OTL logfile created on: 2013-10-07 20:50:54 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Admin\Pulpit Windows XP Professional Edition (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2600.0000) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 767,49 Mb Total Physical Memory | 619,25 Mb Available Physical Memory | 80,68% Memory free 1,83 Gb Paging File | 1,74 Gb Available in Paging File | 94,89% Paging File free Paging file location(s): C:\pagefile.sys 1152 2304 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 16,60 Gb Total Space | 13,70 Gb Free Space | 82,55% Space Free | Partition Type: NTFS Drive D: | 39,32 Gb Total Space | 39,25 Gb Free Space | 99,83% Space Free | Partition Type: NTFS Computer Name: STACJONARNY | User Name: Admin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2013-10-07 20:48:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Admin\Pulpit\OTL.exe PRC - [2013-01-31 16:10:00 | 000,201,808 | ---- | M] (Somoto) -- C:\Documents and Settings\Admin\Ustawienia lokalne\Dane aplikacji\FilesFrog Update Checker\update_checker.exe PRC - [2001-10-26 19:29:52 | 001,002,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2001-10-26 18:29:52 | 000,024,064 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\system32\devldr32.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2001-10-26 19:29:36 | 000,011,264 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\xmlprov.dll -- (xmlprov) SRV - File not found [Auto | Stopped] -- %SYSTEMROOT%\system32\wscsvc.dll -- (wscsvc) SRV - [2001-10-26 19:29:36 | 000,047,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\WINDOWS\system32\mspmspsv.dll -- (WmdmPmSp) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | On_Demand | Unknown] -- C:\DOCUME~1\Admin\USTAWI~1\Temp\mbr.sys -- (mbr) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Running] -- C:\ComboFix\catchme.sys -- (catchme) DRV - [2001-08-17 23:02:32 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2001-08-17 23:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401) DRV - [2001-08-17 22:28:12 | 000,488,383 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\HSF_V124.sys -- (V124) DRV - [2001-08-17 22:28:12 | 000,050,751 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\HSF_TONE.sys -- (Tones) DRV - [2001-08-17 22:28:10 | 000,542,879 | ---- | M] (Conexant) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_MSFT.sys -- (hsf_msft) DRV - [2001-08-17 22:28:10 | 000,073,279 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\HSF_SPKP.sys -- (SpeakerPhone) DRV - [2001-08-17 22:28:10 | 000,057,471 | ---- | M] (Conexant) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_SAMP.sys -- (Rksample) DRV - [2001-08-17 22:28:08 | 000,391,199 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\HSF_K56K.sys -- (K56) DRV - [2001-08-17 22:28:06 | 000,289,887 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\HSF_FALL.sys -- (Fallback) DRV - [2001-08-17 22:28:06 | 000,199,711 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\HSF_FAXX.sys -- (SoftFax) DRV - [2001-08-17 22:28:06 | 000,115,807 | ---- | M] (Conexant) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\HSF_FSKS.sys -- (Fsks) DRV - [2001-08-17 22:28:04 | 000,067,167 | ---- | M] (Conexant) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_BSC2.sys -- (basic2) DRV - [2001-08-17 21:19:34 | 000,036,480 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sfmanm.sys -- (sfman) DRV - [2001-08-17 21:19:28 | 000,006,912 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctlfacem.sys -- (emu10k1) DRV - [2001-08-17 21:19:26 | 000,283,904 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\emu10k1m.sys -- (emu10k) DRV - [2001-08-17 21:19:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk) DRV - [2001-08-17 21:12:42 | 000,023,070 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2013-10-07 19:43:55 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O3 - HKLM\..\Toolbar: (&Radio) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx (Microsoft Corporation) O4 - HKLM..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize File not found O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe (NVIDIA Corporation) O4 - HKCU..\Run: [SDP] C:\Documents and Settings\Admin\Ustawienia lokalne\Dane aplikacji\FilesFrog Update Checker\update_checker.exe (Somoto) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O9 - Extra Button: @shdoclc.dll,-866 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\Web\related.htm () O9 - Extra 'Tools' menuitem : @shdoclc.dll,-864 - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\Web\related.htm () O15 - HKCU\..Trusted Domains: ([]msn in Mój komputer) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3DC43DB8-1744-4911-8B33-66EE1F377318}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3DC43DB8-1744-4911-8B33-66EE1F377318}: NameServer = 195.222.112.2,195.222.112.3 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5BA26253-D2BB-4435-AD34-82282F56AF96}: NameServer = 195.222.112.2,195.222.112.3 O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\system32\msdxm.ocx (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2013-05-07 21:00:13 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2013-10-07 20:48:21 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Admin\Pulpit\OTL.exe [2013-10-07 20:11:12 | 023,438,664 | ---- | C] (Mozilla) -- C:\Documents and Settings\Admin\Pulpit\Firefox Setup 24.0.exe [2013-10-07 19:47:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp [2013-10-07 19:37:14 | 000,000,000 | RHSD | C] -- C:\cmdcons [2013-10-07 19:35:57 | 000,518,144 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2013-10-07 19:35:57 | 000,406,528 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2013-10-07 19:35:57 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2013-10-07 19:35:57 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2013-10-07 19:35:52 | 000,000,000 | ---D | C] -- C:\ComboFix [2013-10-07 19:35:49 | 000,000,000 | ---D | C] -- C:\Qoobox [2013-10-07 19:35:45 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo [2013-10-07 19:35:45 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Admin\Moje dokumenty\Moje wideo [2013-10-07 19:35:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Menu Start\Programy\Narzędzia administracyjne [2013-10-07 19:35:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt [2013-10-07 19:35:06 | 005,130,782 | R--- | C] (Swearware) -- C:\Documents and Settings\Admin\Pulpit\ComboFix.exe [2013-10-07 18:26:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Local Settings [2013-10-07 18:25:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Menu Start\Programy\FilesFrog Update Checker [2013-10-07 18:25:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Ustawienia lokalne\Dane aplikacji\FilesFrog Update Checker [2013-10-07 18:02:49 | 000,784,872 | ---- | C] (Google Inc.) -- C:\Documents and Settings\Admin\Pulpit\ChromeSetup.exe [2013-10-06 16:45:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Pulpit\VLCPortable [2013-10-05 21:04:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Dane aplikacji\dvdcss [2013-10-05 16:55:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Dane aplikacji\vlc [2013-10-05 16:53:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Pulpit\VLC [2013-10-04 22:00:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview [2013-09-27 21:39:15 | 018,332,808 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\Admin\Moje dokumenty\oxpsp1.exe [2013-09-27 21:24:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot_bak [2013-09-27 21:19:24 | 322,713,128 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\Admin\Moje dokumenty\WindowsXP-KB936929-SP3-x86-PLK.exe [2013-09-27 19:32:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Dane aplikacji\Macromedia [2013-09-27 19:32:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Panda Software [2013-09-27 19:31:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\sentinel [2013-09-27 19:12:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Ustawienia lokalne\Dane aplikacji\Panda Software [2013-09-27 19:10:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2013-09-27 19:09:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Panda Software [2013-09-27 18:18:04 | 000,021,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbstor.sys [2013-09-27 17:59:04 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft [2013-09-27 17:59:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Dane aplikacji\DigitalSite [2013-09-27 17:56:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Ustawienia lokalne\Dane aplikacji\Babylon [2013-09-27 17:56:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon [2013-09-27 17:56:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Dane aplikacji\Babylon [2013-09-27 17:10:07 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Admin\UserData [2013-09-27 16:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Ustawienia lokalne\Dane aplikacji\Help [2013-09-27 16:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Dane aplikacji\Help [2013-09-27 15:30:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Identities [2013-09-20 18:26:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\MSN6 [2013-09-20 18:26:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Admin\Dane aplikacji\MSN6 [2013-09-20 18:16:56 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hidserv.dll [2013-09-20 18:16:53 | 000,014,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhid.sys [2013-09-20 18:16:38 | 000,024,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbccgp.sys [2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2013-10-07 20:48:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Admin\Pulpit\OTL.exe [2013-10-07 20:11:12 | 023,438,664 | ---- | M] (Mozilla) -- C:\Documents and Settings\Admin\Pulpit\Firefox Setup 24.0.exe [2013-10-07 19:47:17 | 000,355,830 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2013-10-07 19:47:16 | 000,311,740 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2013-10-07 19:47:16 | 000,049,712 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2013-10-07 19:47:16 | 000,040,128 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2013-10-07 19:43:55 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2013-10-07 19:43:49 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2013-10-07 19:37:19 | 000,000,310 | RHS- | M] () -- C:\boot.ini [2013-10-07 19:35:06 | 005,130,782 | R--- | M] (Swearware) -- C:\Documents and Settings\Admin\Pulpit\ComboFix.exe [2013-10-07 18:30:37 | 000,784,872 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Admin\Pulpit\ChromeSetup.exe [2013-10-07 18:24:47 | 000,166,712 | ---- | M] () -- C:\Documents and Settings\Admin\Pulpit\FreeZipSetup.exe [2013-10-07 18:07:14 | 000,000,174 | ---- | M] () -- C:\Documents and Settings\Admin\Pulpit\Google.url [2013-10-07 17:45:47 | 000,006,144 | ---- | M] () -- C:\Documents and Settings\Admin\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2013-10-03 20:58:51 | 000,002,184 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2013-09-27 21:39:15 | 018,332,808 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Admin\Moje dokumenty\oxpsp1.exe [2013-09-27 21:19:23 | 322,713,128 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Admin\Moje dokumenty\WindowsXP-KB936929-SP3-x86-PLK.exe [2013-09-27 14:52:23 | 000,000,375 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts.ics [2013-09-27 13:04:53 | 000,001,843 | ---- | M] () -- C:\WINDOWS\System32\AUTOEXEC.NT [2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2013-10-07 19:37:19 | 000,000,194 | ---- | C] () -- C:\Boot.bak [2013-10-07 19:37:16 | 000,238,832 | RHS- | C] () -- C:\cmldr [2013-10-07 19:35:57 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2013-10-07 19:35:57 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2013-10-07 19:35:57 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2013-10-07 19:35:57 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2013-10-07 19:35:57 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2013-10-07 18:24:54 | 000,166,712 | ---- | C] () -- C:\Documents and Settings\Admin\Pulpit\FreeZipSetup.exe [2013-10-07 18:07:14 | 000,000,174 | ---- | C] () -- C:\Documents and Settings\Admin\Pulpit\Google.url [2013-10-05 15:57:56 | 000,006,144 | ---- | C] () -- C:\Documents and Settings\Admin\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2013-05-07 21:44:47 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2013-05-07 21:43:25 | 000,093,480 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2013-05-07 21:03:58 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2013-05-07 20:55:36 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [color=#E56717]========== ZeroAccess Check ==========[/color] [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2001-10-26 19:29:42 | 001,338,880 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2001-10-26 19:29:30 | 000,585,216 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2001-10-26 19:29:44 | 000,259,072 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2013-09-27 17:56:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Admin\Dane aplikacji\Babylon [2013-09-27 17:59:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Admin\Dane aplikacji\DigitalSite [2013-09-27 17:56:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon [2013-09-27 19:31:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\sentinel [color=#E56717]========== Purity Check ==========[/color] < End of report >