OTL logfile created on: 2012-07-07 12:06:12 - Run 2 OTL by OldTimer - Version 3.2.53.1 Folder = G:\wir\OTL Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,50 Gb Total Physical Memory | 3,19 Gb Available Physical Memory | 91,32% Memory free 5,34 Gb Paging File | 5,20 Gb Available in Paging File | 97,42% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 67,84 Gb Total Space | 19,41 Gb Free Space | 28,61% Space Free | Partition Type: NTFS Drive D: | 97,65 Gb Total Space | 6,01 Gb Free Space | 6,16% Space Free | Partition Type: NTFS Drive E: | 64,59 Gb Total Space | 10,63 Gb Free Space | 16,45% Space Free | Partition Type: NTFS Drive G: | 1,90 Gb Total Space | 1,89 Gb Free Space | 99,27% Space Free | Partition Type: FAT32 Computer Name: BENIO | User Name: SB | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-06 09:44:48 | 000,595,968 | ---- | M] (OldTimer Tools) -- G:\wir\OTL\OTL.exe PRC - [2012-03-21 21:16:10 | 001,318,816 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee.com\Agent\mcagent.exe PRC - [2012-03-20 13:11:32 | 000,151,880 | ---- | M] (McAfee, Inc.) -- C:\WINDOWS\system32\mfevtps.exe PRC - [2012-03-20 13:05:00 | 000,161,632 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe PRC - [2011-01-27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe PRC - [2008-04-14 19:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-06-25 10:39:57 | 000,043,520 | ---- | M] () -- C:\WINDOWS\system32\CmdLineExt03.dll MOD - [2012-05-10 15:40:53 | 000,466,944 | ---- | M] () -- C:\WINDOWS\system32\nvshell.dll MOD - [2012-01-03 15:10:54 | 000,300,544 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- -- (0234661307614827mcinstcleanup) McAfee Application Installer Cleanup (0234661307614827) SRV - [2012-06-26 09:19:18 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-04-19 08:21:16 | 000,361,976 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS) SRV - [2012-04-04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2012-03-20 13:11:32 | 000,151,880 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\WINDOWS\system32\mfevtps.exe -- (mfevtp) SRV - [2012-03-20 13:05:00 | 000,161,632 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire) SRV - [2012-03-20 13:04:32 | 000,166,288 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe -- (McShield) SRV - [2011-01-27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McProxy) SRV - [2011-01-27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNASvc) SRV - [2011-01-27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNaiAnn) SRV - [2011-01-27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (mcmscsvc) SRV - [2011-01-27 18:28:14 | 000,214,904 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe -- (McMPFSvc) SRV - [2011-01-27 17:05:55 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2010-12-08 15:31:06 | 000,628,736 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009-10-01 22:32:04 | 004,584,288 | ---- | M] (Symantec Corporation) [Disabled | Stopped] -- C:\Program Files\Norton Ghost\Agent\VProSvc.exe -- (Norton Ghost) SRV - [2009-09-21 21:25:34 | 001,571,336 | ---- | M] (Symantec) [On_Demand | Stopped] -- C:\Program Files\Norton Ghost\Shared\Drivers\GenericMountHelper.exe -- (GenericMount Helper Service) SRV - [2009-09-21 21:19:20 | 001,964,528 | ---- | M] (Symantec) [On_Demand | Stopped] -- C:\Program Files\Norton Ghost\Shared\Drivers\SymSnapService.exe -- (SymSnapService) SRV - [2009-08-19 04:10:00 | 001,705,280 | ---- | M] (WIBU-SYSTEMS AG) [Auto | Stopped] -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe -- (CodeMeter.exe) SRV - [2009-01-23 11:46:14 | 000,203,280 | ---- | M] () [Auto | Stopped] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\SB\USTAWI~1\Temp\ewdmaudn.sys -- (ewdmaudn) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | Auto | Stopped] -- -- (adfs) DRV - [2012-05-10 15:40:28 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2012-05-10 15:40:27 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2012-04-04 15:56:40 | 000,022,344 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector) DRV - [2012-02-22 13:29:46 | 000,464,304 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk) DRV - [2012-02-22 13:29:46 | 000,340,920 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfefirek.sys -- (mfefirek) DRV - [2012-02-22 13:29:46 | 000,180,848 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk) DRV - [2012-02-22 13:29:46 | 000,121,544 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfeapfk.sys -- (mfeapfk) DRV - [2012-02-22 13:29:46 | 000,089,792 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\mfetdi2k.sys -- (mfetdi2k) DRV - [2012-02-22 13:29:46 | 000,087,656 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mferkdet.sys -- (mferkdet) DRV - [2012-02-22 13:29:46 | 000,083,856 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfendisk.sys -- (mfendiskmp) DRV - [2012-02-22 13:29:46 | 000,083,856 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfendisk.sys -- (mfendisk) DRV - [2012-02-22 13:29:46 | 000,059,456 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk) DRV - [2012-02-22 13:29:46 | 000,057,600 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\cfwids.sys -- (cfwids) DRV - [2011-12-03 20:09:59 | 000,281,760 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2011-12-03 20:09:59 | 000,025,888 | ---- | M] () [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2011-02-02 23:32:22 | 000,685,816 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2011-01-14 09:06:40 | 000,277,352 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2010-11-09 15:35:30 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\cpuz135_x32.sys -- (cpuz135) DRV - [2010-09-03 10:20:18 | 006,139,496 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2010-07-30 15:16:42 | 000,023,040 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2010-07-30 15:16:38 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-11-18 01:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2009-11-18 01:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2009-10-12 04:10:54 | 000,029,440 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTLTEAMING.SYS -- (RTLTEAMING) DRV - [2009-10-01 23:03:40 | 000,131,000 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WimFltr.sys -- (WimFltr) DRV - [2009-09-21 21:40:14 | 000,015,096 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\vproeventmonitor.sys -- (VProEventMonitor) DRV - [2009-09-21 21:26:10 | 000,046,192 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\GenericMount.sys -- (GenericMount) DRV - [2009-09-21 21:20:42 | 000,138,592 | ---- | M] (StorageCraft) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\symsnap.sys -- (symsnap) DRV - [2009-02-16 11:35:06 | 000,017,536 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTLVLAN.SYS -- (RTLVLAN) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-07-09 08:11:34 | 000,022,016 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\RtNdPt5x.sys -- (RtNdPt5x) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1644491937-515967899-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=106 IE - HKU\S-1-5-21-1644491937-515967899-839522115-1003\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-1644491937-515967899-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1644491937-515967899-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultthis.engineName: "" FF - prefs.js..browser.search.defaulturl: "" FF - prefs.js..browser.startup.homepage: "www.gazeta.pl" FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:2.8 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.736 FF - prefs.js..network.proxy.type: 0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_262.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\progra~1\mcafee\msc\npmcsn~1.dll () FF - HKLM\Software\MozillaPlugins\@mcafee.com/MVT: C:\Program Files\McAfee\Supportability\MVT\npmvtplugin.dll (McAfee, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\SB\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2011-01-26 23:43:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2011-03-22 13:33:26 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{D19CA586-DD6C-4a0a-96F8-14644F340D60}: C:\Program Files\Common Files\McAfee\SystemCore [2012-07-06 09:09:35 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-06-26 09:19:19 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-02-17 00:40:44 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\SB\Dane aplikacji\Mozilla\Extensions [2012-05-31 12:26:05 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\SB\Dane aplikacji\Mozilla\Firefox\Profiles\b4i2nmug.default\extensions [2011-02-19 16:13:50 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\SB\Dane aplikacji\Mozilla\Firefox\Profiles\b4i2nmug.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2012-05-07 09:43:29 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\SB\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\B4I2NMUG.DEFAULT\EXTENSIONS\{1392B8D2-5C05-419F-A8F6-B9F15A596612} [2011-10-30 14:36:47 | 000,061,854 | ---- | M] () (No name found) -- C:\DOCUMENTS AND SETTINGS\SB\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\B4I2NMUG.DEFAULT\EXTENSIONS\YTVDW@PGPORT.COM.XPI [2012-06-26 09:19:19 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2011-04-14 14:01:38 | 000,024,376 | ---- | M] (McAfee, Inc.) -- C:\Program Files\mozilla firefox\components\Scriptff.dll [2012-02-14 11:49:06 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-02-14 11:49:06 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-02-14 11:49:05 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-02-14 11:49:05 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-02-14 11:49:05 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-02-14 11:49:05 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2011-01-27 17:52:46 | 000,000,812 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 activate.adobe.com>>%WINDIR%\system32\drivers\etc\hosts O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20120626195538.dll (McAfee, Inc.) O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll () O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll () O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1644491937-515967899-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Computer, Inc.) O15 - HKU\S-1-5-21-1644491937-515967899-839522115-1003\..Trusted Domains: internet ([]about in Zaufane witryny) O15 - HKU\S-1-5-21-1644491937-515967899-839522115-1003\..Trusted Domains: mcafee.com ([]http in Zaufane witryny) O15 - HKU\S-1-5-21-1644491937-515967899-839522115-1003\..Trusted Domains: mcafee.com ([]https in Zaufane witryny) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.62 62.179.1.63 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4B1C1056-0886-4F8E-82D9-A826F5F5FD3D}: DhcpNameServer = 62.179.1.62 62.179.1.63 O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll () O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl.dll (McAfee, Inc.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\cryptnet32: DllName - (cryptnet32.dll) - File not found O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O32 - HKLM CDRom: AutoRun - 0 O32 - AutoRun File - [2011-01-26 16:23:05 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2012-06-08 22:11:34 | 000,118,072 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-07 12:06:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\McAfee [2012-07-06 23:35:00 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\SB\Recent [2012-07-06 09:06:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SB\Start Menu\Programs\Startup [2012-07-06 09:06:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SB\Start Menu [2012-07-06 00:22:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SB\Dane aplikacji\Malwarebytes [2012-07-06 00:22:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware [2012-07-06 00:22:02 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2012-07-06 00:22:02 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2012-07-06 00:22:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2012-07-06 00:21:06 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC [2012-07-05 21:00:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SB\Moje dokumenty\Kotek krasiok [2012-06-28 15:02:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SB\Ustawienia lokalne\Dane aplikacji\Risen2 [2012-06-28 15:02:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SB\Ustawienia lokalne\Dane aplikacji\SKIDROW [2012-06-28 14:59:59 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2012-06-28 14:56:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Deep Silver [2012-06-08 22:02:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SB\Pulpit\Nowy folder [2012-06-08 21:00:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SB\Dane aplikacji\Patcher [2012-06-08 14:01:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\City Interactive [2012-06-08 13:59:49 | 000,000,000 | ---D | C] -- C:\Program Files\City Interactive [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-07 12:02:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-07-07 12:00:36 | 007,077,888 | ---- | M] () -- C:\Documents and Settings\SB\NTUSER.DAT [2012-07-07 12:00:36 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\SB\ntuser.ini [2012-07-07 11:47:39 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-07-06 23:34:52 | 000,000,509 | ---- | M] () -- C:\WINDOWS\win.ini [2012-07-06 23:34:52 | 000,000,321 | -HS- | M] () -- C:\boot.ini [2012-07-06 23:34:52 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini [2012-07-06 09:06:15 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2012-07-06 00:22:03 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2012-07-05 21:53:34 | 000,258,426 | ---- | M] () -- C:\Documents and Settings\SB\Moje dokumenty\009. Wiertarka 1 - Wiertarka.mp3 [2012-07-05 09:59:22 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn [2012-07-04 13:21:44 | 000,046,839 | ---- | M] () -- C:\Documents and Settings\SB\Moje dokumenty\upc_bbc.JPG [2012-07-03 09:09:55 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-07-03 09:09:55 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-06-28 14:56:59 | 000,000,956 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Risen 2 Dark Waters.lnk [2012-06-27 00:32:34 | 000,008,883 | ---- | M] () -- C:\Documents and Settings\SB\Moje dokumenty\cud.gif [2012-06-27 00:31:56 | 000,006,193 | ---- | M] () -- C:\Documents and Settings\SB\Moje dokumenty\powidok_niedokonczony.gif [2012-06-27 00:31:47 | 000,010,419 | ---- | M] () -- C:\Documents and Settings\SB\Moje dokumenty\oburzajace.gif [2012-06-25 10:39:57 | 000,043,520 | ---- | M] () -- C:\WINDOWS\System32\CmdLineExt03.dll [2012-06-25 10:24:49 | 002,260,656 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-06-24 18:24:45 | 001,212,726 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2012-06-24 18:24:45 | 000,556,410 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-06-24 18:24:45 | 000,494,138 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-06-24 18:24:45 | 000,105,442 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-06-24 18:24:45 | 000,084,682 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-06-24 18:22:08 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2012-06-09 21:45:14 | 000,000,049 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012-06-08 18:52:32 | 001,726,386 | ---- | M] () -- C:\Documents and Settings\SB\Moje dokumenty\Panasonic CQ-C1300AN.PDF [2012-06-08 14:01:24 | 000,001,661 | ---- | M] () -- C:\Documents and Settings\SB\Pulpit\Starmageddon 2.lnk [2012-06-08 10:46:31 | 000,088,576 | ---- | M] () -- C:\Documents and Settings\SB\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-06-08 00:57:44 | 000,005,926 | ---- | M] () -- C:\WINDOWS\wincmd.ini [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-06 00:22:03 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2012-07-05 21:53:33 | 000,258,426 | ---- | C] () -- C:\Documents and Settings\SB\Moje dokumenty\009. Wiertarka 1 - Wiertarka.mp3 [2012-07-04 13:21:44 | 000,046,839 | ---- | C] () -- C:\Documents and Settings\SB\Moje dokumenty\upc_bbc.JPG [2012-06-28 14:56:59 | 000,000,956 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Risen 2 Dark Waters.lnk [2012-06-27 00:32:34 | 000,008,883 | ---- | C] () -- C:\Documents and Settings\SB\Moje dokumenty\cud.gif [2012-06-27 00:31:56 | 000,006,193 | ---- | C] () -- C:\Documents and Settings\SB\Moje dokumenty\powidok_niedokonczony.gif [2012-06-27 00:31:47 | 000,010,419 | ---- | C] () -- C:\Documents and Settings\SB\Moje dokumenty\oburzajace.gif [2012-06-08 18:52:32 | 001,726,386 | ---- | C] () -- C:\Documents and Settings\SB\Moje dokumenty\Panasonic CQ-C1300AN.PDF [2012-06-08 14:01:24 | 000,001,661 | ---- | C] () -- C:\Documents and Settings\SB\Pulpit\Starmageddon 2.lnk [2012-04-27 14:15:39 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2012-02-18 18:50:54 | 000,000,048 | ---- | C] () -- C:\WINDOWS\medigraf.INI [2012-02-16 14:10:36 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2011-11-24 14:50:34 | 000,000,135 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini [2011-11-13 18:48:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\SETUP32.INI [2011-10-09 18:43:30 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll [2011-08-02 22:39:49 | 000,000,848 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys [2011-06-17 23:49:48 | 000,016,384 | ---- | C] () -- C:\WINDOWS\System32\FileOps.exe [2011-04-08 14:38:44 | 000,296,863 | ---- | C] () -- C:\WINDOWS\System32\shimg.dll [2011-03-22 13:04:04 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\SB\Dane aplikacji\$_hpcst$.hpc [2011-02-21 01:25:11 | 000,079,154 | ---- | C] () -- C:\Documents and Settings\SB\database.dat [2011-02-21 01:25:11 | 000,000,895 | ---- | C] () -- C:\Documents and Settings\SB\undo.dat [2011-02-17 00:40:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2011-02-02 23:57:18 | 000,281,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys [2011-02-02 23:57:18 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys [2011-02-02 23:32:22 | 000,685,816 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2011-01-27 17:01:48 | 000,000,049 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2011-01-27 15:49:11 | 000,005,926 | ---- | C] () -- C:\WINDOWS\wincmd.ini [2011-01-27 13:48:29 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2011-01-26 23:28:58 | 000,088,576 | ---- | C] () -- C:\Documents and Settings\SB\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-01-26 23:13:51 | 000,050,312 | ---- | C] () -- C:\Documents and Settings\SB\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2011-01-26 23:01:20 | 000,081,936 | ---- | C] () -- C:\WINDOWS\System32\RtNicProp32.dll [2011-01-26 17:15:09 | 001,212,726 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2011-01-26 17:15:09 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2011-01-26 17:12:33 | 002,260,656 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-01-26 16:54:47 | 002,105,604 | -H-- | C] () -- C:\Documents and Settings\SB\Ustawienia lokalne\Dane aplikacji\IconCache.db [2011-01-26 16:27:56 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\SB\ntuser.ini [2011-01-26 16:27:55 | 007,077,888 | ---- | C] () -- C:\Documents and Settings\SB\NTUSER.DAT [2011-01-26 16:24:29 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2011-01-26 16:23:05 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2011-01-26 16:22:25 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2011-01-26 16:22:21 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2011-01-26 16:21:03 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2011-01-26 16:20:54 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2011-01-26 16:20:54 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2011-01-26 16:20:26 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2011-01-26 16:20:25 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [color=#E56717]========== LOP Check ==========[/color] [2012-05-19 21:45:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Abvent [2012-04-20 23:00:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Battle.net [2011-01-27 12:57:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2011-03-22 13:32:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2011-03-22 13:23:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nokia [2011-03-23 11:02:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2012-02-23 00:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PDF Writer [2012-06-02 17:23:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Soulseek [2012-06-09 00:17:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2011-02-08 18:39:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{1C6FDDD8-FC9E-4C12-9FA5-1AAD377097B3} [2011-01-27 02:28:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\B&A\Dane aplikacji\Opera [2011-01-26 23:35:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\SACore [2011-05-05 15:10:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\.wtw [2012-05-19 21:45:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Abvent [2012-05-19 21:50:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Abvent_Artlantis2 [2011-11-03 17:44:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Auslogics [2011-02-02 23:38:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\DAEMON Tools Pro [2011-11-18 13:43:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\ElevatedDiagnostics [2011-02-16 10:16:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\facemoods.com [2012-07-05 21:53:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\foobar2000 [2012-02-22 16:35:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Foxit Software [2011-01-27 13:13:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Gadu-Gadu 10 [2012-05-19 21:26:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Graphisoft [2012-05-18 08:50:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\IrfanView [2011-03-23 11:02:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Nokia [2011-01-27 02:27:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Opera [2012-06-08 21:01:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Patcher [2011-03-23 11:02:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\PC Suite [2012-02-23 00:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\PDF Writer [2011-02-20 18:59:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\SpamPal [2012-07-06 09:47:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\The Bat! [2011-10-02 11:30:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SB\Dane aplikacji\Unity [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 123 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:07BF512B < End of report >