OTL logfile created on: 2013-01-17 15:18:22 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = D:\pomoc Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,99 Gb Total Physical Memory | 0,79 Gb Available Physical Memory | 39,71% Memory free 3,98 Gb Paging File | 2,41 Gb Available in Paging File | 60,54% Paging File free Paging file location(s): c:\pagefile.sys 2038 3057 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 97,66 Gb Total Space | 31,51 Gb Free Space | 32,27% Space Free | Partition Type: NTFS Drive D: | 135,22 Gb Total Space | 12,29 Gb Free Space | 9,09% Space Free | Partition Type: NTFS Drive E: | 465,65 Gb Total Space | 161,27 Gb Free Space | 34,63% Space Free | Partition Type: FAT32 Drive F: | 465,76 Gb Total Space | 168,86 Gb Free Space | 36,25% Space Free | Partition Type: NTFS Computer Name: MOBILE | User Name: Olgierd Graca | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2013-01-17 15:16:15 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\pomoc\OTL.exe PRC - [2013-01-11 00:24:30 | 000,917,552 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2012-12-29 00:02:24 | 028,539,392 | ---- | M] (Dropbox, Inc.) -- C:\Users\Olgierd Graca\AppData\Roaming\Dropbox\bin\Dropbox.exe PRC - [2012-10-09 10:58:25 | 001,807,800 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_11_4_402_287.exe PRC - [2012-02-24 22:10:49 | 000,253,952 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\Program Files\blueconnect\DataCardMonitor.exe PRC - [2011-01-12 15:41:42 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\NOD32\ekrn.exe PRC - [2011-01-12 15:41:24 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\NOD32\egui.exe PRC - [2009-11-24 07:59:50 | 000,093,032 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\TrackPoint\tp4serv.exe PRC - [2009-10-31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-07-14 02:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 02:14:35 | 001,131,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sdclt.exe PRC - [2009-07-14 02:14:24 | 000,157,184 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Windows Defender\MpCmdRun.exe PRC - [2007-08-14 14:55:20 | 000,021,504 | ---- | M] (UPEK Inc.) -- C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2013-01-11 00:24:28 | 003,021,872 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2012-10-09 10:58:24 | 009,814,968 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_11_4_402_287.dll MOD - [2006-11-30 16:03:48 | 000,434,688 | ---- | M] () -- C:\Program Files\FactoryImageConverter\axTotalConverter.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2013-01-11 00:24:29 | 000,115,760 | ---- | M] (Mozilla Foundation) [Disabled | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-11-12 20:44:15 | 004,539,712 | ---- | M] () [Auto | Running] -- c:\program files\common files\akamai/netsession_win_ce5ba24.dll -- (Akamai) SRV - [2012-10-09 10:58:26 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2011-07-25 22:14:00 | 000,028,672 | ---- | M] (Lenovo Group Limited) [Disabled | Stopped] -- C:\Program Files\Lenovo\System Update\SUService.exe -- (SUService) SRV - [2011-01-12 15:44:02 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\NOD32\EHttpSrv.exe -- (EhttpSrv) SRV - [2011-01-12 15:41:42 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\NOD32\ekrn.exe -- (ekrn) SRV - [2010-07-19 23:18:22 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2010-05-21 21:32:20 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2010-02-19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard) SRV - [2009-12-19 00:06:00 | 000,814,344 | ---- | M] (ABBYY) [Disabled | Stopped] -- C:\Program Files\Common Files\ABBYY\FineReader\10.00\Licensing\CE\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Corporate.10.0) SRV - [2009-07-29 11:19:00 | 000,935,208 | ---- | M] (Nero AG) [Disabled | Stopped] -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0) SRV - [2009-07-14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009-07-14 02:15:31 | 000,396,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\inetsrv\iisw3adm.dll -- (WAS) SRV - [2009-07-14 02:15:31 | 000,396,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\inetsrv\iisw3adm.dll -- (W3SVC) SRV - [2009-07-14 02:14:53 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\inetsrv\apphostsvc.dll -- (AppHostSvc) SRV - [2008-07-15 16:09:52 | 000,090,112 | ---- | M] (Andrea Electronics Corporation) [Disabled | Stopped] -- C:\Windows\System32\AEADISRV.EXE -- (AEADIFilters) SRV - [2008-02-11 15:35:40 | 000,503,808 | ---- | M] ( ) [Disabled | Stopped] -- C:\Windows\System32\LMabcoms.exe -- (lmab_device) SRV - [2007-09-26 16:34:46 | 000,644,408 | ---- | M] (Lenovo Group Limited) [Disabled | Stopped] -- C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe -- (ThinkVantage Registry Monitor Service) SRV - [2006-09-28 10:20:00 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper) SRV - [2006-05-24 07:49:14 | 000,024,576 | ---- | M] (Syntek America Inc.) [Disabled | Stopped] -- C:\Windows\System32\StkASv2K.exe -- (StkASSrv) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ser2pl.sys -- (Ser2pl) DRV - [2012-10-04 18:24:43 | 000,025,200 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ggsemc.sys -- (ggsemc) DRV - [2012-10-04 18:24:43 | 000,012,400 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ggflt.sys -- (ggflt) DRV - [2011-08-17 08:56:32 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2011-08-17 08:56:30 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2011-08-17 08:56:26 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2011-08-17 08:56:22 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2010-12-21 14:04:06 | 000,137,144 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\Windows\System32\drivers\eamonm.sys -- (eamonm) DRV - [2010-12-21 14:04:06 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\System32\drivers\ehdrv.sys -- (ehdrv) DRV - [2010-12-21 12:47:38 | 000,095,384 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\epfwwfpr.sys -- (epfwwfpr) DRV - [2010-07-12 14:49:18 | 000,060,104 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ftdibus.sys -- (FTDIBUS) DRV - [2010-07-12 14:48:56 | 000,073,032 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ftser2k.sys -- (FTSER2K) DRV - [2010-01-25 13:56:26 | 000,115,712 | ---- | M] (HID Global Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\cxbu0wdm.sys -- (cxbu0wdm) DRV - [2009-07-14 00:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-07-14 00:12:52 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tpm.sys -- (TPM) DRV - [2009-07-13 23:02:51 | 004,231,168 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\netw5v32.sys -- (netw5v32) DRV - [2009-07-13 23:02:50 | 000,211,456 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\e1e6032.sys -- (e1express) DRV - [2009-06-22 20:01:00 | 000,112,128 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbnet.sys -- (ewusbnet) DRV - [2009-06-22 19:38:22 | 000,102,912 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2009-06-22 19:26:04 | 000,100,736 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbdev.sys -- (hwusbdev) DRV - [2008-10-14 11:07:48 | 000,103,936 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbser6k.sys -- (ZTEusbser6k) DRV - [2008-10-14 11:07:48 | 000,103,936 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbnmeaext.sys -- (ZTEusbnmeaext) DRV - [2008-10-14 11:07:48 | 000,103,936 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbnmea.sys -- (ZTEusbnmea) DRV - [2008-10-14 11:07:48 | 000,103,936 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k) DRV - [2008-08-26 08:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2007-08-14 14:46:36 | 000,010,896 | ---- | M] (UPEK Inc.) [Kernel | Auto | Running] -- C:\Program Files\Common Files\ThinkVantage Fingerprint Software\Drivers\smihlp.sys -- (smihlp) DRV - [2007-02-19 06:56:46 | 000,021,376 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\psadd.sys -- (psadd) DRV - [2007-01-24 03:28:00 | 000,070,784 | ---- | M] (OEM) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\oxser.sys -- (oxser) DRV - [2007-01-24 03:28:00 | 000,021,888 | ---- | M] (OEM) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\oxmf.sys -- (oxmf) DRV - [2007-01-24 03:28:00 | 000,005,888 | ---- | M] (OEM) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\oxmfuf.sys -- (Oxmfuf) DRV - [2006-11-27 17:44:52 | 000,008,192 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio) DRV - [2006-09-27 04:01:36 | 000,241,628 | ---- | M] (Syntek America Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\StkAMini.sys -- (StkAMini) DRV - [2006-08-02 07:44:04 | 000,004,772 | ---- | M] (Syntek America Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\StkScan.sys -- (StkScan) DRV - [2006-07-24 15:05:00 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\Windows\System32\drivers\StarOpen.sys -- (StarOpen) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com/?utm_source=b&utm_medium=idg&from=idg&uid=SAMSUNG_HM250JI_S0TVJD0PA85183&ts=1349216228 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search.v9.com/web/?q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.v9.com/web/?q={searchTerms} IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www.google.pl IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.pl IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\..\SearchScopes,bProtectorDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searcerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\..\SearchScopes\{A8A0DA5F-2B96-4DF1-B2B8-695FF2C712AC}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\..\SearchScopes\{C43E881C-DEC3-489B-A214-A8F27FCE5BC4}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=FF&o=14594&src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=^FV&apn_dtid=^YYYYYY^YY^PL&apn_uid=8a591914-9a76-42be-9cb4-bc06537fdee9&apn_sauid=B940F402-88F0-4883-A3D7-9EA16C2E2DB6 IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = ;*.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "Google" FF - prefs.js..browser.search.defaultenginename: "Google" FF - prefs.js..browser.search.order.1: "Ask.com" FF - prefs.js..browser.search.selectedEngine: "Ask.com" FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledAddons: IplextoALL%40ALLPlayer.org:0.7.0 FF - prefs.js..extensions.enabledAddons: %7B5384767E-00D9-40E9-B72F-9CC39D655D6F%7D:1.4.2.1 FF - prefs.js..extensions.enabledAddons: artur.dubovoy%40gmail.com:3.8.2 FF - prefs.js..extensions.enabledAddons: %7BCAFEEFAC-0016-0000-0035-ABCDEFFEDCBA%7D:6.0.35 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:18.0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll () FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.11.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll File not found FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll File not found FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: C:\Program Files\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012-01-05 23:47:41 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013-01-11 00:24:30 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 18.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013-01-11 00:24:17 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\NOD32\Mozilla Thunderbird [2011-06-09 20:07:46 | 000,000,000 | ---D | M] [2010-05-20 00:07:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Olgierd Graca\AppData\Roaming\mozilla\Extensions [2013-01-16 21:35:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Olgierd Graca\AppData\Roaming\mozilla\Firefox\Profiles\rkdztpnc.default\extensions [2012-04-25 15:23:05 | 000,000,000 | ---D | M] (EPUBReader) -- C:\Users\Olgierd Graca\AppData\Roaming\mozilla\Firefox\Profiles\rkdztpnc.default\extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F} [2012-12-23 22:56:45 | 000,234,999 | ---- | M] () (No name found) -- C:\Users\Olgierd Graca\AppData\Roaming\mozilla\firefox\profiles\rkdztpnc.default\extensions\artur.dubovoy@gmail.com.xpi [2011-08-31 21:40:23 | 000,010,043 | ---- | M] () (No name found) -- C:\Users\Olgierd Graca\AppData\Roaming\mozilla\firefox\profiles\rkdztpnc.default\extensions\IplextoALL@ALLPlayer.org.xpi [2012-11-09 10:46:57 | 000,002,334 | ---- | M] () -- C:\Users\Olgierd Graca\AppData\Roaming\mozilla\firefox\profiles\rkdztpnc.default\searchplugins\askcom.xml [2012-10-02 23:33:06 | 000,002,547 | ---- | M] () -- C:\Users\Olgierd Graca\AppData\Roaming\mozilla\firefox\profiles\rkdztpnc.default\searchplugins\browsemngr.xml [2013-01-11 00:24:15 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2013-01-11 00:24:16 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2013-01-11 00:24:30 | 000,262,704 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2012-09-06 03:57:09 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2012-09-06 03:57:10 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2012-09-06 03:57:10 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2012-09-06 03:57:10 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2012-09-06 03:57:10 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2012-09-06 03:57:09 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O3 - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O4 - HKLM..\Run: [DataCardMonitor] C:\Program Files\blueconnect\DataCardMonitor.exe (Huawei Technologies Co., Ltd.) O4 - HKLM..\Run: [egui] C:\Program Files\NOD32\egui.exe (ESET) O4 - HKLM..\Run: [TrackPointSrv] C:\Program Files\Lenovo\TrackPoint\tp4serv.exe (Lenovo Group Limited) O4 - HKU\S-1-5-21-4146215139-404633111-1456990158-1001..\Run: [AdobeBridge] File not found O4 - HKU\S-1-5-21-4146215139-404633111-1456990158-1001..\Run: [HW_OPENEYE_OUC_blueconnect] C:\Program Files\blueconnect\UpdateDog\ouc.exe (Huawei Technologies Co., Ltd.) O4 - HKU\S-1-5-21-4146215139-404633111-1456990158-1001..\Run: [Nowe Gadu-Gadu] C:\Program Files\Nowe Gadu-Gadu\gg.exe (GG Network S.A.) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - Startup: C:\Users\Olgierd Graca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Olgierd Graca\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1 O7 - HKU\S-1-5-21-4146215139-404633111-1456990158-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.) O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8 - Extra context menu item: Append to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O13 - gopher Prefix: missing O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab (Reg Error: Value error.) O16 - DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab (Java Plug-in 1.6.0_35) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab (Java Plug-in 10.10.2) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B84FDB5D-DF11-4F4C-A56D-B751C69EDAA2}: DhcpNameServer = 192.168.1.1 O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: GinaDLL - (vrlogon.dll) - C:\Windows\System32\vrlogon.dll (UPEK Inc.) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - Winlogon\Notify\psfus: DllName - (C:\Windows\system32\psqlpwd.dll) - C:\Windows\System32\psqlpwd.dll (UPEK Inc.) O20 - Winlogon\Notify\ScCertProp: DllName - (wlnotify.dll) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{41e8721a-3532-11e0-b325-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{41e8721a-3532-11e0-b325-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{41e87227-3532-11e0-b325-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{41e87227-3532-11e0-b325-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4aa56eb6-21cf-11e1-9c05-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{4aa56eb6-21cf-11e1-9c05-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4aa56ec7-21cf-11e1-9c05-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{4aa56ec7-21cf-11e1-9c05-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4aa56f13-21cf-11e1-9c05-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{4aa56f13-21cf-11e1-9c05-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4aa56f27-21cf-11e1-9c05-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{4aa56f27-21cf-11e1-9c05-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4aa56f51-21cf-11e1-9c05-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{4aa56f51-21cf-11e1-9c05-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09df94-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09df94-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09dfa0-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09dfa0-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09dfbd-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09dfbd-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09dfd0-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09dfd0-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09dfe9-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09dfe9-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09dffd-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09dffd-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09e010-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09e010-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09e023-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09e023-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09e078-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09e078-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{4e09e086-a754-11e0-9768-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{4e09e086-a754-11e0-9768-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{6dc7c76e-0dec-11e2-bff7-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{6dc7c76e-0dec-11e2-bff7-001c26f65c08}\Shell\AutoRun\command - "" = E:\Startme.exe O33 - MountPoints2\{6e3ecbdc-2392-11e1-bafd-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{6e3ecbdc-2392-11e1-bafd-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{6e3ecbf8-2392-11e1-bafd-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{6e3ecbf8-2392-11e1-bafd-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{6e3ecc16-2392-11e1-bafd-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{6e3ecc16-2392-11e1-bafd-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{6e3ecc23-2392-11e1-bafd-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{6e3ecc23-2392-11e1-bafd-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{73009f50-5fd9-11e1-bbb1-001b778f594e}\Shell - "" = AutoRun O33 - MountPoints2\{73009f50-5fd9-11e1-bbb1-001b778f594e}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{79d2ebf4-3036-11e0-b979-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{79d2ebf4-3036-11e0-b979-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{7bf2b347-56c5-11e0-9d52-001b778f594e}\Shell - "" = AutoRun O33 - MountPoints2\{7bf2b347-56c5-11e0-9d52-001b778f594e}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{7bf2b358-56c5-11e0-9d52-001b778f594e}\Shell - "" = AutoRun O33 - MountPoints2\{7bf2b358-56c5-11e0-9d52-001b778f594e}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{7bf2b495-56c5-11e0-9d52-001b778f594e}\Shell - "" = AutoRun O33 - MountPoints2\{7bf2b495-56c5-11e0-9d52-001b778f594e}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{7e2ff7b4-5eac-11e1-9525-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{7e2ff7b4-5eac-11e1-9525-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{7e2ff7ca-5eac-11e1-9525-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{7e2ff7ca-5eac-11e1-9525-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{89f946a4-35b3-11e0-b35c-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{89f946a4-35b3-11e0-b35c-001c26f65c08}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{9009066f-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{9009066f-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{900906a7-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{900906a7-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{900906b4-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{900906b4-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{900906c0-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{900906c0-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{900906cc-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{900906cc-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{900906fe-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{900906fe-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{9009070b-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{9009070b-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{90090725-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{90090725-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{90090731-811d-11e0-b925-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{90090731-811d-11e0-b925-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{a0e2fedf-23d3-11e1-9c45-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{a0e2fedf-23d3-11e1-9c45-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{bdb915bb-8930-11e1-9563-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{bdb915bb-8930-11e1-9563-001c26f65c08}\Shell\AutoRun\command - "" = G:\NokiaPCIA_Autorun.exe O33 - MountPoints2\{c14948f6-8db3-11df-a08c-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{c14948f6-8db3-11df-a08c-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRunCardDetector.exe O33 - MountPoints2\{cf9f83a6-5574-11e2-94d5-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{cf9f83a6-5574-11e2-94d5-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{d4bef607-8f12-11df-b2cb-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{d4bef607-8f12-11df-b2cb-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{d4bef615-8f12-11df-b2cb-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{d4bef615-8f12-11df-b2cb-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{d4bef647-8f12-11df-b2cb-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{d4bef647-8f12-11df-b2cb-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{d998f771-5905-11e0-b781-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{d998f771-5905-11e0-b781-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{e24d6369-a79f-11e0-9738-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{e24d6369-a79f-11e0-9738-806e6f6e6963}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{e24d63e9-a79f-11e0-9738-001b778f594e}\Shell - "" = AutoRun O33 - MountPoints2\{e24d63e9-a79f-11e0-9738-001b778f594e}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{e24d64cd-a79f-11e0-9738-0016d3bd2cec}\Shell - "" = AutoRun O33 - MountPoints2\{e24d64cd-a79f-11e0-9738-0016d3bd2cec}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{fbb9b2ef-8068-11e0-9782-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{fbb9b2ef-8068-11e0-9782-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{fbb9b2fa-8068-11e0-9782-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{fbb9b2fa-8068-11e0-9782-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\{fbb9b30e-8068-11e0-9782-001c26f65c08}\Shell - "" = AutoRun O33 - MountPoints2\{fbb9b30e-8068-11e0-9782-001c26f65c08}\Shell\AutoRun\command - "" = E:\AutoRun.exe O33 - MountPoints2\E\Shell - "" = AutoRun O33 - MountPoints2\E\Shell\AutoRun\command - "" = E:\AutoRun.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2013-01-16 23:31:30 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe [2013-01-16 23:31:30 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\java.exe [2013-01-16 23:31:30 | 000,094,112 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll [2013-01-16 23:19:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files.com Fixer [2013-01-16 22:40:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer [2013-01-16 22:37:12 | 000,000,000 | ---D | C] -- C:\Program Files\Dll-Files.com Fixer [2013-01-16 22:37:12 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Roaming\dll-files.com [2013-01-16 19:31:33 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2013-01-16 17:24:35 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_43.dll [2013-01-16 17:24:35 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_7.dll [2013-01-16 17:24:35 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx11_43.dll [2013-01-16 17:24:35 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_5.dll [2013-01-16 17:23:07 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_42.dll [2013-01-16 17:21:40 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll [2013-01-16 10:38:21 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{C4DDBC15-ED28-41B5-B5ED-BF014882DCAD} [2013-01-15 22:37:52 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{FF838B64-B709-422F-B1EF-E4A2B42DE645} [2013-01-15 09:45:23 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{58EE49B8-465E-4FEE-968E-1E8BE79F9343} [2013-01-14 15:05:31 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{A9E98920-A439-4491-A0E4-F6F70C617D54} [2013-01-14 01:10:07 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{1D4DB93C-B814-4F7B-8BBD-3ED86235C971} [2013-01-13 13:09:47 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{98F2D807-09B4-42F5-A429-61425599512D} [2013-01-13 00:22:46 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{5400AB4F-FA14-42E0-AB11-4B50A7339AE1} [2013-01-12 10:17:56 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{10871F04-9B1D-4676-AB25-E12AC3D85E51} [2013-01-11 00:24:13 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2013-01-11 00:15:21 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{C37238C7-5F93-4803-B9C9-93894FDD270E} [2013-01-10 12:05:39 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{F168EA12-921A-41B4-A8CF-0A1C58301028} [2013-01-10 00:05:11 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{77E287FE-1545-4FA8-89BB-7F4E01BA3029} [2013-01-09 23:09:23 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll [2013-01-09 12:04:39 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{F9003A4F-3F20-4964-A95B-AF513587CB13} [2013-01-08 22:57:30 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{A5F0398B-01B2-4D20-92F9-23141C145658} [2013-01-08 10:56:59 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{5930697A-4602-4F5F-9148-022987A2EFF1} [2013-01-07 22:56:31 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{1CB7E804-84C5-451F-88ED-4E7F6AA0B53C} [2013-01-07 10:56:00 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{23FA6776-2B85-4410-AC90-865AFD65CD30} [2013-01-06 15:57:35 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{BB86BD16-0F4D-499B-9F00-08BE207AE013} [2013-01-05 14:58:27 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{C12833E7-3D38-48BB-96E5-F006A6DAEF37} [2013-01-04 22:59:37 | 000,000,000 | ---D | C] -- C:\temp [2013-01-04 22:57:30 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PQ DVD Software [2013-01-04 22:57:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PQ DVD Software [2013-01-04 22:06:56 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{7AC1E056-2C25-46CC-9339-743D84EF4544} [2013-01-04 08:54:00 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{39864D75-A058-440F-ACE8-FC9EB8092171} [2013-01-03 20:53:27 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{61B1D031-F65C-4117-8067-9B9EAB7B19BE} [2013-01-03 08:41:31 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{A9E639C2-0D12-4EBF-A570-37D1140C35CC} [2013-01-02 20:40:59 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{1A336240-1939-4C1C-9998-46A62C784086} [2013-01-01 18:49:15 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{90A5BAAE-B99A-443C-B737-02491C3FE577} [2012-12-31 12:49:56 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{CC9E4825-0967-4414-BF69-FCC8C492ECEA} [2012-12-30 16:21:16 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{9D011ED2-3EDD-4B70-B3C2-E41AAFC8AA57} [2012-12-29 21:34:42 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{8765CB9C-94A0-4C1E-9DC4-308EE11155F6} [2012-12-29 09:34:13 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{D5401C89-F215-4EA4-83A3-68CD014D01BB} [2012-12-28 18:29:50 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{08DE1C6E-AA67-42D6-8CB9-D2AAAEBDED36} [2012-12-27 17:31:11 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{C057257E-8F03-47C7-8BD2-41A5A47BA102} [2012-12-26 16:46:52 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{7ADE3BE5-249D-4B90-8BB0-762268D38AA8} [2012-12-24 23:49:04 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{A9715425-60DA-48A8-94DA-E0322A3E4E42} [2012-12-23 23:13:13 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{1D01B096-4564-4182-9D9A-51E7E264E665} [2012-12-22 21:55:25 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{5AF1FBDF-EA8F-403A-8719-BDB34DCFD9A0} [2012-12-21 23:58:51 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{12A37BE8-1C33-4585-B44A-1DBD0013D3AD} [2012-12-21 11:39:14 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{3A110AC3-8B99-4E21-BB72-A6346CD67360} [2012-12-20 23:38:46 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{E0059669-177C-458F-A69C-CB30FB2ABDD2} [2012-12-20 10:09:35 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{BEAAF55E-276A-4ECE-ABE7-F6B2D90D7696} [2012-12-19 22:09:16 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{B2BFA79A-A3A3-4F58-8071-7A2DB4911F19} [2012-12-19 10:08:49 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{595CFE8B-016F-488C-B603-39C8E8E6F84C} [2012-12-18 22:08:21 | 000,000,000 | ---D | C] -- C:\Users\Olgierd Graca\AppData\Local\{0ED4E99A-B47E-4E0B-9F00-28DC9D159CCD} [5 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2013-01-17 15:25:03 | 000,001,050 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2013-01-17 14:58:08 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2013-01-17 09:25:09 | 000,001,046 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2013-01-17 09:16:11 | 007,828,934 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2013-01-17 09:16:11 | 003,171,224 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2013-01-17 09:16:11 | 002,643,580 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2013-01-17 09:16:11 | 002,512,376 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2013-01-17 08:54:08 | 000,013,440 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2013-01-17 08:54:08 | 000,013,440 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2013-01-17 08:45:57 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2013-01-17 08:45:35 | 1603,084,288 | -HS- | M] () -- C:\hiberfil.sys [2013-01-17 01:03:35 | 000,032,666 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\ResultReport.html [2013-01-17 00:59:10 | 000,000,134 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\Rozwiązywanie problemów z programem Internet Explorer.url [2013-01-16 23:19:47 | 000,001,006 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\DLL-Files.com FIXER.lnk [2013-01-16 23:16:02 | 000,000,270 | ---- | M] () -- C:\Windows\tasks\RDReminder.job [2013-01-16 23:15:58 | 000,001,006 | ---- | M] () -- C:\Users\Public\Desktop\Dll-Files Fixer.lnk [2013-01-16 21:29:18 | 000,000,134 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\Internet Explorer Troubleshooting.url [2013-01-16 20:58:06 | 000,108,478 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\google_pl.htm [2013-01-16 20:05:58 | 000,004,268 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\G jak startup.jpg [2013-01-16 18:27:56 | 000,000,020 | ---- | M] () -- C:\Windows\`ö [2013-01-16 01:22:58 | 000,963,944 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\D2013000002201.pdf [2013-01-15 20:45:26 | 000,000,017 | ---- | M] () -- C:\ProgramData\WINSPOOL.CRC1 [2013-01-14 10:45:03 | 000,011,881 | ---- | M] () -- C:\Users\Olgierd Graca\Documents\pit-4 2012.ods [2013-01-14 10:04:17 | 000,049,307 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\naleznosci.ods [2013-01-14 01:21:53 | 000,011,457 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\Scherer w Polsce.odt [2013-01-12 03:30:20 | 000,094,112 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll [2013-01-12 03:26:16 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaw.exe [2013-01-12 03:24:49 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\java.exe [2013-01-10 00:48:48 | 000,022,225 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\credit_new.ods [2013-01-08 09:50:08 | 000,014,670 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\Fw_ Wiadomość z TAURON Obsługa Klientów GZE - Informacja o zadłużeniu.eml [2013-01-07 11:36:07 | 000,013,308 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\QS1T-655F-21C3-1YU2.png [2013-01-06 20:03:17 | 000,000,025 | ---- | M] () -- C:\Windows\is-351BT.ini [2013-01-05 14:40:19 | 000,000,025 | ---- | M] () -- C:\Windows\is-6HLUF.ini [2013-01-04 09:42:39 | 000,019,390 | ---- | M] () -- C:\Users\Olgierd Graca\Desktop\recenzenci biznesowi.ods [2013-01-04 00:18:27 | 000,859,072 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\npdeployJava1.dll [2013-01-04 00:18:27 | 000,779,704 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\deployJava1.dll [2013-01-01 08:22:36 | 000,001,055 | ---- | M] () -- C:\Users\Olgierd Graca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2012-12-29 23:02:41 | 000,000,017 | ---- | M] () -- C:\Windows\System32\WINSPOOL.CRC2 [2012-12-29 13:58:21 | 000,000,025 | ---- | M] () -- C:\Windows\is-HHJB0.ini [5 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2013-01-17 00:59:10 | 000,000,134 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\Rozwiązywanie problemów z programem Internet Explorer.url [2013-01-16 23:19:47 | 000,001,006 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\DLL-Files.com FIXER.lnk [2013-01-16 22:40:56 | 000,000,270 | ---- | C] () -- C:\Windows\tasks\RDReminder.job [2013-01-16 22:40:50 | 000,001,006 | ---- | C] () -- C:\Users\Public\Desktop\Dll-Files Fixer.lnk [2013-01-16 21:27:24 | 000,032,666 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\ResultReport.html [2013-01-16 21:24:08 | 000,000,134 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\Internet Explorer Troubleshooting.url [2013-01-16 20:49:15 | 000,108,478 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\google_pl.htm [2013-01-16 20:05:56 | 000,004,268 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\G jak startup.jpg [2013-01-16 19:32:42 | 000,001,364 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk [2013-01-16 18:27:55 | 000,000,020 | ---- | C] () -- C:\Windows\`ö [2013-01-16 01:22:58 | 000,963,944 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\D2013000002201.pdf [2013-01-14 10:45:01 | 000,011,881 | ---- | C] () -- C:\Users\Olgierd Graca\Documents\pit-4 2012.ods [2013-01-13 13:46:12 | 000,011,457 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\Scherer w Polsce.odt [2013-01-08 09:50:07 | 000,014,670 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\Fw_ Wiadomość z TAURON Obsługa Klientów GZE - Informacja o zadłużeniu.eml [2013-01-07 11:36:07 | 000,013,308 | ---- | C] () -- C:\Users\Olgierd Graca\Desktop\QS1T-655F-21C3-1YU2.png [2013-01-06 20:03:17 | 000,000,025 | ---- | C] () -- C:\Windows\is-351BT.ini [2013-01-05 14:40:19 | 000,000,025 | ---- | C] () -- C:\Windows\is-6HLUF.ini [2013-01-01 08:22:36 | 000,001,055 | ---- | C] () -- C:\Users\Olgierd Graca\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2012-12-29 13:58:21 | 000,000,025 | ---- | C] () -- C:\Windows\is-HHJB0.ini [2012-11-16 12:12:05 | 000,000,025 | ---- | C] () -- C:\Windows\is-5OSQ8.ini [2012-11-16 10:56:05 | 000,000,025 | ---- | C] () -- C:\Windows\is-3NOEV.ini [2012-11-16 10:37:52 | 000,000,025 | ---- | C] () -- C:\Windows\is-AACDO.ini [2012-11-09 00:10:58 | 000,645,632 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2012-11-09 00:10:58 | 000,240,640 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2012-10-31 16:06:37 | 000,000,025 | ---- | C] () -- C:\Windows\is-582V5.ini [2012-10-31 15:24:58 | 000,000,025 | ---- | C] () -- C:\Windows\is-HEB4A.ini [2012-10-31 13:37:08 | 000,000,025 | ---- | C] () -- C:\Windows\is-KJ2BA.ini [2012-10-31 00:59:37 | 000,000,025 | ---- | C] () -- C:\Windows\is-9J6R7.ini [2012-10-30 02:59:27 | 000,000,025 | ---- | C] () -- C:\Windows\is-4QPHV.ini [2012-10-25 01:31:43 | 000,000,025 | ---- | C] () -- C:\Windows\is-AABSM.ini [2012-10-23 02:00:41 | 000,000,025 | ---- | C] () -- C:\Windows\is-I1KNM.ini [2012-10-20 21:59:48 | 000,000,025 | ---- | C] () -- C:\Windows\is-QMUEM.ini [2012-10-16 21:27:10 | 000,000,017 | ---- | C] () -- C:\Users\Olgierd Graca\AppData\Local\resmon.resmoncfg [2012-09-22 23:39:07 | 000,000,025 | ---- | C] () -- C:\Windows\is-OC3B1.ini [2012-09-22 03:24:25 | 000,000,025 | ---- | C] () -- C:\Windows\is-5JUIL.ini [2012-09-22 03:07:22 | 000,000,025 | ---- | C] () -- C:\Windows\is-5LV4T.ini [2012-09-22 02:50:02 | 000,000,025 | ---- | C] () -- C:\Windows\is-4MBH2.ini [2012-09-19 23:36:47 | 000,000,025 | ---- | C] () -- C:\Windows\is-NS3VF.ini [2012-09-18 00:07:33 | 000,000,025 | ---- | C] () -- C:\Windows\is-UF7T9.ini [2012-09-16 23:19:33 | 000,000,025 | ---- | C] () -- C:\Windows\is-SEKC7.ini [2012-09-06 12:57:26 | 004,399,616 | ---- | C] () -- C:\Windows\System32\x264vfw.dll [2012-07-03 02:28:06 | 000,112,640 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll [2012-06-25 10:37:08 | 000,000,025 | ---- | C] () -- C:\Windows\is-8KHT5.ini [2012-06-25 10:36:21 | 000,000,025 | ---- | C] () -- C:\Windows\is-O6SBS.ini [2012-06-25 10:30:14 | 000,000,025 | ---- | C] () -- C:\Windows\is-1STR4.ini [2012-06-20 23:38:18 | 000,000,025 | ---- | C] () -- C:\Windows\is-EH4JS.ini [2012-06-09 01:24:43 | 000,000,025 | ---- | C] () -- C:\Windows\is-9R0VQ.ini [2012-06-09 00:38:19 | 000,000,025 | ---- | C] () -- C:\Windows\is-P7UH9.ini [2012-06-09 00:19:17 | 000,000,025 | ---- | C] () -- C:\Windows\is-0IC34.ini [2012-06-08 22:27:36 | 000,000,025 | ---- | C] () -- C:\Windows\is-CQQVF.ini [2012-06-08 21:39:33 | 000,000,025 | ---- | C] () -- C:\Windows\is-G1IU1.ini [2012-06-08 21:23:15 | 000,000,025 | ---- | C] () -- C:\Windows\is-FB49C.ini [2012-06-08 01:08:16 | 000,000,025 | ---- | C] () -- C:\Windows\is-R2SVF.ini [2012-06-07 03:30:51 | 000,000,025 | ---- | C] () -- C:\Windows\is-8G6MA.ini [2012-06-04 01:57:37 | 000,000,025 | ---- | C] () -- C:\Windows\is-NNSGP.ini [2012-05-29 02:51:01 | 000,000,025 | ---- | C] () -- C:\Windows\is-BERNB.ini [2012-05-28 02:22:30 | 000,000,025 | ---- | C] () -- C:\Windows\is-5S5RP.ini [2012-05-27 03:48:21 | 000,000,025 | ---- | C] () -- C:\Windows\is-U97UF.ini [2012-05-22 00:28:58 | 000,155,648 | ---- | C] () -- C:\Windows\System32\mlc.dll [2012-04-30 23:42:45 | 000,000,043 | ---- | C] () -- C:\Windows\gswin32.ini [2012-03-28 21:16:50 | 000,000,025 | ---- | C] () -- C:\Windows\is-GJK48.ini [2012-03-28 09:04:34 | 000,000,025 | ---- | C] () -- C:\Windows\is-7L275.ini [2012-03-12 17:46:25 | 000,000,025 | ---- | C] () -- C:\Windows\is-C4B87.ini [2012-03-12 14:17:33 | 000,000,025 | ---- | C] () -- C:\Windows\is-U82H8.ini [2012-03-06 11:09:38 | 000,000,025 | ---- | C] () -- C:\Windows\is-NLB21.ini [2012-03-05 13:31:31 | 000,000,025 | ---- | C] () -- C:\Windows\is-R09O9.ini [2012-03-04 21:54:40 | 000,000,025 | ---- | C] () -- C:\Windows\is-A5T62.ini [2012-03-02 13:54:21 | 000,000,025 | ---- | C] () -- C:\Windows\is-S0LUH.ini [2012-03-02 12:34:30 | 000,000,025 | ---- | C] () -- C:\Windows\is-GQGVA.ini [2012-03-02 10:57:11 | 000,000,025 | ---- | C] () -- C:\Windows\is-KAG38.ini [2012-03-02 02:27:04 | 000,000,025 | ---- | C] () -- C:\Windows\is-U9SSC.ini [2012-03-02 00:23:33 | 000,000,025 | ---- | C] () -- C:\Windows\is-IGC81.ini [2012-03-01 14:29:46 | 000,000,025 | ---- | C] () -- C:\Windows\is-PJ4VH.ini [2012-03-01 03:06:51 | 000,000,025 | ---- | C] () -- C:\Windows\is-FHG1A.ini [2012-03-01 02:31:20 | 000,000,025 | ---- | C] () -- C:\Windows\is-V0DDK.ini [2012-02-29 01:16:51 | 000,000,025 | ---- | C] () -- C:\Windows\is-18RA9.ini [2012-02-28 14:03:28 | 000,000,025 | ---- | C] () -- C:\Windows\is-7TQL3.ini [2012-02-28 03:28:47 | 000,000,025 | ---- | C] () -- C:\Windows\is-RP25H.ini [2012-02-27 12:16:27 | 000,000,025 | ---- | C] () -- C:\Windows\is-MVCEN.ini [2012-02-26 23:44:06 | 000,000,025 | ---- | C] () -- C:\Windows\is-S85DU.ini [2012-02-25 22:13:10 | 000,000,025 | ---- | C] () -- C:\Windows\is-L36CR.ini [2012-02-25 00:51:26 | 000,000,025 | ---- | C] () -- C:\Windows\is-K4KTS.ini [2012-02-24 00:20:29 | 000,000,025 | ---- | C] () -- C:\Windows\is-ID3N3.ini [2012-02-23 23:21:36 | 000,000,025 | ---- | C] () -- C:\Windows\is-86REK.ini [2012-02-21 22:16:43 | 000,000,025 | ---- | C] () -- C:\Windows\is-QCGMQ.ini [2012-02-21 21:21:19 | 000,000,025 | ---- | C] () -- C:\Windows\is-R3C42.ini [2012-02-20 02:35:11 | 000,000,025 | ---- | C] () -- C:\Windows\is-HSKC9.ini [2012-02-19 15:07:29 | 000,000,025 | ---- | C] () -- C:\Windows\is-ADQ8G.ini [2012-02-19 13:06:39 | 000,000,025 | ---- | C] () -- C:\Windows\is-IRT1A.ini [2012-02-16 18:09:50 | 000,000,025 | ---- | C] () -- C:\Windows\is-BJC31.ini [2012-02-16 13:08:54 | 000,000,025 | ---- | C] () -- C:\Windows\is-08I7M.ini [2012-02-14 13:02:01 | 000,000,025 | ---- | C] () -- C:\Windows\is-IC2L8.ini [2012-02-08 09:53:21 | 000,000,025 | ---- | C] () -- C:\Windows\is-MJE4E.ini [2012-02-05 02:59:01 | 000,000,025 | ---- | C] () -- C:\Windows\is-8OP9P.ini [2012-02-04 17:41:47 | 000,000,025 | ---- | C] () -- C:\Windows\is-12E5Q.ini [2012-02-04 03:22:32 | 000,000,025 | ---- | C] () -- C:\Windows\is-SA1K3.ini [2011-12-08 05:32:24 | 000,216,064 | ---- | C] ( ) -- C:\Windows\System32\lagarith.dll [2011-11-07 17:12:17 | 000,000,025 | ---- | C] () -- C:\Windows\is-ISE6D.ini [2011-11-07 14:14:53 | 000,000,025 | ---- | C] () -- C:\Windows\is-4UUGV.ini [2011-11-07 12:47:44 | 000,000,025 | ---- | C] () -- C:\Windows\is-2FFSF.ini [2011-11-07 00:13:02 | 000,000,025 | ---- | C] () -- C:\Windows\is-4DHSG.ini [2011-11-06 23:47:27 | 000,000,025 | ---- | C] () -- C:\Windows\is-FU77I.ini [2011-11-06 21:26:14 | 000,000,025 | ---- | C] () -- C:\Windows\is-MJ86K.ini [2011-11-06 13:52:51 | 000,000,025 | ---- | C] () -- C:\Windows\is-G4PUA.ini [2011-10-31 22:24:05 | 000,000,025 | ---- | C] () -- C:\Windows\is-MS5S8.ini [2011-10-31 22:22:54 | 000,000,017 | ---- | C] () -- C:\ProgramData\WINSPOOL.CRC1 [2011-10-31 21:54:40 | 000,000,025 | ---- | C] () -- C:\Windows\is-C5DM6.ini [2011-10-31 12:14:34 | 000,000,025 | ---- | C] () -- C:\Windows\is-3T8PM.ini [2011-10-27 13:01:44 | 000,000,025 | ---- | C] () -- C:\Windows\is-8G4VD.ini [2011-09-14 12:16:03 | 000,000,025 | ---- | C] () -- C:\Windows\is-PF052.ini [2011-09-13 09:30:34 | 000,380,928 | ---- | C] ( ) -- C:\Windows\System32\LMUD06BC.dll [2011-09-13 09:30:34 | 000,380,928 | ---- | C] ( ) -- C:\Windows\System32\LMUD05BC.dll [2011-09-13 09:30:34 | 000,360,448 | ---- | C] ( ) -- C:\Windows\System32\lexlog.dll [2011-09-13 09:30:24 | 001,208,320 | ---- | C] ( ) -- C:\Windows\System32\LMabserv.dll [2011-09-13 09:30:24 | 001,056,768 | ---- | C] ( ) -- C:\Windows\System32\LMabip1.dll [2011-09-13 09:30:24 | 000,987,136 | ---- | C] ( ) -- C:\Windows\System32\LMabusb1.dll [2011-09-13 09:30:24 | 000,675,840 | ---- | C] ( ) -- C:\Windows\System32\LMabpmui.dll [2011-09-13 09:30:24 | 000,614,400 | ---- | C] ( ) -- C:\Windows\System32\LMabcomc.dll [2011-09-13 09:30:24 | 000,577,536 | ---- | C] ( ) -- C:\Windows\System32\LMabiobj.dll [2011-09-13 09:30:24 | 000,565,248 | ---- | C] ( ) -- C:\Windows\System32\LMablmpm.dll [2011-09-13 09:30:24 | 000,532,480 | ---- | C] ( ) -- C:\Windows\System32\LMabpar1.dll [2011-09-13 09:30:24 | 000,503,808 | ---- | C] ( ) -- C:\Windows\System32\LMabcoms.exe [2011-09-13 09:30:24 | 000,425,984 | ---- | C] ( ) -- C:\Windows\System32\LMabcomm.dll [2011-09-13 09:30:24 | 000,413,696 | ---- | C] ( ) -- C:\Windows\System32\LMabinpa.dll [2011-09-13 09:30:24 | 000,163,840 | ---- | C] ( ) -- C:\Windows\System32\LMabprox.dll [2011-09-12 16:01:29 | 000,000,025 | ---- | C] () -- C:\Windows\is-G9SUK.ini [2011-09-12 15:25:12 | 000,000,025 | ---- | C] () -- C:\Windows\is-MPOB6.ini [2011-09-12 15:06:00 | 000,000,025 | ---- | C] () -- C:\Windows\is-GQMHI.ini [2011-09-08 00:28:35 | 000,000,025 | ---- | C] () -- C:\Windows\is-B3R7N.ini [2011-09-07 19:47:09 | 000,000,025 | ---- | C] () -- C:\Windows\is-EUGMK.ini [2011-09-07 14:31:58 | 000,000,025 | ---- | C] () -- C:\Windows\is-PG9ON.ini [2011-09-07 14:04:35 | 000,000,025 | ---- | C] () -- C:\Windows\is-9AUH6.ini [2011-09-07 13:55:17 | 000,000,025 | ---- | C] () -- C:\Windows\is-MLMDP.ini [2011-09-07 13:46:21 | 000,000,025 | ---- | C] () -- C:\Windows\is-Q06F4.ini [2011-09-06 15:34:35 | 000,000,025 | ---- | C] () -- C:\Windows\is-52S6I.ini [2011-08-30 09:56:01 | 000,000,025 | ---- | C] () -- C:\Windows\is-94Q07.ini [2011-08-29 22:46:08 | 000,000,025 | ---- | C] () -- C:\Windows\is-8B3SC.ini [2011-08-26 11:05:49 | 000,000,025 | ---- | C] () -- C:\Windows\is-K5PPF.ini [2011-08-22 22:00:13 | 000,000,025 | ---- | C] () -- C:\Windows\is-0Q7MG.ini [2011-08-22 21:38:19 | 000,000,025 | ---- | C] () -- C:\Windows\is-CK8LP.ini [2011-08-21 03:04:06 | 000,000,025 | ---- | C] () -- C:\Windows\is-7M7MF.ini [2011-08-21 02:27:37 | 000,000,025 | ---- | C] () -- C:\Windows\is-8T17F.ini [2011-08-21 01:41:36 | 000,000,025 | ---- | C] () -- C:\Windows\is-OF56C.ini [2011-08-21 01:14:21 | 000,000,025 | ---- | C] () -- C:\Windows\is-R522J.ini [2011-08-12 00:28:55 | 000,000,025 | ---- | C] () -- C:\Windows\is-169BJ.ini [2011-06-03 13:27:12 | 000,000,025 | ---- | C] () -- C:\Windows\is-AFAH6.ini [2011-06-02 10:13:53 | 000,000,025 | ---- | C] () -- C:\Windows\is-6JHGA.ini [2011-06-01 22:43:56 | 000,000,025 | ---- | C] () -- C:\Windows\is-2HE25.ini [2011-06-01 22:22:48 | 000,000,025 | ---- | C] () -- C:\Windows\is-5FHNN.ini [2011-06-01 22:06:31 | 000,000,025 | ---- | C] () -- C:\Windows\is-I1SEB.ini [2011-05-26 22:04:27 | 000,000,025 | ---- | C] () -- C:\Windows\is-6J2CU.ini [2011-05-24 22:48:48 | 000,000,025 | ---- | C] () -- C:\Windows\is-FEGEH.ini [2011-05-23 08:57:46 | 000,000,025 | ---- | C] () -- C:\Windows\is-S1GE1.ini [2011-05-19 13:05:21 | 000,000,025 | ---- | C] () -- C:\Windows\is-OT1EE.ini [2011-05-18 11:04:54 | 000,000,025 | ---- | C] () -- C:\Windows\is-FUV1R.ini [2011-05-18 10:40:58 | 000,000,025 | ---- | C] () -- C:\Windows\is-A4ILJ.ini [2011-05-18 09:37:59 | 000,000,025 | ---- | C] () -- C:\Windows\is-C5REQ.ini [2011-05-17 11:37:14 | 000,000,025 | ---- | C] () -- C:\Windows\is-V74C3.ini [2011-03-14 23:26:58 | 000,000,025 | ---- | C] () -- C:\Windows\is-92G4E.ini [2011-03-03 18:38:33 | 000,000,025 | ---- | C] () -- C:\Windows\is-8FF61.ini [2011-03-02 17:50:12 | 000,000,025 | ---- | C] () -- C:\Windows\is-SNV5E.ini [2011-02-27 00:29:32 | 000,000,025 | ---- | C] () -- C:\Windows\is-Q4G3B.ini [2011-02-17 12:47:48 | 000,305,847 | ---- | C] () -- C:\Windows\ETOSU.EXE [2011-02-17 12:47:20 | 000,000,146 | ---- | C] () -- C:\Windows\ETOSP.INI [2011-02-17 12:04:06 | 000,000,025 | ---- | C] () -- C:\Windows\is-4I9EQ.ini [2011-02-14 12:56:15 | 000,000,025 | ---- | C] () -- C:\Windows\is-J9H8S.ini [2011-02-13 23:48:18 | 000,484,352 | ---- | C] () -- C:\Windows\System32\lame_enc.dll [2011-01-19 13:22:51 | 000,000,025 | ---- | C] () -- C:\Windows\is-Q1197.ini [2010-10-17 21:40:23 | 000,050,688 | ---- | C] () -- C:\Users\Olgierd Graca\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-08-16 13:52:46 | 000,072,080 | ---- | C] () -- C:\Users\Olgierd Graca\g2mdlhlpx.exe [2010-06-23 22:46:02 | 000,000,000 | ---- | C] () -- C:\ProgramData\LauncherAccess.dt [color=#E56717]========== ZeroAccess Check ==========[/color] [2009-07-14 05:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2010-07-27 15:03:24 | 012,867,584 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2009-07-14 02:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2009-07-14 02:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2010-06-04 18:50:06 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\AnvSoft [2012-11-09 00:12:28 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\AVI ReComp [2011-02-11 01:48:39 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\blueconnect [2011-09-11 20:08:34 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\calibre [2012-07-16 09:57:00 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant [2012-01-30 21:40:43 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Cream Software [2013-01-16 22:37:19 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\dll-files.com [2013-01-17 08:47:52 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Dropbox [2011-02-13 23:48:25 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\FreeAudioPack [2010-05-20 18:58:07 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Gadu-Gadu [2011-08-22 21:01:31 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Gall [2010-06-07 09:51:07 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\GARMIN [2010-10-04 14:32:36 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\GHISLER [2010-11-02 20:04:23 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\ISTool [2012-12-04 23:21:30 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\MetaQuotes [2012-09-27 22:43:38 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Nokia [2012-12-31 01:10:29 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Nowe Gadu-Gadu [2012-10-21 21:54:06 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\OpenFM [2010-05-20 11:43:44 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\OpenOffice.org [2011-10-19 10:52:22 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\OPPB [2011-08-18 20:27:19 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\PC Suite [2012-01-20 23:03:18 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\pdftoepub [2011-08-18 16:02:08 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\SAMSUNG [2011-03-16 10:07:20 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Softplicity [2012-09-27 22:06:45 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Sony [2012-01-29 22:54:41 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Thinstall [2010-05-27 11:19:37 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Ulead Systems [2012-11-18 00:04:59 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Win7codecs [2010-10-25 19:11:51 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\Windows Live Writer [2012-10-08 10:45:01 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\XnView [2012-07-19 18:29:02 | 000,000,000 | ---D | M] -- C:\Users\Olgierd Graca\AppData\Roaming\YourFileDownloader [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 785 bytes -> C:\Users\Olgierd Graca\Documents\Fw_ zamówienie SSiA UEK.eml:OECustomProperty @Alternate Data Stream - 177 bytes -> C:\ProgramData\TEMP:2CFDCA54 @Alternate Data Stream - 140 bytes -> C:\ProgramData\TEMP:AF4CCAAD @Alternate Data Stream - 1077 bytes -> C:\Users\Olgierd Graca\Desktop\Fw_ Wiadomość z TAURON Obsługa Klientów GZE - Informacja o zadłużeniu.eml:OECustomProperty < End of report >