OTL logfile created on: 2011-04-20 18:06:01 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = D:\Programy\Diagnostyka\Logs Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.19048) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 57,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 77,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 149,05 Gb Total Space | 28,47 Gb Free Space | 19,10% Space Free | Partition Type: NTFS Drive D: | 3,74 Gb Total Space | 0,25 Gb Free Space | 6,63% Space Free | Partition Type: NTFS Computer Name: ADAM-PC | User Name: Administrator | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-04-07 22:43:04 | 000,841,832 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe PRC - [2011-03-09 10:27:52 | 000,580,608 | ---- | M] (OldTimer Tools) -- D:\Programy\Diagnostyka\Logs\OTL.exe PRC - [2011-01-28 11:21:58 | 004,085,080 | ---- | M] (Ashampoo Development GmbH & Co. KG) -- C:\Program Files\Ashampoo\Ashampoo HDD Control\HDDControlGuard.exe PRC - [2009-10-14 18:44:40 | 000,282,624 | R--- | M] (France Telecom SA) -- C:\Program Files\CardDetector\HUAWEI1752_1552\CardDetector.exe PRC - [2009-10-14 16:44:38 | 000,090,112 | ---- | M] (France Telecom SA) -- C:\Program Files\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe PRC - [2009-06-05 13:07:02 | 000,143,455 | ---- | M] (ComArch S.A.) -- C:\Program Files\Comarch\ComarchSmartCard\CardServer.exe PRC - [2009-04-11 08:28:15 | 000,117,248 | ---- | M] () -- \\?\C:\Windows\System32\wbem\WMIADAP.EXE PRC - [2009-04-11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2007-02-07 16:30:00 | 000,065,536 | R--- | M] (Cognizance Corporation) -- c:\Program Files\Bioscrypt\VeriSoft\Bin\asghost.exe PRC - [2006-11-02 11:45:59 | 000,215,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\WindowsMobile\wmdSync.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-03-09 10:27:52 | 000,580,608 | ---- | M] (OldTimer Tools) -- D:\Programy\Diagnostyka\Logs\OTL.exe MOD - [2010-08-31 17:43:52 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll MOD - [2006-12-05 00:31:00 | 000,090,112 | R--- | M] (Cognizance Corporation) -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ItClient.dll MOD - [2006-07-13 07:55:00 | 000,056,832 | R--- | M] (Cognizance Corporation) -- C:\Windows\System32\APSHook.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2009-10-14 16:44:38 | 000,090,112 | ---- | M] (France Telecom SA) [Auto | Running] -- C:\Program Files\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC) SRV - [2009-08-24 21:16:36 | 000,406,016 | ---- | M] (mst software GmbH, Germany) [On_Demand | Stopped] -- C:\Program Files\Ashampoo\Ashampoo HDD Control\Dfsdks.exe -- (DfSdkS) SRV - [2009-06-05 13:07:02 | 000,143,455 | ---- | M] (ComArch S.A.) [Auto | Running] -- C:\Program Files\Comarch\ComarchSmartCard\CardServer.exe -- (ComarchCardServer) SRV - [2008-04-15 17:54:42 | 000,354,840 | ---- | M] (Intel Corporation) [Disabled | Stopped] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R) SRV - [2008-01-19 09:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2008-01-19 09:36:49 | 000,365,568 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm) SRV - [2008-01-19 09:36:15 | 000,167,936 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr) SRV - [2007-04-23 18:11:44 | 000,106,593 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe -- (CLSched) CyberLink Task Scheduler (CTS) SRV - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe -- (CLCapSvc) CyberLink Background Capture Service (CBCS) SRV - [2007-02-07 16:30:00 | 000,074,240 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASWLNPkg.dll -- (ASBroker) SRV - [2006-06-22 09:14:00 | 000,131,584 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASChnl.dll -- (ASChannel) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-04-08 07:14:00 | 010,690,024 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2009-08-28 19:42:44 | 000,017,408 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\netaapl.sys -- (Netaapl) DRV - [2009-08-04 13:04:28 | 000,103,040 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbfake.sys -- (hwusbfake) DRV - [2009-08-04 13:04:28 | 000,102,784 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2009-06-05 13:06:30 | 000,087,424 | ---- | M] (Gemalto) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\GemCCID.sys -- (GemCCID) DRV - [2008-05-02 11:58:28 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2008-05-02 11:58:14 | 000,020,864 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2008-05-02 11:58:14 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2008-05-02 11:58:12 | 000,017,536 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2008-01-25 00:46:40 | 000,106,496 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169) DRV - [2008-01-19 07:49:30 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbccid.sys -- (USBCCID) DRV - [2008-01-09 03:10:32 | 002,554,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw4v32.sys -- (NETw4v32) Sterownik karty Intel(R) DRV - [2007-08-08 20:42:08 | 000,045,568 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk) DRV - [2007-07-30 11:54:02 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp) DRV - [2007-07-30 10:42:58 | 000,043,008 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk) DRV - [2007-04-02 22:13:46 | 000,021,632 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\motmodem.sys -- (motmodem) DRV - [2007-03-28 18:44:22 | 000,140,424 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atswpdrv.sys -- (ATSWPDRV) AuthenTec TruePrint USB Driver (SwipeSensor) DRV - [2007-03-15 21:52:00 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\BVRPMPR5.SYS -- (BVRPMPR5) DRV - [2007-01-16 22:38:52 | 000,983,936 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\smserial.sys -- (smserial) DRV - [2006-12-22 20:05:34 | 000,449,536 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\athrusb.sys -- (athrusb) DRV - [2006-11-30 10:24:58 | 000,008,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | System | Running] -- C:\Windows\System32\drivers\eabfiltr.sys -- (eabfiltr) DRV - [2006-06-28 09:54:00 | 000,009,472 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CPQBttn.sys -- (HBtnKey) DRV - [2002-01-12 16:30:34 | 000,003,567 | ---- | M] (Beyond Logic http://www.beyondlogic.org) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PortTalk.sys -- (PortTalk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-274428670-4172160838-1240366724-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-04-20 15:01:45 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-04-13 23:59:58 | 000,000,000 | ---D | M] [2011-04-20 09:30:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2006-09-18 23:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - No CLSID value found. O2 - BHO: (VeriSoft Access Manager) - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll (Bioscrypt Inc.) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\ProgramData\Gadu-Gadu 10\_userdata\ggbho.2.dll (GG Network S.A.) O3 - HKLM\..\Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - No CLSID value found. O4 - HKLM..\Run: [Ashampoo HDD Control Guard] C:\Program Files\Ashampoo\Ashampoo HDD Control\HDDControlGuard.exe (Ashampoo Development GmbH & Co. KG) O4 - HKLM..\Run: [BEWINTERNET-PLSessionManager] C:\Program Files\OrangeBS\BEWInternet-PL\SessionManager\SessionManager.exe (France Telecom SA) O4 - HKLM..\Run: [CardDetectorHUAWEI1752_1552] C:\Program Files\CardDetector\HUAWEI1752_1552\CardDetector.exe (France Telecom SA) O4 - HKLM..\Run: [RtHDVCpl] File not found O4 - HKLM..\Run: [Windows Mobile-based device management] C:\Windows\WindowsMobile\wmdSync.exe (Microsoft Corporation) O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O7 - HKU\S-1-5-21-274428670-4172160838-1240366724-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll (Sun Microsystems, Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O13 - gopher Prefix: missing O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab (Java Plug-in 1.6.0) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {92ECE6FA-AC2E-4042-BFAE-0C8608E52A3E} https://start.ingbusinessonline.pl/login/components/SignActivXIng.cab (SignActivX Control) O16 - DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab (Java Plug-in 1.6.0) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab (Java Plug-in 1.6.0) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.240 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - AppInit_DLLs: (APSHook.dll) - C:\Windows\System32\APSHook.dll (Cognizance Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\HPRadiance.jpg O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\HPRadiance.jpg O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-04-20 15:03:25 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Portable Devices [2011-04-20 14:38:10 | 000,094,848 | ---- | C] (GMER) -- C:\kxldrpoc.sys [2011-04-20 14:15:45 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll [2011-04-20 14:15:44 | 003,023,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbon.dll [2011-04-20 14:15:44 | 001,164,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIRibbonRes.dll [2011-04-20 14:14:39 | 000,369,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll [2011-04-20 14:14:33 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll [2011-04-20 14:14:33 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PhotoMetadataHandler.dll [2011-04-20 14:14:33 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiag.exe [2011-04-20 14:14:33 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxdiagn.dll [2011-04-20 14:14:33 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll [2011-04-20 14:13:24 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\BthMtpContextHandler.dll [2011-04-20 14:13:24 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDShextAutoplay.exe [2011-04-20 14:13:04 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceConnectApi.dll [2011-04-20 14:12:55 | 000,546,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wpd_ci.dll [2011-04-20 14:12:55 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WpdMtpUS.dll [2011-04-20 14:12:55 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WpdConns.dll [2011-04-20 14:12:54 | 000,350,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WPDSp.dll [2011-04-20 14:12:54 | 000,334,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceApi.dll [2011-04-20 14:12:54 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WpdMtp.dll [2011-04-20 14:12:54 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceWMDRM.dll [2011-04-20 14:12:54 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceTypes.dll [2011-04-20 14:12:54 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PortableDeviceClassExtension.dll [2011-04-20 14:10:30 | 000,555,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAutomationCore.dll [2011-04-20 14:10:30 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\oleaccrc.dll [2011-04-20 14:06:47 | 001,172,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll [2011-04-20 14:06:47 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll [2011-04-20 14:06:47 | 001,029,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll [2011-04-20 14:06:47 | 000,683,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll [2011-04-20 14:06:47 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll [2011-04-20 14:06:46 | 001,554,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xpsservices.dll [2011-04-20 14:06:46 | 000,979,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MFH264Dec.dll [2011-04-20 14:06:46 | 000,876,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll [2011-04-20 14:06:46 | 000,486,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll [2011-04-20 14:06:46 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll [2011-04-20 14:06:46 | 000,288,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll [2011-04-20 14:06:46 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll [2011-04-20 14:06:46 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll [2011-04-20 14:06:46 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsRasterService.dll [2011-04-20 14:06:45 | 000,847,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OpcServices.dll [2011-04-20 14:06:45 | 000,357,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MFHEAACdec.dll [2011-04-20 14:06:45 | 000,302,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfmp4src.dll [2011-04-20 14:06:45 | 000,261,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfreadwrite.dll [2011-04-20 14:06:44 | 002,873,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mf.dll [2011-04-20 14:06:44 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelinesvc.exe [2011-04-20 14:06:44 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdd.dll [2011-04-20 14:06:43 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfplat.dll [2011-04-20 14:06:42 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfps.dll [2011-04-20 14:06:41 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\printfilterpipelineprxy.dll [2011-04-20 14:05:01 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl [2011-04-20 14:05:01 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll [2011-04-20 14:05:01 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll [2011-04-20 14:05:01 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll [2011-04-20 14:05:01 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec [2011-04-20 14:05:01 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll [2011-04-20 14:05:01 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll [2011-04-20 14:05:01 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe [2011-04-20 14:05:01 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll [2011-04-20 14:05:01 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll [2011-04-20 14:05:01 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll [2011-04-20 14:05:01 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll [2011-04-20 14:05:01 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll [2011-04-20 14:05:01 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll [2011-04-20 14:05:00 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb [2011-04-20 14:05:00 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe [2011-04-20 14:05:00 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe [2011-04-20 14:04:16 | 000,231,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msshsq.dll [2011-04-20 14:02:21 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll [2011-04-20 14:02:21 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll [2011-04-20 13:51:31 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Macromedia [2011-04-20 13:51:30 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Adobe [2011-04-20 13:23:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\eu-ES [2011-04-20 13:23:42 | 000,000,000 | ---D | C] -- C:\Windows\System32\ca-ES [2011-04-20 13:23:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\vi-VN [2011-04-20 12:52:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders [2011-04-20 12:43:15 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll [2011-04-20 12:43:15 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\admparse.dll [2011-04-20 12:43:15 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll [2011-04-20 12:43:15 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\corpol.dll [2011-04-20 12:43:14 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieakeng.dll [2011-04-20 12:43:14 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll [2011-04-20 12:43:13 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll [2011-04-20 12:43:13 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieaksie.dll [2011-04-20 12:43:13 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll [2011-04-20 12:43:13 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll [2011-04-20 12:43:12 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinFXDocObj.exe [2011-04-20 12:43:12 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll [2011-04-20 12:43:12 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieakui.dll [2011-04-20 12:43:12 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe [2011-04-20 12:43:12 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll [2011-04-20 12:43:11 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll [2011-04-20 12:43:11 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll [2011-04-20 12:43:10 | 003,698,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat [2011-04-20 12:43:10 | 000,169,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe [2011-04-20 12:43:10 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PDMSetup.exe [2011-04-20 12:43:10 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe [2011-04-20 12:43:10 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe [2011-04-20 12:43:10 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetDepNx.exe [2011-04-20 12:01:57 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Local\Google [2011-04-20 12:01:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo [2011-04-20 12:01:04 | 000,034,304 | ---- | C] (mst software GmbH, Germany) -- C:\Windows\System32\DfSdkBt64.exe [2011-04-20 12:01:04 | 000,028,160 | ---- | C] (mst software GmbH, Germany) -- C:\Windows\System32\DfSdkBt.exe [2011-04-20 12:01:03 | 000,000,000 | ---D | C] -- C:\Program Files\Ashampoo [2011-04-20 10:45:03 | 000,000,000 | ---D | C] -- C:\Diagnostyka [2011-04-20 10:35:42 | 000,003,567 | ---- | C] (Beyond Logic http://www.beyondlogic.org) -- C:\Windows\System32\drivers\PortTalk.sys [2011-04-20 10:35:34 | 000,003,567 | ---- | C] (Beyond Logic http://www.beyondlogic.org) -- C:\Windows\System32\porttalk.sys [2011-04-20 10:18:23 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Local\QuickPlay [2011-04-20 10:17:49 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2011-04-20 10:17:49 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Searches [2011-04-20 10:17:49 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2011-04-20 10:17:40 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Identities [2011-04-20 10:17:37 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Contacts [2011-04-20 10:01:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab Setup Files [2011-04-20 10:01:01 | 118,063,136 | ---- | C] (Kaspersky Lab) -- C:\kis11.0.2.556pl.exe [2011-04-20 08:57:23 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA [2011-04-19 21:33:37 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation [2011-04-19 21:32:43 | 000,057,960 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll [2011-04-19 21:32:42 | 015,227,496 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll [2011-04-19 21:32:42 | 010,690,024 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys [2011-04-19 21:32:42 | 010,071,656 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvd3dum.dll [2011-04-19 21:32:42 | 006,299,752 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvwgf2um.dll [2011-04-19 21:32:42 | 005,180,824 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll [2011-04-19 21:32:42 | 002,765,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll [2011-04-19 21:32:42 | 002,074,216 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll [2011-04-19 21:32:42 | 000,944,232 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispco3220140.dll [2011-04-19 21:32:42 | 000,855,656 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvgenco322060.dll [2011-04-19 21:32:41 | 013,007,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll [2011-04-19 21:32:41 | 002,034,280 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll [2011-04-19 21:32:41 | 000,010,920 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd [2011-04-19 20:14:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager [2011-04-19 20:11:55 | 000,172,032 | ---- | C] (Ricoh Company,Ltd) -- C:\Windows\System32\rixdicon.dll [2011-04-19 20:11:55 | 000,045,568 | ---- | C] (REDC) -- C:\Windows\System32\drivers\rimmptsk.sys [2011-04-19 20:11:55 | 000,043,008 | ---- | C] (REDC) -- C:\Windows\System32\drivers\rimsptsk.sys [2011-04-19 20:11:55 | 000,038,400 | ---- | C] (REDC) -- C:\Windows\System32\drivers\rixdptsk.sys [2011-04-19 20:11:06 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\System32\CSVer.dll [2011-04-19 19:40:55 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2011-04-19 19:40:30 | 000,000,000 | ---D | C] -- C:\NVIDIA [2011-04-19 15:41:00 | 000,106,496 | ---- | C] (Realtek Corporation ) -- C:\Windows\System32\drivers\Rtlh86.sys [2011-04-19 13:57:18 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Ustawienia lokalne [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\AppData\Local\Temporary Internet Files [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Szablony [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\SendTo [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Recent [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\PrintHood [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\NetHood [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Documents\Moje wideo [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Menu Start [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\AppData\Local\Historia [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Dane aplikacji [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\AppData\Local\Dane aplikacji [2011-04-19 13:35:34 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Cookies [2011-04-19 13:35:33 | 000,000,000 | --SD | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Microsoft [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Videos [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Saved Games [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Pictures [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Music [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Links [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Favorites [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Downloads [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Documents [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\Desktop [2011-04-19 13:35:33 | 000,000,000 | R--D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2011-04-19 13:35:33 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Documents\Moje obrazy [2011-04-19 13:35:33 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Moje dokumenty [2011-04-19 13:35:33 | 000,000,000 | -HSD | C] -- C:\Users\Administrator.adam-PC\Documents\Moja muzyka [2011-04-19 13:35:33 | 000,000,000 | -H-D | C] -- C:\Users\Administrator.adam-PC\AppData [2011-04-19 13:35:33 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Local\Temp [2011-04-19 13:35:33 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Local\Microsoft Help [2011-04-19 13:35:33 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Local\Microsoft [2011-04-19 13:35:33 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Media Center Programs [2011-04-19 13:35:33 | 000,000,000 | ---D | C] -- C:\Users\Administrator.adam-PC\AppData\Roaming\Apple Computer [2011-04-19 13:17:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2011-04-19 11:52:11 | 000,000,000 | ---D | C] -- C:\Program Files\SkanerOnline [2011-04-19 11:33:35 | 000,000,000 | ---D | C] -- C:\Windows\pss [2011-04-13 23:29:09 | 000,292,864 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll [2011-04-13 23:29:08 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll [2011-04-13 23:29:01 | 001,136,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42.dll [2011-04-13 23:29:00 | 001,162,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42u.dll [2011-04-13 23:28:53 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dnscacheugc.exe [2011-04-13 23:28:33 | 002,041,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys [2011-04-07 22:43:36 | 000,580,200 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\easyUpdatusAPIU.dll [2011-04-07 22:43:34 | 002,582,120 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvcr.dll [2011-04-07 22:43:34 | 000,293,992 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvhotkey.dll [2011-04-07 22:43:34 | 000,111,208 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvmctray.dll [2011-04-07 22:43:34 | 000,066,664 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvshext.dll [2011-04-07 22:43:20 | 003,701,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcpl.dll [2011-04-07 22:43:04 | 002,565,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvc.dll [1 C:\*.tmp files -> C:\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-04-20 18:07:00 | 000,672,140 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2011-04-20 18:07:00 | 000,595,996 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011-04-20 18:07:00 | 000,130,516 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2011-04-20 18:07:00 | 000,104,070 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011-04-20 18:01:06 | 000,000,148 | ---- | M] () -- C:\Users\Public\Documents\hpqp.ini [2011-04-20 18:00:57 | 000,001,028 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011-04-20 18:00:36 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2011-04-20 18:00:36 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2011-04-20 18:00:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011-04-20 18:00:29 | 2145,837,056 | -HS- | M] () -- C:\hiberfil.sys [2011-04-20 15:04:00 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat [2011-04-20 14:55:00 | 000,001,032 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011-04-20 14:43:17 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf [2011-04-20 14:41:57 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf [2011-04-20 14:40:31 | 273,012,893 | ---- | M] () -- C:\Windows\MEMORY.DMP [2011-04-20 14:38:10 | 000,094,848 | ---- | M] (GMER) -- C:\kxldrpoc.sys [2011-04-20 13:34:17 | 000,349,112 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2011-04-20 09:55:47 | 118,063,136 | ---- | M] (Kaspersky Lab) -- C:\kis11.0.2.556pl.exe [2011-04-19 20:13:26 | 000,319,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\DIFxAPI.dll [2011-04-08 07:14:00 | 015,227,496 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll [2011-04-08 07:14:00 | 013,007,464 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll [2011-04-08 07:14:00 | 010,690,024 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys [2011-04-08 07:14:00 | 010,071,656 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvd3dum.dll [2011-04-08 07:14:00 | 006,299,752 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvwgf2um.dll [2011-04-08 07:14:00 | 005,180,824 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll [2011-04-08 07:14:00 | 002,765,928 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll [2011-04-08 07:14:00 | 002,074,216 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll [2011-04-08 07:14:00 | 002,034,280 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll [2011-04-08 07:14:00 | 000,944,232 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvdispco3220140.dll [2011-04-08 07:14:00 | 000,855,656 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvgenco322060.dll [2011-04-08 07:14:00 | 000,057,960 | ---- | M] (Khronos Group) -- C:\Windows\System32\OpenCL.dll [2011-04-08 07:14:00 | 000,010,920 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd [2011-04-08 07:14:00 | 000,004,755 | ---- | M] () -- C:\Windows\System32\nvinfo.pb [2011-04-07 22:43:36 | 000,580,200 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\easyUpdatusAPIU.dll [2011-04-07 22:43:34 | 002,582,120 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvsvcr.dll [2011-04-07 22:43:34 | 000,293,992 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvhotkey.dll [2011-04-07 22:43:34 | 000,111,208 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvmctray.dll [2011-04-07 22:43:34 | 000,066,664 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvshext.dll [2011-04-07 22:43:20 | 003,701,352 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvcpl.dll [2011-04-07 22:43:04 | 002,565,224 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvsvc.dll [2011-03-26 19:58:01 | 000,001,971 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2011-03-24 17:08:07 | 000,000,318 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForadam.job [1 C:\*.tmp files -> C:\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-04-20 14:43:17 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf [2011-04-20 14:41:57 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf [2011-04-20 14:40:31 | 273,012,893 | ---- | C] () -- C:\Windows\MEMORY.DMP [2011-04-20 12:44:41 | 000,057,667 | ---- | C] () -- C:\Windows\System32\ieuinit.inf [2011-04-20 12:32:01 | 2145,837,056 | -HS- | C] () -- C:\hiberfil.sys [2011-04-20 10:44:18 | 000,000,949 | ---- | C] () -- C:\Users\Administrator.adam-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2011-04-20 10:17:49 | 000,000,944 | ---- | C] () -- C:\Users\Administrator.adam-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk [2011-04-20 10:17:37 | 000,000,915 | ---- | C] () -- C:\Users\Administrator.adam-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Mail.lnk [2011-04-19 21:32:42 | 000,004,755 | ---- | C] () -- C:\Windows\System32\nvinfo.pb [2011-04-19 20:13:34 | 000,000,553 | ---- | C] () -- C:\Windows\USetup.iss [2009-11-08 15:38:37 | 000,000,048 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2009-11-07 11:14:13 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll [2009-11-07 11:14:13 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin [2009-11-07 04:19:46 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin [2008-12-16 23:27:09 | 000,000,145 | ---- | C] () -- C:\Windows\BRVIDEO.INI [2008-12-16 23:27:09 | 000,000,023 | ---- | C] () -- C:\Windows\Brownie.ini [2008-12-16 23:27:09 | 000,000,000 | ---- | C] () -- C:\Windows\brmx2001.ini [2008-12-16 23:27:02 | 000,000,114 | ---- | C] () -- C:\Windows\System32\brlmw03a.ini [2008-12-16 23:27:01 | 000,008,981 | ---- | C] () -- C:\Windows\HL-2030.INI [2008-12-16 23:25:16 | 000,000,411 | ---- | C] () -- C:\Windows\BRWMARK.INI [2008-12-16 23:25:16 | 000,000,034 | ---- | C] () -- C:\Windows\System32\BD2030.DAT [2008-10-31 10:46:03 | 008,046,112 | -HS- | C] () -- C:\Windows\System32\drivers\fidbox.dat [2008-10-31 10:46:03 | 001,589,280 | -HS- | C] () -- C:\Windows\System32\drivers\fidbox2.dat [2007-12-12 12:54:15 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2007-11-19 17:26:06 | 000,000,032 | ---- | C] () -- C:\ProgramData\ezsid.dat [2007-11-06 23:13:00 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI [2007-11-05 19:24:15 | 000,000,012 | ---- | C] () -- C:\Windows\bthservsdp.dat [2007-06-02 10:28:35 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ1.dat [2007-06-02 10:28:35 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ0.dat [2007-06-02 10:23:23 | 000,106,425 | ---- | C] () -- C:\Windows\hpqins13.dat [2007-02-27 22:43:02 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini [2006-12-13 23:01:36 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll [2006-12-13 23:01:36 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll [2006-12-05 07:22:07 | 000,332,832 | ---- | C] () -- C:\Windows\System32\perfi015.dat [2006-12-05 07:22:06 | 000,672,140 | ---- | C] () -- C:\Windows\System32\perfh015.dat [2006-12-05 07:22:06 | 000,130,516 | ---- | C] () -- C:\Windows\System32\perfc015.dat [2006-12-05 07:22:06 | 000,037,468 | ---- | C] () -- C:\Windows\System32\perfd015.dat [2006-11-02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2006-11-02 14:47:37 | 000,349,112 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2006-11-02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006-11-02 12:33:01 | 000,595,996 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2006-11-02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2006-11-02 12:33:01 | 000,104,070 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2006-11-02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2006-11-02 12:25:21 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll [2006-11-02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2006-11-02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2006-11-02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2006-11-02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006-11-02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat [2006-03-10 02:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [2005-04-03 22:30:00 | 000,110,592 | R--- | C] () -- C:\Windows\System32\scardsyn.dll [2002-03-21 15:39:02 | 000,073,728 | R--- | C] () -- C:\Windows\System32\UNACEV2.DLL [2002-03-21 13:51:52 | 000,503,808 | R--- | C] () -- C:\Windows\System32\lt_xtrans.dll [2002-03-21 13:51:52 | 000,286,720 | R--- | C] () -- C:\Windows\System32\MrSIDD.dll [2002-03-21 13:51:52 | 000,163,840 | R--- | C] () -- C:\Windows\System32\lt_common.dll [2002-03-21 13:51:52 | 000,126,976 | R--- | C] () -- C:\Windows\System32\lt_trans.dll [2002-03-21 13:51:52 | 000,069,632 | R--- | C] () -- C:\Windows\System32\lt_meta.dll [2002-03-21 13:51:52 | 000,053,248 | R--- | C] () -- C:\Windows\System32\lt_encrypt.dll [2002-03-21 13:51:52 | 000,020,480 | R--- | C] () -- C:\Windows\System32\lt_messagetext.dll [2002-03-20 22:01:06 | 000,006,688 | R--- | C] () -- C:\Windows\System32\Digita.sys [2002-03-20 22:00:20 | 000,049,152 | R--- | C] () -- C:\Windows\System32\TransportUSB.dll [2002-03-20 22:00:20 | 000,049,152 | R--- | C] () -- C:\Windows\System32\TransportSerial.dll [2002-03-20 22:00:20 | 000,049,152 | R--- | C] () -- C:\Windows\System32\TransportIrDA.dll [2002-03-20 22:00:20 | 000,049,152 | R--- | C] () -- C:\Windows\System32\TransportIrCOMM.dll [1998-05-07 03:10:00 | 000,069,632 | R--- | C] () -- C:\Windows\System32\ODMA32.dll [color=#E56717]========== LOP Check ==========[/color] [2008-06-08 14:42:55 | 000,000,000 | ---D | M] -- C:\Users\adam\AppData\Roaming\ACD Systems [2007-12-12 14:44:56 | 000,000,000 | ---D | M] -- C:\Users\adam\AppData\Roaming\Gadu-Gadu [2011-01-13 12:03:47 | 000,000,000 | ---D | M] -- C:\Users\adam\AppData\Roaming\Gadu-Gadu 10 [2010-02-05 18:34:45 | 000,000,000 | ---D | M] -- C:\Users\adam\AppData\Roaming\MusicNet [2010-04-14 14:57:50 | 000,000,000 | ---D | M] -- C:\Users\adam\AppData\Roaming\Nowe Gadu-Gadu [2009-07-26 18:40:50 | 000,000,000 | ---D | M] -- C:\Users\adam\AppData\Roaming\OpenFM [2011-04-20 09:22:57 | 000,000,000 | ---D | M] -- C:\Users\adam\AppData\Roaming\Template [2007-12-12 12:54:14 | 000,000,000 | ---D | M] -- C:\Users\adam\AppData\Roaming\Thunderbird [2011-04-20 15:04:01 | 000,032,612 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2010-12-17 18:57:21 | 000,000,416 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{886EB24C-FC4F-4EFA-8479-5A2ED15BA4BF}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:DFC5A2B2 < End of report >