ComboFix 12-10-12.01 - Dino 2012-10-12 14:09:55.1.2 - x86 Uruchomiony z: D:\ComboFix.exe AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D} . UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !! . . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\documents and settings\All Users\Dane aplikacji\log.txt c:\windows\$NtUninstallKB11195$ c:\windows\$NtUninstallKB11195$\1280246195 c:\windows\$NtUninstallKB11195$\2768539327\@ c:\windows\$NtUninstallKB11195$\2768539327\Desktop.ini c:\windows\$NtUninstallKB11195$\2768539327\L\00000004.@ c:\windows\$NtUninstallKB11195$\2768539327\L\201d3dde c:\windows\$NtUninstallKB11195$\2768539327\L\lkqxeslo c:\windows\$NtUninstallKB11195$\2768539327\U\00000004.@ c:\windows\$NtUninstallKB11195$\2768539327\U\00000008.@ c:\windows\$NtUninstallKB11195$\2768539327\U\000000cb.@ c:\windows\$NtUninstallKB11195$\2768539327\U\80000000.@ c:\windows\$NtUninstallKB11195$\2768539327\U\80000032.@ c:\windows\IsUn0415.exe c:\windows\iun6002.exe c:\windows\system32\aaaammon.dll c:\windows\system32\TZLog.log . . ((((((((((((((((((((((((( Pliki utworzone od 2012-09-12 do 2012-10-12 ))))))))))))))))))))))))))))))) . . 2012-10-11 17:30 . 2012-10-11 17:30 -------- d-----w- C:\found.000 2012-10-11 15:08 . 2012-09-07 15:04 22856 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-10-11 15:08 . 2012-10-11 15:08 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2012-10-11 15:08 . 2012-10-11 15:08 -------- d-----w- c:\program files\Mystery Trackers 4 - Four Aces Collector's Edition 2012-10-11 15:08 . 2012-10-11 15:08 -------- d-----w- c:\windows\Mystery Trackers 4 - Four Aces Collector's Edition 2012-10-11 14:53 . 2012-10-11 15:14 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Elephant Games 2012-10-11 12:12 . 2012-10-11 12:12 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\Judge Dee 2012-10-10 14:40 . 2012-10-10 14:40 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\GrandMA Studios 2012-10-10 11:49 . 2012-10-10 11:49 -------- d--h--w- c:\windows\$hf_mig$ 2012-10-07 10:02 . 2012-10-07 10:02 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\EurekaLog 2012-10-06 17:42 . 2012-10-06 17:42 -------- d-----w- c:\program files\MahJong Quest III 2012-10-06 17:42 . 2012-10-06 17:42 -------- d-----w- c:\program files\Mah Jong Quest II 2012-10-06 17:41 . 2012-10-06 17:41 -------- d-----w- c:\program files\Mah Jong Quest 2012-10-06 08:00 . 2012-10-06 08:00 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\Playrix Entertainment 2012-10-05 16:53 . 2012-10-10 13:33 -------- d-----w- c:\program files\Bejeweled 3 2012-10-05 16:53 . 2012-10-05 16:53 -------- d-----w- c:\windows\Bejeweled 3 2012-10-01 12:48 . 2012-10-01 12:48 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Orchid Games 2012-10-01 12:32 . 2012-10-07 08:10 -------- d-----w- c:\program files\Foxy Games 2012-10-01 12:13 . 2012-10-01 12:13 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\Funlinker 2012-09-30 09:22 . 2012-09-30 09:22 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\Topping Hero 2012-09-28 12:26 . 2012-09-28 12:26 -------- d-----w- c:\program files\VideoLAN 2012-09-27 14:25 . 2012-09-28 12:25 -------- d-----w- c:\program files\MKV Player 2012-09-19 19:41 . 2012-09-19 19:41 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\Inertia Game Studios 2012-09-19 17:06 . 2012-09-19 17:06 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\REXARD 2012-09-17 19:14 . 2012-09-17 19:14 -------- d-----w- c:\windows\The Agency of Anomalies 3- The Last Performance CE 2012-09-17 19:06 . 2012-09-17 19:06 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\DreamsFromThePast 2012-09-16 16:37 . 2012-09-16 16:37 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\FOP 2012-09-16 15:50 . 2012-09-16 15:50 -------- d-----w- c:\windows\Mystic Legacy - The Great Ring With Guide 2012-09-15 14:53 . 2012-09-15 14:53 -------- d-----w- c:\documents and settings\LocalService\Dane aplikacji\TuneUp Software 2012-09-14 19:12 . 2012-09-14 19:12 -------- d-----w- c:\windows\system32\1018 2012-09-14 19:12 . 2012-09-14 19:12 -------- d-----w- c:\windows\system32\1017 2012-09-14 19:08 . 2012-09-14 19:08 -------- d-----w- c:\windows\Angelica Weaver - Catch Me When You Can CE 2012-09-12 15:59 . 2012-09-12 15:59 -------- d--h--w- c:\documents and settings\All Users\Dane aplikacji\Common Files 2012-09-12 14:49 . 2012-09-12 16:16 -------- d-----w- c:\documents and settings\Dino\Dane aplikacji\TuneUp Software 2012-09-12 14:48 . 2012-09-12 14:49 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\TuneUp Software 2012-09-12 14:48 . 2012-09-12 14:48 -------- d-sh--w- c:\documents and settings\All Users\Dane aplikacji\{32364CEA-7855-4A3C-B674-53D8E9B97936} . . . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-10-09 14:43 . 2012-04-06 15:31 696760 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2012-10-09 14:43 . 2011-06-05 17:11 73656 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-08-28 15:18 . 2008-04-15 12:00 916992 ----a-w- c:\windows\system32\wininet.dll 2012-08-28 15:18 . 2008-04-15 12:00 43520 ----a-w- c:\windows\system32\licmgr10.dll 2012-08-28 15:18 . 2008-04-15 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl 2012-08-28 12:07 . 2008-04-15 12:00 385024 ----a-w- c:\windows\system32\html.iec 2012-08-24 13:53 . 2008-04-15 12:00 177664 ----a-w- c:\windows\system32\wintrust.dll 2012-08-23 06:27 . 2008-04-15 12:00 2150400 ----a-w- c:\windows\system32\ntoskrnl.exe 2012-08-23 06:27 . 2008-04-14 21:59 2029056 ----a-w- c:\windows\system32\ntkrnlpa.exe 2012-08-21 09:13 . 2011-09-05 13:56 355632 ----a-w- c:\windows\system32\drivers\aswSP.sys 2012-08-21 09:13 . 2011-09-05 13:56 729752 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2012-08-21 09:13 . 2011-09-05 13:56 54232 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2012-08-21 09:13 . 2011-09-05 13:56 35928 ----a-w- c:\windows\system32\drivers\aswRdr.sys 2012-08-21 09:13 . 2011-09-05 13:56 97608 ----a-w- c:\windows\system32\drivers\aswmon2.sys 2012-08-21 09:13 . 2011-09-05 13:56 89624 ----a-w- c:\windows\system32\drivers\aswmon.sys 2012-08-21 09:13 . 2011-09-05 13:56 21256 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2012-08-21 09:13 . 2011-09-05 13:56 25256 ----a-w- c:\windows\system32\drivers\aavmker4.sys 2012-08-21 09:12 . 2011-09-05 13:56 41224 ----a-w- c:\windows\avastSS.scr 2012-08-21 09:12 . 2011-09-05 13:56 227648 ----a-w- c:\windows\system32\aswBoot.exe 2012-09-06 01:26 . 2012-09-10 12:29 266720 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll . . ------- Sigcheck ------- Note: Unsigned files aren't necessarily malware. . [7] 2008-04-15 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys [7] 2008-04-15 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\ReinstallBackups\0000\DriverFiles\i386\atapi.sys . [7] 2008-04-15 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys [7] 2008-04-15 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys . [7] 2008-04-15 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys [7] 2008-04-15 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys . [7] 2008-04-15 . 2AECA45D4AEAACBDCB77AD11184E4601 . 24960 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys . [7] 2008-04-15 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys [7] 2008-04-15 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys . [7] 2008-04-15 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys [7] 2008-04-15 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys . [7] 2008-04-15 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys [7] 2008-04-15 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys . [7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys [7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys . [7] 2012-07-06 . 9D6788EFFB9972C28C38D9C5E67249D5 . 78336 . . [5.1.2600.6260] . . c:\windows\system32\browser.dll [7] 2012-07-06 . 9D6788EFFB9972C28C38D9C5E67249D5 . 78336 . . [5.1.2600.6260] . . c:\windows\system32\dllcache\browser.dll . [7] 2008-04-15 . 88296F7943F30A1EE3AF735440B92268 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe [7] 2008-04-15 . 88296F7943F30A1EE3AF735440B92268 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe . [7] 2008-04-15 . 4FE97D0B1B182DF2A9BDD4C02155EF5E . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll [7] 2008-04-15 . 4FE97D0B1B182DF2A9BDD4C02155EF5E . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll . [7] 2008-04-15 12:00 . 8A7426E69FFA30EE4DC76CA3E3999121 . 822272 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll [7] 2008-04-15 12:00 . 8A7426E69FFA30EE4DC76CA3E3999121 . 822272 . . [2001.12.4414.700] . . c:\windows\system32\dllcache\comres.dll . [7] 2008-04-15 . 78200FAA6FD9C69394134C238C87FB7F . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll [7] 2008-04-15 . 78200FAA6FD9C69394134C238C87FB7F . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll . [7] 2009-02-09 . A37311D9D628C1042A2836731787F0F3 . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll [7] 2009-02-09 . A37311D9D628C1042A2836731787F0F3 . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll . [7] 2009-02-09 . 02A467E27AF55F7064C5B251E587315F . 111104 . . [5.1.2600.5755] . . c:\windows\system32\services.exe [7] 2009-02-09 . 02A467E27AF55F7064C5B251E587315F . 111104 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe . [7] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\spoolsv.exe [7] 2010-08-17 . 60784F891563FB1B767F70117FC2428F . 58880 . . [5.1.2600.6024] . . c:\windows\system32\dllcache\spoolsv.exe . [7] 2008-04-15 . 51FD2E13D723857B9CA239AE77150F48 . 510464 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe [7] 2008-04-15 . 51FD2E13D723857B9CA239AE77150F48 . 510464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe . [7] 2012-06-02 . 2E0B0A051FFAA86E358465BB0880D453 . 53784 . . [7.6.7600.256] . . c:\windows\system32\wuauclt.exe [7] 2012-06-02 . 2E0B0A051FFAA86E358465BB0880D453 . 53784 . . [7.6.7600.256] . . c:\windows\system32\dllcache\wuauclt.exe . [7] 2008-04-15 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ipsec.sys [7] 2008-04-15 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys . [7] 2010-08-23 . 8B9ED4A686777261B9AFADD2A6D981A0 . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll [7] 2010-08-23 . 8B9ED4A686777261B9AFADD2A6D981A0 . 617472 . . [5.82] . . c:\windows\system32\dllcache\comctl32.dll [7] 2010-08-23 . C29639BA7410BCEF8898CBCB07A59CB1 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll [7] 2008-04-15 . AEF3D788DBF40C7C4D204EA45EB0C505 . 921088 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll [7] 2008-04-15 . 737739FACEAD60683AA8D7FF7602FD14 . 1054208 . . [6.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll . [7] 2008-04-15 . 6B105FE95F2E9F0B6346044BA59D41C9 . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll [7] 2008-04-15 . 6B105FE95F2E9F0B6346044BA59D41C9 . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll . [7] 2008-07-07 20:29 . 6AFF804839C85859E0247164FBE5F5BB . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll [7] 2008-07-07 20:29 . 6AFF804839C85859E0247164FBE5F5BB . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll . [7] 2008-04-15 . 2E9A03268E609917B83921EE16FD9CFB . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll [7] 2008-04-15 . 2E9A03268E609917B83921EE16FD9CFB . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll . [7] 2009-03-21 . 77C951B64413E80EEC0359426DCA938B . 1018368 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll [7] 2009-03-21 . 77C951B64413E80EEC0359426DCA938B . 1018368 . . [5.1.2600.5781] . . c:\windows\system32\dllcache\kernel32.dll . [7] 2008-04-15 . EA8DF0AF49E2616F55BF327549E44368 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll [7] 2008-04-15 . EA8DF0AF49E2616F55BF327549E44368 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll . [7] 2008-04-15 . A9C89DBAD5EFF7A06B58302778674507 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll [7] 2008-04-15 . A9C89DBAD5EFF7A06B58302778674507 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll . [7] 2012-08-28 . F3B1F2EDF5FC32E07E3CA4905619A5B1 . 6008832 . . [8.00.6001.19328] . . c:\windows\system32\mshtml.dll [7] 2012-08-28 . F3B1F2EDF5FC32E07E3CA4905619A5B1 . 6008832 . . [8.00.6001.19328] . . c:\windows\system32\dllcache\mshtml.dll [7] 2010-04-16 . 3F843D5628DC4EFB4EB763ED52026F88 . 3094016 . . [6.00.2900.5969] . . c:\windows\ie8\mshtml.dll . [7] 2008-04-15 . 411864012AC39F2B57319AEF64D336DF . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll [7] 2008-04-15 . 411864012AC39F2B57319AEF64D336DF . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll [7] 2008-04-15 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll [7] 2008-04-15 . 11F8B9042B6F4320B6D4E528664AD693 . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll . [7] 2008-06-20 . 9D1F13706FB5F02D0E8795FB2D03971D . 246784 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll [7] 2008-06-20 . 9D1F13706FB5F02D0E8795FB2D03971D . 246784 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll . [7] 2008-04-15 . 9858AD0A3FCD83C3B100EDD5852DE540 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll [7] 2008-04-15 . 9858AD0A3FCD83C3B100EDD5852DE540 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll . [7] 2008-04-15 . 414C17A2958AEDAC700BBAAFBF999F94 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll [7] 2008-04-15 . 414C17A2958AEDAC700BBAAFBF999F94 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll . [7] 2008-04-15 . 3F74B6B4E2721272A117D25990141F73 . 186368 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll [7] 2008-04-15 . 3F74B6B4E2721272A117D25990141F73 . 186368 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll . [7] 2008-04-15 . 71C6AB6EB8CF1190BAC7075F82BD8F05 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll [7] 2008-04-15 . 71C6AB6EB8CF1190BAC7075F82BD8F05 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll . [7] 2008-04-15 . 8607D35D92528E2DF386F19A960D23CE . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe [7] 2008-04-15 . 8607D35D92528E2DF386F19A960D23CE . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe . [7] 2008-04-15 . 2340E6977548038C88E39A9ECBB3FADC . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll [7] 2008-04-15 . 2340E6977548038C88E39A9ECBB3FADC . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll . [7] 2008-04-15 . A435C5C069AFD901751AC323AD238793 . 580096 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll [7] 2008-04-15 . A435C5C069AFD901751AC323AD238793 . 580096 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll . [7] 2008-04-15 . 2A5B37D520508BE6570A3EA79695F5B5 . 26624 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe [7] 2008-04-15 . 2A5B37D520508BE6570A3EA79695F5B5 . 26624 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe . [7] 2012-08-28 . 8B1E0D8DA7792681D67CE6D82BF1DDE2 . 916992 . . [8.00.6001.19328] . . c:\windows\system32\wininet.dll [7] 2012-08-28 . 8B1E0D8DA7792681D67CE6D82BF1DDE2 . 916992 . . [8.00.6001.19328] . . c:\windows\system32\dllcache\wininet.dll [7] 2010-04-16 . CDF8EE59CDE786A17009CD041A97A7FE . 669696 . . [6.00.2900.5969] . . c:\windows\ie8\wininet.dll . [7] 2008-04-15 . C0AA2AB856680C44739B41E01F5BD4E9 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll [7] 2008-04-15 . C0AA2AB856680C44739B41E01F5BD4E9 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll . [7] 2008-04-15 . F43B5623C5CA5BF6D9678FCF19642422 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll [7] 2008-04-15 . F43B5623C5CA5BF6D9678FCF19642422 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll . [7] 2008-04-15 . C791ED9EAC5E76D9525E157B1D7A599A . 1035264 . . [6.00.2900.5512] . . c:\windows\explorer.exe [7] 2008-04-15 . C791ED9EAC5E76D9525E157B1D7A599A . 1035264 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe . [7] 2008-04-15 . FD317A23C3EB2A856E74279FBE04B9C2 . 149504 . . [5.1.2600.5512] . . c:\windows\regedit.exe [7] 2008-04-15 . FD317A23C3EB2A856E74279FBE04B9C2 . 149504 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regedit.exe . [7] 2011-11-01 . CD5309E23443E954579604DA758827CA . 1288192 . . [5.1.2600.6168] . . c:\windows\system32\ole32.dll [7] 2011-11-01 . CD5309E23443E954579604DA758827CA . 1288192 . . [5.1.2600.6168] . . c:\windows\system32\dllcache\ole32.dll . [7] 2010-04-16 . 514F80DF6DCF9BBA1D67CA16BC667787 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\usp10.dll [7] 2010-04-16 . 514F80DF6DCF9BBA1D67CA16BC667787 . 406016 . . [1.0420.2600.5969] . . c:\windows\system32\dllcache\usp10.dll . [7] 2008-04-14 . CD928E84EF8FAB1BFB5791E28F7D4E0B . 4096 . . [5.3.2600.5512] . . c:\windows\system32\ksuser.dll [7] 2008-04-14 . CD928E84EF8FAB1BFB5791E28F7D4E0B . 4096 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\ksuser.dll . [7] 2008-04-15 . 1BD41EDA5B869AFC99895C39A8DE36E1 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe [7] 2008-04-15 . 1BD41EDA5B869AFC99895C39A8DE36E1 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe . [7] 2009-07-27 . 55AAE86C7C2CADF6972ACD1D76C24A98 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\shsvcs.dll [7] 2009-07-27 . 55AAE86C7C2CADF6972ACD1D76C24A98 . 135680 . . [6.00.2900.5853] . . c:\windows\system32\dllcache\shsvcs.dll . [7] 2008-04-15 . 20E2F2943D19E99590157874A0C92BD0 . 4608 . . [5.1.2600.5512] . . c:\windows\system32\msimg32.dll [7] 2008-04-15 . 20E2F2943D19E99590157874A0C92BD0 . 4608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msimg32.dll . [7] 2008-04-15 . 316D0E66074AE4CDE641C50D3A1C5148 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll [7] 2008-04-15 . 316D0E66074AE4CDE641C50D3A1C5148 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll . [7] 2008-04-15 . CC07DA5A1CB214ADDFA50B2FA6935F18 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe [7] 2008-04-15 . CC07DA5A1CB214ADDFA50B2FA6935F18 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe . [7] 2008-04-15 . 24ED6935771359A5AEF1FE8BF0C56F39 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll [7] 2008-04-15 . 24ED6935771359A5AEF1FE8BF0C56F39 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll . [7] 2010-12-09 . 0EE6546CDEF5F387AD0D23D4EBF798A8 . 726528 . . [5.1.2600.6055] . . c:\windows\system32\ntdll.dll [7] 2010-12-09 . 0EE6546CDEF5F387AD0D23D4EBF798A8 . 726528 . . [5.1.2600.6055] . . c:\windows\system32\dllcache\ntdll.dll . [7] 2008-04-15 . 0201E0AE0CA44225A8706C7483BF5D9F . 177152 . . [5.1.2600.5512] . . c:\windows\system32\MSCTFIME.IME [7] 2008-04-15 . 0201E0AE0CA44225A8706C7483BF5D9F . 177152 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msctfime.ime . [7] 2008-04-15 . 35FCCFD093582FA9098762E6F84EE119 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll [7] 2008-04-15 . 35FCCFD093582FA9098762E6F84EE119 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll . [7] 2008-04-15 . A9ED600F08A92143253C10EDB5651ECF . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll [7] 2008-04-15 . A9ED600F08A92143253C10EDB5651ECF . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll . [7] 2008-04-15 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ipsec.sys [7] 2008-04-15 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys . [7] 2008-04-15 . B472B59EF98469C91651B751D3442CB8 . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll [7] 2008-04-15 . B472B59EF98469C91651B751D3442CB8 . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll . [7] 2008-04-15 . DD73C11A5C4D14945846384B90A61A4B . 193536 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll [7] 2008-04-15 . DD73C11A5C4D14945846384B90A61A4B . 193536 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll . [7] 2008-04-15 . 2C0B1224AA36B4CA1753302BAA855882 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll [7] 2008-04-15 . 2C0B1224AA36B4CA1753302BAA855882 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll . [7] 2008-04-15 . 52E0505408EDD4AB5CCC7F83B67B4299 . 296448 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll [7] 2008-04-15 . 52E0505408EDD4AB5CCC7F83B67B4299 . 296448 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll . [7] 2008-04-15 . 2DEE3DC6EB17D7BB774CE05695BA26D6 . 346112 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll [7] 2008-04-15 . 2DEE3DC6EB17D7BB774CE05695BA26D6 . 346112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\hnetcfg.dll . [7] 2008-04-15 . 66A42B7DB194E24B973BBCCE840A0F3F . 12032 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys . [7] 2008-04-13 21:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys [7] 2008-04-13 21:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys . [7] 2008-04-15 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys [7] 2008-04-15 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys . [7] 2010-09-18 06:53 . E7A93F4C5154D34F61328D34DE02CD61 . 953856 . . [4.1.6151] . . c:\windows\system32\mfc40u.dll [7] 2010-09-18 06:53 . E7A93F4C5154D34F61328D34DE02CD61 . 953856 . . [4.1.6151] . . c:\windows\system32\dllcache\mfc40u.dll . [7] 2008-04-15 . 36F3AB18B1BE303DA51DE90A67DE3942 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll [7] 2008-04-15 . 36F3AB18B1BE303DA51DE90A67DE3942 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll . [7] 2006-10-18 20:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll [7] 2006-10-18 20:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll . [7] 2012-08-23 . 27DAF27288837BFDD22440711C2439F6 . 2070912 . . [5.1.2600.6284] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe [7] 2012-08-23 . 27DAF27288837BFDD22440711C2439F6 . 2070912 . . [5.1.2600.6284] . . c:\windows\SoftwareDistribution\Download\0d85d63650234f99c30281d37cabc441\sp3gdr\ntkrnlpa.exe [7] 2012-08-23 . 27DAF27288837BFDD22440711C2439F6 . 2070912 . . [5.1.2600.6284] . . c:\windows\system32\dllcache\ntkrnlpa.exe [7] 2012-08-23 . 30BB38A0488F9DFBFC77514A35C4AD05 . 2029056 . . [5.1.2600.6284] . . c:\windows\system32\ntkrnlpa.exe [7] 2012-08-23 . 233C90E9220D4E464F6E20AD8B8069A8 . 2070912 . . [5.1.2600.6284] . . c:\windows\$hf_mig$\KB2724197\SP3QFE\ntkrnlpa.exe [7] 2012-08-23 . 233C90E9220D4E464F6E20AD8B8069A8 . 2070912 . . [5.1.2600.6284] . . c:\windows\SoftwareDistribution\Download\0d85d63650234f99c30281d37cabc441\sp3qfe\ntkrnlpa.exe [7] 2012-05-05 . 0574E174EE4A95FF91ABC1B6C44D2DD1 . 2028032 . . [5.1.2600.6223] . . c:\windows\$NtUninstallKB2724197$\ntkrnlpa.exe . [7] 2008-04-15 12:00 . 3FB5399DBB7001A80D58EDAD64C98225 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll [7] 2008-04-15 12:00 . 3FB5399DBB7001A80D58EDAD64C98225 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll . [7] 2008-04-15 . E96A6BAEE0B2A14A38B45830D6E30697 . 186880 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll [7] 2008-04-15 . E96A6BAEE0B2A14A38B45830D6E30697 . 186880 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll . [7] 2008-04-15 . 4F2DA211B394AF150F00254F346857CD . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll [7] 2008-04-15 . 4F2DA211B394AF150F00254F346857CD . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll . [7] 2008-04-15 . 8881A14051D739A8422C521A83D614DA . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll [7] 2008-04-15 . 8881A14051D739A8422C521A83D614DA . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll . [7] 2008-04-15 . 277389C269541D4B474BA72CA98A39E4 . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll [7] 2008-04-15 . 277389C269541D4B474BA72CA98A39E4 . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll . [7] 2008-04-15 12:00 . 24B2954CAA69D904C1F39A3AC1421044 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll [7] 2008-04-15 12:00 . 24B2954CAA69D904C1F39A3AC1421044 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll . [7] 2008-04-15 . 2095C42F0026BA1D0F6A4DC07CAEE871 . 41472 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll [7] 2008-04-15 . 2095C42F0026BA1D0F6A4DC07CAEE871 . 41472 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll . [7] 2008-04-15 . 5B9FC235221DC3F48DA7318CB0BD4888 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll [7] 2008-04-15 . 5B9FC235221DC3F48DA7318CB0BD4888 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\version.dll . [7] 2009-03-08 . B60DDDD2D63CE41CB8C487FCFBB6419E . 638816 . . [8.00.6001.18702] . . c:\windows\system32\dllcache\iexplore.exe [7] 2008-04-15 . AF3C3F051675CF688EAD4065FE11542D . 93184 . . [6.00.2900.5512] . . c:\windows\ie8\iexplore.exe . . . [7] 2012-08-23 . 1E25FCBE7FC34A5C519F0FFC27861606 . 2194176 . . [5.1.2600.6284] . . c:\windows\Driver Cache\i386\ntoskrnl.exe [7] 2012-08-23 . 1E25FCBE7FC34A5C519F0FFC27861606 . 2194176 . . [5.1.2600.6284] . . c:\windows\SoftwareDistribution\Download\0d85d63650234f99c30281d37cabc441\sp3gdr\ntoskrnl.exe [7] 2012-08-23 . 1E25FCBE7FC34A5C519F0FFC27861606 . 2194176 . . [5.1.2600.6284] . . c:\windows\system32\dllcache\ntoskrnl.exe [7] 2012-08-23 . F51BFE664405DB9AEF5FDC9A3A00ACF4 . 2150400 . . [5.1.2600.6284] . . c:\windows\system32\ntoskrnl.exe [7] 2012-08-23 . 2FE8D89B9C78C37646DD1E8897BBDACB . 2194304 . . [5.1.2600.6284] . . c:\windows\$hf_mig$\KB2724197\SP3QFE\ntoskrnl.exe [7] 2012-08-23 . 2FE8D89B9C78C37646DD1E8897BBDACB . 2194304 . . [5.1.2600.6284] . . c:\windows\SoftwareDistribution\Download\0d85d63650234f99c30281d37cabc441\sp3qfe\ntoskrnl.exe [7] 2012-05-05 . 459E24037A188F55FFCEB52C3049168A . 2149888 . . [5.1.2600.6223] . . c:\windows\$NtUninstallKB2724197$\ntoskrnl.exe . [7] 2008-04-15 . 316D0E66074AE4CDE641C50D3A1C5148 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll [7] 2008-04-15 . 316D0E66074AE4CDE641C50D3A1C5148 . 171520 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll . [7] 2008-04-15 . A672CA3981352F8E9C30FEA056E80A62 . 176128 . . [5.1.2600.5512] . . c:\windows\system32\w32time.dll [7] 2008-04-15 . A672CA3981352F8E9C30FEA056E80A62 . 176128 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\w32time.dll . [7] 2008-04-15 . 41508EA375C97DC2B56E5F1AFC067187 . 334336 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll [7] 2008-04-15 . 41508EA375C97DC2B56E5F1AFC067187 . 334336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wiaservc.dll . [7] 2008-04-15 . 30A2A72C04597972CF325F2A28410B63 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\midimap.dll [7] 2008-04-15 . 30A2A72C04597972CF325F2A28410B63 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\midimap.dll . [7] 2008-04-15 . D6804AD9DBDF13DF147A371EB881020F . 7680 . . [5.1.2600.5512] . . c:\windows\system32\rasadhlp.dll [7] 2008-04-15 . D6804AD9DBDF13DF147A371EB881020F . 7680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\rasadhlp.dll . [7] 2008-04-15 . 03F727DFB0E242428AB7A20434ACF652 . 19456 . . [5.1.2600.5512] . . c:\windows\system32\wshtcpip.dll [7] 2008-04-15 . 03F727DFB0E242428AB7A20434ACF652 . 19456 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wshtcpip.dll . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{491C440D-305E-0124-0099-0F3E390C7E87}] 2007-05-16 15:45 73728 ----a-w- c:\windows\system32\D3DCommmpiler_34.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2012-08-21 09:12 121528 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2012-05-11 880496] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDCPL"="RTHDCPL.EXE" [2007-07-05 16380416] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-26 13574144] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-06-26 86016] "DT Task"="c:\program files\Portrait Displays\forteManager\DTHtml.exe" [2005-10-14 264704] "avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-08-21 4282728] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-15 15360] . c:\documents and settings\Dino\Menu Start\Programy\Autostart\ Rainmeter.lnk - c:\program files\Rainmeter\Rainmeter.exe [2012-1-8 105160] . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor] 2009-02-26 17:36 30040 -c--a-w- c:\program files\Microsoft Office 2007\Office12\GrooveMonitor.exe . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-disabled] "Omnipage"=c:\program files\ScanSoft\OmniPageSE\opware32.exe . [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= . R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-02-22 691696] R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-09-05 729752] R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2011-09-05 355632] R2 acedrv11;acedrv11;c:\windows\system32\drivers\acedrv11.sys [2010-02-24 185472] R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2011-09-05 21256] R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [2012-08-29 1385896] S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2012-07-13 160944] S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-06 250808] S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [2012-09-10 114144] S3 SetupNTGLM7X;SetupNTGLM7X;\??\g:\ntglm7x.sys --> g:\NTGLM7X.sys [?] . Zawartość folderu 'Zaplanowane zadania' . 2012-10-11 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-06 14:43] . 2012-10-12 c:\windows\Tasks\avast! Emergency Update.job - c:\program files\AVAST Software\Avast\AvastEmUpdate.exe [2012-06-30 09:12] . . ------- Skan uzupełniający ------- . uStart Page = hxxp://google.pl/ mStart Page = hxxp://www.google.com uInternet Settings,ProxyOverride = *.local IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&ksport do programu Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 IE: E&ksportuj do programu Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000 IE: {{d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\Dino\Menu Start\Programy\IMVU\Run IMVU.lnk FF - ProfilePath - c:\documents and settings\Dino\Dane aplikacji\Mozilla\Firefox\Profiles\im7nq3bp.default\ FF - prefs.js: browser.startup.homepage - google.pl FF - prefs.js: keyword.URL - hxxp://startsear.ch/?q= FF - user.js: network.http.max-persistent-connections-per-server - 4 FF - user.js: nglayout.initialpaint.delay - 600 FF - user.js: content.notify.interval - 600000 FF - user.js: content.max.tokenizing.time - 1800000 FF - user.js: content.switch.threshold - 600000 . - - - - USUNIĘTO PUSTE WPISY - - - - . Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file) WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file) AddRemove-Multimedialny słownik PWN-Oxford - c:\windows\IsUn0415.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2012-10-12 14:18 Windows 5.1.2600 Dodatek Service Pack 3 NTFS . skanowanie ukrytych procesów ... . skanowanie ukrytych wpisów autostartu ... . skanowanie ukrytych plików ... . skanowanie pomyślnie ukończone ukryte pliki: 0 . ************************************************************************** . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- . [HKEY_USERS\S-1-5-21-746137067-764733703-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{9681AF0B-EEDA-4FAC-1D33-10C586B1BEBD}*] @Allowed: (Read) (RestrictedCode) @Allowed: (Read) (RestrictedCode) "oaofmbaacimkdjdfmgjoipkoiecike"=hex:6a,61,68,70,63,69,62,6b,6c,6f,69,62,64,6c, 66,64,70,61,6f,69,00,ee "naiopeljdcomeomnacbgdkdapfph"=hex:6a,61,68,70,64,69,61,6b,63,6b,6d,65,70,6d, 6a,6b,65,64,66,67,00,e8 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*] @="?????????????????? v1" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID] @="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*] @="?????????????????? v2" . [HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID] @="{9BE31822-FDAD-461B-AD51-BE1D1C159921}" . --------------------- Pliki DLL ładowane pod uruchomionymi procesami --------------------- . - - - - - - - > 'explorer.exe'(2840) c:\windows\system32\WININET.dll c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_pol.nlr c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\program files\AVAST Software\Avast\AvastSvc.exe c:\windows\RTHDCPL.EXE c:\windows\system32\RUNDLL32.EXE c:\windows\system32\CTsvcCDA.exe c:\program files\Portrait Displays\forteManager\DTSRVC.exe c:\program files\Java\jre6\bin\jqs.exe c:\windows\system32\nvsvc32.exe c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe c:\windows\system32\wscntfy.exe . ************************************************************************** . Czas ukończenia: 2012-10-12 14:20:25 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2012-10-12 12:20 . Przed: 11 698 307 072 bajtów wolnych Po: 11 751 419 904 bajtów wolnych . - - End Of File - - B96D0F64EDE84A495F48ADBFBE631DA7