Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:18-06-2014 Ran by hp (administrator) on HP-8510W on 20-06-2014 11:53:11 Running from C:\Documents and Settings\hp\Pulpit\jhkhjkh Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polski Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AuthenTec, Inc.) C:\Program Files\Fingerprint Sensor\AtService.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Sandboxie Holdings, LLC) D:\Program Files\Sandboxie\SbieSvc.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (Mister Group) D:\Program Files\System Explorer\SystemExplorer.exe (GG Network S.A.) C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\GG\Application\gghub.exe (Barracuda Networks, Inc.) C:\Documents and Settings\hp\Dane aplikacji\Copy\CopyAgent.exe (Google Inc.) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Flux Software LLC) C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\FluxSoftware\Flux\flux.exe () C:\Program Files\DFX\DFX.exe () C:\Program Files\DFX\Universal\Apps\DfxSharedApp32.exe () C:\Program Files\DFX\Universal\Apps\dfxItunesSong.exe (Intel Corporation) C:\Program Files\Intel\AMT\atchksrv.exe (mst software GmbH, Germany) C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\DfSdkS.exe () C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\HWDeviceService.exe (Intel Corporation) C:\WINDOWS\system32\IPROSetMonitor.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (LogMeIn, Inc.) C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe (Intel Corporation) C:\Program Files\Intel\AMT\LMS.exe () C:\WINDOWS\system32\nethtsrv.exe () D:\Program Files\PLAY ONLINE\PLAY ONLINE.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe () C:\Documents and Settings\All Users\Dane aplikacji\PLAY ONLINE\OnlineUpdate\ouc.exe (iZ3D Inc.) D:\Program Files\iZ3D Driver\Win32\S3DCService.exe () C:\WINDOWS\system32\netupdsrv.exe (Intel Corporation) C:\Program Files\Intel\AMT\UNS.exe (LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Mister Group) D:\Program Files\System Explorer\service\SystemExplorerService.exe (GG Network S.A.) C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\GG\Application\ggapp.exe (GG Network S.A.) C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\GG\Application\ggdrive\ggdrive.exe (GG Network S.A.) C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\GG\Application\xulrunner\gghub.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AccelerometerSysTrayApplet] => C:\WINDOWS\system32\AccelerometerSt.exe [124928 2007-01-24] (Hewlett-Packard Corporation) HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [951576 2014-03-11] (Microsoft Corporation) HKLM\...\Run: [atchk] => C:\Program Files\Intel\AMT\atchk.exe [408088 2000-01-01] (Intel Corporation) HKLM\...\Run: [QlbCtrl.exe] => C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [287800 2009-11-11] ( Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [NvCplDaemon] => C:\WINDOWS\system32\NvCpl.dll [13537280 2008-11-04] (NVIDIA Corporation) HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k HKLM\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Run: [SystemExplorerAutoStart] => D:\Program Files\System Explorer\SystemExplorer.exe [2860064 2013-11-30] (Mister Group) HKLM\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 0 HKLM\...\Policies\Explorer: [NoResolveSearch] 1 HKU\.DEFAULT\...\Run: [DWQueuedReporting] => C:\Program Files\Common Files\Microsoft Shared\DW\DWTRIG20.EXE [437160 2007-02-26] (Microsoft Corporation) HKU\.DEFAULT\...\Run: [Google Update] => C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [116648 2014-02-08] (Google Inc.) HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\Run: [GG] => C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\GG\Application\gghub.exe [4023360 2014-06-02] (GG Network S.A.) HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\Run: [Copy] => C:\Documents and Settings\hp\Dane aplikacji\Copy\CopyAgent.exe [13376144 2014-06-19] (Barracuda Networks, Inc.) HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\Run: [swg] => C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-07-14] (Google Inc.) HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\Run: [SandboxieControl] => D:\Program Files\Sandboxie\SbieCtrl.exe [543432 2014-01-17] (Sandboxie Holdings, LLC) HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\Run: [FlashGet 3] => C:\Program Files\FlashGet Network\FlashGet 3\FlashGet3.exe [3377256 2013-04-18] (Trend Media Corporation Limited) HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\Run: [f.lux] => C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC) HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\Run: [Control center.exe] => D:\Program Files\iZ3D Driver\Control center.exe [4450816 2010-10-25] (iZ3D Inc.) HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {012bf7a6-cdf6-11e2-a2b0-001f3bbc0aa7} - G:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {12737c40-d086-11e3-9eac-001f3bbc0aa7} - F:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {291b4ec0-cb29-11e3-9bcc-806d6172696f} - J:\SETUP.EXE HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {2c4deda7-cfc2-11e3-b978-00218666a736} - G:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {2c4dedaa-cfc2-11e3-b978-00218666a736} - F:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {2c4dedac-cfc2-11e3-b978-00218666a736} - F:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {7a4ad670-6a36-11e3-a639-00218666a736} - F:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {c2a82400-1d82-11e3-a530-00218666a736} - G:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {da84b522-cd21-11e2-a2a9-001f3bbc0aa7} - F:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {da84b525-cd21-11e2-a2a9-001f3bbc0aa7} - G:\AutoRun.exe HKU\S-1-5-21-448539723-1647877149-1801674531-1003\...\MountPoints2: {eb884540-a52b-11e3-b232-806d6172696f} - H:\setup.exe Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\DFX.lnk ShortcutTarget: DFX.lnk -> C:\Program Files\DFX\DFX.exe () Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Microsoft Office.lnk ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation) Startup: C:\Documents and Settings\hp\Menu Start\Programy\Autostart\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Documents and Settings\hp\Dane aplikacji\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.) BHO: FlashGetBHO - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\hp\Dane aplikacji\FlashGetBHO\FlashGetBHO.dll (Trend Media Group) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 89.108.195.20 89.108.202.20 FireFox: ======== FF ProfilePath: C:\Documents and Settings\hp\Dane aplikacji\Mozilla\Firefox\Profiles\opvcxq8x.default-1392908498250 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin: @java.com/DTPlugin,version=10.17.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @nokia.com/EnablerPlugin - C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Extension: Firefox Synchronisation Extension - C:\Documents and Settings\hp\Dane aplikacji\Mozilla\Firefox\Profiles\opvcxq8x.default-1392908498250\Extensions\synchronize@nokia.suite [2014-03-13] FF Extension: Anaglyph 3D - C:\Documents and Settings\hp\Dane aplikacji\Mozilla\Firefox\Profiles\opvcxq8x.default-1392908498250\Extensions\anaglyph3d@internauta1024a.pl.xpi [2014-03-11] FF Extension: DownThemAll! - C:\Documents and Settings\hp\Dane aplikacji\Mozilla\Firefox\Profiles\opvcxq8x.default-1392908498250\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2014-02-25] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] Chrome: ======= CHR HomePage: CHR StartupUrls: "hxxp://www.msn.com/?pc=AV01" CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\35.0.1916.153\pdf.dll () CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation) CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.)) CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation) CHR Plugin: (Unity Player) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Java(TM) Platform SE 7 U51) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) CHR Plugin: (Nokia Suite Enabler Plugin) - C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\WINDOWS\system32\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () CHR Plugin: (Java Deployment Toolkit 7.0.170.2) - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) CHR Extension: (QR kod) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aaephdgbinagkeepamlbkhkfbiaedabm [2014-06-20] CHR Extension: (BIODIGITAL HUMAN) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\agoenciogemlojlhccbcpcfflicgnaak [2014-06-20] CHR Extension: (Dokumenty Google) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-20] CHR Extension: (Dysk Google) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-20] CHR Extension: (YouTube) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-20] CHR Extension: (Wirtualne pianino) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\cohgcponedmbhgbbdinajeoapmoaifdj [2014-06-20] CHR Extension: (Szukaj w Google) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-20] CHR Extension: (Box - 10GB of FREE storage) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ejnkaeblpdcamcioiiabclakabcbjmbl [2014-06-20] CHR Extension: (QR Code Generator) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gcmhlmapohffdglflokbgknlknnmogbb [2014-06-20] CHR Extension: (Zegar) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gdkjifoifglkpcdffkenpinlbjgephlo [2014-06-20] CHR Extension: (Stoper / Timer) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ggnidjbcahhbnleinchgobfnabopeioh [2014-06-20] CHR Extension: (AdBlock) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-06-20] CHR Extension: (TinEye Reverse Image Search) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\haebnnbpedcbhciplfhjjkbafijpncjl [2014-06-20] CHR Extension: (Speed Test) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\hlhbmnfdcklajeaeikfinieljfegamko [2014-06-20] CHR Extension: (Adres IP) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jpnjjlbngpejmmhgcaagljaomgnginml [2014-06-20] CHR Extension: (Currency Converter) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lndokegkpdlafochibjpgjglkcamdpip [2014-06-20] CHR Extension: (Ashish Mishra) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lnkdbjbjpnpjeciipoaflmpcddinpjjp [2014-06-20] CHR Extension: (Ghostery) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2014-06-20] CHR Extension: (Google Wallet) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-20] CHR Extension: (Gmail) - C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-20] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ========================== Services (Whitelisted) ================= R2 atchksrv; C:\Program Files\Intel\AMT\atchksrv.exe [182808 2000-01-01] (Intel Corporation) R2 ATService; C:\Program Files\Fingerprint Sensor\AtService.exe [1787720 2012-02-02] (AuthenTec, Inc.) R2 btwdins; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [266295 2007-02-06] (Broadcom Corporation.) [File not signed] R2 DfSdkS; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\DfsdkS.exe [406016 2009-08-24] (mst software GmbH, Germany) [File not signed] R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1682768 2014-05-13] (LogMeIn Inc.) R2 HWDeviceService.exe; C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\HWDeviceService.exe [271712 2011-03-14] () S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed] R2 Intel(R) PROSet Monitoring Service; C:\WINDOWS\system32\IProsetMonitor.exe [121240 2013-01-03] (Intel Corporation) R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-12-18] (Oracle Corporation) R2 LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [375056 2014-04-15] (LogMeIn, Inc.) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2014-03-11] (Microsoft Corporation) R2 NetHttpService; C:\WINDOWS\system32\nethtsrv.exe [179200 2014-06-16] () [File not signed] S2 PLAY ONLINE. RunOuc; D:\Program Files\PLAY ONLINE\UpdateDog\ouc.exe [246112 2014-04-30] () R2 S3DSvc32; D:\Program Files\iZ3D Driver\Win32\S3DCService.exe [360960 2010-10-25] (iZ3D Inc.) [File not signed] R2 SbieSvc; D:\Program Files\Sandboxie\SbieSvc.exe [131272 2014-01-17] (Sandboxie Holdings, LLC) R2 ServiceUpdater; C:\WINDOWS\system32\netupdsrv.exe [162304 2014-06-16] () [File not signed] S2 SkypeUpdate; D:\Program Files\Skype\Updater\Updater.exe [172192 2013-10-23] (Skype Technologies) R3 SystemExplorerHelpService; D:\Program Files\System Explorer\service\SystemExplorerService.exe [567256 2012-11-25] (Mister Group) R2 UNS; C:\Program Files\Intel\AMT\UNS.exe [1464856 2000-01-01] (Intel Corporation) S3 WO_LiveService; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe [885096 2013-05-15] () ==================== Drivers (Whitelisted) ==================== R3 btaudio; C:\WINDOWS\System32\drivers\btaudio.sys [530861 2007-02-14] (Broadcom Corporation.) R3 BTDriver; C:\WINDOWS\System32\DRIVERS\btport.sys [30459 2007-02-14] (Broadcom Corporation.) R3 BTKRNL; C:\WINDOWS\System32\DRIVERS\btkrnl.sys [868298 2007-02-14] (Broadcom Corporation.) R3 BTWDNDIS; C:\WINDOWS\System32\DRIVERS\btwdndis.sys [149123 2007-02-14] (Broadcom Corporation.) R3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [67960 2007-02-14] (Broadcom Corporation.) R3 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [243128 2014-03-06] (Disc Soft Ltd) R1 FileDisk; C:\WINDOWS\system32\Drivers\FileDisk.sys [19712 2009-10-21] (Bo Brantén) [File not signed] R3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) R3 HSFHWAZL; C:\WINDOWS\System32\DRIVERS\HSFHWAZL.sys [210816 2007-04-26] (Conexant Systems, Inc.) R3 HSF_DPV; C:\WINDOWS\System32\DRIVERS\HSF_DPV.sys [988032 2007-04-26] (Conexant Systems, Inc.) R3 huawei_cdcacm; C:\WINDOWS\System32\DRIVERS\ew_jucdcacm.sys [95616 2014-04-30] (Huawei Technologies Co., Ltd.) R3 huawei_cdcecm; C:\WINDOWS\System32\DRIVERS\ew_jucdcecm.sys [67584 2014-04-30] (Huawei Technologies Co., Ltd.) R3 huawei_ext_ctrl; C:\WINDOWS\System32\DRIVERS\ew_juextctrl.sys [27520 2014-04-30] (Huawei Technologies Co., Ltd.) R3 IFXTPM; C:\WINDOWS\System32\DRIVERS\IFXTPM.SYS [44800 2008-07-23] (Infineon Technologies AG) R1 iZ3DInjectionDriver; D:\Program Files\iZ3D Driver\Win32\S3DInjectionDriver.sys [34968 2010-10-06] () R2 LiveTunerPM; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerProcessMonitor32.sys [12696 2011-03-08] () R0 MpFilter; C:\WINDOWS\System32\DRIVERS\MpFilter.sys [231960 2014-01-25] (Microsoft Corporation) R1 MpKsl49106404; C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Microsoft Antimalware\Definition Updates\{C5D585BB-AAD3-4564-ADA0-D4DD83A84C04}\MpKsl49106404.sys [39464 2014-06-20] (Microsoft Corporation) R1 nethfdrv; C:\WINDOWS\system32\drivers\nethfdrv.sys [49152 2014-06-16] () [File not signed] R3 NETw5x32; C:\WINDOWS\System32\DRIVERS\NETw5x32.sys [3634688 2009-01-05] (Intel Corporation) R2 NwlnkIpx; C:\WINDOWS\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-15] (Microsoft Corporation) R2 NwlnkNb; C:\WINDOWS\System32\DRIVERS\nwlnknb.sys [63232 2008-04-15] (Microsoft Corporation) R2 NwlnkSpx; C:\WINDOWS\System32\DRIVERS\nwlnkspx.sys [55936 2008-04-15] (Microsoft Corporation) R3 rismc32; C:\WINDOWS\System32\DRIVERS\rismc32.sys [49152 2009-07-20] (RICOH Company, Ltd.) R3 SbieDrv; D:\Program Files\Sandboxie\SbieDrv.sys [161888 2014-01-17] (Sandboxie Holdings, LLC) S4 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [324096 2014-03-06] (Duplex Secure Ltd.) R2 StarOpen; C:\WINDOWS\system32\Drivers\StarOpen.sys [13120 2013-08-25] () R0 SymLink; C:\WINDOWS\System32\drivers\symlink.sys [8704 2011-08-06] () [File not signed] R1 Tcpip; C:\WINDOWS\System32\DRIVERS\tcpip.sys [361600 2008-06-20] (Microsoft Corporation) [File not signed] S3 vncmirror; C:\WINDOWS\System32\DRIVERS\vncmirror.sys [4608 2013-10-03] (RealVNC Ltd.) R3 vsbus; C:\WINDOWS\System32\DRIVERS\vsb.sys [17280 2005-09-06] (ELTIMA Software) [File not signed] S3 vserial; C:\WINDOWS\System32\DRIVERS\vserial.sys [43776 2005-09-06] (ELTIMA Software) [File not signed] U2 CertPropSvc; U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [245376 2014-04-30] (Huawei Technologies Co., Ltd.) S4 IntelIde; No ImagePath U5 P3; C:\Windows\System32\Drivers\P3.sys [46848 2008-04-15] (Microsoft Corporation) S3 SliceDisk5; \??\D:\Program Files\A-FF Find and Mount\slicedisk.sys [X] U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [File not signed] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-20 11:46 - 2014-06-20 11:46 - 00000176 ____C () C:\Documents and Settings\hp\defogger_reenable 2014-06-20 11:39 - 2014-06-20 11:39 - 00001822 _____ () C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk 2014-06-20 11:39 - 2014-06-20 11:39 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome 2014-06-20 11:26 - 2014-06-20 11:53 - 00000000 ____D () C:\FRST 2014-06-20 11:14 - 2014-06-20 11:14 - 00000687 _____ () C:\awh29.tmp 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\Systweak 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\41 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ____D () C:\Program Files\RichMediaViewV1 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ____D () C:\Program Files\Common Files\DVDVideoSoft 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\SmartTweak Software 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\APN 2014-06-20 11:02 - 2014-06-20 11:02 - 00000687 _____ () C:\awh35.tmp 2014-06-20 10:39 - 2014-06-20 10:39 - 00000687 _____ () C:\awh28.tmp 2014-06-20 10:27 - 2014-06-20 10:30 - 00000000 ____D () C:\AdwCleaner 2014-06-20 09:43 - 2014-06-20 09:43 - 00000687 _____ () C:\awh34.tmp 2014-06-20 09:19 - 2014-06-20 09:19 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\MSKLC 2014-06-20 07:59 - 2014-06-20 07:59 - 00000000 ___DC () C:\Documents and Settings\hp\Moje dokumenty\Nowy folder (2) 2014-06-20 07:55 - 2014-06-20 07:55 - 00000000 ___DC () C:\Documents and Settings\hp\Moje dokumenty\Nowy folder 2014-06-20 05:12 - 2014-06-20 05:12 - 00000687 _____ () C:\awh17.tmp 2014-06-19 23:37 - 2014-06-19 23:37 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\DVDVideoSoft_Ltd 2014-06-19 23:33 - 2014-06-20 11:06 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\DVDVideoSoft 2014-06-19 23:12 - 2014-06-19 23:12 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\FastStone 2014-06-19 23:12 - 2014-06-19 23:12 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\FastStone 2014-06-19 19:51 - 2014-06-19 19:51 - 00006737 _____ () C:\WINDOWS\iis6.log 2014-06-19 19:00 - 2014-06-19 19:00 - 00000687 _____ () C:\awh43A.tmp 2014-06-19 16:21 - 2014-06-20 11:10 - 00019553 _____ () C:\WINDOWS\setupapi.log 2014-06-16 14:04 - 2014-06-16 14:04 - 00179200 _____ () C:\WINDOWS\system32\nethtsrv.exe 2014-06-16 14:04 - 2014-06-16 14:04 - 00162304 _____ () C:\WINDOWS\system32\netupdsrv.exe 2014-06-16 14:04 - 2014-06-16 14:04 - 00108544 _____ () C:\WINDOWS\system32\installd.exe 2014-06-16 14:04 - 2014-06-16 14:04 - 00108544 _____ () C:\WINDOWS\system32\hfnapi.dll 2014-06-16 14:04 - 2014-06-16 14:04 - 00049152 _____ () C:\WINDOWS\system32\Drivers\nethfdrv.sys 2014-06-16 14:03 - 2014-06-16 14:03 - 00246784 _____ () C:\WINDOWS\system32\hfpapi.dll 2014-06-15 18:51 - 2014-06-15 18:51 - 00475513 ____C () C:\Documents and Settings\hp\Moje dokumenty\BezNazwy1.exe 2014-06-15 08:30 - 2014-06-15 08:30 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\iZ3DStereoWallpaperCreato 2014-06-13 13:10 - 2014-06-20 09:07 - 00025413 _____ () C:\l 2014-06-13 11:42 - 2005-07-14 12:14 - 00027904 _____ (REDC) C:\WINDOWS\system32\Drivers\risdptsk.sys 2014-06-12 21:58 - 2014-06-12 21:58 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\Thinstall 2014-06-12 21:58 - 2014-06-12 21:58 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Thinstall 2014-06-11 20:59 - 2014-06-11 20:59 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\UnH Solutions 2014-06-11 20:45 - 2014-06-11 20:45 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Swords and Sandals 3 Multiplae Ultratus 2014-06-11 20:12 - 2014-06-11 20:12 - 00001790 _____ () C:\reset.txt 2014-06-11 17:26 - 2014-06-11 17:26 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\com.3rdsense.swordsandsandals5 2014-06-11 17:25 - 2014-06-11 17:25 - 00000582 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\swordsandsandals5.lnk 2014-06-09 22:35 - 2014-06-09 22:35 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\Virtual Hypnotist 2014-06-08 21:33 - 2014-06-08 21:33 - 00000000 ____D () C:\Program Files\7-Zip 2014-06-08 21:33 - 2014-06-08 21:33 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\7-Zip 2014-06-08 19:24 - 2014-06-11 20:46 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\fizzy 2014-06-08 19:24 - 2014-06-08 19:24 - 00000000 __SHD () C:\WINDOWS\ftpcache 2014-06-08 19:21 - 2014-06-08 19:21 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\SSIII Solo Ultratus 2014-06-08 11:25 - 2014-06-08 11:25 - 00000000 ___DC () C:\Documents and Settings\hp\Moje dokumenty\FormatFactory 2014-06-05 18:34 - 2014-06-05 18:34 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\FZf6k4QZguJ 2014-06-03 15:27 - 2014-06-03 15:27 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Gimpel3D 2014-06-02 21:26 - 2014-06-15 08:47 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\iZ3D Driver 2014-06-02 21:26 - 2014-06-02 21:26 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\iZ3D Driver 2014-06-02 21:26 - 2014-06-02 21:26 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\iZ3D Driver 2014-06-02 21:26 - 2010-10-06 18:00 - 00190464 _____ () C:\WINDOWS\system32\PCGW32.DLL 2014-06-02 17:11 - 2014-06-20 08:00 - 00000000 ____D () C:\Documents and Settings\hp\Pulpit\tel 2014-06-02 16:27 - 2014-06-02 16:27 - 00001035 _____ () C:\Documents and Settings\All Users\Menu Start\Softendo Games World.lnk 2014-06-02 16:27 - 2014-06-02 16:27 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Mario Forever 5.08 Direct X 2014-06-02 16:27 - 2014-06-02 16:27 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Mario Forever 2014-06-02 16:18 - 2014-06-02 16:18 - 20033430 ____C () C:\Documents and Settings\hp\Downloads\Mario Forever 5.08 [1].exe 2014-05-26 19:43 - 2014-05-26 19:45 - 00000067 _____ () C:\WINDOWS\system32\worms.bat 2014-05-26 19:28 - 2014-05-26 19:28 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Team 17 2014-05-25 18:10 - 2014-05-25 18:10 - 00000000 ___DC () C:\Documents and Settings\hp\Moje dokumenty\My ISO Files 2014-05-25 18:10 - 2014-05-25 18:10 - 00000000 ____D () C:\Program Files\Common Files\EZB Systems 2014-05-25 18:10 - 2014-05-25 18:10 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\UltraISO 2014-05-24 21:28 - 2014-05-30 18:54 - 00000346 ___SH () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\70149b02515b3bb20dd492.47983420 2014-05-24 21:28 - 2014-05-24 21:28 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\MetaGeek,_LLC 2014-05-24 21:28 - 2014-05-24 21:28 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\MetaGeek 2014-05-24 11:19 - 2014-05-24 11:19 - 00000000 ____D () C:\team17 2014-05-24 10:08 - 2014-05-24 10:08 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA 2014-05-24 09:48 - 2014-05-24 09:48 - 00008780 _____ () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\recently-used.xbel 2014-05-24 09:19 - 2014-05-24 09:19 - 00000056 _____ () C:\WINDOWS\wininit.ini 2014-05-24 09:16 - 2014-05-24 14:30 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Team17 2014-05-24 08:22 - 2014-05-24 08:22 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\Link Shell Extension 2014-05-24 08:02 - 2011-08-06 12:02 - 00008704 ____N () C:\WINDOWS\system32\Drivers\symlink.sys ==================== One Month Modified Files and Folders ======= 2014-06-20 11:54 - 2013-08-09 14:38 - 01919134 _____ () C:\WINDOWS\WindowsUpdate.log 2014-06-20 11:54 - 2013-05-28 17:00 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-06-20 11:54 - 2011-09-22 21:35 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Temp 2014-06-20 11:53 - 2014-06-20 11:26 - 00000000 ____D () C:\FRST 2014-06-20 11:53 - 2013-06-20 12:58 - 00000000 ____D () C:\Documents and Settings\hp\Pulpit\jhkhjkh 2014-06-20 11:52 - 2014-01-18 20:45 - 00000000 __RDC () C:\Documents and Settings\hp\Moje dokumenty\Dropbox 2014-06-20 11:52 - 2014-01-18 20:27 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\DropboxMaster 2014-06-20 11:52 - 2014-01-18 20:25 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\Dropbox 2014-06-20 11:52 - 2013-11-27 17:46 - 00000000 ____D () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\LogMeIn Hamachi 2014-06-20 11:51 - 2014-02-17 10:47 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-06-20 11:51 - 2014-02-17 10:47 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-06-20 11:51 - 2013-11-27 17:47 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\LogMeIn Hamachi 2014-06-20 11:51 - 2013-07-14 20:52 - 00000688 _____ () C:\WINDOWS\system32\secustat.dat 2014-06-20 11:51 - 2013-07-14 19:53 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\BITS 2014-06-20 11:51 - 2011-09-23 12:02 - 00066234 _____ () C:\WINDOWS\system32\nvModes.001 2014-06-20 11:51 - 2008-04-15 14:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl 2014-06-20 11:50 - 2014-02-10 23:23 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\Copy 2014-06-20 11:49 - 2014-03-07 06:14 - 00000216 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job 2014-06-20 11:49 - 2013-05-31 08:57 - 00000000 ____D () C:\Documents and Settings\hp\Dane aplikacji\GG 2014-06-20 11:49 - 2013-05-28 13:26 - 00001024 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-20 11:49 - 2011-09-23 12:01 - 00035834 _____ () C:\WINDOWS\system32\nvwsapps.xml 2014-06-20 11:49 - 2011-09-22 21:35 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-06-20 11:48 - 2011-09-22 21:35 - 00032630 _____ () C:\WINDOWS\SchedLgU.Txt 2014-06-20 11:46 - 2014-06-20 11:46 - 00000176 ____C () C:\Documents and Settings\hp\defogger_reenable 2014-06-20 11:46 - 2011-09-22 21:35 - 00000000 ___DC () C:\Documents and Settings\hp 2014-06-20 11:41 - 2013-05-28 13:26 - 00001028 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-20 11:40 - 2011-09-22 21:35 - 00000000 ___HD () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji 2014-06-20 11:39 - 2014-06-20 11:39 - 00001822 _____ () C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk 2014-06-20 11:39 - 2014-06-20 11:39 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome 2014-06-20 11:39 - 2013-05-28 13:26 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Google 2014-06-20 11:39 - 2011-09-22 21:42 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-06-20 11:39 - 2011-09-22 21:42 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-06-20 11:34 - 2014-02-08 06:28 - 00001152 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-18UA.job 2014-06-20 11:34 - 2013-05-29 16:36 - 00000000 ____D () C:\Documents and Settings\hp\Moje dokumenty\Pobieranie 2014-06-20 11:33 - 2011-09-22 21:35 - 00000806 _____ () C:\Documents and Settings\hp\Menu Start\Programy\Internet Explorer.lnk 2014-06-20 11:18 - 2014-03-26 20:40 - 00000406 ____H () C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job 2014-06-20 11:14 - 2014-06-20 11:14 - 00000687 _____ () C:\awh29.tmp 2014-06-20 11:13 - 2013-05-28 17:13 - 00000000 ____D () C:\Documents and Settings\hp\Dane aplikacji\uTorrent 2014-06-20 11:10 - 2014-06-19 16:21 - 00019553 _____ () C:\WINDOWS\setupapi.log 2014-06-20 11:07 - 2011-09-22 21:35 - 00000000 __SHD () C:\Documents and Settings\LocalService 2014-06-20 11:07 - 2011-09-22 21:29 - 00000000 __SHD () C:\Documents and Settings\NetworkService 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\Systweak 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\41 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ____D () C:\Program Files\RichMediaViewV1 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ____D () C:\Program Files\Common Files\DVDVideoSoft 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\SmartTweak Software 2014-06-20 11:06 - 2014-06-20 11:06 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\APN 2014-06-20 11:06 - 2014-06-19 23:33 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\DVDVideoSoft 2014-06-20 11:06 - 2011-09-22 21:23 - 00000000 ____D () C:\WINDOWS\Registration 2014-06-20 11:02 - 2014-06-20 11:02 - 00000687 _____ () C:\awh35.tmp 2014-06-20 10:39 - 2014-06-20 10:39 - 00000687 _____ () C:\awh28.tmp 2014-06-20 10:34 - 2011-09-22 21:35 - 00000000 __RDC () C:\Documents and Settings\hp\Moje dokumenty 2014-06-20 10:30 - 2014-06-20 10:27 - 00000000 ____D () C:\AdwCleaner 2014-06-20 10:30 - 2011-09-22 21:35 - 00000000 _RHDC () C:\Documents and Settings\hp\Dane aplikacji 2014-06-20 10:29 - 2011-09-22 21:25 - 00000000 __SHD () C:\Documents and Settings\All Users\DRM 2014-06-20 10:27 - 2011-09-22 21:35 - 00000000 ___RD () C:\Documents and Settings\hp\Menu Start\Programy 2014-06-20 10:27 - 2011-09-22 21:35 - 00000000 ____D () C:\Documents and Settings\hp\Pulpit 2014-06-20 10:23 - 2011-09-23 12:02 - 00066234 _____ () C:\WINDOWS\system32\nvModes.dat 2014-06-20 10:10 - 2013-10-08 16:08 - 00000476 _____ () C:\WINDOWS\Tasks\At1.job 2014-06-20 09:43 - 2014-06-20 09:43 - 00000687 _____ () C:\awh34.tmp 2014-06-20 09:29 - 2013-05-29 23:55 - 00000000 ___RD () C:\Documents and Settings\hp\Moje dokumenty\Moje wideo 2014-06-20 09:26 - 2008-04-15 14:00 - 00000838 _____ () C:\WINDOWS\win.ini 2014-06-20 09:19 - 2014-06-20 09:19 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\MSKLC 2014-06-20 09:07 - 2014-06-13 13:10 - 00025413 _____ () C:\l 2014-06-20 08:51 - 2011-09-22 21:35 - 00000000 ___RD () C:\Documents and Settings\hp\Moje dokumenty\Moje obrazy 2014-06-20 08:00 - 2014-06-02 17:11 - 00000000 ____D () C:\Documents and Settings\hp\Pulpit\tel 2014-06-20 07:59 - 2014-06-20 07:59 - 00000000 ___DC () C:\Documents and Settings\hp\Moje dokumenty\Nowy folder (2) 2014-06-20 07:59 - 2013-07-12 13:09 - 00000000 ___RD () C:\Documents and Settings\hp\Pulpit\  2014-06-20 07:58 - 2011-09-23 13:31 - 00000000 ____D () C:\Documents and Settings\hp\Moje dokumenty\Bluetooth Exchange Folder 2014-06-20 07:55 - 2014-06-20 07:55 - 00000000 ___DC () C:\Documents and Settings\hp\Moje dokumenty\Nowy folder 2014-06-20 05:33 - 2014-02-08 06:28 - 00001100 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-18Core.job 2014-06-20 05:19 - 2011-09-22 21:29 - 00000000 ____D () C:\Documents and Settings\NetworkService\Ustawienia lokalne\Temp 2014-06-20 05:12 - 2014-06-20 05:12 - 00000687 _____ () C:\awh17.tmp 2014-06-19 23:37 - 2014-06-19 23:37 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\DVDVideoSoft_Ltd 2014-06-19 23:12 - 2014-06-19 23:12 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\FastStone 2014-06-19 23:12 - 2014-06-19 23:12 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\FastStone 2014-06-19 20:40 - 2013-10-08 16:08 - 00000476 _____ () C:\WINDOWS\Tasks\At2.job 2014-06-19 19:51 - 2014-06-19 19:51 - 00006737 _____ () C:\WINDOWS\iis6.log 2014-06-19 19:00 - 2014-06-19 19:00 - 00000687 _____ () C:\awh43A.tmp 2014-06-19 14:52 - 2014-01-19 13:27 - 00000000 ____D () C:\Documents and Settings\hp\Pulpit\Rzeczy mamy 2014-06-19 14:00 - 2013-10-08 16:08 - 00000476 _____ () C:\WINDOWS\Tasks\At4.job 2014-06-18 16:08 - 2013-10-08 16:08 - 00000476 _____ () C:\WINDOWS\Tasks\At3.job 2014-06-16 14:04 - 2014-06-16 14:04 - 00179200 _____ () C:\WINDOWS\system32\nethtsrv.exe 2014-06-16 14:04 - 2014-06-16 14:04 - 00162304 _____ () C:\WINDOWS\system32\netupdsrv.exe 2014-06-16 14:04 - 2014-06-16 14:04 - 00108544 _____ () C:\WINDOWS\system32\installd.exe 2014-06-16 14:04 - 2014-06-16 14:04 - 00108544 _____ () C:\WINDOWS\system32\hfnapi.dll 2014-06-16 14:04 - 2014-06-16 14:04 - 00049152 _____ () C:\WINDOWS\system32\Drivers\nethfdrv.sys 2014-06-16 14:03 - 2014-06-16 14:03 - 00246784 _____ () C:\WINDOWS\system32\hfpapi.dll 2014-06-15 18:51 - 2014-06-15 18:51 - 00475513 ____C () C:\Documents and Settings\hp\Moje dokumenty\BezNazwy1.exe 2014-06-15 18:51 - 2014-05-16 16:49 - 00000244 ____C () C:\Documents and Settings\hp\Moje dokumenty\BezNazwy1.cpp 2014-06-15 13:26 - 2013-11-10 11:26 - 00009940 _____ () C:\graph.log 2014-06-15 13:02 - 2014-03-10 23:50 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\Winamp 2014-06-15 10:09 - 2014-05-04 00:34 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\inkscape 2014-06-15 10:09 - 2013-06-18 21:34 - 00000000 ____D () C:\Documents and Settings\hp\Dane aplikacji\DAEMON Tools Lite 2014-06-15 10:09 - 2013-06-17 23:25 - 00000000 ____D () C:\WINDOWS\Minidump 2014-06-15 08:47 - 2014-06-02 21:26 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\iZ3D Driver 2014-06-15 08:30 - 2014-06-15 08:30 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\iZ3DStereoWallpaperCreato 2014-06-14 09:11 - 2013-09-13 20:24 - 00000235 _____ () C:\WINDOWS\mafosav.INI 2014-06-14 06:31 - 2013-06-03 21:37 - 00093696 _____ () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-06-13 16:00 - 2013-06-03 21:40 - 00000380 _____ () C:\WINDOWS\Tasks\One-Click Optimizer.job 2014-06-13 11:46 - 2011-09-23 11:44 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups 2014-06-13 11:42 - 2014-04-15 17:14 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-06-12 21:58 - 2014-06-12 21:58 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\Thinstall 2014-06-12 21:58 - 2014-06-12 21:58 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\Thinstall 2014-06-12 14:52 - 2014-01-31 00:18 - 00000810 _____ () C:\Documents and Settings\hp\Pulpit\µTorrent.lnk 2014-06-12 14:52 - 2014-01-27 17:20 - 00000810 ____C () C:\Documents and Settings\hp\Menu Start\µTorrent.lnk 2014-06-12 05:57 - 2014-02-26 19:15 - 00001696 _____ () C:\WINDOWS\Sandboxie.ini 2014-06-11 22:45 - 2013-06-20 01:18 - 01981208 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-448539723-1647877149-1801674531-1003-0.dat 2014-06-11 22:45 - 2013-06-20 01:18 - 00234462 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat 2014-06-11 20:59 - 2014-06-11 20:59 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\UnH Solutions 2014-06-11 20:46 - 2014-06-08 19:24 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\fizzy 2014-06-11 20:45 - 2014-06-11 20:45 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Swords and Sandals 3 Multiplae Ultratus 2014-06-11 20:12 - 2014-06-11 20:12 - 00001790 _____ () C:\reset.txt 2014-06-11 17:26 - 2014-06-11 17:26 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\com.3rdsense.swordsandsandals5 2014-06-11 17:25 - 2014-06-11 17:25 - 00000582 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\swordsandsandals5.lnk 2014-06-11 05:21 - 2013-07-11 18:41 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-06-11 05:16 - 2013-05-29 10:42 - 92708840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-06-09 22:35 - 2014-06-09 22:35 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\Virtual Hypnotist 2014-06-09 22:35 - 2011-09-22 21:26 - 00023392 _____ () C:\WINDOWS\system32\nscompat.tlb 2014-06-09 22:35 - 2011-09-22 21:26 - 00016832 _____ () C:\WINDOWS\system32\amcompat.tlb 2014-06-08 21:33 - 2014-06-08 21:33 - 00000000 ____D () C:\Program Files\7-Zip 2014-06-08 21:33 - 2014-06-08 21:33 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\7-Zip 2014-06-08 19:24 - 2014-06-08 19:24 - 00000000 __SHD () C:\WINDOWS\ftpcache 2014-06-08 19:21 - 2014-06-08 19:21 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\SSIII Solo Ultratus 2014-06-08 15:00 - 2014-03-07 06:14 - 00000210 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job 2014-06-08 11:25 - 2014-06-08 11:25 - 00000000 ___DC () C:\Documents and Settings\hp\Moje dokumenty\FormatFactory 2014-06-07 22:44 - 2011-09-22 21:35 - 00000188 ___SH () C:\Documents and Settings\hp\ntuser.ini 2014-06-05 18:34 - 2014-06-05 18:34 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\FZf6k4QZguJ 2014-06-05 18:34 - 2011-09-22 21:41 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-06-03 17:56 - 2011-09-22 21:35 - 00000000 __RDC () C:\Documents and Settings\hp\Menu Start 2014-06-03 15:27 - 2014-06-03 15:27 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Gimpel3D 2014-06-02 21:26 - 2014-06-02 21:26 - 00000000 ___DC () C:\Documents and Settings\hp\Dane aplikacji\iZ3D Driver 2014-06-02 21:26 - 2014-06-02 21:26 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\iZ3D Driver 2014-06-02 18:17 - 2013-05-31 08:57 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\GG 2014-06-02 16:27 - 2014-06-02 16:27 - 00001035 _____ () C:\Documents and Settings\All Users\Menu Start\Softendo Games World.lnk 2014-06-02 16:27 - 2014-06-02 16:27 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Mario Forever 5.08 Direct X 2014-06-02 16:27 - 2014-06-02 16:27 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Mario Forever 2014-06-02 16:27 - 2011-09-22 21:42 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start 2014-06-02 16:18 - 2014-06-02 16:18 - 20033430 ____C () C:\Documents and Settings\hp\Downloads\Mario Forever 5.08 [1].exe 2014-06-02 14:57 - 2011-09-22 21:35 - 00000000 ___RD () C:\Documents and Settings\hp\Menu Start\Programy\Autostart 2014-06-01 10:13 - 2013-09-12 22:54 - 00000109 _____ () C:\WINDOWS\forevermopt.INI 2014-05-30 18:54 - 2014-05-24 21:28 - 00000346 ___SH () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\70149b02515b3bb20dd492.47983420 2014-05-26 19:45 - 2014-05-26 19:43 - 00000067 _____ () C:\WINDOWS\system32\worms.bat 2014-05-26 19:28 - 2014-05-26 19:28 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Team 17 2014-05-26 15:49 - 2013-07-22 22:36 - 00003235 _____ () C:\WINDOWS\system32\secushr.dat 2014-05-25 18:10 - 2014-05-25 18:10 - 00000000 ___DC () C:\Documents and Settings\hp\Moje dokumenty\My ISO Files 2014-05-25 18:10 - 2014-05-25 18:10 - 00000000 ____D () C:\Program Files\Common Files\EZB Systems 2014-05-25 18:10 - 2014-05-25 18:10 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\UltraISO 2014-05-25 08:48 - 2014-01-18 20:26 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\Dropbox 2014-05-24 21:28 - 2014-05-24 21:28 - 00000000 ____D () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\MetaGeek,_LLC 2014-05-24 21:28 - 2014-05-24 21:28 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\MetaGeek 2014-05-24 14:30 - 2014-05-24 09:16 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Team17 2014-05-24 13:25 - 2013-06-17 23:02 - 00000000 ___DC () C:\Documents and Settings\hp\.VirtualBox 2014-05-24 11:19 - 2014-05-24 11:19 - 00000000 ____D () C:\team17 2014-05-24 10:08 - 2014-05-24 10:08 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA 2014-05-24 09:54 - 2013-05-29 11:27 - 00000000 ___DC () C:\Documents and Settings\hp\.gimp-2.8 2014-05-24 09:48 - 2014-05-24 09:48 - 00008780 _____ () C:\Documents and Settings\hp\Ustawienia lokalne\Dane aplikacji\recently-used.xbel 2014-05-24 09:19 - 2014-05-24 09:19 - 00000056 _____ () C:\WINDOWS\wininit.ini 2014-05-24 08:22 - 2014-05-24 08:22 - 00000000 ____D () C:\Documents and Settings\hp\Menu Start\Programy\Link Shell Extension Files to move or delete: ==================== C:\Windows\Tasks\At1.job C:\Windows\Tasks\At2.job C:\Windows\Tasks\At3.job C:\Windows\Tasks\At4.job Some content of TEMP: ==================== C:\Documents and Settings\hp\Ustawienia lokalne\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmphmmijq.dll C:\Documents and Settings\hp\Ustawienia lokalne\Temp\drvinstal.exe C:\Documents and Settings\hp\Ustawienia lokalne\Temp\ICReinstall_FreeScreenVideoRecorder.exe C:\Documents and Settings\hp\Ustawienia lokalne\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================