuv.dll
"vidc.yvyu"= C:\PROGRA~1\ACEMEG~1\SystemS\MICROS~1\msyuv.dll
"msacm.msaudio1"= C:\PROGRA~1\ACEMEG~1\SystemS\MICROS~1\msaud32.acm
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 01:20]
R1 AvgLdx86;AVG AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-06-24 22:47]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16]
R2 avg8emc;AVG8 E-mail Scanner;C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-06-24 22:47]
R2 avg8wd;AVG8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-06-24 22:47]
R2 AvgTdiX;AVG8 Network Redirector;C:\WINDOWS\system32\Drivers\avgtdix.sys [2008-06-24 22:48]
R3 SynMini;USB2.0 1.3M Web Cam;C:\WINDOWS\system32\Drivers\SynMini.sys [2005-10-03 10:26]
R3 SynScan;USB2.0 1.3M Web Cam Still Image;C:\WINDOWS\system32\Drivers\SynScan.sys [2005-10-03 10:26]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{342ee2b2-3134-11dd-a07b-0018de88868f}]
\Shell\AutoRun\command - G:\f6cavn.bat
\Shell\explore\Command - G:\f6cavn.bat
\Shell\open\Command - G:\f6cavn.bat
Log z Hijackthis
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:25:22, on 2008-06-25
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\ATK0100\HControl.exe
C:\WINDOWS\sm56hlpr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\qttask.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\ATK0100\ATKOSD.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Corel\Graphics9\Register\Remind32.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files\OpenOffice.org 2.3\program\soffice.BIN
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\PROGRA~1\AVG\AVG8\aAvgApi.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [HControl] C:\WINDOWS\ATK0100\HControl.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Skrót do strony właściwości High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Wireless Console 2] C:\Program Files\Wireless Console 2\wcourier.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [EOUApp] "C:\Program Files\Intel\Wireless\Bin\EOUWiz.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\system32\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 2.3.lnk = C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe
O4 - Startup: Rejestrowanie produktów Corela.lnk = C:\Program Files\Corel\Graphics9\Register\Remind32.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: brx - {9C160F90-74D1-11D3-AB60-0060977C1F29} - C:\Program Files\Common Files\BricsCad\BrxProtIE.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
--
End of file - 7033 bytes