Mrugająca tarcza niebiesko czerwona

W HJT nic nie widzę - Daj log z ComboFix

Deckard's System Scanner v20071014.68

Run by amd on 2007-12-29 10:18:59

Computer is in Normal Mode.

--------------------------------------------------------------------------------


-- System Restore --------------------------------------------------------------


Successfully created a Deckard's System Scanner Restore Point.



-- Last 5 Restore Point(s) --

8: 2007-12-29 09:19:08 UTC - RP129 - Deckard's System Scanner Restore Point

7: 2007-12-28 17:33:14 UTC - RP128 - ComboFix created restore point

6: 2007-12-28 16:29:36 UTC - RP127 - Punkt kontrolny systemu

5: 2007-12-27 16:00:37 UTC - RP126 - Punkt kontrolny systemu

4: 2007-12-26 14:52:46 UTC - RP125 - Shockwave Player



-- First Restore Point -- 

1: 2007-12-24 09:04:59 UTC - RP122 - Punkt kontrolny systemu



Backed up registry hives.

Performed disk cleanup.




-- HijackThis Clone ------------------------------------------------------------



Emulating logfile of Trend Micro HijackThis v2.0.2

Scan saved at 2007-12-29 10:20:12

Platform: Windows XP Dodatek Service Pack 2 (5.01.2600)

MSIE: Internet Explorer (6.00.2900.2180)

Boot mode: Normal


Running processes:

C:\WINDOWS\system32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\PC Tools Firewall Plus\FWService.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe

C:\Program Files\Common Files\LightScribe\LSSrvc.exe

C:\Program Files\mks_vir_2007\bin\MksFwall.exe

C:\WINDOWS\system32\ati2evxx.exe

C:\WINDOWS\explorer.exe

C:\Program Files\mks_vir_2007\bin\MksPC.exe

C:\Program Files\mks_vir_2007\bin\MksVirMonSvc.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe

C:\Program Files\mks_vir_2007\bin\mkstray.exe

C:\Program Files\mks_vir_2007\bin\mks_mail.exe

C:\Program Files\mks_vir_2007\bin\mksregmon.exe

C:\WINDOWS\RTHDCPL.EXE

C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

C:\Program Files\Common Files\Real\Update_OB\realsched.exe

C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe

C:\Program Files\Nero\Nero 7\InCD\InCD.exe

C:\Program Files\mks_vir_2007\bin\mks_scan.exe

C:\Program Files\mks_vir_2007\bin\mksupdate.exe

C:\ANTYBOTY\dss.exe


R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://home.microsoft.com/access/autosearch.asp?p=%s

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza

R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Winamp Toolbar BHO - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O2 - BHO: Expressivo - {85F685C3-20D9-4943-95E4-EB4224056C3F} - C:\Program Files\ivo\Expressivo\IH_iexplore.dll

O3 - Toolbar: Expressivo - {85F685C3-20D9-4943-95E4-EB4224056C3F} - C:\Program Files\ivo\Expressivo\IH_iexplore.dll

O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll

O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay

O4 - HKLM\..\Run: [00PCTFW] "C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" -s

O4 - HKLM\..\Run: [mkstray] C:\Program Files\mks_vir_2007\bin\mkstray.exe

O4 - HKLM\..\Run: [mks_mail] C:\Program Files\mks_vir_2007\bin\mks_mail.exe

O4 - HKLM\..\Run: [MKSRegmon] C:\Program Files\mks_vir_2007\bin\mksregmon.exe

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"

O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe

O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe

O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray

O4 - HKCU\..\Run: [WinPerfectAutoRun] C:\yenicag\WinPerfectSE\WinPerfect.exe -boot

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

O4 - Startup: OpenOffice.org 2.3.lnk.disabled = C:\Program Files\OpenOffice.org 2.3\program\quickstart.exe

O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O8 - Extra context menu item: &Winamp Toolbar Search - C:\Documents and Settings\All Users\Dane aplikacji\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O10 - Unknown file in Winsock LSP: C:\Program Files\mks_vir_2007\bin\\mkslsp.dll

O15 - Trusted Zone: http://mks.com.pl (HKCU)

O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} () - http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab

O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} (MksSkanerOnline Class) - http://www.mks.com.pl/skaner/SkanerOnline.cab

O18 - Protocol: lid - {5C135180-9973-46D9-ABF4-148267CBB8BF} - C:\WINDOWS\system32\msvidctl.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: lxce_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxcecoms.exe

O23 - Service: MksFwall - MKS Sp z o.o. - C:\Program Files\mks_vir_2007\bin\MksFwall.exe

O23 - Service: MksPC - Unknown owner - C:\Program Files\mks_vir_2007\bin\MksPC.exe

O23 - Service: MksUpdate - MKS Sp. z o. o. - C:\Program Files\mks_vir_2007\bin\mksupdate.exe

O23 - Service: mks_vir file monitor (MksVirMonSvc) - Unknown owner - C:\Program Files\mks_vir_2007\bin\MksVirMonSvc.exe

O23 - Service: MkS_Scan - Unknown owner - C:\Program Files\mks_vir_2007\bin\mks_scan.exe

O23 - Service: NBService - Unknown owner - C:\Program Files\Nero\Nero 7\Nero

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

O23 - Service: PC Tools Firewall Plus (PCToolsFirewallPlus) - PC Tools - C:\Program Files\PC Tools Firewall Plus\FWService.exe



--

End of file - 7335 bytes


-- File Associations -----------------------------------------------------------


[COLOR=red].cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*[/COLOR]

[COLOR=red].cpl - cplfile - shell\runas\command - rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%*[/COLOR]



-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------


R0 mksidsa - c:\windows\system32\mksidsa.sys

R1 mksfwallt - c:\windows\system32\mksfwallt.sys

R3 AtcL001 (NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Adapter) - c:\windows\system32\drivers\atl01_2k.sys 

R3 mksfwallf - c:\windows\system32\mksfwallf.sys

R3 mksidsf - c:\windows\system32\mksidsf.sys

R3 MksMonEn - c:\program files\mks_vir_2007\bin\mksmonen.sys

R3 MksMonEv - c:\program files\mks_vir_2007\bin\mksmonev.sys

R3 MksMonFd - c:\program files\mks_vir_2007\bin\mksmonfd.sys


S3 catchme - c:\docume~1\amd\ustawi~1\temp\catchme.sys (file missing)

S3 GVCplDrv - c:\windows\system32\drivers\gvcpldrv.sys



-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------


R2 MksFwall - "c:\program files\mks_vir_2007\bin\mksfwall.exe" 

R2 MksPC - "c:\program files\mks_vir_2007\bin\mkspc.exe"

R2 MksUpdate - "c:\program files\mks_vir_2007\bin\mksupdate.exe" 

R2 MksVirMonSvc (mks_vir file monitor) - c:\program files\mks_vir_2007\bin\mksvirmonsvc.exe

R3 MkS_Scan - c:\program files\mks_vir_2007\bin\mks_scan.exe 


S3 NBService - c:\program files\nero\nero 7\nero backitup\nbservice.exe



-- Device Manager: Disabled ----------------------------------------------------


No disabled devices found.



-- Files created between 2007-11-29 and 2007-12-29 -----------------------------


2007-12-28 15:16:34 0 d-------- C:\ANTYBOTY

2007-12-26 17:04:41 0 d-------- C:\Program Files\Mozilla ActiveX Control v1.7.1

2007-12-26 16:54:53 290816 -----n--- C:\WINDOWS\Setup1.exe 

2007-12-26 16:54:51 74240 --a------ C:\WINDOWS\ST6UNST.EXE 

2007-12-26 15:05:43 0 d-------- C:\Program Files\FDRLab

2007-12-24 09:37:40 0 d-------- C:\RTL.WINTER.GAMES.2007

2007-12-24 09:19:17 0 d-------- C:\Brothers In Arms

2007-12-23 18:13:33 0 d-------- C:\Program Files\RTL Wintergames 2007

2007-12-23 14:09:51 0 d-------- C:\Program Files\LightScribeTemplateLabeler

2007-12-23 14:08:36 0 d-------- C:\Program Files\Common Files\LightScribe

2007-12-23 13:46:19 0 d-------- C:\Program Files\LightScribe

2007-12-23 10:59:06 119568 --a------ C:\WINDOWS\system32\VB6FR.DLL 

2007-12-23 10:59:06 15360 --a------ C:\WINDOWS\system32\inetfr.DLL 

2007-12-23 10:59:05 21504 --a------ C:\WINDOWS\system32\TABCTFR.DLL 

2007-12-23 10:59:05 141312 --a------ C:\WINDOWS\system32\MSCMCFR.DLL 

2007-12-23 10:59:05 59904 --a------ C:\WINDOWS\system32\Mscc2fr.dll 

2007-12-23 10:59:05 32768 --a------ C:\WINDOWS\system32\CMDLGFR.DLL 

2007-12-23 10:59:04 0 d-------- C:\Program Files\Free Audio Pack

2007-12-23 00:14:56 3008 --a------ C:\WINDOWS\system32\SpoonUninstall-dBpoweramp WavPack Codec.dat

2007-12-22 22:11:45 0 d-------- C:\Program Files\Nero

2007-12-19 14:56:36 0 d-------- C:\Program Files\RTL Biathlon 2008

2007-12-17 19:29:18 0 d-------- C:\Program Files\Common Files\ACD Systems

2007-12-17 19:29:18 0 d-------- C:\Program Files\ACD Systems

2007-12-08 20:21:27 0 d-------- C:\Program Files\Ubisoft

2007-12-08 17:15:51 0 d-------- C:\Program Files\Winamp Toolbar

2007-12-08 17:14:17 0 d-------- C:\WINDOWS\RegisteredPackages

2007-12-08 17:09:29 0 d-------- C:\Program Files\Winamp

2007-12-08 14:36:57 3107 --a------ C:\WINDOWS\system32\SpoonUninstall-dBpoweramp Monkeys Audio Codec.dat

2007-12-08 14:26:31 13015 --a------ C:\WINDOWS\system32\SpoonUninstall-dBpoweramp Music Converter.dat

2007-12-01 22:23:18 0 d-------- C:\Program Files\NAPI-PROJEKT

2007-12-01 16:14:07 0 d-------- C:\Program Files\mIRC

2007-11-29 21:00:44 0 d-------- C:\Program Files\Lame



-- Find3M Report ---------------------------------------------------------------


2007-12-28 21:56:55 0 d-------- C:\Program Files\Mozilla Thunderbird

2007-12-28 15:20:32 2408 --a------ C:\WINDOWS\system32\tmp.reg

2007-12-27 20:37:48 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\OpenOffice.org2

2007-12-26 15:08:01 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\FDRLab

2007-12-23 14:08:36 0 d-------- C:\Program Files\Common Files

2007-12-22 22:38:13 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\Ahead

2007-12-22 22:14:59 0 d-------- C:\Program Files\Common Files\Ahead

2007-12-22 22:06:54 0 d-------- C:\Program Files\Ahead

2007-12-19 13:36:00 0 d-------- C:\Program Files\EA SPORTS

2007-12-18 22:23:26 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\uTorrent

2007-12-18 10:09:33 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\Adobe

2007-12-18 10:09:04 4663 --a------ C:\WINDOWS\mozver.dat

2007-12-18 00:10:34 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\ACD Systems

2007-12-12 19:02:28 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\Winamp

2007-12-08 21:40:28 0 d-------- C:\Program Files\PC Tools Firewall Plus

2007-12-08 21:27:34 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\Gearbox Software

2007-12-08 20:25:10 0 d-------- C:\Program Files\eSkiMoS R2

2007-11-29 21:01:36 0 d-------- C:\Program Files\Exact Audio Copy

2007-11-25 12:25:54 0 d-------- C:\Program Files\SkanerOnline

2007-11-24 17:51:00 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\eSkiMoS R2

2007-11-21 22:39:33 0 d-------- C:\Program Files\MSXML 4.0

2007-11-21 11:05:36 0 d-------- C:\Program Files\Eusing Free Registry Cleaner

2007-11-20 19:36:44 3283 --a------ C:\WINDOWS\system32\SpoonUninstall-dBpoweramp Musepack Codec.dat

2007-11-20 19:34:06 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\dBpoweramp

2007-11-20 19:31:44 0 d-------- C:\Program Files\Illustrate

2007-11-20 17:59:38 0 d-------- C:\Program Files\Disc2Phone

2007-11-20 17:57:37 458022 --a------ C:\WINDOWS\system32\perfh015.dat

2007-11-20 17:57:37 79408 --a------ C:\WINDOWS\system32\perfc015.dat

2007-11-20 17:52:34 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\Teleca

2007-11-20 17:45:53 0 d-------- C:\Program Files\Common Files\Teleca Shared

2007-11-20 17:44:38 0 d-------- C:\Program Files\Sony Ericsson

2007-11-18 14:21:52 0 d-------- C:\Program Files\Lexmark 4300 Series

2007-11-18 14:03:08 0 d-------- C:\Program Files\mks_vir_2007

2007-11-03 18:13:46 0 d--h----- C:\Documents and Settings\amd\Dane aplikacji\Chromeflower

2007-11-03 18:13:29 0 d--h----- C:\Documents and Settings\amd\Dane aplikacji\CrystalSpace

2007-11-03 17:39:34 0 d-------- C:\Program Files\ICE-land

2007-11-02 19:51:18 0 d-------- C:\Program Files\Gadu-Gadu

2007-11-02 15:25:29 0 d-------- C:\Documents and Settings\amd\Dane aplikacji\Gadu-Gadu

2007-10-31 00:36:15 0 d-------- C:\Program Files\DivX

2007-10-03 22:42:42 55949 --a------ C:\WINDOWS\system32\x264-uninstall.exe

2007-10-03 21:41:11 45056 --a------ C:\WINDOWS\system32\ogg.dll

2007-10-03 21:41:10 1415680 --a------ C:\WINDOWS\system32\WMV9VCM.dll 

2007-10-03 21:40:23 245760 --a------ C:\WINDOWS\system32\mplvpx.dll 

2007-10-03 21:40:17 9216 --a------ C:\WINDOWS\system32\cpuinf32.dll

2007-10-03 19:52:12 755200 --a------ C:\WINDOWS\system32\ir50_32.dll 



-- Registry Dump ---------------------------------------------------------------


*Note* empty entries & legit default entries are not shown



[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}]

2007-10-04 21:06	1135968	--a------	C:\Program Files\Winamp Toolbar\winamptb.dll


[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]

"{EBF2BA02-9094-4C5A-858B-BB198F3D8DE2}"= C:\Program Files\Winamp Toolbar\winamptb.dll [2007-10-04 21:06 1135968]


[-HKEY_CLASSES_ROOT\CLSID\{EBF2BA02-9094-4C5A-858B-BB198F3D8DE2}]

[HKEY_CLASSES_ROOT\WINAMPTB.AOLToolBand.1]

[HKEY_CLASSES_ROOT\TypeLib\{538CD77C-BFDD-49b0-9562-77419CAB89D1}]

[HKEY_CLASSES_ROOT\WINAMPTB.AOLToolBand]


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ATICCC"="C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" [2006-01-02 16:41]

"00PCTFW"="C:\Program Files\PC Tools Firewall Plus\FirewallGUI.exe" [2007-04-28 07:13]

"mkstray"="C:\Program Files\mks_vir_2007\bin\mkstray.exe" [2007-09-17 18:16]

"mks_mail"="C:\Program Files\mks_vir_2007\bin\mks_mail.exe" [2007-05-24 04:06]

"MKSRegmon"="C:\Program Files\mks_vir_2007\bin\mksregmon.exe" [2007-05-24 04:06]

"RTHDCPL"="RTHDCPL.EXE" [2006-04-17 08:34 C:\WINDOWS\RTHDCPL.EXE]

"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11]

"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2006-11-12 11:48]

"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-10-03 10:15]

"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 15:57]

"SecurDisc"="C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe" [2007-05-15 15:55]

"InCD"="C:\Program Files\Nero\Nero 7\InCD\InCD.exe" [2007-05-15 15:55]


[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46]

"Gadu-Gadu"="C:\Program Files\Gadu-Gadu\gg.exe" [2007-07-09 08:39]

"WinPerfectAutoRun"="C:\yenicag\WinPerfectSE\WinPerfect.exe" []


C:\Documents and Settings\amd\Menu Start\Programy\Autostart\

OpenOffice.org 2.3.lnk.disabled [2007-10-21 19:29:03] 


C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\

Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-24 06:05:26]


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MkS_Scan]

@="service"


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]

@="Service"


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]

@="Volume shadow copy"


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]

"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" /background


[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]

"EzPrint"="C:\Program Files\Lexmark 4300 Series\ezprint.exe"

"lxcemon.exe"="C:\Program Files\Lexmark 4300 Series\lxcemon.exe"

"Sony Ericsson PC Suite"="C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions



[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]

"C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"




-- Hosts -----------------------------------------------------------------------


127.0.0.1	007guard.com

127.0.0.1	www.007guard.com

127.0.0.1	008i.com

127.0.0.1	008k.com

127.0.0.1	www.008k.com

127.0.0.1	00hq.com

127.0.0.1	www.00hq.com

127.0.0.1	010402.com

127.0.0.1	032439.com

127.0.0.1	www.032439.com


7491 more entries in hosts file.



-- End of Deckard's System Scanner: finished at 2007-12-29 10:22:08 ------------

W logu nic nie widzę, masz zapchany autostart

Optymalizacja autostartu - KLIKNIJ