OTL logfile created on: 2010-10-04 09:48:01 - Run 1 OTL by OldTimer - Version 3.2.10.0 Folder = C:\Users\Karol\Downloads Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 022,00 Mb Total Physical Memory | 509,00 Mb Available Physical Memory | 50,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 75,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 234,37 Gb Total Space | 163,85 Gb Free Space | 69,91% Space Free | Partition Type: NTFS Drive D: | 63,62 Gb Total Space | 63,53 Gb Free Space | 99,86% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: KAROL-KOMPUTER Current User Name: Karol Logged in as Administrator. Current Boot Mode: SafeMode with Networking Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2010-10-04 09:47:24 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Karol\Downloads\OTL.exe PRC - [2010-09-16 18:42:51 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2009-10-31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-10-04 09:47:24 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Karol\Downloads\OTL.exe MOD - [2009-07-14 03:16:15 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sspicli.dll MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sechost.dll MOD - [2009-07-14 03:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samcli.dll MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\profapi.dll MOD - [2009-07-14 03:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netutils.dll MOD - [2009-07-14 03:15:35 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\KernelBase.dll MOD - [2009-07-14 03:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\devobj.dll MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cryptbase.dll MOD - [2009-07-14 03:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cfgmgr32.dll MOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx MOD - [2009-07-14 03:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-09-13 10:11:00 | 000,202,048 | ---- | M] (Panda Security, S.L.) [Auto | Stopped] -- C:\Program Files\Panda Security\Panda Internet Security 2011\PavFnSvr.exe -- (PAVFNSVR) SRV - [2010-09-04 09:13:44 | 001,343,400 | ---- | M] () [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2010-08-16 14:54:45 | 000,028,992 | ---- | M] (Panda Security, S.L.) [Auto | Stopped] -- C:\Program Files\Panda Security\Panda Internet Security 2011\PskSvc.exe -- (PskSvcRetail) SRV - [2010-07-09 16:09:52 | 000,248,936 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2010-07-04 19:07:40 | 000,238,952 | ---- | M] (Teruten) [Auto | Stopped] -- C:\Windows\System32\FsUsbExService.Exe -- (FsUsbExService) SRV - [2010-06-21 17:02:03 | 000,157,504 | ---- | M] (Panda Security, S.L.) [Auto | Stopped] -- C:\Program Files\Panda Security\Panda Internet Security 2011\TPSrv.exe -- (TPSrv) SRV - [2010-06-04 10:37:50 | 000,314,176 | ---- | M] (Panda Security, S.L.) [Auto | Stopped] -- C:\Program Files\Panda Security\Panda Internet Security 2011\pavsrvx86.exe -- (PAVSRV) SRV - [2010-05-14 14:11:08 | 000,066,048 | ---- | M] (PostgreSQL Global Development Group) [Auto | Stopped] -- C:\Program Files\PostgreSQL\8.4\bin\pg_ctl.exe -- (postgresql-8.4) SRV - [2009-11-26 17:03:56 | 000,226,560 | ---- | M] (Panda Security International) [Auto | Stopped] -- c:\program files\panda security\panda internet security 2011\firewall\PSHOST.EXE -- (PSHost) SRV - [2009-08-10 14:46:08 | 000,173,312 | ---- | M] (Panda Security, S.L.) [Auto | Stopped] -- C:\Program Files\Panda Security\Panda Internet Security 2011\PsCtrls.exe -- (Panda Software Controller) SRV - [2009-07-14 03:16:21 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wwansvc.dll -- (WwanSvc) SRV - [2009-07-14 03:16:17 | 000,151,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wbiosrvc.dll -- (WbioSrvc) SRV - [2009-07-14 03:16:17 | 000,119,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpo.dll -- (Power) SRV - [2009-07-14 03:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\themeservice.dll -- (Themes) SRV - [2009-07-14 03:16:15 | 000,053,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sppuinotify.dll -- (sppuinotify) SRV - [2009-07-14 03:16:13 | 000,043,520 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\RpcEpMap.dll -- (RpcEptMapper) SRV - [2009-07-14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 03:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (PNRPsvc) SRV - [2009-07-14 03:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (p2pimsvc) SRV - [2009-07-14 03:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\provsvc.dll -- (HomeGroupProvider) SRV - [2009-07-14 03:16:12 | 000,020,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpauto.dll -- (PNRPAutoReg) SRV - [2009-07-14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009-07-14 03:15:36 | 000,194,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\ListSvc.dll -- (HomeGroupListener) SRV - [2009-07-14 03:15:21 | 000,797,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2009-07-14 03:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp) SRV - [2009-07-14 03:15:10 | 000,218,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\defragsvc.dll -- (defragsvc) SRV - [2009-07-14 03:14:59 | 000,076,800 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\bdesvc.dll -- (BDESVC) SRV - [2009-07-14 03:14:58 | 000,088,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\AxInstSv.dll -- (AxInstSV) Instalator formantów ActiveX (AxInstSV) SRV - [2009-07-14 03:14:53 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appidsvc.dll -- (AppIDSvc) SRV - [2009-07-14 03:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sppsvc.exe -- (sppsvc) SRV - [2008-06-19 12:59:50 | 000,108,288 | ---- | M] (Panda Security S.L.) [Auto | Stopped] -- C:\Program Files\Panda Security\Panda Internet Security 2011\PsImSvc.exe -- (PSIMSVC) SRV - [2008-02-04 17:26:48 | 000,062,768 | ---- | M] (Panda Security, S.L.) [Auto | Stopped] -- C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe -- (PavPrSrv) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\PavTPK.sys -- (PavTPK.sys) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\PavSRK.sys -- (PavSRK.sys) DRV - [2010-10-04 09:31:16 | 000,105,088 | ---- | M] (Panda Security, S.L.) [File_System | On_Demand | Stopped] -- C:\Windows\system32\drivers\av5flt.sys -- (AvFlt) DRV - [2010-09-04 18:07:22 | 000,013,880 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\COMFiltr.sys -- (ComFiltr) DRV - [2010-07-10 00:37:00 | 011,008,040 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2010-06-22 18:13:00 | 000,026,696 | ---- | M] (Panda Security, S.L.) [File_System | Boot | Stopped] -- C:\Windows\system32\Drivers\pavboot.sys -- (pavboot) DRV - [2010-06-14 09:32:54 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2010-05-21 13:50:40 | 000,054,344 | ---- | M] (Panda Security, S.L.) [File_System | Auto | Stopped] -- C:\Windows\System32\drivers\amm8660.sys -- (AmFSM) DRV - [2010-04-27 04:25:16 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2010-04-27 04:25:16 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM) DRV - [2010-04-27 04:25:16 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter) DRV - [2010-02-18 19:31:20 | 000,199,688 | ---- | M] (Panda Security, S.L.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\neti1642.sys -- (NETIMFLT01060042) DRV - [2010-02-18 19:31:18 | 000,076,296 | ---- | M] (Panda Security, S.L.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\APPFLT.SYS -- (APPFLT) DRV - [2010-01-01 19:20:34 | 000,026,024 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\ElbyCDIO.sys -- (ElbyCDIO) DRV - [2009-12-11 09:44:02 | 000,133,720 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\ksecpkg.sys -- (KSecPkg) DRV - [2009-10-27 12:07:42 | 000,037,896 | ---- | M] (Panda Security, S.L.) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\ShlDrv51.sys -- (ShldDrv) DRV - [2009-09-25 14:54:08 | 000,046,856 | ---- | M] (Panda Security, S.L.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\wnmflt.sys -- (WNMFLT) DRV - [2009-09-25 14:54:06 | 000,159,112 | ---- | M] (Panda Security, S.L.) [TDI Layer] [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\NETFLTDI.SYS -- (NETFLTDI) DRV - [2009-09-25 14:54:04 | 000,193,800 | ---- | M] (Panda Security, S.L.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\idsflt.sys -- (IDSFLT) DRV - [2009-09-25 14:54:04 | 000,022,024 | ---- | M] (Panda Security, S.L.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\fnetmon.sys -- (FNETMON) DRV - [2009-09-25 14:54:02 | 000,053,256 | ---- | M] (Panda Security, S.L.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\dsaflt.sys -- (DSAFLT) DRV - [2009-09-14 16:18:22 | 000,163,336 | ---- | M] (Panda Security, S.L.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\PavProc.sys -- (PavProc) DRV - [2009-08-09 23:25:56 | 000,029,696 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VClone.sys -- (VClone) DRV - [2009-07-14 03:26:21 | 000,015,952 | ---- | M] (CMD Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\cmdide.sys -- (cmdide) DRV - [2009-07-14 03:26:17 | 000,297,552 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpahci.sys -- (adpahci) DRV - [2009-07-14 03:26:15 | 000,422,976 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adp94xx.sys -- (adp94xx) DRV - [2009-07-14 03:26:15 | 000,159,312 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsbs.sys -- (amdsbs) DRV - [2009-07-14 03:26:15 | 000,146,512 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpu320.sys -- (adpu320) DRV - [2009-07-14 03:26:15 | 000,086,608 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arcsas.sys -- (arcsas) DRV - [2009-07-14 03:26:15 | 000,079,952 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsata.sys -- (amdsata) DRV - [2009-07-14 03:26:15 | 000,076,368 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arc.sys -- (arc) DRV - [2009-07-14 03:26:15 | 000,023,616 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\amdxata.sys -- (amdxata) DRV - [2009-07-14 03:26:15 | 000,014,400 | ---- | M] (Acer Laboratories Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\aliide.sys -- (aliide) DRV - [2009-07-14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvstor.sys -- (nvstor) DRV - [2009-07-14 03:20:44 | 000,117,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvraid.sys -- (nvraid) DRV - [2009-07-14 03:20:44 | 000,044,624 | ---- | M] (IBM Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nfrd960.sys -- (nfrd960) DRV - [2009-07-14 03:20:37 | 000,089,168 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas.sys -- (LSI_SAS) DRV - [2009-07-14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iaStorV.sys -- (iaStorV) DRV - [2009-07-14 03:20:36 | 000,235,584 | ---- | M] (LSI Corporation, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MegaSR.sys -- (MegaSR) DRV - [2009-07-14 03:20:36 | 000,096,848 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_scsi.sys -- (LSI_SCSI) DRV - [2009-07-14 03:20:36 | 000,095,824 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_fc.sys -- (LSI_FC) DRV - [2009-07-14 03:20:36 | 000,054,864 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas2.sys -- (LSI_SAS2) DRV - [2009-07-14 03:20:36 | 000,041,040 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iirsp.sys -- (iirsp) DRV - [2009-07-14 03:20:36 | 000,030,800 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\megasas.sys -- (megasas) DRV - [2009-07-14 03:20:36 | 000,013,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\hwpolicy.sys -- (hwpolicy) DRV - [2009-07-14 03:20:28 | 000,453,712 | ---- | M] (Emulex) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\elxstor.sys -- (elxstor) DRV - [2009-07-14 03:20:28 | 000,070,720 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\djsvs.sys -- (aic78xx) DRV - [2009-07-14 03:20:28 | 000,067,152 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HpSAMD.sys -- (HpSAMD) DRV - [2009-07-14 03:20:28 | 000,046,160 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\fsdepends.sys -- (FsDepends) DRV - [2009-07-14 03:19:11 | 000,141,904 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vsmraid.sys -- (vsmraid) DRV - [2009-07-14 03:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus) DRV - [2009-07-14 03:19:10 | 000,159,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vhdmp.sys -- (vhdmp) DRV - [2009-07-14 03:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt) DRV - [2009-07-14 03:19:10 | 000,032,832 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vdrvroot.sys -- (vdrvroot) DRV - [2009-07-14 03:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc) DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\wimmount.sys -- (WIMMount) DRV - [2009-07-14 03:19:10 | 000,016,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\viaide.sys -- (viaide) DRV - [2009-07-14 03:19:04 | 001,383,488 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql2300.sys -- (ql2300) DRV - [2009-07-14 03:19:04 | 000,173,648 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\rdyboost.sys -- (rdyboost) DRV - [2009-07-14 03:19:04 | 000,106,064 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql40xx.sys -- (ql40xx) DRV - [2009-07-14 03:19:04 | 000,077,888 | ---- | M] (Silicon Integrated Systems) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\sisraid4.sys -- (SiSRaid4) DRV - [2009-07-14 03:19:04 | 000,043,088 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\pcw.sys -- (pcw) DRV - [2009-07-14 03:19:04 | 000,040,016 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\SiSRaid2.sys -- (SiSRaid2) DRV - [2009-07-14 03:19:04 | 000,021,072 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\stexstor.sys -- (stexstor) DRV - [2009-07-14 03:17:54 | 000,369,568 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\cng.sys -- (CNG) DRV - [2009-07-14 02:57:25 | 000,272,128 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\Brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2009-07-14 02:02:41 | 000,018,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\rdpbus.sys -- (rdpbus) DRV - [2009-07-14 02:01:41 | 000,007,168 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\RDPREFMP.sys -- (RDPREFMP) DRV - [2009-07-14 01:55:00 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2) DRV - [2009-07-14 01:53:51 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\wfplwf.sys -- (WfpLwf) DRV - [2009-07-14 01:52:44 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ndiscap.sys -- (NdisCap) DRV - [2009-07-14 01:52:02 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vwifibus.sys -- (vwifibus) DRV - [2009-07-14 01:52:00 | 000,163,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\1394ohci.sys -- (1394ohci) DRV - [2009-07-14 01:51:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\umpass.sys -- (UmPass) DRV - [2009-07-14 01:51:08 | 000,004,096 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mshidkmdf.sys -- (mshidkmdf) DRV - [2009-07-14 01:46:55 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MTConfig.sys -- (MTConfig) DRV - [2009-07-14 01:45:26 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CompositeBus.sys -- (CompositeBus) DRV - [2009-07-14 01:36:52 | 000,050,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\appid.sys -- (AppID) DRV - [2009-07-14 01:33:50 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\System32\drivers\scfilter.sys -- (scfilter) DRV - [2009-07-14 01:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap) DRV - [2009-07-14 01:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID) DRV - [2009-07-14 01:24:05 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\discache.sys -- (discache) DRV - [2009-07-14 01:19:21 | 000,021,504 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HidBatt.sys -- (HidBatt) DRV - [2009-07-14 01:16:36 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\acpipmi.sys -- (AcpiPmi) DRV - [2009-07-14 01:11:04 | 000,052,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdppm.sys -- (AmdPPM) DRV - [2009-07-14 00:54:14 | 000,026,624 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\hcw85cir.sys -- (hcw85cir) DRV - [2009-07-14 00:53:33 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbMdm.sys -- (BrUsbMdm) DRV - [2009-07-14 00:53:33 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbSer.sys -- (BrUsbSer) DRV - [2009-07-14 00:53:32 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrSerWdm.sys -- (BrSerWdm) DRV - [2009-07-14 00:53:28 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltLo.sys -- (BrFiltLo) DRV - [2009-07-14 00:53:28 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltUp.sys -- (BrFiltUp) DRV - [2009-07-14 00:02:52 | 000,139,776 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rt86win7.sys -- (RTL8167) DRV - [2009-07-14 00:02:49 | 000,229,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\b57nd60x.sys -- (b57nd60x) DRV - [2009-07-14 00:02:48 | 003,100,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\evbdx.sys -- (ebdrv) DRV - [2009-07-14 00:02:48 | 000,430,080 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\bxvbdx.sys -- (b06bdrv) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-4094099733-1258137772-2997927172-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.onet.pl/#" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2.2 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.1.31 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: smartwebprinting@hp.com:4.5 FF - HKLM\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-09-13 19:51:04 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-09-17 00:52:42 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.10\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-09-16 18:42:53 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.4\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2010-09-21 19:26:31 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.4\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2010-09-03 22:10:05 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\mozilla\Extensions [2010-09-03 22:10:05 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Karol\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2010-10-04 09:43:55 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\mozilla\Firefox\Profiles\m2ht14t3.default\extensions [2010-09-17 17:30:18 | 000,000,000 | ---D | M] (FlashGot) -- C:\Users\Karol\AppData\Roaming\mozilla\Firefox\Profiles\m2ht14t3.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34} [2010-09-03 21:58:13 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Karol\AppData\Roaming\mozilla\Firefox\Profiles\m2ht14t3.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-10-04 09:43:55 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-09-05 15:19:46 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-09-08 15:30:05 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-07-17 05:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2010-07-23 02:41:44 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-07-23 02:41:44 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-07-23 02:41:44 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-07-23 02:41:44 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-07-23 02:41:44 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-07-23 02:41:44 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) O2 - BHO: (IeMonitorBho Class) - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll (Megaupload Limited) O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) O4 - HKLM..\Run: [APVXDWIN] C:\Program Files\Panda Security\Panda Internet Security 2011\APVXDWIN.EXE (Panda Security, S.L.) O4 - HKLM..\Run: [NPSStartup] File not found O4 - HKLM..\Run: [SCANINICIO] C:\Program Files\Panda Security\Panda Internet Security 2011\Inicio.exe (Panda Security, S.L.) O4 - HKU\S-1-5-21-4094099733-1258137772-2997927172-1001..\Run: [Gadu-Gadu 10] C:\Program Files\Gadu-Gadu 10\gg.exe (GG Network S.A.) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - Startup: C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O9 - Extra Button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe (PokerStars) O9 - Extra Button: Pokaż lub ukryj HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.63 192.168.0.1 O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - Winlogon\Notify\avldr: DllName - avldr.dll - C:\Windows\System32\avldr.dll (On-Access Anti-Malware Scanner Sync) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{0287fef0-bbf6-11df-9eb1-001a4d4f7383}\Shell - "" = AutoRun O33 - MountPoints2\{0287fef0-bbf6-11df-9eb1-001a4d4f7383}\Shell\AutoRun\command - "" = F:\Setup.exe -- File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010-10-03 21:05:01 | 000,105,088 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\av5flt.sys [2010-10-03 20:45:35 | 000,000,000 | ---D | C] -- C:\Avenger [2010-10-03 20:04:40 | 000,000,000 | ---D | C] -- C:\Program Files\F-Group [2010-09-26 14:40:08 | 000,000,000 | ---D | C] -- C:\Program Files\AviSubtitler [2010-09-26 13:44:30 | 000,000,000 | ---D | C] -- C:\Windows\temp [2010-09-26 13:37:51 | 000,000,000 | ---D | C] -- C:\Qoobox [2010-09-21 16:55:59 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\Tibia [2010-09-21 16:55:12 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia [2010-09-19 19:49:03 | 000,000,000 | ---D | C] -- C:\Windows\Sun [2010-09-19 15:35:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR [2010-09-19 15:34:00 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\P5 [2010-09-18 13:52:03 | 000,000,000 | ---D | C] -- C:\RedKings [2010-09-17 01:04:05 | 000,000,000 | ---D | C] -- C:\Program Files\Damian Pasternak [2010-09-15 21:52:51 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\OpenOffice.org [2010-09-15 21:50:42 | 000,000,000 | ---D | C] -- C:\Program Files\OpenOffice.org 3 [2010-09-15 21:49:38 | 000,000,000 | ---D | C] -- C:\Users\Karol\Desktop\OpenOffice.org 3.2 (pl) Installation Files [2010-09-14 19:46:12 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\ElevatedDiagnostics [2010-09-14 18:28:21 | 000,000,000 | ---D | C] -- C:\HMArchive [2010-09-14 18:28:20 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\In The Money [2010-09-14 18:28:10 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\IsolatedStorage [2010-09-14 18:28:08 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\HEM Data [2010-09-14 17:49:48 | 000,000,000 | ---D | C] -- C:\Program Files\PostgreSQL [2010-09-14 17:47:26 | 000,000,000 | ---D | C] -- C:\Program Files\RVG Software [2010-09-14 17:46:42 | 000,000,000 | ---D | C] -- C:\Program Files\PSQLINSTALL [2010-09-13 19:53:06 | 000,000,000 | ---D | C] -- C:\ProgramData\WEBREG [2010-09-13 19:53:06 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\HP [2010-09-13 19:52:49 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\HP [2010-09-13 19:49:49 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Product Assistant [2010-09-13 19:48:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\HP [2010-09-13 19:48:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Hewlett-Packard [2010-09-13 19:46:49 | 000,712,704 | ---- | C] (Hewlett-Packard) -- C:\Windows\System32\hposwia_d02c.dll [2010-09-13 19:46:49 | 000,589,824 | ---- | C] (Hewlett-Packard Co.) -- C:\Windows\System32\hpost_d02c.dll [2010-09-13 19:46:49 | 000,315,392 | ---- | C] (Hewlett-Packard Co.) -- C:\Windows\System32\hposc_d02a.dll [2010-09-13 19:46:44 | 000,372,736 | ---- | C] (Hewlett-Packard) -- C:\Windows\System32\hppldcoi.dll [2010-09-13 19:46:39 | 000,452,408 | ---- | C] (Hewlett-Packard) -- C:\Windows\System32\hpzids01.dll [2010-09-13 19:46:35 | 000,123,904 | ---- | C] (Hewlett-Packard Company) -- C:\Windows\System32\hpf3l70v.dll [2010-09-13 19:46:05 | 000,000,000 | ---D | C] -- C:\Config.Msi [2010-09-13 19:44:52 | 000,000,000 | ---D | C] -- C:\Program Files\HP [2010-09-13 19:43:41 | 000,000,000 | ---D | C] -- C:\ProgramData\HP [2010-09-13 00:38:11 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\FullTiltPoker [2010-09-13 00:24:09 | 000,000,000 | ---D | C] -- C:\Program Files\Full Tilt Poker [2010-09-12 12:20:20 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0 [2010-09-11 18:15:32 | 000,000,000 | ---D | C] -- C:\Users\Karol\Documents\My Art [2010-09-11 18:03:36 | 000,123,648 | ---- | C] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bmdm.sys [2010-09-11 18:03:36 | 000,014,848 | ---- | C] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bmdfl.sys [2010-09-11 18:03:36 | 000,012,416 | ---- | C] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bcmnt.sys [2010-09-11 18:03:36 | 000,012,416 | ---- | C] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bcm.sys [2010-09-11 18:03:36 | 000,012,288 | ---- | C] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bwhnt.sys [2010-09-11 18:03:36 | 000,012,288 | ---- | C] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bwh.sys [2010-09-11 18:03:35 | 000,098,432 | ---- | C] (MCCI) -- C:\Windows\System32\drivers\ss_bbus.sys [2010-09-11 18:03:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung [2010-09-11 18:02:26 | 000,238,952 | ---- | C] (Teruten) -- C:\Windows\System32\FsUsbExService.Exe [2010-09-11 18:02:05 | 000,000,000 | ---D | C] -- C:\Users\Karol\Documents\My NPS Files [2010-09-11 18:02:04 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\Samsung [2010-09-11 18:01:54 | 000,000,000 | ---D | C] -- C:\Users\Karol\Documents\Samsung [2010-09-11 18:01:14 | 000,000,000 | ---D | C] -- C:\Program Files\MarkAny [2010-09-11 18:00:57 | 000,000,000 | ---D | C] -- C:\Program Files\Samsung [2010-09-11 17:59:42 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\Downloaded Installations [2010-09-10 18:47:50 | 000,000,000 | ---D | C] -- C:\Program Files\SopCast [2010-09-09 14:03:34 | 000,000,000 | ---D | C] -- C:\Program Files\LucasArts [2010-09-09 13:55:22 | 000,000,000 | ---D | C] -- C:\Program Files\Elaborate Bytes [2010-09-08 15:30:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2010-09-08 15:30:04 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe [2010-09-08 15:30:04 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe [2010-09-08 15:30:04 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe [2010-09-07 20:22:18 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\DisplayTune [2010-09-07 20:20:59 | 000,000,000 | ---D | C] -- C:\Panda Software [2010-09-07 20:19:37 | 000,487,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\msvcp70.dll [2010-09-07 20:19:37 | 000,344,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\msvcr70.dll [2010-09-07 20:19:36 | 001,392,671 | ---- | C] (Microsoft Corporation) -- C:\Windows\msvbvm60.dll [2010-09-07 20:11:05 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA [2010-09-07 20:09:51 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation [2010-09-07 20:09:41 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2010-09-07 20:08:29 | 014,092,904 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll [2010-09-07 20:08:29 | 011,008,040 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys [2010-09-07 20:08:29 | 005,107,816 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvwgf2um.dll [2010-09-07 20:08:29 | 000,795,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpinst.exe [2010-09-07 20:08:29 | 000,314,984 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdecodemft.dll [2010-09-07 20:08:29 | 000,056,936 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll [2010-09-07 20:08:29 | 000,010,920 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd [2010-09-07 20:08:27 | 010,267,240 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll [2010-09-07 20:08:27 | 004,553,832 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll [2010-09-07 20:08:27 | 002,892,904 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll [2010-09-07 20:08:27 | 002,506,344 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll [2010-09-07 20:08:27 | 000,236,136 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod1922.dll [2010-09-07 20:08:27 | 000,236,136 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcod.dll [2010-09-07 20:08:25 | 001,625,192 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll [2010-09-07 20:08:21 | 000,000,000 | ---D | C] -- C:\NVIDIA [2010-09-07 19:58:25 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\SecondLife [2010-09-07 19:58:25 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\SecondLife [2010-09-07 19:57:52 | 000,000,000 | ---D | C] -- C:\Program Files\SecondLifeViewer2 [2010-09-06 17:54:36 | 000,000,000 | ---D | C] -- C:\Program Files\NAPI-PROJEKT [2010-09-06 14:17:00 | 000,000,000 | ---D | C] -- C:\Program Files\JDownloader [2010-09-06 14:02:25 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip [2010-09-05 15:26:04 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\Media Player Classic [2010-09-05 15:19:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun [2010-09-05 15:19:55 | 000,000,000 | ---D | C] -- C:\Program Files\RapidShareManager [2010-09-05 15:19:43 | 000,423,656 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\deployJava1.dll [2010-09-05 15:19:29 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2010-09-05 14:11:44 | 000,000,000 | ---D | C] -- C:\Users\Karol\Documents\My Downloads [2010-09-05 14:10:12 | 000,000,000 | ---D | C] -- C:\Program Files\Megaupload [2010-09-04 21:40:29 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\foobar2000 [2010-09-04 21:40:12 | 000,000,000 | ---D | C] -- C:\Program Files\foobar2000 [2010-09-04 19:41:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Boss Media [2010-09-04 19:41:34 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\Boss Media [2010-09-04 19:41:30 | 000,000,000 | ---D | C] -- C:\Program Files\ParadisePoker [2010-09-04 19:36:51 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\PokerStars [2010-09-04 19:35:08 | 000,000,000 | ---D | C] -- C:\Program Files\PokerStars [2010-09-04 18:08:59 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Local\Panda Security [2010-09-04 18:07:05 | 000,193,800 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\idsflt.sys [2010-09-04 18:07:05 | 000,053,256 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\dsaflt.sys [2010-09-04 18:07:05 | 000,046,856 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\wnmflt.sys [2010-09-04 18:06:55 | 000,159,112 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\NETFLTDI.SYS [2010-09-04 18:06:55 | 000,076,296 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\APPFLT.SYS [2010-09-04 18:06:55 | 000,022,024 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\fnetmon.sys [2010-09-04 18:06:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Backup [2010-09-04 18:06:52 | 000,026,696 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\pavboot.sys [2010-09-04 18:06:51 | 000,499,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSVCP71.DLL [2010-09-04 18:06:45 | 000,054,832 | ---- | C] (Panda Software) -- C:\Windows\System32\pavcpl.cpl [2010-09-04 18:06:38 | 000,446,464 | ---- | C] (eHelp Corporation.) -- C:\Windows\System32\HHActiveX.dll [2010-09-04 18:06:37 | 000,518,400 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\PavSHook.dll [2010-09-04 18:06:37 | 000,193,792 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\TpUtil.dll [2010-09-04 18:06:37 | 000,107,568 | ---- | C] (Panda Software) -- C:\Windows\System32\SYSTOOLS.DLL [2010-09-04 18:06:37 | 000,087,296 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\PavLspHook.dll [2010-09-04 18:06:37 | 000,055,552 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\pavipc.dll [2010-09-04 18:06:36 | 000,199,688 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\neti1642.sys [2010-09-04 18:06:35 | 000,055,552 | ---- | C] (On-Access Anti-Malware Scanner Sync) -- C:\Windows\System32\avldr.dll [2010-09-04 18:06:35 | 000,054,344 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\amm8660.sys [2010-09-04 18:06:35 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010-09-04 18:06:35 | 000,000,000 | ---D | C] -- C:\Windows\System32\PAV [2010-09-04 18:06:35 | 000,000,000 | ---D | C] -- C:\Users\Karol\AppData\Roaming\Panda Security [2010-09-04 18:06:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Panda Security [2010-09-04 18:06:35 | 000,000,000 | ---D | C] -- C:\Program Files\Panda Security [2010-09-04 18:06:14 | 000,163,336 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\PavProc.sys [2010-09-04 18:06:14 | 000,037,896 | ---- | C] (Panda Security, S.L.) -- C:\Windows\System32\drivers\ShlDrv51.sys [2010-09-04 18:04:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010-09-04 18:04:44 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Panda Security [2010-09-04 13:11:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\Wat [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010-10-04 09:49:08 | 001,572,864 | -HS- | M] () -- C:\Users\Karol\ntuser.dat [2010-10-04 09:42:28 | 000,000,252 | ---- | M] () -- C:\Windows\tasks\elbyExecuteWithUAC.job [2010-10-04 09:33:11 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010-10-04 09:33:10 | 804,118,528 | -HS- | M] () -- C:\hiberfil.sys [2010-10-04 09:33:07 | 000,000,068 | ---- | M] () -- C:\Windows\System32\drivers\etc\NetFlt.cfg [2010-10-04 09:31:24 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010-10-04 09:31:16 | 000,105,088 | ---- | M] (Panda Security, S.L.) -- C:\Windows\System32\drivers\av5flt.sys [2010-10-04 09:12:45 | 000,000,068 | ---- | M] () -- C:\Windows\System32\drivers\etc\NetFlt.cfg.bck [2010-10-04 09:11:56 | 000,000,152 | ---- | M] () -- C:\Windows\System32\drivers\etc\NetAdapt.cfg [2010-10-03 18:19:14 | 000,524,288 | -HS- | M] () -- C:\Users\Karol\ntuser.dat{4b224de3-cf07-11df-86f3-b28d6a91cecf}.TMContainer00000000000000000002.regtrans-ms [2010-10-03 18:19:14 | 000,524,288 | -HS- | M] () -- C:\Users\Karol\ntuser.dat{4b224de3-cf07-11df-86f3-b28d6a91cecf}.TMContainer00000000000000000001.regtrans-ms [2010-10-03 18:19:14 | 000,065,536 | -HS- | M] () -- C:\Users\Karol\ntuser.dat{4b224de3-cf07-11df-86f3-b28d6a91cecf}.TM.blf [2010-10-03 17:35:45 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempQl2792.html [2010-10-03 17:35:45 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempbW2792.html [2010-10-03 17:35:45 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempQg2792.html [2010-10-03 17:35:45 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempmg2792.html [2010-10-03 14:38:09 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempSd2408.html [2010-10-03 14:38:09 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempcT2408.html [2010-10-03 04:05:05 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempKD2552.html [2010-10-03 04:05:02 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempOu2552.html [2010-10-02 17:57:11 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempvq3016.html [2010-10-02 17:57:11 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempqB3016.html [2010-10-02 17:57:11 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempIX3016.html [2010-10-02 17:57:11 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempIB3016.html [2010-10-02 15:00:58 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempae2544.html [2010-10-02 15:00:58 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempHW2544.html [2010-10-02 02:13:02 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempfX2268.html [2010-10-02 02:13:02 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempfW2268.html [2010-10-01 21:59:12 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempVV2268.html [2010-10-01 13:45:26 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempJK2268.html [2010-10-01 07:11:03 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempYu3720.html [2010-10-01 07:11:03 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempDg3720.html [2010-10-01 06:44:25 | 000,009,808 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2010-10-01 06:44:25 | 000,009,808 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2010-10-01 02:50:35 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempMR2664.html [2010-10-01 02:50:35 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempVZ2664.html [2010-10-01 02:30:51 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempoL2664.html [2010-09-30 20:09:56 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempRu3888.html [2010-09-30 20:09:56 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempGy3888.html [2010-09-30 16:16:16 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempbq3888.html [2010-09-30 02:55:14 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempgB3524.html [2010-09-30 02:55:14 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempmx3524.html [2010-09-29 22:58:00 | 000,000,152 | ---- | M] () -- C:\Windows\System32\drivers\etc\NetAdapt.cfg.bck [2010-09-29 17:45:32 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempVJ3524.html [2010-09-29 12:09:42 | 001,523,412 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2010-09-29 12:09:42 | 000,687,590 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2010-09-29 12:09:42 | 000,606,992 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2010-09-29 12:09:42 | 000,131,176 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2010-09-29 12:09:42 | 000,103,370 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2010-09-29 12:05:59 | 000,418,468 | ---- | M] () -- C:\Windows\System32\drivers\etc\DsaFlt.rls.bck [2010-09-29 12:05:59 | 000,418,468 | ---- | M] () -- C:\Windows\System32\drivers\etc\DsaFlt.rls [2010-09-29 12:05:59 | 000,001,132 | ---- | M] () -- C:\Windows\System32\drivers\APPFLTR.CFG.bck [2010-09-29 12:05:59 | 000,001,132 | ---- | M] () -- C:\Windows\System32\drivers\APPFLTR.CFG [2010-09-29 12:05:59 | 000,000,252 | ---- | M] () -- C:\Windows\System32\drivers\etc\IdsFlt.cfg.bck [2010-09-29 12:05:59 | 000,000,252 | ---- | M] () -- C:\Windows\System32\drivers\etc\IdsFlt.cfg [2010-09-29 12:05:59 | 000,000,104 | ---- | M] () -- C:\Windows\System32\drivers\etc\NetLoc.wlt.bck [2010-09-29 12:05:59 | 000,000,104 | ---- | M] () -- C:\Windows\System32\drivers\etc\NetLoc.wlt [2010-09-29 12:05:59 | 000,000,056 | ---- | M] () -- C:\Windows\System32\drivers\etc\WnmFlt.cfg.bck [2010-09-29 12:05:59 | 000,000,056 | ---- | M] () -- C:\Windows\System32\drivers\etc\WnmFlt.cfg [2010-09-29 12:05:59 | 000,000,056 | ---- | M] () -- C:\Windows\System32\drivers\etc\DsaFlt.cfg.bck [2010-09-29 12:05:59 | 000,000,056 | ---- | M] () -- C:\Windows\System32\drivers\etc\DsaFlt.cfg [2010-09-29 12:03:34 | 000,000,068 | ---- | M] () -- C:\Windows\System32\drivers\etc\NetAR.wlt.bck [2010-09-29 12:03:34 | 000,000,068 | ---- | M] () -- C:\Windows\System32\drivers\etc\NetAR.wlt [2010-09-29 04:48:03 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempRu1388.html [2010-09-29 04:48:03 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempHX1388.html [2010-09-28 20:43:32 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempWS7708.html [2010-09-28 20:43:32 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemplO7708.html [2010-09-28 17:48:39 | 000,008,627 | ---- | M] () -- C:\Windows\System32\PAV_FOG.OPC [2010-09-28 14:27:29 | 000,257,816 | ---- | M] () -- C:\Windows\System32\drivers\APPFCONT.DAT.bck [2010-09-28 14:27:29 | 000,257,816 | ---- | M] () -- C:\Windows\System32\drivers\APPFCONT.DAT [2010-09-28 14:23:54 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempFI2148.html [2010-09-28 14:23:54 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempkN2148.html [2010-09-28 01:49:33 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempsN3168.html [2010-09-28 01:49:33 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempUj3168.html [2010-09-27 23:05:12 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Templg3220.html [2010-09-27 23:05:12 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempSX3220.html [2010-09-27 18:22:21 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempXp3760.html [2010-09-27 18:22:21 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempEc3760.html [2010-09-27 03:24:37 | 000,524,288 | -HS- | M] () -- C:\Users\Karol\ntuser.dat{7e436ae4-c964-11df-8241-dee906d0e0cf}.TMContainer00000000000000000002.regtrans-ms [2010-09-27 03:24:37 | 000,524,288 | -HS- | M] () -- C:\Users\Karol\ntuser.dat{7e436ae4-c964-11df-8241-dee906d0e0cf}.TMContainer00000000000000000001.regtrans-ms [2010-09-27 03:24:37 | 000,065,536 | -HS- | M] () -- C:\Users\Karol\ntuser.dat{7e436ae4-c964-11df-8241-dee906d0e0cf}.TM.blf [2010-09-27 03:24:26 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempYN3972.html [2010-09-27 03:24:26 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempHH3972.html [2010-09-26 14:40:10 | 000,000,957 | ---- | M] () -- C:\Users\Public\Desktop\AviSubtitler.lnk [2010-09-26 14:23:36 | 000,003,584 | ---- | M] () -- C:\Users\Karol\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-09-26 12:03:19 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempEI2908.html [2010-09-26 12:03:19 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempFm2908.html [2010-09-26 03:42:12 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempto2268.html [2010-09-26 03:42:12 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempqz2268.html [2010-09-25 08:51:11 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempJL3108.html [2010-09-25 08:51:11 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempUG3108.html [2010-09-25 02:59:06 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemplW4064.html [2010-09-25 02:59:06 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempMX4064.html [2010-09-24 04:13:16 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempwr2628.html [2010-09-24 04:13:16 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempWZ2628.html [2010-09-23 04:50:10 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempjv3820.html [2010-09-23 04:50:10 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempAU3820.html [2010-09-22 03:16:24 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempas4956.html [2010-09-22 03:16:24 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempTF4956.html [2010-09-21 16:55:13 | 000,000,925 | ---- | M] () -- C:\Users\Public\Desktop\Tibia.lnk [2010-09-21 14:21:22 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempXt2188.html [2010-09-21 07:44:37 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempOP4052.html [2010-09-21 07:44:37 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempUE4052.html [2010-09-21 07:02:59 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempIY4052.html [2010-09-21 01:24:58 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempZD2404.html [2010-09-21 01:24:58 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempOb2404.html [2010-09-20 22:09:26 | 000,014,665 | ---- | M] () -- C:\Users\Karol\Documents\zgoda.odt [2010-09-20 20:44:30 | 000,001,241 | ---- | M] () -- C:\Users\Karol\Documents\skrzynki.rtf [2010-09-20 17:18:42 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempdL2844.html [2010-09-20 17:18:42 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemppN2844.html [2010-09-20 01:29:29 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempBE1712.html [2010-09-20 01:29:29 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempvD1712.html [2010-09-19 18:22:49 | 000,000,953 | ---- | M] () -- C:\Users\Karol\Desktop\SopCast.lnk [2010-09-19 05:49:57 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempMk4024.html [2010-09-19 05:49:57 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempZK4024.html [2010-09-19 05:32:50 | 000,000,388 | ---- | M] () -- C:\Users\Karol\Documents\Dokument.rtf [2010-09-18 13:52:04 | 000,001,482 | ---- | M] () -- C:\Users\Public\Desktop\RedKings Poker.lnk [2010-09-18 08:44:36 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempof3352.html [2010-09-18 08:44:36 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempfg3352.html [2010-09-18 08:44:12 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempMH3352.html [2010-09-18 02:06:18 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempgZ2220.html [2010-09-18 02:06:18 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemppD2220.html [2010-09-18 02:06:12 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempwN2220.html [2010-09-18 00:50:22 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempRr2252.html [2010-09-18 00:50:22 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempKY2252.html [2010-09-18 00:50:22 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempuK2252.html [2010-09-18 00:50:21 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempTl2252.html [2010-09-17 01:17:00 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempGw7492.html [2010-09-17 01:17:00 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempiB7492.html [2010-09-17 01:16:49 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempMv7492.html [2010-09-17 01:04:05 | 000,001,154 | ---- | M] () -- C:\Users\Public\Desktop\CWK.lnk [2010-09-17 01:01:53 | 000,064,512 | ---- | M] () -- C:\Users\Karol\AppData\Local\GDIPFONTCACHEV1.DAT [2010-09-16 19:49:03 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempfP7492.html [2010-09-16 14:03:04 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempAO3976.html [2010-09-16 12:00:11 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempPR3532.html [2010-09-16 09:51:25 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempQh3532.html [2010-09-15 22:58:07 | 000,289,752 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2010-09-15 22:56:12 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempYB1128.html [2010-09-15 22:56:12 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemppA1128.html [2010-09-15 21:53:56 | 000,001,197 | ---- | M] () -- C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2010-09-15 21:51:35 | 000,001,116 | ---- | M] () -- C:\Users\Public\Desktop\OpenOffice.org 3.2.lnk [2010-09-15 12:30:00 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempOP1128.html [2010-09-15 01:54:52 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempvQ3008.html [2010-09-15 01:54:52 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempRX3008.html [2010-09-14 19:42:12 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemptM2056.html [2010-09-14 19:42:12 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempOv2056.html [2010-09-14 18:46:52 | 000,000,000 | ---- | M] () -- C:\Windows\HMHud.INI [2010-09-14 18:33:26 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempTN2272.html [2010-09-14 18:33:26 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempFe2272.html [2010-09-14 18:05:13 | 000,001,984 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk [2010-09-14 17:47:37 | 000,001,195 | ---- | M] () -- C:\Users\Public\Desktop\HoldemManager.lnk [2010-09-14 02:25:55 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempBI2272.html [2010-09-14 02:18:14 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempVH2272.html [2010-09-13 19:59:23 | 001,209,323 | ---- | M] () -- C:\Users\Karol\504318070910_faktura.prn [2010-09-13 19:52:59 | 000,172,498 | ---- | M] () -- C:\Windows\hpoins44.dat [2010-09-13 19:52:51 | 000,000,495 | ---- | M] () -- C:\Windows\win.ini [2010-09-13 19:50:10 | 000,001,187 | ---- | M] () -- C:\Users\Public\Desktop\Zakup materiałów eksploatacyjnych HP.lnk [2010-09-13 19:49:46 | 000,001,351 | ---- | M] () -- C:\Users\Public\Desktop\Centrum obsługi HP.lnk [2010-09-13 19:49:09 | 000,002,069 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2010-09-13 19:48:14 | 000,002,264 | ---- | M] () -- C:\Users\Public\Desktop\Galeria Fotografii Usługi Windows Live.lnk [2010-09-13 19:18:27 | 000,339,579 | ---- | M] () -- C:\Users\Karol\Documents\upc.xps [2010-09-13 00:24:27 | 000,001,025 | ---- | M] () -- C:\Users\Public\Desktop\Full Tilt Poker.lnk [2010-09-12 18:30:48 | 000,017,499 | ---- | M] () -- C:\Users\Karol\Desktop\amdadRodger_72.jpg [2010-09-12 12:19:56 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemprM2552.html [2010-09-12 12:19:56 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempnh2552.html [2010-09-12 01:48:36 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempxJ1176.html [2010-09-12 01:48:36 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempjs1176.html [2010-09-11 18:04:14 | 000,002,092 | ---- | M] () -- C:\Users\Public\Desktop\Samsung New PC Studio.lnk [2010-09-11 01:26:17 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempQs3100.html [2010-09-11 01:26:17 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempfg3100.html [2010-09-10 01:26:31 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempqc3048.html [2010-09-09 23:08:47 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempyo6120.html [2010-09-09 23:08:47 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemplA6120.html [2010-09-09 19:47:12 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempTH3332.html [2010-09-09 14:10:12 | 000,001,982 | ---- | M] () -- C:\Users\Karol\Desktop\Star Wars Knights of the Old Republic.lnk [2010-09-09 13:57:52 | 000,000,085 | -HS- | M] () -- C:\ProgramData\.zreglib [2010-09-09 13:55:25 | 000,001,161 | ---- | M] () -- C:\Users\Public\Desktop\CloneDVD2.lnk [2010-09-09 02:51:46 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempzm3832.html [2010-09-08 12:51:29 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempIf3520.html [2010-09-08 12:51:29 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempkI3520.html [2010-09-08 12:51:19 | 000,409,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\systemcpl.dll [2010-09-08 12:51:19 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\slwga.dll [2010-09-08 01:27:40 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempLU2180.html [2010-09-08 01:27:40 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempjp2180.html [2010-09-07 20:26:19 | 000,000,075 | ---- | M] () -- C:\ProgramData\nvUnsupRes.dat [2010-09-07 20:20:39 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempwY4084.html [2010-09-07 20:20:39 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempKM4084.html [2010-09-07 20:11:47 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempFs3460.html [2010-09-07 19:58:20 | 000,001,094 | ---- | M] () -- C:\Users\Public\Desktop\Second Life Viewer 2.lnk [2010-09-07 03:49:35 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempeA3240.html [2010-09-07 03:49:35 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempHZ3240.html [2010-09-06 17:54:36 | 000,000,949 | ---- | M] () -- C:\Users\Karol\Desktop\NapiProjekt.lnk [2010-09-06 14:17:42 | 000,000,995 | ---- | M] () -- C:\Users\Public\Desktop\JDownloader.lnk [2010-09-06 02:22:02 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempYUZ360.html [2010-09-06 02:22:02 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempjvE360.html [2010-09-05 15:19:57 | 000,001,053 | ---- | M] () -- C:\Users\Karol\Desktop\RapidShare Manager.lnk [2010-09-05 14:11:06 | 000,001,977 | ---- | M] () -- C:\Users\Public\Desktop\Mega Manager.lnk [2010-09-05 00:45:16 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\Tempkv2332.html [2010-09-05 00:45:16 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempWI2332.html [2010-09-04 21:40:17 | 000,000,993 | ---- | M] () -- C:\Users\Public\Desktop\foobar2000.lnk [2010-09-04 19:41:32 | 000,000,985 | ---- | M] () -- C:\Users\Karol\Desktop\ParadisePoker.lnk [2010-09-04 19:35:14 | 000,001,023 | ---- | M] () -- C:\Users\Public\Desktop\PokerStars.lnk [2010-09-04 18:07:42 | 000,002,432 | ---- | M] () -- C:\Users\Karol\AppData\Local\TempTV2152.html [2010-09-04 18:07:42 | 000,002,089 | ---- | M] () -- C:\Users\Karol\AppData\Local\TemptM2152.html [2010-09-04 18:07:22 | 000,013,880 | ---- | M] () -- C:\Windows\System32\drivers\COMFiltr.sys [2010-09-04 18:07:13 | 000,000,262 | ---- | M] () -- C:\Windows\System32\PavCPL.dat [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-10-04 09:42:28 | 000,000,252 | ---- | C] () -- C:\Windows\tasks\elbyExecuteWithUAC.job [2010-10-03 18:19:14 | 000,524,288 | -HS- | C] () -- C:\Users\Karol\ntuser.dat{4b224de3-cf07-11df-86f3-b28d6a91cecf}.TMContainer00000000000000000002.regtrans-ms [2010-10-03 18:19:14 | 000,524,288 | -HS- | C] () -- C:\Users\Karol\ntuser.dat{4b224de3-cf07-11df-86f3-b28d6a91cecf}.TMContainer00000000000000000001.regtrans-ms [2010-10-03 18:19:14 | 000,065,536 | -HS- | C] () -- C:\Users\Karol\ntuser.dat{4b224de3-cf07-11df-86f3-b28d6a91cecf}.TM.blf [2010-10-03 17:12:20 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempbW2792.html [2010-10-03 17:12:20 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempQg2792.html [2010-10-03 17:12:10 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempQl2792.html [2010-10-03 17:12:10 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempmg2792.html [2010-10-03 11:50:18 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempSd2408.html [2010-10-03 11:50:18 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempcT2408.html [2010-10-03 03:59:27 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempKD2552.html [2010-10-03 03:50:11 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempOu2552.html [2010-10-02 17:07:32 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempqB3016.html [2010-10-02 17:07:32 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempIB3016.html [2010-10-02 17:07:21 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempvq3016.html [2010-10-02 17:07:21 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempIX3016.html [2010-10-02 12:56:13 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempae2544.html [2010-10-02 12:56:13 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempHW2544.html [2010-10-01 20:45:51 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempVV2268.html [2010-10-01 12:20:10 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempJK2268.html [2010-10-01 12:19:56 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempfX2268.html [2010-10-01 12:19:56 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempfW2268.html [2010-10-01 06:44:06 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempYu3720.html [2010-10-01 06:44:06 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempDg3720.html [2010-10-01 02:29:12 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempoL2664.html [2010-09-30 20:41:40 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempMR2664.html [2010-09-30 20:41:40 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempVZ2664.html [2010-09-30 12:38:13 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempbq3888.html [2010-09-30 12:38:00 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempRu3888.html [2010-09-30 12:38:00 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempGy3888.html [2010-09-29 12:21:48 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempVJ3524.html [2010-09-29 12:03:54 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempgB3524.html [2010-09-29 12:03:54 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempmx3524.html [2010-09-28 22:38:28 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempRu1388.html [2010-09-28 22:38:28 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempHX1388.html [2010-09-28 16:10:05 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempWS7708.html [2010-09-28 16:10:05 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemplO7708.html [2010-09-28 11:33:49 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempFI2148.html [2010-09-28 11:33:49 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempkN2148.html [2010-09-28 00:26:47 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempsN3168.html [2010-09-28 00:26:47 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempUj3168.html [2010-09-27 19:41:26 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Templg3220.html [2010-09-27 19:41:26 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempSX3220.html [2010-09-27 11:49:47 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempEc3760.html [2010-09-27 11:49:46 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempXp3760.html [2010-09-26 14:40:10 | 000,000,957 | ---- | C] () -- C:\Users\Public\Desktop\AviSubtitler.lnk [2010-09-26 14:23:36 | 000,003,584 | ---- | C] () -- C:\Users\Karol\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-09-26 13:56:34 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempYN3972.html [2010-09-26 13:56:34 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempHH3972.html [2010-09-26 13:55:51 | 000,524,288 | -HS- | C] () -- C:\Users\Karol\ntuser.dat{7e436ae4-c964-11df-8241-dee906d0e0cf}.TMContainer00000000000000000002.regtrans-ms [2010-09-26 13:55:50 | 000,524,288 | -HS- | C] () -- C:\Users\Karol\ntuser.dat{7e436ae4-c964-11df-8241-dee906d0e0cf}.TMContainer00000000000000000001.regtrans-ms [2010-09-26 13:55:50 | 000,065,536 | -HS- | C] () -- C:\Users\Karol\ntuser.dat{7e436ae4-c964-11df-8241-dee906d0e0cf}.TM.blf [2010-09-26 12:03:19 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempEI2908.html [2010-09-26 12:03:19 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempFm2908.html [2010-09-25 11:57:15 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempto2268.html [2010-09-25 11:57:15 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempqz2268.html [2010-09-25 08:17:48 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempJL3108.html [2010-09-25 08:17:48 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempUG3108.html [2010-09-24 11:47:09 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemplW4064.html [2010-09-24 11:47:09 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempMX4064.html [2010-09-23 09:57:03 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempwr2628.html [2010-09-23 09:57:03 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempWZ2628.html [2010-09-22 12:11:59 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempjv3820.html [2010-09-22 12:11:59 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempAU3820.html [2010-09-21 16:55:13 | 000,000,925 | ---- | C] () -- C:\Users\Public\Desktop\Tibia.lnk [2010-09-21 14:59:55 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempas4956.html [2010-09-21 14:59:55 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempTF4956.html [2010-09-21 12:25:43 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempXt2188.html [2010-09-21 07:02:36 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempIY4052.html [2010-09-21 07:01:47 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempOP4052.html [2010-09-21 07:01:47 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempUE4052.html [2010-09-20 22:09:24 | 000,014,665 | ---- | C] () -- C:\Users\Karol\Documents\zgoda.odt [2010-09-20 20:44:29 | 000,001,241 | ---- | C] () -- C:\Users\Karol\Documents\skrzynki.rtf [2010-09-20 19:05:52 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempZD2404.html [2010-09-20 19:05:52 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempOb2404.html [2010-09-20 12:29:10 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempdL2844.html [2010-09-20 12:29:10 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemppN2844.html [2010-09-19 13:32:04 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempBE1712.html [2010-09-19 13:32:04 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempvD1712.html [2010-09-19 05:32:50 | 000,000,388 | ---- | C] () -- C:\Users\Karol\Documents\Dokument.rtf [2010-09-18 13:52:04 | 000,001,482 | ---- | C] () -- C:\Users\Public\Desktop\RedKings Poker.lnk [2010-09-18 12:41:41 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempMk4024.html [2010-09-18 12:41:41 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempZK4024.html [2010-09-18 08:16:56 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempof3352.html [2010-09-18 08:16:56 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempfg3352.html [2010-09-18 08:16:48 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempMH3352.html [2010-09-18 01:34:03 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempwN2220.html [2010-09-18 01:33:57 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempgZ2220.html [2010-09-18 01:33:57 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemppD2220.html [2010-09-17 20:07:04 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempKY2252.html [2010-09-17 20:07:04 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempuK2252.html [2010-09-17 06:25:19 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempRr2252.html [2010-09-17 06:25:19 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempTl2252.html [2010-09-17 01:04:05 | 000,001,154 | ---- | C] () -- C:\Users\Public\Desktop\CWK.lnk [2010-09-16 19:50:03 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempMv7492.html [2010-09-16 18:42:15 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempfP7492.html [2010-09-16 18:42:08 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempGw7492.html [2010-09-16 18:42:08 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempiB7492.html [2010-09-16 14:01:39 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempAO3976.html [2010-09-16 05:06:58 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempQh3532.html [2010-09-15 22:59:25 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempPR3532.html [2010-09-15 21:53:56 | 000,001,197 | ---- | C] () -- C:\Users\Karol\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2010-09-15 21:51:35 | 000,001,116 | ---- | C] () -- C:\Users\Public\Desktop\OpenOffice.org 3.2.lnk [2010-09-15 11:57:32 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempOP1128.html [2010-09-15 11:37:04 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempYB1128.html [2010-09-15 11:37:04 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemppA1128.html [2010-09-14 19:45:04 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempvQ3008.html [2010-09-14 19:45:04 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempRX3008.html [2010-09-14 18:46:52 | 000,000,000 | ---- | C] () -- C:\Windows\HMHud.INI [2010-09-14 18:36:00 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemptM2056.html [2010-09-14 18:36:00 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempOv2056.html [2010-09-14 17:47:37 | 000,001,195 | ---- | C] () -- C:\Users\Public\Desktop\HoldemManager.lnk [2010-09-14 02:25:39 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempBI2272.html [2010-09-14 00:43:20 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempVH2272.html [2010-09-13 19:59:11 | 001,209,323 | ---- | C] () -- C:\Users\Karol\504318070910_faktura.prn [2010-09-13 19:50:09 | 000,001,187 | ---- | C] () -- C:\Users\Public\Desktop\Zakup materiałów eksploatacyjnych HP.lnk [2010-09-13 19:49:45 | 000,001,351 | ---- | C] () -- C:\Users\Public\Desktop\Centrum obsługi HP.lnk [2010-09-13 19:49:09 | 000,002,069 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2010-09-13 19:48:14 | 000,002,264 | ---- | C] () -- C:\Users\Public\Desktop\Galeria Fotografii Usługi Windows Live.lnk [2010-09-13 19:45:33 | 000,172,498 | ---- | C] () -- C:\Windows\hpoins44.dat [2010-09-13 19:45:33 | 000,000,586 | ---- | C] () -- C:\Windows\hpomdl44.dat [2010-09-13 19:43:54 | 000,002,222 | ---- | C] () -- C:\ProgramData\hpzinstall.log [2010-09-13 19:16:46 | 000,339,579 | ---- | C] () -- C:\Users\Karol\Documents\upc.xps [2010-09-13 00:24:26 | 000,001,025 | ---- | C] () -- C:\Users\Public\Desktop\Full Tilt Poker.lnk [2010-09-12 18:30:38 | 000,017,499 | ---- | C] () -- C:\Users\Karol\Desktop\amdadRodger_72.jpg [2010-09-12 13:29:26 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempTN2272.html [2010-09-12 13:29:26 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempFe2272.html [2010-09-12 11:46:52 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemprM2552.html [2010-09-12 11:46:52 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempnh2552.html [2010-09-11 18:04:14 | 000,002,092 | ---- | C] () -- C:\Users\Public\Desktop\Samsung New PC Studio.lnk [2010-09-11 18:02:26 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll [2010-09-11 18:02:26 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys [2010-09-11 08:34:53 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempxJ1176.html [2010-09-11 08:34:53 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempjs1176.html [2010-09-10 18:47:50 | 000,000,953 | ---- | C] () -- C:\Users\Karol\Desktop\SopCast.lnk [2010-09-10 02:04:50 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempQs3100.html [2010-09-10 02:04:50 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempfg3100.html [2010-09-10 00:27:09 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempqc3048.html [2010-09-09 23:02:31 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempyo6120.html [2010-09-09 23:02:31 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemplA6120.html [2010-09-09 14:10:12 | 000,001,982 | ---- | C] () -- C:\Users\Karol\Desktop\Star Wars Knights of the Old Republic.lnk [2010-09-09 13:56:52 | 000,000,085 | -HS- | C] () -- C:\ProgramData\.zreglib [2010-09-09 13:55:25 | 000,001,161 | ---- | C] () -- C:\Users\Public\Desktop\CloneDVD2.lnk [2010-09-09 11:39:27 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempTH3332.html [2010-09-08 12:53:05 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempzm3832.html [2010-09-08 11:49:16 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempIf3520.html [2010-09-08 11:49:16 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempkI3520.html [2010-09-07 20:26:19 | 000,000,075 | ---- | C] () -- C:\ProgramData\nvUnsupRes.dat [2010-09-07 20:22:31 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempLU2180.html [2010-09-07 20:22:31 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempjp2180.html [2010-09-07 20:13:45 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempwY4084.html [2010-09-07 20:13:45 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempKM4084.html [2010-09-07 20:08:29 | 000,009,596 | ---- | C] () -- C:\Windows\System32\nvinfo.pb [2010-09-07 19:58:20 | 000,001,094 | ---- | C] () -- C:\Users\Public\Desktop\Second Life Viewer 2.lnk [2010-09-07 11:56:39 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempFs3460.html [2010-09-06 17:54:36 | 000,000,949 | ---- | C] () -- C:\Users\Karol\Desktop\NapiProjekt.lnk [2010-09-06 14:17:42 | 000,000,995 | ---- | C] () -- C:\Users\Public\Desktop\JDownloader.lnk [2010-09-06 12:12:02 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempeA3240.html [2010-09-06 12:12:02 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempHZ3240.html [2010-09-05 15:25:21 | 000,028,672 | -HS- | C] () -- C:\Users\Karol\Thumbs.db [2010-09-05 15:19:56 | 000,001,053 | ---- | C] () -- C:\Users\Karol\Desktop\RapidShare Manager.lnk [2010-09-05 14:11:06 | 000,001,977 | ---- | C] () -- C:\Users\Public\Desktop\Mega Manager.lnk [2010-09-05 13:36:14 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempYUZ360.html [2010-09-05 13:36:14 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempjvE360.html [2010-09-04 21:40:17 | 000,000,993 | ---- | C] () -- C:\Users\Public\Desktop\foobar2000.lnk [2010-09-04 19:41:32 | 000,000,985 | ---- | C] () -- C:\Users\Karol\Desktop\ParadisePoker.lnk [2010-09-04 19:35:14 | 000,001,023 | ---- | C] () -- C:\Users\Public\Desktop\PokerStars.lnk [2010-09-04 18:13:18 | 000,008,627 | ---- | C] () -- C:\Windows\System32\PAV_FOG.OPC [2010-09-04 18:09:10 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempkv2332.html [2010-09-04 18:09:10 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempWI2332.html [2010-09-04 18:07:22 | 000,013,880 | ---- | C] () -- C:\Windows\System32\drivers\COMFiltr.sys [2010-09-04 18:07:13 | 000,000,262 | ---- | C] () -- C:\Windows\System32\PavCPL.dat [2010-09-04 18:07:11 | 000,257,816 | ---- | C] () -- C:\Windows\System32\drivers\APPFCONT.DAT.bck [2010-09-04 18:07:11 | 000,257,816 | ---- | C] () -- C:\Windows\System32\drivers\APPFCONT.DAT [2010-09-04 18:07:11 | 000,001,132 | ---- | C] () -- C:\Windows\System32\drivers\APPFLTR.CFG.bck [2010-09-04 18:07:11 | 000,001,132 | ---- | C] () -- C:\Windows\System32\drivers\APPFLTR.CFG [2010-09-04 13:13:20 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempTV2152.html [2010-09-04 13:13:20 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TemptM2152.html [2010-09-04 09:06:58 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempQE1476.html [2010-09-04 09:06:58 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempBu1476.html [2010-09-04 00:22:40 | 000,165,376 | ---- | C] () -- C:\Windows\System32\unrar.dll [2010-09-04 00:22:40 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini [2010-09-04 00:22:39 | 000,790,528 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2010-09-04 00:22:39 | 000,134,144 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2010-09-04 00:22:39 | 000,108,032 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll [2010-09-04 00:22:39 | 000,000,547 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll.manifest [2010-09-04 00:11:33 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempnKq584.html [2010-09-04 00:11:33 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempZhF584.html [2010-09-03 22:44:55 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempsI1400.html [2010-09-03 22:44:55 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\Tempmv1400.html [2010-09-03 22:07:17 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempVa3956.html [2010-09-03 22:07:17 | 000,002,089 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempLC3956.html [2010-09-03 22:04:11 | 000,002,432 | ---- | C] () -- C:\Users\Karol\AppData\Local\TempSP1748.html [2009-07-14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2007-10-25 17:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys [color=#E56717]========== LOP Check ==========[/color] [2010-09-04 00:25:31 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\BESTplayer [2010-09-08 18:54:02 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\DisplayTune [2010-10-03 21:03:52 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\foobar2000 [2010-09-14 00:43:19 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\Gadu-Gadu 10 [2010-09-14 18:28:08 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\HEM Data [2010-09-26 13:54:42 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\ipla [2010-09-15 21:52:51 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\OpenOffice.org [2010-09-04 18:06:35 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\Panda Security [2010-09-11 18:02:04 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\Samsung [2010-09-07 20:27:28 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\SecondLife [2010-09-03 22:10:05 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\Thunderbird [2010-10-03 21:04:10 | 000,000,000 | ---D | M] -- C:\Users\Karol\AppData\Roaming\Tibia [2010-10-04 09:42:28 | 000,000,252 | ---- | M] () -- C:\Windows\Tasks\elbyExecuteWithUAC.job [2009-07-14 06:53:46 | 000,011,468 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] < End of report >