OTL logfile created on: 28-11-2010 00:41:43 - Run 1 OTL by OldTimer - Version 3.2.14.1 Folder = E:\Install\fixitpc.pl Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: dd-MM-yyyy 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 74,00% Memory free 5,00 Gb Paging File | 5,00 Gb Available in Paging File | 89,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 75,12 Gb Total Space | 50,79 Gb Free Space | 67,62% Space Free | Partition Type: NTFS Drive D: | 195,31 Gb Total Space | 170,05 Gb Free Space | 87,07% Space Free | Partition Type: NTFS Drive E: | 195,32 Gb Total Space | 87,17 Gb Free Space | 44,63% Space Free | Partition Type: NTFS F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: PC Current User Name: SysOp Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2010-11-11 12:25:49 | 001,649,664 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\ping\All serwery\Katalog3\PingMaster.exe PRC - [2010-11-11 12:25:49 | 001,649,664 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\ping\All serwery\Katalog2_3\PingMaster.exe PRC - [2010-11-11 12:25:49 | 001,649,664 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\ping\All serwery\Katalog2_2\PingMaster.exe PRC - [2010-10-27 07:21:28 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Programy\Mozilla Firefox\firefox.exe PRC - [2010-09-30 10:28:47 | 000,575,488 | ---- | M] (OldTimer Tools) -- E:\Install\fixitpc.pl\OTL.exe PRC - [2010-09-15 21:34:25 | 000,352,976 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe PRC - [2010-07-01 20:34:46 | 000,129,720 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtblfs.exe PRC - [2009-11-13 11:38:36 | 001,412,552 | ---- | M] (TrueCrypt Foundation) -- C:\Program Files\TrueCrypt\TrueCrypt.exe PRC - [2009-02-17 00:10:22 | 000,185,872 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe PRC - [2008-12-03 18:14:05 | 001,553,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-11-28 11:48:54 | 005,837,800 | ---- | M] (o2.pl Sp. z o.o.) -- C:\Programy\Tlen\tlen.exe PRC - [2008-08-04 00:04:00 | 001,345,376 | ---- | M] (Nullsoft) -- D:\Programy\Winamp\winamp.exe PRC - [2008-07-17 13:21:34 | 000,080,392 | ---- | M] () -- C:\Program Files\Gigabyte\EasySaver\essvr.exe PRC - [2008-07-15 20:12:46 | 003,217,408 | ---- | M] () -- C:\Programy\Workrave\lib\Workrave.exe PRC - [2008-01-19 19:01:08 | 004,388,192 | ---- | M] (Symantec Corporation) -- C:\Program Files\Norton Ghost\Agent\VProSvc.exe PRC - [2007-12-20 16:13:46 | 001,553,896 | ---- | M] (Symantec) -- C:\Program Files\Norton Ghost\Shared\Drivers\SymSnapService.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-09-30 10:28:47 | 000,575,488 | ---- | M] (OldTimer Tools) -- E:\Install\fixitpc.pl\OTL.exe MOD - [2008-06-19 13:20:08 | 000,017,408 | ---- | M] () -- C:\Programy\Tlen\hook.dll MOD - [2008-04-14 20:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\wscsvc.dll -- (wscsvc) SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\hidserv.dll -- (HidServ) SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\cisvc.exe -- (CiSvc) SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\alg.exe -- (ALG) SRV - [2010-09-15 21:34:25 | 000,352,976 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe -- (AVP) SRV - [2009-02-14 10:57:36 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [Disabled | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2008-07-17 13:21:34 | 000,080,392 | ---- | M] () [Auto | Running] -- C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE -- (ES lite Service) SRV - [2008-01-19 19:01:08 | 004,388,192 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Ghost\Agent\VProSvc.exe -- (Norton Ghost) SRV - [2007-12-20 16:13:46 | 001,553,896 | ---- | M] (Symantec) [On_Demand | Running] -- C:\Program Files\Norton Ghost\Shared\Drivers\SymSnapService.exe -- (SymSnapService) SRV - [2006-10-27 00:47:54 | 000,065,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- D:\Programy\Microsoft Office\Office12\GrooveAuditService.exe -- (Microsoft Office Groove Audit Service) SRV - [2006-01-05 00:06:02 | 000,163,840 | ---- | M] (Alex Feinman) [Disabled | Stopped] -- C:\Program Files\ISO Recorder\ImapiHelper.exe -- (Imapi Helper) SRV - [2003-09-14 21:08:14 | 002,928,700 | ---- | M] () [Disabled | Stopped] -- c:\usr/MYSQL/bin/mysqld.exe -- (MySql) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-11-28 00:37:50 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2010-10-17 17:32:12 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-09-15 21:34:25 | 000,475,736 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF) DRV - [2010-09-04 14:57:05 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2010-09-04 14:57:04 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2010-06-09 16:43:52 | 000,011,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl2.sys -- (kl2) DRV - [2010-06-09 16:43:50 | 000,132,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\kl1.sys -- (kl1) DRV - [2010-05-07 11:06:26 | 000,032,856 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5) DRV - [2009-12-10 17:23:36 | 006,017,568 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2009-11-18 07:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2009-11-18 07:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2009-11-13 11:38:36 | 000,223,432 | ---- | M] (TrueCrypt Foundation) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\truecrypt.sys -- (truecrypt) DRV - [2009-11-02 19:27:24 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt) DRV - [2009-06-17 09:55:34 | 000,010,384 | ---- | M] (Logitech, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\LBeepKE.sys -- (LBeepKE) DRV - [2008-12-03 17:40:59 | 000,062,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3112.sys -- (Si3112) DRV - [2008-10-17 09:50:00 | 000,131,072 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Mkd2kfNT.sys -- (Mkd2kfNt) DRV - [2008-10-17 09:50:00 | 000,079,104 | ---- | M] (AhnLab, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Mkd2Nadr.sys -- (Mkd2Nadr) DRV - [2008-09-12 15:00:50 | 000,041,680 | ---- | M] (Sun Microsystems, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VBoxUSBMon.sys -- (VBoxUSBMon) DRV - [2008-09-12 15:00:46 | 000,095,888 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\VBoxDrv.sys -- (VBoxDrv) DRV - [2008-08-24 12:11:00 | 006,128,352 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2008-04-13 20:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-01-19 19:12:42 | 000,128,104 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WimFltr.sys -- (WimFltr) DRV - [2008-01-19 18:45:40 | 000,038,112 | ---- | M] (Symantec Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\v2imount.sys -- (v2imount) DRV - [2008-01-19 18:40:16 | 000,015,088 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\vproeventmonitor.sys -- (VProEventMonitor) DRV - [2008-01-03 15:10:16 | 000,105,856 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-12-20 16:13:54 | 000,136,416 | ---- | M] (StorageCraft) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\symsnap.sys -- (symsnap) DRV - [2002-01-12 16:30:34 | 000,003,567 | ---- | M] (Beyond Logic http://www.beyondlogic.org) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\PortTalk.sys -- (PortTalk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\S-1-5-21-448539723-1677128483-1801674531-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://deformacje.pl/ IE - HKU\S-1-5-21-448539723-1677128483-1801674531-1001\Software\Microsoft\Internet Explorer\SearchURL\g, = http://www.google.com/search?q=%s IE - HKU\S-1-5-21-448539723-1677128483-1801674531-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "" FF - prefs.js..browser.search.defaultenginename: "" FF - prefs.js..browser.search.order.1: "" FF - prefs.js..browser.search.selectedEngine: "Mininova" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl/ig?hl=pl&source=iglk" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.1 FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.1 FF - prefs.js..extensions.enabledItems: {2E18002D-DF43-4c65-9FDA-40D02F066D9E}:1.6.1 FF - prefs.js..extensions.enabledItems: firebug@software.joehewitt.com:1.5.4 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: linky@gemal.dk:3.0.0 FF - prefs.js..extensions.enabledItems: bossknb@ttt-jl.blogspot.com:2.1 FF - prefs.js..extensions.enabledItems: {de1b245c-de57-11da-ba2d-0050c2490048}:1.0.8 FF - prefs.js..extensions.enabledItems: beta@linkdiagnosis.com:2.2.41 FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0 FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6 FF - prefs.js..extensions.enabledItems: {D249FD00-4DF9-11D9-9FDC-0080481ADA61}:1.4.0 FF - prefs.js..keyword.URL: "http://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=" FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components: C:\Programy\Mozilla Firefox\components [2010-11-24 23:45:44 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins: C:\Programy\Mozilla Firefox\plugins [2010-11-27 19:03:45 | 000,000,000 | ---D | M] [2010-11-24 23:45:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Extensions [2010-11-25 00:06:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\1nhre3qke.default\extensions [2010-11-24 23:56:24 | 000,000,000 | ---D | M] (Extended Copy Menu) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\1nhre3qke.default\extensions\{2E18002D-DF43-4c65-9FDA-40D02F066D9E} [2010-11-24 23:59:22 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\1nhre3qke.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2010-11-24 23:56:25 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\1nhre3qke.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-11-25 00:06:20 | 000,000,000 | ---D | M] (MinimizeToTray Plus) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\1nhre3qke.default\extensions\{de1b245c-de57-11da-ba2d-0050c2490048} [2010-11-24 23:56:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\1nhre3qke.default\extensions\bossknb@ttt-jl.blogspot.com [2010-11-24 23:56:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\1nhre3qke.default\extensions\firebug@software.joehewitt.com [2010-11-24 23:59:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\1nhre3qke.default\extensions\linky@gemal.dk [2010-11-27 23:05:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions [2010-05-06 19:16:36 | 000,000,000 | ---D | M] (Extended Copy Menu) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\{2E18002D-DF43-4c65-9FDA-40D02F066D9E} [2009-10-20 20:20:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\{31513E58-F253-47ad-86DB-D5F21E905429} [2010-11-03 23:16:07 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2010-11-05 09:07:19 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-11-03 23:16:06 | 000,000,000 | ---D | M] (MetaProducts Integration) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\{D249FD00-4DF9-11D9-9FDC-0080481ADA61} [2010-09-24 07:48:36 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A} [2010-08-06 11:47:59 | 000,000,000 | ---D | M] (MinimizeToTray Plus) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\{de1b245c-de57-11da-ba2d-0050c2490048} [2010-09-26 16:12:53 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2010-09-20 08:57:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\beta@linkdiagnosis.com [2010-08-06 11:47:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\bossknb@ttt-jl.blogspot.com [2010-05-06 19:16:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\firebug@software.joehewitt.com [2010-03-12 18:54:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\extensions\linky@gemal.dk [2009-10-17 22:31:58 | 000,000,998 | ---- | M] () -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\searchplugins\mininova.xml [2010-11-25 22:44:38 | 000,002,039 | ---- | M] () -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla\Firefox\Profiles\nhre3qke.default\searchplugins\torrentyorg.xml [2010-11-18 20:25:29 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-08-09 22:58:01 | 000,000,000 | ---D | M] (Skype extension for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2010-06-28 17:31:33 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-08-24 14:40:15 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-09-10 07:55:23 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru [2010-09-10 07:55:21 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru [2010-07-17 04:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2010-06-26 08:59:22 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-06-26 08:59:22 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-06-26 08:59:22 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-06-26 08:59:22 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-06-26 08:59:22 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-06-26 08:59:22 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2010-09-26 23:04:27 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll (Kaspersky Lab ZAO) O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe (Kaspersky Lab ZAO) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.) O4 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001..\Run: [AlcoholAutomount] C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe (Alcohol Soft Development Team) O4 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001..\Run: [Komunikator] C:\Programy\Tlen\tlen.exe (o2.pl Sp. z o.o.) O4 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001..\Run: [TrueCrypt] C:\Program Files\TrueCrypt\TrueCrypt.exe (TrueCrypt Foundation) O4 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001..\Run: [Workrave] C:\Programy\Workrave\lib\Workrave.exe () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 351 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoInternetOpenWith = 1 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-448539723-1677128483-1801674531-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm () O9 - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Computer, Inc.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.233.233.233 87.204.204.204 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~2\kloehk.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\kloehk.dll (Kaspersky Lab ZAO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (cr1t1cal) O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab ZAO) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\SysOp\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\SysOp\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Programy\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010-11-28 00:36:16 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\SysOp\Recent [2010-11-24 23:47:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Moje dokumenty\Pobieranie [2010-11-24 23:45:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Ustawienia lokalne\Dane aplikacji\Mozilla [2010-11-24 23:45:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla [2010-11-24 23:30:10 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\SysOp\IECompatCache [2010-11-20 21:34:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Moje dokumenty\My Games [2010-11-11 15:34:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Pulpit\Dhoom 2 [2010-11-11 12:11:59 | 000,000,000 | ---D | C] -- C:\add [2010-11-11 12:10:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Pulpit\add [2010-11-11 11:04:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Dane aplikacji\skypePM [2010-11-07 02:09:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Pulpit\Muza [2010-11-05 23:19:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Pulpit\Lobbing [2010-11-02 21:05:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Dane aplikacji\.wtw [2010-11-02 10:07:25 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\SysOp\PrivacIE [2010-10-30 21:29:45 | 000,000,000 | ---D | C] -- C:\!KillBox [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010-11-28 00:38:00 | 000,001,132 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1677128483-1801674531-1001UA.job [2010-11-28 00:37:50 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\gdrv.sys [2010-11-28 00:37:38 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-11-28 00:37:37 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-11-28 00:37:35 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-11-28 00:37:30 | 3488,014,336 | -HS- | M] () -- C:\hiberfil.sys [2010-11-28 00:36:37 | 013,631,488 | ---- | M] () -- C:\Documents and Settings\SysOp\NTUSER.DAT [2010-11-27 18:38:36 | 000,001,080 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-448539723-1677128483-1801674531-1001Core.job [2010-11-27 18:03:18 | 003,579,016 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\Jonas Brothers-Things Will Never Be The Same.mp3 [2010-11-27 18:00:49 | 000,198,656 | ---- | M] () -- C:\Documents and Settings\SysOp\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-11-27 18:00:49 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2010-11-27 09:46:26 | 000,004,615 | ---- | M] () -- C:\WINDOWS\wincmd.ini [2010-11-27 09:05:01 | 000,000,755 | ---- | M] () -- C:\WINDOWS\wcx_ftp.ini [2010-11-26 16:45:39 | 000,115,465 | ---- | M] () -- C:\WINDOWS\System32\drivers\klin.dat [2010-11-26 16:45:28 | 000,097,545 | ---- | M] () -- C:\WINDOWS\System32\drivers\klick.dat [2010-11-25 09:08:36 | 001,783,895 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\vidisunrelated_65.flv [2010-11-25 09:02:22 | 000,200,513 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml [2010-11-24 23:45:36 | 000,001,541 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-11-24 22:51:06 | 124,982,442 | ---- | M] () -- C:\Documents and Settings\SysOp\Ustawienia lokalne\Dane aplikacji\Mozilla.rar [2010-11-24 22:49:05 | 004,319,862 | ---- | M] () -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla.rar [2010-11-24 01:01:03 | 004,054,654 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\OneRepublic - Good Life.mp3 [2010-11-21 12:25:36 | 000,052,005 | -H-- | M] () -- C:\treeinfo.wc [2010-11-17 21:08:31 | 000,008,127 | ---- | M] () -- C:\download.html [2010-11-11 18:25:24 | 000,000,365 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\MP3 - Data.lnk [2010-11-11 13:57:32 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\SysOp\PUTTY.RND [2010-11-11 11:51:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2010-11-09 23:08:00 | 000,065,536 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\aneks nr 2 mistrz2planu.pl.doc [2010-11-07 20:02:21 | 001,535,309 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\instrukcja_aktualizacji_viagps.pdf [2010-11-06 12:34:16 | 000,000,304 | ---- | M] () -- C:\WINDOWS\Fakturka.ini [2010-11-06 12:24:23 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\SysOp\ntuser.ini [2010-11-06 12:02:46 | 000,014,115 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\wypowiedzenie umowy.dotx [2010-11-04 19:13:22 | 000,003,154 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\1.html [2010-11-04 09:20:00 | 000,506,880 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\ARBO umowa partnerska_2010 [bez VAT].doc [2010-11-02 21:07:54 | 000,000,061 | ---- | M] () -- C:\Documents and Settings\SysOp\Pulpit\kontestacja.pls [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-11-27 18:03:18 | 003,579,016 | ---- | C] () -- C:\Documents and Settings\SysOp\Pulpit\Jonas Brothers-Things Will Never Be The Same.mp3 [2010-11-26 19:20:59 | 088,584,467 | ---- | C] () -- C:\indywidualni.tp [2010-11-25 09:08:35 | 001,783,895 | ---- | C] () -- C:\Documents and Settings\SysOp\Pulpit\vidisunrelated_65.flv [2010-11-24 23:45:36 | 000,001,541 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-11-24 22:49:16 | 124,982,442 | ---- | C] () -- C:\Documents and Settings\SysOp\Ustawienia lokalne\Dane aplikacji\Mozilla.rar [2010-11-24 22:48:36 | 004,319,862 | ---- | C] () -- C:\Documents and Settings\SysOp\Dane aplikacji\Mozilla.rar [2010-11-24 01:01:03 | 004,054,654 | ---- | C] () -- C:\Documents and Settings\SysOp\Pulpit\OneRepublic - Good Life.mp3 [2010-11-17 21:07:54 | 000,008,127 | ---- | C] () -- C:\download.html [2010-11-13 09:17:33 | 000,052,005 | -H-- | C] () -- C:\treeinfo.wc [2010-11-11 13:52:45 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\SysOp\PUTTY.RND [2010-11-09 23:08:00 | 000,065,536 | ---- | C] () -- C:\Documents and Settings\SysOp\Pulpit\aneks nr 2 mistrz2planu.pl.doc [2010-11-07 20:02:21 | 001,535,309 | ---- | C] () -- C:\Documents and Settings\SysOp\Pulpit\instrukcja_aktualizacji_viagps.pdf [2010-11-06 12:02:46 | 000,014,115 | ---- | C] () -- C:\Documents and Settings\SysOp\Pulpit\wypowiedzenie umowy.dotx [2010-11-04 19:13:08 | 000,003,154 | ---- | C] () -- C:\Documents and Settings\SysOp\Pulpit\1.html [2010-11-04 09:20:00 | 000,506,880 | ---- | C] () -- C:\Documents and Settings\SysOp\Pulpit\ARBO umowa partnerska_2010 [bez VAT].doc [2010-09-04 14:57:05 | 000,281,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys [2010-09-04 14:57:04 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys [2010-04-26 09:32:24 | 000,001,153 | ---- | C] () -- C:\WINDOWS\ARPR.INI [2010-02-20 00:06:06 | 000,000,914 | ---- | C] () -- C:\WINDOWS\Lit.INI [2010-01-03 10:56:10 | 000,004,096 | -H-- | C] () -- C:\Documents and Settings\SysOp\Ustawienia lokalne\Dane aplikacji\keyfile3.drm [2009-11-20 16:15:06 | 000,000,050 | ---- | C] () -- C:\WINDOWS\cdplayer.ini [2009-11-06 10:58:04 | 000,178,975 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat [2009-10-20 12:12:40 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2009-04-19 11:50:26 | 000,095,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [2009-04-07 08:43:44 | 000,138,504 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2009-04-07 08:43:43 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\SysOp\Dane aplikacji\PnkBstrK.sys [2009-04-02 15:25:30 | 000,003,972 | ---- | C] () -- C:\WINDOWS\System32\drivers\PciBus.sys [2009-03-29 11:32:42 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\zlib.dll [2009-03-26 20:39:57 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll [2009-03-21 14:03:37 | 000,000,097 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini [2009-03-12 19:54:12 | 000,000,200 | ---- | C] () -- C:\WINDOWS\w32demo8.ini [2009-02-27 20:44:06 | 000,000,304 | ---- | C] () -- C:\WINDOWS\Fakturka.ini [2009-02-22 22:26:08 | 000,685,849 | ---- | C] () -- C:\Documents and Settings\SysOp\Dane aplikacji\unins000.exe [2009-02-22 22:26:08 | 000,028,508 | ---- | C] () -- C:\Documents and Settings\SysOp\Dane aplikacji\unins000.dat [2009-02-14 14:56:40 | 000,000,755 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini [2009-02-14 14:55:18 | 000,004,615 | ---- | C] () -- C:\WINDOWS\wincmd.ini [2009-01-27 22:13:49 | 001,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2009-01-27 22:13:46 | 001,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2009-01-27 22:13:29 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2009-01-27 22:13:17 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2009-01-27 22:13:04 | 001,499,136 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2009-01-17 17:48:33 | 000,343,880 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2009-01-17 14:22:31 | 000,033,576 | ---- | C] () -- C:\WINDOWS\System32\BCGPOleAcc.dll [2009-01-15 13:13:27 | 000,000,319 | ---- | C] () -- C:\WINDOWS\game.ini [2009-01-15 11:42:58 | 000,717,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2009-01-13 23:19:53 | 000,198,656 | ---- | C] () -- C:\Documents and Settings\SysOp\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2004-09-24 00:31:08 | 000,233,472 | ---- | C] () -- C:\WINDOWS\System32\libmySQL.dll [2004-07-29 18:08:30 | 000,024,633 | ---- | C] () -- C:\WINDOWS\php.ini [2003-01-28 00:09:20 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\libexpat.dll [color=#E56717]========== LOP Check ==========[/color] [2009-01-20 23:03:08 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-03-22 21:37:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Codemasters [2009-12-28 23:15:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-02-21 21:15:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-03-10 15:36:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\id Software [2010-01-24 19:46:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2010-01-18 21:41:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2010-02-06 21:36:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PCB123 [2010-09-26 20:55:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SpeedBit [2010-09-04 14:58:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tages [2010-09-26 20:54:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2008-01-04 04:16:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl [2009-11-13 11:40:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TrueCrypt [2010-09-30 08:29:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Viewpoint [2010-11-02 21:05:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\.wtw [2010-10-27 23:18:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\BESTplayer [2010-10-16 19:40:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Blender Foundation [2009-11-15 10:58:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Complay [2009-12-28 23:21:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\DAEMON Tools Lite [2009-12-28 23:16:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\DAEMON Tools Pro [2009-12-09 16:15:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Datarescue [2010-02-22 14:03:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Dropbox [2010-02-03 21:03:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Easeware [2010-06-23 20:02:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Faces [2010-05-04 22:21:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\FlashGet [2010-11-06 18:09:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Gadu-Gadu 10 [2010-08-30 23:02:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Gzegzolka XP [2009-12-15 20:29:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\IBP [2010-03-10 15:37:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\id Software [2010-05-16 15:14:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\ipla [2010-01-25 15:13:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\mytribe [2010-01-18 22:39:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Nowe Gadu-Gadu [2010-01-18 21:41:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\OpenFM [2010-03-10 18:26:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Opera [2010-07-01 17:56:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Outlook AutoConfig [2009-03-21 14:08:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Panasonic [2010-10-04 20:24:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\ReGet Software [2009-12-09 13:35:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\RST [2009-12-11 21:53:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Subversion [2010-07-02 12:59:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Teeworlds [2009-11-13 16:53:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\TrueCrypt [2010-11-28 00:36:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\uTorrent [2009-10-17 06:58:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\Workrave [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 88 bytes -> C:\WINDOWS\regedit.exe:SummaryInformation @Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:2B11E0DF < End of report >