OTL logfile created on: 2012-07-25 14:49:26 - Run 3 OTL by OldTimer - Version 3.2.54.1 Folder = C:\Documents and Settings\admin\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,93 Gb Total Physical Memory | 0,95 Gb Available Physical Memory | 49,26% Memory free 3,78 Gb Paging File | 2,73 Gb Available in Paging File | 72,33% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 85,00 Gb Total Space | 15,48 Gb Free Space | 18,21% Space Free | Partition Type: NTFS Drive D: | 147,88 Gb Total Space | 31,19 Gb Free Space | 21,09% Space Free | Partition Type: NTFS Computer Name: LAPTOP_MARCIN_T | User Name: admin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-25 08:58:26 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\admin\Pulpit\OTL.exe PRC - [2012-07-16 13:15:40 | 010,354,176 | ---- | M] (Creative Team S.A.) -- C:\Program Files\WapSter\WapSter AQQ\AQQ.exe PRC - [2012-06-26 09:42:04 | 000,224,096 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Manager\OnlineUpdate\ouc.exe PRC - [2012-06-16 14:15:51 | 000,874,384 | ---- | M] (Opera Software) -- C:\Program Files\Opera\opera.exe PRC - [2011-09-21 20:12:28 | 013,374,048 | ---- | M] (GG Network S.A.) -- C:\Program Files\Gadu-Gadu 10\gg.exe PRC - [2011-03-14 17:27:28 | 000,271,712 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\DataCardService\HWDeviceService.exe PRC - [2011-03-09 16:47:52 | 008,146,944 | ---- | M] () -- C:\Program Files\serwerwww\mysql\bin\mysqld.exe PRC - [2011-01-12 16:41:42 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe PRC - [2011-01-12 16:41:24 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe PRC - [2010-10-18 19:55:00 | 000,018,432 | ---- | M] (Apache Software Foundation) -- C:\Program Files\serwerwww\apache\bin\apache.exe PRC - [2009-11-26 14:48:10 | 000,515,816 | ---- | M] () -- C:\WINDOWS\system32\atwtusb.exe PRC - [2009-07-22 17:54:14 | 000,081,920 | ---- | M] (Firebird Project) -- C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe PRC - [2009-07-22 17:53:44 | 002,736,128 | ---- | M] (Firebird Project) -- C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe PRC - [2009-02-11 23:11:58 | 000,355,896 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\pthosttr.exe PRC - [2009-01-28 14:21:48 | 000,075,024 | ---- | M] (Bioscrypt Inc.) -- C:\Program Files\Hewlett-Packard\IAM\Bin\asghost.exe PRC - [2009-01-22 17:14:06 | 000,082,488 | ---- | M] (Hewlett-Packard Corporation) -- C:\WINDOWS\system32\accelerometerST.exe PRC - [2008-12-11 14:23:08 | 001,456,768 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe PRC - [2008-12-11 14:23:08 | 000,604,776 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe PRC - [2008-10-03 13:33:12 | 001,185,016 | ---- | M] (AuthenTec, Inc.) -- C:\Program Files\Fingerprint Sensor\AtService.exe PRC - [2008-10-02 11:26:42 | 000,860,160 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe PRC - [2008-10-02 11:16:00 | 001,368,064 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe PRC - [2008-10-02 11:06:56 | 000,905,216 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe PRC - [2008-10-02 10:57:52 | 001,191,936 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe PRC - [2008-10-02 10:56:44 | 000,466,944 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe PRC - [2008-10-01 15:01:14 | 000,256,544 | ---- | M] (SafeBoot International) -- C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe PRC - [2008-04-14 19:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-11-27 17:42:14 | 000,185,896 | ---- | M] (ActivIdentity) -- C:\Program Files\ActivIdentity\ActivClient\accoca.exe PRC - [2007-11-27 17:42:12 | 000,093,736 | ---- | M] (ActivIdentity) -- C:\Program Files\ActivIdentity\ActivClient\acevents.exe PRC - [2007-11-27 17:40:42 | 000,298,536 | ---- | M] (ActivIdentity) -- C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe PRC - [2007-07-24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) -- C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe PRC - [2007-05-29 05:06:44 | 000,598,960 | ---- | M] ( ) -- C:\WINDOWS\system32\lxdfcoms.exe PRC - [2007-01-04 19:48:50 | 000,112,152 | ---- | M] (InterVideo) -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe PRC - [2004-03-13 05:04:16 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-07-11 14:54:20 | 000,971,776 | ---- | M] () -- C:\Program Files\WapSter\WapSter AQQ\System\Shared\Plugins\SMS.dll MOD - [2012-07-11 00:03:34 | 000,998,400 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\9080c8e8e7b6dfb502c1328673d636f8\System.Management.ni.dll MOD - [2012-07-11 00:02:34 | 000,679,936 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Security\129b15861e200613ff78ae15581f9093\System.Security.ni.dll MOD - [2012-07-11 00:02:31 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\3d5b7368bde0f65aa15d9f46b498cc89\System.Configuration.ni.dll MOD - [2012-07-10 22:39:48 | 012,433,920 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\01abbadafaf265d9f4ac9bbb247acb98\System.Windows.Forms.ni.dll MOD - [2012-07-10 22:38:35 | 000,258,048 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll MOD - [2012-07-10 22:38:34 | 003,186,688 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll MOD - [2012-07-10 22:38:34 | 002,048,000 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll MOD - [2012-07-10 22:35:35 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\3bba1b8b0b5ef0be238b011cc7a0575e\System.Xml.ni.dll MOD - [2012-07-10 22:35:15 | 001,592,320 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\d86f2038209a4cf0d0f5b30f6375c9b2\System.Drawing.ni.dll MOD - [2012-07-10 22:34:43 | 007,953,408 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\e4b5afc4da43b1c576f9322f9f2e1bfe\System.ni.dll MOD - [2012-07-10 22:34:25 | 011,492,352 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\e337c89bc9f81b69d7237aa70e935900\mscorlib.ni.dll MOD - [2012-07-10 11:03:42 | 000,311,296 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll MOD - [2012-06-26 09:42:10 | 001,148,416 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Manager\OnlineUpdate\QtNetwork4.dll MOD - [2012-06-26 09:42:09 | 002,415,104 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Manager\OnlineUpdate\QtCore4.dll MOD - [2012-06-26 09:42:08 | 000,043,008 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll MOD - [2012-06-26 09:42:08 | 000,011,362 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Manager\OnlineUpdate\mingwm10.dll MOD - [2012-06-26 09:42:04 | 000,224,096 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Manager\OnlineUpdate\ouc.exe MOD - [2012-06-25 14:00:16 | 001,187,840 | ---- | M] () -- C:\Program Files\WapSter\WapSter AQQ\System\Shared\Plugins\GGNet.dll MOD - [2012-05-04 09:16:48 | 000,310,272 | ---- | M] () -- C:\Program Files\WapSter\WapSter AQQ\System\Shared\Plugins\Contact.dll MOD - [2011-07-04 19:46:20 | 000,217,696 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\gglog.dll MOD - [2011-07-04 19:46:18 | 000,123,488 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\ggipcradioproxy.dll MOD - [2011-07-04 19:46:16 | 000,017,504 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\ggipc.dll MOD - [2011-07-04 19:46:12 | 000,027,744 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\ggcrypto.dll MOD - [2011-07-04 19:46:10 | 000,356,960 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\ggcommon.dll MOD - [2011-04-16 05:04:30 | 014,749,696 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtWebKit4.dll MOD - [2011-03-14 17:27:28 | 000,271,712 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\DataCardService\HWDeviceService.exe MOD - [2011-03-09 16:47:52 | 008,146,944 | ---- | M] () -- C:\Program Files\serwerwww\mysql\bin\mysqld.exe MOD - [2011-02-17 11:00:28 | 001,781,760 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtScript4.dll MOD - [2011-02-17 11:00:28 | 000,393,216 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtXml4.dll MOD - [2011-02-17 11:00:28 | 000,327,680 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtSvg4.dll MOD - [2011-02-17 11:00:26 | 001,044,480 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtNetwork4.dll MOD - [2011-02-17 11:00:24 | 009,097,216 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtGui4.dll MOD - [2011-02-17 11:00:24 | 002,560,000 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtCore4.dll MOD - [2011-02-17 10:59:40 | 000,311,296 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qtiff4.dll MOD - [2011-02-17 10:59:40 | 000,274,432 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qmng4.dll MOD - [2011-02-17 10:59:40 | 000,143,360 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qjpeg4.dll MOD - [2011-02-17 10:59:40 | 000,027,648 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qgif4.dll MOD - [2011-02-17 10:59:40 | 000,018,944 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qsvg4.dll MOD - [2011-02-17 10:59:32 | 000,059,904 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\zlib1.dll MOD - [2010-07-04 23:32:38 | 000,010,752 | ---- | M] () -- C:\Program Files\Unlocker\UnlockerCOM.dll MOD - [2009-11-26 14:48:10 | 000,515,816 | ---- | M] () -- C:\WINDOWS\system32\atwtusb.exe MOD - [2009-04-17 09:16:16 | 000,045,056 | ---- | M] () -- C:\WINDOWS\system32\LXDFPMON.DLL MOD - [2009-04-17 09:15:08 | 000,032,768 | ---- | M] () -- C:\Program Files\Lexmark 6500 Series\ipcmt.dll MOD - [2009-02-27 20:04:20 | 000,311,296 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.POL MOD - [2008-12-11 14:22:10 | 002,854,976 | ---- | M] () -- C:\WINDOWS\system32\btwicons.dll MOD - [2008-12-11 14:20:20 | 000,069,697 | ---- | M] () -- C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll MOD - [2008-10-02 10:59:30 | 000,200,704 | ---- | M] () -- C:\Program Files\Intel\WiFi\bin\iWMSProv.dll MOD - [2008-08-06 15:19:14 | 000,294,912 | ---- | M] () -- C:\WINDOWS\system32\flcdlmsg.dll MOD - [2008-04-14 19:20:37 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll MOD - [2007-11-27 17:41:06 | 000,114,688 | ---- | M] () -- C:\WINDOWS\system32\aicext.dll MOD - [2007-05-25 12:42:10 | 000,113,664 | ---- | M] () -- C:\WINDOWS\system32\spool\prtprocs\w32x86\lxdfdrpp.dll MOD - [2007-04-09 09:59:30 | 000,069,632 | ---- | M] () -- C:\WINDOWS\system32\lxdfoem.dll MOD - [2005-04-19 22:52:40 | 000,282,624 | ---- | M] () -- C:\Program Files\Network Print Monitor\Driver.DLL MOD - [2001-10-28 17:42:30 | 000,116,224 | ---- | M] () -- C:\WINDOWS\system32\pdfcmnnt.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2012-07-20 20:20:30 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-06-26 09:42:04 | 000,224,096 | ---- | M] () [Auto | Stopped] -- C:\Program Files\T-Mobile\InternetManager_H\UpdateDog\ouc.exe -- (Internet Manager. RunOuc) SRV - [2012-01-04 13:32:36 | 000,718,888 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2011-03-14 17:27:28 | 000,271,712 | ---- | M] () [Auto | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\DataCardService\HWDeviceService.exe -- (HWDeviceService.exe) SRV - [2011-03-09 16:47:52 | 008,146,944 | ---- | M] () [Auto | Running] -- C:\Program Files\serwerwww\mysql\bin\mysqld.exe -- (MySQL) SRV - [2011-01-12 16:44:02 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2011-01-12 16:41:42 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2010-10-18 19:55:00 | 000,018,432 | ---- | M] (Apache Software Foundation) [Auto | Running] -- C:\Program Files\serwerwww\apache\bin\apache.exe -- (Apache2.2) SRV - [2009-11-26 14:48:10 | 000,515,816 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\atwtusb.exe -- (WTService) SRV - [2009-07-22 17:54:14 | 000,081,920 | ---- | M] (Firebird Project) [Auto | Running] -- C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe -- (FirebirdGuardianDefaultInstance) SRV - [2009-07-22 17:53:44 | 002,736,128 | ---- | M] (Firebird Project) [On_Demand | Running] -- C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe -- (FirebirdServerDefaultInstance) SRV - [2009-02-11 23:01:06 | 000,045,056 | ---- | M] (Hewlett-Packard Development Company, L.P) [On_Demand | Stopped] -- C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTChangeFilterService.exe -- (HP ProtectTools Service) SRV - [2009-01-28 14:15:16 | 000,186,640 | ---- | M] (Bioscrypt Inc.) [Auto | Running] -- C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll -- (ASBroker) SRV - [2009-01-28 14:15:10 | 000,149,776 | ---- | M] (Bioscrypt Inc.) [Auto | Running] -- C:\Program Files\Hewlett-Packard\IAM\Bin\ASChnl.dll -- (ASChannel) SRV - [2008-10-03 13:33:12 | 001,185,016 | ---- | M] (AuthenTec, Inc.) [Auto | Running] -- C:\Program Files\Fingerprint Sensor\AtService.exe -- (ATService) SRV - [2008-10-02 11:26:42 | 000,860,160 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng) SRV - [2008-10-02 11:06:56 | 000,905,216 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe -- (S24EventMonitor) SRV - [2008-10-02 10:56:44 | 000,466,944 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc) SRV - [2008-10-01 15:01:14 | 000,256,544 | ---- | M] (SafeBoot International) [Auto | Running] -- C:\Program Files\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe -- (HpFkCryptService) SRV - [2008-08-06 15:24:40 | 000,349,432 | ---- | M] (Hewlett-Packard Ltd) [On_Demand | Stopped] -- C:\WINDOWS\system32\flcdlock.exe -- (FLCDLOCK) SRV - [2008-04-08 21:12:50 | 001,112,560 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe -- (RoxMediaDB10) SRV - [2007-11-27 17:42:14 | 000,185,896 | ---- | M] (ActivIdentity) [Auto | Running] -- C:\Program Files\ActivIdentity\ActivClient\accoca.exe -- (accoca) SRV - [2007-07-24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Running] -- C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2) SRV - [2007-05-29 05:06:44 | 000,598,960 | ---- | M] ( ) [Auto | Running] -- C:\WINDOWS\system32\lxdfcoms.exe -- (lxdf_device) SRV - [2007-05-29 05:06:20 | 000,099,248 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxdfserv.exe -- (lxdfCATSCustConnectService) SRV - [2007-01-04 19:48:50 | 000,112,152 | ---- | M] (InterVideo) [Auto | Running] -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr) SRV - [2004-03-13 05:04:16 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- System32\Drivers\CSN5PDTS82x64.sys -- (CSN5PDTS82x64) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\admin\USTAWI~1\Temp\catchme.sys -- (catchme) DRV - [2012-06-26 09:42:13 | 000,024,192 | ---- | M] (Bytemobile, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tcpipBM.sys -- (tcpipBM) DRV - [2012-06-26 09:42:12 | 000,090,368 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_jucdcacm.sys -- (huawei_cdcacm) DRV - [2012-06-26 09:42:12 | 000,073,216 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ew_jubusenum.sys -- (huawei_enumerator) DRV - [2012-06-26 09:42:12 | 000,064,384 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_jucdcecm.sys -- (huawei_cdcecm) DRV - [2012-06-26 09:42:12 | 000,026,624 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_juextctrl.sys -- (huawei_ext_ctrl) DRV - [2012-06-26 09:42:12 | 000,013,184 | ---- | M] (Bytemobile, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\BMLoad.sys -- (BMLoad) DRV - [2012-06-26 09:42:12 | 000,011,136 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_usbenumfilter.sys -- (ew_usbenumfilter) DRV - [2012-06-26 09:42:12 | 000,007,552 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewfiltertdidriver.sys -- (filtertdidriver) DRV - [2011-12-19 15:12:00 | 000,104,752 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV - [2011-12-19 15:11:58 | 000,158,512 | ---- | M] (Oracle Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VBoxDrv.sys -- (VBoxDrv) DRV - [2011-12-19 15:11:58 | 000,116,016 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VBoxNetFlt.sys -- (VBoxNetFlt) DRV - [2011-12-19 15:11:58 | 000,091,440 | ---- | M] (Oracle Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VBoxUSBMon.sys -- (VBoxUSBMon) DRV - [2011-12-19 15:11:58 | 000,082,736 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\VBoxUSB.sys -- (VBoxUSB) DRV - [2011-11-01 10:07:26 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2011-11-01 10:07:26 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2011-11-01 10:07:26 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2011-11-01 10:07:24 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2011-05-26 11:29:24 | 000,298,016 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp) DRV - [2011-03-30 13:05:55 | 000,025,088 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\teamviewervpn.sys -- (teamviewervpn) DRV - [2011-03-24 10:57:54 | 000,013,192 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\epmntdrv.sys -- (epmntdrv) DRV - [2011-03-24 10:57:54 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\EuGdiDrv.sys -- (EuGdiDrv) DRV - [2011-02-11 23:23:34 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf) DRV - [2011-02-03 04:22:48 | 000,141,736 | ---- | M] (Miray) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mvd.sys -- (MirayVirtualDisk) DRV - [2011-01-27 20:18:32 | 000,058,496 | ---- | M] (Silicon Laboratories) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\silabser.sys -- (silabser) DRV - [2011-01-27 20:18:32 | 000,047,176 | ---- | M] (Silicon Laboratories) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\silabenm.sys -- (silabenm) DRV - [2010-12-21 15:04:06 | 000,141,264 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2010-12-21 15:04:06 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv) DRV - [2010-12-21 13:47:38 | 000,094,872 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir) DRV - [2010-11-08 20:29:14 | 000,016,512 | ---- | M] (JIAPENG Network Technology) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\jp97usb.sys -- (HX97USB) DRV - [2010-10-18 04:14:24 | 006,913,920 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NETwNx32.sys -- (NETwNx32) DRV - [2010-05-20 16:14:52 | 000,028,184 | ---- | M] (Colasoft Co., Ltd.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\CSN5PDTS82.sys -- (CSN5PDTS82) DRV - [2009-10-16 19:11:58 | 000,107,520 | R--- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gtuhs51.sys -- (GTUHSNDISIPXP) DRV - [2009-10-16 19:11:58 | 000,066,560 | R--- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gtuhsbus.sys -- (GTUHSBUS) DRV - [2009-10-16 19:11:58 | 000,008,064 | R--- | M] (Option N.V.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gtuhsser.sys -- (GTUHSSER) DRV - [2009-08-20 18:38:00 | 000,006,144 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\walvhid.sys -- (vhidmini) DRV - [2009-08-10 13:14:04 | 001,765,168 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp2uvc.sys -- (SNP2UVC) DRV - [2009-08-04 11:04:26 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5) DRV - [2009-08-04 11:04:26 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5) DRV - [2009-04-08 02:32:48 | 000,116,224 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\IntcHdmi.sys -- (IntcHdmiAddService) DRV - [2009-04-07 14:45:24 | 000,012,416 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\ekauio.sys -- (Ekauio) DRV - [2009-03-08 19:15:00 | 000,006,144 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\moufiltr.sys -- (moufiltr) DRV - [2009-02-10 17:23:02 | 000,082,320 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive) DRV - [2009-01-15 01:16:20 | 000,156,816 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwdndis.sys -- (BTWDNDIS) DRV - [2009-01-15 01:16:20 | 000,047,272 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwusb.sys -- (BTWUSB) DRV - [2009-01-15 01:16:20 | 000,037,032 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwmodem.sys -- (btwmodem) DRV - [2009-01-15 01:16:18 | 000,991,656 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL) DRV - [2009-01-15 01:16:18 | 000,534,568 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btaudio.sys -- (btaudio) DRV - [2009-01-15 01:16:18 | 000,037,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver) DRV - [2009-01-06 00:41:00 | 003,634,688 | R--- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) DRV - [2008-10-01 15:02:04 | 000,051,408 | ---- | M] (SafeBoot N.V.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\SbAlg.sys -- (SbAlg) DRV - [2008-10-01 15:02:02 | 000,012,960 | ---- | M] (SafeBoot International) [File_System | Boot | Running] -- C:\WINDOWS\System32\drivers\SbFsLock.sys -- (SbFsLock) DRV - [2008-10-01 15:02:00 | 000,012,528 | ---- | M] (SafeBoot International) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\rsvlock.sys -- (RsvLock) DRV - [2008-10-01 15:01:58 | 000,109,216 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\SafeBoot.sys -- (SafeBoot) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-08-06 14:43:30 | 000,032,256 | ---- | M] (Hewlett-Packard Development Company L.P.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\DAMDrv.sys -- (DAMDrv) DRV - [2008-08-04 11:32:26 | 000,011,904 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans) DRV - [2008-05-23 12:51:02 | 000,024,624 | ---- | M] (Hewlett-Packard Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\hpdskflt.sys -- (hpdskflt) DRV - [2008-05-23 12:50:16 | 000,028,592 | ---- | M] (Hewlett-Packard Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Accelerometer.sys -- (Accelerometer) DRV - [2008-04-13 20:56:06 | 000,088,320 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx) DRV - [2008-04-13 20:46:22 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MPE.sys -- (MPE) DRV - [2008-03-28 20:14:02 | 000,024,064 | R--- | M] (Sonic Focus, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfaudio.sys -- (SFAUDIO) DRV - [2007-08-31 17:33:22 | 000,479,744 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\emBDA.sys -- (USB28xxBGA) DRV - [2007-08-31 14:14:40 | 000,038,656 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\emOEM.sys -- (USB28xxOEM) DRV - [2007-06-18 16:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr) DRV - [2007-04-17 20:09:28 | 000,011,032 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\regi.sys -- (regi) DRV - [2007-03-12 14:25:24 | 000,101,520 | ---- | M] (Syntek Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\STK02NW2.sys -- (DCamUSBSTK02N) DRV - [2006-07-24 16:05:00 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen) DRV - [2006-03-02 14:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb) DRV - [2006-03-02 14:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx) DRV - [2005-04-04 11:36:52 | 000,009,887 | ---- | M] (Ken Kato) [Kernel | On_Demand | Stopped] -- C:\Documents and Settings\admin\Pulpit\diagnostyka\bootable_disk\vfd21-080206\vfd.sys -- (VirtualFD) DRV - [2004-03-24 04:12:34 | 000,017,280 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\nsndis5.sys -- (NSNDIS5) DRV - [2003-12-01 04:54:20 | 000,043,136 | R--- | M] (Prolific Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ser2pl.sys -- (Ser2pl) DRV - [2002-01-12 16:30:34 | 000,003,567 | ---- | M] (Beyond Logic http://www.beyondlogic.org) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PortTalk.sys -- (PortTalk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-796845957-362288127-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-796845957-362288127-725345543-1003\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-796845957-362288127-725345543-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-796845957-362288127-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..keyword.URL: "http://klit.startnow.com/s/?src=addrbar&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.3.0&install_country=PL&install_date=20110822&user_guid=3D06E91258CF486C86A1175A77F63A42&machine_id=c400078befacbb6e957f092358b487a3&browser=FF&os=win&os_version=5.1-x86-SP3&q=" FF - prefs.js..network.proxy.backup.ftp: "192.168.2.253" FF - prefs.js..network.proxy.backup.ftp_port: 8080 FF - prefs.js..network.proxy.backup.socks: "192.168.2.253" FF - prefs.js..network.proxy.backup.socks_port: 8080 FF - prefs.js..network.proxy.backup.ssl: "192.168.2.253" FF - prefs.js..network.proxy.backup.ssl_port: 8080 FF - prefs.js..network.proxy.ftp: "192.168.2.253" FF - prefs.js..network.proxy.ftp_port: 8080 FF - prefs.js..network.proxy.http: "192.168.2.253" FF - prefs.js..network.proxy.http_port: 8080 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "192.168.2.253" FF - prefs.js..network.proxy.socks_port: 8080 FF - prefs.js..network.proxy.ssl: "192.168.2.253" FF - prefs.js..network.proxy.ssl_port: 8080 FF - prefs.js..network.proxy.type: 0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll () FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\PROGRAM FILES\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll File not found FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll File not found FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2012-06-25 21:00:47 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ff-bmboc@bytemobile.com: C:\Program Files\T-Mobile\InternetManager_H\OCx32\addon [2012-06-26 09:42:22 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-04-10 21:30:31 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 14.0\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012-06-25 09:59:12 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 14.0\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011-05-12 08:18:37 | 000,000,000 | ---D | M] [2011-05-13 13:49:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Extensions [2011-05-13 13:49:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2012-07-05 13:44:27 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ivf0tdf.default\extensions [2012-07-05 13:44:27 | 000,000,000 | ---D | M] (ColorZilla) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ivf0tdf.default\extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326} [2011-11-20 09:39:11 | 000,000,000 | ---D | M] ("Free YouTube Download (Free Studio) Menu") -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ivf0tdf.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C} [2011-08-22 22:01:22 | 000,001,390 | ---- | M] () -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ivf0tdf.default\searchplugins\yahoo-zugo.xml [2012-03-07 12:15:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-04-10 21:30:31 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-02-15 02:02:30 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-02-15 02:02:30 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-02-15 02:02:30 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-02-15 02:02:30 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-02-15 02:02:30 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-02-15 02:02:30 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2012-07-25 09:07:37 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O3 - HKU\S-1-5-21-796845957-362288127-725345543-1003\..\Toolbar\WebBrowser: (&Save Flash) - {4064EA35-578D-4073-A834-C96D82CBCF40} - C:\Program Files\Save Flash\SaveFlash.dll (PilotGroup LLC) O4 - HKLM..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\accelerometerST.exe (Hewlett-Packard Corporation) O4 - HKLM..\Run: [accrdsub] C:\Program Files\ActivIdentity\ActivClient\accrdsub.exe (ActivIdentity) O4 - HKLM..\Run: [CognizanceTS] C:\Program Files\Hewlett-Packard\IAM\Bin\ASTSVCC.dll (Bioscrypt Inc.) O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [HPCam_Menu] C:\Program Files\Hewlett-Packard\HP Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation) O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe (Intel(R) Corporation) O4 - HKLM..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE (Hewlett-Packard Development Company, L.P.) O4 - HKU\S-1-5-21-796845957-362288127-725345543-1003..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.) O4 - HKU\S-1-5-21-796845957-362288127-725345543-1003..\Run: [ccleaner] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd) O4 - HKU\S-1-5-21-796845957-362288127-725345543-1003..\Run: [Gadu-Gadu 10] C:\Program Files\Gadu-Gadu 10\gg.exe (GG Network S.A.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\BTTray.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-796845957-362288127-725345543-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-796845957-362288127-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-796845957-362288127-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-796845957-362288127-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation) O16 - DPF: {108D3206-846A-4A93-BACB-F0572D043ED7} http://192.168.2.13:980/webrec.cab (SurveillanceCtrl Control) O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1341922499296 (MUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B004765C-8A9F-4EA3-B8DB-12D86F1875D8}: NameServer = 194.204.159.1,194.204.152.34 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C506DE6B-8BF4-45CB-A5A7-5F5556F41F61}: NameServer = 192.168.1.1 O20 - AppInit_DLLs: (C:\WINDOWS\system32\APSHook.dll) - C:\WINDOWS\system32\APSHook.dll (Bioscrypt Inc.) O20 - AppInit_DLLs: (APSHook.dll) - C:\WINDOWS\System32\APSHook.dll (Bioscrypt Inc.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\ackpbsc: DllName - (C:\WINDOWS\system32\ackpbsc.dll) - C:\WINDOWS\system32\ackpbsc.dll (ActivIdentity) O20 - Winlogon\Notify\acunlock: DllName - (C:\Program Files\ActivIdentity\ActivClient\acunlock.dll) - C:\Program Files\ActivIdentity\ActivClient\acunlock.dll (ActivIdentity) O20 - Winlogon\Notify\DeviceNP: DllName - (DeviceNP.dll) - C:\WINDOWS\System32\DeviceNP.dll (Hewlett-Packard Limited) O20 - Winlogon\Notify\OneCard: DllName - (C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll) - C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll (Bioscrypt Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2011-05-11 17:01:09 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-25 14:30:21 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2012-07-25 14:30:20 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\admin\Recent [2012-07-25 10:56:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\Malwarebytes [2012-07-25 10:55:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2012-07-25 10:54:11 | 010,652,120 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\admin\Pulpit\mbam-setup-1.62.0.1300.exe [2012-07-25 09:53:16 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\admin\Pulpit\OTL.exe [2012-07-25 09:10:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp [2012-07-25 08:52:42 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2012-07-25 08:52:42 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2012-07-25 08:52:42 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2012-07-25 08:52:42 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2012-07-25 08:51:25 | 004,584,441 | R--- | C] (Swearware) -- C:\Documents and Settings\admin\Pulpit\ComboFix.exe [2012-07-25 08:26:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\WinDjView [2012-07-25 08:26:14 | 000,000,000 | ---D | C] -- C:\Program Files\WinDjView [2012-07-25 08:26:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Foxit Reader [2012-07-25 08:26:05 | 000,000,000 | ---D | C] -- C:\Program Files\Foxit Software [2012-07-25 08:25:49 | 006,913,920 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\drivers\NETwNx32.sys [2012-07-25 08:25:46 | 002,760,704 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\NETwNr32.dll [2012-07-25 08:25:46 | 000,684,032 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\NETwNc32.dll [2012-07-25 08:25:05 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\intelide.sys [2012-07-25 07:22:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Pulpit\Office.2010.Portable [2012-07-20 23:52:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Pulpit\DRPSu12.3-Final [2012-07-20 20:20:28 | 009,226,440 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerInstaller.exe [2012-07-20 10:30:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Menu Start\Programy\Recover My Files [2012-07-20 10:24:22 | 000,000,000 | ---D | C] -- C:\Program Files\GetData [2012-07-20 10:11:20 | 000,000,000 | ---D | C] -- C:\Program Files\Convar [2012-07-20 10:11:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Menu Start\Programy\Convar [2012-07-18 22:42:06 | 000,000,000 | ---D | C] -- C:\Program Files\ESWin [2012-07-18 22:42:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Menu Start\Programy\ESWIN [2012-07-15 22:25:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Pulpit\albatrods [2012-07-14 10:51:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Pulpit\zuza muzyka [2012-07-10 23:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\PCHealth [2012-07-10 13:40:12 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works [2012-07-10 13:39:57 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio [2012-07-10 13:39:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2012-07-10 13:39:16 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET [2012-07-10 13:00:40 | 023,510,720 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\admin\Moje dokumenty\dotnetfx2.exe [2012-07-10 12:05:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTemp [2012-07-10 10:21:45 | 024,270,368 | ---- | C] (Microsoft) -- C:\Documents and Settings\admin\Moje dokumenty\dotnetfx.exe [2012-07-07 21:23:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Pulpit\Nowy folder [2012-07-06 21:43:20 | 000,000,000 | ---D | C] -- C:\Qoobox [2012-07-05 12:43:02 | 000,000,000 | ---D | C] -- C:\logs [2012-06-26 09:43:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Internet Manager [2012-06-26 09:42:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Internet Manager [2012-06-26 09:42:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DataCardService [2012-06-26 09:42:42 | 000,861,696 | ---- | C] (DiBcom SA) -- C:\WINDOWS\System32\drivers\mod7700.sys [2012-06-26 09:42:42 | 000,235,392 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbnet.sys [2012-06-26 09:42:42 | 000,194,816 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbmdm.sys [2012-06-26 09:42:42 | 000,102,784 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_hwusbdev.sys [2012-06-26 09:42:42 | 000,090,368 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jucdcacm.sys [2012-06-26 09:42:42 | 000,073,216 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jubusenum.sys [2012-06-26 09:42:42 | 000,064,384 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jucdcecm.sys [2012-06-26 09:42:42 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbccid.sys [2012-06-26 09:42:42 | 000,026,624 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_juextctrl.sys [2012-06-26 09:42:42 | 000,025,856 | ---- | C] (Huawei Tech. Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewdcsc.sys [2012-06-26 09:42:42 | 000,019,200 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_hwupgrade.sys [2012-06-26 09:42:42 | 000,011,136 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_usbenumfilter.sys [2012-06-26 09:42:35 | 000,007,552 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewfiltertdidriver.sys [2012-06-26 09:42:30 | 000,024,192 | ---- | C] (Bytemobile, Inc.) -- C:\WINDOWS\System32\drivers\tcpipBM.sys [2012-06-26 09:42:30 | 000,013,184 | ---- | C] (Bytemobile, Inc.) -- C:\WINDOWS\System32\drivers\BMLoad.sys [2012-06-26 09:42:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\T-Mobile [2012-06-26 09:42:29 | 000,724,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bmutil.dll [2012-06-26 09:42:29 | 000,480,384 | ---- | C] (Bytemobile, Inc.) -- C:\WINDOWS\System32\bmnet.dll [2012-06-26 09:42:29 | 000,308,352 | ---- | C] (Bytemobile, Inc.) -- C:\WINDOWS\System32\bminstall.dll [2012-06-26 09:42:29 | 000,132,224 | ---- | C] (Bytemobile, Inc.) -- C:\WINDOWS\System32\bmdumpd.bin [2012-06-26 09:41:57 | 000,000,000 | ---D | C] -- C:\Program Files\T-Mobile [2012-06-25 21:01:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\PC Suite [2012-06-25 21:01:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\Nokia [2012-06-25 21:01:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2012-06-25 21:00:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Nokia PC Suite [2012-06-25 21:00:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite [2012-06-25 21:00:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia [2012-06-25 21:00:26 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX [2012-06-25 21:00:25 | 000,018,816 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys [2012-06-25 21:00:18 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution [2012-06-25 21:00:11 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys [2012-06-25 21:00:10 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys [2012-06-25 21:00:09 | 000,023,168 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys [2012-06-25 21:00:04 | 000,605,696 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll [2012-06-25 21:00:04 | 000,123,904 | ---- | C] (Nokia) -- C:\WINDOWS\System32\ccdcmbwu.dll [2012-06-25 21:00:04 | 000,018,176 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys [2012-06-25 21:00:02 | 000,075,264 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcls.dll [2012-06-25 21:00:01 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia [2012-06-25 20:59:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-25 14:47:00 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-07-25 14:30:41 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-07-25 14:29:07 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-07-25 14:28:57 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-07-25 14:20:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-07-25 10:57:23 | 000,000,030 | ---- | M] () -- C:\WINDOWS\%UNINSTALL_LANG% [2012-07-25 10:55:28 | 010,652,120 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\admin\Pulpit\mbam-setup-1.62.0.1300.exe [2012-07-25 09:29:40 | 000,004,357 | ---- | M] () -- C:\WINDOWS\WINCMD.INI [2012-07-25 09:07:37 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2012-07-25 08:58:26 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\admin\Pulpit\OTL.exe [2012-07-25 08:49:18 | 004,584,441 | R--- | M] (Swearware) -- C:\Documents and Settings\admin\Pulpit\ComboFix.exe [2012-07-25 08:49:05 | 000,504,208 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-07-25 08:49:04 | 000,445,050 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-07-25 08:49:04 | 000,091,370 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-07-25 08:49:04 | 000,073,100 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-07-25 08:26:10 | 000,000,791 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Foxit Reader.lnk [2012-07-25 08:25:58 | 000,000,218 | ---- | M] () -- C:\WINDOWS\System32\OEMINFO.INI [2012-07-23 23:00:34 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn [2012-07-23 21:51:09 | 000,003,488 | ---- | M] () -- C:\WINDOWS\wcx_ftp.ini [2012-07-21 01:11:44 | 000,039,656 | ---- | M] () -- C:\WINDOWS\System32\OEMlogo.bmp [2012-07-20 20:20:30 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-07-20 20:20:30 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-07-20 20:20:28 | 009,226,440 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerInstaller.exe [2012-07-20 10:30:24 | 000,000,868 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\Recover My Files.lnk [2012-07-20 10:11:20 | 000,000,975 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\PC Inspector File Recovery.lnk [2012-07-20 09:47:06 | 000,001,512 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Recuva.lnk [2012-07-18 22:42:06 | 000,000,638 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\ESWin.lnk [2012-07-18 13:56:01 | 001,428,321 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\toto14a0.pdf [2012-07-13 23:52:54 | 000,123,775 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\p26.pdf [2012-07-13 22:46:21 | 000,123,128 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\p27.pdf [2012-07-13 22:41:29 | 000,066,680 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\p8.jpg [2012-07-13 22:34:48 | 2440,258,307 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\AUTOMAPA 6.10b EUROPA (SD).rar [2012-07-13 15:44:02 | 000,000,372 | ---- | M] () -- C:\Documents and Settings\admin\Moje dokumenty\spider.sav [2012-07-13 12:50:06 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012-07-10 22:48:01 | 000,385,608 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-07-10 22:07:13 | 000,048,640 | ---- | M] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-07-10 13:01:18 | 023,510,720 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\admin\Moje dokumenty\dotnetfx2.exe [2012-07-10 11:59:52 | 024,270,368 | ---- | M] (Microsoft) -- C:\Documents and Settings\admin\Moje dokumenty\dotnetfx.exe [2012-07-10 11:08:23 | 000,013,820 | ---- | M] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120710_110821.reg [2012-07-06 16:05:03 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\PUTTY.RND [2012-07-06 13:05:21 | 000,001,350 | ---- | M] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120706_130519.reg [2012-07-05 22:16:29 | 000,039,434 | ---- | M] () -- C:\ucp.php [2012-07-05 12:07:04 | 000,002,014 | ---- | M] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120705_120701.reg [2012-07-05 11:19:33 | 000,005,618 | ---- | M] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120705_111931.reg [2012-07-05 11:08:40 | 000,016,666 | ---- | M] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120705_110835.reg [2012-07-05 10:48:38 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\CCleaner.lnk [2012-07-04 17:20:29 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf [2012-06-26 09:44:45 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_juextctrl_01007.Wdf [2012-06-26 09:44:43 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_jucdcecm_01007.Wdf [2012-06-26 09:44:00 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_jucdcacm_01007.Wdf [2012-06-26 09:43:01 | 000,000,894 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Internet Manager.lnk [2012-06-26 09:42:45 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_jubusenum_01007.Wdf [2012-06-26 09:42:13 | 000,861,696 | ---- | M] (DiBcom SA) -- C:\WINDOWS\System32\drivers\mod7700.sys [2012-06-26 09:42:13 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\usbccid.sys [2012-06-26 09:42:13 | 000,024,192 | ---- | M] (Bytemobile, Inc.) -- C:\WINDOWS\System32\drivers\tcpipBM.sys [2012-06-26 09:42:12 | 000,235,392 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbnet.sys [2012-06-26 09:42:12 | 000,194,816 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewusbmdm.sys [2012-06-26 09:42:12 | 000,102,784 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_hwusbdev.sys [2012-06-26 09:42:12 | 000,090,368 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jucdcacm.sys [2012-06-26 09:42:12 | 000,073,216 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jubusenum.sys [2012-06-26 09:42:12 | 000,064,384 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_jucdcecm.sys [2012-06-26 09:42:12 | 000,026,624 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_juextctrl.sys [2012-06-26 09:42:12 | 000,025,856 | ---- | M] (Huawei Tech. Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewdcsc.sys [2012-06-26 09:42:12 | 000,019,200 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_hwupgrade.sys [2012-06-26 09:42:12 | 000,013,184 | ---- | M] (Bytemobile, Inc.) -- C:\WINDOWS\System32\drivers\BMLoad.sys [2012-06-26 09:42:12 | 000,011,136 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ew_usbenumfilter.sys [2012-06-26 09:42:12 | 000,007,552 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\WINDOWS\System32\drivers\ewfiltertdidriver.sys [2012-06-26 09:42:11 | 001,112,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfcoinstaller01007.dll [2012-06-26 09:42:11 | 000,013,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sporder.dll [2012-06-26 09:42:07 | 000,724,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bmutil.dll [2012-06-26 09:42:07 | 000,480,384 | ---- | M] (Bytemobile, Inc.) -- C:\WINDOWS\System32\bmnet.dll [2012-06-26 09:42:06 | 000,308,352 | ---- | M] (Bytemobile, Inc.) -- C:\WINDOWS\System32\bminstall.dll [2012-06-26 09:41:59 | 000,132,224 | ---- | M] (Bytemobile, Inc.) -- C:\WINDOWS\System32\bmdumpd.bin [2012-06-25 21:03:41 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf [2012-06-25 21:03:35 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_user_01_09_00.Wdf [2012-06-25 21:00:50 | 000,001,763 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Nokia PC Suite.lnk [6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-25 08:52:42 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2012-07-25 08:52:42 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2012-07-25 08:52:42 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2012-07-25 08:52:42 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2012-07-25 08:52:42 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2012-07-25 08:26:10 | 000,000,791 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Foxit Reader.lnk [2012-07-20 20:13:24 | 000,000,930 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-07-20 10:30:24 | 000,000,868 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\Recover My Files.lnk [2012-07-20 10:11:20 | 000,000,975 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\PC Inspector File Recovery.lnk [2012-07-20 09:47:06 | 000,001,512 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Recuva.lnk [2012-07-18 22:42:06 | 000,000,638 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\ESWin.lnk [2012-07-18 13:55:58 | 001,428,321 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\toto14a0.pdf [2012-07-13 23:52:53 | 000,123,775 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\p26.pdf [2012-07-13 22:46:21 | 000,123,128 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\p27.pdf [2012-07-13 22:41:29 | 000,066,680 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\p8.jpg [2012-07-13 15:44:02 | 000,000,372 | ---- | C] () -- C:\Documents and Settings\admin\Moje dokumenty\spider.sav [2012-07-13 12:52:42 | 2440,258,307 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\AUTOMAPA 6.10b EUROPA (SD).rar [2012-07-11 08:42:34 | 000,001,036 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-07-11 08:42:33 | 000,001,032 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-07-10 22:47:11 | 000,225,816 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2012-07-10 11:08:22 | 000,013,820 | ---- | C] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120710_110821.reg [2012-07-06 13:05:21 | 000,001,350 | ---- | C] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120706_130519.reg [2012-07-05 22:16:29 | 000,039,434 | ---- | C] () -- C:\ucp.php [2012-07-05 12:07:02 | 000,002,014 | ---- | C] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120705_120701.reg [2012-07-05 11:19:32 | 000,005,618 | ---- | C] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120705_111931.reg [2012-07-05 11:08:38 | 000,016,666 | ---- | C] () -- C:\Documents and Settings\admin\Moje dokumenty\cc_20120705_110835.reg [2012-07-04 17:20:29 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf [2012-06-26 09:44:45 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_juextctrl_01007.Wdf [2012-06-26 09:44:43 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_jucdcecm_01007.Wdf [2012-06-26 09:44:00 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_jucdcacm_01007.Wdf [2012-06-26 09:43:01 | 000,000,894 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Internet Manager.lnk [2012-06-26 09:42:45 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ew_jubusenum_01007.Wdf [2012-06-25 21:03:41 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf [2012-06-25 21:03:35 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_user_01_09_00.Wdf [2012-06-25 21:00:50 | 000,001,763 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Nokia PC Suite.lnk [2012-05-07 17:17:43 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\LauncherAccess.dt [2012-05-07 17:16:42 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys [2012-03-30 10:28:56 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxdfvs.dll [2012-03-30 10:28:55 | 000,348,160 | ---- | C] () -- C:\WINDOWS\System32\lxdfcoin.dll [2012-03-30 10:28:33 | 000,692,224 | ---- | C] () -- C:\WINDOWS\System32\lxdfdrs.dll [2012-03-30 10:28:33 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\lxdfcnv4.dll [2012-03-30 10:28:33 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\lxdfcaps.dll [2012-03-30 10:27:40 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\lxdfoem.dll [2012-03-30 10:27:40 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\LXDFPMON.DLL [2012-03-30 10:27:40 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\LXDFFXPU.DLL [2012-03-30 10:27:05 | 000,434,176 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfhcp.dll [2012-03-30 10:27:05 | 000,356,352 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfinpa.dll [2012-03-30 10:27:05 | 000,348,160 | ---- | C] () -- C:\WINDOWS\System32\lxdfinst.dll [2012-03-30 10:27:04 | 001,200,128 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfserv.dll [2012-03-30 10:27:04 | 000,950,272 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfusb1.dll [2012-03-30 10:27:04 | 000,860,160 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfcomc.dll [2012-03-30 10:27:04 | 000,663,552 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfhbn3.dll [2012-03-30 10:27:04 | 000,647,168 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfpmui.dll [2012-03-30 10:27:04 | 000,598,960 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfcoms.exe [2012-03-30 10:27:04 | 000,565,248 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdflmpm.dll [2012-03-30 10:27:04 | 000,365,488 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfcfg.exe [2012-03-30 10:27:04 | 000,364,544 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfcomm.dll [2012-03-30 10:27:04 | 000,339,968 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfiesc.dll [2012-03-30 10:27:04 | 000,320,432 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfih.exe [2012-03-30 10:27:04 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\lxdfgrd.dll [2012-03-30 10:27:04 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\lxdfprox.dll [2012-03-07 19:56:56 | 000,039,066 | ---- | C] () -- C:\Documents and Settings\admin\Menu Start.rar [2012-03-06 12:10:35 | 000,000,110 | ---- | C] () -- C:\WINDOWS\Karty.INI [2012-02-17 15:32:28 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\mviadecdll.dll [2012-02-17 15:32:28 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\decoderdll.dll [2012-02-17 15:32:27 | 000,752,640 | ---- | C] () -- C:\WINDOWS\secodec-52.dll [2012-02-17 15:32:27 | 000,176,128 | ---- | C] () -- C:\WINDOWS\sescale-0.dll [2012-02-17 15:32:27 | 000,073,216 | ---- | C] () -- C:\WINDOWS\seformat-52.dll [2012-02-17 15:32:27 | 000,046,592 | ---- | C] () -- C:\WINDOWS\seutil-50.dll [2012-02-17 15:32:27 | 000,000,728 | ---- | C] () -- C:\WINDOWS\M3JPEG.INI [2012-02-15 16:36:05 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2012-02-07 17:24:40 | 000,000,259 | ---- | C] () -- C:\WINDOWS\PSADMIN.INI [2012-02-03 00:06:26 | 000,000,218 | ---- | C] () -- C:\Documents and Settings\admin\.recently-used.xbel [2011-12-28 15:20:20 | 000,075,776 | ---- | C] () -- C:\WINDOWS\cadkasdeinst01e.exe [2011-11-29 02:37:52 | 000,129,024 | ---- | C] () -- C:\WINDOWS\System32\AVERM.dll [2011-11-29 02:37:52 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\AVEQT.dll [2011-11-20 14:40:06 | 000,003,140 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\KGyGaAvL.sys [2011-11-20 10:11:55 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2011-11-02 07:37:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\FASE2.INI [2011-10-25 21:24:06 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2011-09-23 21:04:24 | 000,001,357 | ---- | C] () -- C:\Documents and Settings\All Users\lxdf [2011-09-20 09:33:08 | 000,000,044 | ---- | C] () -- C:\WINDOWS\SMWizard.INI [2011-09-08 09:55:26 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll [2011-08-22 22:01:09 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2011-08-22 22:01:06 | 000,650,752 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2011-08-22 22:01:06 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2011-08-22 22:01:05 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2011-08-20 14:16:36 | 000,000,030 | ---- | C] () -- C:\WINDOWS\Iedit_.INI [2011-08-14 13:10:32 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\PsisDecd.dll [2011-08-02 21:46:55 | 000,018,048 | ---- | C] () -- C:\WINDOWS\System32\EuEpmGdi.dll [2011-08-02 21:46:54 | 002,340,992 | ---- | C] () -- C:\WINDOWS\System32\BootMan.exe [2011-08-02 21:46:54 | 000,086,408 | ---- | C] () -- C:\WINDOWS\System32\setupempdrv03.exe [2011-08-02 21:46:54 | 000,013,192 | ---- | C] () -- C:\WINDOWS\System32\epmntdrv.sys [2011-08-02 21:46:54 | 000,008,456 | ---- | C] () -- C:\WINDOWS\System32\EuGdiDrv.sys [2011-07-20 13:10:54 | 000,000,559 | ---- | C] () -- C:\WINDOWS\cncscore.ini [2011-06-21 18:18:11 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\admin\Dane aplikacji\$_hpcst$.hpc [2011-06-05 20:16:21 | 000,515,816 | ---- | C] () -- C:\WINDOWS\System32\atwtusb.exe [2011-06-05 20:16:20 | 005,586,664 | ---- | C] () -- C:\WINDOWS\System32\WTMKM.exe [2011-06-05 20:16:20 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\ATWTINK.DLL [2011-06-05 20:16:20 | 000,126,696 | ---- | C] () -- C:\WINDOWS\RmTablet.exe [2011-06-05 20:16:20 | 000,118,504 | ---- | C] () -- C:\WINDOWS\System32\Calibration.exe [2011-06-05 20:16:20 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\InstallService.exe [2011-06-05 20:16:19 | 000,010,251 | ---- | C] () -- C:\WINDOWS\System32\Default_2.ini [2011-06-05 20:16:19 | 000,009,868 | ---- | C] () -- C:\WINDOWS\System32\Default_1.ini [2011-06-05 20:16:19 | 000,008,229 | ---- | C] () -- C:\WINDOWS\aiptbl.ini [2011-06-05 20:16:19 | 000,000,677 | ---- | C] () -- C:\WINDOWS\System32\MKProfile.ini [2011-06-03 07:53:10 | 000,000,456 | ---- | C] () -- C:\WINDOWS\_system.dat [2011-05-23 20:00:37 | 000,048,640 | ---- | C] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-05-23 18:58:25 | 000,000,193 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft.SqlServer.Compact.351.32.bc [2011-05-20 08:57:41 | 000,000,112 | ---- | C] () -- C:\WINDOWS\OPLK.INI [2011-05-20 08:53:51 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ZENVER.EXE [2011-05-20 08:53:50 | 000,409,088 | ---- | C] () -- C:\WINDOWS\System32\DBODBC6.DLL [2011-05-20 08:53:50 | 000,288,768 | ---- | C] () -- C:\WINDOWS\System32\DBLGEN6.DLL [2011-05-20 08:53:50 | 000,198,144 | ---- | C] () -- C:\WINDOWS\System32\DBPORT6.DLL [2011-05-20 08:53:50 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\NALNRD95.DLL [2011-05-20 08:53:50 | 000,143,872 | ---- | C] () -- C:\WINDOWS\System32\NALNRD32.DLL [2011-05-20 08:53:49 | 000,152,576 | R--- | C] () -- C:\WINDOWS\System32\NLSAPI32.DLL [2011-05-20 08:53:49 | 000,088,064 | R--- | C] () -- C:\WINDOWS\System32\NLS32.DLL [2011-05-19 07:47:06 | 000,003,488 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini [2011-05-17 21:37:12 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\PUTTY.RND [2011-05-17 19:50:11 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\admin\Dane aplikacji\winscp.rnd [2011-05-16 10:11:53 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2011-05-16 09:47:57 | 000,000,218 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI [2011-05-16 09:40:11 | 000,000,130 | ---- | C] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2011-05-15 21:53:41 | 000,004,357 | ---- | C] () -- C:\WINDOWS\WINCMD.INI [2011-05-14 00:37:50 | 000,004,096 | ---- | C] ( ) -- C:\WINDOWS\System32\IGFXDEVLib.dll [2011-05-14 00:37:49 | 000,000,151 | ---- | C] () -- C:\WINDOWS\System32\GfxUI.exe.config [2011-05-13 22:21:22 | 000,070,552 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat [2011-05-13 13:49:28 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2011-05-11 19:25:27 | 001,765,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\snp2uvc.sys [2011-05-11 19:25:27 | 000,203,312 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc.dll [2011-05-11 19:25:27 | 000,034,480 | ---- | C] () -- C:\WINDOWS\System32\drivers\sncduvc.sys [2011-05-11 19:25:27 | 000,027,184 | ---- | C] () -- C:\WINDOWS\snuvcdsm.exe [2011-05-11 19:25:27 | 000,015,497 | ---- | C] () -- C:\WINDOWS\snp2uvc.ini [2011-05-11 19:25:24 | 000,256,560 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnp2uvc.dll [2011-05-11 18:48:17 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2011-05-11 18:47:04 | 000,385,608 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-05-11 17:51:09 | 000,982,240 | ---- | C] () -- C:\WINDOWS\System32\igkrng500.bin [2011-05-11 17:51:09 | 000,439,308 | ---- | C] () -- C:\WINDOWS\System32\igcompkrng500.bin [2011-05-11 17:03:38 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2011-05-11 16:58:09 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2011-03-24 18:01:28 | 000,065,619 | ---- | C] () -- C:\WINDOWS\System32\setupw2k.dll [2011-03-24 18:01:11 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\nwslog32.dll [2011-02-11 23:23:34 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll < End of report >