OTL logfile created on: 27/08/2011 14:40:29 - Run 3 OTL by OldTimer - Version 3.2.26.5 Folder = C:\Users\Kajkowsky\Desktop Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000809 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 3.50 Gb Total Physical Memory | 2.37 Gb Available Physical Memory | 67.92% Memory free 6.99 Gb Paging File | 5.71 Gb Available in Paging File | 81.77% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 286.24 Gb Total Space | 243.53 Gb Free Space | 85.08% Space Free | Partition Type: NTFS Drive D: | 11.31 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: KAJKOWSKY-VAIO | User Name: Kajkowsky | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011/08/27 12:13:49 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Kajkowsky\Desktop\OTL.exe PRC - [2011/08/17 11:49:18 | 001,017,912 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe PRC - [2011/08/16 13:24:10 | 000,086,016 | ---- | M] () -- C:\Program Files\blueconnect\blueconnect.exe PRC - [2011/07/04 13:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe PRC - [2011/07/04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe PRC - [2011/04/20 10:50:48 | 002,848,144 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe PRC - [2011/04/20 10:50:46 | 000,792,976 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Update 5\VUAgent.exe PRC - [2011/04/20 02:04:38 | 000,393,216 | ---- | M] (AMD) -- C:\Windows\System32\atieclxx.exe PRC - [2011/04/20 02:04:08 | 000,176,128 | ---- | M] (AMD) -- C:\Windows\System32\atiesrxx.exe PRC - [2011/03/05 17:42:36 | 000,180,928 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Event Service\VESMgrSub.exe PRC - [2011/03/05 17:42:36 | 000,064,704 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe PRC - [2011/02/28 11:29:20 | 003,396,288 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe PRC - [2011/02/28 11:29:16 | 000,772,800 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Smart Network\VSNService.exe PRC - [2011/02/25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE PRC - [2011/02/25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2011/02/23 15:05:04 | 000,105,024 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe PRC - [2011/02/16 15:49:08 | 000,088,176 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee\SiteAdvisor\McSACore.exe PRC - [2011/02/16 14:08:52 | 001,166,016 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Care\VCsystray.exe PRC - [2011/02/15 12:47:02 | 002,757,312 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\ISB Utility\ISBMgr.exe PRC - [2011/02/14 13:23:50 | 000,086,208 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Care\VCAgent.exe PRC - [2011/02/14 13:23:50 | 000,044,736 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Care\VCService.exe PRC - [2011/01/29 05:36:18 | 000,189,048 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Care\VCPerfService.exe PRC - [2011/01/29 05:36:18 | 000,081,016 | ---- | M] (Sony of America Corporation) -- C:\Program Files\Sony\VAIO Care\listener.exe PRC - [2011/01/06 15:18:54 | 000,284,160 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe PRC - [2010/11/27 01:55:42 | 000,648,032 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\PMB\PMBVolumeWatcher.exe PRC - [2010/11/27 01:55:42 | 000,398,176 | ---- | M] (Sony Corporation) -- c:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe PRC - [2010/11/20 23:29:19 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2010/07/29 19:45:48 | 002,839,840 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe PRC - [2010/07/29 19:45:48 | 000,836,896 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe PRC - [2010/07/29 19:45:48 | 000,656,672 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe PRC - [2010/06/17 06:23:34 | 000,140,224 | ---- | M] (Advanced Micro Devices) -- C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe PRC - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe PRC - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe PRC - [2009/04/09 14:27:48 | 000,925,696 | ---- | M] (DesktopNerds) -- C:\Program Files\DesktopNerds\Gamma Control\GC.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2011/08/17 11:49:17 | 000,400,440 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\13.0.782.215\ppgooglenaclpluginchrome.dll MOD - [2011/08/17 11:49:15 | 004,118,072 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\13.0.782.215\pdf.dll MOD - [2011/08/17 11:47:49 | 000,104,520 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\13.0.782.215\avutil-50.dll MOD - [2011/08/17 11:47:48 | 000,203,848 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\13.0.782.215\avformat-52.dll MOD - [2011/08/17 11:47:47 | 001,846,344 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\13.0.782.215\avcodec-52.dll MOD - [2011/08/16 13:24:10 | 000,086,016 | ---- | M] () -- C:\Program Files\blueconnect\blueconnect.exe MOD - [2011/08/13 21:14:18 | 001,358,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\a6409b4be5018e5cbad7ef197d4237e1\System.WorkflowServices.ni.dll MOD - [2011/08/13 21:13:10 | 001,707,008 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\0139ae05cabaf2ac25cc85279e187e0a\System.ServiceModel.Web.ni.dll MOD - [2011/08/13 20:44:53 | 002,297,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\ebdaeeb5ef1a6209d67a2f70fcaf5cd5\System.Core.ni.dll MOD - [2011/08/13 20:41:41 | 001,083,392 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\5ab23d203c8bfade7160ea915719c730\System.IdentityModel.ni.dll MOD - [2011/08/13 20:41:37 | 002,347,008 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\e285e2af5e0e8ac7d91936b2cb18542f\System.Runtime.Serialization.ni.dll MOD - [2011/08/13 20:41:30 | 000,256,000 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\b907dd027bbe99c5035b1d6355f83998\SMDiagnostics.ni.dll MOD - [2011/08/13 20:41:28 | 017,478,656 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\052fc9c848a7f4630980ae0fd7a282e0\System.ServiceModel.ni.dll MOD - [2011/08/13 20:39:27 | 000,240,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\bb04320c07e3c71ac2d18cb382d97f41\WindowsFormsIntegration.ni.dll MOD - [2011/08/11 20:16:47 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7f94f6b13f92f1e093716d3e15bf86d1\PresentationFramework.Aero.ni.dll MOD - [2011/08/11 20:16:03 | 011,819,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\33b601c8e2cf4993e68d763389246197\System.Web.ni.dll MOD - [2011/08/11 20:15:40 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\e3e3b399b69c569ab1ed3b0ace2c8c20\System.Runtime.Remoting.ni.dll MOD - [2011/08/11 20:14:57 | 014,339,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\c60906a715473ceccf93f0559527e84d\PresentationFramework.ni.dll MOD - [2011/08/11 20:13:59 | 012,433,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\0d43c5e77ee7b8466700b16d7e7d4bb7\System.Windows.Forms.ni.dll MOD - [2011/08/11 20:13:33 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\9e87dd8fe5d0f925d80a6a6eaf74fdb9\System.Drawing.ni.dll MOD - [2011/08/11 20:13:10 | 012,234,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\5566b57732d9edea236f54d06149835a\PresentationCore.ni.dll MOD - [2011/08/11 20:10:15 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\6124dbbfd45927c4a6226d6e6bca6253\WindowsBase.ni.dll MOD - [2011/08/11 20:09:39 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\16d2854bf69d59d94e64a918365705f1\System.Xml.ni.dll MOD - [2011/08/11 20:09:18 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\36d0ed3f2a65b9d67933ed46dfcd2ccb\System.Configuration.ni.dll MOD - [2011/08/11 20:09:12 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\3da7c6c1a0f26ae91883fd8b03ec192d\System.ni.dll MOD - [2011/08/11 17:10:07 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\16b68fcaff063835ae0ee348a1201f2a\mscorlib.ni.dll MOD - [2011/07/24 00:25:11 | 000,169,472 | ---- | M] () -- C:\Users\Kajkowsky\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.0_0\BabylonChromePI.dll MOD - [2011/01/06 15:19:00 | 000,096,256 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll MOD - [2011/01/06 15:06:48 | 000,243,712 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll MOD - [2010/08/24 15:39:36 | 000,016,384 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll MOD - [2008/05/29 16:42:34 | 000,397,312 | ---- | M] () -- C:\Program Files\blueconnect\atcomm.dll MOD - [2008/05/29 16:42:34 | 000,135,168 | ---- | M] () -- C:\Program Files\blueconnect\SMSPlugin.dll MOD - [2008/05/29 16:42:34 | 000,126,976 | ---- | M] () -- C:\Program Files\blueconnect\LocaleMgrPlugin.dll MOD - [2008/05/29 16:42:34 | 000,122,880 | ---- | M] () -- C:\Program Files\blueconnect\DetectDev.dll MOD - [2008/05/29 16:42:34 | 000,114,688 | ---- | M] () -- C:\Program Files\blueconnect\DeviceMgrUIPlugin.dll MOD - [2008/05/29 16:42:34 | 000,098,304 | ---- | M] () -- C:\Program Files\blueconnect\NetInfoPlugin.dll MOD - [2008/05/29 16:42:34 | 000,098,304 | ---- | M] () -- C:\Program Files\blueconnect\DeviceMgrPlugin.dll MOD - [2008/05/29 16:42:34 | 000,090,112 | ---- | M] () -- C:\Program Files\blueconnect\FileManager.dll MOD - [2008/05/29 16:42:34 | 000,086,016 | ---- | M] () -- C:\Program Files\blueconnect\DialUpPlugin.dll MOD - [2008/05/29 16:42:34 | 000,057,344 | ---- | M] () -- C:\Program Files\blueconnect\ConfigFilePlugin.dll MOD - [2008/05/29 16:42:34 | 000,036,864 | ---- | M] () -- C:\Program Files\blueconnect\XCodec.dll MOD - [2008/05/29 16:42:34 | 000,032,768 | ---- | M] () -- C:\Program Files\blueconnect\NotifyServicePlugin.dll MOD - [2008/05/29 16:42:34 | 000,025,600 | ---- | M] () -- C:\Program Files\blueconnect\DeviceOperate.dll MOD - [2008/05/29 16:42:34 | 000,014,848 | ---- | M] () -- C:\Program Files\blueconnect\isaputrace.dll MOD - [2007/02/22 15:20:22 | 000,083,456 | ---- | M] () -- C:\Program Files\DesktopNerds\Gamma Control\mhook.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2011/07/26 18:28:36 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2011/07/04 13:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus) SRV - [2011/04/20 10:50:46 | 000,792,976 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Sony\VAIO Update 5\VUAgent.exe -- (VUAgent) SRV - [2011/04/20 02:04:08 | 000,176,128 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility) SRV - [2011/03/05 17:42:36 | 000,064,704 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Event Service\VESMgr.exe -- (VAIO Event Service) SRV - [2011/03/01 22:23:36 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files\Microsoft\BingBar\BBSvc.EXE -- (BBSvc) SRV - [2011/02/28 11:29:16 | 000,772,800 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Smart Network\VSNService.exe -- (VSNService) SRV - [2011/02/25 11:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\BingBar\SeaPort.EXE -- (SeaPort) SRV - [2011/02/23 15:05:04 | 000,105,024 | ---- | M] (ArcSoft, Inc.) [Auto | Running] -- C:\Program Files\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe -- (uCamMonitor) SRV - [2011/02/21 13:55:08 | 000,113,824 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\SOHLib\SOHCImp.exe -- (SOHCImp) SRV - [2011/02/21 13:55:08 | 000,067,232 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\SOHLib\SOHDs.exe -- (SOHDs) SRV - [2011/02/18 23:15:04 | 000,083,232 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper.exe -- (VcmXmlIfHelper) SRV - [2011/02/18 23:10:06 | 000,546,608 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe -- (VcmIAlzMgr) SRV - [2011/02/18 23:02:08 | 000,385,336 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe -- (VcmINSMgr) SRV - [2011/02/16 15:49:08 | 000,088,176 | ---- | M] (McAfee, Inc.) [Auto | Running] -- c:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service) SRV - [2011/02/14 13:23:50 | 000,044,736 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Sony\VAIO Care\VCService.exe -- (VCService) SRV - [2011/01/29 05:36:18 | 000,189,048 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Care\VCPerfService.exe -- (SampleCollector) SRV - [2011/01/20 13:27:18 | 000,228,056 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService.exe -- (SpfService) SRV - [2011/01/20 13:16:26 | 000,887,000 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe -- (VCFw) SRV - [2011/01/06 15:18:54 | 000,284,160 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service) SRV - [2010/11/27 01:55:42 | 000,398,176 | ---- | M] (Sony Corporation) [Auto | Running] -- c:\Program Files\Sony\PMB\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider) SRV - [2010/07/29 19:45:48 | 000,656,672 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins) SRV - [2010/06/17 06:23:34 | 000,140,224 | ---- | M] (Advanced Micro Devices) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe -- (AMD Reservation Manager) SRV - [2010/04/24 01:10:54 | 000,209,768 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa) SRV - [2010/04/24 01:10:44 | 000,483,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist) SRV - [2010/03/18 12:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon) SRV - [2009/07/14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009/07/14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011/07/04 13:36:43 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx) DRV - [2011/07/04 13:36:32 | 000,309,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP) DRV - [2011/07/04 13:35:23 | 000,043,608 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2011/07/04 13:32:32 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2011/07/04 13:32:20 | 000,054,104 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt) DRV - [2011/07/04 13:32:12 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2011/04/20 02:43:42 | 007,772,160 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (amdkmdag) DRV - [2011/04/20 01:22:10 | 000,243,712 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap) DRV - [2011/03/28 10:54:52 | 000,197,224 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RtsUStor.sys -- (RSUSBSTOR) DRV - [2011/02/17 20:00:18 | 000,032,384 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\amd_xata.sys -- (amd_xata) DRV - [2011/02/17 20:00:17 | 000,064,128 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\amd_sata.sys -- (amd_sata) DRV - [2011/01/07 08:27:50 | 000,035,968 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\usbfilter.sys -- (usbfilter) DRV - [2010/11/20 23:29:24 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV - [2010/11/20 23:29:03 | 000,027,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\TsUsbGD.sys -- (TsUsbGD) DRV - [2010/11/17 14:04:24 | 000,101,392 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AtihdW73.sys -- (AtiHDAudioService) DRV - [2010/11/01 05:20:30 | 001,800,704 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr) DRV - [2010/11/01 05:17:29 | 000,068,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C) DRV - [2010/04/26 22:20:29 | 000,009,344 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SFEP.sys -- (SFEP) DRV - [2010/04/24 01:10:54 | 000,019,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftvollh.sys -- (Sftvol) DRV - [2010/04/24 01:10:52 | 000,021,864 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\Sftredirlh.sys -- (Sftredir) DRV - [2010/04/24 01:10:50 | 000,195,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftplaylh.sys -- (Sftplay) DRV - [2010/04/24 01:10:44 | 000,550,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Sftfslh.sys -- (Sftfs) DRV - [2010/02/18 10:18:22 | 000,037,944 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\amdiox86.sys -- (amdiox86) DRV - [2009/07/14 00:02:52 | 000,214,016 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\e1y6032.sys -- (e1yexpress) Intel(R) DRV - [2009/06/10 23:19:48 | 009,853,248 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2009/05/26 15:32:02 | 000,017,408 | ---- | M] (ArcSoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ArcSoftKsUFilter.sys -- (ArcSoftKsUFilter) DRV - [2008/04/17 15:36:14 | 000,101,632 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-4014043125-108824389-4263978786-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sony.eu/vaioportal IE - HKU\S-1-5-21-4014043125-108824389-4263978786-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie IE - HKU\S-1-5-21-4014043125-108824389-4263978786-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = IE - HKU\S-1-5-21-4014043125-108824389-4263978786-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-4014043125-108824389-4263978786-1001\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) IE - HKU\S-1-5-21-4014043125-108824389-4263978786-1001\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - Reg Error: Key error. File not found IE - HKU\S-1-5-21-4014043125-108824389-4263978786-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..network.proxy.no_proxies_on: "localhost,127.0.0.1" FF - prefs.js..network.proxy.type: 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.65\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2011/08/10 20:18:19 | 000,000,000 | ---D | M] [2011/07/23 18:26:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kajkowsky\AppData\Roaming\Mozilla\Extensions [2011/08/14 13:02:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Kajkowsky\AppData\Roaming\Mozilla\Firefox\Profiles\ty1nk50t.default\extensions [2011/08/14 13:02:14 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Users\Kajkowsky\AppData\Roaming\Mozilla\Firefox\Profiles\ty1nk50t.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} [2011/07/25 20:11:18 | 000,000,000 | ---D | M] (cacaoweb) -- C:\Users\Kajkowsky\AppData\Roaming\Mozilla\Firefox\Profiles\ty1nk50t.default\extensions\cacaoweb@cacaoweb.org File not found (No name found) -- () (No name found) -- C:\USERS\KAJKOWSKY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TY1NK50T.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- C:\USERS\KAJKOWSKY\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TY1NK50T.DEFAULT\EXTENSIONS\FFXTLBR@BABYLON.COM.XPI [2011/07/23 19:02:38 | 000,002,424 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml O1 HOSTS File: ([2009/06/10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O3 - HKU\S-1-5-21-4014043125-108824389-4263978786-1001\..\Toolbar\WebBrowser: (no name) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - No CLSID value found. O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe (Sony Corporation) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [PMBVolumeWatcher] c:\Program Files\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation) O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKU\S-1-5-21-4014043125-108824389-4263978786-1001..\Run: [cacaoweb] C:\Users\Kajkowsky\AppData\Roaming\cacaoweb\cacaoweb.exe () O4 - HKU\S-1-5-21-4014043125-108824389-4263978786-1001..\Run: [Gadu-Gadu 10] C:\Program Files\Gadu-Gadu 10\gg.exe (GG Network S.A.) O4 - HKU\S-1-5-21-4014043125-108824389-4263978786-1001..\Run: [GammaControllerDN2] C:\Program Files\DesktopNerds\Gamma Control\GC.exe (DesktopNerds) O4 - HKU\S-1-5-21-4014043125-108824389-4263978786-1001..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.) O13 - gopher Prefix: missing O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/06/10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2008/04/23 23:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) - D:\AutoRun.exe -- [ CDFS ] O32 - AutoRun File - [2008/06/16 19:56:00 | 000,000,051 | R--- | M] () - D:\AUTORUN.INF -- [ CDFS ] O33 - MountPoints2\{2ed5f282-cc1a-11e0-8862-ec55f9cf24a8}\Shell - "" = AutoRun O33 - MountPoints2\{2ed5f282-cc1a-11e0-8862-ec55f9cf24a8}\Shell\AutoRun\command - "" = D:\AutoRun.exe -- [2008/04/23 23:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) O33 - MountPoints2\{2ed5f28e-cc1a-11e0-8862-ec55f9cf24a8}\Shell - "" = AutoRun O33 - MountPoints2\{2ed5f28e-cc1a-11e0-8862-ec55f9cf24a8}\Shell\AutoRun\command - "" = D:\AutoRun.exe -- [2008/04/23 23:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) O33 - MountPoints2\{917d578d-c7f0-11e0-8a6f-ec55f9cf24a8}\Shell - "" = AutoRun O33 - MountPoints2\{917d578d-c7f0-11e0-8a6f-ec55f9cf24a8}\Shell\AutoRun\command - "" = D:\AutoRun.exe -- [2008/04/23 23:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) O33 - MountPoints2\{917d5792-c7f0-11e0-8a6f-ec55f9cf24a8}\Shell - "" = AutoRun O33 - MountPoints2\{917d5792-c7f0-11e0-8a6f-ec55f9cf24a8}\Shell\AutoRun\command - "" = D:\AutoRun.exe -- [2008/04/23 23:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) O33 - MountPoints2\{917d579f-c7f0-11e0-8a6f-ec55f9cf24a8}\Shell - "" = AutoRun O33 - MountPoints2\{917d579f-c7f0-11e0-8a6f-ec55f9cf24a8}\Shell\AutoRun\command - "" = D:\AutoRun.exe -- [2008/04/23 23:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) O33 - MountPoints2\{db18adc6-c7f7-11e0-bace-ec55f9cf24a8}\Shell - "" = AutoRun O33 - MountPoints2\{db18adc6-c7f7-11e0-bace-ec55f9cf24a8}\Shell\AutoRun\command - "" = D:\AutoRun.exe -- [2008/04/23 23:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) O33 - MountPoints2\{db18adcb-c7f7-11e0-bace-ec55f9cf24a8}\Shell - "" = AutoRun O33 - MountPoints2\{db18adcb-c7f7-11e0-bace-ec55f9cf24a8}\Shell\AutoRun\command - "" = D:\AutoRun.exe -- [2008/04/23 23:44:40 | 000,114,688 | R--- | M] (Huawei Technologies Co., Ltd.) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011/08/27 14:12:42 | 000,000,000 | ---D | C] -- C:\_OTL [2011/08/27 12:13:24 | 000,580,096 | ---- | C] (OldTimer Tools) -- C:\Users\Kajkowsky\Desktop\OTL.exe [2011/08/23 19:59:12 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll [2011/08/22 03:03:26 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2011/08/17 00:03:51 | 000,000,000 | ---D | C] -- C:\ProgramData\VirtualizedApplications [2011/08/16 21:52:40 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Local\SoftGrid Client [2011/08/16 21:52:39 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Roaming\SoftGrid Client [2011/08/16 21:52:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (English) [2011/08/16 21:51:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER [2011/08/16 21:51:16 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Application Virtualization Client [2011/08/16 21:50:52 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Roaming\TP [2011/08/16 13:26:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\blueconnect [2011/08/16 13:24:38 | 000,872,192 | ---- | C] (DiBcom SA) -- C:\Windows\System32\drivers\mod7700.sys [2011/08/16 13:24:38 | 000,103,680 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbfake.sys [2011/08/16 13:24:38 | 000,101,632 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbmdm.sys [2011/08/16 13:24:38 | 000,100,864 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbnet.sys [2011/08/16 13:24:38 | 000,023,424 | ---- | C] (Huawei Tech. Co., Ltd.) -- C:\Windows\System32\drivers\ewdcsc.sys [2011/08/16 13:01:58 | 000,000,000 | ---D | C] -- C:\Program Files\blueconnect [2011/08/14 15:11:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NapiProjekt [2011/08/14 15:11:21 | 000,000,000 | ---D | C] -- C:\Program Files\NAPI-PROJEKT [2011/08/14 14:17:56 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Roaming\vlc [2011/08/14 14:17:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN [2011/08/14 14:16:43 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN [2011/08/14 13:02:12 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit [2011/08/14 13:02:06 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Local\Conduit [2011/08/14 13:01:42 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2011/08/14 13:01:19 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Roaming\uTorrent [2011/08/14 00:40:06 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Roaming\Opera [2011/08/14 00:40:06 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Local\Opera [2011/08/14 00:39:45 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2011/08/14 00:26:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus [2011/08/14 00:26:23 | 000,309,848 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswSP.sys [2011/08/14 00:26:23 | 000,019,544 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswFsBlk.sys [2011/08/14 00:26:20 | 000,043,608 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswTdi.sys [2011/08/14 00:26:20 | 000,025,432 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswRdr.sys [2011/08/14 00:26:19 | 000,441,176 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswSnx.sys [2011/08/14 00:26:10 | 000,054,104 | ---- | C] (AVAST Software) -- C:\Windows\System32\drivers\aswMonFlt.sys [2011/08/14 00:25:52 | 000,199,304 | ---- | C] (AVAST Software) -- C:\Windows\System32\aswBoot.exe [2011/08/14 00:25:52 | 000,040,112 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr [2011/08/14 00:25:41 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software [2011/08/14 00:25:41 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software [2011/08/10 17:03:47 | 000,000,000 | ---D | C] -- C:\Program Files\SkanerOnline [2011/08/10 17:03:29 | 003,912,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe [2011/08/10 17:03:28 | 003,967,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe [2011/08/10 17:03:11 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb [2011/08/10 17:03:11 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll [2011/08/10 17:03:11 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll [2011/08/10 17:03:11 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll [2011/08/10 17:03:11 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll [2011/08/10 17:02:55 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe [2011/08/10 17:02:55 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll [2011/08/10 17:02:55 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll [2011/08/10 17:02:55 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll [2011/08/10 17:02:55 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll [2011/08/10 17:02:55 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll [2011/08/10 17:02:54 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll [2011/08/10 17:02:54 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll [2011/08/10 17:02:54 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll [2011/08/10 17:02:53 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll [2011/08/10 17:02:53 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll [2011/08/10 17:02:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll [2011/08/10 17:02:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll [2011/08/10 17:02:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll [2011/08/10 17:02:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll [2011/08/10 17:02:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll [2011/08/10 17:02:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll [2011/08/10 17:02:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll [2011/08/10 17:02:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll [2011/08/10 17:02:47 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbcjt32.dll [2011/08/10 17:02:47 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbctrac.dll [2011/08/10 17:02:47 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccp32.dll [2011/08/10 17:02:47 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccu32.dll [2011/08/10 17:02:47 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccr32.dll [2011/08/08 18:03:23 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\Desktop\papiery na UP [2011/08/05 17:25:39 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Local\Programs [2011/08/03 18:55:48 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\Desktop\eventim bilety_pliki [2011/08/02 21:31:18 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\DoctorWeb [2011/08/02 20:42:23 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\Desktop\logi [2011/08/02 20:31:59 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Roaming\Malwarebytes [2011/08/02 20:31:47 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2011/08/02 20:31:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware [2011/08/02 20:31:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2011/08/02 20:31:42 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2011/08/02 20:31:41 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2011/08/01 20:52:19 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Local\ElevatedDiagnostics [2011/08/01 20:40:57 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Local\Microsoft Games [2011/08/01 20:36:14 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Roaming\f-secure [2011/08/01 20:35:27 | 000,000,000 | ---D | C] -- C:\ProgramData\F-Secure [2011/08/01 20:31:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [2011/08/01 20:31:41 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2011/07/31 22:00:31 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\Desktop\papiery na polibudę [2011/07/30 19:34:45 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\Desktop\mieszkanie [2011/07/30 13:01:25 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Local\Adobe [2011/07/29 20:17:03 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2011/07/29 19:51:14 | 001,076,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll [2011/07/29 19:51:14 | 000,739,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll [2011/07/29 17:59:20 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\AppData\Roaming\gtk-2.0 [2011/07/29 17:59:15 | 000,000,000 | ---D | C] -- C:\Users\Kajkowsky\.thumbnails [2011/07/28 21:50:55 | 000,000,000 | -H-D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011/08/27 14:41:35 | 000,020,608 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011/08/27 14:41:35 | 000,020,608 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011/08/27 14:15:13 | 000,001,038 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011/08/27 14:15:00 | 000,001,042 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011/08/27 14:14:40 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011/08/27 14:14:36 | 2814,562,304 | -HS- | M] () -- C:\hiberfil.sys [2011/08/27 12:17:12 | 000,002,286 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2011/08/27 12:13:49 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Kajkowsky\Desktop\OTL.exe [2011/08/27 12:06:58 | 000,656,374 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011/08/27 12:06:58 | 000,124,856 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011/08/22 23:38:48 | 000,000,067 | ---- | M] () -- C:\Users\Kajkowsky\Desktop\zulczyk.jakub.zrob.mi.jakas.krzywde.polish.ebook-gtw.sfv [2011/08/22 23:18:10 | 000,013,478 | ---- | M] () -- C:\Users\Kajkowsky\Desktop\W+E+N+A+-Wyzsze+Dobro+.torrent [2011/08/16 13:26:45 | 000,000,961 | ---- | M] () -- C:\Users\Public\Desktop\blueconnect.lnk [2011/08/14 15:11:22 | 000,000,969 | ---- | M] () -- C:\Users\Kajkowsky\Application Data\Microsoft\Internet Explorer\Quick Launch\NapiProjekt.lnk [2011/08/14 15:11:22 | 000,000,945 | ---- | M] () -- C:\Users\Kajkowsky\Desktop\NapiProjekt.lnk [2011/08/14 14:17:18 | 000,001,024 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk [2011/08/14 13:01:42 | 000,000,937 | ---- | M] () -- C:\Users\Kajkowsky\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [2011/08/14 13:01:42 | 000,000,913 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk [2011/08/14 01:40:12 | 316,451,913 | ---- | M] () -- C:\Windows\MEMORY.DMP [2011/08/14 00:39:51 | 000,001,775 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk [2011/08/14 00:26:24 | 000,001,994 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk [2011/08/14 00:26:10 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt [2011/08/13 20:56:01 | 000,398,576 | ---- | M] () -- C:\Users\Kajkowsky\Desktop\cacaoweb.exe [2011/08/03 18:55:49 | 000,006,233 | ---- | M] () -- C:\Users\Kajkowsky\Desktop\eventim bilety.html [2011/08/02 20:31:47 | 000,001,067 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011/08/01 20:31:51 | 000,000,965 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk [2011/07/31 22:10:51 | 001,678,659 | ---- | M] () -- C:\Users\Kajkowsky\Desktop\DSC_0027.jpg [2011/07/31 22:09:32 | 005,166,064 | ---- | M] () -- C:\Users\Kajkowsky\Desktop\kajkoski.JPG [2011/07/29 20:19:17 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2011/07/29 18:16:10 | 000,001,467 | ---- | M] () -- C:\Users\Kajkowsky\.recently-used.xbel [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011/08/22 23:38:47 | 000,000,067 | ---- | C] () -- C:\Users\Kajkowsky\Desktop\zulczyk.jakub.zrob.mi.jakas.krzywde.polish.ebook-gtw.sfv [2011/08/22 23:18:10 | 000,013,478 | ---- | C] () -- C:\Users\Kajkowsky\Desktop\W+E+N+A+-Wyzsze+Dobro+.torrent [2011/08/16 13:26:45 | 000,000,961 | ---- | C] () -- C:\Users\Public\Desktop\blueconnect.lnk [2011/08/14 15:11:22 | 000,000,969 | ---- | C] () -- C:\Users\Kajkowsky\Application Data\Microsoft\Internet Explorer\Quick Launch\NapiProjekt.lnk [2011/08/14 15:11:22 | 000,000,945 | ---- | C] () -- C:\Users\Kajkowsky\Desktop\NapiProjekt.lnk [2011/08/14 14:17:18 | 000,001,024 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk [2011/08/14 13:01:42 | 000,000,937 | ---- | C] () -- C:\Users\Kajkowsky\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [2011/08/14 13:01:42 | 000,000,913 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk [2011/08/14 01:40:12 | 316,451,913 | ---- | C] () -- C:\Windows\MEMORY.DMP [2011/08/14 00:39:51 | 000,001,787 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk [2011/08/14 00:39:51 | 000,001,775 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk [2011/08/14 00:26:24 | 000,001,994 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk [2011/08/03 18:55:48 | 000,006,233 | ---- | C] () -- C:\Users\Kajkowsky\Desktop\eventim bilety.html [2011/08/02 20:31:47 | 000,001,067 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011/08/01 20:31:51 | 000,000,965 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk [2011/07/31 22:10:48 | 001,678,659 | ---- | C] () -- C:\Users\Kajkowsky\Desktop\DSC_0027.jpg [2011/07/31 22:09:25 | 005,166,064 | ---- | C] () -- C:\Users\Kajkowsky\Desktop\kajkoski.JPG [2011/07/29 18:16:10 | 000,001,467 | ---- | C] () -- C:\Users\Kajkowsky\.recently-used.xbel [2011/07/28 21:50:50 | 000,002,170 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care.lnk [2011/07/27 17:46:08 | 000,000,058 | ---- | C] () -- C:\Users\Kajkowsky\AppData\Roaming\you.bmp [2011/07/23 18:40:15 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2011/07/23 16:54:12 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2011/04/20 01:21:02 | 000,037,376 | ---- | C] () -- C:\Windows\System32\atitmpxx.dll [2011/03/17 17:51:46 | 000,003,929 | ---- | C] () -- C:\Windows\System32\atipblag.dat [2011/02/28 21:30:06 | 000,233,012 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat [2009/07/14 06:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009/07/14 06:33:53 | 000,288,048 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2009/07/14 04:05:48 | 000,656,374 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2009/07/14 04:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2009/07/14 04:05:48 | 000,124,856 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2009/07/14 04:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2009/07/14 04:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2009/07/14 04:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2009/07/14 01:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009/07/14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009/07/14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2009/06/10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat [color=#E56717]========== LOP Check ==========[/color] [2011/08/13 23:20:42 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\cacaoweb [2011/08/01 20:36:14 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\f-secure [2011/08/26 15:24:20 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\foobar2000 [2011/07/23 19:16:51 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\Gadu-Gadu 10 [2011/07/29 18:16:10 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\gtk-2.0 [2011/08/01 21:06:52 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\Ipfa [2011/07/23 18:33:00 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\OpenFM [2011/08/14 00:40:06 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\Opera [2011/08/24 08:54:03 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\SoftGrid Client [2011/08/16 21:52:55 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\TP [2011/08/01 20:51:47 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\Ulum [2011/08/27 14:38:17 | 000,000,000 | ---D | M] -- C:\Users\Kajkowsky\AppData\Roaming\uTorrent [2009/07/14 06:53:46 | 000,021,232 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] < End of report >