OTL logfile created on: 2012-02-15 22:51:38 - Run 2 OTL by OldTimer - Version 3.2.31.0 Folder = D:\Download\INSTALKI\OTL Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,75 Gb Total Physical Memory | 1,04 Gb Available Physical Memory | 59,37% Memory free 4,04 Gb Paging File | 3,40 Gb Available in Paging File | 84,10% Paging File free Paging file location(s): C:\pagefile.sys 2500 2500 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 21,90 Gb Free Space | 44,86% Space Free | Partition Type: NTFS Drive D: | 416,92 Gb Total Space | 288,08 Gb Free Space | 69,10% Space Free | Partition Type: NTFS Drive E: | 607,34 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: WTK | User Name: dupa | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-02-15 22:36:36 | 000,584,192 | ---- | M] (OldTimer Tools) -- D:\Download\INSTALKI\OTL\OTL.exe PRC - [2012-02-13 20:58:10 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2011-12-21 01:41:43 | 006,676,808 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe PRC - [2011-12-19 19:58:58 | 001,960,584 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe PRC - [2011-12-15 15:00:35 | 000,080,336 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe PRC - [2011-12-15 15:00:23 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2011-12-15 15:00:12 | 000,258,512 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2011-12-15 15:00:12 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2010-04-14 14:56:01 | 000,598,696 | ---- | M] ( ) -- C:\WINDOWS\system32\lxebcoms.exe PRC - [2009-01-17 15:48:08 | 005,853,672 | ---- | M] (o2.pl Sp. z o.o.) -- C:\Program Files\Tlen.pl\tlen.exe PRC - [2008-04-14 21:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-02-13 20:58:10 | 001,911,768 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2011-12-15 15:00:24 | 000,398,288 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll MOD - [2009-11-04 08:14:19 | 000,157,696 | ---- | M] () -- C:\WINDOWS\system32\spool\prtprocs\w32x86\lxebdrpp.dll MOD - [2009-01-21 23:08:00 | 000,466,944 | ---- | M] () -- C:\WINDOWS\system32\nvshell.dll MOD - [2009-01-17 15:47:38 | 000,033,792 | ---- | M] () -- C:\Program Files\Tlen.pl\languages\polish.dll MOD - [2008-12-16 14:51:44 | 000,151,552 | ---- | M] () -- C:\Program Files\Tlen.pl\libgadu.dll MOD - [2008-06-19 13:15:54 | 000,030,720 | ---- | M] () -- C:\Program Files\Tlen.pl\libutil2.dll MOD - [2008-06-19 13:15:46 | 000,139,264 | ---- | M] () -- C:\Program Files\Tlen.pl\libexpat2.dll MOD - [2008-03-29 15:42:20 | 000,159,744 | ---- | M] () -- C:\Program Files\SubEdit-Player\codec\MatroskaSplitter\mmfinfo.dll MOD - [2008-03-29 15:41:52 | 000,023,552 | ---- | M] () -- C:\Program Files\SubEdit-Player\codec\MatroskaSplitter\mkunicode.dll MOD - [2007-10-05 14:00:58 | 000,181,248 | ---- | M] () -- C:\Program Files\Tlen.pl\libutil.dll MOD - [2005-10-07 14:05:32 | 000,125,440 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll MOD - [2003-01-30 05:04:00 | 000,618,496 | ---- | M] () -- C:\Program Files\Tlen.pl\stlpmt45.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - [2011-12-19 19:58:58 | 001,960,584 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2011-12-15 15:00:23 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2011-12-15 15:00:12 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2011-09-23 18:37:42 | 000,641,832 | ---- | M] (Nero AG) [Disabled | Stopped] -- C:\Program Files\Nero\Update\NASvc.exe -- (NAUpdate) SRV - [2011-05-04 13:14:38 | 000,081,408 | ---- | M] () [On_Demand | Stopped] -- c:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service) SRV - [2010-04-14 14:56:01 | 000,598,696 | ---- | M] ( ) [Auto | Running] -- C:\windows\System32\lxebcoms.exe -- (lxeb_device) SRV - [2010-04-14 14:55:54 | 000,193,192 | ---- | M] () [Auto | Stopped] -- C:\windows\System32\spool\DRIVERS\W32X86\3\\lxebserv.exe -- (lxebCATSCustConnectService) SRV - [2009-05-11 21:27:00 | 002,810,286 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\windows\System32\GameMon.des -- (npggsvc) SRV - [2004-09-29 11:14:36 | 000,069,632 | ---- | M] (HP) [Disabled | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2012-02-15 17:30:46 | 000,137,416 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2012-02-09 14:00:17 | 000,473,656 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2012-01-17 22:00:48 | 000,494,968 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard) DRV - [2011-12-19 19:59:22 | 000,097,760 | ---- | M] (COMODO) [Kernel | Boot | Running] -- C:\windows\System32\DRIVERS\inspect.sys -- (Inspect) DRV - [2011-12-19 19:59:21 | 000,031,704 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cmdhlp.sys -- (cmdHlp) DRV - [2011-12-15 15:00:35 | 000,074,640 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2011-12-15 15:00:35 | 000,036,000 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr) DRV - [2011-09-21 10:25:34 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cpuz135_x32.sys -- (cpuz135) DRV - [2010-06-22 17:01:52 | 000,021,248 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\htcnprot.sys -- (htcnprot) DRV - [2010-06-17 14:14:27 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2009-06-10 15:49:32 | 000,024,576 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ANDROIDUSB.sys -- (HTCAND32) DRV - [2009-05-18 10:42:12 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2009-05-06 08:39:42 | 000,271,360 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2009-05-06 08:39:42 | 000,018,048 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2009-02-16 09:25:00 | 001,057,024 | R--- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\viahduaa.sys -- (VIAHdAudAddService) DRV - [2008-08-18 17:54:24 | 000,145,952 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\windows\system32\DRIVERS\nvgts.sys -- (nvgts) DRV - [2008-03-25 10:48:08 | 000,022,016 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus) DRV - [2008-03-25 10:48:06 | 000,054,400 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD) DRV - [2008-02-14 13:12:00 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\monfilt.sys -- (monfilt) DRV - [2007-04-16 20:46:00 | 000,033,792 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdPPM.sys -- (AmdPPM) DRV - [2001-08-17 19:12:40 | 000,019,017 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8029.sys -- (rtl8029) Sterownik NT karty Realtek RTL8029(AS) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 36 8E 1F 7B 3A C8 C9 01 [binary data] IE - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.openintab: true FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "www.pajacyk.pl" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: smarterwiki@wikiatic.com:4.7.3 FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.10 FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.10 FF - prefs.js..extensions.enabledItems: elemhidehelper@adblockplus.org:1.1.2 FF - prefs.js..extensions.enabledItems: browserprotect@browserprotect.com:1.1.3 FF - prefs.js..extensions.enabledItems: {dc572301-7619-498c-a57d-39143191b318}:0.3.8.7 FF - prefs.js..extensions.enabledItems: {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}:20111107 FF - prefs.js..extensions.enabledItems: player@vividas.com:4.0.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}:6.0.26 FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.9.7 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29 FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=mcafee&p=" FF - prefs.js..network.proxy.backup.ftp: "127.0.0.1" FF - prefs.js..network.proxy.backup.ftp_port: 9666 FF - prefs.js..network.proxy.backup.gopher: "127.0.0.1" FF - prefs.js..network.proxy.backup.gopher_port: 9666 FF - prefs.js..network.proxy.backup.socks: "127.0.0.1" FF - prefs.js..network.proxy.backup.socks_port: 9666 FF - prefs.js..network.proxy.backup.ssl: "127.0.0.1" FF - prefs.js..network.proxy.backup.ssl_port: 9666 FF - prefs.js..network.proxy.ftp: "127.0.0.1" FF - prefs.js..network.proxy.ftp_port: 9666 FF - prefs.js..network.proxy.gopher: "127.0.0.1" FF - prefs.js..network.proxy.gopher_port: 9666 FF - prefs.js..network.proxy.http: "127.0.0.1" FF - prefs.js..network.proxy.http_port: 9666 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "127.0.0.1" FF - prefs.js..network.proxy.socks_port: 9666 FF - prefs.js..network.proxy.ssl: "127.0.0.1" FF - prefs.js..network.proxy.ssl_port: 9666 FF - prefs.js..network.proxy.type: 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-02-13 20:58:11 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-01-19 20:38:34 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 9.0.1\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2011-10-29 18:30:53 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2012-01-19 20:30:14 | 000,000,000 | ---D | M] [2011-02-05 21:18:19 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\dupa\Dane aplikacji\Mozilla\Extensions [2010-09-09 17:06:30 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\dupa\Dane aplikacji\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2012-02-13 17:56:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\dupa\Dane aplikacji\Mozilla\Firefox\Profiles\ft2t9857.default\extensions [2011-11-18 15:12:47 | 000,000,000 | ---D | M] (WOT) -- C:\Documents and Settings\dupa\Dane aplikacji\Mozilla\Firefox\Profiles\ft2t9857.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2011-12-25 08:36:08 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\dupa\Dane aplikacji\Mozilla\Firefox\Profiles\ft2t9857.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2011-10-29 18:14:26 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\dupa\Dane aplikacji\Mozilla\Firefox\Profiles\ft2t9857.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389} [2012-02-13 17:35:55 | 000,001,411 | ---- | M] () -- C:\Documents and Settings\dupa\Dane aplikacji\Mozilla\Firefox\Profiles\ft2t9857.default\searchplugins\torrent-metasearch.xml [2011-02-22 15:31:55 | 000,004,140 | ---- | M] () -- C:\Documents and Settings\dupa\Dane aplikacji\Mozilla\Firefox\Profiles\ft2t9857.default\searchplugins\youtube.xml [2012-02-05 11:41:10 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions () (No name found) -- C:\DOCUMENTS AND SETTINGS\DUPA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\FT2T9857.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\DUPA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\FT2T9857.DEFAULT\EXTENSIONS\{DC572301-7619-498C-A57D-39143191B318}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\DUPA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\FT2T9857.DEFAULT\EXTENSIONS\SMARTERWIKI@WIKIATIC.COM.XPI [2011-03-05 08:38:01 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2012-02-13 20:58:10 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2011-11-10 05:54:13 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2010-07-21 11:26:44 | 000,197,224 | ---- | M] ( ) -- C:\Program Files\mozilla firefox\plugins\npVividasPlayer.dll [2012-01-02 09:21:12 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-01-02 09:21:12 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-09-09 15:48:25 | 000,002,034 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\McSiteAdvisor.xml [2012-01-02 09:21:11 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-01-02 09:21:11 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-01-02 09:21:11 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-01-02 09:21:11 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2001-10-26 16:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (no name) - AutorunsDisabled - No CLSID value found. O3 - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\..\Toolbar\ShellBrowser: (no name) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - No CLSID value found. O3 - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\..\Toolbar\WebBrowser: (no name) - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - No CLSID value found. O3 - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [NvCplDaemon] C:\windows\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKU\S-1-5-21-1935655697-1972579041-682003330-1003..\Run: [Komunikator] C:\Program Files\Tlen.pl\tlen.exe (o2.pl Sp. z o.o.) O4 - HKU\S-1-5-19..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\restrictions present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\restrictions present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\restrictions present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\restrictions present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\Software\Policies\Microsoft\Internet Explorer\restrictions present O7 - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1240944770374 (WUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.172.224.160 89.228.7.228 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F6A77B78-B1D1-4F2F-8018-7ABD142BD085}: DhcpNameServer = 217.172.224.160 89.228.7.228 O20 - AppInit_DLLs: (C:\windows\system32\guard32.dll) -C:\WINDOWS\system32\guard32.dll (COMODO) O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:AutorunsDisabled () - O24 - Desktop WallPaper: C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-04-29 01:28:31 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2001-10-26 16:12:38 | 000,000,112 | R--- | M] () - E:\autorun.inf -- [ CDFS ] O33 - MountPoints2\{00f31c42-3464-11de-b1fc-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{00f31c42-3464-11de-b1fc-806d6172696f}\Shell\AutoRun\command - "" = E:\setup.exe -- [2004-08-04 00:44:18 | 002,584,576 | R--- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKU\S-1-5-21-1935655697-1972579041-682003330-1003\...exe [@ = exefile] -- Reg Error: Key error. File not found [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-02-15 21:58:48 | 000,000,000 | RH-D | C] -- C:\MSOCache [2012-02-15 21:13:55 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\dupa\Recent [2012-02-15 20:30:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dupa\Pulpit\out [2012-02-09 14:55:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Bioware [2012-02-09 14:32:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dupa\Dane aplikacji\Avira [2012-02-09 14:05:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Avira [2012-02-09 14:05:38 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\windows\System32\drivers\ssmdrv.sys [2012-02-09 14:05:32 | 000,036,000 | ---- | C] (Avira GmbH) -- C:\windows\System32\drivers\avkmgr.sys [2012-02-09 14:05:31 | 000,137,416 | ---- | C] (Avira GmbH) -- C:\windows\System32\drivers\avipbb.sys [2012-02-09 14:05:31 | 000,074,640 | ---- | C] (Avira GmbH) -- C:\windows\System32\drivers\avgntflt.sys [2012-02-09 14:05:28 | 000,000,000 | ---D | C] -- C:\Program Files\Avira [2012-02-09 14:05:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira [2012-02-09 14:00:08 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite [2012-02-04 12:14:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Office Genuine Advantage [2012-02-03 21:59:21 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER [2012-02-03 21:58:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2012-01-27 11:22:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dupa\Moje dokumenty\Stronghold Crusader [2012-01-27 11:09:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Firefly Studios [2012-01-26 14:52:45 | 000,021,992 | ---- | C] (CPUID) -- C:\windows\System32\drivers\cpuz135_x32.sys [2012-01-26 14:52:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\CPUID [2012-01-26 14:52:44 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID [2012-01-24 20:51:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\My Games [2012-01-24 20:46:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Games [2012-01-24 20:45:46 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games [2012-01-21 12:57:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\dupa\Dane aplikacji\DAEMON Tools Lite [2012-01-21 12:56:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2012-01-21 11:36:58 | 000,442,368 | ---- | C] ( ) -- C:\windows\System32\lxebcoin.dll [2012-01-21 11:36:55 | 000,983,121 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\lxk_gf.dll [2012-01-21 11:36:45 | 000,372,736 | ---- | C] (Lexmark International, Inc.) -- C:\windows\System32\LXEBwupd.dll [2012-01-21 11:36:45 | 000,213,672 | ---- | C] (Lexmark International, Inc.) -- C:\windows\System32\LXEBwupd.exe [2012-01-21 11:36:02 | 000,000,000 | ---D | C] -- C:\Program Files\Lexmark [2012-01-21 11:35:56 | 000,000,000 | ---D | C] -- C:\Program Files\Lexmark Toolbar [2012-01-21 11:35:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Lexmark [2012-01-21 11:35:31 | 001,048,576 | ---- | C] ( ) -- C:\windows\System32\lxebserv.dll [2012-01-21 11:35:31 | 000,847,872 | ---- | C] ( ) -- C:\windows\System32\lxebusb1.dll [2012-01-21 11:35:31 | 000,643,072 | ---- | C] ( ) -- C:\windows\System32\lxebpmui.dll [2012-01-21 11:35:31 | 000,577,536 | ---- | C] ( ) -- C:\windows\System32\lxeblmpm.dll [2012-01-21 11:35:31 | 000,364,544 | ---- | C] ( ) -- C:\windows\System32\lxebinpa.dll [2012-01-21 11:35:31 | 000,356,352 | ---- | C] ( ) -- C:\windows\System32\LXEBhcp.dll [2012-01-21 11:35:31 | 000,344,064 | ---- | C] ( ) -- C:\windows\System32\lxebiesc.dll [2012-01-21 11:35:31 | 000,324,264 | ---- | C] ( ) -- C:\windows\System32\lxebih.exe [2012-01-21 11:35:30 | 000,802,816 | ---- | C] ( ) -- C:\windows\System32\lxebcomc.dll [2012-01-21 11:35:30 | 000,688,128 | ---- | C] ( ) -- C:\windows\System32\lxebhbn3.dll [2012-01-21 11:35:30 | 000,598,696 | ---- | C] ( ) -- C:\windows\System32\lxebcoms.exe [2012-01-21 11:35:30 | 000,373,416 | ---- | C] ( ) -- C:\windows\System32\lxebcfg.exe [2012-01-21 11:35:30 | 000,372,736 | ---- | C] ( ) -- C:\windows\System32\lxebcomm.dll [2012-01-21 11:35:30 | 000,086,183 | ---- | C] (Lexmark International) -- C:\windows\System32\LXEBcfg.dll [2012-01-21 11:35:19 | 000,000,000 | ---D | C] -- C:\Program Files\Lexmark Pro200-S500 Series [2012-01-21 11:32:34 | 000,000,000 | ---D | C] -- C:\Lexmark [2012-01-19 23:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\checkdisk [2012-01-19 20:30:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\QuickTime [2012-01-19 20:28:10 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update [2012-01-19 20:08:47 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\windows\System32\javaws.exe [2012-01-19 20:08:47 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\windows\System32\javaw.exe [2012-01-19 20:08:47 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\windows\System32\java.exe [2012-01-19 19:28:03 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2011-10-24 10:56:58 | 000,216,064 | ---- | C] ( ) -- C:\windows\System32\lagarith.dll [2009-04-28 21:11:06 | 001,774,080 | ---- | C] (Gabest) -- C:\Program Files\mplayerc.exe [3 C:\Documents and Settings\All Users\*.tmp files -> C:\Documents and Settings\All Users\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-02-15 22:25:40 | 000,002,206 | ---- | M] () -- C:\windows\System32\wpa.dbl [2012-02-15 22:22:17 | 000,000,491 | ---- | M] () -- C:\windows\win.ini [2012-02-15 22:05:01 | 000,001,032 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job [2012-02-15 21:47:30 | 000,001,028 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job [2012-02-15 21:47:25 | 000,000,104 | ---- | M] () -- C:\windows\System32\nvapps.xml [2012-02-15 21:47:14 | 000,000,006 | -H-- | M] () -- C:\windows\tasks\SA.DAT [2012-02-15 21:47:11 | 000,002,048 | --S- | M] () -- C:\windows\bootstat.dat [2012-02-15 21:43:36 | 006,815,744 | -H-- | M] () -- C:\Documents and Settings\dupa\NTUSER.DAT [2012-02-15 21:30:36 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\dupa\ntuser.ini [2012-02-15 21:01:24 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-02-15 20:27:09 | 006,922,810 | -H-- | M] () -- C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\IconCache.db [2012-02-15 19:46:44 | 000,290,888 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT [2012-02-15 17:30:46 | 000,137,416 | ---- | M] (Avira GmbH) -- C:\windows\System32\drivers\avipbb.sys [2012-02-15 08:28:17 | 001,080,248 | ---- | M] () -- C:\windows\System32\PerfStringBackup.INI [2012-02-15 08:28:17 | 000,503,788 | ---- | M] () -- C:\windows\System32\perfh015.dat [2012-02-15 08:28:17 | 000,444,510 | ---- | M] () -- C:\windows\System32\perfh009.dat [2012-02-15 08:28:17 | 000,090,356 | ---- | M] () -- C:\windows\System32\perfc015.dat [2012-02-15 08:28:17 | 000,072,386 | ---- | M] () -- C:\windows\System32\perfc009.dat [2012-02-09 14:55:07 | 000,000,568 | ---- | M] () -- C:\Documents and Settings\dupa\Pulpit\Baldur's Gate.lnk [2012-02-09 14:00:17 | 000,473,656 | ---- | M] (Duplex Secure Ltd.) -- C:\windows\System32\drivers\sptd.sys [2012-01-30 23:54:05 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\CCleaner.lnk [2012-01-27 11:19:21 | 000,000,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Twierdza Krzyżowiec Extreme.lnk [2012-01-27 11:19:21 | 000,000,573 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Twierdza Krzyżowiec.lnk [2012-01-26 14:52:45 | 000,000,717 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\CPUID CPU-Z.lnk [2012-01-21 14:50:42 | 004,818,312 | ---- | M] () -- C:\Documents and Settings\dupa\Moje dokumenty\AutoRuns.arn [2012-01-21 11:57:59 | 000,210,305 | ---- | M] () -- C:\windows\System32\LexFiles.ulf [2012-01-21 11:57:11 | 000,000,814 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Uruchom program Strona główna drukarki Lexmark.LNK [2012-01-21 09:15:06 | 000,000,827 | ---- | M] () -- C:\windows\system.ini [2012-01-21 08:54:34 | 000,067,072 | ---- | M] () -- C:\Documents and Settings\dupa\Pulpit\Zapisywanie informacji potrzebnych do odzyskania WSTĘP.asd [2012-01-19 22:17:02 | 000,073,792 | ---- | M] () -- C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2012-01-19 20:28:16 | 000,000,284 | ---- | M] () -- C:\windows\tasks\AppleSoftwareUpdate.job [2012-01-17 22:00:48 | 000,494,968 | ---- | M] (COMODO) -- C:\windows\System32\drivers\cmdGuard.sys [3 C:\Documents and Settings\All Users\*.tmp files -> C:\Documents and Settings\All Users\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-02-15 07:31:21 | 000,003,072 | ---- | C] () -- C:\windows\System32\iacenc.dll [2012-02-15 07:31:21 | 000,003,072 | ---- | C] () -- C:\windows\System32\dllcache\iacenc.dll [2012-02-09 14:55:07 | 000,000,568 | ---- | C] () -- C:\Documents and Settings\dupa\Pulpit\Baldur's Gate.lnk [2012-01-27 11:19:21 | 000,000,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Twierdza Krzyżowiec Extreme.lnk [2012-01-27 11:19:21 | 000,000,573 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Twierdza Krzyżowiec.lnk [2012-01-26 14:52:45 | 000,000,717 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\CPUID CPU-Z.lnk [2012-01-21 11:36:59 | 000,040,960 | ---- | C] () -- C:\windows\System32\lxebvs.dll [2012-01-21 11:36:55 | 000,086,016 | ---- | C] () -- C:\windows\System32\lxebgcfg.dll [2012-01-21 11:36:55 | 000,070,133 | ---- | C] () -- C:\windows\System32\lxebprpr.chm [2012-01-21 11:36:54 | 000,294,912 | ---- | C] () -- C:\windows\System32\lxebcui.dll [2012-01-21 11:36:54 | 000,110,592 | ---- | C] () -- C:\windows\System32\lxebcuir.dll [2012-01-21 11:36:54 | 000,008,694 | ---- | C] () -- C:\windows\System32\lxebcommuilogo_rtl.bmp [2012-01-21 11:36:54 | 000,008,694 | ---- | C] () -- C:\windows\System32\lxebcommuilogo.bmp [2012-01-21 11:36:03 | 000,000,814 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Uruchom program Strona główna drukarki Lexmark.LNK [2012-01-21 11:35:31 | 000,331,776 | ---- | C] () -- C:\windows\System32\LXEBinst.dll [2012-01-21 11:35:31 | 000,323,584 | ---- | C] () -- C:\windows\System32\lxebins.dll [2012-01-21 11:35:31 | 000,262,144 | ---- | C] () -- C:\windows\System32\lxebinsb.dll [2012-01-21 11:35:31 | 000,210,305 | ---- | C] () -- C:\windows\System32\LexFiles.ulf [2012-01-21 11:35:31 | 000,110,592 | ---- | C] () -- C:\windows\System32\lxebinsr.dll [2012-01-21 11:35:31 | 000,057,344 | ---- | C] () -- C:\windows\System32\lxebjswr.dll [2012-01-21 11:35:30 | 000,253,952 | ---- | C] () -- C:\windows\System32\lxebcu.dll [2012-01-21 11:35:30 | 000,208,896 | ---- | C] () -- C:\windows\System32\lxebgrd.dll [2012-01-21 11:35:30 | 000,090,112 | ---- | C] () -- C:\windows\System32\lxebcub.dll [2012-01-21 11:35:30 | 000,036,864 | ---- | C] () -- C:\windows\System32\lxebcur.dll [2012-01-21 11:35:30 | 000,002,110 | ---- | C] () -- C:\windows\System32\lxeb.loc [2012-01-21 08:54:33 | 000,067,072 | ---- | C] () -- C:\Documents and Settings\dupa\Pulpit\Zapisywanie informacji potrzebnych do odzyskania WSTĘP.asd [2012-01-19 20:28:16 | 000,000,284 | ---- | C] () -- C:\windows\tasks\AppleSoftwareUpdate.job [2012-01-19 20:28:12 | 000,001,830 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Apple Software Update.lnk [2011-12-25 08:46:09 | 006,922,810 | -H-- | C] () -- C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\IconCache.db [2011-11-07 17:49:29 | 000,679,936 | ---- | C] () -- C:\windows\System32\xvidcore.dll [2011-10-30 10:53:53 | 000,054,988 | -H-- | C] () -- C:\windows\System32\mlfcache.dat [2011-10-24 10:56:59 | 000,000,038 | ---- | C] () -- C:\windows\avisplitter.ini [2011-10-24 10:56:58 | 003,164,160 | ---- | C] () -- C:\windows\System32\x264vfw.dll [2011-10-24 10:56:58 | 000,243,200 | ---- | C] () -- C:\windows\System32\xvidvfw.dll [2011-10-24 10:56:57 | 000,074,752 | ---- | C] () -- C:\windows\System32\ff_vfw.dll [2011-10-24 10:56:57 | 000,000,714 | ---- | C] () -- C:\windows\System32\ff_vfw.dll.manifest [2011-09-01 10:48:24 | 000,000,000 | ---- | C] () -- C:\windows\DbgOut.INI [2011-07-20 11:30:33 | 000,425,136 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2011-04-18 17:16:39 | 000,002,675 | ---- | C] () -- C:\windows\VPlayer.INI [2011-04-18 10:51:03 | 000,175,616 | ---- | C] () -- C:\windows\System32\unrar.dll [2011-02-06 23:34:55 | 000,230,576 | ---- | C] () -- C:\windows\System32\drivers\sfi.dat [2010-05-07 11:22:48 | 000,299,008 | ---- | C] () -- C:\windows\System32\LXEBsm.dll [2010-05-07 11:22:48 | 000,024,576 | ---- | C] () -- C:\windows\System32\LXEBsmr.dll [2010-04-13 20:36:06 | 001,724,416 | ---- | C] () -- C:\windows\System32\nvwdmcpl.dll [2010-04-13 20:36:06 | 001,657,376 | ---- | C] () -- C:\windows\System32\nwiz.exe [2010-04-13 20:36:06 | 001,101,824 | ---- | C] () -- C:\windows\System32\nvwimg.dll [2010-04-13 20:36:05 | 001,507,328 | ---- | C] () -- C:\windows\System32\nview.dll [2010-04-13 20:36:05 | 001,346,080 | ---- | C] () -- C:\windows\System32\nvdspsch.exe [2010-04-13 20:36:05 | 000,466,944 | ---- | C] () -- C:\windows\System32\nvshell.dll [2010-04-13 20:36:04 | 000,449,056 | ---- | C] () -- C:\windows\System32\nvappbar.exe [2010-04-13 20:36:03 | 000,436,768 | ---- | C] () -- C:\windows\System32\keystone.exe [2010-04-13 19:16:57 | 000,000,664 | ---- | C] () -- C:\windows\System32\d3d9caps.dat [2010-02-23 20:16:12 | 000,026,000 | ---- | C] () -- C:\windows\System32\PteVideo.dll [2009-11-21 23:09:16 | 000,110,592 | ---- | C] () -- C:\windows\System32\FsUsbExDevice.Dll [2009-11-21 23:09:16 | 000,036,608 | ---- | C] () -- C:\windows\System32\FsUsbExDisk.Sys [2009-11-21 23:09:07 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\dupa\Dane aplikacji\$_hpcst$.hpc [2009-05-08 21:09:47 | 000,102,738 | ---- | C] () -- C:\windows\hpoins05.dat [2009-05-06 08:39:42 | 000,271,360 | ---- | C] () -- C:\windows\System32\drivers\atksgt.sys [2009-05-06 08:39:42 | 000,018,048 | ---- | C] () -- C:\windows\System32\drivers\lirsgt.sys [2009-05-05 19:51:58 | 000,000,754 | ---- | C] () -- C:\windows\WORDPAD.INI [2009-04-29 03:19:36 | 001,080,248 | ---- | C] () -- C:\windows\System32\PerfStringBackup.INI [2009-04-29 03:19:35 | 000,004,293 | ---- | C] () -- C:\windows\ODBCINST.INI [2009-04-29 03:18:28 | 000,290,888 | ---- | C] () -- C:\windows\System32\FNTCACHE.DAT [2009-04-29 01:35:22 | 000,003,948 | R--- | C] () -- C:\windows\System32\drivers\nvphy.bin [2009-04-29 01:33:58 | 000,005,409 | ---- | C] () -- C:\windows\Ascd_tmp.ini [2009-04-29 01:33:55 | 000,010,288 | ---- | C] () -- C:\windows\System32\drivers\ASUSHWIO.SYS [2009-04-29 01:30:07 | 000,002,048 | --S- | C] () -- C:\windows\bootstat.dat [2009-04-29 01:28:31 | 000,000,000 | ---- | C] () -- C:\windows\control.ini [2009-04-29 01:27:47 | 000,000,488 | RH-- | C] () -- C:\windows\System32\logonui.exe.manifest [2009-04-29 01:27:45 | 000,000,749 | RH-- | C] () -- C:\windows\System32\cdplayer.exe.manifest [2009-04-29 01:25:52 | 000,021,856 | ---- | C] () -- C:\windows\System32\emptyregdb.dat [2009-04-29 01:25:43 | 000,000,037 | ---- | C] () -- C:\windows\vbaddin.ini [2009-04-29 01:25:43 | 000,000,036 | ---- | C] () -- C:\windows\vb.ini [2009-04-29 01:24:59 | 000,026,717 | ---- | C] () -- C:\windows\System32\tslabels.ini [2009-04-29 01:24:58 | 000,003,813 | ---- | C] () -- C:\windows\System32\msdtcprf.ini [2009-04-28 21:46:04 | 000,000,129 | ---- | C] () -- C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2009-04-28 21:32:06 | 000,090,112 | ---- | C] () -- C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-04-28 20:16:09 | 000,073,792 | ---- | C] () -- C:\Documents and Settings\dupa\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2009-04-28 19:51:49 | 000,000,000 | ---- | C] () -- C:\windows\nsreg.dat [2008-04-14 22:16:20 | 000,001,804 | ---- | C] () -- C:\windows\System32\Dcache.bin [2008-04-14 21:50:46 | 000,270,848 | ---- | C] () -- C:\windows\System32\sbe.dll [2008-04-14 21:50:38 | 000,014,336 | ---- | C] () -- C:\windows\System32\msdmo.dll [2008-04-14 21:50:32 | 000,186,880 | ---- | C] () -- C:\windows\System32\encdec.dll [2008-04-14 21:50:14 | 000,253,440 | ---- | C] () -- C:\windows\System32\compatUI.dll [2008-04-14 21:50:00 | 000,070,656 | ---- | C] () -- C:\windows\System32\amstream.dll [2008-04-13 21:51:34 | 000,733,696 | ---- | C] () -- C:\windows\System32\qedwipes.dll [2008-04-13 21:25:02 | 000,053,920 | ---- | C] () -- C:\windows\System32\dosx.exe [2008-04-13 21:22:36 | 000,003,346 | ---- | C] () -- C:\windows\System32\redir.exe [2008-04-13 21:20:56 | 000,042,537 | ---- | C] () -- C:\windows\System32\keyboard.sys [2008-04-13 21:19:58 | 000,033,936 | ---- | C] () -- C:\windows\System32\ntio.sys [2008-04-13 21:19:44 | 000,035,424 | ---- | C] () -- C:\windows\System32\ntio412.sys [2008-04-13 21:19:44 | 000,034,560 | ---- | C] () -- C:\windows\System32\ntio404.sys [2008-04-13 21:19:42 | 000,034,560 | ---- | C] () -- C:\windows\System32\ntio804.sys [2008-04-13 21:19:40 | 000,035,648 | ---- | C] () -- C:\windows\System32\ntio411.sys [2007-10-25 17:26:10 | 000,005,632 | ---- | C] () -- C:\windows\System32\drivers\StarOpen.sys [2007-04-02 22:04:28 | 000,053,478 | ---- | C] () -- C:\windows\System32\tcpmon.ini [2006-12-31 06:57:08 | 000,004,569 | ---- | C] () -- C:\windows\System32\secupd.dat [2006-11-02 17:10:16 | 000,080,912 | ---- | C] () -- C:\windows\System32\sherlock2.exe [2001-10-26 18:29:54 | 000,057,856 | ---- | C] () -- C:\windows\System32\dvdplay.exe [2001-10-26 18:29:42 | 000,157,696 | ---- | C] () -- C:\windows\System32\paqsp.dll [2001-10-26 18:29:40 | 000,010,240 | ---- | C] () -- C:\windows\System32\scriptpw.dll [2001-10-26 18:29:32 | 000,199,168 | ---- | C] () -- C:\windows\System32\ir32_32.dll [2001-10-26 18:28:34 | 000,094,282 | ---- | C] () -- C:\windows\System32\msencode.dll [2001-10-26 18:27:02 | 000,015,360 | ---- | C] () -- C:\windows\System32\tsd32.dll [2001-10-26 17:15:16 | 000,503,788 | ---- | C] () -- C:\windows\System32\perfh015.dat [2001-10-26 17:15:16 | 000,313,828 | ---- | C] () -- C:\windows\System32\perfi015.dat [2001-10-26 17:15:16 | 000,090,356 | ---- | C] () -- C:\windows\System32\perfc015.dat [2001-10-26 17:15:16 | 000,034,990 | ---- | C] () -- C:\windows\System32\perfd015.dat [2001-10-26 17:15:10 | 000,001,148 | ---- | C] () -- C:\windows\System32\vwipxspx.exe [2001-10-26 17:15:08 | 000,011,859 | ---- | C] () -- C:\windows\System32\setver.exe [2001-10-26 17:15:08 | 000,003,260 | ---- | C] () -- C:\windows\System32\nw16.exe [2001-10-26 17:15:04 | 000,027,898 | ---- | C] () -- C:\windows\System32\ntdos.sys [2001-10-26 17:14:58 | 000,007,116 | ---- | C] () -- C:\windows\System32\nlsfunc.exe [2001-10-26 17:14:56 | 000,039,434 | ---- | C] () -- C:\windows\System32\mem.exe [2001-10-26 17:14:54 | 000,014,913 | ---- | C] () -- C:\windows\System32\kb16.com [2001-10-26 17:14:54 | 000,001,168 | ---- | C] () -- C:\windows\System32\loadfix.com [2001-10-26 17:14:52 | 000,004,976 | ---- | C] () -- C:\windows\System32\himem.sys [2001-10-26 17:14:50 | 000,019,806 | ---- | C] () -- C:\windows\System32\graphics.com [2001-10-26 17:14:48 | 000,008,520 | ---- | C] () -- C:\windows\System32\exe2bin.exe [2001-10-26 17:14:46 | 000,012,866 | ---- | C] () -- C:\windows\System32\edlin.exe [2001-10-26 17:14:42 | 000,020,986 | ---- | C] () -- C:\windows\System32\debug.exe [2001-10-26 17:14:38 | 000,051,823 | ---- | C] () -- C:\windows\System32\command.com [2001-10-26 17:14:34 | 000,012,594 | ---- | C] () -- C:\windows\System32\append.exe [2001-10-26 17:14:32 | 000,009,043 | ---- | C] () -- C:\windows\System32\ansi.sys [2001-10-26 17:12:52 | 000,000,359 | ---- | C] () -- C:\windows\System32\prodspec.ini [2001-10-26 16:45:26 | 000,016,024 | ---- | C] () -- C:\windows\System32\rsvp.ini [2001-10-26 16:45:26 | 000,006,074 | ---- | C] () -- C:\windows\System32\rasctrs.ini [2001-10-26 16:45:24 | 000,013,819 | ---- | C] () -- C:\windows\System32\pschdprf.ini [2001-10-26 16:45:10 | 000,070,622 | ---- | C] () -- C:\windows\System32\edit.com [2001-10-26 16:42:08 | 000,020,629 | ---- | C] () -- C:\windows\System32\mqperf.ini [2001-10-26 16:42:08 | 000,002,992 | ---- | C] () -- C:\windows\System32\perfci.ini [2001-10-26 16:42:08 | 000,002,890 | ---- | C] () -- C:\windows\System32\perfwci.ini [2001-10-26 16:42:08 | 000,001,295 | ---- | C] () -- C:\windows\System32\perffilt.ini [2001-08-23 14:00:00 | 013,107,200 | ---- | C] () -- C:\windows\System32\oembios.bin [2001-08-23 14:00:00 | 000,004,463 | ---- | C] () -- C:\windows\System32\oembios.dat [2001-08-17 22:35:10 | 000,000,817 | ---- | C] () -- C:\windows\System32\mscdexnt.exe [2001-08-17 22:32:34 | 000,000,882 | ---- | C] () -- C:\windows\System32\share.exe [2001-08-17 22:32:34 | 000,000,882 | ---- | C] () -- C:\windows\System32\fastopen.exe [2001-08-17 22:31:56 | 000,042,809 | ---- | C] () -- C:\windows\System32\key01.sys [2001-08-17 22:31:56 | 000,027,097 | ---- | C] () -- C:\windows\System32\country.sys [2001-08-17 22:31:50 | 000,029,274 | ---- | C] () -- C:\windows\System32\ntdos412.sys [2001-08-17 22:31:46 | 000,029,370 | ---- | C] () -- C:\windows\System32\ntdos411.sys [2001-08-17 22:31:46 | 000,029,146 | ---- | C] () -- C:\windows\System32\ntdos404.sys [2001-08-17 22:31:44 | 000,029,146 | ---- | C] () -- C:\windows\System32\ntdos804.sys [2001-08-17 22:30:24 | 000,444,510 | ---- | C] () -- C:\windows\System32\perfh009.dat [2001-08-17 22:30:24 | 000,272,128 | ---- | C] () -- C:\windows\System32\perfi009.dat [2001-08-17 22:30:24 | 000,028,626 | ---- | C] () -- C:\windows\System32\perfd009.dat [2001-08-17 22:30:22 | 000,072,386 | ---- | C] () -- C:\windows\System32\perfc009.dat [2001-08-17 22:15:38 | 000,046,258 | ---- | C] () -- C:\windows\System32\mib.bin [2001-08-17 22:13:24 | 000,002,656 | ---- | C] () -- C:\windows\System32\netware.drv [2001-08-17 20:55:06 | 001,015,477 | ---- | C] () -- C:\windows\System32\esentprf.ini [2001-07-22 03:25:18 | 000,001,405 | ---- | C] () -- C:\windows\msdfmap.ini [2001-07-21 23:36:48 | 000,218,003 | ---- | C] () -- C:\windows\System32\dssec.dat [2001-07-21 23:36:06 | 000,355,112 | ---- | C] () -- C:\windows\System32\msjetoledb40.dll [2001-07-21 23:36:04 | 000,673,088 | ---- | C] () -- C:\windows\System32\mlang.dat [2001-07-21 23:24:16 | 000,000,741 | ---- | C] () -- C:\windows\System32\noise.dat [2001-07-21 23:16:20 | 000,000,491 | ---- | C] () -- C:\windows\win.ini [2001-07-21 23:15:52 | 000,000,827 | ---- | C] () -- C:\windows\system.ini [2001-07-21 23:15:50 | 000,013,312 | ---- | C] () -- C:\windows\System32\win87em.dll [color=#E56717]========== LOP Check ==========[/color] [2010-12-22 22:23:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ashampoo [2012-01-21 12:57:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2009-04-28 20:22:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ESET [2010-06-18 20:08:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Lexmark Pro200-S500 Series [2010-10-27 21:31:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NCH Swift Sound [2009-05-19 07:34:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2009-11-21 23:11:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-02-22 11:24:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Photodex [2011-08-28 00:53:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Soulseek [2011-02-06 10:39:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\STOPzilla! [2009-04-29 20:42:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl [2011-02-02 20:33:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2010-12-22 22:28:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Ashampoo [2009-04-29 14:56:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\COWON [2012-02-15 21:14:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\DAEMON Tools Lite [2011-07-20 09:50:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Deckadance16 [2010-04-30 11:03:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1 [2011-12-18 21:40:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\EurekaLog [2011-09-01 10:48:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\HTC [2011-09-01 10:50:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1 [2010-02-26 12:36:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\maxup [2011-10-30 15:43:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\NapiProjekt [2010-02-22 11:25:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Netscape [2010-03-29 21:11:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Nowe Gadu-Gadu [2011-07-20 09:35:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\OpenCandy [2009-05-19 07:34:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\OpenFM [2009-05-06 20:33:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\OpenOffice.org [2009-11-21 23:11:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\PC Suite [2010-02-23 20:56:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Photodex [2011-11-24 17:00:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\PhotoScape [2011-01-10 11:22:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\PriceGong [2009-11-21 23:22:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Samsung [2011-07-20 09:50:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\SongManager [2011-07-20 10:19:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\SynthMaker [2011-09-01 10:45:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Teleca [2009-04-28 20:56:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Thunderbird [2012-02-15 17:45:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\Tlen.pl [2012-02-15 21:14:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\dupa\Dane aplikacji\uTorrent [color=#E56717]========== Purity Check ==========[/color] < End of report >