Prosze o sprawdzenie logów ( ComboFix )
ComboFix 09-07-09.08 - Mateusz 2002-01-01 4:29.1.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1250.48.1045.18.1280.841 [GMT 1:00]
Uruchomiony z: c:\documents and settings\Mateusz\Pulpit\ComboFix.exe
AV: avast! antivirus 4.8.1335 [VPS 090518-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\docume~1\Mateusz\USTAWI~1\Temp\install_flash_player.exe
c:\program files\Mozilla Firefox\plugins\NPMyGlSh.dll
c:\program files\myglobalsearch
c:\program files\myglobalsearch\bar\1.bin\M9FFXTBR.JAR
c:\program files\myglobalsearch\bar\1.bin\M9FFXTBR.MANIFEST
c:\program files\myglobalsearch\bar\1.bin\M9NTSTBR.JAR
c:\program files\myglobalsearch\bar\1.bin\M9NTSTBR.MANIFEST
c:\program files\myglobalsearch\bar\1.bin\M9PLUGIN.DLL
c:\program files\myglobalsearch\bar\1.bin\MGSBAR.DLL
c:\program files\myglobalsearch\bar\1.bin\NPMYGLSH.DLL
c:\program files\myglobalsearch\bar\Cache\000907C4
c:\program files\myglobalsearch\bar\Cache\00679F77.bin
c:\program files\myglobalsearch\bar\Cache\0067A2C3.bin
c:\program files\myglobalsearch\bar\Cache\0067ADDE.bin
c:\program files\myglobalsearch\bar\Cache\00A6194D
c:\program files\myglobalsearch\bar\Cache\00BA209E
c:\program files\myglobalsearch\bar\Cache\files.ini
c:\program files\myglobalsearch\bar\History\search
c:\program files\myglobalsearch\bar\Settings\prevcfg.htm
c:\windows\system32\msssc.dll
c:\windows\system32\setup.ini
.
((((((((((((((((((((((((( Pliki utworzone od 2001-12-01 do 2002-01-01 )))))))))))))))))))))))))))))))
.
2009-03-21 14:08 . 2009-03-21 14:08 1018368 -c----w- c:\windows\system32\dllcache\kernel32.dll
2009-03-02 23:11 . 2009-03-02 23:11 1499136 -c----w- c:\windows\system32\dllcache\shdocvw.dll
2009-02-20 08:12 . 2009-02-20 08:12 3089408 -c----w- c:\windows\system32\dllcache\mshtml.dll
2009-02-20 08:12 . 2009-02-20 08:12 668672 -c----w- c:\windows\system32\dllcache\wininet.dll
2009-02-20 08:12 . 2009-02-20 08:12 619520 -c----w- c:\windows\system32\dllcache\urlmon.dll
2009-02-20 08:11 . 2009-02-20 08:11 81920 -c----w- c:\windows\system32\dllcache\ieencode.dll
2009-02-20 03:19 . 2009-02-20 03:20 -------- d-----w- C:\dsa
2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\UC.PIF
2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\RAR.PIF
2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\PKZIP.PIF
2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\PKUNZIP.PIF
2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\NOCLOSE.PIF
2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\LHA.PIF
2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\ARJ.PIF
2009-02-20 02:58 . 2002-01-01 00:37 -------- d-----w- C:\totalcmd
2009-02-19 05:10 . 2009-02-19 05:10 -------- d–h--w- c:\windows\system32\GroupPolicy
2009-02-19 00:52 . 2009-02-19 00:52 -------- d-----w- c:\program files\Bonjour
2009-02-19 00:19 . 2009-02-19 00:19 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2009-02-18 22:43 . 2009-02-18 22:48 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\FLEXnet
2009-02-18 20:27 . 2008-09-04 17:17 1106944 -c----w- c:\windows\system32\dllcache\msxml3.dll
2009-02-18 20:27 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2009-02-18 20:26 . 2009-02-06 10:10 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2009-02-18 20:26 . 2009-02-09 11:26 2190336 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2009-02-18 20:26 . 2009-03-06 14:22 285696 -c----w- c:\windows\system32\dllcache\pdh.dll
2009-02-18 20:26 . 2009-02-09 11:25 111104 -c----w- c:\windows\system32\dllcache\services.exe
2009-02-18 20:26 . 2009-02-09 10:53 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2009-02-18 20:26 . 2009-02-09 10:53 686592 -c----w- c:\windows\system32\dllcache\advapi32.dll
2009-02-18 20:26 . 2009-02-09 10:53 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2009-02-18 20:26 . 2009-02-09 10:53 731136 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2009-02-18 20:26 . 2009-02-09 10:53 722944 -c----w- c:\windows\system32\dllcache\ntdll.dll
2009-02-18 20:26 . 2009-02-09 10:53 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2009-02-18 20:26 . 2009-02-09 11:26 2146816 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2009-02-18 20:26 . 2009-02-09 11:26 2025472 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2009-02-18 20:24 . 2009-02-19 01:48 -------- d-----w- c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Adobe
2009-02-18 20:15 . 2009-02-18 20:48 -------- d–h--w- c:\windows$hf_mig$
2009-02-18 20:14 . 2002-01-01 08:30 -------- d-----w- c:\windows\nvidia icons
2009-02-18 19:28 . 2009-02-19 00:51 -------- d-----w- c:\program files\Common Files\Adobe
2009-02-18 19:16 . 2002-01-01 08:29 -------- d-----w- c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google
2009-02-18 19:14 . 2008-05-01 14:37 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2009-02-18 19:13 . 2009-02-18 19:13 -------- d-----w- c:\documents and settings\Mateusz\Dane aplikacji\Gadu-Gadu
2009-02-18 19:12 . 2002-01-01 07:24 -------- d-----w- c:\documents and settings\Mateusz\Gadu-Gadu
2009-02-18 19:12 . 2002-01-01 17:40 -------- d-----w- c:\program files\Gadu-Gadu
2009-02-18 19:08 . 2009-02-05 21:06 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-02-18 19:08 . 2009-02-05 21:06 51376 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-02-18 19:08 . 2009-02-05 21:05 26944 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-02-18 19:08 . 2009-02-05 21:04 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-02-18 19:08 . 2009-02-05 21:07 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-02-18 19:08 . 2009-02-05 21:07 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-02-18 19:08 . 2009-02-05 21:08 93296 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-02-18 19:08 . 2009-02-05 21:08 94032 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-02-18 19:08 . 2009-02-05 21:11 1256296 ----a-w- c:\windows\system32\aswBoot.exe
2009-02-18 19:08 . 2003-03-18 20:20 1060864 ----a-w- c:\windows\system32\MFC71.dll
2009-02-18 19:08 . 2003-03-18 19:14 499712 ----a-w- c:\windows\system32\MSVCP71.dll
2009-02-18 19:08 . 2003-02-21 03:42 348160 ----a-w- c:\windows\system32\MSVCR71.dll
2009-02-18 19:07 . 2009-02-18 19:07 -------- d-----w- c:\program files\Alwil Software
2009-02-18 18:57 . 2009-02-18 18:57 -------- d-----w- c:\windows\ServicePackFiles
2009-02-18 18:57 . 2008-04-14 21:51 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe
2009-02-18 18:53 . 2008-07-09 07:57 26488 ----a-w- c:\windows\system32\spupdsvc.exe
2009-02-18 14:09 . 2009-02-18 14:09 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\nView_Profiles
2009-02-18 14:06 . 2008-05-03 04:46 442368 ----a-w- c:\windows\system32\nvudisp.exe
2009-02-18 14:06 . 2002-01-01 09:12 -------- d-----w- c:\windows\nview
2009-02-18 07:33 . 2002-01-01 01:55 -------- d-----w- c:\program files\Valve
2009-02-18 06:03 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys
2009-02-18 06:00 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2009-02-18 06:00 . 2008-10-24 11:21 455296 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2009-02-18 06:00 . 2008-12-11 10:57 333952 -c----w- c:\windows\system32\dllcache\srv.sys
2009-02-18 06:00 . 2008-04-11 19:06 691712 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2009-02-18 05:59 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2009-02-18 01:06 . 2001-08-17 21:59 3072 ----a-w- c:\windows\system32\drivers\audstub.sys
2009-02-18 01:05 . 2008-04-14 20:35 58880 ----a-w- c:\windows\system32\drivers\redbook.sys
2009-02-18 01:05 . 2008-04-13 23:15 10624 ----a-w- c:\windows\system32\drivers\gameenum.sys
2009-02-18 01:05 . 2008-05-03 04:46 6554496 -c–a-w- c:\windows\system32\dllcache\nv4_mini.sys
2009-02-18 01:05 . 2008-05-03 04:46 6554496 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2009-02-18 01:05 . 2008-05-03 04:46 6108160 ----a-w- c:\windows\system32\nv4_disp.dll
2009-02-18 01:05 . 2004-10-29 15:50 3736704 -c–a-w- c:\windows\system32\dllcache\nv4_disp.dll
2009-02-18 01:04 . 2001-08-17 20:13 27165 ----a-w- c:\windows\system32\drivers\fetnd5.sys
2009-02-18 01:04 . 2008-04-14 21:50 77312 ----a-w- c:\windows\system32\usbui.dll
2009-02-18 01:04 . 2008-04-13 23:06 44672 ----a-w- c:\windows\system32\drivers\uagp35.sys
2009-02-18 01:02 . 2001-10-26 14:51 4096 ----a-w- c:\windows\system\TIMER.DRV
2009-02-18 01:00 . 2009-02-18 14:05 -------- d-----w- c:\windows\system32\CatRoot
2009-02-18 01:00 . 2002-01-01 03:29 -------- d-----w- c:\windows\system32\CatRoot2
2009-02-18 01:00 . 2009-02-18 01:02 -------- d–h--r- c:\documents and settings\Default User\Dane aplikacji
2009-02-18 01:00 . 2002-01-01 07:03 -------- d–h--r- c:\documents and settings\All Users\Dane aplikacji
2009-02-18 01:00 . 2009-02-18 19:07 -------- d–h--w- c:\documents and settings\Default User
2009-02-18 01:00 . 2009-02-18 00:21 -------- d-----w- C:\Documents and Settings
2009-02-18 01:00 . 2002-01-01 01:20 -------- d-----w- c:\documents and settings\All Users
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-03-06 14:22 . 2004-08-03 22:44 285696 ----a-w- c:\windows\system32\pdh.dll
2009-02-21 12:31 . 2009-02-18 19:11 -------- d-----w- c:\documents and settings\Mateusz\Dane aplikacji\Winamp
2009-02-20 08:12 . 2004-08-03 22:44 668672 ----a-w- c:\windows\system32\wininet.dll
2009-02-20 08:11 . 2004-08-03 22:44 81920 ----a-w- c:\windows\system32\ieencode.dll
2009-02-18 19:15 . 2009-02-18 19:15 -------- d-----w- c:\program files\Common Files\Ahead
2009-02-18 19:15 . 2009-02-18 19:15 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero
2009-02-18 19:15 . 2009-02-18 19:15 -------- d-----w- c:\program files\K-Lite Codec Pack
2009-02-18 19:12 . 2009-02-18 19:11 -------- d-----w- c:\program files\Winamp
2009-02-18 19:11 . 2009-02-18 19:11 -------- d-----w- c:\program files\SubEdit-Player
2009-02-18 19:03 . 2009-02-18 00:13 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2009-02-18 00:41 . 2009-02-18 00:41 -------- d-----w- c:\program files\Analog Devices
2009-02-18 00:35 . 2009-02-18 00:35 -------- d-----w- c:\program files\ZTE ZXDSL 852
2009-02-18 00:15 . 2009-02-18 00:15 -------- d-----w- c:\program files\microsoft frontpage
2009-02-18 00:12 . 2009-02-18 00:12 -------- d-----w- c:\program files\Usługi online
2009-02-18 00:10 . 2009-02-18 00:10 21856 ----a-w- c:\windows\system32\emptyregdb.dat
2009-02-10 18:09 . 2004-08-04 00:38 2067328 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-02-09 14:07 . 2004-08-03 22:37 1847040 ----a-w- c:\windows\system32\win32k.sys
2009-02-09 11:26 . 2004-08-03 22:39 2190336 ----a-w- c:\windows\system32\ntoskrnl.exe
2009-02-09 11:25 . 2004-08-03 22:44 111104 ----a-w- c:\windows\system32\services.exe
2009-02-09 10:53 . 2009-02-18 00:08 473600 ----a-w- c:\windows\system32\wbem\fastprox.dll
2009-02-09 10:53 . 2004-08-03 22:44 401408 ----a-w- c:\windows\system32\rpcss.dll
2009-02-09 10:53 . 2004-08-03 22:44 731136 ----a-w- c:\windows\system32\lsasrv.dll
2009-02-09 10:53 . 2004-08-03 22:43 686592 ----a-w- c:\windows\system32\advapi32.dll
2009-02-09 10:53 . 2009-02-18 00:08 453120 ----a-w- c:\windows\system32\wbem\wmiprvsd.dll
2009-02-09 10:53 . 2004-08-03 22:43 722944 ----a-w- c:\windows\system32\ntdll.dll
2009-02-06 10:39 . 2001-10-26 15:30 35328 ----a-w- c:\windows\system32\sc.exe
2009-02-06 10:10 . 2009-02-18 00:08 227840 ----a-w- c:\windows\system32\wbem\wmiprvse.exe
2009-02-03 19:58 . 2004-08-03 22:44 56832 ----a-w- c:\windows\system32\secur32.dll
2008-12-20 22:15 . 2004-08-03 22:44 1291776 ----a-w- c:\windows\system32\quartz.dll
2008-12-16 12:32 . 2004-08-03 22:44 354304 ----a-w- c:\windows\system32\winhttp.dll
2008-12-11 10:57 . 2004-08-03 21:14 333952 ----a-w- c:\windows\system32\drivers\srv.sys
2008-12-08 11:53 . 2009-02-18 19:15 57344 ----a-w- c:\windows\system32\ff_vfw.dll
2008-12-07 18:08 . 2009-02-18 19:15 795648 ----a-w- c:\windows\system32\xvidcore.dll
2008-12-07 18:08 . 2009-02-18 19:15 130048 ----a-w- c:\windows\system32\xvidvfw.dll
2008-12-05 06:57 . 2004-08-03 22:44 144896 ----a-w- c:\windows\system32\schannel.dll
2008-10-28 22:35 . 2009-02-18 19:15 684032 ----a-w- c:\windows\system32\divx.dll
2008-10-24 11:21 . 2004-08-03 21:15 455296 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 12:42 . 2004-08-03 22:44 286720 ----a-w- c:\windows\system32\gdi32.dll
2008-10-16 13:13 . 2009-02-18 00:11 202776 ----a-w- c:\windows\system32\wuweb.dll
2008-10-16 13:13 . 2009-02-18 00:11 1809944 ----a-w- c:\windows\system32\wuaueng.dll
2008-10-16 13:12 . 2009-02-18 00:11 323608 ----a-w- c:\windows\system32\wucltui.dll
2008-10-16 13:12 . 2009-02-18 00:11 561688 ----a-w- c:\windows\system32\wuapi.dll
2008-10-16 13:09 . 2009-02-18 00:11 51224 ----a-w- c:\windows\system32\wuauclt.exe
2008-10-16 13:09 . 2008-10-16 13:09 43544 ----a-w- c:\windows\system32\wups2.dll
2008-10-16 13:09 . 2004-08-03 22:43 92696 ----a-w- c:\windows\system32\cdm.dll
2008-10-16 13:08 . 2009-02-18 00:11 34328 ----a-w- c:\windows\system32\wups.dll
2008-10-03 10:04 . 2004-08-03 22:44 247326 ----a-w- c:\windows\system32\strmdll.dll
2008-09-25 08:03 . 2009-02-18 19:15 81920 ----a-w- c:\windows\system32\dpl100.dll
2008-09-19 21:57 . 2009-02-18 19:15 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2008-09-16 19:23 . 2009-02-18 19:15 168448 ----a-w- c:\windows\system32\unrar.dll
2008-09-10 01:15 . 2009-02-18 19:00 1307648 ------w- c:\windows\system32\msxml6.dll
2008-09-04 17:17 . 2004-08-03 22:44 1106944 ----a-w- c:\windows\system32\msxml3.dll
2008-08-14 10:04 . 2004-08-03 21:14 138496 ----a-w- c:\windows\system32\drivers\afd.sys
2008-07-07 20:29 . 2004-08-03 22:43 253952 ----a-w- c:\windows\system32\es.dll
2008-06-24 16:46 . 2004-08-03 22:44 74240 ----a-w- c:\windows\system32\mscms.dll
2008-06-20 17:48 . 2004-08-03 22:44 246784 ----a-w- c:\windows\system32\mswsock.dll
2008-06-20 11:51 . 2004-08-03 21:14 361600 ----a-w- c:\windows\system32\drivers\tcpip.sys
2008-06-20 11:08 . 2004-08-03 21:07 225856 ----a-w- c:\windows\system32\drivers\tcpip6.sys
2008-06-14 17:36 . 2009-02-18 18:55 273024 ------w- c:\windows\system32\drivers\bthport.sys
2008-06-12 14:23 . 2009-02-18 00:08 956928 ----a-w- c:\windows\system32\msdtctm.dll
2008-06-12 14:23 . 2009-02-18 00:08 91648 ----a-w- c:\windows\system32\mtxoci.dll
2008-06-12 14:23 . 2009-02-18 00:08 428032 ----a-w- c:\windows\system32\msdtcprx.dll
2008-06-12 14:23 . 2009-02-18 00:08 161792 ----a-w- c:\windows\system32\msdtcuiu.dll
2008-06-12 14:23 . 2009-02-18 00:08 58880 ----a-w- c:\windows\system32\msdtclog.dll
2008-06-12 14:23 . 2004-08-03 22:44 66560 ----a-w- c:\windows\system32\mtxclu.dll
2008-06-10 05:11 . 2004-08-03 22:44 1053696 ----a-w- c:\windows\system32\WMNetmgr.dll
2008-06-10 02:11 . 2004-08-03 22:44 103936 ----a-w- c:\windows\system32\logagent.exe
2008-05-09 10:56 . 2004-08-03 22:44 90112 ----a-w- c:\windows\system32\wshext.dll
2008-05-09 10:56 . 2004-08-03 22:44 430080 ----a-w- c:\windows\system32\vbscript.dll
2008-05-09 10:56 . 2004-08-03 22:44 180224 ----a-w- c:\windows\system32\scrobj.dll
2008-05-09 10:56 . 2004-08-03 22:44 172032 ----a-w- c:\windows\system32\scrrun.dll
2008-05-08 14:02 . 2001-08-17 19:52 203136 ----a-w- c:\windows\system32\drivers\rmcast.sys
2008-05-08 11:24 . 2004-08-03 22:44 155648 ----a-w- c:\windows\system32\wscript.exe
2008-05-07 09:07 . 2004-08-03 22:44 135168 ----a-w- c:\windows\system32\cscript.exe
2008-05-05 06:25 . 2008-05-05 06:25 3072 ------w- c:\windows\system32\xpsp4res.dll
2008-04-30 16:27 . 2002-01-01 08:29 442368 ----a-w- c:\windows\system32\NVUNINST.EXE
2008-04-14 22:16 . 2004-08-03 22:56 1804 ----a-w- c:\windows\system32\dcache.bin
2008-04-14 21:56 . 2004-08-03 22:46 332288 ----a-w- c:\windows\system32\netsetup.exe
2008-04-14 21:52 . 2009-02-18 00:08 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2008-04-14 21:52 . 2009-02-18 00:08 87176 ----a-w- c:\windows\system32\rdpwsx.dll
2008-04-14 21:52 . 2004-08-03 22:44 92424 ----a-w- c:\windows\system32\rdpdd.dll
2008-04-14 21:52 . 2004-08-03 22:44 12168 ----a-w- c:\windows\system32\tsddd.dll
2008-04-14 21:52 . 2009-02-18 00:08 21896 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2008-04-14 21:52 . 2009-02-18 00:08 12040 ----a-w- c:\windows\system32\drivers\tdpipe.sys
2008-04-14 21:52 . 2009-02-18 00:08 40840 ----a-w- c:\windows\system32\drivers\termdd.sys
2008-04-14 21:52 . 2004-08-03 22:44 299520 ----a-w- c:\windows\system32\drmclien.dll
2008-04-14 21:52 . 2004-08-03 22:44 695808 ----a-w- c:\windows\system32\drmv2clt.dll
2008-04-14 21:52 . 2004-08-03 22:44 356352 ----a-w- c:\windows\system32\msscp.dll
2008-04-14 21:52 . 2004-08-03 22:44 259072 ----a-w- c:\windows\system32\msnetobj.dll
2008-04-14 21:50 . 2009-02-18 19:00 53248 ------w- c:\windows\system32\tsgqec.dll
2008-04-14 21:49 . 2004-08-03 22:43 68096 ----a-w- c:\windows\system32\adsmsext.dll
2008-04-14 21:49 . 2004-08-03 22:43 175616 ----a-w- c:\windows\system32\adsldp.dll
2008-04-14 21:49 . 2004-08-03 22:43 143360 ----a-w- c:\windows\system32\adsldpc.dll
2008-04-14 21:49 . 2004-08-03 22:43 98304 ----a-w- c:\windows\system32\actxprxy.dll
2008-04-14 21:49 . 2004-08-03 22:43 61440 ----a-w- c:\windows\system32\admparse.dll
2008-04-14 21:49 . 2004-08-03 22:43 193536 ----a-w- c:\windows\system32\activeds.dll
2008-04-14 21:49 . 2004-08-03 22:43 118784 ----a-w- c:\windows\system32\aclui.dll
2008-04-14 21:49 . 2009-02-18 19:00 136192 ------w- c:\windows\system32\aaclient.dll
2008-04-14 21:49 . 2004-08-03 22:43 100352 ----a-w- c:\windows\system32\6to4svc.dll
2008-04-14 21:48 . 2004-08-03 22:43 5632 ----a-w- c:\windows\system32\wmi.dll
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“CTFMON.EXE”=“c:\windows\system32\ctfmon.exe” [2008-04-14 15360]
“Gadu-Gadu”=“c:\program files\Gadu-Gadu\gg.exe” [2008-03-20 2127296]
“DAEMON Tools Lite”=“c:\program files\DAEMON Tools Lite\daemon.exe” [2008-12-29 687560]
“MSMSGS”=“c:\program files\Messenger\msmsgs.exe” [2008-04-14 1695232]
“Google Update”=“c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe” [2002-01-01 133104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“Smapp”=“c:\program files\Analog Devices\SoundMAX\SMTray.exe” [2003-05-05 143360]
“Anvshell”=“c:\windows\Anvshell.exe” [2002-10-22 331776]
“avast!”=“c:\progra~1\ALWILS~1\Avast4\ashDisp.exe” [2009-02-05 81000]
“NvCplDaemon”=“c:\windows\system32\NvCpl.dll” [2008-05-03 13529088]
“WinampAgent”=“c:\program files\Winamp\winampa.exe” [2008-08-03 36352]
“NeroCheck”=“c:\windows\system32\NeroCheck.exe” [2001-07-09 155648]
“NvMediaCenter”=“c:\windows\system32\NvMcTray.dll” [2008-05-03 86016]
“AdslTaskBar”=“stmctrl.dll” - c:\windows\system32\stmctrl.dll [2006-06-02 151552]
“nwiz”=“nwiz.exe” - c:\windows\system32\nwiz.exe [2008-05-03 1630208]
[HKEY_USERS.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
“CTFMON.EXE”=“c:\windows\system32\CTFMON.EXE” [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
“AntiVirusOverride”=dword:00000001
[HKLM~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
“EnableFirewall”= 0 (0x0)
[HKLM~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
“%windir%\system32\sessmgr.exe”=
“%windir%\Network Diagnostic\xpnetdiag.exe”=
“c:\Program Files\Valve\hl.exe”=
“c:\WINDOWS\system32\dpvsetup.exe”=
“c:\Program Files\Valve\hlds.exe”=
“c:\Program Files\Bonjour\mDNSResponder.exe”=
“c:\Program Files\Gadu-Gadu\gg.exe”=
“c:\totalcmd\TOTALCMD.EXE”=
“c:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe”=
“c:\Program Files\FlashFXP\FlashFXP.exe”=
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-02-18 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-02-18 20560]
R3 Stmatm;ATM/ADSL miniport;c:\windows\system32\drivers\stmatm.sys [2009-02-18 60255]
R3 TaurusUsb;ADSL Modem USB Service;c:\windows\system32\drivers\torususb.sys [2009-02-18 684265]
.
Zawartość folderu ‘Zaplanowane zadania’
2001-12-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-823518204-682003330-725345543-1003Core.job
- c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [2002-01-01 08:29]
2002-01-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-823518204-682003330-725345543-1003UA.job
- c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [2002-01-01 08:29]
.
.
------- Skan uzupełniający -------
.
uStart Page = hxxp://www.daemon-search.com/default
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
TCP: {20B93F7B-3A61-4314-81A2-CEFC17C5BED6} = 194.204.159.1 217.98.63.164
FF - ProfilePath - c:\documents and settings\Mateusz\Dane aplikacji\Mozilla\Firefox\Profiles\9fu3onbq.default\
FF - component: c:\program files\DAEMON Tools Toolbar\FirefoxDTT\components\DTToolbarFF.dll
FF - plugin: c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google\Update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2002-01-01 04:33
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
skanowanie ukrytych procesów …
skanowanie ukrytych wpisów autostartu …
skanowanie ukrytych plików …
skanowanie pomyślnie ukończone
ukryte pliki: 0
**************************************************************************
.
Czas ukończenia: 2002-01-01 4:35
ComboFix-quarantined-files.txt 2002-01-01 03:35
Przed: 3 224 403 968 bajtów wolnych
Po: 3 407 785 984 bajtów wolnych
WindowsXP-KB310994-SP2-Pro-BootDisk-PLK.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT=“Microsoft Windows Recovery Console” /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS=“Microsoft Windows XP Professional” /noexecute=optin /fastdetect
305 — E O F — 2001-12-31 23:04