system
(system)
14 Wrzesień 2009 09:59
#1
Nie mogę zamknąć systemu. Po jakiś 10 minutach jego pracy nie mam dostępu do msconfig , services.msc. Wygląda na to, że po chwili wyłączają się usługi bo lista usług jest pusta i wyskakuje błąd nr 14.
Log z Combofix
ComboFix 09-09-12.A0 - Amelia Tokarska 2009-09-13 15:35.2.2 - NTFSx86 Microsoft® Windows Vista™ Ultimate 6.0.6002.2.1250.48.1045.18.3063.1784 [GMT 2:00] Uruchomiony z: d:\amelia tokarska\Downloads\ComboFix.exe SP: Lavasoft Ad-Watch Live! *disabled* (Updated) {67844DAE-4F77-4D69-9457-98E8CFFDAA22} SP: Spybot - Search and Destroy *disabled* (Outdated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9} SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46} . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . c:$recycle.bin\S-1-5-21-51003140-4199384537-3980697693-500 c:\windows\Installer\2f6b37.msi c:\windows\Installer\2f6b40.msi c:\windows\Installer\9cc0a.msi . ((((((((((((((((((((((((( Pliki utworzone od 2009-08-13 do 2009-09-13 ))))))))))))))))))))))))))))))) . 2009-09-13 13:46 . 2009-09-13 13:46 -------- d-----w- c:\users\Amelia Tokarska\AppData\Local\temp 2009-09-13 13:46 . 2009-09-13 13:46 -------- d-----w- c:\users\Default\AppData\Local\temp 2009-09-13 13:16 . 2009-09-13 13:16 -------- d-----w- c:\programdata\NortonInstaller 2009-09-11 18:55 . 2005-05-26 13:34 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll 2009-09-11 17:54 . 2009-09-11 17:54 -------- d-----w- c:\users\Amelia Tokarska\AppData\Local\Ahead 2009-09-11 17:50 . 2009-09-11 17:50 -------- d-----w- c:\users\Amelia Tokarska\AppData\Roaming\Nero 2009-09-11 17:42 . 2009-09-11 17:42 -------- d-----w- c:\programdata\Nero 2009-09-11 17:42 . 2009-09-11 17:47 -------- d-----w- c:\program files\Common Files\Nero 2009-09-11 16:45 . 2009-09-11 16:45 -------- d-----w- c:\users\Amelia Tokarska\AppData\Roaming\skypePM 2009-09-11 16:21 . 2009-09-11 16:48 -------- d-----w- c:\users\Amelia Tokarska\AppData\Roaming\Skype 2009-09-11 16:19 . 2009-09-11 16:19 -------- d-----w- c:\program files\Common Files\Skype 2009-09-11 16:17 . 2009-09-11 16:17 -------- d-----w- c:\users\Amelia Tokarska\AppData\Roaming\WSPWNOUP2007 2009-09-11 15:01 . 2009-09-11 15:01 -------- d-----w- c:\program files\PWN 2009-09-11 12:32 . 2009-09-11 12:32 -------- d-----w- c:\users\Amelia Tokarska\YDP 2009-09-11 11:41 . 2001-04-04 11:00 245760 ------w- c:\windows\system32\DECO_32.DLL 2009-09-11 11:39 . 1998-11-13 11:10 307200 ----a-w- c:\windows\IsUn0415.exe 2009-09-11 10:44 . 2009-09-13 11:55 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2009-09-11 10:35 . 2009-09-11 16:19 -------- d-----w- c:\programdata\Skype 2009-09-11 09:24 . 2009-09-11 09:24 -------- d-----w- c:\users\Amelia Tokarska\AppData\Roaming\ComodoGroup 2009-09-11 09:17 . 2009-09-11 09:17 -------- d-----w- c:\program files\iPhone Configuration Utility 2009-09-11 09:07 . 2009-09-11 09:16 -------- d-----w- c:\users\Amelia Tokarska\AppData\Local\Apple Computer 2009-09-11 09:07 . 2009-09-11 09:13 -------- d-----w- c:\users\Amelia Tokarska\AppData\Roaming\Apple Computer 2009-09-11 09:06 . 2009-05-18 12:17 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys 2009-09-11 09:06 . 2008-04-17 11:12 107368 ----a-w- c:\windows\system32\GEARAspi.dll 2009-09-11 09:05 . 2009-09-11 09:05 -------- d-----w- c:\program files\iPod 2009-09-11 09:04 . 2009-09-11 09:06 -------- d-----w- c:\programdata{755AC846-7372-4AC8-8550-C52491DAA8BD} 2009-09-11 09:01 . 2009-09-11 09:03 -------- d-----w- c:\program files\QuickTime 2009-09-11 09:01 . 2009-09-11 09:04 -------- d-----w- c:\programdata\Apple Computer 2009-09-11 08:48 . 2009-09-11 09:04 -------- d-----w- c:\program files\Common Files\Apple 2009-09-11 07:56 . 2009-09-11 07:56 -------- d–h--w- c:\programdata\CanonBJ 2009-09-11 07:56 . 2009-09-11 07:56 -------- d–h--w- c:\windows\system32\CanonIJ Uninstaller Information 2009-09-11 07:54 . 2006-09-13 12:00 197632 ----a-w- c:\windows\system32\CNMLM7Q.DLL 2009-09-11 07:54 . 2009-09-11 09:00 -------- d-----w- c:\windows\LastGood.Tmp 2009-09-11 07:53 . 2006-09-29 21:12 49152 ----a-w- c:\windows\system32\CNCFMSb.EXE 2009-09-11 07:53 . 2006-09-29 21:12 3072 ----a-w- c:\windows\system32\CNCFLbUS.DLL 2009-09-11 07:53 . 2006-09-29 21:12 2560 ----a-w- c:\windows\system32\CNCFLbJP.DLL 2009-09-11 07:53 . 2006-09-29 21:12 130048 ----a-w- c:\windows\system32\CNCF2Lb.DLL 2009-09-11 07:53 . 2009-09-11 07:53 -------- d–h--w- c:\program files\CanonBJ 2009-09-11 07:52 . 2009-09-11 07:52 -------- d-----w- c:\program files\Common Files\Canon 2009-09-11 07:51 . 2009-09-11 07:51 -------- d-----w- c:\program files\Canon 2009-09-11 07:35 . 2009-09-11 07:35 -------- d-----w- c:\program files\Bonjour 2009-09-11 07:35 . 2009-09-11 07:35 -------- d-----w- c:\users\Amelia Tokarska\AppData\Local\Apple 2009-09-11 07:35 . 2009-09-11 07:35 -------- d-----w- c:\program files\Apple Software Update 2009-09-11 07:34 . 2009-09-11 07:34 -------- d-----w- c:\programdata\Apple 2009-09-11 07:31 . 2009-09-11 07:45 -------- d-----w- c:\users\Amelia Tokarska\AppData\Local\Adobe 2009-09-11 07:29 . 2009-09-11 07:30 -------- d-----w- c:\program files\Common Files\Adobe 2009-09-10 20:28 . 2009-09-11 09:06 -------- dc----w- c:\windows\system32\DRVSTORE 2009-09-10 20:28 . 2009-07-03 14:49 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys 2009-09-10 20:18 . 2009-09-10 20:18 -------- dc-h–w- c:\programdata{EF63305C-BAD7-4144-9208-D65528260864} 2009-09-10 20:18 . 2009-09-10 20:28 -------- d-----w- c:\programdata\Lavasoft 2009-09-10 20:18 . 2009-09-10 20:18 -------- d-----w- c:\program files\Lavasoft 2009-09-10 19:43 . 2009-09-10 19:43 -------- d-----w- c:\windows\system32\Macromed 2009-09-10 19:39 . 2009-09-10 19:39 -------- d-----w- c:\users\Amelia Tokarska\AppData\Local\Mozilla 2009-09-10 19:38 . 2009-09-10 19:37 411368 ----a-w- c:\windows\system32\deploytk.dll 2009-09-10 19:25 . 2009-09-10 19:25 -------- d-----w- c:\program files\BitLocker 2009-09-10 19:04 . 2009-06-22 10:09 2048 ----a-w- c:\windows\system32\tzres.dll 2009-09-10 19:00 . 2007-07-19 23:55 233888 ----a-w- c:\windows\system32\DreamScene.dll 2009-09-10 18:59 . 2008-07-12 06:18 3851784 ----a-w- c:\windows\system32\D3DX9_39.dll 2009-09-10 18:57 . 2007-02-22 02:26 1171848 ----a-w- c:\windows\system32\SecureKeyBackupCPL.dll 2009-09-10 18:57 . 2009-09-11 06:31 -------- d-----w- c:\program files\Microsoft Silverlight 2009-09-10 18:57 . 2009-09-10 18:57 -------- d-----w- c:\program files\Analog Devices 2009-09-10 18:56 . 2009-06-03 23:56 675152 ----a-w- c:\windows\system32\gpprefcl.dll 2009-09-10 18:21 . 2009-08-29 00:27 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll 2009-09-10 18:21 . 2009-08-29 00:14 28672 ----a-w- c:\windows\system32\Apphlpdm.dll 2009-09-10 18:17 . 2009-08-14 16:27 904776 ----a-w- c:\windows\system32\drivers\tcpip.sys 2009-09-10 18:17 . 2009-08-14 13:48 105984 ----a-w- c:\windows\system32\netiohlp.dll 2009-09-10 18:17 . 2009-08-14 15:53 17920 ----a-w- c:\windows\system32\netevent.dll 2009-09-10 18:17 . 2009-08-14 13:49 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE 2009-09-10 18:17 . 2009-08-14 13:49 17920 ----a-w- c:\windows\system32\ROUTE.EXE 2009-09-10 18:17 . 2009-08-14 13:49 11264 ----a-w- c:\windows\system32\MRINFO.EXE 2009-09-10 18:17 . 2009-08-14 13:49 27136 ----a-w- c:\windows\system32\NETSTAT.EXE 2009-09-10 18:17 . 2009-08-14 13:49 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE 2009-09-10 18:17 . 2009-08-14 13:49 19968 ----a-w- c:\windows\system32\ARP.EXE 2009-09-10 18:17 . 2009-08-14 13:49 10240 ----a-w- c:\windows\system32\finger.exe 2009-09-10 18:17 . 2009-08-14 13:48 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys 2009-09-10 18:12 . 2009-06-10 11:41 2868224 ----a-w- c:\windows\system32\mf.dll 2009-09-10 18:10 . 2009-06-10 11:38 91136 ----a-w- c:\windows\system32\avifil32.dll 2009-09-10 18:08 . 2009-04-23 12:15 784896 ----a-w- c:\windows\system32\rpcrt4.dll 2009-09-10 17:56 . 2008-10-16 21:09 43544 ----a-w- c:\windows\system32\wups2.dll 2009-09-10 17:56 . 2008-10-16 21:13 1809944 ----a-w- c:\windows\system32\wuaueng.dll 2009-09-10 17:56 . 2008-10-16 21:09 51224 ----a-w- c:\windows\system32\wuauclt.exe 2009-09-10 17:56 . 2008-10-16 20:56 1524736 ----a-w- c:\windows\system32\wucltux.dll 2009-09-10 17:56 . 2008-10-16 21:12 561688 ----a-w- c:\windows\system32\wuapi.dll 2009-09-10 17:56 . 2008-10-16 21:08 34328 ----a-w- c:\windows\system32\wups.dll 2009-09-10 17:56 . 2008-10-16 20:55 83456 ----a-w- c:\windows\system32\wudriver.dll 2009-09-10 17:56 . 2008-10-16 12:08 162064 ----a-w- c:\windows\system32\wuwebv.dll 2009-09-10 17:56 . 2008-10-16 11:56 31232 ----a-w- c:\windows\system32\wuapp.exe 2009-09-10 17:49 . 2009-09-10 17:49 -------- d-----w- c:\users\Amelia Tokarska\AppData\Local\WindowsUpdate 2009-09-10 17:34 . 2008-03-17 09:57 103680 ----a-w- c:\windows\system32\drivers\ewusbfake.sys 2009-09-10 17:34 . 2008-03-17 09:05 101632 ----a-w- c:\windows\system32\drivers\ewusbmdm.sys 2009-09-10 17:34 . 2008-03-16 12:47 872192 ----a-w- c:\windows\system32\drivers\mod7700.sys 2009-09-10 17:34 . 2008-01-22 13:10 100864 ----a-w- c:\windows\system32\drivers\ewusbnet.sys 2009-09-10 17:34 . 2007-08-09 02:06 23424 ----a-w- c:\windows\system32\drivers\ewdcsc.sys 2009-09-10 16:37 . 2009-09-10 16:37 -------- d-----w- c:\users\Amelia Tokarska\AppData\Roaming\GTek 2009-09-10 16:37 . 2009-09-10 16:37 -------- d-----w- c:\program files\HP 2009-09-10 16:34 . 2008-03-28 08:46 54824 ------w- c:\windows\system32\agrsmdel.exe 2009-09-10 16:34 . 2007-12-11 10:41 14336 ------w- c:\windows\system32\agrsco64.dll 2009-09-10 16:33 . 2009-09-10 16:33 -------- d-----w- c:\windows\Options 2009-09-10 16:25 . 2009-09-10 16:25 -------- d-----w- c:\program files\Synaptics 2009-09-10 16:22 . 2009-09-10 16:22 -------- d-----w- c:\users\Amelia Tokarska\AppData\Local\Broadcom 2009-09-10 16:21 . 2009-03-11 05:36 29736 ----a-w- c:\windows\system32\drivers\btwl2cap.sys 2009-09-10 16:21 . 2009-03-11 05:36 18344 ----a-w- c:\windows\system32\drivers\btwrchid.sys 2009-09-10 16:21 . 2009-03-11 05:36 109608 ----a-w- c:\windows\system32\drivers\btwavdt.sys 2009-09-10 16:21 . 2009-03-11 05:36 84008 ----a-w- c:\windows\system32\drivers\btwaudio.sys 2009-09-10 16:21 . 2009-09-10 16:21 -------- d-----w- c:\program files\WIDCOMM 2009-09-10 16:14 . 2009-09-13 12:06 12 ----a-w- c:\windows\bthservsdp.dat 2009-09-10 16:02 . 2009-09-10 16:02 -------- d-----w- c:\windows\tiinst 2009-09-10 15:58 . 2009-09-13 13:46 -------- d-sh–w- c:\windows\Installer 2009-09-10 15:57 . 2009-04-29 06:46 15872 ----a-w- c:\windows\system32\drivers\HpqKbFiltr.sys 2009-09-10 15:57 . 2009-04-20 07:38 9344 ----a-w- c:\windows\system32\drivers\CPQBttn.sys 2009-09-10 15:57 . 2006-11-02 05:09 1419232 ----a-w- c:\windows\system32\drivers\wdfcoinstaller01005.dll 2009-09-10 15:57 . 2009-09-10 16:37 -------- d-----w- c:\program files\Hewlett-Packard 2009-09-10 15:57 . 2008-09-08 12:31 1885488 ----a-w- c:\windows\system32\BttnCmns.dll 2009-09-10 15:57 . 2008-09-08 12:31 1885488 ----a-r- c:\windows\system32\BttnCmn.dll 2009-09-10 15:42 . 2009-06-04 16:43 330264 ----a-w- c:\windows\system32\drivers\iaStor.sys 2009-09-10 15:31 . 2009-09-10 15:31 -------- d-----w- c:\windows\system32\Lang 2009-09-10 15:31 . 2008-07-02 08:06 920088 ----a-w- c:\windows\system32\igxpun.exe 2009-09-10 15:31 . 2006-11-10 07:25 319456 ----a-w- c:\windows\system32\difxapi.dll 2009-09-10 15:20 . 2009-09-10 15:42 -------- d-----w- c:\program files\Intel 2009-09-10 15:20 . 2009-08-18 11:44 53248 ----a-w- c:\windows\system32\CSVer.dll 2009-09-10 14:42 . 2009-09-10 14:43 -------- d-----w- c:\windows\system32\eu-ES 2009-09-10 14:42 . 2009-09-10 14:43 -------- d-----w- c:\windows\system32\ca-ES 2009-09-10 14:42 . 2009-09-10 14:43 -------- d-----w- c:\windows\system32\vi-VN 2009-09-10 14:39 . 2009-09-10 14:39 -------- d-----w- c:\windows\system32\SPReview 2009-09-10 14:30 . 2009-04-10 21:28 928768 ----a-w- c:\windows\system32\scavenge.dll . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-09-13 13:16 . 2006-12-05 05:27 662056 ----a-w- c:\windows\system32\perfh015.dat 2009-09-13 13:16 . 2006-12-05 05:27 126908 ----a-w- c:\windows\system32\perfc015.dat 2009-09-11 16:45 . 2009-09-11 16:45 56 —ha-w- c:\programdata\ezsidmv.dat 2009-09-10 19:25 . 2006-11-02 12:35 -------- d-----w- c:\program files\Microsoft Games 2009-09-10 19:25 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail 2009-09-10 16:25 . 2009-09-10 16:25 0 —ha-w- c:\windows\system32\drivers\Msft_Kernel_SynTP_01007.Wdf 2009-09-10 14:43 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Calendar 2009-09-10 14:43 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Sidebar 2009-09-10 14:43 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Photo Gallery 2009-09-10 14:43 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Defender 2009-09-10 14:23 . 2009-09-10 14:23 0 —ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf 2009-09-10 14:03 . 2006-11-02 10:32 101888 ----a-w- c:\windows\system32\ifxcardm.dll 2009-09-10 14:03 . 2006-11-02 10:32 82432 ----a-w- c:\windows\system32\axaltocm.dll 2009-09-10 13:23 . 2009-09-10 13:23 -------- d-sh–we c:\programdata\Ulubione 2009-09-10 13:23 . 2009-09-10 13:23 -------- d-sh–we c:\programdata\Szablony 2009-09-10 13:23 . 2009-09-10 13:23 -------- d-sh–we c:\programdata\Pulpit 2009-09-10 13:23 . 2009-09-10 13:23 -------- d-sh–we c:\programdata\Menu Start 2009-09-10 13:23 . 2009-09-10 13:23 -------- d-sh–we c:\programdata\Dokumenty 2009-09-10 13:23 . 2009-09-10 13:23 -------- d-sh–we c:\programdata\Dane aplikacji 2009-09-04 15:44 . 2009-09-11 18:56 515416 ----a-w- c:\windows\system32\XAudio2_5.dll 2009-09-04 15:44 . 2009-09-11 18:56 238936 ----a-w- c:\windows\system32\xactengine3_5.dll 2009-09-04 15:44 . 2009-09-11 18:56 69464 ----a-w- c:\windows\system32\XAPOFX1_3.dll 2009-09-04 15:29 . 2009-09-11 18:56 453456 ----a-w- c:\windows\system32\d3dx10_42.dll 2009-09-04 15:29 . 2009-09-11 18:56 235344 ----a-w- c:\windows\system32\d3dx11_42.dll 2009-09-04 15:29 . 2009-09-11 18:56 1974616 ----a-w- c:\windows\system32\D3DCompiler_42.dll 2009-09-04 15:29 . 2009-09-11 18:56 5501792 ----a-w- c:\windows\system32\d3dcsx_42.dll 2009-09-04 15:29 . 2009-09-11 18:56 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll 2009-08-04 17:49 . 2009-08-04 17:49 53280 ----a-w- c:\windows\system32\drivers\CFRPD.sys 2009-07-28 12:11 . 2009-07-28 12:11 18184 ----a-w- c:\windows\system32\cnat.exe 2009-07-21 21:52 . 2009-09-10 18:22 915456 ----a-w- c:\windows\system32\wininet.dll 2009-07-21 21:47 . 2009-09-10 18:22 109056 ----a-w- c:\windows\system32\iesysprep.dll 2009-07-21 21:47 . 2009-09-10 18:22 71680 ----a-w- c:\windows\system32\iesetup.dll 2009-07-21 20:13 . 2009-09-10 18:22 133632 ----a-w- c:\windows\system32\ieUnatt.exe 2009-07-17 13:54 . 2009-09-10 18:11 71680 ----a-w- c:\windows\system32\atl.dll 2009-07-15 12:40 . 2009-09-10 18:11 8147456 ----a-w- c:\windows\system32\wmploc.DLL 2009-07-15 12:39 . 2009-09-10 18:11 313344 ----a-w- c:\windows\system32\wmpdxm.dll 2009-07-15 12:39 . 2009-09-10 18:11 4096 ----a-w- c:\windows\system32\dxmasf.dll 2009-07-15 12:39 . 2009-09-10 18:11 7680 ----a-w- c:\windows\system32\spwmp.dll 2009-07-11 19:01 . 2009-09-10 18:13 513536 ----a-w- c:\windows\system32\wlansvc.dll 2009-07-11 19:01 . 2009-09-10 18:13 302592 ----a-w- c:\windows\system32\wlansec.dll 2009-07-11 19:01 . 2009-09-10 18:13 293376 ----a-w- c:\windows\system32\wlanmsm.dll 2009-07-11 19:01 . 2009-09-10 18:13 65024 ----a-w- c:\windows\system32\wlanapi.dll 2009-07-11 17:03 . 2009-09-10 18:13 127488 ----a-w- c:\windows\system32\L2SecHC.dll 2009-06-15 23:15 . 2009-09-10 18:13 439864 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2009-06-15 14:54 . 2009-09-10 18:13 175104 ----a-w- c:\windows\system32\wdigest.dll 2009-06-15 14:53 . 2009-09-10 18:11 156672 ----a-w- c:\windows\system32\t2embed.dll 2009-06-15 14:53 . 2009-09-10 18:13 72704 ----a-w- c:\windows\system32\secur32.dll 2009-06-15 14:53 . 2009-09-10 18:13 270848 ----a-w- c:\windows\system32\schannel.dll 2009-06-15 14:53 . 2009-09-10 18:13 218624 ----a-w- c:\windows\system32\msv1_0.dll 2009-06-15 14:52 . 2009-09-10 18:13 1259008 ----a-w- c:\windows\system32\lsasrv.dll 2009-06-15 14:52 . 2009-09-10 18:11 23552 ----a-w- c:\windows\system32\lpk.dll 2009-06-15 14:52 . 2009-09-10 18:13 499712 ----a-w- c:\windows\system32\kerberos.dll 2009-06-15 14:52 . 2009-09-10 18:11 72704 ----a-w- c:\windows\system32\fontsub.dll 2009-06-15 14:51 . 2009-09-10 18:11 10240 ----a-w- c:\windows\system32\dciman32.dll 2008-01-18 21:33 . 2009-09-10 13:37 397312 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.0.6001.18000_none_f1582d884fb532fb\WinMail.exe 2008-01-18 21:33 . 2009-09-10 13:37 397312 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.0.6002.18005_none_f343a6944cd6fe47\WinMail.exe . ------- Sigcheck ------- [-] 2008-01-18 . A3629A0C4226F9E9C72FAAEEBC3AD33C . 81920 . . [6.0.6000.16386] . . c:\windows\System32\browser.dll [-] 2008-01-18 . A3629A0C4226F9E9C72FAAEEBC3AD33C . 81920 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-browserservice_31bf3856ad364e35_6.0.6001.18000_none_78e926b99dfe756d\browser.dll [-] 2006-11-02 . BEB6470532B7461D7BB426E3FACB424F . 81408 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-browserservice_31bf3856ad364e35_6.0.6000.16386_none_76b264bda1136499\browser.dll [-] 2009-04-10 . 0C2236FB7195A1CF2A632D530349E673 . 1686016 . . [6.10] . . c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll [-] 2008-01-18 . 50CDFD99E606D172875E73B87C64053D . 531968 . . [5.82] . . c:\windows\System32\comctl32.dll [-] 2008-01-18 . 50CDFD99E606D172875E73B87C64053D . 531968 . . [5.82] . . c:\windows\winsxs\x86_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.0.6001.18000_none_399c1f00d7f7837a\comctl32.dll [-] 2008-01-18 . A5BB4537004C8DCC096A952EF1E20FE9 . 1684480 . . [5.82] . . c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll [-] 2008-01-18 . 58D3C1519096F3D9E07EEC5F5FC64885 . 531968 . . [5.82] . . c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6001.18000_none_886786f450a74a05\comctl32.dll [-] 2006-11-02 . BB61FB941A382A197AC2989337BF6364 . 537088 . . [5.82] . . c:\windows\winsxs\x86_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.0.6000.16386_none_37655d04db0c72a6\comctl32.dll [-] 2006-11-02 . B28A9B2300A250B703D44C1759AF2605 . 1648128 . . [5.82] . . c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll [-] 2006-11-02 . 4A05089F43041903A3C523A3C16E3350 . 537088 . . [5.82] . . c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.6000.16386_none_87e0cb09378714f1\comctl32.dll [-] 2009-04-10 . FB27772BEAF8E1D28CCD825C09DA939B . 129024 . . [6.0.6000.16386] . . c:\windows\System32\cryptsvc.dll [-] 2009-04-10 . FB27772BEAF8E1D28CCD825C09DA939B . 129024 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.0.6002.18005_none_77eb127097f11935\cryptsvc.dll [-] 2008-01-18 . 6DE363F9F99334514C46AEC02D3E3678 . 128000 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.0.6001.18000_none_75ff99649acf4de9\cryptsvc.dll [-] 2006-11-02 . 1C26FB097170A2A91066D1E3A24366E3 . 123392 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.0.6000.16386_none_73c8d7689de43d15\cryptsvc.dll [-] 2008-01-18 . 53B202ABEE6455406254444303E87BE1 . 17408 . . [6.0.6001.18000] . . c:\windows\System32\drivers\asyncmac.sys [-] 2008-01-18 . 53B202ABEE6455406254444303E87BE1 . 17408 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-rasbase-asyncmac_31bf3856ad364e35_6.0.6001.18000_none_2457cee334d93e6f\asyncmac.sys [-] 2006-11-02 . E86CF7CE67D5DE898F27EF884DC357D8 . 17408 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-rasbase-asyncmac_31bf3856ad364e35_6.0.6000.16386_none_22210ce737ee2d9b\asyncmac.sys [-] 2008-01-18 . 67E506B75BD5326A3EC7B70BD014DFB6 . 6144 . . [6.0.6001.18000] . . c:\windows\System32\drivers\beep.sys [-] 2008-01-18 . 67E506B75BD5326A3EC7B70BD014DFB6 . 6144 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6001.18000_none_c420a153079d485b\beep.sys [-] 2006-11-02 . AC3DD1708B22761EBD7CBE14DCC3B5D7 . 6144 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6000.16386_none_c1e9df570ab23787\beep.sys [-] 2008-01-18 . C5DBBCDA07D780BDA9B685DF333BB41E . 4608 . . [6.0.6001.18000] . . c:\windows\System32\drivers\null.sys [-] 2008-01-18 . C5DBBCDA07D780BDA9B685DF333BB41E . 4608 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-null_31bf3856ad364e35_6.0.6001.18000_none_a965ed7d1afd0ac7\null.sys [-] 2006-11-02 . EC5EFB3C60F1B624648344A328BCE596 . 4608 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-null_31bf3856ad364e35_6.0.6000.16386_none_a72f2b811e11f9f3\null.sys [-] 2009-04-10 . 67058C46504BC12D821F38CF99B7B28F . 268800 . . [2001.12.6932.18005] . . c:\windows\System32\es.dll [-] 2009-04-10 . 67058C46504BC12D821F38CF99B7B28F . 268800 . . [2001.12.6932.18005] . . c:\windows\winsxs\x86_microsoft-windows-c…complus-eventsystem_31bf3856ad364e35_6.0.6002.18005_none_0ed918294edf6b75\es.dll [-] 2008-01-18 . F4BF4FA769DB51B106D2B4B35256988B . 262144 . . [2001.12.6931.18000] . . c:\windows\winsxs\x86_microsoft-windows-c…complus-eventsystem_31bf3856ad364e35_6.0.6001.18000_none_0ced9f1d51bda029\es.dll [-] 2006-11-02 . DFB250BAC1A9108ABD777EA181E32015 . 259584 . . [2001.12.6930.16386] . . c:\windows\winsxs\x86_microsoft-windows-c…complus-eventsystem_31bf3856ad364e35_6.0.6000.16386_none_0ab6dd2154d28f55\es.dll [-] 2009-04-10 . C8BDCECEE082B54F0BAC838BF0A34597 . 114688 . . [6.0.6002.18005] . . c:\windows\System32\imm32.dll [-] 2009-04-10 . C8BDCECEE082B54F0BAC838BF0A34597 . 114688 . . [6.0.6002.18005] . . c:\windows\winsxs\x86_microsoft-windows-imm32_31bf3856ad364e35_6.0.6002.18005_none_5e419722778cc84e\imm32.dll [-] 2008-01-18 . EC17194A193CD8E90D27CFB93DFA9A2E . 114688 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-imm32_31bf3856ad364e35_6.0.6001.18000_none_5c561e167a6afd02\imm32.dll [-] 2006-11-02 . EE12864398F1C3BF5BEE91F6AF9842E1 . 115200 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-imm32_31bf3856ad364e35_6.0.6000.16386_none_5a1f5c1a7d7fec2e\imm32.dll [-] 2009-04-10 . BB8509089E7DF514310814E1B2593FFC . 891392 . . [6.0.6001.18000] . . c:\windows\System32\kernel32.dll [-] 2009-04-10 . BB8509089E7DF514310814E1B2593FFC . 891392 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6002.18005_none_95a95e4d536d53fa\kernel32.dll [-] 2008-01-18 . DC2338093F91BA4E0512208E60206DDD . 888320 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6001.18000_none_93bde541564b88ae\kernel32.dll [-] 2006-11-02 . 1E36AE445E4DA83B82D51FEB2D4F8772 . 874496 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-kernel32_31bf3856ad364e35_6.0.6000.16386_none_91872345596077da\kernel32.dll [-] 2006-11-02 . 24F90AEFEBE601D427CB4511E74CDCB6 . 22016 . . [6.0.6000.16386] . . c:\windows\System32\linkinfo.dll [-] 2006-11-02 . 24F90AEFEBE601D427CB4511E74CDCB6 . 22016 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-linkinfo_31bf3856ad364e35_6.0.6000.16386_none_362e7020a86900de\linkinfo.dll [-] 2009-06-15 . D78588659CD9CD55F9D242AAC3466F96 . 24064 . . [6.0.6000.16870] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6000.16870_none_a7a12e2a5d988a40\lpk.dll [-] 2009-06-15 . F1A7B85B64B75F49B728CF8D41BD2AB0 . 23552 . . [6.0.6001.22450] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6001.22450_none_aa26ab5973cc8040\lpk.dll [-] 2009-06-15 . 829B85E6DC808A386C9BDF81A0273581 . 24064 . . [6.0.6000.21067] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6000.21067_none_a83c750976a7f2bc\lpk.dll [-] 2009-06-15 . 6B0D35336B0AFED33BA4A42B5ABD3A3A . 23552 . . [6.0.6002.22152] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6002.22152_none_ac0f1dd570f10812\lpk.dll [-] 2009-06-15 . EB0E02749CE5C488741C9A0ABEAB5DEC . 23552 . . [6.0.6002.18051] . . c:\windows\System32\lpk.dll [-] 2009-06-15 . EB0E02749CE5C488741C9A0ABEAB5DEC . 23552 . . [6.0.6002.18051] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6002.18051_none_ab8480c057d44ef1\lpk.dll [-] 2008-01-18 . DD496299B7351E16E602FC4299345A33 . 23552 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6001.18000_none_a9d318785a865d4c\lpk.dll [-] 2008-01-18 . DD496299B7351E16E602FC4299345A33 . 23552 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6001.18272_none_a9896d645abd4ddf\lpk.dll [-] 2008-01-18 . DD496299B7351E16E602FC4299345A33 . 23552 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6002.18005_none_abbe918457a82898\lpk.dll [-] 2006-11-02 . 6D832E5314A2445D3F644C71FAF32BDC . 24064 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-gdi_31bf3856ad364e35_6.0.6000.16386_none_a79c567c5d9b4c78\lpk.dll [-] 2009-06-15 . C731B1FE449D4E9CEA358C9D55B69BE9 . 7680 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6000.16870_none_a418a0745fdd652a\lsass.exe [-] 2009-06-15 . 6F1F23D3599EAE17734451936B7F17C6 . 9728 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.22450_none_a69e1da376115b2a\lsass.exe [-] 2009-06-15 . BA9A67672E025078C77967731BCFC560 . 7680 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6000.21067_none_a4b3e75378eccda6\lsass.exe [-] 2009-06-15 . A911ECAC81F94ADEAFBE8E3F7873EDB0 . 9728 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.18272_none_a600dfae5d0228c9\lsass.exe [-] 2009-06-15 . 203D86EBD6D8E4C8501B222421E81506 . 9728 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6002.22152_none_a886901f7335e2fc\lsass.exe [-] 2009-06-15 . 3978F3540329E16C0AC3BCF677E5669F . 9728 . . [6.0.6000.16386] . . c:\windows\System32\lsass.exe [-] 2009-06-15 . 3978F3540329E16C0AC3BCF677E5669F . 9728 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6002.18051_none_a7fbf30a5a1929db\lsass.exe [-] 2008-01-18 . DCF733788C7D088D814E5F80EB4B3E0F . 9728 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6001.18000_none_a64a8ac25ccb3836\lsass.exe [-] 2008-01-18 . DCF733788C7D088D814E5F80EB4B3E0F . 9728 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6002.18005_none_a83603ce59ed0382\lsass.exe [-] 2006-11-02 . 6A0E382E74280E4CC0DF17FE2661D003 . 7680 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-lsa_31bf3856ad364e35_6.0.6000.16386_none_a413c8c65fe02762\lsass.exe [-] 2009-07-22 . 8FD67A68AF3E2013DC668D3DD1519BB7 . 5938176 . . [8.00.6001.18702] . . c:\windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.22903_none_f6b8d3f15111a1c1\mshtml.dll [-] 2009-07-21 . 2620C82EEEBED884FAA1E00C4671E83A . 5937152 . . [8.00.6001.18702] . . c:\windows\System32\mshtml.dll [-] 2009-07-21 . 2620C82EEEBED884FAA1E00C4671E83A . 5937152 . . [8.00.6001.18702] . . c:\windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18813_none_f624673a37fc1de8\mshtml.dll [-] 2009-04-10 . A4D04D404AFC1D30EDA01EE50D27AA51 . 3596288 . . [7.00.6002.18005] . . c:\windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6002.18005_none_152e8ba81f4b4668\mshtml.dll [-] 2009-03-08 . D469A0EBA2EF5C6BEE8065B7E3196E5E . 5937152 . . [8.00.6001.18702] . . c:\windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_8.0.6001.18702_none_f62e34f637f4eb79\mshtml.dll [-] 2008-01-18 . 48E05FD07045BB2E5CFC43C970CAF1E7 . 3578368 . . [7.00.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6001.18000_none_1343129c22297b1c\mshtml.dll [-] 2006-11-02 . 2D972F487EACEBBB2B3A02F290C3511A . 3580416 . . [7.00.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_6.0.6000.16386_none_110c50a0253e6a48\mshtml.dll [-] 2009-04-10 . 8617350C9B590B63E620881092751BCB . 223232 . . [6.0.6000.16386] . . c:\windows\System32\mswsock.dll [-] 2009-04-10 . 8617350C9B590B63E620881092751BCB . 223232 . . [6.0.6002.18005] . . c:\windows\winsxs\x86_microsoft-windows-w…-infrastructure-bsp_31bf3856ad364e35_6.0.6002.18005_none_ba3ed0122a6d89da\mswsock.dll [-] 2008-01-18 . 89FD0595EEA4E505CABEFCF7008F2612 . 223232 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-w…-infrastructure-bsp_31bf3856ad364e35_6.0.6001.18000_none_b85357062d4bbe8e\mswsock.dll [-] 2006-11-02 . 54E9576169A248AD62A1EB9773225826 . 227328 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-w…-infrastructure-bsp_31bf3856ad364e35_6.0.6000.16386_none_b61c950a3060adba\mswsock.dll [-] 2009-04-10 . 95DAECF0FB120A7B5DA679CC54E37DDE . 592896 . . [6.0.6001.18000] . . c:\windows\System32\netlogon.dll [-] 2009-04-10 . 95DAECF0FB120A7B5DA679CC54E37DDE . 592896 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6002.18005_none_ffa3304f351bb3a3\netlogon.dll [-] 2008-01-18 . A8EFC0B6E75B789F7FD3BA5025D4E37F . 592384 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6001.18000_none_fdb7b74337f9e857\netlogon.dll [-] 2006-11-02 . 889A2C9F2AACCD8F64EF50AC0B3D553B . 559616 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.0.6000.16386_none_fb80f5473b0ed783\netlogon.dll [-] 2008-01-18 . C8052711DAECC48B982434C5116CA401 . 274432 . . [6.0.6000.16386] . . c:\windows\System32\netman.dll [-] 2008-01-18 . C8052711DAECC48B982434C5116CA401 . 274432 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-netman_31bf3856ad364e35_6.0.6001.18000_none_0fbd1b9651cfd333\netman.dll [-] 2006-11-02 . 90A4DAE28B94497F83BEA0F2A3B77092 . 273920 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-netman_31bf3856ad364e35_6.0.6000.16386_none_0d86599a54e4c25f\netman.dll [-] 2009-04-10 . 9A7F4B2EDACD11444D048AA19CBB26AF . 98816 . . [6.0.6001.18000] . . c:\windows\System32\powrprof.dll [-] 2009-04-10 . 9A7F4B2EDACD11444D048AA19CBB26AF . 98816 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-userpowermanagement_31bf3856ad364e35_6.0.6002.18005_none_a505176cf9fa2abd\powrprof.dll [-] 2008-01-18 . 51832219A52C3535BF4771C375E63F9B . 97280 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-userpowermanagement_31bf3856ad364e35_6.0.6001.18000_none_a3199e60fcd85f71\powrprof.dll [-] 2006-11-02 . 3CDEC51291F735C5C276B957239017A3 . 96768 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-userpowermanagement_31bf3856ad364e35_6.0.6000.16386_none_a0e2dc64ffed4e9d\powrprof.dll [-] 2009-04-10 . 93952506C6D67330367F7E7934B6A02F . 758784 . . [7.0.6001.18000] . . c:\windows\System32\qmgr.dll [-] 2009-04-10 . 93952506C6D67330367F7E7934B6A02F . 758784 . . [7.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-bits-client_31bf3856ad364e35_6.0.6002.18005_none_257c3df8f693d6d8\qmgr.dll [-] 2008-01-18 . 02ED7B4DBC2A3232A389106DA7515C3D . 758272 . . [7.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-bits-client_31bf3856ad364e35_6.0.6001.18000_none_2390c4ecf9720b8c\qmgr.dll [-] 2006-11-02 . 733FB484A06B9D6A44DD9CA1D3BE937B . 749568 . . [7.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-bits-client_31bf3856ad364e35_6.0.6000.16386_none_215a02f0fc86fab8\qmgr.dll [-] 2009-04-10 . 3B5B4D53FEC14F7476CA29A20CC31AC9 . 550400 . . [6.0.6000.16386] . . c:\windows\System32\rpcss.dll [-] 2009-04-10 . 3B5B4D53FEC14F7476CA29A20CC31AC9 . 550400 . . [6.0.6002.18005] . . c:\windows\winsxs\x86_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.0.6002.18005_none_6bb655083b01c988\rpcss.dll [-] 2008-01-18 . 33FB1F0193EE2051067441492D56113C . 547328 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.0.6001.18000_none_69cadbfc3ddffe3c\rpcss.dll [-] 2006-11-02 . B46D8EA6DD30BAA49F674DACDC4C491F . 545792 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.0.6000.16386_none_67941a0040f4ed68\rpcss.dll [-] 2009-04-10 . 8FC182167381E9915651267044105EE1 . 177152 . . [6.0.6000.16386] . . c:\windows\System32\scecli.dll [-] 2009-04-10 . 8FC182167381E9915651267044105EE1 . 177152 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-s…urationengineclient_31bf3856ad364e35_6.0.6002.18005_none_39f95b67d63d3a5e\scecli.dll [7] 2008-01-18 . 28B84EB538F7E8A0FE8B9299D591E0B9 . 177152 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-s…urationengineclient_31bf3856ad364e35_6.0.6001.18000_none_380de25bd91b6f12\scecli.dll [7] 2006-11-02 . 80E2839D05CA5970A86D7BE2A08BFF61 . 176640 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-s…urationengineclient_31bf3856ad364e35_6.0.6000.16386_none_35d7205fdc305e3e\scecli.dll [-] 2009-04-10 . D4E6D91C1349B7BFB3599A6ADA56851B . 279552 . . [6.0.6000.16386] . . c:\windows\System32\services.exe [-] 2009-04-10 . D4E6D91C1349B7BFB3599A6ADA56851B . 279552 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-s…s-servicecontroller_31bf3856ad364e35_6.0.6002.18005_none_d14b3973ca6acc56\services.exe [-] 2008-01-18 . 2B336AB6286D6C81FA02CBAB914E3C6C . 279040 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-s…s-servicecontroller_31bf3856ad364e35_6.0.6001.18000_none_cf5fc067cd49010a\services.exe [-] 2006-11-02 . 329CF3C97CE4C19375C8ABCABAE258B0 . 279552 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-s…s-servicecontroller_31bf3856ad364e35_6.0.6000.16386_none_cd28fe6bd05df036\services.exe [-] 2006-11-02 . F4E1AA5D59C849A4AB47E895DC76B9C8 . 4608 . . [6.0.6000.16386] . . c:\windows\System32\sfc.dll [-] 2006-11-02 . F4E1AA5D59C849A4AB47E895DC76B9C8 . 4608 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-sfc_31bf3856ad364e35_6.0.6000.16386_none_a4ff01505f4694a4\sfc.dll [-] 2006-11-02 . F4E1AA5D59C849A4AB47E895DC76B9C8 . 4608 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-sfc_31bf3856ad364e35_6.0.6001.18000_none_a735c34c5c31a578\sfc.dll [-] 2009-04-10 . 524BFBEA40E6E404737CCBC754647A2E . 127488 . . [6.0.6000.16386] . . c:\windows\System32\spoolsv.exe [-] 2009-04-10 . 524BFBEA40E6E404737CCBC754647A2E . 127488 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6002.18005_none_d8371c2dbeaa9062\spoolsv.exe [-] 2008-01-18 . 846CDF9A3CF4DA9B306ADFB7D55EE4C2 . 125952 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6001.18000_none_d64ba321c188c516\spoolsv.exe [-] 2006-11-02 . DA612EF2556776DF2630B68BF2D48935 . 124928 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-printing-spooler-core_31bf3856ad364e35_6.0.6000.16386_none_d414e125c49db442\spoolsv.exe [-] 2008-01-18 . 3794B461C45882E06856F282EEF025AF . 21504 . . [6.0.6000.16386] . . c:\windows\System32\svchost.exe [7] 2008-01-18 . 3794B461C45882E06856F282EEF025AF . 21504 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5\svchost.exe [7] 2006-11-02 . 10DA15933D582D2FEDCF705EFE394B09 . 22016 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6000.16386_none_b38497a50862ad11\svchost.exe [-] 2009-04-10 . D7673E4B38CE21EE54C59EEEB65E2483 . 242688 . . [6.0.6000.16386] . . c:\windows\System32\tapisrv.dll [-] 2009-04-10 . D7673E4B38CE21EE54C59EEEB65E2483 . 242688 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-tapiservice_31bf3856ad364e35_6.0.6002.18005_none_e52851e7e21463cb\tapisrv.dll [-] 2008-01-18 . 680916BB09EE0F3A6ACA7C274B0D633F . 242688 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-tapiservice_31bf3856ad364e35_6.0.6001.18000_none_e33cd8dbe4f2987f\tapisrv.dll [-] 2006-11-02 . EF3DD33C740FC2F82E7E4622F1C49289 . 242688 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-tapiservice_31bf3856ad364e35_6.0.6000.16386_none_e10616dfe80787ab\tapisrv.dll [-] 2009-04-10 . 75510147B94598407666F4802797C75A . 627712 . . [6.0.6001.18000] . . c:\windows\System32\user32.dll [-] 2009-04-10 . 75510147B94598407666F4802797C75A . 627712 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.0.6002.18005_none_cf23e54d6a7e4a7e\user32.dll [-] 2008-01-18 . B974D9F06DC7D1908E825DC201681269 . 627200 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.0.6001.18000_none_cd386c416d5c7f32\user32.dll [-] 2006-11-02 . E698A5437B89A285ACA3FF022356810A . 633856 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.0.6000.16386_none_cb01aa4570716e5e\user32.dll [-] 2008-01-18 . 0E135526E9785D085BCD9AEDE6FBCBF9 . 25088 . . [6.0.6000.16386] . . c:\windows\System32\userinit.exe [-] 2008-01-18 . 0E135526E9785D085BCD9AEDE6FBCBF9 . 25088 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe [-] 2006-11-02 . 22027835939F86C3E47AD8E3FBDE3D11 . 24576 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6000.16386_none_d9f1f819d4c4e737\userinit.exe [-] 2009-07-22 . E48ADF567FE3EFCC2EB88A2BE5E020CB . 915456 . . [8.00.6001.18702] . . c:\windows\winsxs\x86_microsoft-windows-i…tocolimplementation_31bf3856ad364e35_8.0.6001.22903_none_e55eb4d2d0bb388b\wininet.dll [-] 2009-07-21 . 6206A2BF9741B31C258ACC51972AFCAA . 915456 . . [8.00.6001.18702] . . c:\windows\System32\wininet.dll [-] 2009-07-21 . 6206A2BF9741B31C258ACC51972AFCAA . 915456 . . [8.00.6001.18702] . . c:\windows\winsxs\x86_microsoft-windows-i…tocolimplementation_31bf3856ad364e35_8.0.6001.18813_none_e4ca481bb7a5b4b2\wininet.dll [-] 2009-04-10 . 8777B44511D8BCCF47B5A7CBDC02DE11 . 828416 . . [7.00.6002.18005] . . c:\windows\winsxs\x86_microsoft-windows-i…tocolimplementation_31bf3856ad364e35_6.0.6002.18005_none_03d46c899ef4dd32\wininet.dll [-] 2009-03-08 . 6CE32F7778061CCC5814D5E0F282D369 . 914944 . . [8.00.6001.18702] . . c:\windows\winsxs\x86_microsoft-windows-i…tocolimplementation_31bf3856ad364e35_8.0.6001.18702_none_e4d415d7b79e8243\wininet.dll [-] 2008-01-18 . 455D715A840579BDC1CF8E5C1DA76849 . 825856 . . [7.00.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-i…tocolimplementation_31bf3856ad364e35_6.0.6001.18000_none_01e8f37da1d311e6\wininet.dll [-] 2006-11-02 . 214A456AADCC7DD1B36E2287BA71A9CA . 822272 . . [7.00.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-i…tocolimplementation_31bf3856ad364e35_6.0.6000.16386_none_ffb23181a4e80112\wininet.dll [-] 2009-04-10 . 898E7C06A350D4A1A64A9EA264D55452 . 314368 . . [6.0.6001.18000] . . c:\windows\System32\winlogon.exe [-] 2009-04-10 . 898E7C06A350D4A1A64A9EA264D55452 . 314368 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe [-] 2008-01-18 . C2610B6BDBEFC053BBDAB4F1B965CB24 . 314880 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe [-] 2006-11-02 . 9F75392B9128A91ABAFB044EA350BAAD . 308224 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6000.16386_none_6d8c3f1ad8066b21\winlogon.exe [-] 2008-01-18 . B304D47D5744BA20FCB99FB8B2C07B0B . 179200 . . [6.0.6000.16386] . . c:\windows\System32\ws2_32.dll [-] 2008-01-18 . B304D47D5744BA20FCB99FB8B2C07B0B . 179200 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-w…nfrastructure-ws232_31bf3856ad364e35_6.0.6001.18000_none_f2b7b0c2ce5605c4\ws2_32.dll [-] 2006-11-02 . D99A071C1018BB3D4ABAAD4B62048AC2 . 178688 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-w…nfrastructure-ws232_31bf3856ad364e35_6.0.6000.16386_none_f080eec6d16af4f0\ws2_32.dll [-] 2009-04-10 . D07D4C3038F3578FFCE1C0237F2A1253 . 2926592 . . [6.0.6000.16386] . . c:\windows\explorer.exe [-] 2009-04-10 . D07D4C3038F3578FFCE1C0237F2A1253 . 2926592 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6002.18005_none_53a0201e76de3a0b\explorer.exe [-] 2008-01-18 . FFA764631CB70A30065C12EF8E174F9F . 2927104 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe [-] 2006-11-02 . FD8C53FB002217F6F888BCF6F5D7084D . 2923520 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6000.16386_none_4f7de5167cd15deb\explorer.exe [-] 2006-11-02 . 7F15B4953378C8B5161D65C26D5FED4D . 11776 . . [6.0.6000.16386] . . c:\windows\System32\cngaudit.dll [-] 2006-11-02 . 7F15B4953378C8B5161D65C26D5FED4D . 11776 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.0.6000.16386_none_e62d292932a96ce6\cngaudit.dll [-] 2006-11-02 . 22BFD03DF51065A9ED8D17F8FB72296B . 8704 . . [6.0.6000.16386] . . c:\windows\System32\ctfmon.exe [-] 2006-11-02 . 22BFD03DF51065A9ED8D17F8FB72296B . 8704 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-t…cesframework-ctfmon_31bf3856ad364e35_6.0.6000.16386_none_9af9cad793a67953\ctfmon.exe [-] 2009-04-10 . 9E6894EA18DAFF37B63E1005F83AE4AB . 107008 . . [6.0.6000.16386] . . c:\windows\System32\regsvc.dll [-] 2009-04-10 . 9E6894EA18DAFF37B63E1005F83AE4AB . 107008 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-remoteregistry-service_31bf3856ad364e35_6.0.6002.18005_none_8b517ec580991c4d\regsvc.dll [-] 2008-01-18 . CC4E32400F3C7253400CF8F3F3A0B676 . 106496 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-remoteregistry-service_31bf3856ad364e35_6.0.6001.18000_none_896605b983775101\regsvc.dll [7] 2006-11-02 . 9A043808667C8C1893DA7275AF373F0E . 105984 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-remoteregistry-service_31bf3856ad364e35_6.0.6000.16386_none_872f43bd868c402d\regsvc.dll [-] 2009-04-10 . 323AE0BDFD2EB15B668DDA50CC597329 . 595456 . . [6.0.6001.18000] . . c:\windows\System32\schedsvc.dll [-] 2009-04-10 . 323AE0BDFD2EB15B668DDA50CC597329 . 595456 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-taskscheduler-service_31bf3856ad364e35_6.0.6002.18005_none_30ec979d94244404\schedsvc.dll [-] 2008-01-18 . 1D5E99DB3C10F4FA034010DC49043CA4 . 596992 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-taskscheduler-service_31bf3856ad364e35_6.0.6001.18000_none_2f011e91970278b8\schedsvc.dll [-] 2007-12-06 . BF17DA9F25A4F84C2577AC13EE126CB7 . 595968 . . [6.0.6000.20734] . . c:\windows\winsxs\x86_microsoft-windows-taskscheduler-service_31bf3856ad364e35_6.0.6000.20734_none_2d880e1ab30e40c0\schedsvc.dll [-] 2007-12-06 . 886CEC884B5BE29AB9828B8AB46B11F7 . 595456 . . [6.0.6000.16609] . . c:\windows\winsxs\x86_microsoft-windows-taskscheduler-service_31bf3856ad364e35_6.0.6000.16609_none_2d23e28599d3cbd6\schedsvc.dll [-] 2006-11-02 . 5C72614E6625D39CC1504BF078FDC4CA . 595456 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-taskscheduler-service_31bf3856ad364e35_6.0.6000.16386_none_2cca5c959a1767e4\schedsvc.dll [-] 2009-07-10 . 1E3FDB80E40A3CE645F229DFBDFB7694 . 247808 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6001.18287_none_cce0e39c1d282219\shsvcs.dll [-] 2009-07-10 . 94285A002D2826D2FD1C0806455136E9 . 245760 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6000.16883_none_caf6a3ce20052bcc\shsvcs.dll [-] 2009-07-10 . 6898575E052CE7CB1CB87622EF187CDA . 245760 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6000.21081_none_cb7e18273924cc2a\shsvcs.dll [-] 2009-07-10 . 6669714ACE90E9BB4E8C1D550C67B160 . 247808 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6001.22467_none_cd80222536358728\shsvcs.dll [-] 2009-07-10 . F0942394F642F5CE3D9A86474FA293FA . 247808 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6002.22169_none_cf6894a1335a0efa\shsvcs.dll [-] 2009-07-10 . C7230FBEE14437716701C15BE02C27B8 . 247808 . . [6.0.6000.16386] . . c:\windows\System32\shsvcs.dll [-] 2009-07-10 . C7230FBEE14437716701C15BE02C27B8 . 247808 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6002.18063_none_ced8f61a1a41d726\shsvcs.dll [-] 2009-04-10 . C818C44C201898399BF999BB6B35D4E3 . 247296 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6002.18005_none_cf1bd6361a0f622e\shsvcs.dll [-] 2008-01-18 . 27F10F348E508243F6254846F8370D0D . 247296 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6001.18000_none_cd305d2a1ced96e2\shsvcs.dll [-] 2006-11-02 . B264DFA21677728613267FE63802B332 . 245248 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-shsvcs_31bf3856ad364e35_6.0.6000.16386_none_caf99b2e2002860e\shsvcs.dll [-] 2008-01-18 . 03D50B37234967433A5EA5BA72BC0B62 . 155648 . . [6.0.6000.16386] . . c:\windows\System32\ssdpsrv.dll [-] 2008-01-18 . 03D50B37234967433A5EA5BA72BC0B62 . 155648 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-upnpssdp_31bf3856ad364e35_6.0.6001.18000_none_7fc972ebd13849b5\ssdpsrv.dll [-] 2006-11-02 . 8D3E4BAFF8B3997138C38EB1B600519A . 155136 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-upnpssdp_31bf3856ad364e35_6.0.6000.16386_none_7d92b0efd44d38e1\ssdpsrv.dll [-] 2009-04-10 . BB95DA09BEF6E7A131BFF3BA5032090D . 449024 . . [6.0.6001.18000] . . c:\windows\System32\termsrv.dll [-] 2009-04-10 . BB95DA09BEF6E7A131BFF3BA5032090D . 449024 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-t…teconnectionmanager_31bf3856ad364e35_6.0.6002.18005_none_908abad45165e2ae\termsrv.dll [-] 2008-01-18 . D605031E225AACCBCEB5B76A4F1603A6 . 448512 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-t…teconnectionmanager_31bf3856ad364e35_6.0.6001.18000_none_8e9f41c854441762\termsrv.dll [-] 2006-11-02 . FAD71C1E8E4047B154E899AE31EB8CAA . 427520 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-t…teconnectionmanager_31bf3856ad364e35_6.0.6000.16386_none_8c687fcc5759068e\termsrv.dll [-] 2009-04-10 . 0FE769CAE5855B53C90E23F85E7E89FF . 148992 . . [6.0.6000.16386] . . c:\windows\System32\appmgmts.dll [-] 2009-04-10 . 0FE769CAE5855B53C90E23F85E7E89FF . 148992 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-g…oftwareinstallation_31bf3856ad364e35_6.0.6002.18005_none_83ba6170592b6c85\appmgmts.dll [-] 2008-01-18 . C56DED3FE618C8BAE1AAAF4E801CCB3E . 148992 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-g…oftwareinstallation_31bf3856ad364e35_6.0.6001.18000_none_81cee8645c09a139\appmgmts.dll [-] 2006-11-02 . 051E86735B71E8402AEBC1D662F26BA2 . 148480 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-g…oftwareinstallation_31bf3856ad364e35_6.0.6000.16386_none_7f9826685f1e9065\appmgmts.dll [-] 2008-01-18 . 7A5F8218325F00396DAEA2F985FA0ECB . 18944 . . [6.0.6001.18000] . . c:\windows\System32\ias.dll [-] 2008-01-18 . 7A5F8218325F00396DAEA2F985FA0ECB . 18944 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-n…ion_service_runtime_31bf3856ad364e35_6.0.6001.18000_none_f900daa442864318\ias.dll [-] 2008-01-18 . 7A5F8218325F00396DAEA2F985FA0ECB . 18944 . . [6.0.6001.18000] . . c:\windows\winsxs\x86_microsoft-windows-n…ion_service_runtime_31bf3856ad364e35_6.0.6002.18005_none_faec53b03fa80e64\ias.dll [-] 2006-11-02 . D7657856319941907BBDC2A11713CFD7 . 17408 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-n…ion_service_runtime_31bf3856ad364e35_6.0.6000.16386_none_f6ca18a8459b3244\ias.dll [-] 2006-11-02 09:46 . BA8639F9EB0F74F2946DE6DE1AF4691F . 924944 . . [4.1.6140] . . c:\windows\System32\mfc40u.dll [-] 2006-11-02 09:46 . BA8639F9EB0F74F2946DE6DE1AF4691F . 924944 . . [4.1.6140] . . c:\windows\winsxs\x86_microsoft-windows-mfc40u_31bf3856ad364e35_6.0.6000.16386_none_f0dc500958a528b5\mfc40u.dll [-] 2008-01-18 . 68308183F4AE0BE7BF8ECD07CB297999 . 259072 . . [6.0.6000.16386] . . c:\windows\System32\upnphost.dll [-] 2008-01-18 . 68308183F4AE0BE7BF8ECD07CB297999 . 259072 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-upnpdevicehost_31bf3856ad364e35_6.0.6001.18000_none_c1e834753483fdcf\upnphost.dll [-] 2006-11-02 . 8EB871A3DEB6B3D5A85EB6DDFC390B59 . 259072 . . [6.0.6000.16386] . . c:\windows\winsxs\x86_microsoft-windows-upnpdevicehost_31bf3856ad364e35_6.0.6000.16386_none_bfb172793798ecfb\upnphost.dll . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] “Sidebar”=“c:\program files\Windows Sidebar\sidebar.exe” [2009-04-10 1233920] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] “FveNotify”=“c:\windows\system32\fveNotify.exe” [2008-01-18 48640] “WirelessAssistant”=“c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe” [2009-05-11 513080] “SunJavaUpdateSched”=“d:\programy\Java 6 update 16\bin\jusched.exe” [2009-09-10 149280] “QlbCtrl.exe”=“c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe” [2009-07-27 288312] “iTunesHelper”=“d:\programy\iTunes\iTunesHelper.exe” [2009-09-08 305440] “SynTPEnh”=“c:\program files\Synaptics\SynTP\SynTPEnh.exe” [2008-11-06 1402152] “SoundMAXPnP”=“c:\program files\Analog Devices\Core\smax4pnp.exe” [2007-02-21 1183744] “Persistence”=“c:\windows\system32\igfxpers.exe” [2008-06-18 133656] “IgfxTray”=“c:\windows\system32\igfxtray.exe” [2008-06-18 141848] “IAAnotif”=“c:\program files\Intel\Intel Matrix Storage Manager\iaanotif.exe” [2009-06-04 186904] “HotKeysCmds”=“c:\windows\system32\hkcmd.exe” [2008-06-18 166424] c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2009-3-1 789032] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] “EnableUIADesktopToggle”= 0 (0x0) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] “aux”=wdmaud.drv [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] @=“Service” [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] @=“Service” [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] “VistaSp2”=hex(b):8c,6a,bd,d9,25,32,ca,01 [HKLM~\services\sharedaccess\parameters\firewallpolicy\FirewallRules] “{6DE91B80-69F5-4667-9B27-0C91E03B090D}”= UDP:d:\programy\AirPort\APAgent.exe:AirPort “{B60F621D-8474-4C60-8862-046E71A7446A}”= TCP:d:\programy\AirPort\APAgent.exe:AirPort “{2C759179-851D-4FA4-9C3A-3758D1CE4FAC}”= UDP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour “{3C5832C2-CC42-4145-B9E1-D46167D19362}”= TCP:c:\program files\Bonjour\mDNSResponder.exe:Bonjour “{52CE4C53-604F-4F7A-A16B-B3213BA1922E}”= UDP:d:\programy\iTunes\iTunes.exe:iTunes “{A2D433DA-D3C6-4D35-ACB9-8682BB845C8B}”= TCP:d:\programy\iTunes\iTunes.exe:iTunes “{5B1723DD-C845-441C-AC08-F3D64BB58EEA}”= d:\programy\Skype\Phone\Skype.exe:Skype — Inne Usługi/Sterowniki w Pamięci — *Deregistered* - AFD *Deregistered* - Beep *Deregistered* - bowser *Deregistered* - cdfs *Deregistered* - CFRPD *Deregistered* - CLFS *Deregistered* - Compbatt *Deregistered* - crcdisk *Deregistered* - CSC *Deregistered* - DfsC *Deregistered* - DXGKrnl *Deregistered* - fastfat *Deregistered* - FileInfo *Deregistered* - FltMgr *Deregistered* - fvevol *Deregistered* - HTTP *Deregistered* - iScsiPrt *Deregistered* - KSecDD *Deregistered* - Lbd *Deregistered* - lltdio *Deregistered* - luafv *Deregistered* - MountMgr *Deregistered* - mpsdrv *Deregistered* - MRxDAV *Deregistered* - mrxsmb *Deregistered* - mrxsmb10 *Deregistered* - mrxsmb20 *Deregistered* - msahci *Deregistered* - Msfs *Deregistered* - msisadrv *Deregistered* - mssmbios *Deregistered* - Mup *Deregistered* - NativeWifiP *Deregistered* - NDIS *Deregistered* - Ndisuio *Deregistered* - NdisWan *Deregistered* - NDProxy *Deregistered* - NetBIOS *Deregistered* - netbt *Deregistered* - Npfs *Deregistered* - nsiproxy *Deregistered* - Ntfs *Deregistered* - Null *Deregistered* - Parvdm *Deregistered* - PEAUTH *Deregistered* - PptpMiniport *Deregistered* - PSched *Deregistered* - RasAcd *Deregistered* - Rasl2tp *Deregistered* - RasPppoe *Deregistered* - RasSstp *Deregistered* - rdbss *Deregistered* - RDPCDD *Deregistered* - rdpdr *Deregistered* - RDPENCDD *Deregistered* - rspndr *Deregistered* - secdrv *Deregistered* - Smb *Deregistered* - spldr *Deregistered* - srv *Deregistered* - srv2 *Deregistered* - srvnet *Deregistered* - swenum *Deregistered* - Tcpip *Deregistered* - tcpipreg *Deregistered* - tdx *Deregistered* - TermDD *Deregistered* - tunmp *Deregistered* - tunnel *Deregistered* - umbus *Deregistered* - VgaSave *Deregistered* - volmgr *Deregistered* - volmgrx *Deregistered* - volsnap *Deregistered* - Wanarpv6 *Deregistered* - Wdf01000 [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] bthsvcs REG_MULTI_SZ BthServ [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}] “c:\windows\System32\rundll32.exe” “c:\windows\System32\iedkcs32.dll”,BrandIEActiveSetup SIGNUP [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components{7070D8E0-650A-46b3-B03C-9497582E6A74}] %SystemRoot%\system32\soundschemes.exe /AddRegistration [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components{B3688A53-AB2A-4b1d-8CEF-8F93D8C51C24}] %SystemRoot%\system32\soundschemes2.exe /AddRegistration . Zawartość folderu ‘Zaplanowane zadania’ 2009-09-11 c:\windows\Tasks\Ad-Aware Update (Weekly).job - c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-07-03 14:49] 2009-09-13 c:\windows\Tasks\GlaryInitialize.job - d:\programy\Glary Utilities\Glary Utilities\initialize.exe [2009-09-11 14:09] . . ------- Skan uzupełniający ------- . uStart Page = hxxp://www.google.com/ig IE: Wyślij obraz do urządzenia &Bluetooth… - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm IE: Wyślij stronę do urządzenia &Bluetooth… - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm FF - ProfilePath - c:\users\Amelia Tokarska\AppData\Roaming\Mozilla\Firefox\Profiles\evmvad7f.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ig FF - component: c:\program files\Mozilla Firefox\extensions{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll FF - plugin: d:\programy\Adobe Reader 9.x\Reader\browser\nppdf32.dll FF - plugin: d:\programy\Easy Photo Print\NPEZFFPI.DLL FF - plugin: d:\programy\iTunes\Mozilla Plugins\npitunes.dll FF - plugin: d:\programy\Java 6 update 16\bin\new_plugin\npdeploytk.dll FF - plugin: d:\programy\Java 6 update 16\bin\new_plugin\npjp2.dll FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET \Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ . - - - - USUNIĘTO PUSTE WPISY - - - - SafeBoot-Wdf01000.sys ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-09-13 15:46 Windows 6.0.6002 Service Pack 2 NTFS skanowanie ukrytych procesów … skanowanie ukrytych wpisów autostartu … skanowanie ukrytych plików … skanowanie pomyślnie ukończone ukryte pliki: 0 ************************************************************************** . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied : (A) (Users) @Denied : (A) (Everyone) @Allowed : (B 1 2 3 4 5) (S-1-5-20) “BlindDial”=dword:00000000 “MSCurrentCountry”=dword:000000b5 [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied : (A) (Users) @Denied : (A) (Everyone) @Allowed : (B 1 2 3 4 5) (S-1-5-20) “BlindDial”=dword:00000000 . Czas ukończenia: 2009-09-13 15:51 ComboFix-quarantined-files.txt 2009-09-13 13:51 Przed: 26 647 056 384 bajtów wolnych Po: 26 495 348 736 bajtów wolnych 559 — E O F — 2009-09-13 10:31
Dziękuję za pomoc