OTL logfile created on: 2012-01-18 16:26:42 - Run 6 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Piotr\Pulpit\Narzędzia Windows XP Home Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.11) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1.50 Gb Total Physical Memory | 1.12 Gb Available Physical Memory | 74.41% Memory free 2.11 Gb Paging File | 1.89 Gb Available in Paging File | 89.82% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 37.26 Gb Total Space | 9.33 Gb Free Space | 25.05% Space Free | Partition Type: NTFS Computer Name: PJ | User Name: Piotr | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-01-04 01:27:27 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Piotr\Pulpit\Narzędzia\OTL.exe PRC - [2009-09-23 16:45:50 | 001,287,176 | ---- | M] (Panda Security) -- C:\Program Files\Panda USB Vaccine\USBVaccine.exe PRC - [2005-10-04 14:12:00 | 000,090,112 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe PRC - [2004-09-13 15:49:00 | 000,049,152 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd2.exe PRC - [2004-08-04 00:44:28 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\savedump.exe PRC - [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2004-05-05 09:52:12 | 000,491,520 | ---- | M] (Hewlett-Packard) -- C:\WINDOWS\system32\hphmon05.exe PRC - [2004-05-04 18:51:22 | 000,176,128 | ---- | M] (HP) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2005-03-07 17:08:56 | 000,069,632 | ---- | M] (Macromedia) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe -- (Macromedia Licensing Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-02-11 08:38:10 | 003,565,056 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2009-11-16 17:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf) DRV - [2009-01-08 08:42:54 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2008-02-22 14:33:02 | 000,114,304 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdmdm.sys -- (sscdmdm) DRV - [2008-02-22 14:33:02 | 000,014,976 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdmdfl.sys -- (sscdmdfl) DRV - [2008-02-22 14:33:00 | 000,087,936 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sscdbus.sys -- (sscdbus) SAMSUNG USB Composite Device driver (WDM) DRV - [2007-04-03 12:57:54 | 000,099,080 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116unic.sys -- (s116unic) Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM) DRV - [2007-04-03 12:57:52 | 000,098,696 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116obex.sys -- (s116obex) DRV - [2007-04-03 12:57:52 | 000,023,176 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116nd5.sys -- (s116nd5) Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS) DRV - [2007-04-03 12:57:50 | 000,100,488 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mgmt.sys -- (s116mgmt) Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM) DRV - [2007-04-03 12:57:48 | 000,108,680 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mdm.sys -- (s116mdm) DRV - [2007-04-03 12:57:48 | 000,015,112 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mdfl.sys -- (s116mdfl) DRV - [2007-04-03 12:57:42 | 000,083,336 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116bus.sys -- (s116bus) Sony Ericsson Device 116 driver (WDM) DRV - [2005-10-04 17:39:00 | 003,797,632 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM) DRV - [2003-11-13 12:25:26 | 000,391,680 | ---- | M] (Sensaura Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS) DRV - [2002-10-04 03:04:10 | 000,046,976 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\R8139n51.sys -- (rtl8139) DRV - [2000-04-27 13:09:12 | 000,024,476 | ---- | M] (Motorola) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\COMMSBEP.sys -- (CommSBEP) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-220523388-1078081533-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKU\S-1-5-21-220523388-1078081533-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-220523388-1078081533-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "" FF - prefs.js..browser.search.defaultenginename: "" FF - prefs.js..browser.search.order.1: "" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://onet.pl" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6 FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.8 FF - prefs.js..extensions.enabledItems: en-US@dictionaries.addons.mozilla.org:5.0.1 FF - prefs.js..extensions.enabledItems: youplayer@addons.mozilla.org:0.9.8 FF - prefs.js..extensions.enabledItems: zrzuta.eu@gmail.com:1.2 FF - prefs.js..extensions.enabledItems: webmaster@keep-tube.com:1.2 FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.2 FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906 FF - prefs.js..network.proxy.ftp: "" FF - prefs.js..network.proxy.gopher: "" FF - prefs.js..network.proxy.http_port: 8000 FF - prefs.js..network.proxy.no_proxies_on: "" FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "" FF - prefs.js..network.proxy.ssl: "" FF - prefs.js..network.proxy.type: 0 FF - user.js..network.proxy.type: 0 FF - user.js..network.proxy.http: "" FF - user.js..network.proxy.http_port: FF - user.js..network.proxy.no_proxies_on: "" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll File not found FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\Documents and Settings\All Users\Dane aplikacji\NexonEU\NGM\npNxGameeu.dll File not found FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2571: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1739: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKCU\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-01-09 15:11:06 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-01-18 13:54:34 | 000,000,000 | ---D | M] [2008-06-18 21:40:43 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Extensions [2012-01-16 23:40:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\extensions [2011-11-12 13:27:46 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2010-09-22 01:59:38 | 000,000,000 | ---D | M] (United States English Spellchecker) -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\extensions\en-US@dictionaries.addons.mozilla.org [2007-10-28 16:25:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\coor1zkk.Piotrek\extensions [2005-08-31 15:26:54 | 000,000,000 | ---D | M] (Firefox (default)) -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\coor1zkk.Piotrek\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2007-10-28 16:25:42 | 000,000,000 | ---D | M] (Megaupload Toolbar) -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\coor1zkk.Piotrek\extensions\{991A772A-BA13-4c1d-A9EF-F897F31DEC7D} [2008-06-21 02:25:04 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Webview\Profiles\68vpk4bc.default\extensions [2012-01-17 14:17:41 | 000,002,299 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\alexa.xml [2008-05-25 16:23:35 | 000,001,340 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\bbc-news.xml [2012-01-17 14:17:44 | 000,005,941 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\clipvn.xml [2012-01-17 20:23:54 | 000,005,216 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\linkedin.xml [2006-08-02 22:01:29 | 000,001,057 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\pwn-sjp.xml [2006-08-02 22:01:38 | 000,001,039 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\pwn-so.xml [2006-08-02 22:01:40 | 000,001,115 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\pwn-swo.xml [2012-01-17 14:17:42 | 000,001,680 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\whoisws.xml [2009-09-27 22:39:29 | 000,001,738 | ---- | M] () -- C:\Documents and Settings\Piotr\Dane aplikacji\Mozilla\Firefox\Profiles\51m2wxc4.default\searchplugins\wyszukiwanie-filmw-wideo-w-youtube.xml [2012-01-18 00:01:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-01-18 00:01:01 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} () (No name found) -- C:\DOCUMENTS AND SETTINGS\PIOTR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\51M2WXC4.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\PIOTR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\51M2WXC4.DEFAULT\EXTENSIONS\{C0C9A2C7-2E5C-4447-BC53-97718BC91E1B}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\PIOTR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\51M2WXC4.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\PIOTR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\51M2WXC4.DEFAULT\EXTENSIONS\{D4DD63FA-01E4-46A7-B6B1-EDAB7D6AD389}.XPI [2012-01-18 00:00:46 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2012-01-09 15:11:05 | 000,121,816 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-01-18 00:00:46 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2011-10-03 10:14:54 | 000,083,456 | ---- | M] (vShare.tv ) -- C:\Program Files\mozilla firefox\plugins\npvsharetvplg.dll [2011-10-23 19:35:20 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2011-10-23 19:35:20 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-10-23 19:35:20 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2011-10-23 19:35:20 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011-10-23 19:35:20 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2011-10-23 19:35:20 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-09-19 15:42:58 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O3 - HKLM\..\Toolbar: (VShareToolBar) - {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} - C:\Program Files\vShare.tv plugin\BarLcher.dll (VShare Inc.) O3 - HKLM\..\Toolbar: (@msdxmLC.dll,-1@1033,&Radio) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\Msdxm6.ocx (Microsoft Corporation) O4 - HKLM..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe (Hewlett-Packard Company) O4 - HKLM..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe (HP) O4 - HKLM..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPHUPD05] c:\Program Files\Hewlett-Packard\\{5372B9A6-6E51-4f90-9B40-E0A3B8475C4E}\hphupd05.exe () O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.) O4 - HKU\S-1-5-21-220523388-1078081533-839522115-1004..\Run: [Twoje TVN24] File not found O4 - Startup: C:\Documents and Settings\Piotr\Menu Start\Programy\Autostart\PandaUSBVaccine.lnk = C:\Program Files\Panda USB Vaccine\USBVaccine.exe (Panda Security) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-220523388-1078081533-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-220523388-1078081533-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O15 - HKU\S-1-5-21-220523388-1078081533-839522115-1004\..Trusted Domains: ([]msn in My Computer) O15 - HKU\S-1-5-21-220523388-1078081533-839522115-1004\..Trusted Domains: czat.pl ([www] https in Trusted sites) O15 - HKU\S-1-5-21-220523388-1078081533-839522115-1004\..Trusted Domains: edu.pl ([www.gim40] https in Trusted sites) O15 - HKU\S-1-5-21-220523388-1078081533-839522115-1004\..Trusted Domains: hotczat.pl ([]https in Trusted sites) O15 - HKU\S-1-5-21-220523388-1078081533-839522115-1004\..Trusted Domains: onet.pl ([]https in Trusted sites) O15 - HKU\S-1-5-21-220523388-1078081533-839522115-1004\..Trusted Domains: wp.pl ([]https in Trusted sites) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1183657854687 (WUWebControl Class) O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1183657825187 (MUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0E37B914-79AB-4101-9840-13CE0F874175}: NameServer = 194.204.159.1,194.204.152.34 O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\system32\Msdxm6.ocx (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Piotr\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Piotr\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-01-18 00:01:00 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl [2012-01-18 00:00:59 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deployJava1.dll [2012-01-18 00:00:59 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe [2012-01-18 00:00:59 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe [2012-01-18 00:00:59 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe [2012-01-18 00:00:37 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2012-01-17 23:59:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Piotr\Dane aplikacji\Sun [2012-01-17 19:27:41 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0 [2012-01-17 18:36:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Pasek TVN24 [2012-01-17 18:01:37 | 000,000,000 | ---D | C] -- C:\Themes [2012-01-17 17:27:50 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group [2012-01-17 17:27:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Piotr\Menu Start\Programy\Revo Uninstaller [2012-01-17 17:25:56 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Installer Clean Up [2012-01-17 14:21:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Piotr\Dane aplikacji\InstallShield [2012-01-17 04:19:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Piotr\Pulpit\Narzędzia [2012-01-17 04:14:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Foxit Reader 5.1 [2012-01-17 04:14:48 | 000,000,000 | ---D | C] -- C:\Program Files\Foxit Software [2012-01-17 03:04:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Panda Security [2012-01-17 03:04:14 | 000,000,000 | ---D | C] -- C:\Program Files\Panda USB Vaccine [2012-01-17 03:04:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Panda Security [2012-01-17 00:38:59 | 000,000,000 | ---D | C] -- C:\_OTL [2012-01-04 23:42:23 | 000,000,000 | ---D | C] -- C:\Program Files\vShare.tv plugin [8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [17 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-01-18 16:25:33 | 000,013,768 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-01-18 16:25:14 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2012-01-18 16:25:11 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-01-18 16:24:10 | 013,893,632 | ---- | M] () -- C:\Documents and Settings\Piotr\NTUSER.DAT [2012-01-18 16:23:47 | 000,000,292 | -HS- | M] () -- C:\Documents and Settings\Piotr\ntuser.ini [2012-01-18 15:53:00 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-01-18 13:54:36 | 000,357,752 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-01-18 00:00:44 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deployJava1.dll [2012-01-18 00:00:44 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe [2012-01-18 00:00:44 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe [2012-01-18 00:00:44 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe [2012-01-18 00:00:44 | 000,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl [2012-01-17 22:55:08 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\Piotr\Ustawienia lokalne\Dane aplikacji\PUTTY.RND [2012-01-17 19:33:39 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2012-01-17 18:36:17 | 000,000,723 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pasek TVN24.lnk [2012-01-17 17:27:50 | 000,000,927 | ---- | M] () -- C:\Documents and Settings\Piotr\Pulpit\Revo Uninstaller.lnk [2012-01-17 04:02:09 | 000,173,568 | ---- | M] () -- C:\Documents and Settings\Piotr\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-01-17 03:32:37 | 000,001,049 | ---- | M] () -- C:\WINDOWS\wincmd.ini [2012-01-17 03:26:34 | 000,000,620 | ---- | M] () -- C:\WINDOWS\wcx_ftp.ini [2012-01-17 03:04:14 | 000,000,893 | ---- | M] () -- C:\Documents and Settings\Piotr\Menu Start\Programy\Autostart\PandaUSBVaccine.lnk [2012-01-15 22:21:52 | 000,237,393 | ---- | M] () -- C:\Documents and Settings\Piotr\.recently-used.xbel [8 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [17 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-01-17 18:36:17 | 000,000,723 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pasek TVN24.lnk [2012-01-17 17:27:50 | 000,000,927 | ---- | C] () -- C:\Documents and Settings\Piotr\Pulpit\Revo Uninstaller.lnk [2012-01-17 17:25:56 | 000,002,323 | ---- | C] () -- C:\Documents and Settings\Piotr\Menu Start\Programy\Windows Install Clean Up.lnk [2012-01-17 03:04:14 | 000,000,893 | ---- | C] () -- C:\Documents and Settings\Piotr\Menu Start\Programy\Autostart\PandaUSBVaccine.lnk [2012-01-15 22:21:52 | 000,237,393 | ---- | C] () -- C:\Documents and Settings\Piotr\.recently-used.xbel [2011-09-29 14:21:06 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin [2010-11-11 18:55:17 | 000,179,192 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-11-09 04:21:46 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-07-29 16:53:21 | 000,067,849 | ---- | C] () -- C:\WINDOWS\System32\x264vfw-uninstall.exe [2010-02-11 05:12:00 | 003,107,788 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat [2010-02-11 05:12:00 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat [2009-11-16 17:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll [2009-09-30 13:59:28 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\Piotr\Ustawienia lokalne\Dane aplikacji\PUTTY.RND [2009-09-20 12:52:24 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\LauncherAccess.dt [2009-08-23 23:11:30 | 000,229,376 | ---- | C] () -- C:\WINDOWS\PEV.exe [2009-08-23 23:11:30 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2009-08-23 23:11:30 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2009-08-23 23:11:30 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2009-06-07 12:27:20 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\vbzlib1.dll [2009-05-25 01:43:54 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll [2009-05-25 01:43:54 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys [2009-05-25 01:43:34 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Piotr\Dane aplikacji\$_hpcst$.hpc [2009-04-23 23:29:16 | 000,189,051 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat [2008-03-24 03:06:09 | 000,383,238 | ---- | C] () -- C:\WINDOWS\System32\libmp3lame-0.dll [2007-12-24 22:46:33 | 000,066,872 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2007-12-24 22:46:32 | 000,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2007-12-24 22:46:27 | 000,103,736 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2007-11-27 16:06:17 | 000,000,260 | ---- | C] () -- C:\WINDOWS\_delis32.ini [2007-07-23 15:43:54 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2007-05-13 19:14:17 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll [2007-03-26 10:45:18 | 000,071,208 | ---- | C] () -- C:\WINDOWS\System32\PhysXLoader.dll [2007-02-20 14:59:08 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll [2007-02-20 14:59:06 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2007-02-20 14:59:06 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll [2007-02-20 14:59:06 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2007-02-20 14:59:06 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll [2007-02-20 14:59:06 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll [2007-02-20 14:59:06 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll [2007-02-20 14:59:06 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll [2007-02-20 14:59:04 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll [2006-12-25 17:08:04 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll [2006-11-21 16:02:03 | 000,000,058 | ---- | C] () -- C:\WINDOWS\DeskToppers.ini [2006-09-18 17:19:44 | 000,157,184 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll [2006-09-18 17:19:44 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2006-09-10 12:25:36 | 000,000,411 | ---- | C] () -- C:\WINDOWS\tetuhau3.INI [2006-08-17 21:09:58 | 000,001,061 | ---- | C] () -- C:\WINDOWS\dragon_cfg.ini [2006-05-02 23:38:24 | 000,072,444 | ---- | C] () -- C:\WINDOWS\SetBrowser.exe [2006-05-02 23:38:24 | 000,000,748 | ---- | C] () -- C:\WINDOWS\SetBrowser.ini [2006-03-24 13:39:03 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2006-03-24 13:38:59 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2006-03-24 13:38:59 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2006-03-24 13:38:58 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2006-03-08 00:01:31 | 000,102,376 | ---- | C] () -- C:\Documents and Settings\Piotr\Dane aplikacji\GDIPFONTCACHEV1.DAT [2006-01-28 12:35:46 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2006-01-21 20:50:28 | 000,000,026 | ---- | C] () -- C:\WINDOWS\SW_Win2000X48.DLL [2006-01-21 20:48:59 | 000,009,146 | ---- | C] () -- C:\WINDOWS\CI_SearchHistory.INI [2006-01-21 20:48:34 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\RegisterExe.exe [2006-01-19 21:54:25 | 000,024,575 | ---- | C] () -- C:\WINDOWS\System32\Sengwinsyspios.dll [2005-11-24 22:07:28 | 000,000,019 | ---- | C] () -- C:\WINDOWS\SoundConverter.INI [2005-10-19 22:54:49 | 000,000,208 | ---- | C] () -- C:\WINDOWS\GTA-SA_Trn_Settings.ini [2005-08-12 23:12:42 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll [2005-08-03 21:34:39 | 000,004,212 | -H-- | C] () -- C:\WINDOWS\System32\zllictbl.dat [2005-06-24 14:11:58 | 000,100,482 | ---- | C] () -- C:\WINDOWS\UninstallFirefox.exe [2005-06-20 18:09:50 | 000,000,046 | ---- | C] () -- C:\WINDOWS\mix-fx.ini [2005-06-09 22:52:24 | 000,000,596 | ---- | C] () -- C:\WINDOWS\u3dedit4.INI [2005-06-09 22:46:48 | 000,000,074 | -H-- | C] () -- C:\WINDOWS\koo.dat [2005-05-26 17:56:11 | 000,006,550 | ---- | C] () -- C:\WINDOWS\jautoexp.dat [2005-05-25 18:37:17 | 000,000,313 | ---- | C] () -- C:\WINDOWS\option.dat [2005-05-07 17:11:30 | 000,000,208 | ---- | C] () -- C:\WINDOWS\VOGEL.INI [2005-04-28 05:22:34 | 000,831,488 | ---- | C] () -- C:\WINDOWS\System32\libeay32.dll [2005-04-28 05:22:34 | 000,159,744 | ---- | C] () -- C:\WINDOWS\System32\ssleay32.dll [2005-04-24 21:21:53 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2005-04-24 21:21:31 | 000,011,749 | ---- | C] () -- C:\WINDOWS\mozver.dat [2005-04-24 14:00:05 | 000,014,211 | ---- | C] () -- C:\WINDOWS\twacker.ini [2005-02-28 16:21:01 | 000,069,632 | R--- | C] () -- C:\WINDOWS\System32\xmltok.dll [2005-02-28 16:21:01 | 000,036,864 | R--- | C] () -- C:\WINDOWS\System32\xmlparse.dll [2005-01-21 19:16:10 | 000,000,474 | ---- | C] () -- C:\WINDOWS\wininit.ini [2005-01-13 21:31:06 | 000,000,000 | ---- | C] () -- C:\WINDOWS\synteza_DDE_klient.INI [2005-01-07 22:45:24 | 000,000,059 | ---- | C] () -- C:\WINDOWS\RUNAWAY.INI [2005-01-07 21:51:17 | 000,002,560 | ---- | C] () -- C:\WINDOWS\_MSRSTRT.EXE [2004-12-31 16:44:27 | 000,024,575 | ---- | C] () -- C:\WINDOWS\System32\Usengwinsyspios.dll [2004-12-11 22:07:18 | 000,051,200 | ---- | C] () -- C:\WINDOWS\tbat_del.exe [2004-10-10 15:21:42 | 000,000,142 | ---- | C] () -- C:\WINDOWS\SyriusAttacher.ini [2004-10-06 23:33:09 | 000,107,192 | ---- | C] () -- C:\Documents and Settings\Piotr\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2004-10-04 20:46:33 | 000,019,958 | ---- | C] () -- C:\WINDOWS\HPHins02.dat [2004-10-04 20:46:33 | 000,004,308 | ---- | C] () -- C:\WINDOWS\hphmdl02.dat [2004-09-25 20:50:04 | 000,000,045 | ---- | C] () -- C:\WINDOWS\GJJLGHL.ini [2004-09-17 22:50:23 | 000,000,073 | ---- | C] () -- C:\WINDOWS\EurekaLog.ini [2004-08-22 14:01:14 | 000,000,056 | ---- | C] () -- C:\WINDOWS\kgt2k.INI [2004-08-20 20:32:17 | 000,000,083 | ---- | C] () -- C:\WINDOWS\EXCEL4.INI [2004-08-02 14:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2004-07-31 14:38:59 | 000,112,640 | ---- | C] () -- C:\WINDOWS\lsb_un20.exe [2004-07-23 20:18:02 | 000,000,533 | ---- | C] () -- C:\WINDOWS\Tcsofla.INI [2004-07-22 19:14:45 | 000,000,490 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2004-07-22 18:40:51 | 000,000,083 | ---- | C] () -- C:\WINDOWS\TBPlugin.INI [2004-07-22 18:40:51 | 000,000,058 | ---- | C] () -- C:\WINDOWS\avconfig.ini [2004-07-05 20:33:22 | 000,083,968 | ---- | C] () -- C:\WINDOWS\UnGins.exe [2004-06-29 17:17:49 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\vidx16.dll [2004-06-17 18:15:35 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll [2004-06-09 16:05:36 | 000,319,488 | R--- | C] () -- C:\WINDOWS\System32\MafiaSetup.exe [2004-06-05 20:53:29 | 000,000,684 | ---- | C] () -- C:\WINDOWS\syshcin1.ini [2004-06-02 15:05:04 | 000,000,862 | ---- | C] () -- C:\WINDOWS\eReg.dat [2004-06-01 21:33:33 | 000,000,620 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini [2004-06-01 21:07:27 | 000,001,049 | ---- | C] () -- C:\WINDOWS\wincmd.ini [2004-05-31 18:15:43 | 000,000,083 | ---- | C] () -- C:\WINDOWS\wwp.INI [2004-05-31 00:15:11 | 000,001,080 | ---- | C] () -- C:\WINDOWS\winamp.ini [2004-05-30 15:39:29 | 000,000,232 | ---- | C] () -- C:\WINDOWS\SIERRA.INI [2004-05-29 18:27:27 | 000,173,568 | ---- | C] () -- C:\Documents and Settings\Piotr\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2004-05-29 13:24:51 | 000,000,204 | ---- | C] () -- C:\WINDOWS\RtlRack.ini [2004-05-28 21:22:41 | 000,848,486 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2004-05-28 21:22:41 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2004-05-28 21:21:44 | 000,357,752 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2004-05-28 20:49:13 | 002,111,412 | -H-- | C] () -- C:\Documents and Settings\Piotr\Ustawienia lokalne\Dane aplikacji\IconCache.db [2004-05-28 20:47:54 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe [2004-05-28 20:35:33 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2004-05-28 20:33:47 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2004-05-28 20:32:50 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2004-05-28 20:31:39 | 000,023,016 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2004-05-28 20:31:29 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2004-05-28 20:31:29 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2004-05-28 20:30:38 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2004-05-28 20:30:37 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2004-05-05 09:43:02 | 000,006,478 | ---- | C] () -- C:\WINDOWS\System32\hphmon05.dat [2004-04-01 19:22:10 | 000,364,544 | ---- | C] () -- C:\WINDOWS\System32\hphped05.exe [2003-04-16 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2003-04-16 13:00:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2003-04-16 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2003-04-16 13:00:00 | 000,386,242 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2003-04-16 13:00:00 | 000,340,128 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2003-04-16 13:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2003-04-16 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2003-04-16 13:00:00 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2003-04-16 13:00:00 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatui.dll [2003-04-16 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2003-04-16 13:00:00 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2003-04-16 13:00:00 | 000,186,368 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2003-04-16 13:00:00 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2003-04-16 13:00:00 | 000,070,622 | ---- | C] () -- C:\WINDOWS\System32\edit.com [2003-04-16 13:00:00 | 000,065,894 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2003-04-16 13:00:00 | 000,053,920 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe [2003-04-16 13:00:00 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2003-04-16 13:00:00 | 000,051,823 | ---- | C] () -- C:\WINDOWS\System32\command.com [2003-04-16 13:00:00 | 000,046,464 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2003-04-16 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2003-04-16 13:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2003-04-16 13:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2003-04-16 13:00:00 | 000,039,434 | ---- | C] () -- C:\WINDOWS\System32\mem.exe [2003-04-16 13:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2003-04-16 13:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2003-04-16 13:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2003-04-16 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2003-04-16 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2003-04-16 13:00:00 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2003-04-16 13:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2003-04-16 13:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2003-04-16 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2003-04-16 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2003-04-16 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2003-04-16 13:00:00 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2003-04-16 13:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2003-04-16 13:00:00 | 000,020,986 | ---- | C] () -- C:\WINDOWS\System32\debug.exe [2003-04-16 13:00:00 | 000,019,806 | ---- | C] () -- C:\WINDOWS\System32\graphics.com [2003-04-16 13:00:00 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2003-04-16 13:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2003-04-16 13:00:00 | 000,014,913 | ---- | C] () -- C:\WINDOWS\System32\kb16.com [2003-04-16 13:00:00 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2003-04-16 13:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2003-04-16 13:00:00 | 000,012,866 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe [2003-04-16 13:00:00 | 000,012,594 | ---- | C] () -- C:\WINDOWS\System32\append.exe [2003-04-16 13:00:00 | 000,011,859 | ---- | C] () -- C:\WINDOWS\System32\setver.exe [2003-04-16 13:00:00 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2003-04-16 13:00:00 | 000,008,520 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe [2003-04-16 13:00:00 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe [2003-04-16 13:00:00 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2003-04-16 13:00:00 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2003-04-16 13:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2003-04-16 13:00:00 | 000,003,346 | ---- | C] () -- C:\WINDOWS\System32\redir.exe [2003-04-16 13:00:00 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2003-04-16 13:00:00 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2003-04-16 13:00:00 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin [2003-04-16 13:00:00 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2003-04-16 13:00:00 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2003-04-16 13:00:00 | 000,001,168 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com [2003-04-16 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe [2003-04-16 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe [2003-04-16 13:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe [2003-04-16 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2003-04-16 13:00:00 | 000,000,644 | ---- | C] () -- C:\WINDOWS\win.ini [2003-04-16 13:00:00 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2003-04-16 13:00:00 | 000,000,289 | ---- | C] () -- C:\WINDOWS\system.ini [2002-01-20 14:26:36 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\SimpleResize.dll [2001-10-26 18:29:54 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe [2001-10-26 18:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [2001-03-31 13:00:06 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\winhp260.exe [1999-12-06 23:00:00 | 000,024,957 | ---- | C] () -- C:\WINDOWS\twain_16.dll [1999-04-23 21:22:00 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\DVDRGN.EXE [1998-06-13 22:53:26 | 000,044,544 | ---- | C] () -- C:\WINDOWS\System32\Gif89.dll [1996-04-03 20:33:26 | 000,005,248 | ---- | C] () -- C:\WINDOWS\System32\giveio.sys [color=#E56717]========== LOP Check ==========[/color] [2009-08-23 17:40:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Fighters [2012-01-17 14:37:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NexonEU [2012-01-17 03:04:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Panda Security [2012-01-17 02:19:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SecTaskMan [2010-01-21 01:36:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2005-08-05 15:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Opera [2010-08-03 22:11:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\AnvSoft [2009-11-05 03:28:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\AVI ReComp [2010-05-01 14:29:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\EurekaLog [2012-01-17 22:56:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\foobar2000 [2005-08-17 20:15:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\Jasc [2012-01-17 17:49:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\Kadu-history [2010-07-20 17:30:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\Mumble [2006-12-31 02:03:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\NCH Swift Sound [2006-08-07 19:16:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\VoipDiscount [2009-01-28 18:43:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\XnView [2011-05-18 01:26:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\Youtube Downloader HD [2011-06-19 15:17:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Piotr\Dane aplikacji\Youtube to MP3 Converter [2010-04-17 12:26:58 | 000,000,522 | ---- | M] () -- C:\WINDOWS\Tasks\Install.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:671329E4 < End of report >