OTL logfile created on: 9/8/2011 10:44:04 PM - Run 2 OTL by OldTimer - Version 3.2.27.0 Folder = D:\Tools 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000409 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4.00 Gb Total Physical Memory | 2.15 Gb Available Physical Memory | 53.71% Memory free 8.00 Gb Paging File | 5.85 Gb Available in Paging File | 73.20% Paging File free Paging file location(s): c:\pagefile.sys 4096 4096 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 116.45 Gb Total Space | 7.28 Gb Free Space | 6.25% Space Free | Partition Type: NTFS Drive D: | 101.79 Gb Total Space | 30.89 Gb Free Space | 30.34% Space Free | Partition Type: NTFS Computer Name: ASUS | User Name: Jacek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011/09/08 22:41:53 | 000,581,120 | ---- | M] (OldTimer Tools) -- D:\Tools\OTL.exe PRC - [2011/09/03 18:16:47 | 000,947,056 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\opera.exe PRC - [2010/11/16 15:37:30 | 000,230,912 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\ProgramData\DatacardService\DCSHelper.exe PRC - [2010/05/21 00:39:48 | 000,334,384 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnetdhcp.exe PRC - [2010/05/21 00:39:46 | 000,113,200 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe PRC - [2010/05/21 00:39:38 | 000,399,920 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnat.exe PRC - [2010/05/21 00:39:24 | 000,064,048 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\VMware\VMware Player\hqtray.exe PRC - [2010/05/20 23:40:20 | 000,539,184 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe PRC - [2009/10/17 10:27:39 | 003,054,136 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe PRC - [2009/07/24 19:32:50 | 001,593,344 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe PRC - [2009/07/24 02:13:38 | 000,306,232 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe PRC - [2009/07/23 02:58:46 | 000,017,976 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe PRC - [2009/07/07 20:20:56 | 008,493,624 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe PRC - [2009/06/24 21:30:18 | 000,272,952 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe PRC - [2009/04/24 06:24:44 | 000,178,744 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe PRC - [2009/04/20 20:09:30 | 000,159,744 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe PRC - [2009/04/14 21:28:46 | 000,110,592 | R--- | M] (Huawei Technologies Co., Ltd.) -- C:\Users\Jacek\AppData\Roaming\PLAY ONLINE\ouc.exe PRC - [2009/04/02 06:05:34 | 000,098,304 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe PRC - [2008/12/23 02:15:34 | 000,174,648 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe PRC - [2008/08/14 06:00:08 | 000,113,208 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe PRC - [2008/08/14 05:59:56 | 000,301,624 | ---- | M] () -- C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe PRC - [2008/08/14 05:59:52 | 000,100,920 | ---- | M] () -- C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe PRC - [2008/08/14 01:21:56 | 002,482,176 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe PRC - [2008/07/19 04:52:16 | 000,104,936 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe PRC - [2008/03/31 11:55:48 | 000,225,280 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe PRC - [2007/08/08 09:08:40 | 000,094,208 | ---- | M] () -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2011/09/03 00:26:01 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7f94f6b13f92f1e093716d3e15bf86d1\PresentationFramework.Aero.ni.dll MOD - [2011/09/03 00:25:09 | 014,339,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\c60906a715473ceccf93f0559527e84d\PresentationFramework.ni.dll MOD - [2011/09/03 00:24:25 | 012,234,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\5566b57732d9edea236f54d06149835a\PresentationCore.ni.dll MOD - [2011/09/03 00:24:04 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\6124dbbfd45927c4a6226d6e6bca6253\WindowsBase.ni.dll MOD - [2011/09/03 00:23:24 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\3da7c6c1a0f26ae91883fd8b03ec192d\System.ni.dll MOD - [2011/09/02 23:41:05 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\16b68fcaff063835ae0ee348a1201f2a\mscorlib.ni.dll MOD - [2010/05/21 00:39:50 | 000,068,656 | ---- | M] () -- C:\Program Files (x86)\VMware\VMware Player\zlib1.dll MOD - [2010/05/21 00:39:12 | 000,970,288 | ---- | M] () -- C:\Program Files (x86)\VMware\VMware Player\libxml2.dll MOD - [2009/07/24 19:32:50 | 001,593,344 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe MOD - [2009/07/23 02:58:46 | 000,017,976 | ---- | M] () -- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe MOD - [2009/02/27 17:38:20 | 000,139,264 | R--- | M] () -- C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll MOD - [2008/08/28 01:32:36 | 000,619,816 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll MOD - [2008/06/09 18:55:08 | 000,013,096 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll MOD - [2007/06/15 19:28:36 | 000,147,456 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt.dll MOD - [2007/06/02 02:08:18 | 000,143,360 | ---- | M] () -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ShlExt\x86\OverlayIconShlExt1.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2011/09/02 23:07:14 | 002,528,096 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV:[b]64bit:[/b] - [2011/04/08 16:09:28 | 000,290,816 | ---- | M] () [Disabled | Stopped] -- C:\Windows\SysNative\PuranDefragS.exe -- (PuranDefrag) SRV:[b]64bit:[/b] - [2010/12/09 14:08:14 | 000,371,648 | ---- | M] () [Auto | Running] -- C:\Program Files\COMODO\COMODO System-Cleaner\Cleaner_Validator.exe -- (Cleaner_Validator) SRV:[b]64bit:[/b] - [2009/07/14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2007/08/08 09:08:40 | 000,094,208 | ---- | M] () [Auto | Running] -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv) SRV - [2010/05/21 00:39:48 | 000,334,384 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnetdhcp.exe -- (VMnetDHCP) SRV - [2010/05/21 00:39:46 | 000,113,200 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe -- (VMAuthdService) SRV - [2010/05/21 00:39:38 | 000,399,920 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnat.exe -- (VMware NAT Service) SRV - [2010/05/20 23:40:20 | 000,539,184 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe -- (VMUSBArbService) SRV - [2010/04/27 16:42:04 | 000,191,024 | ---- | M] (VMware, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\VMware\VMware Player\vmware-ufad.exe -- (ufad-ws60) SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2009/07/24 02:13:38 | 000,306,232 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe -- (FastBootAgent) SRV - [2009/06/10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2008/08/14 05:59:52 | 000,100,920 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Hotkey\AsLdrSrv.exe -- (ASLDRService) SRV - [2008/04/07 10:17:30 | 000,430,592 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2008/03/31 11:55:48 | 000,225,280 | ---- | M] (ASUSTek Computer Inc.) [Auto | Running] -- C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe -- (ADSMService) SRV - [2007/05/31 11:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm) SRV - [2007/05/31 11:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2011/09/02 23:13:23 | 000,016,016 | ---- | M] () [File_System | System | Running] -- C:\Windows\SysNative\DRIVERS\cmderd.sys -- (cmderd) DRV:[b]64bit:[/b] - [2011/03/11 08:41:12 | 000,107,904 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2011/03/11 08:41:12 | 000,027,008 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2010/12/09 14:15:04 | 000,041,472 | ---- | M] () [File_System | System | Running] -- C:\Windows\SysNative\DRIVERS\CFRPD.sys -- (CFRPD) DRV:[b]64bit:[/b] - [2010/11/20 15:34:02 | 000,360,832 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm) DRV:[b]64bit:[/b] - [2010/11/20 15:34:02 | 000,194,944 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\vpchbus.sys -- (vpcbus) DRV:[b]64bit:[/b] - [2010/11/20 15:33:35 | 000,078,720 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2010/11/20 13:35:32 | 000,095,232 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\vpcusb.sys -- (vpcusb) DRV:[b]64bit:[/b] - [2010/11/20 13:35:24 | 000,016,384 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpcuxd.sys -- (vpcuxd) DRV:[b]64bit:[/b] - [2010/11/20 13:35:20 | 000,059,392 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\DRIVERS\vpcnfltr.sys -- (vpcnfltr) DRV:[b]64bit:[/b] - [2010/11/20 13:07:05 | 000,059,392 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tsusbflt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2010/11/20 12:43:57 | 000,032,768 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser) DRV:[b]64bit:[/b] - [2010/10/09 14:49:52 | 000,085,504 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\ew_jubusenum.sys -- (huawei_enumerator) DRV:[b]64bit:[/b] - [2010/08/31 18:09:00 | 000,256,000 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\ewusbnet.sys -- (ewusbnet) DRV:[b]64bit:[/b] - [2010/08/07 17:49:04 | 000,121,600 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\ewusbmdm.sys -- (hwdatacard) DRV:[b]64bit:[/b] - [2010/06/14 10:32:54 | 000,016,448 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\Drivers\TFsExDisk.sys -- (TFsExDisk) DRV:[b]64bit:[/b] - [2010/05/21 00:40:18 | 000,080,944 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmci.sys -- (vmci) DRV:[b]64bit:[/b] - [2010/05/21 00:40:12 | 000,068,656 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmx86.sys -- (vmx86) DRV:[b]64bit:[/b] - [2010/05/21 00:38:28 | 000,031,792 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMkbd.sys -- (vmkbd) DRV:[b]64bit:[/b] - [2010/05/21 00:38:16 | 000,030,256 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetuserif.sys -- (VMnetuserif) DRV:[b]64bit:[/b] - [2010/05/20 23:40:12 | 000,038,448 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hcmon.sys -- (hcmon) DRV:[b]64bit:[/b] - [2010/05/20 21:19:18 | 000,045,104 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\DRIVERS\vmnetbridge.sys -- (VMnetBridge) DRV:[b]64bit:[/b] - [2010/05/20 21:19:18 | 000,020,016 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\vmnetadapter.sys -- (VMnetAdapter) DRV:[b]64bit:[/b] - [2010/01/27 04:09:02 | 000,047,632 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (npf) DRV:[b]64bit:[/b] - [2009/10/17 10:28:06 | 000,035,384 | ---- | M] () [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\AsDsm.sys -- (AsDsm) DRV:[b]64bit:[/b] - [2009/10/05 17:34:00 | 001,542,656 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\athrx.sys -- (athr) DRV:[b]64bit:[/b] - [2009/07/20 11:29:39 | 000,015,416 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\kbfiltr.sys -- (kbfiltr) DRV:[b]64bit:[/b] - [2009/07/14 03:52:20 | 000,194,128 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009/07/14 03:48:04 | 000,065,600 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009/07/14 03:45:55 | 000,024,656 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009/07/14 02:35:32 | 000,012,288 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\serscan.sys -- (StillCam) DRV:[b]64bit:[/b] - [2009/07/14 02:09:50 | 000,019,968 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\usb8023x.sys -- (usb_rndisx) DRV:[b]64bit:[/b] - [2009/07/09 05:11:41 | 000,140,800 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\ETD.sys -- (ETD) DRV:[b]64bit:[/b] - [2009/06/10 22:35:57 | 000,056,832 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\SiSG664.sys -- (SiSGbeLH) DRV:[b]64bit:[/b] - [2009/06/10 22:34:33 | 003,286,016 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009/06/10 22:34:28 | 000,468,480 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009/06/10 22:34:23 | 000,270,848 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009/06/10 22:31:59 | 000,031,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009/06/05 12:15:55 | 001,806,400 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC) DRV:[b]64bit:[/b] - [2009/05/26 15:32:37 | 000,040,448 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmUStor.SYS -- (AmUStor) DRV:[b]64bit:[/b] - [2009/05/22 16:52:29 | 000,215,040 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\Rt64win7.sys -- (RTL8167) DRV:[b]64bit:[/b] - [2009/05/13 03:07:19 | 000,015,928 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DRIVERS\ATK64AMD.sys -- (MTsensor) DRV:[b]64bit:[/b] - [2008/12/08 18:35:52 | 000,061,792 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\fssfltr.sys -- (fssfltr) DRV:[b]64bit:[/b] - [2008/05/24 02:27:28 | 000,154,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\wimfltr.sys -- (WimFltr) DRV:[b]64bit:[/b] - [2008/05/02 11:59:08 | 000,008,704 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\usbser_lowerfltx64j.sys -- (UsbserFilt) DRV:[b]64bit:[/b] - [2008/05/02 11:58:50 | 000,008,704 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\usbser_lowerfltx64.sys -- (upperdev) DRV:[b]64bit:[/b] - [2008/05/02 11:58:48 | 000,023,552 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdcx64) DRV:[b]64bit:[/b] - [2008/05/02 11:58:48 | 000,018,432 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcdx64) DRV:[b]64bit:[/b] - [2007/09/17 16:53:34 | 000,029,184 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\DRIVERS\pccsmcfdx64.sys -- (pccsmcfd) DRV:[b]64bit:[/b] - [2007/07/24 20:11:32 | 000,014,904 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64) DRV - [2010/06/14 10:32:54 | 000,016,448 | ---- | M] (Teruten Inc) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\TFsExDisk.Sys -- (TFsExDisk) DRV - [2010/04/27 16:41:34 | 000,032,816 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Program Files (x86)\VMware\VMware Player\vstor2-ws60.sys -- (vstor2-ws60) DRV - [2009/07/14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.interia.pl/ IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Users\Jacek\Desktop\zdjęcia\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.3: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) O1 HOSTS File: ([2009/06/10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts O2:[b]64bit:[/b] - BHO: (Windows Live Family Safety Browser Helper Class) - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll () O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - File not found O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O4:[b]64bit:[/b] - HKLM..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (AlcorMicro Co., Ltd.) O4:[b]64bit:[/b] - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4:[b]64bit:[/b] - HKLM..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.) O4:[b]64bit:[/b] - HKLM..\Run: [NvCplDaemon] C:\Windows\SysNative\NvCpl.dll () O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4:[b]64bit:[/b] - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation) O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe (ASUS) O4 - HKLM..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe (ASUS) O4 - HKLM..\Run: [ControlCenter3] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe (ASUS) O4 - HKLM..\Run: [NPSStartup] File not found O4 - HKLM..\Run: [UpdateLBPShortCut] C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [UpdateP2GoShortCut] C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.) O4 - HKLM..\Run: [VMware hqtray] C:\Program Files (x86)\VMware\VMware Player\hqtray.exe (VMware, Inc.) O4 - HKCU..\Run: [HW_OPENEYE_OUC_PLAY ONLINE] D:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe (Huawei Technologies Co., Ltd.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Privacy present O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1 O8:[b]64bit:[/b] - Extra context menu item: Pobierz plik wideo we Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm () O8:[b]64bit:[/b] - Extra context menu item: Pobierz w Free Download Manager - C:\Program Files (x86)\Free Download Manager\dllink.htm () O8:[b]64bit:[/b] - Extra context menu item: Pobierz wszystkie pliki w Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlall.htm () O8:[b]64bit:[/b] - Extra context menu item: Pobierz zaznaczone w Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlselected.htm () O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.) O8 - Extra context menu item: Pobierz plik wideo we Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlfvideo.htm () O8 - Extra context menu item: Pobierz w Free Download Manager - C:\Program Files (x86)\Free Download Manager\dllink.htm () O8 - Extra context menu item: Pobierz wszystkie pliki w Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlall.htm () O8 - Extra context menu item: Pobierz zaznaczone w Free Download Manager - C:\Program Files (x86)\Free Download Manager\dlselected.htm () O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/common/asusTek_sys_ctrl.cab (asusTek_sysctrl Class) O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class) O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} http://dlcdnet.asus.com/pub/ASUS/misc/dlm-activex-2.2.5.0.cab (DLM Control) O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab (NVIDIA Smart Scan) O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logmein.com/activex/ractrl.cab?lmi=100 (Performance Viewer Activex Control) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2873A645-5E3D-445C-9CA4-92E5BEA1D410}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2D98431F-CDD9-4AD4-B60D-7CC5E8FDD791}: DhcpNameServer = 192.168.1.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{63EE8BD0-19C0-44AF-AF87-8B42F30FA5A2}: NameServer = 89.108.195.20 217.17.34.10 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A58A5EB2-2A6D-41B4-88E1-B99231A38FB7}: DhcpNameServer = 192.168.1.2 O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found O20:[b]64bit:[/b] - AppInit_DLLs: (C:\Windows\system32\guard64.dll) - C:\Windows\SysNative\guard64.dll () O20 - AppInit_DLLs: (C:\Windows\SysWOW64\guard32.dll) - C:\Windows\SysWOW64\guard32.dll (COMODO) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe () O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe () O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O22:[b]64bit:[/b] - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Program Files (x86)\Stardock\Object Desktop\Fences\FencesMenu64.dll (Stardock) O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{12ee774d-baf7-11de-bf52-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{12ee774d-baf7-11de-bf52-806e6f6e6963}\Shell\AutoRun\command - "" = E:\start.exe O33 - MountPoints2\{daf7cc2d-f1cd-11de-9023-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{daf7cc2d-f1cd-11de-9023-806e6f6e6963}\Shell\AutoRun\command - "" = E:\START.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011/09/03 01:13:06 | 000,000,000 | ---D | C] -- C:\Users\Jacek\AppData\Roaming\ComodoGroup [2011/09/03 01:11:18 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2011/09/03 00:55:05 | 000,000,000 | ---D | C] -- C:\Users\Jacek\AppData\Roaming\Wise Registry Cleaner [2011/09/03 00:47:52 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip [2011/09/03 00:47:02 | 000,000,000 | ---D | C] -- C:\Users\Jacek\AppData\Roaming\Wise Disk Cleaner [2011/09/03 00:44:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Puran Defrag [2011/09/03 00:44:17 | 000,000,000 | ---D | C] -- C:\Program Files\Puran Defrag [2011/09/02 23:04:17 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll [2011/09/02 23:04:13 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll [2011/09/02 23:04:11 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll [2011/09/02 23:04:10 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll [2011/09/02 22:53:55 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe [2011/09/02 22:53:53 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll [2011/09/02 22:53:53 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll [2011/09/02 22:53:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll [2011/09/02 22:53:52 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe [2011/09/02 22:53:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll [2011/09/02 22:53:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll [2011/09/02 22:53:51 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll [2011/09/02 22:53:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll [2011/09/02 22:53:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll [2011/09/02 22:53:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll [2011/09/02 22:53:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll [2011/09/02 22:53:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll [2011/09/02 22:53:50 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll [2011/09/02 22:53:50 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll [2011/09/02 22:53:50 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll [2011/09/02 22:53:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll [2011/09/02 22:53:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll [2011/09/02 22:53:49 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll [2011/09/02 22:53:47 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll [2011/09/02 22:53:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll [2011/09/02 22:53:45 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll [2011/09/02 22:53:45 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll [2011/09/02 22:53:44 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll [2011/09/02 22:53:44 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll [2011/09/02 22:53:44 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe [2011/09/02 22:53:26 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll [2011/09/02 22:53:25 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccu32.dll [2011/09/02 22:53:25 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccr32.dll [2011/09/02 22:53:24 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll [2011/09/02 22:53:23 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll [2011/09/02 22:51:52 | 003,912,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe [2011/09/02 22:51:51 | 003,967,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe [2011/08/31 13:41:54 | 000,000,000 | ---D | C] -- C:\Users\Jacek\AppData\Roaming\RedDotGames [2011/08/31 13:37:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Play [2011/08/31 13:37:41 | 003,690,496 | ---- | C] (Truevision3D LLC) -- C:\Windows\SysWow64\tv3d65.dll [2011/08/31 13:37:34 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll [2011/08/31 13:37:34 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll [2011/08/31 13:37:33 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll [2011/08/31 13:37:32 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll [2011/08/31 13:33:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Play [2010/12/05 19:01:31 | 003,056,008 | ---- | C] (Ask) -- C:\Program Files (x86)\Common Files\AskToolbarInstaller.exe [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011/09/08 22:52:17 | 001,474,832 | ---- | M] () -- C:\Windows\SysNative\drivers\sfi.dat [2011/09/08 22:01:00 | 000,016,112 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011/09/08 22:01:00 | 000,016,112 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011/09/08 21:52:27 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011/09/08 21:52:19 | 3220,647,936 | -HS- | M] () -- C:\hiberfil.sys [2011/09/08 20:35:12 | 002,454,902 | ---- | M] () -- C:\Windows\CSC_ServiceDump.dat [2011/09/08 20:35:12 | 000,000,012 | ---- | M] () -- C:\Windows\CSC_ActiveCleanLog.dat [2011/09/08 01:18:00 | 000,000,450 | ---- | M] () -- C:\Windows\tasks\COMODO Updater.job [2011/09/04 09:16:41 | 000,000,468 | ---- | M] () -- C:\Windows\tasks\COMODO System Cleaner Update.job [2011/09/03 01:18:35 | 000,000,989 | ---- | M] () -- C:\Users\Public\Desktop\COMODO System-Cleaner.lnk [2011/09/03 01:12:55 | 000,001,976 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk [2011/09/03 00:44:19 | 000,000,872 | ---- | M] () -- C:\Users\Jacek\Desktop\Puran Defrag.lnk [2011/09/03 00:10:51 | 000,423,448 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2011/09/02 23:28:10 | 001,580,674 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2011/09/02 23:28:10 | 000,702,142 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2011/09/02 23:28:10 | 000,619,230 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2011/09/02 23:28:10 | 000,136,816 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2011/09/02 23:28:10 | 000,108,136 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2011/09/02 23:13:31 | 000,363,560 | ---- | M] () -- C:\Windows\SysNative\guard64.dll [2011/09/02 23:13:28 | 000,285,256 | ---- | M] (COMODO) -- C:\Windows\SysWow64\guard32.dll [2011/09/02 23:13:23 | 000,016,016 | ---- | M] () -- C:\Windows\SysNative\drivers\cmderd.sys [2011/08/31 13:37:43 | 000,002,029 | ---- | M] () -- C:\Users\Jacek\Desktop\Need for Russia 4.lnk [2011/08/30 13:08:04 | 000,002,973 | ---- | M] () -- C:\Users\Jacek\Desktop\Sam Piszę (VM).lnk [2011/08/20 22:55:14 | 000,014,336 | ---- | M] () -- C:\Users\Jacek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011/08/20 22:08:22 | 000,001,577 | ---- | M] () -- C:\Users\Jacek\Desktop\Leśne Licha.lnk [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011/09/04 09:33:58 | 000,002,029 | ---- | C] () -- C:\Users\Jacek\Desktop\Need for Russia 4.lnk [2011/09/03 01:59:49 | 002,454,902 | ---- | C] () -- C:\Windows\CSC_ServiceDump.dat [2011/09/03 01:59:49 | 000,000,012 | ---- | C] () -- C:\Windows\CSC_ActiveCleanLog.dat [2011/09/03 01:18:41 | 000,000,450 | ---- | C] () -- C:\Windows\tasks\COMODO Updater.job [2011/09/03 01:18:35 | 000,000,989 | ---- | C] () -- C:\Users\Public\Desktop\COMODO System-Cleaner.lnk [2011/09/03 00:44:19 | 000,000,872 | ---- | C] () -- C:\Users\Jacek\Desktop\Puran Defrag.lnk [2011/09/03 00:44:18 | 001,417,216 | ---- | C] () -- C:\Windows\SysNative\PuranFD.exe [2011/09/03 00:44:18 | 000,290,816 | ---- | C] () -- C:\Windows\SysNative\PuranDefragS.exe [2011/09/03 00:44:18 | 000,275,968 | ---- | C] () -- C:\Windows\SysNative\PuranDC.exe [2011/09/03 00:44:18 | 000,270,336 | ---- | C] () -- C:\Windows\SysNative\PuranDefrag.dll [2011/09/03 00:44:18 | 000,130,048 | ---- | C] () -- C:\Windows\SysNative\PuranDefragBT.exe [2011/09/02 23:04:18 | 002,382,848 | ---- | C] () -- C:\Windows\SysNative\mshtml.tlb [2011/09/02 23:04:17 | 000,096,256 | ---- | C] () -- C:\Windows\SysNative\mshtmled.dll [2011/09/02 23:04:15 | 002,143,232 | ---- | C] () -- C:\Windows\SysNative\iertutil.dll [2011/09/02 23:04:13 | 000,248,320 | ---- | C] () -- C:\Windows\SysNative\ieui.dll [2011/09/02 23:04:12 | 002,303,488 | ---- | C] () -- C:\Windows\SysNative\jscript9.dll [2011/09/02 23:04:11 | 000,237,056 | ---- | C] () -- C:\Windows\SysNative\url.dll [2011/09/02 23:04:09 | 001,344,512 | ---- | C] () -- C:\Windows\SysNative\urlmon.dll [2011/09/02 23:04:09 | 000,818,176 | ---- | C] () -- C:\Windows\SysNative\jscript.dll [2011/09/02 23:04:08 | 000,085,504 | ---- | C] () -- C:\Windows\SysNative\jsproxy.dll [2011/09/02 23:04:07 | 001,389,056 | ---- | C] () -- C:\Windows\SysNative\wininet.dll [2011/09/02 23:04:01 | 017,782,272 | ---- | C] () -- C:\Windows\SysNative\mshtml.dll [2011/09/02 23:03:58 | 010,886,144 | ---- | C] () -- C:\Windows\SysNative\ieframe.dll [2011/09/02 22:54:15 | 000,002,048 | ---- | C] () -- C:\Windows\SysNative\tzres.dll [2011/09/02 22:53:58 | 001,162,752 | ---- | C] () -- C:\Windows\SysNative\kernel32.dll [2011/09/02 22:53:58 | 000,421,888 | ---- | C] () -- C:\Windows\SysNative\KernelBase.dll [2011/09/02 22:53:58 | 000,362,496 | ---- | C] () -- C:\Windows\SysNative\wow64win.dll [2011/09/02 22:53:57 | 000,338,432 | ---- | C] () -- C:\Windows\SysNative\conhost.exe [2011/09/02 22:53:57 | 000,214,528 | ---- | C] () -- C:\Windows\SysNative\winsrv.dll [2011/09/02 22:53:55 | 000,243,200 | ---- | C] () -- C:\Windows\SysNative\wow64.dll [2011/09/02 22:53:54 | 000,016,384 | ---- | C] () -- C:\Windows\SysNative\ntvdm64.dll [2011/09/02 22:53:53 | 000,013,312 | ---- | C] () -- C:\Windows\SysNative\wow64cpu.dll [2011/09/02 22:53:53 | 000,003,584 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll [2011/09/02 22:53:51 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll [2011/09/02 22:53:51 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll [2011/09/02 22:53:50 | 000,005,120 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll [2011/09/02 22:53:50 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll [2011/09/02 22:53:49 | 000,006,144 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll [2011/09/02 22:53:49 | 000,004,608 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll [2011/09/02 22:53:49 | 000,004,096 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll [2011/09/02 22:53:49 | 000,004,096 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll [2011/09/02 22:53:49 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll [2011/09/02 22:53:48 | 000,004,608 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll [2011/09/02 22:53:48 | 000,004,096 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,584 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,584 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,584 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,584 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,584 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll [2011/09/02 22:53:48 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll [2011/09/02 22:53:47 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll [2011/09/02 22:53:45 | 000,003,584 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll [2011/09/02 22:53:45 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll [2011/09/02 22:53:44 | 000,004,096 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll [2011/09/02 22:53:44 | 000,003,072 | -H-- | C] () -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll [2011/09/02 22:53:35 | 000,288,768 | ---- | C] () -- C:\Windows\SysNative\drivers\mrxsmb10.sys [2011/09/02 22:53:34 | 000,199,680 | ---- | C] () -- C:\Windows\SysNative\xmllite.dll [2011/09/02 22:53:27 | 000,163,840 | ---- | C] () -- C:\Windows\SysNative\odbccp32.dll [2011/09/02 22:53:27 | 000,106,496 | ---- | C] () -- C:\Windows\SysNative\odbccu32.dll [2011/09/02 22:53:27 | 000,106,496 | ---- | C] () -- C:\Windows\SysNative\odbccr32.dll [2011/09/02 22:53:26 | 000,212,992 | ---- | C] () -- C:\Windows\SysNative\odbctrac.dll [2011/09/02 22:53:20 | 001,923,968 | ---- | C] () -- C:\Windows\SysNative\drivers\tcpip.sys [2011/09/02 22:51:52 | 005,561,216 | ---- | C] () -- C:\Windows\SysNative\ntoskrnl.exe [2011/09/02 22:51:49 | 000,552,960 | ---- | C] () -- C:\Windows\SysNative\drivers\bthport.sys [2011/09/02 22:51:49 | 000,080,384 | ---- | C] () -- C:\Windows\SysNative\drivers\BTHUSB.SYS [2011/09/02 22:50:42 | 003,137,536 | ---- | C] () -- C:\Windows\SysNative\win32k.sys [2011/08/31 13:37:34 | 000,518,480 | ---- | C] () -- C:\Windows\SysNative\XAudio2_3.dll [2011/08/31 13:37:34 | 000,074,576 | ---- | C] () -- C:\Windows\SysNative\XAPOFX1_2.dll [2011/08/31 13:37:33 | 000,175,440 | ---- | C] () -- C:\Windows\SysNative\xactengine3_3.dll [2011/08/31 13:37:32 | 000,025,936 | ---- | C] () -- C:\Windows\SysNative\X3DAudio1_5.dll [2011/08/30 13:11:45 | 000,002,973 | ---- | C] () -- C:\Users\Jacek\Desktop\Sam Piszę (VM).lnk [2011/08/20 22:08:22 | 000,001,577 | ---- | C] () -- C:\Users\Jacek\Desktop\Leśne Licha.lnk [2010/12/05 19:01:32 | 000,444,283 | ---- | C] () -- C:\Program Files (x86)\Common Files\WinPcapNmap.exe [2010/10/30 22:22:54 | 000,000,024 | ---- | C] () -- C:\Windows\ATKPF.ini [2010/07/20 21:32:40 | 001,552,712 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010/02/07 20:03:21 | 000,000,000 | ---- | C] () -- C:\Windows\SETUP32.INI [2010/02/07 01:02:40 | 000,014,336 | ---- | C] () -- C:\Users\Jacek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010/01/27 04:09:02 | 000,053,299 | ---- | C] () -- C:\Windows\SysWow64\pthreadVC.dll [2010/01/25 12:58:06 | 000,462,848 | ---- | C] () -- C:\Windows\SysWow64\ractrlkeyhook.dll [2009/12/28 19:35:18 | 000,000,704 | ---- | C] () -- C:\Windows\compedia.ini [2009/12/25 23:57:11 | 000,000,404 | ---- | C] () -- C:\Windows\BRWMARK.INI [2009/12/24 01:57:48 | 000,085,504 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll [2009/10/17 10:31:05 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\LogonStart.dll [2009/08/19 10:33:09 | 000,018,432 | ---- | C] () -- C:\Windows\OOBEPlayer.exe [2009/08/19 10:33:09 | 000,000,031 | ---- | C] () -- C:\Windows\OOBEPlayer.ini [2009/08/16 11:08:36 | 000,178,176 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll [2009/07/29 07:20:40 | 000,000,010 | ---- | C] () -- C:\Windows\SysWow64\ABLKSR.ini [2009/07/14 07:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009/07/14 04:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT [2009/07/14 04:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat [2009/07/14 02:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009/07/14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009/07/13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009/06/10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat [2009/05/29 16:52:26 | 000,204,800 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2009/05/29 16:47:06 | 000,881,664 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2007/10/25 18:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\SysWow64\drivers\StarOpen.sys [2007/02/05 20:05:26 | 000,000,038 | ---- | C] () -- C:\Windows\AviSplitter.INI [color=#E56717]========== LOP Check ==========[/color] [2010/02/10 22:18:53 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Any Video Converter Professional [2010/05/30 21:58:29 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Ashampoo [2010/06/16 21:51:34 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\cPicture [2010/08/12 09:38:47 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\EurekaLog [2011/09/06 18:46:46 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Free Download Manager [2009/12/27 18:43:24 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Gadu-Gadu 10 [2009/12/28 15:00:00 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\gtopala [2011/07/22 15:10:01 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Merscom [2010/02/07 21:28:29 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Opera [2010/11/07 11:11:23 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\PC Suite [2011/07/23 21:30:06 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\PLAY ONLINE [2011/08/31 13:41:54 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\RedDotGames [2010/11/07 12:34:58 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Samsung [2009/12/29 14:14:36 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\SeriousBit [2010/02/07 14:34:09 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Softland [2009/12/28 14:38:25 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Stardock [2010/01/08 23:31:46 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Win7codecs [2011/09/03 00:57:54 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Wise Disk Cleaner [2011/09/03 01:04:57 | 000,000,000 | ---D | M] -- C:\Users\Jacek\AppData\Roaming\Wise Registry Cleaner [2011/08/29 21:57:44 | 000,032,608 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2010/02/07 21:18:45 | 000,000,472 | ---- | M] () -- C:\Windows\Tasks\Wise Registry Cleaner 4.job [color=#E56717]========== Purity Check ==========[/color] < End of report >