Prosze o sprawdzenie logów ( ComboFix )


(Mateusz Bedra) #1

Prosze o sprawdzenie logów ( ComboFix )

ComboFix 09-07-09.08 - Mateusz 2002-01-01 4:29.1.1 - NTFSx86

Microsoft Windows XP Professional 5.1.2600.3.1250.48.1045.18.1280.841 [GMT 1:00]

Uruchomiony z: c:\documents and settings\Mateusz\Pulpit\ComboFix.exe

AV: avast! antivirus 4.8.1335 [VPS 090518-0] *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}

.

((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))

.

c:\docume~1\Mateusz\USTAWI~1\Temp\install_flash_player.exe

c:\program files\Mozilla Firefox\plugins\NPMyGlSh.dll

c:\program files\myglobalsearch

c:\program files\myglobalsearch\bar\1.bin\M9FFXTBR.JAR

c:\program files\myglobalsearch\bar\1.bin\M9FFXTBR.MANIFEST

c:\program files\myglobalsearch\bar\1.bin\M9NTSTBR.JAR

c:\program files\myglobalsearch\bar\1.bin\M9NTSTBR.MANIFEST

c:\program files\myglobalsearch\bar\1.bin\M9PLUGIN.DLL

c:\program files\myglobalsearch\bar\1.bin\MGSBAR.DLL

c:\program files\myglobalsearch\bar\1.bin\NPMYGLSH.DLL

c:\program files\myglobalsearch\bar\Cache\000907C4

c:\program files\myglobalsearch\bar\Cache\00679F77.bin

c:\program files\myglobalsearch\bar\Cache\0067A2C3.bin

c:\program files\myglobalsearch\bar\Cache\0067ADDE.bin

c:\program files\myglobalsearch\bar\Cache\00A6194D

c:\program files\myglobalsearch\bar\Cache\00BA209E

c:\program files\myglobalsearch\bar\Cache\files.ini

c:\program files\myglobalsearch\bar\History\search

c:\program files\myglobalsearch\bar\Settings\prevcfg.htm

c:\windows\system32\msssc.dll

c:\windows\system32\setup.ini

.

((((((((((((((((((((((((( Pliki utworzone od 2001-12-01 do 2002-01-01 )))))))))))))))))))))))))))))))

.

2009-03-21 14:08 . 2009-03-21 14:08 1018368 -c----w- c:\windows\system32\dllcache\kernel32.dll

2009-03-02 23:11 . 2009-03-02 23:11 1499136 -c----w- c:\windows\system32\dllcache\shdocvw.dll

2009-02-20 08:12 . 2009-02-20 08:12 3089408 -c----w- c:\windows\system32\dllcache\mshtml.dll

2009-02-20 08:12 . 2009-02-20 08:12 668672 -c----w- c:\windows\system32\dllcache\wininet.dll

2009-02-20 08:12 . 2009-02-20 08:12 619520 -c----w- c:\windows\system32\dllcache\urlmon.dll

2009-02-20 08:11 . 2009-02-20 08:11 81920 -c----w- c:\windows\system32\dllcache\ieencode.dll

2009-02-20 03:19 . 2009-02-20 03:20 -------- d-----w- C:\dsa

2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\UC.PIF

2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\RAR.PIF

2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\PKZIP.PIF

2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\PKUNZIP.PIF

2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\NOCLOSE.PIF

2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\LHA.PIF

2009-02-20 02:58 . 2008-08-08 06:04 545 ----a-w- c:\windows\ARJ.PIF

2009-02-20 02:58 . 2002-01-01 00:37 -------- d-----w- C:\totalcmd

2009-02-19 05:10 . 2009-02-19 05:10 -------- d--h--w- c:\windows\system32\GroupPolicy

2009-02-19 00:52 . 2009-02-19 00:52 -------- d-----w- c:\program files\Bonjour

2009-02-19 00:19 . 2009-02-19 00:19 -------- d-----w- c:\program files\Common Files\Macrovision Shared

2009-02-18 22:43 . 2009-02-18 22:48 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\FLEXnet

2009-02-18 20:27 . 2008-09-04 17:17 1106944 -c----w- c:\windows\system32\dllcache\msxml3.dll

2009-02-18 20:27 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe

2009-02-18 20:26 . 2009-02-06 10:10 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe

2009-02-18 20:26 . 2009-02-09 11:26 2190336 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe

2009-02-18 20:26 . 2009-03-06 14:22 285696 -c----w- c:\windows\system32\dllcache\pdh.dll

2009-02-18 20:26 . 2009-02-09 11:25 111104 -c----w- c:\windows\system32\dllcache\services.exe

2009-02-18 20:26 . 2009-02-09 10:53 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll

2009-02-18 20:26 . 2009-02-09 10:53 686592 -c----w- c:\windows\system32\dllcache\advapi32.dll

2009-02-18 20:26 . 2009-02-09 10:53 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll

2009-02-18 20:26 . 2009-02-09 10:53 731136 -c----w- c:\windows\system32\dllcache\lsasrv.dll

2009-02-18 20:26 . 2009-02-09 10:53 722944 -c----w- c:\windows\system32\dllcache\ntdll.dll

2009-02-18 20:26 . 2009-02-09 10:53 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll

2009-02-18 20:26 . 2009-02-09 11:26 2146816 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe

2009-02-18 20:26 . 2009-02-09 11:26 2025472 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe

2009-02-18 20:24 . 2009-02-19 01:48 -------- d-----w- c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Adobe

2009-02-18 20:15 . 2009-02-18 20:48 -------- d--h--w- c:\windows\$hf_mig$

2009-02-18 20:14 . 2002-01-01 08:30 -------- d-----w- c:\windows\nvidia icons

2009-02-18 19:28 . 2009-02-19 00:51 -------- d-----w- c:\program files\Common Files\Adobe

2009-02-18 19:16 . 2002-01-01 08:29 -------- d-----w- c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google

2009-02-18 19:14 . 2008-05-01 14:37 331776 -c----w- c:\windows\system32\dllcache\msadce.dll

2009-02-18 19:13 . 2009-02-18 19:13 -------- d-----w- c:\documents and settings\Mateusz\Dane aplikacji\Gadu-Gadu

2009-02-18 19:12 . 2002-01-01 07:24 -------- d-----w- c:\documents and settings\Mateusz\Gadu-Gadu

2009-02-18 19:12 . 2002-01-01 17:40 -------- d-----w- c:\program files\Gadu-Gadu

2009-02-18 19:08 . 2009-02-05 21:06 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys

2009-02-18 19:08 . 2009-02-05 21:06 51376 ----a-w- c:\windows\system32\drivers\aswTdi.sys

2009-02-18 19:08 . 2009-02-05 21:05 26944 ----a-w- c:\windows\system32\drivers\aavmker4.sys

2009-02-18 19:08 . 2009-02-05 21:04 97480 ----a-w- c:\windows\system32\AvastSS.scr

2009-02-18 19:08 . 2009-02-05 21:07 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys

2009-02-18 19:08 . 2009-02-05 21:07 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys

2009-02-18 19:08 . 2009-02-05 21:08 93296 ----a-w- c:\windows\system32\drivers\aswmon.sys

2009-02-18 19:08 . 2009-02-05 21:08 94032 ----a-w- c:\windows\system32\drivers\aswmon2.sys

2009-02-18 19:08 . 2009-02-05 21:11 1256296 ----a-w- c:\windows\system32\aswBoot.exe

2009-02-18 19:08 . 2003-03-18 20:20 1060864 ----a-w- c:\windows\system32\MFC71.dll

2009-02-18 19:08 . 2003-03-18 19:14 499712 ----a-w- c:\windows\system32\MSVCP71.dll

2009-02-18 19:08 . 2003-02-21 03:42 348160 ----a-w- c:\windows\system32\MSVCR71.dll

2009-02-18 19:07 . 2009-02-18 19:07 -------- d-----w- c:\program files\Alwil Software

2009-02-18 18:57 . 2009-02-18 18:57 -------- d-----w- c:\windows\ServicePackFiles

2009-02-18 18:57 . 2008-04-14 21:51 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe

2009-02-18 18:53 . 2008-07-09 07:57 26488 ----a-w- c:\windows\system32\spupdsvc.exe

2009-02-18 14:09 . 2009-02-18 14:09 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\nView_Profiles

2009-02-18 14:06 . 2008-05-03 04:46 442368 ----a-w- c:\windows\system32\nvudisp.exe

2009-02-18 14:06 . 2002-01-01 09:12 -------- d-----w- c:\windows\nview

2009-02-18 07:33 . 2002-01-01 01:55 -------- d-----w- c:\program files\Valve

2009-02-18 06:03 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys

2009-02-18 06:00 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys

2009-02-18 06:00 . 2008-10-24 11:21 455296 -c----w- c:\windows\system32\dllcache\mrxsmb.sys

2009-02-18 06:00 . 2008-12-11 10:57 333952 -c----w- c:\windows\system32\dllcache\srv.sys

2009-02-18 06:00 . 2008-04-11 19:06 691712 -c----w- c:\windows\system32\dllcache\inetcomm.dll

2009-02-18 05:59 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll

2009-02-18 01:06 . 2001-08-17 21:59 3072 ----a-w- c:\windows\system32\drivers\audstub.sys

2009-02-18 01:05 . 2008-04-14 20:35 58880 ----a-w- c:\windows\system32\drivers\redbook.sys

2009-02-18 01:05 . 2008-04-13 23:15 10624 ----a-w- c:\windows\system32\drivers\gameenum.sys

2009-02-18 01:05 . 2008-05-03 04:46 6554496 -c--a-w- c:\windows\system32\dllcache\nv4_mini.sys

2009-02-18 01:05 . 2008-05-03 04:46 6554496 ----a-w- c:\windows\system32\drivers\nv4_mini.sys

2009-02-18 01:05 . 2008-05-03 04:46 6108160 ----a-w- c:\windows\system32\nv4_disp.dll

2009-02-18 01:05 . 2004-10-29 15:50 3736704 -c--a-w- c:\windows\system32\dllcache\nv4_disp.dll

2009-02-18 01:04 . 2001-08-17 20:13 27165 ----a-w- c:\windows\system32\drivers\fetnd5.sys

2009-02-18 01:04 . 2008-04-14 21:50 77312 ----a-w- c:\windows\system32\usbui.dll

2009-02-18 01:04 . 2008-04-13 23:06 44672 ----a-w- c:\windows\system32\drivers\uagp35.sys

2009-02-18 01:02 . 2001-10-26 14:51 4096 ----a-w- c:\windows\system\TIMER.DRV

2009-02-18 01:00 . 2009-02-18 14:05 -------- d-----w- c:\windows\system32\CatRoot

2009-02-18 01:00 . 2002-01-01 03:29 -------- d-----w- c:\windows\system32\CatRoot2

2009-02-18 01:00 . 2009-02-18 01:02 -------- d--h--r- c:\documents and settings\Default User\Dane aplikacji

2009-02-18 01:00 . 2002-01-01 07:03 -------- d--h--r- c:\documents and settings\All Users\Dane aplikacji

2009-02-18 01:00 . 2009-02-18 19:07 -------- d--h--w- c:\documents and settings\Default User

2009-02-18 01:00 . 2009-02-18 00:21 -------- d-----w- C:\Documents and Settings

2009-02-18 01:00 . 2002-01-01 01:20 -------- d-----w- c:\documents and settings\All Users

.

(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2009-03-06 14:22 . 2004-08-03 22:44 285696 ----a-w- c:\windows\system32\pdh.dll

2009-02-21 12:31 . 2009-02-18 19:11 -------- d-----w- c:\documents and settings\Mateusz\Dane aplikacji\Winamp

2009-02-20 08:12 . 2004-08-03 22:44 668672 ----a-w- c:\windows\system32\wininet.dll

2009-02-20 08:11 . 2004-08-03 22:44 81920 ----a-w- c:\windows\system32\ieencode.dll

2009-02-18 19:15 . 2009-02-18 19:15 -------- d-----w- c:\program files\Common Files\Ahead

2009-02-18 19:15 . 2009-02-18 19:15 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero

2009-02-18 19:15 . 2009-02-18 19:15 -------- d-----w- c:\program files\K-Lite Codec Pack

2009-02-18 19:12 . 2009-02-18 19:11 -------- d-----w- c:\program files\Winamp

2009-02-18 19:11 . 2009-02-18 19:11 -------- d-----w- c:\program files\SubEdit-Player

2009-02-18 19:03 . 2009-02-18 00:13 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat

2009-02-18 00:41 . 2009-02-18 00:41 -------- d-----w- c:\program files\Analog Devices

2009-02-18 00:35 . 2009-02-18 00:35 -------- d-----w- c:\program files\ZTE ZXDSL 852

2009-02-18 00:15 . 2009-02-18 00:15 -------- d-----w- c:\program files\microsoft frontpage

2009-02-18 00:12 . 2009-02-18 00:12 -------- d-----w- c:\program files\Usługi online

2009-02-18 00:10 . 2009-02-18 00:10 21856 ----a-w- c:\windows\system32\emptyregdb.dat

2009-02-10 18:09 . 2004-08-04 00:38 2067328 ----a-w- c:\windows\system32\ntkrnlpa.exe

2009-02-09 14:07 . 2004-08-03 22:37 1847040 ----a-w- c:\windows\system32\win32k.sys

2009-02-09 11:26 . 2004-08-03 22:39 2190336 ----a-w- c:\windows\system32\ntoskrnl.exe

2009-02-09 11:25 . 2004-08-03 22:44 111104 ----a-w- c:\windows\system32\services.exe

2009-02-09 10:53 . 2009-02-18 00:08 473600 ----a-w- c:\windows\system32\wbem\fastprox.dll

2009-02-09 10:53 . 2004-08-03 22:44 401408 ----a-w- c:\windows\system32\rpcss.dll

2009-02-09 10:53 . 2004-08-03 22:44 731136 ----a-w- c:\windows\system32\lsasrv.dll

2009-02-09 10:53 . 2004-08-03 22:43 686592 ----a-w- c:\windows\system32\advapi32.dll

2009-02-09 10:53 . 2009-02-18 00:08 453120 ----a-w- c:\windows\system32\wbem\wmiprvsd.dll

2009-02-09 10:53 . 2004-08-03 22:43 722944 ----a-w- c:\windows\system32\ntdll.dll

2009-02-06 10:39 . 2001-10-26 15:30 35328 ----a-w- c:\windows\system32\sc.exe

2009-02-06 10:10 . 2009-02-18 00:08 227840 ----a-w- c:\windows\system32\wbem\wmiprvse.exe

2009-02-03 19:58 . 2004-08-03 22:44 56832 ----a-w- c:\windows\system32\secur32.dll

2008-12-20 22:15 . 2004-08-03 22:44 1291776 ----a-w- c:\windows\system32\quartz.dll

2008-12-16 12:32 . 2004-08-03 22:44 354304 ----a-w- c:\windows\system32\winhttp.dll

2008-12-11 10:57 . 2004-08-03 21:14 333952 ----a-w- c:\windows\system32\drivers\srv.sys

2008-12-08 11:53 . 2009-02-18 19:15 57344 ----a-w- c:\windows\system32\ff_vfw.dll

2008-12-07 18:08 . 2009-02-18 19:15 795648 ----a-w- c:\windows\system32\xvidcore.dll

2008-12-07 18:08 . 2009-02-18 19:15 130048 ----a-w- c:\windows\system32\xvidvfw.dll

2008-12-05 06:57 . 2004-08-03 22:44 144896 ----a-w- c:\windows\system32\schannel.dll

2008-10-28 22:35 . 2009-02-18 19:15 684032 ----a-w- c:\windows\system32\divx.dll

2008-10-24 11:21 . 2004-08-03 21:15 455296 ----a-w- c:\windows\system32\drivers\mrxsmb.sys

2008-10-23 12:42 . 2004-08-03 22:44 286720 ----a-w- c:\windows\system32\gdi32.dll

2008-10-16 13:13 . 2009-02-18 00:11 202776 ----a-w- c:\windows\system32\wuweb.dll

2008-10-16 13:13 . 2009-02-18 00:11 1809944 ----a-w- c:\windows\system32\wuaueng.dll

2008-10-16 13:12 . 2009-02-18 00:11 323608 ----a-w- c:\windows\system32\wucltui.dll

2008-10-16 13:12 . 2009-02-18 00:11 561688 ----a-w- c:\windows\system32\wuapi.dll

2008-10-16 13:09 . 2009-02-18 00:11 51224 ----a-w- c:\windows\system32\wuauclt.exe

2008-10-16 13:09 . 2008-10-16 13:09 43544 ----a-w- c:\windows\system32\wups2.dll

2008-10-16 13:09 . 2004-08-03 22:43 92696 ----a-w- c:\windows\system32\cdm.dll

2008-10-16 13:08 . 2009-02-18 00:11 34328 ----a-w- c:\windows\system32\wups.dll

2008-10-03 10:04 . 2004-08-03 22:44 247326 ----a-w- c:\windows\system32\strmdll.dll

2008-09-25 08:03 . 2009-02-18 19:15 81920 ----a-w- c:\windows\system32\dpl100.dll

2008-09-19 21:57 . 2009-02-18 19:15 3596288 ----a-w- c:\windows\system32\qt-dx331.dll

2008-09-16 19:23 . 2009-02-18 19:15 168448 ----a-w- c:\windows\system32\unrar.dll

2008-09-10 01:15 . 2009-02-18 19:00 1307648 ------w- c:\windows\system32\msxml6.dll

2008-09-04 17:17 . 2004-08-03 22:44 1106944 ----a-w- c:\windows\system32\msxml3.dll

2008-08-14 10:04 . 2004-08-03 21:14 138496 ----a-w- c:\windows\system32\drivers\afd.sys

2008-07-07 20:29 . 2004-08-03 22:43 253952 ----a-w- c:\windows\system32\es.dll

2008-06-24 16:46 . 2004-08-03 22:44 74240 ----a-w- c:\windows\system32\mscms.dll

2008-06-20 17:48 . 2004-08-03 22:44 246784 ----a-w- c:\windows\system32\mswsock.dll

2008-06-20 11:51 . 2004-08-03 21:14 361600 ----a-w- c:\windows\system32\drivers\tcpip.sys

2008-06-20 11:08 . 2004-08-03 21:07 225856 ----a-w- c:\windows\system32\drivers\tcpip6.sys

2008-06-14 17:36 . 2009-02-18 18:55 273024 ------w- c:\windows\system32\drivers\bthport.sys

2008-06-12 14:23 . 2009-02-18 00:08 956928 ----a-w- c:\windows\system32\msdtctm.dll

2008-06-12 14:23 . 2009-02-18 00:08 91648 ----a-w- c:\windows\system32\mtxoci.dll

2008-06-12 14:23 . 2009-02-18 00:08 428032 ----a-w- c:\windows\system32\msdtcprx.dll

2008-06-12 14:23 . 2009-02-18 00:08 161792 ----a-w- c:\windows\system32\msdtcuiu.dll

2008-06-12 14:23 . 2009-02-18 00:08 58880 ----a-w- c:\windows\system32\msdtclog.dll

2008-06-12 14:23 . 2004-08-03 22:44 66560 ----a-w- c:\windows\system32\mtxclu.dll

2008-06-10 05:11 . 2004-08-03 22:44 1053696 ----a-w- c:\windows\system32\WMNetmgr.dll

2008-06-10 02:11 . 2004-08-03 22:44 103936 ----a-w- c:\windows\system32\logagent.exe

2008-05-09 10:56 . 2004-08-03 22:44 90112 ----a-w- c:\windows\system32\wshext.dll

2008-05-09 10:56 . 2004-08-03 22:44 430080 ----a-w- c:\windows\system32\vbscript.dll

2008-05-09 10:56 . 2004-08-03 22:44 180224 ----a-w- c:\windows\system32\scrobj.dll

2008-05-09 10:56 . 2004-08-03 22:44 172032 ----a-w- c:\windows\system32\scrrun.dll

2008-05-08 14:02 . 2001-08-17 19:52 203136 ----a-w- c:\windows\system32\drivers\rmcast.sys

2008-05-08 11:24 . 2004-08-03 22:44 155648 ----a-w- c:\windows\system32\wscript.exe

2008-05-07 09:07 . 2004-08-03 22:44 135168 ----a-w- c:\windows\system32\cscript.exe

2008-05-05 06:25 . 2008-05-05 06:25 3072 ------w- c:\windows\system32\xpsp4res.dll

2008-04-30 16:27 . 2002-01-01 08:29 442368 ----a-w- c:\windows\system32\NVUNINST.EXE

2008-04-14 22:16 . 2004-08-03 22:56 1804 ----a-w- c:\windows\system32\dcache.bin

2008-04-14 21:56 . 2004-08-03 22:46 332288 ----a-w- c:\windows\system32\netsetup.exe

2008-04-14 21:52 . 2009-02-18 00:08 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys

2008-04-14 21:52 . 2009-02-18 00:08 87176 ----a-w- c:\windows\system32\rdpwsx.dll

2008-04-14 21:52 . 2004-08-03 22:44 92424 ----a-w- c:\windows\system32\rdpdd.dll

2008-04-14 21:52 . 2004-08-03 22:44 12168 ----a-w- c:\windows\system32\tsddd.dll

2008-04-14 21:52 . 2009-02-18 00:08 21896 ----a-w- c:\windows\system32\drivers\tdtcp.sys

2008-04-14 21:52 . 2009-02-18 00:08 12040 ----a-w- c:\windows\system32\drivers\tdpipe.sys

2008-04-14 21:52 . 2009-02-18 00:08 40840 ----a-w- c:\windows\system32\drivers\termdd.sys

2008-04-14 21:52 . 2004-08-03 22:44 299520 ----a-w- c:\windows\system32\drmclien.dll

2008-04-14 21:52 . 2004-08-03 22:44 695808 ----a-w- c:\windows\system32\drmv2clt.dll

2008-04-14 21:52 . 2004-08-03 22:44 356352 ----a-w- c:\windows\system32\msscp.dll

2008-04-14 21:52 . 2004-08-03 22:44 259072 ----a-w- c:\windows\system32\msnetobj.dll

2008-04-14 21:50 . 2009-02-18 19:00 53248 ------w- c:\windows\system32\tsgqec.dll

2008-04-14 21:49 . 2004-08-03 22:43 68096 ----a-w- c:\windows\system32\adsmsext.dll

2008-04-14 21:49 . 2004-08-03 22:43 175616 ----a-w- c:\windows\system32\adsldp.dll

2008-04-14 21:49 . 2004-08-03 22:43 143360 ----a-w- c:\windows\system32\adsldpc.dll

2008-04-14 21:49 . 2004-08-03 22:43 98304 ----a-w- c:\windows\system32\actxprxy.dll

2008-04-14 21:49 . 2004-08-03 22:43 61440 ----a-w- c:\windows\system32\admparse.dll

2008-04-14 21:49 . 2004-08-03 22:43 193536 ----a-w- c:\windows\system32\activeds.dll

2008-04-14 21:49 . 2004-08-03 22:43 118784 ----a-w- c:\windows\system32\aclui.dll

2008-04-14 21:49 . 2009-02-18 19:00 136192 ------w- c:\windows\system32\aaclient.dll

2008-04-14 21:49 . 2004-08-03 22:43 100352 ----a-w- c:\windows\system32\6to4svc.dll

2008-04-14 21:48 . 2004-08-03 22:43 5632 ----a-w- c:\windows\system32\wmi.dll

.

((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane

REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]

"Gadu-Gadu"="c:\program files\Gadu-Gadu\gg.exe" [2008-03-20 2127296]

"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]

"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232]

"Google Update"="c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe" [2002-01-01 133104]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Smapp"="c:\program files\Analog Devices\SoundMAX\SMTray.exe" [2003-05-05 143360]

"Anvshell"="c:\windows\Anvshell.exe" [2002-10-22 331776]

"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-02-05 81000]

"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-05-03 13529088]

"WinampAgent"="c:\program files\Winamp\winampa.exe" [2008-08-03 36352]

"NeroCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]

"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-05-03 86016]

"AdslTaskBar"="stmctrl.dll" - c:\windows\system32\stmctrl.dll [2006-06-02 151552]

"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2008-05-03 1630208]

[HKEY_USERS.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\security center]

"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]

"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\system32\sessmgr.exe"=

"%windir%\Network Diagnostic\xpnetdiag.exe"=

"c:\Program Files\Valve\hl.exe"=

"c:\WINDOWS\system32\dpvsetup.exe"=

"c:\Program Files\Valve\hlds.exe"=

"c:\Program Files\Bonjour\mDNSResponder.exe"=

"c:\Program Files\Gadu-Gadu\gg.exe"=

"c:\totalcmd\TOTALCMD.EXE"=

"c:\Program Files\Common Files\Ahead\Nero Web\SetupX.exe"=

"c:\Program Files\FlashFXP\FlashFXP.exe"=

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-02-18 114768]

R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-02-18 20560]

R3 Stmatm;ATM/ADSL miniport;c:\windows\system32\drivers\stmatm.sys [2009-02-18 60255]

R3 TaurusUsb;ADSL Modem USB Service;c:\windows\system32\drivers\torususb.sys [2009-02-18 684265]

.

Zawartość folderu 'Zaplanowane zadania'

2001-12-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-823518204-682003330-725345543-1003Core.job

  • c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [2002-01-01 08:29]

2002-01-01 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-823518204-682003330-725345543-1003UA.job

  • c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [2002-01-01 08:29]

.

.

------- Skan uzupełniający -------

.

uStart Page = hxxp://www.daemon-search.com/default

uInternet Connection Wizard,ShellNext = iexplore

uInternet Settings,ProxyOverride = *.local

TCP: {20B93F7B-3A61-4314-81A2-CEFC17C5BED6} = 194.204.159.1 217.98.63.164

FF - ProfilePath - c:\documents and settings\Mateusz\Dane aplikacji\Mozilla\Firefox\Profiles\9fu3onbq.default\

FF - component: c:\program files\DAEMON Tools Toolbar\FirefoxDTT\components\DTToolbarFF.dll

FF - plugin: c:\documents and settings\Mateusz\Ustawienia lokalne\Dane aplikacji\Google\Update\1.2.183.7\npGoogleOneClick8.dll

FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll

FF - plugin: c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll

.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2002-01-01 04:33

Windows 5.1.2600 Dodatek Service Pack 3 NTFS

skanowanie ukrytych procesów ...

skanowanie ukrytych wpisów autostartu ...

skanowanie ukrytych plików ...

skanowanie pomyślnie ukończone

ukryte pliki: 0

**************************************************************************

.

Czas ukończenia: 2002-01-01 4:35

ComboFix-quarantined-files.txt 2002-01-01 03:35

Przed: 3 224 403 968 bajtów wolnych

Po: 3 407 785 984 bajtów wolnych

WindowsXP-KB310994-SP2-Pro-BootDisk-PLK.exe

[boot loader]

timeout=2

default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS

[operating systems]

c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons

multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

305 --- E O F --- 2001-12-31 23:04


(system) #2

Podaj powód sprawdzania logów.

Przeskanuj ten plik c:\windows\system32\dllcache\services.exe na http://www.virustotal.com/pl/

Podaj loga z HiJack This.