Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-09-2013 Ran by Bartek (administrator) on KOMPUTER on 01-09-2013 14:58:09 Running from D:\Documents and Settings\Bartek\Pulpit Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 6 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (NVIDIA Corporation) D:\WINDOWS\system32\nvsvc32.exe (Logitech Inc.) D:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (Sun Microsystems, Inc.) D:\Program Files\Java\jre6\bin\jqs.exe (Intel Corporation) D:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) D:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Realtek Semiconductor Corp.) D:\WINDOWS\RTHDCPL.EXE (Microsoft Corporation) D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Sun Microsystems, Inc.) D:\Program Files\Common Files\Java\Java Update\jusched.exe (Adobe Systems Incorporated) D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Logitech Inc.) D:\Program Files\Logitech\LWS\Webcam Software\LWS.exe (Google Inc.) D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (DT Soft Ltd) D:\Program Files\DAEMON Tools Lite\DTLite.exe (Skype Technologies S.A.) D:\Program Files\Skype\Phone\Skype.exe (Nokia) D:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe (Hewlett-Packard Co.) D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe (Hewlett-Packard) D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe (Nokia) D:\Program Files\PC Connectivity Solution\ServiceLayer.exe (Nokia) D:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe (Hewlett-Packard Co.) D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe (Hewlett-Packard Co.) D:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe (Nokia) D:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe (Opera Software) D:\Program Files\Opera\opera.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [nwiz] - D:\Program Files\NVIDIA Corporation\nView\nwiz.exe /install [x] HKLM\...\Run: [NvMediaCenter] - D:\WINDOWS\system32\NvMcTray.dll [86016 2009-09-27] (NVIDIA Corporation) HKLM\...\Run: [NvCplDaemon] - D:\WINDOWS\system32\NvCpl.dll [13918208 2009-09-27] (NVIDIA Corporation) HKLM\...\Run: [RTHDCPL] - D:\WINDOWS\RTHDCPL.EXE [18790432 2010-01-19] (Realtek Semiconductor Corp.) HKLM\...\Run: [GrooveMonitor] - D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation) HKLM\...\Run: [NeroFilterCheck] - D:\WINDOWS\system32\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh) HKLM\...\Run: [SunJavaUpdateSched] - D:\Program Files\Common Files\Java\Java Update\jusched.exe [248552 2010-05-14] (Sun Microsystems, Inc.) HKLM\...\Run: [Adobe Reader Speed Launcher] - D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2010-09-23] (Adobe Systems Incorporated) HKLM\...\Run: [Adobe ARM] - D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [MP10_EnsureFileVer] - D:\WINDOWS\inf\unregmp2.exe [208896 2008-04-14] (Microsoft Corporation) HKLM\...\Run: [LWS] - D:\Program Files\Logitech\LWS\Webcam Software\LWS.exe [205336 2011-11-11] (Logitech Inc.) HKLM\...\Policies\Explorer: [HonorAutoRunSetting] 1 HKCU\...\Run: [swg] - D:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-09-04] (Google Inc.) HKCU\...\Run: [DAEMON Tools Lite] - D:\Program Files\DAEMON Tools Lite\DTLite.exe [357696 2010-04-01] (DT Soft Ltd) HKCU\...\Run: [Skype] - D:\Program Files\Skype\Phone\Skype.exe [17877168 2012-11-09] (Skype Technologies S.A.) HKCU\...\Run: [NokiaSuite.exe] - D:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe [1090912 2013-04-19] (Nokia) MountPoints2: {47e103d4-acb5-11e1-a173-6cf049b799d6} - M:\Startme.exe MountPoints2: {8b5d458a-1d1e-11e2-a38f-6cf049b799d6} - RunClubSanDisk.exe Startup: D:\Documents and Settings\All Users\Menu Start\Programy\Autostart\hp psc 1000 series.lnk ShortcutTarget: hp psc 1000 series.lnk -> D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe (Hewlett-Packard Co.) Startup: D:\Documents and Settings\All Users\Menu Start\Programy\Autostart\hpoddt01.exe.lnk ShortcutTarget: hpoddt01.exe.lnk -> D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe (Hewlett-Packard) Startup: D:\Documents and Settings\Bartek\Menu Start\Programy\Autostart\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk -> D:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) SSODL: UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - D:\WINDOWS\system32\upnpui.dll (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.gazeta.pl/0,0.html?p=130 HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gazeta.pl/0,0.html?p=130 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home SearchScopes: HKLM - DefaultScope value is missing. BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL (Microsoft Corporation) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - D:\Program Files\Google\GoogleToolbarNotifier\5.7.8313.1002\swg.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU -&Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - D:\Windows\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU -&Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - D:\Windows\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU -Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2210608 2006-10-27] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 ========================== Services (Whitelisted) ================= R2 UMVPFSrv; D:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.) R2 JavaQuickStarterService; "D:\Program Files\Java\jre6\bin\jqs.exe" -service -config "D:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf" [x] ==================== Drivers (Whitelisted) ==================== R1 AFS2K; D:\Windows\System32\Drivers\AFS2K.sys [82380 2010-09-05] (Oak Technology Inc.) S3 Ambfilt; D:\Windows\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative) R1 AppleCharger; D:\Windows\System32\DRIVERS\AppleCharger.sys [18472 2010-03-01] () S3 HPZid412; D:\Windows\System32\DRIVERS\HPZid412.sys [51024 2003-04-07] (HP) S3 HPZipr12; D:\Windows\System32\DRIVERS\HPZipr12.sys [16080 2003-04-07] (HP) S3 HPZius12; D:\Windows\System32\DRIVERS\HPZius12.sys [21456 2003-04-07] (HP) S3 Monfilt; D:\Windows\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.) S3 NdisIP; D:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R3 NVHDA; D:\Windows\System32\drivers\nvhda32.sys [57248 2009-08-21] (NVIDIA Corporation) S3 s116bus; D:\Windows\System32\DRIVERS\s116bus.sys [83336 2007-04-03] (MCCI Corporation) S3 s116mdfl; D:\Windows\System32\DRIVERS\s116mdfl.sys [15112 2007-04-03] (MCCI Corporation) S3 s116mdm; D:\Windows\System32\DRIVERS\s116mdm.sys [108680 2007-04-03] (MCCI Corporation) S3 s116mgmt; D:\Windows\System32\DRIVERS\s116mgmt.sys [100488 2007-04-03] (MCCI Corporation) S3 s116nd5; D:\Windows\System32\DRIVERS\s116nd5.sys [23176 2007-04-03] (MCCI Corporation) S3 s116obex; D:\Windows\System32\DRIVERS\s116obex.sys [98696 2007-04-03] (MCCI Corporation) S3 s116unic; D:\Windows\System32\DRIVERS\s116unic.sys [99080 2007-04-03] (MCCI Corporation) S3 s125bus; D:\Windows\System32\DRIVERS\s125bus.sys [83336 2007-04-24] (MCCI Corporation) S3 s125mdfl; D:\Windows\System32\DRIVERS\s125mdfl.sys [15112 2007-04-24] (MCCI Corporation) S3 s125mdm; D:\Windows\System32\DRIVERS\s125mdm.sys [108680 2007-04-24] (MCCI Corporation) S3 s125mgmt; D:\Windows\System32\DRIVERS\s125mgmt.sys [100488 2007-04-24] (MCCI Corporation) S3 s125obex; D:\Windows\System32\DRIVERS\s125obex.sys [98696 2007-04-24] (MCCI Corporation) R0 sptd; D:\Windows\System32\Drivers\sptd.sys [691696 2012-07-18] () U3 a7oajart; D:\Windows\System32\Drivers\a7oajart.sys [0 ] (Microsoft Corporation) S4 IntelIde; No ImagePath U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-01 17:51 - 2011-07-13 04:55 - 02237440 ____R (OldTimer Tools) D:\OTLPE.exe 2013-09-01 14:51 - 2013-09-01 14:52 - 00000000 ____D D:\AdwCleaner 2013-09-01 14:51 - 2013-09-01 14:51 - 00994642 _____ D:\Documents and Settings\Bartek\Pulpit\adwcleaner.exe 2013-09-01 14:46 - 2013-09-01 14:46 - 00000422 _____ D:\WINDOWS\Tasks\At2.job 2013-09-01 14:46 - 2013-09-01 14:46 - 00000000 ____D D:\Documents and Settings\Bartek\Dane aplikacji\Mipony 2013-09-01 14:45 - 2013-09-01 14:45 - 00000422 _____ D:\WINDOWS\Tasks\At1.job 2013-09-01 14:45 - 2013-09-01 14:45 - 00000000 ____D D:\WINDOWS\system32\searchplugins 2013-09-01 14:45 - 2013-09-01 14:45 - 00000000 ____D D:\WINDOWS\system32\Extensions 2013-09-01 14:45 - 2013-09-01 14:45 - 00000000 ____D D:\Program Files\Mozilla Firefox 2013-09-01 12:08 - 2013-09-01 12:08 - 00041314 _____ D:\Documents and Settings\Bartek\Pulpit\Addition.txt 2013-09-01 12:06 - 2013-09-01 12:06 - 01085571 _____ (Farbar) D:\Documents and Settings\Bartek\Pulpit\FRST.exe 2013-09-01 12:06 - 2013-09-01 12:06 - 00000000 ____D D:\FRST 2013-09-01 00:47 - 2013-09-01 00:47 - 00064224 _____ D:\OTL.Txt 2013-08-31 14:27 - 2013-08-31 15:28 - 00000000 ____D D:\Kaspersky Rescue Disk 10.0 2013-08-29 22:16 - 2013-08-29 22:16 - 00007107 _____ D:\Documents and Settings\Bartek\Pulpit\default.jpeg 2013-08-26 10:55 - 2013-08-26 11:05 - 00000000 ____D D:\Documents and Settings\Bartek\Pulpit\Karolcia 2013-08-20 13:21 - 2013-08-20 13:21 - 00004139 _____ D:\WINDOWS\Wdf01009Inst.log 2013-08-20 13:21 - 2013-08-20 13:21 - 00000000 __HDC D:\WINDOWS\$NtUninstallWdf01009$ 2013-08-20 13:21 - 2013-08-20 13:21 - 00000000 ____H D:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf 2013-08-20 13:21 - 2013-08-20 13:21 - 00000000 ____H D:\WINDOWS\system32\Drivers\Msft_Kernel_ccdcmb_01009.Wdf 2013-08-20 13:21 - 2008-11-07 18:55 - 00016928 ____N (Microsoft Corporation) D:\WINDOWS\system32\spmsgXP_2k3.dll 2013-08-20 13:21 - 2008-04-14 00:15 - 00026112 ____C (Microsoft Corporation) D:\WINDOWS\system32\dllcache\usbser.sys 2013-08-20 13:21 - 2008-04-14 00:15 - 00026112 _____ (Microsoft Corporation) D:\WINDOWS\system32\Drivers\usbser.sys 2013-08-20 13:16 - 2013-08-20 13:16 - 00000000 ___RD D:\Documents and Settings\Bartek\Moje dokumenty\Moje wideo 2013-08-20 13:12 - 2013-08-20 13:12 - 00000000 ____D D:\Program Files\DIFX 2013-08-20 13:12 - 2013-08-20 13:12 - 00000000 ____D D:\Program Files\Common Files\Nokia 2013-08-20 13:12 - 2013-08-20 13:12 - 00000000 ____D D:\Documents and Settings\Bartek\Dane aplikacji\PC Suite 2013-08-20 13:12 - 2012-10-17 14:53 - 00019072 _____ (Nokia) D:\WINDOWS\system32\Drivers\pccsmcfd.sys 2013-08-20 13:11 - 2013-08-20 13:12 - 00000000 ____D D:\Program Files\Nokia 2013-08-20 13:11 - 2013-08-20 13:11 - 00000000 ____D D:\Program Files\PC Connectivity Solution 2013-08-20 13:11 - 2013-08-20 13:11 - 00000000 ____D D:\Program Files\MSXML 6.0 2013-08-20 13:11 - 2013-01-23 10:31 - 00123904 _____ (Nokia) D:\WINDOWS\system32\ccdcmbwu.dll 2013-08-20 13:11 - 2013-01-23 10:31 - 00075264 _____ (Nokia) D:\WINDOWS\system32\nmwcdcls.dll 2013-08-20 13:11 - 2013-01-23 10:31 - 00069632 _____ (Nokia) D:\WINDOWS\system32\nmwcdcocls.dll 2013-08-20 13:11 - 2013-01-23 10:31 - 00023168 _____ (Nokia) D:\WINDOWS\system32\Drivers\ccdcmbo.sys 2013-08-20 13:11 - 2013-01-23 10:31 - 00018560 _____ (Nokia) D:\WINDOWS\system32\Drivers\ccdcmb.sys 2013-08-20 13:11 - 2013-01-23 10:31 - 00008192 _____ (Nokia) D:\WINDOWS\system32\Drivers\usbser_lowerfltj.sys 2013-08-20 13:11 - 2013-01-23 10:31 - 00008192 _____ (Nokia) D:\WINDOWS\system32\Drivers\usbser_lowerflt.sys 2013-08-20 13:11 - 2012-06-11 13:04 - 01461992 _____ (Microsoft Corporation) D:\WINDOWS\system32\wdfcoinstaller01009.dll 2013-08-20 13:05 - 2013-08-20 13:11 - 106311632 _____ D:\Documents and Settings\Bartek\Pulpit\Nokia_Suite_webinstaller_ALL.exe ==================== One Month Modified Files and Folders ======= 2013-09-01 14:58 - 2010-09-04 12:32 - 00000000 ____D D:\Documents and Settings\Bartek\Pulpit 2013-09-01 14:56 - 2010-11-24 12:24 - 00000260 _____ D:\WINDOWS\Tasks\WGASetup.job 2013-09-01 14:56 - 2010-09-04 12:52 - 00001032 _____ D:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-01 14:56 - 2010-09-04 12:26 - 00183920 _____ D:\WINDOWS\wmsetup.log 2013-09-01 14:56 - 2009-09-27 18:19 - 00253748 _____ D:\WINDOWS\system32\NvApps.xml 2013-09-01 14:53 - 2010-09-04 14:22 - 00000159 _____ D:\WINDOWS\wiadebug.log 2013-09-01 14:53 - 2010-09-04 14:22 - 00000050 _____ D:\WINDOWS\wiaservc.log 2013-09-01 14:53 - 2010-09-04 14:18 - 00000000 __RHD D:\Documents and Settings\All Users\Dane aplikacji 2013-09-01 14:53 - 2010-09-04 12:31 - 00032546 _____ D:\WINDOWS\SchedLgU.Txt 2013-09-01 14:53 - 2010-09-04 12:31 - 00000006 ____H D:\WINDOWS\Tasks\SA.DAT 2013-09-01 14:53 - 2010-09-04 12:28 - 01784809 _____ D:\WINDOWS\WindowsUpdate.log 2013-09-01 14:52 - 2013-09-01 14:51 - 00000000 ____D D:\AdwCleaner 2013-09-01 14:52 - 2012-07-09 16:33 - 00000000 __RHD D:\Documents and Settings\Administrator\Dane aplikacji 2013-09-01 14:52 - 2010-09-04 12:32 - 00000000 __RHD D:\Documents and Settings\Bartek\Dane aplikacji 2013-09-01 14:52 - 2010-09-04 12:32 - 00000000 ___HD D:\DOCUME~1\Bartek\USTAWI~1\Dane aplikacji 2013-09-01 14:51 - 2013-09-01 14:51 - 00994642 _____ D:\Documents and Settings\Bartek\Pulpit\adwcleaner.exe 2013-09-01 14:46 - 2013-09-01 14:46 - 00000422 _____ D:\WINDOWS\Tasks\At2.job 2013-09-01 14:46 - 2013-09-01 14:46 - 00000000 ____D D:\Documents and Settings\Bartek\Dane aplikacji\Mipony 2013-09-01 14:46 - 2010-09-04 12:32 - 00000000 ___RD D:\Documents and Settings\Bartek\Menu Start\Programy 2013-09-01 14:45 - 2013-09-01 14:45 - 00000422 _____ D:\WINDOWS\Tasks\At1.job 2013-09-01 14:45 - 2013-09-01 14:45 - 00000000 ____D D:\WINDOWS\system32\searchplugins 2013-09-01 14:45 - 2013-09-01 14:45 - 00000000 ____D D:\WINDOWS\system32\Extensions 2013-09-01 14:45 - 2013-09-01 14:45 - 00000000 ____D D:\Program Files\Mozilla Firefox 2013-09-01 14:36 - 2010-09-04 12:52 - 00001036 _____ D:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-01 12:08 - 2013-09-01 12:08 - 00041314 _____ D:\Documents and Settings\Bartek\Pulpit\Addition.txt 2013-09-01 12:06 - 2013-09-01 12:06 - 01085571 _____ (Farbar) D:\Documents and Settings\Bartek\Pulpit\FRST.exe 2013-09-01 12:06 - 2013-09-01 12:06 - 00000000 ____D D:\FRST 2013-09-01 00:47 - 2013-09-01 00:47 - 00064224 _____ D:\OTL.Txt 2013-08-31 18:51 - 2012-07-09 16:30 - 00000000 __SHD D:\WINDOWS\CSC 2013-08-31 18:51 - 2011-02-17 19:40 - 00000664 _____ D:\WINDOWS\system32\d3d9caps.dat 2013-08-31 15:28 - 2013-08-31 14:27 - 00000000 ____D D:\Kaspersky Rescue Disk 10.0 2013-08-30 17:42 - 2010-09-04 12:32 - 00000188 ___SH D:\Documents and Settings\Bartek\ntuser.ini 2013-08-29 22:16 - 2013-08-29 22:16 - 00007107 _____ D:\Documents and Settings\Bartek\Pulpit\default.jpeg 2013-08-28 09:41 - 2010-09-04 12:58 - 00000000 ____D D:\Program Files\Opera 2013-08-26 16:29 - 2010-09-04 14:20 - 00975686 _____ D:\WINDOWS\system32\PerfStringBackup.INI 2013-08-26 16:29 - 2001-10-26 20:15 - 00445664 _____ D:\WINDOWS\system32\perfh015.dat 2013-08-26 16:29 - 2001-10-26 20:15 - 00072970 _____ D:\WINDOWS\system32\perfc015.dat 2013-08-26 11:07 - 2012-11-18 13:15 - 00000000 ____D D:\Documents and Settings\Bartek\Pulpit\B 2013-08-26 11:05 - 2013-08-26 10:55 - 00000000 ____D D:\Documents and Settings\Bartek\Pulpit\Karolcia 2013-08-26 10:55 - 2010-09-04 14:18 - 01017955 _____ D:\WINDOWS\setupapi.log 2013-08-25 19:39 - 2013-01-19 22:41 - 00000000 ____D D:\Documents and Settings\Bartek\Pulpit\ZDJĘCIA 2013 2013-08-23 12:19 - 2010-09-04 12:50 - 00002507 _____ D:\Documents and Settings\Bartek\Pulpit\Microsoft Office Excel 2007.lnk 2013-08-21 22:46 - 2010-09-04 12:50 - 00002513 _____ D:\Documents and Settings\Bartek\Pulpit\Microsoft Office Word 2007.lnk 2013-08-21 13:27 - 2010-09-19 14:47 - 00000049 _____ D:\WINDOWS\NeroDigital.ini 2013-08-20 13:21 - 2013-08-20 13:21 - 00004139 _____ D:\WINDOWS\Wdf01009Inst.log 2013-08-20 13:21 - 2013-08-20 13:21 - 00000000 __HDC D:\WINDOWS\$NtUninstallWdf01009$ 2013-08-20 13:21 - 2013-08-20 13:21 - 00000000 ____H D:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf 2013-08-20 13:21 - 2013-08-20 13:21 - 00000000 ____H D:\WINDOWS\system32\Drivers\Msft_Kernel_ccdcmb_01009.Wdf 2013-08-20 13:21 - 2010-09-04 14:20 - 00712107 _____ D:\WINDOWS\iis6.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00591388 _____ D:\WINDOWS\FaxSetup.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00301102 _____ D:\WINDOWS\ocgen.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00279275 _____ D:\WINDOWS\tsoc.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00209664 _____ D:\WINDOWS\comsetup.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00198424 _____ D:\WINDOWS\msmqinst.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00126317 _____ D:\WINDOWS\ntdtcsetup.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00104587 _____ D:\WINDOWS\netfxocm.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00041794 _____ D:\WINDOWS\MedCtrOC.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00037282 _____ D:\WINDOWS\ocmsn.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00030927 _____ D:\WINDOWS\tabletoc.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00030176 _____ D:\WINDOWS\msgsocm.log 2013-08-20 13:21 - 2010-09-04 14:20 - 00001374 _____ D:\WINDOWS\imsins.log 2013-08-20 13:21 - 2010-09-04 14:17 - 00207129 _____ D:\WINDOWS\setupact.log 2013-08-20 13:16 - 2013-08-20 13:16 - 00000000 ___RD D:\Documents and Settings\Bartek\Moje dokumenty\Moje wideo 2013-08-20 13:16 - 2010-09-04 12:32 - 00000000 ___RD D:\Documents and Settings\Bartek\Moje dokumenty 2013-08-20 13:12 - 2013-08-20 13:12 - 00000000 ____D D:\Program Files\DIFX 2013-08-20 13:12 - 2013-08-20 13:12 - 00000000 ____D D:\Program Files\Common Files\Nokia 2013-08-20 13:12 - 2013-08-20 13:12 - 00000000 ____D D:\Documents and Settings\Bartek\Dane aplikacji\PC Suite 2013-08-20 13:12 - 2013-08-20 13:11 - 00000000 ____D D:\Program Files\Nokia 2013-08-20 13:12 - 2011-02-14 09:33 - 00608290 _____ D:\WINDOWS\DPINST.LOG 2013-08-20 13:12 - 2010-09-04 14:19 - 00000000 ____D D:\Documents and Settings\All Users\Pulpit 2013-08-20 13:11 - 2013-08-20 13:11 - 00000000 ____D D:\Program Files\PC Connectivity Solution 2013-08-20 13:11 - 2013-08-20 13:11 - 00000000 ____D D:\Program Files\MSXML 6.0 2013-08-20 13:11 - 2013-08-20 13:05 - 106311632 _____ D:\Documents and Settings\Bartek\Pulpit\Nokia_Suite_webinstaller_ALL.exe 2013-08-19 19:16 - 2010-09-04 12:32 - 00000000 ___RD D:\Documents and Settings\Bartek\Moje dokumenty\Moje obrazy 2013-08-19 13:47 - 2012-07-09 16:33 - 00000000 ____D D:\Documents and Settings\Bartek\Pulpit\RÓŻNE 2013-08-16 20:54 - 2012-12-24 21:23 - 00000000 ____D D:\Documents and Settings\Bartek\Dane aplikacji\Skype 2013-08-14 19:02 - 2010-09-04 14:12 - 00000000 ____D D:\WINDOWS\Help 2013-08-09 19:59 - 2001-07-22 02:17 - 00002206 _____ D:\WINDOWS\system32\wpa.dbl Files to move or delete: ==================== D:\DOCUME~1\Bartek\USTAWI~1\Temp\ICReinstall_CodecPackage.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\ICReinstall_DownloadManagerSetup.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\NEventMessages.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\NOSEventMessages.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\Quarantine.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\uninst1.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\is357113909\DeltaTB.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\is357113909\DownloadManagerV2.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\is357113909\uninstaller.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\is1590112554\DeltaTB.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\BabMaint.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\BExternal.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\BUSolForMontiera.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\BUSolution.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\ccp.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\ChromeToolbarSetup.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\CrxInstaller.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\enhancedNT.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\GUninstaller.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\IEHelper.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\MntrDLLInstall.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\MyDeltaTB.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\Setup.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\A0BEC542-BAB0-7891-88FC-C654AF4A9484\Latest\sqlite3.dll D:\DOCUME~1\Bartek\USTAWI~1\Temp\1041578.Uninstall\uninstaller.exe D:\DOCUME~1\Bartek\USTAWI~1\Temp\1019875.Uninstall\uninstaller.exe D:\Windows\Tasks\At1.job D:\Windows\Tasks\At2.job ==================== Bamital & volsnap Check ================= D:\Windows\explorer.exe [2008-04-14 22:51] - [2008-04-14 22:51] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a D:\Windows\System32\winlogon.exe [2008-04-14 22:51] - [2008-04-14 22:51] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 D:\Windows\System32\svchost.exe [2008-04-14 22:51] - [2008-04-14 22:51] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce D:\Windows\System32\services.exe [2008-04-14 22:51] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f D:\Windows\System32\User32.dll [2008-04-14 22:50] - [2008-04-14 22:50] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 D:\Windows\System32\userinit.exe [2008-04-14 22:51] - [2008-04-14 22:51] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 D:\Windows\System32\Drivers\volsnap.sys [2008-04-14 21:31] - [2008-04-14 21:31] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================