OTL logfile created on: 2012-07-06 09:23:27 - Run 3 OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\MZawadzak\Desktop Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 0,63 Gb Available Physical Memory | 31,60% Memory free 4,00 Gb Paging File | 2,47 Gb Available in Paging File | 61,66% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 85,38 Gb Total Space | 61,52 Gb Free Space | 72,06% Space Free | Partition Type: NTFS Drive D: | 32,78 Gb Total Space | 32,69 Gb Free Space | 99,73% Space Free | Partition Type: NTFS Drive E: | 30,89 Gb Total Space | 30,81 Gb Free Space | 99,71% Space Free | Partition Type: NTFS Computer Name: MZAWADZAK-PC | User Name: MZawadzak | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe - (McAfee, Inc.) MsConfig - StartUpReg: [b]Adobe ARM[/b] - hkey= - key= - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) MsConfig - StartUpReg: [b]APVXDWIN[/b] - hkey= - key= - C:\Program Files\Panda Security\Panda Antivirus Pro 2011\APVXDWIN.EXE (Panda Security, S.L.) MsConfig - StartUpReg: [b]e-Kiosk[/b] - hkey= - key= - File not found MsConfig - StartUpReg: [b]Google Update[/b] - hkey= - key= - C:\Users\MZawadzak\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.) MsConfig - StartUpReg: [b]RESTART_STICKY_NOTES[/b] - hkey= - key= - File not found MsConfig - StartUpReg: [b]SCANINICIO[/b] - hkey= - key= - C:\Program Files\Panda Security\Panda Antivirus Pro 2011\Inicio.exe (Panda Security, S.L.) MsConfig - StartUpReg: [b]screenshooter[/b] - hkey= - key= - C:\Program Files\ScreenShooter\screenshooter.exe () MsConfig - StartUpReg: [b]SearchSettings[/b] - hkey= - key= - File not found MsConfig - StartUpReg: [b]Skype[/b] - hkey= - key= - C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) MsConfig - StartUpReg: [b]SoundMan[/b] - hkey= - key= - C:\Windows\SOUNDMAN.EXE (Realtek Semiconductor Corp.) MsConfig - StartUpReg: [b]SunJavaUpdateSched[/b] - hkey= - key= - File not found MsConfig - StartUpReg: [b]wmcodecdspps[/b] - hkey= - key= - C:\Users\MZawadzak\AppData\Local\Microsoft\Windows\3720\wmcodecdspps.exe () MsConfig - State: "startup" - 2 MsConfig - State: "services" - 2 [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-05 16:17:36 | 000,000,000 | ---D | C] -- C:\Users\MZawadzak\Desktop\Rozne z pulpitu [2012-07-05 15:34:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [2012-07-05 15:34:55 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2012-07-05 15:34:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome [2012-07-05 15:33:47 | 000,000,000 | ---D | C] -- C:\Program Files\Google [2012-07-05 13:50:31 | 000,000,000 | ---D | C] -- C:\Windows\pss [2012-07-05 13:26:15 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Users\MZawadzak\Desktop\OTL.exe [2012-07-05 12:56:43 | 000,000,000 | ---D | C] -- C:\Users\MZawadzak\AppData\Roaming\hellomoto [2012-07-05 08:39:43 | 000,000,000 | ---D | C] -- C:\Program Files\pdfforge Toolbar [2012-07-05 08:39:43 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater [2012-06-25 09:27:37 | 000,000,000 | ---D | C] -- C:\Users\MZawadzak\AppData\Local\Macromedia [2012-06-21 07:31:26 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll [2012-06-21 07:31:25 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll [2012-06-21 07:31:04 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll [2012-06-21 07:31:04 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll [2012-06-21 07:31:04 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll [2012-06-21 07:30:45 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll [2012-06-21 07:30:45 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe [2012-06-18 08:33:46 | 000,627,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll [2012-06-18 08:33:42 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll [2012-06-18 08:33:41 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll [2012-06-18 08:33:41 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll [2012-06-18 08:33:40 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb [2012-06-18 08:33:18 | 002,343,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys [2012-06-18 08:33:16 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorekmts.dll [2012-06-18 08:33:15 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpwsx.dll [2012-06-18 08:33:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdrmemptylst.exe [2 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-06 08:56:03 | 000,001,036 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2012-07-06 08:53:45 | 000,787,364 | ---- | M] () -- C:\Users\MZawadzak\Desktop\RockXP4.exe [2012-07-06 08:50:34 | 000,013,456 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012-07-06 08:50:34 | 000,013,456 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012-07-06 08:41:18 | 000,002,562 | ---- | M] () -- C:\Windows\diagwrn.xml [2012-07-06 08:41:18 | 000,001,908 | ---- | M] () -- C:\Windows\diagerr.xml [2012-07-06 08:41:02 | 000,001,074 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3281874784-1283881079-2582111724-1000UA.job [2012-07-06 08:41:01 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2012-07-06 08:15:35 | 000,001,038 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2012-07-06 08:15:13 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012-07-06 08:15:07 | 1610,260,480 | -HS- | M] () -- C:\hiberfil.sys [2012-07-05 16:03:52 | 000,697,674 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2012-07-05 16:03:52 | 000,615,810 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2012-07-05 16:03:52 | 000,134,784 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2012-07-05 16:03:52 | 000,106,190 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2012-07-05 15:34:56 | 000,000,969 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk [2012-07-05 15:34:51 | 000,002,205 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2012-07-05 13:26:15 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\MZawadzak\Desktop\OTL.exe [2012-07-03 14:41:11 | 000,001,022 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3281874784-1283881079-2582111724-1000Core.job [2012-06-25 08:42:01 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe [2012-06-25 08:42:01 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2012-06-19 08:19:16 | 000,292,352 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2 C:\Program Files\*.tmp files -> C:\Program Files\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-06 08:53:43 | 000,787,364 | ---- | C] () -- C:\Users\MZawadzak\Desktop\RockXP4.exe [2012-07-06 08:39:02 | 000,002,562 | ---- | C] () -- C:\Windows\diagwrn.xml [2012-07-06 08:39:02 | 000,001,908 | ---- | C] () -- C:\Windows\diagerr.xml [2012-07-05 15:51:03 | 000,001,036 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2012-07-05 15:34:56 | 000,000,969 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk [2012-07-05 15:34:51 | 000,002,205 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2012-07-05 15:33:51 | 000,001,038 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2012-02-09 14:23:50 | 000,002,092 | ---- | C] () -- C:\Users\MZawadzak\.recently-used.xbel [2011-07-12 12:57:50 | 000,116,224 | ---- | C] () -- C:\Windows\System32\pdfcmnnt.dll [2011-06-14 09:13:32 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe [2011-04-22 12:38:33 | 000,000,250 | ---- | C] () -- C:\Windows\System32\PavCPL.dat [2011-04-14 17:28:47 | 000,000,600 | ---- | C] () -- C:\Users\MZawadzak\AppData\Local\PUTTY.RND [2011-03-17 14:59:10 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI [2011-02-21 10:32:19 | 000,000,056 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat [2011-02-21 09:38:42 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2011-02-18 15:21:24 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2011-02-18 15:21:24 | 000,000,000 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat < End of report >