OTL logfile created on: 2012-09-10 19:02:55 - Run 4 OTL by OldTimer - Version 3.2.61.3 Folder = C:\Documents and Settings\Kasprzak\Pulpit Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1023,48 Mb Total Physical Memory | 740,94 Mb Available Physical Memory | 72,39% Memory free 2,41 Gb Paging File | 2,31 Gb Available in Paging File | 96,04% Paging File free Paging file location(s): C:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 29,29 Gb Total Space | 5,32 Gb Free Space | 18,15% Space Free | Partition Type: NTFS Drive D: | 126,96 Gb Total Space | 91,16 Gb Free Space | 71,81% Space Free | Partition Type: NTFS Drive E: | 141,83 Gb Total Space | 111,71 Gb Free Space | 78,76% Space Free | Partition Type: NTFS Drive L: | 7,52 Gb Total Space | 5,32 Gb Free Space | 70,79% Space Free | Partition Type: FAT32 Computer Name: KASPRZAKOWIE | User Name: Kasprzak | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-09-10 17:13:10 | 000,600,064 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kasprzak\Pulpit\OTL.exe PRC - [2008-04-15 14:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2006-05-14 06:23:40 | 000,138,752 | ---- | M] () -- C:\Program Files\7-Zip\7-zip.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\1025fa.exe srv -- (srserviceUPSPolicyAgentSpoolerSwPrv) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\12520437quj.exe srv -- (srserviceUPSPolicyAgentSpooler) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\aaaamonu.exe srv -- (srserviceUPSPolicyAgent) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\acleditw.exe srv -- (srserviceUPS) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\12520437c.exe srv -- (srserviceERSvcSENSSamSsVSSwscsvcupnphost) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\12520437qujp.exe srv -- (srserviceERSvcSENSSamSs) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\1042s.exe srv -- (srserviceERSvcSENS) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\aaaamonzd.exe srv -- (srserviceERSvcERSvc) SRV - File not found [Auto | Stopped] -- C:\WINDOWS\system32\amstreamx.exe srv -- (srserviceERSvc) SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ) SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt) SRV - [2012-09-07 18:06:26 | 000,114,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2010-03-18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon) SRV - [2009-03-08 15:38:34 | 000,057,856 | RHS- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\System32\12520437qujy.exe -- (ALGdmadmin) SRV - [2008-06-10 19:59:18 | 000,019,200 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2008-06-10 19:53:54 | 000,468,224 | ---- | M] (ESET) [Auto | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2008-04-15 14:00:00 | 000,003,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\System32\regedt32.exe -- (NOD32FiXTemDono) SRV - [2004-09-13 12:49:42 | 001,192,050 | ---- | M] (Ahead Software AG) [Auto | Stopped] -- C:\Program Files\Ahead\InCD\InCDsrv.exe -- (InCDsrv) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\ws2_32sik.sys -- (ws2_32sik) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\systemntmi.sys -- (systemntmi) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\securentm.sys -- (securentm) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\port135sik.sys -- (port135sik) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\nicsk32.sys -- (nicsk32) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\netsik.sys -- (netsik) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\ksi32sk.sys -- (ksi32sk) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\i386si.sys -- (i386si) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\fips32cup.sys -- (fips32cup) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\ati64si.sys -- (ati64si) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\amd64si.sys -- (amd64si) DRV - File not found [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\acpi32.sys -- (acpi32) DRV - [2009-01-31 16:28:48 | 000,015,600 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2008-06-10 19:56:10 | 000,034,312 | ---- | M] () [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir) DRV - [2008-06-10 19:48:38 | 000,053,256 | ---- | M] (ESET) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\easdrv.sys -- (easdrv) DRV - [2008-06-10 19:47:42 | 000,039,944 | ---- | M] (ESET) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2008-04-13 22:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) DRV - [2007-09-28 11:10:54 | 000,029,696 | R--- | M] (ASUSTek Computer Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ipfnd51.sys -- (ip100Avista) DRV - [2007-07-18 13:26:04 | 004,547,584 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) DRV - [2006-11-27 17:33:54 | 000,019,968 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus) DRV - [2006-11-27 17:33:50 | 000,058,368 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD) DRV - [2006-10-18 17:31:38 | 000,105,472 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nvata.sys -- (nvata) DRV - [2006-06-19 00:51:32 | 000,043,520 | ---- | M] (Advanced Micro Devices) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8) DRV - [2004-09-13 12:58:10 | 000,007,680 | ---- | M] (Ahead Software AG) [Recognizer | System | Unknown] -- C:\WINDOWS\System32\drivers\InCDrec.sys -- (InCDrec) DRV - [2004-09-13 12:54:46 | 000,028,672 | ---- | M] (Ahead Software AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDpass.sys -- (InCDPass) DRV - [2004-09-13 12:54:06 | 000,093,440 | ---- | M] (Ahead Software AG) [File_System | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\InCDfs.sys -- (InCDfs) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2790392 IE - HKCU\..\SearchScopes,DefaultScope = {30E30D51-5AF3-45E5-B2A3-9D7F300CC3A2} IE - HKCU\..\SearchScopes\{30E30D51-5AF3-45E5-B2A3-9D7F300CC3A2}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8&rlz=1I7GGLL_en IE - HKCU\..\SearchScopes\{A323AB83-986B-47A8-A693-D06C56EC7722}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8&rlz=1I7GGLL_en IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultthis.engineName: " " FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2790392&SearchSource=3&q={searchTerms}" FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledAddons: player@vividas.com:4.1.3 FF - prefs.js..extensions.enabledAddons: {88c7f2aa-f93f-432c-8f0e-b7d85967a527}:3.15.1.0 FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2 FF - prefs.js..extensions.enabledItems: {88c7f2aa-f93f-432c-8f0e-b7d85967a527}:3.3.3.2 FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2790392&q=" FF - prefs.js..network.proxy.type: 0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2303: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1465: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 18:06:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-07 18:06:16 | 000,000,000 | ---D | M] [2009-03-24 22:08:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kasprzak\Dane aplikacji\Mozilla\Extensions [2012-08-28 18:36:58 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Kasprzak\Dane aplikacji\Mozilla\Firefox\Profiles\lni07gql.default\extensions [2012-08-28 18:36:58 | 000,000,000 | ---D | M] (BitTorrentBar Community Toolbar) -- C:\Documents and Settings\Kasprzak\Dane aplikacji\Mozilla\Firefox\Profiles\lni07gql.default\extensions\{88c7f2aa-f93f-432c-8f0e-b7d85967a527} [2011-07-17 19:43:37 | 000,000,000 | ---D | M] (Vividas player plugin) -- C:\Documents and Settings\Kasprzak\Dane aplikacji\Mozilla\Firefox\Profiles\lni07gql.default\extensions\player@vividas.com [2011-03-26 18:26:18 | 000,000,863 | ---- | M] () -- C:\Documents and Settings\Kasprzak\Dane aplikacji\Mozilla\Firefox\Profiles\lni07gql.default\searchplugins\conduit.xml [2012-09-07 18:06:13 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-09-07 18:06:27 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2011-06-20 15:47:30 | 000,189,088 | ---- | M] ( ) -- C:\Program Files\mozilla firefox\plugins\npVividasPlayer.dll [2011-05-08 20:27:58 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2011-05-08 20:27:58 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-05-08 20:27:58 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2011-05-08 20:27:58 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011-05-08 20:27:58 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2011-05-08 20:27:58 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2008-04-15 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Yahoo! Companion BHO) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll (Yahoo! Inc.) O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.) O2 - BHO: (Free Lunch Design Toolbar) - {57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} - C:\Program Files\Free_Lunch_Design\prxtbFre0.dll (Conduit Ltd.) O2 - BHO: (BitTorrentBar Toolbar) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files\BitTorrentBar\prxtbBit2.dll (Conduit Ltd.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll (Google Inc.) O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found. O2 - BHO: (no name) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - No CLSID value found. O3 - HKLM\..\Toolbar: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Free Lunch Design Toolbar) - {57cc715d-37ca-44e4-9ec2-8c2cbddb25ec} - C:\Program Files\Free_Lunch_Design\prxtbFre0.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (BitTorrentBar Toolbar) - {88c7f2aa-f93f-432c-8f0e-b7d85967a527} - C:\Program Files\BitTorrentBar\prxtbBit2.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (&Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll (Yahoo! Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.) O3 - HKCU\..\Toolbar\WebBrowser: (Free Lunch Design Toolbar) - {57CC715D-37CA-44E4-9EC2-8C2CBDDB25EC} - C:\Program Files\Free_Lunch_Design\prxtbFre0.dll (Conduit Ltd.) O3 - HKCU\..\Toolbar\WebBrowser: (BitTorrentBar Toolbar) - {88C7F2AA-F93F-432C-8F0E-B7D85967A527} - C:\Program Files\BitTorrentBar\prxtbBit2.dll (Conduit Ltd.) O3 - HKCU\..\Toolbar\WebBrowser: (&Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_2_0.dll (Yahoo! Inc.) O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () O4 - HKCU..\Run: [BitTorrent] C:\Program Files\BitTorrent\BitTorrent.exe (BitTorrent, Inc.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Microsoft Office.lnk = C:\Program Files\Microsoft OfficeXP\Office10\OSA.EXE (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.100 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A62B65FD-C653-403C-B79D-D7F86E12A3BA}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A62B65FD-C653-403C-B79D-D7F86E12A3BA}: NameServer = 192.168.1.1,194.204.159.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D0B034FC-356E-406F-8D73-8DB3E438D62C}: DhcpNameServer = 192.168.1.100 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (C:\Documents and Settings\All Users\Dane aplikacji\mrkyqrii) - C:\Documents and Settings\All Users\Dane aplikacji\mrkyqrii.exe () O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\sdra64.exe) - C:\WINDOWS\system32\sdra64.exe () O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Kasprzak\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kasprzak\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O27 - HKLM IFEO\RapportMgmtService.exe: Debugger - ZASRAKOMONDOHUI31338.EXE File not found O27 - HKLM IFEO\RapportService.exe: Debugger - ZASRAKOMONDOHUI31338.EXE File not found O29 - HKLM SecurityProviders - (digeste.dll) - File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-01-31 16:03:09 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{17b7c789-18a7-11de-adf5-001d7d5d4a28}\Shell\AutoRun\command - "" = L:\setupSNK.exe O33 - MountPoints2\{8c02318c-ef9b-11dd-a360-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{8c02318c-ef9b-11dd-a360-806d6172696f}\Shell\AutoRun\command - "" = K:\Run.exe O33 - MountPoints2\{aa1250fe-1256-11df-b51d-001d7d5d4a28}\Shell\ArcaVirMenu\command - "" = L:\ArcaVir2009USBMenu.exe O33 - MountPoints2\{aa1250fe-1256-11df-b51d-001d7d5d4a28}\Shell\AutoRun\command - "" = L:\ArcaVir2009USBMenu.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-09-10 18:57:54 | 000,600,064 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Kasprzak\Pulpit\OTL.exe [2012-09-07 18:06:12 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\Documents and Settings\Kasprzak\*.tmp files -> C:\Documents and Settings\Kasprzak\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-09-10 18:55:25 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-09-10 18:54:35 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-09-10 18:54:35 | 000,000,316 | ---- | M] () -- C:\WINDOWS\tasks\GlaryInitialize.job [2012-09-10 18:24:33 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-09-10 17:13:10 | 000,600,064 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kasprzak\Pulpit\OTL.exe [2012-09-09 11:02:10 | 000,095,744 | ---- | M] () -- C:\Documents and Settings\Kasprzak\Ustawienia lokalne\Dane aplikacji\mrkyqrii.exe [2012-09-09 11:02:10 | 000,095,744 | ---- | M] () -- C:\Documents and Settings\Kasprzak\Dane aplikacji\mrkyqrii.exe [2012-09-09 11:02:10 | 000,095,744 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\mrkyqrii.exe [2012-09-08 23:09:00 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-09-08 20:44:45 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012-09-08 20:40:47 | 000,224,768 | ---- | M] () -- C:\Documents and Settings\Kasprzak\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\Documents and Settings\Kasprzak\*.tmp files -> C:\Documents and Settings\Kasprzak\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-09-09 11:04:17 | 000,095,744 | ---- | C] () -- C:\Documents and Settings\Kasprzak\Dane aplikacji\mrkyqrii.exe [2012-09-09 11:02:12 | 000,095,744 | ---- | C] () -- C:\Documents and Settings\Kasprzak\Ustawienia lokalne\Dane aplikacji\mrkyqrii.exe [2012-09-09 11:02:12 | 000,095,744 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\mrkyqrii.exe [2011-07-13 20:39:57 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2011-05-03 21:00:51 | 000,000,042 | ---- | C] () -- C:\WINDOWS\SCRABMAN.INI [2010-05-02 10:41:31 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\P300410_20.09.jpg [2010-04-04 11:16:55 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\lol2.jpg [2010-02-15 13:42:03 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC04092 kopia.jpg [2010-02-15 13:41:52 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC04092 kopia 2.jpg [2010-02-15 13:41:38 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC04099.jpg [2010-02-15 13:41:10 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC04106.jpg [2010-02-15 13:40:35 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC04108.jpg [2010-02-15 13:39:49 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC04120.jpg [2009-12-17 16:44:34 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\ee.JPG [2009-11-01 17:00:56 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\cyrkoniowy_polkwiat.jpg [2009-11-01 17:00:35 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\displayimage.php.png [2009-07-30 22:56:24 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\Obraz 022.jpg [2009-07-24 23:29:14 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\Obraz 110.jpg [2009-07-22 16:25:00 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00343.JPG [2009-07-22 16:24:36 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00342.JPG [2009-07-22 16:24:26 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00341.JPG [2009-07-22 16:20:30 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00340.JPG [2009-07-22 16:20:23 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00336.JPG [2009-07-22 16:18:31 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00335.JPG [2009-07-22 16:13:08 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00327.JPG [2009-07-22 16:12:58 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00326.JPG [2009-07-22 16:10:23 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00325.JPG [2009-07-22 16:08:35 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00324.JPG [2009-07-22 16:08:18 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00319.JPG [2009-07-22 16:08:14 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00318.JPG [2009-07-22 16:03:19 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00316.JPG [2009-07-22 16:03:07 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00309.JPG [2009-07-22 15:57:03 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00305.JPG [2009-07-22 15:55:19 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00304.JPG [2009-07-22 15:55:15 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00303.JPG [2009-07-22 15:51:17 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00302.JPG [2009-07-22 15:49:36 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00301.JPG [2009-07-22 15:47:48 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00300.JPG [2009-07-22 15:45:58 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00299.JPG [2009-07-22 15:44:48 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00298.JPG [2009-07-22 15:41:49 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00297.JPG [2009-07-22 15:39:56 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00293.JPG [2009-07-22 15:39:29 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00291.JPG [2009-07-22 15:39:26 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00290.JPG [2009-07-22 15:39:22 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00289.JPG [2009-07-22 15:36:52 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00288.JPG [2009-07-22 15:36:47 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00284.JPG [2009-07-22 15:33:42 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00283.JPG [2009-07-22 15:33:34 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00282.JPG [2009-07-22 15:32:33 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00281.JPG [2009-07-22 15:32:16 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00262.JPG [2009-07-22 15:30:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00256.JPG [2009-07-22 15:29:09 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00253.JPG [2009-07-22 15:27:43 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00252.JPG [2009-07-22 15:27:34 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00250.JPG [2009-07-22 15:26:18 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00249.JPG [2009-07-22 15:24:52 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00245.JPG [2009-07-22 15:24:23 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00243.JPG [2009-07-22 15:23:28 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00239.JPG [2009-07-22 15:21:37 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00238.JPG [2009-07-22 15:18:41 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00236.JPG [2009-07-22 15:18:24 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00233.JPG [2009-07-22 15:17:38 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00232.JPG [2009-07-22 15:15:27 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00231.JPG [2009-07-22 15:14:45 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Kasprzak\DSC00230.JPG [2009-03-24 22:11:05 | 000,005,120 | ---- | C] () -- C:\Documents and Settings\Kasprzak\Dane aplikacji\SQLiteManager2.pref [2009-02-01 21:00:35 | 000,224,768 | ---- | C] () -- C:\Documents and Settings\Kasprzak\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 140 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:B879A65B < End of report >