ComboFix 11-01-22.03 - User 2011-01-23 17:30:27.10.2 - x86 Microsoft Windows XP Professional 5.1.2600.3.1250.48.1045.18.2046.1545 [GMT 1:00] Uruchomiony z: D:\Documents and Settings\User\Moje dokumenty\Downloads\ComboFix.exe AV: Kaspersky Internet Security *Disabled/Updated* {2C4D4BC6-0793-4956-A9F9-E252435469C0} FW: Kaspersky Internet Security *Disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0} . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\Documents and Settings\User\Dane aplikacji\Microsoft\conhost.exe C:\Documents and Settings\User\Menu Start\Programy\System Tool C:\Documents and Settings\User\Menu Start\Programy\System Tool\System Tool 2011.lnk D:\install.exe . ((((((((((((((((((((((((( Pliki utworzone od 2010-12-23 do 2011-01-23 ))))))))))))))))))))))))))))))) . 2011-01-23 08:45:08 . 2011-01-23 08:45:08 -------- d-sh--w- C:\Documents and Settings\LocalService\IETldCache 2011-01-23 08:36:51 . 2010-10-05 19:26:50 109240 ----a-w- C:\Program Files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru\components\abhelperxpcom.dll 2011-01-22 22:37:40 . 2011-01-22 22:37:40 -------- d-----w- C:\Program Files\Common Files\Java 2011-01-22 22:37:29 . 2011-01-22 22:37:29 -------- d-----w- C:\Program Files\Sun 2011-01-22 22:37:23 . 2011-01-22 22:37:15 73728 ----a-w- C:\WINDOWS\system32\javacpl.cpl 2011-01-22 22:37:23 . 2011-01-22 22:37:15 472808 ----a-w- C:\WINDOWS\system32\deployJava1.dll 2011-01-22 22:37:23 . 2011-01-22 22:37:15 472808 ----a-w- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll 2011-01-22 20:49:42 . 2011-01-22 23:35:48 -------- d-----w- C:\Program Files\Malwarebytes' Anti-Malware 2011-01-22 20:35:20 . 2011-01-22 20:53:13 -------- d-----w- C:\Documents and Settings\All Users\Dane aplikacji\aFdNn13000 2011-01-21 15:14:03 . 2011-01-21 15:14:03 -------- d-----w- C:\Program Files\Common Files\Adobe 2011-01-21 15:12:04 . 2011-01-21 15:12:04 -------- d-----w- C:\Program Files\Common Files\Adobe AIR 2011-01-21 15:09:06 . 2011-01-21 15:09:06 -------- d-----w- C:\Documents and Settings\User\Moje dokumenty 2011-01-20 20:51:08 . 2011-01-20 20:51:08 -------- d-----w- C:\Documents and Settings\User\Dane aplikacji\Malwarebytes 2011-01-20 20:51:02 . 2011-01-20 20:51:02 -------- d-----w- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes 2011-01-18 16:12:14 . 2003-05-27 22:41:36 67481 ----a-w- C:\Program Files\Common Files\Microsoft Shared\OFFICE11\Anti-MSOPA.exe 2011-01-11 08:53:46 . 2011-01-11 08:53:46 98304 ----a-w- C:\WINDOWS\system32\CmdLineExt.dll 2011-01-11 08:43:49 . 2004-10-22 01:18:12 749568 ----a-w- C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll 2011-01-11 08:43:49 . 2004-10-22 01:17:48 69715 ----a-w- C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll 2011-01-11 08:43:49 . 2004-10-22 01:17:04 274432 ----a-w- C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll 2011-01-11 08:43:49 . 2004-10-22 01:16:28 180224 ----a-w- C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll 2011-01-11 08:43:49 . 2004-10-22 01:16:10 5632 ----a-w- C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe 2011-01-11 08:43:45 . 2011-01-11 08:43:45 192644 ----a-w- C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll 2011-01-11 08:43:44 . 2011-01-11 08:43:44 323716 ----a-w- C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll 2011-01-10 10:31:41 . 2011-01-10 10:31:41 -------- d-----w- C:\Documents and Settings\All Users\Dane aplikacji\AA3DeployClient 2011-01-09 23:05:06 . 2011-01-10 10:31:58 -------- d-----w- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\AA3DeployClient 2011-01-09 22:05:22 . 2011-01-09 22:05:22 -------- d-----w- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\THQ 2011-01-09 22:02:11 . 2011-01-10 10:31:42 -------- d-----w- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Deployment 2011-01-09 21:49:25 . 2011-01-18 16:06:17 -------- d-----w- C:\Program Files\Microsoft.NET 2011-01-09 21:23:26 . 2011-01-09 21:23:26 -------- d-----w- C:\Documents and Settings\All Users\Dane aplikacji\Nexon 2011-01-03 16:32:14 . 2011-01-03 16:32:14 -------- d-----w- C:\Program Files\iPod 2011-01-03 16:32:11 . 2011-01-03 16:32:33 -------- d-----w- C:\Program Files\iTunes 2011-01-03 16:32:11 . 2011-01-03 16:32:33 -------- d-----w- C:\Documents and Settings\All Users\Dane aplikacji\{429CAD59-35B1-4DBC-BB6D-1DB246563521} 2011-01-03 16:29:56 . 2011-01-03 16:29:56 -------- d-----w- C:\Documents and Settings\LocalService\Dane aplikacji\Apple Computer 2011-01-03 16:29:19 . 2011-01-03 16:29:20 -------- d-----w- C:\Program Files\Bonjour 2010-12-29 22:25:56 . 2010-12-29 22:41:43 -------- d-----w- C:\Documents and Settings\User\Tracing . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2011-01-21 15:22:37 . 2008-12-21 22:38:07 138416 ----a-w- C:\WINDOWS\system32\drivers\PnkBstrK.sys 2011-01-21 15:22:33 . 2009-03-28 23:21:13 270904 ----a-w- C:\WINDOWS\system32\PnkBstrB.xtr 2011-01-21 15:22:33 . 2008-12-21 22:37:31 270904 ----a-w- C:\WINDOWS\system32\PnkBstrB.exe 2011-01-10 10:41:06 . 2008-12-21 22:38:08 75136 ----a-w- C:\WINDOWS\system32\PnkBstrA.exe 2011-01-10 10:40:58 . 2008-12-21 22:37:31 271200 ----a-w- C:\WINDOWS\system32\PnkBstrB.ex0 2011-01-10 07:07:18 . 2009-03-28 22:40:04 138056 ----a-w- C:\Documents and Settings\User\Dane aplikacji\PnkBstrK.sys 2011-01-10 03:40:21 . 2010-09-02 23:34:34 3360624 ----a-w- C:\WINDOWS\system32\pbsvc.exe 2010-11-29 16:38:30 . 2010-11-29 16:38:30 94208 ----a-w- C:\WINDOWS\system32\QuickTimeVR.qtx 2010-11-29 16:38:30 . 2010-11-29 16:38:30 69632 ----a-w- C:\WINDOWS\system32\QuickTime.qts . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Gadu-Gadu"="D:\Program Files\Gadu-Gadu\gg.exe" [2008-03-20 10:04:46 2127296] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDCPL"="RTHDCPL.EXE" [2007-09-19 10:14:58 16844800] "JMB36X IDE Setup"="C:\WINDOWS\RaidTool\xInsIDE.exe" [2007-03-20 06:36:18 36864] "36X Raid Configurer"="C:\WINDOWS\system32\xRaidSetup.exe" [2007-08-29 08:55:24 1966080] "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2006-02-19 01:41:10 49152] "StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-07-06 19:19:50 98304] "ATICustomerCare"="C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-03-04 12:31:54 311296] "OrderReminder"="C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe" [2005-03-18 11:18:56 98304] "RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 19:24:46 32768] "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 23:47:42 31016] "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2010-11-29 16:38:18 421888] "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2010-11-10 11:49:36 35736] "Adobe ARM"="C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-11-10 11:49:34 932288] "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe" [2010-05-14 10:44:46 248552] "AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" [2010-11-02 21:06:06 365336] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 21:51:12 15360] [HKLM\~\startupfolder\C:^Documents and Settings^User^Menu Start^Programy^Autostart^Yahoo! Widgets.lnk] path=C:\Documents and Settings\User\Menu Start\Programy\Autostart\Yahoo! Widgets.lnk backup=C:\WINDOWS\pss\Yahoo! Widgets.lnkStartup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gadu-Gadu] 2008-03-20 10:04:46 2127296 ----a-w- D:\Program Files\Gadu-Gadu\gg.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update] 2010-08-20 14:09:31 136176 ----atw- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IPLA!] 2010-09-17 16:03:24 17438712 ----a-w- C:\Program Files\ipla\ipla.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper] 2010-12-13 16:16:18 421160 ----a-w- C:\Program Files\iTunes\iTunesHelper.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr] 2009-07-26 14:44:34 3883856 ----a-w- C:\Program Files\Windows Live\Messenger\msnmsgr.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype] 2010-09-02 13:15:04 13351304 ----a-r- C:\Program Files\Skype\Phone\Skype.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "iPod Service"=3 (0x3) "gupdate1ca0bcc856b6f88"=2 (0x2) "Bonjour Service"=2 (0x2) "Apple Mobile Device"=2 (0x2) [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-] "MSMSGS"="C:\Program Files\Messenger\Msmsgs.exe" /background "ALLUpdate"="C:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "WinampAgent"="C:\Program Files\Winamp\winampa.exe" "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" -atboottime [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "C:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"= "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "C:\\WINDOWS\\system32\\sessmgr.exe"= "C:\\Program Files\\uTorrent\\uTorrent.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "%windir%\\system32\\sessmgr.exe"= "C:\\WINDOWS\\system32\\PnkBstrA.exe"= "C:\\WINDOWS\\system32\\PnkBstrB.exe"= "C:\\Program Files\\Messenger\\Msmsgs.exe"= "C:\\Program Files\\Mozilla Firefox\\firefox.exe"= "C:\\Program Files\\SopCast\\SopCast.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"= "C:\\Program Files\\Java\\jre6\\bin\\java.exe"= "D:\\Starcraft_Brood_War\\Starcraft Brood War\\StarCraft.exe"= "D:\\Warcraft III\\Warcraft III.exe"= "D:\\Program Files\\Armia Podkarpacki OTS\\Tibia.exe"= "C:\\WINDOWS\\system32\\dplaysvr.exe"= "D:\\COD 4\\iw3mp.exe"= "D:\\Battlefield Bad Company 2\\BFBC2Updater.exe"= "C:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"= "C:\Program Files\Microsoft ActiveSync\rapimgr.exe"= C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"= C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"= C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application "D:\\Program Files\\Tibia Cam\\TibiaCam\\TibiaCam\\TibiCAM.exe"= "C:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"= "D:\\Battlefield Bad Company 2\\BFBC2Game.exe"= "C:\\Program Files\\Google\\Google Earth\\plugin\\geplugin.exe"= "D:\\pazur\\CLAW.EXE"= "D:\\Program Files\\RockNES X\\RockNESX.exe"= "C:\\WINDOWS\\system32\\dpnsvr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "D:\\Program Files\\2K Sports\\NBA 2K11\\nba2k11.exe"= "D:\\Football Manager 2011\\fm.exe"= "C:\\Program Files\\Bonjour\\mDNSResponder.exe"= "C:\\Program Files\\iTunes\\iTunes.exe"= "C:\\Documents and Settings\\All Users\\Dane aplikacji\\NexonEU\\NGM\\NGM.exe"= "C:\\Program Files\\Skype\\Phone\\Skype.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service "1039:TCP"= 1039:TCP:Akamai NetSession Interface "5000:UDP"= 5000:UDP:Akamai NetSession Interface R1 kl2;kl2;C:\WINDOWS\system32\drivers\kl2.sys [2010-06-09 16:43:52 11352] R3 klim5;Kaspersky Anti-Virus NDIS Filter;C:\WINDOWS\system32\drivers\klim5.sys [2010-05-07 11:06:26 32856] R3 klmouflt;Kaspersky Lab KLMOUFLT;C:\WINDOWS\system32\drivers\klmouflt.sys [2009-11-02 19:27:24 19472] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 13:16:28 130384] S3 npggsvc;nProtect GameGuard Service;C:\WINDOWS\system32\GameMon.des -service --> C:\WINDOWS\system32\GameMon.des -service [?] S3 Revoflt;Revoflt;C:\WINDOWS\system32\DRIVERS\revoflt.sys --> C:\WINDOWS\system32\DRIVERS\revoflt.sys [?] S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 13:16:28 753504] S4 gupdate1ca0bcc856b6f88;Usługa Google Update (gupdate1ca0bcc856b6f88);C:\Program Files\Google\Update\GoogleUpdate.exe [2009-07-23 20:33:56 133104] S4 sptd;sptd;C:\WINDOWS\system32\Drivers\sptd.sys --> C:\WINDOWS\system32\Drivers\sptd.sys [?] . Zawartość folderu 'Zaplanowane zadania' 2011-01-23 C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe [2009-07-23 19:33:56 . 2009-07-23 19:33:54] 2011-01-23 C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe [2009-07-23 19:33:56 . 2009-07-23 19:33:54] 2011-01-23 C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-583907252-1580818891-725345543-1003Core.job - C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [2010-08-20 14:09:31 . 2010-08-20 14:09:31] 2011-01-23 C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-583907252-1580818891-725345543-1003UA.job - C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [2010-08-20 14:09:31 . 2010-08-20 14:09:31] . . ------- Skan uzupełniający ------- . uStart Page = mStart Page = mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html uInternet Settings,ProxyOverride = *.local uInternet Settings,ProxyServer = http=127.0.0.1:53798 uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com IE: E&ksportuj do programu Microsoft Excel - C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 FF - ProfilePath - C:\Documents and Settings\User\Dane aplikacji\Mozilla\Firefox\Profiles\1v8vypdo.default\ FF - prefs.js: browser.search.defaulturl - FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - google.pl FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=panda&type=PCAFSI1190&p= FF - prefs.js: network.proxy.http - 127.0.0.1 FF - prefs.js: network.proxy.http_port - 53798 FF - prefs.js: network.proxy.type - 1 FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} FF - Ext: Blokowanie banerĂłw: KavAntiBanner@Kaspersky.ru - C:\Program Files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru FF - Ext: Kaspersky URL Advisor: linkfilter@kaspersky.ru - C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru FF - Ext: Java Quick Starter: jqs@sun.com - C:\Program Files\Java\jre6\lib\deploy\jqs\ff FF - user.js: yahoo.homepage.dontask - true);user_pref(yahoo.ytff.general.dontshowhpoffer, true . - - - - USUNIĘTO PUSTE WPISY - - - - HKLM-Run-conhost - C:\Documents and Settings\User\Dane aplikacji\Microsoft\conhost.exe MSConfigStartUp-DAEMON Tools Lite - C:\Program Files\DAEMON Tools Lite\daemon.exe MSConfigStartUp-Messenger (Yahoo!) - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe MSConfigStartUp-PRD - C:\Program Files\Pointstone\System Cleaner 5\SystemCleaner.exe MSConfigStartUp-swg - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe AddRemove-System Cleaner 5 - C:\Program Files\Pointstone\System Cleaner 5\Uninstall.exe AddRemove-Octoshape add-in for Adobe Flash Player - C:\Documents and Settings\User\Dane aplikacji\Macromedia\Flash Player\www.macromedia.com\bin\octoshape\octoshape.exe