Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-09-2014 Ran by Chrisso (administrator) on AS on 28-09-2014 03:06:37 Running from C:\Users\Chrisso\Downloads Loaded Profile: Chrisso (Available profiles: UpdatusUser & Chrisso) Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Polski (Polska) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\Windows\System32\AsusService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe () C:\ProgramData\DatacardService\DCService.exe () C:\Program Files\Livedrive\VSSService.exe (IObit) C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe ( ) C:\Windows\System32\lxebcoms.exe (Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe (Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) C:\Windows\System32\PrintCtrl.exe (Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe () C:\Program Files\CyberLink\Shared files\RichVideo.exe (ActMask Co.,Ltd - http://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe (Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe (StarWind Software) C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe (Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Intel Corporation) C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe (ASUS) C:\Windows\AsScrPro.exe (ASUSTeK Computer Inc.) C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe () C:\Program Files\ASUS\Eee Docking\Eee Docking.exe (ASUSTeK Computer Inc.) C:\Program Files\EeePC\HotkeyService\HotkeyService.exe (ASUSTeK Computer Inc.) C:\Program Files\EeePC\SHE\SuperHybridEngine.exe (AsusTek Computer Inc.) C:\Program Files\ASUS\LiveUpdate\LiveUpdate.exe (ASUS) C:\Program Files\EeePC\CapsHook\CapsHook.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (AsusTek Computer Inc.) C:\Program Files\ASUS\USBChargeSetting\iSeriesCharge.exe (Mindjet) C:\Program Files\Mindjet\MindManager 7\MmReminderService.exe (Sony Corporation) C:\Program Files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe (ActMask Co.,Ltd - http://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe (ASUS Cloud Corporation) C:\Program Files\ASUS\ASUS WebStorage\3.0.143.296\AsusWSPanel.exe () C:\Program Files\Lexmark Pro200-S500 Series\lxebmon.exe () C:\Program Files\Lexmark Pro200-S500 Series\ezprint.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe (e-Kiosk S.A.) C:\Program Files\e-Kiosk Reader\eGazetaST.exe (Huawei Technologies Co., Ltd.) C:\Users\Chrisso\AppData\Roaming\blueconnect\ouc.exe (syncables, LLC) C:\Program Files\syncables\syncables desktop\syncables.exe (Sun Microsystems, Inc.) C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe (Google) C:\Program Files\Google\Drive\googledrivesync.exe (Livedrive Internet Ltd) C:\Program Files\Livedrive\Livedrive.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Google) C:\Program Files\Google\Drive\googledrivesync.exe (Dropbox, Inc.) C:\Users\Chrisso\AppData\Roaming\Dropbox\bin\Dropbox.exe (syncables, LLC) C:\Program Files\syncables\syncables desktop\syncablesMAPI.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (FranmoSoftware) C:\Program Files\Odkurzacz\odkurzacz.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (IObit) C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe () D:\Program Files\Komputer Świat Plus\unins000.exe () C:\Users\Chrisso\AppData\Local\Temp\_iu14D2N.tmp (Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google) C:\Users\Chrisso\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Chrisso\Downloads\FRST (1).exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [IAAnotif] => C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1594664 2009-11-19] (Synaptics Incorporated) HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [83240 2009-11-19] (Synaptics Incorporated) HKLM\...\Run: [ASUS Screen Saver Protector] => C:\windows\AsScrPro.exe [3058304 2010-07-30] (ASUS) HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.) HKLM\...\Run: [HotkeyMon] => C:\Program Files\EeePC\HotkeyService\HotKeyMon.exe [100328 2009-09-11] (ASUSTeK Computer Inc.) HKLM\...\Run: [HotkeyService] => C:\Program Files\EeePC\HotkeyService\HotkeyService.exe [1241520 2010-06-30] (ASUSTeK Computer Inc.) HKLM\...\Run: [SuperHybridEngine] => C:\Program Files\EeePC\SHE\SuperHybridEngine.exe [407552 2010-04-03] (ASUSTeK Computer Inc.) HKLM\...\Run: [LiveUpdate] => C:\Program Files\Asus\LiveUpdate\LiveUpdate.exe [976872 2010-06-12] (AsusTek Computer Inc.) HKLM\...\Run: [CapsHook] => C:\Program Files\EeePC\CapsHook\CapsHook.exe [445344 2010-05-29] (ASUS) HKLM\...\Run: [Eee Docking] => C:\Program Files\ASUS\Eee Docking\Eee Docking.exe [414384 2010-06-10] () HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9177632 2010-04-27] (Realtek Semiconductor) HKLM\...\Run: [iSeriesCharge] => C:\Program Files\ASUS\USBChargeSetting\iSeriesCharge.exe [49072 2010-06-23] (AsusTek Computer Inc.) HKLM\...\Run: [OOBESetup] => C:\Program Files\asus\OOBERegBackup\OOBERegBackup.exe [334848 2009-12-11] (ASUSTeK Computer Inc.) HKLM\...\Run: [ASUSPRP] => C:\Program Files\ASUS\APRP\APRP.EXE [2018032 2010-07-30] (ASUSTek Computer Inc.) HKLM\...\Run: [MMReminderService] => C:\Program Files\Mindjet\MindManager 7\MMReminderService.exe [37392 2007-05-18] (Mindjet) HKLM\...\Run: [Reader Library Launcher] => C:\Program Files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe [906648 2010-07-13] (Sony Corporation) HKLM\...\Run: [MDS_Menu] => D:\Program Files\CyberLink\MediaShow4\MediaShow4\MUITransfer\MUIStartMenu.exe [218408 2009-02-25] (CyberLink Corp.) HKLM\...\Run: [DataCardMonitor] => C:\Program Files\blueconnect\DataCardMonitor.exe [253952 2011-06-30] (Huawei Technologies Co., Ltd.) HKLM\...\Run: [PrintDisp] => C:\windows\system32\PrintDisp.exe [830464 2012-05-30] (ActMask Co.,Ltd - http://www.all2pdf.com) HKLM\...\Run: [ASUSWebStorage] => C:\Program Files\ASUS\ASUS WebStorage\3.0.143.296\AsusWSPanel.exe [740736 2012-08-03] (ASUS Cloud Corporation) HKLM\...\Run: [lxebmon.exe] => C:\Program Files\Lexmark Pro200-S500 Series\lxebmon.exe [772712 2013-01-23] () HKLM\...\Run: [EzPrint] => C:\Program Files\Lexmark Pro200-S500 Series\ezprint.exe [150264 2013-01-23] () HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5188112 2014-08-25] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [Corel Photo Downloader] => C:\Program Files\Corel\Corel Snapfire\Corel Photo Downloader.exe [462336 2006-08-04] (Corel, Inc.) HKLM\...\Run: [e-Kiosk] => C:\Program Files\e-Kiosk Reader\eGazetaST.exe [1690624 2011-09-21] (e-Kiosk S.A.) HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\Run: [HW_OPENEYE_OUC_blueconnect] => C:\Program Files\blueconnect\UpdateDog\ouc.exe [110592 2009-12-31] (Huawei Technologies Co., Ltd.) HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\Run: [Syncables] => C:\Program Files\syncables\syncables desktop\Syncables.exe [370480 2010-04-15] (syncables, LLC) HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\Run: [KSPlus] => D:\Program Files\Komputer Zwiat Plus\KSPlus.exe /min HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\Run: [AlcoholAutomount] => C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [33120 2009-11-15] (Alcohol Soft Development Team) HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [20203904 2013-12-06] (Google) HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\Run: [Livedrive] => C:\Program Files\Livedrive\Livedrive.exe [1842840 2014-07-24] (Livedrive Internet Ltd) HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\MountPoints2: H - H:\LaunchU3.exe -a HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\MountPoints2: {1a99d20d-46b5-11e0-993f-74f06dac3950} - E:\AutoRun.exe HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\MountPoints2: {777c1d0e-9d7f-11e0-b72b-74f06dac3950} - E:\AutoRun.exe HKU\S-1-5-21-3298792027-3563228929-1561543473-1002\...\MountPoints2: {777c1d22-9d7f-11e0-b72b-74f06dac3950} - E:\AutoRun.exe AppInit_DLLs: c:\windows\system32\nvinit.dll => c:\windows\system32\nvinit.dll [102504 2010-07-23] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AsusVibeLauncher.lnk ShortcutTarget: AsusVibeLauncher.lnk -> C:\Program Files\ASUS\AsusVibe\AsusVibeLauncher.exe (ASUSTeK Computer Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\Users\Chrisso\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Chrisso\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) SSODL: EldosMountNotificator - {5FF49FE8-B332-4CB9-B102-FB6951629E55} - C:\windows\system32\CbFsMntNtf3.dll (EldoS Corporation) ShellIconOverlayIdentifiers: BackupOverlay -> {B44A5D93-1351-41A1-BD91-5E92435D8ECD} => C:\Program Files\Livedrive\Extensions.dll (Livedrive Internet Ltd) ShellIconOverlayIdentifiers: EldosIconOverlay -> {5BB532A2-BF14-4CCC-86B7-71B81EF6F8BC} => C:\windows\system32\CbFsMntNtf3.dll (EldoS Corporation) ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google) ShellIconOverlayIdentifiers: LivedriveDownloadOverlay -> {CBCDB610-6B68-4EE9-B7A2-1282FD0C9292} => C:\Program Files\Livedrive\Extensions.dll (Livedrive Internet Ltd) ShellIconOverlayIdentifiers: LivedriveSharedOverlay -> {84CEF1E4-1356-4063-845F-05047F4DD52C} => C:\Program Files\Livedrive\Extensions.dll (Livedrive Internet Ltd) ShellIconOverlayIdentifiers: LivedriveSyncedOverlay -> {42058329-2FBF-4B33-8E52-3BE5754DE0C1} => C:\Program Files\Livedrive\Extensions.dll (Livedrive Internet Ltd) ShellIconOverlayIdentifiers: LivedriveUploadOverlay -> {39A1715A-E4CD-4F1E-B5C4-36B5DB80124E} => C:\Program Files\Livedrive\Extensions.dll (Livedrive Internet Ltd) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://eeepc.asus.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank BHO: CmjBrowserHelperObject Object -> {07A11D74-9D25-4fea-A833-8B0D76A5577A} -> C:\Program Files\Mindjet\MindManager 7\Mm7InternetExplorer.dll (Mindjet) BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (IObit) BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Lexmark -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll () BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: Freemake.YoutubeButton -> {e9e8eb35-ff77-455d-b677-91e5e4fc06c2} -> C:\windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_39-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_39-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_39-windows-i586.cab Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll No File Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 217.113.224.135 217.113.224.36 FireFox: ======== FF ProfilePath: C:\Users\Chrisso\AppData\Roaming\Mozilla\Firefox\Profiles\qalucvku.default FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF32_14_0_0_179.dll () FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @nitropdf.com/NitroPDF -> C:\Program Files\Nitro\Pro 9\npnitromozilla.dll No File FF Plugin: @real.com/nppl3260;version=6.0.12.450 -> C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpjplug;version=6.0.12.448 -> C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF Plugin: @sony.com/eBookLibrary -> C:\Program Files\Sony\Reader\Data\bin\npebldetectmoz.dll (Sony Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin HKCU: @citrixonline.com/appdetectorplugin -> C:\Users\Chrisso\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin -> C:\Users\Chrisso\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin -> C:\Users\Chrisso\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @tools.google.com/Google Update;version=3 -> C:\Users\Chrisso\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 -> C:\Users\Chrisso\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Users\Chrisso\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Chrisso\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF Extension: SeoQuake - C:\Users\Chrisso\AppData\Roaming\Mozilla\Firefox\Profiles\qalucvku.default\Extensions\{317B5128-0B0B-49b2-B2DB-1E7560E16C74} [2014-09-05] FF Extension: Push to Kindle - C:\Users\Chrisso\AppData\Roaming\Mozilla\Firefox\Profiles\qalucvku.default\Extensions\jid0-GokC6R49cBZciOKniufAR4QKFWc@jetpack.xpi [2014-06-03] FF Extension: Majestic SEO Backlink Analyzer - C:\Users\Chrisso\AppData\Roaming\Mozilla\Firefox\Profiles\qalucvku.default\Extensions\jid1-aY61q9iadjWyYg@jetpack.xpi [2014-05-06] FF Extension: SendToReader - C:\Users\Chrisso\AppData\Roaming\Mozilla\Firefox\Profiles\qalucvku.default\Extensions\sendtoreader-addon@sendtoreader.com.xpi [2014-06-02] FF Extension: SearchStatus - C:\Users\Chrisso\AppData\Roaming\Mozilla\Firefox\Profiles\qalucvku.default\Extensions\{d57c9ff1-6389-48fc-b770-f78bd89b6e8a}.xpi [2014-06-01] FF HKLM\...\Firefox\Extensions: [fmdownloader@gmail.com] - C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com FF Extension: Freemake Video Downloader Plugin - C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com [2013-03-10] FF HKLM\...\Firefox\Extensions: [ytfmdownloader@gmail.com] - C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com FF Extension: Freemake Youtube Download Button - C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com [2013-03-10] Chrome: ======= CHR HomePage: Default -> hxxp://www.onet.pl/ CHR StartupUrls: Default -> "hxxp://onet.pl/" CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter} CHR CustomProfile: C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Dysk Google) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-06] CHR Extension: (Mindjet) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgpkinhfhnglbhoeoeooekalejbhbhgl [2014-03-30] CHR Extension: (Kindle Cloud Launcher) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\cabgeinondjemaplkkcifnplhcbeeiob [2014-03-13] CHR Extension: (Adblock Plus) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-03-13] CHR Extension: (Video download helper) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbkchnicaiglcjpgbmpfmoafckkomdcm [2014-07-05] CHR Extension: (Realm of the Mad God) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhjfmaldpppkmjjgkmadddbanpabfflp [2014-03-13] CHR Extension: (Lucidchart Schematy - Desktop) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\djejicklhojeokkfmdelnempiecmdomj [2014-03-30] CHR Extension: (Springpad) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkmopoamfjnmppabeaphohombnjcjgla [2014-03-13] CHR Extension: (Eurosport.com) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdgbgdcalebljdefaifebkkdcemjlaai [2014-03-13] CHR Extension: (TinEye Reverse Image Search) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\haebnnbpedcbhciplfhjjkbafijpncjl [2014-03-13] CHR Extension: (Symphonical) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcgllakjbbignhambejggdljofdagfja [2014-03-30] CHR Extension: (Google Keep – notatki i listy) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2014-03-30] CHR Extension: (Send to Kindle (by Klip.me)) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipkfnchcgalnafehpglfbommidgmalan [2014-03-13] CHR Extension: (Evernote Web) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2014-09-26] CHR Extension: (Skype Click to Call) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-01-10] CHR Extension: (Extensions Manager (aka Switcher)) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpleipinonnoibneeejgjnoeekmbopbc [2014-03-13] CHR Extension: (Save to Pocket) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2014-03-13] CHR Extension: (Google Wallet) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23] CHR Extension: (Push to Kindle) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnaiinchjaonopoejhknmgjingcnaloc [2014-09-26] CHR Extension: (SEO Analysis with Seoptimer) - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\pplbjgemahdghhnelnlihpflpdkkmmgj [2014-04-13] CHR HKLM\...\Chrome\Extension: [dopemniaeocfenlpnoannaefnhfcjcgi] - C:\Users\Chrisso\AppData\Local\Google\Chrome\User Data\Default\Extensions\searchswitch.crx [] CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14] CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Chrisso\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-12-05] CHR StartMenuInternet: Google Chrome - C:\Users\Chrisso\AppData\Local\Google\Chrome\Application\chrome.exe ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AsusService; C:\Windows\System32\AsusService.exe [219136 2009-08-19] () [File not signed] S3 AVG Security Toolbar Service; C:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe [167264 2011-11-10] () R2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3242000 2014-08-25] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-08-25] (AVG Technologies CZ, s.r.o.) R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) R2 DCService.exe; C:\ProgramData\DatacardService\DCService.exe [229376 2010-08-19] () [File not signed] S3 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [101376 2013-02-25] (Freemake) [File not signed] S3 FreemakeVideoCapture; C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe [9216 2013-02-25] (Ellora Assets Corp.) [File not signed] R2 LivedriveVSSService; C:\Program Files\Livedrive\VSSService.exe [156312 2014-07-24] () R2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2151744 2013-12-06] (IObit) S2 lxebCATSCustConnectService; C:\windows\system32\spool\DRIVERS\W32X86\3\\lxebserv.exe [193192 2010-04-14] (Lexmark International, Inc.) R2 lxeb_device; C:\windows\system32\lxebcoms.exe [598696 2010-04-14] ( ) R2 Net Driver HPZ12; C:\windows\system32\HPZinw12.dll [44032 2009-05-15] (Hewlett-Packard) [File not signed] R2 Pml Driver HPZ12; C:\windows\system32\HPZipm12.dll [53760 2009-05-15] (Hewlett-Packard) [File not signed] R2 Printer Control; C:\windows\system32\PrintCtrl.exe [77824 2012-01-20] (ActMask Co.,Ltd - HTTP://WWW.ALL2PDF.COM) [File not signed] R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [244904 2009-04-06] () [File not signed] S3 Sony SCSI Helper Service; C:\Program Files\Common Files\Sony Shared\Fsk\SonySCSIHelperService.exe [73728 2010-04-02] (Sony Corporation) [File not signed] R2 StarWindServiceAE; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed] S3 SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed] S3 T37FSPSuppEmail; C:\windows\system32\T37FSPSuppEmail.exe [597760 2010-12-19] (Sandler Consulting) S3 wampapache; d:\wamp\bin\apache\apache2.4.9\bin\httpd.exe [22016 2014-05-01] (Apache Software Foundation) [File not signed] S3 wampmysqld; d:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe [10959360 2014-05-01] () [File not signed] S2 ABBYY.Licensing.PDFTransformer.Classic.3.0; "F:\Program Files\ABBYY PDF Transformer 3.0\NetworkLicenseServer.exe" -service [X] S3 NitroDriverReadSpool9; "C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9.exe" [X] S2 vToolbarUpdater18.1.9; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R0 AiDriver; C:\windows\System32\DRIVERS\AiDriver.sys [13224 2010-05-20] (ASUSTek Computer Inc.) R1 AsUpIO; C:\windows\System32\drivers\AsUpIO.sys [11520 2010-03-31] () R1 Avgdiskx; C:\windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\windows\System32\DRIVERS\avgidsdriverx.sys [200984 2014-07-21] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\windows\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\windows\System32\DRIVERS\avgldx86.sys [188696 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\windows\System32\DRIVERS\avgmfx86.sys [98584 2014-08-06] (AVG Technologies CZ, s.r.o.) R0 Avgrkx86; C:\windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\windows\System32\DRIVERS\avgtdix.sys [197400 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\windows\system32\drivers\avgtpx86.sys [42784 2014-08-07] (AVG Technologies) R3 btwampfl; C:\windows\System32\drivers\btwampfl.sys [293928 2010-05-21] (Broadcom Corporation.) R1 cbfs3; C:\windows\system32\drivers\cbfs3.sys [299144 2012-11-10] (EldoS Corporation) R3 kbfiltr; C:\windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( ) R2 npf; C:\windows\System32\drivers\npf.sys [35088 2011-02-11] (CACE Technologies, Inc.) R0 nvpciflt; C:\windows\System32\DRIVERS\nvpciflt.sys [19656 2010-07-23] (NVIDIA Corporation) R2 Sentinel; C:\windows\System32\Drivers\SENTINEL.SYS [73728 2002-04-08] (Rainbow Technologies, Inc.) [File not signed] S3 Sntnlusb; C:\windows\System32\DRIVERS\SNTNLUSB.SYS [20032 2002-04-08] (Rainbow Technologies Inc.) [File not signed] R0 sptd; C:\windows\System32\Drivers\sptd.sys [691696 2013-03-24] () [File not signed] U3 a5awdvd3; C:\windows\system32\Drivers\a5awdvd3.sys [0 ] (Microsoft Corporation) S1 ASPI32; No ImagePath U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [204800 2010-04-07] (Huawei Technologies Co., Ltd.) S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-28 03:05 - 2014-09-28 03:05 - 01100288 _____ (Farbar) C:\Users\Chrisso\Downloads\FRST (1).exe 2014-09-27 11:06 - 2014-09-27 11:06 - 00000121 _____ () C:\Users\Chrisso\Desktop\Zmiany.txt 2014-09-27 02:07 - 2014-09-27 02:07 - 00019537 _____ () C:\Users\Chrisso\Downloads\hijackthis.log 2014-09-27 01:26 - 2014-09-27 01:26 - 00388608 _____ (Trend Micro Inc.) C:\Users\Chrisso\Downloads\HijackThis.exe 2014-09-26 12:13 - 2014-09-26 12:13 - 01373475 _____ () C:\Users\Chrisso\Downloads\AdwCleaner (2).exe 2014-09-25 12:38 - 2014-09-25 12:38 - 02367111 _____ () C:\Users\Chrisso\Downloads\smokwawelski.zip 2014-09-25 12:36 - 2014-09-25 12:36 - 04636329 _____ () C:\Users\Chrisso\Downloads\szkolenie.zip 2014-09-25 12:35 - 2014-09-25 12:35 - 04636329 _____ () C:\Users\Chrisso\Downloads\prezentacja.zip 2014-09-25 12:33 - 2014-09-25 12:33 - 06079663 _____ () C:\Users\Chrisso\Downloads\smok.zip 2014-09-24 23:23 - 2014-09-27 15:45 - 00000000 ____D () C:\Users\Chrisso\Desktop\Pulitzer 1990-2012 2014-09-24 23:23 - 2014-09-24 23:12 - 00000000 ____D () C:\Users\Chrisso\Desktop\__MACOSX 2014-09-24 23:22 - 2014-09-24 23:22 - 08472593 _____ () C:\Users\Chrisso\Downloads\Pulitzer 1990-2012.zip 2014-09-24 09:54 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll 2014-09-22 19:51 - 2014-09-25 00:57 - 00000000 ____D () C:\Users\Chrisso\Desktop\Różne 2014-09-19 01:16 - 2014-09-19 01:16 - 00265660 _____ () C:\Users\Chrisso\Downloads\duplicate-examiner_v2.1.2.zip 2014-09-19 01:15 - 2014-09-19 01:15 - 00544382 _____ () C:\Users\Chrisso\Downloads\now-or-never-wiz_v1.7.zip 2014-09-19 01:11 - 2014-09-19 01:12 - 48823626 _____ () C:\Users\Chrisso\Downloads\Keyword-Suggestion-Windows.zip 2014-09-19 00:55 - 2014-09-19 00:55 - 00711585 _____ () C:\Users\Chrisso\Downloads\CamStudioSetup_v2.7.2.zip 2014-09-19 00:49 - 2014-09-19 00:49 - 00706725 _____ () C:\Users\Chrisso\Downloads\EasyKeywordPro_mrr1.zip 2014-09-19 00:48 - 2014-09-19 00:48 - 15525432 _____ () C:\Users\Chrisso\Downloads\nooptin.zip 2014-09-19 00:47 - 2014-09-19 00:47 - 00226639 _____ () C:\Users\Chrisso\Downloads\5 Squeeze pages Short.zip 2014-09-19 00:32 - 2014-09-19 00:32 - 12929263 _____ () C:\Users\Chrisso\Downloads\10Blogs-InstallationVideo.zip 2014-09-19 00:31 - 2014-09-19 00:31 - 39017471 _____ () C:\Users\Chrisso\Downloads\300-Unique-Logos.zip 2014-09-19 00:29 - 2014-09-19 00:29 - 41579405 _____ () C:\Users\Chrisso\Downloads\15NichePacks.zip 2014-09-19 00:28 - 2014-09-19 00:28 - 03669140 _____ () C:\Users\Chrisso\Downloads\12 WordPress Themes.zip 2014-09-19 00:25 - 2014-09-19 00:25 - 37952615 _____ () C:\Users\Chrisso\Downloads\10AdsenseSites.zip 2014-09-19 00:23 - 2014-09-19 00:23 - 03355256 _____ () C:\Users\Chrisso\Downloads\10 Niche Booklets with PLR.zip 2014-09-18 23:17 - 2014-09-18 23:18 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-09-18 01:42 - 2014-09-25 16:16 - 00000000 ____D () C:\Users\Chrisso\Desktop\Prezentacje 2014-09-15 19:31 - 2014-09-15 19:32 - 112098272 _____ () C:\Users\Chrisso\Downloads\wp_premium_seo_tutorial.zip 2014-09-15 13:06 - 2014-09-15 13:06 - 00015513 _____ () C:\Users\Chrisso\Downloads\Zalacznik_Energia_00014-EXPO-ŁÓDŹ-dane do umowy sprzedaży.xlsx 2014-09-15 12:50 - 2014-09-15 12:50 - 00023552 _____ () C:\Users\Chrisso\Downloads\tabelka_pp.xls 2014-09-15 12:12 - 2014-09-22 20:00 - 00000000 ____D () C:\Users\Chrisso\Desktop\JoannaTRUST 2014-09-15 12:06 - 2014-09-15 12:06 - 00236342 _____ () C:\Users\Chrisso\Downloads\fwdinformacjazwizanazprocesemprzygotowawczymdotycz.zip 2014-09-14 21:26 - 2014-09-14 21:27 - 02200064 _____ () C:\Users\Chrisso\Downloads\wyklad_4_o_prezentacji (1).ppt 2014-09-14 02:13 - 2014-09-14 02:13 - 02990787 _____ () C:\Users\Chrisso\Downloads\premiumseopack (1).zip 2014-09-11 19:57 - 2014-09-11 19:57 - 05576769 _____ (Swearware) C:\Users\Chrisso\Downloads\ComboFix (1).exe 2014-09-11 19:55 - 2014-09-11 19:55 - 01370467 _____ () C:\Users\Chrisso\Downloads\AdwCleaner (1).exe 2014-09-11 19:04 - 2014-09-11 19:04 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-09-11 18:49 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll 2014-09-11 18:49 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe 2014-09-11 18:49 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe 2014-09-11 18:49 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll 2014-09-11 16:46 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2014-09-11 16:46 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2014-09-11 16:46 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2014-09-11 16:46 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2014-09-11 16:46 - 2014-08-18 23:57 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll 2014-09-11 16:46 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2014-09-11 16:46 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2014-09-11 16:46 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll 2014-09-11 16:46 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll 2014-09-11 16:46 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2014-09-11 16:46 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2014-09-11 16:46 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2014-09-11 16:46 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2014-09-11 16:46 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2014-09-11 16:46 - 2014-08-18 23:36 - 00108032 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe 2014-09-11 16:46 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll 2014-09-11 16:46 - 2014-08-18 23:30 - 00646144 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2014-09-11 16:46 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2014-09-11 16:46 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll 2014-09-11 16:46 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2014-09-11 16:46 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2014-09-11 16:46 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2014-09-11 16:46 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2014-09-11 16:46 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2014-09-11 16:46 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2014-09-11 16:46 - 2014-08-18 23:08 - 00673792 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2014-09-11 16:46 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2014-09-11 16:46 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2014-09-11 16:46 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2014-09-11 16:46 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2014-09-11 16:41 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2014-09-11 14:17 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\windows\system32\sqlite3.dll 2014-09-11 14:12 - 2014-09-26 15:25 - 00000000 ____D () C:\AdwCleaner 2014-09-11 14:01 - 2014-09-11 14:01 - 01370467 _____ () C:\Users\Chrisso\Downloads\AdwCleaner.exe 2014-09-11 13:58 - 2014-09-11 13:59 - 05576769 _____ (Swearware) C:\Users\Chrisso\Downloads\ComboFix.exe 2014-09-11 13:48 - 2014-09-11 13:55 - 00000238 _____ () C:\Users\Chrisso\Downloads\Search.txt 2014-09-11 13:25 - 2014-09-11 13:32 - 00095787 _____ () C:\Users\Chrisso\Downloads\Addition.txt 2014-09-11 13:18 - 2014-09-28 03:07 - 00000000 ____D () C:\FRST 2014-09-11 13:18 - 2014-09-28 03:06 - 00032446 _____ () C:\Users\Chrisso\Downloads\FRST.txt 2014-09-11 13:16 - 2014-09-11 13:17 - 01097728 _____ (Farbar) C:\Users\Chrisso\Downloads\FRST.exe 2014-09-10 13:48 - 2014-09-10 13:49 - 00000000 ____D () C:\Users\Chrisso\Desktop\Czcionki 2014-09-10 13:14 - 2014-09-10 13:14 - 00075339 _____ () C:\Users\Chrisso\Downloads\covertmessenger.zip 2014-09-10 09:45 - 2014-07-07 03:40 - 01059840 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll 2014-09-10 09:45 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll 2014-09-10 09:43 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll 2014-09-10 09:43 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2014-09-09 22:50 - 2014-09-09 22:50 - 02202624 _____ () C:\Users\Chrisso\Downloads\wyklad_4_o_prezentacji.ppt 2014-09-09 16:41 - 2014-09-09 16:41 - 00195103 _____ () C:\Users\Chrisso\Downloads\Quicksand.zip 2014-09-09 16:41 - 2014-09-09 16:41 - 00089736 _____ () C:\Users\Chrisso\Downloads\SolutionCreators.potx 2014-09-09 00:02 - 2014-09-09 00:02 - 10675146 _____ () C:\Users\Chrisso\Downloads\VideosGuide.zip 2014-09-07 21:49 - 2014-09-07 21:49 - 04416055 _____ () C:\Users\Chrisso\Downloads\WPBuzzMachine (1).zip 2014-09-07 21:48 - 2014-09-07 21:49 - 03320988 _____ () C:\Users\Chrisso\Downloads\ViralVideoHijacker.zip 2014-09-07 21:43 - 2014-09-07 21:44 - 09474930 _____ () C:\Users\Chrisso\Downloads\ViralTrafficNinja.zip 2014-09-07 21:42 - 2014-09-07 21:42 - 01491240 _____ () C:\Users\Chrisso\Downloads\MoneyBlogPro.zip 2014-09-07 21:36 - 2014-09-07 21:38 - 127742418 _____ () C:\Users\Chrisso\Downloads\AutoBlogRevealed.zip 2014-09-07 01:23 - 2014-09-07 01:23 - 00004562 _____ () C:\Users\Chrisso\Downloads\bez_nazwy 2014-09-06 00:33 - 2014-09-06 00:34 - 01859142 _____ () C:\Users\Chrisso\Downloads\newimages.zip 2014-09-06 00:08 - 2014-09-06 00:08 - 06304654 _____ () C:\Users\Chrisso\Downloads\WebIconsPack.5700.zip 2014-09-05 20:25 - 2014-09-05 20:26 - 44528612 _____ () C:\Users\Chrisso\Downloads\WordpressSalespageThemesV1.4319.zip 2014-09-05 20:20 - 2014-09-05 20:20 - 16645502 _____ () C:\Users\Chrisso\Downloads\WordpressMinisiteTemplatePackage.4189.zip 2014-09-05 12:55 - 2014-09-15 13:05 - 00015513 _____ () C:\Users\Chrisso\Downloads\Zalacznik_Energia_00014.xlsx 2014-09-05 02:21 - 2014-09-05 02:22 - 36490274 _____ () C:\Users\Chrisso\Downloads\101TransparentBizImages.zip 2014-09-05 02:13 - 2014-09-05 02:13 - 03995879 _____ () C:\Users\Chrisso\Downloads\VideoSketch.exe 2014-09-05 02:07 - 2014-09-05 02:07 - 00001893 _____ () C:\Users\Public\Desktop\EasySketchPro.lnk 2014-09-05 02:07 - 2014-09-05 02:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasySketchPro 2014-09-05 02:05 - 2014-09-05 02:08 - 00000000 ____D () C:\Program Files\EasySketchPro 2014-09-05 01:59 - 2014-09-05 02:01 - 130627413 _____ () C:\Users\Chrisso\Downloads\EasySketchProSetup1.0.9_x86.zip 2014-09-05 01:39 - 2014-09-05 01:43 - 106390141 _____ () C:\Users\Chrisso\Downloads\SalesGraphicsRush2_pdev.zip 2014-09-01 01:07 - 2014-09-01 01:07 - 00002074 _____ () C:\Users\Chrisso\Downloads\skup wierzytelności.csv 2014-09-01 01:04 - 2014-09-01 01:04 - 00003314 _____ () C:\Users\Chrisso\Downloads\kapitał obrotowy.csv 2014-09-01 00:55 - 2014-09-01 00:55 - 00016442 _____ () C:\Users\Chrisso\Downloads\płynność finansowa.csv 2014-09-01 00:47 - 2014-09-01 00:47 - 00005570 _____ () C:\Users\Chrisso\Downloads\faktoring.csv 2014-09-01 00:40 - 2014-09-03 02:07 - 00000000 ____D () C:\Users\Chrisso\AppData\Local\Adobe 2014-09-01 00:20 - 2014-09-01 00:21 - 35388026 _____ () C:\Users\Chrisso\Downloads\Licence 4 Life 2014-09-01 12-20.bak 2014-08-31 23:25 - 2014-08-31 23:25 - 00000053 _____ () C:\Users\Chrisso\Downloads\google4bbe5895cf267525.html 2014-08-31 02:27 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msiscsi.sys 2014-08-31 02:27 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\windows\system32\Drivers\storport.sys 2014-08-31 02:27 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Diskdump.sys 2014-08-31 02:27 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\iologmsg.dll 2014-08-31 02:27 - 2014-01-28 04:07 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll 2014-08-31 02:26 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\windows\system32\osk.exe 2014-08-31 02:26 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll 2014-08-31 02:26 - 2014-06-03 11:30 - 00101824 _____ (Microsoft Corporation) C:\windows\system32\consent.exe 2014-08-31 02:26 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\windows\system32\msi.dll 2014-08-31 02:26 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\windows\system32\authui.dll 2014-08-31 02:26 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll 2014-08-31 02:26 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys 2014-08-31 02:26 - 2014-04-05 04:25 - 01294272 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys 2014-08-31 02:26 - 2014-04-05 04:24 - 00187840 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS 2014-08-31 02:26 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll 2014-08-31 02:26 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys 2014-08-31 02:25 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll 2014-08-31 02:25 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll 2014-08-31 02:25 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll 2014-08-31 02:25 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll 2014-08-31 02:25 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll 2014-08-31 02:25 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll 2014-08-31 02:24 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2014-08-31 02:24 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll 2014-08-31 02:24 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys 2014-08-31 02:24 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys 2014-08-31 02:24 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll 2014-08-31 02:24 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll 2014-08-31 02:24 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll 2014-08-31 02:24 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe 2014-08-31 02:24 - 2014-03-04 11:17 - 00868352 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll 2014-08-31 02:24 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\windows\system32\wer.dll 2014-08-31 02:14 - 2014-07-14 03:42 - 00654336 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll 2014-08-31 02:14 - 2014-06-16 03:44 - 00730048 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys 2014-08-31 02:14 - 2014-06-16 03:44 - 00219072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys 2014-08-31 02:14 - 2014-06-16 03:40 - 00107520 _____ (Microsoft Corporation) C:\windows\system32\cdd.dll 2014-08-31 02:12 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe 2014-08-31 02:12 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2014-08-31 02:12 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\windows\system32\objsel.dll 2014-08-31 02:12 - 2014-03-04 11:17 - 00304128 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe 2014-08-31 02:12 - 2014-03-04 11:17 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2014-08-31 02:12 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\cngprovider.dll 2014-08-31 02:12 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\windows\system32\adprovider.dll 2014-08-31 02:12 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\capiprovider.dll 2014-08-31 02:12 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\dpapiprovider.dll 2014-08-31 02:12 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\dimsroam.dll 2014-08-31 02:12 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\windows\system32\wincredprovider.dll 2014-08-31 02:11 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll 2014-08-31 02:11 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll 2014-08-31 02:11 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml6r.dll 2014-08-31 02:11 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-28 02:53 - 2014-08-06 20:27 - 00000518 _____ () C:\windows\Tasks\G2MUpdateTask-S-1-5-21-3298792027-3563228929-1561543473-1002.job 2014-09-28 02:38 - 2009-07-14 06:34 - 00009920 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-28 02:38 - 2009-07-14 06:34 - 00009920 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-28 02:30 - 2012-10-30 12:33 - 00000000 ___RD () C:\Users\Chrisso\Dropbox 2014-09-28 02:30 - 2012-10-30 12:29 - 00000000 ____D () C:\Users\Chrisso\AppData\Roaming\Dropbox 2014-09-28 02:28 - 2013-12-05 13:03 - 00000000 ___RD () C:\Users\Chrisso\Dysk Google 2014-09-28 02:28 - 2013-02-21 16:31 - 00000000 ____D () C:\Users\Chrisso\Documents\Pliki programu Outlook 2014-09-28 02:28 - 2012-12-30 16:23 - 00000000 ____D () C:\Users\Chrisso\Documents\KSPlus 2014-09-28 02:27 - 2013-12-06 15:03 - 00000000 ____D () C:\ProgramData\ProductData 2014-09-28 02:27 - 2011-02-02 10:08 - 00062997 _____ () C:\ProgramData\lxebscan.log 2014-09-28 02:26 - 2009-07-14 06:53 - 00000006 ____H () C:\windows\Tasks\SA.DAT 2014-09-28 02:26 - 2009-07-14 06:39 - 00123563 _____ () C:\windows\setupact.log 2014-09-28 02:25 - 2010-07-30 02:12 - 00179680 _____ () C:\windows\PFRO.log 2014-09-28 02:20 - 2014-02-05 00:29 - 00000000 ____D () C:\Users\Chrisso\AppData\Local\CrashDumps 2014-09-28 02:20 - 2010-11-18 15:16 - 01344066 _____ () C:\windows\WindowsUpdate.log 2014-09-27 18:11 - 2010-07-30 02:16 - 00000000 ____D () C:\ProgramData\Temp 2014-09-27 17:55 - 2010-11-18 01:53 - 00000000 ____D () C:\ProgramData\MFAData 2014-09-26 17:33 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\rescache 2014-09-26 16:07 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\system32\NDF 2014-09-26 11:54 - 2012-01-24 04:25 - 00000000 ____D () C:\Users\Chrisso\AppData\Local\ChomikBox 2014-09-26 09:59 - 2010-07-30 02:03 - 01672070 _____ () C:\windows\system32\PerfStringBackup.INI 2014-09-26 09:59 - 2009-06-20 21:25 - 00741124 _____ () C:\windows\system32\perfh015.dat 2014-09-26 09:59 - 2009-06-20 21:25 - 00156408 _____ () C:\windows\system32\perfc015.dat 2014-09-25 21:18 - 2012-01-24 04:25 - 00000000 ____D () C:\Users\Chrisso\.gstreamer-0.10 2014-09-25 15:31 - 2011-07-01 23:54 - 00000000 ____D () C:\Users\Chrisso\Desktop\Dokumenty 2014-09-25 15:28 - 2012-05-28 13:48 - 04654592 ___SH () C:\Users\Chrisso\Desktop\Thumbs.db 2014-09-25 13:22 - 2010-12-22 09:02 - 00000000 ____D () C:\Users\Chrisso\AppData\Local\Windows Live 2014-09-25 00:57 - 2014-02-14 01:34 - 00000000 ____D () C:\Users\Chrisso\Desktop\Bieżace 2014-09-24 23:33 - 2011-02-10 21:58 - 00032256 _____ () C:\Users\Chrisso\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-09-24 21:39 - 2014-03-27 02:22 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-09-24 21:36 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\system32\pl-PL 2014-09-24 11:43 - 2014-08-09 20:40 - 00000000 ____D () C:\Users\Chrisso\Desktop\Weblify 2014-09-22 19:44 - 2009-07-14 06:53 - 00032600 _____ () C:\windows\Tasks\SCHEDLGU.TXT 2014-09-22 19:36 - 2013-04-10 13:10 - 00000000 ____D () C:\Users\Chrisso\Desktop\TRUST 2014-09-19 02:21 - 2010-11-23 01:02 - 00000000 ____D () C:\Users\Chrisso\Documents\My Maps 2014-09-18 14:45 - 2012-10-30 12:30 - 00000000 ____D () C:\Users\Chrisso\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-09-15 13:03 - 2013-03-15 15:43 - 00000000 ____D () C:\ProgramData\Wild Media Server 2014-09-12 16:10 - 2009-07-14 04:37 - 00000000 ____D () C:\windows\Microsoft.NET 2014-09-11 19:34 - 2014-03-19 15:07 - 00000000 ____D () C:\Users\Chrisso\Desktop\Pluszak 2014-09-11 19:17 - 2014-04-09 01:16 - 00000000 ____D () C:\Users\Chrisso\Desktop\SEO 2014-09-11 19:09 - 2012-09-25 11:45 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-09-11 18:18 - 2009-07-14 09:49 - 00000000 ____D () C:\Program Files\Windows Journal 2014-09-11 16:10 - 2013-07-31 11:05 - 00000000 ____D () C:\windows\system32\MRT 2014-09-11 15:42 - 2013-01-14 01:00 - 00000930 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job 2014-09-11 15:27 - 2010-11-18 01:00 - 00000000 ____D () C:\Users\Chrisso 2014-09-05 02:08 - 2010-11-20 00:45 - 00000000 ____D () C:\Users\Chrisso\Desktop\Skróty 2014-09-03 11:04 - 2014-05-02 15:08 - 00000971 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-09-03 11:04 - 2014-04-01 11:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-09-01 00:37 - 2013-01-14 01:00 - 00699568 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe 2014-09-01 00:37 - 2011-06-11 11:00 - 00071344 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl 2014-08-31 01:29 - 2010-11-20 00:58 - 00000000 ____D () C:\Users\Chrisso\Desktop\Teksty 2014-08-31 01:13 - 2009-07-14 06:33 - 04128040 _____ () C:\windows\system32\FNTCACHE.DAT 2014-08-29 13:01 - 2010-12-22 08:55 - 98758480 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe Some content of TEMP: ==================== C:\Users\Chrisso\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmptzv9c7.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\windows\explorer.exe => File is digitally signed C:\windows\system32\winlogon.exe => File is digitally signed C:\windows\system32\wininit.exe => File is digitally signed C:\windows\system32\svchost.exe => File is digitally signed C:\windows\system32\services.exe => File is digitally signed C:\windows\system32\User32.dll => File is digitally signed C:\windows\system32\userinit.exe => File is digitally signed C:\windows\system32\rpcss.dll => File is digitally signed C:\windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-26 16:48 ==================== End Of Log ============================