Scan result of Farbar Recovery Scan Tool Version: 15-03-2012 Ran by SYSTEM at 20-03-2012 14:42:10 Running from G:\ Windows 7 Professional (X64) OS Language: Polish The current controlset is ControlSet001 ========================== Registry (Whitelisted) ============= HKLM\...\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [11777128 2011-02-14] (Realtek Semiconductor) HKLM\...\Run: [IntelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray [1933584 2011-01-05] (Intel(R) Corporation) HKLM\...\Run: [fspuip] %ProgramFiles%\FSP\fspuip.exe [3650048 2010-06-07] (Sentelic Corporation) HKLM-x32\...\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2011-01-12] (Intel Corporation) HKLM-x32\...\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [113288 2010-04-27] (Renesas Electronics Corporation) HKLM-x32\...\Run: [MGSysCtrl] C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe [2482176 2010-11-05] (Micro-Star International Co., Ltd.) HKLM-x32\...\Run: [NVIDIAOCAP] C:\Program Files (x86)\MSI\NVIDIA Overclock Tool\NVIDIAOCAP.exe [83456 2010-10-20] (MSI) HKLM-x32\...\Run: [msi LED Manager] C:\Program Files (x86)\msi\msi LED Manager\SLM.exe [2795008 2010-07-29] (msi) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [254696 2011-06-09] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [843712 2012-01-03] (Adobe Systems Incorporated) HKLM-x32\...\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices [91520 2010-03-13] (Microsoft Corporation) HKLM-x32\...\Run: [LockIndicator] C:\Program Files (x86)\MSI\LockIndicator\LockIndicator.exe [1699016 2011-06-24] (Micro-Star International Co., Ltd.) HKLM-x32\...\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray [460872 2012-01-13] (Malwarebytes Corporation) HKU\Mentor\...\Run: [Google Update] "C:\Users\Mentor\AppData\Local\Google\Update\GoogleUpdate.exe" /c [136176 2012-02-21] (Google Inc.) HKU\Mentor\...\Run: [DAEMON Tools Lite] "E:\Programy)\DAEMON Tools Lite\DTLite.exe" -autorun [x] HKU\Mentor\...\Policies\system: [disableregistrytools] 0 Tcpip\Parameters: [DhcpNameServer] 62.179.1.62 192.168.0.1 SubSystems: [Windows] ==> ZeroAccess ==================== Services (Whitelisted) ====== 2 IAStorDataMgrSvc; "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe" [13336 2011-01-12] (Intel Corporation) 2 Lavasoft Ad-Aware Service; "C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe" [2152152 2012-03-19] (Lavasoft Limited) 2 MBAMService; "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe" [652360 2012-01-13] (Malwarebytes Corporation) 2 Micro Star SCM; C:\Program Files (x86)\System Control Manager\MSIService.exe [160768 2009-07-09] (Micro-Star International Co., Ltd.) 3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-01-05] () 2 nvUpdatusService; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2348352 2012-03-01] (NVIDIA Corporation) 2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2012-02-17] () 2 usb_rndisx; C:\Windows\System32\changer.dll [5120 2009-07-14] (Iomega) 2 WinDefend; %ProgramFiles(x86)%\Windows Defender\mpsvc.dll [x] ========================== Drivers (Whitelisted) ============= 2 atksgt; C:\Windows\System32\Drivers\atksgt.sys [314016 2012-01-11] () 3 BridgeMP; C:\Windows\System32\DRIVERS\bridge.sys [95232 2009-07-14] (Microsoft Corporation) 3 btmhsf; C:\Windows\System32\Drivers\btmhsf.sys [327168 2011-11-15] (Intel Corporation) 1 dtsoftbus01; C:\Windows\System32\Drivers\dtsoftbus01.sys [283200 2012-03-03] (DT Soft Ltd) 3 fspad_wlh64; C:\Windows\System32\Drivers\fspad_wlh64.sys [52224 2010-06-07] (Sentelic Corporation) 3 iBtFltCoex; C:\Windows\System32\Drivers\iBtFltCoex.sys [60416 2011-12-09] (Intel Corporation) 3 Lavasoft Kernexplorer; \??\C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys [17152 2012-03-19] () 0 Lbd; C:\Windows\System32\Drivers\Lbd.sys [69376 2011-12-23] (Lavasoft AB) 2 lirsgt; C:\Windows\System32\Drivers\lirsgt.sys [43680 2012-01-11] () 3 MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [23152 2011-12-10] (Malwarebytes Corporation) 3 MBfilt; C:\Windows\System32\drivers\MBfilt64.sys [32344 2009-11-18] (Creative Technology Ltd.) 3 MEMSWEEP2; \??\C:\Windows\system32\1566.tmp [6144 2011-05-12] (Sophos Plc) 3 NETwNs64; C:\Windows\System32\Drivers\NETwNs64.sys [8507392 2011-01-04] (Intel Corporation) 3 RSUSBVSTOR; C:\Windows\System32\Drivers\RtsUVStor.sys [307304 2010-11-30] (Realtek Semiconductor Corp.) 3 RTCore64; \??\C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14648 2010-05-27] () 3 ALSysIO; \??\C:\Users\Mentor\AppData\Local\Temp\ALSysIO64.sys [x] 1 SAVRKBootTasks; \??\C:\Windows\system32\SAVRKBootTasks.sys [x] ========================== NetSvcs (Whitelisted) =========== NETSVC: usb_rndisx NETSVC: nvcap NETSVC: se44mgmt NETSVC: dpfusmgr NETSVC: eamon NETSVC: arcltsrv NETSVC: st330service NETSVC: fah@c:+fah+fah-service+fah502-console.exe ============ One Month Created Files and Folders ============== 2012-03-20 14:35 - 2012-03-20 14:35 - 1385843 ____A C:\Users\Mentor\Desktop\FRST64.exe 2012-03-20 14:32 - 2012-03-20 14:39 - 0000842 ____A C:\Windows\setupact.log 2012-03-20 14:32 - 2012-03-20 14:32 - 0000000 ____A C:\Windows\setuperr.log 2012-03-19 23:43 - 2012-03-20 14:40 - 0018883 ____A C:\Windows\WindowsUpdate.log 2012-03-19 23:43 - 2012-03-19 23:51 - 0000000 ___RD C:\Users\Mentor\Desktop\Antywirusowe 2012-03-19 23:37 - 2012-03-19 23:37 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Malwarebytes 2012-03-19 23:37 - 2012-03-19 23:37 - 0000000 ____D C:\Users\All Users\Malwarebytes 2012-03-19 23:37 - 2012-03-19 23:37 - 0000000 ____D C:\ProgramData\Malwarebytes 2012-03-19 23:37 - 2012-03-19 23:37 - 0000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2012-03-19 23:37 - 2011-12-10 15:24 - 0023152 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys 2012-03-19 23:29 - 2012-03-19 23:43 - 0000000 ___SD C:\32788R22FWJFW 2012-03-19 23:27 - 2012-03-19 23:51 - 0000000 ____D C:\Windows\Minidump 2012-03-19 23:08 - 2012-03-19 23:08 - 0000000 ____D C:\_OTL 2012-03-19 23:06 - 2012-03-19 23:06 - 0002725 ____A C:\Users\Mentor\Documents\fix.reg 2012-03-19 22:58 - 2012-03-20 14:32 - 0002163 ____A C:\aaw7boot.log 2012-03-19 22:56 - 2012-03-19 22:22 - 0016432 ____A C:\Windows\System32\lsdelete.exe 2012-03-19 22:49 - 2011-05-12 14:05 - 0018816 ____N (Sophos Group) C:\Windows\SysWOW64\SAVRKBootTasks.sys 2012-03-19 22:25 - 2011-05-12 14:03 - 0006144 ____N (Sophos Plc) C:\Windows\System32\1566.tmp 2012-03-19 22:24 - 2011-05-12 14:03 - 0006144 ____N (Sophos Plc) C:\Windows\System32\12A7.tmp 2012-03-19 22:22 - 2012-03-19 22:22 - 0055384 ____A (Sunbelt Software) C:\Windows\System32\Drivers\SBREDrv.sys 2012-03-19 22:20 - 2012-03-19 22:20 - 0000000 ____D C:\Users\All Users\Lavasoft 2012-03-19 22:20 - 2012-03-19 22:20 - 0000000 ____D C:\ProgramData\Lavasoft 2012-03-19 22:20 - 2012-03-19 22:20 - 0000000 ____D C:\Program Files (x86)\Lavasoft 2012-03-19 22:20 - 2011-12-23 07:12 - 0069376 ____A (Lavasoft AB) C:\Windows\System32\Drivers\Lbd.sys 2012-03-19 22:15 - 2012-03-19 22:15 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\ArcaBit 2012-03-19 20:37 - 2012-03-19 22:17 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\ArcaVirMicroScan 2012-03-19 20:29 - 2012-03-19 20:29 - 0000000 ____D C:\Program Files\SkanerOnline 2012-03-19 20:27 - 2008-11-10 14:48 - 1071278 ____A C:\Users\Mentor\Desktop\IMG_0045.jpg 2012-03-19 16:38 - 2012-03-19 16:38 - 0041263 ____A C:\Users\Mentor\Desktop\zestaw1.pdf 2012-03-19 04:45 - 2012-03-19 04:45 - 0213075 ____A C:\Users\Mentor\Desktop\IMG_2141.jpg 2012-03-19 03:05 - 2012-03-19 03:10 - 0000000 ____D C:\Users\Mentor\Documents\Witcher 2 2012-03-19 03:05 - 2012-03-19 03:05 - 0000000 ____D C:\Users\Mentor\AppData\Local\The Witcher 2 2012-03-18 21:48 - 2012-03-18 21:48 - 0000000 __SHD C:\Windows\System32\%APPDATA% 2012-03-18 21:39 - 2012-03-20 14:32 - 0000000 __ASH C:\Windows\System32\dds_log_ad13.cmd 2012-03-18 21:38 - 2012-03-19 21:02 - 0000000 __SHD C:\Users\Mentor\AppData\Local\298a836a 2012-03-15 02:25 - 2011-11-19 16:20 - 5559152 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2012-03-15 02:25 - 2011-11-19 15:50 - 3968368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2012-03-15 02:25 - 2011-11-19 15:50 - 3913584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2012-03-14 15:24 - 2012-02-10 07:36 - 1544192 ____A (Microsoft Corporation) C:\Windows\System32\DWrite.dll 2012-03-14 15:24 - 2012-02-10 06:38 - 1077248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2012-03-14 15:24 - 2012-02-03 05:34 - 3145728 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys 2012-03-14 15:23 - 2012-02-17 07:38 - 1031680 ____A (Microsoft Corporation) C:\Windows\System32\rdpcore.dll 2012-03-14 15:23 - 2012-02-17 06:34 - 0826880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2012-03-14 15:23 - 2012-02-17 05:58 - 0210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys 2012-03-14 15:23 - 2012-02-17 05:57 - 0023552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tdtcp.sys 2012-03-14 15:23 - 2012-01-25 07:38 - 0149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll 2012-03-14 15:23 - 2012-01-25 07:38 - 0077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll 2012-03-14 15:23 - 2012-01-25 07:33 - 0009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe 2012-03-13 21:46 - 2012-03-01 01:02 - 8008000 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 5892928 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 2872640 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 2672448 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 25543488 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 25222976 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 2517312 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 2437440 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 19444544 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 17642816 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 17543488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 13626688 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2012-03-13 21:46 - 2012-03-01 01:02 - 0068928 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll 2012-03-13 21:46 - 2012-03-01 01:02 - 0061248 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2012-03-13 20:28 - 2012-03-13 20:28 - 2874959 ____A C:\Users\Mentor\Desktop\wyklad03.pdf 2012-03-13 20:28 - 2012-03-13 20:28 - 2732080 ____A C:\Users\Mentor\Desktop\wyklad01.pdf 2012-03-13 20:28 - 2012-03-13 20:28 - 2581022 ____A C:\Users\Mentor\Desktop\wyklad02.pdf 2012-03-13 15:53 - 2012-03-12 00:18 - 11605149 ____A C:\Users\Mentor\Desktop\a22.dm_1 2012-03-12 18:11 - 2012-03-12 18:11 - 0000000 ____D C:\Users\Mentor\Documents\Sniper - Ghost Warrior 2012-03-12 13:06 - 2012-03-12 13:06 - 0041263 ____A C:\Users\Mentor\Desktop\https___mbox.uj.edu.pdf 2012-03-12 03:07 - 2008-04-14 19:09 - 0331776 ____A (CyboPat) C:\Users\Mentor\Desktop\cod4player.exe 2012-03-12 01:04 - 2012-03-12 03:22 - 0000000 ____D C:\Users\Mentor\AppData\Local\ESN Sonar 2012-03-11 21:16 - 2012-03-11 21:16 - 2580212 ____A C:\Users\Mentor\Desktop\205202.jpg 2012-03-11 21:06 - 2012-03-19 03:28 - 0000000 ___RD C:\Users\Mentor\Desktop\gry 2012-03-11 21:04 - 2012-03-19 22:56 - 0000000 ____D C:\Users\Mentor\Desktop\Multimedia 2012-03-10 17:35 - 2012-03-10 17:35 - 0000000 ____D C:\Windows\pss 2012-03-07 16:34 - 2012-03-07 16:34 - 0862244 ____A C:\Users\Mentor\Desktop\int.pdf 2012-03-06 23:47 - 2012-03-07 00:06 - 0000000 ____D C:\Users\Mentor\Documents\OnLive App 2012-03-06 23:47 - 2012-03-06 23:47 - 0001849 ____A C:\Users\Public\Desktop\OnLive Launcher.lnk 2012-03-06 23:47 - 2012-03-06 23:47 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\OnLive App 2012-03-06 23:47 - 2012-03-06 23:47 - 0000000 ____D C:\Program Files (x86)\OnLive 2012-03-05 17:09 - 2012-03-12 22:48 - 0002409 ____A C:\Users\Mentor\Desktop\Google Chrome.lnk 2012-03-05 01:00 - 2012-03-05 01:00 - 1183199 ____A C:\Users\Mentor\Documents\2012-03-05_00-54-46_HDR.jpg 2012-03-04 20:57 - 2010-04-17 23:46 - 5064120 ____A C:\Users\Mentor\Desktop\IMG_2642.JPG 2012-03-03 01:19 - 2012-03-03 01:19 - 0283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys 2012-03-03 01:19 - 2012-03-03 01:19 - 0000787 ____A C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2012-03-01 18:03 - 2012-03-01 18:03 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Unity 2012-03-01 17:52 - 2012-03-01 17:52 - 0000000 ____D C:\Users\Mentor\AppData\Local\Unity 2012-02-29 20:21 - 2012-02-29 20:21 - 0042392 ____A C:\Windows\SysWOW64\xfcodec.dll 2012-02-29 20:21 - 2012-02-29 20:21 - 0028056 ____A C:\Windows\System32\xfcodec64.dll 2012-02-26 23:48 - 2012-03-19 13:57 - 0000000 ____D C:\users\UpdatusUser 2012-02-26 23:48 - 2012-02-26 23:48 - 0000020 ___SH C:\Users\UpdatusUser\ntuser.ini 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Ustawienia lokalne 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Szablony 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\PrintHood 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\NetHood 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Moje dokumenty 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Menu Start 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Documents\Moje wideo 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Documents\Moje obrazy 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Documents\Moja muzyka 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Dane aplikacji 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\AppData\Local\Temporary Internet Files 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\AppData\Local\Historia 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\AppData\Local\Dane aplikacji 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 ____D C:\Users\UpdatusUser\AppData\LocalLow 2012-02-26 23:48 - 2012-02-22 14:49 - 0000000 ____D C:\Users\UpdatusUser\AppData\Local\Microsoft Help 2012-02-26 23:48 - 2012-01-15 16:41 - 0000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Macromedia 2012-02-26 23:48 - 2009-07-14 19:09 - 0000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Media Center Programs 2012-02-26 23:47 - 2012-01-17 13:46 - 0031040 ____A (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll 2012-02-26 23:47 - 2012-01-17 13:45 - 0188224 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys 2012-02-23 17:42 - 2012-02-23 17:42 - 0000000 ____D C:\Users\Mentor\Documents\4A Games 2012-02-23 17:39 - 2012-02-23 17:39 - 0000000 ____D C:\Users\Mentor\AppData\Local\4A Games 2012-02-23 17:15 - 2012-02-23 17:18 - 0000710 ____A C:\Users\Public\Desktop\Steam.lnk 2012-02-22 14:49 - 2012-02-22 14:49 - 0000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2012-02-22 14:49 - 2012-02-22 14:49 - 0000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2012-02-21 22:42 - 2012-03-19 23:47 - 0001062 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2982079206-271959165-2575724121-1000UA.job 2012-02-21 22:42 - 2012-03-19 22:47 - 0001010 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2982079206-271959165-2575724121-1000Core.job 2012-02-21 22:42 - 2012-03-05 17:09 - 0000000 ____D C:\Users\Mentor\AppData\Local\Google 2012-02-21 19:51 - 2012-02-21 19:51 - 0000000 ____D C:\Users\Mentor\Documents\Rockstar Games 2012-02-21 19:35 - 2012-02-21 19:35 - 0000000 ____D C:\Users\Mentor\AppData\Local\Rockstar Games 2012-02-21 19:34 - 2012-02-21 19:34 - 0000000 __SHD C:\Users\All Users\SecuROM 2012-02-21 19:34 - 2012-02-21 19:34 - 0000000 __SHD C:\ProgramData\SecuROM 2012-02-21 19:34 - 2012-02-21 19:34 - 0000000 __RHD C:\Users\Mentor\AppData\Roaming\SecuROM 2012-02-21 19:30 - 2012-02-21 19:30 - 0000000 ____D C:\Windows\SysWOW64\xlive 2012-02-21 19:30 - 2012-02-21 19:30 - 0000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2012-02-21 19:12 - 2012-02-22 19:23 - 0031744 ____A C:\Users\Mentor\Desktop\CURRUCULUM VITAE.doc 2012-02-21 08:30 - 2012-02-21 08:30 - 0000000 ____D C:\Users\Mentor\Documents\BioWare ============ 3 Months Modified Files and Folders ============= 2012-03-20 14:42 - 2012-03-20 14:42 - 0000000 ____D C:\FRST 2012-03-20 14:40 - 2012-03-19 23:43 - 0018883 ____A C:\Windows\WindowsUpdate.log 2012-03-20 14:40 - 2012-01-15 14:55 - 3745362 ____A C:\Users\Mentor\Documents\SCMLogFile.txt 2012-03-20 14:40 - 2009-07-14 05:45 - 0015152 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2012-03-20 14:40 - 2009-07-14 05:45 - 0015152 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2012-03-20 14:39 - 2012-03-20 14:32 - 0000842 ____A C:\Windows\setupact.log 2012-03-20 14:37 - 2009-07-14 18:55 - 0697912 ____A C:\Windows\System32\perfh015.dat 2012-03-20 14:37 - 2009-07-14 18:55 - 0134990 ____A C:\Windows\System32\perfc015.dat 2012-03-20 14:37 - 2009-07-14 06:13 - 1549696 ____A C:\Windows\System32\PerfStringBackup.INI 2012-03-20 14:35 - 2012-03-20 14:35 - 1385843 ____A C:\Users\Mentor\Desktop\FRST64.exe 2012-03-20 14:32 - 2012-03-20 14:32 - 0000000 ____A C:\Windows\setuperr.log 2012-03-20 14:32 - 2012-03-19 22:58 - 0002163 ____A C:\aaw7boot.log 2012-03-20 14:32 - 2012-03-18 21:39 - 0000000 __ASH C:\Windows\System32\dds_log_ad13.cmd 2012-03-20 14:32 - 2012-01-11 23:24 - 2129707008 __ASH C:\hiberfil.sys 2012-03-20 14:32 - 2009-07-14 06:08 - 0000006 ___AH C:\Windows\Tasks\SA.DAT 2012-03-19 23:51 - 2012-03-19 23:43 - 0000000 ___RD C:\Users\Mentor\Desktop\Antywirusowe 2012-03-19 23:51 - 2012-03-19 23:27 - 0000000 ____D C:\Windows\Minidump 2012-03-19 23:51 - 2012-01-15 12:07 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\DAEMON Tools Lite 2012-03-19 23:51 - 2012-01-14 18:15 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\uTorrent 2012-03-19 23:51 - 2012-01-12 22:08 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Media Player Classic 2012-03-19 23:47 - 2012-02-21 22:42 - 0001062 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2982079206-271959165-2575724121-1000UA.job 2012-03-19 23:43 - 2012-03-19 23:29 - 0000000 ___SD C:\32788R22FWJFW 2012-03-19 23:37 - 2012-03-19 23:37 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Malwarebytes 2012-03-19 23:37 - 2012-03-19 23:37 - 0000000 ____D C:\Users\All Users\Malwarebytes 2012-03-19 23:37 - 2012-03-19 23:37 - 0000000 ____D C:\ProgramData\Malwarebytes 2012-03-19 23:37 - 2012-03-19 23:37 - 0000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2012-03-19 23:08 - 2012-03-19 23:08 - 0000000 ____D C:\_OTL 2012-03-19 23:06 - 2012-03-19 23:06 - 0002725 ____A C:\Users\Mentor\Documents\fix.reg 2012-03-19 22:56 - 2012-03-11 21:04 - 0000000 ____D C:\Users\Mentor\Desktop\Multimedia 2012-03-19 22:47 - 2012-02-21 22:42 - 0001010 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2982079206-271959165-2575724121-1000Core.job 2012-03-19 22:22 - 2012-03-19 22:56 - 0016432 ____A C:\Windows\System32\lsdelete.exe 2012-03-19 22:22 - 2012-03-19 22:22 - 0055384 ____A (Sunbelt Software) C:\Windows\System32\Drivers\SBREDrv.sys 2012-03-19 22:20 - 2012-03-19 22:20 - 0000000 ____D C:\Users\All Users\Lavasoft 2012-03-19 22:20 - 2012-03-19 22:20 - 0000000 ____D C:\ProgramData\Lavasoft 2012-03-19 22:20 - 2012-03-19 22:20 - 0000000 ____D C:\Program Files (x86)\Lavasoft 2012-03-19 22:17 - 2012-03-19 20:37 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\ArcaVirMicroScan 2012-03-19 22:15 - 2012-03-19 22:15 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\ArcaBit 2012-03-19 21:02 - 2012-03-18 21:38 - 0000000 __SHD C:\Users\Mentor\AppData\Local\298a836a 2012-03-19 20:29 - 2012-03-19 20:29 - 0000000 ____D C:\Program Files\SkanerOnline 2012-03-19 20:29 - 2009-07-14 06:32 - 0000000 ____D C:\Windows\Downloaded Program Files 2012-03-19 18:35 - 2012-01-11 20:20 - 0282864 ____A C:\Windows\SysWOW64\PnkBstrB.xtr 2012-03-19 18:35 - 2012-01-11 19:01 - 0282864 ____A C:\Windows\SysWOW64\PnkBstrB.exe 2012-03-19 18:35 - 2012-01-11 19:01 - 0280904 ____A C:\Windows\SysWOW64\PnkBstrB.ex0 2012-03-19 16:38 - 2012-03-19 16:38 - 0041263 ____A C:\Users\Mentor\Desktop\zestaw1.pdf 2012-03-19 13:57 - 2012-02-26 23:48 - 0000000 ____D C:\users\UpdatusUser 2012-03-19 04:45 - 2012-03-19 04:45 - 0213075 ____A C:\Users\Mentor\Desktop\IMG_2141.jpg 2012-03-19 03:28 - 2012-03-11 21:06 - 0000000 ___RD C:\Users\Mentor\Desktop\gry 2012-03-19 03:28 - 2012-01-11 16:56 - 0000000 ____D C:\Program Files (x86)\Mozilla Firefox 2012-03-19 03:10 - 2012-03-19 03:05 - 0000000 ____D C:\Users\Mentor\Documents\Witcher 2 2012-03-19 03:05 - 2012-03-19 03:05 - 0000000 ____D C:\Users\Mentor\AppData\Local\The Witcher 2 2012-03-19 02:54 - 2012-01-11 16:43 - 0000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2012-03-18 22:22 - 2012-01-16 20:22 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Xfire 2012-03-18 21:49 - 2012-01-11 21:32 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Skype 2012-03-18 21:48 - 2012-03-18 21:48 - 0000000 __SHD C:\Windows\System32\%APPDATA% 2012-03-18 08:11 - 2012-01-16 20:22 - 0000000 ____D C:\Users\All Users\Xfire 2012-03-18 08:11 - 2012-01-16 20:22 - 0000000 ____D C:\ProgramData\Xfire 2012-03-17 12:48 - 2012-01-11 16:56 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Mozilla 2012-03-15 10:11 - 2009-07-14 05:45 - 0415656 ____A C:\Windows\System32\FNTCACHE.DAT 2012-03-15 02:23 - 2012-01-21 05:04 - 0000000 ____D C:\Users\All Users\Microsoft Help 2012-03-15 02:23 - 2012-01-21 05:04 - 0000000 ____D C:\ProgramData\Microsoft Help 2012-03-15 02:23 - 2012-01-16 17:50 - 56297240 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2012-03-14 20:39 - 2012-01-12 00:12 - 0000000 ____D C:\Program Files (x86)\MSI Afterburner 2012-03-14 17:02 - 2012-01-11 20:19 - 0000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2012-03-13 21:47 - 2012-02-06 00:51 - 0000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2012-03-13 21:47 - 2012-01-11 17:20 - 0000000 ____D C:\NVIDIA 2012-03-13 21:47 - 2012-01-11 16:41 - 0000000 ____D C:\Users\All Users\NVIDIA 2012-03-13 21:47 - 2012-01-11 16:41 - 0000000 ____D C:\ProgramData\NVIDIA 2012-03-13 20:28 - 2012-03-13 20:28 - 2874959 ____A C:\Users\Mentor\Desktop\wyklad03.pdf 2012-03-13 20:28 - 2012-03-13 20:28 - 2732080 ____A C:\Users\Mentor\Desktop\wyklad01.pdf 2012-03-13 20:28 - 2012-03-13 20:28 - 2581022 ____A C:\Users\Mentor\Desktop\wyklad02.pdf 2012-03-12 22:48 - 2012-03-05 17:09 - 0002409 ____A C:\Users\Mentor\Desktop\Google Chrome.lnk 2012-03-12 18:11 - 2012-03-12 18:11 - 0000000 ____D C:\Users\Mentor\Documents\Sniper - Ghost Warrior 2012-03-12 13:06 - 2012-03-12 13:06 - 0041263 ____A C:\Users\Mentor\Desktop\https___mbox.uj.edu.pdf 2012-03-12 03:22 - 2012-03-12 01:04 - 0000000 ____D C:\Users\Mentor\AppData\Local\ESN Sonar 2012-03-12 01:09 - 2012-02-12 20:34 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\TS3Client 2012-03-12 00:18 - 2012-03-13 15:53 - 11605149 ____A C:\Users\Mentor\Desktop\a22.dm_1 2012-03-11 21:16 - 2012-03-11 21:16 - 2580212 ____A C:\Users\Mentor\Desktop\205202.jpg 2012-03-10 17:35 - 2012-03-10 17:35 - 0000000 ____D C:\Windows\pss 2012-03-07 16:34 - 2012-03-07 16:34 - 0862244 ____A C:\Users\Mentor\Desktop\int.pdf 2012-03-07 00:06 - 2012-03-06 23:47 - 0000000 ____D C:\Users\Mentor\Documents\OnLive App 2012-03-06 23:47 - 2012-03-06 23:47 - 0001849 ____A C:\Users\Public\Desktop\OnLive Launcher.lnk 2012-03-06 23:47 - 2012-03-06 23:47 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\OnLive App 2012-03-06 23:47 - 2012-03-06 23:47 - 0000000 ____D C:\Program Files (x86)\OnLive 2012-03-05 17:09 - 2012-02-21 22:42 - 0000000 ____D C:\Users\Mentor\AppData\Local\Google 2012-03-05 01:00 - 2012-03-05 01:00 - 1183199 ____A C:\Users\Mentor\Documents\2012-03-05_00-54-46_HDR.jpg 2012-03-03 14:45 - 2012-01-22 17:15 - 0000000 ____D C:\Users\Mentor\AppData\Local\ElevatedDiagnostics 2012-03-03 01:19 - 2012-03-03 01:19 - 0283200 ____A (DT Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys 2012-03-03 01:19 - 2012-03-03 01:19 - 0000787 ____A C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2012-03-02 05:55 - 2012-01-11 16:54 - 0414368 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2012-03-01 18:03 - 2012-03-01 18:03 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Unity 2012-03-01 17:52 - 2012-03-01 17:52 - 0000000 ____D C:\Users\Mentor\AppData\Local\Unity 2012-03-01 17:52 - 2012-01-11 16:31 - 0000000 ____D C:\Users\Mentor\AppData\LocalLow 2012-03-01 01:02 - 2012-03-13 21:46 - 8008000 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 5892928 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 2872640 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 2672448 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 25543488 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 25222976 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 2517312 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 2437440 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 19444544 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 17642816 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 17543488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 13626688 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2012-03-01 01:02 - 2012-03-13 21:46 - 0068928 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll 2012-03-01 01:02 - 2012-03-13 21:46 - 0061248 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2012-03-01 01:02 - 2012-01-11 17:21 - 1737536 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco64.dll 2012-03-01 01:02 - 2012-01-11 17:21 - 1466176 ____A (NVIDIA Corporation) C:\Windows\System32\nvgenco64.dll 2012-03-01 01:02 - 2012-01-11 16:40 - 9717568 ____A (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll 2012-03-01 01:02 - 2012-01-11 16:40 - 7713088 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2012-03-01 01:02 - 2012-01-11 16:40 - 15009600 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2012-03-01 01:02 - 2012-01-11 16:40 - 0011770 ____A C:\Windows\System32\nvinfo.pb 2012-03-01 01:02 - 2012-01-11 16:39 - 2660160 ____A (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll 2012-03-01 01:02 - 2012-01-11 16:39 - 2301248 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2012-02-29 22:00 - 2011-04-07 20:36 - 6074176 ____A (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll 2012-02-29 22:00 - 2011-04-07 20:35 - 3089728 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll 2012-02-29 21:59 - 2011-04-07 20:37 - 2561856 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvcr.dll 2012-02-29 21:59 - 2011-04-07 20:37 - 0889664 ____A (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe 2012-02-29 21:59 - 2011-04-07 20:37 - 0118080 ____A (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll 2012-02-29 21:59 - 2011-04-07 20:37 - 0063296 ____A (NVIDIA Corporation) C:\Windows\System32\nvshext.dll 2012-02-29 20:21 - 2012-02-29 20:21 - 0042392 ____A C:\Windows\SysWOW64\xfcodec.dll 2012-02-29 20:21 - 2012-02-29 20:21 - 0028056 ____A C:\Windows\System32\xfcodec64.dll 2012-02-27 20:09 - 2012-01-17 21:40 - 0000000 ____D C:\Users\Mentor\Documents\Studyja 2012-02-26 23:48 - 2012-02-26 23:48 - 0000020 ___SH C:\Users\UpdatusUser\ntuser.ini 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Ustawienia lokalne 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Szablony 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\PrintHood 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\NetHood 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Moje dokumenty 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Menu Start 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Documents\Moje wideo 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Documents\Moje obrazy 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Documents\Moja muzyka 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\Dane aplikacji 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\AppData\Local\Temporary Internet Files 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\AppData\Local\Historia 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 __SHD C:\Users\UpdatusUser\AppData\Local\Dane aplikacji 2012-02-26 23:48 - 2012-02-26 23:48 - 0000000 ____D C:\Users\UpdatusUser\AppData\LocalLow 2012-02-26 23:48 - 2012-01-11 16:39 - 0000000 ____D C:\Program Files\NVIDIA Corporation 2012-02-23 17:42 - 2012-02-23 17:42 - 0000000 ____D C:\Users\Mentor\Documents\4A Games 2012-02-23 17:39 - 2012-02-23 17:39 - 0000000 ____D C:\Users\Mentor\AppData\Local\4A Games 2012-02-23 17:18 - 2012-02-23 17:15 - 0000710 ____A C:\Users\Public\Desktop\Steam.lnk 2012-02-23 09:18 - 2012-01-11 17:10 - 0279656 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe 2012-02-23 08:30 - 2009-07-14 06:08 - 0032592 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2012-02-22 19:23 - 2012-02-21 19:12 - 0031744 ____A C:\Users\Mentor\Desktop\CURRUCULUM VITAE.doc 2012-02-22 14:50 - 2009-07-14 03:34 - 0000478 ____A C:\Windows\win.ini 2012-02-22 14:49 - 2012-02-26 23:48 - 0000000 ____D C:\Users\UpdatusUser\AppData\Local\Microsoft Help 2012-02-22 14:49 - 2012-02-22 14:49 - 0000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2012-02-22 14:49 - 2012-02-22 14:49 - 0000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2012-02-21 19:51 - 2012-02-21 19:51 - 0000000 ____D C:\Users\Mentor\Documents\Rockstar Games 2012-02-21 19:51 - 2009-07-14 04:20 - 0000000 ____D C:\Program Files\Common Files\Microsoft Shared 2012-02-21 19:35 - 2012-02-21 19:35 - 0000000 ____D C:\Users\Mentor\AppData\Local\Rockstar Games 2012-02-21 19:34 - 2012-02-21 19:34 - 0000000 __SHD C:\Users\All Users\SecuROM 2012-02-21 19:34 - 2012-02-21 19:34 - 0000000 __SHD C:\ProgramData\SecuROM 2012-02-21 19:34 - 2012-02-21 19:34 - 0000000 __RHD C:\Users\Mentor\AppData\Roaming\SecuROM 2012-02-21 19:30 - 2012-02-21 19:30 - 0000000 ____D C:\Windows\SysWOW64\xlive 2012-02-21 19:30 - 2012-02-21 19:30 - 0000000 ____D C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2012-02-21 08:30 - 2012-02-21 08:30 - 0000000 ____D C:\Users\Mentor\Documents\BioWare 2012-02-18 18:28 - 2012-02-17 18:23 - 0000000 ____D C:\Users\All Users\EA Logs 2012-02-18 18:28 - 2012-02-17 18:23 - 0000000 ____D C:\ProgramData\EA Logs 2012-02-17 18:25 - 2012-01-11 19:01 - 0076888 ____A C:\Windows\SysWOW64\PnkBstrA.exe 2012-02-17 07:38 - 2012-03-14 15:23 - 1031680 ____A (Microsoft Corporation) C:\Windows\System32\rdpcore.dll 2012-02-17 06:34 - 2012-03-14 15:23 - 0826880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2012-02-17 06:11 - 2012-01-11 16:32 - 0000174 ___SH C:\Users\Mentor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini 2012-02-17 05:58 - 2012-03-14 15:23 - 0210944 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys 2012-02-17 05:57 - 2012-03-14 15:23 - 0023552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tdtcp.sys 2012-02-12 21:55 - 2012-01-11 23:24 - 0000000 ____D C:\Windows\Panther 2012-02-12 21:54 - 2012-02-12 21:54 - 0000000 ____D C:\Program Files\CCleaner 2012-02-12 20:34 - 2012-02-12 20:34 - 0000706 ____A C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2012-02-12 20:30 - 2012-02-12 20:30 - 0031913 ____A C:\Users\Mentor\Documents\Bez_nazwy.wma 2012-02-10 13:29 - 2012-01-16 15:01 - 0235500 ____A C:\shared.log 2012-02-10 07:36 - 2012-03-14 15:24 - 1544192 ____A (Microsoft Corporation) C:\Windows\System32\DWrite.dll 2012-02-10 06:38 - 2012-03-14 15:24 - 1077248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2012-02-07 23:18 - 2012-02-07 23:06 - 0000000 ____D C:\Users\Mentor\AppData\Local\GRAW2 2012-02-07 23:06 - 2012-02-07 23:06 - 0000000 ____D C:\Users\All Users\GRAW2 2012-02-07 23:06 - 2012-02-07 23:06 - 0000000 ____D C:\ProgramData\GRAW2 2012-02-06 13:00 - 2009-07-14 04:20 - 0000000 __RHD C:\Users\Public\Libraries 2012-02-04 22:25 - 2012-02-04 22:25 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\vlc 2012-02-04 15:42 - 2012-01-18 19:20 - 0000000 ____D C:\Users\Mentor\AppData\Local\join.me 2012-02-03 05:34 - 2012-03-14 15:24 - 3145728 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys 2012-02-01 22:18 - 2012-02-01 22:18 - 0000000 ____D C:\Windows\Sun 2012-01-30 21:32 - 2012-01-15 16:41 - 0000992 ____A C:\Users\Mentor\Desktop\Core Temp.lnk 2012-01-29 21:05 - 2012-01-29 21:04 - 0000078 __RAH C:\Windows\ctfile.rfc 2012-01-29 21:02 - 2012-01-11 17:16 - 0000000 ____D C:\Program Files (x86)\MSI 2012-01-29 12:22 - 2012-01-29 12:22 - 0000162 ___AH C:\Users\Mentor\Desktop\~$I_-_final.doc 2012-01-27 17:13 - 2012-01-27 17:12 - 0000000 ____D C:\dx 2012-01-27 17:01 - 2012-01-14 15:36 - 0000000 ____D C:\Windows\SysWOW64\directx 2012-01-27 00:56 - 2012-01-27 00:56 - 0000000 ____D C:\Users\Mentor\Documents\Amnesia 2012-01-25 07:38 - 2012-03-14 15:23 - 0149504 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll 2012-01-25 07:38 - 2012-03-14 15:23 - 0077312 ____A (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll 2012-01-25 07:33 - 2012-03-14 15:23 - 0009216 ____A (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe 2012-01-22 18:51 - 2012-01-22 15:08 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Gadu-Gadu 10 2012-01-22 16:22 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\LiveKernelReports 2012-01-22 15:07 - 2012-01-22 15:07 - 0000686 ____A C:\Users\Public\Desktop\Gadu-Gadu 10.lnk 2012-01-22 15:07 - 2012-01-22 15:07 - 0000000 ____D C:\Users\All Users\Gadu-Gadu 10 2012-01-22 15:07 - 2012-01-22 15:07 - 0000000 ____D C:\ProgramData\Gadu-Gadu 10 2012-01-21 22:12 - 2012-01-21 22:12 - 0000610 ____A C:\Users\Public\Desktop\Applian FLV Player.lnk 2012-01-21 22:12 - 2012-01-21 22:12 - 0000000 ____D C:\Windows\Applian FLV Player 2012-01-21 06:03 - 2012-01-11 17:24 - 0108840 ____A C:\Users\Mentor\AppData\Local\GDIPFONTCACHEV1.DAT 2012-01-21 05:57 - 2012-01-21 05:57 - 0000000 ____D C:\Windows\PCHEALTH 2012-01-21 05:57 - 2012-01-21 05:57 - 0000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services 2012-01-21 05:57 - 2012-01-21 05:57 - 0000000 ____D C:\Program Files (x86)\Microsoft Sync Framework 2012-01-21 05:57 - 2012-01-21 05:57 - 0000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2012-01-21 05:57 - 2012-01-21 05:55 - 0000000 ____D C:\Program Files (x86)\Microsoft Office 2012-01-21 05:57 - 2009-07-14 19:09 - 0000000 ____D C:\Windows\ShellNew 2012-01-21 05:57 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files (x86)\MSBuild 2012-01-21 05:56 - 2012-01-21 05:56 - 0000000 ____D C:\Program Files\Microsoft Office 2012-01-21 05:56 - 2012-01-21 05:56 - 0000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2012-01-21 05:55 - 2012-01-21 05:55 - 0000000 __RHD C:\MSOCache 2012-01-21 05:55 - 2012-01-21 05:55 - 0000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2012-01-21 05:04 - 2012-01-21 05:04 - 0000000 ____D C:\Users\Mentor\AppData\Local\Microsoft Help 2012-01-20 13:01 - 2012-01-19 15:53 - 0006647 ____A C:\Users\Public\Documents\s.t.a.l.k.e.r.ltx 2012-01-19 15:55 - 2012-01-19 15:49 - 0000000 ____D C:\Users\Public\Documents\S.T.A.L.K.E.R. - Call of Pripyat 2012-01-19 14:22 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\rescache 2012-01-19 11:56 - 2012-01-19 11:56 - 0000000 ___AH C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2012-01-18 19:20 - 2012-01-18 19:20 - 0000927 ____A C:\Users\Mentor\Desktop\join.me.lnk 2012-01-18 19:14 - 2012-01-18 16:55 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Dev-Cpp 2012-01-18 17:34 - 2012-01-18 17:34 - 0000000 ____D C:\Dev-Cpp 2012-01-17 23:41 - 2012-01-17 23:41 - 0000000 ____D C:\Users\Mentor\AppData\Local\Skyrim 2012-01-17 23:41 - 2012-01-14 15:40 - 0000000 ____D C:\Users\Mentor\Documents\My Games 2012-01-17 13:46 - 2012-02-26 23:47 - 0031040 ____A (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll 2012-01-17 13:45 - 2012-02-26 23:47 - 0188224 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys 2012-01-17 13:45 - 2012-02-06 00:49 - 1451840 ____A (NVIDIA Corporation) C:\Windows\System32\nvhdagenco6420103.dll 2012-01-17 01:08 - 2009-07-14 19:09 - 0000000 ____D C:\Program Files\Windows Journal 2012-01-17 01:08 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files\Windows Sidebar 2012-01-17 01:08 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files\Windows Portable Devices 2012-01-17 01:08 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files\Windows Photo Viewer 2012-01-17 01:08 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files\Windows Defender 2012-01-17 01:08 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files\DVD Maker 2012-01-17 01:08 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files (x86)\Windows Sidebar 2012-01-17 01:08 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files (x86)\Windows Portable Devices 2012-01-17 01:08 - 2009-07-14 06:32 - 0000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\sppui 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\Setup 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\pl-PL 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\oobe 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\migwiz 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\manifeststore 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\es-ES 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\Dism 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\da-DK 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\cs-CZ 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\config\TxR 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\servicing 2012-01-17 01:08 - 2009-07-14 04:20 - 0000000 ____D C:\Program Files\Common Files\System 2012-01-17 01:07 - 2009-07-14 18:55 - 0000000 ____D C:\Windows\System32\Drivers\pl-PL 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\sppui 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\Setup 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\pl-PL 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\oobe 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\migwiz 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\manifeststore 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\es-ES 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\Dism 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\da-DK 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\cs-CZ 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\AdvancedInstallers 2012-01-17 01:07 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\PolicyDefinitions 2012-01-16 21:39 - 2012-01-11 20:20 - 0000000 ____D C:\Users\Mentor\AppData\Local\PunkBuster 2012-01-16 20:50 - 2012-01-16 20:50 - 0000331 ____A C:\Windows\game.ini 2012-01-16 20:35 - 2012-01-16 20:35 - 0000000 __SHD C:\Windows\ftpcache 2012-01-16 20:22 - 2012-01-16 20:22 - 0000634 ____A C:\Users\Public\Desktop\Xfire.lnk 2012-01-16 17:49 - 2009-07-14 03:36 - 0175616 ____A (Microsoft Corporation) C:\Windows\System32\msclmd.dll 2012-01-16 17:49 - 2009-07-14 03:36 - 0152576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2012-01-16 17:43 - 2012-01-16 17:43 - 0000000 ____D C:\Windows\System32\SPReview 2012-01-16 17:42 - 2012-01-16 17:42 - 0000000 ____D C:\Windows\System32\EventProviders 2012-01-16 17:41 - 2012-01-16 17:41 - 0000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf 2012-01-16 13:39 - 2012-01-15 16:41 - 0000000 ____D C:\Users\All Users\Adobe 2012-01-16 13:39 - 2012-01-15 16:41 - 0000000 ____D C:\ProgramData\Adobe 2012-01-15 18:11 - 2012-01-15 18:11 - 0002019 ____A C:\Users\Public\Desktop\Adobe Reader X.lnk 2012-01-15 18:11 - 2012-01-15 16:41 - 0000000 ____D C:\Users\Mentor\AppData\Local\Adobe 2012-01-15 18:11 - 2012-01-15 16:41 - 0000000 ____D C:\Program Files (x86)\Adobe 2012-01-15 18:11 - 2012-01-11 16:54 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Adobe 2012-01-15 17:25 - 2012-01-15 16:41 - 0000000 ____D C:\Program Files (x86)\fliptoast 2012-01-15 16:42 - 2012-01-15 16:41 - 0000000 ____D C:\Program Files\Core Temp 2012-01-15 16:41 - 2012-02-26 23:48 - 0000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Macromedia 2012-01-15 16:41 - 2012-01-15 16:41 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\com.w3i.FlipToast 2012-01-15 16:41 - 2012-01-15 16:41 - 0000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2012-01-15 16:41 - 2012-01-15 16:41 - 0000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2012-01-15 16:37 - 2012-01-15 16:37 - 0000653 ____A C:\Users\Mentor\Desktop\EVEREST Home Edition.lnk 2012-01-15 16:37 - 2012-01-15 16:37 - 0000000 ____D C:\Users\All Users\Sun 2012-01-15 16:37 - 2012-01-15 16:37 - 0000000 ____D C:\ProgramData\Sun 2012-01-15 16:36 - 2012-01-15 16:37 - 0472808 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\deployJava1.dll 2012-01-15 16:36 - 2012-01-15 16:37 - 0157472 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaws.exe 2012-01-15 16:36 - 2012-01-15 16:37 - 0149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\javaw.exe 2012-01-15 16:36 - 2012-01-15 16:37 - 0149280 ____A (Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe 2012-01-15 16:36 - 2012-01-15 16:36 - 0000000 ____D C:\Program Files (x86)\Java 2012-01-15 12:20 - 2012-01-15 12:20 - 0000000 ____D C:\Users\All Users\Solidshield 2012-01-15 12:20 - 2012-01-15 12:20 - 0000000 ____D C:\ProgramData\Solidshield 2012-01-15 12:07 - 2012-01-15 12:07 - 0000000 ____D C:\Users\All Users\DAEMON Tools Lite 2012-01-15 12:07 - 2012-01-15 12:07 - 0000000 ____D C:\ProgramData\DAEMON Tools Lite 2012-01-15 12:05 - 2012-01-11 17:40 - 0000696 ____A C:\Users\Public\Desktop\Origin.lnk 2012-01-14 18:31 - 2012-01-14 18:21 - 0000000 ____D C:\Users\Mentor\AppData\Local\Ubisoft Game Launcher 2012-01-14 18:20 - 2012-01-14 18:20 - 0000000 ____D C:\Users\All Users\Ubisoft 2012-01-14 18:20 - 2012-01-14 18:20 - 0000000 ____D C:\ProgramData\Ubisoft 2012-01-14 18:17 - 2012-01-14 18:17 - 0000000 ____D C:\Program Files (x86)\Ubisoft 2012-01-14 18:16 - 2012-01-14 18:16 - 0000622 ____A C:\Users\Public\Desktop\µTorrent.lnk 2012-01-14 18:04 - 2012-01-11 19:46 - 0000000 ____D C:\Users\Public\Documents\STALKER-STCS 2012-01-14 15:39 - 2012-01-14 15:39 - 0178800 ____A (Sony DADC Austria AG.) C:\Windows\SysWOW64\CmdLineExt_x64.dll 2012-01-13 10:28 - 2012-01-12 22:05 - 0000000 ____D C:\Program Files (x86)\Matroska Pack 2012-01-12 00:19 - 2012-01-12 00:14 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\NVIDIA 2012-01-12 00:14 - 2012-01-11 16:31 - 0000000 ____D C:\Users\Mentor\AppData\Local\VirtualStore 2012-01-12 00:13 - 2012-01-12 00:13 - 0001062 ____A C:\Users\Mentor\Desktop\MSI Kombustor.lnk 2012-01-12 00:13 - 2012-01-12 00:13 - 0000000 ____D C:\Program Files (x86)\MSI Kombustor 2012-01-12 00:12 - 2012-01-12 00:12 - 0001086 ____A C:\Users\Mentor\Desktop\MSI Afterburner.lnk 2012-01-11 23:28 - 2009-07-14 06:01 - 0067912 ____A C:\Windows\SysWOW64\license.rtf 2012-01-11 23:28 - 2009-07-14 06:01 - 0067912 ____A C:\Windows\System32\license.rtf 2012-01-11 23:27 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\System32\sysprep 2012-01-11 23:25 - 2009-07-14 19:09 - 0000000 ____D C:\Windows\CSC 2012-01-11 23:24 - 2009-07-14 06:38 - 0025600 __ASH C:\Windows\System32\config\BCD-Template.LOG 2012-01-11 23:24 - 2009-07-14 06:32 - 0028672 ____A C:\Windows\System32\config\BCD-Template 2012-01-11 21:55 - 2012-01-11 21:55 - 0434176 ____A (e-academy Inc.) C:\Users\Mentor\Desktop\Microsoft_Office_Project_Professional_2007_32-bit_(Polish).exe 2012-01-11 21:32 - 2012-01-11 21:32 - 0000096 ____A C:\Users\All Users\CameraRecorder.ini 2012-01-11 21:32 - 2012-01-11 21:32 - 0000096 ____A C:\ProgramData\CameraRecorder.ini 2012-01-11 21:31 - 2012-01-11 21:31 - 0002517 ____A C:\Users\Public\Desktop\Skype.lnk 2012-01-11 21:31 - 2012-01-11 21:31 - 0000000 ___RD C:\Program Files (x86)\Skype 2012-01-11 21:31 - 2012-01-11 21:31 - 0000000 ____D C:\Users\All Users\Skype 2012-01-11 21:31 - 2012-01-11 21:31 - 0000000 ____D C:\ProgramData\Skype 2012-01-11 20:20 - 2012-01-11 20:19 - 0000000 ____D C:\Users\Mentor\Documents\Battlefield 3 2012-01-11 20:18 - 2012-01-11 20:18 - 0000000 ____D C:\Users\All Users\EA Core 2012-01-11 20:18 - 2012-01-11 20:18 - 0000000 ____D C:\ProgramData\EA Core 2012-01-11 20:18 - 2012-01-11 17:40 - 0000000 ____D C:\Users\All Users\Origin 2012-01-11 20:18 - 2012-01-11 17:40 - 0000000 ____D C:\Users\All Users\Electronic Arts 2012-01-11 20:18 - 2012-01-11 17:40 - 0000000 ____D C:\ProgramData\Origin 2012-01-11 20:18 - 2012-01-11 17:40 - 0000000 ____D C:\ProgramData\Electronic Arts 2012-01-11 19:57 - 2012-01-11 19:57 - 0314016 ____A C:\Windows\System32\Drivers\atksgt.sys 2012-01-11 19:57 - 2012-01-11 19:57 - 0043680 ____A C:\Windows\System32\Drivers\lirsgt.sys 2012-01-11 18:13 - 2012-01-11 17:40 - 0000000 ____D C:\Program Files (x86)\Origin Games 2012-01-11 17:45 - 2012-01-11 17:41 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Origin 2012-01-11 17:44 - 2012-01-11 17:44 - 0000017 ____A C:\Users\Mentor\AppData\Local\resmon.resmoncfg 2012-01-11 17:40 - 2012-01-11 17:40 - 0000000 ____D C:\Users\Mentor\AppData\Local\Origin 2012-01-11 17:28 - 2012-01-11 17:28 - 0000000 ____D C:\Users\Mentor\AppData\Local\msi 2012-01-11 17:24 - 2012-01-11 17:24 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Intel Corporation 2012-01-11 17:18 - 2012-01-11 17:17 - 0000000 ____D C:\Program Files (x86)\Stone Giant 2012-01-11 17:10 - 2012-01-11 17:10 - 0000000 ____D C:\Program Files (x86)\System Control Manager 2012-01-11 17:10 - 2012-01-11 17:10 - 0000000 ____D C:\Program Files (x86)\Camera Recorder 2012-01-11 17:09 - 2012-01-11 17:09 - 0000000 ____D C:\Program Files (x86)\WinRAR 3.61 Multi 2012-01-11 17:06 - 2012-01-11 17:06 - 0000000 ____D C:\Program Files (x86)\Renesas Electronics 2012-01-11 17:05 - 2012-01-11 17:05 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\InstallShield 2012-01-11 17:05 - 2012-01-11 16:33 - 0000000 ____D C:\Program Files (x86)\Intel 2012-01-11 17:02 - 2012-01-11 17:02 - 0000000 ____D C:\Windows\SysWOW64\sda 2012-01-11 17:02 - 2012-01-11 16:43 - 0000000 ____D C:\Program Files (x86)\Realtek 2012-01-11 16:57 - 2012-01-11 16:57 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Macromedia 2012-01-11 16:56 - 2012-01-11 16:56 - 0001138 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk 2012-01-11 16:56 - 2012-01-11 16:56 - 0000000 ____D C:\Users\Mentor\AppData\Local\Mozilla 2012-01-11 16:54 - 2012-01-11 16:54 - 0000000 ____D C:\Windows\SysWOW64\Macromed 2012-01-11 16:54 - 2012-01-11 16:54 - 0000000 ____D C:\Windows\System32\Macromed 2012-01-11 16:52 - 2012-01-11 16:52 - 0000000 ____D C:\Users\Mentor\AppData\Local\FSP 2012-01-11 16:51 - 2012-01-11 16:51 - 0000000 ____D C:\Program Files\FSP 2012-01-11 16:50 - 2012-01-11 16:50 - 0000000 ____D C:\Users\Mentor\AppData\Roaming\Intel 2012-01-11 16:50 - 2012-01-11 16:31 - 0000000 ____D C:\users\Mentor 2012-01-11 16:50 - 2009-07-14 04:20 - 0000000 __RHD C:\users\Default 2012-01-11 16:50 - 2009-07-14 04:20 - 0000000 ___RD C:\users\Public 2012-01-11 16:49 - 2012-01-11 16:49 - 0000000 ____D C:\Users\All Users\Intel 2012-01-11 16:49 - 2012-01-11 16:49 - 0000000 ____D C:\ProgramData\Intel 2012-01-11 16:49 - 2012-01-11 16:49 - 0000000 ____D C:\Program Files\Intel 2012-01-11 16:49 - 2012-01-11 16:49 - 0000000 ____D C:\Program Files\Common Files\Intel 2012-01-11 16:49 - 2012-01-11 16:49 - 0000000 ____D C:\Program Files (x86)\Cisco 2012-01-11 16:46 - 2009-07-14 06:32 - 0000000 ____D C:\Windows\System32\restore 2012-01-11 16:43 - 2012-01-11 16:43 - 0000000 ____D C:\Windows\SysWOW64\RTCOM 2012-01-11 16:43 - 2012-01-11 16:43 - 0000000 ____D C:\Program Files\Realtek 2012-01-11 16:40 - 2012-01-11 16:40 - 0000000 ____D C:\Users\All Users\NVIDIA Corporation 2012-01-11 16:40 - 2012-01-11 16:40 - 0000000 ____D C:\ProgramData\NVIDIA Corporation 2012-01-11 16:40 - 2009-07-14 04:20 - 0000000 ____D C:\Windows\Help 2012-01-11 16:33 - 2012-01-11 16:33 - 0000000 ____D C:\Intel 2012-01-11 16:31 - 2012-01-11 16:31 - 0000020 ___SH C:\Users\Mentor\ntuser.ini 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Public\Documents\Moje wideo 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Public\Documents\Moje obrazy 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Public\Documents\Moja muzyka 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\Ustawienia lokalne 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\Szablony 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\PrintHood 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\NetHood 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\Moje dokumenty 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\Menu Start 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\Documents\Moje wideo 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\Documents\Moje obrazy 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\Documents\Moja muzyka 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\Dane aplikacji 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\AppData\Local\Temporary Internet Files 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\AppData\Local\Historia 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Mentor\AppData\Local\Dane aplikacji 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\Ustawienia lokalne 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\Szablony 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\Moje dokumenty 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\Menu Start 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\Documents\Moje wideo 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\Documents\Moje obrazy 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\Documents\Moja muzyka 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\Dane aplikacji 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\AppData\Local\Historia 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default\AppData\Local\Dane aplikacji 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default User\Documents\Moje wideo 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default User\Documents\Moje obrazy 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default User\Documents\Moja muzyka 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default User\AppData\Local\Historia 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\Default User\AppData\Local\Dane aplikacji 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\All Users\Ulubione 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\All Users\Szablony 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\All Users\Pulpit 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\All Users\Menu Start 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\All Users\Dokumenty 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Users\All Users\Dane aplikacji 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\Recovery 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\ProgramData\Ulubione 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\ProgramData\Szablony 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\ProgramData\Pulpit 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\ProgramData\Menu Start 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\ProgramData\Dokumenty 2012-01-11 16:31 - 2012-01-11 16:31 - 0000000 __SHD C:\ProgramData\Dane aplikacji 2012-01-11 16:31 - 2009-07-14 04:20 - 0000000 ____D C:\Program Files\Windows NT 2012-01-11 16:31 - 2009-07-14 04:18 - 0000000 __SHD C:\$Recycle.Bin 2012-01-04 11:44 - 2012-02-16 13:42 - 14172672 ____A (Microsoft Corporation) C:\Windows\System32\shell32.dll 2012-01-04 11:44 - 2012-02-16 13:42 - 0509952 ____A (Microsoft Corporation) C:\Windows\System32\ntshrui.dll 2012-01-04 09:59 - 2012-02-16 13:42 - 12872704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2012-01-04 09:58 - 2012-02-16 13:42 - 0442880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2011-12-30 07:26 - 2012-02-16 13:42 - 0515584 ____A (Microsoft Corporation) C:\Windows\System32\timedate.cpl 2011-12-30 06:27 - 2012-02-16 13:42 - 0478720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2011-12-28 04:59 - 2012-02-16 13:42 - 0498688 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\afd.sys 2011-12-23 07:12 - 2012-03-19 22:20 - 0069376 ____A (Lavasoft AB) C:\Windows\System32\Drivers\Lbd.sys ========================= Known DLLs (Whitelisted) ============ ========================= Bamital & volsnap Check ============ C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ========================= Memory info ====================== Percentage of memory in use: 9% Total physical RAM: 8169.4 MB Available physical RAM: 7382.03 MB Total Pagefile: 8167.55 MB Available Pagefile: 7369.94 MB Total Virtual: 8192 MB Available Virtual: 8191.89 MB ======================= Partitions ========================= 1 Drive c: () (Fixed) (Total:48.83 GB) (Free:8.55 GB) NTFS 2 Drive e: (Nowy) (Fixed) (Total:358.36 GB) (Free:156.58 GB) NTFS 4 Drive g: () (Removable) (Total:3.73 GB) (Free:3.73 GB) FAT32 5 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS 6 Drive y: (¬§ ¦-Ìø) (Fixed) (Total:58.56 GB) (Free:58.32 GB) FAT32 ==>[System with boot components (obtained from reading drive)] Nr dysku Stan Rozmiar Wolne Dyn GPT -------- ------------- ------- ------- --- --- Dysk 0 Online 465 GB 1024 KB Dysk 1 Online 3819 MB 0 B Partitions of Disk 0: =============== Partycja ### Typ Rozmiar Przesuni©cie ------------- ---------------- ------- ------------ Partycja 1 Podstawowy 58 GB 31 KB Partycja 2 Podstawowy 48 GB 58 GB Partycja 3 Podstawowy 358 GB 107 GB ====================================================================================================== Disk: 0 Partycja 1 Typ : 0C Ukryta : Nie Aktywna : Tak Przesuni©cie w bajtach: 32256 Wolumin ### Lit Etykieta Fs Typ Rozmiar Stan Info ----------- --- ----------- ----- ---------- ------- --------- -------- * Wolumin 1 Y »õ º¼·ý FAT32 Partycja 58 GB Zdrowy ====================================================================================================== Disk: 0 Partycja 2 Typ : 07 Ukryta : Nie Aktywna : Nie Przesuni©cie w bajtach: 62891491328 Wolumin ### Lit Etykieta Fs Typ Rozmiar Stan Info ----------- --- ----------- ----- ---------- ------- --------- -------- * Wolumin 2 C NTFS Partycja 48 GB Zdrowy ====================================================================================================== Disk: 0 Partycja 3 Typ : 07 Ukryta : Nie Aktywna : Nie Przesuni©cie w bajtach: 115320291328 Wolumin ### Lit Etykieta Fs Typ Rozmiar Stan Info ----------- --- ----------- ----- ---------- ------- --------- -------- * Wolumin 3 E Nowy NTFS Partycja 358 GB Zdrowy ====================================================================================================== Partitions of Disk 1: =============== Partycja ### Typ Rozmiar Przesuni©cie ------------- ---------------- ------- ------------ Partycja 1 Podstawowy 3818 MB 16 KB ====================================================================================================== Disk: 1 Partycja 1 Typ : 0B Ukryta : Nie Aktywna : Nie Przesuni©cie w bajtach: 16384 Wolumin ### Lit Etykieta Fs Typ Rozmiar Stan Info ----------- --- ----------- ----- ---------- ------- --------- -------- * Wolumin 4 G FAT32 Wymienny 3818 MB Zdrowy ====================================================================================================== ========================================================== Last Boot: 2012-03-11 14:03 ======================= End Of Log ==========================