OTL logfile created on: 2012-07-14 17:25:16 - Run 3 OTL by OldTimer - Version 3.2.54.0 Folder = C:\Documents and Settings\RYBCZYNSKI\Moje dokumenty\Pobieranie Windows XP Professional Edition Dodatek Service Pack. 1 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2800.1106) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 510,73 Mb Total Physical Memory | 77,73 Mb Available Physical Memory | 15,22% Memory free 1,22 Gb Paging File | 0,85 Gb Available in Paging File | 69,28% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 372,60 Gb Total Space | 316,95 Gb Free Space | 85,06% Space Free | Partition Type: NTFS Computer Name: RYBCZY-2KUZ2KPH | User Name: RYBCZYNSKI | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-14 16:30:46 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\RYBCZYNSKI\Moje dokumenty\Pobieranie\OTL.exe PRC - [2012-05-03 19:48:38 | 000,924,600 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2012-02-07 14:18:28 | 001,373,576 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe PRC - [2002-09-20 18:05:24 | 001,005,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Explorer.EXE [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-07-13 14:19:27 | 009,465,032 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll MOD - [2012-05-03 19:48:36 | 001,952,696 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2012-04-04 07:54:04 | 000,300,544 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL MOD - [2003-09-12 16:35:06 | 000,086,016 | ---- | M] () -- C:\WINDOWS\system32\ati2evxx.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- -- (MSDTC) SRV - [2012-07-13 16:42:22 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-07-11 13:33:39 | 000,935,008 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\11.2.0\ToolbarUpdater.exe -- (vToolbarUpdater11.2.0) SRV - [2012-05-03 19:48:39 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-03-14 17:38:14 | 000,913,752 | ---- | M] (IObit) [Auto | Stopped] -- C:\Program Files\IObit\Advanced SystemCare 5\ASCService.exe -- (AdvancedSystemCareService5) SRV - [2012-02-07 14:18:28 | 001,373,576 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc) SRV - [2011-03-16 10:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2009-07-20 13:28:10 | 000,121,360 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ) SRV - [2007-05-28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Stopped] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\ZDPNDIS5.SYS -- (ZDPNDIS5) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\ZDCndis5.SYS -- (ZDCndis5) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | Boot | Stopped] -- System32\Drivers\SmartDefragDriver.sys -- (SmartDefragDriver) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\PCANDIS5.SYS -- (PCANDIS5) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (a5xigbuj) DRV - [2011-10-30 17:59:50 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2009-06-17 18:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DRIVERS\LHidFilt.Sys -- (LHidFilt) DRV - [2009-06-17 18:55:58 | 000,010,384 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\LHidEqd.Sys -- (LHidEqd) DRV - [2009-06-17 18:55:50 | 000,040,720 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\LEqdUsb.Sys -- (LEqdUsb) DRV - [2009-06-17 18:55:34 | 000,010,384 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\Drivers\LBeepKE.sys -- (LBeepKE) DRV - [2009-03-18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DRIVERS\hamachi.sys -- (hamachi) DRV - [2007-01-16 14:52:20 | 000,017,664 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\ZDPSp50.sys -- (ZDPSp50) DRV - [2007-01-10 11:14:34 | 000,450,560 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DRIVERS\WlanBZXP.sys -- (SG762_XP) DRV - [2003-09-12 16:43:04 | 000,611,328 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\ati2mtag.sys -- (ati2mtag) DRV - [2003-07-24 16:34:56 | 000,403,968 | ---- | M] (Sensaura Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\ALCXSENS.SYS -- (ALCXSENS) DRV - [2003-07-24 14:23:16 | 000,461,312 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM) DRV - [2002-09-20 18:43:42 | 000,608,128 | ---- | M] (LT) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\ltmdmnt.sys -- (ltmodem5) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/idg/idg_1340907501_624777 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKLM\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/idg/idg_1340907501_624777 IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.bearshare.com//sidebar.html?src=ssb&appid=20&systemid=2 IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://isearch.avg.com/?cid={37C028C0-876C-47C7-BFA4-0283051F3E5B}&mid=439210b0f15447d0b852d129f5ec6313-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=en&ds=ft011&pr=sa&d=2012-06-26 07:16:34&v=11.1.0.7&sap=hp IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.bearshare.com//web?src=ieb&appid=20&systemid=2&sr=0&q={searchTerms} IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\..\URLSearchHook: {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTo0.dll (Conduit Ltd.) IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\..\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}: "URL" = http://start.facemoods.com/?a=nv1&s={searchTerms}&f=4 IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = http://isearch.avg.com/search?cid={37C028C0-876C-47C7-BFA4-0283051F3E5B}&mid=439210b0f15447d0b852d129f5ec6313-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=en&ds=ft011&pr=sa&d=2012-06-26 07:16:34&v=11.1.0.7&sap=dsp&q={searchTerms} IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3072253 IE - HKU\S-1-5-21-73586283-839522115-2090787624-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)" FF - prefs.js..browser.search.order.1: "Search the web (Babylon)" FF - prefs.js..browser.search.selectedEngine: "Search the web (Babylon)" FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}:6.0.30 FF - prefs.js..keyword.URL: "http://isearch.avg.com/search?cid=%7Bf586ed6c-d8f9-47d4-9460-71f538ad5357%7D&mid=439210b0f15447d0b852d129f5ec6313-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&ds=ft011&v=11.1.0.7&lang=en&pr=sa&d=2012-06-26%2007%3A16%3A34&sap=ku&q=" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\System32\Macromed\Flash\NPSWF32_11_3_300_265.dll () FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.2.0\\npsitesafety.dll () FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\avg@toolbar: C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\11.1.0.12\ [2012-07-11 13:33:42 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-05-03 19:48:39 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-06-22 12:21:29 | 000,000,000 | ---D | M] [2011-12-25 11:25:25 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Mozilla\Extensions [2012-06-28 22:42:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Mozilla\Firefox\Profiles\706frruo.default\extensions [2012-06-26 07:44:42 | 000,000,000 | ---D | M] (uTorrentControl2 Community Toolbar) -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Mozilla\Firefox\Profiles\706frruo.default\extensions\{687578b9-7132-4a7a-80e4-30ee31099e03} [2011-11-13 13:41:12 | 000,002,505 | ---- | M] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Mozilla\Firefox\Profiles\706frruo.default\searchplugins\SearchResults.xml [2012-06-28 22:42:49 | 000,003,915 | ---- | M] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Mozilla\Firefox\Profiles\706frruo.default\searchplugins\sweetim.xml [2012-05-03 19:48:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-04-04 18:21:53 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2012-05-03 19:48:38 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-04-04 18:21:52 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2012-02-21 16:31:09 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-07-11 13:33:58 | 000,003,769 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml [2012-06-25 20:57:02 | 000,002,352 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml [2012-02-21 16:31:09 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-11-29 21:11:28 | 000,002,046 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrch.xml [2012-02-21 16:31:09 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-02-21 16:31:09 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011-11-13 13:41:12 | 000,002,505 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\SearchResults.xml [2012-06-28 20:18:21 | 000,002,415 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\v9.xml [2012-02-21 16:31:09 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-02-21 16:31:09 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2001-10-26 17:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Complitly) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Complitly\Complitly.dll (SimplyGen) O2 - BHO: (uTorrentControl2 Toolbar) - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTo0.dll (Conduit Ltd.) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll () O2 - BHO: (Babylon IE plugin) - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) O2 - BHO: (SweetPacks Browser Helper) - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) O3 - HKLM\..\Toolbar: (uTorrentControl2 Toolbar) - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files\uTorrentControl2\prxtbuTo0.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (&Radio) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx (Microsoft Corporation) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\11.1.0.12\AVG Secure Search_toolbar.dll () O3 - HKLM\..\Toolbar: (no name) - {c2d64ff7-0ab8-4263-89c9-ea3b0f8f050c} - No CLSID value found. O3 - HKLM\..\Toolbar: (SweetPacks Toolbar for Internet Explorer) - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.) O4 - HKLM..\Run: [Sweetpacks Communicator] C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (SweetIM Technologies Ltd.) O4 - HKLM..\Run: [TURegOpt] C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\4349\TURegOpt.exe () O4 - HKLM..\Run: [vProt] C:\Program Files\AVG Secure Search\vprot.exe () O4 - HKU\S-1-5-21-73586283-839522115-2090787624-1003..\Run: [Advanced SystemCare 5] C:\Program Files\IObit\Advanced SystemCare 5\ASCTray.exe (IObit) O4 - HKU\S-1-5-21-73586283-839522115-2090787624-1003..\Run: [AlcoholAutomount] C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe (Alcohol Soft Development Team) O4 - HKU\S-1-5-21-73586283-839522115-2090787624-1003..\Run: [ALLUpdate] C:\Program Files\ALLPlayer\ALLUpdate.exe () O4 - HKU\S-1-5-21-73586283-839522115-2090787624-1003..\Run: [Odkurzacz-MCD] C:\Program Files\Odkurzacz\odk_mcd.exe (Franmo Software) O4 - HKU\S-1-5-21-73586283-839522115-2090787624-1003..\Run: [Steam] C:\Program Files\Steam\steam.exe (Valve Corporation) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Program sieciowy dla SAGEM Wi-Fi 11g USB adapter.lnk = C:\Program Files\SAGEM WiFi manager\WLANUTL.exe ( ) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-73586283-839522115-2090787624-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 177 O9 - Extra Button: @shdoclc.dll,-866 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm () O9 - Extra 'Tools' menuitem : @shdoclc.dll,-864 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm () O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (Babylon Ltd.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.) O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{11BCE832-C79F-4BC1-9EE1-BD58DCEE9D34}: NameServer = 194.204.159.1,194.204.152.34 O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\11.2.0\ViProtocol.dll () O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\system32\msdxm.ocx (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\System32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll () O20 - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2011-01-09 17:54:51 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-14 16:17:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\HitmanPro [2012-07-14 16:11:07 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC [2012-07-14 14:24:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\hellomoto [2012-07-11 13:33:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\cache [2012-07-06 09:41:44 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\RYBCZYNSKI\Recent [2012-07-05 13:37:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Menu Start\Programy\Narzędzia administracyjne [2012-07-05 13:36:49 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\GroupPolicy [2012-07-04 19:26:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Pulpit\teledyski na mp4 [2012-07-04 10:16:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\MPlayer [2012-07-04 10:15:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\PS3 Media Server [2012-07-04 10:15:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\PMS [2012-07-04 10:15:33 | 000,000,000 | ---D | C] -- C:\Program Files\PS3 Media Server [2012-07-01 17:42:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Total Video Converter [2012-07-01 17:42:32 | 000,000,000 | ---D | C] -- C:\Program Files\Total Video Converter [2012-06-28 22:42:42 | 000,000,000 | ---D | C] -- C:\Program Files\SweetIM [2012-06-28 22:42:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\SweetIM [2012-06-28 21:44:45 | 000,000,000 | ---D | C] -- C:\Program Files\AnvSoft [2012-06-28 20:21:09 | 000,000,000 | ---D | C] -- C:\Program Files\AviSynth 2.5 [2012-06-28 20:21:01 | 000,000,000 | ---D | C] -- C:\Program Files\Gabest [2012-06-26 17:28:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Moje dokumenty\Moja muzyka [2012-06-26 11:21:22 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2012-06-26 11:20:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\uTorrent [2012-06-26 07:44:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\CRE [2012-06-26 07:44:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\uTorrentControl2 [2012-06-26 07:44:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\Conduit [2012-06-26 07:44:37 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrentControl2 [2012-06-26 07:16:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\AVG Secure Search [2012-06-26 07:16:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\AVG Secure Search [2012-06-26 07:16:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search [2012-06-26 07:16:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AVG Secure Search [2012-06-26 07:16:33 | 000,000,000 | ---D | C] -- C:\Program Files\AVG Secure Search [2012-06-26 07:16:28 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2012-06-26 07:15:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\My Documents [2012-06-25 21:28:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\RYBCZYNSKI\Moje dokumenty\Downloads [2012-06-25 20:56:35 | 000,000,000 | ---D | C] -- C:\Program Files\1ClickDownload [2011-12-22 14:06:48 | 002,371,152 | ---- | C] (DownVision ) -- C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\setup.exe [2011-11-30 17:43:32 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\pcouffin.sys [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-14 16:50:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-07-14 16:44:44 | 000,001,040 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2012-07-14 16:03:45 | 000,000,290 | ---- | M] () -- C:\WINDOWS\tasks\SmartDefrag_Startup.job [2012-07-14 15:42:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-07-14 15:14:00 | 000,001,044 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2012-07-13 19:30:32 | 000,199,680 | ---- | M] () -- C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-07-13 16:42:21 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-07-13 16:42:21 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-07-10 13:06:27 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-07-02 15:33:29 | 000,122,136 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-07-01 17:42:42 | 000,000,695 | ---- | M] () -- C:\Documents and Settings\RYBCZYNSKI\Pulpit\Total Video Converter.lnk [2012-07-01 17:42:42 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\RYBCZYNSKI\Pulpit\Total Video Player.lnk [2012-06-28 20:23:24 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\AutoGK.ini [2012-06-28 19:52:43 | 000,000,004 | ---- | M] () -- C:\WINDOWS\System32\micr0st.dll [2012-06-28 19:38:13 | 000,000,660 | ---- | M] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\vso_ts_preview.xml [2012-06-25 20:57:03 | 000,000,930 | ---- | M] () -- C:\user.js [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-13 14:19:28 | 000,000,930 | ---- | C] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-07-01 17:42:42 | 000,000,695 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Pulpit\Total Video Converter.lnk [2012-07-01 17:42:42 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Pulpit\Total Video Player.lnk [2012-06-28 20:19:16 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\AutoGK.ini [2012-06-28 19:45:39 | 000,000,004 | ---- | C] () -- C:\WINDOWS\System32\micr0st.dll [2011-12-03 13:21:39 | 000,004,305 | ---- | C] () -- C:\WINDOWS\jwkdcf-h16.ini [2011-12-03 13:20:14 | 000,000,526 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\ImageTuner.ini [2011-11-30 17:43:57 | 000,000,660 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\vso_ts_preview.xml [2011-11-30 17:43:33 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\inst.exe [2011-11-30 17:43:33 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\pcouffin.cat [2011-11-30 17:43:32 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\pcouffin.inf [2011-02-05 22:23:30 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2011-02-05 21:50:21 | 000,000,056 | ---- | C] () -- C:\WINDOWS\WDIRECT.INI [2011-01-19 20:35:52 | 000,199,680 | ---- | C] () -- C:\Documents and Settings\RYBCZYNSKI\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-01-18 15:13:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2011-01-14 10:40:47 | 000,354,816 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2011-01-14 10:40:01 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe [2011-01-12 22:14:30 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\WLANUTL.dll [2011-01-11 19:14:51 | 000,258,048 | ---- | C] () -- C:\WINDOWS\System32\libFLAC.dll [2011-01-09 17:57:17 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2011-01-09 17:45:23 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [color=#E56717]========== LOP Check ==========[/color] [2011-11-13 13:41:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\302EE [2012-05-31 19:47:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2011-04-11 18:35:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Avery [2012-07-11 13:33:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search [2011-11-30 19:30:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon [2011-11-13 21:51:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\boost_interprocess [2012-06-26 07:16:28 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2011-02-05 19:01:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2012-07-14 16:17:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\HitmanPro [2012-05-30 12:07:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit [2011-05-21 08:48:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2011-01-18 16:14:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2011-10-22 21:42:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2011-05-15 12:52:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\RDRM [2012-06-28 22:42:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SweetIM [2011-09-20 18:32:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\.PiXJuegos [2012-05-07 08:34:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\AnvSoft [2012-06-26 07:16:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\AVG Secure Search [2011-11-30 19:30:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Babylon [2011-11-13 15:07:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\bsbandmltbpi [2011-11-30 19:31:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Complitly [2011-11-30 18:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\FreeMoviesToDVD [2011-07-18 10:44:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Gadu-Gadu 10 [2012-07-14 14:24:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\hellomoto [2012-05-31 20:07:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\IObit [2011-06-07 13:32:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\ipla [2011-01-14 15:59:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Leadertech [2011-01-24 20:09:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\mediAvatar [2012-02-25 00:08:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\NapiProjekt [2011-05-30 17:05:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\OpenFM [2011-01-18 17:30:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\OpenOffice.org [2011-02-05 19:03:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\RDRM [2011-01-11 20:21:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\RegistryKeys [2011-12-25 15:56:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Sony [2011-12-26 19:02:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Sony Setup [2012-07-14 16:29:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\uTorrent [2012-06-28 19:38:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Vso [2012-01-08 18:04:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\RYBCZYNSKI\Dane aplikacji\Youtube Downloader HD [2012-07-14 16:03:45 | 000,000,290 | ---- | M] () -- C:\WINDOWS\Tasks\SmartDefrag_Startup.job [color=#E56717]========== Purity Check ==========[/color] < End of report >