Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:15-05-2014 Ran by przemek (administrator) on PRZEMO on 16-05-2014 14:15:38 Running from C:\Documents and Settings\przemek\Pulpit Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 6 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe (TOSHIBA Corp.) C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe (Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe (Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe (TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe () C:\Program Files\PLAY ONLINE\PLAY ONLINE.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1024000 2008-08-28] (Synaptics, Inc.) HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16860672 2008-08-28] (Realtek Semiconductor Corp.) HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2008-08-28] (Realtek Semiconductor Corp.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3873704 2014-05-16] (AVAST Software) HKLM\...\Run: [MSConfig] => C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [171520 2008-04-14] (Microsoft Corporation) HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {0dc4dc82-a495-11de-8833-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {1adcd2b5-542e-11df-8b95-cc954190c49e} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {1adcd2b8-542e-11df-8b95-cc954190c49e} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {1adcd2b9-542e-11df-8b95-cc954190c49e} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {234b095f-98dd-11df-8c99-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {234b0962-98dd-11df-8c99-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {26c59345-dff5-11e2-b665-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {26c59346-dff5-11e2-b665-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {29b47b45-df44-11e2-b635-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {29b47b48-df44-11e2-b635-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {29b47b51-df44-11e2-b635-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {29b47b52-df44-11e2-b635-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {335365b5-8369-11df-8c3d-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {3743f135-b055-11df-8cdc-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {4bf45741-b769-11e3-a06e-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {5f12eced-a3e9-11df-8cb7-00604cdae56f} - nastavi\\palili.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {6b0c8746-d3ae-11e3-8c3c-001e33ac8f17} - I:\Startme.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {6e68fcca-b88c-11de-887e-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {72cd3803-98d9-11df-8c98-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {a9320f1d-550e-11df-8b9b-8571e52fe091} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {a9320f1e-550e-11df-8b9b-8571e52fe091} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {ae4f75c1-d846-11e3-9a9c-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {c9a0fb74-6756-11de-8775-001e33ac8f17} - y.bat HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {db9e1341-cced-11e0-90f9-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {db9e1345-cced-11e0-90f9-001e33ac8f17} - F:\AutoRun.exe HKU\S-1-5-21-1220945662-1454471165-725345543-1003\...\MountPoints2: {eb44818e-5125-11de-8746-001e33ac8f17} - F:\AutoRun.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://v9.pl/ HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://toolbar.ask.com/toolbarv/askRedirect?o=13925&gct=&gc=1&q= HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home URLSearchHook: HKCU - (No Name) - {C94E154B-1459-4A47-966B-4B843BEFC7DB} - No File URLSearchHook: HKCU - (No Name) - {F4F10C1D-87C7-404A-B4B3-000000000000} - No File URLSearchHook: HKCU - (No Name) - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - No File SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2475029 SearchScopes: HKCU - {0EFF588E-0C25-4340-B37D-7EEB432A09C6} URL = http://search.speedbit.com/searchresults.asp?src=default&q={searchTerms} SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2475029 SearchScopes: HKCU - {CF739809-1C6C-47C0-85B9-569DBB141420} URL = http://toolbar.ask.com/toolbarv/askRedirect?gct=&gc=1&q={searchTerms}&crm=1&toolbar=UT2 SearchScopes: HKCU - {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&query={searchTerms}&invocationType=tb50winampie7 BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: No Name - {201f27d4-3704-41d6-89c1-aa35e39143ed} - No File BHO: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File Toolbar: HKLM - No Name - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - No File Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - No File DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Tcpip\..\Interfaces\{4D5D338B-EEDA-4D61-BAED-A2DD930CBB27}: [NameServer]80.85.224.2,80.85.224.50 Tcpip\..\Interfaces\{830156BA-857B-474D-9FA8-0EDBA4017E0E}: [NameServer]89.108.195.21 89.108.202.21 FireFox: ======== FF ProfilePath: C:\Documents and Settings\przemek\Dane aplikacji\Mozilla\Firefox\Profiles\x1hdh5ry.default FF Homepage: hxxp://search.conduit.com/?ctid=CT2475029&SearchSource=13&CUI=UN51200943309086575 FF Keyword.URL: hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2475029&octid=CT2475029&CUI=UN51200943309086575&UM=&SearchSource=2&q= FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Documents and Settings\przemek\Dane aplikacji\Mozilla\Firefox\Profiles\x1hdh5ry.default\searchplugins\conduit.xml FF Extension: Microsoft .NET Framework Assistant - C:\Documents and Settings\przemek\Dane aplikacji\Mozilla\Firefox\Profiles\x1hdh5ry.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b}.xpi [2013-06-27] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-16] Chrome: ======= CHR DefaultSearchProvider: Winamp Search CHR DefaultSearchURL: http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&query={searchTerms}&invocationType=tb50winampie7 ========================== Services (Whitelisted) ================= S4 ACS; C:\WINDOWS\system32\acs.exe [467028 2008-04-14] (Atheros) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-16] (AVAST Software) S4 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) S4 StarWindServiceAE; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) R2 TAPPSRV; C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe [34304 2008-04-14] (TOSHIBA Corp.) ==================== Drivers (Whitelisted) ==================== R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-05-16] () R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-05-16] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [54832 2014-05-16] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-05-16] () R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [777488 2014-05-16] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [411680 2014-05-16] (AVAST Software) R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57672 2014-05-16] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [180632 2014-05-16] () S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation) S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R2 Netdevio; C:\WINDOWS\System32\DRIVERS\netdevio.sys [12032 2008-08-28] (TOSHIBA Corporation.) S3 PCAMPR5; C:\WINDOWS\system32\PCAMPR5.SYS [34688 2003-09-23] (Printing Communications Assoc., Inc. (PCAUSA)) S3 PCANDIS5; C:\WINDOWS\system32\PCANDIS5.SYS [32128 2006-03-01] (Printing Communications Assoc., Inc. (PCAUSA)) R1 prodrv06; C:\WINDOWS\System32\drivers\prodrv06.sys [80576 2004-10-07] (Protection Technology) R0 prohlp02; C:\WINDOWS\System32\drivers\prohlp02.sys [115744 2004-10-07] (Protection Technology) R0 sfhlp01; C:\WINDOWS\System32\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology) R3 sftfs; C:\Program Files\Microsoft Application Virtualization Client\drivers\sftfsXP.sys [543064 2009-09-23] (Microsoft Corporation) R3 sftplay; C:\Program Files\Microsoft Application Virtualization Client\drivers\sftplayXP.sys [190312 2009-09-23] (Microsoft Corporation) R3 Sftredir; C:\WINDOWS\System32\DRIVERS\Sftredirxp.sys [21864 2009-09-23] (Microsoft Corporation) R3 sftvol; C:\Program Files\Microsoft Application Virtualization Client\drivers\sftvolXP.sys [14680 2009-09-23] (Microsoft Corporation) R0 sfvfs02; C:\WINDOWS\System32\drivers\sfvfs02.sys [66560 2005-08-24] (Protection Technology) R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [436792 2011-07-19] () S3 USB_RNDIS; C:\WINDOWS\System32\DRIVERS\usb8023.sys [12800 2008-04-14] (Microsoft Corporation) R3 UVCFTR; C:\WINDOWS\System32\Drivers\UVCFTR_S.SYS [18432 2007-12-17] (Chicony Electronics Co., Ltd.) S3 w200bus; C:\WINDOWS\System32\DRIVERS\w200bus.sys [61504 2006-11-07] (MCCI) S3 w200mdfl; C:\WINDOWS\System32\DRIVERS\w200mdfl.sys [9328 2006-11-07] (MCCI) S3 w200mdm; C:\WINDOWS\System32\DRIVERS\w200mdm.sys [97056 2006-11-07] (MCCI) S3 w200mgmt; C:\WINDOWS\System32\DRIVERS\w200mgmt.sys [88560 2006-11-07] (MCCI) S3 w200obex; C:\WINDOWS\System32\DRIVERS\w200obex.sys [86368 2006-11-07] (MCCI) R3 WSIMD; C:\WINDOWS\System32\DRIVERS\wsimd.sys [57408 2008-02-08] (Atheros Communications, Inc.) U3 au20zjet; C:\WINDOWS\system32\Drivers\au20zjet.sys [0 ] (Microsoft Corporation) S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X] S4 IntelIde; No ImagePath S3 RSUSBSTOR; System32\Drivers\RTS5121.sys [X] U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation) S3 ZDCndis5; \??\C:\WINDOWS\system32\ZDCndis5.SYS [X] S3 ZDPSp50; System32\Drivers\ZDPSp50.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-16 14:15 - 2014-05-16 14:15 - 00015330 _____ () C:\Documents and Settings\przemek\Pulpit\FRST.txt 2014-05-16 14:14 - 2014-05-16 14:14 - 01056768 _____ (Farbar) C:\Documents and Settings\przemek\Pulpit\FRST.exe 2014-05-16 14:14 - 2014-05-16 14:14 - 00000931 _____ () C:\WINDOWS\KB2719985.log 2014-05-16 14:13 - 2014-05-16 14:13 - 00000930 _____ () C:\WINDOWS\KB2862152.log 2014-05-16 14:12 - 2014-05-16 14:12 - 00001544 _____ () C:\WINDOWS\KB2676562.log 2014-05-16 14:11 - 2014-05-16 14:15 - 00000000 ____D () C:\FRST 2014-05-16 14:11 - 2014-05-16 14:11 - 00006706 _____ () C:\WINDOWS\KB2868626.log 2014-05-16 14:10 - 2014-05-16 14:10 - 00000000 ____D () C:\WINDOWS\LastGood 2014-05-16 14:02 - 2014-05-16 14:02 - 00008028 _____ () C:\WINDOWS\KB2479943.log 2014-05-16 14:00 - 2014-05-16 14:00 - 00008029 _____ () C:\WINDOWS\KB2916036.log 2014-05-16 13:59 - 2014-05-16 13:59 - 00007934 _____ () C:\WINDOWS\KB2345886.log 2014-05-16 13:58 - 2014-05-16 13:58 - 00007829 _____ () C:\WINDOWS\KB2585542.log 2014-05-16 13:56 - 2014-05-16 13:56 - 00007738 _____ () C:\WINDOWS\KB2691442.log 2014-05-16 13:55 - 2014-05-16 13:55 - 00007733 _____ () C:\WINDOWS\KB2115168.log 2014-05-16 13:53 - 2014-05-16 13:53 - 00007525 _____ () C:\WINDOWS\KB2443105.log 2014-05-16 13:53 - 2014-05-16 13:53 - 00007454 _____ () C:\WINDOWS\KB2655992.log 2014-05-16 13:46 - 2014-05-16 13:46 - 00002357 _____ () C:\WINDOWS\KB2483185.log 2014-05-16 13:46 - 2014-05-16 13:46 - 00002356 _____ () C:\WINDOWS\KB2876217.log 2014-05-16 13:44 - 2014-05-16 13:44 - 00002355 _____ () C:\WINDOWS\KB979687.log 2014-05-16 13:42 - 2014-05-16 13:42 - 00002614 _____ () C:\WINDOWS\KB2930275.log 2014-05-16 13:41 - 2014-05-16 13:42 - 00002402 _____ () C:\WINDOWS\KB2864063.log 2014-05-16 13:32 - 2014-05-16 13:32 - 00002357 _____ () C:\WINDOWS\KB2859537.log 2014-05-16 13:32 - 2014-05-16 13:32 - 00002355 _____ () C:\WINDOWS\KB2876331.log 2014-05-16 13:32 - 2014-05-16 13:32 - 00002355 _____ () C:\WINDOWS\KB2850869.log 2014-05-16 13:29 - 2014-05-16 13:29 - 00002356 _____ () C:\WINDOWS\KB2893294.log 2014-05-16 13:29 - 2014-05-16 13:29 - 00002356 _____ () C:\WINDOWS\KB2820917.log 2014-05-16 13:28 - 2014-05-16 13:28 - 00002357 _____ () C:\WINDOWS\KB2757638.log 2014-05-16 13:28 - 2014-05-16 13:28 - 00002357 _____ () C:\WINDOWS\KB2419632.log 2014-05-16 13:27 - 2014-05-16 13:27 - 00002357 _____ () C:\WINDOWS\KB971029.log 2014-05-16 13:27 - 2014-05-16 13:27 - 00002356 _____ () C:\WINDOWS\KB2749655.log 2014-05-16 13:27 - 2014-05-16 13:27 - 00002356 _____ () C:\WINDOWS\KB2653956.log 2014-05-16 13:27 - 2014-05-16 13:27 - 00002356 _____ () C:\WINDOWS\KB2508429.log 2014-05-16 13:25 - 2014-05-16 13:25 - 00002357 _____ () C:\WINDOWS\KB2506212.log 2014-05-16 13:22 - 2014-05-16 13:22 - 00002356 _____ () C:\WINDOWS\KB2892075.log 2014-05-16 13:20 - 2014-05-16 13:21 - 00002356 _____ () C:\WINDOWS\KB2619339.log 2014-05-16 13:20 - 2014-05-16 13:20 - 00007763 _____ () C:\WINDOWS\KB2813345.log 2014-05-16 13:20 - 2014-05-16 13:20 - 00002363 _____ () C:\WINDOWS\KB2705219-v2.log 2014-05-16 13:20 - 2014-05-16 13:20 - 00002357 _____ () C:\WINDOWS\KB2509553.log 2014-05-16 13:20 - 2014-05-16 13:20 - 00002356 _____ () C:\WINDOWS\KB2727528.log 2014-05-16 13:13 - 2014-05-16 13:13 - 00002353 _____ () C:\WINDOWS\KB982665.log 2014-05-16 13:11 - 2014-05-16 13:11 - 00002355 _____ () C:\WINDOWS\KB2620712.log 2014-05-16 13:10 - 2014-05-16 13:10 - 00002356 _____ () C:\WINDOWS\KB2584146.log 2014-05-16 13:07 - 2014-05-16 13:07 - 00000000 ____D () C:\Documents and Settings\przemek\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files 2014-05-16 13:06 - 2014-05-16 14:10 - 00008254 _____ () C:\WINDOWS\KB2922229.log 2014-05-16 13:03 - 2014-05-16 13:59 - 00009567 _____ () C:\WINDOWS\KB2478971.log 2014-05-16 13:02 - 2014-05-16 13:59 - 00009569 _____ () C:\WINDOWS\KB2544893-v2.log 2014-05-16 12:53 - 2014-05-16 13:58 - 00009370 _____ () C:\WINDOWS\KB2631813.log 2014-05-16 12:52 - 2014-05-16 12:52 - 00000000 ____D () C:\Documents and Settings\przemek\Dane aplikacji\AVAST Software 2014-05-16 12:51 - 2014-05-16 12:51 - 00001733 _____ () C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk 2014-05-16 12:51 - 2014-05-16 12:51 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Avast 2014-05-16 12:50 - 2014-05-16 14:14 - 00000366 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job 2014-05-16 12:49 - 2014-05-16 12:51 - 00777488 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys 2014-05-16 12:49 - 2014-05-16 12:51 - 00411680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys 2014-05-16 12:49 - 2014-05-16 12:51 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswrdr.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00776976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys.1400237485203 2014-05-16 12:49 - 2014-05-16 12:49 - 00271264 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2014-05-16 12:49 - 2014-05-16 12:49 - 00180632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswrdr.sys.1400237485203 2014-05-16 12:49 - 2014-05-16 12:49 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2014-05-16 12:49 - 2014-05-16 12:49 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys 2014-05-16 12:31 - 2014-05-16 13:54 - 00009009 _____ () C:\WINDOWS\KB2847311.log 2014-05-16 12:19 - 2014-05-16 13:52 - 00008712 _____ () C:\WINDOWS\KB2802968.log 2014-05-16 12:13 - 2014-05-16 13:48 - 00009475 _____ () C:\WINDOWS\KB2481109.log 2014-05-16 12:13 - 2014-05-16 12:13 - 00000000 ____D () C:\Program Files\AVAST Software 2014-05-16 12:12 - 2014-05-16 13:48 - 00008614 _____ () C:\WINDOWS\KB2898715.log 2014-05-16 12:12 - 2014-05-16 13:47 - 00008513 _____ () C:\WINDOWS\KB2929961.log 2014-05-16 12:12 - 2014-05-16 13:47 - 00008510 _____ () C:\WINDOWS\KB2598479.log 2014-05-16 12:10 - 2014-05-16 13:47 - 00008380 _____ () C:\WINDOWS\KB982132.log 2014-05-16 12:09 - 2014-05-16 13:47 - 00009025 _____ () C:\WINDOWS\KB2909212.log 2014-05-16 12:08 - 2014-05-16 13:47 - 00008313 _____ () C:\WINDOWS\KB2507938.log 2014-05-16 12:08 - 2014-05-16 12:08 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software 2014-05-16 12:06 - 2014-05-16 13:47 - 00008218 _____ () C:\WINDOWS\KB2780091.log 2014-05-16 12:06 - 2014-05-16 13:46 - 00009346 _____ () C:\WINDOWS\KB2510581.log 2014-05-16 12:00 - 2009-10-28 12:32 - 00809560 ____R (Creative Labs Inc.) C:\WINDOWS\system32\tmp32.tmp 2014-05-16 11:57 - 2014-05-16 11:57 - 00000000 ____D () C:\Program Files\CCleaner 2014-05-16 11:57 - 2014-05-16 11:57 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\CCleaner 2014-05-16 11:56 - 2014-05-16 11:56 - 00380416 _____ () C:\Documents and Settings\przemek\Pulpit\q28k6eh1.exe 2014-05-16 10:19 - 2014-05-16 10:20 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\przemek\Pulpit\OTL.exe 2014-05-16 09:58 - 2014-05-16 10:00 - 00000000 ____D () C:\WINDOWS\pss 2014-05-16 09:58 - 2012-06-02 15:19 - 00015896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll.mui 2014-05-14 19:26 - 2014-05-14 19:26 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-04 19:53 - 2014-05-04 19:53 - 00001739 _____ () C:\Documents and Settings\All Users\Pulpit\Sony PC Companion 2.1.lnk 2014-05-04 19:53 - 2014-05-04 19:53 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Sony 2014-05-04 19:52 - 2014-05-04 19:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallWMFDist11$ 2014-05-04 19:52 - 2014-05-04 19:52 - 00000000 ____D () C:\Program Files\Sony 2014-05-04 19:52 - 2014-05-04 19:52 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Sony 2014-05-04 19:51 - 2014-05-04 19:51 - 00000000 __HDC () C:\WINDOWS\$NtUninstallWudf01000$ 2014-05-04 19:51 - 2014-05-04 19:51 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-04 19:30 - 2014-05-04 19:44 - 27874312 _____ (Sony Mobile Communications ) C:\Documents and Settings\przemek\Pulpit\Sony PC Companion_Web.exe 2014-04-24 19:03 - 2014-04-24 19:03 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-24 19:03 - 2014-04-24 19:03 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Silverlight ==================== One Month Modified Files and Folders ======= 2014-05-16 14:15 - 2014-05-16 14:15 - 00015330 _____ () C:\Documents and Settings\przemek\Pulpit\FRST.txt 2014-05-16 14:15 - 2014-05-16 14:11 - 00000000 ____D () C:\FRST 2014-05-16 14:15 - 2009-06-02 20:06 - 00000000 ____D () C:\Documents and Settings\przemek\Pulpit 2014-05-16 14:15 - 2009-06-02 19:59 - 01766672 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-16 14:14 - 2014-05-16 14:14 - 01056768 _____ (Farbar) C:\Documents and Settings\przemek\Pulpit\FRST.exe 2014-05-16 14:14 - 2014-05-16 14:14 - 00000931 _____ () C:\WINDOWS\KB2719985.log 2014-05-16 14:14 - 2014-05-16 12:50 - 00000366 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job 2014-05-16 14:13 - 2014-05-16 14:13 - 00000930 _____ () C:\WINDOWS\KB2862152.log 2014-05-16 14:12 - 2014-05-16 14:12 - 00001544 _____ () C:\WINDOWS\KB2676562.log 2014-05-16 14:11 - 2014-05-16 14:11 - 00006706 _____ () C:\WINDOWS\KB2868626.log 2014-05-16 14:10 - 2014-05-16 14:10 - 00000000 ____D () C:\WINDOWS\LastGood 2014-05-16 14:10 - 2014-05-16 13:06 - 00008254 _____ () C:\WINDOWS\KB2922229.log 2014-05-16 14:06 - 2009-06-02 21:37 - 00000211 ___SH () C:\boot.ini 2014-05-16 14:06 - 2001-07-22 00:16 - 00000477 _____ () C:\WINDOWS\win.ini 2014-05-16 14:06 - 2001-07-22 00:15 - 00000227 _____ () C:\WINDOWS\system.ini 2014-05-16 14:04 - 2010-04-04 13:00 - 00001034 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-16 14:04 - 2009-06-02 21:41 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-05-16 14:04 - 2009-06-02 21:41 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-05-16 14:04 - 2009-06-02 20:04 - 00032626 _____ () C:\WINDOWS\SchedLgU.Txt 2014-05-16 14:04 - 2009-06-02 20:04 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-16 14:02 - 2014-05-16 14:02 - 00008028 _____ () C:\WINDOWS\KB2479943.log 2014-05-16 14:02 - 2009-06-05 19:31 - 00000000 ___HD () C:\WINDOWS\$hf_mig$ 2014-05-16 14:02 - 2009-06-02 20:06 - 00000188 ___SH () C:\Documents and Settings\przemek\ntuser.ini 2014-05-16 14:00 - 2014-05-16 14:00 - 00008029 _____ () C:\WINDOWS\KB2916036.log 2014-05-16 13:59 - 2014-05-16 13:59 - 00007934 _____ () C:\WINDOWS\KB2345886.log 2014-05-16 13:59 - 2014-05-16 13:03 - 00009567 _____ () C:\WINDOWS\KB2478971.log 2014-05-16 13:59 - 2014-05-16 13:02 - 00009569 _____ () C:\WINDOWS\KB2544893-v2.log 2014-05-16 13:58 - 2014-05-16 13:58 - 00007829 _____ () C:\WINDOWS\KB2585542.log 2014-05-16 13:58 - 2014-05-16 12:53 - 00009370 _____ () C:\WINDOWS\KB2631813.log 2014-05-16 13:56 - 2014-05-16 13:56 - 00007738 _____ () C:\WINDOWS\KB2691442.log 2014-05-16 13:55 - 2014-05-16 13:55 - 00007733 _____ () C:\WINDOWS\KB2115168.log 2014-05-16 13:54 - 2014-05-16 12:31 - 00009009 _____ () C:\WINDOWS\KB2847311.log 2014-05-16 13:53 - 2014-05-16 13:53 - 00007525 _____ () C:\WINDOWS\KB2443105.log 2014-05-16 13:53 - 2014-05-16 13:53 - 00007454 _____ () C:\WINDOWS\KB2655992.log 2014-05-16 13:52 - 2014-05-16 12:19 - 00008712 _____ () C:\WINDOWS\KB2802968.log 2014-05-16 13:48 - 2014-05-16 12:13 - 00009475 _____ () C:\WINDOWS\KB2481109.log 2014-05-16 13:48 - 2014-05-16 12:12 - 00008614 _____ () C:\WINDOWS\KB2898715.log 2014-05-16 13:47 - 2014-05-16 12:12 - 00008513 _____ () C:\WINDOWS\KB2929961.log 2014-05-16 13:47 - 2014-05-16 12:12 - 00008510 _____ () C:\WINDOWS\KB2598479.log 2014-05-16 13:47 - 2014-05-16 12:10 - 00008380 _____ () C:\WINDOWS\KB982132.log 2014-05-16 13:47 - 2014-05-16 12:09 - 00009025 _____ () C:\WINDOWS\KB2909212.log 2014-05-16 13:47 - 2014-05-16 12:08 - 00008313 _____ () C:\WINDOWS\KB2507938.log 2014-05-16 13:47 - 2014-05-16 12:06 - 00008218 _____ () C:\WINDOWS\KB2780091.log 2014-05-16 13:46 - 2014-05-16 13:46 - 00002357 _____ () C:\WINDOWS\KB2483185.log 2014-05-16 13:46 - 2014-05-16 13:46 - 00002356 _____ () C:\WINDOWS\KB2876217.log 2014-05-16 13:46 - 2014-05-16 12:06 - 00009346 _____ () C:\WINDOWS\KB2510581.log 2014-05-16 13:44 - 2014-05-16 13:44 - 00002355 _____ () C:\WINDOWS\KB979687.log 2014-05-16 13:42 - 2014-05-16 13:42 - 00002614 _____ () C:\WINDOWS\KB2930275.log 2014-05-16 13:42 - 2014-05-16 13:41 - 00002402 _____ () C:\WINDOWS\KB2864063.log 2014-05-16 13:41 - 2013-06-28 15:55 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-05-16 13:32 - 2014-05-16 13:32 - 00002357 _____ () C:\WINDOWS\KB2859537.log 2014-05-16 13:32 - 2014-05-16 13:32 - 00002355 _____ () C:\WINDOWS\KB2876331.log 2014-05-16 13:32 - 2014-05-16 13:32 - 00002355 _____ () C:\WINDOWS\KB2850869.log 2014-05-16 13:29 - 2014-05-16 13:29 - 00002356 _____ () C:\WINDOWS\KB2893294.log 2014-05-16 13:29 - 2014-05-16 13:29 - 00002356 _____ () C:\WINDOWS\KB2820917.log 2014-05-16 13:28 - 2014-05-16 13:28 - 00002357 _____ () C:\WINDOWS\KB2757638.log 2014-05-16 13:28 - 2014-05-16 13:28 - 00002357 _____ () C:\WINDOWS\KB2419632.log 2014-05-16 13:28 - 2010-04-04 13:00 - 00001038 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-16 13:27 - 2014-05-16 13:27 - 00002357 _____ () C:\WINDOWS\KB971029.log 2014-05-16 13:27 - 2014-05-16 13:27 - 00002356 _____ () C:\WINDOWS\KB2749655.log 2014-05-16 13:27 - 2014-05-16 13:27 - 00002356 _____ () C:\WINDOWS\KB2653956.log 2014-05-16 13:27 - 2014-05-16 13:27 - 00002356 _____ () C:\WINDOWS\KB2508429.log 2014-05-16 13:25 - 2014-05-16 13:25 - 00002357 _____ () C:\WINDOWS\KB2506212.log 2014-05-16 13:22 - 2014-05-16 13:22 - 00002356 _____ () C:\WINDOWS\KB2892075.log 2014-05-16 13:21 - 2014-05-16 13:20 - 00002356 _____ () C:\WINDOWS\KB2619339.log 2014-05-16 13:20 - 2014-05-16 13:20 - 00007763 _____ () C:\WINDOWS\KB2813345.log 2014-05-16 13:20 - 2014-05-16 13:20 - 00002363 _____ () C:\WINDOWS\KB2705219-v2.log 2014-05-16 13:20 - 2014-05-16 13:20 - 00002357 _____ () C:\WINDOWS\KB2509553.log 2014-05-16 13:20 - 2014-05-16 13:20 - 00002356 _____ () C:\WINDOWS\KB2727528.log 2014-05-16 13:13 - 2014-05-16 13:13 - 00002353 _____ () C:\WINDOWS\KB982665.log 2014-05-16 13:11 - 2014-05-16 13:11 - 00002355 _____ () C:\WINDOWS\KB2620712.log 2014-05-16 13:10 - 2014-05-16 13:10 - 00002356 _____ () C:\WINDOWS\KB2584146.log 2014-05-16 13:07 - 2014-05-16 13:07 - 00000000 ____D () C:\Documents and Settings\przemek\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files 2014-05-16 13:07 - 2009-06-02 20:06 - 00000000 ___HD () C:\Documents and Settings\przemek\Ustawienia lokalne\Dane aplikacji 2014-05-16 12:52 - 2014-05-16 12:52 - 00000000 ____D () C:\Documents and Settings\przemek\Dane aplikacji\AVAST Software 2014-05-16 12:52 - 2009-06-02 20:06 - 00000000 __RHD () C:\Documents and Settings\przemek\Dane aplikacji 2014-05-16 12:51 - 2014-05-16 12:51 - 00001733 _____ () C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk 2014-05-16 12:51 - 2014-05-16 12:51 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Avast 2014-05-16 12:51 - 2014-05-16 12:49 - 00777488 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys 2014-05-16 12:51 - 2014-05-16 12:49 - 00411680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys 2014-05-16 12:51 - 2014-05-16 12:49 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswrdr.sys 2014-05-16 12:51 - 2009-06-02 21:38 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-05-16 12:51 - 2009-06-02 21:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy 2014-05-16 12:49 - 2014-05-16 12:49 - 00776976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys.1400237485203 2014-05-16 12:49 - 2014-05-16 12:49 - 00271264 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2014-05-16 12:49 - 2014-05-16 12:49 - 00180632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswrdr.sys.1400237485203 2014-05-16 12:49 - 2014-05-16 12:49 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys 2014-05-16 12:49 - 2014-05-16 12:49 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2014-05-16 12:49 - 2014-05-16 12:49 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys 2014-05-16 12:21 - 2010-01-01 14:31 - 00000000 ____D () C:\Program Files\InterActual 2014-05-16 12:13 - 2014-05-16 12:13 - 00000000 ____D () C:\Program Files\AVAST Software 2014-05-16 12:08 - 2014-05-16 12:08 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software 2014-05-16 12:08 - 2009-06-02 21:38 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-05-16 12:05 - 2009-06-02 20:06 - 00000000 ____D () C:\Documents and Settings\przemek 2014-05-16 12:04 - 2009-06-10 12:50 - 00000000 ____D () C:\Documents and Settings\przemek\Dane aplikacji\Media Player Classic 2014-05-16 12:02 - 2009-07-15 17:06 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\ALLPlayer 2014-05-16 11:57 - 2014-05-16 11:57 - 00000000 ____D () C:\Program Files\CCleaner 2014-05-16 11:57 - 2014-05-16 11:57 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\CCleaner 2014-05-16 11:56 - 2014-05-16 11:56 - 00380416 _____ () C:\Documents and Settings\przemek\Pulpit\q28k6eh1.exe 2014-05-16 11:06 - 2013-06-27 18:39 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-16 11:00 - 2010-02-12 20:54 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software 2014-05-16 11:00 - 2009-06-02 20:00 - 00002596 ____C () C:\WINDOWS\system32\CONFIG.NT 2014-05-16 10:20 - 2014-05-16 10:19 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\przemek\Pulpit\OTL.exe 2014-05-16 10:13 - 2001-07-22 00:17 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl 2014-05-16 10:11 - 2010-04-07 13:29 - 00000000 ____D () C:\Documents and Settings\przemek\Dane aplikacji\SoftGrid Client 2014-05-16 10:09 - 2009-06-02 20:06 - 00000000 ___RD () C:\Documents and Settings\przemek\Menu Start\Programy 2014-05-16 10:00 - 2014-05-16 09:58 - 00000000 ____D () C:\WINDOWS\pss 2014-05-16 09:58 - 2009-06-02 21:32 - 00000000 ____D () C:\WINDOWS\Help 2014-05-14 19:26 - 2014-05-14 19:26 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-14 15:46 - 2013-06-28 15:55 - 00692400 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-05-14 15:46 - 2013-06-28 15:55 - 00070832 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-05-12 17:15 - 2009-06-02 20:06 - 00000000 ___RD () C:\Documents and Settings\przemek\Moje dokumenty 2014-05-12 17:07 - 2013-03-24 20:47 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Origin 2014-05-12 17:06 - 2009-12-27 11:22 - 00000000 ____D () C:\GTL 2014-05-05 07:56 - 2009-06-02 19:59 - 00000000 __SHD () C:\Documents and Settings\All Users\DRM 2014-05-04 19:53 - 2014-05-04 19:53 - 00001739 _____ () C:\Documents and Settings\All Users\Pulpit\Sony PC Companion 2.1.lnk 2014-05-04 19:53 - 2014-05-04 19:53 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Sony 2014-05-04 19:52 - 2014-05-04 19:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallWMFDist11$ 2014-05-04 19:52 - 2014-05-04 19:52 - 00000000 ____D () C:\Program Files\Sony 2014-05-04 19:52 - 2014-05-04 19:52 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Sony 2014-05-04 19:52 - 2009-06-02 21:09 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-04 19:52 - 2009-06-02 20:00 - 00316640 _____ () C:\WINDOWS\WMSysPr9.prx 2014-05-04 19:51 - 2014-05-04 19:51 - 00000000 __HDC () C:\WINDOWS\$NtUninstallWudf01000$ 2014-05-04 19:51 - 2014-05-04 19:51 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-04 19:44 - 2014-05-04 19:30 - 27874312 _____ (Sony Mobile Communications ) C:\Documents and Settings\przemek\Pulpit\Sony PC Companion_Web.exe 2014-05-04 13:09 - 2014-03-31 20:40 - 00000000 ____D () C:\Documents and Settings\przemek\Pulpit\kacper 2014-04-24 19:03 - 2014-04-24 19:03 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-04-24 19:03 - 2014-04-24 19:03 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Silverlight 2014-04-18 19:46 - 2010-08-02 17:16 - 00000000 ____D () C:\Documents and Settings\przemek\Moje dokumenty\Pobieranie ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe [2004-08-04 00:44] - [2008-04-14 23:51] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\WINDOWS\system32\winlogon.exe [2004-08-04 00:44] - [2008-04-14 23:51] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\WINDOWS\system32\svchost.exe [2004-08-04 00:44] - [2008-04-14 23:51] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\WINDOWS\system32\services.exe [2004-08-04 00:44] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\WINDOWS\system32\User32.dll [2004-08-04 00:44] - [2008-04-14 23:50] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\WINDOWS\system32\userinit.exe [2004-08-04 00:44] - [2008-04-14 23:51] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\WINDOWS\system32\rpcss.dll [2004-08-04 00:44] - [2009-02-09 12:53] - 0401408 ____A (Microsoft Corporation) a37311d9d628c1042a2836731787f0f3 ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\WINDOWS\system32\Drivers\volsnap.sys [2004-08-04 00:36] - [2008-04-14 22:31] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================