OTL logfile created on: 2013-03-05 21:39:08 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\wirusy Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,50 Gb Total Physical Memory | 1,19 Gb Available Physical Memory | 79,40% Memory free 3,35 Gb Paging File | 3,19 Gb Available in Paging File | 95,17% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 15,63 Gb Total Space | 7,73 Gb Free Space | 49,46% Space Free | Partition Type: NTFS Drive D: | 29,30 Gb Total Space | 18,81 Gb Free Space | 64,18% Space Free | Partition Type: NTFS Drive E: | 29,61 Gb Total Space | 3,89 Gb Free Space | 13,13% Space Free | Partition Type: FAT32 Computer Name: USER-D6A980C6EA | User Name: Patryk | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2013-03-04 22:37:27 | 000,170,912 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe PRC - [2013-03-04 21:09:09 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\wirusy\OTL.exe PRC - [2009-12-05 21:20:41 | 000,135,168 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\system32\UAService7.exe PRC - [2008-04-14 21:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2002-09-20 15:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe PRC - [2000-06-29 09:45:10 | 000,052,224 | ---- | M] (Kenonic Controls Ltd.) -- C:\WINDOWS\system32\Crypserv.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2008-10-07 13:33:00 | 000,466,944 | ---- | M] () -- C:\WINDOWS\system32\nvshell.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2013-03-04 22:37:27 | 000,170,912 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2009-12-05 21:20:41 | 000,135,168 | ---- | M] (Sony DADC Austria AG.) [Auto | Running] -- C:\WINDOWS\system32\UAService7.exe -- (UserAccess7) SRV - [2002-09-20 15:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) [Auto | Running] -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe -- (SoundMAX Agent Service (default) SRV - [2000-06-29 09:45:10 | 000,052,224 | ---- | M] (Kenonic Controls Ltd.) [Auto | Running] -- C:\WINDOWS\System32\Crypserv.exe -- (Crypkey License) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Patryk\USTAWI~1\Temp\sony_ssm.sys -- (sony_ssm.sys) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (aidejufz) DRV - [2012-02-29 15:43:54 | 000,126,976 | ---- | M] (ZTE Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZTEusbnet.sys -- (ZTEusbnet) DRV - [2012-02-29 15:43:54 | 000,107,520 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZTEusbser6k.sys -- (ZTEusbser6k) DRV - [2012-02-29 15:43:54 | 000,107,520 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZTEusbnmea.sys -- (ZTEusbnmea) DRV - [2012-02-29 15:43:54 | 000,107,520 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k) DRV - [2012-02-29 15:43:52 | 000,009,216 | ---- | M] (MBB Incorporated) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\massfilter.sys -- (massfilter) DRV - [2010-10-31 08:43:52 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF) DRV - [2009-09-23 09:41:58 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2009-03-25 09:33:06 | 000,278,984 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2009-03-25 09:33:06 | 000,025,416 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2008-10-04 22:49:59 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2008-04-14 01:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2006-07-23 20:32:56 | 000,215,040 | R--- | M] (SiS Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\sis163u.sys -- (SIS163u) DRV - [2003-10-31 04:22:38 | 000,077,312 | R--- | M] (VIA Technologies inc,.ltd) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\viasraid.sys -- (viasraid) DRV - [2003-09-06 14:37:22 | 000,062,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\prohlp02.sys -- (prohlp02) DRV - [2003-09-06 13:27:06 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp01.sys -- (sfhlp01) DRV - [2003-09-06 13:25:52 | 000,051,744 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\prodrv06.sys -- (prodrv06) DRV - [2003-09-06 13:22:08 | 000,006,944 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\prosync1.sys -- (prosync1) DRV - [2002-12-27 03:41:00 | 000,026,880 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\VIAAGP1.SYS -- (viaagp1) DRV - [2000-02-03 20:53:12 | 000,024,608 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\Ckldrv.sys -- (NetworkX) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.google.pl/ [binary data] IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/ IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2001-10-26 18:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O3 - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\..\Toolbar\WebBrowser: (no name) - {2E608F70-C430-4BC5-96F6-608E02EBA5B2} - No CLSID value found. O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () O4 - HKLM..\Run: [Plus Internet] C:\Program Files\Plus Internet\PlusInternetChecker.exe () O4 - HKU\S-1-5-21-789336058-1214440339-1417001333-1003..\Run: [ALLUpdate] C:\Program Files\ALLPlayer\ALLUpdate.exe () O4 - HKU\S-1-5-21-789336058-1214440339-1417001333-1003..\Run: [DAEMON Tools Lite] "E:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun File not found O4 - HKU\S-1-5-21-789336058-1214440339-1417001333-1003..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1103471 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1) ; AskTbSB/5.9.1.14019)" -"http://www8.agame.com/games/shockwave/m/my_3d_farm/my_3d_farm_girlsgogames_pl.htm" File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-789336058-1214440339-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Dane aplikacji\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html File not found O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.63.133.4 194.63.132.4 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{780A90E5-9806-4D9C-ACEE-56F0051DD686}: DhcpNameServer = 217.113.224.36 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7E7E7BA1-94E7-447D-B3FF-E3A4B8C3DDC3}: DhcpNameServer = 194.63.133.4 194.63.132.4 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C154B34A-9F78-45EE-BFB6-CDDE499CEAA2}: DhcpNameServer = 217.113.224.36 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DF0BACBD-46EF-4576-BEA9-440E977107CD}: DhcpNameServer = 217.113.224.36 192.168.0.1 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Patryk\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-09-29 16:52:54 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{64af9df6-1305-11e2-b1fc-00112fcd7f05}\Shell - "" = AutoRun O33 - MountPoints2\{64af9df6-1305-11e2-b1fc-00112fcd7f05}\Shell\AutoRun\command - "" = G:\AutoRun.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2013-03-05 21:27:19 | 000,000,000 | ---D | C] -- C:\_OTL [2013-03-05 21:22:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Patryk\Moje dokumenty [2013-03-05 17:39:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Patryk\Ustawienia lokalne\Dane aplikacji\Sun [2013-03-04 23:25:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2013-03-04 22:37:47 | 000,861,088 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\npDeployJava1.dll [2013-03-04 22:37:47 | 000,262,560 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2013-03-04 22:37:47 | 000,143,872 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2013-03-04 22:37:39 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2013-03-04 22:37:39 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2013-03-04 22:37:39 | 000,094,112 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2013-03-04 21:04:42 | 000,000,000 | ---D | C] -- C:\wirusy [2013-03-02 15:23:51 | 000,522,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsdbgui.dll [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2013-03-05 21:41:00 | 000,000,478 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{767B5F6C-B37B-4114-BA64-6806B804260C}.job [2013-03-05 21:40:12 | 000,000,377 | ---- | M] () -- C:\Documents and Settings\Patryk\Pulpit\Skrót do My DAP Downloads.lnk [2013-03-05 21:37:36 | 000,200,819 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml [2013-03-05 21:37:28 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2013-03-05 21:31:25 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2013-03-04 22:37:27 | 000,094,112 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2013-03-04 22:37:26 | 000,262,560 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2013-03-04 22:37:26 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2013-03-04 22:37:25 | 000,861,088 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\npDeployJava1.dll [2013-03-04 22:37:25 | 000,782,240 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\deployJava1.dll [2013-03-04 22:37:25 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2013-03-04 22:37:25 | 000,143,872 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2013-03-04 22:15:00 | 000,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2013-03-04 21:38:16 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2013-03-04 21:38:13 | 000,049,152 | ---- | M] () -- C:\Documents and Settings\Patryk\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2013-03-04 21:02:14 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2013-03-04 20:57:53 | 000,000,320 | -HS- | M] () -- C:\boot.ini [2013-03-04 18:24:07 | 000,000,377 | ---- | M] () -- D:\Moje dokumenty\Skrót do My DAP Downloads.lnk [2013-03-03 22:54:26 | 000,000,320 | ---- | M] () -- C:\boot.bak [2013-03-02 14:16:19 | 000,358,102 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2013-03-02 14:16:19 | 000,314,220 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2013-03-02 14:16:19 | 000,050,706 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2013-03-02 14:16:19 | 000,041,206 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [color=#E56717]========== Files Created - No Company Name ==========[/color] [2013-03-04 18:24:07 | 000,000,377 | ---- | C] () -- D:\Moje dokumenty\Skrót do My DAP Downloads.lnk [2013-03-03 22:54:26 | 000,000,320 | ---- | C] () -- C:\boot.bak [2013-03-02 15:23:00 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2013-03-02 15:23:00 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\dllcache\iacenc.dll [2010-09-10 21:09:53 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DSCN2068.jpg [2010-09-02 21:23:21 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Miisioooo xd.jpg [2010-09-02 21:20:01 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DSC00548.JPG [2010-09-02 21:16:36 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\9f835e7634.jpeg [2010-08-31 10:22:10 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Poker xD [2010-08-15 21:32:49 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\92699be2b9.jpeg [2010-08-13 19:11:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P080810_09.300001 (1).jpg [2010-04-09 22:13:00 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Moje pole ;D.bmp [2010-04-07 20:53:50 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\44508353_640.jpg [2010-04-07 18:42:20 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\bebb0cf243[1].jpg [2010-03-16 13:06:12 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P160310_12.55.jpg [2010-03-06 20:49:58 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\bez tytułu.bmp [2010-03-02 21:35:54 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\skanuj0001.jpg [2010-01-31 19:26:54 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P1030516.jpg [2010-01-24 18:24:30 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P240110_18.06_[02].jpg [2010-01-24 18:09:55 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P240110_18.06.jpg [2010-01-11 17:30:57 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\SAM_0807.AVI [2009-12-29 20:07:46 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\metin2client 2009-12-29 20-05-33-68.avi [2009-12-03 16:28:53 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\9125b05cc1.jpeg [2009-11-27 17:13:15 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\ASTRID.bmp [2009-11-23 19:27:16 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\bodzio xD.JPG [2009-11-23 19:16:27 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\o m g.jpg [2009-10-16 20:23:30 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P161009_21.15.jpg [2009-10-16 20:07:37 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P161009_21.00.jpg [2009-10-16 06:56:37 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P141009_11.11_[02].jpg [2009-09-20 20:50:20 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Misiuu.jpeg [2009-09-11 17:24:45 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\0911_181357.jpg [2009-09-01 16:50:51 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\be478e59f4.jpg [2009-09-01 16:48:15 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\89705fff10.jpg [2009-08-31 11:41:27 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DSC01801.JPG [2009-08-18 09:37:09 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DSC06060.JPG [2009-06-25 13:12:30 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Magda22.jpeg [2009-06-23 17:04:42 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\rychu peja solufka - staszica story czworka.mp3 [2009-06-12 19:01:42 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Filipczak.rar [2009-05-27 13:35:59 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\emoOoO.jpg [2009-05-16 19:02:43 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\language changer.exe [2009-05-12 15:03:35 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\CIMG1932.JPG [2009-05-08 14:14:35 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\kuraosdsdwadsd.JPG [2009-05-08 14:14:09 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DemonDagger.bmp [2009-04-30 14:24:22 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Mozilla Firefox.lnk [2009-03-22 20:21:56 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Pidżama Porno - Nikt tak pięknie nie mówił że się boi miłości.mp3 [2009-01-29 21:58:49 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P1060318.JPG [2009-01-29 21:58:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P1060316.JPG [2009-01-29 21:55:45 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P1060309.JPG [2009-01-28 17:56:50 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P1060322.JPG [2009-01-21 22:58:31 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DSC03498.JPG [2009-01-21 22:49:04 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DSC03435.JPG [2009-01-21 22:45:47 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DSC03399.JPG [2009-01-21 22:40:57 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DSC03397.JPG [2009-01-14 14:24:22 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\Hi Tack - Silence.mp3 [2009-01-14 14:08:16 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DJ_Madis-Evanescence_-_My_Immortal_(DJ_Madis_remix).mp3 [2009-01-14 14:05:59 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\DKA - Dlaczego.mp3 [2008-12-22 20:09:37 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P1050620.JPG [2008-12-22 20:08:34 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\P1050619.JPG [2008-09-29 20:17:18 | 000,049,152 | ---- | C] () -- C:\Documents and Settings\Patryk\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2002-01-02 00:05:40 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Patryk\MOV06796.3GP [color=#E56717]========== ZeroAccess Check ==========[/color] [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2009-04-29 05:35:21 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 11:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 21:50:58 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== Files - Unicode (All) ==========[/color] [2008-10-24 16:40:19 | 000,000,000 | ---D | M](C:\WINDOWS\System32\?o) -- C:\WINDOWS\System32\º [2008-10-24 16:40:19 | 000,000,000 | ---D | C](C:\WINDOWS\System32\?o) -- C:\WINDOWS\System32\º < End of report >