Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2014 01 Ran by Agnieszka (administrator) on IDEA-PC on 15-07-2014 15:43:50 Running from C:\Users\Agnieszka\Downloads Platform: Windows 8 (X64) OS Language: Polski (Polska) Internet Explorer Version 10 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyConfigTDPService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Lenovo) C:\ProgramData\YogaSmartSwicth\Server\x64\ymc.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe (Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe (Lenovo) C:\Program Files (x86)\Lenovo\Lenovo Transition\Lenovo Transition.exe () C:\ProgramData\YogaSmartSwicth\yogaserver.exe (Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe () C:\Program Files (x86)\Lenovo\MotionControl\MotionControl.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE (CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 2.4\program\soffice.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McUICnt.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 2.4\program\soffice.bin ==================== Registry (Whitelisted) ================== HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [27024 2012-12-18] (Intel Corporation) HKLM\...\Run: [SynLenovoGestureMgr] => C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [677104 2013-04-04] (Synaptics) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [893176 2012-12-13] (Conexant Systems, Inc.) HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] () HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.) HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [459776 2013-01-28] (Realtek Semiconductor Corporation) HKLM\...\Run: [Lenovo Transition] => C:\Program Files (x86)\Lenovo\Lenovo Transition\Lenovo Transition.exe [209488 2013-06-22] (Lenovo) HKLM\...\Run: [yogaserver] => C:\ProgramData\YogaSmartSwicth\yogaserver.exe [209416 2013-06-22] () HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17080376 2013-06-22] (Lenovo (Beijing) Limited) HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191544 2013-06-22] (Lenovo(beijing) Limited) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-01] (Intel Corporation) HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [548864 2012-12-17] (Vimicro) HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-30] (CyberLink Corp.) HKLM-x32\...\Run: [mcui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.) HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation) HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-2941432195-3992435817-2113462977-1001\...\Run: [Facebook Update] => C:\Users\Agnieszka\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-07-09] (Facebook Inc.) Startup: C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 2.4.lnk ShortcutTarget: OpenOffice.org 2.4.lnk -> C:\Program Files (x86)\OpenOffice.org 2.4\program\quickstart.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Motion Control.lnk ShortcutTarget: Motion Control.lnk -> C:\Program Files (x86)\Lenovo\MotionControl\MotionControl.exe () ShellIconOverlayIdentifiers: SugarSyncBackedUp -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File ShellIconOverlayIdentifiers: SugarSyncPending -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File ShellIconOverlayIdentifiers: SugarSyncRoot -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File ShellIconOverlayIdentifiers: SugarSyncShared -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM - {C35249A0-B34F-44CD-B17A-C545F20DE54D} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALNJS SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKLM-x32 - {C35249A0-B34F-44CD-B17A-C545F20DE54D} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALNJS SearchScopes: HKCU - {C35249A0-B34F-44CD-B17A-C545F20DE54D} URL = BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Adblock Plus) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll (Adblock Plus) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.) Winsock: Catalog5 08 C:\WINDOWS\SysWOW64\wlidNSP.dll [46592] (Microsoft Corporation) Winsock: Catalog5 09 C:\WINDOWS\SysWOW64\wlidNSP.dll [46592] (Microsoft Corporation) Winsock: Catalog5-x64 08 C:\WINDOWS\system32\wlidnsp.dll [71168] (Microsoft Corporation) Winsock: Catalog5-x64 09 C:\WINDOWS\system32\wlidnsp.dll [71168] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Agnieszka\AppData\Roaming\Mozilla\Firefox\Profiles\stwkx5tv.default FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Agnieszka\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Extension: Adblock Plus - C:\Users\Agnieszka\AppData\Roaming\Mozilla\Firefox\Profiles\stwkx5tv.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-14] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2013-06-22] Chrome: ======= CHR HomePage: CHR StartupUrls: "hxxp://poczta.wp.pl/d695/index.html?flg=1#", "hxxp://www.gazeta.pl/0,0.html?p=180&d=20140618" CHR Extension: (No Name) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ainbkicbloikcngphmjfpjdemblcojdd [2014-06-18] CHR Extension: (Dokumenty Google) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-18] CHR Extension: (Dysk Google) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-18] CHR Extension: ( Dane z rynku online.) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbammnkkbofnjbknhfgjbohakhimoeab [2014-06-18] CHR Extension: (YouTube) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-18] CHR Extension: (Adblock Plus) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-06-18] CHR Extension: (PlusHD-V1.9) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\chhjbpecpncaggjpdakmflnfcopglcmi [2014-07-04] CHR Extension: (Adblock dla serwisu Youtube™) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2014-06-18] CHR Extension: (Szukaj w Google) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-18] CHR Extension: (AdBlock Premium) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2014-06-18] CHR Extension: (AdBlock) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-06-18] CHR Extension: (No Name) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\icoloanbecehinobmflpeglknkplbfbm [2014-06-18] CHR Extension: (Adblock Super) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\knebimhcckndhiglamoabbnifdkijidd [2014-06-18] CHR Extension: (Google Wallet) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-18] CHR Extension: (Adblock Pro) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifcklkibdehekfnmflempfgjhbedch [2014-06-18] CHR Extension: (No Name) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma [2014-06-18] CHR Extension: (Gmail) - C:\Users\Agnieszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-18] ==================== Services (Whitelisted) ================= R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [41984 2013-03-13] () [File not signed] R2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [31632 2012-12-18] (Intel Corporation) R2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [33168 2012-12-18] (Intel Corporation) R2 DptfPolicyLpmService; C:\Windows\system32\DptfPolicyLpmService.exe [39824 2012-12-18] (Intel Corporation) U2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-09-18] (Intel Corporation) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.) S3 McAWFwk; c:\Program Files\mcafee\msc\McAWFwk.exe [332080 2012-01-26] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S2 McNaiAnn; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.) S2 McOobeSv; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [200728 2012-05-11] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-03-18] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-04-03] (McAfee, Inc.) R2 mfevtp; C:\WINDOWS\system32\mfevtps.exe [189912 2014-04-03] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-06-23] (Microsoft Corporation) R2 ymc; C:\ProgramData\YogaSmartSwicth\Server\x64\ymc.exe [27216 2013-06-22] (Lenovo) ==================== Drivers (Whitelisted) ==================== S3 AX88772; C:\Windows\system32\DRIVERS\ax88772.sys [104960 2012-07-07] (ASIX Electronics Corp.) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-04-03] (McAfee, Inc.) R3 DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [97680 2012-12-18] (Intel Corporation) R3 DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [229776 2012-12-18] (Intel Corporation) R3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [363920 2012-12-18] (Intel Corporation) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [177544 2014-04-03] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311856 2014-04-03] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69352 2014-04-03] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [522360 2014-04-03] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [784760 2014-04-03] (McAfee, Inc.) R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [441264 2014-03-18] (McAfee, Inc.) S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96592 2014-03-18] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [346760 2014-04-03] (McAfee, Inc.) R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [696976 2012-09-06] (Realtek Semiconductor Corporation) R3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [1584200 2013-03-25] (Realtek Semiconductor Corporation ) R3 SensorsAlsDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) R3 SensorsHIDClassDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) R3 SensorsServiceDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-04-04] (Synaptics Incorporated) R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1044736 2013-01-08] (Vimicro Corporation) S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) R1 {57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64; C:\Windows\System32\drivers\{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64.sys [61112 2014-06-28] (StdLib) R1 {6fcd6092-9615-4f7f-8898-8df53980e5d2}w64; C:\Windows\System32\drivers\{6fcd6092-9615-4f7f-8898-8df53980e5d2}w64.sys [61112 2014-06-30] (StdLib) R1 {a3f28269-ad17-41a8-b032-3e0313ef8979}w64; C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys [61120 2014-06-20] (StdLib) S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S4 sptd; \SystemRoot\System32\Drivers\sptd.sys [X] S1 {a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64; system32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-15 15:43 - 2014-07-15 15:43 - 00019281 _____ () C:\Users\Agnieszka\Downloads\FRST.txt 2014-07-15 15:14 - 2014-07-15 15:14 - 00018727 _____ () C:\Users\Agnieszka\Desktop\AdwCleaner[R0].txt 2014-07-15 15:13 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll 2014-07-15 15:12 - 2014-07-15 15:35 - 00000000 ____D () C:\AdwCleaner 2014-07-15 15:12 - 2014-07-15 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2014-07-15 15:10 - 2014-07-15 15:10 - 01348263 _____ () C:\Users\Agnieszka\Downloads\adwcleaner_3.215.exe 2014-07-15 13:43 - 2014-07-15 13:43 - 00006077 _____ () C:\Users\Agnieszka\Desktop\GMER.txt 2014-07-15 13:40 - 2014-07-15 13:40 - 00057206 _____ () C:\Users\Agnieszka\Downloads\Extras.Txt 2014-07-15 13:39 - 2014-07-15 13:39 - 00005579 _____ () C:\Users\Agnieszka\Desktop\gmer2.log 2014-07-15 13:38 - 2014-07-15 13:38 - 00168962 _____ () C:\Users\Agnieszka\Downloads\OTL.Txt 2014-07-15 13:16 - 2014-07-15 13:16 - 00006077 _____ () C:\Users\Agnieszka\Desktop\GMER.log 2014-07-15 13:02 - 2014-07-15 13:02 - 00380416 _____ () C:\Users\Agnieszka\Downloads\7dqeosck.exe 2014-07-15 12:59 - 2014-07-15 12:59 - 00602112 _____ (OldTimer Tools) C:\Users\Agnieszka\Downloads\OTL.exe 2014-07-15 12:30 - 2014-07-15 12:30 - 00034126 _____ () C:\Users\Agnieszka\Desktop\Shortcut.txt 2014-07-15 12:29 - 2014-07-15 12:30 - 00026627 _____ () C:\Users\Agnieszka\Desktop\Addition.txt 2014-07-15 12:28 - 2014-07-15 15:43 - 00000000 ____D () C:\FRST 2014-07-15 12:28 - 2014-07-15 12:30 - 00074092 _____ () C:\Users\Agnieszka\Desktop\FRST.txt 2014-07-15 12:27 - 2014-07-15 12:27 - 02086912 _____ (Farbar) C:\Users\Agnieszka\Downloads\FRST64.exe 2014-07-15 12:12 - 2014-07-15 12:12 - 00623224 _____ (Duplex Secure Ltd.) C:\Users\Agnieszka\Downloads\SPTDinst-v186-x64.exe 2014-07-15 12:12 - 2014-07-15 12:12 - 00522360 _____ (Duplex Secure Ltd.) C:\Users\Agnieszka\Downloads\SPTDinst-v186-x86.exe 2014-07-15 11:13 - 2014-07-15 15:42 - 00001136 _____ () C:\WINDOWS\PFRO.log 2014-07-15 11:09 - 2014-07-15 11:09 - 00441592 _____ (Bleeping Computer, LLC) C:\Users\Agnieszka\Downloads\sc-cleaner.exe 2014-07-14 21:17 - 2014-07-15 15:08 - 00000000 ____D () C:\WINDOWS\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-07-14 21:17 - 2014-07-14 21:17 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-07-14 21:14 - 2014-07-14 21:14 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Agnieszka\Downloads\SpyHunter-Installer.exe 2014-07-12 18:42 - 2014-07-14 22:34 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (4) 2014-07-11 21:14 - 2014-07-15 15:14 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-07-11 21:14 - 2014-07-11 21:14 - 00003818 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-07-11 21:14 - 2014-07-11 21:14 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Macromedia 2014-07-11 21:00 - 2014-07-11 21:01 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Mozilla 2014-07-11 21:00 - 2014-07-11 21:01 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Mozilla 2014-07-11 21:00 - 2014-07-11 21:00 - 00001174 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-07-11 21:00 - 2014-07-11 21:00 - 00001162 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-07-11 21:00 - 2014-07-11 21:00 - 00000000 ____D () C:\ProgramData\Mozilla 2014-07-11 21:00 - 2014-07-11 21:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-10 21:51 - 2014-07-10 22:42 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (2) 2014-07-09 13:00 - 2014-07-15 14:02 - 00000960 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2941432195-3992435817-2113462977-1001UA.job 2014-07-09 13:00 - 2014-07-15 14:02 - 00000938 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2941432195-3992435817-2113462977-1001Core.job 2014-07-09 13:00 - 2014-07-09 13:57 - 00003816 _____ () C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2941432195-3992435817-2113462977-1001UA 2014-07-09 13:00 - 2014-07-09 13:57 - 00003466 _____ () C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2941432195-3992435817-2113462977-1001Core 2014-07-09 13:00 - 2014-07-09 13:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Facebook 2014-07-08 23:58 - 2014-07-15 15:42 - 00563450 _____ () C:\WINDOWS\WindowsUpdate.log 2014-07-08 22:58 - 2014-07-08 22:58 - 00000000 ____D () C:\Program Files\Adblock Plus for IE 2014-07-08 22:54 - 2014-07-08 22:54 - 00000000 ____D () C:\ProgramData\F-Secure 2014-07-08 22:53 - 2014-07-08 22:54 - 05123440 _____ (F-Secure Corporation) C:\Users\Agnieszka\Downloads\F-SecureOnlineScanner.exe 2014-07-08 21:50 - 2014-07-08 21:50 - 00007824 _____ () C:\Users\Agnieszka\Documents\cc_20140708_215008.reg 2014-07-08 21:50 - 2014-07-08 21:50 - 00000376 _____ () C:\Users\Agnieszka\Documents\cc_20140708_215038.reg 2014-07-08 21:49 - 2014-07-08 21:49 - 00054234 _____ () C:\Users\Agnieszka\Documents\cc_20140708_214945.reg 2014-07-08 21:35 - 2014-07-08 21:35 - 00488141 _____ () C:\Users\Agnieszka\Downloads\extension_1_7_4.crx 2014-07-06 08:18 - 2014-05-20 04:33 - 00059416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-07-06 08:18 - 2014-05-20 01:45 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2014-07-06 08:18 - 2014-05-20 01:45 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2014-07-06 08:18 - 2014-05-20 01:24 - 03286528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-07-06 08:18 - 2014-05-20 01:24 - 01623040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-07-06 08:18 - 2014-05-20 01:24 - 00773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-07-06 08:18 - 2014-05-20 01:24 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-07-06 08:18 - 2014-05-20 01:24 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-07-06 08:18 - 2014-05-20 01:24 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-07-06 08:18 - 2013-08-16 07:21 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-07-06 08:18 - 2013-08-16 07:21 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2014-07-06 08:18 - 2013-08-16 00:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2014-07-06 08:17 - 2014-05-15 00:43 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-07-06 08:17 - 2014-05-15 00:43 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-07-06 08:17 - 2014-05-15 00:42 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2014-07-06 08:17 - 2014-05-15 00:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2014-07-05 21:01 - 2014-07-15 15:43 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\OpenOffice.org2 2014-07-05 20:57 - 2014-07-05 20:57 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 2.4 2014-07-05 20:56 - 2014-07-05 20:56 - 00000000 ____D () C:\Program Files (x86)\OpenOffice.org 2.4 2014-07-05 20:46 - 2014-07-05 20:46 - 119455511 _____ () C:\Users\Agnieszka\Downloads\OOo_2.4.2_Win32Intel_install_pl(dobreprogramy.pl).exe 2014-07-02 19:39 - 2014-07-09 15:36 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (11) 2014-07-01 17:19 - 2014-07-12 19:45 - 00000000 ____D () C:\Program Files (x86)\PlusHD-V1.9 2014-06-30 22:08 - 2014-06-30 10:51 - 00061112 _____ (StdLib) C:\WINDOWS\system32\Drivers\{6fcd6092-9615-4f7f-8898-8df53980e5d2}w64.sys 2014-06-29 21:37 - 2014-06-29 21:37 - 04812672 _____ (Piriform Ltd) C:\Users\Agnieszka\Downloads\ccsetup415.exe 2014-06-29 21:37 - 2014-06-29 21:37 - 00002780 _____ () C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2014-06-29 21:37 - 2014-06-29 21:37 - 00000833 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-06-29 21:37 - 2014-06-29 21:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-06-29 21:37 - 2014-06-29 21:37 - 00000000 ____D () C:\Program Files\CCleaner 2014-06-29 19:33 - 2014-06-29 19:48 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\PhotoFiltre 7 2014-06-29 19:33 - 2014-06-29 19:33 - 00001077 _____ () C:\Users\Agnieszka\Desktop\PhotoFiltre 7.lnk 2014-06-29 19:33 - 2014-06-29 19:33 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 2014-06-29 19:33 - 2014-06-29 19:33 - 00000000 ____D () C:\Program Files (x86)\PhotoFiltre 7 2014-06-29 19:20 - 2014-06-29 19:20 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\PriceMeter Express 2014-06-29 19:17 - 2014-06-29 19:17 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PricéMetér 2014-06-29 19:17 - 2014-06-29 19:17 - 00000000 ____D () C:\Program Files\PhotoFiltre 2014-06-29 18:35 - 2014-06-28 22:10 - 00061112 _____ (StdLib) C:\WINDOWS\system32\Drivers\{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64.sys 2014-06-29 17:23 - 2014-06-29 17:24 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (10) 2014-06-29 17:20 - 2014-06-29 19:33 - 00001077 _____ () C:\Users\Administrator\Desktop\PhotoFiltre 7.lnk 2014-06-29 17:20 - 2014-06-29 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 2014-06-29 14:51 - 2014-06-29 14:51 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (9) 2014-06-26 20:57 - 2014-07-01 14:59 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (8) 2014-06-23 23:28 - 2014-06-23 23:43 - 00000000 ____D () C:\Users\Agnieszka\Desktop\muzyka Marek 2014-06-23 20:51 - 2014-06-23 22:19 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (7) 2014-06-21 08:57 - 2014-06-20 15:28 - 00061120 _____ (StdLib) C:\WINDOWS\system32\Drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys 2014-06-19 20:33 - 2014-06-19 20:33 - 00001111 _____ () C:\Users\Administrator\Desktop\PhotoFiltre Studio X.lnk 2014-06-19 20:33 - 2014-06-19 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X 2014-06-18 21:14 - 2014-07-15 12:39 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\ObviousIdea 2014-06-18 21:13 - 2014-06-18 21:13 - 00001211 _____ () C:\Users\Agnieszka\Desktop\Light Image Resizer 4.lnk 2014-06-18 21:13 - 2014-06-18 21:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea 2014-06-18 21:13 - 2014-06-18 21:13 - 00000000 ____D () C:\Program Files (x86)\ObviousIdea 2014-06-18 21:12 - 2014-06-18 21:11 - 07073536 _____ (ObviousIdea ) C:\Users\Agnieszka\Downloads\light_image_resizer4_setup_4.6.3.0.exe 2014-06-18 20:58 - 2014-06-22 00:15 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (5) 2014-06-18 20:54 - 2014-06-18 20:54 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2014-06-18 12:52 - 2014-07-15 12:44 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2941432195-3992435817-2113462977-1001 2014-06-18 12:46 - 2014-07-15 15:42 - 00001066 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-18 12:46 - 2014-07-15 14:51 - 00001070 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-18 12:46 - 2014-06-18 12:46 - 00004042 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-18 12:46 - 2014-06-18 12:46 - 00003806 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-18 12:46 - 2014-06-18 12:46 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Google 2014-06-18 12:46 - 2014-06-18 12:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-06-18 12:46 - 2014-06-18 12:46 - 00000000 ____D () C:\Program Files (x86)\Google 2014-06-18 12:45 - 2014-06-18 12:46 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Deployment 2014-06-18 12:45 - 2014-06-18 12:45 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Apps\2.0 2014-06-18 12:39 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\HipShieldK.sys 2014-06-18 12:29 - 2014-07-15 15:32 - 01503348 _____ () C:\Users\Public\CAFADEBUG.log 2014-06-18 08:37 - 2014-06-18 12:59 - 00000000 ____D () C:\Windows.old 2014-06-18 08:37 - 2014-06-18 08:37 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-06-17 23:02 - 2014-06-17 23:02 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Intel Corporation 2014-06-17 23:01 - 2014-06-17 23:01 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\MotionControl 2014-06-17 23:00 - 2014-06-23 20:55 - 00010776 _____ () C:\Users\Agnieszka\AppData\Roaming\AbsoluteReminder.xml 2014-06-17 23:00 - 2014-06-17 23:00 - 00001453 _____ () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-06-17 23:00 - 2014-06-17 23:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Macromedia 2014-06-17 23:00 - 2014-06-17 23:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Adobe 2014-06-17 23:00 - 2014-06-17 23:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Absolute_Software 2014-06-17 22:59 - 2014-07-15 15:42 - 00084135 _____ () C:\Users\Agnieszka\AppData\Local\BTServer.log 2014-06-17 22:59 - 2014-06-29 19:19 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\VirtualStore 2014-06-17 22:59 - 2014-06-17 22:59 - 00000020 ___SH () C:\Users\Agnieszka\ntuser.ini 2014-06-17 22:38 - 2014-06-17 22:38 - 00000829 _____ () C:\Users\Administrator\AppData\Local\Application.xml 2014-06-17 22:37 - 2014-06-23 22:12 - 00000000 ____D () C:\Users\Agnieszka 2014-06-17 22:37 - 2014-06-17 22:38 - 00017148 _____ () C:\WINDOWS\diagwrn.xml 2014-06-17 22:37 - 2014-06-17 22:38 - 00017148 _____ () C:\WINDOWS\diagerr.xml 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Public\Documents\Moje wideo 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Public\Documents\Moje obrazy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Public\Documents\Moja muzyka 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Ustawienia lokalne 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Szablony 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Moje dokumenty 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Menu Start 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Documents\Moje wideo 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Documents\Moje obrazy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Documents\Moja muzyka 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Historia 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje wideo 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje obrazy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Moja muzyka 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Historia 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Ustawienia lokalne 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Szablony 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Moje dokumenty 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Menu Start 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Documents\Moje wideo 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Documents\Moje obrazy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Documents\Moja muzyka 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\AppData\Local\Historia 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\AppData\Local\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Szablony 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Pulpit 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Menu Start 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Dokumenty 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Dane aplikacji 2014-06-17 22:37 - 2013-06-23 04:17 - 00000000 ___RD () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-17 22:37 - 2012-07-26 10:13 - 00000000 ___RD () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-17 22:37 - 2012-07-26 10:13 - 00000000 ___RD () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-06-17 22:37 - 2012-07-26 10:13 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-06-17 22:29 - 2014-06-18 12:56 - 00000000 ___HD () C:\$SysReset 2014-06-17 21:20 - 2014-06-17 21:20 - 00819144 _____ (Google Inc.) C:\Users\Agnieszka\Downloads\37.0.2031.2_chrome_installer.exe ==================== One Month Modified Files and Folders ======= 2014-07-15 15:45 - 2014-07-15 15:43 - 00019281 _____ () C:\Users\Agnieszka\Downloads\FRST.txt 2014-07-15 15:44 - 2014-07-08 23:58 - 00563450 _____ () C:\WINDOWS\WindowsUpdate.log 2014-07-15 15:43 - 2014-07-15 12:28 - 00000000 ____D () C:\FRST 2014-07-15 15:43 - 2014-07-05 21:01 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\OpenOffice.org2 2014-07-15 15:42 - 2014-07-15 11:13 - 00001136 _____ () C:\WINDOWS\PFRO.log 2014-07-15 15:42 - 2014-06-18 12:46 - 00001066 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-07-15 15:42 - 2014-06-17 22:59 - 00084135 _____ () C:\Users\Agnieszka\AppData\Local\BTServer.log 2014-07-15 15:42 - 2013-06-22 18:34 - 00000000 ____D () C:\ProgramData\Realtek 2014-07-15 15:42 - 2012-07-26 09:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-07-15 15:35 - 2014-07-15 15:12 - 00000000 ____D () C:\AdwCleaner 2014-07-15 15:32 - 2014-06-18 12:29 - 01503348 _____ () C:\Users\Public\CAFADEBUG.log 2014-07-15 15:14 - 2014-07-15 15:14 - 00018727 _____ () C:\Users\Agnieszka\Desktop\AdwCleaner[R0].txt 2014-07-15 15:14 - 2014-07-11 21:14 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-07-15 15:14 - 2013-06-23 04:09 - 00801642 _____ () C:\WINDOWS\system32\perfh015.dat 2014-07-15 15:14 - 2013-06-23 04:09 - 00162428 _____ () C:\WINDOWS\system32\perfc015.dat 2014-07-15 15:14 - 2012-07-26 09:28 - 01796820 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-07-15 15:12 - 2014-07-15 15:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2014-07-15 15:10 - 2014-07-15 15:10 - 01348263 _____ () C:\Users\Agnieszka\Downloads\adwcleaner_3.215.exe 2014-07-15 15:08 - 2014-07-14 21:17 - 00000000 ____D () C:\WINDOWS\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-07-15 15:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-07-15 14:51 - 2014-06-18 12:46 - 00001070 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-15 14:02 - 2014-07-09 13:00 - 00000960 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2941432195-3992435817-2113462977-1001UA.job 2014-07-15 14:02 - 2014-07-09 13:00 - 00000938 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2941432195-3992435817-2113462977-1001Core.job 2014-07-15 13:43 - 2014-07-15 13:43 - 00006077 _____ () C:\Users\Agnieszka\Desktop\GMER.txt 2014-07-15 13:40 - 2014-07-15 13:40 - 00057206 _____ () C:\Users\Agnieszka\Downloads\Extras.Txt 2014-07-15 13:39 - 2014-07-15 13:39 - 00005579 _____ () C:\Users\Agnieszka\Desktop\gmer2.log 2014-07-15 13:38 - 2014-07-15 13:38 - 00168962 _____ () C:\Users\Agnieszka\Downloads\OTL.Txt 2014-07-15 13:16 - 2014-07-15 13:16 - 00006077 _____ () C:\Users\Agnieszka\Desktop\GMER.log 2014-07-15 13:02 - 2014-07-15 13:02 - 00380416 _____ () C:\Users\Agnieszka\Downloads\7dqeosck.exe 2014-07-15 12:59 - 2014-07-15 12:59 - 00602112 _____ (OldTimer Tools) C:\Users\Agnieszka\Downloads\OTL.exe 2014-07-15 12:44 - 2014-06-18 12:52 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2941432195-3992435817-2113462977-1001 2014-07-15 12:39 - 2014-06-18 21:14 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\ObviousIdea 2014-07-15 12:30 - 2014-07-15 12:30 - 00034126 _____ () C:\Users\Agnieszka\Desktop\Shortcut.txt 2014-07-15 12:30 - 2014-07-15 12:29 - 00026627 _____ () C:\Users\Agnieszka\Desktop\Addition.txt 2014-07-15 12:30 - 2014-07-15 12:28 - 00074092 _____ () C:\Users\Agnieszka\Desktop\FRST.txt 2014-07-15 12:27 - 2014-07-15 12:27 - 02086912 _____ (Farbar) C:\Users\Agnieszka\Downloads\FRST64.exe 2014-07-15 12:14 - 2012-07-26 07:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-07-15 12:12 - 2014-07-15 12:12 - 00623224 _____ (Duplex Secure Ltd.) C:\Users\Agnieszka\Downloads\SPTDinst-v186-x64.exe 2014-07-15 12:12 - 2014-07-15 12:12 - 00522360 _____ (Duplex Secure Ltd.) C:\Users\Agnieszka\Downloads\SPTDinst-v186-x86.exe 2014-07-15 11:09 - 2014-07-15 11:09 - 00441592 _____ (Bleeping Computer, LLC) C:\Users\Agnieszka\Downloads\sc-cleaner.exe 2014-07-15 10:42 - 2012-07-26 07:26 - 00000194 _____ () C:\WINDOWS\win.ini 2014-07-14 22:34 - 2014-07-12 18:42 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (4) 2014-07-14 22:33 - 2014-06-04 19:20 - 00000000 ___RD () C:\Users\Agnieszka\Desktop\odchudzanie 2014-07-14 21:17 - 2014-07-14 21:17 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-07-14 21:14 - 2014-07-14 21:14 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Agnieszka\Downloads\SpyHunter-Installer.exe 2014-07-12 19:46 - 2014-05-26 19:26 - 00000000 ____D () C:\temp 2014-07-12 19:45 - 2014-07-01 17:19 - 00000000 ____D () C:\Program Files (x86)\PlusHD-V1.9 2014-07-11 21:14 - 2014-07-11 21:14 - 00003818 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-07-11 21:14 - 2014-07-11 21:14 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Macromedia 2014-07-11 21:01 - 2014-07-11 21:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Mozilla 2014-07-11 21:01 - 2014-07-11 21:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Mozilla 2014-07-11 21:00 - 2014-07-11 21:00 - 00001174 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-07-11 21:00 - 2014-07-11 21:00 - 00001162 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-07-11 21:00 - 2014-07-11 21:00 - 00000000 ____D () C:\ProgramData\Mozilla 2014-07-11 21:00 - 2014-07-11 21:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-11 11:37 - 2012-07-26 07:26 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-07-10 22:42 - 2014-07-10 21:51 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (2) 2014-07-10 20:36 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\rescache 2014-07-10 12:24 - 2013-06-22 18:18 - 00298128 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-07-10 12:24 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-07-09 23:31 - 2014-06-11 17:59 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Muzyka 2014-07-09 22:59 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-07-09 15:36 - 2014-07-02 19:39 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (11) 2014-07-09 13:57 - 2014-07-09 13:00 - 00003816 _____ () C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2941432195-3992435817-2113462977-1001UA 2014-07-09 13:57 - 2014-07-09 13:00 - 00003466 _____ () C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2941432195-3992435817-2113462977-1001Core 2014-07-09 13:00 - 2014-07-09 13:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Facebook 2014-07-08 22:58 - 2014-07-08 22:58 - 00000000 ____D () C:\Program Files\Adblock Plus for IE 2014-07-08 22:58 - 2013-06-22 18:35 - 00000000 ____D () C:\ProgramData\Package Cache 2014-07-08 22:54 - 2014-07-08 22:54 - 00000000 ____D () C:\ProgramData\F-Secure 2014-07-08 22:54 - 2014-07-08 22:53 - 05123440 _____ (F-Secure Corporation) C:\Users\Agnieszka\Downloads\F-SecureOnlineScanner.exe 2014-07-08 21:50 - 2014-07-08 21:50 - 00007824 _____ () C:\Users\Agnieszka\Documents\cc_20140708_215008.reg 2014-07-08 21:50 - 2014-07-08 21:50 - 00000376 _____ () C:\Users\Agnieszka\Documents\cc_20140708_215038.reg 2014-07-08 21:49 - 2014-07-08 21:49 - 00054234 _____ () C:\Users\Agnieszka\Documents\cc_20140708_214945.reg 2014-07-08 21:35 - 2014-07-08 21:35 - 00488141 _____ () C:\Users\Agnieszka\Downloads\extension_1_7_4.crx 2014-07-05 20:57 - 2014-07-05 20:57 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 2.4 2014-07-05 20:56 - 2014-07-05 20:56 - 00000000 ____D () C:\Program Files (x86)\OpenOffice.org 2.4 2014-07-05 20:46 - 2014-07-05 20:46 - 119455511 _____ () C:\Users\Agnieszka\Downloads\OOo_2.4.2_Win32Intel_install_pl(dobreprogramy.pl).exe 2014-07-01 14:59 - 2014-06-26 20:57 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (8) 2014-06-30 14:07 - 2014-05-25 22:19 - 00000124 _____ () C:\Users\Agnieszka\Desktop\Nowy dokument tekstowy.txt 2014-06-30 10:51 - 2014-06-30 22:08 - 00061112 _____ (StdLib) C:\WINDOWS\system32\Drivers\{6fcd6092-9615-4f7f-8898-8df53980e5d2}w64.sys 2014-06-29 21:38 - 2013-03-26 00:01 - 00000000 ____D () C:\WINDOWS\Panther 2014-06-29 21:37 - 2014-06-29 21:37 - 04812672 _____ (Piriform Ltd) C:\Users\Agnieszka\Downloads\ccsetup415.exe 2014-06-29 21:37 - 2014-06-29 21:37 - 00002780 _____ () C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2014-06-29 21:37 - 2014-06-29 21:37 - 00000833 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-06-29 21:37 - 2014-06-29 21:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-06-29 21:37 - 2014-06-29 21:37 - 00000000 ____D () C:\Program Files\CCleaner 2014-06-29 19:48 - 2014-06-29 19:33 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\PhotoFiltre 7 2014-06-29 19:33 - 2014-06-29 19:33 - 00001077 _____ () C:\Users\Agnieszka\Desktop\PhotoFiltre 7.lnk 2014-06-29 19:33 - 2014-06-29 19:33 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 2014-06-29 19:33 - 2014-06-29 19:33 - 00000000 ____D () C:\Program Files (x86)\PhotoFiltre 7 2014-06-29 19:33 - 2014-06-29 17:20 - 00001077 _____ () C:\Users\Administrator\Desktop\PhotoFiltre 7.lnk 2014-06-29 19:20 - 2014-06-29 19:20 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\PriceMeter Express 2014-06-29 19:19 - 2014-06-17 22:59 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\VirtualStore 2014-06-29 19:18 - 2014-05-26 19:15 - 00070924 _____ () C:\Users\Agnieszka\Downloads\PhotoFiltre PL 6.3.1 [1].exe 2014-06-29 19:17 - 2014-06-29 19:17 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PricéMetér 2014-06-29 19:17 - 2014-06-29 19:17 - 00000000 ____D () C:\Program Files\PhotoFiltre 2014-06-29 17:24 - 2014-06-29 17:23 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (10) 2014-06-29 17:20 - 2014-06-29 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 2014-06-29 14:51 - 2014-06-29 14:51 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (9) 2014-06-28 22:10 - 2014-06-29 18:35 - 00061112 _____ (StdLib) C:\WINDOWS\system32\Drivers\{57f143ae-1ecd-493d-9ddb-32c45a3cecd5}w64.sys 2014-06-28 17:31 - 2014-05-22 22:43 - 00000000 ____D () C:\Users\Agnieszka\Documents\My Bluetooth 2014-06-27 14:17 - 2013-06-22 18:44 - 00000000 ____D () C:\ProgramData\McAfee 2014-06-26 22:37 - 2013-06-22 18:44 - 00000000 ____D () C:\Program Files (x86)\McAfee 2014-06-26 22:29 - 2013-06-22 18:44 - 00000000 ____D () C:\Program Files\Common Files\mcafee 2014-06-25 22:22 - 2014-06-12 13:53 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (6) 2014-06-24 12:42 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-06-23 23:43 - 2014-06-23 23:28 - 00000000 ____D () C:\Users\Agnieszka\Desktop\muzyka Marek 2014-06-23 22:19 - 2014-06-23 20:51 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (7) 2014-06-23 22:12 - 2014-06-17 22:37 - 00000000 ____D () C:\Users\Agnieszka 2014-06-23 20:55 - 2014-06-17 23:00 - 00010776 _____ () C:\Users\Agnieszka\AppData\Roaming\AbsoluteReminder.xml 2014-06-22 00:15 - 2014-06-18 20:58 - 00000000 ____D () C:\Users\Agnieszka\Desktop\Nowy folder (5) 2014-06-20 15:28 - 2014-06-21 08:57 - 00061120 _____ (StdLib) C:\WINDOWS\system32\Drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys 2014-06-19 20:33 - 2014-06-19 20:33 - 00001111 _____ () C:\Users\Administrator\Desktop\PhotoFiltre Studio X.lnk 2014-06-19 20:33 - 2014-06-19 20:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X 2014-06-18 21:13 - 2014-06-18 21:13 - 00001211 _____ () C:\Users\Agnieszka\Desktop\Light Image Resizer 4.lnk 2014-06-18 21:13 - 2014-06-18 21:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea 2014-06-18 21:13 - 2014-06-18 21:13 - 00000000 ____D () C:\Program Files (x86)\ObviousIdea 2014-06-18 21:11 - 2014-06-18 21:12 - 07073536 _____ (ObviousIdea ) C:\Users\Agnieszka\Downloads\light_image_resizer4_setup_4.6.3.0.exe 2014-06-18 20:54 - 2014-06-18 20:54 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2014-06-18 12:59 - 2014-06-18 08:37 - 00000000 ____D () C:\Windows.old 2014-06-18 12:56 - 2014-06-17 22:29 - 00000000 ___HD () C:\$SysReset 2014-06-18 12:46 - 2014-06-18 12:46 - 00004042 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-18 12:46 - 2014-06-18 12:46 - 00003806 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-18 12:46 - 2014-06-18 12:46 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Google 2014-06-18 12:46 - 2014-06-18 12:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-06-18 12:46 - 2014-06-18 12:46 - 00000000 ____D () C:\Program Files (x86)\Google 2014-06-18 12:46 - 2014-06-18 12:45 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Deployment 2014-06-18 12:45 - 2014-06-18 12:45 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Apps\2.0 2014-06-18 12:38 - 2012-07-26 10:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-06-18 08:37 - 2014-06-18 08:37 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-06-18 08:37 - 2012-07-26 10:13 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-06-17 23:02 - 2014-06-17 23:02 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Intel Corporation 2014-06-17 23:01 - 2014-06-17 23:01 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\MotionControl 2014-06-17 23:01 - 2013-06-22 18:25 - 00000000 ____D () C:\ProgramData\Intel 2014-06-17 23:00 - 2014-06-17 23:00 - 00001453 _____ () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-06-17 23:00 - 2014-06-17 23:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Macromedia 2014-06-17 23:00 - 2014-06-17 23:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Roaming\Adobe 2014-06-17 23:00 - 2014-06-17 23:00 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Absolute_Software 2014-06-17 23:00 - 2014-05-22 22:43 - 00000000 ____D () C:\Users\Agnieszka\AppData\Local\Packages 2014-06-17 22:59 - 2014-06-17 22:59 - 00000020 ___SH () C:\Users\Agnieszka\ntuser.ini 2014-06-17 22:59 - 2012-07-26 10:12 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-06-17 22:59 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\WinStore 2014-06-17 22:38 - 2014-06-17 22:38 - 00000829 _____ () C:\Users\Administrator\AppData\Local\Application.xml 2014-06-17 22:38 - 2014-06-17 22:37 - 00017148 _____ () C:\WINDOWS\diagwrn.xml 2014-06-17 22:38 - 2014-06-17 22:37 - 00017148 _____ () C:\WINDOWS\diagerr.xml 2014-06-17 22:38 - 2012-07-26 10:12 - 00000000 __RHD () C:\Users\Public\Libraries 2014-06-17 22:38 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Public\Documents\Moje wideo 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Public\Documents\Moje obrazy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Public\Documents\Moja muzyka 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Ustawienia lokalne 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Szablony 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Moje dokumenty 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Menu Start 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Documents\Moje wideo 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Documents\Moje obrazy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Documents\Moja muzyka 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Historia 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje wideo 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje obrazy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\Documents\Moja muzyka 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Historia 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Ustawienia lokalne 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Szablony 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Moje dokumenty 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Menu Start 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Documents\Moje wideo 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Documents\Moje obrazy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Documents\Moja muzyka 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\AppData\Local\Historia 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\Users\Agnieszka\AppData\Local\Dane aplikacji 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Szablony 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Pulpit 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Menu Start 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Dokumenty 2014-06-17 22:37 - 2014-06-17 22:37 - 00000000 _SHDL () C:\ProgramData\Dane aplikacji 2014-06-17 22:37 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows NT 2014-06-17 22:37 - 2012-07-26 07:37 - 00000000 ___HD () C:\Users\Default 2014-06-17 21:20 - 2014-06-17 21:20 - 00819144 _____ (Google Inc.) C:\Users\Agnieszka\Downloads\37.0.2031.2_chrome_installer.exe 2014-06-17 21:12 - 2014-05-25 10:10 - 00000000 ___RD () C:\Users\Agnieszka\Dysk Google 2014-06-17 14:19 - 2014-06-02 17:31 - 00000000 ___RD () C:\Users\Agnieszka\Desktop\Nowy folder Some content of TEMP: ==================== C:\Users\Agnieszka\AppData\Local\Temp\Quarantine.exe C:\Users\Agnieszka\AppData\Local\Temp\SHSetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-06 09:46 ==================== End Of Log ============================