OTL logfile created on: 2011-05-06 13:44:17 - Run 3 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Łukasz\Pulpit Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.2180) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 255,00 Mb Total Physical Memory | 58,00 Mb Available Physical Memory | 23,00% Memory free 1,00 Gb Paging File | 1,00 Gb Available in Paging File | 74,00% Paging File free Paging file location(s): [Binary data over 100 bytes] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 9,76 Gb Total Space | 1,84 Gb Free Space | 18,83% Space Free | Partition Type: NTFS Drive D: | 29,29 Gb Total Space | 27,71 Gb Free Space | 94,61% Space Free | Partition Type: NTFS Drive E: | 35,47 Gb Total Space | 25,66 Gb Free Space | 72,34% Space Free | Partition Type: FAT32 Computer Name: KUSZA | User Name: Łukasz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (All) ==========[/color] PRC - [2011-04-17 13:17:24 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\OTL.exe PRC - [2011-02-02 22:40:41 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe PRC - [2011-01-30 00:11:32 | 000,888,120 | ---- | M] (Samsung) -- C:\Program Files\Samsung\Kies\KiesHelper.exe PRC - [2011-01-29 18:00:42 | 000,650,040 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Program Files\Samsung\Kies\External\DeviceModules\DeviceManager.exe PRC - [2011-01-29 18:00:40 | 000,146,232 | ---- | M] (Mobileleader Co., Ltd.) -- C:\Program Files\Samsung\Kies\External\DeviceModules\ConnectionManager.exe PRC - [2011-01-11 12:07:02 | 001,771,288 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe PRC - [2011-01-10 15:01:14 | 002,548,040 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe PRC - [2010-12-02 16:47:36 | 000,381,624 | R--- | M] (cFos Software GmbH) -- C:\Program Files\cFosSpeed\spd.exe PRC - [2010-10-29 15:49:28 | 000,249,064 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe PRC - [2010-03-18 14:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe PRC - [2009-02-19 18:47:38 | 000,198,688 | ---- | M] () -- C:\Program Files\Godlike Developers\RAM Saver Professional\ramsaverpro.exe PRC - [2008-03-25 22:27:58 | 000,049,152 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\HP Software Update\hpwuSchd2.exe PRC - [2005-03-02 18:12:54 | 000,024,576 | ---- | M] () -- C:\Program Files\Topro\tppoll.exe PRC - [2004-08-04 00:44:30 | 000,504,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe PRC - [2004-08-04 00:44:30 | 000,126,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiapsrv.exe PRC - [2004-08-04 00:44:28 | 000,108,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe PRC - [2004-08-04 00:44:28 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe PRC - [2004-08-04 00:44:28 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [WUDFSERVICEGROUP] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [HPZ12] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [HPZ12] PRC - [2004-08-04 00:44:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2004-08-04 00:44:22 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe PRC - [2004-08-04 00:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2004-08-04 00:44:20 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe PRC - [2004-08-04 00:44:20 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2011-04-17 13:17:24 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\OTL.exe MOD - [2010-12-29 02:42:04 | 000,285,480 | ---- | M] (COMODO) -- C:\WINDOWS\system32\guard32.dll MOD - [2004-08-04 00:44:32 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv MOD - [2004-08-04 00:44:14 | 000,729,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll MOD - [2004-08-04 00:44:14 | 000,578,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll MOD - [2004-08-04 00:44:14 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll MOD - [2004-08-04 00:44:14 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll MOD - [2004-08-04 00:44:12 | 000,473,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll MOD - [2004-08-04 00:44:12 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll MOD - [2004-08-04 00:44:10 | 008,412,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll MOD - [2004-08-04 00:44:10 | 000,996,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll MOD - [2004-08-04 00:44:10 | 000,581,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll MOD - [2004-08-04 00:44:10 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll MOD - [2004-08-04 00:44:10 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll MOD - [2004-08-04 00:44:08 | 001,281,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll MOD - [2004-08-04 00:44:08 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll MOD - [2004-08-04 00:44:08 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll MOD - [2004-08-04 00:44:06 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll MOD - [2004-08-04 00:44:04 | 000,294,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\MSCTF.dll MOD - [2004-08-04 00:44:02 | 001,012,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll MOD - [2004-08-04 00:44:00 | 000,278,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll MOD - [2004-08-04 00:43:58 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll MOD - [2004-08-04 00:43:58 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\fltlib.dll MOD - [2004-08-04 00:43:56 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll MOD - [2004-08-04 00:43:56 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll MOD - [2004-08-04 00:43:54 | 000,501,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll MOD - [2004-08-04 00:43:52 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll MOD - [2004-08-04 00:43:48 | 000,716,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll MOD - [2004-08-04 00:42:34 | 001,050,624 | R--- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll MOD - [2004-08-03 23:01:18 | 000,102,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- -- (gupdate) Usługa Google Update (gupdate) SRV - File not found [Auto | Stopped] -- -- (ekrn) SRV - [2011-01-11 12:07:02 | 001,771,288 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2010-12-02 16:47:36 | 000,381,624 | R--- | M] (cFos Software GmbH) [Auto | Running] -- C:\Program Files\cFosSpeed\spd.exe -- (cFosSpeedS) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-01-06 18:37:04 | 000,094,784 | ---- | M] (COMODO) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\inspect.sys -- (Inspect) DRV - [2011-01-06 18:37:04 | 000,027,576 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cmdhlp.sys -- (cmdHlp) DRV - [2011-01-06 18:37:02 | 000,239,368 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard) DRV - [2011-01-06 18:37:02 | 000,015,592 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmderd.sys -- (cmderd) DRV - [2010-12-21 07:55:02 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2010-12-21 07:55:02 | 000,100,224 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bserd.sys -- (ss_bserd) DRV - [2010-12-21 07:55:02 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM) DRV - [2010-12-21 07:55:02 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter) DRV - [2010-12-02 16:47:40 | 000,948,920 | ---- | M] (cFos Software GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\cfosspeed.sys -- (cFosSpeed) DRV - [2010-11-18 22:29:33 | 000,231,248 | ---- | M] (TrueCrypt Foundation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\truecrypt.sys -- (truecrypt) DRV - [2009-08-04 13:04:28 | 000,102,656 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbfake.sys -- (hwusbfake) DRV - [2009-08-04 13:04:28 | 000,102,400 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2009-08-04 12:04:26 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5) DRV - [2009-08-04 12:04:26 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5) DRV - [2009-05-20 23:32:28 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BVRPMPR5.SYS -- (BVRPMPR5) DRV - [2009-04-09 16:21:12 | 000,094,360 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir) DRV - [2009-04-09 16:18:02 | 000,107,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv) DRV - [2009-04-09 16:10:30 | 000,113,960 | ---- | M] (ESET) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2004-09-01 11:42:18 | 000,138,396 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Pfc027.sys -- (SoC PC-Camera Service) DRV - [2004-08-04 02:35:04 | 000,701,440 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2004-08-04 01:08:22 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2002-06-13 05:37:16 | 000,045,568 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\R8139n51.sys -- (rtl8139) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird O1 HOSTS File: ([2011-04-25 20:03:05 | 000,000,740 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx () O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [TPPOLL] C:\Program Files\Topro\tppoll.exe () O4 - HKCU..\Run: [KiesHelper] C:\Program Files\Samsung\Kies\KiesHelper.exe (Samsung) O4 - HKCU..\Run: [RAMSaverPro] C:\Program Files\Godlike Developers\RAM Saver Professional\ramsaverpro.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 3 O8 - Extra context menu item: E&xport to Microsoft Excel - D:\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Office12\REFIEBAR.DLL (Microsoft Corporation) O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (InterTrust Technologies Corporation, Inc.) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - Reg Error: Key error. File not found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - AppInit_DLLs: (C:\windows\system32\guard32.dll) - C:\WINDOWS\system32\guard32.dll (COMODO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\LogonInit: DllName - logonInit.dll - C:\Program Files\Common Files\logonInit.dll () O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: O24 - Desktop BackupWallPaper: C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-11-03 20:16:11 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2011-01-11 23:00:02 | 000,000,000 | RHSD | M] - C:\Autorun.inf -- [ NTFS ] O32 - AutoRun File - [2011-01-11 23:00:02 | 000,000,000 | RHSD | M] - D:\Autorun.inf -- [ NTFS ] O32 - AutoRun File - [2011-01-11 22:00:04 | 000,000,000 | RHSD | M] - E:\Autorun.inf -- [ FAT32 ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-05-04 21:57:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2011-04-29 16:19:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Pity Format 2010 [2011-04-29 16:18:38 | 000,000,000 | ---D | C] -- C:\Program Files\Pity Format 2010 [2011-04-29 16:16:20 | 012,118,976 | ---- | C] (Biuro Informatyki Stosowanej FORMAT ) -- C:\Documents and Settings\Łukasz\Pulpit\instaluj_pity_format_2010.exe [2011-04-29 16:12:45 | 001,933,172 | ---- | C] (TaxNet sp. z o.o. ) -- C:\Documents and Settings\Łukasz\Pulpit\pit.exe.exe [2011-04-28 13:09:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Apple [2011-04-28 12:57:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Tibia854 [2011-04-28 12:57:13 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia854 [2011-04-28 12:54:41 | 022,466,072 | ---- | C] (CipSoft GmbH ) -- C:\Documents and Settings\Łukasz\Pulpit\tibia854.exe [2011-04-27 20:59:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\.wtw [2011-04-27 20:57:41 | 000,000,000 | ---D | C] -- C:\Program Files\K2T [2011-04-27 20:56:46 | 000,213,232 | ---- | C] (K2T.eu) -- C:\Documents and Settings\Łukasz\Pulpit\wtw-setup-web.exe [2011-04-25 22:27:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\QuickTime [2011-04-25 22:27:02 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime [2011-04-25 22:27:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Apple Computer [2011-04-25 22:25:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple [2011-04-25 22:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Apple [2011-04-25 22:24:03 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update [2011-04-25 22:24:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Apple [2011-04-25 22:22:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Apple Computer [2011-04-25 22:17:53 | 038,147,376 | ---- | C] (Apple Inc.) -- C:\Documents and Settings\Łukasz\Pulpit\QuickTimeInstaller.exe [2011-04-25 16:40:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Pulpit\nokiazip [2011-04-17 17:31:09 | 007,734,208 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Łukasz\Pulpit\mbam-setup-1.50.1.1100(dobreprogramy.pl).exe [2011-04-17 13:33:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Pulpit\Nowy folder (3) [2011-04-17 13:17:23 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\OTL.exe [2011-04-09 23:28:30 | 000,000,000 | ---D | C] -- C:\Program Files\Nowy folder (2) [2011-04-09 23:24:09 | 000,000,000 | ---D | C] -- C:\Program Files\Nowy folder [2011-04-09 15:58:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Pulpit\Nowy folder (2) [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-05-06 14:05:18 | 000,810,656 | ---- | M] () -- C:\WINDOWS\System32\drivers\sfi.dat [2011-05-06 13:42:24 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2011-05-06 13:41:00 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2011-05-06 12:05:14 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011-05-06 12:05:11 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011-05-06 12:05:05 | 267,964,416 | -HS- | M] () -- C:\hiberfil.sys [2011-05-04 23:03:14 | 000,000,000 | ---- | M] () -- C:\Program Files\Common Files\userInit.dll [2011-04-29 16:40:30 | 002,866,322 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\e-DeklaracjeDesktop.air [2011-04-29 16:19:18 | 000,000,778 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pity Format 2010.lnk [2011-04-29 16:16:51 | 012,118,976 | ---- | M] (Biuro Informatyki Stosowanej FORMAT ) -- C:\Documents and Settings\Łukasz\Pulpit\instaluj_pity_format_2010.exe [2011-04-29 16:12:48 | 001,933,172 | ---- | M] (TaxNet sp. z o.o. ) -- C:\Documents and Settings\Łukasz\Pulpit\pit.exe.exe [2011-04-28 20:58:49 | 000,267,800 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-04-28 13:14:42 | 000,027,958 | ---- | M] () -- C:\Program Files\Common Files\logonInit.dll [2011-04-28 13:09:24 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2011-04-28 12:56:13 | 022,466,072 | ---- | M] (CipSoft GmbH ) -- C:\Documents and Settings\Łukasz\Pulpit\tibia854.exe [2011-04-27 20:56:47 | 000,213,232 | ---- | M] (K2T.eu) -- C:\Documents and Settings\Łukasz\Pulpit\wtw-setup-web.exe [2011-04-25 22:27:35 | 000,001,604 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\QuickTime Player.lnk [2011-04-25 22:20:07 | 038,147,376 | ---- | M] (Apple Inc.) -- C:\Documents and Settings\Łukasz\Pulpit\QuickTimeInstaller.exe [2011-04-25 16:38:59 | 000,236,561 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\nokiazip.zip [2011-04-23 18:29:43 | 000,000,081 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\pulpitkurwiu.png.url [2011-04-23 11:05:49 | 000,000,111 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\Southpole Multi Tag White.url [2011-04-17 17:31:32 | 007,734,208 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Łukasz\Pulpit\mbam-setup-1.50.1.1100(dobreprogramy.pl).exe [2011-04-17 13:36:39 | 004,603,894 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\Nowy folder (3).rar [2011-04-17 13:29:06 | 000,080,384 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\MBRCheck.exe [2011-04-17 13:17:24 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\OTL.exe [2011-04-09 23:31:53 | 002,916,450 | ---- | M] () -- C:\Program Files\ElfBot NG.rar [2011-04-09 16:16:11 | 005,683,187 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\Nowy folder (2).rar [2011-04-07 18:33:56 | 000,011,264 | ---- | M] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-04-29 16:40:22 | 002,866,322 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\e-DeklaracjeDesktop.air [2011-04-29 16:19:18 | 000,000,778 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pity Format 2010.lnk [2011-04-28 16:20:49 | 000,000,000 | ---- | C] () -- C:\Program Files\Common Files\userInit.dll [2011-04-28 13:14:42 | 000,027,958 | ---- | C] () -- C:\Program Files\Common Files\logonInit.dll [2011-04-25 22:27:34 | 000,001,604 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\QuickTime Player.lnk [2011-04-25 22:24:45 | 000,000,284 | ---- | C] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2011-04-25 22:24:06 | 000,001,830 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Apple Software Update.lnk [2011-04-25 16:38:58 | 000,236,561 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\nokiazip.zip [2011-04-23 18:29:43 | 000,000,081 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\pulpitkurwiu.png.url [2011-04-23 11:05:49 | 000,000,111 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\Southpole Multi Tag White.url [2011-04-17 13:36:30 | 004,603,894 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\Nowy folder (3).rar [2011-04-17 13:29:04 | 000,080,384 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\MBRCheck.exe [2011-04-09 23:25:02 | 002,916,450 | ---- | C] () -- C:\Program Files\ElfBot NG.rar [2011-04-09 16:16:00 | 005,683,187 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\Nowy folder (2).rar [2011-03-16 10:03:55 | 000,271,626 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2011-03-14 16:20:26 | 000,268,650 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1292428093-2025429265-1801674531-1003-0.dat [2011-03-08 21:24:55 | 000,000,262 | ---- | C] () -- C:\WINDOWS\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini [2011-02-17 11:47:24 | 001,523,712 | ---- | C] () -- C:\WINDOWS\System32\ToproVC.dll [2011-02-17 11:47:24 | 000,221,184 | ---- | C] () -- C:\WINDOWS\ToproUI.exe [2011-02-17 11:47:24 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\camlib.dll [2011-02-17 11:47:24 | 000,028,672 | ---- | C] () -- C:\WINDOWS\tpsti.exe [2011-01-29 18:00:24 | 000,030,568 | ---- | C] () -- C:\WINDOWS\MusiccityDownload.exe [2011-01-29 18:00:22 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll [2011-01-29 18:00:22 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll [2011-01-29 18:00:22 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll [2011-01-29 18:00:22 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll [2011-01-19 11:34:36 | 000,177,333 | ---- | C] () -- C:\WINDOWS\hpoins28.dat [2011-01-19 11:34:35 | 000,000,796 | ---- | C] () -- C:\WINDOWS\hpomdl28.dat [2011-01-12 17:02:15 | 000,047,564 | R--- | C] () -- C:\WINDOWS\System32\NTDETECT.COM [2011-01-12 17:02:08 | 000,047,564 | R--- | C] () -- C:\WINDOWS\NTDETECT.COM [2011-01-11 12:18:25 | 000,810,656 | ---- | C] () -- C:\WINDOWS\System32\drivers\sfi.dat [2011-01-09 20:17:50 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll [2011-01-09 20:17:50 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll [2011-01-09 20:17:50 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll [2011-01-09 20:17:50 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll [2011-01-06 13:23:29 | 000,000,192 | ---- | C] () -- C:\WINDOWS\Winamp.ini [2011-01-06 13:23:25 | 000,000,041 | ---- | C] () -- C:\WINDOWS\winampa.ini [2010-11-29 16:20:14 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2010-11-25 14:59:14 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-11-04 23:55:25 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2010-11-04 23:55:25 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2010-11-04 23:55:23 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2010-11-04 23:55:23 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2010-11-04 23:55:23 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2010-11-04 23:54:44 | 000,011,264 | ---- | C] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-11-03 20:49:22 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2010-11-03 20:47:59 | 000,267,800 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-11-03 20:27:10 | 000,000,092 | ---- | C] () -- C:\WINDOWS\CMISETUP.INI [2010-11-03 20:27:10 | 000,000,026 | ---- | C] () -- C:\WINDOWS\CMCDPLAY.INI [2010-11-03 20:27:08 | 000,000,000 | ---- | C] () -- C:\WINDOWS\Wininit.ini [2010-11-03 20:26:44 | 000,237,568 | ---- | C] () -- C:\WINDOWS\CMIUninstall.exe [2010-11-03 20:26:44 | 000,212,992 | ---- | C] () -- C:\WINDOWS\CmiRmRedundDir.exe [2010-11-03 20:26:44 | 000,028,672 | ---- | C] () -- C:\WINDOWS\CMIRmDriver.dll [2010-11-03 20:24:30 | 000,002,546 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini [2010-11-03 20:24:29 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2010-11-03 20:19:49 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-11-03 20:11:33 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2004-09-01 11:42:18 | 000,138,396 | ---- | C] () -- C:\WINDOWS\System32\drivers\Pfc027.sys [2004-09-01 11:42:16 | 000,011,170 | ---- | C] () -- C:\WINDOWS\System32\PA207USD.DLL [2004-08-04 00:56:48 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2004-08-04 00:44:00 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll [2004-08-02 14:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2004-07-17 11:36:38 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys [2001-10-26 20:15:16 | 000,492,852 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2001-10-26 20:15:16 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2001-10-26 20:15:16 | 000,084,948 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2001-10-26 20:15:16 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2001-08-23 17:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2001-08-23 17:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2001-08-18 01:30:24 | 000,435,212 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2001-08-18 01:30:24 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2001-08-18 01:30:24 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2001-08-18 01:30:22 | 000,067,590 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2001-08-18 01:15:38 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2001-07-22 02:36:48 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2001-07-22 02:36:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2001-07-22 02:24:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat < End of report >