OTL logfile created on: 10/19/2012 9:25:57 AM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE Microsoft Windows XP Dodatek Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM Internet Explorer (Version = 7.0.5730.13) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1,014.00 Mb Total Physical Memory | 796.00 Mb Available Physical Memory | 79.00% Memory free 902.00 Mb Paging File | 820.00 Mb Available in Paging File | 91.00% Paging File free Paging file location(s): C:\pagefile.sys 1524 3048 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 55.89 Gb Total Space | 21.93 Gb Free Space | 39.23% Space Free | Partition Type: NTFS Drive D: | 54.43 Gb Total Space | 6.14 Gb Free Space | 11.28% Space Free | Partition Type: NTFS Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days Using ControlSet: ControlSet001 [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand] -- -- (NMIndexingService) SRV - File not found [Disabled] -- -- (HidServ) SRV - [2012/07/13 07:28:36 | 000,160,944 | R--- | M] (Skype Technologies) [Auto] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2012/04/04 12:47:32 | 000,161,664 | ---- | M] (Oracle Corporation) [Auto] -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2012/01/04 07:32:36 | 000,718,888 | ---- | M] (Nokia) [On_Demand] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2011/09/06 12:16:42 | 000,974,944 | ---- | M] (ESET) [Auto] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2007/07/26 09:26:40 | 000,009,216 | ---- | M] (Agere Systems) [Auto] -- C:\WINDOWS\system32\agrsmsvc.exe -- (AgereModemAudio) SRV - [2007/07/24 06:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto] -- C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand] -- -- (WDICA) DRV - File not found [Kernel | On_Demand] -- -- (Tosrfusb) DRV - File not found [Kernel | On_Demand] -- -- (TosRfSnd) DRV - File not found [Kernel | On_Demand] -- -- (tosrfnds) DRV - File not found [Kernel | On_Demand] -- -- (Tosrfhid) DRV - File not found [Kernel | On_Demand] -- -- (Tosrfcom) DRV - File not found [Kernel | On_Demand] -- -- (tosrfbnp) DRV - File not found [Kernel | On_Demand] -- -- (tosrfbd) DRV - File not found [Kernel | On_Demand] -- -- (tosporte) DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP) DRV - File not found [Kernel | System] -- -- (PCIDump) DRV - File not found [Kernel | System] -- -- (lbrtfdc) DRV - File not found [Kernel | System] -- -- (i2omgmt) DRV - File not found [Kernel | System] -- -- (Changer) DRV - File not found [Kernel | System] -- -- (Cdaudio) DRV - File not found [Kernel | On_Demand] -- -- (catchme) DRV - [2011/11/01 04:07:26 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2011/11/01 04:07:26 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2011/11/01 04:07:26 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2011/11/01 04:07:24 | 000,137,600 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu) DRV - [2011/11/01 04:07:24 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2011/11/01 04:07:24 | 000,008,576 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc) DRV - [2011/09/02 18:29:40 | 000,016,472 | ---- | M] () [Kernel | On_Demand] -- C:\WINDOWS\system32\pwdrvio.sys -- (pwdrvio) DRV - [2011/09/02 18:29:36 | 000,011,104 | ---- | M] () [Kernel | On_Demand] -- C:\WINDOWS\system32\pwdspio.sys -- (pwdspio) DRV - [2011/08/09 07:57:10 | 000,154,136 | ---- | M] (ESET) [File_System | Auto] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2011/08/04 03:20:38 | 000,103,112 | ---- | M] (ESET) [Kernel | System] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir) DRV - [2011/08/04 03:20:36 | 000,118,104 | ---- | M] (ESET) [Kernel | System] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv) DRV - [2010/03/16 05:15:57 | 000,691,696 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2009/10/12 10:21:54 | 000,100,736 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ewusbdev.sys -- (hwusbdev) DRV - [2008/09/25 04:57:04 | 003,626,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) Sterownik karty Intel(R) DRV - [2008/08/26 03:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008/05/02 02:48:55 | 000,062,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot] -- C:\WINDOWS\System32\drivers\si3112.sys -- (Si3112) DRV - [2008/04/13 18:23:10 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm) DRV - [2008/03/17 06:03:46 | 000,101,376 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2007/07/26 09:30:34 | 004,429,312 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007/07/26 09:29:32 | 000,090,880 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007/07/26 09:26:38 | 001,161,888 | ---- | M] (Agere Systems) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem) DRV - [2007/07/26 09:19:42 | 000,290,304 | ---- | M] (Texas Instruments) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\tifm21.sys -- (tifm21) DRV - [2007/04/16 04:19:10 | 000,011,776 | ---- | M] (Chicony Electronics Co., Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\UVCFTR_S.SYS -- (UVCFTR) DRV - [2006/11/02 10:51:58 | 000,013,560 | ---- | M] (Cyberlink Corp.) [Kernel | Auto] -- C:\Program Files\CyberLink\PowerDVD\000.fcl -- ({95808DC4-FA4A-4c74-92FE-5B863F82066B}) DRV - [2006/10/23 10:32:20 | 000,009,216 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\tosrfec.sys -- (tosrfec) DRV - [2006/06/22 10:27:12 | 000,011,264 | ---- | M] (TOSHIBA ) [Kernel | System] -- C:\WINDOWS\system32\drivers\TPwSav.sys -- (TPwSav) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com/?st=6&barid={0845E1F2-0C66-11E2-AC41-001CBF22C282} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.1: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69: C:\Program Files\Real Alternative\Browser\Plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69: C:\Program Files\Real Alternative\Browser\Plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fe_3.0@nokia.com: C:\Program Files\Nokia\Nokia Suite\Connectors\Bookmarks Connector\FirefoxExtension_3.0 [2012/04/22 15:13:53 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/09/07 05:40:45 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 15.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/09/07 05:40:32 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\te_9.0@nokia.com: C:\Program Files\Nokia\Nokia Suite\Connectors\Thunderbird Connector\ThunderbirdExtension_9.0 [2012/04/22 15:14:05 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2012/05/23 09:54:36 | 000,000,000 | ---D | M] [2012/09/07 05:40:29 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2012/09/07 05:40:29 | 000,000,000 | ---D | M] (z) -- C:\Program Files\Mozilla Firefox\extensions\{29c2390e-e9df-bcce-75a8-de734a787dae} [2012/09/07 05:40:45 | 000,266,720 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2011/03/03 10:00:30 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2012/07/01 16:48:21 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012/10/02 03:38:53 | 000,002,361 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml [2012/07/01 16:48:21 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012/07/01 16:48:21 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012/07/01 16:48:21 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012/07/01 16:48:21 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012/07/01 16:48:21 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2012/05/23 10:45:37 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (SweetPacks Browser Helper) - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Documents and Settings\Łukasz\Dane aplikacji\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.) O3 - HKLM\..\Toolbar: (SweetPacks Toolbar for Internet Explorer) - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) O4 - HKLM..\Run: [Browsers Protector] C:\Program Files\Browsers Protector\regmon32.exe () O4 - HKLM..\Run: [CeEKEY] C:\Program Files\Toshiba\E-KEY\CeEKey.exe (COMPAL ELECTRONIC INC.) O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [LanguageShortcut] C:\Program Files\CyberLink\PowerDVD\Language\Language.exe () O4 - HKLM..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe (SweetIM Technologies Ltd.) O4 - HKLM..\Run: [Sweetpacks Communicator] C:\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe (SweetIM Technologies Ltd.) O4 - HKLM..\Run: [TPNF] C:\Program Files\Toshiba\TouchPad\TPTray.exe (COMPAL ELECTRONIC INC.) O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] File not found O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Program Files\pVWjgIPbŔň8Íeejuanak.exe\eejuanak.exe) - File not found O24 - Desktop WallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: B:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/06/18 03:26:58 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012/10/18 17:36:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\CSC [2012/10/18 16:14:33 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\All Users\Dane aplikacji\lsass.exe [2012/10/18 06:20:24 | 001,762,608 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\imagx7.dll [2012/10/18 06:20:24 | 000,808,240 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\imagxra7.dll [2012/10/18 06:20:24 | 000,497,296 | R--- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\imagxpr7.dll [2012/10/18 06:20:24 | 000,263,472 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\imagxr7.dll [2012/10/18 06:19:38 | 000,000,000 | ---D | C] -- C:\Program Files\Nero [2012/10/18 06:19:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Nero [2012/10/18 06:19:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nero [2012/10/02 03:58:13 | 000,000,000 | ---D | C] -- C:\Program Files\pdfsam [2012/10/02 03:51:50 | 000,000,000 | ---D | C] -- C:\Program Files\SweetIM [2012/10/02 03:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\SweetIM [2012/10/02 03:39:06 | 000,000,000 | ---D | C] -- C:\Program Files\BabylonToolbar [2012/10/02 03:38:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon [2006/12/12 05:13:20 | 000,032,768 | ---- | C] (COMPAL ELECTRONIC INC.) -- C:\Documents and Settings\All Users\Dane aplikacji\EBLib.dll [2006/07/28 10:25:26 | 000,019,456 | ---- | C] (COMPAL ELECTRONIC INC.) -- C:\Documents and Settings\All Users\Dane aplikacji\LPCFilter.sys [2004/11/24 14:25:52 | 000,335,872 | ---- | C] ( ) -- C:\WINDOWS\System32\drvc.dll [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012/10/19 02:17:53 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012/10/19 02:09:20 | 083,023,306 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\0tbpw.pad [2012/10/18 16:14:34 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\All Users\Dane aplikacji\lsass.exe [2012/10/18 06:19:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Menu Start\Programy\Nero [2012/10/18 03:07:58 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2012/10/16 08:17:44 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012/10/04 06:57:43 | 000,002,828 | -HS- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\KGyGaAvL.sys [2012/10/02 05:07:10 | 000,004,566 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2012/10/02 05:07:08 | 000,451,934 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012/10/02 05:07:08 | 000,395,534 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012/10/02 05:07:08 | 000,075,904 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012/10/02 05:07:08 | 000,059,774 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012/10/18 16:14:35 | 083,023,306 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\0tbpw.pad [2012/05/29 07:41:27 | 000,000,008 | RHS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\020DBD5F8E.sys [2012/05/23 08:22:45 | 000,910,920 | ---- | C] () -- C:\WINDOWS\System32\pwNative.exe [2012/05/23 08:22:43 | 000,016,472 | ---- | C] () -- C:\WINDOWS\System32\pwdrvio.sys [2012/05/23 08:22:43 | 000,011,104 | ---- | C] () -- C:\WINDOWS\System32\pwdspio.sys [2012/04/26 03:04:14 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\MC259WUX.dll [2012/04/26 03:04:14 | 000,060,416 | ---- | C] () -- C:\WINDOWS\System32\MC259WUD.dll [2011/01/27 17:35:10 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2010/09/22 10:47:18 | 000,000,000 | ---- | C] () -- C:\WINDOWS\TPTray.INI [2010/07/16 13:33:32 | 000,000,038 | ---- | C] () -- C:\WINDOWS\AviSplitter.INI [2010/05/07 06:23:02 | 000,031,567 | ---- | C] () -- C:\WINDOWS\maxlink.ini [2010/04/22 07:08:29 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2010/04/22 07:08:26 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2010/04/22 07:08:25 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2010/04/22 07:08:25 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2010/04/22 07:08:25 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2010/03/16 05:27:29 | 000,002,828 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\KGyGaAvL.sys [2009/06/22 07:55:29 | 000,000,091 | ---- | C] () -- C:\WINDOWS\System32\logon.ini [2009/06/18 16:59:47 | 000,000,000 | ---- | C] () -- C:\WINDOWS\CeEKey.INI [2009/06/18 05:20:35 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009/06/18 05:19:13 | 000,274,968 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2009/06/18 05:07:20 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2009/06/18 04:32:30 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2009/06/18 04:13:43 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\EBLib.DLL [2009/06/18 04:12:09 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2009/06/18 04:11:59 | 000,000,176 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTHDAEQ1.dat [2009/06/18 04:11:59 | 000,000,176 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTHDAEQ0.dat [2009/06/18 04:11:00 | 000,128,113 | ---- | C] () -- C:\WINDOWS\System32\csellang.ini [2009/06/18 04:11:00 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\csellang.dll [2009/06/18 04:11:00 | 000,010,132 | ---- | C] () -- C:\WINDOWS\System32\tosmreg.ini [2009/06/18 04:11:00 | 000,007,671 | ---- | C] () -- C:\WINDOWS\System32\cseltbl.ini [2009/06/18 04:09:30 | 000,910,464 | ---- | C] () -- C:\WINDOWS\System32\igmedkrn.dll [2009/06/18 04:09:30 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4833.dll [2009/06/18 03:28:00 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2009/06/18 03:27:04 | 000,050,105 | ---- | C] () -- C:\WINDOWS\activ.exe [2009/06/18 03:23:55 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2008/12/19 10:15:58 | 004,338,246 | ---- | C] () -- C:\WINDOWS\System32\libavcodec.dll [2008/12/17 12:41:18 | 000,884,237 | ---- | C] () -- C:\WINDOWS\System32\ff_x264.dll [2008/12/17 12:22:58 | 000,093,184 | ---- | C] () -- C:\WINDOWS\System32\ff_wmv9.dll [2008/12/17 12:22:48 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2008/12/17 12:17:34 | 000,239,247 | ---- | C] () -- C:\WINDOWS\System32\ff_theora.dll [2008/12/17 11:59:54 | 000,560,802 | ---- | C] () -- C:\WINDOWS\System32\libmplayer.dll [2008/05/03 03:24:01 | 000,000,082 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini [2008/04/14 17:16:20 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2007/07/17 22:58:38 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\MSHRES0A.DLL [2007/07/17 22:58:38 | 000,024,028 | ---- | C] () -- C:\WINDOWS\MSUMLT0A.INI [2006/12/31 02:57:08 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2006/11/02 11:10:16 | 000,080,912 | ---- | C] () -- C:\WINDOWS\System32\sherlock2.exe [2006/01/05 11:36:22 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\EKECioCtl.dll [2004/10/03 12:50:54 | 000,129,024 | ---- | C] () -- C:\WINDOWS\System32\ff_mpeg2enc.dll [2001/10/26 12:15:16 | 000,451,934 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2001/10/26 12:15:16 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2001/10/26 12:15:16 | 000,075,904 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2001/10/26 12:15:16 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2001/08/23 09:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2001/08/23 09:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2001/08/17 17:30:24 | 000,395,534 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2001/08/17 17:30:24 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2001/08/17 17:30:24 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2001/08/17 17:30:22 | 000,059,774 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2001/08/17 17:15:38 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2001/07/21 18:36:48 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2001/07/21 18:36:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2001/07/21 18:24:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [color=#E56717]========== LOP Check ==========[/color] [2012/10/02 03:38:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon [2010/03/16 05:15:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2009/06/18 05:43:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ESET [2012/06/19 16:50:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\F4D55F3E0007525B006D22E80CDF108C [2009/06/18 16:03:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2012/04/22 15:13:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Nokia [2011/01/11 09:19:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NokiaInstallerCache [2009/07/02 05:20:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2009/06/18 16:16:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010/05/07 06:23:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2012/10/02 04:00:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SweetIM [2009/06/18 04:14:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Vista64 [color=#E56717]========== Purity Check ==========[/color] < End of report >