Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 23-09-2013 Ran by SYSTEM on MININT-5P1P2NI on 23-09-2013 10:46:41 Running from G:\ Windows 7 Home Premium (X86) OS Language: Polish Internet Explorer Version 10 Boot Mode: Recovery The current controlset is ControlSet002 [b]ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.[/b] ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ATKMEDIA] - C:\Program Files\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-05-03] (ASUS) HKLM\...\Run: [HControlUser] - C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [548744 2011-09-13] (ELAN Microelectronic Corp.) HKLM\...\Run: [AtherosBtStack] - C:\Program Files\Atheros\Bluetooth Suite\BtvStack.exe [486560 2010-11-25] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files\Atheros\Bluetooth Suite\AthBtTray.exe [302240 2010-11-25] (Atheros Commnucations) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [ToolBoxFX] - C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe [53248 2010-03-03] (HP) HKLM\...\Run: [HP LaserJet M1522 MFP Series Fax] - C:\Program Files\HP\hp LaserJet M1522\hppfaxprintersrv.exe [2453504 2009-09-22] (Hewlett-Packard Company) HKLM\...\Run: [] - [x] HKLM\...\Run: [HPUsageTracking] - C:\Program Files\HP\HP UT\bin\hppusg.exe [36864 2007-08-31] () HKLM\...\Run: [Samsung PanelMgr] - C:\Windows\Samsung\PanelMgr\SSMMgr.exe [606208 2009-12-09] () HKLM\...\Run: [HP Software Update] - C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard) HKLM\...\Run: [AVP] - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe [311680 2010-03-12] (Kaspersky Lab) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.) HKLM\...\Run: [Zune Launcher] - C:\Program Files\Zune\ZuneLauncher.exe [159456 2011-08-05] (Microsoft Corporation) HKLM\...\Run: [CorelDRAW Graphics Suite 11b] - C:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe [733184 2004-06-22] (Corel Corporation) HKU\user\...\Run: [Nexus] - C:\Program Files\Winstep\Nexus.exe [ 2012-03-28] (Winstep Software Technologies) HKU\user\...\Run: [LAN Messenger] - [x] HKU\user\...\Run: [_LAN Messenger] - C:\Program Files\LAN Messenger\LANMsg.exe [ 2004-12-14] () HKU\user\...\Run: [Skype] - C:\Program Files\Skype\Phone\Skype.exe [ 2013-06-03] (Skype Technologies S.A.) HKU\user\...\Run: [Sony PC Companion] - C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [ 2013-05-29] (Sony) HKU\user\...\Run: [Facebook Update] - C:\Users\user\AppData\Local\Facebook\Update\FacebookUpdate.exe [ 2013-07-24] (Facebook Inc.) HKU\user\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [ 2011-09-16] (Google Inc.) HKU\user\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [ 2009-07-14] (Microsoft Corporation) HKU\user\...\Run: [Internet Security] - C:\ProgramData\msecurity.exe [ 2013-09-21] (Disc Soft Ltd) Startup: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stardock ObjectDock.lnk ShortcutTarget: Stardock ObjectDock.lnk -> C:\Program Files\Stardock\ObjectDockFree\ObjectDock.exe (No File) Startup: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk -> C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation) ========================== Services (Whitelisted) ================= S2 ASLDRService; C:\Program Files\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [84536 2009-06-15] (ASUS) S2 Atheros Bt&Wlan Coex Agent; C:\Program Files\Atheros\Ath_CoexAgent.exe [151552 2010-05-24] (Atheros) S2 AtherosSvc; C:\Program Files\Atheros\Bluetooth Suite\adminservice.exe [56480 2010-11-25] (Atheros Commnucations) S2 ATKGFNEXSrv; C:\Program Files\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896 2009-12-15] (ASUS) S2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 6.0 for Windows Workstations MP4\avp.exe [311680 2010-03-12] (Kaspersky Lab) S2 FirebirdGuardianDefaultInstance; C:\Program Files\Firebird\Firebird_2_0\bin\fbguard.exe [77824 2006-10-31] (FirebirdSQL Project) S3 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_0\bin\fbserver.exe [1990656 2006-10-31] (FirebirdSQL Project) S2 FUSServices; C:\Windows\system32\FUSServices.exe [10752 2009-02-16] () S2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [136192 2010-03-03] (HP) S2 HPM1210RcvFaxSrvc; C:\Program Files\HP\HP LaserJet M1210 MFP Series\ReceiveFaxUtility.exe [247352 2010-05-11] (HP) S2 klnagent; C:\Program Files\Kaspersky Lab\NetworkAgent 8\klnagent.exe [137272 2010-04-20] (Kaspersky Lab) S2 Mobile Broadband HL Service; C:\ProgramData\MobileBrServ\mbbservice.exe [232288 2012-03-12] () S2 ProtexisLicensing; C:\Program Files\Common Files\Protexis\License Service\PSIService.exe [174656 2006-11-02] () S2 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.) S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) S2 Winstep Xtreme Service; C:\Program Files\Winstep\WsxService [x] ==================== Drivers (Whitelisted) ==================== S3 BTATH_BUS; C:\Windows\System32\DRIVERS\btath_bus.sys [24736 2010-11-25] (Atheros) S0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation) S3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [109960 2011-09-13] (ELAN Microelectronic Corp.) S3 FaxLffv2; C:\Windows\System32\Drivers\FaxLffv2.sys [18944 2008-06-18] (OEM) S1 kl1; C:\Windows\System32\DRIVERS\kl1.sys [126480 2009-11-12] (Kaspersky Lab) S3 KLFLTDEV; C:\Windows\System32\DRIVERS\klfltdev.sys [24848 2009-09-03] (Kaspersky Lab) S1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [233560 2012-08-21] (Kaspersky Lab) S1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [22104 2012-08-21] (Kaspersky Lab ZAO) S3 MTsensor; C:\Windows\System32\DRIVERS\ATKACPI.sys [14392 2009-05-13] (ASUS) S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1760384 2009-08-20] () S2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [5120 2007-08-13] (Samsung Electronics) S3 XMLDIUSB; C:\Windows\System32\Drivers\XMLDIUSB.sys [33152 2008-01-16] (OEM) S1 A2DDA; \??\C:\EmsisoftEmergencyKit\Run\a2ddax86.sys [x] S2 DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-23 10:46 - 2013-09-23 10:46 - 00000000 ____D C:\FRST 2013-09-21 20:45 - 2013-09-21 20:45 - 00153032 _____ C:\Windows\Minidump\092113-18361-01.dmp 2013-09-21 20:36 - 2013-09-21 20:36 - 00862208 _____ (Disc Soft Ltd) C:\ProgramData\msecurity.exe 2013-09-21 20:36 - 2013-09-21 20:36 - 00862208 _____ (Disc Soft Ltd) C:\ProgramData\384E.tmp 2013-09-21 20:36 - 2013-09-21 20:36 - 00862208 _____ (Disc Soft Ltd) C:\ProgramData\3562.tmp 2013-09-21 20:36 - 2013-09-21 20:36 - 00000648 _____ C:\Users\Public\Desktop\Internet Security 2013.lnk 2013-09-19 07:52 - 2013-09-19 07:52 - 00000000 ____D C:\Users\user\Desktop\19.09.2013 2013-09-19 06:24 - 2013-09-20 09:51 - 00000000 ____D C:\Users\user\Desktop\aneksy do umów 2013-09-17 07:58 - 2013-09-17 07:58 - 00000000 ____D C:\Users\user\Documents\Corel User Files 2013-09-17 06:24 - 2013-09-17 06:24 - 00064714 _____ C:\Windows\FontData.fdb 2013-09-17 06:18 - 2013-09-17 06:18 - 00000000 ____D C:\Program Files\Common Files\Corel 2013-09-11 13:55 - 2013-08-10 04:59 - 01767936 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-09-11 13:55 - 2013-08-10 04:59 - 01141248 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-09-11 13:55 - 2013-08-10 04:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-09-11 13:55 - 2013-08-10 04:58 - 14332928 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 13761024 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 02876928 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 02048000 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 00690688 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 00493056 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 00391168 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 00109056 _____ (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 00061440 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-09-11 13:55 - 2013-08-10 04:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-09-11 13:55 - 2013-08-10 04:07 - 02706432 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-09-11 13:55 - 2013-08-10 03:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-09-11 09:39 - 2013-08-08 02:03 - 02348544 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys 2013-09-11 09:39 - 2013-08-05 02:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ataport.sys 2013-09-11 09:39 - 2013-08-02 02:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\System32\winsrv.dll 2013-09-11 09:39 - 2013-08-02 02:49 - 00868352 _____ (Microsoft Corporation) C:\Windows\System32\kernel32.dll 2013-09-11 09:39 - 2013-08-02 02:49 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 01:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\System32\conhost.exe 2013-09-11 09:39 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-11 09:39 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll 2013-09-11 09:39 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll 2013-09-11 09:39 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\System32\shdocvw.dll 2013-09-10 13:44 - 2013-09-11 10:19 - 00001142 _____ C:\Windows\System32\W ramach monitoringu kontroli zarządczej podczas spotkania Kierowników poszczególnych Referatów Urzędu Gminy w Kowali Sekretarz zwrócił się do Kierowników o uzupełnienie tabeli dotyczącej Celów i zadań.lnk 2013-09-05 07:56 - 2013-09-05 07:56 - 00000000 ____D C:\Users\user\Documents\MISJONARKI FROM ARGENTINA 2013-08-27 06:47 - 2013-08-27 07:37 - 00000000 ____D C:\Users\user\Desktop\DCIM 2013-08-27 06:26 - 2013-09-18 21:35 - 00000000 ____D C:\Users\user\Desktop\teksty na kalendarz ==================== One Month Modified Files and Folders ======= 2013-09-23 10:46 - 2013-09-23 10:46 - 00000000 ____D C:\FRST 2013-09-23 09:41 - 2009-07-14 05:39 - 00166008 _____ C:\Windows\setupact.log 2013-09-23 09:20 - 2011-09-14 00:40 - 01259382 _____ C:\Windows\WindowsUpdate.log 2013-09-23 07:50 - 2009-07-14 05:34 - 00022560 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-23 07:50 - 2009-07-14 05:34 - 00022560 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-23 07:37 - 2012-09-06 08:16 - 00000000 ____D C:\Program Files\P4G 2013-09-23 07:37 - 2012-08-21 12:41 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-09-23 07:37 - 2011-09-13 20:15 - 00000035 _____ C:\Users\Public\Documents\AtherosServiceConfig.ini 2013-09-21 20:50 - 2012-05-15 07:41 - 00000000 ____D C:\Users\user\Documents\Pliki programu Outlook 2013-09-21 20:45 - 2013-09-21 20:45 - 00153032 _____ C:\Windows\Minidump\092113-18361-01.dmp 2013-09-21 20:45 - 2013-01-23 11:36 - 436467273 _____ C:\Windows\MEMORY.DMP 2013-09-21 20:45 - 2013-01-23 11:36 - 00000000 ____D C:\Windows\Minidump 2013-09-21 20:36 - 2013-09-21 20:36 - 00862208 _____ (Disc Soft Ltd) C:\ProgramData\msecurity.exe 2013-09-21 20:36 - 2013-09-21 20:36 - 00862208 _____ (Disc Soft Ltd) C:\ProgramData\384E.tmp 2013-09-21 20:36 - 2013-09-21 20:36 - 00862208 _____ (Disc Soft Ltd) C:\ProgramData\3562.tmp 2013-09-21 20:36 - 2013-09-21 20:36 - 00000648 _____ C:\Users\Public\Desktop\Internet Security 2013.lnk 2013-09-21 20:20 - 2011-04-12 06:08 - 00701494 _____ C:\Windows\System32\perfh015.dat 2013-09-21 20:20 - 2011-04-12 06:08 - 00136480 _____ C:\Windows\System32\perfc015.dat 2013-09-21 20:20 - 2010-11-20 22:01 - 01558616 _____ C:\Windows\System32\PerfStringBackup.INI 2013-09-21 20:18 - 2012-08-04 09:58 - 00000000 ____D C:\Users\user\AppData\Roaming\Skype 2013-09-20 20:19 - 2012-06-12 12:04 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe 2013-09-20 20:19 - 2011-09-14 02:06 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl 2013-09-20 09:51 - 2013-09-19 06:24 - 00000000 ____D C:\Users\user\Desktop\aneksy do umów 2013-09-19 20:50 - 2011-09-13 19:45 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-09-19 18:11 - 2013-05-01 17:24 - 00001972 _____ C:\Users\Public\Desktop\Sony PC Companion 2.1.lnk 2013-09-19 18:11 - 2011-09-13 19:24 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2013-09-19 18:11 - 2011-09-13 19:09 - 00366696 _____ C:\Windows\DPINST.LOG 2013-09-19 07:52 - 2013-09-19 07:52 - 00000000 ____D C:\Users\user\Desktop\19.09.2013 2013-09-18 21:35 - 2013-08-27 06:26 - 00000000 ____D C:\Users\user\Desktop\teksty na kalendarz 2013-09-18 21:16 - 2011-10-26 10:57 - 00000000 ____D C:\Users\user\AppData\Local\CrashDumps 2013-09-18 13:53 - 2013-07-23 19:11 - 00000000 ____D C:\Users\user\Desktop\UMOWA UŻYCZENIE PIOG 2013-09-18 12:05 - 2012-01-30 11:28 - 00000000 ___RD C:\Users\user\Desktop\URZĄD GMINY 2013-09-18 07:54 - 2013-08-13 09:19 - 00000000 ____D C:\__USB__ 2013-09-18 06:46 - 2013-06-15 23:18 - 00000000 ____D C:\Users\user\Desktop\KALENDARZ 2014 2013-09-17 17:16 - 2009-07-14 05:33 - 00560216 _____ C:\Windows\System32\FNTCACHE.DAT 2013-09-17 07:58 - 2013-09-17 07:58 - 00000000 ____D C:\Users\user\Documents\Corel User Files 2013-09-17 06:24 - 2013-09-17 06:24 - 00064714 _____ C:\Windows\FontData.fdb 2013-09-17 06:23 - 2011-09-14 12:28 - 00153984 _____ C:\Users\user\AppData\Local\GDIPFONTCACHEV1.DAT 2013-09-17 06:19 - 2011-10-25 11:12 - 00000000 ____D C:\Users\user\AppData\Roaming\Corel 2013-09-17 06:18 - 2013-09-17 06:18 - 00000000 ____D C:\Program Files\Common Files\Corel 2013-09-17 06:17 - 2013-04-09 07:31 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2013-09-17 06:17 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2013-09-17 06:16 - 2011-10-25 11:04 - 00000000 ____D C:\Program Files\Corel 2013-09-15 20:08 - 2013-06-11 11:44 - 00001006 _____ C:\Windows\System32\Monitoring i ewauacja w projektach Programu Operacyjnego Kapitał Ludzki na przykładzie projektu POMOC SPOŁECZNA BARDZO CZĘSTO STUTECZNA realizowanego przez Gminny Ośrodek Pomocy Społecznej w Kowali.lnk 2013-09-13 09:25 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\rescache 2013-09-12 13:54 - 2011-09-16 09:24 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-09-12 08:00 - 2011-10-12 07:49 - 00000000 ___RD C:\Users\user\Desktop\www.pomockowala@łączymy z przyszłością.pl 2013-09-12 07:57 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\Microsoft.NET 2013-09-12 06:19 - 2012-10-07 20:22 - 00000000 ___RD C:\Users\user\Podcasts 2013-09-12 06:15 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\System32\pl-PL 2013-09-11 13:52 - 2013-08-16 22:26 - 00000000 ____D C:\Windows\System32\MRT 2013-09-11 13:50 - 2011-09-13 20:04 - 76725432 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-09-11 10:19 - 2013-09-10 13:44 - 00001142 _____ C:\Windows\System32\W ramach monitoringu kontroli zarządczej podczas spotkania Kierowników poszczególnych Referatów Urzędu Gminy w Kowali Sekretarz zwrócił się do Kierowników o uzupełnienie tabeli dotyczącej Celów i zadań.lnk 2013-09-05 12:48 - 2013-02-15 08:32 - 00000000 ____D C:\Users\user\Desktop\zapytania ofertowe - 2013 2013-09-05 07:56 - 2013-09-05 07:56 - 00000000 ____D C:\Users\user\Documents\MISJONARKI FROM ARGENTINA 2013-08-29 08:15 - 2011-12-08 09:37 - 00000000 ___RD C:\Users\user\Desktop\SYLWIA 2013-08-27 07:37 - 2013-08-27 06:47 - 00000000 ____D C:\Users\user\Desktop\DCIM 2013-08-24 21:46 - 2009-07-14 03:37 - 00000000 ____D C:\Windows\System32\NDF Files to move or delete: ==================== C:\ProgramData\msecurity.exe Some content of TEMP: ==================== C:\Users\user\AppData\Local\Temp\ICReinstall_dddddd.exe C:\Users\user\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe C:\Users\user\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe C:\Users\user\AppData\Local\Temp\msunc.exe C:\Users\user\AppData\Local\Temp\SkypeSetup.exe C:\Users\user\AppData\Local\Temp\uninst1.exe ==================== Known DLLs (Whitelisted) ============ ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== EXE ASSOCIATION ===================== HKLM\...\.exe: exefile => OK HKLM\...\exefile\DefaultIcon: %1 => OK HKLM\...\exefile\open\command: "%1" %* => OK ==================== Restore Points ========================= Restore point made on: 2013-07-05 08:35:24 Restore point made on: 2013-07-10 13:59:19 Restore point made on: 2013-07-16 06:12:01 Restore point made on: 2013-08-16 22:19:36 Restore point made on: 2013-09-02 12:56:22 Restore point made on: 2013-09-11 09:25:28 Restore point made on: 2013-09-11 13:50:05 Restore point made on: 2013-09-17 06:15:12 ==================== Memory info =========================== Percentage of memory in use: 14% Total physical RAM: 3948.54 MB Available physical RAM: 3383.26 MB Total Pagefile: 3946.82 MB Available Pagefile: 3383.57 MB Total Virtual: 2047.88 MB Available Virtual: 1942.53 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:400.76 GB) (Free:200.31 GB) NTFS Drive e: () (Fixed) (Total:195.31 GB) (Free:98.62 GB) NTFS Drive f: (GRMCHPFREO_PL_DVD) (CDROM) (Total:2.23 GB) (Free:0 GB) UDF Drive g: (GOODRAM) (Removable) (Total:7.21 GB) (Free:7.2 GB) FAT32 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS Drive y: (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: D66EFB55) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=401 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=195 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 7 GB) (Disk ID: 1CA2783C) Partition 1: (Not Active) - (Size=7 GB) - (Type=0B) LastRegBack: 2013-09-11 09:18 ==================== End Of Log ============================