Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 12-09-2014 Ran by Administrator (administrator) on DOMEK-154CD7EAF on 17-09-2014 01:11:37 Running from C:\Documents and Settings\Administrator\Pulpit\Nowy folder\FRST Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polski Internet Explorer Version 8 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Creative Technology Ltd) C:\Program Files\Creative\Shared Files\CTDevSrv.exe (France Telecom) C:\WINDOWS\system32\FTRTSVC.exe (HP) C:\WINDOWS\system32\HPZipm12.exe () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe (Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe (Clarus, Inc.) C:\Program Files\Clarus\Samsung SecretZone\SZAssistSVC.exe (Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\RunOnce: [removeSettingsManagerdatamngr] => cmd.exe /c RD /S /Q "C:\Program Files\Settings Manager" HKLM\...99B7938DA9E4}\LocalServer32: [Default-wmiprvse] <==== ATTENTION! HKU\.DEFAULT\...\Run: [Google Update] => C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Dane aplikacji\Google\Update\GoogleUpdate.exe [116648 2014-02-08] (Google Inc.) HKU\.DEFAULT\...\RunOnce: [_nltide_3] => rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) SearchScopes: HKCU - {48476E97-31C8-4333-B277-9BAFEF940ADC} URL = http://pl.wikipedia.org/w/index.php?title=Specjalna:Szukaj&search={searchTerms} SearchScopes: HKCU - {4C5A8CAF-26B9-45F9-98FB-EF8313F900EF} URL = http://www.allegro.pl/search.php?sg=0&string={searchTerms} SearchScopes: HKCU - {908E573A-BB2B-4C89-841A-34021A8D0459} URL = http://www.nasza-klasa.pl/szukaj/profile?q={searchTerms} SearchScopes: HKCU - {91325771-DAC9-437E-A769-9E951076D8F2} URL = http://megaslownik.pl/slownik.php?phrase={searchTerms}&lang=en SearchScopes: HKCU - {E8273BED-4699-4BA7-9D78-944BBB253F0D} URL = http://www.google.com/search?hl=pl&q={searchTerms} BHO: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{D1A7373C-0A75-4603-8C0B-AEB086402922}: [NameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\6oozs2sy.default-1410906761750 FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin: @java.com/DTPlugin,version=10.7.2 -> C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @playstation.com/PsndlCheck,version=1.00 -> C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.) FF Plugin: @real.com/nppl3260;version=16.0.3.51 -> c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.3 -> C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.3 -> C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.3 -> C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpplugin;version=16.0.3.51 -> c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin: @realnetworks.com/npdlplugin;version=1 -> C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: RealDownloader - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-09-04] FF HKLM\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF HKLM\...\Thunderbird\Extensions: [te_7.0@nokia.com] - C:\Program Files\Nokia\Nokia Suite\Connectors\Thunderbird Connector\ThunderbirdExtension_7.0 FF Extension: Thunderbird Address Book Synchronisation Extension - C:\Program Files\Nokia\Nokia Suite\Connectors\Thunderbird Connector\ThunderbirdExtension_7.0 [2011-11-20] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.pl/ CHR StartupUrls: Default -> "hxxp://www.google.pl/" CHR DefaultSearchKeyword: Default -> 4BDCAA5BE14FDB3C2DDA48EAC2BF8791168E10931ED10080D3D4E8EF4E9A9166 CHR DefaultSearchProvider: Default -> default-search.net CHR DefaultSearchURL: Default -> http://www.default-search.net/search?sid=476&aid=132&itype=a&ver=13337&tm=295&src=ds&p={searchTerms} CHR Plugin: (Widevine Content Decryption Module) - C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\WidevineCDM\1.4.5.671\_platform_specific\win_x86\widevinecdmadapter.dll () CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\37.0.2062.120\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\37.0.2062.120\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\37.0.2062.120\pdf.dll () CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.5) - C:\Program Files\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation) CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.)) CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation) CHR Plugin: (RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) CHR Plugin: (RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) CHR Plugin: (RealNetworks(tm) RealDownloader PepperFlashVideoShim Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) CHR Plugin: (RealDownloader Plugin) - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Java(TM) Platform SE 6 U18) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) CHR Plugin: (PlayStation(R)Network Downloader Check Plug-in) - C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.) CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (Java Deployment Toolkit 7.0.70.10) - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) CHR Plugin: (RealPlayer Download Plugin) - c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer) CHR CustomProfile: C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default CHR Extension: (Google Wallet) - C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-09] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 CTDevice_Srv; C:\Program Files\Creative\Shared Files\CTDevSrv.exe [61440 2007-04-02] (Creative Technology Ltd) [File not signed] S3 CTUPnPSv; C:\Program Files\Creative\Creative Centrale\CTUPnPSv.exe [64000 2008-05-21] (Creative Technology Ltd) [File not signed] R2 FTRTSVC; C:\WINDOWS\System32\FTRTSVC.exe [40960 2004-08-23] (France Telecom) [File not signed] R2 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [73728 2007-08-09] (HP) [File not signed] R2 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-08-14] () R2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [5857128 2014-07-28] (Reimage®) R2 SZASSIST; C:\Program Files\Clarus\Samsung SecretZone\SZAssistSVC.exe [90112 2010-08-30] (Clarus, Inc.) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed] S3 alcan5wn; C:\WINDOWS\System32\DRIVERS\alcan5wn.sys [53600 2003-12-08] (THOMSON) [File not signed] S3 alcaudsl; C:\WINDOWS\System32\DRIVERS\alcaudsl.sys [70688 2003-12-08] (THOMSON) [File not signed] R3 ALCXWDM; C:\WINDOWS\System32\drivers\ALCXWDM.SYS [4122368 2011-10-17] (Realtek Semiconductor Corp.) S3 AndNetDiag; C:\WINDOWS\System32\DRIVERS\lgandnetdiag.sys [23168 2013-04-18] (LG Electronics Inc.) S3 ANDNetModem; C:\WINDOWS\System32\DRIVERS\lgandnetmodem.sys [27776 2013-06-28] (LG Electronics Inc.) S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [51120 2005-03-08] (HP) S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2005-03-08] (HP) S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21744 2005-03-08] (HP) R3 mdf16; C:\Program Files\Clarus\Samsung SecretZone\mdf16.sys [18288 2010-08-11] () R3 mvd22; C:\Program Files\Clarus\Samsung SecretZone\mvd22.sys [70512 2010-08-11] () R0 nvata; C:\WINDOWS\System32\DRIVERS\nvata.sys [93568 2005-08-18] (NVIDIA Corporation) R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54784 2011-10-17] (NVIDIA Corporation) R0 nvgts; C:\WINDOWS\System32\DRIVERS\nvgts.sys [145952 2011-10-17] (NVIDIA Corporation) R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2011-10-17] (NVIDIA Corporation) S2 ousbehci; C:\WINDOWS\System32\Drivers\ousbehci.sys [42752 2011-10-17] (OrangeWare Corporation) [File not signed] S1 oxser; C:\WINDOWS\System32\DRIVERS\oxser.sys [51269 2011-11-01] (Lite-On Technology Corporation.) S3 PCAMPR5; C:\WINDOWS\system32\PCAMPR5.SYS [34688 2003-09-23] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed] S3 PCANDIS5; C:\WINDOWS\system32\PCANDIS5.SYS [32128 2006-03-01] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed] R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [21248 2003-09-20] (Padus, Inc.) [File not signed] S3 s1039mdm; C:\WINDOWS\System32\DRIVERS\s1039mdm.sys [124016 2010-03-15] (MCCI Corporation) R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [436792 2013-03-16] () [File not signed] R2 StarOpen; C:\WINDOWS\system32\Drivers\StarOpen.sys [5504 2012-06-03] () [File not signed] U3 an8kd85r; C:\WINDOWS\system32\Drivers\an8kd85r.sys [0 ] (NVIDIA Corporation) S4 IntelIde; No ImagePath ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-17 00:52 - 2014-09-17 00:52 - 00000000 ____D () C:\Documents and Settings\Administrator\Dane aplikacji\Toolbar4 2014-09-17 00:32 - 2014-09-17 00:32 - 00000000 ____D () C:\Documents and Settings\Administrator\Pulpit\Stare dane programu Firefox 2014-09-06 01:22 - 2014-09-06 01:22 - 00868616 _____ (Opera Software) C:\Documents and Settings\Administrator\Moje dokumenty\Opera_NI_stable.exe 2014-09-06 01:22 - 2014-09-06 01:22 - 00000000 ____D () C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Opera Software 2014-09-06 01:22 - 2014-09-06 01:22 - 00000000 ____D () C:\Documents and Settings\Administrator\Dane aplikacji\Opera Software 2014-09-06 01:21 - 2014-09-17 00:54 - 00000490 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1409959301.job 2014-09-06 01:21 - 2014-09-06 01:21 - 00000696 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera 24.lnk 2014-09-06 00:29 - 2014-09-06 00:29 - 00000783 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-17 01:11 - 2010-03-21 18:55 - 00000000 ____D () C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp 2014-09-17 01:11 - 2005-01-01 04:31 - 00000000 ____D () C:\FRST 2014-09-17 01:09 - 2010-05-18 23:36 - 00001050 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-09-17 01:08 - 2010-03-21 18:50 - 01607157 _____ () C:\WINDOWS\WindowsUpdate.log 2014-09-17 01:07 - 2013-10-01 00:43 - 00000000 ____D () C:\Program Files\Zula Games 2014-09-17 01:07 - 2010-03-21 18:55 - 00000000 ___RD () C:\Documents and Settings\Administrator\Moje dokumenty 2014-09-17 01:05 - 2014-02-01 03:07 - 00001294 _____ () C:\WINDOWS\wininit.ini 2014-09-17 01:05 - 2014-01-19 01:50 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2 2014-09-17 01:05 - 2010-03-21 19:36 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-09-17 01:05 - 2010-03-21 19:36 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-09-17 01:01 - 2013-10-01 00:43 - 00000000 ____D () C:\Program Files\Speed Analysis 2 2014-09-17 01:00 - 2010-03-21 19:36 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-09-17 00:58 - 2014-07-22 23:16 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-09-17 00:56 - 2010-03-21 18:55 - 00000000 __RHD () C:\Documents and Settings\Administrator\Dane aplikacji 2014-09-17 00:54 - 2014-09-06 01:21 - 00000490 _____ () C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1409959301.job 2014-09-17 00:54 - 2014-08-10 15:14 - 00000348 _____ () C:\WINDOWS\Tasks\ReimageUpdater.job 2014-09-17 00:54 - 2014-05-11 23:11 - 00000294 _____ () C:\WINDOWS\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1229272821-57989841-1801674531-500.job 2014-09-17 00:54 - 2014-04-05 09:42 - 00000238 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job 2014-09-17 00:54 - 2010-11-27 21:35 - 00000294 _____ () C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-1229272821-57989841-1801674531-500.job 2014-09-17 00:54 - 2010-05-18 23:36 - 00001046 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-09-17 00:54 - 2010-03-21 19:43 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-09-17 00:54 - 2010-03-21 19:43 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-09-17 00:54 - 2010-03-21 18:55 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-09-17 00:54 - 2001-07-21 22:17 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl 2014-09-17 00:53 - 2014-01-19 01:51 - 00458752 _____ () C:\WINDOWS\system32\config\SpybotSD.evt 2014-09-17 00:53 - 2010-03-21 18:55 - 00032034 _____ () C:\WINDOWS\SchedLgU.Txt 2014-09-17 00:53 - 2010-03-21 18:55 - 00000188 ___SH () C:\Documents and Settings\Administrator\ntuser.ini 2014-09-17 00:52 - 2014-09-17 00:52 - 00000000 ____D () C:\Documents and Settings\Administrator\Dane aplikacji\Toolbar4 2014-09-17 00:51 - 2010-03-21 19:36 - 00000000 __RHD () C:\Documents and Settings\Default User\Dane aplikacji 2014-09-17 00:51 - 2010-03-21 18:55 - 00000000 ___HD () C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2014-09-17 00:49 - 2010-03-21 19:36 - 01285174 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-09-17 00:49 - 2001-10-26 16:15 - 00565646 _____ () C:\WINDOWS\system32\perfh015.dat 2014-09-17 00:49 - 2001-10-26 16:15 - 00110608 _____ () C:\WINDOWS\system32\perfc015.dat 2014-09-17 00:46 - 2013-10-01 00:43 - 00000000 ____D () C:\Documents and Settings\Administrator\Dane aplikacji\zulagames 2014-09-17 00:46 - 2013-10-01 00:43 - 00000000 ____D () C:\Documents and Settings\Administrator\Dane aplikacji\SpeedAnalysis2 2014-09-17 00:46 - 2010-03-21 18:55 - 00000000 ____D () C:\Documents and Settings\LocalService\Dane aplikacji 2014-09-17 00:37 - 2010-03-21 18:55 - 00000000 ____D () C:\Documents and Settings\Administrator\Pulpit 2014-09-17 00:32 - 2014-09-17 00:32 - 00000000 ____D () C:\Documents and Settings\Administrator\Pulpit\Stare dane programu Firefox 2014-09-17 00:31 - 2014-04-05 09:42 - 00000232 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job 2014-09-16 23:25 - 2014-02-08 01:19 - 00001152 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-18UA.job 2014-09-16 23:21 - 2013-09-09 23:41 - 00001819 _____ () C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk 2014-09-16 23:10 - 2014-08-14 22:30 - 00001534 _____ () C:\WINDOWS\system32\ScanResults.xml 2014-09-16 06:10 - 2014-08-13 21:44 - 00000464 _____ () C:\WINDOWS\system32\ScannerSettings 2014-09-15 01:00 - 2010-06-30 22:08 - 00116602 _____ () C:\Documents and Settings\All Users\Dane aplikacji\hpzinstall.log 2014-09-15 00:39 - 2013-10-06 21:56 - 00001912 _____ () C:\WINDOWS\system32\ASOROSet.bin 2014-09-08 01:23 - 2012-05-04 22:43 - 00000000 ____D () C:\Program Files\PDFCreator 2014-09-08 00:24 - 2014-02-08 01:19 - 00001100 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-18Core.job 2014-09-06 01:22 - 2014-09-06 01:22 - 00868616 _____ (Opera Software) C:\Documents and Settings\Administrator\Moje dokumenty\Opera_NI_stable.exe 2014-09-06 01:22 - 2014-09-06 01:22 - 00000000 ____D () C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Opera Software 2014-09-06 01:22 - 2014-09-06 01:22 - 00000000 ____D () C:\Documents and Settings\Administrator\Dane aplikacji\Opera Software 2014-09-06 01:21 - 2014-09-06 01:21 - 00000696 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera 24.lnk 2014-09-06 00:29 - 2014-09-06 00:29 - 00000783 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk 2014-09-05 23:01 - 2014-08-10 15:14 - 00001759 _____ () C:\Documents and Settings\All Users\Pulpit\PC Scan & Repair by Reimage.lnk 2014-09-02 05:32 - 2010-03-22 03:25 - 00001477 _____ () C:\WINDOWS\webshots.ini 2014-08-23 02:23 - 2014-02-28 20:26 - 00002682 _____ () C:\WINDOWS\wmsetup.log 2014-08-20 00:17 - 2014-01-13 19:11 - 00001912 _____ () C:\WINDOWS\epplauncher.mif 2014-08-19 00:04 - 2011-11-15 17:01 - 00000000 ____D () C:\Documents and Settings\NetworkService\Ustawienia lokalne\temp Some content of TEMP: ==================== C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\Photooptimizer.exe C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp\sqlite3.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================