OTL logfile created on: 2012-06-02 06:01:01 - Run 2 OTL by OldTimer - Version 3.2.45.0 Folder = C:\Documents and Settings\Administrator.III-59924FC4392.001\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1023,17 Mb Total Physical Memory | 813,56 Mb Available Physical Memory | 79,51% Memory free 2,41 Gb Paging File | 2,34 Gb Available in Paging File | 97,28% Paging File free Paging file location(s): C:\pagefile.sys 0 0 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 9,83 Gb Free Space | 20,13% Space Free | Partition Type: NTFS Drive F: | 184,05 Gb Total Space | 97,27 Gb Free Space | 52,85% Space Free | Partition Type: NTFS Drive G: | 3,31 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Drive H: | 983,72 Mb Total Space | 723,00 Mb Free Space | 73,50% Space Free | Partition Type: FAT Computer Name: III-59924FC4392 | User Name: Administrator | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== LOP Check ==========[/color] [2006-11-11 22:02:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Freedom Scientific [2006-12-24 19:03:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Hagel Technologies [2012-02-28 01:12:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2011-11-27 13:54:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nokia [2010-08-27 01:06:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NokiaInstallerCache [2006-11-26 18:27:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2011-03-27 05:14:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PreEmptive Solutions [2011-08-13 01:18:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\RDRM [2011-05-13 18:02:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< HKEY_CURRENT_USER\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s >[/color] [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1} /s >[/color] "" = Microsoft WBEM New Event Subsystem [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InprocServer32] "" = \\.\globalroot\systemroot\Installer\{d70e8e4e-90b6-242c-9a93-437377f351cc}\n. "ThreadingModel" = Both [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1} /s >[/color] "" = MruPidlList [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-14 19:20:47 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [color=#A23BEC]< MD5 for: SERVICES.EXE >[/color] [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=02A467E27AF55F7064C5B251E587315F -- C:\WINDOWS\$hf_mig$\KB956572\SP3GDR\services.exe [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=02A467E27AF55F7064C5B251E587315F -- C:\WINDOWS\system32\dllcache\services.exe [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=02A467E27AF55F7064C5B251E587315F -- C:\WINDOWS\system32\services.exe [2009-02-09 11:55:23 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=245A46964D7F534E1D20563ACF215E80 -- C:\WINDOWS\$hf_mig$\KB956572\SP2QFE\services.exe [2006-03-02 14:00:00 | 000,108,544 | ---- | M] (Microsoft Corporation) MD5=3DA8D964D2CC12EF8E8C342471A37917 -- C:\WINDOWS\$NtUninstallKB956572_0$\services.exe [2008-04-14 19:21:39 | 000,109,056 | ---- | M] (Microsoft Corporation) MD5=3E3AE424E27C4CEFE4CAB368C7B570EA -- C:\WINDOWS\$NtUninstallKB956572$\services.exe [2008-04-14 19:21:39 | 000,109,056 | ---- | M] (Microsoft Corporation) MD5=3E3AE424E27C4CEFE4CAB368C7B570EA -- C:\WINDOWS\ServicePackFiles\i386\services.exe [2009-02-09 13:19:03 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=8816E60BF654353E8E0D35ED98875445 -- C:\WINDOWS\$hf_mig$\KB956572\SP3QFE\services.exe [2009-02-09 12:10:45 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=ED4E5391100287B9EABF8F2CF4B42235 -- C:\WINDOWS\$NtServicePackUninstall$\services.exe [2009-02-09 12:10:45 | 000,111,104 | ---- | M] (Microsoft Corporation) MD5=ED4E5391100287B9EABF8F2CF4B42235 -- C:\WINDOWS\ERDNT\cache\services.exe < End of report >