gladky Opublikowano 1 Lutego 2009 Zgłoś Opublikowano 1 Lutego 2009 windows zaczoł mi troche wariowac , czesto mi wyskakuja komunikaty o błędach gdy np zamykam niekture aplikacje , przeskanowałem czy sie dało i nic to nie zmienilo . odrazu wklejam log z combofixa może ktos sie dopatrzy jakiegoś zonka . z gory dzieki ((((((((((((((((((((((((( Pliki utworzone od 2009-01-01 do 2009-02-01 ))))))))))))))))))))))))))))))).2009-01-31 22:38 . 2009-01-31 22:38 <DIR> d-------- c:\program files\Home Browsing2009-01-31 17:15 . 2009-01-15 08:19 206,793 --a------ c:\windows\NOWY\system32\nvapps.nvb2009-01-29 20:26 . 2009-01-29 20:26 <DIR> d-------- c:\program files\LAN Voice Chat2009-01-29 19:16 . 2009-01-29 20:29 <DIR> d-------- c:\program files\LAN Messenger2009-01-29 17:11 . 2009-02-01 16:07 <DIR> d-------- c:\program files\cFosSpeed2009-01-29 17:11 . 2008-07-18 15:23 732,888 -ra------ c:\windows\NOWY\system32\drivers\cfosspeed.sys2009-01-28 00:29 . 2009-01-28 00:29 <DIR> d-------- c:\documents and settings\marcin\Dane aplikacji\Command & Conquer 3 Tiberium Wars2009-01-28 00:03 . 2009-01-28 00:06 139,264 --a------ c:\windows\NOWY\War3Unin.exe2009-01-28 00:03 . 2009-01-28 00:06 51,572 --a------ c:\windows\NOWY\War3Unin.dat2009-01-28 00:03 . 2009-01-28 00:06 2,829 --a------ c:\windows\NOWY\War3Unin.pif2009-01-25 00:15 . 2009-01-25 00:15 278,728 --a------ c:\windows\NOWY\system32\drivers\atksgt.sys2009-01-25 00:15 . 2009-01-25 00:15 25,416 --a------ c:\windows\NOWY\system32\drivers\lirsgt.sys2009-01-23 17:15 . 2009-01-24 15:01 409,600 --a------ c:\windows\NOWY\system32\wrap_oal.dll2009-01-23 17:15 . 2009-01-24 15:01 114,688 --a------ c:\windows\NOWY\system32\OpenAL32.dll2009-01-22 14:59 . 2009-01-22 14:59 <DIR> d-------- c:\documents and settings\marcin\Dane aplikacji\GlobalSCAPE2009-01-22 14:57 . 2009-01-22 14:57 <DIR> d-------- c:\program files\GlobalSCAPE2009-01-21 15:10 . 2009-01-21 15:10 <DIR> d-------- C:\ProgramData2009-01-21 15:10 . 2009-01-21 15:10 <DIR> d-------- c:\program files\Electronic Arts2009-01-21 15:10 . 2009-01-21 15:10 3,702 --a------ c:\windows\NOWY\system32\ealregsnapshot1.reg2009-01-18 16:47 . 2009-01-18 16:47 <DIR> d-------- c:\windows\NOWY\system32\QuickTime2009-01-18 16:47 . 2009-01-18 16:47 <DIR> d-------- c:\program files\Common Files\TechSmith Shared2009-01-18 16:47 . 2009-01-18 16:47 <DIR> d-------- c:\documents and settings\All Users.NOWY\Dane aplikacji\TechSmith2009-01-18 16:47 . 2008-03-12 02:37 107,864 --a------ c:\windows\NOWY\system32\tsccvid.dll2009-01-18 16:46 . 2009-01-18 16:46 <DIR> d-------- c:\program files\TechSmith2009-01-15 09:37 . 2009-01-15 09:37 42,320 --a------ c:\windows\NOWY\system32\xfcodec.dll2009-01-15 08:19 . 2009-01-15 08:19 1,253,376 --a------ c:\windows\NOWY\system32\NvPVEnc.ax2009-01-11 20:28 . 2009-01-25 17:46 <DIR> d-------- c:\program files\Crayon Physics Deluxe2009-01-11 20:28 . 2009-01-11 20:31 <DIR> d-------- c:\documents and settings\marcin\Dane aplikacji\Crayon Physics Deluxe2009-01-11 17:49 . 2009-01-11 17:49 <DIR> dr------- c:\documents and settings\LocalService.ZARZĄDZANIE NT\Ulubione2009-01-11 17:49 . 2009-01-11 17:49 <DIR> dr------- c:\documents and settings\LocalService.ZARZĄDZANIE NT\Ulubione2009-01-11 17:26 . 2009-02-01 16:07 <DIR> d--h----- c:\documents and settings\Administrator\Ustawienia lokalne2009-01-11 17:26 . 2008-12-03 21:28 <DIR> d-------- c:\documents and settings\Administrator\Ulubione2009-01-11 17:26 . 2008-12-03 20:35 <DIR> d--h----- c:\documents and settings\Administrator\Szablony2009-01-11 17:26 . 2008-12-03 21:28 <DIR> d-------- c:\documents and settings\Administrator\Pulpit2009-01-11 17:26 . 2008-12-03 21:28 <DIR> d-------- c:\documents and settings\Administrator\Moje dokumenty2009-01-11 17:26 . 2008-12-03 21:28 <DIR> dr------- c:\documents and settings\Administrator\Menu Start2009-01-11 17:26 . 2008-12-03 21:28 <DIR> dr-h----- c:\documents and settings\Administrator\Dane aplikacji2009-01-11 17:26 . 2009-01-11 17:26 <DIR> d-------- c:\documents and settings\Administrator2009-01-11 17:03 . 2009-01-11 17:03 96,976 --a------ c:\windows\NOWY\system32\drivers\klin.dat2009-01-11 17:03 . 2009-01-11 17:03 87,855 --a------ c:\windows\NOWY\system32\drivers\klick.dat2009-01-11 17:02 . 2009-01-11 17:31 <DIR> d-------- c:\documents and settings\All Users.NOWY\Dane aplikacji\Kaspersky Lab2009-01-11 17:02 . 2009-01-11 17:16 638,944 --ahs---- c:\windows\NOWY\system32\drivers\fidbox.dat2009-01-11 17:02 . 2009-01-11 17:07 213,024 --ahs---- c:\windows\NOWY\system32\drivers\fidbox2.dat2009-01-11 17:02 . 2009-01-11 17:19 8,384 --ahs---- c:\windows\NOWY\system32\drivers\fidbox.idx2009-01-11 17:02 . 2009-01-11 17:07 1,808 --ahs---- c:\windows\NOWY\system32\drivers\fidbox2.idx2009-01-10 11:10 . 2009-01-10 11:48 <DIR> d-------- c:\program files\Saints Row 22009-01-09 22:46 . 2009-01-09 22:46 <DIR> d-------- c:\documents and settings\All Users.NOWY\Dane aplikacji\2DBoy2009-01-09 22:41 . 2009-01-09 22:42 <DIR> d-------- c:\program files\WorldOfGoo2009-01-08 10:06 . 2009-01-08 10:06 <DIR> d-------- c:\documents and settings\marcin\Dane aplikacji\Daoisoft2009-01-08 09:59 . 2008-07-18 15:23 290,008 --a------ c:\windows\NOWY\system32\cfosspeed.dll2009-01-08 09:54 . 2009-01-08 09:57 <DIR> d-------- c:\program files\Dream Aquarium2009-01-08 09:52 . 2009-01-08 09:53 <DIR> d-------- c:\program files\HDD Observer2009-01-08 05:22 . 2009-01-08 05:22 <DIR> d-------- c:\documents and settings\marcin\Dane aplikacji\DonationCoder2009-01-08 05:22 . 2009-01-08 05:22 <DIR> d-------- c:\documents and settings\All Users.NOWY\Dane aplikacji\DonationCoder2009-01-08 05:22 . 2009-01-08 05:22 58 --a------ c:\windows\NOWY\system32\DonationCoder_ScreenshotCaptor_InstallInfo.dat2009-01-08 03:19 . 2009-01-08 04:50 <DIR> d-------- c:\program files\Conquest2009-01-05 10:07 . 2009-01-08 04:52 <DIR> d-------- c:\program files\Ontrack2009-01-05 10:07 . 2001-03-02 11:41 634 --a------ c:\windows\NOWY\system32\MAPISVC.INF2009-01-03 01:42 . 2009-01-03 01:42 <DIR> d-------- c:\program files\GTactix.(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))).2009-02-01 02:52 202,040 ----a-w c:\windows\NOWY\system32\PnkBstrB.exe2009-02-01 02:52 137,688 ----a-w c:\windows\NOWY\system32\drivers\PnkBstrK.sys2009-02-01 01:34 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\uTorrent2009-01-31 18:55 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\foobar20002009-01-31 16:19 --------- d-----w c:\program files\Common Files\Wise Installation Wizard2009-01-30 19:37 --------- d-----w c:\program files\Xfire2009-01-29 23:23 --------- d-----w c:\program files\DVDVideoSoft2009-01-29 23:23 --------- d-----w c:\program files\Common Files\DVDVideoSoft2009-01-29 23:08 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Xfire2009-01-29 19:23 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Hamachi2009-01-29 11:27 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Nowe Gadu-Gadu2009-01-27 23:00 --------- d---a-w c:\documents and settings\All Users.NOWY\Dane aplikacji\TEMP2009-01-25 23:25 --------- d-----w c:\program files\K-Lite Codec Pack2009-01-24 23:24 --------- d--h--w c:\program files\InstallShield Installation Information2009-01-23 16:15 --------- d-----w c:\program files\OpenAL2009-01-16 21:01 --------- d-----w c:\program files\ScreenshotCaptor2009-01-15 20:04 --------- d-----w c:\program files\ALLPlayer2009-01-14 19:15 --------- d-----w c:\program files\Multiwinia2009-01-08 03:51 --------- d-----w c:\program files\eMule2009-01-07 10:28 453,152 ----a-w c:\windows\NOWY\system32\NVUNINST.EXE2009-01-04 07:11 --------- d-----w c:\program files\NAPI-PROJEKT2008-12-31 18:53 --------- d-----w c:\documents and settings\All Users.NOWY\Dane aplikacji\NexonEU2008-12-31 13:18 --------- d-----w c:\program files\CoD RconTool2008-12-30 00:39 22,328 ----a-w c:\documents and settings\marcin\Dane aplikacji\PnkBstrK.sys2008-12-28 20:31 --------- d-----w c:\program files\Common Files\Nero2008-12-27 22:32 --------- d-----w c:\program files\Nowe Gadu-Gadu2008-12-25 22:59 --------- d-----w c:\program files\Hamachi2008-12-25 22:58 25,280 ----a-w c:\windows\NOWY\system32\drivers\hamachi.sys2008-12-25 19:10 --------- d-----w c:\program files\Risk2008-12-24 18:23 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\GSC 2.002008-12-24 14:33 --------- dc-h--w c:\documents and settings\All Users.NOWY\Dane aplikacji\{B46E1EF5-0B37-4DB4-A4E2-9F2B41036185}2008-12-24 14:27 --------- d-----w c:\program files\Trend Micro2008-12-24 03:06 --------- d-----w c:\program files\NVIDIA Corporation2008-12-24 03:06 --------- d-----w c:\program files\Lavalys2008-12-24 02:11 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Uniblue2008-12-24 02:06 24,064 ----a-w c:\windows\NOWY\system32\ctfmon.exe2008-12-23 16:06 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Winamp2008-12-23 13:34 --------- d-----w c:\program files\Teamspeak2_RC22008-12-23 13:30 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\teamspeak22008-12-21 16:17 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\DivX2008-12-21 14:36 --------- d-----w c:\program files\DivX2008-12-21 14:08 --------- d-----w c:\program files\Total Video Converter2008-12-19 16:41 --------- d-----w c:\program files\GSC 2.002008-12-19 00:59 --------- d-----w c:\program files\Java2008-12-17 20:41 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Thinstall2008-12-17 14:43 --------- d-----w c:\documents and settings\LocalService.ZARZĄDZANIE NT\Dane aplikacji\Xfire2008-12-14 20:47 --------- d-----w c:\documents and settings\All Users.NOWY\Dane aplikacji\Lavasoft2008-12-14 20:41 --------- d-----w c:\program files\Lavasoft2008-12-14 20:10 --------- d-----w c:\documents and settings\All Users.NOWY\Dane aplikacji\Kaspersky Lab Setup Files2008-12-14 20:05 14,336 ----a-w c:\windows\NOWY\system32\svchost.exe2008-12-11 19:10 --------- d-----w c:\program files\Ventrilo2008-12-11 19:10 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Ventrilo2008-12-10 08:45 70,936 ----a-w c:\windows\NOWY\system32\PhysXLoader.dll2008-12-06 17:47 --------- d-----w c:\program files\SystemRequirementsLab2008-12-04 18:23 --------- d-----w c:\program files\Microsoft Games for Windows - LIVE2008-12-04 10:16 --------- d-----w c:\program files\Tlen.pl2008-12-04 10:15 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Tlen.pl2008-12-04 09:26 107,888 ----a-w c:\windows\NOWY\system32\CmdLineExt.dll2008-12-04 08:28 24,344 ----a-w c:\windows\NOWY\system32\PhysXDevice.dll2008-12-04 07:56 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Media Player Classic2008-12-03 23:26 66,872 ----a-w c:\windows\NOWY\system32\PnkBstrA.exe2008-12-03 23:08 --------- d-----w c:\program files\foobar20002008-12-03 22:51 --------- d-----w c:\program files\DAEMON Tools Lite2008-12-03 21:57 --------- d-----w c:\program files\DAEMON Tools Toolbar2008-12-03 21:47 --------- d-----w c:\documents and settings\NetworkService.ZARZĄDZANIE NT\Dane aplikacji\Xfire2008-12-03 21:47 --------- d-----w c:\documents and settings\NetworkService.ZARZĄDZANIE NT\Dane aplikacji\Xfire2008-12-03 21:47 --------- d-----w c:\documents and settings\NetworkService.ZARZĄDZANIE NT\Dane aplikacji\Xfire2008-12-03 21:42 717,296 ----a-w c:\windows\NOWY\system32\drivers\sptd.sys2008-12-03 21:42 --------- d-----w c:\program files\Your Uninstaller 20082008-12-03 21:42 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\URSoft2008-12-03 21:42 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\DAEMON Tools2008-12-03 21:15 --------- d--h--r c:\documents and settings\marcin\Dane aplikacji\SecuROM2008-12-03 21:13 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Spore2008-12-03 20:40 --------- d-----w c:\program files\Opera2008-12-03 20:37 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\Gadu-Gadu2008-12-03 20:29 16,608 ----a-w c:\windows\NOWY\gdrv.sys2008-12-03 20:29 --------- d-----w c:\documents and settings\marcin\Dane aplikacji\InstallShield2008-12-03 20:26 315,392 ----a-w c:\windows\NOWY\HideWin.exe2008-12-03 20:19 --------- d-----w c:\program files\uTorrent2008-12-03 20:03 --------- d-----w c:\documents and settings\All Users.NOWY\Dane aplikacji\Microsoft Help2008-12-03 20:03 --------- d-----w c:\documents and settings\All Users.NOWY\Dane aplikacji\ESET2008-12-03 20:00 --------- d-----w c:\program files\Microsoft Works2008-12-03 19:59 --------- d-----w c:\program files\Microsoft.NET2008-12-03 19:56 --------- d-----w c:\program files\Winamp2008-12-03 19:55 --------- d-----w c:\program files\Common Files\Adobe2008-12-03 19:54 --------- d-----w c:\program files\Gadu-Gadu2008-12-03 19:35 --------- d-----w c:\program files\Windows Media Connect 22008-12-03 18:39 --------- d-----w c:\documents and settings\marcin i nisia\Dane aplikacji\uTorrent2008-12-03 17:49 --------- d-----w c:\documents and settings\marcin i nisia\Dane aplikacji\foobar20002008-12-03 01:30 --------- d-----w c:\documents and settings\marcin i nisia\Dane aplikacji\Xfire2008-12-03 00:43 --------- d-----w c:\documents and settings\marcin i nisia\Dane aplikacji\mIRC2008-12-02 19:42 --------- d-----w c:\documents and settings\marcin i nisia\Dane aplikacji\Desktopicon2008-11-24 07:25 22,328 ----a-w c:\documents and settings\marcin i nisia\Dane aplikacji\PnkBstrK.sys2008-11-21 21:47 524,288 ----a-w c:\windows\NOWY\system32\DivXsm.exe2008-11-21 21:47 3,596,288 ----a-w c:\windows\NOWY\system32\qt-dx331.dll2008-11-21 21:47 129,784 ------w c:\windows\NOWY\system32\pxafs.dll2008-11-21 21:47 120,056 ------w c:\windows\NOWY\system32\pxcpyi64.exe2008-11-21 21:47 118,520 ------w c:\windows\NOWY\system32\pxinsi64.exe2008-11-21 21:46 200,704 ----a-w c:\windows\NOWY\system32\ssldivx.dll2008-11-21 21:46 1,044,480 ----a-w c:\windows\NOWY\system32\libdivx.dll.------- Sigcheck -------2008-11-20 22:11 361600 0940d662b2e96a46421bc7b46de95905 c:\windows\NOWY\system32\drivers\tcpip.sys2008-08-17 15:05 977408 f042e3426d45d86d9bb55f6a79ab441a c:\windows\NOWY\explorer.exe2008-12-24 03:06 24064 c3a2915c71ae6f225eb906c25ccd29b5 c:\windows\NOWY\system32\ctfmon.exe.((((((((((((((((((((((((((((( snapshot@2009-01-09_14.07.12,12 ))))))))))))))))))))))))))))))))))))))))).- 2008-12-27 22:21:46 53,248 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll+ 2009-01-25 16:15:41 53,248 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll- 2008-12-27 22:21:47 12,800 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll+ 2009-01-25 16:15:41 12,800 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll- 2008-12-27 22:21:47 473,600 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll+ 2009-01-25 16:15:41 473,600 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll- 2008-12-27 22:21:40 2,676,224 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:36 2,676,224 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:41 2,846,720 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:37 2,846,720 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:41 563,712 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:37 563,712 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:42 567,296 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:38 567,296 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:42 576,000 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:38 576,000 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:43 577,024 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:38 577,024 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:43 577,536 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:39 577,536 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:44 577,536 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:39 577,536 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:45 578,560 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:40 578,560 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:47 578,560 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll+ 2009-01-25 16:15:42 578,560 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll- 2008-12-27 22:21:47 145,920 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll+ 2009-01-25 16:15:42 145,920 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll- 2008-12-27 22:21:47 159,232 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll+ 2009-01-25 16:15:42 159,232 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll- 2008-12-27 22:21:48 364,544 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll+ 2009-01-25 16:15:42 364,544 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll- 2008-12-27 22:21:48 178,176 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll+ 2009-01-25 16:15:43 178,176 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll- 2008-12-27 22:21:46 223,232 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll+ 2009-01-25 16:15:41 223,232 ----a-w c:\windows\NOWY\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll- 2005-10-20 19:02:28 163,328 ----a-w c:\windows\NOWY\ERDNT\Hiv-backup\ERDNT.EXE+ 2005-10-20 12:02:28 163,328 ----a-w c:\windows\NOWY\ERDNT\Hiv-backup\ERDNT.EXE+ 2009-01-24 23:24:32 3,262 ----a-r c:\windows\NOWY\Installer\{27614800-84A9-484E-9CCB-43ED2F1205F5}\ARPPRODUCTICON.exe+ 2009-01-21 14:09:21 12,566,288 ----a-r c:\windows\NOWY\Installer\{628C3D50-F524-4C49-A958-672CE7953756}\Conquest.exe+ 2009-01-18 15:47:15 246,784 ----a-r c:\windows\NOWY\Installer\{7BB40A22-8D98-43F9-A08A-E7EFF5AB1324}\Icon16CBC2751.exe+ 2009-01-18 15:47:16 30,720 ----a-r c:\windows\NOWY\Installer\{7BB40A22-8D98-43F9-A08A-E7EFF5AB1324}\Icon16CBC2753.exe+ 2009-01-18 15:47:16 2,237,952 ----a-r c:\windows\NOWY\Installer\{7BB40A22-8D98-43F9-A08A-E7EFF5AB1324}\IconEF5C4888.exe+ 2009-01-14 22:24:54 302,430 ----a-r c:\windows\NOWY\Installer\{AEDBD563-24BB-4EE3-8366-A654DAC2D988}\ME_Icon.exe+ 2009-01-21 14:10:52 7,598 ----a-r c:\windows\NOWY\Installer\{EF7E931D-DC84-471B-8DB6-A83358095474}\ARPPRODUCTICON.exe+ 2009-01-21 14:10:52 7,598 ----a-r c:\windows\NOWY\Installer\{EF7E931D-DC84-471B-8DB6-A83358095474}\ead_desktop_shortcut_F557710133CC471182353A95BCD49DB0.exe+ 2009-01-21 14:10:52 7,598 ----a-r c:\windows\NOWY\Installer\{EF7E931D-DC84-471B-8DB6-A83358095474}\ead_startmenu_shortc_F557710133CC471182353A95BCD49DB0.exe- 2000-08-31 07:00:00 28,672 ----a-w c:\windows\NOWY\NIRCMD.exe+ 2000-08-31 07:00:00 29,696 ----a-w c:\windows\NOWY\NIRCMD.exe- 2000-08-31 07:00:00 161,792 ----a-w c:\windows\NOWY\SWREG.exe+ 2000-08-31 07:00:00 286,720 ----a-w c:\windows\NOWY\SWREG.exe- 2008-06-11 08:02:32 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelFrench.dll+ 2008-10-07 08:13:20 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelFrench.dll- 2008-06-11 08:02:32 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelGerman.dll+ 2008-10-07 08:13:20 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelGerman.dll- 2008-06-11 08:02:32 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelJapanese.dll+ 2008-10-07 08:13:20 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelJapanese.dll- 2008-06-11 08:02:34 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelKorean.dll+ 2008-10-07 08:13:20 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelKorean.dll- 2008-06-11 08:02:34 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelPortugese.dll+ 2008-10-07 08:13:20 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelPortugese.dll- 2008-06-11 08:02:34 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelSimplifiedChinese.dll+ 2008-10-07 08:13:20 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelSimplifiedChinese.dll- 2008-06-11 08:02:34 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelSpanish.dll+ 2008-10-07 08:13:20 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelSpanish.dll- 2008-06-11 08:02:34 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelSwedish.dll+ 2008-10-07 08:13:20 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelSwedish.dll- 2008-06-11 08:02:34 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelTraditionalChinese.dll+ 2008-10-07 08:13:22 58,648 ----a-w c:\windows\NOWY\system32\AgCPanelTraditionalChinese.dll+ 2009-01-11 16:00:54 262,144 ----a-w c:\windows\NOWY\system32\config\systemprofile\ntuser.dat+ 2008-03-12 19:27:00 50,520 ----a-w c:\windows\NOWY\system32\csvidcap.dll+ 2008-07-21 16:34:36 121,872 ----a-w c:\windows\NOWY\system32\drivers\kl1.sys+ 2008-01-29 16:29:38 32,784 ----a-w c:\windows\NOWY\system32\drivers\klbg.sys+ 2008-03-13 17:02:46 26,640 ----a-w c:\windows\NOWY\system32\drivers\klfltdev.sys+ 2009-01-11 16:02:06 213,008 ----a-w c:\windows\NOWY\system32\drivers\klif.sys+ 2008-04-30 16:06:48 24,592 ----a-w c:\windows\NOWY\system32\drivers\klim5.sys+ 2008-07-29 18:20:00 24,774 ----a-w c:\windows\NOWY\system32\drivers\klopp.dat- 2008-10-07 12:33:00 6,133,856 ----a-w c:\windows\NOWY\system32\drivers\nv4_mini.sys+ 2009-01-15 07:19:00 6,301,248 ----a-w c:\windows\NOWY\system32\drivers\nv4_mini.sys- 2008-12-21 14:37:12 192,184 ----a-w c:\windows\NOWY\system32\FNTCACHE.DAT+ 2009-01-25 14:32:10 192,976 ----a-w c:\windows\NOWY\system32\FNTCACHE.DAT- 2008-12-31 03:26:01 1,700,352 ----a-w c:\windows\NOWY\system32\gdiplus.dll+ 2001-09-05 20:00:58 1,700,352 ----a-w c:\windows\NOWY\system32\gdiplus.dll- 2008-10-07 12:33:00 425,984 ----a-w c:\windows\NOWY\system32\keystone.exe+ 2009-01-15 07:19:00 436,768 ----a-w c:\windows\NOWY\system32\keystone.exe+ 2008-07-29 18:21:42 218,376 ----a-w c:\windows\NOWY\system32\klogon.dll- 2008-10-07 12:33:00 6,058,112 ----a-w c:\windows\NOWY\system32\nv4_disp.dll+ 2009-01-15 07:19:00 6,168,960 ----a-w c:\windows\NOWY\system32\nv4_disp.dll- 2008-10-07 12:33:00 475,136 ----a-w c:\windows\NOWY\system32\nvapi.dll+ 2009-01-15 07:19:00 663,552 ----a-w c:\windows\NOWY\system32\nvapi.dll- 2008-10-07 12:33:00 442,368 ----a-w c:\windows\NOWY\system32\nvappbar.exe+ 2009-01-15 07:19:00 449,056 ----a-w c:\windows\NOWY\system32\nvappbar.exe- 2008-10-07 12:33:00 122,880 ----a-w c:\windows\NOWY\system32\nvcod.dll+ 2009-01-15 07:19:00 135,168 ----a-w c:\windows\NOWY\system32\nvcod.dll- 2008-10-07 12:33:00 122,880 ----a-w c:\windows\NOWY\system32\nvcodins.dll+ 2009-01-15 07:19:00 135,168 ----a-w c:\windows\NOWY\system32\nvcodins.dll- 2008-10-07 12:33:00 143,360 ----a-w c:\windows\NOWY\system32\nvcolor.exe+ 2009-01-15 07:19:00 143,360 ----a-w c:\windows\NOWY\system32\nvcolor.exe- 2008-10-07 12:33:00 13,574,144 ----a-w c:\windows\NOWY\system32\nvcpl.dll+ 2009-01-15 07:19:00 13,680,640 ----a-w c:\windows\NOWY\system32\nvcpl.dll- 2008-10-07 12:33:00 797,216 ----a-w c:\windows\NOWY\system32\nvcplui.exe+ 2009-01-15 07:19:00 801,312 ----a-w c:\windows\NOWY\system32\nvcplui.exe- 2008-10-07 12:33:00 1,108,512 ----a-w c:\windows\NOWY\system32\nvcpluir.dll+ 2009-01-15 07:19:00 1,108,512 ----a-w c:\windows\NOWY\system32\nvcpluir.dll- 2008-10-07 12:33:00 1,368,064 ----a-w c:\windows\NOWY\system32\nvcuda.dll+ 2009-01-15 07:19:00 1,560,576 ----a-w c:\windows\NOWY\system32\nvcuda.dll- 2008-10-07 12:33:00 3,989,504 ----a-w c:\windows\NOWY\system32\nvdisps.dll+ 2009-01-15 07:19:00 4,710,400 ----a-w c:\windows\NOWY\system32\nvdisps.dll- 2008-10-07 12:33:00 5,799,936 ----a-w c:\windows\NOWY\system32\nvdispsr.dll+ 2009-01-15 07:19:00 6,594,560 ----a-w c:\windows\NOWY\system32\nvdispsr.dll- 2008-10-07 12:33:00 1,339,392 ----a-w c:\windows\NOWY\system32\nvdspsch.exe+ 2009-01-15 07:19:00 1,346,080 ----a-w c:\windows\NOWY\system32\nvdspsch.exe- 2008-10-07 12:33:00 3,444,736 ----a-w c:\windows\NOWY\system32\nvgames.dll+ 2009-01-15 07:19:00 3,489,792 ----a-w c:\windows\NOWY\system32\nvgames.dll- 2008-10-07 12:33:00 3,457,024 ----a-w c:\windows\NOWY\system32\nvgamesr.dll+ 2009-01-15 07:19:00 4,280,320 ----a-w c:\windows\NOWY\system32\nvgamesr.dll- 2008-10-07 12:33:00 1,486,848 ----a-w c:\windows\NOWY\system32\nview.dll+ 2009-01-15 07:19:00 1,507,328 ----a-w c:\windows\NOWY\system32\nview.dll- 2008-10-07 12:33:00 229,376 ----a-w c:\windows\NOWY\system32\nvmccs.dll+ 2009-01-15 07:19:00 229,376 ----a-w c:\windows\NOWY\system32\nvmccs.dll- 2008-10-07 12:33:00 45,056 ----a-w c:\windows\NOWY\system32\nvmccsrs.dll+ 2009-01-15 07:19:00 45,056 ----a-w c:\windows\NOWY\system32\nvmccsrs.dll- 2008-10-07 12:33:00 188,416 ----a-w c:\windows\NOWY\system32\nvmccss.dll+ 2009-01-15 07:19:00 188,416 ----a-w c:\windows\NOWY\system32\nvmccss.dll- 2008-10-07 12:33:00 458,752 ----a-w c:\windows\NOWY\system32\nvmccssr.dll+ 2009-01-15 07:19:00 458,752 ----a-w c:\windows\NOWY\system32\nvmccssr.dll- 2008-10-07 12:33:00 86,016 ----a-w c:\windows\NOWY\system32\nvmctray.dll+ 2009-01-15 07:19:00 86,016 ----a-w c:\windows\NOWY\system32\nvmctray.dll- 2008-10-07 12:33:00 1,257,472 ----a-w c:\windows\NOWY\system32\nvmobls.dll+ 2009-01-15 07:19:00 1,286,144 ----a-w c:\windows\NOWY\system32\nvmobls.dll- 2008-10-07 12:33:00 2,854,912 ----a-w c:\windows\NOWY\system32\nvmoblsr.dll+ 2009-01-15 07:19:00 2,854,912 ----a-w c:\windows\NOWY\system32\nvmoblsr.dll- 2008-10-07 12:33:00 8,826,880 ----a-w c:\windows\NOWY\system32\nvoglnt.dll+ 2009-01-15 07:19:00 9,412,608 ----a-w c:\windows\NOWY\system32\nvoglnt.dll- 2008-10-07 12:33:00 331,776 ----a-w c:\windows\NOWY\system32\nvrsar.dll+ 2009-01-15 07:19:00 331,776 ----a-w c:\windows\NOWY\system32\nvrsar.dll- 2008-10-07 12:33:00 245,760 ----a-w c:\windows\NOWY\system32\nvrscs.dll+ 2009-01-15 07:19:00 245,760 ----a-w c:\windows\NOWY\system32\nvrscs.dll- 2008-10-07 12:33:00 253,952 ----a-w c:\windows\NOWY\system32\nvrsda.dll+ 2009-01-15 07:19:00 253,952 ----a-w c:\windows\NOWY\system32\nvrsda.dll- 2008-10-07 12:33:00 278,528 ----a-w c:\windows\NOWY\system32\nvrsde.dll+ 2009-01-15 07:19:00 278,528 ----a-w c:\windows\NOWY\system32\nvrsde.dll- 2008-10-07 12:33:00 282,624 ----a-w c:\windows\NOWY\system32\nvrsel.dll+ 2009-01-15 07:19:00 282,624 ----a-w c:\windows\NOWY\system32\nvrsel.dll- 2008-10-07 12:33:00 245,760 ----a-w c:\windows\NOWY\system32\nvrseng.dll+ 2009-01-15 07:19:00 245,760 ----a-w c:\windows\NOWY\system32\nvrseng.dll- 2008-10-07 12:33:00 282,624 ----a-w c:\windows\NOWY\system32\nvrses.dll+ 2009-01-15 07:19:00 282,624 ----a-w c:\windows\NOWY\system32\nvrses.dll- 2008-10-07 12:33:00 274,432 ----a-w c:\windows\NOWY\system32\nvrsesm.dll+ 2009-01-15 07:19:00 274,432 ----a-w c:\windows\NOWY\system32\nvrsesm.dll- 2008-10-07 12:33:00 249,856 ----a-w c:\windows\NOWY\system32\nvrsfi.dll+ 2009-01-15 07:19:00 249,856 ----a-w c:\windows\NOWY\system32\nvrsfi.dll- 2008-10-07 12:33:00 282,624 ----a-w c:\windows\NOWY\system32\nvrsfr.dll+ 2009-01-15 07:19:00 282,624 ----a-w c:\windows\NOWY\system32\nvrsfr.dll- 2008-10-07 12:33:00 331,776 ----a-w c:\windows\NOWY\system32\nvrshe.dll+ 2009-01-15 07:19:00 331,776 ----a-w c:\windows\NOWY\system32\nvrshe.dll- 2008-10-07 12:33:00 258,048 ----a-w c:\windows\NOWY\system32\nvrshu.dll+ 2009-01-15 07:19:00 258,048 ----a-w c:\windows\NOWY\system32\nvrshu.dll- 2008-10-07 12:33:00 278,528 ----a-w c:\windows\NOWY\system32\nvrsit.dll+ 2009-01-15 07:19:00 278,528 ----a-w c:\windows\NOWY\system32\nvrsit.dll- 2008-10-07 12:33:00 270,336 ----a-w c:\windows\NOWY\system32\nvrsja.dll+ 2009-01-15 07:19:00 270,336 ----a-w c:\windows\NOWY\system32\nvrsja.dll- 2008-10-07 12:33:00 262,144 ----a-w c:\windows\NOWY\system32\nvrsko.dll+ 2009-01-15 07:19:00 262,144 ----a-w c:\windows\NOWY\system32\nvrsko.dll- 2008-10-07 12:33:00 274,432 ----a-w c:\windows\NOWY\system32\nvrsnl.dll+ 2009-01-15 07:19:00 274,432 ----a-w c:\windows\NOWY\system32\nvrsnl.dll- 2008-10-07 12:33:00 253,952 ----a-w c:\windows\NOWY\system32\nvrsno.dll+ 2009-01-15 07:19:00 253,952 ----a-w c:\windows\NOWY\system32\nvrsno.dll- 2008-10-07 12:33:00 253,952 ----a-w c:\windows\NOWY\system32\nvrspl.dll+ 2009-01-15 07:19:00 253,952 ----a-w c:\windows\NOWY\system32\nvrspl.dll- 2008-10-07 12:33:00 270,336 ----a-w c:\windows\NOWY\system32\nvrspt.dll+ 2009-01-15 07:19:00 270,336 ----a-w c:\windows\NOWY\system32\nvrspt.dll- 2008-10-07 12:33:00 266,240 ----a-w c:\windows\NOWY\system32\nvrsptb.dll+ 2009-01-15 07:19:00 266,240 ----a-w c:\windows\NOWY\system32\nvrsptb.dll- 2008-10-07 12:33:00 266,240 ----a-w c:\windows\NOWY\system32\nvrsru.dll+ 2009-01-15 07:19:00 266,240 ----a-w c:\windows\NOWY\system32\nvrsru.dll- 2008-10-07 12:33:00 258,048 ----a-w c:\windows\NOWY\system32\nvrssk.dll+ 2009-01-15 07:19:00 258,048 ----a-w c:\windows\NOWY\system32\nvrssk.dll- 2008-10-07 12:33:00 258,048 ----a-w c:\windows\NOWY\system32\nvrssl.dll+ 2009-01-15 07:19:00 258,048 ----a-w c:\windows\NOWY\system32\nvrssl.dll- 2008-10-07 12:33:00 253,952 ----a-w c:\windows\NOWY\system32\nvrssv.dll+ 2009-01-15 07:19:00 253,952 ----a-w c:\windows\NOWY\system32\nvrssv.dll- 2008-10-07 12:33:00 253,952 ----a-w c:\windows\NOWY\system32\nvrsth.dll+ 2009-01-15 07:19:00 253,952 ----a-w c:\windows\NOWY\system32\nvrsth.dll- 2008-10-07 12:33:00 253,952 ----a-w c:\windows\NOWY\system32\nvrstr.dll+ 2009-01-15 07:19:00 253,952 ----a-w c:\windows\NOWY\system32\nvrstr.dll- 2008-10-07 12:33:00 225,280 ----a-w c:\windows\NOWY\system32\nvrszhc.dll+ 2009-01-15 07:19:00 225,280 ----a-w c:\windows\NOWY\system32\nvrszhc.dll- 2008-10-07 12:33:00 122,880 ----a-w c:\windows\NOWY\system32\nvrszht.dll+ 2009-01-15 07:19:00 122,880 ----a-w c:\windows\NOWY\system32\nvrszht.dll- 2008-10-07 12:33:00 466,944 ----a-w c:\windows\NOWY\system32\nvshell.dll+ 2009-01-15 07:19:00 466,944 ----a-w c:\windows\NOWY\system32\nvshell.dll- 2008-10-07 12:33:00 163,908 ----a-w c:\windows\NOWY\system32\nvsvc32.exe+ 2009-01-15 07:19:00 163,908 ----a-w c:\windows\NOWY\system32\nvsvc32.exe- 2008-10-07 12:33:00 453,152 ----a-w c:\windows\NOWY\system32\nvudisp.exe+ 2009-01-15 07:19:00 453,152 ----a-w c:\windows\NOWY\system32\nvudisp.exe- 2008-10-07 12:33:00 3,764,224 ----a-w c:\windows\NOWY\system32\nvvitvs.dll+ 2009-01-15 07:19:00 3,796,992 ----a-w c:\windows\NOWY\system32\nvvitvs.dll- 2008-10-07 12:33:00 4,149,248 ----a-w c:\windows\NOWY\system32\nvvitvsr.dll+ 2009-01-15 07:19:00 4,280,320 ----a-w c:\windows\NOWY\system32\nvvitvsr.dll- 2008-10-07 12:33:00 81,920 ----a-w c:\windows\NOWY\system32\nvwddi.dll+ 2009-01-15 07:19:00 81,920 ----a-w c:\windows\NOWY\system32\nvwddi.dll- 2008-10-07 12:33:00 1,703,936 ----a-w c:\windows\NOWY\system32\nvwdmcpl.dll+ 2009-01-15 07:19:00 1,724,416 ----a-w c:\windows\NOWY\system32\nvwdmcpl.dll- 2008-10-07 12:33:00 1,019,904 ----a-w c:\windows\NOWY\system32\nvwimg.dll+ 2009-01-15 07:19:00 1,101,824 ----a-w c:\windows\NOWY\system32\nvwimg.dll- 2008-10-07 12:33:00 282,624 ----a-w c:\windows\NOWY\system32\nvwrsar.dll+ 2009-01-15 07:19:00 282,624 ----a-w c:\windows\NOWY\system32\nvwrsar.dll- 2008-10-07 12:33:00 286,720 ----a-w c:\windows\NOWY\system32\nvwrscs.dll+ 2009-01-15 07:19:00 286,720 ----a-w c:\windows\NOWY\system32\nvwrscs.dll- 2008-10-07 12:33:00 294,912 ----a-w c:\windows\NOWY\system32\nvwrsda.dll+ 2009-01-15 07:19:00 294,912 ----a-w c:\windows\NOWY\system32\nvwrsda.dll- 2008-10-07 12:33:00 311,296 ----a-w c:\windows\NOWY\system32\nvwrsde.dll+ 2009-01-15 07:19:00 311,296 ----a-w c:\windows\NOWY\system32\nvwrsde.dll- 2008-10-07 12:33:00 335,872 ----a-w c:\windows\NOWY\system32\nvwrsel.dll+ 2009-01-15 07:19:00 335,872 ----a-w c:\windows\NOWY\system32\nvwrsel.dll- 2008-10-07 12:33:00 286,720 ----a-w c:\windows\NOWY\system32\nvwrseng.dll+ 2009-01-15 07:19:00 286,720 ----a-w c:\windows\NOWY\system32\nvwrseng.dll- 2008-10-07 12:33:00 335,872 ----a-w c:\windows\NOWY\system32\nvwrses.dll+ 2009-01-15 07:19:00 335,872 ----a-w c:\windows\NOWY\system32\nvwrses.dll- 2008-10-07 12:33:00 327,680 ----a-w c:\windows\NOWY\system32\nvwrsesm.dll+ 2009-01-15 07:19:00 327,680 ----a-w c:\windows\NOWY\system32\nvwrsesm.dll- 2008-10-07 12:33:00 303,104 ----a-w c:\windows\NOWY\system32\nvwrsfi.dll+ 2009-01-15 07:19:00 303,104 ----a-w c:\windows\NOWY\system32\nvwrsfi.dll- 2008-10-07 12:33:00 327,680 ----a-w c:\windows\NOWY\system32\nvwrsfr.dll+ 2009-01-15 07:19:00 327,680 ----a-w c:\windows\NOWY\system32\nvwrsfr.dll- 2008-10-07 12:33:00 278,528 ----a-w c:\windows\NOWY\system32\nvwrshe.dll+ 2009-01-15 07:19:00 278,528 ----a-w c:\windows\NOWY\system32\nvwrshe.dll- 2008-10-07 12:33:00 315,392 ----a-w c:\windows\NOWY\system32\nvwrshu.dll+ 2009-01-15 07:19:00 315,392 ----a-w c:\windows\NOWY\system32\nvwrshu.dll- 2008-10-07 12:33:00 323,584 ----a-w c:\windows\NOWY\system32\nvwrsit.dll+ 2009-01-15 07:19:00 323,584 ----a-w c:\windows\NOWY\system32\nvwrsit.dll- 2008-10-07 12:33:00 212,992 ----a-w c:\windows\NOWY\system32\nvwrsja.dll+ 2009-01-15 07:19:00 212,992 ----a-w c:\windows\NOWY\system32\nvwrsja.dll- 2008-10-07 12:33:00 196,608 ----a-w c:\windows\NOWY\system32\nvwrsko.dll+ 2009-01-15 07:19:00 196,608 ----a-w c:\windows\NOWY\system32\nvwrsko.dll- 2008-10-07 12:33:00 319,488 ----a-w c:\windows\NOWY\system32\nvwrsnl.dll+ 2009-01-15 07:19:00 319,488 ----a-w c:\windows\NOWY\system32\nvwrsnl.dll- 2008-10-07 12:33:00 299,008 ----a-w c:\windows\NOWY\system32\nvwrsno.dll+ 2009-01-15 07:19:00 299,008 ----a-w c:\windows\NOWY\system32\nvwrsno.dll- 2008-10-07 12:33:00 294,912 ----a-w c:\windows\NOWY\system32\nvwrspl.dll+ 2009-01-15 07:19:00 294,912 ----a-w c:\windows\NOWY\system32\nvwrspl.dll- 2008-10-07 12:33:00 323,584 ----a-w c:\windows\NOWY\system32\nvwrspt.dll+ 2009-01-15 07:19:00 323,584 ----a-w c:\windows\NOWY\system32\nvwrspt.dll- 2008-10-07 12:33:00 319,488 ----a-w c:\windows\NOWY\system32\nvwrsptb.dll+ 2009-01-15 07:19:00 319,488 ----a-w c:\windows\NOWY\system32\nvwrsptb.dll- 2008-10-07 12:33:00 315,392 ----a-w c:\windows\NOWY\system32\nvwrsru.dll+ 2009-01-15 07:19:00 315,392 ----a-w c:\windows\NOWY\system32\nvwrsru.dll- 2008-10-07 12:33:00 299,008 ----a-w c:\windows\NOWY\system32\nvwrssk.dll+ 2009-01-15 07:19:00 299,008 ----a-w c:\windows\NOWY\system32\nvwrssk.dll- 2008-10-07 12:33:00 303,104 ----a-w c:\windows\NOWY\system32\nvwrssl.dll+ 2009-01-15 07:19:00 303,104 ----a-w c:\windows\NOWY\system32\nvwrssl.dll- 2008-10-07 12:33:00 294,912 ----a-w c:\windows\NOWY\system32\nvwrssv.dll+ 2009-01-15 07:19:00 294,912 ----a-w c:\windows\NOWY\system32\nvwrssv.dll- 2008-10-07 12:33:00 290,816 ----a-w c:\windows\NOWY\system32\nvwrsth.dll+ 2009-01-15 07:19:00 290,816 ----a-w c:\windows\NOWY\system32\nvwrsth.dll- 2008-10-07 12:33:00 303,104 ----a-w c:\windows\NOWY\system32\nvwrstr.dll+ 2009-01-15 07:19:00 303,104 ----a-w c:\windows\NOWY\system32\nvwrstr.dll- 2008-10-07 12:33:00 163,840 ----a-w c:\windows\NOWY\system32\nvwrszhc.dll+ 2009-01-15 07:19:00 163,840 ----a-w c:\windows\NOWY\system32\nvwrszhc.dll- 2008-10-07 12:33:00 167,936 ----a-w c:\windows\NOWY\system32\nvwrszht.dll+ 2009-01-15 07:19:00 167,936 ----a-w c:\windows\NOWY\system32\nvwrszht.dll- 2008-10-07 12:33:00 2,686,976 ----a-w c:\windows\NOWY\system32\nvwss.dll+ 2009-01-15 07:19:00 2,744,320 ----a-w c:\windows\NOWY\system32\nvwss.dll- 2008-10-07 12:33:00 2,981,888 ----a-w c:\windows\NOWY\system32\nvwssr.dll+ 2009-01-15 07:19:00 3,026,944 ----a-w c:\windows\NOWY\system32\nvwssr.dll- 2008-10-07 12:33:00 1,630,208 ----a-w c:\windows\NOWY\system32\nwiz.exe+ 2009-01-15 07:19:00 1,657,376 ----a-w c:\windows\NOWY\system32\nwiz.exe- 2008-12-17 20:38:44 71,444 ----a-w c:\windows\NOWY\system32\perfc009.dat+ 2009-01-21 21:01:33 71,308 ----a-w c:\windows\NOWY\system32\perfc009.dat- 2008-12-17 20:38:44 89,166 ----a-w c:\windows\NOWY\system32\perfc015.dat+ 2009-01-21 21:01:33 88,946 ----a-w c:\windows\NOWY\system32\perfc015.dat- 2008-12-17 20:38:44 441,760 ----a-w c:\windows\NOWY\system32\perfh009.dat+ 2009-01-21 21:01:33 441,624 ----a-w c:\windows\NOWY\system32\perfh009.dat- 2008-12-17 20:38:44 500,826 ----a-w c:\windows\NOWY\system32\perfh015.dat+ 2009-01-21 21:01:33 500,482 ----a-w c:\windows\NOWY\system32\perfh015.dat+ 2008-10-15 08:04:28 288,024 ----a-w c:\windows\NOWY\system32\PhysXCompatCplUI.exe- 2008-09-04 08:31:16 288,024 ----a-w c:\windows\NOWY\system32\PhysXCplUI.exe+ 2008-10-15 08:04:28 288,024 ----a-w c:\windows\NOWY\system32\PhysXCplUI.exe+ 2008-10-07 12:33:00 6,058,112 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nv4_disp.dll+ 2008-10-07 12:33:00 6,133,856 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nv4_mini.sys+ 2008-10-07 12:33:00 475,136 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvapi.dll+ 2008-10-07 12:33:00 122,880 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvcod.dll+ 2008-10-07 12:33:00 13,574,144 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvcpl.dll+ 2008-10-07 12:33:00 1,368,064 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvcuda.dll+ 2008-10-07 12:33:00 3,989,504 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvdisps.dll+ 2008-10-07 12:33:00 5,799,936 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvdispsr.dll+ 2008-10-07 12:33:00 3,444,736 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvgames.dll+ 2008-10-07 12:33:00 3,457,024 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvgamesr.dll+ 2008-10-07 12:33:00 229,376 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvmccs.dll+ 2008-10-07 12:33:00 188,416 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvmccss.dll+ 2008-10-07 12:33:00 458,752 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvmccssr.dll+ 2008-10-07 12:33:00 86,016 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvmctray.dll+ 2008-10-07 12:33:00 1,257,472 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvmobls.dll+ 2008-10-07 12:33:00 2,854,912 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvmoblsr.dll+ 2008-10-07 12:33:00 286,720 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvnt4cpl.dll+ 2008-10-07 12:33:00 8,826,880 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvoglnt.dll+ 2008-10-07 12:33:00 163,908 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvsvc32.exe+ 2008-10-07 12:33:00 3,764,224 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvvitvs.dll+ 2008-10-07 12:33:00 4,149,248 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvvitvsr.dll+ 2008-10-07 12:33:00 81,920 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvwddi.dll+ 2008-10-07 12:33:00 2,686,976 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvwss.dll+ 2008-10-07 12:33:00 2,981,888 ----a-w c:\windows\NOWY\system32\ReinstallBackups\[u]0[/u]005\DriverFiles\nvwssr.dll+ 2009-02-01 14:48:30 16,384 ----atw c:\windows\NOWY\Temp\Perflib_Perfdata_380.dat+ 2009-02-01 14:43:58 16,384 ----atw c:\windows\NOWY\Temp\Perflib_Perfdata_6a0.dat+ 2009-01-27 12:28:07 16,384 ----atw c:\windows\NOWY\Temp\Perflib_Perfdata_c8.dat.-- Migawka wyzerowana --.((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))..*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-07-24 490952]"ALLUpdate"="c:\program files\ALLPlayer\ALLUpdate.exe" [2008-11-24 869888]"NVIDIA nTune"="c:\program files\NVIDIA Corporation\nTune\nTuneCmd.exe" [2007-09-04 81920][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]"NvCplDaemon"="c:\windows\NOWY\system32\NvCpl.dll" [2009-01-15 13680640]"Copperhead"="c:\program files\Razer\Copperhead\razerhid.exe" [2005-11-25 155648]"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-11-10 136600]"cFosSpeed"="c:\program files\cFosSpeed\cFosSpeed.exe" [2008-07-18 867544]"NvMediaCenter"="c:\windows\NOWY\system32\NvMcTray.dll" [2009-01-15 86016]"mapper"="c:\program files\Home Browsing\IE Internet Helper\maper.exe" [2008-09-04 40960]"nwiz"="nwiz.exe" [2009-01-15 c:\windows\NOWY\system32\nwiz.exe]"RTHDCPL"="RTHDCPL.EXE" [2007-09-19 c:\windows\NOWY\RTHDCPL.exe][HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]"CTFMON.EXE"="c:\windows\NOWY\system32\CTFMON.EXE" [2008-12-24 24064][HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]"_nltide_2"="shell32" [X]"_nltide_3"="advpack.dll" [2008-08-26 c:\windows\NOWY\system32\advpack.dll]c:\documents and settings\marcin\Menu Start\Programy\Autostart\Spyware Doctor Updater.exe [2008-10-30 29228][HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]"VIDC.XFR1"= xfcodec.dll"MSVideo"= CSvidcap.dll[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]"EnableFirewall"= 0 (0x0)[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\system32\\sessmgr.exe"="c:\\Program Files\\uTorrent\\uTorrent.exe"="c:\\Program Files\\Nowe Gadu-Gadu\\gg.exe"="c:\\Program Files\\Xfire\\xfire.exe"="c:\\WINDOWS\\NOWY\\system32\\dpvsetup.exe"="c:\\WINDOWS\\NOWY\\system32\\PnkBstrA.exe"="c:\\WINDOWS\\NOWY\\system32\\PnkBstrB.exe"="e:\\cod4\\iw3mp.exe"="c:\\Program Files\\Opera\\opera.exe"="e:\\gta4\\Grand Theft Auto IV\\LaunchGTAIV.exe"="e:\\gta4\\Grand Theft Auto IV\\GTAIV.exe"="c:\\Program Files\\Tlen.pl\\tlen.exe"="e:\\gta4\\Rockstar Games Social Club\\RGSCLauncher.exe"="c:\\Program Files\\Ventrilo\\Ventrilo.exe"="e:\\wic\\wic.exe"="e:\\wic\\wic_online.exe"="e:\\wic\\wic_ds.exe"="c:\\Documents and Settings\\All Users.NOWY\\Dane aplikacji\\NexonEU\\NGM\\NGM.exe"="e:\\mirror\\Binaries\\MirrorsEdge.exe"="e:\\setlers 6\\base\\bin\\Settlers6.exe"=[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009R2 NwSapAgent;Agent SAP;c:\windows\NOWY\system32\svchost.exe -k netsvcs [2008-04-15 14336]R2 Speechsrv;Glasovne poruke;c:\program files\LAN Voice Chat\Speechs.exe [2006-01-11 487424]R3 UsbFltr;Razer Copperhead Driver;c:\windows\NOWY\system32\drivers\copperhd.sys [2008-06-27 11596]S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe --> c:\program files\Spyware Doctor\pctsAuxs.exe [?].- - - - USUNIĘTO PUSTE WPISY - - - -HKCU-Run-LAN Messenger - (no file).------- Skan uzupełniający -------.uStart Page = about:blankIE: E&ksportuj do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000.**************************************************************************catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.netRootkit scan 2009-02-01 16:07:55Windows 5.1.2600 Dodatek Service Pack 3 NTFSskanowanie ukrytych procesów ... skanowanie ukrytych wpisów autostartu ... skanowanie ukrytych plików ... skanowanie pomyślnie ukończoneukryte pliki: 0**************************************************************************.--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------[HKEY_USERS\S-1-5-21-1960408961-1425521274-682003330-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]"??"=hex:6f,ab,6f,6f,fd,c9,4a,8f,10,07,36,1b,43,3d,f8,2e,db,d3,75,64,4c,bb,46, 32,7a,28,d8,2a,54,0b,b1,e4,b3,53,13,20,e9,14,42,ea,25,a4,36,97,ca,51,fd,fa,\"??"=hex:8d,6a,d4,ca,b9,23,2f,5c,52,ab,e2,a6,8c,f4,64,52[HKEY_USERS\S-1-5-21-1960408961-1425521274-682003330-1003\Software\SecuROM\License information*]"datasecu"=hex:50,9e,6c,1b,20,16,58,83,5f,43,f5,44,d5,b3,80,4a,6b,65,5f,68,5c, ba,1d,65,2d,de,51,d3,a0,9e,eb,98,dd,72,c1,03,e0,50,e6,91,47,6b,5b,db,b8,d4,\"rkeysecu"=hex:7e,b8,89,cc,4f,98,35,21,80,a8,51,24,b5,95,2a,fe.--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------- - - - - - - > 'lsass.exe'(1248)c:\windows\NOWY\system32\scecli.dll.Czas ukończenia: 2009-02-01 16:08:45ComboFix-quarantined-files.txt 2009-02-01 15:08:43ComboFix2.txt 2009-01-11 16:48:05ComboFix3.txt 2009-01-09 13:07:42Przed: 358 514 688 bajtów wolnychPo: 380,485,632 bajtów wolnych592 Cytuj Udostępnij tę odpowiedź Odnośnik do odpowiedzi Udostępnij na innych stronach Więcej opcji udostępniania...