Skocz do zawartości


Close Open
Close Open

J_O_R_D_A_N

Dołączył: 09 Jul 2008
Offline Ostatnio aktywny: Jul 13 2008 20:59 PM
-----

Moje tematy

Bardzo bardzo bardzo... :) proszę o sprawdzenia log'a !

09 July 2008 - 14:07 PM

Witam serdecznie !!!

Przyznać muszę, że w temacie jestem nieco zielony, ale nękające mnie każdego dnia kompulsywne próby otworzenia ikonek partycji i ich późniejsze omijanie doprowadzały mnie do pasji. Wiem że zainfekowałem system pendrivem i najprawdopodobniej wiem co było źródłem tej infekcji ale i tak już po ptakach. Ok zresztą nie bede już dłużej nawijał - Oto mój log:


ComboFix 08-07-08.7 - JORDAN 2008-07-09 14:41:06.1 - NTFSx86
Microsoft Windows XP Professional  5.1.2600.3.1250.1.1045.18.222 [GMT 2:00]
Running from: C:\Combo\ComboFix.exe
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Autorun.inf
C:\Documents and Settings\JORDAN\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows Media\10.0\WMSDKNSD.XML
D:\Autorun.inf

.
(((((((((((((((((((((((((   Files Created from 2008-06-09 to 2008-07-09  )))))))))))))))))))))))))))))))
.

2008-07-09 14:22 . 2008-07-09 14:31 <DIR> d-------- C:\Z Pena
2008-07-09 14:12 . 2008-04-14 00:15 26,368 --a--c--- C:\WINDOWS\system32\dllcache\usbstor.sys
2008-07-09 13:48 . 2008-07-09 13:48 <DIR> d-------- C:\WINDOWS\LastGood
2008-07-09 12:22 . 2005-04-15 20:58 1,351,392 --a------ C:\WINDOWS\system32\COMCTL32.OCX
2008-07-09 12:22 . 2003-08-03 22:56 1,146,184 --a------ C:\WINDOWS\system32\FM20.DLL
2008-07-09 12:22 . 2005-04-15 20:58 1,071,088 --a------ C:\WINDOWS\system32\MSCOMCTL.OCX
2008-07-09 12:22 . 2004-03-09 02:00 212,240 --a------ C:\WINDOWS\system32\RICHTX32.OCX
2008-07-09 12:22 . 2005-07-28 16:57 152,848 --a------ C:\WINDOWS\system32\COMDLG32.OCX
2008-07-09 12:22 . 2003-01-27 01:41 40,960 --a------ C:\WINDOWS\system32\SSUBTMR6.DLL
2008-07-09 12:22 . 2003-07-15 10:57 32,584 --a------ C:\WINDOWS\system32\FM20ENU.DLL
2008-07-09 12:22 . 2007-05-27 15:33 10,752 --a------ C:\WINDOWS\system32\aamd532.dll
2008-07-09 12:18 . 2008-07-09 12:22 <DIR> d-------- C:\Program Files\AutoPatcher
2008-07-08 20:13 . 2008-04-14 22:50 363,520 --a------ C:\WINDOWS\system32\PsisDecd.dll
2008-07-08 20:10 . 2005-05-23 18:09 1,645,320 --a------ C:\WINDOWS\system32\gdiplus.dll
2008-07-08 20:10 . 2005-05-23 18:09 198,144 --a------ C:\WINDOWS\system32\_psisdecd.dll
2008-07-08 20:10 . 2005-05-23 18:09 44,544 --a------ C:\WINDOWS\system32\msxml4a.dll
2008-07-08 19:18 . 2008-07-08 18:00 60,416 --a------ C:\WINDOWS\system32\antiwpa.dll
2008-07-08 18:55 . 2008-07-08 18:55 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23\Dane aplikacji\BESTplayer
2008-07-08 12:26 . 2003-03-18 21:20 1,060,864 --a------ C:\WINDOWS\system32\MFC71.dll
2008-07-08 12:26 . 2003-03-18 20:14 499,712 --a------ C:\WINDOWS\system32\MSVCP71.dll
2008-07-08 12:25 . 2008-07-08 12:27 <DIR> d-------- C:\Program Files\DAEMON Tools Lite
2008-07-08 12:25 . 2008-07-09 14:38 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23\Dane aplikacji\DAEMON Tools
2008-07-08 12:23 . 2008-07-08 12:23 715,248 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2008-07-08 01:59 . 2008-06-14 19:36 273,024 --------- C:\WINDOWS\system32\drivers\bthport.sys
2008-07-08 01:59 . 2008-06-14 19:36 273,024 -----c--- C:\WINDOWS\system32\dllcache\bthport.sys
2008-07-08 01:52 . 2008-05-08 16:02 203,136 -----c--- C:\WINDOWS\system32\dllcache\rmcast.sys
2008-07-08 01:46 . 2005-02-25 05:36 22,752 --a------ C:\WINDOWS\system32\spupdsvc.exe
2008-07-08 00:26 . 2008-07-08 00:26 <DIR> d-------- C:\Program Files\Winamp
2008-07-08 00:26 . 2006-08-25 05:47 115,880 --------- C:\WINDOWS\system32\pxinsi64.exe
2008-07-08 00:23 . 2008-07-08 00:24 <DIR> d-------- C:\Program Files\BearShare
2008-07-08 00:16 . 2008-07-08 20:10 <DIR> d-------- C:\Program Files\CyberLink
2008-07-08 00:12 . 2008-07-08 00:12 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23\Dane aplikacji\Tlen.pl
2008-07-08 00:11 . 2008-07-08 00:11 <DIR> d-------- C:\Program Files\Tlen.pl
2008-07-08 00:09 . 2008-07-08 00:09 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23\Dane aplikacji\MusicIP
2008-07-07 23:58 . 2008-07-07 23:58 <DIR> d-------- C:\Program Files\Gadu-Gadu
2008-07-07 23:57 . 2008-07-07 23:57 <DIR> d-------- C:\Program Files\Opera
2008-07-07 23:56 . 2008-07-07 23:56 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\WinZip
2008-07-07 23:54 . 2008-07-09 11:56 <DIR> d-------- C:\Program Files\Google
2008-07-07 23:54 . 2007-09-04 17:56 164,352 --a------ C:\WINDOWS\system32\unrar.dll
2008-07-07 23:53 . 2008-07-07 23:53 <DIR> d-------- C:\Program Files\K-Lite Codec Pack
2008-07-07 23:45 . 2005-08-05 03:57 143,360 --a------ C:\WINDOWS\system32\igfxres.dll
2008-07-07 23:45 . 2008-07-07 23:45 64 --a------ C:\WINDOWS\RTHDCPL_DB.dbt
2008-07-07 23:43 . 2008-07-07 23:43 17,801 --a------ C:\WINDOWS\system32\drivers\AegisP.sys
2008-07-07 23:42 . 2008-07-07 23:42 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Intel
2008-07-07 23:42 . 2006-02-07 06:21 13 --a------ C:\WINDOWS\system32\drivers\verfile.tic
2008-07-07 23:41 . 2008-07-07 23:41 <DIR> d-------- C:\Program Files\LanExpress
2008-07-07 23:33 . 2005-06-29 06:25 14,720,000 --a------ C:\WINDOWS\RTHDCPL.EXE
2008-07-07 23:33 . 2005-06-29 06:24 9,699,328 --a------ C:\WINDOWS\RTLCPL.EXE
2008-07-07 23:33 . 2005-06-29 07:35 3,173,888 --a------ C:\WINDOWS\system32\drivers\RtkHDAud.sys
2008-07-07 23:33 . 2005-06-29 06:26 2,806,272 --a------ C:\WINDOWS\ALCWZRD.EXE
2008-07-07 23:33 . 2005-06-29 06:22 2,112,000 --a------ C:\WINDOWS\MicCal.exe
2008-07-07 23:33 . 2005-04-16 15:20 487,424 --a------ C:\WINDOWS\RtlExUpd.dll
2008-07-07 23:33 . 2005-06-21 08:12 294,912 --a------ C:\WINDOWS\system32\ALSNDMGR.CPL
2008-07-07 23:33 . 2005-05-26 07:14 262,144 --a------ C:\WINDOWS\system32\RTSndMgr.CPL
2008-07-07 23:33 . 2005-06-21 08:09 90,112 --a------ C:\WINDOWS\SOUNDMAN.EXE
2008-07-07 23:33 . 2005-05-03 11:43 69,632 --a------ C:\WINDOWS\ALCMTR.EXE
2008-07-07 23:33 . 2005-05-18 06:38 40,960 --a------ C:\WINDOWS\system32\ChCfg.exe
2008-07-07 23:25 . 2008-07-07 23:25 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23\Dane aplikacji\Gadu-Gadu
2008-07-07 23:20 . 2008-07-08 00:55 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23\Gadu-Gadu
2008-07-07 23:19 . 2008-07-08 20:16 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23\Dane aplikacji\CyberLink
2008-07-07 23:19 . 2008-07-08 20:16 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\CyberLink
2008-07-07 22:52 . 2008-07-07 22:52 4,444 --a------ C:\WINDOWS\system32\pid.PNF
2008-07-07 22:51 . 2008-04-14 02:15 172,416 --a------ C:\WINDOWS\system32\drivers\kmixer.sys
2008-07-07 22:51 . 2008-04-14 00:09 142,592 --a------ C:\WINDOWS\system32\drivers\aec.sys
2008-07-07 22:51 . 2008-04-14 02:15 6,272 --a------ C:\WINDOWS\system32\drivers\splitter.sys
2008-07-07 22:49 . 2008-04-14 23:35 58,880 --a------ C:\WINDOWS\system32\drivers\redbook.sys
2008-07-07 22:49 . 2001-08-17 22:51 20,752 --a------ C:\WINDOWS\system32\drivers\SonyNC.sys
2008-07-07 22:49 . 2001-08-17 23:46 6,400 --a------ C:\WINDOWS\system32\drivers\enum1394.sys
2008-07-07 22:48 . 2008-04-14 22:50 77,312 --a------ C:\WINDOWS\system32\usbui.dll
2008-07-07 22:48 . 2008-04-14 22:50 77,312 --a--c--- C:\WINDOWS\system32\dllcache\usbui.dll
2008-07-07 22:48 . 2008-04-14 02:06 14,208 --a------ C:\WINDOWS\system32\drivers\battc.sys
2008-07-07 22:48 . 2008-04-14 02:06 13,952 --a------ C:\WINDOWS\system32\drivers\CmBatt.sys
2008-07-07 22:48 . 2008-04-14 02:06 10,240 --a------ C:\WINDOWS\system32\drivers\compbatt.sys
2008-07-07 22:48 . 2008-04-14 23:46 5,504 --a------ C:\WINDOWS\system32\drivers\intelide.sys
2008-07-07 22:46 . 2008-07-09 12:28 828,142 --a------ C:\WINDOWS\system32\PerfStringBackup.INI
2008-07-07 22:46 . 2008-07-09 03:02 1,355 --a------ C:\WINDOWS\imsins.BAK
2008-07-07 22:45 . 2008-07-09 14:42 <DIR> dr-h----- C:\Documents and Settings\Default User.WINDOWS\Ustawienia lokalne
2008-07-07 22:45 . 2008-07-07 22:45 <DIR> d-------- C:\Documents and Settings\Default User.WINDOWS\Ulubione
2008-07-07 22:45 . 2008-07-07 21:00 <DIR> d--h----- C:\Documents and Settings\Default User.WINDOWS\Szablony
2008-07-07 22:45 . 2008-07-07 22:45 <DIR> d-------- C:\Documents and Settings\Default User.WINDOWS\Pulpit
2008-07-07 22:45 . 2008-07-07 22:45 <DIR> d-------- C:\Documents and Settings\Default User.WINDOWS\Moje dokumenty
2008-07-07 22:45 . 2008-07-07 22:45 <DIR> dr------- C:\Documents and Settings\Default User.WINDOWS\Menu Start
2008-07-07 22:45 . 2008-07-07 22:45 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Ulubione
2008-07-07 22:45 . 2008-07-07 22:45 <DIR> d--h----- C:\Documents and Settings\All Users.WINDOWS\Szablony
2008-07-07 22:45 . 2008-07-08 20:15 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Pulpit
2008-07-07 22:45 . 2008-07-08 19:18 <DIR> dr------- C:\Documents and Settings\All Users.WINDOWS\Menu Start
2008-07-07 22:45 . 2008-07-07 21:02 <DIR> dr------- C:\Documents and Settings\All Users.WINDOWS\Dokumenty
2008-07-07 22:44 . 2008-07-07 22:45 <DIR> dr-h----- C:\Documents and Settings\Default User.WINDOWS\Dane aplikacji
2008-07-07 22:44 . 2008-07-09 14:40 <DIR> d--h----- C:\Documents and Settings\Default User.WINDOWS
2008-07-07 22:44 . 2008-07-07 23:56 <DIR> dr-h----- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji
2008-07-07 22:44 . 2008-07-07 21:04 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS
2008-07-07 22:43 . 2008-07-07 21:09 261 --a------ C:\WINDOWS\system32\$winnt$.inf
2008-07-07 21:19 . 2008-07-07 21:19 2,560 --a------ C:\WINDOWS\system32\bitcometres.dll
2008-07-07 21:13 . 2008-07-07 22:45 <DIR> d--h----- C:\Documents and Settings\JORDAN.JORDAN23\Ustawienia lokalne
2008-07-07 21:13 . 2008-07-07 21:13 <DIR> dr------- C:\Documents and Settings\JORDAN.JORDAN23\Ulubione
2008-07-07 21:13 . 2008-07-07 21:00 <DIR> d--h----- C:\Documents and Settings\JORDAN.JORDAN23\Szablony
2008-07-07 21:13 . 2008-07-09 14:39 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23\Pulpit
2008-07-07 21:13 . 2008-07-07 23:55 <DIR> dr------- C:\Documents and Settings\JORDAN.JORDAN23\Moje dokumenty
2008-07-07 21:13 . 2008-07-08 00:11 <DIR> dr------- C:\Documents and Settings\JORDAN.JORDAN23\Menu Start
2008-07-07 21:13 . 2008-07-08 18:55 <DIR> dr-h----- C:\Documents and Settings\JORDAN.JORDAN23\Dane aplikacji
2008-07-07 21:13 . 2008-07-09 12:43 <DIR> d-------- C:\Documents and Settings\JORDAN.JORDAN23
2008-07-07 21:11 . 2008-07-09 14:42 <DIR> d--h----- C:\Documents and Settings\NetworkService.ZARZĄDZANIE NT\Ustawienia lokalne
2008-07-07 21:11 . 2008-07-09 14:42 <DIR> d--h----- C:\Documents and Settings\NetworkService.ZARZĄDZANIE NT\Ustawienia lokalne
2008-07-07 21:11 . 2008-07-07 21:11 <DIR> d-------- C:\Documents and Settings\NetworkService.ZARZĄDZANIE NT\Dane aplikacji
2008-07-07 21:11 . 2008-07-07 21:11 <DIR> d-------- C:\Documents and Settings\NetworkService.ZARZĄDZANIE NT\Dane aplikacji
2008-07-07 21:11 . 2008-07-07 21:11 <DIR> d--hs---- C:\Documents and Settings\NetworkService.ZARZĄDZANIE NT
2008-07-07 21:11 . 2008-07-09 14:42 <DIR> d--h----- C:\Documents and Settings\LocalService.ZARZĄDZANIE NT\Ustawienia lokalne
2008-07-07 21:11 . 2008-07-09 14:42 <DIR> d--h----- C:\Documents and Settings\LocalService.ZARZĄDZANIE NT\Ustawienia lokalne
2008-07-07 21:11 . 2008-07-07 21:11 <DIR> d-------- C:\Documents and Settings\LocalService.ZARZĄDZANIE NT\Dane aplikacji
2008-07-07 21:11 . 2008-07-07 21:11 <DIR> d-------- C:\Documents and Settings\LocalService.ZARZĄDZANIE NT\Dane aplikacji
2008-07-07 21:11 . 2008-07-07 21:11 <DIR> d--hs---- C:\Documents and Settings\LocalService.ZARZĄDZANIE NT
2008-07-07 21:11 . 2008-07-07 21:11 8,192 --a------ C:\WINDOWS\REGLOCS.OLD
2008-07-07 21:09 . 2008-04-14 22:48 156,672 --a--c--- C:\WINDOWS\system32\dllcache\winzm.ime
2008-07-07 21:09 . 2008-04-14 22:48 156,672 --a--c--- C:\WINDOWS\system32\dllcache\winsp.ime
2008-07-07 21:09 . 2008-04-14 22:48 156,672 --a--c--- C:\WINDOWS\system32\dllcache\winpy.ime
2008-07-07 21:09 . 2004-08-04 14:00 101,376 --a--c--- C:\WINDOWS\system32\dllcache\srusbusd.dll
2008-07-07 21:09 . 2008-04-14 22:49 79,360 --a--c--- C:\WINDOWS\system32\dllcache\winar30.ime
2008-07-07 21:09 . 2008-04-14 22:48 72,704 --a--c--- C:\WINDOWS\system32\dllcache\wingb.ime
2008-07-07 21:09 . 2008-04-14 22:49 65,536 --a--c--- C:\WINDOWS\system32\dllcache\winime.ime
2008-07-07 21:09 . 2008-04-14 22:50 46,592 --a--c--- C:\WINDOWS\system32\dllcache\sspifilt.dll
2008-07-07 21:09 . 2008-04-14 22:50 45,056 --a--c--- C:\WINDOWS\system32\dllcache\ssinc51.dll
2008-07-07 21:08 . 2004-08-04 14:00 80,384 --a--c--- C:\WINDOWS\system32\dllcache\rwia330.dll
2008-07-07 21:08 . 2004-08-04 14:00 80,384 --a--c--- C:\WINDOWS\system32\dllcache\rwia001.dll
2008-07-07 21:08 . 2008-04-14 22:50 29,184 --a--c--- C:\WINDOWS\system32\dllcache\rw330ext.dll
2008-07-07 21:08 . 2008-04-14 22:50 28,160 --a--c--- C:\WINDOWS\system32\dllcache\rw001ext.dll

.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-07-07 22:16 4,608 ----a-w C:\WINDOWS\system32\w95inf32.dll
2008-07-07 22:16 2,272 ----a-w C:\WINDOWS\system32\w95inf16.dll
2008-06-18 22:49 --------- d-----w C:\Program Files\microsoft frontpage
2008-06-18 22:46 --------- d-----w C:\Program Files\Usługi online
2008-05-07 05:12 1,291,776 ----a-w C:\WINDOWS\system32\quartz.dll
2008-04-21 06:44 668,672 ----a-w C:\WINDOWS\system32\wininet.dll
2008-04-14 23:04 1,246,357 ----a-r C:\WINDOWS\SET3.tmp
2008-04-14 22:56 16,825 ----a-r C:\WINDOWS\SET8.tmp
2008-04-14 22:56 1,088,840 ----a-r C:\WINDOWS\SET4.tmp
2008-04-14 22:50 75,776 ----a-w C:\WINDOWS\system32\storprop.dll
2008-04-14 22:50 21,504 ----a-w C:\WINDOWS\system32\hidserv.dll
2008-04-14 21:16 1,804 ----a-w C:\WINDOWS\system32\Dcache.bin
2008-04-14 21:09 55,296 ----a-w C:\WINDOWS\system32\dmutil.dll
2008-04-14 21:09 52,736 ----a-w C:\WINDOWS\system32\wzcsapi.dll
2008-04-14 21:09 49,152 ----a-w C:\WINDOWS\system32\cnbjmon.dll
2008-04-14 21:09 483,840 ----a-w C:\WINDOWS\system32\wzcsvc.dll
2008-04-14 21:09 35,328 ----a-w C:\WINDOWS\system32\pid.dll
2008-04-14 21:09 23,552 ----a-w C:\WINDOWS\system32\wdmaud.drv
2008-04-14 21:09 20,992 ----a-w C:\WINDOWS\system32\hid.dll
2008-04-14 21:09 2,067,200 ----a-w C:\WINDOWS\system32\ntkrnlpa.exe
2008-04-14 21:09 15,360 ----a-w C:\WINDOWS\system32\pjlmon.dll
2008-04-14 20:56 332,288 ----a-w C:\WINDOWS\system32\netsetup.exe
2008-04-14 20:52 92,424 ----a-w C:\WINDOWS\system32\rdpdd.dll
2008-04-14 20:52 87,176 ----a-w C:\WINDOWS\system32\rdpwsx.dll
2008-04-14 20:52 12,168 ----a-w C:\WINDOWS\system32\tsddd.dll
2008-04-14 20:50 999,936 ----a-w C:\WINDOWS\system32\syssetup.dll
2008-04-14 20:49 98,304 ----a-w C:\WINDOWS\system32\actxprxy.dll
2008-04-14 20:48 5,632 ----a-w C:\WINDOWS\system32\wmi.dll
2008-04-14 20:48 24,064 ----a-w C:\WINDOWS\system32\pidgen.dll
2008-04-14 20:48 1,449,472 ----a-w C:\WINDOWS\system32\winntbbu.dll
2008-04-14 20:47 57,375 ----a-w C:\WINDOWS\system32\odbcji32.dll
2008-04-14 20:43 4,126 ----a-w C:\WINDOWS\system32\msdxmlc.dll
2008-04-14 20:42 3,584 ----a-w C:\WINDOWS\system32\msafd.dll
2008-04-14 20:36 3,584 ----a-w C:\WINDOWS\system32\icmp.dll
2008-04-14 20:35 9,344 ----a-w C:\WINDOWS\system32\framebuf.dll
2008-04-14 20:35 569,856 ----a-w C:\WINDOWS\system32\gpedit.dll
2008-04-14 20:33 3,072 ----a-w C:\WINDOWS\system32\dpnlobby.dll
2008-04-14 20:33 3,072 ----a-w C:\WINDOWS\system32\dpnaddr.dll
2008-04-14 20:31 16,896 ----a-w C:\WINDOWS\system32\cfgmgr32.dll
2008-04-14 20:30 285,696 ----a-w C:\WINDOWS\system32\atmfd.dll
2008-04-14 20:00 2,190,336 ----a-w C:\WINDOWS\system32\ntoskrnl.exe
2008-04-14 19:55 4,096 ----a-w C:\WINDOWS\system32\dsprpres.dll
2008-04-14 19:52 89,600 ----a-w C:\WINDOWS\system32\msxml6r.dll
2008-04-14 19:50 80,896 ----a-w C:\WINDOWS\system32\msshavmsg.dll
2008-04-14 19:45 49,664 ----a-w C:\WINDOWS\system32\inetres.dll
2008-04-14 19:45 2,977,792 ----a-w C:\WINDOWS\system32\wmploc.dll
2008-04-14 19:43 563,200 ----a-w C:\WINDOWS\system32\shdoclc.dll
2008-04-14 19:39 190,976 ----a-w C:\WINDOWS\system32\wmerror.dll
2008-04-14 19:37 10,240 ----a-w C:\WINDOWS\system32\gpkrsrc.dll
2008-04-14 19:35 67,584 ----a-w C:\WINDOWS\system32\browselc.dll
2008-04-14 19:35 1,845,888 ----a-w C:\WINDOWS\system32\win32k.sys
2008-04-14 19:32 57,344 ----a-w C:\WINDOWS\system32\mshtmler.dll
2008-04-14 19:29 8,192 ----a-w C:\WINDOWS\system32\asferror.dll
2008-04-14 19:24 69,552 ----a-w C:\WINDOWS\system32\mmsystem.dll
2008-04-13 22:15 17,664 ----a-w C:\WINDOWS\system32\watchdog.sys
2008-04-13 22:13 12,800 ----a-w C:\WINDOWS\system32\spiisupd.exe
2008-04-13 22:10 427,008 ----a-w C:\WINDOWS\system32\xpob2res.dll
2008-04-13 22:08 2,953,216 ----a-w C:\WINDOWS\system32\xpsp2res.dll
2008-04-13 22:05 194,560 ----a-w C:\WINDOWS\system32\xpsp1res.dll
2008-04-13 22:01 7,424 ----a-w C:\WINDOWS\system32\kd1394.dll
2008-04-13 22:00 61,440 ----a-w C:\WINDOWS\system32\msvcrt40.dll
2008-04-13 21:08 306,176 ----a-w C:\WINDOWS\system32\slbcsp.dll
2008-04-13 21:08 169,984 ----a-w C:\WINDOWS\system32\sccbase.dll
2008-04-13 21:08 101,888 ----a-w C:\WINDOWS\system32\gpkcsp.dll
2008-04-13 21:07 208,384 ----a-w C:\WINDOWS\system32\rsaenh.dll
2008-04-13 21:07 138,752 ----a-w C:\WINDOWS\system32\dssenh.dll
2008-04-13 20:56 12,288 ----a-w C:\WINDOWS\system32\odbcp32r.dll
2008-04-13 20:56 12,288 ----a-w C:\WINDOWS\system32\mscpx32r.dLL
2008-04-13 20:51 733,696 ----a-w C:\WINDOWS\system32\qedwipes.dll
2008-04-13 20:25 53,920 ----a-w C:\WINDOWS\system32\dosx.exe
2008-04-13 20:24 5,120 ----a-w C:\WINDOWS\system32\winnls.dll
2008-04-13 20:23 92,320 ----a-w C:\WINDOWS\system32\krnl386.exe
2008-04-13 20:22 3,346 ----a-w C:\WINDOWS\system32\redir.exe
2008-04-13 20:20 42,537 ----a-w C:\WINDOWS\system32\keyboard.sys
2008-04-13 20:19 35,648 ----a-w C:\WINDOWS\system32\ntio411.sys
2008-04-13 20:19 35,424 ----a-w C:\WINDOWS\system32\ntio412.sys
2008-04-13 20:19 34,560 ----a-w C:\WINDOWS\system32\ntio804.sys
2008-04-13 20:19 34,560 ----a-w C:\WINDOWS\system32\ntio404.sys
2008-04-13 20:19 33,936 ----a-w C:\WINDOWS\system32\ntio.sys
2008-04-13 20:18 1,647,616 ----a-w C:\WINDOWS\system32\winbrand.dll
2008-04-13 20:15 216,064 ----a-w C:\WINDOWS\system32\moricons.dll
2008-04-13 19:53 48,128 ----a-w C:\WINDOWS\system32\msprivs.dll
2008-04-13 19:09 884,736 ----a-w C:\WINDOWS\system32\msimsg.dll
.

(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BitComet"="C:\Program Files\BitComet\BitComet.exe" [2008-06-03 05:42 2596152]
"Gadu-Gadu"="C:\Program Files\Gadu-Gadu\gg.exe" [2007-11-14 12:54 2131392]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2008-07-07 23:55 171448]
"Komunikator"="C:\Program Files\Tlen.pl\tlen.exe" [2008-01-15 17:09 6290944]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2007-12-29 14:05 486856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AzMixerSel"="C:\Program Files\Realtek\InstallShield\AzMixerSel.exe" [2005-04-29 07:56 45056]
"igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [2005-08-05 03:57 94208]
"igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [2005-08-05 03:56 77824]
"igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [2005-08-05 03:56 114688]
"BearShare"="C:\Program Files\BearShare\BearShare.exe" [2006-07-28 12:27 3305472]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe" [2006-11-21 19:38 35328]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-05-16 01:19 79224]
"PCMService"="C:\Program Files\CyberLink\PowerCinema\PCMService.exe" [2005-05-23 18:09 127118]
"RTHDCPL"="RTHDCPL.EXE" [2005-06-29 06:25 14720000 C:\WINDOWS\RTHDCPL.EXE]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 22:51 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Antiwpa]
2008-07-08 18:00 60416 C:\WINDOWS\system32\antiwpa.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.YV12"= yv12vfw.dll

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\BearShare\\BearShare.exe"=
"C:\\Program Files\\Tlen.pl\\tlen.exe"=
"C:\\Program Files\\Gadu-Gadu\\gg.exe"=
"C:\\Program Files\\Opera\\Opera.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"19440:TCP"= 19440:TCP:BitComet 19440 TCP
"19440:UDP"= 19440:UDP:BitComet 19440 UDP

R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-05-16 01:20]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-05-16 01:16]
S3 CXLWIRE;USB Hybrid Video Capture (DVB-T/PAL);C:\WINDOWS\system32\drivers\ctxusbtv.sys [2005-06-17 22:15]

*Newly Created Service* - ASWFSBLK
*Newly Created Service* - ASWSP
*Newly Created Service* - CATCHME
.
- - - - ORPHANS REMOVED - - - -

HKLM-Run-Mouse Suite 98 Daemon - ICO.EXE


**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-07-09 14:43:07
Windows 5.1.2600 Dodatek Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2008-07-09 14:44:08
ComboFix-quarantined-files.txt  2008-07-09 12:43:55

Pre-Run: 8,010,747,904 bajtów wolnych
Post-Run: 8,111,206,400 bajtów wolnych

287 --- E O F --- 2008-07-09 01:02:10


Z góry dzięki za pomoc, wszelkie wskazówki i w miare szczegółowe instrukcje, wiem możecie mnie uznać za lamera w temacie, ale biorąc pod uwagę moją niewiedzę bardzo byłbym wdzięczny jeśli właśnie szczegółowe one by były, być może posłuże za pomoc innym mi podobnym :)