Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:12-06-2014 02 Ran by raddor71 (administrator) on IBM on 14-06-2014 10:32:45 Running from C:\Documents and Settings\raddor71\Pulpit\logi Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 7 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (Cherished Technololgy LIMITED) C:\Documents and Settings\All Users\Dane aplikacji\IePluginServices\PluginService.exe (Fuyu LIMITED) C:\Documents and Settings\All Users\Dane aplikacji\WindowsProtectManger\wprotectmanager.exe (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\fst_pl_128\upfst_pl_128.exe (Lavasoft) C:\Documents and Settings\All Users\Dane aplikacji\Ad-Aware Browsing Protection\adawarebp.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Symantec Corporation) C:\Program Files\Norton AntiVirus\Engine\20.4.0.40\ccsvchst.exe (Symantec Corporation) C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\NST.exe () C:\Documents and Settings\raddor71\Dane aplikacji\VOPackage\VOsrv.exe (Symantec Corporation) C:\Program Files\Norton AntiVirus\Engine\20.4.0.40\ccsvchst.exe (Symantec Corporation) C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\NST.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Cmaudio] => RunDll32 cmicnfg.cpl,CMICtrlWnd HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\Run: [upfst_pl_128.exe] => C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\fst_pl_128\upfst_pl_128.exe [3269112 2014-06-06] () HKLM\...\Run: [mobilegeni daemon] => C:\Program Files\Mobogenie\DaemonProcess.exe HKLM\...\Run: [Ad-Aware Browsing Protection] => C:\Documents and Settings\All Users\Dane aplikacji\Ad-Aware Browsing Protection\adawarebp.exe [559696 2013-09-27] (Lavasoft) HKU\.DEFAULT\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32 HKU\S-1-5-19\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32 HKU\S-1-5-20\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32 HKU\S-1-5-21-1123561945-1417001333-1177238915-1003\...\Run: [NextLive] => C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\raddor71\Dane aplikacji\newnext.me\nengine.dll",EntryPoint -m l HKU\S-1-5-21-1123561945-1417001333-1177238915-1003\...\MountPoints2: {e17c1e26-a2f8-11e3-9321-001986000940} - F:\Start.exe AppInit_DLLs: C:\PROGRA~1\SupTab\SEARCH~1.DLL => C:\PROGRA~1\SupTab\SEARCH~1.DLL File Not Found Startup: C:\Documents and Settings\raddor71\Menu Start\Programy\Autostart\Powiadomienia monitorowania tuszu - HP Deskjet 3510 series.lnk ShortcutTarget: Powiadomienia monitorowania tuszu - HP Deskjet 3510 series.lnk -> C:\Program Files\HP\HP Deskjet 3510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0613&utm_campaign=installer&utm_content=ds&from=wpm0613&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&ts=1402567063&type=default&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/isearch/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/?utm_source=b&utm_medium=wpm0613&utm_campaign=installer&utm_content=hp&from=wpm0613&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&ts=1402567063 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0613&utm_campaign=installer&utm_content=ds&from=wpm0613&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&ts=1402567063&type=default&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/?utm_source=b&utm_medium=wpm0613&utm_campaign=installer&utm_content=hp&from=wpm0613&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&ts=1402567063 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.qone8.com/web/?type=ds&ts=1402317358&from=tt4u&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.qone8.com/web/?type=ds&ts=1402317358&from=tt4u&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=180&d=20140613 StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://start.qone8.com/?type=sc&ts=1402317358&from=tt4u&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.qone8.com/web/?type=ds&ts=1402317358&from=tt4u&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.qone8.com/web/?type=ds&ts=1402317358&from=tt4u&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&q={searchTerms} SearchScopes: HKCU - DefaultScope {8B63A8D6-BBED-4341-8867-790E5F524C96} URL = http://mystart.incredimail.com/?search={searchTerms}&loc=search_box_fs SearchScopes: HKCU - {0C7A8EB6-7C00-4C8B-BD52-896AD689C7EB} URL = http://search.us.com/serp?guid={92E087AC-FE90-43D7-9CFC-AA5CD8BF2E9A}&action=default_search&serpv=5&k={searchTerms} SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0613&utm_campaign=installer&utm_content=ds&from=wpm0613&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&ts=1402567063&type=default&q={searchTerms} SearchScopes: HKCU - {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = http://securedsearch2.lavasoft.com/results.php?pr=vmn&id=adawaretb&v=3_9&idate=2014-06-13&hsimp=yhs-lavasoft&ent=ch&q={searchTerms} SearchScopes: HKCU - {77D5640F-DE5E-4B22-B47E-2E60FA0B0B5E} URL = http://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10513 SearchScopes: HKCU - {8B63A8D6-BBED-4341-8867-790E5F524C96} URL = http://mystart.incredimail.com/?search={searchTerms}&loc=search_box_fs SearchScopes: HKCU - {F17FA716-DBE6-4DC7-92D5-DA25374B149C} URL = http://search.us.com/serp?guid={626EC573-AEEE-4878-B8C8-55A9722CDFFC}&action=default_search&serpv=5&k={searchTerms} BHO: SavePass - {11111111-1111-1111-1111-110511701150} - C:\Program Files\SavePass\SavePass-bho.dll (OutBrowse) BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files\SupTab\SupTab.dll (Thinknice Co. Limited) BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Norton Identity Protection - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\coIEPlg.dll (Symantec Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - Norton Identity Safe Toolbar - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\coIEPlg.dll (Symantec Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default FF NewTab: chrome://quick_start/content/index.html FF Homepage: hxxp://mystart.incredimail.com/isearch/ FF Keyword.URL: hxxp://search.us.com/serp?guid={92E087AC-FE90-43D7-9CFC-AA5CD8BF2E9A}&action=default_search&serpv=5&k= FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @oberon-media.com/ONCAdapter - C:\Program Files\Common Files\Oberon Media\NCAdapter\1.0.0.14\npapicomadapter.dll (Oberon-Media ) FF Plugin: @staging.google.com/globalUpdate Update;version=10 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin: @staging.google.com/globalUpdate Update;version=4 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin: PDF Architect 2 - C:\Program Files\PDF Architect 2\np-previewer.dll (pdfforge GmbH) FF SearchPlugin: C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\searchplugins\MyStart Search.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\adawaretb.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\delta-homes.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\qone8.xml FF Extension: SavePass - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\Extensions\587fea1b-1c76-43c0-8b29-3c3da78e2485@2309207e-4ba6-42d8-b8a2-3b0a22e052b5.com [2014-06-11] FF Extension: Fast Start - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\Extensions\faststartff@gmail.com [2014-06-12] FF Extension: shortcut - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\Extensions\shortcutff@gmail.com [2014-06-12] FF HKLM\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\IPSFF FF Extension: Norton Vulnerability Protection - C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\IPSFF [2014-06-11] FF HKLM\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\extensions\faststartff@gmail.com FF Extension: Fast Start - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\extensions\faststartff@gmail.com [2014-06-12] FF HKLM\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\Documents and Settings\All Users\Dane aplikacji\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.5.0.67\coFFPlgn\ FF Extension: Norton Identity Safe Toolbar - C:\Documents and Settings\All Users\Dane aplikacji\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.5.0.67\coFFPlgn\ [] FF HKLM\...\Firefox\Extensions: [shortcutff@gmail.com] - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\extensions\shortcutff@gmail.com FF Extension: shortcut - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\extensions\shortcutff@gmail.com [2014-06-12] FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe http://www.delta-homes.com/?utm_source=b&utm_medium=wpm0613&utm_campaign=installer&utm_content=sc&from=wpm0613&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&ts=1402567063 Chrome: ======= CHR HomePage: hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_9&idate=2014-06-13&ent=hp&u=BA8161C1D5D21001EDD032539AD00BA7 CHR StartupUrls: "hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_9&idate=2014-06-13&ent=hp&u=BA8161C1D5D21001EDD032539AD00BA7", "hxxp://www.gazeta.pl/0,0.html?p=180&d=20140613", "hxxp://start.qone8.com/?type=hppp&ts=1402478807&from=tt4u&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X" CHR DefaultSearchKeyword: qone8 CHR DefaultSearchProvider: qone8 CHR DefaultSearchURL: http://www.qone8.com/web/?type=dspp&ts=1402317483&from=tt4u&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&q={searchTerms} CHR DefaultNewTabURL: CHR Extension: (Google Wallet) - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-26] CHR Extension: (Norton Identity Safe for Google Chrome™) - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob [2014-06-11] CHR Extension: (Extended Protection) - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo [2014-06-12] CHR HKLM\...\Chrome\Extension: [ainbkicbloikcngphmjfpjdemblcojdd] - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\slidebar.crx [2014-06-12] CHR HKLM\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\Exts\Chrome.crx [2014-06-11] CHR HKLM\...\Chrome\Extension: [ogfjmhfnldnajmfaofeiaepghjenbgjo] - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ep.crx [2014-06-12] CHR HKLM\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [2014-06-09] CHR StartMenuInternet: Google Chrome - C:\Program Files\Google\Chrome\Application\chrome.exe http://www.delta-homes.com/?utm_source=b&utm_medium=wpm0613&utm_campaign=installer&utm_content=sc&from=wpm0613&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&ts=1402567063 CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ========================== Services (Whitelisted) ================= S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-06-08] (globalUpdate) [File not signed] S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-06-08] (globalUpdate) [File not signed] R2 IePluginServices; C:\Documents and Settings\All Users\Dane aplikacji\IePluginServices\PluginService.exe [704112 2014-05-08] (Cherished Technololgy LIMITED) R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-05-27] (Oracle Corporation) R2 NAV; C:\Program Files\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-20] (Symantec Corporation) R2 NCO; C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\NST.exe [129424 2013-08-15] (Symantec Corporation) S3 PDF Architect 2; C:\Program Files\PDF Architect 2\ws.exe [1716264 2014-04-30] (pdfforge GmbH) S3 pdfforge CrashHandler; C:\Program Files\PDF Architect 2\crash-handler-ws.exe [861736 2014-04-30] (pdfforge GmbH) R2 VOsrv; C:\Documents and Settings\raddor71\Dane aplikacji\VOPackage\VOsrv.exe [353792 2014-02-25] () [File not signed] R2 WindowsProtectManger; C:\Documents and Settings\All Users\Dane aplikacji\WindowsProtectManger\wprotectmanager.exe [591776 2014-06-11] (Fuyu LIMITED) ==================== Drivers (Whitelisted) ==================== R1 BHDrvx86; C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\BASHDefs\20140606.001\BHDrvx86.sys [1101616 2014-06-06] (Symantec Corporation) R3 btaudio; C:\WINDOWS\System32\drivers\btaudio.sys [534312 2009-02-18] (Broadcom Corporation.) R3 BTDriver; C:\WINDOWS\System32\DRIVERS\btport.sys [37160 2008-02-04] (Broadcom Corporation.) R3 BTKRNL; C:\WINDOWS\System32\DRIVERS\btkrnl.sys [991136 2009-03-19] (Broadcom Corporation.) R3 BTWDNDIS; C:\WINDOWS\System32\DRIVERS\btwdndis.sys [156816 2008-07-24] (Broadcom Corporation.) R3 btwhid; C:\WINDOWS\System32\DRIVERS\btwhid.sys [57384 2008-03-10] (Broadcom Corporation.) R3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [47272 2008-10-30] (Broadcom Corporation.) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation) R1 ccSet_NAV; C:\WINDOWS\system32\drivers\NAV\1404000.028\ccSetx86.sys [134744 2013-04-15] (Symantec Corporation) R1 ccSet_NST; C:\WINDOWS\system32\drivers\NST\7DE05000.043\ccSetx86.sys [117336 2013-07-30] (Symantec Corporation) R3 cmuda; C:\WINDOWS\System32\drivers\cmuda.sys [821760 2004-08-23] (C-Media Inc) R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [377648 2014-06-12] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [109872 2014-06-11] (Symantec Corporation) R3 IDSxpx86; C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\IPSDefs\20140613.001\IDSxpx86.sys [383120 2014-06-10] (Symantec Corporation) R3 NAVENG; C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\VirusDefs\20140613.017\NAVENG.SYS [93272 2014-06-12] (Symantec Corporation) R3 NAVEX15; C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\VirusDefs\20140613.017\NAVEX15.SYS [1612376 2014-06-12] (Symantec Corporation) S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R3 rtl8139; C:\WINDOWS\System32\DRIVERS\R8139n51.SYS [45568 2002-06-13] (Realtek Semiconductor Corporation) R3 SRTSP; C:\WINDOWS\system32\drivers\NAV\1404000.028\SRTSP.SYS [603224 2013-05-15] (Symantec Corporation) R1 SRTSPX; C:\WINDOWS\system32\drivers\NAV\1404000.028\SRTSPX.SYS [32344 2013-03-04] (Symantec Corporation) R0 SymDS; C:\WINDOWS\System32\drivers\NAV\1404000.028\SYMDS.SYS [367704 2013-05-20] (Symantec Corporation) R0 SymEFA; C:\WINDOWS\System32\drivers\NAV\1404000.028\SYMEFA.SYS [934488 2013-05-22] (Symantec Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [142496 2014-06-11] (Symantec Corporation) R1 SymIRON; C:\WINDOWS\system32\drivers\NAV\1404000.028\Ironx86.SYS [175264 2012-09-06] (Symantec Corporation) R1 SYMTDI; C:\WINDOWS\system32\drivers\NAV\1404000.028\SYMTDI.SYS [396760 2013-04-24] (Symantec Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-14 10:29 - 2014-06-14 10:32 - 00000000 ____D () C:\FRST 2014-06-14 10:21 - 2014-06-14 10:24 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\SecuritycCheck 2014-06-14 10:18 - 2014-06-14 10:19 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\gmer 2014-06-14 10:10 - 2014-06-14 10:12 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Otl 2014-06-14 09:53 - 2014-06-14 10:00 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Frst 2014-06-14 09:50 - 2014-06-14 10:32 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\logi 2014-06-14 09:15 - 2014-06-14 09:15 - 00000918 _____ () C:\Documents and Settings\raddor71\Pulpit\Continue VuuPC Installation.lnk 2014-06-13 19:54 - 2014-06-13 19:54 - 00000000 _____ () C:\Documents and Settings\raddor71\Pulpit\Nowy Dokument tekstowy (4).txt 2014-06-13 17:10 - 2014-06-13 17:10 - 00026158 _____ () C:\Documents and Settings\raddor71\Pulpit\postępowanie podatkowe testy.odt 2014-06-13 14:51 - 2014-06-13 14:51 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\LavasoftStatistics 2014-06-13 13:11 - 2014-06-13 13:11 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\adawarebp 2014-06-13 13:08 - 2014-06-14 08:41 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Ad-Aware Browsing Protection 2014-06-13 13:00 - 2014-06-13 13:00 - 00003960 _____ () C:\{DDC3FC98-9557-40A4-B98D-E77D84E40554} 2014-06-13 12:59 - 2014-06-13 12:59 - 00003208 _____ () C:\{75068878-4F01-42D3-8C95-20F498892596} 2014-06-13 12:57 - 2014-06-13 12:57 - 00003448 _____ () C:\{32E2ED47-8064-48DA-97B7-922A9AB53743} 2014-06-13 12:52 - 2014-06-13 12:52 - 00003704 _____ () C:\{DA734F3F-2205-432F-B4BA-1193B1FA08CC} 2014-06-13 12:50 - 2014-06-13 12:50 - 00002944 _____ () C:\{3A581BB7-17F5-4D33-974E-187E572C6EE0} 2014-06-13 12:18 - 2014-06-14 08:44 - 00000000 ____D () C:\Program Files\Lavasoft 2014-06-13 12:09 - 2014-06-14 08:38 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Lavasoft 2014-06-13 12:06 - 2014-06-13 12:07 - 00008500 _____ () C:\WINDOWS\KB942288-v3.log 2014-06-13 12:06 - 2014-06-13 12:07 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB942288-v3$ 2014-06-13 12:06 - 2014-06-13 12:06 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Lavasoft 2014-06-13 11:16 - 2014-06-13 11:16 - 00000450 _____ () C:\WINDOWS\Tasks\HP AR Program Upload - 91ae124a7f9e41acbde779f859db7ade1c4c9ffff9d545ac8e6910e7df3da34a.job 2014-06-12 19:50 - 2014-06-12 19:51 - 00001176 _____ () C:\Documents and Settings\raddor71\Pulpit\Nowy Dokument tekstowy (3).txt 2014-06-12 16:30 - 2014-06-12 16:30 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-06-12 14:31 - 2014-06-12 14:31 - 00002552 _____ () C:\{EADE0DB7-5E5A-48BD-9AE4-3BEB1D5F92E7} 2014-06-12 13:27 - 2014-06-12 13:27 - 00002600 _____ () C:\{262CBED2-6B6B-4242-AF82-4FDE28637809} 2014-06-12 13:15 - 2014-06-12 13:15 - 00002640 _____ () C:\{F496378D-4A46-441C-B769-3216B0DAFDCC} 2014-06-12 13:02 - 2014-06-12 13:02 - 00002136 _____ () C:\{67571BC2-20D4-4F61-A6C4-31AB567EBE22} 2014-06-12 12:17 - 2014-06-12 12:17 - 00002400 _____ () C:\{905D190E-285B-4C9B-95F5-C798A7E2377F} 2014-06-12 12:03 - 2014-06-12 14:09 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\337Games 2014-06-12 11:06 - 2014-06-12 11:06 - 00002256 _____ () C:\{F0FEB365-4C34-406F-9F71-7122B14B4910} 2014-06-11 20:27 - 2014-06-11 20:27 - 00722104 _____ (Elex do Brasil Participações Ltda) C:\Documents and Settings\raddor71\Pulpit\yet_another_cleaner_brob.exe 2014-06-11 19:38 - 2014-06-11 19:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Norton Identity Safe 2014-06-11 12:23 - 2014-06-12 11:58 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NST 2014-06-11 12:23 - 2014-06-11 18:39 - 00000000 ____D () C:\Program Files\Norton Identity Safe 2014-06-11 12:23 - 2014-06-11 12:22 - 00142496 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS 2014-06-11 12:23 - 2014-06-11 12:22 - 00007611 _____ () C:\WINDOWS\system32\Drivers\SYMEVENT.CAT 2014-06-11 12:22 - 2014-06-11 18:37 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared 2014-06-11 12:22 - 2014-06-11 12:23 - 00000000 ____D () C:\Program Files\Symantec 2014-06-11 12:16 - 2014-06-11 12:26 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NAV 2014-06-11 12:16 - 2014-06-11 12:22 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Norton AntiVirus 2014-06-11 12:16 - 2014-06-11 12:16 - 00000000 ____D () C:\Program Files\Norton AntiVirus 2014-06-11 11:42 - 2014-06-11 11:43 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\7-Zip 2014-06-11 11:42 - 2014-06-11 11:42 - 00000000 ____D () C:\Program Files\7-Zip 2014-06-11 09:08 - 2014-06-11 09:12 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-06-09 14:36 - 2014-06-12 12:03 - 00000000 ____D () C:\Program Files\SupTab 2014-06-09 14:36 - 2014-06-12 11:55 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\WindowsProtectManger 2014-06-09 14:36 - 2014-06-09 14:37 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\IePluginServices 2014-06-09 14:36 - 2014-06-09 14:36 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\SupTab 2014-06-09 14:36 - 2014-06-09 14:36 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\qone8 2014-06-09 14:27 - 2014-06-09 14:27 - 17352880 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe 2014-06-08 20:17 - 2014-06-14 08:44 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\fst_pl_128 2014-06-08 20:17 - 2014-06-11 11:49 - 00000404 __RSH () C:\Documents and Settings\All Users\ntuser.pol 2014-06-08 20:17 - 2014-06-10 20:20 - 00000000 ____D () C:\Program Files\fst_pl_128 2014-06-08 20:17 - 2014-06-10 20:20 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\fst 2014-06-08 20:17 - 2014-06-08 20:17 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy 2014-06-08 20:11 - 2014-06-08 20:11 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Opera Software 2014-06-08 20:10 - 2014-06-08 20:10 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Opera Software 2014-06-08 20:07 - 2014-06-08 20:10 - 00002946 _____ () C:\Documents and Settings\raddor71\Dane aplikacji\aps.scan.results 2014-06-08 20:07 - 2014-06-08 20:10 - 00001208 _____ () C:\Documents and Settings\raddor71\Dane aplikacji\aps.scan.quick.results 2014-06-08 20:07 - 2014-06-08 20:10 - 00000318 _____ () C:\Documents and Settings\raddor71\Dane aplikacji\aps.uninstall.scan.results 2014-06-08 20:07 - 2014-06-08 20:07 - 00000232 _____ () C:\WINDOWS\Tasks\Opera D7.job 2014-06-08 20:07 - 2014-06-08 20:07 - 00000232 _____ () C:\WINDOWS\Tasks\Opera D6.job 2014-06-08 20:06 - 2014-06-14 08:41 - 00000422 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1402250759.job 2014-06-08 20:06 - 2014-06-08 20:06 - 00000675 _____ () C:\Documents and Settings\All Users\Pulpit\Opera.lnk 2014-06-08 20:06 - 2014-06-08 20:06 - 00000675 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk 2014-06-08 20:06 - 2014-06-08 20:06 - 00000000 ____D () C:\Documents and Settings\raddor71\Menu Start\Programy\AnyProtect PC Backup 2014-06-08 20:05 - 2014-06-08 20:06 - 00000000 ____D () C:\Program Files\Opera 2014-06-08 20:02 - 2014-06-08 20:15 - 00000000 ____D () C:\Program Files\AnyProtectEx 2014-06-08 20:02 - 2014-06-05 13:29 - 00815502 _____ (Click Me In Limited) C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\AnyProtectScannerSetup.exe 2014-06-08 19:39 - 2014-06-08 19:39 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN 2014-06-08 19:38 - 2014-06-08 19:38 - 00000000 ____D () C:\Program Files\VideoLAN 2014-06-08 19:37 - 2014-06-14 09:42 - 00001292 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-7.job 2014-06-08 19:37 - 2014-06-14 08:42 - 00002046 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-4.job 2014-06-08 19:37 - 2014-06-14 08:42 - 00001364 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-6.job 2014-06-08 19:37 - 2014-06-14 08:42 - 00001352 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-1.job 2014-06-08 19:37 - 2014-06-14 08:42 - 00001322 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-2.job 2014-06-08 19:37 - 2014-06-14 08:41 - 00000916 _____ () C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job 2014-06-08 19:37 - 2014-06-13 19:43 - 00000920 _____ () C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job 2014-06-08 19:37 - 2014-06-12 08:58 - 00000000 ____D () C:\Program Files\SavePass 2014-06-08 19:37 - 2014-06-08 19:37 - 00000000 ____D () C:\Program Files\globalUpdate 2014-06-08 19:37 - 2014-06-08 19:37 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\globalUpdate 2014-06-08 19:36 - 2014-06-08 19:37 - 00000000 ____D () C:\Program Files\ConstaSurf 2014-06-08 19:36 - 2014-06-08 19:36 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\VOPackage 2014-06-06 21:51 - 2014-06-06 21:51 - 00047809 _____ () C:\Documents and Settings\raddor71\Pulpit\Fundusze Strukturalne, przygotowanie i system finansowania projektów UE - Kubas-Hul - wykłady.odt 2014-06-04 21:53 - 2014-06-04 21:53 - 00021188 _____ () C:\Documents and Settings\raddor71\Pulpit\Przygotowywanie projektów dla UE.doc wykład I.odt 2014-06-04 21:52 - 2014-06-14 08:41 - 00000314 _____ () C:\WINDOWS\Tasks\EACUYYFAP.job 2014-06-04 21:52 - 2014-06-04 21:52 - 00159744 __RSH () C:\WINDOWS\system32\wuaucpln.dll 2014-06-03 19:24 - 2014-06-03 19:24 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\PDF Architect 2 2014-06-03 19:23 - 2014-06-03 19:23 - 00000000 ____D () C:\Program Files\PDF Architect 2 2014-06-03 19:23 - 2014-06-03 19:23 - 00000000 ____D () C:\Documents and Settings\raddor71\Moje dokumenty\PDF Architect 2 2014-06-03 19:21 - 2014-06-03 19:21 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\PDF Architect 2 2014-06-03 19:20 - 2014-06-03 19:24 - 00000000 ____D () C:\Program Files\PDFCreator 2014-06-03 19:20 - 2014-06-03 19:20 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\pdfforge 2014-06-03 19:20 - 2014-06-03 19:20 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\PDFCreator 2014-06-03 19:20 - 2014-04-25 17:44 - 00662288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSCOMCT2.OCX 2014-06-03 19:20 - 2014-04-25 17:44 - 00137000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMAPI32.OCX 2014-06-03 19:20 - 2014-04-25 17:44 - 00095416 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll 2014-06-03 19:20 - 2014-04-25 17:44 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPIDE.DLL 2014-06-03 16:25 - 2014-06-03 16:25 - 00134144 _____ () C:\Documents and Settings\raddor71\Pulpit\Kontrola i nadzor2.ppt 2014-05-29 19:21 - 2014-05-28 16:23 - 01115288 _____ () C:\Documents and Settings\raddor71\Moje dokumenty\Komentarz%20-%20Ordynacja%20podatkowa.doc_0.odt 2014-05-29 19:00 - 2014-05-29 19:00 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Alior_Bank 2014-05-28 21:14 - 2014-05-28 21:34 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\z telefonu Doroty 2014-05-27 08:11 - 2014-05-27 08:11 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-27 08:10 - 2014-05-27 08:10 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-05-27 08:10 - 2014-05-27 08:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-05-27 08:10 - 2014-05-27 08:10 - 00000000 ____D () C:\Program Files\Java 2014-05-27 08:10 - 2014-05-27 08:10 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Java 2014-05-27 08:04 - 2014-05-27 08:04 - 00921512 _____ (Oracle Corporation) C:\Documents and Settings\raddor71\Pulpit\jxpiinstall.exe 2014-05-24 21:32 - 2014-05-24 21:32 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\GameHouse 2014-05-24 21:31 - 2014-05-24 21:56 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\TEMP 2014-05-24 21:30 - 2014-05-24 21:30 - 00002419 _____ () C:\Documents and Settings\raddor71\Pulpit\Delicious - Emily's Honeymoon Cruise Premium Edition.lnk 2014-05-24 21:30 - 2014-05-24 21:30 - 00000000 ____D () C:\Documents and Settings\raddor71\Menu Start\Programy\IncrediGames Games 2014-05-24 21:26 - 2014-05-24 21:26 - 00000000 ____D () C:\Program Files\Oberon Media SIDR 2014-05-24 21:22 - 2014-05-24 21:31 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Oberon Media 2014-05-24 21:22 - 2014-05-24 21:22 - 00001652 _____ () C:\Documents and Settings\raddor71\Pulpit\IncrediGames Games.lnk 2014-05-24 21:21 - 2014-05-24 21:21 - 00000000 ____D () C:\Program Files\Common Files\Oberon Media 2014-05-24 21:13 - 2014-05-24 21:13 - 00000000 ____D () C:\Program Files\GamesBar 2014-05-24 21:12 - 2014-05-24 21:30 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Oberon Media 2014-05-24 21:10 - 2014-05-24 21:10 - 01070624 _____ (Unity Technologies ApS) C:\Documents and Settings\raddor71\Pulpit\UnityWebPlayer.exe 2014-05-21 10:39 - 2014-06-07 21:41 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\kontrola 2014-05-21 10:22 - 2014-06-04 21:46 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\projekty ue 2014-05-20 22:05 - 2014-05-20 22:05 - 00047610 _____ () C:\Documents and Settings\raddor71\Pulpit\Kontrola i nadzór w administracji publicznej-1.odt ==================== One Month Modified Files and Folders ======= 2014-06-14 10:33 - 2014-01-26 15:46 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp 2014-06-14 10:32 - 2014-06-14 10:29 - 00000000 ____D () C:\FRST 2014-06-14 10:32 - 2014-06-14 09:50 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\logi 2014-06-14 10:27 - 2014-01-26 17:40 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-06-14 10:26 - 2014-01-26 15:46 - 00000000 ___RD () C:\Documents and Settings\raddor71\Moje dokumenty 2014-06-14 10:24 - 2014-06-14 10:21 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\SecuritycCheck 2014-06-14 10:24 - 2014-01-26 17:43 - 00001040 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-14 10:21 - 2014-01-26 15:46 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit 2014-06-14 10:19 - 2014-06-14 10:18 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\gmer 2014-06-14 10:12 - 2014-06-14 10:10 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Otl 2014-06-14 10:00 - 2014-06-14 09:53 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Frst 2014-06-14 09:42 - 2014-06-08 19:37 - 00001292 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-7.job 2014-06-14 09:15 - 2014-06-14 09:15 - 00000918 _____ () C:\Documents and Settings\raddor71\Pulpit\Continue VuuPC Installation.lnk 2014-06-14 08:50 - 2014-01-26 15:38 - 00388592 _____ () C:\WINDOWS\WindowsUpdate.log 2014-06-14 08:44 - 2014-06-13 12:18 - 00000000 ____D () C:\Program Files\Lavasoft 2014-06-14 08:44 - 2014-06-08 20:17 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\fst_pl_128 2014-06-14 08:44 - 2014-01-26 15:46 - 00000000 __RHD () C:\Documents and Settings\raddor71\Dane aplikacji 2014-06-14 08:42 - 2014-06-08 19:37 - 00002046 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-4.job 2014-06-14 08:42 - 2014-06-08 19:37 - 00001364 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-6.job 2014-06-14 08:42 - 2014-06-08 19:37 - 00001352 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-1.job 2014-06-14 08:42 - 2014-06-08 19:37 - 00001322 _____ () C:\WINDOWS\Tasks\5aa3d933-32c7-4b03-9bcf-13d56020c4b9-2.job 2014-06-14 08:42 - 2014-01-26 17:13 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Użytki 2014-06-14 08:42 - 2014-01-26 16:26 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-06-14 08:41 - 2014-06-13 13:08 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Ad-Aware Browsing Protection 2014-06-14 08:41 - 2014-06-08 20:06 - 00000422 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1402250759.job 2014-06-14 08:41 - 2014-06-08 19:37 - 00000916 _____ () C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job 2014-06-14 08:41 - 2014-06-04 21:52 - 00000314 _____ () C:\WINDOWS\Tasks\EACUYYFAP.job 2014-06-14 08:41 - 2014-01-26 17:43 - 00001036 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-14 08:41 - 2014-01-26 16:46 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\newnext.me 2014-06-14 08:41 - 2014-01-26 16:30 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-06-14 08:41 - 2014-01-26 16:30 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-06-14 08:41 - 2014-01-26 15:44 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-06-14 08:38 - 2014-06-13 12:09 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Lavasoft 2014-06-14 08:36 - 2014-01-26 16:26 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-06-13 23:12 - 2014-01-26 15:46 - 00000188 ___SH () C:\Documents and Settings\raddor71\ntuser.ini 2014-06-13 23:12 - 2014-01-26 15:44 - 00032600 _____ () C:\WINDOWS\SchedLgU.Txt 2014-06-13 20:11 - 2014-01-26 15:46 - 00000000 ___HD () C:\Documents and Settings\raddor71\Ustawienia lokalne 2014-06-13 19:54 - 2014-06-13 19:54 - 00000000 _____ () C:\Documents and Settings\raddor71\Pulpit\Nowy Dokument tekstowy (4).txt 2014-06-13 19:43 - 2014-06-08 19:37 - 00000920 _____ () C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job 2014-06-13 18:23 - 2014-01-26 15:46 - 00000000 ____D () C:\Documents and Settings\raddor71 2014-06-13 17:29 - 2014-03-24 22:43 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\mediacja 2014-06-13 17:10 - 2014-06-13 17:10 - 00026158 _____ () C:\Documents and Settings\raddor71\Pulpit\postępowanie podatkowe testy.odt 2014-06-13 14:51 - 2014-06-13 14:51 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\LavasoftStatistics 2014-06-13 14:09 - 2014-01-26 16:26 - 00476779 _____ () C:\WINDOWS\setupapi.log 2014-06-13 13:34 - 2014-01-26 17:27 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\GG 2014-06-13 13:11 - 2014-06-13 13:11 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\adawarebp 2014-06-13 13:11 - 2014-01-26 15:46 - 00000000 ___HD () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji 2014-06-13 13:08 - 2014-01-26 16:26 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-06-13 13:00 - 2014-06-13 13:00 - 00003960 _____ () C:\{DDC3FC98-9557-40A4-B98D-E77D84E40554} 2014-06-13 12:59 - 2014-06-13 12:59 - 00003208 _____ () C:\{75068878-4F01-42D3-8C95-20F498892596} 2014-06-13 12:57 - 2014-06-13 12:57 - 00003448 _____ () C:\{32E2ED47-8064-48DA-97B7-922A9AB53743} 2014-06-13 12:52 - 2014-06-13 12:52 - 00003704 _____ () C:\{DA734F3F-2205-432F-B4BA-1193B1FA08CC} 2014-06-13 12:50 - 2014-06-13 12:50 - 00002944 _____ () C:\{3A581BB7-17F5-4D33-974E-187E572C6EE0} 2014-06-13 12:07 - 2014-06-13 12:06 - 00008500 _____ () C:\WINDOWS\KB942288-v3.log 2014-06-13 12:07 - 2014-06-13 12:06 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB942288-v3$ 2014-06-13 12:07 - 2014-01-26 16:27 - 00055725 _____ () C:\WINDOWS\iis6.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00019612 _____ () C:\WINDOWS\ocgen.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00017924 _____ () C:\WINDOWS\comsetup.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00017721 _____ () C:\WINDOWS\FaxSetup.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00013641 _____ () C:\WINDOWS\tsoc.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00012184 _____ () C:\WINDOWS\msmqinst.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00009181 _____ () C:\WINDOWS\ntdtcsetup.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00003873 _____ () C:\WINDOWS\netfxocm.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001912 _____ () C:\WINDOWS\MedCtrOC.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001579 _____ () C:\WINDOWS\tabletoc.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001271 _____ () C:\WINDOWS\ocmsn.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001180 _____ () C:\WINDOWS\msgsocm.log 2014-06-13 12:07 - 2014-01-26 16:20 - 00000000 ____D () C:\WINDOWS\system32\mui 2014-06-13 12:06 - 2014-06-13 12:06 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Lavasoft 2014-06-13 11:20 - 2014-01-29 18:14 - 00000000 ____D () C:\Program Files\AutoMapa EU 2014-06-13 11:16 - 2014-06-13 11:16 - 00000450 _____ () C:\WINDOWS\Tasks\HP AR Program Upload - 91ae124a7f9e41acbde779f859db7ade1c4c9ffff9d545ac8e6910e7df3da34a.job 2014-06-12 19:51 - 2014-06-12 19:50 - 00001176 _____ () C:\Documents and Settings\raddor71\Pulpit\Nowy Dokument tekstowy (3).txt 2014-06-12 19:51 - 2014-03-01 21:06 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\do magist 2014-06-12 16:30 - 2014-06-12 16:30 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-06-12 16:04 - 2014-01-26 16:46 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Mobogenie 2014-06-12 16:04 - 2014-01-26 15:46 - 00000000 ___RD () C:\Documents and Settings\raddor71\Menu Start\Programy 2014-06-12 15:51 - 2014-01-29 21:16 - 00000000 ____D () C:\WINDOWS\pss 2014-06-12 15:51 - 2014-01-26 16:26 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy\Autostart 2014-06-12 15:51 - 2014-01-26 16:25 - 00000211 ___SH () C:\boot.ini 2014-06-12 15:51 - 2001-07-22 03:16 - 00000507 _____ () C:\WINDOWS\win.ini 2014-06-12 15:51 - 2001-07-22 03:15 - 00000227 _____ () C:\WINDOWS\system.ini 2014-06-12 14:31 - 2014-06-12 14:31 - 00002552 _____ () C:\{EADE0DB7-5E5A-48BD-9AE4-3BEB1D5F92E7} 2014-06-12 14:09 - 2014-06-12 12:03 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\337Games 2014-06-12 13:27 - 2014-06-12 13:27 - 00002600 _____ () C:\{262CBED2-6B6B-4242-AF82-4FDE28637809} 2014-06-12 13:15 - 2014-06-12 13:15 - 00002640 _____ () C:\{F496378D-4A46-441C-B769-3216B0DAFDCC} 2014-06-12 13:02 - 2014-06-12 13:02 - 00002136 _____ () C:\{67571BC2-20D4-4F61-A6C4-31AB567EBE22} 2014-06-12 12:17 - 2014-06-12 12:17 - 00002400 _____ () C:\{905D190E-285B-4C9B-95F5-C798A7E2377F} 2014-06-12 12:03 - 2014-06-09 14:36 - 00000000 ____D () C:\Program Files\SupTab 2014-06-12 11:58 - 2014-06-11 12:23 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NST 2014-06-12 11:55 - 2014-06-09 14:36 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\WindowsProtectManger 2014-06-12 11:06 - 2014-06-12 11:06 - 00002256 _____ () C:\{F0FEB365-4C34-406F-9F71-7122B14B4910} 2014-06-12 09:02 - 2014-02-12 20:17 - 00000000 ____D () C:\Program Files\FindRight 2014-06-12 08:58 - 2014-06-08 19:37 - 00000000 ____D () C:\Program Files\SavePass 2014-06-11 20:27 - 2014-06-11 20:27 - 00722104 _____ (Elex do Brasil Participações Ltda) C:\Documents and Settings\raddor71\Pulpit\yet_another_cleaner_brob.exe 2014-06-11 19:38 - 2014-06-11 19:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Norton Identity Safe 2014-06-11 18:39 - 2014-06-11 12:23 - 00000000 ____D () C:\Program Files\Norton Identity Safe 2014-06-11 18:37 - 2014-06-11 12:22 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared 2014-06-11 12:26 - 2014-06-11 12:16 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NAV 2014-06-11 12:23 - 2014-06-11 12:22 - 00000000 ____D () C:\Program Files\Symantec 2014-06-11 12:23 - 2014-04-05 18:37 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Norton 2014-06-11 12:22 - 2014-06-11 12:23 - 00142496 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS 2014-06-11 12:22 - 2014-06-11 12:23 - 00007611 _____ () C:\WINDOWS\system32\Drivers\SYMEVENT.CAT 2014-06-11 12:22 - 2014-06-11 12:16 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Norton AntiVirus 2014-06-11 12:16 - 2014-06-11 12:16 - 00000000 ____D () C:\Program Files\Norton AntiVirus 2014-06-11 11:53 - 2014-01-26 16:50 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-06-11 11:49 - 2014-06-08 20:17 - 00000404 __RSH () C:\Documents and Settings\All Users\ntuser.pol 2014-06-11 11:43 - 2014-06-11 11:42 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\7-Zip 2014-06-11 11:42 - 2014-06-11 11:42 - 00000000 ____D () C:\Program Files\7-Zip 2014-06-11 09:12 - 2014-06-11 09:08 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-06-11 09:07 - 2014-01-28 17:45 - 00000126 _____ () C:\WINDOWS\VplayerINI.vpl 2014-06-11 09:07 - 2014-01-28 17:34 - 00003223 _____ () C:\WINDOWS\VPlayer.INI 2014-06-10 20:20 - 2014-06-08 20:17 - 00000000 ____D () C:\Program Files\fst_pl_128 2014-06-10 20:20 - 2014-06-08 20:17 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\fst 2014-06-09 14:37 - 2014-06-09 14:36 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\IePluginServices 2014-06-09 14:36 - 2014-06-09 14:36 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\SupTab 2014-06-09 14:36 - 2014-06-09 14:36 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\qone8 2014-06-09 14:36 - 2014-01-26 16:50 - 00000934 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk 2014-06-09 14:36 - 2014-01-26 15:46 - 00001007 _____ () C:\Documents and Settings\raddor71\Menu Start\Programy\Internet Explorer.lnk 2014-06-09 14:27 - 2014-06-09 14:27 - 17352880 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe 2014-06-09 14:27 - 2014-01-26 17:40 - 00692400 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-06-09 14:27 - 2014-01-26 17:40 - 00070832 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-06-09 14:22 - 2014-01-26 15:44 - 00000000 __SHD () C:\Documents and Settings\NetworkService\Ustawienia lokalne\Historia 2014-06-08 20:17 - 2014-06-08 20:17 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy 2014-06-08 20:15 - 2014-06-08 20:02 - 00000000 ____D () C:\Program Files\AnyProtectEx 2014-06-08 20:11 - 2014-06-08 20:11 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Opera Software 2014-06-08 20:10 - 2014-06-08 20:10 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Opera Software 2014-06-08 20:10 - 2014-06-08 20:07 - 00002946 _____ () C:\Documents and Settings\raddor71\Dane aplikacji\aps.scan.results 2014-06-08 20:10 - 2014-06-08 20:07 - 00001208 _____ () C:\Documents and Settings\raddor71\Dane aplikacji\aps.scan.quick.results 2014-06-08 20:10 - 2014-06-08 20:07 - 00000318 _____ () C:\Documents and Settings\raddor71\Dane aplikacji\aps.uninstall.scan.results 2014-06-08 20:07 - 2014-06-08 20:07 - 00000232 _____ () C:\WINDOWS\Tasks\Opera D7.job 2014-06-08 20:07 - 2014-06-08 20:07 - 00000232 _____ () C:\WINDOWS\Tasks\Opera D6.job 2014-06-08 20:06 - 2014-06-08 20:06 - 00000675 _____ () C:\Documents and Settings\All Users\Pulpit\Opera.lnk 2014-06-08 20:06 - 2014-06-08 20:06 - 00000675 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk 2014-06-08 20:06 - 2014-06-08 20:06 - 00000000 ____D () C:\Documents and Settings\raddor71\Menu Start\Programy\AnyProtect PC Backup 2014-06-08 20:06 - 2014-06-08 20:05 - 00000000 ____D () C:\Program Files\Opera 2014-06-08 19:39 - 2014-06-08 19:39 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN 2014-06-08 19:38 - 2014-06-08 19:38 - 00000000 ____D () C:\Program Files\VideoLAN 2014-06-08 19:37 - 2014-06-08 19:37 - 00000000 ____D () C:\Program Files\globalUpdate 2014-06-08 19:37 - 2014-06-08 19:37 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\globalUpdate 2014-06-08 19:37 - 2014-06-08 19:36 - 00000000 ____D () C:\Program Files\ConstaSurf 2014-06-08 19:36 - 2014-06-08 19:36 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\VOPackage 2014-06-07 21:41 - 2014-05-21 10:39 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\kontrola 2014-06-06 21:51 - 2014-06-06 21:51 - 00047809 _____ () C:\Documents and Settings\raddor71\Pulpit\Fundusze Strukturalne, przygotowanie i system finansowania projektów UE - Kubas-Hul - wykłady.odt 2014-06-06 11:44 - 2014-01-26 16:48 - 00000000 ____D () C:\Program Files\The KMPlayer 2014-06-05 13:29 - 2014-06-08 20:02 - 00815502 _____ (Click Me In Limited) C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\AnyProtectScannerSetup.exe 2014-06-05 05:39 - 2014-01-26 15:37 - 00000000 ____D () C:\WINDOWS\system32\Restore 2014-06-04 21:53 - 2014-06-04 21:53 - 00021188 _____ () C:\Documents and Settings\raddor71\Pulpit\Przygotowywanie projektów dla UE.doc wykład I.odt 2014-06-04 21:52 - 2014-06-04 21:52 - 00159744 __RSH () C:\WINDOWS\system32\wuaucpln.dll 2014-06-04 21:46 - 2014-05-21 10:22 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\projekty ue 2014-06-03 19:24 - 2014-06-03 19:24 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\PDF Architect 2 2014-06-03 19:24 - 2014-06-03 19:20 - 00000000 ____D () C:\Program Files\PDFCreator 2014-06-03 19:23 - 2014-06-03 19:23 - 00000000 ____D () C:\Program Files\PDF Architect 2 2014-06-03 19:23 - 2014-06-03 19:23 - 00000000 ____D () C:\Documents and Settings\raddor71\Moje dokumenty\PDF Architect 2 2014-06-03 19:21 - 2014-06-03 19:21 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\PDF Architect 2 2014-06-03 19:20 - 2014-06-03 19:20 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\pdfforge 2014-06-03 19:20 - 2014-06-03 19:20 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\PDFCreator 2014-06-03 16:25 - 2014-06-03 16:25 - 00134144 _____ () C:\Documents and Settings\raddor71\Pulpit\Kontrola i nadzor2.ppt 2014-06-03 15:34 - 2001-07-22 03:17 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl 2014-06-02 20:05 - 2014-01-26 15:49 - 00000206 _____ () C:\WINDOWS\system\CmiCnfg.ini 2014-06-01 12:52 - 2014-01-26 17:20 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Skype 2014-05-29 19:13 - 2014-01-26 16:20 - 00000000 ____D () C:\Documents and Settings\raddor71\Moje dokumenty\Folder wymiany interfejsu Bluetooth 2014-05-29 19:00 - 2014-05-29 19:00 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Alior_Bank 2014-05-28 21:34 - 2014-05-28 21:14 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\z telefonu Doroty 2014-05-28 16:23 - 2014-05-29 19:21 - 01115288 _____ () C:\Documents and Settings\raddor71\Moje dokumenty\Komentarz%20-%20Ordynacja%20podatkowa.doc_0.odt 2014-05-27 16:40 - 2014-02-04 00:26 - 00002443 _____ () C:\Documents and Settings\raddor71\Pulpit\kalendarz skoków narciarskich.txt 2014-05-27 13:42 - 2014-01-26 17:27 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\GG 2014-05-27 08:11 - 2014-05-27 08:11 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-27 08:10 - 2014-05-27 08:10 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-05-27 08:10 - 2014-05-27 08:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-05-27 08:10 - 2014-05-27 08:10 - 00000000 ____D () C:\Program Files\Java 2014-05-27 08:10 - 2014-05-27 08:10 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Java 2014-05-27 08:04 - 2014-05-27 08:04 - 00921512 _____ (Oracle Corporation) C:\Documents and Settings\raddor71\Pulpit\jxpiinstall.exe 2014-05-26 17:00 - 2014-01-26 16:49 - 00024576 _____ () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-05-24 21:56 - 2014-05-24 21:31 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\TEMP 2014-05-24 21:32 - 2014-05-24 21:32 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\GameHouse 2014-05-24 21:31 - 2014-05-24 21:22 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Oberon Media 2014-05-24 21:30 - 2014-05-24 21:30 - 00002419 _____ () C:\Documents and Settings\raddor71\Pulpit\Delicious - Emily's Honeymoon Cruise Premium Edition.lnk 2014-05-24 21:30 - 2014-05-24 21:30 - 00000000 ____D () C:\Documents and Settings\raddor71\Menu Start\Programy\IncrediGames Games 2014-05-24 21:30 - 2014-05-24 21:12 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Oberon Media 2014-05-24 21:26 - 2014-05-24 21:26 - 00000000 ____D () C:\Program Files\Oberon Media SIDR 2014-05-24 21:22 - 2014-05-24 21:22 - 00001652 _____ () C:\Documents and Settings\raddor71\Pulpit\IncrediGames Games.lnk 2014-05-24 21:21 - 2014-05-24 21:21 - 00000000 ____D () C:\Program Files\Common Files\Oberon Media 2014-05-24 21:13 - 2014-05-24 21:13 - 00000000 ____D () C:\Program Files\GamesBar 2014-05-24 21:10 - 2014-05-24 21:10 - 01070624 _____ (Unity Technologies ApS) C:\Documents and Settings\raddor71\Pulpit\UnityWebPlayer.exe 2014-05-20 22:05 - 2014-05-20 22:05 - 00047610 _____ () C:\Documents and Settings\raddor71\Pulpit\Kontrola i nadzór w administracji publicznej-1.odt Some content of TEMP: ==================== C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\306cdf45-8827-4134-9af0-8e661dcc738a.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\6_Offer_5.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\e5bef3ca-c9df-49bb-8431-cac913c09472.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\f.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\ggdrive-menu.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\ggdrive-overlay.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\InstallAX_11_9_900_170.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\installstats.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\LollipopInstaller_notifications.exe C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp\{7990AC77-39B8-416D-85F9-0CE129DC64E3}-35.0.1916.114_chrome_installer.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================