Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-07-2013 Ran by Nauczyciel (administrator) on 28-07-2013 16:38:57 Running from C:\Users\Nauczyciel\Desktop Microsoft Windows 7 Starter (X86) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\aestsrv.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (DeviceVM, Inc.) C:\SwSetup\HPQWMM\QuickWeb\QW.SYS\config\DVMExportService.exe (HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe (HP) C:\Windows\system32\HPSIsvc.exe () C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (QUALCOMM, Inc.) C:\Program Files\QUALCOMM\QDLService2k\QDLService2kHP.exe (SMART Technologies) C:\Program Files\SMART Technologies\Education Software\ResponseHardwareService.exe (Microsoft Corp.) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Skyhook Wireless) C:\Program Files\Skyhook Wireless\XPS\xpssvc.exe (Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe (Smith Micro Software, Inc.) C:\Program Files\Hewlett-Packard\HP Connection Manager\SMManager.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Alcor Micro Corp.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe (Skyhook Wireless) C:\Program Files\Skyhook Wireless\XPS\xpscontrolpanel.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\system32\igfxsrvc.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (SMART Technologies) C:\Program Files\SMART Technologies\Education Software\SMARTBoardService.exe (SMART Technologies ULC) C:\Program Files\SMART Technologies\Education Software\SMARTBoardTools.exe (SMART Technologies) C:\Program Files\SMART Technologies\Education Software\DesktopMenu.exe (SMART Technologies ULC.) C:\Program Files\SMART Technologies\Education Software\SMARTClassroomCoordinator.exe (Google Inc.) C:\Users\Nauczyciel\AppData\Local\Google\Update\GoogleUpdate.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (SMART Technologies ULC) C:\Program Files\SMART Technologies\Education Software\Aware.exe (SMART Technologies ULC) C:\Program Files\SMART Technologies\Education Software\Marker.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe (SMART Technologies) C:\Program Files\SMART Technologies\Education Software\ResponseSoftwareService.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe (Hewlett-Packard Development Company L.P.) C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1778984 2010-05-28] (Synaptics Incorporated) HKLM\...\Run: [IAAnotif] - C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-10-13] (Intel Corporation) HKLM\...\Run: [AmIcoSinglun] - C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [237568 2010-06-18] (Alcor Micro Corp.) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray.exe [495708 2010-06-18] (IDT, Inc.) HKLM\...\Run: [Skyhook Wireless XPS Service] - C:\Program Files\Skyhook Wireless\XPS\xpscontrolpanel.exe [671048 2010-06-28] (Skyhook Wireless) HKLM\...\Run: [HP Connection Manager.exe] - [x] HKLM\...\Run: [HP Quick Launch] - C:\Program Files\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [602168 2010-06-29] (Hewlett-Packard Company) HKLM\...\Run: [HPWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-07-08] (Hewlett-Packard Company) HKLM\...\Run: [SMART Board Service] - C:\Program Files\SMART Technologies\Education Software\SMARTBoardService.exe [1761136 2011-07-13] (SMART Technologies) HKLM\...\Run: [SMART Board Tools] - C:\Program Files\SMART Technologies\Education Software\SMARTBoardTools.exe [9800560 2011-06-23] (SMART Technologies ULC) HKLM\...\Run: [Response Desktop Menu] - C:\Program Files\SMART Technologies\Education Software\DesktopMenu.exe [1900912 2011-06-24] (SMART Technologies) HKLM\...\Run: [SMARTClassroomCoordinator.exe] - C:\Program Files\SMART Technologies\Education Software\SMARTClassroomCoordinator.exe [485232 2011-06-22] (SMART Technologies ULC.) HKLM\...\Run: [HPUsageTrackingLEDM] - C:\Program Files\HP\HP UT LEDM\bin\hppusg.exe [30264 2009-08-04] (Hewlett-Packard Company) HKCU\...\Run: [Google Update] - C:\Users\Nauczyciel\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-06-25] (Google Inc.) HKCU\...\Run: [{DE5270D5-8C34-CA33-9960-E1BE24DEA574}] - C:\Users\Nauczyciel\AppData\Roaming\Eddyun\yqogoq.exe [x] MountPoints2: {032d3db4-7b42-11e1-a2db-e02a828d746d} - E:\Launcher.exe MountPoints2: {032d3dbb-7b42-11e1-a2db-e02a828d746d} - E:\Launcher.exe MountPoints2: {1219b278-7b44-11e1-a829-e02a828d746d} - E:\Launcher.exe MountPoints2: {80de957a-c9e8-11e1-a7f2-e02a828d746d} - E:\Launcher.exe MountPoints2: {d5bca680-1c17-11e2-95df-e02a828d746d} - E:\LaunchU3.exe -a MountPoints2: {da53a630-be23-11e2-9c61-e02a828d746d} - E:\P1100_P1560_P1600.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Media Suite.lnk ShortcutTarget: HP Media Suite.lnk -> C:\Program Files\Hewlett-Packard\HP Media Suite\Home\ArcStart.exe (ArcSoft Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ SearchScopes: HKLM - DefaultScope {F8E8AD6F-5D83-4FF9-BDAC-89DF50A569EE} URL = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {A8B23BD9-C155-473A-9C4E-4F5033072B23} URL = http://pl.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM - {F8E8AD6F-5D83-4FF9-BDAC-89DF50A569EE} URL = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKCU - DefaultScope {F8E8AD6F-5D83-4FF9-BDAC-89DF50A569EE} URL = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox SearchScopes: HKCU - {A8B23BD9-C155-473A-9C4E-4F5033072B23} URL = http://pl.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKCU - {F8E8AD6F-5D83-4FF9-BDAC-89DF50A569EE} URL = http://www.bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: SMART Notebook Download Utility - {67BCF957-85FC-4036-8DC4-D4D80E00A77B} - C:\Program Files\SMART Technologies\Education Software\Win32\NotebookPlugin.dll (SMART Technologies ULC.) BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll (Microsoft Corp.) BHO: IEExtension.VDownloaderBHO - {7b523e7c-f096-4e36-a0cb-7efeb5c675c1} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) BHO: Pomocnik rejestracji usługi Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) Toolbar: HKLM - &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) Toolbar: HKLM - SMART Sync - {8E1233B3-485A-4E51-B77E-9E075A68C588} - C:\Program Files\SMART Technologies\Education Software\SyncIEToolbar.dll (SMART Technologies ULC.) Toolbar: HKCU -&Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Chrome: ======= CHR HomePage: about:blank CHR RestoreOnStartup: "urls_to_restore_on_startup": null CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Nauczyciel\AppData\Local\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Nauczyciel\AppData\Local\Google\Chrome\Application\28.0.1500.72\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Users\Nauczyciel\AppData\Local\Google\Chrome\Application\28.0.1500.72\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.220.4) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.) CHR Plugin: (Java(TM) Platform SE 6 U22) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Loki Plugin) - C:\Program Files\Skyhook Wireless\Loki Plugin\nploki.dll No File CHR Plugin: (Windows Live\u00AE Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Google Update) - C:\Users\Nauczyciel\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation) CHR HKLM\...\Chrome\Extension: [eoccbpoodnckjdnackiffhjfkogfhnhh] - C:\Program Files\VDownloader\Addons\Chrome.crx CHR StartMenuInternet: Google Chrome - "C:\Users\Nauczyciel\AppData\Local\Google\Chrome\Application\chrome.exe" ========================== Services (Whitelisted) ================= R2 DvmMDES; C:\SwSetup\HPQWMM\QuickWeb\QW.SYS\config\DVMExportService.exe [338168 2010-07-20] (DeviceVM, Inc.) S3 GameConsoleService; C:\Program Files\HP Games\HP Game Console\GameConsoleService.exe [246520 2010-04-04] (WildTangent, Inc.) R2 HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [121344 2010-06-30] (Hewlett-Packard Company) R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) R2 HP Wireless Assistant Service; C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [103992 2010-07-08] (Hewlett-Packard Company) R2 HPWMISVC; C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [27192 2010-06-29] () R2 QDLService2kHP; C:\Program Files\QUALCOMM\QDLService2k\QDLService2kHP.exe [331512 2010-05-12] (QUALCOMM, Inc.) R2 Response Hardware; C:\Program Files\SMART Technologies\Education Software\ResponseHardwareService.exe [19312 2011-06-24] (SMART Technologies) R2 SMManager; C:\Program Files\Hewlett-Packard\HP Connection Manager\SMManager.exe [84808 2010-06-08] (Smith Micro Software, Inc.) R2 STacSV; C:\Program Files\IDT\WDM\STacSV.exe [237650 2010-06-18] (IDT, Inc.) R2 xpssvc; C:\Program Files\Skyhook Wireless\XPS\xpssvc.exe [707400 2010-06-28] (Skyhook Wireless) ==================== Drivers (Whitelisted) ==================== S3 adusbser; C:\Windows\System32\DRIVERS\adusbser.sys [106880 2009-11-06] (AnyDATA.NET INC.) S3 AmUStor; C:\Windows\System32\drivers\AmUStor.SYS [27136 2010-06-17] (Alcor Micro, Corp.) R3 btwampfl; C:\Windows\System32\drivers\btwampfl.sys [294952 2010-06-10] (Broadcom Corporation.) R1 DVMIO; C:\Windows\System32\DRIVERS\dvmio.sys [18136 2009-11-11] (DeviceVM, Inc.) R2 npf; C:\Windows\System32\drivers\npf.sys [50704 2010-01-27] (CACE Technologies, Inc.) S3 qcfilterhp2k; C:\Windows\System32\DRIVERS\qcfilterhp2k.sys [5248 2010-05-12] (QUALCOMM Incorporated) S3 qcusbnethp2k; C:\Windows\System32\DRIVERS\qcusbnethp2k.sys [372224 2010-05-12] (QUALCOMM Incorporated) S3 qcusbserhp2k; C:\Windows\System32\DRIVERS\qcusbserhp2k.sys [190592 2010-05-12] (QUALCOMM Incorporated) R3 SMARTMouseFilterx86; C:\Windows\System32\DRIVERS\SMARTMouseFilterx86.sys [11632 2011-07-13] (SMART Technologies ULC) R3 SMARTVHidMini2000x86; C:\Windows\System32\DRIVERS\SMARTVHidMini2000x86.sys [14704 2011-07-13] (SMART Technologies ULC) R3 XPSVCOM; C:\Windows\System32\DRIVERS\XPSVCOM.sys [12416 2010-06-01] (Skyhook Wireless) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-28 16:36 - 2013-07-28 16:37 - 01221130 _____ (Farbar) C:\Users\Nauczyciel\Desktop\FRST.exe 2013-07-28 16:22 - 2013-07-28 16:22 - 00073434 _____ C:\Users\Nauczyciel\Desktop\OTL.Txt 2013-07-28 15:55 - 2013-07-28 15:55 - 00000000 ____D C:\_OTL 2013-07-24 15:52 - 2013-07-24 15:52 - 00377856 _____ C:\Users\Nauczyciel\Downloads\z1jqtsbo.exe 2013-07-24 15:17 - 2013-07-24 15:17 - 00602112 _____ (OldTimer Tools) C:\Users\Nauczyciel\Desktop\OTL.exe 2013-07-24 15:15 - 2013-07-24 15:15 - 00663128 _____ (Duplex Secure Ltd.) C:\Users\Nauczyciel\Downloads\SPTDinst-v183-x86.exe 2013-07-16 14:43 - 2013-07-16 14:43 - 00001067 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2013-07-16 14:43 - 2013-07-16 14:43 - 00000000 ____D C:\Users\Nauczyciel\AppData\Roaming\Malwarebytes 2013-07-16 14:43 - 2013-07-16 14:43 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-16 14:43 - 2013-07-16 14:43 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-07-16 14:43 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-07-16 14:42 - 2013-07-16 14:43 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Nauczyciel\Downloads\mbam-setup-1.75.0.1300.exe 19 ==================== One Month Modified Files and Folders ======= 2013-07-28 16:38 - 2013-07-28 16:38 - 00000000 ____D C:\FRST 2013-07-28 16:37 - 2013-07-28 16:36 - 01221130 _____ (Farbar) C:\Users\Nauczyciel\Desktop\FRST.exe 2013-07-28 16:26 - 2012-06-25 11:35 - 00001078 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3190769449-423231225-2929824115-1000UA.job 2013-07-28 16:22 - 2013-07-28 16:22 - 00073434 _____ C:\Users\Nauczyciel\Desktop\OTL.Txt 2013-07-28 16:07 - 2009-07-14 06:34 - 00014128 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-28 16:07 - 2009-07-14 06:34 - 00014128 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-28 15:59 - 2012-08-30 20:38 - 00093811 _____ C:\Windows\setupact.log 2013-07-28 15:59 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-07-28 15:55 - 2013-07-28 15:55 - 00000000 ____D C:\_OTL 2013-07-28 15:55 - 2011-02-01 12:39 - 00000000 ____D C:\Users\Nauczyciel 2013-07-24 16:09 - 2012-06-25 11:35 - 00001026 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3190769449-423231225-2929824115-1000Core.job 2013-07-24 15:57 - 2011-10-25 09:43 - 00000000 ____D C:\Users\NAUCZY~1\AppData\Local\CrashDumps 2013-07-24 15:52 - 2013-07-24 15:52 - 00377856 _____ C:\Users\Nauczyciel\Downloads\z1jqtsbo.exe 2013-07-24 15:17 - 2013-07-24 15:17 - 00602112 _____ (OldTimer Tools) C:\Users\Nauczyciel\Desktop\OTL.exe 2013-07-24 15:15 - 2013-07-24 15:15 - 00663128 _____ (Duplex Secure Ltd.) C:\Users\Nauczyciel\Downloads\SPTDinst-v183-x86.exe 2013-07-16 14:43 - 2013-07-16 14:43 - 00001067 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2013-07-16 14:43 - 2013-07-16 14:43 - 00000000 ____D C:\Users\Nauczyciel\AppData\Roaming\Malwarebytes 2013-07-16 14:43 - 2013-07-16 14:43 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-16 14:43 - 2013-07-16 14:43 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-07-16 14:43 - 2013-07-16 14:42 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Nauczyciel\Downloads\mbam-setup-1.75.0.1300.exe 2013-07-16 14:39 - 2013-01-16 14:53 - 00000000 ____D C:\Program Files\VideoLAN 2013-07-16 14:28 - 2010-12-21 12:10 - 01255421 _____ C:\Windows\WindowsUpdate.log 2013-07-15 21:38 - 2012-08-12 13:13 - 00000000 ____D C:\Users\Nauczyciel\Desktop\prywatne 2013-07-15 21:37 - 2012-11-28 19:16 - 00000000 ____D C:\Program Files\Teachers Pet 2013-07-15 20:59 - 2013-06-12 13:04 - 00000000 ____D C:\Users\Nauczyciel\Desktop\Oxford 2013-07-14 10:07 - 2010-08-23 19:24 - 00697912 _____ C:\Windows\system32\perfh015.dat 2013-07-14 10:07 - 2010-08-23 19:24 - 00134990 _____ C:\Windows\system32\perfc015.dat 2013-07-14 10:07 - 2009-09-07 01:02 - 01549696 _____ C:\Windows\system32\PerfStringBackup.INI ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-15 18:53 ==================== End Of Log ============================