OTL logfile created on: 2011-02-01 08:25:39 - Run 4 OTL by OldTimer - Version 3.2.20.6 Folder = C:\Documents and Settings\Flinstone\Pulpit Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 014,00 Mb Total Physical Memory | 674,00 Mb Available Physical Memory | 67,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 90,00% Paging File free Paging file location(s): C:\pagefile.sys 1524 3048 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 139,04 Gb Total Space | 60,22 Gb Free Space | 43,31% Space Free | Partition Type: NTFS Computer Name: EMACHINE-D54FB8 | User Name: Flinstone | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-01-31 11:59:53 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Flinstone\Pulpit\OTL.exe PRC - [2010-06-26 00:48:35 | 000,036,972 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre1.5.0\bin\jusched.exe PRC - [2010-02-26 01:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ccsvchst.exe PRC - [2009-10-07 08:49:50 | 001,157,640 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LManager.exe PRC - [2009-08-24 03:30:12 | 000,107,016 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\dsiwmis.exe PRC - [2009-07-03 18:47:12 | 000,240,160 | ---- | M] (Acer) -- C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe PRC - [2008-07-03 14:58:22 | 000,094,208 | ---- | M] (sonix) -- C:\WINDOWS\PLFSetL.exe PRC - [2008-04-18 06:54:02 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe PRC - [2008-04-18 06:53:58 | 000,178,712 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe PRC - [2008-04-15 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-01-31 11:59:53 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Flinstone\Pulpit\OTL.exe MOD - [2010-09-20 20:26:01 | 000,415,088 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Internet Security\Engine\17.8.0.5\asoehook.dll MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll MOD - [2009-07-12 09:02:02 | 000,653,120 | R--- | M] (Microsoft Corporation) -- C:\Program Files\Norton Internet Security\Engine\17.8.0.5\microsoft.vc90.crt\msvcr90.dll MOD - [2009-07-12 09:02:00 | 000,569,664 | R--- | M] (Microsoft Corporation) -- C:\Program Files\Norton Internet Security\Engine\17.8.0.5\microsoft.vc90.crt\msvcp90.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - File not found [Auto | Stopped] -- -- (gupdate) Google Update Service (gupdate) SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2010-02-26 01:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) [Unknown | Running] -- C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ccSvcHst.exe -- (NIS) SRV - [2009-08-24 03:30:12 | 000,107,016 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Program Files\Launch Manager\dsiwmis.exe -- (DsiWMIService) SRV - [2009-07-03 18:47:12 | 000,240,160 | ---- | M] (Acer) [Auto | Running] -- C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe -- (Updater Service) SRV - [2008-04-18 06:54:02 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-12-17 10:08:28 | 001,360,760 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\VirusDefs\20110131.035\NAVEX15.SYS -- (NAVEX15) DRV - [2010-12-17 10:08:28 | 000,086,008 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\VirusDefs\20110131.035\NAVENG.SYS -- (NAVENG) DRV - [2010-12-08 06:36:18 | 000,371,248 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl) DRV - [2010-12-08 06:36:18 | 000,102,448 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv) DRV - [2010-12-08 05:57:10 | 000,124,976 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SYMEVENT.SYS -- (SymEvent) DRV - [2010-12-01 01:03:34 | 000,341,944 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\IPSDefs\20110128.003\IDSXpx86.sys -- (IDSxpx86) DRV - [2010-11-23 03:34:08 | 000,691,248 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\Definitions\BASHDefs\20110114.001\BHDrvx86.sys -- (BHDrvx86) DRV - [2010-05-06 05:01:59 | 000,361,904 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\NIS\1108000.005\SYMTDI.SYS -- (SYMTDI) DRV - [2010-04-29 06:03:51 | 000,116,784 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1108000.005\Ironx86.SYS -- (SymIRON) DRV - [2010-04-22 04:02:20 | 000,173,104 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1108000.005\SYMEFA.SYS -- (SymEFA) DRV - [2010-04-22 03:29:50 | 000,325,680 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\NIS\1108000.005\SRTSP.SYS -- (SRTSP) DRV - [2010-04-22 03:29:50 | 000,043,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1108000.005\SRTSPX.SYS -- (SRTSPX) Symantec Real Time Storage Protection (PEL) DRV - [2010-02-26 01:22:57 | 000,501,888 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1108000.005\ccHPx86.sys -- (ccHP) DRV - [2009-10-15 04:50:05 | 000,328,752 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1108000.005\SYMDS.SYS -- (SymDS) DRV - [2009-09-03 11:15:26 | 000,228,912 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SynTP.sys -- (SynTP) DRV - [2009-08-31 11:18:16 | 005,891,584 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2009-06-22 05:59:26 | 001,574,112 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\athw.sys -- (AR5416) DRV - [2009-05-06 17:15:38 | 001,759,744 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC) DRV - [2009-03-26 04:05:50 | 000,024,072 | ---- | M] (Dritek System Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\DKbFltr.sys -- (DKbFltr) DRV - [2009-03-02 06:03:48 | 000,038,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c) DRV - [2009-02-03 07:42:30 | 000,162,816 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtsUStor.sys -- (RSUSBSTOR) DRV - [2008-09-26 17:01:00 | 000,101,376 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2008-08-05 13:10:12 | 001,684,736 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2008-04-15 13:00:00 | 000,179,584 | ---- | M] (Mylex Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys -- (dac2w2k) DRV - [2008-04-15 13:00:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-04-15 13:00:00 | 000,049,024 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql1280.sys -- (ql1280) DRV - [2008-04-15 13:00:00 | 000,045,312 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql12160.sys -- (ql12160) DRV - [2008-04-15 13:00:00 | 000,040,320 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ql1080.sys -- (ql1080) DRV - [2008-04-15 13:00:00 | 000,036,736 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\ultra.sys -- (ultra) DRV - [2008-04-15 13:00:00 | 000,032,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys -- (symc8xx) DRV - [2008-04-15 13:00:00 | 000,030,688 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys -- (sym_u3) DRV - [2008-04-15 13:00:00 | 000,028,384 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys -- (sym_hi) DRV - [2008-04-15 13:00:00 | 000,026,496 | ---- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\asc.sys -- (asc) DRV - [2008-04-15 13:00:00 | 000,019,072 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sparrow.sys -- (Sparrow) DRV - [2008-04-15 13:00:00 | 000,017,280 | ---- | M] (American Megatrends Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys -- (mraid35x) DRV - [2008-04-15 13:00:00 | 000,016,256 | ---- | M] (Symbios Logic Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\symc810.sys -- (symc810) DRV - [2008-04-15 13:00:00 | 000,014,848 | ---- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\asc3550.sys -- (asc3550) DRV - [2008-04-15 13:00:00 | 000,006,656 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\cmdide.sys -- (CmdIde) DRV - [2008-04-15 13:00:00 | 000,005,248 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\aliide.sys -- (AliIde) DRV - [2008-04-15 10:53:44 | 000,312,344 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\iaStor.sys -- (iaStor) DRV - [2008-04-14 00:06:40 | 000,043,008 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\amdagp.sys -- (amdagp) DRV - [2008-04-14 00:06:40 | 000,040,960 | ---- | M] (Silicon Integrated Systems Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\DRIVERS\sisagp.sys -- (sisagp) DRV - [2008-02-15 00:12:06 | 005,854,752 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\igxpmp32.sys -- (ialm) DRV - [2006-01-04 08:41:48 | 001,389,056 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emachines.com/rdr.aspx?b=ACEW&l=0415&m=em250&r=0xph03103445l0404zu65r4452645r IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.emachines.com/rdr.aspx?b=ACEW&l=0415&m=em250&r=0xph03103445l0404zu65r4452645r IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2505351160-1417066420-3376078148-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emachines.com/rdr.aspx?b=ACEW&l=0415&m=em250&r=0xph03103445l0404zu65r4452645r IE - HKU\S-1-5-21-2505351160-1417066420-3376078148-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-2505351160-1417066420-3376078148-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\IPSFFPlgn\ [2010-12-08 23:35:22 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.5.0.127\coFFPlgn\ [2010-12-08 05:57:22 | 000,000,000 | ---D | M] O1 HOSTS File: ([2010-12-08 10:17:23 | 000,000,819 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll (Symantec Corporation) O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\17.8.0.5\ipsbho.dll (Symantec Corporation) O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll (Symantec Corporation) O3 - HKU\S-1-5-21-2505351160-1417066420-3376078148-1006\..\Toolbar\ShellBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll (Symantec Corporation) O3 - HKU\S-1-5-21-2505351160-1417066420-3376078148-1006\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\17.8.0.5\coieplg.dll (Symantec Corporation) O4 - HKLM..\Run: [AzMixerSel] C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation) O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation) O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.) O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe () O4 - HKLM..\Run: [NortonOnlineBackupReminder] C:\Program Files\Symantec\Norton Online Backup\Activation\NobuActivation.exe (Symantec Corporation) O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PLFSetL] C:\WINDOWS\PLFSetL.exe (sonix) O4 - HKLM..\Run: [snp2uvc] C:\WINDOWS\System32\csnp2uvc.dll ( ) O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0\bin\jusched.exe (Sun Microsystems, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-2505351160-1417066420-3376078148-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\NPJPI150.dll (Sun Microsystems, Inc.) O9 - Extra Button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab (Java Plug-in 1.5.0) O16 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab (Java Plug-in 1.5.0) O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-12-28 11:33:55 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-02-01 08:17:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Flinstone\Pulpit\logi2 [2011-02-01 08:13:08 | 000,000,000 | ---D | C] -- C:\_OTL [2011-01-31 22:29:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Flinstone\Pulpit\logi [2011-01-31 11:59:43 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Flinstone\Pulpit\OTL.exe [2011-01-17 02:31:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Pity Format 2010 [2011-01-17 02:30:58 | 000,000,000 | ---D | C] -- C:\Program Files\Pity Format 2010 [2010-03-31 11:42:07 | 000,196,608 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc.dll [2010-03-31 11:42:04 | 000,225,280 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnp2uvc.dll [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-02-01 08:24:00 | 000,001,042 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2011-02-01 08:14:26 | 000,001,038 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2011-02-01 08:14:25 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2011-02-01 08:14:23 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011-02-01 08:14:20 | 1063,194,624 | -HS- | M] () -- C:\hiberfil.sys [2011-02-01 08:13:41 | 004,194,304 | -H-- | M] () -- C:\Documents and Settings\Flinstone\NTUSER.DAT [2011-02-01 08:13:41 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Flinstone\ntuser.ini [2011-02-01 08:10:21 | 000,612,295 | ---- | M] () -- C:\Documents and Settings\Flinstone\Pulpit\Strona startowa - qooqlle - Fixitpc_pl.mht [2011-02-01 07:58:44 | 000,000,470 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{0ACE654C-5302-4A62-8F29-D3FF73DACBAC}.job [2011-02-01 01:11:28 | 004,297,788 | -H-- | M] () -- C:\Documents and Settings\Flinstone\Ustawienia lokalne\Dane aplikacji\IconCache.db [2011-01-31 21:38:02 | 001,628,284 | ---- | M] () -- C:\Documents and Settings\Flinstone\Pulpit\Diagnostyka ogólne raporty systemowe - Fixitpc_pl.mht [2011-01-31 21:35:48 | 001,358,950 | ---- | M] () -- C:\Documents and Settings\Flinstone\Pulpit\Diagnostyka infekcje typu rootkit - Fixitpc_pl.mht [2011-01-31 21:20:33 | 000,288,107 | ---- | M] () -- C:\Documents and Settings\Flinstone\Pulpit\gmer.zip [2011-01-31 12:30:33 | 000,715,662 | ---- | M] () -- C:\Documents and Settings\Flinstone\Pulpit\Tworzenie loga z OTL i RSIT - Forum Komputerowe ForumPC_pl.mht [2011-01-31 11:59:53 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Flinstone\Pulpit\OTL.exe [2011-01-30 13:17:05 | 000,028,726 | ---- | M] () -- C:\funkcje.php [2011-01-26 11:07:40 | 000,022,528 | ---- | M] () -- C:\Documents and Settings\Flinstone\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-01-26 04:23:36 | 000,018,172 | ---- | M] () -- C:\Documents and Settings\Flinstone\Pulpit\sitemapPack.zip [2011-01-24 16:44:24 | 000,008,429 | ---- | M] () -- C:\Documents and Settings\Flinstone\.recently-used.xbel [2011-01-22 06:42:19 | 000,052,480 | ---- | M] () -- C:\Documents and Settings\Flinstone\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2011-01-22 06:41:59 | 000,248,696 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-01-22 04:33:43 | 000,000,231 | ---- | M] () -- C:\WINDOWS\system.ini [2011-01-06 00:59:59 | 000,002,034 | ---- | M] () -- C:\Documents and Settings\Flinstone\Pulpit\zlicz.zip [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-02-01 08:10:10 | 000,612,295 | ---- | C] () -- C:\Documents and Settings\Flinstone\Pulpit\Strona startowa - qooqlle - Fixitpc_pl.mht [2011-01-31 23:46:00 | 1063,194,624 | -HS- | C] () -- C:\hiberfil.sys [2011-01-31 21:37:48 | 001,628,284 | ---- | C] () -- C:\Documents and Settings\Flinstone\Pulpit\Diagnostyka ogólne raporty systemowe - Fixitpc_pl.mht [2011-01-31 21:35:48 | 001,358,950 | ---- | C] () -- C:\Documents and Settings\Flinstone\Pulpit\Diagnostyka infekcje typu rootkit - Fixitpc_pl.mht [2011-01-31 21:27:59 | 000,296,448 | ---- | C] () -- C:\Documents and Settings\Flinstone\Pulpit\gmer.exe [2011-01-31 21:20:33 | 000,288,107 | ---- | C] () -- C:\Documents and Settings\Flinstone\Pulpit\gmer.zip [2011-01-31 12:30:29 | 000,715,662 | ---- | C] () -- C:\Documents and Settings\Flinstone\Pulpit\Tworzenie loga z OTL i RSIT - Forum Komputerowe ForumPC_pl.mht [2011-01-30 13:17:10 | 000,028,726 | ---- | C] () -- C:\funkcje.php [2011-01-26 04:23:35 | 000,018,172 | ---- | C] () -- C:\Documents and Settings\Flinstone\Pulpit\sitemapPack.zip [2011-01-24 16:44:24 | 000,008,429 | ---- | C] () -- C:\Documents and Settings\Flinstone\.recently-used.xbel [2011-01-22 04:33:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls [2011-01-22 04:33:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20880.nls [2011-01-06 00:59:59 | 000,002,034 | ---- | C] () -- C:\Documents and Settings\Flinstone\Pulpit\zlicz.zip [2010-04-03 15:46:15 | 000,022,528 | ---- | C] () -- C:\Documents and Settings\Flinstone\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-04-03 15:44:00 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2010-04-03 15:43:59 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2010-04-01 03:10:22 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI [2010-04-01 02:06:57 | 000,001,864 | ---- | C] () -- C:\Documents and Settings\Flinstone\Dane aplikacji\wklnhst.dat [2010-03-31 11:42:07 | 001,759,744 | ---- | C] () -- C:\WINDOWS\System32\drivers\snp2uvc.sys [2010-03-31 11:42:07 | 000,028,544 | ---- | C] () -- C:\WINDOWS\System32\drivers\sncduvc.sys [2010-03-31 11:42:07 | 000,000,323 | ---- | C] () -- C:\WINDOWS\PidList.ini [2010-03-31 10:07:56 | 000,000,062 | -HS- | C] () -- C:\Documents and Settings\Flinstone\Dane aplikacji\desktop.ini [2010-03-31 10:07:53 | 004,297,788 | -H-- | C] () -- C:\Documents and Settings\Flinstone\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-03-31 10:07:53 | 000,052,480 | ---- | C] () -- C:\Documents and Settings\Flinstone\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-03-31 10:07:53 | 000,000,134 | ---- | C] () -- C:\Documents and Settings\Flinstone\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2009-12-28 20:14:33 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2009-12-28 20:14:33 | 000,000,528 | ---- | C] () -- C:\WINDOWS\win.ini [2009-12-28 20:14:32 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2009-12-28 20:14:31 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2009-12-28 20:14:31 | 000,000,231 | ---- | C] () -- C:\WINDOWS\system.ini [2009-12-28 20:14:28 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2009-12-28 20:14:28 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2009-12-28 20:14:27 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2009-12-28 20:14:27 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2009-12-28 20:14:26 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2009-12-28 20:14:26 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2009-12-28 20:14:26 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2009-12-28 20:14:26 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2009-12-28 20:14:26 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2009-12-28 20:14:25 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2009-12-28 20:14:25 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2009-12-28 20:14:25 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2009-12-28 20:14:25 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2009-12-28 20:14:25 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2009-12-28 20:14:25 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2009-12-28 20:14:25 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2009-12-28 20:14:25 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2009-12-28 20:14:25 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2009-12-28 20:14:24 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2009-12-28 20:14:22 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2009-12-28 20:14:22 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2009-12-28 20:14:22 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2009-12-28 20:14:19 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2009-12-28 20:14:19 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2009-12-28 20:14:18 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2009-12-28 20:14:17 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2009-12-28 20:14:15 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2009-12-28 20:14:15 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2009-12-28 20:14:11 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatUI.dll [2009-12-28 20:14:11 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2009-12-28 20:14:10 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll [2009-12-28 20:14:09 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2009-12-28 20:14:09 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2009-12-28 15:07:38 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini [2009-12-28 14:10:02 | 000,157,442 | ---- | C] () -- C:\Program Files\Common Files\emachines.ico [2009-12-28 14:08:44 | 000,000,168 | ---- | C] () -- C:\WINDOWS\ZH.INI [2009-12-28 14:08:44 | 000,000,168 | ---- | C] () -- C:\WINDOWS\S3.INI [2009-12-28 14:08:44 | 000,000,168 | ---- | C] () -- C:\WINDOWS\FR-CA.INI [2009-12-28 14:08:44 | 000,000,168 | ---- | C] () -- C:\WINDOWS\EN-GB.INI [2009-12-28 14:08:44 | 000,000,168 | ---- | C] () -- C:\WINDOWS\EN-CA.INI [2009-12-28 14:06:50 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4926.dll [2009-12-28 12:28:58 | 001,119,970 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2009-12-28 12:28:57 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009-12-28 12:28:38 | 000,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\desktop.ini [2009-12-28 11:37:01 | 000,024,264 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini [2009-12-28 11:33:55 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2009-12-28 11:31:57 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2009-12-28 11:31:57 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2009-12-28 11:31:11 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2009-12-28 11:31:11 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2009-12-28 11:31:11 | 000,003,619 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini [2006-08-23 10:33:46 | 000,006,144 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2006-08-23 10:33:46 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2006-02-25 12:12:34 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2006-02-25 12:09:38 | 000,774,144 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2002-11-15 14:11:28 | 000,077,824 | ---- | C] () -- C:\WINDOWS\System32\MMSwitch.dll [2002-10-06 20:42:58 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll [2002-10-05 01:04:26 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll [2002-10-05 01:04:26 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\VORBIS.DLL [2002-10-05 01:04:18 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\OGG.DLL [2001-10-26 18:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [color=#E56717]========== LOP Check ==========[/color] [2009-12-28 14:27:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\eMachines [2010-03-31 11:46:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Partner [2010-05-13 06:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\FreshHTML [2010-04-02 11:36:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\GHISLER [2011-01-24 14:48:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\gtk-2.0 [2010-05-14 04:22:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\inkscape [2010-11-20 22:15:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\Nvu [2010-04-24 17:06:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\PhotoFiltre [2010-04-01 02:07:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\Template [2010-12-08 05:25:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\Tific [2011-01-31 23:56:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\uTorrent [2010-11-24 03:47:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Flinstone\Dane aplikacji\Windows Live Writer [2010-08-09 05:21:45 | 000,000,114 | ---- | M] () -- C:\WINDOWS\Tasks\Low Battery Alarm Program.job [2011-02-01 07:58:44 | 000,000,470 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{0ACE654C-5302-4A62-8F29-D3FF73DACBAC}.job [color=#E56717]========== Purity Check ==========[/color] < End of report >