Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-03-2014 01 Ran by ABC (administrator) on AAA-BBB on 07-04-2014 21:40:14 Running from C:\Documents and Settings\ABC\Pulpit Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (Realtek Semiconductor Corp.) C:\windows\SOUNDMAN.EXE (Intel Corporation) C:\windows\system32\IProsetMonitor.exe (NVIDIA Corporation) C:\windows\system32\nvsvc32.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SoundMan] - C:\windows\SOUNDMAN.EXE [577536 2007-04-16] (Realtek Semiconductor Corp.) HKLM\...\Run: [NvCplDaemon] - C:\windows\system32\NvCpl.dll [13529088 2008-05-16] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.pl/ SearchScopes: HKLM - DefaultScope value is missing. BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\windows\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\windows\system32\SHELL32.dll (Microsoft Corporation) DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} http://download.gigabyte.com.tw/object/Dldrv.ocx DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab Handler: AutorunsDisabled\skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler: lid - {5C135180-9973-46D9-ABF4-148267CBB8BF} - C:\WINDOWS\System32\msvidctl.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 185.29.84.10 FireFox: ======== FF ProfilePath: C:\Documents and Settings\ABC\Dane aplikacji\Mozilla\Firefox\Profiles\po9rievb.default-1396658956890 FF Homepage: google.pl FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\windows\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npupd62.dll () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\upd62i9x.dll () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\upd62int.dll () FF Extension: FireFox Tweak - C:\Documents and Settings\ABC\Dane aplikacji\Mozilla\Firefox\Profiles\po9rievb.default-1396658956890\Extensions\firefoxtweak@pribic.am [2014-04-05] FF Extension: Element Hiding Helper for Adblock Plus - C:\Documents and Settings\ABC\Dane aplikacji\Mozilla\Firefox\Profiles\po9rievb.default-1396658956890\Extensions\elemhidehelper@adblockplus.org.xpi [2014-04-05] FF Extension: leethax.net extension - C:\Documents and Settings\ABC\Dane aplikacji\Mozilla\Firefox\Profiles\po9rievb.default-1396658956890\Extensions\leethax@leethax.net.xpi [2014-04-06] FF Extension: Adblock Plus - C:\Documents and Settings\ABC\Dane aplikacji\Mozilla\Firefox\Profiles\po9rievb.default-1396658956890\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-05] FF Extension: Greasemonkey - C:\Documents and Settings\ABC\Dane aplikacji\Mozilla\Firefox\Profiles\po9rievb.default-1396658956890\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-04-05] ========================== Services (Whitelisted) ================= S3 ICCS; C:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) R2 Intel(R) PROSet Monitoring Service; C:\windows\system32\IProsetMonitor.exe [121600 2013-04-05] (Intel Corporation) S4 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-04-05] (Oracle Corporation) S4 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S4 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) ==================== Drivers (Whitelisted) ==================== R3 ALCXWDM; C:\windows\System32\drivers\ALCXWDM.SYS [4122368 2008-09-24] (Realtek Semiconductor Corp.) S3 BTCAMDRV; C:\windows\System32\DRIVERS\BTCamDrv.sys [219264 2006-11-01] (Windows (R) 2000 DDK provider) S3 CCDECODE; C:\windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) S3 etdrv; C:\windows\etdrv.sys [17488 2013-02-01] (Windows (R) 2000 DDK provider) S3 evserial7; C:\windows\System32\DRIVERS\evserial7.sys [57352 2011-10-31] (ELTIMA Software) S4 FsUsbExDisk; C:\WINDOWS\System32\FsUsbExDisk.SYS [36608 2009-03-31] () S3 gdrv; C:\windows\gdrv.sys [17488 2014-03-31] (Windows (R) 2000 DDK provider) R3 ManyCam; C:\windows\System32\DRIVERS\mcvidrv.sys [34432 2012-10-11] (ManyCam LLC) S3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) R3 MBLAUDRV; C:\windows\System32\drivers\BTCamAudioDrv.sys [13312 2008-03-31] (Windows (R) 2000 DDK provider) R3 MBLAUDRVOUT; C:\windows\System32\drivers\BTCamAudioDrvOut.sys [18304 2008-03-31] (Windows (R) 2000 DDK provider) R3 mcaudrv_simple; C:\windows\System32\drivers\mcaudrv.sys [22656 2013-01-31] (ManyCam LLC) S3 msloop; C:\windows\System32\DRIVERS\loop.sys [4992 2001-08-17] (Microsoft Corporation) S3 NdisIP; C:\windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) S3 R5BaseSmc; C:\windows\System32\DRIVERS\smccard.sys [12800 2011-12-06] (OEM) S3 s0016bus; C:\windows\System32\DRIVERS\s0016bus.sys [89256 2008-05-16] (MCCI Corporation) S3 s0016mdfl; C:\windows\System32\DRIVERS\s0016mdfl.sys [15016 2008-05-16] (MCCI Corporation) S3 s0016mdm; C:\windows\System32\DRIVERS\s0016mdm.sys [120744 2008-05-16] (MCCI Corporation) S3 s0016mgmt; C:\windows\System32\DRIVERS\s0016mgmt.sys [114216 2008-05-16] (MCCI Corporation) S3 s0016nd5; C:\windows\System32\DRIVERS\s0016nd5.sys [25512 2008-05-16] (MCCI Corporation) S3 s0016obex; C:\windows\System32\DRIVERS\s0016obex.sys [110632 2008-05-16] (MCCI Corporation) S3 s0016unic; C:\windows\System32\DRIVERS\s0016unic.sys [115752 2008-05-16] (MCCI Corporation) S3 s116bus; C:\windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation) S3 s116mdfl; C:\windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation) S3 s116mdm; C:\windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation) S3 s116mgmt; C:\windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation) S3 s116nd5; C:\windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation) S3 s116obex; C:\windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation) S3 s116unic; C:\windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation) S3 s125bus; C:\windows\System32\DRIVERS\s125bus.sys [83336 2007-04-24] (MCCI Corporation) S3 s125mdfl; C:\windows\System32\DRIVERS\s125mdfl.sys [15112 2007-04-24] (MCCI Corporation) S3 s125mdm; C:\windows\System32\DRIVERS\s125mdm.sys [108680 2007-04-24] (MCCI Corporation) S3 s125mgmt; C:\windows\System32\DRIVERS\s125mgmt.sys [100488 2007-04-24] (MCCI Corporation) S3 s125obex; C:\windows\System32\DRIVERS\s125obex.sys [98696 2007-04-24] (MCCI Corporation) S3 SE27bus; C:\windows\System32\DRIVERS\SE27bus.sys [61600 2006-09-18] (MCCI) S3 SE27mdfl; C:\windows\System32\DRIVERS\SE27mdfl.sys [9360 2006-09-18] (MCCI) S3 SE27mdm; C:\windows\System32\DRIVERS\SE27mdm.sys [97184 2006-09-18] (MCCI) S3 SE27mgmt; C:\windows\System32\DRIVERS\SE27mgmt.sys [88688 2006-09-18] (MCCI) S3 se27nd5; C:\windows\System32\DRIVERS\se27nd5.sys [18704 2006-09-18] (MCCI) S3 SE27obex; C:\windows\System32\DRIVERS\SE27obex.sys [86560 2006-09-18] (MCCI) S3 se27unic; C:\windows\System32\DRIVERS\se27unic.sys [90800 2006-09-18] (MCCI) S3 tap0901; C:\windows\System32\DRIVERS\tap0901.sys [26624 2011-12-15] (The OpenVPN Project) S3 tapavpn; C:\windows\System32\DRIVERS\tapavpn.sys [24320 2009-07-03] (Steganos GmbH) S3 taphss; C:\windows\System32\DRIVERS\taphss.sys [32768 2012-01-05] (AnchorFree Inc) S3 VCSVADHWSer; C:\windows\System32\DRIVERS\vcsvad.sys [17792 2008-12-26] (Avnex) R0 vididr; C:\windows\System32\DRIVERS\vididr.sys [125472 2013-03-09] (Acronis) R0 vidsflt53; C:\windows\System32\DRIVERS\vsflt53.sys [83392 2013-03-09] (Acronis) S3 VSBC7; C:\windows\System32\DRIVERS\evsbc7.sys [32648 2011-10-31] (ELTIMA Software) S4 vsbus; C:\windows\System32\DRIVERS\vsb.sys [15264 2008-07-24] () S4 vserial; C:\windows\System32\DRIVERS\vserial.sys [47744 2008-07-24] () U5 GVTDrv; C:\windows\system32\Drivers\GVTDrv.sys [24944 2013-02-01] () U5 ScsiPort; C:\windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-08 02:00 - 2014-04-07 18:31 - 40632320 _____ () C:\windows\system32\config\software.old 2014-04-08 02:00 - 2014-04-07 18:31 - 05505024 _____ () C:\windows\system32\config\system.old 2014-04-08 02:00 - 2014-04-07 18:31 - 04980736 _____ () C:\windows\system32\config\default.old 2014-04-08 02:00 - 2014-04-07 18:31 - 00057344 _____ () C:\windows\system32\config\security.old 2014-04-08 02:00 - 2014-04-07 18:31 - 00032768 _____ () C:\windows\system32\config\sam.old 2014-04-07 21:40 - 2014-04-07 21:40 - 00011492 _____ () C:\Documents and Settings\ABC\Pulpit\FRST.txt 2014-04-07 21:40 - 2014-04-07 21:40 - 00000000 ____D () C:\FRST 2014-04-07 16:31 - 2014-04-07 16:32 - 00065536 _____ () C:\windows\Minidump\Mini040714-02.dmp 2014-04-07 04:39 - 2008-04-13 20:46 - 00038912 _____ (Microsoft Corporation) C:\windows\system32\dllcache\avc.sys 2014-04-07 04:39 - 2008-04-13 20:46 - 00013696 _____ (Microsoft Corporation) C:\windows\system32\dllcache\avcstrm.sys 2014-04-07 04:39 - 2008-04-13 20:36 - 00014208 _____ (Microsoft Corporation) C:\windows\system32\dllcache\battc.sys 2014-04-07 04:39 - 2001-10-26 17:29 - 00382592 _____ (ATI Technologies Inc.) C:\windows\system32\dllcache\atidrab.dll 2014-04-07 04:39 - 2001-10-26 17:29 - 00342336 _____ (3Dfx Interactive, Inc.) C:\windows\system32\dllcache\banshee.dll 2014-04-07 04:39 - 2001-10-26 17:29 - 00268160 _____ (ATI Technologies Inc.) C:\windows\system32\dllcache\atidvai.dll 2014-04-07 04:39 - 2001-10-26 17:29 - 00144384 _____ (AVM GmbH) C:\windows\system32\dllcache\avmenum.dll 2014-04-07 04:39 - 2001-10-26 17:29 - 00137216 _____ (ATI Technologies Inc.) C:\windows\system32\dllcache\atidrae.dll 2014-04-07 04:39 - 2001-10-26 17:29 - 00104832 _____ (ATI Technologies Inc.) C:\windows\system32\dllcache\atiraged.dll 2014-04-07 04:39 - 2001-10-26 17:29 - 00096128 _____ (Microsoft Corporation) C:\windows\system32\dllcache\ati.dll 2014-04-07 04:39 - 2001-10-26 17:29 - 00087552 _____ (AVM GmbH) C:\windows\system32\dllcache\avmcoxp.dll 2014-04-07 04:39 - 2001-10-26 17:29 - 00037376 _____ (Microsoft Corporation) C:\windows\system32\dllcache\atievxx.exe 2014-04-07 04:39 - 2001-10-26 16:50 - 00097056 _____ (Broadcom Corporation) C:\windows\system32\dllcache\b57xp32.sys 2014-04-07 04:39 - 2001-10-26 16:50 - 00070528 _____ (ATI Technologies Inc.) C:\windows\system32\dllcache\atiragem.sys 2014-04-07 04:39 - 2001-10-26 16:49 - 00289664 _____ (ATI Technologies Inc.) C:\windows\system32\dllcache\atimpab.sys 2014-04-07 04:39 - 2001-10-26 16:49 - 00281600 _____ (ATI Technologies Inc.) C:\windows\system32\dllcache\atimtai.sys 2014-04-07 04:39 - 2001-10-26 16:49 - 00077696 _____ (ATI Technologies, Inc.) C:\windows\system32\dllcache\ati.sys 2014-04-07 04:39 - 2001-10-26 16:49 - 00075136 _____ (ATI Technologies Inc.) C:\windows\system32\dllcache\atimpae.sys 2014-04-07 04:39 - 2001-08-17 22:01 - 00036096 _____ (Microsoft Corporation) C:\windows\system32\dllcache\avcaudio.sys 2014-04-07 04:39 - 2001-08-17 21:28 - 00871388 _____ (BCM) C:\windows\system32\dllcache\bcmdm.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00049920 _____ () C:\windows\system32\dllcache\atirtcap.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00046464 _____ () C:\windows\system32\dllcache\atibt829.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00026880 _____ () C:\windows\system32\dllcache\atirtsnd.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00026624 _____ () C:\windows\system32\dllcache\ativxbar.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00023552 _____ () C:\windows\system32\dllcache\atixbar.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00019456 _____ () C:\windows\system32\dllcache\ativttxx.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00017152 _____ () C:\windows\system32\dllcache\atitvsnd.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00017152 _____ () C:\windows\system32\dllcache\atitunep.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00010240 _____ () C:\windows\system32\dllcache\atipcxxx.sys 2014-04-07 04:39 - 2001-08-17 20:49 - 00009472 _____ () C:\windows\system32\dllcache\ativmdcd.sys 2014-04-07 04:39 - 2001-08-17 20:48 - 00036128 _____ (3Dfx Interactive, Inc.) C:\windows\system32\dllcache\banshee.sys 2014-04-07 04:39 - 2001-08-17 20:19 - 00036992 _____ (Aztech Systems Ltd) C:\windows\system32\dllcache\aztw2320.sys 2014-04-07 04:39 - 2001-08-17 20:13 - 00089952 _____ (AVM GmbH) C:\windows\system32\dllcache\b1cbase.sys 2014-04-07 04:39 - 2001-08-17 20:13 - 00037568 _____ (AVM GmbH) C:\windows\system32\dllcache\avmwan.sys 2014-04-07 04:39 - 2001-08-17 20:11 - 00066557 _____ (Broadcom Corporation) C:\windows\system32\dllcache\bcm42u.sys 2014-04-07 04:39 - 2001-08-17 20:11 - 00054271 _____ (Broadcom Corporation) C:\windows\system32\dllcache\bcm42xx5.sys 2014-04-07 04:39 - 2001-08-17 20:11 - 00026568 _____ (Broadcom Corporation) C:\windows\system32\dllcache\bcm4e5.sys 2014-04-07 04:37 - 2008-04-13 20:46 - 00053376 _____ (Microsoft Corporation) C:\windows\system32\dllcache\1394bus.sys 2014-04-07 04:37 - 2008-04-13 20:46 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\dllcache\61883.sys 2014-04-07 04:37 - 2008-04-13 20:40 - 00012288 _____ (Microsoft Corporation) C:\windows\system32\dllcache\4mmdat.sys 2014-04-07 04:37 - 2002-08-29 08:00 - 00231552 _____ (Acer Laboratories Inc.) C:\windows\system32\dllcache\ac97ali.sys 2014-04-07 04:37 - 2002-08-29 08:00 - 00084480 _____ (VIA Technologies, Inc.) C:\windows\system32\dllcache\ac97via.sys 2014-04-07 04:37 - 2002-08-29 08:00 - 00010880 _____ (Aureal, Inc.) C:\windows\system32\dllcache\admjoy.sys 2014-04-07 04:37 - 2002-08-29 07:59 - 00036224 _____ (ADMtek Incorporated.) C:\windows\system32\dllcache\an983.sys 2014-04-07 04:37 - 2001-10-26 17:30 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\dllcache\agcgauge.ax 2014-04-07 04:37 - 2001-10-26 17:29 - 00689216 _____ (3dfx Interactive, Inc.) C:\windows\system32\dllcache\3dfxvs.dll 2014-04-07 04:37 - 2001-10-26 17:29 - 00462848 _____ (Aureal Inc.) C:\windows\system32\dllcache\a3dapi.dll 2014-04-07 04:37 - 2001-10-26 17:29 - 00098304 _____ (Aureal Semiconductor) C:\windows\system32\dllcache\a3d.dll 2014-04-07 04:37 - 2001-10-26 17:29 - 00061440 _____ (Kolorowy skaner płaski) C:\windows\system32\dllcache\acerscad.dll 2014-04-07 04:37 - 2001-10-26 17:29 - 00038400 _____ (Microsoft Corporation) C:\windows\system32\dllcache\8514a.dll 2014-04-07 04:37 - 2001-08-17 22:07 - 00101888 _____ (Microsoft Corporation) C:\windows\system32\dllcache\adpu160m.sys 2014-04-07 04:37 - 2001-08-17 22:07 - 00056960 _____ (Microsoft Corporation) C:\windows\system32\dllcache\aic78xx.sys 2014-04-07 04:37 - 2001-08-17 22:07 - 00055168 _____ (Microsoft Corporation) C:\windows\system32\dllcache\aic78u2.sys 2014-04-07 04:37 - 2001-08-17 22:06 - 00011264 _____ (Microsoft Corporation) C:\windows\system32\dllcache\1394vdbg.sys 2014-04-07 04:37 - 2001-08-17 21:53 - 00007424 _____ (Microsoft Corporation) C:\windows\system32\dllcache\adicvls.sys 2014-04-07 04:37 - 2001-08-17 21:52 - 00026496 _____ (Advanced System Products, Inc.) C:\windows\system32\dllcache\asc.sys 2014-04-07 04:37 - 2001-08-17 21:52 - 00023552 _____ (Microsoft Corporation) C:\windows\system32\dllcache\abp480n5.sys 2014-04-07 04:37 - 2001-08-17 21:52 - 00022400 _____ (Microsoft Corporation) C:\windows\system32\dllcache\asc3350p.sys 2014-04-07 04:37 - 2001-08-17 21:52 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\dllcache\aha154x.sys 2014-04-07 04:37 - 2001-08-17 21:52 - 00012032 _____ (Microsoft Corporation) C:\windows\system32\dllcache\amsint.sys 2014-04-07 04:37 - 2001-08-17 21:51 - 00014848 _____ (Advanced System Products, Inc.) C:\windows\system32\dllcache\asc3550.sys 2014-04-07 04:37 - 2001-08-17 21:51 - 00005248 _____ (Acer Laboratories Inc.) C:\windows\system32\dllcache\aliide.sys 2014-04-07 04:37 - 2001-08-17 21:49 - 00026624 _____ (Acer Laboratories Inc.) C:\windows\system32\dllcache\alifir.sys 2014-04-07 04:37 - 2001-08-17 21:47 - 00006272 _____ (Microsoft Corporation) C:\windows\system32\dllcache\apmbatt.sys 2014-04-07 04:37 - 2001-08-17 21:28 - 00762780 _____ (3Com, Inc.) C:\windows\system32\dllcache\3cwmcru.sys 2014-04-07 04:37 - 2001-08-17 20:48 - 00148352 _____ (3dfx Interactive, Inc.) C:\windows\system32\dllcache\3dfxvsm.sys 2014-04-07 04:37 - 2001-08-17 20:20 - 00297728 _____ (Silicon Integrated Systems Corp.) C:\windows\system32\dllcache\ac97sis.sys 2014-04-07 04:37 - 2001-08-17 20:20 - 00096256 _____ (Intel Corporation) C:\windows\system32\dllcache\ac97intc.sys 2014-04-07 04:37 - 2001-08-17 20:19 - 00747392 _____ (Aureal, Inc.) C:\windows\system32\dllcache\adm8830.sys 2014-04-07 04:37 - 2001-08-17 20:19 - 00584448 _____ (Aureal, Inc.) C:\windows\system32\dllcache\adm8810.sys 2014-04-07 04:37 - 2001-08-17 20:19 - 00553984 _____ (Aureal, Inc.) C:\windows\system32\dllcache\adm8820.sys 2014-04-07 04:37 - 2001-08-17 20:12 - 00097354 _____ (Bay Networks, Inc.) C:\windows\system32\dllcache\aspndis3.sys 2014-04-07 04:37 - 2001-08-17 20:11 - 00046112 _____ (Adaptec, Inc ) C:\windows\system32\dllcache\adptsf50.sys 2014-04-07 04:37 - 2001-08-17 20:11 - 00027678 _____ (Acer Laboratories Inc.) C:\windows\system32\dllcache\ali5261.sys 2014-04-07 04:37 - 2001-08-17 20:11 - 00020160 _____ (ADMtek Incorporated) C:\windows\system32\dllcache\adm8511.sys 2014-04-07 04:37 - 2001-08-17 20:11 - 00016969 _____ (AmbiCom, Inc.) C:\windows\system32\dllcache\amb8002.sys 2014-04-07 04:36 - 2001-10-26 17:29 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\dllcache\s3legacy.dll 2014-04-07 04:20 - 2014-04-07 04:20 - 00000146 _____ () C:\windows\system32\WmiConf.txt 2014-04-07 04:20 - 2006-01-13 00:52 - 00001904 ____N () C:\windows\system32\SetupBD.din 2014-04-07 02:25 - 2014-04-07 02:25 - 00065536 _____ () C:\windows\Minidump\Mini040714-01.dmp 2014-04-07 01:38 - 2014-04-05 00:45 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\ABC\Pulpit\OTL.exe 2014-04-07 01:21 - 2014-04-07 01:21 - 00016280 _____ () C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2014-04-06 23:38 - 2014-04-07 17:02 - 00000370 _____ () C:\windows\nsw.log 2014-04-06 23:14 - 2014-04-06 23:14 - 00000118 _____ () C:\Documents and Settings\ABC\fixlist.txt 2014-04-06 20:43 - 2014-04-07 21:08 - 00107008 _____ () C:\windows\system32\FNTCACHE.DAT 2014-04-06 20:35 - 2014-04-07 21:31 - 00151558 _____ () C:\windows\setupapi.log 2014-04-06 18:14 - 2014-04-06 18:14 - 00000000 ____D () C:\!KillBox 2014-04-06 09:18 - 2014-04-06 09:18 - 00065536 _____ () C:\windows\Minidump\Mini040614-02.dmp 2014-04-06 00:57 - 2014-04-06 00:57 - 00065536 _____ () C:\windows\Minidump\Mini040614-01.dmp 2014-04-05 18:11 - 2014-04-05 18:11 - 00065536 _____ () C:\windows\Minidump\Mini040514-02.dmp 2014-04-05 18:08 - 2013-03-26 11:25 - 00309048 _____ (Intel Corporation) C:\windows\system32\PROUnstl.exe 2014-04-05 17:57 - 2014-04-05 17:58 - 00065536 _____ () C:\windows\Minidump\Mini040514-01.dmp 2014-04-05 16:56 - 2014-04-05 16:56 - 00000000 ____D () C:\Documents and Settings\LocalService\Menu Start\Programy\Akcesoria 2014-04-05 16:45 - 2014-04-07 02:50 - 00181064 _____ (Sysinternals) C:\windows\PSEXESVC.EXE 2014-04-05 16:43 - 2014-04-05 16:43 - 00000000 ____D () C:\RegBackup 2014-04-05 16:42 - 2014-04-07 11:19 - 00000000 ____D () C:\Program Files\Tweaking.com 2014-04-05 16:42 - 2014-04-05 16:42 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Tweaking.com 2014-04-05 15:41 - 2014-04-05 13:31 - 00380416 _____ () C:\Documents and Settings\ABC\Pulpit\p9vjul5v.exe 2014-04-05 15:36 - 2014-04-05 13:36 - 01426178 _____ () C:\Documents and Settings\ABC\Pulpit\AdwCleaner.exe 2014-04-05 04:31 - 2014-04-05 19:09 - 00000000 ____D () C:\Kaspersky Rescue Disk 10.0 2014-04-05 02:01 - 2014-04-05 02:01 - 00001804 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader XI.lnk 2014-04-05 01:39 - 2014-04-05 01:39 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN 2014-04-05 01:36 - 2014-04-05 01:36 - 00264616 _____ (Oracle Corporation) C:\windows\system32\javaws.exe 2014-04-05 01:36 - 2014-04-05 01:36 - 00175016 _____ (Oracle Corporation) C:\windows\system32\javaw.exe 2014-04-05 01:36 - 2014-04-05 01:36 - 00174504 _____ (Oracle Corporation) C:\windows\system32\java.exe 2014-04-05 01:36 - 2014-04-05 01:36 - 00145408 _____ (Oracle Corporation) C:\windows\system32\javacpl.cpl 2014-04-05 01:36 - 2014-04-05 01:36 - 00094632 _____ (Oracle Corporation) C:\windows\system32\WindowsAccessBridge.dll 2014-04-05 01:36 - 2014-04-05 01:36 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Java 2014-03-31 18:58 - 2014-03-31 18:58 - 00000803 _____ () C:\Documents and Settings\oiuo\Menu Start\Programy\Internet Explorer.lnk 2014-03-31 18:58 - 2014-03-31 18:58 - 00000000 __SHD () C:\Documents and Settings\oiuo\PrivacIE 2014-03-31 18:57 - 2014-04-08 02:00 - 00000000 ____D () C:\Documents and Settings\oiuo 2014-03-31 18:57 - 2014-03-31 18:59 - 00000188 ___SH () C:\Documents and Settings\oiuo\ntuser.ini 2014-03-31 18:57 - 2014-03-31 18:58 - 00000792 _____ () C:\Documents and Settings\oiuo\Menu Start\Programy\Windows Media Player.lnk 2014-03-31 18:57 - 2014-03-31 18:58 - 00000000 ___RD () C:\Documents and Settings\oiuo\Ulubione 2014-03-31 18:57 - 2014-03-31 18:58 - 00000000 ___RD () C:\Documents and Settings\oiuo\Moje dokumenty\Moje obrazy 2014-03-31 18:57 - 2014-03-31 18:58 - 00000000 ___RD () C:\Documents and Settings\oiuo\Moje dokumenty\Moja muzyka 2014-03-31 18:57 - 2014-03-31 18:58 - 00000000 ___RD () C:\Documents and Settings\oiuo\Moje dokumenty 2014-03-31 18:57 - 2014-03-31 18:58 - 00000000 ___RD () C:\Documents and Settings\oiuo\Menu Start\Programy\Akcesoria 2014-03-31 18:57 - 2014-03-31 18:58 - 00000000 ___RD () C:\Documents and Settings\oiuo\Menu Start\Programy 2014-03-31 18:57 - 2014-03-31 18:57 - 00000892 __RSH () C:\Documents and Settings\oiuo\ntuser.pol 2014-03-31 18:57 - 2014-03-31 18:57 - 00000000 __SHD () C:\Documents and Settings\oiuo\IETldCache 2014-03-31 18:57 - 2014-03-31 18:57 - 00000000 ___HD () C:\Documents and Settings\oiuo\Ustawienia lokalne\Dane aplikacji 2014-03-31 18:57 - 2013-11-25 18:26 - 00000000 ___HD () C:\Documents and Settings\oiuo\Ustawienia lokalne 2014-03-31 18:57 - 2011-10-25 20:00 - 00000000 ____D () C:\Documents and Settings\oiuo\Dane aplikacji\Macromedia 2014-03-31 18:57 - 2011-05-25 13:14 - 00001503 _____ () C:\Documents and Settings\oiuo\Menu Start\Programy\Pomoc zdalna.lnk 2014-03-31 18:57 - 2011-05-25 13:03 - 00000000 __SHD () C:\Documents and Settings\oiuo\Ustawienia lokalne\Historia 2014-03-31 18:57 - 2011-05-25 13:03 - 00000000 __RHD () C:\Documents and Settings\oiuo\Dane aplikacji 2014-03-31 18:57 - 2011-05-25 13:03 - 00000000 ___RD () C:\Documents and Settings\oiuo\Menu Start\Programy\Autostart 2014-03-31 18:57 - 2011-05-25 13:03 - 00000000 ___RD () C:\Documents and Settings\oiuo\Menu Start 2014-03-31 18:57 - 2011-05-25 13:03 - 00000000 ___HD () C:\Documents and Settings\oiuo\Szablony 2014-03-31 18:57 - 2011-05-25 13:03 - 00000000 ____D () C:\Documents and Settings\oiuo\Pulpit 2014-03-30 15:10 - 2014-03-30 15:10 - 00000000 ____D () C:\windows\GBD 2014-03-29 19:18 - 2014-03-29 19:18 - 00000633 _____ () C:\Documents and Settings\ABC\Pulpit\Skrót do Cheat Engine.lnk 2014-03-28 11:34 - 2014-03-28 11:34 - 00000010 _____ () C:\csb.log 2014-03-26 11:55 - 2014-03-26 11:55 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-03-26 11:24 - 2014-04-07 18:31 - 00000930 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job ==================== One Month Modified Files and Folders ======= 2014-04-08 02:00 - 2014-03-31 18:57 - 00000000 ____D () C:\Documents and Settings\oiuo 2014-04-08 02:00 - 2012-03-14 19:28 - 00000000 ____D () C:\Documents and Settings\Administrator 2014-04-08 02:00 - 2011-05-25 13:18 - 00000000 ____D () C:\Documents and Settings\ABC 2014-04-08 02:00 - 2011-05-25 13:17 - 00000000 __SHD () C:\Documents and Settings\NetworkService 2014-04-08 02:00 - 2011-05-25 13:17 - 00000000 __SHD () C:\Documents and Settings\LocalService 2014-04-07 21:40 - 2014-04-07 21:40 - 00011492 _____ () C:\Documents and Settings\ABC\Pulpit\FRST.txt 2014-04-07 21:40 - 2014-04-07 21:40 - 00000000 ____D () C:\FRST 2014-04-07 21:40 - 2011-05-25 13:18 - 00000000 ____D () C:\Documents and Settings\ABC\Pulpit 2014-04-07 21:31 - 2014-04-06 20:35 - 00151558 _____ () C:\windows\setupapi.log 2014-04-07 21:28 - 2014-02-22 13:04 - 00688334 _____ () C:\windows\WindowsUpdate.log 2014-04-07 21:27 - 2013-10-03 21:27 - 00000159 _____ () C:\windows\wiadebug.log 2014-04-07 21:27 - 2013-10-03 21:27 - 00000050 _____ () C:\windows\wiaservc.log 2014-04-07 21:27 - 2011-05-25 13:21 - 00000104 ____C () C:\windows\system32\nvapps.xml 2014-04-07 21:26 - 2011-05-25 14:08 - 00004073 _____ () C:\windows\WINCMD.INI 2014-04-07 21:26 - 2011-05-25 13:18 - 00000188 ___SH () C:\Documents and Settings\ABC\ntuser.ini 2014-04-07 21:24 - 2011-05-25 13:12 - 00000000 ____D () C:\windows\system32\Restore 2014-04-07 21:23 - 2011-05-30 14:54 - 00000000 ____D () C:\windows\ERDNT 2014-04-07 21:13 - 2011-05-25 13:04 - 01269902 _____ () C:\windows\system32\PerfStringBackup.INI 2014-04-07 21:13 - 2001-10-26 17:15 - 00560688 _____ () C:\windows\system32\perfh015.dat 2014-04-07 21:13 - 2001-10-26 17:15 - 00106672 _____ () C:\windows\system32\perfc015.dat 2014-04-07 21:09 - 2001-07-21 23:17 - 00002262 _____ () C:\windows\system32\wpa.dbl 2014-04-07 21:08 - 2014-04-06 20:43 - 00107008 _____ () C:\windows\system32\FNTCACHE.DAT 2014-04-07 18:31 - 2014-04-08 02:00 - 40632320 _____ () C:\windows\system32\config\software.old 2014-04-07 18:31 - 2014-04-08 02:00 - 05505024 _____ () C:\windows\system32\config\system.old 2014-04-07 18:31 - 2014-04-08 02:00 - 04980736 _____ () C:\windows\system32\config\default.old 2014-04-07 18:31 - 2014-04-08 02:00 - 00057344 _____ () C:\windows\system32\config\security.old 2014-04-07 18:31 - 2014-04-08 02:00 - 00032768 _____ () C:\windows\system32\config\sam.old 2014-04-07 18:31 - 2014-03-26 11:24 - 00000930 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job 2014-04-07 18:31 - 2012-08-29 14:58 - 00000006 ____H () C:\windows\Tasks\SA.DAT 2014-04-07 18:31 - 2011-09-03 19:55 - 00031868 _____ () C:\windows\Tasks\SCHEDLGU.TXT 2014-04-07 17:37 - 2011-05-25 13:03 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-04-07 17:19 - 2011-05-25 13:11 - 00000000 ____D () C:\windows\Registration 2014-04-07 17:02 - 2014-04-06 23:38 - 00000370 _____ () C:\windows\nsw.log 2014-04-07 16:32 - 2014-04-07 16:31 - 00065536 _____ () C:\windows\Minidump\Mini040714-02.dmp 2014-04-07 16:31 - 2012-03-11 21:10 - 79998976 _____ () C:\windows\MEMORY.DMP 2014-04-07 16:31 - 2011-05-27 16:43 - 00000000 ____D () C:\windows\Minidump 2014-04-07 16:27 - 2011-05-25 12:59 - 00000000 ____D () C:\windows\security 2014-04-07 11:19 - 2014-04-05 16:42 - 00000000 ____D () C:\Program Files\Tweaking.com 2014-04-07 04:21 - 2011-05-25 13:46 - 00000000 ____D () C:\Program Files\Intel 2014-04-07 04:20 - 2014-04-07 04:20 - 00000146 _____ () C:\windows\system32\WmiConf.txt 2014-04-07 02:50 - 2014-04-05 16:45 - 00181064 _____ (Sysinternals) C:\windows\PSEXESVC.EXE 2014-04-07 02:25 - 2014-04-07 02:25 - 00065536 _____ () C:\windows\Minidump\Mini040714-01.dmp 2014-04-07 01:21 - 2014-04-07 01:21 - 00016280 _____ () C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2014-04-07 01:21 - 2011-05-25 13:18 - 00000000 ___HD () C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji 2014-04-06 23:14 - 2014-04-06 23:14 - 00000118 _____ () C:\Documents and Settings\ABC\fixlist.txt 2014-04-06 20:20 - 2011-10-22 18:20 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy 2014-04-06 18:20 - 2011-05-26 10:19 - 00000000 ____D () C:\Documents and Settings\ABC\Moje dokumenty\Pobieranie 2014-04-06 18:17 - 2013-04-18 22:03 - 00000000 ____D () C:\Program Files\Security Task Manager 2014-04-06 18:14 - 2014-04-06 18:14 - 00000000 ____D () C:\!KillBox 2014-04-06 17:20 - 2012-08-23 16:20 - 00000000 ____D () C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji\NPE 2014-04-06 17:20 - 2011-05-25 13:03 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji 2014-04-06 17:15 - 2011-05-25 13:02 - 00000245 _____ () C:\boot.ini 2014-04-06 09:18 - 2014-04-06 09:18 - 00065536 _____ () C:\windows\Minidump\Mini040614-02.dmp 2014-04-06 00:57 - 2014-04-06 00:57 - 00065536 _____ () C:\windows\Minidump\Mini040614-01.dmp 2014-04-05 19:09 - 2014-04-05 04:31 - 00000000 ____D () C:\Kaspersky Rescue Disk 10.0 2014-04-05 18:11 - 2014-04-05 18:11 - 00065536 _____ () C:\windows\Minidump\Mini040514-02.dmp 2014-04-05 17:58 - 2014-04-05 17:57 - 00065536 _____ () C:\windows\Minidump\Mini040514-01.dmp 2014-04-05 17:01 - 2013-12-07 12:13 - 00001032 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore1cef3354a6ebac.job 2014-04-05 16:56 - 2014-04-05 16:56 - 00000000 ____D () C:\Documents and Settings\LocalService\Menu Start\Programy\Akcesoria 2014-04-05 16:56 - 2011-05-25 13:14 - 00023392 _____ () C:\windows\system32\nscompat.tlb 2014-04-05 16:56 - 2011-05-25 13:14 - 00016832 _____ () C:\windows\system32\amcompat.tlb 2014-04-05 16:43 - 2014-04-05 16:43 - 00000000 ____D () C:\RegBackup 2014-04-05 16:43 - 2011-05-25 12:59 - 00000000 ____D () C:\windows\repair 2014-04-05 16:42 - 2014-04-05 16:42 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Tweaking.com 2014-04-05 16:42 - 2011-05-25 13:03 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-04-05 13:36 - 2014-04-05 15:36 - 01426178 _____ () C:\Documents and Settings\ABC\Pulpit\AdwCleaner.exe 2014-04-05 13:31 - 2014-04-05 15:41 - 00380416 _____ () C:\Documents and Settings\ABC\Pulpit\p9vjul5v.exe 2014-04-05 13:04 - 2001-07-21 23:16 - 00000995 _____ () C:\windows\win.ini 2014-04-05 10:15 - 2011-05-25 20:23 - 00000000 ____D () C:\windows\Microsoft.NET 2014-04-05 04:12 - 2013-08-15 13:42 - 00000000 ____D () C:\windows\system32\MRT 2014-04-05 03:52 - 2011-05-26 15:02 - 87350280 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2014-04-05 03:51 - 2011-11-15 21:33 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Silverlight 2014-04-05 03:50 - 2011-11-15 21:33 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-05 03:48 - 2011-05-31 12:34 - 00000000 ____D () C:\windows\ie8updates 2014-04-05 03:41 - 2011-05-25 16:15 - 00000000 __SHD () C:\Documents and Settings\ABC\UserData 2014-04-05 03:29 - 2014-02-12 16:11 - 00000000 ____D () C:\Documents and Settings\ABC\Pulpit\Z_PULPITU 2014-04-05 03:29 - 2014-01-27 13:54 - 00000000 ____D () C:\Documents and Settings\ABC\Menu Start\Programy\Paltalk Messenger 2014-04-05 03:29 - 2013-04-11 10:36 - 00000000 ____D () C:\Documents and Settings\ABC\Menu Start\Programy\Ufasoft Snif 2014-04-05 03:29 - 2011-05-25 13:18 - 00000000 ___RD () C:\Documents and Settings\ABC\Menu Start 2014-04-05 02:14 - 2012-10-16 12:11 - 00008924 ____H () C:\treeinfo.wc 2014-04-05 02:13 - 2013-02-11 15:13 - 00000000 ____D () C:\Program Files\KeyboardTest 2014-04-05 02:01 - 2014-04-05 02:01 - 00001804 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader XI.lnk 2014-04-05 02:01 - 2011-05-25 14:22 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-04-05 01:59 - 2011-06-19 15:57 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Adobe 2014-04-05 01:58 - 2011-06-19 15:54 - 00000000 ____D () C:\Program Files\Adobe 2014-04-05 01:39 - 2014-04-05 01:39 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN 2014-04-05 01:36 - 2014-04-05 01:36 - 00264616 _____ (Oracle Corporation) C:\windows\system32\javaws.exe 2014-04-05 01:36 - 2014-04-05 01:36 - 00175016 _____ (Oracle Corporation) C:\windows\system32\javaw.exe 2014-04-05 01:36 - 2014-04-05 01:36 - 00174504 _____ (Oracle Corporation) C:\windows\system32\java.exe 2014-04-05 01:36 - 2014-04-05 01:36 - 00145408 _____ (Oracle Corporation) C:\windows\system32\javacpl.cpl 2014-04-05 01:36 - 2014-04-05 01:36 - 00094632 _____ (Oracle Corporation) C:\windows\system32\WindowsAccessBridge.dll 2014-04-05 01:36 - 2014-04-05 01:36 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Java 2014-04-05 01:34 - 2011-07-01 01:46 - 00000000 ____D () C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji\Google 2014-04-05 01:34 - 2011-06-08 21:10 - 00000000 ____D () C:\Program Files\Google 2014-04-05 01:31 - 2011-06-19 16:01 - 00000000 ____D () C:\Documents and Settings\ABC\Ustawienia lokalne\Dane aplikacji\Adobe 2014-04-05 00:45 - 2014-04-07 01:38 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\ABC\Pulpit\OTL.exe 2014-03-31 19:32 - 2013-09-22 18:43 - 00000000 ___HD () C:\Documents and Settings\ABC\JUWXI 2014-03-31 19:32 - 2011-05-25 13:18 - 00000000 ___RD () C:\Documents and Settings\ABC\Moje dokumenty 2014-03-31 19:13 - 2011-05-25 13:18 - 00000000 ____D () C:\Documents and Settings\ABC\Menu Start\Programy 2014-03-31 19:11 - 2011-05-25 13:18 - 00000000 __RHD () C:\Documents and Settings\ABC\Dane aplikacji 2014-03-31 19:10 - 2012-03-09 00:50 - 00000000 ____D () C:\windows\system32\appmgmt 2014-03-31 18:59 - 2014-03-31 18:57 - 00000188 ___SH () C:\Documents and Settings\oiuo\ntuser.ini 2014-03-31 18:58 - 2014-03-31 18:58 - 00000803 _____ () C:\Documents and Settings\oiuo\Menu Start\Programy\Internet Explorer.lnk 2014-03-31 18:58 - 2014-03-31 18:58 - 00000000 __SHD () C:\Documents and Settings\oiuo\PrivacIE 2014-03-31 18:58 - 2014-03-31 18:57 - 00000792 _____ () C:\Documents and Settings\oiuo\Menu Start\Programy\Windows Media Player.lnk 2014-03-31 18:58 - 2014-03-31 18:57 - 00000000 ___RD () C:\Documents and Settings\oiuo\Ulubione 2014-03-31 18:58 - 2014-03-31 18:57 - 00000000 ___RD () C:\Documents and Settings\oiuo\Moje dokumenty\Moje obrazy 2014-03-31 18:58 - 2014-03-31 18:57 - 00000000 ___RD () C:\Documents and Settings\oiuo\Moje dokumenty\Moja muzyka 2014-03-31 18:58 - 2014-03-31 18:57 - 00000000 ___RD () C:\Documents and Settings\oiuo\Moje dokumenty 2014-03-31 18:58 - 2014-03-31 18:57 - 00000000 ___RD () C:\Documents and Settings\oiuo\Menu Start\Programy\Akcesoria 2014-03-31 18:58 - 2014-03-31 18:57 - 00000000 ___RD () C:\Documents and Settings\oiuo\Menu Start\Programy 2014-03-31 18:57 - 2014-03-31 18:57 - 00000892 __RSH () C:\Documents and Settings\oiuo\ntuser.pol 2014-03-31 18:57 - 2014-03-31 18:57 - 00000000 __SHD () C:\Documents and Settings\oiuo\IETldCache 2014-03-31 18:57 - 2014-03-31 18:57 - 00000000 ___HD () C:\Documents and Settings\oiuo\Ustawienia lokalne\Dane aplikacji 2014-03-31 18:08 - 2012-10-13 21:26 - 00017488 _____ (Windows (R) 2000 DDK provider) C:\windows\gdrv.sys 2014-03-31 17:51 - 2013-10-28 14:20 - 00000000 ____D () C:\Documents and Settings\ABC\Dane aplikacji\Device Doctor 2014-03-31 00:49 - 2011-08-20 19:36 - 00004005 _____ () C:\Documents and Settings\All Users\Dane aplikacji\hpzinstall.log 2014-03-31 00:40 - 2011-08-20 19:40 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\HP 2014-03-30 15:10 - 2014-03-30 15:10 - 00000000 ____D () C:\windows\GBD 2014-03-29 19:18 - 2014-03-29 19:18 - 00000633 _____ () C:\Documents and Settings\ABC\Pulpit\Skrót do Cheat Engine.lnk 2014-03-28 11:56 - 2011-08-10 23:54 - 00000000 ____D () C:\Documents and Settings\ABC\Dane aplikacji\Skype 2014-03-28 11:43 - 2011-08-10 23:56 - 00000000 ____D () C:\Documents and Settings\ABC\Dane aplikacji\skypePM 2014-03-28 11:34 - 2014-03-28 11:34 - 00000010 _____ () C:\csb.log 2014-03-26 15:52 - 2012-06-08 09:43 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-03-26 11:55 - 2014-03-26 11:55 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-03-26 11:40 - 2011-08-10 23:53 - 00000000 ___RD () C:\Program Files\Skype 2014-03-26 11:34 - 2014-03-02 19:27 - 01145856 _____ (Farbar) C:\Documents and Settings\ABC\Pulpit\FRST.exe 2014-03-26 11:24 - 2014-01-25 14:23 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe 2014-03-26 11:24 - 2014-01-25 14:23 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl Some content of TEMP: ==================== C:\Documents and Settings\ABC\Ustawienia lokalne\temp\ICReinstall_Novicorp WinToFlash 0.8.0000 Beta_isdmgr.exe ==================== Bamital & volsnap Check ================= C:\windows\explorer.exe [2011-05-27 20:23] - [2008-04-14 20:21] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\windows\system32\winlogon.exe [2001-10-26 18:30] - [2008-04-14 20:21] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\windows\system32\svchost.exe [2001-10-26 18:30] - [2008-04-14 20:21] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\windows\system32\services.exe [2001-10-26 18:30] - [2009-02-09 14:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\windows\system32\User32.dll [2001-10-26 18:29] - [2008-04-14 20:20] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\windows\system32\userinit.exe [2001-10-26 18:30] - [2008-04-14 20:21] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\windows\system32\rpcss.dll [2011-05-27 21:32] - [2009-02-09 13:53] - 0401408 ____A (Microsoft Corporation) a37311d9d628c1042a2836731787f0f3 ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\windows\system32\Drivers\volsnap.sys [2001-10-26 17:57] - [2008-04-14 19:01] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================