OTL logfile created on: 7/23/2012 11:19:44 AM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE Microsoft Windows XP Dodatek Service Pack 2 (Version = 5.1.2600) - Type = SYSTEM Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 767.00 Mb Total Physical Memory | 537.00 Mb Available Physical Memory | 70.00% Memory free 703.00 Mb Paging File | 561.00 Mb Available in Paging File | 80.00% Paging File free Paging file location(s): C:\pagefile.sys 1150 1150 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 22.35 Gb Total Space | 15.52 Gb Free Space | 69.45% Space Free | Partition Type: FAT32 Drive D: | 33.53 Gb Total Space | 2.52 Gb Free Space | 7.50% Space Free | Partition Type: NTFS Drive X: | 1.88 Gb Total Space | 1.54 Gb Free Space | 81.93% Space Free | Partition Type: FAT Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days Using ControlSet: ControlSet001 [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto] -- -- (npkcmsvc) SRV - File not found [On_Demand] -- -- (iPod Service) SRV - [2012/07/11 17:17:13 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- D:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012/06/19 11:32:30 | 003,048,136 | ---- | M] (Skype Technologies S.A.) [Auto] -- D:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service) SRV - [2012/06/07 13:12:14 | 000,160,944 | R--- | M] (Skype Technologies) [Auto] -- D:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012/01/31 10:02:52 | 007,391,072 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto] -- D:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent) SRV - [2011/08/04 04:40:56 | 001,003,888 | ---- | M] () [Auto] -- D:\Documents and Settings\Michał\Dane aplikacji\Mikogo 4\M4-Service.exe -- (M4-Service) SRV - [2011/04/21 10:54:38 | 000,352,656 | ---- | M] (IObit) [Auto] -- D:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService) SRV - [2011/02/07 23:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto] -- D:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd) SRV - [2008/04/18 14:39:12 | 000,068,056 | ---- | M] () [Auto] -- D:\Program Files\Hotspot Shield\bin\openvpnas.exe -- (HotspotShieldService) SRV - [2007/12/10 08:59:04 | 000,353,280 | ---- | M] (Nokia.) [On_Demand] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2007/03/02 08:05:56 | 000,081,920 | ---- | M] (FirebirdSQL Project) [Auto] -- D:\Program Files\Firebird\Firebird_2_0\bin\fbguard.exe -- (FirebirdGuardianDefaultInstance) SRV - [2007/03/02 08:05:50 | 001,994,752 | ---- | M] (FirebirdSQL Project) [On_Demand] -- D:\Program Files\Firebird\Firebird_2_0\bin\fbserver.exe -- (FirebirdServerDefaultInstance) SRV - [2005/11/14 19:50:46 | 001,693,448 | ---- | M] (Zone Labs, LLC) [On_Demand] -- D:\WINDOWS\System32\ZoneLabs\vsmon.exe -- (vsmon) SRV - [2004/03/31 11:55:24 | 000,172,544 | ---- | M] (INCA Internet Co., Ltd.) [Auto] -- D:\WINDOWS\system32\npkcsvc.exe -- (npkcsvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand] -- -- (WDICA) DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP) DRV - File not found [Kernel | System] -- -- (PCIDump) DRV - File not found [Kernel | Auto] -- -- (npkcrypt) DRV - File not found [Kernel | Boot] -- -- (ndisrd) DRV - File not found [Kernel | System] -- -- (lbrtfdc) DRV - File not found [Kernel | On_Demand] -- -- (JakNDisMP) DRV - File not found [Kernel | System] -- -- (i2omgmt) DRV - File not found [Kernel | On_Demand] -- -- (EagleNT) DRV - File not found [Kernel | System] -- -- (Changer) DRV - File not found [Kernel | On_Demand] -- -- (catchme) DRV - [2011/05/27 13:05:44 | 000,134,480 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver) DRV - [2011/04/04 18:59:56 | 000,297,168 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System] -- D:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix) DRV - [2011/03/16 10:03:20 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot] -- D:\WINDOWS\system32\drivers\avgrkx86.sys -- (Avgrkx86) DRV - [2011/03/01 08:25:18 | 000,034,896 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System] -- D:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86) DRV - [2011/02/22 02:13:02 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot] -- D:\WINDOWS\system32\drivers\AVGIDSEH.sys -- (AVGIDSEH) DRV - [2011/02/10 01:53:54 | 000,027,216 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim) DRV - [2011/02/10 01:53:52 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter) DRV - [2011/01/07 00:41:46 | 000,248,656 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System] -- D:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86) DRV - [2010/07/28 19:25:42 | 000,025,112 | ---- | M] (Initio Corporation) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\ivusb.sys -- (ivusb) DRV - [2010/07/11 22:33:54 | 000,030,432 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwfd) DRV - [2010/07/11 22:33:54 | 000,030,432 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwdx) DRV - [2010/05/10 14:41:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System] -- D:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL) DRV - [2010/02/17 14:25:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System] -- D:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV) DRV - [2009/10/30 16:34:08 | 000,691,696 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot] -- D:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2008/12/22 17:49:03 | 000,025,280 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2008/03/17 06:03:46 | 000,101,376 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2008/01/23 17:25:30 | 000,027,136 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\tapvpn.sys -- (tapvpn) DRV - [2007/10/19 04:50:50 | 000,024,320 | ---- | M] (Steganos GmbH) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\tapavpn.sys -- (tapavpn) DRV - [2007/05/10 21:10:50 | 000,034,704 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2007/05/08 19:59:40 | 000,036,496 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2007/03/05 00:00:04 | 000,027,792 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\BlueletSCOAudio.sys -- (BlueletSCOAudio) DRV - [2007/03/04 23:59:04 | 000,018,320 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT) DRV - [2007/03/04 23:56:18 | 000,035,600 | ---- | M] (IVT Corporation.) [Kernel | Boot] -- D:\WINDOWS\system32\drivers\BTHidMgr.sys -- (BTHidMgr) DRV - [2007/03/04 23:55:12 | 000,020,880 | ---- | M] (IVT Corporation.) [Kernel | Boot] -- D:\WINDOWS\system32\drivers\vbtenum.sys -- (BTHidEnum) DRV - [2007/03/04 23:53:18 | 000,044,304 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2007/03/04 23:52:18 | 000,034,448 | ---- | M] (IVT Corporation.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2005/11/14 19:50:34 | 000,372,816 | ---- | M] (Zone Labs, LLC) [Kernel | System] -- D:\WINDOWS\system32\vsdatant.sys -- (vsdatant) DRV - [2005/01/03 20:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand] -- D:\WINDOWS\system32\npptNT2.sys -- (NPPTNT2) DRV - [2004/08/03 17:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\rtl8139.sys -- (rtl8139) Sterownik NT karty Realtek RTL8139(A/B/C) DRV - [2004/07/16 04:24:34 | 000,016,512 | ---- | M] (Adaptec) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\ASPI32.SYS -- (Aspi32) DRV - [2003/09/19 13:23:40 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\VMNetSrv.sys -- (VPCNetS2) DRV - [2002/09/26 02:41:58 | 000,029,312 | R--- | M] (Silicon Integrated Systems Corporation) [Kernel | Boot] -- D:\WINDOWS\system32\drivers\SISAGPX.SYS -- (sisagp) DRV - [2002/08/20 05:19:08 | 000,009,472 | R--- | M] (Silicon Integrated Systems Corp.) [Kernel | Boot] -- D:\WINDOWS\system32\drivers\sisperf.sys -- (sisperf) DRV - [2002/07/30 04:46:28 | 000,005,760 | R--- | M] (Silicon Integrated Systems Corp.) [Kernel | Boot] -- D:\WINDOWS\system32\drivers\siside.sys -- (SiSide) DRV - [2002/05/28 04:21:10 | 000,048,896 | R--- | M] (Windows (R) 2000 DDK provider) [File_System | Boot] -- D:\WINDOWS\system32\drivers\sisidex.sys -- (sisidex) DRV - [2002/04/23 22:14:28 | 000,011,569 | ---- | M] (Matsushita Electric Industrial Co., Ltd.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\mtdv2ks1.sys -- (MTDVC_ENUM) DRV - [2002/04/11 20:17:30 | 000,015,217 | ---- | M] (Matsushita Electric Industrial Co., Ltd.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\mtdv2km1.sys -- (MTSTOR) DRV - [2002/04/11 20:14:14 | 000,012,590 | ---- | M] (Matsushita Electric Industrial Co., Ltd.) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\mtdv2ku1.sys -- (MTDVC) DRV - [2001/08/17 16:28:12 | 000,488,383 | ---- | M] (Conexant) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\HSF_V124.sys -- (V124) DRV - [2001/08/17 16:28:12 | 000,050,751 | ---- | M] (Conexant) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\HSF_TONE.sys -- (Tones) DRV - [2001/08/17 16:28:10 | 000,542,879 | ---- | M] (Conexant) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\HSF_MSFT.sys -- (hsf_msft) DRV - [2001/08/17 16:28:10 | 000,073,279 | ---- | M] (Conexant) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\HSF_SPKP.sys -- (SpeakerPhone) DRV - [2001/08/17 16:28:10 | 000,057,471 | ---- | M] (Conexant) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\HSF_SAMP.sys -- (Rksample) DRV - [2001/08/17 16:28:08 | 000,391,199 | ---- | M] (Conexant) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\HSF_K56K.sys -- (K56) DRV - [2001/08/17 16:28:06 | 000,289,887 | ---- | M] (Conexant) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\HSF_FALL.sys -- (Fallback) DRV - [2001/08/17 16:28:06 | 000,199,711 | ---- | M] (Conexant) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\HSF_FAXX.sys -- (SoftFax) DRV - [2001/08/17 16:28:06 | 000,115,807 | ---- | M] (Conexant) [Kernel | Auto] -- D:\WINDOWS\system32\drivers\HSF_FSKS.sys -- (Fsks) DRV - [2001/08/17 16:28:04 | 000,067,167 | ---- | M] (Conexant) [Kernel | On_Demand] -- D:\WINDOWS\system32\drivers\HSF_BSC2.sys -- (basic2) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\Software\Microsoft\Internet Explorer\Search, = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\LocalService_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\NetworkService_ON_D\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll () FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: c:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: D:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2303: D:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.2.2361: D:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1465: D:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: D:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/04/16 03:07:42 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: D:\Program Files\AVG\AVG10\Firefox4\ [2012/02/03 04:42:32 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2011/06/28 07:19:48 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2011/10/21 15:04:11 | 000,000,000 | ---D | M] [2011/08/26 02:41:09 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\extensions [2012/06/25 04:44:40 | 000,000,000 | ---D | M] (Skype Click to Call) -- D:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2011/06/16 00:17:34 | 000,142,296 | ---- | M] (Mozilla Foundation) -- D:\Program Files\mozilla firefox\components\browsercomps.dll [2010/01/01 04:00:00 | 000,002,252 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\bing.xml O1 HOSTS File: ([2011/05/25 16:29:01 | 000,000,905 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 255.255.255.255 hcurltest5 O1 - Hosts: 255.255.255.255 vnsjs1.1stworks.com O1 - Hosts: 74.208.77.54 hcurltest1 O1 - Hosts: 74.208.223.76 hcurltest2 O2 - BHO: (Octh Class) - {000123B4-9B42-4900-B3F7-F4B073EFC214} - Reg Error: Value error. File not found O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - D:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - D:\Documents and Settings\Michał\Dane aplikacji\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.) O2 - BHO: (no name) - {F991D824-1626-49EA-AD13-BE5BECAABD7B} - Reg Error: Value error. File not found O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O4 - HKLM..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Google\Gmail Notifier\gnotify.exe (Google Inc.) O4 - HKLM..\Run: [AVG_TRAY] D:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [Computer Alarm Clock] D:\Program Files\Computer Alarm Clock\cac.exe (Think Art Computing.) O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] D:\WINDOWS\System32\nwiz.exe () O4 - HKLM..\Run: [ptpabkfakbxpats] D:\Documents and Settings\All Users\Dane aplikacji\ptpabkfa.exe () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRemoteRecursiveEvents = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStrCmpLogical = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousMachineGroupPolicy = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousUserGroupPolicy = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\LocalService_ON_D\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\NetworkService_ON_D\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra Button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - Reg Error: Key error. File not found O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O12 - Plugin for: .IE5 - Reg Error: Value error. File not found O16 - DPF: {03A89EFD-E023-A200-A22D-45F77558EB4C} https://content10.ilinc.com/download/AXCltInstall.dll (ILINCInstall102 Class) O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class) O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {92ECE6FA-AC2E-4042-BFAE-0C8608E52A43} https://www.bph.pl/sezam/components/SignActivX.cab (SignActivX Control) O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://elementtrading.webex.com/client/T27LB/training/ieatgpc.cab (GpcContainer Class) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O16 - DPF: DirectAnimation Java Classes Reg Error: Value error. (Reg Error: Key error.) O16 - DPF: Microsoft XML Parser for Java Reg Error: Value error. (Reg Error: Key error.) O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - D:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\!SASWinLogon: DllName - D:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - D:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com) O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - D:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2005/05/14 14:13:44 | 000,000,164 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ] O32 - AutoRun File - [2006/03/24 13:06:42 | 000,000,053 | ---- | M] () - X:\AUTORUN.INF -- [ FAT ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (D:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - D:\Program Files\AVG\AVG10\avgchsvx.exe (AVG Technologies CZ, s.r.o.) O34 - HKLM BootExecute: (D:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - D:\Program Files\AVG\AVG10\avgrsx.exe (AVG Technologies CZ, s.r.o.) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012/07/23 02:38:57 | 000,000,000 | -HSD | C] -- D:\WINDOWS\CSC [2012/07/22 18:25:44 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\ogjijbnikwqohpn [2012/07/20 13:38:23 | 000,000,000 | ---D | C] -- D:\blogger [2012/07/20 11:16:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\Forex Knights Line Copier [2012/07/07 18:28:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\TuxGuitar 1.2 [2012/07/07 18:26:54 | 000,000,000 | ---D | C] -- D:\Program Files\TuxGuitar-Jet [3 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012/07/23 03:16:15 | 000,000,830 | ---- | M] () -- D:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012/07/23 03:16:11 | 000,000,986 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-484763869-448539723-839522115-1003UA.job [2012/07/23 02:58:54 | 000,555,652 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2012/07/23 02:58:54 | 000,493,588 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2012/07/23 02:58:54 | 000,104,808 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2012/07/23 02:58:54 | 000,084,132 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2012/07/23 02:54:45 | 000,089,563 | ---- | M] () -- D:\WINDOWS\System32\nvapps.xml [2012/07/23 02:54:35 | 000,000,272 | ---- | M] () -- D:\WINDOWS\tasks\ASC4_PerformanceMonitor.job [2012/07/23 02:54:28 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2012/07/22 18:25:56 | 000,000,051 | ---- | M] () -- D:\Documents and Settings\All Users\Dane aplikacji\ryfdcglncnvpgmv [2012/07/22 18:25:27 | 000,053,248 | ---- | M] () -- D:\Documents and Settings\All Users\Dane aplikacji\ptpabkfa.exe [2012/07/22 11:51:36 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Silverlight [2012/07/22 09:16:02 | 000,000,934 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-484763869-448539723-839522115-1003Core.job [2012/07/22 08:00:42 | 101,968,570 | ---- | M] () -- D:\WINDOWS\System32\drivers\AVG\incavi.avm [2012/07/21 15:13:13 | 000,137,176 | ---- | M] () -- D:\WINDOWS\System32\drivers\PnkBstrK.sys [2012/07/21 15:12:34 | 000,268,952 | ---- | M] () -- D:\WINDOWS\System32\PnkBstrB.xtr [2012/07/20 16:20:49 | 000,268,952 | ---- | M] () -- D:\WINDOWS\System32\PnkBstrB.ex0 [2012/07/20 11:16:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Menu Start\Programy\Forex Knights Line Copier [2012/07/19 14:59:00 | 000,002,626 | ---- | M] () -- D:\indo.jpg [2012/07/19 14:57:09 | 000,002,741 | ---- | M] () -- D:\nim.jpg [2012/07/19 14:56:22 | 000,002,793 | ---- | M] () -- D:\36847.jpg [2012/07/19 14:46:10 | 000,073,252 | ---- | M] () -- D:\75.jpg [2012/07/19 14:32:41 | 000,017,078 | ---- | M] () -- D:\glebiasmall.jpg [2012/07/19 04:02:46 | 000,002,521 | ---- | M] () -- D:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Word.lnk [2012/07/18 13:38:48 | 000,021,043 | ---- | M] () -- D:\knightsmall.jpg [2012/07/18 03:17:38 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2012/07/15 18:26:34 | 000,016,075 | ---- | M] () -- D:\epicsmall.jpg [2012/07/15 18:25:20 | 000,907,855 | ---- | M] () -- D:\24682-52a53fa9a3a4333398db7f2abd8961d6..jpg [2012/07/15 17:41:32 | 000,414,395 | ---- | M] () -- D:\Mgła.pdf [2012/07/15 17:31:33 | 000,054,156 | -H-- | M] () -- D:\WINDOWS\QTFont.qfn [2012/07/14 18:12:47 | 000,000,056 | ---- | M] () -- D:\WINDOWS\kgt2k.INI [2012/07/14 13:38:52 | 006,220,854 | ---- | M] () -- D:\INTERNETOWA REJESTRACJA KANDYDATOW KONTO.bmp [2012/07/14 08:53:28 | 000,360,228 | ---- | M] () -- D:\WINDOWS\System32\drivers\AVG\iavichjg.avm [2012/07/11 17:17:11 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- D:\WINDOWS\System32\FlashPlayerApp.exe [2012/07/11 17:17:09 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- D:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012/07/07 18:28:41 | 000,000,734 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\tuxguitar.lnk [2012/07/07 18:28:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Menu Start\Programy\TuxGuitar 1.2 [3 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012/07/22 18:25:52 | 000,053,248 | ---- | C] () -- D:\Documents and Settings\All Users\Dane aplikacji\ptpabkfa.exe [2012/07/22 18:25:37 | 000,000,051 | ---- | C] () -- D:\Documents and Settings\All Users\Dane aplikacji\ryfdcglncnvpgmv [2012/07/19 14:59:00 | 000,002,626 | ---- | C] () -- D:\indo.jpg [2012/07/19 14:57:09 | 000,002,741 | ---- | C] () -- D:\nim.jpg [2012/07/19 14:56:19 | 000,002,793 | ---- | C] () -- D:\36847.jpg [2012/07/19 14:46:10 | 000,073,252 | ---- | C] () -- D:\75.jpg [2012/07/19 14:32:41 | 000,017,078 | ---- | C] () -- D:\glebiasmall.jpg [2012/07/18 13:38:48 | 000,021,043 | ---- | C] () -- D:\knightsmall.jpg [2012/07/15 18:26:34 | 000,016,075 | ---- | C] () -- D:\epicsmall.jpg [2012/07/15 18:25:20 | 000,907,855 | ---- | C] () -- D:\24682-52a53fa9a3a4333398db7f2abd8961d6..jpg [2012/07/15 17:43:05 | 000,414,395 | ---- | C] () -- D:\Mgła.pdf [2012/07/15 16:58:18 | 006,276,380 | ---- | C] () -- D:\Of_Knights_Glory.pdf [2012/07/15 16:58:18 | 000,762,710 | ---- | C] () -- D:\Scavengers.pdf [2012/07/15 16:58:17 | 000,448,555 | ---- | C] () -- D:\Fantasy_Hunters_RPG.pdf [2012/07/15 16:58:16 | 000,646,468 | ---- | C] () -- D:\AlignedDestinies24h.pdf [2012/07/14 13:38:51 | 006,220,854 | ---- | C] () -- D:\INTERNETOWA REJESTRACJA KANDYDATOW KONTO.bmp [2012/07/07 18:28:41 | 000,000,734 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\tuxguitar.lnk [2011/08/31 14:52:14 | 000,116,224 | ---- | C] () -- D:\WINDOWS\System32\pdfcmnnt.dll [2010/04/16 03:06:21 | 000,023,189 | ---- | C] () -- D:\WINDOWS\hpqins15.dat [2010/04/16 02:59:54 | 000,077,444 | ---- | C] () -- D:\WINDOWS\hpqins05.dat [2010/01/22 05:37:22 | 000,004,537 | ---- | C] () -- D:\WINDOWS\PatrnLst.ini [2010/01/21 08:07:03 | 000,010,823 | ---- | C] () -- D:\WINDOWS\WatchLst.ini [2010/01/20 06:35:22 | 000,003,161 | ---- | C] () -- D:\WINDOWS\Patternz.ini [2010/01/20 06:30:02 | 000,027,153 | ---- | C] () -- D:\WINDOWS\SU1.EXE [2009/12/24 06:29:21 | 000,000,144 | ---- | C] () -- D:\WINDOWS\Eudcedit.ini [2009/08/05 19:00:00 | 001,689,600 | ---- | C] () -- D:\WINDOWS\System32\libmySQL.dll [2009/07/15 17:44:40 | 008,676,883 | ---- | C] () -- D:\WINDOWS\System32\NCMedia2.dll [2009/07/15 17:44:40 | 000,180,224 | ---- | C] () -- D:\WINDOWS\System32\xvidvfw.dll [2009/02/07 08:41:25 | 000,000,078 | ---- | C] () -- D:\WINDOWS\MS.INI [2009/01/20 06:05:06 | 000,178,244 | ---- | C] () -- D:\WINDOWS\hpoins28.dat [2009/01/20 06:05:06 | 000,000,796 | ---- | C] () -- D:\WINDOWS\hpomdl28.dat [2008/09/19 17:55:23 | 000,000,055 | ---- | C] () -- D:\WINDOWS\LOVEGUN.INI [2008/07/24 12:22:40 | 000,098,816 | ---- | C] () -- D:\WINDOWS\sed.exe [2008/07/24 12:22:40 | 000,080,412 | ---- | C] () -- D:\WINDOWS\grep.exe [2008/07/24 12:22:40 | 000,068,096 | ---- | C] () -- D:\WINDOWS\zip.exe [2008/07/24 12:22:40 | 000,049,152 | ---- | C] () -- D:\WINDOWS\VFind.exe [2008/05/24 10:50:13 | 000,000,056 | -H-- | C] () -- D:\WINDOWS\System32\ezsidmv.dat [2008/05/02 16:00:19 | 000,002,100 | ---- | C] () -- D:\WINDOWS\ladydata.dat [2008/03/09 06:57:10 | 004,762,112 | ---- | C] () -- D:\WINDOWS\System32\NCMedia.dll [2008/03/09 06:57:10 | 003,086,336 | ---- | C] () -- D:\WINDOWS\System32\flvvideo.dll [2008/03/09 06:57:10 | 000,765,952 | ---- | C] () -- D:\WINDOWS\System32\xvidcore.dll [2008/03/09 06:57:10 | 000,383,238 | ---- | C] () -- D:\WINDOWS\System32\libmp3lame-0.dll [2007/10/06 07:01:01 | 000,137,176 | ---- | C] () -- D:\WINDOWS\System32\drivers\PnkBstrK.sys [2007/10/06 07:00:53 | 000,268,952 | ---- | C] () -- D:\WINDOWS\System32\PnkBstrB.exe [2007/10/06 07:00:29 | 000,075,136 | ---- | C] () -- D:\WINDOWS\System32\PnkBstrA.exe [2007/07/05 09:37:01 | 000,066,592 | ---- | C] () -- D:\WINDOWS\unTMV.exe [2007/06/28 14:31:08 | 000,774,144 | ---- | C] () -- D:\WINDOWS\MTUn745.exe [2007/06/20 10:33:26 | 000,074,752 | ---- | C] () -- D:\WINDOWS\cadkasdeinst01e.exe [2007/05/19 16:23:43 | 000,000,027 | ---- | C] () -- D:\WINDOWS\SonySNCRZ25.ini [2007/04/30 15:25:00 | 000,245,760 | ---- | C] () -- D:\WINDOWS\System32\ftcauth.dll [2006/12/01 10:41:30 | 000,000,067 | ---- | C] () -- D:\WINDOWS\#1 DVD Audio Ripper.INI [2006/10/22 07:22:00 | 001,662,976 | ---- | C] () -- D:\WINDOWS\System32\nvwdmcpl.dll [2006/10/22 07:22:00 | 001,622,016 | ---- | C] () -- D:\WINDOWS\System32\nwiz.exe [2006/10/22 07:22:00 | 001,470,464 | ---- | C] () -- D:\WINDOWS\System32\nview.dll [2006/10/22 07:22:00 | 001,339,392 | ---- | C] () -- D:\WINDOWS\System32\nvdspsch.exe [2006/10/22 07:22:00 | 001,019,904 | ---- | C] () -- D:\WINDOWS\System32\nvwimg.dll [2006/10/22 07:22:00 | 000,581,632 | ---- | C] () -- D:\WINDOWS\System32\nvhwvid.dll [2006/10/22 07:22:00 | 000,466,944 | ---- | C] () -- D:\WINDOWS\System32\nvshell.dll [2006/10/22 07:22:00 | 000,442,368 | ---- | C] () -- D:\WINDOWS\System32\nvappbar.exe [2006/10/22 07:22:00 | 000,425,984 | ---- | C] () -- D:\WINDOWS\System32\keystone.exe [2006/10/22 07:22:00 | 000,286,720 | ---- | C] () -- D:\WINDOWS\System32\nvnt4cpl.dll [2006/10/22 07:22:00 | 000,212,992 | ---- | C] () -- D:\WINDOWS\System32\nvapi.dll [2006/09/15 10:03:59 | 000,000,020 | ---- | C] () -- D:\WINDOWS\naglos.INI [2006/08/07 04:59:18 | 000,000,740 | ---- | C] () -- D:\WINDOWS\db2fdat.dat [2006/07/29 13:52:13 | 000,000,019 | ---- | C] () -- D:\WINDOWS\SoundConverter.INI [2006/07/09 06:35:20 | 000,000,056 | ---- | C] () -- D:\WINDOWS\kgt2k.INI [2006/06/25 09:19:15 | 000,000,008 | ---- | C] () -- D:\WINDOWS\NS3Knux.INI [2006/06/25 09:13:27 | 000,771,584 | ---- | C] () -- D:\WINDOWS\System32\RGSS100J.dll [2006/06/25 09:06:01 | 000,000,013 | ---- | C] () -- D:\WINDOWS\Appdrive$ + Appdir$ + A-Zigo.ini [2006/06/25 09:06:01 | 000,000,008 | ---- | C] () -- D:\WINDOWS\Appdrive$ + Appdir$ + A-Zigo.ini2 [2006/06/18 01:17:26 | 000,000,221 | ---- | C] () -- D:\WINDOWS\cr8type2lightins.ini [2006/05/15 05:56:42 | 000,000,254 | ---- | C] () -- D:\WINDOWS\7THLEVEL.INI [2006/04/16 07:12:46 | 000,000,012 | ---- | C] () -- D:\WINDOWS\demo.INI [2006/04/16 06:34:06 | 000,000,008 | ---- | C] () -- D:\WINDOWS\Appdrive$ + Appdir$ + Samhain2.ini [2006/04/13 11:14:17 | 000,000,022 | ---- | C] () -- D:\WINDOWS\System32\Dysst.dll [2006/04/09 13:07:57 | 000,000,018 | ---- | C] () -- D:\WINDOWS\gfact.ini [2006/03/29 11:10:37 | 000,000,214 | ---- | C] () -- D:\WINDOWS\gfscore.ini [2006/03/29 10:49:57 | 000,000,255 | ---- | C] () -- D:\WINDOWS\Robot Robuś 1.0.ini [2006/03/06 12:57:09 | 000,000,099 | ---- | C] () -- D:\WINDOWS\dinksmallwood.ini [2006/02/21 15:37:28 | 000,004,096 | ---- | C] () -- D:\WINDOWS\d3dx.dat [2006/02/20 15:17:57 | 000,000,049 | ---- | C] () -- D:\WINDOWS\wpd99.drv [2006/02/20 15:17:46 | 000,000,028 | ---- | C] () -- D:\WINDOWS\pdf995.ini [2006/02/20 15:13:21 | 000,118,784 | ---- | C] () -- D:\WINDOWS\System32\pdfmona.dll [2006/02/20 15:13:21 | 000,051,716 | ---- | C] () -- D:\WINDOWS\System32\pdf995mon.dll [2006/02/18 18:25:54 | 000,000,125 | ---- | C] () -- D:\WINDOWS\cdplayer.ini [2006/02/15 07:31:51 | 000,000,098 | ---- | C] () -- D:\WINDOWS\H3WMAPED.INI [2006/02/03 09:33:18 | 000,000,084 | ---- | C] () -- D:\WINDOWS\netdet.ini [2006/01/27 15:52:41 | 000,046,345 | ---- | C] () -- D:\WINDOWS\NSSetDefaultBrowser.EXE [2006/01/14 19:38:23 | 000,363,520 | ---- | C] () -- D:\WINDOWS\System32\psisdecd.dll [2006/01/13 12:53:13 | 000,087,040 | ---- | C] () -- D:\WINDOWS\UnGins.exe [2006/01/13 12:53:07 | 000,473,600 | ---- | C] () -- D:\WINDOWS\System32\Harmony.dll [2006/01/13 12:53:07 | 000,237,568 | ---- | C] () -- D:\WINDOWS\System32\Unlha32.dll [2006/01/10 13:55:36 | 000,000,000 | ---- | C] () -- D:\WINDOWS\NWRGSTRY.INI [2005/12/12 12:01:44 | 000,000,050 | ---- | C] () -- D:\WINDOWS\GunzLauncher.INI [2005/11/14 13:40:47 | 000,086,016 | ---- | C] () -- D:\WINDOWS\System32\gozlib.dll [2005/07/05 05:41:25 | 000,000,669 | ---- | C] () -- D:\WINDOWS\SIERRA.INI [2005/06/14 13:05:31 | 000,010,240 | ---- | C] () -- D:\WINDOWS\System32\vidx16.dll [2005/06/13 07:30:07 | 000,157,696 | ---- | C] () -- D:\WINDOWS\System32\unrar.dll [2005/06/13 07:30:03 | 000,019,968 | ---- | C] () -- D:\WINDOWS\System32\cpuinf32.dll [2005/06/09 11:20:32 | 000,000,040 | ---- | C] () -- D:\WINDOWS\AW_REI.INI [2005/06/09 11:18:53 | 000,000,065 | ---- | C] () -- D:\WINDOWS\ActWin.ini [2005/06/08 08:58:38 | 000,000,219 | ---- | C] () -- D:\WINDOWS\MugE.ini [2005/06/07 09:30:43 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\newdial1.exe [2005/06/07 09:30:32 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\newdial.exe [2005/06/05 16:09:52 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\njoiklno.dat [2005/06/05 14:23:39 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kflpicfi.dat [2005/06/05 06:20:49 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\plmcnion.dat [2005/06/05 05:11:45 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\fgbamfkg.dat [2005/06/04 16:25:38 | 000,000,192 | ---- | C] () -- D:\WINDOWS\winamp.ini [2005/06/04 15:17:52 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ppjiphnl.dat [2005/06/04 14:08:35 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\hpgplmef.dat [2005/06/04 13:00:51 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ldmjkkgi.dat [2005/06/04 11:17:03 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\alnpeebh.dat [2005/06/04 10:14:38 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\pghaogjo.dat [2005/06/04 09:06:02 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\lhipmmhg.dat [2005/06/04 07:17:37 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kiifnlfk.dat [2005/06/04 05:41:00 | 000,000,000 | ---- | C] () -- D:\WINDOWS\PowerReg.dat [2005/06/04 05:28:01 | 000,000,632 | ---- | C] () -- D:\WINDOWS\Thps3.INI [2005/06/03 15:06:38 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\giiioghl.dat [2005/06/03 12:47:36 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\nbjobogn.dat [2005/06/03 11:27:09 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\mfpfadoj.dat [2005/06/03 10:17:29 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\hhffqnli.dat [2005/06/02 10:09:18 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kbmflcli.dat [2005/06/01 13:29:41 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ljoincpf.dat [2005/06/01 12:20:18 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\lbdebodi.dat [2005/06/01 09:25:24 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\hojokbgq.dat [2005/05/31 10:18:00 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\dbfijanp.dat [2005/05/31 09:23:28 | 000,000,004 | ---- | C] () -- D:\WINDOWS\System32\cmd.dat [2005/05/30 12:01:49 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\lddijgfb.dat [2005/05/30 09:40:52 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ijemdigh.dat [2005/05/29 12:22:09 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\mlokddch.dat [2005/05/29 07:46:43 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\enkebiln.dat [2005/05/29 05:25:41 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\gdgacigo.dat [2005/05/25 16:22:55 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ijlkpjfb.dat [2005/05/25 15:08:12 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ioheplpn.dat [2005/05/25 12:39:32 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\bhmkblle.dat [2005/05/25 11:10:42 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\pchgcghk.dat [2005/05/25 09:55:57 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ipgjjfee.dat [2005/05/24 14:01:32 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\jifqnjoo.dat [2005/05/24 08:44:56 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\hmoddijp.dat [2005/05/23 16:14:37 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\dhlemilh.dat [2005/05/23 14:54:49 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\nnncjobg.dat [2005/05/23 12:49:45 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kgppnfmg.dat [2005/05/23 11:38:32 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\bmagqahd.dat [2005/05/23 10:20:08 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\egpgabnl.dat [2005/05/22 16:54:40 | 000,010,022 | -HS- | C] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2005/05/22 16:54:40 | 000,000,056 | RHS- | C] () -- D:\WINDOWS\System32\75BD07F449.sys [2005/05/22 16:37:55 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\olgpnoii.dat [2005/05/22 15:29:08 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\bbmbbchn.dat [2005/05/22 05:11:16 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\pdihlcgl.dat [2005/05/21 15:03:44 | 000,005,376 | ---- | C] () -- D:\WINDOWS\mozver.dat [2005/05/21 15:02:29 | 000,000,000 | ---- | C] () -- D:\WINDOWS\nsreg.dat [2005/05/21 13:44:38 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\bplhdqep.dat [2005/05/21 10:46:58 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\bnppeekm.dat [2005/05/21 09:02:37 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\nhfobckd.dat [2005/05/21 07:37:39 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\mecaljnm.dat [2005/05/20 16:18:46 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\nkgigcbb.dat [2005/05/20 14:25:26 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\miknpbpb.dat [2005/05/20 11:39:28 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\cmkdccbk.dat [2005/05/20 10:30:58 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\cgjhhcni.dat [2005/05/20 08:35:26 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kdigabpd.dat [2005/05/20 07:20:03 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ccgdljjl.dat [2005/05/19 15:41:52 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\nicjjgpo.dat [2005/05/18 13:37:00 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\jmilllnq.dat [2005/05/18 12:34:35 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\lhgdiegg.dat [2005/05/18 12:29:50 | 000,000,438 | ---- | C] () -- D:\WINDOWS\hpfsched.ini [2005/05/18 09:36:15 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\opdloebh.dat [2005/05/17 16:27:49 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\biibceck.dat [2005/05/17 13:18:47 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ojfdeiia.dat [2005/05/15 05:48:45 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\olpkpchl.dat [2005/05/14 17:04:36 | 000,000,002 | ---- | C] () -- D:\WINDOWS\System32\cmdtm.dat [2005/05/14 15:28:42 | 000,001,788 | ---- | C] () -- D:\WINDOWS\System32\dcache.bin [2005/05/14 15:13:26 | 000,004,569 | ---- | C] () -- D:\WINDOWS\System32\secupd.dat [2005/05/14 06:36:59 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kcmjfdla.dat [2005/05/13 16:36:07 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\dcpmbnkm.dat [2005/05/13 15:33:18 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\pekdkilm.dat [2005/05/13 14:05:16 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\khhfjkjd.dat [2005/05/13 12:45:13 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\aqgiaanp.dat [2005/05/13 11:31:29 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\gkoloonc.dat [2005/05/13 10:11:41 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\hkeffbgd.dat [2005/05/13 08:45:56 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kobejpgd.dat [2005/05/12 16:24:54 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\jgijkmma.dat [2005/05/12 13:36:45 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kbjmicmk.dat [2005/05/12 10:22:54 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\lkgfgdea.dat [2005/05/12 09:28:25 | 000,006,550 | ---- | C] () -- D:\WINDOWS\jautoexp.dat [2005/05/12 07:47:43 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\ooeiqofb.dat [2005/05/11 17:08:55 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\kgjofegh.dat [2005/05/10 12:43:40 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\oapejkmc.dat [2005/05/10 11:41:02 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\bgnhhipe.dat [2005/05/10 09:42:19 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\qcfceeco.dat [2005/05/09 12:50:35 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\pecaphaa.dat [2005/05/09 11:10:28 | 000,004,212 | -H-- | C] () -- D:\WINDOWS\System32\zllictbl.dat [2005/05/09 10:54:04 | 000,071,749 | ---- | C] () -- D:\WINDOWS\hcextoutput.dll [2005/05/09 10:54:04 | 000,000,823 | ---- | C] () -- D:\WINDOWS\tsc.ini [2005/05/09 10:49:32 | 000,000,170 | ---- | C] () -- D:\WINDOWS\GetServer.ini [2005/05/09 08:16:41 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\jnpobmph.dat [2005/05/09 06:28:04 | 000,000,139 | ---- | C] () -- D:\WINDOWS\System32\jmjjlikk.dat [2005/05/08 09:31:00 | 000,753,534 | ---- | C] () -- D:\WINDOWS\System32\datkkq32.dll [2005/05/08 08:26:27 | 000,000,532 | ---- | C] () -- D:\WINDOWS\ODBC.INI [2005/05/08 08:18:33 | 000,004,293 | ---- | C] () -- D:\WINDOWS\ODBCINST.INI [2005/05/08 08:17:32 | 000,177,232 | ---- | C] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2005/05/08 08:12:10 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\bn.dll [2005/05/08 08:08:54 | 000,298,496 | ---- | C] () -- D:\WINDOWS\unin0415.exe [2005/05/08 07:46:19 | 000,000,092 | ---- | C] () -- D:\WINDOWS\CMISETUP.INI [2005/05/08 07:46:19 | 000,000,047 | ---- | C] () -- D:\WINDOWS\Wininit.ini [2005/05/08 07:46:19 | 000,000,026 | ---- | C] () -- D:\WINDOWS\CMCDPLAY.INI [2005/05/08 07:46:11 | 000,237,568 | ---- | C] () -- D:\WINDOWS\CMIUninstall.exe [2005/05/08 07:46:11 | 000,212,992 | ---- | C] () -- D:\WINDOWS\CmiRmRedundDir.exe [2005/05/08 07:46:11 | 000,028,672 | ---- | C] () -- D:\WINDOWS\CMIRmDriver.dll [2005/05/08 07:43:20 | 000,139,264 | R--- | C] () -- D:\WINDOWS\System32\IDEproperty.dll [2005/05/08 07:33:48 | 000,020,480 | R--- | C] () -- D:\WINDOWS\ANVUNIS.exe [2005/05/08 07:33:48 | 000,000,578 | R--- | C] () -- D:\WINDOWS\Anvshell.ini [2005/05/08 07:30:06 | 000,002,048 | --S- | C] () -- D:\WINDOWS\bootstat.dat [2005/05/08 07:24:14 | 000,021,856 | ---- | C] () -- D:\WINDOWS\System32\emptyregdb.dat [2004/07/12 17:07:21 | 003,375,104 | ---- | C] () -- D:\WINDOWS\System32\qt-mt331.dll [2004/03/24 03:24:46 | 000,028,672 | ---- | C] () -- D:\WINDOWS\System32\frapsvid.dll [2004/01/02 17:33:57 | 000,092,660 | ---- | C] () -- D:\WINDOWS\System32\bass.dll [2003/08/07 15:01:50 | 000,237,568 | ---- | C] () -- D:\WINDOWS\System32\lame_enc.dll [2003/05/05 19:27:50 | 000,285,696 | ---- | C] () -- D:\WINDOWS\System32\cncs232.dll [2002/09/28 18:00:00 | 013,107,200 | ---- | C] () -- D:\WINDOWS\System32\oembios.bin [2002/09/28 18:00:00 | 000,673,088 | ---- | C] () -- D:\WINDOWS\System32\mlang.dat [2002/09/28 18:00:00 | 000,555,652 | ---- | C] () -- D:\WINDOWS\System32\perfh015.dat [2002/09/28 18:00:00 | 000,493,588 | ---- | C] () -- D:\WINDOWS\System32\perfh009.dat [2002/09/28 18:00:00 | 000,313,828 | ---- | C] () -- D:\WINDOWS\System32\perfi015.dat [2002/09/28 18:00:00 | 000,272,128 | ---- | C] () -- D:\WINDOWS\System32\perfi009.dat [2002/09/28 18:00:00 | 000,218,003 | ---- | C] () -- D:\WINDOWS\System32\dssec.dat [2002/09/28 18:00:00 | 000,104,808 | ---- | C] () -- D:\WINDOWS\System32\perfc015.dat [2002/09/28 18:00:00 | 000,084,132 | ---- | C] () -- D:\WINDOWS\System32\perfc009.dat [2002/09/28 18:00:00 | 000,046,258 | ---- | C] () -- D:\WINDOWS\System32\mib.bin [2002/09/28 18:00:00 | 000,034,990 | ---- | C] () -- D:\WINDOWS\System32\perfd015.dat [2002/09/28 18:00:00 | 000,028,626 | ---- | C] () -- D:\WINDOWS\System32\perfd009.dat [2002/09/28 18:00:00 | 000,004,463 | ---- | C] () -- D:\WINDOWS\System32\oembios.dat [2002/09/28 18:00:00 | 000,000,741 | ---- | C] () -- D:\WINDOWS\System32\noise.dat [2001/10/28 12:42:30 | 000,116,224 | ---- | C] () -- D:\WINDOWS\System32\redmonnt.dll [1999/07/23 07:46:48 | 000,000,116 | ---- | C] () -- D:\WINDOWS\AuHCcup1.ini [1999/07/23 04:53:20 | 000,129,536 | ---- | C] () -- D:\WINDOWS\AuHCcup1.dll [1998/09/23 11:27:40 | 000,035,328 | ---- | C] () -- D:\WINDOWS\hpfsched.exe [color=#E56717]========== LOP Check ==========[/color] [2010/12/15 18:06:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\1stWorks [2011/01/01 09:03:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\AVG10 [2008/06/14 14:17:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Azureus [2010/05/03 05:25:47 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Bluetooth [2011/01/01 09:02:46 | 000,000,000 | -H-D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Common Files [2011/11/13 07:07:27 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2008/02/16 14:32:35 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Installations [2011/11/27 09:29:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\MetaQuotes [2011/05/17 10:21:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\MFAData [2008/07/24 19:24:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\NCH Swift Sound [2012/07/22 18:25:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\ogjijbnikwqohpn [2006/08/09 09:08:26 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2011/09/16 09:25:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\pdf995 [2011/05/26 11:37:06 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\TEMP [2012/07/23 02:54:35 | 000,000,272 | ---- | M] () -- D:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Files - Unicode (All) ==========[/color] [2006/07/09 13:14:16 | 000,030,187 | ---- | M] ()(D:\WINDOWS\‚Q‚cŠi“¬?c?N[?‹‚Q‚Ž‚„.mid) -- D:\WINDOWS\‚Q‚cŠi“¬ƒcƒN[ƒ‹‚Q‚Ž‚„.mid [2006/07/09 13:00:42 | 000,030,187 | ---- | C] ()(D:\WINDOWS\‚Q‚cŠi“¬?c?N[?‹‚Q‚Ž‚„.mid) -- D:\WINDOWS\‚Q‚cŠi“¬ƒcƒN[ƒ‹‚Q‚Ž‚„.mid [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 124 bytes -> D:\Documents and Settings\All Users\Dane aplikacji\TEMP:0B4227B4 < End of report >