ďťż
Misja Tereski
siema mam problem z kompem otoz komp mi sie zawiesza jak nic na nim nie robie po ok 15 jak nie dotkkne myszki albo klawiatury to komp lapie zawieche wklejam logo z combofixa i hijacka moze ktos bedzue wieszail co trzeba zrobic
Download: Rapidshare, Hotfile, Megaupload, Przeklej i Inne ComboFix 08-06-01.6 - Mariusz 2008-06-03 21:46:38.1 - NTFSx86 Microsoft Windows XP Home Edition 5.1.2600.2.1250.1.1045.18.239 [GMT 2:00] Running from: C:\Documents and Settings\Mariusz\Pulpit\ComboFix.exe * Created a new restore point [color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color] . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\Documents and Settings\Mariusz\Dane aplikacji\inst.exe . ((((((((((((((((((((((((( Files Created from 2008-05-03 to 2008-06-03 ))))))))))))))))))))))))))))))) . 2008-06-03 21:38 . 2008-06-03 21:38 <DIR> d-------- C:\Program Files\Trend Micro 2008-06-03 20:41 . 2008-06-03 20:41 <DIR> d-------- C:\Program Files\EA GAMES 2008-06-03 20:41 . 2004-08-18 10:34 442,368 -ra------ C:\WINDOWS\system32\vp6vfw.dll 2008-05-31 18:40 . 2008-05-31 18:40 <DIR> d-------- C:\Documents and Settings\Mariusz\Dane aplikacji\PC Tools 2008-05-27 20:51 . 2008-05-27 20:51 <DIR> d-------- C:\Documents and Settings\Mariusz\Dane aplikacji\skypePM 2008-05-27 20:51 . 2008-05-27 20:51 56 --ah----- C:\WINDOWS\system32\ezsidmv.dat 2008-05-27 20:50 . 2008-05-27 20:50 <DIR> d-------- C:\Program Files\Common Files\Skype 2008-05-15 21:32 . 2008-05-15 21:32 <DIR> d-------- C:\Program Files\MSXML 6.0 2008-05-15 21:32 . 2008-05-15 21:32 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Nokia 2008-05-15 21:31 . 2008-05-15 21:31 <DIR> d-------- C:\Documents and Settings\Mariusz\Dane aplikacji\Nokia Multimedia Player 2008-05-15 21:23 . 2008-05-22 21:56 <DIR> d-------- C:\Documents and Settings\Mariusz\Dane aplikacji\PC Suite 2008-05-15 21:23 . 2008-05-15 21:23 0 --ah----- C:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf 2008-05-15 21:23 . 2008-05-15 21:23 0 --ah----- C:\WINDOWS\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf 2008-05-15 21:22 . 2008-05-25 22:35 <DIR> d-------- C:\Documents and Settings\Mariusz\Dane aplikacji\Nokia 2008-05-15 21:22 . 2008-05-15 21:22 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite 2008-05-15 21:21 . 2008-05-15 21:21 <DIR> d-------- C:\Program Files\Common Files\PCSuite 2008-05-15 21:21 . 2008-05-15 21:31 <DIR> d-------- C:\Program Files\Common Files\Nokia 2008-05-15 21:20 . 2008-05-15 21:32 <DIR> d----c--- C:\WINDOWS\system32\DRVSTORE 2008-05-15 21:20 . 2008-05-15 21:20 <DIR> d-------- C:\Program Files\PC Connectivity Solution 2008-05-15 21:20 . 2008-05-15 21:32 <DIR> d-------- C:\Program Files\Nokia 2008-05-15 21:20 . 2008-05-15 21:20 <DIR> d-------- C:\Program Files\DIFX 2008-05-15 21:20 . 2007-11-29 10:33 1,419,232 --a------ C:\WINDOWS\system32\wdfcoinstaller01005.dll 2008-05-15 21:20 . 2007-11-29 10:39 95,744 --a------ C:\WINDOWS\system32\nmwcdcocls.dll 2008-05-15 21:20 . 2008-02-01 15:17 90,624 --a------ C:\WINDOWS\system32\nmwcdcls.dll 2008-05-15 21:20 . 2007-09-17 15:53 21,632 --a------ C:\WINDOWS\system32\drivers\pccsmcfd.sys 2008-05-15 21:20 . 2007-11-29 10:39 19,328 --a------ C:\WINDOWS\system32\drivers\ccdcmbo.sys 2008-05-15 21:20 . 2007-11-29 10:39 16,896 --a------ C:\WINDOWS\system32\drivers\ccdcmb.sys 2008-05-15 21:20 . 2007-11-29 10:39 8,064 --a------ C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys 2008-05-15 21:20 . 2007-11-29 10:39 8,064 --a------ C:\WINDOWS\system32\drivers\usbser_lowerflt.sys 2008-05-13 19:21 . 2008-05-13 19:21 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Installations 2008-05-05 16:46 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll 2008-05-05 16:46 . 2007-07-30 19:18 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui 2008-05-03 23:26 . 2008-05-03 23:26 <DIR> d-------- C:\Program Files\Common Files\SWF Studio . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-06-03 18:51 --------- d-----w C:\Documents and Settings\Mariusz\Dane aplikacji\uTorrent 2008-05-27 18:52 --------- d-----w C:\Documents and Settings\Mariusz\Dane aplikacji\Skype 2008-05-27 18:50 --------- d-----w C:\Program Files\Skype 2008-05-27 18:50 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Skype 2008-05-15 07:54 --------- d-----w C:\Program Files\Ubisoft 2008-05-13 16:37 --------- d-----w C:\Program Files\totalcmd 2008-05-12 09:20 --------- d---a-w C:\Documents and Settings\All Users\Dane aplikacji\TEMP 2008-05-08 15:14 --------- d--h--w C:\Program Files\Valve 2008-05-06 07:07 --------- d-----w C:\Program Files\Tibia 2008-05-05 15:39 --------- d-----w C:\Documents and Settings\Mariusz\Dane aplikacji\Tibia 2008-05-04 19:49 278,984 ----a-w C:\WINDOWS\system32\drivers\atksgt.sys 2008-05-04 18:15 --------- d-----w C:\Program Files\Java 2008-05-02 06:56 --------- d-----w C:\Program Files\Winamp 2008-05-02 06:56 --------- d-----w C:\Documents and Settings\Mariusz\Dane aplikacji\Winamp 2008-05-01 21:50 --------- d-----w C:\Program Files\Kalendarz 2008-05-01 21:47 73,216 ----a-w C:\WINDOWS\ST6UNST.EXE 2008-05-01 21:47 249,856 ------w C:\WINDOWS\Setup1.exe 2008-04-15 18:01 --------- d-----w C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy 2008-03-25 04:52 621,344 ----a-w C:\WINDOWS\system32\mswstr10.dll 2008-03-25 04:52 178,976 ----a-w C:\WINDOWS\system32\msjint40.dll 2008-03-20 08:09 1,845,504 ----a-w C:\WINDOWS\system32\win32k.sys 2008-03-04 19:05 892,928 ----a-w C:\WINDOWS\system32\iconv.dll 2008-03-04 19:04 9,216 ----a-w C:\WINDOWS\system32\cpuinf32.dll 2008-03-04 19:04 524,288 ----a-w C:\WINDOWS\system32\DivXsm.exe 2008-03-04 19:04 391,168 ----a-w C:\WINDOWS\system32\i263_32.drv 2008-03-04 19:04 245,760 ----a-w C:\WINDOWS\system32\mplvpx.dll 2008-03-04 19:04 1,415,680 ----a-w C:\WINDOWS\system32\WMV9VCM.dll 2008-03-04 18:57 737,280 ----a-w C:\WINDOWS\iun6002.exe 2008-02-14 09:49 47,360 ----a-w C:\Documents and Settings\Mariusz\Dane aplikacji\pcouffin.sys . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2006-03-02 14:00 15360] "AlcoholAutomount"="C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" [2007-12-22 09:23 221568] "MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 18:24 1694208] "PC Suite Tray"="C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" [2008-04-16 12:53 1079808] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NVRTCLK"="C:\WINDOWS\system32\NVRTCLK\NVRTClk.exe" [2003-12-30 11:44 24576] "SoundMan"="SOUNDMAN.EXE" [2004-12-22 11:09 77824 C:\WINDOWS\SOUNDMAN.EXE] "diagnostics"="C:\Program Files/Thomson SpeedTouch/ST330/diagnostics/diagnostics.exe" [2008-02-12 23:30 557149] "Outpost Firewall"="C:\Program Files\Agnitum\Outpost Firewall\outpost.exe" [2006-03-30 11:51 91648] "OutpostFeedBack"="C:\Program Files\Agnitum\Outpost Firewall\feedback.exe" [2006-05-11 13:05 356420] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784] "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-05-16 01:19 79224] "RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2003-10-31 20:42 32768] "PVR Agent"="C:\Program Files\KWorld Multimedia\PVR Plus\TVR\Scheduled.exe" [2005-04-13 12:46 751104] "UMonit"="C:\WINDOWS\system32\umonit.exe" [2003-08-21 17:47 49152] "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 14:06 40048] C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\ Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE [2000-01-21 11:15:54 65588] Remote Control.lnk - C:\Program Files\KWorld Multimedia\PVR-TV 713X Utilities\P3XRCtl.exe [2008-02-13 22:39:02 57344] scvhost.exe [2007-11-08 16:46:42 503808] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=C:\PROGRA~1\Agnitum\OUTPOS~1\wl_hook.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "VIDC.I420"= i263_32.drv [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\Thomson SpeedTouch\\ST330\\WebInstaller\\STHIW\\stInstall.exe"= "C:\\Program Files\\Thomson SpeedTouch\\ST330\\service\\st330service.exe"= "C:\\Program Files\\uTorrent\\uTorrent.exe"= "C:\\Program Files\\Valve\\hl.exe"= "C:\\Program Files\\Gadu-Gadu\\gg.exe"= "C:\\Program Files\\Agnitum\\Outpost Firewall\\outpost.exe"= "C:\\Program Files\\Skype\\Phone\\Skype.exe"= R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 01:20] R1 VFILT;Outpost Firewall Kernel Driver;C:\Program Files\Agnitum\Outpost Firewall\kernel\FILTNT.SYS [2006-03-30 11:53] R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16] R3 Cap7134;Philips Cap7134 Capture;C:\WINDOWS\system32\DRIVERS\Cap7134.sys [2004-12-09 12:37] R3 fixustor;fixustor;C:\WINDOWS\system32\drivers\fixustor.sys [2003-08-21 17:49] R3 PhTVTune;Philips WDM TVTuner;C:\WINDOWS\system32\DRIVERS\PhTVTune.sys [2004-12-01 13:28] R3 ST330;ST330;C:\WINDOWS\system32\drivers\st330.sys [2008-02-12 23:09] R3 STBUS;STBUS;C:\WINDOWS\system32\drivers\stbus.sys [2008-02-12 23:09] R3 stppp;Speedtouch PPP Adapter Adapter;C:\WINDOWS\system32\DRIVERS\stppp.sys [2008-02-12 23:39] S3 ADBLOCK.DLL;Outpost Firewall PlugIn (ADBLOCK.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\ADBLOCK.DLL [2006-03-30 11:53] S3 ARP.DLL;Outpost Firewall PlugIn (ARP.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\ARP.DLL [2006-03-30 11:53] S3 CONTENT.DLL;Outpost Firewall PlugIn (CONTENT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\CONTENT.DLL [2006-03-30 11:53] S3 DNSCACHE.DLL;Outpost Firewall PlugIn (DNSCACHE.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\DNSCACHE.DLL [2006-03-30 11:53] S3 FTPFILT.DLL;Outpost Firewall PlugIn (FTPFILT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\FTPFILT.DLL [2006-03-30 11:53] S3 HTMLFILT.DLL;Outpost Firewall PlugIn (HTMLFILT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\HTMLFILT.DLL [2006-03-30 11:53] S3 HTTPFILT.DLL;Outpost Firewall PlugIn (HTTPFILT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\HTTPFILT.DLL [2006-03-30 11:53] S3 IMAPFILT.DLL;Outpost Firewall PlugIn (IMAPFILT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\IMAPFILT.DLL [2006-03-30 11:53] S3 MAILFILT.DLL;Outpost Firewall PlugIn (MAILFILT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\MAILFILT.DLL [2006-03-30 11:53] S3 NNTPFILT.DLL;Outpost Firewall PlugIn (NNTPFILT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\NNTPFILT.DLL [2006-03-30 11:53] S3 pccsmcfd;PCCS Mode Change Filter Driver;C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2007-09-17 15:53] S3 POP3FILT.DLL;Outpost Firewall PlugIn (POP3FILT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\POP3FILT.DLL [2006-03-30 11:53] S3 PROTECT.DLL;Outpost Firewall PlugIn (PROTECT.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\PROTECT.DLL [2006-03-30 11:53] S3 SECRET.DLL;Outpost Firewall PlugIn (SECRET.DLL);C:\Program Files\Agnitum\Outpost Firewall\kernel\SECRET.DLL [2006-03-30 11:53] S3 STETH;SpeedTouch Ethernet Adapter NT Driver;C:\WINDOWS\system32\DRIVERS\steth.sys [2008-02-12 23:09] S3 upperdev;upperdev;C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2007-11-29 10:39] S3 USBModem000;LGE Mobile USB Modem TC;C:\WINDOWS\system32\DRIVERS\usbser.sys [2004-08-04 00:08] S3 UsbserFilt;UsbserFilt;C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2007-11-29 10:39] *Newly Created Service* - CATCHME . ************************************************************************** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-06-03 21:48:02 Windows 5.1.2600 Dodatek Service Pack 2 NTFS scanning hidden processes ... scanning hidden autostart entries ... HKLM\Software\Microsoft\Windows\CurrentVersion\Run UMonit = C:\WINDOWS\system32\umonit.exe?4h?1?\???8???????h?1?8???p?1?B?US????8???UB????????????????????????????6~p???????????tq,?l??????|p??|????m??|??9~????????p?1?B$?|??7~??7~*?,?p?1???????????????????????????????7~????????????tq,?????T?????,?????tq,???????B???? scanning hidden files ... scan completed successfully hidden files: 0 ************************************************************************** [HKEY_LOCAL_MACHINE\system\ControlSet002\Services\st330service] "ImagePath"="C:\Program Files/Thomson SpeedTouch/ST330/service/st330service.exe -service" . Completion time: 2008-06-03 21:48:43 ComboFix-quarantined-files.txt 2008-06-03 19:48:39 Pre-Run: 25,183,076,352 bajtów wolnych Post-Run: 25,351,929,856 bajtów wolnych 168 --- E O F --- 2008-05-27 18:43:30 Download bez limitów a tu z hijaka Download: Rapidshare, Hotfile, Megaupload, Przeklej i Inne Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 13:38, on 2008-06-04 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Ahead\InCD\InCDsrv.exe C:\Program Files\Thomson SpeedTouch\ST330\service\st330service.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Agnitum\Outpost Firewall\outpost.exe C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Thomson SpeedTouch\ST330\diagnostics\diagnostics.exe C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe C:\Program Files\KWorld Multimedia\PVR Plus\TVR\Scheduled.exe C:\WINDOWS\system32\umonit.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe C:\Program Files\KWorld Multimedia\PVR-TV 713X Utilities\P3XRCtl.exe C:\Program Files\PC Connectivity Solution\ServiceLayer.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O1 - Hosts: 127.255.255.255 serial.alcohol-soft.com O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O4 - HKLM\..\Run: [NVRTCLK] C:\WINDOWS\system32\NVRTCLK\NVRTClk.exe O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [diagnostics] "C:\Program Files/Thomson SpeedTouch/ST330/diagnostics/diagnostics.exe" /icon -l:pl O4 - HKLM\..\Run: [Outpost Firewall] C:\Program Files\Agnitum\Outpost Firewall\outpost.exe /waitservice O4 - HKLM\..\Run: [OutpostFeedBack] C:\Program Files\Agnitum\Outpost Firewall\feedback.exe /dump:os_startup O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [PVR Agent] C:\Program Files\KWorld Multimedia\PVR Plus\TVR\Scheduled.exe O4 - HKLM\..\Run: [UMonit] C:\WINDOWS\system32\umonit.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" -onlytray O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O4 - Global Startup: Remote Control.lnk = C:\Program Files\KWorld Multimedia\PVR-TV 713X Utilities\P3XRCtl.exe O4 - Global Startup: scvhost.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1209928622171 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{FA90D885-50B8-406B-A13B-B4B150C63136}: NameServer = 213.241.79.37 83.238.255.76 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: InCD Helper (read only) (InCDsrvR) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Outpost Firewall Service (OutpostFirewall) - Agnitum Ltd. - C:\Program Files\Agnitum\Outpost Firewall\outpost.exe O23 - Service: PsExec (PSEXESVC) - Unknown owner - C:\WINDOWS\PSEXESVC.EXE (file missing) O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: SpeedTouch 330 Manager (st330service) - THOMSON Telecom Belgium - C:\Program Files/Thomson SpeedTouch/ST330/service/st330service.exe O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- End of file - 6985 bytes Download bez limitów Radzę najpierw pousuwać wszyściutko oprócz avasta czy innego antywirusa z komputera ;) Powinno szybciej chodzić i przy okazji naprawić problem ;) no wlasnie wszsytkiego usuwac nie chcem predzej zrobie formata ale do tego tez mi dlaeko jescsze sorry, chodzilo mi o wpisy w rejestrze (hklm\software\microsoft\windows\current version\run i to samo w hkcu) |