OTL logfile created on: 2010-09-30 15:24:57 - Run 2 OTL by OldTimer - Version 3.2.14.1 Folder = C:\Documents and Settings\user\Pulpit Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 66.00% Memory free 4.00 Gb Paging File | 3.00 Gb Available in Paging File | 87.00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48.83 Gb Total Space | 15.65 Gb Free Space | 32.05% Space Free | Partition Type: NTFS Drive D: | 124.63 Gb Total Space | 69.22 Gb Free Space | 55.54% Space Free | Partition Type: NTFS Drive E: | 124.63 Gb Total Space | 67.35 Gb Free Space | 54.04% Space Free | Partition Type: NTFS F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: NAZWISKO-911D35 Current User Name: user Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2010-09-28 19:34:20 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\user\Pulpit\OTL.exe PRC - [2010-09-13 01:09:56 | 012,653,152 | ---- | M] (GG Network S.A.) -- C:\Program Files\Gadu-Gadu 10\gg.exe PRC - [2010-09-07 17:12:02 | 002,838,912 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe PRC - [2010-09-07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe PRC - [2010-05-19 12:11:32 | 002,938,552 | ---- | M] () -- C:\Program Files\Pando Networks\Media Booster\PMB.exe PRC - [2010-02-05 08:51:14 | 000,497,456 | ---- | M] (ShenZhen Xunlei Networking Technologies,LTD) -- C:\Program Files\Thunder Network\Thunder\Program\ThunderLiveUD.exe PRC - [2009-11-07 11:49:11 | 000,323,392 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\DNA\btdna.exe PRC - [2009-03-05 16:07:20 | 002,260,480 | RHS- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe PRC - [2008-04-15 14:00:00 | 001,883,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-06-01 10:21:30 | 001,209,904 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe PRC - [2007-06-01 10:21:08 | 000,153,136 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe PRC - [2006-10-10 15:11:08 | 000,827,392 | ---- | M] () -- C:\WINDOWS\vsnp325.exe PRC - [2005-03-17 15:25:54 | 000,057,393 | ---- | M] (ScanSoft, Inc.) -- C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe PRC - [2002-09-29 15:41:00 | 000,090,112 | ---- | M] (Y'z@Home) -- C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe PRC - [2002-04-12 01:00:00 | 000,057,344 | ---- | M] (brother Industries Ltd) -- C:\WINDOWS\system32\brsvc01a.exe PRC - [2001-12-13 01:01:00 | 000,045,056 | ---- | M] (brother Industries Ltd) -- C:\WINDOWS\system32\brss01a.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-09-28 19:34:20 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\user\Pulpit\OTL.exe MOD - [2008-04-15 14:00:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx MOD - [2002-09-29 15:41:00 | 000,057,344 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe -- (CLTNetCnService) SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt) SRV - [2010-09-23 15:01:45 | 002,950,744 | ---- | M] () [Auto | Running] -- c:\Program Files\Common Files\Akamai\netsession_win_062a651.dll -- (Akamai) SRV - [2010-09-07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner) SRV - [2010-09-07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner) SRV - [2010-09-07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus) SRV - [2009-12-16 19:26:00 | 003,453,712 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS\System32\GameMon.des -- (npggsvc) SRV - [2002-04-12 01:00:00 | 000,057,344 | ---- | M] (brother Industries Ltd) [Auto | Running] -- C:\WINDOWS\system32\brsvc01a.exe -- (Brother XP spl Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- F:\FXDrv32.sys -- (FXDrv32) DRV - [2010-09-07 16:52:25 | 000,046,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2010-09-07 16:52:03 | 000,165,584 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP) DRV - [2010-09-07 16:47:46 | 000,023,376 | ---- | M] (AVAST Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2010-09-07 16:47:19 | 000,100,176 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2) DRV - [2010-09-07 16:47:07 | 000,017,744 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2010-09-07 16:46:51 | 000,028,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4) DRV - [2010-09-06 22:46:27 | 000,025,544 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2009-07-28 22:25:47 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc) DRV - [2009-03-27 02:16:28 | 000,012,672 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cpuz132_x32.sys -- (cpuz132) DRV - [2009-01-14 12:10:11 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2008-04-17 10:33:00 | 004,707,328 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2008-04-15 14:00:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-04-14 00:10:28 | 000,034,688 | ---- | M] (Toshiba Corp.) [Kernel | System | Stopped] -- C:\WINDOWS\System32\drivers\lbrtfdc.sys -- (lbrtfdc) DRV - [2008-02-12 03:42:38 | 000,232,472 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VMM.sys -- (vmm) DRV - [2008-02-05 01:50:44 | 000,059,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VMNetSrv.sys -- (VPCNetS2) DRV - [2008-01-03 16:10:16 | 000,105,856 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-06-28 18:43:00 | 006,807,328 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2007-04-03 14:55:26 | 010,251,904 | ---- | M] (Sonix Co. Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp325.sys -- (SNP325) USB PC Camera (SNPSTD325) DRV - [2005-12-29 16:45:36 | 000,029,765 | ---- | M] (Compuware Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\FT31B2.sys -- (FT31B2) DRV - [2005-11-03 16:40:07 | 000,063,488 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfvfs02.sys -- (sfvfs02) StarForce Protection VFS Driver (version 2.x) DRV - [2005-10-13 15:46:08 | 000,035,328 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfsync03.sys -- (sfsync03) StarForce Protection Synchronization Driver (version 3.x) DRV - [2005-08-10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x) DRV - [2005-05-16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x) DRV - [2004-10-15 13:50:20 | 000,015,295 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BrScnUsb.sys -- (BrScnUsb) DRV - [2001-08-17 23:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1202660629-152049171-1417001333-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-1202660629-152049171-1417001333-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1202660629-152049171-1417001333-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = socks= [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "" FF - prefs.js..browser.search.order.1: "" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3 FF - prefs.js..extensions.enabledItems: piclens@cooliris.com:1.11.6 FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.6.7 FF - prefs.js..extensions.enabledItems: {5EB37AE4-DA0A-41ab-8037-BDEDDCC70669}:1.0 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: pl@dictionaries.addons.mozilla.org:1.0.20091103 FF - prefs.js..extensions.enabledItems: {2f17f610-5e97-4fed-828f-9940b7b577a4}:1.4.8 FF - prefs.js..extensions.enabledItems: personas@christopher.beard:1.5.2 FF - prefs.js..extensions.enabledItems: {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}:1.3 FF - prefs.js..extensions.enabledItems: {888d99e7-e8b5-46a3-851e-1ec45da1e644}:3.6.2 FF - prefs.js..extensions.enabledItems: pencil@evolus.vn:1.0.6 FF - prefs.js..extensions.enabledItems: {5c8bfb7c-9a54-11dc-8314-0800200c9a66}:3.6.3 FF - prefs.js..extensions.enabledItems: {239c61a8-e55f-11db-8314-0800200c9a66}:2.1.4 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-09-19 21:29:30 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-09-19 21:29:30 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.24\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2010-05-11 21:50:11 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 2.0.0.24\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2008-12-01 16:16:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Extensions [2010-04-10 18:42:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions [2010-04-05 16:04:26 | 000,000,000 | ---D | M] (BlackX) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{239c61a8-e55f-11db-8314-0800200c9a66} [2010-04-06 17:23:37 | 000,000,000 | ---D | M] (TV-Fox) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{2f17f610-5e97-4fed-828f-9940b7b577a4} [2010-04-05 23:00:34 | 000,000,000 | ---D | M] (Aero Fox) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66} [2010-04-06 17:38:50 | 000,000,000 | ---D | M] (ReloadEvery) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{888d99e7-e8b5-46a3-851e-1ec45da1e644} [2009-08-20 17:34:59 | 000,000,000 | ---D | M] (The Pirate Bay Toolbar) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{a33fa729-d155-4b23-842b-2c665ecabdb6} [2010-04-05 23:00:26 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-04-05 23:00:42 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389} [2009-03-12 21:13:23 | 000,000,000 | ---D | M] (OggX (powered by TIME S.A.)) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{eaf8a4ef-d221-45ca-9deb-d0934b45fa34} [2010-04-06 17:28:26 | 000,000,000 | ---D | M] (FoxTab) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a} [2010-04-06 17:38:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\pencil@evolus.vn [2010-04-06 17:28:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\personas@christopher.beard [2010-04-05 16:08:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\piclens@cooliris.com [2010-04-05 23:00:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\pl@dictionaries.addons.mozilla.org [2010-05-05 17:02:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\mac\browser\extensions [2010-05-05 17:02:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\mac\mozapps\extensions [2010-05-05 17:02:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\win\browser\extensions [2010-04-05 23:00:35 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\xtcv1p52.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\win\mozapps\extensions [2010-09-19 21:39:50 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2009-03-20 21:56:18 | 000,000,000 | ---D | M] (flashget Extension) -- C:\Program Files\Mozilla Firefox\extensions\{5EB37AE4-DA0A-41ab-8037-BDEDDCC70669} [2008-07-25 10:31:48 | 000,028,672 | ---- | M] (flashget) -- C:\Program Files\Mozilla Firefox\components\flashgetXpi.dll [2010-02-05 08:50:28 | 000,079,664 | ---- | M] (ShenZhen Xunlei Networking Technologies,LTD) -- C:\Program Files\Mozilla Firefox\components\ThunderComponent.dll [2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2010-09-30 15:20:08 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (IE7Pro BHO) - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\IEPro.dll (IE7Pro.com) O2 - BHO: (ThunderAtOnce Class) - {01443AEC-0FD1-40fd-9C87-E93D1494C233} - C:\Program Files\Thunder Network\Thunder\ComDlls\TDAtOnce_Now.dll (深圳市迅雷网络技术有限公司) O2 - BHO: (FG2CatchUrl) - {1F364306-AA45-47B5-9F9D-39A8B94E7EF1} - C:\Program Files\FlashGet Network\FlashGet universal\ComDlls\bhoCATCH.dll (FlashGet) O2 - BHO: (DetectAddin Class) - {2D90D33C-DE76-42D0-9040-E4466DDC24AC} - C:\Program Files\Thunder Network\Thunder\Program\EmbedDetectNow.dll (Xunlei) O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (no name) - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - No CLSID value found. O2 - BHO: (Thunder Browser Helper) - {889D2FEB-5411-4565-8998-1DD2C5261283} - C:\Program Files\Thunder Network\Thunder\ComDlls\xunleiBHO_Now.dll (深圳市迅雷网络技术有限公司) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll (Google Inc.) O2 - BHO: (ChromeFrame BHO) - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files\Google\Chrome Frame\Application\6.0.472.63\npchrome_frame.dll (Google Inc.) O2 - BHO: (no name) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - No CLSID value found. O2 - BHO: (SimpleAdblock Class) - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Common Files\Simple Adblock\SimpleAdblock.dll (Simple Adblock) O4 - HKLM..\Run: [AceGain LiveUpdate] C:\Program Files\AceGain\LiveUpdate\LiveUpdate.exe () O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software) O4 - HKLM..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe (ScanSoft, Inc.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe (ScanSoft, Inc.) O4 - HKLM..\Run: [snp325] C:\WINDOWS\vsnp325.exe () O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Scansoft, Inc.) O4 - HKU\S-1-5-21-1202660629-152049171-1417001333-1004..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG) O4 - HKU\S-1-5-21-1202660629-152049171-1417001333-1004..\Run: [BitTorrent DNA] C:\Program Files\DNA\btdna.exe (BitTorrent, Inc.) O4 - HKU\S-1-5-21-1202660629-152049171-1417001333-1004..\Run: [Gadu-Gadu 10] C:\Program Files\Gadu-Gadu 10\gg.exe (GG Network S.A.) O4 - HKU\S-1-5-21-1202660629-152049171-1417001333-1004..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe () O4 - HKU\S-1-5-21-1202660629-152049171-1417001333-1004..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.) O4 - HKU\S-1-5-21-1202660629-152049171-1417001333-1004..\Run: [Thunder] C:\Program Files\Thunder Network\Thunder\Program\Thunder.exe (深圳市迅雷网络技术有限公司) O4 - Startup: C:\Documents and Settings\user\Pulpit\Inne\Autostart\Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe (Y'z@Home) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1202660629-152049171-1417001333-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: &Download by FlashGet - C:\Program Files\FlashGet Network\FlashGet universal\ComDlls\Bholink.htm () O8 - Extra context menu item: 使用迅雷下载 - C:\Program Files\Thunder Network\Thunder\Program\geturl.htm () O8 - Extra context menu item: 使用迅雷下载全部链接 - C:\Program Files\Thunder Network\Thunder\Program\getAllurl.htm () O9 - Extra Button: IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Program Files\IEPro\IEPro.dll (IE7Pro.com) O9 - Extra 'Tools' menuitem : IE7Pro Grab and Drag - {000002a3-84fe-43f1-b958-f2c3ca804f1a} - C:\Program Files\IEPro\IEPro.dll (IE7Pro.com) O9 - Extra Button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\IEPro.dll (IE7Pro.com) O9 - Extra 'Tools' menuitem : IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\IEPro.dll (IE7Pro.com) O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\user\Menu Start\Programy\IMVU\Run IMVU.lnk File not found O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O18 - Protocol\Handler\cf - No CLSID value found O18 - Protocol\Handler\gcf {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files\Google\Chrome Frame\Application\6.0.472.63\npchrome_frame.dll (Google Inc.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\ACD Hintergrund.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\ACD Hintergrund.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-10-14 10:55:34 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010-09-30 15:19:16 | 000,000,000 | ---D | C] -- C:\_OTL [2010-09-28 19:33:33 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\user\Pulpit\OTL.exe [2010-09-28 17:39:39 | 612,601,856 | ---- | C] (Gameforge4D ) -- C:\Documents and Settings\user\Pulpit\4Story_PL_3.3.29.exe [2010-09-28 17:38:50 | 000,344,496 | ---- | C] (Gameforge 4D ) -- C:\Documents and Settings\user\Pulpit\Downloader_4Story_pl_3.3.29.exe [2010-09-26 15:06:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Moje dokumenty\Total Overdose [2010-09-23 15:59:15 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\user\Recent [2010-09-22 17:49:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Dane aplikacji\Ashampoo [2010-09-22 17:49:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\ashampoo [2010-09-22 17:49:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ashampoo [2010-09-18 15:39:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Pulpit\sacamhack12 [2010-09-17 20:58:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Dane aplikacji\Malwarebytes [2010-09-17 20:58:40 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-09-17 20:58:39 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2010-09-17 20:58:39 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2010-09-17 20:58:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-09-17 20:39:29 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy [2010-09-17 20:39:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy [2010-09-16 16:55:24 | 000,034,688 | ---- | C] (Toshiba Corp.) -- C:\WINDOWS\System32\drivers\lbrtfdc.sys [2010-09-16 16:55:24 | 000,034,688 | ---- | C] (Toshiba Corp.) -- C:\WINDOWS\System32\dllcache\lbrtfdc.sys [2010-09-16 16:54:56 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\changer.sys [2010-09-16 16:54:56 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\changer.sys [2010-09-14 19:58:32 | 000,000,000 | ---D | C] -- C:\Program Files\PlayReady [2010-09-08 18:13:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\My Games [2010-09-08 18:13:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Games [2010-09-06 22:46:27 | 000,000,000 | ---D | C] -- C:\Program Files\Hamachi [2010-09-05 13:00:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\uninstall [2010-09-03 19:29:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\user\Dane aplikacji\DigiPen [2010-01-05 16:45:12 | 000,147,456 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnp325.dll [2010-01-05 16:45:12 | 000,061,440 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnpx32.dll [2008-10-31 16:46:34 | 000,061,440 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnp325.dll [2008-10-31 16:46:34 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp325.dll [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010-09-30 15:27:00 | 000,000,432 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{F4818BCC-8437-4B44-9EFB-526A4C68BC99}.job [2010-09-30 15:26:12 | 000,000,460 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{8607B172-8810-4256-88A7-3D8BFB8A399D}.job [2010-09-30 15:21:59 | 000,000,972 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job [2010-09-30 15:21:39 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2010-09-30 15:21:39 | 000,000,432 | ---- | M] () -- C:\WINDOWS\tasks\SLOW-PCfighter.job [2010-09-30 15:21:39 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-09-30 15:21:33 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-09-30 15:20:20 | 010,485,760 | -H-- | M] () -- C:\Documents and Settings\user\NTUSER.DAT [2010-09-30 15:20:08 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts [2010-09-30 15:09:01 | 000,001,128 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1202660629-152049171-1417001333-1004UA.job [2010-09-30 15:03:18 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-09-29 20:38:38 | 612,601,856 | ---- | M] (Gameforge4D ) -- C:\Documents and Settings\user\Pulpit\4Story_PL_3.3.29.exe [2010-09-29 19:54:00 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2010-09-29 18:53:29 | 000,000,372 | ---- | M] () -- C:\Documents and Settings\user\Moje dokumenty\spider.sav [2010-09-29 15:55:13 | 000,074,677 | ---- | M] () -- C:\Documents and Settings\user\Pulpit\komix.jpg [2010-09-29 15:52:54 | 002,696,230 | ---- | M] () -- C:\Documents and Settings\user\Pulpit\komix.bmp [2010-09-29 15:34:58 | 000,000,582 | ---- | M] () -- C:\Documents and Settings\user\Pulpit\aac_hiphop.pls [2010-09-28 22:09:00 | 000,001,076 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1202660629-152049171-1417001333-1004Core.job [2010-09-28 19:35:33 | 000,293,376 | ---- | M] () -- C:\Documents and Settings\user\Pulpit\is95kd9h.exe [2010-09-28 19:34:20 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\user\Pulpit\OTL.exe [2010-09-28 19:16:20 | 003,855,377 | ---- | M] () -- C:\Documents and Settings\user\Pulpit\ComboFix.exe [2010-09-28 17:38:56 | 000,344,496 | ---- | M] (Gameforge 4D ) -- C:\Documents and Settings\user\Pulpit\Downloader_4Story_pl_3.3.29.exe [2010-09-26 21:33:53 | 000,000,278 | ---- | M] () -- C:\Documents and Settings\user\Pulpit\aac_country.pls [2010-09-26 10:31:27 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2010-09-25 17:17:47 | 000,138,184 | ---- | M] () -- C:\WINDOWS\System32\drivers\pnkbstrk.sys [2010-09-18 14:08:49 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\user\ntuser.ini [2010-09-18 13:46:39 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2010-09-17 18:14:32 | 006,291,456 | -H-- | M] () -- C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-09-10 16:57:55 | 000,029,696 | ---- | M] () -- C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-09-08 14:58:04 | 000,002,645 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010-09-07 17:12:17 | 000,038,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr [2010-09-07 17:11:54 | 000,167,592 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe [2010-09-07 16:52:25 | 000,046,672 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys [2010-09-07 16:52:03 | 000,165,584 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys [2010-09-07 16:47:46 | 000,023,376 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys [2010-09-07 16:47:19 | 000,100,176 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys [2010-09-07 16:47:16 | 000,094,544 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys [2010-09-07 16:47:07 | 000,017,744 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys [2010-09-07 16:46:51 | 000,028,880 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys [2010-09-06 22:46:27 | 000,025,544 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-09-29 18:53:29 | 000,000,372 | ---- | C] () -- C:\Documents and Settings\user\Moje dokumenty\spider.sav [2010-09-29 15:55:13 | 000,074,677 | ---- | C] () -- C:\Documents and Settings\user\Pulpit\komix.jpg [2010-09-29 15:52:54 | 002,696,230 | ---- | C] () -- C:\Documents and Settings\user\Pulpit\komix.bmp [2010-09-29 15:34:58 | 000,000,582 | ---- | C] () -- C:\Documents and Settings\user\Pulpit\aac_hiphop.pls [2010-09-28 19:35:28 | 000,293,376 | ---- | C] () -- C:\Documents and Settings\user\Pulpit\is95kd9h.exe [2010-09-28 19:14:51 | 003,855,377 | ---- | C] () -- C:\Documents and Settings\user\Pulpit\ComboFix.exe [2010-09-26 21:33:53 | 000,000,278 | ---- | C] () -- C:\Documents and Settings\user\Pulpit\aac_country.pls [2010-09-18 13:46:39 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2010-09-11 17:29:13 | 000,072,120 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-09-08 17:59:45 | 000,765,952 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2010-09-08 17:59:45 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2010-09-08 17:59:45 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\xvid.ax [2010-06-22 20:39:06 | 000,001,536 | ---- | C] () -- C:\WINDOWS\System32\drivers\GameNT.sys [2010-06-10 20:26:46 | 000,000,082 | ---- | C] () -- C:\WINDOWS\mafosav.INI [2010-06-10 19:55:43 | 000,000,096 | ---- | C] () -- C:\WINDOWS\forevermopt.INI [2010-06-09 16:30:02 | 000,139,152 | ---- | C] () -- C:\Documents and Settings\user\Dane aplikacji\PnkBstrK.sys [2010-06-09 16:26:43 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\leverage.drm.log [2010-04-15 23:13:27 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\AVSredirect.dll [2010-04-14 22:51:57 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\PUTTY.RND [2010-04-14 19:39:32 | 001,589,248 | ---- | C] () -- C:\WINDOWS\System32\libmysql_d.dll [2010-03-15 18:39:13 | 000,000,262 | ---- | C] () -- C:\WINDOWS\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini [2010-01-18 20:52:18 | 000,000,066 | ---- | C] () -- C:\WINDOWS\#1 Video Converter.INI [2010-01-06 15:54:15 | 000,000,319 | ---- | C] () -- C:\WINDOWS\game.ini [2010-01-05 16:45:15 | 000,015,498 | ---- | C] () -- C:\WINDOWS\snp325.ini [2009-11-22 15:19:14 | 000,000,065 | ---- | C] () -- C:\WINDOWS\SimpleAdblock.ini [2009-10-25 21:43:21 | 000,006,528 | ---- | C] () -- C:\WINDOWS\System32\drivers\keyboardwd.sys [2009-07-05 11:45:00 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll [2009-06-19 20:06:22 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll [2009-05-09 13:00:46 | 000,000,083 | ---- | C] () -- C:\WINDOWS\WWP.INI [2009-04-25 20:27:37 | 000,076,407 | ---- | C] () -- C:\Documents and Settings\user\Dane aplikacji\Smiley.ico [2009-04-05 15:12:54 | 000,000,016 | ---- | C] () -- C:\WINDOWS\WININIT.INI [2009-03-13 19:43:35 | 000,000,033 | ---- | C] () -- C:\WINDOWS\GunzLauncher.INI [2009-03-02 11:58:43 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2009-02-04 18:48:34 | 001,970,176 | ---- | C] () -- C:\WINDOWS\System32\d3dx9.dll [2009-01-14 12:10:11 | 000,717,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2008-12-20 18:35:03 | 000,001,937 | ---- | C] () -- C:\WINDOWS\CDPLAYER.INI [2008-12-18 18:59:34 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2008-11-25 16:16:59 | 000,000,026 | ---- | C] () -- C:\WINDOWS\ms_games.ini [2008-11-16 15:29:19 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2008-11-03 17:23:28 | 000,138,184 | ---- | C] () -- C:\WINDOWS\System32\drivers\pnkbstrk.sys [2008-11-03 17:06:59 | 000,000,462 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI [2008-11-03 17:06:59 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini [2008-11-03 17:06:59 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI [2008-11-03 17:05:29 | 000,000,822 | ---- | C] () -- C:\WINDOWS\Brpfx04a.ini [2008-11-03 17:05:29 | 000,000,153 | ---- | C] () -- C:\WINDOWS\brpcfx.ini [2008-11-03 17:04:05 | 000,027,019 | ---- | C] () -- C:\WINDOWS\maxlink.ini [2008-11-02 15:52:37 | 000,069,632 | R--- | C] () -- C:\WINDOWS\System32\xmltok.dll [2008-11-02 15:52:37 | 000,036,864 | R--- | C] () -- C:\WINDOWS\System32\xmlparse.dll [2008-11-01 14:06:06 | 000,029,696 | ---- | C] () -- C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2008-10-14 11:27:16 | 000,003,972 | ---- | C] () -- C:\WINDOWS\System32\drivers\PciBus.sys [2007-06-28 18:43:00 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2007-06-28 18:43:00 | 001,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2007-06-28 18:43:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2007-06-28 18:43:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2007-06-28 18:43:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2002-03-04 11:16:34 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Jpeg32.dll [1998-09-26 04:04:10 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll [color=#E56717]========== LOP Check ==========[/color] [2010-09-18 13:47:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\ACD Systems [2010-09-18 14:20:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Opera [2008-11-09 12:48:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\4186 [2010-06-09 16:27:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AA3DeployClient [2009-02-19 17:52:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ACD Systems [2009-07-03 18:10:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Age of Empires 3 [2010-05-16 09:37:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-09-22 17:49:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ashampoo [2010-04-11 09:33:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Damian Pasternak [2009-11-28 16:04:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DFX [2009-08-03 21:51:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Fighters [2010-02-27 13:22:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-09-08 18:13:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Games [2010-09-14 20:00:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2009-11-12 15:47:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-08-05 19:09:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Last.fm [2008-10-31 20:16:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe [2009-11-19 17:27:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ludia [2010-04-24 16:18:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2010-05-15 20:01:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2008-11-03 17:03:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-03-25 17:34:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Solidshield [2010-01-21 15:52:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-08-03 13:10:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Thunder Network [2008-11-08 20:38:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} [2009-09-22 19:42:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\ACD Systems [2009-06-09 20:51:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\BITS [2009-02-09 21:01:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\COWON [2008-11-22 23:32:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\Gadu-Gadu [2010-07-19 19:30:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\Gadu-Gadu 10 [2009-12-22 21:18:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\IEPro [2009-03-05 15:20:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\Nowe Gadu-Gadu [2009-03-30 19:32:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\ScanSoft [2010-06-28 11:37:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\Simple Adblock [2008-11-30 22:49:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\Thunderbird [2009-12-04 20:32:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Anita\Dane aplikacji\ViGlance [2009-09-25 16:38:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\ACD Systems [2009-04-19 18:15:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\AutoUpdate [2009-01-14 18:17:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\COWON [2009-01-14 12:10:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\DAEMON Tools [2009-04-17 21:52:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\Gadu-Gadu [2009-04-19 18:15:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\Listonosz [2009-04-17 21:51:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\Nowe Gadu-Gadu [2009-04-19 18:16:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\Onet [2009-07-17 08:43:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\OpenOffice.org [2009-04-18 00:46:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\Opera [2009-03-18 14:34:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Carina Smyreck\Dane aplikacji\ScanSoft [2009-02-19 17:56:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\ACD Systems [2009-12-01 19:01:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Apetito.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2010-09-22 17:49:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Ashampoo [2009-04-19 18:35:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\AutoUpdate [2009-11-06 16:09:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\BESTplayer [2010-01-11 14:03:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\BITS [2009-05-14 21:46:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\City Interactive [2010-08-08 14:19:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\COWON [2009-07-05 15:06:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\DAEMON Tools [2010-09-03 19:29:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\DigiPen [2010-09-30 15:22:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\DNA [2010-04-19 17:27:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\FileZilla [2010-06-11 15:06:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\flightgear.org [2008-10-31 20:37:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Gadu-Gadu [2010-09-11 14:52:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Gadu-Gadu 10 [2009-12-20 16:47:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\GetRightToGo [2009-05-14 21:23:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Groove Games [2009-07-17 10:11:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\HateML [2009-09-12 18:18:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Hide IP NG [2009-11-22 15:49:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\IEPro [2009-03-14 13:14:45 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\user\Dane aplikacji\ijjigame [2010-02-12 13:20:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Imperium Romanum [2010-09-14 20:26:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\ipla [2009-09-27 17:10:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\IVONA Player [2009-10-02 18:51:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Leadertech [2009-04-19 18:35:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Listonosz [2009-11-19 17:27:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Ludia [2009-11-22 15:46:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\MiniDm [2010-03-21 15:43:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Mount&Blade [2010-07-04 15:46:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Mount&Blade Warband [2009-12-12 11:36:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Nowe Gadu-Gadu [2009-08-31 15:10:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\OpenFM [2009-07-11 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\OpenOffice.org [2009-03-14 13:15:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Opera [2010-06-03 12:46:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\RayV [2008-11-04 15:28:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\ScanSoft [2010-09-12 12:06:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Simple Adblock [2010-06-11 19:38:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\smc [2009-09-19 13:15:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Software Informer [2009-02-17 19:51:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Soldat [2009-05-14 21:31:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Tank Combat [2008-11-02 00:16:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Thunderbird [2009-04-14 12:02:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\Trash [2010-07-18 14:27:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\uTorrent [2009-11-23 00:06:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\ViGlance [2010-05-05 17:02:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\user\Dane aplikacji\WhatPulse [2009-08-07 16:43:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ZzzzZzzz\Dane aplikacji\ACD Systems [2008-12-22 21:27:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ZzzzZzzz\Dane aplikacji\Gadu-Gadu [2010-09-30 15:21:39 | 000,000,432 | ---- | M] () -- C:\WINDOWS\Tasks\SLOW-PCfighter.job [2010-09-30 15:26:12 | 000,000,460 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{8607B172-8810-4256-88A7-3D8BFB8A399D}.job [2010-09-30 15:27:00 | 000,000,432 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{F4818BCC-8437-4B44-9EFB-526A4C68BC99}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:671329E4 < End of report >