Witam !
Od kilku dni zaczął mi skakać ping, strony wolniej się ładują itp. Zazwyczaj było to od 17 do 30ms ale teraz jest od 30 do 300ms ;/ Nie wiem co się dzieje, wcześniej pingi były stabilniejsze. Mam neta w upc 5mb/512kbs.
Daje log z combo fixa, może mam jakiegoś vira albo coś.
ComboFix 10-03-29.04 - Hubercik 2010-03-30 23:27:43.1.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1250.48.1045.18.1535.1177 [GMT 2:00]
Uruchomiony z: c:\documents and settings\Hubercik\Pulpit\ComboFix.exe
AV: avast! Antivirus *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\program files\pdfforge Toolbar\SearchSettings.dll
c:\windows\notepad.tmp
c:\windows\notepad.tmp2
c:\windows\system32\dllcache\notepad.tmp2
D:\Autorun.inf
.
((((((((((((((((((((((((( Pliki utworzone od 2010-02-28 do 2010-03-30 )))))))))))))))))))))))))))))))
.
2010-03-30 18:57 . 2010-03-30 18:57 -------- d-----w- c:\windows\system32\xlive
2010-03-30 18:57 . 2010-03-30 18:57 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2010-03-30 17:18 . 2010-03-30 18:06 -------- d-----w- c:\documents and settings\Hubercik\Ustawienia lokalne\Dane aplikacji\The Witcher
2010-03-30 17:16 . 2010-03-30 17:16 278984 ----a-w- c:\windows\system32\drivers\atksgt.sys
2010-03-30 17:16 . 2010-03-30 17:16 25416 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2010-03-30 14:32 . 2010-03-30 14:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Codemasters
2010-03-30 11:24 . 2010-03-30 11:24 -------- d-----w- c:\program files\Common Files\Symantec Shared
2010-03-30 11:22 . 2010-03-30 11:22 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Norton
2010-03-30 11:22 . 2010-03-30 11:22 -------- d-----w- c:\windows\system32\drivers\NSS
2010-03-30 11:22 . 2010-03-30 11:22 -------- d-----w- c:\program files\Norton Security Scan
2010-03-30 11:22 . 2010-03-30 11:22 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Symantec
2010-03-30 11:22 . 2010-03-30 11:22 -------- d-----w- c:\program files\NortonInstaller
2010-03-30 11:22 . 2010-03-30 11:22 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NortonInstaller
2010-03-29 03:02 . 2010-03-29 03:02 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Tibia
2010-03-27 20:57 . 2010-03-30 13:16 254952 ----a-w- c:\documents and settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
2010-03-27 20:32 . 2010-03-27 20:32 -------- d-----w- c:\documents and settings\Hubercik\Ustawienia lokalne\Dane aplikacji\CSS_Config
2010-03-27 20:23 . 2010-03-27 20:23 -------- d-----w- c:\program files\Kwaschny .NET
2010-03-27 19:56 . 2010-03-27 19:57 -------- d-----w- C:\directx
2010-03-27 15:43 . 2010-03-27 15:43 -------- d-----w- c:\program files\Nuclear Coffee
2010-03-27 11:37 . 2010-03-27 11:37 1924976 ----a-w- c:\documents and settings\All Users\Dane aplikacji\NOS\Adobe_Downloads\install_flash_player.exe
2010-03-27 07:33 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-03-27 07:32 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-03-27 07:32 . 2009-07-10 13:31 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll
2010-03-27 07:32 . 2008-04-11 19:06 691712 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2010-03-27 07:32 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-03-27 07:31 . 2009-12-08 09:25 474112 -c----w- c:\windows\system32\dllcache\shlwapi.dll
2010-03-27 05:08 . 2008-04-14 21:50 4255 ------w- c:\windows\system32\drivers\adv01nt5.dll
2010-03-27 04:48 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-03-26 22:28 . 2010-03-26 22:28 -------- d-----w- C:\Nexon
2010-03-26 22:28 . 2010-03-27 12:29 421888 ----a-w- c:\windows\NEXON_EU_DownloaderUpdater.exe
2010-03-26 20:38 . 2010-03-26 20:38 -------- d-----w- c:\program files\Tunatic
2010-03-26 15:28 . 2010-03-27 05:55 -------- d-----w- c:\documents and settings\Hubercik\Ustawienia lokalne\Dane aplikacji\Rockstar Games
2010-03-26 15:13 . 2010-03-26 15:13 -------- d-----w- C:\NVIDIA
2010-03-26 14:41 . 2007-01-18 10:22 389120 ----a-w- c:\windows\system32\igxpun.exe
2010-03-26 14:41 . 2006-11-10 07:25 319456 ----a-w- c:\windows\system32\difxapi.dll
2010-03-26 14:41 . 2010-03-26 14:41 -------- d-----w- C:\Intel
2010-03-26 14:05 . 2007-04-14 08:28 94592 ----a-r- c:\windows\system32\drivers\Rtenicxp.sys
2010-03-26 14:04 . 2006-07-21 23:40 143360 ------r- c:\windows\system32\RtlCPAPI.dll
2010-03-26 14:04 . 2010-03-26 14:04 -------- d-----w- c:\windows\system32\RTCOM
2010-03-26 14:04 . 2006-09-12 11:27 4381184 ------r- c:\windows\system32\drivers\RtkHDAud.Sys
2010-03-26 14:04 . 2006-09-01 06:35 364544 ------r- c:\windows\RtlUpd.exe
2010-03-26 14:04 . 2006-05-16 10:04 2879488 ------r- c:\windows\SkyTel.exe
2010-03-26 14:04 . 2006-05-04 08:35 9709568 ------r- c:\windows\RTLCPL.exe
2010-03-26 14:04 . 2006-09-12 08:58 16264192 ------r- c:\windows\RTHDCPL.exe
2010-03-26 14:04 . 2006-09-12 07:12 2155008 ------r- c:\windows\MicCal.exe
2010-03-26 14:04 . 2005-05-03 10:43 69632 ------r- c:\windows\Alcmtr.exe
2010-03-26 14:04 . 2010-03-26 14:04 -------- d-----w- c:\program files\Realtek
2010-03-26 14:04 . 2006-05-04 08:26 2808832 ------r- c:\windows\alcwzrd.exe
2010-03-26 14:04 . 2006-09-12 06:34 499712 ------r- c:\windows\RtlExUpd.dll
2010-03-26 09:34 . 2010-03-26 09:35 -------- dc-h--w- c:\windows\ie8
2010-03-25 11:01 . 2009-12-31 15:33 13824 -c----w- c:\windows\system32\dllcache\ieudinit.exe
2010-03-25 11:01 . 2009-03-08 03:11 445952 -c--a-w- c:\windows\system32\dllcache\ieapfltr.dll
2010-03-25 11:01 . 2009-02-06 20:07 3698584 -c--a-w- c:\windows\system32\dllcache\ieapfltr.dat
2010-03-25 11:01 . 2009-03-08 03:31 59904 -c--a-w- c:\windows\system32\dllcache\icardie.dll
2010-03-24 10:40 . 2010-03-24 10:40 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1
2010-03-24 10:40 . 2010-03-24 10:40 -------- d-----w- c:\program files\e-Deklaracje
2010-03-24 00:23 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-03-24 00:23 . 2010-03-24 00:23 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-03-24 00:23 . 2010-03-24 00:23 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Malwarebytes
2010-03-24 00:23 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-03-24 00:20 . 2008-04-14 21:51 70144 ----a-w- c:\windows\notepad.exe
2010-03-23 17:19 . 2010-03-23 17:20 -------- d-----w- c:\documents and settings\Hubercik\Gadu-Gadu
2010-03-23 17:18 . 2010-03-23 17:18 -------- d-----w- c:\program files\Gadu-Gadu
2010-03-23 09:13 . 2009-12-14 07:10 33280 -c----w- c:\windows\system32\dllcache\csrsrv.dll
2010-03-23 09:13 . 2009-11-27 17:14 1295360 -c----w- c:\windows\system32\dllcache\quartz.dll
2010-03-23 09:13 . 2009-11-27 17:14 17920 -c----w- c:\windows\system32\dllcache\msyuv.dll
2010-03-23 09:13 . 2009-12-17 07:42 345088 -c----w- c:\windows\system32\dllcache\mspaint.exe
2010-03-22 21:03 . 2010-03-22 21:03 -------- d-----w- c:\program files\Realtek AC97
2010-03-22 20:27 . 2010-03-22 20:27 -------- d-----w- c:\program files\VIA Technologies, Inc
2010-03-22 20:27 . 2003-07-04 22:14 32768 ----a-w- c:\windows\system32\UnAudioNT.dll
2010-03-21 13:14 . 2009-10-21 05:40 75776 -c----w- c:\windows\system32\dllcache\strmfilt.dll
2010-03-21 13:14 . 2009-10-21 05:40 25088 -c----w- c:\windows\system32\dllcache\httpapi.dll
2010-03-21 12:40 . 2010-03-21 12:40 -------- d-----w- c:\program files\Trend Micro
2010-03-21 09:17 . 2010-03-21 09:20 -------- d-----w- c:\windows\NV11723216.TMP
2010-03-21 09:02 . 2010-03-21 09:04 -------- d-----w- c:\windows\NV23282356.TMP
2010-03-21 08:59 . 2008-05-01 14:37 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2010-03-21 08:59 . 2010-03-16 06:51 10232352 -c--a-w- c:\windows\system32\dllcache\nv4_mini.sys
2010-03-21 08:59 . 2010-03-16 06:51 10232352 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-03-21 08:59 . 2010-03-16 06:51 6432128 ----a-w- c:\windows\system32\nv4_disp.dll
2010-03-21 08:59 . 2010-01-12 11:03 6359168 -c--a-w- c:\windows\system32\dllcache\nv4_disp.dll
2010-03-21 08:51 . 2009-07-31 04:35 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2010-03-21 08:51 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-03-21 08:47 . 2008-04-13 23:06 44672 ----a-w- c:\windows\system32\drivers\uagp35.sys
2010-03-21 08:14 . 2005-03-04 03:10 74496 ----a-w- c:\windows\system32\drivers\Rtlnicxp.sys
2010-03-21 08:14 . 2010-03-21 08:14 -------- d-----w- c:\windows\OPTIONS
2010-03-21 00:45 . 2010-03-21 00:45 -------- d-----w- c:\program files\ffdshow
2010-03-20 17:54 . 2010-03-20 17:59 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\QuickScan
2010-03-20 17:54 . 2010-03-19 17:41 666576 ----a-w- c:\documents and settings\Hubercik\Dane aplikacji\Mozilla\Firefox\Profiles\q40e28nn.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\components\qscanff.dll
2010-03-20 17:54 . 2010-03-19 17:41 826232 ----a-w- c:\documents and settings\Hubercik\Dane aplikacji\Mozilla\Firefox\Profiles\q40e28nn.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
2010-03-20 17:40 . 2010-03-20 17:40 125952 ----a-w- c:\documents and settings\All Users\Dane aplikacji\ParetoLogic\UUS2\Temp\Update.exe
2010-03-20 17:39 . 2010-03-21 08:48 56864 --sha-w- c:\windows\system32\drivers\fidbox2.dat
2010-03-20 17:39 . 2010-03-21 08:48 1374496 --sha-w- c:\windows\system32\drivers\fidbox.dat
2010-03-20 17:29 . 2010-03-21 08:45 -------- d-----w- c:\program files\Common Files\ParetoLogic
2010-03-20 17:29 . 2010-03-20 17:29 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ParetoLogic Anti-Virus PLUS
2010-03-20 17:29 . 2010-03-21 08:45 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ParetoLogic
2010-03-20 17:28 . 2010-03-20 17:28 -------- d-----w- c:\documents and settings\Hubercik\Ustawienia lokalne\Dane aplikacji\Downloaded Installations
2010-03-20 16:55 . 2010-03-20 17:54 -------- d-----w- c:\program files\Enigma Software Group
2010-03-20 16:11 . 2010-03-20 16:14 -------- d-----w- c:\program files\ElfBot NG
2010-03-20 05:20 . 2008-04-14 21:50 21504 -c--a-w- c:\windows\system32\dllcache\hidserv.dll
2010-03-20 05:20 . 2008-04-14 21:50 21504 ----a-w- c:\windows\system32\hidserv.dll
2010-03-20 05:19 . 2009-12-21 20:50 5760 ----a-w- c:\windows\system32\drivers\vHidDev.sys
2010-03-20 04:46 . 2010-03-20 04:46 -------- d-----w- c:\program files\MultiRes
2010-03-20 04:46 . 2010-03-21 09:14 737280 ----a-w- c:\windows\iun6002.exe
2010-03-20 04:37 . 2010-03-20 04:37 472576 ----a-w- c:\windows\Nvidia Omega Drivers v2.169.21 Uninstall.exe
2010-03-20 01:54 . 2005-03-11 09:33 147456 ----a-r- c:\windows\system32\VTTrayp.exe
2010-03-20 01:54 . 2005-08-23 20:42 25600 ----a-r- c:\windows\system32\VModes.exe
2010-03-20 01:54 . 2005-03-07 19:33 53248 ----a-r- c:\windows\system32\VTTimer.exe
2010-03-20 01:54 . 2005-03-11 09:36 397312 ----a-r- c:\windows\system32\VTovrlay.dll
2010-03-20 01:54 . 2005-03-11 09:43 262144 ----a-r- c:\windows\system32\VTInfo2.dll
2010-03-20 01:54 . 2005-03-11 09:45 360448 ----a-r- c:\windows\system32\VTGamma2.dll
2010-03-20 01:54 . 2005-05-23 18:36 581632 ----a-r- c:\windows\system32\VTDisply.dll
2010-03-20 01:54 . 2005-08-24 05:16 1875968 ----a-r- c:\windows\system32\vticd.dll
2010-03-20 01:54 . 2005-08-24 05:08 3495808 ----a-r- c:\windows\system32\vtdisp.dll
2010-03-20 01:54 . 2005-08-24 05:08 237312 ----a-r- c:\windows\system32\drivers\vtmini.sys
2010-03-20 01:35 . 2006-08-10 13:32 204672 ----a-r- c:\windows\system32\drivers\vinyl97.sys
2010-03-20 01:20 . 2006-07-21 08:14 86016 ----a-r- c:\windows\SoundMan.exe
2010-03-20 01:12 . 2010-03-20 01:13 -------- d-----w- c:\program files\Driver Cleaner Pro
2010-03-20 00:50 . 2010-03-20 00:50 -------- d-----w- c:\program files\Realtek Sound Manager
2010-03-20 00:45 . 2000-03-29 14:17 5824 ----a-w- c:\windows\system32\drivers\ASUSHWIO.SYS
2010-03-20 00:21 . 2009-12-31 16:50 353792 -c----w- c:\windows\system32\dllcache\srv.sys
2010-03-20 00:20 . 2009-10-15 16:33 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2010-03-20 00:20 . 2009-10-15 16:33 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2010-03-20 00:20 . 2009-12-04 18:22 455424 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-03-19 23:04 . 2010-03-26 14:14 -------- d-----w- c:\program files\VIA
2010-03-19 22:30 . 2010-03-19 22:30 -------- d-----w- C:\RM
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-03-30 21:30 . 2010-02-06 10:20 -------- d-----w- c:\program files\pdfforge Toolbar
2010-03-30 21:21 . 2009-11-21 00:02 -------- d-----w- c:\program files\Mozilla Thunderbird
2010-03-30 21:03 . 2010-02-28 00:35 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\mIRC
2010-03-30 17:17 . 2009-11-20 14:13 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-03-30 07:56 . 2009-11-20 22:58 -------- d-----w- c:\program files\BitComet
2010-03-29 14:14 . 2010-02-28 00:34 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\gtk-2.0
2010-03-29 10:18 . 2009-11-20 14:59 -------- d-----w- c:\documents and settings\Marek\Dane aplikacji\ipla
2010-03-29 09:52 . 2009-11-20 14:59 1 ----a-w- c:\documents and settings\Marek\Dane aplikacji\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-03-29 06:01 . 2010-02-28 00:37 1 ----a-w- c:\documents and settings\Hubercik\Dane aplikacji\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-03-27 17:35 . 2009-11-30 01:52 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NOS
2010-03-27 07:46 . 2010-02-28 00:34 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\GetRightToGo
2010-03-27 07:27 . 2007-03-10 01:31 219648 ----a-w- c:\windows\system32\uxtheme.dll
2010-03-27 03:20 . 2009-11-29 19:32 -------- d---a-w- c:\documents and settings\All Users\Dane aplikacji\TEMP
2010-03-26 15:19 . 2009-11-20 14:23 -------- d-----w- c:\program files\NVIDIA Corporation
2010-03-26 15:18 . 2009-11-20 14:23 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-03-26 14:03 . 2001-10-26 17:15 89036 ----a-w- c:\windows\system32\perfc015.dat
2010-03-26 14:03 . 2001-10-26 17:15 499854 ----a-w- c:\windows\system32\perfh015.dat
2010-03-24 11:47 . 2009-12-05 03:55 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-03-21 09:18 . 2009-11-21 17:28 5332 ----a-w- c:\windows\system32\d3d9caps.dat
2010-03-21 08:48 . 2010-03-20 17:39 7400 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2010-03-21 08:48 . 2010-03-20 17:39 13520 --sha-w- c:\windows\system32\drivers\fidbox.idx
2010-03-20 00:56 . 2005-12-31 23:49 -------- d-----w- c:\program files\Driver Cleaner
2010-03-17 15:35 . 2010-02-28 00:34 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\HLSW
2010-03-17 14:41 . 2010-02-28 00:34 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\FOG Downloader
2010-03-16 15:22 . 2009-11-25 07:11 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\OpenFM
2010-03-16 06:51 . 2010-01-12 11:03 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-03-16 06:51 . 2010-01-12 11:03 4075520 ----a-w- c:\windows\system32\nvcuda.dll
2010-03-16 06:51 . 2010-01-12 11:03 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-03-16 06:51 . 2010-01-12 11:03 2183470 ----a-w- c:\windows\system32\nvdata.bin
2010-03-16 06:51 . 2010-01-12 11:03 215656 ----a-w- c:\windows\system32\nvcodins.dll
2010-03-16 06:51 . 2010-01-12 11:03 215656 ----a-w- c:\windows\system32\nvcod.dll
2010-03-16 06:51 . 2010-01-12 11:03 2030184 ----a-w- c:\windows\system32\nvcuvid.dll
2010-03-16 06:51 . 2010-01-12 11:03 14757888 ----a-w- c:\windows\system32\nvoglnt.dll
2010-03-16 06:51 . 2010-01-12 11:03 11640832 ----a-w- c:\windows\system32\nvcompiler.dll
2010-03-16 06:51 . 2010-01-12 11:03 1097728 ----a-w- c:\windows\system32\nvapi.dll
2010-03-15 19:20 . 2009-11-21 01:17 139456 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-03-15 19:20 . 2010-01-09 08:15 190160 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-03-14 19:56 . 2010-02-28 00:30 138056 ----a-w- c:\documents and settings\Hubercik\Dane aplikacji\PnkBstrK.sys
2010-03-14 19:56 . 2010-02-28 00:30 138056 ----a-w- c:\documents and settings\Hubercik\Dane aplikacji\PnkBstrK.sys
2010-03-14 19:56 . 2009-12-20 05:40 2407792 ----a-w- c:\windows\system32\pbsvc_heroes.exe
2010-03-12 18:10 . 2010-01-25 15:10 -------- d-----w- c:\program files\EslWire
2010-03-11 16:29 . 2009-11-20 14:23 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NVIDIA Corporation
2010-03-11 09:53 . 2010-01-13 19:25 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2010-03-11 09:53 . 2010-01-13 19:25 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2010-03-10 16:16 . 2009-11-25 20:26 -------- d-----w- c:\program files\Nokia
2010-03-10 16:15 . 2009-12-02 10:39 -------- d-----w- c:\program files\Common Files\Nokia
2010-03-10 16:14 . 2009-11-25 20:25 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Installations
2010-03-09 11:24 . 2009-11-20 15:32 153184 ----a-w- c:\windows\system32\aswBoot.exe
2010-03-09 11:12 . 2009-11-20 15:33 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-03-09 11:12 . 2009-11-20 15:33 162640 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-03-09 11:09 . 2009-11-20 15:33 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-03-09 11:08 . 2009-11-20 15:33 100432 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2010-03-09 11:08 . 2009-11-20 15:33 94800 ----a-w- c:\windows\system32\drivers\aswmon.sys
2010-03-09 11:08 . 2009-11-20 15:33 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-03-09 11:08 . 2009-11-20 15:33 28880 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2010-03-08 16:23 . 2010-02-27 22:06 -------- d-----w- c:\program files\Winamp
2010-03-07 22:21 . 2009-11-21 01:01 -------- d-----w- c:\program files\JDownloader
2010-03-07 05:41 . 2009-11-20 21:38 -------- d-----w- c:\program files\SystemRequirementsLab
2010-03-06 12:34 . 2009-11-28 06:45 23424 ----a-w- c:\documents and settings\Marek\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
2010-03-04 14:32 . 2010-02-11 16:52 -------- d-----w- c:\program files\Jack Orlando
2010-03-02 17:40 . 2009-12-18 16:37 -------- d-----w- c:\program files\HD Tune
2010-03-02 17:36 . 2009-11-24 15:21 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Electronic Arts
2010-02-28 01:05 . 2010-01-28 16:48 -------- d-----w- c:\program files\Image-Line
2010-02-28 01:05 . 2009-11-27 00:08 -------- d---a-w- c:\program files\Furnish Pro
2010-02-28 01:05 . 2009-11-27 00:08 -------- d-----w- c:\program files\Pixie
2010-02-28 00:37 . 2010-02-28 00:37 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\OpenOffice.org
2010-02-28 00:37 . 2010-02-28 00:37 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Nowe Gadu-Gadu
2010-02-28 00:37 . 2010-02-28 00:37 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Notepad++
2010-02-28 00:37 . 2010-02-28 00:37 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Nokia
2010-02-28 00:37 . 2010-02-28 00:37 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Mumble
2010-02-28 00:35 . 2010-02-28 00:35 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Media Player Classic
2010-02-28 00:35 . 2010-02-28 00:35 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Malwarebytes
2010-02-28 00:35 . 2010-02-28 00:35 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\ipla
2010-02-28 00:35 . 2010-02-28 00:35 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\InstallShield
2010-02-28 00:35 . 2010-02-28 00:35 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\ImgBurn
2010-02-28 00:33 . 2010-02-28 00:33 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Search Settings
2010-02-28 00:33 . 2010-02-28 00:33 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Remere's Map Editor
2010-02-28 00:33 . 2010-02-28 00:33 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Publish Providers
2010-02-28 00:33 . 2010-02-28 00:33 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\pdfforge
2010-02-28 00:32 . 2010-02-28 00:32 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\PC Suite
2010-02-28 00:31 . 2010-02-28 00:31 -------- d--h--r- c:\documents and settings\Hubercik\Dane aplikacji\SecuROM
2010-02-28 00:31 . 2010-02-28 00:31 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\sqlitestudio
2010-02-28 00:31 . 2010-02-28 00:31 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Sony Creative Software
2010-02-28 00:31 . 2010-02-28 00:31 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Sony
2010-02-28 00:31 . 2010-02-28 00:31 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\teamspeak2
2010-02-28 00:31 . 2010-02-28 00:31 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Thunderbird
2010-02-28 00:31 . 2010-02-28 00:31 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\uTorrent
2010-02-28 00:31 . 2010-02-28 00:31 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Toribash
2010-02-28 00:31 . 2010-02-28 00:30 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Ventrilo
2010-02-28 00:30 . 2010-02-28 00:30 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\XRay Engine
2010-02-28 00:30 . 2010-02-28 00:30 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Xfire
2010-02-28 00:27 . 2010-02-28 00:27 -------- d-----w- c:\documents and settings\Hubercik\Dane aplikacji\Razer
2010-02-27 20:29 . 2010-02-27 20:29 -------- d-----w- c:\program files\MobiRise 3GP Converter Komputer Swiat Edition
2010-02-27 20:28 . 2010-02-27 20:28 709 ----a-w- c:\windows\unins000.dat
2010-02-26 10:35 . 2010-02-26 10:35 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
2010-02-25 21:24 . 2010-02-25 21:24 3699424 ----atw- c:\windows\DXMA8.tmp
2010-02-25 20:44 . 2010-02-25 20:44 -------- d-----w- c:\program files\Eidos Interactive
2010-02-25 20:17 . 2010-02-25 20:17 -------- d-----w- c:\program files\VP3 Codec
2010-02-25 16:14 . 2010-02-25 16:14 -------- d-----w- c:\program files\DreamCatcher
2010-02-22 20:16 . 2010-02-22 20:16 -------- d-----w- c:\program files\Sierra On-Line
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{B922D405-6D13-4A2B-AE89-08A030DA4402}]
2010-01-08 02:17 700416 ----a-w- c:\program files\pdfforge Toolbar\IE\1.1.2\pdfforgeToolbarIE.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="d:\gry\steam\steam.exe" [2010-03-05 1217872]
"Pando Media Booster"="c:\program files\Pando Networks\Media Booster\PMB.exe" [2010-03-13 2937528]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-01-28 39408]
"RGSC"="d:\gry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe" [2009-11-21 306088]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-11-20 149280]
"DrvIcon"="c:\program files\Vista Drive Icon\DrvIcon.exe" [2008-04-13 49152]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-03-09 2769336]
"SearchSettings"="c:\program files\pdfforge Toolbar\SearchSettings.exe" [2010-01-08 974848]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"VTTimer"="VTTimer.exe" [2005-03-07 53248]
"VTTrayp"="VTTrayP.exe" [2005-03-11 147456]
"DeathAdder"="c:\program files\Razer\DeathAdder\razerhid.exe" [2010-03-16 251904]
"RTHDCPL"="RTHDCPL.EXE" [2006-09-12 16264192]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-03-16 13670504]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-03-16 110696]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
[HKLM\~\startupfolder\C:^Documents and Settings^Marek^Menu Start^Programy^Autostart^MemTurbo.lnk]
path=c:\documents and settings\Marek\Menu Start\Programy\Autostart\MemTurbo.lnk
backup=c:\windows\pss\MemTurbo.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
2008-04-14 21:51 15360 ------w- c:\windows\system32\ctfmon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Pro Agent]
2007-09-06 13:08 136136 ----a-w- d:\program files\DAEMON Tools Pro\DTProAgent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gadu-Gadu 10]
2010-03-11 22:14 11792992 ----a-w- d:\program files\Gadu-Gadu 10\gg.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
2007-01-13 08:47 163840 ----a-w- c:\windows\system32\hkcmd.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
2007-01-13 08:47 131072 ----a-w- c:\windows\system32\igfxtray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IPLA!]
2009-12-23 16:14 14100888 ----a-w- c:\program files\ipla\ipla.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
2009-11-11 09:57 1451520 ----a-w- c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
2007-01-13 08:46 135168 ----a-w- c:\windows\system32\igfxpers.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RGSC]
2009-11-21 11:39 306088 ----a-w- d:\gry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RocketDock]
2007-09-02 12:58 495616 ----a-w- c:\program files\RocketDock\RocketDock.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
2006-05-16 10:04 2879488 ------r- c:\windows\SkyTel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"ServiceLayer"=3 (0x3)
"mysql"=2 (0x2)
"gupdate"=2 (0x2)
"Findbasic Service"=2 (0x2)
"FileZilla Server"=2 (0x2)
"Apache2.2"=2 (0x2)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\xampp\\mysql\\bin\\mysqld.exe"=
"c:\\xampp\\apache\\bin\\apache.exe"=
"d:\\Gry\\Steam\\steamapps\\dirtydog323\\counter-strike\\hl.exe"=
"d:\\Program Files\\mIRC\\mirc.exe"=
"c:\\Program Files\\BitComet\\BitComet.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"d:\\Gry\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
"d:\\Gry\\Rockstar Games\\Grand Theft Auto IV\\GTAIV.exe"=
"d:\\Gry\\Rockstar Games\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
"d:\\ots\\TheForgottenServer.exe"=
"d:\\Gry\\Activision\\Modern Warfare 2\\iw4mp.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"d:\\Gry\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"=
"d:\\Program Files\\Gadu-Gadu 10\\gg.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\LEXPPS.EXE"=
"d:\\Gry\\Steam\\steamapps\\dirtydog323\\counter-strike source\\hl2.exe"=
"d:\\Gry\\League of Legends\\Air\\LolClient.exe"=
"d:\\Gry\\League of Legends\\Game\\League of Legends.exe"=
"c:\\Nexon\\NEXON_EU_Downloader\\NEXON_EU_Downloader_Engine.exe"=
"d:\\Gry\\Tibia54\\Tibia 8.54.exe"=
"d:\\Dirt2\\TPTB\\Dirt2\\dirt2_game.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"20005:TCP"= 20005:TCP:BitComet 20005 TCP
"20005:UDP"= 20005:UDP:BitComet 20005 UDP
"24704:TCP"= 24704:TCP:BitComet 24704 TCP
"24704:UDP"= 24704:UDP:BitComet 24704 UDP
"8394:TCP"= 8394:TCP:League of Legends Launcher
"8394:UDP"= 8394:UDP:League of Legends Launcher
"6892:TCP"= 6892:TCP:League of Legends Launcher
"6892:UDP"= 6892:UDP:League of Legends Launcher
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2009-11-20 691696]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2009-11-20 162640]
R2 Application Updater;Application Updater;c:\program files\Application Updater\ApplicationUpdater.exe [2010-01-08 380928]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-11-20 19024]
R2 Vcs;Vcs support;c:\windows\system32\drivers\Vcs.sys [2010-01-17 6852]
R3 DAdderFltr;DeathAdder Mouse;c:\windows\system32\drivers\dadder.sys [2009-11-20 22784]
R3 ESLvnic1;ESLvnic Virtual Network 32 Bit;c:\windows\system32\drivers\ESLvnic.sys [2010-01-25 24504]
R3 vHidDev;Razer Gaming Device;c:\windows\system32\drivers\vHidDev.sys [2010-03-20 5760]
S2 XAMPP;XAMPP Service;c:\xampp\service.exe [2009-11-20 60928]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2009-11-20 1684736]
S3 CyUsb;Cypress Generic USB Driver;c:\windows\system32\drivers\CYUSB.sys [2009-11-20 38528]
S3 LLRING0;LLRING0;d:\gry\ZhyperMU\ZhyperMU Season 4 AC V4\zhypermu season 4 3d\MuGuard\llck1.sys [2010-01-09 2688]
S3 PsSdk40;PsSdk40;c:\windows\system32\drivers\pssdk40.sys [2010-01-24 36928]
S3 PsSdkLBF;PsSdkLBF;c:\windows\system32\drivers\pssdklbf.sys [2010-01-24 53312]
S3 VCSVADHWSer;Avnex Virtual Audio Device (WDM);c:\windows\system32\drivers\vcsvad.sys [2010-01-18 17792]
S4 Apache2.2;Apache2.2;d:\xampp\xampp\apache\bin\httpd.exe [2010-02-19 29416]
S4 gupdate;Usługa Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2009-12-15 135664]
.
Zawartość folderu 'Zaplanowane zadania'
2010-03-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore1cac6a3f5d2e14c.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-12-14 22:30]
2010-03-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA1cac6a3f6218ee6.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-12-14 22:30]
2010-03-30 c:\windows\Tasks\Norton Security Scan for Marek.job
- c:\program files\Norton Security Scan\Engine\2.7.3.34\Nss.exe [2010-03-30 10:50]
2010-03-30 c:\windows\Tasks\WGASetup.job
- c:\windows\system32\KB905474\wgasetup.exe [2009-11-21 21:18]
.
.
------- Skan uzupełniający -------
.
IE: Funkcja Google Sidewiki - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
FF - ProfilePath - c:\documents and settings\Hubercik\Dane aplikacji\Mozilla\Firefox\Profiles\q40e28nn.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2304157&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - google.pl
FF - component: c:\documents and settings\Hubercik\Dane aplikacji\Mozilla\Firefox\Profiles\q40e28nn.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\components\qscanff.dll
FF - component: c:\documents and settings\Hubercik\Dane aplikacji\Mozilla\Firefox\Profiles\q40e28nn.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - plugin: c:\documents and settings\All Users\Dane aplikacji\Gadu-Gadu 10\_userdata\npgg.2.dll
FF - plugin: c:\documents and settings\All Users\Dane aplikacji\id Software\QuakeLive\npquakezero.dll
FF - plugin: c:\documents and settings\Hubercik\Dane aplikacji\Mozilla\Firefox\Profiles\q40e28nn.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
FF - plugin: c:\documents and settings\Hubercik\Dane aplikacji\Mozilla\Firefox\Profiles\q40e28nn.default\extensions\battlefieldheroespatcher@ea.com\platform\WINNT_x86-msvc\plugins\npBFHUpdater.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npPandoWebInst.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
- - - - USUNIĘTO PUSTE WPISY - - - -
URLSearchHooks-{E312764E-7706-43F1-8DAB-FCDD2B1E416D} - (no file)
HKLM-Run-nwiz - nwiz.exe
Notify-WgaLogon - (no file)
MSConfigStartUp-Gadu-Gadu - d:\program files\Gadu-Gadu\gg.exe
MSConfigStartUp-ICQ - d:\progra~1\ICQ6.5\ICQ.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-03-30 23:34
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
skanowanie ukrytych procesów ...
skanowanie ukrytych wpisów autostartu ...
skanowanie ukrytych plików ...
skanowanie pomyślnie ukończone
ukryte pliki: 0
**************************************************************************
Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net
device: opened successfully
user: MBR read successfully
called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys atapi.sys spry.sys hal.dll >>UNKNOWN [0x8A728938]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xf74cbf28
\Driver\ACPI -> ACPI.sys @ 0xf7332cb8
\Driver\atapi -> atapi.sys @ 0xf72c7b40
IoDeviceObjectType -> DeleteProcedure -> ntoskrnl.exe @ 0x805e668e
ParseProcedure -> ntoskrnl.exe @ 0x8057b6b1
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntoskrnl.exe @ 0x805e668e
ParseProcedure -> ntoskrnl.exe @ 0x8057b6b1
NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC #2 -> SendCompleteHandler -> NDIS.sys @ 0xf71bdbb0
PacketIndicateHandler -> NDIS.sys @ 0xf71caa21
SendHandler -> NDIS.sys @ 0xf71a887b
user & kernel MBR OK
**************************************************************************
.
--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------
- - - - - - - > 'explorer.exe'(3852)
c:\windows\system32\WININET.dll
c:\program files\Windows Media Player\wmpband.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_pol.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Pozostałe uruchomione procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\windows\system32\LEXBCES.EXE
c:\windows\system32\LEXPPS.EXE
c:\program files\Java\jre6\bin\jqs.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\windows\system32\VTTimer.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\RUNDLL32.EXE
c:\spm\spmd.exe
d:\gry\Rockstar Games\Rockstar Games Social Club\1_1_3_0\RGSC.exe
c:\program files\Razer\DeathAdder\razertra.exe
c:\program files\Razer\DeathAdder\razerofa.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
.
**************************************************************************
.
Czas ukończenia: 2010-03-30 23:37:23 - komputer został uruchomiony ponownie
ComboFix-quarantined-files.txt 2010-03-30 21:37
Przed: 30 086 103 040 bajtów wolnych
Po: 32 986 468 352 bajtów wolnych
WindowsXP-KB310994-SP2-Pro-BootDisk-PLK.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
Current=1 Default=1 Failed=0 LastKnownGood=6 Sets=1,2,3,4,5,6
- - End Of File - - 55F2F1A134BA6B2F2F5BF5F78ACF0515