
po czym kiedy go usune pojawia sie nastepny i nast...
Zanim przeczytalem nowosci na forum juz uzylem combofixa

oto logi:
- Kod: Zaznacz wszystko
DDS (Ver_09-07-30.01) - NTFSx86
Run by Pan Piotr at 18:00:24,88 on 2009-09-07
Internet Explorer: 8.0.6001.18813
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.353.1045.18.3066.2144 [GMT 1:00]
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
SP: SUPERAntiSpyware *enabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\rundll32.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe
C:\Program Files\Samsung\Samsung Magic Doctor\MagicDoctorKbdHk.exe
C:\Program Files\Samsung\EBM\EasyBatteryMgr3.exe
C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe
C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\Windows\system32\agrsmsvc.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Windows\Installer\MSI46F5.tmp
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\spool\DRIVERS\W32X86\3\HP1006MC.EXE
C:\Program Files\Nowe Gadu-Gadu\gg.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE
C:\Program Files\Nowe Gadu-Gadu\spellchecker_gg.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Pan Piotr\Downloads\dds.pif
C:\Windows\system32\conime.exe
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: IEPlugin Class: {11222041-111b-46e3-bd29-efb2449479b1} - c:\progra~1\arcsoft\mediac~1\intern~1\ARCURL~1.DLL
BHO: IEPluginBHO Class: {f5cc7f02-6f4e-4462-b5b1-394a57fd3e0d} - c:\users\pan piotr\appdata\roaming\nowe gadu-gadu\_userdata\ggbho.1.dll
TB: DAEMON Tools Toolbar: {32099aac-c132-4136-9e9a-4e364a424e17} - c:\program files\daemon tools toolbar\DTToolbar.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [Nowe Gadu-Gadu] "c:\program files\nowe gadu-gadu\gg.exe"
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
LSP: c:\program files\avira\antivir desktop\avsda.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
================= FIREFOX ===================
FF - ProfilePath - c:\users\panpio~1\appdata\roaming\mozilla\firefox\profiles\0vumbisv.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.pl/
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("media.enforce_same_site_origin", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.cache_size", 51200);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.ogg.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.wave.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.autoplay.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.urlbar.autocomplete.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.mailnews.*.wholeText", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.storage.default_quota", 5120);
c:\program files\mozilla firefox\greprefs\all.js - pref("content.sink.event_probe_rate", 3);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.http.prompt-temp-redirect", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.dpi", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.devPixelsPerPx", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("gestures.enable_single_finger_input", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.max_chrome_script_run_time", 0);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.tcp.sendbuffer", 131072);
c:\program files\mozilla firefox\greprefs\all.js - pref("geo.enabled", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.remember_cert_checkbox_default_setting", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-cjkt", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.blocklist.level", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.restrict.typed", "~");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.default.behavior", 0);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.sanitize.migrateFx3Prefs", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.ssl_override_behavior", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("security.alternate_certificate_error_page", "certerror");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.autostart", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.dont_prompt_on_enter", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("geo.wifi.uri", "https://www.google.com/loc/json");
============= SERVICES / DRIVERS ===============
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2009-8-5 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2009-8-5 74480]
R2 AntiVirMailService;Avira AntiVir MailGuard;c:\program files\avira\antivir desktop\avmailc.exe [2009-8-24 194817]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2009-8-24 108289]
R2 AntiVirWebService;Avira AntiVir WebGuard;c:\program files\avira\antivir desktop\avwebgrd.exe [2009-8-24 434945]
R2 KMDFMEMIO;SAMSUNG Kernel Driver;c:\windows\system32\drivers\KMDFMEMIO.sys [2009-8-12 13312]
R2 SCPDFReadSpool;SolidConverterPDFReadSpool;c:\windows\installer\MSI46F5.tmp [2009-9-3 189696]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32v.sys [2009-6-26 66080]
R3 VMC302;Vimicro Camera Service VMC302;c:\windows\system32\drivers\vmc302.sys [2009-8-12 242560]
S1 eusk2par;EUTRON SmartKey Parallel Driver;c:\windows\system32\drivers\eusk2par.sys [2009-9-2 24786]
S2 ACDaemonAeLookupSvc;ArcSoft Connect Daemon ACDaemonAeLookupSvc;c:\windows\temp\ufqbimnsid.exe service --> c:\windows\temp\ufqbimnsid.exe service [?]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2009-8-24 38160]
S3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2009-8-5 7408]
=============== Created Last 30 ================
2009-09-07 17:44 <DIR> --dsh--- C:\$RECYCLE.BIN
2009-09-07 16:08 230,912 a------- c:\windows\PEV.exe
2009-09-07 16:08 161,792 a------- c:\windows\SWREG.exe
2009-09-07 16:08 98,816 a------- c:\windows\sed.exe
2009-09-07 10:18 <DIR> --d----- c:\program files\common files\Yahoo!
2009-09-07 10:18 <DIR> --d----- c:\programdata\Pinnacle VideoSpin
2009-09-07 10:18 <DIR> --d----- c:\program files\Pinnacle
2009-09-07 10:18 <DIR> --d----- c:\progra~2\Pinnacle VideoSpin
2009-09-07 10:16 <DIR> --d----- c:\programdata\Pinnacle
2009-09-04 13:52 <DIR> --d----- c:\program files\common files\COWON
2009-09-04 13:52 <DIR> --d----- c:\program files\JetAudio
2009-09-04 12:40 <DIR> --d----- c:\users\panpio~1\appdata\roaming\OpenOffice.ux.pl
2009-09-04 12:38 <DIR> --d----- c:\program files\OpenOffice.ux.pl 3
2009-09-04 12:09 <DIR> --d----- c:\users\panpio~1\appdata\roaming\SolidDocuments
2009-09-03 16:14 <DIR> --d----- c:\program files\SolidDocuments
2009-09-03 16:13 <DIR> --d----- c:\programdata\SolidDocuments
2009-09-03 16:13 <DIR> --d----- c:\progra~2\SolidDocuments
2009-09-03 08:02 28,672 a------- c:\windows\system32\Apphlpdm.dll
2009-09-03 08:02 4,240,384 a------- c:\windows\system32\GameUXLegacyGDFs.dll
2009-09-02 09:44 <DIR> --d----- C:\Scenes
2009-09-02 09:44 24,786 a------- c:\windows\system32\drivers\eusk2par.sys
2009-09-02 09:44 <DIR> --d----- C:\KD
2009-09-02 09:32 <DIR> --d----- c:\program files\NETPLUS
2009-09-02 09:21 <DIR> --d----- c:\program files\GIMP-2.0
2009-09-01 12:58 <DIR> --d----- c:\users\panpio~1\appdata\roaming\PeerNetworking
2009-08-31 19:14 <DIR> --d----- c:\programdata\CyberLink
2009-08-31 17:02 <DIR> --d----- c:\programdata\WindowsSearch
2009-08-31 14:22 <DIR> --d----- c:\programdata\ArcSoft
2009-08-31 14:22 <DIR> --d----- c:\progra~2\ArcSoft
2009-08-31 14:21 1,645,320 a------- c:\windows\system32\gdiplus.dll
2009-08-31 14:21 245,408 a------- c:\windows\system32\unicows.dll
2009-08-31 14:20 <DIR> --d----- C:\Philips
2009-08-31 14:19 <DIR> --d----- C:\temp
2009-08-31 13:19 0 a---h--- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
2009-08-27 20:59 487,820 a------- c:\windows\system32\controlpcsecuryti.exe
2009-08-26 09:51 2,048 a------- c:\windows\system32\tzres.dll
2009-08-25 14:25 56 a---h--- c:\windows\system32\ezsidmv.dat
2009-08-25 13:04 <DIR> --d----- c:\programdata\SUPERAntiSpyware.com
2009-08-25 13:04 <DIR> --d----- c:\progra~2\SUPERAntiSpyware.com
2009-08-25 13:02 <DIR> --d----- c:\users\panpio~1\appdata\roaming\SUPERAntiSpyware.com
2009-08-25 13:02 <DIR> --d----- c:\program files\SUPERAntiSpyware
2009-08-25 13:02 <DIR> --d----- c:\program files\common files\Wise Installation Wizard
2009-08-25 11:44 <DIR> --d----- c:\users\pan piotr\.thumbnails
2009-08-24 14:52 <DIR> --d----- c:\program files\Cossacks - Back To War
2009-08-24 13:23 0 a---h--- c:\windows\system32\drivers\Msft_Kernel_NuidFltr_01005.Wdf
2009-08-24 13:07 <DIR> --d----- c:\program files\Yamicsoft
2009-08-24 12:02 168,448 a------- c:\windows\system32\unrar.dll
2009-08-24 12:02 38 a------- c:\windows\avisplitter.ini
2009-08-24 12:02 839,680 a------- c:\windows\system32\lameACM.acm
2009-08-24 12:02 217,088 a------- c:\windows\system32\yv12vfw.dll
2009-08-24 12:02 118,784 a------- c:\windows\system32\ac3acm.acm
2009-08-24 12:02 414 a------- c:\windows\system32\lame_acm.xml
2009-08-24 12:02 3,596,288 a------- c:\windows\system32\qt-dx331.dll
2009-08-24 12:02 205,824 a------- c:\windows\system32\xvidvfw.dll
2009-08-24 12:02 90,112 a------- c:\windows\system32\dpl100.dll
2009-08-24 12:02 685,056 a------- c:\windows\system32\divx.dll
2009-08-24 12:02 85,504 a------- c:\windows\system32\ff_vfw.dll
2009-08-24 12:02 547 a------- c:\windows\system32\ff_vfw.dll.manifest
2009-08-24 12:02 <DIR> --d----- c:\program files\K-Lite Codec Pack
2009-08-24 11:51 <DIR> --d----- c:\users\panpio~1\appdata\roaming\Malwarebytes
2009-08-24 11:50 38,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-08-24 11:50 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-08-24 11:50 <DIR> --d----- c:\programdata\Malwarebytes
2009-08-24 11:50 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2009-08-24 11:50 <DIR> --d----- c:\progra~2\Malwarebytes
2009-08-24 08:44 <DIR> --d----- c:\program files\Trend Micro
2009-08-24 08:38 55,656 a------- c:\windows\system32\drivers\avgntflt.sys
2009-08-24 08:23 28,219 a------- c:\programdata\nvModes.dat
2009-08-24 08:23 28,219 a------- c:\progra~2\nvModes.dat
2009-08-21 22:30 <DIR> --d----- c:\users\panpio~1\appdata\roaming\DriverCure
2009-08-21 22:30 <DIR> --d----- c:\programdata\ParetoLogic
2009-08-21 22:30 <DIR> --d----- c:\programdata\DriverCure
2009-08-21 22:30 <DIR> --d----- c:\program files\common files\ParetoLogic
2009-08-21 22:30 <DIR> --d----- c:\progra~2\ParetoLogic
2009-08-21 22:30 <DIR> --d----- c:\progra~2\DriverCure
2009-08-21 19:54 <DIR> --d----- c:\users\pan piotr\DoctorWeb
2009-08-21 16:51 <DIR> --d----- c:\programdata\Avira
2009-08-21 16:51 <DIR> --d----- c:\program files\Avira
2009-08-21 16:51 <DIR> --d----- c:\progra~2\Avira
2009-08-21 11:42 <DIR> --d----- c:\program files\Metin2_PL
2009-08-20 11:07 <DIR> --d----- c:\users\pan piotr\.gimp-2.6
2009-08-20 11:07 <DIR> --d----- c:\users\pan piotr\.gegl-0.0
2009-08-19 18:57 <DIR> --d----- c:\program files\NAPI-PROJEKT
2009-08-18 11:43 <DIR> --d----- c:\programdata\Lavasoft
2009-08-18 09:05 <DIR> --d----- c:\programdata\Real
2009-08-18 09:05 <DIR> --d----- c:\program files\Real Alternative
2009-08-17 19:18 <DIR> --d--r-- c:\program files\Skype
2009-08-17 19:18 <DIR> --d----- c:\programdata\Skype
2009-08-17 03:00 <DIR> --d----- C:\3bbe6717ca6d1900a71ebc4f
2009-08-17 00:34 428,544 a------- c:\windows\system32\EncDec.dll
2009-08-17 00:34 217,088 a------- c:\windows\system32\psisrndr.ax
2009-08-17 00:34 293,376 a------- c:\windows\system32\psisdecd.dll
2009-08-17 00:34 177,664 a------- c:\windows\system32\mpg2splt.ax
2009-08-17 00:34 80,896 a------- c:\windows\system32\MSNP.ax
2009-08-17 00:34 57,856 a------- c:\windows\system32\MSDvbNP.ax
2009-08-17 00:33 12,240,896 a------- c:\windows\system32\NlsLexicons0007.dll
2009-08-17 00:33 2,644,480 a------- c:\windows\system32\NlsLexicons0009.dll
2009-08-17 00:33 801,280 a------- c:\windows\system32\NaturalLanguage6.dll
2009-08-16 08:45 <DIR> --d----- c:\programdata\LightScribe
2009-08-16 08:45 <DIR> --d----- c:\progra~2\LightScribe
2009-08-14 10:11 97,800 a------- c:\windows\system32\infocardapi.dll
2009-08-14 10:11 105,016 a------- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-08-14 10:11 622,080 a------- c:\windows\system32\icardagt.exe
2009-08-14 10:11 37,384 a------- c:\windows\system32\infocardcpl.cpl
2009-08-14 10:11 43,544 a------- c:\windows\system32\PresentationHostProxy.dll
2009-08-14 10:11 11,264 a------- c:\windows\system32\icardres.dll
2009-08-14 10:10 781,344 a------- c:\windows\system32\PresentationNative_v0300.dll
2009-08-14 10:10 326,160 a------- c:\windows\system32\PresentationHost.exe
2009-08-14 00:10 <DIR> --d----- c:\users\panpio~1\appdata\roaming\COWON
2009-08-13 19:54 0 a---h--- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2009-08-13 14:32 319,000 a------- c:\windows\system32\drivers\iaStor.sys
2009-08-13 11:39 <DIR> --d----- c:\programdata\HPSSUPPLY
2009-08-13 11:39 <DIR> --d----- c:\program files\HP
2009-08-13 11:33 <DIR> --d-h--- c:\program files\Avago-HP
2009-08-13 11:32 <DIR> --dsh--- c:\windows\ftpcache
2009-08-12 22:53 3,497,832 a------- c:\windows\system32\d3dx9_34.dll
2009-08-12 22:53 2,414,360 a------- c:\windows\system32\d3dx9_31.dll
2009-08-12 22:53 <DIR> --d----- c:\programdata\Media Center Programs
2009-08-12 22:53 <DIR> --d----- c:\progra~2\Media Center Programs
2009-08-12 22:53 278,728 a------- c:\windows\system32\drivers\atksgt.sys
2009-08-12 22:53 25,416 a------- c:\windows\system32\drivers\lirsgt.sys
2009-08-12 18:26 <DIR> --d----- c:\program files\GSC Game World
2009-08-12 18:18 <DIR> --d----- c:\users\panpio~1\appdata\roaming\VSRevoGroup
2009-08-12 18:10 <DIR> --d----- c:\program files\PowerISO
2009-08-12 17:50 881,664 a------- c:\windows\system32\xvidcore.dll
2009-08-12 17:50 <DIR> --d----- c:\programdata\ALLPlayer
2009-08-12 17:50 <DIR> --d----- c:\progra~2\ALLPlayer
2009-08-12 17:50 892,928 a------- c:\windows\system32\iconv.dll
2009-08-12 17:50 675,840 a------- c:\windows\system32\ac3filter.ax
2009-08-12 17:50 <DIR> --d----- c:\program files\ALLPlayer
2009-08-12 17:48 <DIR> --d----- c:\program files\CCleaner
2009-08-12 17:08 <DIR> --d----- c:\programdata\DAEMON Tools Lite
2009-08-12 17:08 <DIR> --d----- c:\progra~2\DAEMON Tools Lite
2009-08-12 17:08 <DIR> --d----- c:\program files\DAEMON Tools Toolbar
2009-08-12 17:08 <DIR> --d----- c:\program files\DAEMON Tools Lite
2009-08-12 16:00 721,904 a------- c:\windows\system32\drivers\sptd.sys
2009-08-12 16:00 <DIR> --d----- c:\users\panpio~1\appdata\roaming\DAEMON Tools Lite
2009-08-12 15:57 96,760 a------- c:\windows\system32\dfshim.dll
2009-08-12 15:57 282,112 a------- c:\windows\system32\mscoree.dll
2009-08-12 15:57 41,984 a------- c:\windows\system32\netfxperf.dll
2009-08-12 15:56 <DIR> --d----- c:\users\panpio~1\appdata\roaming\Nowe Gadu-Gadu
2009-08-12 15:56 <DIR> --d----- c:\program files\Nowe Gadu-Gadu
2009-08-12 15:56 158,720 a------- c:\windows\system32\mscorier.dll
2009-08-12 15:55 83,968 a------- c:\windows\system32\mscories.dll
2009-08-12 15:49 499,712 a------- c:\windows\system32\kerberos.dll
2009-08-12 15:49 213,504 a------- c:\windows\system32\msv1_0.dll
2009-08-12 15:49 175,104 a------- c:\windows\system32\wdigest.dll
2009-08-12 15:49 1,256,448 a------- c:\windows\system32\lsasrv.dll
2009-08-12 15:49 270,848 a------- c:\windows\system32\schannel.dll
2009-08-12 15:49 439,896 a------- c:\windows\system32\drivers\ksecdd.sys
2009-08-12 15:49 72,704 a------- c:\windows\system32\secur32.dll
2009-08-12 15:49 9,728 a------- c:\windows\system32\lsass.exe
2009-08-12 15:45 313,344 a------- c:\windows\system32\wmpdxm.dll
2009-08-12 15:45 7,680 a------- c:\windows\system32\spwmp.dll
2009-08-12 15:45 4,096 a------- c:\windows\system32\msdxm.ocx
2009-08-12 15:45 4,096 a------- c:\windows\system32\dxmasf.dll
2009-08-12 15:43 562,176 a------- c:\windows\system32\msdtcprx.dll
2009-08-12 15:42 2,927,104 a------- c:\windows\explorer.exe
2009-08-12 15:42 738,304 a------- c:\windows\system32\inetcomm.dll
2009-08-12 15:23 1,645,568 a------- c:\windows\system32\connect.dll
2009-08-12 15:20 784,896 a------- c:\windows\system32\rpcrt4.dll
2009-08-12 15:16 1,314,816 a------- c:\windows\system32\quartz.dll
2009-08-12 15:12 1,334,272 a------- c:\windows\system32\msxml6.dll
2009-08-12 14:59 1,524,736 a------- c:\windows\system32\wucltux.dll
2009-08-12 14:59 <DIR> --d----- c:\program files\VS Revo Group
2009-08-12 14:58 83,456 a------- c:\windows\system32\wudriver.dll
2009-08-12 14:58 <DIR> --d----- c:\program files\uTorrent
2009-08-12 14:58 162,064 a------- c:\windows\system32\wuwebv.dll
2009-08-12 14:58 31,232 a------- c:\windows\system32\wuapp.exe
2009-08-12 14:58 <DIR> --d----- c:\users\panpio~1\appdata\roaming\uTorrent
2009-08-12 14:55 <DIR> --d----- c:\programdata\NVIDIA
2009-08-12 14:49 <DIR> --d----- c:\program files\common files\PX Storage Engine
2009-08-12 14:37 148,480 a------- c:\windows\system32\drivers\nwifi.sys
2009-08-12 14:36 5,888 a------- c:\windows\system32\drivers\usbd.sys
2009-08-12 14:36 23,552 a------- c:\windows\system32\drivers\usbuhci.sys
2009-08-12 14:36 226,304 a------- c:\windows\system32\drivers\usbport.sys
2009-08-12 14:36 194,560 a------- c:\windows\system32\drivers\usbhub.sys
2009-08-12 14:36 73,216 a------- c:\windows\system32\drivers\usbccgp.sys
2009-08-12 14:36 39,424 a------- c:\windows\system32\drivers\usbehci.sys
2009-08-12 14:35 223,288 a------- c:\windows\system32\drivers\netio.sys
2009-08-12 14:29 6,656 a------- c:\windows\system32\kbd106n.dll
2009-08-12 14:29 19,000 a------- c:\windows\system32\kd1394.dll
2009-08-12 14:29 14,848 a------- c:\windows\system32\srdelayed.exe
2009-08-12 14:29 40,960 a------- c:\windows\system32\srclient.dll
2009-08-12 14:29 615,992 a------- c:\windows\system32\ci.dll
2009-08-12 14:28 927,288 a------- c:\windows\system32\winresume.exe
2009-08-12 14:28 988,216 a------- c:\windows\system32\winload.exe
2009-08-12 14:28 378,368 a------- c:\windows\system32\srcore.dll
2009-08-12 14:28 318,464 a------- c:\windows\system32\rstrui.exe
2009-08-12 14:28 46,592 a------- c:\windows\system32\setbcdlocale.dll
2009-08-12 14:26 684 a------- c:\windows\HotFixList.ini
2009-08-12 14:25 172,032 a------- c:\windows\SMCM.dll
2009-08-12 14:25 2,438 a------- c:\windows\ebm.reg
2009-08-12 14:24 <DIR> --d----- c:\programdata\Adobe
2009-08-12 14:24 <DIR> --d----- C:\Samsung
2009-08-12 14:23 <DIR> --d----- c:\windows\system32\NetsyncAgent
2009-08-12 14:21 <DIR> --d----- c:\program files\common files\MSSoap
2009-08-12 14:17 <DIR> --d----- c:\programdata\McAfee
2009-08-12 14:16 9,550 a------- c:\windows\system32\SetAutoFailover.cmd
2009-08-12 14:16 151 a------- c:\windows\system32\SamsungSetAutoFailover.cmd
2009-08-12 14:16 <DIR> --d----- c:\windows\WinClon
2009-08-12 14:16 0 a---h--- c:\windows\system32\drivers\Msft_Kernel_KMDFMEMIO_01000.Wdf
2009-08-12 14:15 13,312 a------- c:\windows\system32\drivers\KMDFMEMIO.sys
2009-08-12 14:15 135 a----r-- c:\windows\system32\lngEng.ini
2009-08-12 14:15 117 a------- c:\windows\system32\lngKor.ini
2009-08-12 14:15 <DIR> --dsh--- c:\windows\Installer
2009-08-12 14:15 1,066,544 -------- c:\windows\system32\MFC71.dll
2009-08-12 14:15 1,053,232 -------- c:\windows\system32\MFC71u.dll
2009-08-12 14:11 <DIR> --d----- C:\MyWorks
2009-08-12 14:11 47,136 a------- c:\windows\system32\msxmb367.rra
2009-08-12 14:11 27,168 -------- c:\windows\system32\msxml3a.dll
2009-08-12 14:10 <DIR> --d----- c:\program files\Samsung
2009-08-12 14:09 <DIR> --d----- c:\windows\VMC302
2009-08-12 14:09 503,808 a------- c:\windows\system32\vmc302.ax
2009-08-12 14:09 242,560 a------- c:\windows\system32\drivers\vmc302.sys
2009-08-12 14:09 98,304 a------- c:\windows\system32\VMCtrl.ax
2009-08-12 14:09 73,728 a------- c:\windows\system32\exvmuvc.ax
2009-08-12 14:09 11,776 a------- c:\windows\system32\vmc302.dll
2009-08-12 14:09 15,086 a------- c:\windows\uninstall.ico
2009-08-12 14:09 8,990 a------- c:\windows\Product.ico
2009-08-12 14:09 <DIR> --d----- c:\program files\Vimicro Corporation
2009-08-12 14:09 502,816 -------- c:\windows\system32\msvcp71.dll
2009-08-12 14:09 348,160 -------- c:\windows\system32\msvcr71.dll
2009-08-12 14:09 0 a---h--- c:\windows\system32\drivers\Msft_Kernel_SynTP_01000.Wdf
2009-08-12 14:08 <DIR> --d----- c:\program files\Synaptics
2009-08-12 14:08 1,060,424 a------- c:\windows\system32\WdfCoInstaller01000.dll
2009-08-12 14:08 196,608 a------- c:\windows\system32\SynCtrl.dll
2009-08-12 14:08 193,456 a------- c:\windows\system32\drivers\SynTP.sys
2009-08-12 14:08 163,840 a------- c:\windows\system32\SynCOM.dll
2009-08-12 14:08 147,456 a------- c:\windows\system32\SynTPAPI.dll
2009-08-12 14:08 110,592 a------- c:\windows\system32\SynTPCo4.dll
2009-08-12 14:08 45,056 a------- c:\windows\system32\RmWLAN.exe
2009-08-12 14:08 42,496 a------- c:\windows\system32\RmWLAN64.exe
2009-08-12 14:08 40,960 a------- c:\windows\system32\IhDEV.exe
2009-08-12 14:08 24,576 a------- c:\windows\system32\IhINF.exe
2009-08-12 14:08 <DIR> --d----- c:\program files\Atheros WLAN Client
2009-08-12 14:07 298,496 a------- c:\windows\system32\drivers\yk60x86.sys
2009-08-12 14:07 50,752 -------- c:\windows\system32\agrsmdel.exe
2009-08-12 14:07 1,161,888 a------- c:\windows\system32\drivers\AGRSM.sys
2009-08-12 14:07 50,752 a------- c:\windows\agrsmdel.exe
2009-08-12 14:07 13,312 a------- c:\windows\system32\agrscoin.dll
2009-08-12 14:07 9,216 a------- c:\windows\system32\agrsmsvc.exe
2009-08-12 14:07 <DIR> --d----- c:\windows\Options
2009-08-12 14:06 <DIR> --d----- c:\program files\Realtek
2009-08-12 14:05 485,920 a------- c:\windows\system32\NVUNINST.EXE
2009-08-12 14:04 1,034,776 a------- c:\windows\system32\imsmudlg.exe
2009-08-12 14:04 319,456 a------- c:\windows\system32\difxapi.dll
2009-08-12 14:04 <DIR> --d----- c:\windows\system32\Lang
2009-08-12 14:01 53,248 a------- c:\windows\system32\CSVer.dll
2009-08-12 14:01 <DIR> --d----- C:\Intel
2009-08-12 13:59 <DIR> --dsh--- c:\users\pan piotr\Ustawienia lokalne
2009-08-12 13:59 <DIR> --dsh--- c:\users\pan piotr\Szablony
2009-08-12 13:59 <DIR> --dsh--- c:\users\pan piotr\Moje dokumenty
2009-08-12 13:59 <DIR> --dsh--- c:\users\pan piotr\Menu Start
2009-08-12 13:59 <DIR> --dsh--- c:\users\pan piotr\Dane aplikacji
2009-08-12 13:59 <DIR> --d----- c:\users\Pan Piotr
2009-08-12 13:57 <DIR> --dsh--- c:\programdata\Ulubione
2009-08-12 13:57 <DIR> --dsh--- c:\programdata\Szablony
2009-08-12 13:57 <DIR> --dsh--- c:\programdata\Pulpit
2009-08-12 13:57 <DIR> --dsh--- c:\programdata\Menu Start
2009-08-12 13:57 <DIR> --dsh--- c:\programdata\Dokumenty
2009-08-12 13:57 <DIR> --dsh--- c:\programdata\Dane aplikacji
2009-08-12 13:57 <DIR> --dsh--- c:\progra~2\Ulubione
2009-08-12 13:57 <DIR> --dsh--- c:\progra~2\Szablony
2009-08-12 13:57 <DIR> --dsh--- c:\progra~2\Pulpit
2009-08-12 13:57 <DIR> --dsh--- c:\progra~2\Menu Start
2009-08-12 13:57 <DIR> --dsh--- c:\progra~2\Dokumenty
2009-08-12 13:57 <DIR> --dsh--- c:\progra~2\Dane aplikacji
2009-08-12 13:34 <DIR> --d----- c:\windows\Panther
2009-08-12 13:33 8,192 a--s-r-- C:\BOOTSECT.BAK
2009-08-12 13:33 333,203 a--shr-- C:\bootmgr
2009-08-12 13:33 <DIR> --dsh--- C:\Boot
2009-08-12 13:33 <DIR> --d----- c:\windows\system32\OEM
==================== Find3M ====================
2009-08-28 13:39 173,056 a------- c:\windows\apppatch\AcXtrnal.dll
2009-08-28 13:38 2,153,984 a------- c:\windows\apppatch\AcGenral.dll
2009-08-28 13:38 541,696 a------- c:\windows\apppatch\AcLayers.dll
2009-08-28 13:38 459,776 a------- c:\windows\apppatch\AcSpecfc.dll
2009-08-24 13:22 86,016 a------- c:\windows\inf\infstrng.dat
2009-08-24 13:22 51,200 a------- c:\windows\inf\infpub.dat
2009-08-24 13:22 86,016 a------- c:\windows\inf\infstor.dat
2009-08-17 10:01 653,534 a------- c:\windows\system32\perfh015.dat
2009-08-17 10:01 126,792 a------- c:\windows\system32\perfc015.dat
2009-08-13 12:41 665,600 a------- c:\windows\inf\drvindex.dat
2009-08-12 14:06 319,456 a------- c:\windows\DIFxAPI.dll
2009-08-12 14:06 315,392 a------- c:\windows\HideWin.exe
2009-07-27 03:43 58,908 a------- c:\windows\system32\drivers\scdemu.sys
2009-07-21 22:52 915,456 a------- c:\windows\system32\wininet.dll
2009-07-21 22:47 109,056 a------- c:\windows\system32\iesysprep.dll
2009-07-21 22:47 71,680 a------- c:\windows\system32\iesetup.dll
2009-07-21 21:13 133,632 a------- c:\windows\system32\ieUnatt.exe
2009-07-17 15:35 71,680 a------- c:\windows\system32\atl.dll
2009-07-14 11:59 8,147,456 a------- c:\windows\system32\wmploc.DLL
2009-06-26 22:54 57,344 a------- c:\windows\system32\nvapo32v.dll
2009-06-26 22:54 19,456 a------- c:\windows\system32\nvhdap32.dll
2009-06-24 22:07 151,552 a------- c:\windows\system32\nvcohda.dll
2009-06-24 22:07 485,920 a------- c:\windows\system32\nvuhda.exe
2009-06-15 16:24 156,672 a------- c:\windows\system32\t2embed.dll
2009-06-15 16:20 72,704 a------- c:\windows\system32\fontsub.dll
2009-06-15 16:20 10,240 a------- c:\windows\system32\dciman32.dll
2009-06-15 13:52 289,792 a------- c:\windows\system32\atmfd.dll
2009-06-10 13:12 160,256 a------- c:\windows\system32\wkssvc.dll
2009-06-10 13:07 91,136 a------- c:\windows\system32\avifil32.dll
2008-01-21 07:23 332,832 a------- c:\windows\inf\perflib\0415\perfi.dat
2008-01-21 07:23 332,832 a------- c:\windows\inf\perflib\0415\perfh.dat
2008-01-21 07:23 37,468 a------- c:\windows\inf\perflib\0415\perfd.dat
2008-01-21 07:23 37,468 a------- c:\windows\inf\perflib\0415\perfc.dat
2008-01-21 03:43 174 a--sh--- c:\program files\desktop.ini
2006-11-02 10:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 10:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 10:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 10:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
============= FINISH: 18:01:12,88 ===============
- Kod: Zaznacz wszystko
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-07-30.01)
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 2009-08-12 13:39:11
System Uptime: 2009-09-07 17:53:57 (1 hours ago)
Motherboard: SAMSUNG ELECTRONICS CO., LTD. | | R510/P510
Processor: Intel(R) Pentium(R) Dual CPU T3200 @ 2.00GHz | U2E1 | 2000/mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 144 GiB total, 98,522 GiB free.
D: is FIXED (NTFS) - 144 GiB total, 53,536 GiB free.
E: is CDROM ()
F: is CDROM ()
==== Disabled Device Manager Items =============
Class GUID:
Description:
Device ID: ROOT\LEGACY_BEEP\XX_ROTSCXXIQCPFMO_XX
Manufacturer:
Name:
PNP Device ID: ROOT\LEGACY_BEEP\XX_ROTSCXXIQCPFMO_XX
Service: rotscxxiqcpfmo
==== System Restore Points ===================
RP139: 2009-09-03 16:17:21 - Installed Microsoft Office Word Viewer 2003
RP140: 2009-09-04 08:55:44 - Windows Update
RP142: 2009-09-04 10:25:52 - Configured COWON Media Center - jetAudio Plus VX
RP144: 2009-09-04 12:04:07 - Revo Uninstaller's restore point - COWON Media Center - jetAudio Plus VX
RP146: 2009-09-04 12:04:35 - Removed COWON Media Center - jetAudio Plus VX
RP147: 2009-09-04 12:38:07 - Zainstalowano: OpenOffice.ux.pl 3.1
RP149: 2009-09-04 13:52:29 - Installed COWON Media Center - jetAudio Plus VX
RP151: 2009-09-04 13:53:24 - Configured COWON Media Center - jetAudio Plus VX
RP152: 2009-09-05 10:20:32 - Zaplanowany punkt kontrolny
RP153: 2009-09-06 11:29:12 - Zaplanowany punkt kontrolny
RP154: 2009-09-07 00:41:18 - Zaplanowany punkt kontrolny
RP155: 2009-09-07 10:17:13 - Installed Pinnacle VideoSpin.
==== Installed Programs ======================
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)
Adobe Flash Player 10 Plugin
Adobe Flash Player 9 ActiveX
Adobe Reader 8 - Polish
Adobe Reader 8.1.2 Security Update 1 (KB403742)
Agere Systems HDA Modem
ALLPlayer V4.X
Archiwizator WinRAR
Atheros WLAN Client
µTorrent
Avira AntiVir Premium
Call of Juarez - Bound in Blood
CCleaner (remove only)
Cossacks - Back To War
Cossacks II
COWON Media Center - jetAudio Plus VX
CyberLink Power2Go
DAEMON Tools Toolbar
Easy Battery Manager
Easy Display Manager
Easy Network Manager 3.0
Easy SpeedUp Manager
GIMP 2.6.7
GoGear VIBE Device Manager
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP LaserJet P1000 series
HPSSupply
imagine digital freedom - Samsung
Intel(R) Matrix Storage Manager
K-Lite Codec Pack 5.0.5 (Full)
LabelPrint
Malwarebytes' Anti-Malware
Media Converter for Philips
Microsoft .NET Framework 3.5 Language Pack SP1 - plk
Microsoft .NET Framework 3.5 SP1
Microsoft Office Word Viewer 2003
Microsoft SOAP Toolkit 2.0 SP2
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Mozilla Firefox (3.5.2)
MrvlUsgTracking
Nowe Gadu-Gadu
NVIDIA Drivers
OpenOffice.ux.pl 3.1
Pakiet jezykowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK
Pinnacle VideoSpin
Play AVStation
PlayCamera
PowerDirector
PowerDVD
PowerISO
PowerProducer
Real Alternative 1.9.0
Realtek High Definition Audio Driver
Revo Uninstaller 1.83
Samsung Magic Doctor
Samsung Recovery Solution III
Samsung Update Plus
Skype™ 4.1
Solid Converter PDF
SUPERAntiSpyware Free Edition
Synaptics Pointing Device Driver
THE SETTLERS - Rise of an Empire
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Vimicro UVC Camera
Vista Manager
Winamp
==== End Of File ===========================