“XXX” - 07-04-21 15:55:33 Dodatek Service Pack 2 ComboFix 07-04-21.2V - Running from: C:\Documents and Settings\XXX\Pulpit\ ((((((((((((((((((((((((((((((( Files Created from 2007-03-21 to 2007-04-21 )))))))))))))))))))))))))))))))))) 2007-04-21 13:31 2007-04-21 11:06 626,688 --a------ C:\WINDOWS\system32\msvcr80.dll 2007-04-21 10:12 43,584 --a------ C:\WINDOWS\system32\drivers\avipbb.sys 2007-04-21 10:12 28,352 --a------ C:\WINDOWS\system32\drivers\ssmdrv.sys 2007-04-19 18:30 2007-04-19 18:29 2007-04-19 18:29 2007-04-17 13:32 17,920 --a------ C:\WINDOWS\system32\mdimon.dll 2007-04-17 13:30 2007-04-17 13:29 2007-04-17 13:29 2007-04-17 12:55 2007-04-16 21:14 36,528 --------- C:\WINDOWS\system32\drivers\PxHelp20.sys 2007-04-16 21:14 2,560 --------- C:\WINDOWS\system32\drivers\cdralw2k.sys 2007-04-16 21:14 2,432 --------- C:\WINDOWS\system32\drivers\cdr4_xp.sys 2007-04-16 21:14 129,784 --------- C:\WINDOWS\system32\pxafs.dll 2007-04-16 21:14 115,880 --------- C:\WINDOWS\system32\pxinsi64.exe 2007-04-16 21:13 2007-04-16 21:11 2007-04-16 21:09 951,224 --a------ C:\WINDOWS\system32\ati3d1ag.dll 2007-04-16 21:09 716,113 --a------ C:\WINDOWS\system32\ati3duag.dll 2007-04-16 21:09 58,624 --a------ C:\WINDOWS\system32\drivers\redbook.sys 2007-04-16 21:09 576,512 --a------ C:\WINDOWS\system32\drivers\ati2mtag.sys 2007-04-16 21:09 516,768 --a------ C:\WINDOWS\system32\ativvaxx.dll 2007-04-16 21:09 3,072 --a------ C:\WINDOWS\system32\drivers\audstub.sys 2007-04-16 21:09 272,512 --a------ C:\WINDOWS\system32\ati2dvag.dll 2007-04-16 21:09 229,376 --a------ C:\WINDOWS\system32\ati2cqag.dll 2007-04-16 21:08 87,424 --a------ C:\WINDOWS\system32\drivers\irda.sys 2007-04-16 21:08 8,192 --a------ C:\WINDOWS\system32\wshirda.dll 2007-04-16 21:08 77,312 --a------ C:\WINDOWS\system32\usbui.dll 2007-04-16 21:08 46,464 --a------ C:\WINDOWS\system32\drivers\GAGP30KX.SYS 2007-04-16 21:08 27,648 --a------ C:\WINDOWS\system32\irmon.dll 2007-04-16 21:08 20,992 --a------ C:\WINDOWS\system32\drivers\RTL8139.sys 2007-04-16 21:08 19,584 --a------ C:\WINDOWS\system32\drivers\rasirda.sys 2007-04-16 21:08 18,688 --a------ C:\WINDOWS\system32\drivers\irsir.sys 2007-04-16 21:08 153,088 --a------ C:\WINDOWS\system32\irftp.exe 2007-04-16 21:07 2007-04-16 21:07 2007-04-16 21:07 2007-04-16 21:06 9,936 --a------ C:\WINDOWS\system\LZEXPAND.DLL 2007-04-16 21:06 9,168 --a------ C:\WINDOWS\system\VER.DLL 2007-04-16 21:06 85,532 --a------ C:\WINDOWS\system32\dgsetup.dll 2007-04-16 21:06 83,456 --a------ C:\WINDOWS\system\OLECLI.DLL 2007-04-16 21:06 8,704 --a------ C:\WINDOWS\system32\batt.dll 2007-04-16 21:06 8,192 -ra------ C:\WINDOWS\system32\kbdhept.dll 2007-04-16 21:06 75,776 --a------ C:\WINDOWS\system32\storprop.dll 2007-04-16 21:06 70,144 --a------ C:\WINDOWS\NOTEPAD.EXE 2007-04-16 21:06 70,096 --a------ C:\WINDOWS\system\AVICAP.DLL 2007-04-16 21:06 7,168 --a------ C:\WINDOWS\system32\kbdcz.dll 2007-04-16 21:06 69,552 --a------ C:\WINDOWS\system\MMSYSTEM.DLL 2007-04-16 21:06 6,656 -ra------ C:\WINDOWS\system32\kbdhela3.dll 2007-04-16 21:06 6,656 --a------ C:\WINDOWS\system32\kbdycl.dll 2007-04-16 21:06 6,656 --a------ C:\WINDOWS\system32\kbdsl1.dll 2007-04-16 21:06 6,656 --a------ C:\WINDOWS\system32\kbdsl.dll 2007-04-16 21:06 6,656 --a------ C:\WINDOWS\system32\kbdhu.dll 2007-04-16 21:06 6,656 --a------ C:\WINDOWS\system32\kbdcz2.dll 2007-04-16 21:06 6,656 --a------ C:\WINDOWS\system32\kbdcz1.dll 2007-04-16 21:06 6,656 --a------ C:\WINDOWS\system32\kbdcr.dll 2007-04-16 21:06 6,656 --a------ C:\WINDOWS\system32\KBDAL.DLL 2007-04-16 21:06 6,144 -ra------ C:\WINDOWS\system32\kbdtuq.dll 2007-04-16 21:06 6,144 -ra------ C:\WINDOWS\system32\kbdtuf.dll 2007-04-16 21:06 6,144 -ra------ C:\WINDOWS\system32\kbdlv1.dll 2007-04-16 21:06 6,144 -ra------ C:\WINDOWS\system32\kbdlv.dll 2007-04-16 21:06 6,144 -ra------ C:\WINDOWS\system32\kbdhela2.dll 2007-04-16 21:06 6,144 -ra------ C:\WINDOWS\system32\kbdgkl.dll 2007-04-16 21:06 6,144 -ra------ C:\WINDOWS\system32\kbdest.dll 2007-04-16 21:06 5,632 -ra------ C:\WINDOWS\system32\kbdmon.dll 2007-04-16 21:06 5,632 -ra------ C:\WINDOWS\system32\kbdlt1.dll 2007-04-16 21:06 5,632 -ra------ C:\WINDOWS\system32\kbdlt.dll 2007-04-16 21:06 5,632 -ra------ C:\WINDOWS\system32\kbdkyr.dll 2007-04-16 21:06 5,632 -ra------ C:\WINDOWS\system32\kbdhe319.dll 2007-04-16 21:06 5,632 -ra------ C:\WINDOWS\system32\kbdhe220.dll 2007-04-16 21:06 5,632 -ra------ C:\WINDOWS\system32\kbdhe.dll 2007-04-16 21:06 5,632 -ra------ C:\WINDOWS\system32\kbdazel.dll 2007-04-16 21:06 5,632 --a------ C:\WINDOWS\system32\kbdro.dll 2007-04-16 21:06 5,632 --a------ C:\WINDOWS\system32\kbdhu1.dll 2007-04-16 21:06 5,120 --a------ C:\WINDOWS\system\SHELL.DLL 2007-04-16 21:06 33,376 --a------ C:\WINDOWS\system\COMMDLG.DLL 2007-04-16 21:06 24,661 --a------ C:\WINDOWS\system32\spxcoins.dll 2007-04-16 21:06 24,064 --a------ C:\WINDOWS\system\OLESVR.DLL 2007-04-16 21:06 19,200 --a------ C:\WINDOWS\system\TAPI.DLL 2007-04-16 21:06 176,157 --a------ C:\WINDOWS\system32\dgrpsetu.dll 2007-04-16 21:06 15,360 --a------ C:\WINDOWS\TASKMAN.EXE 2007-04-16 21:06 13,312 --a------ C:\WINDOWS\system32\irclass.dll 2007-04-16 21:06 127,008 --a------ C:\WINDOWS\system\MSVIDEO.DLL 2007-04-16 21:06 11,264 --a------ C:\WINDOWS\system32\drivers\irenum.sys 2007-04-16 21:06 109,488 --a------ C:\WINDOWS\system\AVIFILE.DLL 2007-04-16 21:06 103,424 --a------ C:\WINDOWS\system32\EqnClass.Dll 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:06 2007-04-16 21:05 2007-04-16 21:05 2007-04-16 21:05 2007-04-16 21:05 2007-04-16 21:05 2007-04-16 21:05 2007-04-16 21:03 2007-04-16 21:01 2007-04-16 20:50 221,184 --a------ C:\WINDOWS\system32\wmpns.dll 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:50 2007-04-16 20:01 1,277 --a------ C:\WINDOWS\mozver.dat 2007-04-16 20:00 0 --a------ C:\WINDOWS\nsreg.dat 2007-04-16 19:56 2007-04-16 19:53 22,752 --a------ C:\WINDOWS\system32\spupdsvc.exe 2007-04-16 19:53 2007-04-16 19:53 2007-04-16 19:51 639,066 --a------ C:\WINDOWS\system32\DivX.dll 2007-04-16 19:44 921,600 --a------ C:\WINDOWS\system32\vorbisenc.dll 2007-04-16 19:44 9,216 --a------ C:\WINDOWS\system32\cpuinf32.dll 2007-04-16 19:44 45,056 --a------ C:\WINDOWS\system32\ogg.dll 2007-04-16 19:44 245,760 --a------ C:\WINDOWS\system32\mplvpx.dll 2007-04-16 19:44 237,568 --a------ C:\WINDOWS\system32\OggDS.dll 2007-04-16 19:44 188,416 --a------ C:\WINDOWS\system32\vorbis.dll 2007-04-16 19:44 1,415,680 --a------ C:\WINDOWS\system32\WMV9VCM.dll 2007-04-16 19:44 2007-04-16 19:43 765,952 --a------ C:\WINDOWS\system32\xvidcore.dll 2007-04-16 19:43 626,688 --a------ C:\WINDOWS\system32\xvid.dll 2007-04-16 19:43 499,712 --a------ C:\WINDOWS\system32\msvcp71.dll 2007-04-16 19:43 348,160 --a------ C:\WINDOWS\system32\msvcr71.dll 2007-04-16 19:43 155,648 --a------ C:\WINDOWS\system32\xvidvfw.dll 2007-04-16 19:43 2007-04-16 19:43 2007-04-16 19:43 2007-04-16 19:43 2007-04-16 19:42 2007-04-16 19:42 2007-04-16 19:42 2007-04-16 19:42 2007-04-16 19:41 2007-04-16 19:38 2007-04-16 19:37 917,504 --a------ C:\WINDOWS\system\cmids3d.dll 2007-04-16 19:37 82,944 --a------ C:\WINDOWS\system32\drivers\wdmaud.sys 2007-04-16 19:37 712,704 --a------ C:\WINDOWS\system32\Audio3D.dll 2007-04-16 19:37 712,704 --a------ C:\WINDOWS\system32\a3d.dll 2007-04-16 19:37 7,552 --a------ C:\WINDOWS\system32\drivers\MSKSSRV.sys 2007-04-16 19:37 60,800 --a------ C:\WINDOWS\system32\drivers\sysaudio.sys 2007-04-16 19:37 60,288 --a------ C:\WINDOWS\system32\drivers\drmk.sys 2007-04-16 19:37 6,400 --a------ C:\WINDOWS\system32\drivers\splitter.sys 2007-04-16 19:37 54,272 --a------ C:\WINDOWS\system32\drivers\swmidi.sys 2007-04-16 19:37 53,248 --a------ C:\WINDOWS\system32\cmuda.dll 2007-04-16 19:37 52,864 --a------ C:\WINDOWS\system32\drivers\DMusic.sys 2007-04-16 19:37 5,376 --a------ C:\WINDOWS\system32\drivers\MSPCLOCK.sys 2007-04-16 19:37 451,599 --a------ C:\WINDOWS\system32\drivers\cmuda.sys 2007-04-16 19:37 4,992 --a------ C:\WINDOWS\system32\drivers\MSPQM.sys 2007-04-16 19:37 4,096 --a------ C:\WINDOWS\system32\ksuser.dll 2007-04-16 19:37 28,672 --a------ C:\WINDOWS\system32\udaprop.dll 2007-04-16 19:37 2,944 --a------ C:\WINDOWS\system32\drivers\drmkaud.sys 2007-04-16 19:37 172,416 --a------ C:\WINDOWS\system32\drivers\kmixer.sys 2007-04-16 19:37 145,792 --a------ C:\WINDOWS\system32\drivers\portcls.sys 2007-04-16 19:37 142,464 --a------ C:\WINDOWS\system32\drivers\aec.sys 2007-04-16 19:36 45,056 -ra------ C:\WINDOWS\winio.dll 2007-04-16 19:36 32,768 --a------ C:\WINDOWS\SIS_LIB.DLL 2007-04-16 19:36 306,688 --a------ C:\WINDOWS\IsUninst.exe 2007-04-16 19:36 304,640 --a------ C:\WINDOWS\IsUn0415.exe 2007-04-16 19:36 30,848 -ra------ C:\WINDOWS\system32\drivers\SISAGPX.SYS 2007-04-16 19:36 3,583 --a------ C:\WINDOWS\SiSport.sys 2007-04-16 19:36 3,072 -ra------ C:\WINDOWS\winio.sys 2007-04-16 19:36 28,672 -ra------ C:\WINDOWS\htpatch.exe 2007-04-16 19:36 28,672 --a------ C:\WINDOWS\CMIRmDriver.dll 2007-04-16 19:36 237,568 --a------ C:\WINDOWS\CMIUninstall.exe 2007-04-16 19:36 212,992 --a------ C:\WINDOWS\CmiRmRedundDir.exe 2007-04-16 19:36 106,496 --a------ C:\WINDOWS\SiSUSBrg.exe 2007-04-16 19:36 2007-04-16 19:35 5,824 --a------ C:\WINDOWS\system32\drivers\ASUSHWIO.SYS 2007-04-16 19:35 110,677 --------- C:\WINDOWS\system32\ati2sgag.exe 2007-04-16 19:35 2007-04-16 19:35 2007-04-16 19:35 2007-04-16 19:35 2007-04-16 19:34 2007-04-16 19:33 2007-04-16 19:32 1,835,008 --ah----- C:\DOCUME~1\XXX\NTUSER.DAT 2007-04-16 19:32 2007-04-16 19:32 2007-04-16 19:32 2007-04-16 19:32 2007-04-16 19:32 2007-04-16 19:32 2007-04-16 19:32 2007-04-16 19:31 786,432 --ah----- C:\DOCUME~1\NETWOR~1\NTUSER.DAT 2007-04-16 19:31 786,432 --ah----- C:\DOCUME~1\LOCALS~1\NTUSER.DAT 2007-04-16 19:31 2007-04-16 19:31 2007-04-16 19:31 2007-04-16 19:31 2007-04-16 19:31 2007-04-16 19:31 2007-04-16 19:26 229,376 —h----- C:\DOCUME~1\DEFAUL~1\NTUSER.DAT 2007-04-16 19:26 0 -rahs---- C:\MSDOS.SYS 2007-04-16 19:26 0 -rahs---- C:\IO.SYS 2007-04-16 19:26 0 --a------ C:\CONFIG.SYS 2007-04-16 19:26 0 --a------ C:\AUTOEXEC.BAT 2007-04-16 19:26 2007-04-16 19:26 2007-04-16 19:25 112,128 --a------ C:\WINDOWS\system32\mapi32.dll 2007-04-16 19:24 2007-04-16 19:24 2007-04-16 19:24 2007-04-16 19:24 2007-04-16 19:24 2007-04-16 19:24 2007-04-16 19:23 11,264 --a------ C:\WINDOWS\system32\atrace.dll 2007-04-16 19:22 8,192 --a------ C:\WINDOWS\system32\bitsprx2.dll 2007-04-16 19:22 7,168 --a------ C:\WINDOWS\system32\bitsprx3.dll 2007-04-16 19:22 67,584 --a------ C:\WINDOWS\system32\acctres.dll 2007-04-16 19:22 6,656 --a------ C:\WINDOWS\system32\wuauserv.dll 2007-04-16 19:22 466,200 --a------ C:\WINDOWS\system32\wuapi.dll 2007-04-16 19:22 41,240 --a------ C:\WINDOWS\system32\wups.dll 2007-04-16 19:22 382,464 --a------ C:\WINDOWS\system32\qmgr.dll 2007-04-16 19:22 195,352 --a------ C:\WINDOWS\system32\wuaueng1.dll 2007-04-16 19:22 18,944 --a------ C:\WINDOWS\system32\qmgrprxy.dll 2007-04-16 19:22 175,384 --a------ C:\WINDOWS\system32\wuauclt1.exe 2007-04-16 19:22 173,536 --a------ C:\WINDOWS\system32\wuweb.dll 2007-04-16 19:22 16,384 --a------ C:\WINDOWS\system32\icfgnt5.dll 2007-04-16 19:22 128,280 --a------ C:\WINDOWS\system32\wucltui.dll 2007-04-16 19:22 125,208 --a------ C:\WINDOWS\system32\wuauclt.exe 2007-04-16 19:22 12,288 --a------ C:\WINDOWS\system32\nmevtmsg.dll 2007-04-16 19:22 1,343,768 --a------ C:\WINDOWS\system32\wuaueng.dll 2007-04-16 19:22 2007-04-16 19:22 2007-04-16 19:22 2007-04-16 19:22 2007-04-16 19:22 2007-04-16 19:21 86,016 --a------ C:\WINDOWS\system32\isign32.dll 2007-04-16 19:21 81,920 --a------ C:\WINDOWS\system32\ils.dll 2007-04-16 19:21 73,728 --a------ C:\WINDOWS\system32\icwdial.dll 2007-04-16 19:21 73,472 --a------ C:\WINDOWS\system32\drivers\sr.sys 2007-04-16 19:21 69,632 --a------ C:\WINDOWS\system32\msconf.dll 2007-04-16 19:21 679,424 --a------ C:\WINDOWS\system32\inetcomm.dll 2007-04-16 19:21 67,584 --a------ C:\WINDOWS\system32\srclient.dll 2007-04-16 19:21 65,536 --a------ C:\WINDOWS\system32\icwphbk.dll 2007-04-16 19:21 49,664 --a------ C:\WINDOWS\system32\inetres.dll 2007-04-16 19:21 45,568 --a------ C:\WINDOWS\system32\safrslv.dll 2007-04-16 19:21 43,520 --a------ C:\WINDOWS\system32\safrcdlg.dll 2007-04-16 19:21 43,520 --a------ C:\WINDOWS\system32\racpldlg.dll 2007-04-16 19:21 34,560 --a------ C:\WINDOWS\system32\mnmdd.dll 2007-04-16 19:21 32,768 --a------ C:\WINDOWS\system32\mnmsrvc.exe 2007-04-16 19:21 32,768 --a------ C:\WINDOWS\system32\isrdbg32.dll 2007-04-16 19:21 29,696 --a------ C:\WINDOWS\system32\safrdm.dll 2007-04-16 19:21 28,672 --a------ C:\WINDOWS\system32\nmmkcert.dll 2007-04-16 19:21 278,528 --a------ C:\WINDOWS\system32\mstask.dll 2007-04-16 19:21 278,528 --a------ C:\WINDOWS\system32\inetcfg.dll 2007-04-16 19:21 252,928 --a------ C:\WINDOWS\system32\msoeacct.dll 2007-04-16 19:21 240,128 --a------ C:\WINDOWS\system32\srrstr.dll 2007-04-16 19:21 23,040 --a------ C:\WINDOWS\system32\fltmc.exe 2007-04-16 19:21 192,000 --a------ C:\WINDOWS\system32\schedsvc.dll 2007-04-16 19:21 171,008 --a------ C:\WINDOWS\system32\srsvc.dll 2007-04-16 19:21 16,896 --a------ C:\WINDOWS\system32\fltlib.dll 2007-04-16 19:21 128,896 --a------ C:\WINDOWS\system32\drivers\fltmgr.sys 2007-04-16 19:21 12,288 --a------ C:\WINDOWS\system32\mstinit.exe 2007-04-16 19:21 105,984 --a------ C:\WINDOWS\system32\msoert2.dll 2007-04-16 19:21 2007-04-16 19:20 5,632 --a------ C:\WINDOWS\system32\write.exe 2007-04-16 19:20 21,856 --a------ C:\WINDOWS\system32\emptyregdb.dat 2007-04-16 19:20 2007-04-16 19:20 2007-04-16 19:20 2007-04-16 19:19 97,792 --a------ C:\WINDOWS\system32\comrepl.dll 2007-04-16 19:19 956,416 --a------ C:\WINDOWS\system32\msdtctm.dll 2007-04-16 19:19 94,720 --a------ C:\WINDOWS\system32\tscfgwmi.dll 2007-04-16 19:19 91,136 --a------ C:\WINDOWS\system32\mtxoci.dll 2007-04-16 19:19 9,728 --a------ C:\WINDOWS\system32\reset.exe 2007-04-16 19:19 87,176 --a------ C:\WINDOWS\system32\rdpwsx.dll 2007-04-16 19:19 85,504 --a------ C:\WINDOWS\system32\catsrvps.dll 2007-04-16 19:19 80,896 --a------ C:\WINDOWS\system32\charmap.exe 2007-04-16 19:19 73,216 --a------ C:\WINDOWS\system32\avwav.dll 2007-04-16 19:19 67,072 --a------ C:\WINDOWS\system32\rdshost.exe 2007-04-16 19:19 655,360 --a------ C:\WINDOWS\system32\mstscax.dll 2007-04-16 19:19 625,152 --a------ C:\WINDOWS\system32\catsrvut.dll 2007-04-16 19:19 62,464 --a------ C:\WINDOWS\system32\rdpclip.exe 2007-04-16 19:19 605,696 --a------ C:\WINDOWS\system32\getuname.dll 2007-04-16 19:19 60,928 --a------ C:\WINDOWS\system32\remotepg.dll 2007-04-16 19:19 60,416 --a------ C:\WINDOWS\system32\colbact.dll 2007-04-16 19:19 6,144 --a------ C:\WINDOWS\system32\msdtc.exe 2007-04-16 19:19 58,880 --a------ C:\WINDOWS\system32\msdtclog.dll 2007-04-16 19:19 58,880 --a------ C:\WINDOWS\system32\licwmi.dll 2007-04-16 19:19 57,344 --a------ C:\WINDOWS\system32\sol.exe 2007-04-16 19:19 56,320 --a------ C:\WINDOWS\system32\servdeps.dll 2007-04-16 19:19 55,808 --a------ C:\WINDOWS\system32\freecell.exe 2007-04-16 19:19 540,160 --a------ C:\WINDOWS\system32\comuid.dll 2007-04-16 19:19 54,272 --a------ C:\WINDOWS\system32\stclient.dll 2007-04-16 19:19 539,136 --a------ C:\WINDOWS\system32\spider.exe 2007-04-16 19:19 5,120 --a------ C:\WINDOWS\system32\dcomcnfg.exe 2007-04-16 19:19 498,688 --a------ C:\WINDOWS\system32\clbcatq.dll 2007-04-16 19:19 44,544 --a------ C:\WINDOWS\system32\tscupgrd.exe 2007-04-16 19:19 44,544 --a------ C:\WINDOWS\system32\hticons.dll 2007-04-16 19:19 426,496 --a------ C:\WINDOWS\system32\msdtcprx.dll 2007-04-16 19:19 408,576 --a------ C:\WINDOWS\system32\mstsc.exe 2007-04-16 19:19 40,840 --a------ C:\WINDOWS\system32\drivers\termdd.sys 2007-04-16 19:19 4,608 --a------ C:\WINDOWS\system32\rdpcfgex.dll 2007-04-16 19:19 4,096 --a------ C:\WINDOWS\system32\mtxex.dll 2007-04-16 19:19 38,912 --a------ C:\WINDOWS\system32\cfgbkend.dll 2007-04-16 19:19 351,744 --a------ C:\WINDOWS\system32\hypertrm.dll 2007-04-16 19:19 35,328 --a------ C:\WINDOWS\system32\winchat.exe 2007-04-16 19:19 345,088 --a------ C:\WINDOWS\system32\mspaint.exe 2007-04-16 19:19 33,792 --a------ C:\WINDOWS\system32\regini.exe 2007-04-16 19:19 296,448 --a------ C:\WINDOWS\system32\termsrv.dll 2007-04-16 19:19 25,600 --a------ C:\WINDOWS\system32\comaddin.dll 2007-04-16 19:19 25,088 --a------ C:\WINDOWS\system32\mtxlegih.dll 2007-04-16 19:19 231,424 --a------ C:\WINDOWS\system32\avtapi.dll 2007-04-16 19:19 225,792 --a------ C:\WINDOWS\system32\catsrv.dll 2007-04-16 19:19 22,528 --a------ C:\WINDOWS\system32\qwinsta.exe 2007-04-16 19:19 22,528 --a------ C:\WINDOWS\system32\msg.exe 2007-04-16 19:19 21,896 --a------ C:\WINDOWS\system32\drivers\tdtcp.sys 2007-04-16 19:19 20,992 --a------ C:\WINDOWS\system32\qprocess.exe 2007-04-16 19:19 20,480 --a------ C:\WINDOWS\system32\mtxdm.dll 2007-04-16 19:19 196,864 --a------ C:\WINDOWS\system32\drivers\rdpdr.sys 2007-04-16 19:19 19,968 --a------ C:\WINDOWS\system32\rdpsnd.dll 2007-04-16 19:19 187,904 --a------ C:\WINDOWS\system32\cmprops.dll 2007-04-16 19:19 187,904 --a------ C:\WINDOWS\system32\accwiz.exe 2007-04-16 19:19 17,920 --a------ C:\WINDOWS\system32\tsshutdn.exe 2007-04-16 19:19 17,920 --a------ C:\WINDOWS\system32\mmfutil.dll 2007-04-16 19:19 17,408 --a------ C:\WINDOWS\system32\qappsrv.exe 2007-04-16 19:19 161,280 --a------ C:\WINDOWS\system32\msdtcuiu.dll 2007-04-16 19:19 16,384 --a------ C:\WINDOWS\system32\tskill.exe 2007-04-16 19:19 16,384 --a------ C:\WINDOWS\system32\rwinsta.exe 2007-04-16 19:19 16,384 --a------ C:\WINDOWS\system32\avmeter.dll 2007-04-16 19:19 15,872 --a------ C:\WINDOWS\system32\logoff.exe 2007-04-16 19:19 15,872 --a------ C:\WINDOWS\system32\cdmodem.dll 2007-04-16 19:19 15,360 --a------ C:\WINDOWS\system32\tsdiscon.exe 2007-04-16 19:19 15,360 --a------ C:\WINDOWS\system32\tscon.exe 2007-04-16 19:19 15,360 --a------ C:\WINDOWS\system32\shadow.exe 2007-04-16 19:19 147,968 --a------ C:\WINDOWS\system32\rdchost.dll 2007-04-16 19:19 147,456 --a------ C:\WINDOWS\system32\comsnap.dll 2007-04-16 19:19 141,824 --a------ C:\WINDOWS\system32\sessmgr.exe 2007-04-16 19:19 139,528 --a------ C:\WINDOWS\system32\drivers\rdpwd.sys 2007-04-16 19:19 139,264 --a------ C:\WINDOWS\system32\sndvol32.exe 2007-04-16 19:19 132,608 --a------ C:\WINDOWS\system32\sndrec32.exe 2007-04-16 19:19 13,824 --a------ C:\WINDOWS\system32\rdsaddin.exe 2007-04-16 19:19 128,000 --a------ C:\WINDOWS\system32\mshearts.exe 2007-04-16 19:19 124,928 --a------ C:\WINDOWS\system32\mplay32.exe 2007-04-16 19:19 12,040 --a------ C:\WINDOWS\system32\drivers\tdpipe.sys 2007-04-16 19:19 119,808 --a------ C:\WINDOWS\system32\winmine.exe 2007-04-16 19:19 115,200 --a------ C:\WINDOWS\system32\calc.exe 2007-04-16 19:19 110,080 --a------ C:\WINDOWS\system32\clbcatex.dll 2007-04-16 19:19 11,776 --a------ C:\WINDOWS\system32\xolehlp.dll 2007-04-16 19:19 11,264 --a------ C:\WINDOWS\system32\icaapi.dll 2007-04-16 19:19 103,424 --a------ C:\WINDOWS\system32\clipbrd.exe 2007-04-16 19:19 1,267,200 --a------ C:\WINDOWS\system32\comsvcs.dll 2007-04-16 19:19 1,225 --a------ C:\WINDOWS\system32\usrlogon.cmd 2007-04-16 19:19 2007-04-16 19:19 2007-04-16 19:19 (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2007-04-17 09:16 49492 --a------ C:\WINDOWS\system32\perfc015.dat 2007-04-17 09:16 355486 --a------ C:\WINDOWS\system32\perfh015.dat 2007-04-16 21:06 62 --ahs---- C:\DOCUME~1\XXX\DANEAP~1\desktop.ini 2007-04-16 19:24 -------- d-------- C:\Program Files\usugi online 2007-03-17 15:45 293376 --a------ C:\WINDOWS\system32\winsrv.dll 2007-03-08 17:38 579072 --a------ C:\WINDOWS\system32\user32.dll 2007-03-08 17:38 40960 --a------ C:\WINDOWS\system32\mf3216.dll 2007-03-08 17:38 281600 --a------ C:\WINDOWS\system32\gdi32.dll 2007-03-08 17:37 1843840 --a------ C:\WINDOWS\system32\win32k.sys 2007-02-05 22:19 185856 --a------ C:\WINDOWS\system32\upnphost.dll (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects] {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll {53707962-6F74-2D53-2644-206D7942484F} C:\PROGRA~1\SPYBOT~1\SDHelper.dll {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] “avgnt”="“C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe” /min" “ATIPTA”=“C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe” “HTpatch”=“C:\WINDOWS\htpatch.exe” “SiSUSBRG”=“C:\WINDOWS\SiSUSBrg.exe” “Cmaudio”=“RunDll32 cmicnfg.cpl,CMICtrlWnd” “SunJavaUpdateSched”="“C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe”" “WinampAgent”="“C:\Program Files\Winamp\winampa.exe”" “NeroFilterCheck”=“C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe” [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] “Gadu-Gadu”="“C:\Program Files\Gadu-Gadu\gg.exe” /tray" “BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}”="“C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe”" HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa Authentication Packages REG_MULTI_SZ msv1_0\0\0 Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0 Notification Packages REG_MULTI_SZ scecli\0\0 [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 *newlycreated* - HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\LEGACY_SISPORT ******************************************************************** catchme 0.3.660 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net Rootkit scan 2007-04-21 15:57:06 Windows 5.1.2600 Dodatek Service Pack 2 NTFS scanning hidden processes … scanning hidden services … scanning hidden autostart entries … HKLM\Software\Microsoft\Windows\CurrentVersion\Run HTpatch = C:\WINDOWS\htpatch.exe?ows\CurrentVersion\Run???/??[??? [?? [???[???[?C??? [$???[???S??[???m??[???w???(???{??w???w???w???w???[???d???b6?[%??[?? [???"??[A??[???[.??wZ??[?3?[?3?[???st.I???[???d???0=?[?K?[scanning hidden files … scan completed successfully hidden processes: 0 hidden services: 0 hidden files: 0 ******************************************************************** Completion time: 07-04-21 15:57:08 C:\ComboFix-quarantined-files.txt … 07-04-21 15:57