OTL logfile created on: 7/23/2012 5:22:35 PM - Run 2 OTL by OldTimer - Version 3.2.54.0 Folder = D:\ Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000409 | Country: Stany Zjednoczone | Language: ENU | Date Format: M/d/yyyy 767.48 Mb Total Physical Memory | 337.50 Mb Available Physical Memory | 43.97% Memory free 1.83 Gb Paging File | 1.44 Gb Available in Paging File | 78.48% Paging File free Paging file location(s): C:\pagefile.sys 1150 1150 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 22.35 Gb Total Space | 15.52 Gb Free Space | 69.45% Space Free | Partition Type: FAT32 Drive D: | 33.53 Gb Total Space | 3.24 Gb Free Space | 9.68% Space Free | Partition Type: NTFS Drive F: | 1.88 Gb Total Space | 1.54 Gb Free Space | 81.86% Space Free | Partition Type: FAT Computer Name: CAMARILLA | User Name: Michał | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012/07/23 13:10:58 | 000,596,480 | ---- | M] (OldTimer Tools) -- D:\OTL.exe PRC - [2012/06/19 17:32:30 | 003,048,136 | ---- | M] (Skype Technologies S.A.) -- D:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe PRC - [2012/01/31 16:02:52 | 007,391,072 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe PRC - [2012/01/17 21:03:24 | 002,339,168 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\Program Files\AVG\AVG10\avgtray.exe PRC - [2011/09/09 03:10:56 | 001,082,208 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\Program Files\AVG\AVG10\avgnsx.exe PRC - [2011/08/18 01:33:26 | 000,659,296 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\Program Files\AVG\AVG10\avgrsx.exe PRC - [2011/08/04 10:40:56 | 001,003,888 | ---- | M] () -- D:\Documents and Settings\Michał\Dane aplikacji\Mikogo 4\M4-Service.exe PRC - [2011/05/23 14:13:04 | 000,657,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\Program Files\AVG\AVG10\avgchsvx.exe PRC - [2011/04/21 16:54:38 | 000,801,680 | ---- | M] (IObit) -- D:\Program Files\IObit\Advanced SystemCare 4\PMonitor.exe PRC - [2011/04/21 16:54:38 | 000,352,656 | ---- | M] (IObit) -- D:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe PRC - [2011/03/28 03:00:52 | 000,351,072 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\Program Files\AVG\AVG10\avgcsrvx.exe PRC - [2011/02/10 07:55:18 | 001,148,256 | ---- | M] () -- D:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe PRC - [2011/02/08 05:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- D:\Program Files\AVG\AVG10\avgwdsvc.exe PRC - [2009/10/08 01:44:20 | 001,635,328 | ---- | M] () -- D:\Program Files\Clip2Net\clip2net.exe PRC - [2008/04/18 20:39:12 | 000,068,056 | ---- | M] () -- D:\Program Files\Hotspot Shield\bin\openvpnas.exe PRC - [2007/06/13 15:23:49 | 001,034,752 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe PRC - [2007/03/02 14:05:56 | 000,081,920 | ---- | M] (FirebirdSQL Project) -- D:\Program Files\Firebird\Firebird_2_0\bin\fbguard.exe PRC - [2007/03/02 14:05:50 | 001,994,752 | ---- | M] (FirebirdSQL Project) -- D:\Program Files\Firebird\Firebird_2_0\bin\fbserver.exe PRC - [2005/07/15 23:48:33 | 000,479,232 | ---- | M] (Google Inc.) -- D:\Program Files\Google\Gmail Notifier\gnotify.exe PRC - [2005/07/13 19:38:38 | 001,378,304 | ---- | M] (AlfaSoft Research Labs) -- C:\Program Files\AlfaClock\AlfaClock.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2011/08/04 10:40:56 | 001,003,888 | ---- | M] () -- D:\Documents and Settings\Michał\Dane aplikacji\Mikogo 4\M4-Service.exe MOD - [2011/04/21 16:54:42 | 000,126,864 | ---- | M] () -- D:\Program Files\IObit\Advanced SystemCare 4\ASCv4ExtMenu.dll MOD - [2011/04/21 16:54:40 | 000,347,024 | ---- | M] () -- D:\Program Files\IObit\Advanced SystemCare 4\madexcept_.bpl MOD - [2011/04/21 16:54:40 | 000,179,088 | ---- | M] () -- D:\Program Files\IObit\Advanced SystemCare 4\madbasic_.bpl MOD - [2011/04/21 16:54:40 | 000,046,480 | ---- | M] () -- D:\Program Files\IObit\Advanced SystemCare 4\maddisAsm_.bpl MOD - [2011/02/10 07:55:18 | 001,148,256 | ---- | M] () -- D:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe MOD - [2011/01/01 12:55:56 | 000,032,768 | ---- | M] () -- C:\AMV Convert Tool\AmvTransform.dll MOD - [2009/10/08 01:44:20 | 001,635,328 | ---- | M] () -- D:\Program Files\Clip2Net\clip2net.exe MOD - [2009/06/11 01:29:08 | 000,175,104 | ---- | M] () -- D:\Program Files\WapSter\WapSter AQQ\System\AQQShellExt.dll MOD - [2008/04/18 20:39:12 | 000,068,056 | ---- | M] () -- D:\Program Files\Hotspot Shield\bin\openvpnas.exe MOD - [2008/01/23 01:45:16 | 000,310,616 | ---- | M] () -- D:\Program Files\Hotspot Shield\bin\libssl32.dll MOD - [2008/01/23 01:45:14 | 001,527,751 | ---- | M] () -- D:\Program Files\Hotspot Shield\bin\libeay32.dll MOD - [2006/10/22 13:22:00 | 000,466,944 | ---- | M] () -- D:\WINDOWS\system32\nvshell.dll MOD - [2006/10/22 13:22:00 | 000,212,992 | ---- | M] () -- D:\WINDOWS\system32\nvapi.dll MOD - [2006/02/20 21:13:21 | 000,051,716 | ---- | M] () -- D:\WINDOWS\system32\pdf995mon.dll MOD - [2005/07/08 15:18:30 | 000,171,520 | ---- | M] () -- C:\Program Files\AlfaClock\TrayClock.dll MOD - [2005/06/06 23:38:24 | 000,125,440 | ---- | M] () -- D:\Program Files\WinRAR\RarExt.dll MOD - [2001/10/28 17:42:30 | 000,116,224 | ---- | M] () -- D:\WINDOWS\system32\pdfcmnnt.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2012/07/11 23:17:13 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- D:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012/06/19 17:32:30 | 003,048,136 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- D:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service) SRV - [2012/06/07 19:12:14 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- D:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012/01/31 16:02:52 | 007,391,072 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- D:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent) SRV - [2011/08/04 10:40:56 | 001,003,888 | ---- | M] () [Auto | Running] -- D:\Documents and Settings\Michał\Dane aplikacji\Mikogo 4\M4-Service.exe -- (M4-Service) SRV - [2011/04/21 16:54:38 | 000,352,656 | ---- | M] (IObit) [Auto | Running] -- D:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService) SRV - [2011/02/08 05:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- D:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd) SRV - [2008/04/18 20:39:12 | 000,068,056 | ---- | M] () [Auto | Running] -- D:\Program Files\Hotspot Shield\bin\openvpnas.exe -- (HotspotShieldService) SRV - [2007/12/10 14:59:04 | 000,353,280 | ---- | M] (Nokia.) [On_Demand | Stopped] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2007/03/02 14:05:56 | 000,081,920 | ---- | M] (FirebirdSQL Project) [Auto | Running] -- D:\Program Files\Firebird\Firebird_2_0\bin\fbguard.exe -- (FirebirdGuardianDefaultInstance) SRV - [2007/03/02 14:05:50 | 001,994,752 | ---- | M] (FirebirdSQL Project) [On_Demand | Running] -- D:\Program Files\Firebird\Firebird_2_0\bin\fbserver.exe -- (FirebirdServerDefaultInstance) SRV - [2004/03/31 17:55:24 | 000,172,544 | ---- | M] (INCA Internet Co., Ltd.) [Auto | Stopped] -- D:\WINDOWS\system32\npkcsvc.exe -- (npkcsvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | Boot | Running] -- System32\Drivers\sptd.sys -- (sptd) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2011/05/27 19:05:44 | 000,134,480 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver) DRV - [2011/04/05 00:59:56 | 000,297,168 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix) DRV - [2011/03/16 16:03:20 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- D:\WINDOWS\system32\drivers\avgrkx86.sys -- (Avgrkx86) DRV - [2011/03/01 14:25:18 | 000,034,896 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- D:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86) DRV - [2011/02/22 08:13:02 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\AVGIDSEH.sys -- (AVGIDSEH) DRV - [2011/02/10 07:53:54 | 000,027,216 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim) DRV - [2011/02/10 07:53:52 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter) DRV - [2011/01/07 06:41:46 | 000,248,656 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86) DRV - [2010/07/29 01:25:42 | 000,025,112 | ---- | M] (Initio Corporation) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ivusb.sys -- (ivusb) DRV - [2010/07/12 04:33:54 | 000,030,432 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwfd) DRV - [2010/07/12 04:33:54 | 000,030,432 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\avgfwdx.sys -- (Avgfwdx) DRV - [2010/05/10 20:41:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- D:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL) DRV - [2010/02/17 20:25:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- D:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV) DRV - [2008/12/22 23:49:03 | 000,025,280 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2008/03/17 12:03:46 | 000,101,376 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2008/01/23 23:25:30 | 000,027,136 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\tapvpn.sys -- (tapvpn) DRV - [2007/10/19 10:50:50 | 000,024,320 | ---- | M] (Steganos GmbH) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\tapavpn.sys -- (tapavpn) DRV - [2007/05/11 03:10:50 | 000,034,704 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2007/05/09 01:59:40 | 000,036,496 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2007/03/05 06:00:04 | 000,027,792 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\BlueletSCOAudio.sys -- (BlueletSCOAudio) DRV - [2007/03/05 05:59:04 | 000,018,320 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT) DRV - [2007/03/05 05:56:18 | 000,035,600 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\BTHidMgr.sys -- (BTHidMgr) DRV - [2007/03/05 05:55:12 | 000,020,880 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\vbtenum.sys -- (BTHidEnum) DRV - [2007/03/05 05:53:18 | 000,044,304 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2007/03/05 05:52:18 | 000,034,448 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2005/01/04 02:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\npptNT2.sys -- (NPPTNT2) DRV - [2004/08/03 23:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\rtl8139.sys -- (rtl8139) Sterownik NT karty Realtek RTL8139(A/B/C) DRV - [2004/07/16 10:24:34 | 000,016,512 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\ASPI32.SYS -- (Aspi32) DRV - [2003/09/19 19:23:40 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\VMNetSrv.sys -- (VPCNetS2) DRV - [2002/09/26 08:41:58 | 000,029,312 | R--- | M] (Silicon Integrated Systems Corporation) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\SISAGPX.SYS -- (sisagp) DRV - [2002/08/20 11:19:08 | 000,009,472 | R--- | M] (Silicon Integrated Systems Corp.) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\sisperf.sys -- (sisperf) DRV - [2002/07/30 10:46:28 | 000,005,760 | R--- | M] (Silicon Integrated Systems Corp.) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\siside.sys -- (SiSide) DRV - [2002/05/28 10:21:10 | 000,048,896 | R--- | M] (Windows (R) 2000 DDK provider) [File_System | Boot | Running] -- D:\WINDOWS\system32\drivers\sisidex.sys -- (sisidex) DRV - [2002/04/24 04:14:28 | 000,011,569 | ---- | M] (Matsushita Electric Industrial Co., Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\mtdv2ks1.sys -- (MTDVC_ENUM) DRV - [2002/04/12 02:17:30 | 000,015,217 | ---- | M] (Matsushita Electric Industrial Co., Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\mtdv2km1.sys -- (MTSTOR) DRV - [2002/04/12 02:14:14 | 000,012,590 | ---- | M] (Matsushita Electric Industrial Co., Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\mtdv2ku1.sys -- (MTDVC) DRV - [2001/08/17 22:28:12 | 000,488,383 | ---- | M] (Conexant) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\HSF_V124.sys -- (V124) DRV - [2001/08/17 22:28:12 | 000,050,751 | ---- | M] (Conexant) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\HSF_TONE.sys -- (Tones) DRV - [2001/08/17 22:28:10 | 000,542,879 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\HSF_MSFT.sys -- (hsf_msft) DRV - [2001/08/17 22:28:10 | 000,073,279 | ---- | M] (Conexant) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\HSF_SPKP.sys -- (SpeakerPhone) DRV - [2001/08/17 22:28:10 | 000,057,471 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\HSF_SAMP.sys -- (Rksample) DRV - [2001/08/17 22:28:08 | 000,391,199 | ---- | M] (Conexant) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\HSF_K56K.sys -- (K56) DRV - [2001/08/17 22:28:06 | 000,289,887 | ---- | M] (Conexant) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\HSF_FALL.sys -- (Fallback) DRV - [2001/08/17 22:28:06 | 000,199,711 | ---- | M] (Conexant) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\HSF_FAXX.sys -- (SoftFax) DRV - [2001/08/17 22:28:06 | 000,115,807 | ---- | M] (Conexant) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\HSF_FSKS.sys -- (Fsks) DRV - [2001/08/17 22:28:04 | 000,067,167 | ---- | M] (Conexant) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\HSF_BSC2.sys -- (basic2) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search, = IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKLM\..\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZJman000&ptb=5QSRbiFPDB4jqGSSqMJGLA&psa=&ind=2010123015&ptnrS=ZJman000&si=&st=sb&n=77d00b07&searchfor={searchTerms} IE - HKLM\..\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}: "URL" = http://us.yhs.search.yahoo.com/avg/search?fr=yhs-avg-chrome&type=yahoo_avg_hs2-tb-web_chrome_us&p={searchTerms} IE - HKU\.DEFAULT\..\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}: "URL" = http://us.yhs.search.yahoo.com/avg/search?fr=yhs-avg-chrome&type=yahoo_avg_hs2-tb-web_chrome_us&p={searchTerms} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}: "URL" = http://us.yhs.search.yahoo.com/avg/search?fr=yhs-avg-chrome&type=yahoo_avg_hs2-tb-web_chrome_us&p={searchTerms} IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\..\SearchScopes,DefaultScope = {CCC7A320-B3CA-4199-B1A6-9F516DD69829} IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\..\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0}: "URL" = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=ZJman000&ptb=5QSRbiFPDB4jqGSSqMJGLA&psa=&ind=2010123015&ptnrS=ZJman000&si=&st=sb&n=77d00b07&searchfor={searchTerms} IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\..\SearchScopes\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}: "URL" = http://search.avg.com/route/?d=4dd26e5f&v=7.4.22.4&i=26&tp=chrome&q={searchTerms}&lng={language}&iy=&ychte=us IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\..\SearchScopes\{DDE13475-DF5C-4968-9E80-00562718C449}: "URL" = http://www.google.pl/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = plimus.com,www.plimus.com,regnow.com,www.regnow.com, IE - HKU\S-1-5-21-484763869-448539723-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = socks= [color=#E56717]========== FireFox ==========[/color] FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll () FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: c:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: D:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2303: D:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.2.2361: D:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1465: D:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: D:\Documents and Settings\Michał\Dane aplikacji\Mozilla\plugins\npgoogletalk.dll (Google) FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: D:\Documents and Settings\Michał\Dane aplikacji\Mozilla\plugins\npgtpo3dautoplugin.dll () FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: D:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/04/16 09:07:42 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: D:\Program Files\AVG\AVG10\Firefox4\ [2012/02/03 10:42:32 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2011/06/28 13:19:48 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2011/10/21 21:04:11 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: D:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/04/16 09:07:42 | 000,000,000 | ---D | M] [2011/06/28 13:35:16 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Michał\Dane aplikacji\Mozilla\Extensions [2011/09/01 23:19:23 | 000,000,000 | ---D | M] (No name found) -- D:\Documents and Settings\Michał\Dane aplikacji\Mozilla\Firefox\Profiles\7vd1r0ma.default\extensions [2011/09/01 23:19:23 | 000,000,000 | ---D | M] (DownloadHelper) -- D:\Documents and Settings\Michał\Dane aplikacji\Mozilla\Firefox\Profiles\7vd1r0ma.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2011/08/26 08:41:09 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\extensions [2012/06/25 10:44:40 | 000,000,000 | ---D | M] (Skype Click to Call) -- D:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} File not found (No name found) -- D:\DOCUMENTS AND SETTINGS\MICHAĹ‚\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\7VD1R0MA.DEFAULT\EXTENSIONS\{B9DB16A4-6EDC-47EC-A1F4-B86292ED211D} [2012/02/03 10:42:32 | 000,000,000 | ---D | M] (AVG Safe Search) -- D:\PROGRAM FILES\AVG\AVG10\FIREFOX4 [2009/10/04 12:21:30 | 000,000,000 | ---D | M] (Java Quick Starter) -- D:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2009/09/02 12:00:43 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- D:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION [2011/06/16 06:17:34 | 000,142,296 | ---- | M] (Mozilla Foundation) -- D:\Program Files\mozilla firefox\components\browsercomps.dll [2010/01/01 10:00:00 | 000,002,252 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\bing.xml [color=#E56717]========== Chrome ==========[/color] CHR - homepage: http://www.google.com CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms} CHR - homepage: http://www.google.com CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = D:\Documents and Settings\Micha\u0142\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.57\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Disabled) = D:\Documents and Settings\Micha\u0142\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.57\pdf.dll CHR - plugin: Shockwave Flash (Enabled) = D:\Documents and Settings\Micha\u0142\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\20.0.1132.57\gcswf32.dll CHR - plugin: Shockwave Flash (Disabled) = D:\Documents and Settings\Micha\u0142\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll CHR - plugin: Shockwave Flash (Enabled) = D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll CHR - plugin: AVG Internet Security (Enabled) = D:\Documents and Settings\Micha\u0142\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\plugins/avgnpss.dll CHR - plugin: Google Talk Plugin (Enabled) = D:\Documents and Settings\Micha\u0142\Dane aplikacji\Mozilla\plugins\npgoogletalk.dll CHR - plugin: Google Talk Plugin Video Accelerator (Enabled) = D:\Documents and Settings\Micha\u0142\Dane aplikacji\Mozilla\plugins\npgtpo3dautoplugin.dll CHR - plugin: Adobe Acrobat (Enabled) = D:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll CHR - plugin: Java Deployment Toolkit 6.0.150.3 (Enabled) = D:\Program Files\Java\jre6\bin\new_plugin\npdeploytk.dll CHR - plugin: Java(TM) Platform SE 6 U15 (Enabled) = D:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll CHR - plugin: DivX Web Player (Enabled) = D:\Program Files\Mozilla Firefox\plugins\npdivx32.dll CHR - plugin: QuickTime Plug-in 7.1.6 (Enabled) = D:\Program Files\QuickTime\plugins\npqtplugin.dll CHR - plugin: QuickTime Plug-in 7.1.6 (Enabled) = D:\Program Files\QuickTime\plugins\npqtplugin2.dll CHR - plugin: QuickTime Plug-in 7.1.6 (Enabled) = D:\Program Files\QuickTime\plugins\npqtplugin3.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = D:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = D:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = D:\Program Files\Windows Media Player\npdsplay.dll CHR - plugin: Google Update (Enabled) = D:\Documents and Settings\Micha\u0142\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll CHR - plugin: Silverlight Plug-In (Enabled) = D:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = D:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll CHR - plugin: RealPlayer Version Plugin (Enabled) = D:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll CHR - plugin: RealJukebox NS Plugin (Enabled) = D:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll CHR - plugin: Windows Presentation Foundation (Enabled) = D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll CHR - Extension: YouTube = D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Szukaj w Google = D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\ CHR - Extension: AVG Safe Search = D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\10.0.0.1409_0\ CHR - Extension: Skype Click to Call = D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.0.0.10297_0\ CHR - Extension: ICE Quick Stream = D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mapljocpedaolbooelchgnkkaplpadgp\4.0_0\ CHR - Extension: Gmail = D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2011/12/22 16:11:00 | 000,000,732 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - D:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - D:\Documents and Settings\Michał\Dane aplikacji\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.) O3 - HKU\S-1-5-21-484763869-448539723-839522115-1003\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O4 - HKLM..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Google\Gmail Notifier\gnotify.exe (Google Inc.) O4 - HKLM..\Run: [AVG_TRAY] D:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [Computer Alarm Clock] D:\Program Files\Computer Alarm Clock\cac.exe (Think Art Computing.) O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] D:\WINDOWS\System32\nwiz.exe () O4 - HKU\S-1-5-21-484763869-448539723-839522115-1003..\Run: [AlfaClock Classic] C:\Program Files\AlfaClock\AlfaClock.exe (AlfaSoft Research Labs) O4 - HKU\S-1-5-21-484763869-448539723-839522115-1003..\Run: [Clip2Net] D:\Program Files\Clip2Net\clip2net.exe () O4 - HKU\S-1-5-21-484763869-448539723-839522115-1003..\Run: [ptpabkfakbxpats] D:\Documents and Settings\All Users\Dane aplikacji\ptpabkfa.exe File not found O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRemoteRecursiveEvents = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStrCmpLogical = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousMachineGroupPolicy = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousUserGroupPolicy = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Restrictions present O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMBalloonTip = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: CDRAutoRun = 0 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: MemCheckBoxInRunDlg = 0 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoAutoTrayNotify = 0 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 0 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWelcomeScreen = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsNetHood = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktopCleanupWizard = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSharedDocuments = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLegacyLogonScripts = 0 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideLogoffScripts = 0 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunLogonScriptSync = 1 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0 O7 - HKU\S-1-5-21-484763869-448539723-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: HideStartupScripts = 0 O8 - Extra context menu item: &Clean Traces - D:\Program Files\DAP\Privacy Package\dapcleanerie.htm () O8 - Extra context menu item: &Download by Orbit - res://D:\Program Files\Orbitdownloader\orbitmxt.dll/201 File not found O8 - Extra context menu item: &Download with &DAP - D:\Program Files\DAP\dapextie.htm () O8 - Extra context menu item: &Grab video by Orbit - res://D:\Program Files\Orbitdownloader\orbitmxt.dll/204 File not found O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?s=100000338&p=ZJman000&si=&a=5QSRbiFPDB4jqGSSqMJGLA&n=2010123015 File not found O8 - Extra context menu item: Do&wnload selected by Orbit - res://D:\Program Files\Orbitdownloader\orbitmxt.dll/203 File not found O8 - Extra context menu item: Down&load all by Orbit - res://D:\Program Files\Orbitdownloader\orbitmxt.dll/202 File not found O8 - Extra context menu item: Download &all with DAP - D:\Program Files\DAP\dapextie2.htm () O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O16 - DPF: {03A89EFD-E023-A200-A22D-45F77558EB4C} https://content10.ilinc.com/download/AXCltInstall.dll (ILINCInstall102 Class) O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class) O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {92ECE6FA-AC2E-4042-BFAE-0C8608E52A43} https://www.bph.pl/sezam/components/SignActivX.cab (SignActivX Control) O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://elementtrading.webex.com/client/T27LB/training/ieatgpc.cab (GpcContainer Class) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O16 - DPF: DirectAnimation Java Classes Reg Error: Value error. (Reg Error: Key error.) O16 - DPF: Microsoft XML Parser for Java Reg Error: Value error. (Reg Error: Key error.) O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - D:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (D:\WINDOWS\system32\userinit.exe) - D:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\!SASWinLogon: DllName - (D:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - D:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - D:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2005/05/14 14:13:44 | 000,000,164 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ] O32 - AutoRun File - [2006/03/24 13:06:42 | 000,000,053 | ---- | M] () - F:\AUTORUN.INF -- [ FAT ] O33 - MountPoints2\{1a7dca6a-39a0-11df-8464-0002444bc1c1}\Shell\AutoRun\command - "" = F:\reatogoMenu.exe -- [2005/07/16 23:36:50 | 000,240,128 | ---- | M] () O33 - MountPoints2\{7e3ddb5c-2c7b-11e0-8746-00158315a310}\Shell - "" = AutoRun O33 - MountPoints2\{7e3ddb5c-2c7b-11e0-8746-00158315a310}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{7e3ddb5d-2c7b-11e0-8746-00158315a310}\Shell - "" = AutoRun O33 - MountPoints2\{7e3ddb5d-2c7b-11e0-8746-00158315a310}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{8bd397b8-c082-11de-8350-0002444bc6e8}\Shell\AutoRun\command - "" = F:\b9v.exe O33 - MountPoints2\{8bd397b8-c082-11de-8350-0002444bc6e8}\Shell\open\Command - "" = F:\b9v.exe O33 - MountPoints2\{d1213173-88c5-11dd-8396-0002444bc6e8}\Shell\AutoRun\command - "" = F:\io3yalc.exe O33 - MountPoints2\{d1213173-88c5-11dd-8396-0002444bc6e8}\Shell\open\Command - "" = F:\io3yalc.exe O34 - HKLM BootExecute: (autocheck autochk *) O34 - HKLM BootExecute: (D:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) O34 - HKLM BootExecute: (D:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012/07/23 22:57:27 | 000,000,000 | ---D | C] -- D:\_OTL [2012/07/23 17:12:23 | 000,596,480 | ---- | C] (OldTimer Tools) -- D:\OTL.exe [2012/07/23 08:38:57 | 000,000,000 | -HSD | C] -- D:\WINDOWS\CSC [2012/07/20 19:38:23 | 000,000,000 | ---D | C] -- D:\blogger [2012/07/20 17:16:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\Forex Knights Line Copier [2012/07/08 00:28:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Menu Start\Programy\TuxGuitar 1.2 [2012/07/08 00:26:54 | 000,000,000 | ---D | C] -- D:\Program Files\TuxGuitar-Jet [2012/06/30 13:02:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Michał\Dane aplikacji\Leadertech [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012/07/23 17:16:15 | 000,000,830 | ---- | M] () -- D:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012/07/23 17:16:12 | 000,000,986 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-484763869-448539723-839522115-1003UA.job [2012/07/23 17:09:28 | 000,555,652 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2012/07/23 17:09:28 | 000,493,588 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2012/07/23 17:09:28 | 000,104,808 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2012/07/23 17:09:28 | 000,084,132 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2012/07/23 17:05:16 | 000,089,563 | ---- | M] () -- D:\WINDOWS\System32\nvapps.xml [2012/07/23 17:05:13 | 000,000,272 | ---- | M] () -- D:\WINDOWS\tasks\ASC4_PerformanceMonitor.job [2012/07/23 17:05:07 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2012/07/23 15:56:34 | 000,881,494 | ---- | M] () -- D:\SecurityCheck.exe [2012/07/23 13:10:58 | 000,596,480 | ---- | M] (OldTimer Tools) -- D:\OTL.exe [2012/07/23 13:01:48 | 000,980,480 | ---- | M] () -- D:\MicrosoftFixit50267.msi [2012/07/23 09:59:48 | 000,302,592 | ---- | M] () -- D:\l6nvt423.exe [2012/07/23 00:25:57 | 000,053,248 | ---- | M] () -- D:\Documents and Settings\Michał\ms.exe [2012/07/23 00:25:27 | 000,053,248 | ---- | M] () -- D:\Documents and Settings\Michał\0.561409784198423.exe [2012/07/22 19:57:08 | 001,239,529 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\Oneiros Karty Wyobra0.pdf [2012/07/22 19:26:08 | 001,627,633 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\Oneiros Karty Wyobra.pdf [2012/07/22 15:16:02 | 000,000,934 | ---- | M] () -- D:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-484763869-448539723-839522115-1003Core.job [2012/07/22 14:00:42 | 101,968,570 | ---- | M] () -- D:\WINDOWS\System32\drivers\AVG\incavi.avm [2012/07/22 00:56:12 | 002,043,010 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\How_To_Draw_-_Comics_And_Cartoons__Basic_Drawing.pdf [2012/07/22 00:54:48 | 007,288,609 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\How_To_Draw_Comics_-_The_John_Byrne_Way.pdf [2012/07/22 00:52:06 | 020,059,280 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\Christopher_Hart_-_How_to_Draw_Great-looking_Comic_Book_Women.pdf [2012/07/22 00:45:36 | 001,329,492 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\How_to_Draw_General_Anime_Faces_By_Zombie.pdf [2012/07/22 00:33:00 | 014,040,386 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\Watson-Guptill.Cartoon.Cool.How.to.Draw.New.Retro-Style.Characters.pdf [2012/07/22 00:28:41 | 002,043,010 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\How_To_Draw_Comics_And_Cartoons.pdf [2012/07/21 21:13:13 | 000,137,176 | ---- | M] () -- D:\WINDOWS\System32\drivers\PnkBstrK.sys [2012/07/21 21:12:34 | 000,268,952 | ---- | M] () -- D:\WINDOWS\System32\PnkBstrB.xtr [2012/07/20 22:20:49 | 000,268,952 | ---- | M] () -- D:\WINDOWS\System32\PnkBstrB.ex0 [2012/07/20 19:36:18 | 000,154,611 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\pinslarge.jpg [2012/07/19 20:59:00 | 000,002,626 | ---- | M] () -- D:\indo.jpg [2012/07/19 20:57:09 | 000,002,741 | ---- | M] () -- D:\nim.jpg [2012/07/19 20:56:22 | 000,002,793 | ---- | M] () -- D:\36847.jpg [2012/07/19 20:46:10 | 000,073,252 | ---- | M] () -- D:\75.jpg [2012/07/19 20:32:41 | 000,017,078 | ---- | M] () -- D:\glebiasmall.jpg [2012/07/19 20:26:11 | 000,065,254 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\glebia-przestrzeni.jpg [2012/07/18 23:31:29 | 000,028,283 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\2000-11-10.gif [2012/07/18 23:14:49 | 000,024,639 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\2000-07-24.gif [2012/07/18 19:43:38 | 000,021,043 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\knightsmall.jpg [2012/07/18 19:38:48 | 000,021,043 | ---- | M] () -- D:\knightsmall.jpg [2012/07/18 19:37:52 | 000,194,955 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\pic1066766_md.jpg [2012/07/18 18:19:15 | 000,176,051 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\_bB14414.jpg [2012/07/18 18:13:50 | 001,149,175 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\DELIBRIUM_ Druk na żądanie i self-publishing.mht [2012/07/18 09:17:38 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2012/07/16 00:26:34 | 000,016,075 | ---- | M] () -- D:\epicsmall.jpg [2012/07/16 00:25:20 | 000,907,855 | ---- | M] () -- D:\24682-52a53fa9a3a4333398db7f2abd8961d6..jpg [2012/07/15 23:41:32 | 000,414,395 | ---- | M] () -- D:\Mgła.pdf [2012/07/15 23:31:33 | 000,054,156 | -H-- | M] () -- D:\WINDOWS\QTFont.qfn [2012/07/15 15:15:23 | 000,082,446 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\'Psy' - Micha.pdf [2012/07/15 00:12:47 | 000,000,056 | ---- | M] () -- D:\WINDOWS\kgt2k.INI [2012/07/14 19:38:52 | 006,220,854 | ---- | M] () -- D:\INTERNETOWA REJESTRACJA KANDYDATOW KONTO.bmp [2012/07/14 16:08:35 | 000,060,336 | ---- | M] () -- D:\Documents and Settings\Michał\g2mdlhlpx.exe [2012/07/14 14:53:28 | 000,360,228 | ---- | M] () -- D:\WINDOWS\System32\drivers\AVG\iavichjg.avm [2012/07/12 20:23:18 | 000,002,323 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\Google Chrome.lnk [2012/07/11 23:17:11 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- D:\WINDOWS\System32\FlashPlayerApp.exe [2012/07/11 23:17:09 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- D:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012/07/08 00:28:41 | 000,000,734 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\tuxguitar.lnk [2012/07/06 13:57:05 | 000,197,560 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\EU6julNFP.jpg [2012/07/05 22:44:49 | 000,051,373 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\eu5jul.jpg [2012/07/04 22:28:12 | 004,050,182 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\Je suis un Homme - French Song with English Subtitles.mp4 [2012/07/04 21:07:36 | 014,684,717 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\Je suis un Homme with lyrics.mp4 [2012/07/04 20:55:02 | 004,653,589 | ---- | M] () -- D:\Documents and Settings\Michał\Moje dokumenty\french song.mp3 [2012/07/02 23:29:40 | 000,018,548 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\sk.jpg [2012/07/02 23:27:52 | 000,007,745 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\WFDlogorules.gif [2012/06/29 19:09:44 | 000,266,557 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\trademngmt.jpg [2012/06/28 23:12:20 | 005,407,323 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\ditv.pdf [2012/06/28 20:31:42 | 000,020,465 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\lol-cat-3.jpg [2012/06/28 20:30:41 | 000,101,639 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\prophet_lol_cat.jpg [2012/06/28 20:08:25 | 000,056,427 | ---- | M] () -- D:\Documents and Settings\Michał\Pulpit\gurubangkok.jpg [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012/07/23 16:31:45 | 000,881,494 | ---- | C] () -- D:\SecurityCheck.exe [2012/07/23 13:02:15 | 000,980,480 | ---- | C] () -- D:\MicrosoftFixit50267.msi [2012/07/23 10:49:29 | 000,302,592 | ---- | C] () -- D:\l6nvt423.exe [2012/07/23 00:25:57 | 000,053,248 | ---- | C] () -- D:\Documents and Settings\Michał\ms.exe [2012/07/23 00:25:26 | 000,053,248 | ---- | C] () -- D:\Documents and Settings\Michał\0.561409784198423.exe [2012/07/22 19:57:08 | 001,239,529 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\Oneiros Karty Wyobra0.pdf [2012/07/22 19:26:07 | 001,627,633 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\Oneiros Karty Wyobra.pdf [2012/07/22 00:56:06 | 002,043,010 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\How_To_Draw_-_Comics_And_Cartoons__Basic_Drawing.pdf [2012/07/22 00:54:22 | 007,288,609 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\How_To_Draw_Comics_-_The_John_Byrne_Way.pdf [2012/07/22 00:50:48 | 020,059,280 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\Christopher_Hart_-_How_to_Draw_Great-looking_Comic_Book_Women.pdf [2012/07/22 00:45:34 | 001,329,492 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\How_to_Draw_General_Anime_Faces_By_Zombie.pdf [2012/07/22 00:31:52 | 014,040,386 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\Watson-Guptill.Cartoon.Cool.How.to.Draw.New.Retro-Style.Characters.pdf [2012/07/22 00:28:39 | 002,043,010 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\How_To_Draw_Comics_And_Cartoons.pdf [2012/07/20 19:36:18 | 000,154,611 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\pinslarge.jpg [2012/07/19 20:59:00 | 000,002,626 | ---- | C] () -- D:\indo.jpg [2012/07/19 20:57:09 | 000,002,741 | ---- | C] () -- D:\nim.jpg [2012/07/19 20:56:19 | 000,002,793 | ---- | C] () -- D:\36847.jpg [2012/07/19 20:46:10 | 000,073,252 | ---- | C] () -- D:\75.jpg [2012/07/19 20:32:41 | 000,017,078 | ---- | C] () -- D:\glebiasmall.jpg [2012/07/19 20:26:10 | 000,065,254 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\glebia-przestrzeni.jpg [2012/07/18 23:31:28 | 000,028,283 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\2000-11-10.gif [2012/07/18 23:14:49 | 000,024,639 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\2000-07-24.gif [2012/07/18 19:43:38 | 000,021,043 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\knightsmall.jpg [2012/07/18 19:38:48 | 000,021,043 | ---- | C] () -- D:\knightsmall.jpg [2012/07/18 19:37:52 | 000,194,955 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\pic1066766_md.jpg [2012/07/18 18:19:14 | 000,176,051 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\_bB14414.jpg [2012/07/18 18:13:50 | 001,149,175 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\DELIBRIUM_ Druk na żądanie i self-publishing.mht [2012/07/16 00:26:34 | 000,016,075 | ---- | C] () -- D:\epicsmall.jpg [2012/07/16 00:25:20 | 000,907,855 | ---- | C] () -- D:\24682-52a53fa9a3a4333398db7f2abd8961d6..jpg [2012/07/15 23:43:05 | 000,414,395 | ---- | C] () -- D:\Mgła.pdf [2012/07/15 22:58:18 | 006,276,380 | ---- | C] () -- D:\Of_Knights_Glory.pdf [2012/07/15 22:58:18 | 000,762,710 | ---- | C] () -- D:\Scavengers.pdf [2012/07/15 22:58:17 | 000,448,555 | ---- | C] () -- D:\Fantasy_Hunters_RPG.pdf [2012/07/15 22:58:16 | 000,646,468 | ---- | C] () -- D:\AlignedDestinies24h.pdf [2012/07/15 15:15:23 | 000,082,446 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\'Psy' - Micha.pdf [2012/07/14 19:38:51 | 006,220,854 | ---- | C] () -- D:\INTERNETOWA REJESTRACJA KANDYDATOW KONTO.bmp [2012/07/08 00:28:41 | 000,000,734 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\tuxguitar.lnk [2012/07/06 13:57:05 | 000,197,560 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\EU6julNFP.jpg [2012/07/05 22:44:49 | 000,051,373 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\eu5jul.jpg [2012/07/04 22:27:57 | 004,050,182 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\Je suis un Homme - French Song with English Subtitles.mp4 [2012/07/04 21:06:39 | 014,684,717 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\Je suis un Homme with lyrics.mp4 [2012/07/04 20:54:54 | 004,653,589 | ---- | C] () -- D:\Documents and Settings\Michał\Moje dokumenty\french song.mp3 [2012/07/02 23:29:42 | 000,018,548 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\sk.jpg [2012/07/02 23:28:02 | 000,007,745 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\WFDlogorules.gif [2012/06/29 19:09:44 | 000,266,557 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\trademngmt.jpg [2012/06/28 23:12:02 | 005,407,323 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\ditv.pdf [2012/06/28 20:31:42 | 000,020,465 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\lol-cat-3.jpg [2012/06/28 20:30:41 | 000,101,639 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\prophet_lol_cat.jpg [2012/06/28 20:08:25 | 000,056,427 | ---- | C] () -- D:\Documents and Settings\Michał\Pulpit\gurubangkok.jpg [2012/04/03 21:26:19 | 000,000,166 | ---- | C] () -- D:\Documents and Settings\Michał\maverick-data-exchanges.cache [2012/03/28 20:47:05 | 000,000,334 | ---- | C] () -- D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\magnifier.ini [2011/08/31 20:52:14 | 000,116,224 | ---- | C] () -- D:\WINDOWS\System32\pdfcmnnt.dll [2010/08/19 00:00:00 | 000,060,336 | ---- | C] () -- D:\Documents and Settings\Michał\g2mdlhlpx.exe [2010/06/04 13:15:25 | 000,001,521 | ---- | C] () -- D:\Documents and Settings\Michał\.recently-used.xbel [2010/01/20 14:25:50 | 000,000,000 | ---- | C] () -- D:\Documents and Settings\Michał\ź=ź= [2009/07/19 00:33:35 | 000,002,500 | ---- | C] () -- D:\Documents and Settings\Michał\.mactor [2009/01/29 09:00:41 | 000,000,000 | ---- | C] () -- D:\Documents and Settings\Michał\Y=Y= [2008/11/23 20:59:15 | 000,002,528 | ---- | C] () -- D:\Documents and Settings\Michał\Dane aplikacji\$_hpcst$.hpc [2006/02/03 15:25:09 | 000,000,000 | ---- | C] () -- D:\Documents and Settings\Michał\.gtk-bookmarks [2006/02/03 15:24:31 | 000,144,072 | ---- | C] () -- D:\Documents and Settings\Michał\.fonts.cache-1 [2005/06/14 16:09:48 | 000,000,002 | ---- | C] () -- D:\Documents and Settings\Michał\tmp.req [2005/06/14 10:50:45 | 000,000,310 | ---- | C] () -- D:\Documents and Settings\Michał\3.dat [2005/05/17 21:42:00 | 000,244,736 | ---- | C] () -- D:\Documents and Settings\Michał\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [color=#E56717]========== LOP Check ==========[/color] [2010/12/16 00:06:59 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\1stWorks [2011/01/01 15:03:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\AVG10 [2008/06/14 20:17:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Azureus [2010/05/03 11:25:47 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Bluetooth [2011/01/01 15:02:46 | 000,000,000 | -H-D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Common Files [2011/11/13 13:07:27 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2008/02/16 20:32:35 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Installations [2011/11/27 15:29:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\MetaQuotes [2011/05/17 16:21:10 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\MFAData [2008/07/25 01:24:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\NCH Swift Sound [2006/08/09 15:08:26 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2011/09/16 15:25:21 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\pdf995 [2011/05/26 17:37:06 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\TEMP [2012/05/31 21:38:27 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\AbiSuite [2011/05/27 22:03:12 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\AVG [2011/01/01 15:04:05 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\AVG10 [2010/03/27 19:57:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Azureus [2007/10/04 23:11:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Bioshock [2008/05/11 10:22:35 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\CDBurnerXP_Soft [2009/10/30 22:41:52 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\DAEMON Tools Lite [2007/09/06 19:46:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\DeepBurner [2011/05/26 17:07:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\DriverCure [2011/12/12 22:51:32 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\eBookPro6 [2011/07/01 10:28:12 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\EurekaLog [2009/07/03 15:49:09 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\FileZilla [2007/06/28 20:43:22 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\fltk.org [2006/09/17 23:21:31 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Free Download Manager [2007/08/31 12:28:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\fretsonfire [2010/04/03 01:17:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\GetRightToGo [2010/06/04 13:15:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\gtk-2.0 [2007/10/05 11:29:13 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\GuiltyGearIsukaNA [2011/02/26 13:22:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Herac [2009/07/20 19:58:00 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Hide IP NG [2006/03/17 18:38:47 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\iMesh [2009/12/24 15:07:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Inkscape [2011/05/28 21:17:02 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\IObit [2005/05/19 20:58:04 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\IrfanView [2012/06/30 13:02:32 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Leadertech [2009/07/23 13:26:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\lingot [2012/03/24 11:31:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\MetaQuotes [2011/08/31 12:32:14 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Mikogo 4 [2008/07/19 23:52:06 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\MiniLyrics [2010/12/27 01:34:15 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Moyea [2006/04/12 23:28:42 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\MSNInstaller [2011/06/15 00:23:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Music Recognition [2007/06/28 21:04:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\NetMedia Providers [2008/06/14 20:24:45 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Netscape [2009/07/24 11:05:04 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Nokia [2009/09/16 19:06:51 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Nowe Gadu-Gadu [2009/07/30 17:13:17 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\OpenFM [2011/10/08 13:57:14 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\OpenOffice.org [2011/09/05 08:55:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Opera [2011/09/10 21:00:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Orbit [2011/05/26 17:07:56 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\ParetoLogic [2006/07/29 20:04:14 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\PC Suite [2006/02/20 21:17:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\pdf995 [2010/10/01 22:25:23 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\ProgSense [2007/06/28 21:04:58 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Publish Providers [2011/10/29 18:13:27 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Rovio [2009/10/30 23:43:26 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\ScummVM [2008/02/07 18:22:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\smc [2007/06/28 21:04:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Sony [2009/07/20 18:44:14 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Steganos VPN [2012/04/04 21:07:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\TeamViewer [2006/09/05 16:36:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Tlen.pl [2007/06/02 20:16:32 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\TMSDirect [2010/11/25 14:32:34 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\TMSMinidirect [2006/02/09 00:34:36 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Tomahawk [2011/10/28 09:13:35 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\Uniblue [2011/01/10 14:49:22 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\webex [2007/06/20 11:10:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\Michał\Dane aplikacji\WordToPDF [2012/07/23 17:05:13 | 000,000,272 | ---- | M] () -- D:\WINDOWS\Tasks\ASC4_PerformanceMonitor.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 124 bytes -> D:\Documents and Settings\All Users\Dane aplikacji\TEMP:0B4227B4 < End of report >