ComboFix 09-02-21.01 - Domek 2009-02-22 18:33:18.3 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.3.1250.1.1045.18.511.238 [GMT 1:00] Uruchomiony z: c:\\documents and settings\\Domek\\Pulpit\\ComboFix.exe AV: Avira AntiVir PersonalEdition *On-access scanning disabled* (Updated) . ((((((((((((((((((((((((( Pliki utworzone od 2009-01-22 do 2009-02-22 ))))))))))))))))))))))))))))))) . 2009-02-22 16:22 . 2009-02-22 16:56 d-------- c:\\program files\\Windows Live Safety Center 2009-02-21 20:40 . 2009-02-21 20:40 8,908 --ah----- c:\\windows\\system32\\mlfcache.dat 2009-02-21 19:22 . 2009-02-21 20:49 d-------- c:\\documents and settings\\All Users.WINDOWS\\Dane aplikacji\\Spybot - Search & Destroy 2009-02-21 13:44 . 2009-02-21 13:44 d-------- c:\\program files\\Avira 2009-02-21 13:44 . 2009-02-21 13:44 d-------- c:\\documents and settings\\All Users.WINDOWS\\Dane aplikacji\\Avira 2009-02-21 09:46 . 2009-02-21 09:46 d-------- c:\\program files\\Trend Micro 2009-02-20 16:53 . 2009-02-20 16:53 d-------- c:\\program files\\K-Lite Codec Pack 2009-02-20 14:18 . 2009-02-20 15:15 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Any Video Converter 2009-02-20 09:47 . 2009-02-20 09:47 d-------- c:\\documents and settings\\Domek\\.gstreamer-0.10 2009-02-20 09:45 . 2009-02-20 09:45 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Nowe Gadu-Gadu 2009-02-20 09:45 . 2004-08-03 23:31 20,992 --a------ c:\\windows\\system32\\drivers\\RTL8139.sys 2009-02-20 09:21 . 2008-10-16 14:06 268,648 --a------ c:\\windows\\system32\\mucltui.dll 2009-02-20 09:21 . 2008-10-16 14:06 27,496 --a------ c:\\windows\\system32\\mucltui.dll.mui 2009-02-19 18:57 . 2008-04-14 18:20 21,504 --a------ c:\\windows\\system32\\hidserv.dll 2009-02-19 18:57 . 2008-04-14 18:20 21,504 --a--c--- c:\\windows\\system32\\dllcache\\hidserv.dll 2009-02-19 18:57 . 2008-04-14 17:20 14,720 --a------ c:\\windows\\system32\\drivers\\kbdhid.sys 2009-02-19 18:57 . 2008-04-14 17:20 14,720 --a--c--- c:\\windows\\system32\\dllcache\\kbdhid.sys 2009-02-19 18:56 . 2008-04-13 19:45 32,128 --a------ c:\\windows\\system32\\drivers\\usbccgp.sys 2009-02-19 18:56 . 2008-04-13 19:45 32,128 --a--c--- c:\\windows\\system32\\dllcache\\usbccgp.sys 2009-02-19 16:07 . 2008-04-13 19:46 10,880 --a------ c:\\windows\\system32\\drivers\\NdisIP.sys 2009-02-19 16:07 . 2008-04-13 19:46 10,880 --a--c--- c:\\windows\\system32\\dllcache\\ndisip.sys 2009-02-19 16:07 . 2008-04-13 19:39 5,504 --a------ c:\\windows\\system32\\drivers\\MSTEE.sys 2009-02-19 16:07 . 2008-04-13 19:39 5,504 --a--c--- c:\\windows\\system32\\dllcache\\mstee.sys 2009-02-19 16:02 . 2005-10-11 13:54 339,968 --a------ c:\\windows\\vsnpstd.exe 2009-02-19 16:02 . 2002-07-03 11:44 53,248 --a------ c:\\windows\\amcap.exe 2009-02-19 16:02 . 2005-12-06 13:08 20,480 --a------ c:\\windows\\CameraFixer.exe 2009-02-19 16:02 . 2003-01-17 17:34 15,541 --a------ c:\\windows\\snpstd.ini 2009-02-19 16:02 . 2003-01-17 17:35 13,023 --a------ c:\\windows\\snpstd.src 2009-02-19 16:01 . 2005-11-18 10:44 390,656 --a------ c:\\windows\\system32\\drivers\\snpstd.sys 2009-02-19 16:01 . 2005-04-20 17:34 61,440 --a------ c:\\windows\\system32\\rsnpstd.dll 2009-02-19 16:01 . 2004-02-16 13:59 61,440 --a------ c:\\windows\\system32\\csnpstd.dll 2009-02-19 16:01 . 2005-04-20 17:16 36,864 --a------ c:\\windows\\system32\\vsnpstd.dll 2009-02-19 16:01 . 2005-10-19 19:22 36,864 --a------ c:\\windows\\system32\\dsnpstd.ax 2009-02-19 16:01 . 2005-02-01 19:29 20,480 --a------ c:\\windows\\usnpstd.exe 2009-02-19 15:44 . 2009-02-19 15:44 0 --a------ c:\\windows\\ativpsrm.bin 2009-02-19 15:42 . 2009-01-13 21:05 593,920 --------- c:\\windows\\system32\\ati2sgag.exe 2009-02-19 15:41 . 2009-02-19 15:41 d-------- C:\\ATI 2009-02-19 14:46 . 2009-02-19 14:46 d-------- c:\\windows\\system32\\pl 2009-02-19 14:46 . 2009-02-19 14:46 d-------- c:\\windows\\system32\\bits 2009-02-19 14:46 . 2009-02-19 14:46 d-------- c:\\windows\\l2schemas 2009-02-19 14:44 . 2009-02-19 14:44 d-------- c:\\windows\\ServicePackFiles 2009-02-19 14:21 . 2009-02-19 14:21 d---s---- c:\\documents and settings\\Domek\\UserData 2009-02-19 12:38 . 2009-02-22 17:16 d-------- c:\\program files\\Microsoft Bootvis 2009-02-19 12:35 . 2009-02-21 09:56 d-------- c:\\documents and settings\\All Users.WINDOWS\\Dane aplikacji\\WinZip 2009-02-18 22:45 . 2009-02-18 23:12 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Winamp 2009-02-18 22:23 . 2004-07-17 10:36 184,137 -----c--- c:\\windows\\system32\\dllcache\\compact.wmz 2009-02-18 22:23 . 2004-07-17 22:55 129,045 --------- c:\\windows\\system32\\drivers\\cxthsfs2.cty 2009-02-18 22:23 . 2006-03-02 13:00 9,585 -----c--- c:\\windows\\system32\\dllcache\\controls.css 2009-02-18 22:23 . 2006-03-02 13:00 999 -----c--- c:\\windows\\system32\\dllcache\\bktrh.gif 2009-02-18 22:23 . 2006-03-02 13:00 773 -----c--- c:\\windows\\system32\\dllcache\\cnth.gif 2009-02-18 22:23 . 2006-03-02 13:00 773 -----c--- c:\\windows\\system32\\dllcache\\cnt.gif 2009-02-18 22:23 . 2006-03-02 13:00 772 -----c--- c:\\windows\\system32\\dllcache\\cntd.gif 2009-02-18 22:23 . 2006-03-02 13:00 760 -----c--- c:\\windows\\system32\\dllcache\\cloapph.gif 2009-02-18 22:23 . 2006-03-02 13:00 717 -----c--- c:\\windows\\system32\\dllcache\\cloapp.gif 2009-02-18 22:09 . 2007-03-08 00:51 129,784 --------- c:\\windows\\system32\\pxafs.dll 2009-02-18 22:09 . 2007-03-08 00:51 9,464 --------- c:\\windows\\system32\\drivers\\cdralw2k.sys 2009-02-18 22:09 . 2007-03-08 00:51 9,336 --------- c:\\windows\\system32\\drivers\\cdr4_xp.sys 2009-02-18 21:36 . 2009-02-21 13:42 d-a------ c:\\documents and settings\\All Users.WINDOWS\\Dane aplikacji\\TEMP 2009-02-18 20:27 . 2009-02-18 20:27 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Auslogics 2009-02-18 20:12 . 2009-02-20 17:08 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Media Player Classic 2009-02-18 20:08 . 2008-12-12 18:03 3,088,896 -----c--- c:\\windows\\system32\\dllcache\\mshtml.dll 2009-02-18 20:08 . 2008-10-16 02:02 1,499,136 -----c--- c:\\windows\\system32\\dllcache\\shdocvw.dll 2009-02-18 20:08 . 2008-10-16 02:02 668,672 -----c--- c:\\windows\\system32\\dllcache\\wininet.dll 2009-02-18 20:08 . 2008-10-16 02:02 619,520 -----c--- c:\\windows\\system32\\dllcache\\urlmon.dll 2009-02-18 20:03 . 2008-06-14 18:36 273,024 --------- c:\\windows\\system32\\drivers\\bthport.sys 2009-02-18 20:03 . 2008-06-14 18:36 273,024 -----c--- c:\\windows\\system32\\dllcache\\bthport.sys 2009-02-18 19:56 . 2009-02-20 14:45 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\PC Suite 2009-02-18 19:56 . 2009-02-21 18:52 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Nokia 2009-02-18 19:56 . 2009-02-18 19:56 d-------- c:\\documents and settings\\All Users.WINDOWS\\Dane aplikacji\\PC Suite 2009-02-18 19:55 . 2008-09-15 07:56 91,136 --a------ c:\\windows\\system32\\nmwcdcls.dll 2009-02-18 19:55 . 2008-08-26 09:26 18,816 --a------ c:\\windows\\system32\\drivers\\pccsmcfd.sys 2009-02-18 19:54 . 2009-02-18 19:54 d-------- c:\\documents and settings\\All Users.WINDOWS\\Dane aplikacji\\Installations 2009-02-18 19:39 . 2004-01-12 00:00 348,160 --a------ c:\\windows\\system32\\msvcr71.dll 2009-02-18 19:30 . 2009-02-18 19:30 d-------- c:\\program files\\AskSearch 2009-02-18 19:29 . 2002-06-06 16:13 1,077,344 --a------ c:\\windows\\system32\\mscomctl.ocx 2009-02-18 19:29 . 2002-01-05 06:48 974,848 --a------ c:\\windows\\system32\\mfc70.dll 2009-02-18 19:29 . 2000-05-22 16:58 608,448 --a------ c:\\windows\\system32\\comctl32.ocx 2009-02-18 19:29 . 2002-01-05 05:40 487,424 --a------ c:\\windows\\system32\\msvcp70.dll 2009-02-18 19:29 . 2002-01-05 11:37 344,064 --a------ c:\\windows\\system32\\msvcr70.dll 2009-02-18 19:29 . 1998-12-24 20:23 40,960 --a------ c:\\windows\\system32\\VBAME.DLL 2009-02-18 19:23 . 2001-08-17 22:59 3,072 --a------ c:\\windows\\system32\\drivers\\audstub.sys 2009-02-18 19:22 . 2008-04-14 17:05 58,880 --a------ c:\\windows\\system32\\drivers\\redbook.sys 2009-02-18 19:22 . 2004-08-03 23:31 20,992 --a--c--- c:\\windows\\system32\\dllcache\\rtl8139.sys 2009-02-18 19:21 . 2008-04-14 18:20 77,312 --a------ c:\\windows\\system32\\usbui.dll 2009-02-18 19:21 . 2008-04-13 19:36 42,368 --a------ c:\\windows\\system32\\drivers\\agp440.sys 2009-02-18 19:21 . 2008-04-14 17:16 5,504 --a------ c:\\windows\\system32\\drivers\\intelide.sys 2009-02-18 19:19 . 2009-02-22 18:35 dr-h----- c:\\documents and settings\\Default User.WINDOWS\\Ustawienia lokalne 2009-02-18 19:19 . 2009-02-18 19:19 d-------- c:\\documents and settings\\Default User.WINDOWS\\Ulubione 2009-02-18 19:19 . 2009-02-18 18:26 d--h----- c:\\documents and settings\\Default User.WINDOWS\\Szablony 2009-02-18 19:19 . 2009-02-18 19:19 d-------- c:\\documents and settings\\Default User.WINDOWS\\Pulpit 2009-02-18 19:19 . 2009-02-18 19:19 d-------- c:\\documents and settings\\Default User.WINDOWS\\Moje dokumenty 2009-02-18 19:19 . 2009-02-18 19:19 dr------- c:\\documents and settings\\Default User.WINDOWS\\Menu Start 2009-02-18 19:19 . 2009-02-18 19:19 d-------- c:\\documents and settings\\All Users.WINDOWS\\Ulubione 2009-02-18 19:19 . 2009-02-18 19:19 d--h----- c:\\documents and settings\\All Users.WINDOWS\\Szablony 2009-02-18 19:19 . 2009-02-21 21:47 d-------- c:\\documents and settings\\All Users.WINDOWS\\Pulpit 2009-02-18 19:19 . 2009-02-21 09:56 dr------- c:\\documents and settings\\All Users.WINDOWS\\Menu Start 2009-02-18 19:19 . 2009-02-22 12:51 dr------- c:\\documents and settings\\All Users.WINDOWS\\Dokumenty 2009-02-18 19:18 . 2009-02-18 19:19 dr-h----- c:\\documents and settings\\Default User.WINDOWS\\Dane aplikacji 2009-02-18 19:18 . 2009-02-18 18:42 d--h----- c:\\documents and settings\\Default User.WINDOWS 2009-02-18 19:18 . 2009-02-21 19:22 dr-h----- c:\\documents and settings\\All Users.WINDOWS\\Dane aplikacji 2009-02-18 19:18 . 2009-02-18 18:30 d-------- c:\\documents and settings\\All Users.WINDOWS 2009-02-18 19:17 . 2008-09-15 16:27 1,846,656 -----c--- c:\\windows\\system32\\dllcache\\win32k.sys 2009-02-18 19:17 . 2009-02-18 18:38 782 --a------ c:\\windows\\system32\\$winnt$.inf 2009-02-18 19:16 . 2008-08-14 14:26 2,190,464 -----c--- c:\\windows\\system32\\dllcache\\ntoskrnl.exe 2009-02-18 19:16 . 2008-08-14 14:26 2,146,816 -----c--- c:\\windows\\system32\\dllcache\\ntkrnlmp.exe 2009-02-18 19:16 . 2008-08-14 14:26 2,067,328 -----c--- c:\\windows\\system32\\dllcache\\ntkrnlpa.exe 2009-02-18 19:16 . 2008-08-14 14:26 2,025,472 -----c--- c:\\windows\\system32\\dllcache\\ntkrpamp.exe 2009-02-18 19:12 . 2009-02-18 19:20 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Skype 2009-02-18 19:09 . 2009-02-18 19:09 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Onet 2009-02-18 19:08 . 2009-02-18 19:08 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\MozillaControl 2009-02-18 19:06 . 2008-05-08 15:02 203,136 -----c--- c:\\windows\\system32\\dllcache\\rmcast.sys 2009-02-18 19:05 . 2008-10-24 12:21 455,296 -----c--- c:\\windows\\system32\\dllcache\\mrxsmb.sys 2009-02-18 19:04 . 2009-02-18 19:04 13,646 --a------ c:\\windows\\system32\\wpa.bak 2009-02-18 18:59 . 2008-12-11 11:57 333,952 -----c--- c:\\windows\\system32\\dllcache\\srv.sys 2009-02-18 18:57 . 2008-04-11 20:06 691,712 -----c--- c:\\windows\\system32\\dllcache\\inetcomm.dll 2009-02-18 18:56 . 2009-02-18 18:56 d-------- c:\\documents and settings\\Domek\\Dane aplikacji\\Gadu-Gadu 2009-02-18 18:55 . 2009-02-18 19:03 d-------- c:\\documents and settings\\Domek\\Gadu-Gadu 2009-02-18 18:54 . 2008-10-15 17:36 337,408 -----c--- c:\\windows\\system32\\dllcache\\netapi32.dll 2009-02-18 18:50 . 2007-08-10 20:53 26,488 --a------ c:\\windows\\system32\\spupdsvc.exe 2009-02-18 18:49 . 2009-02-18 18:49 d-------- c:\\documents and settings\\All Users.WINDOWS\\Dane aplikacji\\QuickTime 2009-02-18 18:45 . 2009-02-18 18:45 25 --a------ c:\\windows\\mixerdef.ini 2009-02-18 18:43 . 2008-04-13 20:17 83,072 --a------ c:\\windows\\system32\\drivers\\wdmaud.sys 2009-02-18 18:43 . 2008-04-13 19:45 56,576 --a------ c:\\windows\\system32\\drivers\\swmidi.sys 2009-02-18 18:43 . 2008-04-13 19:45 52,864 --a------ c:\\windows\\system32\\drivers\\dmusic.sys 2009-02-18 18:43 . 2008-04-13 19:45 6,272 --a------ c:\\windows\\system32\\drivers\\splitter.sys . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-02-21 17:45 --------- d-----w c:\\program files\\Common Files\\Nokia 2009-02-20 15:51 --------- d-----w c:\\program files\\ACE Mega CoDecS Pack 2009-02-20 08:44 --------- d--h--w c:\\program files\\InstallShield Installation Information 2009-02-19 15:02 --------- d-----w c:\\program files\\Common Files\\snpstd 2009-02-18 21:49 --------- d-----w c:\\program files\\Winamp 2009-02-18 19:11 --------- d-----w c:\\program files\\Opera 2009-02-18 19:02 --------- d-----w c:\\program files\\Ares 2009-02-18 19:01 --------- d-----w c:\\program files\\7-Zip 2009-02-18 18:55 --------- d-----w c:\\program files\\PC Connectivity Solution 2009-02-18 18:50 --------- d-----w c:\\program files\\Common Files\\Adobe 2009-02-12 14:19 --------- d-----w c:\\documents and settings\\MateUsz\\Dane aplikacji\\Skype 2009-02-09 18:56 67,584 ----a-w c:\\windows\\system32\\ff_vfw.dll 2009-02-09 16:41 --------- d-----w c:\\program files\\Common Files\\Symantec Shared 2009-01-25 13:42 --------- d-----w c:\\documents and settings\\MateUsz\\Dane aplikacji\\Symantec 2009-01-21 16:43 --------- d-----w c:\\documents and settings\\MateUsz\\Dane aplikacji\\Kamerzysta 2009-01-14 07:14 3,455,488 ----a-w c:\\windows\\system32\\drivers\\ati2mtag.sys 2009-01-14 05:46 11,591,680 ----a-w c:\\windows\\system32\\atioglxx.dll 2009-01-14 04:53 286,720 ----a-w c:\\windows\\system32\\atiok3x2.dll 2009-01-14 04:49 425,984 ----a-w c:\\windows\\system32\\ATIDEMGX.dll 2009-01-14 04:47 323,584 ----a-w c:\\windows\\system32\\ati2dvag.dll 2009-01-14 04:36 26,112 ----a-w c:\\windows\\system32\\Ati2mdxx.exe 2009-01-14 04:36 196,608 ----a-w c:\\windows\\system32\\atipdlxx.dll 2009-01-14 04:36 151,552 ----a-w c:\\windows\\system32\\Oemdspif.dll 2009-01-14 04:35 43,520 ----a-w c:\\windows\\system32\\ati2edxx.dll 2009-01-14 04:35 155,648 ----a-w c:\\windows\\system32\\ati2evxx.dll 2009-01-14 04:34 598,016 ----a-w c:\\windows\\system32\\ati2evxx.exe 2009-01-14 04:32 53,248 ----a-w c:\\windows\\system32\\ATIDDC.DLL 2009-01-14 04:22 4,009,152 ----a-w c:\\windows\\system32\\ati3duag.dll 2009-01-14 04:05 2,500,224 ----a-w c:\\windows\\system32\\ativvaxx.dll 2009-01-14 03:50 48,640 ----a-w c:\\windows\\system32\\amdpcom32.dll 2009-01-14 03:45 401,408 ----a-w c:\\windows\\system32\\atikvmag.dll 2009-01-14 03:44 17,408 ----a-w c:\\windows\\system32\\atitvo32.dll 2009-01-14 03:44 110,592 ----a-w c:\\windows\\system32\\atiadlxx.dll 2009-01-14 03:43 53,248 ----a-w c:\\windows\\system32\\drivers\\ati2erec.dll 2009-01-14 03:37 577,536 ----a-w c:\\windows\\system32\\ati2cqag.dll 2009-01-14 03:37 307,200 ----a-w c:\\windows\\system32\\atiiiexx.dll 2009-01-14 02:36 45,056 ----a-w c:\\windows\\system32\\amdcalrt.dll 2009-01-14 02:36 45,056 ----a-w c:\\windows\\system32\\amdcalcl.dll 2009-01-14 02:34 3,227,648 ----a-w c:\\windows\\system32\\Amdcaldd.dll 2009-01-12 13:53 --------- d-----w c:\\program files\\Java 2009-01-07 11:55 --------- d-----w c:\\documents and settings\\MateUsz\\Dane aplikacji\\gtk-2.0 2009-01-06 18:43 --------- d-----w c:\\program files\\Google 2009-01-05 22:33 3,751,995 ----a-w c:\\windows\\system32\\GPhotos.scr 2008-12-31 12:40 --------- d-----w c:\\documents and settings\\MateUsz\\Dane aplikacji\\Nokia 2008-12-30 15:26 --------- d-----w c:\\documents and settings\\MateUsz\\Dane aplikacji\\PC Suite 2008-12-11 00:33 86,016 ----a-w c:\\windows\\system32\\dpl100.dll 2008-12-07 18:08 795,648 ----a-w c:\\windows\\system32\\xvidcore.dll 2008-12-07 18:08 130,048 ----a-w c:\\windows\\system32\\xvidvfw.dll 2008-11-28 13:12 40,504 ----a-w c:\\documents and settings\\MateUsz\\Dane aplikacji\\GDIPFONTCACHEV1.DAT 2007-02-10 12:24 990,720 ----a-w c:\\program files\\bootvis.msi 2006-09-26 22:08 24,836,360 ----a-w c:\\program files\\acdsee.exe 2006-08-12 20:49 15,032,912 ----a-w c:\\program files\\DivX521XP2K.exe 2006-01-17 20:06 620,544 ----a-w c:\\program files\\vplayer.exe 2005-12-20 13:13 2,000,324 ----a-w c:\\program files\\cdex_151.exe 1998-04-30 13:56 129,024 ----a-w c:\\program files\\UNWISE.EXE . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_CURRENT_USER\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run] \"PC Suite Tray\"=\"d:\\program files\\Nokia\\Nokia PC Suite 7\\PCSuite.exe\" [2008-12-03 1205760] \"SpybotSD TeaTimer\"=\"d:\\program files\\Spybot - Search & Destroy\\TeaTimer.exe\" [2009-01-26 2144088] [HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run] \"avgnt\"=\"c:\\program files\\Avira\\AntiVir PersonalEdition Classic\\avgnt.exe\" [2008-06-12 266497] [HKEY_USERS\\.DEFAULT\\Software\\Microsoft\\Windows\\CurrentVersion\\Run] \"CTFMON.EXE\"=\"c:\\windows\\system32\\CTFMON.EXE\" [2008-04-14 15360] [HKEY_LOCAL_MACHINE\\software\\microsoft\\windows\\currentversion\\policies\\system] \"SynchronousMachineGroupPolicy\"= 1 (0x1) \"SynchronousUserGroupPolicy\"= 1 (0x1) [HKEY_LOCAL_MACHINE\\software\\microsoft\\windows\\currentversion\\policies\\explorer] \"NoStrCmpLogical\"= 0 (0x0) [HKEY_CURRENT_USER\\software\\microsoft\\windows\\currentversion\\policies\\explorer] \"NoSMBalloonTip\"= 0 (0x0) \"MemCheckBoxInRunDlg\"= 0 (0x0) \"NoResolveTrack\"= 0 (0x0) \"NoWelcomeScreen\"= 0 (0x0) \"NoRecentDocsNetHood\"= 0 (0x0) \"ForceClassicControlPanel\"= 0 (0x0) [HKEY_LOCAL_MACHINE\\software\\microsoft\\windows nt\\currentversion\\drivers32] \"msacm.l3fhg\"= mp3fhg.acm \"msacm.divxa32\"= divxa32.acm [HKLM\\~\\services\\sharedaccess\\parameters\\firewallpolicy\\standardprofile\\AuthorizedApplications\\List] \"%windir%\\\\system32\\\\sessmgr.exe\"= \"c:\\\\Program Files\\\\Skype\\\\Phone\\\\Skype.exe\"= \"c:\\\\Program Files\\\\Ares\\\\Ares.exe\"= \"%windir%\\\\Network Diagnostic\\\\xpnetdiag.exe\"= \"e:\\\\Program Files\\\\Gadu-Gadu\\\\Nowe Gadu-Gadu\\\\gg.exe\"= \"c:\\\\Program Files\\\\Outlook Express\\\\msimn.exe\"= R3 SER120;OTI Serial port driver;c:\\windows\\system32\\drivers\\ser120.sys [2008-12-09 32910] . . ------- Skan uzupełniający ------- . uDefault_Search_URL = hxxp://www.google.com/ie uStart Page = hxxp://onet.pl/ Trusted Zone: live.com\\safety . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-02-22 18:35:29 Windows 5.1.2600 Dodatek Service Pack 3 NTFS skanowanie ukrytych procesów ... skanowanie ukrytych wpisów autostartu ... skanowanie ukrytych plików ... skanowanie pomyślnie ukończone ukryte pliki: 0 ************************************************************************** . --------------------- Pliki DLL ładowane pod uruchomionymi procesami --------------------- - - - - - - - > \'winlogon.exe\'(624) c:\\windows\\system32\\Ati2evxx.dll . Czas ukończenia: 2009-02-22 18:37:53 ComboFix-quarantined-files.txt 2009-02-22 17:37:49 ComboFix2.txt 2009-02-22 16:52:25 ComboFix3.txt 2009-02-21 09:43:06 Przed: 4 603 785 216 bajtów wolnych Po: 4,591,857,664 bajtów wolnych 255 --- E O F --- 2009-02-22 15:53:35