Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-03-2014 03 Ran by julcia (administrator) on XXX on 02-03-2014 22:45:50 Running from C:\Documents and Settings\julcia\Moje dokumenty\Downloads Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (BitTorrent Inc.) C:\Documents and Settings\julcia\Dane aplikacji\uTorrent\uTorrent.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [PinnacleDriverCheck] - C:\WINDOWS\system32\\PSDrvCheck.exe [406016 2004-03-10] () HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-01-25] (AVAST Software) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKU\.DEFAULT\...\RunOnce: [nltide_3] - rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N HKU\S-1-5-21-1409082233-1060284298-725345543-1004\...\Run: [uTorrent] - C:\Documents and Settings\julcia\Dane aplikacji\uTorrent\uTorrent.exe [905296 2014-01-31] (BitTorrent Inc.) HKU\S-1-5-21-1409082233-1060284298-725345543-1004\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 ==================== Internet (Whitelisted) ==================== SearchScopes: HKLM - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms} SearchScopes: HKCU - {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = http://www.google.com/search?q={searchTerms} BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - &Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation) DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1248790259531 DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll (Google Inc.) ShellExecuteHooks: - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No File [ ] Tcpip\Parameters: [DhcpNameServer] 62.179.1.62 62.179.1.63 Tcpip\..\Interfaces\{BE63CC40-A283-4624-AFB9-38246443775C}: [NameServer]8.8.8.8,8.8.4.4 FireFox: ======== FF ProfilePath: C:\Documents and Settings\julcia\Dane aplikacji\Mozilla\Firefox\Profiles\qvi3fglq.default FF NewTab: hxxp://www.google.com FF SearchEngineOrder.1: Google FF SelectedSearchEngine: Google FF Homepage: hxxp://www.google.com FF Keyword.URL: https://www.google.com/search FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1209149.dll (Adobe Systems, Inc.) FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 - C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll No File FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-01-07] Chrome: ======= CHR DefaultSearchKeyword: google CHR DefaultSearchURL: http://www.google.com/search?q={searchTerms} CHR DefaultNewTabURL: CHR Extension: (Google Wallet) - C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-24] ========================== Services (Whitelisted) ================= R2 Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [144672 2009-08-28] (Apple Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-25] (AVAST Software) S2 gupdate1ca5acbcece4fee; C:\Program Files\Google\Update\GoogleUpdate.exe [133104 2009-11-01] (Google Inc.) S3 InCDsrv; C:\Program Files\Ahead\InCD\InCDsrv.exe [856064 2005-01-27] (Nero AG) S3 InCDsrvR; C:\Program Files\Ahead\InCD\InCDsrv.exe [856064 2005-01-27] (Nero AG) R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-02-28] (Oracle Corporation) R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) ==================== Drivers (Whitelisted) ==================== R3 AEAudioService; C:\WINDOWS\System32\drivers\AEAudio.sys [127872 2005-03-04] (Andrea Electronics Corporation) R3 ASAPIW2K; C:\WINDOWS\System32\Drivers\ASAPIW2K.sys [11264 2005-01-10] (VOB Computersysteme GmbH) R1 AsIO; C:\WINDOWS\System32\drivers\AsIO.sys [12664 2006-10-18] () R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-02-05] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [54832 2014-01-25] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-01-07] () R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [775952 2014-01-25] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [410784 2014-01-25] (AVAST Software) S3 aswTap; C:\WINDOWS\System32\DRIVERS\aswTap.sys [35272 2014-01-07] (The OpenVPN Project) R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57672 2014-01-25] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [180248 2014-01-07] () S3 azvusb; C:\WINDOWS\System32\DRIVERS\azvusb.sys [44544 2009-08-24] (AzureWave Technologies, Inc.) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) R3 FETND5BV; C:\WINDOWS\System32\DRIVERS\fetnd5bv.sys [42496 2005-10-18] (VIA Technologies, Inc. ) S3 FETNDIS; C:\WINDOWS\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. ) S3 HdAudAddService; C:\WINDOWS\System32\drivers\HdAudio.sys [145920 2004-10-27] (Windows (R) Server 2003 DDK provider) R4 InCDfs; C:\WINDOWS\system32\Drivers\InCDfs.sys [99200 2005-01-27] (Nero AG) R1 InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [28928 2005-01-27] (Nero AG) U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [8704 2005-01-27] (Nero AG) R1 incdrm; C:\WINDOWS\system32\Drivers\incdrm.sys [27776 2005-01-27] (Nero AG) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) S3 MPE; C:\WINDOWS\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation) R3 MTsensor; C:\WINDOWS\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] () S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) R1 PCLEPCI; C:\WINDOWS\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) R3 SenFiltService; C:\WINDOWS\System32\drivers\Senfilt.sys [393088 2005-08-11] (Sensaura) R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [320120 2014-03-02] () R3 SunkFilt; C:\WINDOWS\System32\Drivers\sunkfilt.sys [38468 2004-12-08] (Alcor Micro Corp.) S3 USB28xxBGA; C:\WINDOWS\System32\DRIVERS\emBDA.sys [583552 2010-09-01] (eMPIA Technology, Inc.) S3 USB28xxOEM; C:\WINDOWS\System32\DRIVERS\emOEM.sys [840960 2010-09-01] (eMPIA Technology, Inc.) R3 viagfx; C:\WINDOWS\System32\DRIVERS\vtmini.sys [244352 2006-02-08] (Copyright (C) VIA/S3 Graphics Co, Ltd.) R0 videX32; C:\WINDOWS\System32\DRIVERS\videX32.sys [9728 2006-02-23] (VIA Technologies, Inc.) S3 vvftav211; C:\WINDOWS\System32\drivers\vvftav211.sys [480128 2007-12-10] (Vimicro Corporation) R0 xfilt; C:\WINDOWS\System32\DRIVERS\xfilt.sys [11264 2006-02-23] (VIA Technologies,Inc) S3 ZSMC30x; C:\WINDOWS\System32\Drivers\ZS211.sys [1472000 2007-12-13] (ZSMC.Corporation) S4 IntelIde; No ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-02 22:42 - 2014-03-02 22:45 - 00000000 ____D () C:\FRST 2014-03-02 22:14 - 2014-03-02 22:14 - 00000481 _____ () C:\WINDOWS\setupapi.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00006964 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00006641 _____ () C:\WINDOWS\iis6.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00006182 _____ () C:\WINDOWS\FaxSetup.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00002956 _____ () C:\WINDOWS\ocgen.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00002829 _____ () C:\WINDOWS\tsoc.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00002059 _____ () C:\WINDOWS\comsetup.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00001904 _____ () C:\WINDOWS\msmqinst.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00001355 _____ () C:\WINDOWS\imsins.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00001083 _____ () C:\WINDOWS\netfxocm.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000425 _____ () C:\WINDOWS\MedCtrOC.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000386 _____ () C:\WINDOWS\ocmsn.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000319 _____ () C:\WINDOWS\tabletoc.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000309 _____ () C:\WINDOWS\msgsocm.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-01 18:07 - 2014-03-01 18:07 - 00000000 __SHD () C:\Documents and Settings\Stas\IETldCache 2014-02-28 22:35 - 2014-02-28 22:35 - 00000000 __SHD () C:\Documents and Settings\julcia\PrivacIE 2014-02-28 19:13 - 2014-02-28 19:13 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\gry 2014-02-28 18:08 - 2014-02-28 18:08 - 00000790 _____ () C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk 2014-02-28 18:08 - 2014-02-28 18:08 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware 2014-02-28 18:08 - 2014-02-28 18:08 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware 2014-02-28 18:08 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-02-28 17:26 - 2014-02-28 17:26 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy\Gry 2014-02-28 10:47 - 2014-02-28 10:47 - 00000000 ____D () C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Sun 2014-02-28 10:13 - 2014-02-28 10:13 - 00000000 ____D () C:\AdwCleaner 2014-02-28 09:17 - 2014-02-28 09:17 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-02-28 09:16 - 2014-02-28 09:16 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Java 2014-02-28 09:16 - 2014-02-28 09:15 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-28 09:16 - 2014-02-28 09:15 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-28 09:16 - 2014-02-28 09:15 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-28 09:16 - 2014-02-28 09:15 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-02-28 09:16 - 2014-02-28 09:15 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-02-27 22:08 - 2014-02-27 22:08 - 00000809 _____ () C:\Documents and Settings\julcia\Menu Start\Programy\Internet Explorer.lnk 2014-02-27 22:08 - 2014-02-27 22:08 - 00000000 __SHD () C:\Documents and Settings\julcia\IETldCache 2014-02-27 22:01 - 2014-03-01 18:20 - 00000000 ____D () C:\WINDOWS\ie8updates 2014-02-27 21:58 - 2014-02-27 22:00 - 00000000 __HDC () C:\WINDOWS\ie8 2014-02-27 21:54 - 2014-02-06 00:08 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2014-02-27 21:54 - 2014-02-06 00:08 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2014-02-27 21:54 - 2014-02-06 00:08 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2014-02-27 21:54 - 2014-02-06 00:08 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2014-02-27 21:54 - 2011-08-16 11:45 - 00006144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iecompat.dll 2014-02-27 21:46 - 2014-02-27 21:46 - 00001804 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader XI.lnk 2014-02-27 21:46 - 2014-02-27 21:46 - 00001740 _____ () C:\Documents and Settings\All Users\Pulpit\Adobe Reader XI.lnk 2014-02-27 13:14 - 2014-02-27 13:14 - 00000000 ____D () C:\_OTL 2014-02-26 11:05 - 2014-02-26 11:05 - 00000053 _____ () C:\Documents and Settings\julcia\Dane aplikacji\mbam.context.scan 2014-02-24 09:47 - 2014-02-24 10:11 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\Tła 2014-02-23 20:55 - 2014-02-24 12:59 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\PRZEROBIONE 2014-02-23 00:17 - 2014-02-23 00:26 - 00000000 ____D () C:\Documents and Settings\julcia\Dane aplikacji\PhotoFrameShow 2014-02-23 00:16 - 2014-02-23 00:16 - 00000688 _____ () C:\Documents and Settings\All Users\Pulpit\Photo Frame Show.lnk 2014-02-23 00:16 - 2014-02-23 00:16 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Photo Frame Show 2014-02-23 00:15 - 2014-02-28 22:34 - 00000000 ____D () C:\Program Files\FrameShow 2014-02-23 00:15 - 2002-10-24 16:08 - 00443392 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\ltkrn13n.dll 2014-02-23 00:15 - 2002-10-22 12:53 - 00393216 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\LFCMP13n.DLL 2014-02-23 00:15 - 2002-10-22 11:51 - 00073216 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\lffax13n.dll 2014-02-23 00:15 - 2002-10-21 14:40 - 00279552 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\LFJ2K13n.dll 2014-02-23 00:15 - 2002-10-21 14:39 - 00181248 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\Lfpng13n.dll 2014-02-23 00:15 - 2002-10-21 14:34 - 00126464 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\lftif13n.dll 2014-02-23 00:15 - 2002-10-21 14:31 - 01013760 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\Ltwvc13n.dll 2014-02-23 00:15 - 2002-10-21 14:06 - 00017920 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\lfRaw13n.dll 2014-02-23 00:15 - 2002-10-21 14:05 - 00024576 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\lftga13n.dll 2014-02-23 00:15 - 2002-10-21 14:04 - 00026112 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\lfpcx13n.dll 2014-02-23 00:15 - 2002-10-21 14:04 - 00018944 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\lfmsp13n.dll 2014-02-23 00:15 - 2002-10-21 14:02 - 00030208 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\lfbmp13n.dll 2014-02-23 00:15 - 2002-10-21 14:01 - 00446464 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\ltimg13n.dll 2014-02-23 00:15 - 2002-10-21 14:01 - 00205824 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\ltefx13n.dll 2014-02-23 00:15 - 2002-10-21 14:00 - 00139776 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\ltfil13n.DLL 2014-02-23 00:15 - 2002-10-21 13:53 - 00265728 _____ (LEAD Technologies, Inc.) C:\WINDOWS\system32\LTDIS13n.dll 2014-02-22 22:44 - 2014-02-22 22:45 - 00000000 ____D () C:\Program Files\Paint.NET 2014-02-22 22:44 - 2014-02-22 22:44 - 00000824 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Paint.NET.lnk 2014-02-22 22:44 - 2014-02-22 22:44 - 00000818 _____ () C:\Documents and Settings\All Users\Pulpit\Paint.NET.lnk 2014-02-22 22:43 - 2014-02-25 11:03 - 00000000 ____D () C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Paint.NET 2014-02-22 22:20 - 2014-02-22 22:20 - 00000696 _____ () C:\Documents and Settings\julcia\Pulpit\Magic Photo Editor.lnk 2014-02-22 22:20 - 2014-02-22 22:20 - 00000000 ____D () C:\Program Files\Magic Photo Editor 2014-02-22 22:20 - 2014-02-22 22:20 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Magic Photo Editor 2014-02-22 21:45 - 2014-02-22 21:54 - 00000000 ____D () C:\Program Files\IrfanView 2014-02-22 13:29 - 2014-02-22 13:29 - 00001146 _____ () C:\Documents and Settings\SISI\Pulpit\Angry Birds Breakfast 1.lnk 2014-02-22 13:29 - 2014-02-22 13:29 - 00000000 ____D () C:\Documents and Settings\SISI\Menu Start\Programy\Angry Birds Breakfast 1 2014-02-22 13:29 - 2014-02-22 13:29 - 00000000 ____D () C:\Documents and Settings\SISI\Dane aplikacji\com.rovio.AngryBirdsBreakfast1 2014-02-22 13:29 - 2014-02-22 13:29 - 00000000 ____D () C:\Documents and Settings\SISI\Dane aplikacji\Angry Birds Breakfast 1 2014-02-21 09:25 - 2014-02-21 09:36 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\kropek 2014-02-19 00:20 - 2014-02-28 12:12 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\Nowy folder 2014-02-17 09:20 - 2014-02-28 12:12 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\Nowy folder (3) 2014-02-13 17:17 - 2014-02-13 17:17 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2916036$ 2014-02-13 17:16 - 2014-02-13 17:16 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2909212$ 2014-02-04 17:34 - 2014-03-02 22:31 - 01007177 _____ () C:\WINDOWS\WindowsUpdate.log 2014-02-04 17:34 - 2014-03-02 22:17 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-02-04 17:34 - 2014-03-02 22:17 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-02-04 17:34 - 2014-02-04 17:34 - 00000000 ____N () C:\WINDOWS\Sti_Trace.log 2014-02-04 17:33 - 2014-03-02 22:15 - 00032384 _____ () C:\WINDOWS\SchedLgU.Txt 2014-02-01 00:36 - 2014-02-01 00:36 - 00000688 _____ () C:\Documents and Settings\All Users\Pulpit\CCleaner.lnk 2014-02-01 00:36 - 2014-02-01 00:36 - 00000000 ____D () C:\Program Files\CCleaner 2014-02-01 00:36 - 2014-02-01 00:36 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\CCleaner 2014-01-31 22:02 - 2014-01-31 22:02 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard 2014-01-31 20:17 - 2014-01-31 20:17 - 00000829 _____ () C:\Documents and Settings\julcia\Pulpit\µTorrent.lnk 2014-01-31 20:17 - 2014-01-31 20:17 - 00000829 _____ () C:\Documents and Settings\julcia\Menu Start\µTorrent.lnk ==================== One Month Modified Files and Folders ======= 2014-03-02 22:45 - 2014-03-02 22:42 - 00000000 ____D () C:\FRST 2014-03-02 22:44 - 2010-03-07 21:18 - 00000000 ____D () C:\Documents and Settings\julcia\Dane aplikacji\uTorrent 2014-03-02 22:40 - 2014-01-07 10:00 - 00000364 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job 2014-03-02 22:32 - 2012-08-06 21:36 - 00001136 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1409082233-1060284298-725345543-1004UA.job 2014-03-02 22:31 - 2014-02-04 17:34 - 01007177 _____ () C:\WINDOWS\WindowsUpdate.log 2014-03-02 22:24 - 2009-03-04 18:23 - 00320120 _____ () C:\WINDOWS\system32\Drivers\sptd.sys 2014-03-02 22:19 - 2009-02-05 21:54 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit 2014-03-02 22:17 - 2014-02-04 17:34 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-03-02 22:17 - 2014-02-04 17:34 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-03-02 22:16 - 2009-02-04 22:54 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-03-02 22:15 - 2014-02-04 17:33 - 00032384 _____ () C:\WINDOWS\SchedLgU.Txt 2014-03-02 22:15 - 2009-02-05 21:54 - 00000188 ___SH () C:\Documents and Settings\julcia\ntuser.ini 2014-03-02 22:14 - 2014-03-02 22:14 - 00000481 _____ () C:\WINDOWS\setupapi.log 2014-03-02 22:14 - 2009-02-04 23:36 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-03-02 21:58 - 2012-09-21 15:36 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-03-02 11:51 - 2009-02-04 23:01 - 00000188 ___SH () C:\Documents and Settings\Stas\ntuser.ini 2014-03-01 18:20 - 2014-03-01 18:20 - 00006964 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00006641 _____ () C:\WINDOWS\iis6.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00006182 _____ () C:\WINDOWS\FaxSetup.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00002956 _____ () C:\WINDOWS\ocgen.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00002829 _____ () C:\WINDOWS\tsoc.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00002059 _____ () C:\WINDOWS\comsetup.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00001904 _____ () C:\WINDOWS\msmqinst.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00001355 _____ () C:\WINDOWS\imsins.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00001083 _____ () C:\WINDOWS\netfxocm.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000425 _____ () C:\WINDOWS\MedCtrOC.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000386 _____ () C:\WINDOWS\ocmsn.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000319 _____ () C:\WINDOWS\tabletoc.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000309 _____ () C:\WINDOWS\msgsocm.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-01 18:20 - 2014-03-01 18:20 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-01 18:20 - 2014-02-27 22:01 - 00000000 ____D () C:\WINDOWS\ie8updates 2014-03-01 18:07 - 2014-03-01 18:07 - 00000000 __SHD () C:\Documents and Settings\Stas\IETldCache 2014-03-01 18:07 - 2009-02-04 23:01 - 00000000 ____D () C:\Documents and Settings\Stas 2014-03-01 18:06 - 2009-02-04 23:02 - 00000809 _____ () C:\Documents and Settings\Stas\Menu Start\Programy\Internet Explorer.lnk 2014-03-01 18:06 - 2009-02-04 23:01 - 00000000 ___RD () C:\Documents and Settings\Stas\Menu Start\Programy 2014-02-28 22:40 - 2009-02-05 21:54 - 00000000 ___RD () C:\Documents and Settings\julcia\Ulubione 2014-02-28 22:38 - 2009-02-08 12:01 - 00078232 _____ () C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2014-02-28 22:35 - 2014-02-28 22:35 - 00000000 __SHD () C:\Documents and Settings\julcia\PrivacIE 2014-02-28 22:35 - 2009-02-05 21:54 - 00000000 ____D () C:\Documents and Settings\julcia 2014-02-28 22:34 - 2014-02-23 00:15 - 00000000 ____D () C:\Program Files\FrameShow 2014-02-28 22:08 - 2009-12-10 19:11 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB973904$ 2014-02-28 19:13 - 2014-02-28 19:13 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\gry 2014-02-28 18:08 - 2014-02-28 18:08 - 00000790 _____ () C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk 2014-02-28 18:08 - 2014-02-28 18:08 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware 2014-02-28 18:08 - 2014-02-28 18:08 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware 2014-02-28 18:08 - 2009-02-04 23:36 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-02-28 17:34 - 2009-02-04 23:37 - 01277554 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-02-28 17:34 - 2001-10-26 17:15 - 00557638 _____ () C:\WINDOWS\system32\perfh015.dat 2014-02-28 17:34 - 2001-10-26 17:15 - 00118272 _____ () C:\WINDOWS\system32\perfc015.dat 2014-02-28 17:26 - 2014-02-28 17:26 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy\Gry 2014-02-28 17:26 - 2009-02-04 23:30 - 00000000 ____D () C:\WINDOWS\system32\inetsrv 2014-02-28 15:13 - 2009-02-04 22:50 - 00000000 ___HD () C:\WINDOWS\$hf_mig$ 2014-02-28 13:31 - 2012-08-06 21:36 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1409082233-1060284298-725345543-1004Core.job 2014-02-28 12:12 - 2014-02-19 00:20 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\Nowy folder 2014-02-28 12:12 - 2014-02-17 09:20 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\Nowy folder (3) 2014-02-28 10:47 - 2014-02-28 10:47 - 00000000 ____D () C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Sun 2014-02-28 10:47 - 2009-02-05 21:54 - 00000000 ___HD () C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji 2014-02-28 10:41 - 2009-02-05 19:06 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB958644$ 2014-02-28 10:13 - 2014-02-28 10:13 - 00000000 ____D () C:\AdwCleaner 2014-02-28 09:35 - 2013-11-04 23:11 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\OBRAZKI 2014-02-28 09:17 - 2014-02-28 09:17 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-02-28 09:16 - 2014-02-28 09:16 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Java 2014-02-28 09:15 - 2014-02-28 09:16 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-28 09:15 - 2014-02-28 09:16 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-28 09:15 - 2014-02-28 09:16 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-28 09:15 - 2014-02-28 09:16 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-02-28 09:15 - 2014-02-28 09:16 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-02-28 09:15 - 2009-02-28 22:29 - 00000000 ____D () C:\Program Files\Java 2014-02-27 22:08 - 2014-02-27 22:08 - 00000809 _____ () C:\Documents and Settings\julcia\Menu Start\Programy\Internet Explorer.lnk 2014-02-27 22:08 - 2014-02-27 22:08 - 00000000 __SHD () C:\Documents and Settings\julcia\IETldCache 2014-02-27 22:08 - 2009-02-05 21:54 - 00000000 ___RD () C:\Documents and Settings\julcia\Moje dokumenty\Moje obrazy 2014-02-27 22:08 - 2009-02-05 21:54 - 00000000 ___RD () C:\Documents and Settings\julcia\Moje dokumenty\Moja muzyka 2014-02-27 22:08 - 2009-02-05 21:54 - 00000000 ___RD () C:\Documents and Settings\julcia\Moje dokumenty 2014-02-27 22:08 - 2009-02-05 21:54 - 00000000 ___RD () C:\Documents and Settings\julcia\Menu Start\Programy\Akcesoria 2014-02-27 22:08 - 2009-02-05 21:54 - 00000000 ___RD () C:\Documents and Settings\julcia\Menu Start\Programy 2014-02-27 22:06 - 2013-08-24 20:10 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-02-27 22:06 - 2009-02-04 23:30 - 00000000 ____D () C:\WINDOWS\system32\pl-pl 2014-02-27 22:06 - 2009-02-04 23:30 - 00000000 ____D () C:\WINDOWS\Media 2014-02-27 22:06 - 2009-02-04 23:30 - 00000000 ____D () C:\WINDOWS\Help 2014-02-27 22:00 - 2014-02-27 21:58 - 00000000 __HDC () C:\WINDOWS\ie8 2014-02-27 21:49 - 2013-08-28 19:49 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-02-27 21:49 - 2013-08-24 20:11 - 00000736 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk 2014-02-27 21:49 - 2013-08-24 20:11 - 00000730 _____ () C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk 2014-02-27 21:47 - 2009-03-05 17:41 - 00000000 ____D () C:\WINDOWS\system32\Adobe 2014-02-27 21:46 - 2014-02-27 21:46 - 00001804 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader XI.lnk 2014-02-27 21:46 - 2014-02-27 21:46 - 00001740 _____ () C:\Documents and Settings\All Users\Pulpit\Adobe Reader XI.lnk 2014-02-27 21:46 - 2009-02-28 22:09 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Adobe 2014-02-27 21:46 - 2009-02-05 00:55 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-02-27 21:46 - 2009-02-05 00:55 - 00000000 ____D () C:\Program Files\Adobe 2014-02-27 21:28 - 2009-02-05 23:29 - 00000000 ____D () C:\Documents and Settings\julcia\Dane aplikacji\Adobe 2014-02-27 21:27 - 2009-03-05 21:35 - 00000000 ____D () C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Adobe 2014-02-27 16:16 - 2009-02-04 22:47 - 00000000 ____D () C:\WINDOWS\system32\Restore 2014-02-27 15:51 - 2009-02-04 23:34 - 00290888 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-02-27 15:17 - 2010-12-21 18:30 - 00000000 __RHD () C:\Documents and Settings\SISI\Dane aplikacji 2014-02-27 15:17 - 2009-02-05 21:54 - 00000000 __RHD () C:\Documents and Settings\julcia\Dane aplikacji 2014-02-27 14:34 - 2009-02-05 22:09 - 00091136 _____ () C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-02-27 13:14 - 2014-02-27 13:14 - 00000000 ____D () C:\_OTL 2014-02-26 22:31 - 2010-12-21 18:30 - 00000000 ___HD () C:\Documents and Settings\SISI\Ustawienia lokalne\Dane aplikacji 2014-02-26 22:30 - 2009-02-04 23:34 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-02-26 22:30 - 2009-02-04 23:01 - 00000000 ___HD () C:\Documents and Settings\Stas\Ustawienia lokalne\Dane aplikacji 2014-02-26 20:59 - 2009-09-10 21:07 - 00000000 ____D () C:\Documents and Settings\julcia\Dane aplikacji\Any Video Converter 2014-02-26 14:41 - 2009-02-04 23:36 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start 2014-02-26 14:41 - 2009-02-04 23:34 - 00000000 __RHD () C:\Documents and Settings\Default User\Dane aplikacji 2014-02-26 13:11 - 2009-02-05 18:03 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB951066_0$ 2014-02-26 11:05 - 2014-02-26 11:05 - 00000053 _____ () C:\Documents and Settings\julcia\Dane aplikacji\mbam.context.scan 2014-02-25 16:23 - 2009-02-05 21:54 - 00000000 __SHD () C:\Documents and Settings\julcia\Ustawienia lokalne\Historia 2014-02-25 11:03 - 2014-02-22 22:43 - 00000000 ____D () C:\Documents and Settings\julcia\Ustawienia lokalne\Dane aplikacji\Paint.NET 2014-02-25 08:36 - 2001-07-21 23:17 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl 2014-02-24 12:59 - 2014-02-23 20:55 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\PRZEROBIONE 2014-02-24 10:20 - 2009-08-02 20:27 - 00016896 ___SH () C:\Documents and Settings\julcia\Pulpit\Thumbs.db 2014-02-24 10:11 - 2014-02-24 09:47 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\Tła 2014-02-23 20:05 - 2009-08-18 12:49 - 00000116 _____ () C:\WINDOWS\NeroDigital.ini 2014-02-23 00:26 - 2014-02-23 00:17 - 00000000 ____D () C:\Documents and Settings\julcia\Dane aplikacji\PhotoFrameShow 2014-02-23 00:16 - 2014-02-23 00:16 - 00000688 _____ () C:\Documents and Settings\All Users\Pulpit\Photo Frame Show.lnk 2014-02-23 00:16 - 2014-02-23 00:16 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Photo Frame Show 2014-02-22 22:45 - 2014-02-22 22:44 - 00000000 ____D () C:\Program Files\Paint.NET 2014-02-22 22:44 - 2014-02-22 22:44 - 00000824 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Paint.NET.lnk 2014-02-22 22:44 - 2014-02-22 22:44 - 00000818 _____ () C:\Documents and Settings\All Users\Pulpit\Paint.NET.lnk 2014-02-22 22:20 - 2014-02-22 22:20 - 00000696 _____ () C:\Documents and Settings\julcia\Pulpit\Magic Photo Editor.lnk 2014-02-22 22:20 - 2014-02-22 22:20 - 00000000 ____D () C:\Program Files\Magic Photo Editor 2014-02-22 22:20 - 2014-02-22 22:20 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Magic Photo Editor 2014-02-22 21:54 - 2014-02-22 21:45 - 00000000 ____D () C:\Program Files\IrfanView 2014-02-22 13:33 - 2010-12-21 18:30 - 00000188 ___SH () C:\Documents and Settings\SISI\ntuser.ini 2014-02-22 13:33 - 2010-12-21 18:30 - 00000000 ____D () C:\Documents and Settings\SISI 2014-02-22 13:29 - 2014-02-22 13:29 - 00001146 _____ () C:\Documents and Settings\SISI\Pulpit\Angry Birds Breakfast 1.lnk 2014-02-22 13:29 - 2014-02-22 13:29 - 00000000 ____D () C:\Documents and Settings\SISI\Menu Start\Programy\Angry Birds Breakfast 1 2014-02-22 13:29 - 2014-02-22 13:29 - 00000000 ____D () C:\Documents and Settings\SISI\Dane aplikacji\com.rovio.AngryBirdsBreakfast1 2014-02-22 13:29 - 2014-02-22 13:29 - 00000000 ____D () C:\Documents and Settings\SISI\Dane aplikacji\Angry Birds Breakfast 1 2014-02-22 13:29 - 2010-12-21 18:30 - 00000000 __SHD () C:\Documents and Settings\SISI\Ustawienia lokalne\Historia 2014-02-22 13:29 - 2010-12-21 18:30 - 00000000 ___RD () C:\Documents and Settings\SISI\Menu Start\Programy 2014-02-22 13:29 - 2010-12-21 18:30 - 00000000 ____D () C:\Documents and Settings\SISI\Pulpit 2014-02-22 11:23 - 2009-02-04 23:01 - 00000000 ____D () C:\Documents and Settings\Stas\Pulpit 2014-02-21 09:36 - 2014-02-21 09:25 - 00000000 ____D () C:\Documents and Settings\julcia\Pulpit\kropek 2014-02-21 08:07 - 2014-01-11 16:49 - 00001825 _____ () C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk 2014-02-20 21:59 - 2012-09-21 15:35 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-02-20 21:59 - 2011-08-27 19:25 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-02-19 13:07 - 2009-02-05 18:55 - 00000000 __HDC () C:\WINDOWS\$NtServicePackUninstall$ 2014-02-19 09:11 - 2013-09-04 21:04 - 00000000 ___RD () C:\Documents and Settings\julcia\Pulpit\muza 2014-02-17 08:36 - 2009-07-16 13:12 - 00000000 ____D () C:\Documents and Settings\julcia\Dane aplikacji\Media Player Classic 2014-02-13 21:25 - 2009-11-01 09:32 - 00001036 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-13 21:25 - 2009-11-01 09:32 - 00001032 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-13 20:33 - 2009-11-19 21:21 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-02-13 17:17 - 2014-02-13 17:17 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2916036$ 2014-02-13 17:16 - 2014-02-13 17:16 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2909212$ 2014-02-13 17:16 - 2009-02-05 18:04 - 00000000 ____D () C:\WINDOWS\ie7updates 2014-02-13 17:08 - 2013-08-05 17:53 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-02-13 17:04 - 2009-02-05 07:54 - 85946576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-02-11 17:29 - 2009-02-04 23:33 - 00000327 __RSH () C:\boot.ini 2014-02-11 17:29 - 2001-07-21 23:16 - 00000728 _____ () C:\WINDOWS\win.ini 2014-02-11 17:29 - 2001-07-21 23:15 - 00000227 _____ () C:\WINDOWS\system.ini 2014-02-06 04:38 - 2008-01-24 10:43 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll 2014-02-06 04:38 - 2008-01-24 10:43 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-06 03:30 - 2008-01-24 10:42 - 00132608 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\extmgr.dll 2014-02-06 03:30 - 2008-01-24 10:42 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\extmgr.dll 2014-02-06 02:50 - 2009-02-05 07:35 - 00013824 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieudinit.exe 2014-02-06 00:08 - 2014-02-27 21:54 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2014-02-06 00:08 - 2014-02-27 21:54 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2014-02-06 00:08 - 2014-02-27 21:54 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2014-02-06 00:08 - 2014-02-27 21:54 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2014-02-06 00:08 - 2009-06-29 17:14 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll 2014-02-06 00:08 - 2009-02-05 07:35 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2014-02-06 00:08 - 2009-02-05 07:35 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2014-02-06 00:08 - 2009-02-05 07:35 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2014-02-06 00:08 - 2009-02-05 07:35 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2014-02-06 00:08 - 2009-02-04 22:47 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 06021120 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 06021120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-06 00:08 - 2008-01-24 10:43 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl 2014-02-06 00:08 - 2008-01-24 10:43 - 01216000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 01216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00067072 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-06 00:08 - 2008-01-24 10:43 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll 2014-02-06 00:08 - 2008-01-24 10:42 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2014-02-06 00:08 - 2008-01-24 10:42 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll 2014-02-06 00:08 - 2008-01-24 10:42 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2014-02-06 00:08 - 2008-01-24 10:42 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll 2014-02-06 00:08 - 2008-01-24 10:42 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll 2014-02-06 00:08 - 2008-01-24 10:42 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll 2014-02-06 00:08 - 2008-01-24 10:42 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll 2014-02-05 23:29 - 2008-01-24 10:42 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2014-02-05 23:29 - 2008-01-24 10:42 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-05 23:29 - 2008-01-24 10:42 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe 2014-02-05 18:38 - 2013-08-29 18:39 - 00000000 ____D () C:\Documents and Settings\Stas\Pulpit\rowery 2014-02-05 18:38 - 2009-02-05 01:19 - 00097280 _____ () C:\Documents and Settings\Stas\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-02-05 18:09 - 2014-01-07 10:00 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys 2014-02-04 17:34 - 2014-02-04 17:34 - 00000000 ____N () C:\WINDOWS\Sti_Trace.log 2014-02-04 15:57 - 2009-02-09 17:39 - 00001324 _____ () C:\WINDOWS\system32\d3d9caps.dat 2014-02-04 15:53 - 2012-09-04 20:35 - 00000000 __SHD () C:\WINDOWS\CSC 2014-02-04 15:40 - 2013-08-05 10:24 - 00000000 ____D () C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google 2014-02-04 15:40 - 2013-08-05 10:21 - 00000188 ___SH () C:\Documents and Settings\Administrator\ntuser.ini 2014-02-04 15:40 - 2013-08-05 10:21 - 00000000 ___HD () C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2014-02-02 23:32 - 2013-08-24 20:37 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-02-02 23:26 - 2010-12-21 18:48 - 00002569 _____ () C:\Documents and Settings\SISI\Menu Start\Programy\Galeria motywów przeglądarki Google Chrome.lnk 2014-02-02 22:52 - 2012-08-29 07:34 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome 2014-02-02 22:40 - 2014-01-25 21:08 - 00001739 _____ () C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk 2014-02-02 22:37 - 2013-08-05 10:21 - 00000000 ____D () C:\Documents and Settings\Administrator 2014-02-02 22:37 - 2009-02-04 22:54 - 00000000 __SHD () C:\Documents and Settings\NetworkService 2014-02-02 22:37 - 2009-02-04 22:54 - 00000000 __SHD () C:\Documents and Settings\LocalService 2014-02-02 22:37 - 2009-02-04 22:46 - 00000000 ____D () C:\WINDOWS\Registration 2014-02-02 12:48 - 2009-02-04 23:01 - 00000000 __RHD () C:\Documents and Settings\Stas\Dane aplikacji 2014-02-01 23:16 - 2009-02-05 00:30 - 00000000 _____ () C:\WINDOWS\AS_Debug.txt 2014-02-01 00:39 - 2009-09-10 16:49 - 00000000 ____D () C:\WINDOWS\Minidump 2014-02-01 00:36 - 2014-02-01 00:36 - 00000688 _____ () C:\Documents and Settings\All Users\Pulpit\CCleaner.lnk 2014-02-01 00:36 - 2014-02-01 00:36 - 00000000 ____D () C:\Program Files\CCleaner 2014-02-01 00:36 - 2014-02-01 00:36 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\CCleaner 2014-01-31 22:42 - 2009-02-04 23:01 - 00001605 _____ () C:\Documents and Settings\Stas\Menu Start\Programy\Pomoc zdalna.lnk 2014-01-31 22:41 - 2010-12-21 18:30 - 00001605 _____ () C:\Documents and Settings\SISI\Menu Start\Programy\Pomoc zdalna.lnk 2014-01-31 22:11 - 2009-02-04 22:50 - 00001605 _____ () C:\Documents and Settings\Default User\Menu Start\Programy\Pomoc zdalna.lnk 2014-01-31 22:09 - 2013-08-05 10:21 - 00001605 _____ () C:\Documents and Settings\Administrator\Menu Start\Programy\Pomoc zdalna.lnk 2014-01-31 22:02 - 2014-01-31 22:02 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard 2014-01-31 20:17 - 2014-01-31 20:17 - 00000829 _____ () C:\Documents and Settings\julcia\Pulpit\µTorrent.lnk 2014-01-31 20:17 - 2014-01-31 20:17 - 00000829 _____ () C:\Documents and Settings\julcia\Menu Start\µTorrent.lnk 2014-01-31 20:17 - 2012-08-28 20:58 - 00000000 ____D () C:\Program Files\uTorrent 2014-01-31 20:17 - 2009-02-05 21:54 - 00000000 ___RD () C:\Documents and Settings\julcia\Menu Start Some content of TEMP: ==================== C:\Documents and Settings\Stas\Ustawienia lokalne\Temp\MFPL7014.DLL C:\Documents and Settings\Stas\Ustawienia lokalne\Temp\mPlayer.cw.dll ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe [2008-01-24 10:59] - [2008-04-14 18:21] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\WINDOWS\system32\winlogon.exe [2004-08-04 00:44] - [2008-04-14 18:21] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\WINDOWS\system32\svchost.exe [2004-08-04 00:44] - [2008-04-14 18:21] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\WINDOWS\system32\services.exe [2004-08-04 00:44] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\WINDOWS\system32\User32.dll [2008-01-24 10:57] - [2008-04-14 18:20] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\WINDOWS\system32\userinit.exe [2004-08-04 00:44] - [2008-04-14 18:21] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\WINDOWS\system32\rpcss.dll [2008-01-24 10:54] - [2009-02-09 11:53] - 0401408 ____A (Microsoft Corporation) a37311d9d628c1042a2836731787f0f3 ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\WINDOWS\system32\Drivers\volsnap.sys [2004-08-04 00:36] - [2008-04-14 17:01] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================