OTL logfile created on: 2014-03-05 20:52:51 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Administrator\Moje dokumenty Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.2180) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1023,36 Mb Total Physical Memory | 621,41 Mb Available Physical Memory | 60,72% Memory free 2,41 Gb Paging File | 2,07 Gb Available in Paging File | 85,97% Paging File free Paging file location(s): C:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 56,54 Gb Total Space | 4,17 Gb Free Space | 7,38% Space Free | Partition Type: NTFS Drive D: | 96,83 Gb Total Space | 27,04 Gb Free Space | 27,92% Space Free | Partition Type: NTFS Computer Name: W-0EF15DAA53A44 | User Name: Administrator | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-03-05 20:52:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Moje dokumenty\OTL.exe PRC - [2014-02-27 14:57:04 | 046,139,232 | ---- | M] (Opera Software) -- C:\Program Files\Opera\20.0.1387.64\opera.exe PRC - [2014-02-27 14:57:04 | 001,380,192 | ---- | M] () -- C:\Program Files\Opera\20.0.1387.64\opera_crashreporter.exe PRC - [2004-08-03 23:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-02-27 14:57:05 | 000,895,328 | ---- | M] () -- C:\Program Files\Opera\20.0.1387.64\ffmpegsumo.dll MOD - [2014-02-27 14:57:04 | 001,380,192 | ---- | M] () -- C:\Program Files\Opera\20.0.1387.64\opera_crashreporter.exe [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- c:\program files\common files\akamai/netsession_win_e286960.dll -- (Akamai) SRV - [2014-02-26 11:24:12 | 000,425,104 | ---- | M] (Taiwan Shui Mu Chih Ching Technology Limited.) [Auto | Stopped] -- C:\Program Files\WinZipper\winzipersvc.exe -- (winzipersvc) SRV - [2014-02-26 09:30:22 | 000,501,904 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Stopped] -- C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe -- (Wpm) SRV - [2014-02-26 07:44:20 | 000,508,016 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Stopped] -- C:\Documents and Settings\All Users\Dane aplikacji\IePluginService\PluginService.exe -- (IePluginService) SRV - [2014-02-21 10:36:11 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2014-02-13 01:36:33 | 000,118,896 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2014-01-16 01:39:44 | 000,235,696 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe -- (McComponentHostService) SRV - [2014-01-08 15:32:02 | 001,771,544 | ---- | M] (AVG Secure Search) [Auto | Stopped] -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe -- (vToolbarUpdater17.3.0) SRV - [2013-12-01 17:47:01 | 000,148,976 | ---- | M] (BonanzaDeals) [On_Demand | Stopped] -- C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe -- (bonanzadealslivem) SRV - [2013-12-01 17:47:01 | 000,148,976 | ---- | M] (BonanzaDeals) [Auto | Stopped] -- C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe -- (bonanzadealslive) SRV - [2013-11-18 15:32:40 | 003,780,064 | ---- | M] () [Auto | Stopped] -- C:\Documents and Settings\All Users\Dane aplikacji\BitGuard\2.7.1832.68\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe -- (BitGuard) SRV - [2013-10-28 11:38:24 | 000,161,776 | ---- | M] (Oracle Corporation) [Auto | Stopped] -- C:\Program Files\Java\jre1.7.0_05\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2013-06-21 09:53:36 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012-02-11 21:52:02 | 000,025,088 | ---- | M] () [Auto | Stopped] -- D:\Gry\SpeedyDrive\mounter.exe -- (DokanMounter) SRV - [2011-04-25 04:55:00 | 004,066,168 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS\system32\GameMon.des -- (npggsvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\xhunter1.sys -- (xhunter1) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\vtany.sys -- (vtany) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme) DRV - [2014-03-03 08:30:06 | 000,042,784 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtpx86.sys -- (avgtp) DRV - [2014-01-10 15:31:25 | 000,243,128 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV - [2013-11-24 10:03:02 | 000,013,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\apf003.sys -- (apf003) DRV - [2012-09-17 18:32:06 | 000,072,704 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\zmocoxek5.sys -- (zmocoxek5) DRV - [2012-02-11 21:52:02 | 000,091,904 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | Auto | Stopped] -- C:\WINDOWS\system32\drivers\dokan.sys -- (Dokan) DRV - [2011-01-27 00:34:30 | 006,406,656 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2011-01-25 19:54:04 | 006,321,768 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) DRV - [2010-11-23 17:33:00 | 004,090,920 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtKHDMI.sys -- (RTHDMIAzAudService) DRV - [2010-11-17 13:03:56 | 000,101,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\AtihdXP3.sys -- (AtiHDAudioService) DRV - [2010-11-01 06:08:46 | 000,014,416 | ---- | M] (OpenLibSys.org) [File_System | On_Demand | Stopped] -- D:\Gry\Game Booster 3\Driver\WinRing0.sys -- (WinRing0_1_2_0) DRV - [2010-08-24 18:30:06 | 000,020,304 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\L8042Kbd.sys -- (L8042Kbd) DRV - [2010-07-01 13:21:14 | 000,034,896 | ---- | M] (Screaming Bee LLC) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ScreamingBAudio.sys -- (SCREAMINGBDRIVER) DRV - [2010-04-09 01:30:10 | 000,168,040 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nvgts.sys -- (nvgts) DRV - [2010-03-04 17:02:10 | 000,013,824 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus) DRV - [2010-03-04 17:02:08 | 000,070,912 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD) DRV - [2010-03-01 11:43:16 | 000,098,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s1039bus.sys -- (s1039bus) DRV - [2010-03-01 11:43:12 | 000,124,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s1039mdm.sys -- (s1039mdm) DRV - [2010-03-01 11:43:12 | 000,117,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s1039mgmt.sys -- (s1039mgmt) DRV - [2010-03-01 11:43:12 | 000,113,904 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s1039obex.sys -- (s1039obex) DRV - [2010-03-01 11:43:12 | 000,014,960 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s1039mdfl.sys -- (s1039mdfl) DRV - [2010-03-01 11:43:10 | 000,123,504 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s1039unic.sys -- (s1039unic) DRV - [2010-03-01 11:43:10 | 000,025,456 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s1039nd5.sys -- (s1039nd5) DRV - [2009-11-18 08:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2009-11-18 08:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2009-03-20 09:01:26 | 000,121,856 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2009-03-20 09:01:26 | 000,090,112 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) DRV - [2009-03-20 09:01:26 | 000,014,976 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) DRV - [2009-03-18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2008-12-26 12:56:04 | 000,017,792 | ---- | M] (Avnex) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\vcsvad.sys -- (VCSVADHWSer) DRV - [2006-07-02 03:39:40 | 000,036,864 | ---- | M] (Advanced Micro Devices) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8) DRV - [2004-08-03 22:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2004-08-03 22:03:36 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx) DRV - [2001-08-17 20:54:18 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb) DRV - [2001-08-17 20:54:18 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=hp&from=wpm0226&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&ts=1393410178 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = about:newtab IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=hp&from=wpm0226&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&ts=1393410178 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search.delta-homes.com/web/?type=ds&ts=1388687579&from=wpm0102&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.delta-homes.com/web/?type=ds&ts=1388687579&from=wpm0102&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = about:newtab IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = about:newtab IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b} IE - HKLM\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = ${SEARCH_URL}{searchTerms} IE - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.delta-homes.com/web/?type=ds&ts=1388687579&from=wpm0102&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&q={searchTerms} IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.certified-toolbar.com?si=66807&st=bs&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&q={searchTerms} IE - HKLM\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://websearch.searchesplace.info/?l=1&q={searchTerms}&pid=512&r=2013/08/02&hid=2071807166&lg=EN&cc=PL&unqvl=30 IE - HKLM\..\SearchScopes\{FD7259DA-80E7-49F6-AAE9-CE3992BCB732}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}&st=6&barid={53C66E56-2CF7-11E2-BA65-001D92B82F58} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=hp&from=wpm0226&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&ts=1393410178 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=ds&from=wpm0226&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&ts=1393410178&type=default&q={searchTerms} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Default_Page_URL = about:newtab IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=hp&from=wpm0226&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&ts=1393410178 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Bar = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q= IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Start Default_Page_URL = about:newtab IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Start Page = about:newtab IE - HKCU\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTo2.dll (Conduit Ltd.) IE - HKCU\..\SearchScopes,bProtectorDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} IE - HKCU\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b} IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=5C0B001D92B82F58&affID=122303&tsp=4931 IE - HKCU\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://searchab.com/?aff=7&uid=f2d87a7b-4de9-11e2-badb-001d92b82f58&q={searchTerms} IE - HKCU\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.qvo6.com/web/?utm_source=b&utm_medium=cor&from=cor&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&ts=1373968689 IE - HKCU\..\SearchScopes\{479B6259-4AB5-4D59-8A0B-F09535E85E87}: "URL" = http://websearch.ask.com/custom/java/redirect?client=ie&tb=ORJ&o=100000026&src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000 IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.com/search?cid={99712F41-812A-4002-B671-FA899F91B366}&mid=c9480f7d548a4bb9aa0257ebddf0cf21-06ce4fc639803a2e3563922518183d8e94088cb9&lang=pl&ds=ik011&pr=&d=2012-11-05 16:27:46&v=14.2.0.1&pid=avg&sg=0&sap=dsp&q={searchTerms} IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.certified-toolbar.com?si=66807&st=bs&tid=6724&ver=5.6&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&q={searchTerms} IE - HKCU\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = http://search.certified-toolbar.com?si=66807&st=bs&tid=6724&ver=5.1&ts=1385314349140&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&q={searchTerms} IE - HKCU\..\SearchScopes\{DCDBBF03-BC10-457D-911F-EFB0321D22BE}: "URL" = ${SRCH_SCP_URL} IE - HKCU\..\SearchScopes\{FD7259DA-80E7-49F6-AAE9-CE3992BCB732}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}&st=6&barid={53C66E56-2CF7-11E2-BA65-001D92B82F58} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1:9421; IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "AutoConfigURL" = http://cdn1.browsersecurity.net/safe/cloud.js?si=66807&tid=6724 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Web Search" FF - prefs.js..browser.search.defaultengine: "Web Search" FF - prefs.js..browser.search.selectedEngine: "Web Search" FF - prefs.js..browser.search.order.1: "Web Search" FF - prefs.js..browser.search.useDBForOrder: false FF - prefs.js..browser.startup.homepage: "about:home" FF - prefs.js..keyword.URL: "http://search.certified-toolbar.com?si=66807&tid=6724&ver=5.1&ts=1385247600000.000008&tguid=66807-6724-1385314349140-6107A6B7726DE63181B51A679BCD62C5&st=chrome&q=" FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\17.3.0\\npsitesafety.dll () FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll File not found FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.0: C:\Program Files\Java\jre1.7.0_05\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@mcafee.com/McAfeeMssPlugin: C:\Program Files\McAfee Security Scan\3.8.141\npMcAfeeMss.dll (McAfee, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF - HKLM\Software\MozillaPlugins\@tools.bdupdater.com/BonanzaDealsLive Update;version=3: C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals) FF - HKLM\Software\MozillaPlugins\@tools.bdupdater.com/BonanzaDealsLive Update;version=9: C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.2: D:\Gry\VLC\npvlc.dll File not found FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\Gry\Adobe\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@powerchallenge.com/PowerLoader: C:\DOCUME~1\ADMINI~1\DANEAP~1\POWERC~1\nppowerloader.dll (Power Challenge Sweden AB) FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\avg@toolbar: C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\FireFoxExt\17.3.0.49 [2014-01-08 15:34:12 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\quick_start@gmail.com: C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\extensions\quick_start@gmail.com [2014-02-26 11:23:46 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{b64982b1-d112-42b5-b1e4-d3867c4533f8}: C:\Documents and Settings\All Users\Dane aplikacji\PC Performer Manager\2.3.811.154\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\FirefoxExtension [2012-11-17 11:27:33 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Extensions [2012-12-24 17:51:18 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\extensions [2012-12-24 17:51:22 | 000,000,000 | ---D | M] (uTorrentControl_v2) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6} [2013-12-11 18:35:53 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\6uc9rkrz.default\extensions [2013-12-11 18:35:54 | 000,000,000 | ---D | M] (HomeTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\6uc9rkrz.default\extensions\{487f499a-039d-416f-90d7-8ee8d015cb39} [2014-02-27 15:17:37 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions [2014-02-27 15:17:30 | 000,000,000 | ---D | M] (HomeTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\{487f499a-039d-416f-90d7-8ee8d015cb39} [2013-12-01 17:46:55 | 000,000,000 | ---D | M] (BonanzaDeals) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\{f9d03c26-0575-497e-821d-f7956d23e0ca} [2013-07-02 08:35:04 | 000,000,000 | ---D | M] (DealPly Shopping) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\addon@dealplyshopping.com [2013-08-11 09:33:33 | 000,000,000 | ---D | M] (saafe asaave) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\ebme0nsr@jkqsetj-.net [2013-02-02 10:25:46 | 000,000,000 | ---D | M] (Delta Toolbar) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\ffxtlbr@delta.com [2013-07-04 19:41:43 | 000,000,000 | ---D | M] (HolaSearch) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\ffxtlbr@holasearch.com [2013-06-30 17:38:53 | 000,000,000 | ---D | M] (SearchNewTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\ooai@eiiu.edu [2013-08-11 09:33:33 | 000,000,000 | ---D | M] (SearchNewTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\oqwdd@jgskv.edu [2013-06-30 17:38:53 | 000,000,000 | ---D | M] (saafe savea) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\p4oeoy2eei@a-ysw.com [2014-02-26 11:23:46 | 000,000,000 | ---D | M] ("Quick Start") -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\quick_start@gmail.com [2013-08-11 09:33:33 | 000,000,000 | ---D | M] (SearchNewTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\s_zpsa@lgmeumsez.net [2013-08-11 09:33:33 | 000,000,000 | ---D | M] (ssaVeensehyare) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\hpyjprjk.default\Extensions\wjk4pi@hiecbzw-.co.uk [2013-12-11 18:36:22 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\pg2bivza.default\extensions [2013-12-11 18:36:24 | 000,000,000 | ---D | M] (HomeTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\pg2bivza.default\extensions\{487f499a-039d-416f-90d7-8ee8d015cb39} [2013-12-11 18:36:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions [2013-12-11 18:36:28 | 000,000,000 | ---D | M] (HomeTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\{487f499a-039d-416f-90d7-8ee8d015cb39} [2013-11-25 11:42:20 | 000,000,000 | ---D | M] (DealPly Shopping) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\addon@dealplyshopping.com [2013-11-25 11:42:20 | 000,000,000 | ---D | M] (saafe asaave) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\ebme0nsr@jkqsetj-.net [2013-11-25 11:42:20 | 000,000,000 | ---D | M] (Delta Toolbar) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\ffxtlbr@delta.com [2013-11-25 11:42:18 | 000,000,000 | ---D | M] (HolaSearch) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\ffxtlbr@holasearch.com [2013-11-25 11:42:18 | 000,000,000 | ---D | M] (SearchNewTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\ooai@eiiu.edu [2013-11-25 11:42:18 | 000,000,000 | ---D | M] (SearchNewTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\oqwdd@jgskv.edu [2013-11-25 11:42:18 | 000,000,000 | ---D | M] (saafe savea) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\p4oeoy2eei@a-ysw.com [2013-11-25 11:42:18 | 000,000,000 | ---D | M] (SearchNewTab) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\s_zpsa@lgmeumsez.net [2013-11-25 11:42:18 | 000,000,000 | ---D | M] (ssaVeensehyare) -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\Solo_699600\Extensions\wjk4pi@hiecbzw-.co.uk [2013-12-11 18:35:10 | 000,002,015 | ---- | M] () -- C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\6uc9rkrz.default\searchplugins\Web Search.xml [2014-02-27 15:16:16 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-11-16 18:00:12 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF} [2012-11-16 18:00:20 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\staged [2014-02-27 15:16:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2014-02-27 15:16:18 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2014-01-02 16:33:50 | 000,000,587 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\delta-homes.xml [2013-12-11 18:35:10 | 000,002,015 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\Web Search.xml [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: delta-homes (Enabled) CHR - default_search_provider: search_url = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=ds&from=wpm0226&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX&ts=1393410178&type=default&q={searchTerms} CHR - default_search_provider: suggest_url = , CHR - homepage: http://www.delta-homes.com/?type=hp&ts=1388676824&from=wpm0102&uid=HitachiXHDS721616PLA380_PVC300Z2S6LDPJS6LDPJX CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\31.0.1650.63\pdf.dll CHR - plugin: Babylon ToolBar (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.8_0\BabylonChromeToolBar.dll CHR - plugin: SweetIM GC Helper (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.1.0.1_0\mgHelperGCFB.dll CHR - plugin: SweetIM GC Helper (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.0.0.1_0\mgHelperGC.dll CHR - plugin: Application Manager (Enabled) = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\spext.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Adobe Acrobat (Enabled) = D:\Gry\Adobe\Reader\Browser\nppdf32.dll CHR - plugin: Power Challenge Loader (Enabled) = C:\DOCUME~1\ADMINI~1\DANEAP~1\POWERC~1\nppowerloader.dll CHR - plugin: AVG SiteSafety plugin (Enabled) = C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\13.2.0\\npsitesafety.dll CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll CHR - plugin: Java(TM) Platform SE 7 U4 (Enabled) = C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll CHR - plugin: Java Deployment Toolkit 7.0.40.255 (Enabled) = C:\WINDOWS\system32\npDeployJava1.dll CHR - plugin: VLC Web Plugin (Enabled) = D:\Gry\VLC\npvlc.dll CHR - Extension: saafe asaave = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\agpojlmnbocopmnkielpfhpbgpklbdnl\1\ CHR - Extension: SearchNewTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ajkbhdnnlhlglkapmginifmenajhngld\1\ CHR - Extension: Zoomex = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\cmijbnhgpkmgonfdkkhmjhedjekcefep\3.2_0\ CHR - Extension: Destructoid Live = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\cnppfnoedimbhcckdaadmihapdmjoeci\1.0.5_0\ CHR - Extension: SearchNewTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dacmjofgflakbppgnalnpniefcgjhekh\1\ CHR - Extension: Claro Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dcillohgikpecbmgioknapdpcjofaafl\1.4_0\ CHR - Extension: Babylon Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.11_0\ CHR - Extension: uTorrentControl_v2 = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\10.15.0.562_0\ CHR - Extension: uTorrentControl_v2 = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\10.26.0.540_0\ CHR - Extension: uTorrentControl_v2 = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\10.26.0.540_0\nativeMessaging\nmHost CHR - Extension: JTV Live = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\eojkhidnkbolpneigllnelngopamnafa\0.99_0\ CHR - Extension: Delta Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.4_0\ CHR - Extension: hola Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\fagpjgjmoaccgkkpjeoinehnoaimnbla\1.1_0\ CHR - Extension: saafe savea = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hkiijbiahnphklbkajeopehcpchcmnkj\1\ CHR - Extension: BonanzaDeals = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ieadcoanfjloocmfafkebdnfefmohngj\3.5.0.0_0\ CHR - Extension: Lightning Newtab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\1.1.7.9\ CHR - Extension: Lightning Newtab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\1.1.8.4_0\ CHR - Extension: SweetIM for Facebook = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.2.0.0_0\ CHR - Extension: SearchNewTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lgcmccieojjpogkfacnmonpcjigmjddf\1\ CHR - Extension: HomeTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mogghledidghdiflflogciceeebapeke\5.1\ CHR - Extension: HomeTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mogghledidghdiflflogciceeebapeke\5.6_0\ CHR - Extension: HomeTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mogghledidghdiflflogciceeebapeke\5.7\ CHR - Extension: AVG Security Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\15.3.0.11_0\ CHR - Extension: AVG Security Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\17.0.1.12_0\ CHR - Extension: AVG Security Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\17.3.0.49_0\ CHR - Extension: Twitch Now = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nlmbdmpjmlijibeockamioakdpmhjnpk\1.0.831_0\ CHR - Extension: ssaVeensehyare = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\oeoeefclgmobgmnpbdblnkijfphnkpnp\1\ CHR - Extension: SweetPacks Chrome Extension = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.1.0.1_0\ CHR - Extension: No name found = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo\1.4.1\ CHR - Extension: DealPly Shopping = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ojcgaoafcmbadjkfdippkdddgkeaipbn\3.5.0.0_0\ CHR - Extension: GoPhoto.it = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.5_0\ CHR - Extension: GoPhoto.it = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_0\ CHR - Extension: saafe asaave = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\agpojlmnbocopmnkielpfhpbgpklbdnl\1\ CHR - Extension: SearchNewTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ajkbhdnnlhlglkapmginifmenajhngld\1\ CHR - Extension: Zoomex = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\cmijbnhgpkmgonfdkkhmjhedjekcefep\3.2_0\ CHR - Extension: Destructoid Live = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\cnppfnoedimbhcckdaadmihapdmjoeci\1.0.5_0\ CHR - Extension: SearchNewTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dacmjofgflakbppgnalnpniefcgjhekh\1\ CHR - Extension: Claro Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dcillohgikpecbmgioknapdpcjofaafl\1.4_0\ CHR - Extension: Babylon Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.11_0\ CHR - Extension: uTorrentControl_v2 = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\10.15.0.562_0\ CHR - Extension: uTorrentControl_v2 = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\10.26.0.540_0\ CHR - Extension: uTorrentControl_v2 = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\10.26.0.540_0\nativeMessaging\nmHost CHR - Extension: JTV Live = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\eojkhidnkbolpneigllnelngopamnafa\0.99_0\ CHR - Extension: Delta Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde\1.4_0\ CHR - Extension: hola Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\fagpjgjmoaccgkkpjeoinehnoaimnbla\1.1_0\ CHR - Extension: saafe savea = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hkiijbiahnphklbkajeopehcpchcmnkj\1\ CHR - Extension: BonanzaDeals = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ieadcoanfjloocmfafkebdnfefmohngj\3.5.0.0_0\ CHR - Extension: Lightning Newtab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\1.1.7.9\ CHR - Extension: Lightning Newtab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\1.1.8.4_0\ CHR - Extension: SweetIM for Facebook = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.2.0.0_0\ CHR - Extension: SearchNewTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lgcmccieojjpogkfacnmonpcjigmjddf\1\ CHR - Extension: HomeTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mogghledidghdiflflogciceeebapeke\5.1\ CHR - Extension: HomeTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mogghledidghdiflflogciceeebapeke\5.6_0\ CHR - Extension: HomeTab = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mogghledidghdiflflogciceeebapeke\5.7\ CHR - Extension: AVG Security Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\15.3.0.11_0\ CHR - Extension: AVG Security Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\17.0.1.12_0\ CHR - Extension: AVG Security Toolbar = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof\17.3.0.49_0\ CHR - Extension: Twitch Now = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nlmbdmpjmlijibeockamioakdpmhjnpk\1.0.831_0\ CHR - Extension: ssaVeensehyare = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\oeoeefclgmobgmnpbdblnkijfphnkpnp\1\ CHR - Extension: SweetPacks Chrome Extension = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj\1.1.0.1_0\ CHR - Extension: No name found = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo\1.4.1\ CHR - Extension: DealPly Shopping = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ojcgaoafcmbadjkfdippkdddgkeaipbn\3.5.0.0_0\ CHR - Extension: GoPhoto.it = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.5_0\ CHR - Extension: GoPhoto.it = C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk\1.6_0\ O1 HOSTS File: ([2013-05-02 13:35:38 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (ssaVeensehyare ) - {07D4629D-772B-655C-E0CF-778EA24A2850} - C:\Documents and Settings\All Users\Dane aplikacji\ssaVeensehyare\51fb64c0c0c07.dll () O2 - BHO: (MSS+ Identifier) - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.) O2 - BHO: (Babylon toolbar helper) - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.9.12\bh\BabylonToolbar.dll File not found O2 - BHO: (saafe asaave) - {3284638B-CDE4-4497-3488-DF4E0DBF4B49} - C:\Documents and Settings\All Users\Dane aplikacji\saafe asaave\51e14f522127c.dll () O2 - BHO: (IETabPage Class) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files\SupTab\SupTab.dll (Thinknice Co. Limited) O2 - BHO: (DealPly Shopping) - {4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7} - C:\Program Files\DealPly\DealPlyIE.dll (DealPly) O2 - BHO: (SearchNewTab) - {588453CF-D5CB-EEFA-5EA1-5EBC7AB42CC6} - C:\Documents and Settings\All Users\Dane aplikacji\SearchNewTab\51d06ac8bf1f6.dll () O2 - BHO: (SearchNewTab) - {69E55BC2-2BC3-7413-34DF-C00893148AF8} - C:\Documents and Settings\All Users\Dane aplikacji\SearchNewTab\51e14f923128c.dll () O2 - BHO: (uTorrentControl_v2 Toolbar) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTo2.dll (Conduit Ltd.) O2 - BHO: (saafe savea) - {75530E84-7BD8-2618-C4B5-05121D41D376} - C:\Documents and Settings\All Users\Dane aplikacji\saafe savea\51d06a9bbf88c.dll () O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.7.0_05\bin\ssv.dll (Oracle Corporation) O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.3.0.49\AVG Secure Search_toolbar.dll (AVG Secure Search) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.) O2 - BHO: (SearchNewTab) - {B7A86902-791C-7B66-399D-6B4927A4B9B0} - C:\Documents and Settings\All Users\Dane aplikacji\SearchNewTab\51fb64d649eb6.dll () O2 - BHO: (delta Helper Object) - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files\Delta\delta\1.8.21.5\bh\delta.dll (Delta-search.com) O2 - BHO: (HomeTab) - {c5925fcd-25aa-4668-81bd-ed79feca424e} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech LTD.) O2 - BHO: (Zoomex) - {D997E923-3C29-C108-44B0-1B5737337216} - C:\Documents and Settings\All Users\Dane aplikacji\Zoomex\50dc598760835.dll () O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.7.0_05\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (holasearch Helper Object) - {DFF9B2DA-EF99-4B26-83CB-7058299999D8} - C:\Program Files\holasearch\holasearch\1.8.16.16\bh\holasearch.dll (holasearch.com) O2 - BHO: (BonanzaDeals) - {fe063412-bea4-4d76-8ed3-183be6220d17} - C:\Program Files\BonanzaDeals\BonanzaDealsIE.dll (BonanzaDeals) O3 - HKLM\..\Toolbar: (uTorrentControl_v2 Toolbar) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files\uTorrentControl_v2\prxtbuTo2.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Delta Toolbar) - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files\Delta\delta\1.8.21.5\deltaTlbr.dll (Delta-search.com) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.3.0.49\AVG Secure Search_toolbar.dll (AVG Secure Search) O3 - HKLM\..\Toolbar: (Babylon Toolbar) - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.6.9.12\BabylonToolbarTlbr.dll File not found O3 - HKLM\..\Toolbar: (Holasearch Toolbar) - {C510DFFB-0AFE-484C-BA40-CED5B74C4EEF} - C:\Program Files\holasearch\holasearch\1.8.16.16\holasearchTlbr.dll (holasearch.com) O3 - HKLM\..\Toolbar: (HomeTab) - {c5925fcd-25aa-4668-81bd-ed79feca424e} - C:\Program Files\HomeTab\IE\HomeTab.dll (Simply Tech LTD.) O3 - HKCU\..\Toolbar\WebBrowser: (uTorrentControl_v2 Toolbar) - {7473B6BD-4691-4744-A82B-7854EB3D70B6} - C:\Program Files\uTorrentControl_v2\prxtbuTo2.dll (Conduit Ltd.) O4 - HKLM..\Run: [Aeria Ignite] C:\Program Files\Aeria Games\Ignite\aeriaignite.exe (Aeria Games & Entertainment) O4 - HKLM..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe" File not found O4 - HKLM..\Run: [fst_pl_19] C:\Program Files\fst_pl_19\fst_pl_19.exe () O4 - HKLM..\Run: [fst_pl_31] C:\Program Files\fst_pl_31\fst_pl_31.exe () O4 - HKLM..\Run: [fst_pl_73] C:\Program Files\fst_pl_73\fst_pl_73.exe () O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe () O4 - HKLM..\Run: [PrivitizeVPN] C:\Program Files\PrivitizeVPN\PrivitizeVPN.exe (OOO Industry) O4 - HKLM..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.) O4 - HKLM..\Run: [Sweetpacks Communicator] C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (SweetIM Technologies Ltd.) O4 - HKLM..\Run: [upfst_pl_31.exe] C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\fst_pl_31\upfst_pl_31.exe () O4 - HKLM..\Run: [vProt] C:\Program Files\AVG Secure Search\vprot.exe () O4 - HKLM..\Run: [Windows] C:\WINDOWS\services.exe () O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Akamai\netsession_win.exe (Akamai Technologies, Inc.) O4 - HKCU..\Run: [DAEMON Tools Lite] D:\Gry\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd) O4 - HKCU..\Run: [Melodx] "C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\melodx.com\Melodx\1.0.6.2\Melodx.exe" -c File not found O4 - HKCU..\Run: [NextLive] C:\Documents and Settings\Administrator\Dane aplikacji\newnext.me\nengine.dll (NewNextDotMe) O4 - HKCU..\Run: [se] C:\Users\user\AppData\Roaming\SkypEmoticons\SE.exe /minimized File not found O4 - HKCU..\Run: [Steam] D:\Gry\STeam\steam.exe (Valve Corporation) O4 - HKCU..\Run: [uTorrent] "D:\Gry\Toorent\uTorrent.exe" /MINIMIZED File not found O4 - HKCU..\Run: [winupdater] C:\Windupdt\winupdate.exe () O4 - Startup: C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\wostock416.exe () O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.141\SSScheduler.exe (McAfee, Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoChangeStartMenu = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableChangePassword = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableLockWorkStation = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O9 - Extra Button: ArcaVir >> - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - D:\Gry\ArcaVir\WebExtensions\ie\ArcaIEExt.dll File not found O9 - Extra 'Tools' menuitem : ArcaVir >> - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - D:\Gry\ArcaVir\WebExtensions\ie\ArcaIEExt.dll File not found O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe File not found O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab (Java Plug-in 10.25.2) O16 - DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Java Plug-in 1.6.0_27) O16 - DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Java Plug-in 10.25.2) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1F952D2C-C307-41CB-9C8B-C60AC9E234C9}: DhcpNameServer = 192.168.1.1 192.168.1.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\17.3.0\ViProtocol.dll (AVG Secure Search) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windupdt\winupdate.exe) - C:\Windupdt\winupdate.exe () O20 - HKLM Winlogon: UserInit - (C:\Windupdt\winupdate.exe) - C:\Windupdt\winupdate.exe () O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - File not found O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Administrator\Dane aplikacji\.cichyLauncher\wallpaper.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Administrator\Dane aplikacji\.cichyLauncher\wallpaper.bmp O30 - LSA: Authentication Packages - (nwprovau) - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2011-10-14 15:03:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2013-10-09 14:45:13 | 000,005,757 | ---- | M] () - C:\autoupdt.htm -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk /p \??\C:) O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-03-05 20:51:58 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Moje dokumenty\OTL.exe [2014-03-05 20:51:54 | 000,259,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Moje dokumenty\OTH.exe [2014-03-05 20:46:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Pulpit\otl i ot [2014-03-05 20:33:25 | 000,000,000 | ---D | C] -- C:\FRST [2014-03-05 20:32:15 | 001,145,344 | ---- | C] (Farbar) -- C:\Documents and Settings\Administrator\Moje dokumenty\FRST.exe [2014-03-03 16:21:32 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC [2014-03-01 00:41:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Menu Start\Programy\Minecraft [2014-03-01 00:19:04 | 287,423,479 | ---- | C] (TeamExtreme ) -- C:\Documents and Settings\Administrator\Moje dokumenty\Minecraft 1.7.4.exe [2014-02-28 11:22:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\uTorrentControl_v2 [2014-02-28 11:22:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Apple [2014-02-27 15:16:26 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2014-02-27 09:43:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Ad Muncher [2014-02-27 09:43:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Menu Start\Programy\Ad Muncher [2014-02-27 09:37:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Apple Computer [2014-02-27 09:37:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Dane aplikacji\Apple Computer [2014-02-27 09:35:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Apple [2014-02-27 09:34:56 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update [2014-02-27 09:34:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Apple [2014-02-27 09:32:16 | 038,494,576 | ---- | C] (Apple Inc.) -- C:\Documents and Settings\Administrator\Moje dokumenty\SafariSetup.exe [2014-02-27 09:21:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Game Booster 3 [2014-02-27 09:21:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit [2014-02-27 09:19:58 | 004,359,432 | ---- | C] (IObit ) -- C:\Documents and Settings\Administrator\Moje dokumenty\gamebooster.exe [2014-02-27 09:10:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\fst_pl_73 [2014-02-27 09:10:45 | 000,000,000 | ---D | C] -- C:\Program Files\fst_pl_73 [2014-02-26 11:24:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\WinZipper [2014-02-26 11:24:17 | 000,000,000 | ---D | C] -- C:\Program Files\WinZipper [2014-02-26 11:24:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Dane aplikacji\WinZipper [2014-02-26 11:23:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\IePluginService [2014-02-26 11:23:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Dane aplikacji\SupTab [2014-02-26 11:23:54 | 000,000,000 | ---D | C] -- C:\Program Files\SupTab [2014-02-22 23:18:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Pulpit\sadasd [2014-02-22 15:13:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\RegClean Pro [2014-02-22 15:13:44 | 000,000,000 | ---D | C] -- C:\Program Files\RegClean Pro [2014-02-20 15:48:00 | 000,333,032 | ---- | C] (GreatSoft) -- C:\Documents and Settings\Administrator\Moje dokumenty\R.A.U. - RIKITIKI (CYWIL - ĆWIERĆFINAŁ ŻYWY RAP).exe [2014-02-13 17:54:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\McAfee Security Scan Plus [2014-02-13 17:53:48 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan [2014-02-06 17:55:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\McAfee [2014-02-05 15:40:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\PunkBuster [2014-02-05 15:06:11 | 296,330,688 | ---- | C] (Activision ) -- C:\Documents and Settings\Administrator\Moje dokumenty\CoD4MW-1.6-PatchSetup.exe [2014-02-05 15:04:08 | 039,968,152 | ---- | C] (Activision ) -- C:\Documents and Settings\Administrator\Moje dokumenty\CoD4MW-1.6-1.7-PatchSetup.exe [2014-02-05 13:43:01 | 000,114,352 | ---- | C] (GameRanger Technologies) -- C:\Documents and Settings\Administrator\Moje dokumenty\GameRangerSetup (1).exe [2014-02-04 17:12:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Thraex Software [2014-02-04 16:28:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Pulpit\Jurrasic Park Operation Genesis [13 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-03-05 20:52:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Moje dokumenty\OTL.exe [2014-03-05 20:51:56 | 000,259,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Moje dokumenty\OTH.exe [2014-03-05 20:50:29 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2014-03-05 20:49:15 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014-03-05 20:32:21 | 001,145,344 | ---- | M] (Farbar) -- C:\Documents and Settings\Administrator\Moje dokumenty\FRST.exe [2014-03-05 19:29:48 | 000,000,327 | RHS- | M] () -- C:\boot.ini [2014-03-05 19:14:53 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014-03-03 08:30:06 | 000,042,784 | ---- | M] (AVG Technologies) -- C:\WINDOWS\System32\drivers\avgtpx86.sys [2014-03-03 08:29:37 | 000,000,262 | ---- | M] () -- C:\WINDOWS\tasks\Game_Booster_AutoUpdate.job [2014-03-03 08:29:33 | 000,000,924 | ---- | M] () -- C:\WINDOWS\tasks\BonanzaDealsLiveUpdateTaskMachineCore.job [2014-03-03 08:29:33 | 000,000,290 | ---- | M] () -- C:\WINDOWS\tasks\Express FilesUpdate.job [2014-03-03 08:29:31 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2014-03-03 08:29:31 | 000,000,574 | -H-- | M] () -- C:\WINDOWS\tasks\schedule!567381930.job [2014-03-03 08:29:31 | 000,000,522 | -H-- | M] () -- C:\WINDOWS\tasks\ZoomExUpdaterTask{98D57C3D-FE5E-4DE5-A7F2-C572C2A61934}.job [2014-03-03 08:29:31 | 000,000,282 | ---- | M] () -- C:\WINDOWS\tasks\GoforFilesUpdate.job [2014-03-03 08:29:25 | 000,000,332 | ---- | M] () -- C:\WINDOWS\tasks\OFMLBXKXJ.job [2014-03-02 16:53:30 | 000,000,456 | -H-- | M] () -- C:\WINDOWS\tasks\Norton Security Scan for Administrator.job [2014-03-02 16:52:00 | 000,000,928 | ---- | M] () -- C:\WINDOWS\tasks\BonanzaDealsLiveUpdateTaskMachineUA.job [2014-03-02 16:39:01 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2014-03-02 16:37:01 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2014-03-02 16:35:07 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2014-03-02 01:50:06 | 000,000,436 | ---- | M] () -- C:\WINDOWS\tasks\Protected Search.job [2014-03-02 01:50:06 | 000,000,426 | ---- | M] () -- C:\WINDOWS\tasks\SystemSockets.job [2014-03-02 01:06:19 | 000,000,422 | ---- | M] () -- C:\WINDOWS\tasks\Browser Updater.job [2014-03-01 23:47:29 | 000,000,288 | ---- | M] () -- C:\WINDOWS\tasks\EPUpdater.job [2014-03-01 19:22:19 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\WolfTeam-PL.lnk [2014-03-01 19:21:54 | 000,471,743 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Bez názvuf.jpg [2014-03-01 18:27:15 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\remek.bmp [2014-03-01 10:54:36 | 006,932,067 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Nodus 1.7.4.zip [2014-03-01 00:41:21 | 000,002,193 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Minecraft.lnk [2014-03-01 00:37:07 | 287,423,479 | ---- | M] (TeamExtreme ) -- C:\Documents and Settings\Administrator\Moje dokumenty\Minecraft 1.7.4.exe [2014-03-01 00:31:22 | 000,268,804 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Krewella - Alive (TORI & Squidwardz Remix) (mp3cut.net).mp3 [2014-03-01 00:19:13 | 002,733,819 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Krewella - Alive (TORI & Squidwardz Remix).mp3 [2014-02-28 11:22:04 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2014-02-27 18:29:02 | 000,000,669 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Opera 20.lnk [2014-02-27 15:16:27 | 000,000,724 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2014-02-27 09:41:36 | 002,152,168 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\CodecPerformerSetup.exe [2014-02-27 09:39:11 | 000,016,564 | -H-- | M] () -- C:\WINDOWS\System32\mlfcache.dat [2014-02-27 09:33:43 | 038,494,576 | ---- | M] (Apple Inc.) -- C:\Documents and Settings\Administrator\Moje dokumenty\SafariSetup.exe [2014-02-27 09:21:32 | 000,000,571 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Switch to Gaming Mode.lnk [2014-02-27 09:21:32 | 000,000,559 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Game Booster 3.lnk [2014-02-27 09:20:12 | 004,359,432 | ---- | M] (IObit ) -- C:\Documents and Settings\Administrator\Moje dokumenty\gamebooster.exe [2014-02-26 19:41:09 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\CS GO.bmp [2014-02-26 19:27:05 | 000,134,872 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2014-02-26 16:56:17 | 000,000,076 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Counter-Strike Global Offensive.url [2014-02-26 11:24:15 | 000,773,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcr100.dll [2014-02-26 11:24:15 | 000,421,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msvcp100.dll [2014-02-23 22:11:12 | 000,139,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2014-02-23 22:07:17 | 000,281,768 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2014-02-23 21:47:50 | 000,281,768 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.ex0 [2014-02-23 18:42:21 | 012,778,064 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\_nfsmvpatch1.3.zip [2014-02-23 15:58:02 | 006,980,955 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Cywil - Uniwersalny żołnierz.mp3 [2014-02-23 15:57:23 | 007,856,162 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Sobota - VII Nie kradnij (prod.Matheo) - X PRZYKAZAŃ AUDIO.mp3 [2014-02-23 15:56:45 | 002,368,359 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Lajon (PGL) - Jak rozpętałem wojnę (ŻywyRap! 2 Ćwierćfinał) prod. Recingto.mp3 [2014-02-23 15:54:20 | 001,584,057 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Śmieszne Wyzwiska.mp3 [2014-02-22 23:23:11 | 000,094,444 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\flatout 2.rar [2014-02-22 23:23:04 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\flatout.bmp [2014-02-22 23:00:41 | 254,070,262 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\turnajovymod_7_1.zip [2014-02-22 19:41:55 | 002,213,877 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Static Revenger & Vandalism - Vegas (Slayback Remix).mp3 [2014-02-22 15:13:47 | 000,000,725 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\RegClean Pro.lnk [2014-02-22 15:13:06 | 000,000,968 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Kontynuuj instalację ReForce 1.10.lnk [2014-02-22 15:12:28 | 000,680,520 | ---- | M] ( ) -- C:\Documents and Settings\Administrator\Moje dokumenty\reforce-1.10.exe [2014-02-22 12:11:32 | 000,778,139 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\grzes.rar [2014-02-22 12:11:01 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\grzes.bmp [2014-02-21 21:32:44 | 002,364,135 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Lajon (PGL) - Jak rozpętałem wojnę (ŻywyRap! 2 Ćwierćfinał) prod. Recingto (1).mp3 [2014-02-21 17:10:06 | 000,000,348 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\player001 (3).zip [2014-02-21 16:44:17 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\player001 (2).zip [2014-02-21 16:13:21 | 004,552,163 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Skrillex - Rock N' Roll (Will Take You to the Mountain).mp3 [2014-02-21 16:05:57 | 000,010,933 | -HS- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Folder.jpg [2014-02-21 16:05:57 | 000,010,933 | -HS- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\AlbumArt_{599B3D8A-05EF-4A17-9774-1EAF4CA7C0B1}_Large.jpg [2014-02-21 16:05:51 | 000,002,514 | -HS- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\AlbumArtSmall.jpg [2014-02-21 16:05:51 | 000,002,514 | -HS- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\AlbumArt_{599B3D8A-05EF-4A17-9774-1EAF4CA7C0B1}_Small.jpg [2014-02-21 15:51:33 | 000,000,075 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Counter-Strike.url [2014-02-21 10:36:09 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2014-02-21 10:36:09 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2014-02-20 20:49:46 | 000,326,514 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\reklama.rar [2014-02-20 20:48:26 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\reklama.bmp [2014-02-20 15:48:00 | 000,333,032 | ---- | M] (GreatSoft) -- C:\Documents and Settings\Administrator\Moje dokumenty\R.A.U. - RIKITIKI (CYWIL - ĆWIERĆFINAŁ ŻYWY RAP).exe [2014-02-20 15:44:15 | 002,037,968 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\600PcAxoSvui.128.mp3 [2014-02-20 15:40:06 | 006,976,731 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Cywil - Uniwersalny żołnierz (1).mp3 [2014-02-20 14:47:56 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\staty.bmp [2014-02-19 16:59:58 | 009,311,437 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\gsaf.zip [2014-02-19 15:15:26 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\fk.bmp [2014-02-18 20:10:35 | 000,001,018 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Kontynuuj instalację Hamachi.lnk [2014-02-18 20:09:57 | 000,643,880 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Hamachi_Downloader (1).exe [2014-02-18 19:42:19 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\blok.bmp [2014-02-18 19:00:45 | 000,000,627 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Giants Obywatel Kabuto.lnk [2014-02-18 16:17:10 | 002,986,038 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\ub od creep.bmp [2014-02-17 16:31:33 | 000,000,356 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\player001 (1).zip [2014-02-17 16:30:58 | 000,000,344 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\player001.zip [2014-02-15 20:13:09 | 002,972,431 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\cstrike (1).rar [2014-02-14 18:11:51 | 000,000,567 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Total Commander.lnk [2014-02-14 16:53:15 | 000,131,405 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\zlodziej.rar [2014-02-13 17:54:11 | 000,001,777 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\McAfee Security Scan Plus.lnk [2014-02-13 17:54:11 | 000,001,771 | ---- | M] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk [2014-02-13 17:30:53 | 008,161,620 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\2xSSY AVENGER KURWA MAC HAHA.zip [2014-02-13 15:01:38 | 000,416,399 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\oferty_pracy (6).pdf [2014-02-12 19:52:04 | 000,365,879 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\powod.rar [2014-02-12 16:59:41 | 000,017,346 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\19698_339114656205173_1398560297_n.jpg [2014-02-12 16:57:26 | 000,110,649 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1174819_437253533057951_573406560_n.jpg [2014-02-12 16:57:04 | 000,114,397 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1175590_437253879724583_1921232068_n.jpg [2014-02-12 16:54:38 | 000,060,157 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1782069_504268409689796_640715808_n.jpg [2014-02-12 16:54:26 | 000,074,053 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1558548_504268376356466_2099241590_n.jpg [2014-02-12 16:52:50 | 000,074,762 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1620851_504268423023128_1247428347_n.jpg [2014-02-12 08:21:07 | 000,416,784 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\oferty_pracy (5).pdf [2014-02-07 12:01:54 | 000,018,775 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\EA.zip [2014-02-07 11:51:12 | 000,912,572 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Aim cod4.rar [2014-02-05 17:04:04 | 001,213,263 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Crack do Cod4 MW.rar [2014-02-05 15:50:35 | 000,139,152 | ---- | M] () -- C:\Documents and Settings\Administrator\Dane aplikacji\PnkBstrK.sys [2014-02-05 15:50:09 | 000,794,408 | ---- | M] () -- C:\WINDOWS\System32\pbsvc.exe [2014-02-05 15:47:52 | 000,794,408 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\pbsvc.exe [2014-02-05 15:42:46 | 000,276,378 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Call of Duty - Multikeygen.rar [2014-02-05 15:10:58 | 296,330,688 | ---- | M] (Activision ) -- C:\Documents and Settings\Administrator\Moje dokumenty\CoD4MW-1.6-PatchSetup.exe [2014-02-05 15:04:51 | 039,968,152 | ---- | M] (Activision ) -- C:\Documents and Settings\Administrator\Moje dokumenty\CoD4MW-1.6-1.7-PatchSetup.exe [2014-02-05 14:07:01 | 000,000,391 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2014-02-05 14:07:01 | 000,000,391 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2014-02-05 14:06:00 | 000,000,275 | ---- | M] () -- C:\WINDOWS\game.ini [2014-02-05 13:43:02 | 000,114,352 | ---- | M] (GameRanger Technologies) -- C:\Documents and Settings\Administrator\Moje dokumenty\GameRangerSetup (1).exe [2014-02-04 17:51:08 | 000,010,047 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\FREE MINECRAFT PREMIUM ACCOUNT GENERATOR.odt [2014-02-04 17:47:10 | 000,675,988 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Minecraft (1).exe [2014-02-04 16:29:15 | 000,000,673 | ---- | M] () -- C:\Documents and Settings\Administrator\Pulpit\Jurasic Park.lnk [2014-02-04 16:27:13 | 185,509,740 | ---- | M] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Jurrasic Park Operation Genesis.rar [2014-02-04 06:36:36 | 000,033,864 | ---- | M] () -- C:\WINDOWS\Launcher.exe [13 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-03-05 19:29:48 | 000,933,376 | ---- | C] () -- C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\wostock416.exe [2014-03-01 19:21:46 | 000,471,743 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Bez názvuf.jpg [2014-03-01 18:27:15 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\remek.bmp [2014-03-01 10:53:56 | 006,932,067 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Nodus 1.7.4.zip [2014-03-01 00:41:21 | 000,002,193 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Minecraft.lnk [2014-03-01 00:31:20 | 000,268,804 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Krewella - Alive (TORI & Squidwardz Remix) (mp3cut.net).mp3 [2014-03-01 00:18:57 | 002,733,819 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Krewella - Alive (TORI & Squidwardz Remix).mp3 [2014-02-27 18:29:02 | 000,000,669 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Opera 20.lnk [2014-02-27 18:29:02 | 000,000,669 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Opera 20.lnk [2014-02-27 15:16:27 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk [2014-02-27 15:16:27 | 000,000,724 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2014-02-27 09:40:55 | 002,152,168 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\CodecPerformerSetup.exe [2014-02-27 09:39:11 | 000,016,564 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat [2014-02-27 09:35:04 | 000,000,284 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2014-02-27 09:34:57 | 000,001,830 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Apple Software Update.lnk [2014-02-27 09:21:42 | 000,000,262 | ---- | C] () -- C:\WINDOWS\tasks\Game_Booster_AutoUpdate.job [2014-02-27 09:21:32 | 000,000,571 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Switch to Gaming Mode.lnk [2014-02-27 09:21:32 | 000,000,559 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Game Booster 3.lnk [2014-02-26 19:41:06 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\CS GO.bmp [2014-02-26 16:56:17 | 000,000,076 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Counter-Strike Global Offensive.url [2014-02-23 18:37:38 | 012,778,064 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\_nfsmvpatch1.3.zip [2014-02-22 23:23:03 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\flatout.bmp [2014-02-22 23:22:39 | 000,094,444 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\flatout 2.rar [2014-02-22 22:50:27 | 254,070,262 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\turnajovymod_7_1.zip [2014-02-22 19:41:31 | 002,213,877 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Static Revenger & Vandalism - Vegas (Slayback Remix).mp3 [2014-02-22 15:13:47 | 000,000,725 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\RegClean Pro.lnk [2014-02-22 15:13:05 | 000,000,968 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Kontynuuj instalację ReForce 1.10.lnk [2014-02-22 15:12:07 | 000,680,520 | ---- | C] ( ) -- C:\Documents and Settings\Administrator\Moje dokumenty\reforce-1.10.exe [2014-02-22 12:11:10 | 000,778,139 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\grzes.rar [2014-02-22 12:10:59 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\grzes.bmp [2014-02-21 21:32:44 | 002,364,135 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Lajon (PGL) - Jak rozpętałem wojnę (ŻywyRap! 2 Ćwierćfinał) prod. Recingto (1).mp3 [2014-02-21 17:10:05 | 000,000,348 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\player001 (3).zip [2014-02-21 16:44:15 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\player001 (2).zip [2014-02-21 16:05:59 | 000,010,933 | -HS- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Folder.jpg [2014-02-21 16:05:59 | 000,010,933 | -HS- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\AlbumArt_{599B3D8A-05EF-4A17-9774-1EAF4CA7C0B1}_Large.jpg [2014-02-21 16:05:59 | 000,002,514 | -HS- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\AlbumArtSmall.jpg [2014-02-21 16:05:59 | 000,002,514 | -HS- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\AlbumArt_{599B3D8A-05EF-4A17-9774-1EAF4CA7C0B1}_Small.jpg [2014-02-21 15:50:58 | 000,000,075 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Counter-Strike.url [2014-02-20 20:48:30 | 000,326,514 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\reklama.rar [2014-02-20 20:48:26 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\reklama.bmp [2014-02-20 15:51:47 | 002,368,359 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Lajon (PGL) - Jak rozpętałem wojnę (ŻywyRap! 2 Ćwierćfinał) prod. Recingto.mp3 [2014-02-20 15:44:08 | 002,037,968 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\600PcAxoSvui.128.mp3 [2014-02-20 15:40:59 | 007,856,162 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Sobota - VII Nie kradnij (prod.Matheo) - X PRZYKAZAŃ AUDIO.mp3 [2014-02-20 15:39:50 | 006,976,731 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Cywil - Uniwersalny żołnierz (1).mp3 [2014-02-20 15:39:13 | 006,980,955 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Cywil - Uniwersalny żołnierz.mp3 [2014-02-20 14:47:55 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\staty.bmp [2014-02-19 16:57:22 | 009,311,437 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\gsaf.zip [2014-02-19 15:15:22 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\fk.bmp [2014-02-18 20:10:35 | 000,001,018 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Kontynuuj instalację Hamachi.lnk [2014-02-18 20:09:52 | 000,643,880 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Hamachi_Downloader (1).exe [2014-02-18 19:42:19 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\blok.bmp [2014-02-18 19:00:47 | 000,000,627 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Giants Obywatel Kabuto.lnk [2014-02-18 16:17:10 | 002,986,038 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\ub od creep.bmp [2014-02-17 16:31:33 | 000,000,356 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\player001 (1).zip [2014-02-17 16:30:57 | 000,000,344 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\player001.zip [2014-02-15 20:12:37 | 002,972,431 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\cstrike (1).rar [2014-02-14 16:53:07 | 000,131,405 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\zlodziej.rar [2014-02-13 17:54:11 | 000,001,777 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\McAfee Security Scan Plus.lnk [2014-02-13 17:53:56 | 000,001,771 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk [2014-02-13 17:30:43 | 008,161,620 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\2xSSY AVENGER KURWA MAC HAHA.zip [2014-02-13 15:01:36 | 000,416,399 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\oferty_pracy (6).pdf [2014-02-12 19:51:55 | 000,365,879 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\powod.rar [2014-02-12 16:59:34 | 000,017,346 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\19698_339114656205173_1398560297_n.jpg [2014-02-12 16:57:26 | 000,110,649 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1174819_437253533057951_573406560_n.jpg [2014-02-12 16:57:01 | 000,114,397 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1175590_437253879724583_1921232068_n.jpg [2014-02-12 16:54:38 | 000,060,157 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1782069_504268409689796_640715808_n.jpg [2014-02-12 16:54:22 | 000,074,053 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1558548_504268376356466_2099241590_n.jpg [2014-02-12 16:52:38 | 000,074,762 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\1620851_504268423023128_1247428347_n.jpg [2014-02-12 08:21:05 | 000,416,784 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\oferty_pracy (5).pdf [2014-02-07 12:01:53 | 000,018,775 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\EA.zip [2014-02-07 11:51:09 | 000,912,572 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Aim cod4.rar [2014-02-05 17:03:59 | 001,213,263 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Crack do Cod4 MW.rar [2014-02-05 15:51:44 | 000,281,768 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2014-02-05 15:49:16 | 000,794,408 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe [2014-02-05 15:47:37 | 000,794,408 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\pbsvc.exe [2014-02-05 15:42:41 | 000,276,378 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Call of Duty - Multikeygen.rar [2014-02-05 14:07:01 | 000,000,391 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2014-02-05 14:07:01 | 000,000,391 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2014-02-05 14:06:37 | 000,139,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2014-02-05 14:06:37 | 000,139,152 | ---- | C] () -- C:\Documents and Settings\Administrator\Dane aplikacji\PnkBstrK.sys [2014-02-05 14:06:18 | 000,281,768 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2014-02-05 14:06:18 | 000,281,768 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.ex0 [2014-02-05 14:06:02 | 000,076,888 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2014-02-04 17:51:07 | 000,010,047 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\FREE MINECRAFT PREMIUM ACCOUNT GENERATOR.odt [2014-02-04 17:47:08 | 000,675,988 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Minecraft (1).exe [2014-02-04 16:29:15 | 000,000,673 | ---- | C] () -- C:\Documents and Settings\Administrator\Pulpit\Jurasic Park.lnk [2014-02-04 16:24:27 | 185,509,740 | ---- | C] () -- C:\Documents and Settings\Administrator\Moje dokumenty\Jurrasic Park Operation Genesis.rar [2013-11-25 17:40:32 | 000,000,069 | ---- | C] () -- C:\WINDOWS\Zsucen.ini [2013-11-24 18:32:59 | 000,033,864 | ---- | C] () -- C:\WINDOWS\Launcher.exe [2013-11-24 10:03:02 | 000,016,304 | ---- | C] () -- C:\WINDOWS\System32\apl003.sys [2013-11-24 10:03:02 | 000,013,232 | ---- | C] () -- C:\WINDOWS\System32\apf003.sys [2013-11-03 10:36:20 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2013-10-28 07:52:03 | 000,728,858 | ---- | C] () -- C:\WINDOWS\System32\unins000.exe [2013-10-28 07:52:02 | 000,002,158 | ---- | C] () -- C:\WINDOWS\System32\unins000.dat [2013-10-09 14:44:29 | 000,071,279 | ---- | C] () -- C:\Program Files\panorama3.png [2013-10-09 14:44:29 | 000,067,021 | ---- | C] () -- C:\Program Files\panorama1.png [2013-10-09 14:44:29 | 000,061,562 | ---- | C] () -- C:\Program Files\panorama0.png [2013-10-09 14:44:29 | 000,052,916 | ---- | C] () -- C:\Program Files\panorama5.png [2013-10-09 14:44:29 | 000,049,292 | ---- | C] () -- C:\Program Files\panorama2.png [2013-10-09 14:44:29 | 000,007,706 | ---- | C] () -- C:\Program Files\mojang.png [2013-10-09 14:44:29 | 000,005,213 | ---- | C] () -- C:\Program Files\mclogo.png [2013-10-09 14:44:29 | 000,003,557 | ---- | C] () -- C:\Program Files\backover.jpg [2013-10-09 14:44:29 | 000,003,461 | ---- | C] () -- C:\Program Files\backdown.jpg [2013-10-09 14:44:29 | 000,002,817 | ---- | C] () -- C:\Program Files\backoff.jpg [2013-10-09 14:44:29 | 000,002,514 | ---- | C] () -- C:\Program Files\panorama4.png [2013-10-09 14:44:29 | 000,001,847 | ---- | C] () -- C:\Program Files\zombie.png [2013-10-09 14:44:29 | 000,000,910 | ---- | C] () -- C:\Program Files\moon.png [2013-10-09 14:44:29 | 000,000,799 | ---- | C] () -- C:\Program Files\sun.png [2013-10-09 14:44:29 | 000,000,174 | ---- | C] () -- C:\Program Files\black.png [2013-10-09 14:44:28 | 000,042,123 | ---- | C] () -- C:\Program Files\pumpkinblur.png [2013-10-09 14:44:28 | 000,024,157 | ---- | C] () -- C:\Program Files\vignette.png [2013-10-09 14:44:28 | 000,012,227 | ---- | C] () -- C:\Program Files\particlefield.png [2013-10-09 14:44:28 | 000,005,446 | ---- | C] () -- C:\Program Files\watercolor.png [2013-10-09 14:44:28 | 000,004,367 | ---- | C] () -- C:\Program Files\wolf_tame.png [2013-10-09 14:44:28 | 000,004,352 | ---- | C] () -- C:\Program Files\wolf.png [2013-10-09 14:44:28 | 000,003,806 | ---- | C] () -- C:\Program Files\pig.png [2013-10-09 14:44:28 | 000,003,396 | ---- | C] () -- C:\Program Files\cavespider.png [2013-10-09 14:44:28 | 000,003,223 | ---- | C] () -- C:\Program Files\wolf_angry.png [2013-10-09 14:44:28 | 000,003,013 | ---- | C] () -- C:\Program Files\pigzombie.png [2013-10-09 14:44:28 | 000,003,000 | ---- | C] () -- C:\Program Files\creeper.png [2013-10-09 14:44:28 | 000,002,662 | ---- | C] () -- C:\Program Files\pigman.png [2013-10-09 14:44:28 | 000,002,554 | ---- | C] () -- C:\Program Files\spider.png [2013-10-09 14:44:28 | 000,002,434 | ---- | C] () -- C:\Program Files\sheep.png [2013-10-09 14:44:28 | 000,001,782 | ---- | C] () -- C:\Program Files\silverfish.png [2013-10-09 14:44:28 | 000,001,661 | ---- | C] () -- C:\Program Files\sheep_fur.png [2013-10-09 14:44:28 | 000,001,538 | ---- | C] () -- C:\Program Files\mapbg.png [2013-10-09 14:44:28 | 000,001,360 | ---- | C] () -- C:\Program Files\char.png [2013-10-09 14:44:28 | 000,001,338 | ---- | C] () -- C:\Program Files\cow.png [2013-10-09 14:44:28 | 000,001,242 | ---- | C] () -- C:\Program Files\enderman_eyes.png [2013-10-09 14:44:28 | 000,001,062 | ---- | C] () -- C:\Program Files\mapicons.png [2013-10-09 14:44:28 | 000,000,943 | ---- | C] () -- C:\Program Files\ghast_fire.png [2013-10-09 14:44:28 | 000,000,918 | ---- | C] () -- C:\Program Files\squid.png [2013-10-09 14:44:28 | 000,000,896 | ---- | C] () -- C:\Program Files\ghast.png [2013-10-09 14:44:28 | 000,000,894 | ---- | C] () -- C:\Program Files\skeleton.png [2013-10-09 14:44:28 | 000,000,868 | ---- | C] () -- C:\Program Files\shadow.png [2013-10-09 14:44:28 | 000,000,737 | ---- | C] () -- C:\Program Files\enderman.png [2013-10-09 14:44:28 | 000,000,633 | ---- | C] () -- C:\Program Files\slime.png [2013-10-09 14:44:28 | 000,000,492 | ---- | C] () -- C:\Program Files\chicken.png [2013-10-09 14:44:28 | 000,000,379 | ---- | C] () -- C:\Program Files\saddle.png [2013-10-09 14:44:28 | 000,000,306 | ---- | C] () -- C:\Program Files\water.png [2013-10-09 14:44:28 | 000,000,255 | ---- | C] () -- C:\Program Files\spider_eyes.png [2013-10-09 14:44:27 | 000,026,673 | ---- | C] () -- C:\Program Files\items.png [2013-10-09 14:44:27 | 000,025,237 | ---- | C] () -- C:\Program Files\grasscolor.png [2013-10-09 14:44:27 | 000,017,693 | ---- | C] () -- C:\Program Files\foliagecolor.png [2013-10-09 14:44:27 | 000,014,210 | ---- | C] () -- C:\Program Files\gui.png [2013-10-09 14:44:27 | 000,013,013 | ---- | C] () -- C:\Program Files\unknown_pack.png [2013-10-09 14:44:27 | 000,004,981 | ---- | C] () -- C:\Program Files\crash_logo.png [2013-10-09 14:44:27 | 000,003,667 | ---- | C] () -- C:\Program Files\default.png [2013-10-09 14:44:27 | 000,003,153 | ---- | C] () -- C:\Program Files\furnace.png [2013-10-09 14:44:27 | 000,002,795 | ---- | C] () -- C:\Program Files\container.png [2013-10-09 14:44:27 | 000,002,761 | ---- | C] () -- C:\Program Files\inventory.png [2013-10-09 14:44:27 | 000,002,756 | ---- | C] () -- C:\Program Files\crafting.png [2013-10-09 14:44:27 | 000,002,540 | ---- | C] () -- C:\Program Files\rain.png [2013-10-09 14:44:27 | 000,002,389 | ---- | C] () -- C:\Program Files\boat.png [2013-10-09 14:44:27 | 000,002,254 | ---- | C] () -- C:\Program Files\cart.png [2013-10-09 14:44:27 | 000,002,121 | ---- | C] () -- C:\Program Files\trap.png [2013-10-09 14:44:27 | 000,002,105 | ---- | C] () -- C:\Program Files\explosion.png [2013-10-09 14:44:27 | 000,002,055 | ---- | C] () -- C:\Program Files\allitems.png [2013-10-09 14:44:27 | 000,001,865 | ---- | C] () -- C:\Program Files\largechest.png [2013-10-09 14:44:27 | 000,001,829 | ---- | C] () -- C:\Program Files\slot.png [2013-10-09 14:44:27 | 000,001,339 | ---- | C] () -- C:\Program Files\chest.png [2013-10-09 14:44:27 | 000,001,260 | ---- | C] () -- C:\Program Files\sign.png [2013-10-09 14:44:27 | 000,001,096 | ---- | C] () -- C:\Program Files\xporb.png [2013-10-09 14:44:27 | 000,001,029 | ---- | C] () -- C:\Program Files\door.png [2013-10-09 14:44:27 | 000,001,011 | ---- | C] () -- C:\Program Files\background.png [2013-10-09 14:44:27 | 000,000,946 | ---- | C] () -- C:\Program Files\footprint.png [2013-10-09 14:44:27 | 000,000,818 | ---- | C] () -- C:\Program Files\snow.png [2013-10-09 14:44:27 | 000,000,322 | ---- | C] () -- C:\Program Files\arrows.png [2013-10-09 14:44:27 | 000,000,231 | ---- | C] () -- C:\Program Files\dial.png [2013-10-09 14:44:26 | 000,078,021 | ---- | C] () -- C:\Program Files\kz.png [2013-10-09 14:44:26 | 000,073,685 | ---- | C] () -- C:\Program Files\terrain.png [2013-10-09 14:44:26 | 000,027,267 | ---- | C] () -- C:\Program Files\pack.png [2013-10-09 14:44:26 | 000,013,711 | ---- | C] () -- C:\Program Files\clouds.png [2013-10-09 14:44:26 | 000,010,480 | ---- | C] () -- C:\Program Files\WMPTemplateHue898[1]..bmp [2013-10-09 14:44:26 | 000,006,038 | ---- | C] () -- C:\Program Files\icons.png [2013-10-09 14:44:26 | 000,003,636 | ---- | C] () -- C:\Program Files\bg.png [2013-10-09 14:44:26 | 000,002,358 | ---- | C] () -- C:\Program Files\arrow_green_normal[3].bmp [2013-10-09 14:44:26 | 000,002,155 | ---- | C] () -- C:\Program Files\power.png [2013-10-09 14:44:26 | 000,001,992 | ---- | C] () -- C:\Program Files\particles.png [2013-10-09 14:44:26 | 000,001,218 | ---- | C] () -- C:\Program Files\diamond_1.png [2013-10-09 14:44:26 | 000,001,207 | ---- | C] () -- C:\Program Files\light_normal.png [2013-10-09 14:44:26 | 000,001,198 | ---- | C] () -- C:\Program Files\gold_1.png [2013-10-09 14:44:26 | 000,001,139 | ---- | C] () -- C:\Program Files\cloth_1.png [2013-10-09 14:44:26 | 000,001,133 | ---- | C] () -- C:\Program Files\iron_1.png [2013-10-09 14:44:26 | 000,000,964 | ---- | C] () -- C:\Program Files\chain_1.png [2013-10-09 14:44:26 | 000,000,724 | ---- | C] () -- C:\Program Files\diamond_2.png [2013-10-09 14:44:26 | 000,000,710 | ---- | C] () -- C:\Program Files\cloth_2.png [2013-10-09 14:44:26 | 000,000,708 | ---- | C] () -- C:\Program Files\gold_2.png [2013-10-09 14:44:26 | 000,000,686 | ---- | C] () -- C:\Program Files\iron_2.png [2013-10-09 14:44:26 | 000,000,523 | ---- | C] () -- C:\Program Files\chain_2.png [2013-10-09 14:44:26 | 000,000,123 | ---- | C] () -- C:\Program Files\note[2].gif [2013-10-09 14:44:26 | 000,000,076 | ---- | C] () -- C:\Program Files\important[1].gif [2013-08-05 15:20:46 | 000,133,915 | ---- | C] () -- C:\WINDOWS\services.exe [2013-08-02 15:42:26 | 007,261,768 | ---- | C] () -- C:\WINDOWS\System32\SpoonUninstall.exe [2013-08-02 15:42:26 | 000,017,864 | ---- | C] () -- C:\WINDOWS\System32\SpoonUninstall-dBpoweramp Music Converter.dat [2013-05-07 14:05:37 | 000,037,013 | ---- | C] () -- C:\Documents and Settings\Administrator\Dane aplikacji\Bigfoot-RC.cfg [2013-05-02 15:32:07 | 000,114,176 | ---- | C] () -- C:\Documents and Settings\Administrator\Dane aplikacji\BabMaint.exe [2013-05-02 12:32:29 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2013-05-02 12:32:29 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2013-05-02 12:32:29 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2013-05-02 12:32:29 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2013-05-02 12:32:29 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2013-02-02 09:01:35 | 000,118,784 | RHS- | C] () -- C:\WINDOWS\System32\mcastmibm.dll [2013-01-31 09:03:09 | 000,000,414 | RHS- | C] () -- C:\Documents and Settings\All Users\ntuser.pol [2012-12-24 18:55:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\Access.dat [2012-11-03 14:40:54 | 000,000,275 | ---- | C] () -- C:\WINDOWS\game.ini [2012-09-30 11:55:38 | 000,225,280 | ---- | C] () -- C:\Documents and Settings\Administrator\Dane aplikacji\[FILENAME].exe [2012-09-27 17:08:18 | 000,131,110 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1935655697-789336058-682003330-1004-0.dat [2012-09-24 16:31:21 | 001,405,154 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1935655697-789336058-682003330-500-0.dat [2012-09-23 22:12:59 | 000,131,110 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1935655697-789336058-682003330-1005-0.dat [2012-09-23 14:10:32 | 000,140,506 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2012-05-27 13:17:24 | 000,047,241 | ---- | C] () -- C:\Documents and Settings\Administrator\Menu Start.rar [2012-04-19 15:07:46 | 000,072,160 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2012-04-13 10:43:36 | 000,001,127 | ---- | C] () -- C:\WINDOWS\System32\wstcode16b.dll [2011-11-12 13:15:00 | 000,057,856 | ---- | C] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-10-16 14:40:45 | 000,000,138 | ---- | C] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [color=#E56717]========== ZeroAccess Check ==========[/color] [2011-10-15 19:38:08 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2010-04-16 16:37:03 | 001,506,304 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2009-02-09 11:22:07 | 000,473,088 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2004-08-03 23:44:14 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 949 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:24721E3C @Alternate Data Stream - 126 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:373E1720 < End of report >