logo elektroda
logo elektroda
X
logo elektroda
REKLAMA
REKLAMA
Adblock/uBlockOrigin/AdGuard mogą powodować znikanie niektórych postów z powodu nowej reguły.

gidle.exe na Windows XP – komunikat błędu przy starcie systemu, jak naprawić?

talar49 01 Lut 2011 09:37 4208 6
REKLAMA
  • #1 9086013
    talar49
    Poziom 10  
    Posty: 45
    Ocena: 3
    Po uruchomieniu systemy Xp wyskakuje mi taki komunikat gidle.exe to zrobić żeby tego uniknąć lub naprawić błąd ?
    gidle.exe na Windows XP – komunikat błędu przy starcie systemu, jak naprawić?
  • REKLAMA
  • #2 9086044
    wariato
    Poziom 43  
    Posty: 35419
    Pomógł: 1213
    Ocena: 838
    Wyszukiwarka nie działa ? https://www.elektroda.pl/rtvforum/topic1798493.html, przeskanować system Malwarebytes oraz Dr.Web Cure It, możesz też zrobić tak jak w temacie który podałem, uruchomić OTL, wygenerować Log i wstawić na forum.
  • REKLAMA
  • #3 9091120
    talar49
    Poziom 10  
    Posty: 45
    Ocena: 3
    Przeskanowałem i nic nie wykazało. Mam też avasta zainstalowanego i też nic... masz tu logi
    ...............................................................

    OTL logfile created on: 2011-02-02 10:25:02 - Run 2
    OTL by OldTimer - Version 3.2.20.6 Folder = C:\Documents and Settings\Łukasz\Pulpit
    Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.18702)
    Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

    1,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 50,00% Memory free
    3,00 Gb Paging File | 3,00 Gb Available in Paging File | 85,00% Paging File free
    Paging file location(s): C:\pagefile.sys 1920 3840 [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 107,42 Gb Total Space | 80,02 Gb Free Space | 74,49% Space Free | Partition Type: NTFS
    Drive D: | 97,65 Gb Total Space | 77,58 Gb Free Space | 79,44% Space Free | Partition Type: NTFS
    Drive E: | 93,00 Gb Total Space | 82,67 Gb Free Space | 88,89% Space Free | Partition Type: NTFS

    Computer Name: DZIECHCI-1H04X0 | User Name: Łukasz | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2011-02-02 10:22:18 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\OTL.exe
    PRC - [2011-01-30 14:59:00 | 000,073,728 | ---- | M] (G DATA Software Sp. z o.o.) -- C:\WINDOWS\system32\GStartUp.exe
    PRC - [2011-01-13 09:47:34 | 003,396,624 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
    PRC - [2011-01-13 09:47:33 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    PRC - [2010-12-16 06:19:28 | 012,984,928 | ---- | M] (GG Network S.A.) -- C:\Program Files\Gadu-Gadu 10\gg.exe
    PRC - [2010-12-03 20:58:04 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
    PRC - [2010-12-03 20:58:04 | 000,016,856 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe
    PRC - [2010-12-01 09:55:10 | 000,143,784 | ---- | M] (MM Studio) -- C:\Program Files\incmdnnt\incmdnnt.exe
    PRC - [2010-10-01 11:27:22 | 000,632,792 | ---- | M] (PC Tools) -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe
    PRC - [2008-11-01 09:56:06 | 000,281,600 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe
    PRC - [2008-11-01 09:30:26 | 000,098,407 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
    PRC - [2008-11-01 09:29:10 | 000,143,467 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
    PRC - [2008-09-24 14:32:48 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
    PRC - [2008-07-09 20:51:20 | 000,775,168 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
    PRC - [2008-04-14 21:51:18 | 000,977,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
    PRC - [2007-05-28 17:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
    PRC - [2007-03-18 23:05:02 | 000,630,784 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
    PRC - [2006-10-26 12:45:04 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\WISPTIS.EXE


    ========== Modules (SafeList) ==========

    MOD - [2011-02-02 10:22:18 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\OTL.exe
    MOD - [2011-01-13 09:47:35 | 000,189,728 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\snxhk.dll
    MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
    MOD - [2007-03-18 23:04:22 | 000,069,632 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.dll


    ========== Win32 Services (SafeList) ==========

    SRV - File not found [Disabled | Stopped] -- -- (HidServ)
    SRV - [2011-01-30 14:59:00 | 000,073,728 | ---- | M] (G DATA Software Sp. z o.o.) [Auto | Running] -- C:\WINDOWS\system32\GStartUp.exe -- (GStartUp)
    SRV - [2011-01-13 09:47:33 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
    SRV - [2010-10-01 11:27:22 | 000,632,792 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe -- (PCToolsSSDMonitorSvc)
    SRV - [2010-03-18 16:47:22 | 000,035,160 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe -- (aspnet_state)
    SRV - [2010-03-18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
    SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
    SRV - [2010-03-18 13:16:28 | 000,124,240 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe -- (NetTcpPortSharing)
    SRV - [2008-11-01 09:30:26 | 000,098,407 | ---- | M] () [On_Demand | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS)
    SRV - [2008-11-01 09:29:10 | 000,143,467 | ---- | M] () [Auto | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS)
    SRV - [2008-09-24 14:32:48 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
    SRV - [2008-09-08 07:59:00 | 000,575,488 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
    SRV - [2008-07-09 20:51:20 | 000,775,168 | ---- | M] () [Auto | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS)
    SRV - [2007-05-28 17:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)


    ========== Driver Services (SafeList) ==========

    DRV - [2011-01-13 09:41:16 | 000,294,608 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
    DRV - [2011-01-13 09:40:16 | 000,047,440 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
    DRV - [2011-01-13 09:40:04 | 000,100,176 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
    DRV - [2011-01-13 09:37:30 | 000,023,632 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
    DRV - [2011-01-13 09:37:11 | 000,029,392 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
    DRV - [2011-01-13 09:37:09 | 000,017,744 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
    DRV - [2010-10-22 15:30:21 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
    DRV - [2010-05-10 19:41:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
    DRV - [2010-02-17 19:25:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
    DRV - [2009-07-30 07:37:00 | 007,768,864 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
    DRV - [2009-06-30 10:37:16 | 000,028,552 | ---- | M] (Panda Security, S.L.) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\pavboot.sys -- (pavboot)
    DRV - [2009-05-05 09:59:02 | 000,022,168 | ---- | M] (VIA Technologies,Inc) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\xfilt.sys -- (xfilt)
    DRV - [2009-05-05 09:58:30 | 000,013,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\videX32.sys -- (videX32)
    DRV - [2008-12-07 12:44:54 | 000,030,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btnetBus.sys -- (btnetBUs)
    DRV - [2008-10-22 12:32:54 | 000,039,432 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb)
    DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
    DRV - [2008-07-31 20:45:42 | 000,020,616 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\BtHidBus.sys -- (BtHidBus)
    DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs)
    DRV - [2008-07-02 14:58:36 | 000,029,960 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr)
    DRV - [2008-04-13 23:23:10 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
    DRV - [2008-04-13 21:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
    DRV - [2008-01-21 19:28:12 | 000,014,600 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT)
    DRV - [2008-01-21 19:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\VComm.sys -- (VComm)
    DRV - [2008-01-21 07:56:38 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5)
    DRV - [2008-01-21 07:56:38 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5)
    DRV - [2007-11-13 23:29:23 | 000,051,968 | R--- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gt72ubus.sys -- (GT72UBUS)
    DRV - [2007-11-13 23:29:23 | 000,008,064 | R--- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gtptser.sys -- (GTPTSER)
    DRV - [2007-11-13 23:29:22 | 000,095,744 | R--- | M] (Option NV) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Gt51Ip.sys -- (GT72NDISIPXP)
    DRV - [2006-08-24 04:37:50 | 004,374,016 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.bearshare.com/sidebar.html?src=ssb&sysid=2

    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.pl/
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    ========== FireFox ==========

    FF - prefs.js..browser.search.defaultengine: "Ask.com"
    FF - prefs.js..browser.search.defaultenginename: "Ask.com"
    FF - prefs.js..browser.search.order.1: "Ask.com"
    FF - prefs.js..browser.search.selectedEngine: "DAEMON Search"
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "google.pl"
    FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
    FF - prefs.js..extensions.enabledItems: jqs(_at_)sun.com:1.0
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
    FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.2
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
    FF - prefs.js..keyword.URL: "http://search.bearshare.com/web?src=ffb&systemid=2&q="

    FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-01-14 12:33:44 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-01-12 14:41:57 | 000,000,000 | ---D | M]

    [2010-10-02 17:49:37 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Extensions
    [2011-02-02 10:12:21 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\67doy4w9.default\extensions
    [2011-01-12 14:56:20 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\67doy4w9.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
    [2010-10-02 19:18:42 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\67doy4w9.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
    [2010-09-14 13:41:12 | 000,002,506 | ---- | M] () -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\67doy4w9.default\searchplugins\BearShareWebSearch.xml
    [2011-02-02 10:12:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
    [2010-10-04 16:16:04 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
    [2010-10-24 09:50:51 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
    [2011-01-13 21:11:50 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ŁUKASZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\67DOY4W9.DEFAULT\EXTENSIONS\{B9DB16A4-6EDC-47EC-A1F4-B86292ED211D}
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ŁUKASZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\67DOY4W9.DEFAULT\EXTENSIONS\{DB9127A2-3381-41EC-82B3-1B6ED4C6F29A}
    [2010-10-04 16:15:47 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
    [2010-11-12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
    [2010-11-24 11:12:30 | 000,120,296 | ---- | M] ( ) -- C:\Program Files\Mozilla Firefox\plugins\npganymedenet.dll
    [2010-12-03 18:54:54 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
    [2010-09-14 13:41:12 | 000,002,506 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\BearShareWebSearch.xml
    [2010-12-03 18:54:54 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
    [2010-12-03 18:54:54 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
    [2010-12-03 18:54:54 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
    [2010-12-03 18:54:54 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
    [2010-12-03 18:54:54 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

    O1 HOSTS File: ([2011-01-08 20:17:17 | 000,000,828 | --S- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O1 - Hosts: 127.0.0.1 mpa.one.microsoft.com
    O1 - Hosts: 127.255.255.255 serial.alcohol-soft.com
    O2 - BHO: (MediaBar) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - Reg Error: Value error. File not found
    O2 - BHO: (UrlHelper Class) - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - Reg Error: Value error. File not found
    O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Łukasz\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group)
    O2 - BHO: (QuickNet BHO) - {EA5CA8B6-9B9C-4994-A7A1-947B6C631BE7} - Reg Error: Value error. File not found
    O3 - HKLM\..\Toolbar: (MediaBar) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - Reg Error: Value error. File not found
    O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)
    O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
    O4 - HKLM..\Run: [BtTray] C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe ()
    O4 - HKLM..\Run: [gidle] C:\Documents and Settings\Łukasz\Ustawienia lokalne\Temp\gidle.exe ()
    O4 - HKLM..\Run: [incmd] File not found
    O4 - HKLM..\Run: [incmdnnt] C:\Program Files\incmdnnt\incmdnnt.exe (MM Studio)
    O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
    O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
    O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()
    O4 - HKLM..\Run: [SkyTel] C:\WINDOWS\SkyTel.exe (Realtek Semiconductor Corp.)
    O4 - Startup: C:\Documents and Settings\Łukasz\Menu Start\Programy\Autostart\RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe ()
    O4 - Startup: C:\Documents and Settings\Łukasz\Menu Start\Programy\Autostart\ˇˇˇˇˇˇ.lnk = File not found
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
    O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.17\AMVConverter\grab.html ()
    O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\Łukasz\Dane aplikacji\FlashGetBHO\GetAllUrl.htm ()
    O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\Łukasz\Dane aplikacji\FlashGetBHO\GetUrl.htm ()
    O8 - Extra context menu item: Ściągnij przy poomocy FlashGet3 - C:\Documents and Settings\Łukasz\Dane aplikacji\FlashGetBHO\GetUrl.htm ()
    O8 - Extra context menu item: Ściągnij wszystko przy pomocy FlashGet3 - C:\Documents and Settings\Łukasz\Dane aplikacji\FlashGetBHO\GetAllUrl.htm ()
    O8 - Extra context menu item: Wyslij przez wiadomosc(&M)... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm ()
    O8 - Extra context menu item: Wyślij przez Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm ()
    O15 - HKCU\..Trusted Domains: kuaiche.com ([software] http in Trusted sites)
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
    O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
    O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
    O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
    O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
    O18 - Protocol\Handler\ic32pp {BBCA9F81-8F4F-11D2-90FF-0080C83D3571} - C:\WINDOWS\wc98pp.dll ()
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\WINDOWS\system32\skype4com.dll (Skype Technologies)
    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
    O20 - Winlogon\Notify\Antiwpa: DllName - antiwpa.dll - C:\WINDOWS\System32\antiwpa.dll ()
    O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
    O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
    O24 - Desktop WallPaper: C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
    O24 - Desktop BackupWallPaper: C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
    O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2010-10-02 14:41:47 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
    O33 - MountPoints2\{2ae0d9aa-ce42-11df-afac-8f592dc85d18}\Shell\AutoRun\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\keygen.exe
    O33 - MountPoints2\{2ae0d9aa-ce42-11df-afac-8f592dc85d18}\Shell\open\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\keygen.exe
    O33 - MountPoints2\{375bf46c-ce40-11df-afab-9e5a6b705138}\Shell - "" = AutoRun
    O33 - MountPoints2\{375bf46c-ce40-11df-afab-9e5a6b705138}\Shell\AutoRun\command - "" = G:\AutoRunCardDetector.exe
    O34 - HKLM BootExecute: (autocheck autochk *) - File not found
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*

    ========== Files/Folders - Created Within 30 Days ==========

    [2011-02-02 10:22:10 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\OTL.exe
    [2011-02-02 10:07:55 | 000,038,848 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
    [2011-02-02 09:46:27 | 000,017,744 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
    [2011-02-02 09:46:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\avast! Free Antivirus
    [2011-02-02 09:46:26 | 000,294,608 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
    [2011-02-02 09:46:26 | 000,023,632 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
    [2011-02-02 09:46:25 | 000,047,440 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
    [2011-02-02 09:46:24 | 000,100,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
    [2011-02-02 09:46:24 | 000,094,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
    [2011-02-02 09:46:23 | 000,029,392 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
    [2011-02-02 09:46:12 | 000,188,216 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
    [2011-02-02 09:46:02 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software
    [2011-02-01 11:05:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Google
    [2011-02-01 11:05:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Google Earth Pro
    [2011-02-01 10:27:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\ArcaVirMicroScan
    [2011-02-01 10:24:24 | 000,000,000 | ---D | C] -- C:\Program Files\SkanerOnline
    [2011-01-30 14:59:00 | 000,073,728 | ---- | C] (G DATA Software Sp. z o.o.) -- C:\WINDOWS\System32\GStartUp.exe
    [2011-01-30 14:58:59 | 000,043,904 | ---- | C] (Alfa Corporation) -- C:\WINDOWS\System32\drivers\AFPAnsi.sys
    [2011-01-27 18:38:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\SUPERAntiSpyware.com
    [2011-01-27 18:38:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\SUPERAntiSpyware.com
    [2011-01-27 18:38:22 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
    [2011-01-24 16:38:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Google
    [2011-01-15 17:41:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Menu Start\Programy\San Andreas Multiplayer
    [2011-01-15 17:33:57 | 000,000,000 | R--D | C] -- C:\Sakson's save 100%
    [2011-01-15 10:39:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\ipla
    [2011-01-15 10:36:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Menu Start\Programy\AniGIF
    [2011-01-14 19:12:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\.config
    [2011-01-13 21:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Lavasoft
    [2011-01-13 21:17:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Lavasoft Ad-Aware SE Personal
    [2011-01-13 21:17:54 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft
    [2011-01-13 21:11:48 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
    [2011-01-13 21:11:48 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
    [2011-01-13 21:11:48 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
    [2011-01-13 16:11:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe
    [2011-01-12 15:16:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
    [2011-01-12 15:04:27 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
    [2011-01-12 15:04:26 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
    [2011-01-12 15:04:21 | 001,991,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
    [2011-01-12 15:04:21 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
    [2011-01-12 15:04:20 | 011,080,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll
    [2011-01-12 14:48:19 | 000,028,552 | ---- | C] (Panda Security, S.L.) -- C:\WINDOWS\System32\drivers\pavboot.sys
    [2011-01-12 14:47:10 | 000,000,000 | ---D | C] -- C:\Program Files\Panda Security
    [2011-01-12 14:41:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox
    [2011-01-12 14:24:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Moje dokumenty\Spycheck
    [2011-01-11 18:01:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Winamp
    [2011-01-11 18:01:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Winamp
    [2011-01-09 15:33:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\EA SPORTS
    [2011-01-08 20:48:02 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\SecuROM
    [2011-01-08 20:31:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Alcohol 120%
    [2011-01-08 20:16:53 | 000,000,000 | ---D | C] -- C:\Program Files\Alcohol Soft
    [2011-01-08 16:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Moje dokumenty\FIFA 08
    [2011-01-07 19:14:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\DAEMON Tools Lite
    [2011-01-07 19:14:28 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
    [2011-01-07 15:24:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Moje dokumenty\FIFA 06
    [2011-01-07 15:06:57 | 000,000,000 | ---D | C] -- C:\Program Files\EA SPORTS
    [2011-01-06 19:20:30 | 000,000,000 | ---D | C] -- C:\Program Files\Valve
    [2011-01-05 15:04:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mirage Interactive
    [2011-01-04 17:49:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Menu Start\Programy\MP3 Player Utilities 4.17
    [2011-01-04 17:49:36 | 000,000,000 | ---D | C] -- C:\Program Files\MP3 Player Utilities 4.17
    [2011-01-03 18:19:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\EA Games
    [2011-01-03 17:36:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Opera
    [2011-01-03 17:36:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Opera
    [2011-01-03 17:36:35 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
    [2011-01-03 15:42:58 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
    [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

    ========== Files - Modified Within 30 Days ==========

    [2011-02-02 10:22:18 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\OTL.exe
    [2011-02-02 10:19:55 | 000,001,034 | ---- | M] () -- C:\WINDOWS\System32\bscs.ini
    [2011-02-02 10:19:51 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    [2011-02-02 10:19:25 | 000,248,313 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
    [2011-02-02 10:19:04 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
    [2011-02-02 10:07:56 | 000,002,658 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
    [2011-02-02 10:00:04 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
    [2011-02-02 09:54:18 | 000,000,692 | -HS- | M] () -- C:\WINDOWS\System32\og.dll
    [2011-02-02 09:46:27 | 000,001,706 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk
    [2011-02-02 09:44:20 | 000,000,627 | ---- | M] () -- C:\Documents and Settings\Łukasz\Menu Start\Programy\Autostart\ˇˇˇˇˇˇ.lnk
    [2011-02-02 09:44:19 | 000,002,404 | -HS- | M] () -- C:\WINDOWS\System32\ul.dll
    [2011-02-01 17:43:39 | 000,000,598 | ---- | M] () -- C:\WINDOWS\System32\secushr.dat
    [2011-02-01 11:05:10 | 000,001,874 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Uruchom program Google Earth Pro.lnk
    [2011-02-01 11:04:26 | 000,000,292 | ---- | M] () -- C:\WINDOWS\System32\secustat.dat
    [2011-01-31 08:40:59 | 001,097,728 | -H-- | M] () -- C:\WINDOWS\System32\krnln.fnr
    [2011-01-31 08:40:59 | 000,323,584 | -H-- | M] () -- C:\WINDOWS\System32\eAPI.fne
    [2011-01-31 08:40:59 | 000,266,240 | -H-- | M] () -- C:\WINDOWS\System32\com.run
    [2011-01-31 08:40:59 | 000,184,320 | -H-- | M] () -- C:\WINDOWS\System32\internet.fne
    [2011-01-31 08:40:59 | 000,167,936 | -H-- | M] () -- C:\WINDOWS\System32\RegEx.fne
    [2011-01-31 08:40:59 | 000,114,688 | -H-- | M] () -- C:\WINDOWS\System32\dp1.fne
    [2011-01-31 08:40:59 | 000,073,728 | -H-- | M] () -- C:\WINDOWS\System32\spec.fne
    [2011-01-31 08:40:59 | 000,040,960 | -H-- | M] () -- C:\WINDOWS\System32\shell.fne
    [2011-01-31 08:40:59 | 000,000,512 | -HS- | M] () -- C:\WINDOWS\System32\og.edt
    [2011-01-30 20:54:43 | 000,010,752 | ---- | M] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2011-01-30 19:25:30 | 000,005,982 | ---- | M] () -- C:\WINDOWS\System32\LOCALSERVICE.INI
    [2011-01-30 19:00:00 | 000,000,256 | ---- | M] () -- C:\WINDOWS\tasks\RMSchedule.job
    [2011-01-30 18:31:24 | 000,000,370 | ---- | M] () -- C:\WINDOWS\System32\REMOTEDEVICE.INI
    [2011-01-30 18:12:21 | 000,000,100 | ---- | M] () -- C:\WINDOWS\System32\LOCALDEVICE.INI
    [2011-01-30 15:07:11 | 000,000,004 | ---- | M] () -- C:\WINDOWS\gstartup.dat
    [2011-01-30 14:59:00 | 000,073,728 | ---- | M] (G DATA Software Sp. z o.o.) -- C:\WINDOWS\System32\GStartUp.exe
    [2011-01-30 10:41:42 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
    [2011-01-29 19:00:19 | 000,003,072 | ---- | M] () -- C:\WINDOWS\System32\Cache.db
    [2011-01-29 10:47:26 | 000,002,267 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
    [2011-01-29 09:51:22 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for
    [2011-01-27 20:37:59 | 000,270,192 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
    [2011-01-27 18:38:24 | 000,001,694 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\SUPERAntiSpyware Free Edition.lnk
    [2011-01-15 20:53:18 | 004,825,088 | ---- | M] () -- C:\Documents and Settings\Łukasz\s-1-5-21-436374069-412668190-839522115-1003.rrr
    [2011-01-15 10:39:01 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\ipla.lnk
    [2011-01-15 10:37:02 | 000,000,008 | ---- | M] () -- C:\WINDOWS\System\aqq.dll
    [2011-01-15 10:20:50 | 000,007,728 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\Snap_2011.01.15 10.20.48_001.png
    [2011-01-13 09:47:35 | 000,038,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
    [2011-01-13 09:47:32 | 000,188,216 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
    [2011-01-13 09:41:16 | 000,294,608 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
    [2011-01-13 09:40:16 | 000,047,440 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
    [2011-01-13 09:40:04 | 000,100,176 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys
    [2011-01-13 09:39:50 | 000,094,544 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys
    [2011-01-13 09:37:30 | 000,023,632 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
    [2011-01-13 09:37:11 | 000,029,392 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys
    [2011-01-13 09:37:09 | 000,017,744 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
    [2011-01-12 15:17:14 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
    [2011-01-12 14:41:59 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
    [2011-01-11 18:01:28 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
    [2011-01-07 19:14:35 | 000,001,621 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
    [2011-01-04 15:31:35 | 000,002,228 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
    [2011-01-03 15:42:58 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
    [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
    [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

    ========== Files Created - No Company Name ==========

    [2011-02-02 09:46:27 | 000,001,706 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk
    [2011-02-01 11:05:10 | 000,001,874 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Uruchom program Google Earth Pro.lnk
    [2011-01-31 08:41:01 | 001,097,728 | -H-- | C] () -- C:\WINDOWS\System32\krnln.fnr
    [2011-01-31 08:41:01 | 000,323,584 | -H-- | C] () -- C:\WINDOWS\System32\eAPI.fne
    [2011-01-31 08:41:01 | 000,266,240 | -H-- | C] () -- C:\WINDOWS\System32\com.run
    [2011-01-31 08:41:01 | 000,184,320 | -H-- | C] () -- C:\WINDOWS\System32\internet.fne
    [2011-01-31 08:41:01 | 000,167,936 | -H-- | C] () -- C:\WINDOWS\System32\RegEx.fne
    [2011-01-31 08:41:01 | 000,114,688 | -H-- | C] () -- C:\WINDOWS\System32\dp1.fne
    [2011-01-31 08:41:01 | 000,073,728 | -H-- | C] () -- C:\WINDOWS\System32\spec.fne
    [2011-01-31 08:41:01 | 000,040,960 | -H-- | C] () -- C:\WINDOWS\System32\shell.fne
    [2011-01-31 08:41:01 | 000,000,627 | ---- | C] () -- C:\Documents and Settings\Łukasz\Menu Start\Programy\Autostart\ˇˇˇˇˇˇ.lnk
    [2011-01-31 08:40:59 | 000,002,404 | -HS- | C] () -- C:\WINDOWS\System32\ul.dll
    [2011-01-31 08:40:59 | 000,000,692 | -HS- | C] () -- C:\WINDOWS\System32\og.dll
    [2011-01-31 08:40:59 | 000,000,512 | -HS- | C] () -- C:\WINDOWS\System32\og.edt
    [2011-01-30 14:59:00 | 000,000,004 | ---- | C] () -- C:\WINDOWS\gstartup.dat
    [2011-01-29 09:51:22 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
    [2011-01-29 09:51:22 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
    [2011-01-27 18:38:24 | 000,001,694 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\SUPERAntiSpyware Free Edition.lnk
    [2011-01-15 10:39:01 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\ipla.lnk
    [2011-01-15 10:37:02 | 000,000,008 | ---- | C] () -- C:\WINDOWS\System\aqq.dll
    [2011-01-15 10:20:50 | 000,007,728 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\Snap_2011.01.15 10.20.48_001.png
    [2011-01-12 14:41:59 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
    [2011-01-11 18:01:28 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
    [2011-01-07 19:14:34 | 000,001,621 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
    [2010-12-05 10:18:25 | 000,000,190 | ---- | C] () -- C:\Program Files\OutputWTME.ini
    [2010-12-03 21:00:16 | 000,053,760 | ---- | C] () -- C:\WINDOWS\System32\zlib.dll
    [2010-11-18 15:07:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\SHORTCUT.INI
    [2010-11-18 15:07:24 | 000,000,370 | ---- | C] () -- C:\WINDOWS\System32\REMOTEDEVICE.INI
    [2010-11-18 15:07:12 | 000,005,982 | ---- | C] () -- C:\WINDOWS\System32\LOCALSERVICE.INI
    [2010-11-18 15:07:10 | 000,000,100 | ---- | C] () -- C:\WINDOWS\System32\LOCALDEVICE.INI
    [2010-11-18 15:03:11 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\BSPRINT.INI
    [2010-11-15 22:09:08 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
    [2010-11-15 21:47:38 | 000,004,767 | ---- | C] () -- C:\WINDOWS\Irremote.ini
    [2010-11-12 21:29:45 | 000,051,712 | ---- | C] () -- C:\WINDOWS\wc98pp.dll
    [2010-11-05 16:06:16 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SETUP32.INI
    [2010-10-25 14:52:26 | 000,000,000 | ---- | C] () -- C:\WINDOWS\BsMobileModel.ini
    [2010-10-22 20:53:49 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
    [2010-10-22 20:53:43 | 003,297,280 | ---- | C] () -- C:\WINDOWS\System32\x264vfw.dll
    [2010-10-22 20:53:42 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
    [2010-10-22 20:53:42 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
    [2010-10-22 20:53:42 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
    [2010-10-22 19:20:50 | 000,060,416 | ---- | C] () -- C:\WINDOWS\System32\antiwpa.dll
    [2010-10-22 15:30:21 | 000,721,904 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
    [2010-10-14 14:48:26 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
    [2010-10-02 19:49:32 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
    [2010-10-02 18:06:07 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
    [2010-10-02 16:58:59 | 000,010,752 | ---- | C] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2010-10-02 15:36:01 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
    [2010-10-02 15:17:08 | 000,143,360 | R--- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
    [2010-10-02 15:02:04 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\vusetup.dll
    [2009-06-10 07:29:34 | 001,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
    [2009-06-10 07:29:34 | 001,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
    [2009-06-10 07:29:34 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
    [2009-06-10 07:29:32 | 001,507,328 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
    [2008-12-07 12:44:54 | 000,030,088 | ---- | C] () -- C:\WINDOWS\System32\drivers\btnetBus.sys
    [2008-11-01 09:56:10 | 000,001,034 | ---- | C] () -- C:\WINDOWS\System32\bscs.ini
    [2008-11-01 09:32:58 | 000,405,589 | ---- | C] () -- C:\WINDOWS\System32\BsUI.dll
    [2008-11-01 09:32:36 | 000,278,647 | ---- | C] () -- C:\WINDOWS\System32\outlookAddin.dll
    [2008-11-01 09:32:16 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\HtmPrintHelper.dll
    [2008-11-01 09:32:00 | 000,622,693 | ---- | C] () -- C:\WINDOWS\System32\BSShell.dll
    [2008-11-01 09:29:20 | 000,122,976 | ---- | C] () -- C:\WINDOWS\System32\BsMobileSDK.dll
    [2008-11-01 09:29:12 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\BsMobileCSps.dll
    [2008-11-01 09:27:50 | 000,102,499 | ---- | C] () -- C:\WINDOWS\System32\Bs2Res.dll
    [2008-10-22 15:30:30 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\BsVistaCommon.dll
    [2008-03-07 13:54:22 | 017,907,824 | ---- | C] () -- C:\WINDOWS\System32\BsLangInDepRes.dll
    [2006-03-06 10:41:02 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\AMV_DecDLL.dll
    [2004-09-16 13:26:40 | 000,012,634 | ---- | C] () -- C:\WINDOWS\System32\drivers\ADFUUD.SYS

    ========== LOP Check ==========

    [2011-02-02 09:46:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software
    [2010-10-02 18:40:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ashampoo
    [2010-10-22 15:55:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
    [2010-10-02 17:29:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
    [2010-11-18 08:18:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
    [2011-01-15 10:47:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla
    [2010-11-20 14:05:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM
    [2010-10-02 18:40:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\page
    [2010-10-03 16:46:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Phenomedia
    [2011-01-29 19:33:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
    [2010-10-04 20:54:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TuneUp Software
    [2010-10-04 17:48:10 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
    [2011-02-01 10:27:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\ArcaVirMicroScan
    [2010-10-21 16:50:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Ashampoo
    [2011-02-01 17:10:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\BITS
    [2010-11-05 21:29:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\ChomikBox
    [2010-11-15 15:10:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Consultia
    [2010-11-01 16:58:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\DAEMON Tools Lite
    [2010-11-03 15:05:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\DAEMON Tools Pro
    [2010-12-19 19:12:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\DMCache
    [2010-12-01 16:17:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\FDRLab
    [2010-10-02 19:15:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\FlashGet
    [2010-10-02 18:05:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\FlashGetBHO
    [2011-01-08 15:47:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Gadu-Gadu 10
    [2010-12-02 18:58:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\GanymedeNet
    [2010-12-24 13:19:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\gtk-2.0
    [2010-12-06 12:19:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\HTML Executable
    [2010-12-19 19:10:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\IDM
    [2011-02-01 12:22:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\ipla
    [2010-12-01 16:19:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\JLC's Software
    [2010-10-02 17:30:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\OpenFM
    [2011-01-03 17:36:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Opera
    [2010-12-06 13:58:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\QuickStoresToolbar
    [2010-11-17 21:47:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\RDRM
    [2010-10-22 18:40:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Registry Mechanic
    [2010-12-04 15:23:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\TeamViewer
    [2010-10-04 17:48:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\TuneUp Software
    [2011-01-30 19:00:00 | 000,000,256 | ---- | M] () -- C:\WINDOWS\Tasks\RMSchedule.job

    ========== Purity Check ==========



    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 155 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:D1B5B4F1

    < End of report >
  • #4 9091255
    Acorus 20
    Poziom 43  
    Posty: 10541
    Pomógł: 3247
    Ocena: 1063
    Uruchom OTL i w okno (Własne opcje skanowania/Script)wklej:

    :OTL

    FF - prefs.js..browser.search.defaultengine: "Ask.com"
    FF - prefs.js..browser.search.defaultenginename: "Ask.com"
    FF - prefs.js..browser.search.order.1: "Ask.com"
    FF - prefs.js..browser.search.selectedEngine: "DAEMON Search"
    [2010-09-14 13:41:12 | 000,002,506 | ---- | M] () -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\67doy4w9.default\searchplugins\BearShareWebSearch.xml
    [2010-09-14 13:41:12 | 000,002,506 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\BearShareWebSearch.xml
    O2 - BHO: (MediaBar) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - Reg Error: Value error. File not found
    O2 - BHO: (QuickNet BHO) - {EA5CA8B6-9B9C-4994-A7A1-947B6C631BE7} - Reg Error: Value error. File not found
    O3 - HKLM\..\Toolbar: (MediaBar) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - Reg Error: Value error. File not found
    O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O4 - HKLM..\Run: [gidle] C:\Documents and Settings\Łukasz\Ustawienia lokalne\Temp\gidle.exe ()
    O4 - HKLM..\Run: [incmd] File not found
    O4 - Startup: C:\Documents and Settings\Łukasz\Menu Start\Programy\Autostart\ˇˇˇˇˇˇ.lnk = File not found
    O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
    O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
    O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
    :Reg
    [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]


    :Commands
    [emptytemp]


    Kliknij Wykonaj skrypt..Zatwierdź restart komputera. Zapisz raport, który pokaże się po restarcie. Następnie uruchom OTL ponownie, tym razem kliknij (Skanuj).
    Pokaż nowy log OTL.txt oraz raport z usuwania.
    Logi daj w załącznikach.
  • REKLAMA
  • #5 9091307
    Kolobos
    Spec od komputerów
    Posty: 85161
    Pomógł: 17164
    Ocena: 10433
    Nie dales extra.txt tylko sam otl.txt, popraw sie.

    Nie za duzo masz tych programow? Pc Tools, G-Data, SuperAntiSpyware, Panda Security, Ad-Aware, Avast itd.
    Moze czesc odinstalujesz?

    Dlaczego nie przeskanowales systemu przy pomocy mbam oraz cureit? Zrob to teraz.

    Odinstaluj: DAEMON Tools Toolbar, ArcaVirMicroScan.

    Sam to zainstalowales?
    O4 - HKLM..\Run: [incmd] File not found
    O4 - HKLM..\Run: [incmdnnt] C:\Program Files\incmdnnt\incmdnnt.exe (MM Studio)
    Tak w skrocie to program: "do monitoringu i podglądu komputerów, zdalnej kontroli, szkoleń i ewidencji czasu pracy."
    Jezeli nie to odinstaluj.


    Wykonaj skrypt w OTL:

    :OTL
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.bearshare.com/sidebar.html?src=ssb&sysid=2
    FF - prefs.js..browser.search.defaultengine: "Ask.com"
    FF - prefs.js..browser.search.defaultenginename: "Ask.com"
    FF - prefs.js..browser.search.order.1: "Ask.com"
    FF - prefs.js..browser.search.selectedEngine: "DAEMON Search"
    [2010-09-14 13:41:12 | 000,002,506 | ---- | M] () -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\67doy4w9.default\searchplugins\BearShareWebSearch.xml
    [2010-09-14 13:41:12 | 000,002,506 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\BearShareWebSearch.xml
    O2 - BHO: (MediaBar) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - Reg Error: Value error. File not found
    O2 - BHO: (UrlHelper Class) - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - Reg Error: Value error. File not found
    O2 - BHO: (QuickNet BHO) - {EA5CA8B6-9B9C-4994-A7A1-947B6C631BE7} - Reg Error: Value error. File not found
    O3 - HKLM\..\Toolbar: (MediaBar) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - Reg Error: Value error. File not found
    O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O4 - HKLM..\Run: [gidle] C:\Documents and Settings\Łukasz\Ustawienia lokalne\Temp\gidle.exe ()
    O4 - Startup: C:\Documents and Settings\Łukasz\Menu Start\Programy\Autostart\ˇˇˇˇˇˇ.lnk = File not found
    O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class)
    O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.)
    O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
    O20 - Winlogon\Notify\WgaLogon: DllName - Reg Error: Value error. - Reg Error: Value error. File not found
    O33 - MountPoints2\{2ae0d9aa-ce42-11df-afac-8f592dc85d18}\Shell\AutoRun\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\keygen.exe
    O33 - MountPoints2\{2ae0d9aa-ce42-11df-afac-8f592dc85d18}\Shell\open\command - "" = G:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\keygen.exe
    O33 - MountPoints2\{375bf46c-ce40-11df-afab-9e5a6b705138}\Shell - "" = AutoRun
    O33 - MountPoints2\{375bf46c-ce40-11df-afab-9e5a6b705138}\Shell\AutoRun\command - "" = G:\AutoRunCardDetector.exe
    [2011-02-02 09:44:19 | 000,002,404 | -HS- | M] () -- C:\WINDOWS\System32\ul.dll
    [2011-02-01 17:43:39 | 000,000,598 | ---- | M] () -- C:\WINDOWS\System32\secushr.dat
    [2011-01-31 08:40:59 | 001,097,728 | -H-- | M] () -- C:\WINDOWS\System32\krnln.fnr
    [2011-01-31 08:40:59 | 000,323,584 | -H-- | M] () -- C:\WINDOWS\System32\eAPI.fne
    [2011-01-31 08:40:59 | 000,266,240 | -H-- | M] () -- C:\WINDOWS\System32\com.run
    [2011-01-31 08:40:59 | 000,184,320 | -H-- | M] () -- C:\WINDOWS\System32\internet.fne
    [2011-01-31 08:40:59 | 000,167,936 | -H-- | M] () -- C:\WINDOWS\System32\RegEx.fne
    [2011-01-31 08:40:59 | 000,114,688 | -H-- | M] () -- C:\WINDOWS\System32\dp1.fne
    [2011-01-31 08:40:59 | 000,073,728 | -H-- | M] () -- C:\WINDOWS\System32\spec.fne
    [2011-01-31 08:40:59 | 000,040,960 | -H-- | M] () -- C:\WINDOWS\System32\shell.fne
    [2011-01-31 08:40:59 | 000,000,512 | -HS- | M] () -- C:\WINDOWS\System32\og.edt
    [2011-02-01 10:27:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\ArcaVirMicroScan
    [2010-12-06 13:58:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\QuickStoresToolbar

    Po wykonaniu daj nowy log.
  • REKLAMA
  • #6 9104368
    talar49
    Poziom 10  
    Posty: 45
    Ocena: 3
    komp mi sie zwiesił musiałem zainstalowac od nowa windowsa masakra ;/
    tyle danych mialem na dysku :
    temat do zamkniecia
  • #7 9105180
    jankolo
    Spoczywaj w Pokoju
    Posty: 32197
    Pomógł: 1792
    Ocena: 583
    talar49 napisał:
    tyle danych mialem na dysku

    I pomyśleć że wszystkie można było bez najmniejszego problemu odzyskać, czyli najprawdopodobniej po prostu przekopiować. Ale cóż: Twoje dane, Twój pośpiech, Twoja sprawa.
    Temat zamykam.

Podsumowanie tematu

✨ Po uruchomieniu systemu Windows XP użytkownik napotkał błąd związany z procesem gidle.exe. W odpowiedzi na problem, zasugerowano przeskanowanie systemu za pomocą programów Malwarebytes i Dr.Web Cure It, a także użycie narzędzia OTL do wygenerowania logów w celu dalszej analizy. Użytkownik zainstalował Avasta, ale nie wykrył żadnych zagrożeń. Wskazano na możliwość odinstalowania niektórych programów, takich jak DAEMON Tools Toolbar, oraz na konieczność wykonania skryptu w OTL. Ostatecznie użytkownik zdecydował się na reinstalację systemu, co doprowadziło do utraty danych.
Wygenerowane przez model językowy.
REKLAMA