OTL logfile created on: 2012-07-06 21:15:17 - Run 1 OTL by OldTimer - Version 3.2.53.1 Folder = M:\ Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,75 Gb Available Physical Memory | 87,32% Memory free 3,85 Gb Paging File | 3,79 Gb Available in Paging File | 98,44% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 28,00 Gb Total Space | 9,11 Gb Free Space | 32,55% Space Free | Partition Type: NTFS Drive D: | 37,25 Gb Total Space | 4,82 Gb Free Space | 12,95% Space Free | Partition Type: NTFS Drive E: | 62,86 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: NTFS Drive F: | 62,86 Gb Total Space | 0,38 Gb Free Space | 0,61% Space Free | Partition Type: NTFS Drive G: | 62,86 Gb Total Space | 0,03 Gb Free Space | 0,05% Space Free | Partition Type: NTFS Drive H: | 62,87 Gb Total Space | 2,62 Gb Free Space | 4,16% Space Free | Partition Type: NTFS Drive I: | 37,27 Gb Total Space | 13,61 Gb Free Space | 36,51% Space Free | Partition Type: NTFS Drive J: | 696,35 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive M: | 15,05 Gb Total Space | 11,42 Gb Free Space | 75,92% Space Free | Partition Type: FAT32 Drive N: | 442,98 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: UDF Drive O: | 349,15 Gb Total Space | 2,73 Gb Free Space | 0,78% Space Free | Partition Type: NTFS Drive P: | 349,15 Gb Total Space | 1,36 Gb Free Space | 0,39% Space Free | Partition Type: NTFS Drive Q: | 349,15 Gb Total Space | 0,73 Gb Free Space | 0,21% Space Free | Partition Type: NTFS Drive R: | 349,15 Gb Total Space | 1,99 Gb Free Space | 0,57% Space Free | Partition Type: NTFS Computer Name: MILAN | User Name: Poziomka | Logged in as Administrator. Boot Mode: SafeMode | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-06 20:54:04 | 000,595,968 | ---- | M] (OldTimer Tools) -- M:\OTL.exe PRC - [2009-10-16 19:45:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2009-02-27 20:04:20 | 000,311,296 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.POL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ) SRV - [2011-03-01 07:21:46 | 000,458,488 | ---- | M] (AltrixSoft (http://www.altrixsoft.com/)) [On_Demand | Stopped] -- C:\Program Files\Common Files\AltrixSoft\HDDInfoService\HDDSvc.exe -- (HDDSvc) SRV - [2010-10-13 23:21:29 | 000,552,064 | ---- | M] (Eset ) [Auto | Stopped] -- C:\Program Files\ESET\nod32krn.exe -- (NOD32krn) SRV - [2010-01-21 17:24:08 | 000,110,592 | ---- | M] (WDC) [Auto | Stopped] -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe -- (WDDMService) SRV - [2009-06-16 09:58:08 | 000,020,480 | ---- | M] (Memeo) [Auto | Stopped] -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe -- (WDSmartWareBackgroundService) SRV - [2007-05-28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Stopped] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE) SRV - [2006-11-02 21:40:12 | 000,174,656 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\system32\PSIService.exe -- (ProtexisLicensing) SRV - [2006-06-05 14:59:18 | 000,174,080 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe -- (ServiceLayer) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Poziomka\USTAWI~1\Temp\catchme.sys -- (catchme) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (ab3i3v8g) DRV - [2010-10-14 01:38:41 | 000,685,816 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2010-10-13 23:21:30 | 000,512,096 | ---- | M] (Eset ) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\amon.sys -- (AMON) DRV - [2010-10-13 23:21:29 | 000,015,424 | ---- | M] () [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\nod32drv.sys -- (nod32drv) DRV - [2009-10-16 19:45:00 | 000,215,856 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\Si3132r5.sys -- (Si3132r5) DRV - [2009-10-16 19:45:00 | 000,212,520 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\Si3531.sys -- (Si3531) DRV - [2009-10-16 19:45:00 | 000,195,072 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\drivers\Si3114r5.sys -- (Si3114r5) DRV - [2009-10-16 19:45:00 | 000,074,672 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3132.sys -- (Si3132) DRV - [2009-10-16 19:45:00 | 000,069,248 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3124.sys -- (Si3124) DRV - [2009-10-16 19:45:00 | 000,062,336 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3112.sys -- (Si3112) DRV - [2009-02-13 12:02:52 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM) DRV - [2006-05-29 09:26:38 | 000,127,488 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcd.sys -- (Nokia USB Phone Parent) DRV - [2006-05-29 09:26:36 | 000,013,312 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcj.sys -- (Nokia USB Port) DRV - [2006-05-29 09:26:36 | 000,013,312 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcm.sys -- (Nokia USB Modem) DRV - [2006-05-29 09:26:36 | 000,008,704 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdc.sys -- (Nokia USB Generic) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://startsear.ch/?aff=1&cf=9b7f9a82-1930-11e1-bcc3-0013d4c0fed7 IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{43496960-9B4E-475C-AEF1-76B834B2512A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://startsear.ch/?aff=1&cf=9b7f9a82-1930-11e1-bcc3-0013d4c0fed7 IE - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://startsear.ch/?aff=1&src=sp&cf=9b7f9a82-1930-11e1-bcc3-0013d4c0fed7&q={searchTerms} IE - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\..\SearchScopes\{43496960-9B4E-475C-AEF1-76B834B2512A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "Web Search" FF - prefs.js..browser.search.defaultenginename: "Web Search" FF - prefs.js..browser.search.order.1: "Web Search" FF - prefs.js..browser.search.selectedEngine: "Wikipedia (Eng)" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.com/" FF - prefs.js..keyword.URL: "http://startsear.ch/?aff=1&src=sp&cf=9b7f9a82-1930-11e1-bcc3-0013d4c0fed7&q=" FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.19: C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc) FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.18: C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-11-24 21:23:43 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-04-13 19:11:08 | 000,000,000 | ---D | M] [2011-06-11 12:26:14 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Poziomka\Dane aplikacji\Mozilla\Extensions [2011-11-27 21:47:39 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Poziomka\Dane aplikacji\Mozilla\Firefox\Profiles\1z4iafxl.default\extensions [2011-11-27 21:47:39 | 000,000,000 | ---D | M] (VshareComplete - Speed up your search with your personal search suggestions tool) -- C:\Documents and Settings\Poziomka\Dane aplikacji\Mozilla\Firefox\Profiles\1z4iafxl.default\extensions\{3697b17c-b572-4862-a5e6-7f922c0f3403} [2011-06-16 19:26:37 | 000,002,221 | ---- | M] () -- C:\Documents and Settings\Poziomka\Dane aplikacji\Mozilla\Firefox\Profiles\1z4iafxl.default\searchplugins\filmweb.xml [2011-07-11 20:04:02 | 000,000,633 | ---- | M] () -- C:\Documents and Settings\Poziomka\Dane aplikacji\Mozilla\Firefox\Profiles\1z4iafxl.default\searchplugins\startsear.xml [2011-06-16 19:24:21 | 000,001,032 | ---- | M] () -- C:\Documents and Settings\Poziomka\Dane aplikacji\Mozilla\Firefox\Profiles\1z4iafxl.default\searchplugins\wikipedia-eng.xml [2011-07-10 19:58:53 | 000,004,140 | ---- | M] () -- C:\Documents and Settings\Poziomka\Dane aplikacji\Mozilla\Firefox\Profiles\1z4iafxl.default\searchplugins\youtube.xml [2012-03-07 01:19:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-03-07 01:19:46 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} [2011-09-06 21:58:44 | 000,010,043 | ---- | M] () (No name found) -- C:\DOCUMENTS AND SETTINGS\POZIOMKA\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\1Z4IAFXL.DEFAULT\EXTENSIONS\IPLEXTOALL@ALLPLAYER.ORG.XPI [2012-03-07 01:19:20 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2011-11-24 21:23:42 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-03-07 01:19:19 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2011-10-03 11:14:54 | 000,083,456 | ---- | M] (vShare.tv ) -- C:\Program Files\mozilla firefox\plugins\npvsharetvplg.dll [2011-11-24 21:23:39 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2011-11-24 21:23:39 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-11-24 21:23:39 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2011-11-24 21:23:39 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011-11-24 21:23:38 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2011-11-24 21:23:38 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: Web Search (Enabled) CHR - default_search_provider: search_url = http://startsear.ch/?aff=1&src=sp&cf=9b7f9a82-1930-11e1-bcc3-0013d4c0fed7&q={searchTerms} CHR - default_search_provider: suggest_url = CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.47\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.47\pdf.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.47\gcswf32.dll CHR - plugin: Shockwave Flash (Disabled) = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll CHR - plugin: vShare.tv plug-in (Enabled) = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj\1.3_0\chvsharetvplg.dll CHR - plugin: vShare.tv plug-in (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npvsharetvplg.dll CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\plugins\nppl3260.dll CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\plugins\nprpjplug.dll CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll CHR - plugin: Veetle TV Player (Enabled) = C:\Program Files\Veetle\Player\npvlc.dll CHR - plugin: Veetle TV Core (Enabled) = C:\Program Files\Veetle\plugins\npVeetle.dll CHR - Extension: YouTube = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Szukaj w Google = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\ CHR - Extension: vshare plugin = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\kpionmjnkbpcdpcflammlgllecmejgjj\1.3_0\ CHR - Extension: Gmail = C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2012-07-06 20:31:31 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) O4 - HKLM..\Run: [iKeyWorks] C:\Program Files\A4Tech\Keyboard\Ikeymain.exe (A4Tech Co.,Ltd.) O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) O4 - HKLM..\Run: [nod32kui] C:\Program Files\Eset\nod32kui.exe (Eset ) O4 - HKLM..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe (Nokia) O4 - HKLM..\Run: [UpdateReminder] C:\Program Files\ESET\UpdateReminder.exe (ESET, spol. s r.o.) O4 - HKLM..\Run: [WiaExtensionHost64] C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\4230\WiaExtensionHost64.exe () O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe () O4 - HKU\S-1-5-21-1606980848-682003330-1417001333-1003..\Run: [AlcoholAutomount] C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe (Alcohol Soft Development Team) O4 - HKU\S-1-5-21-1606980848-682003330-1417001333-1003..\Run: [ALLUpdate] C:\Program Files\ALLPlayer\ALLUpdate.exe () O4 - HKU\S-1-5-21-1606980848-682003330-1417001333-1003..\Run: [Gadu-Gadu] C:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O4 - HKU\S-1-5-21-1606980848-682003330-1417001333-1003..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\WDSmartWare.lnk = C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-1606980848-682003330-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 File not found O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\System32\imon.dll (Eset ) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-10-13 20:19:31 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2008-10-05 12:49:07 | 000,028,672 | ---- | M] () - H:\autobus_auchan_wroclaw.xls -- [ NTFS ] O32 - AutoRun File - [2012-03-10 03:32:29 | 000,015,044 | ---- | M] () - H:\Autopsy_ 2008 _[DVDRip XviD]_[Lektor_PL][Torrenty.org].torrent -- [ NTFS ] O32 - AutoRun File - [2012-03-11 02:41:13 | 000,014,661 | ---- | M] () - H:\Autopsy_ 2008 _[DVDRip]_[XviD-PSiG]_[Lektor_PL][Torrenty.org].torrent -- [ NTFS ] O32 - AutoRun File - [2010-09-20 01:07:50 | 000,256,777 | ---- | M] () - H:\Autor_Widmo_-_The_Ghost_Writer_ 2010 _[DVDRip XviD-FXG]_[ENG][Torrenty.org].torrent -- [ NTFS ] O32 - AutoRun File - [2012-01-25 19:58:35 | 000,014,757 | ---- | M] () - H:\Autor_Widmo_-_The_Ghost_Writer_ 2010 _[DVDRip XviD-Noir]_[ENG][Torrenty.org].torrent -- [ NTFS ] O32 - AutoRun File - [2010-08-18 23:16:20 | 000,057,042 | ---- | M] () - H:\Autor_Widmo_-_The_Ghost_Writer_ 2010 _[DVDRip]_[XviD]_[Lektor_PL][Torrenty.org].torrent -- [ NTFS ] O32 - AutoRun File - [2012-01-25 20:19:40 | 000,014,432 | ---- | M] () - H:\Autor_Widmo_-_The_Ghost_Writer_ 2010 _[DVDRip_XviD-4AT]_[Napisy_PL][Torrenty.org] (1).torrent -- [ NTFS ] O32 - AutoRun File - [2010-07-30 23:22:20 | 000,014,432 | ---- | M] () - H:\Autor_Widmo_-_The_Ghost_Writer_ 2010 _[DVDRip_XviD-4AT]_[Napisy_PL][Torrenty.org].torrent -- [ NTFS ] O32 - AutoRun File - [2011-04-20 00:06:45 | 000,012,207 | ---- | M] () - H:\Autostopowiczka_-_Pick_me_up_ 2007 _[DVDRip XviD-roberto92r]_[Lektor_PL]_[EKIPA-MT][Torrenty.org]+h.torrent -- [ NTFS ] O32 - AutoRun File - [2001-06-17 10:50:18 | 000,000,054 | R--- | M] () - J:\autorun.bat -- [ CDFS ] O32 - AutoRun File - [2003-02-23 05:23:19 | 000,000,045 | R--- | M] () - J:\autorun.inf -- [ CDFS ] O32 - AutoRun File - [2004-05-01 22:35:55 | 000,000,967 | R--- | M] () - J:\autorun.pif -- [ CDFS ] O32 - AutoRun File - [2010-01-28 22:00:27 | 000,000,088 | R--- | M] () - N:\autorun.inf -- [ UDF ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-06 20:33:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp [2012-07-06 20:20:17 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2012-07-06 20:20:17 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2012-07-06 20:20:17 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2012-07-06 20:20:17 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2012-07-06 20:19:01 | 000,000,000 | ---D | C] -- C:\Qoobox [2012-07-06 20:18:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt [2012-07-06 19:35:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Poziomka\Dane aplikacji\hellomoto [2012-06-10 23:18:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Poziomka\Dane aplikacji\NCH Software [2012-06-10 23:18:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NCH Software [2012-06-10 23:18:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\NCH Software Suite [2012-06-10 23:18:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Audio Related Programs [2012-06-10 23:18:22 | 000,000,000 | ---D | C] -- C:\Program Files\NCH Software [2012-06-10 22:33:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Poziomka\Dane aplikacji\Audacity [2012-06-10 22:33:25 | 000,000,000 | ---D | C] -- C:\Program Files\Audacity 1.3 Beta (Unicode) [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-06 21:12:37 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2012-07-06 21:11:23 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-07-06 20:34:09 | 009,437,184 | -H-- | M] () -- C:\Documents and Settings\Poziomka\NTUSER.DAT [2012-07-06 20:34:09 | 000,000,292 | -HS- | M] () -- C:\Documents and Settings\Poziomka\ntuser.ini [2012-07-06 20:31:56 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini [2012-07-06 20:31:31 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2012-07-06 18:57:12 | 000,000,012 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\ReminderNextRun [2012-07-06 18:37:44 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-07-05 20:20:44 | 000,232,960 | ---- | M] () -- C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-07-03 17:55:50 | 000,186,705 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\EURO_2012 TYPYw.zip [2012-06-27 20:36:35 | 002,699,098 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\fanfary5.mp3 [2012-06-27 20:31:55 | 011,888,684 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\fanfary5.wav [2012-06-27 20:25:11 | 000,000,282 | ---- | M] () -- C:\WINDOWS\tasks\WavePadReminder.job [2012-06-27 20:25:11 | 000,000,282 | ---- | M] () -- C:\WINDOWS\tasks\WavePadDowngrade.job [2012-06-25 19:42:45 | 000,216,952 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\fanfary1 krótsze.mp3 [2012-06-19 21:59:56 | 000,044,474 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\380371_3862292290137_1579836245_n.jpg [2012-06-17 00:12:14 | 000,181,225 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\EURO_2012 TYPY.zip [2012-06-16 18:08:21 | 000,000,594 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\zewn.dfd [2012-06-16 17:00:22 | 000,095,398 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\295787_189615947779426_1602733431_n.jpg [2012-06-16 11:43:57 | 000,007,519 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\temp_5stars+dash+ronski.m3u [2012-06-16 11:02:06 | 000,005,711 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\temp_5stars+dash.m3u [2012-06-16 10:17:45 | 000,313,224 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\16_06_2012_all.m3u [2012-06-14 22:27:49 | 000,125,377 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\484167_10150842521131292_1791246390_n.jpg [2012-06-13 01:53:08 | 000,001,394 | ---- | M] () -- C:\WINDOWS\CDPLAYER.UNI [2012-06-12 18:00:22 | 000,039,876 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\Cassano.JPG [2012-06-10 23:18:26 | 000,000,783 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\WavePad Sound Editor.lnk [2012-06-06 22:18:02 | 000,086,857 | ---- | M] () -- C:\Documents and Settings\Poziomka\Pulpit\551059_10150943796040435_759397133_n.jpg [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-06 21:12:37 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2012-07-06 20:20:17 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2012-07-06 20:20:17 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2012-07-06 20:20:17 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2012-07-06 20:20:17 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2012-07-06 20:20:17 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2012-07-03 17:55:49 | 000,186,705 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\EURO_2012 TYPYw.zip [2012-06-27 20:35:23 | 002,699,098 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\fanfary5.mp3 [2012-06-27 20:31:54 | 011,888,684 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\fanfary5.wav [2012-06-27 20:25:11 | 000,000,282 | ---- | C] () -- C:\WINDOWS\tasks\WavePadDowngrade.job [2012-06-25 19:42:45 | 000,216,952 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\fanfary1 krótsze.mp3 [2012-06-19 21:59:54 | 000,044,474 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\380371_3862292290137_1579836245_n.jpg [2012-06-17 00:12:11 | 000,181,225 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\EURO_2012 TYPY.zip [2012-06-16 17:00:15 | 000,095,398 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\295787_189615947779426_1602733431_n.jpg [2012-06-16 11:43:57 | 000,007,519 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\temp_5stars+dash+ronski.m3u [2012-06-16 11:02:06 | 000,005,711 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\temp_5stars+dash.m3u [2012-06-16 10:17:45 | 000,313,224 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\16_06_2012_all.m3u [2012-06-14 22:27:46 | 000,125,377 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\484167_10150842521131292_1791246390_n.jpg [2012-06-12 18:00:22 | 000,039,876 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\Cassano.JPG [2012-06-10 23:34:02 | 000,000,282 | ---- | C] () -- C:\WINDOWS\tasks\WavePadReminder.job [2012-06-10 23:18:26 | 000,000,789 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\WavePad Sound Editor.lnk [2012-06-10 23:18:26 | 000,000,783 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\WavePad Sound Editor.lnk [2012-06-10 22:33:34 | 000,000,735 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Audacity 1.3 Beta (Unicode).lnk [2012-06-06 22:18:08 | 000,086,857 | ---- | C] () -- C:\Documents and Settings\Poziomka\Pulpit\551059_10150943796040435_759397133_n.jpg [2011-10-21 22:36:47 | 000,000,530 | ---- | C] () -- C:\WINDOWS\System32\tx14_ic.ini [2011-07-19 21:45:03 | 000,002,140 | ---- | C] () -- C:\Documents and Settings\Poziomka\.recently-used.xbel [2011-07-18 20:57:42 | 000,000,012 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\ReminderNextRun [2010-10-31 14:27:49 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll [2010-10-31 14:06:20 | 000,002,516 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys [2010-10-31 14:06:20 | 000,000,088 | RHS- | C] () -- C:\WINDOWS\System32\7C6E3A707D.sys [2010-10-26 18:39:05 | 000,207,360 | ---- | C] () -- C:\WINDOWS\System32\evrprop.dll [2010-10-26 18:38:33 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\mkzlib.dll [2010-10-26 18:38:33 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\mkunicode.dll [2010-10-26 18:33:03 | 000,810,496 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2010-10-26 18:33:03 | 000,258,048 | ---- | C] () -- C:\WINDOWS\System32\libFLAC.dll [2010-10-26 18:15:12 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2010-10-14 22:02:57 | 000,004,035 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini [2010-10-14 22:02:56 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2010-10-14 01:51:57 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2010-10-14 01:38:41 | 000,685,816 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-10-14 00:57:41 | 000,068,456 | ---- | C] () -- C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-10-14 00:09:12 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2010-10-14 00:09:12 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2010-10-14 00:09:03 | 000,134,144 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2010-10-14 00:09:03 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2010-10-14 00:09:03 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2010-10-13 23:22:39 | 000,015,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\nod32drv.sys [2010-10-13 23:15:10 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-10-13 23:11:43 | 000,232,960 | ---- | C] () -- C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-10-13 22:43:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-10-13 22:10:02 | 000,993,330 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-10-13 22:10:02 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2010-10-13 22:06:55 | 000,266,208 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-10-13 22:04:05 | 002,114,092 | -H-- | C] () -- C:\Documents and Settings\Poziomka\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-10-13 20:25:03 | 009,437,184 | -H-- | C] () -- C:\Documents and Settings\Poziomka\NTUSER.DAT [2010-10-13 20:25:03 | 000,000,292 | -HS- | C] () -- C:\Documents and Settings\Poziomka\ntuser.ini [2010-10-13 20:22:10 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-10-13 20:19:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2010-10-13 20:18:41 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-10-13 20:18:38 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-10-13 20:16:11 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-10-13 20:16:10 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2010-10-13 20:16:10 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2010-10-13 20:15:26 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2010-10-13 20:15:25 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [color=#E56717]========== LOP Check ==========[/color] [2011-03-06 21:51:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AltrixSoft [2010-11-23 23:43:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Downloaded Installations [2010-11-23 23:44:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2011-01-31 21:03:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Western Digital [2012-06-27 20:34:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\Audacity [2012-05-20 23:34:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\Datalayer [2010-10-13 23:26:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\Gadu-Gadu [2011-10-21 22:36:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\GetRightToGo [2011-07-19 21:45:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\gtk-2.0 [2012-07-06 19:36:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\hellomoto [2010-11-23 23:46:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\Nokia [2011-12-16 23:36:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\Opera [2012-05-20 21:51:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\PC Suite [2010-11-03 19:19:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\Pionek [2011-06-22 18:51:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\streamripper [2012-07-06 20:56:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\uTorrent [2011-11-27 21:47:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\VshareComplete [2011-01-31 21:03:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Poziomka\Dane aplikacji\Western Digital [2012-06-27 20:25:11 | 000,000,282 | ---- | M] () -- C:\WINDOWS\Tasks\WavePadDowngrade.job [2012-06-27 20:25:11 | 000,000,282 | ---- | M] () -- C:\WINDOWS\Tasks\WavePadReminder.job [color=#E56717]========== Purity Check ==========[/color] < End of report >