ComboFix 10-10-03.03 - user 2010-10-05 9:53.4.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.2046.1609 [GMT 2:00] Uruchomiony z: c:\documents and settings\user\Pulpit\ComboFix.exe Użyto następujących komend :: c:\documents and settings\user\Pulpit\CFScript.txt AV: Kaspersky Anti-Virus *On-access scanning disabled* (Outdated) {2C4D4BC6-0793-4956-A9F9-E252435469C0} FILE :: "c:\documents and settings\LocalService\Dane aplikacji\yopgrf.dat" . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\documents and settings\LocalService\Dane aplikacji\yopgrf.dat . ((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_MNDUL -------\Service_mndul ((((((((((((((((((((((((( Pliki utworzone od 2010-09-05 do 2010-10-05 ))))))))))))))))))))))))))))))) . 2010-10-04 18:23 . 2007-04-10 22:05 32768 ------w- c:\windows\system32\inVHDDrvExe.exe 2010-10-04 18:23 . 2007-03-03 03:48 36864 ------w- c:\windows\system32\unVHDDrvExe.exe 2010-10-04 16:21 . 2008-04-14 20:50 81920 ------w- c:\windows\system32\ieencode.dll 2010-10-04 15:23 . 2008-04-13 17:46 11776 -c--a-w- c:\windows\system32\dllcache\bdasup.sys 2010-10-04 15:22 . 2001-08-17 20:07 101888 -c--a-w- c:\windows\system32\dllcache\adpu160m.sys 2010-10-04 15:21 . 2001-10-26 15:29 66048 -c--a-w- c:\windows\system32\dllcache\s3legacy.dll 2010-10-04 06:16 . 2010-10-04 06:16 -------- d-----r- C:\VProRecovery 2010-10-03 15:44 . 2010-10-03 15:44 -------- d-----w- c:\windows\system32\Adobe 2010-10-03 15:23 . 2008-04-13 17:40 62976 -c--a-w- c:\windows\system32\dllcache\cdrom.sys 2010-10-03 15:23 . 2008-04-13 17:40 62976 ----a-w- c:\windows\system32\drivers\cdrom.sys 2010-10-03 14:23 . 2010-10-03 14:23 4856 ----a-w- c:\windows\system32\drivers\F952DE4E.bin 2010-10-02 17:05 . 2009-09-15 19:19 2756608 ----a-w- c:\windows\system32\NETw5r32.dll 2010-10-02 17:05 . 2009-09-15 19:18 675840 ----a-w- c:\windows\system32\NETw5c32.dll 2010-10-02 17:05 . 2010-01-13 16:24 6598656 ----a-w- c:\windows\system32\drivers\NETw5x32.sys 2010-10-02 17:05 . 2010-10-02 17:05 -------- d-----w- c:\documents and settings\NetworkService\Dane aplikacji\Intel 2010-10-02 17:05 . 2010-10-02 17:05 -------- d-----w- c:\documents and settings\LocalService\Dane aplikacji\Intel 2010-10-02 17:05 . 2010-10-02 17:05 -------- d-----w- c:\documents and settings\Default User\Dane aplikacji\Intel 2010-10-02 17:05 . 2010-10-02 17:05 -------- d-----w- c:\documents and settings\Administrator\Dane aplikacji\Intel 2010-10-02 17:05 . 2010-10-02 17:05 -------- d-----w- c:\documents and settings\pracownik\Dane aplikacji\Intel 2010-10-02 17:05 . 2010-10-02 17:05 -------- d-----w- c:\program files\Common Files\Intel 2010-10-02 17:05 . 2010-10-02 17:05 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Intel 2010-10-02 17:03 . 2010-10-02 17:03 -------- d-----w- c:\documents and settings\user\Dane aplikacji\Intel 2010-10-02 16:04 . 2010-10-02 16:04 -------- d-----w- c:\documents and settings\user\Dane aplikacji\Malwarebytes 2010-10-02 15:59 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-10-02 15:59 . 2010-10-02 15:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2010-10-02 15:59 . 2010-10-02 15:59 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Malwarebytes 2010-10-02 15:59 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-10-01 09:20 . 2010-10-01 09:20 503808 ----a-w- c:\documents and settings\user\Dane aplikacji\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-2abdaad9-n\msvcp71.dll 2010-10-01 09:20 . 2010-10-01 09:20 499712 ----a-w- c:\documents and settings\user\Dane aplikacji\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-2abdaad9-n\jmc.dll 2010-10-01 09:20 . 2010-10-01 09:20 348160 ----a-w- c:\documents and settings\user\Dane aplikacji\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-2abdaad9-n\msvcr71.dll 2010-10-01 09:20 . 2010-10-01 09:20 61440 ----a-w- c:\documents and settings\user\Dane aplikacji\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-163b447f-n\decora-sse.dll 2010-10-01 09:20 . 2010-10-01 09:20 12800 ----a-w- c:\documents and settings\user\Dane aplikacji\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-163b447f-n\decora-d3d.dll 2010-10-01 09:20 . 2010-04-12 15:29 411368 ----a-w- c:\windows\system32\deployJava1.dll 2010-10-01 08:40 . 2010-10-05 07:58 564800 ----a-w- c:\windows\system32\drivers\mndul.sys 2010-10-01 08:40 . 2010-10-01 08:40 -------- d-----w- c:\documents and settings\user\Dane aplikacji\Foxit Software 2010-09-26 22:05 . 2010-09-26 22:08 -------- d-----w- C:\Programy 2010-09-23 09:03 . 2010-09-23 09:04 -------- d-----w- C:\Nowy folder 2010-09-22 12:43 . 2010-09-23 09:03 -------- d-----w- C:\programy do wyslania 2010-09-20 18:46 . 2010-09-20 18:46 259584 ----a-w- c:\windows\system32\drivers\XHASP.sys 2010-09-20 18:03 . 2010-09-20 18:03 821248 ----a-w- c:\windows\system32\drivers\XXLHASP.sys 2010-09-19 14:16 . 1998-11-17 11:44 328704 ----a-w- c:\windows\IsUn0407.exe 2010-09-19 14:03 . 2010-10-01 09:23 -------- d-----w- c:\program files\Common Files\Java 2010-09-19 14:03 . 2010-09-19 14:03 -------- d-----w- c:\documents and settings\user\Ustawienia lokalne\Dane aplikacji\{3248F0A6-6813-11D6-A77B-00B0D0150060} 2010-09-19 01:29 . 2010-09-19 01:29 850448 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Kaspersky Lab\AVP9\Data\Updater\Temporary Files\rollback\patch\AutoPatches\kav9exec\9.0.0.736\updater.dll 2010-09-19 01:29 . 2010-09-19 01:29 850520 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Kaspersky Lab\AVP9\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav9exec\9.0.0.736\updater.dll 2010-09-18 17:24 . 2010-09-18 17:26 -------- d-----w- c:\program files\Ahead 2010-09-15 17:13 . 2010-09-15 17:13 -------- d-----w- c:\program files\Windows Media Connect 2 2010-09-15 17:10 . 2010-09-15 17:11 -------- d-----w- c:\windows\system32\drivers\UMDF 2010-09-14 15:15 . 2010-09-15 09:27 -------- d-----w- c:\documents and settings\user\Dane aplikacji\Skype 2010-09-14 15:10 . 2010-09-15 09:29 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Skype 2010-09-14 12:11 . 2003-11-17 11:24 208896 ------w- c:\windows\system32\SSRemove.Exe 2010-09-14 12:11 . 2010-09-14 12:11 -------- d-----w- c:\windows\Xerox 2010-09-14 12:11 . 2003-07-29 07:57 40448 ------w- c:\windows\system32\drivers\Dgivecp.Sys 2010-09-14 12:08 . 2005-08-29 00:15 57344 ----a-w- c:\windows\system32\SSCoInst.dll 2010-09-14 12:08 . 2005-08-29 00:15 151552 ----a-w- c:\windows\system32\SSCoInst.exe 2010-09-14 12:08 . 2005-08-29 00:15 20622 ----a-w- c:\windows\system32\XRXS1LMK.DLL 2010-09-14 01:05 . 2010-09-14 01:09 -------- d-----w- c:\documents and settings\user\Ustawienia lokalne\Dane aplikacji\ACD Systems 2010-09-14 01:05 . 2010-09-14 01:05 -------- d-----w- c:\documents and settings\user\Dane aplikacji\ACD Systems 2010-09-14 01:04 . 2010-09-14 01:04 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ACD Systems 2010-09-14 01:04 . 2010-09-14 01:04 -------- d-----w- c:\program files\Common Files\ACD Systems 2010-09-14 01:04 . 2010-09-14 01:04 -------- d-----w- c:\program files\ACD Systems 2010-09-14 01:03 . 2010-09-14 01:03 -------- d-----w- c:\documents and settings\user\Ustawienia lokalne\Dane aplikacji\Downloaded Installations 2010-09-11 21:14 . 2010-10-01 15:19 -------- d-----w- c:\program files\Valve 2010-09-11 10:35 . 2008-04-14 17:20 26624 ----a-w- c:\documents and settings\LocalService\Dane aplikacji\Microsoft\UPnP Device Host\upnphost\udhisapi.dll 2010-09-10 14:56 . 2010-10-01 16:48 -------- d-----w- c:\program files\NAPI-PROJEKT 2010-09-08 07:48 . 2010-09-08 07:48 406112 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Gadu-Gadu 10\_userdata\ggbho.4.dll 2010-09-08 07:48 . 2010-09-08 07:48 373344 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Gadu-Gadu 10\_userdata\npgg.4.dll . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-10-05 08:17 . 2010-06-05 15:52 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Kaspersky Lab 2010-10-03 15:43 . 2008-01-28 17:49 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-10-02 17:05 . 2008-01-28 17:40 -------- d-----w- c:\program files\Intel 2010-10-02 16:50 . 2006-03-02 12:00 82598 ----a-w- c:\windows\system32\perfc015.dat 2010-10-02 16:50 . 2006-03-02 12:00 488050 ----a-w- c:\windows\system32\perfh015.dat 2010-10-02 16:33 . 2008-01-28 18:06 -------- d-----w- c:\program files\Compal 2010-10-02 13:01 . 2010-10-01 11:02 0 ----a-w- c:\windows\system32\tmp.tmp 2010-10-02 12:22 . 2008-03-20 19:17 -------- d-----w- c:\program files\Common Files\Adobe 2010-10-02 12:17 . 2009-04-21 14:06 -------- d-----w- c:\program files\CCleaner 2010-10-01 09:20 . 2008-04-02 16:00 -------- d-----w- c:\program files\Java 2010-09-29 11:55 . 2010-08-07 08:41 -------- d-----w- c:\documents and settings\user\Dane aplikacji\TeamViewer 2010-09-26 20:16 . 2008-07-05 18:02 135 ----a-w- c:\windows\What_Files.dat 2010-09-21 15:36 . 2010-08-25 16:35 1 ----a-w- c:\documents and settings\user\Dane aplikacji\OpenOffice.org\3\user\uno_packages\cache\stamp.sys 2010-09-19 21:29 . 2008-03-13 18:29 63864 ----a-w- c:\windows\system32\GDIPFONTCACHEV1.DAT 2010-09-17 01:08 . 2008-01-29 17:58 -------- d-----w- c:\program files\SubEdit-Player 2010-09-15 09:27 . 2009-05-03 19:40 -------- d-----w- c:\documents and settings\user\Dane aplikacji\ipla 2010-09-13 19:10 . 2010-08-27 10:25 -------- d-----w- c:\program files\Gadu-Gadu 10 2010-09-12 10:00 . 2010-08-27 10:26 -------- d-----w- c:\documents and settings\user\Dane aplikacji\Gadu-Gadu 10 2010-09-03 12:04 . 2008-03-16 18:45 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys 2010-09-03 12:04 . 2008-03-16 18:45 22328 ----a-w- c:\documents and settings\user\Dane aplikacji\PnkBstrK.sys 2010-09-03 12:04 . 2008-03-16 18:45 22328 ----a-w- c:\documents and settings\user\Dane aplikacji\PnkBstrK.sys 2010-09-03 12:04 . 2008-03-16 18:45 103736 ----a-w- c:\windows\system32\PnkBstrB.exe 2010-09-03 12:04 . 2008-03-16 18:45 66872 ----a-w- c:\windows\system32\PnkBstrA.exe 2010-09-02 09:09 . 2010-09-02 09:09 -------- d-----w- c:\program files\K-Lite Codec Pack 2010-09-02 09:08 . 2010-09-02 09:08 1700352 ----a-w- c:\windows\system32\gdiplus.dll 2010-09-01 17:20 . 2010-09-01 17:20 -------- d-----w- c:\documents and settings\user\Dane aplikacji\FarStone 2010-09-01 17:17 . 2010-09-01 17:17 261 ----a-w- C:\inVHDDrvLog.dat 2010-09-01 17:16 . 2010-09-01 17:16 -------- d-----w- c:\program files\FarStone 2010-08-27 10:26 . 2010-08-27 10:26 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Gadu-Gadu 10 2010-08-25 16:35 . 2010-08-25 16:35 -------- d-----w- c:\documents and settings\user\Dane aplikacji\OpenOffice.org 2010-08-25 16:30 . 2010-08-25 16:30 -------- d-----w- c:\program files\OpenOffice.org 3 2010-08-25 14:23 . 2010-08-25 14:22 -------- d-----w- c:\documents and settings\user\Dane aplikacji\Autodesk 2010-08-24 13:51 . 2010-08-24 13:51 -------- d-----w- c:\program files\MSBuild 2010-08-24 13:51 . 2010-08-24 13:51 -------- d-----w- c:\program files\Reference Assemblies 2010-08-24 09:23 . 2008-02-04 21:02 -------- d-----w- c:\program files\Google 2010-08-23 19:06 . 2010-08-23 19:06 -------- d-----w- c:\documents and settings\pracownik\Dane aplikacji\gtopala 2010-08-21 10:55 . 2010-08-21 10:55 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\WinUtils 2010-08-19 21:40 . 2009-02-10 07:28 -------- d-----w- c:\program files\dnc 2010-08-19 21:40 . 2010-08-19 21:40 -------- d-----w- c:\documents and settings\pracownik\Dane aplikacji\TeamViewer 2010-08-19 06:38 . 2010-08-19 06:18 -------- d-----w- c:\program files\AutoCAD 2007 2010-08-19 06:24 . 2010-08-19 06:16 -------- d-----w- c:\program files\Common Files\Autodesk Shared 2010-08-19 06:23 . 2010-08-19 06:23 -------- d-----w- c:\program files\AnswerWorks 4.0 2010-08-19 06:18 . 2010-08-19 06:18 -------- d-----w- c:\documents and settings\pracownik\Dane aplikacji\Autodesk 2010-08-19 06:18 . 2010-08-19 06:18 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Autodesk 2010-08-19 06:16 . 2010-08-19 06:16 -------- d-----w- c:\program files\Autodesk 2010-08-19 06:11 . 2010-08-19 06:07 -------- d-----w- c:\documents and settings\pracownik\Dane aplikacji\DAEMON Tools Lite 2010-08-19 06:09 . 2010-08-19 06:08 -------- d-----w- c:\program files\DAEMON Tools Lite 2010-08-19 06:08 . 2010-08-19 06:08 691696 ----a-w- c:\windows\system32\drivers\sptd.sys 2010-08-19 06:07 . 2010-08-19 06:04 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\DAEMON Tools Lite 2010-08-18 19:30 . 2010-08-18 19:30 170584 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Kaspersky Lab\AVP9\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav9exec\9.0.0.736\prloader.dll 2010-08-18 19:30 . 2010-08-18 19:30 340520 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Kaspersky Lab\AVP9\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav9exec\9.0.0.736\avp.exe 2010-08-17 13:17 . 2006-03-02 12:00 58880 ----a-w- c:\windows\system32\spoolsv.exe 2010-08-10 19:45 . 2010-08-10 19:45 3624508 ----a-w- C:\ulotka laser-stal.zip 2010-08-07 08:40 . 2010-08-07 08:40 -------- d-----w- c:\program files\TeamViewer 2010-08-07 08:38 . 2010-08-07 08:37 2920016 ----a-w- C:\TeamViewer_Setup.exe 2010-07-30 18:02 . 2010-06-05 15:53 97549 ----a-w- c:\windows\system32\drivers\klick.dat 2010-07-30 18:02 . 2010-06-05 15:53 113933 ----a-w- c:\windows\system32\drivers\klin.dat 2010-07-22 15:46 . 2006-03-02 12:00 590848 ----a-w- c:\windows\system32\rpcrt4.dll 2010-07-22 06:19 . 2008-05-05 05:25 5632 ----a-w- c:\windows\system32\xpsp4res.dll . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-06-26 8462336] "NvMediaCenter"="c:\windows\system32\NVMCTRAY.DLL" [2007-06-26 81920] "SMBTray"="c:\program files\Compal\Smart Battery\SMBTray.exe" [2007-06-04 521776] "AVP"="c:\program files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe" [2010-08-18 340520] "WLSS"="c:\program files\Compal\Wireless Select Switch\WLSS.exe" [2007-04-23 190000] "IntelZeroConfig"="c:\program files\Intel\WiFi\bin\ZCfgSvc.exe" [2009-11-03 1372160] "IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2009-11-03 1202448] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "FsVdUnReboot"="1 (0x1)" [X] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-03-13 39264] c:\documents and settings\All Users\Menu Start\Programy\Autostart\ Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-9-23 29696] BTTray.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2006-12-11 561213] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, mvcboauj.dll [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "c:\\Program Files\\TeamViewer\\Version5\\TeamViewer.exe"= "c:\\Program Files\\Gadu-Gadu 10\\gg.exe"= "c:\\WINDOWS\\system32\\sessmgr.exe"= "%windir%\\system32\\sessmgr.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "1433:TCP"= 1433:TCP:sql 1433 "1426:TCP"= 1426:TCP:sql 1426 "3047:TCP"= 3047:TCP:HL-Server "3047:UDP"= 3047:UDP:HL-Server R0 EMSC;COMPAL Embedded System Control;c:\windows\system32\drivers\EMSC.sys [2008-01-28 9856] R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2009-10-14 36880] R3 CamFilter;CamFilter;c:\windows\system32\drivers\Camfilter.sys [2007-05-11 16640] R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [2009-09-14 32272] R3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\drivers\klmouflt.sys [2009-10-02 19472] R3 teamviewervpn;TeamViewer VPN Adapter;c:\windows\system32\drivers\teamviewervpn.sys [2010-03-11 25088] S2 Smart Watchdog;Smart Watchdog Service;c:\program files\Compal Electronics, INC\Smart Watchdog\SWDsvc.exe /Service --> c:\program files\Compal Electronics, INC\Smart Watchdog\SWDsvc.exe [?] S3 XHASP;XHASP;c:\windows\system32\drivers\XHASP.sys [2010-09-20 259584] S3 XXLHASP;XXLHASP;c:\windows\system32\drivers\XXLHASP.sys [2010-09-20 821248] S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-08-19 691696] . . ------- Skan uzupełniający ------- . uStart Page = hxxp://www.google.com/ uSearchURL,(Default) = hxxp://www.google.com/keyword/%s IE: E&ksport do programu Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 IE: Funkcja Google Sidewiki - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html IE: Wyślij do urządzenia &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm FF - ProfilePath - c:\documents and settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\ijl75cnf.default\ FF - prefs.js: browser.startup.homepage - www.google.pl FF - component: c:\program files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru\components\KavLinkFilter.dll FF - plugin: c:\documents and settings\All Users\Dane aplikacji\Gadu-Gadu 10\_userdata\npgg.4.dll FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll FF - plugin: c:\program files\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ---- FIREFOX - SPOSÓB POSTĘPOWANIA ---- c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false); . - - - - USUNIĘTO PUSTE WPISY - - - - HKLM-Run-RAMDrive - c:\program files\FarStone\VirtualDrive\VHD\RDTask.exe . --------------------- Pliki DLL ładowane pod uruchomionymi procesami --------------------- - - - - - - - > 'explorer.exe'(2068) c:\windows\system32\WININET.dll c:\windows\system32\btmmhook.dll c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\btncopy.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\program files\WIDCOMM\Bluetooth Software\bin\btwdins.exe c:\program files\Java\jre6\bin\jqs.exe c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE c:\windows\system32\nvsvc32.exe c:\program files\CyberLink\Shared Files\RichVideo.exe c:\windows\system32\wbem\wmiapsrv.exe c:\windows\system32\wscntfy.exe c:\windows\system32\RUNDLL32.EXE c:\windows\system32\wbem\unsecapp.exe . ************************************************************************** . Czas ukończenia: 2010-10-05 10:21:28 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2010-10-05 08:21 Przed: 72 357 044 224 bajtów wolnych Po: 72 328 097 792 bajtów wolnych Current=2 Default=2 Failed=3 LastKnownGood=5 Sets=1,2,3,4,5 - - End Of File - - AEF8C3DDDB509F483F84C19B01645C1B