OTL logfile created on: 2010-10-18 07:56:46 - Run 3 OTL by OldTimer - Version 3.2.15.2 Folder = C:\Documents and Settings\Adrian\Pulpit Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 60,00% Memory free 3,00 Gb Paging File | 3,00 Gb Available in Paging File | 88,00% Paging File free Paging file location(s): C:\pagefile.sys 0 0 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 111,80 Gb Total Space | 22,37 Gb Free Space | 20,01% Space Free | Partition Type: NTFS Computer Name: FORGOTTEN | User Name: Adrian | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2010-10-17 20:08:09 | 001,062,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2010-10-17 20:08:01 | 000,184,320 | ---- | M] () -- C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe PRC - [2010-10-17 20:08:00 | 000,065,536 | ---- | M] () -- C:\Program Files\SEC\Magic Tune 2.5\GammaTray.exe PRC - [2010-10-17 20:07:57 | 003,162,112 | ---- | M] () -- C:\Program Files\Multimedia Keyboard driver\PS2USBKbdDrv.exe PRC - [2010-10-17 20:07:20 | 000,066,560 | ---- | M] () -- C:\Documents and Settings\Adrian\Ustawienia lokalne\temp\11np.exe PRC - [2010-10-17 20:02:49 | 000,204,800 | ---- | M] (HP) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe PRC - [2010-10-17 19:43:11 | 000,200,704 | ---- | M] () -- C:\WINDOWS\system32\PSIService.exe PRC - [2010-10-17 19:40:05 | 000,094,208 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe PRC - [2010-10-17 19:40:01 | 000,520,192 | ---- | M] (Hewlett-Packard) -- C:\WINDOWS\system32\hphmon05.exe PRC - [2010-10-17 18:59:07 | 000,604,160 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Adrian\Pulpit\OTL.exe PRC - [2010-09-17 07:33:17 | 000,014,808 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe PRC - [2010-09-17 07:33:15 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-10-17 18:59:07 | 000,604,160 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Adrian\Pulpit\OTL.exe MOD - [2010-08-23 18:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll MOD - [2010-07-18 00:58:42 | 000,040,960 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll MOD - [2010-07-18 00:57:22 | 000,499,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcp71.dll MOD - [2010-07-18 00:57:22 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcr71.dll MOD - [2008-04-14 19:16:32 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-10-17 19:43:11 | 000,200,704 | ---- | M] () [Auto | Start_Pending] -- C:\WINDOWS\system32\PSIService.exe -- (ProtexisLicensing) SRV - [2010-10-17 19:40:05 | 000,094,208 | ---- | M] (HP) [On_Demand | Running] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12) SRV - [2010-09-23 06:32:47 | 002,950,744 | ---- | M] () [Auto | Running] -- c:\Program Files\Common Files\Akamai\netsession_win_062a651.dll -- (Akamai) SRV - [2010-04-26 23:15:00 | 003,826,032 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS\System32\GameMon.des -- (npggsvc) SRV - [2010-03-18 16:47:22 | 000,035,160 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe -- (aspnet_state) SRV - [2010-03-18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400) SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010-03-18 13:16:28 | 000,124,240 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe -- (NetTcpPortSharing) SRV - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [File_System | Unknown | Running] -- -- (DwProt) DRV - [2010-02-13 00:21:35 | 000,101,376 | ---- | M] (Protect Software GmbH) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\ACEDRV07.sys -- (ACEDRV07) DRV - [2010-02-12 21:34:58 | 000,099,152 | ---- | M] (Sun Microsystems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV - [2009-08-05 23:48:42 | 000,054,752 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fssfltr_tdi.sys -- (fssfltr) DRV - [2009-05-29 19:30:07 | 000,223,128 | ---- | M] (DT Soft Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\dtscsi.sys -- (dtscsi) DRV - [2009-05-25 19:22:36 | 000,033,824 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\oreans32.sys -- (oreans32) DRV - [2008-07-30 07:51:30 | 000,277,736 | ---- | M] (Protect Software GmbH) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\acedrv11.sys -- (acedrv11) DRV - [2008-04-13 20:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2005-12-12 21:12:01 | 000,049,664 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfsync04.sys -- (sfsync04) StarForce Protection Synchronization Driver (version 4.x) DRV - [2005-08-10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x) DRV - [2005-05-16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x) DRV - [2004-12-15 01:51:50 | 000,873,984 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2004-02-03 15:29:20 | 000,021,088 | ---- | M] (Beyond Logic http://www.beyondlogic.org) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Porttalk.sys -- (MagicTune) DRV - [2003-09-06 15:37:22 | 000,062,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\prohlp02.sys -- (prohlp02) DRV - [2003-09-06 14:27:06 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp01.sys -- (sfhlp01) DRV - [2003-09-06 14:25:52 | 000,051,744 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\prodrv06.sys -- (prodrv06) DRV - [2003-09-06 14:22:08 | 000,006,944 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\prosync1.sys -- (prosync1) DRV - [2003-08-15 09:53:12 | 000,462,684 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM) DRV - [2003-08-14 17:16:38 | 000,404,736 | ---- | M] (Sensaura Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1220945662-1275210071-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-1220945662-1275210071-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2.2 FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.7.2 FF - prefs.js..extensions.enabledItems: FasterFox_Lite@BigRedBrent:3.8.2Lite FF - prefs.js..extensions.enabledItems: {1018e4d6-728f-4b20-ad56-37578a4de76b}:4.0.10 FF - prefs.js..extensions.enabledItems: {3d7eb24f-2740-49df-8937-200b1cc08f8a}:1.5.14.2 FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: snaplinks@snaplinks.mozdev.org:1.0.8 FF - prefs.js..extensions.enabledItems: {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}:1.0.11 FF - prefs.js..extensions.enabledItems: {8f8fe09b-0bd3-4470-bc1b-8cad42b8203a}:0.16 FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.1.5 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..network.proxy.backup.ftp: "119.70.40.101" FF - prefs.js..network.proxy.backup.ftp_port: 8080 FF - prefs.js..network.proxy.backup.gopher: "119.70.40.101" FF - prefs.js..network.proxy.backup.gopher_port: 8080 FF - prefs.js..network.proxy.backup.socks: "119.70.40.101" FF - prefs.js..network.proxy.backup.socks_port: 8080 FF - prefs.js..network.proxy.backup.ssl: "119.70.40.101" FF - prefs.js..network.proxy.backup.ssl_port: 8080 FF - prefs.js..network.proxy.ftp: "201.73.45.70" FF - prefs.js..network.proxy.ftp_port: 3128 FF - prefs.js..network.proxy.gopher: "201.73.45.70" FF - prefs.js..network.proxy.gopher_port: 3128 FF - prefs.js..network.proxy.http: "201.73.45.70" FF - prefs.js..network.proxy.http_port: 3128 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "201.73.45.70" FF - prefs.js..network.proxy.socks_port: 3128 FF - prefs.js..network.proxy.ssl: "201.73.45.70" FF - prefs.js..network.proxy.ssl_port: 3128 FF - HKLM\software\mozilla\Firefox\extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-07-18 00:58:45 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\K-Meleon\Extensions\\Plugins: C:\Program Files\K-Meleon\Plugins [2010-10-08 08:34:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\K-Meleon\Extensions\\Components: C:\Program Files\K-Meleon\Components [2010-09-27 15:54:48 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.2pre\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-10-17 00:04:03 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.2pre\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-10-08 08:34:33 | 000,000,000 | ---D | M] [2009-04-26 21:39:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Extensions [2010-10-15 22:01:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions [2010-10-09 12:25:07 | 000,000,000 | ---D | M] (Flagfox) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} [2010-04-27 20:55:27 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-10-15 11:00:04 | 000,000,000 | ---D | M] (Flashblock) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2010-08-11 07:26:34 | 000,000,000 | ---D | M] (Stylish) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8} [2010-01-19 00:47:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{67d0133d-9818-4168-9b50-634ea7f8fe14} [2010-10-15 11:00:04 | 000,000,000 | ---D | M] (iMacros for Firefox) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670} [2010-05-06 02:47:48 | 000,000,000 | ---D | M] (Live HTTP Headers) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a} [2010-08-18 07:54:49 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-10-09 12:25:07 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389} [2010-04-10 18:43:21 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2010-03-15 16:48:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\FasterFox_Lite@BigRedBrent [2010-01-24 22:27:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Mozilla\Firefox\Profiles\w3a9vjf5.default\extensions\snaplinks@snaplinks.mozdev.org [2010-10-17 23:18:08 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-08-26 02:52:58 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2008-06-24 19:07:26 | 000,873,976 | ---- | M] (Ganymede Technologies) -- C:\Program Files\Mozilla Firefox\plugins\NPCARDS.dll [2010-08-26 02:52:40 | 000,423,656 | ---- | M] (Oracle) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2009-06-15 11:14:40 | 000,120,296 | ---- | M] ( ) -- C:\Program Files\Mozilla Firefox\plugins\npganymedenet.dll [2008-06-24 19:06:50 | 000,460,272 | ---- | M] (Ganymede Technologies) -- C:\Program Files\Mozilla Firefox\plugins\NPMAHJONG.dll [2008-06-24 19:07:38 | 000,685,552 | ---- | M] (Ganymede Technologies) -- C:\Program Files\Mozilla Firefox\plugins\NPMAKAOV2.dll [2008-06-24 19:07:54 | 000,497,136 | ---- | M] (Ganymede Technologies) -- C:\Program Files\Mozilla Firefox\plugins\NPSUDOKU.dll [2006-09-26 12:03:14 | 000,098,304 | ---- | M] (Zylom) -- C:\Program Files\Mozilla Firefox\plugins\npzylomgamesplayer.dll [2010-03-15 08:47:10 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-03-15 08:47:10 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-03-15 08:47:10 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-03-15 08:47:10 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-03-15 08:47:10 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-03-15 08:47:10 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2010-10-18 07:20:59 | 000,000,789 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation) O4 - HKLM..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe (HP) O4 - HKLM..\Run: [HPHmon05] C:\WINDOWS\system32\hphmon05.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPHUPD05] c:\Program Files\Drukarka Hewlett-Packard\\{5372B9A6-6E51-4f90-9B40-E0A3B8475C4E}\hphupd05.exe () O4 - HKLM..\Run: [WireLessKeyboard] C:\Program Files\Multimedia Keyboard driver\StartAutorun.exe PS2USBKbdDrv.exe File not found O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Color Calibration.lnk = C:\Program Files\SEC\Magic Tune 2.5\GammaTray.exe () O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\NaturalColorLoad.lnk = C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run: xal6whv = C:\DOCUME~1\Adrian\USTAWI~1\Temp\11np.exe () O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-21-1220945662-1275210071-839522115-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-1220945662-1275210071-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-1220945662-1275210071-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-1220945662-1275210071-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0 O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\WINDOWS\ServicePackFiles\i386\msmsgs.exe (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\WINDOWS\ServicePackFiles\i386\msmsgs.exe (Microsoft Corporation) O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab (Symantec AntiVirus scanner) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1260743467359 (WUWebControl Class) O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab (Symantec RuFSI Utility Class) O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1257687575828 (MUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 88.156.63.9 82.139.8.7 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-08-02 16:52:58 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010-10-17 19:26:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\DoctorWeb [2010-10-17 19:05:25 | 000,000,000 | ---D | C] -- C:\rsit [2010-10-17 18:59:06 | 000,604,160 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Adrian\Pulpit\OTL.exe [2010-10-17 18:52:35 | 000,000,000 | ---D | C] -- C:\_OTL [2010-10-17 17:53:22 | 000,000,000 | ---D | C] -- C:\Program Files\IObit [2010-10-17 17:53:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\Dane aplikacji\IObit [2010-10-17 17:24:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\RegCure [2010-10-17 17:11:09 | 000,596,536 | ---- | C] (Duplex Secure Ltd.) -- C:\Documents and Settings\Adrian\Pulpit\SPTDinst-v174-x86.exe [2010-10-17 13:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Macromedia [2010-10-17 13:18:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Adobe [2010-10-16 22:58:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\Dane aplikacji\Malwarebytes [2010-10-16 22:58:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-10-13 19:41:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PopCap Games [2010-10-13 19:41:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\Pulpit\Plants vs Zombies [2010-10-12 21:26:22 | 000,974,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc42.dll [2010-10-12 21:26:22 | 000,953,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc40u.dll [2010-10-12 21:25:51 | 000,617,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comctl32.dll [2010-10-10 22:50:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\Dane aplikacji\Azgard [2010-10-10 22:49:49 | 000,000,000 | ---D | C] -- C:\Program Files\Azgard Defence [2010-10-08 08:34:19 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2010-10-05 20:00:43 | 000,000,000 | ---D | C] -- C:\Program Files\Sierra On-Line [2010-10-05 20:00:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\WINDOWS [2010-10-03 00:06:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\Ustawienia lokalne\Dane aplikacji\Apple [2010-09-27 10:37:43 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime [2010-09-27 10:37:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Apple Computer [2010-09-23 11:09:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-09-23 11:09:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\Dane aplikacji\Gadu-Gadu 10 [2010-09-23 11:07:39 | 000,000,000 | ---D | C] -- C:\Program Files\Gadu-Gadu 10 [2010-09-22 17:20:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Akamai [2010-09-21 23:03:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\WindowsPowerShell [2010-09-21 23:03:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\winrm [2010-09-21 23:03:45 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$968930Uinstall_KB968930$ [2010-09-21 10:53:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Adrian\Moje dokumenty\iMacros [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010-10-18 07:40:06 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2010-10-18 07:23:43 | 000,000,288 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1220945662-1275210071-839522115-1004.job [2010-10-18 07:23:43 | 000,000,280 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1220945662-1275210071-839522115-1004.job [2010-10-18 07:20:59 | 000,000,789 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2010-10-18 07:15:47 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2010-10-18 07:15:47 | 000,000,280 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-18.job [2010-10-18 07:15:46 | 000,000,294 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1220945662-1275210071-839522115-500.job [2010-10-18 07:15:44 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-10-18 05:40:00 | 000,000,362 | ---- | M] () -- C:\WINDOWS\tasks\HP Usg Daily.job [2010-10-18 03:01:48 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{3B2B6D4D-EE43-4C61-B6A9-8686B51074BB}.job [2010-10-18 01:40:55 | 000,295,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\winhlp32.exe [2010-10-18 01:40:52 | 000,309,760 | ---- | M] (InstallShield Corporation, Inc.) -- C:\WINDOWS\uninst.exe [2010-10-18 01:40:51 | 000,035,840 | ---- | M] (Twain Working Group) -- C:\WINDOWS\twunk_32.exe [2010-10-18 01:40:51 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\TASKMAN.EXE [2010-10-18 01:40:50 | 000,067,584 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE [2010-10-18 01:40:50 | 000,045,056 | ---- | M] (Smart Link) -- C:\WINDOWS\slrundll.exe [2010-10-18 01:40:47 | 000,484,864 | ---- | M] () -- C:\WINDOWS\Radeon Omega Drivers v4.8.442 Uninstall.exe [2010-10-18 01:40:43 | 000,749,568 | ---- | M] (Indigo Rose Corporation) -- C:\WINDOWS\iun6002.exe [2010-10-18 01:40:42 | 000,316,928 | ---- | M] (InstallShield Software Corporation) -- C:\WINDOWS\IsUninst.exe [2010-10-18 01:40:41 | 000,337,408 | ---- | M] (InstallShield Software Corporation) -- C:\WINDOWS\IsUn0415.exe [2010-10-18 01:40:38 | 000,327,680 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\alcupd.exe [2010-10-18 01:40:37 | 000,229,376 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\Alcrmv.exe [2010-10-17 21:00:22 | 000,306,688 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\xg7gpebr.exe [2010-10-17 20:08:09 | 001,062,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [2010-10-17 19:53:06 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zclientm.exe [2010-10-17 19:53:04 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wupdmgr.exe [2010-10-17 19:53:01 | 000,167,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wscript.exe [2010-10-17 19:53:01 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\write.exe [2010-10-17 19:52:57 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpstub.exe [2010-10-17 19:52:44 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmsd.exe [2010-10-17 19:52:43 | 000,130,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmine.exe [2010-10-17 19:52:43 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmt.exe [2010-10-17 19:52:41 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winhstb.exe [2010-10-17 19:52:37 | 000,128,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemtest.exe [2010-10-17 19:52:36 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wb32.exe [2010-10-17 19:52:35 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32tm.exe [2010-10-17 19:52:34 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vssadmin.exe [2010-10-17 19:52:32 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\verifier.exe [2010-10-17 19:52:29 | 000,161,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uploadm.exe [2010-10-17 19:52:29 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unsecapp.exe [2010-10-17 19:52:28 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unlodctr.exe [2010-10-17 19:52:27 | 000,035,840 | ---- | M] (Twain Working Group) -- C:\WINDOWS\System32\dllcache\twunk_32.exe [2010-10-17 19:52:27 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsshutdn.exe [2010-10-17 19:52:26 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tskill.exe [2010-10-17 19:52:26 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe [2010-10-17 19:52:25 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsdiscon.exe [2010-10-17 19:52:25 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscon.exe [2010-10-17 19:52:23 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tracert6.exe [2010-10-17 19:52:22 | 000,465,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintsetp.exe [2010-10-17 19:52:21 | 000,054,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlphr.exe [2010-10-17 19:52:20 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\telnet.exe [2010-10-17 19:52:20 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tftp.exe [2010-10-17 19:52:19 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcpsvcs.exe [2010-10-17 19:52:18 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\taskman.exe [2010-10-17 19:52:18 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcmsetup.exe [2010-10-17 19:52:17 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\systray.exe [2010-10-17 19:52:15 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\syncapp.exe [2010-10-17 19:52:15 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\syskey.exe [2010-10-17 19:52:14 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\subst.exe [2010-10-17 19:52:12 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srdiag.exe [2010-10-17 19:52:10 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spoolsv.exe [2010-10-17 19:52:09 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sol.exe [2010-10-17 19:52:08 | 000,149,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sndvol32.exe [2010-10-17 19:52:05 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvlzm.exe [2010-10-17 19:52:03 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shadow.exe [2010-10-17 19:52:02 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sfc.exe [2010-10-17 19:51:59 | 000,046,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\scrcons.exe [2010-10-17 19:51:58 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sapisvr.exe [2010-10-17 19:51:57 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rwinsta.exe [2010-10-17 19:51:56 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvsezm.exe [2010-10-17 19:51:56 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\runas.exe [2010-10-17 19:51:55 | 000,142,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rsvp.exe [2010-10-17 19:51:54 | 000,064,512 | ---- | M] (Microsoft Corp) -- C:\WINDOWS\System32\dllcache\rsm.exe [2010-10-17 19:51:54 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rsmui.exe [2010-10-17 19:51:54 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rsmsink.exe [2010-10-17 19:51:52 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\routemon.exe [2010-10-17 19:51:52 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\route.exe [2010-10-17 19:51:51 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\replace.exe [2010-10-17 19:51:51 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\reset.exe [2010-10-17 19:51:51 | 000,014,848 | ---- | M] (Microsoft) -- C:\WINDOWS\System32\dllcache\regwiz.exe [2010-10-17 19:51:50 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\regini.exe [2010-10-17 19:51:50 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe [2010-10-17 19:51:50 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\recover.exe [2010-10-17 19:51:50 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\regedt32.exe [2010-10-17 19:51:48 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rasdial.exe [2010-10-17 19:51:48 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rasautou.exe [2010-10-17 19:51:47 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qwinsta.exe [2010-10-17 19:51:47 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe [2010-10-17 19:51:46 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe [2010-10-17 19:51:43 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qappsrv.exe [2010-10-17 19:51:42 | 000,607,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe [2010-10-17 19:51:41 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\print.exe [2010-10-17 19:51:39 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlphr.exe [2010-10-17 19:51:39 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ping6.exe [2010-10-17 19:51:38 | 000,293,376 | ---- | M] (Cinematronics) -- C:\WINDOWS\System32\dllcache\pinball.exe [2010-10-17 19:51:37 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pathping.exe [2010-10-17 19:51:37 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pentnt.exe [2010-10-17 19:51:36 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\osuninst.exe [2010-10-17 19:51:35 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oobebaln.exe [2010-10-17 19:51:31 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntsd.exe [2010-10-17 19:51:26 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\notiflag.exe [2010-10-17 19:51:26 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nppagent.exe [2010-10-17 19:51:22 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nbtstat.exe [2010-10-17 19:51:14 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msswchx.exe [2010-10-17 19:51:10 | 000,355,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspaint.exe [2010-10-17 19:51:03 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msinfo32.exe [2010-10-17 19:51:02 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshta.exe [2010-10-17 19:51:01 | 000,138,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshearts.exe [2010-10-17 19:51:01 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msg.exe [2010-10-17 19:50:55 | 000,181,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msconfig.exe [2010-10-17 19:50:50 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrinfo.exe [2010-10-17 19:50:49 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mpnotify.exe [2010-10-17 19:50:49 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mplayer2.exe [2010-10-17 19:50:45 | 003,569,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\moviemk.exe [2010-10-17 19:50:44 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mountvol.exe [2010-10-17 19:50:43 | 000,251,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migwiza.exe [2010-10-17 19:50:41 | 000,798,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migrate.exe [2010-10-17 19:50:41 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migload.exe [2010-10-17 19:50:40 | 000,045,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migisol.exe [2010-10-17 19:50:35 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lpr.exe [2010-10-17 19:50:35 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lpq.exe [2010-10-17 19:50:34 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logagent.exe [2010-10-17 19:50:34 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logoff.exe [2010-10-17 19:50:33 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lnkstub.exe [2010-10-17 19:50:33 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lodctr.exe [2010-10-17 19:50:32 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lights.exe [2010-10-17 19:50:31 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\label.exe [2010-10-17 19:50:11 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isignup.exe [2010-10-17 19:50:09 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ipsec6.exe [2010-10-17 19:50:08 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetwiz.exe [2010-10-17 19:50:05 | 000,077,312 | ---- | M] () -- C:\WINDOWS\System32\dllcache\imscinst.exe [2010-10-17 19:50:05 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imkrinst.exe [2010-10-17 19:50:04 | 000,274,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputy.exe [2010-10-17 19:50:03 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjprw.exe [2010-10-17 19:50:03 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpuex.exe [2010-10-17 19:50:02 | 000,221,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpmig.exe [2010-10-17 19:50:02 | 000,217,088 | ---- | M] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe [2010-10-17 19:50:01 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.exe [2010-10-17 19:50:01 | 000,167,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdsvr.exe [2010-10-17 19:50:00 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdadm.exe [2010-10-17 19:49:59 | 000,323,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsv.exe [2010-10-17 19:49:58 | 000,054,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmig.exe [2010-10-17 19:49:55 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedw.exe [2010-10-17 19:49:53 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ie4uinit.exe [2010-10-17 19:49:52 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwtutor.exe [2010-10-17 19:49:52 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwrmind.exe [2010-10-17 19:49:51 | 000,226,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwconn1.exe [2010-10-17 19:49:51 | 000,098,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwconn2.exe [2010-10-17 19:49:45 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtzzm.exe [2010-10-17 19:49:45 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hscupd.exe [2010-10-17 19:49:44 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hostname.exe [2010-10-17 19:49:42 | 000,754,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpsvc.exe [2010-10-17 19:49:41 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helphost.exe [2010-10-17 19:49:40 | 000,779,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpctr.exe [2010-10-17 19:49:38 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssend.exe [2010-10-17 19:49:36 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fsutil.exe [2010-10-17 19:49:36 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\freecell.exe [2010-10-17 19:49:35 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe [2010-10-17 19:49:34 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\finger.exe [2010-10-17 19:49:34 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\find.exe [2010-10-17 19:49:34 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fixmapi.exe [2010-10-17 19:49:33 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fc.exe [2010-10-17 19:49:32 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\expand.exe [2010-10-17 19:49:30 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe [2010-10-17 19:49:28 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\eventvwr.exe [2010-10-17 19:49:27 | 000,049,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\esentutl.exe [2010-10-17 19:49:25 | 000,987,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxdiag.exe [2010-10-17 19:49:21 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drwtsn32.exe [2010-10-17 19:49:19 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpvsetup.exe [2010-10-17 19:49:18 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dpnsvr.exe [2010-10-17 19:49:16 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dplaysvr.exe [2010-10-17 19:49:15 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\doskey.exe [2010-10-17 19:49:12 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\diskperf.exe [2010-10-17 19:49:12 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dllhst3g.exe [2010-10-17 19:49:10 | 000,556,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dialer.exe [2010-10-17 19:49:02 | 000,147,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cscript.exe [2010-10-17 19:49:01 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cplexe.exe [2010-10-17 19:49:01 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe [2010-10-17 19:49:01 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\convert.exe [2010-10-17 19:49:00 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\control.exe [2010-10-17 19:48:59 | 001,048,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\conf.exe [2010-10-17 19:48:59 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comrereg.exe [2010-10-17 19:48:58 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\compact.exe [2010-10-17 19:48:58 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comp.exe [2010-10-17 19:48:58 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comrepl.exe [2010-10-17 19:48:56 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ckcnv.exe [2010-10-17 19:48:55 | 000,490,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintsetp.exe [2010-10-17 19:48:54 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cidaemon.exe [2010-10-17 19:48:53 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkrzm.exe [2010-10-17 19:48:52 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe [2010-10-17 19:48:52 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe [2010-10-17 19:48:52 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkdsk.exe [2010-10-17 19:48:52 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkntfs.exe [2010-10-17 19:48:51 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\charmap.exe [2010-10-17 19:48:51 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe [2010-10-17 19:48:51 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe [2010-10-17 19:48:49 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cb32.exe [2010-10-17 19:48:48 | 000,125,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\calc.exe [2010-10-17 19:48:48 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bootvrfy.exe [2010-10-17 19:48:47 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bootok.exe [2010-10-17 19:48:46 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckgzm.exe [2010-10-17 19:48:39 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\arp.exe [2010-10-17 19:45:58 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\xcopy.exe [2010-10-17 19:45:51 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wupdmgr.exe [2010-10-17 19:45:47 | 000,179,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wuauclt1.exe [2010-10-17 19:45:45 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wsmprovhost.exe [2010-10-17 19:45:44 | 000,235,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wsmanhttpconfig.exe [2010-10-17 19:45:39 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wpnpinst.exe [2010-10-17 19:45:39 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\write.exe [2010-10-17 19:45:37 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wpdshextautoplay.exe [2010-10-17 19:45:36 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wpabaln.exe [2010-10-17 19:45:29 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wmpstub.exe [2010-10-17 19:45:18 | 000,200,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\WISPTIS.EXE [2010-10-17 19:45:18 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winver.exe [2010-10-17 19:45:15 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winrs.exe [2010-10-17 19:45:15 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winrshost.exe [2010-10-17 19:45:13 | 000,130,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winmine.exe [2010-10-17 19:45:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winmsd.exe [2010-10-17 19:45:11 | 000,218,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\WinFXDocObj.exe [2010-10-17 19:45:07 | 000,445,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wiaacmgr.exe [2010-10-17 19:45:06 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\wextract.exe [2010-10-17 19:45:01 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\w32tm.exe [2010-10-17 19:45:00 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\vssadmin.exe [2010-10-17 19:44:57 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\verifier.exe [2010-10-17 19:44:57 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\verclsid.exe [2010-10-17 19:44:54 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\utilman.exe [2010-10-17 19:44:54 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\uwdf.exe [2010-10-17 19:44:52 | 000,081,920 | ---- | M] ( U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrshuta.exe [2010-10-17 19:44:52 | 000,073,728 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrprbda.exe [2010-10-17 19:44:51 | 000,090,112 | ---- | M] (U.S. Robotics Corporation) -- C:\WINDOWS\System32\usrmlnka.exe [2010-10-17 19:44:47 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\upnpcont.exe [2010-10-17 19:44:46 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\unlodctr.exe [2010-10-17 19:44:41 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tsshutdn.exe [2010-10-17 19:44:41 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tswpfwrp.exe [2010-10-17 19:44:40 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tskill.exe [2010-10-17 19:44:40 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tsdiscon.exe [2010-10-17 19:44:39 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tscupgrd.exe [2010-10-17 19:44:39 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tscon.exe [2010-10-17 19:44:37 | 001,970,176 | ---- | M] () -- C:\WINDOWS\System32\Tropix.scr [2010-10-17 19:44:36 | 000,357,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tourstart.exe [2010-10-17 19:44:36 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tracert6.exe [2010-10-17 19:44:36 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tracert.exe [2010-10-17 19:44:34 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tftp.exe [2010-10-17 19:44:33 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\telnet.exe [2010-10-17 19:44:32 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\tcmsetup.exe [2010-10-17 19:44:31 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\taskman.exe [2010-10-17 19:44:29 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\systray.exe [2010-10-17 19:44:28 | 000,117,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sysocmgr.exe [2010-10-17 19:44:28 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\syskey.exe [2010-10-17 19:44:26 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\syncapp.exe [2010-10-17 19:44:25 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\subst.exe [2010-10-17 19:44:24 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\stimon.exe [2010-10-17 19:44:22 | 000,692,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sstext3d.scr [2010-10-17 19:44:22 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ssstars.scr [2010-10-17 19:44:21 | 000,622,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sspipes.scr [2010-10-17 19:44:20 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ssmypics.scr [2010-10-17 19:44:20 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ssmarque.scr [2010-10-17 19:44:20 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ssmyst.scr [2010-10-17 19:44:19 | 000,405,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ssflwbox.scr [2010-10-17 19:44:18 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ssbezier.scr [2010-10-17 19:44:17 | 000,720,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ss3dfo.scr [2010-10-17 19:44:10 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\spupdwxp.exe [2010-10-17 19:44:08 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\spnpinst.exe [2010-10-17 19:44:07 | 000,548,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\spider.exe [2010-10-17 19:44:07 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\spdwnwxp.exe [2010-10-17 19:44:06 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sol.exe [2010-10-17 19:44:06 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sort.exe [2010-10-17 19:44:05 | 000,149,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sndvol32.exe [2010-10-17 19:44:05 | 000,142,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sndrec32.exe [2010-10-17 19:44:04 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\smbinst.exe [2010-10-17 19:44:03 | 000,086,016 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\slserv.exe [2010-10-17 19:44:03 | 000,045,056 | ---- | M] (Smart Link) -- C:\WINDOWS\System32\slrundll.exe [2010-10-17 19:44:01 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\skeys.exe [2010-10-17 19:43:59 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sigverif.exe [2010-10-17 19:43:59 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shutdown.exe [2010-10-17 19:43:58 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shrpubw.exe [2010-10-17 19:43:58 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shmgrate.exe [2010-10-17 19:43:53 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\shadow.exe [2010-10-17 19:43:52 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sfc.exe [2010-10-17 19:43:51 | 000,045,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\setupn.exe [2010-10-17 19:43:50 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sethc.exe [2010-10-17 19:43:50 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\setup.exe [2010-10-17 19:43:45 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sdbinst.exe [2010-10-17 19:43:44 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\scrnsave.scr [2010-10-17 19:43:41 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\sc.exe [2010-10-17 19:43:40 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\savedump.exe [2010-10-17 19:43:39 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rwinsta.exe [2010-10-17 19:43:39 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\runonce.exe [2010-10-17 19:43:38 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\runas.exe [2010-10-17 19:43:35 | 010,542,080 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RTLCPL.EXE [2010-10-17 19:43:34 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rtcshare.exe [2010-10-17 19:43:32 | 000,064,512 | ---- | M] (Microsoft Corp) -- C:\WINDOWS\System32\rsm.exe [2010-10-17 19:43:32 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsmui.exe [2010-10-17 19:43:32 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsmsink.exe [2010-10-17 19:43:31 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rsh.exe [2010-10-17 19:43:30 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\routemon.exe [2010-10-17 19:43:30 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\route.exe [2010-10-17 19:43:28 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rexec.exe [2010-10-17 19:43:28 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\reset.exe [2010-10-17 19:43:27 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\replace.exe [2010-10-17 19:43:26 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regini.exe [2010-10-17 19:43:26 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regsvr32.exe [2010-10-17 19:43:26 | 000,014,848 | ---- | M] (Microsoft) -- C:\WINDOWS\System32\regwiz.exe [2010-10-17 19:43:25 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\reg.exe [2010-10-17 19:43:25 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\regedt32.exe [2010-10-17 19:43:24 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rdshost.exe [2010-10-17 19:43:24 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rdsaddin.exe [2010-10-17 19:43:24 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\recover.exe [2010-10-17 19:43:23 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpclip.exe [2010-10-17 19:43:22 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rcimlby.exe [2010-10-17 19:43:22 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rcp.exe [2010-10-17 19:43:20 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasphone.exe [2010-10-17 19:43:19 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasdial.exe [2010-10-17 19:43:18 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\rasautou.exe [2010-10-17 19:43:17 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\qwinsta.exe [2010-10-17 19:43:15 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\qprocess.exe [2010-10-17 19:43:13 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\qappsrv.exe [2010-10-17 19:43:11 | 000,200,704 | ---- | M] () -- C:\WINDOWS\System32\PSIService.exe [2010-10-17 19:43:09 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\proxycfg.exe [2010-10-17 19:43:08 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\progman.exe [2010-10-17 19:43:08 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\proquota.exe [2010-10-17 19:43:07 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\print.exe [2010-10-17 19:43:05 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\powercfg.exe [2010-10-17 19:43:00 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pintool.exe [2010-10-17 19:42:59 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ping6.exe [2010-10-17 19:42:59 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ping.exe [2010-10-17 19:42:56 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\perfmon.exe [2010-10-17 19:42:54 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pathping.exe [2010-10-17 19:42:54 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pentnt.exe [2010-10-17 19:42:53 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\packager.exe [2010-10-17 19:42:51 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\osk.exe [2010-10-17 19:42:51 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\osuninst.exe [2010-10-17 19:42:47 | 000,046,592 | ---- | M] () -- C:\WINDOWS\System32\OggDSuninst.exe [2010-10-17 19:42:43 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\odbcconf.exe [2010-10-17 19:42:43 | 000,045,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\odbcad32.exe [2010-10-17 19:42:38 | 000,431,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ntvdm.exe [2010-10-17 19:42:32 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nslookup.exe [2010-10-17 19:42:27 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\netsh.exe [2010-10-17 19:42:27 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\netstat.exe [2010-10-17 19:42:26 | 000,346,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\netsetup.exe [2010-10-17 19:42:23 | 000,135,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\net1.exe [2010-10-17 19:42:23 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\net.exe [2010-10-17 19:42:22 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nddeapir.exe [2010-10-17 19:42:21 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\narrator.exe [2010-10-17 19:42:21 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\nbtstat.exe [2010-10-17 19:42:20 | 000,186,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\napstat.exe [2010-10-17 19:42:06 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mstinit.exe [2010-10-17 19:42:05 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msswchx.exe [2010-10-17 19:41:56 | 000,355,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mspaint.exe [2010-10-17 19:41:48 | 000,138,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mshearts.exe [2010-10-17 19:41:47 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msg.exe [2010-10-17 19:41:46 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeedssync.exe [2010-10-17 19:41:27 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mrinfo.exe [2010-10-17 19:41:25 | 000,135,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mplay32.exe [2010-10-17 19:41:25 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mpnotify.exe [2010-10-17 19:41:22 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mountvol.exe [2010-10-17 19:41:19 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mmcperf.exe [2010-10-17 19:41:13 | 001,424,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mmc.exe [2010-10-17 19:41:11 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\migpwd.exe [2010-10-17 19:41:04 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\makecab.exe [2010-10-17 19:41:03 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\magnify.exe [2010-10-17 19:41:02 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lpr.exe [2010-10-17 19:41:01 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lpq.exe [2010-10-17 19:41:00 | 000,230,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\logon.scr [2010-10-17 19:41:00 | 000,071,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\logman.exe [2010-10-17 19:41:00 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\logoff.exe [2010-10-17 19:40:59 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\logagent.exe [2010-10-17 19:40:59 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lodctr.exe [2010-10-17 19:40:57 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lnkstub.exe [2010-10-17 19:40:56 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\lights.exe [2010-10-17 19:40:54 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\label.exe [2010-10-17 19:40:29 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ipxroute.exe [2010-10-17 19:40:28 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ipv6.exe [2010-10-17 19:40:27 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsec6.exe [2010-10-17 19:40:25 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ipconfig.exe [2010-10-17 19:40:19 | 000,124,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iexpress.exe [2010-10-17 19:40:18 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieudinit.exe [2010-10-17 19:40:14 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe [2010-10-17 19:40:05 | 000,094,208 | ---- | M] (HP) -- C:\WINDOWS\System32\HPZipm12.exe [2010-10-17 19:40:04 | 000,073,728 | ---- | M] (HP) -- C:\WINDOWS\System32\HPZinw12.exe [2010-10-17 19:40:02 | 000,376,832 | ---- | M] () -- C:\WINDOWS\System32\hphped05.exe [2010-10-17 19:40:01 | 000,520,192 | ---- | M] (Hewlett-Packard) -- C:\WINDOWS\System32\hphmon05.exe [2010-10-17 19:40:00 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\hostname.exe [2010-10-17 19:39:58 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\help.exe [2010-10-17 19:39:56 | 000,049,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\grpconv.exe [2010-10-17 19:39:52 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fsutil.exe [2010-10-17 19:39:52 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ftp.exe [2010-10-17 19:39:51 | 000,203,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fsquirt.exe [2010-10-17 19:39:51 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\freecell.exe [2010-10-17 19:39:50 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fontview.exe [2010-10-17 19:39:50 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\forcedos.exe [2010-10-17 19:39:48 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fltmc.exe [2010-10-17 19:39:47 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fixmapi.exe [2010-10-17 19:39:46 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\findstr.exe [2010-10-17 19:39:46 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\finger.exe [2010-10-17 19:39:46 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\find.exe [2010-10-17 19:39:45 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\fc.exe [2010-10-17 19:39:44 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\faxpatch.exe [2010-10-17 19:39:43 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\extrac32.exe [2010-10-17 19:39:42 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\expand.exe [2010-10-17 19:39:42 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\eventvwr.exe [2010-10-17 19:39:41 | 000,204,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\eudcedit.exe [2010-10-17 19:39:40 | 000,049,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\esentutl.exe [2010-10-17 19:39:35 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dxdllreg.exe [2010-10-17 19:39:33 | 001,310,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dxdiag.exe [2010-10-17 19:39:32 | 000,192,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dwwin.exe [2010-10-17 19:39:32 | 000,068,096 | ---- | M] () -- C:\WINDOWS\System32\dvdplay.exe [2010-10-17 19:39:32 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dvdupgrd.exe [2010-10-17 19:39:28 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drwtsn32.exe [2010-10-17 19:39:26 | 000,260,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\drmupgds.exe [2010-10-17 19:39:25 | 000,093,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpvsetup.exe [2010-10-17 19:39:24 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dpnsvr.exe [2010-10-17 19:39:22 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dplaysvr.exe [2010-10-17 19:39:20 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\doskey.exe [2010-10-17 19:39:18 | 000,026,112 | ---- | M] (Microsoft Corp.) -- C:\WINDOWS\System32\dmremote.exe [2010-10-17 19:39:15 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllhst3g.exe [2010-10-17 19:39:13 | 000,175,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\diskpart.exe [2010-10-17 19:39:13 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\diskperf.exe [2010-10-17 19:39:10 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\diantz.exe [2010-10-17 19:39:07 | 000,115,712 | ---- | M] (Microsoft Corp. i Executive Software International, Inc.) -- C:\WINDOWS\System32\dfrgntfs.exe [2010-10-17 19:39:07 | 000,093,184 | ---- | M] (Microsoft Corp. i Executive Software International, Inc.) -- C:\WINDOWS\System32\dfrgfat.exe [2010-10-17 19:39:05 | 000,035,328 | ---- | M] (Microsoft Corp. and Executive Software International, Inc.) -- C:\WINDOWS\System32\defrag.exe [2010-10-17 19:39:04 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ddeshare.exe [2010-10-17 19:39:04 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dcomcnfg.exe [2010-10-17 19:38:34 | 000,147,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cscript.exe [2010-10-17 19:38:32 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\convert.exe [2010-10-17 19:38:32 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\control.exe [2010-10-17 19:38:31 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\conime.exe [2010-10-17 19:38:28 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\compact.exe [2010-10-17 19:38:28 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\comp.exe [2010-10-17 19:38:26 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cmstp.exe [2010-10-17 19:38:25 | 000,049,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cmmon32.exe [2010-10-17 19:38:24 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cmdl32.exe [2010-10-17 19:38:23 | 000,406,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cmd.exe [2010-10-17 19:38:22 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\clipbrd.exe [2010-10-17 19:38:22 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cliconfg.exe [2010-10-17 19:38:12 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cleanmgr.exe [2010-10-17 19:38:11 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ckcnv.exe [2010-10-17 19:38:09 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\charmap.exe [2010-10-17 19:38:09 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\chkdsk.exe [2010-10-17 19:38:09 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\chkntfs.exe [2010-10-17 19:38:03 | 000,125,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\calc.exe [2010-10-17 19:38:03 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\cacls.exe [2010-10-17 19:37:53 | 000,303,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\browserchoice.exe [2010-10-17 19:37:51 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bootvrfy.exe [2010-10-17 19:37:50 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\blastcln.exe [2010-10-17 19:37:50 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\bootok.exe [2010-10-17 19:37:33 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\auditusr.exe [2010-10-17 19:37:32 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\attrib.exe [2010-10-17 19:37:21 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\atmadm.exe [2010-10-17 19:37:18 | 000,356,352 | ---- | M] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\atiptaxx.exe [2010-10-17 19:37:18 | 000,135,168 | ---- | M] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\atiprbxx.exe [2010-10-17 19:37:17 | 000,065,536 | ---- | M] () -- C:\WINDOWS\System32\atiphexx.exe [2010-10-17 19:37:16 | 000,098,304 | ---- | M] (ATI Technologies Inc.) -- C:\WINDOWS\System32\atiiprxx.exe [2010-10-17 19:37:13 | 001,843,200 | ---- | M] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\atiadaxx.exe [2010-10-17 19:37:11 | 000,077,824 | ---- | M] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\Ati2mdxx.exe [2010-10-17 19:37:07 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\at.exe [2010-10-17 19:37:06 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\arp.exe [2010-10-17 19:37:02 | 000,108,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ahui.exe [2010-10-17 19:37:01 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\actmovie.exe [2010-10-17 19:36:59 | 000,198,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\accwiz.exe [2010-10-17 19:04:59 | 000,781,909 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\RSIT.exe [2010-10-17 18:59:07 | 000,604,160 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Adrian\Pulpit\OTL.exe [2010-10-17 18:53:56 | 000,292,480 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-10-17 18:19:11 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-10-17 18:15:42 | 000,000,392 | ---- | M] () -- C:\WINDOWS\tasks\RegCure Program Check.job [2010-10-17 18:15:42 | 000,000,374 | ---- | M] () -- C:\WINDOWS\tasks\RegCure.job [2010-10-17 17:28:07 | 000,001,458 | ---- | M] () -- C:\WINDOWS\System32\SmartGart.lnk [2010-10-17 17:11:10 | 000,596,536 | ---- | M] (Duplex Secure Ltd.) -- C:\Documents and Settings\Adrian\Pulpit\SPTDinst-v174-x86.exe [2010-10-17 17:04:48 | 002,446,336 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\Narodowy Bank Polski - Dane.xls [2010-10-17 16:50:58 | 000,000,025 | ---- | M] () -- C:\WINDOWS\popcinfot.dat [2010-10-17 15:35:46 | 000,001,648 | ---- | M] () -- C:\WINDOWS\System32\d3d8caps.dat [2010-10-17 14:57:58 | 000,001,984 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2010-10-17 14:27:17 | 000,002,445 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\HiJackThis.lnk [2010-10-17 13:57:37 | 000,000,000 | ---- | M] () -- C:\WINDOWS\MEMORY.DMP [2010-10-17 00:52:58 | 000,000,302 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1220945662-1275210071-839522115-500.job [2010-10-17 00:50:36 | 000,095,232 | ---- | M] () -- C:\Documents and Settings\Adrian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-10-16 21:25:42 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Adrian\wmic [2010-10-16 20:51:08 | 000,000,760 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\Odkurzacz.lnk [2010-10-16 19:28:14 | 000,591,446 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-10-16 19:28:14 | 000,505,904 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-10-16 19:28:14 | 000,121,088 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-10-16 19:28:14 | 000,089,558 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-10-16 19:24:50 | 000,000,281 | RHS- | M] () -- C:\boot.ini [2010-10-16 15:58:16 | 000,000,288 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-18.job [2010-10-16 09:13:52 | 050,794,208 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\launch.exe [2010-10-15 23:58:54 | 000,019,968 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\Produktywnosć - eJahan.xls [2010-10-14 23:52:20 | 000,003,139 | ---- | M] () -- C:\WINDOWS\wincmd.ini [2010-10-14 23:52:01 | 000,000,627 | ---- | M] () -- C:\WINDOWS\wcx_ftp.ini [2010-10-13 11:21:13 | 011,272,192 | ---- | M] () -- C:\Documents and Settings\Adrian\NTUSER.bak [2010-10-12 21:30:08 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2010-10-12 20:00:03 | 000,023,040 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\Umowa.doc [2010-10-08 08:34:34 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2010-10-08 08:33:14 | 000,000,592 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Opera.lnk [2010-10-08 08:32:06 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\CCleaner.lnk [2010-10-06 21:19:37 | 000,000,816 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\Skrót do Start Tor Browser.lnk [2010-10-06 07:09:57 | 000,039,936 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\Dane klasa 1a.xls [2010-10-05 20:02:41 | 000,000,295 | ---- | M] () -- C:\WINDOWS\SIERRA.INI [2010-10-04 14:54:02 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2010-09-28 19:37:58 | 000,036,352 | ---- | M] () -- C:\Documents and Settings\Adrian\Moje dokumenty\Iza.doc [2010-09-27 10:38:11 | 000,001,604 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\QuickTime Player.lnk [2010-09-23 11:11:06 | 000,000,765 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\OpenFM.lnk [2010-09-23 11:11:06 | 000,000,736 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\Gadu-Gadu 10.lnk [2010-09-23 10:12:23 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\UMDF\Msft_User_WpdMtpDr_01_00_00.Wdf [2010-09-21 11:23:28 | 000,083,475 | ---- | M] () -- C:\Documents and Settings\Adrian\Moje dokumenty\nutaharion.iim [2010-09-21 11:01:02 | 000,083,475 | ---- | M] () -- C:\Documents and Settings\Adrian\Moje dokumenty\chorwaci.iim [2010-09-18 22:00:31 | 000,305,152 | ---- | M] () -- C:\Documents and Settings\Adrian\Pulpit\mapa.xls [2010-09-18 12:23:44 | 000,974,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfc42u.dll [2010-09-18 12:23:44 | 000,974,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc42u.dll [2010-09-18 08:53:42 | 000,974,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfc42.dll [2010-09-18 08:53:42 | 000,974,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc42.dll [2010-09-18 08:53:41 | 000,954,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfc40.dll [2010-09-18 08:53:41 | 000,954,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc40.dll [2010-09-18 08:53:41 | 000,953,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mfc40u.dll [2010-09-18 08:53:41 | 000,953,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mfc40u.dll [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-10-17 19:35:14 | 050,794,208 | ---- | C] () -- C:\Documents and Settings\Adrian\Pulpit\launch.exe [2010-10-17 19:04:59 | 000,781,909 | ---- | C] () -- C:\Documents and Settings\Adrian\Pulpit\RSIT.exe [2010-10-17 17:25:00 | 000,000,392 | ---- | C] () -- C:\WINDOWS\tasks\RegCure Program Check.job [2010-10-17 17:25:00 | 000,000,374 | ---- | C] () -- C:\WINDOWS\tasks\RegCure.job [2010-10-17 16:50:57 | 000,000,025 | ---- | C] () -- C:\WINDOWS\popcinfot.dat [2010-10-17 15:03:45 | 000,306,688 | ---- | C] () -- C:\Documents and Settings\Adrian\Pulpit\xg7gpebr.exe [2010-10-17 00:05:09 | 000,000,302 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1220945662-1275210071-839522115-500.job [2010-10-17 00:05:09 | 000,000,294 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1220945662-1275210071-839522115-500.job [2010-10-16 21:25:25 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Adrian\wmic [2010-10-16 19:18:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\MEMORY.DMP [2010-10-16 15:58:15 | 000,000,288 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-18.job [2010-10-16 15:58:15 | 000,000,280 | ---- | C] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-18.job [2010-10-12 19:35:12 | 000,023,040 | ---- | C] () -- C:\Documents and Settings\Adrian\Pulpit\Umowa.doc [2010-10-08 08:34:34 | 000,001,729 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2010-10-05 20:02:42 | 000,004,398 | ---- | C] () -- C:\WINDOWS\caesar3.ico [2010-10-05 19:44:54 | 000,039,936 | ---- | C] () -- C:\Documents and Settings\Adrian\Pulpit\Dane klasa 1a.xls [2010-09-28 19:37:57 | 000,036,352 | ---- | C] () -- C:\Documents and Settings\Adrian\Moje dokumenty\Iza.doc [2010-09-27 10:38:11 | 000,001,604 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\QuickTime Player.lnk [2010-09-23 11:11:06 | 000,000,765 | ---- | C] () -- C:\Documents and Settings\Adrian\Pulpit\OpenFM.lnk [2010-09-23 11:11:06 | 000,000,736 | ---- | C] () -- C:\Documents and Settings\Adrian\Pulpit\Gadu-Gadu 10.lnk [2010-09-21 11:07:20 | 000,083,475 | ---- | C] () -- C:\Documents and Settings\Adrian\Moje dokumenty\nutaharion.iim [2010-09-21 10:49:28 | 000,083,475 | ---- | C] () -- C:\Documents and Settings\Adrian\Moje dokumenty\chorwaci.iim [2010-09-18 21:49:20 | 000,305,152 | ---- | C] () -- C:\Documents and Settings\Adrian\Pulpit\mapa.xls [2010-08-12 03:03:34 | 000,000,036 | ---- | C] () -- C:\Documents and Settings\Adrian\Ustawienia lokalne\Dane aplikacji\housecall.guid.cache [2010-08-02 16:38:27 | 000,000,171 | ---- | C] () -- C:\WINDOWS\SDDINST.INI [2010-04-06 22:25:55 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll [2010-04-06 22:07:07 | 000,000,169 | ---- | C] () -- C:\WINDOWS\RtlRack.ini [2010-03-07 09:56:16 | 000,000,000 | ---- | C] () -- C:\WINDOWS\zSpy.INI [2009-12-14 00:46:44 | 000,000,127 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI [2009-12-04 09:57:12 | 000,000,075 | ---- | C] () -- C:\WINDOWS\cdplayer.ini [2009-10-18 12:39:21 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2009-08-25 15:20:50 | 000,000,295 | ---- | C] () -- C:\WINDOWS\SIERRA.INI [2009-08-12 18:44:41 | 000,000,032 | ---- | C] () -- C:\WINDOWS\Gunzlauncher.INI [2009-07-24 08:35:07 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\Gif89.dll [2009-07-22 01:05:04 | 000,002,516 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys [2009-07-22 01:05:04 | 000,000,088 | RHS- | C] () -- C:\WINDOWS\System32\5C83351FA4.sys [2009-07-12 11:33:56 | 000,000,627 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini [2009-07-12 11:30:59 | 000,003,139 | ---- | C] () -- C:\WINDOWS\wincmd.ini [2009-06-17 00:34:11 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2009-05-29 19:43:45 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll [2009-05-29 19:43:45 | 000,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll [2009-05-29 19:43:45 | 000,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll [2009-05-25 19:22:36 | 000,033,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\oreans32.sys [2009-05-25 08:51:48 | 000,000,058 | ---- | C] () -- C:\WINDOWS\WININIT.INI [2009-05-07 16:00:09 | 000,095,232 | ---- | C] () -- C:\Documents and Settings\Adrian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-05-02 15:20:51 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Adrian\Dane aplikacji\PnkBstrK.sys [2009-04-27 17:25:55 | 000,000,131 | ---- | C] () -- C:\Documents and Settings\Adrian\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2009-04-26 21:49:33 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009-04-26 21:33:03 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2009-04-26 21:33:01 | 002,102,272 | ---- | C] () -- C:\WINDOWS\System32\x264vfw.dll [2009-04-26 21:33:00 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2009-04-26 21:33:00 | 000,755,027 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2009-04-26 21:33:00 | 000,159,839 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2009-04-26 21:32:59 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2009-04-26 21:25:46 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2008-05-26 22:22:36 | 000,016,222 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini [2008-05-26 22:22:34 | 000,021,728 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini [2008-05-26 22:22:32 | 000,016,164 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini [2006-10-27 08:26:56 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\vuins32.dll [2004-11-07 16:38:00 | 000,000,011 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.ini [2003-04-16 14:00:00 | 000,000,009 | ---- | C] () -- C:\WINDOWS\System32\comsats.sys [2003-04-08 11:40:22 | 000,005,679 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI [1997-06-14 02:56:08 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll [color=#E56717]========== LOP Check ==========[/color] [2010-10-17 00:06:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Opera [2010-10-17 00:18:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Windows Search [2010-05-13 00:22:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Alawar [2010-02-13 21:48:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Ashampoo [2010-10-10 22:50:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Azgard [2010-05-14 09:01:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\ChomikBox [2010-06-23 17:48:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\DAEMON Tools Lite [2010-04-02 06:58:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\fizzy [2009-04-26 21:29:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Gadu-Gadu [2010-09-23 11:09:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Gadu-Gadu 10 [2009-05-02 15:44:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\id Software [2009-12-04 22:23:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\InfraRecorder [2010-10-17 18:04:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\IObit [2010-06-04 09:51:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\ipla [2010-01-07 02:41:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\K-Meleon [2010-03-16 19:54:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Nowe Gadu-Gadu [2009-07-15 00:57:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\OpenFM [2009-04-27 08:59:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\OpenOffice.org [2009-04-28 18:06:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Opera [2010-08-26 20:02:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\TS3Client [2010-10-17 09:02:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\uTorrent [2010-06-09 17:26:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\WaterProof [2009-06-25 23:09:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Windows Desktop Search [2009-05-04 14:52:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Adrian\Dane aplikacji\Windows Search [2010-10-09 17:46:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AlawarWrapper [2009-06-03 14:22:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ashampoo [2010-08-26 19:37:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\boost_interprocess [2010-06-20 00:55:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-09-23 11:09:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2009-05-02 15:20:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\id Software [2009-10-20 08:06:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MumboJumbo [2010-10-13 19:33:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2009-12-18 00:53:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Drivers HeadQuarters Inc [2010-10-13 19:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PopCap Games [2010-10-17 17:24:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\RegCure [2009-05-29 22:22:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\WildTangent [2010-10-17 18:15:42 | 000,000,392 | ---- | M] () -- C:\WINDOWS\Tasks\RegCure Program Check.job [2010-10-17 18:15:42 | 000,000,374 | ---- | M] () -- C:\WINDOWS\Tasks\RegCure.job [2010-10-18 03:01:48 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{3B2B6D4D-EE43-4C61-B6A9-8686B51074BB}.job [color=#E56717]========== Purity Check ==========[/color] < End of report >