OTL logfile created on: 2013-03-12 13:52:47 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Małgorzata\Pulpit\2programy Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 511,48 Mb Total Physical Memory | 28,04 Mb Available Physical Memory | 5,48% Memory free 1,22 Gb Paging File | 0,49 Gb Available in Paging File | 39,73% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 80,00 Gb Total Space | 43,53 Gb Free Space | 54,41% Space Free | Partition Type: NTFS Drive D: | 31,78 Gb Total Space | 9,66 Gb Free Space | 30,39% Space Free | Partition Type: NTFS Computer Name: BEHEMOT | User Name: Małgorzata | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2013-03-08 14:36:08 | 000,917,400 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2013-03-03 15:31:26 | 000,170,912 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe PRC - [2012-11-26 17:07:59 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Małgorzata\Pulpit\2programy\OTL.exe PRC - [2011-11-28 19:01:24 | 003,744,552 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe PRC - [2011-11-28 19:01:23 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe PRC - [2009-10-14 14:32:46 | 009,085,760 | ---- | M] (Western Digital) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe PRC - [2009-10-14 14:32:46 | 002,049,344 | ---- | M] (WDC) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe PRC - [2009-10-14 14:31:02 | 000,098,304 | ---- | M] (WDC) -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe PRC - [2009-08-30 12:00:59 | 000,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe PRC - [2009-07-22 17:54:14 | 000,081,920 | ---- | M] (Firebird Project) -- C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe PRC - [2009-07-22 17:53:44 | 002,736,128 | ---- | M] (Firebird Project) -- C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe PRC - [2009-06-16 09:58:08 | 000,020,480 | ---- | M] (Memeo) -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe PRC - [2008-10-24 18:31:12 | 000,576,512 | ---- | M] (http://tortoisesvn.net) -- C:\Program Files\TortoiseSVN\bin\TSVNCache.exe PRC - [2008-04-14 18:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2006-06-01 13:32:12 | 000,094,208 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe PRC - [2006-05-10 20:52:28 | 000,249,856 | ---- | M] (Nero AG / Nero Inc.) -- C:\Program Files\Nero\Nero PhotoShow 4\data\Xtras\mssysmgr.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2013-03-12 07:54:08 | 002,066,432 | ---- | M] () -- C:\Program Files\Alwil Software\Avast5\defs\13031200\algo.dll MOD - [2013-03-08 14:36:02 | 003,069,848 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2013-02-14 00:19:06 | 011,817,472 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\e143370f0583abe015d8e3d2d536185e\System.Web.ni.dll MOD - [2013-02-14 00:18:29 | 000,212,992 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\d7ee03714420b252415b952d40ef59e4\System.ServiceProcess.ni.dll MOD - [2013-02-14 00:16:45 | 001,712,128 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\024c898ad1ccfde466d033c0a08d0564\Microsoft.VisualBasic.ni.dll MOD - [2013-02-14 00:10:46 | 012,433,920 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ba12e418b906593b7c9c18f971f36bf9\System.Windows.Forms.ni.dll MOD - [2013-02-14 00:05:56 | 002,933,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll MOD - [2013-02-14 00:05:46 | 000,303,104 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll MOD - [2013-01-11 03:47:05 | 000,998,400 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\1a6f9e23985e3159e6dd9827fd81c2fd\System.Management.ni.dll MOD - [2013-01-11 03:44:52 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\96b7a0136e9e72e8f4eb0230c20766d2\System.Configuration.ni.dll MOD - [2013-01-11 03:42:08 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\fe025743210c22bea2f009e1612c38bf\System.Xml.ni.dll MOD - [2013-01-11 03:41:35 | 001,593,856 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\7782f356a838c403b4a8e9c80df5a577\System.Drawing.ni.dll MOD - [2013-01-11 03:41:09 | 006,616,576 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\8462c03b4f10c4624feb95790d6d1e30\System.Data.ni.dll MOD - [2013-01-11 03:34:32 | 007,977,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\aeac298c43c77d8860db8e7634d9f2eb\System.ni.dll MOD - [2013-01-11 03:34:00 | 011,492,352 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\eab2340ead8e1a84bdf1a87868659979\mscorlib.ni.dll MOD - [2009-08-19 16:49:08 | 000,049,152 | ---- | M] () -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\Memeo.API.dll MOD - [2009-07-29 16:24:14 | 000,504,293 | ---- | M] () -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\sqlite3.dll MOD - [2008-10-24 18:31:30 | 000,095,744 | ---- | M] () -- C:\Program Files\TortoiseSVN\bin\CrashRpt.dll MOD - [2008-10-11 18:18:57 | 000,015,360 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Drawing.resources\2.0.0.0_pl_b03f5f7f11d50a3a\System.Drawing.resources.dll MOD - [2008-10-11 18:18:53 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_pl_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll MOD - [2008-10-11 18:18:48 | 000,311,296 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll MOD - [2008-04-14 18:20:37 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2013-03-08 14:36:04 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2013-03-03 15:31:26 | 000,170,912 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2011-11-28 19:01:23 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus) SRV - [2009-10-14 14:31:02 | 000,098,304 | ---- | M] (WDC) [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe -- (WDDMService) SRV - [2009-07-22 17:54:14 | 000,081,920 | ---- | M] (Firebird Project) [Auto | Running] -- C:\Program Files\Firebird\Firebird_2_1\bin\fbguard.exe -- (FirebirdGuardianDefaultInstance) SRV - [2009-07-22 17:53:44 | 002,736,128 | ---- | M] (Firebird Project) [On_Demand | Running] -- C:\Program Files\Firebird\Firebird_2_1\bin\fbserver.exe -- (FirebirdServerDefaultInstance) SRV - [2009-06-16 09:58:08 | 000,020,480 | ---- | M] (Memeo) [Auto | Running] -- C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe -- (WDSmartWareBackgroundService) SRV - [2002-06-18 13:04:54 | 000,503,808 | ---- | M] () [Auto | Stopped] -- C:\MATLAB6p5\webserver\bin\win32\matlabserver.exe -- (matlabserver) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2011-11-28 18:53:53 | 000,435,032 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx) DRV - [2011-11-28 18:53:35 | 000,314,456 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP) DRV - [2011-11-28 18:52:19 | 000,034,392 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2011-11-28 18:52:16 | 000,052,952 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2011-11-28 18:52:02 | 000,111,320 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2) DRV - [2011-11-28 18:51:50 | 000,020,568 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2011-11-28 18:48:49 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4) DRV - [2010-01-27 03:09:02 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf) DRV - [2009-12-31 19:14:47 | 000,002,368 | ---- | M] (AntiCracking) [Kernel | Auto | Running] -- C:\WINDOWS\system32\STEC3.sys -- (STEC3) DRV - [2009-02-13 12:02:52 | 000,011,520 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\wdcsam.sys -- (WDC_SAM) DRV - [2006-10-17 19:22:26 | 000,009,216 | R--- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\videX32.sys -- (videX32) DRV - [2004-08-04 01:35:04 | 000,701,440 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2004-08-03 23:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) DRV - [1999-09-10 12:06:00 | 000,025,244 | R--- | M] (Adaptec) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\ASPI32.sys -- (Aspi32) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-436374069-1659004503-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com IE - HKU\S-1-5-21-436374069-1659004503-839522115-1003\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-436374069-1659004503-839522115-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\S-1-5-21-436374069-1659004503-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "Ask.com" FF - prefs.js..browser.search.defaultenginename: "Ask.com" FF - prefs.js..browser.search.defaultthis.engineName: "Softonic-Eng7 Customized Web Search" FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2405280&SearchSource=3&q={searchTerms}" FF - prefs.js..browser.search.order.1: "Ask.com" FF - prefs.js..browser.search.selectedEngine: "Wikipedia (pl)" FF - prefs.js..browser.search.suggest.enabled: false FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl" FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:19.0.2 FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {52EF0988-5232-4465-86E7-6434B5891030}:1.0 FF - prefs.js..extensions.enabledItems: searchrecs@veoh.com:1.5.2 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}:6.0.31 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_235.dll () FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.15.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.15.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@pandasecurity.com/activescan: C:\Program Files\Panda Security\ActiveScan 2.0\npwrapper.dll File not found FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.3.448: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013-03-08 14:36:09 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013-03-08 14:35:24 | 000,000,000 | ---D | M] [2008-12-16 11:49:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mozilla\Extensions [2013-02-14 22:27:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mozilla\Firefox\Profiles\17eld753.default\extensions [2010-12-12 22:35:01 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mozilla\Firefox\Profiles\17eld753.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2009-04-20 20:51:02 | 000,000,000 | ---D | M] (Adobe DLM (powered by getPlus(R))) -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mozilla\Firefox\Profiles\17eld753.default\extensions\{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7} [2010-03-31 15:02:48 | 000,000,000 | ---D | M] (Veoh Video Compass) -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mozilla\Firefox\Profiles\17eld753.default\extensions\searchrecs@veoh.com [2013-02-14 22:27:26 | 000,817,280 | ---- | M] () (No name found) -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mozilla\Firefox\Profiles\17eld753.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2011-03-13 11:20:36 | 000,002,566 | ---- | M] () -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mozilla\Firefox\Profiles\17eld753.default\searchplugins\askcom.xml [2010-12-08 15:46:22 | 000,000,929 | ---- | M] () -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mozilla\Firefox\Profiles\17eld753.default\searchplugins\conduit.xml [2013-03-08 14:35:10 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2013-03-08 14:35:10 | 000,000,000 | ---D | M] (Kwinzy) -- C:\Program Files\Mozilla Firefox\extensions\{52EF0988-5232-4465-86E7-6434B5891030} [2013-03-08 14:36:09 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2013-02-19 17:27:00 | 000,002,980 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2013-02-19 17:27:00 | 000,001,619 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2013-02-19 17:27:00 | 000,001,130 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2013-02-19 17:27:00 | 000,001,071 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2013-02-19 17:27:00 | 000,001,396 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2013-02-19 17:27:00 | 000,001,896 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2004-08-04 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4 - HKLM..\Run: [Anti Trojan Elite] C:\Program Files\Anti Trojan Elite\TJEnder.exe :NO File not found O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software) O4 - HKLM..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd File not found O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG) O4 - HKLM..\Run: [NWEReboot] File not found O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.) O4 - HKU\S-1-5-21-436374069-1659004503-839522115-1003..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG) O4 - HKU\S-1-5-21-436374069-1659004503-839522115-1003..\Run: [iGoD] "C:\Documents and Settings\Małgorzata\Moje dokumenty\Pobieranie\iGoDr0654.exe" /tray File not found O4 - HKU\S-1-5-21-436374069-1659004503-839522115-1003..\Run: [Nero PhotoShow Media Manager] C:\Program Files\Nero\Nero PhotoShow 4\data\Xtras\mssysmgr.exe (Nero AG / Nero Inc.) O4 - HKU\S-1-5-21-436374069-1659004503-839522115-1003..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1 File not found O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\WDDMStatus.lnk = C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\WDSmartWare.lnk = C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-436374069-1659004503-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O15 - HKU\S-1-5-21-436374069-1659004503-839522115-1003\..Trusted Domains: com.pl ([mks] http in Zaufane witryny) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Reg Error: Value error.) O16 - DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab (Java Plug-in 1.5.0_05) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 5.39.198.251 195.140.236.250 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B75306A5-C53D-4870-8595-7104FBFA90E7}: DhcpNameServer = 5.39.198.251 195.140.236.250 O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll File not found O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll File not found O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll File not found O20 - HKLM Winlogon: Shell - (Explorer.exe) - File not found O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UIHost - (logonui.exe) - File not found O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - File not found O20 - Winlogon\Notify\crypt32chain: DllName - (crypt32.dll) - File not found O20 - Winlogon\Notify\cryptnet: DllName - (cryptnet.dll) - File not found O20 - Winlogon\Notify\cscdll: DllName - (cscdll.dll) - File not found O20 - Winlogon\Notify\ScCertProp: DllName - (wlnotify.dll) - File not found O20 - Winlogon\Notify\Schedule: DllName - (wlnotify.dll) - File not found O20 - Winlogon\Notify\sclgntfy: DllName - (sclgntfy.dll) - File not found O20 - Winlogon\Notify\SensLogn: DllName - (WlNotify.dll) - File not found O20 - Winlogon\Notify\termsrv: DllName - (wlnotify.dll) - File not found O20 - Winlogon\Notify\WgaLogon: DllName - (WgaLogon.dll) - File not found O20 - Winlogon\Notify\wlballoon: DllName - (wlnotify.dll) - File not found O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Małgorzata\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Małgorzata\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - shell32.dll File not found O29 - HKLM SecurityProviders - (msapsspc.dll) - File not found O29 - HKLM SecurityProviders - (schannel.dll) - File not found O29 - HKLM SecurityProviders - (digest.dll) - File not found O29 - HKLM SecurityProviders - (msnsspc.dll) - File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2007-09-04 13:57:04 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{5cd7be93-5aec-11dc-9753-00304f2da82d}\Shell\Auto\command - "" = RavMonE.exe e O33 - MountPoints2\{5cd7be93-5aec-11dc-9753-00304f2da82d}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL O33 - MountPoints2\{fdd66b62-d360-11dc-b1a5-00304f2da82d}\Shell - "" = AutoRun O33 - MountPoints2\{fdd66b62-d360-11dc-b1a5-00304f2da82d}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2013-03-12 13:12:38 | 000,000,000 | ---D | C] -- C:\_OTL [2013-03-10 13:47:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Małgorzata\Pulpit\2programy [2013-03-08 14:34:58 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2013-03-04 14:11:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Małgorzata\Ustawienia lokalne\Dane aplikacji\Sun [2013-03-03 15:32:34 | 000,861,088 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\npDeployJava1.dll [2013-03-03 15:32:34 | 000,262,560 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2013-03-03 15:32:13 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2013-03-03 15:32:13 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2013-03-03 15:32:13 | 000,094,112 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2013-03-12 13:42:22 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2013-03-12 13:41:32 | 000,001,040 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2013-03-12 13:41:31 | 000,000,416 | ---- | M] () -- C:\WINDOWS\tasks\PCConfidential.job [2013-03-12 13:40:58 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2013-03-12 13:35:21 | 000,001,044 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2013-03-10 15:38:32 | 000,228,800 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2013-03-10 13:40:13 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2013-03-10 13:40:06 | 000,098,816 | ---- | M] () -- C:\Documents and Settings\Małgorzata\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2013-03-06 23:12:22 | 000,000,600 | ---- | M] () -- C:\Documents and Settings\Małgorzata\PUTTY.RND [2013-03-03 15:31:31 | 000,094,112 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2013-03-03 15:31:23 | 000,262,560 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2013-03-03 15:31:23 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2013-03-03 15:31:22 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2013-03-03 15:31:22 | 000,143,872 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2013-03-03 15:31:19 | 000,861,088 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\npDeployJava1.dll [2013-03-03 15:31:19 | 000,782,240 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\deployJava1.dll [2013-03-02 07:42:25 | 000,000,156 | ---- | M] () -- C:\WINDOWS\matlab.ini [2013-02-14 00:20:00 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2013-02-14 00:06:20 | 000,537,420 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2013-02-14 00:06:20 | 000,479,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2013-02-14 00:06:20 | 000,101,730 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2013-02-14 00:06:20 | 000,085,382 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2013-02-11 11:07:12 | 005,877,141 | ---- | M] () -- C:\Documents and Settings\Małgorzata\Pulpit\SALSA i wiek[1]. Cz..wmv [color=#E56717]========== Files Created - No Company Name ==========[/color] [2013-03-10 13:48:57 | 000,480,125 | ---- | C] () -- C:\Documents and Settings\Małgorzata\Moje dokumenty\adwcleaner.exe [2013-02-11 11:06:28 | 005,877,141 | ---- | C] () -- C:\Documents and Settings\Małgorzata\Pulpit\SALSA i wiek[1]. Cz..wmv [2012-02-14 21:09:57 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2011-12-05 17:00:02 | 000,000,317 | ---- | C] () -- C:\Documents and Settings\Małgorzata\.JavaPowUpload.properties [2010-11-30 15:37:11 | 000,444,283 | ---- | C] () -- C:\Program Files\Common Files\WinPcapNmap.exe [2008-12-15 22:08:42 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\Małgorzata\Ustawienia lokalne\Dane aplikacji\PUTTY.RND [2008-01-13 23:50:12 | 000,000,095 | ---- | C] () -- C:\Documents and Settings\Małgorzata\default.pls [2007-12-12 00:54:45 | 000,002,508 | ---- | C] () -- C:\Documents and Settings\Małgorzata\Dane aplikacji\$_hpcst$.hpc [2007-10-12 15:20:54 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\Małgorzata\PUTTY.RND [2007-09-05 22:19:33 | 000,001,794 | ---- | C] () -- C:\Documents and Settings\Małgorzata\Dane aplikacji\WWB7_32.DAT [2007-09-04 18:09:57 | 000,098,816 | ---- | C] () -- C:\Documents and Settings\Małgorzata\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2004-09-05 23:33:36 | 000,008,597 | ---- | C] () -- C:\Documents and Settings\Małgorzata\gsview32.ini [color=#E56717]========== ZeroAccess Check ==========[/color] [2008-10-10 13:19:04 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2012-12-27 11:31:51 | 001,510,400 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 11:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 18:20:57 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2010-08-19 20:14:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2011-03-26 16:16:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Bluetooth [2011-02-03 18:05:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Guitar Pro 6 [2009-06-30 19:49:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\iWin Games [2007-09-05 22:19:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\StatSoft [2011-12-20 15:51:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2011-12-12 13:17:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\WD_SmartWareCommon [2011-12-12 00:34:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Western Digital [2009-06-06 14:37:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Winferno [2008-03-22 17:08:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\YSFLIGHT.COM [2007-10-19 18:14:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\zvprt50 [2010-07-08 19:18:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\anpo.republika.pl [2011-12-15 23:27:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Auslogics [2009-06-05 19:01:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2007-10-02 18:11:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Dev-Cpp [2009-04-20 20:57:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1 [2010-07-08 19:17:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\fltk.org [2007-10-03 20:59:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\GHISLER [2011-02-03 18:05:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Guitar Pro 6 [2011-05-09 19:31:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\IGCGeFlight [2008-04-05 22:15:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Kingston [2007-10-30 21:14:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\MfcEmbed [2008-01-10 19:07:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Mobipocket [2007-10-29 17:04:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Notepad++ [2013-02-21 21:57:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\OpenOfficeT72 [2008-01-03 01:42:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Simple Star [2008-06-06 16:02:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Simply Super Software [2011-03-17 11:05:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\SmartDraw [2007-09-05 22:19:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\StatSoft [2004-09-05 23:52:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Subversion [2011-12-20 13:51:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\TestApp [2010-11-30 15:43:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\VDownloader [2011-12-12 00:35:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\Western Digital [2009-06-30 19:50:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Małgorzata\Dane aplikacji\YoudaGames [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:07BF512B @Alternate Data Stream - 131 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:E9DC8DCB @Alternate Data Stream - 127 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:430C6D84 @Alternate Data Stream - 109 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2 @Alternate Data Stream - 108 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9 < End of report >