Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:26-08-2014 Ran by ADMIN (administrator) on MARIUSZ on 26-08-2014 23:23:04 Running from C:\Documents and Settings\JA\Pulpit Platform: Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polski Internet Explorer Version 6 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AVG Technologies CZ, s.r.o.) C:\PROGRA~1\AVG\AVG2014\avgrsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe (Creative Technology Ltd) C:\WINDOWS\system32\CTSVCCDA.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe () C:\Program Files\Unlocker\UnlockerAssistant.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe () C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe (Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Kernel and Hardware Abstraction Layer] => C:\WINDOWS\KHALMNPR.EXE [69632 2008-10-10] (Logitech, Inc.) HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [UnlockerAssistant] => C:\Program Files\Unlocker\UnlockerAssistant.exe [17408 2010-07-04] () HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1225944 2014-03-25] (COMODO) Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-1085031214-2025429265-725345543-1004\...\Run: [AtiTrayTools] => C:\Program Files\Ray Adams\ATI Tray Tools\atitray.exe [883200 2010-04-22] (Ray Adams) HKU\S-1-5-21-1085031214-2025429265-725345543-1004\...\Policies\Explorer: [NoDriveAutoRun] 0xFFFFFFFF AppInit_DLLs: C:\WINDOWS\system32\cssdll32.dll => C:\WINDOWS\system32\cssdll32.dll [249592 2008-12-27] (COMODO) Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\DSLMON.lnk ShortcutTarget: DSLMON.lnk -> C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe () BootExecute: autocheck autochk * UDBDef C:\PROGRA~1\AVG\AVG2014\avgrsx.exe /sync /restart ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm SearchScopes: HKLM - DefaultScope value is missing. BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File Tcpip\..\Interfaces\{CB472DC3-5816-4122-A68E-F782409D72A2}: [NameServer] 194.204.152.34 194.204.159.1 FireFox: ======== FF ProfilePath: C:\Documents and Settings\JA\Dane aplikacji\Mozilla\Firefox\Profiles\fk0vm9of.default-1398265907218 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_13_0_0_182.dll () FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: Adblock Plus - C:\Documents and Settings\JA\Dane aplikacji\Mozilla\Firefox\Profiles\fk0vm9of.default-1398265907218\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-07] Chrome: ======= CHR CustomProfile: C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default CHR HKLM\...\Chrome\Extension: [cmaiofennmphjldldcpphcechfnnohja] - C:\Program Files\AdTrustMedia\PrivDog\PrivDog_chrome.crx [2014-04-22] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [593920 2008-12-01] () [File not signed] R2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.) R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5306504 2014-04-16] (COMODO) S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [1663192 2014-03-25] (COMODO) R2 Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe [44032 1999-12-13] (Creative Technology Ltd) [File not signed] S2 gupdate1c99770e5e816b6; C:\Program Files\Google\Update\GoogleUpdate.exe [116648 2012-09-22] (Google Inc.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 ADILOADER; C:\WINDOWS\System32\Drivers\adildr.sys [50007 2004-03-02] (Analog Deivces) R3 adiusbaw; C:\WINDOWS\System32\DRIVERS\adiusbaw.sys [127065 2004-03-02] (Analog Devices Inc.) R1 atitray; C:\Program Files\Ray Adams\ATI Tray Tools\atitray.sys [19232 2010-04-22] () [File not signed] R1 Avgdiskx; C:\WINDOWS\System32\DRIVERS\avgdiskx.sys [120600 2013-11-05] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\WINDOWS\System32\DRIVERS\avgidsdriverx.sys [209176 2013-11-04] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\WINDOWS\System32\DRIVERS\avgidshx.sys [147768 2013-10-24] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\WINDOWS\System32\DRIVERS\avgidsshimx.sys [22840 2013-09-17] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\WINDOWS\System32\DRIVERS\avgldx86.sys [176952 2013-11-01] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\WINDOWS\System32\DRIVERS\avglogx.sys [222520 2013-10-31] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\WINDOWS\System32\DRIVERS\avgmfx86.sys [102712 2013-10-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx86; C:\WINDOWS\System32\DRIVERS\avgrkx86.sys [27448 2013-09-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\WINDOWS\System32\DRIVERS\avgtdix.sys [193848 2013-08-01] (AVG Technologies CZ, s.r.o.) R1 cmderd; C:\WINDOWS\System32\DRIVERS\cmderd.sys [15704 2014-04-16] (COMODO) R1 cmdGuard; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [607448 2014-04-16] (COMODO) R1 cmdHlp; C:\WINDOWS\System32\DRIVERS\cmdhlp.sys [29912 2014-04-16] (COMODO) S3 ctdvda2k; C:\WINDOWS\System32\drivers\ctdvda2k.sys [332800 2003-10-14] (Creative Technology Ltd) S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [13896 2013-03-07] () S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [9160 2013-03-07] () R3 gameenum; C:\WINDOWS\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation) S3 GVCplDrv; C:\WINDOWS\system32\Drivers\GVCplDrv.sys [23040 2004-05-02] () [File not signed] R3 ha10kx2k; C:\WINDOWS\System32\drivers\ha10kx2k.sys [904496 2003-10-21] (Creative Technology Ltd) R3 hap16v2k; C:\WINDOWS\System32\drivers\hap16v2k.sys [148432 2003-10-21] (Creative Technology Ltd) R0 Inspect; C:\WINDOWS\System32\DRIVERS\inspect.sys [104920 2014-04-16] (COMODO) R3 ms_mpu401; C:\WINDOWS\System32\drivers\msmpu401.sys [2944 2001-08-18] (Microsoft Corporation) R2 PfDetNT; C:\WINDOWS\system32\drivers\PfModNT.sys [15840 2003-03-05] (Creative Technology Ltd.) R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [691696 2010-07-17] () [File not signed] S1 Amfilter; system32\DRIVERS\Amfilter.sys [X] S3 Amusbprt; system32\DRIVERS\Amusbprt.sys [X] S4 IntelIde; No ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [File not signed] S3 USBAAPL; System32\Drivers\usbaapl.sys [X] U1 WS2IFSL; No ImagePath ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-26 23:23 - 2014-08-26 23:23 - 00011042 _____ () C:\Documents and Settings\JA\Pulpit\FRST.txt 2014-08-26 23:13 - 2014-08-26 23:13 - 00086696 _____ () C:\Documents and Settings\JA\Pulpit\OTL.Txt 2014-08-26 23:13 - 2014-08-26 23:13 - 00043304 _____ () C:\Documents and Settings\JA\Pulpit\Extras.Txt 2014-08-26 23:04 - 2014-08-26 23:04 - 00000824 _____ () C:\Documents and Settings\JA\Moje dokumenty\cc_20140826_230418.reg 2014-08-26 22:15 - 2014-08-26 22:14 - 00380416 _____ () C:\Documents and Settings\JA\Pulpit\4uyjruiw.exe 2014-08-26 22:13 - 2014-08-26 22:14 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\JA\Pulpit\OTL.exe 2014-08-26 22:10 - 2014-08-26 22:12 - 01095168 _____ (Farbar) C:\Documents and Settings\JA\Pulpit\FRST.exe 2014-08-20 20:15 - 2014-08-20 20:15 - 00000161 _____ () C:\WINDOWS\kpc3kmc.ini 2014-08-20 20:15 - 2014-08-20 20:15 - 00000108 _____ () C:\WINDOWS\kpc3med.ini 2014-08-20 20:12 - 2014-08-20 20:12 - 00000806 _____ () C:\Documents and Settings\JA\Pulpit\PC3K Sound Editor.lnk 2014-08-20 20:12 - 2014-08-20 20:12 - 00000000 ____D () C:\Program Files\Kurzweil 2014-08-20 20:12 - 2014-08-20 20:12 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Kurzweil Music Systems 2014-08-10 12:17 - 2014-08-10 12:19 - 00000000 ____D () C:\Documents and Settings\Mariush\Moje dokumenty\Pobrane 2014-08-08 12:28 - 2014-08-08 12:28 - 00000730 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk 2014-08-08 12:28 - 2014-08-08 12:28 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-08-08 12:28 - 2014-08-08 12:28 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-08-08 02:36 - 2004-08-04 02:44 - 01033728 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-08-07 23:36 - 2014-08-07 23:36 - 00000838 _____ () C:\Documents and Settings\JA\Moje dokumenty\cc_20140807_233625.reg 2014-07-29 12:01 - 2014-07-29 12:01 - 00000288 _____ () C:\WINDOWS\UPGRADE.TXT 2014-07-29 12:01 - 2014-07-29 12:01 - 00000000 _RSHD () C:\cmdcons 2014-07-29 12:01 - 2014-07-29 12:01 - 00000000 ____D () C:\WINDOWS\setup.pss 2014-07-29 12:01 - 2014-06-11 14:13 - 00000222 ___SH () C:\BOOT.BAK 2014-07-29 12:01 - 2006-03-02 14:00 - 00262400 __RSH () C:\cmldr ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-26 23:23 - 2014-08-26 23:23 - 00011042 _____ () C:\Documents and Settings\JA\Pulpit\FRST.txt 2014-08-26 23:23 - 2013-10-25 22:29 - 00000000 ____D () C:\FRST 2014-08-26 23:23 - 2009-04-13 23:58 - 00000000 ____D () C:\Documents and Settings\JA\Ustawienia lokalne\Temp 2014-08-26 23:23 - 2008-12-27 14:43 - 00000000 ____D () C:\Documents and Settings\JA\Pulpit 2014-08-26 23:13 - 2014-08-26 23:13 - 00086696 _____ () C:\Documents and Settings\JA\Pulpit\OTL.Txt 2014-08-26 23:13 - 2014-08-26 23:13 - 00043304 _____ () C:\Documents and Settings\JA\Pulpit\Extras.Txt 2014-08-26 23:04 - 2014-08-26 23:04 - 00000824 _____ () C:\Documents and Settings\JA\Moje dokumenty\cc_20140826_230418.reg 2014-08-26 23:04 - 2008-12-27 14:43 - 00000000 ___RD () C:\Documents and Settings\JA\Moje dokumenty 2014-08-26 23:03 - 2013-09-13 19:05 - 00000000 ____D () C:\Documents and Settings\JA\Dane aplikacji\Winamp 2014-08-26 23:02 - 2010-06-01 20:11 - 00000000 ___SD () C:\Documents and Settings\JA\UserData 2014-08-26 23:02 - 2008-12-27 14:43 - 00000000 ____D () C:\Documents and Settings\JA 2014-08-26 23:00 - 2008-12-27 14:34 - 01624714 ____N () C:\WINDOWS\WindowsUpdate.log 2014-08-26 22:36 - 2008-12-27 15:24 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-08-26 22:27 - 2012-09-22 20:47 - 00001034 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-26 22:14 - 2014-08-26 22:15 - 00380416 _____ () C:\Documents and Settings\JA\Pulpit\4uyjruiw.exe 2014-08-26 22:14 - 2014-08-26 22:13 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\JA\Pulpit\OTL.exe 2014-08-26 22:12 - 2014-08-26 22:10 - 01095168 _____ (Farbar) C:\Documents and Settings\JA\Pulpit\FRST.exe 2014-08-26 22:06 - 2014-04-26 22:04 - 00000440 _____ () C:\WINDOWS\Tasks\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}.job 2014-08-26 22:06 - 2014-04-26 22:04 - 00000440 _____ () C:\WINDOWS\Tasks\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}.job 2014-08-26 18:27 - 2012-09-22 20:47 - 00001030 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-26 18:09 - 2012-01-21 00:03 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\MFAData 2014-08-26 15:12 - 2014-04-26 21:46 - 00000484 _____ () C:\WINDOWS\Tasks\CIS_{15198508-521A-4D69-8E5B-B94A6CCFF805}.job 2014-08-26 08:23 - 2008-12-27 14:43 - 00000000 ___HD () C:\Documents and Settings\JA\Ustawienia lokalne\Dane aplikacji 2014-08-26 08:22 - 2014-03-08 08:08 - 00000222 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job 2014-08-26 08:22 - 2008-12-27 15:27 - 00000159 ____N () C:\WINDOWS\wiadebug.log 2014-08-26 08:22 - 2008-12-27 15:27 - 00000050 ____N () C:\WINDOWS\wiaservc.log 2014-08-26 08:22 - 2008-12-27 14:41 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-08-25 22:37 - 2014-04-22 21:39 - 00065536 _____ () C:\WINDOWS\system32\config\COMODO I.evt 2014-08-25 22:37 - 2008-12-27 14:54 - 00001080 _____ () C:\WINDOWS\system32\settingsbkup.sfm 2014-08-25 22:37 - 2008-12-27 14:54 - 00001080 _____ () C:\WINDOWS\system32\settings.sfm 2014-08-25 22:37 - 2008-12-27 14:54 - 00000384 _____ () C:\WINDOWS\system32\DVCStateBkp-{00000000-00000000-0000000A-00001102-00000004-20021102}.dat 2014-08-25 22:37 - 2008-12-27 14:54 - 00000384 _____ () C:\WINDOWS\system32\DVCState-{00000000-00000000-0000000A-00001102-00000004-20021102}.dat 2014-08-25 22:37 - 2008-12-27 14:43 - 00000188 ___SH () C:\Documents and Settings\JA\ntuser.ini 2014-08-25 22:37 - 2008-12-27 14:41 - 00032272 ____N () C:\WINDOWS\SchedLgU.Txt 2014-08-24 18:48 - 2006-03-02 14:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl 2014-08-20 20:15 - 2014-08-20 20:15 - 00000161 _____ () C:\WINDOWS\kpc3kmc.ini 2014-08-20 20:15 - 2014-08-20 20:15 - 00000108 _____ () C:\WINDOWS\kpc3med.ini 2014-08-20 20:12 - 2014-08-20 20:12 - 00000806 _____ () C:\Documents and Settings\JA\Pulpit\PC3K Sound Editor.lnk 2014-08-20 20:12 - 2014-08-20 20:12 - 00000000 ____D () C:\Program Files\Kurzweil 2014-08-20 20:12 - 2014-08-20 20:12 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Kurzweil Music Systems 2014-08-20 20:12 - 2008-12-27 15:24 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy 2014-08-15 17:06 - 2013-07-16 02:39 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-08-15 17:06 - 2008-12-27 16:48 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help 2014-08-15 17:02 - 2008-12-27 17:00 - 96303304 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-08-15 15:55 - 2009-06-30 16:56 - 00000000 ____D () C:\Documents and Settings\Mariush\Ustawienia lokalne\Temp 2014-08-14 00:21 - 2009-02-10 21:55 - 00000343 _____ () C:\WINDOWS\Biblia.INI 2014-08-10 12:55 - 2009-06-30 16:56 - 00000188 ___SH () C:\Documents and Settings\Mariush\ntuser.ini 2014-08-10 12:19 - 2014-08-10 12:17 - 00000000 ____D () C:\Documents and Settings\Mariush\Moje dokumenty\Pobrane 2014-08-10 12:17 - 2009-06-30 16:56 - 00000000 ___RD () C:\Documents and Settings\Mariush\Moje dokumenty 2014-08-08 15:00 - 2014-03-08 08:08 - 00000216 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job 2014-08-08 12:28 - 2014-08-08 12:28 - 00000730 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk 2014-08-08 12:28 - 2014-08-08 12:28 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-08-08 12:28 - 2014-08-08 12:28 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-08-07 23:36 - 2014-08-07 23:36 - 00000838 _____ () C:\Documents and Settings\JA\Moje dokumenty\cc_20140807_233625.reg 2014-08-07 21:27 - 2013-04-20 21:16 - 00000000 ____D () C:\Documents and Settings\JA\Pulpit\Różne 2014-08-07 20:34 - 2008-12-27 15:37 - 00000000 ____D () C:\Documents and Settings\JA\Pulpit\Skróty 2014-07-29 12:01 - 2014-07-29 12:01 - 00000288 _____ () C:\WINDOWS\UPGRADE.TXT 2014-07-29 12:01 - 2014-07-29 12:01 - 00000000 _RSHD () C:\cmdcons 2014-07-29 12:01 - 2014-07-29 12:01 - 00000000 ____D () C:\WINDOWS\setup.pss 2014-07-29 12:01 - 2008-12-27 15:23 - 00000308 __RSH () C:\boot.ini 2014-07-28 14:04 - 2013-07-31 23:54 - 00000000 ____D () C:\Documents and Settings\JA\Dane aplikacji\Audacity ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================