Opis z angielskiej strony nie pasuje do opcji z Windows 7. Tak czy inaczej, zresetowałem czcionkę i dalej jest źle. Ale to nie jest problem czcionki. Skopiowałem do schowka tekst ze strony internetowej (celem uniknięcia rzekomo nieprawidłowych znaków) i dalej jest źle. Spróbuję przeskanować Combofixem i wrzucić log na forum.
Tylko nie wiem czy Combofix działa z Windows 7
– Dodane 01.06.2010 (Wt) 21:08 –
Przeskanowałem kompa ComboFixem, coś tam usunął ale nic to nie dało - Skype nadal nie działa, nie można się zalogować ani zarejestrować, ciągle jest to samo. Załączam log z ComboFix:
ComboFix 10-05-28.02 - Dorota 2010-06-01 20:47:19.1.2 - x86
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.48.1045.18.2046.1318 [GMT 2:00]
Uruchomiony z: g:\programy\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\VB6KO.DLL
.
((((((((((((((((((((((((( Pliki utworzone od 2010-05-01 do 2010-06-01 )))))))))))))))))))))))))))))))
.
2010-06-01 18:54 . 2010-06-01 18:54 -------- d-----w- c:\users\Dorota\AppData\Local\temp
2010-06-01 18:54 . 2010-06-01 18:54 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-05-31 14:30 . 2010-05-31 14:30 -------- d-sh–w- c:\windows\ftpcache
2010-05-29 09:18 . 2010-05-29 09:18 -------- d-----w- c:\program files\City Interactive
2010-05-26 14:08 . 2010-05-26 14:08 -------- d-----w- c:\program files\ProtectDisc Driver Installer
2010-05-26 14:08 . 2010-05-26 14:08 3905664 begin_of_the_skype_highlighting 08 3905664 end_of_the_skype_highlighting ----a-w- c:\users\Dorota\AppData\Roaming\ProtectDISC\pe17fc5b2a.dll
2010-05-26 14:08 . 2010-05-26 14:08 -------- d-----w- c:\users\Dorota\AppData\Roaming\ProtectDISC
2010-05-26 11:23 . 2010-05-26 11:23 -------- d-----w- c:\users\Dorota\AppData\Roaming\HP
2010-05-26 11:23 . 2010-05-26 11:23 -------- d-----w- c:\programdata\WEBREG
2010-05-26 11:22 . 2010-05-26 11:22 -------- d-----w- c:\programdata\Hewlett-Packard
2010-05-26 11:22 . 2009-07-14 01:15 280064 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\hpzppw71.dll
2010-05-26 11:19 . 2010-05-26 11:19 -------- d-----w- c:\programdata\HP Product Assistant
2010-05-26 11:18 . 2010-05-26 11:18 -------- d-----w- c:\program files\Common Files\HP
2010-05-26 11:17 . 2010-05-26 11:20 -------- d-----w- c:\program files\HP
2010-05-26 11:14 . 2010-05-26 11:23 170387 ----a-w- c:\windows\hphins15.dat
2010-05-26 11:14 . 2009-10-08 01:20 2011 ------w- c:\windows\hphmdl15.dat
2010-05-26 11:13 . 2010-05-26 11:23 -------- d-----w- c:\programdata\HP
2010-05-26 09:07 . 2010-04-23 07:13 2048 ----a-w- c:\windows\system32\tzres.dll
2010-05-23 09:24 . 2010-05-23 09:24 -------- d-----w- c:\windows\system32\Wat
2010-05-23 06:42 . 2010-05-23 06:42 -------- d-----w- c:\users\Dorota\AppData\Local\Diagnostics
2010-05-22 12:46 . 2010-05-22 12:56 -------- d-----w- c:\users\Dorota\AppData\Roaming\VoipDiscount
2010-05-22 12:44 . 2010-05-22 12:44 -------- d-----w- c:\program files\VoipDiscount.com
2010-05-12 18:54 . 2010-05-12 18:54 -------- d-----w- c:\users\Dorota\AppData\Local\ElevatedDiagnostics
2010-05-12 07:18 . 2010-03-04 07:33 740864 ----a-w- c:\windows\system32\inetcomm.dll
2010-05-11 11:20 . 2010-05-11 11:20 -------- d-----w- c:\users\Dorota\AppData\Roaming\Media Player Classic
2010-05-11 11:20 . 2010-05-11 11:20 -------- d-----w- c:\program files\Real Alternative
2010-05-11 11:13 . 2010-05-11 11:13 -------- d-----w- c:\program files\SubEdit-Player
2010-05-10 12:18 . 2010-05-20 08:39 -------- d-----w- c:\users\Dorota\AppData\Roaming\skypePM
2010-05-10 12:17 . 2010-06-01 18:41 -------- d-----w- c:\users\Dorota\AppData\Roaming\Skype
2010-05-10 12:17 . 2010-05-10 12:17 -------- d-----w- c:\program files\Common Files\Skype
2010-05-10 12:17 . 2010-05-22 12:31 -------- d-----r- c:\program files\Skype
2010-05-10 12:17 . 2010-05-10 12:17 -------- d-----w- c:\programdata\Skype
2010-05-09 16:06 . 2010-05-09 16:06 56766 ----a-w- c:\programdata\DivX\DivXPlusShortcuts\Uninstaller.exe
2010-05-09 16:06 . 2010-05-09 16:06 53600 ----a-w- c:\programdata\DivX\Update\Uninstaller.exe
2010-05-09 16:06 . 2010-05-09 16:06 54166 ----a-w- c:\programdata\DivX\DSAVCDecoder\Uninstaller.exe
2010-05-09 16:06 . 2010-05-09 16:06 57532 ----a-w- c:\programdata\DivX\DSASPDecoder\Uninstaller.exe
2010-05-09 16:06 . 2010-05-09 16:06 57409 ----a-w- c:\programdata\DivX\ControlPanel\Uninstaller.exe
2010-05-07 10:49 . 2010-05-07 10:50 -------- d-----w- c:\users\Dorota\AppData\Local\Google
2010-05-07 10:49 . 2010-05-07 10:49 -------- d-----w- c:\program files\Google
2010-05-05 19:35 . 2010-05-05 19:35 -------- d-----w- c:\program files\directx
2010-05-05 19:35 . 1998-10-29 13:45 306688 ----a-w- c:\windows\IsUninst.exe
2010-05-05 19:35 . 1999-04-09 00:14 416304 ----a-w- c:\windows\system32\MPG4C32.DLL
2010-05-05 19:28 . 2010-05-05 19:29 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2010-05-05 19:28 . 2010-05-05 19:28 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-05-05 19:28 . 2010-05-05 19:29 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-05-05 19:28 . 2010-05-05 19:33 -------- d-----w- c:\users\Dorota\AppData\Roaming\DAEMON Tools Lite
2010-05-05 19:28 . 2010-05-05 19:28 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-05-05 13:14 . 2010-05-05 13:14 -------- d-----w- c:\users\Dorota\AppData\Roaming\DivX
2010-05-04 20:42 . 2010-05-17 17:14 -------- d-----w- c:\users\Dorota\AppData\Local\Ares
2010-05-04 20:42 . 2010-05-04 20:42 -------- d-----w- c:\program files\Ares
2010-05-04 15:26 . 2010-05-04 15:26 -------- d-----w- c:\program files\MSXML 4.0
2010-05-04 13:40 . 2010-05-04 13:44 -------- d-----w- c:\program files\SopCast
2010-05-04 13:40 . 2010-05-04 13:40 -------- d-----w- c:\program files\Ask.com
2010-05-04 12:04 . 2010-05-04 12:04 -------- d-----w- c:\users\Dorota\AppData\Local\TVU Networks
2010-05-04 12:04 . 2010-05-04 12:04 -------- d-----w- c:\programdata\TVU Networks
2010-05-04 12:04 . 2010-05-04 12:04 -------- d-----w- c:\program files\TVUPlayer
2010-05-04 11:46 . 2010-05-15 06:10 -------- d-----w- c:\program files\uTorrent
2010-05-04 11:46 . 2010-05-30 11:57 -------- d-----w- c:\users\Dorota\AppData\Roaming\uTorrent
2010-05-03 17:54 . 2010-05-03 17:54 -------- d-----w- c:\users\Dorota\AppData\Roaming\CyberLink
2010-05-03 17:54 . 2010-05-03 17:54 -------- d-----w- c:\programdata\CyberLink
2010-05-03 17:49 . 2010-05-03 17:59 -------- d-----w- C:\Temp
2010-05-03 17:48 . 2010-05-03 17:54 16384 ----a-w- c:\windows\system32\lgfwunis.exe
2010-05-03 17:48 . 1998-07-21 22:00 102912 ----a-w- c:\windows\system32\Vb6stkit.dll
2010-05-03 17:48 . 2010-05-03 17:59 -------- d-----w- c:\program files\lg_fwupdate
2010-05-03 17:47 . 2001-03-08 16:30 24064 ------w- c:\windows\system32\msxml3a.dll
2010-05-03 17:46 . 2003-03-18 18:14 499712 ------w- c:\windows\system32\msvcp71.dll
2010-05-03 17:46 . 2003-02-21 02:42 348160 ------w- c:\windows\system32\msvcr71.dll
2010-05-03 17:46 . 2010-05-03 17:49 -------- d-----w- c:\program files\CyberLink
2010-05-03 17:44 . 2010-05-26 11:23 68240 ----a-w- c:\users\Dorota\AppData\Local\GDIPFONTCACHEV1.DAT
2010-05-03 17:44 . 2010-05-03 17:44 -------- d-----w- c:\users\Dorota\AppData\Roaming\Ahead
2010-05-03 17:43 . 2010-05-03 17:44 -------- d-----w- c:\users\Dorota\AppData\Local\Ahead
2010-05-03 17:35 . 2010-05-03 17:35 -------- d-----w- c:\programdata\Nero
2010-05-03 17:35 . 2010-05-03 17:35 -------- d-----w- c:\program files\Nero
2010-05-03 17:35 . 2010-05-03 17:35 -------- d-----w- c:\program files\Common Files\Ahead
2010-05-03 16:48 . 2010-05-03 16:48 -------- d-----w- c:\users\Dorota\AppData\Local\GHISLER
2010-05-03 16:45 . 2010-05-03 16:45 -------- d-----w- c:\users\Dorota\AppData\Local\cache
2010-05-03 16:43 . 2010-05-09 16:06 57344 ----a-w- c:\programdata\DivX\RunAsUser\RUNASUSERPROCESS.dll
2010-05-03 16:41 . 2010-05-09 15:49 754984 ----a-w- c:\programdata\DivX\Setup\Resource.dll
2010-05-03 16:41 . 2010-05-03 16:39 1180952 ----a-w- c:\programdata\DivX\Setup\DivXSetup.exe
2010-05-03 16:41 . 2010-05-03 16:41 56978 ----a-w- c:\programdata\DivX\WebPlayer\Uninstaller.exe
2010-05-03 16:41 . 2010-05-03 16:41 57609 ----a-w- c:\programdata\DivX\MFComponents\Uninstaller.exe
2010-05-03 16:41 . 2010-05-03 16:41 57054 ----a-w- c:\programdata\DivX\DSDesktopComponents\Uninstaller.exe
2010-05-03 16:41 . 2010-05-03 16:41 56458 ----a-w- c:\programdata\DivX\DivXDecoderShortcut\Uninstaller.exe
2010-05-03 16:41 . 2010-05-03 16:41 54174 ----a-w- c:\programdata\DivX\DSAACDecoder\Uninstaller.exe
2010-05-03 16:41 . 2010-05-03 16:41 52963 ----a-w- c:\programdata\DivX\MSVC80CRTRedist\Uninstaller.exe
2010-05-03 16:41 . 2010-05-03 16:41 54073 ----a-w- c:\programdata\DivX\Qt4.5\Uninstaller.exe
2010-05-03 16:41 . 2010-05-03 16:41 -------- d-----w- c:\program files\Common Files\DivX Shared
2010-05-03 16:41 . 2010-05-03 16:41 56969 ----a-w- c:\programdata\DivX\ASPEncoder\Uninstaller.exe
2010-05-03 16:40 . 2010-05-09 16:06 -------- d-----w- c:\program files\DivX
2010-05-03 16:40 . 2010-05-09 15:49 144696 ----a-w- c:\programdata\DivX\RunAsUser\RUNASUSERPROCESS.exe
2010-05-03 16:40 . 2010-05-09 16:06 -------- d-----w- c:\programdata\DivX
2010-05-03 16:39 . 2010-06-01 17:40 -------- d-----w- c:\users\Dorota\AppData\Roaming\GHISLER
2010-05-03 16:39 . 2010-05-03 16:39 -------- d-----w- c:\program files\totalcmd
2010-05-03 16:39 . 2009-09-24 05:50 545 ----a-w- c:\windows\UC.PIF
2010-05-03 16:39 . 2009-09-24 05:50 545 ----a-w- c:\windows\RAR.PIF
2010-05-03 16:39 . 2009-09-24 05:50 545 ----a-w- c:\windows\PKZIP.PIF
2010-05-03 16:39 . 2009-09-24 05:50 545 ----a-w- c:\windows\PKUNZIP.PIF
2010-05-03 16:39 . 2009-09-24 05:50 545 ----a-w- c:\windows\NOCLOSE.PIF
2010-05-03 16:39 . 2009-09-24 05:50 545 ----a-w- c:\windows\LHA.PIF
2010-05-03 16:39 . 2009-09-24 05:50 545 ----a-w- c:\windows\ARJ.PIF
2010-05-03 16:34 . 2010-05-11 18:21 -------- d-----w- c:\users\Dorota\AppData\Roaming\Gadu-Gadu 10
2010-05-03 16:34 . 2010-05-03 16:34 -------- d-----w- c:\programdata\Gadu-Gadu 10
2010-05-03 16:34 . 2010-05-03 16:34 -------- d-----w- c:\program files\Gadu-Gadu 10
2010-05-03 16:27 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2010-05-03 16:27 . 2006-09-28 14:05 2414360 ----a-w- c:\windows\system32\d3dx9_31.dll
2010-05-03 16:27 . 2010-05-03 16:27 -------- d-----w- c:\program files\Winamp Detect
2010-05-03 16:27 . 2010-05-03 16:27 -------- d-----w- c:\program files\Common Files\PX Storage Engine
2010-05-03 16:27 . 2010-05-03 16:29 -------- d-----w- c:\users\Dorota\AppData\Roaming\Winamp
2010-05-03 16:27 . 2010-05-03 16:28 -------- d-----w- c:\program files\Winamp
2010-05-03 16:21 . 2010-05-03 16:21 -------- d-----w- c:\users\Dorota\AppData\Local\Adobe
2010-05-03 16:20 . 2010-05-03 16:20 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-03 16:10 . 2010-05-03 16:10 -------- d-----w- c:\users\Dorota\AppData\Local\Mozilla
2010-05-03 15:57 . 2010-05-03 15:57 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2010-05-03 15:50 . 2010-05-03 15:50 -------- d-----w- c:\users\Dorota\AppData\Local\WindowsUpdate
2010-05-03 15:33 . 2006-10-26 17:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
2010-05-03 15:33 . 2008-11-10 09:41 32656 ----a-w- c:\windows\system32\msonpmon.dll
2010-05-03 15:33 . 2010-05-03 15:35 -------- d-----w- c:\program files\Microsoft Works
2010-05-03 15:32 . 2010-05-03 15:32 -------- d-----w- c:\windows\PCHEALTH
2010-05-03 15:32 . 2010-05-03 15:32 -------- d-----w- c:\program files\Microsoft.NET
2010-05-03 15:31 . 2010-05-03 15:31 -------- d-----w- c:\users\Dorota\AppData\Local\Microsoft Help
2010-05-03 15:31 . 2010-05-12 08:00 -------- d-----w- c:\programdata\Microsoft Help
2010-05-03 15:31 . 2010-05-03 15:31 -------- d-----r- C:\MSOCache
2010-05-03 15:07 . 2010-05-03 15:07 -------- d-----w- c:\windows\tiinst
2010-05-03 14:55 . 2010-05-03 14:55 -------- d-----w- c:\program files\Common Files\Java
2010-05-03 14:53 . 2010-05-03 14:53 411368 ----a-w- c:\windows\system32\deployJava1.dll
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-01 18:32 . 2009-07-14 08:07 687828 ----a-w- c:\windows\system32\perfh015.dat
2010-06-01 18:32 . 2009-07-14 08:07 131382 ----a-w- c:\windows\system32\perfc015.dat
2010-05-25 19:31 . 2010-05-03 12:59 -------- d–h--w- c:\program files\InstallShield Installation Information
2010-05-12 08:01 . 2009-07-14 02:37 -------- d-----w- c:\program files\Windows Mail
2010-05-10 12:19 . 2010-05-10 12:19 56 —ha-w- c:\programdata\ezsidmv.dat
2010-05-07 14:37 . 2010-05-07 14:37 0 —ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
2010-05-03 17:46 . 2010-05-03 12:59 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-03 13:00 . 2010-05-03 12:59 -------- d–h--w- c:\program files\Temp
2010-05-03 12:59 . 2010-05-03 12:59 -------- d-----w- c:\program files\Realtek
2010-05-03 12:49 . 2010-05-03 12:49 0 —ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2010-05-03 12:30 . 2010-05-03 12:30 -------- d-sh–we c:\programdata\Ulubione
2010-05-03 12:30 . 2010-05-03 12:30 -------- d-sh–we c:\programdata\Szablony
2010-05-03 12:30 . 2010-05-03 12:30 -------- d-sh–we c:\programdata\Pulpit
2010-05-03 12:30 . 2010-05-03 12:30 -------- d-sh–we c:\programdata\Menu Start
2010-05-03 12:30 . 2010-05-03 12:30 -------- d-sh–we c:\programdata\Dokumenty
2010-05-03 12:30 . 2010-05-03 12:30 -------- d-sh–we c:\programdata\Dane aplikacji
2010-04-23 10:22 . 2010-04-23 10:22 2898232 ----a-w- c:\users\Dorota\AppData\Roaming\Mozilla\Firefox\Profiles\6oauebua.default\extensions\firefox@tvunetworks.com\plugins\npTVUAx.dll
2010-04-21 08:40 . 2010-04-21 08:40 42080 ----a-w- c:\programdata\Gadu-Gadu 10_userdata\ggbho.2.dll
2010-04-21 08:39 . 2010-04-21 08:39 11776 ----a-w- c:\programdata\Gadu-Gadu 10_userdata\npgg.2.dll
2010-04-09 20:48 . 2010-04-09 20:48 3600384 ----a-w- c:\windows\system32\GPhotos.scr
2010-04-08 10:47 . 2010-04-08 10:47 50936 ----a-w- c:\windows\system32\drivers\tosrfusb.sys
2010-04-07 08:51 . 2010-04-07 08:51 171240 ----a-w- c:\windows\system32\drivers\tosrfbd.sys
2010-03-25 09:27 . 2010-03-25 09:27 1107264 ----a-w- c:\users\Dorota\AppData\Roaming\Mozilla\Firefox\Profiles\6oauebua.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
2010-03-23 15:39 . 2010-03-23 15:39 53760 ----a-w- c:\windows\system32\drivers\TosRfSnd.sys
2010-03-08 21:33 . 2010-05-03 14:27 427520 ----a-w- c:\windows\system32\vbscript.dll
2010-03-08 17:59 . 2010-03-08 17:59 94208 ----a-w- c:\windows\system32\dpl100.dll
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
“{00000000-6E41-4FD3-8538-502F5495E5FC}”= “c:\program files\Ask.com\GenericAskToolbar.dll” [2010-02-04 1197448]
[HKEY_CLASSES_ROOT\clsid{00000000-6e41-4fd3-8538-502f5495e5fc}]
[HKEY_LOCAL_MACHINE~\Browser Helper Objects{D4027C7F-154A-4066-A1AD-4243D8127440}]
2010-02-04 14:50 1197448 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
“{D4027C7F-154A-4066-A1AD-4243D8127440}”= “c:\program files\Ask.com\GenericAskToolbar.dll” [2010-02-04 1197448]
[HKEY_CLASSES_ROOT\clsid{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
“{D4027C7F-154A-4066-A1AD-4243D8127440}”= “c:\program files\Ask.com\GenericAskToolbar.dll” [2010-02-04 1197448]
[HKEY_CLASSES_ROOT\clsid{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}”=“c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe” [2008-01-22 152872]
“ares”=“c:\program files\Ares\Ares.exe” [2010-02-08 1015808]
“DAEMON Tools Lite”=“c:\program files\DAEMON Tools Lite\DTLite.exe” [2010-04-01 357696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
“NvCplDaemon”=“c:\windows\system32\NvCpl.dll” [2009-03-27 13601312]
“NvMediaCenter”=“c:\windows\system32\NvMcTray.dll” [2009-03-27 92704]
“RtHDVCpl”=“c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe” [2009-07-28 7625248]
“ITSecMng”=“c:\program files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe” [2009-07-22 83336]
“Camera Assistant Software”=“c:\program files\Camera Assistant Software for Toshiba\traybar.exe” [2009-04-10 417792]
“AVP”=“c:\program files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe” [2009-10-20 340456]
“SunJavaUpdateSched”=“c:\program files\Common Files\Java\Java Update\jusched.exe” [2010-02-18 248040]
“Adobe Reader Speed Launcher”=“c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe” [2010-04-04 36272]
“Adobe ARM”=“c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe” [2010-03-24 952768]
“NeroFilterCheck”=“c:\program files\Common Files\Ahead\Lib\NeroCheck.exe” [2008-05-28 570664]
“RemoteControl”=“c:\program files\CyberLink\PowerDVD\PDVDServ.exe” [2007-03-14 71216]
“LanguageShortcut”=“c:\program files\CyberLink\PowerDVD\Language\Language.exe” [2007-01-08 52256]
“LGODDFU”=“c:\program files\lg_fwupdate\fwupdate.exe” [2010-05-03 557056]
“DivXUpdate”=“c:\program files\DivX\DivX Update\DivXUpdate.exe” [2010-04-12 1135912]
“HP Software Update”=“c:\program files\HP\HP Software Update\HPWuSchd2.exe” [2007-05-08 54840]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe [2010-2-24 2721120]
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2009-9-20 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
“ConsentPromptBehaviorAdmin”= 5 (0x5)
“ConsentPromptBehaviorUser”= 3 (0x3)
“EnableUIADesktopToggle”= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
“mixer3”=wdmaud.drv
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
“DisableMonitoring”=dword:00000001
R0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-05-05 691696]
R3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;c:\windows\system32\Wat\WatAdminSvc.exe [2010-05-23 1343400]
S0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2009-10-14 36880]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2009-09-14 21520]
S2 acedrv11;acedrv11;c:\windows\system32\drivers\acedrv11.sys [2010-02-24 185472]
S3 netw5v32;Sterownik karty Intel® Wireless WiFi Link 5000 Series dla systemu Windows Vista w wersji 32-bitowej;c:\windows\system32\DRIVERS\netw5v32.sys [2009-07-13 4231168]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-03-01 139776]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
.
------- Skan uzupełniający -------
.
uStart Page = hxxp://www.ask.com?o=15003&l=dis
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&ksportuj do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
FF - ProfilePath - c:\users\Dorota\AppData\Roaming\Mozilla\Firefox\Profiles\6oauebua.default\
FF - prefs.js: browser.search.selectedEngine - Wikipedia (pl)
FF - prefs.js: browser.startup.homepage - hxxp://www.google.pl/
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?clien … e=en_US&q=
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBook.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBookDB.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpNeoLogger.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSaturn.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSeymour.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartSelect.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartWebPrinting.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSWPOperation.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPLogging.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTC.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTL.dll
FF - component: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXREStub.dll
FF - component: c:\program files\Mozilla Firefox\extensions{AB2CE124-6272-4b12-94A9-7303C7397BD1}\components\SkypeFfComponent.dll
FF - component: c:\program files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru\components\KavLinkFilter.dll
FF - component: c:\users\Dorota\AppData\Roaming\Mozilla\Firefox\Profiles\6oauebua.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
FF - plugin: c:\program files\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: c:\program files\Google\Picasa3\npPicasa3.dll
FF - plugin: c:\program files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\plugins\nphpclipbook.dll
FF - plugin: c:\program files\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npwachk.dll
FF - plugin: c:\program files\TVUPlayer\npTVUAx.dll
FF - plugin: c:\programdata\Gadu-Gadu 10_userdata\npgg.2.dll
FF - plugin: c:\users\Dorota\AppData\Roaming\Mozilla\Firefox\Profiles\6oauebua.default\extensions\firefox@tvunetworks.com\plugins\npTVUAx.dll
---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref(“ui.use_native_colors”, true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref(“network.auth.force-generic-ntlm”, false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref(“svg.smil.enabled”, false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref(“security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref”, true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref(“security.ssl.renego_unrestricted_hosts”, “”);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref(“security.ssl.treat_unsafe_negotiation_as_broken”, false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref(“security.ssl.require_safe_negotiation”, false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref(“extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name”, “chrome://browser/locale/browser.properties”);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref(“extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description”, “chrome://browser/locale/browser.properties”);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref(“plugins.update.notifyUser”, false);
.
-
-
-
- USUNIĘTO PUSTE WPISY - - - -
AddRemove-TOSHIBA Software Modem - c:\windows\agrsmdel
.
--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
“BlindDial”=dword:00000000
“MSCurrentCountry”=dword:000000b5
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
“BlindDial”=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Czas ukończenia: 2010-06-01 20:57:39
ComboFix-quarantined-files.txt 2010-06-01 18:57
Przed: 8 032 813 056 bajtów wolnych
Po: 11 182 755 840 bajtów wolnych
-
- End Of File - - B2D49F650946792A64DC30ACD5777A77
Dobra wóda dla tego kto rozwiąże ten problem. Normalnie ręce opadają. Już rozumiem w XP ale żeby Windows 7, taki niby dobry system a też ma błędy.