Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 17-11-2013 02 Ran by Nauczyciele (administrator) on PP18-NA on 18-11-2013 17:10:39 Running from F:\skanowanie antywirusowe Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Polish Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe () C:\Program Files\AppTools\AppToolsService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Symantec Corporation) C:\Program Files\Norton AntiVirus\Engine\21.1.0.18\NAV.exe (Symantec Corporation) C:\Program Files\Norton AntiVirus\Engine\21.1.0.18\NAV.exe (Elex) C:\Program Files\AppTools\AppToolsHelper.exe () C:\Program Files\AppTools\tools\adb.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SoundMan] - C:\Windows\SOUNDMAN.EXE [604704 2009-04-14] (Realtek Semiconductor Corp.) HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [AppToolsHelper] - C:\Program Files\AppTools\AppToolsHelper.exe [185920 2013-05-02] (Elex) HKLM\...\Run: [HP Software Update] - C:\Program Files\HP\HP Software Update\hpwuschd2.exe [49208 2011-10-28] (Hewlett-Packard) HKLM\...\Run: [] - [x] MountPoints2: {1e346ad4-274f-11e2-b375-0016e65a2ad5} - F:\start.exe MountPoints2: {238d063c-26dd-11e0-831d-806e6f6e6963} - E:\Setup.exe Startup: C:\Users\Nauczyciele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Powiadomienia monitorowania tuszu - HP Deskjet 1050 J410 series.lnk ShortcutTarget: Powiadomienia monitorowania tuszu - HP Deskjet 1050 J410 series.lnk -> C:\Program Files\HP\HP Deskjet 1050 J410 series\bin\HPStatusBL.dll (Hewlett-Packard Co.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ SearchScopes: HKLM - DefaultScope value is missing. BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\21.1.0.18\IPS\IPSBHO.dll (Symantec Corporation) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Norton Identity Protection - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files\Norton Identity Safe\Engine\2014.6.0.27\coieplg.dll (Symantec Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) Toolbar: HKLM - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files\Norton Identity Safe\Engine\2014.6.0.27\coieplg.dll (Symantec Corporation) DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Chrome: ======= CHR HomePage: hxxp://www.google.com CHR RestoreOnStartup: "hxxp://www.google.com" CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\31.0.1650.57\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\31.0.1650.57\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (CANON iMAGE GATEWAY Album Plugin Utility) - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll No File CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Windows Activation Technologies) - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) CHR Extension: (YouTube) - C:\Users\NAUCZY~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\NAUCZY~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Google Wallet) - C:\Users\NAUCZY~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (Norton Identity Protection) - C:\Users\NAUCZY~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob\2014.6.0.27_0 CHR Extension: (Gmail) - C:\Users\NAUCZY~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 CHR HKLM\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files\Norton Identity Safe\Engine\2014.6.0.27\Exts\Chrome.crx ========================== Services (Whitelisted) ================= R2 AppToolsService; C:\Program Files\AppTools\AppToolsService.exe [178176 2013-05-03] () R2 NAV; C:\Program Files\Norton AntiVirus\Engine\21.1.0.18\diMaster.dll [567600 2013-10-08] (Symantec Corporation) S2 NCO; C:\Program Files\Norton Identity Safe\Engine\2014.6.0.27\diMaster.dll [567600 2013-10-03] (Symantec Corporation) ==================== Drivers (Whitelisted) ==================== R3 ALCXWDM; C:\Windows\System32\drivers\RTKVAC.SYS [4172832 2009-06-18] (Realtek Semiconductor Corp.) S3 athur; C:\Windows\System32\DRIVERS\athur.sys [1500160 2010-01-05] (Atheros Communications, Inc.) R1 BHDrvx86; C:\Program Files\Norton AntiVirus\NortonData\21.1.0.18\Definitions\BASHDefs\20131002.001\BHDrvx86.sys [1097304 2013-09-26] (Symantec Corporation) R1 ccSet_NAV; C:\Windows\system32\drivers\NAV\1501000.012\ccSetx86.sys [127064 2013-09-26] (Symantec Corporation) R1 ccSet_NST; C:\Windows\system32\drivers\NST\7DE06000.01B\ccSetx86.sys [127064 2013-09-27] (Symantec Corporation) R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [376920 2013-08-28] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [108120 2013-08-28] (Symantec Corporation) R1 IDSVix86; C:\Program Files\Norton AntiVirus\NortonData\21.1.0.18\Definitions\IPSDefs\20130930.001\IDSVix86.sys [392792 2013-09-24] (Symantec Corporation) R3 NAVENG; C:\Program Files\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20131117.023\NAVENG.SYS [93272 2013-11-17] (Symantec Corporation) R3 NAVEX15; C:\Program Files\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20131117.023\NAVEX15.SYS [1612376 2013-11-17] (Symantec Corporation) R1 SRTSP; C:\Windows\System32\Drivers\NAV\1501000.012\SRTSP.SYS [651352 2013-09-27] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\NAV\1501000.012\SRTSPX.SYS [32344 2013-09-10] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\NAV\1501000.012\SYMDS.SYS [367704 2013-09-10] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\NAV\1501000.012\SYMEFA.SYS [935512 2013-09-27] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT.SYS [142936 2013-11-18] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\NAV\1501000.012\Ironx86.SYS [206936 2013-09-27] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\NAV\1501000.012\SYMNETS.SYS [446552 2013-09-26] (Symantec Corporation) R2 tifsfilter; C:\Windows\System32\DRIVERS\tifsfilt.sys [44384 2011-01-22] (Acronis) S1 UimBus; system32\DRIVERS\UimBus.sys [x] S1 Uim_IM; System32\Drivers\Uim_IM.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-18 16:32 - 2013-11-18 16:31 - 00448512 _____ (OldTimer Tools) C:\Users\Nauczyciele\Desktop\TFC.exe 2013-11-18 16:31 - 2013-11-18 16:31 - 00448512 _____ (OldTimer Tools) C:\Users\Nauczyciele\Downloads\TFC.exe 2013-11-18 16:23 - 2013-11-11 18:53 - 01085542 _____ C:\Users\Nauczyciele\Desktop\adwcleaner.exe 2013-11-18 16:20 - 2013-11-18 16:16 - 00004024 _____ C:\Users\Nauczyciele\Desktop\AdwCleaner[S0].txt 2013-11-18 16:20 - 2013-11-18 13:40 - 00005338 _____ C:\Users\Nauczyciele\Desktop\AdwCleaner[R0].txt 2013-11-18 13:39 - 2013-11-18 16:16 - 00000000 ____D C:\AdwCleaner 2013-11-18 13:37 - 2013-11-18 13:37 - 00472080 _____ (Company) C:\Users\Nauczyciele\Downloads\setup.exe 2013-11-18 12:54 - 2013-11-18 12:54 - 00000000 ____D C:\Users\Public\Downloads\Norton 2013-11-18 11:17 - 2013-11-18 11:17 - 00000000 ____D C:\FRST 2013-11-15 07:20 - 2013-10-12 08:04 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-11-15 07:20 - 2013-10-12 08:03 - 01767936 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-11-15 07:20 - 2013-10-12 08:03 - 01138176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 14355968 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 13761024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 02877952 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 02049024 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-11-15 07:20 - 2013-10-12 08:02 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-11-15 07:20 - 2013-10-12 07:08 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-11-15 07:20 - 2013-10-12 06:15 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-11-15 07:18 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-11-15 07:18 - 2013-10-12 03:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-11-15 07:18 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-11-15 07:18 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-11-15 07:18 - 2013-10-03 02:58 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-11-12 10:45 - 2013-11-12 10:46 - 00000000 ____D C:\Users\Nauczyciele\AppData\Local\Windows Live Writer 2013-11-12 10:45 - 2013-11-12 10:45 - 00000000 ____D C:\Users\Nauczyciele\AppData\Roaming\Windows Live Writer 2013-11-12 10:39 - 2013-11-12 10:41 - 00000000 ____D C:\Program Files\Windows Live 2013-11-12 10:34 - 2013-11-18 09:27 - 00000000 ____D C:\Users\Nauczyciele\AppData\Local\Windows Live 2013-11-12 10:30 - 2013-11-12 10:30 - 00000000 ____D C:\Program Files\Common Files\Windows Live 2013-11-12 10:29 - 2013-11-12 10:29 - 01245680 _____ (Microsoft Corporation) C:\Users\Nauczyciele\Downloads\wlsetup-web (1).exe 2013-11-12 10:28 - 2013-11-12 10:28 - 01245680 _____ (Microsoft Corporation) C:\Users\Nauczyciele\Downloads\wlsetup-web.exe 2013-11-07 12:56 - 2013-11-07 12:57 - 00000000 ____D C:\Users\Nauczyciele\Desktop\innowacja 2013-11-05 13:43 - 2013-11-05 13:43 - 00001945 _____ C:\Users\Public\Desktop\HP Photo Creations.lnk 2013-11-05 13:43 - 2013-11-05 13:43 - 00000000 ____D C:\ProgramData\Visan 2013-11-05 13:43 - 2013-11-05 13:43 - 00000000 ____D C:\ProgramData\HP Photo Creations 2013-11-05 13:43 - 2013-11-05 13:43 - 00000000 ____D C:\Program Files\HP Photo Creations 2013-11-05 13:42 - 2013-11-13 11:30 - 00000000 ____D C:\Users\Nauczyciele\AppData\Roaming\HpUpdate 2013-11-05 13:42 - 2013-11-05 13:42 - 00002272 _____ C:\Users\Public\Desktop\HP Deskjet 1050 J410 series.lnk 2013-11-05 13:42 - 2013-11-05 13:42 - 00001194 _____ C:\Users\Public\Desktop\Zakup materiałów eksploatacyjnych - HP Deskjet 1050 J410 series.lnk 2013-11-05 13:37 - 2013-11-05 13:42 - 00000000 ____D C:\Program Files\HP 2013-11-05 13:37 - 2013-11-05 13:37 - 00000000 ____D C:\ProgramData\HP 2013-11-05 13:36 - 2013-11-05 13:36 - 00000057 _____ C:\ProgramData\Ament.ini 2013-11-05 13:35 - 2013-11-05 13:44 - 00000000 ____D C:\Users\Nauczyciele\AppData\Local\HP 2013-11-05 13:34 - 2013-11-18 16:43 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-05 13:34 - 2013-11-05 13:34 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2013-11-05 13:34 - 2013-11-05 13:34 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2013-10-31 12:51 - 2013-09-04 02:15 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-10-31 12:51 - 2013-09-04 02:14 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-10-31 12:51 - 2013-09-04 02:14 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2013-10-31 12:51 - 2013-09-04 02:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-10-31 12:51 - 2013-09-04 02:14 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-10-31 12:51 - 2013-09-04 02:14 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-10-31 12:51 - 2013-09-04 02:14 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-10-21 12:21 - 2013-10-21 12:22 - 00000000 ____D C:\Users\Nauczyciele\Desktop\BIEDRONKI ==================== One Month Modified Files and Folders ======= 2013-11-18 16:51 - 2013-04-24 11:01 - 00001046 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-11-18 16:44 - 2013-06-12 08:07 - 00000000 ____D C:\Program Files\AppTools 2013-11-18 16:43 - 2013-11-05 13:34 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-18 16:33 - 2011-01-22 11:53 - 01306642 _____ C:\Windows\WindowsUpdate.log 2013-11-18 16:31 - 2013-11-18 16:32 - 00448512 _____ (OldTimer Tools) C:\Users\Nauczyciele\Desktop\TFC.exe 2013-11-18 16:31 - 2013-11-18 16:31 - 00448512 _____ (OldTimer Tools) C:\Users\Nauczyciele\Downloads\TFC.exe 2013-11-18 16:27 - 2009-07-14 05:34 - 00015616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-18 16:27 - 2009-07-14 05:34 - 00015616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-18 16:20 - 2013-04-22 07:38 - 00000000 ____D C:\Windows\system32\Drivers\NAV 2013-11-18 16:19 - 2013-04-24 11:01 - 00001042 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-11-18 16:19 - 2011-01-22 12:32 - 00000000 ____D C:\ProgramData\NVIDIA 2013-11-18 16:19 - 2009-07-14 05:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-18 16:19 - 2009-07-14 05:39 - 00054457 _____ C:\Windows\setupact.log 2013-11-18 16:16 - 2013-11-18 16:20 - 00004024 _____ C:\Users\Nauczyciele\Desktop\AdwCleaner[S0].txt 2013-11-18 16:16 - 2013-11-18 13:39 - 00000000 ____D C:\AdwCleaner 2013-11-18 16:16 - 2011-01-22 12:07 - 00001158 _____ C:\Users\Nauczyciele\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-11-18 13:40 - 2013-11-18 16:20 - 00005338 _____ C:\Users\Nauczyciele\Desktop\AdwCleaner[R0].txt 2013-11-18 13:37 - 2013-11-18 13:37 - 00472080 _____ (Company) C:\Users\Nauczyciele\Downloads\setup.exe 2013-11-18 13:03 - 2013-04-22 07:39 - 00142936 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT.SYS 2013-11-18 13:03 - 2013-04-22 07:39 - 00008194 _____ C:\Windows\system32\Drivers\SYMEVENT.CAT 2013-11-18 13:02 - 2013-04-22 07:38 - 00000000 ____D C:\Program Files\Norton AntiVirus 2013-11-18 13:01 - 2013-04-22 07:38 - 00000000 ____D C:\ProgramData\Norton 2013-11-18 12:54 - 2013-11-18 12:54 - 00000000 ____D C:\Users\Public\Downloads\Norton 2013-11-18 11:17 - 2013-11-18 11:17 - 00000000 ____D C:\FRST 2013-11-18 10:34 - 2011-01-22 12:07 - 00344218 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-18 10:34 - 2009-07-14 09:07 - 00016948 _____ C:\Windows\system32\perfh015.dat 2013-11-18 10:34 - 2009-07-14 09:07 - 00006768 _____ C:\Windows\system32\perfc015.dat 2013-11-18 10:23 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\pl-PL 2013-11-18 09:45 - 2011-01-22 13:46 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-11-18 09:27 - 2013-11-12 10:34 - 00000000 ____D C:\Users\Nauczyciele\AppData\Local\Windows Live 2013-11-15 07:20 - 2013-08-30 07:41 - 00000000 ____D C:\Windows\system32\MRT 2013-11-15 07:15 - 2012-09-06 11:50 - 80340640 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-11-13 11:30 - 2013-11-05 13:42 - 00000000 ____D C:\Users\Nauczyciele\AppData\Roaming\HpUpdate 2013-11-12 10:46 - 2013-11-12 10:45 - 00000000 ____D C:\Users\Nauczyciele\AppData\Local\Windows Live Writer 2013-11-12 10:45 - 2013-11-12 10:45 - 00000000 ____D C:\Users\Nauczyciele\AppData\Roaming\Windows Live Writer 2013-11-12 10:41 - 2013-11-12 10:39 - 00000000 ____D C:\Program Files\Windows Live 2013-11-12 10:38 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2013-11-12 10:30 - 2013-11-12 10:30 - 00000000 ____D C:\Program Files\Common Files\Windows Live 2013-11-12 10:29 - 2013-11-12 10:29 - 01245680 _____ (Microsoft Corporation) C:\Users\Nauczyciele\Downloads\wlsetup-web (1).exe 2013-11-12 10:28 - 2013-11-12 10:28 - 01245680 _____ (Microsoft Corporation) C:\Users\Nauczyciele\Downloads\wlsetup-web.exe 2013-11-11 18:53 - 2013-11-18 16:23 - 01085542 _____ C:\Users\Nauczyciele\Desktop\adwcleaner.exe 2013-11-07 12:57 - 2013-11-07 12:56 - 00000000 ____D C:\Users\Nauczyciele\Desktop\innowacja 2013-11-07 07:16 - 2013-07-08 17:58 - 00000000 ____D C:\Users\Nauczyciele\Desktop\PROTOKOŁY 2013-11-06 07:05 - 2011-01-22 15:47 - 00028014 _____ C:\Windows\PFRO.log 2013-11-05 13:44 - 2013-11-05 13:35 - 00000000 ____D C:\Users\Nauczyciele\AppData\Local\HP 2013-11-05 13:43 - 2013-11-05 13:43 - 00001945 _____ C:\Users\Public\Desktop\HP Photo Creations.lnk 2013-11-05 13:43 - 2013-11-05 13:43 - 00000000 ____D C:\ProgramData\Visan 2013-11-05 13:43 - 2013-11-05 13:43 - 00000000 ____D C:\ProgramData\HP Photo Creations 2013-11-05 13:43 - 2013-11-05 13:43 - 00000000 ____D C:\Program Files\HP Photo Creations 2013-11-05 13:42 - 2013-11-05 13:42 - 00002272 _____ C:\Users\Public\Desktop\HP Deskjet 1050 J410 series.lnk 2013-11-05 13:42 - 2013-11-05 13:42 - 00001194 _____ C:\Users\Public\Desktop\Zakup materiałów eksploatacyjnych - HP Deskjet 1050 J410 series.lnk 2013-11-05 13:42 - 2013-11-05 13:37 - 00000000 ____D C:\Program Files\HP 2013-11-05 13:37 - 2013-11-05 13:37 - 00000000 ____D C:\ProgramData\HP 2013-11-05 13:37 - 2009-07-14 05:52 - 00000000 ____D C:\Windows\twain_32 2013-11-05 13:36 - 2013-11-05 13:36 - 00000057 _____ C:\ProgramData\Ament.ini 2013-11-05 13:34 - 2013-11-05 13:34 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2013-11-05 13:34 - 2013-11-05 13:34 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2013-11-04 13:15 - 2013-06-04 11:02 - 00000000 ____D C:\Users\Nauczyciele\Desktop\DOKUMENTY - GRUPA II 2013-10-31 13:33 - 2013-03-22 11:28 - 00000000 ____D C:\Users\Nauczyciele\Desktop\dokumenty 2013-10-28 11:12 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\Microsoft.NET 2013-10-28 07:21 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\system32\NDF 2013-10-21 12:22 - 2013-10-21 12:21 - 00000000 ____D C:\Users\Nauczyciele\Desktop\BIEDRONKI 2013-10-21 11:21 - 2013-04-22 07:40 - 00000000 ____D C:\Windows\system32\Drivers\NST ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-23 12:46 ==================== End Of Log ============================