witam wszystkich probowalam juz na roznych forach ale bez wiekszych rezultatow, wiec moze tutaj bedzie ktos w stanie mi pomoc...
otoz mam problem z poleceniem msconfig wszystko jest niby ok tylko przy zatwierdzaniu zmian dokonanych wyskakuje mi komunikat "błąd odmowy dostępu został zwrócony podczas dokonywania próby zmiany usługi być może musisz zalogowac się na konta administratora aby przeprowadzic okreslone zmiany" oczywiście jestem na nim zalogowana czy to w normalnym trybie czy też awaryjnym to samo wyskakuje antyviry nic nie wykazały to samo spybot dlatego też prosze tutaj o pomoc z góry dziekuje
tutaj jest log (nie wiem czy jeszcze cos potrzebne)
Logfile of HijackThis v1.99.1
Scan saved at 04:40:12, on 2007-03-04
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Eset\nod32kui.exe
C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe
C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
C:\Program Files\Gadu-Gadu\gg.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\oodag.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Skype\Plugin Manager\SkypePM.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\regedit.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\mmc.exe
C:\WINDOWS\system32\rsmsink.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe
C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe
C:\PROGRA~1\COMMON~1\MICROS~1\Msinfo\OFFPRV10.EXE
C:\Program Files\totalcmd\TOTALCMD.EXE
E:\PLIKI_~1\_tc\HIJACK~1.EXE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [skyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [iKeyWorks] C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe
O4 - HKLM\..\Run: [WheelMouse] C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Photosmart Premier - Szybkie uruchomienie.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [iNTERNATIONAL] International*
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
zapomnialam dodac ze wpis
O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
zostal juz usuniety i nie tego to byl problem bo nadal sie to pokazuje
nastepnie jeden z forumowiczow napisal
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
>>Hijack>>scan>>Fix checked
.Niestety, ten wpis "07" oznacza, że masz gdzieś jakąś infekcję, której w logu z Hijacka nie widzę.
Zastanawia mnie fakt, że Twój pierwszy log jest inny od tego pokazanego z on-line.
Może spróbujemy ustalić infekcję w inny sposób.
Ściągnij i uruchom: ComboScan (wolałbym ComboFix, ale od 15 lutego nie wolno go używać!).
Następnie znajdź jego raport (ComboScan.txt) w folderze: C:\ComboScan.
Z tego raportu skopiuj i wklej tu do postu wszystko począwszy od wiersza
" Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ".
Może tam będzie widać tę infekcję, zobaczymy...
i wyslalam nastepujacy log:
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ----------------------
1R AmdK8 (Sterownik procesora AMD) - C:\WINDOWS\system32\drivers\AmdK8.sys
2R AMON - C:\WINDOWS\system32\drivers\amon.sys
3R Amps2prt (A4Tech PS/2 Port Mouse Driver) - C:\WINDOWS\system32\drivers\Amps2prt.sys
3R Arp1394 (Protokół klienta 1394 ARP) - C:\WINDOWS\system32\drivers\arp1394.sys
2R Aspi32 - C:\WINDOWS\system32\drivers\aspi32.sys
3S CCDECODE (Dekoder napisów) - C:\WINDOWS\system32\drivers\CCDECODE.sys
3S gdrv - C:\WINDOWS\gdrv.sys
3R HDAudBus (Sterownik magistrali Microsoft UAA dla High Definition Audio) - C:\WINDOWS\system32\drivers\Hdaudbus.sys
3S HPZid412 (IEEE-1284.4 Driver HPZid412) - C:\WINDOWS\system32\drivers\HPZid412.sys
3S HPZipr12 (Print Class Driver for IEEE-1284.4 HPZipr12) - C:\WINDOWS\system32\drivers\HPZipr12.sys
3S HPZius12 (USB to IEEE-1284.4 Translation Driver HPZius12) - C:\WINDOWS\system32\drivers\HPZius12.sys
3R IntcAzAudAddService (Service for Realtek HD Audio (WDM)) - C:\WINDOWS\system32\drivers\RtkHDAud.Sys
3S MSTEE (Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming) - C:\WINDOWS\system32\drivers\MSTEE.sys
3S NABTSFEC (Koder-dekoder NABTS/FEC VBI) - C:\WINDOWS\system32\drivers\NABTSFEC.sys
3S NdisIP (Połączenie TV/wideo firmy Microsoft) - C:\WINDOWS\system32\drivers\NdisIP.sys
3R NIC1394 (Sterownik sieci 1394) - C:\WINDOWS\system32\drivers\nic1394.sys
3R nv - C:\WINDOWS\system32\drivers\nv4_mini.sys
0R nvata - C:\WINDOWS\system32\drivers\nvata.sys
3R NVENETFD (NVIDIA nForce Networking Controller Driver) - C:\WINDOWS\system32\drivers\NVENETFD.sys
3R nvnetbus (NVIDIA Network Bus Enumerator) - C:\WINDOWS\system32\drivers\nvnetbus.sys
0R ohci1394 (Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI) - C:\WINDOWS\system32\drivers\ohci1394.sys
3S P2k (Motorola USB Device) - C:\WINDOWS\system32\drivers\P2k.sys
0R pnpshark - C:\WINDOWS\system32\drivers\pnpshark.sys
0R PxHelp20 - C:\WINDOWS\system32\drivers\PxHelp20.sys
3R QCDonner (Logitech QuickCam Express) - C:\WINDOWS\system32\drivers\OVCD.sys
3S SLIP (BDA Slip De-Framer) - C:\WINDOWS\system32\drivers\SLIP.sys
0R st3shark - C:\WINDOWS\system32\drivers\st3shark.sys
3S streamip (BDA IPSink) - C:\WINDOWS\system32\drivers\StreamIP.sys
3S usbccgp (Rodzajowy sterownik nadrzędny USB Microsoft) - C:\WINDOWS\system32\drivers\usbccgp.sys
3R usbehci (Sterownik Miniport rozszerzonego kontrolera hosta USB 2.0 Microsoft) - C:\WINDOWS\system32\drivers\usbehci.sys
3R usbohci (Sterownik Miniport otwartego kontrolera hosta USB Microsoft) - C:\WINDOWS\system32\drivers\usbohci.sys
3S usbprint (Klasa PRINTER USB Microsoft) - C:\WINDOWS\system32\drivers\usbprint.sys
3S usbscan (Sterownik skanera USB) - C:\WINDOWS\system32\drivers\usbscan.sys
3S usbser (Motorola A1000 USB Modem Driver) - C:\WINDOWS\system32\drivers\usbser.sys
3S USBSTOR (Sterownik magazynu masowego USB) - C:\WINDOWS\system32\drivers\USBSTOR.SYS
2R vnccom - C:\WINDOWS\system32\drivers\vnccom.SYS
3R vncdrv - C:\WINDOWS\system32\drivers\vncdrv.sys
2R WIBUKEY (WIBU-KEY Kernel Driver) - C:\WINDOWS\system32\drivers\Wibukey.sys
1R WS2IFSL (Środowisko wspomagające dostawcę usług innych niż IFS - Windows Socket 2.0) - C:\WINDOWS\system32\drivers\ws2ifsl.sys
3S WSTCODEC (Kodery-dekodery teletekstu w standardzie światowym) - C:\WINDOWS\system32\drivers\WSTCODEC.SYS
3S WudfPf (Windows Driver Foundation - User-mode Driver Framework Platform Driver) - C:\WINDOWS\system32\drivers\WudfPf.sys
3S WudfRd (Windows Driver Foundation - User-mode Driver Framework Reflector) - C:\WINDOWS\system32\drivers\WudfRd.sys
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
3S aspnet_state („Usługa stanu ASP.NET) - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
3S clr_optimization_v2.0.50727_32 (.NET Runtime Optimization Service v2.0.50727_X86) - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
2R NOD32krn (NOD32 Kernel Service) - "C:\Program Files\Eset\nod32krn.exe"
2R NVSvc (NVIDIA Display Driver Service) - C:\WINDOWS\system32\nvsvc32.exe
2R O&O Defrag - C:\WINDOWS\system32\oodag.exe
2S Pml Driver HPZ12 - C:\WINDOWS\system32\HPZipm12.exe
-- Files created between 2007-02-04 and 2007-03-04 ------------------------------
2007-03-04 12:17:24 0 d-------- C:\Program Files\HijackThis<HIJACK~1>
2007-03-04 05:41:19 0 d-------- C:\WINDOWS\system32\oodag
2007-03-04 05:19:12 458022 --a------ C:\WINDOWS\system32\prfh0415.dat
2007-03-04 05:19:12 79408 --a------ C:\WINDOWS\system32\prfc0415.dat
2007-03-04 04:27:34 0 d-------- C:\WINDOWS\system32\NtmsData
2007-03-04 03:23:25 0 d-------- C:\Temp
2007-03-04 03:10:38 0 d-------- C:\bin
2007-03-04 03:09:54 0 d-------- C:\Program Files\Common Files\Sonic Shared<SONICS~1>
2007-03-04 03:08:27 0 d-------- C:\Program Files\Common Files\HP
2007-03-04 03:06:46 0 d-------- C:\Program Files\Hewlett-Packard<HEWLET~1>
2007-03-04 03:06:23 0 d-------- C:\Program Files\Common Files\Hewlett-Packard<HEWLET~1>
2007-03-04 03:03:51 16496 -ra------ C:\WINDOWS\system32\drivers\HPZipr12.sys
2007-03-04 03:03:41 49664 -ra------ C:\WINDOWS\system32\drivers\HPZid412.sys
2007-03-04 03:03:25 77824 -ra------ C:\WINDOWS\system32\HPZIDS01.dll
2007-03-04 03:03:25 38400 --a------ C:\WINDOWS\system32\hpz3l054.dll
2007-03-04 03:03:01 15104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys
2007-03-04 03:02:27 57344 --a------ C:\WINDOWS\system32\HPZisn12.dll
2007-03-04 03:02:27 94208 --a------ C:\WINDOWS\system32\HPZipt12.dll
2007-03-04 03:02:27 204800 --a------ C:\WINDOWS\system32\HPZipr12.dll
2007-03-04 03:02:26 69632 --a------ C:\WINDOWS\system32\HPZipm12.exe
2007-03-04 03:02:26 65536 --a------ C:\WINDOWS\system32\HPZinw12.exe
2007-03-04 03:02:26 282680 --a------ C:\WINDOWS\system32\HPZidr12.dll
2007-03-04 03:01:25 0 d-------- C:\Program Files\HP
2007-03-04 03:00:38 25856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
2007-03-04 02:59:59 119742 --a------ C:\WINDOWS\hpoins11.dat
2007-03-04 02:56:47 0 d-------- C:\WINDOWS\ShellNew
2007-03-04 02:46:29 0 d-------- C:\WINDOWS\ie7updates<IE7UPD~1>
2007-03-04 02:46:24 0 d-------- C:\Program Files\MSXML 4.0<MSXML4~1.0>
2007-03-04 02:46:21 0 d-------- C:\27fab5d483c0ac65b113a6df677510d2<27FAB5~1>
2007-03-04 02:28:44 5504 --a------ C:\WINDOWS\system32\drivers\MSTEE.sys
2007-03-04 02:28:39 10880 --a------ C:\WINDOWS\system32\drivers\NdisIP.sys
2007-03-04 02:28:36 15360 --a------ C:\WINDOWS\system32\drivers\StreamIP.sys
2007-03-04 02:28:33 11136 --a------ C:\WINDOWS\system32\drivers\SLIP.sys
2007-03-04 02:28:30 19328 --a------ C:\WINDOWS\system32\drivers\WSTCODEC.SYS
2007-03-04 02:28:27 85376 --a------ C:\WINDOWS\system32\drivers\NABTSFEC.sys
2007-03-04 02:28:24 17024 --a------ C:\WINDOWS\system32\drivers\CCDECODE.sys
2007-03-04 02:28:11 42496 --a------ C:\WINDOWS\system32\OVUI2RC.dll
2007-03-04 02:28:11 44544 --a------ C:\WINDOWS\system32\OVUI2.dll
2007-03-04 02:28:11 39424 --a------ C:\WINDOWS\system32\OVComS.exe
2007-03-04 02:28:11 20480 --a------ C:\WINDOWS\system32\OVComC.dll
2007-03-04 02:28:11 116736 --a------ C:\WINDOWS\system32\OVCodec2.dll
2007-03-04 02:28:11 351616 --a------ C:\WINDOWS\system32\drivers\OVCodek2.sys
2007-03-04 02:28:11 28032 --a------ C:\WINDOWS\system32\drivers\OVCD.sys
2007-03-04 02:28:07 48000 --a------ C:\WINDOWS\system32\drivers\OVCam2.sys
2007-03-04 02:28:06 54784 --a------ C:\WINDOWS\system32\vfwwdm32.dll
2007-03-03 23:27:07 38160 --a------ C:\WINDOWS\system32\LMRTREND.dll
2007-03-03 23:27:07 182032 --a------ C:\WINDOWS\system32\dxtmsft3.dll
2007-03-03 23:27:04 63488 --a------ C:\WINDOWS\system32\unam4ie.exe
2007-03-03 23:27:00 10240 --a------ C:\WINDOWS\system32\vidx16.dll
2007-03-03 23:27:00 194320 --a------ C:\WINDOWS\system32\qcut.dll
2007-03-03 23:26:58 4608 --a------ C:\WINDOWS\system32\w95inf32.dll
2007-03-03 23:26:58 2272 --a------ C:\WINDOWS\system32\w95inf16.dll
2007-03-03 23:26:57 48128 --a------ C:\WINDOWS\system32\wnaspi32.dll
2007-03-03 23:26:57 23936 --a------ C:\WINDOWS\system32\drivers\aspi32.sys
2007-03-03 23:26:57 4672 --a------ C:\WINDOWS\system\wowpost.exe
2007-03-03 23:26:57 5600 --a------ C:\WINDOWS\system\winaspi.dll
2007-03-03 23:26:17 306688 --a------ C:\WINDOWS\IsUninst.exe
2007-03-03 23:11:21 0 d-------- C:\Program Files\D-Tools
2007-03-03 22:53:11 31616 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys
2007-03-03 22:50:39 57552 --a------ C:\WINDOWS\system32\WKDOS.EXE
2007-03-03 22:50:39 29696 --a------ C:\WINDOWS\system32\drivers\Wibukey2.sys
2007-03-03 22:50:38 139264 --a------ C:\WINDOWS\system32\WkWin32.dll
2007-03-03 22:50:38 67072 --a------ C:\WINDOWS\system32\drivers\Wibukey.sys
2007-03-03 22:50:38 52736 --a------ C:\WINDOWS\system\WkWin.dll
2007-03-03 22:50:37 0 d-------- C:\Program Files\WIBU-SYSTEMS<WIBU-S~1>
2007-03-03 22:50:37 0 d-------- C:\Program Files\WIBUKEY
2007-03-03 22:50:34 36480 --a------ C:\WINDOWS\system32\drivers\P2k.sys
2007-03-03 22:50:31 77895 --a------ C:\WINDOWS\system32\unibus_tcutil.dll<UNIBUS~1.DLL>
2007-03-03 22:50:23 0 d-------- C:\Program Files\Motorola
2007-03-03 22:40:26 0 d-------- C:\Program Files\Avanquest update<AVANQU~1>
2007-03-03 22:40:02 25600 --a------ C:\WINDOWS\system32\drivers\usbser.sys
2007-03-03 22:39:21 0 d-------- C:\Program Files\Motorola Phone Tools<MOTORO~1>
2007-03-03 22:37:52 0 d-------- C:\Program Files\Lavasoft
2007-03-03 22:37:31 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard<WISEIN~1>
2007-03-03 22:28:30 24064 -----n--- C:\WINDOWS\system32\msxml3a.dll
2007-03-03 22:28:12 0 d-------- C:\Program Files\CyberLink<CYBERL~1>
2007-03-03 22:21:59 0 d-------- C:\Program Files\uTorrent
2007-03-03 22:01:56 0 d-------- C:\Program Files\Common Files\ACD Systems<ACDSYS~1>
2007-03-03 22:01:56 0 d-------- C:\Program Files\ACD Systems<ACDSYS~1>
2007-03-03 22:01:03 0 d-------- C:\WINDOWS\Downloaded Installations<DOWNLO~2>
2007-03-03 21:57:45 307200 --a------ C:\WINDOWS\IsUn0415.exe
2007-03-03 21:41:09 6016 --a------ C:\WINDOWS\system32\drivers\vnccom.SYS
2007-03-03 21:40:49 5760 --a------ C:\WINDOWS\system32\vnchelp.dll
2007-03-03 21:40:49 12800 --a------ C:\WINDOWS\system32\vncdrv.dll
2007-03-03 21:40:49 4736 --a------ C:\WINDOWS\system32\drivers\vncdrv.sys
2007-03-03 21:40:47 0 d-------- C:\Program Files\UltraVNC
2007-03-03 21:39:16 0 d-------- C:\Program Files\Opera
2007-03-03 21:38:00 0 d-------- C:\Program Files\Common Files\Corel
2007-03-03 21:35:48 0 d-------- C:\Program Files\Corel
2007-03-03 21:33:52 49664 --a------ C:\WINDOWS\unvise32.exe
2007-03-03 21:33:50 0 d-------- C:\Program Files\Active Ports<ACTIVE~1>
2007-03-03 21:32:16 0 d-------- C:\Program Files\Common Files\Adobe
2007-03-03 21:23:09 0 d-------- C:\Program Files\GSpot
2007-03-03 21:22:51 115880 -----n--- C:\WINDOWS\system32\pxinsi64.exe
2007-03-03 21:22:51 129784 -----n--- C:\WINDOWS\system32\pxafs.dll
2007-03-03 21:22:51 36528 -----n--- C:\WINDOWS\system32\drivers\PxHelp20.sys
2007-03-03 21:22:45 0 d-------- C:\Program Files\Winamp
2007-03-03 21:16:29 0 d-------- C:\Program Files\SubEdit-Player<SUBEDI~1>
2007-03-03 19:01:37 0 d--hs---- C:\WINDOWS\CSC
2007-03-03 19:00:18 0 d-------- C:\WINDOWS\WBEM
2007-03-03 18:59:22 0 d--h---c- C:\WINDOWS\ie7
2007-03-03 18:58:45 121856 -----n--- C:\WINDOWS\system32\xmllite.dll
2007-03-03 18:58:20 0 d-------- C:\WINDOWS\network diagnostic<NETWOR~1>
2007-03-03 18:56:22 0 d-------- C:\WINDOWS\system32\pl-pl
2007-03-03 18:55:52 0 d-------- C:\Program Files\Windows Media Connect 2<WINDOW~4>
2007-03-03 18:54:56 0 d-------- C:\WINDOWS\system32\LogFiles
2007-03-03 18:54:56 0 d-------- C:\WINDOWS\system32\drivers\UMDF
2007-03-03 18:51:26 0 d-------- C:\WINDOWS\RegisteredPackages<REGIST~2>
2007-03-03 18:50:24 0 d-------- C:\WINDOWS\Microsoft.NET<MICROS~1.NET>
2007-03-03 18:50:24 0 dr--s---- C:\WINDOWS\assembly
2007-03-03 18:50:23 0 d-------- C:\WINDOWS\system32\URTTemp
2007-03-03 18:28:22 0 d-------- C:\Program Files\Common Files\Skype
2007-03-03 17:44:20 0 d-------- C:\Program Files\Skype
2007-03-03 17:39:34 0 d-------- C:\Program Files\OO Software<OOSOFT~1>
2007-03-03 17:29:58 0 d--hs---- C:\RECYCLER
2007-03-03 17:28:30 0 d-------- C:\Program Files\Gadu-Gadu<GADU-G~1>
2007-03-03 17:28:14 1168 --a------ C:\WINDOWS\mozver.dat
2007-03-03 17:11:26 0 d-------- C:\Program Files\A4Tech
2007-03-03 17:08:13 3072 --a------ C:\WINDOWS\system32\drivers\audstub.sys
2007-03-03 17:07:29 58624 --a------ C:\WINDOWS\system32\drivers\redbook.sys
2007-03-03 17:07:13 6400 --a------ C:\WINDOWS\system32\drivers\enum1394.sys
2007-03-03 17:06:47 77312 --a------ C:\WINDOWS\system32\usbui.dll
2007-03-03 17:05:43 0 d--hs---- C:\WINDOWS\Installer<INSTAL~1>
2007-03-03 17:05:42 0 d-------- C:\Program Files\Common Files\ODBC
2007-03-03 17:05:39 0 dr------- C:\Program Files<PROGRA~1>
2007-03-03 17:05:39 0 d-------- C:\Program Files\Common Files\SpeechEngines<SPEECH~1>
2007-03-03 17:05:35 6144 -ra------ C:\WINDOWS\system32\kbdtuq.dll
2007-03-03 17:05:35 6144 -ra------ C:\WINDOWS\system32\kbdtuf.dll
2007-03-03 17:05:35 5632 -ra------ C:\WINDOWS\system32\kbdazel.dll
2007-03-03 17:05:34 5632 -ra------ C:\WINDOWS\system32\kbdmon.dll
2007-03-03 17:05:34 5632 -ra------ C:\WINDOWS\system32\kbdkyr.dll
2007-03-03 17:05:32 8192 -ra------ C:\WINDOWS\system32\kbdhept.dll
2007-03-03 17:05:31 6656 -ra------ C:\WINDOWS\system32\kbdhela3.dll
2007-03-03 17:05:31 6144 -ra------ C:\WINDOWS\system32\kbdhela2.dll
2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe319.dll
2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe220.dll
2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe.dll
2007-03-03 17:05:31 6144 -ra------ C:\WINDOWS\system32\kbdgkl.dll
2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdlv1.dll
2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdlv.dll
2007-03-03 17:05:30 5632 -ra------ C:\WINDOWS\system32\kbdlt1.dll
2007-03-03 17:05:30 5632 -ra------ C:\WINDOWS\system32\kbdlt.dll
2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdest.dll
2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdycl.dll
2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdsl1.dll
2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdsl.dll
2007-03-03 17:05:27 5632 --a------ C:\WINDOWS\system32\kbdro.dll
2007-03-03 17:05:27 5632 --a------ C:\WINDOWS\system32\kbdhu1.dll
2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdhu.dll
2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcz2.dll
2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcz1.dll
2007-03-03 17:05:27 7168 --a------ C:\WINDOWS\system32\kbdcz.dll
2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcr.dll
2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\KBDAL.DLL
2007-03-03 17:05:26 13312 --a------ C:\WINDOWS\system32\irclass.dll
2007-03-03 17:05:26 85532 --a------ C:\WINDOWS\system32\dgsetup.dll
2007-03-03 17:05:26 176157 --a------ C:\WINDOWS\system32\dgrpsetu.dll
2007-03-03 17:05:25 24661 --a------ C:\WINDOWS\system32\spxcoins.dll
2007-03-03 17:05:25 103424 --a------ C:\WINDOWS\system32\EqnClass.Dll
2007-03-03 17:05:25 9168 --a------ C:\WINDOWS\system\VER.DLL
2007-03-03 17:05:25 19200 --a------ C:\WINDOWS\system\TAPI.DLL
2007-03-03 17:05:25 5120 --a------ C:\WINDOWS\system\SHELL.DLL
2007-03-03 17:05:25 24064 --a------ C:\WINDOWS\system\OLESVR.DLL
2007-03-03 17:05:25 83456 --a------ C:\WINDOWS\system\OLECLI.DLL
2007-03-03 17:05:24 15360 --a------ C:\WINDOWS\TASKMAN.EXE
2007-03-03 17:05:24 127008 --a------ C:\WINDOWS\system\MSVIDEO.DLL
2007-03-03 17:05:24 9936 --a------ C:\WINDOWS\system\LZEXPAND.DLL
2007-03-03 17:05:24 33376 --a------ C:\WINDOWS\system\COMMDLG.DLL
2007-03-03 17:05:24 109488 --a------ C:\WINDOWS\system\AVIFILE.DLL
2007-03-03 17:05:24 70096 --a------ C:\WINDOWS\system\AVICAP.DLL
2007-03-03 17:05:23 11264 --a------ C:\WINDOWS\system32\drivers\irenum.sys
2007-03-03 17:05:23 8704 --a------ C:\WINDOWS\system32\batt.dll
2007-03-03 17:05:23 69552 --a------ C:\WINDOWS\system\MMSYSTEM.DLL
2007-03-03 17:05:23 70144 --a------ C:\WINDOWS\NOTEPAD.EXE
2007-03-03 17:05:22 75776 --a------ C:\WINDOWS\system32\storprop.dll
2007-03-03 17:05:03 0 d-------- C:\WINDOWS\system32\CatRoot2
2007-03-03 17:05:03 0 d-------- C:\WINDOWS\system32\CatRoot
2007-03-03 17:04:35 0 d-------- C:\Documents and Settings<DOCUME~1>
2007-03-03 17:04:34 0 d--hs---- C:\System Volume Information<SYSTEM~1>
2007-03-03 17:02:23 0 d-------- C:\Program Files\totalcmd
2007-03-03 16:58:27 0 d-------- C:\WINDOWS
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\WinSxS
2007-03-03 16:58:27 0 dr------- C:\WINDOWS\Web
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\twain_32
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\wins
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\wbem
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\usmt
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\spool
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ShellExt
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\Setup
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ras
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\oobe
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\npp
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\mui
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\inetsrv
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\IME
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\icsxml
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ias
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\export
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers\etc
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers\disdn
2007-03-03 16:58:27 0 dr-hs--c- C:\WINDOWS\system32\dllcache
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\dhcp
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\config
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\3com_dmi
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\3076
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\2052
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1054
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1045
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1042
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1041
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1037
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1033
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1031
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1028
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1025
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\security
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Resources<RESOUR~1>
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\repair
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Provisioning<PROVIS~1>
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\PeerNet
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\pchealth
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\mui
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\msapps
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\msagent
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Media
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\java
2007-03-03 16:58:27 0 d--h----- C:\WINDOWS\inf
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\ime
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Help
2007-03-03 16:58:27 0 dr--s---- C:\WINDOWS\Fonts
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\ehome
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Driver Cache<DRIVER~1>
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Debug
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Cursors
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Connection Wizard<CONNEC~1>
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Config
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\AppPatch
2007-03-03 16:58:27 0 d-------- C:\WINDOWS\addins
2007-03-03 16:46:18 0 --a------ C:\WINDOWS\nsreg.dat
2007-03-03 16:46:06 0 d-------- C:\Program Files\Mozilla Firefox<MOZILL~1>
2007-03-03 16:36:55 274432 --a------ C:\WINDOWS\system32\imon.dll
2007-03-03 16:36:55 502368 --a------ C:\WINDOWS\system32\drivers\amon.sys
2007-03-03 16:34:21 0 d-------- C:\WINDOWS\system32\PreInstall<PREINS~1>
2007-03-03 16:34:19 0 d--h----- C:\WINDOWS\$hf_mig$
2007-03-03 16:32:50 0 d-------- C:\WINDOWS\system32\Lang
2007-03-03 16:31:31 208896 -----n--- C:\WINDOWS\system32\nvuide.exe
2007-03-03 16:29:23 135168 --a------ C:\WINDOWS\system32\RtlCPAPI.dll
2007-03-03 16:29:23 40960 --a------ C:\WINDOWS\system32\ChCfg.exe
2007-03-03 16:29:22 6400 --a------ C:\WINDOWS\system32\drivers\splitter.sys
2007-03-03 16:29:21 82944 --a------ C:\WINDOWS\system32\drivers\wdmaud.sys
2007-03-03 16:29:20 52864 --a------ C:\WINDOWS\system32\drivers\DMusic.sys
2007-03-03 16:29:16 54272 --a------ C:\WINDOWS\system32\drivers\swmidi.sys
2007-03-03 16:29:15 142464 --a------ C:\WINDOWS\system32\drivers\aec.sys
2007-03-03 16:29:14 172416 --a------ C:\WINDOWS\system32\drivers\kmixer.sys
2007-03-03 16:29:13 2944 --a------ C:\WINDOWS\system32\drivers\drmkaud.sys
2007-03-03 16:29:12 60800 --a------ C:\WINDOWS\system32\drivers\sysaudio.sys
2007-03-03 16:29:11 7552 --a------ C:\WINDOWS\system32\drivers\MSKSSRV.sys
2007-03-03 16:29:10 4992 --a------ C:\WINDOWS\system32\drivers\MSPQM.sys
2007-03-03 16:29:08 5376 --a------ C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2007-03-03 16:29:04 0 d-------- C:\WINDOWS\system32\RTCOM
2007-03-03 16:28:59 4096 --a------ C:\WINDOWS\system32\ksuser.dll
2007-03-03 16:28:59 60288 --a------ C:\WINDOWS\system32\drivers\drmk.sys
2007-03-03 16:28:54 86016 --a------ C:\WINDOWS\SoundMan.exe
2007-03-03 16:28:54 2879488 --a------ C:\WINDOWS\SkyTel.exe
2007-03-03 16:28:54 364544 --a------ C:\WINDOWS\RtlUpd.exe
2007-03-03 16:28:53 4279296 --a------ C:\WINDOWS\system32\drivers\RtkHDAud.Sys
2007-03-03 16:28:53 9709568 --a------ C:\WINDOWS\RTLCPL.exe
2007-03-03 16:28:53 16208384 --a------ C:\WINDOWS\RTHDCPL.exe
2007-03-03 16:28:53 2158592 --a------ C:\WINDOWS\MicCal.exe
2007-03-03 16:28:52 2808832 --a------ C:\WINDOWS\alcwzrd.exe
2007-03-03 16:28:52 69632 --a------ C:\WINDOWS\Alcmtr.exe
2007-03-03 16:28:52 0 d-------- C:\Program Files\Realtek
2007-03-03 16:28:49 487424 --a------ C:\WINDOWS\RtlExUpd.dll
2007-03-03 16:26:44 23856 --a------ C:\WINDOWS\system32\spupdsvc.exe
2007-03-03 16:26:34 0 d-------- C:\WINDOWS\system32\ReinstallBackups<REINST~1>
2007-03-03 16:26:33 43008 --a------ C:\WINDOWS\system32\drivers\AmdK8.sys
2007-03-03 16:26:33 0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1>
2007-03-03 16:26:33 0 d-------- C:\Program Files\AMD
2007-03-03 16:26:02 208896 --a------ C:\WINDOWS\system32\nvudisp.exe
2007-03-03 16:26:02 0 d-------- C:\WINDOWS\nview
2007-03-03 16:25:42 0 d-------- C:\WINDOWS\system32\SoftwareDistribution<SOFTWA~1>
2007-03-03 16:24:53 155136 -ra------ C:\WINDOWS\system32\fdco_l2052.dll<FDCD9D~1.DLL>
2007-03-03 16:24:53 158720 -ra------ C:\WINDOWS\system32\fdco_l1046.dll<FDD79D~1.DLL>
2007-03-03 16:24:53 156672 -ra------ C:\WINDOWS\system32\fdco_l1042.dll<FDC79D~1.DLL>
2007-03-03 16:24:53 156672 -ra------ C:\WINDOWS\system32\fdco_l1041.dll<FDC799~1.DLL>
2007-03-03 16:24:53 158720 -ra------ C:\WINDOWS\system32\fdco_l1040.dll<FDB795~1.DLL>
2007-03-03 16:24:52 204288 -ra------ C:\WINDOWS\system32\fdco1ins.dll
2007-03-03 16:24:52 204288 -ra------ C:\WINDOWS\system32\fdco1.dll
2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1036.dll<FDCO_L~4.DLL>
2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1034.dll<FDCO_L~3.DLL>
2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1031.dll<FDCO_L~2.DLL>
2007-03-03 16:24:52 155648 -ra------ C:\WINDOWS\system32\fdco_l1028.dll<FDCO_L~1.DLL>
2007-03-03 16:24:52 34176 -ra------ C:\WINDOWS\system32\drivers\NVENETFD.sys
2007-03-03 16:24:51 101632 -ra------ C:\WINDOWS\system32\drivers\nvtcp.sys
2007-03-03 16:24:50 208896 --a------ C:\WINDOWS\system32\nvunrm.exe
2007-03-03 16:24:50 35840 -ra------ C:\WINDOWS\system32\nvconrm.dll
2007-03-03 16:24:50 222592 -ra------ C:\WINDOWS\system32\drivers\nvsnpu.sys
2007-03-03 16:24:50 305152 -ra------ C:\WINDOWS\system32\drivers\nvnrm.sys
2007-03-03 16:24:50 13056 -ra------ C:\WINDOWS\system32\drivers\nvnetbus.sys
2007-03-03 16:24:50 9728 -ra------ C:\WINDOWS\system32\bdco1ins.dll
2007-03-03 16:24:50 9728 -ra------ C:\WINDOWS\system32\bdco1.dll
2007-03-03 16:24:50 0 d-------- C:\WINDOWS\NV18921824.TMP<NV1892~1.TMP>
2007-03-03 16:24:49 208896 --a------ C:\WINDOWS\system32\nvusmb.exe
2007-03-03 16:24:39 208896 --a------ C:\WINDOWS\system32\NVUNINST.EXE
2007-03-03 16:24:31 0 d-------- C:\Program Files\Common Files\InstallShield<INSTAL~1>
2007-03-03 16:23:36 4501 --a------ C:\WINDOWS\gdrv.sys
2007-03-03 16:20:47 0 d-------- C:\WINDOWS\pss
2007-03-03 16:19:01 0 d-------- C:\WINDOWS\SoftwareDistribution<SOFTWA~1>
2007-03-03 16:18:59 0 d-------- C:\WINDOWS\Prefetch
2007-03-03 16:16:02 0 d-------- C:\WINDOWS\system32\xircom
2007-03-03 16:16:02 0 d-------- C:\Program Files\microsoft frontpage<MICROS~1>
2007-03-03 16:15:47 0 -rahs---- C:\MSDOS.SYS
2007-03-03 16:15:47 0 -rahs---- C:\IO.SYS
2007-03-03 16:15:47 0 --a------ C:\CONFIG.SYS
2007-03-03 16:15:47 0 --a------ C:\AUTOEXEC.BAT
2007-03-03 16:15:35 112128 --a------ C:\WINDOWS\system32\mapi32.dll
2007-03-03 16:14:53 0 dr------- C:\WINDOWS\Offline Web Pages<OFFLIN~1>
2007-03-03 16:14:53 0 d---s---- C:\WINDOWS\Downloaded Program Files<DOWNLO~1>
2007-03-03 16:14:45 0 d--h----- C:\Program Files\WindowsUpdate<WINDOW~3>
2007-03-03 16:14:41 0 d-------- C:\Program Files\Usługi online<USUGIO~1>
2007-03-03 16:14:26 0 d-------- C:\WINDOWS\system32\DirectX
2007-03-03 16:14:08 11264 --a------ C:\WINDOWS\system32\atrace.dll
2007-03-03 16:13:59 12288 --a------ C:\WINDOWS\system32\nmevtmsg.dll
2007-03-03 16:13:58 67584 --a------ C:\WINDOWS\system32\acctres.dll
2007-03-03 16:13:55 0 d---s---- C:\WINDOWS\Tasks
2007-03-03 16:13:55 16384 --a------ C:\WINDOWS\system32\icfgnt5.dll
2007-03-03 16:13:53 0 d-------- C:\Program Files\Common Files\MSSoap
2007-03-03 16:13:50 0 d-------- C:\WINDOWS\srchasst
2007-03-03 16:13:49 0 d-------- C:\WINDOWS\system32\Macromed
2007-03-03 16:13:47 173536 --a------ C:\WINDOWS\system32\wuweb.dll
2007-03-03 16:13:47 128280 --a------ C:\WINDOWS\system32\wucltui.dll
2007-03-03 16:13:47 6656 --a------ C:\WINDOWS\system32\wuauserv.dll
2007-03-03 16:13:47 195352 --a------ C:\WINDOWS\system32\wuaueng1.dll
2007-03-03 16:13:46 41240 --a------ C:\WINDOWS\system32\wups.dll
2007-03-03 16:13:46 1343768 --a------ C:\WINDOWS\system32\wuaueng.dll
2007-03-03 16:13:46 175384 --a------ C:\WINDOWS\system32\wuauclt1.exe
2007-03-03 16:13:46 125208 --a------ C:\WINDOWS\system32\wuauclt.exe
2007-03-03 16:13:46 466200 --a------ C:\WINDOWS\system32\wuapi.dll
2007-03-03 16:13:46 18944 --a------ C:\WINDOWS\system32\qmgrprxy.dll
2007-03-03 16:13:46 382464 --a------ C:\WINDOWS\system32\qmgr.dll
2007-03-03 16:13:46 7168 --a------ C:\WINDOWS\system32\bitsprx3.dll
2007-03-03 16:13:46 8192 --a------ C:\WINDOWS\system32\bitsprx2.dll
2007-03-03 16:13:42 0 d-------- C:\Program Files\Movie Maker<MOVIEM~1>
2007-03-03 16:13:38 45568 --a------ C:\WINDOWS\system32\safrslv.dll
2007-03-03 16:13:38 29696 --a------ C:\WINDOWS\system32\safrdm.dll
2007-03-03 16:13:38 43520 --a------ C:\WINDOWS\system32\safrcdlg.dll
2007-03-03 16:13:37 43520 --a------ C:\WINDOWS\system32\racpldlg.dll
2007-03-03 16:13:35 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2007-03-03 16:13:34 171008 --a------ C:\WINDOWS\system32\srsvc.dll
2007-03-03 16:13:34 240128 --a------ C:\WINDOWS\system32\srrstr.dll
2007-03-03 16:13:34 67584 --a------ C:\WINDOWS\system32\srclient.dll
2007-03-03 16:13:34 0 d-------- C:\WINDOWS\system32\Restore
2007-03-03 16:13:34 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2007-03-03 16:13:34 73472 --a------ C:\WINDOWS\system32\drivers\sr.sys
2007-03-03 16:13:34 128896 --a------ C:\WINDOWS\system32\drivers\fltmgr.sys
2007-03-03 16:13:33 28672 --a------ C:\WINDOWS\system32\nmmkcert.dll
2007-03-03 16:13:33 69632 --a------ C:\WINDOWS\system32\msconf.dll
2007-03-03 16:13:33 32768 --a------ C:\WINDOWS\system32\mnmsrvc.exe
2007-03-03 16:13:33 34560 --a------ C:\WINDOWS\system32\mnmdd.dll
2007-03-03 16:13:33 32768 --a------ C:\WINDOWS\system32\isrdbg32.dll
2007-03-03 16:13:33 81920 --a------ C:\WINDOWS\system32\ils.dll
2007-03-03 16:13:30 105984 --a------ C:\WINDOWS\system32\msoert2.dll
2007-03-03 16:13:30 252928 --a------ C:\WINDOWS\system32\msoeacct.dll
2007-03-03 16:13:29 49664 --a------ C:\WINDOWS\system32\inetres.dll
2007-03-03 16:13:29 679424 --a------ C:\WINDOWS\system32\inetcomm.dll
2007-03-03 16:13:27 192000 --a------ C:\WINDOWS\system32\schedsvc.dll
2007-03-03 16:13:27 12288 --a------ C:\WINDOWS\system32\mstinit.exe
2007-03-03 16:13:27 278528 --a------ C:\WINDOWS\system32\mstask.dll
2007-03-03 16:13:27 65536 --a------ C:\WINDOWS\system32\icwphbk.dll
2007-03-03 16:13:26 86016 --a------ C:\WINDOWS\system32\isign32.dll
2007-03-03 16:13:26 278528 --a------ C:\WINDOWS\system32\inetcfg.dll
2007-03-03 16:13:26 73728 --a------ C:\WINDOWS\system32\icwdial.dll
2007-03-03 16:13:00 21856 --a------ C:\WINDOWS\system32\emptyregdb.dat<EMPTYR~1.DAT>
2007-03-03 16:12:47 0 d-------- C:\WINDOWS\Registration<REGIST~1>
2007-03-03 16:12:35 0 d-------- C:\Program Files\Messenger<MESSEN~1>
2007-03-03 16:12:30 5632 --a------ C:\WINDOWS\system32\write.exe
2007-03-03 16:12:30 0 d-------- C:\Program Files\MSN Gaming Zone<MSNGAM~1>
2007-03-03 16:12:21 139264 --a------ C:\WINDOWS\system32\sndvol32.exe
2007-03-03 16:12:21 44544 --a------ C:\WINDOWS\system32\hticons.dll
2007-03-03 16:12:20 73216 --a------ C:\WINDOWS\system32\avwav.dll
2007-03-03 16:12:20 231424 --a------ C:\WINDOWS\system32\avtapi.dll
2007-03-03 16:12:20 16384 --a------ C:\WINDOWS\system32\avmeter.dll
2007-03-03 16:12:19 35328 --a------ C:\WINDOWS\system32\winchat.exe
2007-03-03 16:12:12 605696 --a------ C:\WINDOWS\system32\getuname.dll
2007-03-03 16:12:12 80896 --a------ C:\WINDOWS\system32\charmap.exe
2007-03-03 16:12:12 115200 --a------ C:\WINDOWS\system32\calc.exe
2007-03-03 16:12:11 119808 --a------ C:\WINDOWS\system32\winmine.exe
2007-03-03 16:12:11 1225 --a------ C:\WINDOWS\system32\usrlogon.cmd
2007-03-03 16:12:11 57344 --a------ C:\WINDOWS\system32\sol.exe
2007-03-03 16:12:11 9728 --a------ C:\WINDOWS\system32\reset.exe
2007-03-03 16:12:11 128000 --a------ C:\WINDOWS\system32\mshearts.exe
2007-03-03 16:12:11 55808 --a------ C:\WINDOWS\system32\freecell.exe
2007-03-03 16:12:10 17920 --a------ C:\WINDOWS\system32\tsshutdn.exe
2007-03-03 16:12:10 16384 --a------ C:\WINDOWS\system32\tskill.exe
2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\tsdiscon.exe
2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\tscon.exe
2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\shadow.exe
2007-03-03 16:12:10 16384 --a------ C:\WINDOWS\system32\rwinsta.exe
2007-03-03 16:12:10 33792 --a------ C:\WINDOWS\system32\regini.exe
2007-03-03 16:12:10 4608 --a------ C:\WINDOWS\system32\rdpcfgex.dll
2007-03-03 16:12:10 22528 --a------ C:\WINDOWS\system32\qwinsta.exe
2007-03-03 16:12:10 17408 --a------ C:\WINDOWS\system32\qappsrv.exe
2007-03-03 16:12:10 22528 --a------ C:\WINDOWS\system32\msg.exe
2007-03-03 16:12:10 15872 --a------ C:\WINDOWS\system32\logoff.exe
2007-03-03 16:12:09 5120 --a------ C:\WINDOWS\system32\dcomcnfg.exe
2007-03-03 16:12:09 15872 --a------ C:\WINDOWS\system32\cdmodem.dll
2007-03-03 16:12:08 54272 --a------ C:\WINDOWS\system32\stclient.dll
2007-03-03 16:12:08 25088 --a------ C:\WINDOWS\system32\mtxlegih.dll
2007-03-03 16:12:08 4096 --a------ C:\WINDOWS\system32\mtxex.dll
2007-03-03 16:12:08 20480 --a------ C:\WINDOWS\system32\mtxdm.dll
2007-03-03 16:12:08 147456 --a------ C:\WINDOWS\system32\comsnap.dll
2007-03-03 16:12:08 97792 --a------ C:\WINDOWS\system32\comrepl.dll
2007-03-03 16:12:08 25600 --a------ C:\WINDOWS\system32\comaddin.dll
2007-03-03 16:12:02 132608 --a------ C:\WINDOWS\system32\sndrec32.exe
2007-03-03 16:12:02 124928 --a------ C:\WINDOWS\system32\mplay32.exe
2007-03-03 16:12:02 351744 --a------ C:\WINDOWS\system32\hypertrm.dll
2007-03-03 16:12:02 187904 --a------ C:\WINDOWS\system32\accwiz.exe
2007-03-03 16:12:01 539136 --a------ C:\WINDOWS\system32\spider.exe
2007-03-03 16:12:01 345088 --a------ C:\WINDOWS\system32\mspaint.exe
2007-03-03 16:12:01 103424 --a------ C:\WINDOWS\system32\clipbrd.exe
2007-03-03 16:12:01 0 d-------- C:\Program Files\Windows NT<WINDOW~1>
2007-03-03 16:12:00 94720 --a------ C:\WINDOWS\system32\tscfgwmi.dll
2007-03-03 16:12:00 60928 --a------ C:\WINDOWS\system32\remotepg.dll
2007-03-03 16:12:00 67072 --a------ C:\WINDOWS\system32\rdshost.exe
2007-03-03 16:12:00 13824 --a------ C:\WINDOWS\system32\rdsaddin.exe
2007-03-03 16:12:00 1866240 --a------ C:\WINDOWS\system32\mstscax.dll
2007-03-03 16:12:00 600576 --a------ C:\WINDOWS\system32\mstsc.exe
2007-03-03 16:12:00 21896 --a------ C:\WINDOWS\system32\drivers\tdtcp.sys
2007-03-03 16:12:00 12040 --a------ C:\WINDOWS\system32\drivers\tdpipe.sys
2007-03-03 16:12:00 139528 --a------ C:\WINDOWS\system32\drivers\rdpwd.sys
2007-03-03 16:11:59 44544 --a------ C:\WINDOWS\system32\tscupgrd.exe
2007-03-03 16:11:59 296448 --a------ C:\WINDOWS\system32\termsrv.dll
2007-03-03 16:11:59 141824 --a------ C:\WINDOWS\system32\sessmgr.exe
2007-03-03 16:11:59 87176 --a------ C:\WINDOWS\system32\rdpwsx.dll
2007-03-03 16:11:59 19968 --a------ C:\WINDOWS\system32\rdpsnd.dll
2007-03-03 16:11:59 62464 --a------ C:\WINDOWS\system32\rdpclip.exe
2007-03-03 16:11:59 147968 --a------ C:\WINDOWS\system32\rdchost.dll
2007-03-03 16:11:59 20992 --a------ C:\WINDOWS\system32\qprocess.exe
2007-03-03 16:11:59 11264 --a------ C:\WINDOWS\system32\icaapi.dll
2007-03-03 16:11:58 91136 --a------ C:\WINDOWS\system32\mtxoci.dll
2007-03-03 16:11:58 161280 --a------ C:\WINDOWS\system32\msdtcuiu.dll
2007-03-03 16:11:58 956416 --a------ C:\WINDOWS\system32\msdtctm.dll
2007-03-03 16:11:58 426496 --a------ C:\WINDOWS\system32\msdtcprx.dll
2007-03-03 16:11:58 0 d-------- C:\WINDOWS\system32\MsDtc
2007-03-03 16:11:58 38912 --a------ C:\WINDOWS\system32\cfgbkend.dll
2007-03-03 16:11:57 11776 --a------ C:\WINDOWS\system32\xolehlp.dll
2007-03-03 16:11:57 58880 --a------ C:\WINDOWS\system32\msdtclog.dll
2007-03-03 16:11:57 6144 --a------ C:\WINDOWS\system32\msdtc.exe
2007-03-03 16:11:56 0 d-------- C:\WINDOWS\system32\Com
2007-03-03 16:11:56 60416 --a------ C:\WINDOWS\system32\colbact.dll
2007-03-03 16:11:56 110080 --a------ C:\WINDOWS\system32\clbcatex.dll
2007-03-03 16:11:56 625152 --a------ C:\WINDOWS\system32\catsrvut.dll
2007-03-03 16:11:56 85504 --a------ C:\WINDOWS\system32\catsrvps.dll
2007-03-03 16:11:56 225792 --a------ C:\WINDOWS\system32\catsrv.dll
2007-03-03 16:11:55 540160 --a------ C:\WINDOWS\system32\comuid.dll
2007-03-03 16:11:55 1267200 --a------ C:\WINDOWS\system32\comsvcs.dll
2007-03-03 16:11:55 498688 --a------ C:\WINDOWS\system32\clbcatq.dll
2007-03-03 16:11:50 56320 --a------ C:\WINDOWS\system32\servdeps.dll
2007-03-03 16:11:49 17920 --a------ C:\WINDOWS\system32\mmfutil.dll
2007-03-03 16:11:49 58880 --a------ C:\WINDOWS\system32\licwmi.dll
2007-03-03 16:11:49 187904 --a------ C:\WINDOWS\system32\cmprops.dll
2007-03-03 16:11:47 40840 --a------ C:\WINDOWS\system32\drivers\termdd.sys
2007-03-03 16:11:47 196864 --a------ C:\WINDOWS\system32\drivers\rdpdr.sys
2007-03-03 11:47:28 32768 --a------ C:\WINDOWS\system32\Ikeyrfk8.dll
2007-03-03 11:47:28 10240 --a------ C:\WINDOWS\system32\drivers\Amusbprt.sys
2007-03-03 11:47:28 7424 --a------ C:\WINDOWS\system32\drivers\Amusbdev.sys
2007-03-03 11:47:28 9984 --a------ C:\WINDOWS\system32\drivers\Amps2prt.sys
2007-03-03 11:47:28 5120 --a------ C:\WINDOWS\system32\drivers\Amfilter.sys
2007-03-03 11:47:28 389120 --a------ C:\WINDOWS\system32\Amsample.dll
2007-03-03 11:47:28 86016 --a------ C:\WINDOWS\system32\Amoures.dll
2007-03-03 11:47:28 36864 --a------ C:\WINDOWS\system32\Amhooker.dll
-- Find3M Report ----------------------------------------------------------------
2007-03-04 12:14:29 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Skype
2007-03-04 03:41:53 0 d---s---- C:\Documents and Settings\monica\Dane aplikacji\Microsoft<MICROS~1>
2007-03-04 03:28:18 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Adobe
2007-03-04 03:12:18 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\HP
2007-03-04 02:42:19 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Corel
2007-03-03 23:27:58 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\uTorrent
2007-03-03 22:42:19 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\InstallShield<INSTAL~1>
2007-03-03 22:28:59 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\CyberLink<CYBERL~1>
2007-03-03 22:11:17 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Macromedia<MACROM~1>
2007-03-03 22:10:00 0 d-------- C:\Program Files\Common Files\Macromedia<MACROM~1>
2007-03-03 22:09:22 0 d-------- C:\Program Files\Macromedia<MACROM~1>
2007-03-03 22:05:56 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\ACD Systems<ACDSYS~1>
2007-03-03 19:05:46 458022 --a------ C:\WINDOWS\system32\perfh015.dat
2007-03-03 19:05:46 79408 --a------ C:\WINDOWS\system32\perfc015.dat
2007-03-03 17:05:15 62 --ahs---- C:\Documents and Settings\monica\Dane aplikacji\desktop.ini
2007-03-03 16:46:23 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Talkback
2007-03-03 16:46:17 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Mozilla
2007-03-03 16:19:54 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Identities<IDENTI~1>
2007-01-29 09:58:06 60416 -----n--- C:\WINDOWS\system32\tzchange.exe
2007-01-12 09:27:42 232960 --a------ C:\WINDOWS\system32\webcheck.dll
2007-01-12 09:27:42 51712 -----n--- C:\WINDOWS\system32\msfeedsbs.dll<MSFEED~1.DLL>
2007-01-12 09:27:42 458752 -----n--- C:\WINDOWS\system32\msfeeds.dll
2007-01-12 09:27:42 6054400 --a------ C:\WINDOWS\system32\ieframe.dll
2007-01-08 19:04:54 105984 --a------ C:\WINDOWS\system32\url.dll
2007-01-08 19:04:08 102400 --a------ C:\WINDOWS\system32\occache.dll
2007-01-08 19:02:04 266752 --a------ C:\WINDOWS\system32\iertutil.dll
2007-01-08 19:02:04 44544 --a------ C:\WINDOWS\system32\iernonce.dll
2007-01-08 19:02:02 384000 --a------ C:\WINDOWS\system32\iedkcs32.dll
2007-01-08 19:02:02 383488 --a------ C:\WINDOWS\system32\ieapfltr.dll
2007-01-08 19:02:02 161792 --a------ C:\WINDOWS\system32\ieakui.dll
2007-01-08 19:02:02 230400 --a------ C:\WINDOWS\system32\ieaksie.dll
2007-01-08 19:02:02 153088 --a------ C:\WINDOWS\system32\ieakeng.dll
2007-01-08 19:01:14 17408 --a------ C:\WINDOWS\system32\corpol.dll
2007-01-08 19:00:48 124928 --a------ C:\WINDOWS\system32\advpack.dll
2007-01-08 18:08:14 56832 --a------ C:\WINDOWS\system32\ie4uinit.exe
2007-01-08 18:08:10 13824 --a------ C:\WINDOWS\system32\ieudinit.exe
2006-12-21 14:16:24 36352 -----n--- C:\WINDOWS\system32\tsgqec.dll
2006-12-21 14:16:24 288768 -----n--- C:\WINDOWS\system32\rhttpaa.dll
2006-12-21 14:16:24 116736 -----n--- C:\WINDOWS\system32\aaclient.dll
2006-12-19 22:51:04 135168 --a------ C:\WINDOWS\system32\shsvcs.dll
2006-12-19 19:18:25 334336 --a------ C:\WINDOWS\system32\wiaservc.dll
-- Registry Dump ----------------------------------------------------------------
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"Gadu-Gadu"="\"C:\\Program Files\\Gadu-Gadu\\gg.exe\" /tray"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"RTHDCPL"="RTHDCPL.EXE"
"SkyTel"="SkyTel.EXE"
"nod32kui"="\"C:\\Program Files\\Eset\\nod32kui.exe\" /WAITSERVICE"
"iKeyWorks"="C:\\PROGRA~1\\A4Tech\\Keyboard\\Ikeymain.exe"
"WheelMouse"="C:\\PROGRA~1\\A4Tech\\Mouse\\Amoumain.exe"
"HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"
"MSConfig"="C:\\WINDOWS\\PCHealth\\HelpCtr\\Binaries\\MSConfig.exe /auto"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Gamma Loader.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Gamma Loader.lnk"
"backup"="C:\\WINDOWS\\pss\\Adobe Gamma Loader.lnkCommon Startup"
"location"="Common Startup"
"command"="C:\\PROGRA~1\\COMMON~1\\Adobe\\CALIBR~1\\ADOBEG~1.EXE "
"item"="Adobe Gamma Loader"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Speed Launch.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Reader Speed Launch.lnk"
"backup"="C:\\WINDOWS\\pss\\Adobe Reader Speed Launch.lnkCommon Startup"
"location"="Common Startup"
"command"="C:\\PROGRA~1\\Adobe\\READER~1.0\\Reader\\READER~1.EXE "
"item"="Adobe Reader Speed Launch"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Synchronizer.lnk]
"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Reader Synchronizer.lnk"
"backup"="C:\\WINDOWS\\pss\\Adobe Reader Synchronizer.lnkCommon Startup"
"location"="Common Startup"
"command"="C:\\PROGRA~1\\Adobe\\READER~1.0\\Reader\\ADOBEC~1.EXE "
"item"="Adobe Reader Synchronizer"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools-1033]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="daemon"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\D-Tools\\daemon.exe\" -lang 1033"
"inimapping"="0"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="msmsgs"
"hkey"="HKCU"
"command"="\"C:\\Program Files\