Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:16-06-2014 Ran by raddor71 (administrator) on IBM on 17-06-2014 16:21:44 Running from C:\Documents and Settings\raddor71\Pulpit\logi\FRST-OlderVersion Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 7 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Symantec Corporation) C:\Program Files\Norton AntiVirus\Engine\20.4.0.40\ccsvchst.exe (Symantec Corporation) C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\NST.exe (Symantec Corporation) C:\Program Files\Norton AntiVirus\Engine\20.4.0.40\ccsvchst.exe (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Symantec Corporation) C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\NST.exe (Lavasoft) C:\Documents and Settings\All Users\Dane aplikacji\Ad-Aware Browsing Protection\adawarebp.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\Run: [Ad-Aware Browsing Protection] => C:\Documents and Settings\All Users\Dane aplikacji\Ad-Aware Browsing Protection\adawarebp.exe [559696 2013-09-27] (Lavasoft) HKLM\...\Run: [fst_pl_128] => [X] HKU\S-1-5-19\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32 HKU\S-1-5-20\...\RunOnce: [nltide_2] - regsvr32 /s /n /i:U shell32 HKU\S-1-5-21-1123561945-1417001333-1177238915-1003\...\MountPoints2: {e17c1e26-a2f8-11e3-9321-001986000940} - F:\Start.exe Startup: C:\Documents and Settings\raddor71\Menu Start\Programy\Autostart\Powiadomienia monitorowania tuszu - HP Deskjet 3510 series.lnk ShortcutTarget: Powiadomienia monitorowania tuszu - HP Deskjet 3510 series.lnk -> C:\Program Files\HP\HP Deskjet 3510 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/isearch/ HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=180&d=20140613 SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {8B63A8D6-BBED-4341-8867-790E5F524C96} URL = http://mystart.incredimail.com/english/?search={searchTerms}&loc=search_box SearchScopes: HKCU - {0C7A8EB6-7C00-4C8B-BD52-896AD689C7EB} URL = http://search.us.com/serp?guid={92E087AC-FE90-43D7-9CFC-AA5CD8BF2E9A}&action=default_search&serpv=5&k={searchTerms} SearchScopes: HKCU - {77D5640F-DE5E-4B22-B47E-2E60FA0B0B5E} URL = http://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10513 SearchScopes: HKCU - {8B63A8D6-BBED-4341-8867-790E5F524C96} URL = http://mystart.incredimail.com/english/?search={searchTerms}&loc=search_box SearchScopes: HKCU - {F17FA716-DBE6-4DC7-92D5-DA25374B149C} URL = http://search.us.com/serp?guid={626EC573-AEEE-4878-B8C8-55A9722CDFFC}&action=default_search&serpv=5&k={searchTerms} BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\20.4.0.40\IPS\IPSBHO.DLL (Symantec Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Norton Identity Protection - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\coIEPlg.dll (Symantec Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Norton Identity Safe Toolbar - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - Norton Identity Safe Toolbar - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\coIEPlg.dll (Symantec Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default FF NewTab: chrome://quick_start/content/index.html FF Homepage: hxxp://mystart.incredimail.com/isearch/ FF Keyword.URL: hxxp://search.us.com/serp?guid={92E087AC-FE90-43D7-9CFC-AA5CD8BF2E9A}&action=default_search&serpv=5&k= FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @oberon-media.com/ONCAdapter - C:\Program Files\Common Files\Oberon Media\NCAdapter\1.0.0.14\npapicomadapter.dll (Oberon-Media ) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin: PDF Architect 2 - C:\Program Files\PDF Architect 2\np-previewer.dll (pdfforge GmbH) FF Extension: Fast Start - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\Extensions\faststartff@gmail.com [2014-06-12] FF Extension: shortcut - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\Extensions\shortcutff@gmail.com [2014-06-12] FF HKLM\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\IPSFF FF Extension: Norton Vulnerability Protection - C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\IPSFF [2014-06-11] FF HKLM\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\extensions\faststartff@gmail.com FF Extension: Fast Start - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\extensions\faststartff@gmail.com [2014-06-12] FF HKLM\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\Documents and Settings\All Users\Dane aplikacji\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.5.0.67\coFFPlgn\ FF Extension: Norton Identity Safe Toolbar - C:\Documents and Settings\All Users\Dane aplikacji\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.5.0.67\coFFPlgn\ [] FF HKLM\...\Firefox\Extensions: [shortcutff@gmail.com] - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\extensions\shortcutff@gmail.com FF Extension: shortcut - C:\Documents and Settings\raddor71\Dane aplikacji\Mozilla\Firefox\Profiles\j45hpnuw.default\extensions\shortcutff@gmail.com [2014-06-12] Chrome: ======= CHR HomePage: hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_9&idate=2014-06-13&ent=hp&u=BA8161C1D5D21001EDD032539AD00BA7 CHR StartupUrls: "hxxp://securedsearch2.lavasoft.com/index.php?pr=vmn&id=adawaretb&v=3_9&idate=2014-06-13&ent=hp&u=BA8161C1D5D21001EDD032539AD00BA7", "hxxp://www.gazeta.pl/0,0.html?p=180&d=20140613" CHR NewTab: "chrome-extension://pelmeidfhdlhlbjimpabfcbnnojbboma/index.html" CHR DefaultSearchKeyword: qone8 CHR DefaultSearchProvider: qone8 CHR DefaultSearchURL: http://www.qone8.com/web/?type=dspp&ts=1402317483&from=tt4u&uid=WDCXWD2000JB-55GVA0_WD-WCAL7383104131041X&q={searchTerms} CHR DefaultNewTabURL: CHR Extension: (Google Wallet) - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-26] CHR Extension: (Norton Identity Safe for Google Chrome™) - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob [2014-06-11] CHR HKLM\...\Chrome\Extension: [ainbkicbloikcngphmjfpjdemblcojdd] - C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\slidebar.crx [2014-06-12] CHR HKLM\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\Exts\Chrome.crx [2014-06-11] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ========================== Services (Whitelisted) ================= R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-05-27] (Oracle Corporation) R2 NAV; C:\Program Files\Norton AntiVirus\Engine\20.4.0.40\ccSvcHst.exe [144368 2013-05-20] (Symantec Corporation) R2 NCO; C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\NST.exe [129424 2013-08-15] (Symantec Corporation) S3 PDF Architect 2; C:\Program Files\PDF Architect 2\ws.exe [1716264 2014-04-30] (pdfforge GmbH) S3 pdfforge CrashHandler; C:\Program Files\PDF Architect 2\crash-handler-ws.exe [861736 2014-04-30] (pdfforge GmbH) ==================== Drivers (Whitelisted) ==================== R1 BHDrvx86; C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\BASHDefs\20140606.001\BHDrvx86.sys [1101616 2014-06-06] (Symantec Corporation) R3 btaudio; C:\WINDOWS\System32\drivers\btaudio.sys [534312 2009-02-18] (Broadcom Corporation.) R3 BTDriver; C:\WINDOWS\System32\DRIVERS\btport.sys [37160 2008-02-04] (Broadcom Corporation.) R3 BTKRNL; C:\WINDOWS\System32\DRIVERS\btkrnl.sys [991136 2009-03-19] (Broadcom Corporation.) R3 BTWDNDIS; C:\WINDOWS\System32\DRIVERS\btwdndis.sys [156816 2008-07-24] (Broadcom Corporation.) R3 btwhid; C:\WINDOWS\System32\DRIVERS\btwhid.sys [57384 2008-03-10] (Broadcom Corporation.) R3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [47272 2008-10-30] (Broadcom Corporation.) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation) R1 ccSet_NAV; C:\WINDOWS\system32\drivers\NAV\1404000.028\ccSetx86.sys [134744 2013-04-15] (Symantec Corporation) R1 ccSet_NST; C:\WINDOWS\system32\drivers\NST\7DE05000.043\ccSetx86.sys [117336 2013-07-30] (Symantec Corporation) R3 cmuda; C:\WINDOWS\System32\drivers\cmuda.sys [821760 2004-08-23] (C-Media Inc) R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [377648 2014-06-12] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [109872 2014-06-11] (Symantec Corporation) R3 IDSxpx86; C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\IPSDefs\20140616.001\IDSxpx86.sys [383120 2014-06-10] (Symantec Corporation) R3 NAVENG; C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\VirusDefs\20140616.009\NAVENG.SYS [93272 2014-06-16] (Symantec Corporation) R3 NAVEX15; C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_20.2.0.19\Definitions\VirusDefs\20140616.009\NAVEX15.SYS [1612376 2014-06-16] (Symantec Corporation) S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R3 rtl8139; C:\WINDOWS\System32\DRIVERS\R8139n51.SYS [45568 2002-06-13] (Realtek Semiconductor Corporation) R3 SRTSP; C:\WINDOWS\system32\drivers\NAV\1404000.028\SRTSP.SYS [603224 2013-05-15] (Symantec Corporation) R1 SRTSPX; C:\WINDOWS\system32\drivers\NAV\1404000.028\SRTSPX.SYS [32344 2013-03-04] (Symantec Corporation) R0 SymDS; C:\WINDOWS\System32\drivers\NAV\1404000.028\SYMDS.SYS [367704 2013-05-20] (Symantec Corporation) R0 SymEFA; C:\WINDOWS\System32\drivers\NAV\1404000.028\SYMEFA.SYS [934488 2013-05-22] (Symantec Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [142496 2014-06-11] (Symantec Corporation) R1 SymIRON; C:\WINDOWS\system32\drivers\NAV\1404000.028\Ironx86.SYS [175264 2012-09-06] (Symantec Corporation) R1 SYMTDI; C:\WINDOWS\system32\drivers\NAV\1404000.028\SYMTDI.SYS [396760 2013-04-24] (Symantec Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-16 21:17 - 2014-06-16 21:17 - 00000000 _____ () C:\Documents and Settings\raddor71\Pulpit\Nowy Dokument tekstowy.txt 2014-06-16 20:15 - 2014-06-16 20:15 - 00000000 ____D () C:\_OTL 2014-06-16 18:43 - 2014-06-17 15:53 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Nowe logi 2014-06-16 18:26 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\system32\sqlite3.dll 2014-06-16 18:24 - 2014-06-16 18:29 - 00000000 ____D () C:\AdwCleaner 2014-06-16 17:46 - 2014-06-16 17:46 - 01333465 _____ () C:\Documents and Settings\raddor71\Moje dokumenty\adwcleaner_3.212 (1).exe 2014-06-16 17:45 - 2014-06-16 17:46 - 01333465 _____ () C:\Documents and Settings\raddor71\Moje dokumenty\adwcleaner_3.212.exe 2014-06-16 17:33 - 2014-06-16 17:34 - 00004840 _____ () C:\Documents and Settings\raddor71\Pulpit\pomoc dla systemu.txt 2014-06-16 17:23 - 2014-06-16 17:28 - 00004022 _____ () C:\Documents and Settings\raddor71\Pulpit\zasady gry w 3,5,8.txt 2014-06-16 17:22 - 2014-06-16 17:23 - 00003823 _____ () C:\Documents and Settings\raddor71\Pulpit\zasady gry w kierki.txt 2014-06-15 17:10 - 2014-06-15 17:10 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\pdfforge_GmbH 2014-06-15 17:03 - 2014-06-15 17:33 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\PDF Architect 2 2014-06-15 15:44 - 2014-06-15 16:31 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\plili patriota 2014-06-14 10:29 - 2014-06-17 16:24 - 00000000 ____D () C:\FRST 2014-06-14 10:21 - 2014-06-14 17:08 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\SecuritycCheck 2014-06-14 10:18 - 2014-06-14 15:51 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\gmer 2014-06-14 10:10 - 2014-06-14 11:19 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Otl 2014-06-14 09:53 - 2014-06-14 10:37 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Frst 2014-06-14 09:50 - 2014-06-17 16:15 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\logi 2014-06-13 14:51 - 2014-06-13 14:51 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\LavasoftStatistics 2014-06-13 13:11 - 2014-06-13 13:11 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\adawarebp 2014-06-13 13:08 - 2014-06-17 16:05 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Ad-Aware Browsing Protection 2014-06-13 13:00 - 2014-06-13 13:00 - 00003960 _____ () C:\{DDC3FC98-9557-40A4-B98D-E77D84E40554} 2014-06-13 12:59 - 2014-06-13 12:59 - 00003208 _____ () C:\{75068878-4F01-42D3-8C95-20F498892596} 2014-06-13 12:57 - 2014-06-13 12:57 - 00003448 _____ () C:\{32E2ED47-8064-48DA-97B7-922A9AB53743} 2014-06-13 12:52 - 2014-06-13 12:52 - 00003704 _____ () C:\{DA734F3F-2205-432F-B4BA-1193B1FA08CC} 2014-06-13 12:50 - 2014-06-13 12:50 - 00002944 _____ () C:\{3A581BB7-17F5-4D33-974E-187E572C6EE0} 2014-06-13 12:18 - 2014-06-14 08:44 - 00000000 ____D () C:\Program Files\Lavasoft 2014-06-13 12:09 - 2014-06-14 08:38 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Lavasoft 2014-06-13 12:06 - 2014-06-13 12:07 - 00008500 _____ () C:\WINDOWS\KB942288-v3.log 2014-06-13 12:06 - 2014-06-13 12:07 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB942288-v3$ 2014-06-13 12:06 - 2014-06-13 12:06 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Lavasoft 2014-06-12 16:30 - 2014-06-12 16:30 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-06-12 14:31 - 2014-06-12 14:31 - 00002552 _____ () C:\{EADE0DB7-5E5A-48BD-9AE4-3BEB1D5F92E7} 2014-06-12 13:27 - 2014-06-12 13:27 - 00002600 _____ () C:\{262CBED2-6B6B-4242-AF82-4FDE28637809} 2014-06-12 13:15 - 2014-06-12 13:15 - 00002640 _____ () C:\{F496378D-4A46-441C-B769-3216B0DAFDCC} 2014-06-12 13:02 - 2014-06-12 13:02 - 00002136 _____ () C:\{67571BC2-20D4-4F61-A6C4-31AB567EBE22} 2014-06-12 12:17 - 2014-06-12 12:17 - 00002400 _____ () C:\{905D190E-285B-4C9B-95F5-C798A7E2377F} 2014-06-12 11:06 - 2014-06-12 11:06 - 00002256 _____ () C:\{F0FEB365-4C34-406F-9F71-7122B14B4910} 2014-06-11 19:38 - 2014-06-11 19:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Norton Identity Safe 2014-06-11 12:23 - 2014-06-12 11:58 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NST 2014-06-11 12:23 - 2014-06-11 18:39 - 00000000 ____D () C:\Program Files\Norton Identity Safe 2014-06-11 12:23 - 2014-06-11 12:22 - 00142496 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS 2014-06-11 12:23 - 2014-06-11 12:22 - 00007611 _____ () C:\WINDOWS\system32\Drivers\SYMEVENT.CAT 2014-06-11 12:22 - 2014-06-11 18:37 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared 2014-06-11 12:22 - 2014-06-11 12:23 - 00000000 ____D () C:\Program Files\Symantec 2014-06-11 12:16 - 2014-06-11 12:26 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NAV 2014-06-11 12:16 - 2014-06-11 12:22 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Norton AntiVirus 2014-06-11 12:16 - 2014-06-11 12:16 - 00000000 ____D () C:\Program Files\Norton AntiVirus 2014-06-11 11:42 - 2014-06-11 11:43 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\7-Zip 2014-06-11 11:42 - 2014-06-11 11:42 - 00000000 ____D () C:\Program Files\7-Zip 2014-06-11 09:08 - 2014-06-11 09:12 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-06-09 14:27 - 2014-06-09 14:27 - 17352880 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe 2014-06-08 20:17 - 2014-06-11 11:49 - 00000404 __RSH () C:\Documents and Settings\All Users\ntuser.pol 2014-06-08 20:17 - 2014-06-08 20:17 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy 2014-06-08 20:11 - 2014-06-08 20:11 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Opera Software 2014-06-08 20:10 - 2014-06-08 20:10 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Opera Software 2014-06-08 20:06 - 2014-06-17 16:04 - 00000422 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1402250759.job 2014-06-08 20:06 - 2014-06-08 20:06 - 00000675 _____ () C:\Documents and Settings\All Users\Pulpit\Opera.lnk 2014-06-08 20:06 - 2014-06-08 20:06 - 00000675 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk 2014-06-08 20:05 - 2014-06-15 17:33 - 00000000 ____D () C:\Program Files\Opera 2014-06-08 19:39 - 2014-06-08 19:39 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN 2014-06-08 19:38 - 2014-06-08 19:38 - 00000000 ____D () C:\Program Files\VideoLAN 2014-06-03 19:24 - 2014-06-03 19:24 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\PDF Architect 2 2014-06-03 19:23 - 2014-06-03 19:23 - 00000000 ____D () C:\Program Files\PDF Architect 2 2014-06-03 19:23 - 2014-06-03 19:23 - 00000000 ____D () C:\Documents and Settings\raddor71\Moje dokumenty\PDF Architect 2 2014-06-03 19:21 - 2014-06-03 19:21 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\PDF Architect 2 2014-06-03 19:20 - 2014-06-03 19:24 - 00000000 ____D () C:\Program Files\PDFCreator 2014-06-03 19:20 - 2014-06-03 19:20 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\PDFCreator 2014-06-03 19:20 - 2014-04-25 17:44 - 00662288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSCOMCT2.OCX 2014-06-03 19:20 - 2014-04-25 17:44 - 00137000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMAPI32.OCX 2014-06-03 19:20 - 2014-04-25 17:44 - 00095416 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll 2014-06-03 19:20 - 2014-04-25 17:44 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPIDE.DLL 2014-05-29 19:21 - 2014-05-28 16:23 - 01115288 _____ () C:\Documents and Settings\raddor71\Moje dokumenty\Komentarz%20-%20Ordynacja%20podatkowa.doc_0.odt 2014-05-28 21:14 - 2014-05-28 21:34 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\z telefonu Doroty 2014-05-27 08:11 - 2014-05-27 08:11 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-27 08:10 - 2014-05-27 08:10 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-05-27 08:10 - 2014-05-27 08:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-05-27 08:10 - 2014-05-27 08:10 - 00000000 ____D () C:\Program Files\Java 2014-05-27 08:10 - 2014-05-27 08:10 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Java 2014-05-27 08:04 - 2014-05-27 08:04 - 00921512 _____ (Oracle Corporation) C:\Documents and Settings\raddor71\Pulpit\jxpiinstall.exe 2014-05-24 21:32 - 2014-05-24 21:32 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\GameHouse 2014-05-24 21:31 - 2014-05-24 21:56 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\TEMP 2014-05-24 21:30 - 2014-05-24 21:30 - 00000000 ____D () C:\Documents and Settings\raddor71\Menu Start\Programy\IncrediGames Games 2014-05-24 21:26 - 2014-05-24 21:26 - 00000000 ____D () C:\Program Files\Oberon Media SIDR 2014-05-24 21:22 - 2014-05-24 21:31 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Oberon Media 2014-05-24 21:22 - 2014-05-24 21:22 - 00001652 _____ () C:\Documents and Settings\raddor71\Pulpit\IncrediGames Games.lnk 2014-05-24 21:21 - 2014-05-24 21:21 - 00000000 ____D () C:\Program Files\Common Files\Oberon Media 2014-05-24 21:12 - 2014-05-24 21:30 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Oberon Media ==================== One Month Modified Files and Folders ======= 2014-06-17 16:29 - 2014-01-26 15:46 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Temp 2014-06-17 16:27 - 2014-01-26 17:40 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-06-17 16:24 - 2014-06-14 10:29 - 00000000 ____D () C:\FRST 2014-06-17 16:24 - 2014-01-26 17:43 - 00001040 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-17 16:15 - 2014-06-14 09:50 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\logi 2014-06-17 16:11 - 2014-01-26 15:38 - 00431014 _____ () C:\WINDOWS\WindowsUpdate.log 2014-06-17 16:05 - 2014-06-13 13:08 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Ad-Aware Browsing Protection 2014-06-17 16:05 - 2014-01-26 16:30 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-06-17 16:04 - 2014-06-08 20:06 - 00000422 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1402250759.job 2014-06-17 16:04 - 2014-01-26 17:43 - 00001036 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-17 16:04 - 2014-01-26 16:30 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-06-17 16:04 - 2014-01-26 15:44 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-06-17 15:53 - 2014-06-16 18:43 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Nowe logi 2014-06-17 15:45 - 2014-01-26 15:46 - 00000188 ___SH () C:\Documents and Settings\raddor71\ntuser.ini 2014-06-17 15:45 - 2014-01-26 15:44 - 00032490 _____ () C:\WINDOWS\SchedLgU.Txt 2014-06-17 15:44 - 2014-01-26 15:46 - 00000000 ____D () C:\Documents and Settings\raddor71 2014-06-17 08:59 - 2014-01-26 17:27 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\GG 2014-06-16 21:17 - 2014-06-16 21:17 - 00000000 _____ () C:\Documents and Settings\raddor71\Pulpit\Nowy Dokument tekstowy.txt 2014-06-16 21:17 - 2014-01-26 15:46 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit 2014-06-16 20:15 - 2014-06-16 20:15 - 00000000 ____D () C:\_OTL 2014-06-16 20:15 - 2014-01-26 15:44 - 00000000 ____D () C:\Documents and Settings\LocalService\Ustawienia lokalne\Temp 2014-06-16 18:29 - 2014-06-16 18:24 - 00000000 ____D () C:\AdwCleaner 2014-06-16 18:29 - 2014-01-26 17:45 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome 2014-06-16 18:29 - 2014-01-26 16:50 - 00000730 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk 2014-06-16 18:29 - 2014-01-26 16:26 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-06-16 18:29 - 2014-01-26 15:46 - 00000751 _____ () C:\Documents and Settings\raddor71\Menu Start\Programy\Internet Explorer.lnk 2014-06-16 18:29 - 2014-01-26 15:46 - 00000000 __RHD () C:\Documents and Settings\raddor71\Dane aplikacji 2014-06-16 18:29 - 2014-01-26 15:46 - 00000000 ___RD () C:\Documents and Settings\raddor71\Menu Start\Programy 2014-06-16 18:29 - 2014-01-26 15:46 - 00000000 ___HD () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji 2014-06-16 18:28 - 2014-01-26 16:26 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-06-16 18:28 - 2014-01-26 15:46 - 00000000 ___RD () C:\Documents and Settings\raddor71\Moje dokumenty 2014-06-16 17:46 - 2014-06-16 17:46 - 01333465 _____ () C:\Documents and Settings\raddor71\Moje dokumenty\adwcleaner_3.212 (1).exe 2014-06-16 17:46 - 2014-06-16 17:45 - 01333465 _____ () C:\Documents and Settings\raddor71\Moje dokumenty\adwcleaner_3.212.exe 2014-06-16 17:34 - 2014-06-16 17:33 - 00004840 _____ () C:\Documents and Settings\raddor71\Pulpit\pomoc dla systemu.txt 2014-06-16 17:28 - 2014-06-16 17:23 - 00004022 _____ () C:\Documents and Settings\raddor71\Pulpit\zasady gry w 3,5,8.txt 2014-06-16 17:23 - 2014-06-16 17:22 - 00003823 _____ () C:\Documents and Settings\raddor71\Pulpit\zasady gry w kierki.txt 2014-06-16 16:31 - 2014-01-26 15:46 - 00000000 ___HD () C:\Documents and Settings\raddor71\Ustawienia lokalne 2014-06-15 17:33 - 2014-06-15 17:03 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\PDF Architect 2 2014-06-15 17:33 - 2014-06-08 20:05 - 00000000 ____D () C:\Program Files\Opera 2014-06-15 17:10 - 2014-06-15 17:10 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\pdfforge_GmbH 2014-06-15 16:52 - 2014-01-26 17:20 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Skype 2014-06-15 16:43 - 2014-03-01 21:06 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\do magist 2014-06-15 16:31 - 2014-06-15 15:44 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\plili patriota 2014-06-15 16:17 - 2014-01-26 16:49 - 00025088 _____ () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-06-14 17:20 - 2014-01-26 17:14 - 00007972 _____ () C:\Documents and Settings\raddor71\Pulpit\linki.txt 2014-06-14 17:08 - 2014-06-14 10:21 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\SecuritycCheck 2014-06-14 15:51 - 2014-06-14 10:18 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\gmer 2014-06-14 11:19 - 2014-06-14 10:10 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Otl 2014-06-14 10:39 - 2014-01-26 17:27 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\GG 2014-06-14 10:37 - 2014-06-14 09:53 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Frst 2014-06-14 08:44 - 2014-06-13 12:18 - 00000000 ____D () C:\Program Files\Lavasoft 2014-06-14 08:42 - 2014-01-26 17:13 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\Użytki 2014-06-14 08:42 - 2014-01-26 16:26 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-06-14 08:38 - 2014-06-13 12:09 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Lavasoft 2014-06-13 14:51 - 2014-06-13 14:51 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\LavasoftStatistics 2014-06-13 14:09 - 2014-01-26 16:26 - 00476779 _____ () C:\WINDOWS\setupapi.log 2014-06-13 13:11 - 2014-06-13 13:11 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\adawarebp 2014-06-13 13:00 - 2014-06-13 13:00 - 00003960 _____ () C:\{DDC3FC98-9557-40A4-B98D-E77D84E40554} 2014-06-13 12:59 - 2014-06-13 12:59 - 00003208 _____ () C:\{75068878-4F01-42D3-8C95-20F498892596} 2014-06-13 12:57 - 2014-06-13 12:57 - 00003448 _____ () C:\{32E2ED47-8064-48DA-97B7-922A9AB53743} 2014-06-13 12:52 - 2014-06-13 12:52 - 00003704 _____ () C:\{DA734F3F-2205-432F-B4BA-1193B1FA08CC} 2014-06-13 12:50 - 2014-06-13 12:50 - 00002944 _____ () C:\{3A581BB7-17F5-4D33-974E-187E572C6EE0} 2014-06-13 12:07 - 2014-06-13 12:06 - 00008500 _____ () C:\WINDOWS\KB942288-v3.log 2014-06-13 12:07 - 2014-06-13 12:06 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB942288-v3$ 2014-06-13 12:07 - 2014-01-26 16:27 - 00055725 _____ () C:\WINDOWS\iis6.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00019612 _____ () C:\WINDOWS\ocgen.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00017924 _____ () C:\WINDOWS\comsetup.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00017721 _____ () C:\WINDOWS\FaxSetup.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00013641 _____ () C:\WINDOWS\tsoc.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00012184 _____ () C:\WINDOWS\msmqinst.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00009181 _____ () C:\WINDOWS\ntdtcsetup.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00003873 _____ () C:\WINDOWS\netfxocm.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001912 _____ () C:\WINDOWS\MedCtrOC.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001579 _____ () C:\WINDOWS\tabletoc.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001271 _____ () C:\WINDOWS\ocmsn.log 2014-06-13 12:07 - 2014-01-26 16:27 - 00001180 _____ () C:\WINDOWS\msgsocm.log 2014-06-13 12:07 - 2014-01-26 16:20 - 00000000 ____D () C:\WINDOWS\system32\mui 2014-06-13 12:06 - 2014-06-13 12:06 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Lavasoft 2014-06-13 11:20 - 2014-01-29 18:14 - 00000000 ____D () C:\Program Files\AutoMapa EU 2014-06-12 16:30 - 2014-06-12 16:30 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-06-12 15:51 - 2014-01-29 21:16 - 00000000 ____D () C:\WINDOWS\pss 2014-06-12 15:51 - 2014-01-26 16:26 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy\Autostart 2014-06-12 15:51 - 2014-01-26 16:25 - 00000211 ___SH () C:\boot.ini 2014-06-12 15:51 - 2001-07-22 03:16 - 00000507 _____ () C:\WINDOWS\win.ini 2014-06-12 15:51 - 2001-07-22 03:15 - 00000227 _____ () C:\WINDOWS\system.ini 2014-06-12 14:31 - 2014-06-12 14:31 - 00002552 _____ () C:\{EADE0DB7-5E5A-48BD-9AE4-3BEB1D5F92E7} 2014-06-12 13:27 - 2014-06-12 13:27 - 00002600 _____ () C:\{262CBED2-6B6B-4242-AF82-4FDE28637809} 2014-06-12 13:15 - 2014-06-12 13:15 - 00002640 _____ () C:\{F496378D-4A46-441C-B769-3216B0DAFDCC} 2014-06-12 13:02 - 2014-06-12 13:02 - 00002136 _____ () C:\{67571BC2-20D4-4F61-A6C4-31AB567EBE22} 2014-06-12 12:17 - 2014-06-12 12:17 - 00002400 _____ () C:\{905D190E-285B-4C9B-95F5-C798A7E2377F} 2014-06-12 11:58 - 2014-06-11 12:23 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NST 2014-06-12 11:06 - 2014-06-12 11:06 - 00002256 _____ () C:\{F0FEB365-4C34-406F-9F71-7122B14B4910} 2014-06-11 19:38 - 2014-06-11 19:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Norton Identity Safe 2014-06-11 18:39 - 2014-06-11 12:23 - 00000000 ____D () C:\Program Files\Norton Identity Safe 2014-06-11 18:37 - 2014-06-11 12:22 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared 2014-06-11 12:26 - 2014-06-11 12:16 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NAV 2014-06-11 12:23 - 2014-06-11 12:22 - 00000000 ____D () C:\Program Files\Symantec 2014-06-11 12:23 - 2014-04-05 18:37 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Norton 2014-06-11 12:22 - 2014-06-11 12:23 - 00142496 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS 2014-06-11 12:22 - 2014-06-11 12:23 - 00007611 _____ () C:\WINDOWS\system32\Drivers\SYMEVENT.CAT 2014-06-11 12:22 - 2014-06-11 12:16 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Norton AntiVirus 2014-06-11 12:16 - 2014-06-11 12:16 - 00000000 ____D () C:\Program Files\Norton AntiVirus 2014-06-11 11:53 - 2014-01-26 16:50 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-06-11 11:49 - 2014-06-08 20:17 - 00000404 __RSH () C:\Documents and Settings\All Users\ntuser.pol 2014-06-11 11:43 - 2014-06-11 11:42 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\7-Zip 2014-06-11 11:42 - 2014-06-11 11:42 - 00000000 ____D () C:\Program Files\7-Zip 2014-06-11 09:12 - 2014-06-11 09:08 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-06-11 09:07 - 2014-01-28 17:45 - 00000126 _____ () C:\WINDOWS\VplayerINI.vpl 2014-06-11 09:07 - 2014-01-28 17:34 - 00003223 _____ () C:\WINDOWS\VPlayer.INI 2014-06-09 14:27 - 2014-06-09 14:27 - 17352880 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerInstaller.exe 2014-06-09 14:27 - 2014-01-26 17:40 - 00692400 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-06-09 14:27 - 2014-01-26 17:40 - 00070832 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-06-09 14:22 - 2014-01-26 15:44 - 00000000 ___HD () C:\Documents and Settings\NetworkService\Ustawienia lokalne\Historia 2014-06-08 20:17 - 2014-06-08 20:17 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy 2014-06-08 20:11 - 2014-06-08 20:11 - 00000000 ____D () C:\Documents and Settings\raddor71\Ustawienia lokalne\Dane aplikacji\Opera Software 2014-06-08 20:10 - 2014-06-08 20:10 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Opera Software 2014-06-08 20:06 - 2014-06-08 20:06 - 00000675 _____ () C:\Documents and Settings\All Users\Pulpit\Opera.lnk 2014-06-08 20:06 - 2014-06-08 20:06 - 00000675 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk 2014-06-08 19:39 - 2014-06-08 19:39 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN 2014-06-08 19:38 - 2014-06-08 19:38 - 00000000 ____D () C:\Program Files\VideoLAN 2014-06-06 11:44 - 2014-01-26 16:48 - 00000000 ____D () C:\Program Files\The KMPlayer 2014-06-05 05:39 - 2014-01-26 15:37 - 00000000 ____D () C:\WINDOWS\system32\Restore 2014-06-03 19:24 - 2014-06-03 19:24 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\PDF Architect 2 2014-06-03 19:24 - 2014-06-03 19:20 - 00000000 ____D () C:\Program Files\PDFCreator 2014-06-03 19:23 - 2014-06-03 19:23 - 00000000 ____D () C:\Program Files\PDF Architect 2 2014-06-03 19:23 - 2014-06-03 19:23 - 00000000 ____D () C:\Documents and Settings\raddor71\Moje dokumenty\PDF Architect 2 2014-06-03 19:21 - 2014-06-03 19:21 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\PDF Architect 2 2014-06-03 19:20 - 2014-06-03 19:20 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\PDFCreator 2014-06-03 15:34 - 2001-07-22 03:17 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl 2014-06-02 20:05 - 2014-01-26 15:49 - 00000206 _____ () C:\WINDOWS\system\CmiCnfg.ini 2014-05-29 19:13 - 2014-01-26 16:20 - 00000000 ____D () C:\Documents and Settings\raddor71\Moje dokumenty\Folder wymiany interfejsu Bluetooth 2014-05-28 21:34 - 2014-05-28 21:14 - 00000000 ____D () C:\Documents and Settings\raddor71\Pulpit\z telefonu Doroty 2014-05-28 16:23 - 2014-05-29 19:21 - 01115288 _____ () C:\Documents and Settings\raddor71\Moje dokumenty\Komentarz%20-%20Ordynacja%20podatkowa.doc_0.odt 2014-05-27 08:11 - 2014-05-27 08:11 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-05-27 08:10 - 2014-05-27 08:10 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00175528 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-05-27 08:10 - 2014-05-27 08:10 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-05-27 08:10 - 2014-05-27 08:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-05-27 08:10 - 2014-05-27 08:10 - 00000000 ____D () C:\Program Files\Java 2014-05-27 08:10 - 2014-05-27 08:10 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Java 2014-05-27 08:04 - 2014-05-27 08:04 - 00921512 _____ (Oracle Corporation) C:\Documents and Settings\raddor71\Pulpit\jxpiinstall.exe 2014-05-24 21:56 - 2014-05-24 21:31 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\TEMP 2014-05-24 21:32 - 2014-05-24 21:32 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\GameHouse 2014-05-24 21:31 - 2014-05-24 21:22 - 00000000 ____D () C:\Documents and Settings\raddor71\Dane aplikacji\Oberon Media 2014-05-24 21:30 - 2014-05-24 21:30 - 00000000 ____D () C:\Documents and Settings\raddor71\Menu Start\Programy\IncrediGames Games 2014-05-24 21:30 - 2014-05-24 21:12 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Oberon Media 2014-05-24 21:26 - 2014-05-24 21:26 - 00000000 ____D () C:\Program Files\Oberon Media SIDR 2014-05-24 21:22 - 2014-05-24 21:22 - 00001652 _____ () C:\Documents and Settings\raddor71\Pulpit\IncrediGames Games.lnk 2014-05-24 21:21 - 2014-05-24 21:21 - 00000000 ____D () C:\Program Files\Common Files\Oberon Media ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================