Skocz do zawartości


chunsoo19

Rejestracja: 04 lut 2008
OFFLINE Ostatnio: 13 04 2008 15:32
-----

Moje posty

W temacie: Logi - Wolna praca komputera

05 02 2008 - 11:05

Wykonałem to wszystko i teraz zamieszczam o logi które prosiłeś.


ComboFix 08-02.05.3 - Maciek 2008-02-05 10:08:35.1 - NTFSx86Running from: D:\Documents and Settings\Maciek\Pulpit\ComboFix.exe * Created a new restore point<strong class='bbc'>WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED Dołączona grafika</strong>.(((((((((((((((((((((((((((((((((((((((   Other Deletions   ))))))))))))))))))))))))))))))))))))))))))))))))).D:\Program Files\myglobalsearchD:\Program Files\myglobalsearch\bar\1.bin\M9FFXTBR.MANIFESTD:\Program Files\myglobalsearch\bar\1.bin\M9NTSTBR.MANIFESTD:\Program Files\myglobalsearch\bar\1.bin\M9PLUGIN.DLLD:\Program Files\myglobalsearch\bar\1.bin\MGSBAR.DLLD:\Program Files\myglobalsearch\bar\1.bin\NPMYGLSH.DLLD:\WINDOWS\system32\fdafebfd_r.dll.(((((((((((((((((((((((((   Files Created from 2008-01-05 to 2008-02-05  ))))))))))))))))))))))))))))))).2008-02-04 20:45 . 2008-02-04 20:45	<DIR>	d--------	D:\WINDOWS\system32\Kaspersky Lab2008-02-04 20:45 . 2008-02-04 20:45	<DIR>	d--------	D:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab2008-02-04 19:53 . 2008-02-04 19:53	<DIR>	d--------	D:\Program Files\Trend Micro2008-02-02 21:27 . 2008-02-02 21:27	<DIR>	d--------	D:\Documents and Settings\Maciek\Dane aplikacji\Media Player Classic2008-01-31 13:42 . 2008-01-31 13:42	<DIR>	d--------	D:\WINDOWS\nview2008-01-31 13:27 . 2008-01-31 13:42	<DIR>	d--------	D:\Program Files\GameSpy Arcade2008-01-31 03:02 . 2008-01-31 03:02	54,608	--a------	D:\WINDOWS\system32\xfcodec.dll2008-01-24 08:35 . 2007-07-30 19:19	38,232	--a------	D:\WINDOWS\system32\wucltui.dll.mui2008-01-24 08:35 . 2007-07-30 19:20	30,040	--a------	D:\WINDOWS\system32\wuaucpl.cpl.mui2008-01-24 08:35 . 2007-07-30 19:20	30,040	--a------	D:\WINDOWS\system32\wuapi.dll.mui2008-01-24 08:35 . 2007-07-30 19:18	21,336	--a------	D:\WINDOWS\system32\wuaueng.dll.mui2008-01-20 22:47 . 2008-01-21 15:47	<DIR>	d--------	D:\Program Files\SlySoft2008-01-20 22:47 . 2008-01-20 22:48	24	---hs----	D:\WINDOWS\S9A711D03.tmp2008-01-20 22:34 . 2008-01-20 22:34	<DIR>	d--h-c---	D:\WINDOWS\$MSI30UninstallMSI30-KB884016$2008-01-20 22:34 . 2001-10-26 18:29	2,044,928	--a------	D:\WINDOWS\system32\msi.dll2008-01-20 22:34 . 2001-10-26 18:28	847,872	--a------	D:\WINDOWS\system32\msimsg.dll2008-01-20 22:34 . 2001-10-26 18:29	304,640	--a------	D:\WINDOWS\system32\msihnd.dll2008-01-20 22:34 . 2001-10-26 18:29	63,488	--a------	D:\WINDOWS\system32\msiexec.exe2008-01-20 22:34 . 2001-10-26 18:28	39,936	--a------	D:\WINDOWS\system32\msisip.dll2008-01-17 11:57 . 2008-01-17 11:57	<DIR>	d--------	D:\Documents and Settings\Maciek\Dane aplikacji\gtk-2.02008-01-17 11:56 . 2008-01-17 11:56	<DIR>	d--------	D:\Documents and Settings\Maciek\.thumbnails2008-01-17 11:46 . 2008-01-24 15:42	<DIR>	d--------	D:\Documents and Settings\Maciek\.<a href="http://www.download.net.pl/354/GIMP/">gimp</a>-2.4.((((((((((((((((((((((((((((((((((((((((   Find3M Report   )))))))))))))))))))))))))))))))))))))))))))))))))))).2008-02-05 07:57	22,328	----a-w	D:\WINDOWS\system32\drivers\PnkBstrK.sys2008-02-05 07:56	107,832	----a-w	D:\WINDOWS\system32\PnkBstrB.exe2008-02-04 23:29	---------	d-----w	D:\Documents and Settings\Maciek\Dane aplikacji\Xfire2008-02-04 19:43	---------	d-----w	D:\Program Files\SkanerOnline2008-02-04 10:33	---------	d-----w	D:\Program Files\Lexmark X1100 Series2008-02-04 06:17	---------	d-----w	D:\Documents and Settings\Maciek\Dane aplikacji\OpenOffice.org22008-01-31 15:14	---------	d-----w	D:\Documents and Settings\Maciek\Dane aplikacji\teamspeak22008-01-31 12:42	---------	d--h--w	D:\Program Files\InstallShield Installation Information2008-01-09 06:59	---------	d-----w	D:\Program Files\Google2008-01-08 20:20	---------	d-----w	D:\Program Files\IrfanView2007-12-20 17:40	---------	d-----w	D:\Documents and Settings\Maciek\Dane aplikacji\Gadu-Gadu2007-12-20 17:32	---------	d-----w	D:\Program Files\Gadu-Gadu2007-12-19 21:51	---------	d-----w	D:\Program Files\Odkurzacz2007-12-06 12:34	---------	d-----w	D:\Program Files\WarRock2007-12-04 13:04	837,496	----a-w	D:\WINDOWS\system32\aswBoot.exe2007-12-04 12:54	95,608	----a-w	D:\WINDOWS\system32\AvastSS.scr2007-11-26 14:17	32	----a-w	D:\Documents and Settings\All Users\Dane aplikacji\ezsid.dat2007-10-16 08:37	500	----a-w	D:\Program Files\INSTALL.LOG1998-04-30 12:56	129,024	----a-w	D:\Program Files\UNWISE.EXE.(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))..*Note* empty entries & legit default entries are not shown REGEDIT4[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"CTFMON.EXE"="D:\WINDOWS\System32\ctfmon.exe" [2001-10-26 18:29 13312]"MSMSGS"="D:\Program Files\Messenger\msmsgs.exe" [2001-08-02 07:14 1077277]"SpybotSD TeaTimer"="E:\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46 1460560]"Gadu-Gadu"="D:\Program Files\Gadu-Gadu\gg.exe" [2007-11-14 11:54 2131392]"Gadwin PrintScreen 3.5"="D:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe" [2006-07-08 09:57 1101824][HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]"NvCplDaemon"="D:\WINDOWS\System32\NvCpl.dll" [2006-10-22 12:22 7700480]"nwiz"="nwiz.exe" [2006-10-22 12:22 1622016 D:\WINDOWS\system32\nwiz.exe]"Lexmark X1100 Series"="D:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe" [2003-08-19 16:09 57344]"SunJavaUpdateSched"="D:\Program Files\Java\jre1.5.0_10\bin\jusched.exe" [2006-11-09 15:07 49263]"IMJPMIG8.1"="D:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [2001-08-17 22:06 208949]"MSPY2002"="D:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe" [2001-08-17 22:08 77824]"PHIME2002ASync"="D:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.exe" [2001-08-17 22:12 737360]"PHIME2002A"="D:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.exe" [2001-08-17 22:12 737360]"NvMediaCenter"="D:\WINDOWS\System32\NvMcTray.dll" [2006-10-22 12:22 86016]"Cmaudio"="cmicnfg.cpl" []"avast!"="D:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]"MSConfig"="D:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe" [2001-10-26 18:29 146944]"NeroFilterCheck"="D:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]"CloneCDTray"="D:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" [ ][HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]"CTFMON.EXE"="D:\WINDOWS\System32\CTFMON.EXE" [2001-10-26 18:29 13312]D:\Documents and Settings\Maciek\Menu Start\Programy\Autostart\Xfire.lnk - C:\Program Files\Xfire\xfire.exe [2008-01-31 03:02:36 2880336][HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CloneCDTray]D:\Program Files\SlySoft\CloneCD\CloneCDTray.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gadwin PrintScreen 3.5]--a------ 2006-07-08 09:57 1101824 D:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]--a------ 2001-07-09 10:50 155648 D:\WINDOWS\system32\NeroCheck.exeS3 w300bus;Sony Ericsson W300 Driver driver (WDM)<img src='http://www.forum.tweaks.pl/public/style_emoticons/<#EMO_DIR#>/wink.png' class='bbc_emoticon' alt=';)' />:\WINDOWS\System32\DRIVERS\w300bus.sys [2006-03-13 16:49]S3 w300mdfl;Sony Ericsson W300 USB WMC Modem Filter;D:\WINDOWS\System32\DRIVERS\w300mdfl.sys [2006-03-13 16:50]S3 w300mdm;Sony Ericsson W300 USB WMC Modem Driver;D:\WINDOWS\System32\DRIVERS\w300mdm.sys [2006-03-13 16:50]S3 w300mgmt;Sony Ericsson W300 USB WMC Device Management Drivers (WDM)<img src='http://www.forum.tweaks.pl/public/style_emoticons/<#EMO_DIR#>/wink.png' class='bbc_emoticon' alt=';)' />:\WINDOWS\System32\DRIVERS\w300mgmt.sys [2006-03-13 16:50]S3 w300obex;Sony Ericsson W300 USB WMC OBEX Interface;D:\WINDOWS\System32\DRIVERS\w300obex.sys [2006-03-13 16:50].**************************************************************************catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [url="http://www.gmer.net"]http://www.gmer.net[/url]Rootkit scan 2008-02-05 10:10:35Windows 5.1.2600  NTFSscanning hidden processes ... scanning hidden autostart entries ...scanning hidden files ... scan completed successfully hidden files: 0 **************************************************************************.Completion time: 2008-02-05 10:11:45ComboFix-quarantined-files.txt  2008-02-05 09:11:30.2007-12-27 13:18:22	--- E O F ---