Po zainstalowaniu pełnej wersji programu avast! Internet Security 6 z KSE 02/2011 w domyślnej lokalizacji, w 5-10 sekund po ponownym uruchomieniu Visty pojawia się niebieskie okno, restartujące komputer. Tak jest za każdym razem. W czym tkwi problem? Z góry dziękuję za odp.
Strona 1 z 1
avast! Internet Security 6 a niebieskie okno w Viście Co zrobiłem ne tak?
#2
Napisano 21 sierpień 2011, 21:21
Uruchom system Windows w trybie awaryjnym. Wyłącz skanowanie rootkitów przy starcie systemu (znajdziesz w opcjach Rozwiązywanie problemów). Jeżeli nie pomoże, zainstaluj BlueScreenView i odczytaj komunikat, jaki pojawia się na niebieskim ekranie. Pobierz program OTL i wykonaj pełne skanowanie. Zamieść oba logi na forum. Być może inne aplikacje kłócą się z Avastem.
Przygoda w Biurowej Dzielnicy - TODA :: Przyszłość sieci Webb i informatyzacja Polski
There is a road to freedom. Its milestones are Obedience, Endeavor, Honesty, Order, Cleanliness, Sobriety, Truthfulness, Sacrifice, and love of the Fatherland.
There is a road to freedom. Its milestones are Obedience, Endeavor, Honesty, Order, Cleanliness, Sobriety, Truthfulness, Sacrifice, and love of the Fatherland.
#3
Napisano 25 sierpień 2011, 11:12
1. Skanowania rootkitów nie da się skutecznie wyłączyć, gdyż po każdym włączeniu Avasta ta opcja znów jest aktywna.
2. Bluescreenview pokazał taki komunikat
2. Bluescreenview pokazał taki komunikat
******************************************************************************* * * * Bugcheck Analysis * * * ******************************************************************************* DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1) An attempt was made to access a pageable (or completely invalid) address at an interrupt request level (IRQL) that is too high. This is usually caused by drivers using improper addresses. If kernel debugger is available get stack backtrace. Arguments: Arg1: 8d5d1e44, memory referenced Arg2: 00000002, IRQL Arg3: 00000008, value 0 = read operation, 1 = write operation Arg4: 8d5d1e44, address which referenced memory Debugging Details: ------------------ READ_ADDRESS: GetPointerFromAddress: unable to read from 82d315ac Unable to read MiSystemVaType memory at 82d117e0 8d5d1e44 CURRENT_IRQL: 2 FAULTING_IP: smb!_NULL_IMPORT_DESCRIPTOR <PERF> (smb+0x13e44)+0 8d5d1e44 ?? ??? CUSTOMER_CRASH_COUNT: 1 DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT BUGCHECK_STR: 0xD1 PROCESS_NAME: Idle TRAP_FRAME: 82cf1b44 -- (.trap 0xffffffff82cf1b44) ErrCode = 00000010 eax=854b66d4 ebx=000008d0 ecx=8762b948 edx=00000001 esi=82cf1bec edi=8762b880 eip=8d5d1e44 esp=82cf1bb8 ebp=82cf1bc8 iopl=0 nv up ei ng nz na pe nc cs=0008 ss=0010 ds=0023 es=0023 fs=0030 gs=0000 efl=00010286 smb!_NULL_IMPORT_DESCRIPTOR <PERF> (smb+0x13e44): 8d5d1e44 ?? ??? Resetting default scope LAST_CONTROL_TRANSFER: from 8d5d1e44 to 82c8fe14 FAILED_INSTRUCTION_ADDRESS: smb!_NULL_IMPORT_DESCRIPTOR <PERF> (smb+0x13e44)+0 8d5d1e44 ?? ??? STACK_TEXT: STACK_COMMAND: kb FOLLOWUP_IP: smb!_NULL_IMPORT_DESCRIPTOR <PERF> (smb+0x13e44)+0 8d5d1e44 ?? ??? SYMBOL_STACK_INDEX: 1 SYMBOL_NAME: smb!_NULL_IMPORT_DESCRIPTOR <PERF> (smb+0x13e44)+0 FOLLOWUP_NAME: MachineOwner MODULE_NAME: smb IMAGE_NAME: smb.sys DEBUG_FLR_IMAGE_TIMESTAMP: 4549b2e6 FAILURE_BUCKET_ID: 0xD1_CODE_AV_BAD_IP_smb!_NULL_IMPORT_DESCRIPTOR__PERF__(smb+0x13e44)+0 BUCKET_ID: 0xD1_CODE_AV_BAD_IP_smb!_NULL_IMPORT_DESCRIPTOR__PERF__(smb+0x13e44)+0 Followup: MachineOwner ---------a program OTL taki
OTL logfile created on: 2011-08-25 11:57:12 - Run 2
OTL by OldTimer - Version 3.2.26.5 Folder = G:\
Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation
Internet Explorer (Version = 7.0.6000.16982)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
2,00 Gb Total Physical Memory | 0,85 Gb Available Physical Memory | 42,52% Memory free
4,20 Gb Paging File | 2,81 Gb Available in Paging File | 67,06% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 75,13 Gb Total Space | 25,98 Gb Free Space | 34,58% Space Free | Partition Type: NTFS
Drive D: | 100,59 Gb Total Space | 30,06 Gb Free Space | 29,89% Space Free | Partition Type: NTFS
Drive E: | 95,11 Gb Total Space | 90,12 Gb Free Space | 94,76% Space Free | Partition Type: NTFS
Drive F: | 97,65 Gb Total Space | 88,42 Gb Free Space | 90,54% Space Free | Partition Type: NTFS
Drive G: | 97,27 Gb Total Space | 14,41 Gb Free Space | 14,82% Space Free | Partition Type: NTFS
Drive H: | 3,41 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive I: | 148,15 Mb Total Space | 27,23 Mb Free Space | 18,38% Space Free | Partition Type: FAT
Drive N: | 1,83 Gb Total Space | 1,12 Gb Free Space | 60,95% Space Free | Partition Type: FAT
Drive O: | 1,80 Gb Total Space | 0,18 Gb Free Space | 9,86% Space Free | Partition Type: FAT32
Computer Name: HUGO-PC | User Name: hugo | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2011-08-22 13:53:18 | 000,580,096 | ---- | M] (OldTimer Tools) -- G:\OTL.exe
PRC - [2011-08-16 17:27:41 | 000,107,136 | ---- | M] (TMRG, Inc.) -- C:\Program Files\RelevantKnowledge\rlservice.exe
PRC - [2011-08-16 17:27:38 | 002,927,744 | ---- | M] (TMRG, Inc.) -- C:\Program Files\RelevantKnowledge\rlvknlg.exe
PRC - [2011-07-01 19:23:18 | 000,947,056 | ---- | M] (Opera Software) -- C:\Program Files\Opera\opera.exe
PRC - [2011-02-25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE
PRC - [2011-01-22 13:34:44 | 001,006,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe
PRC - [2011-01-22 12:40:23 | 002,923,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010-02-01 12:27:16 | 000,532,752 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Debugging Tools for Windows (x86)\windbg.exe
PRC - [2009-12-10 15:05:48 | 000,401,728 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
PRC - [2009-12-08 15:51:52 | 000,774,144 | ---- | M] (Sony Ericsson Mobile Communications AB) -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
PRC - [2009-12-08 11:27:10 | 001,503,232 | ---- | M] (Nokia) -- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
PRC - [2009-10-27 09:26:36 | 000,657,408 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2009-10-27 09:15:44 | 000,132,608 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2009-10-27 09:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2009-10-21 10:24:00 | 000,272,384 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe
PRC - [2009-09-27 17:48:00 | 000,240,232 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2007-06-27 20:04:00 | 001,213,736 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
PRC - [2007-06-27 20:03:40 | 000,152,872 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
PRC - [2007-04-23 09:51:42 | 004,435,968 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
PRC - [2006-11-02 11:45:59 | 000,215,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\WindowsMobile\wmdSync.exe
PRC - [2006-06-29 10:02:06 | 000,602,112 | ---- | M] () -- C:\Program Files\Multimedia Mouse Driver\MouseDrv.exe
[color=#E56717]========== Modules (No Company Name) ==========[/color]
MOD - [2010-11-08 17:15:40 | 000,296,448 | ---- | M] () -- G:\Program files\Notepad++\NppShell_04.dll
MOD - [2010-03-15 12:28:22 | 000,141,824 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2009-12-10 15:16:44 | 000,028,160 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Plugins\WhatsNew.dll
MOD - [2009-12-10 15:02:38 | 000,934,912 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\curllibRD.dll
MOD - [2009-12-10 15:02:38 | 000,734,720 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\ZipArchive.dll
MOD - [2009-12-10 15:02:38 | 000,570,368 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Maps Service API.dll
MOD - [2009-11-06 05:33:34 | 000,241,456 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\OviShareLib.dll
MOD - [2009-10-21 10:32:04 | 000,147,264 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\noaipcclient.dll
MOD - [2009-10-21 10:24:00 | 000,272,384 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe
MOD - [2009-08-31 11:33:34 | 000,016,384 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\qtsecurestorage.dll
MOD - [2009-08-31 11:33:32 | 000,014,336 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\cryptodll.dll
MOD - [2009-08-31 11:33:32 | 000,013,824 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\qtsecurestorageserver.dll
MOD - [2009-08-31 11:11:16 | 000,025,088 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\wrtserviceipcserver.dll
MOD - [2009-08-24 11:29:52 | 002,013,184 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\QtCore4.dll
MOD - [2009-06-20 11:21:30 | 007,464,448 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\QtGui4.dll
MOD - [2009-06-20 11:10:32 | 000,875,520 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\QtNetwork4.dll
MOD - [2009-06-20 11:09:26 | 000,337,408 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\QtXml4.dll
MOD - [2009-06-09 16:17:32 | 000,019,968 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\wrtserviceipcclient.dll
MOD - [2009-03-30 15:46:00 | 002,070,016 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtCore4.dll
MOD - [2009-02-26 10:17:06 | 000,022,016 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Imageformats\qgif4.dll
MOD - [2009-02-26 09:23:56 | 000,246,784 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtSvg4.dll
MOD - [2009-02-26 09:14:34 | 007,497,216 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtGui4.dll
MOD - [2009-02-26 09:05:38 | 000,872,960 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtNetwork4.dll
MOD - [2009-02-26 09:04:48 | 000,319,488 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtXml4.dll
MOD - [2009-02-14 06:04:38 | 000,756,040 | ---- | M] () -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSPTLS.DLL
MOD - [2009-01-20 13:02:32 | 000,131,072 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Imageformats\qjpeg1.dll
MOD - [2009-01-20 13:02:32 | 000,013,824 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Imageformats\qsvg1.dll
MOD - [2006-06-29 10:02:06 | 000,602,112 | ---- | M] () -- C:\Program Files\Multimedia Mouse Driver\MouseDrv.exe
MOD - [2006-04-25 18:07:38 | 000,032,768 | ---- | M] () -- C:\Program Files\Multimedia Mouse Driver\MouseHook.dll
MOD - [2005-07-20 10:48:10 | 000,059,904 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\zlib1.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - [2011-08-16 17:27:41 | 000,107,136 | ---- | M] (TMRG, Inc.) [Auto | Running] -- C:\Program Files\RelevantKnowledge\rlservice.exe -- (RelevantKnowledge)
SRV - [2011-02-28 19:44:14 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011-02-25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011-01-22 13:34:44 | 000,265,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2009-10-27 09:26:36 | 000,657,408 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009-10-20 20:19:48 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2009-09-27 17:48:00 | 000,240,232 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2006-11-02 11:46:13 | 000,365,568 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2006-11-02 11:46:12 | 000,167,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2011-05-10 14:02:25 | 000,102,616 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2011-05-10 13:59:37 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011-01-21 19:55:59 | 000,015,600 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\gdrv.sys -- (gdrv)
DRV - [2009-10-20 20:19:44 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\npf.sys -- (NPF)
DRV - [2009-09-28 01:12:22 | 009,509,832 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2009-08-21 22:24:03 | 000,066,592 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA)
DRV - [2009-05-25 14:35:00 | 000,116,904 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1029unic.sys -- (s1029unic) Sony Ericsson Device 1029 USB Ethernet Emulation (WDM)
DRV - [2009-05-25 14:34:56 | 000,122,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1029mdm.sys -- (s1029mdm)
DRV - [2009-05-25 14:34:56 | 000,090,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1029bus.sys -- (s1029bus) Sony Ericsson Device 1029 driver (WDM)
DRV - [2009-05-25 14:34:56 | 000,015,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1029mdfl.sys -- (s1029mdfl)
DRV - [2009-05-25 14:34:54 | 000,115,880 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1029mgmt.sys -- (s1029mgmt) Sony Ericsson Device 1029 USB WMC Device Management Drivers (WDM)
DRV - [2009-05-25 14:34:54 | 000,111,912 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1029obex.sys -- (s1029obex)
DRV - [2009-05-25 14:34:54 | 000,026,024 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\s1029nd5.sys -- (s1029nd5) Sony Ericsson Device 1029 USB Ethernet Emulation (NDIS)
DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2007-03-05 15:28:00 | 000,076,288 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2006-11-02 10:55:05 | 000,031,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (winusb)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.babylon.com/?babsrc=SP_ss&q={searchTerms}&mntrId=fcb34041000000000000001a4d507540&
tlver=1.4.19.19&affID=17160
IE - HKLM\..\URLSearchHook: {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} - C:\Program Files\Softonic-Polska\tbSoft.dll (Conduit Ltd.)
IE - HKLM\..\URLSearchHook: {e8de9422-3b2c-4243-bf6f-235da84d8ef8} - C:\Program Files\Brothersoft\prxtbBrot.dll (Conduit Ltd.)
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.autocompletepro.com/?si=7148&bi=400
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.autocompletepro.com/?si=7148&bi=400
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.autocompletepro.com/?si=7148&bi=400
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://search.autocompletepro.com/?si=7148&bi=400
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?babsrc=HP_ss&mntrId=fcb34041000000000000001a4d507540&tlver=1.4.
19.19&affID=17160
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.autocompletepro.com/?si=7148&bi=400
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://search.autocompletepro.com/?si=7148&bi=400
IE - HKCU\..\URLSearchHook: {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} - C:\Program Files\Softonic-Polska\tbSoft.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {e8de9422-3b2c-4243-bf6f-235da84d8ef8} - C:\Program Files\Brothersoft\prxtbBrot.dll (Conduit Ltd.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.startup.homepage: "http://www.ask.com/web?&o=13799&l=dis&q="
FF - prefs.js..extensions.enabledItems: {27182e60-b5f3-411c-b545-b44205977502}:1.0
FF - prefs.js..extensions.enabledItems: {6E19037A-12E3-4295-8915-ED48BC341614}:1.3.328.4
FF - prefs.js..keyword.URL: "http://www.ask.com/web?&o=13795&l=dis&q="
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{6E19037A-12E3-
4295-8915-ED48BC341614}: C:\Program Files\RelevantKnowledge [2011-08-25 11:42:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\searchpredict@speedbit.
com: C:\Program Files\SearchPredict\PRFireFox [2011-04-01 19:44:58 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{0329E7D6-6F54-
462D-93F6-F5C3118BADF2}: G:\Program Files\SpeedBit Video Downloader\SPFireFox [2011-04-01 19:45:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3C5F0F00-683D-
4847-89C8-E7AF64FD1CFB}: C:\Program Files\RelevantKnowledge [2011-08-25 11:42:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components: D:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-02-08 20:26:30 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-02-08 20:26:30 | 000,000,000 | ---D | M]
[2011-02-08 20:02:22 | 000,000,000 | ---D | M] (No name found) -- C:\Users\hugo\AppData\Roaming\mozilla\Extensions
[2011-07-04 16:57:47 | 000,000,000 | ---D | M] (No name found) -- C:\Users\hugo\AppData\Roaming\mozilla\Firefox\Profiles\kkyk3s8w.
default\extensions
[2011-02-08 20:16:50 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\hugo\AppData\Roaming\mozilla\Firefox\Profiles\kkyk3s8w.
default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011-03-24 16:14:36 | 000,000,000 | ---D | M] (Default Manager) -- C:\Users\hugo\AppData\Roaming\mozilla\Firefox\Profiles\kkyk3s8w.
default\extensions\DefaultManager@Microsoft
[2011-07-04 16:57:48 | 000,000,000 | ---D | M] (Babylon) -- C:\Users\hugo\AppData\Roaming\mozilla\Firefox\Profiles\kkyk3s8w.
default\extensions\ffxtlbr@babylon.com
[2011-04-24 19:22:08 | 000,000,000 | ---D | M] (Facemoods) -- C:\Users\hugo\AppData\Roaming\mozilla\Firefox\Profiles\kkyk3s8w.
default\extensions\ffxtlbr@Facemoods.com
[2011-02-08 20:26:30 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010-12-03 19:54:54 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2011-07-04 16:57:48 | 000,002,423 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
[2010-12-03 19:54:54 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2011-04-24 19:22:08 | 000,002,049 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrch.xml
[2010-12-03 19:54:54 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2010-12-03 19:54:54 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2010-12-03 19:54:54 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2010-12-03 19:54:54 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml
O1 HOSTS File: ([2006-09-18 23:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (AC-Pro) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Program Files\AutocompletePro\AutocompletePro.dll (SimplyGen)
O2 - BHO: (CescrtHlpr Object) - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\bh\BabylonToolbar.dll (Babylon BHO)
O2 - BHO: (SBCONVERT Class) - {3017FB3E-9A77-4396-88C5-0EC9548FB42F} - G:\Program files\SpeedBit Video Downloader\Toolbar\tbcore3.dll ()
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (SearchPredictObj Class) - {389943B0-C3A2-4E69-82CB-8596A84CB3DC} - C:\Program Files\SearchPredict\SearchPredict.dll (Speedbit Ltd.)
O2 - BHO: (CescrtHlpr Object) - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.4.17.6\bh\facemoods.dll (facemoods.com BHO)
O2 - BHO: (Softonic-Polska Toolbar) - {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} - C:\Program Files\Softonic-Polska\tbSoft.dll (Conduit Ltd.)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (Foxit PDF Creator Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (Brothersoft Toolbar) - {e8de9422-3b2c-4243-bf6f-235da84d8ef8} - C:\Program Files\Brothersoft\prxtbBrot.dll (Conduit Ltd.)
O2 - BHO: (GrabberObj Class) - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - G:\Program files\SpeedBit Video Downloader\Toolbar\Grabber.dll (Speedbit Ltd.)
O3 - HKLM\..\Toolbar: (SpeedBit Video Downloader) - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - G:\Program files\SpeedBit Video Downloader\Toolbar\tbcore3.dll ()
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKLM\..\Toolbar: (Babylon Toolbar) - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarTlbr.dll (Babylon Ltd.)
O3 - HKLM\..\Toolbar: (Softonic-Polska Toolbar) - {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} - C:\Program Files\Softonic-Polska\tbSoft.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Foxit PDF Creator Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (facemoods Toolbar) - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.4.17.6\facemoodsTlbr.dll (facemoods.com)
O3 - HKLM\..\Toolbar: (Brothersoft Toolbar) - {e8de9422-3b2c-4243-bf6f-235da84d8ef8} - C:\Program Files\Brothersoft\prxtbBrot.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (SpeedBit Video Downloader) - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - G:\Program files\SpeedBit Video Downloader\Toolbar\tbcore3.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Softonic-Polska Toolbar) - {C86EB8A9-CCC2-4B6C-B75D-73576ED591BF} - C:\Program Files\Softonic-Polska\tbSoft.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Foxit PDF Creator Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKCU\..\Toolbar\WebBrowser: (Brothersoft Toolbar) - {E8DE9422-3B2C-4243-BF6F-235DA84D8EF8} - C:\Program Files\Brothersoft\prxtbBrot.dll (Conduit Ltd.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [BabylonToolbar] C:\Program Files\BabylonToolbar\BabylonToolbar\1.4.19.19\BabylonToolbarsrv.exe (Babylon Ltd.)
O4 - HKLM..\Run: [facemoods] C:\Program Files\facemoods.com\facemoods\1.4.17.6\facemoodssrv.exe (facemoods.com)
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia)
O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdSync.exe (Microsoft Corporation)
O4 - HKLM..\Run: [WireLessMouse] File not found
O4 - HKCU..\Run: [] File not found
O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG)
O4 - HKCU..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe (Nokia)
O4 - HKCU..\Run: [RMF FM Miasto Muzyki] File not found
O4 - HKCU..\Run: [Sony Ericsson PC Companion] C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson Mobile Communications AB)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.33.254 213.172.186.4
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\hugo\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg
O24 - Desktop BackupWallPaper: C:\Users\hugo\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006-09-18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2005-10-12 09:36:14 | 000,000,059 | R--- | M] () - H:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2010-11-03 14:22:20 | 000,000,137 | ---- | M] () - O:\Autorun.inf -- [ FAT32 ]
O33 - MountPoints2\{05458faf-c0c7-11e0-88ef-001a4d507540}\Shell\AutoRun\command - "" = O:\ContentManager\ContentManagerStarter.exe -- [2010-11-03 14:22:24 | 000,090,112 | ---- | M] ()
O33 - MountPoints2\{40da110d-2587-11e0-a5ab-001a4d507540}\Shell - "" = AutoRun
O33 - MountPoints2\{40da110d-2587-11e0-a5ab-001a4d507540}\Shell\AutoRun\command - "" = M:\Startme.exe
O33 - MountPoints2\{712687b0-2583-11e0-8268-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{712687b0-2583-11e0-8268-806e6f6e6963}\Shell\AutoRun\command - "" = H:\instaluj.exe -- [2005-03-17 13:46:50 | 002,916,864 | R--- | M] ()
O33 - MountPoints2\{a053f632-26e7-11e0-9021-001a4d507540}\Shell\AutoRun\command - "" = O:\mvoyager.exe
O33 - MountPoints2\{a053f632-26e7-11e0-9021-001a4d507540}\Shell\start\command - "" = O:\mvoyager.exe
O33 - MountPoints2\{a99aa674-8f6f-11e0-a326-806e6f6e6963}\Shell - "" = Autorun
O33 - MountPoints2\{a99aa674-8f6f-11e0-a326-806e6f6e6963}\Shell\AutoRun\command - "" = I:\Install_Nokia_Ovi_Suite.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2011-08-25 10:08:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge
[2011-08-24 19:42:58 | 000,000,000 | ---D | C] -- C:\symbols
[2011-08-24 19:22:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Debugging Tools for Windows (x86)
[2011-08-24 19:22:27 | 000,000,000 | ---D | C] -- C:\Program Files\Debugging Tools for Windows (x86)
[2011-08-24 19:21:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v7.1
[2011-08-24 19:21:42 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SDKs
[2011-08-24 12:47:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011-08-24 12:47:52 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011-08-22 13:59:51 | 000,102,616 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswmon2.sys
[2011-08-22 13:59:51 | 000,096,344 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswmon.sys
[2011-08-22 13:59:50 | 000,030,808 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aavmker4.sys
[2011-08-21 17:47:51 | 000,000,000 | ---D | C] -- C:\Users\hugo\AppData\Local\Downloaded Installations
[2011-08-21 16:13:52 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2011-08-21 16:13:51 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2011-08-08 14:54:57 | 000,311,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mswmdm.dll
[2011-08-08 14:54:57 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmdmps.dll
[2011-08-08 14:54:57 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmdmlog.dll
[2011-08-07 09:31:55 | 000,000,000 | ---D | C] -- C:\Users\hugo\AppData\Roaming\becker
[2011-08-07 09:31:41 | 000,000,000 | ---D | C] -- C:\Users\hugo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Becker
[2011-08-01 21:30:00 | 000,000,000 | ---D | C] -- C:\Users\hugo\Desktop\asdfgh
[2011-08-01 16:11:22 | 000,000,000 | ---D | C] -- C:\Users\hugo\AppData\Local\Deshaker
[2011-08-01 16:09:32 | 000,000,000 | ---D | C] -- C:\ProgramData\NCH Software
[2011-08-01 16:09:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Related Programs
[2011-08-01 16:09:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCH Software Suite
[2011-08-01 16:09:25 | 000,000,000 | ---D | C] -- C:\Program Files\NCH Software
[2011-08-01 16:09:24 | 000,000,000 | ---D | C] -- C:\Users\hugo\AppData\Roaming\NCH Software
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2011-08-25 11:32:21 | 000,034,800 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2011-08-25 11:32:21 | 000,034,800 | ---- | M] () -- C:\ProgramData\nvModes.001
[2011-08-25 11:06:01 | 000,003,952 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-
601632D005A0
[2011-08-25 11:06:01 | 000,003,952 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-
601632D005A0
[2011-08-25 11:02:00 | 000,001,032 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011-08-25 10:10:18 | 000,609,944 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011-08-25 10:10:18 | 000,535,330 | ---- | M] () -- C:\Windows\System32\perfh015.dat
[2011-08-25 10:10:18 | 000,103,726 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011-08-25 10:10:18 | 000,086,210 | ---- | M] () -- C:\Windows\System32\perfc015.dat
[2011-08-25 10:10:04 | 000,073,728 | ---- | M] () -- C:\Users\hugo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-08-25 10:06:02 | 000,001,028 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011-08-25 10:05:59 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011-08-25 10:05:55 | 2145,902,592 | -HS- | M] () -- C:\hiberfil.sys
[2011-08-24 18:28:41 | 017,815,040 | ---- | M] () -- C:\Users\hugo\Documents\dbg_x86_6.11.1.404.msi
[2011-08-24 13:11:50 | 199,772,876 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011-08-24 13:04:13 | 000,002,625 | ---- | M] () -- C:\Windows\System32\config.nt
[2011-08-24 13:01:44 | 000,002,446 | ---- | M] () -- C:\Windows\unins000.dat
[2011-08-24 12:54:40 | 005,235,628 | ---- | M] () -- C:\Users\hugo\Documents\cc_20110824_124956.reg
[2011-08-24 12:47:53 | 000,000,804 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011-08-22 14:44:26 | 000,001,356 | ---- | M] () -- C:\Users\hugo\AppData\Local\d3d9caps.dat
[2011-08-10 16:58:27 | 000,001,971 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2011-08-07 09:31:47 | 000,000,757 | ---- | M] () -- C:\Users\hugo\Desktop\Content Manager 2.lnk
[2011-08-01 16:21:31 | 000,000,911 | ---- | M] () -- C:\Users\Public\Desktop\Prism Video File Converter.lnk
[2011-08-01 16:09:27 | 000,000,939 | ---- | M] () -- C:\Users\Public\Desktop\VideoPad Video Editor.lnk
[2011-07-31 14:20:25 | 000,000,552 | ---- | M] () -- C:\Users\hugo\AppData\Local\d3d8caps.dat
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2011-08-24 13:43:45 | 017,815,040 | ---- | C] () -- C:\Users\hugo\Documents\dbg_x86_6.11.1.404.msi
[2011-08-24 13:14:50 | 2145,902,592 | -HS- | C] () -- C:\hiberfil.sys
[2011-08-24 13:11:15 | 199,772,876 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2011-08-24 12:49:59 | 005,235,628 | ---- | C] () -- C:\Users\hugo\Documents\cc_20110824_124956.reg
[2011-08-24 12:47:53 | 000,000,804 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2011-08-07 09:31:47 | 000,000,757 | ---- | C] () -- C:\Users\hugo\Desktop\Content Manager 2.lnk
[2011-08-01 16:21:31 | 000,000,923 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prism Video File Converter.lnk
[2011-08-01 16:21:31 | 000,000,911 | ---- | C] () -- C:\Users\Public\Desktop\Prism Video File Converter.lnk
[2011-08-01 16:09:27 | 000,000,951 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoPad Video Editor.lnk
[2011-08-01 16:09:27 | 000,000,939 | ---- | C] () -- C:\Users\Public\Desktop\VideoPad Video Editor.lnk
[2011-07-31 14:20:25 | 000,000,552 | ---- | C] () -- C:\Users\hugo\AppData\Local\d3d8caps.dat
[2011-06-26 19:26:43 | 000,000,043 | ---- | C] () -- C:\Windows\videotoiPodconverter.ini
[2011-06-26 19:24:21 | 000,000,001 | ---- | C] () -- C:\Windows\System32\SysVideotoiPod.dat
[2011-05-22 19:36:12 | 000,000,046 | ---- | C] () -- C:\Windows\System32\DonationCoder_urlsnooper_InstallInfo.dat
[2011-05-22 19:34:11 | 000,002,446 | ---- | C] () -- C:\Windows\unins000.dat
[2011-04-24 19:52:49 | 000,175,616 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2011-04-24 19:52:49 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2011-04-24 19:52:46 | 000,080,896 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2011-04-24 19:36:48 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2011-04-24 19:24:15 | 000,000,049 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2011-02-03 11:12:44 | 008,676,883 | ---- | C] () -- C:\Windows\System32\NCMedia2.dll
[2011-02-03 11:12:44 | 000,631,808 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2011-02-03 11:12:44 | 000,243,200 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2011-01-24 12:50:27 | 000,072,192 | ---- | C] () -- C:\Windows\unlite3.exe
[2011-01-21 21:42:59 | 000,034,800 | ---- | C] () -- C:\ProgramData\nvModes.dat
[2011-01-21 21:42:59 | 000,034,800 | ---- | C] () -- C:\ProgramData\nvModes.001
[2011-01-21 20:27:43 | 000,000,061 | ---- | C] () -- C:\Windows\MouseDrv.INI
[2011-01-21 19:49:09 | 000,073,728 | ---- | C] () -- C:\Users\hugo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-01-21 19:39:49 | 000,001,356 | ---- | C] () -- C:\Users\hugo\AppData\Local\d3d9caps.dat
[2009-10-20 20:19:30 | 000,053,299 | ---- | C] () -- C:\Windows\System32\pthreadVC.dll
[2006-12-05 07:22:07 | 000,332,832 | ---- | C] () -- C:\Windows\System32\perfi015.dat
[2006-12-05 07:22:06 | 000,535,330 | ---- | C] () -- C:\Windows\System32\perfh015.dat
[2006-12-05 07:22:06 | 000,086,210 | ---- | C] () -- C:\Windows\System32\perfc015.dat
[2006-12-05 07:22:06 | 000,037,468 | ---- | C] () -- C:\Windows\System32\perfd015.dat
[2006-11-02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006-11-02 14:47:37 | 000,271,968 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006-11-02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006-11-02 12:33:01 | 000,609,944 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006-11-02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006-11-02 12:33:01 | 000,103,726 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006-11-02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006-11-02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006-11-02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006-11-02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006-11-02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006-11-02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006-11-02 09:22:43 | 000,099,999 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2006-11-02 09:22:43 | 000,018,271 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
< End of report >
Co mam zrobić w tej sytuacji?
Strona 1 z 1
Szybka odpowiedź
Użytkownicy przeglądający ten temat: 1
0 użytkowników, 1 gości, 0 anonimowych
Zmień widoczność shoutboxa Shoutbox
|

Logowanie »
Rejestracja
Pomoc
Dodaj odpowiedź
Cytuj