Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-11-2013 Ran by Kasprzyk (administrator) on DOM-KASPRZYK on 22-11-2013 15:26:24 Running from C:\Documents and Settings\Kasprzyk\Moje dokumenty\Downloads Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (CompSoft) C:\Program Files\DoroPDFWriter\DoroServer.exe () C:\Program Files\Cyfrowy Polsat\MF821\Bin\CancelAutoPlay.exe (ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe () C:\Program Files\Cyfrowy Polsat\MF821\Bin\zLoggingDaemon.exe () C:\Program Files\Cyfrowy Polsat\MF821\Bin\Cyfrowy Polsat MF821.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Mobile Leader Co.,Ltd.) C:\WINDOWS\system32\ScsiCommandService2.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\Run: [NeroFilterCheck] - C:\WINDOWS\system32\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh) HKLM\...\Run: [DoroServer] - C:\Program Files\DoroPDFWriter\DoroServer.exe [172032 2012-05-29] (CompSoft) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [zLoader.exe] - C:\Program Files\Cyfrowy Polsat\MF821\Bin\zLoader.exe [26480 2012-05-22] () HKLM\...\Run: [CancelAutoPlay.exe] - C:\Program Files\Cyfrowy Polsat\MF821\Bin\CancelAutoPlay.exe [74096 2012-05-22] () HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [5110672 2013-09-12] (ESET) Winlogon\Notify\AtiExtEvent: C:\Windows\system32\Ati2evxx.dll (ATI Technologies Inc.) HKCU\...\Run: [Google Update] - C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [116648 2012-06-15] (Google Inc.) HKCU\...\Run: [GG] - C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\GG\Application\gghub.exe [4009024 2013-10-07] (GG Network S.A.) MountPoints2: E - E:\AutoRun.exe /s MountPoints2: {5c7ad959-38a4-11e3-9934-00a0c6000000} - G:\AutoRun.exe MountPoints2: {757af79f-eff0-11e2-98aa-00a0c6000000} - G:\LGAutoRun.exe Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Przyspieszenie uruchomienia programu AutoCAD.lnk ShortcutTarget: Przyspieszenie uruchomienia programu AutoCAD.lnk -> C:\Program Files\Common Files\Autodesk Shared\acstart17.exe (Autodesk, Inc) ==================== Internet (Whitelisted) ==================== ProxyServer: 205.164.41.101:3128 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM - DefaultScope value is missing. BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1339503424116 Tcpip\Parameters: [DhcpNameServer] 212.2.96.53 212.2.96.54 Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\31.0.1650.57\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\31.0.1650.57\gcswf32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation) CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation) CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.)) CHR Plugin: (Google Update) - C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Extension: (YouTube) - C:\DOCUME~1\Kasprzyk\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\DOCUME~1\Kasprzyk\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Google Wallet) - C:\DOCUME~1\Kasprzyk\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (20-20 3D Viewer for IKEA) - C:\DOCUME~1\Kasprzyk\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pfhldcakmgpmglboaclpfdedehjblalp\5.0.94.1_1 CHR Extension: (Gmail) - C:\DOCUME~1\Kasprzyk\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 CHR StartMenuInternet: Google Chrome - C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\chrome.exe ========================== Services (Whitelisted) ================= R2 6to4; C:\Windows\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation) R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1337752 2013-09-12] (ESET) S3 O2Flash; C:\WINDOWS\system32\o2flash.exe [36864 2005-01-27] () R2 ScsiCommandService2; C:\WINDOWS\system32\ScsiCommandService2.exe [48128 2011-10-31] (Mobile Leader Co.,Ltd.) R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf" ==================== Drivers (Whitelisted) ==================== S3 akshasp; C:\Windows\System32\DRIVERS\akshasp.sys [327168 2006-11-22] (Aladdin Knowledge Systems Ltd.) S3 aksusb; C:\Windows\System32\DRIVERS\aksusb.sys [100096 2006-11-22] (Aladdin Knowledge Systems Ltd.) R1 AmdK8; C:\Windows\System32\DRIVERS\AmdK8.sys [43520 2006-05-10] (Advanced Micro Devices) S3 andnetadb; C:\Windows\System32\Drivers\lgandnetadb.sys [25856 2013-04-18] (Google Inc) S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag.sys [23168 2013-04-18] (LG Electronics Inc.) S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem.sys [27776 2013-06-28] (LG Electronics Inc.) S3 andnetndis; C:\Windows\System32\DRIVERS\lgandnetndis.sys [70656 2013-04-23] (LG Electronics Inc.) R3 AR5211; C:\Windows\System32\DRIVERS\ar5211.sys [463168 2005-05-05] (Atheros Communications, Inc.) R1 eamon; C:\Windows\System32\DRIVERS\eamon.sys [184664 2013-09-17] (ESET) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [134248 2013-09-17] (ESET) R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [174400 2013-09-17] (ESET) R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [38952 2013-09-17] (ESET) R1 epfwtdi; C:\Windows\System32\DRIVERS\epfwtdi.sys [61600 2013-09-17] (ESET) R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [693760 2006-11-22] (Aladdin Knowledge Systems Ltd.) R2 Haspnt; C:\WINDOWS\system32\drivers\Haspnt.sys [47616 2012-07-20] (Aladdin Knowledge Systems) S3 massfilter; C:\Windows\System32\drivers\massfilter.sys [9216 2012-05-11] (MBB Incorporated) S3 massfilter_lte; C:\WINDOWS\system32\drivers\massfilter_lte.sys [15896 2011-12-14] (HandSet Incorporated) S3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2004-08-03] (Realtek Semiconductor Corporation) R1 Tcpip6; C:\Windows\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation) R3 zgdcat; C:\Windows\System32\DRIVERS\zgdcat.sys [114456 2011-12-14] (ZTE Incorporated) R3 zgdcdiag; C:\Windows\System32\DRIVERS\zgdcdiag.sys [114456 2011-12-14] (ZTE Incorporated) R3 zgdcmdm; C:\Windows\System32\DRIVERS\zgdcmdm.sys [114456 2011-12-14] (ZTE Incorporated) R3 zgdcnet; C:\Windows\System32\DRIVERS\zgdcnet.sys [144408 2011-12-14] (ZTE Incorporated) R3 zgdcnmea; C:\Windows\System32\DRIVERS\zgdcnmea.sys [114456 2011-12-14] (ZTE Incorporated) S3 ZTEusbnet; C:\Windows\System32\DRIVERS\ZTEusbnet.sys [134144 2012-05-11] (ZTE Corporation) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-22 15:24 - 2013-11-22 15:24 - 00000000 _____ C:\Documents and Settings\Kasprzyk\AutoupdateFail 2013-11-22 12:28 - 2013-11-22 12:28 - 00004215 _____ C:\WINDOWS\setupapi.log 2013-11-22 12:28 - 2013-11-22 12:28 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\ESET 2013-11-22 12:28 - 2013-11-22 12:28 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\ESET 2013-11-22 10:54 - 2013-11-22 10:54 - 00000000 ____D C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\Sun 2013-11-22 10:44 - 2013-11-22 10:44 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Java 2013-11-22 10:44 - 2013-11-22 10:44 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Sun 2013-11-22 10:44 - 2013-11-22 10:43 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2013-11-22 10:44 - 2013-11-22 10:43 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2013-11-22 10:44 - 2013-11-22 10:43 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2013-11-22 10:44 - 2013-11-22 10:43 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2013-11-22 10:44 - 2013-11-22 10:43 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2013-11-22 10:34 - 2013-11-22 10:34 - 00000000 ____D C:\_OTL 2013-11-22 09:28 - 2013-11-22 09:28 - 00000000 ____D C:\FRST 2013-11-21 21:23 - 2013-11-21 21:27 - 00000000 ____D C:\AdwCleaner 2013-11-21 21:15 - 2013-11-21 21:15 - 00000000 ____D C:\Documents and Settings\Administrator\PrivacIE 2013-11-21 21:14 - 2013-11-21 21:14 - 00000000 _____ C:\Documents and Settings\Administrator\AutoupdateFail 2013-11-21 21:11 - 2013-11-21 21:15 - 00001387 _____ C:\WINDOWS\5A5445_Autorun.log 2013-11-21 21:08 - 2013-11-21 21:18 - 00000000 ___SD C:\Documents and Settings\Administrator 2013-11-21 21:08 - 2013-11-21 21:18 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Historia 2013-11-21 21:08 - 2013-11-21 21:18 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2013-11-21 21:08 - 2013-11-21 21:18 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne 2013-11-21 21:08 - 2013-11-21 21:18 - 00000000 ____D C:\Documents and Settings\Administrator\Szablony 2013-11-21 21:08 - 2013-11-21 21:18 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji 2013-11-21 21:08 - 2013-11-21 21:14 - 00000000 ____D C:\Documents and Settings\Administrator\Ulubione 2013-11-21 21:08 - 2013-11-21 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google 2013-11-21 21:08 - 2012-06-13 19:38 - 00000000 ____D C:\Documents and Settings\Administrator\IETldCache 2013-11-21 10:16 - 2013-11-21 11:59 - 00000216 _____ C:\WINDOWS\wiadebug.log 2013-11-21 10:15 - 2013-11-21 10:15 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-11-21 10:15 - 2013-11-21 10:15 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-11-20 19:23 - 2013-11-22 08:14 - 00056680 _____ C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2013-11-20 19:22 - 2013-11-22 08:13 - 00226408 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-11-14 16:36 - 2013-11-22 15:22 - 00032612 _____ C:\WINDOWS\SchedLgU.Txt 2013-11-14 16:35 - 2013-11-22 15:24 - 00516741 _____ C:\WINDOWS\WindowsUpdate.log 2013-11-07 18:30 - 2013-11-07 18:30 - 00006144 ___SH C:\WINDOWS\system32\Thumbs.db 2013-11-07 18:29 - 2013-11-07 18:30 - 00007168 ___SH C:\WINDOWS\Thumbs.db 2013-11-07 18:29 - 2013-11-07 18:29 - 00000069 _____ C:\WINDOWS\NeroDigital.ini ==================== One Month Modified Files and Folders ======= 2013-11-22 15:26 - 2013-07-03 20:24 - 00000000 ____D C:\Documents and Settings\Kasprzyk\Dane aplikacji\GG 2013-11-22 15:24 - 2013-11-22 15:24 - 00000000 _____ C:\Documents and Settings\Kasprzyk\AutoupdateFail 2013-11-22 15:24 - 2013-11-14 16:35 - 00516741 _____ C:\WINDOWS\WindowsUpdate.log 2013-11-22 15:24 - 2012-06-12 11:17 - 00000000 ____D C:\Documents and Settings\Kasprzyk 2013-11-22 15:23 - 2012-06-12 11:11 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-11-22 15:22 - 2013-11-14 16:36 - 00032612 _____ C:\WINDOWS\SchedLgU.Txt 2013-11-22 15:22 - 2012-06-12 11:17 - 00000188 ___SH C:\Documents and Settings\Kasprzyk\ntuser.ini 2013-11-22 15:12 - 2012-06-15 19:21 - 00001144 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1614895754-1979792683-725345543-1004UA.job 2013-11-22 15:03 - 2012-07-16 09:14 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-11-22 12:28 - 2013-11-22 12:28 - 00004215 _____ C:\WINDOWS\setupapi.log 2013-11-22 12:28 - 2013-11-22 12:28 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\ESET 2013-11-22 12:28 - 2013-11-22 12:28 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\ESET 2013-11-22 12:28 - 2012-06-12 12:40 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-11-22 10:55 - 2012-06-12 11:17 - 00000000 ___RD C:\Documents and Settings\Kasprzyk\Moje dokumenty 2013-11-22 10:54 - 2013-11-22 10:54 - 00000000 ____D C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\Sun 2013-11-22 10:54 - 2012-06-12 11:17 - 00000000 ___HD C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji 2013-11-22 10:44 - 2013-11-22 10:44 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Java 2013-11-22 10:44 - 2013-11-22 10:44 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Sun 2013-11-22 10:44 - 2012-06-12 10:58 - 00000000 ____D C:\Program Files\Common Files\Java 2013-11-22 10:43 - 2013-11-22 10:44 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2013-11-22 10:43 - 2013-11-22 10:44 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2013-11-22 10:43 - 2013-11-22 10:44 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2013-11-22 10:43 - 2013-11-22 10:44 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2013-11-22 10:43 - 2013-11-22 10:44 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2013-11-22 10:43 - 2012-06-12 10:58 - 00000000 ____D C:\Program Files\Java 2013-11-22 10:34 - 2013-11-22 10:34 - 00000000 ____D C:\_OTL 2013-11-22 10:24 - 2012-06-12 11:17 - 00000000 __RHD C:\Documents and Settings\Kasprzyk\Dane aplikacji 2013-11-22 09:28 - 2013-11-22 09:28 - 00000000 ____D C:\FRST 2013-11-22 08:14 - 2013-11-20 19:23 - 00056680 _____ C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2013-11-22 08:13 - 2013-11-20 19:22 - 00226408 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-11-22 08:13 - 2012-06-12 11:17 - 00000000 ____D C:\Documents and Settings\Kasprzyk\Pulpit 2013-11-21 21:27 - 2013-11-21 21:23 - 00000000 ____D C:\AdwCleaner 2013-11-21 21:20 - 2004-08-04 13:00 - 00002206 _____ C:\WINDOWS\system32\wpa.dbl 2013-11-21 21:18 - 2013-11-21 21:08 - 00000000 ___SD C:\Documents and Settings\Administrator 2013-11-21 21:18 - 2013-11-21 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Historia 2013-11-21 21:18 - 2013-11-21 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2013-11-21 21:18 - 2013-11-21 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne 2013-11-21 21:18 - 2013-11-21 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Szablony 2013-11-21 21:18 - 2013-11-21 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji 2013-11-21 21:18 - 2012-06-12 11:11 - 00000000 __SHD C:\Documents and Settings\LocalService 2013-11-21 21:18 - 2012-06-12 11:03 - 00000000 __SHD C:\Documents and Settings\NetworkService 2013-11-21 21:18 - 2012-06-12 10:50 - 00000000 ____D C:\WINDOWS\Registration 2013-11-21 21:15 - 2013-11-21 21:15 - 00000000 ____D C:\Documents and Settings\Administrator\PrivacIE 2013-11-21 21:15 - 2013-11-21 21:11 - 00001387 _____ C:\WINDOWS\5A5445_Autorun.log 2013-11-21 21:14 - 2013-11-21 21:14 - 00000000 _____ C:\Documents and Settings\Administrator\AutoupdateFail 2013-11-21 21:14 - 2013-11-21 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Ulubione 2013-11-21 21:08 - 2013-11-21 21:08 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google 2013-11-21 19:02 - 2013-10-04 18:13 - 00000000 ____D C:\Documents and Settings\Kasprzyk\Moje dokumenty\DOM PIEKOSZÓW 2013-11-21 18:18 - 2012-09-03 10:27 - 00000974 _____ C:\Pion.txt 2013-11-21 11:59 - 2013-11-21 10:16 - 00000216 _____ C:\WINDOWS\wiadebug.log 2013-11-21 10:24 - 2012-06-12 11:19 - 00000000 ___RD C:\Documents and Settings\Kasprzyk\Moje dokumenty\Moje obrazy 2013-11-21 10:15 - 2013-11-21 10:15 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-11-21 10:15 - 2013-11-21 10:15 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-11-20 11:36 - 2013-03-11 20:11 - 00000000 ____D C:\Program Files\PDFCreator 2013-11-20 11:35 - 2012-06-12 12:51 - 00000000 ____D C:\Program Files\CCleaner 2013-11-20 08:12 - 2012-06-15 19:21 - 00001092 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1614895754-1979792683-725345543-1004Core.job 2013-11-17 22:18 - 2013-07-03 20:24 - 00000000 ____D C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\GG 2013-11-16 13:22 - 2013-07-25 09:31 - 00006656 _____ C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-11-15 08:14 - 2012-06-16 17:01 - 00002333 _____ C:\Documents and Settings\Kasprzyk\Pulpit\Google Chrome.lnk 2013-11-13 13:38 - 2012-06-12 12:29 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help 2013-11-13 13:36 - 2013-07-12 06:26 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-11-13 13:34 - 2012-06-12 14:15 - 80340640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-11-11 19:46 - 2012-06-12 11:35 - 00065536 _____ C:\WINDOWS\system32\config\ACEEvent.evt 2013-11-07 18:30 - 2013-11-07 18:30 - 00006144 ___SH C:\WINDOWS\system32\Thumbs.db 2013-11-07 18:30 - 2013-11-07 18:29 - 00007168 ___SH C:\WINDOWS\Thumbs.db 2013-11-07 18:30 - 2012-06-12 12:30 - 00000000 ____D C:\WINDOWS\SHELLNEW 2013-11-07 18:29 - 2013-11-07 18:29 - 00000069 _____ C:\WINDOWS\NeroDigital.ini 2013-11-07 18:29 - 2012-06-12 12:30 - 00000000 ___RD C:\WINDOWS\Web 2013-10-29 21:21 - 2012-06-12 11:17 - 00000792 _____ C:\Documents and Settings\Kasprzyk\Menu Start\Programy\Windows Media Player.lnk 2013-10-29 21:21 - 2012-06-12 11:17 - 00000000 ___RD C:\Documents and Settings\Kasprzyk\Menu Start\Programy 2013-10-27 06:26 - 2012-06-12 12:41 - 01117242 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-10-27 06:26 - 2004-08-04 13:00 - 00500988 _____ C:\WINDOWS\system32\perfh015.dat 2013-10-27 06:26 - 2004-08-04 13:00 - 00089484 _____ C:\WINDOWS\system32\perfc015.dat 2013-10-25 09:04 - 2013-08-20 11:05 - 00000000 ____D C:\Documents and Settings\Kasprzyk\Moje dokumenty\IZABELA Some content of TEMP: ==================== C:\Documents and Settings\Kasprzyk\Ustawienia lokalne\Temp\l6NTbSC.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2004-08-04 13:00] - [2008-04-14 18:21] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2004-08-04 13:00] - [2008-04-14 18:21] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2004-08-04 13:00] - [2008-04-14 18:21] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2004-08-04 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2004-08-04 13:00] - [2008-04-14 18:20] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2004-08-04 13:00] - [2008-04-14 18:21] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2004-08-04 13:00] - [2008-04-14 17:01] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================