Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-08-2013 Ran by Administrator (administrator) on 30-08-2013 21:16:52 Running from C:\Documents and Settings\Administrator\Moje dokumenty\POBIERANIE\HELPINKI COOL Programy Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe (Intel Corporation) C:\WINDOWS\system32\IProsetMonitor.exe (Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [995184 2013-07-18] (Microsoft Corporation) Winlogon\Notify\igfxcui: igfxsrvc.dll (Intel Corporation) SSODL: IconPackager Repair - {1799460C-0BC8-4865-B9DF-4A36CD703FF0} - C:\Program Files\Stardock\Object Desktop\IconPackager\iprepair.dll (Stardock.net, Inc) BootExecute: autocheck autochk * BootDefrag.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ HKCU\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://gazeta.pl/0,0.html?sc=1 HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie SearchScopes: HKLM - DefaultScope value is missing. Toolbar: HKCU -&Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU -&Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU -&Links - {F2CF5485-4E02-4F68-819C-B92DE9277049} - C:\WINDOWS\system32\ieframe.dll (Microsoft Corporation) DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1281879136359 DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab Handler: ipp - No CLSID Value - Handler: msdaipp - No CLSID Value - Hosts: 127.0.0.1 localhost Tcpip\Parameters: [DhcpNameServer] 95.160.170.92 88.156.222.92 82.139.8.40 Tcpip\..\Interfaces\{C2489C80-AB62-462B-B740-C1FD40B6D531}: [NameServer]8.26.56.26,156.154.70.22 FireFox: ======== FF ProfilePath: C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default FF Homepage: https://www.google.com/webhp?sourceid=groowe&ie=utf-8&oe=utf-8 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin: @bittorrent.com/BitTorrentDNA - C:\Program Files\DNA\plugins\npbtdna.dll (BitTorrent, Inc.) FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @pack.google.com/Google Updater;version=14 - C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\searchplugins\googlecom-in-english.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\allegro-pl.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\fbc-pl.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\merlin-pl.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\pwn-pl.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\wikipedia-pl.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\wp-pl.xml FF Extension: external IP - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\externalip@erik(2).morlin FF Extension: external IP - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\externalip@erik.morlin FF Extension: Fasterfox Lite - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\FasterFox_Lite@BigRedBrent FF Extension: FoxyProxy Basic - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\foxyproxy@eric.h(2).jung FF Extension: FastestFox - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\smarterwiki@wikiatic(2).com FF Extension: FastestFox - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\smarterwiki@wikiatic(3).com FF Extension: FlashGot - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}(2) FF Extension: FlashGot - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}(3) FF Extension: NoScript - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}(2) FF Extension: WOT - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: WOT - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}(2) FF Extension: DownloadHelper - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} FF Extension: Pixlr Grabber - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{d47a9f51-8281-43fa-f450-f28ef8735e9a}(2) FF Extension: Download Statusbar - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}(2) FF Extension: Download Manager Tweak - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}(2) FF Extension: No Name - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{268ad77e-cff8-42d7-b479-da60a7b93305}.xpi FF Extension: No Name - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{5C46D283-ABDE-4dce-B83C-08881401921C}.xpi FF Extension: No Name - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{5C655500-E712-41e7-9349-CE462F844B19}.xpi FF Extension: No Name - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi FF Extension: No Name - C:\Documents and Settings\Administrator\Dane aplikacji\Mozilla\Firefox\Profiles\yywlzf9r.default\Extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi FF Extension: Default - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}(2) FF Extension: flashget3 Extension - C:\Program Files\Mozilla Firefox\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A} FF Extension: Default - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ========================== Services (Whitelisted) ================= S3 getPlusHelper; C:\Program Files\NOS\bin\getPlus_Helper.dll [68000 2010-03-29] (NOS Microsystems Ltd.) R2 Intel(R) PROSet Monitoring Service; C:\WINDOWS\system32\IProsetMonitor.exe [121600 2013-04-05] (Intel Corporation) R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22216 2013-07-18] (Microsoft Corporation) S3 aspnet_state; S3 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf" [x] S4 NetTcpPortSharing; S3 WPFFontCache_v0400; ==================== Drivers (Whitelisted) ==================== S3 ampa; C:\WINDOWS\system32\ampa.sys [10936 2011-12-26] () S1 Changer; C:\Windows\System32\Drivers\Changer.sys [8192 2008-04-14] (Microsoft Corporation) S3 cpudrv; C:\Program Files\SystemRequirementsLab\cpudrv.sys [11336 2009-12-18] () R3 E1000; C:\Windows\System32\DRIVERS\e1000325.sys [171152 2008-08-20] (Intel Corporation) R3 ialm; C:\Windows\System32\DRIVERS\ialmnt5.sys [807998 2005-06-21] (Intel Corporation) S4 IObitUnlocker; C:\Program Files\IObit\IObit Unlocker\IObitUnlocker.sys [27552 2011-08-26] () S1 lbrtfdc; C:\Windows\System32\Drivers\lbrtfdc.sys [34688 2008-04-14] (Toshiba Corp.) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [211560 2013-06-18] (Microsoft Corporation) R3 senfilt; C:\Windows\System32\drivers\senfilt.sys [732928 2004-09-17] (Creative Technology Ltd.) S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [13464 2013-04-12] () R0 TPkd; C:\Windows\System32\Drivers\TPkd.sys [92792 2009-12-02] (PACE Anti-Piracy, Inc.) S3 FreshIO; \??\C:\Program Files\FreshDevices\FreshDiagnose\FreshIO.sys [x] S0 SMR322; System32\drivers\SMR322.SYS [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-30 19:40 - 2013-08-30 19:40 - 00035292 _____ C:\Documents and Settings\Administrator\Pulpit\Extras.Txt 2013-08-30 18:38 - 2013-08-30 19:39 - 00132826 _____ C:\Documents and Settings\Administrator\Pulpit\OTL.Txt 2013-08-30 18:08 - 2008-04-14 22:50 - 00010752 ____N (Microsoft Corporation) C:\WINDOWS\system32\smtpapi.dll 2013-08-30 18:08 - 2008-04-14 22:50 - 00009728 ____N (Microsoft Corporation) C:\WINDOWS\system32\rwnh.dll 2013-08-30 18:08 - 2008-04-14 22:47 - 00103424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dpcdll.dll 2013-08-30 18:07 - 2006-12-29 00:31 - 00019569 _____ C:\WINDOWS\000002_.tmp 2013-08-30 17:37 - 2013-08-30 17:48 - 00093918 _____ C:\WINDOWS\updspapi.log 2013-08-30 17:37 - 2013-08-30 17:48 - 00037658 _____ C:\WINDOWS\ie8Uninst.log 2013-08-30 17:36 - 2013-08-30 17:49 - 00091533 _____ C:\WINDOWS\ie8_main.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00051606 _____ C:\WINDOWS\iis6.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00019746 _____ C:\WINDOWS\ocgen.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00017798 _____ C:\WINDOWS\FaxSetup.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00012747 _____ C:\WINDOWS\tsoc.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00011150 _____ C:\WINDOWS\msmqinst.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00006566 _____ C:\WINDOWS\comsetup.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00005286 _____ C:\WINDOWS\ntdtcsetup.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00004566 _____ C:\WINDOWS\imsins.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00003753 _____ C:\WINDOWS\netfxocm.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00001354 _____ C:\WINDOWS\ocmsn.log 2013-08-30 16:08 - 2013-08-30 16:24 - 00001174 _____ C:\WINDOWS\msgsocm.log 2013-08-30 16:08 - 2013-08-30 16:08 - 00001917 _____ C:\WINDOWS\imsins.BAK 2013-08-30 15:31 - 2013-08-30 15:31 - 00005951 _____ C:\WINDOWS\KB946648.log 2013-08-30 15:31 - 2013-08-30 15:31 - 00003573 _____ C:\WINDOWS\KB2862772-IE8.log 2013-08-30 15:28 - 2013-08-30 15:31 - 00009926 _____ C:\WINDOWS\KB2757638.log 2013-08-30 15:28 - 2013-08-30 15:31 - 00009758 _____ C:\WINDOWS\KB2719985.log 2013-08-30 12:45 - 2013-08-30 18:14 - 00001588 _____ C:\WINDOWS\tabletoc.log 2013-08-30 12:43 - 2013-08-30 18:13 - 00000472 _____ C:\WINDOWS\DtcInstall.log 2013-08-30 12:42 - 2013-08-30 18:13 - 00000352 _____ C:\WINDOWS\spupdsvc.log.1.log 2013-08-30 12:39 - 2013-08-30 18:14 - 00140112 _____ C:\WINDOWS\spupdsvc.log 2013-08-30 12:39 - 2013-08-30 18:09 - 00000622 _____ C:\WINDOWS\sessmgr.setup.log 2013-08-30 12:39 - 2013-08-30 18:09 - 00000373 _____ C:\WINDOWS\cmsetacl.log 2013-08-30 12:37 - 2013-08-30 18:13 - 00005600 _____ C:\WINDOWS\medctroc.Log 2013-08-30 12:37 - 2006-12-29 00:31 - 00019569 _____ C:\WINDOWS\000001_.tmp 2013-08-30 12:29 - 2013-08-30 18:09 - 00043103 _____ C:\WINDOWS\setupapi.log 2013-08-30 12:29 - 2013-08-30 12:29 - 00000000 _____ C:\WINDOWS\setuperr.log 2013-08-30 12:29 - 2013-08-30 12:29 - 00000000 _____ C:\WINDOWS\setupact.log 2013-08-30 12:28 - 2013-08-30 18:10 - 00088070 _____ C:\WINDOWS\svcpack.log 2013-08-30 12:11 - 2013-08-30 16:54 - 00000216 _____ C:\WINDOWS\wiadebug.log 2013-08-30 12:11 - 2013-08-30 16:26 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-08-30 12:11 - 2013-08-30 12:11 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-08-29 21:05 - 2013-08-30 18:14 - 00006117 _____ C:\WINDOWS\wmsetup.log 2013-08-29 21:05 - 2013-08-29 21:11 - 00000000 ___SD C:\Documents and Settings\tomyclik 2013-08-29 21:05 - 2013-08-29 21:11 - 00000000 ____D C:\Documents and Settings\tomyclik\Ustawienia lokalne 2013-08-29 21:05 - 2013-08-29 21:11 - 00000000 ____D C:\Documents and Settings\tomyclik\Szablony 2013-08-29 21:05 - 2013-08-29 21:10 - 00000000 ____D C:\Documents and Settings\tomyclik\Ulubione 2013-08-29 21:05 - 2013-08-29 21:10 - 00000000 ____D C:\Documents and Settings\tomyclik\Dane aplikacji 2013-08-29 21:05 - 2013-08-29 21:05 - 00000000 ____D C:\Documents and Settings\tomyclik\IETldCache 2013-08-29 18:09 - 2013-08-29 18:09 - 00000000 ____H C:\Documents and Settings\Administrator\Moje dokumenty\Default.rdp 2013-08-29 00:01 - 2013-08-29 00:01 - 00001580 _____ C:\Documents and Settings\Administrator\Pulpit\xp-AntiSpy.lnk 2013-08-29 00:01 - 2013-08-29 00:01 - 00000000 ____D C:\Program Files\xp-AntiSpy 2013-08-29 00:01 - 2013-08-29 00:01 - 00000000 ____D C:\Documents and Settings\Administrator\Menu Start\Programy\xp-AntiSpy 2013-08-28 23:25 - 2013-08-28 23:25 - 00000937 _____ C:\Documents and Settings\Administrator\Pulpit\Revo Uninstaller Pro.lnk 2013-08-28 18:23 - 2013-08-28 18:23 - 00000000 __SHD C:\Documents and Settings\Administrator\IECompatCache 2013-08-28 17:38 - 2013-08-30 18:13 - 00000290 _____ C:\WINDOWS\Tasks\JetBoost_AutoUpdate.job 2013-08-28 13:03 - 2009-12-30 11:20 - 00027064 _____ (VS Revo Group) C:\WINDOWS\system32\Drivers\revoflt.sys 2013-08-28 09:56 - 2013-08-28 09:56 - 00003446 _____ C:\Documents and Settings\Administrator\Moje dokumenty\WoluminC OSTATNI.txt 2013-08-28 09:24 - 2013-08-30 18:14 - 00402838 _____ C:\WINDOWS\WindowsUpdate.log 2013-08-28 09:23 - 2013-08-30 18:12 - 00032550 _____ C:\WINDOWS\SchedLgU.Txt 2013-08-28 08:35 - 2013-08-28 09:57 - 00221696 ___SH C:\Documents and Settings\Administrator\Moje dokumenty\Thumbs.db 2013-08-27 23:28 - 2013-08-27 23:28 - 00000022 _____ C:\WINDOWS\cmm.dat 2013-08-27 23:24 - 2013-08-30 21:06 - 00000258 _____ C:\WINDOWS\Tasks\Clean System Memory.job 2013-08-27 23:24 - 2013-08-27 23:24 - 00000000 ____D C:\WINDOWS\CleanMem 2013-08-27 23:24 - 2013-08-27 23:24 - 00000000 ____D C:\Program Files\CleanMem 2013-08-27 23:24 - 2013-08-27 23:24 - 00000000 ____D C:\Documents and Settings\Administrator\Menu Start\Programy\CleanMem 2013-08-27 22:38 - 2013-08-27 22:38 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Malwarebytes 2013-08-27 22:37 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2013-08-27 22:22 - 2013-08-27 22:37 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-08-27 21:27 - 2013-08-30 18:22 - 00000366 ____H C:\WINDOWS\Tasks\MpIdleTask.job 2013-08-27 21:27 - 2013-08-27 23:48 - 00000406 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job 2013-08-27 21:27 - 2013-08-27 21:27 - 00001698 _____ C:\Documents and Settings\Administrator\Pulpit\Microsoft Security Essentials.lnk 2013-08-27 21:18 - 2013-05-02 17:28 - 00238872 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2013-08-27 21:17 - 2013-08-27 21:17 - 00001912 _____ C:\WINDOWS\epplauncher.mif 2013-08-27 21:16 - 2013-08-27 21:17 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-08-26 08:56 - 2013-08-26 08:59 - 00000511 _____ C:\Documents and Settings\Administrator\Moje dokumenty\1252480432.htm 2013-08-26 07:49 - 2013-08-29 17:17 - 00000211 _____ C:\fraglist.luar 2013-08-25 23:38 - 2013-08-29 13:43 - 00000000 ____D C:\Program Files\Microsoft Bootvis 2013-08-25 14:55 - 2013-08-25 14:55 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\HD Tune Pro 2013-08-25 14:54 - 2013-08-25 14:54 - 00000000 ____D C:\Program Files\HD Tune Pro 2013-08-25 12:04 - 2013-08-29 08:54 - 00002339 _____ C:\Documents and Settings\Administrator\Menu Start\Programy\Windows Install Clean Up.lnk 2013-08-25 12:04 - 2013-08-25 12:04 - 00000000 ____D C:\Program Files\Windows Installer Clean Up 2013-08-25 12:04 - 2013-08-25 12:04 - 00000000 ____D C:\Program Files\MSECACHE 2013-08-25 11:46 - 2013-08-25 11:46 - 00000000 ____D C:\Program Files\Extreme Thumbnail Generator 2013-08-25 11:17 - 2013-08-27 21:12 - 00000000 ____D C:\Documents and Settings\LocalService\Application Data\GameTracker 2013-08-25 11:09 - 2013-08-25 11:09 - 00000000 ___HD C:\Program Files\WindowsUpdate 2013-08-25 08:50 - 2013-08-25 08:50 - 00000000 ____D C:\WINDOWS\MATS 2013-08-25 08:50 - 2013-08-25 08:50 - 00000000 ____D C:\Program Files\Microsoft Fix it Center 2013-08-24 22:00 - 2013-08-28 20:40 - 00000000 ____D C:\Documents and Settings\Administrator\Doctor Web 2013-08-24 20:32 - 2011-06-26 08:45 - 00256000 _____ C:\WINDOWS\PEV.exe 2013-08-24 20:32 - 2010-11-07 19:20 - 00208896 _____ C:\WINDOWS\MBR.exe 2013-08-24 20:32 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe 2013-08-24 20:32 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe 2013-08-24 20:32 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe 2013-08-24 20:32 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe 2013-08-24 20:32 - 2000-08-31 02:00 - 00098816 _____ C:\WINDOWS\sed.exe 2013-08-24 20:32 - 2000-08-31 02:00 - 00080412 _____ C:\WINDOWS\grep.exe 2013-08-24 20:32 - 2000-08-31 02:00 - 00068096 _____ C:\WINDOWS\zip.exe 2013-08-24 20:31 - 2013-08-24 20:32 - 00000000 ____D C:\Qoobox 2013-08-24 16:13 - 2013-08-24 16:13 - 00002808 _____ C:\Documents and Settings\Administrator\Moje dokumenty\scan COMODO.txt 2013-08-24 11:55 - 2013-08-24 11:55 - 02237968 _____ (Kaspersky Lab ZAO) C:\Documents and Settings\Administrator\Pulpit\tdsskiller.exe 2013-08-22 23:54 - 2013-08-25 09:10 - 00000000 ____D C:\Program Files\XP Repair Pro 2013-08-22 17:08 - 2013-08-22 17:08 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\FreshDiagnose 2013-08-22 17:05 - 2013-08-29 13:50 - 00000000 ____D C:\Inetpub 2013-08-22 15:12 - 2013-08-22 15:12 - 00001346 _____ C:\FixitRegBackup.reg 2013-08-22 14:31 - 2013-08-22 16:57 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Uninstaller Tool(Comodo Forums) 2013-08-22 11:28 - 2013-08-28 16:50 - 00000000 ____D C:\AdwCleaner 2013-08-22 10:24 - 2013-08-30 18:08 - 00000000 ____D C:\Program Files\Messenger 2013-08-22 10:24 - 2008-04-14 22:51 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dlimport.exe 2013-08-22 10:24 - 2008-04-14 22:47 - 00086016 ____C (Sipro Lab Telecom Inc.) C:\WINDOWS\system32\dllcache\sl_anet.acm 2013-08-22 10:24 - 2008-04-14 22:42 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msaud32.acm 2013-08-22 10:24 - 2008-04-14 22:40 - 00290816 ____C (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\dllcache\l3codeca.acm 2013-08-22 10:24 - 2007-06-26 11:30 - 00572557 ____C C:\WINDOWS\system32\dllcache\rtuner.wmv 2013-08-22 10:24 - 2007-06-26 11:30 - 00457607 ____C C:\WINDOWS\system32\dllcache\mdlib.wmv 2013-08-22 10:24 - 2007-06-26 11:30 - 00381425 ____C C:\WINDOWS\system32\dllcache\copycd.wmv 2013-08-22 10:24 - 2007-06-26 11:30 - 00375519 ____C C:\WINDOWS\system32\dllcache\nuskin.wmv 2013-08-22 10:24 - 2007-06-26 11:30 - 00354468 ____C C:\WINDOWS\system32\dllcache\wmpaud1.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00343204 ____C C:\WINDOWS\system32\dllcache\wmpaud7.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00343204 ____C C:\WINDOWS\system32\dllcache\wmpaud6.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00300969 ____C C:\WINDOWS\system32\dllcache\viz.wmv 2013-08-22 10:24 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud9.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud8.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00172196 ____C C:\WINDOWS\system32\dllcache\wmpaud3.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00086196 ____C C:\WINDOWS\system32\dllcache\wmpaud5.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00086180 ____C C:\WINDOWS\system32\dllcache\wmpaud4.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00086180 ____C C:\WINDOWS\system32\dllcache\wmpaud2.wav 2013-08-22 10:24 - 2007-06-26 11:30 - 00022060 ____C C:\WINDOWS\system32\dllcache\npds.zip 2013-08-22 10:24 - 2007-06-26 11:30 - 00010457 ____C C:\WINDOWS\system32\dllcache\wmptour.hta 2013-08-22 10:24 - 2007-06-26 11:30 - 00009585 ____C C:\WINDOWS\system32\dllcache\controls.css 2013-08-22 10:24 - 2007-06-26 11:30 - 00008298 ____C C:\WINDOWS\system32\dllcache\contents.htm 2013-08-22 10:24 - 2007-06-26 11:30 - 00006878 ____C C:\WINDOWS\system32\dllcache\controls.js 2013-08-22 10:24 - 2007-06-26 11:30 - 00005971 ____C C:\WINDOWS\system32\dllcache\events.js 2013-08-22 10:24 - 2007-06-26 11:30 - 00003187 ____C C:\WINDOWS\system32\dllcache\tour.js 2013-08-22 10:24 - 2007-06-26 11:30 - 00001771 ____C C:\WINDOWS\system32\dllcache\wmptour.css 2013-08-22 10:24 - 2007-06-26 11:30 - 00001148 ____C C:\WINDOWS\system32\dllcache\snd.htm 2013-08-22 10:24 - 2007-06-26 11:30 - 00000420 ____C C:\WINDOWS\system32\dllcache\wmploc.js 2013-08-22 10:24 - 2007-06-26 11:29 - 00097117 ____C C:\WINDOWS\system32\dllcache\mplayer2.hlp 2013-08-22 10:24 - 2007-06-26 11:29 - 00001885 ____C C:\WINDOWS\system32\dllcache\mplayer2.cnt 2013-08-22 10:24 - 2007-06-26 11:26 - 00000403 ____C C:\WINDOWS\system32\dllcache\npdrmv2.zip 2013-08-22 10:24 - 2007-03-14 16:58 - 00071460 ____C C:\WINDOWS\system32\dllcache\wmplayer.adm 2013-08-22 10:24 - 2007-03-14 16:02 - 00027965 ____C C:\WINDOWS\system32\dllcache\wmplay.chm 2013-08-22 10:24 - 2007-03-14 15:37 - 00184137 ____C C:\WINDOWS\system32\dllcache\compact.wmz 2013-08-22 10:24 - 2007-03-14 15:37 - 00066160 ____C C:\WINDOWS\system32\dllcache\revert.wmz 2013-08-22 10:24 - 2007-03-14 15:37 - 00001482 ____C C:\WINDOWS\system32\dllcache\plylst6.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00001479 ____C C:\WINDOWS\system32\dllcache\plylst5.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00001474 ____C C:\WINDOWS\system32\dllcache\plylst3.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00001471 ____C C:\WINDOWS\system32\dllcache\plylst12.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00001463 ____C C:\WINDOWS\system32\dllcache\plylst4.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00001262 ____C C:\WINDOWS\system32\dllcache\plylst1.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00001046 ____C C:\WINDOWS\system32\dllcache\plylst7.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00001046 ____C C:\WINDOWS\system32\dllcache\plylst2.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00001041 ____C C:\WINDOWS\system32\dllcache\plylst8.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00000825 ____C C:\WINDOWS\system32\dllcache\plylst11.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00000822 ____C C:\WINDOWS\system32\dllcache\plylst10.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00000808 ____C C:\WINDOWS\system32\dllcache\plylst13.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00000792 ____C C:\WINDOWS\system32\dllcache\plylst14.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00000786 ____C C:\WINDOWS\system32\dllcache\plylst9.wpl 2013-08-22 10:24 - 2007-03-14 15:37 - 00000738 ____C C:\WINDOWS\system32\dllcache\plylst15.wpl 2013-08-22 10:24 - 2007-03-14 15:36 - 00693932 ____C C:\WINDOWS\system32\dllcache\wmplayer.chm 2013-08-22 10:24 - 2007-03-14 15:36 - 00089253 ____C C:\WINDOWS\system32\dllcache\plyr_err.chm 2013-08-22 09:45 - 2013-08-22 10:58 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Comodo 2013-08-20 11:07 - 2013-08-27 21:54 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Media Player Classic 2013-08-20 10:46 - 2013-08-20 10:46 - 00000014 _____ C:\WINDOWS\system32\sysvm600ul.dll 2013-08-20 10:45 - 2013-08-20 10:45 - 00000000 ____D C:\Program Files\BlazeVideo 2013-08-19 18:54 - 2013-08-19 18:54 - 00000000 ____D C:\TDSSKiller_Quarantine 2013-08-19 14:15 - 2013-08-19 14:15 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-19 12:55 - 2013-08-19 12:56 - 00001871 _____ C:\AdwCleaner[R13].txt 2013-08-18 14:21 - 2013-08-18 14:25 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-18 12:48 - 2007-08-10 20:53 - 00019320 ____N (Microsoft Corporation) C:\WINDOWS\system32\spmsg.dll 2013-08-18 10:34 - 2013-08-18 10:34 - 00000000 ____D C:\614471985dd6987bf187 2013-08-18 09:15 - 2013-08-21 10:09 - 00002980 _____ C:\Documents and Settings\Administrator\Moje dokumenty\startup.txt 2013-08-17 21:28 - 2013-08-17 21:30 - 00001474 _____ C:\AdwCleaner[S10].txt 2013-08-17 21:27 - 2013-08-17 21:27 - 00001749 _____ C:\AdwCleaner[R12].txt 2013-08-17 20:53 - 2013-08-17 20:53 - 00001688 _____ C:\AdwCleaner[R11].txt 2013-08-17 14:01 - 2013-08-17 14:03 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Presentation Screen Master 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\system.regan613.LOG 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\software.regan613.LOG 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\SECURITY.regan613.LOG 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\SAM.regan613.LOG 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\default.regan613.LOG 2013-08-17 10:46 - 2013-08-19 00:44 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-08-16 11:41 - 2013-08-16 11:41 - 00000000 ____D C:\Program Files\SuperUtils.com 2013-08-16 11:41 - 2013-08-16 11:41 - 00000000 ____D C:\Documents and Settings\Administrator\Menu Start\Programy\SuperUtils.com 2013-08-16 11:41 - 2013-08-16 11:41 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\SuperUtils.com 2013-08-14 08:15 - 2013-08-19 16:56 - 04980736 _____ C:\WINDOWS\system32\config\TIEvent.evt 2013-08-13 20:18 - 2013-08-22 17:00 - 00000000 ____D C:\Program Files\TrafInsp 2013-08-13 20:13 - 2013-08-14 00:14 - 00393216 _____ C:\WINDOWS\system32\config\Traffic .evt 2013-08-12 12:22 - 2013-08-29 18:10 - 00000000 ____D C:\Program Files\AOMEI Partition Assistant Pro Edition 5.2 2013-08-12 12:22 - 2013-02-26 16:07 - 01422776 _____ C:\WINDOWS\ampa.exe 2013-08-12 12:22 - 2011-12-26 15:34 - 00010936 _____ C:\WINDOWS\system32\ampa.sys 2013-08-09 17:16 - 2013-08-09 17:16 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\1-abc 2013-08-06 15:52 - 2013-08-06 15:52 - 00001529 _____ C:\AdwCleaner[S9].txt 2013-08-05 16:55 - 2013-08-05 16:55 - 00018063 _____ C:\Documents and Settings\Administrator\Moje dokumenty\WinUtilities DiskDefrag Raport (2013-08-05 164215).mht 2013-08-03 10:00 - 2013-08-03 10:00 - 00000181 _____ C:\Documents and Settings\Administrator\Moje dokumenty\Klucz produktu JetClean.txt 2013-07-31 10:58 - 2007-08-15 13:09 - 00167683 _____ (Microsoft Corporation) C:\WINDOWS\system32\COMCT232.OCX 2013-07-31 10:58 - 2004-03-09 00:00 - 00212240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RICHTX32.OCX 2013-07-31 10:02 - 2013-07-31 10:03 - 00004914 _____ C:\AdwCleaner[R8].txt ==================== One Month Modified Files and Folders ======= 2013-08-30 21:15 - 2013-08-30 21:15 - 00000000 ____D C:\FRST 2013-08-30 21:13 - 2009-12-31 00:00 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty\POBIERANIE 2013-08-30 21:06 - 2013-08-27 23:24 - 00000258 _____ C:\WINDOWS\Tasks\Clean System Memory.job 2013-08-30 20:45 - 2009-12-30 22:28 - 00000000 ____D C:\Documents and Settings\Administrator\Pulpit 2013-08-30 20:03 - 2009-12-30 22:28 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty 2013-08-30 19:40 - 2013-08-30 19:40 - 00035292 _____ C:\Documents and Settings\Administrator\Pulpit\Extras.Txt 2013-08-30 19:39 - 2013-08-30 18:38 - 00132826 _____ C:\Documents and Settings\Administrator\Pulpit\OTL.Txt 2013-08-30 18:22 - 2013-08-27 21:27 - 00000366 ____H C:\WINDOWS\Tasks\MpIdleTask.job 2013-08-30 18:14 - 2013-08-30 12:45 - 00001588 _____ C:\WINDOWS\tabletoc.log 2013-08-30 18:14 - 2013-08-30 12:39 - 00140112 _____ C:\WINDOWS\spupdsvc.log 2013-08-30 18:14 - 2013-08-29 21:05 - 00006117 _____ C:\WINDOWS\wmsetup.log 2013-08-30 18:14 - 2013-08-28 09:24 - 00402838 _____ C:\WINDOWS\WindowsUpdate.log 2013-08-30 18:13 - 2013-08-30 12:43 - 00000472 _____ C:\WINDOWS\DtcInstall.log 2013-08-30 18:13 - 2013-08-30 12:42 - 00000352 _____ C:\WINDOWS\spupdsvc.log.1.log 2013-08-30 18:13 - 2013-08-30 12:37 - 00005600 _____ C:\WINDOWS\medctroc.Log 2013-08-30 18:13 - 2013-08-28 17:38 - 00000290 _____ C:\WINDOWS\Tasks\JetBoost_AutoUpdate.job 2013-08-30 18:13 - 2013-03-03 14:55 - 00000090 _____ C:\WINDOWS\system32\spupdwxp.log 2013-08-30 18:12 - 2013-08-28 09:23 - 00032550 _____ C:\WINDOWS\SchedLgU.Txt 2013-08-30 18:12 - 2009-12-30 22:28 - 00000006 ___HC C:\WINDOWS\Tasks\SA.DAT 2013-08-30 18:12 - 2001-07-22 00:17 - 00002206 ____C C:\WINDOWS\system32\wpa.dbl 2013-08-30 18:11 - 2009-12-30 22:28 - 00000188 __SHC C:\Documents and Settings\Administrator\ntuser.ini 2013-08-30 18:10 - 2013-08-30 12:28 - 00088070 _____ C:\WINDOWS\svcpack.log 2013-08-30 18:09 - 2013-08-30 12:39 - 00000622 _____ C:\WINDOWS\sessmgr.setup.log 2013-08-30 18:09 - 2013-08-30 12:39 - 00000373 _____ C:\WINDOWS\cmsetacl.log 2013-08-30 18:09 - 2013-08-30 12:29 - 00043103 _____ C:\WINDOWS\setupapi.log 2013-08-30 18:09 - 2009-12-30 23:13 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start 2013-08-30 18:09 - 2009-12-30 22:28 - 00000000 ___RD C:\Documents and Settings\Administrator\Menu Start\Programy 2013-08-30 18:08 - 2013-08-22 10:24 - 00000000 ____D C:\Program Files\Messenger 2013-08-30 18:08 - 2010-08-21 00:55 - 00000000 ____D C:\WINDOWS\system32\pl-pl 2013-08-30 18:08 - 2009-12-30 23:07 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2013-08-30 18:08 - 2009-12-30 23:07 - 00000000 ____D C:\WINDOWS\security 2013-08-30 18:08 - 2009-12-30 23:07 - 00000000 ____D C:\WINDOWS\Help 2013-08-30 17:49 - 2013-08-30 17:36 - 00091533 _____ C:\WINDOWS\ie8_main.log 2013-08-30 17:48 - 2013-08-30 17:37 - 00093918 _____ C:\WINDOWS\updspapi.log 2013-08-30 17:48 - 2013-08-30 17:37 - 00037658 _____ C:\WINDOWS\ie8Uninst.log 2013-08-30 17:04 - 2013-07-25 17:53 - 00000184 _____ C:\WINDOWS\system32\_WKERNEL.SYL 2013-08-30 16:54 - 2013-08-30 12:11 - 00000216 _____ C:\WINDOWS\wiadebug.log 2013-08-30 16:26 - 2013-08-30 12:11 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00051606 _____ C:\WINDOWS\iis6.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00019746 _____ C:\WINDOWS\ocgen.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00017798 _____ C:\WINDOWS\FaxSetup.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00012747 _____ C:\WINDOWS\tsoc.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00011150 _____ C:\WINDOWS\msmqinst.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00006566 _____ C:\WINDOWS\comsetup.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00005286 _____ C:\WINDOWS\ntdtcsetup.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00004566 _____ C:\WINDOWS\imsins.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00003753 _____ C:\WINDOWS\netfxocm.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00001354 _____ C:\WINDOWS\ocmsn.log 2013-08-30 16:24 - 2013-08-30 16:08 - 00001174 _____ C:\WINDOWS\msgsocm.log 2013-08-30 16:24 - 2009-12-30 23:14 - 01712012 ____C C:\WINDOWS\system32\PerfStringBackup.INI 2013-08-30 16:24 - 2001-10-26 18:15 - 00709392 ____C C:\WINDOWS\system32\perfh015.dat 2013-08-30 16:24 - 2001-10-26 18:15 - 00195336 ____C C:\WINDOWS\system32\perfc015.dat 2013-08-30 16:08 - 2013-08-30 16:08 - 00001917 _____ C:\WINDOWS\imsins.BAK 2013-08-30 15:41 - 2009-12-30 23:23 - 00000000 __SHD C:\Documents and Settings\Administrator\UserData 2013-08-30 15:31 - 2013-08-30 15:31 - 00005951 _____ C:\WINDOWS\KB946648.log 2013-08-30 15:31 - 2013-08-30 15:31 - 00003573 _____ C:\WINDOWS\KB2862772-IE8.log 2013-08-30 15:31 - 2013-08-30 15:28 - 00009926 _____ C:\WINDOWS\KB2757638.log 2013-08-30 15:31 - 2013-08-30 15:28 - 00009758 _____ C:\WINDOWS\KB2719985.log 2013-08-30 12:52 - 2011-11-06 22:48 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\DNA 2013-08-30 12:52 - 2009-12-30 23:11 - 00000211 _____ C:\boot.ini 2013-08-30 12:52 - 2001-07-22 00:16 - 00000990 ____C C:\WINDOWS\win.ini 2013-08-30 12:52 - 2001-07-22 00:15 - 00000227 ____C C:\WINDOWS\system.ini 2013-08-30 12:50 - 2011-11-06 22:48 - 00000000 ____D C:\Program Files\DNA 2013-08-30 12:29 - 2013-08-30 12:29 - 00000000 _____ C:\WINDOWS\setuperr.log 2013-08-30 12:29 - 2013-08-30 12:29 - 00000000 _____ C:\WINDOWS\setupact.log 2013-08-30 12:15 - 2009-12-30 22:28 - 00000000 __RHD C:\Documents and Settings\Administrator\Dane aplikacji 2013-08-30 12:11 - 2013-08-30 12:11 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-08-30 12:04 - 2009-12-30 22:21 - 00000000 ____D C:\WINDOWS\system32\Restore 2013-08-29 21:21 - 2009-12-30 22:28 - 00000188 __SHC C:\Documents and Settings\LocalService\ntuser.ini 2013-08-29 21:12 - 2009-12-30 22:28 - 00000000 __SHD C:\Documents and Settings\NetworkService 2013-08-29 21:12 - 2009-12-30 22:28 - 00000000 __SHD C:\Documents and Settings\LocalService 2013-08-29 21:12 - 2009-12-30 22:28 - 00000000 ____D C:\Documents and Settings\Administrator 2013-08-29 21:12 - 2009-12-30 22:20 - 00000000 ____D C:\WINDOWS\Registration 2013-08-29 21:11 - 2013-08-29 21:05 - 00000000 ___SD C:\Documents and Settings\tomyclik 2013-08-29 21:11 - 2013-08-29 21:05 - 00000000 ____D C:\Documents and Settings\tomyclik\Ustawienia lokalne 2013-08-29 21:11 - 2013-08-29 21:05 - 00000000 ____D C:\Documents and Settings\tomyclik\Szablony 2013-08-29 21:11 - 2013-04-01 13:08 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\uTorrent 2013-08-29 21:10 - 2013-08-29 21:05 - 00000000 ____D C:\Documents and Settings\tomyclik\Ulubione 2013-08-29 21:10 - 2013-08-29 21:05 - 00000000 ____D C:\Documents and Settings\tomyclik\Dane aplikacji 2013-08-29 21:05 - 2013-08-29 21:05 - 00000000 ____D C:\Documents and Settings\tomyclik\IETldCache 2013-08-29 20:29 - 2013-04-03 11:29 - 00000000 ____D C:\WINDOWS\Minidump 2013-08-29 19:59 - 2013-03-04 23:53 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Auslogics 2013-08-29 18:11 - 2012-05-22 19:20 - 00000000 ___RD C:\Documents and Settings\Administrator\Pulpit\Create Music on PC 2013-08-29 18:10 - 2013-08-12 12:22 - 00000000 ____D C:\Program Files\AOMEI Partition Assistant Pro Edition 5.2 2013-08-29 18:09 - 2013-08-29 18:09 - 00000000 ____H C:\Documents and Settings\Administrator\Moje dokumenty\Default.rdp 2013-08-29 18:06 - 2010-01-31 17:49 - 00000000 ____D C:\Program Files\Image-Line 2013-08-29 18:00 - 2013-07-26 14:09 - 00000000 ____D C:\Program Files\VstPlugins 2013-08-29 17:59 - 2010-01-18 13:45 - 00000000 ____D C:\Program Files\ZynAddSubFX 2013-08-29 17:29 - 2009-12-30 23:07 - 00000000 ____D C:\WINDOWS\Cursors 2013-08-29 17:17 - 2013-08-26 07:49 - 00000211 _____ C:\fraglist.luar 2013-08-29 13:54 - 2009-12-30 22:28 - 00000000 ___HD C:\Documents and Settings\Administrator\Szablony 2013-08-29 13:54 - 2009-12-30 22:19 - 00000000 ____D C:\Program Files\Windows NT 2013-08-29 13:50 - 2013-08-22 17:05 - 00000000 ____D C:\Inetpub 2013-08-29 13:43 - 2013-08-25 23:38 - 00000000 ____D C:\Program Files\Microsoft Bootvis 2013-08-29 11:12 - 2013-03-21 03:24 - 00131072 _____ C:\WINDOWS\system32\config\WindowsPowerShell.evt 2013-08-29 11:02 - 2008-02-02 16:31 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-08-29 08:54 - 2013-08-25 12:04 - 00002339 _____ C:\Documents and Settings\Administrator\Menu Start\Programy\Windows Install Clean Up.lnk 2013-08-29 00:01 - 2013-08-29 00:01 - 00001580 _____ C:\Documents and Settings\Administrator\Pulpit\xp-AntiSpy.lnk 2013-08-29 00:01 - 2013-08-29 00:01 - 00000000 ____D C:\Program Files\xp-AntiSpy 2013-08-29 00:01 - 2013-08-29 00:01 - 00000000 ____D C:\Documents and Settings\Administrator\Menu Start\Programy\xp-AntiSpy 2013-08-28 23:25 - 2013-08-28 23:25 - 00000937 _____ C:\Documents and Settings\Administrator\Pulpit\Revo Uninstaller Pro.lnk 2013-08-28 20:40 - 2013-08-24 22:00 - 00000000 ____D C:\Documents and Settings\Administrator\Doctor Web 2013-08-28 19:17 - 2013-03-25 00:12 - 00000000 ____D C:\WINDOWS\system32\NtmsData 2013-08-28 18:24 - 2013-06-04 11:36 - 00013257 _____ C:\Documents and Settings\Administrator\Pulpit\Dr..txt 2013-08-28 18:23 - 2013-08-28 18:23 - 00000000 __SHD C:\Documents and Settings\Administrator\IECompatCache 2013-08-28 17:03 - 2009-12-30 23:13 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-08-28 16:50 - 2013-08-22 11:28 - 00000000 ____D C:\AdwCleaner 2013-08-28 16:50 - 2009-12-30 22:28 - 00000000 ___HD C:\DOCUME~1\ADMINI~1\USTAWI~1\Dane aplikacji 2013-08-28 13:16 - 2010-02-19 12:30 - 00000000 ____D C:\Program Files\VS Revo Group 2013-08-28 09:57 - 2013-08-28 08:35 - 00221696 ___SH C:\Documents and Settings\Administrator\Moje dokumenty\Thumbs.db 2013-08-28 09:56 - 2013-08-28 09:56 - 00003446 _____ C:\Documents and Settings\Administrator\Moje dokumenty\WoluminC OSTATNI.txt 2013-08-28 08:35 - 2013-03-28 01:45 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty\Kopia Moja muzyka 2013-08-28 08:35 - 2010-01-08 15:40 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty\Tones 2013-08-28 07:35 - 2013-04-17 15:51 - 23179264 _____ C:\WINDOWS\system32\config\software.blues 2013-08-28 07:35 - 2013-04-17 15:51 - 07122944 _____ C:\WINDOWS\system32\config\system.blues 2013-08-28 07:35 - 2013-04-17 15:51 - 00266240 _____ C:\WINDOWS\system32\config\default.blues 2013-08-28 07:35 - 2013-04-17 15:51 - 00057344 _____ C:\WINDOWS\system32\config\SECURITY.blues 2013-08-28 07:35 - 2013-04-17 15:51 - 00024576 _____ C:\WINDOWS\system32\config\SAM.blues 2013-08-28 00:06 - 2009-12-30 22:28 - 00000000 ___HD C:\Documents and Settings\LocalService\Ustawienia lokalne 2013-08-28 00:01 - 2009-12-30 23:13 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-08-27 23:48 - 2013-08-27 21:27 - 00000406 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job 2013-08-27 23:30 - 2011-01-11 02:23 - 00000187 _____ C:\WINDOWS\system32\CleanMem.ini 2013-08-27 23:28 - 2013-08-27 23:28 - 00000022 _____ C:\WINDOWS\cmm.dat 2013-08-27 23:24 - 2013-08-27 23:24 - 00000000 ____D C:\WINDOWS\CleanMem 2013-08-27 23:24 - 2013-08-27 23:24 - 00000000 ____D C:\Program Files\CleanMem 2013-08-27 23:24 - 2013-08-27 23:24 - 00000000 ____D C:\Documents and Settings\Administrator\Menu Start\Programy\CleanMem 2013-08-27 22:38 - 2013-08-27 22:38 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Malwarebytes 2013-08-27 22:37 - 2013-08-27 22:22 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-08-27 21:54 - 2013-08-20 11:07 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Media Player Classic 2013-08-27 21:27 - 2013-08-27 21:27 - 00001698 _____ C:\Documents and Settings\Administrator\Pulpit\Microsoft Security Essentials.lnk 2013-08-27 21:17 - 2013-08-27 21:17 - 00001912 _____ C:\WINDOWS\epplauncher.mif 2013-08-27 21:17 - 2013-08-27 21:16 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-08-27 21:12 - 2013-08-25 11:17 - 00000000 ____D C:\Documents and Settings\LocalService\Application Data\GameTracker 2013-08-27 21:07 - 2012-07-30 11:17 - 01474832 ____C C:\WINDOWS\system32\Drivers\sfi.dat 2013-08-26 10:49 - 2004-08-04 00:44 - 00014336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\svchost.exe 2013-08-26 10:49 - 2004-08-04 00:44 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\svchost.exe 2013-08-26 08:59 - 2013-08-26 08:56 - 00000511 _____ C:\Documents and Settings\Administrator\Moje dokumenty\1252480432.htm 2013-08-25 23:42 - 2013-04-12 02:44 - 00000000 ____D C:\WINDOWS\system32\Logfiles 2013-08-25 14:55 - 2013-08-25 14:55 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\HD Tune Pro 2013-08-25 14:54 - 2013-08-25 14:54 - 00000000 ____D C:\Program Files\HD Tune Pro 2013-08-25 12:04 - 2013-08-25 12:04 - 00000000 ____D C:\Program Files\Windows Installer Clean Up 2013-08-25 12:04 - 2013-08-25 12:04 - 00000000 ____D C:\Program Files\MSECACHE 2013-08-25 11:46 - 2013-08-25 11:46 - 00000000 ____D C:\Program Files\Extreme Thumbnail Generator 2013-08-25 11:09 - 2013-08-25 11:09 - 00000000 ___HD C:\Program Files\WindowsUpdate 2013-08-25 09:10 - 2013-08-22 23:54 - 00000000 ____D C:\Program Files\XP Repair Pro 2013-08-25 08:50 - 2013-08-25 08:50 - 00000000 ____D C:\WINDOWS\MATS 2013-08-25 08:50 - 2013-08-25 08:50 - 00000000 ____D C:\Program Files\Microsoft Fix it Center 2013-08-24 20:32 - 2013-08-24 20:31 - 00000000 ____D C:\Qoobox 2013-08-24 20:19 - 2013-04-06 10:53 - 00000000 ____D C:\WINDOWS\ERDNT 2013-08-24 19:03 - 2013-05-17 17:51 - 00104624 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-08-24 18:36 - 2013-03-31 12:32 - 00000000 ___HD C:\WINDOWS\$hf_mig$ 2013-08-24 16:13 - 2013-08-24 16:13 - 00002808 _____ C:\Documents and Settings\Administrator\Moje dokumenty\scan COMODO.txt 2013-08-24 11:55 - 2013-08-24 11:55 - 02237968 _____ (Kaspersky Lab ZAO) C:\Documents and Settings\Administrator\Pulpit\tdsskiller.exe 2013-08-22 20:09 - 2012-07-27 21:48 - 00000000 __SHD C:\WINDOWS\CSC 2013-08-22 20:03 - 2012-04-29 17:26 - 00000000 ____D C:\WINDOWS\ie8updates 2013-08-22 17:08 - 2013-08-22 17:08 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\FreshDiagnose 2013-08-22 17:00 - 2013-08-13 20:18 - 00000000 ____D C:\Program Files\TrafInsp 2013-08-22 16:57 - 2013-08-22 14:31 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Uninstaller Tool(Comodo Forums) 2013-08-22 15:12 - 2013-08-22 15:12 - 00001346 _____ C:\FixitRegBackup.reg 2013-08-22 10:58 - 2013-08-22 09:45 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Comodo 2013-08-22 00:29 - 2009-12-30 22:28 - 00000000 ___HD C:\Documents and Settings\NetworkService\Ustawienia lokalne 2013-08-21 10:09 - 2013-08-18 09:15 - 00002980 _____ C:\Documents and Settings\Administrator\Moje dokumenty\startup.txt 2013-08-20 18:49 - 2013-07-29 02:45 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty\Moje wideo 2013-08-20 12:47 - 2009-12-30 22:28 - 00000000 ___RD C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart 2013-08-20 12:45 - 2013-03-01 11:47 - 00000000 ____D C:\WINDOWS\pss 2013-08-20 10:46 - 2013-08-20 10:46 - 00000014 _____ C:\WINDOWS\system32\sysvm600ul.dll 2013-08-20 10:45 - 2013-08-20 10:45 - 00000000 ____D C:\Program Files\BlazeVideo 2013-08-19 18:54 - 2013-08-19 18:54 - 00000000 ____D C:\TDSSKiller_Quarantine 2013-08-19 17:44 - 2013-07-25 17:52 - 00000000 ____D C:\Program Files\WinUtilities 2013-08-19 16:56 - 2013-08-14 08:15 - 04980736 _____ C:\WINDOWS\system32\config\TIEvent.evt 2013-08-19 14:15 - 2013-08-19 14:15 - 00000000 ____D C:\WINDOWS\ERUNT 2013-08-19 12:56 - 2013-08-19 12:55 - 00001871 _____ C:\AdwCleaner[R13].txt 2013-08-19 12:47 - 2013-07-29 19:37 - 00000130 _____ C:\WINDOWS\VMorpher.INI 2013-08-19 12:46 - 2013-07-29 19:34 - 00000029 _____ C:\WINDOWS\AVFTP.INI 2013-08-19 09:16 - 2010-02-19 18:07 - 00000000 ___RD C:\Documents and Settings\Administrator\Pulpit\Nieużywane skróty pulpitu 2013-08-19 00:44 - 2013-08-17 10:46 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-08-19 00:19 - 2013-06-03 14:07 - 00000000 ____D C:\Program Files\CCleaner 2013-08-18 14:52 - 2010-08-21 00:12 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-08-18 14:25 - 2013-08-18 14:21 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-08-18 12:49 - 2013-03-12 03:03 - 00012552 _____ C:\WINDOWS\system32\TZLog.log 2013-08-18 12:07 - 2013-03-12 03:45 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2013-08-18 10:34 - 2013-08-18 10:34 - 00000000 ____D C:\614471985dd6987bf187 2013-08-17 21:30 - 2013-08-17 21:28 - 00001474 _____ C:\AdwCleaner[S10].txt 2013-08-17 21:27 - 2013-08-17 21:27 - 00001749 _____ C:\AdwCleaner[R12].txt 2013-08-17 20:53 - 2013-08-17 20:53 - 00001688 _____ C:\AdwCleaner[R11].txt 2013-08-17 20:33 - 2010-09-17 02:15 - 00000000 ____D C:\Documents and Settings\Administrator\Moje dokumenty\wiolonczela i _data 2013-08-17 20:33 - 2009-12-30 22:28 - 00000000 ___RD C:\Documents and Settings\Administrator\Moje dokumenty\Moje obrazy 2013-08-17 20:12 - 2010-01-15 03:36 - 00000000 ____D C:\html 2013-08-17 20:12 - 2009-12-30 23:15 - 00000000 ____D C:\Intel10.3 2013-08-17 14:03 - 2013-08-17 14:01 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\Presentation Screen Master 2013-08-17 11:46 - 2012-05-05 11:18 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\system.regan613.LOG 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\software.regan613.LOG 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\SECURITY.regan613.LOG 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\SAM.regan613.LOG 2013-08-17 11:06 - 2013-08-17 11:06 - 00000000 ____H C:\WINDOWS\system32\config\default.regan613.LOG 2013-08-16 21:24 - 2009-12-30 23:07 - 00000000 ___RD C:\WINDOWS\Web 2013-08-16 11:48 - 2013-06-09 20:52 - 00000010 ____H C:\tjxraa.psw 2013-08-16 11:41 - 2013-08-16 11:41 - 00000000 ____D C:\Program Files\SuperUtils.com 2013-08-16 11:41 - 2013-08-16 11:41 - 00000000 ____D C:\Documents and Settings\Administrator\Menu Start\Programy\SuperUtils.com 2013-08-16 11:41 - 2013-08-16 11:41 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\SuperUtils.com 2013-08-15 11:05 - 2013-06-12 08:15 - 00000000 ____D C:\Program Files\Ashampoo 2013-08-14 00:14 - 2013-08-13 20:13 - 00393216 _____ C:\WINDOWS\system32\config\Traffic .evt 2013-08-09 17:16 - 2013-08-09 17:16 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\1-abc 2013-08-06 15:52 - 2013-08-06 15:52 - 00001529 _____ C:\AdwCleaner[S9].txt 2013-08-05 16:55 - 2013-08-05 16:55 - 00018063 _____ C:\Documents and Settings\Administrator\Moje dokumenty\WinUtilities DiskDefrag Raport (2013-08-05 164215).mht 2013-08-05 16:00 - 2010-08-21 00:49 - 75778376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-08-04 06:49 - 2010-01-10 03:31 - 00000000 ____D C:\Program Files\IrfanView 2013-08-03 10:11 - 2013-03-22 23:45 - 00000000 ____D C:\Program Files\BlueSprig 2013-08-03 10:00 - 2013-08-03 10:00 - 00000181 _____ C:\Documents and Settings\Administrator\Moje dokumenty\Klucz produktu JetClean.txt 2013-08-03 01:48 - 2006-10-18 21:47 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmvdecod.dll 2013-08-01 08:38 - 2013-07-26 22:57 - 00000000 ____D C:\Documents and Settings\Administrator\Dane aplikacji\DiskDefrag 2013-07-31 10:03 - 2013-07-31 10:02 - 00004914 _____ C:\AdwCleaner[R8].txt 2013-07-31 09:59 - 2013-07-29 02:44 - 00003688 _____ C:\Program Files\Mozilla Firefoxavg-secure-search.xml 2013-07-31 09:59 - 2012-08-03 17:02 - 00000000 ____D C:\WINDOWS\system32\cache Files to move or delete: ==================== C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\IE8-WindowsXP-x86-PLK.exe C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\AUTORUN.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\AUTORUN.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\SPWIZENG.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\WINDOWSXP-KB936929-SP3-X86-PLK.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ICONLIB.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\LOADSTATE.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\LOG.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\MIGISM.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\MIGISM_A.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\SCANSTATE.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\SCANSTATE_A.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\SCRIPT.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\SCRIPT_A.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\SHFOLDER.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\SYSMOD.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\SYSMOD_A.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\UNCTRN.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\UNCTRN_A.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ANSI\ICONLIB.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ANSI\LOG.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ANSI\MIGISM.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ANSI\SCANSTATE.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ANSI\SCRIPT.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ANSI\SHFOLDER.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ANSI\SYSMOD.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\USMT\ANSI\UNCTRN.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\NET\TOOLS\TTCP.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\MGMT\PBA\PBAINST.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\MSFT\MGMT\IAS\IASNT4.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\VALUEADD\3RDPARTY\MGMT\CITRIX\ICA32.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\SUPPORT\TOOLS\ACT20.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\SUPPORT\TOOLS\FASTWIZ.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\SUPPORT\TOOLS\GBUNICNV.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\SUPPORT\TOOLS\MSRDPCLI.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\SUPPORT\TOOLS\SETUP.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\ACCMGR.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\CDMGR.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\CMNRES.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\DEFHELP.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\DELTEMP.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\DEPMGR.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\DFCHGFLD.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\DFDEPUI.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\DFFACT.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\DISKMGR.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\DOTNETFX.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\GENCOMP.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\HTMLLITE.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\LANGPACK.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\MSVCP70.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\MSVCR70.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\NDPSP.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\REBOOTST.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\SETLOG.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\SETUP.EXE C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\SETUPDB.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\SITSETUP.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\SUITE.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\SVRGRMGR.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\TEMPLMGR.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\UIMGR.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\VALIDATE.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\XPSPREQS.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\XPSPSCEN.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\xpsp3_5512.080413-2113_pl_x86fre_spcd\DOTNETFX\XPSPUI.DLL C:\DOCUME~1\ADMINI~1\USTAWI~1\Temp\jrt\erunt\ERUNT.EXE ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2004-08-04 00:44] - [2008-04-14 23:51] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2004-08-04 00:44] - [2008-04-14 23:51] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2004-08-04 00:44] - [2013-08-26 10:49] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2004-08-04 00:44] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2004-08-04 00:44] - [2008-04-14 23:50] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2004-08-04 00:44] - [2008-04-14 23:51] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2004-08-04 00:36] - [2008-04-14 22:31] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================