
ComboFix 08-10-23.08 - Łukasz 2008-10-24 19:35:07.2 - NTFSx86
Microsoft® Windows Vista™ Ultimate 6.0.6001.1.1250.1.1033.18.2080 [GMT 2:00]
Uruchomiony z: C:\Users\Łukasz\Downloads\ComboFix.exe
.
Error: Cfiles.dat
((((((((((((((((((((((((( Pliki utworzone od 2008-09-24 do 2008-10-24 )))))))))))))))))))))))))))))))
.
2008-10-23 16:28 . 2008-10-23 16:28 14,336 --a------ C:\Windows\System32\drivers\PN31Snoop.sys
2008-10-20 19:29 . 2002-04-23 16:41 196,608 --a------ C:\Windows\System32\PS1DMiniDrv.dll
2008-10-20 19:29 . 2001-11-08 10:53 18,120 --a------ C:\Windows\System32\drivers\gt680x.sys
2008-10-20 19:29 . 2002-09-05 13:29 7,314 --a------ C:\Windows\System32\drivers\PS1Dfw.usb
2008-10-16 15:56 . 2008-09-18 07:09 3,601,464 --a------ C:\Windows\System32\ntkrnlpa.exe
2008-10-16 15:56 . 2008-09-18 07:09 3,549,240 --a------ C:\Windows\System32\ntoskrnl.exe
2008-10-16 15:56 . 2008-09-18 04:16 2,032,640 --a------ C:\Windows\System32\win32k.sys
2008-10-16 15:56 . 2008-10-02 03:32 1,383,424 --a------ C:\Windows\System32\mshtml.tlb
2008-10-16 15:56 . 2008-10-02 05:49 827,392 --a------ C:\Windows\System32\wininet.dll
2008-10-16 15:56 . 2008-08-27 03:06 288,768 --a------ C:\Windows\System32\drivers\srv.sys
2008-10-15 14:47 . 2008-10-15 14:47 0 --ah----- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
2008-10-15 14:35 . 2006-07-24 16:05 5,632 --a------ C:\Windows\System32\drivers\StarOpen.sys
2008-10-14 19:53 . 2008-10-14 19:53 <DIR> d-------- C:\Program Files\PROnetworks
2008-10-14 19:00 . 2008-10-14 19:00 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\Nero
2008-10-14 17:56 . 2008-10-14 17:56 <DIR> d--hs---- C:\Windows\ftpcache
2008-10-14 11:43 . 2008-10-14 11:43 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\ACD Systems
2008-10-14 11:32 . 2008-10-14 11:32 <DIR> d-------- C:\Users\Łukasz\{9870ba48-210d-4fca-b03b-6682de7ede3d}
2008-10-14 11:32 . 2008-10-14 11:32 <DIR> d-------- C:\Users\Łukasz\{9870ba48-210d-4fca-b03b-6682de7ede3d}
2008-10-14 11:32 . 2008-10-14 11:32 <DIR> d-------- C:\Users\Łukasz\{1350ec4e-e47a-4ca7-96ce-6aa8bb2acc77}
2008-10-14 11:32 . 2008-10-14 11:32 <DIR> d-------- C:\Users\Łukasz\{1350ec4e-e47a-4ca7-96ce-6aa8bb2acc77}
2008-10-14 11:31 . 2008-10-14 11:32 <DIR> d-------- C:\Users\Łukasz\{f472a69a-d93d-42bb-8e91-5a0fee7a3403}
2008-10-14 11:31 . 2008-10-14 11:32 <DIR> d-------- C:\Users\Łukasz\{f472a69a-d93d-42bb-8e91-5a0fee7a3403}
2008-10-14 11:31 . 2008-10-14 11:31 <DIR> d-------- C:\Users\Łukasz\{e53d02db-6054-4f51-bdc6-bedfc2a438c6}
2008-10-14 11:31 . 2008-10-14 11:31 <DIR> d-------- C:\Users\Łukasz\{e53d02db-6054-4f51-bdc6-bedfc2a438c6}
2008-10-14 11:31 . 2008-10-14 11:31 <DIR> d-------- C:\Users\Łukasz\{8529764b-60a4-4ff9-8b43-6278150da1bd}
2008-10-14 11:31 . 2008-10-14 11:31 <DIR> d-------- C:\Users\Łukasz\{8529764b-60a4-4ff9-8b43-6278150da1bd}
2008-10-14 11:31 . 2008-10-14 11:31 <DIR> d-------- C:\Users\Łukasz\{24182000-a716-45db-87cb-494334f2cba6}
2008-10-14 11:31 . 2008-10-14 11:31 <DIR> d-------- C:\Users\Łukasz\{24182000-a716-45db-87cb-494334f2cba6}
2008-10-14 11:30 . 2008-10-15 20:10 <DIR> d-------- C:\Users\Łukasz\{9fbf381e-afc0-4b58-a453-982b21d413c5}
2008-10-14 11:30 . 2008-10-15 20:10 <DIR> d-------- C:\Users\Łukasz\{9fbf381e-afc0-4b58-a453-982b21d413c5}
2008-10-14 11:30 . 2008-10-14 11:31 <DIR> d-------- C:\Users\Łukasz\{46a21c90-7b6c-4e13-91f7-c3dc34b583e7}
2008-10-14 11:30 . 2008-10-14 11:31 <DIR> d-------- C:\Users\Łukasz\{46a21c90-7b6c-4e13-91f7-c3dc34b583e7}
2008-10-14 11:30 . 2008-10-14 11:30 <DIR> d-------- C:\Program Files\Samsung
2008-10-14 11:24 . 2008-10-15 14:01 59 --a------ C:\Windows\wininit.ini
2008-10-13 09:19 . 2008-10-13 09:19 <DIR> d-------- C:\Program Files\MSXML 4.0
2008-10-12 19:34 . 2008-10-12 19:34 <DIR> d-------- C:\Users\All Users\Yahoo! Companion
2008-10-12 19:34 . 2008-10-12 19:34 <DIR> d-------- C:\ProgramData\Yahoo! Companion
2008-10-12 13:34 . 2008-10-12 13:34 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\Samsung
2008-10-12 13:22 . 2008-10-15 14:02 <DIR> d-------- C:\Windows\System32\Samsung_USB_Drivers
2008-10-12 13:22 . 2005-08-28 20:51 766 --a------ C:\Windows\System32\Uninstall.ico
2008-10-12 10:27 . 2008-10-12 10:27 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\Touchstone
2008-10-12 10:26 . 2008-10-12 10:26 107,888 --a------ C:\Windows\System32\CmdLineExt.dll
2008-10-12 10:09 . 2008-10-12 10:09 <DIR> d-------- C:\Windows\System32\AGEIA
2008-10-12 10:09 . 2008-10-12 10:09 <DIR> d-------- C:\Program Files\Touchstone
2008-10-12 10:09 . 2008-10-12 10:09 <DIR> d-------- C:\Program Files\AGEIA Technologies
2008-10-12 10:08 . 2008-10-12 10:08 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-10-12 10:08 . 2008-10-12 10:23 872 --a------ C:\Windows\disney.ini
2008-10-12 10:03 . 2008-02-22 13:30 334,792 --a------ C:\Windows\System32\_AxShlEx.dll
2008-10-12 10:01 . 2003-03-18 19:14 499,712 --a------ C:\Windows\System32\msvcp71.dll
2008-10-12 10:00 . 2008-10-12 10:00 <DIR> d-------- C:\Program Files\free-downloads.net
2008-10-12 10:00 . 2008-10-12 10:00 <DIR> d-------- C:\Program Files\Conduit
2008-10-12 10:00 . 2008-10-12 10:00 <DIR> d-------- C:\Program Files\Alcohol Soft
2008-10-12 09:51 . 2008-10-24 18:47 69 --a------ C:\Windows\NeroDigital.ini
2008-10-11 22:10 . 2008-10-11 22:10 <DIR> d-------- C:\Users\All Users\Nero
2008-10-11 22:10 . 2008-10-11 22:10 <DIR> d-------- C:\ProgramData\Nero
2008-10-11 22:10 . 2008-10-11 22:11 <DIR> d-------- C:\Program Files\Nero
2008-10-11 22:10 . 2008-10-11 22:10 <DIR> d-------- C:\Program Files\Common Files\Nero
2008-10-11 22:10 . 2006-03-17 12:45 1,757,184 --a------ C:\Windows\System32\imagX7.dll
2008-10-11 22:10 . 2006-03-17 12:45 802,816 --a------ C:\Windows\System32\imagXRA7.dll
2008-10-11 22:10 . 2006-03-17 12:45 497,296 --a------ C:\Windows\System32\imagXpr7.dll
2008-10-11 22:10 . 2006-03-17 15:49 368,640 --a------ C:\Windows\System32\TwnLib4.dll
2008-10-11 22:10 . 2006-03-17 12:45 258,048 --a------ C:\Windows\System32\imagXR7.dll
2008-10-11 21:45 . 2008-10-11 21:45 <DIR> d-------- C:\Program Files\Yahoo!
2008-10-11 21:45 . 2008-10-11 21:45 <DIR> d-------- C:\extensions
2008-10-11 21:44 . 2008-10-11 21:44 <DIR> d-------- C:\Users\All Users\ACD Systems
2008-10-11 21:44 . 2008-10-11 21:44 <DIR> d-------- C:\ProgramData\ACD Systems
2008-10-11 21:44 . 2008-10-11 21:44 <DIR> d-------- C:\Program Files\Common Files\ACD Systems
2008-10-11 21:44 . 2008-10-11 21:44 <DIR> d-------- C:\Program Files\ACD Systems
2008-10-11 21:42 . 2008-10-11 21:42 <DIR> d-------- C:\Users\UKASZ~2\AppData
2008-10-11 21:42 . 2008-10-20 19:30 <DIR> d-------- C:\Users\Łukasz
2008-10-11 21:41 . 2008-10-11 21:41 <DIR> d-------- C:\Users\All Users\Adobe Systems
2008-10-11 21:41 . 2008-10-11 21:41 <DIR> d-------- C:\ProgramData\Adobe Systems
2008-10-11 21:39 . 2008-10-11 21:39 <DIR> d-------- C:\Program Files\Common Files\Adobe Systems Shared
2008-10-11 21:39 . 2008-10-11 21:39 <DIR> d-------- C:\Program Files\Color_Cop
2008-10-11 21:37 . 2008-10-11 21:37 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\Corel
2008-10-11 21:37 . 2008-10-11 21:37 <DIR> d-------- C:\Users\All Users\InstallShield
2008-10-11 21:37 . 2008-10-11 21:37 <DIR> d-------- C:\ProgramData\InstallShield
2008-10-11 21:37 . 2008-10-11 21:37 952 --ahs---- C:\Windows\System32\KGyGaAvL.sys
2008-10-11 21:36 . 2008-10-11 21:37 <DIR> d-------- C:\Program Files\Common Files\Corel
2008-10-11 21:35 . 2008-10-11 21:36 <DIR> d-------- C:\Program Files\Corel
2008-10-11 21:32 . 2008-10-11 21:32 716,272 --a------ C:\Windows\System32\drivers\sptd.sys
2008-10-11 21:31 . 2008-10-11 21:31 <DIR> d-------- C:\Program Files\Microsoft Works
2008-10-11 21:31 . 2006-10-26 19:56 32,592 --a------ C:\Windows\System32\msonpmon.dll
2008-10-11 21:30 . 2008-10-11 21:30 <DIR> d-------- C:\Windows\PCHEALTH
2008-10-11 21:30 . 2008-10-11 21:30 <DIR> d-------- C:\Program Files\Microsoft.NET
2008-10-11 21:29 . 2008-10-11 21:29 <DIR> d-------- C:\Program Files\Microsoft Visual Studio 8
2008-10-11 21:28 . 2008-10-11 21:32 <DIR> d-------- C:\Users\All Users\Microsoft Help
2008-10-11 21:28 . 2008-10-11 21:32 <DIR> d-------- C:\ProgramData\Microsoft Help
2008-10-11 21:27 . 2008-10-11 21:27 <DIR> dr-h----- C:\MSOCache
2008-10-11 14:38 . 2008-10-11 14:38 2,560 --a------ C:\Windows\_MSRSTRT.EXE
2008-10-11 14:32 . 2008-10-11 16:05 <DIR> d-------- C:\Program Files\BearShare
2008-10-10 15:36 . 2008-10-10 15:36 <DIR> d-------- C:\Windows\Cache
2008-10-10 15:36 . 2008-10-11 21:38 <DIR> d-------- C:\Users\All Users\Adobe
2008-10-10 15:36 . 2008-10-11 21:40 <DIR> d-------- C:\Program Files\Common Files\Adobe
2008-10-07 14:48 . 2008-10-12 16:25 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\skypePM
2008-10-07 14:48 . 2008-10-07 14:48 56 --ah----- C:\Windows\System32\ezsidmv.dat
2008-10-07 14:46 . 2008-10-12 17:16 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\Skype
2008-10-07 14:45 . 2008-10-07 14:45 <DIR> d-------- C:\Users\All Users\Skype
2008-10-07 14:45 . 2008-10-07 14:45 <DIR> d-------- C:\ProgramData\Skype
2008-10-07 14:45 . 2008-10-07 14:45 <DIR> d-------- C:\Program Files\Skype
2008-10-07 14:45 . 2008-10-07 14:45 <DIR> d-------- C:\Program Files\Common Files\Skype
2008-10-06 17:50 . 2008-10-06 17:50 <DIR> d-------- C:\Program Files\Picasa2
2008-10-06 17:50 . 2008-10-06 17:50 <DIR> d-------- C:\Program Files\Google
2008-10-06 17:50 . 2006-10-05 04:42 2,560 --------- C:\Windows\System32\drivers\cdralw2k.sys
2008-10-06 17:50 . 2006-10-05 04:42 2,432 --------- C:\Windows\System32\drivers\cdr4_xp.sys
2008-10-06 17:37 . 2008-10-06 17:37 0 --ah----- C:\Windows\System32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2008-10-06 16:12 . 2008-10-06 16:12 <DIR> d-------- C:\Windows\Sun
2008-10-05 12:05 . 2008-10-05 12:05 <DIR> d-------- C:\Program Files\Sun
2008-10-05 12:04 . 2008-10-05 12:04 <DIR> d-------- C:\Program Files\Java
2008-10-05 11:57 . 2008-10-05 11:57 <DIR> d-------- C:\Program Files\Common Files\Java
2008-10-04 23:49 . 2008-10-04 13:54 <DIR> d-------- C:\Windows\Panther
2008-10-04 20:32 . 2008-10-04 20:32 <DIR> d-------- C:\Program Files\Combined Community Codec Pack
2008-10-04 18:59 . 2008-10-04 18:59 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\Media Player Classic
2008-10-04 18:58 . 2008-10-24 18:33 <DIR> d-------- C:\Program Files\SubEdit-Player
2008-10-04 18:54 . 2008-10-04 18:54 <DIR> d-------- C:\Program Files\Runtime Software
2008-10-04 18:38 . 2008-10-04 18:38 <DIR> d-------- C:\Program Files\AnyReader
2008-10-04 17:50 . 2008-10-04 17:50 159,609 --a------ C:\Windows\Marsu-Fix 2.5 Uninstaller.exe
2008-10-04 17:47 . 2008-10-04 17:47 <DIR> d-------- C:\Users\Łukasz\AppData\Roaming\ESET
2008-10-04 17:46 . 2008-10-15 14:35 <DIR> d--hs---- C:\Windows\Installer
2008-10-04 17:46 . 2008-10-04 17:46 <DIR> d-------- C:\Users\All Users\ESET
2008-10-04 17:46 . 2008-10-04 17:46 <DIR> d-------- C:\ProgramData\ESET
2008-10-04 17:46 . 2008-10-04 17:46 <DIR> d-------- C:\Program Files\ESET
2008-10-04 17:41 . 2003-02-21 03:42 348,160 --a------ C:\Windows\System32\msvcr71.dll
2008-10-04 17:39 . 2008-10-04 17:39 <DIR> d-------- C:\Users\All Users\Last.fm
2008-10-04 17:39 . 2008-10-04 17:39 <DIR> d-------- C:\ProgramData\Last.fm
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-17 13:23 --------- d-----w C:\Program Files\Windows Mail
2008-10-11 19:30 --------- d-----w C:\Program Files\MSBuild
2008-10-04 14:17 --------- d-----w C:\Program Files\Windows Sidebar
2008-10-04 14:17 --------- d-----w C:\Program Files\Windows Photo Gallery
2008-10-04 14:17 --------- d-----w C:\Program Files\Windows Journal
2008-10-04 14:17 --------- d-----w C:\Program Files\Windows Defender
2008-10-04 14:17 --------- d-----w C:\Program Files\Windows Collaboration
2008-10-04 14:17 --------- d-----w C:\Program Files\Windows Calendar
2008-10-04 12:04 319,456 ----a-w C:\Windows\DIFxAPI.dll
2008-10-04 12:04 315,392 ----a-w C:\Windows\HideWin.exe
2008-09-01 14:41 104,320 ----a-w C:\Windows\system32\drivers\CT_ZTEMT_U_USBSER.sys
2008-08-02 03:26 36,864 ----a-w C:\Windows\System32\cdd.dll
2008-07-31 03:32 460,288 ----a-w C:\Windows\AppPatch\AcSpecfc.dll
2008-07-31 03:32 2,154,496 ----a-w C:\Windows\AppPatch\AcGenral.dll
2008-07-31 03:32 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll
2008-01-21 02:41 174 --sha-w C:\Program Files\desktop.ini
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{ecdee021-0d17-467f-a1ff-c7a115230949}"= "C:\Program Files\free-downloads.net\tbfree.dll" [2008-02-14 1555480]
[HKEY_CLASSES_ROOT\clsid\{ecdee021-0d17-467f-a1ff-c7a115230949}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{ecdee021-0d17-467f-a1ff-c7a115230949}]
2008-02-14 14:54 1555480 --a------ C:\Program Files\free-downloads.net\tbfree.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{ecdee021-0d17-467f-a1ff-c7a115230949}"= "C:\Program Files\free-downloads.net\tbfree.dll" [2008-02-14 1555480]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{ECDEE021-0D17-467F-A1FF-C7A115230949}"= "C:\Program Files\free-downloads.net\tbfree.dll" [2008-02-14 1555480]
[HKEY_CLASSES_ROOT\clsid\{ecdee021-0d17-467f-a1ff-c7a115230949}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920]
"Gadu-Gadu"="C:\Program Files\Gadu-Gadu\gg.exe" [2008-03-20 2127296]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2008-08-21 443968]
"AlcoholAutomount"="C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" [2008-10-12 4608]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
"WindowsWelcomeCenter"="oobefldr.dll" [2008-01-21 C:\Windows\System32\oobefldr.dll]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"="C:\Windows\RaidTool\xInsIDE.exe" [2007-03-20 36864]
"Gainward"="C:\Windows\TBPanel.exe" [2007-11-27 2189864]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-11-28 86016]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-11-28 8530464]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2007-11-28 81920]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe" [2008-08-04 36352]
"egui"="C:\Program Files\ESET\ESET Smart Security\egui.exe" [2008-07-01 1447168]
"TrialReset"="C:\Windows\regx32.exe" [2008-07-03 285327]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"RtHDVCpl"="RtHDVCpl.exe" [2007-08-09 C:\Windows\RtHDVCpl.exe]
C:\Users\ťukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-03-16 113664]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.ffds"= C:\PROGRA~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
"VIDC.ACDV"= ACDV.dll
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{F2DA56BF-76F8-466C-9719-322D14F3E3C7}"= C:\Program Files\Skype\Phone\Skype.exe:Skype
"{4FB3B8B5-964D-403E-9E0F-80B0763F64F1}"= TCP:6004|C:\Program Files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook
"{1AB4D763-5038-4CF5-8820-2640DAD1A635}"= UDP:C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:Microsoft Office Groove
"{C9158FC9-B5CF-4BB3-9163-4C55B7879EC1}"= TCP:C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:Microsoft Office Groove
"{28982EF8-7ED2-42EB-B131-D18C796B1487}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{B62CB441-5418-4584-970C-419403482571}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"EnableFirewall"= 0 (0x0)
"DoNotAllowExceptions"= 0 (0x0)
R3 RT2400PCI;802.11b WLAN PCI;C:\Windows\system32\DRIVERS\RT2400.sys [2003-10-31 61056]
S3 zteusbser;ZTE USB Device for Legacy Serial Communication;C:\Windows\system32\DRIVERS\CT_ZTEMT_U_USBSER.sys [2008-09-01 104320]
S4 ErrDev;Microsoft Hardware Error Device Driver;C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR;C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{24c626f7-9828-11dd-943e-001c25a8b699}]
\shell\AutoRun\command - I:\TwojePJ.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a9dc6734-920a-11dd-8c98-806e6f6e6963}]
\shell\AutoRun\command - H:\Setup.exe
*Newly Created Service* - CATCHME
*Newly Created Service* - PROCEXP90
.
Zawartość folderu 'Zaplanowane zadania'
2008-10-24 C:\Windows\Tasks\User_Feed_Synchronization-{14DC9004-1B58-46F7-89FB-2D5A2415EA72}.job
- C:\Windows\system32\msfeedssync.exe [2008-01-21 04:23]
.
- - - - USUNIĘTO PUSTE WPISY - - - -
HKLM-Run-BearShare - C:\Program Files\BearShare\BearShare.exe
.
------- Skan uzupełniający -------
.
FireFox -: Profile - C:\Users\Łukasz\AppData\Roaming\Mozilla\Firefox\Profiles\b0izdefn.default\
FF -: plugin - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\browser\nppdf32.dll
FF -: plugin - C:\Program Files\Picasa2\npPicasa2.dll
FF -: plugin - C:\Program Files\Yahoo!\Common\npyaxmpb.dll
FF -: plugin - L:\Program Files\QuickTime\Plugins\npqtplugin.dll
FF -: plugin - L:\Program Files\QuickTime\Plugins\npqtplugin2.dll
FF -: plugin - L:\Program Files\QuickTime\Plugins\npqtplugin3.dll
FF -: plugin - L:\Program Files\QuickTime\Plugins\npqtplugin4.dll
FF -: plugin - L:\Program Files\QuickTime\Plugins\npqtplugin5.dll
FF -: plugin - L:\Program Files\QuickTime\Plugins\npqtplugin6.dll
FF -: plugin - L:\Program Files\QuickTime\Plugins\npqtplugin7.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-24 19:37:09
Windows 6.0.6001 Service Pack 1 NTFS
skanowanie ukrytych procesów ...
skanowanie ukrytych wpisów autostartu ...
skanowanie ukrytych plików ...
skanowanie pomyślnie ukończone
ukryte pliki: 0
**************************************************************************
.
Czas ukończenia: 2008-10-24 19:38:15
ComboFix-quarantined-files.txt 2008-10-24 17:38:12
Przed: 10,038,161,408 bajtów wolnych
Po: 10,305,531,904 bajtów wolnych
257 --- E O F --- 2008-10-24 16:19:49
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 6 gości