Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-11-2014 01 Ran by Budzikowscy (administrator) on BUDZIKOWSCYPC on 25-11-2014 13:57:44 Running from C:\Users\Budzikowscy\Downloads Loaded Profile: Budzikowscy (Available profiles: Budzikowscy) Platform: Windows 8.1 Pro (X64) OS Language: Polski (Polska) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (OldTimer Tools) C:\Users\Budzikowscy\Downloads\OTL (1).exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-259255893-3387589743-3849538127-1001\...\Policies\Explorer: [HideSCAHealth] 1 HKU\S-1-5-21-259255893-3387589743-3849538127-1001\...\Policies\Explorer: [NoInternetOpenWith] 1 HKU\S-1-5-21-259255893-3387589743-3849538127-1001\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 1 HKU\S-1-5-21-259255893-3387589743-3849538127-1001\...\Policies\Explorer: [NoResolveSearch] 1 HKU\S-1-5-21-259255893-3387589743-3849538127-1001\...\Policies\Explorer: [NoCDBurning] 1 HKU\S-1-5-18\...\Policies\Explorer: [HideSCAHealth] 1 HKU\S-1-5-18\...\Policies\Explorer: [NoInternetOpenWith] 1 HKU\S-1-5-18\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 1 HKU\S-1-5-18\...\Policies\Explorer: [NoResolveSearch] 1 HKU\S-1-5-18\...\Policies\Explorer: [NoCDBurning] 1 ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKU\S-1-5-21-259255893-3387589743-3849538127-1001\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-259255893-3387589743-3849538127-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION SearchScopes: HKU\S-1-5-21-259255893-3387589743-3849538127-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-259255893-3387589743-3849538127-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-259255893-3387589743-3849538127-1001 -> {637D6E3C-DF93-48A5-8362-159A8AC56B11} URL = http://www.google.com/search?hl=en&q={searchTerms}&meta= Tcpip\Parameters: [DhcpNameServer] 192.168.43.1 FireFox: ======== FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File CHR Profile: C:\Users\Budzikowscy\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Dokumenty Google) - C:\Users\Budzikowscy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-25] CHR Extension: (Dysk Google) - C:\Users\Budzikowscy\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-25] CHR Extension: (YouTube) - C:\Users\Budzikowscy\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-25] CHR Extension: (Szukaj w Google) - C:\Users\Budzikowscy\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-25] CHR Extension: (Google Wallet) - C:\Users\Budzikowscy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-25] CHR Extension: (Gmail) - C:\Users\Budzikowscy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-25] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 HyperVideo; C:\Windows\system32\DRIVERS\HyperVideo.sys [22016 2013-08-22] (Microsoft Corporation) [File not signed] S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) [File not signed] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-25 13:57 - 2014-11-25 13:57 - 02118144 _____ (Farbar) C:\Users\Budzikowscy\Downloads\FRST64.exe 2014-11-25 13:57 - 2014-11-25 13:57 - 00000000 ____D () C:\FRST 2014-11-25 13:57 - 2014-11-25 13:57 - 00000000 _____ () C:\Users\Budzikowscy\Downloads\FRST.txt 2014-11-25 13:55 - 2014-11-25 13:55 - 01109504 _____ (Farbar) C:\Users\Budzikowscy\Downloads\FRST.exe 2014-11-25 13:54 - 2014-11-25 13:54 - 00089794 _____ () C:\Users\Budzikowscy\Downloads\OTL.Txt 2014-11-25 13:54 - 2014-11-25 13:54 - 00030582 _____ () C:\Users\Budzikowscy\Downloads\Extras.Txt 2014-11-25 13:49 - 2014-11-25 13:56 - 00001084 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-11-25 13:49 - 2014-11-25 13:54 - 00001080 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-11-25 13:49 - 2014-11-25 13:49 - 00000000 ____D () C:\Program Files (x86)\GUM94A3.tmp 2014-11-25 13:28 - 2014-11-25 13:28 - 00559528 _____ (Helge Klein) C:\Windows\SetACL.exe 2014-11-25 13:28 - 2014-11-25 13:28 - 00455739 _____ () C:\Users\Budzikowscy\Downloads\SetACL (executable version).zip 2014-11-25 13:28 - 2014-11-25 13:28 - 00000000 ____D () C:\Users\Budzikowscy\Downloads\SetACL (executable version) 2014-11-25 13:26 - 2014-11-25 13:26 - 02498560 _____ () C:\Users\Budzikowscy\Downloads\SetACL Studio.msi 2014-11-25 13:15 - 2014-11-25 13:15 - 00602112 _____ (OldTimer Tools) C:\Users\Budzikowscy\Downloads\OTL (1).exe 2014-11-25 13:07 - 2014-11-25 13:07 - 00011276 _____ () C:\Users\Budzikowscy\Downloads\Addition.txt 2014-11-25 13:04 - 2014-11-25 13:12 - 00000000 ____D () C:\AdwCleaner 2014-11-25 13:03 - 2014-11-25 13:03 - 02140160 _____ () C:\Users\Budzikowscy\Downloads\AdwCleaner 4.101 [1].exe 2014-11-25 13:03 - 2014-11-25 13:03 - 00731424 _____ ( ) C:\Users\Budzikowscy\Downloads\AdwCleaner 4.101.exe 2014-11-25 12:54 - 2014-11-25 13:56 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-259255893-3387589743-3849538127-1001 2014-11-25 12:45 - 2014-11-25 12:45 - 00001462 _____ () C:\Users\Budzikowscy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-11-25 12:45 - 2014-11-25 12:45 - 00000000 ____D () C:\Users\Budzikowscy\AppData\Roaming\Adobe 2014-11-25 12:44 - 2014-11-25 13:56 - 00002221 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-11-25 12:44 - 2014-11-25 13:49 - 00004056 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-11-25 12:44 - 2014-11-25 13:49 - 00003820 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-11-25 12:44 - 2014-11-25 12:45 - 00000000 ____D () C:\Program Files (x86)\GUM9527.tmp 2014-11-25 12:44 - 2014-11-25 12:44 - 00000000 ____D () C:\Users\Budzikowscy\AppData\Local\Google 2014-11-25 12:44 - 2014-11-25 12:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-11-25 12:44 - 2014-11-25 12:44 - 00000000 ____D () C:\Program Files (x86)\Google 2014-11-25 12:44 - 2013-12-23 14:44 - 00163480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 01070232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00660120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomct2.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00617896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00444328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshflxgd.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00416408 _____ (Microsoft Corporation ) C:\Windows\SysWOW64\comct332.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00279192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatgrd.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00259736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msflxgrd.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00253080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdatlst.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00222360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tabctl32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00219288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\richtx32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00218776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dblist32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00212112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mci32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00179352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmask32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00170920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comct232.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00131728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00130712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstdfmt.dll 2014-11-25 12:44 - 2013-12-20 00:48 - 00127640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswinsck.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00119960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomm32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00108696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msstkprp.dll 2014-11-25 12:44 - 2013-12-20 00:48 - 00104088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\picclp32.ocx 2014-11-25 12:44 - 2013-12-20 00:48 - 00084624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysinfo.ocx 2014-11-25 12:44 - 2011-01-12 13:36 - 01054208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71u.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71deu.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71ita.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71fra.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71esp.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71enu.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71kor.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71jpn.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71cht.dll 2014-11-25 12:44 - 2011-01-12 13:25 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71chs.dll 2014-11-25 12:44 - 2011-01-12 13:19 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll 2014-11-25 12:44 - 2011-01-12 12:53 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl71.dll 2014-11-25 12:44 - 2007-02-01 22:13 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2014-11-25 12:44 - 2007-02-01 19:11 - 00344064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2014-11-25 12:44 - 2007-01-30 22:04 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr70.dll 2014-11-25 12:44 - 2006-08-26 00:28 - 01017344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70u.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70ita.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70fra.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70esp.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70deu.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70enu.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70kor.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70jpn.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70cht.dll 2014-11-25 12:44 - 2006-08-26 00:15 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70chs.dll 2014-11-25 12:44 - 2006-08-26 00:07 - 01024000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc70.dll 2014-11-25 12:44 - 2006-08-25 23:17 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl70.dll 2014-11-25 12:44 - 2005-01-20 19:25 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvci70.dll 2014-11-25 12:44 - 2002-01-05 05:40 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp70.dll 2014-11-25 12:44 - 2001-08-23 00:00 - 01355776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvbvm50.dll 2014-11-25 12:44 - 1996-01-12 03:00 - 00722192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vb40032.dll 2014-11-25 12:44 - 1993-07-23 19:31 - 00210944 _____ () C:\Windows\SysWOW64\msvcrt10.dll 2014-11-25 12:31 - 2014-11-25 13:38 - 00028254 _____ () C:\Windows\WindowsUpdate.log 2014-11-25 12:31 - 2014-11-25 12:45 - 00000000 ____D () C:\Users\Budzikowscy\AppData\Local\Packages 2014-11-25 12:31 - 2014-11-25 12:45 - 00000000 ____D () C:\Users\Budzikowscy 2014-11-25 12:31 - 2014-11-25 12:44 - 00002685 _____ () C:\Windows\system32\WinToolkit_RunOnce_Log.log 2014-11-25 12:31 - 2014-11-25 12:31 - 00000020 ___SH () C:\Users\Budzikowscy\ntuser.ini 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\Ustawienia lokalne 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\Szablony 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\Moje dokumenty 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\Menu Start 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\Documents\Moje wideo 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\Documents\Moje obrazy 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\Documents\Moja muzyka 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\Dane aplikacji 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\AppData\Local\Historia 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 _SHDL () C:\Users\Budzikowscy\AppData\Local\Dane aplikacji 2014-11-25 12:31 - 2014-11-25 12:31 - 00000000 ____D () C:\Windows\CSC 2014-11-25 12:31 - 2014-05-14 13:48 - 00000000 ___RD () C:\Users\Budzikowscy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-11-25 12:31 - 2014-03-18 11:13 - 00000000 ___RD () C:\Users\Budzikowscy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-11-25 12:31 - 2014-03-18 11:00 - 00000369 _____ () C:\Users\Budzikowscy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-11-25 12:31 - 2014-03-18 11:00 - 00000369 _____ () C:\Users\Budzikowscy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-11-25 12:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Budzikowscy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-11-25 12:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Budzikowscy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Public\Documents\Moje wideo 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Public\Documents\Moje obrazy 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Public\Documents\Moja muzyka 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\Ustawienia lokalne 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\Szablony 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\Moje dokumenty 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\Menu Start 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\Documents\Moje wideo 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\Documents\Moje obrazy 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\Documents\Moja muzyka 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\Dane aplikacji 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Historia 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Dane aplikacji 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje wideo 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje obrazy 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default User\Documents\Moja muzyka 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Historia 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Dane aplikacji 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\ProgramData\Szablony 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\ProgramData\Pulpit 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\ProgramData\Menu Start 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\ProgramData\Dokumenty 2014-11-25 12:29 - 2014-11-25 12:29 - 00000000 _SHDL () C:\ProgramData\Dane aplikacji 2014-11-25 12:28 - 2014-11-25 12:28 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2014-11-25 12:24 - 2014-11-25 12:31 - 00000000 ____D () C:\Windows\Panther ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-11-25 13:43 - 2014-03-18 10:56 - 01764162 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-11-25 13:43 - 2014-03-18 10:23 - 00783720 _____ () C:\Windows\system32\perfh015.dat 2014-11-25 13:43 - 2014-03-18 10:23 - 00154348 _____ () C:\Windows\system32\perfc015.dat 2014-11-25 13:39 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-11-25 13:19 - 2014-03-18 02:45 - 00001656 _____ () C:\Windows\PFRO.log 2014-11-25 13:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2014-11-25 12:46 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-11-25 12:36 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2014-11-25 12:30 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2014-11-25 12:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT 2014-11-25 12:29 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default 2014-11-25 12:28 - 2013-08-22 16:37 - 00002664 _____ () C:\Windows\DtcInstall.log 2014-11-25 12:28 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Recovery 2014-11-25 12:28 - 2013-08-22 15:46 - 00015900 _____ () C:\Windows\setupact.log 2014-11-25 12:28 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2014-11-25 12:24 - 2013-08-22 16:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template Some content of TEMP: ==================== C:\Users\Budzikowscy\AppData\Local\Temp\ICReinstall_AdwCleaner 4.101.exe C:\Users\Budzikowscy\AppData\Local\Temp\Quarantine.exe C:\Users\Budzikowscy\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-11-25 12:27 ==================== End Of Log ============================