OTL logfile created on: 2012-12-18 01:08:14 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = D:\ Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,32 Gb Available Physical Memory | 77,38% Memory free 3,84 Gb Paging File | 3,21 Gb Available in Paging File | 83,40% Paging File free Paging file location(s): C:\pagefile.sys 1024 1024 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 19,86 Gb Total Space | 6,76 Gb Free Space | 34,03% Space Free | Partition Type: NTFS Drive D: | 54,69 Gb Total Space | 13,84 Gb Free Space | 25,31% Space Free | Partition Type: NTFS Drive F: | 56,12 Gb Total Space | 23,62 Gb Free Space | 42,08% Space Free | Partition Type: NTFS Drive G: | 55,66 Gb Total Space | 7,30 Gb Free Space | 13,11% Space Free | Partition Type: NTFS Computer Name: HAJASZ | User Name: Krzysztof Pietruszka | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-12-18 01:05:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\OTL.exe PRC - [2012-10-15 13:57:20 | 001,869,152 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe PRC - [2012-10-15 13:57:18 | 001,699,168 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe PRC - [2012-10-11 03:29:13 | 000,143,928 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Internet Security\Norton Internet Security\Engine\20.2.0.19\ccsvchst.exe PRC - [2012-09-29 22:49:24 | 000,792,608 | ---- | M] (Symantec) -- C:\Program Files\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe PRC - [2012-07-27 16:57:12 | 002,163,064 | ---- | M] (Condusiv Technologies) -- C:\Program Files\Condusiv Technologies\Diskeeper\DkService.exe PRC - [2012-05-04 18:29:46 | 000,161,664 | ---- | M] (Oracle Corporation) -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe PRC - [2008-04-14 21:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-09-24 22:50:00 | 000,020,360 | ---- | M] () -- C:\Program Files\Acronis\TrueImageHome\ti_managers_proxy_stub.dll MOD - [2012-05-30 07:51:08 | 000,699,280 | R--- | M] () -- C:\Program Files\Norton Internet Security\Norton Internet Security\Engine\20.2.0.19\wincfi39.dll MOD - [2011-09-27 06:23:00 | 000,087,912 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll MOD - [2011-09-27 06:22:40 | 001,242,472 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll MOD - [2011-03-16 23:11:16 | 004,297,568 | ---- | M] () -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2012-12-12 23:10:06 | 003,704,824 | ---- | M] (Acronis) [Disabled | Stopped] -- C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe -- (afcdpsrv) SRV - [2012-12-12 16:14:26 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-12-01 16:45:44 | 000,115,168 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-10-19 15:14:08 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012-10-15 13:57:18 | 001,699,168 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc) SRV - [2012-10-11 03:29:13 | 000,143,928 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Internet Security\Norton Internet Security\Engine\20.2.0.19\ccSvcHst.exe -- (NIS) SRV - [2012-09-29 22:50:02 | 001,160,224 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\Norton Utilities 16\Tools\SpeedDisk\SpeedDiskSrv.exe -- (SpeedDiskService) SRV - [2012-09-29 22:49:46 | 001,147,424 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\Norton Utilities 16\Tools\Disk Doctor\DiskDoctorSrv.exe -- (DiskDoctorService) SRV - [2012-09-29 22:49:24 | 000,792,608 | ---- | M] (Symantec) [Auto | Running] -- C:\Program Files\Symantec\Norton Utilities 16\sMonitor\StartManSvc.exe -- (NU16StartManagerSvc) SRV - [2012-09-24 22:46:40 | 000,814,104 | ---- | M] (Acronis) [On_Demand | Stopped] -- C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe -- (AcrSch2Svc) SRV - [2012-09-14 12:27:30 | 007,025,432 | ---- | M] (Acronis) [Disabled | Stopped] -- C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe -- (syncagentsrv) SRV - [2012-08-29 12:03:36 | 001,385,896 | ---- | M] (LogMeIn Inc.) [Disabled | Stopped] -- F:\Przemek\Śmieci\hamachi-2.exe -- (Hamachi2Svc) SRV - [2012-07-27 16:57:12 | 002,163,064 | ---- | M] (Condusiv Technologies) [Auto | Running] -- C:\Program Files\Condusiv Technologies\Diskeeper\DkService.exe -- (Diskeeper) SRV - [2012-05-04 18:29:46 | 000,161,664 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2011-12-22 18:11:20 | 000,818,952 | ---- | M] (ABBYY) [Disabled | Stopped] -- C:\Program Files\ABBYY FineReader 11\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Professional.11.0) SRV - [2011-06-12 10:15:00 | 031,125,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service) SRV - [2011-03-16 10:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2010-03-10 13:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) [Disabled | Stopped] -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2) SRV - [2009-06-13 23:31:07 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2012-12-17 22:44:17 | 001,601,184 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.0.24\Definitions\VirusDefs\20121217.003\navex15.sys -- (NAVEX15) DRV - [2012-12-17 22:44:17 | 000,106,656 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Unknown] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11220.sys -- (EraserUtilDrv11220) DRV - [2012-12-17 22:44:17 | 000,092,704 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.0.24\Definitions\VirusDefs\20121217.003\naveng.sys -- (NAVENG) DRV - [2012-12-12 23:10:08 | 000,234,752 | ---- | M] (Acronis) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\afcdp.sys -- (afcdp) DRV - [2012-12-12 23:10:02 | 000,806,184 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\tdrpman.sys -- (tdrpman) DRV - [2012-12-12 23:09:59 | 000,689,672 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\tib_mounter.sys -- (tib_mounter) DRV - [2012-12-12 23:09:54 | 000,139,336 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\vididr.sys -- (vididr) DRV - [2012-12-12 23:09:53 | 000,099,720 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\vidsflt.sys -- (vidsflt) DRV - [2012-12-12 23:09:50 | 000,192,904 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\snapman.sys -- (snapman) DRV - [2012-12-12 23:09:46 | 000,093,928 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\fltsrv.sys -- (fltsrv) DRV - [2012-11-26 00:34:53 | 000,020,712 | ---- | M] (REALiX(tm)) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\HWiNFO32.SYS -- (HWiNFO32) DRV - [2012-10-24 00:34:24 | 000,995,488 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.0.24\Definitions\BASHDefs\20121130.005\BHDrvx86.sys -- (BHDrvx86) DRV - [2012-10-09 02:00:02 | 000,586,400 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1402000.013\srtsp.sys -- (SRTSP) DRV - [2012-10-04 15:13:32 | 000,376,480 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl) DRV - [2012-10-04 02:40:35 | 000,927,904 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1402000.013\symefa.sys -- (SymEFA) DRV - [2012-10-04 02:40:20 | 000,368,288 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1402000.013\symds.sys -- (SymDS) DRV - [2012-10-04 02:19:14 | 000,134,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1402000.013\ccsetx86.sys -- (ccSet_NIS) DRV - [2012-09-19 10:50:50 | 000,010,088 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv) DRV - [2012-09-07 03:05:14 | 000,394,656 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1402000.013\symtdi.sys -- (SYMTDI) DRV - [2012-09-07 02:48:08 | 000,175,264 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1402000.013\ironx86.sys -- (SymIRON) DRV - [2012-09-06 00:09:53 | 000,142,496 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SYMEVENT.SYS -- (SymEvent) DRV - [2012-08-31 23:37:18 | 000,373,728 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.0.24\Definitions\IPSDefs\20121214.001\IDSXpx86.sys -- (IDSxpx86) DRV - [2012-07-09 13:54:56 | 000,085,328 | ---- | M] (Condusiv Technologies) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\DKTLFSMF.sys -- (DKTLFSMF) DRV - [2012-07-04 07:54:32 | 007,874,560 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2012-06-18 18:14:42 | 000,044,496 | ---- | M] (Condusiv Technologies) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\DKRtWrt.sys -- (DKRtWrt) DRV - [2012-05-24 22:36:56 | 000,032,888 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1402000.013\srtspx.sys -- (SRTSPX) DRV - [2012-04-05 01:32:52 | 000,035,120 | ---- | M] (Condusiv Technologies) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\DKDFM.sys -- (DKDFM) DRV - [2010-11-15 23:24:48 | 000,013,880 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\regi.sys -- (regi) DRV - [2010-08-24 18:31:18 | 000,028,624 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LUsbFilt.sys -- (LUsbFilt) DRV - [2010-08-24 18:30:52 | 000,038,864 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LHidFilt.Sys -- (LHidFilt) DRV - [2010-08-24 18:30:18 | 000,010,448 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE) DRV - [2010-01-29 11:40:04 | 000,082,320 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive) DRV - [2009-08-04 09:28:18 | 000,011,296 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO) DRV - [2009-07-06 09:48:02 | 000,011,448 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsUpIO.sys -- (AsUpIO) DRV - [2009-04-15 21:40:36 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2009-03-18 16:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2004-05-05 21:48:40 | 000,004,228 | ---- | M] (PowerQuest Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\PQNTDRV.sys -- (PQNTDrv) DRV - [2004-04-26 01:49:56 | 000,381,056 | R--- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt) DRV - [1999-09-10 11:06:00 | 000,025,244 | ---- | M] (Adaptec) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\ASPI32.SYS -- (ASPI32) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.com/spbasic.htm IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.com/spbasic.htm IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://securityresponse.symantec.com/avcenter/fix_homepage/ IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.com/spbasic.htm IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://securityresponse.symantec.com/avcenter/fix_homepage/ IE - HKU\S-1-5-21-507921405-746137067-1606980848-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.wp.pl/ IE - HKU\S-1-5-21-507921405-746137067-1606980848-1003\..\SearchScopes,DefaultScope = {21B8DC63-12E8-4293-93B9-5A6C88478AAD} IE - HKU\S-1-5-21-507921405-746137067-1606980848-1003\..\SearchScopes\{21B8DC63-12E8-4293-93B9-5A6C88478AAD}: "URL" = http://www.google.pl/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} IE - HKU\S-1-5-21-507921405-746137067-1606980848-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-507921405-746137067-1606980848-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local; IE - HKU\S-1-5-21-507921405-746137067-1606980848-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:8777;https=127.0.0.1:8777 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.wp.pl/" FF - prefs.js..extensions.enabledAddons: doudehou%40gmail.com:0.3.5 FF - prefs.js..extensions.enabledAddons: translator%40zoli.bod:2.1.0.3 FF - prefs.js..extensions.enabledAddons: %7B85E85FF9-E50C-42DE-8A3D-61485FD6C8DB%7D:2.0 FF - prefs.js..extensions.enabledAddons: %7B20a82645-c095-46ed-80e3-08825760534b%7D:0.0.0 FF - prefs.js..extensions.enabledAddons: %7B19503e42-ca3c-4c27-b1e2-9cdb2170ee34%7D:1.5.1 FF - prefs.js..extensions.enabledAddons: %7BBBDA0591-3099-440a-AA10-41764D9DB4DB%7D:11.1.1.5%20-%203 FF - prefs.js..extensions.enabledAddons: %7B2D3F3651-74B9-4795-BDEC-6DA2F431CB62%7D:2013.2.2.3 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0.1 FF - prefs.js..network.proxy.http: "127.0.0.1" FF - prefs.js..network.proxy.http_port: 8777 FF - prefs.js..network.proxy.no_proxies_on: "*.local" FF - prefs.js..network.proxy.ssl: "127.0.0.1" FF - prefs.js..network.proxy.ssl_port: 8777 FF - prefs.js..network.proxy.type: 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_135.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1167637.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.10.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@nosltd.com/getPlus+(R),version=1.6.2.91: File not found FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll () FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products Ltd.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.0.24\coFFPlgn\ [2012-12-18 00:56:33 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.0.24\IPSFFPlgn\ [2012-09-06 00:14:37 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-12-01 16:45:44 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-12-01 16:45:38 | 000,000,000 | ---D | M] [2011-08-11 19:36:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Extensions [2012-12-09 21:43:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Firefox\Profiles\jq6eehm6.default\extensions [2012-05-31 18:05:05 | 000,000,000 | ---D | M] (StatusbarEx) -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Firefox\Profiles\jq6eehm6.default\extensions\doudehou@gmail.com [2012-10-26 19:58:54 | 000,060,290 | ---- | M] () (No name found) -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Firefox\Profiles\jq6eehm6.default\extensions\translator@zoli.bod.xpi [2012-12-09 21:43:45 | 000,347,581 | ---- | M] () (No name found) -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Firefox\Profiles\jq6eehm6.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2012-03-26 23:24:05 | 000,011,801 | ---- | M] () (No name found) -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Firefox\Profiles\jq6eehm6.default\extensions\{85E85FF9-E50C-42DE-8A3D-61485FD6C8DB}.xpi [2012-11-23 21:51:52 | 000,804,627 | ---- | M] () (No name found) -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Firefox\Profiles\jq6eehm6.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2012-12-01 16:45:36 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-12-18 00:56:33 | 000,000,000 | ---D | M] (Norton Toolbar) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.0.24\COFFPLGN [2012-09-06 00:14:37 | 000,000,000 | ---D | M] (Norton Vulnerability Protection) -- C:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_20.1.0.24\IPSFFPLGN [2009-07-30 23:57:28 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION [2012-12-01 16:45:44 | 000,262,112 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [1999-12-31 16:00:00 | 000,166,680 | ---- | M] (Tracker Software Products Ltd.) -- C:\Program Files\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll [2012-10-11 21:04:49 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-10-11 21:04:49 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-10-11 21:04:49 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-10-11 21:04:49 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-10-11 21:04:49 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-10-11 21:04:49 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2012-12-12 23:12:24 | 000,000,063 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 activation.acronis.com O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Norton Internet Security\Engine\20.2.0.19\coieplg.dll (Symantec Corporation) O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Norton Internet Security\Engine\20.2.0.19\ips\ipsbho.dll (Symantec Corporation) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (SimpleAdblock Class) - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Common Files\Simple Adblock\SimpleAdblock.dll (Simple Adblock) O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Norton Internet Security\Engine\20.2.0.19\coieplg.dll (Symantec Corporation) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108847 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 43 01 00 00 [binary data] O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 43 01 00 00 [binary data] O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-507921405-746137067-1606980848-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-507921405-746137067-1606980848-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 0 O7 - HKU\S-1-5-21-507921405-746137067-1606980848-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-507921405-746137067-1606980848-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108847 O7 - HKU\S-1-5-21-507921405-746137067-1606980848-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 43 01 00 00 [binary data] O7 - HKU\S-1-5-21-507921405-746137067-1606980848-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogOff = 1 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Add to VideoGet - {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - C:\Program Files\Nuclear Coffee\VideoGet\Plugins\VideoGet_IE.dll () O9 - Extra 'Tools' menuitem : Add to &VideoGet - {88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - C:\Program Files\Nuclear Coffee\VideoGet\Plugins\VideoGet_IE.dll () O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O15 - HKU\S-1-5-21-507921405-746137067-1606980848-1003\..Trusted Domains: microsoft.com ([update] http in Zaufane witryny) O15 - HKU\S-1-5-21-507921405-746137067-1606980848-1003\..Trusted Domains: microsoft.com ([windowsupdate] http in Zaufane witryny) O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D8AA4231-029E-483D-9A1E-B7CD82BC324C}: DhcpNameServer = 178.252.20.65 217.197.78.1 217.197.77.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Firefox\Tapeta pulpitu.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mozilla\Firefox\Tapeta pulpitu.bmp O27 - HKLM IFEO\bonus.screenshotreader.exe: Debugger - C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe (TuneUp Software) O27 - HKLM IFEO\finereader.exe: Debugger - C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe (TuneUp Software) O27 - HKLM IFEO\hamachi-2-ui.exe: Debugger - C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe (TuneUp Software) O27 - HKLM IFEO\presentationhost.exe: Debugger - C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe (TuneUp Software) O27 - HKLM IFEO\windvd.exe: Debugger - C:\Program Files\TuneUp Utilities 2013\TUAutoReactivator32.exe (TuneUp Software) O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found. O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-08-27 18:36:34 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-12-18 00:53:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\CSC [2012-12-17 00:32:56 | 000,000,000 | ---D | C] -- C:\Program Files\iPod [2012-12-17 00:32:53 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes [2012-12-17 00:32:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\188F1432-103A-4ffb-80F1-36B633C5C9E1 [2012-12-15 01:02:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData [2012-12-15 00:28:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Norton Utilities 16 [2012-12-15 00:05:54 | 000,000,000 | ---D | C] -- F:\Moje dokumenty\Norton Utilities 16 [2012-12-15 00:05:11 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml4a.dll [2012-12-15 00:05:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Norton Utilities 16 [2012-12-15 00:05:10 | 001,101,824 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBox210.ocx [2012-12-15 00:05:10 | 000,212,992 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBoxVB12.ocx [2012-12-15 00:05:09 | 000,880,640 | ---- | C] (Woodbury Associates Limited) -- C:\WINDOWS\System32\UniBox10.ocx [2012-12-14 21:13:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Product_NU16 [2012-12-14 00:43:37 | 000,260,528 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2012-12-14 00:43:37 | 000,143,872 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2012-12-14 00:43:24 | 000,174,000 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2012-12-14 00:43:24 | 000,173,992 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2012-12-14 00:43:24 | 000,093,640 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2012-12-12 23:17:59 | 000,000,000 | ---D | C] -- F:\Moje dokumenty\Citroen [2012-12-12 23:17:58 | 000,000,000 | R--D | C] -- F:\Moje dokumenty\Moje wideo [2012-12-12 23:17:58 | 000,000,000 | R--D | C] -- F:\Moje dokumenty\Moje obrazy [2012-12-12 23:17:58 | 000,000,000 | R--D | C] -- F:\Moje dokumenty\Moja muzyka [2012-12-12 23:17:51 | 000,000,000 | ---D | C] -- F:\Moje dokumenty\My Downloaded Video [2012-12-12 23:17:28 | 000,000,000 | ---D | C] -- F:\Moje dokumenty\My ISO Files [2012-12-12 23:17:28 | 000,000,000 | ---D | C] -- F:\Moje dokumenty\My Games [2012-12-12 23:17:27 | 000,000,000 | ---D | C] -- F:\Moje dokumenty\Symantec [2012-12-12 23:17:27 | 000,000,000 | ---D | C] -- F:\Moje dokumenty\Red Kawa [2012-12-12 23:17:27 | 000,000,000 | ---D | C] -- F:\Moje dokumenty\Nowy folder [2012-12-12 23:13:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Acronis [2012-12-12 23:10:08 | 000,234,752 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\afcdp.sys [2012-12-12 23:10:02 | 000,806,184 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\tdrpman.sys [2012-12-12 23:09:59 | 000,689,672 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\tib_mounter.sys [2012-12-12 23:09:54 | 000,139,336 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\vididr.sys [2012-12-12 23:09:53 | 000,099,720 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\vidsflt.sys [2012-12-12 23:09:50 | 000,192,904 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\snapman.sys [2012-12-12 23:09:46 | 000,093,928 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\fltsrv.sys [2012-12-12 23:09:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Acronis [2012-12-12 23:09:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Acronis [2012-12-12 23:09:25 | 000,000,000 | ---D | C] -- C:\Program Files\Acronis [2012-12-12 23:09:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Acronis [2012-12-06 01:07:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Krzysztof Pietruszka\Menu Start\Programy\Ashampoo [2012-12-06 01:05:59 | 000,000,000 | ---D | C] -- C:\Program Files\Ashampoo [2012-12-02 01:13:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Driver Fusion [2012-12-02 01:13:47 | 000,000,000 | ---D | C] -- C:\Program Files\Driver Fusion [2012-12-01 16:45:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2012-11-30 00:41:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\QuickTime [2012-11-26 00:34:53 | 000,020,712 | ---- | C] (REALiX(tm)) -- C:\WINDOWS\System32\drivers\HWiNFO32.SYS [2012-11-26 00:34:06 | 000,000,000 | ---D | C] -- C:\Program Files\HWiNFO32 [2012-11-26 00:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\HWiNFO32 [2012-11-25 15:21:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Krzysztof Pietruszka\Ustawienia lokalne\Dane aplikacji\LightAlloy [2012-11-25 15:21:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Krzysztof Pietruszka\Menu Start\Programy\Light Alloy [2012-11-25 15:21:23 | 000,000,000 | ---D | C] -- C:\Program Files\Light Alloy [2012-11-18 18:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\K-Lite Codec Pack [2012-11-18 18:32:02 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-12-18 01:12:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-12-18 01:00:52 | 000,556,094 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-12-18 01:00:52 | 000,494,030 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-12-18 01:00:52 | 000,105,250 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-12-18 01:00:52 | 000,084,574 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-12-18 00:57:26 | 000,000,266 | ---- | M] () -- C:\WINDOWS\tasks\AutoKMS.job [2012-12-18 00:56:08 | 000,000,306 | ---- | M] () -- C:\WINDOWS\tasks\NUAutoUpdate.job [2012-12-18 00:55:30 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-12-17 23:33:26 | 000,000,348 | ---- | M] () -- C:\WINDOWS\tasks\SpeedDiskSchedule.job [2012-12-17 21:02:55 | 000,139,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2012-12-17 21:02:49 | 000,281,768 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2012-12-17 16:48:20 | 000,281,768 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.ex0 [2012-12-15 13:00:20 | 000,002,267 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2012-12-15 00:55:18 | 012,197,888 | ---- | M] () -- C:\Documents and Settings\Krzysztof Pietruszka\s-1-5-21-507921405-746137067-1606980848-1003.rrr [2012-12-14 00:43:08 | 000,093,640 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2012-12-14 00:43:07 | 000,859,072 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\npdeployJava1.dll [2012-12-14 00:43:07 | 000,779,704 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\deployJava1.dll [2012-12-14 00:43:07 | 000,260,528 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2012-12-14 00:43:07 | 000,174,000 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2012-12-14 00:43:07 | 000,173,992 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2012-12-14 00:43:07 | 000,143,872 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2012-12-12 23:10:08 | 000,234,752 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\afcdp.sys [2012-12-12 23:10:02 | 000,806,184 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\tdrpman.sys [2012-12-12 23:09:59 | 000,689,672 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\tib_mounter.sys [2012-12-12 23:09:54 | 000,139,336 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\vididr.sys [2012-12-12 23:09:53 | 000,099,720 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\vidsflt.sys [2012-12-12 23:09:50 | 000,192,904 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\snapman.sys [2012-12-12 23:09:46 | 000,093,928 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\fltsrv.sys [2012-12-12 16:14:21 | 000,697,272 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-12-12 16:14:21 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-12-12 12:38:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2012-12-10 11:38:39 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-12-09 18:54:14 | 002,999,278 | ---- | M] () -- F:\Moje dokumenty\jack_nicholson____by_robertobizama-d4nzons.jpg [2012-12-04 20:42:35 | 000,198,144 | ---- | M] () -- C:\Documents and Settings\Krzysztof Pietruszka\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-12-02 23:38:42 | 000,068,365 | ---- | M] () -- F:\Moje dokumenty\Peter-Stormare-peter-stormare-4353898-1024-768.jpg [2012-12-02 00:51:47 | 001,841,253 | ---- | M] () -- F:\Moje dokumenty\ernest_borgnine_by_robertobizama-d4j4flx.jpg [2012-12-02 00:48:57 | 001,886,477 | ---- | M] () -- F:\Moje dokumenty\jack_black_by_robertobizama-d45ra84.jpg [2012-12-02 00:48:48 | 003,032,119 | ---- | M] () -- F:\Moje dokumenty\chuck_norris_by_robertobizama-d4hyyiu.jpg [2012-12-02 00:45:51 | 002,164,397 | ---- | M] () -- F:\Moje dokumenty\the_godfather__by_robertobizama-d4zq2nn.jpg [2012-12-02 00:45:11 | 003,351,331 | ---- | M] () -- F:\Moje dokumenty\machete_jonny_trejo_by_robertobizama-d53e51g.jpg [2012-12-02 00:44:02 | 001,613,361 | ---- | M] () -- F:\Moje dokumenty\bryancranston_by_robertobizama-d5b2m36.jpg [2012-11-26 00:34:53 | 000,020,712 | ---- | M] (REALiX(tm)) -- C:\WINDOWS\System32\drivers\HWiNFO32.SYS [2012-11-25 15:21:26 | 000,000,499 | ---- | M] () -- C:\Documents and Settings\Krzysztof Pietruszka\Pulpit\Light Alloy.lnk [2012-11-21 20:08:47 | 000,061,897 | ---- | M] () -- C:\Documents and Settings\Krzysztof Pietruszka\Pulpit\1.pdf [2012-11-21 20:06:11 | 000,000,680 | ---- | M] () -- C:\WINDOWS\AUTOLNCH.REG [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-12-17 23:33:26 | 000,000,348 | ---- | C] () -- C:\WINDOWS\tasks\SpeedDiskSchedule.job [2012-12-15 00:54:48 | 012,197,888 | ---- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\s-1-5-21-507921405-746137067-1606980848-1003.rrr [2012-12-15 00:05:54 | 000,000,306 | ---- | C] () -- C:\WINDOWS\tasks\NUAutoUpdate.job [2012-12-15 00:05:10 | 000,037,920 | ---- | C] () -- C:\WINDOWS\System32\CleanMFT32.exe [2012-12-09 18:56:47 | 002,999,278 | ---- | C] () -- F:\Moje dokumenty\jack_nicholson____by_robertobizama-d4nzons.jpg [2012-12-02 23:40:49 | 000,068,365 | ---- | C] () -- F:\Moje dokumenty\Peter-Stormare-peter-stormare-4353898-1024-768.jpg [2012-12-02 00:53:45 | 003,351,331 | ---- | C] () -- F:\Moje dokumenty\machete_jonny_trejo_by_robertobizama-d53e51g.jpg [2012-12-02 00:53:45 | 003,032,119 | ---- | C] () -- F:\Moje dokumenty\chuck_norris_by_robertobizama-d4hyyiu.jpg [2012-12-02 00:53:45 | 002,164,397 | ---- | C] () -- F:\Moje dokumenty\the_godfather__by_robertobizama-d4zq2nn.jpg [2012-12-02 00:53:45 | 001,886,477 | ---- | C] () -- F:\Moje dokumenty\jack_black_by_robertobizama-d45ra84.jpg [2012-12-02 00:53:45 | 001,841,253 | ---- | C] () -- F:\Moje dokumenty\ernest_borgnine_by_robertobizama-d4j4flx.jpg [2012-12-02 00:53:45 | 001,613,361 | ---- | C] () -- F:\Moje dokumenty\bryancranston_by_robertobizama-d5b2m36.jpg [2012-11-25 15:21:24 | 000,000,499 | ---- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\Pulpit\Light Alloy.lnk [2012-11-21 20:07:19 | 000,061,897 | ---- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\Pulpit\1.pdf [2012-11-09 00:44:18 | 000,242,968 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2012-11-09 00:09:09 | 000,000,173 | ---- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\Ustawienia lokalne\Dane aplikacji\msmathematics.qat.Krzysztof Pietruszka [2012-11-08 00:36:25 | 000,451,680 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-10-17 20:10:53 | 000,003,735 | ---- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\Kontakty_2692525.xml [2012-10-10 21:36:02 | 000,178,688 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2012-06-11 00:02:15 | 001,670,190 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-507921405-746137067-1606980848-1003-0.dat [2012-06-07 01:40:25 | 000,396,166 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2012-04-18 16:57:04 | 000,000,022 | -HS- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Windows1569_SettingsRepository.bin [2012-04-18 16:57:04 | 000,000,022 | -HS- | C] () -- C:\WINDOWS\90C7D912BE2316.sys [2012-04-02 11:04:52 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2012-03-28 08:33:14 | 000,000,012 | ---- | C] () -- C:\WINDOWS\System32\EvGr_Data{AA5B4999-2341-11E1-8EC6-001C2398CECB}.dat [2012-01-24 13:17:25 | 002,434,856 | ---- | C] () -- C:\WINDOWS\System32\pbsvc_bc2.exe [2012-01-15 18:09:01 | 000,001,115 | ---- | C] () -- C:\WINDOWS\SwiftShader.ini [2011-12-23 22:17:07 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin [2011-12-23 22:15:29 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe [2011-12-23 22:15:20 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat [2011-12-23 22:15:19 | 000,000,003 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat [2011-12-23 22:15:18 | 003,107,788 | R--- | C] () -- C:\WINDOWS\System32\ativvaxx.dat [2011-12-23 22:15:18 | 000,618,823 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat [2011-12-19 01:35:42 | 000,006,272 | ---- | C] () -- C:\WINDOWS\System32\RW_{AA5B4998-2341-11E1-8EC6-001C2398CECB}.dat [2011-12-19 01:35:42 | 000,000,560 | ---- | C] () -- C:\WINDOWS\System32\RW_{AA5B4999-2341-11E1-8EC6-001C2398CECB}.dat [2011-12-10 17:53:51 | 000,000,148 | ---- | C] () -- C:\WINDOWS\QIII.INI [2011-12-05 22:04:00 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\OpenVideo.dll [2011-12-05 22:03:52 | 000,054,784 | ---- | C] () -- C:\WINDOWS\System32\OVDecode.dll [2011-11-07 23:05:59 | 000,139,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2011-11-07 23:05:32 | 000,281,768 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2011-11-07 23:05:31 | 000,076,888 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2011-10-29 21:06:54 | 001,324,032 | ---- | C] () -- C:\WINDOWS\is-CN43B.exe [2011-10-25 21:21:34 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\OVDecoder.dll [2011-04-01 18:52:24 | 000,000,022 | -HS- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Sys2662.Config.Repository.bin [2011-03-01 20:23:11 | 000,000,052 | ---- | C] () -- C:\WINDOWS\SW_Win9423X24.DLL [2010-05-23 11:52:58 | 000,138,056 | ---- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\PnkBstrK.sys [2009-04-16 01:00:02 | 000,005,070 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\KGyGaAvL.sys [2009-04-16 01:00:02 | 000,000,168 | RHS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\E0D02ACCDA.sys [2008-08-27 19:38:37 | 000,198,144 | ---- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2001-12-12 01:28:51 | 000,000,176 | ---- | C] () -- C:\Documents and Settings\Krzysztof Pietruszka\hpsfx.ini [color=#E56717]========== ZeroAccess Check ==========[/color] [2008-08-27 19:03:55 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-14 21:50:48 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 11:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 21:50:58 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2012-12-17 00:33:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\188F1432-103A-4ffb-80F1-36B633C5C9E1 [2012-12-12 23:26:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Acronis [2012-12-06 01:06:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ashampoo [2012-07-17 20:27:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Autodesk [2012-11-08 00:17:48 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2012-09-08 15:18:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Condusiv Technologies [2010-03-12 00:05:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DriverScanner [2011-03-31 20:10:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EA Core [2011-03-31 20:10:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts [2010-08-20 10:11:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2011-12-11 23:48:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GameScannerData [2012-01-25 23:54:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit [2011-01-04 01:10:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2012-01-11 22:40:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Panda Security [2009-09-05 12:33:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PCSettings [2012-12-18 00:56:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-08-24 20:27:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tracker Software [2012-11-08 00:18:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TuneUp Software [2012-11-08 00:22:11 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16} [2012-11-08 00:22:11 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{32364CEA-7855-4A3C-B674-53D8E9B97936} [2012-11-08 00:22:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2012-11-08 00:22:11 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} [2012-08-04 17:21:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\.minecraft [2011-10-19 20:44:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\.wtw [2012-12-12 23:13:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Acronis [2011-11-23 10:55:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Ashampoo [2012-07-17 20:27:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Autodesk [2010-10-14 23:35:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\BITS [2012-09-08 15:35:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Condusiv_Technologies [2011-03-12 17:25:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\EAC [2012-12-17 20:00:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\foobar2000 [2011-02-07 00:24:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\FreeAudioPack [2008-08-27 19:30:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Gadu-Gadu [2012-03-26 19:52:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Gadu-Gadu 10 [2011-12-12 21:55:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\GameScannerData [2011-11-06 18:27:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\GG Tools [2010-09-09 14:49:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\inkscape [2009-07-26 19:40:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\IrfanView [2011-01-15 17:34:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Leadertech [2012-12-16 17:53:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Mp3tag [2012-10-27 22:58:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\NapiProjekt [2009-06-11 13:09:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\NewsLeecher [2009-07-12 16:30:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\NewzToolz-EZ [2012-03-26 23:26:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Nuclear Coffee [2010-06-25 20:58:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\OpenFM [2012-02-20 00:14:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Oracle [2012-12-14 21:13:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Product_NU16 [2012-03-07 23:25:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\PunkBuster [2012-12-11 14:26:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Simple Adblock [2009-07-12 16:13:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\SuperNZB [2009-11-20 07:41:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\Tific [2012-11-08 00:18:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\TuneUp Software [2009-10-11 00:10:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\URSoft [2012-12-16 16:05:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Krzysztof Pietruszka\Dane aplikacji\uTorrent [2012-09-07 20:02:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Simple Adblock [2011-01-19 22:24:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\TuneUp Software [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 199 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:1CE11B51 @Alternate Data Stream - 184 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:B3D74A13 @Alternate Data Stream - 136 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:8CE646EE @Alternate Data Stream - 130 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:B755D674 @Alternate Data Stream - 128 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:EAD001CC @Alternate Data Stream - 128 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:792D4CF1 < End of report >