Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:21-05-2014 Ran by ADMIN (administrator) on ADMIN-PC on 21-05-2014 20:15:10 Running from C:\Users\ADMIN\Downloads Platform: Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (Arcabit) C:\Program Files\Arcabit\ArcaVir\AVMenu.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Overwolf LTD) C:\Program Files\Overwolf\Overwolf.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Arcabit) C:\Program Files\Arcabit\Common\ArcaConfSV.exe (Arcabit) C:\Program Files\Arcabit\ArcaUpdate\update.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Windows\System32\PnkBstrA.exe (Realtek) C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RtlService.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe (Arcabit) C:\Program Files\Arcabit\ArcaVir\ArcaMainSV.exe (Arcabit) C:\Program Files\Arcabit\ArcaAgent\ArcaRemoteSvc.exe (Arcabit) C:\Program Files\Arcabit\ArcaTools\ArcaBackup\ArcaBackupService.exe (ArcaBit) C:\Program Files\Arcabit\Common\ArcaTasksService.exe (Overwolf LTD) C:\Program Files\Common Files\Overwolf\OverwolfHelper.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\UI0Detect.exe (Arcabit) C:\Program Files\Arcabit\ArcaUpdate\exec\update_tmp.exe (Realtek Semiconductor Corp.) C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe (Microsoft Corporation) C:\Windows\System32\mobsync.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil32_12_0_0_77_ActiveX.exe (Microsoft Corporation) C:\Windows\System32\conime.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\ADMIN\Downloads\FRST (2).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Windows Defender] => C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-19] (Microsoft Corporation) HKLM\...\Run: [Nvtmru] => "C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [337432 2014-02-03] (Power Software Ltd) HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation) HKLM\...\Run: [AVMENU] => C:\Program Files\Arcabit\ArcaVir\AVMenu.exe [401944 2014-04-19] (Arcabit) HKLM\...\Run: [ARCACLEAN] => C:\Program Files\Arcabit\ArcaVir\ArcaClean.exe [59984 2014-04-19] (ArcaBit) HKU\S-1-5-19\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-20\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\S-1-5-21-2378528702-529034937-1684982878-1000\...\Run: [AQQ] => C:\Program Files\WapSter\WapSter AQQ\AQQ.exe [8174592 2013-10-16] (AQQ Sp. z o.o.) HKU\S-1-5-21-2378528702-529034937-1684982878-1000\...\Run: [Overwolf] => C:\Program Files\Overwolf\Overwolf.exe [37664 2014-03-05] (Overwolf LTD) HKU\S-1-5-21-2378528702-529034937-1684982878-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-19] (Microsoft Corporation) HKU\S-1-5-21-2378528702-529034937-1684982878-1000\...\Run: [GoogleChromeAutoLaunch_E4340140938E2EEDEA5F946244E09BA3] => C:\Program Files\Google\Chrome\Application\chrome.exe [841032 2014-05-08] (Google Inc.) Startup: C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=5.5&ar=msnhome HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=5.5&ar=msnhome SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.adobe.com/pub/shockwave/cabs/flash/swflash.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 37.59.8.25 178.33.118.171 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] Chrome: ======= CHR HomePage: CHR StartupUrls: "https://www.google.pl/" CHR Plugin: (Widevine Content Decryption Module) - C:\Users\ADMIN\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.2.464\_platform_specific\win_x86\widevinecdmadapter.dll () CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\34.0.1847.137\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.23.9\npGoogleUpdate3.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.550.14) - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Java(TM) Platform SE 7 U55) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (PDF-XChange Viewer) - C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.) CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation) CHR Plugin: (Windows Presentation Foundation) - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Extension: (AdBlock) - C:\Users\ADMIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-01-29] CHR Extension: (Google Wallet) - C:\Users\ADMIN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-06] ========================== Services (Whitelisted) ================= R2 ABConfSV; C:\Program Files\Arcabit\common\arcaconfsv.exe [142384 2014-04-19] (Arcabit) R2 ABMainSV; C:\Program Files\Arcabit\arcavir\arcamainsv.exe [162984 2014-04-19] (Arcabit) R2 ArcaRemoteService; C:\Program Files\Arcabit\arcaagent\arcaremotesvc.exe [570864 2014-04-19] (Arcabit) R2 AVBackup; C:\Program Files\Arcabit\arcatools\arcabackup\arcabackupservice.exe [187704 2014-04-19] (Arcabit) R2 AVTasks2; C:\Program Files\Arcabit\common\arcatasksservice.exe [130024 2014-04-30] (ArcaBit) R2 AVUpdate; C:\Program Files\Arcabit\arcaupdate\update.exe [200064 2014-04-19] (Arcabit) U2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation) S3 OverwolfUpdaterService; C:\Program Files\Overwolf\OverwolfUpdater.exe [99616 2014-03-05] (Overwolf LTD) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2014-04-25] () R2 Realtek11nSU; C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) ==================== Drivers (Whitelisted) ==================== R3 ABFLT; C:\Program Files\Arcabit\ArcaVir\ABFLT.sys [66800 2014-04-19] (ArcaBit) S3 ABndis; C:\Windows\System32\DRIVERS\abndis.sys [41712 2014-04-19] (ArcaBit) R3 ABndisMP; C:\Windows\System32\DRIVERS\abndis.sys [41712 2014-04-19] (ArcaBit) R1 arcawfp; C:\Windows\System32\drivers\arcawfp.sys [54200 2014-05-21] (NetFilterSDK.com) R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [114408 2014-02-03] (Power Software Ltd) R0 speedfan; C:\Windows\System32\speedfan.sys [24184 2012-12-29] (Almico Software) S1 ABTDI; \??\C:\Program Files\Arcabit\ArcaVir\ABTDI.sys [X] S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X] S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-21 20:15 - 2014-05-21 20:15 - 00602112 _____ (OldTimer Tools) C:\Users\ADMIN\Downloads\OTL (2).exe 2014-05-21 20:14 - 2014-05-21 20:14 - 01056768 _____ (Farbar) C:\Users\ADMIN\Downloads\FRST (2).exe 2014-05-18 19:22 - 2014-05-18 19:23 - 00000000 ____D () C:\Users\ADMIN\Desktop\teksty kawalkow 2014-05-17 16:27 - 2014-05-17 18:40 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Winamp 2014-05-17 16:27 - 2014-05-17 16:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp 2014-05-17 16:27 - 2014-05-17 16:27 - 00000000 ____D () C:\Program Files\Winamp 2014-05-17 16:27 - 2014-05-17 16:27 - 00000000 ____D () C:\Program Files\Common Files\PX Storage Engine 2014-05-17 16:26 - 2014-05-17 16:26 - 12892432 _____ (Nullsoft, Inc.) C:\Users\ADMIN\Downloads\winamp5666_full_pl-pl.exe 2014-05-17 16:25 - 2014-05-17 16:25 - 00707056 _____ () C:\Users\ADMIN\Downloads\Winamp(12928).exe 2014-05-17 14:15 - 2014-05-21 19:45 - 00000000 ____D () C:\Users\ADMIN\Desktop\hip hop 2014-05-17 10:42 - 2014-05-06 01:32 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-17 10:42 - 2014-05-06 01:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-17 10:42 - 2014-05-06 01:14 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-16 22:19 - 2014-05-21 19:45 - 00000000 ____D () C:\Users\ADMIN\Desktop\grafika 2014-05-16 15:37 - 2014-05-16 16:16 - 00000000 ____D () C:\Users\ADMIN\Desktop\lepszego zycia diler paluch 2014-05-16 14:34 - 2014-05-16 14:57 - 143354325 _____ () C:\Users\ADMIN\Downloads\Paluch.Lepszego.Zycia.Diler.2013.rar 2014-05-16 12:43 - 2014-03-25 15:26 - 11587584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-11 21:06 - 2014-05-11 21:08 - 88540637 _____ () C:\Users\ADMIN\Downloads\09.05.2014 4FUN POMPA.rar 2014-05-11 19:37 - 2014-05-11 19:37 - 00000043 _____ () C:\Users\ADMIN\Downloads\SLAMFM_ITUNES.m3u 2014-05-11 10:32 - 2014-05-11 10:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer 2014-05-11 10:32 - 2014-05-11 10:32 - 00001016 _____ () C:\Users\ADMIN\Desktop\San Andreas Multiplayer.lnk 2014-05-11 10:32 - 2014-05-11 10:32 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer 2014-05-11 10:31 - 2014-05-11 10:31 - 11990847 _____ () C:\Users\ADMIN\Downloads\sa-mp-0.3z-R1-install.exe 2014-05-10 13:44 - 2014-05-10 13:44 - 00000000 ____D () C:\Users\ADMIN\Documents\Criterion Games 2014-05-10 13:43 - 2010-10-28 17:08 - 02823952 _____ (Electronic Arts) C:\Users\ADMIN\Desktop\Launcher.exe 2014-05-10 13:33 - 2014-05-10 13:33 - 00000776 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Origin 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Origin 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\ProgramData\Origin 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\Program Files\Origin Games 2014-05-10 13:32 - 2014-05-10 13:33 - 00000000 ____D () C:\Program Files\Origin 2014-05-10 13:32 - 2014-05-10 13:32 - 00000541 _____ () C:\Windows\KB893803v2.log 2014-05-10 13:31 - 2014-05-10 13:31 - 00000000 ____D () C:\ProgramData\EA Core 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\ProgramData\Adobe 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\Program Files\Common Files\Adobe AIR 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\Program Files\Adobe 2014-05-10 13:10 - 2014-05-10 13:11 - 00000000 ____D () C:\ProgramData\Solidshield 2014-05-10 09:46 - 2014-05-10 09:47 - 00000000 ____D () C:\Users\ADMIN\Documents\NFS SHIFT 2014-05-10 09:45 - 2014-05-10 09:45 - 00000000 ____D () C:\Windows\C5C1C0F0D62F4DBF81D4D7EF397C228B.TMP 2014-05-10 09:42 - 2014-05-10 09:42 - 00000883 _____ () C:\Users\ADMIN\Desktop\Need for Speed - Shift.lnk 2014-05-10 09:34 - 2014-05-10 10:11 - 00000000 ____D () C:\Program Files\Need for Speed - Shift 2014-05-09 21:03 - 2014-05-09 22:36 - 00000000 ____D () C:\Users\ADMIN\Desktop\MARCIN 2014-05-09 20:55 - 2014-05-09 22:50 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\FlvtoConverter 2014-05-09 20:55 - 2014-05-09 21:01 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sounddrain Downloader 2014-05-09 20:55 - 2014-05-09 20:55 - 00001944 _____ () C:\Users\ADMIN\Desktop\Sounddrain Downloader.lnk 2014-05-09 20:55 - 2014-05-09 20:55 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\SounddrainDownloader 2014-05-09 20:54 - 2014-05-09 20:55 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Sounddrain Downloader 2014-05-09 20:54 - 2014-05-09 20:54 - 00545912 _____ (Hotger) C:\Users\ADMIN\Downloads\SounddrainDownloader.exe 2014-05-04 20:16 - 2014-05-04 20:16 - 00065168 _____ () C:\Users\ADMIN\Downloads\V2100percentSavegame.zip 2014-05-04 20:10 - 2014-05-04 20:10 - 00053205 _____ () C:\Users\ADMIN\Downloads\450_3dhsavegtasa.rar 2014-05-04 20:06 - 2014-05-04 20:06 - 00064485 _____ () C:\Users\ADMIN\Downloads\2659_gta_snow_andreas_save_100.zip 2014-05-04 20:06 - 2014-05-04 20:06 - 00045715 _____ () C:\Users\ADMIN\Downloads\1897_GTA_VC_Save_100_.rar 2014-05-04 19:07 - 2014-05-04 19:07 - 00098304 _____ (Sony DADC Austria AG.) C:\Windows\system32\CmdLineExt.dll 2014-05-04 19:04 - 2014-05-04 19:04 - 06590679 _____ (Cenega Poland Sp. z o.o. ) C:\Users\ADMIN\Downloads\2058_Gta_Sa_Spolszczenie.exe 2014-05-04 15:49 - 2014-05-11 10:32 - 00000000 ____D () C:\Users\ADMIN\Documents\GTA San Andreas User Files 2014-05-04 15:43 - 2014-05-04 15:43 - 00001691 _____ () C:\Users\Public\Desktop\GTA San Andreas.lnk 2014-05-04 15:43 - 2014-05-04 15:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2014-05-04 15:43 - 2014-05-04 15:43 - 00000000 ____D () C:\Program Files\Rockstar Games 2014-05-04 15:41 - 2014-05-04 15:41 - 00000000 ____D () C:\Program Files\Common Files\InstallShield 2014-05-03 18:39 - 2014-05-10 09:48 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\NVIDIA 2014-05-03 18:37 - 2014-05-03 18:37 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-03 18:33 - 2013-01-31 11:01 - 03970848 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-05-03 18:33 - 2013-01-31 11:01 - 02859296 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll 2014-05-03 18:33 - 2013-01-31 11:00 - 02557728 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-05-03 18:33 - 2013-01-31 11:00 - 00634656 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-05-03 18:33 - 2013-01-31 11:00 - 00108832 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-05-03 18:33 - 2013-01-31 11:00 - 00062752 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-05-02 17:48 - 2014-05-04 23:49 - 00000000 ____D () C:\Users\ADMIN\Desktop\pompa2 2014-05-02 13:43 - 2014-05-21 19:45 - 00000000 ____D () C:\Users\ADMIN\Desktop\nowe 2014-05-01 20:10 - 2014-05-01 20:10 - 00249613 _____ () C:\Users\ADMIN\Downloads\nvidiaInspector.zip 2014-04-27 21:26 - 2014-05-04 23:49 - 00000000 ____D () C:\Users\ADMIN\Desktop\INFORMACJE CO TRZEBA ZROBIC !!!!! 2014-04-26 13:16 - 2014-04-26 13:16 - 01049088 _____ (Farbar) C:\Users\ADMIN\Downloads\FRST (1).exe 2014-04-26 13:14 - 2014-04-26 13:14 - 00159616 _____ () C:\Windows\Minidump\Mini042614-01.dmp 2014-04-26 13:11 - 2014-04-26 13:11 - 00380416 _____ () C:\Users\ADMIN\Downloads\r3tsk5by.exe 2014-04-26 12:52 - 2014-04-26 12:52 - 01049088 _____ (Farbar) C:\Users\ADMIN\Downloads\FRST.exe 2014-04-26 12:52 - 2014-04-26 12:52 - 00602112 _____ (OldTimer Tools) C:\Users\ADMIN\Downloads\OTL (1).exe 2014-04-25 17:32 - 2014-04-25 17:32 - 00000000 ____D () C:\Windows\Sun 2014-04-25 17:10 - 2014-04-25 17:10 - 00448512 _____ (OldTimer Tools) C:\Users\ADMIN\Downloads\TFC (1).exe 2014-04-25 16:51 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll 2014-04-25 16:50 - 2014-04-25 16:50 - 01365865 _____ () C:\Users\ADMIN\Downloads\adwcleaner (1).exe 2014-04-25 16:30 - 2014-04-25 16:30 - 00291128 _____ () C:\Windows\system32\PnkBstrB.xtr 2014-04-25 16:30 - 2014-04-25 16:30 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\PunkBuster 2014-04-25 16:30 - 2014-04-25 16:30 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Arktos Entertainment 2014-04-25 16:29 - 2014-04-25 16:30 - 00291128 _____ () C:\Windows\system32\PnkBstrB.exe 2014-04-25 16:29 - 2014-04-25 16:30 - 00139528 _____ () C:\Windows\system32\Drivers\PnkBstrK.sys 2014-04-25 16:29 - 2014-04-25 16:29 - 00281872 _____ () C:\Windows\system32\PnkBstrB.ex0 2014-04-25 16:29 - 2014-04-25 16:29 - 00138904 _____ () C:\Users\ADMIN\AppData\Roaming\PnkBstrK.sys 2014-04-25 16:29 - 2014-04-25 16:29 - 00076888 _____ () C:\Windows\system32\PnkBstrA.exe 2014-04-25 16:29 - 2014-04-25 16:29 - 00000000 ____D () C:\Users\ADMIN\Documents\Arktos 2014-04-25 16:29 - 2014-04-25 16:29 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\CrashRpt 2014-04-25 16:29 - 2014-04-25 16:29 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Arktos 2014-04-25 16:28 - 2014-04-25 16:28 - 00000000 ____D () C:\Windows\system32\directx 2014-04-25 14:56 - 2014-04-25 14:56 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-04-22 00:00 - 2014-04-22 00:00 - 18673054 _____ () C:\Users\ADMIN\Downloads\Hey-Girl-Shake-It.wmv 2014-04-21 23:24 - 2014-04-21 23:24 - 00044882 _____ () C:\Users\ADMIN\Downloads\pobrane.htm 2014-04-21 22:55 - 2014-04-21 22:55 - 00004217 _____ () C:\Users\ADMIN\Downloads\config.cfg 2014-04-21 20:20 - 2014-04-21 20:20 - 00002356 _____ () C:\Users\ADMIN\Downloads\wiecej repa i kasy za zlecenie.rar 2014-04-21 19:58 - 2014-04-21 19:58 - 00007831 _____ () C:\Users\ADMIN\Downloads\monia.rar 2014-04-21 19:10 - 2014-04-21 19:10 - 04887531 _____ () C:\Users\ADMIN\Downloads\Desktop (1).rar 2014-04-21 16:27 - 2014-04-21 16:27 - 00023967 _____ () C:\Users\ADMIN\Downloads\wojewodztwa.zip 2014-04-21 14:48 - 2014-04-21 14:48 - 00057167 _____ () C:\Users\ADMIN\Downloads\spolszczenie.rar 2014-04-21 14:36 - 2014-04-21 14:36 - 00886409 _____ () C:\Users\ADMIN\Downloads\ikonki Ts3.rar 2014-04-21 08:51 - 2014-04-21 08:51 - 00004272 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log 2014-04-21 08:51 - 2014-04-21 08:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-04-21 08:51 - 2014-04-14 20:13 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2014-04-21 08:51 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-04-21 08:51 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-04-21 08:51 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\java.exe ==================== One Month Modified Files and Folders ======= 2014-05-21 20:15 - 2014-05-21 20:15 - 00602112 _____ (OldTimer Tools) C:\Users\ADMIN\Downloads\OTL (2).exe 2014-05-21 20:15 - 2014-04-05 16:33 - 00012067 _____ () C:\Users\ADMIN\Downloads\FRST.txt 2014-05-21 20:15 - 2014-04-05 16:33 - 00000000 ____D () C:\FRST 2014-05-21 20:14 - 2014-05-21 20:14 - 01056768 _____ (Farbar) C:\Users\ADMIN\Downloads\FRST (2).exe 2014-05-21 20:11 - 2013-11-06 19:37 - 00001034 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-21 19:45 - 2014-05-17 14:15 - 00000000 ____D () C:\Users\ADMIN\Desktop\hip hop 2014-05-21 19:45 - 2014-05-16 22:19 - 00000000 ____D () C:\Users\ADMIN\Desktop\grafika 2014-05-21 19:45 - 2014-05-02 13:43 - 00000000 ____D () C:\Users\ADMIN\Desktop\nowe 2014-05-21 19:25 - 2006-11-02 14:52 - 01386235 _____ () C:\Windows\WindowsUpdate.log 2014-05-21 18:28 - 2006-11-02 14:47 - 00004496 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-21 18:28 - 2006-11-02 14:47 - 00004496 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-21 14:53 - 2013-12-21 15:36 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\CrashDumps 2014-05-21 14:33 - 2006-12-05 07:22 - 00714666 _____ () C:\Windows\system32\perfh015.dat 2014-05-21 14:33 - 2006-12-05 07:22 - 00151538 _____ () C:\Windows\system32\perfc015.dat 2014-05-21 14:33 - 2006-11-02 12:33 - 01616086 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-21 14:30 - 2014-04-19 09:51 - 00054200 _____ (NetFilterSDK.com) C:\Windows\system32\Drivers\arcawfp.sys 2014-05-21 14:28 - 2013-12-15 20:02 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Overwolf 2014-05-21 14:28 - 2013-11-06 19:37 - 00001030 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-21 14:28 - 2006-11-02 15:01 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-21 07:16 - 2006-11-02 15:01 - 00032560 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-19 21:53 - 2013-12-15 20:02 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\TS3Client 2014-05-18 23:45 - 2013-12-10 19:14 - 00000000 ____D () C:\Program Files\steam 2014-05-18 19:23 - 2014-05-18 19:22 - 00000000 ____D () C:\Users\ADMIN\Desktop\teksty kawalkow 2014-05-17 20:28 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-05-17 18:40 - 2014-05-17 16:27 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Winamp 2014-05-17 18:32 - 2014-01-01 16:09 - 00000000 ____D () C:\Program Files\SpeedFan 2014-05-17 16:27 - 2014-05-17 16:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp 2014-05-17 16:27 - 2014-05-17 16:27 - 00000000 ____D () C:\Program Files\Winamp 2014-05-17 16:27 - 2014-05-17 16:27 - 00000000 ____D () C:\Program Files\Common Files\PX Storage Engine 2014-05-17 16:26 - 2014-05-17 16:26 - 12892432 _____ (Nullsoft, Inc.) C:\Users\ADMIN\Downloads\winamp5666_full_pl-pl.exe 2014-05-17 16:25 - 2014-05-17 16:25 - 00707056 _____ () C:\Users\ADMIN\Downloads\Winamp(12928).exe 2014-05-17 10:46 - 2013-11-06 18:48 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-17 10:44 - 2006-11-02 12:24 - 90547776 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2014-05-16 16:16 - 2014-05-16 15:37 - 00000000 ____D () C:\Users\ADMIN\Desktop\lepszego zycia diler paluch 2014-05-16 14:57 - 2014-05-16 14:34 - 143354325 _____ () C:\Users\ADMIN\Downloads\Paluch.Lepszego.Zycia.Diler.2013.rar 2014-05-11 21:08 - 2014-05-11 21:06 - 88540637 _____ () C:\Users\ADMIN\Downloads\09.05.2014 4FUN POMPA.rar 2014-05-11 19:37 - 2014-05-11 19:37 - 00000043 _____ () C:\Users\ADMIN\Downloads\SLAMFM_ITUNES.m3u 2014-05-11 10:33 - 2014-05-11 10:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer 2014-05-11 10:32 - 2014-05-11 10:32 - 00001016 _____ () C:\Users\ADMIN\Desktop\San Andreas Multiplayer.lnk 2014-05-11 10:32 - 2014-05-11 10:32 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer 2014-05-11 10:32 - 2014-05-04 15:49 - 00000000 ____D () C:\Users\ADMIN\Documents\GTA San Andreas User Files 2014-05-11 10:31 - 2014-05-11 10:31 - 11990847 _____ () C:\Users\ADMIN\Downloads\sa-mp-0.3z-R1-install.exe 2014-05-11 08:48 - 2014-01-28 20:28 - 02513414 _____ () C:\Windows\PFRO.log 2014-05-10 13:44 - 2014-05-10 13:44 - 00000000 ____D () C:\Users\ADMIN\Documents\Criterion Games 2014-05-10 13:33 - 2014-05-10 13:33 - 00000776 _____ () C:\Users\Public\Desktop\Origin.lnk 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Origin 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Origin 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\ProgramData\Origin 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2014-05-10 13:33 - 2014-05-10 13:33 - 00000000 ____D () C:\Program Files\Origin Games 2014-05-10 13:33 - 2014-05-10 13:32 - 00000000 ____D () C:\Program Files\Origin 2014-05-10 13:33 - 2014-02-21 16:35 - 00000000 ____D () C:\ProgramData\Electronic Arts 2014-05-10 13:32 - 2014-05-10 13:32 - 00000541 _____ () C:\Windows\KB893803v2.log 2014-05-10 13:32 - 2014-02-21 16:35 - 00000000 ____D () C:\Program Files\Electronic Arts 2014-05-10 13:31 - 2014-05-10 13:31 - 00000000 ____D () C:\ProgramData\EA Core 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\ProgramData\Adobe 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\Program Files\Common Files\Adobe AIR 2014-05-10 13:29 - 2014-05-10 13:29 - 00000000 ____D () C:\Program Files\Adobe 2014-05-10 13:29 - 2014-04-03 18:43 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Adobe 2014-05-10 13:29 - 2013-12-08 18:34 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Adobe 2014-05-10 13:11 - 2014-05-10 13:10 - 00000000 ____D () C:\ProgramData\Solidshield 2014-05-10 10:11 - 2014-05-10 09:34 - 00000000 ____D () C:\Program Files\Need for Speed - Shift 2014-05-10 09:48 - 2014-05-03 18:39 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\NVIDIA 2014-05-10 09:47 - 2014-05-10 09:46 - 00000000 ____D () C:\Users\ADMIN\Documents\NFS SHIFT 2014-05-10 09:45 - 2014-05-10 09:45 - 00000000 ____D () C:\Windows\C5C1C0F0D62F4DBF81D4D7EF397C228B.TMP 2014-05-10 09:45 - 2014-04-19 09:47 - 00000000 ____D () C:\Program Files\Common Files\Wise Installation Wizard 2014-05-10 09:42 - 2014-05-10 09:42 - 00000883 _____ () C:\Users\ADMIN\Desktop\Need for Speed - Shift.lnk 2014-05-09 22:50 - 2014-05-09 20:55 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\FlvtoConverter 2014-05-09 22:36 - 2014-05-09 21:03 - 00000000 ____D () C:\Users\ADMIN\Desktop\MARCIN 2014-05-09 21:01 - 2014-05-09 20:55 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sounddrain Downloader 2014-05-09 20:55 - 2014-05-09 20:55 - 00001944 _____ () C:\Users\ADMIN\Desktop\Sounddrain Downloader.lnk 2014-05-09 20:55 - 2014-05-09 20:55 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\SounddrainDownloader 2014-05-09 20:55 - 2014-05-09 20:54 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Sounddrain Downloader 2014-05-09 20:54 - 2014-05-09 20:54 - 00545912 _____ (Hotger) C:\Users\ADMIN\Downloads\SounddrainDownloader.exe 2014-05-06 01:32 - 2014-05-17 10:42 - 12347392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-06 01:14 - 2014-05-17 10:42 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-06 01:14 - 2014-05-17 10:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-04 23:49 - 2014-05-02 17:48 - 00000000 ____D () C:\Users\ADMIN\Desktop\pompa2 2014-05-04 23:49 - 2014-04-27 21:26 - 00000000 ____D () C:\Users\ADMIN\Desktop\INFORMACJE CO TRZEBA ZROBIC !!!!! 2014-05-04 20:16 - 2014-05-04 20:16 - 00065168 _____ () C:\Users\ADMIN\Downloads\V2100percentSavegame.zip 2014-05-04 20:10 - 2014-05-04 20:10 - 00053205 _____ () C:\Users\ADMIN\Downloads\450_3dhsavegtasa.rar 2014-05-04 20:06 - 2014-05-04 20:06 - 00064485 _____ () C:\Users\ADMIN\Downloads\2659_gta_snow_andreas_save_100.zip 2014-05-04 20:06 - 2014-05-04 20:06 - 00045715 _____ () C:\Users\ADMIN\Downloads\1897_GTA_VC_Save_100_.rar 2014-05-04 19:07 - 2014-05-04 19:07 - 00098304 _____ (Sony DADC Austria AG.) C:\Windows\system32\CmdLineExt.dll 2014-05-04 19:04 - 2014-05-04 19:04 - 06590679 _____ (Cenega Poland Sp. z o.o. ) C:\Users\ADMIN\Downloads\2058_Gta_Sa_Spolszczenie.exe 2014-05-04 15:43 - 2014-05-04 15:43 - 00001691 _____ () C:\Users\Public\Desktop\GTA San Andreas.lnk 2014-05-04 15:43 - 2014-05-04 15:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2014-05-04 15:43 - 2014-05-04 15:43 - 00000000 ____D () C:\Program Files\Rockstar Games 2014-05-04 15:43 - 2013-11-06 18:06 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-04 15:41 - 2014-05-04 15:41 - 00000000 ____D () C:\Program Files\Common Files\InstallShield 2014-05-03 18:37 - 2014-05-03 18:37 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-05-03 18:35 - 2013-11-06 14:27 - 00002032 _____ () C:\Users\ADMIN\AppData\Local\d3d9caps.dat 2014-05-03 18:33 - 2013-11-06 19:11 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-05-03 18:33 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\Help 2014-05-03 18:32 - 2013-11-06 19:14 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-05-03 17:33 - 2013-11-09 19:49 - 00000000 ____D () C:\Users\ADMIN\Documents\Euro Truck Simulator 2 2014-05-01 20:10 - 2014-05-01 20:10 - 00249613 _____ () C:\Users\ADMIN\Downloads\nvidiaInspector.zip 2014-04-27 21:27 - 2014-01-29 20:43 - 00000000 ____D () C:\Users\ADMIN\Desktop\MECHANIKA 2014-04-26 13:16 - 2014-04-26 13:16 - 01049088 _____ (Farbar) C:\Users\ADMIN\Downloads\FRST (1).exe 2014-04-26 13:14 - 2014-04-26 13:14 - 00159616 _____ () C:\Windows\Minidump\Mini042614-01.dmp 2014-04-26 13:14 - 2014-02-25 15:35 - 313212220 _____ () C:\Windows\MEMORY.DMP 2014-04-26 13:14 - 2013-11-14 15:20 - 00000000 ____D () C:\Windows\Minidump 2014-04-26 13:11 - 2014-04-26 13:11 - 00380416 _____ () C:\Users\ADMIN\Downloads\r3tsk5by.exe 2014-04-26 13:09 - 2014-04-05 16:53 - 00047578 _____ () C:\Users\ADMIN\Downloads\Extras.Txt 2014-04-26 13:08 - 2014-04-05 16:52 - 00067014 _____ () C:\Users\ADMIN\Downloads\OTL.Txt 2014-04-26 12:56 - 2014-04-05 16:39 - 00042051 _____ () C:\Users\ADMIN\Downloads\Shortcut.txt 2014-04-26 12:56 - 2014-04-05 16:34 - 00023774 _____ () C:\Users\ADMIN\Downloads\Addition.txt 2014-04-26 12:52 - 2014-04-26 12:52 - 01049088 _____ (Farbar) C:\Users\ADMIN\Downloads\FRST.exe 2014-04-26 12:52 - 2014-04-26 12:52 - 00602112 _____ (OldTimer Tools) C:\Users\ADMIN\Downloads\OTL (1).exe 2014-04-25 17:32 - 2014-04-25 17:32 - 00000000 ____D () C:\Windows\Sun 2014-04-25 17:10 - 2014-04-25 17:10 - 00448512 _____ (OldTimer Tools) C:\Users\ADMIN\Downloads\TFC (1).exe 2014-04-25 16:53 - 2014-04-06 15:13 - 00000000 ____D () C:\AdwCleaner 2014-04-25 16:53 - 2013-11-06 14:27 - 00000000 ____D () C:\Users\ADMIN 2014-04-25 16:50 - 2014-04-25 16:50 - 01365865 _____ () C:\Users\ADMIN\Downloads\adwcleaner (1).exe 2014-04-25 16:39 - 2013-11-06 19:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-04-25 16:39 - 2013-11-06 14:27 - 00001233 _____ () C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-04-25 16:30 - 2014-04-25 16:30 - 00291128 _____ () C:\Windows\system32\PnkBstrB.xtr 2014-04-25 16:30 - 2014-04-25 16:30 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\PunkBuster 2014-04-25 16:30 - 2014-04-25 16:30 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Arktos Entertainment 2014-04-25 16:30 - 2014-04-25 16:29 - 00291128 _____ () C:\Windows\system32\PnkBstrB.exe 2014-04-25 16:30 - 2014-04-25 16:29 - 00139528 _____ () C:\Windows\system32\Drivers\PnkBstrK.sys 2014-04-25 16:29 - 2014-04-25 16:29 - 00281872 _____ () C:\Windows\system32\PnkBstrB.ex0 2014-04-25 16:29 - 2014-04-25 16:29 - 00138904 _____ () C:\Users\ADMIN\AppData\Roaming\PnkBstrK.sys 2014-04-25 16:29 - 2014-04-25 16:29 - 00076888 _____ () C:\Windows\system32\PnkBstrA.exe 2014-04-25 16:29 - 2014-04-25 16:29 - 00000000 ____D () C:\Users\ADMIN\Documents\Arktos 2014-04-25 16:29 - 2014-04-25 16:29 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\CrashRpt 2014-04-25 16:29 - 2014-04-25 16:29 - 00000000 ____D () C:\Users\ADMIN\AppData\Local\Arktos 2014-04-25 16:29 - 2006-11-02 13:18 - 00000000 ____D () C:\Windows\system32\LogFiles 2014-04-25 16:28 - 2014-04-25 16:28 - 00000000 ____D () C:\Windows\system32\directx 2014-04-25 14:56 - 2014-04-25 14:56 - 00000000 ____D () C:\Users\ADMIN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-04-25 14:48 - 2014-02-17 13:20 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-04-22 10:43 - 2014-04-19 09:50 - 00000000 ____D () C:\ProgramData\ArcaBit 2014-04-22 00:00 - 2014-04-22 00:00 - 18673054 _____ () C:\Users\ADMIN\Downloads\Hey-Girl-Shake-It.wmv 2014-04-21 23:24 - 2014-04-21 23:24 - 00044882 _____ () C:\Users\ADMIN\Downloads\pobrane.htm 2014-04-21 22:55 - 2014-04-21 22:55 - 00004217 _____ () C:\Users\ADMIN\Downloads\config.cfg 2014-04-21 20:20 - 2014-04-21 20:20 - 00002356 _____ () C:\Users\ADMIN\Downloads\wiecej repa i kasy za zlecenie.rar 2014-04-21 19:58 - 2014-04-21 19:58 - 00007831 _____ () C:\Users\ADMIN\Downloads\monia.rar 2014-04-21 19:10 - 2014-04-21 19:10 - 04887531 _____ () C:\Users\ADMIN\Downloads\Desktop (1).rar 2014-04-21 16:27 - 2014-04-21 16:27 - 00023967 _____ () C:\Users\ADMIN\Downloads\wojewodztwa.zip 2014-04-21 14:48 - 2014-04-21 14:48 - 00057167 _____ () C:\Users\ADMIN\Downloads\spolszczenie.rar 2014-04-21 14:36 - 2014-04-21 14:36 - 00886409 _____ () C:\Users\ADMIN\Downloads\ikonki Ts3.rar 2014-04-21 08:52 - 2013-11-19 20:06 - 00000000 ____D () C:\ProgramData\Oracle 2014-04-21 08:51 - 2014-04-21 08:51 - 00004272 _____ () C:\Windows\system32\jupdate-1.7.0_55-b14.log 2014-04-21 08:51 - 2014-04-21 08:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-04-21 08:51 - 2013-11-19 20:14 - 00000000 ____D () C:\Program Files\Java ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-21 14:36 ==================== End Of Log ============================