Problem z byteseeker!


(Pewexio) #1

Witam !!

OTL logfile created on: 2010-03-22 10:22:47 - Run 2

OTL by OldTimer - Version 3.1.37.3 Folder = C:\Documents and Settings\ToOwo\Moje dokumenty

Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 8.0.6001.18702)

Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

735,00 Mb Total Physical Memory | 250,00 Mb Available Physical Memory | 34,00% Memory free

2,00 Gb Paging File | 1,00 Gb Available in Paging File | 73,00% Paging File free

Paging file location(s): C:\pagefile.sys 1104 2208 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

Drive C: | 39,06 Gb Total Space | 30,42 Gb Free Space | 77,89% Space Free | Partition Type: NTFS

Drive D: | 35,46 Gb Total Space | 8,28 Gb Free Space | 23,36% Space Free | Partition Type: NTFS

E: Drive not present or media not loaded

F: Drive not present or media not loaded

G: Drive not present or media not loaded

H: Drive not present or media not loaded

I: Drive not present or media not loaded

Computer Name: DARIUSZ-9C0017A

Current User Name: ToOwo

Logged in as Administrator.

Current Boot Mode: Normal

Scan Mode: Current user

Company Name Whitelist: Off

Skip Microsoft Files: Off

File Age = 30 Days

Output = Standard

========== Processes (SafeList) ==========

PRC - [2010-03-22 10:02:42 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\ToOwo\Moje dokumenty\OTL.exe

PRC - [2010-01-16 04:18:19 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe

PRC - 2009-07-01 17:38:40 | 001,481,056 | ---- | M -- C:\Program Files\Winamp\winamp.exe

PRC - [2008-04-14 18:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe

PRC - [2007-02-10 04:29:56 | 000,089,968 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe

PRC - [2007-02-10 04:29:54 | 029,178,224 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe

PRC - [2007-02-10 04:29:48 | 000,242,544 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe

PRC - [2006-10-25 08:32:36 | 000,036,864 | RHS- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\EXPLORER.EXE

PRC - [2005-03-24 14:20:30 | 000,077,824 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE

========== Modules (SafeList) ==========

MOD - [2010-03-22 10:02:42 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\ToOwo\Moje dokumenty\OTL.exe

MOD - [2008-07-25 10:17:20 | 000,635,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcr80.dll

MOD - [2008-04-13 18:37:57 | 000,208,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rsaenh.dll

MOD - [2006-12-01 21:56:00 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\ATL80.dll

MOD - [2006-10-26 23:48:42 | 002,210,608 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

MOD - [2006-10-26 23:48:34 | 000,955,680 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\GrooveUtil.dll

MOD - [2006-10-26 23:48:02 | 000,222,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

MOD - [2006-10-26 23:47:40 | 000,022,808 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\GrooveNew.dll

========== Win32 Services (SafeList) ==========

SRV - [2007-02-10 04:29:56 | 000,089,968 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe -- (SQLWriter)

SRV - [2007-02-10 04:29:54 | 029,178,224 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe -- (MSSQL$INSERTGT) SQL Server (INSERTGT)

SRV - [2007-02-10 04:29:48 | 000,242,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe -- (SQLBrowser)

SRV - [2005-10-14 01:50:20 | 000,045,272 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe -- (MSSQLServerADHelper)

========== Driver Services (SafeList) ==========

DRV - [2005-04-12 04:42:16 | 000,011,904 | R--- | M] (Silicon Integrated Systems Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\srvkp.sys -- (SiSkp)

DRV - [2005-04-12 04:08:44 | 000,247,296 | R--- | M] (Silicon Integrated Systems Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sisgrp.sys -- (SiS315)

DRV - [2005-03-25 08:04:40 | 002,314,560 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)

DRV - [2004-11-04 17:43:58 | 000,032,768 | R--- | M] (SiS Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sisnicxp.sys -- (SISNICXP)

DRV - [2004-08-03 23:31:36 | 000,032,768 | ---- | M] (SiS Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sisnic.sys -- (SISNIC)

DRV - [2003-03-24 18:50:46 | 000,004,096 | R--- | M] (Silicon Integrated Systems Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\siside.sys -- (SiSide)

DRV - [2002-10-16 16:14:46 | 000,049,024 | R--- | M] (Windows ® 2000 DDK provider) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\sisidex.sys -- (sisidex)

DRV - [2002-08-19 18:19:08 | 000,009,472 | R--- | M] (Silicon Integrated Systems Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sisperf.sys -- (sisperf)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE - HKLM..\URLSearchHook: {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.wp.pl/

IE - HKCU..\URLSearchHook: {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)

IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.theprizeday.com/today.php|http://www.google.pl/firefox?client=firefox-arls=org.mozilla:pl:official"

FF - prefs.js..extensions.enabledItems: {F2DDDB92-1605-4260-9B25-45A4DAE87B50}:1.0

FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\Components: C:\Program Files\Mozilla Firefox\components [2010-02-04 13:58:07 | 000,000,000 | ---D | M]

FF - HKLM\software\mozilla\Mozilla Firefox 3.6\extensions\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-02-04 13:58:07 | 000,000,000 | ---D | M]

[2010-01-26 12:37:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ToOwo\Dane aplikacji\Mozilla\Extensions

[2010-03-22 08:09:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ToOwo\Dane aplikacji\Mozilla\Firefox\Profiles\j60sh028.default\extensions

[2010-01-26 12:38:41 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\ToOwo\Dane aplikacji\Mozilla\Firefox\Profiles\j60sh028.default\extensions{20a82645-c095-46ed-80e3-08825760534b}

[2010-03-22 08:09:34 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions

2010-02-01 08:00:33 | 000,000,000 | ---D | M -- C:\Program Files\Mozilla Firefox\extensions{F2DDDB92-1605-4260-9B25-45A4DAE87B50}

2010-01-16 02:08:36 | 000,002,767 | ---- | M -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml

2010-01-16 02:08:36 | 000,001,406 | ---- | M -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml

2010-01-16 02:08:36 | 000,000,917 | ---- | M -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml

2010-01-16 02:08:36 | 000,000,858 | ---- | M -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml

2010-01-16 02:08:36 | 000,001,183 | ---- | M -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml

2010-01-16 02:08:36 | 000,001,683 | ---- | M -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2004-08-04 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)

O2 - BHO: (Winamp Toolbar Loader) - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)

O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)

O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)

O3 - HKLM..\Toolbar: (Winamp Toolbar) - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)

O3 - HKCU..\Toolbar\WebBrowser: (Winamp Toolbar) - {EBF2BA02-9094-4C5A-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)

O4 - HKLM..\Run: [siSPower] C:\WINDOWS\System32\SiSPower.dll (Silicon Integrated Systems Corporation)

O4 - HKLM..\Run: [soundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)

O4 - HKCU..\Run: [EXPLORER.EXE] C:\WINDOWS\System32\EXPLORER.EXE (Microsoft Corporation)

O4 - HKCU..\Run: [wsctf.exe] File not found

O4 - HKCU..\RunOnce: [shockwave Updater] C:\WINDOWS\System32\Adobe\Shockwave 11\SwHelper_1151601.exe -Update -1151601 -Mozilla\4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident\4.0; File not found

O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1

O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145

O8 - Extra context menu item: Winamp Search - C:\Documents and Settings\All Users\Dane aplikacji\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html ()

O8 - Extra context menu item: Eksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)

O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)

O9 - Extra 'Tools' menuitem : Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)

O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)

O9 - Extra Button: Zaznaczanie HP Smart - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)

O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shoc ... tor/sw.cab (Shockwave ActiveX Control)

O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)

O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)

O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)

O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\System32\EXPLORER.EXE (Microsoft Corporation)

O20 - HKLM Winlogon: UserInit - (EXPLORER.EXE) - C:\WINDOWS\System32\EXPLORER.EXE (Microsoft Corporation)

O24 - Desktop Components:0 () - file:///C:/Documents%20and%20Settings/ToOwo/Pulpit/001

O24 - Desktop Components:1 (Moja bieżąca strona główna) - About:Home

O24 - Desktop WallPaper: C:\Documents and Settings\ToOwo\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp

O24 - Desktop BackupWallPaper: C:\Documents and Settings\ToOwo\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp

O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)

O32 - HKLM CDRom: AutoRun - 1

O32 - AutoRun File - 2009-07-17 11:48:50 | 000,000,000 | ---- | M - C:\AUTOEXEC.BAT -- [NTFS]

O33 - MountPoints2{02d8b740-a746-11de-8a14-00508d84af18}\Shell - "" = AutoRun

O33 - MountPoints2{02d8b740-a746-11de-8a14-00508d84af18}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -- File not found

O33 - MountPoints2{02d8b741-a746-11de-8a14-00508d84af18}\Shell\AutoRun\command - "" = G:\EXPLORER.EXE -- File not found

O33 - MountPoints2{02d8b741-a746-11de-8a14-00508d84af18}\Shell\explore\Command - "" = G:\EXPLORER.EXE -- File not found

O33 - MountPoints2{02d8b741-a746-11de-8a14-00508d84af18}\Shell\open\Command - "" = G:\EXPLORER.EXE -- File not found

O33 - MountPoints2{08d47a17-a9a7-11de-8a1b-00508d84af18}\Shell\AutoRun\command - "" = F:\EXPLORER.EXE -- File not found

O33 - MountPoints2{08d47a17-a9a7-11de-8a1b-00508d84af18}\Shell\explore\Command - "" = F:\EXPLORER.EXE -- File not found

O33 - MountPoints2{08d47a17-a9a7-11de-8a1b-00508d84af18}\Shell\open\Command - "" = F:\EXPLORER.EXE -- File not found

O33 - MountPoints2{3f22c03e-25cc-11df-8ad7-00508d84af18}\Shell\AutoRun\command - "" = F:\EXPLORER.EXE -- File not found

O33 - MountPoints2{3f22c03e-25cc-11df-8ad7-00508d84af18}\Shell\explore\Command - "" = F:\EXPLORER.EXE -- File not found

O33 - MountPoints2{3f22c03e-25cc-11df-8ad7-00508d84af18}\Shell\open\Command - "" = F:\EXPLORER.EXE -- File not found

O33 - MountPoints2{df124859-8bd9-11de-89ed-00508d84af18}\Shell\explore\Command - "" = F:\EXPLORER.EXE -- File not found

O34 - HKLM BootExecute: (autocheck autochk *) - File not found

O35 - HKLM..comfile [open] -- "%1" %*

O35 - HKLM..exefile [open] -- "%1" %*

O37 - HKLM...com [@ = comfile] -- "%1" %*

O37 - HKLM...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2010-03-22 10:02:34 | 000,555,520 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\ToOwo\Moje dokumenty\OTL.exe

[2010-03-22 09:54:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ToOwo\Pulpit\cennik Vileda

[2010-03-22 09:26:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ToOwo\Ustawienia lokalne\Dane aplikacji\Help

[2010-03-22 09:26:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ToOwo\Dane aplikacji\Help

[2010-03-11 07:56:28 | 003,558,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\moviemk.exe

[2010-02-26 09:08:30 | 000,036,864 | RHS- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\EXPLORER.EXE

[2009-09-15 07:28:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Google

[2009-09-15 07:23:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google

[2009-08-12 07:32:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft

[2009-07-17 12:10:47 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft

[2009-07-17 11:52:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft

[2009-07-17 11:48:42 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft

========== Files - Modified Within 30 Days ==========

2010-03-22 10:03:27 | 000,293,376 | ---- | M -- C:\Documents and Settings\ToOwo\Moje dokumenty\vjpf9tmy.exe

[2010-03-22 10:02:42 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\ToOwo\Moje dokumenty\OTL.exe

2010-03-22 09:54:46 | 003,407,872 | -H-- | M -- C:\Documents and Settings\ToOwo\NTUSER.DAT

2010-03-22 09:30:02 | 000,000,006 | -H-- | M -- C:\WINDOWS\tasks\SA.DAT

2010-03-22 09:29:59 | 000,002,048 | --S- | M -- C:\WINDOWS\bootstat.dat

2010-03-22 09:29:10 | 000,000,188 | -HS- | M -- C:\Documents and Settings\ToOwo\ntuser.ini

2010-03-22 08:21:07 | 001,340,553 | ---- | M -- C:\Documents and Settings\ToOwo\Pulpit\skanowanie0001.jpg

2010-03-22 07:43:40 | 000,013,646 | ---- | M -- C:\WINDOWS\System32\wpa.dbl

2010-03-17 12:32:59 | 000,000,084 | ---- | M -- C:\WINDOWS\InsRpPrint.INI

2010-02-24 16:10:22 | 000,001,374 | ---- | M -- C:\WINDOWS\imsins.BAK

========== Files Created - No Company Name ==========

2010-03-22 10:03:24 | 000,293,376 | ---- | C -- C:\Documents and Settings\ToOwo\Moje dokumenty\vjpf9tmy.exe

2010-03-18 09:58:32 | 001,340,553 | ---- | C -- C:\Documents and Settings\ToOwo\Pulpit\skanowanie0001.jpg

2009-10-09 08:31:50 | 000,178,176 | ---- | C -- C:\WINDOWS\System32\unrar.dll

2009-10-09 08:31:49 | 000,000,038 | ---- | C -- C:\WINDOWS\avisplitter.ini

2009-10-09 08:31:46 | 003,596,288 | ---- | C -- C:\WINDOWS\System32\qt-dx331.dll

2009-10-09 08:31:46 | 000,881,664 | ---- | C -- C:\WINDOWS\System32\xvidcore.dll

2009-10-09 08:31:46 | 000,205,824 | ---- | C -- C:\WINDOWS\System32\xvidvfw.dll

2009-10-09 08:31:44 | 000,000,547 | ---- | C -- C:\WINDOWS\System32\ff_vfw.dll.manifest

2009-10-09 08:31:43 | 000,085,504 | ---- | C -- C:\WINDOWS\System32\ff_vfw.dll

2009-10-06 14:59:19 | 000,162,384 | ---- | C -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat

2009-09-10 12:52:54 | 000,000,084 | ---- | C -- C:\WINDOWS\InsRpPrint.INI

2009-08-12 09:08:00 | 000,009,216 | ---- | C -- C:\Documents and Settings\ToOwo\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

2009-07-20 09:56:33 | 000,001,853 | ---- | C -- C:\Documents and Settings\All Users\Dane aplikacji\hpzinstall.log

2009-07-17 12:27:53 | 000,106,496 | R--- | C -- C:\WINDOWS\System32\vshp1020.dll

2009-07-17 11:57:35 | 000,000,164 | ---- | C -- C:\WINDOWS\avrack.ini

2009-07-17 11:57:32 | 000,156,672 | ---- | C -- C:\WINDOWS\System32\RTLCPAPI.dll

2009-07-17 11:56:41 | 000,075,513 | ---- | C -- C:\WINDOWS\VGAsetup.ini

2009-07-17 11:56:24 | 000,072,641 | ---- | C -- C:\WINDOWS\System32\VGAunistlog.ini

2009-07-17 11:56:11 | 000,139,264 | R--- | C -- C:\WINDOWS\System32\IDEproperty.dll

End of report

Prosze o porade jak usunąć te złośliwe oprogramowanie !!


(Leon$) #2

Wyłącz przywracanie systemu na wszystkich dyskach.http://support.microsoft.com/kb/310405/pl

OTL w oknie Custom Scans-Fixes wklej następujący skrypt:

Kliknij w Run Fix. Zatwierdź restart komputera.

Wylecz pendriva lub kartę pamięci http://www.softpedia.com/get/Security/S ... Tool.shtml

Flash Disinfector http://www.searchengines.pl/index.php?s ... ntry369724

lub format

potem nowy skan OTL i pokaż log

:slight_smile: