OTL logfile created on: 2012-04-07 11:07:26 - Run 3 OTL by OldTimer - Version 3.2.39.2 Folder = C:\Program Files Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,25 Gb Total Physical Memory | 2,42 Gb Available Physical Memory | 74,64% Memory free 5,09 Gb Paging File | 4,20 Gb Available in Paging File | 82,49% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 24,33 Gb Free Space | 49,84% Space Free | Partition Type: NTFS Drive E: | 86,39 Gb Total Space | 42,69 Gb Free Space | 49,41% Space Free | Partition Type: NTFS Drive G: | 48,83 Gb Total Space | 35,97 Gb Free Space | 73,66% Space Free | Partition Type: NTFS Drive H: | 9,77 Gb Total Space | 6,22 Gb Free Space | 63,68% Space Free | Partition Type: NTFS Drive I: | 90,45 Gb Total Space | 13,19 Gb Free Space | 14,58% Space Free | Partition Type: NTFS Computer Name: PUKOWNIK | User Name: Radek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-04-07 10:25:10 | 014,869,832 | ---- | M] (Photodex Corporation) -- C:\Program Files\Photodex Presenter\pxplay.exe PRC - [2012-03-31 11:32:14 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Program Files\OTL.exe PRC - [2012-01-17 07:18:36 | 000,138,232 | R--- | M] (Symantec Corporation) -- C:\Program Files\Norton Internet Security\Engine\19.6.2.10\ccsvchst.exe PRC - [2009-05-01 15:35:54 | 000,181,544 | ---- | M] (Seagate Technology LLC) -- C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe PRC - [2009-05-01 15:35:10 | 000,185,640 | ---- | M] (Seagate LLC) -- C:\Program Files\Seagate\SeagateManager\FreeAgent Status\stxmenumgr.exe PRC - [2008-08-13 14:34:08 | 001,891,416 | ---- | M] (GARMIN Corp.) -- C:\Garmin\gStart.exe PRC - [2008-04-14 19:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2001-10-26 18:29:52 | 000,024,064 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\devldr32.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2011-10-05 04:52:30 | 000,756,048 | ---- | M] () -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2012-04-03 09:02:09 | 000,253,600 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-01-17 07:18:36 | 000,138,232 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Internet Security\Engine\19.6.2.10\ccSvcHst.exe -- (NIS) SRV - [2009-05-01 15:35:54 | 000,181,544 | ---- | M] (Seagate Technology LLC) [Auto | Running] -- C:\Program Files\Seagate\SeagateManager\Sync\FreeAgentService.exe -- (FreeAgentGoNext Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2012-04-05 13:54:59 | 000,473,656 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2012-03-23 09:52:12 | 000,141,944 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SYMEVENT.SYS -- (SymEvent) DRV - [2012-03-06 17:04:10 | 000,356,280 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20120406.002\IDSXpx86.sys -- (IDSxpx86) DRV - [2012-03-02 20:58:02 | 000,820,856 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20120317.002\BHDrvx86.sys -- (BHDrvx86) DRV - [2012-03-01 12:33:20 | 000,374,392 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl) DRV - [2012-03-01 12:33:20 | 000,106,104 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv) DRV - [2012-01-18 00:46:01 | 000,388,216 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1306020.00A\symtdi.sys -- (SYMTDI) DRV - [2012-01-18 00:45:57 | 000,905,336 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1306020.00A\symefa.sys -- (SymEFA) DRV - [2012-01-18 00:35:24 | 000,149,624 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1306020.00A\ironx86.sys -- (SymIRON) DRV - [2012-01-18 00:33:51 | 000,574,584 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1306020.00A\srtsp.sys -- (SRTSP) DRV - [2012-01-18 00:33:51 | 000,032,888 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1306020.00A\srtspx.sys -- (SRTSPX) Symantec Real Time Storage Protection (PEL) DRV - [2011-12-03 11:00:00 | 001,576,312 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20120406.034\NAVEX15.SYS -- (NAVEX15) DRV - [2011-12-03 11:00:00 | 000,086,136 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20120406.034\NAVENG.SYS -- (NAVENG) DRV - [2011-11-30 00:44:14 | 000,132,744 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\NIS\1306020.00A\ccsetx86.sys -- (ccSet_NIS) DRV - [2011-08-16 08:51:40 | 000,340,088 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\NIS\1306020.00A\symds.sys -- (SymDS) DRV - [2011-07-14 22:18:47 | 000,218,688 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV - [2009-10-27 13:02:14 | 000,023,936 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\motmodem.sys -- (motmodem) DRV - [2008-07-04 08:33:33 | 003,230,720 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2008-04-13 20:45:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2007-11-01 10:56:00 | 000,036,864 | R--- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l151x86.sys -- (AtcL001) DRV - [2007-06-15 09:52:02 | 000,143,256 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\mv61xx.sys -- (mv61xx) DRV - [2004-08-13 20:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor) DRV - [2001-08-17 21:19:34 | 000,036,480 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sfmanm.sys -- (sfman) Sterownik Creative SoundFont Manager (WDM) DRV - [2001-08-17 21:19:28 | 000,006,912 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctlfacem.sys -- (emu10k1) Sterownik Creative Interface Manager (WDM) DRV - [2001-08-17 21:19:26 | 000,283,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emu10k1m.sys -- (emu10k) Creative SB Live! (WDM) DRV - [2001-08-17 21:19:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1708537768-362288127-725345543-1003\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-1708537768-362288127-725345543-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\S-1-5-21-1708537768-362288127-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_228.dll () FF - HKLM\Software\MozillaPlugins\@comarch.com/NOL,version=3.0: C:\Program Files\Common Files\NOL3\npn30plugin.dll (COMARCH S.A.) FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@photodex.com/PhotodexPresenter: C:\Program Files\Photodex Presenter\npPxPlay.dll ( ) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\IPSFFPlgn\ [2012-03-01 12:12:26 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\Documents and Settings\All Users\Dane aplikacji\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\coFFPlgn\ [2012-04-07 10:16:09 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-03-18 12:28:58 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-03-04 19:22:32 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.20\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012-03-16 21:57:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.20\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2012-01-11 09:16:38 | 000,000,000 | ---D | M] [2012-03-04 19:22:31 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Radek\Dane aplikacji\Mozilla\Extensions [2010-09-14 12:08:44 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Radek\Dane aplikacji\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2012-03-31 17:02:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-03-04 22:41:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2012-03-31 17:02:04 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} [2012-03-13 06:38:06 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-03-31 17:01:51 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2007-02-04 23:02:56 | 001,642,496 | ---- | M] (LizardTech) -- C:\Program Files\mozilla firefox\plugins\npdjvu.dll [2009-03-12 12:50:34 | 000,279,888 | ---- | M] (Musicnotes, Inc.) -- C:\Program Files\mozilla firefox\plugins\npmusicn.dll [2010-10-28 10:42:06 | 000,282,624 | ---- | M] (COMARCH S.A.) -- C:\Program Files\mozilla firefox\plugins\npNOL3_ns8_mozilla.dll [2012-03-13 07:36:36 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-03-13 07:36:36 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-03-13 07:36:36 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-03-13 07:36:36 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-03-13 07:36:36 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-03-13 07:36:36 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2012-04-01 17:01:19 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\19.6.2.10\coieplg.dll (Symantec Corporation) O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\19.6.2.10\ips\ipsbho.dll (Symantec Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll File not found O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\19.6.2.10\coieplg.dll (Symantec Corporation) O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKU\S-1-5-21-1708537768-362288127-725345543-1003\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\19.6.2.10\coieplg.dll (Symantec Corporation) O4 - HKLM..\Run: [MaxMenuMgr] C:\Program Files\Seagate\SeagateManager\FreeAgent Status\StxMenuMgr.exe (Seagate LLC) O4 - HKU\S-1-5-21-1708537768-362288127-725345543-1003..\Run: [gStart] C:\Garmin\gStart.exe (GARMIN Corp.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1708537768-362288127-725345543-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-1708537768-362288127-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-1708537768-362288127-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-1708537768-362288127-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O15 - HKU\S-1-5-21-1708537768-362288127-725345543-1003\..Trusted Domains: brebrokers.pl ([www] https in Zaufane witryny) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {92ECE6FA-AC2E-4042-BFAE-0C8608E52A43} https://www.bph.pl/pi/components/bph/SignActivX.cab (SignActivX Control) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CB50428B-657F-47DF-9B32-671F82AA73F7} http://www.photodex.com/pxplay.cab (Photodex Presenter AX control) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.100 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A66D4C40-D46F-4D83-8DA9-0477487D8F1A}: DhcpNameServer = 192.168.1.100 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F5B06370-6DC8-4DA2-AA08-4E56FA76F150}: NameServer = 192.168.11.1 O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop BackupWallPaper: C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-11-26 00:48:58 | 000,000,022 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2008-01-03 22:23:29 | 000,000,022 | ---- | M] () - G:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-04-07 10:25:12 | 000,000,000 | ---D | C] -- C:\Program Files\Photodex Presenter [2012-04-07 10:25:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Radek\Dane aplikacji\Netscape [2012-04-07 10:25:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Photodex [2012-04-06 17:34:56 | 000,000,000 | ---D | C] -- C:\Program Files\wirusy logi [2012-04-06 16:50:30 | 000,000,000 | ---D | C] -- C:\_OTL [2012-04-05 13:54:59 | 000,473,656 | ---- | C] (Duplex Secure Ltd.) -- C:\WINDOWS\System32\drivers\sptd.sys [2012-04-05 13:29:26 | 000,593,920 | ---- | C] (OldTimer Tools) -- C:\Program Files\OTL.com [2012-04-04 10:48:35 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2012-04-03 15:42:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2012-04-03 15:37:26 | 000,301,632 | ---- | C] (Softonic) -- C:\Program Files\SoftonicDownloader_dla_easy-cd-da-extractor.exe [2012-04-03 08:32:52 | 000,418,464 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-04-01 16:55:30 | 000,000,000 | RHSD | C] -- C:\cmdcons [2012-04-01 16:53:20 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2012-04-01 16:53:20 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2012-04-01 16:53:20 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2012-04-01 16:53:20 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2012-04-01 16:53:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT [2012-04-01 16:52:45 | 000,000,000 | ---D | C] -- C:\Qoobox [2012-03-31 22:13:16 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Radek\Recent [2012-03-31 21:38:15 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2012-03-31 21:13:13 | 002,804,712 | ---- | C] (Symantec Corporation) -- C:\Program Files\NPE.exe [2012-03-31 17:08:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2012-03-31 17:02:02 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe [2012-03-31 17:02:02 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe [2012-03-31 17:02:02 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe [2012-03-31 17:02:02 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl [2012-03-31 17:01:44 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2012-03-31 11:32:14 | 000,593,920 | ---- | C] (OldTimer Tools) -- C:\Program Files\OTL.exe [2012-03-25 20:50:29 | 000,106,928 | ---- | C] (GEAR Software Inc.) -- C:\WINDOWS\System32\GEARAspi.dll [2012-03-25 20:50:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NBRTWizard [2012-03-25 20:50:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\NBRTWizard\0405000.022 [2012-03-25 20:50:02 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Bootable Recovery Tool Wizard [2012-03-25 20:50:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Norton Bootable Recovery Tool Wizard [2012-03-25 20:46:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Radek\Menu Start\Programy\Norton [2012-03-25 20:46:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\Norton [2012-03-23 17:51:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\NPE [2012-03-23 15:21:28 | 000,036,864 | R--- | C] (Atheros Communications, Inc.) -- C:\WINDOWS\System32\drivers\l151x86.sys [2012-03-08 11:13:51 | 000,014,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsgXP_2k3.dll [2012-03-08 11:13:38 | 001,112,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfcoinstaller01007.dll [2012-03-08 11:12:59 | 000,000,000 | ---D | C] -- C:\Program Files\Motorola [2012-03-01 12:02:05 | 119,216,008 | ---- | C] (Symantec Corporation) -- C:\Program Files\NIS-ESD-19-5-0-145-EN.exe [2012-01-31 10:41:13 | 160,919,016 | ---- | C] (Kaspersky Lab) -- C:\Program Files\kis12.0.0.374pl_pl.exe [2011-09-23 19:38:48 | 000,604,672 | ---- | C] (Google Inc.) -- C:\Program Files\googleupdatesetup.exe [2011-09-22 12:36:38 | 006,284,664 | ---- | C] (Microsoft Corporation) -- C:\Program Files\Silverlight.exe [2011-08-02 18:29:02 | 010,187,296 | ---- | C] (Mozilla) -- C:\Program Files\Thunderbird Setup 3.1.11.exe [2011-08-02 18:19:12 | 014,793,840 | ---- | C] (Mozilla) -- C:\Program Files\Thunderbird Setup 5.0.exe [2011-05-30 22:56:27 | 000,510,677 | ---- | C] (COMARCH S.A. ) -- C:\Program Files\NOL3SetupALIOR.exe [2011-05-05 09:13:10 | 005,267,187 | ---- | C] (COMARCH S.A. ) -- C:\Program Files\NOL3Setup.exe [2011-01-10 16:04:14 | 005,178,688 | ---- | C] (Igor Pavlov) -- C:\Program Files\WebUpdater_242.exe [2 C:\Documents and Settings\Radek\Pulpit\*.tmp files -> C:\Documents and Settings\Radek\Pulpit\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-04-07 11:02:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-04-07 10:34:01 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-04-07 10:16:37 | 000,002,422 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-04-07 10:16:02 | 000,001,030 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-04-07 10:15:54 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2012-04-07 10:15:44 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-04-07 10:13:56 | 011,796,480 | ---- | M] () -- C:\Documents and Settings\Radek\ntuser.dat [2012-04-07 10:13:56 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Radek\ntuser.ini [2012-04-06 16:50:32 | 001,125,338 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2012-04-06 16:50:32 | 000,503,676 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-04-06 16:50:32 | 000,444,198 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-04-06 16:50:32 | 000,090,766 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-04-06 16:50:32 | 000,072,456 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-04-05 23:29:17 | 000,000,128 | ---- | M] () -- C:\WINDOWS\SYSTEM.ldb [2012-04-05 23:21:55 | 000,131,072 | ---- | M] () -- C:\WINDOWS\SYSTEM.MDA [2012-04-05 23:21:54 | 000,001,072 | ---- | M] () -- C:\WINDOWS\scharts.ini [2012-04-05 23:19:38 | 000,807,486 | ---- | M] () -- C:\Documents and Settings\Radek\Pulpit\dzienniczek biegowy 2011 .rtf [2012-04-05 22:58:52 | 000,002,123 | ---- | M] () -- C:\WINDOWS\ODBC.INI [2012-04-05 13:54:59 | 000,473,656 | ---- | M] (Duplex Secure Ltd.) -- C:\WINDOWS\System32\drivers\sptd.sys [2012-04-05 13:29:28 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Program Files\OTL.com [2012-04-03 15:37:28 | 000,301,632 | ---- | M] (Softonic) -- C:\Program Files\SoftonicDownloader_dla_easy-cd-da-extractor.exe [2012-04-03 09:02:09 | 000,418,464 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-04-03 09:02:08 | 000,070,304 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-04-01 17:01:29 | 000,000,246 | ---- | M] () -- C:\WINDOWS\system.ini [2012-04-01 17:01:19 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2012-04-01 16:55:41 | 000,000,340 | RHS- | M] () -- C:\boot.ini [2012-04-01 12:06:23 | 000,674,121 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1306020.00A\Cat.DB [2012-03-31 21:24:58 | 000,000,224 | ---- | M] () -- C:\Boot.bak [2012-03-31 21:20:29 | 000,582,167 | ---- | M] () -- C:\Program Files\Info20120331211914.xml [2012-03-31 21:13:17 | 002,804,712 | ---- | M] (Symantec Corporation) -- C:\Program Files\NPE.exe [2012-03-31 17:01:50 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deployJava1.dll [2012-03-31 17:01:50 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe [2012-03-31 17:01:50 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe [2012-03-31 17:01:50 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe [2012-03-31 17:01:50 | 000,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl [2012-03-31 16:35:28 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012-03-31 16:35:19 | 000,011,776 | ---- | M] () -- C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-03-31 11:32:14 | 000,593,920 | ---- | M] (OldTimer Tools) -- C:\Program Files\OTL.exe [2012-03-30 00:05:29 | 000,000,641 | ---- | M] () -- C:\WINDOWS\win.ini [2012-03-27 19:35:30 | 000,158,416 | ---- | M] () -- C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2012-03-25 21:06:53 | 000,598,144 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-03-25 20:50:46 | 000,001,186 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Kreator narzędzia Norton Bootable Recovery Tool.LNK [2012-03-25 20:46:05 | 000,000,876 | ---- | M] () -- C:\Documents and Settings\Radek\Pulpit\Norton Installation Files.lnk [2012-03-23 15:13:31 | 000,008,727 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1306020.00A\VT20120301.009 [2012-03-23 15:02:29 | 000,001,973 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Norton Internet Security.LNK [2012-03-23 09:52:12 | 000,141,944 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\drivers\SYMEVENT.SYS [2012-03-23 09:52:12 | 000,060,872 | ---- | M] (Symantec Corporation) -- C:\WINDOWS\System32\S32EVNT1.DLL [2012-03-23 09:52:12 | 000,007,468 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.CAT [2012-03-23 09:52:12 | 000,000,805 | ---- | M] () -- C:\WINDOWS\System32\drivers\SYMEVENT.INF [2012-03-21 21:33:38 | 000,002,265 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2012-03-20 06:26:35 | 000,000,172 | ---- | M] () -- C:\WINDOWS\System32\drivers\NIS\1306020.00A\isolate.ini [2012-03-18 12:28:59 | 000,000,724 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2012-03-08 11:14:00 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_motmodem_01007.Wdf [2012-03-08 11:13:58 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf [2 C:\Documents and Settings\Radek\Pulpit\*.tmp files -> C:\Documents and Settings\Radek\Pulpit\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-04-03 08:32:53 | 000,000,930 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-04-01 16:55:41 | 000,000,224 | ---- | C] () -- C:\Boot.bak [2012-04-01 16:55:37 | 000,262,400 | RHS- | C] () -- C:\cmldr [2012-04-01 16:53:20 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2012-04-01 16:53:20 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2012-04-01 16:53:20 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2012-04-01 16:53:20 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2012-04-01 16:53:20 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2012-03-31 21:20:28 | 000,582,167 | ---- | C] () -- C:\Program Files\Info20120331211914.xml [2012-03-25 20:50:46 | 000,001,186 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Kreator narzędzia Norton Bootable Recovery Tool.LNK [2012-03-25 20:50:05 | 000,000,172 | ---- | C] () -- C:\WINDOWS\System32\drivers\NBRTWizard\0405000.022\isolate.ini [2012-03-25 20:46:03 | 000,000,876 | ---- | C] () -- C:\Documents and Settings\Radek\Pulpit\Norton Installation Files.lnk [2012-03-18 12:28:59 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk [2012-03-18 12:28:59 | 000,000,724 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2012-03-08 11:14:00 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_motmodem_01007.Wdf [2012-03-08 11:13:58 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf [2012-02-15 09:35:07 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2012-01-31 10:46:45 | 000,017,408 | ---- | C] () -- C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\WebpageIcons.db [2012-01-10 23:50:45 | 000,000,665 | ---- | C] () -- C:\WINDOWS\tstation.ini [2011-12-31 21:58:25 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-07-14 22:29:08 | 000,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2011-07-14 22:28:51 | 000,103,736 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2011-07-14 22:28:50 | 000,066,872 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2011-07-14 22:28:44 | 000,000,300 | ---- | C] () -- C:\WINDOWS\game.ini [2010-11-04 10:17:29 | 136,171,008 | ---- | C] () -- C:\Program Files\OOo_3.2.1_Win_x86_install_pl.exe [2010-06-25 22:21:20 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2010-05-12 00:30:28 | 000,000,065 | ---- | C] () -- C:\WINDOWS\Kit.ini [color=#E56717]========== LOP Check ==========[/color] [2009-07-29 13:45:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AlawarWrapper [2012-03-04 22:41:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Avanquest [2012-02-02 23:10:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon [2011-07-21 10:47:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software [2011-07-14 22:18:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2012-04-04 09:33:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Easy CD-DA Extractor [2010-12-14 19:26:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2009-04-04 09:24:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GARMIN [2010-04-14 12:49:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Musicnotes [2012-04-07 10:25:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Photodex [2009-12-20 10:23:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Seagate [2012-02-16 22:52:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SecTaskMan [2012-04-04 09:31:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-12-25 17:31:06 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{26D901A1-2540-4430-81DC-0317F01BD7BE} [2010-12-25 17:30:33 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{A84BE500-B487-4D79-98E9-179AA3D88CAB} [2012-02-02 23:10:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\Babylon [2009-07-29 14:32:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\BeachPartyCraze [2009-07-26 22:33:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\BESTplayer [2008-12-07 22:30:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\Gadu-Gadu [2010-12-15 00:31:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\Gadu-Gadu 10 [2010-10-15 19:08:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\GARMIN [2010-10-17 15:04:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\ImgBurn [2009-12-20 10:11:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\Leadertech [2012-04-07 10:25:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\Netscape [2010-11-04 10:23:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\OpenOffice.org [2012-02-02 23:10:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\SumatraPDF [2010-09-14 12:08:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\Thunderbird [2012-03-04 22:41:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Radek\Dane aplikacji\TS3Client [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 143 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DE406C3E < End of report >