OTL logfile created on: 2012-07-30 16:23:48 - Run 1 OTL by OldTimer - Version 3.2.55.0 Folder = C:\Documents and Settings\KG\Pulpit Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1023,48 Mb Total Physical Memory | 253,25 Mb Available Physical Memory | 24,74% Memory free 2,40 Gb Paging File | 1,59 Gb Available in Paging File | 66,17% Paging File free Paging file location(s): C:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 97,65 Gb Total Space | 49,51 Gb Free Space | 50,70% Space Free | Partition Type: NTFS Computer Name: ANGELIKA | User Name: KG | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-30 16:21:31 | 000,597,504 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\KG\Pulpit\OTL.exe PRC - [2012-07-26 19:52:04 | 001,095,560 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe PRC - [2012-07-26 19:40:56 | 000,794,560 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Application Updater\ApplicationUpdater.exe PRC - [2012-07-19 09:13:59 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2012-07-05 18:41:46 | 003,048,136 | ---- | M] (Skype Technologies S.A.) -- C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe PRC - [2012-04-20 10:39:14 | 013,374,048 | ---- | M] (GG Network S.A.) -- C:\Program Files\Gadu-Gadu 10\gg.exe PRC - [2012-04-04 18:47:32 | 000,161,664 | ---- | M] (Oracle Corporation) -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe PRC - [2012-03-28 01:14:06 | 000,138,232 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Internet Security\Engine\19.7.1.5\ccSvcHst.exe PRC - [2011-10-01 09:30:42 | 000,219,496 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe PRC - [2011-10-01 09:30:36 | 000,508,776 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe PRC - [2011-07-28 15:34:43 | 000,946,856 | ---- | M] () -- C:\Program Files\Lexmark Pro5500 Series\LMADLmon.exe PRC - [2010-02-02 14:41:40 | 000,135,168 | ---- | M] ( ) -- C:\Program Files\Panasonic\MFStation\PCCMFSDM.exe PRC - [2010-01-18 15:25:56 | 000,061,440 | ---- | M] (Panasonic System Networks Co.,Ltd.) -- C:\WINDOWS\system32\PCCMFLPD.exe PRC - [2010-01-18 14:21:28 | 000,151,552 | ---- | M] (Panasonic System Networks Co.,Ltd.) -- C:\Program Files\Panasonic\MFStation\PCMFSMLM.exe PRC - [2010-01-15 14:49:20 | 000,255,536 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe PRC - [2010-01-09 13:37:20 | 000,049,152 | ---- | M] (Panasonic System Networks Co., Ltd.) -- C:\Program Files\Panasonic\LocalCom\LMSRVNT.EXE PRC - [2009-11-25 20:19:11 | 000,814,344 | ---- | M] (ABBYY) -- C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe PRC - [2009-05-14 18:07:14 | 000,759,048 | ---- | M] (ABBYY) -- C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe PRC - [2008-12-04 14:50:00 | 000,024,576 | ---- | M] () -- C:\UPS\WSTD\UPSNA1Msgr.exe PRC - [2008-04-15 14:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-04-15 14:00:00 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Outlook Express\msimn.exe PRC - [2007-06-27 20:04:00 | 001,213,736 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe PRC - [2007-06-27 20:03:40 | 000,152,872 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-07-27 13:24:29 | 009,465,032 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_268.dll MOD - [2012-07-19 09:13:42 | 002,003,424 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2012-06-15 09:00:54 | 012,433,920 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\01abbadafaf265d9f4ac9bbb247acb98\System.Windows.Forms.ni.dll MOD - [2012-06-15 09:00:39 | 001,592,320 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\d86f2038209a4cf0d0f5b30f6375c9b2\System.Drawing.ni.dll MOD - [2012-05-11 09:23:37 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\3bba1b8b0b5ef0be238b011cc7a0575e\System.Xml.ni.dll MOD - [2012-05-11 09:20:36 | 007,953,408 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\e4b5afc4da43b1c576f9322f9f2e1bfe\System.ni.dll MOD - [2012-05-11 09:20:21 | 011,492,352 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\e337c89bc9f81b69d7237aa70e935900\mscorlib.ni.dll MOD - [2011-08-22 17:31:32 | 001,454,080 | ---- | M] () -- C:\Program Files\Lexmark Pro5500 Series\LMabdrs.dll MOD - [2011-07-28 15:34:43 | 000,946,856 | ---- | M] () -- C:\Program Files\Lexmark Pro5500 Series\LMADLmon.exe MOD - [2011-07-04 19:46:20 | 000,217,696 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\gglog.dll MOD - [2011-07-04 19:46:18 | 000,123,488 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\ggipcradioproxy.dll MOD - [2011-07-04 19:46:16 | 000,017,504 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\ggipc.dll MOD - [2011-07-04 19:46:12 | 000,027,744 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\ggcrypto.dll MOD - [2011-07-04 19:46:10 | 000,356,960 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\ggcommon.dll MOD - [2011-04-16 05:04:30 | 014,749,696 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtWebKit4.dll MOD - [2011-02-17 11:00:28 | 001,781,760 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtScript4.dll MOD - [2011-02-17 11:00:28 | 000,393,216 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtXml4.dll MOD - [2011-02-17 11:00:28 | 000,327,680 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtSvg4.dll MOD - [2011-02-17 11:00:26 | 001,044,480 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtNetwork4.dll MOD - [2011-02-17 11:00:24 | 009,097,216 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtGui4.dll MOD - [2011-02-17 11:00:24 | 002,560,000 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\QtCore4.dll MOD - [2011-02-17 10:59:40 | 000,311,296 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qtiff4.dll MOD - [2011-02-17 10:59:40 | 000,274,432 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qmng4.dll MOD - [2011-02-17 10:59:40 | 000,143,360 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qjpeg4.dll MOD - [2011-02-17 10:59:40 | 000,027,648 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qgif4.dll MOD - [2011-02-17 10:59:40 | 000,018,944 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\imageformats\qsvg4.dll MOD - [2011-02-09 02:56:38 | 000,296,448 | ---- | M] () -- C:\Program Files\Notepad++\NppShell_04.dll MOD - [2010-03-19 09:33:38 | 000,059,904 | ---- | M] () -- C:\Program Files\Gadu-Gadu 10\zlib1.dll MOD - [2008-12-04 14:50:54 | 000,049,152 | ---- | M] () -- C:\UPS\WSTD\POLICYMGR\UPS.Components.PolicyHolder.dll MOD - [2008-12-04 14:50:00 | 000,045,056 | ---- | M] () -- C:\UPS\WSTD\POLICYMGR\UPS.Components.NA1MessengerServer.dll MOD - [2008-12-04 14:50:00 | 000,024,576 | ---- | M] () -- C:\UPS\WSTD\UPSNA1Msgr.exe MOD - [2008-04-15 14:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll MOD - [2002-11-26 14:43:18 | 000,106,496 | ---- | M] () -- C:\WINDOWS\system32\BrMuSNMP.dll MOD - [2001-10-28 18:42:30 | 000,116,224 | ---- | M] () -- C:\WINDOWS\system32\pdfcmnnt.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt) SRV - [2012-07-27 13:24:30 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-07-26 19:40:56 | 000,794,560 | ---- | M] (Spigot, Inc.) [Auto | Running] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater) SRV - [2012-07-19 09:13:58 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-07-05 18:41:46 | 003,048,136 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service) SRV - [2012-05-03 08:31:10 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012-04-04 18:47:32 | 000,161,664 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2012-03-28 01:14:06 | 000,138,232 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Internet Security\Engine\19.7.1.5\ccSvcHst.exe -- (NIS) SRV - [2011-10-01 09:30:42 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa) SRV - [2011-10-01 09:30:36 | 000,508,776 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist) SRV - [2010-01-15 14:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService) SRV - [2010-01-09 13:37:20 | 000,049,152 | ---- | M] (Panasonic System Networks Co., Ltd.) [Auto | Running] -- C:\Program Files\Panasonic\LocalCom\LMSRVNT.EXE -- (Panasonic Local Printer Service) SRV - [2009-11-25 20:19:11 | 000,814,344 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\PE\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Professional.10.0) SRV - [2009-05-14 18:07:14 | 000,759,048 | ---- | M] (ABBYY) [Auto | Running] -- C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Sprint.9.0) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- c:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Microsoft Antimalware\Definition Updates\{0661CA18-24AA-4E1F-B0FB-1B52080FBA46}\MpKslebf11526.sys -- (MpKslebf11526) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\VoIPUSBDriver.sys -- (BulkUsb) DRV - [2012-07-30 09:36:42 | 000,141,944 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SYMEVENT.SYS -- (SymEvent) DRV - [2012-07-29 01:00:00 | 001,589,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\VirusDefs\20120729.006\navex15.sys -- (NAVEX15) DRV - [2012-07-29 01:00:00 | 000,376,480 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl) DRV - [2012-07-29 01:00:00 | 000,106,656 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv) DRV - [2012-07-29 01:00:00 | 000,087,928 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\VirusDefs\20120729.006\naveng.sys -- (NAVENG) DRV - [2012-05-28 10:45:32 | 000,017,488 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2012-04-04 03:44:36 | 000,821,880 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\BASHDefs\20120402.001\BHDrvx86.sys -- (BHDrvx86) DRV - [2012-03-29 08:28:38 | 000,388,216 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1307010.005\symtdi.sys -- (SYMTDI) DRV - [2012-03-29 08:28:30 | 000,905,336 | R--- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1307010.005\SymEFA.sys -- (SymEFA) DRV - [2012-03-29 08:28:25 | 000,340,088 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1307010.005\SymDS.sys -- (SymDS) DRV - [2012-03-29 08:06:25 | 000,149,624 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1307010.005\Ironx86.sys -- (SymIRON) DRV - [2012-03-29 08:05:45 | 000,356,280 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\IPSDefs\20120202.002\IDSXpx86.sys -- (IDSxpx86) DRV - [2012-03-29 08:03:27 | 000,574,072 | R--- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NIS\1307010.005\srtsp.sys -- (SRTSP) DRV - [2012-03-29 08:03:27 | 000,032,888 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1307010.005\srtspx.sys -- (SRTSPX) DRV - [2011-11-30 00:44:14 | 000,132,744 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1307010.005\ccSetx86.sys -- (ccSet_NIS) DRV - [2011-10-01 09:30:42 | 000,018,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Sftvolxp.sys -- (Sftvol) DRV - [2011-10-01 09:30:40 | 000,020,584 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Sftredirxp.sys -- (Sftredir) DRV - [2011-10-01 09:30:38 | 000,209,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Sftplayxp.sys -- (Sftplay) DRV - [2011-10-01 09:30:36 | 000,584,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Sftfsxp.sys -- (Sftfs) DRV - [2010-04-15 11:48:25 | 000,047,616 | ---- | M] (Aladdin Knowledge Systems) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Haspnt.sys -- (Haspnt) DRV - [2008-02-14 11:04:06 | 004,676,096 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) DRV - [2008-01-03 16:10:16 | 000,105,856 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2005-01-14 22:36:20 | 000,020,992 | ---- | M] (Panasonic Communications Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TEUSBMU.sys -- (TEUSBMU) DRV - [2005-01-14 22:35:26 | 000,020,992 | ---- | M] (Panasonic Communications Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TDAUSBMU.sys -- (TDAUSBMU) DRV - [2002-10-04 01:51:44 | 000,091,008 | ---- | M] (ATMEL) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\fvnetr.sys -- (PCMCIAFVNETR) DRV - [2002-08-06 17:38:38 | 000,087,168 | ---- | M] (ATMEL) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\vnetusbr.sys -- (ATMEL FVNETusb (AR) DRV - [2002-05-02 15:52:22 | 000,017,134 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\PCANDIS5.SYS -- (PCANDIS5) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ IE - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\..\URLSearchHook: {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.2\pdfforgeToolbarIE.dll (Spigot, Inc.) IE - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\..\SearchScopes,DefaultScope = {B75E92EB-724F-4D4B-8C8A-DBE2DD1F1819} IE - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\..\SearchScopes\{082B16B1-3179-492B-81BD-48CB1762FAFC}: "URL" = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=302398&p={searchTerms} IE - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\..\SearchScopes\{0DD7B66C-2B14-4D5A-9E9A-D19341C8EB62}: "URL" = http://www.ceneo.pl/categories.aspx?search=yes&categoryID=0&searchText={searchTerms}&inDesc=False&minPrice=0&maxPrice=99999999 IE - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\..\SearchScopes\{B75E92EB-724F-4D4B-8C8A-DBE2DD1F1819}: "URL" = http://www.google.pl/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} IE - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: pdfforge@mybrowserbar.com:4.1 FF - prefs.js..extensions.enabledItems: wtxpcom@mybrowserbar.com:4.1 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_268.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.1: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\IPSFFPlgn\ [2012-07-30 09:38:14 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\coFFPlgn\ [2012-07-30 13:35:35 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-07-19 09:13:59 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-04-01 16:05:46 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 2.0.0.23\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2009-10-06 09:46:32 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 2.0.0.23\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2009-07-22 12:44:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\KG\Dane aplikacji\Mozilla\Extensions [2012-07-30 10:49:44 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\KG\Dane aplikacji\Mozilla\Firefox\Profiles\svwkesbl.default\extensions [2012-06-28 16:59:39 | 000,000,000 | ---D | M] (IE Tab 2 (FF 3.6+)) -- C:\Documents and Settings\KG\Dane aplikacji\Mozilla\Firefox\Profiles\svwkesbl.default\extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB} [2010-12-07 10:30:13 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\KG\Dane aplikacji\Mozilla\Firefox\Profiles\svwkesbl.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-07-15 16:42:18 | 000,000,647 | ---- | M] () -- C:\Documents and Settings\KG\Dane aplikacji\Mozilla\Firefox\Profiles\svwkesbl.default\searchplugins\ceneo.xml [2012-05-18 14:31:40 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-07-20 09:09:47 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2012-07-19 09:13:59 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-06-13 09:20:59 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-06-13 09:20:59 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-06-13 09:20:59 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-06-13 09:20:59 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-06-13 09:20:59 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-06-13 09:20:59 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml [color=#E56717]========== Chrome ==========[/color] CHR - homepage: http://www.telekom.com.pl/ CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms} CHR - homepage: http://www.telekom.com.pl/ CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.57\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.57\pdf.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.57\gcswf32.dll CHR - plugin: Shockwave Flash (Disabled) = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Acrobat 6.0\Reader\Browser\nppdf32.dll CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll CHR - plugin: Microsoft Office 2003 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll CHR - plugin: Java(TM) Platform SE 7 U4 (Enabled) = C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll CHR - plugin: Java Deployment Toolkit 7.0.40.255 (Enabled) = C:\WINDOWS\system32\npDeployJava1.dll CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll CHR - Extension: YouTube = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Szukaj w Google = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\ CHR - Extension: Skype Click to Call = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.1.0.10441_0\ CHR - Extension: Norton Identity Protection = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.5.4.6_0\ CHR - Extension: Gmail = C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2008-04-15 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\19.7.1.5\CoIEPlg.dll (Symantec Corporation) O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\19.7.1.5\IPS\IPSBHO.dll (Symantec Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (pdfforge Toolbar) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.2\pdfforgeToolbarIE.dll (Spigot, Inc.) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\19.7.1.5\CoIEPlg.dll (Symantec Corporation) O3 - HKLM\..\Toolbar: (pdfforge Toolbar) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.2\pdfforgeToolbarIE.dll (Spigot, Inc.) O3 - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\19.7.1.5\CoIEPlg.dll (Symantec Corporation) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [Bonus.SSR.FR10] C:\Program Files\ABBYY FineReader 10\Bonus.ScreenshotReader.exe (ABBYY.) O4 - HKLM..\Run: [NA1Messenger] C:\UPS\WSTD\UPSNA1Msgr.exe () O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () O4 - HKLM..\Run: [Panasonic Device Manager for Multi-Function Station software] C:\Program Files\Panasonic\MFStation\PCCMFSDM.exe ( ) O4 - HKLM..\Run: [Panasonic IP Address Checker for Multi-Function Station software] C:\Program Files\Panasonic\MFStation\PccChgIP.exe (Panasonic System Networks Co.,Ltd.) O4 - HKLM..\Run: [Panasonic LPD Manager] C:\Program Files\Panasonic\MFStation\PCMFSMLM.exe (Panasonic System Networks Co.,Ltd.) O4 - HKLM..\Run: [Panasonic PCFAX for Multi-Function Station software] C:\Program Files\Panasonic\MFStation\KmPcFax.exe (Panasonic System Networks Co.,Ltd.) O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.) O4 - HKU\S-1-5-21-1292428093-602162358-1801674531-1004..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG) O4 - HKU\S-1-5-21-1292428093-602162358-1801674531-1004..\Run: [LMADLmon] C:\Program Files\Lexmark Pro5500 Series\LMADLmon.exe () O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1292428093-602162358-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {DD01C8CA-5DA0-4B01-9603-B7194E561D32} http://kamery.delta.poznan.pl:8118/rel/webViewer.cab (TVSLiveControl Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 91.150.151.1 91.150.128.12 194.150.238.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0EB1D1E3-3E5B-4D52-AB10-6847243F360C}: DhcpNameServer = 91.150.151.1 91.150.128.12 194.150.238.2 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-11-28 12:44:13 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-30 16:30:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Pulpit\gm [2012-07-30 16:21:30 | 000,597,504 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\KG\Pulpit\OTL.exe [2012-07-30 13:48:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Pulpit\tdsskiller [2012-07-30 13:32:14 | 001,805,736 | ---- | C] (Symantec Corporation) -- C:\Documents and Settings\KG\Pulpit\FixZeroAccess.exe [2012-07-30 12:31:48 | 000,137,096 | ---- | C] (ESET) -- C:\Documents and Settings\KG\Pulpit\ESETSirefefRemover.exe [2012-07-30 12:30:01 | 000,187,464 | ---- | C] (Webroot) -- C:\Documents and Settings\KG\Pulpit\antizeroaccess.exe [2012-07-30 11:36:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Dane aplikacji\Malwarebytes [2012-07-30 11:35:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware [2012-07-30 11:35:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2012-07-30 11:35:30 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2012-07-30 11:35:30 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2012-07-30 11:33:44 | 010,652,120 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\KG\Pulpit\mbam-setup-1.62.0.1300.exe [2012-07-30 10:50:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Dane aplikacji\Search Settings [2012-07-30 10:49:33 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater [2012-07-30 10:49:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Spigot [2012-07-30 10:49:32 | 000,000,000 | ---D | C] -- C:\Program Files\pdfforge Toolbar [2012-07-30 10:40:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Dane aplikacji\FixZeroAccess [2012-07-30 09:55:25 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro [2012-07-30 09:55:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Menu Start\Programy\HiJackThis [2012-07-30 09:36:43 | 000,060,872 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\S32EVNT1.DLL [2012-07-30 09:36:42 | 000,141,944 | ---- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS [2012-07-30 09:36:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared [2012-07-30 09:36:42 | 000,000,000 | ---D | C] -- C:\Program Files\Symantec [2012-07-30 09:36:16 | 000,905,336 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymEFA.sys [2012-07-30 09:36:16 | 000,574,072 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\srtsp.sys [2012-07-30 09:36:16 | 000,388,216 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\symtdi.sys [2012-07-30 09:36:16 | 000,345,208 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\symtdiv.sys [2012-07-30 09:36:16 | 000,340,088 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymDS.sys [2012-07-30 09:36:16 | 000,318,584 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\symnets.sys [2012-07-30 09:36:16 | 000,149,624 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\Ironx86.sys [2012-07-30 09:36:16 | 000,132,744 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\ccSetx86.sys [2012-07-30 09:36:16 | 000,032,888 | R--- | C] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\NIS\1307010.005\srtspx.sys [2012-07-30 09:35:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NIS [2012-07-30 09:35:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NIS\1307010.005 [2012-07-30 09:35:54 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Internet Security [2012-07-30 09:35:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Norton Internet Security [2012-07-30 09:35:44 | 000,000,000 | ---D | C] -- C:\Program Files\NortonInstaller [2012-07-30 09:27:44 | 000,829,824 | ---- | C] (Symantec Corporation) -- C:\Documents and Settings\KG\Pulpit\NISDownloader (1).exe [2012-07-30 09:26:45 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2012-07-25 09:42:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Adobe [2012-07-24 16:06:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Dane aplikacji\stickies [2012-07-24 15:46:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Dane aplikacji\Tenebril [2012-07-24 15:46:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\tenarchlib [2012-07-24 15:46:17 | 000,000,000 | ---D | C] -- C:\Program Files\StickyNote [2012-07-03 15:48:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KG\Dane aplikacji\nightupdate [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-30 16:26:58 | 000,294,216 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\gm.zip [2012-07-30 16:24:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-07-30 16:21:31 | 000,597,504 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\KG\Pulpit\OTL.exe [2012-07-30 15:48:01 | 000,001,120 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1292428093-602162358-1801674531-1004UA.job [2012-07-30 15:45:29 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012-07-30 15:45:27 | 000,006,144 | ---- | M] () -- C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-07-30 13:47:53 | 002,117,108 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\tdsskiller.zip [2012-07-30 13:34:36 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-07-30 13:32:15 | 001,805,736 | ---- | M] (Symantec Corporation) -- C:\Documents and Settings\KG\Pulpit\FixZeroAccess.exe [2012-07-30 12:38:45 | 000,205,661 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\1111.JPG [2012-07-30 12:31:49 | 000,137,096 | ---- | M] (ESET) -- C:\Documents and Settings\KG\Pulpit\ESETSirefefRemover.exe [2012-07-30 12:30:02 | 000,187,464 | ---- | M] (Webroot) -- C:\Documents and Settings\KG\Pulpit\antizeroaccess.exe [2012-07-30 12:15:01 | 000,000,364 | ---- | M] () -- C:\WINDOWS\tasks\LexmarkPUDCTask.job [2012-07-30 12:05:41 | 000,041,468 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\mkoptyk.pdf [2012-07-30 11:35:38 | 000,000,820 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2012-07-30 11:34:07 | 010,652,120 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\KG\Pulpit\mbam-setup-1.62.0.1300.exe [2012-07-30 09:55:51 | 000,002,437 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\HiJackThis.lnk [2012-07-30 09:54:37 | 001,402,880 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\HiJackThis.msi [2012-07-30 09:48:11 | 000,001,068 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1292428093-602162358-1801674531-1004Core.job [2012-07-30 09:46:11 | 000,000,070 | ---- | M] () -- C:\WINDOWS\System32\LexFiles.usr [2012-07-30 09:37:06 | 000,608,338 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\Cat.DB [2012-07-30 09:36:42 | 000,141,944 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS [2012-07-30 09:36:42 | 000,060,872 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\S32EVNT1.DLL [2012-07-30 09:36:42 | 000,007,468 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.CAT [2012-07-30 09:36:42 | 000,000,806 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.INF [2012-07-30 09:36:33 | 000,002,000 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Norton Internet Security.LNK [2012-07-30 09:29:18 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Fichiers d’installation Norton.lnk [2012-07-30 09:27:45 | 000,829,824 | ---- | M] (Symantec Corporation) -- C:\Documents and Settings\KG\Pulpit\NISDownloader (1).exe [2012-07-30 09:26:59 | 000,001,912 | ---- | M] () -- C:\WINDOWS\epplauncher.mif [2012-07-30 09:23:19 | 001,010,176 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\MicrosoftFixit50884.msi [2012-07-30 08:44:33 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-07-27 15:51:56 | 002,108,523 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Konftel 300 UG rev 4a_PL.pdf [2012-07-27 13:24:29 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-07-27 13:24:29 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-07-27 12:34:05 | 000,523,063 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\cs500.pdf [2012-07-26 17:23:12 | 000,000,186 | ---- | M] () -- C:\Documents and Settings\KG\default.pls [2012-07-26 14:46:32 | 000,037,638 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\FAKTURA.PDF [2012-07-26 13:42:47 | 001,277,427 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\lj-120.pdf [2012-07-26 11:23:54 | 000,255,874 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\20120726_112303.pdf [2012-07-26 09:42:38 | 000,000,873 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Uninstall Security Shield.lnk [2012-07-26 09:42:38 | 000,000,857 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Security Shield.lnk [2012-07-26 09:42:38 | 000,000,049 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Security Shield Support.url [2012-07-25 16:02:57 | 000,001,552 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\DIGI-logo-10592A24DB-seeklogo.com.gif [2012-07-25 15:44:50 | 000,004,586 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\162a1.JPG [2012-07-25 15:43:10 | 000,011,631 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\baf8919d739de8a29b69823ea9fa2ae4.jpg [2012-07-25 15:42:14 | 000,009,653 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\waga-digi-ds-162-bp.jpg [2012-07-25 13:07:27 | 000,962,324 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\10002593_User_Manual.pdf [2012-07-25 09:41:21 | 000,272,545 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\20120725_094025.pdf [2012-07-25 09:37:58 | 000,030,357 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\wypozyczenie_dlf.pdf [2012-07-24 15:53:51 | 000,032,369 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Plantronics-M100.jpg [2012-07-24 14:26:56 | 000,107,198 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\RACHUNEK_WALUTOWY_BC_-_USD_00971242_23.pdf [2012-07-24 13:56:50 | 000,027,003 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\92181995.jpg [2012-07-24 13:55:57 | 000,022,388 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\561208_3982081963230_70889769_n.jpg [2012-07-24 09:13:59 | 000,415,120 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\SKMBT_C55212072314070.pdf [2012-07-23 16:11:52 | 000,126,878 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\DMC-FT2EP-D-HiRes-Image__Image--[1]((Europe))-1ZoomA1001001A10A15A04753D85436.jpg [2012-07-23 15:30:27 | 000,032,464 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\FV_286_7_2012.pdf [2012-07-23 14:54:20 | 000,063,220 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\pko_trans_details_120723_145413.pdf [2012-07-23 12:51:51 | 000,641,580 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\20120723_125051.pdf [2012-07-23 09:49:36 | 004,453,647 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\433b77f496acc93ea3c75126c68c5347.PDF [2012-07-20 13:45:59 | 000,072,005 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\900103405~__H.jpg [2012-07-20 12:10:14 | 000,471,121 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\8775-beach-photo.jpg [2012-07-20 12:08:54 | 000,121,918 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\tapety-12.jpg [2012-07-20 10:38:47 | 000,043,146 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\oferta_kghm2.pdf [2012-07-20 09:20:37 | 000,039,122 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\FV_483_7_2011.pdf [2012-07-19 16:19:40 | 000,047,520 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\scantel.pdf [2012-07-18 10:08:34 | 000,034,269 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\faktura korygująca.pdf [2012-07-17 15:58:59 | 000,067,470 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\VF-2012016037.pdf [2012-07-17 13:40:39 | 000,031,456 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\FP_324_2012.pdf [2012-07-16 13:45:07 | 000,014,433 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\a.pdf [2012-07-16 13:06:05 | 009,966,237 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\KX-MB263_773_783PD.pdf [2012-07-16 10:16:13 | 000,045,401 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\oferta_kghm.pdf [2012-07-13 09:52:43 | 000,014,684 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\logo.png [2012-07-12 14:10:57 | 000,037,099 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\FP_318_2012.pdf [2012-07-12 13:33:40 | 000,039,591 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\faktura korygująca2.pdf [2012-07-12 09:29:59 | 000,266,208 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-07-12 09:06:47 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2012-07-11 17:28:28 | 014,263,248 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Raport_eCommerce_2011.pdf [2012-07-11 15:27:19 | 000,062,562 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Zgloszenie_naprawy_RMA-2.pdf [2012-07-11 12:17:48 | 002,029,931 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\doc.ashx [2012-07-11 12:17:48 | 002,029,931 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\10003051_User_Manual.pdf [2012-07-11 10:23:00 | 000,063,883 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Katalog_zarowek_opel.pdf [2012-07-10 16:35:52 | 002,354,684 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\A31008-N3100-S201-2-V919_pl_PL.pdf [2012-07-10 12:28:19 | 000,122,914 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\PROFORMA-97-07-2012.pdf [2012-07-10 10:19:48 | 000,121,663 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\PROFORMA-7-07-2012.pdf [2012-07-06 17:13:00 | 003,332,706 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\DSC01339.JPG [2012-07-06 17:12:52 | 000,060,208 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\532568_321549144603237_1849295419_n.jpg [2012-07-06 16:43:37 | 000,737,702 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\file_25636_1_SPIP_335_datasheet_ENG.PDF [2012-07-06 16:43:19 | 000,501,013 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\file_25634_1_SPIP_321_331_Datasheet_UK.pdf [2012-07-05 13:41:01 | 000,568,578 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\kabel.jpg [2012-07-05 13:12:46 | 000,494,012 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Konftel300.pdf [2012-07-05 13:10:34 | 000,277,297 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\2.JPG [2012-07-05 13:05:06 | 000,146,201 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\1.JPG [2012-07-05 12:59:18 | 001,484,906 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\Ulotka_Konftel_300_PL.pdf [2012-07-05 11:25:20 | 001,708,840 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\110085-61-001_Rev1c_UG250_PL.pdf [2012-07-03 14:01:10 | 000,015,003 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\INFORMACJA O ZMIANIE FORMY PRAWNEJ DZIAŁALNOŚCI.odt [2012-07-03 13:46:44 | 000,022,344 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2012-07-03 13:18:05 | 000,482,351 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\IO_Kendo_Judo.pdf [2012-07-02 15:25:22 | 000,037,495 | ---- | M] () -- C:\Documents and Settings\KG\Pulpit\navi_group.pdf [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-30 16:26:57 | 000,294,216 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\gm.zip [2012-07-30 16:22:48 | 000,019,968 | ---- | C] () -- C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\{a5236180-bd66-bf1d-68bc-ed22e01b6905}\U\800000cb.@ [2012-07-30 16:22:48 | 000,013,312 | ---- | C] () -- C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\{a5236180-bd66-bf1d-68bc-ed22e01b6905}\U\80000000.@ [2012-07-30 16:22:48 | 000,001,712 | ---- | C] () -- C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\{a5236180-bd66-bf1d-68bc-ed22e01b6905}\U\00000001.@ [2012-07-30 13:47:52 | 002,117,108 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\tdsskiller.zip [2012-07-30 12:38:45 | 000,205,661 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\1111.JPG [2012-07-30 12:05:40 | 000,041,468 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\mkoptyk.pdf [2012-07-30 11:35:38 | 000,000,820 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2012-07-30 09:55:25 | 000,002,437 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\HiJackThis.lnk [2012-07-30 09:54:34 | 001,402,880 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\HiJackThis.msi [2012-07-30 09:36:47 | 000,608,338 | ---- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\Cat.DB [2012-07-30 09:36:42 | 000,007,468 | ---- | C] () -- C:\WINDOWS\System32\drivers\SYMEVENT.CAT [2012-07-30 09:36:42 | 000,000,806 | ---- | C] () -- C:\WINDOWS\System32\drivers\SYMEVENT.INF [2012-07-30 09:36:33 | 000,002,000 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Norton Internet Security.LNK [2012-07-30 09:36:00 | 000,003,434 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymEFA.inf [2012-07-30 09:36:00 | 000,002,852 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymDS.inf [2012-07-30 09:36:00 | 000,001,469 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymNetV.inf [2012-07-30 09:36:00 | 000,001,441 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymNet.inf [2012-07-30 09:36:00 | 000,001,388 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\srtspx.inf [2012-07-30 09:36:00 | 000,001,388 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\srtsp.inf [2012-07-30 09:35:59 | 000,000,827 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\ccSetx86.inf [2012-07-30 09:35:59 | 000,000,742 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\Iron.inf [2012-07-30 09:35:58 | 000,004,782 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymVTcer.dat [2012-07-30 09:35:57 | 000,007,877 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\symnetv.cat [2012-07-30 09:35:57 | 000,007,492 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymDS.cat [2012-07-30 09:35:57 | 000,007,468 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\ccsetx86.cat [2012-07-30 09:35:57 | 000,007,458 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymNet.cat [2012-07-30 09:35:57 | 000,007,456 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\SymEFA.cat [2012-07-30 09:35:57 | 000,007,454 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\srtspx.cat [2012-07-30 09:35:57 | 000,007,450 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\srtsp.cat [2012-07-30 09:35:57 | 000,007,450 | R--- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\iron.cat [2012-07-30 09:35:57 | 000,000,172 | ---- | C] () -- C:\WINDOWS\System32\drivers\NIS\1307010.005\isolate.ini [2012-07-30 09:29:17 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\Fichiers d’installation Norton.lnk [2012-07-30 09:23:16 | 001,010,176 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\MicrosoftFixit50884.msi [2012-07-27 15:51:52 | 002,108,523 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\Konftel 300 UG rev 4a_PL.pdf [2012-07-27 12:34:05 | 000,523,063 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\cs500.pdf [2012-07-26 14:46:32 | 000,037,638 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\FAKTURA.PDF [2012-07-26 13:42:41 | 001,277,427 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\lj-120.pdf [2012-07-26 11:23:53 | 000,255,874 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\20120726_112303.pdf [2012-07-25 16:02:56 | 000,001,552 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\DIGI-logo-10592A24DB-seeklogo.com.gif [2012-07-25 15:44:49 | 000,004,586 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\162a1.JPG [2012-07-25 15:43:10 | 000,011,631 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\baf8919d739de8a29b69823ea9fa2ae4.jpg [2012-07-25 15:42:14 | 000,009,653 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\waga-digi-ds-162-bp.jpg [2012-07-25 13:07:26 | 000,962,324 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\10002593_User_Manual.pdf [2012-07-25 09:41:21 | 000,272,545 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\20120725_094025.pdf [2012-07-25 09:35:37 | 000,030,357 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\wypozyczenie_dlf.pdf [2012-07-24 15:52:14 | 000,032,369 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\Plantronics-M100.jpg [2012-07-24 14:26:56 | 000,107,198 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\RACHUNEK_WALUTOWY_BC_-_USD_00971242_23.pdf [2012-07-24 13:56:49 | 000,027,003 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\92181995.jpg [2012-07-24 13:55:55 | 000,022,388 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\561208_3982081963230_70889769_n.jpg [2012-07-24 09:13:58 | 000,415,120 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\SKMBT_C55212072314070.pdf [2012-07-23 16:11:51 | 000,126,878 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\DMC-FT2EP-D-HiRes-Image__Image--[1]((Europe))-1ZoomA1001001A10A15A04753D85436.jpg [2012-07-23 15:30:26 | 000,032,464 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\FV_286_7_2012.pdf [2012-07-23 14:54:19 | 000,063,220 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\pko_trans_details_120723_145413.pdf [2012-07-23 12:51:51 | 000,641,580 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\20120723_125051.pdf [2012-07-23 09:49:24 | 004,453,647 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\433b77f496acc93ea3c75126c68c5347.PDF [2012-07-20 13:45:28 | 000,072,005 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\900103405~__H.jpg [2012-07-20 12:10:16 | 000,471,121 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\8775-beach-photo.jpg [2012-07-20 12:08:59 | 000,121,918 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\tapety-12.jpg [2012-07-20 10:38:47 | 000,043,146 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\oferta_kghm2.pdf [2012-07-20 09:20:36 | 000,039,122 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\FV_483_7_2011.pdf [2012-07-19 16:19:38 | 000,047,520 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\scantel.pdf [2012-07-17 15:58:56 | 000,067,470 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\VF-2012016037.pdf [2012-07-17 13:40:38 | 000,031,456 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\FP_324_2012.pdf [2012-07-16 13:45:06 | 000,014,433 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\a.pdf [2012-07-16 13:05:43 | 009,966,237 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\KX-MB263_773_783PD.pdf [2012-07-16 10:15:43 | 000,045,401 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\oferta_kghm.pdf [2012-07-13 09:52:23 | 000,014,684 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\logo.png [2012-07-12 14:10:57 | 000,037,099 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\FP_318_2012.pdf [2012-07-12 13:33:40 | 000,039,591 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\faktura korygująca2.pdf [2012-07-12 13:33:40 | 000,034,269 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\faktura korygująca.pdf [2012-07-11 17:27:57 | 014,263,248 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\Raport_eCommerce_2011.pdf [2012-07-11 15:27:18 | 000,062,562 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\Zgloszenie_naprawy_RMA-2.pdf [2012-07-11 12:17:37 | 002,029,931 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\10003051_User_Manual.pdf [2012-07-11 12:17:34 | 002,029,931 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\doc.ashx [2012-07-11 10:23:00 | 000,063,883 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\Katalog_zarowek_opel.pdf [2012-07-10 16:35:47 | 002,354,684 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\A31008-N3100-S201-2-V919_pl_PL.pdf [2012-07-10 12:28:18 | 000,122,914 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\PROFORMA-97-07-2012.pdf [2012-07-10 10:19:45 | 000,121,663 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\PROFORMA-7-07-2012.pdf [2012-07-06 17:12:51 | 000,060,208 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\532568_321549144603237_1849295419_n.jpg [2012-07-06 17:12:48 | 003,332,706 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\DSC01339.JPG [2012-07-06 16:43:36 | 000,737,702 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\file_25636_1_SPIP_335_datasheet_ENG.PDF [2012-07-06 16:43:16 | 000,501,013 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\file_25634_1_SPIP_321_331_Datasheet_UK.pdf [2012-07-05 13:41:00 | 000,568,578 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\kabel.jpg [2012-07-05 13:12:44 | 000,494,012 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\Konftel300.pdf [2012-07-05 13:10:34 | 000,277,297 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\2.JPG [2012-07-05 13:05:05 | 000,146,201 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\1.JPG [2012-07-05 12:59:18 | 001,484,906 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\Ulotka_Konftel_300_PL.pdf [2012-07-05 11:25:14 | 001,708,840 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\110085-61-001_Rev1c_UG250_PL.pdf [2012-07-03 14:01:09 | 000,015,003 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\INFORMACJA O ZMIANIE FORMY PRAWNEJ DZIAŁALNOŚCI.odt [2012-07-03 13:18:05 | 000,482,351 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\IO_Kendo_Judo.pdf [2012-07-02 15:25:22 | 000,037,495 | ---- | C] () -- C:\Documents and Settings\KG\Pulpit\navi_group.pdf [2012-06-28 11:06:08 | 000,000,048 | ---- | C] () -- C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\ANGELIKA.cfg [2012-06-13 09:17:40 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2012-05-28 10:45:25 | 000,207,400 | R--- | C] () -- C:\WINDOWS\GSetup.exe [2012-05-28 10:45:25 | 000,000,010 | ---- | C] () -- C:\WINDOWS\GSetup.ini [2012-04-27 11:56:29 | 000,430,080 | ---- | C] ( ) -- C:\WINDOWS\System32\LMADLQcomc.dll [2012-04-27 11:56:28 | 000,204,800 | ---- | C] ( ) -- C:\WINDOWS\System32\LMADLQinpa.dll [2012-04-27 11:56:27 | 001,019,904 | ---- | C] ( ) -- C:\WINDOWS\System32\LMADLQlang.dll [2012-04-27 11:55:43 | 000,430,080 | ---- | C] ( ) -- C:\WINDOWS\System32\LMFX1Ncomc.dll [2012-04-27 11:55:42 | 000,204,800 | ---- | C] ( ) -- C:\WINDOWS\System32\LMFX1Ninpa.dll [2012-04-27 11:55:41 | 001,019,904 | ---- | C] ( ) -- C:\WINDOWS\System32\LMFX1Nlang.dll [2012-04-27 11:55:12 | 000,421,888 | ---- | C] ( ) -- C:\WINDOWS\System32\lexlog.dll [2012-03-22 10:43:40 | 000,000,234 | ---- | C] () -- C:\WINDOWS\PanaFLB881.ini [2012-02-16 12:03:49 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2012-01-20 17:38:41 | 000,001,510 | ---- | C] () -- C:\Documents and Settings\KG\.recently-used.xbel [2011-11-02 17:09:36 | 000,000,751 | ---- | C] () -- C:\WINDOWS\Tda30.INI [2011-11-02 17:09:36 | 000,000,736 | ---- | C] () -- C:\WINDOWS\Tda200.INI [2011-05-30 14:35:38 | 000,006,144 | ---- | C] () -- C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-01-19 13:02:24 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\bd9840cn.dat [2010-11-18 16:46:12 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll [2010-11-18 12:33:14 | 000,000,040 | ---- | C] () -- C:\WINDOWS\winDecrypt.INI [2010-11-18 12:29:51 | 000,001,024 | ---- | C] () -- C:\WINDOWS\System32\pwdremover.dat [2010-11-18 12:25:09 | 000,000,198 | ---- | C] () -- C:\WINDOWS\pdf2word.INI [2010-11-18 12:24:43 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\C [2010-10-22 17:28:53 | 008,252,468 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1292428093-602162358-1801674531-1004-0.dat [2010-10-22 17:28:49 | 000,167,126 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2010-10-21 12:24:33 | 000,000,397 | ---- | C] () -- C:\WINDOWS\KmPcFax.INI [2009-05-15 12:40:14 | 000,000,186 | ---- | C] () -- C:\Documents and Settings\KG\default.pls [2009-03-16 17:43:10 | 000,000,002 | ---- | C] () -- C:\Documents and Settings\KG\WSSEMAPHORES.dat [2008-04-15 14:00:00 | 000,002,048 | -HS- | C] () -- C:\WINDOWS\Installer\{a5236180-bd66-bf1d-68bc-ed22e01b6905}\@ [2008-04-15 14:00:00 | 000,002,048 | -HS- | C] () -- C:\Documents and Settings\KG\Ustawienia lokalne\Dane aplikacji\{a5236180-bd66-bf1d-68bc-ed22e01b6905}\@ [color=#E56717]========== LOP Check ==========[/color] [2012-06-12 09:03:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\boost_interprocess [2011-05-09 13:27:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-09-17 09:50:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2011-07-18 09:34:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2010-07-16 13:35:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Panasonic [2010-05-28 15:46:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PCSettings [2009-04-24 13:01:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2011-11-10 10:11:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\VirtualizedApplications [2011-06-14 09:14:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\BizAgi Ltd [2011-05-09 13:28:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\DAEMON Tools Lite [2010-11-18 11:16:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\eXPert PDF 6 [2012-07-30 10:40:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\FixZeroAccess [2009-01-27 17:57:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Gadu-Gadu [2011-07-13 13:14:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Gadu-Gadu 10 [2011-11-02 17:03:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\GHISLER [2012-01-20 17:38:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\gtk-2.0 [2011-03-30 10:39:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Investintech.com Inc [2011-06-14 09:14:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\IsolatedStorage [2012-04-18 11:04:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Miranda [2012-07-06 09:14:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\nightupdate [2011-05-17 12:58:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Notepad++ [2010-09-10 16:29:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Nowe Gadu-Gadu [2009-11-05 11:13:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\OpenFM [2009-01-27 14:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\OpenOffice.org [2012-05-14 14:09:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Oracle [2010-10-27 13:49:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Panasonic [2010-11-18 12:27:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\PDFEditorSDK [2010-11-19 10:15:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\pdfforge [2012-02-11 17:59:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Programer [2009-04-24 13:17:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\ScanSoft [2012-07-30 10:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Search Settings [2012-07-11 17:48:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\SoftGrid Client [2012-07-30 10:51:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\stickies [2012-07-24 15:46:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Tenebril [2010-11-18 12:24:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Thinstall [2009-10-06 09:46:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\Thunderbird [2011-09-02 10:56:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KG\Dane aplikacji\TP [2012-07-30 12:15:01 | 000,000,364 | ---- | M] () -- C:\WINDOWS\Tasks\LexmarkPUDCTask.job [color=#E56717]========== Purity Check ==========[/color] < End of report >