misiek998 / 9 lat temu | Download | Plaintext | Odpowiedz |

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
ComboFix 08-12-20.05 - Grzesiek 2008-12-21 20:16:25.2 - NTFSx86
Microsoft Windows XP Home Edition  5.1.2600.2.1250.1.1045.18.511.212 [GMT 1:00]
Uruchomiony z: c:\documents and settings\Grzesiek\Pulpit\ComboFix.exe
Użyto następujących komend :: c:\documents and settings\Grzesiek\Pulpit\CFScript.txt
 * Utworzono nowy punkt przywracania

[COLOR=RED][B]UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !![/B][/COLOR]

FILE ::
c:\windows\go
c:\windows\system32\4543534565256.cfg
c:\windows\system32\svuhost.cfg
c:\windows\system32\svuhost.exe
.

(((((((((((((((((((((((((((((((((((((((   Usunięto   )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\go
c:\windows\system32\4543534565256.cfg
c:\windows\system32\svuhost.cfg
c:\windows\system32\svuhost.exe

.
(((((((((((((((((((((((((   Pliki utworzone od 2008-11-21 do 2008-12-21  )))))))))))))))))))))))))))))))
.

2008-12-21 12:03 . 2008-12-21 12:15	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\Tibia
2008-12-19 21:18 . 2008-12-19 21:18	<DIR>	d--------	c:\documents and settings\LocalService\Pulpit
2008-12-19 16:02 . 2008-12-19 16:02	<DIR>	d--------	c:\windows\system32\Adobe
2008-12-15 18:15 . 2008-12-15 18:15	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\ipla
2008-12-15 18:14 . 2008-12-15 18:14	<DIR>	d--------	c:\program files\WinPcap
2008-12-15 18:14 . 2008-12-15 18:14	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\Sytexis Software
2008-12-15 05:59 . 2008-12-21 20:18	<DIR>	d--h-----	c:\documents and settings\Michał\Ustawienia lokalne
2008-12-15 05:59 . 2008-12-21 20:18	<DIR>	d--h-----	c:\documents and settings\Michał\Ustawienia lokalne
2008-12-15 05:59 . 2008-12-15 06:00	<DIR>	d---s----	c:\documents and settings\Michał\Ulubione
2008-12-15 05:59 . 2008-12-15 06:00	<DIR>	d---s----	c:\documents and settings\Michał\Ulubione
2008-12-15 05:59 . 2008-06-09 16:02	<DIR>	d--h-----	c:\documents and settings\Michał\Szablony
2008-12-15 05:59 . 2008-06-09 16:02	<DIR>	d--h-----	c:\documents and settings\Michał\Szablony
2008-12-15 05:59 . 2008-06-09 17:57	<DIR>	d--------	c:\documents and settings\Michał\Pulpit
2008-12-15 05:59 . 2008-06-09 17:57	<DIR>	d--------	c:\documents and settings\Michał\Pulpit
2008-12-15 05:59 . 2008-12-15 06:00	<DIR>	d---s----	c:\documents and settings\Michał\Moje dokumenty
2008-12-15 05:59 . 2008-12-15 06:00	<DIR>	d---s----	c:\documents and settings\Michał\Moje dokumenty
2008-12-15 05:59 . 2008-06-09 17:57	<DIR>	dr-------	c:\documents and settings\Michał\Menu Start
2008-12-15 05:59 . 2008-06-09 17:57	<DIR>	dr-------	c:\documents and settings\Michał\Menu Start
2008-12-15 05:59 . 2008-12-15 06:00	<DIR>	dr-h-----	c:\documents and settings\Michał\Dane aplikacji
2008-12-15 05:59 . 2008-12-15 06:00	<DIR>	dr-h-----	c:\documents and settings\Michał\Dane aplikacji
2008-12-15 05:59 . 2008-12-15 06:01	<DIR>	d--------	c:\documents and settings\Michał
2008-12-13 22:53 . 2008-12-13 22:53	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\Toolbars
2008-12-13 22:53 . 2008-12-13 22:53	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\Desktopicon
2008-12-12 19:47 . 2008-12-12 19:47	<DIR>	d--------	c:\program files\VisualTaskTips
2008-12-12 17:05 . 2008-12-12 17:05	3,932,214	--a------	c:\windows\BricoPack Wallpaper.bmp
2008-12-12 17:05 . 2008-12-12 17:05	64,502	--a------	c:\windows\BricoPackUninst.cmd
2008-12-12 17:03 . 2008-12-12 17:03	<DIR>	d--------	c:\windows\BricoPacks
2008-12-12 17:03 . 2008-12-12 17:05	6,120	--a------	c:\windows\BricoPackFoldersDelete.cmd
2008-12-11 14:31 . 2004-01-25 00:00	70,656	--a------	c:\windows\system32\yv12vfw.dll
2008-12-10 20:29 . 2008-12-10 20:29	20	--a------	c:\windows\mafosav.INI
2008-12-10 17:39 . 2008-12-10 17:39	<DIR>	d--------	c:\documents and settings\All Users\Dane aplikacji\Hagel Technologies
2008-12-08 14:57 . 2001-03-02 10:41	634	--a------	c:\windows\system32\MAPISVC.INF
2008-12-06 15:55 . 2008-12-06 15:59	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\BESTplayer
2008-12-06 09:12 . 2008-12-06 09:20	52	--a------	c:\windows\MobiTrans.ini
2008-12-03 19:52 . 2008-12-03 19:52	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\Media Player Classic
2008-12-03 19:36 . 2008-12-04 16:00	<DIR>	d--------	c:\program files\NAPI-PROJEKT
2008-11-30 23:13 . 2008-12-20 15:13	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\uTorrent
2008-11-30 21:50 . 2008-11-30 21:50	<DIR>	d--------	c:\program files\AviSynth 2.5
2008-11-30 21:50 . 2004-02-22 10:11	719,872	--a------	c:\windows\system32\devil.dll
2008-11-30 21:50 . 2006-10-07 17:43	502,784	--a------	c:\windows\x2.64.exe
2008-11-30 21:50 . 2007-05-17 17:30	318,976	--a------	c:\windows\system32\avisynth.dll
2008-11-30 21:50 . 2005-02-28 13:16	240,128	--a------	c:\windows\system32\x.264.exe
2008-11-30 21:50 . 2006-04-12 09:47	217,073	--a------	c:\windows\meta4.exe
2008-11-30 21:50 . 2004-01-25 00:00	70,656	--a------	c:\windows\system32\i420vfw.dll
2008-11-30 21:50 . 2006-04-05 08:09	66,560	--a------	c:\windows\MOTA113.exe
2008-11-30 21:50 . 2005-07-14 12:31	27,648	--a------	c:\windows\system32\AVSredirect.dll
2008-11-28 10:16 . 2008-11-28 10:16	<DIR>	d--------	c:\documents and settings\All Users\Dane aplikacji\Soulseek
2008-11-27 18:45 . 2008-11-27 18:49	21,840	--a----t-	c:\windows\system32\SIntfNT.dll
2008-11-27 18:45 . 2008-11-27 18:49	17,212	--a----t-	c:\windows\system32\SIntf32.dll
2008-11-27 18:45 . 2008-11-27 18:49	12,067	--a----t-	c:\windows\system32\SIntf16.dll
2008-11-25 20:36 . 2008-11-25 20:38	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\PC Suite
2008-11-25 20:36 . 2008-11-25 21:07	<DIR>	d--------	c:\documents and settings\Grzesiek\Dane aplikacji\Nokia
2008-11-25 20:36 . 2008-11-25 20:36	<DIR>	d--------	c:\documents and settings\All Users\Dane aplikacji\PC Suite
2008-11-25 20:35 . 2008-11-25 20:35	<DIR>	d--------	c:\program files\PC Connectivity Solution
2008-11-25 20:35 . 2008-11-25 20:35	<DIR>	d--------	c:\program files\DIFX
2008-11-25 20:35 . 2008-11-25 20:35	<DIR>	d--------	c:\program files\Common Files\PCSuite
2008-11-25 20:35 . 2008-11-25 20:35	<DIR>	d--------	c:\program files\Common Files\Nokia
2008-11-25 20:35 . 2007-09-17 15:53	21,632	--a------	c:\windows\system32\drivers\pccsmcfd.sys
2008-11-25 20:34 . 2008-11-25 20:36	<DIR>	d----c---	c:\windows\system32\DRVSTORE
2008-11-25 20:34 . 2008-05-07 07:38	90,624	--a------	c:\windows\system32\nmwcdcls.dll
2008-11-25 20:33 . 2008-11-25 20:33	<DIR>	d--------	c:\documents and settings\All Users\Dane aplikacji\Installations
2008-11-23 20:46 . 2008-11-23 20:46	<DIR>	d--------	c:\documents and settings\Grzesiek\.gstreamer-0.10
2008-11-21 06:41 . 2008-11-21 06:42	639,224	--a------	c:\windows\system32\drivers\sptd.sys

.
((((((((((((((((((((((((((((((((((((((((   Sekcja Find3M   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-21 18:52	---------	d-----w	c:\documents and settings\All Users\Dane aplikacji\Kaspersky Lab
2008-12-21 18:50	778,272	--sha-w	c:\windows\system32\drivers\fidbox2.dat
2008-12-21 18:50	6,884	--sha-w	c:\windows\system32\drivers\fidbox2.idx
2008-12-21 18:50	5,225,504	--sha-w	c:\windows\system32\drivers\fidbox.dat
2008-12-21 18:50	45,048	--sha-w	c:\windows\system32\drivers\fidbox.idx
2008-12-21 16:09	---------	d---a-w	c:\documents and settings\All Users\Dane aplikacji\TEMP
2008-12-19 20:07	---------	d--h--w	c:\program files\InstallShield Installation Information
2008-12-12 16:05	219,648	----a-w	c:\windows\system32\uxtheme.dll
2008-12-10 18:28	---------	d-----w	c:\documents and settings\Grzesiek\Dane aplikacji\skypePM
2008-12-10 18:28	---------	d-----w	c:\documents and settings\Grzesiek\Dane aplikacji\Skype
2008-12-08 13:56	---------	d-----w	c:\program files\Common Files\InstallShield
2008-11-28 09:03	---------	d-----w	c:\program files\Tlen.pl
2008-11-21 21:22	---------	d-----w	c:\documents and settings\Grzesiek\Dane aplikacji\Winamp
2008-11-21 21:20	---------	d-----w	c:\program files\Winamp
2008-11-19 05:41	---------	d-----w	c:\program files\Common Files\INCA Shared
2008-11-18 16:22	---------	d-----w	c:\documents and settings\All Users\Dane aplikacji\ipla
2008-11-18 16:21	1,700,352	----a-w	c:\windows\system32\gdiplus.dll
2008-11-16 15:46	---------	d-----w	c:\program files\Progetto Italiano 1
2008-11-16 15:23	306,432	----a-w	c:\windows\system32\TuneUpDefragService.exe
2008-11-16 15:23	---------	d-----w	c:\documents and settings\Grzesiek\Dane aplikacji\TuneUp Software
2008-11-16 15:23	---------	d-----w	c:\documents and settings\All Users\Dane aplikacji\TuneUp Software
2008-11-16 15:22	---------	d-----w	c:\program files\Common Files\Wise Installation Wizard
2008-11-16 12:07	88	--sh--r	c:\documents and settings\All Users\Dane aplikacji\71D50EF7EF.sys
2008-11-16 12:07	848	--sha-w	c:\documents and settings\All Users\Dane aplikacji\KGyGaAvL.sys
2008-11-16 12:00	---------	d-----w	c:\program files\Skype
2008-11-16 11:39	---------	d-----w	c:\documents and settings\Grzesiek\Dane aplikacji\OpenOffice.org
2008-11-16 11:37	---------	d-----w	c:\program files\OpenOffice.org 3
2008-10-16 13:13	202,776	----a-w	c:\windows\system32\wuweb.dll
2008-10-16 13:13	1,809,944	----a-w	c:\windows\system32\wuaueng.dll
2008-10-16 13:12	561,688	----a-w	c:\windows\system32\wuapi.dll
2008-10-16 13:12	323,608	----a-w	c:\windows\system32\wucltui.dll
2008-10-16 13:09	92,696	----a-w	c:\windows\system32\cdm.dll
2008-10-16 13:09	66,584	----a-w	c:\windows\system32\wuauclt.exe
2008-10-16 13:09	43,544	----a-w	c:\windows\system32\wups2.dll
2008-10-16 13:08	34,328	----a-w	c:\windows\system32\wups.dll
2006-05-03 09:06	163,328	--sh--r	c:\windows\system32\flvDX.dll
2007-02-21 10:47	31,232	--sh--r	c:\windows\system32\msfDX.dll
2008-03-16 12:30	216,064	--sh--r	c:\windows\system32\nbDX.dll
.

(((((((((((((((((((((((((((((((((((((   Wpisy startowe rejestru   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane 
REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" [2008-04-25 201992]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2008-04-01 36352]
"cFosSpeed"="e:\program files\cfosspeed\cFosSpeed.exe" [2007-10-17 854992]
"nForce Tray Options"="sstray.exe" [2002-11-13 c:\windows\system32\sstray.exe]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2006-03-02 15360]

c:\documents and settings\Grzesiek\Menu Start\Programy\Autostart\
DU Meter.lnk - e:\program files\DU Meter\DUMeter.exe [2008-12-10 2582288]
RocketDock.lnk - c:\windows\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe [2007-03-18 630784]
Skr˘t do VisualTaskTips.exe.lnk - c:\program files\VisualTaskTips\VisualTaskTips.exe [2008-06-22 65536]
TransBar.lnk - c:\windows\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe [2005-06-01 65536]
UberIcon.lnk - c:\windows\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe [2006-05-21 180224]
Y'z Shadow.lnk - c:\windows\BricoPacks\Vista Inspirat 2\YzShadow\YzShadow.exe [2006-05-21 155648]

c:\documents and settings\All Users\Menu Start\Programy\Autostart\
BTTray.lnk - e:\program files\WIDCOMM\Oprogramowanie interfejsu Bluetooth\BTTray.exe [2006-05-12 581693]
SATARaid.lnk - c:\program files\Silicon Image\SiISATARaid\SATARaid.exe [2001-12-31 598069]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.I420"= i420vfw.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
--a------ 2006-03-02 13:00 15360 c:\windows\system32\ctfmon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFast Schedule]
--a------ 2007-12-19 15:09 2846720 c:\program files\WinFast\WFDTV\WFWIZ.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinFastDTV]
--a------ 2007-12-21 12:34 90112 c:\program files\WinFast\WFDTV\DTVSchdl.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Google Update"="c:\documents and settings\Grzesiek\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe" /c

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_06\bin\jusched.exe"
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"e:\\XTCS Counter-Strike 1.6 Final Release\\cstrike.exe"=
"e:\\Program Files\\DAP Premium\\DAP.exe"=
"c:\\Program Files\\Gadu-Gadu\\gg.exe"=
"e:\\Program Files\\Nowe Gadu-Gadu\\gg.exe"=
"f:\\inne\\programy\\SoulseekNS\\slsk.exe"=
"e:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Java\\jre1.6.0_06\\launch4j-tmp\\JDownloader.exe"=
"c:\\WINDOWS\\system32\\java.exe"=

R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2008-01-29 32784]
R0 Si3112r;Silicon Image SiI 3112 SATARaid Controller;c:\windows\system32\DRIVERS\si3112r.sys [2001-12-31 84529]
R2 DUMeterSvc;DU Meter Service;e:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService [2008-12-10 1382672]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\DRIVERS\klfltdev.sys [2008-03-13 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\DRIVERS\klim5.sys [2008-03-25 24592]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2007-01-25 42000]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost  - NetSvcs
UxTuneUp

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{03c3839f-3669-11dd-af13-000c766db674}]
\Shell\AutoRun\command - H:\LaunchU3.exe -a

*Newly Created Service* - CATCHME
.
Zawartość folderu 'Zaplanowane zadania'

2008-12-19 c:\windows\Tasks\1-Click Maintenance.job
- e:\program files\TuneUp Utilities 2008\OneClick.exe [2007-12-21 15:17]
.
.
------- Skan uzupełniający -------
.
uInternet Connection Wizard,ShellNext = iexplore
IE: &Clean Traces - e:\program files\DAP Premium\Privacy Package\dapcleanerie.htm
IE: &Download with &DAP - e:\program files\DAP Premium\dapextie.htm
IE: Add to Banner Ad Blocker - c:\program files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
IE: Download &all with DAP - e:\program files\DAP Premium\dapextie2.htm
IE: E&ksport do programu Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: Pobierz z USDownloaderem - e:\pobrane\USDownloader_1.3.5.1_PL_-_15.11.2008__AMH__\USDownloader 1.3.5.1 PL - 15.11.2008__AMH__\Ext\downloadie.html
IE: Wyślij do interfejsu &Bluetooth - e:\program files\WIDCOMM\Oprogramowanie interfejsu Bluetooth\btsendto_ie_ctx.htm
TCP: {81EFAEC2-1DB0-4327-82EB-2DCA5A73E4B1} = 194.204.152.34,194.204.159.1
TCP: {90390A5C-580F-4F7A-BA5B-017F4469AD4F} = 194.204.159.1,194.204.152.34
Name-Space Handler: FTP\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - e:\progra~2\DAPPRE~1\dapie.dll
Name-Space Handler: HTTP\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - e:\progra~2\DAPPRE~1\dapie.dll
FF - ProfilePath - c:\documents and settings\Grzesiek\Dane aplikacji\Mozilla\Firefox\Profiles\amx08vae.default\
FF - prefs.js: browser.search.defaulturl - hxxp://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&invocationType=tb50ffwinampie7&query=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: keyword.URL - hxxp://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&invocationType=tb50ffwinampab&query=
FF - plugin: e:\programy2\Opera\program\plugins\npdsplay.dll
FF - plugin: e:\programy2\Opera\program\plugins\npwmsdrm.dll
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-21 20:18:48
Windows 5.1.2600 Dodatek Service Pack 2 NTFS

skanowanie ukrytych procesów ... 

skanowanie ukrytych wpisów autostartu ...

skanowanie ukrytych plików ... 

skanowanie pomyślnie ukończone
ukryte pliki: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\system\ControlSet001\Services\DUMeterSvc]
"ImagePath"="e:\program files\DU Meter\DUMeterSvc.exe /startedbyscm:E1F6D4BE-40E33354-DUMeterService"
.
--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------

- - - - - - - > 'winlogon.exe'(1436)
c:\windows\system32\klogon.dll
.
Czas ukończenia: 2008-12-21 20:20:03
ComboFix-quarantined-files.txt  2008-12-21 19:19:55
ComboFix2.txt  2008-12-21 18:54:44

Przed: 3 452 960 768 bajtów wolnych
Po: 3,442,380,800 bajtów wolnych

235	--- E O F ---	2008-06-09 20:51:39