OTL logfile created on: 3/21/2013 10:01:44 PM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE 64bit-Windows 7 Professional Service Pack 1 (Version = 6.1.7601) - Type = System Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 85.00% Memory free 2.00 Gb Paging File | 2.00 Gb Available in Paging File | 96.00% Paging File free Paging file location(s): c:\pagefile.sys 1024 1024 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 29.54 Gb Total Space | 3.60 Gb Free Space | 12.17% Space Free | Partition Type: NTFS Drive D: | 82.25 Gb Total Space | 29.63 Gb Free Space | 36.03% Space Free | Partition Type: NTFS Drive E: | 1.09 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: CDFS Drive X: | 7.45 Gb Total Space | 7.16 Gb Free Space | 96.05% Space Free | Partition Type: FAT32 Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days Using ControlSet: ControlSet001 [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2012/11/07 19:37:39 | 002,828,408 | ---- | M] (COMODO) [Auto] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV:[b]64bit:[/b] - [2009/07/13 21:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2009/07/13 21:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Windows\System32\appmgmts.dll -- (AppMgmt) SRV:[b]64bit:[/b] - [2006/08/05 05:48:30 | 000,410,624 | ---- | M] (Conexant Systems, Inc.) [Auto] -- C:\Windows\System32\drivers\XAudio64.exe -- (XAudioService) SRV - [2013/03/12 15:44:31 | 000,253,656 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012/07/27 16:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) [Auto] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2011/06/11 15:52:07 | 000,403,240 | ---- | M] (Valve Corporation) [On_Demand] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2010/12/28 04:00:34 | 001,296,728 | ---- | M] (www.BitComet.com) [On_Demand] -- D:\Programy\BitComet\tools\BitCometService.exe -- (BITCOMET_HELPER_SERVICE) SRV - [2010/09/07 03:37:48 | 000,068,096 | ---- | M] () [Disabled] -- C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe -- (Macromedia Licensing Service) SRV - [2010/03/18 07:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010/02/19 08:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard) SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2001/11/12 07:31:48 | 000,020,480 | ---- | M] (X10) [Auto] -- C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe -- (x10nets) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2012/11/07 19:37:57 | 000,022,736 | ---- | M] (COMODO) [File_System | System] -- C:\Windows\System32\drivers\cmderd.sys -- (cmderd) DRV:[b]64bit:[/b] - [2012/09/20 00:35:36 | 000,203,104 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ssudserd.sys -- (ssudserd) SAMSUNG Mobile USB Diagnostic Serial Port(DEVGURU Ver.) DRV:[b]64bit:[/b] - [2012/09/20 00:35:36 | 000,203,104 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.) DRV:[b]64bit:[/b] - [2012/09/20 00:35:36 | 000,102,368 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.) DRV:[b]64bit:[/b] - [2012/09/10 17:50:38 | 000,012,904 | ---- | M] (UVNC BVBA) [Kernel | On_Demand] -- C:\Windows\System32\drivers\mv2.sys -- (mv2) DRV:[b]64bit:[/b] - [2012/08/06 14:04:44 | 000,231,376 | ---- | M] (TrueCrypt Foundation) [Kernel | Boot] -- C:\Windows\System32\drivers\truecrypt.sys -- (truecrypt) DRV:[b]64bit:[/b] - [2012/08/01 12:17:32 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV:[b]64bit:[/b] - [2012/06/27 04:37:56 | 000,177,640 | ---- | M] (MCCI Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm) DRV:[b]64bit:[/b] - [2012/06/27 04:37:56 | 000,157,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus) SAMSUNG Android USB Composite Device driver (WDM) DRV:[b]64bit:[/b] - [2012/06/27 04:37:56 | 000,146,920 | ---- | M] (MCCI Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ssadserd.sys -- (ssadserd) SAMSUNG Android USB Diagnostic Serial Port (WDM) DRV:[b]64bit:[/b] - [2012/06/27 04:37:56 | 000,036,328 | ---- | M] (Google Inc) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ssadadb.sys -- (androidusb) DRV:[b]64bit:[/b] - [2012/06/27 04:37:56 | 000,016,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl) SAMSUNG Android USB Modem (Filter) DRV:[b]64bit:[/b] - [2012/05/17 13:47:02 | 000,711,712 | ---- | M] (Acronis) [Kernel | Boot] -- C:\Windows\System32\drivers\timntr.sys -- (timounter) DRV:[b]64bit:[/b] - [2012/05/17 13:47:02 | 000,081,952 | ---- | M] (Acronis) [File_System | Auto] -- C:\Windows\System32\drivers\tifsfilt.sys -- (tifsfilter) DRV:[b]64bit:[/b] - [2012/05/12 15:36:58 | 000,560,184 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV:[b]64bit:[/b] - [2012/02/22 06:34:36 | 000,028,160 | ---- | M] (ManyCam LLC) [Kernel | On_Demand] -- C:\Windows\System32\drivers\mcaudrv_x64.sys -- (mcaudrv_simple) DRV:[b]64bit:[/b] - [2012/01/11 02:11:20 | 000,034,304 | ---- | M] (ManyCam LLC) [Kernel | On_Demand] -- C:\Windows\System32\drivers\mcvidrv_x64.sys -- (ManyCam) DRV:[b]64bit:[/b] - [2011/05/16 12:35:14 | 000,156,912 | ---- | M] (Oracle Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV:[b]64bit:[/b] - [2011/03/03 13:29:48 | 000,314,016 | ---- | M] () [Kernel | Auto] -- C:\Windows\System32\drivers\atksgt.sys -- (atksgt) DRV:[b]64bit:[/b] - [2011/03/03 13:29:48 | 000,043,680 | ---- | M] () [Kernel | Auto] -- C:\Windows\System32\drivers\lirsgt.sys -- (lirsgt) DRV:[b]64bit:[/b] - [2010/11/20 07:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2010/11/20 05:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\system32\drivers\sdbus.sys -- (sdbus) DRV:[b]64bit:[/b] - [2010/01/04 23:23:18 | 001,847,296 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\athurx.sys -- (athur) DRV:[b]64bit:[/b] - [2009/12/30 05:21:26 | 000,031,800 | ---- | M] (VS Revo Group) [File_System | On_Demand] -- C:\Windows\System32\drivers\revoflt.sys -- (Revoflt) DRV:[b]64bit:[/b] - [2009/11/18 13:36:02 | 000,039,240 | ---- | M] (Eagletron Inc.) [Kernel | Auto] -- C:\Windows\System32\drivers\dvdriver.sys -- (DVDRIVER) DRV:[b]64bit:[/b] - [2009/09/23 06:23:02 | 006,180,832 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\igdkmd64.sys -- (igfx) DRV:[b]64bit:[/b] - [2009/07/13 04:34:48 | 000,116,864 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard) DRV:[b]64bit:[/b] - [2009/07/07 19:45:50 | 002,769,400 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\BCMWL664.SYS -- (BCM43XX) DRV:[b]64bit:[/b] - [2009/06/10 17:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\VSTDPV6.SYS -- (SrvHsfV92) DRV:[b]64bit:[/b] - [2009/06/10 17:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\VSTCNXT6.SYS -- (SrvHsfWinac) DRV:[b]64bit:[/b] - [2009/06/10 17:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\VSTAZL6.SYS -- (SrvHsfHDA) DRV:[b]64bit:[/b] - [2009/06/10 16:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand] -- C:\Windows\System32\wbem\ntfs.mof -- (Ntfs) DRV:[b]64bit:[/b] - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- C:\Windows\system32\DRIVERS\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- C:\Windows\system32\DRIVERS\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2007/01/25 00:44:06 | 000,314,368 | ---- | M] (Texas Instruments) [Kernel | On_Demand] -- C:\Windows\System32\drivers\tifm21.sys -- (tifm21) DRV:[b]64bit:[/b] - [2006/10/18 23:33:34 | 001,513,472 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\CAX_DPV.sys -- (HSF_DPV) DRV:[b]64bit:[/b] - [2006/10/18 23:31:12 | 000,296,448 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\CAXHWAZL.sys -- (CAXHWAZL) DRV:[b]64bit:[/b] - [2006/10/18 23:30:10 | 000,731,648 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\CAX_CNXT.sys -- (winachsf) DRV:[b]64bit:[/b] - [2006/08/05 05:42:48 | 000,009,728 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto] -- C:\Windows\System32\drivers\XAudio64.sys -- (XAudio) DRV:[b]64bit:[/b] - [2005/09/23 17:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand] -- C:\Windows\System32\drivers\MarvinBus64.sys -- (MarvinBus) DRV:[b]64bit:[/b] - [2005/03/02 08:26:12 | 000,033,280 | ---- | M] (X10 Wireless Technology, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\x10ufx2.sys -- (XUIF) DRV - [2012/08/08 05:55:00 | 000,004,016 | ---- | M] (SpecoSoft) [Kernel | On_Demand] -- D:\Programy\UltraStar\zlportio.sys -- (zlportio) DRV - [2011/06/02 05:08:34 | 000,017,864 | ---- | M] () [Kernel | On_Demand] -- C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys -- (cpudrv64) DRV - [2010/08/30 17:30:51 | 000,012,800 | ---- | M] (AsusTek Computer Inc.) [Kernel | On_Demand] -- C:\Windows\BS_DEF.sys -- (BS_DEF) DRV - [2010/07/01 13:11:24 | 000,012,352 | ---- | M] () [Kernel | Unavailable] -- D:\Programy\Unlocker\UnlockerDriver5.sys -- (UnlockerDriver5) DRV - [2002/01/12 11:30:34 | 000,003,567 | ---- | M] (Beyond Logic http://www.beyondlogic.org) [Kernel | On_Demand] -- C:\Windows\SysWOW64\drivers\PortTalk.sys -- (PortTalk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\Piotrek_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=119816&babsrc=HP_ss&mntrId=72efde87000000000000001c26a1a7fa IE - HKU\Piotrek_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\System32\Macromed\Flash\NPSWF64_11_6_602_180.dll () FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.17.2: C:\Windows\System32\npDeployJava1.dll (Oracle Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: File not found FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll () FF - HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll (Adobe Systems, Inc.) FF - HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.15.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.15.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE: File not found FF - HKLM\Software\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=8: File not found FF - HKLM\Software\Wow6432Node\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 19.0.2\extensions\\Components: D:\Programy\Mozilla Firefox\components [2013/03/08 04:14:45 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 19.0.2\extensions\\Plugins: D:\Programy\Mozilla Firefox\plugins [2013/03/08 04:14:38 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: D:\Programy(x86)\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: D:\Programy(x86)\Mozilla Firefox\plugins FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Thunderbird 17.0.4\extensions\\Components: D:\Programy\Mozilla Thunderbird\components [2013/03/12 14:01:57 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Thunderbird 17.0.4\extensions\\Plugins: D:\Programy\Mozilla Thunderbird\plugins [2013/03/12 14:01:59 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Thunderbird 3.1.2\extensions\\Components: D:\Programy(x86)\Mozilla Thunderbird\components FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Mozilla Thunderbird 3.1.2\extensions\\Plugins: D:\Programy(x86)\Mozilla Thunderbird\plugins FF - HKEY_LOCAL_MACHINE\software\wow6432node\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: D:\Programy\ESET\Mozilla Thunderbird [2010/07/27 14:12:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Extensions [2010/07/27 14:12:15 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2012/12/06 05:23:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\Basia\extensions [2013/03/12 15:22:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\Piotrek\extensions O1 HOSTS File: ([2012/05/12 15:57:40 | 000,000,988 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 serial.alcohol-soft.com O1 - Hosts: 127.0.0.1 www.alcohol-soft.com O1 - Hosts: 127.0.0.1 images.alcohol-soft.com O1 - Hosts: 127.0.0.1 trial.alcohol-soft.com O1 - Hosts: 127.0.0.1 alcohol-soft.com O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKU\LocalService_ON_C..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\NetworkService_ON_C..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\Piotrek_ON_C..\Run: [] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe (Samsung) O4 - HKU\Piotrek_ON_C..\Run: [TrueCrypt] C:\Program Files\TrueCrypt\TrueCrypt.exe (TrueCrypt Foundation) O4 - HKU\LocalService_ON_C..\RunOnce: [mctadmin] File not found O4 - HKU\NetworkService_ON_C..\RunOnce: [mctadmin] File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKU\Piotrek_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8:[b]64bit:[/b] - Extra context menu item: &P&obierz &za pomocą BitComet - D:\Programy\BitComet\BitComet.exe (www.BitComet.com) O8:[b]64bit:[/b] - Extra context menu item: Pobierz wszystko za pomocą BitComet - D:\Programy\BitComet\BitComet.exe (www.BitComet.com) O8 - Extra context menu item: &P&obierz &za pomocą BitComet - D:\Programy\BitComet\BitComet.exe (www.BitComet.com) O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - D:\Programy\BitComet\BitComet.exe (www.BitComet.com) O13:[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} http://game.zylom.com/activex/zylomgamesplayer.cab (Zylom Games Player) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.172.224.160 89.231.1.206 O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found O20:[b]64bit:[/b] - AppInit_DLLs: (C:\Windows\system32\guard64.dll) - C:\Windows\System32\guard64.dll (COMODO) O20 - AppInit_DLLs: (c:\windows\syswow64\guard32.dll) - C:\Windows\SysWOW64\guard32.dll (COMODO) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2013/03/20 16:12:59 | 000,000,000 | ---D | M] - C:\autoruns -- [ NTFS ] O32 - AutoRun File - [2011/04/27 13:04:00 | 000,000,143 | R--- | M] () - E:\autorun.inf -- [ CDFS ] O32 - AutoRun File - [2006/03/24 12:06:42 | 000,000,053 | ---- | M] () - X:\AUTORUN.INF -- [ FAT32 ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found [b]64bit:[/b] O35 - HKLM\..comfile [open] -- "%1" %* File not found [b]64bit:[/b] O35 - HKLM\..exefile [open] -- "%1" %* File not found O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2013/03/20 16:12:31 | 000,000,000 | ---D | C] -- C:\autoruns [2013/03/19 17:25:10 | 000,000,000 | ---D | C] -- C:\Temp [2013/03/09 17:43:17 | 000,310,688 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaws.exe [2013/03/09 17:42:57 | 000,188,832 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe [2013/03/09 17:42:57 | 000,188,320 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\java.exe [2013/03/09 17:42:57 | 000,108,448 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge-64.dll [2013/03/09 17:42:46 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2013/03/09 15:59:58 | 000,000,000 | ---D | C] -- D:\Moje Dokumenty\Paseki skrótów [2013/03/08 13:56:54 | 000,000,000 | ---D | C] -- D:\Moje Dokumenty\InstantCDDVD [2013/03/05 12:26:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Formularze IPS [2013/03/05 12:22:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IPSPI [2013/03/03 16:38:44 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\CrashDump [2013/03/03 12:48:32 | 000,000,000 | ---D | C] -- C:\Windows\tiinst [2013/03/03 09:17:47 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar [2013/03/03 09:17:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Convar [2013/03/03 09:14:19 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Delta [2013/03/03 09:13:35 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Babylon [2013/03/03 09:13:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon [2013/03/02 16:35:17 | 000,000,000 | ---D | C] -- C:\ProgramData\VS Revo Group [2013/02/28 12:49:49 | 000,000,000 | ---D | C] -- D:\Moje Dokumenty\BackUp [2013/02/28 12:43:57 | 000,821,824 | ---- | C] (Devguru Co., Ltd.) -- C:\Windows\SysWow64\dgderapi.dll [2013/02/21 01:59:56 | 000,262,560 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe [2013/02/20 16:58:52 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe [2013/02/20 16:58:52 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2013/03/21 14:24:45 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2013/03/15 11:44:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2013/03/13 16:05:36 | 000,741,540 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2013/03/13 16:05:36 | 000,655,264 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2013/03/13 16:05:36 | 000,156,104 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2013/03/13 16:05:36 | 000,122,136 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2013/03/12 15:44:30 | 000,693,976 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2013/03/12 15:44:30 | 000,073,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2013/03/11 13:14:28 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2013/03/11 13:14:28 | 000,014,256 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2013/03/11 12:43:52 | 000,007,608 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\Resmon.ResmonCfg [2013/03/10 04:54:58 | 001,474,832 | ---- | M] () -- C:\Windows\System32\drivers\sfi.dat [2013/03/09 17:42:49 | 000,108,448 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge-64.dll [2013/03/09 17:42:48 | 001,085,344 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\npDeployJava1.dll [2013/03/09 17:42:48 | 000,963,488 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\deployJava1.dll [2013/03/09 17:42:48 | 000,310,688 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaws.exe [2013/03/09 17:42:48 | 000,188,832 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaw.exe [2013/03/09 17:42:48 | 000,188,320 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\java.exe [2013/03/09 05:12:49 | 000,000,349 | ---- | M] () -- C:\Users\Public\Documents\PCLECHAL.INI [2013/03/08 14:14:48 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis [2013/03/05 12:26:08 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Formularze IPS [2013/03/03 12:06:23 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans [2013/03/02 16:35:19 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro [2013/03/01 16:49:27 | 000,000,132 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\Adobe PNG Format CS5 Prefs [2013/02/28 13:59:52 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_ssadadb_01005.Wdf [2013/02/28 12:49:49 | 000,070,720 | ---- | M] () -- D:\Moje Dokumenty\Kontakty002.spb [2013/02/28 12:44:22 | 000,002,032 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk [2013/02/28 12:44:22 | 000,002,022 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk [2013/02/28 12:44:22 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung [2013/02/20 16:58:39 | 000,861,088 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll [2013/02/20 16:58:39 | 000,782,240 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll [2013/02/20 16:58:39 | 000,262,560 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe [2013/02/20 16:58:39 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe [2013/02/20 16:58:39 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe [2013/02/20 16:58:39 | 000,095,648 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll [color=#E56717]========== Files Created - No Company Name ==========[/color] [2013/02/28 13:59:52 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_ssadadb_01005.Wdf [2013/02/28 12:49:48 | 000,070,720 | ---- | C] () -- D:\Moje Dokumenty\Kontakty002.spb [2013/02/28 12:44:22 | 000,002,032 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk [2013/02/28 12:44:22 | 000,002,022 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk [2013/02/05 12:52:54 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe [2013/01/08 02:14:45 | 000,000,551 | ---- | C] () -- C:\Windows\Qiii.INI [2013/01/08 02:14:45 | 000,000,030 | ---- | C] () -- C:\Windows\Q3version.ini [2012/12/14 16:02:01 | 000,029,701 | ---- | C] () -- C:\Windows\scunin.dat [2012/10/08 11:44:58 | 000,002,432 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\TempMU4156.html [2012/09/12 12:38:07 | 000,074,240 | ---- | C] () -- C:\Windows\trackerpod_server.exe [2012/08/29 12:48:02 | 000,002,432 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\TempPT2252.html [2012/08/29 12:06:45 | 000,002,432 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\TempnW1116.html [2012/08/15 11:44:38 | 000,002,432 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\Temphd3332.html [2012/08/15 11:44:36 | 000,002,432 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\TempDg3332.html [2012/07/31 12:32:08 | 000,017,408 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\WebpageIcons.db [2012/03/19 14:06:10 | 000,043,520 | ---- | C] () -- C:\Windows\SysWow64\CmdLineExt03.dll [2011/08/18 13:39:21 | 000,000,132 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\Adobe GIF Format CS5 Prefs [2011/08/18 13:38:43 | 000,000,132 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\Adobe PNG Format CS5 Prefs [2011/07/24 10:57:43 | 000,000,126 | ---- | C] () -- C:\Windows\SysWow64\quietHDD.ini [2011/07/22 12:47:38 | 000,127,184 | ---- | C] () -- C:\Windows\Unwise.exe [2011/07/18 16:22:36 | 000,000,540 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\AutoGK.ini [2011/07/13 13:41:32 | 000,340,480 | ---- | C] () -- C:\Windows\SysWow64\AkelPad.exe [2011/06/08 15:50:29 | 000,004,096 | ---- | C] () -- C:\Windows\SysWow64\tckdll.dll [2011/05/22 02:57:13 | 000,000,056 | ---- | C] () -- C:\Windows\SysWow64\ezsidmv.dat [2011/03/03 17:18:50 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat [2011/03/03 12:57:24 | 000,009,728 | ---- | C] () -- C:\Windows\SysWow64\BASSMOD.dll [2011/02/23 04:30:24 | 000,252,928 | ---- | C] () -- C:\Windows\SysWow64\DShowRdpFilter.dll [2011/01/29 12:00:22 | 000,974,848 | ---- | C] () -- C:\Windows\SysWow64\cis-2.4.dll [2011/01/29 12:00:22 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\issacapi_bs-2.3.dll [2011/01/29 12:00:22 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\issacapi_pe-2.3.dll [2011/01/29 12:00:22 | 000,057,344 | ---- | C] () -- C:\Windows\SysWow64\issacapi_se-2.3.dll [2011/01/11 14:11:11 | 000,057,344 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\chrtmp [2010/12/23 09:59:20 | 000,000,010 | ---- | C] () -- C:\Windows\popcinfo.dat [2010/12/20 03:15:31 | 000,000,000 | ---- | C] () -- C:\Windows\PowerReg.dat [2010/12/14 17:49:05 | 001,648,234 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010/12/06 16:00:54 | 000,029,832 | ---- | C] () -- C:\Windows\SysWow64\Trailers.dat [2010/12/06 16:00:05 | 000,000,302 | ---- | C] () -- C:\Windows\SysWow64\Settings.dat [2010/10/04 05:17:09 | 000,000,000 | ---- | C] () -- C:\Windows\Bench32.INI [2010/09/26 06:57:08 | 000,009,216 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010/09/18 07:20:21 | 000,151,552 | ---- | C] () -- C:\Windows\SysWow64\nvRegDev.dll [2010/09/18 07:20:12 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\nvTextureToolsUtil.dll [2010/09/18 07:20:12 | 000,040,960 | ---- | C] () -- C:\Windows\SysWow64\nvISWOW64.dll [2010/09/18 06:47:36 | 000,007,608 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\Resmon.ResmonCfg [2010/08/14 14:07:06 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2010/07/28 16:05:41 | 000,000,200 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\Network Monitor II_Settings.ini [2010/07/28 15:52:23 | 000,000,571 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\System Monitor II_Settings.ini [2009/09/23 06:21:08 | 002,050,952 | ---- | C] () -- C:\Windows\SysWow64\igkrng400.bin [2009/07/14 11:15:00 | 000,178,432 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat [2009/07/14 01:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009/07/13 22:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT [2009/07/13 22:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat [2009/07/13 20:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009/07/13 19:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009/07/13 18:25:04 | 000,197,632 | ---- | C] () -- C:\Windows\SysWow64\ir32_32.dll [2009/07/13 17:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009/06/10 17:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat [2009/01/25 17:10:48 | 000,179,200 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2009/01/08 19:01:22 | 000,629,760 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2007/07/06 07:24:56 | 002,035,712 | ---- | C] () -- C:\Windows\SysWow64\libmysql.dll [color=#E56717]========== LOP Check ==========[/color] [2010/10/17 15:10:24 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Acronis [2012/10/09 12:55:06 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Ashampoo [2011/09/18 16:12:57 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Atari [2012/10/15 15:17:47 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\avidemux [2013/03/03 09:13:35 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Babylon [2012/10/14 08:03:44 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\BANDISOFT [2012/08/09 11:54:13 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\BitComet [2011/10/20 16:34:26 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 [2013/03/09 13:15:03 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\DAEMON Tools Lite [2012/08/04 06:52:33 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\DAEMON Tools Pro [2013/03/03 09:14:19 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Delta [2011/02/02 17:04:37 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Ember_Media_Manager [2010/10/17 15:02:04 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\ESET [2010/10/20 14:53:12 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\EurekaLog [2013/03/14 15:59:31 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\FileZilla [2011/12/18 10:02:34 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\FlashFXP [2013/01/15 16:01:33 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\FTPRush [2010/07/28 15:23:24 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Gadu-Gadu 10 [2011/11/08 15:38:53 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\GetRightToGo [2013/03/02 16:42:55 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\GHISLER [2013/02/25 15:29:57 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\GitHub [2013/03/06 17:14:23 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\GoodSync [2012/12/17 17:33:03 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Hulubulu [2013/03/07 04:30:28 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\ipla [2012/03/12 14:29:41 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\iPlus [2011/03/22 15:49:54 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\IsolatedStorage [2010/08/25 16:03:36 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Kadu [2011/05/27 13:40:10 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Leadertech [2012/09/30 15:13:50 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\MediaMonkey [2011/01/30 14:20:41 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\minimem [2011/10/22 06:17:49 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\mkvtoolnix [2013/01/11 16:30:16 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Mp3tag [2010/10/10 15:51:27 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\MusicBrainz [2012/09/07 13:36:08 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\NetBeans [2010/08/14 15:31:39 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\OpenFM [2010/12/01 17:46:56 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Peter Souza IV [2010/10/03 11:45:56 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\PhoneRemoteControl [2010/11/27 08:16:47 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\RDRM [2013/02/28 12:46:29 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Samsung [2010/10/21 14:21:01 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\SharpPlus [2012/07/30 11:56:02 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\SpeedSim [2012/05/02 05:46:21 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 [2011/09/18 15:37:41 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\StepMania 5 [2011/12/30 07:57:25 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Subversion [2012/03/26 13:59:38 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\TeamViewer [2012/04/10 14:37:43 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Temp [2010/07/27 14:12:15 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Thunderbird [2012/08/06 14:59:56 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\TrueCrypt [2012/08/04 06:52:31 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\uTorrent [2012/12/30 13:47:40 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\XBMC ToolBox [2012/05/17 13:47:12 | 000,000,000 | ---D | M] -- C:\ProgramData\Acronis [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data [2012/10/09 12:53:29 | 000,000,000 | ---D | M] -- C:\ProgramData\ashampoo [2012/09/12 12:31:58 | 000,000,000 | ---D | M] -- C:\ProgramData\Ask [2013/03/03 09:13:35 | 000,000,000 | ---D | M] -- C:\ProgramData\Babylon [2012/08/01 13:52:29 | 000,000,000 | ---D | M] -- C:\ProgramData\CPA_VA [2012/05/12 16:14:59 | 000,000,000 | ---D | M] -- C:\ProgramData\DAEMON Tools Lite [2012/05/12 15:59:30 | 000,000,000 | ---D | M] -- C:\ProgramData\DAEMON Tools Pro [2010/07/26 15:40:29 | 000,000,000 | -HSD | M] -- C:\ProgramData\Dane aplikacji [2011/01/25 12:27:27 | 000,000,000 | ---D | M] -- C:\ProgramData\Deskshare [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Desktop [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Documents [2010/07/26 15:40:29 | 000,000,000 | -HSD | M] -- C:\ProgramData\Dokumenty [2011/09/20 15:26:52 | 000,000,000 | ---D | M] -- C:\ProgramData\eMule [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Favorites [2011/01/25 12:53:32 | 000,000,000 | ---D | M] -- C:\ProgramData\firebird [2011/12/18 10:02:34 | 000,000,000 | ---D | M] -- C:\ProgramData\FlashFXP [2010/07/28 15:22:38 | 000,000,000 | ---D | M] -- C:\ProgramData\Gadu-Gadu 10 [2013/03/06 17:14:20 | 000,000,000 | ---D | M] -- C:\ProgramData\GoodSync [2013/03/01 11:24:47 | 000,000,000 | ---D | M] -- C:\ProgramData\ipla [2010/12/01 17:53:46 | 000,000,000 | ---D | M] -- C:\ProgramData\MediaBrowser [2012/09/27 13:19:18 | 000,000,000 | ---D | M] -- C:\ProgramData\MediaMonkey [2010/07/26 15:40:29 | 000,000,000 | -HSD | M] -- C:\ProgramData\Menu Start [2010/08/14 15:32:28 | 000,000,000 | ---D | M] -- C:\ProgramData\OpenFM [2012/08/06 16:46:23 | 000,000,000 | ---D | M] -- C:\ProgramData\Pinnacle [2012/08/06 16:46:23 | 000,000,000 | ---D | M] -- C:\ProgramData\Pinnacle Studio Plus [2012/08/06 16:54:45 | 000,000,000 | ---D | M] -- C:\ProgramData\Pinnacle Studio Ultimate Collection [2012/03/07 14:37:41 | 000,000,000 | ---D | M] -- C:\ProgramData\PITy [2010/07/26 15:40:29 | 000,000,000 | -HSD | M] -- C:\ProgramData\Pulpit [2013/03/07 04:30:34 | 000,000,000 | ---D | M] -- C:\ProgramData\RDRM [2011/08/18 12:53:36 | 000,000,000 | ---D | M] -- C:\ProgramData\regid.1986-12.com.adobe [2013/02/28 12:43:35 | 000,000,000 | ---D | M] -- C:\ProgramData\Samsung [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Start Menu [2011/09/18 15:37:41 | 000,000,000 | ---D | M] -- C:\ProgramData\StepMania 5 [2012/08/06 16:46:23 | 000,000,000 | ---D | M] -- C:\ProgramData\Studio 15 [2010/07/26 15:40:29 | 000,000,000 | -HSD | M] -- C:\ProgramData\Szablony [2012/09/12 12:33:03 | 000,000,000 | ---D | M] -- C:\ProgramData\Temp [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Templates [2010/09/30 14:58:32 | 000,000,000 | ---D | M] -- C:\ProgramData\TP-LINK [2012/08/01 12:12:00 | 000,000,000 | ---D | M] -- C:\ProgramData\TrueCrypt [2010/07/26 15:40:29 | 000,000,000 | -HSD | M] -- C:\ProgramData\Ulubione [2013/03/02 16:35:17 | 000,000,000 | ---D | M] -- C:\ProgramData\VS Revo Group [2010/11/21 06:54:54 | 000,000,000 | ---D | M] -- C:\ProgramData\WinZip [2011/07/22 13:41:09 | 000,000,000 | ---D | M] -- C:\ProgramData\X10 Settings [2011/11/22 16:41:18 | 000,000,000 | ---D | M] -- C:\ProgramData\Zylom [2013/01/08 09:50:56 | 000,032,604 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] < End of report >