
Plik : D:\Documents and Settings\Administrator.KOMPUTER\Ustawienia lokalne\Temp\cvasds0.dll
log z OTL -> http://www.wklejto.pl/58278
log z Sdfx -> http://www.wklejto.pl/58280
log z HijackThis -> http://www.wklejto.pl/58281
:OTL
O32 - AutoRun File - [2010-01-19 21:39:14 | 000,038,498 | ---- | M] () - D:\AutoMapaSetupLog.txt -- [ NTFS ]
O32 - AutoRun File - [2010-02-21 11:36:58 | 000,000,053 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{0646cbae-0b8e-11df-855a-0022fa61179c}\Shell\AutoRun\command - "" = H:\9fo3ar0j.exe -- File not found
O33 - MountPoints2\{0646cbae-0b8e-11df-855a-0022fa61179c}\Shell\open\Command - "" = H:\9fo3ar0j.exe -- File not found
O33 - MountPoints2\{7c35203c-ed8f-11de-a149-806d6172696f}\Shell\AutoRun\command - "" = tgt.exe
O33 - MountPoints2\{7c35203c-ed8f-11de-a149-806d6172696f}\Shell\open\Command - "" = tgt.exe
O33 - MountPoints2\{7fd54eb2-1b45-11df-81d0-0022fa61179c}\Shell\AutoRun\command - "" = G:\p3vwxx.exe -- File not found
O33 - MountPoints2\{7fd54eb2-1b45-11df-81d0-0022fa61179c}\Shell\open\Command - "" = G:\p3vwxx.exe -- File not found
O33 - MountPoints2\{90171d3a-0ea3-11df-8561-0022fa61179c}\Shell\AutoRun\command - "" = p3vwxx.exe
O33 - MountPoints2\{90171d3a-0ea3-11df-8561-0022fa61179c}\Shell\open\Command - "" = p3vwxx.exe
O33 - MountPoints2\{ad40a716-f59b-11de-853d-0022fa61179c}\Shell - "" = Autorun
O33 - MountPoints2\{ad40a717-f59b-11de-853d-0022fa61179c}\Shell - "" = Autorun
O33 - MountPoints2\{c7db944b-0402-11df-8553-0022fa61179c}\Shell - "" = Autorun
O33 - MountPoints2\{c7db944c-0402-11df-8553-0022fa61179c}\Shell - "" = Autorun
O33 - MountPoints2\{c7db944e-0402-11df-8553-0022fa61179c}\Shell - "" = Autorun
O33 - MountPoints2\{c7db9450-0402-11df-8553-0022fa61179c}\Shell - "" = Autorun
O33 - MountPoints2\{f4b79d19-f2f2-11de-853c-0022fa61179c}\Shell - "" = Autorun
:Files
D:\Documents and Settings\Administrator.KOMPUTER\Ustawienia lokalne\Temp\cvasds0.dll
D:\autorun.inf
C:\autorun.inf
:Reg
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"SuperHidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Hidden"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowSuperHidden"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden\Policy\DontShowSuperHidden]
@=""
:Commands
[emptytemp]
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 9 gości