OTL logfile created on: 2012-09-18 10:05:23 - Run 1 OTL by OldTimer - Version 3.2.63.0 Folder = C:\Users\Asia\Downloads Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,62 Gb Total Physical Memory | 1,35 Gb Available Physical Memory | 51,61% Memory free 5,24 Gb Paging File | 3,56 Gb Available in Paging File | 67,88% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 107,86 Gb Total Space | 48,84 Gb Free Space | 45,28% Space Free | Partition Type: NTFS Drive E: | 337,89 Gb Total Space | 329,63 Gb Free Space | 97,56% Space Free | Partition Type: NTFS Drive H: | 195,31 Gb Total Space | 44,14 Gb Free Space | 22,60% Space Free | Partition Type: NTFS Drive I: | 503,32 Gb Total Space | 288,87 Gb Free Space | 57,39% Space Free | Partition Type: NTFS Computer Name: ASIA-KOMPUTER | User Name: Asia | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 180 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-09-18 08:57:47 | 000,600,576 | ---- | M] (OldTimer Tools) -- C:\Users\Asia\Downloads\OTL.exe PRC - [2012-08-22 00:26:08 | 001,807,560 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe PRC - [2012-07-27 22:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2012-07-18 22:00:43 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2011-12-24 12:24:36 | 000,202,296 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\avp.exe PRC - [2011-12-02 11:32:02 | 000,138,368 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia Internet Modem\NokiaInternetModem.exe PRC - [2011-12-02 11:31:56 | 000,142,464 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\NokiaInternetModem_AppStart.exe PRC - [2011-01-26 18:15:08 | 000,413,112 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\SHE\SuperHybridEngine.exe PRC - [2010-12-07 10:20:02 | 000,101,288 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\HotkeyService\HotKeyMon.exe PRC - [2010-12-07 10:19:54 | 000,224,680 | ---- | M] () -- C:\Windows\System32\AsusService.exe PRC - [2010-12-07 10:19:52 | 001,248,176 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\HotkeyService\HotkeyService.exe PRC - [2010-11-16 12:19:18 | 000,096,176 | ---- | M] (AsusTek Computer Inc.) -- C:\Program Files\ASUS\USBChargeSetting\iSeriesCharge.exe PRC - [2010-11-15 13:27:22 | 000,445,344 | ---- | M] (ASUS) -- C:\Program Files\ASUS\CapsHook\CapsHook.exe PRC - [2010-08-12 15:12:28 | 000,083,240 | ---- | M] (Synaptics Incorporated) -- C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe PRC - [2010-05-21 14:42:48 | 000,828,704 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe PRC - [2010-05-21 14:42:48 | 000,652,576 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe PRC - [2010-02-09 17:43:16 | 002,621,440 | R--- | M] (Brother Industries, Ltd.) -- C:\Program Files\Browny02\Brother\BrStMonW.exe PRC - [2010-01-25 09:22:56 | 000,245,760 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Browny02\BrYNSvc.exe PRC - [2009-12-21 17:34:38 | 000,743,992 | ---- | M] (Infowatch) -- C:\Program Files\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe PRC - [2009-07-14 03:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-07-14 03:14:15 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-08-22 00:26:08 | 009,813,704 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_11_4_402_265.dll MOD - [2012-07-18 22:00:43 | 002,003,424 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2011-12-24 12:22:20 | 007,422,352 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\qtgui4.dll MOD - [2011-12-24 12:22:20 | 000,795,024 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\qtnetwork4.dll MOD - [2011-12-24 12:22:16 | 001,270,160 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\qtscript4.dll MOD - [2011-12-24 12:22:16 | 000,192,912 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\qtsql4.dll MOD - [2011-12-24 12:22:14 | 002,453,904 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\qtdeclarative4.dll MOD - [2011-12-24 12:22:12 | 002,126,224 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\qtcore4.dll MOD - [2011-12-24 12:21:10 | 000,459,152 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\dblite.dll MOD - [2011-12-02 11:31:56 | 001,048,496 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\wxmsw28u_core_vc_custom.dll MOD - [2011-12-02 11:31:56 | 000,861,104 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\UIToolkit.dll MOD - [2011-12-02 11:31:56 | 000,726,960 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\wxbase28u_vc_custom.dll MOD - [2011-12-02 11:31:56 | 000,608,688 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Toolkit.dll MOD - [2011-12-02 11:31:56 | 000,442,288 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\LiveUpdateLib.dll MOD - [2011-12-02 11:31:56 | 000,395,184 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\WebClient.dll MOD - [2011-12-02 11:31:56 | 000,360,880 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Device.dll MOD - [2011-12-02 11:31:56 | 000,313,856 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\CommonCtrls.gip MOD - [2011-12-02 11:31:56 | 000,265,728 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\UISMS.gip MOD - [2011-12-02 11:31:56 | 000,247,728 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\DB.dll MOD - [2011-12-02 11:31:56 | 000,246,272 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\Wifi3GConnect.gip MOD - [2011-12-02 11:31:56 | 000,238,592 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\UILiveUpdateRefresh.gip MOD - [2011-12-02 11:31:56 | 000,227,328 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\UIDiagnostic.gip MOD - [2011-12-02 11:31:56 | 000,225,200 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Wifi.dll MOD - [2011-12-02 11:31:56 | 000,223,744 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\SWUpgrader.plugin MOD - [2011-12-02 11:31:56 | 000,208,384 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\IContact.gip MOD - [2011-12-02 11:31:56 | 000,208,304 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Sms.dll MOD - [2011-12-02 11:31:56 | 000,183,216 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Contacts.dll MOD - [2011-12-02 11:31:56 | 000,172,032 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\GsmSettings.gip MOD - [2011-12-02 11:31:56 | 000,170,928 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Connection.dll MOD - [2011-12-02 11:31:56 | 000,147,888 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\pcre3.dll MOD - [2011-12-02 11:31:56 | 000,142,464 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\NokiaInternetModem_AppStart.exe MOD - [2011-12-02 11:31:56 | 000,135,088 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Diagnostic.dll MOD - [2011-12-02 11:31:56 | 000,132,016 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Discovery.dll MOD - [2011-12-02 11:31:56 | 000,123,312 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\SmartConnect.dll MOD - [2011-12-02 11:31:56 | 000,102,912 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\OutlookContactsAdapter.plugin MOD - [2011-12-02 11:31:56 | 000,100,864 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\UIShortcut.gip MOD - [2011-12-02 11:31:56 | 000,099,760 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\System.dll MOD - [2011-12-02 11:31:56 | 000,097,280 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\VistaContactsAdapter.plugin MOD - [2011-12-02 11:31:56 | 000,096,688 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ComCore.dll MOD - [2011-12-02 11:31:56 | 000,081,920 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\WifiSettings.gip MOD - [2011-12-02 11:31:56 | 000,080,384 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DeviceInfo.plugin MOD - [2011-12-02 11:31:56 | 000,075,264 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\SmsAdapter.plugin MOD - [2011-12-02 11:31:56 | 000,073,728 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DeviceUnlock.gip MOD - [2011-12-02 11:31:56 | 000,073,216 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\UIEula.gip MOD - [2011-12-02 11:31:56 | 000,070,144 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\FWIceraUpgrader.plugin MOD - [2011-12-02 11:31:56 | 000,066,048 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\CellBroadcast.gip MOD - [2011-12-02 11:31:56 | 000,065,456 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Encoding.dll MOD - [2011-12-02 11:31:56 | 000,063,488 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\Win6Wifi.plugin MOD - [2011-12-02 11:31:56 | 000,061,872 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\DriveDetector.dll MOD - [2011-12-02 11:31:56 | 000,054,784 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\Browser.gip MOD - [2011-12-02 11:31:56 | 000,052,736 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DeviceSimContactsAdapter.plugin MOD - [2011-12-02 11:31:56 | 000,049,664 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\SmartConnectModem.plugin MOD - [2011-12-02 11:31:56 | 000,049,584 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Preferences.dll MOD - [2011-12-02 11:31:56 | 000,044,544 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\MobileBroadbandConnection.plugin MOD - [2011-12-02 11:31:56 | 000,041,984 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\SmartConnectWifi.plugin MOD - [2011-12-02 11:31:56 | 000,039,856 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\CommonPims.dll MOD - [2011-12-02 11:31:56 | 000,035,328 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\SmartConnectStrategyNokia.plugin MOD - [2011-12-02 11:31:56 | 000,033,280 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DiscoveryGeneric.plugin MOD - [2011-12-02 11:31:56 | 000,028,160 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DiscoveryMobileBroadband.plugin MOD - [2011-12-02 11:31:56 | 000,018,944 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DiscoveryNdis.plugin MOD - [2011-12-02 11:31:56 | 000,013,232 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Data.dll MOD - [2011-09-05 19:36:52 | 000,025,088 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\imageformats\qgif4.dll MOD - [2011-09-05 19:36:50 | 000,180,224 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\imageformats\qjpeg4.dll MOD - [2010-11-10 16:38:00 | 000,243,712 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll MOD - [2010-08-26 16:51:04 | 000,016,384 | R--- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll MOD - [2010-05-21 14:42:58 | 000,132,384 | ---- | M] () -- C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll MOD - [2009-09-04 07:43:45 | 000,249,856 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.resources\3.0.0.0_pl_31bf3856ad364e35\PresentationFramework.resources.dll MOD - [2009-09-04 07:43:34 | 000,425,984 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_pl_b77a5c561934e089\System.Windows.Forms.resources.dll MOD - [2009-09-04 07:43:32 | 000,204,800 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.resources\2.0.0.0_pl_b77a5c561934e089\System.resources.dll MOD - [2009-09-04 07:43:29 | 000,311,296 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll MOD - [2009-09-04 07:43:26 | 000,032,768 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_pl_b77a5c561934e089\System.Runtime.Remoting.resources.dll MOD - [2009-07-14 06:55:43 | 000,240,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\de8525cc2e6327337e1c6917352bfe16\WindowsFormsIntegration.ni.dll MOD - [2009-07-14 06:43:48 | 002,295,296 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\1762137638019a091020b3baf52f6de3\System.Core.ni.dll MOD - [2009-07-14 06:43:44 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\39f5a71b5185d267b0f55cd4cea26d6b\PresentationFramework.Aero.ni.dll MOD - [2009-07-14 06:43:36 | 011,804,160 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\3871fc2b96345aa6f3be81d9e3c97160\System.Web.ni.dll MOD - [2009-07-14 06:43:30 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\4bdeb88758dccd625f4703ed77aaf348\System.Runtime.Remoting.ni.dll MOD - [2009-07-14 06:43:20 | 014,318,592 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\68e5eeb3c6ef18ba2dc1ad70eb74aeee\PresentationFramework.ni.dll MOD - [2009-07-14 06:43:04 | 012,430,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\fedf1ba58dced4f0b3f8c457648ceed9\System.Windows.Forms.ni.dll MOD - [2009-07-14 06:42:57 | 001,586,688 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\ead6be8b410d56b5576b10e56af2c180\System.Drawing.ni.dll MOD - [2009-07-14 06:42:55 | 012,216,320 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\7b459c5815af8123e4bf30d4e05bba65\PresentationCore.ni.dll MOD - [2009-07-14 06:42:45 | 003,313,664 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\c2f9dd7db911053edcaaadf5fefc500a\WindowsBase.ni.dll MOD - [2009-07-14 06:42:40 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\5dd9f783008543df3e642ff1e99de4e8\System.Xml.ni.dll MOD - [2009-07-14 06:42:37 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\4b1350e31ff09cc583b34854816d8036\System.Configuration.ni.dll MOD - [2009-07-14 06:42:36 | 007,949,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5ba3bf5367fc012300c6566f20cb7f54\System.ni.dll MOD - [2009-07-14 06:42:30 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\8c1770d45c63cf5c462eeb945ef9aa5d\mscorlib.ni.dll MOD - [2009-02-27 17:38:20 | 000,139,264 | R--- | M] () -- C:\Program Files\Brother\BrUtilities\BrLogAPI.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2012-07-27 22:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2012-07-18 22:00:43 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-07-02 18:18:57 | 000,077,944 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service) SRV - [2011-12-24 12:24:36 | 000,202,296 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\avp.exe -- (AVP) SRV - [2010-12-07 10:19:54 | 000,224,680 | ---- | M] () [Auto | Running] -- C:\Windows\System32\AsusService.exe -- (AsusService) SRV - [2010-11-10 04:55:38 | 000,176,128 | ---- | M] (AMD) [Auto | Stopped] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility) SRV - [2010-05-21 14:42:48 | 000,652,576 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins) SRV - [2010-01-25 09:22:56 | 000,245,760 | ---- | M] (Brother Industries, Ltd.) [On_Demand | Running] -- C:\Program Files\Browny02\BrYNSvc.exe -- (BrYNSvc) SRV - [2009-12-21 17:34:38 | 000,743,992 | ---- | M] (Infowatch) [Auto | Running] -- C:\Program Files\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe -- (CSObjectsSrv) SRV - [2009-07-14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Unknown] -- -- (a16t0fme) DRV - [2012-09-04 08:11:52 | 000,588,080 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\System32\drivers\klif.sys -- (KLIF) DRV - [2012-07-02 18:10:46 | 000,242,240 | ---- | M] (DT Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV - [2012-07-02 18:01:44 | 000,477,240 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sptd.sys -- (sptd) DRV - [2011-10-20 11:48:00 | 000,135,984 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\kl1.sys -- (KL1) DRV - [2011-10-20 11:48:00 | 000,013,104 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\kl2.sys -- (kl2) DRV - [2011-06-22 14:10:02 | 000,067,968 | ---- | M] (Nokia) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nokia_usb_modem_cdc_acm.sys -- (nokia_usb_modem_cdc_acm) DRV - [2011-06-22 14:10:02 | 000,052,224 | ---- | M] (Nokia) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nokia_usb_modem_cdc_ecm.sys -- (nokia_usb_modem_cdc_ecm) DRV - [2011-06-22 14:10:02 | 000,047,488 | ---- | M] (Nokia) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nokia_usb_modem_ecm_enum_filter.sys -- (nokia_usb_modem_ecm_enum_filter) DRV - [2011-06-22 14:10:02 | 000,047,488 | ---- | M] (Nokia) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nokia_usb_modem_ecm_enum.sys -- (nokia_usb_modem_ecm_enum) DRV - [2011-06-22 14:10:02 | 000,009,984 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\nokia_usb_modem_cpo.sys -- (nokia_usb_modem_cpo) DRV - [2011-03-10 18:36:18 | 000,023,856 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\System32\drivers\klim6.sys -- (KLIM6) DRV - [2011-02-09 09:03:23 | 000,011,456 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\AsIO.sys -- (AsIO) DRV - [2011-02-09 09:03:21 | 000,011,832 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\AsUpIO.sys -- (AsUpIO) DRV - [2011-01-27 11:23:38 | 000,304,616 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\asmtxhci.sys -- (asmtxhci) DRV - [2011-01-27 11:23:38 | 000,098,280 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\asmthub3.sys -- (asmthub3) DRV - [2010-11-17 14:04:24 | 000,101,392 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AtihdW73.sys -- (AtiHDAudioService) DRV - [2010-11-10 05:33:04 | 006,574,080 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (amdkmdag) DRV - [2010-11-10 04:18:34 | 000,229,888 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap) DRV - [2010-09-27 09:23:57 | 000,068,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C) DRV - [2010-05-20 12:02:32 | 000,013,224 | ---- | M] (ASUSTek Computer Inc.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\AiDriver.sys -- (AiDriver) DRV - [2009-12-14 12:44:24 | 000,088,632 | ---- | M] (Infowatch) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\CSCrySec.sys -- (CSCrySec) DRV - [2009-12-14 12:44:24 | 000,039,352 | ---- | M] (Infowatch) [Kernel | System | Running] -- C:\Windows\System32\drivers\CSVirtualDiskDrv.sys -- (CSVirtualDiskDrv) DRV - [2009-11-02 20:27:16 | 000,019,984 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\klmouflt.sys -- (klmouflt) DRV - [2009-07-20 11:29:40 | 000,013,880 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\kbfiltr.sys -- (kbfiltr) DRV - [2009-07-14 03:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus) DRV - [2009-07-14 03:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt) DRV - [2009-07-14 03:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc) DRV - [2009-07-14 02:18:07 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WSDPrint.sys -- (WSDPrintDevice) DRV - [2009-07-14 01:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp) DRV - [2009-07-14 01:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-07-14 01:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap) DRV - [2009-07-14 01:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={9803D871-4120-4C9F-B4B2-DB6F083AA4A4}&mid=5b1b57dccd2d49809f7d798fa69a90d8-4b8a601313cc79b43ce67ce4443a9b0b66d5c417&lang=en&ds=hk011&pr=sa&d=2012-07-10 16:01:42&v=11.1.0.12&sap=hp IE - HKCU\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.com/search?cid={9803D871-4120-4C9F-B4B2-DB6F083AA4A4}&mid=5b1b57dccd2d49809f7d798fa69a90d8-4b8a601313cc79b43ce67ce4443a9b0b66d5c417&lang=en&ds=hk011&pr=sa&d=2012-07-10 16:01:42&v=11.1.0.12&sap=dsp&q={searchTerms} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "AVG Secure Search" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.startup.homepage: "www.google.pl" FF - prefs.js..keyword.URL: "http://isearch.avg.com/search?cid=%7Bb246a327-937d-489c-b424-b3ee90084e93%7D&mid=5b1b57dccd2d49809f7d798fa69a90d8-4b8a601313cc79b43ce67ce4443a9b0b66d5c417&ds=hk011&v=11.1.0.12&lang=en&pr=sa&d=2012-07-10%2016%3A01%3A42&sap=ku&q=" FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_265.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\linkfilter@kaspersky.ru: C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\FFExt\linkfilter@kaspersky.ru [2012-09-04 08:39:33 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtualKeyboard@kaspersky.ru: C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\FFExt\virtualKeyboard@kaspersky.ru [2012-09-04 08:39:34 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\KavAntiBanner@Kaspersky.ru: C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\FFExt\KavAntiBanner@Kaspersky.ru [2012-09-04 08:39:33 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-07-18 22:00:43 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-07-18 22:00:43 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-11-18 03:29:48 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Asia\AppData\Roaming\mozilla\Extensions [2012-05-03 01:05:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Asia\AppData\Roaming\mozilla\Firefox\Profiles\8yfha6qf.default\extensions [2011-11-19 00:19:45 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2011-11-19 00:19:46 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2012-07-18 22:00:43 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-03-25 19:28:42 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-07-10 16:01:37 | 000,003,750 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml [2012-03-25 19:28:42 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-03-25 19:28:42 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-03-25 19:28:42 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-03-25 19:28:42 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-03-25 19:28:42 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml [color=#E56717]========== Chrome ==========[/color] CHR - homepage: http://www.google.com/ CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms} CHR - homepage: http://www.google.com/ CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\21.0.1180.89\gcswf32.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_265.dll CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\21.0.1180.89\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\21.0.1180.89\pdf.dll CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\Asia\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.50.146.2_0\McChPlg.dll CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.89\npGoogleUpdate3.dll CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll CHR - plugin: Java(TM) Platform SE 7 U5 (Enabled) = C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll CHR - plugin: Java Deployment Toolkit 7.0.50.255 (Enabled) = C:\Windows\system32\npDeployJava1.dll CHR - Extension: SiteAdvisor = C:\Users\Asia\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.50.146.2_0\ CHR - Extension: avast! WebRep = C:\Users\Asia\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1466_0\ O1 HOSTS File: ([2009-06-10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\ievkbd.dll (Kaspersky Lab ZAO) O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\klwtbbho.dll (Kaspersky Lab ZAO) O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\avp.exe (Kaspersky Lab ZAO) O4 - HKLM..\Run: [BrStsMon00] C:\Program Files\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [CapsHook] C:\Windows\System32\AsusSender.exe (ASUSTek Computer Inc.) O4 - HKLM..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [HotkeyMon] C:\Windows\System32\AsusSender.exe (ASUSTek Computer Inc.) O4 - HKLM..\Run: [HotkeyService] C:\Windows\System32\AsusSender.exe (ASUSTek Computer Inc.) O4 - HKLM..\Run: [iSeriesCharge] C:\Program Files\ASUS\USBChargeSetting\iSeriesCharge.exe (AsusTek Computer Inc.) O4 - HKLM..\Run: [NokiaInternetModem_AppStart.exe] C:\Program Files\Nokia\Nokia Internet Modem\NokiaInternetModem_AppStart.exe () O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [SuperHybridEngine] C:\Windows\System32\AsusSender.exe (ASUSTek Computer Inc.) O4 - HKLM..\Run: [SynAsusAcpi] C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe (Synaptics Incorporated) O4 - HKCU..\Run: [Ubdudo] C:\Users\Asia\AppData\Roaming\Ubdudo.exe File not found F3 - HKCU WinNT: Load - (C:\Users\Asia\LOCALS~1\Temp\msivayqa.com) - File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O8 - Extra context menu item: Dodaj do listy blokowanych banerów - C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\ie_banner_deny.htm () O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm () O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra Button: &Klawiatura wirtualna - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\ievkbd.dll (Kaspersky Lab ZAO) O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra Button: &Sprawdzanie adresów internetowych - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky PURE 2.0\klwtbbho.dll (Kaspersky Lab ZAO) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000033 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000034 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000035 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000036 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000038 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000039 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000040 - %SystemRoot%\system32\wshbth.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000041 - %SystemRoot%\system32\wshbth.dll File not found O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7F5E09CC-5977-4393-A007-316E7A38587D}: NameServer = 217.116.100.65 79.163.127.70 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{876FAB42-140F-44CC-984B-268CDB7ADCF0}: DhcpNameServer = 10.176.177.78 212.76.34.50 8.8.8.8 O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - Winlogon\Notify\klogon: DllName - (C:\Windows\system32\klogon.dll) - C:\Windows\System32\klogon.dll (Kaspersky Lab ZAO) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{45f2c3e0-e0b7-11e1-aa3e-14dae92bf458}\Shell - "" = AutoRun O33 - MountPoints2\{45f2c3e0-e0b7-11e1-aa3e-14dae92bf458}\Shell\AutoRun\command - "" = F:\Setup.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 180 Days ==========[/color] [2012-09-18 08:59:00 | 000,000,000 | ---D | C] -- C:\_OTL [2012-09-18 08:32:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeCommander [2012-09-18 08:32:12 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Roaming\FreeCommander [2012-09-18 08:32:11 | 000,000,000 | ---D | C] -- C:\Program Files\FreeCommander [2012-09-18 08:25:19 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\fc_setup_ [2012-09-16 12:14:29 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\hybrydy [2012-09-14 21:41:08 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Local\ElevatedDiagnostics [2012-09-04 08:16:18 | 000,000,000 | R--D | C] -- C:\Backup [2012-09-04 08:13:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky PURE 2.0 [2012-09-04 08:13:09 | 000,088,632 | ---- | C] (Infowatch) -- C:\Windows\System32\drivers\CSCrySec.sys [2012-09-04 08:13:09 | 000,039,352 | ---- | C] (Infowatch) -- C:\Windows\System32\drivers\CSVirtualDiskDrv.sys [2012-09-04 08:12:22 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InfoWatch [2012-09-04 08:12:19 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab [2012-09-04 08:12:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab [2012-09-04 08:11:52 | 000,588,080 | ---- | C] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys [2012-09-04 07:56:09 | 000,000,000 | -HSD | C] -- C:\Windows\System32\%APPDATA% [2012-09-03 20:29:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [2012-09-03 20:29:18 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2012-09-03 20:26:22 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Roaming\Malwarebytes [2012-09-03 20:26:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2012-09-03 20:19:46 | 000,000,000 | ---D | C] -- C:\Windows\System32\appmgmt [2012-09-03 18:03:56 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Local\Google [2012-09-03 18:03:56 | 000,000,000 | ---D | C] -- C:\Program Files\Google [2012-09-03 18:02:33 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software [2012-09-03 18:02:33 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software [2012-08-30 19:37:52 | 000,000,000 | ---D | C] -- C:\Users\Asia\Start Menu [2012-08-22 00:26:36 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Local\Macromedia [2012-08-22 00:15:59 | 000,696,520 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe [2012-08-22 00:15:59 | 000,073,416 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2012-08-20 14:38:53 | 000,000,000 | ---D | C] -- C:\Windows\Minidump [2012-08-19 21:05:48 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\impreza tematyczna - starożytne cywilizacje [2012-08-19 17:32:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun [2012-08-19 17:29:59 | 000,772,544 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\npDeployJava1.dll [2012-08-19 17:29:59 | 000,687,544 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\deployJava1.dll [2012-08-07 19:48:54 | 000,000,000 | ---D | C] -- C:\Users\Asia\Local Settings [2012-08-07 19:46:36 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Local\NokiaInternetModem [2012-08-07 19:46:11 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Local\NokiaInternetModem_AppStart [2012-08-07 19:45:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia [2012-08-07 19:45:48 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia [2012-07-29 08:41:44 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\filmy [2012-07-26 21:48:10 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\salka [2012-07-23 17:43:22 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\fotki tel [2012-07-23 17:39:45 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\viber [2012-07-10 16:03:13 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Local\WinZip [2012-07-10 16:02:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip [2012-07-10 16:02:19 | 000,000,000 | ---D | C] -- C:\ProgramData\WinZip [2012-07-10 16:02:17 | 000,000,000 | ---D | C] -- C:\Program Files\WinZip [2012-07-02 18:17:00 | 000,000,000 | ---D | C] -- C:\Program Files\AnswerWorks 4.0 [2012-07-02 18:15:17 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Roaming\Autodesk [2012-07-02 18:15:17 | 000,000,000 | ---D | C] -- C:\Users\Asia\AppData\Local\Autodesk [2012-07-02 18:15:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Autodesk [2012-07-02 18:15:17 | 000,000,000 | ---D | C] -- C:\Program Files\AutoCAD 2007 [2012-07-02 18:13:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk [2012-07-02 18:10:46 | 000,242,240 | ---- | C] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys [2012-07-02 18:07:06 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Autodesk Shared [2012-07-02 18:06:57 | 000,000,000 | ---D | C] -- C:\Program Files\Autodesk [2012-07-02 18:06:51 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll [2012-07-02 18:01:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite [2012-07-02 18:00:56 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite [2012-06-26 22:40:05 | 000,000,000 | R--D | C] -- C:\Users\Asia\Documents\Scanned Documents [2012-06-26 22:40:05 | 000,000,000 | ---D | C] -- C:\Users\Asia\Documents\Fax [2012-06-17 17:36:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TC PowerPack [2012-06-17 17:36:23 | 000,000,000 | ---D | C] -- C:\Program Files\TC PowerPack [2012-05-19 12:52:27 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\prace dyplomowe [2012-05-17 15:47:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla [2012-05-17 15:47:01 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2012-05-05 00:16:01 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\promocja oficerska [2012-05-04 13:37:52 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\promocyjny grilll [2012-04-29 22:22:00 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\domi&iza [2012-04-29 22:21:15 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\grillmgr [2012-04-29 22:19:07 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\rozdanie dyplomów [2012-04-16 20:38:33 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\Kuba [2012-04-08 22:28:31 | 000,000,000 | ---D | C] -- C:\Users\Asia\Desktop\Adobe Photoshop CS4 Extended PL - Portable [2012-03-26 15:22:31 | 000,000,000 | ---D | C] -- C:\Users\Asia\Documents\Notesy programu OneNote [color=#E56717]========== Files - Modified Within 180 Days ==========[/color] [2012-09-18 08:43:55 | 000,687,828 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2012-09-18 08:43:55 | 000,666,732 | ---- | M] () -- C:\Windows\System32\perfh019.dat [2012-09-18 08:43:55 | 000,623,220 | ---- | M] () -- C:\Windows\System32\perfh00E.dat [2012-09-18 08:43:55 | 000,614,512 | ---- | M] () -- C:\Windows\System32\perfh005.dat [2012-09-18 08:43:55 | 000,607,190 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2012-09-18 08:43:55 | 000,144,282 | ---- | M] () -- C:\Windows\System32\perfc00E.dat [2012-09-18 08:43:55 | 000,131,382 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2012-09-18 08:43:55 | 000,128,892 | ---- | M] () -- C:\Windows\System32\perfc019.dat [2012-09-18 08:43:55 | 000,118,684 | ---- | M] () -- C:\Windows\System32\perfc005.dat [2012-09-18 08:43:55 | 000,103,568 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2012-09-18 08:32:13 | 000,000,963 | ---- | M] () -- C:\Users\Asia\Desktop\FreeCommander.lnk [2012-09-18 08:20:27 | 002,663,437 | ---- | M] () -- C:\Users\Asia\Desktop\fc_setup_.zip [2012-09-18 06:51:33 | 000,016,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012-09-18 06:51:33 | 000,016,944 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012-09-18 06:44:03 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012-09-18 06:43:56 | 2111,107,072 | -HS- | M] () -- C:\hiberfil.sys [2012-09-04 08:36:47 | 000,116,189 | ---- | M] () -- C:\Windows\System32\drivers\klin.dat [2012-09-04 08:36:47 | 000,098,168 | ---- | M] () -- C:\Windows\System32\drivers\klick.dat [2012-09-04 08:16:22 | 000,017,408 | ---- | M] () -- C:\Users\Asia\AppData\Local\WebpageIcons.db [2012-09-04 08:11:52 | 000,588,080 | ---- | M] (Kaspersky Lab) -- C:\Windows\System32\drivers\klif.sys [2012-09-03 18:15:43 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt [2012-08-30 21:10:12 | 001,138,055 | ---- | M] () -- C:\Users\Asia\Desktop\mundur.pdf [2012-08-29 18:48:20 | 000,311,911 | ---- | M] () -- C:\Users\Asia\Desktop\bilety.pdf [2012-08-28 12:16:03 | 000,001,109 | ---- | M] () -- C:\Users\Asia\AppData\Roaming\5765.exe [2012-08-22 00:26:08 | 000,696,520 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe [2012-08-22 00:26:08 | 000,073,416 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2012-08-08 07:47:31 | 000,489,912 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2012-08-07 19:46:53 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_nokia_usb_modem_cdc_ecm_01009.Wdf [2012-08-07 19:46:36 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_nokia_usb_modem_cdc_acm_01009.Wdf [2012-08-07 19:46:34 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_nokia_usb_modem_ecm_enum_01009.Wdf [2012-08-07 19:45:51 | 000,001,135 | ---- | M] () -- C:\Users\Public\Desktop\Nokia Internet Modem.lnk [2012-07-18 13:17:44 | 000,640,749 | ---- | M] () -- C:\Users\Asia\Desktop\1.198.jpg [2012-07-10 16:02:25 | 000,002,277 | ---- | M] () -- C:\Users\Public\Desktop\WinZip.lnk [2012-07-05 22:06:30 | 000,772,544 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\npDeployJava1.dll [2012-07-05 22:06:20 | 000,687,544 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\deployJava1.dll [2012-07-02 18:17:15 | 000,002,246 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Przyspieszenie uruchomienia programu AutoCAD.lnk [2012-07-02 18:17:15 | 000,001,903 | ---- | M] () -- C:\Users\Public\Desktop\AutoCAD 2007 - Polski.lnk [2012-07-02 18:13:31 | 000,002,086 | ---- | M] () -- C:\Users\Public\Desktop\Autodesk DWF Viewer.lnk [2012-07-02 18:10:46 | 000,242,240 | ---- | M] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys [2012-06-26 22:38:29 | 000,000,404 | ---- | M] () -- C:\Windows\BRWMARK.INI [2012-06-17 17:36:31 | 000,001,008 | ---- | M] () -- C:\Users\Public\Desktop\TC PowerPack.lnk [2012-05-10 21:03:30 | 314,347,527 | ---- | M] () -- C:\Users\Asia\Desktop\Antoś;).MOV [2012-03-26 15:22:31 | 000,001,312 | ---- | M] () -- C:\Users\Asia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-09-18 08:32:13 | 000,000,963 | ---- | C] () -- C:\Users\Asia\Desktop\FreeCommander.lnk [2012-09-18 08:20:24 | 002,663,437 | ---- | C] () -- C:\Users\Asia\Desktop\fc_setup_.zip [2012-09-04 08:16:20 | 000,017,408 | ---- | C] () -- C:\Users\Asia\AppData\Local\WebpageIcons.db [2012-09-04 08:13:58 | 000,116,189 | ---- | C] () -- C:\Windows\System32\drivers\klin.dat [2012-09-04 08:13:58 | 000,098,168 | ---- | C] () -- C:\Windows\System32\drivers\klick.dat [2012-08-30 21:10:12 | 001,138,055 | ---- | C] () -- C:\Users\Asia\Desktop\mundur.pdf [2012-08-29 18:48:20 | 000,311,911 | ---- | C] () -- C:\Users\Asia\Desktop\bilety.pdf [2012-08-28 12:16:03 | 000,001,109 | ---- | C] () -- C:\Users\Asia\AppData\Roaming\5765.exe [2012-08-07 19:46:53 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_nokia_usb_modem_cdc_ecm_01009.Wdf [2012-08-07 19:46:36 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_nokia_usb_modem_cdc_acm_01009.Wdf [2012-08-07 19:46:34 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_nokia_usb_modem_ecm_enum_01009.Wdf [2012-08-07 19:45:51 | 000,001,135 | ---- | C] () -- C:\Users\Public\Desktop\Nokia Internet Modem.lnk [2012-07-18 12:23:58 | 000,640,749 | ---- | C] () -- C:\Users\Asia\Desktop\1.198.jpg [2012-07-10 16:02:25 | 000,002,277 | ---- | C] () -- C:\Users\Public\Desktop\WinZip.lnk [2012-07-02 18:17:15 | 000,002,246 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Przyspieszenie uruchomienia programu AutoCAD.lnk [2012-07-02 18:17:15 | 000,001,903 | ---- | C] () -- C:\Users\Public\Desktop\AutoCAD 2007 - Polski.lnk [2012-07-02 18:13:31 | 000,002,086 | ---- | C] () -- C:\Users\Public\Desktop\Autodesk DWF Viewer.lnk [2012-06-17 17:36:31 | 000,001,008 | ---- | C] () -- C:\Users\Public\Desktop\TC PowerPack.lnk [2012-05-12 22:45:28 | 314,347,527 | ---- | C] () -- C:\Users\Asia\Desktop\Antoś;).MOV [2012-03-26 15:22:31 | 000,001,312 | ---- | C] () -- C:\Users\Asia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk [2012-01-24 22:42:22 | 000,003,584 | ---- | C] () -- C:\Users\Asia\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-12-24 00:44:32 | 000,000,404 | ---- | C] () -- C:\Windows\BRWMARK.INI [2011-12-24 00:43:40 | 000,000,050 | ---- | C] () -- C:\Windows\System32\BRIDF10A.DAT [2011-11-17 16:52:03 | 000,011,832 | ---- | C] () -- C:\Windows\System32\drivers\AsUpIO.sys [2011-11-17 16:52:02 | 000,011,456 | ---- | C] () -- C:\Windows\System32\drivers\AsIO.sys [2011-11-17 16:51:18 | 000,224,680 | ---- | C] () -- C:\Windows\System32\AsusService.exe [2011-11-17 16:51:18 | 000,025,616 | ---- | C] () -- C:\Windows\AsAcpiSvrLang.ini [2011-11-17 16:49:02 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2011-11-17 16:45:36 | 000,028,967 | ---- | C] () -- C:\Windows\Ascd_log.ini [2011-11-17 16:33:24 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX0.dat [2011-11-17 16:28:28 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini [2011-11-17 16:28:27 | 000,022,636 | ---- | C] () -- C:\Windows\Ascd_tmp.ini [2011-11-17 16:28:27 | 000,010,296 | ---- | C] () -- C:\Windows\System32\drivers\ASUSHWIO.SYS [2011-11-17 16:05:39 | 000,002,888 | ---- | C] () -- C:\Windows\System32\atipblag.dat [2011-11-17 16:05:34 | 000,223,990 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat [2011-11-17 16:01:47 | 000,013,880 | ---- | C] ( ) -- C:\Windows\System32\drivers\kbfiltr.sys [2011-03-11 12:43:54 | 000,029,763 | ---- | C] () -- C:\Windows\System32\drivers\klopp.dat [color=#E56717]========== ZeroAccess Check ==========[/color] [2009-07-14 03:17:51 | 000,002,048 | -HS- | M] () -- C:\Windows\Installer\{bdb23022-5c80-8338-07c7-94b27bd41c87}\@ [2012-09-04 08:02:42 | 000,000,804 | ---- | M] () -- C:\Windows\Installer\{bdb23022-5c80-8338-07c7-94b27bd41c87}\L\00000004.@ [2012-09-04 09:14:49 | 000,001,284 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@ad.yieldmanager[1].txt [2012-09-04 09:05:00 | 000,000,102 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@adnetwork[1].txt [2012-09-04 09:14:49 | 000,000,403 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@adnxs[2].txt [2012-09-04 09:14:39 | 000,000,633 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@ads.adk2[1].txt [2012-09-04 09:14:51 | 000,000,146 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@hit.gemius[1].txt [2012-09-04 09:04:22 | 000,000,377 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@media6degrees[2].txt [2012-09-04 09:05:01 | 000,000,099 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@quantserve[1].txt [2012-09-04 09:14:45 | 000,000,326 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@www.fhserve[1].txt [2012-09-04 09:04:20 | 000,000,089 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\system@yahoo[1].txt [2012-09-03 18:21:18 | 000,002,048 | -HS- | M] () -- C:\Users\Asia\AppData\Local\{bdb23022-5c80-8338-07c7-94b27bd41c87}\@ [2009-07-14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini < End of report >