OTL logfile created on: 2012-01-21 17:26:23 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Iza\Pulpit Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,55 Gb Available Physical Memory | 85,08% Memory free 4,84 Gb Paging File | 4,47 Gb Available in Paging File | 92,26% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 465,75 Gb Total Space | 142,48 Gb Free Space | 30,59% Space Free | Partition Type: NTFS Drive D: | 7,80 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: X-B465BC2B04874 | User Name: Iza | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-01-21 17:25:16 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Iza\Pulpit\OTL.exe PRC - [2011-08-04 13:34:50 | 001,955,208 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe PRC - [2011-08-04 13:34:46 | 001,361,288 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe PRC - [2011-07-23 18:05:13 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2011-05-06 16:13:32 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2010-12-17 13:34:58 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2010-01-14 20:11:00 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe PRC - [2008-12-24 15:52:08 | 000,068,136 | ---- | M] () -- C:\Program Files\Gigabyte\EasySaver\essvr.exe PRC - [2008-04-15 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2010-01-28 11:57:58 | 000,355,688 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll MOD - [2008-12-24 15:52:08 | 000,068,136 | ---- | M] () -- C:\Program Files\Gigabyte\EasySaver\essvr.exe MOD - [2008-12-05 16:03:52 | 000,098,304 | ---- | M] () -- C:\Program Files\Gigabyte\EasySaver\ycc.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2011-08-04 13:34:46 | 001,361,288 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc) SRV - [2011-07-23 18:05:13 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2011-05-06 16:13:32 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2008-12-24 15:52:08 | 000,068,136 | ---- | M] () [Auto | Running] -- C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE -- (ES lite Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2012-01-21 17:22:20 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2011-10-08 11:44:31 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2011-10-08 11:44:31 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2011-08-03 09:58:14 | 000,024,504 | ---- | M] (Turtle Entertainment GmbH) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ESLvnic.sys -- (ESLvnic1) DRV - [2011-07-23 18:05:17 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2011-07-23 18:05:17 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2009-09-23 09:41:58 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2009-05-11 10:49:19 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio) DRV - [2009-05-11 08:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2009-04-06 08:13:52 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc) DRV - [2009-04-06 08:13:52 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt) DRV - [2009-01-13 12:10:08 | 005,015,040 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2008-10-30 14:14:20 | 000,117,888 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2001-05-23 09:42:52 | 000,012,084 | ---- | M] (Aiptek) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\UTBLFILT.sys -- (utblfilt) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=bf2&s={searchTerms}&f=4 IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 195.175.37.71:80 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 195.175.37.71:80 IE - HKU\S-1-5-21-1482476501-1801674531-682003330-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.facemoods.com/?a=bf2 IE - HKU\S-1-5-21-1482476501-1801674531-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2 FF - prefs.js..extensions.enabledItems: piclens@cooliris.com:1.12.0.36949 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.13 FF - prefs.js..network.proxy.autoconfig_url: "http://www.abi24.pl/proxy.pac" FF - prefs.js..network.proxy.backup.ftp: "192.168.4.10" FF - prefs.js..network.proxy.backup.ftp_port: 8080 FF - prefs.js..network.proxy.backup.gopher: "192.168.4.10" FF - prefs.js..network.proxy.backup.gopher_port: 8080 FF - prefs.js..network.proxy.backup.socks: "192.168.4.10" FF - prefs.js..network.proxy.backup.socks_port: 8080 FF - prefs.js..network.proxy.backup.ssl: "192.168.4.10" FF - prefs.js..network.proxy.backup.ssl_port: 8080 FF - prefs.js..network.proxy.ftp: "192.168.4.10" FF - prefs.js..network.proxy.ftp_port: 8080 FF - prefs.js..network.proxy.gopher: "192.168.4.10" FF - prefs.js..network.proxy.gopher_port: 8080 FF - prefs.js..network.proxy.http: "192.168.4.10" FF - prefs.js..network.proxy.http_port: 8080 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "192.168.4.10" FF - prefs.js..network.proxy.socks_port: 8080 FF - prefs.js..network.proxy.ssl: "192.168.4.10" FF - prefs.js..network.proxy.ssl_port: 8080 FF - prefs.js..network.proxy.type: 2 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.93\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.93\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Iza\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.53\npGoogleUpdate3.dll File not found FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Iza\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.53\npGoogleUpdate3.dll File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox 4.0 Beta 1\components [2012-01-17 18:53:40 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox 4.0 Beta 1\plugins [2012-01-17 19:18:09 | 000,000,000 | ---D | M] [2009-08-13 17:04:15 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Iza\Dane aplikacji\Mozilla\Extensions [2012-01-07 16:40:54 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Iza\Dane aplikacji\Mozilla\Firefox\Profiles\oij8g7l8.default\extensions [2011-12-17 16:25:48 | 000,000,000 | ---D | M] (Cooliris) -- C:\Documents and Settings\Iza\Dane aplikacji\Mozilla\Firefox\Profiles\oij8g7l8.default\extensions\piclens@cooliris.com [2010-07-08 22:49:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions () (No name found) -- C:\DOCUMENTS AND SETTINGS\IZA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\OIJ8G7L8.DEFAULT\EXTENSIONS\{3D7EB24F-2740-49DF-8937-200B1CC08F8A}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\IZA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\OIJ8G7L8.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\IZA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\OIJ8G7L8.DEFAULT\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM.XPI [2002-09-16 14:32:04 | 000,138,752 | ---- | M] () -- C:\Program Files\mozilla firefox\plugins\npImagine.dll [2010-01-13 23:46:00 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll [2011-10-16 15:34:53 | 000,002,046 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrch.xml O1 HOSTS File: ([2008-04-15 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10\_userdata\ggbho.2.dll File not found O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O3 - HKU\S-1-5-21-1482476501-1801674531-682003330-1004\..\Toolbar\ShellBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O3 - HKU\S-1-5-21-1482476501-1801674531-682003330-1004\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.) O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Nero AG) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe () O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\setup.lnk = File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1482476501-1801674531-682003330-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BABA93BC-CC55-4A75-B2D9-FB4E12B7B6AB}: DhcpNameServer = 192.168.1.20 O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL File not found O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL File not found O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Iza\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Iza\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-08-12 22:31:50 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-10-07 19:36:50 | 000,000,043 | R--- | M] () - D:\autorun.inf -- [ UDF ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-01-21 17:25:15 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Iza\Pulpit\OTL.exe [2012-01-17 19:00:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2012-01-17 18:59:50 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe [2012-01-17 18:59:50 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe [2012-01-17 18:59:50 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe [2012-01-17 18:44:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\Moje dokumenty\Witcher 2 [2012-01-17 18:44:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\Ustawienia lokalne\Dane aplikacji\The Witcher 2 [2012-01-17 18:41:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\Ustawienia lokalne\Dane aplikacji\Conduit [2012-01-17 18:29:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\WapSter [2012-01-17 18:29:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\Menu Start\Programy\WapSter [2012-01-17 18:29:22 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter [2012-01-16 23:07:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\Pulpit\serw [2012-01-16 22:48:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Skype [2011-12-27 19:27:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\Pulpit\Nowy folder (2) [2011-12-25 14:13:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\Dane aplikacji\uTorrent [2011-12-25 12:35:21 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2011-12-23 07:04:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Iza\Ustawienia lokalne\Dane aplikacji\Apple [30 C:\*.tmp files -> C:\*.tmp -> ] [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-01-21 17:25:16 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Iza\Pulpit\OTL.exe [2012-01-21 17:22:20 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\gdrv.sys [2012-01-21 17:22:11 | 000,243,457 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml [2012-01-21 17:22:10 | 000,001,026 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-01-21 17:22:04 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-01-21 16:49:01 | 000,001,030 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-01-21 16:37:00 | 000,001,124 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1482476501-1801674531-682003330-1004UA.job [2012-01-20 16:42:55 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2012-01-20 10:37:00 | 000,001,072 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1482476501-1801674531-682003330-1004Core.job [2012-01-20 10:14:44 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-01-18 22:51:44 | 000,186,359 | ---- | M] () -- C:\Documents and Settings\Iza\Pulpit\Minidump.rar [2012-01-17 19:18:09 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2012-01-17 19:13:49 | 000,238,608 | ---- | M] () -- C:\Documents and Settings\Iza\Pulpit\avira_registry_cleaner_en.exe [2012-01-17 19:13:03 | 064,207,032 | ---- | M] () -- C:\Documents and Settings\Iza\Pulpit\setup_av_free.exe [2012-01-17 18:44:08 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\Iza\Pulpit\Mozilla Firefox.lnk [2012-01-17 18:29:30 | 000,000,591 | ---- | M] () -- C:\Documents and Settings\Iza\Pulpit\AQQ.lnk [2012-01-10 23:57:00 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2012-01-01 03:03:10 | 000,491,064 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-01-01 03:03:10 | 000,432,928 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-01-01 03:03:10 | 000,084,316 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-01-01 03:03:10 | 000,067,884 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2011-12-26 22:13:29 | 001,230,833 | ---- | M] () -- C:\Documents and Settings\Iza\Pulpit\mcpatcher-2.3.0_01.exe [2011-12-26 20:35:48 | 000,140,496 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2011-12-26 20:35:35 | 000,280,736 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2011-12-25 12:35:21 | 000,000,630 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\µTorrent.lnk [2011-12-24 21:52:54 | 000,000,835 | ---- | M] () -- C:\Documents and Settings\Iza\.recently-used.xbel [2011-12-24 13:28:00 | 000,001,324 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2011-12-24 12:19:27 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [30 C:\*.tmp files -> C:\*.tmp -> ] [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-01-18 22:51:44 | 000,186,359 | ---- | C] () -- C:\Documents and Settings\Iza\Pulpit\Minidump.rar [2012-01-17 19:18:09 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader 9.lnk [2012-01-17 19:18:09 | 000,001,729 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2012-01-17 19:13:49 | 000,238,608 | ---- | C] () -- C:\Documents and Settings\Iza\Pulpit\avira_registry_cleaner_en.exe [2012-01-17 19:05:09 | 064,207,032 | ---- | C] () -- C:\Documents and Settings\Iza\Pulpit\setup_av_free.exe [2012-01-17 18:44:08 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\Iza\Pulpit\Mozilla Firefox.lnk [2012-01-17 18:29:30 | 000,000,591 | ---- | C] () -- C:\Documents and Settings\Iza\Pulpit\AQQ.lnk [2011-12-26 22:13:25 | 001,230,833 | ---- | C] () -- C:\Documents and Settings\Iza\Pulpit\mcpatcher-2.3.0_01.exe [2011-12-25 12:35:21 | 000,000,630 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\µTorrent.lnk [2011-12-24 21:52:54 | 000,000,835 | ---- | C] () -- C:\Documents and Settings\Iza\.recently-used.xbel [2011-09-18 17:28:49 | 000,265,120 | ---- | C] () -- C:\Program Files\Common Files\WireHelpSvc.exe [2011-03-27 16:59:37 | 000,000,004 | ---- | C] () -- C:\WINDOWS\System32\proc-1830267680.bin [2011-02-26 02:19:32 | 000,041,872 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll [2010-08-15 15:41:44 | 000,014,373 | ---- | C] () -- C:\WINDOWS\System32\SpoonUninstall-dBpoweramp Music Converter.dat [2010-06-27 19:10:22 | 000,075,035 | ---- | C] () -- C:\Program Files\Uninstal.exe [2010-05-12 17:55:03 | 000,152,837 | ---- | C] () -- C:\WINDOWS\hpoins14.dat.temp [2010-05-12 17:55:03 | 000,002,000 | ---- | C] () -- C:\WINDOWS\hpomdl14.dat.temp [2010-04-29 19:22:01 | 000,000,029 | ---- | C] () -- C:\WINDOWS\viewer.ini [2010-04-22 12:51:24 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat [2010-04-09 18:13:10 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2010-03-11 20:16:45 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2010-02-26 14:09:29 | 000,000,319 | ---- | C] () -- C:\WINDOWS\game.ini [2010-02-06 13:25:26 | 000,000,073 | ---- | C] () -- C:\WINDOWS\Kyor.ini [2010-02-05 13:24:30 | 000,152,952 | ---- | C] () -- C:\WINDOWS\hpoins14.dat [2010-02-05 13:24:30 | 000,002,000 | ---- | C] () -- C:\WINDOWS\hpomdl14.dat [2009-12-24 10:09:08 | 000,140,496 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2009-12-24 10:08:50 | 000,280,736 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2009-12-24 10:07:58 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2009-10-29 19:21:41 | 005,433,520 | ---- | C] () -- C:\WINDOWS\System32\SpoonUninstall.exe [2009-09-06 16:35:21 | 000,795,648 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2009-08-30 18:22:44 | 000,000,020 | ---- | C] () -- C:\WINDOWS\Hposcv07.INI [2009-08-21 14:23:59 | 000,000,130 | ---- | C] () -- C:\WINDOWS\cfplogvw.INI [2009-08-13 20:02:43 | 000,009,728 | ---- | C] () -- C:\Documents and Settings\Iza\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-08-13 18:27:55 | 000,281,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys [2009-08-13 18:27:55 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys [2009-08-13 17:46:35 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2009-08-13 16:43:24 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2009-08-13 00:16:13 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009-08-13 00:13:37 | 000,152,384 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2009-08-12 22:47:03 | 001,597,690 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2009-08-12 22:33:02 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2009-08-12 22:29:53 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2008-04-15 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2008-04-15 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2008-04-15 13:00:00 | 000,491,064 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2008-04-15 13:00:00 | 000,432,928 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2008-04-15 13:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2008-04-15 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2008-04-15 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2008-04-15 13:00:00 | 000,084,316 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2008-04-15 13:00:00 | 000,067,884 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2008-04-15 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2008-04-15 13:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2008-04-15 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2008-04-15 13:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2008-04-15 13:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2008-04-15 13:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2008-04-15 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [color=#E56717]========== LOP Check ==========[/color] [2011-04-15 14:45:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Caphyon [2010-03-06 14:31:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2011-10-16 15:35:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallMate [2009-08-23 18:46:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Last.fm [2009-09-27 13:46:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2011-12-25 12:05:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2011-10-16 15:34:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Premium [2010-05-23 14:47:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\stamina [2009-11-05 11:25:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SYSTEMAX Software Development [2010-04-13 12:01:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl [2012-01-16 23:22:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\.minecraft [2011-05-14 19:18:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\.purple [2009-11-21 22:07:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2010-04-13 12:11:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\EurekaLog [2010-04-10 15:38:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\Gadu-Gadu [2010-03-06 14:40:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\Gadu-Gadu 10 [2011-04-05 16:34:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\gtk-2.0 [2012-01-17 18:37:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\inkscape [2010-07-16 18:14:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\Kingston [2010-04-13 12:46:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\Miranda [2010-06-28 17:34:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\Mp3tag [2010-06-11 22:37:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\Opera [2009-11-05 11:25:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\SYSTEMAX Software Development [2010-03-01 16:06:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\Teleca [2011-07-30 23:19:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\Tibia [2010-08-17 21:11:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\TS3Client [2011-12-27 12:33:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Iza\Dane aplikacji\uTorrent [2011-12-12 17:43:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Właściciel\Dane aplikacji\facemoods.com [2010-07-26 10:24:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Właściciel\Dane aplikacji\Teleca [color=#E56717]========== Purity Check ==========[/color] < End of report >