GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2014-03-15 12:41:16 Windows 5.1.2600 Dodatek Service Pack 2 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-5 ST3250410AS rev.3.AAC 232,89GB Running: qumlgiic.exe; Driver: C:\DOCUME~1\UKASZ~1\USTAWI~1\Temp\kfrirkob.sys ---- System - GMER 2.1 ---- SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwAddBootEntry [0xB501DB10] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwAssignProcessToJobObject [0xB501E5EE] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwClose [0xB506243E] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateEvent [0xB502A5E0] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateEventPair [0xB502A62C] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateIoCompletion [0xB502A7C6] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateKey [0xB5061DF2] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateMutant [0xB502A54E] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateSection [0xB502A670] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateSemaphore [0xB502A596] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateThread [0xB501EB24] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwCreateTimer [0xB502A780] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwDebugActiveProcess [0xB501F3DC] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwDeleteBootEntry [0xB501DB76] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwDeleteKey [0xB5062B04] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwDeleteValueKey [0xB5062DBA] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwDuplicateObject [0xB5022B58] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwEnumerateKey [0xB506296F] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwEnumerateValueKey [0xB50627DA] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwLoadDriver [0xB501D75E] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwModifyBootEntry [0xB501DBDC] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwNotifyChangeKey [0xB5022F4E] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwNotifyChangeMultipleKeys [0xB501FE6C] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenEvent [0xB502A60A] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenEventPair [0xB502A64E] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenIoCompletion [0xB502A7EA] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenKey [0xB506214E] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenMutant [0xB502A574] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenProcess [0xB5022452] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenSection [0xB502A6FE] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenSemaphore [0xB502A5BE] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenThread [0xB502283A] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwOpenTimer [0xB502A7A4] SSDT \??\C:\WINDOWS\system32\drivers\aswSP.sys ZwProtectVirtualMemory [0xB50D30CC] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwQueryKey [0xB5062655] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwQueryObject [0xB501FD38] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwQueryValueKey [0xB50624A7] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwQueueApcThread [0xB501F88E] SSDT \??\C:\WINDOWS\system32\drivers\aswSP.sys ZwRenameKey [0xB50E0F22] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwRestoreKey [0xB5061438] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSetBootEntryOrder [0xB501DC42] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSetBootOptions [0xB501DCA8] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSetContextThread [0xB501F256] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSetSystemInformation [0xB501D7F8] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSetSystemPowerState [0xB501D9CE] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSetValueKey [0xB5062C0B] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwShutdownSystem [0xB501D95C] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSuspendProcess [0xB501F5A6] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSuspendThread [0xB501F708] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwSystemDebugControl [0xB501DA56] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwTerminateProcess [0xB501F094] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwTerminateThread [0xB501F236] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwVdmControl [0xB501DD0E] SSDT \??\C:\WINDOWS\system32\drivers\aswSnx.sys ZwWriteVirtualMemory [0xB501E64A] ---- Kernel code sections - GMER 2.1 ---- .text ntoskrnl.exe!_abnormal_termination + 223 804E2EF4 4 Bytes JMP E9B502A7 .text ntoskrnl.exe!_abnormal_termination + 39B 804E306C 12 Bytes [42, DC, 01, B5, A8, DC, 01, ...] .text ntoskrnl.exe!_abnormal_termination + 443 804E3114 12 Bytes [A6, F5, 01, B5, 08, F7, 01, ...] PAGE ntoskrnl.exe!ZwReplyWaitReceivePortEx + 3CC 8056A5DC 4 Bytes CALL B5020519 \??\C:\WINDOWS\system32\drivers\aswSnx.sys .text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xB78BB380, 0x550AF5, 0xE8000020] ---- User code sections - GMER 2.1 ---- .text C:\WINDOWS\System32\smss.exe[612] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\csrss.exe[668] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\csrss.exe[668] KERNEL32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\winlogon.exe[696] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\winlogon.exe[696] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\services.exe[748] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\services.exe[748] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\lsass.exe[760] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\lsass.exe[760] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\nvsvc32.exe[940] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\nvsvc32.exe[940] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\svchost.exe[972] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\svchost.exe[972] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\svchost.exe[1040] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\svchost.exe[1040] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\System32\svchost.exe[1072] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\System32\svchost.exe[1072] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\Documents and Settings\Łukasz\Pulpit\torek\qumlgiic.exe[1096] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\Documents and Settings\Łukasz\Pulpit\torek\qumlgiic.exe[1096] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\svchost.exe[1156] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\svchost.exe[1156] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\svchost.exe[1180] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\svchost.exe[1180] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\Program Files\AVAST Software\Avast\AvastSvc.exe[1336] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\Program Files\AVAST Software\Avast\AvastSvc.exe[1336] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\spoolsv.exe[1688] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\spoolsv.exe[1688] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\Explorer.EXE[1748] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\Explorer.EXE[1748] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\Rundll32.exe[1900] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\Rundll32.exe[1900] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\system32\RUNDLL32.EXE[1948] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\system32\RUNDLL32.EXE[1948] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\Program Files\AVAST Software\Avast\AvastUI.exe[1968] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\Program Files\AVAST Software\Avast\AvastUI.exe[1968] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\WINDOWS\System32\alg.exe[2284] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\WINDOWS\System32\alg.exe[2284] kernel32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\Program Files\Mozilla Firefox\firefox.exe[2772] ntdll.dll!LdrLoadDll 7C9161CA 5 Bytes JMP 00451FFD C:\Program Files\Mozilla Firefox\mozglue.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[2772] ntdll.dll!RtlDosSearchPath_U + 1D1 7C916FCA 1 Byte [62] .text C:\Program Files\Mozilla Firefox\firefox.exe[2772] ntdll.dll!LdrUnloadDll 7C91718B 5 Bytes JMP 003F03FC .text C:\Program Files\Mozilla Firefox\firefox.exe[2772] KERNEL32.dll!lstrlenW + 43 7C809A7C 7 Bytes JMP 01B10455 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[2772] KERNEL32.dll!MapViewOfFileEx + 6A 7C80B788 7 Bytes JMP 01B1049D C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[2772] KERNEL32.dll!lstrcpyn + 70 7C810381 7 Bytes JMP 01725A06 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[2772] KERNEL32.dll!GetBinaryTypeW + 80 7C8678BC 1 Byte [62] .text C:\Program Files\Mozilla Firefox\firefox.exe[2772] GDI32.dll!SetWindowOrgEx + 15E 77F1960B 7 Bytes JMP 01B104C4 C:\Program Files\Mozilla Firefox\xul.dll ---- User IAT/EAT - GMER 2.1 ---- IAT C:\WINDOWS\system32\services.exe[748] @ C:\WINDOWS\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 003D0002 IAT C:\WINDOWS\system32\services.exe[748] @ C:\WINDOWS\system32\services.exe [KERNEL32.dll!CreateProcessW] 003D0000 ---- Devices - GMER 2.1 ---- AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.sys AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.sys AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.sys AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.sys AttachedDevice \FileSystem\Fastfat \Fat fltMgr.sys ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0 Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x0F 0x63 0x03 0xA2 ... Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet) Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0 Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x0F 0x63 0x03 0xA2 ... ---- Files - GMER 2.1 ---- File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\8adf220ab283c9ae53dd11bfb960d1d2.png 139837 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\8ee4a21dbb6ad0de36aa4d094774ca7d.png 355191 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\8f1e5eec24aecf8fef42f16e507fd62f.png 17819 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\90066741adf6cbe98110dbe2bda0a0f8.png 17134 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\94e03be3025991a4b64f8ad61a5c4578.png 131499 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\98567d3d9fc766f1b0af1c878fac88a7.png 290482 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\01bd0706f246592666fb400a4cb7a274.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\15ebc3592d66c46f5eb5bcd1d5ac302b.png 50186 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\1fb8c34ac6c92d97e7a2b009d5447352.png 37562 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\2a758a92a5ad87446a3c97c07dedacf3.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\2d9280b4bf75d104c7345325fb5ff469.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\4bf71aa4ec03d3bfe841daff58b10869.png 31088 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\c2ab215ed1b686f0dc8c9fe436c8e927.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\c4cb101420e4ac991366276a1d3608fa.png 110202 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\c5ede3ebd21ec082cf01e792725a68e0.png 19020 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\c60c787ba10b43aeb45c8b2857e69c9c.png 17830 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\ca369f2ffdc88169d218240627755838.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\d0ec21a344c036a23dcb692ac6f107ef.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\d3bf810f306c1dd9b962aae347abe8ea.png 180097 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\d4bc6ecd1bd2cdeaa2e5315c379af646.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\d7a2748079903e4402b92f1e2dbcc193.png 268358 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\c1f6835ef50c9ee17a5096fdee43a8e1.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\81fbff6c1a792ec264ad927b2384d7f2.png 50186 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\da97dd22f3d9567f3b727757d5dc9298.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\db0026502ff497d97628a1caef05f05b.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\df9054989b056c64eb83fc829d2e538a.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\528720bd231ee372957f8c23c613e29a.png 35326 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\54ca05af79216af63c7cab306f917966.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\5d841d35374d9402b6852e64f6734b97.png 47990 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\6468ce0c4458751f88b012ff0fa7b69e.png 30243 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\7086b9fef2ded3a2915252c37f4ecb74.png 39768 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\70cbe5eac6c216b254624f5aec98ccb1.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\721d5a7a26fc70c394c8b6e798f19870.png 50186 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\7856b1df7b19e63805b50c5d741ed738.png 190911 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\9c5183c7867aa4fb22fd41885873c31c.png 19020 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\9cd1d842d61f0ae8281b1548dd5a0ae6.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\a06c7d1c53c3a9353db18bfd584ee3ee.png 297327 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\a0d3f8675426312524fb1776fca28d14.png 262533 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\a1cdf230c41891086cd58d6a689e827a.png 280050 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\a9b91dc1c7ed40fc84b9f6a1aadb0ba4.png 226166 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\ab242cd24d9db4bc493edc73ac6d197f.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\ae9705b2e3a1717cbb6e1c1f1b503a06.png 101695 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\b36b9b2121f39edc9b1769b8dea623d8.png 6857 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\b37902d07635b260aa429e3691338153.png 346149 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\b467c80f54a73091b84fd33085316b00.png 352562 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\b8e57f459aa53882869f388500341592.png 266893 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\b9c3ae4ead37d481bad00ce54deb8337.png 31548 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\bd49050d6da811214733ef46bfc42a20.png 0 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\be729544214fe67c2379122500b2171d.png 219590 bytes File C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\kgklx7om.default\thumbnails\c06640f0d5bb5c249ae7d1611ed33ba5.png 191974 bytes ---- EOF - GMER 2.1 ----