dds / 6 lat, 8 miesięcy temu | Download | Plaintext | Odpowiedz |

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
.
DDS (Ver_11-03-05.01) - NTFSx86  
Run by xpp at 12:53:58,67 on 2011-04-06
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_24
Microsoft Windows XP Home Edition  5.1.2600.3.1250.48.1045.18.2047.1345 [GMT 2:00]
.
AV: ESET NOD32 Antivirus 4.2 *Disabled/Outdated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Mozilla Firefox 4.0 Beta 12\firefox.exe
C:\DOCUME~1\xpp\USTAWI~1\Temp\windmijm.exe
C:\Program Files\Mozilla Firefox 4.0 Beta 12\plugin-container.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\xpp\Pulpit\rtg\0njn0uqj.exe
C:\WINDOWS\system32\WINMINE.EXE
C:\Documents and Settings\xpp\Pulpit\dds.com
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://google.pl/
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
mRun: [LXCGCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\LXCGtime.dll,_RunDLLEntry@16
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
uPolicies-system: DisableTaskMgr = 1 (0x1)
uPolicies-system: DisableRegistryTools = 1 (0x1)
mPolicies-system: EnableLUA = 0 (0x0)
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\progra~1\micros~2\INetRepl.dll
IE: {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\progra~1\micros~2\INetRepl.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1301709182531
DPF: {68282C51-9459-467B-95BF-3C0E89627E55} - hxxp://www.mks.com.pl/skaner/SkanerOnline.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: AtiExtEvent - Ati2evxx.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\docume~1\xpp\daneap~1\mozilla\firefox\profiles\wnghj83c.default\
FF - prefs.js: browser.startup.homepage - google.pl
FF - plugin: c:\documents and settings\all users\dane aplikacji\gadu-gadu 10\_userdata\npgg.4.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
.
============= SERVICES / DRIVERS ===============
.
R?2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2011-1-12 810144]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2010-12-21 115008]
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2010-12-21 94872]
R1 VBoxDrv;VirtualBox Service;c:\windows\system32\drivers\VBoxDrv.sys [2011-3-12 160560]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\drivers\VBoxUSBMon.sys [2011-3-12 44784]
R3 abp470n5;abp470n5;\??\c:\windows\system32\drivers\grolgp.sys --> c:\windows\system32\drivers\grolgp.sys [?]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\drivers\VBoxNetAdp.sys [2011-2-17 111152]
R3 VBoxNetFlt;VBoxNetFlt Service;c:\windows\system32\drivers\VBoxNetFlt.sys [2011-2-17 122032]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2011-2-26 1691480]
S3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\drivers\ewusbnet.sys --> c:\windows\system32\drivers\ewusbnet.sys [?]
S3 massfilter;ZTE Mass Storage Filter Driver;c:\windows\system32\drivers\massfilter.sys [2011-3-25 9728]
S3 ZTEusbnet;ZTE USB-NDIS miniport;c:\windows\system32\drivers\ZTEusbnet.sys [2011-3-25 114688]
S3 ZTEusbvoice;ZTE VoUSB Port;c:\windows\system32\drivers\zteusbvoice.sys [2011-3-25 105088]
.
=============== Created Last 30 ================
.
2011-04-02 01:53:21	--------	d-----w-	c:\program files\SkanerOnline
2011-04-02 01:52:57	--------	d-s---w-	c:\documents and settings\xpp\UserData
2011-04-02 01:14:38	--------	d-----w-	c:\program files\ESET
2011-03-26 04:27:46	--------	d-----w-	c:\docume~1\xpp\daneap~1\Macrovision
2011-03-25 16:52:28	101120	----a-r-	c:\windows\system32\drivers\ewusbmdm.sys
2011-03-25 16:52:01	--------	d-----w-	c:\program files\Vodafone
2011-03-25 16:51:19	--------	d-----w-	c:\docume~1\xpp\ustawi~1\daneap~1\Downloaded Installations
2011-03-25 11:36:36	105088	----a-r-	c:\windows\system32\drivers\ZTEusbnmea.sys
2011-03-25 11:36:27	105088	----a-r-	c:\windows\system32\drivers\ZTEusbser6k.sys
2011-03-25 11:36:22	105088	----a-r-	c:\windows\system32\drivers\zteusbvoice.sys
2011-03-25 11:36:14	105088	----a-r-	c:\windows\system32\drivers\ZTEusbmdm6k.sys
2011-03-25 11:36:05	114688	----a-r-	c:\windows\system32\drivers\ZTEusbnet.sys
2011-03-25 11:13:03	9728	----a-r-	c:\windows\system32\drivers\massfilter.sys
2011-03-25 11:12:52	--------	d-----w-	c:\docume~1\alluse~1\daneap~1\Vodafone
2011-03-25 10:04:46	11381	----a-w-	c:\windows\E220AutoRunLog.tmp
2011-03-23 10:36:26	--------	d-----w-	c:\docume~1\xpp\ustawi~1\daneap~1\{D53238E8-3427-491E-A57E-097FA966AAC1}
2011-03-22 10:44:56	--------	d-----w-	c:\windows\pss
2011-03-22 10:31:37	--------	d-----w-	c:\program files\Lx_cats
2011-03-22 10:30:51	10368	-c--a-w-	c:\windows\system32\dllcache\hidusb.sys
2011-03-22 10:30:51	10368	----a-w-	c:\windows\system32\drivers\hidusb.sys
2011-03-22 10:30:47	25856	-c--a-w-	c:\windows\system32\dllcache\usbprint.sys
2011-03-22 10:30:47	25856	----a-w-	c:\windows\system32\drivers\usbprint.sys
2011-03-17 06:25:22	--------	d-----w-	c:\program files\Maxis Broadband
2011-03-17 00:42:27	--------	d-----r-	c:\program files\Skype
2011-03-16 20:47:14	--------	d-----w-	c:\program files\SubEdit-Player
2011-03-15 09:58:51	--------	d-----w-	c:\program files\Wisdom-soft ScreenHunter 5 Free
2011-03-12 17:16:22	--------	d-----w-	c:\program files\uTorrent
2011-03-12 17:15:49	--------	d-----w-	c:\docume~1\xpp\daneap~1\uTorrent
2011-03-12 14:17:30	--------	d-----w-	c:\documents and settings\xpp\VirtualBox VMs
2011-03-12 14:16:59	--------	d-----w-	c:\documents and settings\xpp\.VirtualBox
2011-03-12 14:12:43	160560	----a-w-	c:\windows\system32\drivers\VBoxDrv.sys
2011-03-12 14:12:39	44784	----a-w-	c:\windows\system32\drivers\VBoxUSBMon.sys
2011-03-12 14:12:33	--------	d-----w-	c:\program files\Oracle
2011-03-12 13:57:28	--------	d-----w-	c:\docume~1\xpp\ustawi~1\daneap~1\VMware
2011-03-09 06:14:07	--------	d-----w-	c:\program files\Microsoft ActiveSync
2011-03-09 05:10:49	221184	----a-w-	c:\windows\system32\wmpns.dll
2011-03-09 05:00:33	--------	d-----w-	C:\Navigo
.
==================== Find3M  ====================
.
2011-03-02 19:52:46	73728	----a-w-	c:\windows\system32\javacpl.cpl
2011-03-02 19:52:45	472808	----a-w-	c:\windows\system32\deployJava1.dll
2011-02-27 14:44:46	13816	----a-w-	c:\windows\system32\unikey.sys
2011-02-26 16:44:39	0	----a-w-	c:\windows\ativpsrm.bin
2011-02-17 17:06:08	135472	----a-w-	c:\windows\system32\VBoxNetFltNotify.dll
2011-01-26 23:05:56	17252352	----a-w-	c:\windows\system32\atioglxx.dll
2011-01-26 23:01:00	57344	----a-w-	c:\windows\system32\aticalrt.dll
2011-01-26 23:00:54	53248	----a-w-	c:\windows\system32\aticalcl.dll
2011-01-26 22:59:36	4636672	----a-w-	c:\windows\system32\aticaldd.dll
2011-01-26 22:52:46	462848	----a-w-	c:\windows\system32\ATIDEMGX.dll
2011-01-26 22:51:42	302080	----a-w-	c:\windows\system32\ati2dvag.dll
2011-01-26 22:42:00	4029824	----a-w-	c:\windows\system32\ati3duag.dll
2011-01-26 22:41:32	311296	----a-w-	c:\windows\system32\atiiiexx.dll
2011-01-26 22:35:04	1112576	----a-w-	c:\windows\system32\ativvamv.dll
2011-01-26 22:32:12	212992	----a-w-	c:\windows\system32\atipdlxx.dll
2011-01-26 22:31:58	155648	----a-w-	c:\windows\system32\Oemdspif.dll
2011-01-26 22:31:50	26112	----a-w-	c:\windows\system32\Ati2mdxx.exe
2011-01-26 22:31:42	43520	----a-w-	c:\windows\system32\ati2edxx.dll
2011-01-26 22:31:28	188416	----a-w-	c:\windows\system32\ati2evxx.dll
2011-01-26 22:30:08	638976	----a-w-	c:\windows\system32\ati2evxx.exe
2011-01-26 22:28:44	53248	----a-w-	c:\windows\system32\ATIDDC.DLL
2011-01-26 22:27:50	143360	----a-w-	c:\windows\system32\atiapfxx.exe
2011-01-26 22:27:06	2673280	----a-w-	c:\windows\system32\ativvaxx.dll
2011-01-26 22:23:50	651264	----a-w-	c:\windows\system32\atikvmag.dll
2011-01-26 22:21:32	196608	----a-w-	c:\windows\system32\atiadlxx.dll
2011-01-26 22:21:30	483328	----a-w-	c:\windows\system32\atiok3x2.dll
2011-01-26 22:21:08	17408	----a-w-	c:\windows\system32\atitvo32.dll
2011-01-26 22:15:12	847872	----a-w-	c:\windows\system32\ati2cqag.dll
2011-01-26 22:12:58	64512	----a-w-	c:\windows\system32\atimpc32.dll
2011-01-26 22:12:58	64512	----a-w-	c:\windows\system32\amdpcom32.dll
2011-01-18 15:03:30	20026472	----a-w-	c:\windows\RTHDCPL.EXE
.
============= FINISH: 12:55:05,07 ===============