OTL logfile created on: 2010-11-24 14:07:39 - Run 1 OTL by OldTimer - Version 3.2.17.3 Folder = C:\Documents and Settings\ksol\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 72,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 90,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 25,99 Gb Free Space | 53,23% Space Free | Partition Type: NTFS Drive F: | 48,83 Gb Total Space | 41,48 Gb Free Space | 84,96% Space Free | Partition Type: NTFS Drive G: | 97,65 Gb Total Space | 10,94 Gb Free Space | 11,20% Space Free | Partition Type: NTFS Drive H: | 102,77 Gb Total Space | 47,65 Gb Free Space | 46,36% Space Free | Partition Type: NTFS Computer Name: KSOL-ECBEE4A58F | User Name: ksol | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2010-11-24 14:04:23 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\ksol\Pulpit\OTL.exe PRC - [2010-08-30 13:39:14 | 000,151,552 | ---- | M] () -- C:\WINDOWS\KMService.exe PRC - [2010-08-30 13:39:14 | 000,008,192 | ---- | M] () -- C:\WINDOWS\system32\srvany.exe PRC - [2010-05-07 11:39:36 | 000,344,736 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe PRC - [2010-01-15 13:49:20 | 000,255,536 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe PRC - [2009-10-20 18:15:22 | 000,528,384 | ---- | M] () -- F:\Gadu Gadu\Nowe Gadu-Gadu\open-fm.exe PRC - [2008-04-14 21:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-11-24 14:04:23 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\ksol\Pulpit\OTL.exe MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-08-30 13:39:14 | 000,008,192 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\srvany.exe -- (KMService) SRV - [2010-06-14 15:07:14 | 000,615,936 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2010-05-07 11:39:36 | 000,344,736 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe -- (AVP) SRV - [2010-03-25 09:25:22 | 030,969,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service) SRV - [2010-02-06 09:02:26 | 000,306,432 | ---- | M] (TuneUp Software GmbH) [On_Demand | Stopped] -- C:\WINDOWS\system32\TuneUpDefragService.exe -- (TuneUp.Defrag) SRV - [2010-01-15 13:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme) DRV - [2010-06-12 18:45:04 | 000,477,784 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF) DRV - [2010-05-06 23:19:06 | 000,132,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\kl2.sys -- (kl2) DRV - [2010-05-06 23:19:02 | 000,132,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\kl1.sys -- (KL1) DRV - [2010-03-07 13:58:53 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-11-02 19:27:24 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt) DRV - [2009-09-14 13:42:46 | 000,032,272 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5) DRV - [2009-08-22 19:25:00 | 000,009,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys -- (RivaTuner32) DRV - [2008-10-07 13:33:00 | 006,133,856 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-05-02 07:48:55 | 000,062,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\drivers\si3112.sys -- (Si3112) DRV - [2008-05-02 07:48:37 | 000,105,344 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\drivers\nvatabus.sys -- (nvatabus) DRV - [2008-04-14 01:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2008-04-13 23:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) Sterownik NT karty Realtek RTL8139(A/B/C) DRV - [2007-01-23 00:26:30 | 000,017,264 | ---- | M] (FSPro Labs) [Kernel | Boot | Running] -- C:\WINDOWS\SYSTEM32\DRIVERS\HFXP2.SYS -- (HFXP2) DRV - [2003-12-08 11:53:48 | 000,053,600 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcan5wn.sys -- (alcan5wn) SpeedTouch USB ADSL PPP Networking Driver (NDISWAN) DRV - [2003-12-08 11:53:46 | 000,070,688 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcaudsl.sys -- (alcaudsl) DRV - [2001-08-17 21:19:34 | 000,040,704 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\es1371mp.sys -- (es1371) Creative AudioPCI (ES1371,ES1373) (WDM) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-682003330-329068152-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-682003330-329068152-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2790392 IE - HKU\S-1-5-21-682003330-329068152-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-682003330-329068152-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\S-1-5-21-682003330-329068152-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "Ask.com" FF - prefs.js..browser.search.defaultenginename: "Ask.com" FF - prefs.js..browser.search.defaultthis.engineName: "Conduit Engine Customized Web Search" FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=ConduitEngine&SearchSource=3&q={searchTerms}" FF - prefs.js..browser.search.order.1: "Ask.com" FF - prefs.js..browser.search.selectedEngine: "Conduit Engine Customized Web Search" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: linkfilter@kaspersky.ru:11.0.0.232 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.1 FF - prefs.js..extensions.enabledItems: firefox@tvunetworks.com:2 FF - prefs.js..extensions.enabledItems: 4 FF - prefs.js..extensions.enabledItems: 9 FF - prefs.js..extensions.enabledItems: 1 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 FF - prefs.js..extensions.enabledItems: zrzuta.eu@gmail.com:1.0 FF - prefs.js..extensions.enabledItems: KavAntiBanner@Kaspersky.ru:11.0.0.232 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.2.3.3 FF - prefs.js..extensions.enabledItems: {88c7f2aa-f93f-432c-8f0e-b7d85967a527}:3.2.3.3 FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CTXXXX&q=" FF - prefs.js..network.proxy.backup.ftp: "" FF - prefs.js..network.proxy.backup.ftp_port: 0 FF - prefs.js..network.proxy.backup.gopher: "" FF - prefs.js..network.proxy.backup.gopher_port: 0 FF - prefs.js..network.proxy.backup.socks: "" FF - prefs.js..network.proxy.backup.socks_port: 0 FF - prefs.js..network.proxy.backup.ssl: "" FF - prefs.js..network.proxy.backup.ssl_port: 0 FF - prefs.js..network.proxy.ftp: "194.29.178.14" FF - prefs.js..network.proxy.ftp_port: 3128 FF - prefs.js..network.proxy.gopher: "194.29.178.14" FF - prefs.js..network.proxy.gopher_port: 3128 FF - prefs.js..network.proxy.http: "194.29.178.14" FF - prefs.js..network.proxy.http_port: 3128 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "194.29.178.14" FF - prefs.js..network.proxy.socks_port: 3128 FF - prefs.js..network.proxy.ssl: "194.29.178.14" FF - prefs.js..network.proxy.ssl_port: 3128 FF - HKLM\software\mozilla\Firefox\extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn2 [2010-08-03 11:40:48 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-11-22 21:26:30 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-11-22 16:33:11 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\{eea12ec4-729d-4703-bc37-106ce9879ce2}: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\THBExt [2010-06-12 18:45:42 | 000,000,000 | ---D | M] [2010-02-02 18:36:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Extensions [2010-11-23 15:04:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\extensions [2010-11-20 08:49:36 | 000,000,000 | ---D | M] (BitTorrentBar Community Toolbar) -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\extensions\{88c7f2aa-f93f-432c-8f0e-b7d85967a527} [2010-11-03 21:53:56 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-05-20 20:56:00 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A} [2010-11-20 08:49:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\extensions\engine@conduit.com [2010-02-16 14:02:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\extensions\firefox@tvunetworks.com [2010-05-30 15:09:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\extensions\zrzuta.eu@gmail.com [2010-10-21 14:48:17 | 000,002,566 | ---- | M] () -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\searchplugins\askcom.xml [2010-11-20 08:49:37 | 000,000,913 | ---- | M] () -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\searchplugins\conduit.xml [2010-07-21 13:50:27 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\ksol\Dane aplikacji\Mozilla\Firefox\Profiles\6zoitkuk.default\searchplugins\daemon-search.xml [2010-11-23 15:04:12 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-04-22 15:09:53 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-08-12 08:22:02 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-10-21 17:58:56 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2010-06-12 18:46:14 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru [2010-06-12 18:46:14 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru [2010-09-15 03:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2010-07-12 17:33:56 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npwachk.dll [2010-10-27 06:37:26 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-10-27 06:37:26 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-10-27 06:37:26 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-10-27 06:37:26 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-10-27 06:37:26 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-10-27 06:37:26 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2010-11-22 16:35:42 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) O2 - BHO: (My Global Search Bar BHO) - {37B85A21-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL File not found O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll (Kaspersky Lab ZAO) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O2 - BHO: (no name) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - No CLSID value found. O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) O3 - HKLM\..\Toolbar: (My Global Search Bar) - {37B85A29-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL File not found O3 - HKU\S-1-5-21-682003330-329068152-1801674531-1003\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found. O3 - HKU\S-1-5-21-682003330-329068152-1801674531-1003\..\Toolbar\WebBrowser: (My Global Search Bar) - {37B85A29-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL File not found O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe (Kaspersky Lab ZAO) O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [QuickTime Task] F:\quick time\QTTask.exe (Apple Inc.) O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] File not found O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.) O4 - Startup: C:\Documents and Settings\ksol\Menu Start\Programy\Autostart\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-682003330-329068152-1801674531-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-682003330-329068152-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-682003330-329068152-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-682003330-329068152-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm () O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.) O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Wyślij &do programu OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O8 - Extra context menu item: 使用快车3下载 - C:\Documents and Settings\ksol\Dane aplikacji\FlashGetBHO\GetUrl.htm () O8 - Extra context menu item: 使用快车3下载全部链接 - C:\Documents and Settings\ksol\Dane aplikacji\FlashGetBHO\GetAllUrl.htm () O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O9 - Extra Button: &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra Button: Add to VideoGet - {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - F:\Do zciagania filmikow z yt\VideoGet 3.0.2.39 PL\VideoGet 3.0.2.39 PL\VideoGet\Plugins\VideoGet_IE.dll (Nuclear Coffee Software) O9 - Extra 'Tools' menuitem : Add to &VideoGet - {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - F:\Do zciagania filmikow z yt\VideoGet 3.0.2.39 PL\VideoGet 3.0.2.39 PL\VideoGet\Plugins\VideoGet_IE.dll (Nuclear Coffee Software) O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O9 - Extra Button: Zaznaczanie HP Smart - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\kloehk.dll (Kaspersky Lab ZAO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab ZAO) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-02-02 17:00:53 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010-11-24 14:04:22 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\ksol\Pulpit\OTL.exe [2010-11-22 18:16:50 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2010-11-22 16:35:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom [2010-11-22 16:35:34 | 000,000,000 | ---D | C] -- C:\Program Files\xerox [2010-11-22 16:35:34 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage [2010-11-22 16:28:43 | 000,000,000 | RHSD | C] -- C:\cmdcons [2010-11-22 16:25:40 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2010-11-22 16:25:40 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2010-11-22 16:25:40 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2010-11-22 16:25:40 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2010-11-22 16:24:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT [2010-11-22 16:17:19 | 000,000,000 | ---D | C] -- C:\Qoobox [2010-11-21 11:43:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\BitTorrentBar [2010-11-18 10:44:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared [2010-11-11 13:02:03 | 000,000,000 | ---D | C] -- C:\Program Files\Steam [2010-11-11 10:23:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ksol\Pulpit\steam [2010-11-08 15:32:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ksol\Dane aplikacji\winamp [2010-11-07 12:38:47 | 000,000,000 | ---D | C] -- C:\Program Files\ipla [2010-11-06 16:45:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\PackageAware [2010-10-31 15:04:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ksol\Moje dokumenty\asd [2010-10-31 14:46:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles [2010-10-31 14:45:43 | 000,016,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsgXP_2k3.dll [2010-10-31 14:45:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ksol\Dane aplikacji\Nokia [2010-10-31 14:45:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\ksol\Dane aplikacji\PC Suite [2010-10-31 14:45:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-10-31 14:44:25 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX [2010-10-31 14:44:24 | 000,018,816 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys [2010-10-31 14:44:13 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution [2010-10-31 14:44:06 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys [2010-10-31 14:44:05 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys [2010-10-31 14:44:04 | 000,022,528 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys [2010-10-31 14:44:02 | 001,461,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfcoinstaller01009.dll [2010-10-31 14:44:02 | 000,662,016 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll [2010-10-31 14:44:02 | 000,018,176 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys [2010-10-31 14:43:50 | 000,092,672 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcls.dll [2010-10-31 14:43:49 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia [2010-10-31 14:42:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010-11-24 14:04:23 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\ksol\Pulpit\OTL.exe [2010-11-24 14:03:00 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2010-11-24 12:56:53 | 000,000,256 | ---- | M] () -- C:\WINDOWS\tasks\WGASetup.job [2010-11-24 12:48:24 | 000,201,733 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml [2010-11-24 12:48:23 | 000,001,028 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2010-11-24 12:48:22 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-11-24 12:48:21 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-11-23 21:24:34 | 009,437,184 | ---- | M] () -- C:\Documents and Settings\ksol\ntuser.dat [2010-11-23 21:24:32 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\ksol\ntuser.ini [2010-11-23 15:27:29 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\ksol\Moje dokumenty\somsiod(1).rtf [2010-11-23 15:26:51 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\ksol\Moje dokumenty\somsiod.rtf [2010-11-23 15:24:52 | 000,002,365 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\PhotoJoy.lnk [2010-11-22 16:36:12 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini [2010-11-22 16:35:42 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2010-11-22 16:28:47 | 000,000,327 | RHS- | M] () -- C:\boot.ini [2010-11-22 16:25:09 | 003,913,535 | RH-- | M] () -- C:\Documents and Settings\ksol\Pulpit\ComboFix.exe [2010-11-22 13:50:44 | 000,001,608 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-11-21 11:16:37 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-11-21 03:44:23 | 002,109,694 | -H-- | M] () -- C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-11-18 23:55:46 | 000,078,336 | ---- | M] () -- C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-11-18 16:24:25 | 000,027,648 | ---- | M] () -- C:\Documents and Settings\ksol\Moje dokumenty\Projekt realizacji prac związanych obserwacją przebiegów półfalowo i całofalowo.doc [2010-11-17 22:49:40 | 000,115,465 | ---- | M] () -- C:\WINDOWS\System32\drivers\klin.dat [2010-11-17 22:49:40 | 000,097,545 | ---- | M] () -- C:\WINDOWS\System32\drivers\klick.dat [2010-11-17 22:14:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2010-11-17 13:30:57 | 000,000,677 | ---- | M] () -- C:\WINDOWS\win.ini [2010-11-17 13:30:57 | 000,000,211 | ---- | M] () -- C:\Boot.bak [2010-11-17 13:29:30 | 000,001,735 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2010-11-11 13:06:28 | 000,000,656 | ---- | M] () -- C:\Documents and Settings\ksol\Pulpit\Skrót do SteamUp.exe.lnk [2010-11-11 12:31:30 | 000,000,826 | ---- | M] () -- C:\Documents and Settings\ksol\Pulpit\Counter-Strike Source.lnk [2010-11-08 01:20:24 | 000,089,088 | ---- | M] () -- C:\WINDOWS\MBR.exe [2010-11-06 17:43:51 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\YÂYÂ [2010-11-06 15:21:05 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2010-11-02 18:21:45 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\Y2Y2 [2010-10-31 21:26:40 | 010,724,481 | ---- | M] () -- C:\Documents and Settings\ksol\Moje dokumenty\mix0.mp3 [2010-10-31 14:47:19 | 001,096,384 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-10-31 14:47:19 | 000,493,632 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-10-31 14:47:19 | 000,435,260 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-10-31 14:47:19 | 000,084,916 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-10-31 14:47:19 | 000,068,156 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-10-31 14:46:36 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf [2010-10-31 14:46:30 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_user_01_09_00.Wdf [2010-10-31 14:45:51 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf [2010-10-31 14:45:50 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2010-10-31 14:45:50 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf [2010-10-31 09:19:15 | 000,039,486 | ---- | M] () -- C:\Documents and Settings\ksol\Moje dokumenty\toxicity2.jpg [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-11-23 15:27:29 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\ksol\Moje dokumenty\somsiod(1).rtf [2010-11-23 15:26:51 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\ksol\Moje dokumenty\somsiod.rtf [2010-11-22 16:28:47 | 000,000,211 | ---- | C] () -- C:\Boot.bak [2010-11-22 16:28:45 | 000,262,400 | RHS- | C] () -- C:\cmldr [2010-11-22 16:25:40 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe [2010-11-22 16:25:40 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2010-11-22 16:25:40 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe [2010-11-22 16:25:40 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2010-11-22 16:25:40 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2010-11-22 16:21:47 | 003,913,535 | RH-- | C] () -- C:\Documents and Settings\ksol\Pulpit\ComboFix.exe [2010-11-11 13:06:28 | 000,000,656 | ---- | C] () -- C:\Documents and Settings\ksol\Pulpit\Skrót do SteamUp.exe.lnk [2010-11-11 12:31:30 | 000,000,826 | ---- | C] () -- C:\Documents and Settings\ksol\Pulpit\Counter-Strike Source.lnk [2010-11-06 17:43:51 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\YÂYÂ [2010-10-31 21:25:45 | 010,724,481 | ---- | C] () -- C:\Documents and Settings\ksol\Moje dokumenty\mix0.mp3 [2010-10-31 14:46:36 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf [2010-10-31 14:46:30 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_user_01_09_00.Wdf [2010-10-31 14:45:51 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf [2010-10-31 14:45:50 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf [2010-10-31 09:19:14 | 000,039,486 | ---- | C] () -- C:\Documents and Settings\ksol\Moje dokumenty\toxicity2.jpg [2010-10-20 15:38:44 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2010-08-03 11:30:20 | 000,001,150 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\hpzinstall.log [2010-06-26 19:16:49 | 000,000,934 | ---- | C] () -- C:\WINDOWS\SOFPLAT.ini [2010-05-25 11:17:46 | 000,790,528 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2010-05-20 20:55:46 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI [2010-03-07 14:41:16 | 000,000,153 | ---- | C] () -- C:\WINDOWS\Cool.ini [2010-03-07 13:58:53 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-03-07 13:45:08 | 000,134,144 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2010-03-07 13:45:03 | 000,207,360 | ---- | C] () -- C:\WINDOWS\System32\evrprop.dll [2010-03-07 13:44:58 | 000,258,048 | ---- | C] () -- C:\WINDOWS\System32\libFLAC.dll [2010-03-07 13:44:32 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\mkzlib.dll [2010-03-07 13:44:31 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\mkunicode.dll [2010-03-06 11:45:48 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2010-02-09 16:53:00 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2010-02-02 20:24:22 | 000,078,336 | ---- | C] () -- C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-02-02 20:05:50 | 002,109,694 | -H-- | C] () -- C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-02-02 18:41:30 | 000,070,368 | ---- | C] () -- C:\Documents and Settings\ksol\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-02-02 18:21:19 | 000,005,606 | ---- | C] () -- C:\WINDOWS\System32\stci.dll [2010-02-02 17:54:26 | 001,096,384 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-02-02 17:54:26 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2010-02-02 17:54:00 | 000,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\desktop.ini [2010-02-02 17:03:34 | 000,000,062 | -HS- | C] () -- C:\Documents and Settings\ksol\Dane aplikacji\desktop.ini [2010-02-02 17:00:53 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2010-02-02 16:58:34 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2010-02-02 16:58:34 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2010-02-02 16:58:08 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2010-02-02 16:58:08 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2008-10-07 13:33:00 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2008-10-07 13:33:00 | 001,486,848 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2008-10-07 13:33:00 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2008-10-07 13:33:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2008-10-07 13:33:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2008-05-03 08:24:01 | 000,000,082 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini [2008-04-14 21:50:46 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2008-04-14 21:50:38 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2008-04-14 21:50:32 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2008-04-14 21:50:14 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatUI.dll [2008-04-14 21:50:00 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2008-04-13 21:51:34 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2008-04-13 21:20:56 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2008-04-13 21:19:58 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2008-04-13 21:19:44 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2008-04-13 21:19:44 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2008-04-13 21:19:42 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2008-04-13 21:19:40 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2007-04-02 22:04:28 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2007-04-02 17:19:22 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll [2001-10-26 18:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [2001-10-26 18:29:40 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\scriptpw.dll [2001-10-26 18:29:32 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2001-10-26 18:28:34 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2001-10-26 18:27:02 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2001-10-26 17:15:04 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2001-10-26 17:14:52 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2001-10-26 17:14:32 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2001-10-26 17:12:52 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2001-10-26 16:45:26 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2001-10-26 16:45:26 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2001-10-26 16:45:24 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2001-10-26 16:42:08 | 000,020,629 | ---- | C] () -- C:\WINDOWS\System32\mqperf.ini [2001-10-26 16:42:08 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2001-10-26 16:42:08 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2001-10-26 16:42:08 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2001-08-17 22:31:56 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2001-08-17 22:31:56 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2001-08-17 22:31:50 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2001-08-17 22:31:46 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2001-08-17 22:31:46 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2001-08-17 22:31:44 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2001-08-17 22:13:24 | 000,002,656 | ---- | C] () -- C:\WINDOWS\System32\netware.drv [2001-08-17 20:55:06 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2001-07-22 03:25:18 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2001-07-21 23:16:20 | 000,000,677 | ---- | C] () -- C:\WINDOWS\win.ini [2001-07-21 23:15:52 | 000,000,227 | ---- | C] () -- C:\WINDOWS\system.ini [2001-07-21 23:15:50 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [color=#E56717]========== LOP Check ==========[/color] [2010-07-21 13:50:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-03-07 13:58:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Pro [2010-03-09 14:28:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-10-31 14:42:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-10-17 11:44:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2010-11-19 21:29:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2010-10-31 14:46:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-09-11 13:44:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PhotoJoy [2010-08-18 23:25:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2010-07-04 12:31:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Able Apples [2010-10-14 13:08:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\BESTplayer [2010-05-20 21:12:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\BITS [2010-11-21 11:45:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\BitTorrent [2010-07-21 13:52:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\DAEMON Tools Lite [2010-03-07 14:02:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\DAEMON Tools Pro [2010-05-20 20:55:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\FlashGet [2010-05-20 20:55:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\FlashGetBHO [2010-03-09 14:28:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Gadu-Gadu 10 [2010-11-07 13:09:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\ipla [2010-04-12 12:50:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\iScreensaver [2010-02-06 15:33:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\IVONA Player [2010-09-12 09:10:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\JPEGCompress [2010-09-22 15:27:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Mobipocket [2010-10-31 14:49:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Nokia [2010-11-22 19:32:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Nowe Gadu-Gadu [2010-04-06 15:18:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\OpenCandy [2010-02-05 16:25:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\OpenFM [2010-05-17 17:08:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Opera [2010-10-31 14:46:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\PC Suite [2010-10-02 11:45:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\PhotoScape [2010-08-20 14:09:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Pionek [2010-03-23 17:12:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\ksol\Dane aplikacji\Thinstall [2010-11-24 12:56:53 | 000,000,256 | ---- | M] () -- C:\WINDOWS\Tasks\WGASetup.job [color=#E56717]========== Purity Check ==========[/color] < End of report >