Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 22-09-2012 (ATTENTION: FRST version is 41 days old) Ran by Krzysztof at 02-11-2012 20:57:45 Running from C:\Users\Krzysztof\Desktop Service Pack 1 (X86) OS Language: Polish Attention: Could not load system hive.BD: Proces nie moe uzyska dostpu do pliku, poniewa jest on uywany przez inny proces. ATTENTION:=====> THE TOOL IS NOT RUN FROM RECOVERY ENVIRONMENT AND WILL NOT FUNCTION PROPERLY. ==================== One Month Created Files and Folders ======== 2012-11-02 16:32 - 2012-11-02 16:32 - 00056882 ____A C:\OTL.Txt 2012-11-02 16:31 - 2012-09-22 15:24 - 00904282 ____A (Farbar) C:\Users\Krzysztof\Desktop\FRST.exe 2012-10-31 15:08 - 2012-10-31 15:08 - 00000000 ____D C:\Users\Krzysztof\AppData\Local\Macromedia 2012-10-31 15:07 - 2012-11-02 20:38 - 00000930 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2012-10-31 15:07 - 2012-10-31 15:57 - 00002002 ____A C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2012-10-31 15:07 - 2012-10-31 15:57 - 00000000 ____D C:\Program Files\McAfee Security Scan 2012-10-31 15:07 - 2012-10-31 15:38 - 00696760 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe 2012-10-31 15:07 - 2012-10-31 15:07 - 00000000 ____D C:\Users\All Users\McAfee Security Scan 2012-10-31 15:07 - 2012-10-31 15:07 - 00000000 ____D C:\Users\All Users\McAfee 2012-10-25 14:45 - 2012-10-25 14:46 - 00000000 ____D C:\Program Files\Mozilla Firefox 2012-10-25 14:24 - 2012-10-25 14:24 - 83023306 ___AT C:\Users\All Users\dsgsdgdsgdsgw.pad 2012-10-24 12:49 - 2012-10-25 12:50 - 00000000 ____D C:\Users\Krzysztof\AppData\Roaming\Yxzoag 2012-10-24 12:49 - 2012-10-24 13:00 - 00000000 ____D C:\Users\Krzysztof\AppData\Roaming\Vaosri 2012-10-24 12:49 - 2012-10-24 12:49 - 00000000 ____D C:\Users\Krzysztof\AppData\Roaming\Heav 2012-10-15 16:55 - 2012-10-15 16:55 - 00000000 ____D C:\Users\Krzysztof\AppData\Roaming\Unity 2012-10-13 14:15 - 2012-10-13 14:15 - 00000000 ____D C:\Users\Krzysztof\AppData\Local\Unity 2012-10-10 08:29 - 2012-10-11 16:31 - 00000000 ____D C:\Users\Krzysztof\AppData\Roaming\Qyihg 2012-10-10 08:29 - 2012-10-10 08:40 - 00000000 ____D C:\Users\Krzysztof\AppData\Roaming\Ihnyid 2012-10-10 08:29 - 2012-10-10 08:29 - 00000000 ____D C:\Users\Krzysztof\AppData\Roaming\Tyuq 2012-10-10 08:10 - 2012-09-14 19:28 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\tzres.dll 2012-10-10 08:10 - 2012-08-24 17:57 - 00172544 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll 2012-10-10 08:10 - 2012-08-20 18:40 - 00868352 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll 2012-10-10 08:10 - 2012-08-20 18:40 - 00293376 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll 2012-10-10 08:10 - 2012-08-20 18:40 - 00169984 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll 2012-10-10 08:10 - 2012-08-20 18:37 - 00271360 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe 2012-10-10 08:10 - 2012-08-20 18:32 - 00005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 18:32 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 16:33 - 00006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 16:33 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 16:33 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll 2012-10-10 08:10 - 2012-08-20 16:33 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll 2012-10-10 08:10 - 2012-06-02 05:36 - 01159680 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2012-10-10 08:10 - 2012-06-02 05:36 - 00140288 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2012-10-10 08:10 - 2012-06-02 05:36 - 00103936 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2012-10-10 08:09 - 2012-08-31 18:18 - 01211760 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys 2012-10-10 08:09 - 2012-08-30 18:12 - 03968880 ____A (Microsoft Corporation) C:\Windows\System32\ntkrnlpa.exe 2012-10-10 08:09 - 2012-08-30 18:12 - 03914096 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2012-10-10 08:09 - 2012-08-11 00:56 - 00542208 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll 2012-10-07 15:53 - 2012-10-07 15:54 - 00000000 ____D C:\Users\Krzysztof\Desktop\2012-10-07 wakacje Grecja 2012 ==================== 3 Months Modified Files ================== 2012-11-02 20:38 - 2012-10-31 15:07 - 00000930 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2012-11-02 20:34 - 2011-08-23 13:28 - 01205330 ____A C:\Windows\WindowsUpdate.log 2012-11-02 16:35 - 2011-08-23 13:39 - 00005194 ____A C:\Windows\System32\PerfStringBackup.INI 2012-11-02 16:35 - 2009-07-14 09:07 - 04532212 ____A C:\Windows\System32\perfh015.dat 2012-11-02 16:35 - 2009-07-14 09:07 - 01434574 ____A C:\Windows\System32\perfc015.dat 2012-11-02 16:32 - 2012-11-02 16:32 - 00056882 ____A C:\OTL.Txt 2012-11-02 16:20 - 2009-07-14 05:34 - 00010240 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2012-11-02 16:20 - 2009-07-14 05:34 - 00010240 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2012-11-02 16:13 - 2009-07-14 05:53 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2012-11-02 16:13 - 2009-07-14 05:39 - 00134644 ____A C:\Windows\setupact.log 2012-10-31 15:57 - 2012-10-31 15:07 - 00002002 ____A C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2012-10-31 15:38 - 2012-10-31 15:07 - 00696760 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe 2012-10-31 15:38 - 2011-08-23 13:37 - 00073656 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl 2012-10-25 14:24 - 2012-10-25 14:24 - 83023306 ___AT C:\Users\All Users\dsgsdgdsgdsgw.pad 2012-10-10 11:20 - 2011-08-24 08:57 - 62968832 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2012-10-03 14:52 - 2011-08-23 13:41 - 00001912 ____A C:\Windows\epplauncher.mif 2012-09-25 18:40 - 2012-09-25 17:25 - 00000952 ____A C:\Users\Krzysztof\Desktop\Digital Image Recovery.lnk 2012-09-25 17:22 - 2012-09-25 17:22 - 00592335 ____A C:\Users\Krzysztof\Desktop\dir( 2012-09-25 17:22 - 2012-09-25 17:22 - 00026984 ____A (AVG Technologies) C:\Windows\System32\Drivers\avgtpx86.sys 2012-09-22 17:59 - 2012-09-22 17:59 - 00001539 ____A C:\AdwCleaner[S2].txt 2012-09-22 15:24 - 2012-11-02 16:31 - 00904282 ____A (Farbar) C:\Users\Krzysztof\Desktop\FRST.exe 2012-09-18 19:20 - 2012-09-18 19:20 - 00000000 _RASH C:\MSDOS.SYS 2012-09-18 19:20 - 2012-09-18 19:20 - 00000000 _RASH C:\IO.SYS 2012-09-14 19:28 - 2012-10-10 08:10 - 00002048 ____A (Microsoft Corporation) C:\Windows\System32\tzres.dll 2012-09-06 13:07 - 2009-07-14 05:53 - 00032608 ____A C:\Windows\Tasks\SCHEDLGU.TXT 2012-08-31 18:18 - 2012-10-10 08:09 - 01211760 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys 2012-08-30 21:03 - 2012-08-30 21:03 - 00193552 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\MpFilter.sys 2012-08-30 21:03 - 2011-04-27 14:25 - 00099272 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\NisDrvWFP.sys 2012-08-30 18:12 - 2012-10-10 08:09 - 03968880 ____A (Microsoft Corporation) C:\Windows\System32\ntkrnlpa.exe 2012-08-30 18:12 - 2012-10-10 08:09 - 03914096 ____A (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2012-08-24 17:57 - 2012-10-10 08:10 - 00172544 ____A (Microsoft Corporation) C:\Windows\System32\wintrust.dll 2012-08-24 08:27 - 2012-09-22 19:44 - 12319744 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2012-08-24 08:03 - 2012-09-22 19:44 - 09738240 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2012-08-24 07:59 - 2012-09-22 19:44 - 01800704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2012-08-24 07:51 - 2012-09-22 19:44 - 01427968 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2012-08-24 07:51 - 2012-09-22 19:44 - 01129472 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2012-08-24 07:51 - 2012-09-22 19:44 - 01103872 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2012-08-24 07:49 - 2012-09-22 19:44 - 00231936 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2012-08-24 07:48 - 2012-09-22 19:44 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2012-08-24 07:47 - 2012-09-22 19:44 - 00717824 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2012-08-24 07:47 - 2012-09-22 19:44 - 00420864 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2012-08-24 07:47 - 2012-09-22 19:44 - 00142848 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2012-08-24 07:45 - 2012-09-22 19:44 - 00607744 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2012-08-24 07:44 - 2012-09-22 19:44 - 01793024 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2012-08-24 07:44 - 2012-09-22 19:44 - 00073216 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2012-08-24 07:43 - 2012-09-22 19:44 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2012-08-24 07:40 - 2012-09-22 19:44 - 00176640 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2012-08-22 18:16 - 2012-09-12 12:00 - 01292144 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2012-08-22 18:16 - 2012-09-12 12:00 - 00712048 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys 2012-08-22 18:16 - 2012-09-12 12:00 - 00240496 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys 2012-08-22 18:16 - 2012-09-12 12:00 - 00187760 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS 2012-08-21 21:12 - 2012-09-26 12:47 - 00245760 ____A (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe 2012-08-20 18:40 - 2012-10-10 08:10 - 00868352 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll 2012-08-20 18:40 - 2012-10-10 08:10 - 00293376 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll 2012-08-20 18:40 - 2012-10-10 08:10 - 00169984 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll 2012-08-20 18:37 - 2012-10-10 08:10 - 00271360 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe 2012-08-20 18:32 - 2012-10-10 08:10 - 00005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll 2012-08-20 18:32 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll 2012-08-20 16:33 - 2012-10-10 08:10 - 00006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll 2012-08-20 16:33 - 2012-10-10 08:10 - 00004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll 2012-08-20 16:33 - 2012-10-10 08:10 - 00003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll 2012-08-20 16:33 - 2012-10-10 08:10 - 00003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll 2012-08-17 19:15 - 2012-08-17 19:15 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_User_wpdcomp_01_09_00.Wdf 2012-08-17 17:54 - 2011-08-24 07:04 - 00174064 ____A (Oracle Corporation) C:\Windows\System32\javaw.exe 2012-08-17 17:54 - 2011-08-24 07:04 - 00174064 ____A (Oracle Corporation) C:\Windows\System32\java.exe 2012-08-16 07:41 - 2009-07-14 05:33 - 00341424 ____A C:\Windows\System32\FNTCACHE.DAT 2012-08-11 00:56 - 2012-10-10 08:09 - 00542208 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== Memory info =========================== Percentage of memory in use: 16% Total physical RAM: 3549.12 MB Available physical RAM: 2945.83 MB Total Pagefile: 7096.52 MB Available Pagefile: 6070.81 MB Total Virtual: 2047.88 MB Available Virtual: 1955.51 MB ==================== Partitions ============================= 1 Drive c: () (Fixed) (Total:29.81 GB) (Free:2.14 GB) NTFS 2 Drive d: (Nowy) (Fixed) (Total:119.14 GB) (Free:62.52 GB) NTFS Nr dysku Stan Rozmiar Wolne Dyn GPT -------- ------------- ------- ------- --- --- Dysk 0 Online 149 GB 1024 KB Partitions of Disk 0: =============== Partycja ### Typ Rozmiar Przesunicie ------------- ---------------- ------- ------------ Partycja 1 Podstawowy 100 MB 1024 KB Partycja 2 Podstawowy 29 GB 101 MB Partycja 3 Podstawowy 119 GB 29 GB ========================================================= Disk: 0 Partycja 1 Typ : 07 Ukryta : Nie Aktywna : Tak Przesunicie w bajtach: 1048576 Wolumin ### Lit Etykieta Fs Typ Rozmiar Stan Info ----------- --- ----------- ----- ---------- ------- --------- -------- * Wolumin 1 Zastrzeone NTFS Partycja 100 MB Zdrowy System ========================================================= Disk: 0 Partycja 2 Typ : 07 Ukryta : Nie Aktywna : Nie Przesunicie w bajtach: 105906176 Wolumin ### Lit Etykieta Fs Typ Rozmiar Stan Info ----------- --- ----------- ----- ---------- ------- --------- -------- * Wolumin 2 C NTFS Partycja 29 GB Zdrowy Rozruch ========================================================= Disk: 0 Partycja 3 Typ : 07 Ukryta : Nie Aktywna : Nie Przesunicie w bajtach: 32114737152 Wolumin ### Lit Etykieta Fs Typ Rozmiar Stan Info ----------- --- ----------- ----- ---------- ------- --------- -------- * Wolumin 3 D Nowy NTFS Partycja 119 GB Zdrowy Plik str ========================================================= Last Boot: 2012-11-02 17:25 ==================== End Of Log ============================