monica Opublikowano 4 Marca 2007 Zgłoś Opublikowano 4 Marca 2007 (edytowane) witam wszystkich probowalam juz na roznych forach ale bez wiekszych rezultatow, wiec moze tutaj bedzie ktos w stanie mi pomoc... otoz mam problem z poleceniem msconfig wszystko jest niby ok tylko przy zatwierdzaniu zmian dokonanych wyskakuje mi komunikat "błąd odmowy dostępu został zwrócony podczas dokonywania próby zmiany usługi być może musisz zalogowac się na konta administratora aby przeprowadzic okreslone zmiany" oczywiście jestem na nim zalogowana czy to w normalnym trybie czy też awaryjnym to samo wyskakuje antyviry nic nie wykazały to samo spybot dlatego też prosze tutaj o pomoc z góry dziekuje tutaj jest log (nie wiem czy jeszcze cos potrzebne) Logfile of HijackThis v1.99.1 Scan saved at 04:40:12, on 2007-03-04 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16414) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\RUNDLL32.EXE C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Eset\nod32kui.exe C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe C:\Program Files\Gadu-Gadu\gg.exe C:\Program Files\Skype\Phone\Skype.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Eset\nod32krn.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\oodag.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Skype\Plugin Manager\SkypePM.exe C:\Program Files\Winamp\winamp.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\regedit.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\WINDOWS\system32\mmc.exe C:\WINDOWS\system32\rsmsink.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe C:\PROGRA~1\COMMON~1\MICROS~1\Msinfo\OFFPRV10.EXE C:\Program Files\totalcmd\TOTALCMD.EXE E:\PLIKI_~1\_tc\HIJACK~1.EXE R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [skyTel] SkyTel.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE O4 - HKLM\..\Run: [iKeyWorks] C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe O4 - HKLM\..\Run: [WheelMouse] C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: HP Photosmart Premier - Szybkie uruchomienie.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O11 - Options group: [iNTERNATIONAL] International* O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe zapomnialam dodac ze wpis O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 zostal juz usuniety i nie tego to byl problem bo nadal sie to pokazuje nastepnie jeden z forumowiczow napisal O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 >>Hijack>>scan>>Fix checked .Niestety, ten wpis "07" oznacza, że masz gdzieś jakąś infekcję, której w logu z Hijacka nie widzę. Zastanawia mnie fakt, że Twój pierwszy log jest inny od tego pokazanego z on-line. Może spróbujemy ustalić infekcję w inny sposób. Ściągnij i uruchom: ComboScan (wolałbym ComboFix, ale od 15 lutego nie wolno go używać!). Następnie znajdź jego raport (ComboScan.txt) w folderze: C:\ComboScan. Z tego raportu skopiuj i wklej tu do postu wszystko począwszy od wiersza " Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ". Może tam będzie widać tę infekcję, zobaczymy... i wyslalam nastepujacy log: -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------- 1R AmdK8 (Sterownik procesora AMD) - C:\WINDOWS\system32\drivers\AmdK8.sys 2R AMON - C:\WINDOWS\system32\drivers\amon.sys 3R Amps2prt (A4Tech PS/2 Port Mouse Driver) - C:\WINDOWS\system32\drivers\Amps2prt.sys 3R Arp1394 (Protokół klienta 1394 ARP) - C:\WINDOWS\system32\drivers\arp1394.sys 2R Aspi32 - C:\WINDOWS\system32\drivers\aspi32.sys 3S CCDECODE (Dekoder napisów) - C:\WINDOWS\system32\drivers\CCDECODE.sys 3S gdrv - C:\WINDOWS\gdrv.sys 3R HDAudBus (Sterownik magistrali Microsoft UAA dla High Definition Audio) - C:\WINDOWS\system32\drivers\Hdaudbus.sys 3S HPZid412 (IEEE-1284.4 Driver HPZid412) - C:\WINDOWS\system32\drivers\HPZid412.sys 3S HPZipr12 (Print Class Driver for IEEE-1284.4 HPZipr12) - C:\WINDOWS\system32\drivers\HPZipr12.sys 3S HPZius12 (USB to IEEE-1284.4 Translation Driver HPZius12) - C:\WINDOWS\system32\drivers\HPZius12.sys 3R IntcAzAudAddService (Service for Realtek HD Audio (WDM)) - C:\WINDOWS\system32\drivers\RtkHDAud.Sys 3S MSTEE (Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming) - C:\WINDOWS\system32\drivers\MSTEE.sys 3S NABTSFEC (Koder-dekoder NABTS/FEC VBI) - C:\WINDOWS\system32\drivers\NABTSFEC.sys 3S NdisIP (Połączenie TV/wideo firmy Microsoft) - C:\WINDOWS\system32\drivers\NdisIP.sys 3R NIC1394 (Sterownik sieci 1394) - C:\WINDOWS\system32\drivers\nic1394.sys 3R nv - C:\WINDOWS\system32\drivers\nv4_mini.sys 0R nvata - C:\WINDOWS\system32\drivers\nvata.sys 3R NVENETFD (NVIDIA nForce Networking Controller Driver) - C:\WINDOWS\system32\drivers\NVENETFD.sys 3R nvnetbus (NVIDIA Network Bus Enumerator) - C:\WINDOWS\system32\drivers\nvnetbus.sys 0R ohci1394 (Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI) - C:\WINDOWS\system32\drivers\ohci1394.sys 3S P2k (Motorola USB Device) - C:\WINDOWS\system32\drivers\P2k.sys 0R pnpshark - C:\WINDOWS\system32\drivers\pnpshark.sys 0R PxHelp20 - C:\WINDOWS\system32\drivers\PxHelp20.sys 3R QCDonner (Logitech QuickCam Express) - C:\WINDOWS\system32\drivers\OVCD.sys 3S SLIP (BDA Slip De-Framer) - C:\WINDOWS\system32\drivers\SLIP.sys 0R st3shark - C:\WINDOWS\system32\drivers\st3shark.sys 3S streamip (BDA IPSink) - C:\WINDOWS\system32\drivers\StreamIP.sys 3S usbccgp (Rodzajowy sterownik nadrzędny USB Microsoft) - C:\WINDOWS\system32\drivers\usbccgp.sys 3R usbehci (Sterownik Miniport rozszerzonego kontrolera hosta USB 2.0 Microsoft) - C:\WINDOWS\system32\drivers\usbehci.sys 3R usbohci (Sterownik Miniport otwartego kontrolera hosta USB Microsoft) - C:\WINDOWS\system32\drivers\usbohci.sys 3S usbprint (Klasa PRINTER USB Microsoft) - C:\WINDOWS\system32\drivers\usbprint.sys 3S usbscan (Sterownik skanera USB) - C:\WINDOWS\system32\drivers\usbscan.sys 3S usbser (Motorola A1000 USB Modem Driver) - C:\WINDOWS\system32\drivers\usbser.sys 3S USBSTOR (Sterownik magazynu masowego USB) - C:\WINDOWS\system32\drivers\USBSTOR.SYS 2R vnccom - C:\WINDOWS\system32\drivers\vnccom.SYS 3R vncdrv - C:\WINDOWS\system32\drivers\vncdrv.sys 2R WIBUKEY (WIBU-KEY Kernel Driver) - C:\WINDOWS\system32\drivers\Wibukey.sys 1R WS2IFSL (Środowisko wspomagające dostawcę usług innych niż IFS - Windows Socket 2.0) - C:\WINDOWS\system32\drivers\ws2ifsl.sys 3S WSTCODEC (Kodery-dekodery teletekstu w standardzie światowym) - C:\WINDOWS\system32\drivers\WSTCODEC.SYS 3S WudfPf (Windows Driver Foundation - User-mode Driver Framework Platform Driver) - C:\WINDOWS\system32\drivers\WudfPf.sys 3S WudfRd (Windows Driver Foundation - User-mode Driver Framework Reflector) - C:\WINDOWS\system32\drivers\WudfRd.sys -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- 3S aspnet_state („Usługa stanu ASP.NET) - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 3S clr_optimization_v2.0.50727_32 (.NET Runtime Optimization Service v2.0.50727_X86) - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 2R NOD32krn (NOD32 Kernel Service) - "C:\Program Files\Eset\nod32krn.exe" 2R NVSvc (NVIDIA Display Driver Service) - C:\WINDOWS\system32\nvsvc32.exe 2R O&O Defrag - C:\WINDOWS\system32\oodag.exe 2S Pml Driver HPZ12 - C:\WINDOWS\system32\HPZipm12.exe -- Files created between 2007-02-04 and 2007-03-04 ------------------------------ 2007-03-04 12:17:24 0 d-------- C:\Program Files\HijackThis<HIJACK~1> 2007-03-04 05:41:19 0 d-------- C:\WINDOWS\system32\oodag 2007-03-04 05:19:12 458022 --a------ C:\WINDOWS\system32\prfh0415.dat 2007-03-04 05:19:12 79408 --a------ C:\WINDOWS\system32\prfc0415.dat 2007-03-04 04:27:34 0 d-------- C:\WINDOWS\system32\NtmsData 2007-03-04 03:23:25 0 d-------- C:\Temp 2007-03-04 03:10:38 0 d-------- C:\bin 2007-03-04 03:09:54 0 d-------- C:\Program Files\Common Files\Sonic Shared<SONICS~1> 2007-03-04 03:08:27 0 d-------- C:\Program Files\Common Files\HP 2007-03-04 03:06:46 0 d-------- C:\Program Files\Hewlett-Packard<HEWLET~1> 2007-03-04 03:06:23 0 d-------- C:\Program Files\Common Files\Hewlett-Packard<HEWLET~1> 2007-03-04 03:03:51 16496 -ra------ C:\WINDOWS\system32\drivers\HPZipr12.sys 2007-03-04 03:03:41 49664 -ra------ C:\WINDOWS\system32\drivers\HPZid412.sys 2007-03-04 03:03:25 77824 -ra------ C:\WINDOWS\system32\HPZIDS01.dll 2007-03-04 03:03:25 38400 --a------ C:\WINDOWS\system32\hpz3l054.dll 2007-03-04 03:03:01 15104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys 2007-03-04 03:02:27 57344 --a------ C:\WINDOWS\system32\HPZisn12.dll 2007-03-04 03:02:27 94208 --a------ C:\WINDOWS\system32\HPZipt12.dll 2007-03-04 03:02:27 204800 --a------ C:\WINDOWS\system32\HPZipr12.dll 2007-03-04 03:02:26 69632 --a------ C:\WINDOWS\system32\HPZipm12.exe 2007-03-04 03:02:26 65536 --a------ C:\WINDOWS\system32\HPZinw12.exe 2007-03-04 03:02:26 282680 --a------ C:\WINDOWS\system32\HPZidr12.dll 2007-03-04 03:01:25 0 d-------- C:\Program Files\HP 2007-03-04 03:00:38 25856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys 2007-03-04 02:59:59 119742 --a------ C:\WINDOWS\hpoins11.dat 2007-03-04 02:56:47 0 d-------- C:\WINDOWS\ShellNew 2007-03-04 02:46:29 0 d-------- C:\WINDOWS\ie7updates<IE7UPD~1> 2007-03-04 02:46:24 0 d-------- C:\Program Files\MSXML 4.0<MSXML4~1.0> 2007-03-04 02:46:21 0 d-------- C:\27fab5d483c0ac65b113a6df677510d2<27FAB5~1> 2007-03-04 02:28:44 5504 --a------ C:\WINDOWS\system32\drivers\MSTEE.sys 2007-03-04 02:28:39 10880 --a------ C:\WINDOWS\system32\drivers\NdisIP.sys 2007-03-04 02:28:36 15360 --a------ C:\WINDOWS\system32\drivers\StreamIP.sys 2007-03-04 02:28:33 11136 --a------ C:\WINDOWS\system32\drivers\SLIP.sys 2007-03-04 02:28:30 19328 --a------ C:\WINDOWS\system32\drivers\WSTCODEC.SYS 2007-03-04 02:28:27 85376 --a------ C:\WINDOWS\system32\drivers\NABTSFEC.sys 2007-03-04 02:28:24 17024 --a------ C:\WINDOWS\system32\drivers\CCDECODE.sys 2007-03-04 02:28:11 42496 --a------ C:\WINDOWS\system32\OVUI2RC.dll 2007-03-04 02:28:11 44544 --a------ C:\WINDOWS\system32\OVUI2.dll 2007-03-04 02:28:11 39424 --a------ C:\WINDOWS\system32\OVComS.exe 2007-03-04 02:28:11 20480 --a------ C:\WINDOWS\system32\OVComC.dll 2007-03-04 02:28:11 116736 --a------ C:\WINDOWS\system32\OVCodec2.dll 2007-03-04 02:28:11 351616 --a------ C:\WINDOWS\system32\drivers\OVCodek2.sys 2007-03-04 02:28:11 28032 --a------ C:\WINDOWS\system32\drivers\OVCD.sys 2007-03-04 02:28:07 48000 --a------ C:\WINDOWS\system32\drivers\OVCam2.sys 2007-03-04 02:28:06 54784 --a------ C:\WINDOWS\system32\vfwwdm32.dll 2007-03-03 23:27:07 38160 --a------ C:\WINDOWS\system32\LMRTREND.dll 2007-03-03 23:27:07 182032 --a------ C:\WINDOWS\system32\dxtmsft3.dll 2007-03-03 23:27:04 63488 --a------ C:\WINDOWS\system32\unam4ie.exe 2007-03-03 23:27:00 10240 --a------ C:\WINDOWS\system32\vidx16.dll 2007-03-03 23:27:00 194320 --a------ C:\WINDOWS\system32\qcut.dll 2007-03-03 23:26:58 4608 --a------ C:\WINDOWS\system32\w95inf32.dll 2007-03-03 23:26:58 2272 --a------ C:\WINDOWS\system32\w95inf16.dll 2007-03-03 23:26:57 48128 --a------ C:\WINDOWS\system32\wnaspi32.dll 2007-03-03 23:26:57 23936 --a------ C:\WINDOWS\system32\drivers\aspi32.sys 2007-03-03 23:26:57 4672 --a------ C:\WINDOWS\system\wowpost.exe 2007-03-03 23:26:57 5600 --a------ C:\WINDOWS\system\winaspi.dll 2007-03-03 23:26:17 306688 --a------ C:\WINDOWS\IsUninst.exe 2007-03-03 23:11:21 0 d-------- C:\Program Files\D-Tools 2007-03-03 22:53:11 31616 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys 2007-03-03 22:50:39 57552 --a------ C:\WINDOWS\system32\WKDOS.EXE 2007-03-03 22:50:39 29696 --a------ C:\WINDOWS\system32\drivers\Wibukey2.sys 2007-03-03 22:50:38 139264 --a------ C:\WINDOWS\system32\WkWin32.dll 2007-03-03 22:50:38 67072 --a------ C:\WINDOWS\system32\drivers\Wibukey.sys 2007-03-03 22:50:38 52736 --a------ C:\WINDOWS\system\WkWin.dll 2007-03-03 22:50:37 0 d-------- C:\Program Files\WIBU-SYSTEMS<WIBU-S~1> 2007-03-03 22:50:37 0 d-------- C:\Program Files\WIBUKEY 2007-03-03 22:50:34 36480 --a------ C:\WINDOWS\system32\drivers\P2k.sys 2007-03-03 22:50:31 77895 --a------ C:\WINDOWS\system32\unibus_tcutil.dll<UNIBUS~1.DLL> 2007-03-03 22:50:23 0 d-------- C:\Program Files\Motorola 2007-03-03 22:40:26 0 d-------- C:\Program Files\Avanquest update<AVANQU~1> 2007-03-03 22:40:02 25600 --a------ C:\WINDOWS\system32\drivers\usbser.sys 2007-03-03 22:39:21 0 d-------- C:\Program Files\Motorola Phone Tools<MOTORO~1> 2007-03-03 22:37:52 0 d-------- C:\Program Files\Lavasoft 2007-03-03 22:37:31 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard<WISEIN~1> 2007-03-03 22:28:30 24064 -----n--- C:\WINDOWS\system32\msxml3a.dll 2007-03-03 22:28:12 0 d-------- C:\Program Files\CyberLink<CYBERL~1> 2007-03-03 22:21:59 0 d-------- C:\Program Files\uTorrent 2007-03-03 22:01:56 0 d-------- C:\Program Files\Common Files\ACD Systems<ACDSYS~1> 2007-03-03 22:01:56 0 d-------- C:\Program Files\ACD Systems<ACDSYS~1> 2007-03-03 22:01:03 0 d-------- C:\WINDOWS\Downloaded Installations<DOWNLO~2> 2007-03-03 21:57:45 307200 --a------ C:\WINDOWS\IsUn0415.exe 2007-03-03 21:41:09 6016 --a------ C:\WINDOWS\system32\drivers\vnccom.SYS 2007-03-03 21:40:49 5760 --a------ C:\WINDOWS\system32\vnchelp.dll 2007-03-03 21:40:49 12800 --a------ C:\WINDOWS\system32\vncdrv.dll 2007-03-03 21:40:49 4736 --a------ C:\WINDOWS\system32\drivers\vncdrv.sys 2007-03-03 21:40:47 0 d-------- C:\Program Files\UltraVNC 2007-03-03 21:39:16 0 d-------- C:\Program Files\Opera 2007-03-03 21:38:00 0 d-------- C:\Program Files\Common Files\Corel 2007-03-03 21:35:48 0 d-------- C:\Program Files\Corel 2007-03-03 21:33:52 49664 --a------ C:\WINDOWS\unvise32.exe 2007-03-03 21:33:50 0 d-------- C:\Program Files\Active Ports<ACTIVE~1> 2007-03-03 21:32:16 0 d-------- C:\Program Files\Common Files\Adobe 2007-03-03 21:23:09 0 d-------- C:\Program Files\GSpot 2007-03-03 21:22:51 115880 -----n--- C:\WINDOWS\system32\pxinsi64.exe 2007-03-03 21:22:51 129784 -----n--- C:\WINDOWS\system32\pxafs.dll 2007-03-03 21:22:51 36528 -----n--- C:\WINDOWS\system32\drivers\PxHelp20.sys 2007-03-03 21:22:45 0 d-------- C:\Program Files\Winamp 2007-03-03 21:16:29 0 d-------- C:\Program Files\SubEdit-Player<SUBEDI~1> 2007-03-03 19:01:37 0 d--hs---- C:\WINDOWS\CSC 2007-03-03 19:00:18 0 d-------- C:\WINDOWS\WBEM 2007-03-03 18:59:22 0 d--h---c- C:\WINDOWS\ie7 2007-03-03 18:58:45 121856 -----n--- C:\WINDOWS\system32\xmllite.dll 2007-03-03 18:58:20 0 d-------- C:\WINDOWS\network diagnostic<NETWOR~1> 2007-03-03 18:56:22 0 d-------- C:\WINDOWS\system32\pl-pl 2007-03-03 18:55:52 0 d-------- C:\Program Files\Windows Media Connect 2<WINDOW~4> 2007-03-03 18:54:56 0 d-------- C:\WINDOWS\system32\LogFiles 2007-03-03 18:54:56 0 d-------- C:\WINDOWS\system32\drivers\UMDF 2007-03-03 18:51:26 0 d-------- C:\WINDOWS\RegisteredPackages<REGIST~2> 2007-03-03 18:50:24 0 d-------- C:\WINDOWS\Microsoft.NET<MICROS~1.NET> 2007-03-03 18:50:24 0 dr--s---- C:\WINDOWS\assembly 2007-03-03 18:50:23 0 d-------- C:\WINDOWS\system32\URTTemp 2007-03-03 18:28:22 0 d-------- C:\Program Files\Common Files\Skype 2007-03-03 17:44:20 0 d-------- C:\Program Files\Skype 2007-03-03 17:39:34 0 d-------- C:\Program Files\OO Software<OOSOFT~1> 2007-03-03 17:29:58 0 d--hs---- C:\RECYCLER 2007-03-03 17:28:30 0 d-------- C:\Program Files\Gadu-Gadu<GADU-G~1> 2007-03-03 17:28:14 1168 --a------ C:\WINDOWS\mozver.dat 2007-03-03 17:11:26 0 d-------- C:\Program Files\A4Tech 2007-03-03 17:08:13 3072 --a------ C:\WINDOWS\system32\drivers\audstub.sys 2007-03-03 17:07:29 58624 --a------ C:\WINDOWS\system32\drivers\redbook.sys 2007-03-03 17:07:13 6400 --a------ C:\WINDOWS\system32\drivers\enum1394.sys 2007-03-03 17:06:47 77312 --a------ C:\WINDOWS\system32\usbui.dll 2007-03-03 17:05:43 0 d--hs---- C:\WINDOWS\Installer<INSTAL~1> 2007-03-03 17:05:42 0 d-------- C:\Program Files\Common Files\ODBC 2007-03-03 17:05:39 0 dr------- C:\Program Files<PROGRA~1> 2007-03-03 17:05:39 0 d-------- C:\Program Files\Common Files\SpeechEngines<SPEECH~1> 2007-03-03 17:05:35 6144 -ra------ C:\WINDOWS\system32\kbdtuq.dll 2007-03-03 17:05:35 6144 -ra------ C:\WINDOWS\system32\kbdtuf.dll 2007-03-03 17:05:35 5632 -ra------ C:\WINDOWS\system32\kbdazel.dll 2007-03-03 17:05:34 5632 -ra------ C:\WINDOWS\system32\kbdmon.dll 2007-03-03 17:05:34 5632 -ra------ C:\WINDOWS\system32\kbdkyr.dll 2007-03-03 17:05:32 8192 -ra------ C:\WINDOWS\system32\kbdhept.dll 2007-03-03 17:05:31 6656 -ra------ C:\WINDOWS\system32\kbdhela3.dll 2007-03-03 17:05:31 6144 -ra------ C:\WINDOWS\system32\kbdhela2.dll 2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe319.dll 2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe220.dll 2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe.dll 2007-03-03 17:05:31 6144 -ra------ C:\WINDOWS\system32\kbdgkl.dll 2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdlv1.dll 2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdlv.dll 2007-03-03 17:05:30 5632 -ra------ C:\WINDOWS\system32\kbdlt1.dll 2007-03-03 17:05:30 5632 -ra------ C:\WINDOWS\system32\kbdlt.dll 2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdest.dll 2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdycl.dll 2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdsl1.dll 2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdsl.dll 2007-03-03 17:05:27 5632 --a------ C:\WINDOWS\system32\kbdro.dll 2007-03-03 17:05:27 5632 --a------ C:\WINDOWS\system32\kbdhu1.dll 2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdhu.dll 2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcz2.dll 2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcz1.dll 2007-03-03 17:05:27 7168 --a------ C:\WINDOWS\system32\kbdcz.dll 2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcr.dll 2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\KBDAL.DLL 2007-03-03 17:05:26 13312 --a------ C:\WINDOWS\system32\irclass.dll 2007-03-03 17:05:26 85532 --a------ C:\WINDOWS\system32\dgsetup.dll 2007-03-03 17:05:26 176157 --a------ C:\WINDOWS\system32\dgrpsetu.dll 2007-03-03 17:05:25 24661 --a------ C:\WINDOWS\system32\spxcoins.dll 2007-03-03 17:05:25 103424 --a------ C:\WINDOWS\system32\EqnClass.Dll 2007-03-03 17:05:25 9168 --a------ C:\WINDOWS\system\VER.DLL 2007-03-03 17:05:25 19200 --a------ C:\WINDOWS\system\TAPI.DLL 2007-03-03 17:05:25 5120 --a------ C:\WINDOWS\system\SHELL.DLL 2007-03-03 17:05:25 24064 --a------ C:\WINDOWS\system\OLESVR.DLL 2007-03-03 17:05:25 83456 --a------ C:\WINDOWS\system\OLECLI.DLL 2007-03-03 17:05:24 15360 --a------ C:\WINDOWS\TASKMAN.EXE 2007-03-03 17:05:24 127008 --a------ C:\WINDOWS\system\MSVIDEO.DLL 2007-03-03 17:05:24 9936 --a------ C:\WINDOWS\system\LZEXPAND.DLL 2007-03-03 17:05:24 33376 --a------ C:\WINDOWS\system\COMMDLG.DLL 2007-03-03 17:05:24 109488 --a------ C:\WINDOWS\system\AVIFILE.DLL 2007-03-03 17:05:24 70096 --a------ C:\WINDOWS\system\AVICAP.DLL 2007-03-03 17:05:23 11264 --a------ C:\WINDOWS\system32\drivers\irenum.sys 2007-03-03 17:05:23 8704 --a------ C:\WINDOWS\system32\batt.dll 2007-03-03 17:05:23 69552 --a------ C:\WINDOWS\system\MMSYSTEM.DLL 2007-03-03 17:05:23 70144 --a------ C:\WINDOWS\NOTEPAD.EXE 2007-03-03 17:05:22 75776 --a------ C:\WINDOWS\system32\storprop.dll 2007-03-03 17:05:03 0 d-------- C:\WINDOWS\system32\CatRoot2 2007-03-03 17:05:03 0 d-------- C:\WINDOWS\system32\CatRoot 2007-03-03 17:04:35 0 d-------- C:\Documents and Settings<DOCUME~1> 2007-03-03 17:04:34 0 d--hs---- C:\System Volume Information<SYSTEM~1> 2007-03-03 17:02:23 0 d-------- C:\Program Files\totalcmd 2007-03-03 16:58:27 0 d-------- C:\WINDOWS 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\WinSxS 2007-03-03 16:58:27 0 dr------- C:\WINDOWS\Web 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\twain_32 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\wins 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\wbem 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\usmt 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\spool 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ShellExt 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\Setup 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ras 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\oobe 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\npp 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\mui 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\inetsrv 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\IME 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\icsxml 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ias 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\export 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers\etc 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers\disdn 2007-03-03 16:58:27 0 dr-hs--c- C:\WINDOWS\system32\dllcache 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\dhcp 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\config 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\3com_dmi 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\3076 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\2052 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1054 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1045 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1042 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1041 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1037 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1033 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1031 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1028 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1025 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\security 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Resources<RESOUR~1> 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\repair 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Provisioning<PROVIS~1> 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\PeerNet 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\pchealth 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\mui 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\msapps 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\msagent 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Media 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\java 2007-03-03 16:58:27 0 d--h----- C:\WINDOWS\inf 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\ime 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Help 2007-03-03 16:58:27 0 dr--s---- C:\WINDOWS\Fonts 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\ehome 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Driver Cache<DRIVER~1> 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Debug 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Cursors 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Connection Wizard<CONNEC~1> 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Config 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\AppPatch 2007-03-03 16:58:27 0 d-------- C:\WINDOWS\addins 2007-03-03 16:46:18 0 --a------ C:\WINDOWS\nsreg.dat 2007-03-03 16:46:06 0 d-------- C:\Program Files\Mozilla Firefox<MOZILL~1> 2007-03-03 16:36:55 274432 --a------ C:\WINDOWS\system32\imon.dll 2007-03-03 16:36:55 502368 --a------ C:\WINDOWS\system32\drivers\amon.sys 2007-03-03 16:34:21 0 d-------- C:\WINDOWS\system32\PreInstall<PREINS~1> 2007-03-03 16:34:19 0 d--h----- C:\WINDOWS\$hf_mig$ 2007-03-03 16:32:50 0 d-------- C:\WINDOWS\system32\Lang 2007-03-03 16:31:31 208896 -----n--- C:\WINDOWS\system32\nvuide.exe 2007-03-03 16:29:23 135168 --a------ C:\WINDOWS\system32\RtlCPAPI.dll 2007-03-03 16:29:23 40960 --a------ C:\WINDOWS\system32\ChCfg.exe 2007-03-03 16:29:22 6400 --a------ C:\WINDOWS\system32\drivers\splitter.sys 2007-03-03 16:29:21 82944 --a------ C:\WINDOWS\system32\drivers\wdmaud.sys 2007-03-03 16:29:20 52864 --a------ C:\WINDOWS\system32\drivers\DMusic.sys 2007-03-03 16:29:16 54272 --a------ C:\WINDOWS\system32\drivers\swmidi.sys 2007-03-03 16:29:15 142464 --a------ C:\WINDOWS\system32\drivers\aec.sys 2007-03-03 16:29:14 172416 --a------ C:\WINDOWS\system32\drivers\kmixer.sys 2007-03-03 16:29:13 2944 --a------ C:\WINDOWS\system32\drivers\drmkaud.sys 2007-03-03 16:29:12 60800 --a------ C:\WINDOWS\system32\drivers\sysaudio.sys 2007-03-03 16:29:11 7552 --a------ C:\WINDOWS\system32\drivers\MSKSSRV.sys 2007-03-03 16:29:10 4992 --a------ C:\WINDOWS\system32\drivers\MSPQM.sys 2007-03-03 16:29:08 5376 --a------ C:\WINDOWS\system32\drivers\MSPCLOCK.sys 2007-03-03 16:29:04 0 d-------- C:\WINDOWS\system32\RTCOM 2007-03-03 16:28:59 4096 --a------ C:\WINDOWS\system32\ksuser.dll 2007-03-03 16:28:59 60288 --a------ C:\WINDOWS\system32\drivers\drmk.sys 2007-03-03 16:28:54 86016 --a------ C:\WINDOWS\SoundMan.exe 2007-03-03 16:28:54 2879488 --a------ C:\WINDOWS\SkyTel.exe 2007-03-03 16:28:54 364544 --a------ C:\WINDOWS\RtlUpd.exe 2007-03-03 16:28:53 4279296 --a------ C:\WINDOWS\system32\drivers\RtkHDAud.Sys 2007-03-03 16:28:53 9709568 --a------ C:\WINDOWS\RTLCPL.exe 2007-03-03 16:28:53 16208384 --a------ C:\WINDOWS\RTHDCPL.exe 2007-03-03 16:28:53 2158592 --a------ C:\WINDOWS\MicCal.exe 2007-03-03 16:28:52 2808832 --a------ C:\WINDOWS\alcwzrd.exe 2007-03-03 16:28:52 69632 --a------ C:\WINDOWS\Alcmtr.exe 2007-03-03 16:28:52 0 d-------- C:\Program Files\Realtek 2007-03-03 16:28:49 487424 --a------ C:\WINDOWS\RtlExUpd.dll 2007-03-03 16:26:44 23856 --a------ C:\WINDOWS\system32\spupdsvc.exe 2007-03-03 16:26:34 0 d-------- C:\WINDOWS\system32\ReinstallBackups<REINST~1> 2007-03-03 16:26:33 43008 --a------ C:\WINDOWS\system32\drivers\AmdK8.sys 2007-03-03 16:26:33 0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1> 2007-03-03 16:26:33 0 d-------- C:\Program Files\AMD 2007-03-03 16:26:02 208896 --a------ C:\WINDOWS\system32\nvudisp.exe 2007-03-03 16:26:02 0 d-------- C:\WINDOWS\nview 2007-03-03 16:25:42 0 d-------- C:\WINDOWS\system32\SoftwareDistribution<SOFTWA~1> 2007-03-03 16:24:53 155136 -ra------ C:\WINDOWS\system32\fdco_l2052.dll<FDCD9D~1.DLL> 2007-03-03 16:24:53 158720 -ra------ C:\WINDOWS\system32\fdco_l1046.dll<FDD79D~1.DLL> 2007-03-03 16:24:53 156672 -ra------ C:\WINDOWS\system32\fdco_l1042.dll<FDC79D~1.DLL> 2007-03-03 16:24:53 156672 -ra------ C:\WINDOWS\system32\fdco_l1041.dll<FDC799~1.DLL> 2007-03-03 16:24:53 158720 -ra------ C:\WINDOWS\system32\fdco_l1040.dll<FDB795~1.DLL> 2007-03-03 16:24:52 204288 -ra------ C:\WINDOWS\system32\fdco1ins.dll 2007-03-03 16:24:52 204288 -ra------ C:\WINDOWS\system32\fdco1.dll 2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1036.dll<FDCO_L~4.DLL> 2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1034.dll<FDCO_L~3.DLL> 2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1031.dll<FDCO_L~2.DLL> 2007-03-03 16:24:52 155648 -ra------ C:\WINDOWS\system32\fdco_l1028.dll<FDCO_L~1.DLL> 2007-03-03 16:24:52 34176 -ra------ C:\WINDOWS\system32\drivers\NVENETFD.sys 2007-03-03 16:24:51 101632 -ra------ C:\WINDOWS\system32\drivers\nvtcp.sys 2007-03-03 16:24:50 208896 --a------ C:\WINDOWS\system32\nvunrm.exe 2007-03-03 16:24:50 35840 -ra------ C:\WINDOWS\system32\nvconrm.dll 2007-03-03 16:24:50 222592 -ra------ C:\WINDOWS\system32\drivers\nvsnpu.sys 2007-03-03 16:24:50 305152 -ra------ C:\WINDOWS\system32\drivers\nvnrm.sys 2007-03-03 16:24:50 13056 -ra------ C:\WINDOWS\system32\drivers\nvnetbus.sys 2007-03-03 16:24:50 9728 -ra------ C:\WINDOWS\system32\bdco1ins.dll 2007-03-03 16:24:50 9728 -ra------ C:\WINDOWS\system32\bdco1.dll 2007-03-03 16:24:50 0 d-------- C:\WINDOWS\NV18921824.TMP<NV1892~1.TMP> 2007-03-03 16:24:49 208896 --a------ C:\WINDOWS\system32\nvusmb.exe 2007-03-03 16:24:39 208896 --a------ C:\WINDOWS\system32\NVUNINST.EXE 2007-03-03 16:24:31 0 d-------- C:\Program Files\Common Files\InstallShield<INSTAL~1> 2007-03-03 16:23:36 4501 --a------ C:\WINDOWS\gdrv.sys 2007-03-03 16:20:47 0 d-------- C:\WINDOWS\pss 2007-03-03 16:19:01 0 d-------- C:\WINDOWS\SoftwareDistribution<SOFTWA~1> 2007-03-03 16:18:59 0 d-------- C:\WINDOWS\Prefetch 2007-03-03 16:16:02 0 d-------- C:\WINDOWS\system32\xircom 2007-03-03 16:16:02 0 d-------- C:\Program Files\microsoft frontpage<MICROS~1> 2007-03-03 16:15:47 0 -rahs---- C:\MSDOS.SYS 2007-03-03 16:15:47 0 -rahs---- C:\IO.SYS 2007-03-03 16:15:47 0 --a------ C:\CONFIG.SYS 2007-03-03 16:15:47 0 --a------ C:\AUTOEXEC.BAT 2007-03-03 16:15:35 112128 --a------ C:\WINDOWS\system32\mapi32.dll 2007-03-03 16:14:53 0 dr------- C:\WINDOWS\Offline Web Pages<OFFLIN~1> 2007-03-03 16:14:53 0 d---s---- C:\WINDOWS\Downloaded Program Files<DOWNLO~1> 2007-03-03 16:14:45 0 d--h----- C:\Program Files\WindowsUpdate<WINDOW~3> 2007-03-03 16:14:41 0 d-------- C:\Program Files\Usługi online<USUGIO~1> 2007-03-03 16:14:26 0 d-------- C:\WINDOWS\system32\DirectX 2007-03-03 16:14:08 11264 --a------ C:\WINDOWS\system32\atrace.dll 2007-03-03 16:13:59 12288 --a------ C:\WINDOWS\system32\nmevtmsg.dll 2007-03-03 16:13:58 67584 --a------ C:\WINDOWS\system32\acctres.dll 2007-03-03 16:13:55 0 d---s---- C:\WINDOWS\Tasks 2007-03-03 16:13:55 16384 --a------ C:\WINDOWS\system32\icfgnt5.dll 2007-03-03 16:13:53 0 d-------- C:\Program Files\Common Files\MSSoap 2007-03-03 16:13:50 0 d-------- C:\WINDOWS\srchasst 2007-03-03 16:13:49 0 d-------- C:\WINDOWS\system32\Macromed 2007-03-03 16:13:47 173536 --a------ C:\WINDOWS\system32\wuweb.dll 2007-03-03 16:13:47 128280 --a------ C:\WINDOWS\system32\wucltui.dll 2007-03-03 16:13:47 6656 --a------ C:\WINDOWS\system32\wuauserv.dll 2007-03-03 16:13:47 195352 --a------ C:\WINDOWS\system32\wuaueng1.dll 2007-03-03 16:13:46 41240 --a------ C:\WINDOWS\system32\wups.dll 2007-03-03 16:13:46 1343768 --a------ C:\WINDOWS\system32\wuaueng.dll 2007-03-03 16:13:46 175384 --a------ C:\WINDOWS\system32\wuauclt1.exe 2007-03-03 16:13:46 125208 --a------ C:\WINDOWS\system32\wuauclt.exe 2007-03-03 16:13:46 466200 --a------ C:\WINDOWS\system32\wuapi.dll 2007-03-03 16:13:46 18944 --a------ C:\WINDOWS\system32\qmgrprxy.dll 2007-03-03 16:13:46 382464 --a------ C:\WINDOWS\system32\qmgr.dll 2007-03-03 16:13:46 7168 --a------ C:\WINDOWS\system32\bitsprx3.dll 2007-03-03 16:13:46 8192 --a------ C:\WINDOWS\system32\bitsprx2.dll 2007-03-03 16:13:42 0 d-------- C:\Program Files\Movie Maker<MOVIEM~1> 2007-03-03 16:13:38 45568 --a------ C:\WINDOWS\system32\safrslv.dll 2007-03-03 16:13:38 29696 --a------ C:\WINDOWS\system32\safrdm.dll 2007-03-03 16:13:38 43520 --a------ C:\WINDOWS\system32\safrcdlg.dll 2007-03-03 16:13:37 43520 --a------ C:\WINDOWS\system32\racpldlg.dll 2007-03-03 16:13:35 16896 --a------ C:\WINDOWS\system32\fltlib.dll 2007-03-03 16:13:34 171008 --a------ C:\WINDOWS\system32\srsvc.dll 2007-03-03 16:13:34 240128 --a------ C:\WINDOWS\system32\srrstr.dll 2007-03-03 16:13:34 67584 --a------ C:\WINDOWS\system32\srclient.dll 2007-03-03 16:13:34 0 d-------- C:\WINDOWS\system32\Restore 2007-03-03 16:13:34 23040 --a------ C:\WINDOWS\system32\fltmc.exe 2007-03-03 16:13:34 73472 --a------ C:\WINDOWS\system32\drivers\sr.sys 2007-03-03 16:13:34 128896 --a------ C:\WINDOWS\system32\drivers\fltmgr.sys 2007-03-03 16:13:33 28672 --a------ C:\WINDOWS\system32\nmmkcert.dll 2007-03-03 16:13:33 69632 --a------ C:\WINDOWS\system32\msconf.dll 2007-03-03 16:13:33 32768 --a------ C:\WINDOWS\system32\mnmsrvc.exe 2007-03-03 16:13:33 34560 --a------ C:\WINDOWS\system32\mnmdd.dll 2007-03-03 16:13:33 32768 --a------ C:\WINDOWS\system32\isrdbg32.dll 2007-03-03 16:13:33 81920 --a------ C:\WINDOWS\system32\ils.dll 2007-03-03 16:13:30 105984 --a------ C:\WINDOWS\system32\msoert2.dll 2007-03-03 16:13:30 252928 --a------ C:\WINDOWS\system32\msoeacct.dll 2007-03-03 16:13:29 49664 --a------ C:\WINDOWS\system32\inetres.dll 2007-03-03 16:13:29 679424 --a------ C:\WINDOWS\system32\inetcomm.dll 2007-03-03 16:13:27 192000 --a------ C:\WINDOWS\system32\schedsvc.dll 2007-03-03 16:13:27 12288 --a------ C:\WINDOWS\system32\mstinit.exe 2007-03-03 16:13:27 278528 --a------ C:\WINDOWS\system32\mstask.dll 2007-03-03 16:13:27 65536 --a------ C:\WINDOWS\system32\icwphbk.dll 2007-03-03 16:13:26 86016 --a------ C:\WINDOWS\system32\isign32.dll 2007-03-03 16:13:26 278528 --a------ C:\WINDOWS\system32\inetcfg.dll 2007-03-03 16:13:26 73728 --a------ C:\WINDOWS\system32\icwdial.dll 2007-03-03 16:13:00 21856 --a------ C:\WINDOWS\system32\emptyregdb.dat<EMPTYR~1.DAT> 2007-03-03 16:12:47 0 d-------- C:\WINDOWS\Registration<REGIST~1> 2007-03-03 16:12:35 0 d-------- C:\Program Files\Messenger<MESSEN~1> 2007-03-03 16:12:30 5632 --a------ C:\WINDOWS\system32\write.exe 2007-03-03 16:12:30 0 d-------- C:\Program Files\MSN Gaming Zone<MSNGAM~1> 2007-03-03 16:12:21 139264 --a------ C:\WINDOWS\system32\sndvol32.exe 2007-03-03 16:12:21 44544 --a------ C:\WINDOWS\system32\hticons.dll 2007-03-03 16:12:20 73216 --a------ C:\WINDOWS\system32\avwav.dll 2007-03-03 16:12:20 231424 --a------ C:\WINDOWS\system32\avtapi.dll 2007-03-03 16:12:20 16384 --a------ C:\WINDOWS\system32\avmeter.dll 2007-03-03 16:12:19 35328 --a------ C:\WINDOWS\system32\winchat.exe 2007-03-03 16:12:12 605696 --a------ C:\WINDOWS\system32\getuname.dll 2007-03-03 16:12:12 80896 --a------ C:\WINDOWS\system32\charmap.exe 2007-03-03 16:12:12 115200 --a------ C:\WINDOWS\system32\calc.exe 2007-03-03 16:12:11 119808 --a------ C:\WINDOWS\system32\winmine.exe 2007-03-03 16:12:11 1225 --a------ C:\WINDOWS\system32\usrlogon.cmd 2007-03-03 16:12:11 57344 --a------ C:\WINDOWS\system32\sol.exe 2007-03-03 16:12:11 9728 --a------ C:\WINDOWS\system32\reset.exe 2007-03-03 16:12:11 128000 --a------ C:\WINDOWS\system32\mshearts.exe 2007-03-03 16:12:11 55808 --a------ C:\WINDOWS\system32\freecell.exe 2007-03-03 16:12:10 17920 --a------ C:\WINDOWS\system32\tsshutdn.exe 2007-03-03 16:12:10 16384 --a------ C:\WINDOWS\system32\tskill.exe 2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\tsdiscon.exe 2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\tscon.exe 2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\shadow.exe 2007-03-03 16:12:10 16384 --a------ C:\WINDOWS\system32\rwinsta.exe 2007-03-03 16:12:10 33792 --a------ C:\WINDOWS\system32\regini.exe 2007-03-03 16:12:10 4608 --a------ C:\WINDOWS\system32\rdpcfgex.dll 2007-03-03 16:12:10 22528 --a------ C:\WINDOWS\system32\qwinsta.exe 2007-03-03 16:12:10 17408 --a------ C:\WINDOWS\system32\qappsrv.exe 2007-03-03 16:12:10 22528 --a------ C:\WINDOWS\system32\msg.exe 2007-03-03 16:12:10 15872 --a------ C:\WINDOWS\system32\logoff.exe 2007-03-03 16:12:09 5120 --a------ C:\WINDOWS\system32\dcomcnfg.exe 2007-03-03 16:12:09 15872 --a------ C:\WINDOWS\system32\cdmodem.dll 2007-03-03 16:12:08 54272 --a------ C:\WINDOWS\system32\stclient.dll 2007-03-03 16:12:08 25088 --a------ C:\WINDOWS\system32\mtxlegih.dll 2007-03-03 16:12:08 4096 --a------ C:\WINDOWS\system32\mtxex.dll 2007-03-03 16:12:08 20480 --a------ C:\WINDOWS\system32\mtxdm.dll 2007-03-03 16:12:08 147456 --a------ C:\WINDOWS\system32\comsnap.dll 2007-03-03 16:12:08 97792 --a------ C:\WINDOWS\system32\comrepl.dll 2007-03-03 16:12:08 25600 --a------ C:\WINDOWS\system32\comaddin.dll 2007-03-03 16:12:02 132608 --a------ C:\WINDOWS\system32\sndrec32.exe 2007-03-03 16:12:02 124928 --a------ C:\WINDOWS\system32\mplay32.exe 2007-03-03 16:12:02 351744 --a------ C:\WINDOWS\system32\hypertrm.dll 2007-03-03 16:12:02 187904 --a------ C:\WINDOWS\system32\accwiz.exe 2007-03-03 16:12:01 539136 --a------ C:\WINDOWS\system32\spider.exe 2007-03-03 16:12:01 345088 --a------ C:\WINDOWS\system32\mspaint.exe 2007-03-03 16:12:01 103424 --a------ C:\WINDOWS\system32\clipbrd.exe 2007-03-03 16:12:01 0 d-------- C:\Program Files\Windows NT<WINDOW~1> 2007-03-03 16:12:00 94720 --a------ C:\WINDOWS\system32\tscfgwmi.dll 2007-03-03 16:12:00 60928 --a------ C:\WINDOWS\system32\remotepg.dll 2007-03-03 16:12:00 67072 --a------ C:\WINDOWS\system32\rdshost.exe 2007-03-03 16:12:00 13824 --a------ C:\WINDOWS\system32\rdsaddin.exe 2007-03-03 16:12:00 1866240 --a------ C:\WINDOWS\system32\mstscax.dll 2007-03-03 16:12:00 600576 --a------ C:\WINDOWS\system32\mstsc.exe 2007-03-03 16:12:00 21896 --a------ C:\WINDOWS\system32\drivers\tdtcp.sys 2007-03-03 16:12:00 12040 --a------ C:\WINDOWS\system32\drivers\tdpipe.sys 2007-03-03 16:12:00 139528 --a------ C:\WINDOWS\system32\drivers\rdpwd.sys 2007-03-03 16:11:59 44544 --a------ C:\WINDOWS\system32\tscupgrd.exe 2007-03-03 16:11:59 296448 --a------ C:\WINDOWS\system32\termsrv.dll 2007-03-03 16:11:59 141824 --a------ C:\WINDOWS\system32\sessmgr.exe 2007-03-03 16:11:59 87176 --a------ C:\WINDOWS\system32\rdpwsx.dll 2007-03-03 16:11:59 19968 --a------ C:\WINDOWS\system32\rdpsnd.dll 2007-03-03 16:11:59 62464 --a------ C:\WINDOWS\system32\rdpclip.exe 2007-03-03 16:11:59 147968 --a------ C:\WINDOWS\system32\rdchost.dll 2007-03-03 16:11:59 20992 --a------ C:\WINDOWS\system32\qprocess.exe 2007-03-03 16:11:59 11264 --a------ C:\WINDOWS\system32\icaapi.dll 2007-03-03 16:11:58 91136 --a------ C:\WINDOWS\system32\mtxoci.dll 2007-03-03 16:11:58 161280 --a------ C:\WINDOWS\system32\msdtcuiu.dll 2007-03-03 16:11:58 956416 --a------ C:\WINDOWS\system32\msdtctm.dll 2007-03-03 16:11:58 426496 --a------ C:\WINDOWS\system32\msdtcprx.dll 2007-03-03 16:11:58 0 d-------- C:\WINDOWS\system32\MsDtc 2007-03-03 16:11:58 38912 --a------ C:\WINDOWS\system32\cfgbkend.dll 2007-03-03 16:11:57 11776 --a------ C:\WINDOWS\system32\xolehlp.dll 2007-03-03 16:11:57 58880 --a------ C:\WINDOWS\system32\msdtclog.dll 2007-03-03 16:11:57 6144 --a------ C:\WINDOWS\system32\msdtc.exe 2007-03-03 16:11:56 0 d-------- C:\WINDOWS\system32\Com 2007-03-03 16:11:56 60416 --a------ C:\WINDOWS\system32\colbact.dll 2007-03-03 16:11:56 110080 --a------ C:\WINDOWS\system32\clbcatex.dll 2007-03-03 16:11:56 625152 --a------ C:\WINDOWS\system32\catsrvut.dll 2007-03-03 16:11:56 85504 --a------ C:\WINDOWS\system32\catsrvps.dll 2007-03-03 16:11:56 225792 --a------ C:\WINDOWS\system32\catsrv.dll 2007-03-03 16:11:55 540160 --a------ C:\WINDOWS\system32\comuid.dll 2007-03-03 16:11:55 1267200 --a------ C:\WINDOWS\system32\comsvcs.dll 2007-03-03 16:11:55 498688 --a------ C:\WINDOWS\system32\clbcatq.dll 2007-03-03 16:11:50 56320 --a------ C:\WINDOWS\system32\servdeps.dll 2007-03-03 16:11:49 17920 --a------ C:\WINDOWS\system32\mmfutil.dll 2007-03-03 16:11:49 58880 --a------ C:\WINDOWS\system32\licwmi.dll 2007-03-03 16:11:49 187904 --a------ C:\WINDOWS\system32\cmprops.dll 2007-03-03 16:11:47 40840 --a------ C:\WINDOWS\system32\drivers\termdd.sys 2007-03-03 16:11:47 196864 --a------ C:\WINDOWS\system32\drivers\rdpdr.sys 2007-03-03 11:47:28 32768 --a------ C:\WINDOWS\system32\Ikeyrfk8.dll 2007-03-03 11:47:28 10240 --a------ C:\WINDOWS\system32\drivers\Amusbprt.sys 2007-03-03 11:47:28 7424 --a------ C:\WINDOWS\system32\drivers\Amusbdev.sys 2007-03-03 11:47:28 9984 --a------ C:\WINDOWS\system32\drivers\Amps2prt.sys 2007-03-03 11:47:28 5120 --a------ C:\WINDOWS\system32\drivers\Amfilter.sys 2007-03-03 11:47:28 389120 --a------ C:\WINDOWS\system32\Amsample.dll 2007-03-03 11:47:28 86016 --a------ C:\WINDOWS\system32\Amoures.dll 2007-03-03 11:47:28 36864 --a------ C:\WINDOWS\system32\Amhooker.dll -- Find3M Report ---------------------------------------------------------------- 2007-03-04 12:14:29 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Skype 2007-03-04 03:41:53 0 d---s---- C:\Documents and Settings\monica\Dane aplikacji\Microsoft<MICROS~1> 2007-03-04 03:28:18 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Adobe 2007-03-04 03:12:18 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\HP 2007-03-04 02:42:19 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Corel 2007-03-03 23:27:58 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\uTorrent 2007-03-03 22:42:19 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\InstallShield<INSTAL~1> 2007-03-03 22:28:59 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\CyberLink<CYBERL~1> 2007-03-03 22:11:17 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Macromedia<MACROM~1> 2007-03-03 22:10:00 0 d-------- C:\Program Files\Common Files\Macromedia<MACROM~1> 2007-03-03 22:09:22 0 d-------- C:\Program Files\Macromedia<MACROM~1> 2007-03-03 22:05:56 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\ACD Systems<ACDSYS~1> 2007-03-03 19:05:46 458022 --a------ C:\WINDOWS\system32\perfh015.dat 2007-03-03 19:05:46 79408 --a------ C:\WINDOWS\system32\perfc015.dat 2007-03-03 17:05:15 62 --ahs---- C:\Documents and Settings\monica\Dane aplikacji\desktop.ini 2007-03-03 16:46:23 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Talkback 2007-03-03 16:46:17 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Mozilla 2007-03-03 16:19:54 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Identities<IDENTI~1> 2007-01-29 09:58:06 60416 -----n--- C:\WINDOWS\system32\tzchange.exe 2007-01-12 09:27:42 232960 --a------ C:\WINDOWS\system32\webcheck.dll 2007-01-12 09:27:42 51712 -----n--- C:\WINDOWS\system32\msfeedsbs.dll<MSFEED~1.DLL> 2007-01-12 09:27:42 458752 -----n--- C:\WINDOWS\system32\msfeeds.dll 2007-01-12 09:27:42 6054400 --a------ C:\WINDOWS\system32\ieframe.dll 2007-01-08 19:04:54 105984 --a------ C:\WINDOWS\system32\url.dll 2007-01-08 19:04:08 102400 --a------ C:\WINDOWS\system32\occache.dll 2007-01-08 19:02:04 266752 --a------ C:\WINDOWS\system32\iertutil.dll 2007-01-08 19:02:04 44544 --a------ C:\WINDOWS\system32\iernonce.dll 2007-01-08 19:02:02 384000 --a------ C:\WINDOWS\system32\iedkcs32.dll 2007-01-08 19:02:02 383488 --a------ C:\WINDOWS\system32\ieapfltr.dll 2007-01-08 19:02:02 161792 --a------ C:\WINDOWS\system32\ieakui.dll 2007-01-08 19:02:02 230400 --a------ C:\WINDOWS\system32\ieaksie.dll 2007-01-08 19:02:02 153088 --a------ C:\WINDOWS\system32\ieakeng.dll 2007-01-08 19:01:14 17408 --a------ C:\WINDOWS\system32\corpol.dll 2007-01-08 19:00:48 124928 --a------ C:\WINDOWS\system32\advpack.dll 2007-01-08 18:08:14 56832 --a------ C:\WINDOWS\system32\ie4uinit.exe 2007-01-08 18:08:10 13824 --a------ C:\WINDOWS\system32\ieudinit.exe 2006-12-21 14:16:24 36352 -----n--- C:\WINDOWS\system32\tsgqec.dll 2006-12-21 14:16:24 288768 -----n--- C:\WINDOWS\system32\rhttpaa.dll 2006-12-21 14:16:24 116736 -----n--- C:\WINDOWS\system32\aaclient.dll 2006-12-19 22:51:04 135168 --a------ C:\WINDOWS\system32\shsvcs.dll 2006-12-19 19:18:25 334336 --a------ C:\WINDOWS\system32\wiaservc.dll -- Registry Dump ---------------------------------------------------------------- [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized" "ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe" "Gadu-Gadu"="\"C:\\Program Files\\Gadu-Gadu\\gg.exe\" /tray" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup" "nwiz"="nwiz.exe /install" "NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit" "RTHDCPL"="RTHDCPL.EXE" "SkyTel"="SkyTel.EXE" "nod32kui"="\"C:\\Program Files\\Eset\\nod32kui.exe\" /WAITSERVICE" "iKeyWorks"="C:\\PROGRA~1\\A4Tech\\Keyboard\\Ikeymain.exe" "WheelMouse"="C:\\PROGRA~1\\A4Tech\\Mouse\\Amoumain.exe" "HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe" "MSConfig"="C:\\WINDOWS\\PCHealth\\HelpCtr\\Binaries\\MSConfig.exe /auto" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL] "Installed"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI] "Installed"="1" "NoChange"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS] "Installed"="1" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Gamma Loader.lnk] "path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Gamma Loader.lnk" "backup"="C:\\WINDOWS\\pss\\Adobe Gamma Loader.lnkCommon Startup" "location"="Common Startup" "command"="C:\\PROGRA~1\\COMMON~1\\Adobe\\CALIBR~1\\ADOBEG~1.EXE " "item"="Adobe Gamma Loader" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Speed Launch.lnk] "path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Reader Speed Launch.lnk" "backup"="C:\\WINDOWS\\pss\\Adobe Reader Speed Launch.lnkCommon Startup" "location"="Common Startup" "command"="C:\\PROGRA~1\\Adobe\\READER~1.0\\Reader\\READER~1.EXE " "item"="Adobe Reader Speed Launch" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Synchronizer.lnk] "path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Reader Synchronizer.lnk" "backup"="C:\\WINDOWS\\pss\\Adobe Reader Synchronizer.lnkCommon Startup" "location"="Common Startup" "command"="C:\\PROGRA~1\\Adobe\\READER~1.0\\Reader\\ADOBEC~1.EXE " "item"="Adobe Reader Synchronizer" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools-1033] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="daemon" "hkey"="HKLM" "command"="\"C:\\Program Files\\D-Tools\\daemon.exe\" -lang 1033" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="msmsgs" "hkey"="HKCU" "command"="\"C:\\Program Files\ Edytowane 4 Marca 2007 przez monica Cytuj Udostępnij tę odpowiedź Odnośnik do odpowiedzi Udostępnij na innych stronach Więcej opcji udostępniania...
avecezary Opublikowano 4 Marca 2007 Zgłoś Opublikowano 4 Marca 2007 witam czarno widze... wklej na hijackthis.de ................... Cytuj Udostępnij tę odpowiedź Odnośnik do odpowiedzi Udostępnij na innych stronach Więcej opcji udostępniania...
monica Opublikowano 5 Marca 2007 Zgłoś Opublikowano 5 Marca 2007 witam czarno widze... wklej na hijackthis.de ................... no wlasnie juz wklejalam jednak nic to nie daje ;/ dolaczam kompletny plik comboscan, moze ktos cos wymysli ComboScan.txt Cytuj Udostępnij tę odpowiedź Odnośnik do odpowiedzi Udostępnij na innych stronach Więcej opcji udostępniania...