OTL logfile created on: 2012-03-27 16:12:37 - Run 1 OTL by OldTimer - Version 3.2.39.2 Folder = C:\Documents and Settings\Lesio\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,25 Gb Total Physical Memory | 2,50 Gb Available Physical Memory | 77,07% Memory free 7,00 Gb Paging File | 6,28 Gb Available in Paging File | 89,72% Paging File free Paging file location(s): C:\pagefile.sys 4000 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 74,52 Gb Total Space | 24,83 Gb Free Space | 33,32% Space Free | Partition Type: NTFS Drive D: | 465,76 Gb Total Space | 123,85 Gb Free Space | 26,59% Space Free | Partition Type: NTFS Drive E: | 465,76 Gb Total Space | 12,39 Gb Free Space | 2,66% Space Free | Partition Type: NTFS Drive F: | 4,01 Gb Total Space | 0,23 Gb Free Space | 5,79% Space Free | Partition Type: NTFS Drive G: | 38,29 Gb Total Space | 16,85 Gb Free Space | 44,02% Space Free | Partition Type: NTFS Computer Name: LJ-A2E46B58F663 | User Name: Lesio | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-03-27 16:11:46 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Lesio\Pulpit\OTL.exe PRC - [2012-03-22 11:36:58 | 000,335,888 | ---- | M] (Bitsum Technologies) -- C:\Program Files\Process Lasso\ProcessGovernor.exe PRC - [2012-03-22 11:36:56 | 000,619,024 | ---- | M] (Bitsum Technologies) -- C:\Program Files\Process Lasso\ProcessLasso.exe PRC - [2012-03-01 01:58:00 | 002,348,352 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe PRC - [2011-12-24 18:50:18 | 000,652,872 | ---- | M] (Malwarebytes Corporation) -- D:\Anty wirusy\Malwarebytes' Anti-Malware\mbamservice.exe PRC - [2011-08-02 16:38:20 | 002,248,704 | ---- | M] () -- C:\Program Files\Vtune\TBPANEL.exe PRC - [2011-07-05 15:41:08 | 002,554,696 | ---- | M] (COMODO) -- D:\Anty wirusy\COMODO\COMODO\COMODO Internet Security\cfp.exe PRC - [2011-07-05 15:41:06 | 001,793,712 | ---- | M] (COMODO) -- D:\Anty wirusy\COMODO\COMODO\COMODO Internet Security\cmdagent.exe PRC - [2011-03-21 11:17:56 | 000,068,928 | ---- | M] (Nalpeiron Ltd.) -- C:\WINDOWS\system32\NLSSRV32.EXE PRC - [2011-03-21 11:17:44 | 000,196,928 | ---- | M] (Nitro PDF Software) -- D:\PDF NITRO\NitroPDFDriverService.exe PRC - [2010-03-11 15:06:06 | 000,193,824 | ---- | M] (Protexis Inc.) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe PRC - [2009-02-27 17:04:38 | 000,850,432 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe PRC - [2009-02-27 17:04:34 | 000,278,016 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe PRC - [2008-04-14 19:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2006-10-30 17:59:34 | 000,024,576 | ---- | M] () -- C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtProc.exe PRC - [2006-09-20 09:35:26 | 000,020,480 | ---- | M] () -- C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtMon.exe PRC - [2004-08-06 18:01:42 | 000,135,168 | ---- | M] (Alcor Micro, Corp.) -- C:\Program Files\Multimedia Card Reader\shwicon2k.exe PRC - [2003-10-17 16:28:46 | 000,086,016 | ---- | M] (Symantec Corporation) -- E:\Norton SystemWorks\Norton Utilities\NPROTECT.EXE [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-03-01 01:58:00 | 001,568,576 | ---- | M] () -- C:\Program Files\NVIDIA Corporation\nView\nView.dll MOD - [2011-08-02 16:38:20 | 002,248,704 | ---- | M] () -- C:\Program Files\Vtune\TBPANEL.exe MOD - [2011-03-21 11:18:00 | 000,115,008 | ---- | M] () -- D:\PDF NITRO\NPShellExtension.dll MOD - [2010-11-08 17:15:40 | 000,296,448 | ---- | M] () -- D:\Notepad++\NppShell_04.dll MOD - [2010-07-28 02:24:30 | 000,117,904 | ---- | M] () -- D:\Corel PaintShop Photo Pro\X3\PSPClassic\PSPContextMenu.dll MOD - [2010-07-04 23:32:38 | 000,010,752 | ---- | M] () -- D:\Dyskowe, Partycje, Odzyskiwanie, Rejestr, Systemowe itp\INNE\Unlocker\UnlockerCOM.dll MOD - [2009-08-11 22:18:28 | 000,497,664 | ---- | M] () -- C:\WINDOWS\system32\ac3filter.acm MOD - [2009-02-27 17:04:38 | 000,850,432 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe MOD - [2009-02-27 17:04:34 | 000,278,016 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe MOD - [2009-02-27 16:44:28 | 000,053,248 | ---- | M] () -- C:\WINDOWS\system32\HtmPrintHelper.dll MOD - [2009-02-27 16:44:10 | 000,622,693 | ---- | M] () -- C:\WINDOWS\system32\BSShell.dll MOD - [2009-02-27 16:43:38 | 000,110,712 | ---- | M] () -- C:\Program Files\IVT Corporation\BlueSoleil\setup.dll MOD - [2009-02-27 16:41:02 | 000,122,976 | ---- | M] () -- C:\WINDOWS\system32\BsMobileSDK.dll MOD - [2009-02-27 16:38:48 | 000,102,499 | ---- | M] () -- C:\WINDOWS\system32\Bs2Res.dll MOD - [2008-03-29 17:42:20 | 000,159,744 | ---- | M] () -- D:\Odtwarzacze\SubEdit-Player\codec\MatroskaSplitter\mmfinfo.dll MOD - [2008-03-29 17:41:52 | 000,023,552 | ---- | M] () -- D:\Odtwarzacze\SubEdit-Player\codec\MatroskaSplitter\mkunicode.dll MOD - [2008-03-07 13:54:22 | 017,907,824 | ---- | M] () -- C:\WINDOWS\system32\BsLangInDepRes.dll MOD - [2006-10-30 17:59:34 | 000,024,576 | ---- | M] () -- C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtProc.exe MOD - [2006-09-20 09:35:26 | 000,020,480 | ---- | M] () -- C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtMon.exe MOD - [2006-09-14 01:20:24 | 000,126,464 | ---- | M] () -- D:\WinRAR\RarExt.dll MOD - [2005-04-26 19:58:40 | 000,014,848 | ---- | M] () -- C:\Program Files\Directory Lister\DirListerExt.dll MOD - [2001-10-26 19:27:02 | 000,015,360 | ---- | M] () -- C:\WINDOWS\system32\tsd32.dll MOD - [1998-10-31 05:55:56 | 000,005,120 | ---- | M] () -- C:\Program Files\Vtune\TBMANAGE.DLL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ) SRV - [2012-03-01 01:58:00 | 002,348,352 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService) SRV - [2011-12-24 18:50:18 | 000,652,872 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Anty wirusy\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2011-07-05 15:41:06 | 001,793,712 | ---- | M] (COMODO) [Auto | Running] -- D:\Anty wirusy\COMODO\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2011-06-29 15:59:18 | 000,155,344 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- (Sony Ericsson PCCompanion) SRV - [2011-03-21 11:17:56 | 000,068,928 | ---- | M] (Nalpeiron Ltd.) [Auto | Running] -- C:\WINDOWS\system32\NLSSRV32.EXE -- (nlsX86cc) SRV - [2011-03-21 11:17:44 | 000,196,928 | ---- | M] (Nitro PDF Software) [Auto | Running] -- D:\PDF NITRO\NitroPDFDriverService.exe -- (NitroDriverReadSpool) SRV - [2010-12-03 23:18:16 | 000,867,080 | ---- | M] (Acresso Software Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2010-03-11 15:06:06 | 000,193,824 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2) SRV - [2010-02-19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard) SRV - [2009-12-04 15:53:42 | 000,065,248 | ---- | M] (Greatis Software (c)) [Auto | Stopped] -- C:\Program Files\BootLog XP\BootLogService.exe -- (BootlogService) SRV - [2009-08-24 21:16:36 | 000,406,016 | ---- | M] (mst software GmbH, Germany) [On_Demand | Stopped] -- D:\Dyskowe, Partycje, Odzyskiwanie, Rejestr, Systemowe itp\Dyskowe\Ashampoo HDD Control\DfSdkS.exe -- (DfSdkS) SRV - [2009-02-27 17:04:38 | 000,850,432 | ---- | M] () [Auto | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS) SRV - [2009-02-27 16:42:20 | 000,098,407 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS) SRV - [2009-02-27 16:40:48 | 000,143,467 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS) SRV - [2007-05-28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Disabled | Stopped] -- E:\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE) SRV - [2003-10-17 16:29:02 | 000,176,193 | ---- | M] (Symantec Corporation) [Disabled | Stopped] -- E:\Norton SystemWorks\Norton Utilities\Speed Disk\NOPDB.exe -- (Speed Disk service) SRV - [2003-10-17 16:28:46 | 000,086,016 | ---- | M] (Symantec Corporation) [Auto | Running] -- E:\Norton SystemWorks\Norton Utilities\NPROTECT.EXE -- (NProtectService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2012-01-17 14:45:58 | 000,123,712 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvhda32.sys -- (NVHDA) DRV - [2011-12-31 01:31:50 | 000,015,600 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2011-12-10 16:24:06 | 000,020,464 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector) DRV - [2011-08-30 11:28:46 | 006,435,432 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2011-08-24 14:39:38 | 000,323,816 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2011-07-05 15:41:22 | 000,097,504 | ---- | M] (COMODO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\inspect.sys -- (Inspect) DRV - [2011-07-05 15:41:22 | 000,029,400 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cmdhlp.sys -- (cmdHlp) DRV - [2011-07-05 15:41:21 | 000,242,600 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard) DRV - [2011-07-05 15:41:21 | 000,017,416 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmderd.sys -- (cmderd) DRV - [2011-06-09 22:10:02 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- D:\Anty wirusy\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL) DRV - [2011-06-09 22:10:02 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- D:\Anty wirusy\SUPERAntiSpyware\SASDIFSV.SYS -- (SASDIFSV) DRV - [2011-06-09 22:10:02 | 000,012,872 | ---- | M] ( SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | On_Demand | Stopped] -- D:\Anty wirusy\SUPERAntiSpyware\SASENUM.SYS -- (SASENUM) DRV - [2010-07-07 16:05:32 | 000,014,904 | ---- | M] (Secunia) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\psi_mf.sys -- (PSI) DRV - [2010-07-04 21:51:26 | 000,004,096 | ---- | M] () [Kernel | Unavailable | Unknown] -- D:\Dyskowe, Partycje, Odzyskiwanie, Rejestr, Systemowe itp\INNE\Unlocker\UnlockerDriver5.sys -- (UnlockerDriver5) DRV - [2010-04-09 14:16:50 | 000,016,472 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pwdrvio.sys -- (pwdrvio) DRV - [2010-04-09 14:16:46 | 000,011,104 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pwdspio.sys -- (pwdspio) DRV - [2009-11-18 01:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2009-11-18 01:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2009-03-27 02:16:28 | 000,012,672 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\cpuz132_x32.sys -- (cpuz132) DRV - [2009-01-08 02:20:04 | 000,031,880 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2009-01-07 23:39:36 | 000,020,744 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\BtHidBus.sys -- (BtHidBus) DRV - [2009-01-03 16:40:12 | 000,039,304 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2008-12-07 12:44:54 | 000,030,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btnetBus.sys -- (btnetBUs) DRV - [2008-12-07 12:44:18 | 000,014,088 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT) DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008-05-16 13:33:14 | 000,115,752 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016unic.sys -- (s0016unic) Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM) DRV - [2008-05-16 13:33:14 | 000,025,512 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016nd5.sys -- (s0016nd5) Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS) DRV - [2008-05-16 13:33:14 | 000,015,016 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016mdfl.sys -- (s0016mdfl) DRV - [2008-05-16 13:33:12 | 000,120,744 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016mdm.sys -- (s0016mdm) DRV - [2008-05-16 13:33:12 | 000,114,216 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016mgmt.sys -- (s0016mgmt) Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM) DRV - [2008-05-16 13:33:12 | 000,110,632 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016obex.sys -- (s0016obex) DRV - [2008-05-16 13:33:12 | 000,089,256 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s0016bus.sys -- (s0016bus) Sony Ericsson Device 0016 driver (WDM) DRV - [2008-01-21 19:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2007-11-08 10:29:52 | 000,458,752 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\PAC7302.SYS -- (PAC7302) DRV - [2007-03-16 11:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 11:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Disabled | Stop_Pending] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex) DRV - [2006-11-22 13:41:18 | 000,022,416 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- C:\Program Files\IVT Corporation\BlueSoleil\device\Win2k\BTNetFilter.sys -- (BTNetFilter) DRV - [2003-09-10 04:12:10 | 000,258,476 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NPDRIVER.SYS -- (NPDriver) DRV - [2003-09-10 03:58:16 | 000,090,272 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SdDriver.SYS -- (SDdriver) DRV - [2002-05-31 10:35:02 | 000,076,976 | R--- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\pnp680r.sys -- (Pnp680r) DRV - [1829-12-22 20:42:24 | 000,082,136 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Symantec\SYMEVENT.SYS -- (SymEvent) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\.DEFAULT\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-18\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-789336058-573735546-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = IE - HKU\S-1-5-21-789336058-573735546-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-789336058-573735546-839522115-1003\..\SearchScopes,DefaultScope = {96D02BD7-ACE7-4058-BAC0-A91CE1C89C6E} IE - HKU\S-1-5-21-789336058-573735546-839522115-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\S-1-5-21-789336058-573735546-839522115-1003\..\SearchScopes\{96D02BD7-ACE7-4058-BAC0-A91CE1C89C6E}: "URL" = http://www.google.com/search?hl=pl&q={searchTerms} IE - HKU\S-1-5-21-789336058-573735546-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: D:\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00: C:\Program Files\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.53\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.53\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Documents and Settings\Lesio\Ustawienia lokalne\Dane aplikacji\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\crossriderapp498@crossrider.com: C:\Documents and Settings\Lesio\Ustawienia lokalne\Dane aplikacji\RewardsArcade\498\Firefox [2011-12-23 09:32:35 | 000,000,000 | ---D | M] O1 HOSTS File: ([2012-03-24 13:07:26 | 000,000,686 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\HOSTS O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O4 - HKLM..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [BtTray] C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe () O4 - HKLM..\Run: [COMODO Internet Security] D:\Anty wirusy\COMODO\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] D:\Anty wirusy\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe () O4 - HKLM..\Run: [ProcessGovernor] C:\Program Files\Process Lasso\processgovernor.exe (Bitsum Technologies) O4 - HKLM..\Run: [ProcessLassoManagementConsole] C:\Program Files\Process Lasso\processlasso.exe (Bitsum Technologies) O4 - HKLM..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe (Alcor Micro, Corp.) O4 - HKLM..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [TBPanel] C:\Program Files\VDOTool\TBPanel.exe (Palit Microsystems, Inc.) O4 - HKLM..\Run: [WrtMon.exe] C:\WINDOWS\system32\spool\drivers\w32x86\3\WrtMon.exe () O4 - HKU\S-1-5-21-789336058-573735546-839522115-1003..\Run: [TBPanel] C:\Program Files\Vtune\TBPanel.exe () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-789336058-573735546-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-21-789336058-573735546-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-789336058-573735546-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-21-789336058-573735546-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-789336058-573735546-839522115-1008\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-21-789336058-573735546-839522115-1008\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O15 - HKU\S-1-5-21-789336058-573735546-839522115-1003\..Trusted Domains: facebook.com ([www] http in Zaufane witryny) O15 - HKU\S-1-5-21-789336058-573735546-839522115-1003\..Trusted Domains: skodafelicia.pl ([www] http in Zaufane witryny) O15 - HKU\S-1-5-21-789336058-573735546-839522115-1003\..Trusted Domains: westwars.com ([fb] https in Zaufane witryny) O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7F071722-F946-4E4F-8470-CFC17B64A427}: DhcpNameServer = 192.168.1.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\WINDOWS\system32\skype4com.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-11-21 19:55:57 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2011-05-29 22:02:45 | 000,000,000 | ---D | M] - D:\AUTO DATA -- [ NTFS ] O32 - AutoRun File - [2012-01-01 15:17:11 | 000,000,000 | ---D | M] - E:\AutoCAD 2010 PL -- [ NTFS ] O32 - AutoRun File - [2010-04-30 20:01:32 | 000,000,000 | ---D | M] - E:\AutoCAD RAR -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-03-27 16:11:44 | 000,593,920 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Lesio\Pulpit\OTL.exe [2012-03-26 15:02:06 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Lesio\Recent [2012-03-25 19:17:04 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2012-03-25 19:06:22 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Windows Performance Toolkit [2012-03-25 18:28:54 | 000,000,000 | ---D | C] -- C:\Program Files\BootLog XP [2012-03-25 18:28:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\BootLog XP [2012-03-25 18:28:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lesio\Pulpit\bootlogxp [2012-03-25 15:19:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lesio\Ustawienia lokalne\Dane aplikacji\NPE [2012-03-25 15:19:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton [2012-03-24 13:25:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lesio\Dane aplikacji\WinRAR [2012-03-24 13:05:57 | 000,580,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\user32.dll [2012-03-23 02:01:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ProcessLasso [2012-03-23 02:00:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Process Lasso [2012-03-23 02:00:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lesio\Dane aplikacji\ProcessLasso [2012-03-23 02:00:48 | 000,000,000 | ---D | C] -- C:\Program Files\Process Lasso [2012-03-23 02:00:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lesio\Pulpit\prolasso [2012-03-22 21:30:38 | 000,000,000 | ---D | C] -- C:\TDSSKiller_Quarantine [2012-03-22 21:12:22 | 000,000,000 | ---D | C] -- C:\Program Files\NirSoft [2012-03-22 20:33:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Lesio\DoctorWeb [2012-03-22 20:30:54 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro [2012-03-17 16:37:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\PITy [2012-03-17 16:37:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PITy [2012-03-14 17:48:03 | 000,876,864 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvhdagenco3220103.dll [2012-03-10 13:16:32 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8 [2012-03-10 13:07:33 | 001,510,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shdocvw.dll [2012-03-10 13:07:33 | 001,025,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\browseui.dll [2011-03-12 19:58:54 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Lesio\Dane aplikacji\pcouffin.sys [2010-11-26 23:47:23 | 031,168,236 | ---- | C] (Indigo Rose Corporation http://www.indigorose.com) -- C:\Documents and Settings\Lesio\Dane aplikacji\RescuePRO-Deluxe-4.0_Setup.exe [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-03-27 16:16:00 | 000,000,414 | ---- | M] () -- C:\WINDOWS\tasks\Symantec NetDetect.job [2012-03-27 16:14:00 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-03-27 16:11:46 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Lesio\Pulpit\OTL.exe [2012-03-27 15:07:52 | 000,750,028 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-03-27 15:07:50 | 000,668,206 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-03-27 15:07:50 | 000,168,356 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-03-27 15:07:48 | 000,132,342 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-03-27 15:06:25 | 000,001,082 | ---- | M] () -- C:\WINDOWS\System32\bscs.ini [2012-03-27 15:03:41 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-03-27 15:02:44 | 000,007,398 | ---- | M] () -- C:\WINDOWS\System32\LOCALSERVICE.INI [2012-03-27 15:02:42 | 000,000,107 | ---- | M] () -- C:\WINDOWS\System32\LOCALDEVICE.INI [2012-03-27 15:02:14 | 000,001,030 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-03-27 15:00:47 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-03-27 14:45:04 | 000,001,002 | ---- | M] () -- C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-789336058-573735546-839522115-1003UA.job [2012-03-27 13:55:15 | 094,371,840 | ---- | M] () -- C:\LogFile.Etl [2012-03-27 00:00:02 | 000,000,308 | ---- | M] () -- C:\WINDOWS\tasks\Symantec Drmc.job [2012-03-26 23:45:11 | 000,000,980 | ---- | M] () -- C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-789336058-573735546-839522115-1003Core.job [2012-03-26 22:52:38 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012-03-25 18:28:54 | 000,000,645 | ---- | M] () -- C:\Documents and Settings\Lesio\Pulpit\BootLog XP.lnk [2012-03-25 17:55:49 | 003,598,144 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-03-25 16:11:08 | 000,002,073 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2012-03-25 15:56:07 | 000,000,354 | -HS- | M] () -- C:\boot.ini [2012-03-24 14:06:50 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\Lesio\Pulpit\hc012x3t.exe [2012-03-24 13:07:26 | 000,000,686 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\HOSTS [2012-03-24 13:05:57 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\user32.dll [2012-03-24 02:18:17 | 000,000,183 | ---- | M] () -- C:\Documents and Settings\Lesio\Pulpit\Darmowa Kosmiczna Gra Online.url [2012-03-23 18:36:19 | 000,000,252 | ---- | M] () -- C:\WINDOWS\tasks\Funkcja One Button Checkup pakietu Norton SystemWorks.job [2012-03-22 22:54:45 | 001,529,241 | ---- | M] () -- C:\Documents and Settings\Lesio\Pulpit\SDFix_www.INSTALKI.pl.exe [2012-03-21 19:52:39 | 000,414,368 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-03-14 23:03:07 | 013,651,686 | ---- | M] () -- C:\Documents and Settings\Lesio\Pulpit\PCWFacebook2011.pdf [2012-03-14 17:49:26 | 000,293,992 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2012-03-14 17:49:26 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin [2012-03-14 17:49:17 | 000,293,992 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2012-03-10 12:50:00 | 000,000,374 | ---- | M] () -- C:\Documents and Settings\Lesio\Pulpit\Dodaj lub usuń programy.lnk [2012-03-01 01:58:00 | 018,624,512 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvoglnt.dll [2012-03-01 01:58:00 | 017,534,976 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcompiler.dll [2012-03-01 01:58:00 | 013,417,632 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\dllcache\nv4_mini.sys [2012-03-01 01:58:00 | 005,918,720 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuda.dll [2012-03-01 01:58:00 | 004,309,760 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nv4_disp.dll [2012-03-01 01:58:00 | 002,784,050 | ---- | M] () -- C:\WINDOWS\System32\nvdata.data [2012-03-01 01:58:00 | 002,522,944 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvid.dll [2012-03-01 01:58:00 | 002,437,440 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvenc.dll [2012-03-01 01:58:00 | 002,291,712 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvapi.dll [2012-03-01 01:58:00 | 001,000,256 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco32.dll [2012-03-01 01:58:00 | 000,881,984 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvgenco32.dll [2012-03-01 01:58:00 | 000,065,536 | ---- | M] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll [2012-03-01 01:58:00 | 000,007,843 | ---- | M] () -- C:\WINDOWS\System32\nvinfo.pb [2012-02-29 23:15:40 | 000,335,872 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrshe.dll [2012-02-29 23:15:40 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsja.dll [2012-02-29 23:15:40 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsesm.dll [2012-02-29 23:15:40 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrspl.dll [2012-02-29 23:15:40 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssv.dll [2012-02-29 23:15:39 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrseng.dll [2012-02-29 23:15:39 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrscs.dll [2012-02-29 23:15:38 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsit.dll [2012-02-29 23:15:38 | 000,278,528 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsde.dll [2012-02-29 23:15:38 | 000,270,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsptb.dll [2012-02-29 23:15:38 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssk.dll [2012-02-29 23:15:37 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrspt.dll [2012-02-29 23:15:37 | 000,262,144 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrshu.dll [2012-02-29 23:15:36 | 000,266,240 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsko.dll [2012-02-29 23:15:35 | 000,335,872 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsar.dll [2012-02-29 23:15:35 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrses.dll [2012-02-29 23:15:35 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsnl.dll [2012-02-29 23:15:35 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrstr.dll [2012-02-29 23:15:35 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsth.dll [2012-02-29 23:15:35 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsno.dll [2012-02-29 23:15:34 | 000,286,720 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsfr.dll [2012-02-29 23:15:34 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsel.dll [2012-02-29 23:15:34 | 000,270,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsru.dll [2012-02-29 23:15:34 | 000,229,376 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrszhc.dll [2012-02-29 23:15:33 | 000,126,976 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrszht.dll [2012-02-29 23:15:11 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsda.dll [2012-02-29 23:15:11 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsfi.dll [2012-02-29 23:15:10 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssl.dll [2012-02-29 22:30:31 | 000,054,272 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvwddi.dll [2012-02-29 22:30:24 | 015,494,464 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcpl.dll [2012-02-29 22:30:24 | 000,143,680 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcolor.exe [2012-02-29 22:30:23 | 000,108,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvmctray.dll [2012-02-26 17:55:02 | 000,602,799 | ---- | M] () -- C:\Documents and Settings\Lesio\Pulpit\SPP_A04N60C3_Rev.3.1[1].pdf [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-03-25 18:32:14 | 094,371,840 | ---- | C] () -- C:\LogFile.Etl [2012-03-25 18:28:54 | 000,000,645 | ---- | C] () -- C:\Documents and Settings\Lesio\Pulpit\BootLog XP.lnk [2012-03-24 14:06:50 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\Lesio\Pulpit\hc012x3t.exe [2012-03-22 22:54:43 | 001,529,241 | ---- | C] () -- C:\Documents and Settings\Lesio\Pulpit\SDFix_www.INSTALKI.pl.exe [2012-03-14 23:02:57 | 013,651,686 | ---- | C] () -- C:\Documents and Settings\Lesio\Pulpit\PCWFacebook2011.pdf [2012-03-14 17:47:59 | 000,007,843 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb [2012-02-26 17:55:02 | 000,602,799 | ---- | C] () -- C:\Documents and Settings\Lesio\Pulpit\SPP_A04N60C3_Rev.3.1[1].pdf [2012-02-19 16:31:41 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2012-01-01 15:26:21 | 000,358,882 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-789336058-573735546-839522115-1003-0.dat [2012-01-01 15:26:20 | 000,358,882 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2011-12-31 17:33:28 | 000,081,936 | ---- | C] () -- C:\WINDOWS\System32\RtNicProp32.dll [2011-12-31 17:33:11 | 000,001,769 | ---- | C] () -- C:\WINDOWS\Language_trs.ini [2011-12-31 00:47:35 | 002,784,050 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data [2011-11-01 11:03:25 | 000,000,664 | ---- | C] () -- C:\WINDOWS\unins000.dat [2011-09-19 18:22:39 | 000,001,496 | ---- | C] () -- C:\Documents and Settings\Lesio\Ustawienia lokalne\Dane aplikacji\Adobe Zapisz dla Internetu 12.0 Prefs [2011-09-18 23:24:52 | 000,000,060 | ---- | C] () -- C:\WINDOWS\wpd99.drv [2011-09-18 23:24:51 | 000,051,716 | ---- | C] () -- C:\WINDOWS\System32\pdf995mon.dll [2011-09-14 19:22:23 | 000,000,141 | ---- | C] () -- C:\Documents and Settings\Lesio\Dane aplikacji\history.PowerPoint.pwcdat [2011-09-14 08:13:45 | 000,000,116 | ---- | C] () -- C:\WINDOWS\ConverterCore.INI [2011-09-14 07:58:13 | 000,027,456 | ---- | C] () -- C:\WINDOWS\System32\solidlocalmon.dll [2011-09-14 07:58:13 | 000,018,752 | ---- | C] () -- C:\WINDOWS\System32\solidlocalui.dll [2011-09-13 18:02:23 | 000,001,024 | ---- | C] () -- C:\WINDOWS\System32\encryptpdf.dat [2011-09-12 13:37:44 | 000,001,095 | ---- | C] () -- C:\WINDOWS\APDFPRP.INI [2011-09-12 13:17:20 | 000,000,075 | ---- | C] () -- C:\WINDOWS\winDecrypt.INI [2011-09-01 19:38:31 | 000,001,409 | ---- | C] () -- C:\WINDOWS\System32\SHORTCUT.INI [2011-07-24 21:42:33 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll [2011-07-20 13:52:50 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat [2011-07-13 22:46:39 | 000,074,752 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2011-07-13 00:44:58 | 000,000,114 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\videopack3.key [2011-06-15 21:39:34 | 000,001,650 | ---- | C] () -- C:\WINDOWS\System32\.ini [2011-06-09 20:07:26 | 000,000,504 | ---- | C] () -- C:\WINDOWS\System32\REMOTEDEVICE.INI [2011-06-09 20:06:43 | 000,007,398 | ---- | C] () -- C:\WINDOWS\System32\LOCALSERVICE.INI [2011-06-09 20:06:40 | 000,000,107 | ---- | C] () -- C:\WINDOWS\System32\LOCALDEVICE.INI [2011-06-09 20:04:32 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\BSPRINT.INI [2011-06-07 19:36:26 | 000,000,010 | ---- | C] () -- C:\WINDOWS\popcinfo.dat [2011-06-07 19:18:14 | 000,000,443 | ---- | C] () -- C:\Program Files\nonenone.bat [2011-05-29 21:41:33 | 000,000,004 | ---- | C] () -- C:\WINDOWS\vx86036.dat [2011-05-29 21:38:41 | 000,000,083 | ---- | C] () -- C:\WINDOWS\Crypkey.ini [2011-05-29 21:38:37 | 000,031,846 | ---- | C] () -- C:\WINDOWS\System32\Ckldrv.sys [2011-05-29 21:38:37 | 000,018,432 | ---- | C] () -- C:\WINDOWS\Setup_ck.dll [2011-05-29 21:38:37 | 000,011,776 | ---- | C] () -- C:\WINDOWS\Ckrfresh.exe [2011-05-29 21:38:36 | 000,027,648 | R--- | C] () -- C:\WINDOWS\Setup_ck.exe [2011-05-29 21:22:14 | 000,078,336 | ---- | C] () -- C:\WINDOWS\System32\dbjavio6.dll [2011-05-29 21:22:13 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\dbauth6.dll [2011-05-29 21:22:02 | 000,016,384 | ---- | C] () -- C:\WINDOWS\System32\FileOps.exe [2011-04-19 22:00:28 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2011-04-17 23:24:59 | 000,000,192 | ---- | C] () -- C:\WINDOWS\BsMobileModel.ini [2011-03-26 20:36:20 | 000,002,289 | ---- | C] () -- C:\WINDOWS\UAMedytor.ini [2011-03-26 17:18:03 | 000,002,517 | ---- | C] () -- C:\WINDOWS\excal32.dat [2011-03-12 19:58:55 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Lesio\Dane aplikacji\inst.exe [2011-03-12 19:58:55 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Lesio\Dane aplikacji\pcouffin.cat [2011-03-12 19:58:54 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Lesio\Dane aplikacji\pcouffin.inf [2011-02-22 21:09:01 | 000,000,103 | ---- | C] () -- C:\WINDOWS\pro.INI [2011-02-02 20:30:15 | 000,003,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\port_nt.sys [2011-01-23 18:21:05 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Lesio\Dane aplikacji\chrtmp [2011-01-14 17:27:16 | 000,001,010 | ---- | C] () -- C:\WINDOWS\WINCMD.INI [2011-01-06 21:56:34 | 000,000,000 | ---- | C] () -- C:\WINDOWS\lgfwup.ini [2010-12-11 18:28:14 | 000,000,014 | ---- | C] () -- C:\WINDOWS\System32\nvModes.dat [2010-12-05 00:27:41 | 000,148,195 | ---- | C] () -- C:\Program Files\Common Files\BookViewer.xap [2010-12-01 18:49:45 | 000,000,323 | ---- | C] () -- C:\WINDOWS\System32\Remover.ini [2010-12-01 18:49:41 | 000,000,566 | ---- | C] () -- C:\WINDOWS\System32\SP7302.INI [2010-11-28 21:53:09 | 000,001,178 | ---- | C] () -- C:\WINDOWS\aopr.ini [2010-11-27 18:29:49 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Lesio\Dane aplikacji\$_hpcst$.hpc [2010-11-27 17:38:14 | 001,474,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\sfi.dat [2010-11-27 16:50:08 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys [2010-11-27 13:19:53 | 000,535,624 | ---- | C] () -- C:\WINDOWS\System32\pwNative.exe [2010-11-27 13:19:53 | 000,016,472 | ---- | C] () -- C:\WINDOWS\System32\pwdrvio.sys [2010-11-27 13:19:52 | 000,011,104 | ---- | C] () -- C:\WINDOWS\System32\pwdspio.sys [2010-11-27 13:06:09 | 001,718,912 | ---- | C] () -- C:\WINDOWS\System32\BootMan.exe [2010-11-27 13:06:09 | 000,086,408 | ---- | C] () -- C:\WINDOWS\System32\setupempdrv03.exe [2010-11-27 13:06:09 | 000,014,848 | ---- | C] () -- C:\WINDOWS\System32\EuEpmGdi.dll [2010-11-27 13:06:09 | 000,013,192 | ---- | C] () -- C:\WINDOWS\System32\epmntdrv.sys [2010-11-27 13:06:09 | 000,008,456 | ---- | C] () -- C:\WINDOWS\System32\EuGdiDrv.sys [2010-11-27 02:58:38 | 000,052,600 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat [2010-11-27 02:48:42 | 000,000,038 | ---- | C] () -- C:\WINDOWS\AviSplitter.INI [2010-11-26 21:03:16 | 001,444,096 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-11-26 20:17:16 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\AVSredirect.dll [2010-11-26 19:58:12 | 000,001,057 | ---- | C] () -- C:\Documents and Settings\Lesio\Dane aplikacji\vso_ts_preview.xml [2010-11-26 19:54:34 | 001,003,520 | ---- | C] () -- C:\WINDOWS\System32\ltmm_n.dll [2010-11-26 19:54:34 | 000,000,085 | ---- | C] () -- C:\WINDOWS\System32\buyurl_rm.dat [2010-11-26 19:54:13 | 000,000,034 | ---- | C] () -- C:\WINDOWS\cdplayer.ini [2010-11-25 22:32:15 | 000,111,932 | ---- | C] () -- C:\WINDOWS\System32\EPPICPrinterDB.dat [2010-11-25 22:32:15 | 000,031,053 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern131.dat [2010-11-25 22:32:15 | 000,027,417 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern121.dat [2010-11-25 22:32:15 | 000,026,154 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern1.dat [2010-11-25 22:32:15 | 000,024,903 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern3.dat [2010-11-25 22:32:15 | 000,021,390 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern5.dat [2010-11-25 22:32:15 | 000,020,148 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern2.dat [2010-11-25 22:32:15 | 000,011,811 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern4.dat [2010-11-25 22:32:15 | 000,004,943 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern6.dat [2010-11-25 22:32:15 | 000,001,146 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_DU.dat [2010-11-25 22:32:15 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_PT.dat [2010-11-25 22:32:15 | 000,001,139 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_BP.dat [2010-11-25 22:32:15 | 000,001,136 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_ES.dat [2010-11-25 22:32:15 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_FR.dat [2010-11-25 22:32:15 | 000,001,129 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_CF.dat [2010-11-25 22:32:15 | 000,001,120 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_IT.dat [2010-11-25 22:32:15 | 000,001,107 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_GE.dat [2010-11-25 22:32:15 | 000,001,104 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_EN.dat [2010-11-25 22:32:15 | 000,000,097 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini [2010-11-25 22:25:47 | 000,011,776 | ---- | C] () -- C:\WINDOWS\System32\pmsbfn32.dll [2010-11-25 22:24:02 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI [2010-11-25 21:06:27 | 000,003,584 | ---- | C] () -- C:\WINDOWS\System32\CNCFLdNL.DLL [2010-11-25 20:20:17 | 000,048,351 | ---- | C] () -- C:\WINDOWS\hpiins01.dat [2010-11-25 20:20:17 | 000,000,000 | ---- | C] () -- C:\WINDOWS\hpimdl01.dat [2010-11-25 19:08:08 | 000,033,019 | ---- | C] () -- C:\WINDOWS\System32\CoreAAC-uninstall.exe [2010-11-25 18:20:25 | 000,007,514 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\KGyGaAvL.sys [2010-11-25 18:20:25 | 000,000,088 | RHS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\FA0BB181AF.sys [2010-11-25 01:18:53 | 000,000,145 | ---- | C] () -- C:\Documents and Settings\Lesio\Dane aplikacji\default.rss [2010-11-25 01:15:33 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2010-11-24 21:10:20 | 000,218,624 | ---- | C] () -- C:\Documents and Settings\Lesio\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-11-24 20:21:33 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-11-21 23:32:44 | 000,293,992 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2010-11-21 23:32:43 | 000,293,992 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2010-11-21 23:32:43 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin [2010-11-21 23:32:19 | 002,293,194 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2010-11-21 22:19:31 | 000,000,130 | ---- | C] () -- C:\Documents and Settings\Lesio\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2010-11-21 21:09:24 | 000,000,734 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2010-11-21 20:47:05 | 000,004,477 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2010-11-21 20:45:52 | 003,598,144 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-11-21 20:22:00 | 000,000,558 | ---- | C] () -- C:\WINDOWS\DFC.INI [2010-11-21 20:20:05 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2010-11-21 19:58:17 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-11-21 19:52:54 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [color=#E56717]========== LOP Check ==========[/color] [2011-01-14 17:47:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Anvsoft [2011-06-13 22:09:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Autodesk [2011-09-12 14:55:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AutoUpdate [2010-11-24 22:02:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited [2010-11-25 21:27:01 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-11-28 21:41:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\clone.AD [2010-12-01 10:06:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EA Core [2010-12-01 10:06:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts [2011-07-25 16:47:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Genimo [2010-11-27 15:32:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Golden Bow Systems [2011-05-29 21:34:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\INFO-TECH [2012-02-05 19:24:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\InterAction studios [2011-02-14 22:37:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2011-09-23 19:36:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\iWin Games [2011-07-20 18:15:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MumboJumbo [2011-09-12 11:23:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nitro PDF [2010-11-27 13:16:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Paragon [2012-01-01 15:43:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ParetoLogic [2011-09-18 23:33:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\pdf995 [2012-03-17 16:37:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PITy [2011-07-24 22:37:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PlayFirst [2012-03-23 02:01:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ProcessLasso [2011-09-20 07:21:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\regid.1986-12.com.adobe [2010-11-25 22:23:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2011-01-14 18:19:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Screaming Bee [2010-12-01 09:51:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Solidshield [2010-11-28 20:10:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\STOIK [2010-11-26 23:34:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems [2012-03-25 18:01:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\VSO [2011-01-19 22:30:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\vsosdk [2011-05-29 21:38:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\WorkshopData [2010-11-27 02:51:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2010-12-20 21:26:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gosia\Dane aplikacji\Canon [2011-08-11 22:48:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gosia\Dane aplikacji\Foxit Software [2010-12-01 19:03:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Gosia\Dane aplikacji\Opera [2012-02-05 19:07:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\.zaz [2012-02-05 14:17:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\aignes [2011-09-19 15:42:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\AKVIS LLC [2011-01-14 17:01:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Apetito.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2010-12-03 22:46:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Autodesk [2011-07-13 23:13:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\AVI ReComp [2010-11-24 22:05:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Canneverbe Limited [2010-12-31 17:37:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Canon [2011-04-24 20:49:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2011-08-11 20:18:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\CoSoSys [2011-09-13 08:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Downloaded Installations [2011-12-31 13:05:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\DriverCure [2011-02-26 21:09:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1 [2012-01-01 15:39:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\ElevatedDiagnostics [2011-09-12 14:50:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Eltima Software [2011-05-04 17:38:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Expert PDF Reader [2011-06-03 17:24:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\FixIt [2010-12-11 16:02:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Foxit Software [2011-07-25 16:43:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Genimo [2011-09-12 13:26:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\gtk-2.0 [2010-11-25 19:18:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\gtopala [2011-02-26 00:12:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Hide IP NG [2011-02-26 00:12:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\HideIP [2011-08-13 19:41:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\ImgBurn [2012-02-05 18:33:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Intermedia Software [2011-02-14 22:37:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\ipla [2010-11-25 20:47:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Leadertech [2010-11-26 22:33:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\LEAPS [2010-11-26 20:14:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\mkvtoolnix [2010-11-24 23:50:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\MyPhoneExplorer [2011-06-13 21:35:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\NewSoft [2012-03-17 21:50:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Nitro PDF [2012-03-24 13:50:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Notepad++ [2012-03-27 15:05:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\nView_Wallpaper [2011-06-07 18:47:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Oberon Media [2011-04-27 16:00:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Opanda [2011-09-12 12:55:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\OpenOffice.org [2010-11-25 19:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Opera [2011-06-13 21:44:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Panasonic [2011-12-31 13:05:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\ParetoLogic [2011-09-14 08:38:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Passware [2011-03-11 19:29:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\PE Explorer [2010-11-26 21:30:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Pegasys Inc [2010-11-25 00:21:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\PhotoME [2011-07-24 22:37:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\PlayFirst [2012-03-23 02:02:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\ProcessLasso [2011-02-14 22:16:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\RayV [2011-02-14 22:37:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\RDRM [2012-03-25 15:05:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Registry Booster [2011-09-22 18:28:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Rovio [2010-11-25 22:24:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\ScanSoft [2011-01-14 18:18:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Screaming Bee [2011-07-19 23:10:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\ScreenSeven [2011-09-14 07:54:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Softplicity [2012-02-07 23:49:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\SolidDocuments [2012-02-08 01:19:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Sony [2011-02-22 19:08:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 [2011-01-04 22:36:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Stellarium [2011-02-26 13:56:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Thinstall [2012-02-07 23:29:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Toolbar4 [2010-11-27 00:15:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Uniblue [2011-02-26 15:28:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\uTorrent [2012-03-25 19:18:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Vso [2011-01-14 17:47:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Wedding Album Maker [2011-07-24 22:56:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Wildfire [2010-11-24 19:35:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Lesio\Dane aplikacji\Zoner [2010-11-24 21:15:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Foxit Software [2012-03-26 23:45:11 | 000,000,980 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-789336058-573735546-839522115-1003Core.job [2012-03-27 14:45:04 | 000,001,002 | ---- | M] () -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-789336058-573735546-839522115-1003UA.job [2012-03-23 18:36:19 | 000,000,252 | ---- | M] () -- C:\WINDOWS\Tasks\Funkcja One Button Checkup pakietu Norton SystemWorks.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Files - Unicode (All) ==========[/color] [2011-05-30 19:35:04 | 000,000,000 | ---D | M](C:\WINDOWS\System32\????) -- C:\WINDOWS\System32\–쿣睎 [2011-05-30 19:35:04 | 000,000,000 | ---D | C](C:\WINDOWS\System32\????) -- C:\WINDOWS\System32\–쿣睎 < End of report >