Wolne otwieranie stron/buforowanie filmów

Wszystko co dotyczy bezpieczeństwa systemów oraz walki z malware, w szczególności analiza logów
fluber

Użytkownik
Posty: 327
Rejestracja: 07 sty 2010, 11:00

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 08:09

Witam,
Ostatnimi czasy bardzo wolno buforuje mi filmy. Wcześniej nie musiałem czekać aż film się zbuforuje tylko po prostu włączałem (oglądanie online) i oglądałem. Obecnie musiałbym czekać 3-4 h aż film się zbuforuje aby oglądać go bez problemów.

Pokazują się także:
Obrazek



Chyba coś się popsuło w plikach systemowych, jestem laikiem więc proszę prosto jak krowie na granicy.
Dziękuję za wszelką pomoc.
Ostatnio zmieniony 02 kwie 2011, 13:42 przez XMan, łącznie zmieniany 1 raz.
Powód: przeniosłem temat z działu Problemy --> Bezpieczeństwo

Awatar użytkownika
cosik_ktosik

Administrator
Posty: 21416
Rejestracja: 13 lis 2008, 01:17
Lokalizacja: Szczecin
Kontaktowanie:

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 11:28

Witam

Najpierw poradziłbym zobaczyć co da zmiana adresów DNS na inne, alternatywne, np OpenDNS lub DNSy Google.

Ponadto przeinstaluj takie elementy jak Flash Player czy Java.
Hotfix
Pozdrawiam, cosik_ktosik :)

fluber

Użytkownik
Posty: 327
Rejestracja: 07 sty 2010, 11:00

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 11:40

Poproszę jeszcze raz "Najpierw poradziłbym zobaczyć co da zmiana adresów DNS na inne, alternatywne, np OpenDNS lub DNSy Google. " innym językiem :D

Flash player dzisiaj jakiegoś nowego zainstalowałem.
Problem występuje tylko poprzez przeglądarki internetowe oraz komunikatory (gg/tlen). Gry/programy inne - działają bez zarzutu.

Awatar użytkownika
XMan

Globalny Moderator
Posty: 13385
Rejestracja: 30 lis 2008, 00:40

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:00

DNS-y --> Protokół internetowy (TCP/IP) wpisujesz

Open
208.67.222.222
208.67.220.220
-------------------
lub TP.SA.
194.204.159.1
194.204.152.34
-------------------
lub Google
8.8.8.8
8.8.4.4
-------------------

kliknij aby powiększyć :
Dostępne tylko dla zarejestrowanych użytkowników
http://www.hotfix.pl/niektore-strony-in ... e-a109.htm
Jakimi programami czyścisz komputer ?
Może zaśmiecony ?

Przeczytaj tematy :
sterowniki/dlugie-ladowanie-windows-a-t1106.html
http://www.hotfix.pl/zmniejszanie-pingu ... a-a153.htm
Limit przepustowości (%) wpisujemy wartość 0
Kto pyta - nie błądzi, kto szuka - znajduje.
Obrazek
Dostępne tylko dla zarejestrowanych użytkowników

fluber

Użytkownik
Posty: 327
Rejestracja: 07 sty 2010, 11:00

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:12

Obrazek

Nie czyszcze komputera żadnymi programami :D

Wykonałem punkt 1.
Pomyślnie wyczyszczono pamięć podręczną.

Mam dobry ping, speedtest pokazuje prędkość taką jaką powinienem mieć.
Strony się po prostu wolniej otwierają, a buforowanie jest tragiczne filmów...

Niestety nie mogę zrobić reinstall windowsa ponieważ nie posiadam aktualnie płyty z żadnym win/linux etc...
Ostatnio zmieniony 02 kwie 2011, 12:13 przez fluber, łącznie zmieniany 1 raz.

Awatar użytkownika
XMan

Globalny Moderator
Posty: 13385
Rejestracja: 30 lis 2008, 00:40

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:13

A jak miałeś przedtem podłączone ?
Zobacz Uzyskaj adres IP automatycznie :

Dostępne tylko dla zarejestrowanych użytkowników
Kto pyta - nie błądzi, kto szuka - znajduje.
Obrazek
Dostępne tylko dla zarejestrowanych użytkowników

fluber

Użytkownik
Posty: 327
Rejestracja: 07 sty 2010, 11:00

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:17

Mam radiówkę w częstochowie która zazwyczaj dobrze się sprawuje. (o ile to ważne jaki mam internet)

Nie miałem tam nic wpisane.

-- 02 kwi 2011, 11:17 --

XMan pisze:A jak miałeś przedtem podłączone ?
Zobacz Uzyskaj adres IP automatycznie :

Dostępne tylko dla zarejestrowanych użytkowników


To podziałało ale nic się nie zmieniło z prędkością buforowania.

Awatar użytkownika
XMan

Globalny Moderator
Posty: 13385
Rejestracja: 30 lis 2008, 00:40

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:18

Również mam radiówkę.
Nie czyszcze komputera żadnymi programami :D

- to bardzo źle :(
Przeczyść CCleanerem oraz Eusing Free Registre Cleanerem.
O p/w programach w tym temacie :
sterowniki/dlugie-ladowanie-windows-a-t1106.html
+ reszta z tematu.
Kto pyta - nie błądzi, kto szuka - znajduje.
Obrazek
Dostępne tylko dla zarejestrowanych użytkowników

fluber

Użytkownik
Posty: 327
Rejestracja: 07 sty 2010, 11:00

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:19

Kiedy włączam gg pojawia się około 8-12 okienek tego typu:
Obrazek

Awatar użytkownika
djkamil09061991

Globalny Moderator
Posty: 8250
Rejestracja: 18 lut 2009, 11:54
Lokalizacja: Wrocław
Kontaktowanie:

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:22


fluber

Użytkownik
Posty: 327
Rejestracja: 07 sty 2010, 11:00

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:30

Dostępne tylko dla zarejestrowanych użytkowników
Dostępne tylko dla zarejestrowanych użytkowników

-- 02 kwi 2011, 11:28 --

Obrazek

-- 02 kwi 2011, 11:30 --

Kod: Zaznacz cały

OTL logfile created on: 2011-04-02 12:28:30 - Run 1
OTL by OldTimer - Version 3.2.22.3     Folder = H:\Pacze 3.2.0 do max
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 51,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 83,00% Paging File free
Paging file location(s): [Binary data over 100 bytes]
 
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 19,52 Gb Total Space | 0,44 Gb Free Space | 2,25% Space Free | Partition Type: FAT32
Drive D: | 24,41 Gb Total Space | 5,39 Gb Free Space | 22,08% Space Free | Partition Type: NTFS
Drive E: | 24,41 Gb Total Space | 3,42 Gb Free Space | 14,00% Space Free | Partition Type: NTFS
Drive F: | 24,41 Gb Total Space | 0,86 Gb Free Space | 3,53% Space Free | Partition Type: NTFS
Drive G: | 24,41 Gb Total Space | 6,95 Gb Free Space | 28,46% Space Free | Partition Type: NTFS
Drive H: | 31,85 Gb Total Space | 20,71 Gb Free Space | 65,03% Space Free | Partition Type: NTFS
 
Computer Name: MICHAŁ | User Name: hello | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
PRC - [2011-04-02 12:27:03 | 000,580,608 | ---- | M] (OldTimer Tools) -- H:\Pacze 3.2.0 do max\OTL.exe
PRC - [2011-03-24 13:59:40 | 000,016,856 | ---- | M] (Mozilla Corporation) -- D:\Programy\firefox\plugin-container.exe
PRC - [2011-03-24 13:59:39 | 000,912,344 | ---- | M] (Mozilla Corporation) -- D:\Programy\firefox\firefox.exe
PRC - [2011-03-11 15:44:18 | 000,396,152 | ---- | M] (BitTorrent, Inc.) -- E:\BC\uTorrent.exe
PRC - [2010-09-19 22:30:53 | 008,272,528 | ---- | M] (Blizzard Entertainment) -- D:\World of Warcraft\Wow.exe
PRC - [2009-12-17 09:42:40 | 000,345,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mspaint.exe
PRC - [2008-12-10 11:02:30 | 000,216,520 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\daemon.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-03-20 12:04:46 | 002,127,296 | ---- | M] (Gadu-Gadu S.A.) -- E:\Gadu-Gadu\gg.exe
PRC - [2003-12-22 17:36:14 | 000,581,632 | ---- | M] () -- G:\Programy\vento\Ventrilo Mix\data\Programs\Ventrilo 2.1.4.exe
 
 
[color=#E56717]========== Modules (SafeList) ==========[/color]
 
MOD - [2011-04-02 12:27:03 | 000,580,608 | ---- | M] (OldTimer Tools) -- H:\Pacze 3.2.0 do max\OTL.exe
MOD - [2011-04-02 05:01:14 | 000,130,560 | RHS- | M] () -- C:\WINDOWS\system32\arking1.dll
MOD - [2011-04-02 04:59:52 | 000,113,664 | RHS- | M] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Temp\apiqq0.dll
MOD - [2011-04-02 04:59:50 | 000,127,488 | ---- | M] () -- C:\WINDOWS\system32\arking0.dll
MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
MOD - [2006-12-21 14:30:44 | 000,102,400 | ---- | M] (Gadu-Gadu S.A.) -- E:\Gadu-Gadu\ggwhook.dll
 
 
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
 
SRV - File not found [Disabled | Stopped] --  -- (HidServ)
SRV - [2010-01-15 13:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV - [2010-04-25 10:43:34 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-04-12 11:59:44 | 000,015,600 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2008-04-14 00:26:08 | 000,088,320 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2007-07-18 12:26:04 | 004,547,584 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006-12-14 10:44:06 | 000,085,120 | R--- | M] (Realtek Semiconductor Corporation                           ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp)
DRV - [2006-11-27 10:33:54 | 000,019,968 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2006-11-27 10:33:50 | 000,058,368 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2006-10-18 10:31:38 | 000,105,472 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvata.sys -- (nvata)
DRV - [2001-08-17 21:54:18 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2001-08-17 21:54:18 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-21-448539723-1417001333-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKU\S-1-5-21-448539723-1417001333-839522115-1003\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-448539723-1417001333-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
[color=#E56717]========== FireFox ==========[/color]
 
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.update: false
FF - prefs.js..extensions.enabledItems: radiobar@toolbar:1.0.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2
FF - prefs.js..network.proxy.backup.ftp: "94.228.201.89"
FF - prefs.js..network.proxy.backup.ftp_port: 8080
FF - prefs.js..network.proxy.backup.gopher: "94.228.201.89"
FF - prefs.js..network.proxy.backup.gopher_port: 8080
FF - prefs.js..network.proxy.backup.socks: "94.228.201.89"
FF - prefs.js..network.proxy.backup.socks_port: 8080
FF - prefs.js..network.proxy.backup.ssl: "94.228.201.89"
FF - prefs.js..network.proxy.backup.ssl_port: 8080
FF - prefs.js..network.proxy.ftp: "94.228.201.89"
FF - prefs.js..network.proxy.ftp_port: 8080
FF - prefs.js..network.proxy.gopher: "94.228.201.89"
FF - prefs.js..network.proxy.gopher_port: 8080
FF - prefs.js..network.proxy.http: "94.228.201.89"
FF - prefs.js..network.proxy.http_port: 8080
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.socks: "94.228.201.89"
FF - prefs.js..network.proxy.socks_port: 8080
FF - prefs.js..network.proxy.ssl: "94.228.201.89"
FF - prefs.js..network.proxy.ssl_port: 8080
FF - prefs.js..network.proxy.type: 0
 
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: D:\Programy\firefox\components [2011-03-24 13:59:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: D:\Programy\firefox\plugins [2011-03-24 13:59:43 | 000,000,000 | ---D | M]
 
[2010-03-03 20:55:30 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Extensions
[2010-03-03 20:55:30 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions
[2011-03-11 14:47:52 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
[2010-08-08 16:02:56 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2011-03-11 14:47:52 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions\engine@conduit.com
[2010-09-10 00:16:46 | 000,000,000 | ---D | M] (RadioBar Toolbar) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions\radiobar@toolbar
[2010-04-25 10:44:50 | 000,000,523 | ---- | M] () -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\searchplugins\daemon-search.xml
[2010-05-23 18:09:04 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010-02-22 21:10:56 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
[2010-05-23 18:09:07 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
 
O1 HOSTS File: ([2001-10-26 15:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O2 - BHO: (Yahoo! Companion BHO) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll (Yahoo! Inc.)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.27.dll (BitComet)
O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (&Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll (Yahoo! Inc.)
O3 - HKU\S-1-5-21-448539723-1417001333-839522115-1003\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-448539723-1417001333-839522115-1003\..\Toolbar\WebBrowser: (uTorrentBar Toolbar) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-448539723-1417001333-839522115-1003\..\Toolbar\WebBrowser: (&Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [api32] C:\Documents and Settings\hello\Ustawienia lokalne\Temp\apiqq.exe ()
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [dso32] C:\Documents and Settings\hello\Ustawienia lokalne\Temp\dsoqq.exe ()
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [King_ar] C:\WINDOWS\system32\arking.exe ()
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [uTorrent] E:\BC\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-448539723-1417001333-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Pobierz wszystkie VIdeo za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.27.dll (BitComet)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.23.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-03-03 20:45:52 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O32 - AutoRun File - [2011-04-01 09:15:18 | 000,000,061 | RHS- | M] () - C:\autorun.inf -- [ FAT32 ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - E:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - F:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - G:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - H:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{02f2aca6-6e5e-11df-9cd4-001d7dbea961}\Shell\AutoRun\command - "" = K:\hjvjte.exe
O33 - MountPoints2\{02f2aca6-6e5e-11df-9cd4-001d7dbea961}\Shell\open\Command - "" = K:\hjvjte.exe
O33 - MountPoints2\{232cec6f-2702-11df-904c-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{232cec6f-2702-11df-904c-806d6172696f}\Shell\AutoRun\command - "" = I:\Run.exe
O33 - MountPoints2\{79874310-5f34-11df-9caf-001d7dbea961}\Shell\AutoRun\command - "" = M:\biriprg.exe
O33 - MountPoints2\{79874310-5f34-11df-9caf-001d7dbea961}\Shell\open\Command - "" = M:\biriprg.exe
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2011-04-02 12:24:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Menu Start\Programy\Free Registry Cleaner
[2011-04-02 12:24:55 | 000,000,000 | ---D | C] -- C:\czyszczenie
[2011-04-02 12:22:36 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\hello\Recent
[2011-03-31 04:03:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Pulpit\Vid
[2011-03-31 03:55:53 | 000,000,000 | ---D | C] -- C:\Program Files\Game Cam V2
[2011-03-31 03:49:33 | 000,000,000 | R--D | C] -- C:\Documents and Settings\hello\Moje dokumenty\Moje wideo
[2011-03-31 03:49:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\gctmp
[2011-03-30 15:34:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Pulpit\zzzzzzzzzzzzzzzzzz
[2011-03-27 00:15:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Dane aplikacji\RegistryKeys
[2011-03-26 16:36:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Pulpit\ss bw
[2011-03-17 10:57:46 | 000,000,000 | -HSD | C] -- C:\FOUND.020
[2011-03-12 12:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Dane aplikacji\TS3Client
[2011-03-12 12:58:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\TeamSpeak 3 Client
[2011-03-11 14:47:57 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2011-03-11 14:47:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\Conduit
[2011-03-11 14:47:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\uTorrentBar
[2011-03-11 14:47:55 | 000,000,000 | ---D | C] -- C:\Program Files\ConduitEngine
[2011-03-11 14:47:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\ConduitEngine
[2011-03-11 14:47:52 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrentBar
[2011-03-11 14:47:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\Temp
[2011-03-11 14:43:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Dane aplikacji\uTorrent
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2011-04-02 12:27:38 | 004,980,736 | -H-- | M] () -- C:\Documents and Settings\hello\NTUSER.DAT
[2011-04-02 12:27:18 | 000,057,689 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\cc3.JPG
[2011-04-02 12:24:58 | 000,000,618 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\Eusing Free Registry Cleaner.lnk
[2011-04-02 12:24:22 | 000,055,857 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\cc2.JPG
[2011-04-02 12:23:24 | 000,074,840 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\cc1.JPG
[2011-04-02 12:19:02 | 000,026,786 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\gga.JPG
[2011-04-02 12:08:02 | 000,044,500 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\11111.JPG
[2011-04-02 08:05:36 | 000,027,474 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\filmy.JPG
[2011-04-02 05:01:14 | 000,199,168 | RHS- | M] () -- C:\WINDOWS\System32\arking.exe
[2011-04-02 05:01:14 | 000,130,560 | RHS- | M] () -- C:\WINDOWS\System32\arking1.dll
[2011-04-02 05:00:16 | 000,000,260 | ---- | M] () -- C:\WINDOWS\tasks\WGASetup.job
[2011-04-02 04:59:50 | 000,127,488 | ---- | M] () -- C:\WINDOWS\System32\arking0.dll
[2011-04-02 04:59:38 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2011-04-02 04:59:36 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-04-01 09:15:18 | 000,000,061 | RHS- | M] () -- C:\autorun.inf
[2011-03-31 20:57:58 | 000,007,188 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\ugo.JPG
[2011-03-31 04:06:18 | 000,020,480 | ---- | M] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-03-31 03:55:54 | 000,000,612 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\Game Cam V2.lnk
[2011-03-31 02:04:12 | 000,005,032 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\pole.JPG
[2011-03-31 02:00:34 | 000,042,468 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\HANDEL.JPG
[2011-03-30 03:23:14 | 000,062,897 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\xyy.JPG
[2011-03-29 13:08:46 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-03-27 09:19:58 | 000,118,152 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-03-27 05:04:16 | 000,036,011 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\platne.JPG
[2011-03-27 04:46:16 | 000,048,254 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\dotacje.JPG
[2011-03-25 16:46:06 | 000,156,960 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\2nw.JPG
[2011-03-25 16:45:54 | 000,156,708 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\1nw.JPG
[2011-03-19 21:01:44 | 000,011,784 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\lukasv.JPG
[2011-03-16 12:35:50 | 000,234,481 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\binds.jpg
[2011-03-13 14:14:06 | 000,000,490 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\hg.lnk
[2011-03-13 11:55:22 | 000,006,041 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\Liszking.JPG
[2011-03-12 12:59:02 | 000,001,132 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\TeamSpeak 3 Client.lnk
[2011-03-12 11:18:26 | 000,000,547 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\pre.lnk
[2011-03-12 10:55:18 | 000,006,036 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\paczwerk.JPG
[2011-03-12 00:25:58 | 000,076,173 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\balance.JPG
[2011-03-12 00:05:00 | 004,314,012 | -H-- | M] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2011-03-11 14:44:20 | 000,000,420 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\?Torrent.lnk
[2011-03-10 09:16:02 | 000,127,488 | RHS- | M] () -- C:\WINDOWS\System32\arking2.dll
[2011-03-09 11:17:04 | 000,002,473 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\flambi.PNG
[2011-03-09 10:39:04 | 000,166,298 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\w3.jpg
[2011-03-09 10:38:56 | 000,207,875 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\w2.jpg
[2011-03-09 10:38:42 | 000,224,206 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\w1.jpg
[2011-03-07 07:17:52 | 000,027,293 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\1.PNG
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2011-04-02 12:27:16 | 000,057,689 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\cc3.JPG
[2011-04-02 12:24:57 | 000,000,618 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\Eusing Free Registry Cleaner.lnk
[2011-04-02 12:24:21 | 000,055,857 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\cc2.JPG
[2011-04-02 12:23:04 | 000,074,840 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\cc1.JPG
[2011-04-02 12:19:00 | 000,026,786 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\gga.JPG
[2011-04-02 12:07:59 | 000,044,500 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\11111.JPG
[2011-04-02 08:05:35 | 000,027,474 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\filmy.JPG
[2011-03-31 20:57:56 | 000,007,188 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\ugo.JPG
[2011-03-31 02:04:11 | 000,005,032 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\pole.JPG
[2011-03-31 02:00:33 | 000,042,468 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\HANDEL.JPG
[2011-03-30 03:23:12 | 000,062,897 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\xyy.JPG
[2011-03-27 05:04:15 | 000,036,011 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\platne.JPG
[2011-03-27 04:46:14 | 000,048,254 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\dotacje.JPG
[2011-03-25 16:46:05 | 000,156,960 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\2nw.JPG
[2011-03-25 16:45:52 | 000,156,708 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\1nw.JPG
[2011-03-19 21:01:43 | 000,011,784 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\lukasv.JPG
[2011-03-16 12:42:33 | 000,234,481 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\binds.jpg
[2011-03-13 11:55:20 | 000,006,041 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\Liszking.JPG
[2011-03-12 12:59:00 | 000,001,132 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\TeamSpeak 3 Client.lnk
[2011-03-12 11:18:24 | 000,000,547 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\pre.lnk
[2011-03-12 10:55:15 | 000,006,036 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\paczwerk.JPG
[2011-03-12 00:25:57 | 000,076,173 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\balance.JPG
[2011-03-11 14:44:18 | 000,000,420 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\?Torrent.lnk
[2011-03-09 11:14:04 | 000,002,473 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\flambi.PNG
[2011-03-09 10:39:03 | 000,166,298 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\w3.jpg
[2011-03-09 10:38:55 | 000,207,875 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\w2.jpg
[2011-03-09 10:38:41 | 000,224,206 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\w1.jpg
[2011-03-07 07:17:50 | 000,027,293 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\1.PNG
[2011-01-19 07:33:46 | 000,127,488 | RHS- | C] () -- C:\WINDOWS\System32\arking2.dll
[2010-12-06 23:24:45 | 000,130,560 | RHS- | C] () -- C:\WINDOWS\System32\arking1.dll
[2010-12-06 16:25:24 | 000,199,168 | RHS- | C] () -- C:\WINDOWS\System32\arking.exe
[2010-12-06 16:25:24 | 000,127,488 | ---- | C] () -- C:\WINDOWS\System32\arking0.dll
[2010-09-13 03:21:24 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2010-05-21 16:14:15 | 000,079,094 | ---- | C] () -- C:\WINDOWS\War3Unin.dat
[2010-05-10 21:28:38 | 000,020,480 | ---- | C] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-04-25 10:43:32 | 000,717,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-04-13 20:45:02 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2010-04-12 12:08:44 | 000,001,732 | ---- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
[2010-04-10 14:00:23 | 000,065,336 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2010-03-20 15:10:59 | 000,141,025 | ---- | C] () -- C:\WINDOWS\hpoins27.dat
[2010-03-20 15:10:59 | 000,000,932 | ---- | C] () -- C:\WINDOWS\hpomdl27.dat
[2010-03-03 22:45:00 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010-03-03 22:44:28 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll
[2010-03-03 22:44:28 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll
[2010-03-03 22:44:28 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll
[2010-03-03 21:15:35 | 000,018,464 | ---- | C] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-03-03 20:55:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-03-03 20:53:32 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-03-03 20:50:40 | 004,314,012 | -H-- | C] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-03-03 20:47:14 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-03-03 20:45:50 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini
[2010-03-03 20:45:12 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-03-03 20:45:08 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-03-03 20:43:49 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-03-03 20:43:48 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini
[2010-03-03 20:43:48 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini
[2010-03-03 20:43:25 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini
[2010-03-03 20:43:24 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini
[2010-03-03 20:31:32 | 001,087,000 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-03-03 20:31:31 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010-03-03 20:30:20 | 000,118,152 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2007-09-16 19:07:00 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2007-09-16 19:07:00 | 001,626,112 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2007-09-16 19:07:00 | 001,478,656 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2007-09-16 19:07:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2007-09-16 19:07:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2007-09-16 19:07:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2007-09-16 19:07:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2007-09-16 19:07:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2007-09-16 19:07:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2006-12-31 07:57:08 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2002-09-20 16:19:46 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2002-09-20 16:04:42 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll
[2002-09-20 16:04:28 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll
[2002-09-20 16:03:48 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll
[2002-09-20 16:03:38 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatUI.dll
[2002-08-28 19:24:20 | 000,003,346 | ---- | C] () -- C:\WINDOWS\System32\redir.exe
[2002-08-28 19:23:06 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys
[2002-08-28 19:22:36 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys
[2001-10-26 17:29:54 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe
[2001-10-26 17:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll
[2001-10-26 17:29:40 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\scriptpw.dll
[2001-10-26 17:29:32 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll
[2001-10-26 17:28:34 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll
[2001-10-26 17:27:02 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll
[2001-10-26 16:15:16 | 000,490,808 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat
[2001-10-26 16:15:16 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat
[2001-10-26 16:15:16 | 000,083,988 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat
[2001-10-26 16:15:16 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat
[2001-10-26 16:15:10 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\vwipxspx.exe
[2001-10-26 16:15:08 | 000,011,859 | ---- | C] () -- C:\WINDOWS\System32\setver.exe
[2001-10-26 16:15:08 | 000,003,260 | ---- | C] () -- C:\WINDOWS\System32\nw16.exe
[2001-10-26 16:15:04 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys
[2001-10-26 16:14:58 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe
[2001-10-26 16:14:56 | 000,039,434 | ---- | C] () -- C:\WINDOWS\System32\mem.exe
[2001-10-26 16:14:54 | 000,014,913 | ---- | C] () -- C:\WINDOWS\System32\kb16.com
[2001-10-26 16:14:54 | 000,001,168 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com
[2001-10-26 16:14:52 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys
[2001-10-26 16:14:50 | 000,019,806 | ---- | C] () -- C:\WINDOWS\System32\graphics.com
[2001-10-26 16:14:48 | 000,008,520 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe
[2001-10-26 16:14:46 | 000,012,866 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe
[2001-10-26 16:14:44 | 000,053,920 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe
[2001-10-26 16:14:42 | 000,020,986 | ---- | C] () -- C:\WINDOWS\System32\debug.exe
[2001-10-26 16:14:38 | 000,051,823 | ---- | C] () -- C:\WINDOWS\System32\command.com
[2001-10-26 16:14:34 | 000,012,594 | ---- | C] () -- C:\WINDOWS\System32\append.exe
[2001-10-26 16:14:32 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys
[2001-10-26 16:12:52 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini
[2001-10-26 15:45:26 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini
[2001-10-26 15:45:26 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini
[2001-10-26 15:45:24 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini
[2001-10-26 15:45:10 | 000,070,622 | ---- | C] () -- C:\WINDOWS\System32\edit.com
[2001-10-26 15:42:08 | 000,020,629 | ---- | C] () -- C:\WINDOWS\System32\mqperf.ini
[2001-10-26 15:42:08 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini
[2001-10-26 15:42:08 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini
[2001-10-26 15:42:08 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini
[2001-08-23 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2001-08-23 13:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2001-08-17 21:35:10 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe
[2001-08-17 21:32:34 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe
[2001-08-17 21:32:34 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe
[2001-08-17 21:31:56 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys
[2001-08-17 21:31:56 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys
[2001-08-17 21:31:50 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys
[2001-08-17 21:31:46 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys
[2001-08-17 21:31:46 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys
[2001-08-17 21:31:44 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys
[2001-08-17 21:31:38 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys
[2001-08-17 21:31:38 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys
[2001-08-17 21:31:36 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys
[2001-08-17 21:31:36 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys
[2001-08-17 21:30:24 | 000,432,856 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2001-08-17 21:30:24 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2001-08-17 21:30:24 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2001-08-17 21:30:22 | 000,067,560 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2001-08-17 21:15:38 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2001-08-17 21:13:24 | 000,002,656 | ---- | C] () -- C:\WINDOWS\System32\netware.drv
[2001-08-17 19:55:06 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini
[2001-07-22 03:43:48 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini
[2001-07-22 02:25:18 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini
[2001-07-21 22:36:48 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2001-07-21 22:36:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2001-07-21 22:24:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2001-07-21 22:16:20 | 000,000,487 | ---- | C] () -- C:\WINDOWS\win.ini
[2001-07-21 22:15:52 | 000,000,227 | ---- | C] () -- C:\WINDOWS\system.ini
[2001-07-21 22:15:50 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll
 
[color=#E56717]========== LOP Check ==========[/color]
 
[2010-03-05 09:31:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl
[2010-03-17 16:53:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-06-10 16:37:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PMB Files
[2010-06-25 20:12:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2010-03-03 23:11:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\Gadu-Gadu
[2010-03-21 11:31:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\gtk-2.0
[2010-04-02 00:55:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\BitComet
[2010-04-25 10:43:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\DAEMON Tools Lite
[2010-04-25 10:46:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\DAEMON Tools Pro
[2010-04-25 10:46:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\DAEMON Tools
[2010-05-13 14:21:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\GameRanger
[2010-05-17 20:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\StealthBot
[2010-06-08 20:27:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\OpenOfficeT72
[2010-06-08 20:28:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\MfcEmbed
[2010-06-15 10:52:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\LolClient
[2010-06-25 20:12:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\ipla
[2010-12-03 15:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\ImgBurn
[2010-12-21 17:28:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\GetRightToGo
[2011-03-11 14:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\uTorrent
[2011-03-12 12:59:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\TS3Client
[2011-03-27 00:15:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\RegistryKeys
[2011-02-26 15:36:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gość\Dane aplikacji\Gadu-Gadu
[2011-03-21 13:20:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gość\Dane aplikacji\OpenOfficeT72
[2011-04-02 05:00:16 | 000,000,260 | ---- | M] () -- C:\WINDOWS\Tasks\WGASetup.job
 
[color=#E56717]========== Purity Check ==========[/color]
 
 

< End of report >

Awatar użytkownika
djkamil09061991

Globalny Moderator
Posty: 8250
Rejestracja: 18 lut 2009, 11:54
Lokalizacja: Wrocław
Kontaktowanie:

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:36

Masz syf :/Odinstaluj poprzez dodaj usuń programy Conduit Engine oraz DAEMON Tools Toolbar następnie wklej w białe okienko OTL i naciśnij wykonaj skrypt:
:OTL
MOD - [2011-04-02 05:01:14 | 000,130,560 | RHS- | M] () -- C:\WINDOWS\system32\arking1.dll
MOD - [2011-04-02 04:59:52 | 000,113,664 | RHS- | M] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Temp\apiqq0.dll
MOD - [2011-04-02 04:59:50 | 000,127,488 | ---- | M] () -- C:\WINDOWS\system32\arking0.dll
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.27.dll (BitComet)
O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (&Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll (Yahoo! Inc.)
O3 - HKU\S-1-5-21-448539723-1417001333-839522115-1003\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-448539723-1417001333-839522115-1003\..\Toolbar\WebBrowser: (uTorrentBar Toolbar) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - C:\Program Files\uTorrentBar\tbuTor.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-448539723-1417001333-839522115-1003\..\Toolbar\WebBrowser: (&Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll (Yahoo! Inc.)
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [api32] C:\Documents and Settings\hello\Ustawienia lokalne\Temp\apiqq.exe ()
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [dso32] C:\Documents and Settings\hello\Ustawienia lokalne\Temp\dsoqq.exe ()
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [King_ar] C:\WINDOWS\system32\arking.exe ()
O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} Dostępne tylko dla zarejestrowanych użytkowników (Reg Error: Key error.)
O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O32 - AutoRun File - [2011-04-01 09:15:18 | 000,000,061 | RHS- | M] () - C:\autorun.inf -- [ FAT32 ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - E:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - F:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - G:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-02-19 16:49:12 | 000,000,061 | RHS- | M] () - H:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{02f2aca6-6e5e-11df-9cd4-001d7dbea961}\Shell\AutoRun\command - "" = K:\hjvjte.exe
O33 - MountPoints2\{02f2aca6-6e5e-11df-9cd4-001d7dbea961}\Shell\open\Command - "" = K:\hjvjte.exe
O33 - MountPoints2\{232cec6f-2702-11df-904c-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{232cec6f-2702-11df-904c-806d6172696f}\Shell\AutoRun\command - "" = I:\Run.exe
O33 - MountPoints2\{79874310-5f34-11df-9caf-001d7dbea961}\Shell\AutoRun\command - "" = M:\biriprg.exe
O33 - MountPoints2\{79874310-5f34-11df-9caf-001d7dbea961}\Shell\open\Command - "" = M:\biriprg.exe
[2011-03-17 10:57:46 | 000,000,000 | -HSD | C] -- C:\FOUND.020
[2011-04-02 05:01:14 | 000,199,168 | RHS- | M] () -- C:\WINDOWS\System32\arking.exe
[2011-04-02 05:01:14 | 000,130,560 | RHS- | M] () -- C:\WINDOWS\System32\arking1.dll
[2011-04-02 04:59:50 | 000,127,488 | ---- | M] () -- C:\WINDOWS\System32\arking0.dll
[2011-01-19 07:33:46 | 000,127,488 | RHS- | C] () -- C:\WINDOWS\System32\arking2.dll

:Reg
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]

:Commands
[emptytemp]


dajesz log z usuwania i nowe logi z OTL , dodatkowo z podłączonymi urządzeniami przenośnymi zaprezentuj log z USBFix z opcji deletion:
Dostępne tylko dla zarejestrowanych użytkowników

fluber

Użytkownik
Posty: 327
Rejestracja: 07 sty 2010, 11:00

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:44

Nie wiem co wy robicie z moim komputerem ale boje sie ze zaraz wybuchnie :D
dodatkowo z podłączonymi urządzeniami przenośnymi zaprezentuj log z USBFix z opcji deletion:

Jakimi urzadzeniami ?
Mam podlaczyc telefon przez usb ? :D

Kod: Zaznacz cały

All processes killed
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
File C:\Program Files\ConduitEngine\ConduitEngine.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}\ deleted successfully.
C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.27.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\ deleted successfully.
C:\Program Files\uTorrentBar\tbuTor.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{30F9B915-B755-4826-820B-08FBA6BD249D} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
File C:\Program Files\ConduitEngine\ConduitEngine.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
File C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\ not found.
File C:\Program Files\uTorrentBar\tbuTor.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\ deleted successfully.
C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-448539723-1417001333-839522115-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
File C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll not found.
Registry value HKEY_USERS\S-1-5-21-448539723-1417001333-839522115-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}\ not found.
File C:\Program Files\uTorrentBar\tbuTor.dll not found.
Registry value HKEY_USERS\S-1-5-21-448539723-1417001333-839522115-1003\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\ not found.
File C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll not found.
Registry value HKEY_USERS\S-1-5-21-448539723-1417001333-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\\api32 deleted successfully.
C:\Documents and Settings\hello\Ustawienia lokalne\Temp\apiqq.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-448539723-1417001333-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\\dso32 deleted successfully.
C:\Documents and Settings\hello\Ustawienia lokalne\Temp\dsoqq.exe moved successfully.
Registry value HKEY_USERS\S-1-5-21-448539723-1417001333-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Run\\King_ar deleted successfully.
C:\WINDOWS\system32\arking.exe moved successfully.
Starting removal of ActiveX control {68282C51-9459-467B-95BF-3C0E89627E55}
C:\WINDOWS\Downloaded Program Files\SkanerOnline.inf moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{68282C51-9459-467B-95BF-3C0E89627E55}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68282C51-9459-467B-95BF-3C0E89627E55}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{68282C51-9459-467B-95BF-3C0E89627E55}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{68282C51-9459-467B-95BF-3C0E89627E55}\ not found.
File Animation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab not found.
Starting removal of ActiveX control DirectAnimation Java Classes
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\DirectAnimation Java Classes\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\DirectAnimation Java Classes\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\DirectAnimation Java Classes\ not found.
File oft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab not found.
Starting removal of ActiveX control Microsoft XML Parser for Java
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\Microsoft XML Parser for Java\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\Microsoft XML Parser for Java\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\Microsoft XML Parser for Java\ not found.
C:\autorun.inf moved successfully.
D:\autorun.inf moved successfully.
E:\autorun.inf moved successfully.
F:\autorun.inf moved successfully.
G:\autorun.inf moved successfully.
H:\autorun.inf moved successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{02f2aca6-6e5e-11df-9cd4-001d7dbea961}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02f2aca6-6e5e-11df-9cd4-001d7dbea961}\ not found.
File K:\hjvjte.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{02f2aca6-6e5e-11df-9cd4-001d7dbea961}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02f2aca6-6e5e-11df-9cd4-001d7dbea961}\ not found.
File K:\hjvjte.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{232cec6f-2702-11df-904c-806d6172696f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{232cec6f-2702-11df-904c-806d6172696f}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{232cec6f-2702-11df-904c-806d6172696f}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{232cec6f-2702-11df-904c-806d6172696f}\ not found.
File I:\Run.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{79874310-5f34-11df-9caf-001d7dbea961}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79874310-5f34-11df-9caf-001d7dbea961}\ not found.
File M:\biriprg.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{79874310-5f34-11df-9caf-001d7dbea961}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{79874310-5f34-11df-9caf-001d7dbea961}\ not found.
File M:\biriprg.exe not found.
C:\FOUND.020 folder moved successfully.
File C:\WINDOWS\System32\arking.exe not found.
C:\WINDOWS\system32\arking1.dll moved successfully.
C:\WINDOWS\system32\arking0.dll moved successfully.
C:\WINDOWS\system32\arking2.dll moved successfully.
========== REGISTRY ==========
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\ deleted successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 41044 bytes
 
User: All Users
 
User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
 
User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 326539 bytes
 
User: hello
->Temp folder emptied: 6013988 bytes
->Temporary Internet Files folder emptied: 325223 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 108327731 bytes
->Flash cache emptied: 43194 bytes
 
User: Administrator
->Temp folder emptied: 195584 bytes
->Temporary Internet Files folder emptied: 33170 bytes
 
User: Gość
->Temp folder emptied: 244736 bytes
->Temporary Internet Files folder emptied: 243528 bytes
->FireFox cache emptied: 91511086 bytes
->Flash cache emptied: 43162 bytes
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 3937174 bytes
%systemroot%\System32 .tmp files removed: 2596 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
RecycleBin emptied: 0 bytes
 
Total Files Cleaned = 202,00 mb
 
 
OTL by OldTimer - Version 3.2.22.3 log created on 04022011_124036

Files\Folders moved on Reboot...
C:\Documents and Settings\hello\Ustawienia lokalne\Temp\apiqq0.dll moved successfully.

Registry entries deleted on Reboot...

Awatar użytkownika
djkamil09061991

Globalny Moderator
Posty: 8250
Rejestracja: 18 lut 2009, 11:54
Lokalizacja: Wrocław
Kontaktowanie:

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:45

fluber pisze:Jakimi urzadzeniami ?

wszystko pendrivy itp itd
I podaj log. Oraz wstaw tak jak pisałem nowy log z OTL

fluber

Użytkownik
Posty: 327
Rejestracja: 07 sty 2010, 11:00

Wolne otwieranie stron/buforowanie filmów

Post02 kwie 2011, 12:56

Kod: Zaznacz cały

OTL logfile created on: 2011-04-02 12:51:02 - Run 3
OTL by OldTimer - Version 3.2.22.3     Folder = H:\Pacze 3.2.0 do max
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 74,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 94,00% Paging File free
Paging file location(s): [Binary data over 100 bytes]
 
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 19,52 Gb Total Space | 0,63 Gb Free Space | 3,21% Space Free | Partition Type: FAT32
Drive D: | 24,41 Gb Total Space | 5,39 Gb Free Space | 22,08% Space Free | Partition Type: NTFS
Drive E: | 24,41 Gb Total Space | 3,42 Gb Free Space | 14,00% Space Free | Partition Type: NTFS
Drive F: | 24,41 Gb Total Space | 0,86 Gb Free Space | 3,53% Space Free | Partition Type: NTFS
Drive G: | 24,41 Gb Total Space | 6,95 Gb Free Space | 28,46% Space Free | Partition Type: NTFS
Drive H: | 31,85 Gb Total Space | 20,71 Gb Free Space | 65,01% Space Free | Partition Type: NTFS
 
Computer Name: MICHAŁ | User Name: hello | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
PRC - [2011-04-02 12:27:03 | 000,580,608 | ---- | M] (OldTimer Tools) -- H:\Pacze 3.2.0 do max\OTL.exe
PRC - [2011-03-24 13:59:40 | 000,016,856 | ---- | M] (Mozilla Corporation) -- D:\Programy\firefox\plugin-container.exe
PRC - [2011-03-24 13:59:39 | 000,912,344 | ---- | M] (Mozilla Corporation) -- D:\Programy\firefox\firefox.exe
PRC - [2011-03-11 15:44:18 | 000,396,152 | ---- | M] (BitTorrent, Inc.) -- E:\BC\uTorrent.exe
PRC - [2008-12-10 11:02:30 | 000,216,520 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\daemon.exe
PRC - [2008-04-14 22:51:48 | 000,435,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wiaacmgr.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
 
 
[color=#E56717]========== Modules (SafeList) ==========[/color]
 
MOD - [2011-04-02 12:27:03 | 000,580,608 | ---- | M] (OldTimer Tools) -- H:\Pacze 3.2.0 do max\OTL.exe
MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
 
 
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
 
SRV - File not found [Disabled | Stopped] --  -- (HidServ)
SRV - [2010-01-15 13:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV - [2010-04-25 10:43:34 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-04-12 11:59:44 | 000,015,600 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2008-04-14 00:26:08 | 000,088,320 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx)
DRV - [2007-07-18 12:26:04 | 004,547,584 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2006-12-14 10:44:06 | 000,085,120 | R--- | M] (Realtek Semiconductor Corporation                           ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp)
DRV - [2006-11-27 10:33:54 | 000,019,968 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2006-11-27 10:33:50 | 000,058,368 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2006-10-18 10:31:38 | 000,105,472 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvata.sys -- (nvata)
DRV - [2001-08-17 21:54:18 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb)
DRV - [2001-08-17 21:54:18 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-21-448539723-1417001333-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKU\S-1-5-21-448539723-1417001333-839522115-1003\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-448539723-1417001333-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
[color=#E56717]========== FireFox ==========[/color]
 
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.update: false
FF - prefs.js..extensions.enabledItems: radiobar@toolbar:1.0.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.5.2
FF - prefs.js..network.proxy.backup.ftp: "94.228.201.89"
FF - prefs.js..network.proxy.backup.ftp_port: 8080
FF - prefs.js..network.proxy.backup.gopher: "94.228.201.89"
FF - prefs.js..network.proxy.backup.gopher_port: 8080
FF - prefs.js..network.proxy.backup.socks: "94.228.201.89"
FF - prefs.js..network.proxy.backup.socks_port: 8080
FF - prefs.js..network.proxy.backup.ssl: "94.228.201.89"
FF - prefs.js..network.proxy.backup.ssl_port: 8080
FF - prefs.js..network.proxy.ftp: "94.228.201.89"
FF - prefs.js..network.proxy.ftp_port: 8080
FF - prefs.js..network.proxy.gopher: "94.228.201.89"
FF - prefs.js..network.proxy.gopher_port: 8080
FF - prefs.js..network.proxy.http: "94.228.201.89"
FF - prefs.js..network.proxy.http_port: 8080
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.socks: "94.228.201.89"
FF - prefs.js..network.proxy.socks_port: 8080
FF - prefs.js..network.proxy.ssl: "94.228.201.89"
FF - prefs.js..network.proxy.ssl_port: 8080
FF - prefs.js..network.proxy.type: 0
 
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: D:\Programy\firefox\components [2011-03-24 13:59:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: D:\Programy\firefox\plugins [2011-03-24 13:59:43 | 000,000,000 | ---D | M]
 
[2010-03-03 20:55:30 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Extensions
[2010-03-03 20:55:30 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions
[2011-03-11 14:47:52 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
[2010-08-08 16:02:56 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2011-03-11 14:47:52 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions\engine@conduit.com
[2010-09-10 00:16:46 | 000,000,000 | ---D | M] (RadioBar Toolbar) -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\extensions\radiobar@toolbar
[2010-04-25 10:44:50 | 000,000,523 | ---- | M] () -- C:\Documents and Settings\hello\Dane aplikacji\Mozilla\Firefox\Profiles\h78lz2qh.default\searchplugins\daemon-search.xml
[2010-05-23 18:09:04 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010-02-22 21:10:56 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
[2010-05-23 18:09:07 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
 
O1 HOSTS File: ([2001-10-26 15:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O2 - BHO: (Yahoo! Companion BHO) - {02478D38-C3F9-4efb-9B51-7695ECA05670} -  File not found
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-448539723-1417001333-839522115-1003..\Run: [uTorrent] E:\BC\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-448539723-1417001333-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Pobierz wszystkie VIdeo za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Pobierz za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} -  File not found
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.23.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-03-03 20:45:52 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ]
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2011-04-02 12:24:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Menu Start\Programy\Free Registry Cleaner
[2011-04-02 12:24:55 | 000,000,000 | ---D | C] -- C:\czyszczenie
[2011-04-02 12:22:36 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\hello\Recent
[2011-03-31 04:03:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Pulpit\Vid
[2011-03-31 03:55:53 | 000,000,000 | ---D | C] -- C:\Program Files\Game Cam V2
[2011-03-31 03:49:33 | 000,000,000 | R--D | C] -- C:\Documents and Settings\hello\Moje dokumenty\Moje wideo
[2011-03-31 03:49:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\gctmp
[2011-03-30 15:34:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Pulpit\zzzzzzzzzzzzzzzzzz
[2011-03-27 00:15:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Dane aplikacji\RegistryKeys
[2011-03-26 16:36:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Pulpit\ss bw
[2011-03-12 12:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Dane aplikacji\TS3Client
[2011-03-12 12:58:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\TeamSpeak 3 Client
[2011-03-11 14:47:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\Conduit
[2011-03-11 14:47:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\uTorrentBar
[2011-03-11 14:47:52 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrentBar
[2011-03-11 14:47:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\Temp
[2011-03-11 14:43:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\hello\Dane aplikacji\uTorrent
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2011-04-02 12:42:30 | 000,000,260 | ---- | M] () -- C:\WINDOWS\tasks\WGASetup.job
[2011-04-02 12:41:48 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-04-02 12:27:18 | 000,057,689 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\cc3.JPG
[2011-04-02 12:24:58 | 000,000,618 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\Eusing Free Registry Cleaner.lnk
[2011-04-02 12:24:22 | 000,055,857 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\cc2.JPG
[2011-04-02 12:23:24 | 000,074,840 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\cc1.JPG
[2011-04-02 12:19:02 | 000,026,786 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\gga.JPG
[2011-04-02 12:08:02 | 000,044,500 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\11111.JPG
[2011-04-02 08:05:36 | 000,027,474 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\filmy.JPG
[2011-04-02 05:01:14 | 000,130,560 | ---- | M] () -- C:\WINDOWS\System32\arking1.dll
[2011-04-02 04:59:50 | 000,127,488 | ---- | M] () -- C:\WINDOWS\System32\arking0.dll
[2011-03-31 20:57:58 | 000,007,188 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\ugo.JPG
[2011-03-31 04:06:18 | 000,020,480 | ---- | M] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-03-31 03:55:54 | 000,000,612 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\Game Cam V2.lnk
[2011-03-31 02:04:12 | 000,005,032 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\pole.JPG
[2011-03-31 02:00:34 | 000,042,468 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\HANDEL.JPG
[2011-03-30 03:23:14 | 000,062,897 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\xyy.JPG
[2011-03-29 13:08:46 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-03-27 09:19:58 | 000,118,152 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011-03-27 05:04:16 | 000,036,011 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\platne.JPG
[2011-03-27 04:46:16 | 000,048,254 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\dotacje.JPG
[2011-03-25 16:46:06 | 000,156,960 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\2nw.JPG
[2011-03-25 16:45:54 | 000,156,708 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\1nw.JPG
[2011-03-19 21:01:44 | 000,011,784 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\lukasv.JPG
[2011-03-16 12:35:50 | 000,234,481 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\binds.jpg
[2011-03-13 14:14:06 | 000,000,490 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\hg.lnk
[2011-03-13 11:55:22 | 000,006,041 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\Liszking.JPG
[2011-03-12 12:59:02 | 000,001,132 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\TeamSpeak 3 Client.lnk
[2011-03-12 11:18:26 | 000,000,547 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\pre.lnk
[2011-03-12 10:55:18 | 000,006,036 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\paczwerk.JPG
[2011-03-12 00:25:58 | 000,076,173 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\balance.JPG
[2011-03-11 14:44:20 | 000,000,420 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\?Torrent.lnk
[2011-03-09 11:17:04 | 000,002,473 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\flambi.PNG
[2011-03-09 10:39:04 | 000,166,298 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\w3.jpg
[2011-03-09 10:38:56 | 000,207,875 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\w2.jpg
[2011-03-09 10:38:42 | 000,224,206 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\w1.jpg
[2011-03-07 07:17:52 | 000,027,293 | ---- | M] () -- C:\Documents and Settings\hello\Pulpit\1.PNG
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2011-04-02 12:27:16 | 000,057,689 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\cc3.JPG
[2011-04-02 12:24:57 | 000,000,618 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\Eusing Free Registry Cleaner.lnk
[2011-04-02 12:24:21 | 000,055,857 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\cc2.JPG
[2011-04-02 12:23:04 | 000,074,840 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\cc1.JPG
[2011-04-02 12:19:00 | 000,026,786 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\gga.JPG
[2011-04-02 12:07:59 | 000,044,500 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\11111.JPG
[2011-04-02 08:05:35 | 000,027,474 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\filmy.JPG
[2011-03-31 20:57:56 | 000,007,188 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\ugo.JPG
[2011-03-31 02:04:11 | 000,005,032 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\pole.JPG
[2011-03-31 02:00:33 | 000,042,468 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\HANDEL.JPG
[2011-03-30 03:23:12 | 000,062,897 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\xyy.JPG
[2011-03-27 05:04:15 | 000,036,011 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\platne.JPG
[2011-03-27 04:46:14 | 000,048,254 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\dotacje.JPG
[2011-03-25 16:46:05 | 000,156,960 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\2nw.JPG
[2011-03-25 16:45:52 | 000,156,708 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\1nw.JPG
[2011-03-19 21:01:43 | 000,011,784 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\lukasv.JPG
[2011-03-16 12:42:33 | 000,234,481 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\binds.jpg
[2011-03-13 11:55:20 | 000,006,041 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\Liszking.JPG
[2011-03-12 12:59:00 | 000,001,132 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\TeamSpeak 3 Client.lnk
[2011-03-12 11:18:24 | 000,000,547 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\pre.lnk
[2011-03-12 10:55:15 | 000,006,036 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\paczwerk.JPG
[2011-03-12 00:25:57 | 000,076,173 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\balance.JPG
[2011-03-11 14:44:18 | 000,000,420 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\?Torrent.lnk
[2011-03-09 11:14:04 | 000,002,473 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\flambi.PNG
[2011-03-09 10:39:03 | 000,166,298 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\w3.jpg
[2011-03-09 10:38:55 | 000,207,875 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\w2.jpg
[2011-03-09 10:38:41 | 000,224,206 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\w1.jpg
[2011-03-07 07:17:50 | 000,027,293 | ---- | C] () -- C:\Documents and Settings\hello\Pulpit\1.PNG
[2010-12-06 23:24:45 | 000,130,560 | ---- | C] () -- C:\WINDOWS\System32\arking1.dll
[2010-12-06 16:25:24 | 000,127,488 | ---- | C] () -- C:\WINDOWS\System32\arking0.dll
[2010-09-13 03:21:24 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2010-05-21 16:14:15 | 000,079,094 | ---- | C] () -- C:\WINDOWS\War3Unin.dat
[2010-05-10 21:28:38 | 000,020,480 | ---- | C] () -- C:\Documents and Settings\hello\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-04-13 20:45:02 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2010-04-12 12:08:44 | 000,001,732 | ---- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
[2010-04-10 14:00:23 | 000,065,336 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2010-03-20 15:10:59 | 000,141,025 | ---- | C] () -- C:\WINDOWS\hpoins27.dat
[2010-03-20 15:10:59 | 000,000,932 | ---- | C] () -- C:\WINDOWS\hpomdl27.dat
[2010-03-03 22:45:00 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2010-03-03 20:55:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-03-03 20:53:32 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-03-03 20:47:14 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-03-03 20:43:49 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-03-03 20:31:31 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010-03-03 20:30:20 | 000,118,152 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2007-09-16 19:07:00 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2007-09-16 19:07:00 | 001,626,112 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2007-09-16 19:07:00 | 001,478,656 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2007-09-16 19:07:00 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2007-09-16 19:07:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2007-09-16 19:07:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2007-09-16 19:07:00 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2007-09-16 19:07:00 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2007-09-16 19:07:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2006-12-31 07:57:08 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2002-09-20 16:19:46 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2001-10-26 16:15:16 | 000,490,808 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat
[2001-10-26 16:15:16 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat
[2001-10-26 16:15:16 | 000,083,988 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat
[2001-10-26 16:15:16 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat
[2001-08-23 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2001-08-23 13:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2001-08-17 21:30:24 | 000,432,856 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2001-08-17 21:30:24 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2001-08-17 21:30:24 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2001-08-17 21:30:22 | 000,067,560 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2001-08-17 21:15:38 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2001-07-21 22:36:48 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2001-07-21 22:36:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2001-07-21 22:24:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
 
[color=#E56717]========== LOP Check ==========[/color]
 
[2010-03-05 09:31:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl
[2010-03-17 16:53:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-06-10 16:37:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PMB Files
[2010-06-25 20:12:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
[2010-03-03 23:11:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\Gadu-Gadu
[2010-03-21 11:31:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\gtk-2.0
[2010-04-02 00:55:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\BitComet
[2010-04-25 10:43:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\DAEMON Tools Lite
[2010-04-25 10:46:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\DAEMON Tools Pro
[2010-04-25 10:46:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\DAEMON Tools
[2010-05-13 14:21:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\GameRanger
[2010-05-17 20:50:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\StealthBot
[2010-06-08 20:27:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\OpenOfficeT72
[2010-06-08 20:28:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\MfcEmbed
[2010-06-15 10:52:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\LolClient
[2010-06-25 20:12:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\ipla
[2010-12-03 15:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\ImgBurn
[2010-12-21 17:28:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\GetRightToGo
[2011-03-11 14:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\uTorrent
[2011-03-12 12:59:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\TS3Client
[2011-03-27 00:15:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\hello\Dane aplikacji\RegistryKeys
[2011-02-26 15:36:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gość\Dane aplikacji\Gadu-Gadu
[2011-03-21 13:20:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gość\Dane aplikacji\OpenOfficeT72
[2011-04-02 12:42:30 | 000,000,260 | ---- | M] () -- C:\WINDOWS\Tasks\WGASetup.job
 
[color=#E56717]========== Purity Check ==========[/color]
 
 

< End of report >


-- 02 kwi 2011, 11:52 --

Nie mam nic poza telefonem i słuchawkami co moge podlaczyc :D

-- 02 kwi 2011, 11:54 --

usbfix by teamxscript zatrzymal sie na 48% i dalej nie idzie

-- 02 kwi 2011, 11:56 --

ruszyl

Kod: Zaznacz cały

############################## | UsbFix 7.042 | [Research]

User: hello (Administrator) # MICHAŁ [ ]
Updated 01/04/2011 by TeamXscript
Started at 12:52:04 | 02/04/2011
Website: http://www.teamxscript.org
Submit your sample: http://www.teamxscript.org/Upload.php
Contact: TeamXscript.ElDesaparecido@gmail.com

CPU: AMD Athlon(tm) 64 X2 Dual Core Processor 4000+
CPU 2: AMD Athlon(tm) 64 X2 Dual Core Processor 4000+
Microsoft Windows XP Professional (5.1.2600 32-Bit) # Dodatek Service Pack 3
Internet Explorer 6.0.2900.5512

Windows Firewall: Enabled
RAM -> 2047 Mb
C:\ (%systemdrive%) -> Fixed drive # 20 Gb (639 Mb free - 3%) [] # FAT32
D:\ -> Fixed drive # 24 Gb (5 Mb free - 22%) [Burdel] # NTFS
E:\ -> Fixed drive # 24 Gb (3 Mb free - 14%) [Programy] # NTFS
F:\ -> Fixed drive # 24 Gb (883 Mb free - 4%) [Gry] # NTFS
G:\ -> Fixed drive # 24 Gb (7 Mb free - 28%) [Wazza] # NTFS
H:\ -> Fixed drive # 32 Gb (21 Mb free - 65%) [Download] # NTFS
I:\ -> CD-ROM
J:\ -> CD-ROM

################## | Files # Infected Folders |


Found ! C:\hjvjte.exe 
Found ! D:\hjvjte.exe 
Found ! E:\hjvjte.exe 
Found ! F:\hjvjte.exe 
Found ! G:\hjvjte.exe 
Found ! C:\WINDOWS\system32\arking0.dll
Found ! C:\WINDOWS\system32\arking1.dll
Found ! C:\09lf.exe
Found ! C:\1gkbvsni.exe
Found ! C:\1j038ki.exe
Found ! C:\2ul.exe
Found ! C:\6mxvohs.exe
Found ! C:\awb3ryk.exe
Found ! C:\biriprg.exe
Found ! C:\eyruu.exe
Found ! C:\g6jk.exe
Found ! C:\ggb6w.exe
Found ! C:\hjvjte.exe
Found ! C:\i8gcgmg.exe
Found ! C:\iuvvl9f3.exe
Found ! C:\krwyrv0d.exe
Found ! C:\mk28sp.exe
Found ! C:\n0qls.exe
Found ! C:\rxf.exe
Found ! C:\vi8f.exe
Found ! C:\x3xh.exe
Found ! C:\xcr.exe
Found ! C:\yqq8eqil.exe
Found ! D:\09lf.exe
Found ! D:\1gkbvsni.exe
Found ! D:\1j038ki.exe
Found ! D:\2ul.exe
Found ! D:\6mxvohs.exe
Found ! D:\awb3ryk.exe
Found ! D:\biriprg.exe
Found ! D:\eyruu.exe
Found ! D:\g6jk.exe
Found ! D:\ggb6w.exe
Found ! D:\hjvjte.exe
Found ! D:\i8gcgmg.exe
Found ! D:\iuvvl9f3.exe
Found ! D:\krwyrv0d.exe
Found ! D:\mk28sp.exe
Found ! D:\n0qls.exe
Found ! D:\rxf.exe
Found ! D:\vi8f.exe
Found ! D:\x3xh.exe
Found ! D:\xcr.exe
Found ! D:\yqq8eqil.exe
Found ! E:\09lf.exe
Found ! E:\1gkbvsni.exe
Found ! E:\1j038ki.exe
Found ! E:\2ul.exe
Found ! E:\6mxvohs.exe
Found ! E:\awb3ryk.exe
Found ! E:\biriprg.exe
Found ! E:\eyruu.exe
Found ! E:\g6jk.exe
Found ! E:\ggb6w.exe
Found ! E:\hjvjte.exe
Found ! E:\i8gcgmg.exe
Found ! E:\iuvvl9f3.exe
Found ! E:\krwyrv0d.exe
Found ! E:\mk28sp.exe
Found ! E:\n0qls.exe
Found ! E:\rxf.exe
Found ! E:\vi8f.exe
Found ! E:\x3xh.exe
Found ! E:\xcr.exe
Found ! E:\yqq8eqil.exe
Found ! E:\abc
Found ! F:\09lf.exe
Found ! F:\1gkbvsni.exe
Found ! F:\1j038ki.exe
Found ! F:\2ul.exe
Found ! F:\6mxvohs.exe
Found ! F:\awb3ryk.exe
Found ! F:\biriprg.exe
Found ! F:\eyruu.exe
Found ! F:\g6jk.exe
Found ! F:\ggb6w.exe
Found ! F:\hjvjte.exe
Found ! F:\i8gcgmg.exe
Found ! F:\iuvvl9f3.exe
Found ! F:\krwyrv0d.exe
Found ! F:\mk28sp.exe
Found ! F:\n0qls.exe
Found ! F:\rxf.exe
Found ! F:\vi8f.exe
Found ! F:\x3xh.exe
Found ! F:\xcr.exe
Found ! F:\yqq8eqil.exe
Found ! G:\09lf.exe
Found ! G:\1gkbvsni.exe
Found ! G:\1j038ki.exe
Found ! G:\2ul.exe
Found ! G:\6mxvohs.exe
Found ! G:\awb3ryk.exe
Found ! G:\biriprg.exe
Found ! G:\eyruu.exe
Found ! G:\g6jk.exe
Found ! G:\ggb6w.exe
Found ! G:\hjvjte.exe
Found ! G:\i8gcgmg.exe
Found ! G:\iuvvl9f3.exe
Found ! G:\krwyrv0d.exe
Found ! G:\mk28sp.exe
Found ! G:\n0qls.exe
Found ! G:\rxf.exe
Found ! G:\vi8f.exe
Found ! G:\x3xh.exe
Found ! G:\xcr.exe
Found ! G:\yqq8eqil.exe
Found ! H:\biriprg.exe

################## | Registry |

Found ! HKLM\Software\Classes\CLSID\MADOWN
Found ! HKLM\software\microsoft\shared tools\msconfig\startupreg\dso32

################## | Mountpoints2 |


################## | Vaccin |

(!) This computer is not vaccinated!

################## | E.O.F |



  • Reklama

Wróć do „Bezpieczeństwo”



Kto jest online

Użytkownicy przeglądający to forum: Obecnie na forum nie ma żadnego zarejestrowanego użytkownika i 4 gości