OTL logfile created on: 2012-02-04 12:56:57 - Run 2 OTL by OldTimer - Version 3.2.31.0 Folder = D:\Documents and Settings\JA\Pulpit Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 502,05 Mb Total Physical Memory | 223,76 Mb Available Physical Memory | 44,57% Memory free 1,20 Gb Paging File | 0,81 Gb Available in Paging File | 67,49% Paging File free Paging file location(s): D:\pagefile.sys 756 1512 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 53,69 Gb Total Space | 2,29 Gb Free Space | 4,26% Space Free | Partition Type: FAT32 Drive D: | 53,21 Gb Total Space | 5,52 Gb Free Space | 10,38% Space Free | Partition Type: NTFS Computer Name: JA | User Name: JA | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-02-03 15:56:32 | 000,584,192 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\JA\Pulpit\OTL.exe PRC - [2012-01-21 19:40:11 | 000,924,632 | ---- | M] (Mozilla Corporation) -- D:\Program Files\Mozilla Firefox\firefox.exe PRC - [2008-01-29 00:09:38 | 001,502,720 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe PRC - [2004-09-19 19:27:44 | 000,065,536 | ---- | M] () -- D:\Documents and Settings\JA\Moje dokumenty\LClock\LClock.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-01-21 19:40:10 | 002,124,760 | ---- | M] () -- D:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2011-11-13 13:50:53 | 008,527,008 | ---- | M] () -- D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll MOD - [2007-09-20 17:34:58 | 000,129,024 | ---- | M] () -- D:\Program Files\WinRAR\RarExt.dll MOD - [2004-09-19 19:27:44 | 000,065,536 | ---- | M] () -- D:\Documents and Settings\JA\Moje dokumenty\LClock\LClock.exe MOD - [2004-09-19 19:27:34 | 000,069,632 | ---- | M] () -- D:\Documents and Settings\JA\Moje dokumenty\LClock\LC.dll MOD - [2004-09-19 19:27:30 | 000,081,920 | ---- | M] () -- D:\Documents and Settings\JA\Moje dokumenty\LClock\Calendar.dll MOD - [2004-08-03 22:44:06 | 000,246,784 | ---- | M] () -- \\?\globalroot\systemroot\system32\mswsock.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- -- (tfsnudfa) SRV - File not found [Disabled | Stopped] -- -- (HidServ) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-12-25 12:19:35 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2009-03-18 16:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2007-11-14 17:14:02 | 004,625,408 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007-07-05 14:35:34 | 000,546,112 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ar5211.sys -- (AR5211) DRV - [2007-01-30 18:12:06 | 000,045,568 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\bcm4sbxp.sys -- (bcm4sbxp) DRV - [2006-02-25 16:13:06 | 000,016,877 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- D:\WINDOWS\System32\drivers\aspi32.sys -- (Aspi32) DRV - [2004-12-09 16:25:49 | 000,047,104 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x) DRV - [2004-12-03 11:20:41 | 000,020,544 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\sfsync02.sys -- (sfsync02) StarForce Protection Synchronization Driver (version 2.x) DRV - [2004-10-28 11:47:59 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x) DRV - [2003-12-08 10:53:48 | 000,053,600 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\alcan5wn.sys -- (alcan5wn) SpeedTouch USB ADSL PPP Networking Driver (NDISWAN) DRV - [2003-12-08 10:53:46 | 000,070,688 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\alcaudsl.sys -- (alcaudsl) DRV - [2003-08-04 12:22:44 | 000,016,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\PCANDIS5.SYS -- (PCANDIS5) DRV - [2003-01-17 03:59:56 | 000,001,984 | ---- | M] () [Kernel | System | Running] -- D:\WINDOWS\System32\DRIVERS\papycpu2.sys -- (papycpu2) DRV - [2003-01-17 03:59:56 | 000,001,856 | ---- | M] () [Kernel | System | Running] -- D:\WINDOWS\System32\DRIVERS\papyjoy.sys -- (papyjoy) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-1547161642-527237240-839522115-1001\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\S-1-5-21-1547161642-527237240-839522115-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.suggest.enabled: false FF - prefs.js..browser.search.update: false FF - prefs.js..browser.startup.homepage: "about:blank" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2.2 FF - prefs.js..extensions.enabledItems: {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.13 FF - prefs.js..extensions.enabledItems: FasterFox_Lite@BigRedBrent:3.8.2Lite FF - prefs.js..extensions.enabledItems: UnsortedBookmarksFolderToolButton@alice:1.7 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..keyword.URL: "http://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: D:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2012-01-21 19:40:14 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2010-08-19 16:23:06 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\JA\Dane aplikacji\Mozilla\Extensions [2012-01-21 19:43:15 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\JA\Dane aplikacji\Mozilla\Firefox\Profiles\0gw24j3u.default\extensions [2011-05-03 16:04:37 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\extensions () (No name found) -- D:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\0GW24J3U.DEFAULT\EXTENSIONS\{46551EC9-40F0-4E47-8E18-8E5CF550CFB8}.XPI () (No name found) -- D:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\0GW24J3U.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- D:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\0GW24J3U.DEFAULT\EXTENSIONS\ELEMHIDEHELPER@ADBLOCKPLUS.ORG.XPI () (No name found) -- D:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\0GW24J3U.DEFAULT\EXTENSIONS\FASTERFOX_LITE@BIGREDBRENT.XPI () (No name found) -- D:\DOCUMENTS AND SETTINGS\JA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\0GW24J3U.DEFAULT\EXTENSIONS\MODTABS@GMAIL.COM.XPI [2012-01-21 19:40:14 | 000,121,816 | ---- | M] (Mozilla Foundation) -- D:\Program Files\mozilla firefox\components\browsercomps.dll [2012-01-21 19:40:08 | 000,002,767 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-01-21 19:40:08 | 000,001,406 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-01-21 19:40:08 | 000,000,917 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-01-21 19:40:08 | 000,000,858 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-01-21 19:40:08 | 000,001,183 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-01-21 19:40:08 | 000,001,683 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2012-02-01 14:07:50 | 000,000,829 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 talk.aqq.eu O1 - Hosts: 127.0.0.1 contact.aqq.eu O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O4 - HKU\.DEFAULT..\Run: [VisualTaskTips] D:\Program Files\Utilities\VisualTaskTips\VisualTaskTips.exe File not found O4 - HKU\S-1-5-18..\Run: [VisualTaskTips] D:\Program Files\Utilities\VisualTaskTips\VisualTaskTips.exe File not found O4 - HKU\S-1-5-20..\Run: [VisualTaskTips] D:\Program Files\Utilities\VisualTaskTips\VisualTaskTips.exe File not found O4 - HKU\S-1-5-21-1547161642-527237240-839522115-1001..\Run: [LClock] D:\Documents and Settings\JA\Moje dokumenty\LClock\LClock.exe () O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O4 - HKU\S-1-5-20..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideRunAsVerb = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRemoteRecursiveEvents = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoInternetOpenWith = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousMachineGroupPolicy = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousUserGroupPolicy = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data] O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSharedDocuments = 01 00 00 00 [binary data] O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = [binary data] O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyDocs = [binary data] O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 01 00 00 00 [binary data] O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoNetworkConnections = 01 00 00 00 [binary data] O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSetFolders = 1 O7 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 10 00 00 00 [binary data] O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre6\bin\npjpi160_21.dll (Sun Microsystems, Inc.) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - mswsock.dll File not found O15 - HKU\.DEFAULT\..Trusted Domains: google.com ([mail] https in Trusted sites) O15 - HKU\S-1-5-18\..Trusted Domains: google.com ([mail] https in Trusted sites) O15 - HKU\S-1-5-20\..Trusted Domains: google.com ([mail] https in Trusted sites) O15 - HKU\S-1-5-21-1547161642-527237240-839522115-1001\..Trusted Domains: google.com ([mail] https in Trusted sites) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 91.150.167.10 213.134.134.134 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EA3B92CF-3CA9-4886-AD9B-CAF902FD377B}: DhcpNameServer = 91.150.167.10 213.134.134.134 O20 - HKLM Winlogon: Shell - (Explorer.exe) -D:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (D:\WINDOWS\system32\userinit.exe) -D:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UIHost - (%windir%\XP ARENA.exe) -D:\WINDOWS\XP ARENA.EXE (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: D:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: D:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-26 16:00:20 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ] O33 - MountPoints2\{62e496fa-cbf6-11e0-ad32-00197d100915}\Shell - "" = AutoRun O33 - MountPoints2\{62e496fa-cbf6-11e0-ad32-00197d100915}\Shell\AutoRun\command - "" = F:\MLLaunch.exe O33 - MountPoints2\{6a0a0712-abc6-11e0-ac98-00197d100915}\Shell - "" = AutoRun O33 - MountPoints2\{6a0a0712-abc6-11e0-ac98-00197d100915}\Shell\AutoRun\command - "" = F:\Launch.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] File not found -- D:\WINDOWS\System32\ [2012-02-04 12:03:46 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\JA\Recent [2012-02-04 08:41:39 | 000,000,000 | ---D | C] -- D:\Nowy folder (2) [2012-02-04 08:37:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\JA\Pulpit\Nowy folder [2012-02-04 08:33:18 | 000,049,536 | ---- | C] (Microsoft Corporation) -- D:\cdrom.sys [2012-02-03 21:16:23 | 000,000,000 | ---D | C] -- D:\Nowy folder [2012-02-03 19:59:50 | 000,000,000 | --SD | C] -- D:\32788R22FWJFW [2012-02-03 18:16:38 | 000,000,000 | ---D | C] -- D:\TDSSKiller_Quarantine [2012-02-03 15:56:32 | 000,584,192 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\JA\Pulpit\OTL.exe [2012-02-03 15:32:39 | 000,000,000 | ---D | C] -- D:\tdsskiller [2012-02-02 10:33:23 | 000,000,000 | ---D | C] -- D:\Filmy [2012-01-31 15:58:08 | 000,000,000 | ---D | C] -- D:\Documents and Settings\JA\Dane aplikacji\foobar2000 [2012-01-24 19:13:26 | 000,000,000 | ---D | C] -- D:\Program Files\StartKiller [2012-01-24 19:13:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\Start Killer [2012-01-14 20:15:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\Media [2012-01-14 19:17:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\JA\Menu Start\Programy\Fox Interactive [2012-01-14 19:14:10 | 000,000,000 | ---D | C] -- D:\Program Files\FOX [2012-01-13 18:58:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\JA\Moje dokumenty\Gehrunnerjunge_2_0_Ashen_II_by_flohri [2012-01-08 13:57:27 | 000,000,000 | ---D | C] -- D:\Documents and Settings\JA\Moje dokumenty\EA Games [2012-01-06 15:38:48 | 000,000,000 | ---D | C] -- D:\Documents and Settings\NetworkService\Dane aplikacji\Sun [2 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] File not found -- D:\WINDOWS\System32\ [2012-02-04 12:49:27 | 000,000,462 | ---- | M] () -- D:\blitzblank.rar [2012-02-04 12:09:09 | 000,335,926 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2012-02-04 12:09:09 | 000,292,308 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2012-02-04 12:09:09 | 000,041,818 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2012-02-04 12:09:09 | 000,033,482 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2012-02-04 12:04:55 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2012-02-04 08:28:07 | 000,000,000 | -HS- | M] () -- D:\WINDOWS\System32\dds_log_trash.cmd [2012-02-03 15:56:32 | 000,584,192 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\JA\Pulpit\OTL.exe [2012-01-27 22:49:05 | 000,011,578 | ---- | M] () -- D:\Documents and Settings\JA\Replacer.cmd [2012-01-08 12:02:43 | 000,001,282 | ---- | M] () -- D:\WINDOWS\eReg.dat [2012-01-06 12:55:47 | 000,005,958 | ---- | M] () -- D:\Documents and Settings\JA\Moje dokumenty\Kompozycja.theme [2 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-02-04 12:48:52 | 000,000,462 | ---- | C] () -- D:\blitzblank.rar [2012-01-27 22:49:43 | 000,011,578 | ---- | C] () -- D:\Documents and Settings\JA\Replacer.cmd [2012-01-13 08:29:50 | 000,000,000 | -HS- | C] () -- D:\WINDOWS\System32\dds_log_trash.cmd [2012-01-06 12:55:47 | 000,005,958 | ---- | C] () -- D:\Documents and Settings\JA\Moje dokumenty\Kompozycja.theme [2011-08-20 17:01:25 | 000,043,520 | ---- | C] () -- D:\WINDOWS\System32\CmdLineExt03.dll [2011-07-03 18:31:50 | 000,000,000 | ---- | C] () -- D:\WINDOWS\SETUP.INI [2011-06-10 19:01:18 | 000,000,030 | ---- | C] () -- D:\WINDOWS\Q3version.ini [2011-06-10 19:01:00 | 000,000,544 | ---- | C] () -- D:\WINDOWS\Qiii.INI [2011-05-05 15:31:30 | 007,430,144 | ---- | C] () -- D:\WINDOWS\System32\Token Light.dll [2011-04-20 16:18:11 | 000,000,020 | ---- | C] () -- D:\WINDOWS\RaUI.INI [2011-01-01 00:26:54 | 000,001,984 | ---- | C] () -- D:\WINDOWS\System32\drivers\papycpu2.sys [2011-01-01 00:26:54 | 000,001,856 | ---- | C] () -- D:\WINDOWS\System32\drivers\papyjoy.sys [2011-01-01 00:24:33 | 000,000,019 | ---- | C] () -- D:\WINDOWS\Sierra.ini [2010-12-23 20:58:49 | 000,001,282 | ---- | C] () -- D:\WINDOWS\eReg.dat [2010-12-22 20:37:41 | 000,029,696 | ---- | C] () -- D:\WINDOWS\System32\pthread.dll [2010-08-19 17:08:45 | 000,004,293 | ---- | C] () -- D:\WINDOWS\ODBCINST.INI [2010-08-19 17:02:04 | 000,147,456 | ---- | C] () -- D:\WINDOWS\System32\igfxCoIn_v4864.dll [2010-08-19 16:59:10 | 000,079,152 | ---- | C] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2010-08-19 16:23:03 | 000,000,000 | ---- | C] () -- D:\WINDOWS\nsreg.dat [2010-08-19 16:17:57 | 000,005,606 | ---- | C] () -- D:\WINDOWS\System32\stci.dll [2010-08-19 15:46:32 | 000,002,048 | --S- | C] () -- D:\WINDOWS\bootstat.dat [2010-08-19 15:21:18 | 000,021,856 | ---- | C] () -- D:\WINDOWS\System32\emptyregdb.dat [2010-08-19 15:18:01 | 000,394,752 | ---- | C] () -- D:\WINDOWS\System32\cygwinb19.dll [2010-08-19 15:17:58 | 000,023,552 | ---- | C] () -- D:\WINDOWS\System32\vcdrom.exe [2010-08-19 15:17:56 | 000,049,152 | ---- | C] () -- D:\WINDOWS\System32\latency.exe [2010-08-19 15:17:56 | 000,024,576 | ---- | C] () -- D:\WINDOWS\System32\MemTest.exe [2010-08-19 15:17:55 | 000,066,048 | ---- | C] () -- D:\WINDOWS\System32\IEClean.exe [2010-08-19 15:17:53 | 000,000,147 | ---- | C] () -- D:\WINDOWS\System32\cpuz.ini [2008-01-31 12:30:18 | 000,000,381 | ---- | C] () -- D:\WINDOWS\System32\oeminfo.ini [2004-08-03 22:56:48 | 000,001,788 | ---- | C] () -- D:\WINDOWS\System32\Dcache.bin [2004-08-02 12:20:40 | 000,004,569 | ---- | C] () -- D:\WINDOWS\System32\secupd.dat [2001-10-26 17:15:16 | 000,335,926 | ---- | C] () -- D:\WINDOWS\System32\perfh015.dat [2001-10-26 17:15:16 | 000,313,828 | ---- | C] () -- D:\WINDOWS\System32\perfi015.dat [2001-10-26 17:15:16 | 000,041,818 | ---- | C] () -- D:\WINDOWS\System32\perfc015.dat [2001-10-26 17:15:16 | 000,034,990 | ---- | C] () -- D:\WINDOWS\System32\perfd015.dat [2001-08-23 14:00:00 | 013,107,200 | ---- | C] () -- D:\WINDOWS\System32\oembios.bin [2001-08-23 14:00:00 | 000,004,463 | ---- | C] () -- D:\WINDOWS\System32\oembios.dat [2001-08-17 22:30:24 | 000,292,308 | ---- | C] () -- D:\WINDOWS\System32\perfh009.dat [2001-08-17 22:30:24 | 000,272,128 | ---- | C] () -- D:\WINDOWS\System32\perfi009.dat [2001-08-17 22:30:24 | 000,028,626 | ---- | C] () -- D:\WINDOWS\System32\perfd009.dat [2001-08-17 22:30:22 | 000,033,482 | ---- | C] () -- D:\WINDOWS\System32\perfc009.dat [2001-07-21 23:36:48 | 000,218,003 | ---- | C] () -- D:\WINDOWS\System32\dssec.dat [2001-07-21 23:36:04 | 000,673,088 | ---- | C] () -- D:\WINDOWS\System32\mlang.dat [color=#E56717]========== LOP Check ==========[/color] [2012-02-01 16:24:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Default User\Dane aplikacji\uTorrent [2012-02-02 20:11:42 | 000,000,000 | ---D | M] -- D:\Documents and Settings\JA\Dane aplikacji\foobar2000 [2012-02-01 18:31:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\JA\Dane aplikacji\uTorrent [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< D:\Windows\*. /RP /s >[/color] [color=#E56717]========== Hard Links - Junction Points - Mount Points - Symbolic Links ==========[/color] [D:\Windows\$NtUninstallKB12347$] -> Error: Cannot create file handle -> Unknown point type < End of report >