OTL logfile created on: 2012-01-14 18:47:58 - Run 2 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\JA\Pulpit Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1015,42 Mb Total Physical Memory | 571,95 Mb Available Physical Memory | 56,33% Memory free 2,39 Gb Paging File | 2,04 Gb Available in Paging File | 85,49% Paging File free Paging file location(s): C:\pagefile.sys 1524 3048 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 111,78 Gb Total Space | 88,43 Gb Free Space | 79,11% Space Free | Partition Type: NTFS Drive D: | 277,27 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: LAPT | User Name: JA | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-01-04 01:27:27 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\JA\Pulpit\OTL.exe PRC - [2012-01-03 02:19:31 | 001,150,936 | ---- | M] (PC Tools) -- C:\Program Files\PC Tools Security\pctsAuxs.exe PRC - [2011-12-24 17:50:18 | 000,652,872 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe PRC - [2011-12-24 17:50:18 | 000,460,872 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe PRC - [2008-07-19 15:38:34 | 000,078,008 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashDisp.exe PRC - [2008-07-19 15:38:28 | 000,147,640 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\ashServ.exe PRC - [2008-07-19 15:25:06 | 000,016,056 | ---- | M] (ALWIL Software) -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe PRC - [2008-04-14 18:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2006-01-19 15:54:34 | 000,925,696 | ---- | M] ( ) -- C:\Program Files\SAGEM WiFi manager\WLANUTL.EXE PRC - [2005-07-08 05:55:02 | 000,491,520 | ---- | M] (Hewlett-Packard) -- C:\WINDOWS\system32\hphmon05.exe PRC - [2005-03-10 17:44:34 | 000,098,394 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPLpr.exe PRC - [2004-03-18 15:55:48 | 000,065,536 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe PRC - [2003-12-05 14:41:44 | 000,049,152 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd2.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2009-02-27 19:04:20 | 000,311,296 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.POL MOD - [2007-05-22 09:59:22 | 000,128,512 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll MOD - [2006-01-18 13:09:40 | 000,045,056 | ---- | M] () -- C:\Program Files\SAGEM WiFi manager\ZDWlan.dll MOD - [2006-01-18 13:09:36 | 000,212,992 | ---- | M] () -- C:\Program Files\SAGEM WiFi manager\dot1x_dll.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2012-01-03 02:19:31 | 001,150,936 | ---- | M] (PC Tools) [Auto | Start_Pending] -- C:\Program Files\PC Tools Security\pctsAuxs.exe -- (sdAuxService) SRV - [2011-12-24 17:50:18 | 000,652,872 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2010-11-19 06:57:14 | 001,150,936 | ---- | M] (PC Tools) [On_Demand | Stopped] -- C:\Program Files\PC Tools Security\pctsSvc.exe -- (sdCoreService) SRV - [2008-07-23 15:25:45 | 000,348,344 | ---- | M] (ALWIL Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast4\ashWebSv.exe -- (avast! Web Scanner) SRV - [2008-07-19 15:38:28 | 000,147,640 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast4\ashServ.exe -- (avast! Antivirus) SRV - [2008-07-19 15:38:04 | 000,250,040 | ---- | M] (ALWIL Software) [On_Demand | Stopped] -- C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe -- (avast! Mail Scanner) SRV - [2008-07-19 15:25:06 | 000,016,056 | ---- | M] (ALWIL Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe -- (aswUpdSv) SRV - [2004-03-18 15:55:48 | 000,065,536 | ---- | M] (HP) [On_Demand | Running] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-12-10 15:24:06 | 000,020,464 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector) DRV - [2011-08-17 14:49:54 | 000,138,496 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\afd.sys -- (AFD) DRV - [2010-12-10 13:24:12 | 000,239,168 | ---- | M] (PC Tools) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\PCTCore.sys -- (PCTCore) DRV - [2010-07-16 14:59:54 | 000,656,320 | ---- | M] (PC Tools) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\pctEFA.sys -- (pctEFA) DRV - [2010-07-16 14:59:54 | 000,338,880 | ---- | M] (PC Tools) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\pctDS.sys -- (pctDS) DRV - [2008-07-19 15:37:42 | 000,020,560 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2008-07-19 15:37:21 | 000,094,416 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2) DRV - [2008-07-19 15:35:18 | 000,078,416 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP) DRV - [2008-07-19 15:33:42 | 000,023,152 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2008-07-19 15:32:36 | 000,042,912 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2008-07-19 15:32:15 | 000,026,944 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4) DRV - [2007-01-10 10:14:34 | 000,450,560 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WlanBZXP.sys -- (SG762_XP) DRV - [2006-01-18 13:09:40 | 000,017,664 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ZDPSp50.sys -- (ZDPSp50) DRV - [2005-06-03 15:50:40 | 000,162,176 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tifm21.sys -- (tifm21) DRV - [2005-03-17 07:51:16 | 001,033,600 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_DPV.sys -- (HSF_DPV) DRV - [2005-03-17 07:50:36 | 000,165,504 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSFHWAZL.sys -- (HSFHWAZL) DRV - [2005-03-17 07:50:32 | 000,705,280 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys -- (winachsf) DRV - [2005-03-04 10:10:26 | 000,074,496 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Rtlnicxp.sys -- (RTL8023xp) DRV - [2005-02-23 18:46:00 | 000,228,992 | ---- | M] (Ralink Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RT2500.sys -- (RT2500) DRV - [2005-01-07 16:07:16 | 000,145,920 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService) DRV - [2004-08-03 23:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Sterownik NT karty Realtek RTL8139(A/B/C) DRV - [2000-04-27 14:09:12 | 000,024,476 | ---- | M] (Motorola) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\COMMSBEP.sys -- (CommSBEP) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google IE - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 IE - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com IE - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\..\URLSearchHook: {472734EA-242A-422b-ADF8-83D1E48CC825} - No CLSID value found IE - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "Web Search" FF - prefs.js..browser.search.defaultenginename: "Web Search" FF - prefs.js..browser.search.order.1: "Web Search" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.startup.homepage: "http://www.onet.pl/#" FF - prefs.js..extensions.enabledItems: vshare@toolbar:1.0.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.9 FF - prefs.js..keyword.URL: "http://startsear.ch/?aff=1&src=sp&cf=857c9458-2694-11e1-ba04-0060b38f6a3a&q=" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-12-09 09:26:21 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-12-14 21:45:29 | 000,000,000 | ---D | M] [2009-07-02 23:40:08 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\JA\Dane aplikacji\Mozilla\Extensions [2011-12-27 19:20:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\JA\Dane aplikacji\Mozilla\Firefox\Profiles\bu7sca0d.default\extensions [2007-09-21 18:24:57 | 000,000,000 | ---D | M] ("VideoDownloader") -- C:\Documents and Settings\JA\Dane aplikacji\Mozilla\Firefox\Profiles\bu7sca0d.default\extensions\videodowloader@videodownloader.net [2010-12-13 21:32:15 | 000,000,000 | ---D | M] (vShare) -- C:\Documents and Settings\JA\Dane aplikacji\Mozilla\Firefox\Profiles\bu7sca0d.default\extensions\vshare@toolbar [2011-12-14 21:45:30 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\JA\Dane aplikacji\Mozilla\Firefox\Profiles\bu7sca0d.default\searchplugins\startsear.xml [2011-12-09 09:26:29 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions () (No name found) -- C:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\BU7SCA0D.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI [2011-12-09 09:26:18 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2010-12-13 21:29:46 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2007-02-04 23:02:56 | 001,642,496 | ---- | M] (LizardTech) -- C:\Program Files\mozilla firefox\plugins\npdjvu.dll [2007-03-03 04:10:10 | 000,741,376 | ---- | M] (Lizardtech Software) -- C:\Program Files\mozilla firefox\plugins\npexview.dll [2011-10-03 10:14:54 | 000,083,456 | ---- | M] (vShare.tv ) -- C:\Program Files\mozilla firefox\plugins\npvsharetvplg.dll [2011-12-09 09:26:11 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2011-12-09 09:26:11 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-12-09 09:26:11 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2011-12-09 09:26:11 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011-12-09 09:26:11 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2011-12-09 09:26:11 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2012-01-03 02:23:40 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (EWPBrowseObject Class) - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll () O3 - HKLM\..\Toolbar: (Easy-WebPrint) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll () O4 - HKLM..\Run: [avast!] C:\Program Files\Alwil Software\Avast4\ashDisp.exe (ALWIL Software) O4 - HKLM..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE (CANON INC.) O4 - HKLM..\Run: [High Definition Audio Property Page Shortcut] C:\WINDOWS\System32\HdAShCut.exe (Windows (R) Server 2003 DDK provider) O4 - HKLM..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe (HP) O4 - HKLM..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPHUPD05] C:\Program Files\Hewlett-Packard\\{5372B9A6-6E51-4f90-9B40-E0A3B8475C4E}\hphupd05.exe () O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Synaptics, Inc.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Program sieciowy dla SAGEM Wi-Fi 11g USB adapter.lnk = C:\Program Files\SAGEM WiFi manager\WLANUTL.EXE ( ) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-1645522239-1004336348-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Easy-WebPrint Add To Print List - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll () O8 - Extra context menu item: Easy-WebPrint High Speed Print - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll () O8 - Extra context menu item: Easy-WebPrint Preview - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll () O8 - Extra context menu item: Easy-WebPrint Print - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll () O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_05) O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Java Plug-in 1.6.0_01) O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Java Plug-in 1.6.0_02) O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05) O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.) O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2007-06-21 12:10:35 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-01-14 17:35:39 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\JA\Pulpit\OTL.exe [2012-01-14 16:10:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\JA\Pulpit\Logi [2012-01-04 01:33:44 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2012-01-04 01:32:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2012-01-03 02:02:29 | 000,000,000 | RHSD | C] -- C:\cmdcons [2012-01-03 02:00:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT [2012-01-03 01:59:44 | 000,000,000 | ---D | C] -- C:\Qoobox [2012-01-03 01:59:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\JA\Menu Start\Programy\Narzędzia administracyjne [2012-01-03 01:58:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\JA\Dane aplikacji\Malwarebytes [2012-01-03 01:58:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware [2012-01-03 01:58:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2012-01-03 01:58:27 | 000,020,464 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2012-01-03 01:58:27 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2012-01-02 22:44:01 | 000,656,320 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctEFA.sys [2012-01-02 22:44:01 | 000,338,880 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctDS.sys [2012-01-02 22:43:59 | 000,251,560 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctgntdi.sys [2012-01-02 22:43:54 | 000,239,168 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTCore.sys [2012-01-02 22:43:54 | 000,160,448 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\PCTAppEvent.sys [2012-01-02 22:43:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\PC Tools Security [2012-01-02 22:43:44 | 000,070,536 | ---- | C] (PC Tools) -- C:\WINDOWS\System32\drivers\pctplsg.sys [2012-01-02 22:43:10 | 000,000,000 | ---D | C] -- C:\Program Files\PC Tools Security [2012-01-02 22:43:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PC Tools [2012-01-02 22:43:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\JA\Dane aplikacji\PC Tools [2012-01-02 22:32:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Tools [2012-01-02 22:27:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\McAfee [2012-01-01 17:05:51 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\b52a7b6b [2012-01-01 17:05:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\JA\Dane aplikacji\pny [2011-12-28 00:54:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\JA\Moje dokumenty\Fender [2011-12-28 00:54:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\JA\Dane aplikacji\Fender [2011-12-28 00:52:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Fender FUSE [2011-12-28 00:50:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\JA\Moje dokumenty\Odebrane pliki [2011-12-28 00:43:38 | 000,014,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg2.dll [2011-12-28 00:40:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer [2011-12-28 00:40:27 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild [2011-12-28 00:40:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US [2011-12-28 00:40:14 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies [2011-12-28 00:39:00 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpssvcs.dll [2011-12-28 00:39:00 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll [2011-12-28 00:39:00 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe [2011-12-28 00:39:00 | 000,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll [2011-12-28 00:39:00 | 000,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prntvpt.dll [2011-12-28 00:39:00 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll [2011-12-28 00:38:59 | 000,000,000 | ---D | C] -- C:\51977bc67ed57aab9992 [2011-12-28 00:18:56 | 000,000,000 | ---D | C] -- C:\Program Files\Fender [2011-12-27 19:20:43 | 000,414,368 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2011-12-27 19:20:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\McAfee [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-01-14 17:39:58 | 000,334,201 | ---- | M] () -- C:\Documents and Settings\JA\Pulpit\FSS.exe [2012-01-14 16:11:40 | 004,718,592 | -H-- | M] () -- C:\Documents and Settings\JA\NTUSER.DAT [2012-01-14 16:06:45 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-01-14 16:04:39 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2012-01-14 16:04:33 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-01-14 16:03:15 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\JA\ntuser.ini [2012-01-14 15:08:01 | 000,000,336 | ---- | M] () -- C:\WINDOWS\tasks\HP Usg Daily.job [2012-01-04 02:09:45 | 000,650,240 | ---- | M] () -- C:\Documents and Settings\JA\Pulpit\MicrosoftFixit50199.msi [2012-01-04 01:27:49 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\JA\Pulpit\rkx3huzk.exe [2012-01-04 01:27:27 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\JA\Pulpit\OTL.exe [2012-01-03 03:30:06 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini [2012-01-03 02:23:40 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2012-01-03 02:02:34 | 000,000,327 | RHS- | M] () -- C:\boot.ini [2012-01-03 01:58:33 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2012-01-02 22:44:19 | 000,721,012 | ---- | M] () -- C:\WINDOWS\System32\drivers\Cat.DB [2012-01-02 22:43:52 | 000,001,682 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Spyware Doctor.lnk [2012-01-01 03:04:05 | 001,044,202 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2012-01-01 03:04:05 | 000,490,866 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-01-01 03:04:05 | 000,432,690 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-01-01 03:04:05 | 000,084,078 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-01-01 03:04:05 | 000,067,646 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2011-12-28 00:53:19 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2011-12-28 00:47:33 | 000,107,008 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-12-28 00:43:45 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2011-12-28 00:39:57 | 000,000,212 | ---- | M] () -- C:\WINDOWS\System32\spupdsvc.inf [2011-12-27 19:20:43 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2011-12-27 18:08:21 | 000,029,696 | ---- | M] () -- C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-01-14 17:47:24 | 000,334,201 | ---- | C] () -- C:\Documents and Settings\JA\Pulpit\FSS.exe [2012-01-14 17:35:47 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\JA\Pulpit\rkx3huzk.exe [2012-01-14 15:40:29 | 000,650,240 | ---- | C] () -- C:\Documents and Settings\JA\Pulpit\MicrosoftFixit50199.msi [2012-01-03 02:02:34 | 000,000,211 | ---- | C] () -- C:\Boot.bak [2012-01-03 02:02:31 | 000,262,400 | RHS- | C] () -- C:\cmldr [2012-01-03 01:58:33 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2012-01-02 22:44:04 | 000,721,012 | ---- | C] () -- C:\WINDOWS\System32\drivers\Cat.DB [2012-01-02 22:43:52 | 000,001,682 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Spyware Doctor.lnk [2011-12-28 15:32:38 | 001,089,883 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntprint.cat [2011-12-28 00:39:57 | 000,000,212 | ---- | C] () -- C:\WINDOWS\System32\spupdsvc.inf [2009-12-11 22:18:05 | 000,178,176 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2009-12-11 22:18:04 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2009-12-11 22:18:02 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2009-12-11 22:18:02 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2009-12-11 22:17:59 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2009-12-11 22:17:59 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2008-07-24 22:14:39 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\CNMVS71.DLL [2007-07-09 20:42:17 | 000,029,696 | ---- | C] () -- C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2007-07-02 22:02:01 | 000,019,756 | ---- | C] () -- C:\WINDOWS\HPHins02.dat.temp [2007-07-02 22:02:01 | 000,004,284 | ---- | C] () -- C:\WINDOWS\hphmdl02.dat.temp [2007-07-02 21:42:57 | 000,019,791 | ---- | C] () -- C:\WINDOWS\HPHins02.dat [2007-07-02 21:42:57 | 000,004,284 | ---- | C] () -- C:\WINDOWS\hphmdl02.dat [2007-07-02 21:42:33 | 000,364,544 | ---- | C] () -- C:\WINDOWS\System32\hphped05.exe [2007-07-02 21:42:25 | 000,006,478 | ---- | C] () -- C:\WINDOWS\System32\hphmon05.dat [2007-06-26 19:10:19 | 000,001,156 | ---- | C] () -- C:\WINDOWS\mozver.dat [2007-06-26 19:09:02 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2007-06-26 18:46:29 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\WLANUTL.dll [2007-06-22 10:07:01 | 000,000,225 | ---- | C] () -- C:\WINDOWS\hpntwksetup.ini [2007-06-21 19:58:29 | 001,044,202 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2007-06-21 19:58:28 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2007-06-21 19:57:12 | 000,107,008 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2007-06-21 12:57:48 | 000,014,304 | ---- | C] () -- C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2007-06-21 12:45:12 | 000,000,133 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2007-06-21 12:36:33 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat [2007-06-21 12:36:02 | 000,000,591 | ---- | C] () -- C:\WINDOWS\wincmd.ini [2007-06-21 12:31:57 | 005,334,424 | -H-- | C] () -- C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\IconCache.db [2007-06-21 12:12:56 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2007-06-21 12:10:35 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2007-06-21 12:09:31 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2007-06-21 12:09:24 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2007-06-21 12:07:43 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2007-06-21 12:07:32 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2007-06-21 12:07:32 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2007-06-21 12:06:28 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2007-06-21 12:06:27 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2006-08-31 14:20:00 | 000,000,526 | R--- | C] () -- C:\WINDOWS\System32\hppapr04.DAT [2006-08-21 14:45:00 | 000,241,664 | R--- | C] () -- C:\WINDOWS\System32\hppapr04.DLL [2006-03-02 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2006-03-02 13:00:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2006-03-02 13:00:00 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2006-03-02 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2006-03-02 13:00:00 | 000,490,866 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2006-03-02 13:00:00 | 000,432,690 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2006-03-02 13:00:00 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll [2006-03-02 13:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2006-03-02 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2006-03-02 13:00:00 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2006-03-02 13:00:00 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatui.dll [2006-03-02 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2006-03-02 13:00:00 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2006-03-02 13:00:00 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2006-03-02 13:00:00 | 000,138,496 | ---- | C] () -- C:\WINDOWS\System32\drivers\afd.sys [2006-03-02 13:00:00 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2006-03-02 13:00:00 | 000,084,078 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2006-03-02 13:00:00 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2006-03-02 13:00:00 | 000,070,622 | ---- | C] () -- C:\WINDOWS\System32\edit.com [2006-03-02 13:00:00 | 000,067,646 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2006-03-02 13:00:00 | 000,053,920 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe [2006-03-02 13:00:00 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2006-03-02 13:00:00 | 000,051,823 | ---- | C] () -- C:\WINDOWS\System32\command.com [2006-03-02 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2006-03-02 13:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2006-03-02 13:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2006-03-02 13:00:00 | 000,039,434 | ---- | C] () -- C:\WINDOWS\System32\mem.exe [2006-03-02 13:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2006-03-02 13:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2006-03-02 13:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2006-03-02 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2006-03-02 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2006-03-02 13:00:00 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2006-03-02 13:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2006-03-02 13:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2006-03-02 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2006-03-02 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2006-03-02 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2006-03-02 13:00:00 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2006-03-02 13:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2006-03-02 13:00:00 | 000,020,986 | ---- | C] () -- C:\WINDOWS\System32\debug.exe [2006-03-02 13:00:00 | 000,019,806 | ---- | C] () -- C:\WINDOWS\System32\graphics.com [2006-03-02 13:00:00 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2006-03-02 13:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2006-03-02 13:00:00 | 000,014,913 | ---- | C] () -- C:\WINDOWS\System32\kb16.com [2006-03-02 13:00:00 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2006-03-02 13:00:00 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2006-03-02 13:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2006-03-02 13:00:00 | 000,012,866 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe [2006-03-02 13:00:00 | 000,012,594 | ---- | C] () -- C:\WINDOWS\System32\append.exe [2006-03-02 13:00:00 | 000,011,859 | ---- | C] () -- C:\WINDOWS\System32\setver.exe [2006-03-02 13:00:00 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2006-03-02 13:00:00 | 000,008,520 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe [2006-03-02 13:00:00 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe [2006-03-02 13:00:00 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2006-03-02 13:00:00 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2006-03-02 13:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2006-03-02 13:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2006-03-02 13:00:00 | 000,003,346 | ---- | C] () -- C:\WINDOWS\System32\redir.exe [2006-03-02 13:00:00 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2006-03-02 13:00:00 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2006-03-02 13:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin [2006-03-02 13:00:00 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2006-03-02 13:00:00 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2006-03-02 13:00:00 | 000,001,168 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com [2006-03-02 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe [2006-03-02 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe [2006-03-02 13:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe [2006-03-02 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2006-03-02 13:00:00 | 000,000,507 | ---- | C] () -- C:\WINDOWS\win.ini [2006-03-02 13:00:00 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2006-03-02 13:00:00 | 000,000,227 | ---- | C] () -- C:\WINDOWS\system.ini [2005-08-23 02:16:30 | 000,076,288 | ---- | C] () -- C:\WINDOWS\System32\HASPVB32.DLL [2004-01-13 18:46:34 | 000,172,032 | ---- | C] () -- C:\WINDOWS\System32\tifmicon.dll [2001-10-26 18:29:54 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe [2001-10-26 18:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [2001-07-06 15:30:02 | 000,003,234 | ---- | C] () -- C:\WINDOWS\System32\HPTCPMON.INI [color=#E56717]========== LOP Check ==========[/color] [2012-01-14 16:04:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2011-12-28 00:54:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\JA\Dane aplikacji\Fender [2011-12-11 15:22:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\JA\Dane aplikacji\foobar2000 [2011-10-31 00:35:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\JA\Dane aplikacji\gtk-2.0 [2008-09-04 07:24:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\JA\Dane aplikacji\K-Meleon [2008-09-13 13:55:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\JA\Dane aplikacji\LimeWire [2012-01-14 15:43:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\JA\Dane aplikacji\OpenOffice.ux.pl2 [2012-01-03 02:17:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\JA\Dane aplikacji\pny [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 164 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2 < End of report >