• Ogłoszenie:

użycie procesora 100%

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

użycie procesora 100%

Postprzez Amistad18 06 Kwi 2007, 21:38

reklama
Witam na chwile ^^ , jako że nie mój komp, wole sie upewnić.

Ogólnie to problem jest z tym, że podczas 'nic nie robienia' użycie procesora sięga 60-100%, użycie pamięci tak samo ... system stoi może dwa tygodnie, zostały zainstalowane tylko najpotrzebniejsze rzeczy ( nawet gg nie ma ).

Komp nie tylko przymula, ale nawet zwykłych avi'ków nie może płynnie odtworzyć ( komp ponad 2Ghz, jakiś pentium :? i 512 ram, jako że chodzi pod 2k, to powinno wszystko szybciutko chodzić )


Kod: Zaznacz wszystko
Logfile of HijackThis v1.99.1
Scan saved at 18:56:44, on 2007-04-06
Platform: Windows 2000  (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\Explorer.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINNT\Mixer.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\ok8\Moje dokumenty\Nowy folder (2)\Nowy folder (2)\Nowy folder (2)\Nowy folder (2)\Nowy folder\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.pcworld.pl/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O17 - HKLM\System\CCS\Services\Tcpip\..\{AFE6318A-AED9-41FF-95AB-79AA2DC8E7F5}: NameServer = 192.168.2.1,213.146.48.199
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Usługa administracyjna Menedżera dysków logicznych (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Harmonogram automatycznej usługi LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe


Kod: Zaznacz wszystko
"Silent Runners.vbs", revision 45, http://www.silentrunners.org/
Operating System: Windows 2000
Output limited to non-default values, except where indicated by "{++}"


Startup items buried in registry:
---------------------------------

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
"Synchronization Manager" = "mobsync.exe /logon" [MS]
"ccApp" = ""C:\Program Files\Common Files\Symantec Shared\ccApp.exe"" ["Symantec Corporation"]
"SSC_UserPrompt" = "C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe" ["Symantec Corporation"]
"Symantec NetDriver Monitor" = "C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer" ["Symantec Corporation"]
"C-Media Mixer" = "Mixer.exe /startup" ["C-Media Electronic Inc."]

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{BDF3E430-B101-42AD-A544-FADC6B084872}\(Default) = "NAV Helper"
  -> {HKLM...CLSID} = "CNavExtBho Class"
                   \InProcServer32\(Default) = "C:\Program Files\Norton AntiVirus\NavShExt.dll" ["Symantec Corporation"]

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Rozszerzenie CPL kadrowania wyświetlania"
  -> {HKLM...CLSID} = "Rozszerzenie CPL kadrowania wyświetlania"
                   \InProcServer32\(Default) = "deskpan.dll" [file not found]
"{88895560-9AA2-1069-930E-00AA0030EBC8}" = "Rozszerzenie ikony HyperTerminalu"
  -> {HKLM...CLSID} = "HyperTerminal Icon Ext"
                   \InProcServer32\(Default) = "C:\WINNT\System32\hticons.dll" ["Hilgraeve, Inc."]
"{8e9d6600-f84a-11ce-8daa-00aa004a5691}" = "Shell extensions for NetWare"
  -> {HKLM...CLSID} = "NetWare Objects"
                   \InProcServer32\(Default) = "nwprovau.dll" [MS]
"{e3f2bac0-099f-11cf-8daa-00aa004a5691}" = "Shell extensions for NetWare"
  -> {HKLM...CLSID} = "NetWare UNC Folder Menu"
                   \InProcServer32\(Default) = "nwprovau.dll" [MS]
"{52c68510-09a0-11cf-8daa-00aa004a5691}" = "Shell extensions for NetWare"
  -> {HKLM...CLSID} = "NetWare Hood Verbs"
                   \InProcServer32\(Default) = "nwprovau.dll" [MS]
"{59850401-6664-101B-B21C-00AA004BA90B}" = "Microsoft Office Binder Unbind"
  -> {HKLM...CLSID} = "Microsoft Office Binder Unbind"
                   \InProcServer32\(Default) = "C:\PROGRA~1\MICROS~2\Office\1045\UNBIND.DLL" [MS]
"{23170F69-40C1-278A-1000-000100020000}" = "7-Zip Shell Extension"
  -> {HKLM...CLSID} = "7-Zip Shell Extension"
                   \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]
"{B41DB860-8EE4-11D2-9906-E49FADC173CA}" = "WinRAR shell extension"
  -> {HKLM...CLSID} = "WinRAR"
                   \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

HKLM\Software\Classes\*\shellex\ContextMenuHandlers\
7-Zip\(Default) = "{23170F69-40C1-278A-1000-000100020000}"
  -> {HKLM...CLSID} = "7-Zip Shell Extension"
                   \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]
Symantec.Norton.Antivirus.IEContextMenu\(Default) = "{5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2}"
  -> {HKLM...CLSID} = "IEContextMenu Class"
                   \InProcServer32\(Default) = "C:\Program Files\Norton AntiVirus\NavShExt.dll" ["Symantec Corporation"]
WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
  -> {HKLM...CLSID} = "WinRAR"
                   \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\
7-Zip\(Default) = "{23170F69-40C1-278A-1000-000100020000}"
  -> {HKLM...CLSID} = "7-Zip Shell Extension"
                   \InProcServer32\(Default) = "C:\Program Files\7-Zip\7-zip.dll" ["Igor Pavlov"]
WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
  -> {HKLM...CLSID} = "WinRAR"
                   \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]

HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\
NetWareUNCMenu\(Default) = "{e3f2bac0-099f-11cf-8daa-00aa004a5691}"
  -> {HKLM...CLSID} = "NetWare UNC Folder Menu"
                   \InProcServer32\(Default) = "nwprovau.dll" [MS]
Symantec.Norton.Antivirus.IEContextMenu\(Default) = "{5345A4D5-41EB-4A2F-9616-CE1D4F6C35B2}"
  -> {HKLM...CLSID} = "IEContextMenu Class"
                   \InProcServer32\(Default) = "C:\Program Files\Norton AntiVirus\NavShExt.dll" ["Symantec Corporation"]
WinRAR\(Default) = "{B41DB860-8EE4-11D2-9906-E49FADC173CA}"
  -> {HKLM...CLSID} = "WinRAR"
                   \InProcServer32\(Default) = "C:\Program Files\WinRAR\rarext.dll" [null data]


Active Desktop and Wallpaper:
-----------------------------

Active Desktop is disabled at this entry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState


Enabled Screen Saver:
---------------------

HKCU\Control Panel\Desktop\
"SCRNSAVE.EXE" = "(BRAK)" [file not found]


Startup items in "ok8" & "All Users" startup folders:
-----------------------------------------------------

C:\Documents and Settings\All Users.WINNT\Menu Start\Programy\Autostart
"Microsoft Office" -> shortcut to: "C:\Program Files\Microsoft Office\Office\OSA9.EXE -b -l" [MS]


Enabled Scheduled Tasks:
------------------------

"Norton AntiVirus - Skanuj komputer - ok8" -> launches: "C:\PROGRA~1\NORTON~1\Navw32.exe /task:"C:\Documents and Settings\All Users.WINNT\Dane aplikacji\Symantec\Norton AntiVirus\Tasks\mycomp.sca"" ["Symantec Corporation"]


Winsock2 Service Provider DLLs:
-------------------------------

Namespace Service Providers

HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
000000000001\LibraryPath = "%SystemRoot%\System32\rnr20.dll" [MS]
000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]
000000000003\LibraryPath = "%SystemRoot%\System32\nwprovau.dll" [MS]

Transport Service Providers

HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
%SystemRoot%\system32\msafd.dll [MS], 01 - 03, 06 - 18
%SystemRoot%\system32\rsvpsp.dll [MS], 04 - 05


Toolbars, Explorer Bars, Extensions:
------------------------------------

Toolbars

HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\
"{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}"
  -> {HKLM...CLSID} = "Norton AntiVirus"
                   \InProcServer32\(Default) = "C:\Program Files\Norton AntiVirus\NavShExt.dll" ["Symantec Corporation"]

HKLM\Software\Microsoft\Internet Explorer\Toolbar\
"{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}" = "Norton AntiVirus"
  -> {HKLM...CLSID} = "Norton AntiVirus"
                   \InProcServer32\(Default) = "C:\Program Files\Norton AntiVirus\NavShExt.dll" ["Symantec Corporation"]


Running Services (Display Name, Service Name, Path {Service DLL}):
------------------------------------------------------------------

Harmonogram automatycznej usługi LiveUpdate, Harmonogram automatycznej usługi LiveUpdate, ""C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe"" ["Symantec Corporation"]
Norton AntiVirus Auto-Protect Service, navapsvc, ""C:\Program Files\Norton AntiVirus\navapsvc.exe"" ["Symantec Corporation"]
Norton AntiVirus Firewall Monitor Service, NPFMntor, "C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe" ["Symantec Corporation"]
Symantec Core LC, Symantec Core LC, "C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe" ["Symantec Corporation"]
Symantec Event Manager, ccEvtMgr, ""C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"" ["Symantec Corporation"]
Symantec Network Drivers Service, SNDSrvc, "C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe" ["Symantec Corporation"]
Symantec Settings Manager, ccSetMgr, ""C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"" ["Symantec Corporation"]
Symantec SPBBCSvc, SPBBCSvc, "C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe" ["Symantec Corporation"]
System zdarzeń COM+, EventSystem, "C:\WINNT\System32\svchost.exe -k netsvcs" {"C:\WINNT\System32\es.dll" [null data]}
Usługa klientów dla systemu NetWare, NWCWorkstation, "C:\WINNT\System32\services.exe" [MS]


Print Monitors:
---------------

HKLM\System\CurrentControlSet\Control\Print\Monitors\
HP LaserJet 5 Language Monitor\Driver = "HPDCMON.DLL" ["Hewlett-Packard"]


----------
+ This report excludes default entries except where indicated.
+ To see *everywhere* the script checks and *everything* it finds,
  launch it from a command prompt or a shortcut with the -all parameter.
+ To search all directories of local fixed drives for DESKTOP.INI
  DLL launch points and all Registry CLSIDs for dormant Explorer Bars,
  use the -supp parameter or answer "No" at the first message box.
---------- (total run time: 101 seconds, including 9 seconds for message boxes)
i po ptokach ....
Amistad18
~user
 
Posty: 4441
Dołączenie: 03 Sie 2005, 11:25
Miejscowość: Bydgoszcz
Pochwały: 335



Postprzez wojtas 06 Kwi 2007, 21:44

wklej loga z comboscana:

http://www.techsupportforum.com/sectools/Deckard/comboscan.exe

co zabiera tyle procesora??
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656



Postprzez Amistad18 06 Kwi 2007, 22:04

Jest mały problem, bo obecnie komp jest 200Km ode mnie ... no ale dostałem coś takiego:

Image



Kod: Zaznacz wszystko
ComboScan v20070306.20 run by ok8 on 2007-04-06 at 21:44:45
Computer is in Normal Mode.
--------------------------------------------------------------------------------

Performed disk cleanup.


-- HijackThis (run as ok8.exe) -------------------------------------------------

Logfile of HijackThis v1.99.1
Scan saved at 21:44:58, on 2007-04-06
Platform: Windows 2000  (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\Explorer.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINNT\Mixer.exe
C:\Program Files\Norton AntiVirus\OPScan.exe
C:\Program Files\Symantec\LiveUpdate\AUpdate.exe
C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Tools\comboscan.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\DOCUME~1\ok8\MOJEDO~1\NOWYFO~1\NOWYFO~1\NOWYFO~1\NOWYFO~1\NOWYFO~1\ok8.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.pcworld.pl/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łšcza
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O17 - HKLM\System\CCS\Services\Tcpip\..\{AFE6318A-AED9-41FF-95AB-79AA2DC8E7F5}: NameServer = 192.168.2.1,213.146.48.199
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Usługa administracyjna Menedżera dysków logicznych (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: Harmonogram automatycznej usługi LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe


-- File Associations -----------------------------------------------------------

.bat - batfile - "%1" %*
.chm - chm.file - "C:\WINNT\hh.exe" %1
.cmd - cmdfile - "%1" %*
.com - comfile - "%1" %*
.exe - exefile - "%1" %*
.hlp - hlpfile - %SystemRoot%\System32\winhlp32.exe %1
.inf - inffile - %SystemRoot%\System32\NOTEPAD.EXE %1
.ini - inifile - %SystemRoot%\System32\NOTEPAD.EXE %1
.js - JSFile - %SystemRoot%\System32\WScript.exe "%1" %*
.lnk - lnkfile - {00021401-0000-0000-C000-000000000046}
.pif - piffile - "%1" %*
.reg - regfile - regedit.exe "%1"
.scr - scrfile - "%1" /S
.txt - txtfile - %SystemRoot%\system32\NOTEPAD.EXE %1
.vbs - VBSFile - %SystemRoot%\System32\WScript.exe "%1" %*


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

3S CCDECODE (Closed Caption Decoder) - C:\WINNT\system32\drivers\ccdecode.sys
3R cmpci (C-Media PCI Audio Driver (WDM)) - C:\WINNT\system32\drivers\cmaudio.sys
3R EL90BC (Sterownik karty 3Com EtherLink XL B/C) - C:\WINNT\system32\drivers\el90xbc5.sys
3S MPE (BDA MPE Filter) - C:\WINNT\system32\drivers\mpe.sys
3S MSTEE (Microsoft Streaming Tee/Sink-to-Sink Converter) - C:\WINNT\system32\drivers\mstee.sys
3R ms_mpu401 (Sterownik portu MIDI UART Microsoft MPU-401) - C:\WINNT\system32\drivers\msmpu401.sys
3S NABTSFEC (NABTS/FEC VBI Codec) - C:\WINNT\system32\drivers\nabtsfec.sys
3R NAVENG - C:\Program Files\Common Files\Symantec Shared\VirusDefs\20070404.032\NAVENG.SYS
3R NAVEX15 - C:\Program Files\Common Files\Symantec Shared\VirusDefs\20070404.032\NAVEX15.SYS
3R nv4 - C:\WINNT\system32\drivers\nv4.sys
2R NwlnkIpx (Protokół transportowy zgodny z NWLink IPX/SPX/NetBIOS) - C:\WINNT\system32\drivers\nwlnkipx.sys
2R NwlnkNb (NWLink NetBIOS) - C:\WINNT\system32\drivers\nwlnknb.sys
2R NwlnkSpx (Protokół NWLink SPX/SPXII) - C:\WINNT\system32\drivers\nwlnkspx.sys
3R NWRDR (NetWare Rdr) - C:\WINNT\system32\drivers\nwrdr.sys
1R oreans32 - C:\WINNT\system32\drivers\oreans32.sys
0R PxHelp20 - C:\WINNT\system32\drivers\PxHelp20.sys
3R SAVRT - C:\Program Files\Norton AntiVirus\SAVRT.SYS
1R SAVRTPEL - C:\Program Files\Norton AntiVirus\SAVRTPEL.SYS
3S SLIP (BDA Slip De-Framer) - C:\WINNT\system32\drivers\slip.sys
1R SPBBCDrv - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys
3S streamip (BDA IPSink) - C:\WINNT\system32\drivers\streamip.sys
3R SYMDNS - C:\WINNT\system32\drivers\symdns.sys
3R SymEvent - C:\Program Files\Symantec\SYMEVENT.SYS
3R SYMFW - C:\WINNT\system32\drivers\symfw.sys
3R SYMIDS - C:\WINNT\system32\drivers\symids.sys
3R SYMIDSCO - C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20070405.004\SymIDSCo.sys
2R symlcbrd - C:\WINNT\system32\drivers\symlcbrd.sys
3R SYMNDIS - C:\WINNT\system32\drivers\symndis.sys
3R SYMREDRV - C:\WINNT\system32\drivers\symredrv.sys
1R SYMTDI - C:\WINNT\system32\drivers\symtdi.sys
3S USBSTOR (Sterownik pamięci masowej USB) - C:\WINNT\system32\drivers\USBSTOR.SYS
3S WSTCODEC (World Standard Teletext Codec) - C:\WINNT\system32\drivers\wstcodec.sys


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

2R ccEvtMgr (Symantec Event Manager) - "C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"
3S ccPwdSvc (Symantec Password Validation) - "C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"
2R ccSetMgr (Symantec Settings Manager) - "C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe"
2R Harmonogram automatycznej usługi LiveUpdate - "C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe"
3R LiveUpdate - "C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE"
3R navapsvc (Norton AntiVirus Auto-Protect Service) - "C:\Program Files\Norton AntiVirus\navapsvc.exe"
2R NPFMntor (Norton AntiVirus Firewall Monitor Service) - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
2R NWCWorkstation (Usługa klientów dla systemu NetWare) - C:\WINNT\System32\services.exe
3S SAVScan - C:\Program Files\Norton AntiVirus\SAVScan.exe
2S SBService (ScriptBlocking Service) - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
2R SNDSrvc (Symantec Network Drivers Service) - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
2R SPBBCSvc (Symantec SPBBCSvc) - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
2R Symantec Core LC - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe


-- Scheduled Tasks -------------------------------------------------------------

2007-04-06 21:18:43       568 --a------ C:\WINNT\Tasks\Norton AntiVirus - Skanuj komputer - ok8.job<NORTON~1.JOB>


-- Files created between 2007-03-06 and 2007-04-06 -----------------------------

2007-04-06 19:27:44     16384 --a-----t C:\WINNT\System32\Perflib_Perfdata_3f4.dat<PERFLI~1.DAT>
2007-04-05 20:10:25    995944 --a------ C:\WINNT\System32\wmvdmoe2.dll
2007-04-05 20:10:25    898664 --a------ C:\WINNT\System32\wmspdmoe.dll
2007-04-05 20:10:25    486504 --a------ C:\WINNT\System32\wmspdmod.dll
2007-04-05 20:10:25   1108584 --a------ C:\WINNT\System32\wmsdmoe2.dll
2007-04-05 20:10:25    675944 --a------ C:\WINNT\System32\wmadmoe.dll
2007-04-05 20:10:24    807528 --a------ C:\WINNT\System32\wmvdmod.dll
2007-04-05 20:10:24    752232 --a------ C:\WINNT\System32\wmsdmod.dll
2007-04-05 20:10:24    919040 --a------ C:\WINNT\System32\wmnetmgr.dll
2007-04-05 20:10:24    410216 --a------ C:\WINNT\System32\wmadmod.dll
2007-04-05 20:10:24    248424 --a------ C:\WINNT\System32\mpg4dmod.dll
2007-04-05 20:10:24    384512 --a------ C:\WINNT\System32\mp4sdmod.dll
2007-04-05 20:10:24    316008 --a------ C:\WINNT\System32\mp43dmod.dll
2007-04-05 20:10:23   2050664 --a------ C:\WINNT\System32\wmvcore.dll
2007-04-05 20:10:23    143360 --a------ C:\WINNT\System32\wmidx.dll
2007-04-05 20:10:23    217600 --a------ C:\WINNT\System32\wmasf.dll
2007-04-05 20:10:20    261224 --a------ C:\WINNT\System32\msnetobj.dll
2007-04-05 20:10:20    679936 --a------ C:\WINNT\System32\drmv2clt.dll
2007-04-05 20:10:20     82432 --a------ C:\WINNT\System32\drmstor.dll
2007-04-05 20:10:20    301160 --a------ C:\WINNT\System32\drmclien.dll
2007-04-05 20:10:20    232960 --a------ C:\WINNT\System32\blackbox.dll
2007-04-05 20:08:54   1497088 --a------ C:\WINNT\System32\cc3260mt.dll
2007-04-05 20:08:52    620544 --a------ C:\WINNT\System32\stlpmt45.dll
2007-04-05 20:00:53       984 --a------ C:\WINNT\System32\d3d8caps.dat
2007-04-05 20:00:23     33824 --a------ C:\WINNT\System32\drivers\oreans32.sys
2007-04-05 19:53:53         0 d-------- C:\Program Files\Common Files\AVSMedia
2007-04-05 19:53:48    139264 --a------ C:\WINNT\System32\xvidvfw.dll
2007-04-05 19:53:48    524288 --a------ C:\WINNT\System32\xvidcore.dll
2007-04-05 19:53:48    413760 --a------ C:\WINNT\System32\mpg4c32.dll
2007-04-05 19:53:48    261632 --a------ C:\WINNT\System32\mcdvd_32.dll
2007-04-05 19:53:45   1700352 --a------ C:\WINNT\System32\GdiPlus.dll
2007-04-05 19:53:44    487424 --a------ C:\WINNT\System32\msvcp70.dll
2007-04-05 19:53:44    974848 --a------ C:\WINNT\System32\mfc70.dll
2007-04-05 19:53:43    344064 --a------ C:\WINNT\System32\msvcr70.dll
2007-04-05 19:53:42         0 d-------- C:\Program Files\AVSMedia
2007-04-05 19:42:27    354816 --a------ C:\WINNT\System32\psisdecd.dll
2007-04-05 19:42:27    480256 --a------ C:\WINNT\System32\msvidctl.dll
2007-04-05 19:42:27     14976 --a------ C:\WINNT\System32\drivers\streamip.sys
2007-04-05 19:42:27     10880 --a------ C:\WINNT\System32\drivers\slip.sys
2007-04-05 19:42:26     47104 --a------ C:\WINNT\System32\wstdecod.dll
2007-04-05 19:42:26     16896 --a------ C:\WINNT\System32\msyuv.dll
2007-04-05 19:42:26     18688 --a------ C:\WINNT\System32\drivers\wstcodec.sys
2007-04-05 19:42:26     10112 --a------ C:\WINNT\System32\drivers\ndisip.sys
2007-04-05 19:42:26     83968 --a------ C:\WINNT\System32\drivers\nabtsfec.sys
2007-04-05 19:42:26     56832 --a------ C:\WINNT\System32\drivers\msdv.sys
2007-04-05 19:42:26     15104 --a------ C:\WINNT\System32\drivers\mpe.sys
2007-04-05 19:42:26     11392 --a------ C:\WINNT\System32\drivers\bdasup.sys
2007-04-05 19:42:25      4096 --a------ C:\WINNT\System32\ksuser.dll
2007-04-05 19:42:25      4096 --a------ C:\WINNT\System32\drivers\swenum.sys
2007-04-05 19:42:25     48512 --a------ C:\WINNT\System32\drivers\stream.sys
2007-04-05 19:42:25      5504 --a------ C:\WINNT\System32\drivers\mstee.sys
2007-04-05 19:42:25      5248 --a------ C:\WINNT\System32\drivers\mspclock.sys
2007-04-05 19:42:25      7424 --a------ C:\WINNT\System32\drivers\mskssrv.sys
2007-04-05 19:42:25    130304 --a------ C:\WINNT\System32\drivers\ks.sys
2007-04-05 19:42:25     16384 --a------ C:\WINNT\System32\drivers\ccdecode.sys
2007-04-05 19:42:19    733184 --a------ C:\WINNT\System32\qedwipes.dll
2007-04-05 19:42:19   1798144 --a------ C:\WINNT\System32\qedit.dll
2007-04-05 19:42:19    221184 --a------ C:\WINNT\System32\qasf.dll
2007-04-05 19:42:19    324096 --a------ C:\WINNT\System32\mswebdvd.dll
2007-04-05 19:42:19     13312 --a------ C:\WINNT\System32\msdmo.dll
2007-04-05 19:42:18   1962496 --a------ C:\WINNT\System32\quartz.dll
2007-04-05 19:42:18    470528 --a------ C:\WINNT\System32\qdvd.dll
2007-04-05 19:42:18    316928 --a------ C:\WINNT\System32\qdv.dll
2007-04-05 19:42:18    257024 --a------ C:\WINNT\System32\qcap.dll
2007-04-05 19:42:18     34304 --a------ C:\WINNT\System32\mciqtz32.dll
2007-04-05 19:42:18     18944 --a------ C:\WINNT\System32\encapi.dll
2007-04-05 19:42:18    132608 --a------ C:\WINNT\System32\devenum.dll
2007-04-05 19:42:18     64512 --a------ C:\WINNT\System32\amstream.dll
2007-04-05 19:42:17    122880 --a------ C:\WINNT\System32\dmusic.dll
2007-04-05 19:42:17    100864 --a------ C:\WINNT\System32\dmsynth.dll
2007-04-05 19:42:17     49424 --a------ C:\WINNT\System32\d3dxof.dll
2007-04-05 19:42:17    364816 --a------ C:\WINNT\System32\d3drm.dll
2007-04-05 19:42:17    591120 --a------ C:\WINNT\System32\d3dramp.dll
2007-04-05 19:42:17     37648 --a------ C:\WINNT\System32\d3dpmesh.dll
2007-04-05 19:42:17    446224 --a------ C:\WINNT\System32\d3dim.dll
2007-04-05 19:42:16     18432 --a------ C:\WINNT\System32\dswave.dll
2007-04-05 19:42:16     98816 --a------ C:\WINNT\System32\dmstyle.dll
2007-04-05 19:42:16     76800 --a------ C:\WINNT\System32\dmscript.dll
2007-04-05 19:42:16     33280 --a------ C:\WINNT\System32\dmloader.dll
2007-04-05 19:42:16    181248 --a------ C:\WINNT\System32\dmime.dll
2007-04-05 19:42:16     58368 --a------ C:\WINNT\System32\dmcompos.dll
2007-04-05 19:42:16     27136 --a------ C:\WINNT\System32\dmband.dll
2007-04-05 19:42:15    664576 --a------ C:\WINNT\System32\dinput8.dll
2007-04-05 19:42:15   1703936 --a------ C:\WINNT\System32\d3d9.dll
2007-04-05 19:42:15   1201152 --a------ C:\WINNT\System32\d3d8.dll
2007-04-05 19:42:14   1769472 --a------ C:\WINNT\System32\dxdiagn.dll
2007-04-05 19:42:14    974848 --a------ C:\WINNT\System32\dxdiag.exe
2007-04-05 19:42:13     46592 --a------ C:\WINNT\System32\dxdllreg.exe
2007-04-05 19:42:13    491520 --a------ C:\WINNT\System32\dsdmoprp.dll
2007-04-05 19:42:13    186880 --a------ C:\WINNT\System32\dsdmo.dll
2007-04-05 19:42:13    112128 --a------ C:\WINNT\System32\dpvvox.dll
2007-04-05 19:42:13     80896 --a------ C:\WINNT\System32\dpvsetup.exe
2007-04-05 19:42:13    381952 --a------ C:\WINNT\System32\dpvoice.dll
2007-04-05 19:42:13     19968 --a------ C:\WINNT\System32\dpvacm.dll
2007-04-05 19:42:12     44032 --a------ C:\WINNT\System32\dimap.dll
2007-04-05 19:42:12    459264 --a------ C:\WINNT\System32\diactfrm.dll
2007-04-05 19:42:11     31744 --a------ C:\WINNT\System32\pid.dll
2007-04-05 19:42:11   1189888 --a------ C:\WINNT\System32\dx8vb.dll
2007-04-05 19:42:11     16896 --a------ C:\WINNT\System32\dpnsvr.exe
2007-04-05 19:42:11      3072 --a------ C:\WINNT\System32\dpnlobby.dll
2007-04-05 19:42:11     68096 --a------ C:\WINNT\System32\dpnhupnp.dll
2007-04-05 19:42:11     32768 --a------ C:\WINNT\System32\dpnhpast.dll
2007-04-05 19:42:11    723968 --a------ C:\WINNT\System32\dpnet.dll
2007-04-05 19:42:11      3072 --a------ C:\WINNT\System32\dpnaddr.dll
2007-04-05 19:42:11      7168 --a------ C:\WINNT\System32\d3d8thk.dll
2007-04-05 19:42:10    206336 --a------ C:\WINNT\System32\gcdef.dll
2007-04-05 19:42:10    602624 --a------ C:\WINNT\System32\dx7vb.dll
2007-04-05 19:42:10   1294336 --a------ C:\WINNT\System32\dsound3d.dll
2007-04-05 19:42:10    381952 --a------ C:\WINNT\System32\dsound.dll
2007-04-05 19:42:10     79360 --a------ C:\WINNT\System32\dpwsockx.dll
2007-04-05 19:42:10     77824 --a------ C:\WINNT\System32\dpmodemx.dll
2007-04-05 19:42:10    230400 --a------ C:\WINNT\System32\dplayx.dll
2007-04-05 19:42:10     28160 --a------ C:\WINNT\System32\dplaysvr.exe
2007-04-05 19:42:10    645120 --a------ C:\WINNT\System32\dinput.dll
2007-04-05 19:42:10    292864 --a------ C:\WINNT\System32\ddraw.dll
2007-04-05 19:42:09    797184 --a------ C:\WINNT\System32\d3dim700.dll
2007-04-05 19:42:05         0 d-------- C:\WINNT\System32\DirectX
2007-04-05 19:40:52     10752 --a------ C:\WINNT\System32\ff_vfw.dll
2007-04-05 19:40:45         0 d-------- C:\Program Files\ffdshow
2007-04-05 19:32:55         0 d-------- C:\Program Files\Tools
2007-04-04 18:41:02         0 d-------- C:\Program Files\IrfanView<IRFANV~1>
2007-04-04 18:34:54         0 d-------- C:\Program Files\Zoom Player<ZOOMPL~1>
2007-04-04 18:10:27         0 d-------- C:\Program Files\Xenorate
2007-03-27 09:55:57    524288 --a------ C:\WINNT\System32\DivXsm.exe
2007-03-27 09:55:48   3596288 --a------ C:\WINNT\System32\qt-dx331.dll
2007-03-27 09:55:23    200704 --a------ C:\WINNT\System32\ssldivx.dll
2007-03-27 09:55:23   1044480 --a------ C:\WINNT\System32\libdivx.dll
2007-03-27 09:49:07    196608 --a------ C:\WINNT\System32\dtu100.dll
2007-03-27 09:49:07     73728 --a------ C:\WINNT\System32\dpl100.dll
2007-03-27 09:49:05     53248 --a------ C:\WINNT\System32\dpuGUI10.dll
2007-03-27 09:49:03    593920 --a------ C:\WINNT\System32\dpuGUI11.dll
2007-03-27 09:49:02     57344 --a------ C:\WINNT\System32\dpv11.dll
2007-03-27 09:49:02    344064 --a------ C:\WINNT\System32\dpus11.dll
2007-03-27 09:49:02    294912 --a------ C:\WINNT\System32\dpu11.dll
2007-03-27 09:49:02    294912 --a------ C:\WINNT\System32\dpu10.dll
2007-03-27 09:48:59    823296 --a------ C:\WINNT\System32\divx_xx07.dll<DIVX_X~2.DLL>
2007-03-27 09:48:58    802816 --a------ C:\WINNT\System32\divx_xx11.dll<DIVX_X~3.DLL>
2007-03-27 09:48:58    823296 --a------ C:\WINNT\System32\divx_xx0c.dll<DIVX_X~1.DLL>
2007-03-27 09:48:58    639066 --a------ C:\WINNT\System32\DivX.dll
2007-03-25 05:09:12         0 d-------- C:\CHIP
2007-03-20 19:46:41         0 d-------- C:\Program Files\7-Zip
2007-03-20 19:37:30    118520 -----n--- C:\WINNT\System32\pxinsi64.exe
2007-03-20 19:37:30    116472 -----n--- C:\WINNT\System32\pxcpyi64.exe
2007-03-20 19:37:30     36624 -----n--- C:\WINNT\System32\drivers\PxHelp20.sys
2007-03-20 19:37:30      2560 -----n--- C:\WINNT\System32\drivers\cdralw2k.sys
2007-03-20 19:37:30      2432 -----n--- C:\WINNT\System32\drivers\cdr4_2k.sys
2007-03-20 19:37:29    129784 -----n--- C:\WINNT\System32\pxafs.dll
2007-03-20 19:37:11         0 d-------- C:\Program Files\DivX
2007-03-20 19:04:52    247353 --a------ C:\DivXLight-51.exe<DIVXLI~1.EXE>
2007-03-20 19:04:40  14730232 --a------ C:\DivXPlay.exe
2007-03-12 22:30:42         0 d-------- C:\Program Files\123 Free Solitaire<123FRE~1>
2007-03-12 02:21:47         0 d-------- C:\WINNT\System32\Macromed
2007-03-11 20:58:26         0 d-------- C:\WINNT\Profiles
2007-03-11 20:58:22         0 d-------- C:\Program Files\Common Files\Adobe
2007-03-11 20:58:15    306688 --a------ C:\WINNT\IsUninst.exe
2007-03-11 20:56:07         0 d-------- C:\Program Files\DesignPro 2000<DESIGN~1>
2007-03-11 20:55:30    327168 --a------ C:\WINNT\IsUn0415.exe
2007-03-10 16:54:07         0 d-------- C:\lj987
2007-03-10 16:33:24         0 d-------- C:\WINNT\ShellNew
2007-03-10 16:30:51         0 d-------- C:\WINNT\Twain32
2007-03-10 16:28:32         0 d-a------ C:\rozrysy
2007-03-10 16:28:21         0 d-a------ C:\Raporty
2007-03-10 16:28:13         0 d-a------ C:\nalepkiii<NALEPK~1>
2007-03-10 16:28:01         0 d-a------ C:\mutacje
2007-03-10 16:22:23     28672 -ra------ C:\WINNT\System32\cmprop.dll
2007-03-10 16:22:23     28672 -ra------ C:\WINNT\System32\cmnprop.dll
2007-03-10 16:22:23    794624 -ra------ C:\WINNT\System32\Audio3D.dll
2007-03-10 16:22:23    794624 -ra------ C:\WINNT\System32\a3d.dll
2007-03-10 16:22:23    765952 -ra------ C:\WINNT\system\crlds3d.dll
2007-03-10 16:22:23   1118208 -ra------ C:\WINNT\mixer.exe
2007-03-10 16:22:22    148912 --a------ C:\WINNT\System32\drivers\portcls.sys
2007-03-10 16:22:22    270667 -ra------ C:\WINNT\System32\drivers\cmaudio.sys
2007-03-10 15:52:31         0 d-------- C:\Program Files\SymNetDrv<SYMNET~1>
2007-03-10 15:36:57      4608 --a------ C:\WINNT\System32\drivers\symlcbrd.sys
2007-03-10 15:36:47         0 d-------- C:\Program Files\Norton AntiVirus<NORTON~1>
2007-03-10 15:36:25     91904 --a------ C:\WINNT\System32\S32EVNT1.DLL
2007-03-10 15:36:25    124016 --a------ C:\WINNT\System32\drivers\SYMEVENT.SYS
2007-03-10 15:36:05         0 d-------- C:\Program Files\Symantec
2007-03-10 15:35:55         0 d-------- C:\Program Files\Common Files\Symantec Shared<SYMANT~1>
2007-03-10 15:32:46     39936 --a------ C:\WINNT\System32\msisip.dll
2007-03-10 15:28:38    251904 --a------ C:\WINNT\System32\strmdll.dll
2007-03-10 15:28:38     81408 --a------ C:\WINNT\System32\logagent.exe
2007-03-10 15:28:38      6656 --a------ C:\WINNT\System32\laprxy.dll
2007-03-10 15:28:38    499984 --a------ C:\WINNT\System32\dxmasf.dll
2007-03-10 15:28:08         0 d-------- C:\WINNT\RegisteredPackages<REGIST~2>
2007-03-10 15:27:07         0 d--h----- C:\WINNT\msdownld.tmp
2007-03-10 15:26:18         0 d-a------ C:\WINNT
2007-03-10 15:26:18         0 d---s---- C:\WINNT\Web
2007-03-10 15:26:18         0 d-a------ C:\WINNT\twain_32
2007-03-10 15:26:18         0 d-a------ C:\WINNT\system32
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\wins
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\wbem
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\spool
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\ShellExt
2007-03-10 15:26:18         0 d-------- C:\WINNT\System32\Setup
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\ras
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\os2
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\npp
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\mui
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\ias
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\export
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\drivers
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\drivers\etc
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\drivers\disdn
2007-03-10 15:26:18         0 drahs--c- C:\WINNT\System32\dllcache
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\dhcp
2007-03-10 15:26:18         0 d-a------ C:\WINNT\System32\config
2007-03-10 15:26:18         0 d-a------ C:\WINNT\system
2007-03-10 15:26:18         0 d-a------ C:\WINNT\security
2007-03-10 15:26:18         0 d-a------ C:\WINNT\repair
2007-03-10 15:26:18         0 d-a------ C:\WINNT\msapps
2007-03-10 15:26:18         0 d-a------ C:\WINNT\msagent
2007-03-10 15:26:18         0 d-a------ C:\WINNT\Media
2007-03-10 15:26:18         0 d-a------ C:\WINNT\java
2007-03-10 15:26:18         0 d--h----- C:\WINNT\inf
2007-03-10 15:26:18         0 d-a------ C:\WINNT\Help
2007-03-10 15:26:18         0 dra-s---- C:\WINNT\Fonts
2007-03-10 15:26:18         0 d-a------ C:\WINNT\Driver Cache<DRIVER~1>
2007-03-10 15:26:18         0 d-a------ C:\WINNT\Debug
2007-03-10 15:26:18         0 d-a------ C:\WINNT\Cursors
2007-03-10 15:26:18         0 d-a------ C:\WINNT\Connection Wizard<CONNEC~1>
2007-03-10 15:26:18         0 d-a------ C:\WINNT\Config
2007-03-10 15:26:18         0 d-a------ C:\WINNT\AppPatch
2007-03-10 15:26:18         0 d-a------ C:\WINNT\addins
2007-03-10 15:17:38         0 d-------- C:\Program Files\Common Files\InstallShield<INSTAL~1>
2007-03-10 15:13:23         0 d--hs---- C:\WINNT\Installer<INSTAL~1>
2007-03-10 15:13:15         0 d--h----- C:\WINNT\System32\GroupPolicy<GROUPP~1>
2007-03-10 15:12:46         0 d--hs---- C:\WINNT\CSC
2007-03-10 15:12:39         0 d-------- C:\WINNT\System32\NtmsData
2007-03-10 15:12:02         0 d--hs---- C:\System Volume Information<SYSTEM~1>
2007-03-10 15:06:38         0 d-------- C:\WINNT\System32\rpcproxy
2007-03-10 15:06:38         0 d-------- C:\WINNT\System32\rocket
2007-03-10 15:06:38         0 d-------- C:\WINNT\System32\inetsrv
2007-03-10 15:06:38         0 d-------- C:\WINNT\mww32
2007-03-10 15:06:38         0 d-------- C:\Program Files\microsoft frontpage<MICROS~1>
2007-03-10 15:04:55         0 -rahs---- C:\MSDOS.SYS
2007-03-10 15:04:55         0 -rahs---- C:\IO.SYS
2007-03-10 15:04:55         0 ---h----- C:\CONFIG.SYS
2007-03-10 15:04:55         0 ---h----- C:\AUTOEXEC.BAT
2007-03-10 15:04:11    135440 --a------ C:\WINNT\System32\mapi32.dll
2007-03-10 15:03:28         0 dr------- C:\WINNT\Offline Web Pages<OFFLIN~1>
2007-03-10 15:03:28         0 d---s---- C:\WINNT\Downloaded Program Files<DOWNLO~1>
2007-03-10 15:03:10      3072 --a------ C:\WINNT\System32\nmevtmsg.dll
2007-03-10 15:03:10     32880 --a------ C:\WINNT\System32\mnmdd.dll
2007-03-10 15:03:10     63248 --a------ C:\WINNT\System32\ils.dll
2007-03-10 15:03:09     12560 --a------ C:\WINNT\System32\nmmkcert.dll
2007-03-10 15:03:09     54032 --a------ C:\WINNT\System32\msconf.dll
2007-03-10 15:03:09     21776 --a------ C:\WINNT\System32\mnmsrvc.exe
2007-03-10 15:03:00         0 d-a-s---- C:\WINNT\Tasks
2007-03-10 15:03:00     10000 --a------ C:\WINNT\System32\mstinit.exe
2007-03-10 15:03:00    118544 --a------ C:\WINNT\System32\mstask.exe
2007-03-10 15:03:00    221968 --a------ C:\WINNT\System32\mstask.dll
2007-03-10 15:02:54     74512 --a------ C:\WINNT\System32\isign32.dll
2007-03-10 15:02:54    256784 --a------ C:\WINNT\System32\inetcfg.dll
2007-03-10 15:02:54     49936 --a------ C:\WINNT\System32\icwphbk.dll
2007-03-10 15:02:54     58640 --a------ C:\WINNT\System32\icwdial.dll
2007-03-10 15:02:54      5904 --a------ C:\WINNT\System32\icfgnt5.dll
2007-03-10 15:02:28     15152 --a------ C:\WINNT\System32\emptyregdb.dat<EMPTYR~1.DAT>
2007-03-10 15:01:46         0 d-------- C:\WINNT\Registration<REGIST~1>
2007-03-10 15:01:28         0 d-------- C:\WINNT\System32\DTCLog
2007-03-10 15:01:20      6416 --a------ C:\WINNT\System32\write.exe
2007-03-10 15:01:11     68880 --a------ C:\WINNT\System32\sndvol32.exe
2007-03-10 15:01:11    108304 --a------ C:\WINNT\System32\sndrec32.exe
2007-03-10 15:01:11    119568 --a------ C:\WINNT\System32\mplay32.exe
2007-03-10 15:01:11    154384 --a------ C:\WINNT\System32\accwiz.exe
2007-03-10 15:01:10    339216 --a------ C:\WINNT\System32\cdplayer.exe
2007-03-10 15:01:07    578832 --a------ C:\WINNT\System32\hypertrm.dll
2007-03-10 15:01:06     67344 --a------ C:\WINNT\System32\winchat.exe
2007-03-10 15:01:06     21776 --a------ C:\WINNT\System32\hticons.dll
2007-03-10 15:01:06     76048 --a------ C:\WINNT\System32\avwav.dll
2007-03-10 15:01:06    229648 --a------ C:\WINNT\System32\avtapi.dll
2007-03-10 15:01:06     17168 --a------ C:\WINNT\System32\avmeter.dll
2007-03-10 15:01:05    321296 --a------ C:\WINNT\System32\mspaint.exe
2007-03-10 15:01:04     54032 --a------ C:\WINNT\System32\packager.exe
2007-03-10 15:01:01    100112 --a------ C:\WINNT\System32\clipbrd.exe
2007-03-10 15:01:00    407312 --a------ C:\WINNT\System32\getuname.dll
2007-03-10 15:01:00     90896 --a------ C:\WINNT\System32\charmap.exe
2007-03-10 15:01:00     91920 --a------ C:\WINNT\System32\calc.exe
2007-03-10 15:00:59     96528 --a------ C:\WINNT\System32\winmine.exe
2007-03-10 15:00:59     33552 --a------ C:\WINNT\System32\tifflt.dll
2007-03-10 15:00:59     34576 --a------ C:\WINNT\System32\sol.exe
2007-03-10 15:00:59     34064 --a------ C:\WINNT\System32\freecell.exe
2007-03-10 15:00:59         0 d-------- C:\Program Files\Accessories<ACCESS~1>
2007-03-10 15:00:58    641808 --a------ C:\WINNT\System32\xiffr3_0.dll
2007-03-10 15:00:58     62736 --a------ C:\WINNT\System32\oiui400.dll
2007-03-10 15:00:58     25872 --a------ C:\WINNT\System32\oitwa400.dll
2007-03-10 15:00:58     13072 --a------ C:\WINNT\System32\oissq400.dll
2007-03-10 15:00:58     21776 --a------ C:\WINNT\System32\oislb400.dll
2007-03-10 15:00:58     13072 --a------ C:\WINNT\System32\oiprt400.dll
2007-03-10 15:00:58    444176 --a------ C:\WINNT\System32\oieng400.dll
2007-03-10 15:00:58     38160 --a------ C:\WINNT\System32\jpeg2x32.dll
2007-03-10 15:00:58     27920 --a------ C:\WINNT\System32\jpeg1x32.dll
2007-03-10 15:00:58     13584 --a------ C:\WINNT\System32\imgshl.dll
2007-03-10 15:00:58     62224 --a------ C:\WINNT\System32\imgcmn.dll
2007-03-10 15:00:57    111888 --a------ C:\WINNT\System32\mtxoci.dll
2007-03-10 15:00:57    144656 --a------ C:\WINNT\System32\msdtcui.dll
2007-03-10 15:00:57   1070864 --a------ C:\WINNT\System32\msdtctm.dll
2007-03-10 15:00:57    644880 --a------ C:\WINNT\System32\msdtcprx.dll
2007-03-10 15:00:57         0 d-------- C:\Program Files\Windows NT<WINDOW~1>
2007-03-10 15:00:56     18192 --a------ C:\WINNT\System32\xolehlp.dll
2007-03-10 15:00:56    349456 --a------ C:\WINNT\System32\txfaux.dll
2007-03-10 15:00:56     91920 --a------ C:\WINNT\System32\msdtclog.dll
2007-03-10 15:00:56      6928 --a------ C:\WINNT\System32\msdtc.exe
2007-03-10 15:00:56    840928 -ra------ C:\WINNT\System32\dtcsetup.exe
2007-03-10 15:00:54     21776 --a------ C:\WINNT\System32\comclust.exe
2007-03-10 15:00:54     34576 --a------ C:\WINNT\System32\colbact.dll
2007-03-10 15:00:53     68368 --a------ C:\WINNT\System32\stclient.dll
2007-03-10 15:00:53     30480 --a------ C:\WINNT\System32\mtxlegih.dll
2007-03-10 15:00:53      3856 --a------ C:\WINNT\System32\mtxex.dll
2007-03-10 15:00:53      4880 --a------ C:\WINNT\System32\mtxdm.dll
2007-03-10 15:00:53    149776 --a------ C:\WINNT\System32\DComExt.dll
2007-03-10 15:00:53     90384 --a------ C:\WINNT\System32\comrepl.dll
2007-03-10 15:00:53     29968 --a------ C:\WINNT\System32\comaddin.dll
2007-03-10 15:00:53         0 d-------- C:\WINNT\System32\Com
2007-03-10 15:00:53     86800 --a------ C:\WINNT\System32\clbcatex.dll
2007-03-10 15:00:53    550672 --a------ C:\WINNT\System32\catsrvut.dll
2007-03-10 15:00:53     55056 --a------ C:\WINNT\System32\catsrvps.dll
2007-03-10 15:00:52     84240 --a------ C:\WINNT\System32\txflog.dll
2007-03-10 15:00:52    613136 --a------ C:\WINNT\System32\comuid.dll
2007-03-10 15:00:52   1223952 --a------ C:\WINNT\System32\comsvcs.dll
2007-03-10 15:00:52    146192 --a------ C:\WINNT\System32\comsnap.dll
2007-03-10 15:00:52    490768 --a------ C:\WINNT\System32\clbcatq.dll
2007-03-10 15:00:52    162064 --a------ C:\WINNT\System32\catsrv.dll
2007-03-10 14:52:31      4816 --a------ C:\WINNT\System32\drivers\MSPQM.sys
2007-03-10 14:52:29     74160 --a------ C:\WINNT\System32\drivers\wdmaud.sys
2007-03-10 14:52:28    147568 --a------ C:\WINNT\System32\drivers\kmixer.sys
2007-03-10 14:52:27     47280 --a------ C:\WINNT\System32\drivers\sysaudio.sys
2007-03-10 14:52:23     51152 --a------ C:\WINNT\System32\drivers\DMusic.sys
2007-03-10 14:52:21     51952 --a------ C:\WINNT\System32\drivers\swmidi.sys
2007-03-10 14:52:14      2896 --a------ C:\WINNT\System32\drivers\audstub.sys
2007-03-10 14:50:31     60688 --a------ C:\WINNT\System32\usbui.dll
2007-03-10 14:50:26    530192 --a------ C:\WINNT\System32\nv4.dll
2007-03-10 14:50:26    345040 --a------ C:\WINNT\System32\drivers\nv4.sys
2007-03-10 14:50:07     61712 --a------ C:\WINNT\System32\drivers\el90xbc5.sys
2007-03-10 14:49:58     36240 --a------ C:\WINNT\System32\drivers\redbook.sys
2007-03-10 14:49:55      9552 --a------ C:\WINNT\System32\drivers\gameenum.sys
2007-03-10 14:49:53      2832 --a------ C:\WINNT\System32\drivers\msmpu401.sys
2007-03-10 14:48:15         0 d-a------ C:\Program Files\Common Files\ODBC
2007-03-10 14:48:12         0 d-a------ C:\WINNT\Speech
2007-03-10 14:48:10      5392 --a------ C:\WINNT\delttsul.exe
2007-03-10 14:48:10         0 dra------ C:\Program Files<PROGRA~1>
2007-03-10 14:48:06      7440 -ra------ C:\WINNT\System32\kbdsl1.dll
2007-03-10 14:48:05      7440 -ra------ C:\WINNT\System32\kbdycl.dll
2007-03-10 14:48:05      7440 -ra------ C:\WINNT\System32\kbdsl.dll
2007-03-10 14:48:05      6416 -ra------ C:\WINNT\System32\kbdro.dll
2007-03-10 14:48:05      6416 -ra------ C:\WINNT\System32\kbdhu1.dll
2007-03-10 14:48:05      7440 -ra------ C:\WINNT\System32\kbdhu.dll
2007-03-10 14:48:05      7440 -ra------ C:\WINNT\System32\kbdcz2.dll
2007-03-10 14:48:05      7440 -ra------ C:\WINNT\System32\kbdcz1.dll
2007-03-10 14:48:05      7952 -ra------ C:\WINNT\System32\kbdcz.dll
2007-03-10 14:48:05      7440 -ra------ C:\WINNT\System32\kbdcr.dll
2007-03-10 14:48:05      7440 -ra------ C:\WINNT\System32\KBDAL.DLL
2007-03-10 14:48:03    149504 --a------ C:\WINNT\System32\spxcoins.dll
2007-03-10 14:48:03    176400 --a------ C:\WINNT\System32\EqnClass.Dll
2007-03-10 14:48:03     85776 --a------ C:\WINNT\System32\dgsetup.dll
2007-03-10 14:48:03    123904 --a------ C:\WINNT\System32\dgrpsetu.dll
2007-03-10 14:48:03      6416 --a------ C:\WINNT\System32\batt.dll
2007-03-10 14:48:02      9168 --a------ C:\WINNT\system\VER.DLL
2007-03-10 14:48:02     21344 --a------ C:\WINNT\system\TAPI.DLL
2007-03-10 14:48:02      5120 --a------ C:\WINNT\system\SHELL.DLL
2007-03-10 14:48:02     24064 --a------ C:\WINNT\system\OLESVR.DLL
2007-03-10 14:48:02     83456 --a------ C:\WINNT\system\OLECLI.DLL
2007-03-10 14:48:02    127008 --a------ C:\WINNT\system\MSVIDEO.DLL
2007-03-10 14:48:02     69104 --a------ C:\WINNT\system\MMSYSTEM.DLL
2007-03-10 14:48:01     35600 --a------ C:\WINNT\TASKMAN.EXE
2007-03-10 14:48:01      9936 --a------ C:\WINNT\system\LZEXPAND.DLL
2007-03-10 14:48:01     28848 --a------ C:\WINNT\system\COMMDLG.DLL
2007-03-10 14:48:01    108016 --a------ C:\WINNT\system\AVIFILE.DLL
2007-03-10 14:48:01     70096 --a------ C:\WINNT\system\AVICAP.DLL
2007-03-10 14:48:01     51472 --a------ C:\WINNT\NOTEPAD.EXE
2007-03-10 14:48:00     36112 --a------ C:\WINNT\System32\storprop.dll
2007-03-10 14:48:00     44816 --a------ C:\WINNT\System32\SPOOLSV.EXE
2007-03-10 14:48:00     63248 --a------ C:\WINNT\System32\SPOOLSS.DLL
2007-03-10 14:47:46         0 d-a------ C:\WINNT\System32\CatRoot
2007-03-10 14:43:52         0 d-a------ C:\Documents and Settings<DOCUME~1>


-- Find3M Report ---------------------------------------------------------------

2007-04-05 19:17:31         0 d-------- C:\Documents and Settings\ok8\Dane aplikacji\DivX
2007-03-18 22:47:15         0 d-------- C:\Documents and Settings\ok8\Dane aplikacji\123 Free Solitaire<123FRE~1>
2007-03-12 02:21:51         0 d-------- C:\Documents and Settings\ok8\Dane aplikacji\Macromedia<MACROM~1>
2007-03-11 21:05:24         0 d-------- C:\Documents and Settings\ok8\Dane aplikacji\Help
2007-03-11 16:49:47         0 d---s---- C:\Documents and Settings\ok8\Dane aplikacji\Microsoft<MICROS~1>
2007-03-10 16:30:51         0 d-------- C:\Documents and Settings\ok8\Dane aplikacji\Microsoft Web Folders<MICROS~2>
2007-03-10 15:43:53         0 d-------- C:\Documents and Settings\ok8\Dane aplikacji\Symantec
2007-03-10 15:15:41         0 d-------- C:\Documents and Settings\ok8\Dane aplikacji\Identities<IDENTI~1>
2007-03-10 15:04:01    342104 --a------ C:\WINNT\System32\perfh015.dat
2007-03-10 15:04:01     45842 --a------ C:\WINNT\System32\perfc015.dat
2007-03-10 15:03:30     22039 ---h----- C:\Program Files\folder.htt
2007-02-16 03:40:35    124472 --a------ C:\WINNT\System32\DivXCodecUpdateChecker.exe<DIVXCO~1.EXE>
2007-02-07 13:39:08    517840 --a------ C:\WINNT\System32\SymNeti.dll
2007-02-07 13:39:04    132816 --a------ C:\WINNT\System32\SymRedir.dll


-- Registry Dump ---------------------------------------------------------------


[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Synchronization Manager"="mobsync.exe /logon"
"ccApp"="\"C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\""
"SSC_UserPrompt"="C:\\Program Files\\Common Files\\Symantec Shared\\Security Center\\UsrPrmpt.exe"
"Symantec NetDriver Monitor"="C:\\PROGRA~1\\SYMNET~1\\SNDMon.exe /Consumer"
"C-Media Mixer"="Mixer.exe /startup"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"NoChange"="1"
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce]
"^SetupICWDesktop"="C:\\Program Files\\Internet Explorer\\Connection Wizard\\icwconn1.exe /desktop"
   

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
rpcss   REG_MULTI_SZ      RpcSs\0\0



-- End of ComboScan: finished at 2007-04-06 at 21:46:09 ------------------------
i po ptokach ....
Amistad18
~user
 
Posty: 4441
Dołączenie: 03 Sie 2005, 11:25
Miejscowość: Bydgoszcz
Pochwały: 335



Postprzez wojtas 06 Kwi 2007, 22:12

ten folder na kasacje:

C:\lj987
C:\Program Files\folder.htt


wiecej nic nie ma zrob defragmentacje, moze zmiana antywira na cos lzejszego??

tryb DMA ustawiony massz??

Autor postu otrzymał pochwałę
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 10 gości