[code] OTS logfile created on: 2012-04-27 06:27:45 - Run 1 OTS by OldTimer - Version 3.1.47.2 Folder = C:\Documents and Settings\Administrator\Moje dokumenty\Pobieranie Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 54,00% Memory free 3,00 Gb Paging File | 3,00 Gb Available in Paging File | 84,00% Paging File free Paging file location(s): C:\pagefile.sys 1920 3840 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 74,55 Gb Total Space | 18,20 Gb Free Space | 24,42% Space Free | Partition Type: NTFS Drive D: | 39,06 Gb Total Space | 11,03 Gb Free Space | 28,25% Space Free | Partition Type: NTFS Drive E: | 35,50 Gb Total Space | 10,14 Gb Free Space | 28,56% Space Free | Partition Type: NTFS F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: C2660 Current User Name: Administrator Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days [Processes - Safe List] ots.exe -> C:\Documents and Settings\Administrator\Moje dokumenty\Pobieranie\OTS.exe -> [2012-04-27 06:25:42 | 000,646,656 | ---- | M] (OldTimer Tools) firefox.exe -> C:\Program Files\Mozilla Firefox\firefox.exe -> [2012-03-19 06:52:58 | 000,924,600 | ---- | M] (Mozilla Corporation) avwebgrd.exe -> C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -> [2011-07-09 10:13:24 | 000,428,200 | ---- | M] (Avira GmbH) avguard.exe -> C:\Program Files\Avira\AntiVir Desktop\avguard.exe -> [2011-07-09 10:13:24 | 000,269,480 | ---- | M] (Avira GmbH) avshadow.exe -> C:\Program Files\Avira\AntiVir Desktop\avshadow.exe -> [2011-04-21 07:54:05 | 000,076,968 | ---- | M] (Avira GmbH) sched.exe -> C:\Program Files\Avira\AntiVir Desktop\sched.exe -> [2011-04-21 07:53:48 | 000,136,360 | ---- | M] (Avira GmbH) explorer.exe -> C:\WINDOWS\explorer.exe -> [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) [Modules - No Company Name] npswf32_11_2_202_233.dll -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll -> [2012-04-25 18:55:17 | 008,797,344 | ---- | M] () radiowmpcoregecko11.dll -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\{90eee664-34b1-422a-a782-779af65cdf6d}\components\RadioWMPCoreGecko11.dll -> [2012-04-24 21:45:52 | 000,085,288 | ---- | M] () netsession_win_6c825ce.dll -> c:\Program Files\Common Files\Akamai\netsession_win_6c825ce.dll -> [2012-04-23 06:55:15 | 003,417,376 | ---- | M] () mozjs.dll -> C:\Program Files\Mozilla Firefox\mozjs.dll -> [2012-03-19 06:52:57 | 001,969,080 | ---- | M] () sqlite3.dll -> C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll -> [2010-06-17 15:27:22 | 000,355,688 | ---- | M] () pdfshell.pol -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.POL -> [2009-02-27 20:04:20 | 000,311,296 | ---- | M] () [Win32 Services - Safe List] (AdobeFlashPlayerUpdateSvc) Adobe Flash Player Update Service [On_Demand | Stopped] -> C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -> [2012-04-25 18:55:18 | 000,253,088 | ---- | M] (Adobe Systems Incorporated) (Akamai) Akamai NetSession Interface [Auto | Running] -> c:\Program Files\Common Files\Akamai\netsession_win_6c825ce.dll -> [2012-04-23 06:55:15 | 003,417,376 | ---- | M] () (AntiVirWebService) Avira AntiVir WebGuard [Auto | Running] -> C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE -> [2011-07-09 10:13:24 | 000,428,200 | ---- | M] (Avira GmbH) (AntiVirService) Avira AntiVir Guard [Auto | Running] -> C:\Program Files\Avira\AntiVir Desktop\avguard.exe -> [2011-07-09 10:13:24 | 000,269,480 | ---- | M] (Avira GmbH) (AntiVirSchedulerService) Avira AntiVir Scheduler [Auto | Running] -> C:\Program Files\Avira\AntiVir Desktop\sched.exe -> [2011-04-21 07:53:48 | 000,136,360 | ---- | M] (Avira GmbH) (ServiceLayer) ServiceLayer [Disabled | Stopped] -> C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -> [2010-10-20 11:22:24 | 000,630,272 | ---- | M] (Nokia) (spupdsvc) Windows Service Pack Installer update service [Auto | Stopped] -> C:\WINDOWS\system32\spupdsvc.exe -> [2008-11-07 18:55:30 | 000,026,144 | ---- | M] (Microsoft Corporation) (UleadBurningHelper) Ulead Burning Helper [Disabled | Stopped] -> C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -> [2008-06-03 03:05:58 | 000,065,680 | ---- | M] (Ulead Systems, Inc.) [Driver Services - Safe List] (avipbb) avipbb [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\avipbb.sys -> [2011-07-09 10:13:25 | 000,138,192 | ---- | M] (Avira GmbH) (avgntflt) avgntflt [File_System | Auto | Running] -> C:\WINDOWS\system32\drivers\avgntflt.sys -> [2011-07-09 10:13:25 | 000,066,616 | ---- | M] (Avira GmbH) (ssmdrv) ssmdrv [Kernel | System | Running] -> C:\WINDOWS\system32\drivers\ssmdrv.sys -> [2010-06-17 15:27:22 | 000,028,520 | ---- | M] (Avira GmbH) (avgio) avgio [Kernel | System | Running] -> C:\Program Files\Avira\AntiVir Desktop\avgio.sys -> [2010-06-17 15:27:12 | 000,011,608 | ---- | M] (Avira GmbH) (btnetBUs) Bluetooth PAN Bus Service [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\btnetBus.sys -> [2010-04-06 18:33:10 | 000,025,864 | ---- | M] () (IvtBtBUs) IVT Bluetooth Bus Service [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\IvtBtBus.sys -> [2010-04-06 18:32:48 | 000,023,048 | ---- | M] (IVT Corporation.) (BtHidBus) Bluetooth HID Bus Service [Kernel | Boot | Running] -> C:\WINDOWS\System32\Drivers\BtHidBus.sys -> [2010-04-06 18:32:44 | 000,020,104 | ---- | M] (IVT Corporation.) (UsbserFilt) UsbserFilt [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -> [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) (upperdev) upperdev [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -> [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) (nmwcdc) Nokia USB Generic [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ccdcmbo.sys -> [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) (nmwcd) Nokia USB Phone Parent [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\ccdcmb.sys -> [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) (nmwcdnsu) Nokia USB Flashing Phone Parent [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\nmwcdnsu.sys -> [2010-02-26 14:21:22 | 000,137,344 | ---- | M] (Nokia) (nmwcdnsuc) Nokia USB Flashing Generic [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\nmwcdnsuc.sys -> [2010-02-26 14:21:22 | 000,008,320 | ---- | M] (Nokia) (pccsmcfd) PCCS Mode Change Filter Driver [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\pccsmcfd.sys -> [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) (USB_RNDIS) ADSL2+ Modem USB RNDIS Adapter [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\usb8023.sys -> [2008-04-14 00:26:50 | 000,012,800 | ---- | M] (Microsoft Corporation) (NwlnkIpx) Protokół transportowy zgodny z NWLink IPX/SPX/NetBIOS [Kernel | Auto | Running] -> C:\WINDOWS\system32\drivers\nwlnkipx.sys -> [2008-04-14 00:26:08 | 000,088,320 | ---- | M] (Microsoft Corporation) (RTL8023xp) Realtek 10/100/1000 NIC Family all in one NDIS XP Driver [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\Rtlnicxp.sys -> [2005-03-04 05:10:26 | 000,074,496 | ---- | M] (Realtek Semiconductor Corporation ) (ULCDRHlp) ULCDRHlp [Kernel | On_Demand | Running] -> C:\WINDOWS\system32\drivers\ULCDRHlp.sys -> [2004-12-23 05:47:10 | 000,027,392 | R--- | M] (Ulead Systems, Inc.) (NwlnkNb) System NetBIOS NWLink [Kernel | Auto | Running] -> C:\WINDOWS\system32\drivers\nwlnknb.sys -> [2003-04-16 14:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) (NwlnkSpx) Protokół NWLink SPX/SPXII [Kernel | Auto | Running] -> C:\WINDOWS\system32\drivers\nwlnkspx.sys -> [2003-04-16 14:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) (irsir) Sterownik portu szeregowego podczerwieni Microsoft [Kernel | On_Demand | Stopped] -> C:\WINDOWS\system32\drivers\irsir.sys -> [2001-08-17 21:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Registry - Safe List] < Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> pl.v9.com/idg/idg_1335385808_374116 -> HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> %SystemRoot%\system32\blank.htm -> HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> pl.v9.com/idg/idg_1335385808_374116 -> < Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> -> HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 -> HKEY_USERS\.DEFAULT\: "ProxyOverride" -> -> < Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> -> HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 -> HKEY_USERS\S-1-5-18\: "ProxyOverride" -> -> < Internet Explorer Settings [HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\] > -> -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\: Main\\"Default_Page_URL" -> pl.v9.com/idg/idg_1335385808_374116 -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\: Main\\"Start Page" -> pl.v9.com/idg/idg_1335385808_374116 -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\: SearchURL\\"provider" -> -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\: URLSearchHooks\\"{08C06D61-F1F3-4799-86F8-BE1A89362C85}" [HKLM] -> [Search Class] -> File not found HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\: URLSearchHooks\\"{90eee664-34b1-422a-a782-779af65cdf6d}" [HKLM] -> C:\Program Files\IncrediMail_MediaBar_4\tbIncr.dll [IncrediMail MediaBar 4 Toolbar] -> [2010-11-29 15:26:48 | 003,908,192 | ---- | M] (Conduit Ltd.) HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\: URLSearchHooks\\"{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}" [HKLM] -> C:\Program Files\uTorrentBar\prxtbuTor.dll [uTorrentBar Toolbar] -> [2011-05-09 10:49:38 | 000,176,936 | ---- | M] (Conduit Ltd.) HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\: URLSearchHooks\\"{EEE6C35D-6118-11DC-9C72-001320C79847}" [HKLM] -> C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll [SweetIM ToolbarURLSearchHook Class] -> [2011-08-24 18:21:08 | 000,130,864 | ---- | M] (SweetIM Technologies Ltd.) HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\: "ProxyEnable" -> 0 -> < FireFox Settings [Prefs.js] > -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\FireFox\Profiles\2wkh7jp1.default\prefs.js -> browser.search.defaultenginename -> "Search the web (Babylon)" -> browser.search.order.1 -> "Search the web (Babylon)" -> browser.search.selectedEngine -> "Google" -> browser.startup.homepage -> "http://www.gazeta.pl/0,0.html?p=135" -> keyword.URL -> "http://search.babylon.com/?babsrc=SP_ss&mntrId=969cc594718b4fd6baabad0bcb25beef&tlver=1.4.31.2&instlRef=sst&ss=1&affID=100395&q=" -> network.proxy.type -> 0 -> sweetim.toolbar.previous.keyword.URL -> "http://search.babylon.com/?babsrc=SP_ss&mntrId=969cc594718b4fd6baabad0bcb25beef&tlver=1.4.31.2&instlRef=sst&ss=1&affID=100395&q=" -> < FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla HKLM\software\mozilla\Firefox\extensions -> -> HKLM\software\mozilla\Mozilla Firefox 11.0\extensions -> -> HKLM\software\mozilla\Mozilla Firefox 11.0\extensions\\Components -> C:\Program Files\Mozilla Firefox\components [C:\PROGRAM FILES\MOZILLA FIREFOX\COMPONENTS] -> [2012-03-19 06:52:58 | 000,000,000 | ---D | M] HKLM\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins -> C:\Program Files\Mozilla Firefox\plugins [C:\PROGRAM FILES\MOZILLA FIREFOX\PLUGINS] -> [2012-04-14 08:44:50 | 000,000,000 | ---D | M] < FireFox Extensions [User Folders] > -> -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Extensions -> [2011-07-08 13:37:43 | 000,000,000 | ---D | M] -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions -> [2012-04-27 05:53:50 | 000,000,000 | ---D | M] IncrediMail MediaBar 4 Community Toolbar -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\{90eee664-34b1-422a-a782-779af65cdf6d} -> [2012-04-25 22:24:08 | 000,000,000 | ---D | M] uTorrentBar Community Toolbar -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} -> [2012-04-25 20:49:28 | 000,000,000 | ---D | M] DealPly -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF} -> [2011-12-02 16:46:13 | 000,000,000 | ---D | M] SweetIM Toolbar for Firefox -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847} -> [2011-09-30 16:42:12 | 000,000,000 | ---D | M] -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\engine@conduit.com -> [2011-08-23 14:34:34 | 000,000,000 | ---D | M] -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\IplextoALL@ALLPlayer.org -> [2012-03-23 07:04:27 | 000,000,000 | ---D | M] -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\player@portalarium.com -> [2011-07-31 14:56:46 | 000,000,000 | ---D | M] -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\2wkh7jp1.default\extensions\toolbar@ask.com -> [2012-01-11 21:31:24 | 000,000,000 | ---D | M] < FireFox SearchPlugins [User Folders] > -> MyStart Search.xml -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\FireFox\Profiles\2wkh7jp1.default\searchplugins\MyStart Search.xml -> [2011-08-23 14:28:15 | 000,002,207 | ---- | M] () sweetim.xml -> C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\FireFox\Profiles\2wkh7jp1.default\searchplugins\sweetim.xml -> [2011-09-30 16:42:09 | 000,003,915 | ---- | M] () < FireFox Extensions [Program Folders] > -> -> C:\Program Files\Mozilla Firefox\extensions -> [2012-01-31 18:23:02 | 000,000,000 | ---D | M] z -> C:\Program Files\Mozilla Firefox\extensions\{86c985d9-2e1f-647c-caad-148dda152a77} -> [2011-11-12 12:45:02 | 000,000,000 | ---D | M] Java Console -> C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} -> [2012-01-31 18:23:02 | 000,000,000 | ---D | M] No name found -> C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2WKH7JP1.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI -> () No name found -> C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2WKH7JP1.DEFAULT\EXTENSIONS\{C0C9A2C7-2E5C-4447-BC53-97718BC91E1B}.XPI -> () No name found -> C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2WKH7JP1.DEFAULT\EXTENSIONS\IPLEXTOALL@ALLPLAYER.ORG.XPI -> () No name found -> C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2WKH7JP1.DEFAULT\EXTENSIONS\NOIAFOXOPTION@DAVIDVINCENT.TLD.XPI -> () Portalarium Player -> C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2WKH7JP1.DEFAULT\EXTENSIONS\PLAYER@PORTALARIUM.COM -> [2011-07-31 14:56:46 | 000,000,000 | ---D | M] No name found -> C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2WKH7JP1.DEFAULT\EXTENSIONS\TOGGLEPERSONA@DAVIDVINCENT.TLD.XPI -> () "Avira SearchFree Toolbar plus WebGuard" -> C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\2WKH7JP1.DEFAULT\EXTENSIONS\TOOLBAR@ASK.COM -> [2012-01-11 21:31:24 | 000,000,000 | ---D | M] < FireFox SearchPlugins [Program Folders] > -> < HOSTS File > ([2003-04-16 14:00:00 | 000,000,742 | ---- | M] - 19 lines) -> C:\WINDOWS\system32\drivers\etc\hosts -> Reset Hosts 127.0.0.1 localhost < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} [HKLM] -> C:\Program Files\uTorrentBar\prxtbuTor.dll [uTorrentBar Toolbar] -> [2011-05-09 10:49:38 | 000,176,936 | ---- | M] (Conduit Ltd.) < Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar -> "{30F9B915-B755-4826-820B-08FBA6BD249D}" [HKLM] -> C:\Program Files\ConduitEngine\ConduitEngine.dll [Conduit Engine] -> [2010-11-29 15:26:48 | 003,908,192 | ---- | M] (Conduit Ltd.) "{90eee664-34b1-422a-a782-779af65cdf6d}" [HKLM] -> C:\Program Files\IncrediMail_MediaBar_4\tbIncr.dll [IncrediMail MediaBar 4 Toolbar] -> [2010-11-29 15:26:48 | 003,908,192 | ---- | M] (Conduit Ltd.) "{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}" [HKLM] -> C:\Program Files\uTorrentBar\prxtbuTor.dll [uTorrentBar Toolbar] -> [2011-05-09 10:49:38 | 000,176,936 | ---- | M] (Conduit Ltd.) "{D4027C7F-154A-4066-A1AD-4243D8127440}" [HKLM] -> C:\Program Files\Ask.com\GenericAskToolbar.dll [Avira SearchFree Toolbar plus WebGuard] -> [2011-07-09 07:13:34 | 001,493,160 | ---- | M] (Ask) "{EEE6C35B-6118-11DC-9C72-001320C79847}" [HKLM] -> C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [SweetIM Toolbar for Internet Explorer] -> [2011-08-24 18:21:08 | 001,299,248 | ---- | M] (SweetIM Technologies Ltd.) < Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\] > -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\Software\Microsoft\Internet Explorer\Toolbar\ -> WebBrowser\\"{30F9B915-B755-4826-820B-08FBA6BD249D}" [HKLM] -> C:\Program Files\ConduitEngine\ConduitEngine.dll [Conduit Engine] -> [2010-11-29 15:26:48 | 003,908,192 | ---- | M] (Conduit Ltd.) WebBrowser\\"{90EEE664-34B1-422A-A782-779AF65CDF6D}" [HKLM] -> C:\Program Files\IncrediMail_MediaBar_4\tbIncr.dll [IncrediMail MediaBar 4 Toolbar] -> [2010-11-29 15:26:48 | 003,908,192 | ---- | M] (Conduit Ltd.) WebBrowser\\"{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC}" [HKLM] -> C:\Program Files\uTorrentBar\prxtbuTor.dll [uTorrentBar Toolbar] -> [2011-05-09 10:49:38 | 000,176,936 | ---- | M] (Conduit Ltd.) WebBrowser\\"{D4027C7F-154A-4066-A1AD-4243D8127440}" [HKLM] -> C:\Program Files\Ask.com\GenericAskToolbar.dll [Avira SearchFree Toolbar plus WebGuard] -> [2011-07-09 07:13:34 | 001,493,160 | ---- | M] (Ask) WebBrowser\\"{EEE6C35B-6118-11DC-9C72-001320C79847}" [HKLM] -> C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll [SweetIM Toolbar for Internet Explorer] -> [2011-08-24 18:21:08 | 001,299,248 | ---- | M] (SweetIM Technologies Ltd.) < Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "Tweak UI" -> C:\WINDOWS\System32\tweakui.cpl [RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp] -> [2003-03-25 06:49:02 | 000,106,544 | ---- | M] (Microsoft Corporation) < Administrator Startup Folder > -> C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart -> < All Users Startup Folder > -> C:\Documents and Settings\All Users\Menu Start\Programy\Autostart -> < Default User Startup Folder > -> C:\Documents and Settings\Default User\Menu Start\Programy\Autostart -> < CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System < CurrentVersion Policy Settings [HKEY_USERS\.DEFAULT] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"NoDriveTypeAutoRun" -> [145] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-18] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"NoDriveTypeAutoRun" -> [145] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500] > -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"NoDriveTypeAutoRun" -> [223] -> File not found < Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\] > -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\Software\Microsoft\Internet Explorer\MenuExt\ -> &Download All using 4shared Desktop -> C:\Program Files\4shared Desktop\down_all.htm [C:\Program Files\4shared Desktop\down_all.htm] -> [2010-03-22 15:07:28 | 000,001,050 | ---- | M] () &Download using 4shared Desktop -> C:\Program Files\4shared Desktop\down_link.htm [C:\Program Files\4shared Desktop\down_link.htm] -> [2010-03-22 15:07:30 | 000,000,792 | ---- | M] () Add to Google Photos Screensa&ver -> C:\WINDOWS\System32\GPhotos.scr [res://C:\WINDOWS\system32\GPhotos.scr/200] -> [2011-04-14 00:40:10 | 004,284,416 | ---- | M] (Google Inc.) Search the Web -> C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources\MenuExt.html [C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources\menuext.html] -> [2011-07-28 13:20:26 | 000,001,068 | R--- | M] () < Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {d9288080-1baa-4bc4-9cf8-a92d743db949}:Exec [HKLM] -> C:\Documents and Settings\Administrator\Menu Start\Programy\IMVU\Run IMVU.lnk [Button: Run IMVU] -> [2012-01-26 21:23:34 | 000,001,978 | ---- | M] () < Internet Explorer Extensions [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Extensions\ -> CmdMapping\\"{d9288080-1baa-4bc4-9cf8-a92d743db949}" [HKLM] -> C:\Documents and Settings\Administrator\Menu Start\Programy\IMVU\Run IMVU.lnk [Run IMVU] -> [2012-01-26 21:23:34 | 000,001,978 | ---- | M] () < Internet Explorer Extensions [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Extensions\ -> CmdMapping\\"{d9288080-1baa-4bc4-9cf8-a92d743db949}" [HKLM] -> C:\Documents and Settings\Administrator\Menu Start\Programy\IMVU\Run IMVU.lnk [Run IMVU] -> [2012-01-26 21:23:34 | 000,001,978 | ---- | M] () < Internet Explorer Extensions [HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\] > -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\Software\Microsoft\Internet Explorer\Extensions\ -> CmdMapping\\"{d9288080-1baa-4bc4-9cf8-a92d743db949}" [HKLM] -> C:\Documents and Settings\Administrator\Menu Start\Programy\IMVU\Run IMVU.lnk [Run IMVU] -> [2012-01-26 21:23:34 | 000,001,978 | ---- | M] () < Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ -> PluginsPageFriendlyName -> Galeria Microsoft ActiveX -> Extension\.spop -> C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll [Reg Error: Value error.] -> [2001-01-30 13:56:24 | 000,225,280 | ---- | M] (InterTrust Technologies Corporation, Inc.) < Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix "" -> http:// < Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. -> < Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\] > -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\] > -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-21-1935655697-412668190-839522115-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {33564D57-9980-0010-8000-00AA00389B71} [HKLM] -> http://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab [Reg Error: Key error.] -> {8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab [Java Plug-in 1.6.0_30] -> {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab [Java Plug-in 1.6.0_30] -> {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab [Java Plug-in 1.6.0_30] -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ -> DhcpNameServer -> 192.168.1.1 0.0.0.0 -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> {69958381-71E6-48D6-A077-BE0ACDB3AB6C}\\DhcpNameServer -> 192.168.1.1 0.0.0.0 (ADSL2+ Modem USB RNDIS Adapter) -> {B2B1D831-EE24-457B-BF2A-FD927AFA08FC}\\DhcpNameServer -> 192.168.1.1 0.0.0.0 (ADSL2+ Modem USB RNDIS Adapter) -> < Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> *Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> Explorer.exe -> C:\WINDOWS\explorer.exe -> [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) *MultiFile Done* -> -> *UserInit* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit -> C:\WINDOWS\system32\userinit.exe -> C:\WINDOWS\system32\userinit.exe -> [2008-04-14 22:51:46 | 000,026,624 | ---- | M] (Microsoft Corporation) *MultiFile Done* -> -> < LSA Authentication Packages [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Authentication Packages -> *LSA Authentication Packages* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Authentication Packages -> nwprovau -> C:\WINDOWS\System32\nwprovau.dll -> [2008-04-14 22:50:44 | 000,143,360 | ---- | M] (Microsoft Corporation) *MultiFile Done* -> -> < Domain Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List -> < Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List -> "C:\Documents and Settings\Administrator\Pulpit\Skype.exe" -> C:\Documents and Settings\Administrator\Pulpit\Skype.exe [C:\Documents and Settings\Administrator\Pulpit\Skype.exe:*:Enabled:Skype ] -> [2010-05-13 14:12:20 | 026,192,168 | R--- | M] (Skype Technologies S.A.) "C:\Program Files\Gadu-Gadu 10\gg.exe" -> C:\Program Files\Gadu-Gadu 10\gg.exe [C:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10] -> [2011-07-04 19:45:30 | 013,374,048 | ---- | M] (GG Network S.A.) "C:\WINDOWS\system32\dpvsetup.exe" -> C:\WINDOWS\System32\dpvsetup.exe [C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test] -> [2008-04-14 22:51:14 | 000,083,456 | ---- | M] (Microsoft Corporation) < SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot -> < CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom -> "AutoRun" -> 1 -> "DisplayName" -> Sterownik stacji dysków CD-ROM -> "ImagePath" -> [System32\DRIVERS\cdrom.sys] -> File not found < Drives with AutoRun files > -> -> C:\AUTOEXEC.BAT [] -> C:\AUTOEXEC.BAT [ NTFS ] -> [2011-07-05 14:19:23 | 000,000,000 | ---- | M] () D:\AUTOEXEC.BAT [RESTART=W | ] -> D:\AUTOEXEC.BAT [ NTFS ] -> [2004-05-22 22:47:38 | 000,000,011 | ---- | M] () < MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 -> < Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command -> comfile [open] -> "%1" %* -> exefile [open] -> "%1" %* -> < File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .com [@ = comfile] -> "%1" %* -> .exe [@ = exefile] -> "%1" %* -> [Files/Folders - Created Within 30 Days] trend micro -> C:\Program Files\trend micro -> [2012-04-27 06:19:24 | 000,000,000 | ---D | C] rsit -> C:\rsit -> [2012-04-27 06:19:23 | 000,000,000 | ---D | C] CSC -> C:\WINDOWS\CSC -> [2012-04-26 16:09:15 | 000,000,000 | ---D | C] VS Revo Group -> C:\Program Files\VS Revo Group -> [2012-04-26 15:17:11 | 000,000,000 | ---D | C] Revo Uninstaller -> C:\Documents and Settings\Administrator\Menu Start\Programy\Revo Uninstaller -> [2012-04-26 15:17:11 | 000,000,000 | ---D | C] CatRoot_bak -> C:\WINDOWS\System32\CatRoot_bak -> [2012-04-25 23:10:45 | 000,000,000 | ---D | C] v9Soft -> C:\Program Files\v9Soft -> [2012-04-25 22:30:09 | 000,000,000 | ---D | C] FlashPlayerApp.exe -> C:\WINDOWS\System32\FlashPlayerApp.exe -> [2012-04-25 18:55:18 | 000,418,464 | ---- | C] (Adobe Systems Incorporated) FlashPlayerCPLApp.cpl -> C:\WINDOWS\System32\FlashPlayerCPLApp.cpl -> [2012-04-25 18:55:18 | 000,070,304 | ---- | C] (Adobe Systems Incorporated) pss -> C:\WINDOWS\pss -> [2012-04-23 16:17:23 | 000,000,000 | ---D | C] Akamai -> C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Akamai -> [2012-04-23 06:56:08 | 000,000,000 | ---D | C] msxml6.dll -> C:\WINDOWS\System32\dllcache\msxml6.dll -> [2012-04-22 22:14:45 | 001,306,624 | ---- | C] (Microsoft Corporation) msxml6r.dll -> C:\WINDOWS\System32\dllcache\msxml6r.dll -> [2012-04-22 22:14:45 | 000,089,600 | ---- | C] (Microsoft Corporation) wmvdmoe2.dll -> C:\WINDOWS\System32\dllcache\wmvdmoe2.dll -> [2012-04-22 22:14:43 | 001,001,472 | ---- | C] (Microsoft Corporation) wmspdmoe.dll -> C:\WINDOWS\System32\dllcache\wmspdmoe.dll -> [2012-04-22 22:14:43 | 000,897,024 | ---- | C] (Microsoft Corporation) wmsdmoe2.dll -> C:\WINDOWS\System32\dllcache\wmsdmoe2.dll -> [2012-04-22 22:14:42 | 001,119,744 | ---- | C] (Microsoft Corporation) wmspdmod.dll -> C:\WINDOWS\System32\dllcache\wmspdmod.dll -> [2012-04-22 22:14:42 | 000,485,376 | ---- | C] (Microsoft Corporation) wmpns.dll -> C:\WINDOWS\System32\dllcache\wmpns.dll -> [2012-04-22 22:14:41 | 000,221,184 | ---- | C] (Microsoft Corporation) wmp.dll -> C:\WINDOWS\System32\dllcache\wmp.dll -> [2012-04-22 22:14:40 | 004,874,240 | ---- | C] (Microsoft Corporation) wmpdxm.dll -> C:\WINDOWS\System32\dllcache\wmpdxm.dll -> [2012-04-22 22:14:40 | 000,233,472 | ---- | C] (Microsoft Corporation) wmerror.dll -> C:\WINDOWS\System32\dllcache\wmerror.dll -> [2012-04-22 22:14:40 | 000,190,976 | ---- | C] (Microsoft Corporation) wmidx.dll -> C:\WINDOWS\System32\dllcache\wmidx.dll -> [2012-04-22 22:14:40 | 000,151,552 | ---- | C] (Microsoft Corporation) wmpasf.dll -> C:\WINDOWS\System32\dllcache\wmpasf.dll -> [2012-04-22 22:14:40 | 000,114,688 | ---- | C] (Microsoft Corporation) wmpband.dll -> C:\WINDOWS\System32\dllcache\wmpband.dll -> [2012-04-22 22:14:40 | 000,098,304 | ---- | C] (Microsoft Corporation) sl_anet.acm -> C:\WINDOWS\System32\dllcache\sl_anet.acm -> [2012-04-22 22:14:39 | 000,086,016 | ---- | C] (Sipro Lab Telecom Inc.) migrate.exe -> C:\WINDOWS\System32\dllcache\migrate.exe -> [2012-04-22 22:14:38 | 000,786,432 | ---- | C] (Microsoft Corporation) mp4sdmod.dll -> C:\WINDOWS\System32\dllcache\mp4sdmod.dll -> [2012-04-22 22:14:38 | 000,384,512 | ---- | C] (Microsoft Corporation) mpvis.dll -> C:\WINDOWS\System32\dllcache\mpvis.dll -> [2012-04-22 22:14:38 | 000,368,640 | ---- | C] (Microsoft Corporation) mp43dmod.dll -> C:\WINDOWS\System32\dllcache\mp43dmod.dll -> [2012-04-22 22:14:38 | 000,310,272 | ---- | C] (Microsoft Corporation) msaud32.acm -> C:\WINDOWS\System32\dllcache\msaud32.acm -> [2012-04-22 22:14:38 | 000,294,912 | ---- | C] (Microsoft Corporation) l3codeca.acm -> C:\WINDOWS\System32\dllcache\l3codeca.acm -> [2012-04-22 22:14:38 | 000,290,816 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) mspmsnsv.dll -> C:\WINDOWS\System32\dllcache\mspmsnsv.dll -> [2012-04-22 22:14:38 | 000,052,736 | ---- | C] (Microsoft Corporation) ieencode.dll -> C:\WINDOWS\System32\ieencode.dll -> [2012-04-22 22:14:32 | 000,081,920 | ---- | C] (Microsoft Corporation) custsat.dll -> C:\WINDOWS\System32\dllcache\custsat.dll -> [2012-04-22 22:12:19 | 000,033,792 | ---- | C] (Microsoft Corporation) Adobe Photoshop CS5.1 -> C:\Documents and Settings\Administrator\Adobe Photoshop CS5.1 -> [2012-04-07 17:58:34 | 000,000,000 | ---D | C] com.adobe.downloadassistant.AdobeDownloadAssistant -> C:\Documents and Settings\Administrator\Dane aplikacji\com.adobe.downloadassistant.AdobeDownloadAssistant -> [2012-04-07 17:57:19 | 000,000,000 | ---D | C] Adobe Download Assistant -> C:\Program Files\Adobe Download Assistant -> [2012-04-07 17:57:11 | 000,000,000 | ---D | C] Adobe AIR -> C:\Program Files\Common Files\Adobe AIR -> [2012-04-07 17:57:06 | 000,000,000 | ---D | C] Lost Marble -> C:\Documents and Settings\Administrator\Dane aplikacji\Lost Marble -> [2012-04-07 17:35:38 | 000,000,000 | ---D | C] Smith Micro -> C:\Documents and Settings\All Users\Menu Start\Programy\Smith Micro -> [2012-04-07 17:35:20 | 000,000,000 | ---D | C] Smith Micro -> C:\Program Files\Smith Micro -> [2012-04-07 17:35:10 | 000,000,000 | ---D | C] Avira -> C:\Documents and Settings\Administrator\Dane aplikacji\Avira -> [2012-03-30 19:15:33 | 000,000,000 | ---D | C] GG dysk -> C:\Documents and Settings\Administrator\GG dysk -> [2012-03-28 16:42:43 | 000,000,000 | --SD | C] GG -> C:\Documents and Settings\All Users\Dane aplikacji\GG -> [2012-03-28 16:41:29 | 000,000,000 | ---D | C] 13 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> 1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> [Files/Folders - Modified Within 30 Days] wpa.dbl -> C:\WINDOWS\System32\wpa.dbl -> [2012-04-27 05:48:57 | 000,013,646 | ---- | M] () bootstat.dat -> C:\WINDOWS\bootstat.dat -> [2012-04-27 05:48:37 | 000,002,048 | --S- | M] () FIX.REG -> C:\Documents and Settings\Administrator\Pulpit\FIX.REG -> [2012-04-26 18:03:44 | 000,000,150 | ---- | M] () perfh015.dat -> C:\WINDOWS\System32\perfh015.dat -> [2012-04-26 17:51:51 | 000,417,910 | ---- | M] () perfh009.dat -> C:\WINDOWS\System32\perfh009.dat -> [2012-04-26 17:51:51 | 000,363,870 | ---- | M] () perfc015.dat -> C:\WINDOWS\System32\perfc015.dat -> [2012-04-26 17:51:51 | 000,057,026 | ---- | M] () perfc009.dat -> C:\WINDOWS\System32\perfc009.dat -> [2012-04-26 17:51:51 | 000,045,544 | ---- | M] () imsins.BAK -> C:\WINDOWS\imsins.BAK -> [2012-04-26 17:48:15 | 000,003,739 | ---- | M] () DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> [2012-04-26 15:55:18 | 000,031,232 | ---- | M] () Revo Uninstaller.lnk -> C:\Documents and Settings\Administrator\Pulpit\Revo Uninstaller.lnk -> [2012-04-26 15:17:11 | 000,000,917 | ---- | M] () CmiCnfg.ini -> C:\WINDOWS\System\CmiCnfg.ini -> [2012-04-25 19:45:33 | 000,000,463 | ---- | M] () Adobe Flash Player Updater.job -> C:\WINDOWS\tasks\Adobe Flash Player Updater.job -> [2012-04-25 18:55:20 | 000,000,930 | ---- | M] () FlashPlayerApp.exe -> C:\WINDOWS\System32\FlashPlayerApp.exe -> [2012-04-25 18:55:18 | 000,418,464 | ---- | M] (Adobe Systems Incorporated) FlashPlayerCPLApp.cpl -> C:\WINDOWS\System32\FlashPlayerCPLApp.cpl -> [2012-04-25 18:55:18 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) boot.ini -> C:\boot.ini -> [2012-04-23 16:20:24 | 000,000,211 | RHS- | M] () RealUpgradeScheduledTaskS-1-5-21-1935655697-412668190-839522115-500.job -> C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1935655697-412668190-839522115-500.job -> [2012-04-23 12:30:22 | 000,000,302 | ---- | M] () RealUpgradeLogonTaskS-1-5-21-1935655697-412668190-839522115-500.job -> C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1935655697-412668190-839522115-500.job -> [2012-04-23 12:30:22 | 000,000,294 | ---- | M] () WMSysPr9.prx -> C:\WINDOWS\WMSysPr9.prx -> [2012-04-22 22:25:22 | 000,316,640 | ---- | M] () FNTCACHE.DAT -> C:\WINDOWS\System32\FNTCACHE.DAT -> [2012-04-22 22:22:42 | 000,214,472 | ---- | M] () spupdsvc.inf -> C:\WINDOWS\System32\spupdsvc.inf -> [2012-04-22 22:20:16 | 000,006,655 | ---- | M] () User_Feed_Synchronization-{80B16094-681C-4030-8C7E-5D32B6E49CDB}.job -> C:\WINDOWS\tasks\User_Feed_Synchronization-{80B16094-681C-4030-8C7E-5D32B6E49CDB}.job -> [2012-04-22 22:20:00 | 000,000,478 | -H-- | M] () GoogleUpdateTaskMachineUA.job -> C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job -> [2012-04-22 22:12:02 | 000,001,050 | ---- | M] () NTDETECT.COM -> C:\NTDETECT.COM -> [2012-04-22 22:09:39 | 000,047,564 | RHS- | M] () ntldr -> C:\ntldr -> [2012-04-22 22:09:38 | 000,251,152 | RHS- | M] () Scheduled Update for Ask Toolbar.job -> C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job -> [2012-04-22 22:01:00 | 000,000,250 | ---- | M] () GoogleUpdateTaskUserS-1-5-21-1935655697-412668190-839522115-500UA.job -> C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1935655697-412668190-839522115-500UA.job -> [2012-04-22 21:24:00 | 000,001,164 | ---- | M] () GoogleUpdateTaskMachineCore.job -> C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job -> [2012-04-22 20:20:13 | 000,001,046 | ---- | M] () nvapps.xml -> C:\WINDOWS\System32\nvapps.xml -> [2012-04-22 19:12:07 | 000,086,310 | ---- | M] () GoogleUpdateTaskUserS-1-5-21-1935655697-412668190-839522115-500Core.job -> C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1935655697-412668190-839522115-500Core.job -> [2012-04-22 13:24:01 | 000,001,112 | ---- | M] () S1055302 [].JPG -> C:\Documents and Settings\Administrator\Pulpit\S1055302 [].JPG -> [2012-04-14 14:36:55 | 000,053,313 | ---- | M] () Adobe Reader 9.lnk -> C:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk -> [2012-04-14 08:44:50 | 000,001,729 | ---- | M] () GG dysk.lnk -> C:\Documents and Settings\Administrator\Pulpit\GG dysk.lnk -> [2012-03-28 16:42:43 | 000,001,691 | ---- | M] () 3 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> 3 C:\WINDOWS\Temp\*.tmp files -> C:\WINDOWS\Temp\*.tmp -> 193 C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\*.tmp files -> C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\*.tmp -> 193 C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\*.tmp files -> C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\*.tmp -> 193 C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\*.tmp files -> C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\*.tmp -> 13 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> 1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> [Files - No Company Name] FIX.REG -> C:\Documents and Settings\Administrator\Pulpit\FIX.REG -> [2012-04-26 18:03:44 | 000,000,150 | ---- | C] () Revo Uninstaller.lnk -> C:\Documents and Settings\Administrator\Pulpit\Revo Uninstaller.lnk -> [2012-04-26 15:17:11 | 000,000,917 | ---- | C] () Adobe Flash Player Updater.job -> C:\WINDOWS\tasks\Adobe Flash Player Updater.job -> [2012-04-25 18:55:20 | 000,000,930 | ---- | C] () spupdsvc.inf -> C:\WINDOWS\System32\spupdsvc.inf -> [2012-04-22 22:17:39 | 000,006,655 | ---- | C] () wmptour.hta -> C:\WINDOWS\System32\dllcache\wmptour.hta -> [2012-04-22 22:14:42 | 000,010,457 | ---- | C] () wmptour.css -> C:\WINDOWS\System32\dllcache\wmptour.css -> [2012-04-22 22:14:42 | 000,001,771 | ---- | C] () wmpocm.inf -> C:\WINDOWS\System32\dllcache\wmpocm.inf -> [2012-04-22 22:14:42 | 000,001,714 | ---- | C] () wmploc.js -> C:\WINDOWS\System32\dllcache\wmploc.js -> [2012-04-22 22:14:41 | 000,000,420 | ---- | C] () wmplayer.chm -> C:\WINDOWS\System32\dllcache\wmplayer.chm -> [2012-04-22 22:14:40 | 000,693,932 | ---- | C] () wmpaud1.wav -> C:\WINDOWS\System32\dllcache\wmpaud1.wav -> [2012-04-22 22:14:40 | 000,354,468 | ---- | C] () wmpaud7.wav -> C:\WINDOWS\System32\dllcache\wmpaud7.wav -> [2012-04-22 22:14:40 | 000,343,204 | ---- | C] () wmpaud6.wav -> C:\WINDOWS\System32\dllcache\wmpaud6.wav -> [2012-04-22 22:14:40 | 000,343,204 | ---- | C] () wmpaud9.wav -> C:\WINDOWS\System32\dllcache\wmpaud9.wav -> [2012-04-22 22:14:40 | 000,172,196 | ---- | C] () wmpaud8.wav -> C:\WINDOWS\System32\dllcache\wmpaud8.wav -> [2012-04-22 22:14:40 | 000,172,196 | ---- | C] () wmpaud3.wav -> C:\WINDOWS\System32\dllcache\wmpaud3.wav -> [2012-04-22 22:14:40 | 000,172,196 | ---- | C] () wmpaud5.wav -> C:\WINDOWS\System32\dllcache\wmpaud5.wav -> [2012-04-22 22:14:40 | 000,086,196 | ---- | C] () wmpaud4.wav -> C:\WINDOWS\System32\dllcache\wmpaud4.wav -> [2012-04-22 22:14:40 | 000,086,180 | ---- | C] () wmpaud2.wav -> C:\WINDOWS\System32\dllcache\wmpaud2.wav -> [2012-04-22 22:14:40 | 000,086,180 | ---- | C] () wmplayer.adm -> C:\WINDOWS\System32\dllcache\wmplayer.adm -> [2012-04-22 22:14:40 | 000,071,460 | ---- | C] () wmp.inf -> C:\WINDOWS\System32\dllcache\wmp.inf -> [2012-04-22 22:14:40 | 000,058,350 | ---- | C] () wmplay.chm -> C:\WINDOWS\System32\dllcache\wmplay.chm -> [2012-04-22 22:14:40 | 000,027,965 | ---- | C] () wmfsdk.inf -> C:\WINDOWS\System32\dllcache\wmfsdk.inf -> [2012-04-22 22:14:40 | 000,013,540 | ---- | C] () rtuner.wmv -> C:\WINDOWS\System32\dllcache\rtuner.wmv -> [2012-04-22 22:14:39 | 000,572,557 | ---- | C] () nuskin.wmv -> C:\WINDOWS\System32\dllcache\nuskin.wmv -> [2012-04-22 22:14:39 | 000,375,519 | ---- | C] () viz.wmv -> C:\WINDOWS\System32\dllcache\viz.wmv -> [2012-04-22 22:14:39 | 000,300,969 | ---- | C] () plyr_err.chm -> C:\WINDOWS\System32\dllcache\plyr_err.chm -> [2012-04-22 22:14:39 | 000,089,253 | ---- | C] () revert.wmz -> C:\WINDOWS\System32\dllcache\revert.wmz -> [2012-04-22 22:14:39 | 000,066,160 | ---- | C] () wmdm.inf -> C:\WINDOWS\System32\dllcache\wmdm.inf -> [2012-04-22 22:14:39 | 000,034,548 | ---- | C] () tourbg.gif -> C:\WINDOWS\System32\dllcache\tourbg.gif -> [2012-04-22 22:14:39 | 000,023,829 | ---- | C] () npds.zip -> C:\WINDOWS\System32\dllcache\npds.zip -> [2012-04-22 22:14:39 | 000,022,060 | ---- | C] () videobg.gif -> C:\WINDOWS\System32\dllcache\videobg.gif -> [2012-04-22 22:14:39 | 000,017,489 | ---- | C] () wm7.gif -> C:\WINDOWS\System32\dllcache\wm7.gif -> [2012-04-22 22:14:39 | 000,008,677 | ---- | C] () wm9.gif -> C:\WINDOWS\System32\dllcache\wm9.gif -> [2012-04-22 22:14:39 | 000,007,892 | ---- | C] () wm2.gif -> C:\WINDOWS\System32\dllcache\wm2.gif -> [2012-04-22 22:14:39 | 000,007,636 | ---- | C] () wm4.gif -> C:\WINDOWS\System32\dllcache\wm4.gif -> [2012-04-22 22:14:39 | 000,007,369 | ---- | C] () wm3.gif -> C:\WINDOWS\System32\dllcache\wm3.gif -> [2012-04-22 22:14:39 | 000,006,241 | ---- | C] () wm6.gif -> C:\WINDOWS\System32\dllcache\wm6.gif -> [2012-04-22 22:14:39 | 000,006,060 | ---- | C] () wm1.gif -> C:\WINDOWS\System32\dllcache\wm1.gif -> [2012-04-22 22:14:39 | 000,005,789 | ---- | C] () vidsamp.gif -> C:\WINDOWS\System32\dllcache\vidsamp.gif -> [2012-04-22 22:14:39 | 000,005,290 | ---- | C] () wm8.gif -> C:\WINDOWS\System32\dllcache\wm8.gif -> [2012-04-22 22:14:39 | 000,004,193 | ---- | C] () tour.js -> C:\WINDOWS\System32\dllcache\tour.js -> [2012-04-22 22:14:39 | 000,003,187 | ---- | C] () wm5.gif -> C:\WINDOWS\System32\dllcache\wm5.gif -> [2012-04-22 22:14:39 | 000,002,477 | ---- | C] () tplay.gif -> C:\WINDOWS\System32\dllcache\tplay.gif -> [2012-04-22 22:14:39 | 000,002,469 | ---- | C] () tpause.gif -> C:\WINDOWS\System32\dllcache\tpause.gif -> [2012-04-22 22:14:39 | 000,002,450 | ---- | C] () tplayh.gif -> C:\WINDOWS\System32\dllcache\tplayh.gif -> [2012-04-22 22:14:39 | 000,002,375 | ---- | C] () tpauseh.gif -> C:\WINDOWS\System32\dllcache\tpauseh.gif -> [2012-04-22 22:14:39 | 000,002,371 | ---- | C] () skins.inf -> C:\WINDOWS\System32\dllcache\skins.inf -> [2012-04-22 22:14:39 | 000,001,818 | ---- | C] () plylst6.wpl -> C:\WINDOWS\System32\dllcache\plylst6.wpl -> [2012-04-22 22:14:39 | 000,001,482 | ---- | C] () plylst5.wpl -> C:\WINDOWS\System32\dllcache\plylst5.wpl -> [2012-04-22 22:14:39 | 000,001,479 | ---- | C] () plylst3.wpl -> C:\WINDOWS\System32\dllcache\plylst3.wpl -> [2012-04-22 22:14:39 | 000,001,474 | ---- | C] () plylst12.wpl -> C:\WINDOWS\System32\dllcache\plylst12.wpl -> [2012-04-22 22:14:39 | 000,001,471 | ---- | C] () plylst4.wpl -> C:\WINDOWS\System32\dllcache\plylst4.wpl -> [2012-04-22 22:14:39 | 000,001,463 | ---- | C] () taon.gif -> C:\WINDOWS\System32\dllcache\taon.gif -> [2012-04-22 22:14:39 | 000,001,398 | ---- | C] () taonh.gif -> C:\WINDOWS\System32\dllcache\taonh.gif -> [2012-04-22 22:14:39 | 000,001,380 | ---- | C] () taoff.gif -> C:\WINDOWS\System32\dllcache\taoff.gif -> [2012-04-22 22:14:39 | 000,001,380 | ---- | C] () taoffh.gif -> C:\WINDOWS\System32\dllcache\taoffh.gif -> [2012-04-22 22:14:39 | 000,001,367 | ---- | C] () plylst1.wpl -> C:\WINDOWS\System32\dllcache\plylst1.wpl -> [2012-04-22 22:14:39 | 000,001,262 | ---- | C] () snd.htm -> C:\WINDOWS\System32\dllcache\snd.htm -> [2012-04-22 22:14:39 | 000,001,148 | ---- | C] () plylst7.wpl -> C:\WINDOWS\System32\dllcache\plylst7.wpl -> [2012-04-22 22:14:39 | 000,001,046 | ---- | C] () plylst2.wpl -> C:\WINDOWS\System32\dllcache\plylst2.wpl -> [2012-04-22 22:14:39 | 000,001,046 | ---- | C] () plylst8.wpl -> C:\WINDOWS\System32\dllcache\plylst8.wpl -> [2012-04-22 22:14:39 | 000,001,041 | ---- | C] () plylst11.wpl -> C:\WINDOWS\System32\dllcache\plylst11.wpl -> [2012-04-22 22:14:39 | 000,000,825 | ---- | C] () plylst10.wpl -> C:\WINDOWS\System32\dllcache\plylst10.wpl -> [2012-04-22 22:14:39 | 000,000,822 | ---- | C] () plylst13.wpl -> C:\WINDOWS\System32\dllcache\plylst13.wpl -> [2012-04-22 22:14:39 | 000,000,808 | ---- | C] () plylst14.wpl -> C:\WINDOWS\System32\dllcache\plylst14.wpl -> [2012-04-22 22:14:39 | 000,000,792 | ---- | C] () plylst9.wpl -> C:\WINDOWS\System32\dllcache\plylst9.wpl -> [2012-04-22 22:14:39 | 000,000,786 | ---- | C] () plylst15.wpl -> C:\WINDOWS\System32\dllcache\plylst15.wpl -> [2012-04-22 22:14:39 | 000,000,738 | ---- | C] () mdlib.wmv -> C:\WINDOWS\System32\dllcache\mdlib.wmv -> [2012-04-22 22:14:38 | 000,457,607 | ---- | C] () copycd.wmv -> C:\WINDOWS\System32\dllcache\copycd.wmv -> [2012-04-22 22:14:38 | 000,381,425 | ---- | C] () compact.wmz -> C:\WINDOWS\System32\dllcache\compact.wmz -> [2012-04-22 22:14:38 | 000,184,137 | ---- | C] () mplayer2.inf -> C:\WINDOWS\System32\dllcache\mplayer2.inf -> [2012-04-22 22:14:38 | 000,036,644 | ---- | C] () controls.css -> C:\WINDOWS\System32\dllcache\controls.css -> [2012-04-22 22:14:38 | 000,009,585 | ---- | C] () contents.htm -> C:\WINDOWS\System32\dllcache\contents.htm -> [2012-04-22 22:14:38 | 000,008,298 | ---- | C] () controls.js -> C:\WINDOWS\System32\dllcache\controls.js -> [2012-04-22 22:14:38 | 000,006,878 | ---- | C] () events.js -> C:\WINDOWS\System32\dllcache\events.js -> [2012-04-22 22:14:38 | 000,005,971 | ---- | C] () mplogoh.gif -> C:\WINDOWS\System32\dllcache\mplogoh.gif -> [2012-04-22 22:14:38 | 000,002,778 | ---- | C] () mplogo.gif -> C:\WINDOWS\System32\dllcache\mplogo.gif -> [2012-04-22 22:14:38 | 000,002,545 | ---- | C] () cnth.gif -> C:\WINDOWS\System32\dllcache\cnth.gif -> [2012-04-22 22:14:38 | 000,000,773 | ---- | C] () cntd.gif -> C:\WINDOWS\System32\dllcache\cntd.gif -> [2012-04-22 22:14:38 | 000,000,772 | ---- | C] () npdrmv2.zip -> C:\WINDOWS\System32\dllcache\npdrmv2.zip -> [2012-04-22 22:14:38 | 000,000,403 | ---- | C] () bktrh.gif -> C:\WINDOWS\System32\dllcache\bktrh.gif -> [2012-04-22 22:14:37 | 000,000,999 | ---- | C] () cnt.gif -> C:\WINDOWS\System32\dllcache\cnt.gif -> [2012-04-22 22:14:37 | 000,000,773 | ---- | C] () cloapph.gif -> C:\WINDOWS\System32\dllcache\cloapph.gif -> [2012-04-22 22:14:37 | 000,000,760 | ---- | C] () cloapp.gif -> C:\WINDOWS\System32\dllcache\cloapp.gif -> [2012-04-22 22:14:37 | 000,000,717 | ---- | C] () S1055302 [].JPG -> C:\Documents and Settings\Administrator\Pulpit\S1055302 [].JPG -> [2012-04-14 14:36:55 | 000,053,313 | ---- | C] () GG dysk.lnk -> C:\Documents and Settings\Administrator\Pulpit\GG dysk.lnk -> [2012-03-28 16:42:43 | 000,001,691 | ---- | C] () mkzlib.dll -> C:\WINDOWS\System32\mkzlib.dll -> [2011-12-21 21:37:59 | 000,080,384 | ---- | C] () mkunicode.dll -> C:\WINDOWS\System32\mkunicode.dll -> [2011-12-21 21:37:55 | 000,024,576 | ---- | C] () m3jp2k.ini -> C:\WINDOWS\m3jp2k.ini -> [2011-12-16 23:44:35 | 000,000,761 | ---- | C] () mmtvmj.ini -> C:\WINDOWS\mmtvmj.ini -> [2011-12-16 23:44:35 | 000,000,702 | ---- | C] () m3jpeg.ini -> C:\WINDOWS\m3jpeg.ini -> [2011-12-16 23:44:33 | 000,000,714 | ---- | C] () cpuinf32.dll -> C:\WINDOWS\System32\cpuinf32.dll -> [2011-12-16 23:44:22 | 000,019,968 | ---- | C] () unrar.dll -> C:\WINDOWS\System32\unrar.dll -> [2011-12-16 23:44:17 | 000,152,064 | ---- | C] () IVIresizeW7.dll -> C:\WINDOWS\System32\IVIresizeW7.dll -> [2011-11-26 15:52:55 | 000,209,040 | ---- | C] () IVIresizeP6.dll -> C:\WINDOWS\System32\IVIresizeP6.dll -> [2011-11-26 15:52:55 | 000,196,752 | ---- | C] () IVIresizePX.dll -> C:\WINDOWS\System32\IVIresizePX.dll -> [2011-11-26 15:52:55 | 000,192,656 | ---- | C] () IVIresizeA6.dll -> C:\WINDOWS\System32\IVIresizeA6.dll -> [2011-11-26 15:52:54 | 000,204,944 | ---- | C] () IVIresizeM6.dll -> C:\WINDOWS\System32\IVIresizeM6.dll -> [2011-11-26 15:52:54 | 000,196,752 | ---- | C] () IVIresize.dll -> C:\WINDOWS\System32\IVIresize.dll -> [2011-11-26 15:52:54 | 000,024,720 | ---- | C] () psisdecd.dll -> C:\WINDOWS\System32\psisdecd.dll -> [2011-11-26 15:12:17 | 000,363,520 | ---- | C] () iccsigs.dat -> C:\WINDOWS\iccsigs.dat -> [2011-11-09 20:29:05 | 000,039,095 | ---- | C] () shw32.dll -> C:\WINDOWS\System32\shw32.dll -> [2011-11-09 20:29:04 | 000,112,688 | ---- | C] () evrprop.dll -> C:\WINDOWS\System32\evrprop.dll -> [2011-08-24 20:34:38 | 000,207,360 | ---- | C] () xvidcore.dll -> C:\WINDOWS\System32\xvidcore.dll -> [2011-08-24 20:27:02 | 000,644,608 | ---- | C] () libFLAC.dll -> C:\WINDOWS\System32\libFLAC.dll -> [2011-08-24 20:27:02 | 000,258,048 | ---- | C] () fusioncache.dat -> C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\fusioncache.dat -> [2011-08-11 12:44:28 | 000,000,138 | ---- | C] () SETUP32.INI -> C:\WINDOWS\SETUP32.INI -> [2011-07-30 15:25:53 | 000,000,000 | ---- | C] () scmate.ini -> C:\WINDOWS\scmate.ini -> [2011-07-30 11:49:49 | 000,000,048 | ---- | C] () DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> [2011-07-19 18:44:15 | 000,031,232 | ---- | C] () nsreg.dat -> C:\WINDOWS\nsreg.dat -> [2011-07-08 13:37:29 | 000,000,000 | ---- | C] () ODBC.INI -> C:\WINDOWS\ODBC.INI -> [2011-07-06 07:49:50 | 000,000,421 | ---- | C] () ODBCINST.INI -> C:\WINDOWS\ODBCINST.INI -> [2011-07-05 14:49:31 | 000,004,293 | ---- | C] () FNTCACHE.DAT -> C:\WINDOWS\System32\FNTCACHE.DAT -> [2011-07-05 14:37:15 | 000,214,472 | ---- | C] () cmirmdrv.exe -> C:\WINDOWS\System32\cmirmdrv.exe -> [2011-07-05 14:32:01 | 000,233,472 | R--- | C] () cmirmdrv.dll -> C:\WINDOWS\System32\cmirmdrv.dll -> [2011-07-05 14:32:01 | 000,028,672 | R--- | C] () CMISETUP.INI -> C:\WINDOWS\CMISETUP.INI -> [2011-07-05 14:31:56 | 000,000,092 | ---- | C] () CMCDPLAY.INI -> C:\WINDOWS\CMCDPLAY.INI -> [2011-07-05 14:31:55 | 000,000,026 | ---- | C] () Wininit.ini -> C:\WINDOWS\Wininit.ini -> [2011-07-05 14:31:54 | 000,010,926 | ---- | C] () CMIUninstall.exe -> C:\WINDOWS\CMIUninstall.exe -> [2011-07-05 14:31:49 | 000,266,240 | ---- | C] () CmiRmRedundDir.exe -> C:\WINDOWS\CmiRmRedundDir.exe -> [2011-07-05 14:31:49 | 000,225,280 | ---- | C] () CMIRmDriver.dll -> C:\WINDOWS\CMIRmDriver.dll -> [2011-07-05 14:31:49 | 000,028,672 | ---- | C] () Ascd_tmp.ini -> C:\WINDOWS\Ascd_tmp.ini -> [2011-07-05 14:29:08 | 000,003,541 | ---- | C] () ASUSHWIO.SYS -> C:\WINDOWS\System32\drivers\ASUSHWIO.SYS -> [2011-07-05 14:29:06 | 000,005,824 | ---- | C] () bootstat.dat -> C:\WINDOWS\bootstat.dat -> [2011-07-05 14:22:05 | 000,002,048 | --S- | C] () emptyregdb.dat -> C:\WINDOWS\System32\emptyregdb.dat -> [2011-07-05 14:15:42 | 000,023,016 | ---- | C] () whlprd32a.dll -> C:\WINDOWS\System32\whlprd32a.dll -> [2010-08-21 10:11:04 | 000,002,045 | -H-- | C] () [Alternate Data Streams] @Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DBC416F8 @Alternate Data Stream - 85 bytes -> C:\Documents and Settings\Administrator\Pulpit\S1055302 [].JPG:VsoSummaryInformation < End of report > [/code]