OTL logfile created on: 2012-02-24 20:41:35 - Run 1 OTL by OldTimer - Version 3.2.33.2 Folder = C:\Documents and Settings\Przemek\Moje dokumenty\Pobieranie Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.2180) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,45 Gb Available Physical Memory | 81,55% Memory free 4,84 Gb Paging File | 4,15 Gb Available in Paging File | 85,70% Paging File free Paging file location(s): c:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 232,75 Gb Total Space | 13,09 Gb Free Space | 5,62% Space Free | Partition Type: NTFS Drive D: | 233,00 Gb Total Space | 9,56 Gb Free Space | 4,10% Space Free | Partition Type: NTFS Computer Name: MI-3C887F406E8E | User Name: Przemek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-02-24 20:35:44 | 000,583,680 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Przemek\Moje dokumenty\Pobieranie\OTL.exe PRC - [2012-02-16 16:14:20 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2012-01-24 17:24:26 | 002,416,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgtray.exe PRC - [2011-11-28 01:19:04 | 001,229,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgnsx.exe PRC - [2011-10-12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe PRC - [2011-10-10 06:23:34 | 000,973,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgemcx.exe PRC - [2011-09-08 20:53:26 | 000,743,264 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgrsx.exe PRC - [2011-08-15 06:21:40 | 000,337,760 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgcsrvx.exe PRC - [2011-08-02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe PRC - [2011-05-25 21:43:55 | 000,126,976 | ---- | M] () -- C:\WINDOWS\system32\UAService7.exe PRC - [2010-06-11 18:14:22 | 000,312,152 | ---- | M] (IObit) -- C:\Program Files\IObit\IObit Security 360\is360srv.exe PRC - [2009-01-17 15:48:08 | 005,853,672 | ---- | M] (o2.pl Sp. z o.o.) -- C:\Program Files\Tlen.pl\tlen.exe PRC - [2007-10-29 16:43:44 | 000,662,016 | ---- | M] (IObit) -- C:\Program Files\IObit\Advanced WindowsCare V2\MemCleaner.exe PRC - [2004-08-04 01:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-02-21 12:50:43 | 008,527,008 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll MOD - [2012-02-16 16:14:20 | 001,911,768 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2011-05-25 21:43:55 | 000,126,976 | ---- | M] () -- C:\WINDOWS\system32\UAService7.exe MOD - [2009-08-12 23:41:06 | 001,108,512 | ---- | M] () -- C:\Program Files\NVIDIA Corporation\nView\nvwimg.dll MOD - [2009-08-12 23:41:00 | 001,579,552 | ---- | M] () -- C:\Program Files\NVIDIA Corporation\nView\nView.dll MOD - [2009-01-17 15:47:38 | 000,033,792 | ---- | M] () -- C:\Program Files\Tlen.pl\languages\polish.dll MOD - [2009-01-06 12:55:46 | 000,061,464 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\TlenSMS.tpl MOD - [2008-12-23 15:11:32 | 000,195,096 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\Video.tpl MOD - [2008-12-22 14:32:06 | 000,093,720 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\Voice.tpl MOD - [2008-12-16 14:51:44 | 000,151,552 | ---- | M] () -- C:\Program Files\Tlen.pl\libgadu.dll MOD - [2008-07-22 08:49:48 | 000,075,800 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\FileTM.tpl MOD - [2008-07-22 08:49:40 | 000,106,520 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\File.tpl MOD - [2008-06-19 13:20:08 | 000,017,408 | ---- | M] () -- C:\Program Files\Tlen.pl\hook.dll MOD - [2008-06-19 13:15:54 | 000,030,720 | ---- | M] () -- C:\Program Files\Tlen.pl\libutil2.dll MOD - [2008-06-19 13:15:46 | 000,139,264 | ---- | M] () -- C:\Program Files\Tlen.pl\libexpat2.dll MOD - [2008-05-16 14:01:00 | 000,466,944 | ---- | M] () -- C:\WINDOWS\system32\nvshell.dll MOD - [2008-01-15 15:57:06 | 000,349,720 | ---- | M] () -- C:\Program Files\Tlen.pl\plugins\Tlenofon.tpl MOD - [2007-10-05 14:00:58 | 000,181,248 | ---- | M] () -- C:\Program Files\Tlen.pl\libutil.dll MOD - [2005-11-18 10:33:58 | 000,054,784 | ---- | M] () -- C:\Program Files\Tlen.pl\libs\libexpat.dll MOD - [2003-01-30 05:04:00 | 000,618,496 | ---- | M] () -- C:\Program Files\Tlen.pl\stlpmt45.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- -- (smwdm) SRV - File not found [Auto | Stopped] -- -- (sigfilt) SRV - File not found [Auto | Stopped] -- -- (msav) SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - File not found [Auto | Stopped] -- -- (DumaNT) SRV - [2011-10-12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe -- (AVGIDSAgent) SRV - [2011-08-02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe -- (avgwd) SRV - [2011-05-25 21:43:55 | 000,126,976 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\UAService7.exe -- (UserAccess7) SecuROM User Access Service (V7) SRV - [2010-06-11 18:14:22 | 000,312,152 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files\IObit\IObit Security 360\is360srv.exe -- (IS360service) SRV - [2007-12-14 11:46:28 | 000,047,624 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\GIGABYTE\GEST\GSvr.exe -- (GEST Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-12-03 12:50:26 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2011-10-07 06:23:48 | 000,230,608 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86) DRV - [2011-10-04 06:21:42 | 000,016,720 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim) DRV - [2011-09-13 06:30:10 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86) DRV - [2011-08-08 06:08:58 | 000,040,016 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86) DRV - [2011-07-11 01:14:38 | 000,295,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix) DRV - [2011-07-11 01:14:28 | 000,024,272 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter) DRV - [2011-07-11 01:14:28 | 000,023,120 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH) DRV - [2011-07-11 01:14:26 | 000,134,608 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver) DRV - [2010-11-26 18:02:54 | 000,014,776 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys -- (SmartDefragDriver) DRV - [2010-09-29 18:49:52 | 000,436,792 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2009-12-30 10:20:54 | 000,027,064 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\revoflt.sys -- (Revoflt) DRV - [2009-02-10 16:23:02 | 000,082,320 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive) DRV - [2009-01-31 18:30:09 | 000,278,984 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2009-01-31 18:30:08 | 000,025,416 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2008-08-08 15:31:18 | 000,043,192 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hid8101.sys -- (hid8101) DRV - [2008-08-08 15:31:18 | 000,040,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hid8103.sys -- (hid8103) DRV - [2008-08-08 15:31:16 | 000,041,272 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hid7906.sys -- (hid7906) DRV - [2007-10-11 11:10:52 | 000,030,008 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ET5Drv.sys -- (ET5Drv) DRV - [2007-09-29 06:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2007-09-19 14:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-09-19 10:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2006-12-14 09:44:06 | 000,085,120 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2006-11-10 14:08:50 | 000,024,064 | ---- | M] () [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\ATITool.sys -- (ATITool) DRV - [2006-09-24 14:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- C:\WINDOWS\system32\speedfan.sys -- (speedfan) DRV - [2006-07-13 08:56:47 | 000,059,776 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfsync04.sys -- (sfsync04) StarForce Protection Synchronization Driver (version 4.x) DRV - [2006-07-05 13:46:06 | 000,063,352 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfdrv01a.sys -- (sfdrv01a) StarForce Protection Environment Driver (version 1.x.a) DRV - [2006-06-14 15:56:56 | 000,013,680 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x) DRV - [2004-04-30 09:33:00 | 000,005,248 | ---- | M] ( ) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\a347scsi.sys -- (a347scsi) DRV - [2003-12-11 11:35:00 | 000,002,208 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\RivaTuner\RivaTunerEx.sys -- (RivaTunerEx) DRV - [1996-04-03 20:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\giveio.sys -- (giveio) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1482476501-1757981266-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-1482476501-1757981266-839522115-1003\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - SOFTWARE\Classes\CLSID\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\InprocServer32 File not found IE - HKU\S-1-5-21-1482476501-1757981266-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Winamp Search" FF - prefs.js..browser.search.defaulturl: "http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&invocationType=tb50ffwinampie7&query=" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - prefs.js..extensions.enabledItems: {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}:1.1.1 FF - prefs.js..keyword.URL: "http://results.myway.com/GGmain.jhtml?id=YI&ptb=0C821106-5FDA-4E00-A078-AD4DA2108350&psa=&ind=2010070716&ptnrS=YI&si=&st=kwd&n=&searchfor=" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\ [2012-02-23 22:54:24 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-02-23 20:41:58 | 000,000,000 | ---D | M] [2010-05-17 17:11:03 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Extensions [2012-01-25 16:09:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\2h7b6ae8.default\extensions [2010-05-24 18:40:04 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\2h7b6ae8.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2011-05-11 21:40:13 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\2h7b6ae8.default\extensions\engine@conduit.com [2012-02-23 20:41:58 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions () (No name found) -- C:\DOCUMENTS AND SETTINGS\PRZEMEK\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2H7B6AE8.DEFAULT\EXTENSIONS\{46551EC9-40F0-4E47-8E18-8E5CF550CFB8}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\PRZEMEK\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2H7B6AE8.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI [2009-10-06 03:25:35 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2012-02-16 16:14:21 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-02-16 12:12:03 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-02-16 12:12:03 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-02-16 12:12:03 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-02-16 12:12:03 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-02-16 12:12:03 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-02-16 12:12:03 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2001-10-26 18:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - Reg Error: Value error. File not found O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - Reg Error: Value error. File not found O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - Reg Error: Value error. File not found O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe () O4 - HKLM..\Run: [SmartRAM] C:\Program Files\IObit\Advanced WindowsCare V2\MemCleaner.exe (IObit) O4 - HKU\S-1-5-21-1482476501-1757981266-839522115-1003..\Run: [Komunikator] C:\Program Files\Tlen.pl\tlen.exe (o2.pl Sp. z o.o.) O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation) O4 - HKU\.DEFAULT..\RunOnce: [nlpo_01] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation) O4 - HKU\.DEFAULT..\RunOnce: [nlpo_03] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation) O4 - HKU\.DEFAULT..\RunOnce: [nlpo_04] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation) O4 - HKU\S-1-5-18..\RunOnce: [nlpo_01] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation) O4 - HKU\S-1-5-18..\RunOnce: [nlpo_03] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation) O4 - HKU\S-1-5-18..\RunOnce: [nlpo_04] C:\WINDOWS\System32\cmd.exe (Microsoft Corporation) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1482476501-1757981266-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-1482476501-1757981266-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0 O7 - HKU\S-1-5-21-1482476501-1757981266-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - %SystemRoot%\System32\mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - %SystemRoot%\System32\mswsock.dll File not found O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 193.59.121.202 195.187.244.8 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1856A35D-C474-47B0-9005-0242649E2855}: DhcpNameServer = 193.59.121.202 195.187.244.8 O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKU\S-1-5-21-1482476501-1757981266-839522115-1003 Winlogon: Shell - (C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\b000e8aa\X) - C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\b000e8aa\X () O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - File not found O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-12-05 01:30:26 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2012\avgrsx.exe /sync /restart) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-02-24 17:44:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\NeoSmart_Technologies [2012-02-24 17:40:15 | 000,000,000 | ---D | C] -- C:\NST [2012-02-24 17:36:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\NeoSmart Technologies [2012-02-24 17:36:22 | 000,000,000 | ---D | C] -- C:\Program Files\NeoSmart Technologies [2012-02-24 12:01:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot_bak [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\java [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076 [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052 [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054 [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042 [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041 [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037 [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031 [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028 [2012-02-24 01:16:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025 [2012-02-24 00:53:19 | 000,000,000 | -H-D | C] -- C:\$AVG [2012-02-24 00:52:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [2012-02-24 00:49:13 | 001,055,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\danim.dll [2012-02-24 00:49:13 | 000,667,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll [2012-02-24 00:49:13 | 000,532,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstime.dll [2012-02-24 00:49:13 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtmled.dll [2012-02-24 00:49:13 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cdfview.dll [2012-02-24 00:49:13 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msrating.dll [2012-02-24 00:49:13 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\extmgr.dll [2012-02-24 00:49:13 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pngfilt.dll [2012-02-24 00:49:13 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedw.exe [2012-02-24 00:49:13 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsproxy.dll [2012-02-24 00:49:12 | 001,497,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shdocvw.dll [2012-02-24 00:49:12 | 001,022,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\browseui.dll [2012-02-24 00:49:12 | 000,616,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll [2012-02-24 00:49:12 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shlwapi.dll [2012-02-24 00:49:12 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxtmsft.dll [2012-02-24 00:49:12 | 000,251,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iepeers.dll [2012-02-24 00:49:12 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxtrans.dll [2012-02-24 00:49:12 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inseng.dll [2012-02-24 00:49:11 | 003,079,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll [2012-02-24 00:47:41 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate [2012-02-24 00:47:38 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online [2012-02-24 00:46:01 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications [2012-02-24 00:26:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2012-02-24 00:26:15 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll [2012-02-24 00:26:14 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll [2012-02-23 22:54:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\AVG 2012 [2012-02-23 22:53:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\AVG [2012-02-23 22:53:16 | 000,000,000 | ---D | C] -- C:\Program Files\AVG [2012-02-23 21:06:06 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2012-02-23 21:06:06 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2012-02-23 21:06:06 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2012-02-23 21:06:06 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2012-02-23 21:05:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT [2012-02-23 21:05:53 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Przemek\PrintHood [2012-02-23 21:05:53 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Przemek\NetHood [2012-02-23 20:41:56 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2012-02-23 18:16:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe [2012-02-23 18:10:45 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\b000e8aa [2012-02-19 18:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Gadu-Gadu 10 [2012-02-11 04:29:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Silverlight [2012-02-11 04:29:04 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight [9 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-02-24 20:28:45 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-02-24 20:28:41 | 000,000,182 | -HS- | M] () -- C:\boot.ini [2012-02-24 20:27:37 | 000,244,982 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml [2012-02-24 20:27:34 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2012-02-24 20:23:28 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Przemek\ntuser.ini [2012-02-24 20:23:27 | 018,350,080 | -H-- | M] () -- C:\Documents and Settings\Przemek\NTUSER.DAT [2012-02-24 20:19:48 | 000,297,072 | RHS- | M] () -- C:\ntldr [2012-02-24 20:19:48 | 000,047,772 | RHS- | M] () -- C:\NTDETECT.COM [2012-02-24 19:49:07 | 009,193,062 | -H-- | M] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\IconCache.db [2012-02-24 18:30:57 | 000,532,758 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-02-24 18:30:57 | 000,473,106 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-02-24 18:30:57 | 000,094,188 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-02-24 18:30:57 | 000,076,200 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-02-24 18:30:55 | 001,192,660 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2012-02-24 17:36:23 | 000,000,882 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\EasyBCD 2.1.2.lnk [2012-02-24 17:34:00 | 001,528,448 | ---- | M] () -- C:\Documents and Settings\Przemek\Pulpit\EasyBCD 2.1.2.exe [2012-02-24 17:14:25 | 000,000,392 | ---- | M] () -- C:\WINDOWS\tasks\AWC Update.job [2012-02-24 13:42:42 | 000,001,905 | ---- | M] () -- C:\WINDOWS\diagwrn.xml [2012-02-24 13:42:42 | 000,001,905 | ---- | M] () -- C:\WINDOWS\diagerr.xml [2012-02-24 12:05:32 | 089,952,282 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm [2012-02-24 00:54:54 | 000,002,262 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-02-24 00:52:10 | 000,098,256 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-02-24 00:50:16 | 000,000,288 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf [2012-02-24 00:49:41 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx [2012-02-24 00:48:54 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2012-02-24 00:48:54 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2012-02-24 00:48:41 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI [2012-02-24 00:47:57 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2012-02-24 00:47:57 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2012-02-24 00:47:34 | 000,000,799 | ---- | M] () -- C:\WINDOWS\win.ini [2012-02-24 00:46:08 | 000,023,016 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat [2012-02-24 00:26:35 | 000,000,231 | ---- | M] () -- C:\WINDOWS\system.ini [2012-02-23 22:54:20 | 000,007,063 | ---- | M] () -- C:\WINDOWS\setupapi.old [2012-02-23 22:25:28 | 000,000,000 | -HS- | M] () -- C:\WINDOWS\System32\dds_log_trash.cmd [2012-02-23 22:24:46 | 000,295,749 | ---- | M] () -- C:\WINDOWS\System32\shimg.dll [2012-02-23 22:23:11 | 000,000,016 | ---- | M] () -- C:\WINDOWS\System32\crt.dat [2012-02-23 21:03:41 | 000,013,104 | ---- | M] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2012-02-23 20:41:58 | 000,000,734 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2012-02-21 12:50:43 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-02-20 22:02:54 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012-02-20 22:02:49 | 000,115,712 | ---- | M] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-02-19 18:09:25 | 000,000,770 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk [9 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-02-24 17:36:23 | 000,000,882 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\EasyBCD 2.1.2.lnk [2012-02-24 17:33:47 | 001,528,448 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\EasyBCD 2.1.2.exe [2012-02-24 12:05:32 | 089,952,282 | ---- | C] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm [2012-02-24 00:47:57 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2012-02-24 00:47:51 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2012-02-24 00:47:40 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Windows Movie Maker.lnk [2012-02-24 00:45:44 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp [2012-02-24 00:45:44 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp [2012-02-24 00:45:44 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp [2012-02-24 00:45:44 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp [2012-02-24 00:45:44 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp [2012-02-24 00:45:44 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp [2012-02-24 00:45:44 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp [2012-02-24 00:25:42 | 001,086,058 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NTPRINT.CAT [2012-02-24 00:25:42 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT [2012-02-24 00:25:42 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT [2012-02-24 00:25:42 | 000,141,702 | ---- | C] () -- C:\WINDOWS\System32\dllcache\netfx.cat [2012-02-24 00:25:42 | 000,102,826 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tabletpc.cat [2012-02-24 00:25:42 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT [2012-02-24 00:25:42 | 000,031,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mediactr.cat [2012-02-24 00:25:42 | 000,030,983 | ---- | C] () -- C:\WINDOWS\System32\dllcache\FP4.CAT [2012-02-24 00:25:42 | 000,014,043 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IMS.CAT [2012-02-24 00:25:42 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT [2012-02-24 00:25:42 | 000,009,581 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT [2012-02-24 00:25:42 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT [2012-02-24 00:25:42 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT [2012-02-24 00:25:42 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat [2012-02-24 00:25:42 | 000,007,245 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT [2012-02-24 00:25:41 | 001,896,400 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5.CAT [2012-02-24 00:25:41 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT [2012-02-24 00:25:41 | 000,620,500 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT [2012-02-23 22:54:14 | 000,007,063 | ---- | C] () -- C:\WINDOWS\setupapi.old [2012-02-23 21:06:06 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2012-02-23 21:06:06 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2012-02-23 21:06:06 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2012-02-23 21:06:06 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2012-02-23 21:06:06 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2012-02-23 20:41:58 | 000,000,734 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2012-02-23 18:12:31 | 000,000,000 | -HS- | C] () -- C:\WINDOWS\System32\dds_log_trash.cmd [2012-02-23 18:10:53 | 000,000,016 | ---- | C] () -- C:\WINDOWS\System32\crt.dat [2012-02-23 18:10:50 | 000,295,749 | ---- | C] () -- C:\WINDOWS\System32\shimg.dll [2012-02-22 17:37:11 | 1459,978,240 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\m3-cbwoc.iso [2012-02-22 17:32:33 | 1459,978,240 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\s3-ts2.iso [2012-02-19 18:09:25 | 000,000,770 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk [2012-02-19 18:09:06 | 000,000,688 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Gadu-Gadu 10.lnk [2011-12-01 16:03:30 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2011-12-01 16:03:29 | 000,644,608 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2011-12-01 16:03:29 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2011-12-01 16:03:29 | 000,073,216 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2011-12-01 16:03:29 | 000,000,590 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2011-11-27 03:38:23 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2011-10-12 17:42:47 | 000,000,540 | ---- | C] () -- C:\WINDOWS\wininit.ini [2011-09-23 05:17:18 | 000,000,075 | ---- | C] () -- C:\WINDOWS\System32\nvUnsupRes.dat [2011-09-19 21:41:51 | 000,000,586 | ---- | C] () -- C:\WINDOWS\FICEDULA.INI [2011-09-07 20:34:15 | 000,019,968 | ---- | C] () -- C:\WINDOWS\System32\cpuinf32.dll [2011-05-25 21:43:55 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\UAService7.exe [2011-02-27 21:09:57 | 000,028,496 | ---- | C] () -- C:\WINDOWS\System32\SmartDefragBootTime.exe [2011-02-27 21:09:57 | 000,014,776 | ---- | C] () -- C:\WINDOWS\System32\drivers\SmartDefragDriver.sys [2011-01-19 22:20:31 | 000,000,331 | ---- | C] () -- C:\WINDOWS\doom3.ini [2010-12-05 03:25:17 | 000,064,200 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-10-31 04:01:29 | 000,005,248 | ---- | C] ( ) -- C:\WINDOWS\System32\drivers\a347scsi.sys [2010-10-23 15:59:50 | 000,009,065 | ---- | C] () -- C:\WINDOWS\mozver.dat [2010-08-18 23:16:28 | 009,193,062 | -H-- | C] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-05-18 16:37:21 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [color=#E56717]========== LOP Check ==========[/color] [2012-02-24 00:53:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG2012 [2011-09-15 17:43:20 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2010-08-02 11:59:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2011-02-27 21:10:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\FreeApp [2010-05-15 12:00:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-07-02 20:51:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit [2011-08-19 22:34:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2009-04-01 19:34:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe [2012-02-24 12:05:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2011-08-30 15:13:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\RDRM [2011-09-25 04:46:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-05-17 17:03:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl [2009-09-19 15:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TrackMania [2010-08-14 19:32:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\AD ON Multimedia [2011-09-15 17:44:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\AVG2012 [2011-06-25 18:41:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Azureus [2009-07-24 20:58:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\BESTplayer [2009-07-21 17:16:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\BlackBean [2009-03-08 22:13:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\BonkEnc [2008-12-17 04:52:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Canneverbe_Limited [2010-07-26 05:07:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\CheeseSoft [2010-08-02 12:07:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\DAEMON Tools Lite [2010-12-12 04:02:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\dp3d [2009-06-10 23:06:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\EFSoftware [2009-02-22 16:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\fltk.org [2010-05-15 12:07:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Gadu-Gadu 10 [2011-06-24 19:18:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\GHISLER [2011-10-13 00:48:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\gtk-2.0 [2011-01-17 20:34:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Intermedia Software [2011-06-13 15:18:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\IObit [2011-11-29 13:55:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\ipla [2009-07-06 11:55:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Notepad++ [2009-09-14 10:35:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\PCToolsFirewallPlus [2009-09-14 10:34:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\PCToolsSpamMonitorPlus [2009-04-21 21:38:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Pmcc [2011-08-12 21:33:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Sega [2009-01-10 22:41:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Tank Combat [2011-05-24 18:28:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Thinstall [2010-05-14 17:32:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Tlen.pl [2011-04-30 11:57:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\Touchstone [2012-02-24 16:12:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\uTorrent [2011-08-24 12:11:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Przemek\Dane aplikacji\wargaming.net [2012-02-24 17:14:25 | 000,000,392 | ---- | M] () -- C:\WINDOWS\Tasks\AWC Update.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 48 bytes -> C:\Documents and Settings\All Users\DRM:مايكروسوفت @Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:0B4227B4 < End of report >