Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-06-2015 01 Ran by Klaudia (administrator) on HP-PAVILION on 03-07-2015 00:40:06 Running from C:\Users\Klaudia\Downloads Loaded Profiles: Klaudia (Available Profiles: Klaudia) Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Polski (Polska) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_8e7d5b9d3a91d8c5\stacsv.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (AMD) C:\Windows\System32\atieclxx.exe (Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_8e7d5b9d3a91d8c5\AEstSrv.exe () C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe (Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe () D:\Program Files\Core Temp\Core Temp.exe (Dassault Systèmes) C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe (XTab system) C:\Program Files\MiuiTab\ProtectService.exe (SearchProtect) C:\Program Files\MiuiTab\CmdShell.exe (arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe (Microsoft Corporation) C:\Users\Klaudia\AppData\Roaming\Microsoft\SystemCertificates\VSSVC.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Nullsoft, Inc.) D:\Winamp\winampa.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe (Nokia) D:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (DT Soft Ltd) D:\Program Files\DAEMON Tools Lite\DTLite.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Nokia.) C:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia) C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (Nokia) C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (XTab system) C:\Program Files\MiuiTab\HPNotify.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM\...\Run: [WinampAgent] => D:\Winamp\winampa.exe [37888 2010-01-14] (Nullsoft, Inc.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [458844 2009-07-21] (IDT, Inc.) HKLM\...\Run: [mobilegeni daemon] => C:\Program Files\Mobogenie\DaemonProcess.exe HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM\...\Run: [QuickTime Task] => D:\Program Files\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-07-02] (Avast Software s.r.o.) HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\Run: [Pando Media Booster] => C:\Program Files\Pando Networks\Media Booster\PMB.exe [3093624 2013-03-18] () HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\Run: [PC Suite Tray] => D:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [1414144 2009-06-25] (Nokia) HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\Run: [DAEMON Tools Lite] => D:\Program Files\DAEMON Tools Lite\DTLite.exe [357696 2010-04-01] (DT Soft Ltd) HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\CurrentVersion\Windows: [Load] C:\ProgramData\mshvofu.exe <===== ATTENTION HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\MountPoints2: G - G:\LG_PC_Programs.exe HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\MountPoints2: {4503f33e-489f-11e4-94b7-001e68c729ea} - G:\LG_PC_Programs.exe HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\MountPoints2: {4673b82c-543a-11e3-ac1c-001e68c729ea} - I:\autorun.exe HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\MountPoints2: {59e74d1a-546a-11e3-9f48-001e68c729ea} - E:\autorun.exe HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\MountPoints2: {6f334946-069f-11e4-8d99-001e68c729ea} - G:\LG_PC_Programs.exe HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\MountPoints2: {eb16cf96-f52e-11e3-9ef0-001e68c729ea} - G:\LaunchU3.exe -a HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\...\MountPoints2: {fa3d9433-3254-11e3-a78c-001e68c729ea} - I:\HTC_Sync_Manager_PC.exe HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-05-14] (Microsoft Corporation) Startup: C:\Users\Klaudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\a.lnk [2015-06-19] ShortcutTarget: a.lnk -> C:\Users\Klaudia\AppData\Roaming\obufpkupaf.exe (No File) Startup: C:\Users\Klaudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk [2013-03-18] ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk -> C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-07-02] (Avast Software s.r.o.) ShellIconOverlayIdentifiers: [GGDriveOverlay1] -> {E68D0A50-3C40-4712-B90D-DCFA93FF2534} => C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File ShellIconOverlayIdentifiers: [GGDriveOverlay2] -> {E68D0A51-3C40-4712-B90D-DCFA93FF2534} => C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File ShellIconOverlayIdentifiers: [GGDriveOverlay3] -> {E68D0A52-3C40-4712-B90D-DCFA93FF2534} => C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File ShellIconOverlayIdentifiers: [GGDriveOverlay4] -> {E68D0A53-3C40-4712-B90D-DCFA93FF2534} => C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File ShellIconOverlayIdentifiers: [Uchwyt nakładania ikony podpisu cyfrowego] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2011-02-04] (Autodesk, Inc.) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hppp&ts=1435787887&z=83075d3ef9409a7dc058bebgbz2cbw6m0b2m9b1b7c&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds&ts=1435787845&z=7362e3732a3643fec1d8bfag4zac8w3mcb7m8b3z9o&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hppp&ts=1435787887&z=83075d3ef9409a7dc058bebgbz2cbw6m0b2m9b1b7c&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds&ts=1435787845&z=7362e3732a3643fec1d8bfag4zac8w3mcb7m8b3z9o&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&q={searchTerms} HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=dspp&ts=1435787887&z=83075d3ef9409a7dc058bebgbz2cbw6m0b2m9b1b7c&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&q={searchTerms} HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hppp&ts=1435787887&z=83075d3ef9409a7dc058bebgbz2cbw6m0b2m9b1b7c&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015 HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hppp&ts=1435787887&z=83075d3ef9409a7dc058bebgbz2cbw6m0b2m9b1b7c&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015 HKU\S-1-5-21-1614515609-1224354108-2549182925-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=dspp&ts=1435787887&z=83075d3ef9409a7dc058bebgbz2cbw6m0b2m9b1b7c&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&q={searchTerms} SearchScopes: HKU\S-1-5-21-1614515609-1224354108-2549182925-1000 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&ts=1435787908&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1614515609-1224354108-2549182925-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&ts=1435787908&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1614515609-1224354108-2549182925-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&ts=1435787908&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1614515609-1224354108-2549182925-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&ts=1435787908&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1614515609-1224354108-2549182925-1000 -> {8FDCCA14-B5B1-44DB-8C35-6ED28C45F003} URL = http://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&ts=1435787908&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1614515609-1224354108-2549182925-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD2500BEVS-60UST0_WD-WXE608EH2015H2015&ts=1435787908&type=default&q={searchTerms} BHO: LuckyTab Class -> {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} -> C:\Program Files\MiuiTab\SupTab.dll [2015-06-24] (Thinknice Co. Limited) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-06-19] (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-07-02] (Avast Software s.r.o.) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-06-19] (Oracle Corporation) BHO: Jungle Net -> {dcfb5bfe-1f58-4b1d-96a7-3c7bbae51b36} -> C:\Program Files\Jungle Net\Extensions\dcfb5bfe-1f58-4b1d-96a7-3c7bbae51b36.dll No File DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 10.10.10.1 Tcpip\..\Interfaces\{398CEA70-3FA7-42D2-84EF-7246F8C99E36}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{D2AB566C-8C5D-4906-93F7-826841A1FA4D}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{D6002B16-F5D9-4FF8-B0E1-7CEB0051A4C2}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{F1285FE9-1AA3-410B-A64D-EF3543A70BDC}: [DhcpNameServer] 10.10.10.1 FireFox: ======== FF ProfilePath: C:\Users\Klaudia\AppData\Roaming\Mozilla\Firefox\Profiles\xufxrp26.default FF SearchEngineOrder.1: Ask.com FF SelectedSearchEngine: istartsurf FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_18_0_0_194.dll [2015-06-24] () FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1213153.dll [2014-06-24] (Adobe Systems, Inc.) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-06-19] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-06-19] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin: @pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-03-18] (Pando Networks) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1614515609-1224354108-2549182925-1000: pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-03-18] (Pando Networks) FF user.js: detected! => C:\Users\Klaudia\AppData\Roaming\Mozilla\Firefox\Profiles\xufxrp26.default\user.js [2015-07-02] FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-05-01] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll [2015-03-30] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll [2015-03-30] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll [2015-03-30] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll [2015-03-30] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll [2015-03-30] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwachk.dll [2010-01-14] (Nullsoft, Inc.) FF Extension: SaveFrom.net helper - C:\Users\Klaudia\AppData\Roaming\Mozilla\Firefox\Profiles\xufxrp26.default\Extensions\helper@savefrom.net.xpi [2014-06-05] FF Extension: Lightbeam - C:\Users\Klaudia\AppData\Roaming\Mozilla\Firefox\Profiles\xufxrp26.default\Extensions\jid1-F9UJ2thwoAm5gQ@jetpack.xpi [2015-01-28] FF Extension: Adblock Plus - C:\Users\Klaudia\AppData\Roaming\Mozilla\Firefox\Profiles\xufxrp26.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-04-22] FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-06-02] FF HKLM\...\Firefox\Extensions: [bkmrksync@nokia.com] - D:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync FF Extension: PC Sync 2 Synchronisation Extension - D:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync [2013-03-25] FF HKLM\...\Firefox\Extensions: [sweetsearch@gmail.com] - C:\Users\Klaudia\AppData\Roaming\Mozilla\Firefox\Profiles\xufxrp26.default\extensions\sweetsearch@gmail.com FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-07-02] Chrome: ======= CHR Profile: C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-10-01] CHR Extension: (Google Docs) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-10-01] CHR Extension: (Google Drive) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-10-01] CHR Extension: (YouTube) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-10-01] CHR Extension: (Adblock Plus) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-06-16] CHR Extension: (Google Search) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-01] CHR Extension: (Google Sheets) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-10-01] CHR Extension: (Jungle Net) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhfofcmiohmadbkaakkcdeimlmpbjgpj [2015-07-02] CHR Extension: (Google Wallet) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-10-01] CHR Extension: (Gmail) - C:\Users\Klaudia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-10-01] CHR HKLM\...\Chrome\Extension: [aaaaojmikegpiepcfdkkjaplodkpfmlo] - C:\Users\Klaudia\AppData\Local\APN\GoogleCRXs\apnorjtoolbar.crx [Not Found] CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-02] CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [18656 2011-02-02] () S3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3207800 2015-07-02] (Avast Software) R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation) R2 DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [86016 2014-03-13] (Dassault Systèmes) [File not signed] S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2014-05-08] (Flexera Software, Inc.) R2 IHProtect Service; C:\Program Files\MiuiTab\ProtectService.exe [125112 2015-06-24] (XTab system) S2 KMService; C:\Windows\system32\srvany.exe [8192 2013-03-18] () [File not signed] R2 PSI_SVC_2; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [277360 2013-09-13] (arvato digital services llc) R3 ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [637952 2009-06-02] (Nokia.) [File not signed] R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_8e7d5b9d3a91d8c5\STacSV.exe [221266 2009-07-21] (IDT, Inc.) R2 VSSS; C:\Users\Klaudia\AppData\Roaming\Microsoft\SystemCertificates\VSSVC.exe [100715584 2015-06-24] (Microsoft Corporation) [File not signed] <==== ATTENTION ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag.sys [23680 2014-10-09] (LG Electronics Inc.) S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem.sys [28416 2014-10-09] (LG Electronics Inc.) S3 andnetndis; C:\Windows\System32\DRIVERS\lgandnetndis.sys [74240 2014-10-09] (LG Electronics Inc.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-07-02] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [74976 2015-07-02] (Avast Software s.r.o.) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-07-02] (Avast Software s.r.o.) R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-07-02] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [787760 2015-07-02] (Avast Software s.r.o.) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [428120 2015-07-02] (Avast Software s.r.o.) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-07-02] (Avast Software s.r.o.) R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [209048 2015-07-02] () S3 ddcdrv; C:\Windows\system32\ddcdrv.sys [7168 2009-11-10] () [File not signed] R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2013-11-23] () [File not signed] R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-07-02] (Avast Software) U3 afupuhtt; C:\Windows\system32\Drivers\afupuhtt.sys [0 ] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder) R3 ALSysIO; \??\C:\Users\Klaudia\AppData\Local\Temp\ALSysIO.sys [X] S3 clwvd; system32\DRIVERS\clwvd.sys [X] S3 KProcessHacker2; \??\C:\Program Files\kprocesshacker.sys [X] S1 MpKslc0dfef32; \??\C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{422A20C6-6553-47F6-8D34-B774852C625D}\MpKslc0dfef32.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-03 00:40 - 2015-07-03 00:40 - 00025160 _____ C:\Users\Klaudia\Downloads\FRST.txt 2015-07-03 00:39 - 2015-07-03 00:40 - 00000000 ____D C:\FRST 2015-07-03 00:39 - 2015-07-03 00:39 - 01636352 _____ (Farbar) C:\Users\Klaudia\Downloads\FRST.exe 2015-07-03 00:26 - 2015-07-03 00:26 - 00532136 _____ (Duplex Secure Ltd) C:\Users\Klaudia\Downloads\Niepotwierdzony 83212.crdownload 2015-07-02 23:46 - 2015-07-02 23:46 - 00065728 _____ C:\Users\Klaudia\Downloads\Extras.Txt 2015-07-02 23:45 - 2015-07-02 23:45 - 00206544 _____ C:\Users\Klaudia\Downloads\OTL.Txt 2015-07-02 23:26 - 2015-07-02 23:26 - 00602112 _____ (OldTimer Tools) C:\Users\Klaudia\Downloads\OTL.exe 2015-07-02 23:19 - 2015-07-02 23:19 - 00176276 _____ C:\Users\Klaudia\Downloads\fix.txt 2015-07-02 22:41 - 2015-07-02 23:51 - 00000000 ____D C:\TEMP 2015-07-02 22:26 - 2015-07-02 22:26 - 00142960 _____ C:\Windows\Minidump\070215-35599-01.dmp 2015-07-02 22:24 - 2015-07-02 22:25 - 00000000 ___SD C:\32788R22FWJFW 2015-07-02 22:24 - 2015-07-02 22:24 - 01010176 _____ C:\Users\Klaudia\Downloads\MicrosoftFixit50884.msi 2015-07-02 22:24 - 2015-07-02 22:24 - 00000000 ____D C:\Windows\erdnt 2015-07-02 22:22 - 2015-07-02 22:23 - 00002163 _____ C:\Users\Klaudia\Desktop\FIX.REG 2015-07-02 22:13 - 2015-07-02 22:14 - 05631262 ____R (Swearware) C:\Users\Klaudia\Downloads\ComboFix.exe 2015-07-02 20:57 - 2015-07-02 20:57 - 00000000 ____D C:\Users\Klaudia\AppData\Roaming\AVAST Software 2015-07-02 20:56 - 2015-07-02 20:56 - 01169408 _____ (wj32) C:\Program Files\DLYGOCM9.exe 2015-07-02 20:56 - 2015-07-02 20:56 - 01169408 _____ (wj32) C:\Program Files\3BO6JW43.exe 2015-07-02 20:44 - 2015-07-02 20:44 - 01169408 _____ (wj32) C:\Program Files\V8LO1EWY.exe 2015-07-02 20:44 - 2015-07-02 20:44 - 00428120 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys 2015-07-02 20:44 - 2015-07-02 20:44 - 00209048 _____ C:\Windows\system32\Drivers\aswVmm.sys 2015-07-02 20:44 - 2015-07-02 20:44 - 00106912 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys 2015-07-02 20:44 - 2015-07-02 20:44 - 00081728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys 2015-07-02 20:44 - 2015-07-02 20:44 - 00074976 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys 2015-07-02 20:44 - 2015-07-02 20:44 - 00049904 _____ C:\Windows\system32\Drivers\aswRvrt.sys 2015-07-02 20:44 - 2015-07-02 20:44 - 00024144 _____ C:\Windows\system32\Drivers\aswHwid.sys 2015-07-02 20:44 - 2015-07-02 20:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2015-07-02 20:44 - 2015-07-02 20:43 - 00787760 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys 2015-07-02 20:44 - 2015-07-02 20:43 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe 2015-07-02 20:43 - 2015-07-02 20:43 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr 2015-07-02 20:35 - 2015-07-02 20:35 - 00000000 ____D C:\Program Files\AVAST Software 2015-07-02 20:34 - 2015-07-02 20:34 - 00000000 ____D C:\ProgramData\AVAST Software 2015-07-02 20:15 - 2015-07-02 20:16 - 05684904 _____ (Avast Software s.r.o.) C:\Users\Klaudia\Downloads\avastclear.exe 2015-07-02 20:13 - 2015-07-02 20:13 - 01169408 _____ (wj32) C:\Program Files\Y1JWZC5K.exe 2015-07-02 20:13 - 2015-07-02 20:13 - 01169408 _____ (wj32) C:\Program Files\2KXAIVP5.exe 2015-07-02 20:13 - 2015-07-02 20:13 - 01169408 _____ (wj32) C:\Program Files\19MZHAO3.exe 2015-07-02 16:07 - 2015-07-02 16:07 - 01169408 _____ (wj32) C:\Program Files\3BO192BH.exe 2015-07-02 14:20 - 2015-07-02 14:20 - 00000266 __RSH C:\ProgramData\ntuser.pol 2015-07-02 13:46 - 2015-07-02 13:46 - 01169408 _____ (wj32) C:\Program Files\HP2FXANX.exe 2015-07-02 13:46 - 2015-07-02 13:46 - 01169408 _____ (wj32) C:\Program Files\DV8LTMG6.exe 2015-07-01 23:59 - 2015-07-01 23:59 - 00000000 ____D C:\ProgramData\IHProtectUpDate 2015-07-01 23:58 - 2015-07-01 23:59 - 00000000 ____D C:\Program Files\MiuiTab 2015-07-01 23:58 - 2015-07-01 23:58 - 01169408 _____ (wj32) C:\Program Files\9R4HLAET.exe 2015-07-01 23:57 - 2015-07-01 23:57 - 05186048 _____ C:\Users\Klaudia\Downloads\WindowsDefender(dobreprogramy.pl).msi 2015-06-29 23:00 - 2015-06-29 23:00 - 01169408 _____ (wj32) C:\Program Files\W9MZX1AZ.exe 2015-06-29 19:58 - 2015-06-29 19:58 - 01169408 _____ (wj32) C:\Program Files\OJJOJKGZ.exe 2015-06-29 19:58 - 2015-06-29 19:58 - 01169408 _____ (wj32) C:\Program Files\KFKKFZSC.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 01169408 _____ (wj32) C:\Program Files\Z56HNOZ5.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 01169408 _____ (wj32) C:\Program Files\Z44ZKKFV.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 01169408 _____ (wj32) C:\Program Files\O19MZHKK.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 01169408 _____ (wj32) C:\Program Files\NSSNSCJV.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 01169408 _____ (wj32) C:\Program Files\FKFFK47S.exe 2015-06-29 19:52 - 2015-06-29 19:52 - 01169408 _____ (wj32) C:\Program Files\U7FSATH6.exe 2015-06-28 02:52 - 2015-06-28 02:52 - 01169408 _____ (wj32) C:\Program Files\2KX5IBKK.exe 2015-06-27 22:25 - 2015-06-27 22:25 - 01169408 _____ (wj32) C:\Program Files\R4CP20TT.exe 2015-06-27 22:24 - 2015-06-27 22:24 - 01169408 _____ (wj32) C:\Program Files\8L3GT1A9.exe 2015-06-27 17:11 - 2015-06-27 17:11 - 01169408 _____ (wj32) C:\Program Files\LGLLG0K5.exe 2015-06-27 17:10 - 2015-06-27 17:10 - 01169408 _____ (wj32) C:\Program Files\W4HUCPII.exe 2015-06-27 17:10 - 2015-06-27 17:10 - 01169408 _____ (wj32) C:\Program Files\DKYBOMFV.exe 2015-06-27 17:10 - 2015-06-27 17:10 - 01169408 _____ (wj32) C:\Program Files\8EPKW78E.exe 2015-06-27 17:10 - 2015-06-27 17:10 - 01169408 _____ (wj32) C:\Program Files\08LYGPZC.exe 2015-06-27 17:08 - 2015-06-27 17:08 - 01169408 _____ (wj32) C:\Program Files\MXY4FGMX.exe 2015-06-27 17:08 - 2015-06-27 17:08 - 01169408 _____ (wj32) C:\Program Files\JKK128JN.exe 2015-06-27 17:08 - 2015-06-27 17:08 - 01169408 _____ (wj32) C:\Program Files\4MZ7KT89.exe 2015-06-27 17:08 - 2015-06-27 17:08 - 01169408 _____ (wj32) C:\Program Files\4CP7KXGU.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 01169408 _____ (wj32) C:\Program Files\YBO6JWKK.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 01169408 _____ (wj32) C:\Program Files\WRWWRG08.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 01169408 _____ (wj32) C:\Program Files\O6JR4DMN.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 01169408 _____ (wj32) C:\Program Files\GBGGBGZW.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 01169408 _____ (wj32) C:\Program Files\CPXAN5ZT.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 01169408 _____ (wj32) C:\Program Files\1EHP2FYD.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 01169408 _____ (wj32) C:\Program Files\NNSNNKZV.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 01169408 _____ (wj32) C:\Program Files\88388SCR.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 01169408 _____ (wj32) C:\Program Files\83383BVW.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 01169408 _____ (wj32) C:\Program Files\3883D8VK.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 01169408 _____ (wj32) C:\Program Files\00V008BB.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 01169408 _____ (wj32) C:\Program Files\WRWWRNNB.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 01169408 _____ (wj32) C:\Program Files\V3GJ1AJY.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 01169408 _____ (wj32) C:\Program Files\FFKFFS0S.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 01169408 _____ (wj32) C:\Program Files\BGGGGZS8.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 01169408 _____ (wj32) C:\Program Files\AFS6V6HJ.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 01169408 _____ (wj32) C:\Program Files\RRWRWWOW.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 01169408 _____ (wj32) C:\Program Files\IRAJ2X8M.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 01169408 _____ (wj32) C:\Program Files\GGBGGBGR.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 01169408 _____ (wj32) C:\Program Files\7SSNSS8Z.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 01169408 _____ (wj32) C:\Program Files\2FSKYB56.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 01169408 _____ (wj32) C:\Program Files\2AN5I6FV.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 01169408 _____ (wj32) C:\Program Files\Z4Z44OVC.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 01169408 _____ (wj32) C:\Program Files\U7FS5J84.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 01169408 _____ (wj32) C:\Program Files\SSNSNV3F.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 01169408 _____ (wj32) C:\Program Files\RWWRWG4B.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 01169408 _____ (wj32) C:\Program Files\BGBGL73R.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 01169408 _____ (wj32) C:\Program Files\OJJOFG50.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 01169408 _____ (wj32) C:\Program Files\NSNSSKG4.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 01169408 _____ (wj32) C:\Program Files\JOOJOVC0.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 01169408 _____ (wj32) C:\Program Files\4Z44ZO8G.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 01169408 _____ (wj32) C:\Program Files\0V00VO7C.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 01169408 _____ (wj32) C:\Program Files\XSXNSSN4.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 01169408 _____ (wj32) C:\Program Files\TJOOJCVG.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 01169408 _____ (wj32) C:\Program Files\BBGBSJ53.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 01169408 _____ (wj32) C:\Program Files\BBGBGOWZ.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 01169408 _____ (wj32) C:\Program Files\AN0IVEXY.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 01169408 _____ (wj32) C:\Program Files\3383883F.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 01169408 _____ (wj32) C:\Program Files\U7P2FN0G.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 01169408 _____ (wj32) C:\Program Files\GBBGBC8J.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 01169408 _____ (wj32) C:\Program Files\7C77C7JG.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 01169408 _____ (wj32) C:\Program Files\77C7CKFR.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 01169408 _____ (wj32) C:\Program Files\4Z44ZCFV.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 01169408 _____ (wj32) C:\Program Files\WRW1RZJ8.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 01169408 _____ (wj32) C:\Program Files\KKFKF7ZC.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 01169408 _____ (wj32) C:\Program Files\CFSV3CBK.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 01169408 _____ (wj32) C:\Program Files\BGBBG8SV.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 01169408 _____ (wj32) C:\Program Files\8L3GTHAA.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 01169408 _____ (wj32) C:\Program Files\WWRWWRJW.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 01169408 _____ (wj32) C:\Program Files\WRWWRWRJ.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 01169408 _____ (wj32) C:\Program Files\T6ER9IR6.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 01169408 _____ (wj32) C:\Program Files\BLLBGGBZ.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 01169408 _____ (wj32) C:\Program Files\88388GJV.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 01169408 _____ (wj32) C:\Program Files\33D38NJC.exe 2015-06-27 16:57 - 2015-06-27 16:57 - 01169408 _____ (wj32) C:\Program Files\ZZ4Z44O0.exe 2015-06-27 16:57 - 2015-06-27 16:57 - 01169408 _____ (wj32) C:\Program Files\JWER4C0H.exe 2015-06-27 16:57 - 2015-06-27 16:57 - 01169408 _____ (wj32) C:\Program Files\GYBOWK94.exe 2015-06-27 16:57 - 2015-06-27 16:57 - 01169408 _____ (wj32) C:\Program Files\CLZIRZIE.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 01169408 _____ (wj32) C:\Program Files\V0V008SV.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 01169408 _____ (wj32) C:\Program Files\OTGBGOVK.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 01169408 _____ (wj32) C:\Program Files\H09S1GNE.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 01169408 _____ (wj32) C:\Program Files\BGBBGB30.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 01169408 _____ (wj32) C:\Program Files\0IK3BOC6.exe 2015-06-27 14:00 - 2015-06-27 14:00 - 01169408 _____ (wj32) C:\Program Files\949441SW.exe 2015-06-27 03:20 - 2015-06-27 03:20 - 00000000 ____D C:\Program Files\Opera 2015-06-27 03:09 - 2015-06-27 03:10 - 00985600 _____ C:\Users\Klaudia\Downloads\MicrosoftFixit50123.msi 2015-06-27 02:29 - 2015-06-27 02:31 - 04009167 _____ C:\Users\Klaudia\Downloads\ServicesRepair.exe 2015-06-27 02:17 - 2015-06-27 02:18 - 01125355 _____ C:\Users\Klaudia\Downloads\Windows-Defender(11991)-dp.jse 2015-06-27 02:02 - 2015-06-27 02:02 - 01169408 _____ (wj32) C:\Program Files\XXSXX51P.exe 2015-06-27 02:02 - 2015-06-27 02:02 - 01169408 _____ (wj32) C:\Program Files\OX5DK81F.exe 2015-06-27 02:02 - 2015-06-27 02:02 - 01169408 _____ (wj32) C:\Program Files\J1EMUISZ.exe 2015-06-27 02:02 - 2015-06-27 02:02 - 01169408 _____ (wj32) C:\Program Files\BOW4C0EY.exe 2015-06-25 19:55 - 2015-06-25 19:55 - 01169408 _____ (wj32) C:\Program Files\4MFS0OX4.exe 2015-06-25 19:55 - 2015-06-25 19:55 - 01169408 _____ (wj32) C:\Program Files\4HZCPTT9.exe 2015-06-25 17:48 - 2015-06-25 17:48 - 01169408 _____ (wj32) C:\Program Files\ZHP2AE9B.exe 2015-06-25 17:48 - 2015-06-25 17:48 - 01169408 _____ (wj32) C:\Program Files\9CP2F3DD.exe 2015-06-25 17:48 - 2015-06-25 17:48 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-06-25 15:39 - 2015-06-25 15:39 - 01169408 _____ (wj32) C:\Program Files\ERZCPNGD.exe 2015-06-25 15:37 - 2015-06-25 15:37 - 00000000 ____D C:\Windows\system32\vbox 2015-06-25 14:17 - 2015-06-25 15:41 - 00000000 ____D C:\Program Files\Microsoft Security Client 2015-06-25 14:10 - 2015-06-25 14:10 - 01169408 _____ (wj32) C:\Program Files\JW9MU3XS.exe 2015-06-25 13:59 - 2015-06-25 13:59 - 01169408 _____ (wj32) C:\Program Files\5IV8GA4K.exe 2015-06-25 13:52 - 2015-06-25 13:52 - 01169408 _____ (wj32) C:\Program Files\R4MZCGGX.exe 2015-06-25 13:51 - 2015-06-25 13:51 - 01169408 _____ (wj32) C:\Program Files\8388383G.exe 2015-06-25 13:11 - 2015-06-25 13:11 - 01169408 _____ (wj32) C:\Program Files\1JW4HKZE.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 01169408 _____ (wj32) C:\Program Files\Z0BHIT4V.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 01169408 _____ (wj32) C:\Program Files\MMHMMHMX.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 01169408 _____ (wj32) C:\Program Files\INIINU67.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 01169408 _____ (wj32) C:\Program Files\GT1EWMHI.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 01169408 _____ (wj32) C:\Program Files\1EW9MVZZ.exe 2015-06-25 12:34 - 2015-06-25 12:34 - 01169408 _____ (wj32) C:\Program Files\9M4HUD1V.exe 2015-06-25 12:34 - 2015-06-25 12:34 - 01169408 _____ (wj32) C:\Program Files\0DLYGPEE.exe 2015-06-24 19:14 - 2015-06-24 19:14 - 01169408 _____ (wj32) C:\Program Files\56HNOZ59.exe 2015-06-24 19:13 - 2015-06-24 19:13 - 01169408 _____ (wj32) C:\Program Files\SAN08HKM.exe 2015-06-24 19:13 - 2015-06-24 19:13 - 01169408 _____ (wj32) C:\Program Files\8LY1ENWC.exe 2015-06-24 19:13 - 2015-06-24 19:13 - 01169408 _____ (wj32) C:\Program Files\0DV8LT61.exe 2015-06-24 17:32 - 2015-06-24 17:32 - 01169408 _____ (wj32) C:\Program Files\S1KTCHWM.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 01169408 _____ (wj32) C:\Program Files\IV8LT7H4.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 01169408 _____ (wj32) C:\Program Files\9S6FY7MY.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 01169408 _____ (wj32) C:\Program Files\9EE9E51Y.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 01169408 _____ (wj32) C:\Program Files\8LT6JCLM.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 01169408 _____ (wj32) C:\Program Files\3BO6JWK8.exe 2015-06-20 12:13 - 2015-06-20 12:13 - 00000000 ____D C:\Users\Klaudia\Tracing 2015-06-19 11:32 - 2015-06-19 11:32 - 00000000 ____D C:\Program Files\Common Files\Java 2015-06-17 14:19 - 2015-06-17 14:19 - 00000000 ____D C:\Users\Klaudia\AppData\Local\GWX 2015-06-16 21:39 - 2015-06-16 21:39 - 00000000 ____D C:\Users\Klaudia\AppData\Roaming\Subversion 2015-06-16 21:39 - 2015-06-16 21:39 - 00000000 ____D C:\Users\Klaudia\AppData\Local\MathWorks 2015-06-16 21:38 - 2015-06-17 02:45 - 00000000 ____D C:\Users\Klaudia\Documents\MATLAB 2015-06-16 21:38 - 2015-06-16 21:38 - 00000000 ____D C:\Users\Klaudia\AppData\Roaming\MathWorks 2015-06-16 21:34 - 2015-06-16 21:34 - 00000910 _____ C:\Users\Klaudia\Desktop\MATLAB R2015a.lnk 2015-06-16 21:34 - 2015-06-16 21:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MATLAB 2015-06-16 21:31 - 2015-07-02 22:31 - 00000570 _____ C:\Windows\Tasks\MATLAB R2015a Startup Accelerator.job 2015-06-16 21:31 - 2015-06-16 21:31 - 00000000 ____D C:\ProgramData\MathWorks 2015-06-16 16:38 - 2015-06-16 16:38 - 00000000 ____D C:\Spacekace 2015-06-16 13:49 - 2015-06-16 13:49 - 00000000 ____D C:\Users\Klaudia\Downloads\MathWorks 2015-06-16 12:54 - 2015-06-16 12:54 - 00000000 ____D C:\Program Files\Nowy folder 2015-06-10 21:34 - 2015-06-02 21:35 - 00342728 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-06-10 21:34 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-06-10 21:34 - 2015-05-25 19:00 - 02384384 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-06-10 21:34 - 2015-05-23 05:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-06-10 21:34 - 2015-05-23 05:28 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-06-10 21:34 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-06-10 21:34 - 2015-05-23 05:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-06-10 21:34 - 2015-05-23 05:15 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-06-10 21:34 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-06-10 21:34 - 2015-05-23 05:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-06-10 21:34 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-06-10 21:34 - 2015-05-23 05:09 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-06-10 21:34 - 2015-05-23 05:08 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-06-10 21:34 - 2015-05-23 05:06 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-06-10 21:34 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-06-10 21:34 - 2015-05-23 05:05 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-06-10 21:34 - 2015-05-23 05:05 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-06-10 21:34 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-06-10 21:34 - 2015-05-23 05:00 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-06-10 21:34 - 2015-05-23 04:57 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-06-10 21:34 - 2015-05-23 04:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-06-10 21:34 - 2015-05-23 04:49 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-06-10 21:34 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-06-10 21:34 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-06-10 21:34 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-06-10 21:34 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-06-10 21:34 - 2015-05-23 04:38 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-06-10 21:34 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-06-10 21:34 - 2015-05-23 04:37 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-06-10 21:34 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-06-10 21:34 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-06-10 21:34 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-06-10 21:34 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-06-10 21:34 - 2015-05-22 20:03 - 00571392 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-06-10 21:34 - 2015-05-22 20:02 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-06-10 21:34 - 2015-05-22 20:02 - 00621568 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-06-10 21:34 - 2015-05-22 20:02 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-06-10 21:34 - 2015-05-22 20:02 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-06-10 21:34 - 2015-05-22 20:02 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-06-10 21:34 - 2015-05-22 19:58 - 00901120 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-06-10 21:34 - 2015-05-21 15:20 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2015-06-10 21:34 - 2015-04-11 05:07 - 00054656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys 2015-06-10 21:31 - 2015-05-25 20:07 - 03989440 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2015-06-10 21:31 - 2015-05-25 20:07 - 03934144 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-06-10 21:31 - 2015-05-25 20:07 - 00137664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-06-10 21:31 - 2015-05-25 20:07 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-06-10 21:31 - 2015-05-25 20:04 - 01307648 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00635392 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-06-10 21:31 - 2015-05-25 20:01 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-06-10 21:31 - 2015-05-25 20:00 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe 2015-06-10 21:31 - 2015-05-25 20:00 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-06-10 21:31 - 2015-05-25 20:00 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe 2015-06-10 21:31 - 2015-05-25 20:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-06-10 21:31 - 2015-05-25 20:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-06-10 21:31 - 2015-05-25 20:00 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe 2015-06-10 21:31 - 2015-05-25 20:00 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe 2015-06-10 21:31 - 2015-05-25 20:00 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-06-10 21:31 - 2015-05-25 20:00 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe 2015-06-10 21:31 - 2015-05-25 19:57 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-06-10 21:31 - 2015-05-25 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-06-10 21:31 - 2015-05-25 19:55 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-06-10 21:31 - 2015-05-25 19:55 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-06-10 21:31 - 2015-05-25 18:53 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2015-06-10 21:30 - 2015-05-09 05:14 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-06-10 21:30 - 2015-05-09 05:13 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-06-10 21:30 - 2015-05-09 05:13 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-06-10 21:30 - 2015-05-09 05:12 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-06-10 21:30 - 2015-05-09 05:08 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 05:08 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 03:59 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 03:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 03:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-06-10 21:30 - 2015-05-09 03:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-06-10 21:30 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-06-10 21:30 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2015-06-10 21:30 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2015-06-10 21:30 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2015-06-10 21:30 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2015-06-10 21:30 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2015-06-09 00:21 - 2015-06-09 00:21 - 00064064 _____ C:\Users\Klaudia\Downloads\Rysunek-wykonawczy-widełek (1).bak 2015-06-09 00:21 - 2015-06-09 00:21 - 00057152 _____ C:\Users\Klaudia\Downloads\Rysunek-wykonawczy-nakrętki.dwg 2015-06-09 00:20 - 2015-06-09 00:20 - 00064064 _____ C:\Users\Klaudia\Downloads\Rysunek-wykonawczy-widełek.bak ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-03 00:22 - 2009-07-14 06:34 - 00022464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-07-03 00:22 - 2009-07-14 06:34 - 00022464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-07-03 00:17 - 2013-03-19 22:13 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-07-03 00:15 - 2014-10-01 23:16 - 00001036 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-07-02 22:58 - 2013-03-18 18:37 - 00000000 ____D C:\Users\Klaudia\AppData\Local\PMB Files 2015-07-02 22:30 - 2013-03-18 16:19 - 01248491 _____ C:\Windows\WindowsUpdate.log 2015-07-02 22:26 - 2014-10-01 23:16 - 00001032 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-07-02 22:26 - 2013-03-24 10:59 - 00000000 ____D C:\Windows\Minidump 2015-07-02 22:26 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-07-02 22:26 - 2009-07-14 06:39 - 00216687 _____ C:\Windows\setupact.log 2015-07-02 21:08 - 2013-03-18 21:54 - 00542922 _____ C:\Windows\PFRO.log 2015-07-02 16:31 - 2013-03-18 16:28 - 01669190 _____ C:\Windows\system32\PerfStringBackup.INI 2015-07-02 16:31 - 2009-07-14 10:07 - 00740348 _____ C:\Windows\system32\perfh015.dat 2015-07-02 16:31 - 2009-07-14 10:07 - 00155890 _____ C:\Windows\system32\perfc015.dat 2015-07-02 13:48 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\GroupPolicy 2015-07-01 23:43 - 2013-03-18 21:35 - 00000000 ____D C:\Users\Klaudia\AppData\Roaming\Winamp 2015-06-29 23:44 - 2013-04-09 02:01 - 00000000 ____D C:\Users\Klaudia\Documents\Youcam 2015-06-27 00:05 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\NDF 2015-06-26 13:54 - 2015-04-01 23:39 - 00000000 ___HD C:\Users\Klaudia\AppData\Roaming\pwo6 2015-06-26 02:25 - 2013-03-25 23:11 - 00000000 ____D C:\Users\Klaudia\Desktop\Gry i programy 2015-06-25 15:41 - 2013-03-18 17:31 - 00001912 _____ C:\Windows\epplauncher.mif 2015-06-24 17:19 - 2013-03-19 22:13 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2015-06-24 17:19 - 2013-03-19 22:13 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2015-06-22 22:21 - 2014-10-01 23:44 - 00002135 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-06-20 14:41 - 2013-03-18 18:14 - 00000000 ____D C:\Users\Klaudia\AppData\Roaming\Skype 2015-06-20 12:13 - 2013-03-18 16:25 - 00000000 ____D C:\Users\Klaudia 2015-06-20 12:12 - 2014-10-05 22:17 - 00000000 ___RD C:\Program Files\Skype 2015-06-20 12:12 - 2013-03-18 18:14 - 00000000 ____D C:\ProgramData\Skype 2015-06-19 11:36 - 2013-10-14 09:25 - 00000000 ____D C:\ProgramData\Oracle 2015-06-19 11:36 - 2013-10-14 09:24 - 00000000 ____D C:\Program Files\Java 2015-06-19 11:31 - 2014-10-01 22:32 - 00096352 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2015-06-17 14:29 - 2014-06-16 21:33 - 00000000 ____D C:\Users\Klaudia\AppData\Local\Adobe 2015-06-16 17:03 - 2014-01-13 22:17 - 00000000 ____D C:\Program Files\MSECache 2015-06-15 18:52 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache 2015-06-12 01:42 - 2013-10-07 12:18 - 00000000 ____D C:\Windows\system32\MRT 2015-06-12 01:26 - 2013-03-24 18:39 - 136900096 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-06-11 11:15 - 2009-07-14 06:33 - 00561096 _____ C:\Windows\system32\FNTCACHE.DAT 2015-06-11 11:12 - 2014-12-10 08:43 - 00000000 ____D C:\Windows\system32\appraiser 2015-06-11 11:12 - 2014-05-07 00:40 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-06-11 11:12 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\pl-PL 2015-06-11 00:56 - 2013-03-18 17:53 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-06-11 00:45 - 2009-07-14 04:04 - 00000478 _____ C:\Windows\win.ini 2015-06-03 11:08 - 2015-06-02 16:49 - 00000000 ____D C:\Program Files\Mozilla Firefox 2015-06-03 11:08 - 2013-03-18 16:42 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service ==================== Files in the root of some directories ======= 2015-06-27 17:06 - 2015-06-27 17:06 - 1169408 _____ (wj32) C:\Program Files\00V008BB.exe 2015-06-27 17:10 - 2015-06-27 17:10 - 1169408 _____ (wj32) C:\Program Files\08LYGPZC.exe 2015-06-25 12:34 - 2015-06-25 12:34 - 1169408 _____ (wj32) C:\Program Files\0DLYGPEE.exe 2015-06-24 19:13 - 2015-06-24 19:13 - 1169408 _____ (wj32) C:\Program Files\0DV8LT61.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 1169408 _____ (wj32) C:\Program Files\0IK3BOC6.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 1169408 _____ (wj32) C:\Program Files\0V00VO7C.exe 2015-07-02 20:13 - 2015-07-02 20:13 - 1169408 _____ (wj32) C:\Program Files\19MZHAO3.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 1169408 _____ (wj32) C:\Program Files\1EHP2FYD.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 1169408 _____ (wj32) C:\Program Files\1EW9MVZZ.exe 2015-06-25 13:11 - 2015-06-25 13:11 - 1169408 _____ (wj32) C:\Program Files\1JW4HKZE.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 1169408 _____ (wj32) C:\Program Files\2AN5I6FV.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 1169408 _____ (wj32) C:\Program Files\2FSKYB56.exe 2015-06-28 02:52 - 2015-06-28 02:52 - 1169408 _____ (wj32) C:\Program Files\2KX5IBKK.exe 2015-07-02 20:13 - 2015-07-02 20:13 - 1169408 _____ (wj32) C:\Program Files\2KXAIVP5.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 1169408 _____ (wj32) C:\Program Files\3383883F.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 1169408 _____ (wj32) C:\Program Files\33D38NJC.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 1169408 _____ (wj32) C:\Program Files\3883D8VK.exe 2015-07-02 16:07 - 2015-07-02 16:07 - 1169408 _____ (wj32) C:\Program Files\3BO192BH.exe 2015-07-02 20:56 - 2015-07-02 20:56 - 1169408 _____ (wj32) C:\Program Files\3BO6JW43.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 1169408 _____ (wj32) C:\Program Files\3BO6JWK8.exe 2015-06-27 17:08 - 2015-06-27 17:08 - 1169408 _____ (wj32) C:\Program Files\4CP7KXGU.exe 2015-06-25 19:55 - 2015-06-25 19:55 - 1169408 _____ (wj32) C:\Program Files\4HZCPTT9.exe 2015-06-25 19:55 - 2015-06-25 19:55 - 1169408 _____ (wj32) C:\Program Files\4MFS0OX4.exe 2015-06-27 17:08 - 2015-06-27 17:08 - 1169408 _____ (wj32) C:\Program Files\4MZ7KT89.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 1169408 _____ (wj32) C:\Program Files\4Z44ZCFV.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 1169408 _____ (wj32) C:\Program Files\4Z44ZO8G.exe 2015-06-24 19:14 - 2015-06-24 19:14 - 1169408 _____ (wj32) C:\Program Files\56HNOZ59.exe 2015-06-25 13:59 - 2015-06-25 13:59 - 1169408 _____ (wj32) C:\Program Files\5IV8GA4K.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 1169408 _____ (wj32) C:\Program Files\77C7CKFR.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 1169408 _____ (wj32) C:\Program Files\7C77C7JG.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 1169408 _____ (wj32) C:\Program Files\7SSNSS8Z.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 1169408 _____ (wj32) C:\Program Files\83383BVW.exe 2015-06-25 13:51 - 2015-06-25 13:51 - 1169408 _____ (wj32) C:\Program Files\8388383G.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 1169408 _____ (wj32) C:\Program Files\88388GJV.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 1169408 _____ (wj32) C:\Program Files\88388SCR.exe 2015-06-27 17:10 - 2015-06-27 17:10 - 1169408 _____ (wj32) C:\Program Files\8EPKW78E.exe 2015-06-27 22:24 - 2015-06-27 22:24 - 1169408 _____ (wj32) C:\Program Files\8L3GT1A9.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 1169408 _____ (wj32) C:\Program Files\8L3GTHAA.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 1169408 _____ (wj32) C:\Program Files\8LT6JCLM.exe 2015-06-24 19:13 - 2015-06-24 19:13 - 1169408 _____ (wj32) C:\Program Files\8LY1ENWC.exe 2015-06-27 14:00 - 2015-06-27 14:00 - 1169408 _____ (wj32) C:\Program Files\949441SW.exe 2015-06-25 17:48 - 2015-06-25 17:48 - 1169408 _____ (wj32) C:\Program Files\9CP2F3DD.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 1169408 _____ (wj32) C:\Program Files\9EE9E51Y.exe 2015-06-25 12:34 - 2015-06-25 12:34 - 1169408 _____ (wj32) C:\Program Files\9M4HUD1V.exe 2015-07-01 23:58 - 2015-07-01 23:58 - 1169408 _____ (wj32) C:\Program Files\9R4HLAET.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 1169408 _____ (wj32) C:\Program Files\9S6FY7MY.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 1169408 _____ (wj32) C:\Program Files\AFS6V6HJ.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 1169408 _____ (wj32) C:\Program Files\AN0IVEXY.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 1169408 _____ (wj32) C:\Program Files\BBGBGOWZ.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 1169408 _____ (wj32) C:\Program Files\BBGBSJ53.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 1169408 _____ (wj32) C:\Program Files\BGBBG8SV.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 1169408 _____ (wj32) C:\Program Files\BGBBGB30.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 1169408 _____ (wj32) C:\Program Files\BGBGL73R.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 1169408 _____ (wj32) C:\Program Files\BGGGGZS8.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 1169408 _____ (wj32) C:\Program Files\BLLBGGBZ.exe 2015-06-27 02:02 - 2015-06-27 02:02 - 1169408 _____ (wj32) C:\Program Files\BOW4C0EY.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 1169408 _____ (wj32) C:\Program Files\CFSV3CBK.exe 2015-06-27 16:57 - 2015-06-27 16:57 - 1169408 _____ (wj32) C:\Program Files\CLZIRZIE.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 1169408 _____ (wj32) C:\Program Files\CPXAN5ZT.exe 2015-06-27 17:10 - 2015-06-27 17:10 - 1169408 _____ (wj32) C:\Program Files\DKYBOMFV.exe 2015-07-02 20:56 - 2015-07-02 20:56 - 1169408 _____ (wj32) C:\Program Files\DLYGOCM9.exe 2015-07-02 13:46 - 2015-07-02 13:46 - 1169408 _____ (wj32) C:\Program Files\DV8LTMG6.exe 2015-06-25 15:39 - 2015-06-25 15:39 - 1169408 _____ (wj32) C:\Program Files\ERZCPNGD.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 1169408 _____ (wj32) C:\Program Files\FFKFFS0S.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 1169408 _____ (wj32) C:\Program Files\FKFFK47S.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 1169408 _____ (wj32) C:\Program Files\GBBGBC8J.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 1169408 _____ (wj32) C:\Program Files\GBGGBGZW.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 1169408 _____ (wj32) C:\Program Files\GGBGGBGR.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 1169408 _____ (wj32) C:\Program Files\GT1EWMHI.exe 2015-06-27 16:57 - 2015-06-27 16:57 - 1169408 _____ (wj32) C:\Program Files\GYBOWK94.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 1169408 _____ (wj32) C:\Program Files\H09S1GNE.exe 2015-07-02 13:46 - 2015-07-02 13:46 - 1169408 _____ (wj32) C:\Program Files\HP2FXANX.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 1169408 _____ (wj32) C:\Program Files\INIINU67.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 1169408 _____ (wj32) C:\Program Files\IRAJ2X8M.exe 2015-06-24 17:31 - 2015-06-24 17:31 - 1169408 _____ (wj32) C:\Program Files\IV8LT7H4.exe 2015-06-27 02:02 - 2015-06-27 02:02 - 1169408 _____ (wj32) C:\Program Files\J1EMUISZ.exe 2015-06-27 17:08 - 2015-06-27 17:08 - 1169408 _____ (wj32) C:\Program Files\JKK128JN.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 1169408 _____ (wj32) C:\Program Files\JOOJOVC0.exe 2015-06-25 14:10 - 2015-06-25 14:10 - 1169408 _____ (wj32) C:\Program Files\JW9MU3XS.exe 2015-06-27 16:57 - 2015-06-27 16:57 - 1169408 _____ (wj32) C:\Program Files\JWER4C0H.exe 2015-06-29 19:58 - 2015-06-29 19:58 - 1169408 _____ (wj32) C:\Program Files\KFKKFZSC.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 1169408 _____ (wj32) C:\Program Files\KKFKF7ZC.exe 2015-06-27 17:11 - 2015-06-27 17:11 - 1169408 _____ (wj32) C:\Program Files\LGLLG0K5.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 1169408 _____ (wj32) C:\Program Files\MMHMMHMX.exe 2015-06-27 17:08 - 2015-06-27 17:08 - 1169408 _____ (wj32) C:\Program Files\MXY4FGMX.exe 2015-06-27 17:06 - 2015-06-27 17:06 - 1169408 _____ (wj32) C:\Program Files\NNSNNKZV.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 1169408 _____ (wj32) C:\Program Files\NSNSSKG4.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 1169408 _____ (wj32) C:\Program Files\NSSNSCJV.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 1169408 _____ (wj32) C:\Program Files\O19MZHKK.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 1169408 _____ (wj32) C:\Program Files\O6JR4DMN.exe 2015-06-27 17:02 - 2015-06-27 17:02 - 1169408 _____ (wj32) C:\Program Files\OJJOFG50.exe 2015-06-29 19:58 - 2015-06-29 19:58 - 1169408 _____ (wj32) C:\Program Files\OJJOJKGZ.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 1169408 _____ (wj32) C:\Program Files\OTGBGOVK.exe 2015-06-27 02:02 - 2015-06-27 02:02 - 1169408 _____ (wj32) C:\Program Files\OX5DK81F.exe 2015-06-27 22:25 - 2015-06-27 22:25 - 1169408 _____ (wj32) C:\Program Files\R4CP20TT.exe 2015-06-25 13:52 - 2015-06-25 13:52 - 1169408 _____ (wj32) C:\Program Files\R4MZCGGX.exe 2015-06-27 17:04 - 2015-06-27 17:04 - 1169408 _____ (wj32) C:\Program Files\RRWRWWOW.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 1169408 _____ (wj32) C:\Program Files\RWWRWG4B.exe 2015-06-24 17:32 - 2015-06-24 17:32 - 1169408 _____ (wj32) C:\Program Files\S1KTCHWM.exe 2015-06-24 19:13 - 2015-06-24 19:13 - 1169408 _____ (wj32) C:\Program Files\SAN08HKM.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 1169408 _____ (wj32) C:\Program Files\SSNSNV3F.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 1169408 _____ (wj32) C:\Program Files\T6ER9IR6.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 1169408 _____ (wj32) C:\Program Files\TJOOJCVG.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 1169408 _____ (wj32) C:\Program Files\U7FS5J84.exe 2015-06-29 19:52 - 2015-06-29 19:52 - 1169408 _____ (wj32) C:\Program Files\U7FSATH6.exe 2015-06-27 17:00 - 2015-06-27 17:00 - 1169408 _____ (wj32) C:\Program Files\U7P2FN0G.exe 2015-06-27 16:56 - 2015-06-27 16:56 - 1169408 _____ (wj32) C:\Program Files\V0V008SV.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 1169408 _____ (wj32) C:\Program Files\V3GJ1AJY.exe 2015-07-02 20:44 - 2015-07-02 20:44 - 1169408 _____ (wj32) C:\Program Files\V8LO1EWY.exe 2015-06-27 17:10 - 2015-06-27 17:10 - 1169408 _____ (wj32) C:\Program Files\W4HUCPII.exe 2015-06-29 23:00 - 2015-06-29 23:00 - 1169408 _____ (wj32) C:\Program Files\W9MZX1AZ.exe 2015-06-27 16:59 - 2015-06-27 16:59 - 1169408 _____ (wj32) C:\Program Files\WRW1RZJ8.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 1169408 _____ (wj32) C:\Program Files\WRWWRG08.exe 2015-06-27 17:05 - 2015-06-27 17:05 - 1169408 _____ (wj32) C:\Program Files\WRWWRNNB.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 1169408 _____ (wj32) C:\Program Files\WRWWRWRJ.exe 2015-06-27 16:58 - 2015-06-27 16:58 - 1169408 _____ (wj32) C:\Program Files\WWRWWRJW.exe 2015-06-27 17:01 - 2015-06-27 17:01 - 1169408 _____ (wj32) C:\Program Files\XSXNSSN4.exe 2015-06-27 02:02 - 2015-06-27 02:02 - 1169408 _____ (wj32) C:\Program Files\XXSXX51P.exe 2015-07-02 20:13 - 2015-07-02 20:13 - 1169408 _____ (wj32) C:\Program Files\Y1JWZC5K.exe 2015-06-27 17:07 - 2015-06-27 17:07 - 1169408 _____ (wj32) C:\Program Files\YBO6JWKK.exe 2015-06-25 12:35 - 2015-06-25 12:35 - 1169408 _____ (wj32) C:\Program Files\Z0BHIT4V.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 1169408 _____ (wj32) C:\Program Files\Z44ZKKFV.exe 2015-06-27 17:03 - 2015-06-27 17:03 - 1169408 _____ (wj32) C:\Program Files\Z4Z44OVC.exe 2015-06-29 19:57 - 2015-06-29 19:57 - 1169408 _____ (wj32) C:\Program Files\Z56HNOZ5.exe 2015-06-25 17:48 - 2015-06-25 17:48 - 1169408 _____ (wj32) C:\Program Files\ZHP2AE9B.exe 2015-06-27 16:57 - 2015-06-27 16:57 - 1169408 _____ (wj32) C:\Program Files\ZZ4Z44O0.exe 2015-03-04 15:15 - 2015-03-04 15:15 - 0000001 _____ () C:\Users\Klaudia\AppData\Local\llftool.4.40.agreement 2013-06-03 14:27 - 2013-06-03 14:27 - 0001005 _____ () C:\Users\Klaudia\AppData\Local\recently-used.xbel 2013-12-19 20:50 - 2014-03-23 02:05 - 0007596 _____ () C:\Users\Klaudia\AppData\Local\Resmon.ResmonCfg 2014-08-04 22:04 - 2014-08-04 22:05 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempaA4596.html 2013-05-08 23:50 - 2013-05-08 23:51 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempaD2044.html 2013-12-07 22:13 - 2013-12-08 01:59 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempAE4836.html 2013-04-04 16:30 - 2013-04-05 00:51 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempaf2644.html 2014-08-02 22:03 - 2014-08-02 23:08 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempaj1920.html 2014-02-07 13:50 - 2014-02-07 14:33 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempaj3448.html 2013-04-09 15:59 - 2013-04-10 00:10 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempak6140.html 2013-10-22 19:14 - 2013-10-23 01:34 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempAM4412.html 2013-04-27 16:40 - 2013-04-28 17:26 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempAU3372.html 2013-04-27 13:30 - 2013-04-27 13:37 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempAy2376.html 2014-03-18 22:36 - 2014-03-18 22:42 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempBb1984.html 2013-05-29 09:19 - 2013-05-30 01:07 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempbd1060.html 2013-05-23 15:47 - 2013-05-23 23:12 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempbd4728.html 2013-04-29 18:46 - 2013-04-29 20:55 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempBe3732.html 2013-06-09 14:14 - 2013-06-09 14:17 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempbK1208.html 2013-06-05 20:16 - 2013-06-05 20:17 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempbl2808.html 2013-04-11 16:55 - 2013-04-12 00:40 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempBl3372.html 2014-05-28 18:24 - 2014-05-28 18:24 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempBm1684.html 2013-04-10 17:22 - 2013-04-10 17:22 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempBm2332.html 2013-03-29 12:56 - 2013-03-29 12:56 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempbOL280.html 2013-05-22 10:39 - 2013-05-22 13:53 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempBq2924.html 2013-05-14 17:15 - 2013-05-14 23:43 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempBR1216.html 2013-06-25 20:23 - 2013-06-26 00:15 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempbs3476.html 2013-10-21 23:50 - 2013-10-22 00:33 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempbS4848.html 2013-10-09 16:31 - 2013-10-10 02:44 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempbUP940.html 2013-10-21 23:50 - 2013-10-22 00:33 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempbV4848.html 2013-12-15 02:56 - 2013-12-15 02:58 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempCC6084.html 2013-04-05 18:44 - 2013-04-06 22:15 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempCN3664.html 2013-03-29 12:56 - 2013-03-29 12:56 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempcql280.html 2014-08-07 21:01 - 2014-08-07 23:17 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempcsE176.html 2014-08-08 23:07 - 2014-08-08 23:07 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempct2760.html 2014-08-04 20:03 - 2014-08-04 20:04 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempCW2668.html 2013-03-24 20:35 - 2013-03-25 00:24 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempCW4080.html 2014-08-18 21:58 - 2014-08-18 23:20 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempCY4432.html 2013-04-03 19:53 - 2013-04-04 01:23 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempdA3976.html 2013-10-17 20:47 - 2013-10-17 20:47 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempdF5192.html 2013-12-01 02:09 - 2013-12-01 03:53 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempDk3704.html 2013-03-25 23:07 - 2013-03-26 00:18 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempDM3040.html 2014-01-08 21:10 - 2014-01-09 02:20 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempdq4920.html 2013-04-02 20:32 - 2013-04-03 02:42 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempdU3280.html 2014-06-03 22:01 - 2014-06-04 03:48 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempDU4352.html 2014-10-01 00:09 - 2014-10-01 00:10 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempdZ3852.html 2013-05-17 18:59 - 2013-05-17 22:34 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempeA1388.html 2013-06-05 20:14 - 2013-06-05 20:16 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempeB2808.html 2013-04-27 13:30 - 2013-04-27 13:37 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempEC2376.html 2014-02-07 13:49 - 2014-02-07 13:49 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempeE1520.html 2013-06-26 22:58 - 2013-06-27 00:23 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempeE4344.html 2013-10-11 18:22 - 2013-10-12 01:42 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempEF2720.html 2013-06-04 00:33 - 2013-06-04 00:34 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempEJ1068.html 2013-05-27 23:34 - 2013-05-29 00:20 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempEK1324.html 2013-10-16 20:13 - 2013-10-16 23:42 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempEq2248.html 2013-03-28 21:48 - 2013-03-29 01:38 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempeQ5240.html 2013-06-17 02:21 - 2013-06-17 02:59 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempER4244.html 2013-10-11 00:11 - 2013-10-11 00:12 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempEt3268.html 2014-03-03 22:29 - 2014-03-03 22:29 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempeZ5016.html 2013-10-17 20:47 - 2013-10-17 20:47 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempfB5192.html 2013-11-17 03:48 - 2013-11-17 04:57 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempfd2176.html 2014-08-15 22:00 - 2014-08-15 23:23 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempfe4220.html 2014-08-08 23:07 - 2014-08-08 23:07 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempFg2760.html 2013-06-12 23:41 - 2013-06-12 23:46 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempFH1648.html 2013-03-23 20:00 - 2013-03-23 20:00 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempFH3548.html 2014-01-20 22:32 - 2014-01-20 22:39 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempFl2232.html 2015-01-16 22:18 - 2015-01-16 22:19 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempFm4512.html 2014-08-02 14:44 - 2014-08-02 16:50 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempFU2380.html 2014-01-13 03:09 - 2014-01-13 05:04 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempfw2268.html 2014-01-09 15:58 - 2014-01-09 18:42 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempfX2356.html 2014-08-15 21:47 - 2014-08-15 21:53 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempgm2420.html 2014-05-27 22:51 - 2014-05-27 23:20 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempgN4768.html 2014-08-02 14:44 - 2014-08-02 16:50 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempgo2380.html 2013-05-10 01:51 - 2013-05-10 01:51 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempGo4516.html 2015-01-16 22:16 - 2015-01-16 22:20 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempgt4512.html 2013-04-25 14:55 - 2013-04-26 00:36 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempGu4212.html 2013-06-14 22:37 - 2013-06-15 01:52 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TemphH5968.html 2013-04-27 16:40 - 2013-04-28 17:26 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempHj3372.html 2013-06-07 23:32 - 2013-06-08 01:38 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempHq2548.html 2013-04-02 20:32 - 2013-04-03 02:42 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempHr3280.html 2013-05-27 23:34 - 2013-05-29 00:20 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempHZ1324.html 2013-05-17 18:59 - 2013-05-17 22:34 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempia1388.html 2013-06-08 16:37 - 2013-06-08 17:43 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempIb3432.html 2013-06-26 22:58 - 2013-06-27 00:23 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempiB4344.html 2013-10-13 14:37 - 2013-10-13 14:38 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempif3528.html 2014-08-15 21:47 - 2014-08-15 21:53 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempih2420.html 2014-03-18 22:43 - 2014-03-18 23:46 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempij2540.html 2014-08-18 21:58 - 2014-08-18 23:20 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempiQ4432.html 2013-06-12 23:41 - 2013-06-12 23:46 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempIR1648.html 2013-06-08 16:33 - 2013-06-08 16:35 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempis5432.html 2013-03-24 17:29 - 2013-03-24 18:38 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempit3924.html 2013-06-08 16:37 - 2013-06-08 17:43 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempiW3432.html 2014-01-04 23:52 - 2014-01-05 01:10 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempIW3532.html 2013-05-15 15:56 - 2013-05-15 23:19 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempjH3156.html 2013-05-30 13:01 - 2013-05-30 17:13 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempjkT684.html 2013-03-26 19:54 - 2013-03-27 00:31 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempjR1084.html 2013-04-08 18:25 - 2013-04-09 02:02 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempJr3944.html 2013-05-22 23:14 - 2013-05-23 00:51 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempJX2032.html 2013-06-08 16:33 - 2013-06-08 16:35 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempKa5432.html 2013-04-06 22:31 - 2013-04-07 00:50 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempkC3236.html 2013-05-08 23:50 - 2013-05-08 23:51 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempKd2044.html 2015-01-16 22:15 - 2015-01-16 22:18 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempKF4512.html 2013-04-25 14:55 - 2013-04-26 00:36 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempko4212.html 2014-06-03 22:01 - 2014-06-04 03:48 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempkO4352.html 2014-08-12 22:16 - 2014-08-12 23:00 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempkO4548.html 2013-04-22 08:19 - 2013-04-22 08:33 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempKQ2144.html 2014-03-18 22:36 - 2014-03-18 22:42 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempkS1984.html 2013-03-24 11:10 - 2013-03-24 17:23 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempKU2600.html 2013-05-24 15:28 - 2013-05-25 01:15 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempku2700.html 2013-06-04 00:33 - 2013-06-04 00:34 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempKX1068.html 2013-05-10 18:44 - 2013-05-11 00:22 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempKz3964.html 2013-04-22 16:04 - 2013-04-22 21:46 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempLe2628.html 2013-05-20 14:50 - 2013-05-20 23:07 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Templi2076.html 2014-01-15 23:43 - 2014-01-16 01:34 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempLi5672.html 2013-05-30 13:01 - 2013-05-30 17:13 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempLIJ684.html 2013-06-07 23:32 - 2013-06-08 01:38 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Templl2548.html 2013-06-11 00:02 - 2013-06-11 00:02 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempLo1360.html 2014-01-15 23:43 - 2014-01-16 01:34 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempLO5672.html 2013-05-20 14:50 - 2013-05-20 23:07 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TemplT2076.html 2013-10-16 20:13 - 2013-10-16 23:42 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Templt2248.html 2013-06-02 19:22 - 2013-06-02 23:46 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Templt2280.html 2013-05-10 01:51 - 2013-05-10 01:51 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TemplT4516.html 2013-06-08 15:52 - 2013-06-08 16:25 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempMA2820.html 2014-05-05 22:37 - 2014-05-05 22:37 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempmF5260.html 2014-08-15 22:00 - 2014-08-15 23:23 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempMk4220.html 2013-06-27 00:22 - 2013-06-27 00:23 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempmk4344.html 2013-12-01 02:09 - 2013-12-01 03:53 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempmL3704.html 2014-01-13 03:09 - 2014-01-13 05:04 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempmr2268.html 2013-04-09 15:59 - 2013-04-10 00:10 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempMT6140.html 2013-11-17 03:48 - 2013-11-17 04:57 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempmu2176.html 2013-10-12 16:54 - 2013-10-12 21:04 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempMv3608.html 2013-10-18 23:18 - 2013-10-19 03:02 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempMW3936.html 2013-06-29 20:05 - 2013-06-29 21:07 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempMX5528.html 2013-10-25 19:21 - 2013-10-25 22:51 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempnB3548.html 2014-05-18 22:18 - 2014-05-18 22:18 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempNCZ812.html 2013-03-20 20:26 - 2013-03-21 01:51 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempnF3368.html 2013-04-06 22:31 - 2013-04-07 00:50 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempnH3236.html 2013-06-11 20:57 - 2013-06-11 23:51 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempNkD928.html 2013-05-22 10:39 - 2013-05-22 13:53 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempnL2924.html 2013-03-19 16:49 - 2013-03-19 22:05 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempNO1244.html 2013-04-29 18:46 - 2013-04-29 20:55 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempnp3732.html 2013-10-09 10:17 - 2013-10-09 11:27 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempNR2128.html 2013-11-04 20:56 - 2013-11-05 01:44 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempNS4264.html 2013-06-25 20:23 - 2013-06-26 00:15 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempNT3476.html 2014-08-17 23:19 - 2014-08-17 23:57 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempNX5756.html 2014-01-19 23:55 - 2014-01-20 02:36 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempOa1560.html 2014-01-08 21:10 - 2014-01-09 02:20 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempoG4920.html 2014-05-18 22:18 - 2014-05-18 22:18 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempoGd812.html 2013-10-10 13:16 - 2013-10-10 19:25 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempoI3092.html 2013-10-18 23:18 - 2013-10-19 03:02 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempoK3936.html 2013-05-10 18:44 - 2013-05-11 00:22 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempOk3964.html 2014-08-04 20:03 - 2014-08-04 20:04 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempoL2668.html 2013-03-27 19:59 - 2013-03-28 00:06 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempOP2408.html 2013-04-23 21:24 - 2013-04-24 00:19 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempoq3152.html 2013-05-15 15:56 - 2013-05-15 23:19 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempoQ3156.html 2013-03-24 11:10 - 2013-03-24 17:23 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempOr2600.html 2013-12-07 22:13 - 2013-12-08 01:59 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempor4836.html 2013-05-08 16:06 - 2013-05-08 16:06 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempOV4840.html 2013-06-05 20:14 - 2013-06-06 01:55 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TemppA2808.html 2014-03-18 22:43 - 2014-03-18 23:46 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Temppc2540.html 2013-03-24 20:35 - 2013-03-25 00:24 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Temppe4080.html 2013-04-22 16:04 - 2013-04-22 21:46 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempPh2628.html 2013-04-03 19:53 - 2013-04-04 01:23 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempPH3976.html 2013-10-17 17:49 - 2013-10-17 20:47 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempph4720.html 2013-04-10 17:22 - 2013-04-10 17:22 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Temppj2332.html 2013-04-11 16:55 - 2013-04-12 00:40 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TemppO3372.html 2013-04-07 17:58 - 2013-04-08 04:31 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempPQ3276.html 2013-03-28 21:48 - 2013-03-29 01:38 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempPq5240.html 2013-05-08 16:06 - 2013-05-08 16:06 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempPU4840.html 2013-05-29 09:19 - 2013-05-30 01:07 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempPw1060.html 2014-08-16 22:31 - 2014-08-16 23:35 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempqC4464.html 2013-04-07 17:58 - 2013-04-08 04:31 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempqd3276.html 2014-05-27 22:50 - 2014-05-27 22:51 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempqg1376.html 2013-06-29 20:05 - 2013-06-29 21:07 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempqg5528.html 2013-05-23 15:47 - 2013-05-23 23:12 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempqk4728.html 2013-04-28 20:26 - 2013-04-29 02:38 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempqKQ940.html 2013-10-11 18:22 - 2013-10-12 01:42 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempQp2720.html 2013-06-05 20:13 - 2013-06-05 20:14 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempQR3756.html 2013-06-05 20:13 - 2013-06-05 20:14 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempqu3756.html 2013-04-23 21:24 - 2013-04-24 00:19 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempQw3152.html 2013-05-25 17:52 - 2013-05-26 00:47 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempQW3184.html 2014-01-04 23:52 - 2014-01-05 01:10 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempRA3532.html 2013-12-15 02:56 - 2013-12-15 02:58 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempRb6084.html 2013-06-11 20:57 - 2013-06-11 23:51 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempRCw928.html 2013-03-21 21:18 - 2013-03-22 01:22 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TemprE1908.html 2013-04-22 08:19 - 2013-04-22 08:33 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempRH2144.html 2013-11-09 00:26 - 2013-11-09 02:08 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempRi3136.html 2013-10-13 14:37 - 2013-10-13 14:38 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TemprI3528.html 2014-01-20 22:32 - 2014-01-20 22:39 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TemprK2232.html 2013-06-14 22:37 - 2013-06-15 01:52 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempRm5968.html 2013-03-18 20:20 - 2013-03-18 21:53 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Temprt5436.html 2014-01-19 23:55 - 2014-01-20 02:36 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TemprX1560.html 2013-03-19 16:49 - 2013-03-19 22:05 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Temprz1244.html 2014-02-07 13:50 - 2014-02-07 14:33 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempSa3448.html 2013-06-09 14:14 - 2013-06-09 14:17 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempsH1208.html 2013-03-28 14:45 - 2013-03-28 20:43 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempsH2172.html 2014-05-27 22:50 - 2014-05-27 22:51 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempSl1376.html 2013-10-11 00:11 - 2013-10-11 00:12 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempso3268.html 2013-03-21 21:18 - 2013-03-22 01:22 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempsP1908.html 2013-10-09 16:31 - 2013-10-10 02:44 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempSPr940.html 2013-04-28 20:26 - 2013-04-29 02:38 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempSQm940.html 2014-05-28 18:24 - 2014-05-28 18:24 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempss1684.html 2013-06-05 20:14 - 2013-06-06 01:55 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempTA2808.html 2015-01-16 22:18 - 2015-01-16 22:19 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempTb4512.html 2014-01-09 15:58 - 2014-01-09 18:42 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempTi2356.html 2014-08-02 14:41 - 2014-08-02 14:45 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Temptl2380.html 2013-03-26 19:54 - 2013-03-27 00:31 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempTO1084.html 2014-08-02 14:41 - 2014-08-02 14:45 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TemptP2380.html 2013-10-22 19:14 - 2013-10-23 01:34 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Temptq4412.html 2014-08-03 14:16 - 2014-08-03 14:32 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempTR1116.html 2014-03-03 22:29 - 2014-03-03 22:29 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempTR5016.html 2014-05-27 22:51 - 2014-05-27 23:20 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempTX4768.html 2013-04-04 16:30 - 2013-04-05 00:51 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempuB2644.html 2014-01-19 00:10 - 2014-01-19 00:11 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempUc2824.html 2014-01-23 22:26 - 2014-01-23 22:27 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempUD3732.html 2014-08-04 22:04 - 2014-08-04 22:05 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempUE4596.html 2013-06-05 20:16 - 2013-06-05 20:17 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempUg2808.html 2013-03-28 14:45 - 2013-03-28 20:43 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempup2172.html 2013-03-20 20:26 - 2013-03-21 01:51 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempUp3368.html 2013-10-10 13:16 - 2013-10-10 19:25 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempuq3092.html 2014-05-05 22:37 - 2014-05-05 22:37 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempuq5260.html 2013-04-05 18:44 - 2013-04-06 22:15 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempuu3664.html 2014-05-28 18:24 - 2014-05-29 00:08 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempuv2892.html 2013-11-28 00:15 - 2013-11-28 02:53 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempuY3248.html 2013-06-05 20:14 - 2013-06-05 20:16 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempVL2808.html 2014-08-14 09:43 - 2014-08-15 00:02 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempVS5352.html 2013-11-28 00:15 - 2013-11-28 02:53 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempvu3248.html 2013-03-24 17:29 - 2013-03-24 18:38 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempvv3924.html 2014-08-02 22:03 - 2014-08-02 23:08 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempVZ1920.html 2014-08-12 22:16 - 2014-08-12 23:00 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempVZ4548.html 2014-10-01 00:09 - 2014-10-01 00:10 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempWA3852.html 2013-06-11 00:02 - 2013-06-11 00:02 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempwb1360.html 2013-06-17 02:21 - 2013-06-17 02:59 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempwb4244.html 2014-08-16 22:31 - 2014-08-16 23:35 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempWi4464.html 2013-11-04 20:56 - 2013-11-05 01:44 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempWN4264.html 2014-01-23 22:26 - 2014-01-23 22:27 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempwS3732.html 2013-03-25 23:07 - 2013-03-26 00:18 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempWx3040.html 2013-06-27 00:22 - 2013-06-27 00:23 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempwX4344.html 2013-06-02 19:22 - 2013-06-02 23:46 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempXd2280.html 2013-10-17 17:49 - 2013-10-17 20:47 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempxQ4720.html 2014-01-19 00:10 - 2014-01-19 00:11 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempXs2824.html 2013-10-25 19:21 - 2013-10-25 22:51 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempxW3548.html 2013-10-09 10:17 - 2013-10-09 11:27 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempXZ2128.html 2014-08-17 23:19 - 2014-08-17 23:57 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempXz5756.html 2014-02-07 13:49 - 2014-02-07 13:49 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempYB1520.html 2013-05-22 23:14 - 2013-05-23 00:51 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempyb2032.html 2013-05-25 17:52 - 2013-05-26 00:47 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempyB3184.html 2015-01-16 22:15 - 2015-01-16 22:18 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempYC4512.html 2014-08-07 21:01 - 2014-08-07 23:17 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempycV176.html 2013-11-09 00:26 - 2013-11-09 02:08 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempYG3136.html 2013-04-24 20:23 - 2013-04-25 00:15 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempyI1676.html 2013-05-24 15:28 - 2013-05-25 01:15 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempYk2700.html 2015-01-16 22:16 - 2015-01-16 22:20 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempyk4512.html 2013-03-18 20:20 - 2013-03-18 21:53 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempYn5436.html 2013-04-26 17:35 - 2013-04-26 18:24 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempYy2280.html 2013-03-23 20:00 - 2013-03-23 20:00 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempza3548.html 2013-05-14 17:15 - 2013-05-14 23:43 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempzB1216.html 2013-04-26 17:35 - 2013-04-26 18:24 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempZD2280.html 2014-05-28 18:24 - 2014-05-29 00:08 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempZK2892.html 2013-10-12 16:54 - 2013-10-12 21:04 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempzn3608.html 2014-08-03 14:16 - 2014-08-03 14:32 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempzo1116.html 2013-03-27 19:59 - 2013-03-28 00:06 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\Tempzo2408.html 2013-05-27 23:37 - 2013-05-27 23:39 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\Tempzq1324.html 2014-08-14 09:43 - 2014-08-15 00:02 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempZq5352.html 2013-05-27 23:37 - 2013-05-27 23:39 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempZt1324.html 2013-04-24 20:23 - 2013-04-25 00:15 - 0002432 _____ () C:\Users\Klaudia\AppData\Local\TempzU1676.html 2013-04-08 18:25 - 2013-04-09 02:02 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempzV3944.html 2013-06-08 15:52 - 2013-06-08 16:25 - 0002089 _____ () C:\Users\Klaudia\AppData\Local\TempzX2820.html 2013-05-14 13:48 - 2010-11-20 14:17 - 69738496 ___SH () C:\ProgramData\mshvofu.exe Files to move or delete: ==================== C:\ProgramData\mshvofu.exe Some files in TEMP: ==================== C:\Users\Klaudia\AppData\Local\Temp\82349.exe C:\Users\Klaudia\AppData\Local\Temp\AcDeltree.exe C:\Users\Klaudia\AppData\Local\Temp\APNStub.exe C:\Users\Klaudia\AppData\Local\Temp\AutoRun.exe C:\Users\Klaudia\AppData\Local\Temp\AutoRunGUI.dll C:\Users\Klaudia\AppData\Local\Temp\binkw32.dll C:\Users\Klaudia\AppData\Local\Temp\bitool.dll C:\Users\Klaudia\AppData\Local\Temp\cdo2487965630.dll C:\Users\Klaudia\AppData\Local\Temp\cdo264170801.dll C:\Users\Klaudia\AppData\Local\Temp\cdo299191208.dll C:\Users\Klaudia\AppData\Local\Temp\cdo3426810358.dll C:\Users\Klaudia\AppData\Local\Temp\cdo952810795.dll C:\Users\Klaudia\AppData\Local\Temp\d2l_Install.exe C:\Users\Klaudia\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpdf0sjp.dll C:\Users\Klaudia\AppData\Local\Temp\DTLite4481-0347.exe C:\Users\Klaudia\AppData\Local\Temp\eauninstall.exe C:\Users\Klaudia\AppData\Local\Temp\First15.exe C:\Users\Klaudia\AppData\Local\Temp\Foxit Reader Updater.exe C:\Users\Klaudia\AppData\Local\Temp\fp_pl_pfs_installer-1.exe C:\Users\Klaudia\AppData\Local\Temp\fp_pl_pfs_installer-2.exe C:\Users\Klaudia\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\Klaudia\AppData\Local\Temp\gg10.upgr.exe C:\Users\Klaudia\AppData\Local\Temp\ICReinstall_JSE_install_app-1435364366997.exe C:\Users\Klaudia\AppData\Local\Temp\install_flashplayer13x32au_mssd_aaa_aih.exe C:\Users\Klaudia\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe C:\Users\Klaudia\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe C:\Users\Klaudia\AppData\Local\Temp\jre-7u40-windows-i586-iftw.exe C:\Users\Klaudia\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\Klaudia\AppData\Local\Temp\JSE_install_app-1435364366997.exe C:\Users\Klaudia\AppData\Local\Temp\ose00000.exe C:\Users\Klaudia\AppData\Local\Temp\PidGenX.dll C:\Users\Klaudia\AppData\Local\Temp\SkypeSetup.exe C:\Users\Klaudia\AppData\Local\Temp\swt-win32-3740.dll C:\Users\Klaudia\AppData\Local\Temp\The Sims 2_uninst.exe C:\Users\Klaudia\AppData\Local\Temp\tmpD72D.exe C:\Users\Klaudia\AppData\Local\Temp\Uninstall.exe C:\Users\Klaudia\AppData\Local\Temp\vcredist9_x86.exe C:\Users\Klaudia\AppData\Local\Temp\VP6Install.exe C:\Users\Klaudia\AppData\Local\Temp\VP6VFW.dll C:\Users\Klaudia\AppData\Local\Temp\xaetiygl.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-06-24 23:27 ==================== End of log ============================