Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-09-2013 Ran by Michal (administrator) on ROG on 22-09-2013 22:50:58 Running from C:\Users\Michal\Downloads Windows 7 Home Premium (X64) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe () C:\Program Files\Asus\Rotation Desktop for G Series\AsusUacSvc.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Fan Filter Checker\FanChkSrv.exe () C:\Program Files (x86)\HDD Health\HDDHealthService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (VIA Technologies, Inc.) C:\Windows\system32\viakaraokesrv.exe (Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Spotify Ltd) C:\Users\Michal\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (PANTERASoft) C:\Program Files (x86)\HDD Health\hddhealth.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe (Dropbox, Inc.) C:\Users\Michal\AppData\Roaming\Dropbox\bin\Dropbox.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe () D:\Program Files (x86)\Rainmeter\Rainmeter.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (ASUS) C:\Windows\AsScrPro.exe () C:\Program Files (x86)\ASUS Gaming Mouse GX850\hid.exe (Western Digital) C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe () C:\Users\Michal\Desktop\ .exe (Apple Inc.) D:\Program Files (x86)\iTunes\iTunesHelper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Adobe Systems, Inc.) C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS6\Dreamweaver.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Dominik Reichl) C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe (FileZilla Project) C:\Program Files (x86)\FileZilla FTP Client\filezilla.exe (BitTorrent Inc.) C:\Program Files (x86)\uTorrent\uTorrent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\regedit.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (OldTimer Tools) C:\Users\Michal\Downloads\OTL.exe () C:\Program Files (x86)\ASUS Gaming Mouse GX850\Tray.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1014432 2011-12-29] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800416 2011-12-29] (Atheros Commnucations) HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [373248 2012-03-28] (Alcor Micro Corp.) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2869008 2012-01-26] (Synaptics Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated) HKCU\...\Run: [GoogleChromeAutoLaunch_7999338B87431E4923015A2D4B0F7CC3] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [846288 2013-07-03] (Google Inc.) HKCU\...\Run: [Spotify Web Helper] - C:\Users\Michal\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1104384 2013-07-09] (Spotify Ltd) HKCU\...\Run: [0A14387EAFBAB88ACCEEB47F832213FBAA886F44._service_run] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [846288 2013-07-03] (Google Inc.) HKCU\...\Run: [RocketDock] - "C:\Program Files (x86)\RocketDock\RocketDock.exe" HKCU\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-09-14] (Apple Inc.) MountPoints2: {96215fe2-4a73-11e2-9c16-dc85de17c104} - F:\AUTORUN.EXE MountPoints2: {b7b318ca-34bc-11e2-9c1c-806e6f6e6963} - E:\InstAll.exe HKLM-x32\...\Run: [HDAudDeck] - C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5138032 2012-03-30] (VIA) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-07] (Intel Corporation) HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322176 2012-02-16] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720 2011-10-24] (ASUS) HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2321072 2012-02-02] (ASUSTeK Computer Inc.) HKLM-x32\...\Run: [ASUS Screen Saver Protector] - C:\Windows\AsScrPro.exe [3058304 2012-11-22] (ASUS) HKLM-x32\...\Run: [ROGGX850] - C:\Program Files (x86)\ASUS Gaming Mouse GX850\hid.exe [466944 2011-09-19] () HKLM-x32\...\Run: [AdobeCS6ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated) HKLM-x32\...\Run: [WD Drive Unlocker] - C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [1688008 2012-09-06] (Western Digital) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software) HKLM-x32\...\Run: [BrStsMon00] - C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2621440 2010-02-09] (Brother Industries, Ltd.) HKLM-x32\...\Run: [KeePass 2 PreLoad] - C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2010624 2013-07-20] (Dominik Reichl) HKLM-x32\...\Run: ["C:\Program Files (x86)\D-Link\D-ViewCam\MainConsole.exe"] - C:\Program Files (x86)\D-Link\D-ViewCam\MainConsole.exe [10663232 2012-03-16] (D-Link Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [WD Quick View] - C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5537136 2013-08-14] (Western Digital Technologies, Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Shairport4w] - C:\Users\Michal\Desktop\ .exe [1433088 2013-05-29] () HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - D:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-09-17] (Apple Inc.) Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Michal\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk ShortcutTarget: Rainmeter.lnk -> D:\Program Files (x86)\Rainmeter\Rainmeter.exe () ==================== Internet (Whitelisted) ==================== StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchTerms}&affID=44444&babsrc=SP_ss&mntrId=5A88FE85DE163A64 BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Pomocnik logowania za pomocą identyfikatora Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: HKLM-x32 {12193C65-F0E1-4DD1-AD4E-DB73C6911014} file:///C:/Users/Michal/Desktop/DCS-932L_A1_wizard_v_1.01_1822/DCS-932L_1822/activeX/DCP.cab DPF: HKLM-x32 {7191F0AC-D686-46A8-BFCC-EA61778C74DD} file:///C:/Users/Michal/Desktop/DCS-932L_A1_wizard_v_1.01_1822/DCS-932L_1822/activeX/aplugLiteDL.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 10.0.2.1 Chrome: ======= CHR HomePage: hxxp://www.feedly.com/home#my CHR RestoreOnStartup: "hxxp://www.gmail.com/", "hxxp://speckyboy.com/", "hxxp://www.webdesignerdepot.com/", "hxxp://tympanus.net/codrops/", "hxxp://grafmag.pl/" CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.71\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.71\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.71\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Extension: (Entanglement Web App) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd\3.4.9_0 CHR Extension: (Bejeweled) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\adpkifcfcacgmnggcbpbjbkdijciiigm\2_0 CHR Extension: (Theme Creator) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\akpelnjfckgfiplcikojhomllgombffc\2.5_0 CHR Extension: (Google Drive) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Facebook Disconnect) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpepffjfmamnambagiibghpglaidiec\1.3.0_0 CHR Extension: (Photo Zoom for Facebook) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1208.30.1_0 CHR Extension: (Print Using Google Cloud Print\u2122) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffaifmgpcdjedlffbhenaloimajbdkfg\0.35_0 CHR Extension: (Chuck Anderson) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gegkoiakifeoejnjkbnnojkkdoegeofp\3_0 CHR Extension: (AdBlock) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.7_0 CHR Extension: (Feedly - News, Blogs and Youtube) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipbfijinpcgfogaopmgehiegacbhmob\18.1_0 CHR Extension: (Pocket Website) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\jijgclgmgjipgefcnnnibgllfonlfdap\1.0.2_0 CHR Extension: (Kill Facebook Questions) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\kblnmiaeiakehndaagoomiddbblbeeoh\1.1.2_0 CHR Extension: (Auto HD For YouTube) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\koiaokdomkpjdgniimnkhgbilbjgpeak\4.0.2_0 CHR Extension: (Webcam Toy) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfbgimoladefibpklnfmkpknadbklade\1.5_0 CHR Extension: (Right Inbox for Gmail) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mflnemhkomgploogccdmcloekbloobgb\3.1.4_0 CHR Extension: (Do It (Tomorrow)) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfagjoblnoeagfhfhohcdklnddjaiglo\1.1.0_0 CHR Extension: (Pocket (formerly Read It Later)) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj\1.5.6_0 CHR Extension: (Moqups \u00B7 Mockups, Wireframes & Prototyping) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlfbhphohgafllkjnakmdppmmkjfbnke\2.3.5_0 CHR Extension: (Hover Zoom) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl\4.21_0 CHR Extension: (All Cheat Sheets) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\oedodeocfdeegliepeeoieemhdgoijod\1.1_0 CHR Extension: (chromeIPass) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ompiailgknfdndiefoaoiligalphfdae\2.6.6_0 CHR Extension: (BurgerTime Deluxe) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pafbmflamcpnanjggldablgfdmhblhgb\1.108_0 CHR Extension: (Gmail) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR Extension: (Canvas Rider) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\poknhlcknimnnbfcombaooklofipaibk\0.71_0 ==================== Services (Whitelisted) ================= R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120 2012-02-16] (ASUS) R2 AsusUacSvc; C:\Program Files\Asus\Rotation Desktop for G Series\AsusUacSvc.exe [113840 2011-03-27] () R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) R2 FanChkService; C:\Program Files (x86)\ASUS\ASUS Fan Filter Checker\FanChkSrv.exe [45696 2012-01-20] (ASUSTek Computer Inc.) R2 HDDHealth; C:\Program Files (x86)\HDD Health\HDDHealthService.exe [72640 2012-06-07] () R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-21] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-21] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MSSQL$ELISOFT; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-08-16] () R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2012-03-23] (VIA Technologies, Inc.) S3 wampapache; c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe [24576 2013-06-23] (Apache Software Foundation) S3 wampmysqld; c:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe [12867584 2013-06-23] () R2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2013-08-14] (Western Digital Technologies, Inc.) R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [270704 2013-08-14] (Western Digital Technologies, Inc.) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [613760 2012-10-29] (Wacom Technology, Corp.) R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-12-29] (Atheros) ==================== Drivers (Whitelisted) ==================== S3 AiCharger; C:\Windows\SysWow64\DRIVERS\AiCharger.sys [17152 2012-02-29] (ASUSTek Computer Inc.) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-08-24] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-08-24] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-08-24] () S2 ISMPUSBFilter; C:\Windows\SysWow64\DRIVERS\ISMPUSBFilter.sys [16384 2012-12-04] (Innostor Technology Corporation) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 PXGX112; C:\Windows\System32\drivers\PXGX112.sys [23552 2011-07-29] ( ) R3 SmbDrv; C:\Windows\System32\DRIVERS\Smb_driver.sys [22800 2012-01-26] (Synaptics Incorporated) S3 ASUSProcObsrv; \??\E:\I386\AsPrOb64.sys [x] S2 ISMPUSBFilter; system32\DRIVERS\ISMPUSBFilter.sys [x] R4 sptd; \SystemRoot\System32\Drivers\sptd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-22 22:50 - 2013-09-22 22:50 - 00000000 ____D C:\FRST 2013-09-22 22:47 - 2013-09-22 22:47 - 00000000 ____D C:\Users\Michal\Desktop\raport 2013-09-22 18:16 - 2013-09-22 18:16 - 01956670 _____ (Farbar) C:\Users\Michal\Downloads\FRST64.exe 2013-09-22 18:12 - 2013-09-22 18:12 - 00602112 _____ (OldTimer Tools) C:\Users\Michal\Downloads\OTL.exe 2013-09-22 18:08 - 2013-09-22 18:08 - 00797784 _____ (Duplex Secure Ltd.) C:\Users\Michal\Downloads\SPTDinst-v183-x64.exe 2013-09-22 17:31 - 2013-09-22 17:31 - 00192065 _____ C:\Users\Michal\Downloads\Roccos POV O1-31.torrent 2013-09-22 15:45 - 2013-09-22 15:56 - 1478669811 _____ C:\Users\Michal\Desktop\iPad3,6_7.0_11A465_Restore.ipsw 2013-09-22 15:31 - 2013-09-22 15:43 - 1324088264 _____ C:\Users\Michal\Desktop\iPhone5,2_7.0_11A465_Restore.ipsw 2013-09-22 15:05 - 2013-09-22 15:17 - 1478626754 _____ C:\Users\Michal\Downloads\iPad3,5_7.0_11A465_Restore (1).ipsw 2013-09-22 14:54 - 2013-09-22 15:05 - 05043872 _____ C:\Users\Michal\Downloads\iPad3,5_7.0_11A465_Restore.ipsw 2013-09-22 14:49 - 2013-09-22 14:49 - 00000000 ___RD C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2013-09-21 10:40 - 2013-09-21 10:40 - 00001568 _____ C:\Users\Public\Desktop\iTunes.lnk 2013-09-21 10:40 - 2013-09-21 10:40 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-09-21 10:40 - 2013-09-21 10:40 - 00000000 ____D C:\Program Files\iTunes 2013-09-21 10:40 - 2013-09-21 10:40 - 00000000 ____D C:\Program Files\iPod 2013-09-18 02:21 - 2013-09-18 03:39 - 00000000 ____D C:\Users\Michal\Desktop\silniki 2013-09-18 01:23 - 2013-09-18 01:24 - 00003284 _____ C:\Users\Michal\Desktop\nazwy.html 2013-09-18 01:05 - 2013-09-18 01:05 - 00000072 _____ C:\Users\Michal\Desktop\BezNazwy1.cpp 2013-09-18 01:03 - 2013-09-18 01:04 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Dev-Cpp 2013-09-18 01:03 - 2013-09-18 01:03 - 00000707 _____ C:\Users\UpdatusUser\Desktop\Dev-C++.lnk 2013-09-18 01:03 - 2013-09-18 01:03 - 00000707 _____ C:\Users\Michal\Desktop\Dev-C++.lnk 2013-09-18 00:59 - 2013-09-18 01:02 - 43630313 _____ C:\Users\Michal\Downloads\Dev-Cpp 5.4.2 TDM-GCC x64 4.7.1 Setup.exe 2013-09-18 00:18 - 2013-09-18 00:18 - 00006039 _____ C:\Users\Michal\Downloads\AlwaysOnTopMaker.zip 2013-09-17 20:06 - 2013-09-17 20:06 - 00015383 _____ C:\Users\Michal\Downloads\3096.Tage.2013.SUB.PL.AC3.480p.BRRip.XviD-TLRG.torrent 2013-09-17 20:02 - 2013-09-17 21:17 - 1295972961 _____ C:\Users\Michal\Downloads\COD ST 1.0.0-Locophone-ICPDA.rc30e7.ipa 2013-09-17 20:01 - 2013-09-17 20:03 - 44481170 _____ C:\Users\Michal\Downloads\Plague Inc. (v1.6.2 Univ os43)-Locophone-ICPDA.rc30e7.ipa 2013-09-17 17:29 - 2013-09-17 17:29 - 03591836 _____ C:\Windows\SysWOW64\lame.exe -b 192 -h -r - sp4w_out.mp3.au 2013-09-17 16:15 - 2013-09-17 16:15 - 00000936 _____ C:\Users\Michal\Desktop\Evernote.lnk 2013-09-17 16:15 - 2013-09-17 16:15 - 00000000 ____D C:\Users\Michal\AppData\Local\Evernote 2013-09-17 16:15 - 2013-09-17 16:15 - 00000000 ____D C:\Program Files (x86)\Evernote 2013-09-17 16:11 - 2013-09-17 16:12 - 57161568 _____ (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Users\Michal\Downloads\Evernote_5.0.1.1188.exe 2013-09-17 14:39 - 2013-09-17 14:39 - 00001915 _____ C:\Users\Michal\Downloads\RAL.txt 2013-09-16 00:42 - 2013-09-16 00:42 - 00000059 _____ C:\Users\Michal\Desktop\stopka_joanna2.html 2013-09-16 00:42 - 2013-09-16 00:42 - 00000058 _____ C:\Users\Michal\Desktop\stopka_artur2.html 2013-09-15 01:43 - 2013-09-15 01:43 - 00000000 ____D C:\Users\Michal\Desktop\philips 2013-09-12 09:56 - 2013-09-12 09:56 - 00001556 _____ C:\Users\Michal\Desktop\OFR- -OK AKT.pdf — skrót.lnk 2013-09-12 09:41 - 2013-09-12 17:29 - 00000000 ____D C:\Users\Michal\Desktop\okna_z_magazynu 2013-09-12 07:12 - 2013-09-12 07:12 - 00077740 _____ C:\Users\Michal\Downloads\mycherrycrushSITERIPPART1-2.torrent 2013-09-11 03:41 - 2013-09-11 03:41 - 06513608 _____ ( ) C:\Users\Michal\Downloads\Sublime Text 2.0.2 x64 Setup.exe 2013-09-10 23:43 - 2013-09-10 23:43 - 00000058 _____ C:\Users\Michal\Desktop\stopka_joanna.html 2013-09-10 23:43 - 2013-09-10 23:43 - 00000057 _____ C:\Users\Michal\Desktop\stopka_artur.html 2013-09-10 22:48 - 2013-09-10 22:48 - 00000053 _____ C:\Users\Michal\Desktop\stopka.html 2013-09-10 22:45 - 2013-09-10 22:46 - 04812567 _____ (Tim Kosse) C:\Users\Michal\Desktop\FileZilla_3.7.3_win32-setup.exe 2013-09-10 15:05 - 2013-09-10 15:05 - 00001238 _____ C:\Users\Michal\Desktop\Untitled-3.html 2013-09-10 14:40 - 2013-09-10 14:58 - 00002474 _____ C:\Users\Michal\Desktop\Untitled-1.html 2013-09-10 13:36 - 2013-09-10 13:36 - 00010268 _____ C:\Users\Michal\Downloads\bj_130_720p.mp4.torrent 2013-09-10 11:12 - 2013-09-10 11:12 - 00000098 _____ C:\Users\Michal\Desktop\fix.reg 2013-09-10 00:58 - 2013-09-10 00:58 - 00106547 _____ C:\Users\Michal\Downloads\example.zip 2013-09-09 02:18 - 2013-09-09 02:18 - 00160884 _____ C:\Users\Michal\Downloads\CzechCasting E401-E500.Siterip.720p-IPT.torrent 2013-09-08 02:51 - 2013-09-08 02:51 - 00026756 _____ C:\Users\Michal\Downloads\banery_rnf.rar 2013-09-07 22:43 - 2013-09-07 22:43 - 00726791 _____ C:\Users\Michal\Downloads\FreeVector-Jigsaw-Puzzle.zip 2013-09-07 22:43 - 2012-10-01 20:10 - 00402482 _____ C:\Users\Michal\Desktop\FreeVector-Jigsaw-Puzzle.ai 2013-09-07 08:09 - 2013-09-07 08:17 - 91347872 _____ C:\Users\Michal\Downloads\Transformers 3_ Dark of the Moon Movie Trailer 4 Official (HD).mp4 2013-09-07 08:03 - 2013-09-07 08:05 - 00000000 ____D C:\Users\Michal\Desktop\piotr 2013-09-06 03:17 - 2013-09-06 03:17 - 00071397 _____ C:\Users\Michal\Downloads\throw_my_hands_up_in_the_air.zip 2013-09-06 02:47 - 2013-09-06 02:47 - 00001500 _____ C:\Users\Michal\Desktop\ .lnk 2013-09-06 02:42 - 2013-09-06 02:46 - 00000000 ___RD C:\Users\Michal\Desktop\  2013-09-06 02:41 - 2013-05-29 09:42 - 01433088 _____ C:\Users\Michal\Desktop\ .exe 2013-09-06 02:36 - 2013-09-06 02:36 - 01069215 _____ (RaMMicHaeL) C:\Users\Michal\Downloads\7tt_setup.exe 2013-09-06 02:35 - 2013-09-06 02:35 - 00685248 _____ C:\Users\Michal\Downloads\7-Taskbar-Tweaker(35477).exe 2013-09-06 02:11 - 2013-09-06 02:35 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-09-06 02:10 - 2013-09-06 02:11 - 06463660 _____ (Punk Software ) C:\Users\Michal\Downloads\RocketDock-v1.3.5.exe 2013-09-05 21:08 - 2013-09-05 21:08 - 00102050 _____ C:\Users\Michal\Downloads\jzaefferer-jquery-treeview-1.4.1-0-g3937863.zip 2013-09-05 15:09 - 2013-09-05 15:09 - 00006452 _____ C:\Users\Michal\Downloads\TL.Action.torrent 2013-09-04 04:07 - 2013-09-04 04:07 - 08429794 _____ C:\Users\Michal\Downloads\hong_kong_by_rurounivash-d3bvvwf.zip 2013-09-04 04:07 - 2013-09-04 04:07 - 00306484 _____ C:\Users\Michal\Downloads\rainmeter___encoded_v1_2_3_by_lilshizzy-d3klh7x.rmskin 2013-09-04 03:49 - 2013-09-04 03:49 - 00345068 _____ C:\Users\Michal\Downloads\rainmeter___simple_media_1_1_by_lilshizzy-d3img0c.rmskin 2013-09-04 03:46 - 2013-09-04 03:46 - 00673098 _____ C:\Users\Michal\Downloads\rainmeter___ribbits_v1_0_by_lilshizzy-d3ja088.rmskin 2013-09-04 03:45 - 2013-09-04 03:45 - 00906292 _____ C:\Users\Michal\Downloads\Dot Launchers 1.0.zip 2013-09-04 03:00 - 2013-09-04 03:00 - 05392710 _____ C:\Users\Michal\Downloads\USB3_Intel_Win7_64_Z103214.zip 2013-09-04 02:59 - 2013-09-04 03:01 - 134354556 _____ C:\Users\Michal\Downloads\Audio_VIA_Win7_64_Z600110600.zip 2013-09-04 02:38 - 2013-09-04 02:38 - 00000000 ____D C:\Windows\System32\Tasks\Western Digital 2013-09-04 02:37 - 2013-09-04 02:37 - 00000000 ____D C:\Users\Michal\AppData\Local\Western_Digital_Technolog 2013-09-04 02:30 - 2013-09-04 02:30 - 00000000 ____D C:\Program Files\WDCSAM 2013-09-04 02:30 - 2013-09-04 02:30 - 00000000 ____D C:\Program Files\DIFX 2013-09-04 02:28 - 2013-09-22 14:49 - 00008192 _____ C:\Windows\SysWOW64\WDPABKP.dat 2013-09-04 02:28 - 2013-09-04 02:28 - 00000000 ____D C:\Program Files\Western Digital 2013-09-04 02:28 - 2013-09-04 02:28 - 00000000 ____D C:\Program Files\Common Files\Western Digital 2013-09-04 02:25 - 2013-09-04 02:26 - 34335877 _____ C:\Users\Michal\Downloads\WD_SmartWare_Installer_2.2.0.8.zip 2013-09-04 02:19 - 2013-09-04 02:19 - 00035953 _____ C:\Users\Michal\Downloads\jquery.bxslider (1).zip 2013-09-04 01:00 - 2013-09-04 01:00 - 00378553 _____ C:\Users\Michal\Downloads\WD_SES_Driver_Setup_x64.zip 2013-09-04 00:59 - 2013-09-04 00:59 - 01446477 _____ C:\Users\Michal\Downloads\WDFirmwareUpdater.zip 2013-09-03 01:26 - 2013-09-03 01:27 - 16371216 _____ C:\Users\Michal\Downloads\tree_silhouettes.zip 2013-09-02 17:22 - 2013-09-02 17:22 - 00239365 _____ C:\Users\Michal\Downloads\CustomDropDownListStyling.zip 2013-09-02 16:22 - 2013-09-02 16:23 - 00000000 ____D C:\Users\Michal\Documents\Free Sound Recorder 2013-09-02 16:22 - 2013-09-02 16:23 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Free Sound Recorder 2013-09-02 16:22 - 2013-09-02 16:22 - 00001157 _____ C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Free Sound Recorder.lnk 2013-09-02 16:22 - 2013-09-02 16:22 - 00000000 ____D C:\Program Files (x86)\Free Sound Recorder 2013-09-02 16:22 - 2006-03-23 12:56 - 00113486 _____ C:\Windows\SysWOW64\NCTWMAProfiles.prx 2013-09-02 16:22 - 2005-05-18 11:52 - 01212416 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioInformation2.dll 2013-09-02 16:22 - 2005-05-17 12:37 - 01986560 _____ (NCT Company Ltd.) C:\Windows\SysWOW64\NCTAudioFile2.dll 2013-09-02 16:22 - 2005-04-25 13:01 - 00458752 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioRecord2.dll 2013-09-02 16:22 - 2005-04-25 13:01 - 00458752 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioPlayer2.dll 2013-09-02 16:22 - 2005-04-15 12:08 - 00880640 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioEditor2.dll 2013-09-02 16:22 - 2005-04-04 17:21 - 00602112 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioTransform2.dll 2013-09-02 16:22 - 2005-03-28 15:54 - 00479232 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTAudioVisualization2.dll 2013-09-02 16:22 - 2005-03-28 15:52 - 00417792 _____ (Online Media Technologies Ltd.) C:\Windows\SysWOW64\NCTTextToAudio2.dll 2013-09-02 16:22 - 2005-02-24 11:51 - 00348160 _____ (NCT Company Ltd.) C:\Windows\SysWOW64\NCTWMAFile2.dll 2013-09-02 16:22 - 2004-11-04 13:31 - 00835584 _____ (NCT) C:\Windows\SysWOW64\NCTAudioCDGrabber2.dll 2013-09-02 16:19 - 2013-09-02 16:20 - 11129456 _____ (Copyright© 2005-2013 FreeSoundRecorder Technologies, Inc. ) C:\Users\Michal\Downloads\FreeSoundRecorder.exe 2013-09-02 09:46 - 2013-09-02 09:46 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tropico 2013-09-02 09:46 - 2001-01-12 19:47 - 00122884 _____ C:\Windows\UnGins.exe 2013-09-02 02:32 - 2013-09-02 02:33 - 12507180 _____ C:\Users\Michal\Downloads\hondaaukcja.zip 2013-09-02 02:30 - 2013-09-02 02:30 - 01381763 _____ C:\Users\Michal\Downloads\FreeVector-Honda-Logo.zip 2013-08-31 01:07 - 2013-08-31 01:08 - 09737391 _____ C:\Users\Michal\Downloads\panel.zip 2013-08-29 21:22 - 2013-08-30 09:33 - 00000000 ____D C:\Users\Michal\AppData\Local\Unity 2013-08-29 21:22 - 2013-08-29 21:22 - 00648144 _____ (Unity Technologies ApS) C:\Users\Michal\Downloads\UnityWebPlayer.exe 2013-08-27 03:02 - 2013-08-27 03:27 - 818829961 _____ C:\Users\Michal\Downloads\Tropico PL.rar 2013-08-25 08:29 - 2013-08-25 08:29 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-08-25 08:29 - 2013-08-25 08:29 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-08-25 08:29 - 2013-08-25 08:29 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-08-25 08:29 - 2013-08-25 08:29 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-08-25 08:28 - 2013-08-25 08:28 - 00903080 _____ (Oracle Corporation) C:\Users\Michal\Downloads\chromeinstall-7u25.exe 2013-08-24 04:22 - 2013-08-24 04:22 - 00089223 _____ C:\Users\Michal\Downloads\jquery-mousewheel-master.zip 2013-08-24 03:26 - 2013-08-24 03:26 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum 2013-08-24 03:26 - 2013-08-24 03:26 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum 2013-08-24 03:26 - 2013-08-24 03:26 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum 2013-08-24 02:00 - 2013-08-24 02:00 - 00030888 _____ C:\Users\Michal\Downloads\CreativeLinkEffects (1).zip 2013-08-24 01:20 - 2013-08-24 01:22 - 189809510 _____ C:\Users\Michal\Downloads\battlefield3_ost_flac_1376097075.zip 2013-08-23 19:39 - 2013-08-23 19:40 - 00000000 ____D C:\wamp 2013-08-23 19:34 - 2013-08-23 19:36 - 40603386 _____ (Hervé Leclerc (HeL) ) C:\Users\Michal\Downloads\Wampserver2.4-x64.exe 2013-08-23 19:30 - 2013-08-23 19:31 - 34934739 _____ (WebsSrv.PL ) C:\Users\Michal\Downloads\WebServ-2.1.exe 2013-08-23 18:46 - 2013-08-23 18:46 - 00000000 ____D C:\Users\Michal\Documents\Electronic Arts ==================== One Month Modified Files and Folders ======= 2013-09-22 22:50 - 2013-09-22 22:50 - 00000000 ____D C:\FRST 2013-09-22 22:50 - 2013-01-17 00:20 - 00000000 ____D C:\Users\Michal\AppData\Roaming\uTorrent 2013-09-22 22:47 - 2013-09-22 22:47 - 00000000 ____D C:\Users\Michal\Desktop\raport 2013-09-22 21:39 - 2012-11-22 17:57 - 01348095 _____ C:\Windows\WindowsUpdate.log 2013-09-22 18:16 - 2013-09-22 18:16 - 01956670 _____ (Farbar) C:\Users\Michal\Downloads\FRST64.exe 2013-09-22 18:12 - 2013-09-22 18:12 - 00602112 _____ (OldTimer Tools) C:\Users\Michal\Downloads\OTL.exe 2013-09-22 18:08 - 2013-09-22 18:08 - 00797784 _____ (Duplex Secure Ltd.) C:\Users\Michal\Downloads\SPTDinst-v183-x64.exe 2013-09-22 17:31 - 2013-09-22 17:31 - 00192065 _____ C:\Users\Michal\Downloads\Roccos POV O1-31.torrent 2013-09-22 16:01 - 2012-11-27 14:39 - 00000000 ____D C:\Users\Michal\AppData\Roaming\FileZilla 2013-09-22 15:59 - 2012-11-25 01:23 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Dropbox 2013-09-22 15:56 - 2013-09-22 15:45 - 1478669811 _____ C:\Users\Michal\Desktop\iPad3,6_7.0_11A465_Restore.ipsw 2013-09-22 15:43 - 2013-09-22 15:31 - 1324088264 _____ C:\Users\Michal\Desktop\iPhone5,2_7.0_11A465_Restore.ipsw 2013-09-22 15:17 - 2013-09-22 15:05 - 1478626754 _____ C:\Users\Michal\Downloads\iPad3,5_7.0_11A465_Restore (1).ipsw 2013-09-22 15:05 - 2013-09-22 14:54 - 05043872 _____ C:\Users\Michal\Downloads\iPad3,5_7.0_11A465_Restore.ipsw 2013-09-22 14:58 - 2009-07-14 19:55 - 00785530 _____ C:\Windows\system32\perfh015.dat 2013-09-22 14:58 - 2009-07-14 19:55 - 00172940 _____ C:\Windows\system32\perfc015.dat 2013-09-22 14:58 - 2009-07-14 07:13 - 01796992 _____ C:\Windows\system32\PerfStringBackup.INI 2013-09-22 14:56 - 2009-07-14 06:45 - 00015504 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-22 14:56 - 2009-07-14 06:45 - 00015504 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-22 14:49 - 2013-09-22 14:49 - 00000000 ___RD C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices 2013-09-22 14:49 - 2013-09-04 02:28 - 00008192 _____ C:\Windows\SysWOW64\WDPABKP.dat 2013-09-22 14:49 - 2012-11-22 18:17 - 00000828 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job 2013-09-22 14:49 - 2012-11-22 18:15 - 00000000 ____D C:\ProgramData\NVIDIA 2013-09-22 14:49 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2013-09-22 14:49 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-22 14:49 - 2009-07-14 06:51 - 00052556 _____ C:\Windows\setupact.log 2013-09-21 12:40 - 2013-08-15 23:19 - 00290184 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-09-21 12:40 - 2013-08-15 23:08 - 00290184 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-09-21 12:39 - 2013-08-15 23:08 - 00280904 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-09-21 10:55 - 2013-03-10 01:45 - 00000000 ____D C:\Program Files (x86)\Origin 2013-09-21 10:40 - 2013-09-21 10:40 - 00001568 _____ C:\Users\Public\Desktop\iTunes.lnk 2013-09-21 10:40 - 2013-09-21 10:40 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-09-21 10:40 - 2013-09-21 10:40 - 00000000 ____D C:\Program Files\iTunes 2013-09-21 10:40 - 2013-09-21 10:40 - 00000000 ____D C:\Program Files\iPod 2013-09-21 10:30 - 2012-11-22 18:22 - 00000000 ____D C:\Users\Michal\Documents\Bluetooth Folder 2013-09-21 03:24 - 2012-11-28 21:35 - 00000000 ____D C:\Users\Michal\AppData\Local\CrashDumps 2013-09-21 03:24 - 2012-11-23 02:09 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-09-20 21:47 - 2013-02-20 01:47 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Spotify 2013-09-18 03:43 - 2013-04-13 14:20 - 00000000 ____D C:\Users\Michal\AppData\Roaming\KeePass 2013-09-18 03:39 - 2013-09-18 02:21 - 00000000 ____D C:\Users\Michal\Desktop\silniki 2013-09-18 01:24 - 2013-09-18 01:23 - 00003284 _____ C:\Users\Michal\Desktop\nazwy.html 2013-09-18 01:05 - 2013-09-18 01:05 - 00000072 _____ C:\Users\Michal\Desktop\BezNazwy1.cpp 2013-09-18 01:04 - 2013-09-18 01:03 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Dev-Cpp 2013-09-18 01:03 - 2013-09-18 01:03 - 00000707 _____ C:\Users\UpdatusUser\Desktop\Dev-C++.lnk 2013-09-18 01:03 - 2013-09-18 01:03 - 00000707 _____ C:\Users\Michal\Desktop\Dev-C++.lnk 2013-09-18 01:02 - 2013-09-18 00:59 - 43630313 _____ C:\Users\Michal\Downloads\Dev-Cpp 5.4.2 TDM-GCC x64 4.7.1 Setup.exe 2013-09-18 00:18 - 2013-09-18 00:18 - 00006039 _____ C:\Users\Michal\Downloads\AlwaysOnTopMaker.zip 2013-09-17 21:56 - 2012-12-14 00:28 - 00000132 _____ C:\Users\Michal\AppData\Roaming\Preferencje formatu PNG CS6 firmy Adobe 2013-09-17 21:17 - 2013-09-17 20:02 - 1295972961 _____ C:\Users\Michal\Downloads\COD ST 1.0.0-Locophone-ICPDA.rc30e7.ipa 2013-09-17 20:06 - 2013-09-17 20:06 - 00015383 _____ C:\Users\Michal\Downloads\3096.Tage.2013.SUB.PL.AC3.480p.BRRip.XviD-TLRG.torrent 2013-09-17 20:03 - 2013-09-17 20:01 - 44481170 _____ C:\Users\Michal\Downloads\Plague Inc. (v1.6.2 Univ os43)-Locophone-ICPDA.rc30e7.ipa 2013-09-17 19:56 - 2012-12-30 23:58 - 00000000 ____D C:\Program Files (x86)\Steam 2013-09-17 17:29 - 2013-09-17 17:29 - 03591836 _____ C:\Windows\SysWOW64\lame.exe -b 192 -h -r - sp4w_out.mp3.au 2013-09-17 16:26 - 2012-11-22 17:58 - 00000000 ___RD C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-09-17 16:15 - 2013-09-17 16:15 - 00000936 _____ C:\Users\Michal\Desktop\Evernote.lnk 2013-09-17 16:15 - 2013-09-17 16:15 - 00000000 ____D C:\Users\Michal\AppData\Local\Evernote 2013-09-17 16:15 - 2013-09-17 16:15 - 00000000 ____D C:\Program Files (x86)\Evernote 2013-09-17 16:12 - 2013-09-17 16:11 - 57161568 _____ (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Users\Michal\Downloads\Evernote_5.0.1.1188.exe 2013-09-17 14:39 - 2013-09-17 14:39 - 00001915 _____ C:\Users\Michal\Downloads\RAL.txt 2013-09-17 13:29 - 2012-11-22 18:17 - 00000830 _____ C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job 2013-09-16 00:42 - 2013-09-16 00:42 - 00000059 _____ C:\Users\Michal\Desktop\stopka_joanna2.html 2013-09-16 00:42 - 2013-09-16 00:42 - 00000058 _____ C:\Users\Michal\Desktop\stopka_artur2.html 2013-09-15 21:46 - 2013-08-15 19:58 - 00005854 _____ C:\Windows\PFRO.log 2013-09-15 01:43 - 2013-09-15 01:43 - 00000000 ____D C:\Users\Michal\Desktop\philips 2013-09-12 23:56 - 2013-01-25 22:13 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-12 20:32 - 2012-11-29 00:35 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Skype 2013-09-12 20:31 - 2013-07-13 11:10 - 00000000 ____D C:\Users\Michal\AppData\Roaming\TS3Client 2013-09-12 20:31 - 2013-05-08 16:48 - 00000000 ____D C:\Users\Michal\AppData\Roaming\ViberPC 2013-09-12 20:31 - 2013-05-08 16:47 - 00000000 ____D C:\Users\Michal\AppData\Local\Viber 2013-09-12 17:29 - 2013-09-12 09:41 - 00000000 ____D C:\Users\Michal\Desktop\okna_z_magazynu 2013-09-12 09:56 - 2013-09-12 09:56 - 00001556 _____ C:\Users\Michal\Desktop\OFR- -OK AKT.pdf — skrót.lnk 2013-09-12 07:12 - 2013-09-12 07:12 - 00077740 _____ C:\Users\Michal\Downloads\mycherrycrushSITERIPPART1-2.torrent 2013-09-11 20:39 - 2013-07-30 18:00 - 00000000 ____D C:\Windows\system32\MRT 2013-09-11 20:38 - 2013-01-17 00:37 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-09-11 20:38 - 2012-12-22 14:39 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-09-11 20:31 - 2013-01-25 22:13 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-09-11 20:31 - 2013-01-25 22:13 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-09-11 20:31 - 2013-01-25 22:13 - 00003870 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-09-11 03:42 - 2013-07-01 13:10 - 00000000 ____D C:\Program Files\Sublime Text 2 2013-09-11 03:41 - 2013-09-11 03:41 - 06513608 _____ ( ) C:\Users\Michal\Downloads\Sublime Text 2.0.2 x64 Setup.exe 2013-09-11 03:11 - 2013-05-21 23:13 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Audacity 2013-09-11 02:17 - 2012-11-29 01:59 - 00000000 ____D C:\Users\Michal\AppData\Local\Apple Computer 2013-09-10 23:43 - 2013-09-10 23:43 - 00000058 _____ C:\Users\Michal\Desktop\stopka_joanna.html 2013-09-10 23:43 - 2013-09-10 23:43 - 00000057 _____ C:\Users\Michal\Desktop\stopka_artur.html 2013-09-10 22:48 - 2013-09-10 22:48 - 00000053 _____ C:\Users\Michal\Desktop\stopka.html 2013-09-10 22:46 - 2013-09-10 22:45 - 04812567 _____ (Tim Kosse) C:\Users\Michal\Desktop\FileZilla_3.7.3_win32-setup.exe 2013-09-10 22:46 - 2012-11-27 14:39 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client 2013-09-10 16:18 - 2013-01-25 22:05 - 00157604 ____H C:\Windows\SysWOW64\mlfcache.dat 2013-09-10 15:05 - 2013-09-10 15:05 - 00001238 _____ C:\Users\Michal\Desktop\Untitled-3.html 2013-09-10 14:58 - 2013-09-10 14:40 - 00002474 _____ C:\Users\Michal\Desktop\Untitled-1.html 2013-09-10 14:19 - 2013-07-25 20:29 - 00000000 ____D C:\Program Files (x86)\Faktura VAT 2013 PRO 2013-09-10 13:36 - 2013-09-10 13:36 - 00010268 _____ C:\Users\Michal\Downloads\bj_130_720p.mp4.torrent 2013-09-10 11:12 - 2013-09-10 11:12 - 00000098 _____ C:\Users\Michal\Desktop\fix.reg 2013-09-10 00:58 - 2013-09-10 00:58 - 00106547 _____ C:\Users\Michal\Downloads\example.zip 2013-09-09 19:42 - 2012-11-22 20:30 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-09-09 19:39 - 2012-11-22 20:28 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-09-09 19:31 - 2013-02-20 01:47 - 00000000 ____D C:\Users\Michal\AppData\Local\Spotify 2013-09-09 19:22 - 2012-11-22 20:21 - 00000000 ____D C:\Users\Michal\AppData\Local\Adobe 2013-09-09 02:18 - 2013-09-09 02:18 - 00160884 _____ C:\Users\Michal\Downloads\CzechCasting E401-E500.Siterip.720p-IPT.torrent 2013-09-08 02:51 - 2013-09-08 02:51 - 00026756 _____ C:\Users\Michal\Downloads\banery_rnf.rar 2013-09-08 01:02 - 2013-08-13 14:07 - 00000000 ____D C:\Users\Michal\AppData\Local\screenSHU 2013-09-07 22:43 - 2013-09-07 22:43 - 00726791 _____ C:\Users\Michal\Downloads\FreeVector-Jigsaw-Puzzle.zip 2013-09-07 08:17 - 2013-09-07 08:09 - 91347872 _____ C:\Users\Michal\Downloads\Transformers 3_ Dark of the Moon Movie Trailer 4 Official (HD).mp4 2013-09-07 08:05 - 2013-09-07 08:03 - 00000000 ____D C:\Users\Michal\Desktop\piotr 2013-09-06 07:56 - 2009-07-14 06:45 - 05091096 _____ C:\Windows\system32\FNTCACHE.DAT 2013-09-06 03:20 - 2012-11-22 18:27 - 00099440 _____ C:\Users\Michal\AppData\Local\GDIPFONTCACHEV1.DAT 2013-09-06 03:17 - 2013-09-06 03:17 - 00071397 _____ C:\Users\Michal\Downloads\throw_my_hands_up_in_the_air.zip 2013-09-06 02:47 - 2013-09-06 02:47 - 00001500 _____ C:\Users\Michal\Desktop\ .lnk 2013-09-06 02:46 - 2013-09-06 02:42 - 00000000 ___RD C:\Users\Michal\Desktop\  2013-09-06 02:36 - 2013-09-06 02:36 - 01069215 _____ (RaMMicHaeL) C:\Users\Michal\Downloads\7tt_setup.exe 2013-09-06 02:35 - 2013-09-06 02:35 - 00685248 _____ C:\Users\Michal\Downloads\7-Taskbar-Tweaker(35477).exe 2013-09-06 02:35 - 2013-09-06 02:11 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-09-06 02:11 - 2013-09-06 02:10 - 06463660 _____ (Punk Software ) C:\Users\Michal\Downloads\RocketDock-v1.3.5.exe 2013-09-05 23:12 - 2013-07-07 22:56 - 00000000 ____D C:\Users\Michal\AppData\Roaming\.minecraft 2013-09-05 21:08 - 2013-09-05 21:08 - 00102050 _____ C:\Users\Michal\Downloads\jzaefferer-jquery-treeview-1.4.1-0-g3937863.zip 2013-09-05 15:09 - 2013-09-05 15:09 - 00006452 _____ C:\Users\Michal\Downloads\TL.Action.torrent 2013-09-04 04:07 - 2013-09-04 04:07 - 08429794 _____ C:\Users\Michal\Downloads\hong_kong_by_rurounivash-d3bvvwf.zip 2013-09-04 04:07 - 2013-09-04 04:07 - 00306484 _____ C:\Users\Michal\Downloads\rainmeter___encoded_v1_2_3_by_lilshizzy-d3klh7x.rmskin 2013-09-04 03:49 - 2013-09-04 03:49 - 00345068 _____ C:\Users\Michal\Downloads\rainmeter___simple_media_1_1_by_lilshizzy-d3img0c.rmskin 2013-09-04 03:46 - 2013-09-04 03:46 - 00673098 _____ C:\Users\Michal\Downloads\rainmeter___ribbits_v1_0_by_lilshizzy-d3ja088.rmskin 2013-09-04 03:45 - 2013-09-04 03:45 - 00906292 _____ C:\Users\Michal\Downloads\Dot Launchers 1.0.zip 2013-09-04 03:01 - 2013-09-04 02:59 - 134354556 _____ C:\Users\Michal\Downloads\Audio_VIA_Win7_64_Z600110600.zip 2013-09-04 03:00 - 2013-09-04 03:00 - 05392710 _____ C:\Users\Michal\Downloads\USB3_Intel_Win7_64_Z103214.zip 2013-09-04 02:38 - 2013-09-04 02:38 - 00000000 ____D C:\Windows\System32\Tasks\Western Digital 2013-09-04 02:37 - 2013-09-04 02:37 - 00000000 ____D C:\Users\Michal\AppData\Local\Western_Digital_Technolog 2013-09-04 02:33 - 2012-11-22 20:22 - 00000000 ____D C:\ProgramData\Adobe 2013-09-04 02:30 - 2013-09-04 02:30 - 00000000 ____D C:\Program Files\WDCSAM 2013-09-04 02:30 - 2013-09-04 02:30 - 00000000 ____D C:\Program Files\DIFX 2013-09-04 02:28 - 2013-09-04 02:28 - 00000000 ____D C:\Program Files\Western Digital 2013-09-04 02:28 - 2013-09-04 02:28 - 00000000 ____D C:\Program Files\Common Files\Western Digital 2013-09-04 02:28 - 2012-11-23 01:06 - 00000000 ____D C:\ProgramData\Western Digital 2013-09-04 02:28 - 2012-11-23 01:05 - 00000000 ____D C:\Program Files (x86)\Western Digital 2013-09-04 02:28 - 2012-11-22 18:25 - 00231554 _____ C:\Windows\DPINST.LOG 2013-09-04 02:27 - 2013-04-04 03:58 - 00000000 ____D C:\ProgramData\Package Cache 2013-09-04 02:26 - 2013-09-04 02:25 - 34335877 _____ C:\Users\Michal\Downloads\WD_SmartWare_Installer_2.2.0.8.zip 2013-09-04 02:19 - 2013-09-04 02:19 - 00035953 _____ C:\Users\Michal\Downloads\jquery.bxslider (1).zip 2013-09-04 01:00 - 2013-09-04 01:00 - 00378553 _____ C:\Users\Michal\Downloads\WD_SES_Driver_Setup_x64.zip 2013-09-04 00:59 - 2013-09-04 00:59 - 01446477 _____ C:\Users\Michal\Downloads\WDFirmwareUpdater.zip 2013-09-03 22:34 - 2013-08-16 09:12 - 00000000 ____D C:\Users\Michal\Documents\EA Games 2013-09-03 22:34 - 2013-08-15 23:08 - 00280187 _____ C:\Windows\DirectX.log 2013-09-03 01:27 - 2013-09-03 01:26 - 16371216 _____ C:\Users\Michal\Downloads\tree_silhouettes.zip 2013-09-02 22:12 - 2013-07-13 10:45 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2013-09-02 17:22 - 2013-09-02 17:22 - 00239365 _____ C:\Users\Michal\Downloads\CustomDropDownListStyling.zip 2013-09-02 16:23 - 2013-09-02 16:22 - 00000000 ____D C:\Users\Michal\Documents\Free Sound Recorder 2013-09-02 16:23 - 2013-09-02 16:22 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Free Sound Recorder 2013-09-02 16:22 - 2013-09-02 16:22 - 00001157 _____ C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Free Sound Recorder.lnk 2013-09-02 16:22 - 2013-09-02 16:22 - 00000000 ____D C:\Program Files (x86)\Free Sound Recorder 2013-09-02 16:20 - 2013-09-02 16:19 - 11129456 _____ (Copyright© 2005-2013 FreeSoundRecorder Technologies, Inc. ) C:\Users\Michal\Downloads\FreeSoundRecorder.exe 2013-09-02 10:47 - 2013-05-22 02:37 - 00014030 _____ C:\Users\Michal\majkelo.kdbx 2013-09-02 10:47 - 2012-11-22 17:57 - 00000000 ____D C:\Users\Michal 2013-09-02 09:47 - 2012-11-22 19:37 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-09-02 09:46 - 2013-09-02 09:46 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tropico 2013-09-02 02:33 - 2013-09-02 02:32 - 12507180 _____ C:\Users\Michal\Downloads\hondaaukcja.zip 2013-09-02 02:30 - 2013-09-02 02:30 - 01381763 _____ C:\Users\Michal\Downloads\FreeVector-Honda-Logo.zip 2013-08-31 02:03 - 2013-08-22 20:56 - 00000600 _____ C:\Users\Michal\AppData\Roaming\winscp.rnd 2013-08-31 01:08 - 2013-08-31 01:07 - 09737391 _____ C:\Users\Michal\Downloads\panel.zip 2013-08-30 09:33 - 2013-08-29 21:22 - 00000000 ____D C:\Users\Michal\AppData\Local\Unity 2013-08-29 21:22 - 2013-08-29 21:22 - 00648144 _____ (Unity Technologies ApS) C:\Users\Michal\Downloads\UnityWebPlayer.exe 2013-08-27 03:27 - 2013-08-27 03:02 - 818829961 _____ C:\Users\Michal\Downloads\Tropico PL.rar 2013-08-25 08:29 - 2013-08-25 08:29 - 00263592 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-08-25 08:29 - 2013-08-25 08:29 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-08-25 08:29 - 2013-08-25 08:29 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-08-25 08:29 - 2013-08-25 08:29 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-08-25 08:29 - 2012-11-22 20:14 - 00867240 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-08-25 08:29 - 2012-11-22 20:14 - 00789416 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-08-25 08:28 - 2013-08-25 08:28 - 00903080 _____ (Oracle Corporation) C:\Users\Michal\Downloads\chromeinstall-7u25.exe 2013-08-24 04:30 - 2013-04-13 09:43 - 00000000 ____D C:\Users\Michal\AppData\Roaming\Copy 2013-08-24 04:22 - 2013-08-24 04:22 - 00089223 _____ C:\Users\Michal\Downloads\jquery-mousewheel-master.zip 2013-08-24 03:26 - 2013-08-24 03:26 - 00000175 _____ C:\Windows\system32\Drivers\aswVmm.sys.sum 2013-08-24 03:26 - 2013-08-24 03:26 - 00000175 _____ C:\Windows\system32\Drivers\aswSP.sys.sum 2013-08-24 03:26 - 2013-08-24 03:26 - 00000175 _____ C:\Windows\system32\Drivers\aswSnx.sys.sum 2013-08-24 03:26 - 2013-03-18 18:33 - 00189936 _____ C:\Windows\system32\Drivers\aswVmm.sys 2013-08-24 03:26 - 2012-11-23 02:09 - 01030952 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2013-08-24 03:26 - 2012-11-23 02:09 - 00378944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2013-08-24 03:26 - 2012-11-23 02:09 - 00000000 _____ C:\Windows\SysWOW64\config.nt 2013-08-24 02:00 - 2013-08-24 02:00 - 00030888 _____ C:\Users\Michal\Downloads\CreativeLinkEffects (1).zip 2013-08-24 01:22 - 2013-08-24 01:20 - 189809510 _____ C:\Users\Michal\Downloads\battlefield3_ost_flac_1376097075.zip 2013-08-23 19:40 - 2013-08-23 19:39 - 00000000 ____D C:\wamp 2013-08-23 19:36 - 2013-08-23 19:34 - 40603386 _____ (Hervé Leclerc (HeL) ) C:\Users\Michal\Downloads\Wampserver2.4-x64.exe 2013-08-23 19:31 - 2013-08-23 19:30 - 34934739 _____ (WebsSrv.PL ) C:\Users\Michal\Downloads\WebServ-2.1.exe 2013-08-23 19:22 - 2013-07-04 13:19 - 00000000 ____D C:\Program Files (x86)\WinSCP 2013-08-23 18:46 - 2013-08-23 18:46 - 00000000 ____D C:\Users\Michal\Documents\Electronic Arts ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-21 04:57 ==================== End Of Log ============================