OTL logfile created on: 2013-05-10 18:24:24 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\USER\Moje dokumenty\Downloads Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,87 Gb Total Physical Memory | 0,16 Gb Available Physical Memory | 8,73% Memory free 3,72 Gb Paging File | 2,01 Gb Available in Paging File | 54,13% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 68,12 Gb Total Space | 16,30 Gb Free Space | 23,93% Space Free | Partition Type: NTFS Drive D: | 114,98 Gb Total Space | 62,46 Gb Free Space | 54,32% Space Free | Partition Type: NTFS Drive E: | 114,98 Gb Total Space | 85,69 Gb Free Space | 74,52% Space Free | Partition Type: NTFS Computer Name: 4098D903016548D | User Name: USER | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Quick Scan Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2013-05-10 18:23:38 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\USER\Moje dokumenty\Downloads\OTL.exe PRC - [2013-04-29 02:56:32 | 000,101,888 | ---- | M] (Freemake) -- C:\Documents and Settings\All Users\Dane aplikacji\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe PRC - [2013-04-09 10:57:09 | 001,312,720 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe PRC - [2013-03-12 22:07:21 | 000,170,912 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe PRC - [2013-02-28 10:36:01 | 004,767,304 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe PRC - [2013-02-28 10:36:01 | 000,045,248 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe PRC - [2013-02-19 19:24:14 | 001,151,152 | ---- | M] () -- C:\Program Files\AVG Secure Search\vprot.exe PRC - [2013-02-19 19:24:13 | 000,968,880 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe PRC - [2012-10-15 14:57:20 | 001,869,152 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe PRC - [2012-10-15 14:57:18 | 001,699,168 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe PRC - [2012-10-15 14:56:30 | 000,435,040 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2013\OneClick.exe PRC - [2012-09-02 13:21:22 | 001,890,744 | ---- | M] (Bandoo Media, inc) -- C:\Program Files\Searchqu Toolbar\Datamngr\datamngrUI.exe PRC - [2012-03-12 18:42:02 | 000,008,704 | ---- | M] (Microsoft) -- C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe PRC - [2011-12-28 00:21:08 | 003,508,624 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe PRC - [2011-08-01 14:35:42 | 000,114,992 | R--- | M] (SweetIM Technologies Ltd.) -- C:\Program Files\SweetIM\Messenger\SweetIM.exe PRC - [2010-11-30 13:20:36 | 000,997,408 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe PRC - [2010-11-11 12:26:40 | 000,011,736 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe PRC - [2010-04-01 11:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe PRC - [2010-01-17 22:37:16 | 000,977,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2009-03-31 09:39:36 | 000,233,472 | ---- | M] (Teruten) -- C:\WINDOWS\system32\FsUsbExService.Exe PRC - [2008-04-07 09:17:30 | 000,430,592 | ---- | M] (Nokia.) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe PRC - [2008-03-10 09:58:18 | 000,130,560 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe PRC - [2008-02-22 09:11:02 | 000,120,320 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe PRC - [2007-03-19 00:05:02 | 000,630,784 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2013-05-10 12:21:52 | 002,084,352 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\13051000\algo.dll MOD - [2013-04-09 10:57:07 | 000,390,096 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\26.0.1410.64\ppgooglenaclpluginchrome.dll MOD - [2013-04-09 10:57:06 | 013,130,704 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\26.0.1410.64\PepperFlash\pepflashplayer.dll MOD - [2013-04-09 10:57:05 | 004,050,896 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\26.0.1410.64\pdf.dll MOD - [2013-04-09 10:56:13 | 001,606,096 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\26.0.1410.64\ffmpegsumo.dll MOD - [2013-02-19 19:24:20 | 000,156,848 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\SiteSafety.dll MOD - [2013-02-19 19:24:14 | 001,151,152 | ---- | M] () -- C:\Program Files\AVG Secure Search\vprot.exe MOD - [2013-02-19 19:24:13 | 000,968,880 | ---- | M] () -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe MOD - [2013-02-13 22:49:47 | 000,148,480 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuratio#\636ef2392964b23b07e818cd8183a8a3\System.Configuration.Install.ni.dll MOD - [2013-02-13 22:49:46 | 000,221,696 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\e534d8e15df8611bc3174e5f2377a093\System.ServiceProcess.ni.dll MOD - [2013-01-11 23:08:43 | 001,218,560 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Management\68b0fc15aa862e54593dd85b59116998\System.Management.ni.dll MOD - [2013-01-11 23:08:38 | 001,077,760 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\d39d7af1c84535e19dbf92d804f906a2\System.IdentityModel.ni.dll MOD - [2013-01-11 23:08:36 | 018,054,144 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\90aa475ae4f67c45538cede327c086aa\System.ServiceModel.ni.dll MOD - [2013-01-11 23:06:57 | 001,897,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Web.Services\2e384b7a68ed602006571cfa37ede224\System.Web.Services.ni.dll MOD - [2013-01-11 23:06:43 | 001,020,928 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\f616e6911a3d461193cd0e6e003adca5\System.Runtime.DurableInstancing.ni.dll MOD - [2013-01-11 23:06:42 | 000,142,848 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\3b7f418545abc074940776fea9ad635e\SMDiagnostics.ni.dll MOD - [2013-01-11 23:06:41 | 002,637,312 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\fe0d8dda05b9d38bbb664432300b4f42\System.Runtime.Serialization.ni.dll MOD - [2013-01-09 22:19:49 | 005,618,176 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\3d6d9da56c9f607615b55d6742d8427d\System.Xml.ni.dll MOD - [2013-01-09 22:19:44 | 007,053,824 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\a0db56351a1589e44868456609b01737\System.Core.ni.dll MOD - [2013-01-09 22:19:44 | 000,980,480 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\197761bb3230bf9d4f540305dcf6717c\System.Configuration.ni.dll MOD - [2013-01-09 22:19:37 | 009,093,120 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\c182d7a0bd88caf2cddccb7491a5fa6e\System.ni.dll MOD - [2013-01-09 22:19:30 | 014,412,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\3f95a6d480ed1ebe45cf27b770ba94ed\mscorlib.ni.dll MOD - [2010-01-17 22:37:16 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll MOD - [2009-02-27 20:04:20 | 000,311,296 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.POL MOD - [2008-03-10 09:58:18 | 000,130,560 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe MOD - [2008-02-22 09:11:02 | 000,120,320 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe MOD - [2007-03-19 00:05:02 | 000,630,784 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe MOD - [2007-03-19 00:04:22 | 000,069,632 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.dll MOD - [2004-12-26 21:34:38 | 000,121,344 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe -- (NBService) SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ) SRV - [2013-04-29 02:56:32 | 000,101,888 | ---- | M] (Freemake) [Auto | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe -- (Freemake Improver) SRV - [2013-03-20 15:20:16 | 004,561,152 | ---- | M] () [Auto | Running] -- c:\program files\common files\akamai/netsession_win_ca0e279.dll -- (Akamai) SRV - [2013-03-12 22:07:21 | 000,170,912 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2013-02-28 18:45:16 | 000,161,384 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2013-02-28 10:36:01 | 000,045,248 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus) SRV - [2013-02-21 11:30:09 | 002,561,488 | ---- | M] () [Auto | Stopped] -- C:\Documents and Settings\All Users\Dane aplikacji\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe -- (BrowserProtect) SRV - [2013-02-19 19:24:13 | 000,968,880 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe -- (vToolbarUpdater14.2.0) SRV - [2012-11-24 14:50:59 | 000,115,168 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-10-15 14:57:18 | 001,699,168 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc) SRV - [2012-03-12 18:42:02 | 000,008,704 | ---- | M] (Microsoft) [Auto | Running] -- C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe -- (FreemakeVideoCapture) SRV - [2010-11-11 12:26:40 | 000,011,736 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -- (MsMpSvc) SRV - [2009-03-31 09:39:36 | 000,233,472 | ---- | M] (Teruten) [Auto | Running] -- C:\WINDOWS\system32\FsUsbExService.Exe -- (FsUsbExService) SRV - [2008-04-07 09:17:30 | 000,430,592 | ---- | M] (Nokia.) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | Boot | Stopped] -- -- (mv91xx) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleXNt.sys -- (EagleXNt) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleNT.sys -- (EagleNT) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\USER\USTAWI~1\Temp\catchme.sys -- (catchme) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (aopik8fs) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\USER\USTAWI~1\Temp\aaudstum.sys -- (aaudstum) DRV - [2013-02-28 10:36:37 | 000,765,808 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx) DRV - [2013-02-28 10:36:37 | 000,368,248 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP) DRV - [2013-02-28 10:36:37 | 000,163,784 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm) DRV - [2013-02-28 10:36:37 | 000,062,448 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2013-02-28 10:36:36 | 000,066,408 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswMonFlt.sys -- (aswMonFlt) DRV - [2013-02-28 10:36:36 | 000,049,832 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2013-02-28 10:36:36 | 000,049,320 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt) DRV - [2013-02-28 10:36:35 | 000,029,880 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2012-09-19 11:50:50 | 000,010,088 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv) DRV - [2012-01-18 07:44:28 | 000,312,096 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvrs.sys -- (LVRS) DRV - [2011-12-08 06:22:38 | 000,181,432 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudmdm.sys -- (ssudmdm) DRV - [2011-12-08 06:22:38 | 000,080,184 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudbus.sys -- (dg_ssudbus) DRV - [2011-12-08 06:22:34 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2011-12-08 06:22:34 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) DRV - [2011-12-08 06:22:34 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) DRV - [2011-12-08 06:22:26 | 000,136,808 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadmdm.sys -- (ssadmdm) DRV - [2011-12-08 06:22:26 | 000,121,064 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadbus.sys -- (ssadbus) DRV - [2011-12-08 06:22:26 | 000,114,280 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadserd.sys -- (ssadserd) DRV - [2011-12-08 06:22:26 | 000,030,312 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadadb.sys -- (androidusb) DRV - [2011-12-08 06:22:26 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadmdfl.sys -- (ssadmdfl) DRV - [2011-04-08 14:44:40 | 000,271,360 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2011-04-08 14:44:39 | 000,018,048 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2011-04-07 18:30:38 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2011-02-11 23:23:34 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf) DRV - [2010-01-17 22:37:16 | 000,215,856 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\Si3132r5.sys -- (Si3132r5) DRV - [2010-01-17 22:37:16 | 000,212,520 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\Si3531.sys -- (Si3531) DRV - [2010-01-17 22:37:16 | 000,195,072 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\drivers\Si3114r5.sys -- (Si3114r5) DRV - [2010-01-17 22:37:16 | 000,074,672 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3132.sys -- (Si3132) DRV - [2010-01-17 22:37:16 | 000,062,336 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3112.sys -- (Si3112) DRV - [2010-01-17 22:37:16 | 000,009,096 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\amdide.sys -- (amdide) DRV - [2009-06-02 18:52:36 | 001,374,464 | R--- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\viahduaa.sys -- (VIAHdAudAddService) DRV - [2009-05-25 17:21:28 | 000,142,336 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2009-03-31 09:39:36 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2009-01-18 22:45:58 | 003,490,304 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2008-02-14 16:12:00 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\monfilt.sys -- (monfilt) DRV - [2007-09-17 15:53:26 | 000,021,632 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2006-07-24 17:05:00 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen) DRV - [2005-09-29 19:01:51 | 000,066,048 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfvfs02.sys -- (sfvfs02) DRV - [2005-08-10 16:06:28 | 000,019,968 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfsync02.sys -- (sfsync02) DRV - [2005-08-10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfdrv01.sys -- (sfdrv01) DRV - [2005-05-16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp02.sys -- (sfhlp02) DRV - [2005-02-23 15:58:56 | 000,011,776 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afc.sys -- (Afc) DRV - [2004-08-13 12:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor) DRV - [2004-04-26 08:38:20 | 000,006,885 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\whmice2k.sys -- (whmice2k) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=idg&from=idg&uid=ST3320418AS_5VM5BYM4____5VM5BYM4&ts=1351168555 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://websearch.pu-results.info/?pid=726&r=2013/04/29&hid=3671019100&lg=EN&cc=PL IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search.v9.com/web/?q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.v9.com/web/?q={searchTerms} IE - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKLM\..\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZCYYYYYYYYPL&ptb=t2g.I.dDMd80Y1ympbvXRA&ind=2011031204&ptnrS=ZCYYYYYYYYPL&si=&n=77dde6a4&psa=&st=sb&searchfor={searchTerms} IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=0&systemid=410&sr=0&q={searchTerms} IE - HKLM\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.pu-results.info/?l=1&q={searchTerms}&pid=726&r=2013/04/29&hid=3671019100&lg=EN&cc=PL IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&st=1&q={searchTerms}&barid={F3FFDA2E-3420-42AE-889E-4CA0EEC96797} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=idg&from=idg&uid=ST3320418AS_5VM5BYM4____5VM5BYM4&ts=1351168555 IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://websearch.pu-results.info/?pid=726&r=2013/04/29&hid=3671019100&lg=EN&cc=PL IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\URLSearchHook: {8532a8b7-c06a-41bb-936a-8ce73e4711ed} - No CLSID value found IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\URLSearchHook: {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll (SweetIM Technologies Ltd.) IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.v9.com/web/?q={searchTerms} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}: "URL" = http://start.facemoods.com/?a=iron&s={searchTerms}&f=4 IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.delta-search.com/?q={searchTerms}&affID=119535&tt=030912_10ftt_3612_2&babsrc=SP_ss&mntrId=f8da2b2300000000000090e6ba5ba3e5 IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/custom/java/redirect?client=ie&tb=ORJ&o=100000026&src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000 IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.v9.com/web/?q={searchTerms} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZCYYYYYYYYPL&ptb=t2g.I.dDMd80Y1ympbvXRA&ind=2011031204&ptnrS=ZCYYYYYYYYPL&si=&n=77dde6a4&psa=&st=sb&searchfor={searchTerms} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searcrms} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.com/search?cid={9974C7A7-D5BD-4841-9D94-4EB0AD71DF98}&mid=5afe52fdb87e43fda27ef54ee7767c9e-932a4ba611a5999e8d625d68a8de28c588bc9102&lang=pl&ds=ax011&pr=&d=2012-12-16 12:49:58&v=14.2.0.1&pid=avg&sg=&sap=dsp&q={searchTerms} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}: "URL" = http://www.bigseekpro.com/search/browser/hypercam/{814D26D0-A2C4-4845-BFA8-ECF6B9A052C2}?q={searchTerms} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=0&systemid=410&sr=0&q={searchTerms} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search?q={searchTerms} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2530240 IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.pu-results.info/?l=1&q={searchTerms}&pid=726&r=2013/04/29&hid=3671019100&lg=EN&cc=PL IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{DB5339D0-F2FA-4517-AC3C-FACFB649D314}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&st=1&q={searchTerms}&barid={F3FFDA2E-3420-42AE-889E-4CA0EEC96797} IE - HKU\S-1-5-21-725345543-1060284298-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1200112.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\\npsitesafety.dll () FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.17.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-03-02 19:50:39 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ShopperReports@ShopperReports.com: C:\Program Files\ShopperReports3\bin\3.1.71.0\firefox\firefoxtoolbar\extensions [2011-09-15 10:15:30 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\searchpredict@speedbit.com: C:\Program Files\SearchPredict\PRFireFox [2012-03-13 21:34:38 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\FireFoxExt\14.2.0.1 [2013-02-19 19:25:39 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fmconverter@gmail.com: C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ [2013-05-07 19:06:48 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-12-27 23:32:03 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-02 02:35:18 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\extensions\\vinceturk@gmail.com: C:\Program Files\KwiClick LLC\KwiClick\ [2010-10-07 18:10:16 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Documents and Settings\USER\Dane aplikacji\IDM\idmmzcc5 [2011-11-07 21:22:55 | 000,000,000 | ---D | M] [2012-12-19 21:49:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Extensions [2012-12-16 13:55:36 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Extensions\songbird@songbirdnest.com [2013-05-03 20:04:19 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\extensions [2012-12-19 21:49:27 | 000,000,000 | ---D | M] (Searchqu Toolbar) -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\extensions\{99079a25-328f-4bd4-be04-00955acaa0a7} [2013-02-25 17:38:04 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2013-02-27 17:33:02 | 000,000,000 | ---D | M] (Delta Toolbar) -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\extensions\ffxtlbr@delta.com [2013-04-30 17:58:01 | 000,000,000 | ---D | M] (Seeaarchh-NewTaab) -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\extensions\rwzb.da@dm-mdw.edu [2013-04-30 17:58:01 | 000,000,000 | ---D | M] (Broowsoee22savee) -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\extensions\xbzuhp@twunnuzao.net [2013-03-13 15:26:49 | 000,002,306 | ---- | M] () -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\searchplugins\askcomsearch.xml [2013-02-27 17:33:23 | 000,001,294 | ---- | M] () -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\searchplugins\delta.xml [2012-12-19 21:48:54 | 000,002,515 | ---- | M] () -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\searchplugins\Search_Results.xml [2013-04-30 17:58:05 | 000,007,830 | ---- | M] () -- C:\Documents and Settings\USER\Dane aplikacji\Mozilla\Firefox\Profiles\tr39wa0q.default\searchplugins\WebSearch.xml [2012-12-27 23:32:03 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-09-06 18:34:39 | 000,000,000 | ---D | M] ("Babylon Spelling and Proofreading") -- C:\Program Files\Mozilla Firefox\extensions\adapter@babylontc.com [2012-09-06 18:34:33 | 000,000,000 | ---D | M] (Babylon Translation Activation) -- C:\Program Files\Mozilla Firefox\extensions\ocr@babylon.com [2012-07-14 02:15:45 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-07-14 03:22:43 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2013-02-19 19:26:56 | 000,003,714 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml [2013-02-27 17:32:27 | 000,006,533 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml [2012-07-14 03:22:43 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-03-15 16:19:08 | 000,002,047 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrch.xml [2012-07-14 03:22:43 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-07-14 03:22:43 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-12-19 21:48:54 | 000,002,515 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Search_Results.xml [2012-10-25 14:35:58 | 000,000,402 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\v9.xml [2012-07-14 03:22:43 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-07-14 03:22:43 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter} CHR - homepage: http://websearch.pu-results.info/?pid=726&r=2013/04/29&hid=3671019100&lg=EN&cc=PL CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\26.0.1410.64\PepperFlash\pepflashplayer.dll CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\26.0.1410.64\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\26.0.1410.64\pdf.dll CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Unity Player (Enabled) = C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll CHR - plugin: AVG SiteSafety plugin (Enabled) = C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\\npsitesafety.dll CHR - plugin: Foxit Reader Plugin for Mozilla (Enabled) = C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll CHR - plugin: Picasa (Enabled) = C:\Program Files\Google\Picasa3\npPicasa3.dll CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll CHR - plugin: Java(TM) Platform SE 7 U11 (Enabled) = C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw_1200112.dll CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll CHR - Extension: avast! WebRep = C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\8.0.1482_0\ CHR - Extension: Freemake Video Converter = C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj\1.0.0_0\ CHR - Extension: Broowsoee22savee = C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nplncaljhfmbhobmdckkaliinnlkkbfj\1\ O1 HOSTS File: ([2010-01-17 22:37:16 | 000,000,775 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 mpa.one.microsoft.com O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found. O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (no name) - {8532a8b7-c06a-41bb-936a-8ce73e4711ed} - No CLSID value found. O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll () O2 - BHO: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\Program Files\Searchqu Toolbar\Datamngr\ToolBar\searchqudtx.dll () O2 - BHO: (no name) - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - No CLSID value found. O2 - BHO: (DataMngr) - {9D717F81-9148-4f12-8568-69135F087DB0} - C:\Program Files\Searchqu Toolbar\Datamngr\BrowserConnection.dll (Bandoo Media, inc) O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) O2 - BHO: (SweetIM Toolbar Helper) - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKLM\..\Toolbar: (no name) - {8532a8b7-c06a-41bb-936a-8ce73e4711ed} - No CLSID value found. O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll () O3 - HKLM\..\Toolbar: (Searchqu Toolbar) - {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\Program Files\Searchqu Toolbar\Datamngr\ToolBar\searchqudtx.dll () O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKLM\..\Toolbar: (SweetIM Toolbar for Internet Explorer) - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O3 - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\Toolbar\WebBrowser: (no name) - {8532A8B7-C06A-41BB-936A-8CE73E4711ED} - No CLSID value found. O3 - HKU\S-1-5-21-725345543-1060284298-682003330-1003\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] E:\Adobe reiter 9.3\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [DATAMNGR] C:\Program Files\Searchqu Toolbar\Datamngr\datamngrUI.exe (Bandoo Media, inc) O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) O4 - HKLM..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) O4 - HKLM..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.) O4 - HKLM..\Run: [vProt] C:\Program Files\AVG Secure Search\vprot.exe () O4 - HKU\S-1-5-21-725345543-1060284298-682003330-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-725345543-1060284298-682003330-1003..\Run: [KiesHelper] C:\Program Files\Samsung\Kies\KiesHelper.exe (Samsung) O4 - HKU\S-1-5-21-725345543-1060284298-682003330-1003..\Run: [Xvid] C:\Program Files\Xvid\CheckUpdate.exe () O4 - Startup: C:\Documents and Settings\USER\Menu Start\Programy\Autostart\RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-725345543-1060284298-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O8 - Extra context menu item: Search the Web - C:\Program Files\SweetIM\Toolbars\Internet Explorer\resources\MenuExt.html () O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm File not found O9 - Extra 'Tools' menuitem : PC Confidential - {53F6FCCD-9E22-4d71-86EA-6E43136192AB} - C:\Program Files\Winferno\PC Confidential\PCConfidential.exe (Capital Intellect, Inc) O9 - Extra Button: PC Confidential - {925DAB62-F9AC-4221-806A-057BFB1014AA} - C:\Program Files\Winferno\PC Confidential\PCConfidential.exe (Capital Intellect, Inc) O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\USER\Menu Start\Programy\IMVU\Run IMVU.lnk () O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Reg Error: Value error.) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 81.15.206.250 81.15.206.251 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D8854D95-5C27-4D9C-81CB-6D58C4FDFFBF}: DhcpNameServer = 81.15.206.250 81.15.206.251 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\14.2.0\ViProtocol.dll () O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 () - http://www.gadudodatki.pl/images/btn_close.gif O24 - Desktop Components:1 () - http://a3.sphotos.ak.fbcdn.net/hphotos-ak-snc4/60056_151591718204787_100000618786569_302698_6105238_n.jpg O24 - Desktop Components:2 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-02-23 16:22:45 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2013-05-10 13:50:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\CCleaner [2013-05-10 13:50:10 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2013-05-10 12:53:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\PCHealth [2013-05-09 17:31:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Moje dokumenty\Any Video Converter [2013-05-09 17:31:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Dane aplikacji\AnvSoft [2013-05-09 17:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\Gabest [2013-05-09 17:21:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Xvid [2013-05-09 17:16:37 | 000,000,000 | ---D | C] -- C:\Program Files\AviSynth 2.5 [2013-05-08 20:22:15 | 000,000,000 | ---D | C] -- C:\Program Files\ESET [2013-05-07 19:20:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\FreemakeVideoConverter [2013-05-07 19:07:28 | 003,715,096 | ---- | C] (Speedchecker Limited ) -- C:\Documents and Settings\USER\Moje dokumenty\PCSUUpdate.exe [2013-05-07 19:06:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Menu Start\Programy\Freemake [2013-05-07 19:06:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Freemake [2013-05-05 18:54:58 | 000,000,000 | ---D | C] -- C:\Program Files\URUSoft [2013-04-29 20:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Moje dokumenty\Red Alert 3 [2013-04-29 17:04:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Dane aplikacji\Red Alert 3 [2013-04-29 14:43:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Games [2013-04-29 13:33:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Dane aplikacji\searchquband [2013-04-29 13:19:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Dane aplikacji\NCdownloader [2013-04-29 13:19:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Seeaarchh-NewTaab [2013-04-29 13:19:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\SoftSafe [2013-04-29 13:18:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\USER\Dane aplikacji\Systweak [2013-04-29 13:18:40 | 000,018,952 | ---- | C] (Systweak Inc., (www.systweak.com)) -- C:\WINDOWS\System32\roboot.exe [2013-04-29 13:18:39 | 000,000,000 | ---D | C] -- C:\Program Files\WebSearch [2013-04-29 13:18:11 | 000,000,000 | ---D | C] -- C:\Program Files\BrowseToSave [2013-04-29 13:18:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Broowsoee22savee [2013-04-14 18:03:05 | 000,745,472 | ---- | C] ([CFS]Robster productions) -- C:\Documents and Settings\USER\Pulpit\HLC.exe [2011-12-28 21:27:05 | 002,161,160 | ---- | C] (DownVision ) -- C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\setup.exe [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [10 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\System32\dllcache\*.tmp files -> C:\WINDOWS\System32\dllcache\*.tmp -> ] [1 C:\*.tmp files -> C:\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2013-05-10 18:25:00 | 000,000,278 | -H-- | M] () -- C:\WINDOWS\tasks\{22116563-108C-42c0-A7CE-60161B75E508}.job [2013-05-10 18:17:01 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2013-05-10 18:16:00 | 000,000,278 | -H-- | M] () -- C:\WINDOWS\tasks\{BBAEAEAF-1275-40e2-BD6C-BC8F88BD114A}.job [2013-05-10 18:01:02 | 000,000,232 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job [2013-05-10 17:56:09 | 000,144,384 | ---- | M] () -- C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2013-05-10 17:45:14 | 000,055,598 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\20080318213352.jpg [2013-05-10 17:43:28 | 000,045,492 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\20080226023228.jpg [2013-05-10 17:42:06 | 000,000,262 | ---- | M] () -- C:\WINDOWS\tasks\EPUpdater.job [2013-05-10 17:41:00 | 000,000,278 | -H-- | M] () -- C:\WINDOWS\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2013-05-10 16:49:56 | 000,000,424 | -H-- | M] () -- C:\WINDOWS\tasks\MP Scheduled Scan.job [2013-05-10 16:47:06 | 000,000,316 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job [2013-05-10 16:46:53 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2013-05-10 16:45:13 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\PCConfidential.job [2013-05-10 16:45:07 | 000,001,028 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2013-05-10 16:45:04 | 000,000,290 | ---- | M] () -- C:\WINDOWS\tasks\Express Files Updater.job [2013-05-10 16:45:03 | 000,000,290 | ---- | M] () -- C:\WINDOWS\tasks\Express FilesUpdate.job [2013-05-10 16:44:45 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2013-05-10 13:50:20 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\CCleaner.lnk [2013-05-09 16:24:35 | 000,002,513 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\Microsoft Office Word 2007.lnk [2013-05-09 14:08:16 | 000,022,528 | -H-- | M] () -- C:\Documents and Settings\USER\Pulpit\photothumb.db [2013-05-08 17:41:41 | 000,000,434 | -H-- | M] () -- C:\WINDOWS\tasks\Norton Security Scan for USER.job [2013-05-08 15:36:16 | 000,002,267 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2013-05-07 19:07:31 | 003,715,096 | ---- | M] (Speedchecker Limited ) -- C:\Documents and Settings\USER\Moje dokumenty\PCSUUpdate.exe [2013-05-07 19:07:17 | 000,111,408 | ---- | M] () -- C:\Documents and Settings\USER\Moje dokumenty\PCSU_Update.exe [2013-05-07 19:06:55 | 000,000,973 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Freemake Video Converter.lnk [2013-05-07 14:46:56 | 009,366,852 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\Avril Lavigne - Losing grip.mp3 [2013-05-05 15:01:00 | 000,000,262 | ---- | M] () -- C:\WINDOWS\tasks\RegClean Pro_DEFAULT.job [2013-05-01 13:19:00 | 000,000,270 | ---- | M] () -- C:\WINDOWS\tasks\RegClean Pro_UPDATES.job [2013-04-29 16:57:43 | 000,005,506 | ---- | M] () -- C:\WINDOWS\System32\ealregsnapshot1.reg [2013-04-29 16:56:38 | 000,001,378 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Command & Conquer™ Red Alert™ 3.lnk [2013-04-29 14:48:35 | 000,000,471 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\The Conquerors.lnk [2013-04-29 14:43:08 | 000,000,574 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\Age of Empires II.lnk [2013-04-29 12:28:15 | 000,295,664 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2013-04-26 20:55:44 | 000,103,749 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\bez tytułu.JPG [2013-04-18 20:45:06 | 009,881,788 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\UKF Knife Party - Centipede.mp3 [2013-04-18 20:44:59 | 011,001,921 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\UKF Eptic - Like A Boss.mp3 [2013-04-18 20:44:50 | 004,987,931 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\UKF Delta Heavy - Demons.mp3 [2013-04-18 20:40:53 | 011,137,674 | ---- | M] () -- C:\Documents and Settings\USER\Pulpit\UKF Knife Party - Fire Hive.mp3 [2013-04-14 18:03:14 | 000,745,472 | ---- | M] ([CFS]Robster productions) -- C:\Documents and Settings\USER\Pulpit\HLC.exe [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [10 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\System32\dllcache\*.tmp files -> C:\WINDOWS\System32\dllcache\*.tmp -> ] [1 C:\*.tmp files -> C:\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2013-05-10 17:45:14 | 000,055,598 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\20080318213352.jpg [2013-05-10 17:43:28 | 000,045,492 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\20080226023228.jpg [2013-05-10 13:50:19 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\CCleaner.lnk [2013-05-09 17:21:06 | 000,645,632 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2013-05-09 17:21:06 | 000,240,640 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2013-05-09 17:21:06 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\xvid.ax [2013-05-07 19:07:17 | 000,111,408 | ---- | C] () -- C:\Documents and Settings\USER\Moje dokumenty\PCSU_Update.exe [2013-05-07 19:06:55 | 000,000,973 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Freemake Video Converter.lnk [2013-05-06 08:19:57 | 009,366,852 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\Avril Lavigne - Losing grip.mp3 [2013-04-29 16:56:38 | 000,001,378 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Command & Conquer™ Red Alert™ 3.lnk [2013-04-29 14:48:35 | 000,000,471 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\The Conquerors.lnk [2013-04-29 14:43:08 | 000,000,574 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\Age of Empires II.lnk [2013-04-29 13:19:03 | 000,000,262 | ---- | C] () -- C:\WINDOWS\tasks\RegClean Pro_DEFAULT.job [2013-04-29 13:19:02 | 000,000,270 | ---- | C] () -- C:\WINDOWS\tasks\RegClean Pro_UPDATES.job [2013-04-26 20:55:44 | 000,103,749 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\bez tytułu.JPG [2013-04-18 20:37:06 | 011,001,921 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\UKF Eptic - Like A Boss.mp3 [2013-04-18 20:37:05 | 011,137,674 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\UKF Knife Party - Fire Hive.mp3 [2013-04-18 20:37:04 | 009,881,788 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\UKF Knife Party - Centipede.mp3 [2013-04-18 20:32:01 | 004,987,931 | ---- | C] () -- C:\Documents and Settings\USER\Pulpit\UKF Delta Heavy - Demons.mp3 [2013-04-08 18:49:49 | 000,003,420 | ---- | C] () -- C:\Documents and Settings\USER\.recently-used.xbel [2013-03-28 16:32:36 | 000,000,272 | ---- | C] () -- C:\WINDOWS\thug2.ini [2013-03-02 19:50:45 | 000,163,784 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys [2013-03-02 19:50:44 | 000,049,320 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys [2013-01-09 22:30:26 | 000,679,784 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2012-12-20 19:07:16 | 002,016,593 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-725345543-1060284298-682003330-1003-0.dat [2012-12-19 21:48:41 | 000,484,352 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll [2012-05-21 18:43:24 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\CNMVS66.DLL [2012-03-13 23:12:58 | 000,295,054 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2012-01-28 01:18:09 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\LauncherAccess.dt [2012-01-18 07:22:54 | 000,028,418 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini [2012-01-14 15:49:58 | 000,033,019 | ---- | C] () -- C:\WINDOWS\System32\CoreAAC-uninstall.exe [2011-12-28 21:27:00 | 000,460,624 | ---- | C] () -- C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\promo.exe [2011-12-23 21:58:28 | 000,030,568 | ---- | C] () -- C:\WINDOWS\MusiccityDownload.exe [2011-12-23 21:58:24 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll [2011-12-23 21:58:24 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll [2011-12-23 21:58:24 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll [2011-12-23 21:58:24 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll [2011-05-25 14:55:41 | 000,006,885 | ---- | C] () -- C:\WINDOWS\System32\drivers\whmice2k.sys [2011-05-25 14:53:09 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\setuplib.dll [2011-05-25 14:53:09 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\waitwnd.exe [2011-05-21 16:03:03 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe [2011-05-21 16:03:03 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2011-05-21 16:03:03 | 000,089,088 | ---- | C] () -- C:\WINDOWS\MBR.exe [2011-05-21 16:03:03 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2011-05-21 16:03:03 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2011-04-13 17:05:33 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\USER\Dane aplikacji\$_hpcst$.hpc [2010-09-25 19:29:10 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\USER\LPIC1572_hf.jpg [2010-09-25 19:29:07 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\USER\LPIC1588_hf.jpg [2010-09-25 19:29:03 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\USER\LPIC1607_hf.jpg [2010-09-24 14:40:57 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\USER\LPIC1400_hf.jpg [2010-09-16 15:51:50 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\USER\9a1543f90000d9e348fd1cde.jpeg [2010-09-15 17:05:40 | 000,053,248 | ---- | C] () -- C:\Documents and Settings\USER\Dane aplikacji\chrtmp [2010-09-15 17:05:30 | 000,015,317 | ---- | C] () -- C:\Documents and Settings\USER\Dane aplikacji\skrypcik.JPG [2010-09-05 17:37:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\USER\cool+emo+boy's+hairstyle.jpg [2010-09-05 17:34:28 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\USER\httpwww.google.plimgresimgurl=httpfoto.m.onet.pl_m6c07f9f8be930862f22719f89cabde4a,10,19,0.jpg&imgrefurl=httplajt.onet.plfot.URL [2010-08-31 18:58:52 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\USER\654.JPG [2010-07-17 12:30:33 | 000,036,961 | ---- | C] () -- C:\Documents and Settings\USER\Dane aplikacji\Bigfoot-RC-demo.cfg [2010-05-28 13:52:57 | 000,000,129 | ---- | C] () -- C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2010-03-13 23:07:20 | 000,144,384 | ---- | C] () -- C:\Documents and Settings\USER\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [color=#E56717]========== ZeroAccess Check ==========[/color] [2010-02-23 16:30:40 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2010-01-17 22:37:16 | 001,778,688 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2010-01-17 22:37:16 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2010-01-17 22:37:16 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2010-09-15 16:30:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AlawarWrapper [2010-09-27 15:46:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ashampoo [2013-03-12 22:07:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ask [2011-08-10 13:30:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2013-04-29 13:33:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search [2010-04-05 12:34:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\avg9 [2013-02-27 18:39:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon [2012-12-20 14:20:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\boost_interprocess [2013-04-29 13:32:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Broowsoee22savee [2013-02-27 17:33:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BrowserProtect [2011-04-07 17:56:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2011-04-07 17:44:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EA Core [2012-10-25 14:39:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts [2013-05-07 19:06:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Freemake [2010-08-30 15:14:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2013-04-29 13:20:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallMate [2012-02-01 15:32:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2011-02-14 16:17:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2011-11-06 15:35:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Orion [2011-04-13 17:07:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2011-09-25 16:32:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Premium [2012-01-28 01:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Samsung [2013-04-29 13:20:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Seeaarchh-NewTaab [2013-04-29 13:19:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SoftSafe [2012-03-13 21:34:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SpeedBit [2012-09-02 12:50:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SweetIM [2013-02-27 18:54:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2012-12-19 16:29:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TuneUp Software [2011-03-03 18:03:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ubisoft [2011-04-09 14:10:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\VistaCodecs [2012-12-19 16:27:38 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} [2012-12-19 16:30:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\TuneUp Software [2013-05-09 17:31:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\AnvSoft [2010-10-16 11:49:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Ascaron Entertainment [2012-01-14 23:27:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Ashampoo [2010-03-05 21:37:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Atari [2012-12-16 13:49:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\AVG Secure Search [2010-12-30 11:50:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Avnex [2013-04-29 17:31:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Azureus [2013-02-27 17:32:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\BabSolution [2012-09-09 10:31:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Babylon [2013-02-27 20:15:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\BitTorrent [2010-09-22 15:45:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\BlackBean [2010-07-17 12:37:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\CityBus [2010-07-17 12:30:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\CrystalSpace [2010-09-13 16:41:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\DAEMON Tools [2011-04-07 18:48:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\DAEMON Tools Lite [2013-02-27 17:32:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Delta [2011-05-25 15:03:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\DeviceDoctorSoftware [2011-11-11 18:43:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\DMCache [2012-06-28 14:08:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Doodle_Jump_PC [2012-12-19 16:35:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\DVDVideoSoft [2013-03-27 22:39:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\ExpressFiles [2011-03-16 16:54:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\facemoods.com [2012-12-16 15:07:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\FreeAudioPack [2012-10-01 13:50:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Gadu-Gadu [2013-03-09 23:12:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Gadu-Gadu 10 [2010-12-30 11:49:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\GetRightToGo [2012-03-26 15:58:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\GG [2013-04-08 18:51:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\gtk-2.0 [2011-11-07 21:23:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\IDM [2013-05-09 16:48:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\ipla [2011-04-21 17:13:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Leadertech [2013-05-06 08:22:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Mp3tag [2013-04-29 13:19:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\NCdownloader [2013-03-06 20:21:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Notepad++ [2013-05-09 17:28:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\OpenCandy [2010-09-04 17:25:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\OpenFM [2010-02-25 18:57:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Opera [2011-04-13 17:07:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\PC Suite [2012-09-27 21:01:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\PhotoScape [2011-04-23 21:06:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\PriceGong [2013-01-25 22:00:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Raptr [2010-11-18 20:27:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\RDRM [2013-04-29 17:04:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Red Alert 3 [2012-03-08 21:35:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Samsung [2013-04-29 13:33:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\searchquband [2013-04-29 13:33:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\searchqutoolbar [2010-09-15 16:30:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Settlement. Colossus [2011-09-15 10:33:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\ShopperReports3 [2012-12-16 13:55:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Songbird2 [2013-04-29 13:32:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Systweak [2010-05-30 20:09:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Tank Combat [2010-11-14 16:11:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Thinstall [2011-05-01 17:45:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Toolbar4 [2012-12-19 16:28:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\TuneUp Software [2011-03-03 19:52:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Ubisoft [2011-10-08 20:57:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Unity [2013-02-27 18:39:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\URSoft [2013-02-27 20:16:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\uTorrent [2013-01-25 16:42:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\USER\Dane aplikacji\Youtube Downloader HD [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:1CE11B51 < End of report >