Advertisement
Guest User

cf

a guest
Feb 27th, 2010
274
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 22.25 KB | None | 0 0
  1. ComboFix 10-02-27.04 - m3dioN 2010-02-27 22:28:25.2.2 - x86
  2. Microsoft Windows XP Professional 5.1.2600.2.1250.48.1045.18.3327.2558 [GMT 1:00]
  3. Uruchomiony z: c:\documents and settings\m3dioN\Pulpit\cf.exe
  4. AV: COMODO Antivirus *On-access scanning disabled* (Updated) {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
  5. FW: COMODO Firewall *enabled* {043803A3-4F86-4ef6-AFC5-F6E02A79969B}
  6.  
  7. UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !!
  8. .
  9.  
  10. ((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
  11. .
  12.  
  13. c:\windows\system32\twain_32.dll
  14.  
  15. .
  16. ((((((((((((((((((((((((( Pliki utworzone od 2010-01-27 do 2010-02-27 )))))))))))))))))))))))))))))))
  17. .
  18.  
  19. 2099-11-21 21:18 . 2099-11-21 21:18 -------- d-----w- c:\program files\FlashFXP
  20. 2010-02-27 20:24 . 2010-02-27 20:24 -------- d-----w- c:\program files\Trend Micro
  21. 2010-02-27 16:35 . 2010-02-27 16:35 -------- d-----w- c:\windows\LastGood
  22. 2010-02-25 22:24 . 2010-02-25 22:24 -------- d-----w- c:\documents and settings\m3dioN\Ustawienia lokalne\Dane aplikacji\DFX
  23. 2010-02-25 22:23 . 2010-02-25 22:23 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\DFX
  24. 2010-02-25 22:23 . 2010-02-25 22:27 -------- d-----w- c:\program files\DFX
  25. 2010-02-25 22:23 . 2010-02-25 22:23 -------- d-----w- c:\program files\Common Files\DFX
  26. 2010-02-25 22:07 . 2010-02-25 23:17 -------- d-----w- c:\temp\pages
  27. 2010-02-22 00:43 . 2010-02-22 00:51 15406728 ----a-w- c:\windows\system32\xlive.dll
  28. 2010-02-22 00:42 . 2010-02-22 00:51 15406728 ----a-w- c:\program files\xlive.dll
  29. 2010-02-21 18:12 . 2010-02-21 18:12 316736 ----a-w- c:\program files\Paul.dll
  30. 2010-02-21 18:12 . 2010-02-21 18:15 14523016 ----a-w- c:\program files\GTAIV.exe
  31. 2010-02-21 18:04 . 2010-02-21 18:05 5109704 ----a-w- c:\program files\lol.exe
  32. 2010-02-21 00:04 . 2010-02-21 00:04 -------- d-----w- c:\temp\backup-Feb-21-2010-1
  33. 2010-02-16 18:50 . 2010-02-16 18:50 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\Publish Providers
  34. 2010-02-16 18:48 . 2010-02-16 18:50 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\Sony
  35. 2010-02-16 18:48 . 2010-02-16 18:48 -------- d-----w- c:\documents and settings\m3dioN\Ustawienia lokalne\Dane aplikacji\Sony
  36. 2010-02-16 18:45 . 2010-02-16 18:45 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Sony
  37. 2010-02-16 18:45 . 2010-02-16 18:45 -------- d-----w- c:\program files\Sony
  38. 2010-02-14 20:27 . 2010-02-15 00:31 -------- d-----w- C:\Converted Music
  39. 2010-02-14 04:42 . 2009-11-13 13:00 1048576 ---h--r- C:\K50AB.BIN
  40. 2010-02-13 22:29 . 2009-04-06 08:08 4682 ----a-w- c:\windows\system32\npptNT2.sys
  41. 2010-02-13 22:05 . 2010-02-13 22:05 -------- d-----w- c:\program files\NCsoft
  42. 2010-02-11 03:16 . 2010-02-11 03:16 41872 ----a-w- c:\windows\system32\xfcodec.dll
  43. 2010-02-07 21:13 . 2010-02-07 21:14 -------- d-----w- c:\program files\Windows Media Connect 2
  44. 2010-02-05 22:45 . 2010-02-26 05:13 -------- d-----w- C:\Fraps
  45. 2010-02-04 00:55 . 2010-02-04 00:55 -------- d-----w- c:\program files\CCleaner
  46. 2010-02-03 20:36 . 2010-02-03 20:36 -------- d-----w- c:\program files\hc
  47. 2010-02-01 15:43 . 2009-02-07 06:43 24576 ----a-w- c:\documents and settings\m3dioN\Dane aplikacji\Mozilla\Firefox\Profiles\8jdis1iq.default\extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326}\platform\WINNT\components\ColorZilla.dll
  48.  
  49. .
  50. (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
  51. .
  52. 2010-02-27 21:21 . 2009-03-09 23:29 1474832 ----a-w- c:\windows\system32\drivers\sfi.dat
  53. 2010-02-27 17:50 . 2009-11-03 13:44 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\vlc
  54. 2010-02-27 16:42 . 2009-03-09 23:03 -------- d-----w- c:\program files\Steam
  55. 2010-02-27 16:30 . 2009-09-06 00:18 1851768 ----a-w- c:\documents and settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
  56. 2010-02-27 14:25 . 2009-03-09 22:23 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\FileZilla
  57. 2010-02-27 14:22 . 2009-03-09 21:15 82352 ----a-w- c:\documents and settings\m3dioN\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
  58. 2010-02-26 21:56 . 2009-03-09 23:07 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\Xfire
  59. 2010-02-25 23:04 . 2009-09-03 23:44 -------- d-----w- c:\program files\IrfanView
  60. 2010-02-25 18:47 . 2010-02-25 18:43 6229619 ----a-w- c:\program files\Front Flip_720p.wmv
  61. 2010-02-25 17:49 . 2009-03-09 22:23 -------- d-----w- c:\program files\FileZilla FTP Client
  62. 2010-02-25 02:15 . 2009-03-09 23:07 -------- d-----w- c:\program files\Xfire
  63. 2010-02-24 14:50 . 2010-02-24 14:50 382 ----a-w- c:\program files\Skrót do Program Files.lnk
  64. 2010-02-23 15:52 . 2009-12-29 14:02 1984 ----a-w- c:\windows\system32\d3d9caps.dat
  65. 2010-02-22 15:54 . 2009-09-04 13:43 -------- d-----w- c:\program files\Rockstar Games
  66. 2010-02-22 15:54 . 2009-03-09 21:07 -------- d--h--w- c:\program files\InstallShield Installation Information
  67. 2010-02-21 20:09 . 2010-02-21 20:09 954356 ----a-w- c:\program files\pliki_gtaiv_SNT.rar
  68. 2010-02-20 01:03 . 2009-09-11 20:30 -------- d---a-w- c:\documents and settings\All Users\Dane aplikacji\TEMP
  69. 2010-02-14 04:40 . 2009-03-09 21:37 -------- d-----w- c:\program files\ASUS
  70. 2010-02-14 04:18 . 2009-09-13 17:13 -------- d-----w- c:\program files\uTorrent
  71. 2010-02-13 22:00 . 2010-01-21 17:39 -------- d-----w- c:\program files\Lineage II
  72. 2010-02-13 21:18 . 2009-09-13 17:11 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\uTorrent
  73. 2010-02-11 23:52 . 2010-01-10 23:49 -------- d-----w- c:\program files\German Truck Simulator
  74. 2010-02-04 00:15 . 2009-12-13 09:32 -------- d-----w- c:\program files\Codemasters
  75. 2010-02-03 23:58 . 2009-11-03 13:46 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\dvdcss
  76. 2010-01-30 14:34 . 2009-11-15 00:35 1738 ----a-w- c:\documents and settings\m3dioN\tasks.dat
  77. 2010-01-30 12:37 . 2009-11-15 00:33 185344 ----a-w- c:\documents and settings\m3dioN\XPTable.dll
  78. 2010-01-30 12:37 . 2009-11-15 00:33 750592 ----a-w- c:\documents and settings\m3dioN\YgoowCore.dll
  79. 2010-01-30 12:37 . 2009-11-15 00:33 1015808 ----a-w- c:\documents and settings\m3dioN\Ygoow.exe
  80. 2010-01-29 21:22 . 2009-10-07 16:41 87104 ----a-w- c:\windows\system32\drivers\inspect.sys
  81. 2010-01-29 21:22 . 2009-10-07 16:41 171552 ----a-w- c:\windows\system32\guard32.dll
  82. 2010-01-29 21:22 . 2009-10-07 16:41 25160 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
  83. 2010-01-29 21:22 . 2009-10-07 16:41 134344 ----a-w- c:\windows\system32\drivers\cmdguard.sys
  84. 2010-01-20 13:34 . 2009-09-10 14:56 -------- d-----w- c:\program files\Sony Ericsson
  85. 2010-01-18 00:14 . 2009-03-09 23:51 -------- d-----w- c:\program files\Euro Truck Simulator
  86. 2010-01-17 22:29 . 2010-01-17 22:29 -------- d-----w- c:\program files\Kopia Euro Truck Simulator
  87. 2010-01-16 19:56 . 2009-10-24 12:59 -------- d-----w- c:\program files\Atari
  88. 2010-01-16 17:12 . 2010-01-07 15:39 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\VMware
  89. 2010-01-15 00:19 . 2010-01-15 00:19 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\NeatImage SL
  90. 2010-01-15 00:19 . 2010-01-15 00:19 -------- d-----w- c:\program files\Neat Image
  91. 2010-01-14 20:52 . 2010-01-14 20:52 -------- d-----w- c:\program files\Intuwave
  92. 2010-01-14 20:52 . 2010-01-14 20:52 -------- d-----w- c:\program files\Symbian
  93. 2010-01-14 20:51 . 2010-01-14 20:51 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Sony Ericsson
  94. 2010-01-14 20:51 . 2009-10-02 22:37 -------- d-----w- c:\program files\Common Files\Teleca Shared
  95. 2010-01-14 20:51 . 2010-01-14 20:51 -------- d-----w- c:\program files\Common Files\Sony Ericsson Shared
  96. 2010-01-14 20:51 . 2010-01-14 20:51 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Teleca
  97. 2010-01-13 12:08 . 2010-01-13 12:08 -------- d-----w- c:\program files\Eidos
  98. 2010-01-12 23:05 . 2010-01-12 23:05 2855 ----a-w- c:\windows\PIF\setup.PIF
  99. 2010-01-10 21:17 . 2009-09-10 14:56 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\Teleca
  100. 2010-01-10 21:16 . 2010-01-10 21:16 146 ----a-w- c:\windows\DelMR.bat
  101. 2010-01-10 20:54 . 2010-01-10 20:54 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ggsemc_01007.Wdf
  102. 2010-01-10 20:22 . 2010-01-10 20:22 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
  103. 2010-01-10 01:10 . 2010-01-10 01:10 -------- d-----w- c:\program files\MSXML 6.0
  104. 2010-01-07 15:41 . 2010-01-07 15:39 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\VMware
  105. 2010-01-07 15:35 . 2010-01-07 15:35 -------- d-----w- c:\program files\VMware
  106. 2010-01-05 21:55 . 2010-01-05 21:55 25512 ----a-w- c:\windows\system32\drivers\ggsemc.sys
  107. 2010-01-05 21:55 . 2010-01-05 21:55 13224 ----a-w- c:\windows\system32\drivers\ggflt.sys
  108. 2010-01-05 21:55 . 2010-01-05 21:55 1112288 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll
  109. 2010-01-05 00:31 . 2010-01-05 00:31 -------- d-----w- c:\program files\Common Files\Borland Shared
  110. 2010-01-04 23:45 . 2009-09-15 20:46 -------- d-----w- c:\program files\Common Files\Adobe
  111. 2010-01-02 18:18 . 2010-01-02 18:18 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\IrfanView
  112. 2010-01-02 00:56 . 2010-01-02 00:56 -------- d-----w- c:\program files\Ray Adams
  113. 2010-01-01 22:21 . 2010-01-01 22:21 -------- d-----w- c:\documents and settings\m3dioN\Dane aplikacji\IObit
  114. 2010-01-01 22:21 . 2010-01-01 22:21 -------- d-----w- c:\program files\IObit
  115. 2009-12-21 19:08 . 2008-04-15 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
  116. 2009-12-13 14:17 . 2009-12-13 14:17 10134 ----a-r- c:\documents and settings\m3dioN\Dane aplikacji\Microsoft\Installer\{20820A45-02A1-144C-21A3-A1812C5DDE23}\ARPPRODUCTICON.exe
  117. 2009-12-13 11:01 . 2008-04-15 12:00 85114 ----a-w- c:\windows\system32\perfc015.dat
  118. 2009-12-13 11:01 . 2008-04-15 12:00 493870 ----a-w- c:\windows\system32\perfh015.dat
  119. 2009-12-08 22:11 . 2009-12-08 22:11 0 ----a-w- c:\windows\nsreg.dat
  120. 2009-12-08 18:34 . 2009-11-27 21:52 215104 ----a-w- c:\windows\system32\PnkBstrB.exe
  121. 2009-11-30 22:07 . 2009-11-27 21:53 138576 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
  122. .
  123.  
  124. ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
  125. .
  126. .
  127. *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
  128. REGEDIT4
  129.  
  130. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  131. "ETDWare"="c:\program files\Elantech\ETDCtrl.exe" [2009-04-21 534528]
  132. "HDAudDeck"="c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe" [2009-04-30 33619968]
  133. "MsgTranAgt"="c:\program files\ASUS\ATK Hotkey\MsgTranAgt.exe" [2008-08-18 117304]
  134. "HControlUser"="c:\program files\ASUS\ATK Hotkey\HControlUser.exe" [2008-08-18 98304]
  135. "ATKHOTKEY"="c:\program files\ASUS\ATK Hotkey\HControl.exe" [2009-03-20 174648]
  136. "ATKMEDIA"="c:\program files\ASUS\ATK Media\DMedia.exe" [2009-04-07 159744]
  137. "ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2008-01-23 7766016]
  138. "Wireless Console 2"="c:\program files\Wireless Console 2\wcourier.exe" [2007-07-05 1040384]
  139. "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2009-04-09 61440]
  140. "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696]
  141. "COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cfp.exe" [2010-01-29 1800464]
  142. "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2009-11-10 417792]
  143.  
  144. [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
  145. "AppInit_DLLs"=c:\windows\system32\guard32.dll
  146.  
  147. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
  148. @="Driver"
  149.  
  150. [HKLM\~\startupfolder\C:^Documents and Settings^m3dioN^Menu Start^Programy^Autostart^smgr32.exe]
  151. backup=c:\windows\pss\smgr32.exeStartup
  152.  
  153. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACMON]
  154. 2009-06-16 18:56 540672 ----a-w- c:\program files\ASUS\Splendid\ACMON.exe
  155.  
  156. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\COMODO Internet Security]
  157. 2010-01-29 21:22 1800464 ----a-w- c:\program files\COMODO\COMODO Internet Security\cfp.exe
  158.  
  159. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
  160. 2008-04-15 12:00 15360 ------w- c:\windows\system32\ctfmon.exe
  161.  
  162. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
  163. 2006-10-26 22:47 31016 ----a-w- c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
  164.  
  165. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
  166. 2001-07-09 08:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
  167.  
  168. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless Console 2]
  169. 2007-07-05 15:53 1040384 ----a-w- c:\program files\Wireless Console 2\wcourier.exe
  170.  
  171. [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
  172. "EnableFirewall"= 0 (0x0)
  173.  
  174. [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
  175. "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
  176. "%windir%\\system32\\sessmgr.exe"=
  177. "c:\\Program Files\\Rockstar Games\\Rockstar Games Social Club\\RGSCLauncher.exe"=
  178. "c:\\Program Files\\Rockstar Games\\Grand Theft Auto IV\\LaunchGTAIV.exe"=
  179. "c:\\Program Files\\uTorrent\\uTorrent.exe"=
  180. "c:\\WINDOWS\\system32\\PnkBstrA.exe"=
  181. "c:\\WINDOWS\\system32\\PnkBstrB.exe"=
  182. "c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
  183. "c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
  184. "c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
  185. "c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
  186. "c:\\Program Files\\FlashFXP\\FlashFXP.exe"=
  187. "c:\\Program Files\\Opera\\opera.exe"=
  188. "c:\\Program Files\\Skype\\Phone\\Skype.exe"=
  189. "c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
  190.  
  191. R1 atitray;atitray;c:\program files\Ray Adams\ATI Tray Tools\atitray.sys [2007-05-22 18088]
  192. R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdguard.sys [2009-10-07 134344]
  193. R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2009-10-07 25160]
  194. R3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\drivers\ETD.sys [2009-03-09 89856]
  195. R3 evserial;Virtual Serial Ports Driver (Eltima Softwate);c:\windows\system32\drivers\evserial.sys [2009-09-11 53888]
  196. R3 usbfilter;AMD USB Filter Driver;c:\windows\system32\drivers\usbfilter.sys [2009-03-09 22072]
  197. R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2009-03-09 1131264]
  198. R3 VSBC;Virtual Serial Bus Enumerator (Eltima Software);c:\windows\system32\drivers\evsbc.sys [2009-09-11 27904]
  199. S3 96EW;96EW Filter;c:\windows\system32\drivers\96EW.sys [2009-12-14 20480]
  200. S3 CRFILTER;USB Mass Storage Filter;c:\windows\system32\drivers\CRFILTER.sys [2008-04-07 6656]
  201. S3 GarenaPEngine;GarenaPEngine;\??\c:\docume~1\m3dioN\USTAWI~1\Temp\MLZ2A36.tmp --> c:\docume~1\m3dioN\USTAWI~1\Temp\MLZ2A36.tmp [?]
  202. S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2010-01-05 13224]
  203. S3 gggen;Generic USB Flash Driver;c:\windows\system32\drivers\gggen.sys [2009-09-11 11648]
  204. S3 ntportio;ntportio;\??\c:\documents and settings\m3dioN\Pulpit\SEMCtool_v8.4\ntportio.sys --> c:\documents and settings\m3dioN\Pulpit\SEMCtool_v8.4\ntportio.sys [?]
  205. S3 PPJoyBus;Parallel Port Joystick Bus device driver;c:\windows\system32\drivers\PPJoyBus.sys [2004-01-23 13952]
  206. S3 PPortJoystick;Parallel Port Joystick device driver;c:\windows\system32\drivers\PPortJoy.sys [2004-01-23 28800]
  207. S3 s115bus;Sony Ericsson Device 115 driver (WDM);c:\windows\system32\drivers\s115bus.sys [2009-10-02 83208]
  208. S3 s115mdfl;Sony Ericsson Device 115 USB WMC Modem Filter;c:\windows\system32\drivers\s115mdfl.sys [2009-10-02 15112]
  209. S3 s115mdm;Sony Ericsson Device 115 USB WMC Modem Driver;c:\windows\system32\drivers\s115mdm.sys [2009-10-02 108680]
  210. S3 s115mgmt;Sony Ericsson Device 115 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\s115mgmt.sys [2009-10-02 100488]
  211. S3 s115obex;Sony Ericsson Device 115 USB WMC OBEX Interface;c:\windows\system32\drivers\s115obex.sys [2009-10-02 98568]
  212. .
  213. .
  214. ------- Skan uzupełniający -------
  215. .
  216. uStart Page = hxxp://www.google.com/
  217. uInternet Settings,ProxyOverride = *.local
  218. uSearchAssistant = hxxp://www.google.com/ie
  219. uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
  220. IE: E&ksportuj do programu Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
  221. TCP: {21548931-1FD7-47A6-9EF6-0D12A1F158B3} = 208.67.220.220,208.67.222.222
  222. FF - ProfilePath - c:\documents and settings\m3dioN\Dane aplikacji\Mozilla\Firefox\Profiles\8jdis1iq.default\
  223. FF - prefs.js: browser.startup.homepage - google.pl
  224. FF - component: c:\documents and settings\m3dioN\Dane aplikacji\Mozilla\Firefox\Profiles\8jdis1iq.default\extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326}\platform\WINNT\components\ColorZilla.dll
  225. FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
  226.  
  227. ---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
  228. c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
  229. c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
  230. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
  231. c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
  232. c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
  233. c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
  234. c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
  235. c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
  236. c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
  237. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
  238. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
  239. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
  240. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
  241. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
  242. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
  243. c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
  244. c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
  245. c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
  246. c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
  247. c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
  248. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
  249. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
  250. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
  251. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
  252. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
  253. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
  254. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
  255. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
  256. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
  257. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
  258. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
  259. c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
  260. .
  261.  
  262. **************************************************************************
  263.  
  264. disk not found C:\
  265.  
  266. please note that you need administrator rights to perform deep scan
  267. skanowanie ukrytych procesów ...
  268.  
  269. skanowanie ukrytych wpisów autostartu ...
  270.  
  271. HKLM\Software\Microsoft\Windows\CurrentVersion\Run
  272. HDAudDeck = c:\program files\VIA\VIAudioi\HDADeck\HDeck.exe 1????????????????????????????????????????????????
  273.  
  274. skanowanie ukrytych plików ...
  275.  
  276. skanowanie pomyślnie ukończone
  277. ukryte pliki:
  278.  
  279. **************************************************************************
  280.  
  281. [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\GarenaPEngine]
  282. "ImagePath"="\??\c:\docume~1\m3dioN\USTAWI~1\Temp\MLZ2A36.tmp"
  283. .
  284. --------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------
  285.  
  286. [HKEY_USERS\S-1-5-21-2052111302-842925246-1801674531-1003\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
  287. "??"=hex:e8,20,b5,81,7e,c7,a1,7b,63,c5,cb,bb,df,6a,31,e0,ab,aa,e0,59,33,4d,95,
  288. 17,c3,ef,a5,56,1a,e1,16,31,ab,f3,c1,6c,ba,8e,32,2c,7e,9b,c9,76,38,17,ff,b7,\
  289. "??"=hex:be,c9,a6,3f,53,2e,4c,13,c9,34,3f,6b,6d,86,cd,6f
  290.  
  291. [HKEY_USERS\S-1-5-21-2052111302-842925246-1801674531-1003\Software\SecuROM\License information*]
  292. "datasecu"=hex:ca,5f,07,6a,7e,f2,a1,62,a4,fc,9a,45,82,84,71,5b,55,a9,33,00,d3,
  293. 68,8b,fc,02,54,a0,db,d9,36,8a,2d,38,6d,69,d7,c4,7c,a9,0e,ee,7a,4c,d9,8d,56,\
  294. "rkeysecu"=hex:5d,7c,7f,06,b2,19,11,4f,13,7d,87,43,75,df,0e,ea
  295. .
  296. --------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------
  297.  
  298. - - - - - - - > 'winlogon.exe'(724)
  299. c:\windows\system32\guard32.dll
  300. c:\windows\system32\Ati2evxx.dll
  301.  
  302. - - - - - - - > 'lsass.exe'(780)
  303. c:\windows\system32\guard32.dll
  304. .
  305. Czas ukończenia: 2010-02-27 22:39:14
  306. ComboFix-quarantined-files.txt 2010-02-27 21:39
  307.  
  308. Przed: 40 411 611 136 bajtów wolnych
  309. Po: 40 531 587 072 bajtów wolnych
  310.  
  311. - - End Of File - - 841B8B4C825050E46BF0571040820632
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement