Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 04-01-2014 Ran by Bogdan (administrator) on BOGDAN-XP on 04-01-2014 17:08:25 Running from C:\Documents and Settings\Bogdan\Moje dokumenty\Pobieranie Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 7 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe (Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe (AVAST Software) C:\Program Files\Alwil Software\Avast5\AvastUI.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe () C:\Documents and Settings\Bogdan\Moje dokumenty\Pobieranie\OTL.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AvastUI.exe] - C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3568312 2013-11-28] (AVAST Software) HKLM\...\Run: [avast] - C:\Program Files\Alwil Software\Avast5\AvastUI.exe [3568312 2013-11-28] (AVAST Software) HKLM\...\Run: [SDTray] - C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.) HKLM\...\Run: [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe HKCU\...\Run: [DAEMON Tools Lite] - rem "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun HKCU\...\Policies\Explorer: [NoCDBurning] 0 BootExecute: autocheck autochk * sasnative32sdnclean.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {24A62A83-6394-48FC-BF6C-EF6ABED09DC7} URL = http://www.zumie.com/?prt=ZUMIE156&keywords={searchTerms} SearchScopes: HKCU - {0CA24C3C-9EBF-4775-8673-57EA6B6FB376} URL = http://search.yahoo.com/search?ei=utf-8&fr=vmn&type=vdio2&p={searchTerms} SearchScopes: HKCU - {209787F8-8763-48B6-ADC8-E83F74F070E1} URL = http://www.dealio.com/products.html?kwd={searchTerms} SearchScopes: HKCU - {94D57B42-E3BA-4C01-B98A-8CCA2FCBF29E} URL = http://www.zumie.com/?prt=ZumFreez&keywords={searchTerms} SearchScopes: HKCU - {A903B7AE-3A5E-4b2a-ACAE-0AD3EDCF0F22} URL = http://search.supermario-toolbar.com/search?p=Q&ts=ne&w={searchTerms}&csrc=search-field BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\Alwil Software\Avast5\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - No File Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation) Winsock: Catalog9 01 C:\Program Files\F-Secure Internet Security\FSPS\program\FSLSP.DLL [179808] (F-Secure Corporation) Winsock: Catalog9 02 C:\Program Files\F-Secure Internet Security\FSPS\program\FSLSP.DLL [179808] (F-Secure Corporation) Winsock: Catalog9 03 C:\Program Files\F-Secure Internet Security\FSPS\program\FSLSP.DLL [179808] (F-Secure Corporation) Winsock: Catalog9 19 C:\Program Files\F-Secure Internet Security\FSPS\program\FSLSP.DLL [179808] (F-Secure Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.100 FireFox: ======== FF ProfilePath: C:\Documents and Settings\Bogdan\Dane aplikacji\Mozilla\Firefox\Profiles\jeqga4c3.default FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll No File FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @real.com/nppl3260;version=6.0.12.450 - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/npracplug;version=1.0.0.0 - C:\Program Files\Real\RealArcade\Plugins\Mozilla\npracplug.dll (RealNetworks) FF Plugin: @real.com/nprjplug;version=1.0.3.448 - C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.2 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\wolnelektury-pl.xml FF Extension: Vividas player plugin - C:\Documents and Settings\Bogdan\Dane aplikacji\Mozilla\Firefox\Profiles\jeqga4c3.default\Extensions\player@vividas.com FF Extension: Flagfox - C:\Documents and Settings\Bogdan\Dane aplikacji\Mozilla\Firefox\Profiles\jeqga4c3.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} FF Extension: WOT - C:\Documents and Settings\Bogdan\Dane aplikacji\Mozilla\Firefox\Profiles\jeqga4c3.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: Ghostery - C:\Documents and Settings\Bogdan\Dane aplikacji\Mozilla\Firefox\Profiles\jeqga4c3.default\Extensions\firefox@ghostery.com.xpi FF Extension: Przelewy24 - C:\Documents and Settings\Bogdan\Dane aplikacji\Mozilla\Firefox\Profiles\jeqga4c3.default\Extensions\p24ext@przelewy24.pl.xpi FF Extension: InstantFox - C:\Documents and Settings\Bogdan\Dane aplikacji\Mozilla\Firefox\Profiles\jeqga4c3.default\Extensions\searchy@searchy.xpi FF Extension: Adblock Plus - C:\Documents and Settings\Bogdan\Dane aplikacji\Mozilla\Firefox\Profiles\jeqga4c3.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\Alwil Software\Avast5\WebRep\FF Chrome: ======= CHR HomePage: hxxp://www.google.com CHR RestoreOnStartup: "hxxp://www.google.com" CHR Extension: (Docs) - C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0 CHR Extension: (Google Drive) - C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0 CHR Extension: (Google Search) - C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0 CHR Extension: (Gmail) - C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 ========================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [50344 2013-11-28] (AVAST Software) S3 DfSdkS; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 7\Dfsdks.exe [406016 2009-08-24] (mst software GmbH, Germany) R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) S2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S3 SureThing Labelflash service; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [74392 2009-01-29] (MicroVision Development, Inc.) S4 FSAUA; "C:\Program Files\F-Secure Internet Security\FSAUA\program\fsaua.exe" [x] S4 FSMA; "C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE" [x] S4 FSORSPClient; "C:\Program Files\F-Secure Internet Security\ORSP Client\fsorsp.exe" [x] S2 JavaQuickStarterService; "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf" S2 SolutoService; "C:\Program Files\Soluto\SolutoService.exe" [x] ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2013-12-30] (AVAST Software) R1 AswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [54832 2013-12-30] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49944 2013-11-28] () R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [775952 2013-12-30] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [410528 2013-12-30] (AVAST Software) R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57672 2013-12-30] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [180248 2013-12-30] () R3 BazisVirtualCDBus; C:\Windows\System32\DRIVERS\BazisVirtualCDBus.sys [117584 2011-08-08] (SysProgs.org) S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [239168 2011-12-08] (DT Soft Ltd) R2 enodpl; C:\Windows\System32\drivers\enodpl.sys [7552 2003-03-02] () S3 FilterService; C:\Windows\System32\DRIVERS\lvuvcflt.sys [23832 2008-12-17] (Logitech Inc.) R0 fsbts; C:\Windows\System32\Drivers\fsbts.sys [30856 2008-11-16] () S3 gdrv; C:\WINDOWS\gdrv.sys [16376 2008-04-25] (Windows (R) 2000 DDK provider) R0 hotcore3; C:\Windows\System32\drivers\hotcore3.sys [40368 2010-05-05] (Paragon Software Group) S3 HPZid412; C:\Windows\System32\DRIVERS\HPZid412.sys [49920 2008-10-28] (HP) S3 HPZipr12; C:\Windows\System32\DRIVERS\HPZipr12.sys [16496 2008-10-28] (HP) S3 HPZius12; C:\Windows\System32\DRIVERS\HPZius12.sys [21568 2008-10-28] (HP) R3 LVPr2Mon; C:\Windows\System32\Drivers\LVPr2Mon.sys [25624 2008-12-16] () R3 LVUSBSta; C:\Windows\System32\drivers\LVUSBSta.sys [41752 2008-12-17] (Logitech Inc.) S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\mbamswissarmy.sys [40776 2014-01-04] (Malwarebytes Corporation) S3 MPE; C:\Windows\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation) S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) R0 pavboot; C:\Windows\System32\drivers\pavboot.sys [28544 2008-06-19] (Panda Security, S.L.) R1 SAVRKBootTasks; C:\WINDOWS\system32\SAVRKBootTasks.sys [18816 2010-05-26] (Sophos Plc) R0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [63488 2005-11-03] (Protection Technology) S0 Soluto; C:\Windows\System32\DRIVERS\Soluto.sys [51144 2012-09-06] (Soluto LTD.) S3 SONYPVU1; C:\Windows\System32\DRIVERS\SONYPVU1.SYS [7552 2001-08-17] (Sony Corporation) R1 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5632 2009-01-19] () R2 tandpl; C:\Windows\System32\drivers\tandpl.sys [4736 2003-04-19] () S3 U6000ALL; C:\Windows\System32\DRIVERS\U6000ALL.sys [230784 2007-07-13] () S3 W8335XP; C:\Windows\System32\DRIVERS\Mrvw125.sys [282624 2005-12-29] (Marvell Semiconductor, Inc) S3 wceusbsh; C:\Windows\System32\DRIVERS\wceusbsh.sys [28672 2006-11-06] (Microsoft Corporation) S2 aswFsBlk; \??\C:\WINDOWS\system32\drivers\aswFsBlk.sys [x] S3 BCASPROT; \??\C:\Program Files\Systweak\Advanced System Protector\sasprot32.sys [x] S1 Beep; No ImagePath S3 Cardex; \??\C:\WINDOWS\system32\drivers\TBPANEL.SYS [x] S3 catchme; \??\C:\DOCUME~1\Bogdan\USTAWI~1\Temp\catchme.sys [x] S3 cpuz135; \??\C:\WINDOWS\TEMP\cpuz135\cpuz135_x32.sys [x] U4 dwshd; \SystemRoot\System32\drivers\dwshd.sys [x] S4 IntelIde; No ImagePath S3 MEMSWEEP2; \??\C:\WINDOWS\system32\519C.tmp [x] U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U3 TlntSvr; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-04 17:07 - 2014-01-04 17:07 - 00000000 ____D C:\FRST 2014-01-04 12:38 - 2014-01-04 12:43 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\Mobogenie 2014-01-04 01:19 - 2014-01-04 01:19 - 00018230 _____ C:\ComboFix.txt 2014-01-04 01:07 - 2014-01-04 01:08 - 05160001 ____R (Swearware) C:\Documents and Settings\Bogdan\Pulpit\ComboFix.exe 2014-01-03 23:40 - 2014-01-03 23:40 - 00000000 ____D C:\Documents and Settings\Bogdan\Moje dokumenty\ProcAlyzer Dumps 2014-01-03 23:32 - 2014-01-03 23:32 - 00001836 _____ C:\Documents and Settings\All Users\Pulpit\Spybot-S&D Start Center.lnk 2014-01-03 23:32 - 2014-01-03 23:32 - 00000616 _____ C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job 2014-01-03 23:32 - 2014-01-03 23:32 - 00000446 _____ C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job 2014-01-03 23:32 - 2014-01-03 23:32 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Spybot - Search & Destroy 2 2014-01-03 23:32 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean.exe 2014-01-03 23:22 - 2014-01-03 23:22 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Macromedia 2014-01-03 23:22 - 2014-01-03 23:22 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Adobe 2014-01-03 22:08 - 2014-01-03 22:09 - 00000079 _____ C:\WINDOWS\wininit.ini 2014-01-03 21:56 - 2014-01-04 12:16 - 00000644 _____ C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job 2014-01-03 21:56 - 2014-01-04 02:29 - 00065536 _____ C:\WINDOWS\system32\config\SpybotSD.evt 2014-01-03 21:56 - 2014-01-03 23:34 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2 2014-01-03 21:54 - 2014-01-04 12:43 - 00000000 ____D C:\Program Files\Mobogenie 2014-01-03 21:45 - 2014-01-03 21:45 - 00001617 _____ C:\Documents and Settings\Bogdan\Pulpit\AdwCleaner[S1].txt 2014-01-03 21:40 - 2014-01-04 00:28 - 00040776 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2014-01-03 20:11 - 2014-01-03 20:12 - 00005557 _____ C:\WINDOWS\setupapi.log 2014-01-03 19:34 - 2014-01-03 19:34 - 00000000 _RSHD C:\cmdcons 2014-01-03 19:34 - 2008-11-20 13:40 - 00000211 _____ C:\Boot.bak 2014-01-03 19:34 - 2004-08-03 23:00 - 00262400 __RSH C:\cmldr 2014-01-03 19:32 - 2011-06-26 07:45 - 00256000 _____ C:\WINDOWS\PEV.exe 2014-01-03 19:32 - 2010-11-07 18:20 - 00208896 _____ C:\WINDOWS\MBR.exe 2014-01-03 19:32 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe 2014-01-03 19:32 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe 2014-01-03 19:32 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe 2014-01-03 19:32 - 2000-08-31 01:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe 2014-01-03 19:32 - 2000-08-31 01:00 - 00098816 _____ C:\WINDOWS\sed.exe 2014-01-03 19:32 - 2000-08-31 01:00 - 00080412 _____ C:\WINDOWS\grep.exe 2014-01-03 19:32 - 2000-08-31 01:00 - 00068096 _____ C:\WINDOWS\zip.exe 2014-01-03 19:31 - 2014-01-04 01:19 - 00000000 ____D C:\Qoobox 2014-01-03 19:30 - 2014-01-03 19:41 - 00000000 ____D C:\WINDOWS\erdnt 2014-01-03 01:13 - 2014-01-03 22:47 - 00000000 ____D C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP 2014-01-03 01:12 - 2014-01-03 01:12 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard 2014-01-03 00:59 - 2014-01-03 21:43 - 00000000 ____D C:\AdwCleaner 2013-12-31 16:19 - 2013-12-31 16:19 - 21202150 _____ C:\Documents and Settings\Bogdan\Pulpit\cureit.log 2013-12-31 14:25 - 2013-12-31 16:20 - 00065536 _____ C:\WINDOWS\system32\config\Doctor Web.evt 2013-12-31 14:25 - 2013-12-31 14:30 - 00000000 ____D C:\Documents and Settings\Bogdan\Doctor Web 2013-12-31 14:25 - 2013-12-31 14:25 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Doctor Web 2013-12-31 14:21 - 2014-01-04 12:38 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\genienext 2013-12-31 03:46 - 2010-05-26 09:45 - 00018816 ____N (Sophos Plc) C:\WINDOWS\system32\SAVRKBootTasks.sys 2013-12-31 01:06 - 2013-12-31 01:06 - 00515896 _____ C:\WINDOWS\system32\PerfStringBackup.TMP 2013-12-31 00:43 - 2013-12-31 00:43 - 00000000 ____D C:\Program Files\ESET 2013-12-31 00:15 - 2013-12-31 16:16 - 17248136 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe 2013-12-30 23:55 - 2013-12-30 23:55 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\WALKMAN Guide 2013-12-25 02:47 - 2013-12-30 23:57 - 00000000 ____D C:\Documents and Settings\Bogdan\Pulpit\Nowy folder 2013-12-25 01:57 - 2013-12-25 01:57 - 00001849 _____ C:\Documents and Settings\All Users\Pulpit\NWZ-B170 WALKMAN Guide.lnk 2013-12-25 01:56 - 2013-12-25 01:56 - 00000000 ____D C:\Program Files\Sony 2013-12-25 01:56 - 2013-12-25 01:56 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Sony Corporation 2013-12-23 02:19 - 2013-12-30 23:55 - 00000000 ____D C:\Documents and Settings\Bogdan\.gimp-2.8 2013-12-23 02:19 - 2013-12-23 02:19 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\gegl-0.2 2013-12-23 02:17 - 2013-12-30 23:55 - 00000000 ____D C:\Program Files\GIMP 2 2013-12-23 02:15 - 2014-01-01 11:34 - 00002984 _____ C:\Documents and Settings\Bogdan\daemonprocess.txt 2013-12-23 02:15 - 2013-12-31 14:21 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\cache 2013-12-23 02:15 - 2013-12-23 02:15 - 00000000 ____D C:\Documents and Settings\Bogdan\.android 2013-12-22 11:37 - 2014-01-04 00:39 - 15204352 _____ C:\Documents and Settings\Bogdan\ntuser.bak 2013-12-12 01:32 - 2013-12-12 01:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$ 2013-12-12 01:32 - 2013-12-12 01:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$ 2013-12-12 01:28 - 2013-12-12 01:28 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$ 2013-12-12 01:28 - 2013-12-12 01:28 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$ 2013-12-12 01:28 - 2013-12-12 01:28 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$ 2013-12-10 19:49 - 2013-12-30 18:58 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-10 19:27 - 2013-12-10 19:27 - 00001921 _____ C:\Documents and Settings\All Users\Pulpit\Google Earth.lnk 2013-12-10 19:27 - 2013-12-10 19:27 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Google Earth ==================== One Month Modified Files and Folders ======= 2014-01-04 17:08 - 2009-12-28 22:46 - 00000000 ____D C:\Documents and Settings\Bogdan\Moje dokumenty\Pobieranie 2014-01-04 17:07 - 2014-01-04 17:07 - 00000000 ____D C:\FRST 2014-01-04 16:23 - 2011-03-18 23:42 - 00001036 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-04 16:15 - 2012-04-06 20:20 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-01-04 15:23 - 2008-04-24 18:18 - 00032530 _____ C:\WINDOWS\SchedLgU.Txt 2014-01-04 12:47 - 2008-04-24 18:20 - 00000000 ___RD C:\Documents and Settings\Bogdan\Moje dokumenty 2014-01-04 12:43 - 2014-01-04 12:38 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\Mobogenie 2014-01-04 12:43 - 2014-01-03 21:54 - 00000000 ____D C:\Program Files\Mobogenie 2014-01-04 12:43 - 2008-04-24 18:20 - 00000000 ___RD C:\Documents and Settings\Bogdan\Menu Start\Programy 2014-01-04 12:43 - 2008-04-24 18:20 - 00000000 ____D C:\Documents and Settings\Bogdan\Pulpit 2014-01-04 12:38 - 2013-12-31 14:21 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\genienext 2014-01-04 12:38 - 2008-04-24 18:20 - 00000000 ___HD C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji 2014-01-04 12:16 - 2014-01-03 21:56 - 00000644 _____ C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job 2014-01-04 12:16 - 2012-07-09 00:49 - 00000366 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job 2014-01-04 12:16 - 2011-03-18 23:42 - 00001032 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-04 12:16 - 2006-03-02 13:00 - 00013646 ____C C:\WINDOWS\system32\wpa.dbl 2014-01-04 12:15 - 2008-04-24 18:15 - 01768491 ____C C:\WINDOWS\WindowsUpdate.log 2014-01-04 12:14 - 2009-01-29 23:15 - 00000159 ____C C:\WINDOWS\wiadebug.log 2014-01-04 12:14 - 2009-01-29 23:15 - 00000050 ____C C:\WINDOWS\wiaservc.log 2014-01-04 12:14 - 2008-04-24 18:18 - 00000006 ___HC C:\WINDOWS\Tasks\SA.DAT 2014-01-04 12:13 - 2009-01-29 23:15 - 00000000 ____C C:\WINDOWS\system32\Drivers\lvuvc.hs 2014-01-04 12:13 - 2009-01-29 23:15 - 00000000 ____C C:\WINDOWS\system32\Drivers\logiflt.iad 2014-01-04 02:29 - 2014-01-03 21:56 - 00065536 _____ C:\WINDOWS\system32\config\SpybotSD.evt 2014-01-04 02:29 - 2013-10-14 00:50 - 00379416 _____ C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat 2014-01-04 02:29 - 2008-04-24 18:18 - 00000000 ___HD C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji 2014-01-04 02:28 - 2008-04-24 18:20 - 00000292 __SHC C:\Documents and Settings\Bogdan\ntuser.ini 2014-01-04 01:19 - 2014-01-04 01:19 - 00018230 _____ C:\ComboFix.txt 2014-01-04 01:19 - 2014-01-03 19:31 - 00000000 ____D C:\Qoobox 2014-01-04 01:19 - 2009-02-06 21:43 - 00000000 ___HD C:\Documents and Settings\TEMP.BOGDAN-XP\Ustawienia lokalne 2014-01-04 01:19 - 2008-12-14 23:06 - 00000000 ___HD C:\Documents and Settings\TEMP\Ustawienia lokalne 2014-01-04 01:19 - 2008-11-20 12:45 - 00000000 ___HD C:\Documents and Settings\Administrator\Ustawienia lokalne 2014-01-04 01:19 - 2008-04-24 20:00 - 00000000 __RHD C:\Documents and Settings\Default User\Ustawienia lokalne 2014-01-04 01:19 - 2008-04-24 18:20 - 00000000 ___HD C:\Documents and Settings\Bogdan\Ustawienia lokalne 2014-01-04 01:19 - 2008-04-24 18:18 - 00000000 ___HD C:\Documents and Settings\NetworkService\Ustawienia lokalne 2014-01-04 01:19 - 2008-04-24 18:18 - 00000000 ___HD C:\Documents and Settings\LocalService\Ustawienia lokalne 2014-01-04 01:17 - 2006-03-02 13:00 - 00000227 _____ C:\WINDOWS\system.ini 2014-01-04 01:11 - 2008-04-24 18:20 - 00000000 __RHD C:\Documents and Settings\Bogdan\Dane aplikacji 2014-01-04 01:08 - 2014-01-04 01:07 - 05160001 ____R (Swearware) C:\Documents and Settings\Bogdan\Pulpit\ComboFix.exe 2014-01-04 00:49 - 2008-04-24 20:00 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2014-01-04 00:49 - 2008-04-24 20:00 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy 2014-01-04 00:39 - 2013-12-22 11:37 - 15204352 _____ C:\Documents and Settings\Bogdan\ntuser.bak 2014-01-04 00:39 - 2010-12-27 23:23 - 00237568 _____ C:\Documents and Settings\LocalService\ntuser.bak 2014-01-04 00:39 - 2008-04-24 19:47 - 00053248 _____ C:\WINDOWS\system32\config\SECURITY.bak 2014-01-04 00:39 - 2008-04-24 19:47 - 00024576 _____ C:\WINDOWS\system32\config\SAM.bak 2014-01-04 00:39 - 2008-04-24 19:46 - 55050240 _____ C:\WINDOWS\system32\config\software.bak 2014-01-04 00:39 - 2008-04-24 19:46 - 12582912 _____ C:\WINDOWS\system32\config\system.bak 2014-01-04 00:39 - 2008-04-24 19:46 - 04169728 _____ C:\WINDOWS\system32\config\default.bak 2014-01-04 00:39 - 2008-04-24 18:20 - 00000000 ____D C:\Documents and Settings\Bogdan 2014-01-04 00:39 - 2008-04-24 18:18 - 00233472 _____ C:\Documents and Settings\NetworkService\NTUSER.bak 2014-01-04 00:39 - 2008-04-24 18:18 - 00000000 __SHD C:\Documents and Settings\NetworkService 2014-01-04 00:39 - 2008-04-24 18:18 - 00000000 __SHD C:\Documents and Settings\LocalService 2014-01-04 00:28 - 2014-01-03 21:40 - 00040776 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2014-01-04 00:04 - 2008-11-22 22:05 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy 2014-01-03 23:40 - 2014-01-03 23:40 - 00000000 ____D C:\Documents and Settings\Bogdan\Moje dokumenty\ProcAlyzer Dumps 2014-01-03 23:40 - 2008-04-24 19:46 - 00000360 __RSH C:\boot.ini 2014-01-03 23:34 - 2014-01-03 21:56 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2 2014-01-03 23:32 - 2014-01-03 23:32 - 00001836 _____ C:\Documents and Settings\All Users\Pulpit\Spybot-S&D Start Center.lnk 2014-01-03 23:32 - 2014-01-03 23:32 - 00000616 _____ C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job 2014-01-03 23:32 - 2014-01-03 23:32 - 00000446 _____ C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job 2014-01-03 23:32 - 2014-01-03 23:32 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Spybot - Search & Destroy 2 2014-01-03 23:28 - 2008-11-20 12:45 - 00000188 __SHC C:\Documents and Settings\Administrator\ntuser.ini 2014-01-03 23:22 - 2014-01-03 23:22 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Macromedia 2014-01-03 23:22 - 2014-01-03 23:22 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Adobe 2014-01-03 23:22 - 2008-11-20 12:45 - 00000000 __RHD C:\Documents and Settings\Administrator\Dane aplikacji 2014-01-03 22:47 - 2014-01-03 01:13 - 00000000 ____D C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP 2014-01-03 22:09 - 2014-01-03 22:08 - 00000079 _____ C:\WINDOWS\wininit.ini 2014-01-03 21:45 - 2014-01-03 21:45 - 00001617 _____ C:\Documents and Settings\Bogdan\Pulpit\AdwCleaner[S1].txt 2014-01-03 21:43 - 2014-01-03 00:59 - 00000000 ____D C:\AdwCleaner 2014-01-03 21:37 - 2010-12-17 01:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2443105$ 2014-01-03 20:12 - 2014-01-03 20:11 - 00005557 _____ C:\WINDOWS\setupapi.log 2014-01-03 19:41 - 2014-01-03 19:30 - 00000000 ____D C:\WINDOWS\erdnt 2014-01-03 19:40 - 2008-04-24 20:00 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2014-01-03 19:34 - 2014-01-03 19:34 - 00000000 _RSHD C:\cmdcons 2014-01-03 01:12 - 2014-01-03 01:12 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard 2014-01-01 11:34 - 2013-12-23 02:15 - 00002984 _____ C:\Documents and Settings\Bogdan\daemonprocess.txt 2013-12-31 16:20 - 2013-12-31 14:25 - 00065536 _____ C:\WINDOWS\system32\config\Doctor Web.evt 2013-12-31 16:19 - 2013-12-31 16:19 - 21202150 _____ C:\Documents and Settings\Bogdan\Pulpit\cureit.log 2013-12-31 16:16 - 2013-12-31 00:15 - 17248136 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe 2013-12-31 14:30 - 2013-12-31 14:25 - 00000000 ____D C:\Documents and Settings\Bogdan\Doctor Web 2013-12-31 14:25 - 2013-12-31 14:25 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Doctor Web 2013-12-31 14:21 - 2013-12-23 02:15 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\cache 2013-12-31 12:55 - 2008-04-27 15:08 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\Adobe 2013-12-31 04:15 - 2010-05-30 16:24 - 00000000 ____D C:\Program Files\Premium Booster 2013-12-31 04:11 - 2008-06-13 20:58 - 00000000 ____D C:\Documents and Settings\Bogdan\Dane aplikacji\uTorrent 2013-12-31 01:45 - 2009-01-30 21:56 - 00000000 ____D C:\Documents and Settings\Bogdan\Dane aplikacji\Skype 2013-12-31 01:40 - 2011-12-24 20:41 - 00002267 _____ C:\Documents and Settings\All Users\Pulpit\Skype.lnk 2013-12-31 01:06 - 2013-12-31 01:06 - 00515896 _____ C:\WINDOWS\system32\PerfStringBackup.TMP 2013-12-31 01:06 - 2012-03-01 19:20 - 00519864 _____ C:\WINDOWS\system32\prfh0415.dat 2013-12-31 01:06 - 2012-03-01 19:20 - 00096354 _____ C:\WINDOWS\system32\prfc0415.dat 2013-12-31 01:06 - 2006-03-02 13:00 - 00571966 ____C C:\WINDOWS\system32\perfh015.dat 2013-12-31 01:06 - 2006-03-02 13:00 - 00123080 ____C C:\WINDOWS\system32\perfc015.dat 2013-12-31 00:43 - 2013-12-31 00:43 - 00000000 ____D C:\Program Files\ESET 2013-12-30 23:58 - 2013-10-15 20:58 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Szkola podstawowa klasa 6 2013-12-30 23:58 - 2013-07-15 20:42 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\NetScream 2013-12-30 23:58 - 2008-04-24 20:00 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start 2013-12-30 23:57 - 2013-12-25 02:47 - 00000000 ____D C:\Documents and Settings\Bogdan\Pulpit\Nowy folder 2013-12-30 23:55 - 2013-12-30 23:55 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\WALKMAN Guide 2013-12-30 23:55 - 2013-12-23 02:19 - 00000000 ____D C:\Documents and Settings\Bogdan\.gimp-2.8 2013-12-30 23:55 - 2013-12-23 02:17 - 00000000 ____D C:\Program Files\GIMP 2 2013-12-30 23:55 - 2008-05-01 16:40 - 00000000 ____D C:\Program Files\CeRegEditor 2013-12-30 23:48 - 2009-01-30 20:11 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\Downloaded Installations 2013-12-30 20:39 - 2013-03-16 19:04 - 00180248 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys 2013-12-30 20:39 - 2013-03-16 19:04 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2013-12-30 20:39 - 2012-03-31 00:25 - 00775952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2013-12-30 20:39 - 2012-03-31 00:25 - 00410528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2013-12-30 20:39 - 2012-03-31 00:25 - 00270240 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2013-12-30 20:39 - 2012-03-31 00:25 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys 2013-12-30 20:39 - 2012-03-31 00:25 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys 2013-12-30 20:39 - 2012-03-31 00:25 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2013-12-30 20:39 - 2012-03-31 00:11 - 00001744 _____ C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk 2013-12-30 18:58 - 2013-12-10 19:49 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-30 01:20 - 2011-07-16 00:08 - 00000000 ____D C:\Documents and Settings\Bogdan\Dane aplikacji\vlc 2013-12-30 01:11 - 2009-01-23 19:51 - 00000000 ____D C:\Documents and Settings\Bogdan\Moje dokumenty\Telefon 2013-12-29 02:20 - 2009-01-06 23:58 - 00004887 ____C C:\Documents and Settings\Bogdan\Moje dokumenty\Nowy Dok.txt 2013-12-26 02:43 - 2008-04-24 19:49 - 01238454 ____C C:\WINDOWS\system32\PerfStringBackup.INI 2013-12-26 01:52 - 2009-11-13 21:07 - 00001254 _____ C:\Documents and Settings\Bogdan\Moje dokumenty\Dane.txt 2013-12-25 02:17 - 2013-07-11 14:09 - 00000719 _____ C:\Documents and Settings\All Users\Pulpit\VLC media player.lnk 2013-12-25 02:06 - 2008-04-27 22:26 - 00002203 _____ C:\Documents and Settings\Bogdan\Pulpit\Microsoft ActiveSync.lnk 2013-12-25 01:57 - 2013-12-25 01:57 - 00001849 _____ C:\Documents and Settings\All Users\Pulpit\NWZ-B170 WALKMAN Guide.lnk 2013-12-25 01:56 - 2013-12-25 01:56 - 00000000 ____D C:\Program Files\Sony 2013-12-25 01:56 - 2013-12-25 01:56 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Sony Corporation 2013-12-24 16:53 - 2008-11-20 12:45 - 00000000 ____D C:\Documents and Settings\Administrator 2013-12-24 16:53 - 2008-04-24 18:14 - 00000000 ____D C:\WINDOWS\Registration 2013-12-23 02:26 - 2008-09-28 20:14 - 00000000 ____D C:\Documents and Settings\Bogdan\Moje dokumenty\PRACA 2013-12-23 02:19 - 2013-12-23 02:19 - 00000000 ____D C:\Documents and Settings\Bogdan\Ustawienia lokalne\Dane aplikacji\gegl-0.2 2013-12-23 02:15 - 2013-12-23 02:15 - 00000000 ____D C:\Documents and Settings\Bogdan\.android 2013-12-19 20:07 - 2013-07-01 22:51 - 00002515 _____ C:\Documents and Settings\Bogdan\Pulpit\Microsoft Office Excel 2007.lnk 2013-12-15 22:43 - 2008-04-30 17:47 - 00000069 ____C C:\WINDOWS\NeroDigital.ini 2013-12-14 22:46 - 2008-04-24 18:20 - 00000000 ___RD C:\Documents and Settings\Bogdan\Moje dokumenty\Moje obrazy 2013-12-14 21:40 - 2008-05-09 18:22 - 00000000 ___RD C:\Documents and Settings\Bogdan\Moje dokumenty\Moje wideo 2013-12-14 21:35 - 2008-04-24 18:20 - 00000000 ___RD C:\Documents and Settings\Bogdan\Moje dokumenty\Moja muzyka 2013-12-14 21:29 - 2011-06-26 16:22 - 00000000 ____D C:\Documents and Settings\Bogdan\Moje dokumenty\Skanowanie 2013-12-12 19:55 - 2012-10-30 00:37 - 00000000 ____D C:\Documents and Settings\Bogdan\Moje dokumenty\Ewelinka 2013-12-12 17:53 - 2008-04-24 19:47 - 00388792 ____C C:\WINDOWS\system32\FNTCACHE.DAT 2013-12-12 01:33 - 2008-09-28 21:20 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help 2013-12-12 01:32 - 2013-12-12 01:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$ 2013-12-12 01:32 - 2013-12-12 01:32 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$ 2013-12-12 01:31 - 2013-08-15 02:08 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-12-12 01:29 - 2008-04-25 21:00 - 88123800 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-12-12 01:28 - 2013-12-12 01:28 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$ 2013-12-12 01:28 - 2013-12-12 01:28 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$ 2013-12-12 01:28 - 2013-12-12 01:28 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$ 2013-12-12 01:26 - 2008-04-26 23:32 - 00000000 ____D C:\WINDOWS\ie7updates 2013-12-12 01:26 - 2008-04-25 21:07 - 00000000 ____D C:\WINDOWS\system32\pl-pl 2013-12-11 20:01 - 2012-05-16 00:15 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-12-10 21:15 - 2012-04-06 20:20 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-12-10 21:15 - 2011-05-16 08:59 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-12-10 19:27 - 2013-12-10 19:27 - 00001921 _____ C:\Documents and Settings\All Users\Pulpit\Google Earth.lnk 2013-12-10 19:27 - 2013-12-10 19:27 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Google Earth ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2006-03-02 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2006-03-02 13:00] - [2008-04-14 21:50] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0026624 ___AC (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\rpcss.dll [2006-03-02 13:00] - [2009-02-09 11:53] - 0401408 ____A (Microsoft Corporation) a37311d9d628c1042a2836731787f0f3 C:\Windows\System32\Drivers\volsnap.sys [2006-03-02 13:00] - [2008-04-14 20:31] - 0052864 ___AC (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================