Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-07-2013 Ran by Szymi (administrator) on 04-07-2013 15:17:38 Running from C:\Users\Szymi\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Dassault Systemes) C:\Program Files\Dassault Systemes\B20\win_b64\code\bin\CATSysDemon.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\MAX\nimxs.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe (Dassault Systemes SolidWorks Corp.) C:\Program Files (x86)\SolidWorks Corp\SolidWorks Workgroup PDM\Vault\pdmwService.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe (National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe (National Instruments Corporation) C:\Windows\SysWOW64\nidevldu.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe (National Instruments Corporation) C:\Windows\SysWOW64\nipxism.exe (VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Agilent) C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe (Agilent) C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe (Agilent) C:\Program Files\Agilent\IO Libraries Suite\AgilentNkoServer.exe (Agilent Technologies) C:\Program Files\Agilent\IO Libraries Suite\bin\iproc488.exe (Agilent Technologies) C:\Program Files\Agilent\IO Libraries Suite\bin\iproc82357.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\SeaPort.exe (Agilent) C:\Program Files (x86)\Agilent\IO Libraries Suite\AgilentPXIResourceManager.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Agilent Technologies) C:\Program Files\Agilent\IO Libraries Suite\bin\iprocsvr.exe (Agilent Technologies) C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2701.exe (Agilent Technologies) C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2761.exe (National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe (Agilent Technologies) C:\Program Files\Agilent\IO Libraries Suite\bin\iproc8491.exe (Agilent Technologies) C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2741a.exe (Agilent Technologies) C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2751.exe (Agilent Technologies) C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2722a.exe (Agilent Technologies) C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2723a.exe (Opera Software) C:\Program Files (x86)\Opera\opera.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Display Manager\WifiManager.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe (Intel Corporation) C:\Windows\system32\igfxext.exe (SEC) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe (Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\SamsungFastStart\SmartRestarter.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe (SAMSUNG Electronics) C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe (Samsung Electronics) C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe (ParetoLogic, Inc.) C:\Program Files (x86)\ParetoLogic\RegCure Pro\RegCurePro.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [11775592 2011-01-27] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] %ProgramFiles%\Elantech\ETDCtrl.exe [2588968 2010-11-13] (ELAN Microelectronics Corp.) HKLM\...\Run: [IntelTBRunOnce] wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" [4526 2010-10-08] () HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\daemon.exe" -autorun [691656 2009-04-23] (DT Soft Ltd) HKCU\...\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3077528 2011-11-07] () HKCU\...\Run: [Facebook Update] "C:\Users\Szymi\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2012-11-21] (Facebook Inc.) HKCU\...\Run: [Tiny download manager] "C:\Users\Szymi\AppData\Local\DM\TinyDM.exe" /M [x] HKCU\...\Run: [NIRegistrationWizard] C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe -autoDiscover 1 -displayIfNoneFound 0 -displayRegisterOptions 1 -sleepIfNoneFound 0 -locale 1045 [846520 2010-06-21] () HKCU\...\Policies\system: [LogonHoursAction] 2 HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 MountPoints2: {2e2ee711-fa2e-11e0-bdd7-b4749fd6eb8d} - F:\LaunchU3.exe -a MountPoints2: {79f9b833-dfb8-11e0-82a9-e811326baf24} - G:\autorun.exe HKLM-x32\...\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe" [87336 2010-09-20] (CyberLink Corp.) HKLM-x32\...\Run: [CLMLServer] "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" [103720 2009-11-02] (CyberLink) HKLM-x32\...\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [348664 2012-08-08] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [41208 2012-12-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [946352 2012-12-02] (Adobe Systems Incorporated) HKLM-x32\...\Run: [EaseUS EPM tray] C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe [2081792 2013-03-29] (CHENGDU YIWO Tech Development Co., Ltd) HKLM-x32\...\Run: [NI Update Service] "C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe" -startupTask [853640 2012-11-16] (National Instruments) HKLM-x32\...\Run: [niDevMon] C:\Program Files (x86)\National Instruments\NI-DAQ\HWConfig\nidevmon.exe [110224 2012-07-11] (National Instruments Corporation) HKLM-x32\...\Run: [agu2701] C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2701.exe [544768 2009-08-27] (Agilent Technologies) HKLM-x32\...\Run: [agu2761] C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2761.exe [681472 2011-03-21] (Agilent Technologies) HKLM-x32\...\Run: [agu2741a] C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2741a.exe [681472 2011-05-16] (Agilent Technologies) HKLM-x32\...\Run: [agu2751] C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2751.exe [557056 2010-12-22] (Agilent Technologies) HKLM-x32\...\Run: [agu2722a] C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2722a.exe [544768 2010-12-20] (Agilent Technologies) HKLM-x32\...\Run: [agu2723a] C:\Program Files (x86)\Agilent\Measurement Manager 2.2\Bin\agu2723a.exe [557056 2010-12-20] (Agilent Technologies) AppInit_DLLs: C:\Windows\system32\nvinitx.dll [250504 2013-02-10] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll [205184 2013-02-10] (NVIDIA Corporation) Startup: C:\ProgramData\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\ProgramData\Start Menu\Programs\Startup\IO Control.lnk ShortcutTarget: IO Control.lnk -> C:\Windows\Installer\{B8A6EF27-E73B-47F9-83D5-62D652E0E2E4}\NewShortcut5_2AA07447F06844BA88FA6CE6A9CE3FFC.exe (Flexera Software, Inc.) Startup: C:\ProgramData\Start Menu\Programs\Startup\NI Error Reporting.lnk ShortcutTarget: NI Error Reporting.lnk -> C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation) Startup: C:\ProgramData\Start Menu\Programs\Startup\SolidWorks Pobieracz w tle.lnk ShortcutTarget: SolidWorks Pobieracz w tle.lnk -> C:\Program Files (x86)\Common Files\Mened¿er instalacji SolidWorks\BackgroundDownloading\sldBgDwld.exe (Dassault Systemes SolidWorks Corp.) BootExecute: ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://opera/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://samsung.msn.com BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: W2PBrowser Class - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll () BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll No File Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll (Microsoft Corporation.) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Winsock: Catalog5 01 mswsock.dll File Not found (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5 08 mswsock.dll File Not found (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll" Winsock: Catalog5 10 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [24320] (National Instruments Corporation) Winsock: Catalog5-x64 01 mswsock.dll File Not found (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5-x64 08 mswsock.dll File Not found (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll" Winsock: Catalog5-x64 10 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26368] (National Instruments Corporation) Winsock: Catalog5-x64 11 C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsNsp.dll [161280] (Agilent Technologies, Inc.) Tcpip\Parameters: [DhcpNameServer] 141.30.66.135 141.30.66.1 ==================== Services (Whitelisted) ================= R2 AgilentIOLibrariesService; C:\Program Files\Agilent\IO Libraries Suite\AgilentIOLibrariesService.exe [69992 2012-02-23] (Agilent) R3 AgilentPXIResourceManager; C:\Program Files (x86)\Agilent\IO Libraries Suite\AgilentPXIResourceManager.exe [200040 2012-02-23] (Agilent) R2 AgtMdnsResponder; C:\Program Files\Agilent\IO Libraries Suite\LxiMdnsResponder.exe [424960 2011-03-21] (Agilent) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [86224 2012-05-09] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [110032 2012-05-09] (Avira Operations GmbH & Co. KG) R2 BBDemon; C:\Program Files\Dassault Systemes\B20\win_b64\code\bin\CATSysDemon.exe [46592 2009-09-26] (Dassault Systemes) R2 LkCitadelServer; C:\Windows\SysWOW64\lkcitdl.exe [695136 2010-10-27] (National Instruments, Inc.) R2 lkClassAds; C:\Windows\SysWOW64\lkads.exe [46192 2011-06-14] (National Instruments Corporation) R2 lkTimeSync; C:\Windows\SysWOW64\lktsrv.exe [56952 2011-06-14] (National Instruments Corporation) R2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [51360 2012-11-21] (National Instruments Corporation) R2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [54472 2012-11-30] (National Instruments Corporation) S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [76488 2012-11-30] (National Instruments Corporation) R2 nidevldu; C:\Windows\SysWOW64\nidevldu.exe [102040 2013-02-08] (National Instruments Corporation) R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [362104 2011-06-14] (National Instruments Corporation) S4 NILM License Manager; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1427688 2010-08-02] (Macrovision Corporation) R2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [258776 2012-09-26] (National Instruments Corporation) R2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [172344 2012-12-19] (National Instruments Corporation) R2 nipxirmu; C:\Windows\SysWOW64\nipxism.exe [19056 2013-01-17] (National Instruments Corporation) R2 niSvcLoc; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [54464 2012-11-30] (National Instruments Corporation) R2 NITaggerService; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [676016 2011-06-14] (National Instruments Corporation) S3 npggsvc; C:\Windows\SysWow64\GameMon.des [4573336 2013-04-07] (INCA Internet Co., Ltd.) R2 PDMWorks Workgroup Server; C:\Program Files (x86)\SolidWorks Corp\SolidWorks Workgroup PDM\Vault\pdmwService.exe [3308032 2012-06-08] (Dassault Systemes SolidWorks Corp.) S3 Remote Solver for Flow Simulation 2012; C:\Program Files\SolidWorks Corp\SolidWorks Flow Simulation\binCFW\StandAloneSlv.exe [109624 2011-09-28] (Mentor Graphics Corporation) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] () ==================== Drivers (Whitelisted) ==================== R3 AgPciMem; C:\Program Files\Agilent\IO Libraries Suite\AgPciMem.sys [14448 2012-02-23] (Agilent Technologies) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [98848 2012-05-09] (Avira GmbH) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132832 2012-05-09] (Avira GmbH) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [27760 2011-09-16] (Avira GmbH) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] () S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [17480 2013-03-07] () S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] () S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9800 2013-03-07] () R1 LUMDriver; C:\Windows\system32\drivers\LUMDriver.sys [24848 2008-01-02] (IBM) R1 LUMDriver; C:\Windows\system32\drivers\LUMDriver.sys [24848 2008-01-02] (IBM) S3 lvalarmk; C:\Windows\system32\drivers\lvalarmk.sys [25336 2012-09-21] (National Instruments Corporation) S3 ni1006k; C:\Windows\system32\drivers\ni1006k.sys [30800 2013-01-14] (National Instruments Corporation) S3 ni1045k; C:\Windows\system32\drivers\ni1045kl.sys [12984 2013-01-14] (National Instruments Corporation) S3 ni1065k; C:\Windows\system32\drivers\ni1065k.sys [27832 2013-01-14] (National Instruments Corporation) S3 nicdcck; C:\Windows\system32\drivers\nicdcckl.sys [12992 2012-07-23] (National Instruments Corporation) S3 nicdrk; C:\Windows\system32\drivers\nicdrkl.sys [11864 2011-07-21] (National Instruments Corporation) S3 nicmrk; C:\Windows\system32\drivers\nicmrkl.sys [13456 2013-02-13] (National Instruments Corporation) S3 nicondrk; C:\Windows\system32\drivers\nicondrkl.sys [13416 2013-02-13] (National Instruments Corporation) S3 nicsrk; C:\Windows\system32\drivers\nicsrkl.sys [13424 2013-02-13] (National Instruments Corporation) R3 nidimk; C:\Windows\system32\drivers\nidimkl.sys [13000 2012-06-28] (National Instruments Corporation) S3 nidmxfk; C:\Windows\system32\drivers\nidmxfkl.sys [13416 2013-02-06] (National Instruments Corporation) S3 nidsark; C:\Windows\system32\drivers\nidsarkl.sys [13432 2013-02-13] (National Instruments Corporation) S3 niemrk; C:\Windows\system32\drivers\niemrkl.sys [13424 2013-02-13] (National Instruments Corporation) S3 niesrk; C:\Windows\system32\drivers\niesrkl.sys [13424 2013-02-13] (National Instruments Corporation) R3 NIEthernetDeviceEnumerator; C:\Windows\System32\DRIVERS\niede.sys [38064 2012-01-12] (National Instruments Corporation) S3 nifslk; C:\Windows\system32\drivers\nifslkl.sys [13432 2013-02-13] (National Instruments Corporation) R3 nimdbgk; C:\Windows\system32\drivers\nimdbgkl.sys [13000 2012-06-28] (National Instruments Corporation) R3 nimru2k; C:\Windows\system32\drivers\nimru2kl.sys [13008 2012-06-28] (National Instruments Corporation) S3 nimsdrk; C:\Windows\system32\drivers\nimsdrkl.sys [13480 2013-02-08] (National Instruments Corporation) S3 nimstsk; C:\Windows\system32\drivers\nimstskl.sys [13448 2013-02-06] (National Instruments Corporation) R3 nimxdfk; C:\Windows\system32\drivers\nimxdfkl.sys [12984 2012-06-28] (National Instruments Corporation) S3 nimxpk; C:\Windows\system32\drivers\nimxpkl.sys [13448 2013-02-08] (National Instruments Corporation) S3 ninshsdk; C:\Windows\system32\drivers\ninshsdkl.sys [13000 2012-10-09] (National Instruments Corporation) S3 niorbk; C:\Windows\system32\drivers\niorbkl.sys [12992 2012-06-28] (National Instruments Corporation) S3 nipalfwedl; C:\Windows\System32\drivers\nipalfwedl.sys [13624 2012-12-19] (National Instruments Corporation) R0 NIPALK; C:\Windows\System32\drivers\nipalk.sys [926992 2012-12-19] (National Instruments Corporation) S3 nipalusbedl; C:\Windows\System32\drivers\nipalusbedl.sys [13624 2012-12-19] (National Instruments Corporation) R0 nipbcfk; C:\Windows\System32\drivers\nipbcfk.sys [16984 2012-12-18] (National Instruments Corporation) R0 nipxibaf; C:\Windows\System32\drivers\nipxibaf.sys [87288 2013-01-14] (National Instruments Corporation) R0 nipxibrc; C:\Windows\System32\drivers\nipxibrc.sys [62216 2013-01-14] (National Instruments Corporation) S3 nipxigpk; C:\Windows\system32\drivers\nipxigpk.sys [22680 2011-08-09] (National Instruments Corporation) R2 nipxirmk; C:\Windows\system32\drivers\nipxirmkl.sys [13432 2013-01-17] (National Instruments Corporation) S3 niraptrk; C:\Windows\system32\drivers\niraptrkl.sys [13416 2013-02-13] (National Instruments Corporation) S3 niscdk; C:\Windows\system32\drivers\niscdkl.sys [12984 2012-03-07] (National Instruments Corporation) S3 nisdigk; C:\Windows\system32\drivers\nisdigkl.sys [12960 2012-02-05] (National Instruments Corporation) S3 nisftk; C:\Windows\system32\drivers\nisftkl.sys [12952 2012-06-01] (National Instruments Corporation) S3 nispdk; C:\Windows\system32\drivers\nispdkl.sys [12984 2012-03-07] (National Instruments Corporation) S3 nissrk; C:\Windows\system32\drivers\nissrkl.sys [13424 2013-02-13] (National Instruments Corporation) S3 nistc2k; C:\Windows\system32\drivers\nistc2kl.sys [11824 2009-01-05] (National Instruments Corporation) S3 nistc3rk; C:\Windows\system32\drivers\nistc3rkl.sys [13416 2013-02-07] (National Instruments Corporation) S3 nistcrk; C:\Windows\system32\drivers\nistcrkl.sys [12968 2011-07-18] (National Instruments Corporation) S3 niswdk; C:\Windows\system32\drivers\niswdkl.sys [12976 2012-10-11] (National Instruments Corporation) S3 nitiork; C:\Windows\system32\drivers\nitiorkl.sys [13440 2013-02-07] (National Instruments Corporation) S3 niufurk; C:\Windows\system32\drivers\niufurkl.sys [13008 2013-02-13] (National Instruments Corporation) S3 niwfrk; C:\Windows\system32\drivers\niwfrkl.sys [13424 2013-02-13] (National Instruments Corporation) R3 nixsrk; C:\Windows\system32\drivers\nixsrkl.sys [13424 2013-02-13] (National Instruments Corporation) S3 Usbtmc; C:\Windows\System32\Drivers\ausbtmc.sys [22528 2011-08-10] (IVI Foundation) R0 vsock; C:\Windows\System32\drivers\vsock.sys [70296 2012-10-24] (VMware, Inc.) S3 usb6xxxk; \??\C:\Windows\system32\drivers\usb6xxxkl.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== Error(0) reading file: "C:\Windows\System32\ " 2013-07-04 15:15 - 2013-07-04 15:15 - 01934636 ____A (Farbar) C:\Users\Szymi\Downloads\FRST64.exe 2013-07-04 15:15 - 2013-07-04 15:15 - 00000000 ____D C:\FRST 2013-07-04 15:08 - 2013-07-04 15:08 - 00001190 ____A C:\Users\Szymi\Desktop\RegCure Pro.lnk 2013-07-04 15:08 - 2013-07-04 15:08 - 00000494 ____A C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job 2013-07-04 15:08 - 2013-07-04 15:08 - 00000468 ____A C:\Windows\Tasks\ParetoLogic Registration3.job 2013-07-04 15:08 - 2013-07-04 15:08 - 00000442 ____A C:\Windows\Tasks\ParetoLogic Update Version3.job 2013-07-04 15:08 - 2013-07-04 15:08 - 00000410 ____A C:\Windows\Tasks\RegCure Pro.job 2013-07-04 15:07 - 2013-07-04 15:07 - 00000000 ____D C:\ProgramData\ParetoLogic 2013-07-04 15:07 - 2013-07-04 15:07 - 00000000 ____D C:\Program Files (x86)\ParetoLogic 2013-07-04 14:11 - 2013-07-04 14:11 - 05162600 ____A (ParetoLogic, Inc.) C:\Users\Szymi\Downloads\Repair-tool.exe 2013-07-04 13:45 - 2013-07-04 15:08 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\ParetoLogic 2013-07-04 13:45 - 2013-07-04 13:45 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\DriverCure 2013-07-04 13:43 - 2013-07-04 13:43 - 05791960 ____A (ParetoLogic Inc.) C:\Users\Szymi\Downloads\ParetoLogic PC Health Advisor.exe 2013-07-04 09:57 - 2013-07-04 09:57 - 00000000 ____D C:\Users\Szymi\Documents\Agilent 2013-07-04 09:17 - 2013-07-04 09:17 - 00002446 ____A C:\Users\Szymi\Desktop\Agilent Measurement Manager 2.2.lnk 2013-07-04 09:00 - 2013-07-04 10:49 - 00000110 ____A C:\Windows\agPXICfg.ini 2013-07-04 08:59 - 2013-07-04 08:59 - 00000000 ____D C:\Program Files\Agilent 2013-07-04 08:50 - 2013-07-04 09:15 - 00000000 ____D C:\Program Files (x86)\Agilent 2013-07-04 08:50 - 2013-07-04 08:50 - 00000000 ____D C:\Program Files\DIFX 2013-07-02 21:40 - 2013-07-03 14:58 - 00001169 ____A C:\Windows\FOE2.ini 2013-07-02 21:38 - 2013-07-02 21:53 - 00000000 ____D C:\Users\Szymi\Documents\FIFAOnline2 2013-07-02 21:38 - 2013-04-07 21:21 - 04573336 ____A (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\GameMon.des 2013-07-02 21:37 - 2005-01-02 14:43 - 00004682 ____A (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\npptNT2.sys 2013-07-02 21:37 - 2003-07-18 23:17 - 00005174 ____A C:\Windows\SysWOW64\nppt9x.vxd 2013-07-02 21:36 - 2013-07-02 21:36 - 00000000 ____D C:\Program Files\Common Files\INCA Shared 2013-07-02 21:35 - 2013-07-03 17:21 - 00000000 ____D C:\Log 2013-07-02 21:35 - 2013-07-02 21:35 - 00001052 ____A C:\Users\Public\Desktop\Fifa Online 2.lnk 2013-07-02 13:17 - 2012-02-23 17:31 - 00050024 ____A (Agilent Technologies) C:\Windows\System32\gpib-32.orig.dll 2013-07-02 13:17 - 2012-02-23 17:29 - 00071528 ____A (Agilent Technologies) C:\Windows\SysWOW64\gpib-32.dll 2013-07-01 14:49 - 2013-07-04 15:13 - 00002273 ____A C:\Users\Szymi\Downloads\FSS.txt 2013-07-01 14:44 - 2013-07-01 14:44 - 00158034 ____A C:\Users\Szymi\Downloads\OTL.Txt 2013-07-01 14:26 - 2013-07-01 14:26 - 00000098 ____A C:\Windows\DeleteOnReboot.bat 2013-07-01 14:25 - 2013-07-01 14:26 - 00003294 ____A C:\AdwCleaner[S1].txt 2013-07-01 14:17 - 2013-07-01 14:17 - 00000000 ____D C:\Users\Public\Desktop\CC Support 2013-06-28 22:37 - 2013-06-28 22:37 - 00000000 ____D C:\ProgramData\id Software 2013-06-27 14:26 - 2013-06-27 14:26 - 00000000 ____D C:\Program Files\Caminova 2013-06-27 14:26 - 2013-06-27 14:26 - 00000000 ____D C:\Program Files (x86)\Caminova 2013-06-27 14:25 - 2013-06-27 14:25 - 08331264 ____A C:\Users\Szymi\Downloads\djvuctrl-x64-6.1.4-pl-r31831.msi 2013-06-25 22:30 - 2013-06-25 22:30 - 00000000 ____D C:\ProgramData\PXISA 2013-06-25 22:19 - 2013-06-25 22:19 - 00001092 ____A C:\Users\Public\Desktop\NI MAX.lnk 2013-06-25 22:15 - 2013-06-26 17:14 - 00000000 ____D C:\Users\Public\Documents\National Instruments 2013-06-25 18:36 - 2013-06-25 22:33 - 00174320 ____A C:\Windows\SysWOW64\niorbmap 2013-06-25 17:23 - 2013-06-25 17:23 - 00155224 ____A C:\Users\Szymi\Downloads\NIDAQ970f0_downloader.exe 2013-06-25 17:19 - 2013-07-04 09:56 - 00000000 ____D C:\Users\Szymi\AppData\Local\Agilent 2013-06-25 17:19 - 2013-06-25 17:19 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\Agilent 2013-06-25 12:03 - 2013-07-04 09:57 - 00000000 ____D C:\ProgramData\Agilent 2013-06-25 12:01 - 2013-06-25 12:02 - 00000000 ____D C:\ProgramData\IVI Foundation 2013-06-25 12:01 - 2013-06-25 12:02 - 00000000 ____D C:\Program Files\IVI Foundation 2013-06-25 11:01 - 2013-06-25 11:01 - 00208216 ____A (Kaspersky Lab, GERT) C:\Windows\System32\Drivers\89193606.sys 2013-06-24 00:21 - 2013-06-24 00:21 - 00355927 ____A (Farbar) C:\Users\Szymi\Downloads\FSS.exe 2013-06-24 00:07 - 2013-06-24 00:07 - 00000000 ____D C:\Users\Szymi\Downloads\gm 2013-06-23 23:59 - 2013-06-25 10:18 - 00000000 ____D C:\Windows\SysWOW64\Shared Memory 2013-06-23 23:58 - 2013-06-23 23:58 - 00000000 ____D C:\_OTL 2013-06-23 23:57 - 2013-06-23 23:57 - 00602112 ____A (OldTimer Tools) C:\Users\Szymi\Downloads\OTL.exe 2013-06-23 21:23 - 2013-07-01 22:37 - 00000000 ____D C:\Users\Szymi\Documents\LabVIEW Data 2013-06-23 21:03 - 2013-06-26 17:14 - 00000000 ____D C:\Users\Szymi\AppData\Local\National Instruments 2013-06-23 20:39 - 2013-06-25 22:34 - 00000000 ____D C:\Program Files\National Instruments 2013-06-23 20:39 - 2013-06-23 20:39 - 00000000 ____D C:\Windows\SysWOW64\cvirte 2013-06-22 23:50 - 2013-06-23 00:00 - 00000000 ____D C:\Users\Szymi\Desktop\Trening 2013-06-22 13:09 - 2013-07-04 15:13 - 00000000 ____D C:\Users\Szymi\Desktop\Naprawa 2013-06-22 12:41 - 2013-06-22 12:41 - 00001829 ____A C:\Users\Public\Desktop\Opera.lnk 2013-06-22 12:14 - 2013-06-22 12:14 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-06-22 12:14 - 2013-06-22 12:14 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-06-22 12:14 - 2013-06-22 12:14 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-06-22 12:11 - 2013-06-22 12:18 - 00000000 ____D C:\Users\Szymi\AppData\Local\DM 2013-06-21 15:20 - 2013-06-21 15:20 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\Malwarebytes 2013-06-21 15:19 - 2013-06-21 15:19 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-06-21 15:09 - 2013-06-21 15:10 - 00262144 ____A C:\Windows\Minidump\062113-22136-01.dmp 2013-06-21 14:54 - 2013-06-21 15:09 - 565936045 ____A C:\Windows\MEMORY.DMP 2013-06-21 14:54 - 2013-06-21 15:09 - 00000000 ____D C:\Windows\Minidump 2013-06-21 14:54 - 2013-06-21 14:55 - 00262144 ____A C:\Windows\Minidump\062113-33992-01.dmp 2013-06-21 13:49 - 2013-06-21 13:49 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-06-21 10:19 - 2013-06-25 10:58 - 00000000 ____D C:\TDSSKiller_Quarantine 2013-06-20 09:11 - 2013-04-26 14:01 - 00000111 ____A C:\Users\Szymi\Desktop\id haslo.txt 2013-06-14 20:20 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-14 20:20 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-14 20:20 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-14 20:20 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-14 20:20 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-14 20:20 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-14 20:20 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-14 20:20 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-14 20:20 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-14 20:20 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-14 20:20 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-14 20:20 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-12 15:41 - 2013-06-12 15:41 - 09089416 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2013-06-12 08:12 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-12 08:12 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-12 08:12 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-12 08:12 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-12 08:12 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-12 08:12 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-12 08:12 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-12 08:12 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-12 08:12 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-12 08:12 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-12 08:12 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-12 08:12 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-12 08:12 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-12 08:12 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-12 08:12 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-12 08:12 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-12 08:12 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-12 08:12 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-12 08:12 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-12 08:04 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 08:04 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-12 08:03 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 08:03 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 08:03 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 08:03 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 08:03 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-12 08:03 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-12 08:03 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-12 08:03 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 08:03 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-12 08:03 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-12 08:03 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-12 08:03 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-12 08:03 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 08:03 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-12 08:03 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-12 08:03 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-12 08:03 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-11 14:14 - 2013-06-14 14:51 - 00000000 ____D C:\Users\Szymi\Desktop\Umowa niemcy 2013-06-11 14:10 - 2013-06-11 14:10 - 00000000 ____D C:\Program Files\Tracker Software 2013-06-05 23:03 - 2013-06-06 00:16 - 00000000 ____D C:\ide-4.7-workspace 2013-06-05 23:03 - 2013-06-05 23:03 - 00000000 ____D C:\Users\Szymi\momentics 2013-06-05 22:31 - 2013-06-05 22:31 - 00002128 ____A C:\Windows\vpd.properties 2013-06-05 22:26 - 2013-06-05 22:31 - 00000000 ____D C:\QNX650 2013-06-05 22:26 - 2013-06-05 22:26 - 00000949 ____A C:\Users\Public\Desktop\QNX Momentics IDE 4.7.lnk 2013-06-05 22:08 - 2013-06-05 22:31 - 00000000 ____D C:\Program Files (x86)\QNX Software Systems 2013-06-05 17:26 - 2013-06-06 01:59 - 00000000 ____D C:\Users\Szymi\AppData\Local\VMware 2013-06-05 17:26 - 2013-06-06 01:38 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\VMware 2013-06-05 17:18 - 2012-10-24 14:17 - 00070296 ____A (VMware, Inc.) C:\Windows\System32\Drivers\vsock.sys 2013-06-05 17:18 - 2012-10-24 14:17 - 00067224 ____A (VMware, Inc.) C:\Windows\System32\vsocklib.dll 2013-06-05 17:18 - 2012-10-24 14:17 - 00063128 ____A (VMware, Inc.) C:\Windows\SysWOW64\vsocklib.dll 2013-06-05 17:17 - 2013-02-26 02:29 - 00933968 ____A (VMware, Inc.) C:\Windows\System32\vnetlib64.dll 2013-06-05 17:17 - 2013-02-26 02:28 - 00436304 ____A (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe 2013-06-05 17:17 - 2013-02-26 02:28 - 00357456 ____A (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe 2013-06-05 17:17 - 2013-02-26 02:28 - 00067664 ____A (VMware, Inc.) C:\Windows\System32\Drivers\vmx86.sys 2013-06-05 17:17 - 2013-02-26 02:28 - 00030800 ____A (VMware, Inc.) C:\Windows\System32\Drivers\vmnetuserif.sys 2013-06-05 17:17 - 2013-02-26 02:27 - 00033360 ____A (VMware, Inc.) C:\Windows\System32\Drivers\VMkbd.sys 2013-06-05 17:17 - 2012-10-11 16:15 - 00052376 ____A (VMware, Inc.) C:\Windows\System32\Drivers\hcmon.sys 2013-06-05 17:16 - 2013-07-04 08:44 - 00000000 ____D C:\ProgramData\VMware 2013-06-05 17:16 - 2013-07-02 16:24 - 01647900 ____A C:\Windows\SysWOW64\PerfStringBackup.INI 2013-06-05 17:16 - 2013-06-05 17:16 - 00000000 ____D C:\Program Files\Common Files\VMware 2013-06-05 17:16 - 2013-06-05 17:16 - 00000000 ____D C:\Program Files (x86)\VMware 2013-06-05 07:23 - 2013-06-05 07:23 - 01509376 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2013-06-05 07:23 - 2013-06-05 07:23 - 01441280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-06-05 07:23 - 2013-06-05 07:23 - 01400416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-06-05 07:23 - 2013-06-05 07:23 - 01400416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat 2013-06-05 07:23 - 2013-06-05 07:23 - 01054720 ____A (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00905728 ____A (Microsoft Corporation) C:\Windows\System32\mshtmlmedia.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00762368 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00719360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00629248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00599552 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00523264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00452096 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00441856 ____A (Microsoft Corporation) C:\Windows\System32\html.iec 2013-06-05 07:23 - 2013-06-05 07:23 - 00361984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-06-05 07:23 - 2013-06-05 07:23 - 00357888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00281600 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00270848 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00247296 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00242200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00235008 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00232960 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00226816 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00226304 ____A (Microsoft Corporation) C:\Windows\System32\elshyph.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00216064 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00204800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00185344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00173568 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00167424 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00158720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00144896 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00138752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00137216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00136192 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00135680 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00125440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00117248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00102912 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00097280 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00092160 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00082432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00081408 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00079872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx 2013-06-05 07:23 - 2013-06-05 07:23 - 00073728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00069120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00062976 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00061952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-06-05 07:23 - 2013-06-05 07:23 - 00057344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00051200 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00041984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00038400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00027648 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00023040 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00013824 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00012800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00012800 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-06-05 07:18 - 2013-06-05 07:31 - 00009534 ____A C:\Windows\IE10_main.log ==================== One Month Modified Files and Folders ======= 2013-07-04 15:15 - 2013-07-04 15:15 - 01934636 ____A (Farbar) C:\Users\Szymi\Downloads\FRST64.exe 2013-07-04 15:15 - 2013-07-04 15:15 - 00000000 ____D C:\FRST 2013-07-04 15:13 - 2013-07-01 14:49 - 00002273 ____A C:\Users\Szymi\Downloads\FSS.txt 2013-07-04 15:13 - 2013-06-22 13:09 - 00000000 ____D C:\Users\Szymi\Desktop\Naprawa 2013-07-04 15:08 - 2013-07-04 15:08 - 00001190 ____A C:\Users\Szymi\Desktop\RegCure Pro.lnk 2013-07-04 15:08 - 2013-07-04 15:08 - 00000494 ____A C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job 2013-07-04 15:08 - 2013-07-04 15:08 - 00000468 ____A C:\Windows\Tasks\ParetoLogic Registration3.job 2013-07-04 15:08 - 2013-07-04 15:08 - 00000442 ____A C:\Windows\Tasks\ParetoLogic Update Version3.job 2013-07-04 15:08 - 2013-07-04 15:08 - 00000410 ____A C:\Windows\Tasks\RegCure Pro.job 2013-07-04 15:08 - 2013-07-04 13:45 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\ParetoLogic 2013-07-04 15:07 - 2013-07-04 15:07 - 00000000 ____D C:\ProgramData\ParetoLogic 2013-07-04 15:07 - 2013-07-04 15:07 - 00000000 ____D C:\Program Files (x86)\ParetoLogic 2013-07-04 15:07 - 2011-11-07 17:51 - 00000000 ____D C:\Users\Szymi\AppData\Local\PMB Files 2013-07-04 15:07 - 2011-11-07 17:51 - 00000000 ____D C:\ProgramData\PMB Files 2013-07-04 14:40 - 2012-04-27 21:18 - 00000930 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-04 14:11 - 2013-07-04 14:11 - 05162600 ____A (ParetoLogic, Inc.) C:\Users\Szymi\Downloads\Repair-tool.exe 2013-07-04 13:45 - 2013-07-04 13:45 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\DriverCure 2013-07-04 13:43 - 2013-07-04 13:43 - 05791960 ____A (ParetoLogic Inc.) C:\Users\Szymi\Downloads\ParetoLogic PC Health Advisor.exe 2013-07-04 13:37 - 2011-09-15 18:05 - 00131558 ____A C:\Windows\DPINST.LOG 2013-07-04 13:31 - 2011-03-10 01:33 - 00740930 ____A C:\Windows\System32\perfh015.dat 2013-07-04 13:31 - 2011-03-10 01:33 - 00156112 ____A C:\Windows\System32\perfc015.dat 2013-07-04 13:31 - 2009-07-14 07:13 - 01671762 ____A C:\Windows\System32\PerfStringBackup.INI 2013-07-04 12:29 - 2012-11-21 16:24 - 00000928 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-129265271-3525497852-1072832283-1001UA.job 2013-07-04 10:49 - 2013-07-04 09:00 - 00000110 ____A C:\Windows\agPXICfg.ini 2013-07-04 10:34 - 2011-09-12 14:56 - 00000000 ____D C:\Users\Szymi\Instalki 2013-07-04 09:57 - 2013-07-04 09:57 - 00000000 ____D C:\Users\Szymi\Documents\Agilent 2013-07-04 09:57 - 2013-06-25 12:03 - 00000000 ____D C:\ProgramData\Agilent 2013-07-04 09:56 - 2013-06-25 17:19 - 00000000 ____D C:\Users\Szymi\AppData\Local\Agilent 2013-07-04 09:23 - 2011-09-15 18:50 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-04 09:17 - 2013-07-04 09:17 - 00002446 ____A C:\Users\Szymi\Desktop\Agilent Measurement Manager 2.2.lnk 2013-07-04 09:15 - 2013-07-04 08:50 - 00000000 ____D C:\Program Files (x86)\Agilent 2013-07-04 09:06 - 2011-03-09 07:52 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-04 08:59 - 2013-07-04 08:59 - 00000000 ____D C:\Program Files\Agilent 2013-07-04 08:52 - 2009-07-14 06:45 - 00014144 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-04 08:52 - 2009-07-14 06:45 - 00014144 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-04 08:50 - 2013-07-04 08:50 - 00000000 ____D C:\Program Files\DIFX 2013-07-04 08:44 - 2013-06-05 17:16 - 00000000 ____D C:\ProgramData\VMware 2013-07-04 08:44 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-04 08:44 - 2009-07-14 06:51 - 00122948 ____A C:\Windows\setupact.log 2013-07-04 00:02 - 2011-03-10 00:48 - 01307251 ____A C:\Windows\WindowsUpdate.log 2013-07-03 23:44 - 2011-09-15 18:35 - 00000000 ____D C:\Users\Szymi\Documents\Folder wymiany interfejsu Bluetooth 2013-07-03 17:21 - 2013-07-02 21:35 - 00000000 ____D C:\Log 2013-07-03 15:29 - 2012-11-21 16:24 - 00000906 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-129265271-3525497852-1072832283-1001Core.job 2013-07-03 14:58 - 2013-07-02 21:40 - 00001169 ____A C:\Windows\FOE2.ini 2013-07-03 14:39 - 2011-12-15 13:34 - 00000000 ____D C:\Users\Szymi\AppData\Local\CrashDumps 2013-07-02 21:53 - 2013-07-02 21:38 - 00000000 ____D C:\Users\Szymi\Documents\FIFAOnline2 2013-07-02 21:36 - 2013-07-02 21:36 - 00000000 ____D C:\Program Files\Common Files\INCA Shared 2013-07-02 21:35 - 2013-07-02 21:35 - 00001052 ____A C:\Users\Public\Desktop\Fifa Online 2.lnk 2013-07-02 16:24 - 2013-06-05 17:16 - 01647900 ____A C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-02 11:07 - 2011-09-17 20:29 - 00000000 ____D C:\Users\Szymi\Documents\Youcam 2013-07-01 22:37 - 2013-06-23 21:23 - 00000000 ____D C:\Users\Szymi\Documents\LabVIEW Data 2013-07-01 14:44 - 2013-07-01 14:44 - 00158034 ____A C:\Users\Szymi\Downloads\OTL.Txt 2013-07-01 14:27 - 2011-09-15 18:33 - 00320976 ____A C:\Windows\PFRO.log 2013-07-01 14:26 - 2013-07-01 14:26 - 00000098 ____A C:\Windows\DeleteOnReboot.bat 2013-07-01 14:26 - 2013-07-01 14:25 - 00003294 ____A C:\AdwCleaner[S1].txt 2013-07-01 14:17 - 2013-07-01 14:17 - 00000000 ____D C:\Users\Public\Desktop\CC Support 2013-07-01 11:30 - 2011-09-15 18:31 - 00000000 ____D C:\Program Files (x86)\Opera 2013-06-30 21:23 - 2012-02-08 02:23 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\Skype 2013-06-28 22:37 - 2013-06-28 22:37 - 00000000 ____D C:\ProgramData\id Software 2013-06-27 14:26 - 2013-06-27 14:26 - 00000000 ____D C:\Program Files\Caminova 2013-06-27 14:26 - 2013-06-27 14:26 - 00000000 ____D C:\Program Files (x86)\Caminova 2013-06-27 14:25 - 2013-06-27 14:25 - 08331264 ____A C:\Users\Szymi\Downloads\djvuctrl-x64-6.1.4-pl-r31831.msi 2013-06-26 17:14 - 2013-06-25 22:15 - 00000000 ____D C:\Users\Public\Documents\National Instruments 2013-06-26 17:14 - 2013-06-23 21:03 - 00000000 ____D C:\Users\Szymi\AppData\Local\National Instruments 2013-06-25 22:40 - 2012-10-12 20:36 - 00000000 ____D C:\ProgramData\National Instruments 2013-06-25 22:34 - 2013-06-23 20:39 - 00000000 ____D C:\Program Files\National Instruments 2013-06-25 22:33 - 2013-06-25 18:36 - 00174320 ____A C:\Windows\SysWOW64\niorbmap 2013-06-25 22:31 - 2012-10-12 20:37 - 00000000 ____D C:\Program Files (x86)\National Instruments 2013-06-25 22:30 - 2013-06-25 22:30 - 00000000 ____D C:\ProgramData\PXISA 2013-06-25 22:19 - 2013-06-25 22:19 - 00001092 ____A C:\Users\Public\Desktop\NI MAX.lnk 2013-06-25 17:23 - 2013-06-25 17:23 - 00155224 ____A C:\Users\Szymi\Downloads\NIDAQ970f0_downloader.exe 2013-06-25 17:19 - 2013-06-25 17:19 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\Agilent 2013-06-25 12:02 - 2013-06-25 12:01 - 00000000 ____D C:\ProgramData\IVI Foundation 2013-06-25 12:02 - 2013-06-25 12:01 - 00000000 ____D C:\Program Files\IVI Foundation 2013-06-25 12:01 - 2012-10-12 20:37 - 00000000 ____D C:\Program Files (x86)\IVI Foundation 2013-06-25 11:01 - 2013-06-25 11:01 - 00208216 ____A (Kaspersky Lab, GERT) C:\Windows\System32\Drivers\89193606.sys 2013-06-25 10:58 - 2013-06-21 10:19 - 00000000 ____D C:\TDSSKiller_Quarantine 2013-06-25 10:18 - 2013-06-23 23:59 - 00000000 ____D C:\Windows\SysWOW64\Shared Memory 2013-06-24 10:10 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\NDF 2013-06-24 00:21 - 2013-06-24 00:21 - 00355927 ____A (Farbar) C:\Users\Szymi\Downloads\FSS.exe 2013-06-24 00:07 - 2013-06-24 00:07 - 00000000 ____D C:\Users\Szymi\Downloads\gm 2013-06-23 23:58 - 2013-06-23 23:58 - 00000000 ____D C:\_OTL 2013-06-23 23:57 - 2013-06-23 23:57 - 00602112 ____A (OldTimer Tools) C:\Users\Szymi\Downloads\OTL.exe 2013-06-23 20:39 - 2013-06-23 20:39 - 00000000 ____D C:\Windows\SysWOW64\cvirte 2013-06-23 00:00 - 2013-06-22 23:50 - 00000000 ____D C:\Users\Szymi\Desktop\Trening 2013-06-22 12:41 - 2013-06-22 12:41 - 00001829 ____A C:\Users\Public\Desktop\Opera.lnk 2013-06-22 12:41 - 2011-09-15 18:31 - 00000000 ____D C:\Users\Szymi\AppData\Local\Opera 2013-06-22 12:35 - 2012-12-10 23:43 - 00000000 ____D C:\Program Files (x86)\Google 2013-06-22 12:33 - 2012-12-10 23:43 - 00000000 ____D C:\Users\Szymi\AppData\Local\Google 2013-06-22 12:18 - 2013-06-22 12:11 - 00000000 ____D C:\Users\Szymi\AppData\Local\DM 2013-06-22 12:14 - 2013-06-22 12:14 - 00000000 ____D C:\Windows\SysWOW64\searchplugins 2013-06-22 12:14 - 2013-06-22 12:14 - 00000000 ____D C:\Windows\SysWOW64\Extensions 2013-06-22 12:14 - 2013-06-22 12:14 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-06-21 20:39 - 2011-03-10 00:50 - 00000000 ___RD C:\Users\Public\Recorded TV 2013-06-21 20:39 - 2011-03-09 08:19 - 00000000 ____D C:\ProgramData\WinClon 2013-06-21 15:20 - 2013-06-21 15:20 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\Malwarebytes 2013-06-21 15:19 - 2013-06-21 15:19 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-06-21 15:10 - 2013-06-21 15:09 - 00262144 ____A C:\Windows\Minidump\062113-22136-01.dmp 2013-06-21 15:09 - 2013-06-21 14:54 - 565936045 ____A C:\Windows\MEMORY.DMP 2013-06-21 15:09 - 2013-06-21 14:54 - 00000000 ____D C:\Windows\Minidump 2013-06-21 14:55 - 2013-06-21 14:54 - 00262144 ____A C:\Windows\Minidump\062113-33992-01.dmp 2013-06-21 14:47 - 2011-09-15 18:05 - 00000000 ____D C:\users\Szymi 2013-06-21 13:49 - 2013-06-21 13:49 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-06-20 21:55 - 2009-07-14 01:19 - 00328704 ____A (Microsoft Corporation) C:\Windows\System32\services.exe 2013-06-14 18:04 - 2011-11-14 09:07 - 00000000 ____D C:\Users\Szymi\Documents\MATLAB 2013-06-14 14:51 - 2013-06-11 14:14 - 00000000 ____D C:\Users\Szymi\Desktop\Umowa niemcy 2013-06-13 07:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-06-12 15:41 - 2013-06-12 15:41 - 09089416 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2013-06-12 15:41 - 2012-04-27 21:18 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-12 15:41 - 2011-09-15 19:36 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-12 08:13 - 2011-09-18 14:15 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-12 07:54 - 2012-08-10 19:47 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\SolidWorks 2013-06-11 14:10 - 2013-06-11 14:10 - 00000000 ____D C:\Program Files\Tracker Software 2013-06-08 16:08 - 2013-06-14 20:20 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-14 20:20 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-14 20:20 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-14 20:20 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-14 20:20 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-14 20:20 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-14 20:20 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-14 20:20 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-14 20:20 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-14 20:20 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-14 20:20 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-14 20:20 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-06 01:59 - 2013-06-05 17:26 - 00000000 ____D C:\Users\Szymi\AppData\Local\VMware 2013-06-06 01:38 - 2013-06-05 17:26 - 00000000 ____D C:\Users\Szymi\AppData\Roaming\VMware 2013-06-06 00:16 - 2013-06-05 23:03 - 00000000 ____D C:\ide-4.7-workspace 2013-06-05 23:03 - 2013-06-05 23:03 - 00000000 ____D C:\Users\Szymi\momentics 2013-06-05 22:47 - 2011-09-15 18:35 - 00133304 ____A C:\Users\Szymi\AppData\Local\GDIPFONTCACHEV1.DAT 2013-06-05 22:36 - 2009-07-14 06:45 - 00480144 ____A C:\Windows\System32\FNTCACHE.DAT 2013-06-05 22:31 - 2013-06-05 22:31 - 00002128 ____A C:\Windows\vpd.properties 2013-06-05 22:31 - 2013-06-05 22:26 - 00000000 ____D C:\QNX650 2013-06-05 22:31 - 2013-06-05 22:08 - 00000000 ____D C:\Program Files (x86)\QNX Software Systems 2013-06-05 22:26 - 2013-06-05 22:26 - 00000949 ____A C:\Users\Public\Desktop\QNX Momentics IDE 4.7.lnk 2013-06-05 17:16 - 2013-06-05 17:16 - 00000000 ____D C:\Program Files\Common Files\VMware 2013-06-05 17:16 - 2013-06-05 17:16 - 00000000 ____D C:\Program Files (x86)\VMware 2013-06-05 07:37 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-06-05 07:31 - 2013-06-05 07:18 - 00009534 ____A C:\Windows\IE10_main.log 2013-06-05 07:23 - 2013-06-05 07:23 - 01509376 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2013-06-05 07:23 - 2013-06-05 07:23 - 01441280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-06-05 07:23 - 2013-06-05 07:23 - 01400416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-06-05 07:23 - 2013-06-05 07:23 - 01400416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat 2013-06-05 07:23 - 2013-06-05 07:23 - 01054720 ____A (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00905728 ____A (Microsoft Corporation) C:\Windows\System32\mshtmlmedia.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00762368 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00719360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00629248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00599552 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00523264 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00452096 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00441856 ____A (Microsoft Corporation) C:\Windows\System32\html.iec 2013-06-05 07:23 - 2013-06-05 07:23 - 00361984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-06-05 07:23 - 2013-06-05 07:23 - 00357888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00281600 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00270848 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00247296 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00242200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00235008 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00232960 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00226816 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00226304 ____A (Microsoft Corporation) C:\Windows\System32\elshyph.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00216064 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00204800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00185344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00173568 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00167424 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00158720 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00144896 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00138752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00137216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00136192 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00135680 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00125440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00117248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00102912 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00097280 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00092160 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00082432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00081408 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00079872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00077312 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx 2013-06-05 07:23 - 2013-06-05 07:23 - 00073728 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00069120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00062976 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00061952 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-06-05 07:23 - 2013-06-05 07:23 - 00057344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00051200 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00041984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00038400 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00027648 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00023040 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-06-05 07:23 - 2013-06-05 07:23 - 00013824 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00012800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00012800 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe 2013-06-05 07:23 - 2013-06-05 07:23 - 00011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-03 19:48 ==================== End Of Log ============================