Problem z rundll C:WINDOWS\iteyojoq.dll

Mam problem z RUNDLL proszę o pomoc :slight_smile:

dziękuję i pozdrawiam

himas

Pobierz OTL otl-gmer-rsit-dds-inne-instrukcje-t370405.html przeskanuj daj log OTL.txt oraz Extras.txt.

:slight_smile:

Dodane 25.08.2010 (Śr) 17:04

OTL w oknie Custom Scans-Fixes wklej następujący skrypt:

Kliknij w Run Fix. Zatwierdź restart komputera.

potem nowy log OTL robiony opcją Run Scan

:slight_smile:

Na PW nie odpowiadaj więcej [-X

Witam ponownie

Zrobiłem tak jak pisałeś i otrzymałem nowy OTL Txt

OTL logfile created on: 2010-08-27 15:29:35 - Run 2

OTL by OldTimer - Version 3.2.10.0 Folder = C:\Documents and Settings\szymon\Pulpit

Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 7.0.5730.13)

Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

222,00 Mb Total Physical Memory | 35,00 Mb Available Physical Memory | 16,00% Memory free

545,00 Mb Paging File | 168,00 Mb Available in Paging File | 31,00% Paging File free

Paging file location(s): C:\pagefile.sys 336 672 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

Drive C: | 30,15 Gb Total Space | 10,11 Gb Free Space | 33,52% Space Free | Partition Type: NTFS

Drive D: | 7,11 Gb Total Space | 1,76 Gb Free Space | 24,73% Space Free | Partition Type: NTFS

Drive E: | 4,06 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS

Drive F: | 14,46 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

G: Drive not present or media not loaded

H: Drive not present or media not loaded

I: Drive not present or media not loaded

Computer Name: SZYMEK-700413B7

Current User Name: szymon

Logged in as Administrator.

Current Boot Mode: Normal

Scan Mode: Current user

Company Name Whitelist: On

Skip Microsoft Files: On

File Age = 90 Days

Output = Standard

Quick Scan

========== Processes (SafeList) ==========

PRC - [2010-08-25 15:46:21 | 000,575,488 | ---- | M] (OldTimer Tools) – C:\Documents and Settings\szymon\Pulpit\OTL_3.2.10(dobreprogramy.pl).exe

PRC - [2010-06-28 22:57:18 | 002,837,864 | ---- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastUI.exe

PRC - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe

PRC - [2010-04-24 10:36:03 | 000,114,688 | ---- | M] () – C:\Program Files\Optus Wireless Broadband\Optus Wireless Broadband.exe

PRC - [2009-10-30 13:57:08 | 000,369,200 | ---- | M] (DT Soft Ltd) – C:\Program Files\DAEMON Tools Lite\DTLite.exe

PRC - [2009-03-12 22:08:15 | 000,039,408 | ---- | M] (Google Inc.) – C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] () – C:\WINDOWS\system32\winlogon.exe

PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] () – C:\WINDOWS\explorer.exe

PRC - [2007-10-25 13:51:48 | 000,380,928 | ---- | M] (Creative Technology Ltd) – C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe

PRC - [2007-07-17 12:03:38 | 000,868,352 | ---- | M] () – C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe

PRC - [2006-05-16 17:51:00 | 000,057,344 | ---- | M] (OLYMPUS IMAGING CORP.) – C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe

========== Modules (SafeList) ==========

MOD - [2010-08-25 15:46:21 | 000,575,488 | ---- | M] (OldTimer Tools) – C:\Documents and Settings\szymon\Pulpit\OTL_3.2.10(dobreprogramy.pl).exe

MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) – C:\WINDOWS\system32\msscript.ocx

========== Win32 Services (SafeList) ==========

SRV - File not found [Disabled | Stopped] – C:\WINDOWS\System32\hidserv.dll – (HidServ)

SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Web Scanner)

SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Mail Scanner)

SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Antivirus)

========== Driver Services (SafeList) ==========

DRV - [2010-06-28 22:37:52 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aswTdi.sys – (aswTdi)

DRV - [2010-06-28 22:37:30 | 000,165,456 | ---- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aswSP.sys – (aswSP)

DRV - [2010-06-28 22:33:13 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Running] – C:\WINDOWS\System32\drivers\aswRdr.sys – (aswRdr)

DRV - [2010-06-28 22:32:45 | 000,100,176 | ---- | M] (ALWIL Software) [File_System | Auto | Running] – C:\WINDOWS\System32\drivers\aswmon2.sys – (aswMon2)

DRV - [2010-06-28 22:32:33 | 000,017,744 | ---- | M] (ALWIL Software) [File_System | Auto | Running] – C:\WINDOWS\System32\drivers\aswFsBlk.sys – (aswFsBlk)

DRV - [2010-06-28 22:32:16 | 000,028,880 | ---- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aavmker4.sys – (Aavmker4)

DRV - [2010-03-21 13:11:54 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] – C:\WINDOWS\System32\Drivers\sptd.sys – (sptd)

DRV - [2009-09-10 14:55:52 | 000,102,528 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\ewusbmdm.sys – (hwdatacard)

DRV - [2009-06-22 20:00:48 | 000,112,640 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\ewusbnet.sys – (ewusbnet)

DRV - [2008-05-02 08:48:55 | 000,062,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] – C:\WINDOWS\System32\drivers\si3112.sys – (Si3112)

DRV - [2008-04-14 00:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\RTL8139.sys – (rtl8139) Sterownik NT karty Realtek RTL8139(A/B/C)

DRV - [2005-05-11 01:33:12 | 000,032,256 | ---- | M] (B.H.A Corporation) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\cdrbsdrv.sys – (cdrbsdrv)

DRV - [2004-06-28 14:03:42 | 000,276,480 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\camchal.sys – (CAMCHALA)

DRV - [2004-06-28 14:03:02 | 000,292,864 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\camcaud.sys – (CAMCAUD)

DRV - [2004-03-10 11:40:00 | 000,199,552 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\HSFHWICH.sys – (HSFHWICH)

DRV - [2004-03-10 11:37:00 | 000,682,624 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\HSF_CNXT.sys – (winachsf)

DRV - [2004-03-10 11:35:00 | 001,041,536 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\HSF_DP.sys – (HSF_DP)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/

IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 0

FF - HKLM\software\mozilla\Firefox\Extensions\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-04-22 16:21:02 | 000,000,000 | —D | M]

FF - HKLM\software\mozilla\Firefox\Extensions\{0854D035-2F97-4FFA-A48C-D3A342644666}: C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji{0854D035-2F97-4FFA-A48C-D3A342644666} [2010-07-20 12:19:18 | 000,000,000 | —D | M]

O1 HOSTS File: ([2001-10-26 17:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)

O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll (Google Inc.)

O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)

O3 - HKLM…\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O3 - HKCU…\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O4 - HKLM…\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)

O4 - HKLM…\Run: [CTCheck] C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe (Creative Technology Ltd)

O4 - HKLM…\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe (OLYMPUS IMAGING CORP.)

O4 - HKCU…\Run: [ALLUpdate] C:\Program Files\ALLPlayer\ALLUpdate.exe ()

O4 - HKCU…\Run: [CTSyncU.exe] C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe ()

O4 - HKCU…\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)

O4 - HKCU…\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe (OLYMPUS IMAGING CORP.)

O4 - HKCU…\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)

O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145

O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)

O8 - Extra context menu item: Funkcja Google Sidewiki - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.)

O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)

O9 - Extra ‘Tools’ menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)

O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)

O9 - Extra Button: Pokaż lub ukryj HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s … wflash.cab (Shockwave Flash Object)

O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)

O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)

O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)

O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe ()

O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\sdra64.exe) - C:\WINDOWS\System32\sdra64.exe File not found

O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)

O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home

O24 - Desktop WallPaper: C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp

O24 - Desktop BackupWallPaper: C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp

O32 - HKLM CDRom: AutoRun - 1

O32 - AutoRun File - [2008-06-24 21:21:41 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT – [NTFS]

O32 - AutoRun File - [2009-08-23 04:42:34 | 000,143,360 | R— | M] (Huawei Technologies Co., Ltd.) - F:\AutoRun.exe – [CDFS]

O32 - AutoRun File - [2008-07-25 23:35:24 | 000,000,045 | R— | M] () - F:\AUTORUN.INF – [CDFS]

O34 - HKLM BootExecute: (autocheck autochk *) - File not found

O35 - HKLM…comfile [open] – “%1” %*

O35 - HKLM…exefile [open] – “%1” %*

O37 - HKLM…com [@ = comfile] – “%1” %*

O37 - HKLM…exe [@ = exefile] – “%1” %*

========== Files/Folders - Created Within 90 Days ==========

[2010-08-27 14:36:37 | 000,000,000 | —D | C] – C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\Windows Server

[2010-08-26 18:03:43 | 000,000,000 | —D | C] – C:_OTL

[2010-08-25 15:46:20 | 000,575,488 | ---- | C] (OldTimer Tools) – C:\Documents and Settings\szymon\Pulpit\OTL_3.2.10(dobreprogramy.pl).exe

[2010-08-16 16:43:30 | 001,123,840 | ---- | C] (Karol Winnicki) – C:\Documents and Settings\szymon\Pulpit\BESTplayer.exe

[2010-08-16 16:27:00 | 011,258,945 | ---- | C] (ALLPlayer ) – C:\Documents and Settings\szymon\Pulpit\ALLPlayerPL_4469(dobreprogramy.pl).exe

[2010-08-12 13:41:11 | 000,000,000 | —D | C] – C:\MySlideshow

[2010-08-12 12:54:16 | 000,000,000 | —D | C] – C:\WINDOWS\System32\appmgmt

[2010-08-09 15:37:07 | 000,165,456 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswSP.sys

[2010-08-09 15:37:07 | 000,017,744 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswFsBlk.sys

[2010-08-09 15:37:05 | 000,023,376 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswRdr.sys

[2010-08-09 15:37:03 | 000,046,672 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswTdi.sys

[2010-08-09 15:36:59 | 000,100,176 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon2.sys

[2010-08-09 15:36:59 | 000,094,544 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon.sys

[2010-08-09 15:36:58 | 000,028,880 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aavmker4.sys

[2010-08-09 15:32:24 | 000,038,848 | ---- | C] (ALWIL Software) – C:\WINDOWS\avastSS.scr

[2010-08-09 15:32:19 | 000,165,032 | ---- | C] (AVAST Software) – C:\WINDOWS\System32\aswBoot.exe

[2010-08-09 15:30:45 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Alwil Software

[2010-07-29 16:43:07 | 000,000,000 | -HSD | C] – C:\WINDOWS\System32\lowsec

[2010-07-20 12:19:17 | 000,000,000 | —D | C] – C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji{0854D035-2F97-4FFA-A48C-D3A342644666}

[2010-06-22 16:53:41 | 000,000,000 | —D | C] – C:\Documents and Settings\szymon\Dane aplikacji\PriceGong

[3 C:\WINDOWS*.tmp files -> C:\WINDOWS*.tmp ->]

[1 C:\WINDOWS\System32*.tmp files -> C:\WINDOWS\System32*.tmp ->]

========== Files - Modified Within 90 Days ==========

[2010-08-27 15:21:08 | 000,000,664 | ---- | M] () – C:\WINDOWS\System32\d3d9caps.dat

[2010-08-27 15:00:04 | 000,001,032 | ---- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job

[2010-08-27 14:59:53 | 000,000,300 | -HS- | M] () – C:\WINDOWS\tasks\Svlkynen.job

[2010-08-27 14:59:53 | 000,000,006 | -H-- | M] () – C:\WINDOWS\tasks\SA.DAT

[2010-08-27 14:59:34 | 000,002,048 | --S- | M] () – C:\WINDOWS\bootstat.dat

[2010-08-27 14:56:36 | 000,000,188 | -HS- | M] () – C:\Documents and Settings\szymon\ntuser.ini

[2010-08-27 14:56:34 | 007,077,888 | -H-- | M] () – C:\Documents and Settings\szymon\NTUSER.DAT

[2010-08-27 14:36:18 | 000,001,036 | ---- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

[2010-08-26 18:10:35 | 000,002,206 | ---- | M] () – C:\WINDOWS\System32\wpa.dbl

[2010-08-25 15:46:21 | 000,575,488 | ---- | M] (OldTimer Tools) – C:\Documents and Settings\szymon\Pulpit\OTL_3.2.10(dobreprogramy.pl).exe

[2010-08-24 14:08:48 | 000,002,267 | ---- | M] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\Skype.lnk

[2010-08-20 20:29:07 | 000,000,640 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\ALLPlayer V4.4.lnk

[2010-08-20 18:03:37 | 000,198,224 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\kod.exe

[2010-08-17 16:39:31 | 000,015,360 | ---- | M] () – C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[2010-08-16 16:47:57 | 000,211,364 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\klcodec604b.exe

[2010-08-16 16:43:32 | 001,123,840 | ---- | M] (Karol Winnicki) – C:\Documents and Settings\szymon\Pulpit\BESTplayer.exe

[2010-08-16 16:27:10 | 011,258,945 | ---- | M] (ALLPlayer ) – C:\Documents and Settings\szymon\Pulpit\ALLPlayerPL_4469(dobreprogramy.pl).exe

[2010-08-16 15:48:00 | 000,000,664 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\Napi-projekt.lnk

[2010-08-12 14:59:38 | 000,001,729 | ---- | M] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\Adobe Reader 9.lnk

[2010-08-12 13:06:17 | 000,000,210 | ---- | M] () – C:\WINDOWS\Wininit.ini

[2010-08-11 14:28:03 | 000,000,000 | ---- | M] () – C:\WINDOWS\Gpiwisiduba.bin

[2010-08-11 14:27:54 | 000,000,120 | ---- | M] () – C:\WINDOWS\Qnibikixezibe.dat

[2010-08-09 15:37:10 | 000,001,700 | ---- | M] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\avast! Free Antivirus.lnk

[2010-08-09 15:37:00 | 000,002,645 | ---- | M] () – C:\WINDOWS\System32\CONFIG.NT

[2010-08-09 14:57:11 | 049,368,328 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\setup_av_free_pol.exe

[2010-07-14 21:02:32 | 000,329,728 | ---- | M] () – C:\Documents and Settings\szymon\Moje dokumenty\14114254,zalacznik.doc

[2010-07-14 19:52:59 | 000,280,095 | ---- | M] () – C:\Documents and Settings\szymon\Moje dokumenty\cutting assaiment.docx

[2010-06-28 22:57:33 | 000,038,848 | ---- | M] (ALWIL Software) – C:\WINDOWS\avastSS.scr

[2010-06-28 22:57:12 | 000,165,032 | ---- | M] (AVAST Software) – C:\WINDOWS\System32\aswBoot.exe

[2010-06-28 22:37:52 | 000,046,672 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswTdi.sys

[2010-06-28 22:37:30 | 000,165,456 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswSP.sys

[2010-06-28 22:33:13 | 000,023,376 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswRdr.sys

[2010-06-28 22:32:45 | 000,100,176 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon2.sys

[2010-06-28 22:32:42 | 000,094,544 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon.sys

[2010-06-28 22:32:33 | 000,017,744 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswFsBlk.sys

[2010-06-28 22:32:16 | 000,028,880 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aavmker4.sys

[2010-06-27 18:31:32 | 000,198,098 | ---- | M] () – C:\Documents and Settings\szymon\Moje dokumenty\Kosmetyczka z 13.docx

[2010-06-23 13:06:34 | 000,606,875 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\WNIOSEK TPG PAGE 2.jpg

[2010-06-23 13:04:51 | 000,839,700 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\WNIOSEK TPG 1.jpg

[2010-05-31 10:10:34 | 000,000,552 | ---- | M] () – C:\WINDOWS\System32\d3d8caps.dat

[3 C:\WINDOWS*.tmp files -> C:\WINDOWS*.tmp ->]

[1 C:\WINDOWS\System32*.tmp files -> C:\WINDOWS\System32*.tmp ->]

========== Files Created - No Company Name ==========

[2010-08-20 18:03:27 | 000,198,224 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\kod.exe

[2010-08-16 16:47:47 | 000,211,364 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\klcodec604b.exe

[2010-08-16 16:29:18 | 000,000,640 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\ALLPlayer V4.4.lnk

[2010-08-16 16:29:10 | 000,881,664 | ---- | C] () – C:\WINDOWS\System32\xvidcore.dll

[2010-08-16 16:29:09 | 000,258,048 | ---- | C] () – C:\WINDOWS\System32\libFLAC.dll

[2010-08-16 15:48:00 | 000,000,664 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\Napi-projekt.lnk

[2010-08-12 15:14:21 | 000,000,664 | ---- | C] () – C:\WINDOWS\System32\d3d9caps.dat

[2010-08-12 14:59:37 | 000,001,729 | ---- | C] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\Adobe Reader 9.lnk

[2010-08-12 13:06:17 | 000,000,210 | ---- | C] () – C:\WINDOWS\Wininit.ini

[2010-08-09 15:37:10 | 000,001,700 | ---- | C] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\avast! Free Antivirus.lnk

[2010-08-09 14:55:40 | 049,368,328 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\setup_av_free_pol.exe

[2010-07-20 12:19:23 | 000,000,000 | ---- | C] () – C:\WINDOWS\Gpiwisiduba.bin

[2010-07-20 12:19:22 | 000,000,120 | ---- | C] () – C:\WINDOWS\Qnibikixezibe.dat

[2010-07-20 12:16:58 | 000,000,300 | -HS- | C] () – C:\WINDOWS\tasks\Svlkynen.job

[2010-07-18 18:49:12 | 000,002,267 | ---- | C] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\Skype.lnk

[2010-07-14 21:02:31 | 000,329,728 | ---- | C] () – C:\Documents and Settings\szymon\Moje dokumenty\14114254,zalacznik.doc

[2010-07-08 17:47:51 | 001,797,569 | ---- | C] () – C:\Documents and Settings\szymon\Moje dokumenty\zdjęcie 026.jpg

[2010-06-25 13:16:28 | 000,280,095 | ---- | C] () – C:\Documents and Settings\szymon\Moje dokumenty\cutting assaiment.docx

[2010-06-23 13:06:13 | 000,606,875 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\WNIOSEK TPG PAGE 2.jpg

[2010-06-23 13:04:17 | 000,839,700 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\WNIOSEK TPG 1.jpg

[2010-06-21 15:22:06 | 000,198,098 | ---- | C] () – C:\Documents and Settings\szymon\Moje dokumenty\Kosmetyczka z 13.docx

[2010-05-31 10:10:34 | 000,000,552 | ---- | C] () – C:\WINDOWS\System32\d3d8caps.dat

[2010-03-21 13:11:53 | 000,691,696 | ---- | C] () – C:\WINDOWS\System32\drivers\sptd.sys

[2009-12-11 00:30:19 | 000,178,176 | ---- | C] () – C:\WINDOWS\System32\unrar.dll

[2009-12-09 23:40:00 | 000,000,051 | ---- | C] () – C:\WINDOWS\ete40.ini

[2009-09-22 16:09:50 | 000,000,754 | ---- | C] () – C:\WINDOWS\WORDPAD.INI

[2009-08-13 22:20:31 | 000,003,420 | ---- | C] () – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\hpzinstall.log

[2009-05-31 23:05:25 | 000,015,360 | ---- | C] () – C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[2008-05-03 09:24:01 | 000,000,082 | ---- | C] () – C:\WINDOWS\System32\oeminfo.ini

========== LOP Check ==========

[2010-08-09 15:30:45 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Alwil Software

[2009-11-19 00:10:27 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Anvsoft

[2010-01-29 07:51:16 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\BVRP Software

[2009-10-01 23:08:52 | 000,000,000 | -H-D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\CanonBJ

[2010-03-21 13:11:29 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\DAEMON Tools Lite

[2010-03-21 12:31:05 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\DAEMON Tools Pro

[2010-08-12 14:03:21 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\TEMP

[2010-08-16 16:44:05 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\BESTplayer

[2010-03-21 13:32:40 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\DAEMON Tools Lite

[2010-03-21 12:31:05 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\DAEMON Tools Pro

[2009-12-13 14:35:02 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\FashionCrazePol

[2009-12-11 21:27:16 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\OLYMPUS

[2010-08-11 14:25:26 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\PriceGong

[2010-08-27 14:59:53 | 000,000,300 | -HS- | M] () – C:\WINDOWS\Tasks\Svlkynen.job

========== Purity Check ==========

========== Custom Scans ==========

< >

< OTL logfile created on: 2010-08-27 15:14:00 - Run 2 >

< OTL by OldTimer - Version 3.2.10.0 Folder = C:\Documents and Settings\szymon\Pulpit >

< Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation >

< Internet Explorer (Version = 7.0.5730.13) >

< Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd >

< >

< 222,00 Mb Total Physical Memory | 21,00 Mb Available Physical Memory | 9,00% Memory free >

< 545,00 Mb Paging File | 133,00 Mb Available in Paging File | 24,00% Paging File free >

< Paging file location(s): C:\pagefile.sys 336 672 [binary data] >

< >

< %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files >

< Drive C: | 30,15 Gb Total Space | 10,11 Gb Free Space | 33,53% Space Free | Partition Type: NTFS >

< Drive D: | 7,11 Gb Total Space | 1,76 Gb Free Space | 24,73% Space Free | Partition Type: NTFS >

< Drive E: | 4,06 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS >

< Drive F: | 14,46 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS >

< G: Drive not present or media not loaded >

< H: Drive not present or media not loaded >

< I: Drive not present or media not loaded >

< >

< Computer Name: SZYMEK-700413B7 >

< Current User Name: szymon >

< Logged in as Administrator. >

< >

< Current Boot Mode: Normal >

< Scan Mode: Current user >

< Company Name Whitelist: On >

< Skip Microsoft Files: On >

< File Age = 90 Days >

< Output = Standard >

< Quick Scan >

< >

< ========== Processes (SafeList) ========== >

Invalid Switch: color]

< >

< PRC - [2010-08-25 15:46:21 | 000,575,488 | ---- | M] (OldTimer Tools) – C:\Documents and Settings\szymon\Pulpit\OTL_3.2.10(dobreprogramy.pl).exe >

< PRC - [2010-06-28 22:57:18 | 002,837,864 | ---- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastUI.exe >

< PRC - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe >

< PRC - [2010-04-24 10:36:03 | 000,114,688 | ---- | M] () – C:\Program Files\Optus Wireless Broadband\Optus Wireless Broadband.exe >

< PRC - [2009-10-30 13:57:08 | 000,369,200 | ---- | M] (DT Soft Ltd) – C:\Program Files\DAEMON Tools Lite\DTLite.exe >

< PRC - [2009-03-12 22:08:15 | 000,039,408 | ---- | M] (Google Inc.) – C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe >

< PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] () – C:\WINDOWS\system32\winlogon.exe >

< PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] () – C:\WINDOWS\explorer.exe >

< PRC - [2007-10-25 13:51:48 | 000,380,928 | ---- | M] (Creative Technology Ltd) – C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe >

< PRC - [2007-07-17 12:03:38 | 000,868,352 | ---- | M] () – C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe >

< PRC - [2006-05-16 17:51:00 | 000,057,344 | ---- | M] (OLYMPUS IMAGING CORP.) – C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe >

< >

< >

< ========== Modules (SafeList) ========== >

Invalid Switch: color]

< >

< MOD - [2010-08-25 15:46:21 | 000,575,488 | ---- | M] (OldTimer Tools) – C:\Documents and Settings\szymon\Pulpit\OTL_3.2.10(dobreprogramy.pl).exe >

< MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) – C:\WINDOWS\system32\msscript.ocx >

< >

< >

< ========== Win32 Services (SafeList) ========== >

Invalid Switch: color]

< >

< SRV - File not found [Disabled | Stopped] – C:\WINDOWS\System32\hidserv.dll – (HidServ) >

< SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Web Scanner) >

< SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Mail Scanner) >

< SRV - [2010-06-28 22:57:15 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Antivirus) >

< >

< >

< ========== Driver Services (SafeList) ========== >

Invalid Switch: color]

< >

< DRV - [2010-06-28 22:37:52 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aswTdi.sys – (aswTdi) >

< DRV - [2010-06-28 22:37:30 | 000,165,456 | ---- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aswSP.sys – (aswSP) >

< DRV - [2010-06-28 22:33:13 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Running] – C:\WINDOWS\System32\drivers\aswRdr.sys – (aswRdr) >

< DRV - [2010-06-28 22:32:45 | 000,100,176 | ---- | M] (ALWIL Software) [File_System | Auto | Running] – C:\WINDOWS\System32\drivers\aswmon2.sys – (aswMon2) >

< DRV - [2010-06-28 22:32:33 | 000,017,744 | ---- | M] (ALWIL Software) [File_System | Auto | Running] – C:\WINDOWS\System32\drivers\aswFsBlk.sys – (aswFsBlk) >

< DRV - [2010-06-28 22:32:16 | 000,028,880 | ---- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\aavmker4.sys – (Aavmker4) >

< DRV - [2010-03-21 13:11:54 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] – C:\WINDOWS\System32\Drivers\sptd.sys – (sptd) >

< DRV - [2009-09-10 14:55:52 | 000,102,528 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\ewusbmdm.sys – (hwdatacard) >

< DRV - [2009-06-22 20:00:48 | 000,112,640 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\ewusbnet.sys – (ewusbnet) >

< DRV - [2008-05-02 08:48:55 | 000,062,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] – C:\WINDOWS\System32\drivers\si3112.sys – (Si3112) >

< DRV - [2008-04-14 00:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\RTL8139.sys – (rtl8139) Sterownik NT karty Realtek RTL8139(A/B/C) >

Invalid Switch: C)

< DRV - [2005-05-11 01:33:12 | 000,032,256 | ---- | M] (B.H.A Corporation) [Kernel | System | Running] – C:\WINDOWS\System32\drivers\cdrbsdrv.sys – (cdrbsdrv) >

< DRV - [2004-06-28 14:03:42 | 000,276,480 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\camchal.sys – (CAMCHALA) >

< DRV - [2004-06-28 14:03:02 | 000,292,864 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\camcaud.sys – (CAMCAUD) >

< DRV - [2004-03-10 11:40:00 | 000,199,552 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\HSFHWICH.sys – (HSFHWICH) >

< DRV - [2004-03-10 11:37:00 | 000,682,624 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\HSF_CNXT.sys – (winachsf) >

< DRV - [2004-03-10 11:35:00 | 001,041,536 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\HSF_DP.sys – (HSF_DP) >

< >

< >

< ========== Standard Registry (SafeList) ========== >

Invalid Switch: color]

< >

< >

< ========== Internet Explorer ========== >

Invalid Switch: color]

< >

< IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm >

< >

< IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/ >

Invalid Switch:

< IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: “ProxyEnable” = 0 >

< >

< FF - HKLM\software\mozilla\Firefox\Extensions\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-04-22 16:21:02 | 000,000,000 | —D | M] >

< FF - HKLM\software\mozilla\Firefox\Extensions\{0854D035-2F97-4FFA-A48C-D3A342644666}: C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji{0854D035-2F97-4FFA-A48C-D3A342644666} [2010-07-20 12:19:18 | 000,000,000 | —D | M] >

< >

< >

< O1 HOSTS File: ([2001-10-26 17:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts >

< O1 - Hosts: 127.0.0.1 localhost >

< O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) >

< O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) >

< O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.5126.1836\swg.dll (Google Inc.) >

< O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) >

< O3 - HKLM…\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) >

< O3 - HKCU…\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) >

< O4 - HKLM…\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software) >

< O4 - HKLM…\Run: [CTCheck] C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe (Creative Technology Ltd) >

< O4 - HKLM…\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe (OLYMPUS IMAGING CORP.) >

< O4 - HKCU…\Run: [ALLUpdate] C:\Program Files\ALLPlayer\ALLUpdate.exe () >

< O4 - HKCU…\Run: [CTSyncU.exe] C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe () >

< O4 - HKCU…\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) >

< O4 - HKCU…\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe (OLYMPUS IMAGING CORP.) >

< O4 - HKCU…\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.) >

< O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 >

< O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) >

< O8 - Extra context menu item: Funkcja Google Sidewiki - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll (Google Inc.) >

< O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) >

< O9 - Extra ‘Tools’ menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) >

< O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) >

< O9 - Extra Button: Pokaż lub ukryj HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) >

< O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s … wflash.cab (Shockwave Flash Object) >

Invalid Switch: swflash.cab (Shockwave Flash Object)

< O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) >

< O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) >

< O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) >

Invalid Switch: xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)

< O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe () >

< O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\sdra64.exe) - C:\WINDOWS\System32\sdra64.exe File not found >

< O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation) >

< O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home >

< O24 - Desktop WallPaper: C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp >

< O24 - Desktop BackupWallPaper: C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp >

< O32 - HKLM CDRom: AutoRun - 1 >

< O32 - AutoRun File - [2008-06-24 21:21:41 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT – [NTFS] >

< O32 - AutoRun File - [2009-08-23 04:42:34 | 000,143,360 | R— | M] (Huawei Technologies Co., Ltd.) - F:\AutoRun.exe – [CDFS] >

< O32 - AutoRun File - [2008-07-25 23:35:24 | 000,000,045 | R— | M] () - F:\AUTORUN.INF – [CDFS] >

< O34 - HKLM BootExecute: (autocheck autochk *) - File not found >

< O35 - HKLM…comfile [open] – “%1” %* >

< O35 - HKLM…exefile [open] – “%1” %* >

< O37 - HKLM…com [@ = comfile] – “%1” %* >

< O37 - HKLM…exe [@ = exefile] – “%1” %* >

< >

< ========== Files/Folders - Created Within 90 Days ========== >

Invalid Switch: color]

< >

< [2010-08-27 14:36:37 | 000,000,000 | —D | C] – C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\Windows Server >

< [2010-08-26 18:03:43 | 000,000,000 | —D | C] – C:_OTL >

< [2010-08-25 15:46:20 | 000,575,488 | ---- | C] (OldTimer Tools) – C:\Documents and Settings\szymon\Pulpit\OTL_3.2.10(dobreprogramy.pl).exe >

< [2010-08-16 16:43:30 | 001,123,840 | ---- | C] (Karol Winnicki) – C:\Documents and Settings\szymon\Pulpit\BESTplayer.exe >

< [2010-08-16 16:27:00 | 011,258,945 | ---- | C] (ALLPlayer ) – C:\Documents and Settings\szymon\Pulpit\ALLPlayerPL_4469(dobreprogramy.pl).exe >

< [2010-08-12 13:41:11 | 000,000,000 | —D | C] – C:\MySlideshow >

< [2010-08-12 12:54:16 | 000,000,000 | —D | C] – C:\WINDOWS\System32\appmgmt >

< [2010-08-09 15:37:07 | 000,165,456 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswSP.sys >

< [2010-08-09 15:37:07 | 000,017,744 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswFsBlk.sys >

< [2010-08-09 15:37:05 | 000,023,376 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswRdr.sys >

< [2010-08-09 15:37:03 | 000,046,672 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswTdi.sys >

< [2010-08-09 15:36:59 | 000,100,176 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon2.sys >

< [2010-08-09 15:36:59 | 000,094,544 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon.sys >

< [2010-08-09 15:36:58 | 000,028,880 | ---- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aavmker4.sys >

< [2010-08-09 15:32:24 | 000,038,848 | ---- | C] (ALWIL Software) – C:\WINDOWS\avastSS.scr >

< [2010-08-09 15:32:19 | 000,165,032 | ---- | C] (AVAST Software) – C:\WINDOWS\System32\aswBoot.exe >

< [2010-08-09 15:30:45 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Alwil Software >

< [2010-07-29 16:43:07 | 000,000,000 | -HSD | C] – C:\WINDOWS\System32\lowsec >

< [2010-07-20 12:19:17 | 000,000,000 | —D | C] – C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji{0854D035-2F97-4FFA-A48C-D3A342644666} >

< [2010-06-22 16:53:41 | 000,000,000 | —D | C] – C:\Documents and Settings\szymon\Dane aplikacji\PriceGong >

< [3 C:\WINDOWS*.tmp files -> C:\WINDOWS*.tmp ->] >

< [1 C:\WINDOWS\System32*.tmp files -> C:\WINDOWS\System32*.tmp ->] >

< >

< ========== Files - Modified Within 90 Days ========== >

Invalid Switch: color]

< >

< [2010-08-27 15:16:42 | 000,000,664 | ---- | M] () – C:\WINDOWS\System32\d3d9caps.dat >

< [2010-08-27 15:00:04 | 000,001,032 | ---- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job >

< [2010-08-27 14:59:53 | 000,000,300 | -HS- | M] () – C:\WINDOWS\tasks\Svlkynen.job >

< [2010-08-27 14:59:53 | 000,000,006 | -H-- | M] () – C:\WINDOWS\tasks\SA.DAT >

< [2010-08-27 14:59:34 | 000,002,048 | --S- | M] () – C:\WINDOWS\bootstat.dat >

< [2010-08-27 14:56:36 | 000,000,188 | -HS- | M] () – C:\Documents and Settings\szymon\ntuser.ini >

< [2010-08-27 14:56:34 | 007,077,888 | -H-- | M] () – C:\Documents and Settings\szymon\NTUSER.DAT >

< [2010-08-27 14:36:18 | 000,001,036 | ---- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job >

< [2010-08-26 18:10:35 | 000,002,206 | ---- | M] () – C:\WINDOWS\System32\wpa.dbl >

< [2010-08-25 15:46:21 | 000,575,488 | ---- | M] (OldTimer Tools) – C:\Documents and Settings\szymon\Pulpit\OTL_3.2.10(dobreprogramy.pl).exe >

< [2010-08-24 14:08:48 | 000,002,267 | ---- | M] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\Skype.lnk >

< [2010-08-20 20:29:07 | 000,000,640 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\ALLPlayer V4.4.lnk >

< [2010-08-20 18:03:37 | 000,198,224 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\kod.exe >

< [2010-08-17 16:39:31 | 000,015,360 | ---- | M] () – C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini >

< [2010-08-16 16:47:57 | 000,211,364 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\klcodec604b.exe >

< [2010-08-16 16:43:32 | 001,123,840 | ---- | M] (Karol Winnicki) – C:\Documents and Settings\szymon\Pulpit\BESTplayer.exe >

< [2010-08-16 16:27:10 | 011,258,945 | ---- | M] (ALLPlayer ) – C:\Documents and Settings\szymon\Pulpit\ALLPlayerPL_4469(dobreprogramy.pl).exe >

< [2010-08-16 15:48:00 | 000,000,664 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\Napi-projekt.lnk >

< [2010-08-12 14:59:38 | 000,001,729 | ---- | M] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\Adobe Reader 9.lnk >

< [2010-08-12 13:06:17 | 000,000,210 | ---- | M] () – C:\WINDOWS\Wininit.ini >

< [2010-08-11 14:28:03 | 000,000,000 | ---- | M] () – C:\WINDOWS\Gpiwisiduba.bin >

< [2010-08-11 14:27:54 | 000,000,120 | ---- | M] () – C:\WINDOWS\Qnibikixezibe.dat >

< [2010-08-09 15:37:10 | 000,001,700 | ---- | M] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\avast! Free Antivirus.lnk >

< [2010-08-09 15:37:00 | 000,002,645 | ---- | M] () – C:\WINDOWS\System32\CONFIG.NT >

< [2010-08-09 14:57:11 | 049,368,328 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\setup_av_free_pol.exe >

< [2010-07-14 21:02:32 | 000,329,728 | ---- | M] () – C:\Documents and Settings\szymon\Moje dokumenty\14114254,zalacznik.doc >

< [2010-07-14 19:52:59 | 000,280,095 | ---- | M] () – C:\Documents and Settings\szymon\Moje dokumenty\cutting assaiment.docx >

< [2010-06-28 22:57:33 | 000,038,848 | ---- | M] (ALWIL Software) – C:\WINDOWS\avastSS.scr >

< [2010-06-28 22:57:12 | 000,165,032 | ---- | M] (AVAST Software) – C:\WINDOWS\System32\aswBoot.exe >

< [2010-06-28 22:37:52 | 000,046,672 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswTdi.sys >

< [2010-06-28 22:37:30 | 000,165,456 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswSP.sys >

< [2010-06-28 22:33:13 | 000,023,376 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswRdr.sys >

< [2010-06-28 22:32:45 | 000,100,176 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon2.sys >

< [2010-06-28 22:32:42 | 000,094,544 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon.sys >

< [2010-06-28 22:32:33 | 000,017,744 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswFsBlk.sys >

< [2010-06-28 22:32:16 | 000,028,880 | ---- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aavmker4.sys >

< [2010-06-27 18:31:32 | 000,198,098 | ---- | M] () – C:\Documents and Settings\szymon\Moje dokumenty\Kosmetyczka z 13.docx >

< [2010-06-23 13:06:34 | 000,606,875 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\WNIOSEK TPG PAGE 2.jpg >

< [2010-06-23 13:04:51 | 000,839,700 | ---- | M] () – C:\Documents and Settings\szymon\Pulpit\WNIOSEK TPG 1.jpg >

< [2010-05-31 10:10:34 | 000,000,552 | ---- | M] () – C:\WINDOWS\System32\d3d8caps.dat >

< [3 C:\WINDOWS*.tmp files -> C:\WINDOWS*.tmp ->] >

< [1 C:\WINDOWS\System32*.tmp files -> C:\WINDOWS\System32*.tmp ->] >

< >

< ========== Files Created - No Company Name ========== >

Invalid Switch: color]

< >

< [2010-08-20 18:03:27 | 000,198,224 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\kod.exe >

< [2010-08-16 16:47:47 | 000,211,364 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\klcodec604b.exe >

< [2010-08-16 16:29:18 | 000,000,640 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\ALLPlayer V4.4.lnk >

< [2010-08-16 16:29:10 | 000,881,664 | ---- | C] () – C:\WINDOWS\System32\xvidcore.dll >

< [2010-08-16 16:29:09 | 000,258,048 | ---- | C] () – C:\WINDOWS\System32\libFLAC.dll >

< [2010-08-16 15:48:00 | 000,000,664 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\Napi-projekt.lnk >

< [2010-08-12 15:14:21 | 000,000,664 | ---- | C] () – C:\WINDOWS\System32\d3d9caps.dat >

< [2010-08-12 14:59:37 | 000,001,729 | ---- | C] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\Adobe Reader 9.lnk >

< [2010-08-12 13:06:17 | 000,000,210 | ---- | C] () – C:\WINDOWS\Wininit.ini >

< [2010-08-09 15:37:10 | 000,001,700 | ---- | C] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\avast! Free Antivirus.lnk >

< [2010-08-09 14:55:40 | 049,368,328 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\setup_av_free_pol.exe >

< [2010-07-20 12:19:23 | 000,000,000 | ---- | C] () – C:\WINDOWS\Gpiwisiduba.bin >

< [2010-07-20 12:19:22 | 000,000,120 | ---- | C] () – C:\WINDOWS\Qnibikixezibe.dat >

< [2010-07-20 12:16:58 | 000,000,300 | -HS- | C] () – C:\WINDOWS\tasks\Svlkynen.job >

< [2010-07-18 18:49:12 | 000,002,267 | ---- | C] () – C:\Documents and Settings\All Users.WINDOWS\Pulpit\Skype.lnk >

< [2010-07-14 21:02:31 | 000,329,728 | ---- | C] () – C:\Documents and Settings\szymon\Moje dokumenty\14114254,zalacznik.doc >

< [2010-07-08 17:47:51 | 001,797,569 | ---- | C] () – C:\Documents and Settings\szymon\Moje dokumenty\zdjęcie 026.jpg >

< [2010-06-25 13:16:28 | 000,280,095 | ---- | C] () – C:\Documents and Settings\szymon\Moje dokumenty\cutting assaiment.docx >

< [2010-06-23 13:06:13 | 000,606,875 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\WNIOSEK TPG PAGE 2.jpg >

< [2010-06-23 13:04:17 | 000,839,700 | ---- | C] () – C:\Documents and Settings\szymon\Pulpit\WNIOSEK TPG 1.jpg >

< [2010-06-21 15:22:06 | 000,198,098 | ---- | C] () – C:\Documents and Settings\szymon\Moje dokumenty\Kosmetyczka z 13.docx >

< [2010-05-31 10:10:34 | 000,000,552 | ---- | C] () – C:\WINDOWS\System32\d3d8caps.dat >

< [2010-03-21 13:11:53 | 000,691,696 | ---- | C] () – C:\WINDOWS\System32\drivers\sptd.sys >

< [2009-12-11 00:30:19 | 000,178,176 | ---- | C] () – C:\WINDOWS\System32\unrar.dll >

< [2009-12-09 23:40:00 | 000,000,051 | ---- | C] () – C:\WINDOWS\ete40.ini >

< [2009-09-22 16:09:50 | 000,000,754 | ---- | C] () – C:\WINDOWS\WORDPAD.INI >

< [2009-08-13 22:20:31 | 000,003,420 | ---- | C] () – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\hpzinstall.log >

< [2009-05-31 23:05:25 | 000,015,360 | ---- | C] () – C:\Documents and Settings\szymon\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini >

< [2008-05-03 09:24:01 | 000,000,082 | ---- | C] () – C:\WINDOWS\System32\oeminfo.ini >

< >

< ========== LOP Check ========== >

Invalid Switch: color]

< >

< [2010-08-09 15:30:45 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Alwil Software >

< [2009-11-19 00:10:27 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Anvsoft >

< [2010-01-29 07:51:16 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\BVRP Software >

< [2009-10-01 23:08:52 | 000,000,000 | -H-D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\CanonBJ >

< [2010-03-21 13:11:29 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\DAEMON Tools Lite >

< [2010-03-21 12:31:05 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\DAEMON Tools Pro >

< [2010-08-12 14:03:21 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\TEMP >

< [2010-08-16 16:44:05 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\BESTplayer >

< [2010-03-21 13:32:40 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\DAEMON Tools Lite >

< [2010-03-21 12:31:05 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\DAEMON Tools Pro >

< [2009-12-13 14:35:02 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\FashionCrazePol >

< [2009-12-11 21:27:16 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\OLYMPUS >

< [2010-08-11 14:25:26 | 000,000,000 | —D | M] – C:\Documents and Settings\szymon\Dane aplikacji\PriceGong >

< [2010-08-27 14:59:53 | 000,000,300 | -HS- | M] () – C:\WINDOWS\Tasks\Svlkynen.job >

< >

< ========== Purity Check ========== >

Invalid Switch: color]

< >

< >

< >

< ========== Custom Scans ========== >

Invalid Switch: color]

< >

< >

< < > >

Invalid Switch: color]

< >

< < Files\Folders moved on Reboot… > >

Invalid Switch: color]

< >

< < File\Folder C:\Documents and Settings\szymon\Menu Start\Programy\Autostart\Adobe Media Player.lnk not found! > >

Invalid Switch: color]

< >

< < File\Folder C:\WINDOWS\system32\sdra64.exe not found! > >

Invalid Switch: color]

< >

< < > >

Invalid Switch: color]

< >

< < Registry entries deleted on Reboot… > >

Invalid Switch: color]

< >

< ========== Alternate Data Streams ========== >

Invalid Switch: color]

< >

< @Alternate Data Stream - 184 bytes -> C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\TEMP:A31FAD21 >

< < End of report > >

========== Alternate Data Streams ==========

@Alternate Data Stream - 184 bytes -> C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\TEMP:A31FAD21

< End of report >

napisz proszę co dalej ?

Dzięki i pozdrawiam

OTL w oknie Custom Scans-Fixes wklej następujący skrypt:

Kliknij w Run Fix. Zatwierdź restart komputera.

potem nowy log OTL robiony opcją Run Scan

to już nie występuje?

:slight_smile: