OTL logfile created on: 2012-01-19 14:52:26 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Weronika\Moje dokumenty\Downloads Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1015.23 Mb Total Physical Memory | 497.27 Mb Available Physical Memory | 48.98% Memory free 2.38 Gb Paging File | 1.74 Gb Available in Paging File | 72.94% Paging File free Paging file location(s): C:\pagefile.sys 1524 3048 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 149.04 Gb Total Space | 132.38 Gb Free Space | 88.82% Space Free | Partition Type: NTFS Drive D: | 7.48 Gb Total Space | 7.38 Gb Free Space | 98.62% Space Free | Partition Type: FAT32 Computer Name: YOUR-5B46CA2741 | User Name: Weronika | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-01-19 14:49:50 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Weronika\Moje dokumenty\Downloads\OTL.exe PRC - [2012-01-05 10:48:46 | 001,047,024 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe PRC - [2011-08-12 17:13:26 | 000,087,040 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe PRC - [2011-04-14 16:07:56 | 000,156,992 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\TPSrv.exe PRC - [2011-04-13 17:06:56 | 001,000,768 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\ApVxdWin.exe PRC - [2010-10-20 15:49:18 | 000,202,048 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PavFnSvr.exe PRC - [2010-08-16 14:54:46 | 000,028,992 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\psksvc.exe PRC - [2010-06-04 10:37:50 | 000,314,176 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\pavsrvx86.exe PRC - [2010-05-28 13:42:32 | 000,225,600 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\AVENGINE.EXE PRC - [2010-05-08 12:48:36 | 000,229,376 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\DCService.exe PRC - [2010-04-22 18:29:12 | 000,107,776 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\WebProxy.exe PRC - [2009-08-10 14:46:08 | 000,173,312 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PsCtrlS.exe PRC - [2009-07-06 22:06:46 | 000,737,280 | ---- | M] (Andrea Electronics Corporation) -- C:\WINDOWS\system32\AESTFltr.exe PRC - [2009-06-29 21:44:38 | 000,458,844 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe PRC - [2009-06-29 21:44:38 | 000,221,266 | ---- | M] (IDT, Inc.) -- c:\Program Files\IDT\WDM\stacsv.exe PRC - [2009-03-30 15:02:08 | 000,319,488 | ---- | M] () -- C:\Program Files\HP\HPBTWD.exe PRC - [2008-06-19 12:59:50 | 000,108,288 | ---- | M] (Panda Security S.L.) -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PsImSvc.exe PRC - [2008-04-16 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-02-04 17:26:48 | 000,062,768 | ---- | M] (Panda Security, S.L.) -- C:\Program Files\Common Files\Panda Security\PavShld\PavPrSrv.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-01-05 10:48:44 | 000,411,120 | ---- | M] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\ppgooglenaclpluginchrome.dll MOD - [2012-01-05 10:48:43 | 003,767,792 | ---- | M] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\pdf.dll MOD - [2012-01-05 10:47:19 | 000,122,880 | ---- | M] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\avutil-51.dll MOD - [2012-01-05 10:47:18 | 000,222,208 | ---- | M] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\avformat-53.dll MOD - [2012-01-05 10:47:17 | 001,746,432 | ---- | M] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\avcodec-53.dll MOD - [2012-01-05 08:06:01 | 008,593,056 | ---- | M] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\gcswf32.dll MOD - [2011-10-12 18:57:22 | 000,998,400 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\90b90e700e59d73d6d692cf74e1ba16e\System.Management.ni.dll MOD - [2011-10-12 18:40:06 | 012,430,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\71a2ae9ad561a62181cbd9fb11e9de7a\System.Windows.Forms.ni.dll MOD - [2011-10-12 18:39:33 | 001,587,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\c10bea3c4bb7ef654651141bf9419090\System.Drawing.ni.dll MOD - [2011-10-12 18:36:14 | 007,950,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\af39f6e644af02873b9bae319f2bfb13\System.ni.dll MOD - [2011-10-12 18:35:45 | 011,490,816 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\ca87ba84221991839abbe7d4bc9c6721\mscorlib.ni.dll MOD - [2011-08-12 17:13:26 | 000,087,040 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe MOD - [2010-05-08 12:48:36 | 000,229,376 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\DCService.exe MOD - [2009-03-30 15:02:08 | 000,319,488 | ---- | M] () -- C:\Program Files\HP\HPBTWD.exe MOD - [2007-02-14 13:55:12 | 000,165,424 | ---- | M] () -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\MiniCrypto.dll MOD - [2007-02-14 13:55:12 | 000,099,888 | ---- | M] () -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\APIcr.dll MOD - [2004-05-19 11:33:12 | 000,507,904 | ---- | M] () -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\LIBXML2.DLL MOD - [2003-07-29 09:27:40 | 000,078,336 | ---- | M] () -- C:\WINDOWS\system32\spool\prtprocs\w32x86\LXBKPP5C.DLL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2011-08-12 17:13:26 | 000,087,040 | ---- | M] () [Auto | Running] -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service) SRV - [2011-06-08 12:02:00 | 000,633,856 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2011-04-14 16:07:56 | 000,156,992 | ---- | M] (Panda Security, S.L.) [Auto | Running] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\TPSrv.exe -- (TPSrv) SRV - [2010-10-20 15:49:18 | 000,202,048 | ---- | M] (Panda Security, S.L.) [Auto | Running] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PavFnSvr.exe -- (PAVFNSVR) SRV - [2010-08-16 14:54:46 | 000,028,992 | ---- | M] (Panda Security, S.L.) [Auto | Running] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PskSvc.exe -- (PskSvcRetail) SRV - [2010-06-17 17:40:39 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2010-06-04 10:37:50 | 000,314,176 | ---- | M] (Panda Security, S.L.) [Auto | Running] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\pavsrvx86.exe -- (PAVSRV) SRV - [2010-05-08 12:48:36 | 000,229,376 | ---- | M] () [Auto | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\DCService.exe -- (DCService.exe) SRV - [2009-08-10 14:46:08 | 000,173,312 | ---- | M] (Panda Security, S.L.) [Auto | Running] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PsCtrls.exe -- (Panda Software Controller) SRV - [2009-06-29 21:44:38 | 000,221,266 | ---- | M] (IDT, Inc.) [Auto | Running] -- c:\Program Files\IDT\WDM\stacsv.exe -- (STacSV) SRV - [2008-06-19 12:59:50 | 000,108,288 | ---- | M] (Panda Security S.L.) [Auto | Running] -- C:\Program Files\Panda Security\Panda Antivirus Pro 2012\PsImSvc.exe -- (PSIMSVC) SRV - [2008-02-04 17:26:48 | 000,062,768 | ---- | M] (Panda Security, S.L.) [Auto | Running] -- C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe -- (PavPrSrv) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Running] -- -- (PavTPK.sys) DRV - File not found [Kernel | On_Demand | Running] -- -- (PavSRK.sys) DRV - File not found [File_System | On_Demand | Running] -- -- (AvFlt) DRV - [2011-02-21 14:38:32 | 000,037,448 | ---- | M] (Panda Security, S.L.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ShlDrv51.sys -- (ShldDrv) DRV - [2010-11-26 18:02:52 | 000,014,776 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys -- (SmartDefragDriver) DRV - [2010-06-22 18:13:00 | 000,026,696 | ---- | M] (Panda Security, S.L.) [File_System | Boot | Running] -- C:\WINDOWS\system32\Drivers\pavboot.sys -- (pavboot) DRV - [2010-06-22 18:01:52 | 000,021,248 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\htcnprot.sys -- (htcnprot) DRV - [2010-06-01 14:07:00 | 000,117,504 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbnet.sys -- (ewusbnet) DRV - [2010-05-22 14:48:20 | 000,070,656 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ew_jubusenum.sys -- (huawei_enumerator) DRV - [2010-05-21 13:50:26 | 000,059,080 | ---- | M] (Panda Security, S.L.) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\amm8651.sys -- (AmFSM) DRV - [2010-05-09 10:28:45 | 001,746,432 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX) DRV - [2010-05-06 17:11:58 | 000,163,848 | ---- | M] (Panda Security, S.L.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\PavProc.sys -- (PavProc) DRV - [2010-03-25 10:08:30 | 000,105,728 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2010-03-20 11:56:04 | 000,101,504 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_hwusbdev.sys -- (ew_hwusbdev) DRV - [2009-07-10 10:36:26 | 002,345,856 | ---- | M] (Digital Camera) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SPUVCBv.sys -- (SPUVCbv) DRV - [2009-06-29 21:44:38 | 001,642,931 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA) DRV - [2009-06-10 15:49:32 | 000,024,576 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ANDROIDUSB.sys -- (HTCAND32) DRV - [2009-04-21 18:13:34 | 000,113,664 | ---- | M] (Andrea Electronics Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AESTAud.sys -- (AESTAud) DRV - [2009-03-31 21:11:44 | 000,039,424 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c) DRV - [2009-03-16 21:19:44 | 000,058,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wsimd.sys -- (WSIMD) DRV - [2008-11-22 02:36:46 | 000,160,256 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTS5121.sys -- (RSUSBSTOR) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-04-14 15:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Sterownik NT karty Realtek RTL8139(A/B/C) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pl_PL&c=94&bd=Pavilion&pf=cnnb IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pl_PL&c=94&bd=Pavilion&pf=cnnb IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1644919322-123813813-740767679-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pl_PL&c=94&bd=Pavilion&pf=cnnb IE - HKU\S-1-5-21-1644919322-123813813-740767679-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-1644919322-123813813-740767679-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.) [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms} CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\gcswf32.dll CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll CHR - plugin: Java Deployment Toolkit 6.0.260.3 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll CHR - plugin: Java(TM) Platform SE 6 U26 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Disabled) = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\16.0.912.75\pdf.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.69\npGoogleUpdate3.dll CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll CHR - plugin: Default Plug-in (Enabled) = default_plugin CHR - Extension: Bejeweled = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\adpkifcfcacgmnggcbpbjbkdijciiigm\2_0\ CHR - Extension: Angry Birds = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.1.2.1_0\ CHR - Extension: BeFunky Photo Editor = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\apfkepiiddolifkgjmfdgpnipgnfejab\1.1_0\ CHR - Extension: Bouncy Mouse = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\cgdllcbmneiklcmbeclfegccdjholomb\1.0.1_0\ CHR - Extension: Yulia Brodskaya = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jlgdloilieclkegafohackmhffbmdpko\2_0\ CHR - Extension: Sprawdzanie poczty Google = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\3.2_0\ CHR - Extension: Psykopaint = C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pgjchkcfmigkkhedgjedmffdepgmpfil\0.0.0.4_0\ O1 HOSTS File: ([2008-04-16 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AOL Toolbar BHO) - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\Pasek narzędzi AOL 5.0\aoltb.dll (AOL LLC) O3 - HKLM\..\Toolbar: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\Pasek narzędzi AOL 5.0\aoltb.dll (AOL LLC) O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\Pasek narzędzi AOL 5.0\aoltb.dll (AOL LLC) O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\Pasek narzędzi AOL 5.0\aoltb.dll (AOL LLC) O3 - HKU\S-1-5-21-1644919322-123813813-740767679-1005\..\Toolbar\WebBrowser: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\Pasek narzędzi AOL 5.0\aoltb.dll (AOL LLC) O4 - HKLM..\Run: [AESTFltr] C:\WINDOWS\System32\AESTFltr.exe (Andrea Electronics Corporation) O4 - HKLM..\Run: [APVXDWIN] C:\Program Files\Panda Security\Panda Antivirus Pro 2012\APVXDWIN.EXE (Panda Security, S.L.) O4 - HKLM..\Run: [HP BTW Detect Program] C:\Program Files\HP\HPBTWD.exe () O4 - HKLM..\Run: [SCANINICIO] C:\Program Files\Panda Security\Panda Antivirus Pro 2012\Inicio.exe (Panda Security, S.L.) O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.) O4 - HKU\S-1-5-21-1644919322-123813813-740767679-1005..\Run: [ccleaner] C:\Program Files\CCleaner\ccleaner.exe (Piriform Ltd) O4 - HKU\S-1-5-21-1644919322-123813813-740767679-1005..\Run: [Facebook Update] C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-21-1644919322-123813813-740767679-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O8 - Extra context menu item: &Wyszukiwarka na pasku narzędzi AOL - C:\Documents and Settings\All Users\Dane aplikacji\AOL\ieToolbar\resources\pl-PL\local\search.html () O8 - Extra context menu item: Funkcja Google Sidewiki - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html File not found O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} http://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab (DLM Control) O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab (Facebook Photo Uploader 5 Control) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx (WRC Class) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.21.99.95 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{46D71F51-8B39-4B75-8BD2-92D51222F68A}: DhcpNameServer = 89.108.195.21 217.17.34.10 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{82B2565A-1605-48B3-8657-75C4946EF908}: DhcpNameServer = 192.168.1.1 0.0.0.0 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CAC63455-3112-4B86-8B2D-23AB1FF66435}: DhcpNameServer = 62.21.99.95 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DCCE7171-0136-4413-A8BF-8811A44AF964}: DhcpNameServer = 89.108.195.21 217.17.34.10 O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\avldr: DllName - (avldr.dll) - C:\WINDOWS\System32\avldr.dll (On-Access Anti-Malware Scanner Sync) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-01-19 14:27:33 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Weronika\Recent [2012-01-15 19:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Weronika\Dane aplikacji\Outlook [2012-01-15 19:50:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Weronika\Moje dokumenty\My Photos [2012-01-15 19:50:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Weronika\Moje dokumenty\My Documents [2012-01-15 19:48:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Weronika\Dane aplikacji\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1 [2012-01-15 19:46:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\Htc [2012-01-15 19:46:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Weronika\Dane aplikacji\HTC [2012-01-15 19:45:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\HTC Sync [2012-01-15 19:44:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\HTC [2012-01-15 19:44:04 | 000,024,576 | ---- | C] (HTC, Corporation) -- C:\WINDOWS\System32\drivers\ANDROIDUSB.sys [2012-01-15 19:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\Spirent Communications [2012-01-15 19:43:18 | 000,000,000 | ---D | C] -- C:\Program Files\HTC [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-01-19 14:36:24 | 000,008,627 | ---- | M] () -- C:\WINDOWS\System32\PAV_FOG.OPC [2012-01-19 14:27:07 | 000,000,316 | ---- | M] () -- C:\WINDOWS\tasks\GlaryInitialize.job [2012-01-19 14:27:05 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-01-19 14:26:42 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2012-01-19 14:26:39 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-01-19 14:26:37 | 1064,620,032 | -HS- | M] () -- C:\hiberfil.sys [2012-01-19 12:22:51 | 009,961,472 | -H-- | M] () -- C:\Documents and Settings\Weronika\NTUSER.DAT [2012-01-19 12:22:51 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Weronika\ntuser.ini [2012-01-19 12:21:00 | 000,001,144 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1644919322-123813813-740767679-1005UA.job [2012-01-19 12:19:00 | 000,001,040 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-01-18 21:45:27 | 000,001,014 | ---- | M] () -- C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1644919322-123813813-740767679-1005UA.job [2012-01-18 21:45:23 | 000,000,992 | ---- | M] () -- C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-1644919322-123813813-740767679-1005Core.job [2012-01-18 21:37:39 | 000,513,899 | ---- | M] () -- C:\Documents and Settings\Weronika\Pulpit\20120117001.jpg [2012-01-16 06:13:01 | 000,000,660 | ---- | M] () -- C:\WINDOWS\win.ini [2012-01-16 06:13:01 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini [2012-01-16 06:13:01 | 000,000,211 | RHS- | M] () -- C:\boot.ini [2012-01-15 19:46:59 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ANDROIDUSB_01007.Wdf [2012-01-15 19:21:04 | 000,001,092 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1644919322-123813813-740767679-1005Core.job [2012-01-11 22:02:55 | 000,000,332 | ---- | M] () -- C:\Documents and Settings\Weronika\Moje dokumenty\cc_20120111_220222.reg [2012-01-09 16:05:32 | 001,062,274 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2012-01-09 16:05:32 | 000,498,010 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-01-09 16:05:32 | 000,438,946 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-01-09 16:05:32 | 000,087,038 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-01-09 16:05:32 | 000,069,782 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-01-06 02:30:06 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011-12-30 00:53:38 | 000,008,425 | ---- | M] () -- C:\Documents and Settings\Weronika\Pulpit\znaki.JPG [2011-12-30 00:48:25 | 000,003,300 | ---- | M] () -- C:\Documents and Settings\Weronika\Pulpit\l.JPG [2011-12-30 00:46:57 | 000,003,131 | ---- | M] () -- C:\Documents and Settings\Weronika\Pulpit\b.JPG [2011-12-30 00:44:57 | 000,003,498 | ---- | M] () -- C:\Documents and Settings\Weronika\Pulpit\k.JPG [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-01-18 21:37:14 | 000,513,899 | ---- | C] () -- C:\Documents and Settings\Weronika\Pulpit\20120117001.jpg [2012-01-15 19:46:59 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ANDROIDUSB_01007.Wdf [2012-01-11 22:02:25 | 000,000,332 | ---- | C] () -- C:\Documents and Settings\Weronika\Moje dokumenty\cc_20120111_220222.reg [2011-12-30 00:52:48 | 000,008,425 | ---- | C] () -- C:\Documents and Settings\Weronika\Pulpit\znaki.JPG [2011-12-30 00:48:25 | 000,003,300 | ---- | C] () -- C:\Documents and Settings\Weronika\Pulpit\l.JPG [2011-12-30 00:46:57 | 000,003,131 | ---- | C] () -- C:\Documents and Settings\Weronika\Pulpit\b.JPG [2011-12-30 00:44:57 | 000,003,498 | ---- | C] () -- C:\Documents and Settings\Weronika\Pulpit\k.JPG [2011-12-09 11:37:24 | 000,025,944 | ---- | C] () -- C:\WINDOWS\System32\SmartDefragBootTime.exe [2011-12-09 11:37:24 | 000,014,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\SmartDefragDriver.sys [2011-12-01 19:39:35 | 000,000,250 | ---- | C] () -- C:\WINDOWS\System32\PavCPL.dat [2011-08-15 00:23:33 | 000,122,884 | ---- | C] () -- C:\WINDOWS\UnGins.exe [2011-07-22 00:03:33 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2011-07-22 00:03:32 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2011-07-22 00:03:22 | 000,644,608 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2011-07-22 00:03:22 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2011-07-22 00:03:22 | 000,073,216 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2011-07-22 00:03:22 | 000,000,590 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2011-06-18 14:21:57 | 000,165,200 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-12-06 20:52:20 | 000,000,101 | ---- | C] () -- C:\WINDOWS\lexstat.ini [2010-12-06 20:51:56 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\LXBKIH.EXE [2010-12-06 20:51:56 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\LXBKLCNP.DLL [2010-12-06 20:51:56 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxbkvs.dll [2010-12-06 20:51:56 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\INSTMON.EXE [2010-12-06 20:51:33 | 000,000,266 | ---- | C] () -- C:\WINDOWS\System32\lxbkcoin.ini [2010-11-16 16:48:59 | 000,002,291 | ---- | C] () -- C:\WINDOWS\VPlayer.INI [2010-07-18 18:44:36 | 000,000,048 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-06-01 20:14:22 | 000,072,704 | ---- | C] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-05-09 10:30:52 | 000,071,168 | ---- | C] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-05-09 10:28:37 | 000,002,946 | ---- | C] () -- C:\WINDOWS\DextUVCb.ini [2010-05-09 10:27:03 | 005,336,598 | -H-- | C] () -- C:\Documents and Settings\Weronika\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-08-27 15:52:36 | 000,028,600 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini [2009-08-27 15:14:04 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4926.dll [2009-04-20 19:50:10 | 000,000,227 | ---- | C] () -- C:\WINDOWS\system.ini [2009-04-20 18:27:00 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2009-04-20 18:26:56 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini [2009-04-20 18:05:04 | 001,062,274 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2009-04-20 18:05:04 | 000,498,010 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2009-04-20 18:05:04 | 000,438,946 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2009-04-20 18:05:04 | 000,087,038 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2009-04-20 18:05:04 | 000,069,782 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2009-04-20 17:59:40 | 000,280,536 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2009-04-20 17:57:10 | 000,000,660 | ---- | C] () -- C:\WINDOWS\win.ini [2009-04-20 17:57:10 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2009-04-20 17:56:56 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009-04-20 17:55:54 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2009-04-20 17:55:48 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2009-04-20 17:55:16 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2009-04-20 17:55:04 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2009-04-20 17:55:04 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2008-04-16 13:00:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2008-04-16 13:00:00 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2008-04-16 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2008-04-16 13:00:00 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll [2008-04-16 13:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2008-04-16 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2008-04-16 13:00:00 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2008-04-16 13:00:00 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatUI.dll [2008-04-16 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2008-04-16 13:00:00 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2008-04-16 13:00:00 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2008-04-16 13:00:00 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [2008-04-16 13:00:00 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2008-04-16 13:00:00 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2008-04-16 13:00:00 | 000,070,622 | ---- | C] () -- C:\WINDOWS\System32\edit.com [2008-04-16 13:00:00 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe [2008-04-16 13:00:00 | 000,053,920 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe [2008-04-16 13:00:00 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2008-04-16 13:00:00 | 000,051,823 | ---- | C] () -- C:\WINDOWS\System32\command.com [2008-04-16 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2008-04-16 13:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2008-04-16 13:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2008-04-16 13:00:00 | 000,039,434 | ---- | C] () -- C:\WINDOWS\System32\mem.exe [2008-04-16 13:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2008-04-16 13:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2008-04-16 13:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2008-04-16 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2008-04-16 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2008-04-16 13:00:00 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2008-04-16 13:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2008-04-16 13:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2008-04-16 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2008-04-16 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2008-04-16 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2008-04-16 13:00:00 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2008-04-16 13:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2008-04-16 13:00:00 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2008-04-16 13:00:00 | 000,020,986 | ---- | C] () -- C:\WINDOWS\System32\debug.exe [2008-04-16 13:00:00 | 000,019,806 | ---- | C] () -- C:\WINDOWS\System32\graphics.com [2008-04-16 13:00:00 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2008-04-16 13:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2008-04-16 13:00:00 | 000,014,913 | ---- | C] () -- C:\WINDOWS\System32\kb16.com [2008-04-16 13:00:00 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2008-04-16 13:00:00 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2008-04-16 13:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2008-04-16 13:00:00 | 000,012,866 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe [2008-04-16 13:00:00 | 000,012,594 | ---- | C] () -- C:\WINDOWS\System32\append.exe [2008-04-16 13:00:00 | 000,011,859 | ---- | C] () -- C:\WINDOWS\System32\setver.exe [2008-04-16 13:00:00 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2008-04-16 13:00:00 | 000,008,520 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe [2008-04-16 13:00:00 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe [2008-04-16 13:00:00 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2008-04-16 13:00:00 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2008-04-16 13:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2008-04-16 13:00:00 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2008-04-16 13:00:00 | 000,003,346 | ---- | C] () -- C:\WINDOWS\System32\redir.exe [2008-04-16 13:00:00 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2008-04-16 13:00:00 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2008-04-16 13:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2008-04-16 13:00:00 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2008-04-16 13:00:00 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2008-04-16 13:00:00 | 000,001,168 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com [2008-04-16 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe [2008-04-16 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe [2008-04-16 13:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe [2008-04-16 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2008-04-16 13:00:00 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2002-09-18 00:45:00 | 000,119,808 | ---- | C] () -- C:\WINDOWS\lsb_un20.exe [2002-05-29 06:55:42 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2002-05-29 06:54:40 | 000,004,605 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [color=#E56717]========== LOP Check ==========[/color] [2010-07-08 22:46:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-10-17 14:26:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Clarus [2011-08-16 18:38:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2011-03-05 22:30:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DatacardService [2010-05-27 17:34:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\FarmFrenzy-PizzaParty [2010-05-12 11:32:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2011-10-10 19:28:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2011-02-15 22:05:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2010-12-22 20:28:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nokia [2010-12-22 20:14:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NokiaInstallerCache [2011-05-08 15:13:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NokiaMusic [2011-12-01 19:39:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Panda Security [2010-12-22 19:50:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-05-09 19:19:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Uninstall [2010-08-14 20:42:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\WildTangent [2011-07-22 00:33:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\.wtw [2010-11-16 16:20:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\BitComet [2011-12-07 20:47:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\BitTorrent [2011-08-16 18:39:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\DAEMON Tools Lite [2012-01-17 17:07:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\foobar2000 [2010-08-30 10:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Gadu-Gadu [2011-06-28 19:54:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Gadu-Gadu 10 [2011-06-18 13:22:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\GlarySoft [2010-06-17 14:38:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\gtk-2.0 [2012-01-15 19:53:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\HTC [2012-01-15 19:48:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1 [2011-08-23 11:41:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\IObit [2011-02-16 09:20:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\ipla [2011-12-27 23:32:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Nokia [2011-12-27 23:32:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Nokia Ovi Suite [2010-09-13 23:08:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Nowe Gadu-Gadu [2012-01-15 19:53:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Outlook [2011-12-01 19:38:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Panda Security [2011-11-24 15:09:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\PC Suite [2011-02-15 22:05:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\RDRM [2010-06-16 18:08:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Thinstall [2011-06-15 19:58:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Weronika\Dane aplikacji\Windows Search [2012-01-18 21:45:23 | 000,000,992 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1644919322-123813813-740767679-1005Core.job [2012-01-18 21:45:27 | 000,001,014 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1644919322-123813813-740767679-1005UA.job [2012-01-19 14:27:07 | 000,000,316 | ---- | M] () -- C:\WINDOWS\Tasks\GlaryInitialize.job [color=#E56717]========== Purity Check ==========[/color] < End of report >