Mam taki problem - komp sie nie wylacza , muli przy samym starcie sysytemu sam dzwiek powitalny jest przerywany jak by go cieło potem kazde wlaczenie jakiego kolwiek programu trwa bardzo długo i nawet sam kursor od myszki sie przycina podczas ruchu myszka , odpalnenie np bitcometa powoduje to ze gdy ogladam np film, film mi przycina a dysk skrobie co chwile przycinajac film lub inne uruchomione rzeczy .Pozdrawiam i dolaczam loga
2007-05-12 22:14 163,712 --a------ C:\WINDOWS\system32\drivers\vidstub.sys
2007-05-12 13:36 15,424 --a------ C:\WINDOWS\system32\drivers\nod32drv.sys
2007-05-11 12:46
2007-05-11 12:46
2007-05-09 21:50 60,273 --a------ C:\WINDOWS\system32\pthreadGC2.dll
2007-05-09 21:50 10,752 --a------ C:\WINDOWS\system32\ff_vfw.dll
2007-05-09 21:50
2007-05-09 18:01
2007-05-09 17:01
2007-05-09 16:59
2007-05-09 15:42 921,600 --a------ C:\WINDOWS\system32\vorbisenc.dll
2007-05-09 15:42 45,056 --a------ C:\WINDOWS\system32\ogg.dll
2007-05-09 15:42 188,416 --a------ C:\WINDOWS\system32\vorbis.dll
2007-05-09 15:42
2007-05-09 15:41 679,936 --a------ C:\WINDOWS\system32\xvidcore.dll
2007-05-09 15:41 245,760 --a------ C:\WINDOWS\system32\mplvpx.dll
2007-05-09 15:41 155,648 --a------ C:\WINDOWS\system32\xvidvfw.dll
2007-05-09 15:41
2007-05-09 15:41
2007-05-09 15:41
2007-05-09 15:41
2007-05-09 15:32
2007-05-09 14:08 755,200 --a------ C:\WINDOWS\system32\ir50_32.dll
2007-05-08 15:17 443,752 --a------ C:\WINDOWS\system32\d3dx10_33.dll
2007-05-08 15:17 3,495,784 --a------ C:\WINDOWS\system32\d3dx9_33.dll
2007-05-08 15:17 261,480 --a------ C:\WINDOWS\system32\xactengine2_7.dll
2007-05-08 15:17 1,123,696 --a------ C:\WINDOWS\system32\D3DCompiler_33.dll
2007-05-08 12:55
2007-05-07 17:37
2007-05-07 14:12 234 --a------ C:\WINDOWS\system32\mmswitch.dll
2007-04-30 11:35 33,952 --a------ C:\WINDOWS\system32\drivers\oreans32.sys
2007-04-25 23:08 271,360 --a------ C:\WINDOWS\system32\drivers\atksgt.sys
2007-04-25 23:08 18,048 --a------ C:\WINDOWS\system32\drivers\lirsgt.sys
2007-04-22 23:41
2007-04-19 13:01 786,432 --a------ C:\DOCUME~1\LOCALS~1\ntuser.dat
2007-04-19 13:01 6,815,744 --a------ C:\DOCUME~1\Artur\ntuser.dat
2007-04-19 09:15 208,896 --a------ C:\WINDOWS\system32\nvudisp.exe
2007-04-19 09:00 552 --a------ C:\WINDOWS\system32\d3d8caps.dat
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-05-12 21:37:01 -------- d-----w C:\Program Files\Neostrada TP
2007-05-12 20:23:18 74,230 ----a-w C:\WINDOWS\system32\perfc015.dat
2007-05-12 20:23:18 448,004 ----a-w C:\WINDOWS\system32\perfh015.dat
2007-05-12 20:14:11 -------- d-----w C:\Program Files\Common Files\Stardock
2007-05-12 16:56:46 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\Skype
2007-05-12 11:36:28 298,104 ----a-w C:\WINDOWS\system32\imon.dll
2007-05-12 11:36:26 512,096 ----a-w C:\WINDOWS\system32\drivers\amon.sys
2007-05-11 00:24:36 -------- d-----w C:\Program Files\eMule
2007-05-09 16:01:48 2,560 ----a-w C:\WINDOWS\system32\BitCometRes.dll
2007-05-07 21:02:46 9,372 ----a-w C:\WINDOWS\mozver.dat
2007-05-07 10:05:12 -------- d–h--w C:\Program Files\InstallShield Installation Information
2007-04-19 11:16:20 -------- d-----w C:\Program Files\Mozilla Thunderbird
2007-04-05 15:40:17 108,144 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2007-04-04 21:33:09 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\Google
2007-04-04 16:53:42 81,768 ----a-w C:\WINDOWS\system32\xinput1_3.dll
2007-04-02 19:02:51 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\Tlen.pl
2007-03-29 05:26:12 -------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-03-28 21:41:34 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\IE7pro
2007-03-28 21:39:24 -------- d-----w C:\Program Files\IE7pro
2007-03-28 20:56:07 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\PC Tools
2007-03-26 16:16:19 -------- d-----w C:\Program Files\AGEIA Technologies
2007-03-26 14:22:06 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\Command & Conquer 3 Tiberium Wars Demo
2007-03-25 19:52:27 43,520 ----a-w C:\WINDOWS\system32\CmdLineExt03.dll
2007-03-25 19:40:45 21,840 ----atw C:\WINDOWS\system32\SIntfNT.dll
2007-03-25 19:40:45 17,212 ----atw C:\WINDOWS\system32\SIntf32.dll
2007-03-25 19:40:45 12,067 ----atw C:\WINDOWS\system32\SIntf16.dll
2007-03-25 18:14:15 286,720 ------w C:\WINDOWS\Setup1.exe
2007-03-25 18:14:14 73,216 ----a-w C:\WINDOWS\ST6UNST.EXE
2007-03-20 21:16:09 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\TuneUp Software
2007-03-20 18:29:02 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\debug find body
2007-03-20 18:28:19 -------- d-----w C:\Program Files\debug find body
2007-03-18 20:17:56 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\gtopala
2007-03-17 13:45:36 293,376 ----a-w C:\WINDOWS\system32\winsrv.dll
2007-03-14 11:31:16 356 ----a-w C:\drmHeader.bin
2007-03-14 02:19:25 -------- d-----w C:\Program Files\Microsoft Forefront
2007-03-12 15:25:52 -------- d-----w C:\Program Files\Windows Desktop Search
2007-03-11 01:13:10 -------- d-----w C:\Program Files\Windows Media Connect 2
2007-03-07 22:02:49 -------- d-----w C:\Program Files\DAEMON Tools
2007-03-07 22:01:04 639,224 ----a-w C:\WINDOWS\system32\drivers\sptd.sys
2007-03-07 08:31:40 40,960 ----a-w C:\WINDOWS\Tyros2_01.dll
2007-03-07 08:31:40 394,512 ----a-w C:\WINDOWS\Tyros2_01.scr
2007-03-07 08:31:40 18,192 ----a-w C:\WINDOWS\Tyros2_01.dat
2007-03-07 08:31:40 1,331,576 ----a-w C:\WINDOWS\Tyros2_01.exe
2007-03-05 18:52:57 -------- d-----w C:\DOCUME~1\Artur\DANEAP~1\GanymedeNet
2007-03-05 10:42:18 15,128 ----a-w C:\WINDOWS\system32\x3daudio1_1.dll
2007-02-19 10:34:20 343,040 ------w C:\WINDOWS\system32\msvcrt.dll
2007-02-05 20:19:48 185,856 ----a-w C:\WINDOWS\system32\upnphost.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
{00011268-E188-40DF-A514-835FCD78B1BF}=C:\Program Files\IE7pro\IE7pro.dll [2007-03-26 18:35]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}=C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 11:56]
{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}=E:\Program Files\BitComet\tools\BitCometBHO_1.1.4.29.dll [2007-04-29 11:29]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}=C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll [2005-11-10 13:22]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
“WooCnxMon”=“C:\PROGRA~1\NEOSTR~1\CnxMon.exe”
“SpeedTouch USB Diagnostics”="“C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe” /icon"
“nod32kui”="“C:\Program Files\Eset\nod32kui.exe” /WAITSERVICE"
“Copperhead”=“C:\Program Files\Razer\Copperhead\razerhid.exe”
“NvCplDaemon”=“RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup”
“nwiz”=“nwiz.exe /install”
“RivaTunerStartupDaemon”="“C:\Program Files\RivaTuner v2.0 RC 16.2\RivaTuner.exe” /S"
“NvMediaCenter”=“RunDLL32.exe NvMCTray.dll,NvTaskbarInit”
“TkBellExe”="“C:\Program Files\Real Alternative\Update_OB\realsched.exe” -osboot"
“BootSkin Startup Jobs”="“E:\PROGRA~1\Stardock\WINCUS~1\BootSkin\BootSkin.exe” /StartupJobs"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“WooCnxMon”=“C:\PROGRA~1\NEOSTR~1\CnxMon.exe” [2003-10-16 18:07]
“SpeedTouch USB Diagnostics”=“C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe” [2004-01-26 11:38]
“nod32kui”=“C:\Program Files\Eset\nod32kui.exe” [2007-05-12 13:36]
“Copperhead”=“C:\Program Files\Razer\Copperhead\razerhid.exe” [2005-11-02 11:48]
“NvCplDaemon”=“C:\WINDOWS\system32\NvCpl.dll” [2006-10-22 13:22]
“nwiz”=“nwiz.exe” [2006-10-22 13:22 C:\WINDOWS\system32\nwiz.exe])
“RivaTunerStartupDaemon”=“C:\Program Files\RivaTuner v2.0 RC 16.2\RivaTuner.exe” [2006-11-27 10:15]
“NvMediaCenter”=“NvMCTray.dll” [2006-10-22 13:22 C:\WINDOWS\system32\nvmctray.dll])
“TkBellExe”=“C:\Program Files\Real Alternative\Update_OB\realsched.exe” []
“BootSkin Startup Jobs”=“E:\PROGRA~1\Stardock\WINCUS~1\BootSkin\BootSkin.exe” [2004-04-26 16:21]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
“NoLowDiskSpaceChecks”=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
“{F5DF91F9-15E9-416B-A7C3-7519B11ECBFC}”=“C:\PROGRA~1\COMMON~1\Stardock\MCPCore.dll” [2005-05-10 13:31]
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa
Authentication Packages msv1_0\0\0
Security Packages kerberos\0msv1_0\0schannel\0wdigest\0\0
Notification Packages scecli\0\0
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\c:^documents and settings^all users^menu start^programy^autostart^adobe reader speed launch.lnk
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\c:^documents and settings^all users^menu start^programy^autostart^wyszukiwanie z pulpitu systemu windows.lnk
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\c:^documents and settings^artur^menu start^programy^autostart^stardock objectdock.lnk
E:\PROGRA~1\Stardock\OBJECT~1\OBJECT~1.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\audiohq
C:\Program Files\Creative\SBLive\AudioHQ\AHQTB.EXE
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bgmonitor_{79662e04-7c6c-4d9f-84c7-88d8a56b10aa}
“C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe”
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\blaero start orb
C:\Program Files\Blaero Start Orb\Blaero Start Orb.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cafenews
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\camerafixer
C:\WINDOWS\CameraFixer.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\clockgen
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\copperhead
C:\Program Files\Razer\Copperhead\razerhid.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\creative launcher
C:\Program Files\Creative\Launcher\CTLauncher.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\daemon tools
“C:\Program Files\DAEMON Tools\daemon.exe” -lang 1033
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lclock
C:\Program Files\LClock\LClock.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\messenger
MSMSGS
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nerofiltercheck
C:\WINDOWS\system32\NeroCheck.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\picasa media detector
e:\Program Files\Picasa2\PicasaMediaDetector.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\snpstd3
C:\WINDOWS\vsnpstd3.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\styler
C:\Program Files\Styler\Styler.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\sunjavaupdatesched
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tkbellexe
“C:\Program Files\Common Files\Real\Update_OB\realsched.exe” -osboot
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tsnpstd3
C:\WINDOWS\tsnpstd3.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vista sidebar
C:\Program Files\Vista Sidebar\sidebar.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\visualtooltip
C:\Program Files\VisualTooltip\VisualToolTip.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\whenusave
“C:\Program Files\Save\Save.exe”
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\winampagent
C:\Program Files\Winamp\winampa.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\windows defender
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wootaskbaricon
C:\PROGRA~1\NEOSTR~1\TaskbarIcon.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\woowatch
C:\PROGRA~1\NEOSTR~1\Watch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
“WinDefend”=dword:00000002
“UPS”=dword:00000003
“Schedule”=dword:00000002
“ERSvc”=dword:00000002
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
“META SHOW”=“C:\DOCUME~1\Artur\DANEAP~1\DEBUGF~1\Obj Does.exe”
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
“ClockGen”=“C:\Documents and Settings\Artur\Pulpit\ClockGen\ClockGen.exe -i p=0”
“close slow htm license”=“C:\Documents and Settings\All Users\Dane aplikacji\Remote Dent Close Slow\EncPure.exe”
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter HTTPFilter\0\0
LocalService Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService DnsCache\0\0
DcomLaunch DcomLaunch\0TermService\0\0
rpcss RpcSs\0\0
imgsvc StiSvc\0\0
termsvcs TermService\0\0
WudfServiceGroup WUDFSvc\0\0
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost
UxTuneUp
~ ~ ~ ~ ~ ~ ~ ~ Hijackthis Backups ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~
backup-20070512-213424-198
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
backup-20070512-213424-156
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
backup-20070512-125228-273
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
backup-20070512-124253-655
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - e:\Program Files\Spyware Doctor\sdhelp.exe
backup-20070512-124231-231
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - e:\Program Files\Spyware Doctor\sdhelp.exe
Contents of the ‘Scheduled Tasks’ folder
C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\A55D5B3391CAD34F.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{F4009D08-D19A-4FF2-9CF8-EC82AEC35393}.job
********************************************************************
catchme 0.3.660 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net
Rootkit scan 2007-05-13 12:28:41
Windows 5.1.2600 Dodatek Service Pack 2 NTFS
scanning hidden processes …
scanning hidden services …
scanning hidden autostart entries …
scanning hidden files …
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0