Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ComboFix 10-01-30.05 - Kacper 31.01.2010 13:19:51.1.2 - x86
- Microsoft Windows 7 Enterprise 6.1.7600.0.1250.48.1033.18.1791.896 [GMT 1:00]
- Uruchomiony z: c:\users\Kacper\Desktop\ComboFix.exe
- .
- [i] ADS - Windows: deleted 24 bytes in 1 streams. [/i]
- ((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
- .
- c:\$recycle.bin\S-1-5-21-1234489144-3826866285-3669583721-1001
- C:\data
- c:\programdata\hpeDCC.dll
- c:\users\Kacper\AppData\Roaming\EurekaLog
- c:\windows\system32\instsrv.exe
- c:\windows\system32\setup.ini
- .
- ((((((((((((((((((((((((( Pliki utworzone od 2009-12-28 do 2010-01-31 )))))))))))))))))))))))))))))))
- .
- 2010-01-31 12:25 . 2010-01-31 12:26 -------- d-----w- c:\users\Kacper\AppData\Local\temp
- 2010-01-31 12:25 . 2010-01-31 12:25 -------- d-----w- c:\users\Default\AppData\Local\temp
- 2010-01-31 12:17 . 2010-01-31 12:18 -------- d-----w- C:\32788R22FWJFW
- 2010-01-30 22:59 . 2010-01-30 22:59 -------- d-----w- c:\users\Kacper\AppData\Roaming\Malwarebytes
- 2010-01-30 22:59 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
- 2010-01-30 22:59 . 2010-01-30 22:59 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
- 2010-01-30 22:59 . 2010-01-30 22:59 -------- d-----w- c:\programdata\Malwarebytes
- 2010-01-30 22:59 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
- 2010-01-30 18:52 . 2010-01-30 22:35 -------- d-----w- c:\program files\SlySoft
- 2010-01-29 22:31 . 2010-01-29 22:37 -------- d-----w- c:\users\Kacper\.VirtualBox
- 2010-01-29 22:30 . 2009-12-17 14:02 123280 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
- 2010-01-29 22:30 . 2009-12-17 14:02 41616 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
- 2010-01-29 22:30 . 2010-01-29 22:30 -------- d-----w- c:\program files\Sun
- 2010-01-29 22:03 . 2010-01-29 22:03 -------- d-----w- C:\FPC
- 2010-01-27 15:58 . 2009-10-31 05:45 2614272 ----a-w- c:\windows\explorer.exe
- 2010-01-27 15:58 . 2009-10-28 06:17 285696 ----a-w- c:\windows\system32\winlogon.exe
- 2010-01-26 20:00 . 2010-01-26 20:01 -------- d-----w- c:\program files\nLite
- 2010-01-22 19:11 . 2009-12-19 09:02 977920 ----a-w- c:\windows\system32\wininet.dll
- 2010-01-19 21:02 . 2010-01-19 21:15 -------- d-----w- c:\users\Kacper\AppData\Roaming\.links
- 2010-01-19 21:02 . 2010-01-19 21:02 -------- d-----w- c:\program files\Links
- 2010-01-18 19:00 . 2010-01-18 19:00 70584 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{6A5DAE3D-ACE2-694B-4004-AC32F1F87BE1}-AdobeExtractFiles.dll
- 2010-01-18 19:00 . 2010-01-18 19:00 326056 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{746FA792-5D65-BF03-4886-E5AE9366369B}-ReaderUpdater.exe
- 2010-01-18 18:50 . 2010-01-18 18:50 79280 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{5A45777C-4E17-3936-D4AE-04E8F2B949C3}-PDFPrevHndlr.dll
- 2010-01-17 20:41 . 2010-01-17 20:43 -------- d-----w- c:\users\Kacper\AppData\Local\Chromium
- 2010-01-17 20:25 . 2010-01-17 20:27 -------- d-----w- c:\users\Kacper\AppData\Local\Google
- 2010-01-17 18:53 . 2010-01-17 18:53 75200 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{AE03681C-2257-4889-955D-3BD23A945A4D}-AcroIEHelperShim.dll
- 2010-01-17 18:53 . 2010-01-17 18:53 61888 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{AAF06C95-2434-7B1B-2374-07ACCB18A8A4}-AcroIEHelper.dll
- 2010-01-17 18:44 . 2010-01-17 18:44 -------- d-----w- c:\windows\system32\Futuremark
- 2010-01-17 18:44 . 2010-01-17 18:44 -------- d-----w- c:\program files\Common Files\Futuremark Shared
- 2010-01-17 18:44 . 2008-09-17 14:14 27672 ----a-r- c:\windows\system32\drivers\Entech.sys
- 2010-01-17 18:43 . 2010-01-17 18:43 15288 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{69B2C4F0-8C93-B6A3-D91B-D59F0D715987}-AcroRd32Info.exe
- 2010-01-16 10:06 . 2010-01-16 10:06 349616 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{F68B8C3E-5355-14E2-E641-841C6DB5A90D}-AcroRd32.exe
- 2010-01-16 09:57 . 2010-01-16 09:58 -------- d-----w- c:\windows\system32\mkcp32
- 2010-01-15 15:28 . 2010-01-15 15:28 948672 ----a-w- c:\programdata\Microsoft\Windows Defender\LocalCopy\{D1DDFD72-0B3E-3857-5A12-E6B350730CFB}-AdobeARM.exe
- 2010-01-13 14:02 . 2009-10-19 14:10 108544 ----a-w- c:\windows\system32\t2embed.dll
- 2010-01-13 14:02 . 2009-10-19 14:10 70656 ----a-w- c:\windows\system32\fontsub.dll
- 2010-01-11 16:09 . 2010-01-11 16:09 -------- d-----w- c:\users\Kacper\AppData\Local\ElevatedDiagnostics
- 2010-01-04 16:41 . 2010-01-04 16:41 10134 ----a-r- c:\users\Kacper\AppData\Roaming\Microsoft\Installer\{EC8CC7AD-E11C-46F4-BBDF-5D61AD7C8AEE}\ARPPRODUCTICON.exe
- 2010-01-04 16:41 . 2010-01-04 16:41 -------- d-----w- c:\program files\KidsAdmin
- 2010-01-04 16:32 . 2010-01-04 16:32 -------- d-----w- c:\users\Kacper\AppData\Local\marxio-tools
- 2010-01-04 16:32 . 2010-01-04 16:32 -------- d-----w- c:\program files\Marxio Timer
- 2010-01-03 19:51 . 2010-01-03 19:51 -------- d-----w- c:\users\Kacper\AppData\Roaming\FastStone
- 2010-01-03 19:51 . 2010-01-03 19:51 -------- d-----w- c:\program files\FastStone Image Viewer
- .
- (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
- .
- 2010-01-24 21:54 . 2009-10-13 20:05 -------- d-----w- c:\users\Kacper\AppData\Roaming\foobar2000
- 2010-01-22 19:06 . 2009-09-10 16:56 -------- d-----w- c:\program files\Microsoft Silverlight
- 2010-01-20 17:56 . 2009-12-02 13:11 -------- d-----w- c:\users\Kacper\AppData\Roaming\gtk-2.0
- 2010-01-18 16:17 . 2009-09-04 15:39 687590 ----a-w- c:\windows\system32\perfh015.dat
- 2010-01-18 16:17 . 2009-09-04 15:39 131176 ----a-w- c:\windows\system32\perfc015.dat
- 2010-01-17 18:44 . 2009-09-15 14:50 -------- d--h--w- c:\program files\InstallShield Installation Information
- 2010-01-15 15:27 . 2009-09-04 15:34 -------- d-----w- c:\program files\Common Files\Adobe
- 2010-01-14 10:12 . 2009-10-03 13:43 181120 ------w- c:\windows\system32\MpSigStub.exe
- 2010-01-13 23:08 . 2009-09-04 16:05 -------- d-----w- c:\programdata\Microsoft Help
- 2010-01-13 15:50 . 2009-12-29 12:55 -------- d-----w- c:\users\Kacper\AppData\Roaming\Kadu
- 2010-01-10 10:51 . 2009-12-25 19:40 -------- d-----w- c:\users\Kacper\AppData\Roaming\codeblocks
- 2010-01-08 20:03 . 2009-10-01 10:13 -------- d-----w- c:\program files\Opera
- 2010-01-01 17:53 . 2009-12-31 21:09 -------- d-----w- c:\users\Kacper\AppData\Roaming\Skype
- 2010-01-01 17:49 . 2009-12-31 21:10 -------- d-----w- c:\users\Kacper\AppData\Roaming\skypePM
- 2009-12-31 21:10 . 2009-12-31 21:10 56 ---ha-w- c:\programdata\ezsidmv.dat
- 2009-12-31 21:09 . 2009-12-31 21:08 -------- d-----r- c:\program files\Skype
- 2009-12-31 21:08 . 2009-12-31 21:08 -------- d-----w- c:\program files\Common Files\Skype
- 2009-12-31 21:08 . 2009-12-31 21:08 -------- d-----w- c:\programdata\Skype
- 2009-12-30 22:16 . 2009-12-30 22:16 -------- d-----w- c:\program files\Gadu-Gadu 10
- 2009-12-30 22:16 . 2009-12-30 22:16 -------- d-----w- c:\users\Kacper\AppData\Roaming\Gadu-Gadu 10
- 2009-12-29 12:55 . 2009-12-29 12:55 -------- d-----w- c:\program files\Kadu
- 2009-12-25 19:51 . 2009-12-25 19:39 -------- d-----w- c:\program files\CodeBlocks
- 2009-12-24 12:18 . 2009-12-24 12:18 -------- d-----w- c:\users\Kacper\AppData\Roaming\.wtw
- 2009-12-24 12:09 . 2009-12-24 12:09 -------- d-----w- c:\program files\K2T
- 2009-12-22 13:37 . 2009-12-22 13:16 -------- d-----w- c:\users\Kacper\AppData\Roaming\XnView
- 2009-12-22 13:15 . 2009-12-22 13:15 -------- d-----w- c:\program files\XnView
- 2009-12-21 13:47 . 2009-12-21 13:47 37376 ----a-w- c:\users\Kacper\AppData\Roaming\Gadu-Gadu 10\_userdata\ggbho.2.dll
- 2009-12-21 13:47 . 2009-12-21 13:47 11776 ----a-w- c:\users\Kacper\AppData\Roaming\Gadu-Gadu 10\_userdata\npgg.2.dll
- 2009-12-17 14:02 . 2009-12-17 14:02 99152 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys
- 2009-12-17 14:02 . 2009-12-17 14:02 133648 ----a-w- c:\windows\system32\VBoxNetFltNotify.dll
- 2009-12-17 14:02 . 2009-12-17 14:02 110096 ----a-w- c:\windows\system32\drivers\VBoxNetFlt.sys
- 2009-12-09 14:28 . 2009-10-06 16:15 -------- d-----w- c:\program files\Java
- 2009-12-06 13:56 . 2009-09-04 15:38 -------- d-----w- c:\users\Kacper\AppData\Roaming\Nowe Gadu-Gadu
- 2009-12-05 12:32 . 2009-09-04 16:38 108824 ----a-w- c:\users\Kacper\AppData\Local\GDIPFONTCACHEV1.DAT
- 2009-12-02 13:09 . 2009-12-02 13:09 -------- d-----w- c:\program files\GIMP-2.0
- 2009-12-02 12:39 . 2009-11-19 21:08 -------- d-----w- c:\program files\Microsoft Office 2010
- 2009-12-02 12:39 . 2009-09-10 17:17 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
- 2009-12-02 12:36 . 2009-09-04 16:06 -------- d-----w- c:\program files\Microsoft Visual Studio 8
- 2009-12-02 12:34 . 2009-11-24 16:57 -------- d-----w- c:\users\Kacper\AppData\Roaming\SoftGrid Client
- 2009-11-24 23:54 . 2009-09-04 15:39 1280480 ----a-w- c:\windows\system32\aswBoot.exe
- 2009-11-24 23:50 . 2009-09-04 15:39 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
- 2009-11-24 23:50 . 2009-09-04 15:39 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
- 2009-11-24 23:49 . 2009-09-04 15:39 53328 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
- 2009-11-24 23:49 . 2009-09-04 15:39 48560 ----a-w- c:\windows\system32\drivers\aswTdi.sys
- 2009-11-24 23:48 . 2009-09-04 15:40 23120 ----a-w- c:\windows\system32\drivers\aswRdr.sys
- 2009-11-24 23:47 . 2009-09-04 15:39 97480 ----a-w- c:\windows\system32\AvastSS.scr
- 2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
- 2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
- .
- ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
- .
- .
- *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
- REGEDIT4
- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "Sony Ericsson PC Suite"="c:\program files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" [2009-09-24 434176]
- "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1173504]
- "Google Update"="c:\users\Kacper\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-01-17 135664]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
- "avast!"="c:\program files\Alwil Software\Avast4\ashDisp.exe" [2009-11-24 81000]
- "SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-10-11 149280]
- "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
- "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
- "Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2010-01-07 1394000]
- c:\users\Kacper\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
- AQQ.lnk - c:\program files\WapSter\WapSter AQQ\AQQ.exe [2009-11-17 6807552]
- [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
- "ConsentPromptBehaviorAdmin"= 5 (0x5)
- "ConsentPromptBehaviorUser"= 3 (0x3)
- "EnableUIADesktopToggle"= 0 (0x0)
- [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
- "aux"=wdmaud.drv
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
- Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
- 2009-12-11 14:57 948672 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
- 2009-12-22 00:57 35760 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdslTaskBar]
- 2008-04-23 08:30 167936 ----a-r- c:\windows\System32\stmctrl.dll
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
- 2009-04-24 03:05 203416 ----a-w- c:\program files\Alcohol Soft\Alcohol 52\AxCmd.exe
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ExprOElauncher]
- 2008-09-24 06:50 86016 ----a-w- c:\program files\ivo\Expressivo\integr\OutlookExpress\ExprOElauncher.exe
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IPLA!]
- 2009-10-13 13:21 6039960 ----a-w- c:\program files\ipla\ipla.exe
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nowe Gadu-Gadu]
- 2009-09-04 15:56 11391592 ----a-w- c:\program files\Nowe Gadu-Gadu\gg.exe
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
- 2009-10-09 12:11 25623336 ----a-r- c:\program files\Skype\Phone\Skype.exe
- R1 aswSP;avast! Self Protection;c:\windows\System32\drivers\aswSP.sys [04.09.2009 16:39 114768]
- R1 VBoxDrv;VirtualBox Service;c:\windows\System32\drivers\VBoxDrv.sys [29.01.2010 23:30 123280]
- R1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\System32\drivers\VBoxUSBMon.sys [29.01.2010 23:30 41616]
- R2 AMD External Events Utility;AMD External Events Utility;c:\windows\System32\atiesrxx.exe [18.08.2009 01:36 176128]
- R2 aswFsBlk;aswFsBlk;c:\windows\System32\drivers\aswFsBlk.sys [04.09.2009 16:39 20560]
- R2 aswMonFlt;aswMonFlt;c:\windows\System32\drivers\aswMonFlt.sys [04.09.2009 16:39 53328]
- R3 seehcri;Sony Ericsson seehcri Device Driver;c:\windows\System32\drivers\seehcri.sys [10.11.2009 16:37 27632]
- R3 Stmatm;ATM/ADSL miniport;c:\windows\System32\drivers\stmatm.sys [13.10.2009 19:42 60533]
- R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\System32\drivers\VBoxNetAdp.sys [17.12.2009 15:02 99152]
- R3 VBoxNetFlt;VBoxNetFlt Service;c:\windows\System32\drivers\VBoxNetFlt.sys [17.12.2009 15:02 110096]
- S0 sptd;sptd;c:\windows\System32\drivers\sptd.sys [04.09.2009 16:37 721904]
- S2 mkcp32;mkcp32;c:\windows\System32\srvany.exe [18.04.2003 18:06 8192]
- S2 OMSI download service;Sony Ericsson OMSI download service;c:\program files\Sony Ericsson\Sony Ericsson PC Suite\SupServ.exe [10.11.2009 16:37 90112]
- S2 WLMS;Windows Licensing Monitoring Service;c:\windows\System32\wlms\wlms.exe [14.07.2009 08:15 17920]
- S3 fssfltr;fssfltr;c:\windows\System32\drivers\fssfltr.sys [10.09.2009 18:18 54632]
- S3 fsssvc;Funkcja Bezpieczeństwo rodzinne usługi Windows Live;c:\program files\Windows Live\Family Safety\fsssvc.exe [05.08.2009 21:48 704864]
- S3 RTL8167;Realtek 8167 NT Driver;c:\windows\System32\drivers\Rt86win7.sys [01.03.2009 22:05 139776]
- S3 s0016bus;Sony Ericsson Device 0016 driver (WDM);c:\windows\System32\drivers\s0016bus.sys [10.11.2009 16:37 89256]
- S3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;c:\windows\System32\drivers\s0016mdfl.sys [10.11.2009 16:37 15016]
- S3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;c:\windows\System32\drivers\s0016mdm.sys [10.11.2009 16:37 120744]
- S3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);c:\windows\System32\drivers\s0016mgmt.sys [10.11.2009 16:37 114216]
- S3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);c:\windows\System32\drivers\s0016nd5.sys [10.11.2009 16:37 25512]
- S3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;c:\windows\System32\drivers\s0016obex.sys [10.11.2009 16:37 110632]
- S3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);c:\windows\System32\drivers\s0016unic.sys [10.11.2009 16:37 115752]
- S3 TaurusUsb;ADSL Modem USB Service;c:\windows\System32\drivers\torususb.sys [13.10.2009 19:42 684672]
- .
- Zawartość folderu 'Zaplanowane zadania'
- 2010-01-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-605776097-300395452-567341650-1001Core.job
- - c:\users\Kacper\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-17 20:25]
- 2010-01-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-605776097-300395452-567341650-1001UA.job
- - c:\users\Kacper\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-17 20:25]
- .
- .
- ------- Skan uzupełniający -------
- .
- IE: E&ksportuj do programu Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
- IE: E&xport to Microsoft Excel - c:\progra~1\MIC30F~1\Office14\EXCEL.EXE/3000
- IE: Se&nd to OneNote - /105
- FF - ProfilePath - c:\users\Kacper\AppData\Roaming\Mozilla\Firefox\Profiles\2yoj79em.Domyślny użytkownik\
- FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
- FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
- FF - plugin: c:\program files\Mozilla Firefox\plugins\npOGAPlugin.dll
- FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
- FF - plugin: c:\users\Kacper\AppData\Local\Google\Update\1.2.183.13\npGoogleOneClick8.dll
- FF - plugin: c:\users\Kacper\AppData\Roaming\Gadu-Gadu 10\_userdata\npgg.2.dll
- ---- FIREFOX - SPOS�B POSTĘPOWANIA ----
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
- c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
- c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
- c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
- c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
- c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
- .
- - - - - USUNIĘTO PUSTE WPISY - - - -
- HKLM-Run-GrooveMonitor - c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
- MSConfigStartUp-AMP WinOFF - c:\users\kacper\desktop\winoff\winoff.exe
- MSConfigStartUp-AQQ - c:\users\Kacper\Desktop\AQQ_PO~1\WAPSTE~1\AQQ.exe
- MSConfigStartUp-GrooveMonitor - c:\program files\Microsoft Office\Office12\GrooveMonitor.exe
- MSConfigStartUp-mkam - c:\windows\csrss.exe
- MSConfigStartUp-msnmsgr - c:\program files\Windows Live\Messenger\msnmsgr.exe
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\mkcp32]
- "ImagePath"="C:\Windows/system32/srvany.exe"
- .
- --------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
- @Denied: (A) (Users)
- @Denied: (A) (Everyone)
- @Allowed: (B 1 2 3 4 5) (S-1-5-20)
- "BlindDial"=dword:00000000
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
- @Denied: (A) (Users)
- @Denied: (A) (Everyone)
- @Allowed: (B 1 2 3 4 5) (S-1-5-20)
- "BlindDial"=dword:00000000
- [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
- @Denied: (Full) (Everyone)
- .
- Czas ukończenia: 2010-01-31 13:27:32
- ComboFix-quarantined-files.txt 2010-01-31 12:27
- Przed: 15�916�453�888 bajt�w wolnych
- Po: 17�753�894�912 bajt�w wolnych
- - - End Of File - - 16884EF322CE41B28BFCC92E6F4BAF01
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement