Logi, zabezpieczenie komputera, danych. Programy antywirusowe antyspyware, firewall itp.

Regulamin forum

1. Każdy temat powinien odzwierciedlać treść wątku.
2. W przypadku wklejania logów; należy je wykonać od razu przynajmniej z dwóch narzędzi: FRST oraz z GMER
3. Wszelkie logi proszę publikować na przeznaczonych do tego stronach a w poście wklejać tylko link.
4. Nie wskazane jest skracanie logów, należy wkleić cały - od początku, do końca.
5. Nie wskazane jest podczepianie się do tematów innych użytkowników - proszę założyć nowy temat w dziale Bezpieczeństwo, ułatwi to pomoc sprawdzającemu.
6. Osoby nie posiadające odpowiedniej wiedzy, nie powinny sprawdzać logów, ponieważ grozi to poważnym uszkodzeniem systemu lub aplikacji zainstalowanych na komputerze.
7. Należy dokładnie opisać problem, występujące objawy oraz wszelkie podjęte działania.
8. Każdy skrypt jest unikatowy, napisany dla każdego przypadku z osobna, więc nie może być stosowany przez innych.
9. W przypadku zamieszczenia zrzutu ekranu (screenshot'a) proszę korzystać z zewnętrznego serwisu oferującego hosting zdjęć.
Wyślij odpowiedź

Komputer strasznie zwolnił i przerywa czasami dźwięk

04 Sie 2012, 21:59

Witam,mój komputer od 2 dni strasznie zwolnił i przerywa czasami dźwięk jak coś oglądam,gram czy coś innego...podejrzewam że to jakiś wirus ale antywirus go nie wykrywa :( Poradzie co robić :P nie znam się na tym więc napiszcie co dać żebyście pomogli mi :P

Re: Pomocy! :(

04 Sie 2012, 22:23

Podaj logi z OTL -> otl-gmer-silent-runners-sdfix-i-inne-poradnik-t13967.html#p107754 + log z TDSSKiller -> otl-gmer-silent-runners-sdfix-i-inne-poradnik-t13967-15.html#p120292 + log z Autoruns -> otl-gmer-silent-runners-sdfix-i-inne-poradnik-t13967-15.html#p138589.

Re: Pomocy! :(

05 Sie 2012, 00:27

Kod:
22:34:37.0390 4464   TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32
22:34:37.0796 4464   ============================================================
22:34:37.0796 4464   Current date / time: 2012/08/04 22:34:37.0796
22:34:37.0796 4464   SystemInfo:
22:34:37.0796 4464   
22:34:37.0796 4464   OS Version: 5.1.2600 ServicePack: 3.0
22:34:37.0796 4464   Product type: Workstation
22:34:37.0796 4464   ComputerName: KOMPUTEREKXD
22:34:37.0796 4464   UserName: Łukasz
22:34:37.0796 4464   Windows directory: C:\WINDOWS
22:34:37.0796 4464   System windows directory: C:\WINDOWS
22:34:37.0796 4464   Processor architecture: Intel x86
22:34:37.0796 4464   Number of processors: 2
22:34:37.0796 4464   Page size: 0x1000
22:34:37.0796 4464   Boot type: Normal boot
22:34:37.0796 4464   ============================================================
22:34:43.0937 4464   Drive \Device\Harddisk0\DR0 - Size: 0x3A38A25E00 (232.88 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
22:34:43.0968 4464   ============================================================
22:34:43.0968 4464   \Device\Harddisk0\DR0:
22:34:44.0281 4464   MBR partitions:
22:34:44.0281 4464   \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4E1EDEC
22:34:44.0281 4464   \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x4E1EE2B, BlocksNum 0x183A5756
22:34:44.0281 4464   ============================================================
22:34:44.0781 4464   C: <-> \Device\Harddisk0\DR0\Partition0
22:34:44.0937 4464   D: <-> \Device\Harddisk0\DR0\Partition1
22:34:44.0937 4464   ============================================================
22:34:44.0937 4464   Initialize success
22:34:44.0937 4464   ============================================================
22:34:49.0578 7792   ============================================================
22:34:49.0578 7792   Scan started
22:34:49.0578 7792   Mode: Manual;
22:34:49.0578 7792   ============================================================
22:34:51.0328 7792   Abiosdsk - ok
22:34:51.0328 7792   abp480n5 - ok
22:34:51.0437 7792   ACPI            (05118282f5d039595a2b92b4a4afe197) C:\WINDOWS\system32\DRIVERS\ACPI.sys
22:34:51.0484 7792   ACPI - ok
22:34:51.0531 7792   ACPIEC          (66a42b7db194e24b973bbcce840a0f3f) C:\WINDOWS\system32\drivers\ACPIEC.sys
22:34:51.0859 7792   ACPIEC - ok
22:34:52.0312 7792   Ad-Aware Service (09e61047b0cef21559cfcedf4f14d216) D:\Program Files\Ad-Aware Antivirus\AdAwareService.exe
22:34:52.0343 7792   Ad-Aware Service - ok
22:34:52.0406 7792   AdobeFlashPlayerUpdateSvc (f19c98ad81d2c0e1bbfd8153d2c80ee8) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
22:34:52.0406 7792   AdobeFlashPlayerUpdateSvc - ok
22:34:52.0421 7792   adpu160m - ok
22:34:52.0484 7792   aec             (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
22:34:52.0546 7792   aec - ok
22:34:52.0578 7792   AFD             (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
22:34:52.0609 7792   AFD - ok
22:34:52.0625 7792   Aha154x - ok
22:34:52.0625 7792   aic78u2 - ok
22:34:52.0625 7792   aic78xx - ok
22:34:52.0671 7792   ALG             (d1738dddff196c5cee6d867c136af745) C:\WINDOWS\System32\alg.exe
22:34:52.0671 7792   ALG - ok
22:34:52.0687 7792   AliIde - ok
22:34:52.0765 7792   Ambfilt         (267fc636801edc5ab28e14036349e3be) C:\WINDOWS\system32\drivers\Ambfilt.sys
22:34:52.0937 7792   Ambfilt - ok
22:34:53.0015 7792   amsint - ok
22:34:53.0078 7792   AntiVirSchedulerService (0a1cc583e8147004e4ad4625d7fbf88c) C:\Program Files\Avira\AntiVir Desktop\sched.exe
22:34:53.0093 7792   AntiVirSchedulerService - ok
22:34:53.0109 7792   AntiVirService  (c9a36ef935aced86aedf93e97e606911) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
22:34:53.0109 7792   AntiVirService - ok
22:34:53.0156 7792   Application Updater (0805ecf10476a091999e4d59d0db71a2) C:\Program Files\Application Updater\ApplicationUpdater.exe
22:34:53.0187 7792   Application Updater - ok
22:34:53.0187 7792   AppMgmt - ok
22:34:53.0187 7792   asc - ok
22:34:53.0203 7792   asc3350p - ok
22:34:53.0203 7792   asc3550 - ok
22:34:53.0328 7792   aspnet_state    (776acefa0ca9df0faa51a5fb2f435705) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
22:34:53.0671 7792   aspnet_state - ok
22:34:53.0703 7792   AsyncMac        (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
22:34:53.0765 7792   AsyncMac - ok
22:34:53.0796 7792   atapi           (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
22:34:53.0796 7792   atapi - ok
22:34:53.0812 7792   Atdisk - ok
22:34:53.0843 7792   atksgt          (f0d933b42cd0594048e4d5200ae9e417) C:\WINDOWS\system32\DRIVERS\atksgt.sys
22:34:54.0234 7792   atksgt - ok
22:34:54.0296 7792   Atmarpc         (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
22:34:54.0468 7792   Atmarpc - ok
22:34:54.0500 7792   AudioSrv        (3a28d3e7bad0eed3810cd918b2525b54) C:\WINDOWS\System32\audiosrv.dll
22:34:54.0500 7792   AudioSrv - ok
22:34:54.0531 7792   audstub         (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
22:34:54.0578 7792   audstub - ok
22:34:54.0875 7792   Autodesk Licensing Service (ead65493edba0ebea2192d46b938298e) C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
22:34:54.0875 7792   Autodesk Licensing Service - ok
22:34:55.0187 7792   AVerBDA3x       (b946a45e04ec4339eec002e449d4cd4c) C:\WINDOWS\system32\DRIVERS\AVerBDA3x.sys
22:34:55.0453 7792   AVerBDA3x - ok
22:34:55.0515 7792   avgntflt        (d5541f0afb767e85fc412fc609d96a74) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
22:34:55.0531 7792   avgntflt - ok
22:34:55.0546 7792   avipbb          (7d967a682d4694df7fa57d63a2db01fe) C:\WINDOWS\system32\DRIVERS\avipbb.sys
22:34:55.0546 7792   avipbb - ok
22:34:55.0562 7792   avkmgr          (271cfd1a989209b1964e24d969552bf7) C:\WINDOWS\system32\DRIVERS\avkmgr.sys
22:34:55.0562 7792   avkmgr - ok
22:34:55.0640 7792   Beep            (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
22:34:55.0703 7792   Beep - ok
22:34:55.0796 7792   BITS            (78200faa6fd9c69394134c238c87fb7f) C:\WINDOWS\system32\qmgr.dll
22:34:55.0875 7792   BITS - ok
22:34:55.0906 7792   cbidf2k         (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
22:34:56.0015 7792   cbidf2k - ok
22:34:56.0078 7792   CCDECODE        (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
22:34:56.0484 7792   CCDECODE - ok
22:34:56.0484 7792   cd20xrnt - ok
22:34:56.0578 7792   Cdaudio         (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
22:34:57.0015 7792   Cdaudio - ok
22:34:57.0062 7792   Cdfs            (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
22:34:57.0093 7792   Cdfs - ok
22:34:57.0140 7792   Cdrom           (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
22:34:57.0171 7792   Cdrom - ok
22:34:57.0187 7792   Changer - ok
22:34:57.0250 7792   CiSvc           (45b63df2fb498d219fcbb4425cade676) C:\WINDOWS\system32\cisvc.exe
22:34:57.0390 7792   CiSvc - ok
22:34:57.0437 7792   ClipSrv         (c94f1b6f61858d6389c0fa06954fb9c4) C:\WINDOWS\system32\clipsrv.exe
22:34:57.0625 7792   ClipSrv - ok
22:34:57.0750 7792   clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:34:57.0953 7792   clr_optimization_v2.0.50727_32 - ok
22:34:58.0390 7792   clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:34:58.0609 7792   clr_optimization_v4.0.30319_32 - ok
22:34:58.0609 7792   CmdIde - ok
22:34:58.0625 7792   COMSysApp - ok
22:34:58.0640 7792   Cpqarray - ok
22:34:58.0687 7792   CryptSvc        (6b105fe95f2e9f0b6346044ba59d41c9) C:\WINDOWS\System32\cryptsvc.dll
22:34:58.0687 7792   CryptSvc - ok
22:34:58.0687 7792   dac2w2k - ok
22:34:58.0703 7792   dac960nt - ok
22:34:58.0765 7792   DcomLaunch      (a37311d9d628c1042a2836731787f0f3) C:\WINDOWS\system32\rpcss.dll
22:34:58.0796 7792   DcomLaunch - ok
22:34:58.0828 7792   Dhcp            (6b4afe7c676cff3eff2dc06a4ee945f7) C:\WINDOWS\System32\dhcpcsvc.dll
22:34:58.0843 7792   Dhcp - ok
22:34:58.0875 7792   Disk            (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
22:34:58.0906 7792   Disk - ok
22:34:58.0921 7792   dmadmin - ok
22:34:59.0140 7792   dmboot          (bc9219abc5696942e6f9ac8a9b28670f) C:\WINDOWS\system32\drivers\dmboot.sys
22:34:59.0375 7792   dmboot - ok
22:34:59.0828 7792   dmio            (5fa232e3ba6e1346f9f5a7e519320cb0) C:\WINDOWS\system32\drivers\dmio.sys
22:35:00.0125 7792   dmio - ok
22:35:00.0156 7792   dmload          (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
22:35:00.0343 7792   dmload - ok
22:35:00.0390 7792   dmserver        (d858920a05076914d34b0388e8d96cc0) C:\WINDOWS\System32\dmserver.dll
22:35:00.0562 7792   dmserver - ok
22:35:00.0609 7792   DMusic          (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
22:35:00.0765 7792   DMusic - ok
22:35:00.0812 7792   Dnscache        (082be13166a3354f25f78e0b2601012b) C:\WINDOWS\System32\dnsrslvr.dll
22:35:00.0953 7792   Dnscache - ok
22:35:01.0156 7792   Dot3svc         (e0b7d66cf29d9adccf873c77821cd4ca) C:\WINDOWS\System32\dot3svc.dll
22:35:01.0625 7792   Dot3svc - ok
22:35:01.0625 7792   dpti2o - ok
22:35:01.0671 7792   drmkaud         (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
22:35:01.0781 7792   drmkaud - ok
22:35:01.0812 7792   dtsoftbus01     (fb38473835476a6fb272215a1d972af9) C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
22:35:01.0859 7792   dtsoftbus01 - ok
22:35:01.0921 7792   EapHost         (5f256c1ad50fefdc442cd5aab58c7dd8) C:\WINDOWS\System32\eapsvc.dll
22:35:02.0156 7792   EapHost - ok
22:35:02.0187 7792   ERSvc           (ed1b71382c31fd2cf3cdc4672efad6ea) C:\WINDOWS\System32\ersvc.dll
22:35:02.0187 7792   ERSvc - ok
22:35:02.0218 7792   Eventlog        (02a467e27af55f7064c5b251e587315f) C:\WINDOWS\system32\services.exe
22:35:02.0218 7792   Eventlog - ok
22:35:02.0250 7792   EventSystem     (6aff804839c85859e0247164fbe5f5bb) C:\WINDOWS\system32\es.dll
22:35:02.0265 7792   EventSystem - ok
22:35:02.0296 7792   Fastfat         (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
22:35:02.0296 7792   Fastfat - ok
22:35:02.0328 7792   FastUserSwitchingCompatibility (55aae86c7c2cadf6972acd1d76c24a98) C:\WINDOWS\System32\shsvcs.dll
22:35:02.0328 7792   FastUserSwitchingCompatibility - ok
22:35:02.0718 7792   Fax             (86747b8550e294062addc243888237dd) C:\WINDOWS\system32\fxssvc.exe
22:35:03.0218 7792   Fax - ok
22:35:03.0265 7792   Fdc             (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
22:35:03.0296 7792   Fdc - ok
22:35:03.0343 7792   Fips            (09e2a4d33f81a06a8aab2ba0a0b5d235) C:\WINDOWS\system32\drivers\Fips.sys
22:35:03.0375 7792   Fips - ok
22:35:03.0421 7792   Flpydisk        (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
22:35:03.0468 7792   Flpydisk - ok
22:35:03.0671 7792   FltMgr          (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
22:35:03.0718 7792   FltMgr - ok
22:35:03.0828 7792   FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
22:35:03.0984 7792   FontCache3.0.0.0 - ok
22:35:04.0000 7792   Fs_Rec          (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
22:35:04.0046 7792   Fs_Rec - ok
22:35:04.0093 7792   Ftdisk          (ed6d921d8ab423138fb35beee6d6a6cb) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
22:35:04.0609 7792   Ftdisk - ok
22:35:04.0640 7792   gdrv            (54789f9ba0d59072cdd4e7c200e122c4) C:\WINDOWS\gdrv.sys
22:35:05.0968 7792   gdrv - ok
22:35:06.0078 7792   Gpc             (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
22:35:06.0140 7792   Gpc - ok
22:35:06.0218 7792   gupdate         (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
22:35:06.0234 7792   gupdate - ok
22:35:06.0234 7792   gupdatem        (f02a533f517eb38333cb12a9e8963773) C:\Program Files\Google\Update\GoogleUpdate.exe
22:35:06.0234 7792   gupdatem - ok
22:35:06.0250 7792   hamachi         (833051c6c6c42117191935f734cfbd97) C:\WINDOWS\system32\DRIVERS\hamachi.sys
22:35:06.0281 7792   hamachi - ok
22:35:06.0671 7792   Hamachi2Svc     (f31d7f8a7699575dbb3b3a3ab4aa6216) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
22:35:06.0781 7792   Hamachi2Svc - ok
22:35:06.0859 7792   HDAudBus        (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
22:35:06.0890 7792   HDAudBus - ok
22:35:07.0046 7792   helpsvc         (af752014f7eb61542e3f35b9374d7e76) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
22:35:07.0062 7792   helpsvc - ok
22:35:07.0062 7792   HidServ - ok
22:35:07.0140 7792   hidusb          (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
22:35:07.0296 7792   hidusb - ok
22:35:07.0500 7792   hkmsvc          (f0273916da6fb64cc88e0bd77619554f) C:\WINDOWS\System32\kmsvc.dll
22:35:07.0671 7792   hkmsvc - ok
22:35:07.0671 7792   hpn - ok
22:35:07.0718 7792   HTTP            (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
22:35:07.0750 7792   HTTP - ok
22:35:07.0796 7792   HTTPFilter      (aa268079ac119f3a596e5e27aee4bd17) C:\WINDOWS\System32\w3ssl.dll
22:35:07.0953 7792   HTTPFilter - ok
22:35:07.0953 7792   i2omgmt - ok
22:35:07.0953 7792   i2omp - ok
22:35:08.0000 7792   i8042prt        (177b372af55c4460d0968b5f1d02aa1c) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
22:35:08.0031 7792   i8042prt - ok
22:35:08.0250 7792   IDriverT        (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
22:35:08.0296 7792   IDriverT - ok
22:35:08.0859 7792   idsvc           (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
22:35:09.0156 7792   idsvc - ok
22:35:09.0203 7792   Imapi           (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
22:35:09.0234 7792   Imapi - ok
22:35:09.0281 7792   ImapiService    (9125af650608a921f98a789e5c5ba864) C:\WINDOWS\system32\imapi.exe
22:35:09.0312 7792   ImapiService - ok
22:35:09.0328 7792   ini910u - ok
22:35:09.0671 7792   IntcAzAudAddService (7a9299f48d6f2e802e5b0e0dc508842a) C:\WINDOWS\system32\drivers\RtkHDAud.sys
22:35:09.0890 7792   IntcAzAudAddService - ok
22:35:10.0328 7792   IntelIde - ok
22:35:10.0343 7792   intelppm        (da153edc09de8c4f846c085caa39d1cc) C:\WINDOWS\system32\DRIVERS\intelppm.sys
22:35:10.0375 7792   intelppm - ok
22:35:10.0421 7792   Ip6Fw           (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
22:35:10.0500 7792   Ip6Fw - ok
22:35:10.0531 7792   IpFilterDriver  (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
22:35:10.0625 7792   IpFilterDriver - ok
22:35:10.0656 7792   IpInIp          (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
22:35:10.0765 7792   IpInIp - ok
22:35:10.0796 7792   IpNat           (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
22:35:10.0828 7792   IpNat - ok
22:35:10.0859 7792   IPSec           (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
22:35:10.0890 7792   IPSec - ok
22:35:10.0921 7792   IRENUM          (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
22:35:10.0968 7792   IRENUM - ok
22:35:11.0000 7792   isapnp          (c8eef2e93835b81bd335de2123121283) C:\WINDOWS\system32\DRIVERS\isapnp.sys
22:35:11.0031 7792   isapnp - ok
22:35:11.0109 7792   JavaQuickStarterService (c2c1660ddcc9bd67eb98d6d5f91c107f) C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
22:35:11.0125 7792   JavaQuickStarterService - ok
22:35:11.0125 7792   Kbdclass        (2aeca45d4aeaacbdcb77ad11184e4601) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
22:35:11.0156 7792   Kbdclass - ok
22:35:11.0187 7792   kmixer          (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
22:35:11.0234 7792   kmixer - ok
22:35:11.0265 7792   KSecDD          (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
22:35:11.0281 7792   KSecDD - ok
22:35:11.0296 7792   lanmanserver    (061a4bb67c324ac8c176e0d77923b212) C:\WINDOWS\System32\srvsvc.dll
22:35:11.0312 7792   lanmanserver - ok
22:35:11.0312 7792   lbrtfdc - ok
22:35:11.0515 7792   LightScribeService (f34b35f6f74e28a460749da11d1117f8) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
22:35:11.0515 7792   LightScribeService - ok
22:35:11.0609 7792   lirsgt          (f8a7212d0864ef5e9185fb95e6623f4d) C:\WINDOWS\system32\DRIVERS\lirsgt.sys
22:35:12.0031 7792   lirsgt - ok
22:35:12.0062 7792   LmHosts         (437aa83d68f9fac234ca68dbd40db705) C:\WINDOWS\System32\lmhsvc.dll
22:35:12.0093 7792   LmHosts - ok
22:35:12.0187 7792   LPDSVC          (5125d501712fbec12827c3842ee5be49) C:\WINDOWS\system32\tcpsvcs.exe
22:35:12.0234 7792   LPDSVC - ok
22:35:12.0546 7792   McComponentHostService (9ab4171d5f43f172e10cdf6c6d8e4785) C:\Program Files\McAfee Security Scan\3.0.229\McCHSvc.exe
22:35:12.0578 7792   McComponentHostService - ok
22:35:13.0281 7792   mi-raysat_3dsMax2009_32 (aa0c4a2c33ce075df2c272d678734991) D:\Program Files\Autodesk\3ds Max 2009\mentalray\satellite\raysat_3dsMax2009_32server.exe
22:35:13.0359 7792   mi-raysat_3dsMax2009_32 - ok
22:35:13.0593 7792   mi-raysat_3dsmax8 (aa0c4a2c33ce075df2c272d678734991) D:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
22:35:13.0593 7792   mi-raysat_3dsmax8 - ok
22:35:13.0640 7792   mnmdd           (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
22:35:13.0687 7792   mnmdd - ok
22:35:13.0765 7792   mnmsrvc         (845814a8cb9d704d030f076e1bce83f3) C:\WINDOWS\system32\mnmsrvc.exe
22:35:14.0078 7792   mnmsrvc - ok
22:35:14.0140 7792   Modem           (4a068db7dc37d5afedb6512d2931d7b3) C:\WINDOWS\system32\drivers\Modem.sys
22:35:14.0281 7792   Modem - ok
22:35:14.0875 7792   Monfilt         (c7d9f9717916b34c1b00dd4834af485c) C:\WINDOWS\system32\drivers\Monfilt.sys
22:35:15.0343 7792   Monfilt - ok
22:35:15.0531 7792   Mouclass        (fbed3df6b884f8cf00447b73507f2c48) C:\WINDOWS\system32\DRIVERS\mouclass.sys
22:35:15.0562 7792   Mouclass - ok
22:35:15.0609 7792   mouhid          (ecec1e6cd558ab80f944f31326e9d3b5) C:\WINDOWS\system32\DRIVERS\mouhid.sys
22:35:15.0984 7792   mouhid - ok
22:35:16.0140 7792   MountMgr        (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
22:35:16.0296 7792   MountMgr - ok
22:35:16.0328 7792   MPE             (c0f8e0c2c3c0437cf37c6781896dc3ec) C:\WINDOWS\system32\DRIVERS\MPE.sys
22:35:16.0390 7792   MPE - ok
22:35:16.0390 7792   mraid35x - ok
22:35:16.0531 7792   MRxDAV          (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
22:35:16.0609 7792   MRxDAV - ok
22:35:16.0640 7792   MSDTC           (a54c5eecc7d3424824410bae0aa6c371) C:\WINDOWS\system32\msdtc.exe
22:35:16.0718 7792   MSDTC - ok
22:35:16.0796 7792   Msfs            (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
22:35:16.0843 7792   Msfs - ok
22:35:16.0859 7792   MSIServer - ok
22:35:16.0937 7792   MSKSSRV         (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
22:35:17.0046 7792   MSKSSRV - ok
22:35:17.0078 7792   MSPCLOCK        (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
22:35:17.0140 7792   MSPCLOCK - ok
22:35:17.0187 7792   MSPQM           (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
22:35:17.0265 7792   MSPQM - ok
22:35:17.0296 7792   mssmbios        (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
22:35:17.0328 7792   mssmbios - ok
22:35:17.0500 7792   MSTEE           (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
22:35:17.0953 7792   MSTEE - ok
22:35:18.0343 7792   Mup             (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
22:35:18.0546 7792   Mup - ok
22:35:18.0625 7792   NABTSFEC        (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
22:35:18.0750 7792   NABTSFEC - ok
22:35:20.0296 7792   napagent        (14cb8528e17d1221c50fc8ca88b1795f) C:\WINDOWS\System32\qagentrt.dll
22:35:20.0421 7792   napagent - ok
22:35:23.0875 7792   NBService       (6d8fcdd5bb3b676ef58fa234073492c6) C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
22:35:24.0609 7792   NBService - ok
22:35:24.0656 7792   NDIS            (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
22:35:24.0734 7792   NDIS - ok
22:35:24.0812 7792   NdisTapi        (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
22:35:25.0078 7792   NdisTapi - ok
22:35:25.0187 7792   Ndisuio         (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
22:35:25.0515 7792   Ndisuio - ok
22:35:25.0781 7792   NdisWan         (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
22:35:25.0937 7792   NdisWan - ok
22:35:25.0968 7792   NDProxy         (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
22:35:26.0015 7792   NDProxy - ok
22:35:26.0046 7792   NetBT           (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
22:35:26.0390 7792   NetBT - ok
22:35:26.0812 7792   NetDDE          (cbb409b314309fcffce5e682e91338c6) C:\WINDOWS\system32\netdde.exe
22:35:27.0109 7792   NetDDE - ok
22:35:27.0125 7792   NetDDEdsdm      (cbb409b314309fcffce5e682e91338c6) C:\WINDOWS\system32\netdde.exe
22:35:27.0171 7792   NetDDEdsdm - ok
22:35:27.0968 7792   Netman          (4fe97d0b1b182df2a9bdd4c02155ef5e) C:\WINDOWS\System32\netman.dll
22:35:28.0015 7792   Netman - ok
22:35:28.0281 7792   NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
22:35:28.0500 7792   NetTcpPortSharing - ok
22:35:28.0906 7792   Nla             (9d1f13706fb5f02d0e8795fb2d03971d) C:\WINDOWS\System32\mswsock.dll
22:35:29.0171 7792   Nla - ok
22:35:30.0046 7792   NMIndexingService (060daf68493ad7adf104413e5a62afa8) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
22:35:30.0062 7792   NMIndexingService - ok
22:35:30.0125 7792   Npfs            (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
22:35:30.0250 7792   Npfs - ok
22:35:30.0250 7792   npggsvc - ok
22:35:31.0671 7792   Ntfs            (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
22:35:31.0859 7792   Ntfs - ok
22:35:32.0156 7792   NtmsSvc         (3fb5399dbb7001a80d58edad64c98225) C:\WINDOWS\system32\ntmssvc.dll
22:35:32.0296 7792   NtmsSvc - ok
22:35:32.0421 7792   Null            (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
22:35:32.0578 7792   Null - ok
22:35:36.0078 7792   nv              (18c9b152da7bea76b2f9e4b6412e0aaf) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
22:35:39.0375 7792   nv - ok
22:35:39.0734 7792   nvsvc           (a8c1e6ff53fb0628a302843ea5fa5ab6) C:\WINDOWS\system32\nvsvc32.exe
22:35:39.0734 7792   nvsvc - ok
22:35:39.0796 7792   NwlnkFlt        (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
22:35:40.0281 7792   NwlnkFlt - ok
22:35:40.0359 7792   NwlnkFwd        (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
22:35:40.0531 7792   NwlnkFwd - ok
22:35:40.0656 7792   Parport         (2d4cdaebced17743aa9e25d3016dc229) C:\WINDOWS\system32\DRIVERS\parport.sys
22:35:40.0703 7792   Parport - ok
22:35:40.0734 7792   PartMgr         (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
22:35:40.0765 7792   PartMgr - ok
22:35:40.0781 7792   ParVdm          (453ec2c2a20a1382f564541918520eeb) C:\WINDOWS\system32\drivers\ParVdm.sys
22:35:41.0140 7792   ParVdm - ok
22:35:41.0187 7792   PCI             (6862c69168d787b85a7d95ccd33c694e) C:\WINDOWS\system32\DRIVERS\pci.sys
22:35:41.0234 7792   PCI - ok
22:35:41.0250 7792   PCIDump - ok
22:35:41.0281 7792   PCIIde          (548cf2d6369eae441a4c6baa75bc4f0a) C:\WINDOWS\system32\DRIVERS\pciide.sys
22:35:42.0000 7792   PCIIde - ok
22:35:42.0250 7792   Pcmcia          (8db27f1ae9593c94095485305a583862) C:\WINDOWS\system32\drivers\Pcmcia.sys
22:35:42.0437 7792   Pcmcia - ok
22:35:42.0437 7792   PDCOMP - ok
22:35:42.0453 7792   PDFRAME - ok
22:35:42.0453 7792   PDRELI - ok
22:35:42.0468 7792   PDRFRAME - ok
22:35:42.0546 7792   pe3ajfae        (66a0c4a87af78ea1480531f6729b6ab9) C:\WINDOWS\system32\drivers\pe3ajfae.sys
22:35:42.0609 7792   pe3ajfae - ok
22:35:42.0625 7792   perc2 - ok
22:35:42.0625 7792   perc2hib - ok
22:35:42.0671 7792   PlugPlay        (02a467e27af55f7064c5b251e587315f) C:\WINDOWS\system32\services.exe
22:35:42.0687 7792   PlugPlay - ok
22:35:42.0781 7792   PnkBstrA        (205e1b699fd3f2f9b036eea2ec30c620) C:\WINDOWS\system32\PnkBstrA.exe
22:35:42.0781 7792   PnkBstrA - ok
22:35:42.0828 7792   PolicyAgent     (88296f7943f30a1ee3af735440b92268) C:\WINDOWS\system32\lsass.exe
22:35:42.0828 7792   PolicyAgent - ok
22:35:42.0906 7792   PptpMiniport    (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
22:35:42.0953 7792   PptpMiniport - ok
22:35:42.0968 7792   pr2ajfae - ok
22:35:42.0968 7792   ProtectedStorage (88296f7943f30a1ee3af735440b92268) C:\WINDOWS\system32\lsass.exe
22:35:42.0968 7792   ProtectedStorage - ok
22:35:43.0015 7792   ps6ajfae        (096369af44a123d0d58302f38ff35409) C:\WINDOWS\system32\drivers\ps6ajfae.sys
22:35:43.0093 7792   ps6ajfae - ok
22:35:43.0140 7792   PSched          (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
22:35:43.0203 7792   PSched - ok
22:35:43.0328 7792   Ptilink         (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
22:35:43.0609 7792   Ptilink - ok
22:35:43.0796 7792   PxHelp20        (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
22:35:44.0171 7792   PxHelp20 - ok
22:35:44.0171 7792   ql1080 - ok
22:35:44.0187 7792   Ql10wnt - ok
22:35:44.0281 7792   ql12160 - ok
22:35:44.0281 7792   ql1240 - ok
22:35:44.0296 7792   ql1280 - ok
22:35:44.0375 7792   RasAcd          (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
22:35:44.0453 7792   RasAcd - ok
22:35:44.0546 7792   RasAuto         (bc22c5e1238d4d36d65679e249c483c3) C:\WINDOWS\System32\rasauto.dll
22:35:44.0781 7792   RasAuto - ok
22:35:44.0875 7792   Rasl2tp         (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
22:35:44.0984 7792   Rasl2tp - ok
22:35:45.0234 7792   RasMan          (0c392e397b8d34aaaf19ec6119cbb788) C:\WINDOWS\System32\rasmans.dll
22:35:45.0234 7792   RasMan - ok
22:35:45.0468 7792   RasPppoe        (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
22:35:45.0750 7792   RasPppoe - ok
22:35:45.0812 7792   Raspti          (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
22:35:45.0843 7792   Raspti - ok
22:35:45.0875 7792   RDPCDD          (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
22:35:45.0906 7792   RDPCDD - ok
22:35:45.0968 7792   RDPWD           (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys
22:35:46.0031 7792   RDPWD - ok
22:35:46.0171 7792   RDSessMgr       (f83907a9a038db2e35329b039628d293) C:\WINDOWS\system32\sessmgr.exe
22:35:46.0359 7792   RDSessMgr - ok
22:35:46.0406 7792   redbook         (e0c7bbd18040b58651bac700c804861d) C:\WINDOWS\system32\DRIVERS\redbook.sys
22:35:46.0453 7792   redbook - ok
22:35:46.0484 7792   RemoteAccess    (b3f57e6115bcd4dbade9874f300655e3) C:\WINDOWS\System32\mprdim.dll
22:35:46.0546 7792   RemoteAccess - ok
22:35:46.0546 7792   rhService04v3 - ok
22:35:46.0625 7792   RpcSs           (a37311d9d628c1042a2836731787f0f3) C:\WINDOWS\system32\rpcss.dll
22:35:46.0625 7792   RpcSs - ok
22:35:46.0750 7792   RSVP            (9acee3313020a01235336c2a483afd1a) C:\WINDOWS\system32\rsvp.exe
22:35:46.0828 7792   RSVP - ok
22:35:47.0031 7792   RTLE8023xp      (badabe0940c01619e8510b90fb314929) C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys
22:35:47.0296 7792   RTLE8023xp - ok
22:35:47.0390 7792   SamSs           (88296f7943f30a1ee3af735440b92268) C:\WINDOWS\system32\lsass.exe
22:35:47.0390 7792   SamSs - ok
22:35:49.0546 7792   SBAMSvc         (bce943896289a91ad75cc5652620b1c6) D:\Program Files\Ad-Aware Antivirus\SBAMSvc.exe
22:35:49.0625 7792   SBAMSvc - ok
22:35:49.0703 7792   sbaphd          (62ba65cc0b4a4bd1eaff5fed6e2b5069) C:\WINDOWS\system32\drivers\sbaphd.sys
22:35:49.0765 7792   sbaphd - ok
22:35:49.0812 7792   sbapifs         (3fff8cda4d2f29ca06f1557e85163c30) C:\WINDOWS\system32\drivers\sbapifs.sys
22:35:49.0843 7792   sbapifs - ok
22:35:49.0921 7792   SbFw            (dc19ff9879775ac86baa9c9282573e87) C:\WINDOWS\system32\drivers\SbFw.sys
22:35:50.0015 7792   SbFw - ok
22:35:50.0312 7792   SBFWIMCL        (1dcad90cc9c0ddc7d060fd97854f8518) C:\WINDOWS\system32\DRIVERS\sbfwim.sys
22:35:50.0421 7792   SBFWIMCL - ok
22:35:50.0421 7792   SBFWIMCLMP      (1dcad90cc9c0ddc7d060fd97854f8518) C:\WINDOWS\system32\DRIVERS\SBFWIM.sys
22:35:50.0421 7792   SBFWIMCLMP - ok
22:35:50.0453 7792   sbhips          (1afd7178ab9c4fce2d332da7aa474fa6) C:\WINDOWS\system32\drivers\sbhips.sys
22:35:50.0500 7792   sbhips - ok
22:35:50.0593 7792   SBRE            (1fd538c4feb36b793d2121f20bbdc16f) C:\WINDOWS\system32\drivers\SBREdrv.sys
22:35:50.0640 7792   SBRE - ok
22:35:51.0078 7792   sbtis           (3ccb4c5686d23033fd01835bed868b4b) C:\WINDOWS\system32\drivers\sbtis.sys
22:35:51.0093 7792   sbtis - ok
22:35:51.0171 7792   SCardSvr        (c6f479218e94896738c06af5ba6ab3d3) C:\WINDOWS\System32\SCardSvr.exe
22:35:51.0390 7792   SCardSvr - ok
22:35:51.0843 7792   Schedule        (dd73c11a5c4d14945846384b90a61a4b) C:\WINDOWS\system32\schedsvc.dll
22:35:51.0859 7792   Schedule - ok
22:35:51.0875 7792   Secdrv          (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
22:35:51.0937 7792   Secdrv - ok
22:35:52.0015 7792   seclogon        (2aad9026648120fffe2a8d871bb2bbc7) C:\WINDOWS\System32\seclogon.dll
22:35:52.0015 7792   seclogon - ok
22:35:52.0062 7792   SENS            (9d01e29d59723eb73b72107b208dafe6) C:\WINDOWS\system32\sens.dll
22:35:52.0062 7792   SENS - ok
22:35:52.0093 7792   serenum         (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
22:35:52.0125 7792   serenum - ok
22:35:52.0171 7792   Serial          (d07b02f88165e69b9f17162cf592c8a6) C:\WINDOWS\system32\DRIVERS\serial.sys
22:35:52.0203 7792   Serial - ok
22:35:52.0296 7792   Sfloppy         (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
22:35:52.0484 7792   Sfloppy - ok
22:35:52.0546 7792   SharedAccess    (da5c015911f68f22ed821e9ee49ab233) C:\WINDOWS\System32\ipnathlp.dll
22:35:52.0546 7792   SharedAccess - ok
22:35:52.0578 7792   ShellHWDetection (55aae86c7c2cadf6972acd1d76c24a98) C:\WINDOWS\System32\shsvcs.dll
22:35:52.0578 7792   ShellHWDetection - ok
22:35:52.0578 7792   Simbad - ok
22:35:52.0828 7792   Skype C2C Service (0f97e7a47a52f4a36969f0fc319654c2) C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe
22:35:53.0359 7792   Skype C2C Service - ok
22:35:53.0468 7792   SkypeUpdate     (579ba0a911ff5ea70cb604cd3b744b0a) C:\Program Files\Skype\Updater\Updater.exe
22:35:53.0531 7792   SkypeUpdate - ok
22:35:53.0703 7792   SLIP            (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
22:35:53.0781 7792   SLIP - ok
22:35:53.0812 7792   SNMP            (8ac76bb022892ff3ff02d554a499f839) C:\WINDOWS\System32\snmp.exe
22:35:53.0828 7792   SNMP - ok
22:35:53.0843 7792   SNMPTRAP        (387ee606e070709383ecf3b119587b7e) C:\WINDOWS\System32\snmptrap.exe
22:35:53.0921 7792   SNMPTRAP - ok
22:35:53.0921 7792   Sparrow - ok
22:35:53.0953 7792   splitter        (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
22:35:54.0000 7792   splitter - ok
22:35:54.0031 7792   Spooler         (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
22:35:54.0031 7792   Spooler - ok
22:35:54.0046 7792   sr              (eb032822be406ef220d546ddffcf0002) C:\WINDOWS\system32\DRIVERS\sr.sys
22:35:54.0078 7792   sr - ok
22:35:54.0109 7792   srservice       (316d0e66074ae4cde641c50d3a1c5148) C:\WINDOWS\system32\srsvc.dll
22:35:54.0125 7792   srservice - ok
22:35:54.0140 7792   Srv             (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
22:35:54.0187 7792   Srv - ok
22:35:54.0234 7792   SSDPSRV         (2c0b1224aa36b4ca1753302baa855882) C:\WINDOWS\System32\ssdpsrv.dll
22:35:54.0281 7792   SSDPSRV - ok
22:35:54.0375 7792   ssmdrv          (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
22:35:54.0437 7792   ssmdrv - ok
22:35:54.0484 7792   Steam Client Service - ok
22:35:55.0062 7792   stisvc          (41508ea375c97dc2b56e5f1afc067187) C:\WINDOWS\system32\wiaservc.dll
22:35:55.0218 7792   stisvc - ok
22:35:55.0250 7792   streamip        (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
22:35:55.0312 7792   streamip - ok
22:35:55.0328 7792   swenum          (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
22:35:55.0359 7792   swenum - ok
22:35:55.0390 7792   swmidi          (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
22:35:55.0437 7792   swmidi - ok
22:35:55.0437 7792   SwPrv - ok
22:35:55.0453 7792   symc810 - ok
22:35:55.0453 7792   symc8xx - ok
22:35:55.0453 7792   sym_hi - ok
22:35:55.0468 7792   sym_u3 - ok
22:35:55.0500 7792   sysaudio        (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
22:35:55.0546 7792   sysaudio - ok
22:35:55.0593 7792   SysmonLog       (e42048198518f9162027a9984cbb7b5c) C:\WINDOWS\system32\smlogsvc.exe
22:35:55.0671 7792   SysmonLog - ok
22:35:55.0750 7792   tap0901t        (b7aee68d2e867cbf69b649b18fcedbbb) C:\WINDOWS\system32\DRIVERS\tap0901t.sys
22:35:55.0812 7792   tap0901t - ok
22:35:55.0843 7792   taphss          (0c3b2a9c4bd2dd9a6c2e4084314dd719) C:\WINDOWS\system32\DRIVERS\taphss.sys
22:35:55.0890 7792   taphss - ok
22:35:55.0937 7792   TapiSrv         (2340e6977548038c88e39a9ecbb3fadc) C:\WINDOWS\System32\tapisrv.dll
22:35:55.0937 7792   TapiSrv - ok
22:35:56.0015 7792   Tcpip           (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
22:35:56.0250 7792   Tcpip - ok
22:35:56.0296 7792   TDPIPE          (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
22:35:56.0453 7792   TDPIPE - ok
22:35:56.0500 7792   TDTCP           (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
22:35:56.0562 7792   TDTCP - ok
22:35:56.0593 7792   TermDD          (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
22:35:56.0625 7792   TermDD - ok
22:35:56.0671 7792   TermService     (52e0505408edd4ab5ccc7f83b67b4299) C:\WINDOWS\System32\termsrv.dll
22:35:56.0671 7792   TermService - ok
22:35:56.0703 7792   Themes          (55aae86c7c2cadf6972acd1d76c24a98) C:\WINDOWS\System32\shsvcs.dll
22:35:56.0703 7792   Themes - ok
22:35:56.0703 7792   TosIde - ok
22:35:56.0718 7792   TrkWks          (9e70eb419d7785c286dc458a019bab9b) C:\WINDOWS\system32\trkwks.dll
22:35:56.0718 7792   TrkWks - ok
22:35:56.0843 7792   TunngleService  (4a531079746d39026d975d3b02f7e452) d:\Program Files\Tunngle\TnglCtrl.exe
22:35:56.0968 7792   TunngleService - ok
22:35:57.0000 7792   Udfs            (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
22:35:57.0031 7792   Udfs - ok
22:35:57.0031 7792   ultra - ok
22:35:57.0093 7792   UnlockerDriver5 (bb879dcfd22926efbeb3298129898cbb) C:\Program Files\Unlocker\UnlockerDriver5.sys
22:35:57.0156 7792   UnlockerDriver5 - ok
22:35:57.0203 7792   Update          (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
22:35:57.0250 7792   Update - ok
22:35:57.0312 7792   upnphost        (e96a6baee0b2a14a38b45830d6e30697) C:\WINDOWS\System32\upnphost.dll
22:35:57.0375 7792   upnphost - ok
22:35:57.0437 7792   UPS             (eb90e28b28541ec845e5345609355ca7) C:\WINDOWS\System32\ups.exe
22:35:57.0625 7792   UPS - ok
22:35:57.0718 7792   usbehci         (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
22:35:57.0781 7792   usbehci - ok
22:35:57.0828 7792   usbhub          (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
22:35:57.0859 7792   usbhub - ok
22:35:57.0890 7792   USBSTOR         (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
22:35:57.0953 7792   USBSTOR - ok
22:35:57.0984 7792   usbuhci         (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
22:35:58.0015 7792   usbuhci - ok
22:35:58.0031 7792   VgaSave         (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
22:35:58.0046 7792   VgaSave - ok
22:35:58.0046 7792   ViaIde - ok
22:35:58.0078 7792   VolSnap         (56b191ac5fc0df219949c95a6c87afe7) C:\WINDOWS\system32\drivers\VolSnap.sys
22:35:58.0109 7792   VolSnap - ok
22:35:58.0156 7792   VSS             (7f2d7bffc4554e1c742dd3629fd1fb1b) C:\WINDOWS\System32\vssvc.exe
22:35:58.0234 7792   VSS - ok
22:35:58.0281 7792   W32Time         (a672ca3981352f8e9c30fea056e80a62) C:\WINDOWS\system32\w32time.dll
22:35:58.0281 7792   W32Time - ok
22:35:58.0296 7792   Wanarp          (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
22:35:58.0328 7792   Wanarp - ok
22:35:58.0328 7792   WDICA - ok
22:35:58.0359 7792   wdmaud          (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
22:35:58.0390 7792   wdmaud - ok
22:35:58.0421 7792   WebClient       (81fb88b975e25d76e00b69879d8a434c) C:\WINDOWS\System32\webclnt.dll
22:35:58.0437 7792   WebClient - ok
22:35:58.0562 7792   winmgmt         (70c22297534a88b0ad0568900ab5a6d9) C:\WINDOWS\system32\wbem\WMIsvc.dll
22:35:58.0562 7792   winmgmt - ok
22:35:58.0609 7792   WmdmPmSN        (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
22:35:58.0671 7792   WmdmPmSN - ok
22:35:58.0734 7792   WmiApSrv        (a2b12d80a1670511b047a7d8bb647598) C:\WINDOWS\system32\wbem\wmiapsrv.exe
22:35:58.0750 7792   WmiApSrv - ok
22:35:59.0265 7792   WMPNetworkSvc   (cdfa647aa82fdba6c9c7a06155afcb40) C:\Program Files\Windows Media Player\WMPNetwk.exe
22:35:59.0453 7792   WMPNetworkSvc - ok
22:35:59.0578 7792   WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
22:35:59.0796 7792   WPFFontCache_v0400 - ok
22:35:59.0875 7792   WS2IFSL         (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
22:35:59.0921 7792   WS2IFSL - ok
22:35:59.0968 7792   wscsvc          (b6669f49d42e09bc0f9889faa0f3336d) C:\WINDOWS\system32\wscsvc.dll
22:35:59.0968 7792   wscsvc - ok
22:36:00.0000 7792   WSTCODEC        (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
22:36:00.0109 7792   WSTCODEC - ok
22:36:00.0343 7792   wuauserv        (04550d5eb7ee82c115db547c01df09fd) C:\WINDOWS\system32\wuauserv.dll
22:36:00.0375 7792   wuauserv - ok
22:36:00.0812 7792   WudfPf          (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
22:36:01.0125 7792   WudfPf - ok
22:36:01.0296 7792   WudfRd          (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
22:36:01.0359 7792   WudfRd - ok
22:36:01.0453 7792   WudfSvc         (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
22:36:01.0515 7792   WudfSvc - ok
22:36:02.0671 7792   WZCSVC          (c2842273aaa77ac031edb87fa19a2147) C:\WINDOWS\System32\wzcsvc.dll
22:36:02.0687 7792   WZCSVC - ok
22:36:02.0703 7792   xmlprov         (24ed6935771359a5aef1fe8bf0c56f39) C:\WINDOWS\System32\xmlprov.dll
22:36:02.0828 7792   xmlprov - ok
22:36:02.0875 7792   MBR (0x1B8)     (32052574bf9f325ae309abc7bfd04460) \Device\Harddisk0\DR0
22:36:03.0406 7792   \Device\Harddisk0\DR0 - ok
22:36:03.0421 7792   Boot (0x1200)   (b2f4a4a09f2f8b894c2986a506da7468) \Device\Harddisk0\DR0\Partition0
22:36:03.0468 7792   \Device\Harddisk0\DR0\Partition0 - ok
22:36:03.0531 7792   Boot (0x1200)   (943b0ab6b5c134834597829c597429ff) \Device\Harddisk0\DR0\Partition1
22:36:03.0578 7792   \Device\Harddisk0\DR0\Partition1 - ok
22:36:03.0578 7792   ============================================================
22:36:03.0578 7792   Scan finished
22:36:03.0578 7792   ============================================================
22:36:03.0812 6436   Detected object count: 0
22:36:03.0812 6436   Actual detected object count: 0




Kod:
http://www27.zippyshare.com/v/7525814/file.html



Kod:
http://www.wklej.eu/index.php?id=8ad0d8aadc



PS. widzę że mam RECYCLER'a :( możecie dać coś co usunie go na dobre?

Re: Pomocy! :(

05 Sie 2012, 10:18

PS. widzę że mam RECYCLER'a :( możecie dać coś co usunie go na dobre?


To jest kosz ;) .

Autoruns.


W Autoruns odznacz, a następnie usuń (co się będzie dało):

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Ad-Aware Antivirus
Ad-Aware Browsing Protection
Adobe ARM
Adobe Reader Speed Launcher
APSDaemon
DivXUpdate
ISUSPM
ISUSScheduler
NeroFilterCheck
NvCplDaemon
NvMediaCenter
nwiz
RTHDCPL
SearchSettings
SunJavaUpdateSched


C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Autostart

McAfee Security Scan Plus.lnk
WinZip Quick Pick.lnk


HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components

Książka adresowa 6
LightScribe Control Panel
Microsoft Outlook Express 6


HKCU\Software\Microsoft\Windows\CurrentVersion\Run

BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}
Clownfish
DAEMON Tools Lite
Google Update
IPLA!
LightScribe Control Panel
Optimizer Pro
Pando Media Booster
Skype


HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce

InstallShieldSetup


HKLM\SOFTWARE\Microsoft\Windows CE Services\AutoStartOnConnect

NeroMobileAd


HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components

0


HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects

4shared.com Toolbar
Ad-Aware Security Toolbar
Adobe PDF Link Helper
DivX Plus Web Player HTML5 <video>
IObit Toolbar
Java(tm) Plug-In 2 SSV Helper
Java(tm) Plug-In SSV Helper
Skype Browser Helper
Windows Live Sign-in Helper


HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks

4shared.com Toolbar
Ad-Aware Security Toolbar
IObit Toolbar


HKLM\Software\Microsoft\Internet Explorer\Toolbar

4shared.com Toolbar
Ad-Aware Security Toolbar
IObit Toolbar


HKLM\Software\Microsoft\Internet Explorer\Extensions

Windows Messenger


Task Scheduler

Wszystko.


HKLM\System\CurrentControlSet\Services

Ad-Aware Service
Application Updater
AppMgmt
Autodesk Licensing Service
gupdate
gupdatem
IDriverT
JavaQuickStarterService
LightScribeService
McComponentHostService
mi-raysat_3dsmax8
NBService
NMIndexingService
npggsvc
nvsvc
PnkBstrA
pr2ajfae
SBAMSvc
Skype C2C Service
SkypeUpdate
TunngleService
WMPNetworkSvc


HKLM\System\CurrentControlSet\Services

Changer
i2omgmt
lbrtfdc
PCIDump
PDCOMP
PDFRAME
PDRELI
PDRFRAME
rhService04v3
WDICA


"{835BCA58-EBE8-415B-8E7F-457F76F15821}" = IObit Toolbar v6.2
"{fc8208f2-b1c1-4253-9e89-d518e983b7bb}" = Ad-Aware
"4shared.com Toolbar" = 4shared.com Toolbar
"McAfee Security Scan" = McAfee Security Scan Plus
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"QuickStores-Toolbar_is1" = QuickStores-Toolbar 1.1.0
"Optimizer Pro_is1" = Optimizer Pro v3.0


Odinstaluj to oprogramowanie, oraz zbędne Ci oprogramowanie.

Logi.


Uruchom OTL -> w oknie Własne opcje skanowania/skrypt wklej:

Kod:
:Processes
killallprocesses

:OTL

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\PPEengine.sys -- (rhService04v3)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/idg/idg_1325902063_259855
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com/idg/idg_1325902063_259855
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/idg/idg_1325902063_259855
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Yahoo! Search
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2233703
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\URLSearchHook: {09ec805c-cb2e-4d53-b0d3-a75a428b81c7} - C:\Program Files\4shared.com\prxtb4sha.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\URLSearchHook: {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - C:\Program Files\IObit Toolbar\IE\6.2\iobitToolbarIE.dll (Spigot, Inc.)
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\URLSearchHook: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - C:\Program Files\adawaretb\adawareDx.dll ()
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\SearchScopes\{04374A7A-F7B3-456A-8957-B4C555225AAB}: "URL" = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=382950&p={searchTerms}
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://isearch.babylon.com/web/{searchTerms}?babsrc=browsersearch&babsrc=SP_ss&affID=18474&mntrId=e00197a900000000000000ff0001faab
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.google.pl/cse?q={searchTerms}&cx=partner-pub-2489206448026482%3A4041638047&tbm=&ie=UTF-8#gsc.tab=0&gsc.q={searchTerms}
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}: "URL" = http://safesearchr.lavasoft.com/?source=3336ca5f&tbp=rbox&toolbarid=adawaretb&u=7D680D0E37FA2287D401724FFA94F936&q={searchTerms}
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2233703
IE - HKU\S-1-5-21-2025429265-484061587-682003330-1008\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 94.23.89.25:80
FF - prefs.js..CT2233703.browser.search.defaultthis.engineName: true
FF - prefs.js..browser.search.defaultenginename: "Search the web"
FF - prefs.js..browser.search.order.1: "Search the web"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=382950&ilc=12"
FF - prefs.js..browser.search.selectedEngine: "4shared.com Customized Web Search"
FF - prefs.js..browser.startup.homepage: "http://search.conduit.com/?ctid=CT2233703&SearchSource=13"
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2233703&SearchSource=2&q="
FF - user.js..browser.search.selectedEngine: "Search the web"
FF - user.js..browser.search.order.1: "Search the web"
FF - user.js..browser.search.defaultenginename: "Search the web"
FF - user.js..keyword.URL: "http://www.browsersafesearch.com?client=mozilla-firefox&cd=UTF-8&search=1&q="
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
[2012-08-03 14:28:58 | 000,000,000 | ---D | M] (4shared.com) -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Mozilla\Firefox\Profiles\lvjmoojd.default\extensions\{09ec805c-cb2e-4d53-b0d3-a75a428b81c7}
[2012-07-09 10:23:21 | 000,000,000 | ---D | M] (Ad-Aware Security Toolbar) -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Mozilla\Firefox\Profiles\lvjmoojd.default\extensions\{87934c42-161d-45bc-8cef-ef18abe2a30c}
[2012-07-05 11:45:24 | 000,000,000 | ---D | M] ("Vid-Saver") -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Mozilla\Firefox\Profiles\lvjmoojd.default\extensions\[email protected]
[2012-07-10 01:02:42 | 000,000,000 | ---D | M] (Babylon) -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Mozilla\Firefox\Profiles\lvjmoojd.default\extensions\[email protected]
[2012-06-30 16:41:09 | 000,000,000 | ---D | M] (TheBflix) -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Mozilla\Firefox\Profiles\lvjmoojd.default\extensions\[email protected]
[2012-07-09 17:15:23 | 000,000,000 | ---D | M] (Lavasoft Search Plugin) -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Mozilla\Firefox\Profiles\lvjmoojd.default\extensions\jid1-yZwVFzbsyfMrqQ@jetpack
[2011-10-26 20:53:04 | 000,000,000 | ---D | M] (toolplugin) -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Mozilla\Firefox\Profiles\lvjmoojd.default\extensions\[email protected]
[2012-08-03 16:34:05 | 000,000,915 | ---- | M] () -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Mozilla\Firefox\Profiles\lvjmoojd.default\searchplugins\conduit.xml
[2012-07-19 13:32:16 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2011-04-01 21:35:06 | 000,000,000 | ---D | M] (QuickStores-Toolbar) -- C:\Program Files\Mozilla Firefox\extensions\[email protected]
[2012-07-09 17:15:02 | 000,000,616 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\adawaretb.xml
[2011-12-10 19:09:20 | 000,002,336 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
[2010-08-12 10:21:14 | 000,002,486 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\iMeshWebSearch.xml
[2011-10-26 20:53:04 | 000,000,158 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Search the web.src
[2012-01-07 04:07:45 | 000,002,415 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\v9.xml
CHR - Extension: Skype Click to Call = C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.1.0.10441_0\
O3 - HKLM\..\Toolbar: (no name) - {DFEFCDEE-CF1A-4FC8-89AF-189327213627} - No CLSID value found.
O4 - HKLM..\Run: []  File not found
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\AVerQuick.lnk =  File not found
[2012-08-03 14:31:46 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2012-08-03 14:31:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\4shared.com
[2012-08-03 14:31:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\Temp
[2012-08-03 14:31:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\Conduit
[2012-08-03 14:31:41 | 000,000,000 | ---D | C] -- C:\Program Files\4shared.com
[2012-08-03 14:28:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\McAfee Security Scan
[2012-08-03 14:28:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\McAfee
[2012-08-03 14:28:19 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan
[2012-07-30 20:38:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Search Settings
[2012-07-30 20:38:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Spigot
[2012-07-30 20:38:32 | 000,000,000 | ---D | C] -- C:\Program Files\IObit Toolbar
[2012-07-30 20:38:32 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater
[2012-07-15 23:21:52 | 000,000,000 | ---D | C] -- C:\Program Files\Optimizer Pro
[2012-07-09 20:35:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\adawarebp
[2012-07-09 17:15:25 | 000,000,000 | ---D | C] -- C:\Program Files\Toolbar Cleaner
[2012-07-09 12:52:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\adaware
[2012-07-09 12:52:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Ad-Aware Browsing Protection
[2012-07-09 12:51:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\VDD
[2012-07-09 12:51:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Lavasoft
[2012-07-09 10:23:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\adawaretb
[2012-07-09 10:23:16 | 000,000,000 | ---D | C] -- C:\Program Files\adawaretb
[2012-07-09 10:21:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Ad-Aware Antivirus
[2011-05-20 19:01:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2009-10-25 16:27:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\VirtualFarm
[2009-11-25 15:29:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Wru
[2011-03-07 23:45:29 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2011-03-07 23:54:47 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{55A29068-F2CE-456C-9148-C869879E2357}
[2010-12-27 22:49:25 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{74E513D3-4879-4E42-A0B8-F85EE8C789EA}
[2012-02-22 16:30:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\100
[2011-10-29 12:30:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\PACE Anti-Piracy
[2011-10-15 15:27:43 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\{1C533CDB-BAC7-4600-B3DE-0B628D9AC643}
@Alternate Data Stream - 925 bytes -> C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Cookies:lfA4hqQZsKuRZmDXc
@Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:671329E4
@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:05EE1EEF
@Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:A8ADE5D8
@Alternate Data Stream - 121 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:C28667BE
@Alternate Data Stream - 1131 bytes -> C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Microsoft:19tf4A3TrLzABbgHgXJPfffj7
@Alternate Data Stream - 110 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:888AFB86
@Alternate Data Stream - 1031 bytes -> C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Microsoft:kUl2Mxpr2qCvJ4Hw3i4fBYVD758

:Files
C:\Program Files\Application Updater
C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Skype\Toolbars
D:\Program Files\Ad-Aware Antivirus
C:\Program Files\McAfee Security Scan
C:\Program Files\Google\Update
C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\Google\Update
C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Ustawienia lokalne\Dane aplikacji\Unity
C:\Program Files\4shared.com
C:\Program Files\IObit Toolbar
C:\Program Files\adawaretb
C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Ad-Aware Browsing Protection
C:\Program Files\Common Files\Spigot
C:\Program Files\Optimizer Pro
RECYCLER /alldrives
C:\found.*
C:\WINDOWS\tasks\*.*
C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Pulpit\Autoruns.zip
C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Pulpit\SysinternalsSuite.zip
C:\Documents and Settings\All Users\Dane aplikacji\133C
C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software
C:\Documents and Settings\All Users\Dane aplikacji\boost_interprocess

:Reg
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]

:Commands
[emptyflash]
[clearallrestorepoints]
[emptytemp]


Klikasz Wykonaj skrypt. Dajesz log z usuwania. Następnie podaj log z ADWCleaner (z opcji Delete) -> http://www.instalki.pl/programy/downloa ... eaner.html + nowe logi z OTL.

Re: Pomocy! :(

05 Sie 2012, 10:38

Mam to wszystko pousuwać co dałeś? bo jeżeli tak to Ad-aware to antywirus i to z tego co wiem całkiem dobry :P a znalazłem w nim buga na licencje więc go używam :D więc to odpada jeżeli tak :P a z tym RECYCLER'em to padłem :D inni mówili mi że to wirus jakiś i nie da się go usunąć... i mam usuwać programy typu skype? :D przecież ich używam :D

Re: Pomocy! :(

05 Sie 2012, 11:01

To co uzywasz mozesz zostawic reszte usun oraz podaj logi o ktore prosil kominekl tylko wrzuc na wklej.eu a na forum podaj linki wtedy latwiej czyta sie logi

Re: Pomocy! :(

05 Sie 2012, 12:25

http://www.wklej.eu/index.php?id=3bac2665e6

http://www.wklej.eu/index.php?id=1985ad4810

Proszę bardzo :) muszę antywirusa ściągać na nowo ;(

Re: Komputer strasznie zwolnił i przerywa czasami dźwięk

05 Sie 2012, 12:36

Proszę bardzo :) muszę antywirusa ściągać na nowo ;(


Szkoda, że mnie nie było... . Teraz Ad-Adware już nie będzie działać, bo skrypt usuwał też resztki po Nim. Ponadto i tak jest on do wywalki, bo masz Avira`e. Wykonaj resztę instrukcji.

Re: Komputer strasznie zwolnił i przerywa czasami dźwięk

05 Sie 2012, 12:42

Przecież już all wykonałem :D ale Avira to jest największe "guuffno" pod słońcem... :P

Re: Komputer strasznie zwolnił i przerywa czasami dźwięk

05 Sie 2012, 13:03

Nie podales nowych logow

Re: Komputer strasznie zwolnił i przerywa czasami dźwięk

05 Sie 2012, 13:14

Czyli znów mam skanować OTL?? to ja wychodzę kompa zostawię włączonego ;P

Re: Komputer strasznie zwolnił i przerywa czasami dźwięk

05 Sie 2012, 13:27

Luqass[PL] napisał(a):Czyli znów mam skanować OTL?? to ja wychodzę kompa zostawię włączonego ;P


Tak. Czekamy na nowe logi z OTL.

ale Avira to jest największe "guuffno" pod słońcem... :P


Fakt, aczkolwiek jest on u Ciebie zainstalowany. Jak chcesz to Go odinstaluj i zainstaluj lekkiego (i wcale nie tak tragicznego, jak to niektórzy mówią) Avast`a -> http://www.instalki.pl/programy/downloa ... virus.html.

Re: Komputer strasznie zwolnił i przerywa czasami dźwięk

05 Sie 2012, 14:04

No Avast jest dobry ale wkurza mnie "Baza wirusów Avast została zaktualizowana" :P

a tu nowe logi :P :http://www.wklej.eu/index.php?id=557c669803

Re: Komputer strasznie zwolnił i przerywa czasami dźwięk

05 Sie 2012, 17:17

Autoruns.


Nie wykonałeś wszystkiego. Wykonaj.

Oprogramowanie.


Upewnij sie, że odinstalowałeś wszystko, o co prosiłem.

No Avast jest dobry ale wkurza mnie "Baza wirusów Avast została zaktualizowana" :P


Musi być zaktualizowana.

Logi.


Uruchom OTL -> w oknie Własne opcje skanowania/skrypt wklej:

:OTL

SRV - File not found [Auto | Stopped] -- D:\Program Files\Ad-Aware Antivirus\AdAwareService.exe -- (Ad-Aware Service)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
O3 - HKLM\..\Toolbar: (no name) - {6c97a91e-4524-4019-86af-2aa2d567bf5c} - No CLSID value found.
O4 - HKLM..\Run: [Ad-Aware Antivirus] "D:\Program Files\Ad-Aware Antivirus\AdAwareLauncher" --windows-run File not found
O4 - HKLM..\Run: [Ad-Aware Browsing Protection] "C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Ad-Aware Browsing Protection\adawarebp.exe" File not found
@Alternate Data Stream - 925 bytes -> C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Cookies:lfA4hqQZsKuRZmDXc
@Alternate Data Stream - 1131 bytes -> C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Microsoft:19tf4A3TrLzABbgHgXJPfffj7
@Alternate Data Stream - 1031 bytes -> C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Microsoft:kUl2Mxpr2qCvJ4Hw3i4fBYVD758

:Files
RECYCLER /alldrives
C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Optimizer Pro
C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Ad-Aware Antivirus
C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\DSS
C:\Documents and Settings\LocalService.ZARZĄDZANIE NT.000\Dane aplikacji\Ad-Aware Antivirus
C:\Documents and Settings\Łukasz\Dane aplikacji\QuickStoresToolbar
C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\QuickStoresToolbar
C:\Documents and Settings\Łukasz.KOMPUTEREKXD\Dane aplikacji\Unity

:Commands
[emptyflash]
[clearallrestorepoints]
[emptytemp]


Klikasz Wykonaj skrypt. Dajesz log z usuwania. Następnie podajesz nowe logi z OTL (oba).

Re: Komputer strasznie zwolnił i przerywa czasami dźwięk

05 Sie 2012, 17:24

No Avast jest dobry ale wkurza mnie "Baza wirusów Avast została zaktualizowana"

Dźwięk powiadomień Avasta można sobie wyłączyć.
Wyślij odpowiedź