OTL logfile created on: 2014-02-23 11:03:25 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = D:\Narzedzia\OTL Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,01 Gb Available Physical Memory | 66,94% Memory free 4,34 Gb Paging File | 3,47 Gb Available in Paging File | 79,87% Paging File free Paging file location(s): C:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 14,65 Gb Total Space | 6,22 Gb Free Space | 42,45% Space Free | Partition Type: NTFS Drive D: | 59,87 Gb Total Space | 2,82 Gb Free Space | 4,71% Space Free | Partition Type: NTFS Drive H: | 14,55 Gb Total Space | 3,38 Gb Free Space | 23,20% Space Free | Partition Type: FAT32 Computer Name: GS | User Name: Greg | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-02-23 10:45:11 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Narzedzia\OTL\OTL.exe PRC - [2014-01-24 15:21:13 | 003,767,096 | ---- | M] (AVAST Software) -- D:\Programy\AVAST Software\AvastUI.exe PRC - [2014-01-24 15:21:13 | 000,050,344 | ---- | M] (AVAST Software) -- D:\Programy\AVAST Software\AvastSvc.exe PRC - [2013-08-14 22:00:19 | 000,879,456 | ---- | M] (Opera Software) -- D:\Programy\Opera\opera.exe PRC - [2012-11-30 14:53:58 | 000,088,696 | ---- | M] (VIA Technologies, Inc.) -- C:\WINDOWS\system32\KaraokeSer.exe PRC - [2010-05-20 14:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe PRC - [2008-04-14 18:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2006-12-19 18:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-02-22 14:20:31 | 002,181,120 | ---- | M] () -- D:\Programy\AVAST Software\defs\14022201\algo.dll MOD - [2013-10-21 18:18:08 | 019,336,120 | ---- | M] () -- D:\Programy\AVAST Software\libcef.dll MOD - [2013-08-29 21:39:53 | 016,166,280 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll MOD - [2013-08-14 22:00:23 | 000,835,584 | ---- | M] () -- D:\Programy\Opera\gstreamer\gstreamer.dll MOD - [2013-08-14 22:00:23 | 000,312,832 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstoggdec.dll MOD - [2013-08-14 22:00:23 | 000,158,208 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstffmpegcolorspace.dll MOD - [2013-08-14 22:00:23 | 000,101,888 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstwebmdec.dll MOD - [2013-08-14 22:00:23 | 000,096,256 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstcoreplugins.dll MOD - [2013-08-14 22:00:23 | 000,094,208 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstaudioresample.dll MOD - [2013-08-14 22:00:23 | 000,093,696 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstaudioconvert.dll MOD - [2013-08-14 22:00:23 | 000,073,728 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstwavparse.dll MOD - [2013-08-14 22:00:23 | 000,067,072 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstdirectsound.dll MOD - [2013-08-14 22:00:23 | 000,062,976 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstdecodebin2.dll MOD - [2013-08-14 22:00:23 | 000,057,344 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstautodetect.dll MOD - [2013-08-14 22:00:23 | 000,038,912 | ---- | M] () -- D:\Programy\Opera\gstreamer\plugins\gstwaveform.dll MOD - [2008-04-14 18:20:37 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll MOD - [2001-10-28 15:42:30 | 000,116,224 | ---- | M] () -- C:\WINDOWS\system32\pdfcmnnt.dll MOD - [1998-03-10 10:07:18 | 000,902,656 | ---- | M] () -- D:\Programy\Corel\Programs\CMFFld80.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ) SRV - File not found [Disabled | Stopped] -- C:\Program Files\Mail.Ru\Guard\GuardMailRu.exe -- (Guard.Mail.ru) SRV - [2014-01-24 15:21:13 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- D:\Programy\AVAST Software\AvastSvc.exe -- (avast! Antivirus) SRV - [2013-09-05 10:34:30 | 000,171,680 | R--- | M] (Skype Technologies) [Disabled | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012-11-30 14:53:58 | 000,088,696 | ---- | M] (VIA Technologies, Inc.) [Auto | Running] -- C:\WINDOWS\system32\KaraokeSer.exe -- (KaraokeService) SRV - [2012-01-25 17:40:56 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2010-05-20 14:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc) SRV - [2009-10-27 09:26:36 | 000,657,408 | ---- | M] (Nokia) [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2006-12-19 18:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\Common Files\EPSON\EBAPI\eEBSvc.exe -- (EpsonBidirectionalService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Greg.GS\USTAWI~1\Temp\catchme.sys -- (catchme) DRV - [2014-02-05 15:21:00 | 000,067,824 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswmonflt.sys -- (aswMonFlt) DRV - [2014-01-24 15:21:17 | 000,775,952 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\aswSnx.sys -- (aswSnx) DRV - [2014-01-24 15:21:17 | 000,410,784 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\aswsp.sys -- (aswSP) DRV - [2014-01-24 15:21:17 | 000,057,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi) DRV - [2014-01-24 15:21:17 | 000,054,832 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswRdr.sys -- (AswRdr) DRV - [2013-12-18 07:11:13 | 000,180,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm) DRV - [2013-10-21 18:18:08 | 000,049,944 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt) DRV - [2013-08-21 05:31:38 | 000,182,680 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudmdm.sys -- (ssudmdm) DRV - [2013-08-21 05:31:38 | 000,084,248 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudbus.sys -- (dg_ssudbus) DRV - [2013-04-11 18:54:48 | 006,850,048 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2012-11-30 14:54:10 | 002,558,712 | R--- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\viahduaa.sys -- (VIAHdAudAddService) DRV - [2012-11-07 15:34:46 | 001,343,760 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTWlanU.sys -- (RtlWlanu) DRV - [2012-09-17 12:05:12 | 000,106,296 | ---- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\jraid.sys -- (JRAID) DRV - [2012-05-14 07:12:12 | 000,103,040 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AtihdXP3.sys -- (AtiHDAudioService) DRV - [2010-12-21 06:55:02 | 000,132,608 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_mdm.sys -- (ssm_mdm) DRV - [2010-12-21 06:55:02 | 000,104,448 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_bus.sys -- (ssm_bus) DRV - [2010-12-21 06:55:02 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssm_mdfl.sys -- (ssm_mdfl) DRV - [2010-05-20 11:27:26 | 001,961,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VX1000.sys -- (VX1000) DRV - [2010-03-19 17:15:49 | 000,046,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1e51x86.sys -- (L1e) DRV - [2009-10-06 11:52:50 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-10-06 11:52:34 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2009-10-06 11:52:34 | 000,017,664 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-10-06 11:52:34 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-03-13 09:00:00 | 000,908,544 | ---- | M] (NXP Semiconductors Germany GmbH) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\3xHybrid.sys -- (3xHybrid) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-04-13 19:46:22 | 000,015,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mpe.sys -- (MPE) DRV - [2008-02-14 07:12:00 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\monfilt.sys -- (monfilt) DRV - [2006-07-24 16:05:00 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen) DRV - [2005-03-15 11:00:00 | 000,277,504 | ---- | M] (Philips Semiconductors) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SAA713x.sys -- (SAA713x) DRV - [2005-03-15 11:00:00 | 000,277,504 | ---- | M] (Philips Semiconductors) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\SAA713x.sys -- (713xTVCard) DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor) DRV - [2003-09-16 14:56:40 | 000,353,792 | R--- | M] (Philips Semiconductors) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Cap7134.sys -- (Cap7134) DRV - [2003-09-13 08:32:02 | 000,025,344 | R--- | M] (Philips Semiconductors) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\PhTVTune.sys -- (PhTVTune) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-861567501-1604221776-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.mail.ru/cnt/9134 IE - HKU\S-1-5-21-861567501-1604221776-839522115-1003\..\URLSearchHook: {09900DE8-1DCA-443F-9243-26FF581438AF} - No CLSID value found IE - HKU\S-1-5-21-861567501-1604221776-839522115-1003\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-861567501-1604221776-839522115-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\S-1-5-21-861567501-1604221776-839522115-1003\..\SearchScopes\{679356D6-F9A6-420C-9FD5-8829ECAD92B0}: "URL" = http://www.idg.pl?q={searchTerms} IE - HKU\S-1-5-21-861567501-1604221776-839522115-1003\..\SearchScopes\{BE160BDE-6222-4602-9663-9B949D4FA329}: "URL" = http://www.idg.pl?q={searchTerms} IE - HKU\S-1-5-21-861567501-1604221776-839522115-1003\..\SearchScopes\{E88E0043-C9D4-4e33-8555-FEE4F5B63060}: "URL" = http://go.mail.ru/search?q={searchTerms}&utf8in=1&fr=ietb IE - HKU\S-1-5-21-861567501-1604221776-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1203133.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKCU\Software\MozillaPlugins\@nsroblox.roblox.com/launcher: C:\Documents and Settings\Greg.GS\Ustawienia lokalne\Dane aplikacji\RobloxVersions\version-256d780acc6049ae\\NPRobloxProxy.dll () O1 HOSTS File: ([2013-12-06 00:19:34 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (no name) - {8984B388-A5BB-4DF7-B274-77B879E179DB} - No CLSID value found. O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programy\AVAST Software\aswWebRepIE.dll (AVAST Software) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Documents and Settings\Greg.GS\Dane aplikacji\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.) O3 - HKLM\..\Toolbar: (no name) - {09900DE8-1DCA-443F-9243-26FF581438AF} - No CLSID value found. O3 - HKLM\..\Toolbar: (avast! Online Security) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - D:\Programy\AVAST Software\aswWebRepIE.dll (AVAST Software) O4 - HKLM..\Run: [AvastUI.exe] D:\Programy\AVAST Software\AvastUI.exe (AVAST Software) O4 - HKU\S-1-5-21-861567501-1604221776-839522115-1003..\Run: [Odkurzacz] C:\Program Files\Odkurzacz\odkurzacz.exe (FranmoSoftware) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutorunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-861567501-1604221776-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-861567501-1604221776-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-861567501-1604221776-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSharedDocuments = 1 O7 - HKU\S-1-5-21-861567501-1604221776-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-21-861567501-1604221776-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-861567501-1604221776-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2B3E968F-418A-45DE-B23F-81124E402D5D}: DhcpNameServer = 192.168.1.1 192.168.1.1 O18 - Protocol\Handler\ipp\0x00000001 - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found O18 - Protocol\Handler\msdaipp\oledb - No CLSID value found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-05-02 20:51:12 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-02-23 10:41:03 | 000,000,000 | ---D | C] -- C:\FRST [2014-02-21 23:14:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg.GS\AppData [2014-02-18 20:47:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg.GS\Moje dokumenty\Garbage Truck Simulator [2014-02-17 18:22:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg.GS\Moje dokumenty\Corel User Files [2014-02-14 18:21:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg.GS\Ustawienia lokalne\Dane aplikacji\Roblox [2014-02-14 18:21:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg.GS\Ustawienia lokalne\Dane aplikacji\RobloxDownloads [2014-02-14 18:21:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg.GS\Menu Start\Programy\Roblox [2014-02-14 18:21:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Greg.GS\Ustawienia lokalne\Dane aplikacji\RobloxVersions [2014-02-10 19:33:21 | 000,475,410 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\ensppmon.dll [2014-02-10 19:33:21 | 000,475,410 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\enppmon.dll [2014-02-10 19:33:21 | 000,458,129 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\ensppui.dll [2014-02-10 19:33:21 | 000,458,129 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\enppui.dll [2014-02-10 19:33:21 | 000,249,344 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\enspres.dll [2014-02-10 19:33:21 | 000,249,344 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\enpres.dll [2014-02-10 19:28:19 | 000,135,168 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\EEBAPI.dll [2014-02-10 19:28:19 | 000,110,592 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\EEBDSCVR.dll [2014-02-10 19:28:19 | 000,077,824 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\EBAPI.dll [2014-02-10 19:28:19 | 000,065,536 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\EEBUtil.dll [2014-02-10 19:28:19 | 000,055,808 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\WINDOWS\System32\EEBSDKIF.dll [2014-02-10 10:05:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\GP SOFT [2014-02-09 18:17:34 | 000,128,392 | ---- | C] (Seiko Epson Corporation) -- C:\WINDOWS\System32\esdevapp.exe [2014-02-09 11:59:53 | 000,000,000 | ---D | C] -- C:\Program Files\EpsonNet [2014-02-09 11:59:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\EPSON [2014-02-09 11:47:30 | 000,000,000 | ---D | C] -- C:\Program Files\Epson Software [2014-02-09 11:46:19 | 000,000,000 | ---D | C] -- C:\Program Files\EpsonNet(2) [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-02-23 09:57:04 | 000,000,342 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job [2014-02-23 09:56:44 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014-02-21 23:14:29 | 000,000,188 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Ustawienia lokalne\Dane aplikacji\rbxcsettings.rbx [2014-02-20 14:05:21 | 000,058,953 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\uwaga2.jpeg [2014-02-20 13:57:40 | 000,024,746 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\kosa.jpg [2014-02-20 13:45:35 | 000,032,411 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\nie_żyw.jpg [2014-02-20 13:45:06 | 000,058,460 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\uwaga1.jpeg [2014-02-20 01:20:21 | 000,001,065 | ---- | M] () -- C:\WINDOWS\winamp.ini [2014-02-14 18:21:48 | 000,001,210 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\ROBLOX Player.lnk [2014-02-12 16:02:12 | 000,007,006 | ---- | M] () -- C:\WINDOWS\Greg8.xlb [2014-02-11 20:46:56 | 000,008,192 | ---- | M] () -- C:\WINDOWS\Greg.pcb [2014-02-11 09:01:12 | 000,476,352 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2014-02-09 12:01:28 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014-02-05 15:21:00 | 000,067,824 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmonflt.sys [2014-01-26 18:35:22 | 000,040,367 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\glos.jpg [2014-01-26 18:30:11 | 000,185,110 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\ofe.jpg [2014-01-26 18:26:30 | 000,021,138 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\mucha.jpg [2014-01-26 18:21:41 | 000,036,158 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\winnetou.jpg [2014-01-26 18:20:50 | 000,041,694 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\lucznik.jpg [2014-01-26 18:20:06 | 000,457,250 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\angela.png [2014-01-26 18:19:33 | 000,063,547 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\roboty.jpg [2014-01-26 18:18:10 | 000,057,390 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\wykaz.jpg [2014-01-26 18:10:32 | 000,031,272 | ---- | M] () -- C:\Documents and Settings\Greg.GS\Pulpit\bilet.jpg [2014-01-24 15:21:17 | 000,775,952 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys [2014-01-24 15:21:17 | 000,410,784 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswsp.sys [2014-01-24 15:21:17 | 000,057,672 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys [2014-01-24 15:21:17 | 000,054,832 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys [2014-01-24 15:21:16 | 000,270,240 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe [2014-01-24 15:21:16 | 000,043,152 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-02-20 14:05:21 | 000,058,953 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\uwaga2.jpeg [2014-02-20 13:57:40 | 000,024,746 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\kosa.jpg [2014-02-20 13:45:35 | 000,032,411 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\nie_żyw.jpg [2014-02-20 13:45:06 | 000,058,460 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\uwaga1.jpeg [2014-02-14 18:21:48 | 000,001,210 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\ROBLOX Player.lnk [2014-02-14 18:21:12 | 000,000,188 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Ustawienia lokalne\Dane aplikacji\rbxcsettings.rbx [2014-02-10 20:52:20 | 000,008,192 | ---- | C] () -- C:\WINDOWS\Greg.pcb [2014-01-26 18:35:22 | 000,040,367 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\glos.jpg [2014-01-26 18:30:11 | 000,185,110 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\ofe.jpg [2014-01-26 18:26:30 | 000,021,138 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\mucha.jpg [2014-01-26 18:21:41 | 000,036,158 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\winnetou.jpg [2014-01-26 18:20:50 | 000,041,694 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\lucznik.jpg [2014-01-26 18:20:06 | 000,457,250 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\angela.png [2014-01-26 18:19:33 | 000,063,547 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\roboty.jpg [2014-01-26 18:18:10 | 000,057,390 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\wykaz.jpg [2014-01-26 18:10:32 | 000,031,272 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Pulpit\bilet.jpg [2013-12-06 13:25:53 | 000,001,670 | ---- | C] () -- C:\WINDOWS\TVP3XDrv.ini [2013-12-06 00:14:04 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2013-12-06 00:14:04 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2013-12-06 00:14:04 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2013-12-06 00:14:04 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2013-12-06 00:14:04 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2013-12-04 19:23:44 | 000,001,065 | ---- | C] () -- C:\WINDOWS\winamp.ini [2013-12-03 17:59:48 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2013-12-03 17:59:45 | 002,102,272 | ---- | C] () -- C:\WINDOWS\System32\x264vfw.dll [2013-12-03 17:59:45 | 000,755,027 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2013-12-03 17:59:45 | 000,159,839 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2013-12-03 17:59:44 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2013-12-03 17:59:44 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2013-12-03 17:15:20 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\LauncherAccess.dt [2013-12-03 17:14:25 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys [2013-11-03 23:18:00 | 000,000,108 | ---- | C] () -- C:\WINDOWS\SKYMAP.INI [2013-10-30 12:07:00 | 000,030,568 | ---- | C] () -- C:\WINDOWS\MusiccityDownload.exe [2013-10-30 12:06:54 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll [2013-10-30 12:06:54 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll [2013-10-30 12:06:54 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll [2013-10-30 12:06:54 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll [2013-08-20 16:18:26 | 000,111,932 | ---- | C] () -- C:\WINDOWS\System32\EPPICPrinterDB.dat [2013-08-20 16:18:26 | 000,031,053 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern131.dat [2013-08-20 16:18:26 | 000,027,417 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern121.dat [2013-08-20 16:18:26 | 000,026,154 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern1.dat [2013-08-20 16:18:26 | 000,024,903 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern3.dat [2013-08-20 16:18:26 | 000,021,390 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern5.dat [2013-08-20 16:18:26 | 000,020,148 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern2.dat [2013-08-20 16:18:26 | 000,011,811 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern4.dat [2013-08-20 16:18:26 | 000,004,943 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern6.dat [2013-08-20 16:18:26 | 000,001,146 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_DU.dat [2013-08-20 16:18:26 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_PT.dat [2013-08-20 16:18:26 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_BP.dat [2013-08-20 16:18:26 | 000,001,136 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_ES.dat [2013-08-20 16:18:26 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_FR.dat [2013-08-20 16:18:26 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_CF.dat [2013-08-20 16:18:26 | 000,001,120 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_IT.dat [2013-08-20 16:18:26 | 000,001,107 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_GE.dat [2013-08-20 16:18:26 | 000,001,104 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_EN.dat [2013-08-20 16:18:26 | 000,000,097 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini [2013-08-17 19:42:34 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\Greg.GS\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2013-08-16 22:40:37 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2013-08-16 16:54:14 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\sh33w32.dll [2013-08-16 16:53:32 | 000,039,095 | ---- | C] () -- C:\WINDOWS\iccsigs.dat [2013-08-16 07:49:26 | 000,000,626 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2013-08-15 23:13:09 | 000,015,498 | ---- | C] () -- C:\WINDOWS\VX1000.ini [2013-08-15 23:01:21 | 000,009,760 | ---- | C] () -- C:\WINDOWS\System32\34CoInstaller.dll [2013-08-15 23:00:57 | 000,226,116 | ---- | C] () -- C:\WINDOWS\System32\drivers\beholder.bin [2013-08-15 20:26:07 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin [2013-08-15 20:25:52 | 000,662,787 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat [2013-08-15 14:57:14 | 000,180,248 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys [2013-08-15 14:57:14 | 000,049,944 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys [2013-08-15 13:47:51 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2013-08-15 02:52:45 | 000,004,484 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2013-08-15 02:51:35 | 000,476,352 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2013-08-15 01:22:28 | 000,001,746 | ---- | C] () -- C:\WINDOWS\Language_trs.ini [2013-08-15 01:21:50 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys [2013-08-15 01:21:38 | 000,030,998 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini [2013-08-15 01:21:38 | 000,010,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2013-08-15 01:03:40 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2013-08-15 00:58:50 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2013-08-15 00:50:04 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll [2013-08-14 22:23:04 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [color=#E56717]========== ZeroAccess Check ==========[/color] [2013-08-15 13:14:41 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-14 18:20:47 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2009-02-09 11:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2008-04-14 18:20:57 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2008-05-03 00:15:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DonationCoder [2008-05-04 01:05:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2013-10-21 18:09:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\AVAST Software [2013-08-18 16:42:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Canneverbe Limited [2013-12-06 11:39:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\DriverGenius [2014-02-10 11:15:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\EPSON [2013-08-15 08:59:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\FileOpen [2013-10-29 17:27:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Installations [2014-02-09 12:00:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\ipla [2013-10-29 17:34:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\PC Suite [2013-11-04 20:03:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\RDRM [2013-12-03 17:30:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Samsung [2013-08-20 16:22:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\UDL [2013-12-05 23:40:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\aartemis [2013-10-21 18:58:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\AVAST Software [2013-08-18 16:42:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\Canneverbe Limited [2013-12-06 10:40:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\DRPSu [2013-08-15 08:59:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\FileOpen [2014-02-09 12:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\ipla [2013-10-29 17:36:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\Nokia [2013-08-17 00:01:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\Nowe Gadu-Gadu [2013-11-21 12:57:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\ooVoo Details [2013-08-14 21:26:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\Opera [2013-10-29 17:34:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\PC Suite [2013-12-14 19:51:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\Samsung [2013-12-03 13:29:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\systweak [2013-12-03 13:54:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Greg.GS\Dane aplikacji\wsInspector [2013-12-06 10:37:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService.ZARZĄDZANIE NT\Dane aplikacji\{DCD48218-E972-4d0c-9E5F-43462BC13E3B} [2013-08-20 16:26:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService.ZARZĄDZANIE NT\Dane aplikacji\Opera [2013-12-06 11:21:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService.ZARZĄDZANIE NT\Dane aplikacji\{DCD48218-E972-4d0c-9E5F-43462BC13E3B} [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 98 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2 < End of report >