wklejto.pl

Dodane przez: ~Anonim (2011-08-23 09:05) -> text
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
OTL logfile created on: 2011-08-23 09:00:10 - Run 3
OTL by OldTimer - Version 3.2.26.5     Folder = C:\Documents and Settings\arkada bp\Pulpit
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
1022,42 Mb Total Physical Memory | 380,44 Mb Available Physical Memory | 37,21% Memory free
2,40 Gb Paging File | 1,88 Gb Available in Paging File | 78,20% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 19,07 Gb Total Space | 5,59 Gb Free Space | 29,33% Space Free | Partition Type: NTFS
Drive D: | 97,65 Gb Total Space | 82,75 Gb Free Space | 84,74% Space Free | Partition Type: NTFS
Drive F: | 51,39 Gb Total Space | 49,41 Gb Free Space | 96,14% Space Free | Partition Type: NTFS
 
Computer Name: ARKADA | User Name: arkada bp | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
PRC - [2011-08-22 17:10:56 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\arkada bp\Pulpit\OTL.exe
PRC - [2011-07-12 08:47:29 | 000,053,104 | ---- | M] (Uniblue Systems Limited) -- C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe
PRC - [2011-07-12 08:47:29 | 000,025,472 | ---- | M] (Uniblue Systems Limited) -- C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
PRC - [2011-07-05 11:17:57 | 000,947,056 | ---- | M] (Opera Software) -- C:\Program Files\Opera\opera.exe
PRC - [2011-07-04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011-05-18 18:32:40 | 001,233,856 | ---- | M] (Simply Super Software) -- C:\Program Files\Trojan Remover\Trjscan.exe
PRC - [2010-12-28 13:01:24 | 001,056,768 | ---- | M] (VIA Technologies) -- C:\Program Files\VIA\RAID\raid_tool.exe
PRC - [2010-12-28 12:59:20 | 000,516,096 | ---- | M] (VIA Technologies, Inc.) -- C:\Program Files\VIAudioi\SBADeck\ADeck.exe
PRC - [2008-04-15 14:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-03-20 12:04:46 | 002,127,296 | ---- | M] (Gadu-Gadu S.A.) -- D:\PROGRAMY\gg\Gadu-Gadu\gg.exe
PRC - [2007-10-23 14:19:06 | 001,410,344 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
PRC - [2007-10-23 14:18:46 | 000,202,024 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
PRC - [2007-04-30 20:43:54 | 003,450,608 | ---- | M] (Stardock) -- D:\PROGRAMY\ObjectDock\ObjectDock.exe
PRC - [2007-02-04 20:59:08 | 001,769,984 | ---- | M] (Samurize.com) -- D:\PROGRAMY\Samurize\Client.exe
 
 
[color=#E56717]========== Modules (No Company Name) ==========[/color]
 
MOD - [2011-07-12 08:47:29 | 000,136,560 | ---- | M] () -- C:\Program Files\Uniblue\RegistryBooster\locale\pl\pl.dll
MOD - [2011-07-12 08:47:29 | 000,066,416 | ---- | M] () -- C:\Program Files\Uniblue\RegistryBooster\InstallerExtensions.dll
MOD - [2011-07-12 08:47:29 | 000,018,800 | ---- | M] () -- C:\Program Files\Uniblue\RegistryBooster\cwebpage.dll
MOD - [2011-06-06 12:55:36 | 000,300,544 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL
MOD - [2010-12-28 13:01:24 | 000,184,320 | ---- | M] () -- C:\Program Files\VIA\RAID\drvInterface.dll
MOD - [2009-10-28 05:40:14 | 003,885,984 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
MOD - [2008-06-19 21:53:03 | 000,060,416 | ---- | M] () -- C:\WINDOWS\system32\antiwpa.dll
MOD - [2008-03-20 11:17:48 | 000,106,496 | ---- | M] () -- D:\PROGRAMY\gg\Gadu-Gadu\libiax2.dll
MOD - [2008-03-20 11:17:44 | 000,061,440 | ---- | M] () -- D:\PROGRAMY\gg\Gadu-Gadu\libjb.dll
MOD - [2007-10-25 13:51:16 | 000,198,656 | ---- | M] () -- D:\PROGRAMY\gg\Gadu-Gadu\libcurl.dll
MOD - [2007-04-30 20:18:50 | 000,112,400 | ---- | M] () -- D:\PROGRAMY\ObjectDock\DockShellHook.dll
MOD - [2007-04-21 14:47:52 | 000,059,592 | ---- | M] () -- D:\PROGRAMY\ObjectDock\zlib.dll
MOD - [2007-04-19 15:23:48 | 000,095,944 | ---- | M] () -- D:\PROGRAMY\ObjectDock\CrashRpt.dll
MOD - [2002-11-19 15:11:40 | 000,139,264 | ---- | M] () -- C:\Program Files\Common Files\Stardock\ODimg.dll
MOD - [2002-03-13 20:46:32 | 000,118,784 | ---- | M] () -- D:\PROGRAMY\ObjectDock\ODimg.dll
MOD - [2001-10-28 17:42:30 | 000,116,224 | ---- | M] () -- C:\WINDOWS\system32\pdfcmnnt.dll
 
 
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
 
SRV - File not found [Disabled | Stopped] --  -- (NOD32krn)
SRV - File not found [Disabled | Stopped] --  -- (HidServ)
SRV - File not found [On_Demand | Stopped] --  -- (AppMgmt)
SRV - [2011-07-04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011-04-01 08:44:07 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010-12-28 17:13:11 | 000,085,096 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2008-04-15 14:00:00 | 000,003,584 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\System32\regedt32.exe -- (.EsetTrialReset)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV - [2011-08-22 13:00:11 | 000,512,096 | ---- | M] (Eset ) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\amon.sys -- (AMON)
DRV - [2011-08-22 13:00:10 | 000,015,424 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\nod32drv.sys -- (nod32drv)
DRV - [2011-07-04 13:35:12 | 000,102,616 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2010-12-28 14:28:28 | 000,047,616 | ---- | M] (Aladdin Knowledge Systems) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Haspnt.sys -- (Haspnt)
DRV - [2010-12-28 12:59:21 | 000,203,776 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vinyl97.sys -- (VIAudio) Vinyl AC'97 Audio Controller (WDM)
DRV - [2009-05-14 15:49:32 | 000,094,360 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir)
DRV - [2009-05-14 15:47:14 | 000,107,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2009-05-14 15:41:10 | 000,114,472 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2008-06-27 12:00:00 | 000,072,704 | ---- | M] (WIBU-SYSTEMS AG) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\WibuKey.sys -- (WIBUKEY)
DRV - [2008-03-14 08:04:29 | 000,046,652 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2006-12-17 04:50:29 | 001,918,464 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2006-11-22 11:01:48 | 000,693,760 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hardlock.sys -- (hardlock)
DRV - [2005-01-13 10:04:00 | 000,033,536 | ---- | M] (IC Plus Corp.                                                                                                                                                                                                                                                ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ipgdnd51.sys -- (ipgd)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
 
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
 
 
O1 HOSTS File: ([2011-08-22 17:56:13 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1       localhost
O1 - Hosts: ::1       localhost
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4 - HKLM..\Run: [AdobeCS4ServiceManager] C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AudioDeck] C:\Program Files\VIAudioi\SBADeck\ADeck.exe (VIA Technologies, Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [QuickTime Task] D:\PROGRAMY\archicad12\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe (VIA Technologies)
O4 - HKLM..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe (Simply Super Software)
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKCU..\Run: [Gadu-Gadu] D:\PROGRAMY\gg\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.)
O4 - HKCU..\Run: [RegistryBooster] C:\Program Files\Uniblue\RegistryBooster\launcher.exe (Uniblue Systems Limited)
O4 - Startup: C:\Documents and Settings\arkada bp\Menu Start\Programy\Autostart\Client Default.lnk = D:\PROGRAMY\Samurize\Client.exe (Samurize.com)
O4 - Startup: C:\Documents and Settings\arkada bp\Menu Start\Programy\Autostart\Stardock ObjectDock.lnk = D:\PROGRAMY\ObjectDock\ObjectDock.exe (Stardock)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O9 - Extra Button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRAMY\frontpage\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\imon.dll (Eset )
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\System32\imon.dll (Eset )
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1293531401625 (WUWebControl Class)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\Antiwpa: DllName - antiwpa.dll - C:\WINDOWS\System32\antiwpa.dll ()
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\arkada bp\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\arkada bp\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-12-28 11:20:01 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2011-08-22 18:42:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\arkada bp\Dane aplikacji\Uniblue
[2011-08-22 18:42:23 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}
[2011-08-22 18:42:23 | 000,000,000 | ---D | C] -- C:\Program Files\Uniblue
[2011-08-22 18:42:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Uniblue
[2011-08-22 18:42:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\arkada bp\Ustawienia lokalne\Dane aplikacji\PackageAware
[2011-08-22 18:17:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\avast! Free Antivirus
[2011-08-22 18:16:35 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011-08-22 18:16:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software
[2011-08-22 17:55:57 | 000,000,000 | ---D | C] -- C:\_OTL
[2011-08-22 17:10:54 | 000,580,096 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\arkada bp\Pulpit\OTL.exe
[2011-08-22 15:02:40 | 000,019,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2011-08-22 15:02:39 | 000,309,848 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2011-08-22 15:02:33 | 000,025,432 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2011-08-22 15:02:32 | 000,043,608 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2011-08-22 15:02:31 | 000,441,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2011-08-22 15:02:28 | 000,102,616 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
[2011-08-22 15:02:28 | 000,096,344 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
[2011-08-22 15:02:27 | 000,030,808 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
[2011-08-22 15:01:41 | 000,040,112 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2011-08-22 15:01:39 | 000,199,304 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2011-08-22 14:56:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2011-08-22 14:56:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\arkada bp\Moje dokumenty\Simply Super Software
[2011-08-22 14:56:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Trojan Remover
[2011-08-22 14:56:05 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ztvcabinet.dll
[2011-08-22 14:56:03 | 000,000,000 | ---D | C] -- C:\Program Files\Trojan Remover
[2011-08-22 14:56:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\arkada bp\Dane aplikacji\Simply Super Software
[2011-08-22 14:56:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Simply Super Software
[2011-08-22 14:38:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\arkada bp\WINDOWS
[2011-08-22 14:38:41 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011-08-22 14:38:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage
[2011-08-22 14:38:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Office Genuine Advantage
[2011-08-22 14:32:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Office Genuine Advantage(2)
[2011-08-22 14:32:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage(2)
[2011-08-22 13:41:23 | 000,000,000 | ---D | C] -- C:\cmdcons(2)
[2011-08-22 13:00:49 | 000,512,096 | ---- | C] (Eset ) -- C:\WINDOWS\System32\drivers\amon.sys
[2011-08-22 13:00:49 | 000,298,104 | ---- | C] (Eset ) -- C:\WINDOWS\System32\imon.dll
[2011-08-22 12:51:42 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\arkada bp\Recent
[2011-08-22 11:44:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe
[2011-08-22 11:15:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\WinRAR
[2011-08-22 11:07:19 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2011-08-22 11:07:19 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2011-08-22 11:07:19 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2011-08-16 09:09:51 | 000,164,928 | ---- | C] (Borland International) -- C:\WINDOWS\System32\bwcc.dll
[2011-08-16 09:09:51 | 000,022,528 | ---- | C] (Borland Software Corporation) -- C:\WINDOWS\System32\borlndmm.dll
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2011-08-23 08:56:58 | 000,000,272 | ---- | M] () -- C:\WINDOWS\tasks\RegistryBooster.job
[2011-08-23 08:56:52 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-08-22 18:33:47 | 000,000,215 | ---- | M] () -- C:\boot.ini
[2011-08-22 18:17:59 | 000,001,689 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk
[2011-08-22 18:17:54 | 000,002,689 | ---- | M] () -- C:\WINDOWS\System32\config.nt
[2011-08-22 17:56:13 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
[2011-08-22 17:52:11 | 000,001,020 | ---- | M] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_175209.reg
[2011-08-22 17:10:56 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\arkada bp\Pulpit\OTL.exe
[2011-08-22 17:01:07 | 000,007,284 | ---- | M] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_170101.reg
[2011-08-22 16:27:56 | 057,716,768 | ---- | M] () -- C:\Documents and Settings\arkada bp\Pulpit\setup_av_free.exe
[2011-08-22 15:52:09 | 000,000,952 | ---- | M] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_155206.reg
[2011-08-22 15:45:48 | 000,001,020 | ---- | M] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_154543.reg
[2011-08-22 15:11:51 | 000,017,428 | ---- | M] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_151145.reg
[2011-08-22 14:56:08 | 000,000,754 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Trojan Remover.lnk
[2011-08-22 14:34:41 | 000,002,300 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-08-22 14:10:21 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts2.bak
[2011-08-22 13:38:01 | 000,000,215 | ---- | M] () -- C:\Boot.bak
[2011-08-22 13:00:12 | 000,298,104 | ---- | M] (Eset ) -- C:\WINDOWS\System32\imon.dll
[2011-08-22 13:00:11 | 000,512,096 | ---- | M] (Eset ) -- C:\WINDOWS\System32\drivers\amon.sys
[2011-08-22 13:00:10 | 000,015,424 | ---- | M] () -- C:\WINDOWS\System32\drivers\nod32drv.sys
[2011-08-22 12:50:25 | 000,013,322 | ---- | M] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_125021.reg
[2011-08-18 11:32:58 | 000,010,240 | ---- | M] () -- C:\Documents and Settings\arkada bp\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-08-16 09:13:05 | 000,002,643 | ---- | M] () -- C:\WINDOWS\System32\config.hsp
[2011-08-12 15:16:20 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[2011-08-11 08:37:40 | 000,490,284 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2011-08-11 08:37:40 | 000,432,356 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011-08-11 08:37:40 | 000,083,660 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2011-08-11 08:37:40 | 000,067,312 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011-07-25 17:08:54 | 005,969,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2011-08-22 18:42:30 | 000,000,272 | ---- | C] () -- C:\WINDOWS\tasks\RegistryBooster.job
[2011-08-22 18:17:59 | 000,001,689 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk
[2011-08-22 17:52:10 | 000,001,020 | ---- | C] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_175209.reg
[2011-08-22 17:01:03 | 000,007,284 | ---- | C] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_170101.reg
[2011-08-22 16:24:46 | 057,716,768 | ---- | C] () -- C:\Documents and Settings\arkada bp\Pulpit\setup_av_free.exe
[2011-08-22 15:52:08 | 000,000,952 | ---- | C] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_155206.reg
[2011-08-22 15:45:45 | 000,001,020 | ---- | C] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_154543.reg
[2011-08-22 15:11:48 | 000,017,428 | ---- | C] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_151145.reg
[2011-08-22 14:56:08 | 000,000,754 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Trojan Remover.lnk
[2011-08-22 14:56:05 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
[2011-08-22 14:56:05 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll
[2011-08-22 14:56:05 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
[2011-08-22 14:56:05 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll
[2011-08-22 13:00:49 | 000,015,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\nod32drv.sys
[2011-08-22 12:50:23 | 000,013,322 | ---- | C] () -- C:\Documents and Settings\arkada bp\Moje dokumenty\cc_20110822_125021.reg
[2011-08-04 16:10:03 | 001,016,456 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2011-06-30 11:04:36 | 000,000,896 | ---- | C] () -- C:\WINDOWS\rm-win.ini
[2011-06-10 13:07:08 | 000,008,704 | ---- | C] () -- C:\WINDOWS\System32\CNMVS47.DLL
[2011-05-27 08:33:25 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2011-05-27 08:33:25 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2011-05-27 08:33:25 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2011-05-27 08:33:24 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2011-05-27 08:33:24 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2011-04-18 12:16:32 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2011-02-14 15:38:07 | 000,000,068 | ---- | C] () -- C:\WINDOWS\RUNTEST.INI
[2011-01-26 13:39:21 | 000,060,416 | ---- | C] () -- C:\WINDOWS\System32\antiwpa.dll
[2011-01-26 13:38:06 | 000,013,824 | ---- | C] () -- C:\Documents and Settings\arkada bp\Ustawienia lokalne\Dane aplikacji\1-removewga.exe
[2011-01-12 15:24:22 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2010-12-29 12:29:46 | 000,057,552 | ---- | C] () -- C:\WINDOWS\System32\WkDos.exe
[2010-12-28 17:05:01 | 000,000,384 | ---- | C] () -- C:\WINDOWS\fd_win.INI
[2010-12-28 15:57:43 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2010-12-28 15:57:35 | 000,810,496 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2010-12-28 15:57:35 | 000,183,808 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010-12-28 15:57:34 | 000,080,896 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2010-12-28 15:40:03 | 000,010,240 | ---- | C] () -- C:\Documents and Settings\arkada bp\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-12-28 14:40:03 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll
[2010-12-28 14:28:28 | 000,000,383 | ---- | C] () -- C:\WINDOWS\System32\haspdos.sys
[2010-12-28 13:23:56 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2010-12-28 12:12:38 | 000,520,192 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe
[2010-12-28 12:05:30 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010-12-28 12:04:07 | 002,213,608 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-12-28 11:22:29 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-12-28 11:16:48 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2008-04-15 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2008-04-15 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2008-04-15 14:00:00 | 000,490,284 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat
[2008-04-15 14:00:00 | 000,432,356 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2008-04-15 14:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat
[2008-04-15 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2008-04-15 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2008-04-15 14:00:00 | 000,083,660 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat
[2008-04-15 14:00:00 | 000,067,312 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2008-04-15 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2008-04-15 14:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat
[2008-04-15 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2008-04-15 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2008-04-15 14:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2008-04-15 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2008-04-15 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2006-10-12 03:26:36 | 003,107,788 | ---- | C] () -- C:\WINDOWS\System32\ativvaxx.dat
[2006-09-20 22:44:16 | 000,142,347 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
 
[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2010-12-28 10:10:33 | 000,126,464 | ---- | C] ()(C:\Documents and Settings\arkada bp\Moje dokumenty\monta?.doc) -- C:\Documents and Settings\arkada bp\Moje dokumenty\monta�.doc
[2009-12-10 15:32:11 | 000,126,464 | ---- | M] ()(C:\Documents and Settings\arkada bp\Moje dokumenty\monta?.doc) -- C:\Documents and Settings\arkada bp\Moje dokumenty\monta�.doc
 
[color=#E56717]========== Alternate Data Streams ==========[/color]
 
@Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9
 
< End of report >
 
Wygenerowano w 0.152s, przy pomocy GeSHi 1.0.8
'
Podziel się na Facebook Podziel się na BLIP Podziel się na Twitter Podziel się na Buzz Podziel się na Flaker Dodaj zakładkę Google Podziel się na Delicious Wykop to!

Nowy Komentarz:

Komentarze:

Brak Komentarzy!