OTL logfile created on: 2012-11-04 20:57:01 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = F:\Ant Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 510,73 Mb Total Physical Memory | 259,22 Mb Available Physical Memory | 50,75% Memory free 1,22 Gb Paging File | 1,02 Gb Available in Paging File | 83,53% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 149,04 Gb Total Space | 91,65 Gb Free Space | 61,49% Space Free | Partition Type: NTFS Drive E: | 5,46 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive F: | 3,81 Gb Total Space | 1,30 Gb Free Space | 34,16% Space Free | Partition Type: FAT32 Computer Name: PATRYK-7FDEC23E | User Name: patrick | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-11-04 18:57:24 | 000,602,112 | ---- | M] (OldTimer Tools) -- F:\Ant\24960-OTL.exe PRC - [2012-08-28 07:41:08 | 000,092,632 | ---- | M] (TomTom) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe PRC - [2012-08-08 18:32:19 | 000,131,584 | ---- | M] () -- C:\Documents and Settings\patrick\Dane aplikacji\xsecva\xsecva.exe PRC - [2009-04-09 14:19:08 | 000,731,840 | ---- | M] (ESET) -- C:\Program Files\Eset\ESET Smart Security\ekrn.exe PRC - [2008-04-14 18:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2004-04-06 19:35:10 | 000,929,904 | ---- | M] (Ahead Software AG) -- C:\Program Files\Ahead\InCD\incdsrv.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-08-08 18:32:19 | 000,131,584 | ---- | M] () -- C:\Documents and Settings\patrick\Dane aplikacji\xsecva\xsecva.exe MOD - [2008-06-20 17:04:23 | 000,246,784 | ---- | M] () -- \\?\globalroot\systemroot\system32\mswsock.dll MOD - [2008-06-20 17:04:23 | 000,246,784 | ---- | M] () -- \\.\globalroot\systemroot\system32\mswsock.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ) SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt) SRV - [2012-08-28 07:41:08 | 000,092,632 | ---- | M] (TomTom) [Auto | Running] -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe -- (TomTomHOMEService) SRV - [2012-01-18 14:38:28 | 000,155,320 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files\Sony\Sony PC Companion\PCCService.exe -- (Sony PC Companion) SRV - [2009-04-09 14:29:20 | 000,020,680 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\Eset\ESET Smart Security\EHttpSrv.exe -- (EhttpSrv) SRV - [2009-04-09 14:19:08 | 000,731,840 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\Eset\ESET Smart Security\ekrn.exe -- (ekrn) SRV - [2004-04-06 19:35:10 | 000,929,904 | ---- | M] (Ahead Software AG) [Auto | Running] -- C:\Program Files\Ahead\InCD\incdsrv.exe -- (InCDsrv) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\ZDPNDIS5.SYS -- (ZDPNDIS5) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\ZDCndis5.SYS -- (ZDCndis5) DRV - File not found [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\xpsec.sys -- (xpsec) DRV - File not found [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\xcpip.sys -- (xcpip) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\PCASp50.sys -- (PCASp50) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\PCANDIS5.SYS -- (PCANDIS5) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\oif006.sys -- (oif006.sys) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2012-02-28 19:25:22 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc) DRV - [2012-02-28 19:25:22 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt) DRV - [2009-04-09 14:21:12 | 000,055,768 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdi.sys -- (epfwtdi) DRV - [2009-04-09 14:21:10 | 000,033,096 | ---- | M] (ESET) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\epfwndis.sys -- (Epfwndis) DRV - [2009-04-09 14:21:06 | 000,133,000 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\epfw.sys -- (epfw) DRV - [2009-04-09 14:18:02 | 000,107,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv) DRV - [2009-04-09 14:10:30 | 000,113,960 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2008-04-13 19:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2008-04-13 19:40:30 | 000,096,512 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\atapi.sys -- (atapi) DRV - [2007-06-25 08:43:22 | 000,082,984 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s117bus.sys -- (s117bus) DRV - [2007-01-16 12:52:20 | 000,017,664 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZDPSp50.sys -- (ZDPSp50) DRV - [2007-01-10 09:14:34 | 000,450,560 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WlanBZXP.sys -- (SG762_XP) DRV - [2005-05-31 15:40:20 | 000,020,480 | ---- | M] (IVT Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2005-04-30 14:50:20 | 000,011,860 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\vbtenum.sys -- (BTHidEnum) DRV - [2005-04-30 14:50:10 | 000,028,271 | ---- | M] (IVT Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\BTHidMgr.sys -- (BTHidMgr) DRV - [2005-04-30 14:48:58 | 000,010,804 | ---- | M] (IVT Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BtNetDrv.sys -- (BT) DRV - [2005-03-25 17:18:48 | 000,082,148 | ---- | M] (IVT Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2004-10-19 13:37:38 | 000,061,312 | ---- | M] (IVT Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2004-04-06 19:43:22 | 000,005,504 | ---- | M] (Ahead Software AG) [Recognizer | System | Unknown] -- C:\WINDOWS\System32\drivers\incdrec.sys -- (InCDrec) DRV - [2004-04-06 19:40:10 | 000,025,600 | ---- | M] (Ahead Software AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\incdpass.sys -- (InCDPass) DRV - [2004-04-06 19:39:20 | 000,089,472 | ---- | M] (Ahead Software AG) [File_System | Disabled | Running] -- C:\WINDOWS\System32\drivers\incdfs.sys -- (InCDfs) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://startsear.ch/?aff=1&cf=d584385e-4217-11e1-a3d5-00197016a365 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = IE - HKLM\..\SearchScopes,DefaultScope = {E277AE68-57A8-44F6-919A-832675CF63CF} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://startsear.ch/?aff=1&src=sp&cf=d584385e-4217-11e1-a3d5-00197016a365&q={searchTerms} IE - HKLM\..\SearchScopes\{C01ECF7E-2F8E-40A8-91B3-F813B6C06319}: "URL" = http://search.phpnuke.org/?lang=en&q={searchTerms} IE - HKLM\..\SearchScopes\{E277AE68-57A8-44F6-919A-832675CF63CF}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKCU\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&affID=112089&tt=060612_7_&babsrc=SP_ss&mntrId=9c65952b00000000000000197016a365 IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MOOI_plPL462 IE - HKCU\..\SearchScopes\{A7430EC3-3FBE-42AC-8CDE-09C5E83C2775}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=VDJ&o=41647960&src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=8R&apn_dtid=YYYYYYYYPL&apn_uid=8634EA20-487B-4027-B37E-E18042F3F422&apn_sauid=76F9E7B7-FAE5-4ECA-B407-72241E223386& IE - HKCU\..\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2795644 IE - HKCU\..\SearchScopes\{C01ECF7E-2F8E-40A8-91B3-F813B6C06319}: "URL" = http://search.phpnuke.org/?lang=en&q={searchTerms} IE - HKCU\..\SearchScopes\{E277AE68-57A8-44F6-919A-832675CF63CF}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7MOOI_plPL462 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00: C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.18: C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc) FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.1.7: C:\Program Files\VideoLAN\VLC\npvlc.dll (the VideoLAN Team) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{5cea9a87-a3a5-4c2a-b08d-8a1876d4931c}: C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\FireFox\{5cea9a87-a3a5-4c2a-b08d-8a1876d4931c} FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2009-09-11 22:37:58 | 000,000,000 | ---D | M] [2012-10-29 17:09:27 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Extensions [2012-10-29 17:09:27 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Extensions\home2@tomtom.com [2010-01-03 18:48:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\dmub56bx.default\extensions [2010-01-03 18:48:17 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\dmub56bx.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}(2) [2012-09-11 13:15:59 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\kgdb7p1h.default\extensions [2010-06-25 16:45:27 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\kgdb7p1h.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-25 16:45:31 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\kgdb7p1h.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2012-06-05 19:01:02 | 000,000,000 | ---D | M] (IMinent Toolbar) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\kgdb7p1h.default\extensions\{C9B68337-E93A-44EA-94DC-CB300EC06444} [2010-06-25 16:45:30 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\kgdb7p1h.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2012-09-11 13:16:25 | 000,000,000 | ---D | M] ("Adult Website Filter") -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\kgdb7p1h.default\extensions\crossriderapp4982@crossrider.com [2010-06-25 16:45:28 | 000,000,000 | ---D | M] (Fast Dial) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\kgdb7p1h.default\extensions\fastdial@telega.phpnet.us [2010-06-25 16:45:29 | 000,000,000 | ---D | M] (FastestFox) -- C:\Documents and Settings\patrick\Dane aplikacji\Mozilla\Firefox\Profiles\kgdb7p1h.default\extensions\smarterwiki@wikiatic.com [2012-06-05 18:50:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-06-05 18:50:20 | 000,000,000 | ---D | M] (Babylon) -- C:\Program Files\Mozilla Firefox\extensions\ffxtlbr@babylon.com [color=#E56717]========== Chrome ==========[/color] CHR - homepage: http://search.babylon.com/?affID=112089&tt=060612_7_&babsrc=HP_ss&mntrId=9c65952b00000000000000197016a365 CHR - default_search_provider: Search the web (Babylon) (Enabled) CHR - default_search_provider: search_url = http://search.babylon.com/?q={searchTerms}&babsrc=SP_crm CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms} CHR - homepage: http://search.babylon.com/?affID=112089&tt=060612_7_&babsrc=HP_ss&mntrId=9c65952b00000000000000197016a365 CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\21.0.1180.89\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\21.0.1180.89\pdf.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\21.0.1180.89\gcswf32.dll CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll CHR - plugin: vShare.tv plug-in (Enabled) = C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj\1.3_0\chvsharetvplg.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll CHR - plugin: PlayStation(R)Network Downloader Check Plug-in (Enabled) = C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll CHR - plugin: Veetle TV Player (Enabled) = C:\Program Files\Veetle\Player\npvlc.dll CHR - plugin: Veetle TV Core (Enabled) = C:\Program Files\Veetle\plugins\npVeetle.dll CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll CHR - plugin: Windows Presentation Foundation (Enabled) = c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll CHR - plugin: Default Plug-in (Enabled) = default_plugin CHR - Extension: YouTube = C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Browser Companion Helper = C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\clbfjfbnelcflpgpklppgplejolacbej\1.0.5_0\ CHR - Extension: Szukaj w Google = C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\ CHR - Extension: vshare plugin = C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj\1.3_0\ CHR - Extension: Gmail = C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2012-11-04 20:41:05 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (Chatvibes Browser Helper) - {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files\BrowserCompanion\jsloader.dll ( ) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (IE5BarLauncherBHO Class) - {78F3A323-798E-4AEA-9A57-88F4B05FD5DD} - C:\Program Files\vShare.tv plugin\BarLcher.dll (VShare Inc.) O2 - BHO: (Chatvibes Browser Helper Verifier) - {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files\BrowserCompanion\updatebhoWin32.dll ( ) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll (Google Inc.) O2 - BHO: (internetspooler) - {cfd67983-956a-1d62-9de0-485841902d22} - C:\WINDOWS\system32\a0180a1f.dll () O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10\_userdata\ggbho.2.dll File not found O3 - HKLM\..\Toolbar: (VShareToolBar) - {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} - C:\Program Files\vShare.tv plugin\BarLcher.dll (VShare Inc.) O3 - HKCU\..\Toolbar\WebBrowser: (VShareToolBar) - {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} - C:\Program Files\vShare.tv plugin\BarLcher.dll (VShare Inc.) O4 - HKLM..\Run: [Bar] C:\Documents and Settings\patrick\Ustawienia lokalne\Temporary Internet Files\Content.IE5\CPJ0ALO2\access[1].exe File not found O4 - HKLM..\Run: [Browser companion helper] C:\Program Files\BrowserCompanion\BCHelper.exe (Blabbers Communications LTD) O4 - HKLM..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd File not found O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET) O4 - HKLM..\Run: [igprcv] C:\Documents and Settings\patrick\Dane aplikacji\igprcv.dll (PixArt Imaging Incorporation) O4 - HKLM..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe (Ahead Software AG) O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) O4 - HKLM..\Run: [rdincp] C:\Documents and Settings\patrick\Dane aplikacji\rdincp.dll (Crytek) O4 - HKLM..\Run: [RemoteControl] C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe (Cyberlink Corp.) O4 - HKLM..\Run: [serialui] C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\1185\serialui.exe (Microsoft Corporation) O4 - HKLM..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME\TomTomHOME.exe (TomTom) O4 - HKLM..\Run: [XSECVA] C:\Documents and Settings\patrick\Dane aplikacji\xsecva\xsecva.exe () O4 - HKCU..\Run: [ActiveCollector] C:\Program Files\NetNucleous\ActiveCollector\ActiveCollector.exe File not found O4 - HKCU..\Run: [ares] C:\Program Files\Ares\Ares.exe (Ares Development Group) O4 - HKCU..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent File not found O4 - HKCU..\Run: [LonelyWalker] "C:\Program Files\NetNucleous\ActiveCollector\ACRecover.exe" File not found O4 - HKCU..\Run: [PCSpeedUp] "C:\Program Files\Przyspiesz Komputer\PCSpeedUp.exe" File not found O4 - HKCU..\Run: [PowerBar] C:\Program Files\CyberLink DVD Solution\Multimedia Launcher\PowerBar.exe (Cyberlink, Corp.) O4 - HKCU..\Run: [Sony PC Companion] C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe (Sony) O4 - HKCU..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (TomTom) O4 - HKCU..\Run: [XSECVA] C:\Documents and Settings\patrick\Dane aplikacji\xsecva\xsecva.exe () O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\HP Image Zone - szybkie uruchamianie.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe (Hewlett-Packard Co.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Program sieciowy dla SAGEM Wi-Fi 11g USB adapter.lnk = C:\Program Files\SAGEM WiFi manager\WLANUTL.EXE ( ) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: 38187 = C:\DOCUME~1\ALLUSE~1\LOCALS~1\Temp\msxoiio.com () O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - mswsock.dll File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - mswsock.dll File not found O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase8942.cab (Windows Live Safety Center Base Module) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1351527532437 (WUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{100E4F70-AC68-4506-B793-0DB7B0CA90EC}: DhcpNameServer = 192.168.1.1 0.0.0.0 O18 - Protocol\Handler\base64 {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) O18 - Protocol\Handler\chrome {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) O18 - Protocol\Handler\prox {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) O20 - AppInit_DLLs: (C:\WINDOWS\system32\ChromeLog.dll) - C:\WINDOWS\system32\ChromeLog.dll () O20 - HKLM Winlogon: Shell - (iexplore) - File not found O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - ("C:\Documents and Settings\patrick\Dane aplikacji\xsecva\xsecva.exe" -s) - C:\Documents and Settings\patrick\Dane aplikacji\xsecva\xsecva.exe () O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-29 13:47:22 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2007-02-12 20:53:42 | 000,000,277 | R--- | M] () - E:\autorun.inf -- [ CDFS ] O33 - MountPoints2\{a1ef7fc9-6238-11e1-a431-00197016a365}\Shell - "" = AutoRun O33 - MountPoints2\{a1ef7fc9-6238-11e1-a431-00197016a365}\Shell\AutoRun\command - "" = E:\Startme.exe O33 - MountPoints2\{e63e93c6-cb0b-11df-9ea6-00197016a365}\Shell - "" = AutoRun O33 - MountPoints2\{e63e93c6-cb0b-11df-9ea6-00197016a365}\Shell\AutoRun\command - "" = E:\LaunchU3.exe -- [2007-02-13 02:33:37 | 001,110,016 | R--- | M] () O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-11-04 19:42:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\patrick\Pulpit\aaa [2012-11-01 12:35:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Macromedia [2012-11-01 12:35:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Adobe [2012-10-31 23:21:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\patrick\Dane aplikacji\hellomoto [2012-10-31 23:21:44 | 000,178,688 | ---- | C] (PixArt Imaging Incorporation) -- C:\Documents and Settings\patrick\Dane aplikacji\igprcv.dll [2012-10-29 17:09:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TomTom [2012-10-29 17:09:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\TomTom [2012-10-29 17:09:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\patrick\Dane aplikacji\TomTom [2012-10-29 17:08:09 | 000,000,000 | ---D | C] -- C:\Program Files\TomTom HOME 2 [2012-10-29 17:07:14 | 000,000,000 | ---D | C] -- C:\Program Files\TomTom International B.V [2012-10-29 17:06:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\Downloaded Installations [2012-10-29 16:42:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\patrick\Moje dokumenty\TomTom [2012-10-29 16:39:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\TomTom [2012-10-29 16:39:57 | 000,000,000 | ---D | C] -- C:\Program Files\TomTom HOME [2012-10-29 16:20:46 | 000,000,000 | ---D | C] -- C:\Program Files\TomTom DesktopSuite [2012-08-08 18:32:25 | 000,155,648 | ---- | C] (Crytek) -- C:\Documents and Settings\patrick\Dane aplikacji\rdincp.dll [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-11-04 20:56:01 | 000,001,038 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-11-04 20:55:43 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-11-04 20:54:57 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-11-04 20:54:56 | 535,613,440 | -HS- | M] () -- C:\hiberfil.sys [2012-11-04 20:41:05 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts [2012-11-04 20:07:43 | 000,282,928 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-11-04 19:25:57 | 000,000,466 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{82EC570D-5555-443F-ACEB-D0F3081B1680}.job [2012-11-04 19:12:59 | 000,001,374 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-11-02 14:13:52 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2012-10-31 23:21:44 | 000,178,688 | ---- | M] (PixArt Imaging Incorporation) -- C:\Documents and Settings\patrick\Dane aplikacji\igprcv.dll [2012-10-30 14:34:56 | 000,001,739 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Sony PC Companion 2.1.lnk [2012-10-29 16:59:26 | 030,544,304 | ---- | M] () -- C:\Documents and Settings\patrick\Pulpit\TomTomHOME2winlatest.exe [2012-10-28 18:08:35 | 000,000,049 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012-10-28 15:35:25 | 000,501,108 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-10-28 15:35:24 | 000,089,332 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-10-28 15:35:21 | 000,442,222 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-10-28 15:35:19 | 000,071,774 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-10-11 08:16:42 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-11-04 20:54:56 | 535,613,440 | -HS- | C] () -- C:\hiberfil.sys [2012-11-02 13:35:47 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2012-10-30 14:34:56 | 000,001,739 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Sony PC Companion 2.1.lnk [2012-10-29 16:59:21 | 030,544,304 | ---- | C] () -- C:\Documents and Settings\patrick\Pulpit\TomTomHOME2winlatest.exe [2012-09-30 11:53:13 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\img015.jpg [2012-09-30 11:45:08 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\img014.jpg [2012-09-30 11:41:54 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\img012.jpg [2012-06-23 12:35:33 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\ChromeLog.dll [2012-06-08 11:52:09 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2012-06-05 18:45:45 | 003,236,352 | ---- | C] () -- C:\WINDOWS\System32\a5ce8e4f.exe [2012-06-05 18:45:44 | 003,240,448 | ---- | C] () -- C:\WINDOWS\System32\a0180a1f.dll [2012-03-13 22:05:44 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01460.JPG [2012-03-05 22:18:12 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\Nowy folder.rar [2012-02-28 22:54:43 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01438.JPG [2012-02-15 17:00:31 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\P1050431.JPG [2012-02-15 16:28:25 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\Alles Klar 2ab - klucze.pdf [2012-02-15 16:18:27 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\P1050427.JPG [2012-02-15 16:07:54 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\Alles Klar 2ab - testy.pdf [2012-02-15 11:58:19 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2012-02-12 16:17:41 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01407.JPG [2012-02-12 16:17:36 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01406.JPG [2012-02-12 16:17:33 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01405.JPG [2011-12-18 21:10:19 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\typing.gif [2011-11-18 22:36:05 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\sdifusof.jpg [2011-11-18 22:02:10 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\2009_03_24_20_40_mapa_fizyczna_azji_A4.pdf [2011-11-01 22:07:31 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01277.JPG [2011-07-18 21:50:31 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\P1010548.JPG [2011-05-09 19:40:00 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\skanowanie0002.jpg [2011-04-26 13:39:38 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\skanowanie0001.jpg [2011-04-04 20:15:51 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01071.JPG [2011-04-04 20:01:34 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01070.JPG [2011-04-04 20:01:32 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01069.JPG [2011-02-12 22:10:29 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01057.JPG [2011-02-12 22:10:24 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01058.JPG [2011-02-12 22:10:19 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01059.JPG [2011-02-12 22:10:16 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01060.JPG [2011-02-12 22:10:13 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01061.JPG [2011-02-12 21:56:47 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01054.JPG [2011-02-12 21:56:41 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01055.JPG [2011-02-12 21:56:39 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01056.JPG [2011-01-22 20:02:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01020.JPG [2011-01-22 20:02:05 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01019.JPG [2011-01-22 20:02:01 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01018.JPG [2011-01-22 20:01:56 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01017.JPG [2011-01-22 20:01:52 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01016.JPG [2011-01-22 20:01:48 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC01015.JPG [2011-01-22 20:01:44 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC00944.JPG [2011-01-22 20:01:39 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\patrick\DSC00943.JPG [2009-08-30 20:45:03 | 000,030,720 | ---- | C] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-07-30 11:16:28 | 000,040,960 | ---- | C] () -- C:\Program Files\Uninstall_CDS.exe [2009-06-29 14:13:17 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [color=#E56717]========== ZeroAccess Check ==========[/color] [2010-12-09 16:15:25 | 000,002,048 | -HS- | M] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\@ [2010-12-09 16:15:25 | 000,072,192 | -HS- | M] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\n [2012-08-08 18:34:24 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\L [2012-10-30 14:27:04 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\U [2012-10-31 22:05:11 | 000,000,804 | ---- | M] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\L\00000004.@ [2012-08-08 18:33:56 | 000,002,048 | ---- | M] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\U\00000004.@ [2012-08-08 18:34:29 | 000,232,960 | ---- | M] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\U\00000008.@ [2012-08-08 18:33:56 | 000,001,632 | ---- | M] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\U\000000cb.@ [2012-10-28 15:33:55 | 000,011,776 | ---- | M] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\U\80000000.@ [2012-10-30 14:27:04 | 000,087,040 | ---- | M] () -- C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\U\80000032.@ [2009-06-29 14:12:33 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [2012-11-04 20:55:43 | 000,005,120 | -HS- | M] () -- C:\WINDOWS\assembly\GAC\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "ThreadingModel" = Both "" = C:\Documents and Settings\patrick\Ustawienia lokalne\Dane aplikacji\{81f67c89-9c9f-7aaf-b28c-a87b3820d510}\n. -- [2010-12-09 16:15:25 | 000,072,192 | -HS- | M] () [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-14 18:20:47 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\RECYCLER\S-1-5-18\$81f67c899c9f7aafb28ca87b3820d510\n. -- File not found "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 18:20:57 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 64 bytes -> C:\Documents and Settings\patrick\Pulpit\___ARESTRA___discovery - hitler - dowodca (lektor pl).avi:TOC.WMV < End of report >