OTL logfile created on: 2010-12-18 15:39:03 - Run 1 OTL by OldTimer - Version 3.2.17.3 Folder = C:\Users\Olenka\Desktop 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 54,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 70,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 232,79 Gb Total Space | 64,31 Gb Free Space | 27,63% Space Free | Partition Type: NTFS Computer Name: OLENKA-KOMPUTER | User Name: Olenka | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 60 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2010-12-18 15:37:45 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Olenka\Desktop\OTL.exe PRC - [2010-12-16 23:24:08 | 000,944,496 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\opera.exe PRC - [2010-08-05 08:46:02 | 000,583,640 | ---- | M] (PC Tools) -- C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe PRC - [2010-08-05 08:46:02 | 000,104,408 | ---- | M] (PC Tools) -- C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe PRC - [2010-02-26 01:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton 360\Engine\4.3.0.5\ccSvcHst.exe PRC - [2009-02-28 18:40:38 | 000,075,048 | ---- | M] (cyberlink) -- C:\Program Files (x86)\CyberLink\Shared Files\brs.exe PRC - [2009-02-16 08:55:38 | 000,087,336 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe PRC - [2008-12-19 08:28:54 | 000,199,000 | ---- | M] (Smith Micro Software, Inc.) -- C:\Program Files (x86)\Smith Micro\StuffIt 2009\ArcNameService.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-12-18 15:37:45 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Olenka\Desktop\OTL.exe MOD - [2009-07-14 02:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - File not found [Auto | Stopped] -- C:\Windows\SysNative\srvany.exe -- (KMService) SRV:[b]64bit:[/b] - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2009-07-14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt) SRV - [2010-09-18 19:05:01 | 000,008,192 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysWOW64\srvany.exe -- (KMService) SRV - [2010-08-05 08:46:02 | 000,583,640 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe -- (PCToolsSSDMonitorSvc) SRV - [2010-02-26 01:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) [Unknown | Running] -- C:\Program Files (x86)\Norton 360\Engine\4.3.0.5\ccSvcHst.exe -- (N360) SRV - [2010-01-29 23:40:16 | 001,043,584 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL -- (HPSLPSVC) SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2008-12-19 08:28:54 | 000,199,000 | ---- | M] (Smith Micro Software, Inc.) [Auto | Running] -- C:\Program Files (x86)\Smith Micro\StuffIt 2009\ArcNameService.exe -- (Stuffit Archive Name Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2010-10-28 17:32:28 | 000,310,984 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt) DRV:[b]64bit:[/b] - [2010-10-28 17:29:28 | 000,042,696 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt) DRV:[b]64bit:[/b] - [2010-09-18 18:47:29 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd) DRV:[b]64bit:[/b] - [2010-09-18 17:47:34 | 000,173,104 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent) DRV:[b]64bit:[/b] - [2010-05-06 05:01:59 | 000,451,120 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\0403000.005\symtdiv.sys -- (SYMTDIv) DRV:[b]64bit:[/b] - [2010-05-06 05:01:44 | 000,053,808 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SymIMV.sys -- (SymIM) DRV:[b]64bit:[/b] - [2010-04-29 06:03:51 | 000,150,064 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\0403000.005\ironx64.sys -- (SymIRON) DRV:[b]64bit:[/b] - [2010-04-22 04:02:20 | 000,221,232 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\N360x64\0403000.005\symefa64.sys -- (SymEFA) DRV:[b]64bit:[/b] - [2010-04-22 03:29:51 | 000,505,392 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\N360x64\0403000.005\srtsp64.sys -- (SRTSP) DRV:[b]64bit:[/b] - [2010-04-22 03:29:51 | 000,032,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\0403000.005\srtspx64.sys -- (SRTSPX) Symantec Real Time Storage Protection (PEL) DRV:[b]64bit:[/b] - [2010-02-26 01:22:52 | 000,615,040 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\0403000.005\cchpx64.sys -- (ccHP) DRV:[b]64bit:[/b] - [2009-10-15 04:50:05 | 000,433,200 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\N360x64\0403000.005\symds64.sys -- (SymDS) DRV:[b]64bit:[/b] - [2009-08-17 12:20:46 | 001,235,968 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService) DRV:[b]64bit:[/b] - [2009-07-16 04:38:40 | 000,015,416 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor) DRV:[b]64bit:[/b] - [2009-07-14 02:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2009-07-14 02:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009-07-14 02:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009-07-13 22:59:33 | 005,020,672 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag) DRV:[b]64bit:[/b] - [2009-06-10 21:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs) DRV:[b]64bit:[/b] - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009-05-22 15:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:[b]64bit:[/b] - [2009-05-18 23:17:08 | 000,034,152 | R--- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM) DRV - [2010-12-17 00:33:50 | 001,791,096 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20101217.002\EX64.SYS -- (NAVEX15) DRV - [2010-12-17 00:33:50 | 000,117,880 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\VirusDefs\20101217.002\ENG64.SYS -- (NAVENG) DRV - [2010-11-23 03:20:07 | 000,953,904 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\BASHDefs\20101123.003\BHDrvx64.sys -- (BHDrvx64) DRV - [2010-11-09 01:50:27 | 000,476,792 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\Definitions\IPSDefs\20101215.001\IDSviA64.sys -- (IDSVia64) DRV - [2010-09-18 18:04:51 | 000,475,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl) DRV - [2010-09-18 18:04:51 | 000,132,656 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv) DRV - [2009-02-28 18:40:18 | 000,146,928 | ---- | M] (CyberLink Corp.) [2010/09/19 16:10:14] [Kernel | Auto | Running] -- C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl -- ({B154377D-700F-42cc-9474-23858FBDF4BD}) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = wyborcza.pl/0,0.html?p=031 IE - HKU\S-1-5-21-1532875563-2861539101-1551110648-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.qooqlle.com/ IE - HKU\S-1-5-21-1532875563-2861539101-1551110648-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\IPSFFPlgn\ [2010-09-18 23:43:20 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_4.0.0.127\coFFPlgn\ [2010-09-18 17:47:51 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-10-12 20:59:47 | 000,000,000 | ---D | M] O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\4.3.0.5\coIEPlg.dll (Symantec Corporation) O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\4.3.0.5\IPSBHO.DLL (Symantec Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) O3:[b]64bit:[/b] - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\4.3.0.5\coIEPlg.dll (Symantec Corporation) O3:[b]64bit:[/b] - HKU\S-1-5-21-1532875563-2861539101-1551110648-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll () O3 - HKU\S-1-5-21-1532875563-2861539101-1551110648-1000\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKU\S-1-5-21-1532875563-2861539101-1551110648-1000\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\4.3.0.5\coIEPlg.dll (Symantec Corporation) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe (cyberlink) O4 - HKLM..\Run: [GProton] C:\ProgramData\gproton.exe () O4 - HKLM..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (VIA) O4 - HKLM..\Run: [PDVD9LanguageShortcut] C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe (CyberLink Corp.) O4 - HKLM..\Run: [RemoteControl9] C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe (CyberLink Corp.) O4 - HKLM..\Run: [SSDMonitor] C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe (PC Tools) O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.) O9 - Extra Button: Pokaż lub ukryj HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.100 O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{f4aa5afb-c34c-11df-9da0-485b3921f4ea}\Shell - "" = AutoRun O33 - MountPoints2\{f4aa5afb-c34c-11df-9da0-485b3921f4ea}\Shell\AutoRun\command - "" = J:\Autorun.exe -- File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-12-18 15:37:39 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\Olenka\Desktop\OTL.exe [2010-12-16 23:27:48 | 000,000,000 | ---D | C] -- C:\Users\Olenka\AppData\Roaming\Tific [2010-12-16 23:24:11 | 000,000,000 | ---D | C] -- C:\Users\Olenka\AppData\Roaming\Opera [2010-12-16 23:24:11 | 000,000,000 | ---D | C] -- C:\Users\Olenka\AppData\Local\Opera [2010-12-16 23:19:06 | 000,053,808 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\SymIMV.sys [2010-12-14 00:35:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ToniArts [2010-12-08 22:15:06 | 000,000,000 | ---D | C] -- C:\Users\Olenka\AppData\Local\searchplugins [2010-12-03 17:37:26 | 000,000,000 | ---D | C] -- C:\Users\Olenka\AppData\Roaming\Media Player Classic [2010-12-03 17:37:00 | 000,839,680 | ---- | C] (http://www.mp3dev.org/) -- C:\Windows\SysWow64\lameACM.acm [2010-12-03 17:37:00 | 000,217,088 | ---- | C] (www.helixcommunity.org) -- C:\Windows\SysWow64\yv12vfw.dll [2010-12-03 17:37:00 | 000,151,552 | ---- | C] (fccHandler) -- C:\Windows\SysWow64\ac3acm.acm [2010-12-03 17:36:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K-Lite Codec Pack [2010-12-02 13:42:45 | 001,101,824 | ---- | C] (Woodbury Associates Limited) -- C:\Windows\SysWow64\UniBox210.ocx [2010-12-02 13:42:45 | 000,880,640 | ---- | C] (Woodbury Associates Limited) -- C:\Windows\SysWow64\UniBox10.ocx [2010-12-02 13:42:45 | 000,212,992 | ---- | C] (Woodbury Associates Limited) -- C:\Windows\SysWow64\UniBoxVB12.ocx [2010-12-02 13:42:44 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSCOMCT2.OCX [2010-12-02 13:42:44 | 000,506,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml.dll [2010-12-02 13:42:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Registry Mechanic [2010-12-02 13:42:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PC Tools [2010-11-27 13:34:36 | 000,000,000 | ---D | C] -- C:\Users\Olenka\muzyka [2010-11-22 12:13:46 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt [2010-11-22 12:09:33 | 000,000,000 | ---D | C] -- C:\sr [2010-11-19 01:13:25 | 000,000,000 | -HSD | C] -- C:\Users\Olenka\AppData\Roaming\.# [2010-11-15 14:20:13 | 000,000,000 | ---D | C] -- C:\Users\Olenka\Documents\turke [2010-11-14 13:56:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PlayReady [2010-11-11 20:29:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Farm Frenzy [2010-11-09 13:22:42 | 000,000,000 | ---D | C] -- C:\Users\Olenka\Documents\gfvhj [2010-11-02 07:49:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cryo [2010-11-02 07:48:54 | 000,304,640 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUn0415.exe [2010-10-30 22:19:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TV Watcher [2010-10-28 17:30:05 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll [2010-10-28 17:30:03 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll [2010-10-24 13:04:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight [2010-10-24 00:18:30 | 000,000,000 | ---D | C] -- C:\Users\Olenka\AppData\Local\CheapShareware [2010-10-24 00:15:01 | 000,000,000 | ---D | C] -- C:\Users\Olenka\AppData\Roaming\biu software [2010-10-24 00:15:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\biu software [2010-10-24 00:14:19 | 000,000,000 | ---D | C] -- C:\Windows\DVD Cover Gold [2010-10-24 00:14:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVD Cover Gold [2010-10-24 00:03:29 | 000,000,000 | ---D | C] -- C:\Users\Olenka\Documents\win 7 [2010-10-23 19:12:00 | 000,000,000 | ---D | C] -- C:\Users\Olenka\Wzory Umow [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-12-18 15:42:34 | 002,621,440 | -HS- | M] () -- C:\Users\Olenka\NTUSER.DAT [2010-12-18 15:37:45 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Olenka\Desktop\OTL.exe [2010-12-18 01:06:22 | 001,523,412 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2010-12-18 01:06:22 | 000,687,590 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2010-12-18 01:06:22 | 000,606,992 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2010-12-18 01:06:22 | 000,131,176 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2010-12-18 01:06:22 | 000,103,370 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2010-12-18 01:05:29 | 000,020,800 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2010-12-18 01:05:29 | 000,020,800 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2010-12-18 01:00:23 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010-12-18 01:00:20 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010-12-18 01:00:17 | 1609,916,416 | -HS- | M] () -- C:\hiberfil.sys [2010-12-17 17:31:14 | 003,722,600 | -H-- | M] () -- C:\Users\Olenka\AppData\Local\IconCache.db [2010-12-16 23:24:09 | 000,001,833 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk [2010-12-15 12:33:17 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempmZc304.html [2010-12-15 00:06:04 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempPN4428.html [2010-12-07 23:45:10 | 007,793,152 | RHS- | M] () -- C:\ProgramData\gproton.exe [2010-12-06 01:10:21 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempKk1588.html [2010-12-05 12:31:16 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempRE3488.html [2010-12-04 19:09:11 | 000,000,268 | ---- | M] () -- C:\Windows\tasks\RMSchedule.job [2010-12-04 00:01:18 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempob4372.html [2010-12-03 17:05:43 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempAa4628.html [2010-12-03 02:13:22 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Temphp4412.html [2010-12-03 01:34:19 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempnw3120.html [2010-12-02 20:40:55 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TemppwU772.html [2010-12-02 16:15:51 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempgb4564.html [2010-11-30 17:45:42 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempEc4136.html [2010-11-30 13:07:06 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempgb3944.html [2010-11-28 19:35:35 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempjs4248.html [2010-11-28 19:34:38 | 000,036,263 | ---- | M] () -- C:\Users\Olenka\Kontakty_8245827.xml [2010-11-28 19:17:46 | 000,002,014 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk [2010-11-27 01:15:15 | 000,211,223 | ---- | M] () -- C:\Windows\hpoins46.dat [2010-11-27 01:14:07 | 000,000,438 | ---- | M] () -- C:\Windows\win.ini [2010-11-27 00:12:01 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempxd2708.html [2010-11-26 19:52:11 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempCS2132.html [2010-11-26 12:27:54 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempFA2724.html [2010-11-25 21:39:58 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempHA3228.html [2010-11-25 13:17:32 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempSv3748.html [2010-11-25 07:14:18 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempzY3148.html [2010-11-24 20:03:44 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempRm1008.html [2010-11-24 17:39:52 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempbK2072.html [2010-11-24 15:51:28 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempfb3792.html [2010-11-24 00:08:00 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempsf4912.html [2010-11-23 17:28:45 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempe10684.html [2010-11-23 00:19:54 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempUW3292.html [2010-11-22 19:09:58 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempny4608.html [2010-11-22 12:09:33 | 001,599,488 | ---- | M] () -- C:\mvf.mdb [2010-11-22 01:16:52 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempuH4704.html [2010-11-21 14:58:20 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempf22744.html [2010-11-21 12:16:05 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Temps24936.html [2010-11-21 10:47:59 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempx22680.html [2010-11-20 22:50:22 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempo15984.html [2010-11-19 12:24:15 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempIy7432.html [2010-11-17 23:06:21 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempFR9244.html [2010-11-16 23:32:42 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempkI7516.html [2010-11-16 20:57:12 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempKt6848.html [2010-11-16 19:57:10 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempeS6288.html [2010-11-16 17:00:43 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempBQ2212.html [2010-11-15 17:07:34 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempJ12252.html [2010-11-15 17:07:34 | 000,002,089 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempM12252.html [2010-11-14 01:23:23 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempPV6368.html [2010-11-13 00:01:23 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempDj2008.html [2010-11-11 20:22:26 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempQJ1044.html [2010-11-11 14:52:03 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempc16348.html [2010-11-10 23:36:18 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempS21292.html [2010-11-10 22:45:29 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Temphl8148.html [2010-11-10 20:50:45 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempB16304.html [2010-11-09 07:36:16 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempra3320.html [2010-11-08 22:19:01 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempY14920.html [2010-11-08 15:01:13 | 000,223,969 | ---- | M] () -- C:\Users\Olenka\Documents\Schemat połączeń kabli sieciowych w sieciach LAN.docx [2010-11-08 12:43:48 | 000,015,802 | ---- | M] () -- C:\Users\Olenka\Documents\Pasmo Aster.docx [2010-11-07 23:15:27 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempjl3344.html [2010-11-06 12:42:17 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempyD6300.html [2010-11-06 11:34:39 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempG13924.html [2010-11-05 22:08:46 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempc15072.html [2010-11-04 23:56:47 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempKv8860.html [2010-11-04 20:46:14 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempZ14792.html [2010-11-03 19:06:01 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempKY7396.html [2010-11-03 14:08:20 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempyL8012.html [2010-11-02 22:02:50 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempM11832.html [2010-11-02 14:42:16 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TemprA8904.html [2010-11-02 11:57:42 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempk14120.html [2010-11-02 07:07:06 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempyW7956.html [2010-11-01 21:47:49 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempK14104.html [2010-11-01 11:30:34 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempY14528.html [2010-10-31 18:02:58 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempLW2672.html [2010-10-31 11:02:43 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempIc3740.html [2010-10-30 22:31:14 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempMF3344.html [2010-10-30 11:59:57 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempv18252.html [2010-10-29 15:28:39 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempMG7540.html [2010-10-29 08:44:58 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempSu6672.html [2010-10-28 23:24:54 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempUQ2648.html [2010-10-28 17:32:28 | 000,310,984 | ---- | M] () -- C:\Windows\SysNative\drivers\atksgt.sys [2010-10-28 17:29:28 | 000,042,696 | ---- | M] () -- C:\Windows\SysNative\drivers\lirsgt.sys [2010-10-28 11:17:37 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempbE7780.html [2010-10-27 19:59:36 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempHN9120.html [2010-10-26 23:51:02 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempHx6276.html [2010-10-26 23:27:38 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempQQ8112.html [2010-10-25 22:20:31 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempFRE932.html [2010-10-25 10:08:45 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempvb4120.html [2010-10-24 22:23:09 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempbz2256.html [2010-10-24 00:14:20 | 000,001,927 | ---- | M] () -- C:\Users\Olenka\Desktop\DVD Cover Gold.lnk [2010-10-23 19:31:54 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempcc2544.html [2010-10-23 14:21:06 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempdE4960.html [2010-10-23 11:11:23 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempYx4896.html [2010-10-22 19:35:43 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempCK2560.html [2010-10-22 19:35:43 | 000,002,089 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempxx2560.html [2010-10-22 13:14:06 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempo19612.html [2010-10-21 23:10:07 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempbu1048.html [2010-10-21 21:59:30 | 001,499,266 | ---- | M] () -- C:\Users\Olenka\Documents\Wzory Umów.rar [2010-10-21 21:49:04 | 000,047,517 | ---- | M] () -- C:\Users\Olenka\Documents\PSY.jpg [2010-10-21 21:45:01 | 055,562,671 | ---- | M] () -- C:\Users\Olenka\Documents\aaaaaaaaaaaaaaaaaaaaaaaaaaaa.exe [2010-10-21 16:10:25 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempWg4564.html [2010-10-21 11:12:00 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempLu4464.html [2010-10-20 21:57:02 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\Tempu12212.html [2010-10-20 16:08:43 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempD17952.html [2010-10-19 20:28:16 | 000,002,432 | ---- | M] () -- C:\Users\Olenka\AppData\Local\TempK13332.html [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-12-16 23:24:09 | 000,001,833 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk [2010-12-15 12:32:58 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempmZc304.html [2010-12-15 00:04:10 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempPN4428.html [2010-12-07 23:45:10 | 007,793,152 | RHS- | C] () -- C:\ProgramData\gproton.exe [2010-12-06 01:04:28 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempKk1588.html [2010-12-05 12:12:49 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempRE3488.html [2010-12-04 00:00:11 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempob4372.html [2010-12-03 17:37:02 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll [2010-12-03 17:37:01 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini [2010-12-03 17:37:00 | 000,000,414 | ---- | C] () -- C:\Windows\SysWow64\lame_acm.xml [2010-12-03 17:36:59 | 000,790,528 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2010-12-03 17:36:59 | 000,134,144 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2010-12-03 17:36:59 | 000,108,032 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll [2010-12-03 17:36:59 | 000,000,547 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll.manifest [2010-12-03 17:05:05 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempAa4628.html [2010-12-03 02:13:11 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Temphp4412.html [2010-12-03 01:33:46 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempnw3120.html [2010-12-02 18:38:09 | 000,000,459 | ---- | C] () -- C:\Users\Olenka\opis.txt [2010-12-02 17:01:26 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TemppwU772.html [2010-12-02 15:40:14 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempgb4564.html [2010-12-02 13:43:06 | 000,000,268 | ---- | C] () -- C:\Windows\tasks\RMSchedule.job [2010-12-02 13:42:45 | 000,040,408 | ---- | C] () -- C:\Windows\SysNative\CleanMFT64.exe [2010-11-30 17:45:10 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempEc4136.html [2010-11-30 13:06:40 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempgb3944.html [2010-11-28 19:34:38 | 000,036,263 | ---- | C] () -- C:\Users\Olenka\Kontakty_8245827.xml [2010-11-28 19:33:17 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempjs4248.html [2010-11-27 00:11:39 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempxd2708.html [2010-11-26 19:51:59 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempCS2132.html [2010-11-26 12:27:38 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempFA2724.html [2010-11-25 21:37:46 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempHA3228.html [2010-11-25 13:17:16 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempSv3748.html [2010-11-25 07:13:05 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempzY3148.html [2010-11-24 20:03:28 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempRm1008.html [2010-11-24 17:39:26 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempbK2072.html [2010-11-24 14:59:17 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempfb3792.html [2010-11-24 00:07:40 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempsf4912.html [2010-11-23 17:28:16 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempe10684.html [2010-11-22 20:25:26 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempUW3292.html [2010-11-22 14:44:12 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempny4608.html [2010-11-21 19:08:38 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempuH4704.html [2010-11-21 14:57:56 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempf22744.html [2010-11-21 12:15:40 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Temps24936.html [2010-11-21 00:00:25 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempx22680.html [2010-11-20 16:40:19 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempo15984.html [2010-11-19 12:23:47 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempIy7432.html [2010-11-17 18:21:02 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempFR9244.html [2010-11-16 23:31:30 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempkI7516.html [2010-11-16 20:56:17 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempKt6848.html [2010-11-16 18:18:36 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempeS6288.html [2010-11-16 07:41:19 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempBQ2212.html [2010-11-15 07:31:37 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempJ12252.html [2010-11-15 07:31:37 | 000,002,089 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempM12252.html [2010-11-13 18:52:43 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempPV6368.html [2010-11-13 00:00:48 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempDj2008.html [2010-11-11 22:57:08 | 000,000,033 | ---- | C] () -- C:\Users\Olenka\Nowy dokument tekstowy.txt [2010-11-11 20:22:13 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempQJ1044.html [2010-11-11 14:51:46 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempc16348.html [2010-11-10 23:36:01 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempS21292.html [2010-11-10 22:45:21 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Temphl8148.html [2010-11-10 16:05:08 | 001,599,488 | ---- | C] () -- C:\mvf.mdb [2010-11-10 10:01:53 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempB16304.html [2010-11-09 07:36:03 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempra3320.html [2010-11-08 15:01:12 | 000,223,969 | ---- | C] () -- C:\Users\Olenka\Documents\Schemat połączeń kabli sieciowych w sieciach LAN.docx [2010-11-08 13:52:03 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempY14920.html [2010-11-08 12:43:48 | 000,015,802 | ---- | C] () -- C:\Users\Olenka\Documents\Pasmo Aster.docx [2010-11-07 14:07:24 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempjl3344.html [2010-11-06 12:42:05 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempyD6300.html [2010-11-06 11:34:23 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempG13924.html [2010-11-05 22:08:29 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempc15072.html [2010-11-04 23:56:19 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempKv8860.html [2010-11-04 14:02:23 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempZ14792.html [2010-11-03 14:51:52 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempKY7396.html [2010-11-03 12:57:34 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempyL8012.html [2010-11-02 18:39:30 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempM11832.html [2010-11-02 14:42:04 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TemprA8904.html [2010-11-02 11:57:27 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempk14120.html [2010-11-02 07:06:54 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempyW7956.html [2010-11-01 21:47:28 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempK14104.html [2010-11-01 11:30:14 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempY14528.html [2010-10-31 17:08:52 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempLW2672.html [2010-10-31 11:02:18 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempIc3740.html [2010-10-30 21:10:54 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempMF3344.html [2010-10-30 10:43:09 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempv18252.html [2010-10-29 13:46:02 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempMG7540.html [2010-10-29 08:44:48 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempSu6672.html [2010-10-28 17:29:31 | 000,310,984 | ---- | C] () -- C:\Windows\SysNative\drivers\atksgt.sys [2010-10-28 17:29:28 | 000,042,696 | ---- | C] () -- C:\Windows\SysNative\drivers\lirsgt.sys [2010-10-28 13:43:39 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempUQ2648.html [2010-10-28 11:17:18 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempbE7780.html [2010-10-27 15:03:16 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempHN9120.html [2010-10-26 23:38:31 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempHx6276.html [2010-10-26 23:27:15 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempQQ8112.html [2010-10-25 13:13:05 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempFRE932.html [2010-10-25 10:08:27 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempvb4120.html [2010-10-24 15:39:20 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempbz2256.html [2010-10-24 00:14:20 | 000,001,927 | ---- | C] () -- C:\Users\Olenka\Desktop\DVD Cover Gold.lnk [2010-10-23 19:10:43 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempcc2544.html [2010-10-23 11:47:17 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempdE4960.html [2010-10-23 11:10:58 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempYx4896.html [2010-10-22 19:35:04 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempCK2560.html [2010-10-22 19:35:04 | 000,002,089 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempxx2560.html [2010-10-22 13:12:40 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempo19612.html [2010-10-21 23:09:49 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempbu1048.html [2010-10-21 21:59:05 | 001,499,266 | ---- | C] () -- C:\Users\Olenka\Documents\Wzory Umów.rar [2010-10-21 21:48:51 | 000,047,517 | ---- | C] () -- C:\Users\Olenka\Documents\PSY.jpg [2010-10-21 21:37:39 | 055,562,671 | ---- | C] () -- C:\Users\Olenka\Documents\aaaaaaaaaaaaaaaaaaaaaaaaaaaa.exe [2010-10-21 13:05:19 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempWg4564.html [2010-10-21 09:55:05 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempLu4464.html [2010-10-20 21:13:47 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempu12212.html [2010-10-20 14:32:44 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempD17952.html [2010-10-19 20:27:57 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempK13332.html [2010-10-19 10:23:39 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempp12328.html [2010-10-19 06:54:02 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempf10216.html [2010-10-18 22:53:05 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempnM9852.html [2010-10-18 15:07:24 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Temphh3316.html [2010-10-18 10:17:23 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempDi2112.html [2010-10-17 20:59:28 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempcq4856.html [2010-10-17 11:10:49 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempUn1748.html [2010-10-16 12:40:56 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempX15300.html [2010-10-16 12:40:56 | 000,002,089 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempL15300.html [2010-10-15 22:42:03 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Templ11352.html [2010-10-15 19:25:52 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempMs9092.html [2010-10-15 11:31:31 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempThv356.html [2010-10-14 21:28:11 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempNZ2508.html [2010-10-14 13:03:49 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempTg1944.html [2010-10-13 21:17:23 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempZ12900.html [2010-10-13 18:11:30 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempCZ5792.html [2010-10-13 13:30:25 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempp12608.html [2010-10-13 10:25:01 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempyE7524.html [2010-10-12 20:50:50 | 000,001,286 | ---- | C] () -- C:\ProgramData\hpzinstall.log [2010-10-12 16:48:22 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempbW9932.html [2010-10-12 15:26:35 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempfu5408.html [2010-10-12 10:30:42 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempc10544.html [2010-10-11 21:40:49 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempfe9724.html [2010-10-11 18:42:18 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempyi7924.html [2010-10-11 10:43:17 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempC11220.html [2010-10-11 07:16:54 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempNY5352.html [2010-10-09 17:28:55 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempEj2744.html [2010-10-09 08:12:44 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Templs1260.html [2010-10-07 16:57:29 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempys4764.html [2010-10-07 09:29:36 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempfm4308.html [2010-10-06 06:42:29 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempaa1572.html [2010-10-05 16:04:13 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempB16096.html [2010-10-05 16:04:13 | 000,002,089 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempH16096.html [2010-10-04 13:16:20 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempu13748.html [2010-10-04 11:36:48 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempI11612.html [2010-10-04 10:21:40 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempy10124.html [2010-10-03 21:57:28 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempjB3596.html [2010-10-03 20:19:20 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempQU3972.html [2010-10-03 12:07:58 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempNY3252.html [2010-10-02 21:52:52 | 000,000,111 | ---- | C] () -- C:\Windows\target.ini [2010-10-01 22:15:54 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempaY7512.html [2010-10-01 19:21:09 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\Tempc11976.html [2010-09-30 17:14:55 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempS28044.html [2010-09-29 13:51:51 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempA31752.html [2010-09-28 09:25:05 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempqH9396.html [2010-09-26 23:25:36 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempEI2660.html [2010-09-25 21:00:36 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempSx2084.html [2010-09-24 12:51:58 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempO29564.html [2010-09-23 13:34:00 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempyV3980.html [2010-09-21 17:04:44 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempLD2696.html [2010-09-20 12:53:10 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempBA3736.html [2010-09-19 20:35:01 | 000,000,032 | ---- | C] () -- C:\Windows\WDIRECT.INI [2010-09-19 00:21:37 | 000,002,432 | ---- | C] () -- C:\Users\Olenka\AppData\Local\TempmN2228.html [2010-09-18 14:56:02 | 000,085,296 | ---- | C] () -- C:\Users\Olenka\AppData\Local\GDIPFONTCACHEV1.DAT [2010-09-18 13:00:44 | 003,722,600 | -H-- | C] () -- C:\Users\Olenka\AppData\Local\IconCache.db [2010-09-18 13:00:17 | 000,024,576 | R--- | C] () -- C:\Windows\SysWow64\AsIO.dll [2010-09-18 13:00:17 | 000,013,368 | R--- | C] () -- C:\Windows\SysWow64\drivers\AsIO.sys [2010-09-18 13:00:14 | 000,011,832 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsInsHelp64.sys [2010-09-18 13:00:14 | 000,010,216 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsInsHelp32.sys [2010-09-18 12:56:43 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini [2010-09-18 12:56:38 | 000,018,960 | ---- | C] () -- C:\Windows\Ascd_tmp.ini [2009-07-14 05:54:24 | 000,000,174 | -HS- | C] () -- C:\Program Files\desktop.ini [2009-07-14 05:54:24 | 000,000,174 | -HS- | C] () -- C:\Program Files (x86)\desktop.ini [2009-07-14 03:35:42 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini [2009-07-14 03:34:57 | 000,000,438 | ---- | C] () -- C:\Windows\win.ini [2009-07-14 03:34:57 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini [2009-07-14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009-07-13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009-04-02 13:30:14 | 000,010,296 | ---- | C] () -- C:\Windows\SysWow64\drivers\ASUSHWIO.SYS [color=#E56717]========== LOP Check ==========[/color] [2010-11-19 01:15:17 | 000,000,000 | -HSD | M] -- C:\Users\Olenka\AppData\Roaming\.# [2010-10-10 13:14:11 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\Ashampoo [2010-10-28 11:39:04 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\BESTplayer [2010-10-24 00:15:01 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\biu software [2010-09-19 11:13:28 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\DAEMON Tools Lite [2010-09-18 18:12:51 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\Gadu-Gadu 10 [2010-12-18 01:02:55 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\ipla [2010-12-16 23:24:11 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\Opera [2010-12-16 23:27:48 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\Tific [2010-12-16 07:52:34 | 000,000,000 | ---D | M] -- C:\Users\Olenka\AppData\Roaming\uTorrent [2010-12-04 19:09:11 | 000,000,268 | ---- | M] () -- C:\Windows\Tasks\RMSchedule.job [2009-07-14 06:08:49 | 000,021,766 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 102 bytes -> C:\ProgramData\Temp:D1B5B4F1 < End of report >