Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 26-08-2013 Ran by Sławek (administrator) on 26-08-2013 10:37:30 Running from C:\Users\Sławek\Downloads Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e2247046\STacSV.exe (Microsoft Corporation) C:\Windows\system32\SLsvc.exe (Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe (Validity Sensors, Inc.) C:\Windows\system32\vfsFPService.exe (DigitalPersona, Inc.) C:\Program Files\DigitalPersona\Bin\DpHostW.exe (Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e2247046\aestsrv.exe (Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) C:\Windows\system32\iashost.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe (Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe (Hewlett-Packard) c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe (Microsoft Corporation) C:\Windows\system32\wuauclt.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2299176 2011-10-14] (Synaptics Incorporated) HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation) HKLM\...\Run: [QlbCtrl.exe] - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [202032 2008-03-14] ( Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [OnScreenDisplay] - C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe [554288 2007-11-01] ( Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [HP Software Update] - C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard) HKLM\...\Run: [hpWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [488752 2008-04-15] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [HP Health Check Scheduler] - c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [75008 2008-10-09] (Hewlett-Packard) HKLM\...\Run: [DpAgent] - C:\Program Files\DigitalPersona\Bin\dpagent.exe [842816 2009-09-29] (DigitalPersona, Inc.) HKLM\...\Run: [CryptoCard Suite Cert Monitor] - C:\Program Files\CryptoTech\CryptoCard\CCMonitor.exe [233472 2009-11-06] (CryptoTech Sp. z o.o.) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray.exe [458844 2009-07-21] (IDT, Inc.) HKLM\...\Run: [NvCplDaemon] - C:\Windows\system32\NvCpl.dll [13826664 2009-10-03] (NVIDIA Corporation) HKLM\...\Run: [CloneCDTray] - C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe [57344 2006-09-28] (SlySoft, Inc.) HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [947176 2012-09-12] (Microsoft Corporation) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [TP-LINK USB Printer Controller] - C:\Program Files\TP-LINK\USB Printer Controller\USB Printer Controller.exe [4226048 2012-09-21] () HKCU\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.) HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation) HKCU\...\Run: [ISUSPM] - C:\ProgramData\Macrovision\FLEXnet Connect\6\ISUSPM.exe [226904 2007-07-12] (Macrovision Corporation) MountPoints2: {1690e08a-bd41-11dd-bde3-806e6f6e6963} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\cennik.html HKU\Default\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation) HKU\Default User\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation) HKU\test\...\Run: [LightScribe Control Panel] - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [ 2008-02-26] (Hewlett-Packard Company) HKU\test\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [ 2013-05-01] (Apple Inc.) Lsa: [Notification Packages] scecli DPPWDFLT Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BTTray.lnk ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pl_pl&c=83&bd=Pavilion&pf=cnnb HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {CC24D0C0-9FD5-4933-911C-119D67A0B439} URL = http://www.google.co.uk/search?hl=en&q={searchTerms}&meta=&rlz=1I7SUNC_pl BHO: DigitalPersona Personal Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Program Files\DigitalPersona\Bin\DpOtsPluginIe8.dll (DigitalPersona, Inc.) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation) DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler: msdaipp - No CLSID Value - Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Chrome: ======= CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Extension: (Google Docs) - C:\Users\SAWEK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\SAWEK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\SAWEK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\SAWEK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Google Wallet Service) - C:\Users\SAWEK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.9_1 CHR Extension: (Gmail) - C:\Users\SAWEK~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 ========================== Services (Whitelisted) ================= R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e2247046\aestsrv.exe [81920 2009-03-02] (Andrea Electronics Corporation) R2 HP Health Check Service; c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [94208 2008-10-09] (Hewlett-Packard) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [20472 2012-09-12] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [287824 2012-09-12] (Microsoft Corporation) S4 Recovery Service for Windows; C:\Windows\SMINST\BLService.exe [361808 2008-04-26] () S4 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [272024 2007-01-09] () R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e2247046\STacSV.exe [221266 2009-07-21] (IDT, Inc.) ==================== Drivers (Whitelisted) ==================== R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation) R2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [41984 2007-01-03] (Samsung Electronics Co., Ltd.) R3 ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [34760 2007-02-16] (SlySoft, Inc.) R1 ElbyCDIO; C:\Windows\System32\Drivers\ElbyCDIO.sys [25160 2007-08-07] (Elaborate Bytes AG) S3 GemCCID; C:\Windows\System32\Drivers\GemCCID.sys [87424 2008-04-04] (Gemalto) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [193552 2012-08-30] (Microsoft Corporation) R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2007-01-03] (Samsung Electronics) R3 TPLINKUDSMBus; C:\Windows\System32\drivers\TplinkUDSMBus.sys [88576 2012-09-21] (Windows (R) Codename Longhorn DDK provider) R3 TplinkUDSTcpBus; C:\Windows\System32\drivers\TplinkUDSTcpBus.sys [151296 2012-09-21] (Windows (R) Codename Longhorn DDK provider) S3 V0220Dev; C:\Windows\System32\DRIVERS\V0220Dev.sys [198784 2007-08-15] (Creative Technology Ltd.) S3 V0220Vfx; C:\Windows\System32\DRIVERS\V0220Vfx.sys [7424 2007-03-05] (EyePower Games Pte. Ltd.) S3 IpInIp; system32\DRIVERS\ipinip.sys [x] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-26 10:29 - 2013-08-26 10:30 - 01070979 _____ (Farbar) C:\Users\Sławek\Downloads\FRST.exe 2013-08-26 10:27 - 2013-08-26 10:27 - 00448512 _____ (OldTimer Tools) C:\Users\Sławek\Downloads\TFC.exe 2013-08-23 12:11 - 2013-08-23 12:13 - 00030274 _____ C:\Users\Sławek\Downloads\Addition.txt 2013-08-23 12:10 - 2013-08-23 12:10 - 00000000 ____D C:\FRST 2013-08-23 11:24 - 2013-08-23 11:24 - 00602112 _____ (OldTimer Tools) C:\Users\Sławek\Downloads\OTL (1).com 2013-08-23 11:09 - 2013-08-23 11:15 - 00000000 ____D C:\AdwCleaner 2013-08-23 11:07 - 2013-08-23 11:08 - 00975858 _____ C:\Users\Sławek\Downloads\AdwCleaner.exe 2013-08-23 10:37 - 2013-08-23 10:56 - 00000000 ____D C:\MATS 2013-08-23 10:33 - 2013-08-23 10:33 - 00347424 _____ (Microsoft Corporation) C:\Users\Sławek\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.13930067757949995.1.1.Run.exe 2013-08-22 14:15 - 2013-08-22 14:15 - 00087144 _____ C:\Users\Sławek\Downloads\Extras.Txt 2013-08-22 14:14 - 2013-08-23 11:59 - 00075296 _____ C:\Users\Sławek\Downloads\OTL.Txt 2013-08-22 13:45 - 2013-08-22 13:45 - 00602112 _____ (OldTimer Tools) C:\Users\Sławek\Downloads\OTL.com 2013-08-22 12:35 - 2013-08-22 12:36 - 11263312 _____ (Microsoft Corporation) C:\Users\Sławek\Downloads\mseinstall.exe 2013-08-21 14:53 - 2013-08-21 14:53 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-08-21 13:15 - 2013-08-21 13:15 - 00000000 ____D C:\Windows\CheckSur 2013-08-21 13:12 - 2013-08-21 13:29 - 138654041 _____ C:\Users\Sławek\Downloads\Windows6.0-KB947821-v28-x86.msu 2013-08-19 10:04 - 2013-08-19 10:08 - 00000000 ____D C:\Windows\system32\MRT 2013-08-19 08:38 - 2013-07-25 04:40 - 12334080 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-19 08:38 - 2013-07-25 04:32 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-19 08:38 - 2013-07-25 04:30 - 09738752 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-19 08:38 - 2013-07-25 04:26 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-19 08:38 - 2013-07-25 04:26 - 01104384 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-19 08:38 - 2013-07-25 04:25 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-19 08:38 - 2013-07-25 04:24 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-19 08:38 - 2013-07-25 04:24 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-19 08:38 - 2013-07-25 04:23 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-19 08:38 - 2013-07-25 04:23 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-19 08:38 - 2013-07-25 04:23 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-19 08:38 - 2013-07-25 04:23 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-19 08:38 - 2013-07-25 04:23 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-19 08:38 - 2013-07-25 04:22 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-19 08:38 - 2013-07-25 04:22 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-19 08:38 - 2013-07-25 04:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-19 08:35 - 2013-07-17 21:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-08-19 08:35 - 2013-07-10 11:47 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-19 08:35 - 2013-07-09 14:10 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-08-19 08:35 - 2013-07-08 06:55 - 03603904 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2013-08-19 08:35 - 2013-07-08 06:55 - 03551680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-19 08:35 - 2013-07-08 06:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-19 08:35 - 2013-07-08 06:16 - 00992768 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-19 08:35 - 2013-07-08 06:16 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-19 08:35 - 2013-07-08 06:16 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-08-19 08:35 - 2013-07-05 05:20 - 00914880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-19 08:35 - 2013-07-05 03:43 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2013-08-19 08:35 - 2013-06-15 15:22 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2013-08-19 08:35 - 2013-06-15 13:23 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-08-02 12:47 - 2013-08-02 14:37 - 00000000 ____D C:\Users\Sławek\AppData\Roaming\ImgBurn 2013-08-02 11:35 - 2013-08-02 11:35 - 00001652 _____ C:\Users\Public\Desktop\ImgBurn.lnk 2013-08-02 11:35 - 2013-08-02 11:35 - 00000000 ____D C:\Program Files\ImgBurn 2013-08-02 11:04 - 2013-08-02 15:34 - 00000000 ____D C:\Users\Sławek\Desktop\ACCORD Mapa 2013-07-31 12:04 - 2013-07-31 12:38 - 00000000 ____D C:\Users\Sławek\Desktop\Zdjęcia google ==================== One Month Modified Files and Folders ======= 2013-08-26 10:36 - 2011-01-28 14:24 - 00000456 ____H C:\Windows\Tasks\User_Feed_Synchronization-{CA8C51EA-6F5A-4FE3-B932-0FD0C8718514}.job 2013-08-26 10:32 - 2012-01-05 16:18 - 00000000 ____D C:\Users\Sławek\AppData\Roaming\Skype 2013-08-26 10:30 - 2013-08-26 10:29 - 01070979 _____ (Farbar) C:\Users\Sławek\Downloads\FRST.exe 2013-08-26 10:27 - 2013-08-26 10:27 - 00448512 _____ (OldTimer Tools) C:\Users\Sławek\Downloads\TFC.exe 2013-08-26 10:16 - 2008-03-12 17:35 - 00000000 ____D C:\Users\Public\Documents\DELARUE 1250 2013-08-26 10:11 - 2010-02-02 12:37 - 00001036 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-26 10:02 - 2012-04-04 08:18 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-26 09:42 - 2006-11-02 14:47 - 00003216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-26 09:42 - 2006-11-02 14:47 - 00003216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-26 08:52 - 2010-02-02 12:37 - 00001032 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-26 07:58 - 2008-10-07 11:13 - 01438220 _____ C:\Windows\WindowsUpdate.log 2013-08-26 07:44 - 2008-11-28 15:49 - 00072622 _____ C:\ProgramData\nvModes.001 2013-08-26 07:43 - 2008-12-01 15:36 - 00065536 _____ C:\Windows\system32\Ikeext.etl 2013-08-26 07:43 - 2008-11-28 15:47 - 00072622 _____ C:\ProgramData\nvModes.dat 2013-08-26 07:43 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\tracing 2013-08-26 07:42 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-23 15:59 - 2008-10-07 11:13 - 00007067 _____ C:\Windows\bthservsdp.dat 2013-08-23 15:59 - 2006-11-02 15:01 - 00032546 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-08-23 12:13 - 2013-08-23 12:11 - 00030274 _____ C:\Users\Sławek\Downloads\Addition.txt 2013-08-23 12:10 - 2013-08-23 12:10 - 00000000 ____D C:\FRST 2013-08-23 11:59 - 2013-08-22 14:14 - 00075296 _____ C:\Users\Sławek\Downloads\OTL.Txt 2013-08-23 11:24 - 2013-08-23 11:24 - 00602112 _____ (OldTimer Tools) C:\Users\Sławek\Downloads\OTL (1).com 2013-08-23 11:17 - 2008-01-21 04:47 - 00164926 _____ C:\Windows\PFRO.log 2013-08-23 11:15 - 2013-08-23 11:09 - 00000000 ____D C:\AdwCleaner 2013-08-23 11:08 - 2013-08-23 11:07 - 00975858 _____ C:\Users\Sławek\Downloads\AdwCleaner.exe 2013-08-23 10:56 - 2013-08-23 10:37 - 00000000 ____D C:\MATS 2013-08-23 10:47 - 2009-01-23 16:40 - 00000000 ____D C:\Program Files\IEPro 2013-08-23 10:33 - 2013-08-23 10:33 - 00347424 _____ (Microsoft Corporation) C:\Users\Sławek\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.13930067757949995.1.1.Run.exe 2013-08-23 10:32 - 2009-11-17 09:28 - 00000000 ____D C:\Users\SAWEK~1\AppData\Local\Google 2013-08-23 10:32 - 2009-11-17 09:06 - 00000000 ____D C:\ProgramData\Google 2013-08-23 10:32 - 2009-11-17 09:06 - 00000000 ____D C:\Program Files\Google 2013-08-22 14:45 - 2010-10-12 09:38 - 00000326 _____ C:\Windows\Tasks\HPCeeScheduleForSławek.job 2013-08-22 14:20 - 2012-08-08 13:23 - 00001973 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-22 14:15 - 2013-08-22 14:15 - 00087144 _____ C:\Users\Sławek\Downloads\Extras.Txt 2013-08-22 13:45 - 2013-08-22 13:45 - 00602112 _____ (OldTimer Tools) C:\Users\Sławek\Downloads\OTL.com 2013-08-22 12:39 - 2011-05-04 08:37 - 00002086 _____ C:\Windows\epplauncher.mif 2013-08-22 12:36 - 2013-08-22 12:35 - 11263312 _____ (Microsoft Corporation) C:\Users\Sławek\Downloads\mseinstall.exe 2013-08-21 15:27 - 2010-02-23 18:25 - 00000000 ____D C:\Windows\Minidump 2013-08-21 14:55 - 2006-11-02 14:52 - 00874973 _____ C:\Windows\setupact.log 2013-08-21 14:53 - 2013-08-21 14:53 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-08-21 13:29 - 2013-08-21 13:12 - 138654041 _____ C:\Users\Sławek\Downloads\Windows6.0-KB947821-v28-x86.msu 2013-08-21 13:15 - 2013-08-21 13:15 - 00000000 ____D C:\Windows\CheckSur 2013-08-21 11:02 - 2012-04-04 08:18 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2013-08-21 11:02 - 2011-05-19 08:05 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2013-08-20 09:15 - 2009-01-27 10:06 - 00000052 _____ C:\Windows\system32\DOErrors.log 2013-08-19 10:30 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\rescache 2013-08-19 10:26 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET 2013-08-19 10:10 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\system32\pl-PL 2013-08-19 10:08 - 2013-08-19 10:04 - 00000000 ____D C:\Windows\system32\MRT 2013-08-19 10:04 - 2006-11-02 12:24 - 75778376 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2013-08-19 08:48 - 2008-11-28 15:52 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-08-19 08:45 - 2008-08-25 16:31 - 00737872 _____ C:\Windows\system32\perfh015.dat 2013-08-19 08:45 - 2008-08-25 16:31 - 00157858 _____ C:\Windows\system32\perfc015.dat 2013-08-19 08:45 - 2006-11-02 12:33 - 01691252 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-12 08:19 - 2012-01-05 16:18 - 00000000 ___RD C:\Program Files\Skype 2013-08-12 08:19 - 2009-07-07 14:06 - 00000000 ____D C:\ProgramData\Skype 2013-08-02 15:34 - 2013-08-02 11:04 - 00000000 ____D C:\Users\Sławek\Desktop\ACCORD Mapa 2013-08-02 14:37 - 2013-08-02 12:47 - 00000000 ____D C:\Users\Sławek\AppData\Roaming\ImgBurn 2013-08-02 12:39 - 2008-12-11 18:02 - 00000000 ____D C:\Users\Public\CyberLink 2013-08-02 11:35 - 2013-08-02 11:35 - 00001652 _____ C:\Users\Public\Desktop\ImgBurn.lnk 2013-08-02 11:35 - 2013-08-02 11:35 - 00000000 ____D C:\Program Files\ImgBurn 2013-08-01 10:52 - 2013-06-12 12:13 - 00033792 _____ C:\Users\Sławek\Desktop\- Lista obecności2.xls 2013-08-01 07:51 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\system32\LogFiles 2013-07-31 12:38 - 2013-07-31 12:04 - 00000000 ____D C:\Users\Sławek\Desktop\Zdjęcia google 2013-07-31 12:01 - 2009-04-28 07:54 - 00000000 ____D C:\Users\Sławek\Documents\Bluetooth Exchange Folder 2013-07-31 11:36 - 2010-09-28 11:29 - 00000000 ____D C:\Users\Sławek\Desktop\RÓŻNE Files to move or delete: ==================== C:\ProgramData\DVD.exe C:\ProgramData\Games.exe C:\ProgramData\Karaoke.exe C:\ProgramData\MobileTV.exe C:\ProgramData\MPV.exe C:\ProgramData\nvModes.dat ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-26 07:53 ==================== End Of Log ============================