Skocz do zawartości
monica

Problem Z Msconfig

Rekomendowane odpowiedzi

witam wszystkich probowalam juz na roznych forach ale bez wiekszych rezultatow, wiec moze tutaj bedzie ktos w stanie mi pomoc...

 

otoz mam problem z poleceniem msconfig wszystko jest niby ok tylko przy zatwierdzaniu zmian dokonanych wyskakuje mi komunikat "błąd odmowy dostępu został zwrócony podczas dokonywania próby zmiany usługi być może musisz zalogowac się na konta administratora aby przeprowadzic okreslone zmiany" oczywiście jestem na nim zalogowana czy to w normalnym trybie czy też awaryjnym to samo wyskakuje antyviry nic nie wykazały to samo spybot dlatego też prosze tutaj o pomoc z góry dziekuje

 

tutaj jest log (nie wiem czy jeszcze cos potrzebne)

 

Logfile of HijackThis v1.99.1

Scan saved at 04:40:12, on 2007-03-04

Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16414)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

 

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\RUNDLL32.EXE

C:\WINDOWS\RTHDCPL.EXE

C:\Program Files\Eset\nod32kui.exe

C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe

C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe

C:\Program Files\Gadu-Gadu\gg.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\WINDOWS\system32\ctfmon.exe

C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe

C:\Program Files\Eset\nod32krn.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\oodag.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Skype\Plugin Manager\SkypePM.exe

C:\Program Files\Winamp\winamp.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\WINDOWS\regedit.exe

C:\WINDOWS\system32\NOTEPAD.EXE

C:\WINDOWS\system32\mmc.exe

C:\WINDOWS\system32\rsmsink.exe

C:\WINDOWS\system32\HPZipm12.exe

C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe

C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe

C:\PROGRA~1\COMMON~1\MICROS~1\Msinfo\OFFPRV10.EXE

C:\Program Files\totalcmd\TOTALCMD.EXE

E:\PLIKI_~1\_tc\HIJACK~1.EXE

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [skyTel] SkyTel.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE

O4 - HKLM\..\Run: [iKeyWorks] C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe

O4 - HKLM\..\Run: [WheelMouse] C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto

O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

O4 - Global Startup: HP Photosmart Premier - Szybkie uruchomienie.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe

O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1

O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O11 - Options group: [iNTERNATIONAL] International*

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

 

zapomnialam dodac ze wpis

O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1

zostal juz usuniety i nie tego to byl problem bo nadal sie to pokazuje

 

nastepnie jeden z forumowiczow napisal

 

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1

>>Hijack>>scan>>Fix checked

.Niestety, ten wpis "07" oznacza, że masz gdzieś jakąś infekcję, której w logu z Hijacka nie widzę.

Zastanawia mnie fakt, że Twój pierwszy log jest inny od tego pokazanego z on-line.

Może spróbujemy ustalić infekcję w inny sposób.

Ściągnij i uruchom: ComboScan (wolałbym ComboFix, ale od 15 lutego nie wolno go używać!).

Następnie znajdź jego raport (ComboScan.txt) w folderze: C:\ComboScan.

Z tego raportu skopiuj i wklej tu do postu wszystko począwszy od wiersza

" Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ".

Może tam będzie widać tę infekcję, zobaczymy...

 

i wyslalam nastepujacy log:

 

-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ----------------------

 

1R AmdK8 (Sterownik procesora AMD) - C:\WINDOWS\system32\drivers\AmdK8.sys

2R AMON - C:\WINDOWS\system32\drivers\amon.sys

3R Amps2prt (A4Tech PS/2 Port Mouse Driver) - C:\WINDOWS\system32\drivers\Amps2prt.sys

3R Arp1394 (Protokół klienta 1394 ARP) - C:\WINDOWS\system32\drivers\arp1394.sys

2R Aspi32 - C:\WINDOWS\system32\drivers\aspi32.sys

3S CCDECODE (Dekoder napisów) - C:\WINDOWS\system32\drivers\CCDECODE.sys

3S gdrv - C:\WINDOWS\gdrv.sys

3R HDAudBus (Sterownik magistrali Microsoft UAA dla High Definition Audio) - C:\WINDOWS\system32\drivers\Hdaudbus.sys

3S HPZid412 (IEEE-1284.4 Driver HPZid412) - C:\WINDOWS\system32\drivers\HPZid412.sys

3S HPZipr12 (Print Class Driver for IEEE-1284.4 HPZipr12) - C:\WINDOWS\system32\drivers\HPZipr12.sys

3S HPZius12 (USB to IEEE-1284.4 Translation Driver HPZius12) - C:\WINDOWS\system32\drivers\HPZius12.sys

3R IntcAzAudAddService (Service for Realtek HD Audio (WDM)) - C:\WINDOWS\system32\drivers\RtkHDAud.Sys

3S MSTEE (Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming) - C:\WINDOWS\system32\drivers\MSTEE.sys

3S NABTSFEC (Koder-dekoder NABTS/FEC VBI) - C:\WINDOWS\system32\drivers\NABTSFEC.sys

3S NdisIP (Połączenie TV/wideo firmy Microsoft) - C:\WINDOWS\system32\drivers\NdisIP.sys

3R NIC1394 (Sterownik sieci 1394) - C:\WINDOWS\system32\drivers\nic1394.sys

3R nv - C:\WINDOWS\system32\drivers\nv4_mini.sys

0R nvata - C:\WINDOWS\system32\drivers\nvata.sys

3R NVENETFD (NVIDIA nForce Networking Controller Driver) - C:\WINDOWS\system32\drivers\NVENETFD.sys

3R nvnetbus (NVIDIA Network Bus Enumerator) - C:\WINDOWS\system32\drivers\nvnetbus.sys

0R ohci1394 (Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI) - C:\WINDOWS\system32\drivers\ohci1394.sys

3S P2k (Motorola USB Device) - C:\WINDOWS\system32\drivers\P2k.sys

0R pnpshark - C:\WINDOWS\system32\drivers\pnpshark.sys

0R PxHelp20 - C:\WINDOWS\system32\drivers\PxHelp20.sys

3R QCDonner (Logitech QuickCam Express) - C:\WINDOWS\system32\drivers\OVCD.sys

3S SLIP (BDA Slip De-Framer) - C:\WINDOWS\system32\drivers\SLIP.sys

0R st3shark - C:\WINDOWS\system32\drivers\st3shark.sys

3S streamip (BDA IPSink) - C:\WINDOWS\system32\drivers\StreamIP.sys

3S usbccgp (Rodzajowy sterownik nadrzędny USB Microsoft) - C:\WINDOWS\system32\drivers\usbccgp.sys

3R usbehci (Sterownik Miniport rozszerzonego kontrolera hosta USB 2.0 Microsoft) - C:\WINDOWS\system32\drivers\usbehci.sys

3R usbohci (Sterownik Miniport otwartego kontrolera hosta USB Microsoft) - C:\WINDOWS\system32\drivers\usbohci.sys

3S usbprint (Klasa PRINTER USB Microsoft) - C:\WINDOWS\system32\drivers\usbprint.sys

3S usbscan (Sterownik skanera USB) - C:\WINDOWS\system32\drivers\usbscan.sys

3S usbser (Motorola A1000 USB Modem Driver) - C:\WINDOWS\system32\drivers\usbser.sys

3S USBSTOR (Sterownik magazynu masowego USB) - C:\WINDOWS\system32\drivers\USBSTOR.SYS

2R vnccom - C:\WINDOWS\system32\drivers\vnccom.SYS

3R vncdrv - C:\WINDOWS\system32\drivers\vncdrv.sys

2R WIBUKEY (WIBU-KEY Kernel Driver) - C:\WINDOWS\system32\drivers\Wibukey.sys

1R WS2IFSL (Środowisko wspomagające dostawcę usług innych niż IFS - Windows Socket 2.0) - C:\WINDOWS\system32\drivers\ws2ifsl.sys

3S WSTCODEC (Kodery-dekodery teletekstu w standardzie światowym) - C:\WINDOWS\system32\drivers\WSTCODEC.SYS

3S WudfPf (Windows Driver Foundation - User-mode Driver Framework Platform Driver) - C:\WINDOWS\system32\drivers\WudfPf.sys

3S WudfRd (Windows Driver Foundation - User-mode Driver Framework Reflector) - C:\WINDOWS\system32\drivers\WudfRd.sys

 

 

-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

 

3S aspnet_state („Usługa stanu ASP.NET) - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe

3S clr_optimization_v2.0.50727_32 (.NET Runtime Optimization Service v2.0.50727_X86) - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe

2R NOD32krn (NOD32 Kernel Service) - "C:\Program Files\Eset\nod32krn.exe"

2R NVSvc (NVIDIA Display Driver Service) - C:\WINDOWS\system32\nvsvc32.exe

2R O&O Defrag - C:\WINDOWS\system32\oodag.exe

2S Pml Driver HPZ12 - C:\WINDOWS\system32\HPZipm12.exe

 

 

-- Files created between 2007-02-04 and 2007-03-04 ------------------------------

 

2007-03-04 12:17:24 0 d-------- C:\Program Files\HijackThis<HIJACK~1>

2007-03-04 05:41:19 0 d-------- C:\WINDOWS\system32\oodag

2007-03-04 05:19:12 458022 --a------ C:\WINDOWS\system32\prfh0415.dat

2007-03-04 05:19:12 79408 --a------ C:\WINDOWS\system32\prfc0415.dat

2007-03-04 04:27:34 0 d-------- C:\WINDOWS\system32\NtmsData

2007-03-04 03:23:25 0 d-------- C:\Temp

2007-03-04 03:10:38 0 d-------- C:\bin

2007-03-04 03:09:54 0 d-------- C:\Program Files\Common Files\Sonic Shared<SONICS~1>

2007-03-04 03:08:27 0 d-------- C:\Program Files\Common Files\HP

2007-03-04 03:06:46 0 d-------- C:\Program Files\Hewlett-Packard<HEWLET~1>

2007-03-04 03:06:23 0 d-------- C:\Program Files\Common Files\Hewlett-Packard<HEWLET~1>

2007-03-04 03:03:51 16496 -ra------ C:\WINDOWS\system32\drivers\HPZipr12.sys

2007-03-04 03:03:41 49664 -ra------ C:\WINDOWS\system32\drivers\HPZid412.sys

2007-03-04 03:03:25 77824 -ra------ C:\WINDOWS\system32\HPZIDS01.dll

2007-03-04 03:03:25 38400 --a------ C:\WINDOWS\system32\hpz3l054.dll

2007-03-04 03:03:01 15104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys

2007-03-04 03:02:27 57344 --a------ C:\WINDOWS\system32\HPZisn12.dll

2007-03-04 03:02:27 94208 --a------ C:\WINDOWS\system32\HPZipt12.dll

2007-03-04 03:02:27 204800 --a------ C:\WINDOWS\system32\HPZipr12.dll

2007-03-04 03:02:26 69632 --a------ C:\WINDOWS\system32\HPZipm12.exe

2007-03-04 03:02:26 65536 --a------ C:\WINDOWS\system32\HPZinw12.exe

2007-03-04 03:02:26 282680 --a------ C:\WINDOWS\system32\HPZidr12.dll

2007-03-04 03:01:25 0 d-------- C:\Program Files\HP

2007-03-04 03:00:38 25856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys

2007-03-04 02:59:59 119742 --a------ C:\WINDOWS\hpoins11.dat

2007-03-04 02:56:47 0 d-------- C:\WINDOWS\ShellNew

2007-03-04 02:46:29 0 d-------- C:\WINDOWS\ie7updates<IE7UPD~1>

2007-03-04 02:46:24 0 d-------- C:\Program Files\MSXML 4.0<MSXML4~1.0>

2007-03-04 02:46:21 0 d-------- C:\27fab5d483c0ac65b113a6df677510d2<27FAB5~1>

2007-03-04 02:28:44 5504 --a------ C:\WINDOWS\system32\drivers\MSTEE.sys

2007-03-04 02:28:39 10880 --a------ C:\WINDOWS\system32\drivers\NdisIP.sys

2007-03-04 02:28:36 15360 --a------ C:\WINDOWS\system32\drivers\StreamIP.sys

2007-03-04 02:28:33 11136 --a------ C:\WINDOWS\system32\drivers\SLIP.sys

2007-03-04 02:28:30 19328 --a------ C:\WINDOWS\system32\drivers\WSTCODEC.SYS

2007-03-04 02:28:27 85376 --a------ C:\WINDOWS\system32\drivers\NABTSFEC.sys

2007-03-04 02:28:24 17024 --a------ C:\WINDOWS\system32\drivers\CCDECODE.sys

2007-03-04 02:28:11 42496 --a------ C:\WINDOWS\system32\OVUI2RC.dll

2007-03-04 02:28:11 44544 --a------ C:\WINDOWS\system32\OVUI2.dll

2007-03-04 02:28:11 39424 --a------ C:\WINDOWS\system32\OVComS.exe

2007-03-04 02:28:11 20480 --a------ C:\WINDOWS\system32\OVComC.dll

2007-03-04 02:28:11 116736 --a------ C:\WINDOWS\system32\OVCodec2.dll

2007-03-04 02:28:11 351616 --a------ C:\WINDOWS\system32\drivers\OVCodek2.sys

2007-03-04 02:28:11 28032 --a------ C:\WINDOWS\system32\drivers\OVCD.sys

2007-03-04 02:28:07 48000 --a------ C:\WINDOWS\system32\drivers\OVCam2.sys

2007-03-04 02:28:06 54784 --a------ C:\WINDOWS\system32\vfwwdm32.dll

2007-03-03 23:27:07 38160 --a------ C:\WINDOWS\system32\LMRTREND.dll

2007-03-03 23:27:07 182032 --a------ C:\WINDOWS\system32\dxtmsft3.dll

2007-03-03 23:27:04 63488 --a------ C:\WINDOWS\system32\unam4ie.exe

2007-03-03 23:27:00 10240 --a------ C:\WINDOWS\system32\vidx16.dll

2007-03-03 23:27:00 194320 --a------ C:\WINDOWS\system32\qcut.dll

2007-03-03 23:26:58 4608 --a------ C:\WINDOWS\system32\w95inf32.dll

2007-03-03 23:26:58 2272 --a------ C:\WINDOWS\system32\w95inf16.dll

2007-03-03 23:26:57 48128 --a------ C:\WINDOWS\system32\wnaspi32.dll

2007-03-03 23:26:57 23936 --a------ C:\WINDOWS\system32\drivers\aspi32.sys

2007-03-03 23:26:57 4672 --a------ C:\WINDOWS\system\wowpost.exe

2007-03-03 23:26:57 5600 --a------ C:\WINDOWS\system\winaspi.dll

2007-03-03 23:26:17 306688 --a------ C:\WINDOWS\IsUninst.exe

2007-03-03 23:11:21 0 d-------- C:\Program Files\D-Tools

2007-03-03 22:53:11 31616 --a------ C:\WINDOWS\system32\drivers\usbccgp.sys

2007-03-03 22:50:39 57552 --a------ C:\WINDOWS\system32\WKDOS.EXE

2007-03-03 22:50:39 29696 --a------ C:\WINDOWS\system32\drivers\Wibukey2.sys

2007-03-03 22:50:38 139264 --a------ C:\WINDOWS\system32\WkWin32.dll

2007-03-03 22:50:38 67072 --a------ C:\WINDOWS\system32\drivers\Wibukey.sys

2007-03-03 22:50:38 52736 --a------ C:\WINDOWS\system\WkWin.dll

2007-03-03 22:50:37 0 d-------- C:\Program Files\WIBU-SYSTEMS<WIBU-S~1>

2007-03-03 22:50:37 0 d-------- C:\Program Files\WIBUKEY

2007-03-03 22:50:34 36480 --a------ C:\WINDOWS\system32\drivers\P2k.sys

2007-03-03 22:50:31 77895 --a------ C:\WINDOWS\system32\unibus_tcutil.dll<UNIBUS~1.DLL>

2007-03-03 22:50:23 0 d-------- C:\Program Files\Motorola

2007-03-03 22:40:26 0 d-------- C:\Program Files\Avanquest update<AVANQU~1>

2007-03-03 22:40:02 25600 --a------ C:\WINDOWS\system32\drivers\usbser.sys

2007-03-03 22:39:21 0 d-------- C:\Program Files\Motorola Phone Tools<MOTORO~1>

2007-03-03 22:37:52 0 d-------- C:\Program Files\Lavasoft

2007-03-03 22:37:31 0 d-------- C:\Program Files\Common Files\Wise Installation Wizard<WISEIN~1>

2007-03-03 22:28:30 24064 -----n--- C:\WINDOWS\system32\msxml3a.dll

2007-03-03 22:28:12 0 d-------- C:\Program Files\CyberLink<CYBERL~1>

2007-03-03 22:21:59 0 d-------- C:\Program Files\uTorrent

2007-03-03 22:01:56 0 d-------- C:\Program Files\Common Files\ACD Systems<ACDSYS~1>

2007-03-03 22:01:56 0 d-------- C:\Program Files\ACD Systems<ACDSYS~1>

2007-03-03 22:01:03 0 d-------- C:\WINDOWS\Downloaded Installations<DOWNLO~2>

2007-03-03 21:57:45 307200 --a------ C:\WINDOWS\IsUn0415.exe

2007-03-03 21:41:09 6016 --a------ C:\WINDOWS\system32\drivers\vnccom.SYS

2007-03-03 21:40:49 5760 --a------ C:\WINDOWS\system32\vnchelp.dll

2007-03-03 21:40:49 12800 --a------ C:\WINDOWS\system32\vncdrv.dll

2007-03-03 21:40:49 4736 --a------ C:\WINDOWS\system32\drivers\vncdrv.sys

2007-03-03 21:40:47 0 d-------- C:\Program Files\UltraVNC

2007-03-03 21:39:16 0 d-------- C:\Program Files\Opera

2007-03-03 21:38:00 0 d-------- C:\Program Files\Common Files\Corel

2007-03-03 21:35:48 0 d-------- C:\Program Files\Corel

2007-03-03 21:33:52 49664 --a------ C:\WINDOWS\unvise32.exe

2007-03-03 21:33:50 0 d-------- C:\Program Files\Active Ports<ACTIVE~1>

2007-03-03 21:32:16 0 d-------- C:\Program Files\Common Files\Adobe

2007-03-03 21:23:09 0 d-------- C:\Program Files\GSpot

2007-03-03 21:22:51 115880 -----n--- C:\WINDOWS\system32\pxinsi64.exe

2007-03-03 21:22:51 129784 -----n--- C:\WINDOWS\system32\pxafs.dll

2007-03-03 21:22:51 36528 -----n--- C:\WINDOWS\system32\drivers\PxHelp20.sys

2007-03-03 21:22:45 0 d-------- C:\Program Files\Winamp

2007-03-03 21:16:29 0 d-------- C:\Program Files\SubEdit-Player<SUBEDI~1>

2007-03-03 19:01:37 0 d--hs---- C:\WINDOWS\CSC

2007-03-03 19:00:18 0 d-------- C:\WINDOWS\WBEM

2007-03-03 18:59:22 0 d--h---c- C:\WINDOWS\ie7

2007-03-03 18:58:45 121856 -----n--- C:\WINDOWS\system32\xmllite.dll

2007-03-03 18:58:20 0 d-------- C:\WINDOWS\network diagnostic<NETWOR~1>

2007-03-03 18:56:22 0 d-------- C:\WINDOWS\system32\pl-pl

2007-03-03 18:55:52 0 d-------- C:\Program Files\Windows Media Connect 2<WINDOW~4>

2007-03-03 18:54:56 0 d-------- C:\WINDOWS\system32\LogFiles

2007-03-03 18:54:56 0 d-------- C:\WINDOWS\system32\drivers\UMDF

2007-03-03 18:51:26 0 d-------- C:\WINDOWS\RegisteredPackages<REGIST~2>

2007-03-03 18:50:24 0 d-------- C:\WINDOWS\Microsoft.NET<MICROS~1.NET>

2007-03-03 18:50:24 0 dr--s---- C:\WINDOWS\assembly

2007-03-03 18:50:23 0 d-------- C:\WINDOWS\system32\URTTemp

2007-03-03 18:28:22 0 d-------- C:\Program Files\Common Files\Skype

2007-03-03 17:44:20 0 d-------- C:\Program Files\Skype

2007-03-03 17:39:34 0 d-------- C:\Program Files\OO Software<OOSOFT~1>

2007-03-03 17:29:58 0 d--hs---- C:\RECYCLER

2007-03-03 17:28:30 0 d-------- C:\Program Files\Gadu-Gadu<GADU-G~1>

2007-03-03 17:28:14 1168 --a------ C:\WINDOWS\mozver.dat

2007-03-03 17:11:26 0 d-------- C:\Program Files\A4Tech

2007-03-03 17:08:13 3072 --a------ C:\WINDOWS\system32\drivers\audstub.sys

2007-03-03 17:07:29 58624 --a------ C:\WINDOWS\system32\drivers\redbook.sys

2007-03-03 17:07:13 6400 --a------ C:\WINDOWS\system32\drivers\enum1394.sys

2007-03-03 17:06:47 77312 --a------ C:\WINDOWS\system32\usbui.dll

2007-03-03 17:05:43 0 d--hs---- C:\WINDOWS\Installer<INSTAL~1>

2007-03-03 17:05:42 0 d-------- C:\Program Files\Common Files\ODBC

2007-03-03 17:05:39 0 dr------- C:\Program Files<PROGRA~1>

2007-03-03 17:05:39 0 d-------- C:\Program Files\Common Files\SpeechEngines<SPEECH~1>

2007-03-03 17:05:35 6144 -ra------ C:\WINDOWS\system32\kbdtuq.dll

2007-03-03 17:05:35 6144 -ra------ C:\WINDOWS\system32\kbdtuf.dll

2007-03-03 17:05:35 5632 -ra------ C:\WINDOWS\system32\kbdazel.dll

2007-03-03 17:05:34 5632 -ra------ C:\WINDOWS\system32\kbdmon.dll

2007-03-03 17:05:34 5632 -ra------ C:\WINDOWS\system32\kbdkyr.dll

2007-03-03 17:05:32 8192 -ra------ C:\WINDOWS\system32\kbdhept.dll

2007-03-03 17:05:31 6656 -ra------ C:\WINDOWS\system32\kbdhela3.dll

2007-03-03 17:05:31 6144 -ra------ C:\WINDOWS\system32\kbdhela2.dll

2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe319.dll

2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe220.dll

2007-03-03 17:05:31 5632 -ra------ C:\WINDOWS\system32\kbdhe.dll

2007-03-03 17:05:31 6144 -ra------ C:\WINDOWS\system32\kbdgkl.dll

2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdlv1.dll

2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdlv.dll

2007-03-03 17:05:30 5632 -ra------ C:\WINDOWS\system32\kbdlt1.dll

2007-03-03 17:05:30 5632 -ra------ C:\WINDOWS\system32\kbdlt.dll

2007-03-03 17:05:30 6144 -ra------ C:\WINDOWS\system32\kbdest.dll

2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdycl.dll

2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdsl1.dll

2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdsl.dll

2007-03-03 17:05:27 5632 --a------ C:\WINDOWS\system32\kbdro.dll

2007-03-03 17:05:27 5632 --a------ C:\WINDOWS\system32\kbdhu1.dll

2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdhu.dll

2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcz2.dll

2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcz1.dll

2007-03-03 17:05:27 7168 --a------ C:\WINDOWS\system32\kbdcz.dll

2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\kbdcr.dll

2007-03-03 17:05:27 6656 --a------ C:\WINDOWS\system32\KBDAL.DLL

2007-03-03 17:05:26 13312 --a------ C:\WINDOWS\system32\irclass.dll

2007-03-03 17:05:26 85532 --a------ C:\WINDOWS\system32\dgsetup.dll

2007-03-03 17:05:26 176157 --a------ C:\WINDOWS\system32\dgrpsetu.dll

2007-03-03 17:05:25 24661 --a------ C:\WINDOWS\system32\spxcoins.dll

2007-03-03 17:05:25 103424 --a------ C:\WINDOWS\system32\EqnClass.Dll

2007-03-03 17:05:25 9168 --a------ C:\WINDOWS\system\VER.DLL

2007-03-03 17:05:25 19200 --a------ C:\WINDOWS\system\TAPI.DLL

2007-03-03 17:05:25 5120 --a------ C:\WINDOWS\system\SHELL.DLL

2007-03-03 17:05:25 24064 --a------ C:\WINDOWS\system\OLESVR.DLL

2007-03-03 17:05:25 83456 --a------ C:\WINDOWS\system\OLECLI.DLL

2007-03-03 17:05:24 15360 --a------ C:\WINDOWS\TASKMAN.EXE

2007-03-03 17:05:24 127008 --a------ C:\WINDOWS\system\MSVIDEO.DLL

2007-03-03 17:05:24 9936 --a------ C:\WINDOWS\system\LZEXPAND.DLL

2007-03-03 17:05:24 33376 --a------ C:\WINDOWS\system\COMMDLG.DLL

2007-03-03 17:05:24 109488 --a------ C:\WINDOWS\system\AVIFILE.DLL

2007-03-03 17:05:24 70096 --a------ C:\WINDOWS\system\AVICAP.DLL

2007-03-03 17:05:23 11264 --a------ C:\WINDOWS\system32\drivers\irenum.sys

2007-03-03 17:05:23 8704 --a------ C:\WINDOWS\system32\batt.dll

2007-03-03 17:05:23 69552 --a------ C:\WINDOWS\system\MMSYSTEM.DLL

2007-03-03 17:05:23 70144 --a------ C:\WINDOWS\NOTEPAD.EXE

2007-03-03 17:05:22 75776 --a------ C:\WINDOWS\system32\storprop.dll

2007-03-03 17:05:03 0 d-------- C:\WINDOWS\system32\CatRoot2

2007-03-03 17:05:03 0 d-------- C:\WINDOWS\system32\CatRoot

2007-03-03 17:04:35 0 d-------- C:\Documents and Settings<DOCUME~1>

2007-03-03 17:04:34 0 d--hs---- C:\System Volume Information<SYSTEM~1>

2007-03-03 17:02:23 0 d-------- C:\Program Files\totalcmd

2007-03-03 16:58:27 0 d-------- C:\WINDOWS

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\WinSxS

2007-03-03 16:58:27 0 dr------- C:\WINDOWS\Web

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\twain_32

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\wins

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\wbem

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\usmt

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\spool

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ShellExt

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\Setup

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ras

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\oobe

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\npp

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\mui

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\inetsrv

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\IME

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\icsxml

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\ias

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\export

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers\etc

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\drivers\disdn

2007-03-03 16:58:27 0 dr-hs--c- C:\WINDOWS\system32\dllcache

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\dhcp

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\config

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\3com_dmi

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\3076

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\2052

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1054

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1045

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1042

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1041

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1037

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1033

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1031

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1028

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system32\1025

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\system

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\security

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Resources<RESOUR~1>

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\repair

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Provisioning<PROVIS~1>

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\PeerNet

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\pchealth

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\mui

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\msapps

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\msagent

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Media

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\java

2007-03-03 16:58:27 0 d--h----- C:\WINDOWS\inf

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\ime

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Help

2007-03-03 16:58:27 0 dr--s---- C:\WINDOWS\Fonts

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\ehome

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Driver Cache<DRIVER~1>

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Debug

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Cursors

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Connection Wizard<CONNEC~1>

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\Config

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\AppPatch

2007-03-03 16:58:27 0 d-------- C:\WINDOWS\addins

2007-03-03 16:46:18 0 --a------ C:\WINDOWS\nsreg.dat

2007-03-03 16:46:06 0 d-------- C:\Program Files\Mozilla Firefox<MOZILL~1>

2007-03-03 16:36:55 274432 --a------ C:\WINDOWS\system32\imon.dll

2007-03-03 16:36:55 502368 --a------ C:\WINDOWS\system32\drivers\amon.sys

2007-03-03 16:34:21 0 d-------- C:\WINDOWS\system32\PreInstall<PREINS~1>

2007-03-03 16:34:19 0 d--h----- C:\WINDOWS\$hf_mig$

2007-03-03 16:32:50 0 d-------- C:\WINDOWS\system32\Lang

2007-03-03 16:31:31 208896 -----n--- C:\WINDOWS\system32\nvuide.exe

2007-03-03 16:29:23 135168 --a------ C:\WINDOWS\system32\RtlCPAPI.dll

2007-03-03 16:29:23 40960 --a------ C:\WINDOWS\system32\ChCfg.exe

2007-03-03 16:29:22 6400 --a------ C:\WINDOWS\system32\drivers\splitter.sys

2007-03-03 16:29:21 82944 --a------ C:\WINDOWS\system32\drivers\wdmaud.sys

2007-03-03 16:29:20 52864 --a------ C:\WINDOWS\system32\drivers\DMusic.sys

2007-03-03 16:29:16 54272 --a------ C:\WINDOWS\system32\drivers\swmidi.sys

2007-03-03 16:29:15 142464 --a------ C:\WINDOWS\system32\drivers\aec.sys

2007-03-03 16:29:14 172416 --a------ C:\WINDOWS\system32\drivers\kmixer.sys

2007-03-03 16:29:13 2944 --a------ C:\WINDOWS\system32\drivers\drmkaud.sys

2007-03-03 16:29:12 60800 --a------ C:\WINDOWS\system32\drivers\sysaudio.sys

2007-03-03 16:29:11 7552 --a------ C:\WINDOWS\system32\drivers\MSKSSRV.sys

2007-03-03 16:29:10 4992 --a------ C:\WINDOWS\system32\drivers\MSPQM.sys

2007-03-03 16:29:08 5376 --a------ C:\WINDOWS\system32\drivers\MSPCLOCK.sys

2007-03-03 16:29:04 0 d-------- C:\WINDOWS\system32\RTCOM

2007-03-03 16:28:59 4096 --a------ C:\WINDOWS\system32\ksuser.dll

2007-03-03 16:28:59 60288 --a------ C:\WINDOWS\system32\drivers\drmk.sys

2007-03-03 16:28:54 86016 --a------ C:\WINDOWS\SoundMan.exe

2007-03-03 16:28:54 2879488 --a------ C:\WINDOWS\SkyTel.exe

2007-03-03 16:28:54 364544 --a------ C:\WINDOWS\RtlUpd.exe

2007-03-03 16:28:53 4279296 --a------ C:\WINDOWS\system32\drivers\RtkHDAud.Sys

2007-03-03 16:28:53 9709568 --a------ C:\WINDOWS\RTLCPL.exe

2007-03-03 16:28:53 16208384 --a------ C:\WINDOWS\RTHDCPL.exe

2007-03-03 16:28:53 2158592 --a------ C:\WINDOWS\MicCal.exe

2007-03-03 16:28:52 2808832 --a------ C:\WINDOWS\alcwzrd.exe

2007-03-03 16:28:52 69632 --a------ C:\WINDOWS\Alcmtr.exe

2007-03-03 16:28:52 0 d-------- C:\Program Files\Realtek

2007-03-03 16:28:49 487424 --a------ C:\WINDOWS\RtlExUpd.dll

2007-03-03 16:26:44 23856 --a------ C:\WINDOWS\system32\spupdsvc.exe

2007-03-03 16:26:34 0 d-------- C:\WINDOWS\system32\ReinstallBackups<REINST~1>

2007-03-03 16:26:33 43008 --a------ C:\WINDOWS\system32\drivers\AmdK8.sys

2007-03-03 16:26:33 0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1>

2007-03-03 16:26:33 0 d-------- C:\Program Files\AMD

2007-03-03 16:26:02 208896 --a------ C:\WINDOWS\system32\nvudisp.exe

2007-03-03 16:26:02 0 d-------- C:\WINDOWS\nview

2007-03-03 16:25:42 0 d-------- C:\WINDOWS\system32\SoftwareDistribution<SOFTWA~1>

2007-03-03 16:24:53 155136 -ra------ C:\WINDOWS\system32\fdco_l2052.dll<FDCD9D~1.DLL>

2007-03-03 16:24:53 158720 -ra------ C:\WINDOWS\system32\fdco_l1046.dll<FDD79D~1.DLL>

2007-03-03 16:24:53 156672 -ra------ C:\WINDOWS\system32\fdco_l1042.dll<FDC79D~1.DLL>

2007-03-03 16:24:53 156672 -ra------ C:\WINDOWS\system32\fdco_l1041.dll<FDC799~1.DLL>

2007-03-03 16:24:53 158720 -ra------ C:\WINDOWS\system32\fdco_l1040.dll<FDB795~1.DLL>

2007-03-03 16:24:52 204288 -ra------ C:\WINDOWS\system32\fdco1ins.dll

2007-03-03 16:24:52 204288 -ra------ C:\WINDOWS\system32\fdco1.dll

2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1036.dll<FDCO_L~4.DLL>

2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1034.dll<FDCO_L~3.DLL>

2007-03-03 16:24:52 159232 -ra------ C:\WINDOWS\system32\fdco_l1031.dll<FDCO_L~2.DLL>

2007-03-03 16:24:52 155648 -ra------ C:\WINDOWS\system32\fdco_l1028.dll<FDCO_L~1.DLL>

2007-03-03 16:24:52 34176 -ra------ C:\WINDOWS\system32\drivers\NVENETFD.sys

2007-03-03 16:24:51 101632 -ra------ C:\WINDOWS\system32\drivers\nvtcp.sys

2007-03-03 16:24:50 208896 --a------ C:\WINDOWS\system32\nvunrm.exe

2007-03-03 16:24:50 35840 -ra------ C:\WINDOWS\system32\nvconrm.dll

2007-03-03 16:24:50 222592 -ra------ C:\WINDOWS\system32\drivers\nvsnpu.sys

2007-03-03 16:24:50 305152 -ra------ C:\WINDOWS\system32\drivers\nvnrm.sys

2007-03-03 16:24:50 13056 -ra------ C:\WINDOWS\system32\drivers\nvnetbus.sys

2007-03-03 16:24:50 9728 -ra------ C:\WINDOWS\system32\bdco1ins.dll

2007-03-03 16:24:50 9728 -ra------ C:\WINDOWS\system32\bdco1.dll

2007-03-03 16:24:50 0 d-------- C:\WINDOWS\NV18921824.TMP<NV1892~1.TMP>

2007-03-03 16:24:49 208896 --a------ C:\WINDOWS\system32\nvusmb.exe

2007-03-03 16:24:39 208896 --a------ C:\WINDOWS\system32\NVUNINST.EXE

2007-03-03 16:24:31 0 d-------- C:\Program Files\Common Files\InstallShield<INSTAL~1>

2007-03-03 16:23:36 4501 --a------ C:\WINDOWS\gdrv.sys

2007-03-03 16:20:47 0 d-------- C:\WINDOWS\pss

2007-03-03 16:19:01 0 d-------- C:\WINDOWS\SoftwareDistribution<SOFTWA~1>

2007-03-03 16:18:59 0 d-------- C:\WINDOWS\Prefetch

2007-03-03 16:16:02 0 d-------- C:\WINDOWS\system32\xircom

2007-03-03 16:16:02 0 d-------- C:\Program Files\microsoft frontpage<MICROS~1>

2007-03-03 16:15:47 0 -rahs---- C:\MSDOS.SYS

2007-03-03 16:15:47 0 -rahs---- C:\IO.SYS

2007-03-03 16:15:47 0 --a------ C:\CONFIG.SYS

2007-03-03 16:15:47 0 --a------ C:\AUTOEXEC.BAT

2007-03-03 16:15:35 112128 --a------ C:\WINDOWS\system32\mapi32.dll

2007-03-03 16:14:53 0 dr------- C:\WINDOWS\Offline Web Pages<OFFLIN~1>

2007-03-03 16:14:53 0 d---s---- C:\WINDOWS\Downloaded Program Files<DOWNLO~1>

2007-03-03 16:14:45 0 d--h----- C:\Program Files\WindowsUpdate<WINDOW~3>

2007-03-03 16:14:41 0 d-------- C:\Program Files\Usługi online<USUGIO~1>

2007-03-03 16:14:26 0 d-------- C:\WINDOWS\system32\DirectX

2007-03-03 16:14:08 11264 --a------ C:\WINDOWS\system32\atrace.dll

2007-03-03 16:13:59 12288 --a------ C:\WINDOWS\system32\nmevtmsg.dll

2007-03-03 16:13:58 67584 --a------ C:\WINDOWS\system32\acctres.dll

2007-03-03 16:13:55 0 d---s---- C:\WINDOWS\Tasks

2007-03-03 16:13:55 16384 --a------ C:\WINDOWS\system32\icfgnt5.dll

2007-03-03 16:13:53 0 d-------- C:\Program Files\Common Files\MSSoap

2007-03-03 16:13:50 0 d-------- C:\WINDOWS\srchasst

2007-03-03 16:13:49 0 d-------- C:\WINDOWS\system32\Macromed

2007-03-03 16:13:47 173536 --a------ C:\WINDOWS\system32\wuweb.dll

2007-03-03 16:13:47 128280 --a------ C:\WINDOWS\system32\wucltui.dll

2007-03-03 16:13:47 6656 --a------ C:\WINDOWS\system32\wuauserv.dll

2007-03-03 16:13:47 195352 --a------ C:\WINDOWS\system32\wuaueng1.dll

2007-03-03 16:13:46 41240 --a------ C:\WINDOWS\system32\wups.dll

2007-03-03 16:13:46 1343768 --a------ C:\WINDOWS\system32\wuaueng.dll

2007-03-03 16:13:46 175384 --a------ C:\WINDOWS\system32\wuauclt1.exe

2007-03-03 16:13:46 125208 --a------ C:\WINDOWS\system32\wuauclt.exe

2007-03-03 16:13:46 466200 --a------ C:\WINDOWS\system32\wuapi.dll

2007-03-03 16:13:46 18944 --a------ C:\WINDOWS\system32\qmgrprxy.dll

2007-03-03 16:13:46 382464 --a------ C:\WINDOWS\system32\qmgr.dll

2007-03-03 16:13:46 7168 --a------ C:\WINDOWS\system32\bitsprx3.dll

2007-03-03 16:13:46 8192 --a------ C:\WINDOWS\system32\bitsprx2.dll

2007-03-03 16:13:42 0 d-------- C:\Program Files\Movie Maker<MOVIEM~1>

2007-03-03 16:13:38 45568 --a------ C:\WINDOWS\system32\safrslv.dll

2007-03-03 16:13:38 29696 --a------ C:\WINDOWS\system32\safrdm.dll

2007-03-03 16:13:38 43520 --a------ C:\WINDOWS\system32\safrcdlg.dll

2007-03-03 16:13:37 43520 --a------ C:\WINDOWS\system32\racpldlg.dll

2007-03-03 16:13:35 16896 --a------ C:\WINDOWS\system32\fltlib.dll

2007-03-03 16:13:34 171008 --a------ C:\WINDOWS\system32\srsvc.dll

2007-03-03 16:13:34 240128 --a------ C:\WINDOWS\system32\srrstr.dll

2007-03-03 16:13:34 67584 --a------ C:\WINDOWS\system32\srclient.dll

2007-03-03 16:13:34 0 d-------- C:\WINDOWS\system32\Restore

2007-03-03 16:13:34 23040 --a------ C:\WINDOWS\system32\fltmc.exe

2007-03-03 16:13:34 73472 --a------ C:\WINDOWS\system32\drivers\sr.sys

2007-03-03 16:13:34 128896 --a------ C:\WINDOWS\system32\drivers\fltmgr.sys

2007-03-03 16:13:33 28672 --a------ C:\WINDOWS\system32\nmmkcert.dll

2007-03-03 16:13:33 69632 --a------ C:\WINDOWS\system32\msconf.dll

2007-03-03 16:13:33 32768 --a------ C:\WINDOWS\system32\mnmsrvc.exe

2007-03-03 16:13:33 34560 --a------ C:\WINDOWS\system32\mnmdd.dll

2007-03-03 16:13:33 32768 --a------ C:\WINDOWS\system32\isrdbg32.dll

2007-03-03 16:13:33 81920 --a------ C:\WINDOWS\system32\ils.dll

2007-03-03 16:13:30 105984 --a------ C:\WINDOWS\system32\msoert2.dll

2007-03-03 16:13:30 252928 --a------ C:\WINDOWS\system32\msoeacct.dll

2007-03-03 16:13:29 49664 --a------ C:\WINDOWS\system32\inetres.dll

2007-03-03 16:13:29 679424 --a------ C:\WINDOWS\system32\inetcomm.dll

2007-03-03 16:13:27 192000 --a------ C:\WINDOWS\system32\schedsvc.dll

2007-03-03 16:13:27 12288 --a------ C:\WINDOWS\system32\mstinit.exe

2007-03-03 16:13:27 278528 --a------ C:\WINDOWS\system32\mstask.dll

2007-03-03 16:13:27 65536 --a------ C:\WINDOWS\system32\icwphbk.dll

2007-03-03 16:13:26 86016 --a------ C:\WINDOWS\system32\isign32.dll

2007-03-03 16:13:26 278528 --a------ C:\WINDOWS\system32\inetcfg.dll

2007-03-03 16:13:26 73728 --a------ C:\WINDOWS\system32\icwdial.dll

2007-03-03 16:13:00 21856 --a------ C:\WINDOWS\system32\emptyregdb.dat<EMPTYR~1.DAT>

2007-03-03 16:12:47 0 d-------- C:\WINDOWS\Registration<REGIST~1>

2007-03-03 16:12:35 0 d-------- C:\Program Files\Messenger<MESSEN~1>

2007-03-03 16:12:30 5632 --a------ C:\WINDOWS\system32\write.exe

2007-03-03 16:12:30 0 d-------- C:\Program Files\MSN Gaming Zone<MSNGAM~1>

2007-03-03 16:12:21 139264 --a------ C:\WINDOWS\system32\sndvol32.exe

2007-03-03 16:12:21 44544 --a------ C:\WINDOWS\system32\hticons.dll

2007-03-03 16:12:20 73216 --a------ C:\WINDOWS\system32\avwav.dll

2007-03-03 16:12:20 231424 --a------ C:\WINDOWS\system32\avtapi.dll

2007-03-03 16:12:20 16384 --a------ C:\WINDOWS\system32\avmeter.dll

2007-03-03 16:12:19 35328 --a------ C:\WINDOWS\system32\winchat.exe

2007-03-03 16:12:12 605696 --a------ C:\WINDOWS\system32\getuname.dll

2007-03-03 16:12:12 80896 --a------ C:\WINDOWS\system32\charmap.exe

2007-03-03 16:12:12 115200 --a------ C:\WINDOWS\system32\calc.exe

2007-03-03 16:12:11 119808 --a------ C:\WINDOWS\system32\winmine.exe

2007-03-03 16:12:11 1225 --a------ C:\WINDOWS\system32\usrlogon.cmd

2007-03-03 16:12:11 57344 --a------ C:\WINDOWS\system32\sol.exe

2007-03-03 16:12:11 9728 --a------ C:\WINDOWS\system32\reset.exe

2007-03-03 16:12:11 128000 --a------ C:\WINDOWS\system32\mshearts.exe

2007-03-03 16:12:11 55808 --a------ C:\WINDOWS\system32\freecell.exe

2007-03-03 16:12:10 17920 --a------ C:\WINDOWS\system32\tsshutdn.exe

2007-03-03 16:12:10 16384 --a------ C:\WINDOWS\system32\tskill.exe

2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\tsdiscon.exe

2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\tscon.exe

2007-03-03 16:12:10 15360 --a------ C:\WINDOWS\system32\shadow.exe

2007-03-03 16:12:10 16384 --a------ C:\WINDOWS\system32\rwinsta.exe

2007-03-03 16:12:10 33792 --a------ C:\WINDOWS\system32\regini.exe

2007-03-03 16:12:10 4608 --a------ C:\WINDOWS\system32\rdpcfgex.dll

2007-03-03 16:12:10 22528 --a------ C:\WINDOWS\system32\qwinsta.exe

2007-03-03 16:12:10 17408 --a------ C:\WINDOWS\system32\qappsrv.exe

2007-03-03 16:12:10 22528 --a------ C:\WINDOWS\system32\msg.exe

2007-03-03 16:12:10 15872 --a------ C:\WINDOWS\system32\logoff.exe

2007-03-03 16:12:09 5120 --a------ C:\WINDOWS\system32\dcomcnfg.exe

2007-03-03 16:12:09 15872 --a------ C:\WINDOWS\system32\cdmodem.dll

2007-03-03 16:12:08 54272 --a------ C:\WINDOWS\system32\stclient.dll

2007-03-03 16:12:08 25088 --a------ C:\WINDOWS\system32\mtxlegih.dll

2007-03-03 16:12:08 4096 --a------ C:\WINDOWS\system32\mtxex.dll

2007-03-03 16:12:08 20480 --a------ C:\WINDOWS\system32\mtxdm.dll

2007-03-03 16:12:08 147456 --a------ C:\WINDOWS\system32\comsnap.dll

2007-03-03 16:12:08 97792 --a------ C:\WINDOWS\system32\comrepl.dll

2007-03-03 16:12:08 25600 --a------ C:\WINDOWS\system32\comaddin.dll

2007-03-03 16:12:02 132608 --a------ C:\WINDOWS\system32\sndrec32.exe

2007-03-03 16:12:02 124928 --a------ C:\WINDOWS\system32\mplay32.exe

2007-03-03 16:12:02 351744 --a------ C:\WINDOWS\system32\hypertrm.dll

2007-03-03 16:12:02 187904 --a------ C:\WINDOWS\system32\accwiz.exe

2007-03-03 16:12:01 539136 --a------ C:\WINDOWS\system32\spider.exe

2007-03-03 16:12:01 345088 --a------ C:\WINDOWS\system32\mspaint.exe

2007-03-03 16:12:01 103424 --a------ C:\WINDOWS\system32\clipbrd.exe

2007-03-03 16:12:01 0 d-------- C:\Program Files\Windows NT<WINDOW~1>

2007-03-03 16:12:00 94720 --a------ C:\WINDOWS\system32\tscfgwmi.dll

2007-03-03 16:12:00 60928 --a------ C:\WINDOWS\system32\remotepg.dll

2007-03-03 16:12:00 67072 --a------ C:\WINDOWS\system32\rdshost.exe

2007-03-03 16:12:00 13824 --a------ C:\WINDOWS\system32\rdsaddin.exe

2007-03-03 16:12:00 1866240 --a------ C:\WINDOWS\system32\mstscax.dll

2007-03-03 16:12:00 600576 --a------ C:\WINDOWS\system32\mstsc.exe

2007-03-03 16:12:00 21896 --a------ C:\WINDOWS\system32\drivers\tdtcp.sys

2007-03-03 16:12:00 12040 --a------ C:\WINDOWS\system32\drivers\tdpipe.sys

2007-03-03 16:12:00 139528 --a------ C:\WINDOWS\system32\drivers\rdpwd.sys

2007-03-03 16:11:59 44544 --a------ C:\WINDOWS\system32\tscupgrd.exe

2007-03-03 16:11:59 296448 --a------ C:\WINDOWS\system32\termsrv.dll

2007-03-03 16:11:59 141824 --a------ C:\WINDOWS\system32\sessmgr.exe

2007-03-03 16:11:59 87176 --a------ C:\WINDOWS\system32\rdpwsx.dll

2007-03-03 16:11:59 19968 --a------ C:\WINDOWS\system32\rdpsnd.dll

2007-03-03 16:11:59 62464 --a------ C:\WINDOWS\system32\rdpclip.exe

2007-03-03 16:11:59 147968 --a------ C:\WINDOWS\system32\rdchost.dll

2007-03-03 16:11:59 20992 --a------ C:\WINDOWS\system32\qprocess.exe

2007-03-03 16:11:59 11264 --a------ C:\WINDOWS\system32\icaapi.dll

2007-03-03 16:11:58 91136 --a------ C:\WINDOWS\system32\mtxoci.dll

2007-03-03 16:11:58 161280 --a------ C:\WINDOWS\system32\msdtcuiu.dll

2007-03-03 16:11:58 956416 --a------ C:\WINDOWS\system32\msdtctm.dll

2007-03-03 16:11:58 426496 --a------ C:\WINDOWS\system32\msdtcprx.dll

2007-03-03 16:11:58 0 d-------- C:\WINDOWS\system32\MsDtc

2007-03-03 16:11:58 38912 --a------ C:\WINDOWS\system32\cfgbkend.dll

2007-03-03 16:11:57 11776 --a------ C:\WINDOWS\system32\xolehlp.dll

2007-03-03 16:11:57 58880 --a------ C:\WINDOWS\system32\msdtclog.dll

2007-03-03 16:11:57 6144 --a------ C:\WINDOWS\system32\msdtc.exe

2007-03-03 16:11:56 0 d-------- C:\WINDOWS\system32\Com

2007-03-03 16:11:56 60416 --a------ C:\WINDOWS\system32\colbact.dll

2007-03-03 16:11:56 110080 --a------ C:\WINDOWS\system32\clbcatex.dll

2007-03-03 16:11:56 625152 --a------ C:\WINDOWS\system32\catsrvut.dll

2007-03-03 16:11:56 85504 --a------ C:\WINDOWS\system32\catsrvps.dll

2007-03-03 16:11:56 225792 --a------ C:\WINDOWS\system32\catsrv.dll

2007-03-03 16:11:55 540160 --a------ C:\WINDOWS\system32\comuid.dll

2007-03-03 16:11:55 1267200 --a------ C:\WINDOWS\system32\comsvcs.dll

2007-03-03 16:11:55 498688 --a------ C:\WINDOWS\system32\clbcatq.dll

2007-03-03 16:11:50 56320 --a------ C:\WINDOWS\system32\servdeps.dll

2007-03-03 16:11:49 17920 --a------ C:\WINDOWS\system32\mmfutil.dll

2007-03-03 16:11:49 58880 --a------ C:\WINDOWS\system32\licwmi.dll

2007-03-03 16:11:49 187904 --a------ C:\WINDOWS\system32\cmprops.dll

2007-03-03 16:11:47 40840 --a------ C:\WINDOWS\system32\drivers\termdd.sys

2007-03-03 16:11:47 196864 --a------ C:\WINDOWS\system32\drivers\rdpdr.sys

2007-03-03 11:47:28 32768 --a------ C:\WINDOWS\system32\Ikeyrfk8.dll

2007-03-03 11:47:28 10240 --a------ C:\WINDOWS\system32\drivers\Amusbprt.sys

2007-03-03 11:47:28 7424 --a------ C:\WINDOWS\system32\drivers\Amusbdev.sys

2007-03-03 11:47:28 9984 --a------ C:\WINDOWS\system32\drivers\Amps2prt.sys

2007-03-03 11:47:28 5120 --a------ C:\WINDOWS\system32\drivers\Amfilter.sys

2007-03-03 11:47:28 389120 --a------ C:\WINDOWS\system32\Amsample.dll

2007-03-03 11:47:28 86016 --a------ C:\WINDOWS\system32\Amoures.dll

2007-03-03 11:47:28 36864 --a------ C:\WINDOWS\system32\Amhooker.dll

 

 

-- Find3M Report ----------------------------------------------------------------

 

2007-03-04 12:14:29 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Skype

2007-03-04 03:41:53 0 d---s---- C:\Documents and Settings\monica\Dane aplikacji\Microsoft<MICROS~1>

2007-03-04 03:28:18 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Adobe

2007-03-04 03:12:18 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\HP

2007-03-04 02:42:19 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Corel

2007-03-03 23:27:58 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\uTorrent

2007-03-03 22:42:19 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\InstallShield<INSTAL~1>

2007-03-03 22:28:59 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\CyberLink<CYBERL~1>

2007-03-03 22:11:17 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Macromedia<MACROM~1>

2007-03-03 22:10:00 0 d-------- C:\Program Files\Common Files\Macromedia<MACROM~1>

2007-03-03 22:09:22 0 d-------- C:\Program Files\Macromedia<MACROM~1>

2007-03-03 22:05:56 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\ACD Systems<ACDSYS~1>

2007-03-03 19:05:46 458022 --a------ C:\WINDOWS\system32\perfh015.dat

2007-03-03 19:05:46 79408 --a------ C:\WINDOWS\system32\perfc015.dat

2007-03-03 17:05:15 62 --ahs---- C:\Documents and Settings\monica\Dane aplikacji\desktop.ini

2007-03-03 16:46:23 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Talkback

2007-03-03 16:46:17 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Mozilla

2007-03-03 16:19:54 0 d-------- C:\Documents and Settings\monica\Dane aplikacji\Identities<IDENTI~1>

2007-01-29 09:58:06 60416 -----n--- C:\WINDOWS\system32\tzchange.exe

2007-01-12 09:27:42 232960 --a------ C:\WINDOWS\system32\webcheck.dll

2007-01-12 09:27:42 51712 -----n--- C:\WINDOWS\system32\msfeedsbs.dll<MSFEED~1.DLL>

2007-01-12 09:27:42 458752 -----n--- C:\WINDOWS\system32\msfeeds.dll

2007-01-12 09:27:42 6054400 --a------ C:\WINDOWS\system32\ieframe.dll

2007-01-08 19:04:54 105984 --a------ C:\WINDOWS\system32\url.dll

2007-01-08 19:04:08 102400 --a------ C:\WINDOWS\system32\occache.dll

2007-01-08 19:02:04 266752 --a------ C:\WINDOWS\system32\iertutil.dll

2007-01-08 19:02:04 44544 --a------ C:\WINDOWS\system32\iernonce.dll

2007-01-08 19:02:02 384000 --a------ C:\WINDOWS\system32\iedkcs32.dll

2007-01-08 19:02:02 383488 --a------ C:\WINDOWS\system32\ieapfltr.dll

2007-01-08 19:02:02 161792 --a------ C:\WINDOWS\system32\ieakui.dll

2007-01-08 19:02:02 230400 --a------ C:\WINDOWS\system32\ieaksie.dll

2007-01-08 19:02:02 153088 --a------ C:\WINDOWS\system32\ieakeng.dll

2007-01-08 19:01:14 17408 --a------ C:\WINDOWS\system32\corpol.dll

2007-01-08 19:00:48 124928 --a------ C:\WINDOWS\system32\advpack.dll

2007-01-08 18:08:14 56832 --a------ C:\WINDOWS\system32\ie4uinit.exe

2007-01-08 18:08:10 13824 --a------ C:\WINDOWS\system32\ieudinit.exe

2006-12-21 14:16:24 36352 -----n--- C:\WINDOWS\system32\tsgqec.dll

2006-12-21 14:16:24 288768 -----n--- C:\WINDOWS\system32\rhttpaa.dll

2006-12-21 14:16:24 116736 -----n--- C:\WINDOWS\system32\aaclient.dll

2006-12-19 22:51:04 135168 --a------ C:\WINDOWS\system32\shsvcs.dll

2006-12-19 19:18:25 334336 --a------ C:\WINDOWS\system32\wiaservc.dll

 

 

-- Registry Dump ----------------------------------------------------------------

 

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]

"Skype"="\"C:\\Program Files\\Skype\\Phone\\Skype.exe\" /nosplash /minimized"

"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"

"Gadu-Gadu"="\"C:\\Program Files\\Gadu-Gadu\\gg.exe\" /tray"

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]

"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"

"nwiz"="nwiz.exe /install"

"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"

"RTHDCPL"="RTHDCPL.EXE"

"SkyTel"="SkyTel.EXE"

"nod32kui"="\"C:\\Program Files\\Eset\\nod32kui.exe\" /WAITSERVICE"

"iKeyWorks"="C:\\PROGRA~1\\A4Tech\\Keyboard\\Ikeymain.exe"

"WheelMouse"="C:\\PROGRA~1\\A4Tech\\Mouse\\Amoumain.exe"

"HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"

"MSConfig"="C:\\WINDOWS\\PCHealth\\HelpCtr\\Binaries\\MSConfig.exe /auto"

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]

"Installed"="1"

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]

"Installed"="1"

"NoChange"="1"

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]

"Installed"="1"

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Gamma Loader.lnk]

"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Gamma Loader.lnk"

"backup"="C:\\WINDOWS\\pss\\Adobe Gamma Loader.lnkCommon Startup"

"location"="Common Startup"

"command"="C:\\PROGRA~1\\COMMON~1\\Adobe\\CALIBR~1\\ADOBEG~1.EXE "

"item"="Adobe Gamma Loader"

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Speed Launch.lnk]

"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Reader Speed Launch.lnk"

"backup"="C:\\WINDOWS\\pss\\Adobe Reader Speed Launch.lnkCommon Startup"

"location"="Common Startup"

"command"="C:\\PROGRA~1\\Adobe\\READER~1.0\\Reader\\READER~1.EXE "

"item"="Adobe Reader Speed Launch"

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^Adobe Reader Synchronizer.lnk]

"path"="C:\\Documents and Settings\\All Users\\Menu Start\\Programy\\Autostart\\Adobe Reader Synchronizer.lnk"

"backup"="C:\\WINDOWS\\pss\\Adobe Reader Synchronizer.lnkCommon Startup"

"location"="Common Startup"

"command"="C:\\PROGRA~1\\Adobe\\READER~1.0\\Reader\\ADOBEC~1.EXE "

"item"="Adobe Reader Synchronizer"

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools-1033]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="daemon"

"hkey"="HKLM"

"command"="\"C:\\Program Files\\D-Tools\\daemon.exe\" -lang 1033"

"inimapping"="0"

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]

"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"

"item"="msmsgs"

"hkey"="HKCU"

"command"="\"C:\\Program Files\

Edytowane przez monica

Udostępnij tę odpowiedź


Odnośnik do odpowiedzi
Udostępnij na innych stronach

Dołącz do dyskusji

Możesz dodać zawartość już teraz a zarejestrować się później. Jeśli posiadasz już konto, zaloguj się aby dodać zawartość za jego pomocą.

Gość
Dodaj odpowiedź do tematu...

×   Wklejono zawartość z formatowaniem.   Przywróć formatowanie

  Dozwolonych jest tylko 75 emoji.

×   Odnośnik został automatycznie osadzony.   Przywróć wyświetlanie jako odnośnik

×   Przywrócono poprzednią zawartość.   Wyczyść edytor

×   Nie możesz bezpośrednio wkleić grafiki. Dodaj lub załącz grafiki z adresu URL.

Ładowanie


×
×
  • Dodaj nową pozycję...