slon - 06-11-30 10:59:11,43 Dodatek Service Pack 2 ComboFix 06.11.27W - Running from: “C:\Documents and Settings\slon\Pulpit\z forum” ((((((((((((((((((((((((((((((( Files Created from 2006-10-30 to 2006-11-30 )))))))))))))))))))))))))))))))))) 2006-11-30 10:56 2006-11-30 09:23 2006-11-29 16:59 2006-11-27 21:51 2006-11-26 19:58 2006-11-25 11:26 2006-11-24 11:53 2006-11-24 11:52 299,520 --a------ C:\WINDOWS\uninst.exe 2006-11-24 11:52 2006-11-23 18:32 2006-11-23 09:17 2006-11-23 09:17 2006-11-22 23:25 2006-11-22 22:07 2006-11-22 21:54 2006-11-22 21:06 385,024 --a------ C:\WINDOWS\system32\vbar332.dll 2006-11-22 21:06 2006-11-22 20:55 2006-11-22 20:54 59,353 --a------ C:\Program Files\Odinstaluj.exe 2006-11-22 20:54 2006-11-22 20:54 2006-11-22 20:54 2006-11-22 20:54 2006-11-22 20:54 2006-11-22 20:20 2006-11-22 13:49 2006-11-21 15:39 2006-11-15 20:31 2006-11-13 20:50 2006-11-13 20:50 2006-11-13 20:48 438,272 --a------ C:\WINDOWS\system32\vp6vfw.dll 2006-11-13 20:48 2006-11-13 20:48 2006-11-13 20:48 2006-11-09 10:15 2006-10-30 19:07 (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2006-11-21 15:20 189952 --a------ C:\WINDOWS\system32\WISPTIS.EXE 2006-10-25 17:13 -------- d-------- C:\Program Files\TeXnicCenter 2006-10-25 15:34 -------- d-------- C:\Program Files\Common Files\Ahead 2006-10-25 15:34 -------- d-------- C:\Program Files\Ahead 2006-10-25 15:29 -------- d-------- C:\Program Files\D-Tools 2006-10-25 15:19 -------- d-------- C:\Program Files\Winamp 2006-10-25 15:11 -------- d-------- C:\Program Files\Adobe 2006-10-25 15:00 -------- d-------- C:\Program Files\Microsoft Office 2006-10-25 15:00 -------- d-------- C:\Program Files\Common Files\DESIGNER 2006-10-24 22:12 -------- d-------- C:\Program Files\Common Files\Adobe 2006-10-24 22:12 -------- d-------- C:\Documents and Settings\slon\Dane aplikacji\Adobe 2006-10-24 22:08 -------- d-------- C:\Program Files\WinRAR 2006-10-24 22:06 -------- d-------- C:\Program Files\CDex_140b9 2006-10-24 22:05 -------- d-------- C:\Documents and Settings\slon\Dane aplikacji\Help 2006-10-24 21:56 -------- d-------- C:\Program Files\Common Files\Borland Shared 2006-10-24 21:55 -------- d-------- C:\Program Files\Borland 2006-10-24 20:13 -------- d–h----- C:\Program Files\Uninstall Information 2006-10-24 20:13 -------- d-------- C:\Documents and Settings\slon\Dane aplikacji\Identities 2006-10-24 20:02 0 -rahs---- C:\MSDOS.SYS 2006-10-24 20:02 0 -rahs---- C:\IO.SYS 2006-10-24 20:02 0 --a------ C:\CONFIG.SYS 2006-10-24 20:02 0 --a------ C:\AUTOEXEC.BAT 2006-10-24 20:02 -------- d-------- C:\Program Files\xerox 2006-10-24 20:02 -------- d-------- C:\Program Files\microsoft frontpage 2006-10-24 20:00 -------- d–h----- C:\Program Files\WindowsUpdate 2006-10-24 19:59 -------- d-------- C:\Program Files\Outlook Express 2006-10-24 19:59 -------- d-------- C:\Program Files\NetMeeting 2006-10-24 19:59 -------- d-------- C:\Program Files\Movie Maker 2006-10-24 19:59 -------- d-------- C:\Program Files\Common Files\System 2006-10-24 19:59 -------- d-------- C:\Program Files\Common Files\Services 2006-10-24 19:59 -------- d-------- C:\Program Files\Common Files\MSSoap 2006-10-24 19:58 -------- d-------- C:\Program Files\Internet Explorer 2006-10-24 19:57 -------- d-------- C:\Program Files\Windows Media Player 2006-10-24 19:57 -------- d-------- C:\Program Files\MSN Gaming Zone 2006-10-24 19:57 -------- d-------- C:\Program Files\Messenger 2006-10-24 19:57 -------- d-------- C:\Program Files\ComPlus Applications 2006-10-24 19:56 -------- d-------- C:\Program Files\Windows NT 2006-10-24 19:49 -------- d-------- C:\Program Files\Common Files\SpeechEngines 2006-10-24 19:49 -------- d-------- C:\Program Files\Common Files\ODBC 2006-10-24 19:49 -------- d-------- C:\Program Files\Common Files\Microsoft Shared 2006-10-24 19:49 -------- d-------- C:\Program Files\Common Files 2006-10-24 19:48 62 --ahs---- C:\Documents and Settings\slon\Dane aplikacji\desktop.ini 2006-10-24 19:48 -------- d—s---- C:\Documents and Settings\slon\Dane aplikacji\Microsoft 2006-10-04 12:34 59536 --a------ C:\WINDOWS\system32\drivers\klin.sys 2006-10-04 12:33 61072 --a------ C:\WINDOWS\system32\drivers\klick.sys (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries are not shown [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] “CTFMON.EXE”=“C:\WINDOWS\system32\ctfmon.exe” [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] “WinampAgent”=“C:\Program Files\Winamp\winampa.exe” “DAEMON Tools-1033”="“C:\Program Files\D-Tools\daemon.exe” -lang 1045" “NeroFilterCheck”=“C:\WINDOWS\system32\NeroCheck.exe” “KAVPersonal50”="“C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe” /minimize" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL] “Installed”=“1” [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI] “Installed”=“1” “NoChange”=“1” [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS] “Installed”=“1” [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components] “DeskHtmlVersion”=dword:00000110 “DeskHtmlMinorVersion”=dword:00000005 “Settings”=dword:00000001 “GeneralFlags”=dword:00000005 [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0] “Source”=“About:Home” “SubscribedURL”=“About:Home” “FriendlyName”=“Moja bieżąca strona główna” “Flags”=dword:00000002 “Position”=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\ 00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00 “CurrentState”=hex:04,00,00,40 “OriginalStateInfo”=hex:18,00,00,00,50,00,00,00,00,00,00,00,d0,02,00,00,3a,02,\ 00,00,04,00,00,40 “RestoredStateInfo”=hex:18,00,00,00,50,00,00,00,00,00,00,00,d0,02,00,00,3a,02,\ 00,00,01,00,00,00 [HKEY_USERS.default\software\microsoft\windows\currentversion\run] “CTFMON.EXE”=“C:\WINDOWS\system32\CTFMON.EXE” [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run] “CTFMON.EXE”=“C:\WINDOWS\system32\CTFMON.EXE” [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler] “{438755C2-A8BA-11D1-B96B-00A0C90312E1}”=“Moduł wstępnego ładowania interfejsu Browseui” “{8C7461EF-2B13-11d2-BE35-3078302C2030}”=“Demon buforu kategorii składników” [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] “{AEB6717E-7E19-11d0-97EE-00C04FD91972}”="" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] “NoDriveTypeAutoRun”=dword:00000091 [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] “dontdisplaylastusername”=dword:00000000 “legalnoticecaption”="" “legalnoticetext”="" “shutdownwithoutlogon”=dword:00000001 “undockwithoutlogon”=dword:00000001 [HKEY_USERS.default\software\microsoft\windows\currentversion\policies\explorer] “NoDriveTypeAutoRun”=dword:00000091 [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer] “NoDriveTypeAutoRun”=dword:00000091 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload] “PostBootReminder”="{7849596a-48ea-486e-8937-a2a3009f31a9}" “CDBurn”="{fbeb8a05-beee-4442-804e-409d6c4515e9}" “WebCheck”="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" “SysTray”="{35CEC8A3-2BE6-11D2-8773-92E220524153}" [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] “SecurityProviders”=“msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll” Completion time: 06-11-30 11:00:17.01 C:\ComboFix.txt … 06-11-30 11:00