Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-11-2013 Ran by e (administrator) on GRUBY on 20-11-2013 18:38:34 Running from C:\Documents and Settings\e\Moje dokumenty Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (AVG Technologies CZ, s.r.o.) D:\avg\AVG14\avgrsx.exe (AVG Technologies CZ, s.r.o.) D:\avg\AVG14\avgcsrvx.exe (AVG Technologies CZ, s.r.o.) D:\avg\AVG14\avgidsagent.exe (AVG Technologies CZ, s.r.o.) D:\avg\AVG14\avgwdsvc.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe () C:\WINDOWS\system32\PnkBstrA.exe (Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE (Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe () C:\WINDOWS\system32\PnkBstrB.exe (AVG Technologies CZ, s.r.o.) D:\avg\AVG14\avgui.exe () C:\Program Files\VIA\RAID\raid_tool.exe () C:\Program Files\VIA\RAID\vialogsv.exe () C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe (Spotify Ltd) C:\Documents and Settings\e\Dane aplikacji\Spotify\Data\SpotifyWebHelper.exe () C:\Program Files\RocketDock\RocketDock.exe () C:\Program Files\Pando Networks\Media Booster\PMB.exe (Sony) C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe (Google Inc.) C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.165\GoogleCrashHandler.exe () C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe (AVG Technologies CZ, s.r.o.) D:\avg\AVG14\avgnsx.exe (AVG Technologies CZ, s.r.o.) D:\avg\AVG14\avgemcx.exe () C:\Program Files\Rainmeter\Rainmeter.exe (Almico Software (www.almico.com)) C:\Program Files\SpeedFan\speedfan.exe (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [PWRISOVM.EXE] - C:\Program Files\PowerISO\PWRISOVM.EXE [336992 2012-08-17] (Power Software Ltd) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [AVG_UI] - D:\avg\AVG14\avgui.exe [4908592 2013-10-07] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [AudioDeck] - C:\Program Files\VIA\VIAudioi\SBADeck\ADeck.exe [528384 2007-08-09] (VIA Technologies, Inc.) HKLM\...\Run: [VIARaidUtl] - C:\Program Files\VIA\RAID\raid_tool.exe [4914840 2008-07-24] () HKLM\...\Run: [CmPCIaudio] - RunDll32 CMICNFG3.CPL,CMICtrlWnd HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup HKLM\...\Run: [nwiz] - nwiz.exe /install HKLM\...\Run: [NvMediaCenter] - RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit HKLM\...\Run: [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe HKCU\...\Run: [Google Update] - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [116648 2012-08-21] (Google Inc.) HKCU\...\Run: [KiesPDLR] - C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [21432 2012-08-07] () HKCU\...\Run: [MSMSGS] - C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation) HKCU\...\Run: [Spotify Web Helper] - C:\Documents and Settings\e\Dane aplikacji\Spotify\Data\SpotifyWebHelper.exe [1140736 2013-10-13] (Spotify Ltd) HKCU\...\Run: [RocketDock] - C:\Program Files\RocketDock\RocketDock.exe [495616 2007-09-02] () HKCU\...\Run: [Pando Media Booster] - C:\Program Files\Pando Networks\Media Booster\PMB.exe [4284976 2013-05-11] () HKCU\...\Run: [ares] - C:\Program Files\Ares\Ares.exe [934400 2013-02-14] (Ares Development Group) HKCU\...\Run: [Sony PC Companion] - C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [449248 2013-05-29] (Sony) HKCU\...\Run: [Facebook Update] - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Facebook\Update\FacebookUpdate.exe [138096 2013-10-23] (Facebook Inc.) HKU\Administrator\...\Run: [AVG-Secure-Search-Update_JUNE2013_TB] - "C:\Program Files\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_TB.exe" /PROMPT /CMPID=JUNE2013_TB HKU\Administrator\...\Run: [AVG-Secure-Search-Update_JUNE2013_HP] - "C:\Program Files\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_HP.exe" /PROMPT /CMPID=JUNE2013_HP HKU\Administrator\...\RunOnce: [FlashPlayerUpdate] - C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_11_7_700_224_Plugin.exe [ 2013-06-12] (Adobe Systems Incorporated) Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe (McAfee, Inc.) Startup: C:\Documents and Settings\e\Menu Start\Programy\Autostart\hamachi.lnk ShortcutTarget: hamachi.lnk -> C:\Program Files\Hamachi\hamachi.exe (LogMeIn Inc.) Startup: C:\Documents and Settings\e\Menu Start\Programy\Autostart\Rainmeter.lnk ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () Startup: C:\Documents and Settings\e\Menu Start\Programy\Autostart\SpeedFan.lnk ShortcutTarget: SpeedFan.lnk -> C:\Program Files\SpeedFan\speedfan.exe (Almico Software (www.almico.com)) SSODL: IconPackager Repair - {1799460C-0BC8-4865-B9DF-4A36CD703FF0} - No File BootExecute: autocheck autochk * sprestrtD:\avg\AVG14\avgrsx.exe /sync /restart ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=128 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - Backup.Old.DefaultScope {B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B} SearchScopes: HKCU - Backup.Old.DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.) BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: 127.0.0.1 localhost Tcpip\Parameters: [DhcpNameServer] 192.168.168.1 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin: @java.com/DTPlugin,version=10.9.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin: @real.com/nppl3260;version=6.0.12.69 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpjplug;version=6.0.12.69 - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ Chrome: ======= CHR HomePage: hxxp://www.gazeta.pl/0,0.html?p=128 CHR RestoreOnStartup: "hxxp://www.google.com" CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\31.0.1650.57\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\31.0.1650.57\pdf.dll () CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation) CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.)) CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation) CHR Plugin: (Facebook Desktop) - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.) CHR Plugin: (Google Update) - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Unity Player) - C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (BonanzaDealsLive Update) - C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll No File CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\17.1.2\\npsitesafety.dll No File CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.) CHR Plugin: (RealPlayer Version Plugin) - C:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) CHR Plugin: (McAfee Security Scanner +) - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll () CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) CHR Extension: (Stickman) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\acfhjcbakbeldmlfghoaaalejnekaknd\1.0.1_0 CHR Extension: (Plants vs. Zombies HD) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ahdfeknjbgfbkmemaoffkebceonhcjfd\1.0.0_0 CHR Extension: (Big Time Gangsta) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ajplbhgiljhgjomddcnchfoimakkbmkc\1.2.2_0 CHR Extension: (Angry Birds) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0 CHR Extension: (Theme Creator) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc\2.5_0 CHR Extension: (Turn Off the Lights) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn\2.2.0.28_0 CHR Extension: (Adblock for Youtube\u2122) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk\2.12_0 CHR Extension: (Kingdoms Of Camelot) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dkadejngfdiifodimfhejphllfecigmm\1.1_0 CHR Extension: (FC Barcelona) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dojdbdepcfkdjadnplfbkhpbgdmmghon\1.0_0 CHR Extension: (The Godfather: Five Families) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\edfkoljdeffeedleidebkmmamepgbnbl\1.2_0 CHR Extension: (Stylish) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe\1.2_0 CHR Extension: (AdBlock) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.14_0 CHR Extension: (Cut the Rope) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj\16_0 CHR Extension: (Website Blocker (Beta)) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hclgegipaehbigmbhdpfapmjadbaldib\0.2.4_0 CHR Extension: (The Walking Dead) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hohiiopfdolnjdlkocccddkmlghhnadh\1.0.0_0 CHR Extension: (WGT Baseball: MLB) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hpbjopfokekaencoephlgdbnljhcflhm\2.1.2_0 CHR Extension: (Cargo Bridge) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\keembkgclppcbilkekfgpobhldjjhpmn\1.5.7_0 CHR Extension: (Google Wallet) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (Gem Invasion) - C:\DOCUME~1\e\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nndmjlhmogchhmpbdehpnjanijdalhnh\3.0_0 ========================== Services (Whitelisted) ================= R2 AVGIDSAgent; D:\avg\AVG14\avgidsagent.exe [3538480 2013-10-03] (AVG Technologies CZ, s.r.o.) R2 avgwd; D:\avg\AVG14\avgwdsvc.exe [301152 2013-09-25] (AVG Technologies CZ, s.r.o.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.) R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2013-05-04] () R2 PnkBstrB; C:\WINDOWS\system32\PnkBstrB.exe [103736 2013-05-04] () S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) R2 VRAID Log Service; C:\Program Files\VIA\RAID\vialogsv.exe [45056 2008-07-09] () S2 vToolbarUpdater17.1.2; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\ToolbarUpdater.exe [x] ==================== Drivers (Whitelisted) ==================== S3 arusb(TP-LINK); C:\Windows\System32\DRIVERS\arusb.sys [598528 2010-02-25] (Atheros Communications, Inc.) R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [120632 2013-09-25] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [209208 2013-09-02] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [145720 2013-09-02] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22840 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [176952 2013-09-02] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [223032 2013-09-02] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [102200 2013-08-20] (AVG Technologies CZ, s.r.o.) R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27448 2013-09-08] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [193848 2013-08-01] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [37664 2013-11-11] (AVG Technologies) R3 cmuda3; C:\Windows\System32\drivers\cmuda3.sys [801280 2004-09-24] (C-Media Inc) R3 FETNDIS; C:\Windows\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. ) S3 gameenum; C:\Windows\System32\DRIVERS\gameenum.sys [10624 2008-04-13] (Microsoft Corporation) R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () R3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [25280 2013-10-12] (LogMeIn, Inc.) S3 rtl8139; C:\Windows\System32\DRIVERS\RTL8139.SYS [20992 2004-08-03] (Realtek Semiconductor Corporation) S3 s0016bus; C:\Windows\System32\DRIVERS\s0016bus.sys [89256 2008-05-16] (MCCI Corporation) S3 s0016mdfl; C:\Windows\System32\DRIVERS\s0016mdfl.sys [15016 2008-05-16] (MCCI Corporation) S3 s0016mdm; C:\Windows\System32\DRIVERS\s0016mdm.sys [120744 2008-05-16] (MCCI Corporation) S3 s0016mgmt; C:\Windows\System32\DRIVERS\s0016mgmt.sys [114216 2008-05-16] (MCCI Corporation) S3 s0016nd5; C:\Windows\System32\DRIVERS\s0016nd5.sys [25512 2008-05-16] (MCCI Corporation) S3 s0016obex; C:\Windows\System32\DRIVERS\s0016obex.sys [110632 2008-05-16] (MCCI Corporation) S3 s0016unic; C:\Windows\System32\DRIVERS\s0016unic.sys [115752 2008-05-16] (MCCI Corporation) R1 SCDEmu; C:\Windows\System32\Drivers\SCDEmu.sys [113104 2012-08-17] (Power Software Ltd) S3 SCREAMINGBDRIVER; C:\Windows\System32\drivers\ScreamingBAudio.sys [34896 2010-07-01] (Screaming Bee LLC) R0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [66048 2005-09-29] (Protection Technology) R0 speedfan; C:\Windows\System32\speedfan.sys [25240 2011-03-18] (Almico Software) S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [13024 2012-10-04] () S3 taphss; C:\Windows\System32\DRIVERS\taphss.sys [33512 2012-08-01] (AnchorFree Inc) R0 viamraid; C:\Windows\System32\DRIVERS\viamraid.sys [117248 2008-07-10] (VIA Technologies inc,.ltd) S3 VIAudio; C:\Windows\System32\drivers\vinyl97.sys [207488 2007-06-27] (VIA Technologies, Inc.) R0 videX32; C:\Windows\System32\DRIVERS\videX32.sys [9216 2007-11-21] (VIA Technologies, Inc.) S3 WinRing0_1_2_0; C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys [14416 2010-11-01] (OpenLibSys.org) S3 ALCXWDM; system32\drivers\ALCXWDM.SYS [x] S3 RivaTuner32; \??\C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys [x] S3 s3chipid; \??\C:\DOCUME~1\e\USTAWI~1\Temp\s3chipid.sys [x] U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-20 18:38 - 2013-11-20 18:43 - 00020098 _____ C:\Documents and Settings\e\Moje dokumenty\FRST.txt 2013-11-20 18:37 - 2013-11-20 18:37 - 01090881 _____ (Farbar) C:\Documents and Settings\e\Moje dokumenty\FRST.exe 2013-11-20 18:34 - 2013-11-20 18:34 - 00001079 _____ C:\Documents and Settings\e\Pulpit\RKreport[0]_H_11202013_183455.txt 2013-11-20 18:31 - 2013-11-20 18:31 - 00002476 _____ C:\Documents and Settings\e\Pulpit\RKreport[0]_S_11202013_183105.txt 2013-11-20 18:22 - 2013-11-20 18:35 - 00000000 ____D C:\Documents and Settings\e\Pulpit\RK_Quarantine 2013-11-20 17:30 - 2013-11-20 17:40 - 00000000 ____D C:\AdwCleaner 2013-11-20 17:28 - 2013-11-20 17:29 - 03679744 _____ C:\Documents and Settings\e\Moje dokumenty\RogueKiller.exe 2013-11-20 17:27 - 2013-11-20 17:27 - 00448512 _____ (OldTimer Tools) C:\Documents and Settings\e\Moje dokumenty\TFC.exe 2013-11-20 17:24 - 2013-11-20 17:25 - 01085542 _____ C:\Documents and Settings\e\Moje dokumenty\AdwCleaner.exe 2013-11-20 12:41 - 2013-11-20 12:41 - 00001781 _____ C:\Documents and Settings\All Users\Pulpit\McAfee Security Scan Plus.lnk 2013-11-20 12:41 - 2013-11-20 12:41 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\McAfee Security Scan Plus 2013-11-17 17:42 - 2013-11-17 17:44 - 00060416 ___SH C:\Documents and Settings\Dominika\Moje dokumenty\Thumbs.db 2013-11-16 20:01 - 2013-11-16 20:01 - 00009410 _____ C:\Documents and Settings\Radek\Moje dokumenty\ciota.jpeg 2013-11-09 16:31 - 2013-11-10 09:37 - 00000000 ____D C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\MoboGenie 2013-11-05 14:03 - 2013-11-08 18:51 - 00000000 ____D C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\MoboGenie 2013-11-05 13:45 - 2013-11-17 16:28 - 00011188 _____ C:\Documents and Settings\Dominika\daemonprocess.txt 2013-11-05 07:45 - 2013-11-05 07:45 - 00000000 ____D C:\Documents and Settings\Radek\Dane aplikacji\AVG2014 2013-11-05 07:44 - 2013-11-17 08:56 - 00003087 _____ C:\Documents and Settings\Radek\daemonprocess.txt 2013-11-05 07:44 - 2013-11-05 07:44 - 00000000 ____D C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\Avg2014 2013-11-03 20:54 - 2013-11-03 20:54 - 00000000 ____D C:\Documents and Settings\e\.android 2013-11-02 17:34 - 2013-11-05 15:43 - 00018042 _____ C:\WINDOWS\DPINST.LOG 2013-11-01 21:45 - 2013-11-17 20:40 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\cache 2013-11-01 21:44 - 2013-11-18 10:15 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Mobogenie 2013-11-01 21:44 - 2013-11-18 09:01 - 00017547 _____ C:\Documents and Settings\e\daemonprocess.txt 2013-11-01 21:44 - 2013-11-01 21:44 - 00000000 ____D C:\Documents and Settings\e\Moje dokumenty\Mobogenie 2013-11-01 21:40 - 2013-11-18 10:15 - 00000000 ____D C:\Program Files\Mobogenie 2013-11-01 21:16 - 2013-11-19 08:21 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-11-01 21:16 - 2013-11-19 08:21 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-11-01 21:16 - 2013-11-01 21:16 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-11-01 09:42 - 2013-11-20 17:46 - 00009109 _____ C:\WINDOWS\setupapi.log 2013-10-31 15:54 - 2013-10-31 15:55 - 00026853 _____ C:\Documents and Settings\e\Moje dokumenty\Ida Fink - opowiadanie Drzazga.odt 2013-10-30 21:51 - 2013-10-30 21:51 - 00000261 _____ C:\WINDOWS\game.ini 2013-10-30 21:51 - 2013-10-30 21:51 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Activision 2013-10-27 06:51 - 2013-10-27 06:51 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\AVG2014 2013-10-27 06:50 - 2013-10-27 06:50 - 00000000 ____D C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\Avg2014 2013-10-26 13:06 - 2013-10-26 13:06 - 00000000 ____D C:\Documents and Settings\e\Dane aplikacji\AVG2014 2013-10-26 12:51 - 2013-10-26 12:51 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\AVG2014 2013-10-26 12:44 - 2013-10-26 12:44 - 04436544 _____ (AVG Technologies) C:\Documents and Settings\Administrator\Moje dokumenty\avg_free_stb_all_2014_4158.exe 2013-10-26 12:44 - 2013-10-26 12:44 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\MFAData 2013-10-26 12:43 - 2013-10-26 12:43 - 00685248 _____ C:\Documents and Settings\Administrator\Moje dokumenty\AVG-AntiVirus-Free-Edition(13206).exe 2013-10-26 12:35 - 2013-10-26 12:51 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Avg2014 2013-10-26 10:18 - 2013-10-26 12:50 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\AVG 2013-10-26 10:09 - 2013-11-03 19:16 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\AVG2014 2013-10-26 09:42 - 2013-10-26 13:24 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Avg2014 2013-10-25 16:51 - 2013-10-25 16:51 - 00000000 ____D C:\FRST 2013-10-24 16:34 - 2013-10-24 16:34 - 00000000 ____D C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\uTorrentControl_v2 2013-10-24 16:33 - 2013-10-24 16:33 - 00000000 ____D C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Apple 2013-10-23 16:33 - 2013-10-23 16:33 - 00000000 ____D C:\Documents and Settings\e\Menu Start\Programy\Facebook 2013-10-23 16:32 - 2013-11-20 17:37 - 00000986 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-436374069-2139871995-1417001333-1004UA.job 2013-10-23 16:32 - 2013-11-20 17:37 - 00000964 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-436374069-2139871995-1417001333-1004Core.job 2013-10-23 14:12 - 2013-10-23 14:12 - 00000000 ____D C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\Adobe 2013-10-23 13:41 - 2013-10-23 13:41 - 00000104 _____ C:\Documents and Settings\Dominika\Pulpit\Internet.lnk 2013-10-22 10:01 - 2013-10-22 10:01 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\gBurner 2013-10-21 18:34 - 2013-10-21 18:34 - 00000000 ____D C:\Documents and Settings\e\Dane aplikacji\gBurner 2013-10-21 18:31 - 2013-10-22 10:00 - 00000000 ____D C:\Program Files\gBurner 2013-10-21 18:31 - 2013-10-21 18:31 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\gBurner ==================== One Month Modified Files and Folders ======= 2013-11-20 18:45 - 2013-05-11 10:45 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\PMB Files 2013-11-20 18:43 - 2013-11-20 18:38 - 00020098 _____ C:\Documents and Settings\e\Moje dokumenty\FRST.txt 2013-11-20 18:38 - 2012-08-12 04:41 - 00000000 ___RD C:\Documents and Settings\e\Moje dokumenty 2013-11-20 18:37 - 2013-11-20 18:37 - 01090881 _____ (Farbar) C:\Documents and Settings\e\Moje dokumenty\FRST.exe 2013-11-20 18:35 - 2013-11-20 18:22 - 00000000 ____D C:\Documents and Settings\e\Pulpit\RK_Quarantine 2013-11-20 18:34 - 2013-11-20 18:34 - 00001079 _____ C:\Documents and Settings\e\Pulpit\RKreport[0]_H_11202013_183455.txt 2013-11-20 18:34 - 2012-08-12 04:41 - 00000000 ____D C:\Documents and Settings\e\Pulpit 2013-11-20 18:32 - 2012-08-12 04:40 - 00032510 _____ C:\WINDOWS\SchedLgU.Txt 2013-11-20 18:32 - 2012-08-12 04:40 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-11-20 18:31 - 2013-11-20 18:31 - 00002476 _____ C:\Documents and Settings\e\Pulpit\RKreport[0]_S_11202013_183105.txt 2013-11-20 18:21 - 2013-10-12 17:27 - 00000000 ____D C:\Documents and Settings\e\Dane aplikacji\Hamachi 2013-11-20 18:21 - 2012-08-12 04:35 - 01303374 _____ C:\WINDOWS\WindowsUpdate.log 2013-11-20 18:19 - 2012-09-29 14:24 - 00000000 ____D C:\Program Files\SpeedFan 2013-11-20 18:17 - 2013-06-08 16:39 - 00000350 _____ C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job 2013-11-20 18:17 - 2013-05-31 18:25 - 00000350 _____ C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job 2013-11-20 18:17 - 2013-01-05 12:41 - 00000270 _____ C:\WINDOWS\Tasks\Game_Booster_AutoUpdate.job 2013-11-20 18:17 - 2004-10-29 15:50 - 00017145 _____ C:\WINDOWS\system32\nvapps.xml 2013-11-20 18:13 - 2012-08-21 23:11 - 00103714 _____ C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat 2013-11-20 18:13 - 2012-08-12 04:41 - 00000188 ___SH C:\Documents and Settings\e\ntuser.ini 2013-11-20 18:11 - 2012-11-09 06:48 - 00001176 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-436374069-2139871995-1417001333-1005UA.job 2013-11-20 18:08 - 2012-08-21 11:49 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\MFAData 2013-11-20 18:07 - 2013-03-30 11:15 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-11-20 18:05 - 2012-08-21 11:34 - 00001116 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-436374069-2139871995-1417001333-1004UA.job 2013-11-20 17:46 - 2013-11-01 09:42 - 00009109 _____ C:\WINDOWS\setupapi.log 2013-11-20 17:40 - 2013-11-20 17:30 - 00000000 ____D C:\AdwCleaner 2013-11-20 17:40 - 2012-08-12 06:28 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-11-20 17:39 - 2012-08-12 04:41 - 00000000 ___HD C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji 2013-11-20 17:38 - 2012-08-12 04:41 - 00000000 __RHD C:\Documents and Settings\e\Dane aplikacji 2013-11-20 17:38 - 2012-08-12 04:41 - 00000000 ___RD C:\Documents and Settings\e\Menu Start\Programy 2013-11-20 17:37 - 2013-10-23 16:32 - 00000986 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-436374069-2139871995-1417001333-1004UA.job 2013-11-20 17:37 - 2013-10-23 16:32 - 00000964 _____ C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-436374069-2139871995-1417001333-1004Core.job 2013-11-20 17:37 - 2012-08-12 04:41 - 00000000 ____D C:\Documents and Settings\e 2013-11-20 17:29 - 2013-11-20 17:28 - 03679744 _____ C:\Documents and Settings\e\Moje dokumenty\RogueKiller.exe 2013-11-20 17:27 - 2013-11-20 17:27 - 00448512 _____ (OldTimer Tools) C:\Documents and Settings\e\Moje dokumenty\TFC.exe 2013-11-20 17:25 - 2013-11-20 17:24 - 01085542 _____ C:\Documents and Settings\e\Moje dokumenty\AdwCleaner.exe 2013-11-20 14:00 - 2012-08-21 11:34 - 00001064 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-436374069-2139871995-1417001333-1004Core.job 2013-11-20 12:41 - 2013-11-20 12:41 - 00001781 _____ C:\Documents and Settings\All Users\Pulpit\McAfee Security Scan Plus.lnk 2013-11-20 12:41 - 2013-11-20 12:41 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\McAfee Security Scan Plus 2013-11-20 12:41 - 2012-08-21 11:37 - 00000000 ____D C:\Program Files\McAfee Security Scan 2013-11-20 12:41 - 2012-08-12 06:28 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy\Autostart 2013-11-20 12:41 - 2012-08-12 06:28 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-11-20 12:41 - 2012-08-12 06:28 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy 2013-11-20 07:43 - 2013-06-21 18:55 - 00000000 ____D C:\Documents and Settings\e\Moje dokumenty\Command and Conquer Generals Data 2013-11-20 07:43 - 2012-08-12 04:41 - 00000000 ___RD C:\Documents and Settings\e\Moje dokumenty\Moje obrazy 2013-11-20 07:39 - 2013-02-19 19:58 - 00000000 ____D C:\Program Files\Ares 2013-11-19 14:20 - 2013-10-15 07:55 - 00000188 ___SH C:\Documents and Settings\Dominika\ntuser.ini 2013-11-19 08:21 - 2013-11-01 21:16 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-11-19 08:21 - 2013-11-01 21:16 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-11-19 07:11 - 2012-11-09 06:47 - 00001124 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-436374069-2139871995-1417001333-1005Core.job 2013-11-19 06:33 - 2012-08-12 04:41 - 00000000 ___RD C:\Documents and Settings\e\Menu Start\Programy\Autostart 2013-11-18 18:36 - 2013-03-10 09:58 - 00000000 ____D C:\Documents and Settings\e\Dane aplikacji\Spotify 2013-11-18 17:31 - 2013-03-10 10:01 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Spotify 2013-11-18 10:15 - 2013-11-01 21:44 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Mobogenie 2013-11-18 10:15 - 2013-11-01 21:40 - 00000000 ____D C:\Program Files\Mobogenie 2013-11-18 09:01 - 2013-11-01 21:44 - 00017547 _____ C:\Documents and Settings\e\daemonprocess.txt 2013-11-17 20:40 - 2013-11-01 21:45 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\cache 2013-11-17 17:44 - 2013-11-17 17:42 - 00060416 ___SH C:\Documents and Settings\Dominika\Moje dokumenty\Thumbs.db 2013-11-17 17:44 - 2013-10-15 07:55 - 00000000 ___RD C:\Documents and Settings\Dominika\Moje dokumenty 2013-11-17 17:42 - 2013-10-15 07:55 - 00000000 ___RD C:\Documents and Settings\Dominika\Moje dokumenty\Moja muzyka 2013-11-17 16:28 - 2013-11-05 13:45 - 00011188 _____ C:\Documents and Settings\Dominika\daemonprocess.txt 2013-11-17 10:07 - 2013-01-26 14:09 - 00000188 ___SH C:\Documents and Settings\Radek\ntuser.ini 2013-11-17 08:56 - 2013-11-05 07:44 - 00003087 _____ C:\Documents and Settings\Radek\daemonprocess.txt 2013-11-16 20:01 - 2013-11-16 20:01 - 00009410 _____ C:\Documents and Settings\Radek\Moje dokumenty\ciota.jpeg 2013-11-16 20:01 - 2013-01-26 14:09 - 00000000 ___RD C:\Documents and Settings\Radek\Moje dokumenty 2013-11-14 17:34 - 2013-10-15 07:55 - 00000000 ___HD C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji 2013-11-14 17:33 - 2013-04-13 16:12 - 00000284 _____ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job 2013-11-14 09:14 - 2013-01-26 14:09 - 00000000 ___HD C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji 2013-11-11 08:37 - 2013-10-15 07:55 - 00000000 ___RD C:\Documents and Settings\Dominika\Moje dokumenty\Moje obrazy 2013-11-11 08:06 - 2012-08-29 14:57 - 00000000 ____D C:\WINDOWS\system32\cache 2013-11-11 08:03 - 2012-08-21 12:20 - 00037664 _____ (AVG Technologies) C:\WINDOWS\system32\Drivers\avgtpx86.sys 2013-11-10 09:37 - 2013-11-09 16:31 - 00000000 ____D C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\MoboGenie 2013-11-08 18:51 - 2013-11-05 14:03 - 00000000 ____D C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\MoboGenie 2013-11-08 13:18 - 2012-08-22 10:50 - 00087552 _____ C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-11-06 20:26 - 2012-08-21 16:11 - 00000000 ____D C:\Documents and Settings\e\Dane aplikacji\uTorrent 2013-11-05 15:43 - 2013-11-02 17:34 - 00018042 _____ C:\WINDOWS\DPINST.LOG 2013-11-05 15:41 - 2013-08-28 18:51 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Sony 2013-11-05 15:39 - 2012-08-12 05:02 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2013-11-05 13:45 - 2013-10-15 07:55 - 00000000 ____D C:\Documents and Settings\Dominika 2013-11-05 07:45 - 2013-11-05 07:45 - 00000000 ____D C:\Documents and Settings\Radek\Dane aplikacji\AVG2014 2013-11-05 07:45 - 2013-01-26 14:09 - 00000000 __RHD C:\Documents and Settings\Radek\Dane aplikacji 2013-11-05 07:44 - 2013-11-05 07:44 - 00000000 ____D C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\Avg2014 2013-11-05 07:44 - 2013-01-26 14:09 - 00000000 ____D C:\Documents and Settings\Radek 2013-11-03 20:54 - 2013-11-03 20:54 - 00000000 ____D C:\Documents and Settings\e\.android 2013-11-03 20:52 - 2013-04-12 16:29 - 00162816 __SHC C:\Documents and Settings\e\Moje dokumenty\Thumbs.db 2013-11-03 19:16 - 2013-10-26 10:09 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\AVG2014 2013-11-01 21:44 - 2013-11-01 21:44 - 00000000 ____D C:\Documents and Settings\e\Moje dokumenty\Mobogenie 2013-11-01 21:16 - 2013-11-01 21:16 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-10-31 15:55 - 2013-10-31 15:54 - 00026853 _____ C:\Documents and Settings\e\Moje dokumenty\Ida Fink - opowiadanie Drzazga.odt 2013-10-31 15:47 - 2013-02-09 15:54 - 00000000 ____D C:\Documents and Settings\e\Dane aplikacji\Media Player Classic 2013-10-30 21:51 - 2013-10-30 21:51 - 00000261 _____ C:\WINDOWS\game.ini 2013-10-30 21:51 - 2013-10-30 21:51 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Activision 2013-10-30 18:05 - 2012-08-23 07:46 - 00000000 ____D C:\WINDOWS\Minidump 2013-10-30 16:18 - 2008-04-15 13:00 - 00012598 _____ C:\WINDOWS\system32\wpa.dbl 2013-10-27 20:54 - 2012-08-21 23:11 - 00625274 _____ C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-436374069-2139871995-1417001333-1004-0.dat 2013-10-27 06:56 - 2012-08-12 06:28 - 01188458 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-10-27 06:56 - 2008-04-15 13:00 - 00531250 _____ C:\WINDOWS\system32\perfh015.dat 2013-10-27 06:56 - 2008-04-15 13:00 - 00093334 _____ C:\WINDOWS\system32\perfc015.dat 2013-10-27 06:51 - 2013-10-27 06:51 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\AVG2014 2013-10-27 06:51 - 2013-10-15 07:55 - 00000000 __RHD C:\Documents and Settings\Dominika\Dane aplikacji 2013-10-27 06:50 - 2013-10-27 06:50 - 00000000 ____D C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\Avg2014 2013-10-26 13:24 - 2013-10-26 09:42 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Avg2014 2013-10-26 13:06 - 2013-10-26 13:06 - 00000000 ____D C:\Documents and Settings\e\Dane aplikacji\AVG2014 2013-10-26 13:02 - 2012-10-02 07:01 - 00000188 ___SH C:\Documents and Settings\Administrator\ntuser.ini 2013-10-26 12:51 - 2013-10-26 12:51 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\AVG2014 2013-10-26 12:51 - 2013-10-26 12:35 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Avg2014 2013-10-26 12:50 - 2013-10-26 10:18 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\AVG 2013-10-26 12:44 - 2013-10-26 12:44 - 04436544 _____ (AVG Technologies) C:\Documents and Settings\Administrator\Moje dokumenty\avg_free_stb_all_2014_4158.exe 2013-10-26 12:44 - 2013-10-26 12:44 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\MFAData 2013-10-26 12:44 - 2012-10-02 07:01 - 00000000 ___HD C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2013-10-26 12:44 - 2012-10-02 07:01 - 00000000 ____D C:\Documents and Settings\Administrator\Moje dokumenty 2013-10-26 12:43 - 2013-10-26 12:43 - 00685248 _____ C:\Documents and Settings\Administrator\Moje dokumenty\AVG-AntiVirus-Free-Edition(13206).exe 2013-10-26 10:41 - 2012-09-11 10:24 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\AVG2013 2013-10-26 10:23 - 2012-08-21 12:18 - 00000000 ___HD C:\$AVG 2013-10-25 16:51 - 2013-10-25 16:51 - 00000000 ____D C:\FRST 2013-10-24 16:34 - 2013-10-24 16:34 - 00000000 ____D C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\uTorrentControl_v2 2013-10-24 16:34 - 2012-08-12 04:40 - 00000000 ___HD C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji 2013-10-24 16:33 - 2013-10-24 16:33 - 00000000 ____D C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Apple 2013-10-23 16:33 - 2013-10-23 16:33 - 00000000 ____D C:\Documents and Settings\e\Menu Start\Programy\Facebook 2013-10-23 16:30 - 2012-12-29 13:45 - 00000000 ____D C:\Documents and Settings\e\Ustawienia lokalne\Dane aplikacji\Facebook 2013-10-23 14:12 - 2013-10-23 14:12 - 00000000 ____D C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\Adobe 2013-10-23 14:12 - 2013-10-15 08:01 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\Adobe 2013-10-23 13:41 - 2013-10-23 13:41 - 00000104 _____ C:\Documents and Settings\Dominika\Pulpit\Internet.lnk 2013-10-23 13:41 - 2013-10-15 07:55 - 00000000 ____D C:\Documents and Settings\Dominika\Pulpit 2013-10-22 10:01 - 2013-10-22 10:01 - 00000000 ____D C:\Documents and Settings\Dominika\Dane aplikacji\gBurner 2013-10-22 10:00 - 2013-10-21 18:31 - 00000000 ____D C:\Program Files\gBurner 2013-10-21 18:34 - 2013-10-21 18:34 - 00000000 ____D C:\Documents and Settings\e\Dane aplikacji\gBurner 2013-10-21 18:31 - 2013-10-21 18:31 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\gBurner Some content of TEMP: ==================== C:\Documents and Settings\e\Ustawienia lokalne\Temp\ntdll_dump.dll C:\Documents and Settings\e\Ustawienia lokalne\Temp\sfamcc00001.dll C:\Documents and Settings\e\Ustawienia lokalne\Temp\sfareca00001.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2006-03-02 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2006-03-02 13:00] - [2008-04-14 21:50] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2006-03-02 13:00] - [2008-04-14 20:31] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================