OTL logfile created on: 2012-07-17 10:07:49 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\Grzegorz\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,79 Gb Total Physical Memory | 3,23 Gb Available Physical Memory | 85,07% Memory free 7,58 Gb Paging File | 7,05 Gb Available in Paging File | 92,91% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 151,54 Gb Total Space | 100,87 Gb Free Space | 66,56% Space Free | Partition Type: NTFS Drive E: | 146,45 Gb Total Space | 132,99 Gb Free Space | 90,81% Space Free | Partition Type: NTFS Computer Name: GRZEGORZPC | User Name: Grzegorz | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-17 09:59:02 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Grzegorz\Desktop\OTL.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2010-06-22 12:20:42 | 000,379,520 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Stopped] -- C:\Windows\SysNative\FBAgent.exe -- (AFBAgent) SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2012-07-02 19:30:48 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-05-03 06:29:29 | 000,253,088 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-01-03 15:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2011-06-08 13:02:00 | 000,633,856 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2010-03-18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010-01-25 08:22:56 | 000,245,760 | ---- | M] (Brother Industries, Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Browny02\BrYNSvc.exe -- (BrYNSvc) SRV - [2009-12-15 11:39:38 | 000,096,896 | ---- | M] (ASUS) [Auto | Stopped] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv) SRV - [2009-09-30 20:34:22 | 002,314,240 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS) Intel(R) SRV - [2009-09-30 20:33:08 | 000,262,144 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) Intel(R) SRV - [2009-06-15 18:30:42 | 000,084,536 | ---- | M] (ASUS) [Auto | Stopped] -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe -- (ASLDRService) SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2007-05-31 18:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm) SRV - [2007-05-31 18:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2012-03-01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:[b]64bit:[/b] - [2011-05-18 10:14:22 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltjx64.sys -- (UsbserFilt) DRV:[b]64bit:[/b] - [2011-05-18 10:14:20 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev) DRV:[b]64bit:[/b] - [2011-05-18 10:14:16 | 000,027,136 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdc) DRV:[b]64bit:[/b] - [2011-05-18 10:14:12 | 000,019,968 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcd) DRV:[b]64bit:[/b] - [2011-05-18 10:09:48 | 000,171,008 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys -- (nmwcdnsux64) DRV:[b]64bit:[/b] - [2011-05-18 10:09:48 | 000,012,800 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsucx64.sys -- (nmwcdnsucx64) DRV:[b]64bit:[/b] - [2011-03-11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2011-03-11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2010-11-20 12:43:57 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser) DRV:[b]64bit:[/b] - [2010-11-20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus) DRV:[b]64bit:[/b] - [2010-08-25 20:36:04 | 010,611,552 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx) DRV:[b]64bit:[/b] - [2010-07-21 07:33:50 | 000,129,024 | ---- | M] (ELAN Microelectronic Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD) DRV:[b]64bit:[/b] - [2010-04-03 11:30:40 | 000,313,696 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\drivers\RsFx0150.sys -- (RsFx0150) DRV:[b]64bit:[/b] - [2010-03-02 10:45:24 | 001,594,368 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr) DRV:[b]64bit:[/b] - [2010-02-26 10:32:12 | 000,158,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd) DRV:[b]64bit:[/b] - [2010-02-25 05:26:58 | 000,115,312 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\JME.sys -- (JME) JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits) DRV:[b]64bit:[/b] - [2010-02-03 00:38:30 | 000,271,872 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud) Intel(R) DRV:[b]64bit:[/b] - [2010-01-18 11:45:50 | 000,717,368 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService) DRV:[b]64bit:[/b] - [2009-09-17 13:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64) Intel(R) DRV:[b]64bit:[/b] - [2009-08-20 04:41:38 | 001,800,192 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC) DRV:[b]64bit:[/b] - [2009-08-18 10:23:32 | 000,143,472 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR) DRV:[b]64bit:[/b] - [2009-08-06 23:24:14 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor) DRV:[b]64bit:[/b] - [2009-07-20 11:29:40 | 000,015,416 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbfiltr.sys -- (kbfiltr) DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009-07-14 02:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice) DRV:[b]64bit:[/b] - [2009-07-14 02:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam) DRV:[b]64bit:[/b] - [2009-06-18 13:18:10 | 000,015,928 | ---- | M] (Windows (R) Win 7 DDK provider) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\lullaby.sys -- (lullaby) DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009-05-13 10:07:20 | 000,015,928 | ---- | M] (ASUS) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ATK64AMD.sys -- (MTsensor) DRV:[b]64bit:[/b] - [2009-03-18 17:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi) DRV:[b]64bit:[/b] - [2008-08-28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd) DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) DRV - [2009-07-02 18:36:14 | 000,015,416 | ---- | M] (ASUS) [Kernel | Auto | Stopped] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.bph.pl/pi/do/Login IE - HKCU\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&AF=100481&babsrc=SP_ss&mntrId=5c78b3df0000000000004e5d609e5412 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..keyword.URL: "http://www.google.pl/#q=" FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_2_202_233.dll File not found FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_233.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll File not found FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll File not found FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012-07-02 19:30:48 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012-04-16 19:31:13 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files (x86)\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2011-08-12 17:30:27 | 000,000,000 | ---D | M] [2011-03-02 21:58:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Grzegorz\AppData\Roaming\mozilla\Extensions [2012-07-04 12:33:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Grzegorz\AppData\Roaming\mozilla\Firefox\Profiles\4devb18w.default\extensions [2012-04-27 09:06:42 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions [2011-12-19 22:53:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions\webbooster@iminent.com [2012-05-03 07:10:03 | 000,186,953 | ---- | M] () (No name found) -- C:\USERS\GRZEGORZ\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\4DEVB18W.DEFAULT\EXTENSIONS\ME@PAPRIKKA.PL.XPI [2012-07-02 19:30:48 | 000,085,472 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll [2012-04-16 17:20:17 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll [2012-02-27 17:16:11 | 000,002,767 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\allegro-pl.xml [2011-12-19 18:19:28 | 000,002,310 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml [2012-02-27 17:16:11 | 000,001,406 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\fbc-pl.xml [2012-02-27 17:16:11 | 000,000,917 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\merlin-pl.xml [2012-02-27 17:16:11 | 000,000,858 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\pwn-pl.xml [2012-02-27 17:16:11 | 000,001,183 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-02-27 17:16:11 | 000,001,683 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2 - BHO: (TBSB01620 Class) - {58124A0B-DC32-4180-9BFF-E0E21AE34026} - C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll () O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O3 - HKLM\..\Toolbar: (IMinent Toolbar) - {977AE9CC-AF83-45E8-9E03-E2798216E2D5} - C:\Program Files (x86)\IMinent Toolbar\tbcore3.dll () O4:[b]64bit:[/b] - HKLM..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronic Corp.) O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [RMActivate_ssp] C:\Users\Grzegorz\AppData\Local\Microsoft\Windows\2397\RMActivate_ssp.exe () O4:[b]64bit:[/b] - HKLM..\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe () O4:[b]64bit:[/b] - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation) O4 - HKLM..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [ControlCenter3] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe () O4 - HKCU..\Run: [] File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8:[b]64bit:[/b] - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000 File not found O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000 File not found O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - Reg Error: Value error. File not found O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - Reg Error: Value error. File not found O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\OFFICE11\REFIEBAR.DLL (Microsoft Corporation) O13[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {92ECE6FA-AC2E-4042-BFAE-0C8608E52A43} https://www.bph.pl/sezam/components/SignActivX.cab (SignActivX Control) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A8EEBA50-F266-4188-AA58-0157249294AA}: DhcpNameServer = 192.168.1.1 192.168.1.1 O18:[b]64bit:[/b] - Protocol\Handler\msdaipp - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\msdaipp\oledb - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\mso-offdap - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\mso-offdap11 - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\10\OWC10.DLL (Microsoft Corporation) O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Filter\text/xml - No CLSID value found O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation) O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2012-07-14 10:20:45 | 000,146,368 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ] O33 - MountPoints2\{a5554f50-44e2-11e0-be1f-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{a5554f50-44e2-11e0-be1f-806e6f6e6963}\Shell\AutoRun\command - "" = D:\InstAll.exe O33 - MountPoints2\{b99ef8f0-ce15-11e0-968b-bcaec5a04187}\Shell - "" = AutoRun O33 - MountPoints2\{b99ef8f0-ce15-11e0-968b-bcaec5a04187}\Shell\AutoRun\command - "" = G:\start.exe O33 - MountPoints2\{d6566358-c255-11e0-bc22-bcaec5a04187}\Shell - "" = AutoRun O33 - MountPoints2\{d6566358-c255-11e0-bc22-bcaec5a04187}\Shell\AutoRun\command - "" = F:\NokiaPCIA_Autorun.exe O34 - HKLM BootExecute: (autocheck autochk *) O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-17 10:06:25 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Grzegorz\Desktop\OTL.exe [2012-07-17 09:29:27 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Roaming\hellomoto [2012-07-17 07:14:07 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{428F8325-F0B1-42B8-84C4-F4CC300CC6C2} [2012-07-17 07:13:55 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{EBB0EADE-53C9-4D69-B3D0-BA7BBE3F7C83} [2012-07-16 12:36:24 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{D73440F6-367F-46CB-B8CF-9D10FE139172} [2012-07-16 12:36:12 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{A284A1BB-4AFB-4B26-82F5-4322B973C2B2} [2012-07-15 12:18:52 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{48EB1749-C04E-4FDB-913B-1ED50B36BD8E} [2012-07-15 12:18:40 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{09AFE193-6F95-4C49-8C89-33C701B924B9} [2012-07-14 09:37:57 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{94604669-A1F0-4922-A3E0-B0A4D6E9F9FC} [2012-07-14 09:37:45 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{1BF55ADC-3B4F-4B23-ACC5-40631D7F6342} [2012-07-13 21:37:33 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{0951EC41-6327-4A9B-BD2E-05A83614B85D} [2012-07-13 21:37:22 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{F85FC267-7E2D-404B-830D-30D2A5DF31DD} [2012-07-13 07:18:36 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{F8ABC150-33A6-41E3-A72C-393DD0F0DE93} [2012-07-13 07:18:25 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{8B1F02DC-08DF-4725-8D2A-063F0C0FAAB7} [2012-07-12 13:20:28 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{96C2F27F-CAE4-4555-B762-F2E4F483C66E} [2012-07-12 13:20:16 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{0139D4C9-8C68-4B09-98C9-1E7BDCD42B71} [2012-07-11 20:01:21 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll [2012-07-11 20:01:21 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll [2012-07-11 20:01:21 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll [2012-07-11 20:01:21 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll [2012-07-11 20:01:20 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll [2012-07-11 20:01:20 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll [2012-07-11 20:01:19 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe [2012-07-11 20:01:19 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe [2012-07-11 20:01:18 | 002,311,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll [2012-07-11 20:01:18 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl [2012-07-11 20:01:18 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl [2012-07-11 20:01:18 | 000,818,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll [2012-07-11 20:01:18 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll [2012-07-11 08:37:21 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{8CF2B6CD-2DD5-4ADA-BA1F-D29346138413} [2012-07-11 08:37:10 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{0AFCDE5F-0C29-4EE1-A62E-D7FC31ECE561} [2012-07-11 07:48:19 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll [2012-07-11 07:48:19 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll [2012-07-11 07:48:13 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll [2012-07-11 07:48:05 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll [2012-07-11 07:48:05 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll [2012-07-10 08:37:08 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{A3B7B246-CD71-494E-B085-133582B4F061} [2012-07-10 08:36:57 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{A0806474-C78F-4493-9792-289358E9A636} [2012-07-09 20:36:32 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{86AEB463-5629-4441-AB5A-FAC420EED087} [2012-07-09 20:36:21 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{714B1B3E-125C-4C26-84FC-687B1BCD88FB} [2012-07-09 08:35:55 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{A9A92105-30D9-4499-8B11-0C9DCEF4CC17} [2012-07-09 08:35:43 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{C2D7427C-8279-40E6-9CE9-BD7920398A64} [2012-07-07 23:34:41 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{405AAD11-DC10-4020-8E94-2D2F1F6047D5} [2012-07-07 09:49:24 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{CF3D67D4-9023-4010-9672-E7EDB802C692} [2012-07-07 09:49:13 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{45EEF9C4-E330-4C4B-ADBC-056A567B7E5A} [2012-07-06 18:55:27 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{911B1038-944C-4CA9-AE8A-0EE3156607E1} [2012-07-06 18:55:16 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{AF9321EF-3E89-43C7-BAC7-908D8C9DB22D} [2012-07-06 07:38:51 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{AA0B02F1-3F48-48FA-B77B-447DDFCDC132} [2012-07-05 07:47:46 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{1C8FD8BC-D007-427E-B7F5-BB9D26DB6E73} [2012-07-05 07:47:35 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{91D03A95-6D5E-49A2-BA04-25213FFFE7E1} [2012-07-04 12:11:11 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{E94BEFF0-11C3-4E7F-9ED6-1738EE6C261C} [2012-07-04 12:10:59 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{163FD34A-AB85-4A5B-BFE1-EBCA1E2E7D2E} [2012-07-03 07:58:18 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{F8875C02-DC45-47D1-8CA5-75E25FC190AE} [2012-07-03 07:58:07 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{7CD1636C-B531-4AC3-A4BF-A6010BA9616A} [2012-07-02 09:29:08 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{9A8FC731-F60D-4928-ACBA-3FA8FFB533D7} [2012-07-02 09:28:56 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{B4877AE2-9460-4F70-B4FD-AF519BC6C6BE} [2012-06-30 18:06:16 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{8ABCCF16-6A68-42DB-9617-81926E3AAE4F} [2012-06-30 18:06:04 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{BF7D5ADA-5333-4480-AD96-3258A258A900} [2012-06-29 08:19:54 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{05200432-270F-49B4-804B-7767EC49D717} [2012-06-29 08:19:40 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{627A8090-4084-4CD8-9CE0-4CBC5DAC0295} [2012-06-28 20:05:42 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{3929D715-0E4E-40B6-9BE9-82B73E86A6AC} [2012-06-28 20:05:30 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{C6A355FF-A56A-4373-B2FD-89B02985AB8E} [2012-06-28 08:00:18 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{3DBB1CCE-2757-4986-B29B-A48D68EA9EB5} [2012-06-28 08:00:06 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{80CAA642-9ADD-4365-AC50-0F4577399D9D} [2012-06-27 10:41:17 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{C632EFDE-E551-4F11-B0E2-CC10239037D1} [2012-06-27 10:41:05 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{34785EE2-0E02-41E5-8127-9177F8DBCB1E} [2012-06-26 08:35:36 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{1AC94F86-5574-4A57-B38F-DDECBEF04D45} [2012-06-26 08:35:24 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{869FE0EC-53FC-4246-A0D4-334B9459D1E8} [2012-06-25 08:48:53 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{9F1C8430-ED62-45C7-A398-8CBF8673EAD0} [2012-06-25 08:48:42 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{61B8778C-8CA7-4DBB-BDAF-DF056B721460} [2012-06-23 07:56:09 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{54027C37-0920-44CA-80D0-DC149EE0C74D} [2012-06-23 07:55:57 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{70D9DC07-5F64-489F-B16D-DDB0C4E1FFA7} [2012-06-22 08:45:41 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{1A0E5192-C56F-4769-8A0F-88848099F452} [2012-06-22 08:45:30 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{6EFD5138-76FB-4A15-8EBF-1C6A8EF2F2D8} [2012-06-21 20:44:08 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{47884572-8809-482D-AF34-F932DE123151} [2012-06-21 20:43:56 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{C9C7A689-11F9-46AA-98BF-8ACFEC693087} [2012-06-21 08:43:31 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{5ABBA101-B5D2-4C15-A6A1-AAFD7E1F2ED8} [2012-06-21 08:43:19 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{5B684F8E-CF8A-444B-BB39-10F133313A50} [2012-06-21 08:15:20 | 002,622,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll [2012-06-21 08:15:20 | 000,057,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe [2012-06-21 08:15:20 | 000,044,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll [2012-06-21 08:15:12 | 000,701,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll [2012-06-21 08:15:12 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll [2012-06-21 08:15:12 | 000,038,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll [2012-06-21 08:14:59 | 000,186,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll [2012-06-21 08:14:59 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe [2012-06-20 20:42:55 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{19098F6D-383A-44E5-B138-588C172D6B24} [2012-06-20 20:42:44 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{FED09FAB-CAC1-4722-9701-9A8A76B4EF95} [2012-06-20 08:42:30 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{4AEDC6E3-E9FF-4986-8CA3-88661325A5A7} [2012-06-20 08:42:15 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{15BC7FB6-2D7C-4CCD-B8FC-3904431208A2} [2012-06-19 11:28:02 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{8C035B63-E12B-4A26-94BD-53E2889DD978} [2012-06-19 11:27:50 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{E4E382C8-6047-424B-B02D-82E93F3B6BBF} [2012-06-18 22:48:20 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{9E753F42-86F7-4E0F-95B6-68E3E936E925} [2012-06-18 09:35:01 | 000,000,000 | ---D | C] -- C:\Users\Grzegorz\AppData\Local\{4CC02FCB-1618-4599-989F-7D21E3DF67A9} [2008-08-11 22:45:20 | 000,155,648 | ---- | C] (ASUS) -- C:\Program Files (x86)\Common Files\MSIactionall.dll [1 C:\Users\Grzegorz\Desktop\*.tmp files -> C:\Users\Grzegorz\Desktop\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-17 10:07:15 | 001,736,330 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2012-07-17 10:07:15 | 000,764,068 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2012-07-17 10:07:15 | 000,682,204 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2012-07-17 10:07:15 | 000,160,108 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2012-07-17 10:07:15 | 000,131,514 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2012-07-17 10:01:53 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012-07-17 10:01:43 | 3054,796,800 | -HS- | M] () -- C:\hiberfil.sys [2012-07-17 10:00:14 | 000,045,056 | ---- | M] () -- C:\Windows\SysNative\acovcnt.exe [2012-07-17 09:59:02 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Grzegorz\Desktop\OTL.exe [2012-07-17 09:49:27 | 000,001,800 | ---- | M] () -- C:\Windows\SysNative\AutoRunFilter.ini [2012-07-17 09:15:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2012-07-17 07:19:44 | 000,015,328 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012-07-17 07:19:44 | 000,015,328 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012-07-16 20:45:52 | 005,495,913 | ---- | M] () -- C:\Users\Grzegorz\Desktop\ZYTEL_MINLON_Poradnik_Przetworstwa.pdf [2012-07-13 13:07:19 | 000,172,046 | ---- | M] () -- C:\Users\Grzegorz\Desktop\20mm.PNG [2012-07-13 11:06:36 | 001,479,089 | ---- | M] () -- C:\Users\Grzegorz\Desktop\20120713300.jpg [2012-07-11 20:26:26 | 000,371,760 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2012-07-11 09:25:56 | 000,067,801 | ---- | M] () -- C:\Users\Grzegorz\Desktop\umowa-o-prace.krzysiek.rtf [2012-07-10 17:12:07 | 000,895,835 | ---- | M] () -- C:\Users\Grzegorz\Desktop\Mechanik_40.pdf [2012-07-10 17:09:15 | 000,229,777 | ---- | M] () -- C:\Users\Grzegorz\Desktop\01_zenkiewicz.pdf [2012-07-10 15:25:35 | 000,000,860 | ---- | M] () -- C:\Users\Grzegorz\Documents\cc_20120710_152529.reg [2012-07-05 09:51:15 | 000,000,084 | ---- | M] () -- C:\Windows\InsRpPrint.INI [2012-06-28 17:13:14 | 000,002,358 | ---- | M] () -- C:\Users\Grzegorz\Documents\cc_20120628_171243.reg [2012-06-28 12:09:11 | 000,082,765 | ---- | M] () -- C:\Users\Grzegorz\Desktop\pm1.pdf [2012-06-26 10:50:09 | 000,128,325 | ---- | M] () -- C:\Users\Grzegorz\Desktop\lamak.jpg [2012-06-24 16:02:46 | 000,617,409 | ---- | M] () -- C:\Users\Grzegorz\Desktop\3.JPG [2012-06-24 16:02:18 | 000,554,917 | ---- | M] () -- C:\Users\Grzegorz\Desktop\4.JPG [2012-06-24 16:02:06 | 000,550,745 | ---- | M] () -- C:\Users\Grzegorz\Desktop\SDC12536.JPG [2012-06-24 16:01:54 | 000,553,014 | ---- | M] () -- C:\Users\Grzegorz\Desktop\SDC12535.JPG [2012-06-24 16:01:34 | 000,562,477 | ---- | M] () -- C:\Users\Grzegorz\Desktop\2.JPG [2012-06-24 16:01:10 | 000,551,885 | ---- | M] () -- C:\Users\Grzegorz\Desktop\1.JPG [1 C:\Users\Grzegorz\Desktop\*.tmp files -> C:\Users\Grzegorz\Desktop\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-16 20:45:52 | 005,495,913 | ---- | C] () -- C:\Users\Grzegorz\Desktop\ZYTEL_MINLON_Poradnik_Przetworstwa.pdf [2012-07-13 13:14:59 | 001,479,089 | ---- | C] () -- C:\Users\Grzegorz\Desktop\20120713300.jpg [2012-07-13 13:07:19 | 000,172,046 | ---- | C] () -- C:\Users\Grzegorz\Desktop\20mm.PNG [2012-07-10 17:12:07 | 000,895,835 | ---- | C] () -- C:\Users\Grzegorz\Desktop\Mechanik_40.pdf [2012-07-10 17:09:14 | 000,229,777 | ---- | C] () -- C:\Users\Grzegorz\Desktop\01_zenkiewicz.pdf [2012-07-10 15:25:31 | 000,000,860 | ---- | C] () -- C:\Users\Grzegorz\Documents\cc_20120710_152529.reg [2012-06-28 17:12:45 | 000,002,358 | ---- | C] () -- C:\Users\Grzegorz\Documents\cc_20120628_171243.reg [2012-06-28 12:09:08 | 000,082,765 | ---- | C] () -- C:\Users\Grzegorz\Desktop\pm1.pdf [2012-06-26 10:50:09 | 000,128,325 | ---- | C] () -- C:\Users\Grzegorz\Desktop\lamak.jpg [2012-06-25 09:10:23 | 000,617,409 | ---- | C] () -- C:\Users\Grzegorz\Desktop\3.JPG [2012-06-25 09:10:23 | 000,562,477 | ---- | C] () -- C:\Users\Grzegorz\Desktop\2.JPG [2012-06-25 09:10:23 | 000,554,917 | ---- | C] () -- C:\Users\Grzegorz\Desktop\4.JPG [2012-06-25 09:10:23 | 000,553,014 | ---- | C] () -- C:\Users\Grzegorz\Desktop\SDC12535.JPG [2012-06-25 09:10:23 | 000,551,885 | ---- | C] () -- C:\Users\Grzegorz\Desktop\1.JPG [2012-06-25 09:10:23 | 000,550,745 | ---- | C] () -- C:\Users\Grzegorz\Desktop\SDC12536.JPG [2012-06-01 16:49:38 | 000,007,605 | ---- | C] () -- C:\Users\Grzegorz\AppData\Local\Resmon.ResmonCfg [2012-05-14 11:18:54 | 000,000,084 | ---- | C] () -- C:\Windows\InsRpPrint.INI [2012-02-10 23:38:58 | 000,000,000 | ---- | C] () -- C:\Windows\Net4Switch.INI [2011-12-22 00:10:01 | 000,000,400 | ---- | C] () -- C:\Windows\g_lfolqn712.ini [2011-12-22 00:10:01 | 000,000,400 | ---- | C] () -- C:\Windows\SysWow64\drivers\bfrpsej167.dat [2011-08-23 12:49:24 | 000,001,068 | ---- | C] () -- C:\Windows\Brpfx04a.ini [2011-08-23 12:49:24 | 000,000,164 | ---- | C] () -- C:\Windows\brpcfx.ini [2011-08-23 12:48:55 | 000,000,404 | ---- | C] () -- C:\Windows\BRWMARK.INI [2011-08-23 12:48:09 | 000,000,000 | ---- | C] () -- C:\Windows\brdfxspd.dat [2011-08-12 17:47:33 | 000,009,728 | ---- | C] () -- C:\Users\Grzegorz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-03-05 14:05:58 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI [2011-03-04 11:33:14 | 000,088,064 | ---- | C] () -- C:\Windows\SysWow64\Bmp2Jpeg.dll [2011-03-03 20:09:22 | 000,000,023 | ---- | C] () -- C:\Windows\ODBCINST.INI [2011-03-02 18:03:41 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini [2011-03-02 17:57:46 | 000,208,896 | ---- | C] () -- C:\Windows\SysWow64\iglhsip32.dll [2011-03-02 17:57:45 | 000,870,560 | ---- | C] () -- C:\Windows\SysWow64\igkrng575.bin [2011-03-02 17:57:45 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\iglhcp32.dll [2010-08-25 20:34:30 | 000,127,868 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng575.bin [2010-08-25 20:34:30 | 000,104,796 | ---- | C] () -- C:\Windows\SysWow64\igfcg575m.bin [2009-04-08 11:31:56 | 000,106,496 | ---- | C] () -- C:\Program Files (x86)\Common Files\CPInstallAction.dll [2008-05-22 09:35:54 | 000,051,962 | ---- | C] () -- C:\Program Files (x86)\Common Files\banner.jpg < End of report >