OTL logfile created on: 2011-09-29 15:58:04 - Run 1 OTL by OldTimer - Version 3.2.29.1 Folder = G:\ Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,25 Gb Total Physical Memory | 2,69 Gb Available Physical Memory | 82,76% Memory free 5,09 Gb Paging File | 4,82 Gb Available in Paging File | 94,66% Paging File free Paging file location(s): D:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 298,09 Gb Total Space | 160,70 Gb Free Space | 53,91% Space Free | Partition Type: NTFS Drive D: | 149,04 Gb Total Space | 60,40 Gb Free Space | 40,53% Space Free | Partition Type: NTFS Drive G: | 1,89 Gb Total Space | 1,48 Gb Free Space | 78,32% Space Free | Partition Type: FAT Computer Name: DOMOWY | User Name: Roberto | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - File not found -- D:\WINDOWS\1116261118:20281277.exe PRC - [2011-09-29 15:44:58 | 000,582,656 | ---- | M] (OldTimer Tools) -- G:\OTL.exe PRC - [2010-07-11 11:33:24 | 001,101,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\Program Files\AVG\AVG9\avgchsvx.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (cupxqwciism) SRV - [2011-08-31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- D:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2010-07-25 23:35:31 | 000,921,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- D:\Program Files\AVG\AVG9\avgemc.exe -- (avg9emc) SRV - [2010-07-11 11:33:21 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Stopped] -- D:\Program Files\AVG\AVG9\avgwdsvc.exe -- (avg9wd) SRV - [2009-10-14 16:44:38 | 000,090,112 | ---- | M] (France Telecom SA) [Auto | Stopped] -- D:\Program Files\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC) SRV - [2009-01-18 15:10:03 | 000,655,624 | ---- | M] (Acresso Software Inc.) [Disabled | Stopped] -- D:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2008-12-01 12:01:02 | 000,033,752 | ---- | M] (NOS Microsystems Ltd.) [Disabled | Stopped] -- D:\Program Files\NOS\bin\getPlus_HelperSvc.exe -- (getPlus(R) Helper) getPlus(R) SRV - [2008-08-15 06:46:20 | 000,284,016 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe -- (Adobe Version Cue CS4) SRV - [2008-05-02 00:40:44 | 003,032,360 | ---- | M] (Wacom Technology, Corp.) [Disabled | Stopped] -- D:\WINDOWS\system32\Pen_Tablet.exe -- (TabletServicePen) SRV - [2000-05-24 16:20:36 | 000,015,360 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- D:\WINDOWS\system32\ATMsrvc.exe -- (ATMsrvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-09-29 12:35:53 | 000,041,272 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy) DRV - [2011-09-13 08:34:18 | 000,029,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Stopped] -- D:\WINDOWS\system32\drivers\avgmfx86.sys -- (AvgMfx86) DRV - [2011-08-31 17:00:50 | 000,022,216 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector) DRV - [2011-05-05 19:29:33 | 000,243,152 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Stopped] -- D:\WINDOWS\system32\drivers\avgtdix.sys -- (AvgTdiX) DRV - [2010-07-11 11:33:32 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Stopped] -- D:\WINDOWS\system32\drivers\avgldx86.sys -- (AvgLdx86) DRV - [2009-08-04 13:04:28 | 000,102,656 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ewusbfake.sys -- (hwusbfake) DRV - [2009-08-04 13:04:28 | 000,102,400 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2008-10-14 12:07:50 | 000,103,936 | R--- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ZTEusbser6k.sys -- (ZTEusbser6k) DRV - [2008-10-14 12:07:50 | 000,103,936 | R--- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ZTEusbnmeaext.sys -- (ZTEusbnmeaext) DRV - [2008-10-14 12:07:50 | 000,103,936 | R--- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ZTEusbnmea.sys -- (ZTEusbnmea) DRV - [2008-10-14 12:07:50 | 000,103,936 | R--- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k) DRV - [2008-10-14 09:10:30 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5) DRV - [2008-10-02 20:01:46 | 004,878,336 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2008-06-16 10:13:46 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5) DRV - [2008-05-02 08:48:55 | 000,062,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\si3112.sys -- (Si3112) DRV - [2008-05-02 08:48:37 | 000,105,344 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\nvatabus.sys -- (nvatabus) DRV - [2008-03-17 22:14:52 | 000,015,144 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\wacmoumonitor.sys -- (wacmoumonitor) DRV - [2008-01-15 22:11:46 | 000,013,480 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\wacomvhid.sys -- (wacomvhid) DRV - [2007-02-16 21:12:36 | 000,011,312 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\wacommousefilter.sys -- (wacommousefilter) DRV - [2007-02-16 02:11:28 | 000,011,440 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\WacomVKHid.sys -- (WacomVKHid) DRV - [2006-07-01 23:32:26 | 000,043,520 | ---- | M] (Advanced Micro Devices) [Kernel | System | Stopped] -- D:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8) DRV - [2006-06-22 16:25:20 | 000,039,936 | ---- | M] (MICRO-STAR INT'L CO., LTD.) [Kernel | On_Demand | Stopped] -- D:\Program Files\MSI\Core Center\RushTop.sys -- (RushTopDevice) DRV - [2006-03-22 08:24:02 | 000,018,944 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus) DRV - [2006-03-22 08:24:00 | 000,052,736 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD) DRV - [2005-12-06 17:11:18 | 000,035,328 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\sfsync03.sys -- (sfsync03) StarForce Protection Synchronization Driver (version 3.x) DRV - [2005-11-24 20:51:38 | 000,245,248 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\rt73.sys -- (RT73) DRV - [2005-11-21 07:48:20 | 000,016,512 | ---- | M] (Adaptec) [Kernel | Auto | Stopped] -- D:\WINDOWS\system32\drivers\ASPI32.SYS -- (Aspi32) DRV - [2005-08-10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x) DRV - [2005-05-16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x) DRV - [2004-08-22 16:31:48 | 000,005,248 | ---- | M] ( ) [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\d347prt.sys -- (d347prt) DRV - [2004-08-22 16:31:10 | 000,155,136 | ---- | M] ( ) [Kernel | Boot | Running] -- D:\WINDOWS\system32\DRIVERS\d347bus.sys -- (d347bus) DRV - [2004-05-13 15:00:04 | 000,111,808 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\prohlp02.sys -- (prohlp02) DRV - [2004-05-13 13:19:36 | 000,079,488 | ---- | M] (Protection Technology) [Kernel | System | Stopped] -- D:\WINDOWS\System32\drivers\prodrv06.sys -- (prodrv06) DRV - [2003-12-01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\sfhlp01.sys -- (sfhlp01) DRV - [2003-09-06 14:22:08 | 000,006,944 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- D:\WINDOWS\System32\drivers\prosync1.sys -- (prosync1) DRV - [2001-08-17 23:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\irsir.sys -- (irsir) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-299502267-926492609-1801674531-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://home.mywebsearch.com/index.jhtml?n=77C09F4F&ptnrS=ZNfox000&ptb=F4t2LwJDZoys6Xar_jR3Ww IE - HKU\S-1-5-21-299502267-926492609-1801674531-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.google.pl/ig" FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.872 FF - prefs.js..extensions.enabledItems: es-AR@dictionaries.addons.mozilla.org:2.5 FF - prefs.js..extensions.enabledItems: {1018e4d6-728f-4b20-ad56-37578a4de76b}:4.0.13 FF - prefs.js..extensions.enabledItems: {8532a8b7-c06a-41bb-936a-8ce73e4711ed}:2.7.2.0 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {9D6218B8-03C7-4b91-AA43-680B305DD35C}:1.7.9.7 FF - prefs.js..keyword.URL: "http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZNfox000&ptb=F4t2LwJDZoys6Xar_jR3Ww&ind=2011020218&ptnrS=ZNfox000&si=&n=77ddbbba&psa=&st=kwd&searchfor=" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: D:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: D:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.732: D:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.732: D:\Program Files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@unity3d.com/UnityPlayer: D:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKLM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1: D:\Program Files\Mozilla Firefox\plugins\npyaxmpb.dll (Yahoo! Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: D:\Program Files\AVG\AVG9\Firefox [2011-09-13 08:35:02 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 6.0.2\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2011-09-07 09:25:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 6.0.2\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2011-06-20 15:31:20 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.11\extensions\\Components: D:\Program Files\Mozilla Thunderbird\components [2011-06-22 14:02:18 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.11\extensions\\Plugins: D:\Program Files\Mozilla Thunderbird\plugins [2011-06-20 15:31:20 | 000,000,000 | ---D | M] [2011-06-16 17:14:49 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Roberto\Dane aplikacji\Mozilla\Extensions [2011-06-16 17:14:49 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Roberto\Dane aplikacji\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2011-09-28 10:17:48 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Roberto\Dane aplikacji\Mozilla\Firefox\Profiles\4bd03v5y.default\extensions [2011-09-24 14:05:12 | 000,000,000 | ---D | M] (Flagfox) -- D:\Documents and Settings\Roberto\Dane aplikacji\Mozilla\Firefox\Profiles\4bd03v5y.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} [2011-09-28 10:09:36 | 000,000,000 | ---D | M] (gry Community Toolbar) -- D:\Documents and Settings\Roberto\Dane aplikacji\Mozilla\Firefox\Profiles\4bd03v5y.default\extensions\{8532a8b7-c06a-41bb-936a-8ce73e4711ed}(2) [2009-01-26 14:38:33 | 000,000,000 | ---D | M] (Adobe DLM (powered by getPlus(R))) -- D:\Documents and Settings\Roberto\Dane aplikacji\Mozilla\Firefox\Profiles\4bd03v5y.default\extensions\{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7} [2011-06-27 16:42:36 | 000,000,000 | ---D | M] (United States English Spellchecker) -- D:\Documents and Settings\Roberto\Dane aplikacji\Mozilla\Firefox\Profiles\4bd03v5y.default\extensions\en-US@dictionaries.addons.mozilla.org [2011-01-30 21:53:53 | 000,000,000 | ---D | M] (Diccionario español Argentina) -- D:\Documents and Settings\Roberto\Dane aplikacji\Mozilla\Firefox\Profiles\4bd03v5y.default\extensions\es-AR@dictionaries.addons.mozilla.org [2011-06-14 10:23:25 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\extensions [2011-06-14 10:23:25 | 000,000,000 | ---D | M] (Java Console) -- D:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} () (No name found) -- D:\DOCUMENTS AND SETTINGS\ROBERTO\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\4BD03V5Y.DEFAULT\EXTENSIONS\{9D6218B8-03C7-4B91-AA43-680B305DD35C}.XPI [2009-08-08 22:31:40 | 000,000,000 | ---D | M] (Java Quick Starter) -- D:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2011-09-07 09:25:16 | 000,134,104 | ---- | M] (Mozilla Foundation) -- D:\Program Files\mozilla firefox\components\browsercomps.dll [2011-05-04 04:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2010-01-14 00:46:00 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- D:\Program Files\mozilla firefox\plugins\npwachk.dll [2007-03-10 01:16:44 | 000,189,496 | ---- | M] (Yahoo! Inc.) -- D:\Program Files\mozilla firefox\plugins\npyaxmpb.dll [2011-05-14 20:39:10 | 000,002,767 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2011-05-14 20:39:10 | 000,001,406 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-05-14 20:39:10 | 000,000,917 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2011-05-14 20:39:10 | 000,000,858 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011-05-14 20:39:10 | 000,001,183 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2011-05-14 20:39:10 | 000,001,683 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2011-09-28 14:14:30 | 000,429,899 | R--- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 activate.adobe.com O1 - Hosts: 127.0.0.1 www.007guard.com O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 www.008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 www.00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 www.0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 www.1001namen.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 www.100sexlinks.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.10sek.com O1 - Hosts: 127.0.0.1 www.1-2005-search.com O1 - Hosts: 14800 more lines... O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - D:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.) O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O3 - HKU\S-1-5-21-299502267-926492609-1801674531-1003\..\Toolbar\WebBrowser: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - No CLSID value found. O3 - HKU\S-1-5-21-299502267-926492609-1801674531-1003\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O4 - HKLM..\Run: [Adobe_ID0ENQBO] D:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AdobeCS4ServiceManager] D:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [Alcmtr] D:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [AT-Watch] D:\Program Files\Anti-Trojan-55\ATWatch.exe (Anti-Trojan Network) O4 - HKLM..\Run: [AVG9_TRAY] D:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [BEWINTERNET-PL-IEWSessionManager] D:\Program Files\OrangeBS\BEWInternet-PL-IEW\SessionManager\SessionManager.exe (France Telecom SA) O4 - HKLM..\Run: [CardDetectorHUAWEI1752_1552] D:\Program Files\CardDetector\HUAWEI1752_1552\CardDetector.exe (France Telecom SA) O4 - HKLM..\Run: [DAEMON Tools-1033] D:\Program Files\D-Tools\daemon.exe (DAEMON'S HOME) O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found O4 - HKLM..\Run: [NeroFilterCheck] D:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG) O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKU\S-1-5-21-299502267-926492609-1801674531-1003..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] D:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG) O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O4 - HKU\S-1-5-20..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O4 - Startup: D:\Documents and Settings\Bartek i Adi\Menu Start\Programy\Autostart\OpenOffice.org 3.0.lnk = D:\Program Files\OpenOffice.org 3\program\quickstart.exe () O4 - Startup: D:\Documents and Settings\Gość\Menu Start\Programy\Autostart\OpenOffice.org 3.0.lnk = D:\Program Files\OpenOffice.org 3\program\quickstart.exe () O4 - Startup: D:\Documents and Settings\xxxxx\Menu Start\Programy\Autostart\OpenOffice.org 3.0.lnk = D:\Program Files\OpenOffice.org 3\program\quickstart.exe () O4 - Startup: D:\Documents and Settings\Roberto\Menu Start\Programy\Autostart\OpenOffice.org 3.0.lnk = D:\Program Files\OpenOffice.org 3\program\quickstart.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-299502267-926492609-1801674531-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O8 - Extra context menu item: &Search - ?s=100000349&p=ZNfox000&si=&a=F4t2LwJDZoys6Xar_jR3Ww&n=2011020218 File not found O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - D:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - D:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.) O20 - HKLM Winlogon: Shell - (Explorer.exe) -D:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (D:\WINDOWS\system32\userinit.exe) -D:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\avgrsstarter: DllName - (avgrsstx.dll) - D:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.) O20 - Winlogon\Notify\cryptnet32: DllName - (cryptnet32.dll) - File not found O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - File not found O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2007-09-19 18:52:21 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{0b4a9e52-e553-11dd-92cb-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{0b4a9e52-e553-11dd-92cb-806d6172696f}\Shell\AutoRun\command - "" = F:\setup.exe AUTORUN=1 O33 - MountPoints2\{0c93505b-f873-11df-82df-b5ab061d4320}\Shell - "" = AutoRun O33 - MountPoints2\{0c93505b-f873-11df-82df-b5ab061d4320}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{29557470-8941-11df-bc3f-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{29557470-8941-11df-bc3f-806d6172696f}\Shell\AutoRun\command - "" = F:\autorun.exe O33 - MountPoints2\{29895158-24a8-11df-9ff6-00f1d000f1d0}\Shell - "" = AutoRun O33 - MountPoints2\{29895158-24a8-11df-9ff6-00f1d000f1d0}\Shell\AutoRun\command - "" = F:\EE3AutoRun.exe O33 - MountPoints2\{4edc91ad-ee02-11dd-9d47-00f1d000f1d0}\Shell\AutoRun\command - "" = G:\6ruaqx.exe O33 - MountPoints2\{4edc91ad-ee02-11dd-9d47-00f1d000f1d0}\Shell\open\Command - "" = G:\6ruaqx.exe O33 - MountPoints2\{50d8530c-680b-11df-8954-ba15c8c8e125}\Shell\AutoRun\command - "" = F:\6ruaqx.exe O33 - MountPoints2\{50d8530c-680b-11df-8954-ba15c8c8e125}\Shell\open\Command - "" = F:\6ruaqx.exe O33 - MountPoints2\{50d8530d-680b-11df-8954-ba15c8c8e125}\Shell\AutoRun\command - "" = 6ruaqx.exe O33 - MountPoints2\{50d8530d-680b-11df-8954-ba15c8c8e125}\Shell\open\Command - "" = 6ruaqx.exe O33 - MountPoints2\{5b7c53b8-61a2-11df-a07b-d568a537ff24}\Shell - "" = AutoRun O33 - MountPoints2\{5b7c53b8-61a2-11df-a07b-d568a537ff24}\Shell\AutoRun\command - "" = F:\AutoRunCardDetector.exe O33 - MountPoints2\{6a274718-f88f-11df-82e4-f01a8faa9323}\Shell - "" = AutoRun O33 - MountPoints2\{6a274718-f88f-11df-82e4-f01a8faa9323}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{6c8eb58d-2572-11e0-835f-c3fc4e70b021}\Shell - "" = AutoRun O33 - MountPoints2\{6c8eb58d-2572-11e0-835f-c3fc4e70b021}\Shell\AutoRun\command - "" = G:\MicroLauncher.exe O33 - MountPoints2\{7cd8aedc-e2b5-11df-8290-a0433832ea22}\Shell\AutoRun\command - "" = G:\jeo3ky.exe O33 - MountPoints2\{7cd8aedc-e2b5-11df-8290-a0433832ea22}\Shell\open\Command - "" = G:\jeo3ky.exe O33 - MountPoints2\{86f56cea-7b71-11df-8981-c0b4c7db9e24}\Shell\AutoRun\command - "" = krwyrv0d.exe O33 - MountPoints2\{86f56cea-7b71-11df-8981-c0b4c7db9e24}\Shell\open\Command - "" = krwyrv0d.exe O33 - MountPoints2\{8959e0e6-c5c1-11e0-af85-95ad80eb9523}\Shell - "" = AutoRun O33 - MountPoints2\{8959e0e6-c5c1-11e0-af85-95ad80eb9523}\Shell\AutoRun\command - "" = G:\MicroLauncher.exe O33 - MountPoints2\{9b804bc2-e66a-11dd-982b-00f1d000f1d0}\Shell\AutoRun\command - "" = F:\RECYCLER\usbv.exe O33 - MountPoints2\{9b804bc2-e66a-11dd-982b-00f1d000f1d0}\Shell\open\command - "" = F:\RECYCLER\usbv.exe O33 - MountPoints2\{abaa48d8-6326-11df-8944-9f06b539e324}\Shell\AutoRun\command - "" = H:\setup.exe O33 - MountPoints2\{b4deee31-9a4e-11e0-af18-b6ed7437c8e5}\Shell\AutoRun\command - "" = wyskq6lt.exe O33 - MountPoints2\{b4deee31-9a4e-11e0-af18-b6ed7437c8e5}\Shell\open\Command - "" = wyskq6lt.exe O33 - MountPoints2\{c0e4960c-f88d-11df-82e3-e9384e3b2620}\Shell - "" = AutoRun O33 - MountPoints2\{c0e4960c-f88d-11df-82e3-e9384e3b2620}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{e0b944ba-2578-11e0-8360-d96126895d20}\Shell - "" = AutoRun O33 - MountPoints2\{e0b944ba-2578-11e0-8360-d96126895d20}\Shell\AutoRun\command - "" = G:\MicroLauncher.exe O33 - MountPoints2\{eca7a31e-d453-11df-b867-a0eb51ce3d23}\Shell - "" = Autorun O33 - MountPoints2\{eca7a31e-d453-11df-b867-a0eb51ce3d23}\Shell\AutoRun\command - "" = D:\WINDOWS\System32\setup.exe -- [2008-04-14 22:51:40 | 000,023,040 | ---- | M] (Microsoft Corporation) O33 - MountPoints2\{ef35cb0e-8275-11df-8991-cabebd8c6c71}\Shell\AutoRun\command - "" = H:\6ruaqx.exe O33 - MountPoints2\{ef35cb0e-8275-11df-8991-cabebd8c6c71}\Shell\open\Command - "" = H:\6ruaqx.exe O33 - MountPoints2\{f4e4de9f-29e8-11e0-836d-f511d811712e}\Shell\AutoRun\command - "" = H:\i00dvoym.exe O33 - MountPoints2\{f4e4de9f-29e8-11e0-836d-f511d811712e}\Shell\open\Command - "" = H:\i00dvoym.exe O33 - MountPoints2\{ffd6495d-88e7-11de-9e99-fc9ddd43c914}\Shell - "" = AutoRun O33 - MountPoints2\{ffd6495d-88e7-11de-9e99-fc9ddd43c914}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -a O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-09-29 12:35:46 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware [2011-09-29 12:35:42 | 000,022,216 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2011-09-29 12:35:42 | 000,000,000 | ---D | C] -- D:\Program Files\Malwarebytes' Anti-Malware [2011-09-29 12:09:21 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2011-09-29 12:09:17 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Dane aplikacji\Malwarebytes [2011-09-29 12:09:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2011-09-28 19:08:36 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\Anti-Trojan [2011-09-28 19:08:34 | 000,000,000 | ---D | C] -- D:\Program Files\Anti-Trojan-55 [2011-09-28 18:58:33 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\TEMP [2011-09-28 18:58:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Moje dokumenty\Simply Super Software [2011-09-28 18:58:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\Trojan Remover [2011-09-28 18:58:22 | 000,069,632 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\ztvcabinet.dll [2011-09-28 18:58:20 | 000,000,000 | ---D | C] -- D:\Program Files\Trojan Remover [2011-09-28 18:58:20 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Dane aplikacji\Simply Super Software [2011-09-28 18:58:20 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Simply Super Software [2011-09-28 14:52:46 | 000,000,000 | ---D | C] -- D:\WINDOWS\CSC [2011-09-28 10:00:52 | 000,000,000 | ---D | C] -- D:\WINDOWS\pss [2011-09-24 15:13:04 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Pulpit\world [2011-09-20 13:04:23 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Pulpit\dżana [2011-09-19 21:01:51 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Pulpit\Gromex [2011-09-11 08:32:48 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Pulpit\Stasiek [2011-09-10 21:19:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Pulpit\Basia [2011-09-10 11:31:20 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Dane aplikacji\.minecraft [2011-09-10 09:48:40 | 003,414,528 | ---- | C] (Karol Winnicki) -- D:\Documents and Settings\Roberto\Pulpit\BESTplayer.exe [2011-09-07 14:55:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Pulpit\Live nejszyn 2011 [2011-09-04 10:50:48 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Dane aplikacji\Karate Panda [2011-09-04 10:50:12 | 000,444,952 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\wrap_oal.dll [2011-09-04 10:50:12 | 000,109,080 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- D:\WINDOWS\System32\OpenAL32.dll [2011-09-04 10:50:12 | 000,000,000 | ---D | C] -- D:\Program Files\OpenAL [2011-09-04 10:50:11 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\PLAY [2011-09-04 10:49:43 | 000,000,000 | ---D | C] -- D:\Program Files\PLAY [2011-09-02 13:02:44 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Roberto\Pulpit\Nowy folder [2010-07-06 22:55:41 | 000,155,136 | ---- | C] ( ) -- D:\WINDOWS\System32\drivers\d347bus.sys [2010-07-06 22:55:41 | 000,005,248 | ---- | C] ( ) -- D:\WINDOWS\System32\drivers\d347prt.sys [8 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-09-29 15:50:42 | 000,000,000 | ---- | M] () -- D:\WINDOWS\1116261118 [2011-09-29 12:35:53 | 000,041,272 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2011-09-29 12:35:46 | 000,000,790 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2011-09-29 12:10:01 | 019,398,656 | -H-- | M] () -- D:\Documents and Settings\Roberto\ntuser.dat [2011-09-28 19:26:26 | 000,000,188 | -HS- | M] () -- D:\Documents and Settings\Roberto\ntuser.ini [2011-09-28 19:08:36 | 000,000,745 | ---- | M] () -- D:\Documents and Settings\Roberto\Pulpit\Anti-Trojan 5.5.lnk [2011-09-28 18:58:25 | 000,000,760 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Trojan Remover.lnk [2011-09-28 15:59:26 | 000,000,094 | ---- | M] () -- D:\Documents and Settings\Roberto\default.pls [2011-09-28 15:59:23 | 000,000,069 | ---- | M] () -- D:\WINDOWS\NeroDigital.ini [2011-09-28 14:42:57 | 000,000,586 | ---- | M] () -- D:\WINDOWS\win.ini [2011-09-28 14:42:57 | 000,000,227 | ---- | M] () -- D:\WINDOWS\system.ini [2011-09-28 14:14:30 | 000,429,899 | R--- | M] () -- D:\WINDOWS\System32\drivers\etc\hosts [2011-09-28 10:13:12 | 002,292,072 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2011-09-28 09:48:50 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2011-09-27 23:43:37 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT [2011-09-27 23:42:50 | 001,580,256 | -H-- | M] () -- D:\Documents and Settings\Roberto\Ustawienia lokalne\Dane aplikacji\IconCache.db [2011-09-27 16:29:35 | 000,199,819 | ---- | M] () -- D:\WINDOWS\System32\nvapps.xml [2011-09-27 14:32:30 | 086,688,072 | ---- | M] () -- D:\WINDOWS\System32\drivers\Avg\incavi.avm [2011-09-23 00:01:34 | 000,123,392 | ---- | M] () -- D:\Documents and Settings\Roberto\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-09-22 23:59:48 | 000,010,603 | ---- | M] () -- D:\sade vnr.xmp [2011-09-22 23:59:47 | 152,205,316 | ---- | M] () -- D:\sade vnr.mpg [2011-09-22 23:51:20 | 170,442,756 | ---- | M] () -- D:\It's a crime.mpg [2011-09-22 23:51:20 | 000,007,776 | ---- | M] () -- D:\It's a crime.xmp [2011-09-22 22:44:42 | 000,027,080 | ---- | M] () -- D:\Documents and Settings\Roberto\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2011-09-21 08:26:32 | 000,055,316 | ---- | M] () -- D:\WINDOWS\ATMREG.ATM [2011-09-19 23:54:09 | 000,001,735 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2011-09-13 08:34:18 | 000,029,712 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\WINDOWS\System32\drivers\avgmfx86.sys [2011-09-04 10:50:12 | 000,444,952 | ---- | M] (Creative Labs) -- D:\WINDOWS\System32\wrap_oal.dll [2011-09-04 10:50:12 | 000,109,080 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- D:\WINDOWS\System32\OpenAL32.dll [2011-09-04 10:50:11 | 000,001,691 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Karate Panda.lnk [2011-09-01 15:29:48 | 000,010,938 | ---- | M] () -- D:\Documents and Settings\Roberto\Pulpit\headlines do prasówek.odt [2011-08-31 17:00:50 | 000,022,216 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [8 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-09-29 12:35:46 | 000,000,790 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2011-09-28 19:08:36 | 000,000,745 | ---- | C] () -- D:\Documents and Settings\Roberto\Pulpit\Anti-Trojan 5.5.lnk [2011-09-28 18:58:25 | 000,000,760 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Trojan Remover.lnk [2011-09-28 18:58:22 | 000,162,304 | ---- | C] () -- D:\WINDOWS\System32\ztvunrar36.dll [2011-09-28 18:58:22 | 000,153,088 | ---- | C] () -- D:\WINDOWS\System32\UNRAR3.dll [2011-09-28 18:58:22 | 000,077,312 | ---- | C] () -- D:\WINDOWS\System32\ztvunace26.dll [2011-09-28 18:58:22 | 000,075,264 | ---- | C] () -- D:\WINDOWS\System32\unacev2.dll [2011-09-28 18:12:23 | 000,000,000 | ---- | C] () -- D:\WINDOWS\1116261118 [2011-09-22 23:59:48 | 000,010,603 | ---- | C] () -- D:\sade vnr.xmp [2011-09-22 23:53:27 | 152,205,316 | ---- | C] () -- D:\sade vnr.mpg [2011-09-22 23:51:20 | 000,007,776 | ---- | C] () -- D:\It's a crime.xmp [2011-09-22 23:44:30 | 170,442,756 | ---- | C] () -- D:\It's a crime.mpg [2011-09-04 10:50:11 | 000,001,691 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Karate Panda.lnk [2011-09-01 09:29:35 | 000,010,938 | ---- | C] () -- D:\Documents and Settings\Roberto\Pulpit\headlines do prasówek.odt [2011-08-13 16:49:12 | 000,217,088 | ---- | C] () -- D:\WINDOWS\NVGfxOgl.dll [2011-08-09 19:15:29 | 000,004,096 | ---- | C] () -- D:\WINDOWS\d3dx.dat [2011-03-23 10:18:35 | 000,295,042 | ---- | C] () -- D:\WINDOWS\System32\shimg.dll [2011-02-11 22:32:31 | 000,000,211 | ---- | C] () -- D:\WINDOWS\wininit.ini [2010-12-05 17:30:10 | 000,092,576 | ---- | C] () -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-11-24 23:09:09 | 000,000,602 | ---- | C] () -- D:\WINDOWS\eReg.dat [2010-11-11 19:58:33 | 000,000,316 | ---- | C] () -- D:\WINDOWS\game.ini [2010-10-18 11:24:13 | 000,000,000 | ---- | C] () -- D:\WINDOWS\iPlayer.INI [2010-08-26 15:14:30 | 000,063,488 | ---- | C] () -- D:\WINDOWS\xobglu16.dll [2010-08-26 15:14:30 | 000,023,552 | ---- | C] () -- D:\WINDOWS\xobglu32.dll [2010-05-17 22:34:07 | 000,165,376 | ---- | C] () -- D:\WINDOWS\System32\unrar.dll [2010-05-17 22:34:07 | 000,000,038 | ---- | C] () -- D:\WINDOWS\avisplitter.ini [2010-05-17 22:34:05 | 003,297,280 | ---- | C] () -- D:\WINDOWS\System32\x264vfw.dll [2010-05-17 22:34:03 | 000,881,664 | ---- | C] () -- D:\WINDOWS\System32\xvidcore.dll [2010-05-17 22:34:03 | 000,205,824 | ---- | C] () -- D:\WINDOWS\System32\xvidvfw.dll [2010-05-17 22:33:58 | 003,596,288 | ---- | C] () -- D:\WINDOWS\System32\qt-dx331.dll [2010-05-17 22:33:57 | 000,085,504 | ---- | C] () -- D:\WINDOWS\System32\ff_vfw.dll [2010-05-17 22:33:57 | 000,000,547 | ---- | C] () -- D:\WINDOWS\System32\ff_vfw.dll.manifest [2010-02-19 23:44:06 | 000,354,816 | ---- | C] () -- D:\WINDOWS\System32\psisdecd.dll [2010-02-17 13:55:37 | 000,094,208 | ---- | C] () -- D:\WINDOWS\System32\GTW32N50.dll [2010-02-12 14:55:38 | 000,043,520 | ---- | C] () -- D:\WINDOWS\System32\CmdLineExt03.dll [2010-01-19 20:54:24 | 000,000,064 | RHS- | C] () -- D:\WINDOWS\FADA046FBF80360B.bin [2009-08-07 20:52:52 | 000,000,056 | -H-- | C] () -- D:\WINDOWS\System32\ezsidmv.dat [2009-06-01 11:38:44 | 000,000,232 | ---- | C] () -- D:\WINDOWS\DVDFabGold.INI [2009-02-23 17:11:31 | 000,000,085 | -HS- | C] () -- D:\Documents and Settings\All Users\Dane aplikacji\.zreglib [2009-02-18 00:12:14 | 000,000,030 | ---- | C] () -- D:\WINDOWS\TextSpy.ini [2009-02-10 11:32:35 | 000,001,984 | ---- | C] () -- D:\WINDOWS\System32\d3d9caps.dat [2009-02-03 15:52:05 | 000,000,069 | ---- | C] () -- D:\WINDOWS\NeroDigital.ini [2009-01-19 22:21:24 | 002,292,072 | ---- | C] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2009-01-18 14:39:10 | 001,580,256 | -H-- | C] () -- D:\Documents and Settings\Roberto\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-01-18 14:27:13 | 000,000,000 | ---- | C] () -- D:\WINDOWS\nsreg.dat [2009-01-18 14:26:32 | 000,027,080 | ---- | C] () -- D:\Documents and Settings\Roberto\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2009-01-18 14:17:53 | 001,087,700 | ---- | C] () -- D:\WINDOWS\System32\PerfStringBackup.INI [2009-01-18 14:17:53 | 000,004,293 | ---- | C] () -- D:\WINDOWS\ODBCINST.INI [2009-01-18 14:13:20 | 000,123,392 | ---- | C] () -- D:\Documents and Settings\Roberto\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-01-18 13:32:48 | 000,050,105 | ---- | C] () -- D:\WINDOWS\activ.exe [2009-01-18 13:32:47 | 000,000,000 | ---- | C] () -- D:\WINDOWS\control.ini [2009-01-18 13:32:05 | 000,000,488 | RH-- | C] () -- D:\WINDOWS\System32\logonui.exe.manifest [2009-01-18 13:32:02 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\cdplayer.exe.manifest [2009-01-18 13:30:00 | 000,021,856 | ---- | C] () -- D:\WINDOWS\System32\emptyregdb.dat [2009-01-18 13:29:59 | 000,000,037 | ---- | C] () -- D:\WINDOWS\vbaddin.ini [2009-01-18 13:29:59 | 000,000,036 | ---- | C] () -- D:\WINDOWS\vb.ini [2009-01-18 13:29:26 | 000,026,717 | ---- | C] () -- D:\WINDOWS\System32\tslabels.ini [2009-01-18 13:29:24 | 000,003,813 | ---- | C] () -- D:\WINDOWS\System32\msdtcprf.ini [2008-05-03 09:24:01 | 000,000,082 | ---- | C] () -- D:\WINDOWS\System32\oeminfo.ini [2008-04-14 23:16:20 | 000,001,804 | ---- | C] () -- D:\WINDOWS\System32\Dcache.bin [2008-04-14 22:50:46 | 000,270,848 | ---- | C] () -- D:\WINDOWS\System32\sbe.dll [2008-04-14 22:50:38 | 000,014,336 | ---- | C] () -- D:\WINDOWS\System32\msdmo.dll [2008-04-14 22:50:32 | 000,186,880 | ---- | C] () -- D:\WINDOWS\System32\encdec.dll [2008-04-14 22:50:14 | 000,253,440 | ---- | C] () -- D:\WINDOWS\System32\compatUI.dll [2008-04-14 22:50:00 | 000,070,656 | ---- | C] () -- D:\WINDOWS\System32\amstream.dll [2008-04-13 22:51:34 | 000,733,696 | ---- | C] () -- D:\WINDOWS\System32\qedwipes.dll [2008-04-13 22:25:02 | 000,053,920 | ---- | C] () -- D:\WINDOWS\System32\dosx.exe [2008-04-13 22:22:36 | 000,003,346 | ---- | C] () -- D:\WINDOWS\System32\redir.exe [2008-04-13 22:20:56 | 000,042,537 | ---- | C] () -- D:\WINDOWS\System32\keyboard.sys [2008-04-13 22:19:58 | 000,033,936 | ---- | C] () -- D:\WINDOWS\System32\ntio.sys [2008-04-13 22:19:44 | 000,035,424 | ---- | C] () -- D:\WINDOWS\System32\ntio412.sys [2008-04-13 22:19:44 | 000,034,560 | ---- | C] () -- D:\WINDOWS\System32\ntio404.sys [2008-04-13 22:19:42 | 000,034,560 | ---- | C] () -- D:\WINDOWS\System32\ntio804.sys [2008-04-13 22:19:40 | 000,035,648 | ---- | C] () -- D:\WINDOWS\System32\ntio411.sys [2007-12-05 02:41:00 | 001,724,416 | ---- | C] () -- D:\WINDOWS\System32\nvwdmcpl.dll [2007-12-05 02:41:00 | 001,657,376 | ---- | C] () -- D:\WINDOWS\System32\nwiz.exe [2007-12-05 02:41:00 | 001,507,328 | ---- | C] () -- D:\WINDOWS\System32\nview.dll [2007-12-05 02:41:00 | 001,346,080 | ---- | C] () -- D:\WINDOWS\System32\nvdspsch.exe [2007-12-05 02:41:00 | 001,101,824 | ---- | C] () -- D:\WINDOWS\System32\nvwimg.dll [2007-12-05 02:41:00 | 000,466,944 | ---- | C] () -- D:\WINDOWS\System32\nvshell.dll [2007-12-05 02:41:00 | 000,449,056 | ---- | C] () -- D:\WINDOWS\System32\nvappbar.exe [2007-12-05 02:41:00 | 000,436,768 | ---- | C] () -- D:\WINDOWS\System32\keystone.exe [2007-12-05 02:41:00 | 000,286,720 | ---- | C] () -- D:\WINDOWS\System32\nvnt4cpl.dll [2007-10-12 23:20:06 | 000,151,417 | ---- | C] () -- D:\WINDOWS\System32\xlive.dll.cat [2007-04-02 23:04:28 | 000,053,478 | ---- | C] () -- D:\WINDOWS\System32\tcpmon.ini [2007-04-02 18:19:22 | 000,355,112 | ---- | C] () -- D:\WINDOWS\System32\msjetoledb40.dll [2006-12-31 08:57:08 | 000,004,569 | ---- | C] () -- D:\WINDOWS\System32\secupd.dat [2004-08-22 17:04:56 | 000,069,120 | ---- | C] () -- D:\WINDOWS\daemon.dll [2001-10-26 19:29:54 | 000,057,856 | ---- | C] () -- D:\WINDOWS\System32\dvdplay.exe [2001-10-26 19:29:42 | 000,157,696 | ---- | C] () -- D:\WINDOWS\System32\paqsp.dll [2001-10-26 19:29:40 | 000,010,240 | ---- | C] () -- D:\WINDOWS\System32\scriptpw.dll [2001-10-26 19:29:32 | 000,199,168 | ---- | C] () -- D:\WINDOWS\System32\ir32_32.dll [2001-10-26 19:28:34 | 000,094,282 | ---- | C] () -- D:\WINDOWS\System32\msencode.dll [2001-10-26 19:27:02 | 000,015,360 | ---- | C] () -- D:\WINDOWS\System32\tsd32.dll [2001-10-26 18:15:16 | 000,490,284 | ---- | C] () -- D:\WINDOWS\System32\perfh015.dat [2001-10-26 18:15:16 | 000,313,828 | ---- | C] () -- D:\WINDOWS\System32\perfi015.dat [2001-10-26 18:15:16 | 000,083,660 | ---- | C] () -- D:\WINDOWS\System32\perfc015.dat [2001-10-26 18:15:16 | 000,034,990 | ---- | C] () -- D:\WINDOWS\System32\perfd015.dat [2001-10-26 18:15:10 | 000,001,148 | ---- | C] () -- D:\WINDOWS\System32\vwipxspx.exe [2001-10-26 18:15:08 | 000,011,859 | ---- | C] () -- D:\WINDOWS\System32\setver.exe [2001-10-26 18:15:08 | 000,003,260 | ---- | C] () -- D:\WINDOWS\System32\nw16.exe [2001-10-26 18:15:04 | 000,027,898 | ---- | C] () -- D:\WINDOWS\System32\ntdos.sys [2001-10-26 18:14:58 | 000,007,116 | ---- | C] () -- D:\WINDOWS\System32\nlsfunc.exe [2001-10-26 18:14:56 | 000,039,434 | ---- | C] () -- D:\WINDOWS\System32\mem.exe [2001-10-26 18:14:54 | 000,014,913 | ---- | C] () -- D:\WINDOWS\System32\kb16.com [2001-10-26 18:14:54 | 000,001,168 | ---- | C] () -- D:\WINDOWS\System32\loadfix.com [2001-10-26 18:14:52 | 000,004,976 | ---- | C] () -- D:\WINDOWS\System32\himem.sys [2001-10-26 18:14:50 | 000,019,806 | ---- | C] () -- D:\WINDOWS\System32\graphics.com [2001-10-26 18:14:48 | 000,008,520 | ---- | C] () -- D:\WINDOWS\System32\exe2bin.exe [2001-10-26 18:14:46 | 000,012,866 | ---- | C] () -- D:\WINDOWS\System32\edlin.exe [2001-10-26 18:14:42 | 000,020,986 | ---- | C] () -- D:\WINDOWS\System32\debug.exe [2001-10-26 18:14:38 | 000,051,823 | ---- | C] () -- D:\WINDOWS\System32\command.com [2001-10-26 18:14:34 | 000,012,594 | ---- | C] () -- D:\WINDOWS\System32\append.exe [2001-10-26 18:14:32 | 000,009,043 | ---- | C] () -- D:\WINDOWS\System32\ansi.sys [2001-10-26 18:12:52 | 000,000,359 | ---- | C] () -- D:\WINDOWS\System32\prodspec.ini [2001-10-26 17:45:26 | 000,016,024 | ---- | C] () -- D:\WINDOWS\System32\rsvp.ini [2001-10-26 17:45:26 | 000,006,074 | ---- | C] () -- D:\WINDOWS\System32\rasctrs.ini [2001-10-26 17:45:24 | 000,013,819 | ---- | C] () -- D:\WINDOWS\System32\pschdprf.ini [2001-10-26 17:45:10 | 000,070,622 | ---- | C] () -- D:\WINDOWS\System32\edit.com [2001-10-26 17:42:08 | 000,020,629 | ---- | C] () -- D:\WINDOWS\System32\mqperf.ini [2001-10-26 17:42:08 | 000,002,992 | ---- | C] () -- D:\WINDOWS\System32\perfci.ini [2001-10-26 17:42:08 | 000,002,890 | ---- | C] () -- D:\WINDOWS\System32\perfwci.ini [2001-10-26 17:42:08 | 000,001,295 | ---- | C] () -- D:\WINDOWS\System32\perffilt.ini [2001-08-23 15:00:00 | 013,107,200 | ---- | C] () -- D:\WINDOWS\System32\oembios.bin [2001-08-23 15:00:00 | 000,004,463 | ---- | C] () -- D:\WINDOWS\System32\oembios.dat [2001-08-17 23:35:10 | 000,000,817 | ---- | C] () -- D:\WINDOWS\System32\mscdexnt.exe [2001-08-17 23:32:34 | 000,000,882 | ---- | C] () -- D:\WINDOWS\System32\share.exe [2001-08-17 23:32:34 | 000,000,882 | ---- | C] () -- D:\WINDOWS\System32\fastopen.exe [2001-08-17 23:31:56 | 000,042,809 | ---- | C] () -- D:\WINDOWS\System32\key01.sys [2001-08-17 23:31:56 | 000,027,097 | ---- | C] () -- D:\WINDOWS\System32\country.sys [2001-08-17 23:31:50 | 000,029,274 | ---- | C] () -- D:\WINDOWS\System32\ntdos412.sys [2001-08-17 23:31:46 | 000,029,370 | ---- | C] () -- D:\WINDOWS\System32\ntdos411.sys [2001-08-17 23:31:46 | 000,029,146 | ---- | C] () -- D:\WINDOWS\System32\ntdos404.sys [2001-08-17 23:31:44 | 000,029,146 | ---- | C] () -- D:\WINDOWS\System32\ntdos804.sys [2001-08-17 23:30:24 | 000,432,356 | ---- | C] () -- D:\WINDOWS\System32\perfh009.dat [2001-08-17 23:30:24 | 000,272,128 | ---- | C] () -- D:\WINDOWS\System32\perfi009.dat [2001-08-17 23:30:24 | 000,028,626 | ---- | C] () -- D:\WINDOWS\System32\perfd009.dat [2001-08-17 23:30:22 | 000,067,312 | ---- | C] () -- D:\WINDOWS\System32\perfc009.dat [2001-08-17 23:15:38 | 000,046,258 | ---- | C] () -- D:\WINDOWS\System32\mib.bin [2001-08-17 23:13:24 | 000,002,656 | ---- | C] () -- D:\WINDOWS\System32\netware.drv [2001-08-17 21:55:06 | 001,015,477 | ---- | C] () -- D:\WINDOWS\System32\esentprf.ini [2001-07-22 04:25:18 | 000,001,405 | ---- | C] () -- D:\WINDOWS\msdfmap.ini [2001-07-22 00:36:48 | 000,218,003 | ---- | C] () -- D:\WINDOWS\System32\dssec.dat [2001-07-22 00:36:04 | 000,673,088 | ---- | C] () -- D:\WINDOWS\System32\mlang.dat [2001-07-22 00:24:16 | 000,000,741 | ---- | C] () -- D:\WINDOWS\System32\noise.dat [2001-07-22 00:16:20 | 000,000,586 | ---- | C] () -- D:\WINDOWS\win.ini [2001-07-22 00:15:52 | 000,000,227 | ---- | C] () -- D:\WINDOWS\system.ini [2001-07-22 00:15:50 | 000,013,312 | ---- | C] () -- D:\WINDOWS\System32\win87em.dll [2000-09-12 12:58:26 | 000,160,256 | ---- | C] () -- D:\WINDOWS\System32\ShrLk21.dll [2000-01-28 01:00:00 | 000,061,440 | ---- | C] () -- D:\WINDOWS\System32\wrkgadm.exe [2000-01-28 01:00:00 | 000,012,288 | ---- | C] () -- D:\WINDOWS\System32\HLINKPRX.DLL [color=#E56717]========== LOP Check ==========[/color] [2010-01-15 16:31:27 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\AlawarWrapper [2010-07-11 11:33:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\avg9 [2011-03-15 17:29:40 | 000,000,000 | -H-D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Common Files [2009-02-14 12:09:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\EIDOS [2009-02-23 17:11:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Elaborate Bytes [2009-05-08 20:42:04 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\gamelab [2009-03-04 16:46:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\GlobalSCAPE [2011-03-02 00:33:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\IHDP [2011-03-02 01:31:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\IHDP Software [2010-01-15 16:31:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\OdlotowaFarma2 [2011-09-28 18:58:20 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Simply Super Software [2011-01-22 18:15:47 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Soulseek [2011-09-28 18:58:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\TEMP [2011-02-05 13:06:06 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2011-09-10 07:17:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Bartek i Adi\Dane aplikacji\Karate Panda [2010-11-27 23:48:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Bartek i Adi\Dane aplikacji\LEGO Company [2011-03-27 10:11:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Bartek i Adi\Dane aplikacji\Moje pliki Bitwy o Śródziemie™ II [2010-05-13 21:26:05 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Bartek i Adi\Dane aplikacji\OpenOffice.org [2010-11-12 22:01:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Bartek i Adi\Dane aplikacji\Petroglyph [2010-03-03 21:35:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Bartek i Adi\Dane aplikacji\Sierra Entertainment [2011-05-21 08:22:17 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Bartek i Adi\Dane aplikacji\SPORE [2010-04-08 09:15:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Bartek i Adi\Dane aplikacji\Thunderbird [2011-07-17 22:17:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Gość\Dane aplikacji\BESTplayer [2011-01-01 11:31:18 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Gość\Dane aplikacji\iPlus [2010-12-23 22:18:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Gość\Dane aplikacji\LEGO Company [2010-07-16 20:35:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Gość\Dane aplikacji\OpenOffice.org [2010-12-28 14:25:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Gość\Dane aplikacji\Shape games [2010-03-07 09:54:45 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Gość\Dane aplikacji\Sierra Entertainment [2010-01-30 11:39:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Gość\Dane aplikacji\Thunderbird [2010-03-01 13:07:44 | 000,000,000 | ---D | M] -- D:\Documents and Settings\MagdaS\Dane aplikacji\OpenOffice.org [2010-02-16 16:34:43 | 000,000,000 | ---D | M] -- D:\Documents and Settings\MagdaS\Dane aplikacji\Thunderbird [2011-09-17 12:40:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\.minecraft [2011-09-13 08:48:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\BESTplayer [2009-01-18 16:14:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\com.adobe.ExMan [2010-02-18 08:19:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2011-09-17 11:00:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\FileZilla [2009-05-08 20:42:04 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\gamelab [2009-03-04 16:46:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\GlobalSCAPE [2010-11-25 13:48:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\iPlus [2011-09-04 10:50:48 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Karate Panda [2011-03-23 20:08:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Leadertech [2009-04-11 09:31:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\LEGO Company [2011-03-12 23:48:43 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Moje pliki Bitwy o ĹšrĂłdziemie™ II [2009-09-08 22:34:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\MPEG Streamclip [2009-02-10 12:11:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\OpenOffice.org [2010-02-11 00:27:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Petroglyph [2011-08-28 14:28:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Proxima Software [2010-12-31 19:40:00 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\PTV Game [2010-12-27 13:10:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Shape games [2010-02-28 22:53:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Sierra Entertainment [2011-09-28 18:58:20 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Simply Super Software [2011-05-25 16:25:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\SPORE [2011-04-07 17:07:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\StoneLoopsCT [2011-07-28 10:23:20 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Thunderbird [2009-08-24 07:18:17 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Roberto\Dane aplikacji\Unity [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 816 bytes -> D:\WINDOWS\1116261118:20281277.exe < End of report >