

- Kod: Zaznacz wszystko
ComboFix 08-09-15.02 - Przemek 2008-09-16 16:23:52.3 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1250.1.1045.18.1411 [GMT 2:00]
Uruchomiony z: C:\Documents and Settings\Przemek\Pulpit\ComboFix.exe
* Utworzono nowy punkt przywracania
[color=red][b]UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !![/b][/color]
.
((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\system32\mcrh.tmp
D:\Autorun.inf
E:\Autorun.inf
F:\Autorun.inf
G:\Autorun.inf
.
((((((((((((((((((((((((( Pliki utworzone od 2008-08-16 do 2008-09-16 )))))))))))))))))))))))))))))))
.
2008-09-13 14:35 . 2008-09-13 14:35 0 --ah----- C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-09-13 14:35 . 2008-09-13 14:35 0 --ah----- C:\WINDOWS\system32\drivers\Msft_Kernel_ggsemc_01005.Wdf
2008-09-13 13:04 . 2008-09-13 13:04 1,419,232 --a------ C:\WINDOWS\system32\wdfcoinstaller01005.dll
2008-09-13 13:04 . 2008-09-13 13:04 21,672 --a------ C:\WINDOWS\system32\drivers\ggsemc.sys
2008-09-13 13:04 . 2008-09-13 13:04 13,352 --a------ C:\WINDOWS\system32\drivers\ggflt.sys
2008-09-13 13:03 . 2008-09-13 13:03 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Sony Ericsson
2008-09-13 13:02 . 2008-09-13 13:02 <DIR> d-------- C:\Program Files\Sony Ericsson
2008-09-10 18:10 . 2008-04-14 00:15 10,368 --a------ C:\WINDOWS\system32\drivers\hidusb.sys
2008-09-10 18:10 . 2008-04-14 00:15 10,368 --a--c--- C:\WINDOWS\system32\dllcache\hidusb.sys
2008-09-10 07:30 . 2008-09-10 07:30 1,374 --a------ C:\WINDOWS\imsins.BAK
2008-09-09 09:58 . 2008-09-09 09:58 <DIR> d--h----- C:\WINDOWS\PIF
2008-09-09 09:47 . 2008-09-09 09:47 <DIR> d-------- C:\Program Files\Windows Sidebar
2008-09-09 09:47 . 2008-09-09 10:10 <DIR> d-------- C:\Program Files\Norton AntiVirus
2008-09-09 09:47 . 2008-09-09 10:07 123,952 --a------ C:\WINDOWS\system32\drivers\SYMEVENT.SYS
2008-09-09 09:47 . 2008-09-09 10:07 60,800 --a------ C:\WINDOWS\system32\S32EVNT1.DLL
2008-09-09 09:47 . 2008-09-09 10:07 10,671 --a------ C:\WINDOWS\system32\drivers\SYMEVENT.CAT
2008-09-09 09:47 . 2008-09-09 10:07 805 --a------ C:\WINDOWS\system32\drivers\SYMEVENT.INF
2008-09-09 08:29 . 2008-09-09 08:29 <DIR> dr-h----- C:\Documents and Settings\Przemek\Dane aplikacji\SecuROM
2008-09-09 08:29 . 2008-09-09 08:29 107,888 --a------ C:\WINDOWS\system32\CmdLineExt.dll
2008-09-07 11:47 . 2008-09-07 11:47 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Sony Corporation
2008-09-06 19:07 . 2008-09-06 19:08 <DIR> d-------- C:\Program Files\Xfire
2008-09-06 19:07 . 2008-09-06 19:16 <DIR> d-------- C:\Documents and Settings\Przemek\Dane aplikacji\Xfire
2008-09-06 16:08 . 2008-09-06 16:13 <DIR> d-------- C:\Documents and Settings\Przemek\Dane aplikacji\ipla
2008-09-06 16:08 . 2008-09-06 16:13 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\ipla
2008-09-06 16:07 . 2008-09-06 16:07 <DIR> d-------- C:\Program Files\ipla
2008-09-05 15:38 . 2008-09-05 15:38 <DIR> d-------- C:\Program Files\Robster Productions
2008-09-04 09:53 . 2008-09-04 09:53 <DIR> d-------- C:\Documents and Settings\NetworkService\Menu Start
2008-08-31 17:20 . 2008-08-31 17:26 <DIR> d-------- C:\Program Files\SubRip
2008-08-31 17:19 . 2008-08-31 17:19 <DIR> d-------- C:\Temp
2008-08-31 17:12 . 2008-08-31 17:12 <DIR> d-------- C:\Program Files\AviSynth 2.5
2008-08-31 17:11 . 2008-08-31 17:11 <DIR> d-------- C:\Program Files\Winnydows
2008-08-31 17:07 . 2008-08-31 17:07 <DIR> d-------- C:\Program Files\MSBuild
2008-08-31 17:05 . 2008-08-31 17:05 <DIR> d-------- C:\WINDOWS\system32\XPSViewer
2008-08-31 17:05 . 2008-08-31 17:05 <DIR> d-------- C:\Program Files\Reference Assemblies
2008-08-31 17:04 . 2006-06-29 13:07 14,048 --------- C:\WINDOWS\system32\spmsg2.dll
2008-08-29 20:31 . 2008-09-11 11:49 38 --a------ C:\WINDOWS\avisplitter.INI
2008-08-29 20:10 . 2008-08-29 20:12 <DIR> d-------- C:\Documents and Settings\Przemek\Dane aplikacji\GetRightToGo
2008-08-28 10:28 . 2008-08-28 10:28 <DIR> d-------- C:\Program Files\Longman
2008-08-27 23:02 . 2008-08-27 23:02 42,320 --a------ C:\WINDOWS\system32\xfcodec.dll
2008-08-27 10:29 . 2008-08-27 10:29 <DIR> d-------- C:\WINDOWS\Sun
2008-08-25 22:04 . 2008-09-16 10:28 <DIR> d-------- C:\Program Files\Mozilla Thunderbird
2008-08-25 22:04 . 2008-08-25 22:04 <DIR> d-------- C:\Documents and Settings\Przemek\Dane aplikacji\Thunderbird
2008-08-24 17:38 . 2008-06-10 02:32 73,728 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-08-24 17:37 . 2008-08-24 17:38 <DIR> d-------- C:\Program Files\Java
2008-08-24 17:36 . 2008-08-24 17:36 <DIR> d-------- C:\Program Files\Common Files\Java
2008-08-23 20:33 . 2008-08-23 20:34 <DIR> d-------- C:\Program Files\SopCast
2008-08-23 12:07 . 2008-08-23 12:10 <DIR> d-------- C:\Program Files\ALLPlayer
2008-08-22 15:47 . 2008-08-22 15:49 <DIR> d-------- C:\Program Files\ProgDVB
2008-08-22 13:39 . 2008-08-22 13:40 <DIR> d-------- C:\Program Files\TechniSat DVB
2008-08-22 13:39 . 2008-08-22 13:39 <DIR> d-------- C:\Program Files\DVBViewerTE
2008-08-22 13:39 . 2008-08-22 13:39 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\CMUV
2008-08-18 13:03 . 2008-08-26 20:49 <DIR> d-------- C:\Program Files\Nowe Gadu-Gadu
2008-08-17 22:49 . 2008-08-17 22:49 <DIR> d-------- C:\Documents and Settings\Przemek\Dane aplikacji\PC Suite
2008-08-17 22:49 . 2008-08-17 22:49 <DIR> d-------- C:\Documents and Settings\Przemek\Dane aplikacji\Nokia
2008-08-17 22:49 . 2008-08-17 22:49 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
2008-08-17 22:47 . 2008-08-17 22:47 <DIR> d-------- C:\Program Files\PC Connectivity Solution
2008-08-17 22:47 . 2008-08-17 22:47 <DIR> d-------- C:\Program Files\DIFX
2008-08-17 22:47 . 2007-09-17 15:53 21,632 --a------ C:\WINDOWS\system32\drivers\pccsmcfd.sys
2008-08-17 22:46 . 2008-08-28 17:15 <DIR> d-------- C:\Program Files\Nokia
2008-08-17 22:46 . 2008-08-17 22:46 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Installations
2008-08-17 22:46 . 2008-05-07 07:38 90,624 --a------ C:\WINDOWS\system32\nmwcdcls.dll
2008-08-17 22:35 . 2008-04-14 22:50 21,504 --a------ C:\WINDOWS\system32\hidserv.dll
2008-08-17 22:35 . 2008-04-14 22:50 21,504 --a--c--- C:\WINDOWS\system32\dllcache\hidserv.dll
2008-08-17 22:34 . 2001-10-26 16:57 12,160 --a------ C:\WINDOWS\system32\drivers\mouhid.sys
2008-08-17 22:34 . 2001-10-26 16:57 12,160 --a--c--- C:\WINDOWS\system32\dllcache\mouhid.sys
2008-08-17 19:45 . 2008-08-17 19:45 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Codemasters
.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-16 13:50 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\Skype
2008-09-16 13:44 --------- d-----w C:\Program Files\Steam
2008-09-16 13:43 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\skypePM
2008-09-16 13:39 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\uTorrent
2008-09-14 18:31 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\teamspeak2
2008-09-14 16:11 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-09-09 08:07 --------- d-----w C:\Program Files\Symantec
2008-09-09 08:03 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Symantec
2008-09-09 06:38 --------- d-----w C:\Program Files\eMule
2008-09-06 17:12 137,656 ----a-w C:\WINDOWS\system32\drivers\PnkBstrK.sys
2008-09-06 17:12 111,928 ----a-w C:\WINDOWS\system32\PnkBstrB.exe
2008-09-02 14:10 --------- d-----w C:\Program Files\NAPI-PROJEKT
2008-09-01 10:57 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-19 21:25 --------- d-----w C:\Program Files\AVerTV
2008-08-18 19:53 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\Nowe Gadu-Gadu
2008-08-12 18:58 --------- d-----w C:\Program Files\Common Files\Adobe
2008-08-12 18:40 --------- d-----w C:\Program Files\Common Files\TV
2008-08-11 15:57 --------- d-----w C:\Program Files\Winamp
2008-08-11 15:56 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\Winamp
2008-08-11 07:24 --------- d-----w C:\Program Files\WinAVI Video Converter
2008-08-11 04:28 --------- d-----w C:\Program Files\Apple Software Update
2008-08-08 07:37 --------- d-----w C:\Program Files\SanDisk
2008-08-08 07:35 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-08-07 13:00 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-08-05 16:06 --------- d-----w C:\Program Files\Common Files\eSellerate
2008-08-05 07:34 --------- d-----w C:\Program Files\iPod 2 iPod
2008-08-05 07:13 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\Apple Computer
2008-08-05 07:13 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Apple Computer
2008-08-05 07:12 --------- d-----w C:\Program Files\QuickTime
2008-08-05 07:12 --------- d-----w C:\Program Files\Bonjour
2008-08-05 07:11 --------- d-----w C:\Program Files\Common Files\Apple
2008-08-05 07:11 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Apple
2008-08-05 04:47 --------- d-----w C:\Program Files\Gadu-Gadu
2008-07-31 08:41 68,616 ----a-w C:\WINDOWS\system32\XAPOFX1_1.dll
2008-07-31 08:41 238,088 ----a-w C:\WINDOWS\system32\xactengine3_2.dll
2008-07-31 08:40 509,448 ----a-w C:\WINDOWS\system32\XAudio2_2.dll
2008-07-30 15:42 23,888 ----a-w C:\WINDOWS\system32\drivers\COH_Mon.sys
2008-07-30 15:28 706 ----a-w C:\WINDOWS\system32\drivers\COH_Mon.inf
2008-07-30 15:28 10,537 ----a-w C:\WINDOWS\system32\drivers\coh_mon.cat
2008-07-26 11:40 --------- d-----w C:\Program Files\HakerzyNET AntiVirus
2008-07-26 05:05 --------- d-----w C:\Program Files\TweakNow RegCleaner Std
2008-07-25 18:02 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\Lavasoft
2008-07-25 17:06 --------- d-----w C:\Program Files\RM Converter
2008-07-25 16:46 --------- d-----w C:\Documents and Settings\Przemek\Dane aplikacji\Any Video Converter
2008-07-25 16:42 --------- d-----w C:\Program Files\Trend Micro
2008-07-25 14:43 --------- d-----w C:\Program Files\Any Video Converter
2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-18 20:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-12 06:18 467,984 ----a-w C:\WINDOWS\system32\d3dx10_39.dll
2008-07-12 06:18 3,851,784 ----a-w C:\WINDOWS\system32\D3DX9_39.dll
2008-07-12 06:18 1,493,528 ----a-w C:\WINDOWS\system32\D3DCompiler_39.dll
2008-07-07 20:29 253,952 ----a-w C:\WINDOWS\system32\es.dll
2008-07-02 06:47 66,872 ----a-w C:\WINDOWS\system32\PnkBstrA.exe
2008-06-24 16:46 74,240 ----a-w C:\WINDOWS\system32\mscms.dll
2008-06-24 16:12 295,936 ----a-w C:\WINDOWS\system32\wmpeffects.dll
2008-06-23 16:42 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
2008-06-20 17:48 246,784 ----a-w C:\WINDOWS\system32\mswsock.dll
2008-06-20 09:51 86,016 ----a-w C:\WINDOWS\system32\OpenAL32.dll
2008-06-20 09:51 262,144 ----a-w C:\WINDOWS\system32\wrap_oal.dll
2008-06-17 15:47 81,920 ----a-w C:\Documents and Settings\Przemek\Dane aplikacji\ezpinst.exe
2008-06-17 15:47 47,360 ----a-w C:\Documents and Settings\Przemek\Dane aplikacji\pcouffin.sys
2008-06-15 14:48 22,328 ----a-w C:\Documents and Settings\Przemek\Dane aplikacji\PnkBstrK.sys
2008-06-15 08:21 16,384 --sha-w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
2008-06-15 08:21 32,768 --sha-w C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Historia\History.IE5\index.dat
2008-06-15 08:21 32,768 --sha-w C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Historia\History.IE5\MSHist012008061520080616\index.dat
2008-06-15 08:21 32,768 --sha-w C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Temporary Internet Files\Content.IE5\index.dat
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 15360]
"CTZDetec.exe"="C:\Program Files\Creative\Creative Media Lite\CTZDetec.exe" [2007-12-18 401408]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-04-01 486856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2008-05-03 86016]
"LXSUPMON"="C:\WINDOWS\system32\LXSUPMON.EXE" [2002-08-15 886272]
"CTCheck"="C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe" [2007-11-06 397312]
"RivaTunerStartupDaemon"="C:\Program Files\RivaTuner v2.09\RivaTuner.exe" [2008-04-28 2707456]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2008-05-03 13529088]
"AppleSyncNotifier"="C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-07-22 116040]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-05-27 413696]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2008-02-14 51048]
"osCheck"="C:\Program Files\Norton AntiVirus\osCheck.exe" [2007-08-24 714608]
"RTHDCPL"="RTHDCPL.EXE" [2007-07-05 C:\WINDOWS\RTHDCPL.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_2"="shell32" [X]
"nltide_3"="advpack.dll" [2008-06-23 C:\WINDOWS\system32\advpack.dll]
C:\Documents and Settings\Przemek\Menu Start\Programy\Autostart\
irPC.lnk - C:\Program Files\irPC\irPC.exe [2005-12-30 107520]
C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\
QuickTV.lnk - C:\Program Files\AVerTV\QuickTV.exe [2005-08-30 405504]
Server4PC.lnk - C:\Program Files\TechniSat DVB\bin\Server4PC.exe [2008-08-22 338448]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.I420"= i420vfw.dll
"vidc.yv12"= yv12vfw.dll
"VIDC.XFR1"= xfcodec.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2008-01-11 22:16 39792 C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
--a------ 2008-04-01 11:39 486856 C:\Program Files\DAEMON Tools Lite\daemon.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2001-07-09 09:20 155648 C:\WINDOWS\system32\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
--a------ 2008-05-03 03:16 13529088 C:\WINDOWS\system32\nvcpl.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
--a------ 2008-05-03 03:16 1630208 C:\WINDOWS\system32\nwiz.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\WINDOWS\\system32\\PnkBstrA.exe"=
"C:\\WINDOWS\\system32\\PnkBstrB.exe"=
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"F:\\Gry\\Medal of Honor Airborne\\UnrealEngine3\\Binaries\\MOHA.exe"=
"F:\\Gry\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
R2 CX88XBAR;AVerMedia, AVerTV Crossbar (88x);C:\WINDOWS\system32\drivers\CX88XBAR.sys [2005-12-09 9312]
R2 LiveUpdate Notice;LiveUpdate Notice;C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2008-02-14 149864]
R3 SKYNET;TechniSat DVB-PC TV Star PCI;C:\WINDOWS\system32\DRIVERS\SkyNET.SYS [2008-06-16 418832]
R3 V0260VID;Live! Cam Vista IM;C:\WINDOWS\system32\DRIVERS\V0260Vid.sys [2006-04-01 162176]
S3 COH_Mon;COH_Mon;C:\WINDOWS\system32\Drivers\COH_Mon.sys [2008-07-30 23888]
S3 ggflt;SEMC USB Flash Driver Filter;C:\WINDOWS\system32\DRIVERS\ggflt.sys [2008-09-13 13352]
S3 SkyNetBDA;TechniSat DVB-PC TV Star PCI (BDA);C:\WINDOWS\system32\DRIVERS\SkyNetBDA.sys [2008-06-16 462224]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6d359663-4cb7-11dd-bbf6-001d7d9f1ecc}]
\Shell\AutoRun\command - L:\qwultj1.bat
\Shell\explore\Command - L:\qwultj1.bat
\Shell\open\Command - L:\qwultj1.bat
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f0cc39e1-41a2-11dd-bbd6-00d0d70ec3d1}]
\Shell\AutoRun\command - K:\t0k3c.cmd
\Shell\explore\Command - K:\
\Shell\open\Command - K:\t0k3c.cmd
.
Zawartość folderu 'Zaplanowane zadania'
.
- - - - USUNIĘTO PUSTE WPISY - - - -
ShellExecuteHooks-{040BA7F9-CDC9-4F2A-BAFD-5B13501B2DAD} - (no file)
.
------- Skan uzupełniający -------
.
FireFox -: Profile - C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\y1q60das.default\
FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.wp.pl
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-16 16:26:29
Windows 5.1.2600 Dodatek Service Pack 3 NTFS
skanowanie ukrytych procesów ...
skanowanie ukrytych wpisów autostartu ...
skanowanie ukrytych plików ...
skanowanie pomyślnie ukończone
ukryte pliki: 0
**************************************************************************
.
Czas ukończenia: 2008-09-16 16:28:19
ComboFix-quarantined-files.txt 2008-09-16 14:27:31
Przed: 27,379,408,896 bajt˘w wolnych
Po: 27,841,576,960 bajt˘w wolnych
262 --- E O F --- 2008-09-10 05:31:48