
Loga OTL
http://www.wklej.org/id/442071/
http://www.wklej.org/id/442072/
Gmer
http://www.wklej.org/id/442074/
[Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
:OTL
O4 - HKLM..\Run: [gg] C:\WINDOWS\system32\gg.exe ()
O4 - HKU\S-1-5-21-2361272511-3854900133-2873537948-1007..\RunOnce: [bPpGf04300] C:\Documents and Settings\All Users\Dane aplikacji\bPpGf04300\bPpGf04300.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe File not found
O9 - Extra Button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe File not found
O33 - MountPoints2\{0f2b3386-3781-11dd-a890-0019e06f9448}\Shell\AutoRun\command - "" = I:\33r.exe -- File not found
O33 - MountPoints2\{0f2b3386-3781-11dd-a890-0019e06f9448}\Shell\open\Command - "" = I:\33r.exe -- File not found
O33 - MountPoints2\{6338943a-fb13-11dc-a7d8-d7aa21fc10a6}\Shell\AutoRun\command - "" = I:\33r.exe -- File not found
O33 - MountPoints2\{6338943a-fb13-11dc-a7d8-d7aa21fc10a6}\Shell\open\Command - "" = I:\33r.exe -- File not found
O33 - MountPoints2\{6338943b-fb13-11dc-a7d8-d7aa21fc10a6}\Shell\AutoRun\command - "" = J:\33r.exe -- File not found
O33 - MountPoints2\{6338943b-fb13-11dc-a7d8-d7aa21fc10a6}\Shell\open\Command - "" = J:\33r.exe -- File not found
:Files
C:\Documents and Settings\GRZEGORZ\Dane aplikacji\gzzd.exe
C:\Documents and Settings\GRZEGORZ\Dane aplikacji\zbh.exe
C:\Documents and Settings\All Users\Dane aplikacji\bPpGf04300
C:\WINDOWS\tasks\*.job
C:\WINDOWS\System32\kb.dll
C:\Documents and Settings\Administrator\Dane aplikacji\MSN Search Toolbar
C:\Documents and Settings\Default User\Dane aplikacji\MSN Search Toolbar
:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
:Commands
[emptytemp]
[emptyflash]
[clearallrestorepoints]
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"G:\Gry\Minicar\Game\minicar.exe"=-
"G:\Gry\wolf\ETDED.exe"=-
"G:\Gry\wolf\ET.exe"=-
"E:\ETI\SEMESTR_5\Matamatyka komputerowa\Mathematica.exe"=-
"E:\ETI\SEMESTR_5\Matamatyka komputerowa\MathKernel.exe"=-
"G:\Gry\qake\quake3.exe"=-
"C:\Documents and Settings\GRZEGORZ\Pulpit\The All-Seeing Eye 2.6\eye.exe"=-
"G:\Gry\Call of Duty 2\eye.exe"=-
"G:\Gry\Call of Duty 2\The All-Seeing Eye 2.6\eye_2.6-pl\eye.exe"=-
"C:\Documents and Settings\GRZEGORZ\Pulpit\The All-Seeing Eye 2.6\eye_2.6-pl\eye.exe"=-
"C:\Program Files\HLSW\hlsw.exe"=-
"G:\Gry\AGE_C\age2_x1t.exe"=-
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 5 gości