Witam,
Mój komputer nabawił się jakiegoś syfu i kiedy próbuję wejść do byle jakiego folderu wyskakuje mi taki błąd:
http://img142.imageshack.us/my.php?image=c...calerrorbv0.jpg
Oto mój log z ComboFix-a:
ComboFix 08-07-24.3 - maras 2008-07-25 13:14:06.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.1.1045.18.503 [GMT 2:00]
Running from: F:\Install\ComboFix.exe
Command switches used :: F:\Install\CFScript.txt
* Created a new restore point
[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
FILE ::
F:\Program Files\Uninstall My Global Search Bar.dll
F:\windows\system32\eps32.dll
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
F:\WINDOWS\system32\pthreadVC.dll
.
((((((((((((((((((((((((( Files Created from 2008-06-25 to 2008-07-25 )))))))))))))))))))))))))))))))
.
2008-07-25 11:48 . 2008-07-25 11:48 18,944 --a------ F:\WINDOWS\system32\homie.dll
2008-07-25 10:19 . 2008-07-25 10:49 <DIR> d-------- F:\p&m
2008-07-24 15:38 . 2008-07-24 15:50 <DIR> d-------- F:\Program Files\MagiDemo
2008-07-23 15:09 . 2008-07-23 15:09 <DIR> d-------- F:\Program Files\FMOD SoundSystem
2008-07-23 15:05 . 2008-07-23 15:05 <DIR> d-------- F:\Program Files\GameSpy
2008-07-23 14:47 . 2008-07-23 14:47 <DIR> d-------- F:\Program Files\Electronic Arts
2008-07-23 14:34 . 2008-07-23 14:34 <DIR> d-------- F:\Program Files\DAEMON Tools Toolbar
2008-07-23 14:34 . 2008-07-23 14:34 <DIR> d-------- F:\Program Files\DAEMON Tools Lite
2008-07-23 14:30 . 2008-07-23 14:30 <DIR> d-------- F:\Documents and Settings\maras\Dane aplikacji\DAEMON Tools
2008-07-23 14:30 . 2008-07-23 14:30 717,296 --a------ F:\WINDOWS\system32\drivers\sptd.sys
2008-07-23 14:00 . 2008-07-23 14:41 <DIR> d-------- F:\crajzis
2008-07-22 02:42 . 2008-07-22 02:42 42,320 --a------ F:\WINDOWS\system32\xfcodec.dll
2008-07-21 15:05 . 2008-07-21 15:10 <DIR> d-------- F:\Chernobyl_Viewer_v0_99
2008-07-19 16:12 . 2008-07-19 18:33 <DIR> d-------- F:\Fraps
2008-07-17 17:42 . 2008-07-17 17:42 <DIR> d-------- F:\Program Files\Saqqarah
2008-07-17 17:42 . 2008-07-17 17:42 <DIR> d-------- F:\Documents and Settings\maras\Dane aplikacji\Saqqarah
2008-07-17 17:42 . 2008-07-17 17:48 <DIR> d-------- F:\Documents and Settings\maras\Dane aplikacji\Ancient Quest of Saqqarah__cminion
2008-07-16 11:44 . 2008-07-16 11:45 <DIR> d-------- F:\WorldCompo1
2008-07-15 15:13 . 2008-07-15 15:21 <DIR> d-------- F:\annihilation
2008-07-15 09:13 . 2008-07-15 09:13 <DIR> d-------- F:\Documents and Settings\NetworkService\Dane aplikacji\Xfire
2008-07-13 20:52 . 2008-07-25 08:53 <DIR> d-------- F:\Program Files\Spyware Process Detector
2008-07-13 20:29 . 2008-07-14 22:16 <DIR> d-------- F:\Program Files\pacman_super
2008-07-13 13:24 . 2008-07-13 13:24 <DIR> d-------- F:\Program1
2008-07-11 17:56 . 2008-07-11 17:56 <DIR> d-------- F:\ZTS
2008-07-11 16:33 . 2008-07-24 14:31 <DIR> d-------- F:\Program Files\Xfire
2008-07-11 16:33 . 2008-07-25 13:09 <DIR> d-------- F:\Documents and Settings\maras\Dane aplikacji\Xfire
2008-07-09 23:05 . 2008-07-24 11:31 <DIR> d-------- F:\XeDI_TechDEMO
2008-07-09 22:23 . 2008-07-09 22:23 <DIR> d-------- F:\Program Files\Microsoft Silverlight
2008-07-09 22:21 . 2008-07-09 22:21 <DIR> d-------- F:\Program Files\Microsoft Synchronization Services
2008-07-09 22:21 . 2008-07-09 22:21 <DIR> d-------- F:\Program Files\Microsoft SQL Server Compact Edition
2008-07-09 22:05 . 2008-07-09 22:21 <DIR> d-------- F:\Program Files\Microsoft Visual Studio 9.0
2008-07-09 22:04 . 2008-07-09 22:04 <DIR> d-------- F:\Program Files\Microsoft SDKs
2008-07-09 22:02 . 2008-07-09 22:02 <DIR> d-------- F:\WINDOWS\system32\pl-PL
2008-07-09 22:00 . 2008-07-09 22:02 <DIR> d-------- F:\WINDOWS\system32\XPSViewer
2008-07-09 22:00 . 2008-07-09 22:00 <DIR> d-------- F:\Program Files\Reference Assemblies
2008-07-09 22:00 . 2008-07-09 22:00 <DIR> d-------- F:\Program Files\MSBuild
2008-07-09 21:59 . 2006-06-29 13:07 14,048 --------- F:\WINDOWS\system32\spmsg2.dll
2008-07-09 21:54 . 2008-07-09 21:54 <DIR> d-------- F:\Program Files\MSXML 6.0
2008-07-08 15:29 . 2008-07-08 15:29 <DIR> d-------- F:\przyklady_dinput
2008-07-08 13:09 . 2008-07-08 13:12 <DIR> d-------- F:\Program Files\SecondLife
2008-07-08 13:09 . 2008-07-08 13:11 <DIR> d-------- F:\Documents and Settings\maras\Dane aplikacji\SecondLife
2008-07-07 19:37 . 2008-05-30 23:37 4,012,040 --a------ F:\WINDOWS\system32\D3dx9d_38.dll
2008-07-07 19:37 . 2008-05-30 23:37 3,799,048 --a------ F:\WINDOWS\system32\d3dx9d_33.dll
2008-07-07 19:37 . 2008-05-30 23:37 891,400 --a------ F:\WINDOWS\system32\xaudioD2_1.dll
2008-07-07 19:37 . 2008-05-30 23:34 512,008 --a------ F:\WINDOWS\system32\D3DX10d_38.dll
2008-07-07 19:37 . 2008-05-30 23:34 362,504 --a------ F:\WINDOWS\system32\XactEngineA3_1.dll
2008-07-07 19:37 . 2008-05-30 23:33 287,752 --a------ F:\WINDOWS\system32\XactEngineD3_1.dll
2008-07-07 19:37 . 2008-05-30 23:36 111,624 --a------ F:\WINDOWS\system32\XAPOFXD1_0.dll
2008-07-07 19:37 . 2008-05-30 23:34 49,672 --a------ F:\WINDOWS\system32\X3DAudioD1_4.dll
2008-07-07 19:33 . 2008-07-07 19:35 <DIR> d-------- F:\WINDOWS\Logs
2008-07-07 19:33 . 2008-07-07 19:37 <DIR> d-------- F:\Program Files\Microsoft DirectX SDK (June 2008)
2008-07-07 19:33 . 2008-07-07 19:33 140,296 --a------ F:\WINDOWS\dxsdkuninst.exe
2008-07-07 18:00 . 2008-07-18 19:00 <DIR> d-------- F:\przyklady_d3d
2008-07-05 14:16 . 2008-07-05 14:16 <DIR> d-------- F:\lab14_byPaco
2008-07-05 10:31 . 2008-07-05 10:33 <DIR> d-------- F:\Program Files\Microsoft Platform SDK for Windows XP SP2
2008-07-04 23:35 . 2008-07-05 10:28 <DIR> d-------- F:\psdk
2008-07-04 13:33 . 2008-07-04 13:33 <DIR> d-------- F:\warsztat_gra2d
2008-07-04 12:37 . 2008-07-24 17:07 <DIR> d-------- F:\Program Files\filip_framework
2008-07-03 17:02 . 2008-07-03 17:02 <DIR> d-------- F:\przyklady_ddraw
2008-06-30 20:38 . 2007-07-20 22:13 317,952 --a------ F:\WINDOWS\system32\libtiff-3.dll
2008-06-30 20:38 . 2007-07-20 22:13 131,072 --a------ F:\WINDOWS\system32\libpng12-0.dll
2008-06-30 20:38 . 2007-07-20 22:13 113,664 --a------ F:\WINDOWS\system32\jpeg.dll
2008-06-30 20:38 . 2007-07-20 22:13 70,656 --a------ F:\WINDOWS\system32\zlib1.dll
2008-06-30 20:38 . 2007-07-20 22:15 40,448 --a------ F:\WINDOWS\system32\SDL_image.dll
2008-06-30 19:14 . 2008-06-30 19:14 <DIR> d-------- F:\Program Files\xchat
2008-06-30 19:14 . 2008-07-07 19:11 <DIR> d-------- F:\Documents and Settings\maras\Dane aplikacji\X-Chat 2
2008-06-30 11:24 . 2007-12-30 16:09 321,536 --a------ F:\WINDOWS\system32\SDL.dll
2008-06-29 15:22 . 2008-06-30 11:13 <DIR> d-------- F:\SDL-devel-1.2.13-VC8
2008-06-27 17:45 . 2008-06-27 17:45 93,750 --a------ F:\listek.jpg
2008-06-27 14:44 . 2008-06-27 14:44 <DIR> d-------- F:\OTMapEditor-0.5 81 UP by Guzur
2008-06-27 14:03 . 2007-07-24 23:21 <DIR> d-------- F:\allegro
2008-06-26 19:17 . 2008-06-26 19:17 <DIR> d-------- F:\Acc Maker By Robak v. 1.0
2008-06-26 17:33 . 2008-06-26 21:39 <DIR> d-------- F:\Program Files\mIRC
2008-06-26 17:33 . 2008-06-26 21:45 <DIR> d-------- F:\Documents and Settings\maras\Dane aplikacji\mIRC
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-25 11:13 --------- d-----w F:\Program Files\Neostrada TP
2008-07-25 11:13 --------- d-----w F:\Program Files\cFosSpeed
2008-07-25 09:44 --------- d-----w F:\Program Files\Call of Duty
2008-07-25 06:53 --------- d-----w F:\Program Files\Steam
2008-07-25 06:53 --------- d-----w F:\Documents and Settings\maras\Dane aplikacji\OpenOffice.org2
2008-07-24 07:54 --------- d-----w F:\Program Files\Metin2_PL
2008-07-23 13:08 --------- d--h--w F:\Program Files\InstallShield Installation Information
2008-07-23 13:03 669,184 ----a-w F:\WINDOWS\system32\pbsvc.exe
2008-07-23 13:03 66,872 ----a-w F:\WINDOWS\system32\PnkBstrA.exe
2008-07-23 13:03 22,328 ----a-w F:\WINDOWS\system32\drivers\PnkBstrK.sys
2008-07-23 13:03 22,328 ----a-w F:\Documents and Settings\maras\Dane aplikacji\PnkBstrK.sys
2008-07-23 13:03 103,736 ----a-w F:\WINDOWS\system32\PnkBstrB.exe
2008-07-23 11:57 --------- d-----w F:\Program Files\Activision
2008-07-23 11:52 --------- d-----w F:\Program Files\Gothic III
2008-07-16 16:02 --------- d-----w F:\Documents and Settings\maras\Dane aplikacji\MegauploadToolbar
2008-07-09 20:20 --------- d-----w F:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help
2008-07-09 20:06 --------- d-----w F:\Program Files\Common Files\Merge Modules
2008-07-07 17:42 --------- d-----w F:\Program Files\Ubisoft
2008-07-01 19:02 --------- d-----w F:\Program Files\Gadu-Gadu
2008-06-29 13:53 --------- d-----w F:\Program Files\3impact5
2008-06-24 19:24 21,840 ----atw F:\WINDOWS\system32\SIntfNT.dll
2008-06-24 19:24 17,212 ----atw F:\WINDOWS\system32\SIntf32.dll
2008-06-24 19:24 12,067 ----atw F:\WINDOWS\system32\SIntf16.dll
2008-06-24 19:16 --------- d-----w F:\Program Files\Fox
2008-06-21 14:24 --------- d-----w F:\Documents and Settings\maras\Dane aplikacji\Tibia
2008-06-20 14:17 --------- d-----w F:\Program Files\Tibia
2008-06-13 15:34 --------- d-----w F:\Program Files\Mozilla Thunderbird
2008-06-08 13:20 --------- d-----w F:\Program Files\Cheat Engine1
2008-06-07 12:04 --------- d-----w F:\Program Files\Cheat Engine
2008-05-30 21:37 3,086,856 ----a-w F:\WINDOWS\system32\d3d9d.dll
2008-05-30 12:19 507,400 ----a-w F:\WINDOWS\system32\XAudio2_1.dll
2008-05-30 12:18 238,088 ----a-w F:\WINDOWS\system32\xactengine3_1.dll
2008-05-30 12:17 65,032 ----a-w F:\WINDOWS\system32\XAPOFX1_0.dll
2008-05-30 12:17 25,608 ----a-w F:\WINDOWS\system32\X3DAudio1_4.dll
2008-05-30 12:11 467,984 ----a-w F:\WINDOWS\system32\d3dx10_38.dll
2008-05-30 12:11 3,850,760 ----a-w F:\WINDOWS\system32\D3DX9_38.dll
2008-05-30 12:11 1,491,992 ----a-w F:\WINDOWS\system32\D3DCompiler_38.dll
2008-05-25 09:29 --------- d-----w F:\Documents and Settings\maras\Dane aplikacji\Ubisoft
2008-05-25 09:28 --------- d-----w F:\Documents and Settings\All Users\Dane aplikacji\Ubisoft
2008-01-08 15:25 217,088 ----a-w F:\Program Files\patcher.exe
2002-07-01 14:13 224 --sha-w F:\Documents and Settings\maras\Dane aplikacji\maildriver32.dat
2001-11-23 10:08 712,704 ----a-w F:\WINDOWS\inf\OTHER\AUDIO3D.DLL
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A4D16645-4149-41FB-B670-E06072E540C1}]
2008-07-25 11:48 18944 --a------ F:\WINDOWS\system32\homie.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="F:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2006-12-23 19:05 143360]
"Steam"="F:\Program Files\Steam\Steam.exe" [2006-03-10 17:15 1249280]
"Orb"="F:\Program Files\Winamp Remote\bin\OrbTray.exe" [2008-01-07 22:02 495616]
"spyprodetector"="F:\Program Files\Spyware Process Detector\spydetector.exe" [2008-04-26 01:09 370085]
"DAEMON Tools Lite"="F:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-07-17 14:20 490952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="F:\WINDOWS\system32\NvCpl.dll" [2006-10-22 12:22 7700480]
"NvMediaCenter"="F:\WINDOWS\system32\NvMcTray.dll" [2006-10-22 12:22 86016]
"WooCnxMon"="F:\PROGRA~1\NEOSTR~1\CnxMon.exe" [2003-10-16 18:07 24576]
"SpeedTouch USB Diagnostics"="F:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" [2004-01-26 11:38 866816]
"WOOWATCH"="F:\PROGRA~1\NEOSTR~1\Watch.exe" [2003-10-16 18:07 20480]
"WOOTASKBARICON"="F:\PROGRA~1\NEOSTR~1\TaskbarIcon.exe" [2003-10-16 18:07 53248]
"JeticoPFStartup"="F:\Program Files\Jetico\Jetico Personal Firewall\fwsrv.exe" [2005-07-19 08:22 118784]
"No-IP Client 1.42"="F:\Program Files\No-IP Client\noipclient.exe" [2006-05-13 22:30 571392]
"NeroFilterCheck"="F:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 16:40 155648]
"avast!"="F:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-03-29 19:37 79224]
"WinampAgent"="F:\Program Files\Winamp\winampa.exe" [2008-01-16 00:54 37376]
"TkBellExe"="F:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-03-02 20:55 180269]
"cFosSpeed"="F:\Program Files\cFosSpeed\cFosSpeed.exe" [2008-02-22 18:46 863448]
"MSConfig"="F:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe" [2004-08-04 00:44 159744]
"nwiz"="nwiz.exe" [2006-10-22 12:22 1622016 F:\WINDOWS\system32\nwiz.exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="F:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 00:44 15360]
F:\Documents and Settings\maras\Menu Start\Programy\Autostart\
OpenOffice.org 2.3.lnk - F:\Program Files\OpenOffice.org 2.3\program\quickstart.exe [2007-08-17 23:57:56 393216]
F:\Documents and Settings\All Users\Menu Start\Programy\Autostart\
Adobe Reader Speed Launch.lnk - F:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-23 23:05:26 29696]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="F:\\Documents and Settings\\All Users\\Dane aplikacji\\Visual Styler\\Logon Screens\\logonui2.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.XFR1"= xfcodec.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Comrade.exe]
--a------ 2007-06-29 15:03 36864 F:\Program Files\GameSpy\Comrade\Comrade.exe
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"F:\\Program Files\\America's Army\\System\\ArmyOps.exe"=
"F:\\Program Files\\Winamp Remote\\bin\\Orb.exe"=
"F:\\Program Files\\Winamp Remote\\bin\\OrbTray.exe"=
"F:\\Program Files\\Winamp Remote\\bin\\OrbStreamerClient.exe"=
"F:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2main.exe"=
"F:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2main_amdxp.exe"=
"F:\\Program Files\\Atari\\Neverwinter Nights 2\\nwupdate.exe"=
"F:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2server.exe"=
"F:\\WINDOWS\\system32\\PnkBstrA.exe"=
"F:\\WINDOWS\\system32\\PnkBstrB.exe"=
"F:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"=
"F:\\Program Files\\xchat\\xchat.exe"=
"F:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\Crysis.exe"=
"F:\\Program Files\\Electronic Arts\\Crytek\\Crysis\\Bin32\\CrysisDedicatedServer.exe"=
R1 aswSP;avast! Self Protection;F:\WINDOWS\system32\drivers\aswSP.sys [2008-03-29 19:31]
R2 ALThemeHelper;AusLogics Windows Themes Helper;F:\Program Files\AusLogics Visual Styler\themehelpersvc.exe [2007-10-15 14:19]
R2 aswFsBlk;aswFsBlk;F:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-03-29 19:35]
R2 spydetector;spydetector;F:\Program Files\Spyware Process Detector\spydetector.sys [2007-09-18 01:02]
*Newly Created Service* - CATCHME
*Newly Created Service* - PROCEXP90
.
- - - - ORPHANS REMOVED - - - -
HKLM-Run-Cmaudio - cmicnfg.cpl
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-07-25 13:18:09
Windows 5.1.2600 Dodatek Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-07-25 13:19:32
ComboFix-quarantined-files.txt 2008-07-25 11:19:27
Pre-Run: 13,889,638,400 bajtów wolnych
Post-Run: 15,410,565,120 bajtów wolnych
219 --- E O F --- 2007-10-10 18:19:20
Z góry dzięki...