wklejto.pl

Dodane przez: ~anonim (2010-07-21 19:26) -> text
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
307.
308.
309.
310.
311.
312.
313.
314.
315.
316.
317.
318.
319.
320.
321.
322.
323.
324.
325.
326.
327.
328.
329.
330.
331.
332.
333.
334.
335.
336.
337.
338.
339.
340.
341.
342.
343.
344.
345.
346.
347.
348.
349.
350.
351.
352.
353.
354.
355.
356.
357.
358.
359.
360.
361.
362.
363.
364.
365.
366.
367.
368.
369.
370.
371.
372.
373.
374.
375.
376.
377.
378.
379.
380.
381.
382.
383.
OTL logfile created on: 2010-07-21 19:15:00 - Run 1
OTL by OldTimer - Version 3.2.6.1     Folder = C:\\Documents and Settings\\User\\Pulpit
Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
1 023,00 Mb Total Physical Memory | 616,00 Mb Available Physical Memory | 60,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 86,00% Paging File free
Paging file location(s): C:\\pagefile.sys 1488 2976 [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\\WINDOWS | %ProgramFiles% = C:\\Program Files
Drive C: | 19,53 Gb Total Space | 10,29 Gb Free Space | 52,69% Space Free | Partition Type: NTFS
Drive D: | 129,51 Gb Total Space | 126,34 Gb Free Space | 97,56% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
 
Computer Name: TURKOWSK-17DA3B
Current User Name: User
Logged in as Administrator.
 
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
 
[color=#E56717]========== Processes (All) ==========[/color]
 
PRC - [2010-06-25 17:07:32 | 000,908,248 | ---- | M] (Mozilla Corporation) -- C:\\Program Files\\Mozilla Firefox\\firefox.exe
PRC - [2010-06-23 10:15:30 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\\Documents and Settings\\User\\Pulpit\\OTL.exe
PRC - [2010-06-02 15:40:15 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\\Program Files\\Java\\jre6\\bin\\jqs.exe
PRC - [2010-02-18 11:43:18 | 000,248,040 | ---- | M] (Sun Microsystems, Inc.) -- C:\\Program Files\\Common Files\\Java\\Java Update\\jusched.exe
PRC - [2010-02-10 19:04:34 | 000,103,736 | ---- | M] () -- C:\\WINDOWS\\system32\\PnkBstrB.exe
PRC - [2010-02-10 19:04:25 | 000,066,872 | ---- | M] () -- C:\\WINDOWS\\system32\\PnkBstrA.exe
PRC - [2009-08-06 20:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wuauclt.exe
PRC - [2009-07-21 14:34:33 | 000,185,089 | ---- | M] (Avira GmbH) -- C:\\Program Files\\Avira\\AntiVir Desktop\\avguard.exe
PRC - [2009-07-14 14:34:58 | 000,168,004 | ---- | M] (NVIDIA Corporation) -- C:\\WINDOWS\\system32\\nvsvc32.exe
PRC - [2009-05-13 16:48:22 | 000,108,289 | ---- | M] (Avira GmbH) -- C:\\Program Files\\Avira\\AntiVir Desktop\\sched.exe
PRC - [2009-03-02 13:08:47 | 000,209,153 | ---- | M] (Avira GmbH) -- C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe
PRC - [2009-02-09 12:10:45 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\services.exe
PRC - [2006-10-19 13:52:24 | 000,061,440 | ---- | M] (Hewlett-Packard Company) -- C:\\Program Files\\Common Files\\LightScribe\\LSSrvc.exe
PRC - [2006-03-29 16:12:06 | 000,364,544 | ---- | M] () -- C:\\Program Files\\TP-LINK\\TWCU\\TWCU.exe
PRC - [2006-03-02 14:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\explorer.exe
PRC - [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\winlogon.exe
PRC - [2006-03-02 14:00:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\spoolsv.exe
PRC - [2006-03-02 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\smss.exe
PRC - [2006-03-02 14:00:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\alg.exe
PRC - [2006-03-02 14:00:00 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\rundll32.exe
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe  [RPCSS]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe  [NETWORKSERVICE]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe  [NETSVCS]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe  [LOCALSERVICE]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe  [LOCALSERVICE]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\svchost.exe  [DCOMLAUNCH]
PRC - [2006-03-02 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\lsass.exe
PRC - [2006-03-02 14:00:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\csrss.exe
PRC - [2006-03-01 10:22:04 | 000,577,536 | R--- | M] (Realtek Semiconductor Corp.) -- C:\\WINDOWS\\soundman.exe
PRC - [2005-12-30 08:15:16 | 000,036,864 | ---- | M] () -- C:\\WINDOWS\\system32\\acs.exe
PRC - [2005-03-07 21:33:28 | 000,053,248 | R--- | M] (S3 Graphics, Inc.) -- C:\\WINDOWS\\system32\\VTTimer.exe
PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wdfmgr.exe
 
 
[color=#E56717]========== Modules (All) ==========[/color]
 
MOD - [2010-06-23 10:15:30 | 000,574,464 | ---- | M] (OldTimer Tools) -- C:\\Documents and Settings\\User\\Pulpit\\OTL.exe
MOD - [2010-04-16 17:37:04 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\shlwapi.dll
MOD - [2009-06-25 10:48:08 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\secur32.dll
MOD - [2009-04-15 17:18:19 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\rpcrt4.dll
MOD - [2009-03-21 16:21:24 | 001,014,784 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\kernel32.dll
MOD - [2009-02-09 12:22:08 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\advapi32.dll
MOD - [2009-02-09 12:22:06 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ntdll.dll
MOD - [2008-10-23 15:01:37 | 000,283,648 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\gdi32.dll
MOD - [2008-07-03 15:16:27 | 008,483,328 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\shell32.dll
MOD - [2006-03-02 14:00:00 | 001,281,024 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ole32.dll
MOD - [2006-03-02 14:00:00 | 001,050,624 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\WinSxS\\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\\comctl32.dll
MOD - [2006-03-02 14:00:00 | 000,996,352 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\setupapi.dll
MOD - [2006-03-02 14:00:00 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\comres.dll
MOD - [2006-03-02 14:00:00 | 000,578,560 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\user32.dll
MOD - [2006-03-02 14:00:00 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\oleaut32.dll
MOD - [2006-03-02 14:00:00 | 000,501,248 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\clbcatq.dll
MOD - [2006-03-02 14:00:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\msvcrt.dll
MOD - [2006-03-02 14:00:00 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\comdlg32.dll
MOD - [2006-03-02 14:00:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\uxtheme.dll
MOD - [2006-03-02 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wbem\\framedyn.dll
MOD - [2006-03-02 14:00:00 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\wldap32.dll
MOD - [2006-03-02 14:00:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\winspool.drv
MOD - [2006-03-02 14:00:00 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\ntmarta.dll
MOD - [2006-03-02 14:00:00 | 000,102,400 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\msscript.ocx
MOD - [2006-03-02 14:00:00 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\olepro32.dll
MOD - [2006-03-02 14:00:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\srclient.dll
MOD - [2006-03-02 14:00:00 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\samlib.dll
MOD - [2006-03-02 14:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\psapi.dll
MOD - [2006-03-02 14:00:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\\WINDOWS\\system32\\version.dll
 
 
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
 
SRV - [2009-12-16 19:26:00 | 003,453,712 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\\WINDOWS\\System32\\GameMon.des -- (npggsvc)
SRV - [2009-07-21 14:34:33 | 000,185,089 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\\Program Files\\Avira\\AntiVir Desktop\\avguard.exe -- (AntiVirService)
SRV - [2009-05-13 16:48:22 | 000,108,289 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\\Program Files\\Avira\\AntiVir Desktop\\sched.exe -- (AntiVirSchedulerService)
SRV - [2005-12-30 08:15:16 | 000,036,864 | ---- | M] () [Auto | Running] -- C:\\WINDOWS\\system32\\acs.exe -- (ACS)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV - [2010-02-10 19:39:41 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\\WINDOWS\\System32\\Drivers\\sptd.sys -- (sptd)
DRV - [2009-11-25 12:19:02 | 000,056,816 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\\WINDOWS\\system32\\drivers\\avgntflt.sys -- (avgntflt)
DRV - [2009-07-14 20:54:00 | 007,741,664 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\nv4_mini.sys -- (nv)
DRV - [2009-05-11 10:12:24 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\\WINDOWS\\system32\\drivers\\ssmdrv.sys -- (ssmdrv)
DRV - [2009-03-30 10:33:07 | 000,096,104 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\\WINDOWS\\system32\\drivers\\avipbb.sys -- (avipbb)
DRV - [2009-02-13 12:35:05 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\\Program Files\\Avira\\AntiVir Desktop\\avgio.sys -- (avgio)
DRV - [2006-03-31 08:38:48 | 003,960,896 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2006-02-23 05:39:06 | 000,011,264 | R--- | M] (VIA Technologies,Inc) [Kernel | Boot | Running] -- C:\\WINDOWS\\system32\\DRIVERS\\xfilt.sys -- (xfilt)
DRV - [2006-02-23 05:38:32 | 000,009,728 | R--- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\\WINDOWS\\system32\\DRIVERS\\videX32.sys -- (videX32)
DRV - [2005-12-21 10:16:34 | 000,470,048 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\\WINDOWS\\system32\\drivers\\ar5211.sys -- (AR5211)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Local Page = %SystemRoot%\\system32\\blank.htm
 
 
IE - HKU\\.DEFAULT\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyEnable\" = 0
 
IE - HKU\\S-1-5-18\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyEnable\" = 0
 
 
 
IE - HKU\\S-1-5-21-789336058-1454471165-839522115-1003\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Start Page = http://www.wp.pl/
IE - HKU\\S-1-5-21-789336058-1454471165-839522115-1003\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyEnable\" = 0
 
[color=#E56717]========== FireFox ==========[/color]
 
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: nasanightlaunch@example.com:0.6.20100112
 
FF - HKLM\\software\\mozilla\\Mozilla Firefox 3.5.10\\extensions\\\\Components: C:\\Program Files\\Mozilla Firefox\\components [2010-07-21 15:09:40 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Mozilla Firefox 3.5.10\\extensions\\\\Plugins: C:\\Program Files\\Mozilla Firefox\\plugins [2010-06-25 17:07:37 | 000,000,000 | ---D | M]
 
[2009-07-04 10:22:34 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\Mozilla\\Extensions
[2010-07-20 21:25:26 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\96p4g2cp.default\\extensions
[2009-10-23 19:46:27 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\\Documents and Settings\\User\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\96p4g2cp.default\\extensions\\{20a82645-c095-46ed-80e3-08825760534b}
[2010-01-30 15:15:06 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\Mozilla\\Firefox\\Profiles\\96p4g2cp.default\\extensions\\nasanightlaunch@example.com
[2010-07-20 21:25:26 | 000,000,000 | ---D | M] -- C:\\Program Files\\Mozilla Firefox\\extensions
[2010-06-02 15:40:28 | 000,000,000 | ---D | M] (Java Console) -- C:\\Program Files\\Mozilla Firefox\\extensions\\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010-06-02 15:40:15 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\\Program Files\\Mozilla Firefox\\plugins\\npdeployJava1.dll
[2008-11-20 15:42:10 | 000,081,920 | ---- | M] (COMARCH S.A.) -- C:\\Program Files\\Mozilla Firefox\\plugins\\npNOL3_ns8_mozilla.dll
[2010-02-19 18:38:45 | 000,238,776 | ---- | M] (Pando Networks) -- C:\\Program Files\\Mozilla Firefox\\plugins\\npPandoWebInst.dll
[2009-06-24 14:27:26 | 000,002,767 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\allegro-pl.xml
[2009-06-24 14:27:26 | 000,001,406 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\fbc-pl.xml
[2009-06-24 14:27:26 | 000,000,917 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\merlin-pl.xml
[2009-06-24 14:27:26 | 000,000,858 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\pwn-pl.xml
[2009-06-24 14:27:26 | 000,001,183 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\wikipedia-pl.xml
[2009-06-24 14:27:26 | 000,001,683 | ---- | M] () -- C:\\Program Files\\Mozilla Firefox\\searchplugins\\wp-pl.xml
 
O1 HOSTS File: ([2010-02-11 13:21:38 | 000,000,091 | ---- | M]) - C:\\WINDOWS\\system32\\drivers\\etc\\hosts
O1 - Hosts:    
O1 - Hosts:         
O4 - HKLM..\\Run: [avgnt] C:\\Program Files\\Avira\\AntiVir Desktop\\avgnt.exe (Avira GmbH)
O4 - HKLM..\\Run: [NeroFilterCheck] C:\\Program Files\\Common Files\\Ahead\\Lib\\NeroCheck.exe (Nero AG)
O4 - HKLM..\\Run: [NvCplDaemon] C:\\WINDOWS\\System32\\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\\Run: [NvMediaCenter] C:\\WINDOWS\\System32\\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\\Run: [nwiz] C:\\Program Files\\NVIDIA Corporation\\nView\\nwiz.exe ()
O4 - HKLM..\\Run: [SoundMan] C:\\WINDOWS\\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\\Run: [TWCU] C:\\Program Files\\TP-LINK\\TWCU\\TWCU.exe ()
O4 - HKLM..\\Run: [VTTimer] C:\\WINDOWS\\System32\\VTTimer.exe (S3 Graphics, Inc.)
O4 - HKLM..\\Run: [VTTrayp] C:\\WINDOWS\\System32\\VTTrayp.exe (S3 Graphics Co., Ltd.)
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: HonorAutoRunSetting = 1
O7 - HKU\\.DEFAULT\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\\S-1-5-18\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\\S-1-5-19\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\\S-1-5-20\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\\S-1-5-21-789336058-1454471165-839522115-1003\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\\S-1-5-21-789336058-1454471165-839522115-1003\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoFolderOptions = 1
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O18 - Protocol\\Handler\\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\Program Files\\Common Files\\Skype\\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\\WINDOWS\\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\\Documents and Settings\\User\\Ustawienia lokalne\\Dane aplikacji\\Microsoft\\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\\Documents and Settings\\User\\Ustawienia lokalne\\Dane aplikacji\\Microsoft\\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-02-11 12:58:07 | 000,000,007 | -HS- | M] () - C:\\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35 - HKLM\\..comfile [open] -- \"%1\" %*
O35 - HKLM\\..exefile [open] -- \"%1\" %*
O37 - HKLM\\...com [@ = comfile] -- \"%1\" %*
O37 - HKLM\\...exe [@ = exefile] -- \"%1\" %*
 
NetSvcs: 6to4 -  File not found
NetSvcs: Ias - C:\\WINDOWS\\system32\\ias [2009-07-04 09:17:51 | 000,000,000 | ---D | M]
NetSvcs: Iprip -  File not found
NetSvcs: Irmon -  File not found
NetSvcs: NWCWorkstation -  File not found
NetSvcs: Nwsapagent -  File not found
NetSvcs: WmdmPmSp -  File not found
 
 
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2010-07-12 17:05:40 | 000,000,000 | ---D | C] -- C:\\Documents and Settings\\User\\Dane aplikacji\\gtk-2.0
[2010-07-12 17:05:37 | 000,000,000 | ---D | C] -- C:\\Documents and Settings\\User\\.thumbnails
[2010-07-12 17:00:24 | 000,000,000 | ---D | C] -- C:\\Documents and Settings\\User\\.gimp-2.6
[2010-07-12 17:00:20 | 000,000,000 | ---D | C] -- C:\\Documents and Settings\\User\\.gegl-0.0
[4 C:\\WINDOWS\\*.tmp files -> C:\\WINDOWS\\*.tmp -> ]
[1 C:\\WINDOWS\\System32\\*.tmp files -> C:\\WINDOWS\\System32\\*.tmp -> ]
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2010-07-21 19:13:26 | 003,407,872 | -H-- | M] () -- C:\\Documents and Settings\\User\\NTUSER.DAT
[2010-07-21 19:10:40 | 000,243,457 | ---- | M] () -- C:\\WINDOWS\\System32\\NvApps.xml
[2010-07-21 19:10:37 | 000,013,646 | ---- | M] () -- C:\\WINDOWS\\System32\\wpa.dbl
[2010-07-21 19:10:29 | 000,000,006 | -H-- | M] () -- C:\\WINDOWS\\tasks\\SA.DAT
[2010-07-21 19:10:27 | 000,002,048 | --S- | M] () -- C:\\WINDOWS\\bootstat.dat
[2010-07-21 18:45:52 | 000,000,188 | -HS- | M] () -- C:\\Documents and Settings\\User\\ntuser.ini
[2010-07-20 22:40:58 | 006,915,426 | -H-- | M] () -- C:\\Documents and Settings\\User\\Ustawienia lokalne\\Dane aplikacji\\IconCache.db
[2010-07-12 23:23:35 | 000,000,115 | ---- | M] () -- C:\\Documents and Settings\\User\\default.pls
[2010-07-12 23:23:30 | 000,000,116 | ---- | M] () -- C:\\WINDOWS\\NeroDigital.ini
[2010-07-12 17:33:42 | 000,000,853 | ---- | M] () -- C:\\Documents and Settings\\User\\.recently-used.xbel
[2010-06-23 15:24:52 | 001,070,408 | ---- | M] () -- C:\\WINDOWS\\System32\\PerfStringBackup.INI
[2010-06-23 15:24:52 | 000,499,958 | ---- | M] () -- C:\\WINDOWS\\System32\\perfh015.dat
[2010-06-23 15:24:52 | 000,441,124 | ---- | M] () -- C:\\WINDOWS\\System32\\perfh009.dat
[2010-06-23 15:24:52 | 000,088,618 | ---- | M] () -- C:\\WINDOWS\\System32\\perfc015.dat
[2010-06-23 15:24:52 | 000,071,060 | ---- | M] () -- C:\\WINDOWS\\System32\\perfc009.dat
[4 C:\\WINDOWS\\*.tmp files -> C:\\WINDOWS\\*.tmp -> ]
[1 C:\\WINDOWS\\System32\\*.tmp files -> C:\\WINDOWS\\System32\\*.tmp -> ]
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2010-07-12 17:33:42 | 000,000,853 | ---- | C] () -- C:\\Documents and Settings\\User\\.recently-used.xbel
[2010-02-10 19:39:41 | 000,691,696 | ---- | C] () -- C:\\WINDOWS\\System32\\drivers\\sptd.sys
[2010-02-10 19:04:44 | 000,022,328 | ---- | C] () -- C:\\WINDOWS\\System32\\drivers\\PnkBstrK.sys
[2010-02-10 19:04:23 | 000,000,319 | ---- | C] () -- C:\\WINDOWS\\game.ini
[2009-12-30 21:26:52 | 000,000,151 | ---- | C] () -- C:\\WINDOWS\\PhotoSnapViewer.INI
[2009-08-07 17:08:38 | 000,000,116 | ---- | C] () -- C:\\WINDOWS\\NeroDigital.ini
[2009-07-04 10:06:45 | 000,135,168 | R--- | C] () -- C:\\WINDOWS\\System32\\RtlCPAPI.dll
[2009-07-04 10:06:38 | 000,000,164 | R--- | C] () -- C:\\WINDOWS\\avrack.ini
[2009-07-04 10:05:55 | 000,061,440 | R--- | C] () -- C:\\WINDOWS\\System32\\vuins32.dll
[2009-07-04 09:35:43 | 000,249,856 | ---- | C] () -- C:\\WINDOWS\\System32\\wgapi.dll
[2006-03-02 14:00:00 | 000,027,440 | ---- | C] () -- C:\\WINDOWS\\System32\\drivers\\secdrv.sys
 
[color=#E56717]========== LOP Check ==========[/color]
 
[2010-02-10 19:39:25 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\All Users\\Dane aplikacji\\DAEMON Tools Lite
[2010-07-03 09:55:23 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\All Users\\Dane aplikacji\\OpenFM
[2010-06-06 10:20:04 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\All Users\\Dane aplikacji\\PMB Files
[2010-02-10 19:44:42 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\DAEMON Tools Lite
[2009-11-20 17:58:17 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\DBM
[2010-07-12 17:33:42 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\gtk-2.0
[2009-08-15 16:21:23 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\Nowe Gadu-Gadu
[2009-08-15 16:24:04 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\OpenFM
[2010-04-16 14:24:55 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\Tibia
[2009-10-30 16:36:33 | 000,000,000 | ---D | M] -- C:\\Documents and Settings\\User\\Dane aplikacji\\WoDBO
 
[color=#E56717]========== Purity Check ==========[/color]
 
 
 
[color=#E56717]========== Custom Scans ==========[/color]
 
 
[color=#A23BEC]< %systemdrive%\\*.* >[/color]
[2009-07-04 10:07:10 | 000,000,032 | ---- | M] () -- C:\\ALCSetup.log
[2010-02-11 12:58:07 | 000,000,007 | -HS- | M] () -- C:\\AUTOEXEC.BAT
[2009-07-04 08:58:14 | 000,000,211 | -HS- | M] () -- C:\\boot.ini
[2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\\Bootfont.bin
[2009-07-04 09:18:17 | 000,000,000 | ---- | M] () -- C:\\CONFIG.SYS
[2009-07-04 09:18:17 | 000,000,000 | RHS- | M] () -- C:\\IO.SYS
[2009-07-04 09:18:17 | 000,000,000 | RHS- | M] () -- C:\\MSDOS.SYS
[2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\\NTDETECT.COM
[2006-03-02 14:00:00 | 000,250,624 | RHS- | M] () -- C:\\ntldr
[2010-07-21 19:10:25 | 1560,281,088 | -HS- | M] () -- C:\\pagefile.sys
 
 
[color=#A23BEC]< MD5 for: AGP440.SYS  >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\\WINDOWS\\Driver Cache\\i386\\sp2.cab:agp440.sys
[2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\\WINDOWS\\SoftwareDistribution\\Download\\51fc2b55c6deef38fc801319336cdbc7\\agp440.sys
 
[color=#A23BEC]< MD5 for: ATAPI.SYS  >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\\WINDOWS\\Driver Cache\\i386\\sp2.cab:atapi.sys
[2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\\WINDOWS\\SoftwareDistribution\\Download\\51fc2b55c6deef38fc801319336cdbc7\\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\\WINDOWS\\system32\\drivers\\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\\WINDOWS\\system32\\ReinstallBackups\\0007\\DriverFiles\\i386\\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\\WINDOWS\\system32\\ReinstallBackups\\0008\\DriverFiles\\i386\\atapi.sys
 
[color=#A23BEC]< MD5 for: BEEP.SYS  >[/color]
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\\WINDOWS\\system32\\dllcache\\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\\WINDOWS\\system32\\drivers\\beep.sys
 
[color=#A23BEC]< MD5 for: CDROM.SYS  >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\\WINDOWS\\Driver Cache\\i386\\sp2.cab:cdrom.sys
[2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\\WINDOWS\\SoftwareDistribution\\Download\\51fc2b55c6deef38fc801319336cdbc7\\cdrom.sys
[2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\\WINDOWS\\system32\\drivers\\cdrom.sys
 
[color=#A23BEC]< MD5 for: NDIS.SYS  >[/color]
[2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\\WINDOWS\\SoftwareDistribution\\Download\\51fc2b55c6deef38fc801319336cdbc7\\ndis.sys
[2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\\WINDOWS\\system32\\dllcache\\ndis.sys
[2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\\WINDOWS\\system32\\drivers\\ndis.sys
 
[color=#A23BEC]< MD5 for: USERINIT.EXE  >[/color]
[2008-04-14 19:21:45 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=2A5B37D520508BE6570A3EA79695F5B5 -- C:\\WINDOWS\\SoftwareDistribution\\Download\\51fc2b55c6deef38fc801319336cdbc7\\userinit.exe
[2006-03-02 14:00:00 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=BD768099B4C44AA631728CB74EB54396 -- C:\\WINDOWS\\system32\\dllcache\\userinit.exe
[2006-03-02 14:00:00 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=BD768099B4C44AA631728CB74EB54396 -- C:\\WINDOWS\\system32\\userinit.exe
 
[color=#A23BEC]< MD5 for: WINLOGON.EXE  >[/color]
[2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\\WINDOWS\\system32\\dllcache\\winlogon.exe
[2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\\WINDOWS\\system32\\winlogon.exe
< End of report >
 
Wygenerowano w 0.214s, przy pomocy GeSHi 1.0.8
'
Podziel się na Facebook Podziel się na BLIP Podziel się na Twitter Podziel się na Buzz Podziel się na Flaker Dodaj zakładkę Google Podziel się na Delicious Wykop to!

Nowy Komentarz:

Komentarze:

Brak Komentarzy!