Pomoc komputer się restartuje

Witam mam pewien problem mam xp teraz siedze na viscie na xp uruchomilem jakis program nieznanego pochodzenia to komputer mi sie zresetowal potem znowu wlaczylem xp znowu sie zresetowal i potem jeszcze raz co moze byc tego przyczyna przed kazdym resetem wystepuje bluescreen pisze zzucanie fizycznej pamieci…

Prosze o pomoc!!

następnym razem zainstaluj darmowego antywirusa i nie klikaj we wszystko co ma dziwną nazwę.exe

mam platnego antywirusa norton internet security 2009 z licencja na rok legalnego!!

Dodane 06.01.2009 (Wt) 22:32

jak mozna naprawic te cos

zależy co to było-jeśli wirus to nie naprawisz za bardzo tzn. niech lepiej ktoś lepiej obeznany doradzi;p

chwilowo cos ten problem juz nie wystepuje poczekam :stuck_out_tongue: może znów się pojawi wtedy ktoś mi powie co zrobić:):] OKI

Dodane 06.01.2009 (Wt) 22:54

nadal jest pomoze mi ktos!!

Dodane 06.01.2009 (Wt) 23:19

moj log z combofix

ComboFix 09-01-05.05 - Daniel 2009-01-06 23:00:05.1 - NTFSx86

Microsoft Windows XP Home Edition 5.1.2600.3.1250.1.1045.18.2046.1449 [GMT 1:00]

Uruchomiony z: c:\documents and settings\Daniel\Pulpit\ComboFix.exe

* Utworzono nowy punkt przywracania

.

((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))

.

c:\documents and settings\Daniel\Dane aplikacji\BITS

c:\documents and settings\Daniel\Dane aplikacji\BITS\BITS.ini

c:\documents and settings\Daniel\Dane aplikacji\BITS\DHTTable.dat

c:\documents and settings\Daniel\Dane aplikacji\BITS\ProxyList.ini

c:\program files\FlashGet Network

c:\program files\FlashGet Network\FlashGet universal\btcore.dll

c:\program files\FlashGet Network\FlashGet universal\btwrap.dll

c:\program files\FlashGet Network\FlashGet universal\BugReport.dll

c:\program files\FlashGet Network\FlashGet universal\BugReport.exe

c:\program files\FlashGet Network\FlashGet universal\ComDlls\Bhoall.htm

c:\program files\FlashGet Network\FlashGet universal\ComDlls\bhoCATCH.dll

c:\program files\FlashGet Network\FlashGet universal\ComDlls\Bhocfg.ini

c:\program files\FlashGet Network\FlashGet universal\ComDlls\Bholink.htm

c:\program files\FlashGet Network\FlashGet universal\ComDlls\ComDlls.ini

c:\program files\FlashGet Network\FlashGet universal\ComDlls\flashget.xpi

c:\program files\FlashGet Network\FlashGet universal\ComDlls\FlashgetXpi.dll

c:\program files\FlashGet Network\FlashGet universal\ComDlls\IFlashgetXpi.xpt

c:\program files\FlashGet Network\FlashGet universal\dbghelp.dll

c:\program files\FlashGet Network\FlashGet universal\DBTrans.dll

c:\program files\FlashGet Network\FlashGet universal\dbtrans_verbose.log

c:\program files\FlashGet Network\FlashGet universal\DBTransC.exe

c:\program files\FlashGet Network\FlashGet universal\ed2kwrap.dll

c:\program files\FlashGet Network\FlashGet universal\explorerbar.dll

c:\program files\FlashGet Network\FlashGet universal\fgoption.ini

c:\program files\FlashGet Network\FlashGet universal\FGVer.dll

c:\program files\FlashGet Network\FlashGet universal\flashget.exe

c:\program files\FlashGet Network\FlashGet universal\gt.exe

c:\program files\FlashGet Network\FlashGet universal\hashgen.dll

c:\program files\FlashGet Network\FlashGet universal\Help\license.txt

c:\program files\FlashGet Network\FlashGet universal\Help\Readme.txt

c:\program files\FlashGet Network\FlashGet universal\Help\WHATSNEW.TXT

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\AddBatchLinksDlg.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\AddBTTask.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\Added.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\AddEMTask.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\AddHpFpLink.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\AddLinksDlg.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\AddLinksDlgEx.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\AddLinksModern.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\BrowserPlugins.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\BTOption.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\CategoryView.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\ComfirmWhenExitDialog.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\CommonDlg.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\ConfirmInvalidLinks.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\ContextMenu.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\DefaultDownloadsDialog.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\DeleteFilesDialog.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\DetailStatus.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\EMOption.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\EMServers.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\ExplorerPane.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\ExtensionRuleDlg.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\FG2SearchTopPlugin.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\FileListCtrl.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\FileRemovedDialog.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\FindTaskDialog.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\FlashgetAbout.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\FlashGetDlg.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\FSUStatusBar.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\GarageLoginDialog.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\GarageView.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\HotResource.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\HpFpOption.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\Info.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\LogsOutput.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\MACReader.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\MainMenu.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\MainToolbar.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\MonitorOption.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\NormalOption.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\NotifyOption.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\Option.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\P4PPluginMain.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\ProxySetting.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\SearchBar.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\Security.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\SecurityOption.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\SecurityScan.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\SecurityToolbar.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\Shutdown.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\StatusBar.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\TaskDefOption.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\TaskListView.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\TaskNotify.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\UserListCtrl.ini

c:\program files\FlashGet Network\FlashGet universal\Langs\FGXL_ENG\XpEnhance.ini

c:\program files\FlashGet Network\FlashGet universal\libupnp.dll

c:\program files\FlashGet Network\FlashGet universal\LiveUpdateUI.dll

c:\program files\FlashGet Network\FlashGet universal\modules\ComHelper\ComHelper.dll

c:\program files\FlashGet Network\FlashGet universal\modules\ComHelper\Info.ini

c:\program files\FlashGet Network\FlashGet universal\modules\Downstat\Downstat.dll

c:\program files\FlashGet Network\FlashGet universal\modules\Downstat\Info.ini

c:\program files\FlashGet Network\FlashGet universal\modules\P4pclient\Info.ini

c:\program files\FlashGet Network\FlashGet universal\modules\P4pclient\P4pclient.dll

c:\program files\FlashGet Network\FlashGet universal\modules\P4pclient\Thumbs.db

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\Info.ini

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\Resource.ini

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\Resource\iexplorer.bmp

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\Resource\resource.bmp

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\Resource\resource.xml

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\Resource\search.bmp

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\Resource\subscribe.bmp

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\Resource\Thumbs.db

c:\program files\FlashGet Network\FlashGet universal\modules\SearchTop\SearchTop.dll

c:\program files\FlashGet Network\FlashGet universal\modules\Security\FunctionalRepair.bmp

c:\program files\FlashGet Network\FlashGet universal\modules\Security\Info.ini

c:\program files\FlashGet Network\FlashGet universal\modules\Security\Scanning.bmp

c:\program files\FlashGet Network\FlashGet universal\modules\Security\Security.bmp

c:\program files\FlashGet Network\FlashGet universal\modules\Security\SECURITY.dll

c:\program files\FlashGet Network\FlashGet universal\modules\Security\Security.xml

c:\program files\FlashGet Network\FlashGet universal\modules\Security\SystemFix.bmp

c:\program files\FlashGet Network\FlashGet universal\modules\SnapShot\Info.ini

c:\program files\FlashGet Network\FlashGet universal\modules\SnapShot\SamplerCli.dll

c:\program files\FlashGet Network\FlashGet universal\modules\SnapShot\SnapShot.dll

c:\program files\FlashGet Network\FlashGet universal\modules\tasknotifier\Info.ini

c:\program files\FlashGet Network\FlashGet universal\modules\tasknotifier\tasknotifier.dll

c:\program files\FlashGet Network\FlashGet universal\P2PCfg.ini

c:\program files\FlashGet Network\FlashGet universal\P2PCore.dll

c:\program files\FlashGet Network\FlashGet universal\p2pprot.dll

c:\program files\FlashGet Network\FlashGet universal\p2snetio.dll

c:\program files\FlashGet Network\FlashGet universal\p2spmgr.dll

c:\program files\FlashGet Network\FlashGet universal\p2spmgr.ini

c:\program files\FlashGet Network\FlashGet universal\p2sprot.dll

c:\program files\FlashGet Network\FlashGet universal\p2spwrap.dll

c:\program files\FlashGet Network\FlashGet universal\p4spmgr.ini

c:\program files\FlashGet Network\FlashGet universal\Profiles\config.dat

c:\program files\FlashGet Network\FlashGet universal\Profiles\tasks.dat

c:\program files\FlashGet Network\FlashGet universal\Skins\close_default.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\close_press.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\close_select.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\max_default.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\max_press.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\max_select.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\min_default.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\min_press.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\min_select.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\notify.wav

c:\program files\FlashGet Network\FlashGet universal\Skins\notify_board.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\notify_icon.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarCT\Back.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarCT\Backward.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarCT\BrowserBarCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarCT\FlashgetResource.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarCT\Forward.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarCT\Home.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarDisableCT\Backward.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarDisableCT\BrowserBarDisableCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarDisableCT\Forward.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarDisableCT\Home.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\BrowserBarDisableCT\Resource.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\Available.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\CategoryTreeCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\Downloaded.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\Downloading.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\Favorite.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\Flashget.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\Release.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\Rubbish.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\CategoryTreeCT\Search.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\ExpBar\Expbar.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\ExpBar\garage.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\ExpBar\resource.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\ExpBar\transfer.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\BT.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\EM.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\GlobalOptionCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\HpFp.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\Monitor.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\Normal.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\Notify.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\Proxy.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\GlobalOptionCT\TaskDef.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\Info.ini

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\About.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\DeleteTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\folder.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\MainMenuCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\MoveDownTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\MoveUpTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\NewTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\open.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\Option.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\PauseTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\Resource.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\StartTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainMenuCT\TaskProperties.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\About.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\DeleteTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\Folder.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\MainToolbarCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\NewTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\Open.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\Option.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\PauseTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\Resource.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\StartTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarCT\TaskProperties.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\About.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\DeleteTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\Folder.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\MainToolbarDisableCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\NewTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\Open.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\Option.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\PauseTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\Resource.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\StartTask.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\MainToolbarDisableCT\TaskProperties.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\Monitor\InfoBkg.Bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\Monitor\MonitorBkg.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\OutpuLogCT\Down.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\OutpuLogCT\Error.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\OutpuLogCT\Normal.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\OutpuLogCT\OutpuLogCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\OutpuLogCT\Up.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\All.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\Book.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\Bt.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\Game.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\Movie.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\Music.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\Phone.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\Picture.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\SobarIconCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\SobarIconCT\Software.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\Error.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\hashing.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\OK.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\Pause.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\Pin.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\Schedule.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\Start.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\TaskListCT.xml

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\Upload.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\ShadowGrayBlue\TaskListCT\Wait.bmp

c:\program files\FlashGet Network\FlashGet universal\Skins\Thumbs.db

c:\program files\FlashGet Network\FlashGet universal\storage.dll

c:\program files\FlashGet Network\FlashGet universal\SysOpt.exe

c:\program files\FlashGet Network\FlashGet universal\transaction.log

c:\program files\FlashGet Network\FlashGet universal\uninst.exe

c:\program files\FlashGet Network\FlashGet universal\zlib.dll

c:\windows\system32\Cfx32.lic

c:\windows\system32\cfx32.ocx

c:\windows\system32\config\33771574.Evt

.

((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi )))))))))))))))))))))))))))))))))))))))))))))))))

.

-------\Legacy_ASC3550P

-------\Legacy_LIVE

-------\Service_asc3550p

-------\Service_Live

((((((((((((((((((((((((( Pliki utworzone od 2008-12-06 do 2009-01-06 )))))))))))))))))))))))))))))))

.

2009-01-04 22:08 . 2009-01-04 22:09

2009-01-02 20:18 . 2009-01-02 20:18

2009-01-01 16:42 . 2009-01-01 16:42

2009-01-01 16:28 . 2009-01-01 16:28

2009-01-01 16:28 . 2008-01-21 03:22 333,203 -rahs---- C:\bootmgr

2009-01-01 16:28 . 2009-01-01 16:28 8,192 -ra-s---- C:\BOOTSECT.BAK

2008-12-31 23:27 . 2008-12-31 23:27

2008-12-31 23:27 . 2008-12-31 23:30

2008-12-31 12:53 . 2008-12-31 13:07 215 --a------ c:\windows\BsMobileModel.ini

2008-12-31 12:52 . 2008-12-31 12:52

2008-12-31 12:16 . 2008-12-31 12:16

2008-12-31 11:59 . 2009-01-02 20:13 32 --a------ c:\windows\0

2008-12-31 11:59 . 2008-12-31 11:59 0 --a------ c:\windows\system32\0

2008-12-30 21:18 . 2006-11-24 14:47 40,136 --a------ c:\windows\system32\drivers\ET5Drv.sys

2008-12-30 21:15 . 2008-12-30 21:16

2008-12-30 21:03 . 2009-01-02 20:14

2008-12-30 19:32 . 2008-12-30 19:32

2008-12-30 17:00 . 2008-12-30 17:00

2008-12-30 17:00 . 2008-12-30 17:00

2008-12-29 01:45 . 2008-12-29 01:45 107,888 --a------ c:\windows\system32\CmdLineExt.dll

2008-12-29 00:50 . 2008-12-29 00:50

2008-12-29 00:49 . 2008-12-29 00:49

2008-12-29 00:49 . 2006-06-29 13:07 14,048 --------- c:\windows\system32\spmsg2.dll

2008-12-29 00:47 . 2008-12-29 00:53

2008-12-28 23:45 . 2008-12-28 23:45

2008-12-28 23:45 . 2008-12-28 23:45

2008-12-28 22:09 . 2008-12-28 22:10

2008-12-28 22:06 . 2008-12-28 22:07

2008-12-28 22:06 . 2008-12-28 22:06

2008-12-28 21:50 . 2008-12-28 21:50

2008-12-28 21:50 . 2006-08-29 15:56 32,377 --a------ c:\windows\system32\drivers\prodigy.sys

2008-12-28 21:05 . 2008-12-31 19:09

2008-12-28 21:04 . 2008-12-28 21:04

2008-12-28 21:04 . 2008-12-31 20:05

2008-12-28 21:04 . 2008-12-28 21:04

2008-12-28 20:35 . 2008-12-28 20:35 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01007.Wdf

2008-12-28 20:32 . 2008-09-15 07:56 659,968 --a------ c:\windows\system32\nmwcdcocls.dll

2008-12-28 20:32 . 2008-09-15 07:56 22,016 --a------ c:\windows\system32\drivers\ccdcmbo.sys

2008-12-28 20:32 . 2008-09-15 07:56 17,664 --a------ c:\windows\system32\drivers\ccdcmb.sys

2008-12-28 20:32 . 2008-09-15 07:56 8,064 --a------ c:\windows\system32\drivers\usbser_lowerfltj.sys

2008-12-28 20:32 . 2008-09-15 07:56 8,064 --a------ c:\windows\system32\drivers\usbser_lowerflt.sys

2008-12-28 20:31 . 2008-02-01 15:17 138,112 --a------ c:\windows\system32\drivers\nmwcdnsu.sys

2008-12-28 20:31 . 2008-02-01 15:17 8,320 --a------ c:\windows\system32\drivers\nmwcdnsuc.sys

2008-12-28 20:19 . 2008-04-14 00:15 26,112 --a------ c:\windows\system32\drivers\usbser.sys

2008-12-28 20:19 . 2008-04-14 00:15 26,112 --a–c— c:\windows\system32\dllcache\usbser.sys

2008-12-28 20:18 . 2008-12-28 20:18 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf

2008-12-28 15:22 . 2008-12-28 15:22

2008-12-28 15:20 . 2008-12-28 15:20

2008-12-28 11:36 . 2008-04-14 21:39 25,728 --a------ c:\windows\system32\drivers\hidbth.sys

2008-12-28 11:36 . 2008-04-14 21:39 25,728 --a–c— c:\windows\system32\dllcache\hidbth.sys

2008-12-28 11:36 . 2008-04-14 00:15 10,368 --a------ c:\windows\system32\drivers\hidusb.sys

2008-12-28 11:36 . 2008-04-14 00:15 10,368 --a–c— c:\windows\system32\dllcache\hidusb.sys

2008-12-28 10:41 . 2008-03-21 13:57 14,640 --------- c:\windows\system32\spmsgXP_2k3.dll

2008-12-28 10:41 . 2008-12-28 10:41 0 --ah----- c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf

2008-12-28 10:41 . 2008-12-28 10:41 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_ggsemc_01007.Wdf

2008-12-28 01:21 . 2008-12-28 01:21

2008-12-28 01:21 . 2008-12-28 01:21

2008-12-28 01:19 . 2008-12-28 01:19

2008-12-28 01:17 . 2008-12-28 01:17

2008-12-28 01:17 . 2008-12-28 01:17

2008-12-28 01:17 . 2007-06-19 08:51 107,304 --a------ c:\windows\system32\drivers\s816mdm.sys

2008-12-28 01:17 . 2007-06-19 08:51 99,112 --a------ c:\windows\system32\drivers\s816mgmt.sys

2008-12-28 01:17 . 2007-06-19 08:51 97,704 --a------ c:\windows\system32\drivers\s816unic.sys

2008-12-28 01:17 . 2007-06-19 08:51 97,320 --a------ c:\windows\system32\drivers\s816obex.sys

2008-12-28 01:17 . 2007-06-19 08:51 81,832 --a------ c:\windows\system32\drivers\s816bus.sys

2008-12-28 01:17 . 2007-06-19 08:51 13,864 --a------ c:\windows\system32\drivers\s816mdfl.sys

2008-12-28 01:17 . 2007-06-19 08:51 11,176 --a------ c:\windows\system32\drivers\s816whnt.sys

2008-12-28 01:17 . 2007-06-19 08:51 11,176 --a------ c:\windows\system32\drivers\s816wh.sys

2008-12-28 01:17 . 2007-06-19 08:51 11,176 --a------ c:\windows\system32\drivers\s816cmnt.sys

2008-12-28 01:17 . 2007-06-19 08:51 11,176 --a------ c:\windows\system32\drivers\s816cm.sys

2008-12-28 01:17 . 2007-06-19 08:51 9,768 --a------ c:\windows\system32\drivers\s816cr.sys

2008-12-28 01:16 . 2008-12-28 01:16

2008-12-28 00:44 . 2008-12-28 00:44

2008-12-28 00:31 . 2008-12-28 00:30 410,984 --a------ c:\windows\system32\deploytk.dll

2008-12-27 23:55 . 2008-12-27 23:55

2008-12-27 23:20 . 2008-12-27 23:20

2008-12-27 22:42 . 2001-08-17 21:56 7,552 --a------ c:\windows\system32\drivers\SONYPVU1.SYS

2008-12-27 22:42 . 2001-08-17 21:56 7,552 --a–c— c:\windows\system32\dllcache\sonypvu1.sys

2008-12-27 12:27 . 2008-12-27 23:01

2008-12-27 12:27 . 2004-08-18 09:34 442,368 -ra------ c:\windows\system32\vp6vfw.dll

2008-12-26 23:35 . 2008-12-26 23:35

2008-12-26 23:24 . 2008-12-26 23:24

2008-12-26 19:06 . 1998-06-11 23:15 307,200 --a------ c:\windows\vidcap32.exe

2008-12-26 19:06 . 2002-07-03 11:44 53,248 --a------ c:\windows\amcap.exe

2008-12-25 15:23 . 2008-12-25 15:23

2008-12-25 13:39 . 2008-12-25 13:41

2008-12-25 13:28 . 2008-12-25 13:28

2008-12-25 13:28 . 2008-12-25 13:28

2008-12-25 13:25 . 2009-01-01 16:02 1,905 --a------ c:\windows\diagwrn.xml

2008-12-25 13:25 . 2009-01-01 16:02 1,905 --a------ c:\windows\diagerr.xml

2008-12-25 11:35 . 2008-12-25 11:35

2008-12-25 10:21 . 2008-12-25 10:21

2008-12-25 01:04 . 2008-12-31 23:10

2008-12-25 00:40 . 2008-12-25 00:40

2008-12-24 12:45 . 2008-12-24 12:45

2008-12-24 12:43 . 2006-10-26 19:58 30,512 --a------ c:\windows\system32\mdimon.dll

2008-12-24 12:42 . 2006-10-26 19:56 32,592 --a------ c:\windows\system32\msonpmon.dll

2008-12-24 12:41 . 2008-12-24 12:41

2008-12-24 12:40 . 2008-12-29 00:51

2008-12-24 12:38 . 2008-12-24 12:38

2008-12-24 12:34 . 2008-12-24 12:34

2008-12-24 12:33 . 2008-12-24 12:39

2008-12-24 12:32 . 2008-12-24 12:32

2008-12-24 12:32 . 2008-12-25 09:32

2008-12-24 10:39 . 2008-12-24 10:39

2008-12-24 10:35 . 2009-01-05 21:52 138,184 --a------ c:\windows\system32\drivers\PnkBstrK.sys

2008-12-24 10:35 . 2008-12-24 10:35 22,328 --a------ c:\documents and settings\Daniel\Dane aplikacji\PnkBstrK.sys

2008-12-24 10:34 . 2009-01-05 21:52 183,112 --a------ c:\windows\system32\PnkBstrB.exe

2008-12-24 10:34 . 2009-01-03 21:04 66,872 --a------ c:\windows\system32\PnkBstrA.exe

2008-12-24 10:33 . 2008-12-24 10:34 319 --a------ c:\windows\game.ini

2008-12-24 10:09 . 2008-12-24 10:09

2008-12-24 10:05 . 2008-12-24 10:05

2008-12-23 22:04 . 2008-12-23 22:04

2008-12-23 22:04 . 2008-12-23 22:05

2008-12-23 22:04 . 2008-12-23 22:06

2008-12-23 21:40 . 2000-05-22 01:58 647,872 --------- c:\windows\system32\Mscomct2.ocx

2008-12-23 21:40 . 2006-10-05 23:17 53,248 --------- c:\windows\Ctregrun.exe

2008-12-23 21:39 . 2009-01-02 20:19

2008-12-23 21:36 . 1999-12-12 18:01 44,032 --------- c:\windows\system32\CTSVCCDA.EXE

2008-12-23 21:36 . 1999-11-17 18:00 25,088 --------- c:\windows\system32\CTSVCCTL.EXE

2008-12-23 21:35 . 2009-01-02 20:19

2008-12-23 21:35 . 2009-01-02 20:19

2008-12-23 21:35 . 2008-12-23 21:35

2008-12-23 21:20 . 2008-12-23 21:20

2008-12-23 21:19 . 2008-12-23 21:20

.

(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2009-01-06 21:34 102,400 ----a-w c:\windows\DUMP6939.tmp

2009-01-03 17:56 --------- d–h--w c:\program files\InstallShield Installation Information

2009-01-03 17:53 --------- d-----w c:\program files\Common Files\InstallShield

2008-12-30 23:04 15,600 ----a-w c:\windows\gdrv.sys

2008-12-25 11:10 --------- d-----w c:\program files\Common Files\Wise Installation Wizard

2008-12-23 18:53 --------- d-----w c:\program files\DIFX

2008-12-23 15:40 --------- d-----w c:\program files\Common Files\Symantec Shared

2008-12-23 15:31 --------- d-----w c:\program files\Realtek

2008-12-23 12:33 --------- d-----w c:\program files\Thomson

2008-12-23 12:31 806 ----a-w c:\windows\system32\drivers\SYMEVENT.INF

2008-12-23 12:31 60,808 ----a-w c:\windows\system32\S32EVNT1.DLL

2008-12-23 12:31 124,464 ----a-w c:\windows\system32\drivers\SYMEVENT.SYS

2008-12-23 12:31 10,635 ----a-w c:\windows\system32\drivers\SYMEVENT.CAT

2008-12-23 12:31 --------- d-----w c:\program files\Windows Sidebar

2008-12-23 12:31 --------- d-----w c:\program files\Symantec

2008-12-23 12:31 --------- d-----w c:\program files\Norton Internet Security

2008-12-23 12:31 --------- d-----w c:\documents and settings\All Users\Dane aplikacji\NortonInstaller

2008-12-23 12:31 --------- d-----w c:\documents and settings\All Users\Dane aplikacji\Norton

2008-12-23 12:30 --------- d-----w c:\program files\NortonInstaller

2008-12-23 12:26 --------- d-----w c:\documents and settings\Daniel\Dane aplikacji\InstallShield

2008-12-23 12:20 --------- d-----w c:\program files\AGEIA Technologies

2008-12-23 12:12 --------- d-----w c:\program files\microsoft frontpage

2008-12-23 12:10 --------- d-----w c:\program files\Usługi online

2008-12-12 10:18 87,336 ----a-w c:\windows\system32\dns-sd.exe

2008-12-12 10:11 61,440 ----a-w c:\windows\system32\dnssd.dll

2008-12-12 07:32 972,072 ----a-w c:\windows\UNNeroMediaHome.exe

2008-12-12 03:28 36,272 ----a-r c:\windows\system32\drivers\SymIM.sys

2008-12-08 11:53 57,344 ----a-w c:\windows\system32\ff_vfw.dll

2008-12-07 18:08 795,648 ----a-w c:\windows\system32\xvidcore.dll

2008-12-07 18:08 130,048 ----a-w c:\windows\system32\xvidvfw.dll

2008-11-12 12:45 453,152 ----a-w c:\windows\system32\NVUNINST.EXE

2008-10-28 22:35 684,032 ----a-w c:\windows\system32\divx.dll

2008-10-28 16:41 14,303,392 ----a-w c:\windows\system32\xlive.dll

2008-10-28 16:41 13,643,936 ----a-w c:\windows\system32\xlivefnt.dll

2008-10-28 16:18 17,331,200 ----a-w c:\windows\RTHDCPL.EXE

2008-10-27 09:04 70,992 ----a-w c:\windows\system32\XAPOFX1_2.dll

2008-10-27 09:04 514,384 ----a-w c:\windows\system32\XAudio2_3.dll

2008-10-27 09:04 235,856 ----a-w c:\windows\system32\xactengine3_3.dll

2008-10-27 09:04 23,376 ----a-w c:\windows\system32\X3DAudio1_5.dll

2008-10-24 00:18 2,302,017 ----a-w c:\windows\system32\GPhotos.scr

2008-10-23 12:42 286,720 ----a-w c:\windows\system32\gdi32.dll

2008-10-16 20:33 826,368 ----a-w c:\windows\system32\wininet.dll

2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll

2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll

2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll

2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll

2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll

2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe

2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll

2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll

2008-10-16 13:07 208,744 ----a-w c:\windows\system32\muweb.dll

2008-10-13 08:56 70,936 ----a-w c:\windows\system32\PhysXLoader.dll

2008-10-10 03:52 452,440 ----a-w c:\windows\system32\d3dx10_40.dll

2008-10-10 03:52 4,379,984 ----a-w c:\windows\system32\D3DX9_40.dll

2008-10-10 03:52 2,036,576 ----a-w c:\windows\system32\D3DCompiler_40.dll

2008-12-23 16:49 122,880 ----a-w c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll

.

((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane

REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

“CTFMON.EXE”=“c:\windows\system32\ctfmon.exe” [2008-04-15 15360]

“Google Update”=“c:\documents and settings\Daniel\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe” [2008-12-23 133104]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

“NvCplDaemon”=“c:\windows\system32\NvCpl.dll” [2008-11-12 13672448]

“NvMediaCenter”=“c:\windows\system32\NvMcTray.dll” [2008-11-12 86016]

“Adobe Reader Speed Launcher”=“c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe” [2008-06-12 34672]

“SunJavaUpdateSched”=“c:\program files\Java\jre6\bin\jusched.exe” [2008-12-28 136600]

“Google Desktop Search”=“c:\program files\Google\Google Desktop Search\GoogleDesktop.exe” [2008-12-23 30192]

“NeroFilterCheck”=“c:\program files\Common Files\Nero\Lib\NeroCheck.exe” [2008-11-06 570664]

“HP Software Update”=“c:\program files\HP\HP Software Update\HPWuSchd2.exe” [2007-05-08 54840]

“nwiz”=“nwiz.exe” [2008-11-12 c:\windows\system32\nwiz.exe]

“Kernel and Hardware Abstraction Layer”=“KHALMNPR.EXE” [2008-02-29 c:\windows\KHALMNPR.Exe]

“RTHDCPL”=“RTHDCPL.EXE” [2008-10-28 c:\windows\RTHDCPL.EXE]

“BluetoothAuthenticationAgent”=“bthprops.cpl” [2008-04-15 c:\windows\system32\bthprops.cpl]

[HKEY_USERS.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

“CTFMON.EXE”=“c:\windows\system32\CTFMON.EXE” [2008-04-15 15360]

c:\documents and settings\All Users\Menu Start\Programy\Autostart\

Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-12-23 805392]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]

“{56F9679E-7826-4C84-81F3-532071A8BCC5}”= “c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll” [2008-05-26 304128]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]

2008-05-02 02:42 72208 c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

@=“Driver”

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]

@=""

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]

–a------ 2007-08-01 19:17 222592 c:\program files\Alcohol Soft\Alcohol 120\AxCmd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ALLUpdate]

–a------ 2008-11-24 20:44 869888 c:\program files\ALLPlayer\ALLUpdate.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTCheck]

--------- 2007-11-06 11:08 397312 c:\program files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EasyTuneV]

–a------ 2007-04-26 15:50 24576 c:\program files\GIGABYTE\ET5\ETcall.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]

–a------ 2008-11-20 13:20 290088 c:\program files\iTunes\iTunesHelper.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]

–a------ 2006-12-05 22:55 54832 c:\program files\CyberLink\PowerDVD\Language\Language.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nero PhotoShow Media Manager]

–a------ 2008-02-12 16:09 353544 c:\progra~1\Nero\PHOTOS~1\data\Xtras\mssysmgr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]

–a------ 2008-11-04 10:30 413696 c:\program files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]

--------- 2006-11-23 15:10 56928 c:\program files\CyberLink\PowerDVD\PDVDServ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpeedTouch USB Diagnostics]

–a------ 2004-03-23 12:06 888832 c:\program files\Thomson\SpeedTouch USB\dragdiag.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BluetoothAuthenticationAgent]

–a------ 2008-04-15 13:00 110592 c:\windows\system32\bthprops.cpl

[HKLM~\services\sharedaccess\parameters\firewallpolicy\standardprofile]

“EnableFirewall”= 0 (0x0)

[HKLM~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

“%windir%\Network Diagnostic\xpnetdiag.exe”=

“%windir%\system32\sessmgr.exe”=

“c:\Program Files\Skype\Phone\Skype.exe”=

“c:\Program Files\iTunes\iTunes.exe”=

“c:\Program Files\uTorrent\uTorrent.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpqste08.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hposfx08.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hposid01.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpoews01.exe”=

“c:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe”=

“c:\WINDOWS\system32\PnkBstrA.exe”=

“c:\WINDOWS\system32\PnkBstrB.exe”=

“c:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe”=

“c:\Program Files\Empire Interactive\FlatOut Ultimate Carnage\Fouc.exe”=

“c:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE”=

“c:\Program Files\Microsoft Office\Office12\ONENOTE.EXE”=

“c:\Program Files\Bonjour\mDNSResponder.exe”=

“c:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe”=

“c:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe”=

“c:\Program Files\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe”=

R0 BtHidBus;Bluetooth HID Bus Service;c:\windows\system32\drivers\BtHidBus.sys [2008-07-31 20616]

R0 hotcore3;hotcore3;c:\windows\system32\drivers\hotcore3.sys [2008-12-23 38448]

R0 SymEFA;Symantec Extended File Attributes;\SystemRoot\SystemRoot\System32\Drivers\NIS\1002000.007\SYMEFA.SYS --> \SystemRoot\SystemRoot\System32\Drivers\NIS\1002000.007\SYMEFA.SYS [?]

R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\system32\drivers\NIS\1002000.007\BHDrvx86.sys [2008-12-23 255536]

R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\NIS\1002000.007\cchpx86.sys [2008-12-23 362544]

R1 IDSxpx86;IDSxpx86;c:\documents and settings\All Users\Dane aplikacji\Norton{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20081220.001\IDSxpx86.sys [2008-12-23 274808]

R1 VBoxDrv;VirtualBox Service;c:\windows\system32\drivers\VBoxDrv.sys [2008-12-23 93776]

R1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\drivers\VBoxUSBMon.sys [2008-12-23 41744]

R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2009-01-06 99376]

R4 Norton Internet Security;Norton Internet Security;c:\program files\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe [2008-12-23 115560]

S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2008-12-23 10976]

S3 GoogleDesktopManager-092308-165331;Menedżer Google Desktop 5.8.809.23506;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [2008-12-23 30192]

S3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\drivers\IvtBtBus.sys [2008-07-02 26248]

S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2008-12-28 138112]

S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2008-12-28 8320]

S3 s816bus;Sony Ericsson Device 816 driver (WDM);c:\windows\system32\drivers\s816bus.sys [2008-12-28 81832]

S3 s816mdfl;Sony Ericsson Device 816 USB WMC Modem Filter;c:\windows\system32\drivers\s816mdfl.sys [2008-12-28 13864]

S3 s816mdm;Sony Ericsson Device 816 USB WMC Modem Driver;c:\windows\system32\drivers\s816mdm.sys [2008-12-28 107304]

S3 s816mgmt;Sony Ericsson Device 816 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\s816mgmt.sys [2008-12-28 99112]

S3 s816obex;Sony Ericsson Device 816 USB WMC OBEX Interface;c:\windows\system32\drivers\s816obex.sys [2008-12-28 97320]

S3 s816unic;Sony Ericsson Device 816 USB Ethernet Emulation SEMCMR7 (WDM);c:\windows\system32\drivers\s816unic.sys [2008-12-28 97704]

S3 VBoxUSB;VirtualBox USB;c:\windows\system32\drivers\VBoxUSB.sys [2008-12-23 31824]

S4 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0;c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe --> c:\program files\Common Files\Nero\Nero BackItUp 4\NBService.exe [?]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{db084a01-d4ca-11dd-9df1-000e505a855e}]

\Shell\AutoRun\command - F:\xih9.cmd

\Shell\explore\Command - F:\xih9.cmd

\Shell\open\Command - F:\xih9.cmd

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{db084a02-d4ca-11dd-9df1-000e505a855e}]

\Shell\AutoRun\command - F:\xih9.cmd

\Shell\explore\Command - F:\xih9.cmd

\Shell\open\Command - F:\xih9.cmd

.

Zawartość folderu ‘Zaplanowane zadania’

2008-12-31 c:\windows\Tasks\AppleSoftwareUpdate.job

  • c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34]

2009-01-04 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-299502267-920026266-1177238915-1004.job

  • c:\documents and settings\Daniel\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [2008-12-23 17:24]

.

        • USUNIĘTO PUSTE WPISY - - - -

MSConfigStartUp-amd_dc_opt - c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe

MSConfigStartUp-Windows Defender - c:\program files\Windows Defender\MSASCui.exe

.

------- Skan uzupełniający -------

.

uDefault_Search_URL = hxxp://www.google.com/ie

uSearchURL,(Default) = hxxp://www.google.com/search?q=%s

IE: &Download All by FlashGet - c:\program files\FlashGet Network\FlashGet universal\ComDlls\Bhoall.htm

IE: &Download by FlashGet - c:\program files\FlashGet Network\FlashGet universal\ComDlls\Bholink.htm

IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200

IE: E&ksportuj do programu Microsoft Excel - c:\progra~1\MICROS~4\Office12\EXCEL.EXE/3000

TCP: {609B38FE-4105-49E8-92F3-31F0D0C125A2} = 217.8.168.244 157.25.5.18

Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - c:\program files\Norton Internet Security\Engine\16.2.0.7\CoIEPlg.dll

FF - ProfilePath - c:\documents and settings\Daniel\Dane aplikacji\Mozilla\Firefox\Profiles\1b2c4pbf.default\

FF - component: c:\documents and settings\All Users\Dane aplikacji\Norton{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\coFFPlgn\components\coFFPlgn.dll

FF - component: c:\documents and settings\All Users\Dane aplikacji\Norton{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\IPSFFPlgn\components\IPSFFPl.dll

FF - component: c:\program files\Mozilla Firefox\components\GoogleDesktopMozilla.dll

FF - plugin: c:\documents and settings\Daniel\Ustawienia lokalne\Dane aplikacji\Google\Update\1.2.133.33\npGoogleOneClick7.dll

FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll

FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll

FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll

FF - plugin: c:\program files\Microsoft Silverlight\2.0.31005.0\npctrl.dll

FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll

ATTENTION: FIREFOX POLICES IS IN FORCE

FF - user.js: general.useragent.extra.zencast - Creative ZENcast v2.00.13);user_pref(general.useragent.extra.zencast, .

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2009-01-06 23:09:25

Windows 5.1.2600 Dodatek Service Pack 3 NTFS

skanowanie ukrytych procesów …

skanowanie ukrytych wpisów autostartu …

skanowanie ukrytych plików …

skanowanie pomyślnie ukończone

ukryte pliki: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet004\Services\Norton Internet Security]

“ImagePath”="“c:\program files\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe” /s “Norton Internet Security” /m “c:\program files\Norton Internet Security\Engine\16.2.0.7\diMaster.dll” /prefetch:1"

.

--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Installer\UserData\LocalSystem\Components\h–€|˙˙˙˙¤•€|ů•6~*NULL*]

“AB141C35E9F4BF344B9FC010BB17F68A”=“02:\Software\Adobe\FeatureSubscriptions\DVAAdobeDocMeta\{53C141BA-4F9E-43FB-B4F9-0C01BB716FA8}\Registered”

.

--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------

              • > ‘winlogon.exe’(740)

c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll

c:\program files\common files\logishrd\bluetooth\LBTServ.dll

              • > ‘explorer.exe’(3412)

c:\program files\Logitech\SetPoint\lgscroll.dll

.

------------------------ Pozostałe uruchomione procesy ------------------------

.

c:\program files\Bonjour\mDNSResponder.exe

c:\windows\system32\CTSVCCDA.EXE

c:\program files\Java\jre6\bin\jqs.exe

c:\program files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe

c:\program files\CDBurnerXP\NMSAccessU.exe

c:\windows\system32\nvsvc32.exe

c:\windows\system32\HPZipm12.exe

c:\windows\system32\PnkBstrB.exe

c:\program files\CyberLink\Shared Files\RichVideo.exe

c:\windows\system32\searchindexer.exe

c:\windows\system32\wbem\wmiapsrv.exe

c:\windows\system32\rundll32.exe

c:\windows\system32\rundll32.exe

c:\program files\Common Files\Logishrd\KHAL2\KHALMNPR.exe

.

**************************************************************************

.

Czas ukończenia: 2009-01-06 23:15:01 - komputer został uruchomiony ponownie

ComboFix-quarantined-files.txt 2009-01-06 22:14:56

Przed: 95 999 451 136 bajtów wolnych

Po: 95,895,425,024 bajtów wolnych

WindowsXP-KB310994-SP2-Home-BootDisk-PLK.exe

;

;Warning: Boot.ini is used on Windows XP and earlier operating systems.

;Warning: Use BCDEDIT.exe to modify Windows Vista boot options.

;

[boot loader]

timeout=2

default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS

[operating systems]

c:\cmdcons\BOOTSECT.DAT=“Microsoft Windows Recovery Console” /cmdcons

multi(0)disk(0)rdisk(0)partition(1)\WINDOWS=“Microsoft Windows XP Home Edition” /NOEXECUTE=OPTIN /FASTDETECT /USEPMTIMER

652 — E O F — 2008-12-26 18:14:33

Do wyleczenia pendrive z wirusów użyj tych programów

Pobierz ComboFix, ale nie uruchamiaj

Wklej do notatnika:

File::

c:\windows\0

c:\windows\system32\0


Folder::

c:\documents and settings\All Users\Dane aplikacji\55-08-90-55-55-55


Registry::

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]

[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{db084a01-d4ca-11dd-9df1-000e505a855e}]

[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{db084a02-d4ca-11dd-9df1-000e505a855e}]

Plik -> zapisz jako -> CFScript.txt.

Przeciągnij i upuść ikonkę CFScript.txt na ikonkę ComboFix.exe tak jak tu->

cfscript10uc2.gif

Rozpocznie się usuwanie i powstanie log, który dasz na forum.

Logi dajesz na http://wklej.eu lub na http://wklej.org a w poście dajesz tylko link

http://wklej.eu/index.php?id=d7c4781613

Dodane 07.01.2009 (Śr) 9:59

a czemu ten combofix za kazdym razem usuwa mi flasgeta i przywraca ikone ie :stuck_out_tongue: mam sp3 i tam standardowo nie ma ie na pulpicie

W logu nic nie widzę

usuń ręcznie folder C:\Qoobox , usuń instalkę Combofix z dysku.

Przeczyść system Ccleanerem

Wykonaj optymalizację autostartu

Wyłącz i włącz przywracanie systemu na wszystkich dyskach. Instrukcja

Przeskanuj obszar całego komputera http://www.kaspersky.pl/virusscanner.html Daj raport z niego na forum

lub

Dr.WEB CureIt!

Jeżeli możesz choć na chwilę przedostać się do systemu XP, to wciśnij klawisze “logo Win”+Pause/Break-> Zaawansowane-> Uruchamianie i odzyskiwanie-> Ustawienia-> odhacz Automatycznie uruchom ponownie. Podaj kod błędu (od STOP).

już naprawione temat można zamknąć dzięki wszystkim za pomoc:D