OTL logfile created on: 2012-10-25 22:54:20 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = D:\Pobrane Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 509,83 Mb Total Physical Memory | 174,23 Mb Available Physical Memory | 34,17% Memory free 1,23 Gb Paging File | 0,77 Gb Available in Paging File | 62,57% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 39,06 Gb Total Space | 32,62 Gb Free Space | 83,50% Space Free | Partition Type: NTFS Drive D: | 114,32 Gb Total Space | 81,10 Gb Free Space | 70,95% Space Free | Partition Type: NTFS Computer Name: WINDOWZ | User Name: Paweł | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-10-25 22:13:27 | 000,917,984 | ---- | M] (Mozilla Corporation) -- D:\Program Files\Mozilla Firefox\firefox.exe PRC - [2012-10-25 13:12:04 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Pobrane\OTL.exe PRC - [2012-10-10 14:22:32 | 003,116,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2013\avgui.exe PRC - [2012-10-02 03:32:58 | 000,193,568 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2013\avgwdsvc.exe PRC - [2009-11-19 12:43:58 | 001,592,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2009-09-23 16:45:50 | 001,287,176 | ---- | M] (Panda Security) -- C:\Program Files\Panda USB Vaccine\USBVaccine.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-10-12 13:55:51 | 000,049,152 | ---- | M] () -- C:\WINDOWS\assembly\GAC\CommandBar\1.1.0.0__f62fe54d9a592d72\CommandBar.dll MOD - [2012-10-12 13:55:50 | 000,126,976 | ---- | M] () -- C:\WINDOWS\assembly\GAC\Interop.SHDocVw\1.1.0.0__f62fe54d9a592d72\Interop.SHDocVw.dll MOD - [2012-10-12 13:55:50 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC\BandObjects\1.1.0.0__f62fe54d9a592d72\BandObjects.dll MOD - [2012-10-12 13:55:50 | 000,015,872 | ---- | M] () -- C:\WINDOWS\assembly\GAC\ZCommon\1.1.0.0__f62fe54d9a592d72\ZCommon.dll MOD - [2012-10-12 13:54:57 | 011,411,456 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\7c5bf3328bf5c24b881b0ebfeffc677b\mscorlib.ni.dll MOD - [2012-10-11 03:04:42 | 002,294,240 | ---- | M] () -- D:\Program Files\Mozilla Firefox\mozjs.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2012-10-25 22:18:06 | 000,115,168 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-10-25 22:16:45 | 000,131,072 | ---- | M] (Brio) [Disabled | Stopped] -- C:\Program Files\FolderSize\FolderSizeSvc.exe -- (FolderSize) SRV - [2012-10-25 22:16:44 | 000,071,680 | ---- | M] (zett42) [Disabled | Stopped] -- C:\Program Files\FlashFolder\FlashFolder.exe -- (FlashFolder) SRV - [2012-10-25 22:16:34 | 005,783,672 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- C:\Program Files\AVG\AVG2013\avgidsagent.exe -- (AVGIDSAgent) SRV - [2012-10-02 03:32:58 | 000,193,568 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2013\avgwdsvc.exe -- (avgwd) SRV - [2009-01-12 17:18:54 | 000,005,120 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Prio\prio_svc.exe -- (prio_svc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2012-10-25 12:15:46 | 000,040,776 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy) DRV - [2012-10-05 03:26:22 | 000,093,536 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86) DRV - [2012-10-02 03:30:38 | 000,159,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86) DRV - [2012-09-21 03:46:06 | 000,164,832 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix) DRV - [2012-09-21 03:46:00 | 000,177,376 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\avglogx.sys -- (Avglogx) DRV - [2012-09-21 03:45:54 | 000,019,936 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgidsshimx.sys -- (AVGIDSShim) DRV - [2012-09-21 03:45:52 | 000,055,008 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\avgidshx.sys -- (AVGIDSHX) DRV - [2012-09-14 03:05:20 | 000,035,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\avgrkx86.sys -- (Avgrkx86) DRV - [2012-09-13 03:11:20 | 000,177,504 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgidsdriverx.sys -- (AVGIDSDriver) DRV - [2012-06-19 16:54:20 | 006,141,584 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) DRV - [2010-02-11 09:38:10 | 003,565,056 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2009-11-28 01:26:05 | 000,069,168 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3112.sys -- (Si3112) DRV - [2009-11-28 01:26:03 | 000,217,128 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\Si3132r5.sys -- (Si3132r5) DRV - [2009-11-28 01:26:02 | 000,080,424 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3132.sys -- (Si3132) DRV - [2009-11-28 01:25:59 | 000,076,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3124.sys -- (Si3124) DRV - [2009-11-28 01:25:58 | 000,209,200 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\drivers\Si3114r5.sys -- (Si3114r5) DRV - [2009-11-18 07:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2009-11-18 07:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2008-04-13 23:05:40 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.windowz.pl IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.pl/search?q=%s IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.windowz.pl IE - HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.pl/search?q=%s IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.windowz.pl IE - HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.pl/search?q=%s IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.windowz.pl IE - HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.pl/search?q=%s IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86} IE - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "google.pl" FF - prefs.js..extensions.enabledAddons: foxyproxy@eric.h.jung:4.0.2 FF - prefs.js..network.proxy.backup.ftp: "217.98.20.195" FF - prefs.js..network.proxy.backup.ftp_port: 8080 FF - prefs.js..network.proxy.backup.socks: "217.98.20.195" FF - prefs.js..network.proxy.backup.socks_port: 8080 FF - prefs.js..network.proxy.backup.ssl: "217.98.20.195" FF - prefs.js..network.proxy.backup.ssl_port: 8080 FF - prefs.js..network.proxy.ftp: "217.98.20.195" FF - prefs.js..network.proxy.ftp_port: 8080 FF - prefs.js..network.proxy.http: "217.98.20.195" FF - prefs.js..network.proxy.http_port: 8080 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "217.98.20.195" FF - prefs.js..network.proxy.socks_port: 8080 FF - prefs.js..network.proxy.socks_version: 4 FF - prefs.js..network.proxy.ssl: "217.98.20.195" FF - prefs.js..network.proxy.ssl_port: 8080 FF - prefs.js..network.proxy.type: 0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.449: C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.1\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2012-10-12 14:10:58 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.1\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2012-10-12 14:11:07 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Extensions [2012-10-23 15:40:10 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Firefox\Profiles\ud174h5k.default\extensions [2012-10-14 14:43:31 | 000,000,000 | ---D | M] (FoxyProxy Standard) -- C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Firefox\Profiles\ud174h5k.default\extensions\foxyproxy@eric.h.jung [2012-10-13 13:52:01 | 000,054,388 | ---- | M] () (No name found) -- C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Firefox\Profiles\ud174h5k.default\extensions\jid0-LBYxx842Q2blTpOzH3KhAlOAL3Q@jetpack.xpi [2012-10-12 15:00:47 | 000,741,958 | ---- | M] () (No name found) -- C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Firefox\Profiles\ud174h5k.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PAWEĹ‚\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\UD174H5K.DEFAULT\EXTENSIONS\FOXYPROXY@ERIC.H.JUNG Hosts file not found O2 - BHO: (Loader Class) - {F880A4A8-C436-4AC4-AFD1-AA0BDC9552DD} - C:\WINDOWS\system32\FindeXer.dll (A Part of the LessCliX Suite by Alianyn) O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2013\avgui.exe (AVG Technologies CZ, s.r.o.) O4 - HKU\.DEFAULT..\Run: [LClock] C:\Program Files\LClock\LClock.exe File not found O4 - HKU\S-1-5-18..\Run: [LClock] C:\Program Files\LClock\LClock.exe File not found O4 - HKU\S-1-5-19..\Run: [LClock] C:\Program Files\LClock\LClock.exe File not found O4 - HKU\S-1-5-20..\Run: [LClock] C:\Program Files\LClock\LClock.exe File not found O4 - Startup: C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\del.exe () O4 - Startup: C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\run.lnk = C:\Program Files\WindowZ\Kreator post-instalacyjny\run.bat () O4 - Startup: C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\Transparent fx - lite.lnk = File not found O4 - Startup: C:\Documents and Settings\Default User\Menu Start\Programy\Autostart\Transparent fx - lite.lnk = File not found O4 - Startup: C:\Documents and Settings\Default User\Menu Start\Programy\Autostart\z.cmd () O4 - Startup: C:\Documents and Settings\Paweł\Menu Start\Programy\Autostart\Transparent fx - lite.lnk = File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRemoteRecursiveEvents = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuEjectPC = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogoff = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoInternetOpenWith = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSaveSettings = 0 O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2058B713-5B93-48A1-A498-4C6B53471456}: DhcpNameServer = 192.168.1.1 O20 - AppInit_DLLs: (prio.dll) - C:\Program Files\Prio\prio.dll (O&K Software) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UIHost - (%windir%\\system32\\LogonuiZ.exe) - C:\WINDOWS\\system32\\LogonuiZ.exe () O20 - HKU\S-1-5-21-1757981266-484763869-1801674531-1002 Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2012-10-12 13:43:53 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2013\avgrsx.exe /sync /restart) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-10-25 22:50:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Panda Security [2012-10-25 22:50:36 | 000,000,000 | ---D | C] -- C:\Program Files\Panda USB Vaccine [2012-10-25 22:50:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Panda Security [2012-10-25 15:30:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Daum [2012-10-25 15:30:05 | 000,000,000 | ---D | C] -- C:\Program Files\Daum [2012-10-25 15:28:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\7-Zip [2012-10-25 12:25:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\AVG2013 [2012-10-25 12:20:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\AVG [2012-10-25 12:20:30 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy [2012-10-25 12:19:03 | 000,000,000 | -H-D | C] -- C:\$AVG [2012-10-25 12:19:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG2013 [2012-10-25 12:17:59 | 000,000,000 | ---D | C] -- C:\Program Files\AVG [2012-10-25 12:13:54 | 000,040,776 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2012-10-23 22:19:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Avg2013 [2012-10-22 23:18:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\BitSpirit [2012-10-22 22:59:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Moje dokumenty\Downloads [2012-10-22 12:13:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Euro Truck Simulator [2012-10-22 12:13:09 | 000,000,000 | ---D | C] -- C:\Program Files\Euro Truck Simulator [2012-10-22 12:11:05 | 000,000,000 | ---D | C] -- C:\Program Files\v9Soft [2012-10-22 11:50:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Moje dokumenty\Euro Truck Simulator [2012-10-22 00:45:26 | 000,000,000 | ---D | C] -- C:\Program Files\m-r-software [2012-10-22 00:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\Aerosoft [2012-10-22 00:25:31 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip [2012-10-20 14:21:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\RELOADED [2012-10-20 14:17:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\DAEMON Tools Lite [2012-10-20 14:17:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2012-10-19 19:59:58 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Paweł\Recent [2012-10-19 19:46:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\TuneUp Software [2012-10-19 19:39:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\MFAData [2012-10-19 19:39:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2012-10-18 11:59:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Identities [2012-10-17 21:17:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\ApplicationHistory [2012-10-17 15:30:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Silverlight [2012-10-17 15:30:13 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight [2012-10-15 18:48:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Moje dokumenty\My Games [2012-10-14 23:49:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\NapiProjekt [2012-10-14 23:49:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\NapiProjekt [2012-10-13 16:04:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Malwarebytes [2012-10-13 16:04:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2012-10-13 14:42:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\EurekaLog [2012-10-13 13:14:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2012-10-13 10:19:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss [2012-10-12 15:45:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang [2012-10-12 15:43:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Tibia [2012-10-12 15:43:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Tibia [2012-10-12 15:36:42 | 000,020,992 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\System32\drivers\RTL8139.sys [2012-10-12 15:36:08 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\usbui.dll [2012-10-12 15:35:26 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka [2012-10-12 15:35:05 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer [2012-10-12 15:35:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2012-10-12 15:35:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines [2012-10-12 15:34:59 | 000,000,000 | ---D | C] -- C:\Program Files [2012-10-12 15:34:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared [2012-10-12 15:34:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files [2012-10-12 15:34:56 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru.dll [2012-10-12 15:34:49 | 000,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dgrpsetu.dll [2012-10-12 15:34:49 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll [2012-10-12 15:34:48 | 000,103,424 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\EqnClass.Dll [2012-10-12 15:34:48 | 000,085,532 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dgsetup.dll [2012-10-12 15:34:48 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll [2012-10-12 15:34:48 | 000,013,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WFWNET.DRV [2012-10-12 15:34:48 | 000,009,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VER.DLL [2012-10-12 15:34:48 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TIMER.DRV [2012-10-12 15:34:48 | 000,002,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VGA.DRV [2012-10-12 15:34:47 | 000,127,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MSVIDEO.DLL [2012-10-12 15:34:47 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLECLI.DLL [2012-10-12 15:34:47 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLESVR.DLL [2012-10-12 15:34:47 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TAPI.DLL [2012-10-12 15:34:47 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SHELL.DLL [2012-10-12 15:34:47 | 000,003,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SYSTEM.DRV [2012-10-12 15:34:47 | 000,002,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MOUSE.DRV [2012-10-12 15:34:47 | 000,001,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SOUND.DRV [2012-10-12 15:34:47 | 000,001,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMTASK.TSK [2012-10-12 15:34:46 | 000,109,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVIFILE.DLL [2012-10-12 15:34:46 | 000,073,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIAVI.DRV [2012-10-12 15:34:46 | 000,070,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVICAP.DLL [2012-10-12 15:34:46 | 000,033,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\COMMDLG.DLL [2012-10-12 15:34:46 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIWAVE.DRV [2012-10-12 15:34:46 | 000,025,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCISEQ.DRV [2012-10-12 15:34:46 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\TASKMAN.EXE [2012-10-12 15:34:46 | 000,009,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\LZEXPAND.DLL [2012-10-12 15:34:46 | 000,002,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\KEYBOARD.DRV [2012-10-12 15:34:45 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WINSPOOL.DRV [2012-10-12 15:34:45 | 000,069,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMSYSTEM.DLL [2012-10-12 15:34:45 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\batt.dll [2012-10-12 15:34:44 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\storprop.dll [2012-10-12 15:34:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start [2012-10-12 15:34:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty [2012-10-12 15:34:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony [2012-10-12 15:34:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione [2012-10-12 15:34:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Autostart [2012-10-12 15:34:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2 [2012-10-12 15:34:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot [2012-10-12 15:34:12 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft [2012-10-12 15:34:12 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji [2012-10-12 15:33:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings [2012-10-12 15:33:47 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2012-10-12 15:26:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files [2012-10-12 15:26:06 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts [2012-10-12 15:26:06 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Web [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\UMDF [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\system [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\security [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\PCHealth [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Network Diagnostic [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\L2Schemas [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\java [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\inf [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028 [2012-10-12 15:26:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025 [2012-10-12 15:09:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Ashampoo [2012-10-12 15:09:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Ashampoo [2012-10-12 15:05:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\WapSter [2012-10-12 15:04:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Menu Start\Programy\WapSter [2012-10-12 14:51:02 | 000,696,760 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-10-12 14:51:02 | 000,073,656 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-10-12 14:50:28 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Paweł\Moje dokumenty\Moje ikony [2012-10-12 14:49:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe [2012-10-12 14:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM [2012-10-12 14:41:51 | 000,146,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\portcls.sys [2012-10-12 14:41:51 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksproxy.ax [2012-10-12 14:41:51 | 000,060,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\drmk.sys [2012-10-12 14:41:51 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksuser.dll [2012-10-12 14:41:43 | 000,359,016 | ---- | C] (Realtek Semiconductor Crop.) -- C:\WINDOWS\vncutil.exe [2012-10-12 14:41:43 | 000,084,584 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE [2012-10-12 14:41:42 | 001,493,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RtlUpd.exe [2012-10-12 14:41:42 | 000,891,496 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RTSndMgr.CPL [2012-10-12 14:41:41 | 009,721,960 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTLCPL.EXE [2012-10-12 14:41:41 | 006,141,584 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\RtkHDAud.sys [2012-10-12 14:41:41 | 000,129,640 | ---- | C] (Realtek Semiconductor) -- C:\WINDOWS\RtkAudioService.exe [2012-10-12 14:41:41 | 000,065,640 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RtkCoInstIIXP.dll [2012-10-12 14:41:41 | 000,011,368 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RtkCoLDRXP.dll [2012-10-12 14:41:39 | 002,815,592 | ---- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\ALCWZRD.EXE [2012-10-12 14:41:39 | 002,180,712 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\MicCal.exe [2012-10-12 14:41:39 | 001,691,480 | ---- | C] (Creative) -- C:\WINDOWS\System32\drivers\Ambfilt.sys [2012-10-12 14:41:39 | 001,395,800 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\drivers\Monfilt.sys [2012-10-12 14:41:39 | 000,285,288 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\ALSNDMGR.CPL [2012-10-12 14:41:39 | 000,064,104 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\ALCMTR.EXE [2012-10-12 14:41:39 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2012-10-12 14:41:36 | 001,706,640 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RtlExUpd.dll [2012-10-12 14:32:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\FastStone [2012-10-12 14:31:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\FastStone Image Viewer [2012-10-12 14:26:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\ATI [2012-10-12 14:26:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\ATI [2012-10-12 14:26:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ATI [2012-10-12 14:25:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Catalyst Control Center [2012-10-12 14:24:17 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2012-10-12 14:24:17 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies [2012-10-12 14:24:03 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2012-10-12 14:23:42 | 000,000,000 | ---D | C] -- C:\Program Files\ATI [2012-10-12 14:23:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Gry [2012-10-12 14:23:03 | 000,000,000 | ---D | C] -- C:\Program Files\WinXP Gry [2012-10-12 14:22:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\WinRAR [2012-10-12 14:18:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution [2012-10-12 14:12:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Moje dokumenty\Pobieranie [2012-10-12 14:11:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Mozilla [2012-10-12 14:11:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla [2012-10-12 14:10:59 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2012-10-12 14:10:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Mozilla [2012-10-12 14:08:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Macromedia [2012-10-12 14:08:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Adobe [2012-10-12 14:07:45 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Paweł\PrivacIE [2012-10-12 14:06:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Xentient [2012-10-12 14:06:06 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2012-10-12 14:05:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Identities [2012-10-12 14:05:25 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Paweł\Moje dokumenty\Moja muzyka [2012-10-12 14:05:25 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information [2012-10-12 14:05:24 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Paweł\Moje dokumenty\Moje obrazy [2012-10-12 14:05:12 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Paweł\Ulubione [2012-10-12 14:05:12 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Paweł\Moje dokumenty [2012-10-12 14:05:12 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Microsoft [2012-10-12 14:05:12 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Paweł\SendTo [2012-10-12 14:05:12 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Paweł\Menu Start\Programy\Akcesoria [2012-10-12 14:05:12 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Paweł\IETldCache [2012-10-12 14:05:12 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Paweł\Cookies [2012-10-12 14:05:12 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne [2012-10-12 14:05:12 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Paweł\Szablony [2012-10-12 14:05:12 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Paweł\PrintHood [2012-10-12 14:05:12 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Paweł\NetHood [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\uTorrent [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Sun [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Pulpit [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Microsoft [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Menu Start [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Menu Start\Programy\Foxit Reader [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\FindeXer [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Finder Bar [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\Finder Bar [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Menu Start\Programy\Drive Space Indicator [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Menu Start\Programy\Defraggler [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Menu Start\Programy\CCleaner [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Menu Start\Programy\Autostart [2012-10-12 14:05:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Paweł\Dane aplikacji\AIMP [2012-10-12 14:04:02 | 002,637,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\logonuiZ.exe [2012-10-12 13:55:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit [2012-10-12 13:55:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Finder Bar [2012-10-12 13:55:56 | 000,000,000 | ---D | C] -- C:\Program Files\FlashFolder [2012-10-12 13:55:54 | 000,000,000 | ---D | C] -- C:\Program Files\FolderSize [2012-10-12 13:55:51 | 000,000,000 | ---D | C] -- C:\Program Files\Command Prompt Explorer Bar [2012-10-12 13:54:21 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC [2012-10-12 13:54:14 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2012-10-12 13:54:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2012-10-12 13:54:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [2012-10-12 13:54:02 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2012-10-12 13:54:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2012-10-12 13:52:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\Gry [2012-10-12 13:52:06 | 000,150,256 | ---- | C] (Moon Software) -- C:\WINDOWS\System32\UrlFileShellExt.dll [2012-10-12 13:52:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Unlocker [2012-10-12 13:52:05 | 001,562,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spider.exe [2012-10-12 13:52:05 | 000,880,640 | ---- | C] (Xentient) -- C:\WINDOWS\System32\thumbs.dll [2012-10-12 13:52:05 | 000,069,632 | ---- | C] (Villain) -- C:\WINDOWS\System32\TaskbarForms.exe [2012-10-12 13:52:04 | 000,053,248 | ---- | C] (Quizo) -- C:\WINDOWS\System32\QTFileTools.dll [2012-10-12 13:52:04 | 000,036,864 | ---- | C] (Quizo) -- C:\WINDOWS\System32\QTViewModeButton.dll [2012-10-12 13:52:04 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\phototoys.dll [2012-10-12 13:52:04 | 000,020,480 | ---- | C] (Quizo) -- C:\WINDOWS\System32\OptionButton.dll [2012-10-12 13:52:03 | 000,488,448 | ---- | C] (MiTeC) -- C:\WINDOWS\System32\MIPSE.dll [2012-10-12 13:52:03 | 000,414,208 | ---- | C] (MiTeC) -- C:\WINDOWS\System32\MPEISE.dll [2012-10-12 13:52:02 | 000,387,584 | ---- | C] (MiTeC) -- C:\WINDOWS\System32\MAISE.dll [2012-10-12 13:52:02 | 000,016,792 | ---- | C] (NTWind Software) -- C:\WINDOWS\System32\hstart.exe [2012-10-12 13:52:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\locale [2012-10-12 13:52:01 | 000,185,856 | ---- | C] (A Part of the LessCliX Suite by Alianyn) -- C:\WINDOWS\System32\FindeXer.dll [2012-10-12 13:52:01 | 000,146,672 | ---- | C] (Moon Software) -- C:\WINDOWS\System32\FolderBackgroundShellExt.dll [2012-10-12 13:52:00 | 001,312,256 | ---- | C] (Softpointer Inc) -- C:\WINDOWS\System32\AudioShellExt.dll [2012-10-12 13:52:00 | 000,609,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comctl32.ocx [2012-10-12 13:52:00 | 000,151,552 | ---- | C] (Minimalist) -- C:\WINDOWS\System32\BCToolbar.dll [2012-10-12 13:52:00 | 000,150,256 | ---- | C] (Moon Software) -- C:\WINDOWS\System32\AnyFileShellExt.dll [2012-10-12 13:52:00 | 000,036,864 | ---- | C] (Quizo) -- C:\WINDOWS\System32\CreateNewItemButton.dll [2012-10-12 13:52:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\books [2012-10-12 13:51:52 | 000,000,000 | ---D | C] -- C:\Program Files\AeroSnap [2012-10-12 13:51:52 | 000,000,000 | ---D | C] -- C:\Program Files\Aero shake [2012-10-12 13:51:51 | 000,000,000 | ---D | C] -- C:\Program Files\AbiSuite2 [2012-10-12 13:51:50 | 000,000,000 | ---D | C] -- C:\Program Files\Zapodaj Uploader [2012-10-12 13:51:49 | 000,000,000 | ---D | C] -- C:\Program Files\WinFlip [2012-10-12 13:51:37 | 000,000,000 | ---D | C] -- C:\Program Files\WindowZ [2012-10-12 13:51:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinDirStat [2012-10-12 13:51:37 | 000,000,000 | ---D | C] -- C:\Program Files\ViGlance OneStep [2012-10-12 13:51:36 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2012-10-12 13:51:34 | 000,000,000 | ---D | C] -- C:\Program Files\TrueTransparency [2012-10-12 13:51:33 | 000,000,000 | ---D | C] -- C:\Program Files\Thumbnail Resize [2012-10-12 13:51:33 | 000,000,000 | ---D | C] -- C:\Program Files\Taskix [2012-10-12 13:51:33 | 000,000,000 | ---D | C] -- C:\Program Files\TaskbarEx [2012-10-12 13:51:32 | 000,000,000 | ---D | C] -- C:\Program Files\SubEdit-Player [2012-10-12 13:51:30 | 000,000,000 | ---D | C] -- C:\Program Files\Stack [2012-10-12 13:51:30 | 000,000,000 | ---D | C] -- C:\Program Files\SpiritPyre Extensions [2012-10-12 13:51:28 | 000,000,000 | ---D | C] -- C:\Program Files\shutoffxp [2012-10-12 13:51:28 | 000,000,000 | ---D | C] -- C:\Program Files\Shellka [2012-10-12 13:51:25 | 000,000,000 | ---D | C] -- C:\Program Files\RightClick [2012-10-12 13:51:25 | 000,000,000 | ---D | C] -- C:\Program Files\Q-Dir [2012-10-12 13:51:25 | 000,000,000 | ---D | C] -- C:\Program Files\QDAcces [2012-10-12 13:51:24 | 000,000,000 | ---D | C] -- C:\Program Files\PNotes [2012-10-12 13:51:23 | 000,000,000 | ---D | C] -- C:\Program Files\Placesbar Constructor [2012-10-12 13:51:23 | 000,000,000 | ---D | C] -- C:\Program Files\Perlovga Removal Tool [2012-10-12 13:51:19 | 000,000,000 | ---D | C] -- C:\Program Files\OxelonMedia [2012-10-12 13:51:19 | 000,000,000 | ---D | C] -- C:\Program Files\MimeTeXeditor [2012-10-12 13:51:18 | 000,000,000 | ---D | C] -- C:\Program Files\MaZZicK [2012-10-12 13:51:15 | 000,000,000 | ---D | C] -- C:\Program Files\LogonZ Designer [2012-10-12 13:51:14 | 000,000,000 | ---D | C] -- C:\Program Files\LaunchTab [2012-10-12 13:51:07 | 000,000,000 | ---D | C] -- C:\Program Files\Ikony paska narzędzi [2012-10-12 13:50:58 | 000,000,000 | ---D | C] -- C:\Program Files\IconZ [2012-10-12 13:50:57 | 000,000,000 | ---D | C] -- C:\Program Files\IconViewer [2012-10-12 13:50:57 | 000,000,000 | ---D | C] -- C:\Program Files\Google Hacks [2012-10-12 13:50:56 | 000,000,000 | ---D | C] -- C:\Program Files\GG Lite [2012-10-12 13:50:50 | 000,000,000 | ---D | C] -- C:\Program Files\FreeRapiD-0.82 [2012-10-12 13:50:46 | 000,000,000 | ---D | C] -- C:\Program Files\Foxit Reader [2012-10-12 13:50:46 | 000,000,000 | ---D | C] -- C:\Program Files\Fadebar [2012-10-12 13:50:46 | 000,000,000 | ---D | C] -- C:\Program Files\Everything Search Engine [2012-10-12 13:50:46 | 000,000,000 | ---D | C] -- C:\Program Files\EdgeSwap [2012-10-12 13:50:43 | 000,000,000 | ---D | C] -- C:\Program Files\Drive Space Indicator [2012-10-12 13:50:43 | 000,000,000 | ---D | C] -- C:\Program Files\DIPS [2012-10-12 13:50:43 | 000,000,000 | ---D | C] -- C:\Program Files\DesktopListViewv1.0 [2012-10-12 13:50:43 | 000,000,000 | ---D | C] -- C:\Program Files\Cymes Desktop Changer 1.7 [2012-10-12 13:50:43 | 000,000,000 | ---D | C] -- C:\Program Files\Contextaware [2012-10-12 13:50:42 | 000,000,000 | ---D | C] -- C:\Program Files\Console [2012-10-12 13:50:42 | 000,000,000 | ---D | C] -- C:\Program Files\Blue Onion Software [2012-10-12 13:50:41 | 000,000,000 | ---D | C] -- C:\Program Files\Aqua Dock [2012-10-12 13:50:39 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group [2012-10-12 13:50:36 | 000,000,000 | ---D | C] -- C:\Program Files\VPX.PL Uploader [2012-10-12 13:50:34 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2012-10-12 13:50:32 | 000,000,000 | ---D | C] -- C:\Program Files\Switch Off [2012-10-12 13:50:30 | 000,000,000 | ---D | C] -- C:\Program Files\StyleFolder [2012-10-12 13:50:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe [2012-10-12 13:50:15 | 000,000,000 | ---D | C] -- C:\Program Files\LClock [2012-10-12 13:50:14 | 000,000,000 | ---D | C] -- C:\Program Files\Quizo [2012-10-12 13:50:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\QT Lite [2012-10-12 13:50:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Apple Computer [2012-10-12 13:49:57 | 000,094,208 | ---- | C] (Apple Inc.) -- C:\WINDOWS\System32\QuickTimeVR.qtx [2012-10-12 13:49:57 | 000,069,632 | ---- | C] (Apple Inc.) -- C:\WINDOWS\System32\QuickTime.qts [2012-10-12 13:49:43 | 000,000,000 | ---D | C] -- C:\Program Files\QT Lite [2012-10-12 13:49:41 | 000,000,000 | ---D | C] -- C:\Program Files\Prio [2012-10-12 13:49:34 | 000,000,000 | ---D | C] -- C:\Program Files\System [2012-10-12 13:49:28 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView [2012-10-12 13:49:18 | 000,000,000 | ---D | C] -- C:\Program Files\Defraggler [2012-10-12 13:49:04 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2012-10-12 13:49:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\AIMP2 [2012-10-12 13:49:00 | 000,000,000 | ---D | C] -- C:\Program Files\AIMP2 [2012-10-12 13:48:52 | 000,000,000 | ---D | C] -- C:\Program Files\TrueCrypt [2012-10-12 13:48:31 | 000,000,000 | ---D | C] -- C:\Program Files\AbiWord [2012-10-12 13:48:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\K-Lite Codec Pack [2012-10-12 13:48:09 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll [2012-10-12 13:48:09 | 000,185,920 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\rmoc3260.dll [2012-10-12 13:48:09 | 000,006,656 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5016.dll [2012-10-12 13:48:09 | 000,005,632 | ---- | C] (RealNetworks, Inc.) -- C:\WINDOWS\System32\pndx5032.dll [2012-10-12 13:48:04 | 000,839,680 | ---- | C] (http://www.mp3dev.org/) -- C:\WINDOWS\System32\lameACM.acm [2012-10-12 13:48:03 | 000,118,784 | ---- | C] (fccHandler) -- C:\WINDOWS\System32\ac3acm.acm [2012-10-12 13:48:01 | 000,217,088 | ---- | C] (www.helixcommunity.org) -- C:\WINDOWS\System32\yv12vfw.dll [2012-10-12 13:47:58 | 000,090,112 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\dpl100.dll [2012-10-12 13:47:55 | 000,685,056 | ---- | C] (DivX, Inc.) -- C:\WINDOWS\System32\divx.dll [2012-10-12 13:47:46 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack [2012-10-12 13:47:38 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft [2012-10-12 13:47:35 | 000,411,368 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll [2012-10-12 13:47:35 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe [2012-10-12 13:47:35 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe [2012-10-12 13:47:35 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe [2012-10-12 13:47:35 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl [2012-10-12 13:47:26 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2012-10-12 13:44:29 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly [2012-10-12 13:44:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET [2012-10-12 13:44:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTemp [2012-10-12 13:43:04 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mapi32.dll [2012-10-12 13:43:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dllcache [2012-10-12 13:42:33 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM [2012-10-12 13:42:17 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy [2012-10-12 13:42:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online [2012-10-12 13:41:42 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\acctres.dll [2012-10-12 13:41:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services [2012-10-12 13:41:37 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icfgnt5.dll [2012-10-12 13:41:37 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks [2012-10-12 13:41:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap [2012-10-12 13:41:26 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qmgrprxy.dll [2012-10-12 13:41:26 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx2.dll [2012-10-12 13:41:26 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx4.dll [2012-10-12 13:41:26 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx3.dll [2012-10-12 13:41:23 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fltMc.exe [2012-10-12 13:41:22 | 000,520,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\srrstr.dll [2012-10-12 13:41:22 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoert2.dll [2012-10-12 13:41:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore [2012-10-12 13:41:21 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoeacct.dll [2012-10-12 13:41:20 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetres.dll [2012-10-12 13:41:16 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mstinit.exe [2012-10-12 13:41:16 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express [2012-10-12 13:41:15 | 000,278,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcfg.dll [2012-10-12 13:41:15 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\isign32.dll [2012-10-12 13:41:15 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwdial.dll [2012-10-12 13:41:15 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwphbk.dll [2012-10-12 13:41:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System [2012-10-12 13:41:03 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer [2012-10-12 13:40:23 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications [2012-10-12 13:40:18 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Narzędzia administracyjne [2012-10-12 13:40:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration [2012-10-12 13:40:05 | 000,774,144 | ---- | C] (3Planesoft) -- C:\WINDOWS\System32\Deep Space 3D Screensaver.scr [2012-10-12 13:39:54 | 012,360,192 | ---- | C] (3Planesoft) -- C:\WINDOWS\System32\Deep Space 3D Screensaver.exe [2012-10-12 13:39:54 | 000,848,896 | ---- | C] (3Planesoft) -- C:\WINDOWS\System32\Mechanical Clock 3D Screensaver.scr [2012-10-12 13:39:51 | 002,529,280 | ---- | C] (3Planesoft) -- C:\WINDOWS\System32\Mechanical Clock 3D Screensaver.exe [2012-10-12 13:39:50 | 000,841,728 | ---- | C] (3Planesoft) -- C:\WINDOWS\System32\Koi Fish 3D Screensaver.scr [2012-10-12 13:39:41 | 010,203,136 | ---- | C] (3Planesoft) -- C:\WINDOWS\System32\Koi Fish 3D Screensaver.exe [2012-10-12 13:39:35 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Connect 2 [2012-10-12 13:39:34 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndvol32.exe [2012-10-12 13:39:34 | 000,044,544 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hticons.dll [2012-10-12 13:39:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\write.exe [2012-10-12 13:39:34 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player [2012-10-12 13:39:33 | 000,231,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avtapi.dll [2012-10-12 13:39:33 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avwav.dll [2012-10-12 13:39:33 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winchat.exe [2012-10-12 13:39:33 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avmeter.dll [2012-10-12 13:39:30 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\getuname.dll [2012-10-12 13:39:30 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\charmap.exe [2012-10-12 13:39:27 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsshutdn.exe [2012-10-12 13:39:27 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tskill.exe [2012-10-12 13:39:27 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\reset.exe [2012-10-12 13:39:26 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\regini.exe [2012-10-12 13:39:26 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qwinsta.exe [2012-10-12 13:39:26 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rwinsta.exe [2012-10-12 13:39:26 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsdiscon.exe [2012-10-12 13:39:26 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscon.exe [2012-10-12 13:39:26 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\shadow.exe [2012-10-12 13:39:26 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpcfgex.dll [2012-10-12 13:39:25 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msg.exe [2012-10-12 13:39:25 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qappsrv.exe [2012-10-12 13:39:25 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\logoff.exe [2012-10-12 13:39:25 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cdmodem.dll [2012-10-12 13:39:14 | 000,371,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\accwiz.exe [2012-10-12 13:39:14 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndrec32.exe [2012-10-12 13:39:14 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\access.cpl [2012-10-12 13:39:13 | 000,351,744 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hypertrm.dll [2012-10-12 13:39:13 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mplay32.exe [2012-10-12 13:39:12 | 000,456,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mspaint.exe [2012-10-12 13:39:12 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT [2012-10-12 13:39:11 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscfgwmi.dll [2012-10-12 13:39:11 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsgqec.dll [2012-10-12 13:39:10 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rhttpaa.dll [2012-10-12 13:39:10 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\aaclient.dll [2012-10-12 13:39:08 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdchost.dll [2012-10-12 13:39:08 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdshost.exe [2012-10-12 13:39:08 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdsaddin.exe [2012-10-12 13:39:07 | 000,087,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpwsx.dll [2012-10-12 13:39:07 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpclip.exe [2012-10-12 13:39:07 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qprocess.exe [2012-10-12 13:39:07 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpsnd.dll [2012-10-12 13:39:06 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcprx.dll [2012-10-12 13:39:06 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcuiu.dll [2012-10-12 13:39:06 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cfgbkend.dll [2012-10-12 13:39:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc [2012-10-12 13:39:05 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtctm.dll [2012-10-12 13:39:05 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtclog.dll [2012-10-12 13:39:05 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xolehlp.dll [2012-10-12 13:39:04 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxlegih.dll [2012-10-12 13:39:04 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxdm.dll [2012-10-12 13:39:04 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dcomcnfg.exe [2012-10-12 13:39:04 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxex.dll [2012-10-12 13:39:03 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clbcatex.dll [2012-10-12 13:39:03 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comrepl.dll [2012-10-12 13:39:03 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvps.dll [2012-10-12 13:39:03 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\stclient.dll [2012-10-12 13:39:03 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comaddin.dll [2012-10-12 13:39:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com [2012-10-12 13:39:01 | 000,539,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comuid.dll [2012-10-12 13:39:01 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsnap.dll [2012-10-12 13:38:50 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\servdeps.dll [2012-10-12 13:38:49 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cmprops.dll [2012-10-12 13:38:49 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\licwmi.dll [2012-10-12 13:38:49 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmfutil.dll [2012-10-12 13:38:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Akcesoria [2012-10-05 03:26:22 | 000,093,536 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgmfx86.sys [2012-10-02 03:30:38 | 000,159,712 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgldx86.sys [1 C:\Documents and Settings\Paweł\*.tmp files -> C:\Documents and Settings\Paweł\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-10-25 22:44:18 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2012-10-25 22:44:15 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-10-25 22:43:13 | 001,572,864 | -H-- | M] () -- C:\Documents and Settings\Paweł\NTUSER.DAT [2012-10-25 22:43:13 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Paweł\ntuser.ini [2012-10-25 22:40:31 | 000,031,838 | ---- | M] () -- C:\Documents and Settings\Paweł\Pulpit\sality killer.JPG [2012-10-25 22:27:34 | 000,000,241 | ---- | M] () -- C:\WINDOWS\system.ini [2012-10-25 22:19:47 | 000,910,336 | ---- | M] () -- C:\WINDOWS\System32\WinSit.exe [2012-10-25 22:19:37 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\reg.exe [2012-10-25 22:19:37 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regsvr32.exe [2012-10-25 22:19:33 | 000,456,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mspaint.exe [2012-10-25 22:19:32 | 000,193,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msconfig.exe [2012-10-25 22:19:31 | 001,414,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mmc.exe [2012-10-25 22:19:14 | 000,400,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cmd.exe [2012-10-25 14:51:27 | 000,000,802 | ---- | M] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121025_145058.reg [2012-10-25 14:50:43 | 000,127,236 | ---- | M] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121025_145038.reg [2012-10-25 12:48:18 | 000,455,306 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-10-25 12:48:18 | 000,398,690 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-10-25 12:48:18 | 000,077,814 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-10-25 12:48:18 | 000,061,210 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-10-25 12:48:17 | 001,003,792 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2012-10-25 12:34:45 | 000,000,041 | ---- | M] () -- C:\WINDOWS\wininit.ini [2012-10-25 12:23:44 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\Penx.dat [2012-10-25 12:15:46 | 000,040,776 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2012-10-25 12:14:37 | 000,000,507 | ---- | M] () -- C:\WINDOWS\win.ini [2012-10-25 12:14:37 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2012-10-25 12:14:05 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\Xpen.dat [2012-10-22 10:15:24 | 000,002,184 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-10-21 21:24:29 | 000,000,036 | ---- | M] () -- C:\WINDOWS\avgui.INI [2012-10-20 20:49:37 | 000,001,297 | ---- | M] () -- C:\Documents and Settings\Paweł\Moje dokumenty\Zestaw.rtf [2012-10-20 18:58:38 | 000,000,844 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\backup_hosts [2012-10-19 20:03:02 | 000,014,658 | ---- | M] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121019_200258.reg [2012-10-18 10:37:24 | 000,097,456 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-10-17 21:17:44 | 000,000,130 | ---- | M] () -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2012-10-17 21:06:02 | 000,011,704 | ---- | M] () -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2012-10-17 21:03:46 | 000,000,554 | ---- | M] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121017_210345.reg [2012-10-17 21:03:34 | 000,153,256 | ---- | M] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121017_210331.reg [2012-10-16 17:37:55 | 000,008,554 | ---- | M] () -- C:\Documents and Settings\Paweł\Moje dokumenty\TibiaRP.com.gif [2012-10-13 13:34:55 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2012-10-12 15:45:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav [2012-10-12 15:45:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav [2012-10-12 15:35:09 | 000,004,444 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF [2012-10-12 14:53:41 | 000,001,258 | ---- | M] () -- C:\Documents and Settings\Paweł\Pulpit\Filmy.lnk [2012-10-12 14:53:33 | 000,001,277 | ---- | M] () -- C:\Documents and Settings\Paweł\Pulpit\Muzyka.lnk [2012-10-12 14:53:13 | 000,001,284 | ---- | M] () -- C:\Documents and Settings\Paweł\Pulpit\Pobrane.lnk [2012-10-12 14:51:02 | 000,696,760 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-10-12 14:51:02 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-10-12 14:26:33 | 000,000,000 | ---- | M] () -- C:\WINDOWS\ativpsrm.bin [2012-10-12 14:05:39 | 000,001,474 | ---- | M] () -- C:\Documents and Settings\Paweł\Menu Start\Programy\Autostart\Transparent fx - lite.lnk [2012-10-12 14:04:12 | 000,000,315 | ---- | M] () -- C:\WINDOWS\System32\ResHacker.ini [2012-10-12 13:53:19 | 000,001,314 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf [2012-10-12 13:50:29 | 000,053,812 | ---- | M] () -- C:\WINDOWS\uninst-vj.exe [2012-10-12 13:50:24 | 000,082,898 | ---- | M] () -- C:\WINDOWS\uninstall.exe [2012-10-12 13:50:24 | 000,001,958 | ---- | M] () -- C:\WINDOWS\uninstall.ini [2012-10-12 13:47:28 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll [2012-10-12 13:47:28 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe [2012-10-12 13:47:28 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe [2012-10-12 13:47:28 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe [2012-10-12 13:47:28 | 000,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl [2012-10-12 13:43:53 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2012-10-12 13:43:53 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2012-10-12 13:43:53 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini [2012-10-12 13:43:53 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2012-10-12 13:43:53 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2012-10-12 13:43:45 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2012-10-12 13:43:45 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2012-10-12 13:43:43 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx [2012-10-12 13:43:04 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI [2012-10-12 13:42:21 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2012-10-12 13:42:21 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2012-10-12 13:40:31 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat [2012-10-12 13:40:22 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini [2012-10-12 13:40:22 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini [2012-10-05 03:26:22 | 000,093,536 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgmfx86.sys [2012-10-02 03:30:38 | 000,159,712 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\WINDOWS\System32\drivers\avgldx86.sys [1 C:\Documents and Settings\Paweł\*.tmp files -> C:\Documents and Settings\Paweł\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-10-25 22:40:31 | 000,031,838 | ---- | C] () -- C:\Documents and Settings\Paweł\Pulpit\sality killer.JPG [2012-10-25 18:40:15 | 000,000,844 | ---- | C] () -- C:\WINDOWS\System32\drivers\etc\backup_hosts [2012-10-25 14:50:58 | 000,000,802 | ---- | C] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121025_145058.reg [2012-10-25 14:50:40 | 000,127,236 | ---- | C] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121025_145038.reg [2012-10-25 12:23:44 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\Penx.dat [2012-10-25 12:14:05 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\Xpen.dat [2012-10-25 12:11:56 | 000,000,041 | ---- | C] () -- C:\WINDOWS\wininit.ini [2012-10-21 21:24:29 | 000,000,036 | ---- | C] () -- C:\WINDOWS\avgui.INI [2012-10-19 20:03:01 | 000,014,658 | ---- | C] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121019_200258.reg [2012-10-19 13:26:59 | 000,001,297 | ---- | C] () -- C:\Documents and Settings\Paweł\Moje dokumenty\Zestaw.rtf [2012-10-17 21:17:44 | 000,000,130 | ---- | C] () -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2012-10-17 21:03:46 | 000,000,554 | ---- | C] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121017_210345.reg [2012-10-17 21:03:32 | 000,153,256 | ---- | C] () -- C:\Documents and Settings\Paweł\Moje dokumenty\cc_20121017_210331.reg [2012-10-16 17:37:54 | 000,008,554 | ---- | C] () -- C:\Documents and Settings\Paweł\Moje dokumenty\TibiaRP.com.gif [2012-10-12 15:45:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav [2012-10-12 15:45:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav [2012-10-12 15:35:09 | 000,004,444 | ---- | C] () -- C:\WINDOWS\System32\pid.PNF [2012-10-12 15:35:06 | 001,003,792 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2012-10-12 15:35:05 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2012-10-12 15:34:58 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls [2012-10-12 15:34:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls [2012-10-12 15:34:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls [2012-10-12 15:34:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls [2012-10-12 15:34:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS [2012-10-12 15:34:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS [2012-10-12 15:34:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls [2012-10-12 15:34:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls [2012-10-12 15:34:55 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls [2012-10-12 15:34:55 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls [2012-10-12 15:34:55 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls [2012-10-12 15:34:55 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls [2012-10-12 15:34:55 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls [2012-10-12 15:34:55 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS [2012-10-12 15:34:55 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls [2012-10-12 15:34:51 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls [2012-10-12 15:34:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls [2012-10-12 15:34:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls [2012-10-12 15:34:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls [2012-10-12 15:34:45 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT [2012-10-12 15:34:44 | 000,792,576 | ---- | C] () -- C:\WINDOWS\NOTEPAD.EXE [2012-10-12 15:33:46 | 000,097,456 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-10-12 15:33:12 | 000,000,211 | -HS- | C] () -- C:\boot.ini [2012-10-12 15:33:10 | 000,001,314 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf [2012-10-12 14:42:51 | 000,001,284 | ---- | C] () -- C:\Documents and Settings\Paweł\Pulpit\Pobrane.lnk [2012-10-12 14:42:50 | 000,001,277 | ---- | C] () -- C:\Documents and Settings\Paweł\Pulpit\Muzyka.lnk [2012-10-12 14:42:49 | 000,001,258 | ---- | C] () -- C:\Documents and Settings\Paweł\Pulpit\Filmy.lnk [2012-10-12 14:41:40 | 000,025,548 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT [2012-10-12 14:26:33 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin [2012-10-12 14:24:41 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe [2012-10-12 14:10:59 | 000,000,606 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk [2012-10-12 14:06:05 | 000,011,704 | ---- | C] () -- C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2012-10-12 14:05:35 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\Paweł\Menu Start\Programy\Internet Explorer.lnk [2012-10-12 14:05:28 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Paweł\Menu Start\Programy\Outlook Express.lnk [2012-10-12 14:05:17 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Paweł\ntuser.ini [2012-10-12 14:05:14 | 000,000,026 | ---- | C] () -- C:\Documents and Settings\Paweł\Dane aplikacji\prio.ini [2012-10-12 14:05:13 | 000,001,474 | ---- | C] () -- C:\Documents and Settings\Paweł\Menu Start\Programy\Autostart\Transparent fx - lite.lnk [2012-10-12 14:05:13 | 000,000,788 | ---- | C] () -- C:\Documents and Settings\Paweł\Menu Start\Programy\Windows Media Player.lnk [2012-10-12 14:05:12 | 001,572,864 | -H-- | C] () -- C:\Documents and Settings\Paweł\NTUSER.DAT [2012-10-12 14:04:11 | 000,000,315 | ---- | C] () -- C:\WINDOWS\System32\ResHacker.ini [2012-10-12 14:03:38 | 000,000,916 | ---- | C] () -- C:\WINDOWS\System32\subfolderoff.reg [2012-10-12 14:03:38 | 000,000,910 | ---- | C] () -- C:\WINDOWS\System32\subfolderon.reg [2012-10-12 13:54:05 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\tasks\SA.DAT [2012-10-12 13:53:10 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2012-10-12 13:52:25 | 000,025,780 | ---- | C] () -- C:\WINDOWS\Windowz.png [2012-10-12 13:52:25 | 000,007,690 | ---- | C] () -- C:\WINDOWS\Lng_QTTabBar_Polish.xml [2012-10-12 13:52:25 | 000,000,042 | ---- | C] () -- C:\WINDOWS\labelsoff.cmd [2012-10-12 13:52:25 | 000,000,039 | ---- | C] () -- C:\WINDOWS\labelson.cmd [2012-10-12 13:52:25 | 000,000,026 | ---- | C] () -- C:\WINDOWS\prio.ini [2012-10-12 13:52:24 | 000,483,328 | ---- | C] () -- C:\WINDOWS\Helios.scr [2012-10-12 13:52:24 | 000,348,160 | ---- | C] () -- C:\WINDOWS\labels.dll [2012-10-12 13:52:06 | 000,000,401 | ---- | C] () -- C:\WINDOWS\System32\y.cmd [2012-10-12 13:52:06 | 000,000,066 | ---- | C] () -- C:\WINDOWS\System32\undock.vbs [2012-10-12 13:52:06 | 000,000,045 | ---- | C] () -- C:\WINDOWS\System32\uninstall.bat [2012-10-12 13:52:06 | 000,000,034 | ---- | C] () -- C:\WINDOWS\System32\UrlFileOff.bat [2012-10-12 13:52:06 | 000,000,031 | ---- | C] () -- C:\WINDOWS\System32\UrlFileOn.bat [2012-10-12 13:52:06 | 000,000,028 | ---- | C] () -- C:\WINDOWS\System32\ToolbarOff.bat [2012-10-12 13:52:06 | 000,000,027 | ---- | C] () -- C:\WINDOWS\System32\Unregister.bat [2012-10-12 13:52:06 | 000,000,025 | ---- | C] () -- C:\WINDOWS\System32\ToolbarOn.bat [2012-10-12 13:52:05 | 000,000,582 | ---- | C] () -- C:\WINDOWS\System32\TaskbarForms.exe.manifest [2012-10-12 13:52:05 | 000,000,055 | ---- | C] () -- C:\WINDOWS\System32\subfolderoff.cmd [2012-10-12 13:52:05 | 000,000,051 | ---- | C] () -- C:\WINDOWS\System32\subfolderon.cmd [2012-10-12 13:52:04 | 001,026,560 | ---- | C] () -- C:\WINDOWS\System32\ResHacker.exe [2012-10-12 13:52:04 | 000,131,072 | ---- | C] () -- C:\WINDOWS\System32\ql.exe [2012-10-12 13:52:04 | 000,104,960 | ---- | C] () -- C:\WINDOWS\System32\opensub.dll [2012-10-12 13:52:04 | 000,003,241 | ---- | C] () -- C:\WINDOWS\System32\SendToQuickLaunch.vbs [2012-10-12 13:52:04 | 000,002,362 | ---- | C] () -- C:\WINDOWS\System32\opty.vbs [2012-10-12 13:52:04 | 000,000,454 | ---- | C] () -- C:\WINDOWS\System32\qlon.vbs [2012-10-12 13:52:04 | 000,000,454 | ---- | C] () -- C:\WINDOWS\System32\qloff.vbs [2012-10-12 13:52:04 | 000,000,034 | ---- | C] () -- C:\WINDOWS\System32\notatkaoff.bat [2012-10-12 13:52:04 | 000,000,031 | ---- | C] () -- C:\WINDOWS\System32\notatkaon.bat [2012-10-12 13:52:04 | 000,000,028 | ---- | C] () -- C:\WINDOWS\System32\optymalizacja.cmd [2012-10-12 13:52:04 | 000,000,021 | ---- | C] () -- C:\WINDOWS\System32\Register.bat [2012-10-12 13:52:03 | 000,000,025 | ---- | C] () -- C:\WINDOWS\System32\MPEISEoff.bat [2012-10-12 13:52:03 | 000,000,024 | ---- | C] () -- C:\WINDOWS\System32\MIPSEoff.bat [2012-10-12 13:52:03 | 000,000,024 | ---- | C] () -- C:\WINDOWS\System32\MAISEoff.bat [2012-10-12 13:52:03 | 000,000,022 | ---- | C] () -- C:\WINDOWS\System32\MPEISEon.bat [2012-10-12 13:52:03 | 000,000,021 | ---- | C] () -- C:\WINDOWS\System32\MIPSEon.bat [2012-10-12 13:52:03 | 000,000,021 | ---- | C] () -- C:\WINDOWS\System32\MAISEon.bat [2012-10-12 13:52:02 | 000,363,089 | ---- | C] () -- C:\WINDOWS\System32\hddspace.exe [2012-10-12 13:52:02 | 000,211,968 | ---- | C] () -- C:\WINDOWS\System32\Formats.dll [2012-10-12 13:52:02 | 000,031,232 | ---- | C] () -- C:\WINDOWS\System32\fstoggle.exe [2012-10-12 13:52:02 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\instalacja.bat [2012-10-12 13:52:02 | 000,000,064 | ---- | C] () -- C:\WINDOWS\System32\install.bat [2012-10-12 13:52:02 | 000,000,043 | ---- | C] () -- C:\WINDOWS\System32\FolderBackgrounOff.bat [2012-10-12 13:52:02 | 000,000,040 | ---- | C] () -- C:\WINDOWS\System32\FolderBackgrounOn.bat [2012-10-12 13:52:01 | 000,000,297 | ---- | C] () -- C:\WINDOWS\System32\find_target.vbs [2012-10-12 13:52:00 | 001,583,189 | ---- | C] () -- C:\WINDOWS\System32\eco-timer.scr [2012-10-12 13:52:00 | 000,040,448 | ---- | C] () -- C:\WINDOWS\System32\cdeject.dll [2012-10-12 13:52:00 | 000,000,008 | ---- | C] () -- C:\WINDOWS\System32\czysc.cmd [2012-10-12 13:50:29 | 000,053,812 | ---- | C] () -- C:\WINDOWS\uninst-vj.exe [2012-10-12 13:50:24 | 000,001,958 | ---- | C] () -- C:\WINDOWS\uninstall.ini [2012-10-12 13:50:23 | 000,082,898 | ---- | C] () -- C:\WINDOWS\uninstall.exe [2012-10-12 13:49:33 | 000,208,896 | ---- | C] () -- C:\WINDOWS\System32\cttune.cpl [2012-10-12 13:49:33 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\Startup.cpl [2012-10-12 13:48:07 | 000,178,176 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2012-10-12 13:48:06 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2012-10-12 13:48:04 | 000,000,414 | ---- | C] () -- C:\WINDOWS\System32\lame_acm.xml [2012-10-12 13:48:01 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2012-10-12 13:48:01 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2012-10-12 13:47:58 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2012-10-12 13:47:51 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2012-10-12 13:47:51 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2012-10-12 13:43:53 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT [2012-10-12 13:43:53 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2012-10-12 13:43:53 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2012-10-12 13:43:53 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2012-10-12 13:43:53 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS [2012-10-12 13:43:53 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT [2012-10-12 13:43:45 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb [2012-10-12 13:43:45 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb [2012-10-12 13:43:43 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx [2012-10-12 13:42:21 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2012-10-12 13:42:21 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2012-10-12 13:42:18 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2012-10-12 13:42:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2012-10-12 13:40:31 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2012-10-12 13:40:22 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2012-10-12 13:40:22 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2012-10-12 13:39:31 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce [2012-10-12 13:39:31 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce [2012-10-12 13:39:31 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce [2012-10-12 13:39:31 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce [2012-10-12 13:39:31 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce [2012-10-12 13:39:31 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce [2012-10-12 13:39:30 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce [2012-10-12 13:39:30 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce [2012-10-12 13:39:27 | 006,160,384 | ---- | C] () -- C:\WINDOWS\System32\calc.exe [2012-10-12 13:39:27 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2012-10-12 13:39:27 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h [2012-10-12 13:39:27 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd [2012-10-12 13:39:25 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2012-10-12 13:39:25 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h [2012-10-12 13:39:15 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc [2012-06-17 17:21:15 | 000,910,336 | ---- | C] () -- C:\WINDOWS\System32\WinSit.exe [color=#E56717]========== ZeroAccess Check ==========[/color] [2012-10-12 13:44:43 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2009-11-28 01:22:53 | 001,509,888 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-11-28 01:22:44 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-15 13:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2009-11-28 13:34:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\uTorrent [2012-10-12 13:56:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Xentient [2012-10-13 13:35:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2012-10-25 12:22:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG2013 [2012-10-20 14:18:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2012-10-12 13:55:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Finder Bar [2012-10-25 22:30:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2012-10-25 22:50:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Panda Security [2012-10-20 14:21:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\RELOADED [2009-09-17 21:38:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Dane aplikacji\AIMP [2012-10-12 14:03:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Dane aplikacji\Finder Bar [2009-11-10 16:15:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Dane aplikacji\FindeXer [2009-11-28 13:34:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Dane aplikacji\uTorrent [2012-10-25 18:32:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\AIMP [2012-10-12 15:09:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\Ashampoo [2012-10-25 12:25:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\AVG2013 [2012-10-22 23:18:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\BitSpirit [2012-10-20 14:18:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\DAEMON Tools Lite [2012-10-24 17:55:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\EurekaLog [2012-10-12 14:03:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\Finder Bar [2009-11-10 16:15:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\FindeXer [2012-10-14 23:49:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\NapiProjekt [2012-10-12 15:43:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\Tibia [2012-10-19 19:46:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\TuneUp Software [2012-10-23 14:32:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\uTorrent [2012-10-12 14:06:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Paweł\Dane aplikacji\Xentient [color=#E56717]========== Purity Check ==========[/color] < End of report >