yaro_85
(Yaro 85)
24 Maj 2007 03:53
#1
Witam mam problem, wyskakuje mi, że wystąpił błąd i aplikacja została zamknięta i partycje otwierają się w innych oknach. Jestem słaby w te klocki, więc proszę o pomoc.
Oto Logo:
Logfile of HijackThis v1.99.1 Scan saved at 13:08:56, on 2007-05-23 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\Eset\nod32krn.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\WINDOWS\system32\UAService7.exe C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe C:\Program Files\Analog Devices\SoundMAX\smax4.exe C:\Program Files\Eset\nod32kui.exe C:\WINDOWS\system32\temp1.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\D-Tools\daemon.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\ivo\Expressivo\expressivo.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe C:\WINDOWS\system32\wuauclt.exe C:\Documents and Settings\Jarek\Pulpit\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=3 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza F3 - REG:win.ini: load=C:\WINDOWS\svchost.exe O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Expressivo - {85F685C3-20D9-4943-95E4-EB4224056C3F} - C:\Program Files\ivo\Expressivo\IH_iexplore.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll (file missing) O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (file missing) O3 - Toolbar: Expressivo - {85F685C3-20D9-4943-95E4-EB4224056C3F} - C:\Program Files\ivo\Expressivo\IH_iexplore.dll O4 - HKLM…\Run: [soundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe O4 - HKLM…\Run: [soundMAX] “C:\Program Files\Analog Devices\SoundMAX\smax4.exe” /tray O4 - HKLM…\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM…\Run: [nod32kui] “C:\Program Files\Eset\nod32kui.exe” /WAITSERVICE O4 - HKLM…\Run: [Microsoft Windows Update] C:\WINDOWS\system32\msupdate.exe O4 - HKLM…\Run: [iSUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup O4 - HKLM…\Run: [iSUSScheduler] “C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe” -start O4 - HKLM…\Run: [DAEMON Tools-1033] “C:\Program Files\D-Tools\daemon.exe” -lang 1033 O4 - HKCU…\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU…\Run: [MSMSGS] “C:\Program Files\Messenger\msmsgs.exe” /background O4 - HKCU…\Run: [Expressivo] “C:\Program Files\ivo\Expressivo\expressivo.exe” -t O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Backward &Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: Si&milar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O23 - Service: EDGE helper (edgesrv) - Unknown owner - C:\Program Files\EDGE Dialer\edgesrv.exe (file missing) O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe O23 - Service: SF FrontLine Drivers Auto Removal (v1) (sfrem01) - Protection Technology (StarForce) - C:\WINDOWS\system32\sfrem01.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe
Gutek
(Gutek)
24 Maj 2007 14:49
#2
Jest syf, aby się pozbyć użyj Combofix i daj log z tego softu
yaro_85
(Yaro 85)
24 Maj 2007 15:01
#3
Dzięki!
Logo z ComboFix-a wrzucę dopiero w sobotę bo dostęp do netu nam tylko w robocie. OK?
Gutek
(Gutek)
24 Maj 2007 15:35
#4
Ok, ale czekamy do soboty, za chwilę wyrzucę mój twój post
yaro_85
(Yaro 85)
24 Maj 2007 17:34
#5
Jednak dałem rade dziś
Oto Logo:
“Jarek” - 2007-05-24 19:02:19 Dodatek Service Pack 2 ComboFix 07-05.24.7.V - Running from: “C:\Documents and Settings\Jarek\Pulpit” (((((((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) “C:\WINDOWS\system32\temp1.exe” “C:\WINDOWS\system32\temp2.exe” “c:\autorun.inf” “c:\copy.exe” “c:\host.exe” “d:\autorun.inf” “d:\copy.exe” “d:\host.exe” “C:\Program Files\install.log” “C:\WINDOWS\autorun.inf” “C:\WINDOWS\svchost.exe” “C:\WINDOWS\xcopy.exe” ((((((((((((((((((((((((((((((( Files Created from 2007-04-05 to 2007-05-24 )))))))))))))))))))))))))))))))))) 2007-04-29 15:03 2007-04-29 06:06 (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2007-05-23 14:14:47 -------- d–h--w C:\Program Files\InstallShield Installation Information 2007-05-02 12:22:38 80,444 ----a-w C:\WINDOWS\system32\perfc015.dat 2007-05-02 12:22:38 460,894 ----a-w C:\WINDOWS\system32\perfh015.dat 2007-04-29 14:43:48 -------- d-----w C:\Program Files\Winamp 2007-04-29 13:08:04 737,280 ----a-w C:\WINDOWS\iun6002.exe 2007-04-24 19:07:54 -------- d-----w C:\Program Files\EA SPORTS 2007-04-23 18:21:33 -------- d-----w C:\Program Files\ivo 2007-04-21 12:57:54 -------- d-----w C:\Program Files\VirtualDJ 2007-04-05 18:38:04 -------- d-----w C:\Program Files\Electronic Arts 2007-03-31 12:15:06 98,304 ----a-w C:\WINDOWS\system32\CmdLineExt.dll 2007-03-28 13:50:22 -------- d-----w C:\Program Files\option 2007-03-28 13:49:20 -------- d-----w C:\Program Files\FranceTelecomUninstall 2007-03-28 13:40:08 -------- d-----w C:\DOCUME~1\Jarek\DANEAP~1\EDGEdialer 2007-03-27 21:25:37 -------- d-----w C:\Program Files\MP3 Player Utilities 3.73 2007-03-27 19:09:55 -------- d-----w C:\Program Files\Easy CD-DA Extractor 10 2007-03-26 10:04:38 -------- d-----w C:\Program Files\Common Files\ACD Systems 2007-03-24 14:09:09 -------- d-----w C:\Program Files\AGEIA Technologies 2007-03-24 14:09:00 -------- d-----w C:\Program Files\Common Files\Wise Installation Wizard 2007-03-21 17:24:22 -------- d-----w C:\Program Files\SlySoft 2007-03-21 17:14:24 715 ----a-w C:\WINDOWS\unins000.dat 2007-03-09 13:01:45 -------- d-----w C:\Program Files\PITy2006 2007-02-20 10:49:53 233,472 ----a-w C:\WINDOWS\system32\wrap_oal.dll 2007-02-20 10:49:52 81,920 ----a-w C:\WINDOWS\system32\OpenAL32.dll 2007-01-22 11:12:49 -------- --sha-w C:\WINDOWS\system32\KGyGaAvL.sys 2006-10-30 14:27:26 -------- --sh–r C:\WINDOWS\system32\FA0D94A685.sys (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}=C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-01-12 20:38] {85F685C3-20D9-4943-95E4-EB4224056C3F}=C:\Program Files\ivo\Expressivo\IH_iexplore.dll [2007-01-23 14:29] {AA58ED58-01DD-4d91-8333-CF10577473F7}=c:\program files\google\googletoolbar1.dll [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] “SoundMAXPnP”=“C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe” [2004-04-01 11:52] “SoundMAX”=“C:\Program Files\Analog Devices\SoundMAX\smax4.exe” [2004-03-26 15:40] “NWEReboot”="" [] “NeroFilterCheck”=“C:\WINDOWS\system32\NeroCheck.exe” [2001-07-09 12:50] “nod32kui”=“C:\Program Files\Eset\nod32kui.exe” [2006-02-24 13:28] “Microsoft Windows Update”=“C:\WINDOWS\system32\msupdate.exe” [] “ISUSPM Startup”=“C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe” [2004-06-16 07:03] “ISUSScheduler”=“C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe” [2004-06-16 07:03] “DAEMON Tools-1033”=“C:\Program Files\D-Tools\daemon.exe” [2004-08-22 18:05] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] “CTFMON.EXE”=“C:\WINDOWS\system32\ctfmon.exe” [2004-08-04 00:44] “MSMSGS”=“C:\Program Files\Messenger\msmsgs.exe” [2004-08-04 01:55] “Expressivo”=“C:\Program Files\ivo\Expressivo\expressivo.exe” [2007-01-23 17:19] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\C] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G] AutoRun\command- G:\Setup.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{2c626886-a5ce-11da-82ae-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{31506896-0952-11dc-9924-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{857b4274-dc93-11db-9873-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{db9b1f9a-b064-11db-97b9-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{ee284459-2b8c-11db-90cf-0011d800b485}] AutoRun\command- F:\AutoPlay.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{ffa26484-c014-11da-b4fb-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe *Newly Created Service* -PROCEXP90 ******************************************************************** catchme 0.3.681 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net Rootkit scan 2007-05-24 19:04:06 Windows 5.1.2600 Dodatek Service Pack 2 NTFS scanning hidden processes … scanning hidden autostart entries … scanning hidden files … scan completed successfully hidden files: 0 ******************************************************************** Completion time: 2007-05-24 19:04:29 C:\ComboFix-quarantined-files.txt … 2007-05-24 19:04 — E O F —
Złączono Posta : 24.05.2007 (Czw) 19:35
Jednak dałem rade dziś
Oto Logo:
“Jarek” - 2007-05-24 19:02:19 Dodatek Service Pack 2 ComboFix 07-05.24.7.V - Running from: “C:\Documents and Settings\Jarek\Pulpit” (((((((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) “C:\WINDOWS\system32\temp1.exe” “C:\WINDOWS\system32\temp2.exe” “c:\autorun.inf” “c:\copy.exe” “c:\host.exe” “d:\autorun.inf” “d:\copy.exe” “d:\host.exe” “C:\Program Files\install.log” “C:\WINDOWS\autorun.inf” “C:\WINDOWS\svchost.exe” “C:\WINDOWS\xcopy.exe” ((((((((((((((((((((((((((((((( Files Created from 2007-04-05 to 2007-05-24 )))))))))))))))))))))))))))))))))) 2007-04-29 15:03 2007-04-29 06:06 (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2007-05-23 14:14:47 -------- d–h--w C:\Program Files\InstallShield Installation Information 2007-05-02 12:22:38 80,444 ----a-w C:\WINDOWS\system32\perfc015.dat 2007-05-02 12:22:38 460,894 ----a-w C:\WINDOWS\system32\perfh015.dat 2007-04-29 14:43:48 -------- d-----w C:\Program Files\Winamp 2007-04-29 13:08:04 737,280 ----a-w C:\WINDOWS\iun6002.exe 2007-04-24 19:07:54 -------- d-----w C:\Program Files\EA SPORTS 2007-04-23 18:21:33 -------- d-----w C:\Program Files\ivo 2007-04-21 12:57:54 -------- d-----w C:\Program Files\VirtualDJ 2007-04-05 18:38:04 -------- d-----w C:\Program Files\Electronic Arts 2007-03-31 12:15:06 98,304 ----a-w C:\WINDOWS\system32\CmdLineExt.dll 2007-03-28 13:50:22 -------- d-----w C:\Program Files\option 2007-03-28 13:49:20 -------- d-----w C:\Program Files\FranceTelecomUninstall 2007-03-28 13:40:08 -------- d-----w C:\DOCUME~1\Jarek\DANEAP~1\EDGEdialer 2007-03-27 21:25:37 -------- d-----w C:\Program Files\MP3 Player Utilities 3.73 2007-03-27 19:09:55 -------- d-----w C:\Program Files\Easy CD-DA Extractor 10 2007-03-26 10:04:38 -------- d-----w C:\Program Files\Common Files\ACD Systems 2007-03-24 14:09:09 -------- d-----w C:\Program Files\AGEIA Technologies 2007-03-24 14:09:00 -------- d-----w C:\Program Files\Common Files\Wise Installation Wizard 2007-03-21 17:24:22 -------- d-----w C:\Program Files\SlySoft 2007-03-21 17:14:24 715 ----a-w C:\WINDOWS\unins000.dat 2007-03-09 13:01:45 -------- d-----w C:\Program Files\PITy2006 2007-02-20 10:49:53 233,472 ----a-w C:\WINDOWS\system32\wrap_oal.dll 2007-02-20 10:49:52 81,920 ----a-w C:\WINDOWS\system32\OpenAL32.dll 2007-01-22 11:12:49 -------- --sha-w C:\WINDOWS\system32\KGyGaAvL.sys 2006-10-30 14:27:26 -------- --sh–r C:\WINDOWS\system32\FA0D94A685.sys (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}=C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2006-01-12 20:38] {85F685C3-20D9-4943-95E4-EB4224056C3F}=C:\Program Files\ivo\Expressivo\IH_iexplore.dll [2007-01-23 14:29] {AA58ED58-01DD-4d91-8333-CF10577473F7}=c:\program files\google\googletoolbar1.dll [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] “SoundMAXPnP”=“C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe” [2004-04-01 11:52] “SoundMAX”=“C:\Program Files\Analog Devices\SoundMAX\smax4.exe” [2004-03-26 15:40] “NWEReboot”="" [] “NeroFilterCheck”=“C:\WINDOWS\system32\NeroCheck.exe” [2001-07-09 12:50] “nod32kui”=“C:\Program Files\Eset\nod32kui.exe” [2006-02-24 13:28] “Microsoft Windows Update”=“C:\WINDOWS\system32\msupdate.exe” [] “ISUSPM Startup”=“C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe” [2004-06-16 07:03] “ISUSScheduler”=“C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe” [2004-06-16 07:03] “DAEMON Tools-1033”=“C:\Program Files\D-Tools\daemon.exe” [2004-08-22 18:05] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] “CTFMON.EXE”=“C:\WINDOWS\system32\ctfmon.exe” [2004-08-04 00:44] “MSMSGS”=“C:\Program Files\Messenger\msmsgs.exe” [2004-08-04 01:55] “Expressivo”=“C:\Program Files\ivo\Expressivo\expressivo.exe” [2007-01-23 17:19] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\C] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\G] AutoRun\command- G:\Setup.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{2c626886-a5ce-11da-82ae-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{31506896-0952-11dc-9924-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{857b4274-dc93-11db-9873-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{db9b1f9a-b064-11db-97b9-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{ee284459-2b8c-11db-90cf-0011d800b485}] AutoRun\command- F:\AutoPlay.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2{ffa26484-c014-11da-b4fb-0011d800b485}] AutoRun\command- C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL copy.exe *Newly Created Service* -PROCEXP90 ******************************************************************** catchme 0.3.681 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net Rootkit scan 2007-05-24 19:04:06 Windows 5.1.2600 Dodatek Service Pack 2 NTFS scanning hidden processes … scanning hidden autostart entries … scanning hidden files … scan completed successfully hidden files: 0 ******************************************************************** Completion time: 2007-05-24 19:04:29 C:\ComboFix-quarantined-files.txt … 2007-05-24 19:04 — E O F —
Gutek
(Gutek)
24 Maj 2007 17:47
#6