Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 31-10-2013 Ran by Dominika (administrator) on TWOJA-3P07UFSEK on 03-11-2013 22:53:06 Running from C:\Documents and Settings\Dominika\Moje dokumenty\Downloads Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Microsoft Corporation.) C:\Program Files\Microsoft\BingBar\7.2.241.0\BBSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (OptionNV) C:\Program Files\Option\GlobeTrotter Connect\GtDetectSc.exe () C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\HWDeviceService.exe (Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jqs.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe (ELANTECH Devices Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (ASUSTeK Computer Inc.) C:\Program Files\EeePC\ACPI\AsTray.exe (ASUSTeK Computer Inc.) C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe (ASUSTeK Computer Inc.) C:\Program Files\EeePC\ACPI\AsEPCMon.exe (HP) C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\WINDOWS\system32\igfxext.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Microsoft Corporation) C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\PROGRA~1\MI3AA1~1\rapimgr.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [16855040 2008-09-18] (Realtek Semiconductor Corp.) HKLM\...\Run: [HotKeysCmds] - C:\WINDOWS\system32\hkcmd.exe [ ] () HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [416768 2009-01-23] (ELANTECH Devices Corp.) HKLM\...\Run: [AsusTray] - C:\Program Files\EeePC\ACPI\AsTray.exe [114688 2008-12-04] (ASUSTeK Computer Inc.) HKLM\...\Run: [AsusACPIServer] - C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe [622592 2008-12-17] (ASUSTeK Computer Inc.) HKLM\...\Run: [AsusEPCMonitor] - C:\Program Files\EeePC\ACPI\AsEPCMon.exe [94208 2008-05-21] (ASUSTeK Computer Inc.) HKLM\...\Run: [HPDJ Taskbar Utility] - C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe [188416 2002-07-10] (HP) HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.) HKLM\...\Run: [iTunesHelper] - C:\Program Files\iTunes\iTunesHelper.exe [152392 2013-09-17] (Apple Inc.) HKCU\...\Run: [H/PC Connection Agent] - C:\Program Files\Microsoft ActiveSync\wcescomm.exe [1289000 2006-11-13] (Microsoft Corporation) MountPoints2: {a3bb7131-51b3-11e2-b441-002243969baa} - E:\AutoRun.exe MountPoints2: {c682159a-838d-11e0-b450-002243969baa} - E:\AutoRun.exe MountPoints2: {d0b87c62-8521-11e0-b451-002243969baa} - E:\AutoRun.exe MountPoints2: {df1a8b82-ee90-11e0-b47b-002243969baa} - E:\LaunchU3.exe -a MountPoints2: {ec0aab95-9781-11e0-b45c-002243969baa} - E:\AutoRun.exe MountPoints2: {f4239a3a-f563-11e0-b480-002243969baa} - E:\AutoRun.exe HKU\Administrator\...\RunOnce: [Report] - C:\AdwCleaner\AdwCleaner[S0].txt [ 2013-11-03] () Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\BTTray.lnk ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&affID=110824&tt=4812_3&babsrc=SP_ss&mntrId=5c64a74d00000000000000248cac6745 SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&affID=110824&tt=4812_3&babsrc=SP_ss&mntrId=5c64a74d00000000000000248cac6745 SearchScopes: HKCU - {2F7741BE-F7E8-487A-BFE0-B49F97F1BB30} URL = http://www.ceneo.pl/categories.aspx?search=yes&categoryID=0&searchText={searchTerms}&inDesc=False&minPrice=0&maxPrice=99999999 SearchScopes: HKCU - {AE1047C9-3E80-4D74-BFF3-E4184F522B07} URL = http://uk.search.yahoo.com/search?p={searchTerms}&fr=FP-tab-web-t340&ei=UTF-8&meta=vc%3D BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) BHO: Bing Bar Helper - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.) BHO: Pomocnik rejestracji usługi Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8064.0206.dll (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 194.204.152.34 194.204.159.1 Tcpip\..\Interfaces\{590EA557-79A5-4DE0-8A1C-C347924AC828}: [NameServer]195.225.120.34 FireFox: ======== FF ProfilePath: C:\Documents and Settings\Dominika\Dane aplikacji\Mozilla\Firefox\Profiles\3u7mcnb3.default FF NewTab: hxxp://search.babylon.com/?affID=110824&tt=4812_3&babsrc=NT_ss&mntrId=5c64a74d00000000000000248cac6745 FF SelectedSearchEngine: Search the web (Babylon) FF Homepage: hxxp://search.babylon.com/?affID=110824&tt=4812_3&babsrc=HP_ss&mntrId=5c64a74d00000000000000248cac6745 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin: @garmin.com/GpsControl - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/WLPG,version=14.0.8064.0206 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @real.com/nppl3260;version=6.0.12.69 - C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpjplug;version=6.0.12.69 - C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\Dominika\Dane aplikacji\Mozilla\Firefox\Profiles\3u7mcnb3.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKLM\...\Firefox\Extensions: [jqs@sun.com] - C:\Program Files\Java\jre6\lib\deploy\jqs\ff FF Extension: Java Quick Starter - C:\Program Files\Java\jre6\lib\deploy\jqs\ff FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 Chrome: ======= CHR Extension: (Google Wallet) - C:\DOCUME~1\Dominika\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_1 ========================== Services (Whitelisted) ================= R2 GtDetectSc; C:\Program Files\Option\GlobeTrotter Connect\GtDetectSc.exe [543744 2009-04-02] (OptionNV) R2 HWDeviceService.exe; C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\HWDeviceService.exe [264704 2010-11-16] () R2 JavaQuickStarterService; "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf" ==================== Drivers (Whitelisted) ==================== S3 AR5416; C:\Windows\System32\DRIVERS\athw.sys [1326528 2008-09-18] (Atheros Communications, Inc.) R3 AsusACPI; C:\Windows\System32\DRIVERS\ASUSACPI.sys [10752 2008-04-08] (ASUSTeK Computer Inc.) S3 btaudio; C:\Windows\System32\drivers\btaudio.sys [534568 2008-05-30] (Broadcom Corporation.) R3 BTDriver; C:\Windows\System32\DRIVERS\btport.sys [37160 2008-02-04] (Broadcom Corporation.) R3 BTKRNL; C:\Windows\System32\DRIVERS\btkrnl.sys [991656 2008-08-19] (Broadcom Corporation.) S3 BTWDNDIS; C:\Windows\System32\DRIVERS\btwdndis.sys [156816 2008-07-24] (Broadcom Corporation.) S3 btwhid; C:\Windows\System32\DRIVERS\btwhid.sys [57384 2008-03-10] (Broadcom Corporation.) S3 BTWUSB; C:\Windows\System32\Drivers\btwusb.sys [47272 2008-08-19] (Broadcom Corporation.) S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation) R2 fssfltr; C:\Windows\System32\DRIVERS\fssfltr_tdi.sys [55152 2009-02-06] (Microsoft Corporation) S3 grmnusb; C:\Windows\System32\drivers\grmnusb.sys [9344 2009-04-17] (GARMIN Corp.) S3 HPZid412; C:\Windows\System32\DRIVERS\HPZid412.sys [49920 2008-10-28] (HP) S3 HPZipr12; C:\Windows\System32\DRIVERS\HPZipr12.sys [16496 2008-10-28] (HP) S3 HPZius12; C:\Windows\System32\DRIVERS\HPZius12.sys [21568 2008-10-28] (HP) R3 Ktp; C:\Windows\System32\DRIVERS\ETD.sys [93696 2009-02-12] (ELANTECH Devices Corp.) R3 L1e; C:\Windows\System32\DRIVERS\l1e51x86.sys [38400 2008-09-23] (Atheros Communications, Inc.) S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R3 RT80x86; C:\Windows\System32\DRIVERS\RT2860.sys [2699488 2012-08-24] (Ralink Technology, Corp.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1752704 2008-08-11] () S3 WinRing0_1_2_0; C:\Documents and Settings\Dominika\Moje dokumenty\Downloads\RealTemp_370\WinRing0.sys [14416 2013-11-03] (OpenLibSys.org) S3 ALSysIO; \??\C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\ALSysIO.sys [x] S3 cpuz136; \??\C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\cpuz136\cpuz136_x32.sys [x] S4 IntelIde; No ImagePath U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-03 22:52 - 2013-11-03 22:52 - 00000000 ____D C:\FRST 2013-11-03 22:39 - 2013-11-03 22:39 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2808679$ 2013-11-03 22:35 - 2013-11-03 22:36 - 00009060 _____ C:\WINDOWS\KB2632503-IE8.log 2013-11-03 22:35 - 2013-11-03 22:35 - 00008226 _____ C:\WINDOWS\KB2598845-IE8.log 2013-11-03 22:34 - 2013-11-03 22:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2492386$ 2013-11-03 22:32 - 2013-11-03 22:35 - 00008922 _____ C:\WINDOWS\KB2492386.log 2013-11-03 22:31 - 2013-11-03 22:40 - 00011855 _____ C:\WINDOWS\KB2808679.log 2013-11-03 22:30 - 2011-08-16 11:45 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iecompat.dll 2013-11-03 22:05 - 2013-11-03 22:05 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Adobe 2013-11-03 22:03 - 2013-11-03 22:03 - 00000000 __SHD C:\Documents and Settings\Administrator\PrivacIE 2013-11-03 20:42 - 2013-11-03 20:42 - 00012872 _____ (SurfRight B.V.) C:\WINDOWS\system32\bootdelete.exe 2013-11-03 20:26 - 2013-11-03 20:26 - 00000000 ____D C:\Program Files\HitmanPro 2013-11-03 20:25 - 2013-11-03 20:42 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\HitmanPro 2013-11-03 19:42 - 2013-11-03 19:42 - 00000000 ____D C:\WINDOWS\ERUNT 2013-11-03 19:31 - 2013-11-03 19:35 - 00000000 ____D C:\AdwCleaner 2013-11-03 19:24 - 2013-11-03 21:14 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google 2013-11-03 19:17 - 2013-11-03 22:05 - 00000188 ___SH C:\Documents and Settings\Administrator\ntuser.ini 2013-11-03 19:17 - 2013-11-03 22:05 - 00000000 __RHD C:\Documents and Settings\Administrator\Dane aplikacji 2013-11-03 19:17 - 2013-11-03 22:03 - 00000000 ____D C:\Documents and Settings\Administrator 2013-11-03 19:17 - 2013-11-03 19:30 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty 2013-11-03 19:17 - 2013-11-03 19:24 - 00000000 ___HD C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2013-11-03 19:17 - 2010-09-15 22:44 - 00000000 __SHD C:\Documents and Settings\Administrator\IETldCache 2013-11-03 19:17 - 2009-08-20 18:53 - 00000000 __SHD C:\Documents and Settings\Administrator\Ustawienia lokalne\Historia 2013-11-03 19:17 - 2009-05-26 01:18 - 00000000 ___RD C:\Documents and Settings\Administrator\Menu Start\Programy 2013-11-03 19:17 - 2009-04-10 08:53 - 00038768 _____ C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2013-11-03 19:17 - 2009-04-10 06:08 - 00000803 _____ C:\Documents and Settings\Administrator\Menu Start\Programy\Internet Explorer.lnk 2013-11-03 19:17 - 2009-04-10 06:08 - 00000738 _____ C:\Documents and Settings\Administrator\Menu Start\Programy\Outlook Express.lnk 2013-11-03 19:17 - 2009-04-10 06:08 - 00000000 ___RD C:\Documents and Settings\Administrator\Ulubione 2013-11-03 19:17 - 2009-04-10 06:08 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty\Moje obrazy 2013-11-03 19:17 - 2009-04-10 06:08 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty\Moja muzyka 2013-11-03 19:17 - 2009-04-10 06:08 - 00000000 ___RD C:\Documents and Settings\Administrator\Menu Start\Programy\Akcesoria 2013-11-03 19:17 - 2009-04-10 06:08 - 00000000 ____D C:\Documents and Settings\Administrator\Bluetooth Software 2013-11-03 19:17 - 2009-03-12 14:03 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Microsoft Help 2013-11-03 19:17 - 2009-03-12 13:58 - 00000691 _____ C:\Documents and Settings\Administrator\Pulpit\Install Norton Internet Security.lnk 2013-11-03 19:17 - 2009-03-12 13:58 - 00000000 ____D C:\Documents and Settings\Administrator\Pulpit 2013-11-03 19:17 - 2009-03-12 13:44 - 00000545 _____ C:\Documents and Settings\Administrator\Menu Start\Programy\Install AiGuruU1 Skype Phone.lnk 2013-11-03 19:17 - 2009-03-12 13:43 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Adobe 2013-11-03 19:17 - 2009-03-12 13:37 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\InstallShield 2013-11-03 19:17 - 2009-03-12 13:23 - 00000135 _____ C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\fusioncache.dat 2013-11-03 19:17 - 2009-02-04 16:25 - 00000000 ___RD C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart 2013-11-03 19:17 - 2009-02-04 16:25 - 00000000 ___RD C:\Documents and Settings\Administrator\Menu Start 2013-11-03 19:17 - 2009-02-04 16:25 - 00000000 ___HD C:\Documents and Settings\Administrator\Ustawienia lokalne 2013-11-03 19:17 - 2009-02-04 15:34 - 00001599 _____ C:\Documents and Settings\Administrator\Menu Start\Programy\Pomoc zdalna.lnk 2013-11-03 19:17 - 2009-02-04 15:30 - 00000000 ___HD C:\Documents and Settings\Administrator\Szablony 2013-11-03 18:43 - 2013-11-03 18:43 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\Malwarebytes 2013-11-03 18:42 - 2013-11-03 18:42 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-11-03 18:42 - 2013-11-03 18:42 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware 2013-11-03 18:42 - 2013-11-03 18:42 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes 2013-11-03 18:42 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2013-10-31 19:49 - 2013-10-31 19:49 - 00000630 _____ C:\Documents and Settings\Dominika\Pulpit\µTorrent.lnk 2013-10-17 09:21 - 2013-10-17 09:21 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$ 2013-10-17 09:18 - 2013-10-17 09:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$ 2013-10-17 09:16 - 2013-10-17 09:18 - 00009784 _____ C:\WINDOWS\KB2862335.log 2013-10-17 08:55 - 2013-10-17 08:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$ 2013-10-17 08:52 - 2013-10-17 08:56 - 00010925 _____ C:\WINDOWS\KB2868038.log 2013-10-17 08:44 - 2013-10-17 08:46 - 00011666 _____ C:\WINDOWS\KB2879017-IE8.log 2013-10-17 08:44 - 2013-10-17 08:44 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$ 2013-10-16 20:42 - 2013-10-16 20:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$ 2013-10-16 20:32 - 2013-10-17 09:21 - 00014202 _____ C:\WINDOWS\KB2847311.log 2013-10-16 20:31 - 2013-07-03 03:12 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidparse.sys 2013-10-16 20:30 - 2013-07-17 01:58 - 00123008 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbvideo.sys 2013-10-14 12:43 - 2013-08-09 01:55 - 00032384 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbccgp.sys 2013-10-14 12:43 - 2013-08-09 01:55 - 00005376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbd.sys 2013-10-08 11:25 - 2013-11-03 19:01 - 00001813 _____ C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk 2013-10-08 11:25 - 2013-10-08 11:25 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome 2013-10-08 11:21 - 2013-11-03 22:47 - 00001040 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2013-10-08 11:21 - 2013-11-03 22:46 - 00001036 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2013-10-08 11:03 - 2013-11-03 22:47 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-10-07 17:31 - 2013-10-07 17:33 - 00000000 ____D C:\Documents and Settings\Dominika\Pulpit\rafal smieci 2013-10-07 17:12 - 2011-05-10 18:37 - 1466826752 _____ C:\Documents and Settings\Dominika\Pulpit\The.Town.avi 2013-10-07 16:09 - 2013-10-07 16:10 - 00000000 ____D C:\Documents and Settings\Dominika\Moje dokumenty\PATAGONIAN RACE ==================== One Month Modified Files and Folders ======= 2013-11-03 22:52 - 2013-11-03 22:52 - 00000000 ____D C:\FRST 2013-11-03 22:50 - 2009-02-04 15:32 - 01494409 _____ C:\WINDOWS\WindowsUpdate.log 2013-11-03 22:47 - 2013-10-08 11:21 - 00001040 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2013-11-03 22:47 - 2013-10-08 11:03 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-11-03 22:46 - 2013-10-08 11:21 - 00001036 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2013-11-03 22:46 - 2009-02-04 16:28 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-11-03 22:46 - 2009-02-04 16:28 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-11-03 22:46 - 2009-02-04 15:37 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-11-03 22:43 - 2009-05-26 01:18 - 00000292 ___SH C:\Documents and Settings\Dominika\ntuser.ini 2013-11-03 22:43 - 2009-02-04 15:37 - 00032574 _____ C:\WINDOWS\SchedLgU.Txt 2013-11-03 22:40 - 2013-11-03 22:31 - 00011855 _____ C:\WINDOWS\KB2808679.log 2013-11-03 22:40 - 2013-02-16 07:26 - 00433882 _____ C:\WINDOWS\setupapi.log 2013-11-03 22:40 - 2009-03-12 13:26 - 00265156 _____ C:\WINDOWS\updspapi.log 2013-11-03 22:40 - 2009-02-04 16:25 - 02108741 _____ C:\WINDOWS\FaxSetup.log 2013-11-03 22:40 - 2009-02-04 16:25 - 01022435 _____ C:\WINDOWS\ocgen.log 2013-11-03 22:40 - 2009-02-04 16:25 - 00817044 _____ C:\WINDOWS\tsoc.log 2013-11-03 22:40 - 2009-02-04 16:25 - 00712112 _____ C:\WINDOWS\comsetup.log 2013-11-03 22:40 - 2009-02-04 16:25 - 00430449 _____ C:\WINDOWS\ntdtcsetup.log 2013-11-03 22:40 - 2009-02-04 16:25 - 00335798 _____ C:\WINDOWS\iis6.log 2013-11-03 22:40 - 2009-02-04 16:25 - 00131905 _____ C:\WINDOWS\ocmsn.log 2013-11-03 22:40 - 2009-02-04 16:25 - 00105962 _____ C:\WINDOWS\msgsocm.log 2013-11-03 22:40 - 2009-02-04 16:25 - 00001374 _____ C:\WINDOWS\imsins.log 2013-11-03 22:39 - 2013-11-03 22:39 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2808679$ 2013-11-03 22:38 - 2009-03-12 14:02 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help 2013-11-03 22:36 - 2013-11-03 22:35 - 00009060 _____ C:\WINDOWS\KB2632503-IE8.log 2013-11-03 22:36 - 2009-02-04 16:25 - 00001374 _____ C:\WINDOWS\imsins.BAK 2013-11-03 22:35 - 2013-11-03 22:35 - 00008226 _____ C:\WINDOWS\KB2598845-IE8.log 2013-11-03 22:35 - 2013-11-03 22:32 - 00008922 _____ C:\WINDOWS\KB2492386.log 2013-11-03 22:35 - 2009-03-12 13:26 - 00000000 ___HD C:\WINDOWS\$hf_mig$ 2013-11-03 22:35 - 2009-02-04 16:24 - 00224865 _____ C:\WINDOWS\setupact.log 2013-11-03 22:34 - 2013-11-03 22:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2492386$ 2013-11-03 22:34 - 2009-03-12 13:21 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-11-03 22:28 - 2009-02-04 16:18 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl 2013-11-03 22:25 - 2009-03-12 14:08 - 00018383 _____ C:\WINDOWS\spupdsvc.log 2013-11-03 22:05 - 2013-11-03 22:05 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Adobe 2013-11-03 22:05 - 2013-11-03 19:17 - 00000188 ___SH C:\Documents and Settings\Administrator\ntuser.ini 2013-11-03 22:05 - 2013-11-03 19:17 - 00000000 __RHD C:\Documents and Settings\Administrator\Dane aplikacji 2013-11-03 22:03 - 2013-11-03 22:03 - 00000000 __SHD C:\Documents and Settings\Administrator\PrivacIE 2013-11-03 22:03 - 2013-11-03 19:17 - 00000000 ____D C:\Documents and Settings\Administrator 2013-11-03 21:35 - 2009-05-27 19:08 - 00150528 _____ C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-11-03 21:33 - 2009-12-26 09:30 - 00000468 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{E6B92B11-F2A7-4AF0-82FB-D2339A6969D8}.job 2013-11-03 21:28 - 2010-05-05 16:13 - 00000000 ____D C:\Program Files\Google 2013-11-03 21:20 - 2010-09-29 18:20 - 00001324 _____ C:\WINDOWS\system32\d3d9caps.dat 2013-11-03 21:15 - 2009-02-04 16:25 - 01125618 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-11-03 21:15 - 2009-02-04 16:18 - 00503602 _____ C:\WINDOWS\system32\perfh015.dat 2013-11-03 21:15 - 2009-02-04 16:18 - 00090302 _____ C:\WINDOWS\system32\perfc015.dat 2013-11-03 21:14 - 2013-11-03 19:24 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google 2013-11-03 20:42 - 2013-11-03 20:42 - 00012872 _____ (SurfRight B.V.) C:\WINDOWS\system32\bootdelete.exe 2013-11-03 20:42 - 2013-11-03 20:25 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\HitmanPro 2013-11-03 20:26 - 2013-11-03 20:26 - 00000000 ____D C:\Program Files\HitmanPro 2013-11-03 19:42 - 2013-11-03 19:42 - 00000000 ____D C:\WINDOWS\ERUNT 2013-11-03 19:35 - 2013-11-03 19:31 - 00000000 ____D C:\AdwCleaner 2013-11-03 19:34 - 2009-02-04 16:25 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-11-03 19:30 - 2013-11-03 19:17 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty 2013-11-03 19:24 - 2013-11-03 19:17 - 00000000 ___HD C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2013-11-03 19:24 - 2011-11-05 08:03 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software 2013-11-03 19:24 - 2009-02-04 16:25 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy 2013-11-03 19:04 - 2010-02-10 20:41 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB977914$ 2013-11-03 19:04 - 2009-05-26 01:18 - 00000000 __RHD C:\Documents and Settings\Dominika\Dane aplikacji 2013-11-03 19:01 - 2013-10-08 11:25 - 00001813 _____ C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk 2013-11-03 18:53 - 2009-05-26 01:18 - 00000000 ___RD C:\Documents and Settings\Dominika\Menu Start\Programy 2013-11-03 18:43 - 2013-11-03 18:43 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\Malwarebytes 2013-11-03 18:42 - 2013-11-03 18:42 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-11-03 18:42 - 2013-11-03 18:42 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware 2013-11-03 18:42 - 2013-11-03 18:42 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes 2013-11-03 18:29 - 2009-05-26 21:28 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\uTorrent 2013-10-31 19:49 - 2013-10-31 19:49 - 00000630 _____ C:\Documents and Settings\Dominika\Pulpit\µTorrent.lnk 2013-10-31 19:49 - 2009-05-26 21:30 - 00000630 _____ C:\Documents and Settings\Dominika\Menu Start\µTorrent.lnk 2013-10-31 19:49 - 2009-05-26 01:18 - 00000000 ____D C:\Documents and Settings\Dominika\Pulpit 2013-10-31 18:56 - 2009-02-04 16:24 - 00284520 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-10-17 11:51 - 2011-11-08 20:53 - 00000284 _____ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job 2013-10-17 09:21 - 2013-10-17 09:21 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$ 2013-10-17 09:21 - 2013-10-16 20:32 - 00014202 _____ C:\WINDOWS\KB2847311.log 2013-10-17 09:18 - 2013-10-17 09:18 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$ 2013-10-17 09:18 - 2013-10-17 09:16 - 00009784 _____ C:\WINDOWS\KB2862335.log 2013-10-17 09:15 - 2013-07-22 07:49 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-10-17 09:06 - 2009-08-23 19:56 - 78106760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-10-17 08:56 - 2013-10-17 08:52 - 00010925 _____ C:\WINDOWS\KB2868038.log 2013-10-17 08:55 - 2013-10-17 08:55 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$ 2013-10-17 08:46 - 2013-10-17 08:44 - 00011666 _____ C:\WINDOWS\KB2879017-IE8.log 2013-10-17 08:45 - 2009-08-25 09:27 - 00000000 ____D C:\WINDOWS\ie8updates 2013-10-17 08:44 - 2013-10-17 08:44 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$ 2013-10-16 21:48 - 2012-11-21 21:13 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-10-16 21:48 - 2012-11-21 21:13 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-10-16 20:42 - 2013-10-16 20:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$ 2013-10-08 11:52 - 2010-05-05 16:20 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\Google 2013-10-08 11:48 - 2010-05-05 16:13 - 00000000 ____D C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\Google 2013-10-08 11:31 - 2009-05-26 01:18 - 00000000 ___RD C:\Documents and Settings\Dominika\Moje dokumenty 2013-10-08 11:26 - 2009-05-26 01:18 - 00000000 ___HD C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji 2013-10-08 11:25 - 2013-10-08 11:25 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome 2013-10-08 11:25 - 2009-02-04 16:25 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-10-08 11:08 - 2009-02-04 15:33 - 00002596 _____ C:\WINDOWS\system32\CONFIG.NT 2013-10-08 09:58 - 2010-12-08 21:32 - 00131072 _____ C:\WINDOWS\system32\config\OAlerts.evt 2013-10-07 17:33 - 2013-10-07 17:31 - 00000000 ____D C:\Documents and Settings\Dominika\Pulpit\rafal smieci 2013-10-07 16:10 - 2013-10-07 16:09 - 00000000 ____D C:\Documents and Settings\Dominika\Moje dokumenty\PATAGONIAN RACE Some content of TEMP: ==================== C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\Quarantine.exe C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\aswV5Hlp.dll C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\DataCard_Setup.exe C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\drm_dialogs.dll C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\drm_dyndata_7390004.dll C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\FP_PL_PFS_INSTALLER.exe C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\jre-6u29-windows-i586-iftw-rv.exe C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\Minecraft.exe C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\ose00000.exe C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\ResetDevice.exe C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\SkypeSetup.exe C:\Documents and Settings\Dominika\Ustawienia lokalne\Temp\_is1.exe C:\Documents and Settings\Pysia\Ustawienia lokalne\Temp\i4jdel1.exe C:\Documents and Settings\Pysia\Ustawienia lokalne\Temp\jre-6u29-windows-i586-iftw-rv.exe C:\Documents and Settings\Pysia\Ustawienia lokalne\Temp\jre-6u37-windows-i586-iftw.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2009-02-04 16:18] - [2008-04-15 13:00] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2009-02-04 16:18] - [2008-04-15 13:00] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2009-02-04 16:18] - [2008-04-15 13:00] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2009-02-04 16:18] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2009-02-04 16:18] - [2008-04-15 13:00] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2009-02-04 16:18] - [2008-04-15 13:00] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2009-02-04 16:18] - [2008-04-15 13:00] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================