OTL logfile created on: 2012-09-22 18:02:25 - Run 2 OTL by OldTimer - Version 3.2.65.1 Folder = C:\Downloads Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,50 Gb Total Physical Memory | 2,57 Gb Available Physical Memory | 73,45% Memory free 7,00 Gb Paging File | 5,85 Gb Available in Paging File | 83,64% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 59,21 Gb Total Space | 8,19 Gb Free Space | 13,84% Space Free | Partition Type: NTFS Drive D: | 89,84 Gb Total Space | 54,70 Gb Free Space | 60,89% Space Free | Partition Type: NTFS Computer Name: MACIEK-KOMPUTER | User Name: Maciek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-09-22 12:34:29 | 000,600,576 | ---- | M] (OldTimer Tools) -- C:\Downloads\OTL.exe PRC - [2012-09-07 22:19:27 | 000,917,984 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2012-08-13 03:24:48 | 005,167,736 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgidsagent.exe PRC - [2012-07-31 03:37:02 | 002,596,984 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgtray.exe PRC - [2012-07-26 03:23:08 | 000,758,392 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgrsx.exe PRC - [2012-06-13 03:48:24 | 001,255,544 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgnsx.exe PRC - [2012-02-14 04:53:38 | 000,193,288 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe PRC - [2012-02-14 04:52:38 | 000,338,784 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgcsrvx.exe PRC - [2011-04-08 07:14:00 | 002,218,600 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe PRC - [2011-04-07 22:43:04 | 000,841,832 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe PRC - [2011-04-07 21:54:52 | 000,378,472 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe PRC - [2009-10-31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-07-14 03:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 03:14:12 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\audiodg.exe PRC - [2006-11-03 11:01:16 | 000,319,488 | ---- | M] (PixArt Imaging Incorporation) -- C:\Windows\PixArt\PAC7302\Monitor.exe PRC - [2006-11-02 20:40:12 | 000,174,656 | ---- | M] () -- C:\Windows\System32\PSIService.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-09-07 22:19:26 | 002,244,064 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2011-04-07 21:54:38 | 000,239,720 | ---- | M] () -- C:\Program Files\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2012-09-07 22:19:26 | 000,114,144 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-08-13 03:24:48 | 005,167,736 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\avgidsagent.exe -- (AVGIDSAgent) SRV - [2012-02-14 04:53:38 | 000,193,288 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe -- (avgwd) SRV - [2011-08-04 14:34:46 | 001,361,288 | ---- | M] (LogMeIn Inc.) [Disabled | Stopped] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc) SRV - [2011-06-19 12:42:52 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2011-04-08 07:14:00 | 002,218,600 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService) SRV - [2011-04-07 21:54:52 | 000,378,472 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2010-06-15 23:15:44 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2009-07-14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2007-05-31 16:21:24 | 000,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm) SRV - [2007-05-31 16:21:18 | 000,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr) SRV - [2006-11-02 20:40:12 | 000,174,656 | ---- | M] () [Auto | Running] -- C:\Windows\System32\PSIService.exe -- (ProtexisLicensing) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2012-08-24 15:43:18 | 000,301,920 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix) DRV - [2012-07-26 03:21:30 | 000,237,408 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86) DRV - [2012-04-19 04:50:26 | 000,024,896 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\avgidshx.sys -- (AVGIDSHX) DRV - [2012-01-31 04:46:50 | 000,031,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgrkx86.sys -- (Avgrkx86) DRV - [2011-12-23 13:32:14 | 000,041,040 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86) DRV - [2011-12-23 13:32:08 | 000,017,232 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avgidsshimx.sys -- (AVGIDSShim) DRV - [2011-12-23 13:32:06 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avgidsfilterx.sys -- (AVGIDSFilter) DRV - [2011-12-23 13:32:00 | 000,139,856 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avgidsdriverx.sys -- (AVGIDSDriver) DRV - [2011-07-25 17:02:56 | 000,218,688 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV - [2011-04-18 10:54:56 | 000,139,128 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PnkBstrK.sys -- (PnkBstrK) DRV - [2011-04-08 07:14:00 | 010,690,024 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2010-05-19 17:28:42 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sptd.sys -- (sptd) DRV - [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi) DRV - [2009-10-13 02:16:02 | 000,049,152 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\l160x86.sys -- (AtcL001) DRV - [2009-07-14 01:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-05-01 00:56:30 | 000,495,768 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LV561AV.SYS -- (PID_0928) DRV - [2007-09-10 08:50:56 | 000,457,984 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\PAC7302.SYS -- (PAC7302) DRV - [2005-03-03 19:53:57 | 000,048,640 | ---- | M] (Protection Technology) [Kernel | Boot | Stopped] -- C:\Windows\System32\drivers\sfdrv01.sys -- (sfdrv01) DRV - [2005-02-23 17:59:54 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfhlp02.sys -- (sfhlp02) DRV - [2005-02-23 14:58:56 | 000,011,776 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\afc.sys -- (Afc) DRV - [2004-08-13 09:56:20 | 000,005,810 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ASACPI.sys -- (MTsensor) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKLM\..\SearchScopes,DefaultScope = {17C4994A-0253-477C-A3BA-F7F121D7DF35} IE - HKLM\..\SearchScopes\{17C4994A-0253-477C-A3BA-F7F121D7DF35}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-3463501743-290019895-1265816119-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-3463501743-290019895-1265816119-1001\..\SearchScopes,DefaultScope = {17C4994A-0253-477C-A3BA-F7F121D7DF35} IE - HKU\S-1-5-21-3463501743-290019895-1265816119-1001\..\SearchScopes\{17C4994A-0253-477C-A3BA-F7F121D7DF35}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-3463501743-290019895-1265816119-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-3463501743-290019895-1265816119-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "https://www.google.pl/" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\ [2012-09-11 16:11:55 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F53C93F1-07D5-430c-86D4-C9531B27DFAF}: C:\Program Files\AVG\AVG2012\Firefox\DoNotTrack\ [2012-07-03 08:24:10 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 11.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 13.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.0\extensions\\Components: C:\Program Files\Mozilla Firefox_2\components [2011-11-23 21:13:51 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox_2\plugins [2012-06-02 14:08:49 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 6.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 6.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 6.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 6.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-09-07 22:19:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 9.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-09-22 17:34:16 | 000,000,000 | ---D | M] [2010-04-30 16:25:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Maciek\AppData\Roaming\mozilla\Extensions [2012-09-22 17:33:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Maciek\AppData\Roaming\mozilla\Firefox\Profiles\3jcvfyne.default\extensions [2010-05-23 17:58:32 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Maciek\AppData\Roaming\mozilla\Firefox\Profiles\3jcvfyne.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2012-07-17 15:01:43 | 000,052,184 | ---- | M] () (No name found) -- C:\Users\Maciek\AppData\Roaming\mozilla\firefox\profiles\3jcvfyne.default\extensions\{9D6218B8-03C7-4b91-AA43-680B305DD35C}.xpi [2012-07-17 15:04:01 | 000,016,192 | ---- | M] () (No name found) -- C:\Users\Maciek\AppData\Roaming\mozilla\firefox\profiles\3jcvfyne.default\extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc}.xpi [2012-09-07 22:19:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012-09-07 22:19:22 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Program Files\Mozilla Firefox\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} [2012-09-07 22:19:27 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2009-06-01 13:22:18 | 000,874,008 | ---- | M] (ParallelGraphics) -- C:\Program Files\mozilla firefox\plugins\npCortona.dll [2011-10-03 06:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2012-02-12 21:16:04 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-02-12 21:16:04 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-02-12 21:16:04 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-02-12 21:16:04 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-02-12 21:16:04 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-02-12 21:16:04 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2012-09-22 11:44:11 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AVG Do Not Track) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - C:\Program Files\AVG\AVG2012\avgdtiex.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [PAC7302_Monitor] C:\Windows\PixArt\PAC7302\Monitor.exe (PixArt Imaging Incorporation) O4 - HKU\S-1-5-21-3463501743-290019895-1265816119-1003..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun File not found O4 - HKU\S-1-5-21-3463501743-290019895-1265816119-1003..\RunOnce: [avg_spchecker] "C:\Program Files\AVG\AVG9\Notification\SPChecker1.exe" /start File not found O4 - HKU\S-1-5-21-3463501743-290019895-1265816119-1003..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-3463501743-290019895-1265816119-1003..\RunOnce: [spchecker] "C:\Program Files\AVG\AVG10\Notification\SPCheckerTE.exe" File not found O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-3463501743-290019895-1265816119-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-3463501743-290019895-1265816119-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-3463501743-290019895-1265816119-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.) O8 - Extra context menu item: Dodaj do blokowanych banerów - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations\ie_banner_deny.htm File not found O8 - Extra context menu item: E&ksport do programu Microsoft Excel - C:\Program Files\Microsoft Office2003\OFFICE11\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 File not found O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - C:\Program Files\AVG\AVG2012\avgdtiex.dll (AVG Technologies CZ, s.r.o.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2A4C2A86-2B02-4CAA-A3F0-382E95483D19}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3707FB5B-9F53-40A1-9338-53F08987F001}: DhcpNameServer = 10.0.0.138 O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O22 - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Program Files\Stardock\Fences\FencesMenu.dll (Stardock) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - D:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2012\avgrsx.exe /sync /restart) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-09-22 17:33:53 | 000,000,000 | ---D | C] -- C:\_OTL [2012-09-22 11:45:27 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN [2012-09-22 11:45:26 | 000,000,000 | ---D | C] -- C:\Windows\temp [2012-09-22 11:45:26 | 000,000,000 | ---D | C] -- C:\Users\Maciek\AppData\Local\temp [2012-09-22 11:36:18 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe [2012-09-22 11:36:18 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe [2012-09-22 11:36:18 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe [2012-09-22 11:36:07 | 000,000,000 | ---D | C] -- C:\Qoobox [2012-09-22 11:35:53 | 000,000,000 | ---D | C] -- C:\Windows\erdnt [2012-09-18 16:50:37 | 000,000,000 | ---D | C] -- C:\Users\Maciek\Desktop\zdjęcia [2012-09-11 16:11:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG [2012-09-07 22:19:21 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2012-08-24 15:43:18 | 000,301,920 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\drivers\avgtdix.sys [1 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\*.tmp files -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-09-22 18:06:01 | 007,077,888 | ---- | M] () -- C:\Users\Maciek\ntuser.dat [2012-09-22 17:41:17 | 095,498,845 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm [2012-09-22 17:35:34 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2012-09-22 17:35:32 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012-09-22 17:35:30 | 2817,974,272 | -HS- | M] () -- C:\hiberfil.sys [2012-09-22 12:25:26 | 000,024,080 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2012-09-22 12:25:26 | 000,024,080 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2012-09-22 11:44:15 | 000,000,215 | ---- | M] () -- C:\Windows\system.ini [2012-09-22 11:44:11 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts [2012-09-21 19:34:37 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK [2012-09-20 18:08:52 | 000,236,518 | ---- | M] () -- C:\Windows\System32\drivers\AVG\iavichjg.avm [2012-09-11 20:38:20 | 000,847,742 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2012-09-11 20:38:20 | 000,654,354 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2012-09-11 20:38:20 | 000,121,226 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2012-09-11 20:38:20 | 000,055,396 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2012-09-11 20:38:20 | 000,025,354 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2012-09-11 16:11:55 | 000,000,965 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2012.lnk [2012-09-06 06:19:43 | 002,635,480 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2012-09-05 21:05:37 | 000,115,960 | ---- | M] () -- C:\Users\Maciek\AppData\Local\GDIPFONTCACHEV1.DAT [2012-09-02 22:30:45 | 000,009,195 | ---- | M] () -- C:\Users\Maciek\Desktop\kod rabatowy.jpg [2012-09-02 17:35:41 | 000,001,984 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk [2012-08-28 23:52:49 | 000,000,859 | ---- | M] () -- C:\Users\Maciek\Desktop\Graj w League of Legends.lnk [2012-08-25 00:52:27 | 000,000,857 | ---- | M] () -- C:\Windows\win.ini [2012-08-24 15:43:18 | 000,301,920 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\drivers\avgtdix.sys [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-09-22 11:36:18 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe [2012-09-22 11:36:18 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe [2012-09-22 11:36:18 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2012-09-22 11:36:18 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2012-09-22 11:36:18 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2012-09-02 22:30:45 | 000,009,195 | ---- | C] () -- C:\Users\Maciek\Desktop\kod rabatowy.jpg [2012-08-28 23:52:49 | 000,000,859 | ---- | C] () -- C:\Users\Maciek\Desktop\Graj w League of Legends.lnk [2012-07-20 17:57:44 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{aad9b034-d282-11e1-84b0-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms [2012-07-20 17:57:43 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{aad9b034-d282-11e1-84b0-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms [2012-07-20 17:57:43 | 000,065,536 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{aad9b034-d282-11e1-84b0-806e6f6e6963}.TM.blf [2012-07-20 17:48:32 | 000,002,224 | ---- | C] () -- C:\Windows\System32\ASOROSet.bin [2012-05-23 18:49:32 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll [2012-05-23 18:49:32 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll [2012-05-23 18:49:32 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll [2012-05-23 18:49:32 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll [2011-10-26 21:55:20 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI [2011-09-27 21:09:04 | 000,006,857 | ---- | C] () -- C:\Windows\System32\mswrdt.dat [2011-04-17 20:10:29 | 000,000,001 | ---- | C] () -- C:\Windows\System32\SI.bin [2011-01-22 00:24:28 | 000,001,632 | -H-- | C] () -- C:\Windows\px~09.dat [2010-12-14 23:10:32 | 000,000,000 | ---- | C] () -- C:\Windows\System32\Access.dat [2010-12-13 19:39:49 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{50a39c1e-06df-11e0-ab51-001fc6b3357d}.TMContainer00000000000000000002.regtrans-ms [2010-12-13 19:39:49 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{50a39c1e-06df-11e0-ab51-001fc6b3357d}.TMContainer00000000000000000001.regtrans-ms [2010-12-13 19:39:49 | 000,065,536 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{50a39c1e-06df-11e0-ab51-001fc6b3357d}.TM.blf [2010-12-13 19:35:27 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{22718ca4-06de-11e0-965b-001fc6b3357d}.TMContainer00000000000000000002.regtrans-ms [2010-12-13 19:35:27 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{22718ca4-06de-11e0-965b-001fc6b3357d}.TMContainer00000000000000000001.regtrans-ms [2010-12-13 19:35:27 | 000,065,536 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{22718ca4-06de-11e0-965b-001fc6b3357d}.TM.blf [2010-12-12 00:58:42 | 000,001,684 | ---- | C] () -- C:\Windows\Brain.INI [2010-10-09 20:26:36 | 000,036,044 | ---- | C] () -- C:\Windows\System32\bassmod.dll [2010-06-17 20:06:52 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{08100992-7a3b-11df-ac95-001fc6b3357d}.TMContainer00000000000000000002.regtrans-ms [2010-06-17 20:06:52 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{08100992-7a3b-11df-ac95-001fc6b3357d}.TMContainer00000000000000000001.regtrans-ms [2010-06-17 20:06:52 | 000,065,536 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat{08100992-7a3b-11df-ac95-001fc6b3357d}.TM.blf [2010-05-09 22:08:51 | 007,602,176 | -HS- | C] () -- C:\Users\Maciek\ntuser.dat.bak [2010-05-09 22:08:51 | 007,077,888 | ---- | C] () -- C:\Users\Maciek\ntuser.dat [2010-05-09 22:08:51 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms [2010-05-09 22:08:51 | 000,524,288 | -HS- | C] () -- C:\Users\Maciek\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms [2010-05-09 22:08:51 | 000,065,536 | -HS- | C] () -- C:\Users\Maciek\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf [2010-05-09 22:08:51 | 000,000,020 | -HS- | C] () -- C:\Users\Maciek\ntuser.ini [2010-04-16 16:24:33 | 000,000,142 | ---- | C] () -- C:\ProgramData\nvUnsupRes.dat [2009-02-09 18:52:47 | 000,024,064 | ---- | C] () -- C:\Users\Maciek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-01-16 19:47:39 | 000,000,266 | RHS- | C] () -- C:\ProgramData\ntuser.pol [2009-01-16 16:03:11 | 000,115,960 | ---- | C] () -- C:\Users\Maciek\AppData\Local\GDIPFONTCACHEV1.DAT [2009-01-16 16:02:53 | 000,001,356 | ---- | C] () -- C:\Users\Maciek\AppData\Local\d3d9caps.dat [2008-10-15 09:30:50 | 000,000,094 | ---- | C] () -- C:\Users\Maciek\AppData\Local\fusioncache.dat [2008-10-15 09:18:12 | 000,138,056 | ---- | C] () -- C:\Users\Maciek\AppData\Roaming\PnkBstrK.sys [color=#E56717]========== ZeroAccess Check ==========[/color] [2009-06-10 23:26:19 | 000,325,400 | ---- | M] () -- C:\Windows\Fonts\l.ttf [2011-12-18 12:03:34 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\LocalLow\Microsoft\Silverlight\is\epgmx3ok.mhp\q3t3dhv3.vzr\1\l [2010-12-08 18:00:12 | 000,000,002 | ---- | M] () -- C:\Users\Maciek\Documents\dokumenty\n.txt [2009-07-14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [color=#E56717]========== LOP Check ==========[/color] [2011-10-30 19:58:41 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\.minecraft [2010-05-02 22:39:47 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\AeroSnapApp [2012-01-22 21:19:37 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\AnvSoft [2008-11-16 13:52:23 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Ashampoo [2012-01-15 21:51:01 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Audacity [2011-11-11 13:26:03 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\AVG2012 [2011-07-25 17:05:51 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\DAEMON Tools Lite [2011-06-10 19:21:12 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\DAEMON Tools Pro [2010-05-02 22:06:57 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\DeepBurner Pro [2010-12-13 19:38:16 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Dev-Cpp [2010-09-09 17:23:57 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\FileZilla [2011-11-16 16:58:33 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Gadu-Gadu 10 [2010-05-16 22:00:58 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\GetRightToGo [2011-04-15 18:55:01 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\GHISLER [2011-06-21 09:10:59 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\go [2011-06-19 13:56:32 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\GridIron [2005-02-03 15:16:08 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\gtk-2.0 [2005-03-22 17:12:31 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\HateML [2012-01-15 21:41:35 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\ImTOO [2010-04-30 16:18:18 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\ipla [2010-03-26 20:52:40 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Leadertech [2012-03-14 21:13:26 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\LEGO Company [2009-03-29 18:11:52 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\LG Electronics [2011-11-28 18:11:24 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\LolClient [2012-05-24 17:14:44 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\LolClient2 [2010-05-05 20:23:29 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Moje pliki Bitwy o Śródziemie™ II [2010-05-02 17:15:55 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Moje pliki gry Władca Pierścieni, Król Nazguli [2010-05-04 16:25:41 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\My Battle for Middle-earth(tm) II Files [2010-05-09 20:31:06 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\NCH Swift Sound [2011-04-15 19:00:06 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Need for Speed World [2005-02-03 14:17:13 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Notepad++ [2010-03-11 16:55:52 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Nowe Gadu-Gadu [2011-06-29 20:41:17 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\OpenFM [2009-04-16 16:36:39 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\OpenOffice.org [2009-04-16 15:54:40 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\OpenOffice.ux.pl2 [2009-01-16 20:07:16 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Opera [2010-05-11 14:41:53 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\OtakuSoftware [2010-05-02 21:21:35 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Recordpad [2012-06-08 00:21:04 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Samsung [2012-03-11 20:53:26 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Softland [2010-05-10 17:20:49 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Software Informer [2010-03-10 17:43:37 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\SpeedSim [2010-05-03 13:48:52 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Stardock [2012-07-20 18:11:31 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\systweak [2012-06-08 01:02:54 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Temp [2010-12-21 21:01:05 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\The Creative Assembly [2005-02-28 09:16:50 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\TS3Client [2010-12-19 21:10:54 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Tunngle [2010-05-27 19:24:00 | 000,000,000 | ---D | M] -- C:\Users\Maciek\AppData\Roaming\Ubisoft [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 103 bytes -> C:\ProgramData\TEMP:241E4F6D < End of report >