Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-11-2013 Ran by User (administrator) on USER-KOMPUTER on 25-11-2013 22:33:56 Running from C:\Users\User\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (COMODO) C:\Program Files\COMODO\Unite\EzVpnSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe (ArtistScope Pty Ltd) C:\Program Files\Common Files\ArtistScope\CSHelper64.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Spotify Ltd) C:\Users\User\AppData\Roaming\Spotify\spotify.exe (Spotify Ltd) C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2013\avgui.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (COMODO) C:\Program Files\COMODO\Unite\Unite.exe (COMODO) C:\Program Files\COMODO\Unite\crdphService.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe () C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (COMODO) C:\Program Files\COMODO\Unite\AppShare.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe () C:\Program Files (x86)\Common Files\Protexis\License Service\PSIService.exe (Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe (Comodo Security Solutions, Inc.) C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe (Hi-Rez Studios) D:\gry\smite\HiPatchService.exe () C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe ==================== Registry (Whitelisted) ================== HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20549280 2013-10-21] (Skype Technologies S.A.) HKCU\...\Run: [Spotify] - C:\Users\User\AppData\Roaming\Spotify\spotify.exe [5955072 2013-11-14] (Spotify Ltd) HKCU\...\Run: [Spotify Web Helper] - C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-11-14] (Spotify Ltd) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642808 2012-12-19] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Lycosa] - C:\Program Files (x86)\Razer\Lycosa\razerhid.exe [147456 2007-11-20] (Razer USA Ltd.) HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2013\avgui.exe [4411952 2013-09-23] (AVG Technologies CZ, s.r.o.) ==================== Internet (Whitelisted) ==================== StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files (x86)\McAfee Security Scan\3.0.318\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) BHO-x32: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Users\User\AppData\Roaming\FlashGetBHO\FlashGetBHO.dll (Trend Media Group) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files (x86)\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM - No Name - {ccb24e92-62c4-4c53-95d2-65f9eed476bc} - No File DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: 127.0.0.1 localhost Tcpip\Parameters: [DhcpNameServer] 87.101.32.3 87.101.32.5 Tcpip\..\Interfaces\{2D635255-8835-4B80-AF49-AFA2D4774E69}: [NameServer]8.8.8.8,8.8.4.4 FireFox: ======== FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\69f2e3oh.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll () FF Plugin: @garmin.com/GpsControl - C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1205146.dll (Adobe Systems, Inc.) FF Plugin-x32: @artistscope.com/ArtistScope Plugin - C:\Program Files (x86)\Common Files\ArtistScope\npArtistScope.dll (ArtistScope Pty Ltd) FF Plugin-x32: @artistscope.com/ArtistScope Plugin 5 - C:\Program Files (x86)\Common Files\ArtistScope\npArtistScope5.dll (ArtistScope Pty Ltd) FF Plugin-x32: @comodo.com/EasyvpnLvn - C:\Program Files\COMODO\Unite\npEasyVpnLVN.dll (COMODO) FF Plugin-x32: @comodo.com/EasyvpnRdp - C:\Program Files\COMODO\Unite\NpRdpView.dll ( ) FF Plugin-x32: @comodo.com/EasyvpnVnc - C:\Program Files\COMODO\Unite\NpVncView.dll ( ) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.3 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.3\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @garmin.com/GpsControl - C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.5.1 - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npnxgameEU.dll (Nexon) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @Webzen.com/NPBrowserExt - C:\Program Files (x86)\WEBZEN\BrowserExtension\NPWZCmnCtrl.dll (WEBZEN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @artistscope.com/ArtistScope Plugin - C:\Program Files (x86)\Common Files\ArtistScope\npArtistScope.dll (ArtistScope Pty Ltd) FF Plugin HKCU: @artistscope.com/ArtistScope Plugin 5 - C:\Program Files (x86)\Common Files\ArtistScope\npArtistScope5.dll (ArtistScope Pty Ltd) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\User\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Extension: defaults - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\69f2e3oh.default\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi FF Extension: Adblock Plus - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\69f2e3oh.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 ==================== Services (Whitelisted) ================= R2 avgfws; C:\Program Files (x86)\AVG\AVG2013\avgfws.exe [1432080 2013-09-04] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) R2 CLPSLauncher; C:\Program Files (x86)\Common Files\COMODO\launcher_service.exe [70352 2013-09-30] (Comodo Security Solutions, Inc.) R2 CSHelper; C:\Program Files\Common Files\ArtistScope\CSHelper64.exe [361552 2013-11-04] (ArtistScope Pty Ltd) R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2098880 2013-11-11] () R2 EzVpnSvc; C:\Program Files\COMODO\Unite\EzVpnSvc.exe [534832 2011-08-22] (COMODO) R2 GeekBuddyRSP; C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2013-10-01] (Comodo Security Solutions, Inc.) R2 HiPatchService; D:\gry\smite\HiPatchService.exe [8704 2013-01-11] (Hi-Rez Studios) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [399432 2012-09-29] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [676936 2012-09-29] (Malwarebytes Corporation) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.318\McCHSvc.exe [235216 2013-02-05] (McAfee, Inc.) S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [18360 2012-06-21] (Overwolf Ltd) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-05-16] () R2 ProtexisLicensing; C:\Program Files (x86)\Common Files\Protexis\License Service\PSIService.exe [174656 2006-11-02] () S3 xsherlock; C:\Windows\SysWow64\xsherlock.xem [654944 2012-07-12] (Wellbia.com Co., Ltd.) S2 vToolbarUpdater17.1.2; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\ToolbarUpdater.exe [x] ==================== Drivers (Whitelisted) ==================== R3 ATP; C:\Windows\System32\DRIVERS\cmdatp.sys [20888 2011-04-14] (Comodo, Inc.) R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [50296 2012-09-04] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [71480 2013-07-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [206648 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [311608 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [116536 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [45880 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [240952 2013-03-21] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [46368 2013-11-10] (AVG Technologies) S1 CFRMD; C:\Windows\SysWow64\DRIVERS\CFRMD.sys [37976 2012-09-03] (Windows (R) Win 7 DDK provider) R1 CSDriver; C:\Program Files\Common Files\ArtistScope\CSDriver64.sys [61424 2013-11-04] () S3 dgderdrv; C:\Windows\System32\drivers\dgderdrv.sys [20568 2010-02-04] (Devguru Co., Ltd) S3 DxkgFilter; C:\Program Files (x86)\iDisplay\idisplay.sys [55720 2012-08-31] () R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv_x64.sys [44928 2012-10-11] (ManyCam LLC) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2012-09-29] (Malwarebytes Corporation) R3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [28160 2013-01-31] (ManyCam LLC) U4 EagleX64; U4 GGSAFERDriver; U2 wuaserv; U4 X6va006; U4 X6va009; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-25 22:33 - 2013-11-25 22:33 - 00109600 _____ C:\Users\User\Desktop\OTL.Txt 2013-11-25 22:33 - 2013-11-25 22:33 - 00048392 _____ (COMODO CA Limited) C:\Windows\SysWOW64\certsentry.dll 2013-11-25 22:33 - 2013-11-25 22:33 - 00014716 _____ C:\Users\User\Desktop\FRST.txt 2013-11-25 22:33 - 2013-11-25 22:33 - 00000000 ____D C:\first_launch 2013-11-25 22:28 - 2013-11-25 22:28 - 00000000 ____D C:\Users\User\Desktop\usuwanie smieci 2013-11-25 22:16 - 2013-11-25 22:17 - 00000000 ____D C:\AdwCleaner 2013-11-25 18:58 - 2013-11-25 18:58 - 00377856 _____ C:\Users\User\Desktop\03i3p7ez.exe 2013-11-25 18:52 - 2013-11-25 18:52 - 01958440 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2013-11-25 18:52 - 2013-11-25 18:52 - 00602112 _____ (OldTimer Tools) C:\Users\User\Desktop\OTL.exe 2013-11-25 18:52 - 2013-11-25 18:52 - 00000000 ____D C:\FRST 2013-11-17 20:09 - 2013-11-17 20:09 - 00000206 _____ C:\Users\User\Desktop\Path of Exile.url 2013-11-16 14:23 - 2013-11-16 19:46 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-16 14:21 - 2013-11-16 14:22 - 05537968 _____ (TopoGrafix ) C:\Users\User\Desktop\SetupEasyGPS.exe 2013-11-15 22:39 - 2013-09-09 11:32 - 285988068 _____ C:\Users\User\Desktop\Install_Freizeitkarte_POL_en.exe 2013-11-15 21:49 - 2013-11-15 22:21 - 285539966 _____ C:\Users\User\Desktop\Install_Freizeitkarte_POL_en.zip 2013-11-14 22:41 - 2013-11-14 22:41 - 00000000 ____D C:\Users\User\Documents\My Garmin 2013-11-14 22:41 - 2013-11-14 22:41 - 00000000 ____D C:\ProgramData\GARMIN 2013-11-14 22:40 - 2013-11-14 22:40 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Garmin 2013-11-14 21:51 - 2013-11-15 23:13 - 00000000 ____D C:\Users\User\AppData\Roaming\Garmin 2013-11-14 21:51 - 2013-11-14 22:40 - 00000000 ____D C:\Program Files (x86)\Garmin 2013-11-14 21:51 - 2013-11-14 21:51 - 00000000 ____D C:\Program Files\Garmin GPS Plugin 2013-11-14 21:51 - 2013-11-14 21:51 - 00000000 ____D C:\Program Files (x86)\Garmin GPS Plugin 2013-11-13 21:02 - 2013-11-13 21:02 - 00000205 _____ C:\Users\User\Desktop\Call of Duty Modern Warfare 2 - Multiplayer.url 2013-11-13 20:07 - 2013-11-13 20:08 - 00000443 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-11-13 17:28 - 2013-11-15 22:39 - 00000000 ____D C:\Garmin 2013-11-13 17:07 - 2013-11-13 17:25 - 305418991 _____ C:\Users\User\Downloads\osm_generic_windows.exe 2013-11-13 15:54 - 2013-11-13 15:54 - 00000000 ____D C:\Program Files (x86)\EasyGPS 2013-11-13 15:53 - 2013-11-13 15:53 - 05537968 _____ (TopoGrafix ) C:\Users\User\Downloads\SetupEasyGPS.exe 2013-11-12 16:17 - 2013-11-12 16:17 - 00985720 _____ C:\Users\User\Downloads\ElophantClient.zip 2013-11-12 16:17 - 2013-11-12 16:17 - 00000000 ____D C:\Users\User\Desktop\Nowy folder 2013-11-10 23:04 - 2013-11-10 23:05 - 00003727 _____ C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml 2013-11-09 15:03 - 2013-11-09 15:03 - 00000206 _____ C:\Users\User\Desktop\Might & Magic Duel of Champions.url 2013-11-04 19:37 - 2013-11-04 19:37 - 03139224 _____ (ArtistScope) C:\Users\User\Downloads\ArtistScope_FX_47.exe 2013-11-04 19:37 - 2013-11-04 19:37 - 00000000 ____D C:\Windows\ArtistScope Plugin FX 2013-11-04 19:37 - 2013-11-04 19:37 - 00000000 ____D C:\Program Files\Common Files\ArtistScope 2013-11-03 14:36 - 2013-11-03 14:36 - 01449592 _____ C:\Users\User\Downloads\SystemCheck_plPL.exe 2013-10-31 15:12 - 2013-11-17 13:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-10-31 15:12 - 2013-10-31 15:12 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-10-31 14:47 - 2013-10-31 14:56 - 00000000 ____D C:\Program Files (x86)\Opera Developer 2013-10-31 14:46 - 2013-10-31 14:47 - 35158232 _____ (Opera Software ASA) C:\Users\User\Downloads\Opera_Developer_19.0.1300.0_Setup.exe 2013-10-31 14:41 - 2013-10-31 14:41 - 00000000 ____D C:\ProgramData\Symantec 2013-10-30 17:55 - 2013-10-31 14:56 - 00000000 ____D C:\Users\User\AppData\Roaming\Opera Software 2013-10-30 17:55 - 2013-10-31 14:56 - 00000000 ____D C:\Program Files (x86)\Opera 2013-10-30 17:55 - 2013-10-31 14:48 - 00000000 ____D C:\Users\User\AppData\Local\Opera Software 2013-10-30 17:53 - 2013-10-30 17:54 - 33727472 _____ (Opera Software ASA) C:\Users\User\Downloads\Opera_17.0.1241.53_Setup.exe 2013-10-30 17:18 - 2013-10-30 17:18 - 00819176 _____ (Google Inc.) C:\Users\User\Downloads\ChromeSetup.exe 2013-10-30 16:55 - 2013-10-30 16:55 - 00000000 ____D C:\Windows\SysWOW64\Adobe 2013-10-29 21:32 - 2013-10-29 21:32 - 00000000 _____ C:\Users\User\Desktop\Nowy dokument tekstowy (2).txt 2013-10-27 22:40 - 2013-10-27 22:45 - 00000000 ____D C:\Users\User\AppData\Local\ManyCam 2013-10-27 22:40 - 2013-10-27 22:41 - 00000000 ____D C:\Users\User\AppData\Roaming\ManyCam 2013-10-27 22:40 - 2013-10-27 22:40 - 00000000 ____D C:\Users\User\AppData\Local\mystart_ad 2013-10-27 22:40 - 2013-10-27 22:40 - 00000000 ____D C:\ProgramData\MyStart Anti-phishing Domain Advisor 2013-10-27 22:40 - 2013-10-27 22:40 - 00000000 ____D C:\ProgramData\ManyCam 2013-10-27 22:40 - 2013-10-27 22:40 - 00000000 ____D C:\ProgramData\EmailNotifier 2013-10-27 22:40 - 2012-10-11 04:08 - 00044928 _____ (ManyCam LLC) C:\Windows\system32\Drivers\mcvidrv_x64.sys 2013-10-27 22:39 - 2013-10-27 22:40 - 00000000 ____D C:\Program Files (x86)\mystarttb 2013-10-27 22:39 - 2013-10-27 22:40 - 00000000 ____D C:\Program Files (x86)\ManyCam 2013-10-27 12:25 - 2013-10-27 12:25 - 00000000 ____D C:\ProgramData\Steam ==================== One Month Modified Files and Folders ======= 2013-11-25 22:34 - 2013-11-25 22:33 - 00014716 _____ C:\Users\User\Desktop\FRST.txt 2013-11-25 22:33 - 2013-11-25 22:33 - 00109600 _____ C:\Users\User\Desktop\OTL.Txt 2013-11-25 22:33 - 2013-11-25 22:33 - 00048392 _____ (COMODO CA Limited) C:\Windows\SysWOW64\certsentry.dll 2013-11-25 22:33 - 2013-11-25 22:33 - 00000000 ____D C:\first_launch 2013-11-25 22:33 - 2013-08-26 13:17 - 00000000 ____D C:\Users\User\AppData\Roaming\Spotify 2013-11-25 22:33 - 2013-03-01 20:19 - 00057096 _____ (COMODO CA Limited) C:\Windows\system32\certsentry.dll 2013-11-25 22:33 - 2013-02-10 17:30 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-11-25 22:33 - 2013-01-23 19:56 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-11-25 22:32 - 2012-02-17 21:47 - 00000000 ____D C:\Program Files (x86)\Comodo 2013-11-25 22:31 - 2012-06-28 13:46 - 00003236 _____ C:\Windows\System32\Tasks\RunOW 2013-11-25 22:30 - 2009-07-14 05:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-25 22:30 - 2009-07-14 05:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-25 22:28 - 2013-11-25 22:28 - 00000000 ____D C:\Users\User\Desktop\usuwanie smieci 2013-11-25 22:26 - 2011-10-10 13:17 - 01882328 _____ C:\Windows\WindowsUpdate.log 2013-11-25 22:24 - 2012-02-17 17:25 - 00000000 ____D C:\Users\User\AppData\Roaming\Skype 2013-11-25 22:23 - 2013-01-23 19:56 - 00001040 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-11-25 22:22 - 2011-10-10 13:33 - 00000000 ____D C:\ProgramData\NVIDIA 2013-11-25 22:22 - 2010-11-21 04:47 - 01186014 _____ C:\Windows\PFRO.log 2013-11-25 22:22 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-25 22:22 - 2009-07-14 05:51 - 00173159 _____ C:\Windows\setupact.log 2013-11-25 22:17 - 2013-11-25 22:16 - 00000000 ____D C:\AdwCleaner 2013-11-25 22:16 - 2012-02-17 17:33 - 00000000 ____D C:\Users\User\AppData\Local\PMB Files 2013-11-25 21:57 - 2012-04-05 07:43 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-25 18:58 - 2013-11-25 18:58 - 00377856 _____ C:\Users\User\Desktop\03i3p7ez.exe 2013-11-25 18:52 - 2013-11-25 18:52 - 01958440 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe 2013-11-25 18:52 - 2013-11-25 18:52 - 00602112 _____ (OldTimer Tools) C:\Users\User\Desktop\OTL.exe 2013-11-25 18:52 - 2013-11-25 18:52 - 00000000 ____D C:\FRST 2013-11-25 18:36 - 2013-08-25 19:40 - 00000000 ____D C:\ProgramData\MFAData 2013-11-25 18:22 - 2012-02-17 17:33 - 00000000 ____D C:\ProgramData\PMB Files 2013-11-25 11:16 - 2013-08-26 13:17 - 00000000 ____D C:\Users\User\AppData\Local\Spotify 2013-11-24 18:40 - 2013-01-23 19:56 - 00004050 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-11-24 18:40 - 2013-01-23 19:56 - 00003798 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-11-24 17:38 - 2012-03-16 21:08 - 00000000 ____D C:\Users\User\AppData\Roaming\uTorrent 2013-11-21 23:03 - 2013-10-04 12:43 - 00000000 ____D C:\ProgramData\LogMeIn 2013-11-20 18:46 - 2012-03-07 14:04 - 00000000 ____D C:\Users\User\AppData\Roaming\TS3Client 2013-11-18 18:42 - 2013-01-24 15:25 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-11-18 18:42 - 2012-02-17 17:25 - 00000000 ____D C:\ProgramData\Skype 2013-11-17 21:35 - 2012-06-27 14:18 - 00000000 ____D C:\Users\User\Documents\My Games 2013-11-17 20:09 - 2013-11-17 20:09 - 00000206 _____ C:\Users\User\Desktop\Path of Exile.url 2013-11-17 20:09 - 2012-02-17 18:40 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2013-11-17 13:11 - 2013-10-31 15:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-11-16 19:46 - 2013-11-16 14:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-11-16 14:23 - 2010-11-21 13:53 - 03200898 _____ C:\Windows\system32\perfh015.dat 2013-11-16 14:23 - 2010-11-21 13:53 - 01028876 _____ C:\Windows\system32\perfc015.dat 2013-11-16 14:23 - 2009-07-14 06:13 - 00006300 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-16 14:22 - 2013-11-16 14:21 - 05537968 _____ (TopoGrafix ) C:\Users\User\Desktop\SetupEasyGPS.exe 2013-11-15 23:13 - 2013-11-14 21:51 - 00000000 ____D C:\Users\User\AppData\Roaming\Garmin 2013-11-15 22:39 - 2013-11-13 17:28 - 00000000 ____D C:\Garmin 2013-11-15 22:21 - 2013-11-15 21:49 - 285539966 _____ C:\Users\User\Desktop\Install_Freizeitkarte_POL_en.zip 2013-11-14 22:41 - 2013-11-14 22:41 - 00000000 ____D C:\Users\User\Documents\My Garmin 2013-11-14 22:41 - 2013-11-14 22:41 - 00000000 ____D C:\ProgramData\GARMIN 2013-11-14 22:40 - 2013-11-14 22:40 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Garmin 2013-11-14 22:40 - 2013-11-14 21:51 - 00000000 ____D C:\Program Files (x86)\Garmin 2013-11-14 22:04 - 2012-02-20 20:44 - 00000000 ____D C:\Program Files\DIFX 2013-11-14 21:51 - 2013-11-14 21:51 - 00000000 ____D C:\Program Files\Garmin GPS Plugin 2013-11-14 21:51 - 2013-11-14 21:51 - 00000000 ____D C:\Program Files (x86)\Garmin GPS Plugin 2013-11-13 21:02 - 2013-11-13 21:02 - 00000205 _____ C:\Users\User\Desktop\Call of Duty Modern Warfare 2 - Multiplayer.url 2013-11-13 20:17 - 2012-02-17 22:40 - 00226576 _____ C:\Windows\DirectX.log 2013-11-13 20:08 - 2013-11-13 20:07 - 00000443 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2013-11-13 17:25 - 2013-11-13 17:07 - 305418991 _____ C:\Users\User\Downloads\osm_generic_windows.exe 2013-11-13 15:54 - 2013-11-13 15:54 - 00000000 ____D C:\Program Files (x86)\EasyGPS 2013-11-13 15:53 - 2013-11-13 15:53 - 05537968 _____ (TopoGrafix ) C:\Users\User\Downloads\SetupEasyGPS.exe 2013-11-12 16:17 - 2013-11-12 16:17 - 00985720 _____ C:\Users\User\Downloads\ElophantClient.zip 2013-11-12 16:17 - 2013-11-12 16:17 - 00000000 ____D C:\Users\User\Desktop\Nowy folder 2013-11-10 23:05 - 2013-11-10 23:04 - 00003727 _____ C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml 2013-11-10 23:04 - 2012-11-08 22:46 - 00046368 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys 2013-11-09 15:03 - 2013-11-09 15:03 - 00000206 _____ C:\Users\User\Desktop\Might & Magic Duel of Champions.url 2013-11-09 15:01 - 2013-04-14 16:20 - 00000000 __SHD C:\Users\User\wc 2013-11-04 19:37 - 2013-11-04 19:37 - 03139224 _____ (ArtistScope) C:\Users\User\Downloads\ArtistScope_FX_47.exe 2013-11-04 19:37 - 2013-11-04 19:37 - 00000000 ____D C:\Windows\ArtistScope Plugin FX 2013-11-04 19:37 - 2013-11-04 19:37 - 00000000 ____D C:\Program Files\Common Files\ArtistScope 2013-11-03 14:36 - 2013-11-03 14:36 - 01449592 _____ C:\Users\User\Downloads\SystemCheck_plPL.exe 2013-10-31 15:12 - 2013-10-31 15:12 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-10-31 14:58 - 2012-03-31 17:29 - 00000000 ____D C:\Program Files (x86)\Anti-Vibrate Oscar Editor 2013-10-31 14:58 - 2011-10-10 13:34 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-10-31 14:56 - 2013-10-31 14:47 - 00000000 ____D C:\Program Files (x86)\Opera Developer 2013-10-31 14:56 - 2013-10-30 17:55 - 00000000 ____D C:\Users\User\AppData\Roaming\Opera Software 2013-10-31 14:56 - 2013-10-30 17:55 - 00000000 ____D C:\Program Files (x86)\Opera 2013-10-31 14:56 - 2013-01-23 19:56 - 00000000 ____D C:\Program Files (x86)\Google 2013-10-31 14:56 - 2012-02-17 17:20 - 00000000 ____D C:\Users\User\AppData\Local\Google 2013-10-31 14:56 - 2011-10-10 13:17 - 00001451 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-10-31 14:56 - 2011-10-10 13:17 - 00001417 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2013-10-31 14:48 - 2013-10-30 17:55 - 00000000 ____D C:\Users\User\AppData\Local\Opera Software 2013-10-31 14:47 - 2013-10-31 14:46 - 35158232 _____ (Opera Software ASA) C:\Users\User\Downloads\Opera_Developer_19.0.1300.0_Setup.exe 2013-10-31 14:41 - 2013-10-31 14:41 - 00000000 ____D C:\ProgramData\Symantec 2013-10-31 14:41 - 2012-02-23 20:06 - 00000000 ____D C:\ProgramData\Norton 2013-10-30 17:54 - 2013-10-30 17:53 - 33727472 _____ (Opera Software ASA) C:\Users\User\Downloads\Opera_17.0.1241.53_Setup.exe 2013-10-30 17:18 - 2013-10-30 17:18 - 00819176 _____ (Google Inc.) C:\Users\User\Downloads\ChromeSetup.exe 2013-10-30 16:55 - 2013-10-30 16:55 - 00000000 ____D C:\Windows\SysWOW64\Adobe 2013-10-29 21:32 - 2013-10-29 21:32 - 00000000 _____ C:\Users\User\Desktop\Nowy dokument tekstowy (2).txt 2013-10-27 22:45 - 2013-10-27 22:40 - 00000000 ____D C:\Users\User\AppData\Local\ManyCam 2013-10-27 22:41 - 2013-10-27 22:40 - 00000000 ____D C:\Users\User\AppData\Roaming\ManyCam 2013-10-27 22:40 - 2013-10-27 22:40 - 00000000 ____D C:\Users\User\AppData\Local\mystart_ad 2013-10-27 22:40 - 2013-10-27 22:40 - 00000000 ____D C:\ProgramData\MyStart Anti-phishing Domain Advisor 2013-10-27 22:40 - 2013-10-27 22:40 - 00000000 ____D C:\ProgramData\ManyCam 2013-10-27 22:40 - 2013-10-27 22:40 - 00000000 ____D C:\ProgramData\EmailNotifier 2013-10-27 22:40 - 2013-10-27 22:39 - 00000000 ____D C:\Program Files (x86)\mystarttb 2013-10-27 22:40 - 2013-10-27 22:39 - 00000000 ____D C:\Program Files (x86)\ManyCam 2013-10-27 22:40 - 2012-03-16 21:09 - 00000000 ____D C:\Users\User\AppData\Roaming\Mozilla 2013-10-27 17:07 - 2013-07-24 08:52 - 00000047 _____ C:\Users\User\Desktop\Mati passy.txt 2013-10-27 12:25 - 2013-10-27 12:25 - 00000000 ____D C:\ProgramData\Steam 2013-10-26 13:03 - 2013-06-27 19:31 - 00003704 _____ C:\Windows\System32\Tasks\Java Update Scheduler Some content of TEMP: ==================== C:\Users\User\AppData\Local\Temp\ntdll_dump.dll C:\Users\User\AppData\Local\Temp\TUUUninstallHelper.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-25 12:04 ==================== End Of Log ============================