Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 12-02-2014 01 Ran by Komp (administrator) on MALINECZKA on 13-02-2014 13:48:11 Running from C:\Users\Komp\Desktop Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Microsoft Corporation) C:\Windows\system32\SLsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe () C:\Program Files\OrangeBusinessServices\Manager polaczen\{ad30a369-08e3-414c-9d2c-7f47dbe748da}\BEWConfigSrv.exe (NewTech Infosystems, Inc.) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe () C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe () C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE (Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe () C:\Acer\Mobility Center\MobilityService.exe (EgisTec Inc.) C:\Program Files\EgisTec\MyWinLocker 3\x86\MWLService.exe (NewTech InfoSystems, Inc.) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe () C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe () C:\Windows\system32\PSIService.exe () C:\Program Files\Cyberlink\Shared files\RichVideo.exe (Tablet Driver) C:\Windows\System32\Drivers\WTSRV.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe () C:\Windows\PLFSetI.exe () C:\Program Files\Bamboo Dock\BambooCore.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Electronic Arts) C:\Program Files\Electronic Arts\EADM\Core.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Realtek Semiconductor Corp.) C:\Users\Komp\AppData\Local\Temp\RtkBtMnt.exe (Microsoft Corporation) C:\Windows\system32\wuauclt.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [6609440 2008-10-31] (Realtek Semiconductor) HKLM\...\Run: [Acer ePower Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [690720 2008-12-18] (Acer Incorporated) HKLM\...\Run: [PLFSetI] - C:\Windows\PLFSetI.exe [200704 2008-06-30] () HKLM\...\Run: [Skytel] - C:\Program Files\Realtek\Audio\HDA\Skytel.exe [1833504 2008-10-31] (Realtek Semiconductor Corp.) HKLM\...\Run: [WTClient] - C:\Windows\system32\WTClient.exe [32768 2009-08-19] (Tablet Driver) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [ACPW05EN] - C:\Program Files\ACD Systems\ACDSee Pro\5.0\ACDSeeProInTouch2.exe [822384 2011-11-16] (ACD Systems) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [946352 2012-12-03] (Adobe Systems Incorporated) HKLM\...\Run: [CanonSolutionMenu] - C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [689488 2008-03-11] (CANON INC.) HKLM\...\Run: [Start_BusinessEverywhere_{ad30a369-08e3-414c-9d2c-7f47dbe748da}] - C:\Program Files\OrangeBusinessServices\Manager polaczen\{ad30a369-08e3-414c-9d2c-7f47dbe748da}\BusinessEverywhere.exe [3363808 2012-06-06] () HKLM\...\Run: [Start_SMSNotifier_{ad30a369-08e3-414c-9d2c-7f47dbe748da}] - C:\Program Files\OrangeBusinessServices\Manager polaczen\{ad30a369-08e3-414c-9d2c-7f47dbe748da}\SMSNotifier.exe [1359824 2012-06-06] () HKLM\...\Run: [BambooCore] - C:\Program Files\Bamboo Dock\BambooCore.exe [646744 2012-10-16] () HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-09-27] (Apple Inc.) HKLM\...\Run: [SwitchBoard] - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM\...\Run: [AdobeCS6ServiceManager] - C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [GrooveMonitor] - C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\Run: [EA Core] - C:\Program Files\Electronic Arts\EADM\Core.exe [3325952 2009-03-28] (Electronic Arts) HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\Run: [Steam] - C:\Program Files\Steam\Steam.exe [1815464 2014-01-07] (Valve Corporation) HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3514176 2011-11-10] (DT Soft Ltd) HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation) HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\MountPoints2: {53a1ef7a-2834-11e2-a49e-00235a522e91} - F:\start.exe HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\MountPoints2: {6488b8ad-a911-11e2-b5d2-00235a522e91} - F:\Setup.exe HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\MountPoints2: {c5de23f3-28db-11e1-88ca-00235a522e91} - G:\setup.exe HKU\S-1-5-21-859098361-1263673785-183622165-1000\...\MountPoints2: {eb22fe3a-7e70-11e2-80c1-00235a522e91} - F:\Setup.exe HKU\S-1-5-21-859098361-1263673785-183622165-1002\...\Run: [WindowsWelcomeCenter] - rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-21-859098361-1263673785-183622165-1002\...\Run: [ProductReg] - C:\Program Files\Acer\WR_PopUp\ProductReg.exe [135168 2008-11-17] (Acer) HKU\S-1-5-21-859098361-1263673785-183622165-1002\...\RunOnce: [AcerScrSav] - C:\Windows\Acer\run_NB.exe [24576 2007-08-21] () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://global.acer.com SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Pomocnik rejestracji usługi Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.415.1646\swg.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll (Google Inc.) DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} http://catalog.update.microsoft.com/v7/site/ClientControl/en/x86/MuCatalogWebControl.cab?1388850224796 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_21-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Chrome: ======= CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Komp\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.1.376\_platform_specific\win_x86\widevinecdmadapter.dll No File CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\32.0.1700.107\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Extension: (Dokumenty Google) - C:\Users\Komp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-03-03] CHR Extension: (Dysk Google) - C:\Users\Komp\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-03] CHR Extension: (YouTube) - C:\Users\Komp\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-03] CHR Extension: (Szukaj w Google) - C:\Users\Komp\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-03] CHR Extension: (Google Wallet) - C:\Users\Komp\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-13] CHR Extension: (Gmail) - C:\Users\Komp\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-03] ========================== Services (Whitelisted) ================= R2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 BEWConfigSrv; C:\Program Files\OrangeBusinessServices\Manager polaczen\{ad30a369-08e3-414c-9d2c-7f47dbe748da}\BEWConfigSrv.exe [173008 2012-06-06] () R2 CLHNService; C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe [69632 2008-10-04] () R2 ePowerSvc; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [653856 2008-12-18] (Acer Incorporated) S3 GoogleDesktopManager-092308-165331; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192 2009-02-05] (Google) R2 IJPLMSVC; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [103808 2008-01-22] () R2 MobilityService; C:\Acer\Mobility Center\MobilityService.exe [110592 2007-12-06] () R2 MWLService; C:\Program Files\EgisTec\MyWinLocker 3\x86\\MWLService.exe [306736 2008-10-27] (EgisTec Inc.) R2 NTISchedulerSvc; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [131072 2008-04-25] () R2 ProtexisLicensing; C:\Windows\system32\PSIService.exe [177704 2007-06-05] () R2 RichVideo; C:\Program Files\Cyberlink\Shared files\RichVideo.exe [272024 2007-01-09] () R2 WinTabService; C:\Windows\System32\Drivers\WTSRV.EXE [73728 2009-09-23] (Tablet Driver) R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [526208 2012-11-14] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== S3 athur; C:\Windows\System32\DRIVERS\athur.sys [1387008 2010-01-05] (Atheros Communications, Inc.) R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [120600 2013-11-05] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [209176 2013-11-04] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147768 2013-10-24] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22840 2013-09-17] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [176952 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [222520 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [102712 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27448 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [193848 2013-08-01] (AVG Technologies CZ, s.r.o.) R1 DritekPortIO; C:\Program Files\Launch Manager\DPortIO.sys [20112 2006-11-02] (Dritek System Inc.) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [239168 2011-12-17] (DT Soft Ltd) S3 hidkmdf; C:\Windows\System32\DRIVERS\hidkmdf.sys [11680 2012-10-12] (Windows (R) Win 7 DDK provider) S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [89856 2012-06-06] (Huawei Technologies Co., Ltd.) S3 huawei_cdcecm; C:\Windows\System32\DRIVERS\ew_jucdcecm.sys [66688 2012-06-06] (Huawei Technologies Co., Ltd.) S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [26624 2012-06-06] (Huawei Technologies Co., Ltd.) R2 mwlPSDFilter; C:\Windows\System32\DRIVERS\mwlPSDFilter.sys [19504 2008-10-09] (Egis Incorporated.) R2 mwlPSDNServ; C:\Windows\System32\DRIVERS\mwlPSDNServ.sys [16432 2008-10-09] (Egis Incorporated.) R2 mwlPSDVDisk; C:\Windows\System32\DRIVERS\mwlPSDVDisk.sys [59952 2008-10-09] (Egis Incorporated.) R3 PTSimBus; C:\Windows\System32\DRIVERS\PTSimBus.sys [18944 2007-06-07] (PenTablet Driver) S3 PTSimHid; C:\Windows\System32\DRIVERS\PTSimHid.sys [10752 2007-04-23] (PenTablet Driver) S3 TClass2k; C:\Windows\System32\Drivers\TClass2k.sys [18432 2007-04-23] (Tablet Driver) S3 UCTblHid; C:\Windows\System32\Drivers\UCTblHid.sys [14848 2008-09-08] (Tablet Driver) S3 WacHidRouter; C:\Windows\System32\DRIVERS\wachidrouter.sys [69024 2012-10-12] (Wacom Technology) S3 wacomrouterfilter; C:\Windows\System32\DRIVERS\wacomrouterfilter.sys [13728 2012-10-12] (Wacom Technology) S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] S3 Tablet2k; "%SystemRoot%\System32\Drivers\Tablet2k.sys" [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-13 13:48 - 2014-02-13 13:48 - 00017687 _____ () C:\Users\Komp\Desktop\FRST.txt 2014-02-13 13:48 - 2014-02-13 13:48 - 00000000 ____D () C:\Users\Komp\Desktop\FRST-OlderVersion 2014-02-12 20:33 - 2014-02-12 20:33 - 00000000 ____D () C:\Users\Komp\AppData\Roaming\Mozilla 2014-02-12 16:51 - 2014-02-12 16:51 - 00448512 _____ (OldTimer Tools) C:\Users\Komp\Desktop\TFC.exe 2014-02-12 16:13 - 2014-02-12 16:13 - 00000000 ____D () C:\Users\Komp\Nowy folder 2014-02-12 14:46 - 2014-02-12 14:46 - 00032397 _____ () C:\Users\Komp\Downloads\Addition.txt 2014-02-12 14:44 - 2014-02-13 13:48 - 00000000 ____D () C:\FRST 2014-02-12 14:44 - 2014-02-12 14:46 - 00060932 _____ () C:\Users\Komp\Downloads\FRST.txt 2014-02-12 09:36 - 2014-02-02 21:10 - 11111424 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 06019584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 02005504 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 01469440 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-12 09:36 - 2014-02-02 21:10 - 01213440 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00916992 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00630272 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-12 09:36 - 2014-02-02 21:10 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\corpol.dll 2014-02-12 09:36 - 2014-02-01 23:54 - 00385024 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-02-12 09:36 - 2014-02-01 23:47 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-12 09:36 - 2014-02-01 23:47 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-12 09:36 - 2014-02-01 23:46 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-12 09:36 - 2014-02-01 23:46 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-02-12 09:35 - 2013-12-22 16:42 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-12 09:35 - 2013-12-05 03:12 - 01248768 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-11 23:36 - 2014-02-11 23:36 - 00095818 _____ () C:\Users\Komp\Downloads\Extras.Txt 2014-02-11 23:34 - 2014-02-11 23:34 - 00196824 _____ () C:\Users\Komp\Downloads\OTL.Txt 2014-02-11 23:15 - 2014-02-13 13:48 - 01141248 _____ (Farbar) C:\Users\Komp\Desktop\FRST.exe 2014-02-11 22:50 - 2014-02-11 22:50 - 00602112 _____ (OldTimer Tools) C:\Users\Komp\Downloads\OTL.exe 2014-02-11 22:43 - 2014-02-12 16:41 - 00000000 ____D () C:\AdwCleaner 2014-02-11 22:42 - 2014-02-11 22:43 - 01166132 _____ () C:\Users\Komp\Downloads\AdwCleaner.exe 2014-02-11 11:22 - 2014-02-11 11:22 - 10067597 _____ () C:\Users\Komp\Downloads\Switchbotv3.1.7z 2014-02-11 11:19 - 2014-02-11 11:20 - 09247510 _____ () C:\Users\Komp\Downloads\BS+na+Ventris.pl (1).7z 2014-02-10 18:07 - 2014-02-13 13:05 - 00000000 ____D () C:\Users\Komp\Desktop\Nowy folder (2) 2014-02-10 13:59 - 2014-02-10 14:00 - 37057094 _____ () C:\Users\Komp\Downloads\Prism Art Studio.rar 2014-02-10 13:59 - 2014-02-10 13:59 - 00018748 _____ () C:\Users\Komp\Downloads\Fix for prism art studio.rar 2014-02-08 21:42 - 2014-02-08 21:52 - 698971403 _____ () C:\Users\Komp\Downloads\Helium2 (1).rar 2014-02-08 15:12 - 2014-02-08 15:12 - 09247510 _____ () C:\Users\Komp\Downloads\BS+na+Ventris.pl.7z 2014-02-06 10:39 - 2014-02-06 10:39 - 00049167 _____ () C:\Users\Komp\Downloads\elven.zip 2014-02-05 10:59 - 2014-02-05 10:59 - 00001735 _____ () C:\Users\Public\Desktop\AION Free-to-Play.lnk 2014-02-05 10:56 - 2014-02-05 10:56 - 20435800 _____ (Gameforge ) C:\Users\Komp\Downloads\AION_GameforgeLiveSetup.exe 2014-01-29 19:26 - 2014-01-29 20:31 - 00000000 ____D () C:\Users\Komp\Desktop\Nowy folder 2014-01-26 13:31 - 2014-01-26 13:56 - 00001712 ____H () C:\Users\Tata\Documents\Default.rdp 2014-01-26 13:23 - 2014-01-26 13:23 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\Wacom 2014-01-26 13:23 - 2014-01-26 13:23 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\AVG2014 2014-01-26 13:23 - 2014-01-26 13:23 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\Apple Computer 2014-01-26 13:23 - 2014-01-26 13:23 - 00000000 ____D () C:\Users\Tata\AppData\Local\Orange 2014-01-26 13:22 - 2014-01-26 13:22 - 00001981 _____ () C:\Users\Tata\Desktop\Google Chrome.lnk 2014-01-26 13:22 - 2014-01-26 13:22 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\WTablet 2014-01-26 13:22 - 2014-01-26 13:22 - 00000000 ____D () C:\Users\Tata\AppData\Local\Avg2014 2014-01-21 19:47 - 2014-01-21 19:47 - 12943872 _____ () C:\Users\Komp\Downloads\zagospodarowanie.ppt 2014-01-21 19:47 - 2014-01-21 19:47 - 00034273 _____ () C:\Users\Komp\Downloads\200906100839506._PW_PLAC_BUDOWY.zip 2014-01-20 20:45 - 2014-01-20 20:45 - 00013635 _____ () C:\Users\Komp\Downloads\[kickass.to]pushing.daisies.complete.seasons.1.2.torrent 2014-01-20 20:44 - 2014-01-20 20:44 - 00017850 _____ () C:\Users\Komp\Downloads\[kickass.to]pushing.daises.season.1.complete.subs.esp.lat.wallpapers.for.dvd.r.menu.torrent 2014-01-17 19:23 - 2014-01-17 19:23 - 00018705 _____ () C:\Users\Komp\Downloads\[kickass.to]the.fall.2006.1080p.bdrip.aac.x264.multisubs.tomcat12.torrent 2014-01-17 18:39 - 2014-01-17 18:39 - 00035519 _____ () C:\Users\Komp\Downloads\[kickass.to]the.fall.2006.brrip.720p.x264.aac.ameet6233.torrent ==================== One Month Modified Files and Folders ======= 2014-02-13 13:48 - 2014-02-13 13:48 - 00017687 _____ () C:\Users\Komp\Desktop\FRST.txt 2014-02-13 13:48 - 2014-02-13 13:48 - 00000000 ____D () C:\Users\Komp\Desktop\FRST-OlderVersion 2014-02-13 13:48 - 2014-02-12 14:44 - 00000000 ____D () C:\FRST 2014-02-13 13:48 - 2014-02-11 23:15 - 01141248 _____ (Farbar) C:\Users\Komp\Desktop\FRST.exe 2014-02-13 13:48 - 2011-10-11 17:40 - 01189351 _____ () C:\Windows\WindowsUpdate.log 2014-02-13 13:46 - 2013-01-27 18:54 - 00000000 ____D () C:\Program Files\Steam 2014-02-13 13:45 - 2012-03-18 14:11 - 00000000 ____D () C:\Users\Komp\AppData\Roaming\Skype 2014-02-13 13:45 - 2011-12-07 16:55 - 00000000 ____D () C:\Users\Komp\AppData\Local\Adobe 2014-02-13 13:44 - 2013-03-03 19:26 - 00001028 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-13 13:42 - 2009-02-05 19:15 - 00000147 _____ () C:\Windows\system32\agent.log 2014-02-13 13:42 - 2006-11-02 14:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-13 13:42 - 2006-11-02 13:47 - 00003216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-13 13:42 - 2006-11-02 13:47 - 00003216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-13 13:06 - 2006-11-02 14:01 - 00032546 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-02-13 13:05 - 2014-02-10 18:07 - 00000000 ____D () C:\Users\Komp\Desktop\Nowy folder (2) 2014-02-13 12:24 - 2012-09-01 16:28 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-13 12:15 - 2013-03-03 19:26 - 00001032 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-13 10:56 - 2006-11-02 12:18 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-02-13 10:27 - 2011-12-04 12:58 - 00000000 ____D () C:\ProgramData\MFAData 2014-02-13 03:13 - 2008-01-21 07:24 - 01517744 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-13 03:13 - 2008-01-21 07:24 - 00672390 _____ () C:\Windows\system32\perfh015.dat 2014-02-13 03:13 - 2008-01-21 07:24 - 00130766 _____ () C:\Windows\system32\perfc015.dat 2014-02-13 03:10 - 2013-08-01 14:08 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-13 03:06 - 2006-11-02 11:24 - 85946576 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2014-02-12 22:18 - 2013-06-19 19:41 - 00000000 ____D () C:\Users\Komp\AppData\Roaming\GG 2014-02-12 20:33 - 2014-02-12 20:33 - 00000000 ____D () C:\Users\Komp\AppData\Roaming\Mozilla 2014-02-12 16:51 - 2014-02-12 16:51 - 00448512 _____ (OldTimer Tools) C:\Users\Komp\Desktop\TFC.exe 2014-02-12 16:49 - 2012-03-07 17:26 - 00003664 _____ () C:\Windows\wininit.ini 2014-02-12 16:41 - 2014-02-11 22:43 - 00000000 ____D () C:\AdwCleaner 2014-02-12 16:13 - 2014-02-12 16:13 - 00000000 ____D () C:\Users\Komp\Nowy folder 2014-02-12 16:13 - 2011-10-11 17:42 - 00000000 ____D () C:\Users\Komp 2014-02-12 14:46 - 2014-02-12 14:46 - 00032397 _____ () C:\Users\Komp\Downloads\Addition.txt 2014-02-12 14:46 - 2014-02-12 14:44 - 00060932 _____ () C:\Users\Komp\Downloads\FRST.txt 2014-02-11 23:36 - 2014-02-11 23:36 - 00095818 _____ () C:\Users\Komp\Downloads\Extras.Txt 2014-02-11 23:34 - 2014-02-11 23:34 - 00196824 _____ () C:\Users\Komp\Downloads\OTL.Txt 2014-02-11 22:50 - 2014-02-11 22:50 - 00602112 _____ (OldTimer Tools) C:\Users\Komp\Downloads\OTL.exe 2014-02-11 22:43 - 2014-02-11 22:42 - 01166132 _____ () C:\Users\Komp\Downloads\AdwCleaner.exe 2014-02-11 11:22 - 2014-02-11 11:22 - 10067597 _____ () C:\Users\Komp\Downloads\Switchbotv3.1.7z 2014-02-11 11:20 - 2014-02-11 11:19 - 09247510 _____ () C:\Users\Komp\Downloads\BS+na+Ventris.pl (1).7z 2014-02-10 14:00 - 2014-02-10 13:59 - 37057094 _____ () C:\Users\Komp\Downloads\Prism Art Studio.rar 2014-02-10 13:59 - 2014-02-10 13:59 - 00018748 _____ () C:\Users\Komp\Downloads\Fix for prism art studio.rar 2014-02-09 18:10 - 2011-12-02 20:23 - 00076288 _____ () C:\Users\Komp\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-02-08 21:52 - 2014-02-08 21:42 - 698971403 _____ () C:\Users\Komp\Downloads\Helium2 (1).rar 2014-02-08 20:28 - 2013-05-29 23:49 - 00000000 ____D () C:\Users\Komp\AppData\Roaming\TS3Client 2014-02-08 15:12 - 2014-02-08 15:12 - 09247510 _____ () C:\Users\Komp\Downloads\BS+na+Ventris.pl.7z 2014-02-08 14:52 - 2011-10-11 17:42 - 00000680 _____ () C:\Users\Komp\AppData\Local\d3d9caps.dat 2014-02-06 20:12 - 2011-10-11 17:45 - 00118136 _____ () C:\Users\Komp\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-06 20:07 - 2006-11-02 13:47 - 03826200 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-02-06 20:06 - 2012-10-23 17:06 - 00052476 _____ () C:\Windows\PFRO.log 2014-02-06 10:39 - 2014-02-06 10:39 - 00049167 _____ () C:\Users\Komp\Downloads\elven.zip 2014-02-05 10:59 - 2014-02-05 10:59 - 00001735 _____ () C:\Users\Public\Desktop\AION Free-to-Play.lnk 2014-02-05 10:57 - 2013-08-05 16:17 - 00000000 ____D () C:\Users\Komp\Documents\Gameforge Live 2014-02-05 10:56 - 2014-02-05 10:56 - 20435800 _____ (Gameforge ) C:\Users\Komp\Downloads\AION_GameforgeLiveSetup.exe 2014-02-05 10:56 - 2013-08-05 16:17 - 00000000 ____D () C:\Program Files\GameforgeLive 2014-02-05 10:24 - 2012-09-01 16:28 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-02-05 10:24 - 2011-12-03 16:01 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-02-02 21:10 - 2014-02-12 09:36 - 11111424 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 06019584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 02005504 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 01469440 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-02 21:10 - 2014-02-12 09:36 - 01213440 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00916992 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00630272 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\mstime.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-02 21:10 - 2014-02-12 09:36 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\corpol.dll 2014-02-01 23:54 - 2014-02-12 09:36 - 00385024 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-02-01 23:47 - 2014-02-12 09:36 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-01 23:47 - 2014-02-12 09:36 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-01 23:46 - 2014-02-12 09:36 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-01 23:46 - 2014-02-12 09:36 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-01-29 20:31 - 2014-01-29 19:26 - 00000000 ____D () C:\Users\Komp\Desktop\Nowy folder 2014-01-26 13:56 - 2014-01-26 13:31 - 00001712 ____H () C:\Users\Tata\Documents\Default.rdp 2014-01-26 13:23 - 2014-01-26 13:23 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\Wacom 2014-01-26 13:23 - 2014-01-26 13:23 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\AVG2014 2014-01-26 13:23 - 2014-01-26 13:23 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\Apple Computer 2014-01-26 13:23 - 2014-01-26 13:23 - 00000000 ____D () C:\Users\Tata\AppData\Local\Orange 2014-01-26 13:23 - 2013-03-04 21:52 - 00000000 ____D () C:\ProgramData\CanonIJPLM 2014-01-26 13:23 - 2011-12-26 22:11 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\Adobe 2014-01-26 13:23 - 2011-12-03 09:55 - 00111760 _____ () C:\Users\Tata\AppData\Local\GDIPFONTCACHEV1.DAT 2014-01-26 13:22 - 2014-01-26 13:22 - 00001981 _____ () C:\Users\Tata\Desktop\Google Chrome.lnk 2014-01-26 13:22 - 2014-01-26 13:22 - 00000000 ____D () C:\Users\Tata\AppData\Roaming\WTablet 2014-01-26 13:22 - 2014-01-26 13:22 - 00000000 ____D () C:\Users\Tata\AppData\Local\Avg2014 2014-01-25 21:20 - 2012-07-03 08:10 - 00000000 ____D () C:\Users\Komp\AppData\Roaming\uTorrent 2014-01-21 19:47 - 2014-01-21 19:47 - 12943872 _____ () C:\Users\Komp\Downloads\zagospodarowanie.ppt 2014-01-21 19:47 - 2014-01-21 19:47 - 00034273 _____ () C:\Users\Komp\Downloads\200906100839506._PW_PLAC_BUDOWY.zip 2014-01-20 20:45 - 2014-01-20 20:45 - 00013635 _____ () C:\Users\Komp\Downloads\[kickass.to]pushing.daisies.complete.seasons.1.2.torrent 2014-01-20 20:44 - 2014-01-20 20:44 - 00017850 _____ () C:\Users\Komp\Downloads\[kickass.to]pushing.daises.season.1.complete.subs.esp.lat.wallpapers.for.dvd.r.menu.torrent 2014-01-18 00:32 - 2013-01-27 18:55 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-01-17 19:23 - 2014-01-17 19:23 - 00018705 _____ () C:\Users\Komp\Downloads\[kickass.to]the.fall.2006.1080p.bdrip.aac.x264.multisubs.tomcat12.torrent 2014-01-17 19:23 - 2011-12-02 20:27 - 00000000 ____D () C:\Users\Komp\AppData\Roaming\vlc 2014-01-17 18:39 - 2014-01-17 18:39 - 00035519 _____ () C:\Users\Komp\Downloads\[kickass.to]the.fall.2006.brrip.720p.x264.aac.ameet6233.torrent 2014-01-17 17:47 - 2009-02-05 17:57 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-01-16 20:23 - 2013-12-22 18:34 - 00000000 ____D () C:\ProgramData\PoroShOpuperr 2014-01-16 20:23 - 2013-12-22 18:34 - 00000000 ____D () C:\ProgramData\DOownlooaditkeep 2014-01-14 18:03 - 2006-11-02 12:18 - 00000000 ____D () C:\Program Files\Common Files\System 2014-01-14 18:03 - 2006-11-02 11:23 - 00000219 _____ () C:\Windows\win.ini Files to move or delete: ==================== C:\Users\Komp\AppData\Roaming\CamLayout.ini C:\Users\Komp\AppData\Roaming\CamShapes.ini Some content of TEMP: ==================== C:\Users\Komp\AppData\Local\Temp\RtkBtMnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-13 13:14 ==================== End Of Log ============================