ComboFix 09-11-07.02 - Piotrus 2002-01-01 0:40.1.2 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.2.1250.48.1045.18.2047.1720 [GMT 1:00] Uruchomiony z: c:\documents and settings\Piotrus\Pulpit\ComboFix.exe . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\recycler\S-1-5-21-1482476501-1644491937-682003330-1013 c:\recycler\S-1-5-21-1482476501-1644491937-682003330-1013\dll32.exe c:\windows\system32\ieuinit.inf c:\windows\system32\setup.ini . ((((((((((((((((((((((((( Pliki utworzone od 2001-11-28 do 2001-12-31 ))))))))))))))))))))))))))))))) . 2009-11-07 20:55 . 2001-12-31 23:36 81920 ----a-w- c:\windows\system32\vh552232.dll 2009-11-07 20:44 . 2009-11-07 20:48 -------- d-----w- C:\Temp 2009-11-07 20:43 . 1998-07-21 23:00 102912 ----a-w- c:\windows\system32\Vb6stkit.dll 2009-11-07 20:43 . 1998-07-21 23:00 102160 ----a-w- c:\windows\system32\VB6KO.DLL 2009-11-07 20:43 . 2009-11-07 20:45 16384 ----a-w- c:\windows\system32\lgfwunis.exe 2009-11-07 20:43 . 2001-12-31 23:36 -------- d-----w- c:\program files\lg_fwupdate 2009-11-07 20:31 . 2009-11-07 20:31 -------- d-----w- c:\documents and settings\Piotrus\Ustawienia lokalne\Dane aplikacji\Identities 2009-11-07 15:25 . 2005-01-12 10:19 456536 ----a-w- c:\windows\system32\XCEEDZIP.DLL 2009-11-07 15:25 . 2004-09-28 10:13 526184 ----a-w- c:\windows\system32\XceedCry.dll 2009-11-07 15:25 . 2004-08-11 14:55 110602 ----a-w- c:\windows\system32\xcdsfx32.bin 2009-11-07 15:20 . 2004-08-14 01:56 5810 ----a-w- c:\windows\system32\drivers\ASACPI.sys 2009-11-07 15:20 . 2009-11-07 15:20 81920 ----a-w- c:\windows\system32\ph552232.dll 2009-11-07 14:20 . 2009-11-07 14:20 81920 ----a-w- c:\windows\system32\nh552232.dll 2009-11-07 14:18 . 2001-12-31 23:41 5077 ----a-w- c:\windows\system32\drivers\nhiugn.sys 2009-11-07 12:56 . 2009-11-07 13:12 -------- d-----w- c:\program files\SkanerOnline 2009-11-07 12:56 . 2009-11-07 13:22 -------- d-----w- c:\documents and settings\Piotrus\Ustawienia lokalne\Dane aplikacji\AskToolbar 2009-11-07 12:19 . 2009-11-07 12:19 -------- d-----w- c:\documents and settings\Piotrus\Ustawienia lokalne\Dane aplikacji\Help 2009-11-07 12:10 . 2009-11-07 12:13 81920 ----a-w- c:\windows\system32\wg552232.dll(1).VIR 2009-11-06 22:55 . 2009-11-07 12:13 81920 ----a-w- c:\windows\system32\xg552232.dll(1).VIR 2009-11-06 22:55 . 2001-12-31 23:39 81920 ----a-w- c:\windows\system32\xg552232.dll 2009-11-06 22:29 . 2009-11-06 22:55 67038 ----a-w- c:\windows\War3Unin.dat 2009-11-06 22:29 . 2009-11-06 22:40 2829 ----a-w- c:\windows\War3Unin.pif 2009-11-06 22:29 . 2009-11-06 22:40 196608 ----a-w- c:\windows\War3Unin.exe 2009-11-06 22:16 . 2009-11-06 22:18 -------- d-----w- c:\windows\system32\NtmsData 2009-11-06 21:44 . 2009-11-07 12:13 5077 ----a-w- c:\windows\system32\drivers\nhiugn.sys(1).VIR 2009-11-06 21:44 . 2009-11-07 12:10 81920 ----a-w- c:\windows\system32\x{156971.dll(1).VIR 2009-11-06 21:44 . 2001-12-31 23:41 81920 ----a-w- c:\windows\system32\x{156971.dll 2009-11-06 19:29 . 2009-11-06 21:57 -------- d-----w- c:\program files\Ask.com 2009-11-05 21:25 . 2009-11-05 21:26 -------- d-----w- c:\program files\Common Files\Adobe 2009-11-05 21:22 . 2009-10-10 07:07 38208 ----a-w- c:\documents and settings\Piotrus\Dane aplikacji\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe 2009-11-05 21:22 . 2009-10-10 07:07 38208 ----a-w- c:\documents and settings\Default User\Dane aplikacji\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe 2009-11-05 21:21 . 2009-11-05 21:21 -------- d-----w- c:\program files\Common Files\Adobe AIR 2009-11-05 21:20 . 2009-11-05 21:20 -------- d-----w- c:\program files\McAfee Security Scan 2009-11-05 21:20 . 2009-11-05 21:20 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\McAfee Security Scan 2009-11-05 21:19 . 2009-11-05 21:19 -------- d-----w- c:\documents and settings\Piotrus\Ustawienia lokalne\Dane aplikacji\Adobe 2009-11-05 21:19 . 2009-11-05 21:19 143360 ----a-w- c:\documents and settings\All Users\Dane aplikacji\NOS\Adobe_Downloads\arh.exe 2009-11-05 21:19 . 2009-11-06 11:54 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NOS 2009-11-04 15:06 . 2009-11-04 15:06 1183 ----a-w- c:\windows\mozver.dat 2009-11-04 14:43 . 2009-11-04 14:43 -------- d-----w- c:\documents and settings\Piotrus\Dane aplikacji\Gadu-Gadu 2009-11-04 14:42 . 2004-08-03 22:44 221184 ----a-w- c:\windows\system32\wmpns.dll 2009-11-04 14:39 . 2004-08-03 22:07 6400 -c--a-w- c:\windows\system32\dllcache\splitter.sys 2009-11-04 14:39 . 2004-08-03 22:07 6400 ----a-w- c:\windows\system32\drivers\splitter.sys 2009-11-04 14:39 . 2004-08-03 22:15 82944 -c--a-w- c:\windows\system32\dllcache\wdmaud.sys 2009-11-04 14:39 . 2004-08-03 22:15 82944 ----a-w- c:\windows\system32\drivers\wdmaud.sys 2009-11-04 14:39 . 2004-08-03 22:07 52864 -c--a-w- c:\windows\system32\dllcache\dmusic.sys 2009-11-04 14:39 . 2004-08-03 22:07 52864 ----a-w- c:\windows\system32\drivers\DMusic.sys 2009-11-04 14:37 . 2004-03-17 13:36 15872 ----a-w- c:\windows\system32\spupdsvc.exe 2009-11-04 14:29 . 2009-11-04 14:29 -------- d-----w- c:\windows\system32\drivers\system32 2009-11-04 14:29 . 2009-11-04 14:29 -------- d-----w- c:\windows\system32\drivers\INF 2009-11-04 14:28 . 2009-11-04 14:28 -------- dc----w- c:\windows\system32\DRVSTORE 2009-11-04 14:28 . 2009-11-04 14:28 -------- d-----w- c:\program files\Intel 2009-11-04 14:28 . 2009-11-04 14:28 -------- d-----w- C:\Intel 2009-11-04 14:26 . 2009-11-04 14:26 0 ----a-w- c:\windows\nsreg.dat 2009-11-04 14:26 . 2009-11-04 14:26 -------- d-----w- c:\documents and settings\Piotrus\Ustawienia lokalne\Dane aplikacji\Mozilla 2009-11-04 14:25 . 2009-11-04 14:26 -------- d-----w- c:\documents and settings\Piotrus\Gadu-Gadu 2009-11-04 14:20 . 2009-11-04 14:20 -------- d-----w- c:\windows\system32\InsFiles 2009-11-04 14:20 . 2006-06-06 15:20 159744 ----a-r- c:\windows\stmtrace.exe 2009-11-04 14:20 . 2005-07-07 17:02 122880 ----a-r- c:\windows\DSLTest.exe(1).VIR 2009-11-04 14:20 . 2006-05-25 15:28 684265 ----a-r- c:\windows\system32\drivers\torususb.sys 2009-11-04 14:20 . 2004-07-27 18:18 36864 ----a-r- c:\windows\system32\stmclean.exe 2009-11-04 14:20 . 2003-08-12 14:51 60255 ----a-r- c:\windows\system32\drivers\stmatm.sys 2009-11-04 14:19 . 2006-06-02 18:38 425984 ----a-r- c:\windows\system32\stmcfg32.dll 2009-11-04 14:19 . 2006-06-02 11:01 151552 ----a-r- c:\windows\system32\stmctrl.dll 2009-11-04 14:19 . 2009-11-04 14:19 -------- d-----w- c:\program files\ZTE ZXDSL 852 2009-11-04 14:14 . 2009-11-04 14:14 12328 ----a-w- c:\documents and settings\Piotrus\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2009-11-04 14:13 . 2009-11-04 14:13 -------- d-----w- c:\documents and settings\Piotrus\Ustawienia lokalne\Dane aplikacji\ATI 2009-11-04 14:13 . 2009-11-04 14:13 -------- d-----w- c:\documents and settings\Piotrus\Dane aplikacji\ATI 2009-11-04 14:13 . 2009-11-04 14:13 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ATI 2009-11-04 14:04 . 2009-11-04 14:04 9158 ----a-r- c:\documents and settings\Piotrus\Dane aplikacji\Microsoft\Installer\{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}\ARPPRODUCTICON.exe 2009-11-04 14:04 . 2009-11-04 14:04 -------- d-----w- c:\program files\Common Files\ATI Technologies 2009-11-04 14:01 . 2007-10-16 20:05 593920 ------w- c:\windows\system32\ati2sgag.exe 2009-11-04 14:01 . 2007-10-17 01:56 307200 ----a-r- c:\windows\system32\atiiiexx.dll 2009-11-04 14:01 . 2007-10-17 02:05 364544 ----a-r- c:\windows\system32\ATIDEMGX.dll 2009-11-04 14:01 . 2007-10-17 01:33 887724 ----a-r- c:\windows\system32\ativva6x.dat 2009-11-04 14:01 . 2007-10-17 01:33 3107788 ----a-r- c:\windows\system32\ativva5x.dat 2009-11-04 14:01 . 2007-10-17 01:33 3107788 ----a-r- c:\windows\system32\ativvaxx.dat 2009-11-04 14:01 . 2007-09-14 13:03 157034 ----a-r- c:\windows\system32\atiicdxx.dat 2009-11-04 14:01 . 2009-11-04 14:06 -------- d-----w- c:\program files\ATI Technologies . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-11-07 20:43 . 2009-11-04 13:45 -------- d--h--w- c:\program files\InstallShield Installation Information 2009-11-05 14:36 . 2009-11-04 13:37 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat 2009-11-04 14:38 . 2001-10-26 14:15 74450 ----a-w- c:\windows\system32\perfc015.dat 2009-11-04 14:38 . 2001-10-26 14:15 448348 ----a-w- c:\windows\system32\perfh015.dat 2009-11-04 14:38 . 2009-11-04 14:38 -------- d-----w- c:\program files\Analog Devices 2009-11-04 14:05 . 2009-11-04 13:45 -------- d-----w- c:\program files\Common Files\InstallShield 2009-11-04 13:45 . 2009-11-04 13:45 -------- d-----w- c:\program files\Java 2009-11-04 13:38 . 2009-11-04 13:38 -------- d-----w- c:\program files\microsoft frontpage 2009-11-04 13:37 . 2009-11-04 13:37 -------- d-----w- c:\program files\Usługi online 2009-11-04 13:34 . 2009-11-04 13:34 21856 ----a-w- c:\windows\system32\emptyregdb.dat 2009-01-21 16:11 . 2009-01-21 16:11 473600 ----a-w- c:\windows\system32\SkanerOnline.dll 2008-04-11 20:17 . 2008-04-11 20:17 89088 ----a-w- c:\windows\system32\SkanerOnlineUninstall.exe 2007-10-17 02:40 . 2007-10-17 02:40 2642944 ----a-w- c:\windows\system32\drivers\ati2mtag.sys 2007-10-17 02:04 . 2007-10-17 02:04 268288 ----a-w- c:\windows\system32\ati2dvag.dll 2007-10-17 01:56 . 2007-10-17 01:56 143360 ----a-w- c:\windows\system32\atipdlxx.dll 2007-10-17 01:56 . 2007-10-17 01:56 122880 ----a-w- c:\windows\system32\Oemdspif.dll 2007-10-17 01:56 . 2007-10-17 01:56 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe 2007-10-17 01:55 . 2007-10-17 01:55 43520 ----a-w- c:\windows\system32\ati2edxx.dll 2007-10-17 01:55 . 2007-10-17 01:55 122880 ----a-w- c:\windows\system32\ati2evxx.dll 2007-10-17 01:54 . 2007-10-17 01:54 495616 ----a-w- c:\windows\system32\ati2evxx.exe 2007-10-17 01:53 . 2007-10-17 01:53 53248 ----a-w- c:\windows\system32\ATIDDC.DLL 2007-10-17 01:48 . 2007-10-17 01:48 9244672 ----a-w- c:\windows\system32\atioglx2.dll 2007-10-17 01:44 . 2007-10-17 01:44 3133056 ----a-w- c:\windows\system32\ati3duag.dll 2007-10-17 01:33 . 2007-10-17 01:33 1601664 ----a-w- c:\windows\system32\ativvaxx.dll 2007-10-17 01:19 . 2007-10-17 01:19 376832 ----a-w- c:\windows\system32\atikvmag.dll 2007-10-17 01:17 . 2007-10-17 01:17 17408 ----a-w- c:\windows\system32\atitvo32.dll 2007-10-17 01:16 . 2007-10-17 01:16 49152 ----a-w- c:\windows\system32\drivers\ati2erec.dll 2007-10-17 01:15 . 2007-10-17 01:15 172032 ----a-w- c:\windows\system32\atiok3x2.dll 2007-10-17 01:11 . 2007-10-17 01:11 499712 ----a-w- c:\windows\system32\ati2cqag.dll 2007-09-09 02:37 . 2009-11-04 14:01 47360 ----a-r- c:\windows\system32\drivers\ativvpxx.vp 2007-07-20 02:19 . 2007-07-20 02:19 81920 ----a-w- c:\windows\system32\ATIODE.exe 2007-07-20 02:19 . 2007-07-20 02:19 40960 ----a-w- c:\windows\system32\ATIODCLI.exe 2007-05-30 16:43 . 2009-11-04 14:01 2096 ----a-r- c:\windows\system32\drivers\ativckxx.vp 2007-04-18 12:19 . 2009-11-04 14:01 2096 ----a-r- c:\windows\system32\drivers\ativdkxx.vp 2007-04-18 12:19 . 2009-11-04 14:01 929 ----a-r- c:\windows\system32\drivers\ativcaxx.vp 2007-04-18 12:19 . 2009-11-04 14:01 1311202 ----a-r- c:\windows\system32\drivers\ativcaxx.cpa 2007-01-16 08:09 . 2009-11-04 14:38 293888 ----a-r- c:\windows\system32\drivers\ADIHdAud.sys 2006-08-07 05:57 . 2009-11-04 14:38 93952 ----a-r- c:\windows\system32\drivers\aeaudio.sys 2006-07-10 13:42 . 2009-11-04 14:38 49152 ------w- c:\windows\system32\DSndUp.exe 2006-06-30 14:00 . 2009-11-04 14:38 28160 ----a-r- c:\windows\system32\PostProc.dll 2006-06-23 13:48 . 2009-11-04 14:28 90112 ----a-w- c:\windows\inf\UpdateUSB.exe(1).VIR 2006-03-17 16:18 . 2009-11-04 14:38 392960 ----a-r- c:\windows\system32\drivers\senfilt.sys 2005-10-11 09:56 . 2005-10-11 09:56 73728 ----a-r- c:\windows\system32\atiexdxx.dll 2005-10-06 13:55 . 2009-11-04 13:45 36864 ----a-w- c:\windows\system32\IfHelper.dll 2005-09-23 06:28 . 2005-09-23 06:28 32768 ----a-w- c:\windows\system32\netfxperf.dll 2005-09-23 06:28 . 2005-09-23 06:28 74240 ----a-w- c:\windows\system32\mscories.dll 2005-09-23 06:28 . 2005-09-23 06:28 270848 ----a-w- c:\windows\system32\mscoree.dll 2005-09-23 06:28 . 2005-09-23 06:28 150016 ----a-w- c:\windows\system32\mscorier.dll 2005-09-23 06:28 . 2005-09-23 06:28 83456 ----a-w- c:\windows\system32\dfshim.dll 2005-05-04 13:45 . 2004-08-03 22:44 78848 ----a-w- c:\windows\system32\msiexec.exe 2005-05-04 13:45 . 2004-08-03 22:44 271360 ----a-w- c:\windows\system32\msihnd.dll 2005-05-04 13:45 . 2004-08-03 22:44 15360 ----a-w- c:\windows\system32\msisip.dll 2005-05-04 13:45 . 2004-08-03 22:43 884736 ----a-w- c:\windows\system32\msimsg.dll 2005-05-04 13:45 . 2004-08-03 22:44 2890240 ----a-w- c:\windows\system32\msi.dll 2005-05-04 07:20 . 2009-11-04 14:38 53248 ------w- c:\windows\system32\wdmioctl.dll 2004-10-27 14:21 . 2004-10-27 14:21 138240 ------w- c:\windows\system32\drivers\Hdaudbus.sys 2004-10-27 14:21 . 2004-10-27 14:21 61952 ------w- c:\windows\system32\HdAShCut.exe 2004-10-27 14:21 . 2004-10-27 14:21 145920 ------w- c:\windows\system32\drivers\Hdaudio.sys 2004-10-27 14:21 . 2004-10-27 14:21 25088 ------w- c:\windows\system32\HdAProp.dll 2004-10-27 14:21 . 2004-10-27 14:21 5120 ------w- c:\windows\system32\HdAudRes.dll 2004-08-23 12:50 . 2009-11-04 13:47 32768 ----a-w- c:\windows\system32\WooDial2000.dll 2004-08-23 12:49 . 2009-11-04 13:45 40960 ----a-w- c:\windows\system32\FTRTSVC.exe 2004-08-03 22:54 . 2004-08-04 00:43 55296 ----a-w- c:\windows\system32\dmutil.dll 2004-08-03 22:46 . 2004-08-03 22:46 332288 ----a-w- c:\windows\system32\netsetup.exe 2004-08-03 22:43 . 2009-11-04 13:35 16896 ----a-w- c:\windows\system32\fltlib.dll 2004-08-03 22:42 . 2004-08-03 22:42 57344 ----a-w- c:\windows\system32\mshtmler.dll 2004-08-03 22:39 . 2009-11-04 13:35 73472 ----a-w- c:\windows\system32\drivers\sr.sys 2004-08-03 22:38 . 2004-08-03 22:38 2149888 ----a-w- c:\windows\system32\ntoskrnl.exe 2004-08-03 22:38 . 2004-08-03 22:38 153856 ----a-w- c:\windows\system32\drivers\dmio.sys 2004-08-03 22:38 . 2004-08-03 22:38 800000 ----a-w- c:\windows\system32\drivers\dmboot.sys 2004-08-03 22:38 . 2004-08-03 22:38 24960 ----a-w- c:\windows\system32\drivers\kbdclass.sys 2004-08-03 22:37 . 2004-08-03 22:37 1836160 ----a-w- c:\windows\system32\win32k.sys 2004-08-03 22:37 . 2004-08-03 22:37 40320 ----a-w- c:\windows\system32\drivers\intelppm.sys 2004-08-03 22:36 . 2004-08-03 22:36 52864 ----a-w- c:\windows\system32\drivers\volsnap.sys 2004-08-03 22:36 . 2004-08-03 22:36 65664 ----a-w- c:\windows\system32\drivers\serial.sys 2004-08-03 22:36 . 2004-08-03 22:36 53504 ----a-w- c:\windows\system32\drivers\i8042prt.sys 2004-08-03 22:34 . 2004-08-03 22:34 120064 ----a-w- c:\windows\system32\drivers\pcmcia.sys 2004-08-03 22:34 . 2004-08-03 22:34 69552 ----a-w- c:\windows\system32\mmsystem.dll 2004-08-03 22:34 . 2004-08-03 22:34 188672 ----a-w- c:\windows\system32\drivers\acpi.sys 2004-08-03 22:33 . 2009-11-04 13:32 44544 ----a-w- c:\windows\system32\tscupgrd.exe 2004-08-03 22:33 . 2009-11-04 13:32 408576 ----a-w- c:\windows\system32\mstsc.exe 2004-08-03 22:15 . 2009-11-04 14:38 60800 ----a-w- c:\windows\system32\drivers\sysaudio.sys 2004-08-03 22:15 . 2009-11-04 14:38 145792 ----a-w- c:\windows\system32\drivers\portcls.sys 2004-08-03 22:15 . 2004-08-03 23:15 140928 ----a-w- c:\windows\system32\drivers\ks.sys 2004-08-03 22:08 . 2004-08-03 21:08 57600 ----a-w- c:\windows\system32\drivers\usbhub.sys 2004-08-03 22:08 . 2004-08-03 21:08 142976 ----a-w- c:\windows\system32\drivers\usbport.sys 2004-08-03 22:08 . 2004-08-03 21:08 26624 ----a-w- c:\windows\system32\drivers\usbehci.sys 2004-08-03 22:08 . 2004-08-03 21:08 20480 ----a-w- c:\windows\system32\drivers\usbuhci.sys 2004-08-03 22:08 . 2004-08-03 23:08 48640 ----a-w- c:\windows\system32\drivers\stream.sys 2004-08-03 22:08 . 2009-11-04 14:38 60288 ----a-w- c:\windows\system32\drivers\drmk.sys 2004-08-03 22:07 . 2009-11-04 14:38 2944 ----a-w- c:\windows\system32\drivers\drmkaud.sys 2004-08-03 22:07 . 2009-11-04 14:38 171776 ----a-w- c:\windows\system32\drivers\kmixer.sys 2004-08-03 22:01 . 2009-11-04 13:32 196864 ----a-w- c:\windows\system32\drivers\rdpdr.sys 2004-08-03 21:59 . 2004-08-03 20:59 95360 ----a-w- c:\windows\system32\drivers\atapi.sys 2004-08-03 21:59 . 2004-08-03 20:59 25088 ----a-w- c:\windows\system32\drivers\pciidex.sys 2004-08-03 21:58 . 2009-11-04 14:38 7552 ----a-w- c:\windows\system32\drivers\MSKSSRV.sys 2004-08-03 21:58 . 2009-11-04 14:38 4992 ----a-w- c:\windows\system32\drivers\MSPQM.sys 2004-08-03 21:58 . 2009-11-04 14:38 5376 ----a-w- c:\windows\system32\drivers\MSPCLOCK.sys 2004-08-03 21:39 . 2009-11-04 14:38 142464 ----a-w- c:\windows\system32\drivers\aec.sys 2004-08-03 21:20 . 2004-08-03 21:20 176512 ----a-w- c:\windows\system32\drivers\rdbss.sys . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] 2009-06-04 17:04 1144712 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2009-06-04 1144712] [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1] [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser] "{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2009-06-04 1144712] [HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1] [HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}] [HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "WOOWATCH"="c:\progra~1\NEOSTR~1\Watch.exe" [2004-08-23 77824] "SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 925696] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 992632] "LGODDFU"="c:\program files\lg_fwupdate\fwupdate.exe" [2009-11-07 614400] "AdslTaskBar"="stmctrl.dll" - c:\windows\system32\stmctrl.dll [2006-06-02 151552] "Tweak UI"="TWEAKUI.CPL" - c:\windows\system32\TWEAKUI.CPL [2009-11-07 106544] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-03 15360] c:\documents and settings\All Users\Menu Start\Programy\Autostart\ McAfee Security Scan.lnk - c:\program files\McAfee Security Scan\1.0.150\SSScheduler.exe [2009-7-28 199184] [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "d:\\Programy\\SopCast\\adv\\SopAdver.exe"= "d:\\Gry\\Warcraft III\\Warcraft III.exe"= R3 Stmatm;ATM/ADSL miniport;c:\windows\system32\drivers\stmatm.sys [2009-11-04 60255] R3 TaurusUsb;ADSL Modem USB Service;c:\windows\system32\drivers\torususb.sys [2009-11-04 684265] S2 MCIDRV_2600_6_0;MCIDRV_2600_6_0;c:\windows\system32\drivers\nhiugn.sys [2009-11-07 5077] --- Inne Usługi/Sterowniki w Pamięci --- *NewlyCreated* - MBR *NewlyCreated* - PROCEXP113 *Deregistered* - mbr *Deregistered* - PROCEXP113 . Zawartość folderu 'Zaplanowane zadania' 2009-11-07 c:\windows\Tasks\Scheduled Update for Ask Toolbar.job - c:\program files\Ask.com\UpdateTask.exe [2009-06-04 17:04] . . ------- Skan uzupełniający ------- . uStart Page = hxxp://www.neostrada.pl IE: { - c:\program files\Messenger\msmsgs.exe TCP: {3150811A-A640-45DF-A55A-E3D6D8599DBB} = 194.204.159.1 217.98.63.164 FF - ProfilePath - c:\documents and settings\Piotrus\Dane aplikacji\Mozilla\Firefox\Profiles\wfag3y1k.default\ FF - plugin: c:\program files\Java\j2re1.4.0_03\bin\NPJava11.dll FF - plugin: c:\program files\Java\j2re1.4.0_03\bin\NPJava12.dll FF - plugin: c:\program files\Java\j2re1.4.0_03\bin\NPJava13.dll FF - plugin: c:\program files\Java\j2re1.4.0_03\bin\NPJava32.dll FF - plugin: c:\program files\Java\j2re1.4.0_03\bin\NPJPI140_03.dll FF - plugin: c:\program files\Java\j2re1.4.0_03\bin\NPOJI610.dll . - - - - USUNIĘTO PUSTE WPISY - - - - HKLM-Run-WOOTASKBARICON - c:\progra~1\NEOSTR~1\GestMaj.exe HKLM-Run-StartCCC - c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe AddRemove-All ATI Software - c:\program files\ATI Technologies\UninstallAll\AtiCimUn.exe AddRemove-neostradatp.exe - c:\progra~1\NEOSTR~1\Uninstall.exe AddRemove-TweakUI - c:\windows\rundll32.exe ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2002-01-01 00:42 Windows 5.1.2600 Dodatek Service Pack 2 NTFS skanowanie ukrytych procesów ... skanowanie ukrytych wpisów autostartu ... skanowanie ukrytych plików ... skanowanie pomyślnie ukończone ukryte pliki: 0 ************************************************************************** . --------------------- Pliki DLL ładowane pod uruchomionymi procesami --------------------- - - - - - - - > 'winlogon.exe'(512) c:\windows\system32\Ati2evxx.dll . Czas ukończenia: 2001-12-31 0:43 ComboFix-quarantined-files.txt 2001-12-31 23:43 Przed: 36 871 282 688 bajtów wolnych Po: 36 834 922 496 bajtów wolnych WindowsXP-KB310994-SP2-Pro-BootDisk-PLK.exe [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect - - End Of File - - 0CDD66A40866C51F6118D2744ABDE98D