OTL logfile created on: 2010-11-29 16:47:20 - Run 1 OTL by OldTimer - Version 3.2.17.3 Folder = C:\Documents and Settings\Administrator\Pulpit\logi Windows XP Professional Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.2180) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 015,00 Mb Total Physical Memory | 495,00 Mb Available Physical Memory | 49,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 87,00% Paging File free Paging file location(s): C:\pagefile.sys 756 1512 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 37,25 Gb Total Space | 2,88 Gb Free Space | 7,73% Space Free | Partition Type: NTFS Computer Name: DZUGAJ | User Name: Administrator | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2010-11-29 16:44:22 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Pulpit\logi\OTL.exe PRC - [2008-06-10 03:27:04 | 000,144,784 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe PRC - [2007-08-29 10:10:30 | 000,204,800 | ---- | M] (OptionNV) -- C:\Program Files\iPlus\Drivers\Driver2k\GTMax\GtDetectSc.exe PRC - [2007-08-29 10:10:30 | 000,204,800 | ---- | M] (Option) -- C:\Program Files\iPlus\Drivers\Driver2k\GTMax\GtFlashSwitch.exe PRC - [2005-11-15 20:31:04 | 000,033,792 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe PRC - [2005-07-07 07:03:10 | 000,639,040 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\ZCfgSvc.exe PRC - [2005-07-07 06:59:28 | 000,421,955 | ---- | M] (Intel Corporation ) -- C:\WINDOWS\system32\S24EvMon.exe PRC - [2005-07-07 06:57:20 | 000,389,186 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\1XConfig.exe PRC - [2005-07-07 06:56:44 | 000,122,880 | ---- | M] (Intel Corporation) -- C:\WINDOWS\system32\RegSrvc.exe PRC - [2004-08-04 04:56:32 | 001,445,912 | ---- | M] (Cisco Systems, Inc.) -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe PRC - [2004-08-03 23:44:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2004-06-25 22:53:04 | 000,335,872 | ---- | M] () -- C:\WINDOWS\system32\NDrv.exe PRC - [2004-05-17 17:48:14 | 000,124,128 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\VPTray.exe PRC - [2004-05-17 17:47:06 | 000,173,288 | ---- | M] (symantec) -- C:\Program Files\Symantec AntiVirus\SavRoam.exe PRC - [2004-05-17 17:46:18 | 001,238,248 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\Rtvscan.exe PRC - [2004-05-17 17:44:44 | 000,029,928 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec AntiVirus\DefWatch.exe PRC - [2004-05-17 17:41:30 | 000,246,880 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe PRC - [2004-05-17 17:40:22 | 000,255,072 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe PRC - [2004-05-17 17:40:06 | 000,066,656 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\ccApp.exe PRC - [2004-03-17 14:02:06 | 000,028,672 | ---- | M] (H+BEDV Datentechnik GmbH, Germany) -- C:\Program Files\AVPersonal\AVWUPSRV.EXE PRC - [2003-10-15 12:41:56 | 000,237,568 | ---- | M] (Hewlett-Packard ) -- C:\Program Files\HPQ\Quick Launch Buttons\eabservr.exe PRC - [2003-07-15 20:09:18 | 000,110,592 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPLpr.exe PRC - [2002-09-20 15:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-11-29 16:44:22 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Pulpit\logi\OTL.exe MOD - [2006-08-25 07:51:14 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll MOD - [2003-07-15 20:08:52 | 000,065,536 | ---- | M] (Synaptics, Inc.) -- C:\WINDOWS\system32\SynTPFcs.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\hidserv.dll -- (HidServ) SRV - [2007-08-29 10:10:30 | 000,204,800 | ---- | M] (OptionNV) [Auto | Running] -- C:\Program Files\iPlus\Drivers\Driver2k\GTMax\GtDetectSc.exe -- (GtDetectSc) SRV - [2007-08-29 10:10:30 | 000,204,800 | ---- | M] (Option) [Auto | Running] -- C:\Program Files\iPlus\Drivers\Driver2k\GTMax\GtFlashSwitch.exe -- (GtFlashSwitch) SRV - [2005-08-02 22:18:49 | 000,086,016 | ---- | M] (CACE Technologies) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental) SRV - [2005-07-07 06:59:28 | 000,421,955 | ---- | M] (Intel Corporation ) [Auto | Running] -- C:\WINDOWS\system32\S24EvMon.exe -- (S24EventMonitor) SRV - [2005-07-07 06:56:44 | 000,122,880 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\WINDOWS\system32\RegSrvc.exe -- (RegSrvc) SRV - [2004-08-04 04:56:32 | 001,445,912 | ---- | M] (Cisco Systems, Inc.) [Auto | Running] -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe -- (CVPND) SRV - [2004-05-17 17:47:06 | 000,173,288 | ---- | M] (symantec) [Auto | Running] -- C:\Program Files\Symantec AntiVirus\SavRoam.exe -- (SavRoam) SRV - [2004-05-17 17:46:18 | 001,238,248 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec AntiVirus\Rtvscan.exe -- (Symantec AntiVirus) SRV - [2004-05-17 17:44:44 | 000,029,928 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec AntiVirus\DefWatch.exe -- (DefWatch) SRV - [2004-05-17 17:41:30 | 000,246,880 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe -- (ccSetMgr) SRV - [2004-05-17 17:41:08 | 000,087,136 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe -- (ccPwdSvc) SRV - [2004-05-17 17:40:22 | 000,255,072 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe -- (ccEvtMgr) SRV - [2004-03-17 14:02:06 | 000,028,672 | ---- | M] (H+BEDV Datentechnik GmbH, Germany) [Auto | Running] -- C:\Program Files\AVPersonal\AVWUPSRV.EXE -- (AVWUpSrv) SRV - [2004-03-11 14:58:32 | 000,193,760 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe -- (SNDSrvc) SRV - [2003-04-29 14:29:54 | 000,139,264 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\NCS\Sync\NetSvc.exe -- (NetSvc) SRV - [2002-09-20 15:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) [Auto | Running] -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe -- (SoundMAX Agent Service (default)) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\System32\Drivers\klif.sys -- (Klif) DRV - [2010-11-24 10:00:00 | 001,371,184 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20101124.004\NAVEX15.SYS -- (NAVEX15) DRV - [2010-11-24 10:00:00 | 000,086,064 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20101124.004\NAVENG.SYS -- (NAVENG) DRV - [2007-08-29 10:10:14 | 000,101,120 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2005-08-02 22:10:13 | 000,032,512 | ---- | M] (CACE Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF) DRV - [2005-06-17 07:15:26 | 000,010,970 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans) DRV - [2005-02-28 11:36:50 | 000,662,400 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\w70n51.sys -- (w70n51) Intel(R) DRV - [2004-08-04 04:54:32 | 000,269,387 | ---- | M] (Cisco Systems, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\CVPNDRVA.sys -- (CVPNDRVA) DRV - [2004-08-03 22:03:36 | 000,088,448 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkipx.sys -- (NwlnkIpx) DRV - [2004-08-03 21:59:52 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm) DRV - [2004-07-02 08:47:53 | 000,009,856 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc) DRV - [2004-03-11 14:58:10 | 000,263,616 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\SYMTDI.SYS -- (SYMTDI) DRV - [2004-03-11 14:58:08 | 000,016,288 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\Drivers\SYMREDRV.SYS -- (SYMREDRV) DRV - [2004-03-04 23:46:46 | 000,082,832 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\Symantec\SYMEVENT.SYS -- (SymEvent) DRV - [2004-03-02 16:37:50 | 000,125,184 | ---- | M] (Ahead Software AG) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\imagesrv.sys -- (imagesrv) DRV - [2004-03-02 16:37:48 | 000,005,504 | ---- | M] (Ahead Software AG) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\imagedrv.sys -- (imagedrv) DRV - [2004-02-09 15:43:56 | 000,301,200 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Symantec AntiVirus\savrt.sys -- (SAVRT) DRV - [2004-02-09 15:43:56 | 000,037,008 | R--- | M] (Symantec Corporation) [Kernel | Auto | Running] -- C:\Program Files\Symantec AntiVirus\Savrtpel.sys -- (SAVRTPEL) DRV - [2003-12-08 10:53:48 | 000,053,600 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcan5wn.sys -- (alcan5wn) SpeedTouch USB ADSL PPP Networking Driver (NDISWAN) DRV - [2003-12-08 10:53:46 | 000,070,688 | ---- | M] (THOMSON) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcaudsl.sys -- (alcaudsl) DRV - [2003-11-07 11:45:52 | 000,033,847 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wA301b.sys -- ({E2B953A7-195A-44F9-9BA3-3D5F4E32BB55}) DRV - [2003-11-07 11:45:52 | 000,033,847 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wA301a.sys -- ({E2B953A6-195A-44F9-9BA3-3D5F4E32BB55}) DRV - [2003-10-28 17:16:28 | 001,258,138 | R--- | M] (WIDCOMM, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\btkrnl.sys -- (BTKRNL) DRV - [2003-10-21 16:28:44 | 000,065,536 | ---- | M] (Texas Instruments) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tifm.sys -- (tifm) DRV - [2003-09-26 08:41:12 | 000,044,032 | R--- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys -- (bcm4sbxp) DRV - [2003-09-12 18:47:32 | 001,196,352 | R--- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem) DRV - [2003-09-12 10:12:46 | 000,022,183 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\btserial.sys -- (BTSERIAL) DRV - [2003-09-12 10:12:14 | 000,222,876 | ---- | M] (WIDCOMM, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\btslbcsp.sys -- (BTSLBCSP) DRV - [2003-08-28 21:40:26 | 000,189,792 | ---- | M] (Zone Labs Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\vsdatant.sys -- (vsdatant) DRV - [2003-08-18 14:57:52 | 000,007,080 | R--- | M] (Hewlett-Packard Company) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\EABFILTR.SYS -- (eabfiltr) DRV - [2003-07-24 18:55:50 | 000,139,604 | ---- | M] (Deterministic Networks, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dne2000.sys -- (DNE) DRV - [2003-07-15 19:48:44 | 000,270,384 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\SynTP.sys -- (SynTP) DRV - [2003-06-06 12:46:16 | 000,005,220 | R--- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EABUSB.SYS -- (eabusb) DRV - [2003-05-01 13:26:34 | 000,005,220 | ---- | M] (Cisco Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CVirtA.sys -- (CVirtA) DRV - [2002-11-20 15:54:52 | 000,033,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gv3.sys -- (gv3) DRV - [2002-08-19 14:35:44 | 000,019,845 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Cpqdfw.sys -- (cpqdfw) DRV - [2001-10-26 17:07:38 | 000,036,425 | ---- | M] (SMC) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\smcirda.sys -- (SMCIRDA) DRV - [2001-08-17 22:54:18 | 000,063,232 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnknb.sys -- (NwlnkNb) DRV - [2001-08-17 22:54:18 | 000,055,936 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\nwlnkspx.sys -- (NwlnkSpx) DRV - [1996-12-05 01:07:40 | 000,003,424 | ---- | M] (c't) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\DirectNT.sys -- (DirectNT) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.hp.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.bearshare.com/sidebar.html?src=ssb IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-746137067-152049171-725345543-500\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.bearshare.com/sidebar.html?src=ssb IE - HKU\S-1-5-21-746137067-152049171-725345543-500\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.pajacyk.pl/ IE - HKU\S-1-5-21-746137067-152049171-725345543-500\..\URLSearchHook: {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\MediaBar.dll (IE Toolbar) IE - HKU\S-1-5-21-746137067-152049171-725345543-500\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) IE - HKU\S-1-5-21-746137067-152049171-725345543-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2004-05-16 23:44:56 | 000,000,025 | ---- | M]) - C:\WINDOWS\System32\Drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (no name) - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - No CLSID value found. O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) O2 - BHO: (myBar BHO) - {0494D0D1-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL File not found O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (Curl Class) - {A78CC2FF-6E4E-4556-B27C-D7C3A70D7A50} - C:\WINDOWS\system32\NDrv.dll () O2 - BHO: (3D SuDoku Toolbar Helper) - {C0359FAB-B1E6-4e08-A945-AE9651D11AD5} - C:\Program Files\3D SuDoku Toolbar\v2.0.0.3\3D_SuDoku_Toolbar.dll () O2 - BHO: (XBTP02634 Class) - {F97DA966-F09D-4cab-BF29-75A0026986EA} - C:\Program Files\BearShare Applications\BearShare MediaBar\MediaBar.dll (IE Toolbar) O3 - HKLM\..\Toolbar: (My &Search Bar) - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - C:\Program Files\MyWay\myBar\1.bin\MYBAR.DLL File not found O3 - HKLM\..\Toolbar: (3D SuDoku Toolbar) - {7D0C54A3-0219-4849-A635-C8E32DF96E0D} - C:\Program Files\3D SuDoku Toolbar\v2.0.0.3\3D_SuDoku_Toolbar.dll () O3 - HKLM\..\Toolbar: (&Radio) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\Program Files\CARSOFT\BMW\msdxm.ocx (Microsoft Corporation) O3 - HKLM\..\Toolbar: (no name) - {CC90CDA0-74A0-45b4-80EF-D89CA8C249B8} - No CLSID value found. O3 - HKLM\..\Toolbar: (BearShare MediaBar) - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\MediaBar.dll (IE Toolbar) O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) O3 - HKU\S-1-5-21-746137067-152049171-725345543-500\..\Toolbar\ShellBrowser: (3D SuDoku Toolbar) - {7D0C54A3-0219-4849-A635-C8E32DF96E0D} - C:\Program Files\3D SuDoku Toolbar\v2.0.0.3\3D_SuDoku_Toolbar.dll () O3 - HKU\S-1-5-21-746137067-152049171-725345543-500\..\Toolbar\ShellBrowser: (BearShare MediaBar) - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\MediaBar.dll (IE Toolbar) O3 - HKU\S-1-5-21-746137067-152049171-725345543-500\..\Toolbar\WebBrowser: (3D SuDoku Toolbar) - {7D0C54A3-0219-4849-A635-C8E32DF96E0D} - C:\Program Files\3D SuDoku Toolbar\v2.0.0.3\3D_SuDoku_Toolbar.dll () O3 - HKU\S-1-5-21-746137067-152049171-725345543-500\..\Toolbar\WebBrowser: (BearShare MediaBar) - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:\Program Files\BearShare Applications\BearShare MediaBar\MediaBar.dll (IE Toolbar) O3 - HKU\S-1-5-21-746137067-152049171-725345543-500\..\Toolbar\WebBrowser: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) O4 - HKLM..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation) O4 - HKLM..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\Cpqset.exe () O4 - HKLM..\Run: [eabconfg.cpl] C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe (Hewlett-Packard ) O4 - HKLM..\Run: [Free Radio] C:\Program Files\Free Radio\radio.exe File not found O4 - HKLM..\Run: [iPlusManager] C:\Program Files\iPlus\iPlusChecker.exe () O4 - HKLM..\Run: [kshzzzp] C:\WINDOWS\isyqksfe.exe File not found O4 - HKLM..\Run: [MSys32] C:\Program Files\Tetris 4000\morfitwebentrance.exe File not found O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) O4 - HKLM..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe (Intel(R) Corporation) O4 - HKLM..\Run: [RunWindowsUpdate] C:\WINDOWS\uptodate.exe File not found O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe (Sun Microsystems, Inc.) O4 - HKLM..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Synaptics, Inc.) O4 - HKLM..\Run: [UpdateManager] C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe (Sonic Solutions) O4 - HKLM..\Run: [vptray] C:\Program Files\Symantec AntiVirus\VPTray.exe (Symantec Corporation) O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe () O4 - HKLM..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe (Intel Corporation) O4 - HKU\S-1-5-21-746137067-152049171-725345543-500..\Run: [cdoosoft] C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\herss.exe File not found O4 - HKU\S-1-5-21-746137067-152049171-725345543-500..\Run: [Gadu-Gadu] C:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O4 - HKU\S-1-5-21-746137067-152049171-725345543-500..\Run: [kamsoft] C:\WINDOWS\System32\kamsoft.exe File not found O4 - Startup: C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\PowerReg Scheduler V3.exe (Leader Technologies) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Cisco Systems VPN Client.lnk = C:\Program Files\Cisco Systems\VPN Client\vpngui.exe (Cisco Systems, Inc.) O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-746137067-152049171-725345543-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll (Sun Microsystems, Inc.) O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra 'Tools' menuitem : @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation) O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.) O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} http://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {9F1C11AA-197B-4942-BA54-47A8489BB47F} http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?38170.1394560185 (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_05) O16 - DPF: {CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_02-windows-i586.cab (Java Plug-in 1.5.0_02) O16 - DPF: {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_04-windows-i586.cab (Java Plug-in 1.5.0_04) O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab (Java Plug-in 1.5.0_06) O16 - DPF: {CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_08-windows-i586.cab (Java Plug-in 1.5.0_08) O16 - DPF: {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_09-windows-i586.cab (Java Plug-in 1.5.0_09) O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab (Java Plug-in 1.5.0_10) O16 - DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab (Java Plug-in 1.6.0) O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Java Plug-in 1.6.0_01) O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Java Plug-in 1.6.0_02) O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Java Plug-in 1.6.0_03) O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05) O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E0CE16CB-741C-4B24-8D04-A817856E07F4} http://cabs.roings.com/cabs/serialzip.cab (IObjSafety.DemoCtl) O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.) O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = teta.local O18 - Protocol\Handler\qcom {B8DBD265-42C3-43e6-B439-E968C71984C6} - C:\Program Files\Common Files\Quest Shared\CodeXpert\qcom.dll (Quest Software, Inc.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\Program Files\CARSOFT\BMW\msdxm.ocx (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation) O20 - Winlogon\Notify\NavLogon: DllName - C:\WINDOWS\System32\NavLogon.dll - C:\WINDOWS\system32\NavLogon.dll (Symantec Corporation) O20 - Winlogon\Notify\Sebring: DllName - C:\WINDOWS\system32\LgNotify.dll - C:\WINDOWS\system32\LgNotify.dll (Intel Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O30 - LSA: Authentication Packages - (nwprovau) - C:\WINDOWS\System32\nwprovau.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006-02-28 14:56:46 | 000,000,036 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2010-03-31 17:34:31 | 000,000,051 | RHS- | M] () - C:\autorun.inf -- [ NTFS ] O33 - MountPoints2\{0415f928-e894-11dc-a560-000802e0fca4}\Shell\AutoRun\command - "" = F:\USBNB.exe -- File not found O33 - MountPoints2\{367c1e5e-a371-11dd-a5c8-000802e0fca4}\Shell\AutoRun\command - "" = E:\2u.com -- File not found O33 - MountPoints2\{367c1e5e-a371-11dd-a5c8-000802e0fca4}\Shell\explore\Command - "" = E:\2u.com -- File not found O33 - MountPoints2\{367c1e5e-a371-11dd-a5c8-000802e0fca4}\Shell\open\Command - "" = E:\2u.com -- File not found O33 - MountPoints2\{367c1e5f-a371-11dd-a5c8-000802e0fca4}\Shell\AutoRun\command - "" = F:\2u.com -- File not found O33 - MountPoints2\{367c1e5f-a371-11dd-a5c8-000802e0fca4}\Shell\explore\Command - "" = F:\2u.com -- File not found O33 - MountPoints2\{367c1e5f-a371-11dd-a5c8-000802e0fca4}\Shell\open\Command - "" = F:\2u.com -- File not found O33 - MountPoints2\{5cf84cf4-d759-11de-a5f2-000802e0fca4}\Shell\AutoRun\command - "" = E:\ji83j.exe -- File not found O33 - MountPoints2\{5cf84cf4-d759-11de-a5f2-000802e0fca4}\Shell\open\Command - "" = E:\ji83j.exe -- File not found O33 - MountPoints2\{6b7d2b99-9fb8-11d8-a34b-806d6172696f}\Shell\AutoRun\command - "" = ey.exe O33 - MountPoints2\{6b7d2b99-9fb8-11d8-a34b-806d6172696f}\Shell\open\Command - "" = ey.exe O33 - MountPoints2\{9ef4d624-ce7d-11dd-a5d5-000802e0fca4}\Shell\AutoRun\command - "" = E:\2u.com -- File not found O33 - MountPoints2\{9ef4d624-ce7d-11dd-a5d5-000802e0fca4}\Shell\explore\Command - "" = E:\2u.com -- File not found O33 - MountPoints2\{9ef4d624-ce7d-11dd-a5d5-000802e0fca4}\Shell\open\Command - "" = E:\2u.com -- File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010-11-29 16:44:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Pulpit\logi [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010-11-29 16:45:31 | 000,003,994 | ---- | M] () -- C:\WINDOWS\wincmd.ini [2010-11-25 08:52:33 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-11-25 08:52:29 | 1064,751,104 | -HS- | M] () -- C:\hiberfil.sys [2010-11-25 08:31:01 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-11-19 20:05:39 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2010-11-16 12:46:52 | 000,522,110 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-11-16 12:46:52 | 000,462,692 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-11-16 12:46:52 | 000,097,964 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-11-16 12:46:52 | 000,079,830 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-02-26 11:48:15 | 000,000,700 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\hpzinstall.log [2010-02-25 21:06:15 | 000,000,079 | ---- | C] () -- C:\WINDOWS\pit2009.ini [2010-02-25 21:06:15 | 000,000,021 | ---- | C] () -- C:\WINDOWS\pit2007.ini [2008-08-11 08:44:06 | 000,158,488 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2008-08-08 07:44:18 | 000,378,880 | ---- | C] () -- C:\WINDOWS\System32\KXauth.dll [2008-06-02 10:01:28 | 000,000,243 | ---- | C] () -- C:\WINDOWS\TetaMTer.INI [2007-11-14 23:47:47 | 000,135,168 | ---- | C] () -- C:\WINDOWS\System32\vpnapi.dll [2007-03-25 20:56:23 | 000,000,411 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI [2006-07-06 22:18:49 | 000,000,390 | ---- | C] () -- C:\WINDOWS\kip.INI [2006-05-15 11:04:27 | 000,000,560 | ---- | C] () -- C:\WINDOWS\hpbafd.ini [2006-03-16 14:29:47 | 000,001,682 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys [2006-03-16 14:29:47 | 000,000,056 | RHS- | C] () -- C:\WINDOWS\System32\8837F9E936.sys [2006-02-28 09:04:35 | 000,001,743 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache [2005-12-13 15:23:05 | 000,000,104 | ---- | C] () -- C:\WINDOWS\System32\attfd42.dll [2005-12-09 15:57:33 | 000,001,147 | ---- | C] () -- C:\WINDOWS\ARCHPR.INI [2005-08-22 08:47:50 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll [2005-08-02 22:24:01 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll [2005-07-17 15:28:22 | 000,005,606 | ---- | C] () -- C:\WINDOWS\System32\stci.dll [2005-07-07 07:08:44 | 000,045,124 | ---- | C] () -- C:\WINDOWS\System32\LsaWrApi.dll [2005-07-07 07:00:14 | 000,139,264 | ---- | C] () -- C:\WINDOWS\System32\ShellNav.dll [2005-07-07 06:58:32 | 000,532,549 | ---- | C] () -- C:\WINDOWS\System32\C1XStngs.dll [2005-07-07 06:57:24 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\D8021Xps.dll [2005-05-20 18:44:14 | 000,000,769 | ---- | C] () -- C:\WINDOWS\VPlayer.INI [2005-05-14 01:23:58 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2005-05-08 12:51:51 | 000,338,944 | ---- | C] () -- C:\WINDOWS\System32\LFFPX7.DLL [2005-05-08 12:51:51 | 000,118,784 | ---- | C] () -- C:\WINDOWS\System32\LFKODAK.DLL [2005-04-19 14:26:56 | 000,000,004 | ---- | C] () -- C:\WINDOWS\info147.sys [2005-04-12 14:32:54 | 000,000,019 | ---- | C] () -- C:\WINDOWS\SoundConverter.INI [2005-03-30 18:26:03 | 000,051,200 | ---- | C] () -- C:\WINDOWS\System32\bass_winamp.dll [2005-03-04 15:57:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\VPC32.INI [2005-02-13 10:37:08 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2005-01-14 02:49:01 | 000,014,848 | ---- | C] () -- C:\WINDOWS\System32\gxLame.dll [2005-01-13 03:00:14 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\ssleay32.dll [2005-01-13 03:00:10 | 000,651,264 | ---- | C] () -- C:\WINDOWS\System32\libeay32.dll [2004-12-06 20:12:49 | 000,052,224 | ---- | C] () -- C:\WINDOWS\System32\bass_vis.dll [2004-10-26 23:39:05 | 003,375,104 | ---- | C] () -- C:\WINDOWS\System32\qt-mt331.dll [2004-09-27 19:19:04 | 000,371,200 | ---- | C] () -- C:\WINDOWS\System32\tvqdec.dll [2004-09-06 14:07:45 | 000,001,102 | ---- | C] () -- C:\WINDOWS\bestplayer.ini [2004-07-15 11:07:39 | 000,000,243 | ---- | C] () -- C:\WINDOWS\TETAMenu.INI [2004-06-18 15:39:41 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\NDrv.dll [2004-06-10 12:01:24 | 000,221,184 | ---- | C] () -- C:\WINDOWS\System32\stlbclick.dll [2004-06-04 19:23:45 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\dprsx.dll [2004-06-04 19:23:45 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\gpvbd.dll [2004-06-04 19:23:45 | 000,027,136 | ---- | C] () -- C:\WINDOWS\System32\AuthDVD.DLL [2004-05-16 23:27:19 | 000,000,960 | ---- | C] () -- C:\WINDOWS\usta32.ini [2004-05-15 11:01:21 | 000,212,453 | ---- | C] () -- C:\WINDOWS\wininit.ini [2004-05-15 11:00:49 | 000,000,131 | RHS- | C] () -- C:\WINDOWS\didduid.ini [2004-05-12 15:01:19 | 000,001,617 | ---- | C] () -- C:\WINDOWS\smdat32a.sys [2004-05-12 15:01:19 | 000,000,010 | ---- | C] () -- C:\WINDOWS\smdat32m.sys [2004-05-10 10:23:03 | 000,143,384 | ---- | C] () -- C:\WINDOWS\System32\CSGina.dll [2004-05-10 08:20:17 | 000,001,125 | ---- | C] () -- C:\WINDOWS\winamp.ini [2004-05-08 00:24:39 | 000,008,704 | ---- | C] () -- C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2004-05-07 16:11:09 | 000,002,577 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini [2004-05-07 09:07:59 | 000,000,525 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2004-05-07 08:59:46 | 000,003,994 | ---- | C] () -- C:\WINDOWS\wincmd.ini [2004-05-07 07:25:25 | 000,000,223 | ---- | C] () -- C:\WINDOWS\ACT_CFG.INI [2004-05-07 07:25:19 | 000,019,845 | ---- | C] () -- C:\WINDOWS\System32\drivers\Cpqdfw.sys [2004-05-07 07:25:19 | 000,001,387 | ---- | C] () -- C:\WINDOWS\Cpqdiag.ini [2004-05-07 00:28:42 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2004-01-12 16:22:00 | 000,073,220 | ---- | C] () -- C:\WINDOWS\System32\gxDBEngine2.DLL [2003-09-12 10:31:04 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\btsendto_ie.dll [2003-09-12 10:30:04 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\btsendto_wab.dll [2003-09-12 10:23:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll [2003-09-12 10:12:46 | 000,022,183 | ---- | C] () -- C:\WINDOWS\System32\drivers\btserial.sys [2003-08-07 20:01:50 | 000,430,080 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll [2003-04-08 10:40:22 | 000,005,679 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI [2003-02-19 16:20:16 | 000,225,280 | ---- | C] () -- C:\WINDOWS\System32\tifmicon.dll [2002-04-01 23:29:28 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll [2002-04-01 23:16:30 | 000,454,656 | ---- | C] () -- C:\WINDOWS\System32\VorbisEnc.dll [2002-04-01 23:16:14 | 000,118,784 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll [2002-04-01 23:15:40 | 000,011,264 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll [2002-03-26 20:18:28 | 000,091,136 | ---- | C] () -- C:\WINDOWS\System32\mp4fil32.dll [2002-03-25 19:02:14 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys [2002-03-21 14:39:02 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\UNACEV2.DLL [2002-02-21 17:41:20 | 000,157,184 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2002-01-20 13:26:36 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\SimpleResize.dll [2001-11-14 12:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll [2001-10-25 15:53:24 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\avisynth.dll [2001-06-22 12:06:02 | 000,167,936 | ---- | C] () -- C:\WINDOWS\System32\MPEG2DEC.dll [1997-06-14 01:56:08 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll [color=#E56717]========== LOP Check ==========[/color] [2008-09-13 12:37:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\ACD Systems [2009-07-05 19:38:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\HEXelon [2004-05-08 00:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\InterVideo [2009-03-05 14:12:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\iPlus [2004-05-10 07:51:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Leadertech [2006-03-14 15:09:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\PC Suite [2008-10-20 09:49:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Quest Software [2006-09-28 21:47:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ACD Systems [2008-08-08 07:43:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Quest Software [2008-08-06 09:08:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{159EEA95-6DF5-4775-A5B0-F7138E44421B} [2008-06-23 09:38:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{A374AD71-129C-4AEB-A1AC-72FB3BF7E525} [2004-07-02 08:55:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\ACD Systems [2004-06-28 20:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\caeu [2005-04-10 11:03:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\DataLayer [2005-01-15 00:07:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\Dokumenty AFi [2004-06-03 20:13:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\InterVideo [2008-07-01 11:57:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\iPlus [2004-05-10 07:46:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\Leadertech [2006-06-27 09:47:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\Nokia [2008-08-11 09:12:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\Notepad++ [2006-06-27 10:02:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\PC Suite [2008-08-08 07:45:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\Quest Software [2008-08-08 07:43:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\Software [2008-08-11 09:07:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\j.dzugaj\Dane aplikacji\TETA Constellation [color=#E56717]========== Purity Check ==========[/color] < End of report >