OTL logfile created on: 2012-07-23 15:05:01 - Run 1 OTL by OldTimer - Version 3.2.54.0 Folder = C:\Documents and Settings\SZYM\My Documents\Pobieranie Windows XP Media Center Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.2180) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,59 Gb Available Physical Memory | 79,50% Memory free 2,85 Gb Paging File | 2,63 Gb Available in Paging File | 92,32% Paging File free Paging file location(s): C:\pagefile.sys 1024 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 34,57 Gb Total Space | 3,41 Gb Free Space | 9,87% Space Free | Partition Type: FAT32 Drive D: | 35,06 Gb Total Space | 21,20 Gb Free Space | 60,48% Space Free | Partition Type: FAT32 Drive E: | 60,65 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: ACER-52096EB500 | User Name: SZYM | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-23 15:04:44 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\SZYM\My Documents\Pobieranie\OTL.exe PRC - [2012-07-20 11:47:28 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2007-06-13 12:23:08 | 001,033,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-07-20 11:47:28 | 002,003,424 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Unknown] -- %ProgramFiles%\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental) SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ) SRV - [2012-07-20 11:47:28 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-07-12 18:58:54 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-03-02 17:00:20 | 000,027,584 | ---- | M] (Samsung Electronics Co., Ltd.) [On_Demand | Stopped] -- C:\Program Files\Samsung\AllShare\AllShareSlideShowService.exe -- (SimpleSlideShowServer) SRV - [2012-01-19 11:41:52 | 000,025,504 | ---- | M] (Samsung Electronics Co., Ltd.) [Auto | Stopped] -- C:\Program Files\Samsung\AllShare\AllShareDMS\AllShareDMS.exe -- (SamsungAllShareV2.0) SRV - [2011-09-02 14:53:02 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2010-01-15 14:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService) SRV - [2009-09-20 00:05:40 | 001,251,720 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe -- (Symantec Core LC) SRV - [2009-03-21 16:18:58 | 000,169,176 | RHS- | M] () [Auto | Stopped] -- C:\WINDOWS\system32\akzee.dll -- (ucshvboh) SRV - [2007-10-01 14:50:08 | 000,214,408 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe -- (SNDSrvc) SRV - [2007-05-28 17:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Stopped] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE) SRV - [2007-05-23 12:13:40 | 000,046,704 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe -- (NPFMntor) SRV - [2007-05-23 12:13:38 | 000,139,888 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files\Norton AntiVirus\NAVAPSVC.EXE -- (navapsvc) SRV - [2006-12-15 13:36:28 | 000,750,720 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE -- (NSCService) SRV - [2006-06-23 10:40:58 | 000,086,016 | ---- | M] (Logitech) [Auto | Stopped] -- c:\Program Files\Common Files\Logitech\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv) SRV - [2005-10-24 16:40:52 | 001,314,816 | ---- | M] (Avocent Inc.) [Auto | Stopped] -- C:\Acer\Empowering Technology\admServ.exe -- (AWService) SRV - [2005-09-17 15:27:12 | 000,169,584 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe -- (ccSetMgr) SRV - [2005-09-17 15:27:06 | 000,192,112 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe -- (ccEvtMgr) SRV - [2005-09-16 07:21:14 | 001,160,800 | ---- | M] (Symantec Corporation) [Auto | Stopped] -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe -- (SPBBCSvc) SRV - [2005-08-27 05:22:48 | 000,198,368 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Norton AntiVirus\SAVScan.exe -- (SAVScan) SRV - [2004-11-05 19:08:14 | 000,057,344 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\System32\setrysvc.exe -- (setrysvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\SZYM\LOCALS~1\Temp\cpuz134\cpuz134_x32.sys -- (cpuz134) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (a00fqtp9) DRV - [2012-03-07 21:02:28 | 000,685,816 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2010-09-15 20:07:10 | 000,270,712 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\SymcData\ids-diskless\20110126.001\SymIDSCo.sys -- (SYMIDSCO) DRV - [2010-09-02 17:49:08 | 000,013,312 | ---- | M] (June Fabrics Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pneteth.sys -- (pneteth) DRV - [2010-01-29 15:39:12 | 000,096,416 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadbus.sys -- (ssadbus) SAMSUNG Android USB Composite Device driver (WDM) DRV - [2007-10-01 14:49:26 | 000,189,320 | ---- | M] (Symantec Corporation) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\symtdi.sys -- (SYMTDI) DRV - [2007-10-01 14:49:20 | 000,023,944 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\symredrv.sys -- (SYMREDRV) DRV - [2007-10-01 14:49:16 | 000,031,624 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\symids.sys -- (SYMIDS) DRV - [2007-10-01 14:49:10 | 000,028,040 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\symndis.sys -- (SYMNDIS) DRV - [2007-10-01 14:49:04 | 000,098,184 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\symfw.sys -- (SYMFW) DRV - [2007-10-01 14:48:56 | 000,012,680 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\symdns.sys -- (SYMDNS) DRV - [2007-04-04 21:15:22 | 000,062,592 | ---- | M] (Chic Tech.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\moufiltr.sys -- (moufiltr) DRV - [2007-03-05 01:52:32 | 000,022,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbsermpt.sys -- (usbsermpt) DRV - [2006-11-02 07:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB) DRV - [2006-09-07 00:03:44 | 000,010,344 | ---- | M] (Symantec Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\symlcbrd.sys -- (symlcbrd) DRV - [2006-08-24 13:44:14 | 000,477,696 | ---- | M] (ZyDAS Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZD1211BU.sys -- (ZD1211BU(ZyDAS)) ZyDAS ZD1211B IEEE 802.11 b+g Wireless LAN Driver (USB)(ZyDAS) DRV - [2006-06-28 16:25:24 | 004,304,384 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2006-06-23 10:40:58 | 002,400,128 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVMVdrv.sys -- (lvmvdrv) DRV - [2006-06-23 10:40:58 | 000,016,768 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVPrcMon.sys -- (LVPrcMon) DRV - [2006-06-19 12:20:24 | 001,097,728 | ---- | M] (Logitech) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lv321av.sys -- (lv321av) Logitech USB PC Camera (VC0321) DRV - [2006-06-19 12:16:16 | 000,039,424 | ---- | M] (Logitech) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta) DRV - [2006-06-16 19:17:38 | 000,074,752 | ---- | M] (ENE Technology Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ESM7SK.sys -- (ESMCR) DRV - [2006-06-16 19:17:38 | 000,040,064 | ---- | M] (ENE Technology Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ESD7SK.sys -- (ESDCR) DRV - [2006-06-16 19:17:36 | 000,061,056 | ---- | M] (ENE Technology Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\EMS7SK.sys -- (EMSCR) DRV - [2006-04-03 12:17:24 | 001,429,632 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\w39n51.sys -- (w39n51) Intel(R) DRV - [2006-01-23 12:41:04 | 000,078,208 | ---- | M] (Acer Value Labs, USA) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\epm-shd.sys -- (EpmShd) DRV - [2006-01-23 12:41:04 | 000,004,096 | ---- | M] (Acer Value Labs, USA) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\epm-psd.sys -- (EpmPsd) DRV - [2006-01-17 10:21:52 | 000,328,061 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btaudio.sys -- (btaudio) DRV - [2006-01-17 10:19:46 | 000,023,271 | ---- | M] (Broadcom Corporation.) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\btserial.sys -- (BTSERIAL) DRV - [2006-01-17 10:18:22 | 000,850,474 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL) DRV - [2006-01-17 10:15:36 | 000,030,459 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver) DRV - [2006-01-17 10:15:26 | 000,030,285 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwmodem.sys -- (btwmodem) DRV - [2006-01-17 10:14:52 | 000,065,688 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwusb.sys -- (BTWUSB) DRV - [2006-01-17 10:11:56 | 000,148,900 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwdndis.sys -- (BTWDNDIS) DRV - [2005-11-28 12:09:26 | 000,013,568 | ---- | M] (Intel Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans) DRV - [2005-11-02 13:24:24 | 000,424,320 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX) DRV - [2005-10-31 14:17:00 | 000,045,312 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys -- (bcm4sbxp) DRV - [2005-10-31 14:16:00 | 000,046,080 | ---- | M] (SMSC) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\smcirda.sys -- (SMCIRDA) DRV - [2005-10-24 10:20:52 | 000,218,496 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HSFHWAZL.sys -- (HSFHWAZL) DRV - [2005-10-18 16:53:24 | 000,998,656 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HSF_DPV.sys -- (HSF_DPV) DRV - [2005-10-18 16:52:30 | 000,721,280 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys -- (winachsf) DRV - [2005-10-15 18:20:44 | 000,012,106 | ---- | M] (OSA Technologies) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\OsaFsLoc.sys -- (OsaFsLoc) DRV - [2005-10-12 16:00:00 | 000,667,352 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20051012.006\NAVEX15.SYS -- (NAVEX15) DRV - [2005-10-12 16:00:00 | 000,077,816 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20051012.006\NAVENG.SYS -- (NAVENG) DRV - [2005-09-17 15:20:06 | 000,108,168 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\Symantec\SYMEVENT.SYS -- (SymEvent) DRV - [2005-09-16 07:21:14 | 000,389,728 | ---- | M] (Symantec Corporation) [Kernel | System | Stopped] -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys -- (SPBBCDrv) DRV - [2005-09-13 15:34:40 | 000,004,392 | ---- | M] (OSA Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NdisFilt.sys -- (NdisFilt) DRV - [2005-08-27 05:22:50 | 000,053,896 | ---- | M] (Symantec Corporation) [Kernel | System | Stopped] -- C:\Program Files\Norton AntiVirus\Savrtpel.sys -- (SAVRTPEL) DRV - [2005-08-27 05:22:48 | 000,334,984 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\Norton AntiVirus\savrt.sys -- (SAVRT) DRV - [2005-08-18 00:00:00 | 000,007,168 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\Lavalys\EVEREST Home Edition\kerneld.wnt -- (EverestDriver) DRV - [2005-06-30 16:58:24 | 000,007,296 | ---- | M] (OSA Technologies, An Avocent Company) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\osaio.sys -- (osaio) DRV - [2005-05-02 12:13:42 | 000,009,600 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NETMNT.sys -- (NETMNT) DRV - [2005-01-14 15:57:16 | 000,004,010 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\osanbm.sys -- (osanbm) DRV - [2004-11-05 19:08:14 | 000,266,496 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\semwl5.SYS -- (SEM43XX) DRV - [2004-11-05 19:08:10 | 000,112,640 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\GCXX.sys -- (SEMWModem) DRV - [2004-11-05 19:08:10 | 000,053,248 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\GCXXNet.sys -- (SEMWWNIC) DRV - [2004-11-05 19:08:10 | 000,021,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\GCXXSC.sys -- (Sony_EricssonWWSC) DRV - [2004-08-10 20:00:00 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx) DRV - [2004-08-10 20:00:00 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb) DRV - [2004-08-10 20:00:00 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.aceradvantage.com/stdreg IE - HKCU\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll (Conduit Ltd.) IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2786678 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://pl.start.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:pl:official" FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: player@vividas.com:4.1.0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@macromedia.com/FlashPlayer9: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.50917.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKCU\Software\MozillaPlugins\@macromedia.com/FlashPlayer9: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-03-24 10:35:46 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2007-03-07 00:51:18 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 14.0\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2012-06-26 10:34:10 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 14.0\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2010-09-15 22:19:20 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\SZYM\Application Data\Mozilla\Extensions [2007-03-07 00:51:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\SZYM\Application Data\Mozilla\Firefox\Profiles\3agueovh.default\extensions [2007-03-07 15:53:36 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Documents and Settings\SZYM\Application Data\Mozilla\Firefox\Profiles\3agueovh.default\extensions\{B13721C7-F507-4982-B2E5-502A71474FED} [2012-07-17 11:19:30 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Documents and Settings\SZYM\Application Data\Mozilla\Firefox\Profiles\3agueovh.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} [2011-07-06 02:56:46 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\SZYM\Application Data\Mozilla\Firefox\Profiles\3agueovh.default\extensions\engine@conduit.com [2011-03-03 05:23:26 | 000,000,000 | ---D | M] (Vividas player plugin) -- C:\Documents and Settings\SZYM\Application Data\Mozilla\Firefox\Profiles\3agueovh.default\extensions\player@vividas.com [2007-03-07 00:51:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2010-09-15 22:16:34 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2012-07-20 11:47:30 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2010-09-15 22:16:34 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2010-12-09 11:47:06 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll [2011-02-10 15:45:50 | 000,180,896 | ---- | M] ( ) -- C:\Program Files\mozilla firefox\plugins\npVividasPlayer.dll [2012-02-24 01:33:04 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml [2012-02-24 01:33:04 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-02-24 01:33:04 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-02-24 01:33:04 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-02-24 01:33:04 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-02-24 01:33:04 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml O1 HOSTS File: ([2012-01-08 21:37:52 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (CNavExtBho Class) - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll (Symantec Corporation) O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\WINDOWS\system32\eDStoolbar.dll (HiTRUST) O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTo2.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Norton AntiVirus) - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll (Symantec Corporation) O3 - HKCU\..\Toolbar\ShellBrowser: (Norton AntiVirus) - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll (Symantec Corporation) O3 - HKCU\..\Toolbar\WebBrowser: (uTorrentBar Toolbar) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - C:\Program Files\uTorrentBar\prxtbuTo2.dll (Conduit Ltd.) O4 - HKLM..\Run: [Acer ePower Management] C:\Acer\Empowering Technology\ePower\Acer ePower Management.exe (Acer Value Labs, Taiwan) O4 - HKLM..\Run: [ADMTray.exe] C:\Acer\Empowering Technology\admtray.exe (Avocent Inc.) O4 - HKLM..\Run: [AllShareAgent] C:\Program Files\Samsung\AllShare\AllShareAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKLM..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [Belkin Storage Manager] C:\Program Files\Belkin Storage Manager\StorageManager.exe (Belkin International, Inc.) O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation) O4 - HKLM..\Run: [dtaakscmjitgyrw] C:\Documents and Settings\All Users\Application Data\dtaakscm.exe () O4 - HKLM..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe (HiTRUST) O4 - HKLM..\Run: [ePower_DMC] C:\Acer\Empowering Technology\ePower\ePower_DMC.exe (Acer Incorporated) O4 - HKLM..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe (acer Inc.) O4 - HKLM..\Run: [FLMOFFICE4DMOUSE] C:\Program Files\Trust\MI-4540p Wireless Optical Mini Mouse\mouse32a.exe () O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation) O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found O4 - HKLM..\Run: [LaunchApp] C:\WINDOWS\Alaunch.exe (Acer Inc.) O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.) O4 - HKLM..\Run: [LogitechCameraAssistant] C:\Program Files\Acer\OrbiCam\CameraAssistant.exe (Acer) O4 - HKLM..\Run: [LogitechCameraService(E)] C:\WINDOWS\System32\ElkCtrl.exe (Logitech Inc.) O4 - HKLM..\Run: [LogitechVideo[inspector]] C:\Program Files\Acer\OrbiCam\InstallHelper.exe (Acer) O4 - HKLM..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE (Logitech) O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe () O4 - HKLM..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe () O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, Inc.) O4 - HKCU..\Run: [dtaakscmjitgyrw] C:\Documents and Settings\All Users\Application Data\dtaakscm.exe () O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated) O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BTTray.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.) O4 - Startup: C:\Documents and Settings\SZYM\Start Menu\Programs\Startup\OpenOffice.ux.pl 2.1.0.lnk = C:\Program Files\OpenOffice.ux.pl 2.1.0\program\quickstart.exe () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallVisualStyle = C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles (Microsoft) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: InstallTheme = C:\WINDOWS\Resources\Themes\Royale.theme () O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Wyślij do urządzenia &Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm () O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Computer, Inc.) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 192.168.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8CA0CACD-7B43-433E-8DC5-37F130E75042}: DhcpNameServer = 192.168.2.1 192.168.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A98619C1-1DB6-44AF-91FA-198A2681966F}: DhcpNameServer = 192.168.0.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006-09-06 08:01:10 | 000,000,050 | ---- | M] () - C:\AUTOEXEC.BAT -- [ FAT32 ] O32 - AutoRun File - [2002-01-01 01:50:04 | 000,000,053 | R--- | M] () - E:\autorun.inf -- [ CDFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-23 00:53:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\cguisjkujdmffnr [2012-07-22 10:36:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SZYM\Desktop\lod [2012-07-04 11:17:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Monitoring IP [2012-07-04 11:17:36 | 000,000,000 | ---D | C] -- C:\Program Files\AXP_IP_CAMERA [2012-06-28 11:56:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SZYM\Application Data\Nero [2012-06-28 11:56:08 | 001,762,608 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\imagx7.dll [2012-06-28 11:56:08 | 000,808,240 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\imagxra7.dll [2012-06-28 11:56:08 | 000,497,296 | R--- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\imagxpr7.dll [2012-06-28 11:56:08 | 000,263,472 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\imagxr7.dll [2012-06-28 11:55:44 | 000,000,000 | ---D | C] -- C:\Program Files\Nero [2012-06-28 11:55:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Nero [2012-06-28 11:55:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nero [2007-03-05 01:52:30 | 000,024,192 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\SZYM\usbsermptxp.sys [2007-03-05 01:52:30 | 000,022,768 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\SZYM\usbsermpt.sys [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-23 14:53:00 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-07-23 14:50:56 | 000,000,012 | ---- | M] () -- C:\WINDOWS\bthservsdp.dat [2012-07-23 14:11:16 | 000,000,494 | ---- | M] () -- C:\WINDOWS\System32\eRLog.ini [2012-07-23 14:09:58 | 000,051,048 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml [2012-07-23 12:58:02 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2012-07-23 00:53:54 | 000,000,051 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\fyqzlkizbuvgeoz [2012-07-23 00:53:48 | 000,053,248 | ---- | M] () -- C:\Documents and Settings\SZYM\ms.exe [2012-07-23 00:53:48 | 000,053,248 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\dtaakscm.exe [2012-07-22 21:52:02 | 000,000,362 | ---- | M] () -- C:\WINDOWS\tasks\Symantec NetDetect.job [2012-07-22 17:21:20 | 000,777,024 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\S7301519b.jpg [2012-07-22 14:52:32 | 000,341,566 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC_7787b.jpg [2012-07-22 14:13:32 | 000,017,689 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\bw.jpg [2012-07-22 14:12:42 | 000,255,913 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\tumblr_lvxoj5maki1r81iddo1_1280.png [2012-07-22 10:34:22 | 000,067,618 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\2486233779.jpeg [2012-07-22 10:34:16 | 000,135,685 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\isetta-61_raxerxn.jpg [2012-07-22 10:34:08 | 000,123,126 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\ISETTA-74_rwwwhnp.jpg [2012-07-22 10:33:58 | 000,110,570 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\ISETTA-72_rwwwhxs.jpg [2012-07-22 10:33:50 | 000,123,307 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\ISETTA-71_rwwwhxe.jpg [2012-07-22 10:33:40 | 000,146,746 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\ISETTA-7j_rwwwhxn.jpg [2012-07-21 01:15:32 | 000,000,528 | ---- | M] () -- C:\WINDOWS\tasks\Norton AntiVirus - Run Full System Scan - SZYM.job [2012-07-18 12:31:02 | 000,024,576 | ---- | M] () -- C:\Documents and Settings\SZYM\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2012-07-17 11:44:30 | 000,052,185 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\Szczegoly_operacji_2012-07-17_11-44-29.pdf [2012-07-15 21:41:14 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-07-12 18:58:54 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2012-07-12 18:58:54 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2012-07-12 12:17:52 | 000,052,066 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\wplaa.pdf [2012-07-12 11:48:18 | 000,067,018 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\2_pdf.pdf [2012-07-12 11:47:42 | 000,067,074 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\1_pdf.pdf [2012-07-12 11:46:44 | 000,067,074 | ---- | M] () -- C:\Documents and Settings\SZYM\My Documents\1_pdf.pdf [2012-07-11 22:03:54 | 000,139,254 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\OPEL-UMOWA.pdf [2012-07-11 21:46:32 | 000,139,272 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\STEL-UMOWA.pdf [2012-07-11 21:21:40 | 000,067,030 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\STEL_pdf.pdf [2012-07-11 21:20:26 | 000,067,108 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\OPEL_pdf.pdf [2012-07-05 11:39:04 | 000,280,125 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07025a.jpg [2012-07-05 11:37:38 | 000,690,656 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07084a.jpg [2012-07-05 11:34:54 | 000,667,631 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07058a.jpg [2012-07-05 11:33:32 | 000,527,261 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07017a.jpg [2012-07-05 11:32:18 | 000,648,878 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07015a.jpg [2012-07-05 11:31:06 | 000,445,811 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07014a.jpg [2012-07-05 11:30:34 | 000,605,963 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07013a.jpg [2012-07-05 11:20:32 | 000,518,414 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07020a.jpg [2012-07-05 11:14:08 | 000,252,330 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC07001a.jpg [2012-07-04 11:17:54 | 000,000,653 | ---- | M] () -- C:\Documents and Settings\SZYM\Application Data\Microsoft\Internet Explorer\Quick Launch\Monitoring IP.lnk [2012-07-04 11:17:54 | 000,000,635 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Monitoring IP.lnk [2012-07-03 23:41:36 | 000,013,678 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\brazzers-logo-mem.png [2012-07-03 13:27:06 | 000,259,550 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\Clipboard01.jpg [2012-07-03 12:57:10 | 000,063,030 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\S7301159d.jpg [2012-07-03 12:51:24 | 000,066,176 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\DSC_7694b.jpg [2012-07-03 12:23:28 | 000,058,036 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\S7301159c.jpg [2012-07-03 12:13:42 | 000,468,912 | ---- | M] () -- C:\Documents and Settings\SZYM\Desktop\S7301159b.jpg [2012-06-28 01:28:28 | 000,035,753 | R--- | M] () -- C:\Documents and Settings\SZYM\Desktop\wydrukListPdf.pdf [2012-06-27 00:36:42 | 003,248,257 | ---- | M] () -- C:\Documents and Settings\SZYM\My Documents\24biegi_prezentacja.pdf [2012-06-26 10:34:12 | 000,001,594 | ---- | M] () -- C:\Documents and Settings\SZYM\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Thunderbird.lnk [2012-06-26 10:34:12 | 000,001,576 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Thunderbird.lnk [2012-06-25 10:19:34 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-23 00:53:52 | 000,053,248 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\dtaakscm.exe [2012-07-23 00:53:47 | 000,000,051 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\fyqzlkizbuvgeoz [2012-07-23 00:53:46 | 000,053,248 | ---- | C] () -- C:\Documents and Settings\SZYM\ms.exe [2012-07-22 17:21:19 | 000,777,024 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\S7301519b.jpg [2012-07-22 14:52:30 | 000,341,566 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC_7787b.jpg [2012-07-22 14:13:31 | 000,017,689 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\bw.jpg [2012-07-22 14:12:41 | 000,255,913 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\tumblr_lvxoj5maki1r81iddo1_1280.png [2012-07-22 10:34:19 | 000,067,618 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\2486233779.jpeg [2012-07-22 10:34:14 | 000,135,685 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\isetta-61_raxerxn.jpg [2012-07-22 10:34:07 | 000,123,126 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\ISETTA-74_rwwwhnp.jpg [2012-07-22 10:33:56 | 000,110,570 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\ISETTA-72_rwwwhxs.jpg [2012-07-22 10:33:48 | 000,123,307 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\ISETTA-71_rwwwhxe.jpg [2012-07-22 10:33:38 | 000,146,746 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\ISETTA-7j_rwwwhxn.jpg [2012-07-17 11:45:20 | 000,052,185 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\Szczegoly_operacji_2012-07-17_11-44-29.pdf [2012-07-12 12:17:50 | 000,052,066 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\wplaa.pdf [2012-07-12 11:48:17 | 000,067,018 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\2_pdf.pdf [2012-07-12 11:47:40 | 000,067,074 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\1_pdf.pdf [2012-07-12 11:46:43 | 000,067,074 | ---- | C] () -- C:\Documents and Settings\SZYM\My Documents\1_pdf.pdf [2012-07-11 22:03:53 | 000,139,254 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\OPEL-UMOWA.pdf [2012-07-11 21:46:29 | 000,139,272 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\STEL-UMOWA.pdf [2012-07-11 21:21:39 | 000,067,030 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\STEL_pdf.pdf [2012-07-11 21:20:25 | 000,067,108 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\OPEL_pdf.pdf [2012-07-05 11:39:02 | 000,280,125 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07025a.jpg [2012-07-05 11:37:36 | 000,690,656 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07084a.jpg [2012-07-05 11:34:52 | 000,667,631 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07058a.jpg [2012-07-05 11:33:30 | 000,527,261 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07017a.jpg [2012-07-05 11:32:17 | 000,648,878 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07015a.jpg [2012-07-05 11:31:04 | 000,445,811 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07014a.jpg [2012-07-05 11:30:33 | 000,605,963 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07013a.jpg [2012-07-05 11:20:30 | 000,518,414 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07020a.jpg [2012-07-05 11:14:07 | 000,252,330 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC07001a.jpg [2012-07-04 11:17:52 | 000,000,653 | ---- | C] () -- C:\Documents and Settings\SZYM\Application Data\Microsoft\Internet Explorer\Quick Launch\Monitoring IP.lnk [2012-07-04 11:17:52 | 000,000,635 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Monitoring IP.lnk [2012-07-03 23:41:34 | 000,013,678 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\brazzers-logo-mem.png [2012-07-03 13:20:06 | 000,259,550 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\Clipboard01.jpg [2012-07-03 13:02:56 | 001,845,558 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\S7301498.JPG [2012-07-03 13:01:54 | 001,838,532 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\S7301467.JPG [2012-07-03 12:57:08 | 000,063,030 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\S7301159d.jpg [2012-07-03 12:51:23 | 000,066,176 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\DSC_7694b.jpg [2012-07-03 12:23:27 | 000,058,036 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\S7301159c.jpg [2012-07-03 12:13:41 | 000,468,912 | ---- | C] () -- C:\Documents and Settings\SZYM\Desktop\S7301159b.jpg [2012-06-28 01:31:03 | 000,035,753 | R--- | C] () -- C:\Documents and Settings\SZYM\Desktop\wydrukListPdf.pdf [2012-06-27 00:36:40 | 003,248,257 | ---- | C] () -- C:\Documents and Settings\SZYM\My Documents\24biegi_prezentacja.pdf [2012-05-09 13:57:32 | 000,100,480 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat [2012-01-08 21:07:16 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2012-01-08 21:07:16 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2012-01-08 21:07:16 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2012-01-08 21:07:16 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2012-01-08 21:07:16 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2011-09-02 15:01:39 | 002,463,976 | ---- | C] () -- C:\WINDOWS\System32\NPSWF32.dll [2011-08-18 20:15:49 | 000,000,848 | ---- | C] () -- C:\WINDOWS\delivery901.INI [2011-07-07 03:52:12 | 000,000,286 | ---- | C] () -- C:\WINDOWS\reimage.ini [2011-02-25 03:11:29 | 194,788,388 | ---- | C] () -- C:\Documents and Settings\SZYM\SdC_montaz.mpg [2011-01-06 12:50:54 | 000,000,419 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI [2011-01-06 12:50:54 | 000,000,030 | ---- | C] () -- C:\WINDOWS\System32\brss01a.ini [2011-01-06 12:50:54 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI [2010-11-25 00:46:23 | 000,001,076 | ---- | C] () -- C:\WINDOWS\Delivery10.INI [2010-11-04 22:21:27 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2010-09-21 00:57:30 | 000,001,097 | ---- | C] () -- C:\WINDOWS\Delivery.INI [2007-03-05 01:52:30 | 000,007,195 | ---- | C] () -- C:\Documents and Settings\SZYM\USBMOT2000.INF [2007-03-05 01:52:30 | 000,005,891 | ---- | C] () -- C:\Documents and Settings\SZYM\USBMOT2000XP.INF [2007-03-05 01:52:30 | 000,005,877 | ---- | C] () -- C:\Documents and Settings\SZYM\USB_CMCS_2000.INF [2007-03-04 22:55:46 | 000,024,576 | ---- | C] () -- C:\Documents and Settings\SZYM\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2007-03-03 19:01:40 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\SZYM\Local Settings\Application Data\fusioncache.dat < End of report >