
Mam wirusa na penie. Potraktowalem go flasdisinfectorem, zrobilem formata i nic. Mam wylaczone autoodtwarzanie to chyba na kompa nic mi nie przerzuci. Czy jest jakas opcja rzeby sprawdzic loga z tego pena czy cos takiego?
ComboFix 08-02-22 - T 2008-02-21 21:13:02.4 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.1.1045.18.103 [GMT 1:00]
Running from: C:\Documents and Settings\T\Pulpit\ComboFix.exe
* Created a new restore point
[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.
((((((((((((((((((((((((( Files Created from 2008-01-22 to 2008-02-22 )))))))))))))))))))))))))))))))
.
2008-02-15 13:52 . 2008-02-15 13:54 <DIR> d-------- C:\Program Files\Macromedia
2008-02-15 13:52 . 2008-02-15 13:55 <DIR> d-------- C:\Program Files\Common Files\Macromedia
2008-02-15 11:04 . 2008-02-15 12:53 <DIR> d-------- C:\WINDOWS\SxsCaPendDel
2008-02-15 08:29 . 2008-02-15 08:29 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\FLEXnet
2008-02-14 21:42 . 2008-02-14 21:42 <DIR> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-02-14 09:28 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-02-14 09:28 . 2007-07-30 19:19 207,736 --a------ C:\WINDOWS\system32\muweb.dll
2008-02-14 09:28 . 2007-07-30 19:18 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-02-10 15:17 . 2008-02-10 15:17 <DIR> d--h----- C:\WINDOWS\system32\GroupPolicy
2008-02-07 18:53 . 2008-02-07 23:51 <DIR> d-------- C:\sUBs
2008-02-07 16:44 . 2008-02-07 16:44 <DIR> d-------- C:\Program Files\Trend Micro
2008-02-07 16:07 . 2008-02-07 16:07 <DIR> d-------- C:\Program Files\concept design
2008-02-07 16:07 . 2006-05-21 16:15 966,144 --a------ C:\WINDOWS\system32\NCTAudioInformation2.dll
2008-02-07 16:07 . 2006-05-21 16:15 877,568 --a------ C:\WINDOWS\system32\NCTAudioFile2.dll
2008-02-07 16:07 . 2006-05-21 16:15 634,880 --a------ C:\WINDOWS\system32\NCTAudioEditor2.dll
2008-02-07 16:07 . 2006-05-21 16:15 522,752 --a------ C:\WINDOWS\system32\NCTAudioTransform2.dll
2008-02-07 16:07 . 2006-05-21 16:15 467,968 --a------ C:\WINDOWS\system32\NCTAudioRecord2.dll
2008-02-07 16:07 . 2006-05-21 16:15 467,456 --a------ C:\WINDOWS\system32\NCTAudioPlayer2.dll
2008-02-07 16:07 . 2006-05-21 16:15 237,568 --a------ C:\WINDOWS\system32\lame_enc.dll
2008-02-06 00:01 . 2006-10-26 19:56 32,592 --a------ C:\WINDOWS\system32\msonpmon.dll
2008-02-05 23:56 . 2008-02-05 23:56 <DIR> d-------- C:\Program Files\MSBuild
2008-02-05 23:56 . 2008-02-05 23:56 <DIR> d-------- C:\Program Files\Microsoft Works
2008-02-05 23:39 . 2008-02-14 21:42 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help
2008-01-31 08:15 . 2008-01-31 08:15 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\The Learning Company
2008-01-31 08:15 . 2002-05-07 07:09 274,432 --------- C:\WINDOWS\TLCUninstall.exe
2008-01-31 08:15 . 2005-03-03 11:01 45,676 --------- C:\WINDOWS\system32\ChinaOne.ttf
2008-01-31 08:15 . 2008-01-31 08:15 1,409 --a------ C:\WINDOWS\system32\ChinaOne.FOT
2008-01-22 18:11 . 2008-01-22 18:11 <DIR> d-------- C:\Program Files\RndLabs
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-22 20:16 --------- d-----w C:\Program Files\PeerGuardian2
2008-02-15 10:05 --------- d-----w C:\Program Files\Common Files\Adobe
2008-02-09 21:40 --------- d-----w C:\Program Files\The Learning Company
2008-02-09 21:39 --------- d-----w C:\Program Files\DK
2008-02-09 21:35 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-09 21:34 --------- d-----w C:\Program Files\Java
2008-01-31 07:14 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-01-23 13:34 --------- d-----w C:\Program Files\SubEdit-Player
2008-01-20 20:47 --------- d-----w C:\Program Files\eMule
2008-01-18 21:34 --------- d-----w C:\Program Files\LimeWire
2008-01-13 18:36 --------- d-----w C:\Program Files\SopCast
2008-01-10 18:06 --------- d-----w C:\Program Files\DivX
2008-01-10 16:26 --------- d-----w C:\Program Files\MSXML 4.0
2008-01-10 16:25 --------- d-----w C:\Program Files\directx
2008-01-10 16:25 --------- d-----w C:\Program Files\Analog Devices
2008-01-10 13:59 --------- d-----w C:\Program Files\Phoenix Technologies Ltd
2008-01-09 11:20 --------- d-----w C:\Program Files\Alwil Software
2008-01-09 11:18 524,288 ----a-w C:\WINDOWS\system32\DivXsm.exe
2008-01-09 11:18 43,528 ------w C:\WINDOWS\system32\drivers\PxHelp20.sys
2008-01-09 11:18 3,596,288 ----a-w C:\WINDOWS\system32\qt-dx331.dll
2008-01-09 11:18 200,704 ----a-w C:\WINDOWS\system32\ssldivx.dll
2008-01-09 11:18 129,784 ------w C:\WINDOWS\system32\pxafs.dll
2008-01-09 11:18 120,056 ------w C:\WINDOWS\system32\pxcpyi64.exe
2008-01-09 11:18 118,520 ------w C:\WINDOWS\system32\pxinsi64.exe
2008-01-09 11:18 1,044,480 ----a-w C:\WINDOWS\system32\libdivx.dll
2008-01-09 11:16 823,296 ----a-w C:\WINDOWS\system32\divx_xx0c.dll
2008-01-09 11:16 823,296 ----a-w C:\WINDOWS\system32\divx_xx07.dll
2008-01-09 11:16 81,920 ----a-w C:\WINDOWS\system32\dpl100.dll
2008-01-09 11:16 802,816 ----a-w C:\WINDOWS\system32\divx_xx11.dll
2008-01-09 11:16 682,496 ----a-w C:\WINDOWS\system32\DivX.dll
2008-01-09 11:16 196,608 ----a-w C:\WINDOWS\system32\dtu100.dll
2007-12-11 19:44 593,920 ----a-w C:\WINDOWS\system32\dpuGUI11.dll
2007-12-11 19:44 57,344 ----a-w C:\WINDOWS\system32\dpv11.dll
2007-12-11 19:44 53,248 ----a-w C:\WINDOWS\system32\dpuGUI10.dll
2007-12-11 19:44 344,064 ----a-w C:\WINDOWS\system32\dpus11.dll
2007-12-11 19:44 294,912 ----a-w C:\WINDOWS\system32\dpu11.dll
2007-12-11 19:44 294,912 ----a-w C:\WINDOWS\system32\dpu10.dll
2007-12-11 19:44 156,992 ----a-w C:\WINDOWS\system32\DivXCodecVersionChecker.exe
2007-12-11 19:43 12,288 ----a-w C:\WINDOWS\system32\DivXWMPExtType.dll
2007-12-07 01:08 662,016 ----a-w C:\WINDOWS\system32\wininet.dll
2007-12-04 18:42 550,912 ----a-w C:\WINDOWS\system32\oleaut32.dll
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AvastSS.scr
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NBJ"="C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" [ ]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 15:45 313472]
"Gadu-Gadu"="C:\Program Files\Gadu-Gadu\gg.exe" [2006-11-10 21:30 1853128]
"PeerGuardian"="C:\Program Files\PeerGuardian2\pg2.exe" [2005-09-18 18:40 1421824]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-01-15 15:14 147456]
"H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\Wcescomm.exe" [2006-11-13 14:57 1289000]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-03 23:44 15360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPLpr"="C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" [2003-08-01 16:57 110592]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2003-08-01 16:55 618496]
"Mouse Suite 98 Daemon"="ICO.EXE" [2001-08-20 19:50 45056 C:\WINDOWS\system32\ico.exe]
"ATIModeChange"="Ati2mdxx.exe" [2001-09-04 17:24 28672 C:\WINDOWS\system32\Ati2mdxx.exe]
"AtiPTA"="atiptaxx.exe" [2001-09-13 00:16 245760 C:\WINDOWS\system32\atiptaxx.exe]
"DAEMON Tools-1033"="C:\Program Files\D-Tools\daemon.exe" [2004-08-22 16:05 81920]
"OrderReminder"="C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe" [2005-03-18 12:18 98304]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [2005-06-06 22:46 57344]
"DataLayer"="C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE" [2004-09-23 10:33 1019392]
"PCSuiteTrayApplication"="C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE" [2004-09-15 15:36 148992]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 20:24 32768]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 14:40 155648]
"Realtime Audio Engine"="mmrtkrnl.exe" [2005-01-20 11:02 53248 C:\WINDOWS\system32\MMRTKRNL.EXE]
"FixCamera"="C:\WINDOWS\FixCamera.exe" [2007-02-12 14:50 20480]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 00:47 31016]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-03 23:44 15360]
R3 pelmouse;Mouse Suite Driver;C:\WINDOWS\system32\DRIVERS\pelmouse.sys [2001-01-09 15:49]
R3 pelusblf;USB Mouse Low Filter Driver;C:\WINDOWS\system32\DRIVERS\pelusblf.sys [2001-07-24 09:34]
R3 SPI;Programowalne urządzenie sterujące We/Wy Sony;C:\WINDOWS\system32\DRIVERS\SonyPI.sys [2001-08-17 21:51]
S3 SER120;OTI Serial port driver;C:\WINDOWS\system32\DRIVERS\SER120.sys [2005-03-22 10:03]
S3 SNP325;USB PC Camera (SNPSTD325);C:\WINDOWS\system32\DRIVERS\snp325.sys []
S3 ZDCndis5;ZDCndis5 Protocol Driver;C:\WINDOWS\system32\ZDCndis5.SYS []
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-22 21:16:44
Windows 5.1.2600 Dodatek Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-02-22 21:17:40
ComboFix2.txt 2008-02-10 14:31:27
.
2008-02-14 20:42:38 --- E O F ---
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 23 gości