Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-09-2013 04 Ran by Użytkownik (administrator) on 06E9A5BBCEA5481 on 14-09-2013 16:27:50 Running from E:\programy uzytkowe\OTL Microsoft Windows XP Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Could not list processes =============== ==================== Registry (Whitelisted) ================== HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [1447168 2008-07-01] (ESET) HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup MountPoints2: {2d373e18-20e3-11e0-8f69-0015832a5d93} - H:\LaunchU3.exe -a MountPoints2: {45894ff0-d6ac-11df-8ea3-0015832a5d93} - L:\LaunchU3.exe -a MountPoints2: {496a5d78-c0cf-11df-8e74-0015832a5d93} - L:\Install_Nokia_Ovi_Suite.exe HKU\Administrator\...\RunOnce: [NeroHomeFirstStart] - "C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe" HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - "C:\Program Files\Common Files\Nero\Lib\NMFirstStart.exe" ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://onet.pl/ URLSearchHook: IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - No File URLSearchHook: Vtools Toolbar - {5BFEFF94-6411-4B74-A947-4969134B24DE} - No File SearchScopes: HKCU - DefaultScope {A9C9047E-8189-471E-94AF-69D5AA92B0B5} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=183666&p={searchTerms} SearchScopes: HKCU - {353E353B-3DCB-4113-B770-E41265636A33} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=118FEB58-68D8-4271-9849-289B85F30327&apn_sauid=D04C53E1-B01B-434A-B07A-2283567CB3CF SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {A9C9047E-8189-471E-94AF-69D5AA92B0B5} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=183666&p={searchTerms} BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: IE MANAGER - {DE274C2C-2133-4B4B-93B3-8F21486DABC0} - No File BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) Toolbar: HKLM - Vtools Toolbar - {5BFEFF94-6411-4B74-A947-4969134B24DE} - No File Toolbar: HKLM - IObit Toolbar - {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - No File Toolbar: HKCU -&Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\Windows\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU -&Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\Windows\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2210608 2006-10-27] (Microsoft Corporation) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @ngm.nexoneu.com/NxGame - C:\Documents and Settings\All Users\Dane aplikacji\NexonEU\NGM\npNxGameEU.dll (Nexon) FF Plugin: @pandonetworks.com/PandoWebPlugin - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin: @real.com/nppl3260;version=16.0.2.32 - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlchromebrowserrecordext;version=1.3.2 - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlhtml5videoshim;version=1.3.2 - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprndlpepperflashvideoshim;version=1.3.2 - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpplugin;version=16.0.2.32 - C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer) FF Plugin: @realnetworks.com/npdlplugin;version=1 - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF HKLM\...\Firefox\Extensions: [jqs@sun.com] - C:\Program Files\Java\jre6\lib\deploy\jqs\ff FF Extension: Java Quick Starter - C:\Program Files\Java\jre6\lib\deploy\jqs\ff FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - FF HKLM\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF Extension: RealDownloader - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ FF HKCU\...\Firefox\Extensions: [firefox@mozilla.com] - C:\Documents and Settings\Użytkownik\Dane aplikacji\firefox@mozilla.com FF Extension: Firefox Updater - C:\Documents and Settings\Użytkownik\Dane aplikacji\firefox@mozilla.com Chrome: ======= CHR HomePage: hxxp://onet.pl/ CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Documents and Settings\U\u017Cytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\29.0.1547.66\PepperFlash\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Documents and Settings\U\u017Cytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\29.0.1547.66\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Documents and Settings\U\u017Cytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\29.0.1547.66\pdf.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation) CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.)) CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation) CHR Plugin: (Nexon Game Controller) - C:\Documents and Settings\All Users\Dane aplikacji\NexonEU\NGM\npNxGameEU.dll (Nexon) CHR Plugin: (RealNetworks(tm) RealDownloader Chrome Background Extension Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.) CHR Plugin: (RealNetworks(tm) RealDownloader HTML5VideoShim Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.) CHR Plugin: (RealNetworks(tm) RealDownloader PepperFlashVideoShim Plug-In (32-bit) ) - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.) CHR Plugin: (RealDownloader Plugin) - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader) CHR Plugin: (Facebook Video Calling Plugin) - C:\Documents and Settings\U\u017Cytkownik\Ustawienia lokalne\Dane aplikacji\Facebook\Video\Skype\npFacebookVideoCalling.dll No File CHR Plugin: (Google Update) - C:\Documents and Settings\U\u017Cytkownik\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File CHR Plugin: (RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) ) - C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) CHR Plugin: (RealPlayer Download Plugin) - C:\Program Files\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer) CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_6_602_171.dll No File CHR Extension: (Chrome Updater) - C:\DOCUME~1\UYTKOW~1\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\deoijihiiolhlopbdlcphkfdobmkfkap\1.1_0 CHR Extension: (Domain Error Assistant) - C:\DOCUME~1\UYTKOW~1\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj\1.1_0 CHR Extension: (RealDownloader) - C:\DOCUME~1\UYTKOW~1\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji\1.3.2_0 CHR Extension: (SweetIM for Facebook) - C:\DOCUME~1\UYTKOW~1\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0 CHR Extension: (Skype Click to Call) - C:\DOCUME~1\UYTKOW~1\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.4.0.11328_0 CHR Extension: (Slick Savings) - C:\DOCUME~1\UYTKOW~1\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.4_0 CHR Extension: (Chrome In-App Payments service) - C:\DOCUME~1\UYTKOW~1\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0 CHR Extension: (Amazon Shopping Assistant by Spigot) - C:\DOCUME~1\UYTKOW~1\USTAWI~1\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pfndaklgolladniicklehhancnlgocpp\1.0_0 CHR HKLM\...\Chrome\Extension: [deoijihiiolhlopbdlcphkfdobmkfkap] - C:\Documents and Settings\Użytkownik\Dane aplikacji\Chrome_updater\src.crx CHR HKLM\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files\Common Files\Spigot\GC\saebay_1.0.crx CHR HKLM\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files\Common Files\Spigot\GC\errorassistant_1.1.crx CHR HKLM\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx CHR HKLM\...\Chrome\Extension: [jbpkiefagocgkmemidfngdkamloieekf] - C:\Program Files\TornTV.com\torn10.crx CHR HKLM\...\Chrome\Extension: [jcdgjdiieiljkfkdcloehkohchhpekkn] - C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847}\SweetFB.crx CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx CHR HKLM\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Program Files\Common Files\Spigot\GC\coupons_2.4.crx CHR HKLM\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files\Common Files\Spigot\GC\saamazon_1.0.crx ========================== Services (Whitelisted) ================= S4 Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [807800 2013-08-28] (Spigot, Inc.) S3 EhttpSrv; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [19200 2008-07-01] (ESET) R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [468224 2008-07-01] (ESET) S2 NOD32FiXTemDono; C:\WINDOWS\nod32fixtemdono.reg [568 2008-03-03] () S4 RealNetworks Downloader Resolver Service; C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] () S4 Skype C2C Service; C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.) R2 JavaQuickStarterService; "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf" S4 winmgmt; C:\DOCUME~1\ALLUSE~1\DANEAP~1\9rfbdoi9.plz [x] ==================== Drivers (Whitelisted) ==================== S3 ASPI; C:\WINDOWS\System32\DRIVERS\ASPI32.sys [16512 2002-07-17] (Adaptec) S3 BRGSp50; C:\Windows\System32\Drivers\BRGSp50.sys [20608 2005-06-08] (Printing Communications Assoc., Inc. (PCAUSA)) R2 eamon; C:\Windows\System32\DRIVERS\eamon.sys [39944 2008-07-01] (ESET) R1 easdrv; C:\Windows\System32\DRIVERS\easdrv.sys [53256 2008-07-01] (ESET) R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [71688 2008-07-01] (ESET) R3 Epfwndis; C:\Windows\System32\DRIVERS\Epfwndis.sys [30728 2008-07-01] (ESET) R1 epfwtdi; C:\Windows\System32\DRIVERS\epfwtdi.sys [54280 2008-07-01] (ESET) S3 FilterService; C:\Windows\System32\DRIVERS\lvuvcflt.sys [23832 2009-05-01] (Logitech Inc.) S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) S3 PortTalk; C:\Windows\System32\Drivers\PortTalk.sys [3567 2002-01-12] (Beyond Logic http://www.beyondlogic.org) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [691696 2010-09-12] () S3 SRS_SSCFilter; C:\Windows\System32\drivers\srs_sscfilter_i386.sys [39808 2007-07-26] () S3 W8335XP; C:\Windows\System32\DRIVERS\Mrvw125.sys [282624 2010-09-10] (Marvell Semiconductor, Inc) S3 ZD1211BU(ZyDAS); C:\Windows\System32\DRIVERS\zd1211Bu.sys [477696 2006-08-24] (ZyDAS Technology Corporation) S3 ZDPSp50; C:\Windows\System32\Drivers\ZDPSp50.sys [17664 2004-10-25] (Printing Communications Assoc., Inc. (PCAUSA)) R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC}; E:\programy uzytkowe\PowerDVD\PowerDVD10\NavFilter\000.fcl [87536 2010-03-13] (CyberLink Corp.) S3 Ambfilt; system32\drivers\Ambfilt.sys [x] S3 cpu; \??\C:\cpu.sys [x] S3 EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys [x] S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [x] S3 efavdrv; \??\C:\WINDOWS\system32\drivers\efavdrv.sys [x] S3 IntcAzAudAddService; system32\drivers\RtkHDAud.sys [x] S4 IntelIde; No ImagePath S1 mdf15; \??\C:\Program Files\Clarus\Samsung SecretZone\mdf15.sys [x] S3 Monfilt; system32\drivers\Monfilt.sys [x] S1 mvd20; \??\C:\Program Files\Clarus\Samsung SecretZone\mvd20.sys [x] S3 PCASp50; System32\Drivers\PCASp50.sys [x] S3 SoC PC-Camera Service; system32\DRIVERS\pfc027.sys [x] U3 TlntSvr; U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-14 16:27 - 2013-09-14 16:27 - 00000000 ____D C:\FRST 2013-09-14 16:19 - 2013-09-14 16:19 - 00065536 _____ C:\WINDOWS\Minidump\Mini091413-01.dmp 2013-09-14 14:34 - 2013-09-14 14:34 - 00000415 _____ C:\WINDOWS\WINNT32.LOG 2013-09-14 14:34 - 2013-09-14 14:34 - 00000225 _____ C:\WINDOWS\DHCPUPG.LOG 2013-09-14 11:05 - 2013-09-14 11:05 - 00000000 __SHD C:\Documents and Settings\Administrator\PrivacIE 2013-09-14 11:04 - 2013-09-14 11:04 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google 2013-09-13 16:53 - 2013-09-13 16:53 - 00001936 _____ C:\WINDOWS\COM+.log 2013-09-13 13:24 - 2013-09-13 13:24 - 00016181 ____T C:\Documents and Settings\All Users\Dane aplikacji\b0cl.exe 2013-09-07 20:40 - 2013-09-07 20:40 - 00352264 _____ C:\Documents and Settings\Użytkownik\Pulpit\timer.sis 2013-09-04 19:34 - 2013-09-04 19:34 - 00000000 ____D C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\EA Games 2013-09-04 15:32 - 2013-09-04 15:32 - 00065536 _____ C:\WINDOWS\Minidump\Mini090413-01.dmp 2013-09-03 20:24 - 2013-09-03 20:25 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\ODIN 2013-09-03 20:20 - 2013-09-03 20:20 - 00369196 _____ C:\Documents and Settings\Użytkownik\Pulpit\ODIN-0-34-32Bit.zip 2013-09-02 19:59 - 2013-09-02 17:02 - 00003311 _____ C:\Documents and Settings\Użytkownik\Pulpit\Account Manager.xml 2013-08-30 17:08 - 2013-08-30 17:08 - 00000000 ____D C:\Program Files\IObit Toolbar 2013-08-30 17:03 - 2013-08-30 17:03 - 00000000 ____D C:\Program Files\Common Files\Spigot 2013-08-30 17:03 - 2013-08-30 17:03 - 00000000 ____D C:\Program Files\Application Updater 2013-08-30 17:03 - 2013-08-30 17:03 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Search Settings 2013-08-30 17:02 - 2013-08-30 17:04 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\systweak 2013-08-30 17:02 - 2013-08-30 17:02 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Vtools 2013-08-30 17:02 - 2013-08-30 17:02 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Windows Cleaner 2013-08-30 17:02 - 2013-08-30 17:02 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\IObit 2013-08-30 17:02 - 2012-01-20 14:14 - 00017280 _____ (Systweak Inc., (www.systweak.com)) C:\WINDOWS\system32\roboot.exe 2013-08-29 17:58 - 2013-08-29 17:58 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Win32 2013-08-24 15:58 - 2013-08-24 15:58 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\RealNetworks 2013-08-24 15:57 - 2013-08-24 15:57 - 00000929 _____ C:\Documents and Settings\All Users\Pulpit\RealPlayer.lnk 2013-08-24 15:57 - 2013-08-24 15:57 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks 2013-08-24 15:51 - 2013-08-24 15:51 - 00796848 _____ (RealNetworks, Inc.) C:\Documents and Settings\Użytkownik\Pulpit\RealPlayer.exe 2013-08-24 15:44 - 2013-08-24 15:44 - 00000000 ____D C:\Documents and Settings\UpdatusUser\Dane aplikacji\Real 2013-08-24 15:43 - 2013-08-24 15:49 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Real 2013-08-21 23:31 - 2013-08-22 23:16 - 00957090 _____ C:\Documents and Settings\Użytkownik\Pulpit\Untitled1.exe 2013-08-21 23:31 - 2013-08-22 23:16 - 00001347 _____ C:\Documents and Settings\Użytkownik\Pulpit\Untitled1.o 2013-08-21 23:30 - 2013-08-22 23:16 - 00000158 _____ C:\Documents and Settings\Użytkownik\Pulpit\Untitled1.cpp 2013-08-19 17:29 - 2013-08-19 17:29 - 00000000 ____D C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\Origin 2013-08-19 17:23 - 2013-09-04 19:27 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts 2013-08-19 17:23 - 2013-08-19 17:23 - 00000512 _____ C:\Documents and Settings\All Users\Pulpit\Origin.lnk 2013-08-19 17:23 - 2013-08-19 17:23 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Origin 2013-08-16 17:10 - 2013-08-19 17:31 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Origin ==================== One Month Modified Files and Folders ======= 2013-09-14 16:27 - 2013-09-14 16:27 - 00000000 ____D C:\FRST 2013-09-14 16:20 - 2010-09-10 11:30 - 01451059 _____ C:\WINDOWS\WindowsUpdate.log 2013-09-14 16:19 - 2013-09-14 16:19 - 00065536 _____ C:\WINDOWS\Minidump\Mini091413-01.dmp 2013-09-14 16:19 - 2011-01-07 13:09 - 00000000 ____D C:\WINDOWS\Minidump 2013-09-14 16:19 - 2010-09-10 12:33 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-09-14 16:19 - 2010-09-10 12:33 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-09-14 16:19 - 2010-09-10 11:39 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-09-14 16:18 - 2010-09-10 12:22 - 129724416 _____ C:\WINDOWS\MEMORY.DMP 2013-09-14 16:17 - 2011-11-28 16:09 - 00916003 _____ C:\WINDOWS\setupapi.log 2013-09-14 16:13 - 2010-09-10 11:40 - 00000188 ___SH C:\Documents and Settings\Użytkownik\ntuser.ini 2013-09-14 16:13 - 2010-09-10 11:39 - 00032394 _____ C:\WINDOWS\SchedLgU.Txt 2013-09-14 14:40 - 2013-05-16 11:42 - 00010312 _____ C:\WINDOWS\system32\nvAppTimestamps 2013-09-14 14:35 - 2010-09-10 12:31 - 01354385 _____ C:\WINDOWS\FaxSetup.log 2013-09-14 14:35 - 2010-09-10 12:31 - 00661803 _____ C:\WINDOWS\ocgen.log 2013-09-14 14:35 - 2010-09-10 12:31 - 00525762 _____ C:\WINDOWS\tsoc.log 2013-09-14 14:35 - 2010-09-10 12:31 - 00464516 _____ C:\WINDOWS\comsetup.log 2013-09-14 14:35 - 2010-09-10 12:31 - 00280101 _____ C:\WINDOWS\ntdtcsetup.log 2013-09-14 14:35 - 2010-09-10 12:31 - 00215156 _____ C:\WINDOWS\iis6.log 2013-09-14 14:35 - 2010-09-10 12:31 - 00084813 _____ C:\WINDOWS\ocmsn.log 2013-09-14 14:35 - 2010-09-10 12:31 - 00068264 _____ C:\WINDOWS\msgsocm.log 2013-09-14 14:35 - 2010-09-10 12:31 - 00001917 _____ C:\WINDOWS\imsins.log 2013-09-14 14:34 - 2013-09-14 14:34 - 00000415 _____ C:\WINDOWS\WINNT32.LOG 2013-09-14 14:34 - 2013-09-14 14:34 - 00000225 _____ C:\WINDOWS\DHCPUPG.LOG 2013-09-14 14:34 - 2010-09-10 12:28 - 00202775 _____ C:\WINDOWS\setupact.log 2013-09-14 14:31 - 2010-09-10 12:27 - 00000223 __RSH C:\boot.ini 2013-09-14 14:31 - 2008-04-15 14:00 - 00000910 _____ C:\WINDOWS\win.ini 2013-09-14 14:31 - 2008-04-15 14:00 - 00000227 _____ C:\WINDOWS\system.ini 2013-09-14 14:17 - 2010-09-10 11:40 - 00000000 ___RD C:\Documents and Settings\Użytkownik\Moje dokumenty\Moje obrazy 2013-09-14 14:11 - 2008-04-15 14:00 - 00001172 _____ C:\WINDOWS\system32\wpa.dbl 2013-09-14 14:10 - 2010-09-11 22:55 - 00000000 ____D C:\Program Files\Google 2013-09-14 14:06 - 2010-10-11 12:30 - 00001984 _____ C:\WINDOWS\system32\d3d9caps.dat 2013-09-14 11:36 - 2010-09-10 12:31 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy 2013-09-14 11:35 - 2010-09-10 11:40 - 00000000 ____D C:\Documents and Settings\Użytkownik\Menu Start\Programy 2013-09-14 11:28 - 2010-09-10 11:40 - 00000000 __RHD C:\Documents and Settings\Użytkownik\Dane aplikacji 2013-09-14 11:21 - 2010-09-10 12:31 - 00000000 ___RD C:\Documents and Settings\All Users\Dokumenty 2013-09-14 11:21 - 2010-09-10 12:00 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2013-09-14 11:20 - 2010-09-10 12:29 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-09-14 11:20 - 2010-09-10 11:40 - 00000000 ___HD C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji 2013-09-14 11:19 - 2010-09-12 17:44 - 00000000 ____D C:\Program Files\map&guide professional Version 13 2013-09-14 11:18 - 2011-10-01 14:00 - 00000000 ____D C:\Program Files\Magic ISO 2013-09-14 11:16 - 2013-05-18 11:02 - 00000188 ___SH C:\Documents and Settings\Administrator\ntuser.ini 2013-09-14 11:05 - 2013-09-14 11:05 - 00000000 __SHD C:\Documents and Settings\Administrator\PrivacIE 2013-09-14 11:05 - 2013-05-18 11:02 - 00000000 ____D C:\Documents and Settings\Administrator\Ulubione 2013-09-14 11:05 - 2013-05-18 11:02 - 00000000 ____D C:\Documents and Settings\Administrator 2013-09-14 11:04 - 2013-09-14 11:04 - 00000000 ____D C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Google 2013-09-14 11:04 - 2013-05-18 11:02 - 00000000 ___HD C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2013-09-14 11:04 - 2010-09-11 22:57 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Google 2013-09-14 10:46 - 2010-10-09 08:50 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-09-14 10:46 - 2010-09-10 13:17 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Adobe 2013-09-14 10:44 - 2010-09-11 19:57 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\uTorrent 2013-09-14 10:44 - 2010-09-10 12:31 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start 2013-09-14 10:44 - 2010-09-10 11:40 - 00000000 ___RD C:\Documents and Settings\Użytkownik\Pulpit 2013-09-14 09:31 - 2011-12-27 22:58 - 00000000 ____D C:\WINDOWS\pss 2013-09-14 09:31 - 2010-09-10 12:31 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy\Autostart 2013-09-14 09:31 - 2010-09-10 11:40 - 00000000 ___RD C:\Documents and Settings\Użytkownik\Menu Start\Programy\Autostart 2013-09-14 09:16 - 2011-10-05 19:59 - 00000000 _____ C:\WINDOWS\system32\Drivers\lvuvc.hs 2013-09-13 19:44 - 2010-09-10 12:31 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-09-13 17:14 - 2010-09-11 15:41 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\ESET 2013-09-13 17:01 - 2010-09-10 11:29 - 00000000 ____D C:\WINDOWS\system32\Restore 2013-09-13 16:53 - 2013-09-13 16:53 - 00001936 _____ C:\WINDOWS\COM+.log 2013-09-13 13:24 - 2013-09-13 13:24 - 00016181 ____T C:\Documents and Settings\All Users\Dane aplikacji\b0cl.exe 2013-09-13 12:59 - 2010-09-19 11:20 - 00000579 _____ C:\WINDOWS\pagebreeze.ini 2013-09-11 21:17 - 2010-09-11 16:22 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Skype 2013-09-11 20:18 - 2013-02-04 21:27 - 00002267 _____ C:\Documents and Settings\All Users\Pulpit\Skype.lnk 2013-09-07 20:40 - 2013-09-07 20:40 - 00352264 _____ C:\Documents and Settings\Użytkownik\Pulpit\timer.sis 2013-09-04 19:35 - 2013-06-14 09:55 - 00000000 ____D C:\Documents and Settings\Użytkownik\Moje dokumenty\EA Games 2013-09-04 19:34 - 2013-09-04 19:34 - 00000000 ____D C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\EA Games 2013-09-04 19:27 - 2013-08-19 17:23 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts 2013-09-04 19:20 - 2010-09-10 11:30 - 00000000 ____D C:\WINDOWS\system32\DirectX 2013-09-04 16:25 - 2012-09-08 14:09 - 00002341 _____ C:\Documents and Settings\Użytkownik\Pulpit\Google Chrome.lnk 2013-09-04 15:32 - 2013-09-04 15:32 - 00065536 _____ C:\WINDOWS\Minidump\Mini090413-01.dmp 2013-09-03 20:25 - 2013-09-03 20:24 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\ODIN 2013-09-03 20:23 - 2013-08-01 12:53 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\CodeBlocks 2013-09-03 20:20 - 2013-09-03 20:20 - 00369196 _____ C:\Documents and Settings\Użytkownik\Pulpit\ODIN-0-34-32Bit.zip 2013-09-02 17:02 - 2013-09-02 19:59 - 00003311 _____ C:\Documents and Settings\Użytkownik\Pulpit\Account Manager.xml 2013-09-01 23:39 - 2010-09-10 11:40 - 00000000 ____D C:\Documents and Settings\Użytkownik 2013-08-30 17:08 - 2013-08-30 17:08 - 00000000 ____D C:\Program Files\IObit Toolbar 2013-08-30 17:04 - 2013-08-30 17:02 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\systweak 2013-08-30 17:03 - 2013-08-30 17:03 - 00000000 ____D C:\Program Files\Common Files\Spigot 2013-08-30 17:03 - 2013-08-30 17:03 - 00000000 ____D C:\Program Files\Application Updater 2013-08-30 17:03 - 2013-08-30 17:03 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Search Settings 2013-08-30 17:02 - 2013-08-30 17:02 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Vtools 2013-08-30 17:02 - 2013-08-30 17:02 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Windows Cleaner 2013-08-30 17:02 - 2013-08-30 17:02 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\IObit 2013-08-29 19:06 - 2011-11-17 20:40 - 00000754 _____ C:\WINDOWS\WORDPAD.INI 2013-08-29 17:58 - 2013-08-29 17:58 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Win32 2013-08-24 22:41 - 2013-03-08 14:48 - 00065536 _____ C:\WINDOWS\system32\config\TuneUp.evt 2013-08-24 16:06 - 2013-03-08 14:48 - 00000000 ____D C:\Program Files\TuneUp Utilities 2013 2013-08-24 15:58 - 2013-08-24 15:58 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\RealNetworks 2013-08-24 15:58 - 2013-03-08 14:45 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\OpenCandy 2013-08-24 15:58 - 2010-09-16 19:22 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Real 2013-08-24 15:57 - 2013-08-24 15:57 - 00000929 _____ C:\Documents and Settings\All Users\Pulpit\RealPlayer.lnk 2013-08-24 15:57 - 2013-08-24 15:57 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\RealNetworks 2013-08-24 15:57 - 2013-03-08 14:44 - 00000000 ____D C:\Program Files\RealNetworks 2013-08-24 15:57 - 2013-03-08 14:43 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\RealNetworks 2013-08-24 15:56 - 2013-03-09 18:23 - 00201872 _____ (RealNetworks, Inc.) C:\WINDOWS\system32\rmoc3260.dll 2013-08-24 15:56 - 2013-03-09 18:23 - 00006656 _____ (RealNetworks, Inc.) C:\WINDOWS\system32\pndx5016.dll 2013-08-24 15:56 - 2013-03-09 18:23 - 00005632 _____ (RealNetworks, Inc.) C:\WINDOWS\system32\pndx5032.dll 2013-08-24 15:56 - 2013-03-09 17:40 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Real 2013-08-24 15:56 - 2010-09-16 19:22 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp71.dll 2013-08-24 15:51 - 2013-08-24 15:51 - 00796848 _____ (RealNetworks, Inc.) C:\Documents and Settings\Użytkownik\Pulpit\RealPlayer.exe 2013-08-24 15:51 - 2011-12-12 16:42 - 20854256 _____ (RealNetworks, Inc.) C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\RealPlayerSPGold.exe 2013-08-24 15:49 - 2013-08-24 15:43 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Real 2013-08-24 15:49 - 2010-09-16 19:22 - 00000000 ____D C:\Program Files\Common Files\Real 2013-08-24 15:44 - 2013-08-24 15:44 - 00000000 ____D C:\Documents and Settings\UpdatusUser\Dane aplikacji\Real 2013-08-24 15:44 - 2012-05-30 12:30 - 00000000 __RHD C:\Documents and Settings\UpdatusUser\Dane aplikacji 2013-08-24 15:43 - 2010-09-16 19:22 - 00278528 _____ (Real Networks, Inc) C:\WINDOWS\system32\pncrt.dll 2013-08-23 14:48 - 2010-09-13 20:26 - 00000000 ____D C:\Documents and Settings\Użytkownik\Pulpit\ikony 2013-08-22 23:16 - 2013-08-21 23:31 - 00957090 _____ C:\Documents and Settings\Użytkownik\Pulpit\Untitled1.exe 2013-08-22 23:16 - 2013-08-21 23:31 - 00001347 _____ C:\Documents and Settings\Użytkownik\Pulpit\Untitled1.o 2013-08-22 23:16 - 2013-08-21 23:30 - 00000158 _____ C:\Documents and Settings\Użytkownik\Pulpit\Untitled1.cpp 2013-08-21 10:45 - 2010-09-11 22:55 - 00000000 ____D C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\Google 2013-08-19 17:31 - 2013-08-16 17:10 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Origin 2013-08-19 17:29 - 2013-08-19 17:29 - 00000000 ____D C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Dane aplikacji\Origin 2013-08-19 17:23 - 2013-08-19 17:23 - 00000512 _____ C:\Documents and Settings\All Users\Pulpit\Origin.lnk 2013-08-19 17:23 - 2013-08-19 17:23 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Origin 2013-08-19 17:20 - 2012-11-02 16:22 - 00000000 ____D C:\Documents and Settings\Użytkownik\Dane aplikacji\Origin Some content of TEMP: ==================== C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\7za.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\AdobeAIRInstaller.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\CH.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\Copy.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\drm_dyndata_7400009.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\FastActivateMetaGet.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\gidle.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\jre-6u31-windows-i586-iftw-rv.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\LIVETOOLBAR_Setup.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\lowproc.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\lws_lws.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\NEventMessages.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\NEW4164.tmp.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\NGM.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\NGMDll.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\NGMResource.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\Nokia_PC_Suite_pol.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\ose00000.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\rnsetup0.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\rnupdate0.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\rnupdate1.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\rnupdate2.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\SCC.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\SecurityScan_Release.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\SIMEEIInstaller.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\SkypeSetup.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\SRSHDAL_x86.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\stubhelper.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\swt-win32-3349.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\ubiD0F.tmp.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\unicows.dll C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\Uninstall.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\Updater.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\winamp5581_pro_all.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\xmlUpdater.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_is170.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_is560.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD04.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD05.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD06.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD57.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD59.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD5A.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD5C.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD5D.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD5E.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isD5F.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isDAD.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isDC2.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isDC3.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isDC8.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isE14.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isE15.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isE60.exe C:\Documents and Settings\Użytkownik\Ustawienia lokalne\Temp\_isEAF.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2008-04-15 14:00] - [2008-04-15 14:00] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2008-04-15 14:00] - [2008-04-15 14:00] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2008-04-15 14:00] - [2008-04-15 14:00] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2008-04-15 14:00] - [2009-02-09 13:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2008-04-15 14:00] - [2008-04-15 14:00] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2008-04-15 14:00] - [2008-04-15 14:00] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2008-04-15 14:00] - [2008-04-15 14:00] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================