Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-12-2013 01 Ran by Szymek (administrator) on SZYMBOOK on 28-12-2013 10:35:25 Running from C:\Users\Szymek\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe () C:\ProgramData\DataCardService\HWDeviceService64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (PC Tools) C:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe (StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Program Files\Core Temp 1.0 RC5\Core Temp.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Lenovo) C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe () C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeySupport.exe ( ) C:\Program Files (x86)\LockKey\LockKey.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Vimicro) C:\Program Files (x86)\USB Camera2\VM332_STI.EXE () C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe (Lenovo) C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe (PC Tools) C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe () C:\Advanced Wheel Mouse\wh_exec.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Akamai Technologies, Inc.) C:\Users\Szymek\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) C:\Users\Szymek\AppData\Local\Akamai\netsession_win.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (OldTimer Tools) C:\Users\Szymek\Downloads\OTL.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12343400 2011-12-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1156712 2011-11-15] (Realtek Semiconductor) HKLM\...\Run: [OnekeyStudio] - C:\Program Files (x86)\Lenovo\Onekey Theater\OnekeyStudio.exe [789856 2012-08-21] (Lenovo) HKLM\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-13] (CyberLink Corp.) HKLM\...\Run: [Energy Management] - C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8079408 2012-08-21] (Lenovo (Beijing) Limited) HKLM\...\Run: [EnergyUtility] - C:\Program Files (x86)\Lenovo\Energy Management\utility.exe [6202416 2012-08-21] (Lenovo(beijing) Limited) HKLM\...\Run: [Lenovo EE Boot Optimizer] - C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [206176 2012-08-21] (Lenovo) HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-21] (Intel Corporation) HKLM-x32\...\Run: [LockKey] - C:\Program Files (x86)\LockKey\LockKey.exe [337776 2011-08-25] ( ) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation) HKLM-x32\...\Run: [332BigDog] - C:\Program Files (x86)\USB Camera2\VM332_STI.EXE [554832 2011-07-25] (Vimicro) HKLM-x32\...\Run: [Lenovo Registration] - C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4351712 2012-01-26] (Lenovo, Inc.) HKLM-x32\...\Run: [Intelligent Touchpad] - C:\Program Files\Lenovo\Intelligent Touchpad\TouchZone.exe [291272 2011-12-08] () HKLM-x32\...\Run: [UpdateP2GShortCut] - C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2010-07-26] (CyberLink Corp.) HKLM-x32\...\Run: [VeriFaceManager] - C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [329056 2012-08-21] (Lenovo) HKLM-x32\...\Run: [UpdatePRCShortCut] - C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe [222504 2009-05-13] (CyberLink Corp.) HKLM-x32\...\Run: [00PCTFW] - C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe [2672600 2011-04-07] (PC Tools) HKLM-x32\...\Run: [WheelMouse] - C:\Advanced Wheel Mouse\wh_exec.exe [86016 2007-03-11] () HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\avastui.exe [3567800 2013-10-30] (AVAST Software) HKLM-x32\...\Run: [20131121] - C:\Program Files\AVAST Software\Avast\Setup\emupdate\fb4ca11a-1b44-4da9-86f1-cfb619eabed5.exe [180184 2013-11-23] (AVAST Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1 HKCU\...\Run: [AlcoholAutomount] - C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team) HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Szymek\AppData\Local\Akamai\netsession_win.exe [4480768 2013-01-26] (Akamai Technologies, Inc.) HKCU\...\Run: [Facebook Update] - C:\Users\Szymek\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-10-10] (Facebook Inc.) HKCU\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKCU\...\Policies\Explorer: [] MountPoints2: G - G:\HTC_Sync_Manager_PC.exe MountPoints2: {e3aaa59f-3b3a-11e3-a7d8-817f4c13886a} - G:\HTC_Sync_Manager_PC.exe HKU\UpdatusUser\...\Run: [Power2GoExpress] - NA AppInit_DLLs: C:\Windows\System32\nvinitx.dll [250504 2013-03-15] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll [205184 2013-03-15] (NVIDIA Corporation) Lsa: [Notification Packages] scecli C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll Startup: C:\Users\Szymek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CoreTemp.ini () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.google.com/ig/redirectdomain?brand=KMOH&bmod=KMOH HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7KMOH BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Pomocnik logowania za pomocą identyfikatora Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - No File Filter-x32: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Szymek\AppData\Roaming\Mozilla\Firefox\Profiles\96c8yvru.default FF user.js: detected! => C:\Users\Szymek\AppData\Roaming\Mozilla\Firefox\Profiles\96c8yvru.default\user.js FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/npbattlelog,version=2.3.2 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.2\npbattlelog.dll (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL No File FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL No File FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Szymek\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\qvo6.xml FF Extension: WebSite Recommendation - C:\Users\Szymek\AppData\Roaming\Mozilla\Firefox\Profiles\96c8yvru.default\Extensions\WebSiteRecommendation@weliketheweb.com FF Extension: Adblock Plus - C:\Users\Szymek\AppData\Roaming\Mozilla\Firefox\Profiles\96c8yvru.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR RestoreOnStartup: "https://www.google.pl/" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File CHR Extension: (Proxy Switchy!) - C:\Users\Szymek\AppData\Local\Google\Chrome\User Data\Default\Extensions\caehdcpeofiiigpdhbabniblemipncjj\1.6.3_0 CHR Extension: (Adblock Plus) - C:\Users\Szymek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.7.2_0 CHR Extension: (Google Mail Checker) - C:\Users\Szymek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_1 CHR Extension: (Google Wallet) - C:\Users\Szymek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0 CHR Extension: (Marc Ecko) - C:\Users\Szymek\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjonmehjfmkejjifhhknofdnacklmjk\2_0 CHR Extension: (Gmail) - C:\Users\Szymek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - C:\Program Files (x86)\Amazon\ABB\AmazonChrome-lenovo-abb.crx ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-10-30] (AVAST Software) S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team) R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [945440 2012-02-01] (Broadcom Corporation.) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-28] (Intel Corporation) S2 MySql; c:\usr/MYSQL/bin/mysqld.exe [2928700 2003-09-14] () S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] () S2 NSDSvc; C:\Windows\System32\NSDSvc.exe [120160 2011-12-23] (Lenovo) R2 PCToolsFirewallPlus; C:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe [286000 2011-01-24] (PC Tools) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-12-26] () R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) S3 wifimansvc; C:\Program Files (x86)\Mobile Partner\eap\wifimansvc.exe [598528 2011-10-24] () R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2013-10-30] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2013-10-30] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-10-30] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-10-30] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2013-10-30] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2013-11-09] (AVAST Software) R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2013-10-30] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-10-30] () S3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [134696 2012-02-02] (Broadcom Corporation.) R3 hswpan; C:\Windows\System32\DRIVERS\hswpan.sys [109056 2012-01-27] (Ozmo Inc) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [104048 2012-03-02] (Qualcomm Atheros Co., Ltd.) S3 NPF; C:\Windows\System32\drivers\NPF.sys [35344 2011-09-26] (CACE Technologies, Inc.) S3 NPF; C:\Windows\SysWow64\drivers\NPF.sys [35344 2011-09-26] (CACE Technologies, Inc.) R0 NSD; C:\Windows\System32\drivers\nsd.sys [24160 2011-12-23] (Lenovo Corporation") R1 Nsdfltr; C:\Windows\System32\drivers\Nsdfltr.sys [59488 2011-12-21] (Lenovo Corporation) R3 PCTFW-PacketFilter; C:\Windows\system32\drivers\pctNdis-PacketFilter64.sys [119688 2011-01-12] (PC Tools) R1 pctgntdi; C:\Windows\System32\drivers\pctgntdi64.sys [334976 2011-01-17] (PC Tools) S3 pctNdis; C:\Windows\System32\DRIVERS\pctNdis64.sys [79000 2010-07-08] (PC Tools) R3 pctNdisMP; C:\Windows\System32\DRIVERS\pctNdis64.sys [79000 2010-07-08] (PC Tools) R3 pctplfw; C:\Windows\System32\drivers\pctplfw64.sys [179976 2011-01-17] (PC Tools) S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19032 2012-08-20] () S3 pwdspio; C:\Windows\system32\pwdspio.sys [12384 2012-08-20] () R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-02-19] (Duplex Secure Ltd.) S3 ss_bserd; C:\Windows\System32\DRIVERS\ss_bserd.sys [128000 2009-09-19] (MCCI Corporation) R3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [9600 2007-01-26] () U3 ayr94xdv; C:\Windows\System32\Drivers\ayr94xdv.sys [0 ] (Microsoft Corporation) R3 ALSysIO; \??\C:\Users\Szymek\AppData\Local\Temp\ALSysIO64.sys [x] U3 BcmSqlStartupSvc; U2 CLKMSVC10_3A60B698; U2 CLKMSVC10_C3B3B687; S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [x] U2 DriverService; U2 iATAgentService; U2 idealife Update Service; U3 IGRS; U2 IviRegMgr; U2 Oasis2Service; U2 PCCarerService; U2 ReadyComm.DirectRouter; U2 RichVideo; U2 RtLedService; U2 SeaPort; U2 SoftwareService; U3 SQLWriter; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-28 10:35 - 2013-12-28 10:35 - 00023498 _____ C:\Users\Szymek\Downloads\FRST.txt 2013-12-28 10:35 - 2013-12-28 10:35 - 00000000 ____D C:\FRST 2013-12-28 10:33 - 2013-12-28 10:34 - 01930746 _____ (Farbar) C:\Users\Szymek\Downloads\FRST64.exe 2013-12-28 10:33 - 2013-12-28 10:34 - 00602112 _____ (OldTimer Tools) C:\Users\Szymek\Downloads\OTL.exe 2013-12-26 22:19 - 2013-12-26 22:19 - 00000836 _____ C:\Windows\PFRO.log 2013-12-22 22:24 - 2013-12-22 22:24 - 00093312 _____ C:\Users\Szymek\AppData\Local\GDIPFONTCACHEV1.DAT 2013-12-22 22:21 - 2013-12-28 10:22 - 00000896 _____ C:\Windows\setupact.log 2013-12-22 22:21 - 2013-12-22 22:21 - 00393000 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 _____ C:\Windows\setuperr.log 2013-12-18 11:28 - 2013-12-18 11:28 - 00000000 ____D C:\Users\Szymek\Downloads\programy matlab 2013-12-17 16:49 - 2013-12-17 16:49 - 00000000 ____H C:\Users\Szymek\Documents\Default.rdp 2013-12-13 17:29 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2013-12-13 17:29 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2013-12-13 17:29 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2013-12-13 17:29 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2013-12-13 17:28 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-13 17:28 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-13 17:28 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-13 17:28 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-13 17:28 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-13 17:28 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-13 17:28 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-13 17:28 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-13 17:28 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-13 17:28 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-13 17:28 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-13 17:28 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-13 17:28 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-13 17:28 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-13 17:28 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-13 17:28 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-13 17:28 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-13 17:28 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-13 17:28 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-13 17:28 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-13 17:28 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-13 17:28 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-13 17:28 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-13 17:28 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-13 17:28 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-13 17:28 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-13 17:28 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-13 17:28 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-13 17:28 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-13 17:28 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-13 17:28 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-12 19:40 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2013-12-12 19:40 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2013-12-12 19:40 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-12-12 19:40 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-12-12 19:40 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2013-12-12 19:40 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2013-12-12 19:40 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-12-12 19:40 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2013-12-12 19:40 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2013-12-12 19:40 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2013-12-12 19:40 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2013-12-12 19:40 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2013-12-12 19:40 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2013-12-12 19:40 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2013-12-12 19:40 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2013-12-12 19:40 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2013-12-12 19:40 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2013-12-12 19:40 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2013-12-12 19:40 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2013-12-10 09:03 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-10 09:00 - 2013-12-10 09:00 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-10 09:00 - 2013-12-10 09:00 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-10 08:59 - 2013-12-10 08:59 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-10 08:59 - 2013-12-10 08:59 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-10 08:59 - 2013-12-10 08:59 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-10 08:59 - 2013-12-10 08:59 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-10 08:59 - 2013-12-10 08:59 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-10 08:59 - 2013-12-10 08:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-07 17:50 - 2013-12-07 18:06 - 00000000 ____D C:\Users\Szymek\Downloads\Filo, Socjo i inne pierdy 2013-12-07 16:56 - 2013-12-07 17:00 - 00000000 ____D C:\Users\Szymek\Downloads\12 krokow wg felka alkoholika 2013-12-03 14:30 - 2013-12-03 14:30 - 00000000 ____D C:\Users\Szymek\Downloads\kolokwiumzmatlabastyczen2013 2013-12-02 19:15 - 2013-12-02 19:15 - 00000000 ____D C:\Users\Szymek\Downloads\rachunek2 2013-12-01 13:26 - 2013-12-01 13:27 - 00000000 ____D C:\Users\Szymek\Desktop\Informatyka - KSIĄŻKI ==================== One Month Modified Files and Folders ======= 2013-12-28 10:35 - 2013-12-28 10:35 - 00023498 _____ C:\Users\Szymek\Downloads\FRST.txt 2013-12-28 10:35 - 2013-12-28 10:35 - 00000000 ____D C:\FRST 2013-12-28 10:34 - 2013-12-28 10:33 - 01930746 _____ (Farbar) C:\Users\Szymek\Downloads\FRST64.exe 2013-12-28 10:34 - 2013-12-28 10:33 - 00602112 _____ (OldTimer Tools) C:\Users\Szymek\Downloads\OTL.exe 2013-12-28 10:31 - 2012-11-29 22:14 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-28 10:31 - 2009-07-14 05:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-28 10:31 - 2009-07-14 05:45 - 00032064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-28 10:28 - 2012-08-21 20:16 - 01856244 _____ C:\Windows\WindowsUpdate.log 2013-12-28 10:27 - 2013-07-15 12:55 - 00000000 ___RD C:\Users\Szymek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-28 10:27 - 2013-04-03 14:39 - 00000000 ____D C:\Users\Szymek\AppData\Local\Akamai 2013-12-28 10:25 - 2012-08-21 21:06 - 00222884 _____ C:\Windows\system32\fastboot.set 2013-12-28 10:24 - 2012-08-21 21:05 - 00000000 ____D C:\ProgramData\VeriFace 2013-12-28 10:23 - 2012-11-29 08:54 - 03433923 _____ C:\FaceProv.log 2013-12-28 10:23 - 2012-08-21 21:05 - 00001058 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-28 10:22 - 2013-12-22 22:21 - 00000896 _____ C:\Windows\setupact.log 2013-12-28 10:22 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-28 01:43 - 2012-08-21 21:05 - 00001062 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-28 00:53 - 2013-10-10 20:48 - 00000932 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-849919313-2341329910-1539056000-1001UA.job 2013-12-27 18:45 - 2012-11-29 22:06 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{6C2C5535-3013-4112-836F-980FB608DC42} 2013-12-27 16:02 - 2013-08-16 19:06 - 00290184 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-12-27 16:02 - 2013-06-13 23:06 - 00290184 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-12-27 16:02 - 2013-06-13 23:06 - 00280904 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-12-27 14:17 - 2013-08-26 21:37 - 00000000 ____D C:\Program Files (x86)\Origin 2013-12-27 13:29 - 2012-12-31 15:06 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-12-26 22:19 - 2013-12-26 22:19 - 00000836 _____ C:\Windows\PFRO.log 2013-12-26 22:19 - 2013-08-27 15:08 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2013-12-26 18:00 - 2012-11-29 21:17 - 00000000 ____D C:\Users\Szymek\AppData\Roaming\GG 2013-12-26 17:18 - 2013-06-13 23:06 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-12-26 17:07 - 2013-04-07 15:43 - 00000000 ____D C:\Users\Szymek\AppData\Roaming\Notepad++ 2013-12-26 16:54 - 2013-05-14 12:04 - 00000000 ____D C:\Program Files (x86)\Steam 2013-12-26 16:11 - 2013-04-24 17:17 - 00000000 ____D C:\Users\Szymek\AppData\Roaming\TS3Client 2013-12-26 15:28 - 2012-11-29 22:09 - 00000000 ____D C:\Users\Szymek\AppData\Roaming\Winamp 2013-12-26 15:20 - 2013-06-13 21:38 - 00000000 ____D C:\Users\Szymek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2013-12-26 15:20 - 2013-06-13 21:37 - 00000000 ____D C:\Users\Szymek\AppData\Local\Deployment 2013-12-26 14:39 - 2012-11-29 21:17 - 00000000 ____D C:\Users\Szymek\AppData\Local\GG 2013-12-25 21:53 - 2013-10-10 20:48 - 00000910 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-849919313-2341329910-1539056000-1001Core.job 2013-12-22 22:24 - 2013-12-22 22:24 - 00093312 _____ C:\Users\Szymek\AppData\Local\GDIPFONTCACHEV1.DAT 2013-12-22 22:21 - 2013-12-22 22:21 - 00393000 _____ C:\Windows\system32\FNTCACHE.DAT 2013-12-22 22:21 - 2013-12-22 22:21 - 00000000 _____ C:\Windows\setuperr.log 2013-12-22 18:40 - 2011-02-24 18:03 - 00000000 ____D C:\Windows\Panther 2013-12-22 18:23 - 2012-11-29 23:35 - 00000833 _____ C:\Users\Public\Desktop\CCleaner.lnk 2013-12-22 18:23 - 2012-11-29 23:35 - 00000000 ____D C:\Program Files\CCleaner 2013-12-22 18:21 - 2013-08-18 10:51 - 00000433 _____ C:\Users\Szymek\Documents\ax_files.xml 2013-12-18 22:42 - 2012-08-22 06:03 - 00737980 _____ C:\Windows\system32\perfh015.dat 2013-12-18 22:42 - 2012-08-22 06:03 - 00154636 _____ C:\Windows\system32\perfc015.dat 2013-12-18 22:42 - 2009-07-14 06:13 - 01662556 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-18 19:17 - 2012-12-01 22:08 - 00000000 ____D C:\Users\Szymek\AppData\Roaming\vlc 2013-12-18 11:28 - 2013-12-18 11:28 - 00000000 ____D C:\Users\Szymek\Downloads\programy matlab 2013-12-17 16:49 - 2013-12-17 16:49 - 00000000 ____H C:\Users\Szymek\Documents\Default.rdp 2013-12-15 15:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2013-12-14 20:30 - 2013-08-15 17:19 - 00000000 ____D C:\Windows\system32\MRT 2013-12-14 20:28 - 2012-11-30 15:19 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-14 17:14 - 2013-11-07 23:35 - 00000000 ____D C:\Users\Szymek\Downloads\Rachunek prawdopodobieństwa 2013-12-14 11:01 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-12-13 14:55 - 2012-11-29 21:06 - 00000000 ____D C:\Users\Szymek\AppData\Roaming\Skype 2013-12-13 14:34 - 2012-11-29 21:06 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-12-13 14:34 - 2012-11-29 21:05 - 00000000 ____D C:\ProgramData\Skype 2013-12-13 00:35 - 2012-11-29 21:25 - 00000000 ____D C:\Users\Szymek\Documents\Youcam 2013-12-11 00:31 - 2012-11-29 22:14 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-11 00:31 - 2012-11-29 22:14 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-11 00:31 - 2012-11-29 22:14 - 00003868 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-10 23:08 - 2013-06-14 10:06 - 00001340 _____ C:\Users\Szymek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-10 23:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-10 09:00 - 2013-12-10 09:00 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-10 09:00 - 2013-12-10 09:00 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-10 08:59 - 2013-12-10 08:59 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-10 08:59 - 2013-12-10 08:59 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-10 08:59 - 2013-12-10 08:59 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-10 08:59 - 2013-12-10 08:59 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-10 08:59 - 2013-12-10 08:59 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-10 08:59 - 2013-12-10 08:59 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-10 08:59 - 2013-12-10 08:59 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-10 08:59 - 2013-12-10 08:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-08 11:43 - 2012-12-28 10:05 - 00000099 _____ C:\Users\Public\LMDebug.log 2013-12-08 10:54 - 2009-07-14 06:08 - 00032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-12-07 18:10 - 2013-11-07 23:23 - 00000000 ____D C:\Users\Szymek\Downloads\Analiza matematyczna 2013-12-07 18:06 - 2013-12-07 17:50 - 00000000 ____D C:\Users\Szymek\Downloads\Filo, Socjo i inne pierdy 2013-12-07 18:00 - 2013-11-07 23:56 - 00000000 ____D C:\Users\Szymek\Downloads\Wstęp do sieci teleinformatycznych 2013-12-07 17:38 - 2012-08-21 21:05 - 00004058 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-12-07 17:38 - 2012-08-21 21:05 - 00003806 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-12-07 17:34 - 2013-11-07 23:23 - 00000000 ____D C:\Users\Szymek\Downloads\Algebra 2013-12-07 17:00 - 2013-12-07 16:56 - 00000000 ____D C:\Users\Szymek\Downloads\12 krokow wg felka alkoholika 2013-12-07 16:46 - 2013-03-13 18:21 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-06 23:43 - 2012-11-29 22:56 - 00000000 ____D C:\Users\Szymek\AppData\Local\Adobe 2013-12-06 23:23 - 2013-10-30 17:52 - 00001077 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-12-06 23:15 - 2013-10-07 18:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-06 23:15 - 2013-03-13 18:21 - 00001158 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-12-05 19:39 - 2012-08-21 21:05 - 00002200 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-12-03 14:30 - 2013-12-03 14:30 - 00000000 ____D C:\Users\Szymek\Downloads\kolokwiumzmatlabastyczen2013 2013-12-02 19:15 - 2013-12-02 19:15 - 00000000 ____D C:\Users\Szymek\Downloads\rachunek2 2013-12-01 13:27 - 2013-12-01 13:26 - 00000000 ____D C:\Users\Szymek\Desktop\Informatyka - KSIĄŻKI Files to move or delete: ==================== C:\Users\Public\AlexaNSISPlugin.244.dll Some content of TEMP: ==================== C:\Users\Szymek\AppData\Local\Temp\ggdrive-menu.exe C:\Users\Szymek\AppData\Local\Temp\ggdrive-overlay.exe C:\Users\Szymek\AppData\Local\Temp\installstats.exe C:\Users\Szymek\AppData\Local\Temp\sonarinst.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-22 15:48 ==================== End Of Log ============================