Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 12-09-2014 Ran by Właściciel (administrator) on USER-1C58581C2F on 15-09-2014 21:30:01 Running from C:\Documents and Settings\Właściciel\Moje dokumenty\Pobrane Platform: Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polski Internet Explorer Version 8 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (O2Micro International) C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Dritek System Inc.) C:\PROGRA~1\LAUNCH~1\LManager.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Gadu-Gadu S.A.) C:\Program Files\Gadu-Gadu\gg.exe (Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Hidfind.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe () C:\WINDOWS\system32\C2MP\UpdateChecker.exe (Intel Corporation) C:\WINDOWS\system32\igfxext.exe (Realtek Semiconductor Corp.) C:\DOCUME~1\WACICI~1\USTAWI~1\Temp\RtkBtMnt.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe () C:\Program Files\SmarterPower\bin\utilSmarterPower.exe () C:\Program Files\SmarterPower\bin\SmarterPower.BrowserAdapter.exe () C:\Program Files\SmarterPower\updateSmarterPower.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16862720 2008-05-16] (Realtek Semiconductor Corp.) HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-04] (Realtek Semiconductor Corp.) HKLM\...\Run: [AzMixerSel] => C:\Program Files\Realtek\Audio\InstallShield\AzMixerSel.exe [53248 2006-07-18] (Realtek Semiconductor Corp.) HKLM\...\Run: [LManager] => C:\Program Files\Launch Manager\LManager.exe [875016 2008-07-24] (Dritek System Inc.) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [159744 2008-01-25] (Alps Electric Co., Ltd.) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-21] (AVAST Software) HKLM\...99B7938DA9E4}\LocalServer32: [Default-wmiprvse] <==== ATTENTION! HKU\S-1-5-21-1935655697-308236825-1417001333-1003\...\Run: [Gadu-Gadu] => C:\Program Files\Gadu-Gadu\gg.exe [2127296 2008-03-20] (Gadu-Gadu S.A.) HKU\S-1-5-21-1935655697-308236825-1417001333-1003\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation) HKU\S-1-5-21-1935655697-308236825-1417001333-1003\...\Run: [SearchProtection] => "C:\Documents and Settings\WBa[ciciel\Dane aplikacji\Search Protection\SearchProtection.EXE" /autostart HKU\S-1-5-21-1935655697-308236825-1417001333-1003\...\Run: [Browser Extensions] => "C:\Documents and Settings\WBa[ciciel\Dane aplikacji\Browser Extensions\CouponsHelper.exe" HKU\S-1-5-21-1935655697-308236825-1417001333-1003\...\MountPoints2: {2516ef6e-0071-11df-b6a5-001f1694d68d} - F:\LaunchU3.exe -a HKU\S-1-5-21-1935655697-308236825-1417001333-1003\...\MountPoints2: {8a0d5288-3871-11e2-81c1-001f1694d68d} - F:\NokiaPCIA_Autorun.exe Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\CodecPackUpdateChecker.lnk ShortcutTarget: CodecPackUpdateChecker.lnk -> C:\WINDOWS\system32\C2MP\UpdateChecker.exe () ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ BHO: No Name -> {34A0D84B-CDDC-4EC4-AFDD-4F1DDE1D14E5} -> No File BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO: SmarterPower -> {bd7c9b62-a7d9-4405-be51-7fd633f08791} -> C:\Program Files\SmarterPower\SmarterPowerbho.dll (SmarterPower) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 FireFox: ======== FF ProfilePath: C:\Documents and Settings\Właściciel\Dane aplikacji\Mozilla\Firefox\Profiles\gzrdn9b0.default FF Keyword.URL: https://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=888596&p= FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Documents and Settings\Właściciel\Dane aplikacji\mozilla\plugins\np-mswmp.dll (Microsoft Corporation) FF SearchPlugin: C:\Documents and Settings\Właściciel\Dane aplikacji\Mozilla\Firefox\Profiles\gzrdn9b0.default\searchplugins\yahoo_ff.xml FF Extension: Start Page - C:\Documents and Settings\Właściciel\Dane aplikacji\Mozilla\Firefox\Profiles\gzrdn9b0.default\Extensions\{32da2f20-827d-40aa-a3b4-2fc4a294352e} [2014-08-30] FF Extension: Slick Savings - C:\Documents and Settings\Właściciel\Dane aplikacji\Mozilla\Firefox\Profiles\gzrdn9b0.default\Extensions\{46eddf51-a4f6-4476-8d6c-31c5187b2a2f} [2014-08-30] FF Extension: Amazon Shopping Assistant by Spigot - C:\Documents and Settings\Właściciel\Dane aplikacji\Mozilla\Firefox\Profiles\gzrdn9b0.default\Extensions\{84a93d51-b7a9-431e-8ff8-d60e5d7f5df1} [2014-08-30] FF Extension: Ebay Shopping Assistant by Spigot - C:\Documents and Settings\Właściciel\Dane aplikacji\Mozilla\Firefox\Profiles\gzrdn9b0.default\Extensions\{f894a29a-f065-40c3-bb19-da6057778493} [2014-08-30] FF Extension: SmarterPower - C:\Documents and Settings\Właściciel\Dane aplikacji\Mozilla\Firefox\Profiles\gzrdn9b0.default\Extensions\{5eeb83d0-96ea-4249-942c-beead6847053}.xpi [2014-08-21] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2013-10-17] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-08-21] Chrome: ======= CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-21] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-21] (AVAST Software) R2 o2flash; C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe [65536 2007-02-12] (O2Micro International) [File not signed] R2 Update SmarterPower; C:\Program Files\SmarterPower\updateSmarterPower.exe [323320 2014-09-15] () R2 Util SmarterPower; C:\Program Files\SmarterPower\bin\utilSmarterPower.exe [323320 2014-09-15] () ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 AR5416; C:\WINDOWS\System32\DRIVERS\athw.sys [1343616 2008-11-05] (Atheros Communications, Inc.) R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-08-21] () R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-08-21] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55112 2014-08-21] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-08-21] () R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [779536 2014-08-21] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [414520 2014-08-21] (AVAST Software) R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57800 2014-08-21] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [192352 2014-08-21] () R1 {5eeb83d0-96ea-4249-942c-beead6847053}Gt; C:\WINDOWS\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gt.sys [55064 2014-08-21] (StdLib) S4 IntelIde; No ImagePath S1 iSafeNetFilter; \??\C:\Program Files\iSafe\iSafeNetFilter.sys [X] U1 WS2IFSL; No ImagePath ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-15 21:28 - 2014-09-15 21:30 - 00000000 ____D () C:\FRST 2014-09-13 11:02 - 2014-09-13 11:03 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-09-09 13:20 - 2014-09-09 13:20 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit\wózek 2014-08-25 19:00 - 2014-08-25 19:00 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\eCyber 2014-08-25 18:59 - 2014-08-25 19:10 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\iSafe 2014-08-25 18:55 - 2014-08-25 18:55 - 00000000 __SHD () C:\Documents and Settings\Właściciel\IECompatCache 2014-08-21 22:07 - 2014-08-21 22:07 - 00000000 ___RD () C:\Documents and Settings\LocalService\Ulubione 2014-08-21 22:07 - 2014-08-21 12:51 - 00055064 _____ (StdLib) C:\WINDOWS\system32\Drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gt.sys 2014-08-21 21:59 - 2014-08-21 21:59 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit\pliki instalacyjne 2014-08-21 21:55 - 2014-09-10 22:30 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-08-21 21:50 - 2014-08-21 21:50 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\AVAST Software 2014-08-21 21:49 - 2014-09-15 20:55 - 00000372 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job 2014-08-21 21:49 - 2014-08-21 21:49 - 00001733 _____ () C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk 2014-08-21 21:49 - 2014-08-21 21:49 - 00000000 ____D () C:\WINDOWS\jumpshot.com 2014-08-21 21:49 - 2014-08-21 21:49 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Avast 2014-08-21 21:48 - 2014-08-21 21:49 - 00414520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00779536 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00276432 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2014-08-21 21:48 - 2014-08-21 21:48 - 00192352 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00057800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00055112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2014-08-21 21:48 - 2014-08-21 21:48 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys 2014-08-21 21:47 - 2014-08-21 21:47 - 00000000 ____D () C:\Program Files\AVAST Software 2014-08-21 21:46 - 2014-08-21 21:47 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software 2014-08-21 21:11 - 2014-08-21 21:11 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\MPC-HC 2014-08-21 21:09 - 2014-08-30 10:23 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\Browser Extensions 2014-08-21 21:08 - 2014-08-21 21:09 - 00000000 ____D () C:\WINDOWS\system32\C2MP 2014-08-21 21:08 - 2014-08-21 21:09 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Media Player - Codec Pack 2014-08-21 21:08 - 2014-08-21 21:08 - 31946712 _____ (Media Player - Codec Pack) C:\Documents and Settings\Właściciel\Moje dokumenty\media.player.codec.pack.v4.3.3.setup.exe 2014-08-21 21:04 - 2014-08-21 21:04 - 00001538 _____ () C:\Documents and Settings\Właściciel\Pulpit\MPC-HC.lnk 2014-08-21 21:04 - 2014-08-21 21:04 - 00000000 ____D () C:\Program Files\MPC-HC 2014-08-21 21:04 - 2014-08-21 21:04 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\MPC-HC 2014-08-21 21:03 - 2014-08-21 22:46 - 00000000 ____D () C:\Program Files\SmarterPower 2014-08-21 21:03 - 2014-08-21 21:03 - 10837824 _____ (MPC-HC Team ) C:\Documents and Settings\Właściciel\Moje dokumenty\MPC-HC.1.7.6.x86.exe 2014-08-21 19:45 - 2014-08-24 09:13 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit\wakacje Gdańsk 2014 2014-08-20 13:12 - 2014-08-28 13:44 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit\WAKACJE ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-15 21:30 - 2014-09-15 21:28 - 00000000 ____D () C:\FRST 2014-09-15 21:30 - 2014-08-01 15:22 - 00000000 ____D () C:\Documents and Settings\Właściciel\Moje dokumenty\Pobrane 2014-09-15 21:30 - 2009-10-14 18:31 - 00000000 ____D () C:\Documents and Settings\Właściciel\Ustawienia lokalne\Temp 2014-09-15 20:59 - 2009-10-14 20:19 - 01098036 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-09-15 20:59 - 2009-10-14 18:31 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit 2014-09-15 20:59 - 2008-04-15 14:00 - 00494662 _____ () C:\WINDOWS\system32\perfh015.dat 2014-09-15 20:59 - 2008-04-15 14:00 - 00085782 _____ () C:\WINDOWS\system32\perfc015.dat 2014-09-15 20:58 - 2008-04-15 14:00 - 00000654 _____ () C:\WINDOWS\win.ini 2014-09-15 20:57 - 2013-03-17 19:02 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-09-15 20:55 - 2014-08-21 21:49 - 00000372 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job 2014-09-15 20:55 - 2009-10-14 18:27 - 01920520 _____ () C:\WINDOWS\WindowsUpdate.log 2014-09-15 20:54 - 2014-03-27 10:29 - 00000232 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job 2014-09-15 20:54 - 2009-10-14 20:21 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-09-15 20:54 - 2009-10-14 20:21 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-09-15 20:54 - 2009-10-14 18:31 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-09-15 19:24 - 2009-10-14 18:31 - 00032410 _____ () C:\WINDOWS\SchedLgU.Txt 2014-09-15 19:23 - 2009-10-14 18:31 - 00000188 ___SH () C:\Documents and Settings\Właściciel\ntuser.ini 2014-09-14 09:41 - 2012-04-26 09:55 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-09-13 11:03 - 2014-09-13 11:02 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-09-10 22:30 - 2014-08-21 21:55 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-09-10 22:30 - 2009-10-14 18:47 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help 2014-09-10 22:27 - 2010-02-14 01:55 - 98758480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-09-10 18:57 - 2013-03-17 19:02 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-09-10 18:57 - 2012-02-13 11:06 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-09-10 08:24 - 2008-04-15 14:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl 2014-09-09 13:20 - 2014-09-09 13:20 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit\wózek 2014-09-08 15:24 - 2014-03-27 10:29 - 00000226 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job 2014-08-30 10:23 - 2014-08-21 21:09 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\Browser Extensions 2014-08-28 13:44 - 2014-08-20 13:12 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit\WAKACJE 2014-08-25 21:57 - 2014-05-03 18:42 - 00009260 _____ () C:\WINDOWS\KB2964358-IE8.log 2014-08-25 21:57 - 2014-04-10 20:29 - 00014763 _____ () C:\WINDOWS\KB2936068-IE8.log 2014-08-25 19:10 - 2014-08-25 18:59 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\iSafe 2014-08-25 19:10 - 2009-10-14 20:18 - 00000000 __RHD () C:\Documents and Settings\Default User\Dane aplikacji 2014-08-25 19:10 - 2009-10-14 20:18 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-08-25 19:10 - 2009-10-14 20:18 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start 2014-08-25 19:10 - 2009-10-14 20:18 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-08-25 19:04 - 2009-10-14 18:31 - 00000000 __RHD () C:\Documents and Settings\Właściciel\Dane aplikacji 2014-08-25 19:00 - 2014-08-25 19:00 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\eCyber 2014-08-25 18:55 - 2014-08-25 18:55 - 00000000 __SHD () C:\Documents and Settings\Właściciel\IECompatCache 2014-08-25 18:55 - 2009-10-14 18:31 - 00000000 ____D () C:\Documents and Settings\Właściciel 2014-08-25 18:51 - 2009-12-07 20:27 - 00000000 ____D () C:\Program Files\Google 2014-08-25 18:37 - 2010-01-09 00:14 - 00000000 ____D () C:\Documents and Settings\Właściciel\Ustawienia lokalne\Dane aplikacji\Google 2014-08-25 18:37 - 2009-12-07 20:27 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Google 2014-08-24 09:13 - 2014-08-21 19:45 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit\wakacje Gdańsk 2014 2014-08-21 22:46 - 2014-08-21 21:03 - 00000000 ____D () C:\Program Files\SmarterPower 2014-08-21 22:07 - 2014-08-21 22:07 - 00000000 ___RD () C:\Documents and Settings\LocalService\Ulubione 2014-08-21 22:07 - 2009-10-14 18:31 - 00000000 __SHD () C:\Documents and Settings\LocalService 2014-08-21 21:59 - 2014-08-21 21:59 - 00000000 ____D () C:\Documents and Settings\Właściciel\Pulpit\pliki instalacyjne 2014-08-21 21:50 - 2014-08-21 21:50 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\AVAST Software 2014-08-21 21:50 - 2010-03-17 10:57 - 00000000 ____D () C:\Documents and Settings\Właściciel\Ustawienia lokalne\Dane aplikacji\Temp 2014-08-21 21:49 - 2014-08-21 21:49 - 00001733 _____ () C:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk 2014-08-21 21:49 - 2014-08-21 21:49 - 00000000 ____D () C:\WINDOWS\jumpshot.com 2014-08-21 21:49 - 2014-08-21 21:49 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Avast 2014-08-21 21:49 - 2014-08-21 21:48 - 00414520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00779536 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00276432 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2014-08-21 21:48 - 2014-08-21 21:48 - 00192352 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00067824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00057800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00055112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys 2014-08-21 21:48 - 2014-08-21 21:48 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2014-08-21 21:48 - 2014-08-21 21:48 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys 2014-08-21 21:47 - 2014-08-21 21:47 - 00000000 ____D () C:\Program Files\AVAST Software 2014-08-21 21:47 - 2014-08-21 21:46 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software 2014-08-21 21:46 - 2009-10-14 20:18 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-08-21 21:11 - 2014-08-21 21:11 - 00000000 ____D () C:\Documents and Settings\Właściciel\Dane aplikacji\MPC-HC 2014-08-21 21:09 - 2014-08-21 21:08 - 00000000 ____D () C:\WINDOWS\system32\C2MP 2014-08-21 21:09 - 2014-08-21 21:08 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Media Player - Codec Pack 2014-08-21 21:09 - 2009-10-14 20:18 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy\Autostart 2014-08-21 21:08 - 2014-08-21 21:08 - 31946712 _____ (Media Player - Codec Pack) C:\Documents and Settings\Właściciel\Moje dokumenty\media.player.codec.pack.v4.3.3.setup.exe 2014-08-21 21:08 - 2009-10-14 18:31 - 00000000 ___RD () C:\Documents and Settings\Właściciel\Moje dokumenty 2014-08-21 21:04 - 2014-08-21 21:04 - 00001538 _____ () C:\Documents and Settings\Właściciel\Pulpit\MPC-HC.lnk 2014-08-21 21:04 - 2014-08-21 21:04 - 00000000 ____D () C:\Program Files\MPC-HC 2014-08-21 21:04 - 2014-08-21 21:04 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\MPC-HC 2014-08-21 21:03 - 2014-08-21 21:03 - 10837824 _____ (MPC-HC Team ) C:\Documents and Settings\Właściciel\Moje dokumenty\MPC-HC.1.7.6.x86.exe 2014-08-21 19:44 - 2009-10-14 20:18 - 01045034 _____ () C:\WINDOWS\setupapi.log.0.old 2014-08-21 12:51 - 2014-08-21 22:07 - 00055064 _____ (StdLib) C:\WINDOWS\system32\Drivers\{5eeb83d0-96ea-4249-942c-beead6847053}Gt.sys Some content of TEMP: ==================== C:\Documents and Settings\Właściciel\Ustawienia lokalne\Temp\RtkBtMnt.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================