OTL logfile created on: 14-11-01 23:21:47 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Bednarr\Moje dokumenty\Pobrane Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yy-MM-dd 3,00 Gb Total Physical Memory | 1,33 Gb Available Physical Memory | 44,39% Memory free 4,84 Gb Paging File | 2,98 Gb Available in Paging File | 61,54% Paging File free Paging file location(s): c:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 97,65 Gb Total Space | 67,00 Gb Free Space | 68,61% Space Free | Partition Type: NTFS Drive D: | 48,83 Gb Total Space | 40,14 Gb Free Space | 82,21% Space Free | Partition Type: NTFS Drive E: | 151,60 Gb Total Space | 149,15 Gb Free Space | 98,39% Space Free | Partition Type: NTFS Drive M: | 931,50 Gb Total Space | 583,27 Gb Free Space | 62,62% Space Free | Partition Type: NTFS Computer Name: BEDNAR | User Name: Bednarr | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-11-01 23:21:15 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Bednarr\Moje dokumenty\Pobrane\OTL.exe PRC - [2014-10-31 16:12:49 | 000,275,568 | ---- | M] (Mozilla Corporation) -- E:\Programy\Mozilla Firefox\firefox.exe PRC - [2014-10-28 08:24:38 | 000,182,696 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe PRC - [2014-10-27 14:20:36 | 001,894,224 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe PRC - [2014-10-21 20:22:40 | 001,529,536 | ---- | M] (Valve Corporation) -- C:\Program Files\Steam\bin\steamwebhelper.exe PRC - [2014-10-21 20:22:38 | 001,938,624 | ---- | M] (Valve Corporation) -- C:\Program Files\Steam\Steam.exe PRC - [2014-10-21 20:22:36 | 000,383,168 | ---- | M] (Valve Corporation) -- C:\Program Files\Steam\GameOverlayUI.exe PRC - [2014-10-21 09:50:12 | 000,411,920 | ---- | M] (LogMeIn, Inc.) -- C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe PRC - [2014-10-20 15:21:10 | 000,162,304 | ---- | M] () -- C:\WINDOWS\system32\netupdsrv.exe PRC - [2014-10-20 15:20:42 | 000,180,224 | ---- | M] () -- C:\WINDOWS\system32\nethtsrv.exe PRC - [2014-07-27 23:14:36 | 002,404,352 | ---- | M] (Don HO don.h@free.fr) -- E:\Programy\Notepad++\notepad++.exe PRC - [2014-07-27 19:53:13 | 000,101,888 | ---- | M] (Valve) -- C:\Program Files\Steam\SteamApps\common\Half-Life\hl.exe PRC - [2014-07-25 15:02:40 | 001,720,608 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe PRC - [2014-04-30 07:51:10 | 004,065,648 | ---- | M] (Ghisler Software GmbH) -- C:\totalcmd\TOTALCMD.EXE PRC - [2013-12-18 09:38:42 | 001,915,704 | ---- | M] (AVG) -- C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe PRC - [2013-12-18 09:38:40 | 001,741,624 | ---- | M] (AVG) -- C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe PRC - [2012-12-07 17:27:50 | 000,167,424 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe PRC - [2012-08-17 16:48:44 | 000,019,456 | ---- | M] (Clarus, Inc.) -- C:\Program Files\Clarus\Samsung Drive Manager\SZDrvSvc.exe PRC - [2008-04-14 21:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-11-01 22:33:22 | 000,155,232 | -H-- | M] () -- C:\Documents and Settings\Bednarr\Ustawienia lokalne\Temp\~307.tmp MOD - [2014-10-31 16:12:49 | 003,649,648 | ---- | M] () -- E:\Programy\Mozilla Firefox\mozjs.dll MOD - [2014-10-21 20:22:58 | 002,226,880 | ---- | M] () -- C:\Program Files\Steam\video.dll MOD - [2014-10-21 20:22:40 | 000,682,176 | ---- | M] () -- C:\Program Files\Steam\bin\chromehtml.dll MOD - [2014-10-20 15:21:10 | 000,162,304 | ---- | M] () -- C:\WINDOWS\system32\netupdsrv.exe MOD - [2014-10-20 15:20:42 | 000,180,224 | ---- | M] () -- C:\WINDOWS\system32\nethtsrv.exe MOD - [2014-10-20 15:20:28 | 000,108,544 | ---- | M] () -- C:\WINDOWS\system32\hfnapi.dll MOD - [2014-10-20 15:20:16 | 000,249,856 | ---- | M] () -- C:\WINDOWS\system32\hfpapi.dll MOD - [2014-10-02 00:16:02 | 000,774,656 | ---- | M] () -- C:\Program Files\Steam\SDL2.dll MOD - [2014-09-05 00:29:26 | 034,589,376 | ---- | M] () -- C:\Program Files\Steam\bin\libcef.dll MOD - [2014-08-21 19:15:22 | 001,171,456 | ---- | M] () -- C:\Program Files\Steam\libavcodec-56.dll MOD - [2014-08-21 19:15:22 | 000,485,888 | ---- | M] () -- C:\Program Files\Steam\libswscale-3.dll MOD - [2014-08-21 19:15:22 | 000,442,368 | ---- | M] () -- C:\Program Files\Steam\libavutil-54.dll MOD - [2014-08-21 19:15:22 | 000,403,968 | ---- | M] () -- C:\Program Files\Steam\libavformat-56.dll MOD - [2014-08-21 19:15:22 | 000,332,800 | ---- | M] () -- C:\Program Files\Steam\libavresample-2.dll MOD - [2014-07-27 20:20:44 | 001,093,128 | ---- | M] () -- c:\Program Files\Steam\SteamApps\common\Half-Life\cstrike\cl_dlls\client.dll MOD - [2014-07-27 20:11:36 | 000,282,112 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\Core.dll MOD - [2014-07-27 20:11:36 | 000,138,768 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\DemoPlayer.dll MOD - [2014-07-27 20:11:35 | 000,400,920 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\vgui.dll MOD - [2014-07-27 20:11:35 | 000,241,152 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\vgui2.dll MOD - [2014-07-27 20:11:35 | 000,126,496 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\FileSystem_Stdio.dll MOD - [2014-07-27 19:55:56 | 000,652,800 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\SDL2.dll MOD - [2014-07-27 19:55:56 | 000,338,944 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\tier0.dll MOD - [2014-07-27 19:53:27 | 020,320,240 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\libcef.dll MOD - [2014-07-27 19:53:27 | 000,153,088 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\mssvoice.asi MOD - [2014-07-27 19:53:27 | 000,071,680 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\mssmp3.asi MOD - [2014-07-27 19:53:23 | 000,536,576 | ---- | M] () -- c:\Program Files\Steam\SteamApps\common\Half-Life\platform\servers\ServerBrowser.dll MOD - [2014-07-27 19:53:19 | 001,625,608 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\hw.dll MOD - [2014-07-27 19:53:19 | 000,843,264 | ---- | M] () -- c:\Program Files\Steam\SteamApps\common\Half-Life\valve\cl_dlls\GameUI.dll MOD - [2014-07-27 19:53:19 | 000,081,920 | ---- | M] () -- c:\Program Files\Steam\SteamApps\common\Half-Life\valve\cl_dlls\particleman.dll MOD - [2014-07-27 19:53:18 | 000,874,496 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\chromehtml.dll MOD - [2014-07-27 19:53:14 | 001,100,800 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\avcodec-53.dll MOD - [2014-07-27 19:53:13 | 000,192,000 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\avformat-53.dll MOD - [2014-07-27 19:53:13 | 000,124,416 | ---- | M] () -- C:\Program Files\Steam\SteamApps\common\Half-Life\avutil-51.dll MOD - [2014-07-08 12:31:20 | 017,029,808 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll MOD - [2014-01-07 00:42:32 | 001,611,264 | ---- | M] () -- E:\Programy\Notepad++\plugins\NppFTP.dll MOD - [2012-12-07 17:27:50 | 000,167,424 | ---- | M] () -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe MOD - [2012-08-01 14:44:10 | 000,121,472 | ---- | M] () -- E:\Programy\Razer Game Booster\GBV3ContextMenu.dll MOD - [2011-07-18 22:07:28 | 000,014,336 | ---- | M] () -- E:\Programy\Notepad++\plugins\NppExport.dll MOD - [2010-01-30 01:41:12 | 004,254,560 | ---- | M] () -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF MOD - [2008-06-19 19:53:03 | 000,060,416 | ---- | M] () -- C:\WINDOWS\system32\antiwpa.dll MOD - [2008-04-14 21:50:38 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt) SRV - [2014-10-31 16:12:49 | 000,114,288 | ---- | M] (Mozilla Foundation) [Disabled | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2014-10-28 08:24:38 | 000,182,696 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2014-10-27 14:20:36 | 001,894,224 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc) SRV - [2014-10-21 09:50:12 | 000,411,920 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe -- (LMIGuardianSvc) SRV - [2014-10-20 15:21:10 | 000,162,304 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\netupdsrv.exe -- (ServiceUpdater) SRV - [2014-10-20 15:20:42 | 000,180,224 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\nethtsrv.exe -- (NetHttpService) SRV - [2014-07-25 15:02:40 | 001,720,608 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService) SRV - [2014-07-07 14:29:58 | 000,072,992 | ---- | M] (Hewlett-Packard Company) [Disabled | Stopped] -- C:\Program Files\HP\Common\HPSupportSolutionsFrameworkService.exe -- (HPSupportSolutionsFrameworkService) SRV - [2014-04-03 19:21:48 | 000,315,008 | R--- | M] (Skype Technologies) [Disabled | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2013-12-18 09:38:40 | 001,741,624 | ---- | M] (AVG) [Auto | Running] -- C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc) SRV - [2013-12-18 09:38:36 | 000,035,640 | ---- | M] (AVG) [On_Demand | Stopped] -- C:\WINDOWS\system32\uxtuneup.dll -- (UxTuneUp) SRV - [2013-02-04 18:43:22 | 000,155,824 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files\Sony\Sony PC Companion\PCCService.exe -- (Sony PC Companion) SRV - [2012-12-07 17:27:50 | 000,167,424 | ---- | M] () [Auto | Running] -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service) SRV - [2012-08-17 16:48:44 | 000,019,456 | ---- | M] (Clarus, Inc.) [Auto | Running] -- C:\Program Files\Clarus\Samsung Drive Manager\SZDrvSvc.exe -- (SZDrvSvc) SRV - [2010-03-25 09:25:22 | 030,969,208 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\cmdatp.sys -- (ATP) DRV - [2014-10-20 15:21:20 | 000,049,152 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\nethfdrv.sys -- (nethfdrv) DRV - [2014-08-23 12:34:53 | 000,243,128 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV - [2014-06-05 22:05:18 | 000,427,992 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2014-01-12 10:05:46 | 000,076,288 | ---- | M] (Nuvoton Technology Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nuvserial.sys -- (Serial) DRV - [2014-01-12 10:05:46 | 000,017,920 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nuvserenum.sys -- (serenum) DRV - [2013-12-17 13:10:54 | 005,639,384 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) DRV - [2013-08-21 18:53:42 | 000,012,320 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv) DRV - [2012-12-07 17:27:50 | 000,021,248 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\htcnprot.sys -- (htcnprot) DRV - [2012-12-04 02:49:36 | 000,011,944 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\amdide.sys -- (amdide) DRV - [2012-08-01 14:44:04 | 000,014,416 | ---- | M] (OpenLibSys.org) [File_System | On_Demand | Stopped] -- E:\Programy\Razer Game Booster\Driver\WinRing0.sys -- (WinRing0_1_2_0) DRV - [2012-06-21 13:57:52 | 000,089,008 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files\Clarus\Samsung Drive Manager\mvd23.sys -- (mvd23) DRV - [2012-06-21 13:57:40 | 000,018,864 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files\Clarus\Samsung Drive Manager\mdf16.sys -- (mdf16) DRV - [2009-11-18 00:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2009-11-18 00:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2009-06-10 08:49:32 | 000,024,576 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ANDROIDUSB.sys -- (HTCAND32) DRV - [2009-03-18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2007-04-16 15:46:34 | 000,033,792 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdPPM.sys -- (AmdPPM) DRV - [2006-01-19 16:33:26 | 000,402,432 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WlanBZXP.sys -- (SG762_XP) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-515967899-1958367476-725345543-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com IE - HKU\S-1-5-21-515967899-1958367476-725345543-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com IE - HKU\S-1-5-21-515967899-1958367476-725345543-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKU\S-1-5-21-515967899-1958367476-725345543-1007\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com IE - HKU\S-1-5-21-515967899-1958367476-725345543-1007\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-515967899-1958367476-725345543-1007\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-515967899-1958367476-725345543-1007\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/AuthorwarePlayer: C:\WINDOWS\system32\Macromed\AUTHORWA\np32asw.dll (Macromedia, Inc.) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.71.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: E:\Programy\VLC\npvlc.dll (VideoLAN) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) [2014-08-22 17:39:57 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Bednarr\Dane aplikacji\Mozilla\Extensions [2014-10-31 16:41:38 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Bednarr\Dane aplikacji\Mozilla\Firefox\Profiles\iwdq16f4.default-1414768594656\extensions [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: (Enabled) CHR - default_search_provider: search_url = CHR - default_search_provider: suggest_url = CHR - plugin: Error reading preferences file CHR - Extension: No name found = C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\ CHR - Extension: No name found = C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\ CHR - Extension: No name found = C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\ CHR - Extension: No name found = C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\ CHR - Extension: No name found = C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\ CHR - Extension: No name found = C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2014-08-20 19:29:28 | 000,000,789 | RHS- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 mpa.one.microsoft.com O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation) O4 - HKLM..\Run: [GB_UPDATE] E:\Programy\Razer Game Booster\AutoUpdate.exe () O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-515967899-1958367476-725345543-1005\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-515967899-1958367476-725345543-1007\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Wyślij &do programu OneNote - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O16 - DPF: {00000055-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/A/7/D/A7D1EBE3-8E78-4CBE-B22B-EEECF9E3A1BC/fhg.CAB (Reg Error: Key error.) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1408567394562 (WUWebControl Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CCC71A22-7C6A-474D-8DE4-412D1F00F768}: DhcpNameServer = 192.168.1.1 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\Antiwpa: DllName - (antiwpa.dll) - C:\WINDOWS\System32\antiwpa.dll () O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - File not found O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2014-08-20 17:50:48 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2014-08-25 14:54:11 | 000,000,894 | ---- | M] () - C:\autoupdate.log -- [ NTFS ] O32 - AutoRun File - [2014-08-17 22:54:51 | 000,000,121 | RHS- | M] () - M:\AUTORUN.FCB -- [ NTFS ] O32 - AutoRun File - [2014-08-20 18:41:49 | 000,000,089 | ---- | M] () - M:\AUTORUN.INF -- [ NTFS ] O33 - MountPoints2\{d9881fae-288f-11e4-924b-c2ccb8f7e1ea}\Shell\AutoRun\command - "" = M:\setupSNK.exe O33 - MountPoints2\M\Shell\AutoRun\command - "" = setupSNK.exe O33 - MountPoints2\N\Shell - "" = AutoRun O33 - MountPoints2\N\Shell\AutoRun\command - "" = N:\HTC_Sync_Manager_PC.exe O33 - MountPoints2\P\Shell - "" = AutoRun O33 - MountPoints2\P\Shell\AutoRun\command - "" = P:\HTC_Sync_Manager_PC.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-10-31 16:16:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Pulpit\Stare dane programu Firefox [2014-10-30 22:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Config [2014-10-28 08:24:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2014-10-28 08:24:48 | 000,272,808 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2014-10-28 08:24:48 | 000,145,408 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2014-10-28 08:24:43 | 000,175,528 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2014-10-28 08:24:43 | 000,175,528 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2014-10-28 08:24:43 | 000,096,680 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2014-10-28 08:24:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Java [2014-10-27 17:08:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\LogMeIn Hamachi [2014-10-27 17:08:22 | 000,000,000 | ---D | C] -- C:\Program Files\LogMeIn Hamachi [2014-10-26 15:41:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Pulpit\Enlarged Grass Block by NateT_Bird [2014-10-25 16:27:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Dane aplikacji\.minecraftzyczu [2014-10-22 22:56:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Mumble [2014-10-22 22:55:51 | 000,000,000 | ---D | C] -- C:\Program Files\Mumble [2014-10-22 22:31:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Dane aplikacji\Mumble [2014-10-22 22:26:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Dane aplikacji\3943 [2014-10-21 07:58:11 | 000,026,176 | -H-- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\hamachi.sys [2014-10-19 11:50:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\.SquashOccurrences [2014-10-19 11:49:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Pulpit\MCEdit-0.1.7.1.win32 [2014-10-18 17:30:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\GHISLER [2014-10-18 17:24:04 | 000,000,000 | ---D | C] -- C:\totalcmd [2014-10-18 17:24:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Menu Start\Programy\Total Commander [2014-10-18 17:24:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Dane aplikacji\GHISLER [2014-10-18 11:16:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Dane aplikacji\dvdcss [2014-10-18 10:58:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Pulpit\Bal gimnazjalny cz 2 [2014-10-18 10:47:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Pulpit\Bal gimnazjalny cz 1 [2014-10-16 19:25:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\qs [2014-10-14 20:43:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files [2014-10-14 20:43:20 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\Moje wideo [2014-10-11 10:48:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\WorldofTanks [2014-10-08 10:56:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Dane aplikacji\Solvusoft [2014-10-04 15:14:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\orginal [2014-10-04 15:11:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\Pliki Serwerowe Minecraft 1.7.2 Bukkit By MinecraftPixel [2014-10-03 19:51:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Pulpit\100ANDRO1 [2014-10-03 16:10:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Dane aplikacji\.minecraft [2014-10-03 15:56:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\texturepacks [2014-10-03 15:56:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\stats [2014-10-03 15:56:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\Backup [2014-10-03 15:56:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\resources [2014-10-03 15:56:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\config [2014-10-03 15:56:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Bednarr\Moje dokumenty\bin [7 C:\*.tmp files -> C:\*.tmp -> ] [10 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-11-01 22:47:55 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2014-11-01 22:44:39 | 000,016,652 | ---- | M] () -- C:\WINDOWS\System32\nvAppTimestamps [2014-11-01 18:47:00 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2014-11-01 18:46:06 | 000,002,267 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2014-11-01 12:18:26 | 000,558,796 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2014-11-01 12:18:26 | 000,496,094 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2014-11-01 12:18:26 | 000,105,734 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2014-11-01 12:18:26 | 000,084,578 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2014-11-01 12:14:20 | 000,000,204 | ---- | M] () -- C:\WINDOWS\tasks\AutoKMS.job [2014-11-01 12:14:20 | 000,000,202 | ---- | M] () -- C:\WINDOWS\tasks\AutoKMSDaily.job [2014-11-01 12:14:13 | 000,078,848 | ---- | M] () -- C:\WINDOWS\KMSEmulator.exe [2014-11-01 12:13:21 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014-10-31 19:41:59 | 000,021,116 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\Działki.jar [2014-10-31 16:12:22 | 000,080,789 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\bookmarks-2014-10-31.json [2014-10-30 22:33:55 | 001,998,336 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\AdwCleaner.exe [2014-10-30 22:14:45 | 000,092,580 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\SimpleRegionMarket.jar [2014-10-30 22:01:01 | 000,083,658 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\SimpleRegionMarket-0.1-indev.8.zip [2014-10-30 21:52:32 | 000,040,643 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\Simple Region Market.zip [2014-10-30 17:16:32 | 000,239,313 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\Quester.jar [2014-10-30 17:15:06 | 000,955,162 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\Citizens.jar [2014-10-28 22:06:56 | 000,001,739 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Sony PC Companion 2.1.lnk [2014-10-28 09:16:09 | 000,002,509 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\Worlds.jar [2014-10-28 08:49:10 | 000,001,819 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk [2014-10-28 08:24:38 | 000,096,680 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2014-10-28 08:24:37 | 000,272,808 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2014-10-28 08:24:37 | 000,175,528 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2014-10-28 08:24:37 | 000,175,528 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2014-10-28 08:24:37 | 000,145,408 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2014-10-26 19:06:33 | 000,000,754 | ---- | M] () -- C:\WINDOWS\WORDPAD.INI [2014-10-26 12:45:30 | 002,355,169 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\IMAG1930.jpg [2014-10-26 12:45:17 | 002,396,376 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\IMAG1928.jpg [2014-10-26 12:43:55 | 002,092,292 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\IMAG1927.jpg [2014-10-23 10:45:54 | 000,059,200 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\bronek malinowski do szkoły.rtf [2014-10-23 10:32:59 | 000,011,070 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\MNALINOWSKI.rtf [2014-10-22 22:59:27 | 000,002,396 | ---- | M] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\MumbleAutomaticCertificateBackup.p12 [2014-10-22 20:08:41 | 002,994,505 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\szablon by EastWestFM.rar [2014-10-22 16:10:12 | 000,005,654 | ---- | M] () -- C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\recently-used.xbel [2014-10-21 21:32:51 | 000,022,375 | ---- | M] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\PvPTitles.jar [2014-10-21 21:32:44 | 000,036,109 | ---- | M] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\PvpLevels.jar [2014-10-21 21:00:10 | 000,671,018 | ---- | M] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\pvparena.jar [2014-10-21 18:12:43 | 000,176,336 | ---- | M] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\UltimaGuild.jar [2014-10-20 15:21:20 | 000,049,152 | ---- | M] () -- C:\WINDOWS\System32\drivers\nethfdrv.sys [2014-10-20 15:21:10 | 000,162,304 | ---- | M] () -- C:\WINDOWS\System32\netupdsrv.exe [2014-10-20 15:20:56 | 000,110,592 | ---- | M] () -- C:\WINDOWS\System32\installd.exe [2014-10-20 15:20:42 | 000,180,224 | ---- | M] () -- C:\WINDOWS\System32\nethtsrv.exe [2014-10-20 15:20:28 | 000,108,544 | ---- | M] () -- C:\WINDOWS\System32\hfnapi.dll [2014-10-20 15:20:16 | 000,249,856 | ---- | M] () -- C:\WINDOWS\System32\hfpapi.dll [2014-10-18 21:28:25 | 028,349,963 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\Mapa z 1 ods_ony serwera mc.neverald.pl.rar [2014-10-18 17:24:06 | 000,000,548 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\Total Commander.lnk [2014-10-16 20:07:15 | 000,002,504 | ---- | M] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\Register Vegas Pro.htm [2014-10-16 20:05:15 | 000,000,805 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Vegas Pro 10.0.lnk [2014-10-16 13:07:09 | 000,086,964 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\kurtka.JPG [2014-10-11 10:47:49 | 000,933,692 | ---- | M] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\xray.exe [2014-10-10 15:19:09 | 000,002,300 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014-10-05 12:41:57 | 003,399,374 | ---- | M] () -- C:\Documents and Settings\Bednarr\Pulpit\Minecraft.jar [7 C:\*.tmp files -> C:\*.tmp -> ] [10 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-10-31 19:51:58 | 000,118,211 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\SimpleRegionMarket-3.6.3.jar [2014-10-31 19:41:58 | 000,021,116 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\Działki.jar [2014-10-31 16:12:21 | 000,080,789 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\bookmarks-2014-10-31.json [2014-10-30 22:33:53 | 001,998,336 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\AdwCleaner.exe [2014-10-30 22:02:37 | 000,092,580 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\SimpleRegionMarket.jar [2014-10-30 22:01:01 | 000,083,658 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\SimpleRegionMarket-0.1-indev.8.zip [2014-10-30 21:52:32 | 000,040,643 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\Simple Region Market.zip [2014-10-30 17:16:32 | 000,239,313 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\Quester.jar [2014-10-30 17:15:06 | 000,955,162 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\Citizens.jar [2014-10-28 09:16:09 | 000,002,509 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\Worlds.jar [2014-10-27 11:02:42 | 002,092,292 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\IMAG1927.jpg [2014-10-27 10:58:29 | 002,396,376 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\IMAG1928.jpg [2014-10-27 10:57:53 | 002,355,169 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\IMAG1930.jpg [2014-10-23 10:45:53 | 000,059,200 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\bronek malinowski do szkoły.rtf [2014-10-23 10:32:59 | 000,011,070 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\MNALINOWSKI.rtf [2014-10-22 22:59:27 | 000,002,396 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\MumbleAutomaticCertificateBackup.p12 [2014-10-22 20:08:36 | 002,994,505 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\szablon by EastWestFM.rar [2014-10-22 16:10:12 | 000,005,654 | ---- | C] () -- C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\recently-used.xbel [2014-10-21 21:32:51 | 000,022,375 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\PvPTitles.jar [2014-10-21 21:32:43 | 000,036,109 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\PvpLevels.jar [2014-10-21 21:00:10 | 000,671,018 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\pvparena.jar [2014-10-21 18:12:41 | 000,176,336 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\UltimaGuild.jar [2014-10-20 15:21:20 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\nethfdrv.sys [2014-10-20 15:21:10 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\netupdsrv.exe [2014-10-20 15:20:56 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\installd.exe [2014-10-20 15:20:42 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\nethtsrv.exe [2014-10-20 15:20:28 | 000,108,544 | ---- | C] () -- C:\WINDOWS\System32\hfnapi.dll [2014-10-20 15:20:16 | 000,249,856 | ---- | C] () -- C:\WINDOWS\System32\hfpapi.dll [2014-10-18 21:26:49 | 028,349,963 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\Mapa z 1 ods_ony serwera mc.neverald.pl.rar [2014-10-18 17:24:06 | 000,000,548 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\Total Commander.lnk [2014-10-16 20:05:15 | 000,000,805 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Vegas Pro 10.0.lnk [2014-10-16 19:48:49 | 000,002,504 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\Register Vegas Pro.htm [2014-10-16 19:22:08 | 000,007,910 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\quakesounds.sma [2014-10-16 19:21:47 | 000,011,830 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\quakesounds.amxx [2014-10-16 13:07:09 | 000,086,964 | ---- | C] () -- C:\Documents and Settings\Bednarr\Pulpit\kurtka.JPG [2014-10-11 10:47:57 | 000,933,692 | ---- | C] () -- C:\Documents and Settings\Bednarr\Moje dokumenty\xray.exe [2014-09-30 19:13:33 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2014-09-20 11:23:40 | 000,632,320 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2014-09-20 11:23:40 | 000,235,520 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2014-09-13 08:39:21 | 000,060,416 | ---- | C] () -- C:\WINDOWS\System32\antiwpa.dll [2014-09-13 07:33:44 | 000,002,420 | ---- | C] () -- C:\WINDOWS\System32\ASOROSet.bin [2014-08-23 16:09:57 | 000,218,200 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2014-08-23 16:02:52 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Bednarr\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014-08-23 15:35:39 | 000,647,168 | ---- | C] () -- C:\WINDOWS\AutoKMS.exe [2014-08-23 15:35:39 | 000,000,184 | ---- | C] () -- C:\WINDOWS\AutoKMS.ini [2014-08-23 15:35:14 | 000,078,848 | ---- | C] () -- C:\WINDOWS\KMSEmulator.exe [2014-08-23 15:20:29 | 000,153,319 | ---- | C] () -- C:\WINDOWS\hpoins14.dat [2014-08-23 15:20:29 | 000,002,000 | ---- | C] () -- C:\WINDOWS\hpomdl14.dat [2014-08-23 12:42:37 | 000,000,082 | ---- | C] () -- C:\WINDOWS\System32\winsevr.dat [2014-08-23 12:42:09 | 000,129,720 | ---- | C] () -- C:\WINDOWS\System32\ammntdrv.sys [2014-08-23 12:42:09 | 000,026,424 | ---- | C] () -- C:\WINDOWS\System32\ambakdrv.sys [2014-08-23 12:42:09 | 000,014,392 | ---- | C] () -- C:\WINDOWS\System32\amwrtdrv.sys [2014-08-23 12:40:17 | 000,271,264 | ---- | C] () -- C:\WINDOWS\System32\vbrun100.dll [2014-08-23 12:40:17 | 000,210,944 | ---- | C] () -- C:\WINDOWS\System32\msvcrt10.dll [2014-08-23 12:39:44 | 000,715,038 | ---- | C] () -- C:\WINDOWS\unins000.exe [2014-08-23 12:39:44 | 000,216,064 | ---- | C] ( ) -- C:\WINDOWS\System32\lagarith.dll [2014-08-23 12:39:44 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\utv_core.dll [2014-08-23 12:39:44 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\utv_vcm.dll [2014-08-23 12:39:44 | 000,001,787 | ---- | C] () -- C:\WINDOWS\unins000.dat [2014-08-23 12:38:29 | 000,026,084 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT [2014-08-20 21:52:15 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2014-08-20 21:50:41 | 003,826,628 | ---- | C] () -- C:\WINDOWS\System32\nvcoproc.bin [2014-08-20 21:49:50 | 001,410,436 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2014-08-20 21:49:50 | 001,410,140 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2014-08-20 21:49:50 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin [2014-08-20 21:42:39 | 002,422,304 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data [2014-08-20 19:35:31 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2014-08-20 19:32:50 | 000,278,152 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2014-08-20 18:58:14 | 000,073,728 | R--- | C] () -- C:\WINDOWS\System32\RtNicProp32.dll [2014-08-20 18:54:39 | 000,062,304 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2014-08-20 18:46:20 | 000,207,400 | R--- | C] () -- C:\WINDOWS\GSetup.exe [2014-08-20 18:46:20 | 000,000,010 | ---- | C] () -- C:\WINDOWS\GSetup.ini [2014-08-20 17:52:20 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2014-08-20 17:48:37 | 000,023,016 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2014-02-09 17:36:04 | 000,112,640 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2013-02-07 13:22:00 | 000,050,330 | ---- | C] () -- C:\Program Files\AntiDust.exe [color=#E56717]========== ZeroAccess Check ==========[/color] [2014-08-20 18:53:50 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-14 21:50:48 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2008-04-14 21:50:32 | 000,472,064 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 21:50:58 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2014-08-23 12:42:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AomeiBR [2014-08-20 22:11:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG [2014-08-20 22:08:10 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2014-08-23 13:23:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2014-08-23 12:37:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Pro [2014-08-23 16:12:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GoldWave [2014-09-30 18:19:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LogMeIn [2014-08-23 13:14:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Martau [2014-08-23 12:47:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Package Cache [2014-08-24 14:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Razer [2014-09-20 10:54:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Sony [2014-08-23 15:41:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\YTD Video Downloader [2014-08-21 15:04:33 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} [2014-11-01 21:41:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\.minecraft [2014-11-01 21:41:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\.minecraftzyczu [2014-10-31 16:29:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\3943 [2014-08-22 17:41:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\AVG [2014-08-23 16:01:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\BESTplayer [2014-08-23 12:37:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\DAEMON Tools Pro [2014-08-23 09:54:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\Easeware [2014-08-26 17:56:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\ElevatedDiagnostics [2014-09-25 19:11:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\fizzy [2014-10-18 17:25:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\GHISLER [2014-08-23 16:12:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\MPC-HC [2014-10-22 22:31:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\Mumble [2014-08-23 10:49:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\Notepad++ [2014-08-26 16:54:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\Publish Providers [2014-10-08 10:56:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\Solvusoft [2014-10-31 19:52:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\Sony [2014-11-01 19:51:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\TS3Client [2014-08-22 17:41:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\TuneUp Software [2014-09-24 19:05:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Bednarr\Dane aplikacji\uTorrent [2014-08-22 17:01:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\AVG [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 88 bytes -> C:\Documents and Settings\Bednarr\Pulpit\Minecraft.jar:SummaryInformation @Alternate Data Stream - 48 bytes -> C:\Documents and Settings\All Users\DRM:احتضان < End of report >